Hallo Rafael,
und danke für deine Hilfe.
Hier der erste Log: Code:
19:43:40.0924 0x0e48 TDSS rootkit removing tool 3.1.0.12 Nov 7 2016 07:10:01
19:43:45.0749 0x0e48 ============================================================
19:43:45.0749 0x0e48 Current date / time: 2017/01/18 19:43:45.0749
19:43:45.0749 0x0e48 SystemInfo:
19:43:45.0764 0x0e48
19:43:45.0764 0x0e48 OS Version: 10.0.14393 ServicePack: 0.0
19:43:45.0764 0x0e48 Product type: Workstation
19:43:45.0764 0x0e48 ComputerName: KLAUS-PC
19:43:45.0764 0x0e48 UserName: Klaus
19:43:45.0764 0x0e48 Windows directory: C:\WINDOWS
19:43:45.0764 0x0e48 System windows directory: C:\WINDOWS
19:43:45.0764 0x0e48 Running under WOW64
19:43:45.0764 0x0e48 Processor architecture: Intel x64
19:43:45.0764 0x0e48 Number of processors: 4
19:43:45.0764 0x0e48 Page size: 0x1000
19:43:45.0764 0x0e48 Boot type: Normal boot
19:43:45.0764 0x0e48 CodeIntegrityOptions = 0x00000001
19:43:45.0764 0x0e48 ============================================================
19:43:45.0840 0x0e48 KLMD registered as C:\WINDOWS\system32\drivers\31926613.sys
19:43:45.0840 0x0e48 KLMD ARK init status: drvProperties = 0xFFF00, osBuild = 14393.693, osProperties = 0x19
19:43:46.0685 0x0e48 System UUID: {E8DA0A40-9C94-0136-20FE-CA33098CB3B5}
19:43:47.0468 0x0e48 Drive \Device\Harddisk0\DR0 - Size: 0x1BF2976000 ( 111.79 Gb ), SectorSize: 0x200, Cylinders: 0x3901, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
19:43:47.0503 0x0e48 Drive \Device\Harddisk1\DR1 - Size: 0xE8E0DB6000 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
19:43:48.0209 0x0e48 ============================================================
19:43:48.0209 0x0e48 \Device\Harddisk0\DR0:
19:43:48.0210 0x0e48 MBR partitions:
19:43:48.0210 0x0e48 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0xDEB33B0
19:43:48.0210 0x0e48 \Device\Harddisk1\DR1:
19:43:48.0210 0x0e48 MBR partitions:
19:43:48.0210 0x0e48 \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x747051C1
19:43:48.0211 0x0e48 ============================================================
19:43:48.0212 0x0e48 C: <-> \Device\Harddisk0\DR0\Partition1
19:43:48.0238 0x0e48 E: <-> \Device\Harddisk1\DR1\Partition1
19:43:48.0238 0x0e48 ============================================================
19:43:48.0238 0x0e48 Initialize success
19:43:48.0238 0x0e48 ============================================================
19:44:27.0398 0x1ebc ============================================================
19:44:27.0398 0x1ebc Scan started
19:44:27.0398 0x1ebc Mode: Manual; SigCheck; TDLFS;
19:44:27.0398 0x1ebc ============================================================
19:44:27.0398 0x1ebc KSN ping started
19:44:27.0494 0x1ebc KSN ping finished: true
19:44:28.0347 0x1ebc ================ Scan system memory ========================
19:44:28.0347 0x1ebc System memory - ok
19:44:28.0348 0x1ebc ================ Scan services =============================
19:44:28.0438 0x1ebc 1394ohci - ok
19:44:28.0444 0x1ebc 3ware - ok
19:44:28.0451 0x1ebc ACPI - ok
19:44:28.0457 0x1ebc AcpiDev - ok
19:44:28.0464 0x1ebc acpiex - ok
19:44:28.0471 0x1ebc acpipagr - ok
19:44:28.0479 0x1ebc AcpiPmi - ok
19:44:28.0487 0x1ebc acpitime - ok
19:44:28.0517 0x1ebc [ 3F358E95AEB33CBD16E6006A70CC629B, CB6816CBD377582D74CFD078FC520B6F2069669D908F642E862476674AB937C4 ] AcrSch2Svc C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe
19:44:28.0589 0x1ebc AcrSch2Svc - ok
19:44:28.0644 0x1ebc [ 6F3C49799F770075E339E92B9B14AF21, 96295CA42275D7C22FEDC9567E8CCA4AB6584B7D38B4D1D62CCF197CA539C8A3 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
19:44:28.0661 0x1ebc AdobeFlashPlayerUpdateSvc - ok
19:44:28.0672 0x1ebc ADP80XX - ok
19:44:28.0682 0x1ebc AFD - ok
19:44:28.0692 0x1ebc ahcache - ok
19:44:28.0699 0x1ebc AJRouter - ok
19:44:28.0705 0x1ebc ALG - ok
19:44:28.0713 0x1ebc AMD FUEL Service - ok
19:44:28.0720 0x1ebc AmdK8 - ok
19:44:28.0727 0x1ebc AmdPPM - ok
19:44:28.0734 0x1ebc amdsata - ok
19:44:28.0740 0x1ebc amdsbs - ok
19:44:28.0747 0x1ebc amdxata - ok
19:44:28.0756 0x1ebc AppHostSvc - ok
19:44:28.0761 0x1ebc AppID - ok
19:44:28.0768 0x1ebc AppIDSvc - ok
19:44:28.0775 0x1ebc Appinfo - ok
19:44:28.0787 0x1ebc [ 7D811EA7A2AAA49B0446D42CBC1CD338, AFECE5E44E48F756C7EB81D95C9237552AF8A9C02CBE756E0F3D3C6524DE49AD ] Apple Mobile Device Service C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
19:44:28.0797 0x1ebc Apple Mobile Device Service - ok
19:44:28.0803 0x1ebc applockerfltr - ok
19:44:28.0810 0x1ebc AppMgmt - ok
19:44:28.0818 0x1ebc AppReadiness - ok
19:44:28.0825 0x1ebc AppVClient - ok
19:44:28.0831 0x1ebc AppvStrm - ok
19:44:28.0839 0x1ebc AppvVemgr - ok
19:44:28.0846 0x1ebc AppvVfs - ok
19:44:28.0853 0x1ebc AppXSvc - ok
19:44:28.0859 0x1ebc arcsas - ok
19:44:28.0882 0x1ebc aspnet_state - ok
19:44:28.0889 0x1ebc [ 912A215CE180A6E7C923C662D7EC777D, 2828D6403F693B1CF4AD4F47A4C096E6B31E680665F5BBCCAA69416FFA7FF2E0 ] AsrAppCharger C:\WINDOWS\system32\DRIVERS\AsrAppCharger.sys
19:44:28.0907 0x1ebc AsrAppCharger - ok
19:44:28.0913 0x1ebc AsyncMac - ok
19:44:28.0922 0x1ebc atapi - ok
19:44:28.0928 0x1ebc AudioEndpointBuilder - ok
19:44:28.0935 0x1ebc Audiosrv - ok
19:44:28.0946 0x1ebc [ 8562C35489C8D687E47DB87885E3BEF6, C01700A08ABFCD4FC4ECBCE621DE6C2DB5BF48810A6B5D54A15873CBFD587397 ] AxAutoMntSrv C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe
19:44:28.0955 0x1ebc AxAutoMntSrv - ok
19:44:28.0961 0x1ebc AxInstSV - ok
19:44:28.0969 0x1ebc [ 95831B8024A85AD7815026475DB969E5, 70539360CF526C0E5F960BAFE64D8BAB973E9E5C0E868726DB3B33B2AC33A164 ] AxVirtualAHCISrv C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAHCIServiceEx.exe
19:44:28.0980 0x1ebc AxVirtualAHCISrv - ok
19:44:28.0987 0x1ebc b06bdrv - ok
19:44:28.0994 0x1ebc BasicDisplay - ok
19:44:29.0001 0x1ebc BasicRender - ok
19:44:29.0015 0x1ebc [ 9F1E203815CA45FBA1D51BC200D05665, 4951112B4ECF8D2C44391D572AEF53BF542C13BE7E64CCABD352A2DC663A1B63 ] bcbtums C:\WINDOWS\system32\drivers\bcbtums.sys
19:44:29.0033 0x1ebc bcbtums - ok
19:44:29.0093 0x1ebc [ 27137628E8932E9B071BEA5EC82BDC4F, 21DC93C61D53FC31694E3D4E847F61E3EFE6FEA3B7CA2F3E0C4C0640F2B43F38 ] BcmBtRSupport C:\WINDOWS\system32\BtwRSupportService.exe
19:44:29.0165 0x1ebc BcmBtRSupport - ok
19:44:29.0178 0x1ebc bcmfn - ok
19:44:29.0184 0x1ebc bcmfn2 - ok
19:44:29.0191 0x1ebc BDESVC - ok
19:44:29.0198 0x1ebc Beep - ok
19:44:29.0205 0x1ebc BFE - ok
19:44:29.0212 0x1ebc BITS - ok
19:44:29.0228 0x1ebc [ B5C2F92EE1106DFE7BB1CCE4D35B6037, E399C390687589194D8AAD385055F0CFA7D52AD9E837D8FF95008B8EB2B34E50 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
19:44:29.0246 0x1ebc Bonjour Service - ok
19:44:29.0255 0x1ebc bowser - ok
19:44:29.0261 0x1ebc BrokerInfrastructure - ok
19:44:29.0268 0x1ebc Browser - ok
19:44:29.0280 0x1ebc [ EA7E57F87D6FEE5FD6C5F813C04E8CD2, 1EB84F4DEE3034FAFBEA2A3F84EECE036E803872DA94D54E958E9F2F09519E88 ] BrYNSvc C:\Program Files (x86)\Browny02\BrYNSvc.exe
19:44:29.0299 0x1ebc BrYNSvc - detected UnsignedFile.Multi.Generic ( 1 )
19:44:29.0393 0x1ebc Detect skipped due to KSN trusted
19:44:29.0394 0x1ebc BrYNSvc - ok
19:44:29.0402 0x1ebc BthAvrcpTg - ok
19:44:29.0409 0x1ebc BthHFEnum - ok
19:44:29.0416 0x1ebc bthhfhid - ok
19:44:29.0423 0x1ebc BthHFSrv - ok
19:44:29.0430 0x1ebc BTHMODEM - ok
19:44:29.0440 0x1ebc bthserv - ok
19:44:29.0451 0x1ebc [ F3640757594567438C1A5CA0DDAAB21A, BFE7C58C0370FBB088036B0356C9C30F22ADB79F3821D938A64DA450294B0386 ] btwampfl C:\WINDOWS\system32\DRIVERS\btwampfl.sys
19:44:29.0469 0x1ebc btwampfl - ok
19:44:29.0476 0x1ebc buttonconverter - ok
19:44:29.0483 0x1ebc CapImg - ok
19:44:29.0489 0x1ebc cdfs - ok
19:44:29.0496 0x1ebc CDPSvc - ok
19:44:29.0505 0x1ebc CDPUserSvc - ok
19:44:29.0518 0x1ebc cdrom - ok
19:44:29.0525 0x1ebc CertPropSvc - ok
19:44:29.0532 0x1ebc cht4iscsi - ok
19:44:29.0538 0x1ebc cht4vbd - ok
19:44:29.0545 0x1ebc circlass - ok
19:44:29.0551 0x1ebc CLFS - ok
19:44:29.0557 0x1ebc ClipSVC - ok
19:44:29.0565 0x1ebc clreg - ok
19:44:29.0584 0x1ebc CmBatt - ok
19:44:29.0591 0x1ebc CNG - ok
19:44:29.0597 0x1ebc cnghwassist - ok
19:44:29.0631 0x1ebc CompositeBus - ok
19:44:29.0638 0x1ebc COMSysApp - ok
19:44:29.0644 0x1ebc condrv - ok
19:44:29.0652 0x1ebc CoreMessagingRegistrar - ok
19:44:29.0665 0x1ebc CryptSvc - ok
19:44:29.0671 0x1ebc CSC - ok
19:44:29.0678 0x1ebc CscService - ok
19:44:29.0685 0x1ebc dam - ok
19:44:29.0696 0x1ebc DcomLaunch - ok
19:44:29.0702 0x1ebc DcpSvc - ok
19:44:29.0709 0x1ebc defragsvc - ok
19:44:29.0716 0x1ebc DeviceAssociationService - ok
19:44:29.0723 0x1ebc DeviceInstall - ok
19:44:29.0730 0x1ebc DevQueryBroker - ok
19:44:29.0737 0x1ebc Dfsc - ok
19:44:29.0744 0x1ebc Dhcp - ok
19:44:29.0753 0x1ebc diagnosticshub.standardcollector.service - ok
19:44:29.0759 0x1ebc DiagTrack - ok
19:44:29.0776 0x1ebc [ BB5C615C2F0D6F392B3C93B988969E02, 13F30E2BEE863823FB85A57C407060B2677D1EF95908D49D97FD0551D29E1969 ] DigitalWave.Update.Service C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe
19:44:29.0791 0x1ebc DigitalWave.Update.Service - ok
19:44:29.0830 0x1ebc [ AE2E89756784A47A3AFC769F02CAED97, CEBF27B90B87E0E6030109568B6023C9CCADFC88E4B936036C7DC907CB2FE264 ] Disc Soft Ultra Bus Service C:\Program Files\DAEMON Tools Ultra\DiscSoftBusService.exe
19:44:29.0871 0x1ebc Disc Soft Ultra Bus Service - ok
19:44:29.0882 0x1ebc disk - ok
19:44:29.0889 0x1ebc DmEnrollmentSvc - ok
19:44:29.0896 0x1ebc dmvsc - ok
19:44:29.0903 0x1ebc dmwappushservice - ok
19:44:29.0909 0x1ebc Dnscache - ok
19:44:29.0919 0x1ebc dot3svc - ok
19:44:29.0926 0x1ebc DPS - ok
19:44:29.0933 0x1ebc drmkaud - ok
19:44:29.0940 0x1ebc DsmSvc - ok
19:44:29.0946 0x1ebc DsSvc - ok
19:44:29.0954 0x1ebc [ 679FF716052109392D870F6A6C4A3535, BEF1784448CCA4AF1D67ED68BD0C7CFE01A7719E98CACF92C2DCBFAA916DC57E ] dtlitescsibus C:\WINDOWS\System32\drivers\dtlitescsibus.sys
19:44:29.0964 0x1ebc dtlitescsibus - ok
19:44:29.0971 0x1ebc [ E23FDD696839A4790682CA66C48D3F2F, F5F0721BDA751968224E52E75D0C309A3E084C430CD98E85A55AF622D16B9A44 ] dtliteusbbus C:\WINDOWS\System32\drivers\dtliteusbbus.sys
19:44:29.0981 0x1ebc dtliteusbbus - ok
19:44:29.0989 0x1ebc [ FDE25F2E15D963BB4FB7EE0806A1AC1E, 6255313203F8E15B2E57792E98C0DCDF3F74C64B792BB71F06E1F2CA54904241 ] dtultrascsibus C:\WINDOWS\System32\drivers\dtultrascsibus.sys
19:44:29.0998 0x1ebc dtultrascsibus - ok
19:44:30.0006 0x1ebc [ 47938D95DC48FF45B0E22C4462DAC9D2, 638BC54C77F18718642DEABFCAE984BBF7017991F2A11D12CD5BFF5E158283BD ] dtultrausbbus C:\WINDOWS\System32\drivers\dtultrausbbus.sys
19:44:30.0015 0x1ebc dtultrausbbus - ok
19:44:30.0023 0x1ebc DXGKrnl - ok
19:44:30.0030 0x1ebc EapHost - ok
19:44:30.0036 0x1ebc ebdrv - ok
19:44:30.0044 0x1ebc EFS - ok
19:44:30.0050 0x1ebc EhStorClass - ok
19:44:30.0057 0x1ebc EhStorTcgDrv - ok
19:44:30.0065 0x1ebc [ BE2902E13CA69383F449B6BF927844FB, F092785E305D8E1FE795AF98A7A7B7B4548A0D6687060568C9E078FFA8D65C1C ] ElbyCDIO C:\WINDOWS\system32\Drivers\ElbyCDIO.sys
19:44:30.0074 0x1ebc ElbyCDIO - ok
19:44:30.0081 0x1ebc embeddedmode - ok
19:44:30.0088 0x1ebc EntAppSvc - ok
19:44:30.0094 0x1ebc [ 6106653B08F4F72EEAA7F099E7C408A4, 96B77284744F8761C4F2558388E0AEE2140618B484FF53FA8B222B340D2A9C84 ] epmntdrv C:\WINDOWS\system32\epmntdrv.sys
19:44:30.0112 0x1ebc epmntdrv - detected UnsignedFile.Multi.Generic ( 1 )
19:44:30.0451 0x1ebc Detect skipped due to KSN trusted
19:44:30.0451 0x1ebc epmntdrv - ok
19:44:30.0461 0x1ebc [ D315FF43E23DF424ECEC2F6C930203E4, 68940EDA34DC4945CDD0D8018D96A0DA8F99F16A930946D14E4FECEE033FCB80 ] EpsonScanSvc C:\WINDOWS\system32\EscSvc64.exe
19:44:30.0477 0x1ebc EpsonScanSvc - ok
19:44:30.0486 0x1ebc [ 86032A47AD0105130FE7808C903E2086, ACCCA35483B7E8F9FC72A65031E024C469DF94FCCF2C5CC37C9B3BED4F1C676E ] EPSON_PM_RPCV4_06 C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S60RPB.EXE
19:44:30.0497 0x1ebc EPSON_PM_RPCV4_06 - ok
19:44:30.0504 0x1ebc ErrDev - ok
19:44:30.0514 0x1ebc [ 991C04A31777ED77CB92A4F96F14C2E2, 6CC2A311D8E67032D0847D70B20DCA87B52B2B7FB3C380B3A5AB6C233E955DD2 ] EuGdiDrv C:\WINDOWS\system32\EuGdiDrv.sys
19:44:30.0530 0x1ebc EuGdiDrv - detected UnsignedFile.Multi.Generic ( 1 )
19:44:30.0800 0x1ebc Detect skipped due to KSN trusted
19:44:30.0800 0x1ebc EuGdiDrv - ok
19:44:30.0809 0x1ebc EventSystem - ok
19:44:30.0817 0x1ebc exfat - ok
19:44:30.0824 0x1ebc fastfat - ok
19:44:30.0830 0x1ebc Fax - ok
19:44:30.0837 0x1ebc fdc - ok
19:44:30.0843 0x1ebc fdPHost - ok
19:44:30.0851 0x1ebc FDResPub - ok
19:44:30.0858 0x1ebc fhsvc - ok
19:44:30.0864 0x1ebc FileCrypt - ok
19:44:30.0870 0x1ebc FileInfo - ok
19:44:30.0877 0x1ebc Filetrace - ok
19:44:30.0884 0x1ebc flpydisk - ok
19:44:30.0890 0x1ebc FltMgr - ok
19:44:30.0900 0x1ebc [ 88F5A4E744B72385B9A61659879FCC67, 4AB96D5659AA4AF9F925F2FA0EF3FE48F39F3B29577CDBE41DBF721D34920342 ] fltsrv C:\WINDOWS\system32\DRIVERS\fltsrv.sys
19:44:30.0910 0x1ebc fltsrv - ok
19:44:30.0917 0x1ebc FontCache - ok
19:44:30.0925 0x1ebc FontCache3.0.0.0 - ok
19:44:30.0933 0x1ebc FrameServer - ok
19:44:30.0939 0x1ebc FsDepends - ok
19:44:30.0946 0x1ebc Fs_Rec - ok
19:44:30.0953 0x1ebc fvevol - ok
19:44:30.0961 0x1ebc gencounter - ok
19:44:30.0966 0x1ebc genericusbfn - ok
19:44:30.0973 0x1ebc GPIOClx0101 - ok
19:44:30.0980 0x1ebc gpsvc - ok
19:44:30.0986 0x1ebc GpuEnergyDrv - ok
19:44:30.0996 0x1ebc [ 053EEEE1ABAE53F044F1E386E22AE525, 195C8B78C0CF68F3DC1C08E58CE2A7146764F9273C39EF369194A366FA8EE1AD ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
19:44:31.0007 0x1ebc gupdate - ok
19:44:31.0015 0x1ebc [ 053EEEE1ABAE53F044F1E386E22AE525, 195C8B78C0CF68F3DC1C08E58CE2A7146764F9273C39EF369194A366FA8EE1AD ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
19:44:31.0025 0x1ebc gupdatem - ok
19:44:31.0032 0x1ebc HDAudBus - ok
19:44:31.0038 0x1ebc HidBatt - ok
19:44:31.0045 0x1ebc HidBth - ok
19:44:31.0052 0x1ebc hidi2c - ok
19:44:31.0059 0x1ebc hidinterrupt - ok
19:44:31.0066 0x1ebc HidIr - ok
19:44:31.0072 0x1ebc hidserv - ok
19:44:31.0080 0x1ebc HidUsb - ok
19:44:31.0087 0x1ebc HomeGroupListener - ok
19:44:31.0094 0x1ebc HomeGroupProvider - ok
19:44:31.0101 0x1ebc HpSAMD - ok
19:44:31.0108 0x1ebc HTTP - ok
19:44:31.0114 0x1ebc HvHost - ok
19:44:31.0122 0x1ebc hvservice - ok
19:44:31.0166 0x1ebc [ EF558A02D734A1403583E95CCEEC2487, F0D052DAF48A62E4A90D067BFCB5EE9563804DE68D0EA82E0E11C8D16AD19D29 ] HWiNFO32 C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS
19:44:31.0174 0x1ebc HWiNFO32 - ok
19:44:31.0180 0x1ebc hwpolicy - ok
19:44:31.0187 0x1ebc hyperkbd - ok
19:44:31.0195 0x1ebc i8042prt - ok
19:44:31.0202 0x1ebc iagpio - ok
19:44:31.0208 0x1ebc iai2c - ok
19:44:31.0215 0x1ebc iaLPSS2i_GPIO2 - ok
19:44:31.0222 0x1ebc iaLPSS2i_I2C - ok
19:44:31.0229 0x1ebc iaLPSSi_GPIO - ok
19:44:31.0236 0x1ebc iaLPSSi_I2C - ok
19:44:31.0242 0x1ebc iaStorAV - ok
19:44:31.0249 0x1ebc iaStorV - ok
19:44:31.0256 0x1ebc ibbus - ok
19:44:31.0263 0x1ebc icssvc - ok
19:44:31.0273 0x1ebc IKEEXT - ok
19:44:31.0278 0x1ebc IndirectKmd - ok
19:44:31.0292 0x1ebc intelide - ok
19:44:31.0299 0x1ebc intelpep - ok
19:44:31.0306 0x1ebc intelppm - ok
19:44:31.0320 0x1ebc [ 8273733637D6C05CC34C53FFA0DDF8BD, 2EB0BA1C23BE0E03D90C92A54C588E09C0738FF8E1C9464A13522760FA19ADDB ] IObitUnSvr C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe
19:44:31.0337 0x1ebc IObitUnSvr - ok
19:44:31.0343 0x1ebc iorate - ok
19:44:31.0351 0x1ebc IpFilterDriver - ok
19:44:31.0358 0x1ebc iphlpsvc - ok
19:44:31.0364 0x1ebc IPMIDRV - ok
19:44:31.0371 0x1ebc IPNAT - ok
19:44:31.0393 0x1ebc [ C37FAF1F0CE458D124A326FC8A7FF08D, 0147897CDF6DC2AB7113672D2B62CB258303FB0482B084C23C2E7EFCDE0065B4 ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
19:44:31.0418 0x1ebc iPod Service - ok
19:44:31.0427 0x1ebc irda - ok
19:44:31.0435 0x1ebc IRENUM - ok
19:44:31.0442 0x1ebc irmon - ok
19:44:31.0448 0x1ebc isapnp - ok
19:44:31.0455 0x1ebc iScsiPrt - ok
19:44:31.0462 0x1ebc kbdclass - ok
19:44:31.0468 0x1ebc kbdhid - ok
19:44:31.0476 0x1ebc kdnic - ok
19:44:31.0483 0x1ebc KeyIso - ok
19:44:31.0488 0x1ebc KSecDD - ok
19:44:31.0495 0x1ebc KSecPkg - ok
19:44:31.0502 0x1ebc ksthunk - ok
19:44:31.0509 0x1ebc KtmRm - ok
19:44:31.0516 0x1ebc LanmanServer - ok
19:44:31.0522 0x1ebc LanmanWorkstation - ok
19:44:31.0533 0x1ebc lfsvc - ok
19:44:31.0539 0x1ebc LicenseManager - ok
19:44:31.0546 0x1ebc lltdio - ok
19:44:31.0552 0x1ebc lltdsvc - ok
19:44:31.0559 0x1ebc lmhosts - ok
19:44:31.0569 0x1ebc LSI_SAS - ok
19:44:31.0576 0x1ebc LSI_SAS2i - ok
19:44:31.0583 0x1ebc LSI_SAS3i - ok
19:44:31.0589 0x1ebc LSI_SSS - ok
19:44:31.0597 0x1ebc LSM - ok
19:44:31.0603 0x1ebc luafv - ok
19:44:31.0610 0x1ebc MapsBroker - ok
19:44:31.0618 0x1ebc [ 78BFF5425E044086E74E78650A359FBB, 294738C10F3ED933D4EC40EA0659372FCF19A3C6D45D356917438CA495F2CB45 ] MBAMProtector C:\WINDOWS\system32\drivers\mbam.sys
19:44:31.0629 0x1ebc MBAMProtector - ok
19:44:31.0669 0x1ebc [ 9611577752E293259C7DCE19E9026362, 8CB5DFD63FA15603BB6FA6B501E09ED7F4DE0E8F68CB28B78CECAC3711BEFD24 ] MBAMScheduler C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
19:44:31.0716 0x1ebc MBAMScheduler - ok
19:44:31.0751 0x1ebc [ F1A89A34388B5626F1548D393B23ECB1, EA00AC76C4C8C9340753B58A3313C9177A9B98F9F1BDE08F184CD0F53D0C186F ] MBAMService C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
19:44:31.0783 0x1ebc MBAMService - ok
19:44:31.0796 0x1ebc [ 78488AF2AB2111D67B3C4044707A519B, 7AA71B9C4C7949A1A21F60EF7CCEDE0079794990696B60557B5DC86F4D47223A ] MBAMSwissArmy C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys
19:44:31.0808 0x1ebc MBAMSwissArmy - ok
19:44:31.0816 0x1ebc [ 898415AC0B5F1D2A9A48ABCB68A6DC4B, E1FD9AE5E22E3E5A18288E66A6184E92A4B63A1274DCE147A7728BB09C6A225E ] MBAMWebAccessControl C:\WINDOWS\system32\drivers\mwac.sys
19:44:31.0827 0x1ebc MBAMWebAccessControl - ok
19:44:31.0834 0x1ebc megasas - ok
19:44:31.0841 0x1ebc megasas2i - ok
19:44:31.0848 0x1ebc megasr - ok
19:44:31.0855 0x1ebc MessagingService - ok
19:44:31.0863 0x1ebc mlx4_bus - ok
19:44:31.0871 0x1ebc MMCSS - ok
19:44:31.0878 0x1ebc Modem - ok
19:44:31.0885 0x1ebc monitor - ok
19:44:31.0892 0x1ebc mouclass - ok
19:44:31.0899 0x1ebc mouhid - ok
19:44:31.0905 0x1ebc mountmgr - ok
19:44:31.0911 0x1ebc mpsdrv - ok
19:44:31.0919 0x1ebc MpsSvc - ok
19:44:31.0926 0x1ebc MQAC - ok
19:44:31.0933 0x1ebc MRxDAV - ok
19:44:31.0940 0x1ebc mrxsmb - ok
19:44:31.0946 0x1ebc mrxsmb10 - ok
19:44:31.0954 0x1ebc mrxsmb20 - ok
19:44:32.0004 0x1ebc MsBridge - ok
19:44:32.0011 0x1ebc MSDTC - ok
19:44:32.0024 0x1ebc Msfs - ok
19:44:32.0031 0x1ebc msgpiowin32 - ok
19:44:32.0038 0x1ebc mshidkmdf - ok
19:44:32.0044 0x1ebc mshidumdf - ok
19:44:32.0051 0x1ebc msisadrv - ok
19:44:32.0059 0x1ebc MSiSCSI - ok
19:44:32.0065 0x1ebc msiserver - ok
19:44:32.0071 0x1ebc MSKSSRV - ok
19:44:32.0077 0x1ebc MsLldp - ok
19:44:32.0085 0x1ebc MSMQ - ok
19:44:32.0091 0x1ebc MSPCLOCK - ok
19:44:32.0098 0x1ebc MSPQM - ok
19:44:32.0105 0x1ebc MsRPC - ok
19:44:32.0113 0x1ebc MsSecFlt - ok
19:44:32.0120 0x1ebc mssmbios - ok
19:44:32.0128 0x1ebc MSTEE - ok
19:44:32.0135 0x1ebc MTConfig - ok
19:44:32.0141 0x1ebc Mup - ok
19:44:32.0149 0x1ebc mvumis - ok
19:44:32.0158 0x1ebc NativeWifiP - ok
19:44:32.0166 0x1ebc NcaSvc - ok
19:44:32.0171 0x1ebc NcbService - ok
19:44:32.0178 0x1ebc NcdAutoSetup - ok
19:44:32.0185 0x1ebc ndfltr - ok
19:44:32.0192 0x1ebc NDIS - ok
19:44:32.0199 0x1ebc NdisCap - ok
19:44:32.0206 0x1ebc NdisImPlatform - ok
19:44:32.0212 0x1ebc NdisTapi - ok
19:44:32.0218 0x1ebc Ndisuio - ok
19:44:32.0225 0x1ebc NdisVirtualBus - ok
19:44:32.0232 0x1ebc NdisWan - ok
19:44:32.0238 0x1ebc ndiswanlegacy - ok
19:44:32.0244 0x1ebc ndproxy - ok
19:44:32.0253 0x1ebc Ndu - ok
19:44:32.0260 0x1ebc NetAdapterCx - ok
19:44:32.0266 0x1ebc NetBIOS - ok
19:44:32.0275 0x1ebc NetBT - ok
19:44:32.0281 0x1ebc Netlogon - ok
19:44:32.0288 0x1ebc Netman - ok
19:44:32.0301 0x1ebc NetMsmqActivator - ok
19:44:32.0305 0x1ebc NetPipeActivator - ok
19:44:32.0313 0x1ebc netprofm - ok
19:44:32.0319 0x1ebc NetSetupSvc - ok
19:44:32.0324 0x1ebc NetTcpActivator - ok
19:44:32.0331 0x1ebc NetTcpPortSharing - ok
19:44:32.0342 0x1ebc NgcCtnrSvc - ok
19:44:32.0349 0x1ebc NgcSvc - ok
19:44:32.0355 0x1ebc NlaSvc - ok
19:44:32.0361 0x1ebc Npfs - ok
19:44:32.0369 0x1ebc npsvctrig - ok
19:44:32.0375 0x1ebc nsi - ok
19:44:32.0381 0x1ebc nsiproxy - ok
19:44:32.0391 0x1ebc NTFS - ok
19:44:32.0398 0x1ebc Null - ok
19:44:32.0414 0x1ebc [ 64DA1993B1973F049C1347DA1B05185E, 2A04E263DB13751D033E2F9B9518820CF4942EEAFA5A32488570EEB699EE2A96 ] NVHDA C:\WINDOWS\system32\drivers\nvhda64v.sys
19:44:32.0429 0x1ebc NVHDA - ok
19:44:32.0794 0x1ebc [ 557A0393BDFED327968A9E695FB4CEBA, 76D39F74439205B5B614B0D99E9E10629738E00250A5E7FFEE50815F69EE70D0 ] nvlddmkm C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_3f929cc119e3b994\nvlddmkm.sys
19:44:33.0104 0x1ebc nvlddmkm - ok
19:44:33.0142 0x1ebc NVNET - ok
19:44:33.0148 0x1ebc nvraid - ok
19:44:33.0154 0x1ebc nvstor - ok
19:44:33.0167 0x1ebc [ 71B6ECD3C56FBF12FB1968DA3953B703, 47E39FBC336C9BFC159AA0FF9D8DEE950724ABB782102858E397A7EF87112584 ] nvstor64 C:\WINDOWS\System32\drivers\nvstor64.sys
19:44:33.0181 0x1ebc nvstor64 - ok
19:44:33.0188 0x1ebc OneSyncSvc - ok
19:44:33.0203 0x1ebc [ 58327B7E7C4E325C66B7C4A5220CE5F4, FF66411B23A195CA3C64F5409F2E2C6F88CB01034A4C9DDCA565DE0E144ABC13 ] ose64 C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
19:44:33.0221 0x1ebc ose64 - ok
19:44:33.0230 0x1ebc p2pimsvc - ok
19:44:33.0237 0x1ebc p2psvc - ok
19:44:33.0244 0x1ebc Parport - ok
19:44:33.0250 0x1ebc partmgr - ok
19:44:33.0257 0x1ebc PcaSvc - ok
19:44:33.0264 0x1ebc pci - ok
19:44:33.0272 0x1ebc pciide - ok
19:44:33.0278 0x1ebc pcmcia - ok
19:44:33.0285 0x1ebc pcw - ok
19:44:33.0291 0x1ebc pdc - ok
19:44:33.0297 0x1ebc PEAUTH - ok
19:44:33.0304 0x1ebc PeerDistSvc - ok
19:44:33.0311 0x1ebc percsas2i - ok
19:44:33.0317 0x1ebc percsas3i - ok
19:44:33.0362 0x1ebc PerfHost - ok
19:44:33.0377 0x1ebc PhoneSvc - ok
19:44:33.0386 0x1ebc PimIndexMaintenanceSvc - ok
19:44:33.0395 0x1ebc pla - ok
19:44:33.0401 0x1ebc PlugPlay - ok
19:44:33.0408 0x1ebc PnkBstrA - ok
19:44:33.0415 0x1ebc PNRPAutoReg - ok
19:44:33.0422 0x1ebc PNRPsvc - ok
19:44:33.0429 0x1ebc PolicyAgent - ok
19:44:33.0439 0x1ebc Power - ok
19:44:33.0445 0x1ebc PptpMiniport - ok
19:44:33.0531 0x1ebc [ 7196D3C2E2E3129814C8DAB91F9A7D1E, 6763E4BF8E846B597E78778E520F5BADC95608BAA4EA0AC84971384B5D976DD7 ] PrintNotify C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll
19:44:33.0662 0x1ebc PrintNotify - ok
19:44:33.0676 0x1ebc Processor - ok
19:44:33.0683 0x1ebc ProfSvc - ok
19:44:33.0694 0x1ebc [ F115AF58ABE5605D7D709CBFBD83F418, 4855FCD6E455D6E374CE92E5B37D61E7E6D8A861BA76521E7CC2542621853471 ] ProtexisLicensing C:\WINDOWS\SysWOW64\PSIService.exe
19:44:33.0715 0x1ebc ProtexisLicensing - ok
19:44:33.0722 0x1ebc Psched - ok
19:44:33.0730 0x1ebc [ 07D57B890DD5693A6AB660CBAE8F91B4, 934895A41C116056E22FE3298418332A9F4280F96E96EEE06C977A4925395674 ] PxHlpa64 C:\WINDOWS\system32\drivers\PxHlpa64.sys
19:44:33.0740 0x1ebc PxHlpa64 - ok
19:44:33.0746 0x1ebc QWAVE - ok
19:44:33.0753 0x1ebc QWAVEdrv - ok
19:44:33.0759 0x1ebc RasAcd - ok
19:44:33.0767 0x1ebc RasAgileVpn - ok
19:44:33.0773 0x1ebc RasAuto - ok
19:44:33.0779 0x1ebc Rasl2tp - ok
19:44:33.0787 0x1ebc RasMan - ok
19:44:33.0793 0x1ebc RasPppoe - ok
19:44:33.0801 0x1ebc RasSstp - ok
19:44:33.0807 0x1ebc rdbss - ok
19:44:33.0817 0x1ebc rdpbus - ok
19:44:33.0824 0x1ebc RDPDR - ok
19:44:33.0839 0x1ebc RdpVideoMiniport - ok
19:44:33.0845 0x1ebc rdyboost - ok
19:44:33.0851 0x1ebc ReFSv1 - ok
19:44:33.0861 0x1ebc RemoteAccess - ok
19:44:33.0868 0x1ebc RemoteRegistry - ok
19:44:33.0875 0x1ebc RetailDemo - ok
19:44:33.0881 0x1ebc [ 7B04C9843921AB1F695FB395422C5360, C9B02BE0384357FD242613C2A12029B45322AF9A795CD69F33500CA7530899A7 ] RimUsb C:\WINDOWS\System32\Drivers\RimUsb_AMD64.sys
19:44:33.0906 0x1ebc RimUsb - ok
19:44:33.0913 0x1ebc [ 344604E6913BD6E4EAEC34AF2E0943D7, 4ADFE13AFECD0F263A27F647FC6BA1AB47B2A28F9D70FCAC90F23D0A2FB8C493 ] RimVSerPort C:\WINDOWS\system32\DRIVERS\RimSerial_AMD64.sys
19:44:33.0937 0x1ebc RimVSerPort - ok
19:44:33.0944 0x1ebc RmSvc - ok
19:44:33.0950 0x1ebc RpcEptMapper - ok
19:44:33.0956 0x1ebc RpcLocator - ok
19:44:33.0965 0x1ebc RpcSs - ok
19:44:33.0972 0x1ebc rspndr - ok
19:44:33.0988 0x1ebc [ 15F7B5181274ED437DFDEF21B44679A4, EEBB62A98B4C296618F0B8A38AD1F3DF79197539DBFD16853FAF3ADB1CDED630 ] RTSUER C:\WINDOWS\system32\Drivers\RtsUer.sys
19:44:34.0007 0x1ebc RTSUER - ok
19:44:34.0015 0x1ebc s3cap - ok
19:44:34.0021 0x1ebc SamSs - ok
19:44:34.0027 0x1ebc sbp2port - ok
19:44:34.0036 0x1ebc SCardSvr - ok
19:44:34.0041 0x1ebc ScDeviceEnum - ok
19:44:34.0048 0x1ebc scfilter - ok
19:44:34.0054 0x1ebc Schedule - ok
19:44:34.0061 0x1ebc scmbus - ok
19:44:34.0068 0x1ebc scmdisk0101 - ok
19:44:34.0075 0x1ebc SCPolicySvc - ok
19:44:34.0082 0x1ebc sdbus - ok
19:44:34.0087 0x1ebc SDRSVC - ok
19:44:34.0094 0x1ebc sdstor - ok
19:44:34.0101 0x1ebc Secdrv - ok
19:44:34.0108 0x1ebc seclogon - ok
19:44:34.0115 0x1ebc SENS - ok
19:44:34.0122 0x1ebc Sense - ok
19:44:34.0127 0x1ebc SensorDataService - ok
19:44:34.0135 0x1ebc SensorService - ok
19:44:34.0141 0x1ebc SensrSvc - ok
19:44:34.0149 0x1ebc SerCx - ok
19:44:34.0155 0x1ebc SerCx2 - ok
19:44:34.0162 0x1ebc Serenum - ok
19:44:34.0169 0x1ebc Serial - ok
19:44:34.0176 0x1ebc sermouse - ok
19:44:34.0191 0x1ebc SessionEnv - ok
19:44:34.0204 0x1ebc sfloppy - ok
19:44:34.0211 0x1ebc SharedAccess - ok
19:44:34.0219 0x1ebc ShellHWDetection - ok
19:44:34.0225 0x1ebc shpamsvc - ok
19:44:34.0232 0x1ebc SiSRaid2 - ok
19:44:34.0239 0x1ebc SiSRaid4 - ok
19:44:34.0248 0x1ebc [ 9122A68375D990280644DF33973B506A, 4514FCF8070B341F110E1E23774B9DE29046D2B28A530850018FE818D549FAD3 ] smhwser C:\WINDOWS\system32\DRIVERS\smhwser.sys
19:44:34.0275 0x1ebc smhwser - ok
19:44:34.0281 0x1ebc smphost - ok
19:44:34.0289 0x1ebc SmsRouter - ok
19:44:34.0308 0x1ebc [ 348F3039E192A84FADE1E2C6C4257500, FFC915C604D14F566ACEFB85741F5F871814031AEFF2CF0A52071A551076325C ] snapman C:\WINDOWS\system32\DRIVERS\snapman.sys
19:44:34.0323 0x1ebc snapman - ok
19:44:34.0333 0x1ebc SNMPTRAP - ok
19:44:34.0339 0x1ebc spaceport - ok
19:44:34.0346 0x1ebc SpbCx - ok
19:44:34.0353 0x1ebc Spooler - ok
19:44:34.0359 0x1ebc sppsvc - ok
19:44:34.0370 0x1ebc [ 7E4C426CB645AD4EF6BE22C82E47D6F1, 3B010DF91D9E1FBDBED4181BB7C04F5ACAAEAF890CA8D6C3E369D28CFAA09C4A ] sptd2 C:\WINDOWS\system32\Drivers\sptd2.sys
19:44:34.0384 0x1ebc sptd2 - ok
19:44:34.0391 0x1ebc srv - ok
19:44:34.0397 0x1ebc srv2 - ok
19:44:34.0403 0x1ebc srvnet - ok
19:44:34.0410 0x1ebc SSDPSRV - ok
19:44:34.0417 0x1ebc SstpSvc - ok
19:44:34.0432 0x1ebc [ E5C796B621F6FBA8616511063D7F0FFE, 447FA64F552D4B04AD029E01485B4438A70D9B9B98EB49A883D5B17ED4C1D52F ] StarWindServiceAE C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
19:44:34.0453 0x1ebc StarWindServiceAE - detected UnsignedFile.Multi.Generic ( 1 )
19:44:34.0537 0x1ebc Detect skipped due to KSN trusted
19:44:34.0537 0x1ebc StarWindServiceAE - ok
19:44:34.0545 0x1ebc StateRepository - ok
19:44:34.0552 0x1ebc stexstor - ok
19:44:34.0558 0x1ebc stisvc - ok
19:44:34.0564 0x1ebc storahci - ok
19:44:34.0571 0x1ebc storflt - ok
19:44:34.0577 0x1ebc stornvme - ok
19:44:34.0585 0x1ebc storqosflt - ok
19:44:34.0592 0x1ebc StorSvc - ok
19:44:34.0599 0x1ebc storufs - ok
19:44:34.0604 0x1ebc storvsc - ok
19:44:34.0611 0x1ebc svsvc - ok
19:44:34.0618 0x1ebc swenum - ok
19:44:34.0624 0x1ebc swprv - ok
19:44:34.0631 0x1ebc Synth3dVsc - ok
19:44:34.0638 0x1ebc SysMain - ok
19:44:34.0645 0x1ebc SystemEventsBroker - ok
19:44:34.0652 0x1ebc TabletInputService - ok
19:44:34.0658 0x1ebc TapiSrv - ok
19:44:34.0665 0x1ebc Tcpip - ok
19:44:34.0672 0x1ebc Tcpip6 - ok
19:44:34.0682 0x1ebc tcpipreg - ok
19:44:34.0692 0x1ebc tdx - ok
19:44:34.0868 0x1ebc [ F2F02E436BA56A96A06E4427C5787B6E, 1562FF264011A15AC69808CB74F387917C4E8ED3B91546B12933BE10B6E20B3A ] TeamViewer C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
19:44:35.0037 0x1ebc TeamViewer - ok
19:44:35.0062 0x1ebc terminpt - ok
19:44:35.0068 0x1ebc TermService - ok
19:44:35.0075 0x1ebc Themes - ok
19:44:35.0082 0x1ebc TieringEngineService - ok
19:44:35.0088 0x1ebc tiledatamodelsvc - ok
19:44:35.0095 0x1ebc TimeBrokerSvc - ok
19:44:35.0103 0x1ebc TPM - ok
19:44:35.0110 0x1ebc TrkWks - ok
19:44:35.0117 0x1ebc [ 0D5A09B08568760AE85A801FCBC0F83D, 347ACBA74FDCBEAC671521739F8A34EC0E378CAF716C31F55616F9F843E4D0D3 ] TrueSight C:\Windows\System32\drivers\TrueSight.sys
19:44:35.0127 0x1ebc TrueSight - ok
19:44:35.0133 0x1ebc TrustedInstaller - ok
19:44:35.0143 0x1ebc tsusbflt - ok
19:44:35.0152 0x1ebc TsUsbGD - ok
19:44:35.0159 0x1ebc tsusbhub - ok
19:44:35.0167 0x1ebc tunnel - ok
19:44:35.0174 0x1ebc tzautoupdate - ok
19:44:35.0181 0x1ebc UASPStor - ok
19:44:35.0190 0x1ebc UcmCx0101 - ok
19:44:35.0198 0x1ebc UcmTcpciCx0101 - ok
19:44:35.0206 0x1ebc UcmUcsi - ok
19:44:35.0214 0x1ebc Ucx01000 - ok
19:44:35.0222 0x1ebc UdeCx - ok
19:44:35.0228 0x1ebc udfs - ok
19:44:35.0235 0x1ebc UEFI - ok
19:44:35.0242 0x1ebc UevAgentDriver - ok
19:44:35.0250 0x1ebc UevAgentService - ok
19:44:35.0257 0x1ebc Ufx01000 - ok
19:44:35.0263 0x1ebc UfxChipidea - ok
19:44:35.0271 0x1ebc ufxsynopsys - ok
19:44:35.0285 0x1ebc UI0Detect - ok
19:44:35.0290 0x1ebc umbus - ok
19:44:35.0297 0x1ebc UmPass - ok
19:44:35.0305 0x1ebc UmRdpService - ok
19:44:35.0311 0x1ebc UnistoreSvc - ok
19:44:35.0322 0x1ebc upnphost - ok
19:44:35.0328 0x1ebc UrsChipidea - ok
19:44:35.0334 0x1ebc UrsCx01000 - ok
19:44:35.0341 0x1ebc UrsSynopsys - ok
19:44:35.0349 0x1ebc [ F957092C63CD71D85903CA0D8370F473, 4DEC2FC20329F248135DA24CB6694FD972DCCE8B1BBEA8D872FDE41939E96AAF ] USBAAPL64 C:\WINDOWS\System32\Drivers\usbaapl64.sys
19:44:35.0376 0x1ebc USBAAPL64 - ok
19:44:35.0382 0x1ebc usbccgp - ok
19:44:35.0390 0x1ebc usbcir - ok
19:44:35.0395 0x1ebc usbehci - ok
19:44:35.0402 0x1ebc usbhub - ok
19:44:35.0408 0x1ebc USBHUB3 - ok
19:44:35.0415 0x1ebc usbohci - ok
19:44:35.0422 0x1ebc usbprint - ok
19:44:35.0430 0x1ebc [ 2EC7B2C8123236B1233A77281D378DF7, D97DB59C9CAE2B8B33C707E8CEA7A65BF88712842CC715D270F7432A99D21BB6 ] usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys
19:44:35.0448 0x1ebc usbscan - ok
19:44:35.0458 0x1ebc USBSTOR - ok
19:44:35.0470 0x1ebc usbuhci - ok
19:44:35.0477 0x1ebc USBXHCI - ok
19:44:35.0485 0x1ebc UserDataSvc - ok
19:44:35.0495 0x1ebc UserManager - ok
19:44:35.0502 0x1ebc UsoSvc - ok
19:44:35.0508 0x1ebc VaultSvc - ok
19:44:35.0518 0x1ebc [ 3C8E2C591345F38149C69FE8E5DF8C90, 9F4BB9BDA09CB2E99A6A888B288F322AE5C460B5D124CD714C6F00FF5029144B ] VClone C:\WINDOWS\System32\drivers\VClone.sys
19:44:35.0540 0x1ebc VClone - ok
19:44:35.0546 0x1ebc vdrvroot - ok
19:44:35.0554 0x1ebc vds - ok
19:44:35.0561 0x1ebc VerifierExt - ok
19:44:35.0570 0x1ebc vhdmp - ok
19:44:35.0576 0x1ebc vhf - ok
19:44:35.0601 0x1ebc [ 1916D8565B95F93D696067C01280937E, 0DA15AE1729F2D0F37A00751871F68F07724B14B07AC3257B2636C7F171FF660 ] VIAHdAudAddService C:\WINDOWS\system32\drivers\viahduaa.sys
19:44:35.0627 0x1ebc VIAHdAudAddService - ok
19:44:35.0637 0x1ebc [ 26F9E6EC387A35B9C0543F10A0E8E798, 7A324A635C8B94D2463E140EF8FD4ECFB3ACAAC7EC5D1C9FCC49BB63F2F56ABD ] VIAKaraokeService C:\WINDOWS\system32\viakaraokesrv.exe
19:44:35.0664 0x1ebc VIAKaraokeService - ok
19:44:35.0670 0x1ebc vmbus - ok
19:44:35.0676 0x1ebc VMBusHID - ok
19:44:35.0683 0x1ebc vmci - ok
19:44:35.0691 0x1ebc vmgid - ok
19:44:35.0697 0x1ebc vmicguestinterface - ok
19:44:35.0704 0x1ebc vmicheartbeat - ok
19:44:35.0709 0x1ebc vmickvpexchange - ok
19:44:35.0717 0x1ebc vmicrdv - ok
19:44:35.0722 0x1ebc vmicshutdown - ok
19:44:35.0729 0x1ebc vmictimesync - ok
19:44:35.0735 0x1ebc vmicvmsession - ok
19:44:35.0742 0x1ebc vmicvss - ok
19:44:35.0748 0x1ebc VMnetAdapter - ok
19:44:35.0756 0x1ebc volmgr - ok
19:44:35.0762 0x1ebc volmgrx - ok
19:44:35.0769 0x1ebc volsnap - ok
19:44:35.0775 0x1ebc volume - ok
19:44:35.0782 0x1ebc vpci - ok
19:44:35.0790 0x1ebc vsmraid - ok
19:44:35.0797 0x1ebc VSS - ok
19:44:35.0804 0x1ebc VSTXRAID - ok
19:44:35.0815 0x1ebc [ 26BF9586A9F4CF7630F75D8514797103, 4E0EF6D085B5948FFB59210723C05A2FB926FCC0A1EE0D5A129FAD754131486B ] VUSB3HUB C:\WINDOWS\System32\drivers\ViaHub3.sys
19:44:35.0833 0x1ebc VUSB3HUB - detected UnsignedFile.Multi.Generic ( 1 )
19:44:35.0898 0x1ebc Detect skipped due to KSN trusted
19:44:35.0898 0x1ebc VUSB3HUB - ok
19:44:35.0906 0x1ebc vwifibus - ok
19:44:35.0912 0x1ebc vwififlt - ok
19:44:35.0918 0x1ebc W32Time - ok
19:44:35.0926 0x1ebc w3logsvc - ok
19:44:35.0932 0x1ebc W3SVC - ok
19:44:35.0939 0x1ebc WacomPen - ok
19:44:35.0946 0x1ebc WalletService - ok
19:44:35.0953 0x1ebc wanarp - ok
19:44:35.0959 0x1ebc wanarpv6 - ok
19:44:35.0966 0x1ebc WAS - ok
19:44:35.0973 0x1ebc wbengine - ok
19:44:35.0979 0x1ebc WbioSrvc - ok
19:44:35.0985 0x1ebc wcifs - ok
19:44:35.0992 0x1ebc Wcmsvc - ok
19:44:35.0999 0x1ebc wcncsvc - ok
19:44:36.0006 0x1ebc wcnfs - ok
19:44:36.0012 0x1ebc WdBoot - ok
19:44:36.0019 0x1ebc Wdf01000 - ok
19:44:36.0026 0x1ebc WdFilter - ok
19:44:36.0033 0x1ebc WdiServiceHost - ok
19:44:36.0039 0x1ebc WdiSystemHost - ok
19:44:36.0047 0x1ebc wdiwifi - ok
19:44:36.0054 0x1ebc WdNisDrv - ok
19:44:36.0059 0x1ebc WdNisSvc - ok
19:44:36.0068 0x1ebc WebClient - ok
19:44:36.0075 0x1ebc Wecsvc - ok
19:44:36.0081 0x1ebc WEPHOSTSVC - ok
19:44:36.0089 0x1ebc wercplsupport - ok
19:44:36.0095 0x1ebc WerSvc - ok
19:44:36.0103 0x1ebc WFPLWFS - ok
19:44:36.0110 0x1ebc WiaRpc - ok
19:44:36.0116 0x1ebc WIMMount - ok
19:44:36.0121 0x1ebc WinDefend - ok
19:44:36.0136 0x1ebc WindowsTrustedRT - ok
19:44:36.0142 0x1ebc WindowsTrustedRTProxy - ok
19:44:36.0150 0x1ebc WinHttpAutoProxySvc - ok
19:44:36.0157 0x1ebc WinMad - ok
19:44:36.0171 0x1ebc Winmgmt - ok
19:44:36.0178 0x1ebc WinRM - ok
19:44:36.0192 0x1ebc WINUSB - ok
19:44:36.0199 0x1ebc WinVerbs - ok
19:44:36.0207 0x1ebc wisvc - ok
19:44:36.0214 0x1ebc WlanSvc - ok
19:44:36.0221 0x1ebc wlidsvc - ok
19:44:36.0226 0x1ebc WmiAcpi - ok
19:44:36.0238 0x1ebc wmiApSrv - ok
19:44:36.0243 0x1ebc WMPNetworkSvc - ok
19:44:36.0251 0x1ebc Wof - ok
19:44:36.0262 0x1ebc workfolderssvc - ok
19:44:36.0269 0x1ebc WPDBusEnum - ok
19:44:36.0275 0x1ebc WpdUpFltr - ok
19:44:36.0283 0x1ebc WpnService - ok
19:44:36.0288 0x1ebc WpnUserService - ok
19:44:36.0298 0x1ebc ws2ifsl - ok
19:44:36.0306 0x1ebc wscsvc - ok
19:44:36.0313 0x1ebc WSDPrintDevice - ok
19:44:36.0320 0x1ebc WSDScan - ok
19:44:36.0326 0x1ebc WSearch - ok
19:44:36.0393 0x1ebc [ DDB7E452A99E0E5244105C6D2CF4BC9E, 1364B03AFFD20D339A2EBA303575BCCBC2D122D89810B1E3593CC55F93F9B79A ] wuauserv C:\WINDOWS\system32\wuaueng.dll
19:44:36.0521 0x1ebc wuauserv - ok
19:44:36.0532 0x1ebc WudfPf - ok
19:44:36.0537 0x1ebc WUDFRd - ok
19:44:36.0544 0x1ebc wudfsvc - ok
19:44:36.0550 0x1ebc WUDFWpdFs - ok
19:44:36.0557 0x1ebc WUDFWpdMtp - ok
19:44:36.0565 0x1ebc WwanSvc - ok
19:44:36.0572 0x1ebc XblAuthManager - ok
19:44:36.0578 0x1ebc XblGameSave - ok
19:44:36.0585 0x1ebc xboxgip - ok
19:44:36.0592 0x1ebc XboxNetApiSvc - ok
19:44:36.0605 0x1ebc [ 6A6EDC5E20DB7B1363F5A0B1A1EB59C4, B8826B8A742115D8D42EF9D5759A9A000278C1F01A85E8ED216BC21AE451B612 ] xhcdrv C:\WINDOWS\System32\drivers\xhcdrv.sys
19:44:36.0625 0x1ebc xhcdrv - detected UnsignedFile.Multi.Generic ( 1 )
19:44:36.0812 0x1ebc Detect skipped due to KSN trusted
19:44:36.0812 0x1ebc xhcdrv - ok
19:44:36.0821 0x1ebc xinputhid - ok
19:44:36.0824 0x1ebc ================ Scan global ===============================
19:44:36.0849 0x1ebc [ Global ] - ok
19:44:36.0850 0x1ebc ================ Scan MBR ==================================
19:44:36.0854 0x1ebc [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
19:44:37.0053 0x1ebc \Device\Harddisk0\DR0 - ok
19:44:37.0057 0x1ebc [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk1\DR1
19:44:37.0171 0x1ebc \Device\Harddisk1\DR1 - ok
19:44:37.0172 0x1ebc ================ Scan VBR ==================================
19:44:37.0177 0x1ebc [ FAD12003EEE51C6359F883C87E7536AD ] \Device\Harddisk0\DR0\Partition1
19:44:37.0179 0x1ebc \Device\Harddisk0\DR0\Partition1 - ok
19:44:37.0182 0x1ebc [ 48562245CDFFFA2697B3BC26FFBC8D1D ] \Device\Harddisk1\DR1\Partition1
19:44:37.0185 0x1ebc \Device\Harddisk1\DR1\Partition1 - ok
19:44:37.0185 0x1ebc ================ Scan generic autorun ======================
19:44:37.0188 0x1ebc VIAxHCUtl - ok
19:44:37.0189 0x1ebc WindowsDefender - ok
19:44:37.0199 0x1ebc [ D91AB5CCE502F95726AC1E035C867BC6, A27B2AAB26C844454A0CEA97F861623C518A837B9DF41778AC7F4E9184E6BC8C ] C:\Program Files\iTunes\iTunesHelper.exe
19:44:37.0210 0x1ebc iTunesHelper - ok
19:44:37.0223 0x1ebc [ B75072C688F3707E5A8FC4E76236A811, 16E69F72D75D5722ACED4AF3BD6142FC2F2534324AE73D29829E797BF3297C43 ] C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe
19:44:37.0240 0x1ebc Acronis Scheduler2 Service - ok
19:44:37.0260 0x1ebc [ D3B3E999961870108AB068C46DA6356B, B9BB0DB720DD7AFE52796AB848441B54116BEE0517115D9A352B1A6D242FA542 ] C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXRCV.exe
19:44:37.0285 0x1ebc FUFAXRCV - ok
19:44:37.0311 0x1ebc [ 67E88143D9FF46D479C1DC890FD51E6E, 67948D043459B619B7A289E686845A147AF8463C8F73FBB12127F012A0C85B24 ] C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXSTM.exe
19:44:37.0339 0x1ebc FUFAXSTM - ok
19:44:37.0372 0x1ebc [ F17FFAF69E1AF3D0A010FD4749148981, 7486A1EFE378BFCEE30D169BD0189CABD6935EBEE556BF0328330B120975EA03 ] C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
19:44:37.0401 0x1ebc EEventManager - ok
19:44:37.0410 0x1ebc [ 3BD79A1F6D2EA0FDDEA3F8914B2A6A0C, 332E6806EFF846A2E6D0DC04A70D3503855DABFA83E6EC27F37E2D9103E80E51 ] C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
19:44:37.0420 0x1ebc VirtualCloneDrive - ok
19:44:37.0421 0x1ebc KiesTrayAgent - ok
19:44:37.0431 0x1ebc [ 8943465BEFA91044227D42E84ECB8280, 76D19CE3EB7E6C6573F250543CDC10B3601604535BFB756805AE246FA55AC265 ] C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
19:44:37.0440 0x1ebc NUSB3MON - ok
19:44:37.0449 0x1ebc [ 587F4E7E41B0A690B05C707F8E524686, 02398E72688C04EE2270E1BEC5310B05B0FE51909609778CEA62FAB1376329EE ] C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe
19:44:37.0460 0x1ebc amd_dc_opt - detected UnsignedFile.Multi.Generic ( 1 )
19:44:37.0563 0x1ebc Detect skipped due to KSN trusted
19:44:37.0563 0x1ebc amd_dc_opt - ok
19:44:37.0602 0x1ebc OneDriveSetup - ok
19:44:37.0605 0x1ebc OneDriveSetup - ok
19:44:37.0635 0x1ebc [ F51BB12D8977D26C1A4CDA348770D9F1, DDA35CD8F8A6591B83821B5180D457740E0B820CCE000BC7FB1B78FB4AEAD3BA ] C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe
19:44:37.0676 0x1ebc SpybotPostWindows10UpgradeReInstall - detected UnsignedFile.Multi.Generic ( 1 )
19:44:37.0748 0x1ebc Detect skipped due to KSN trusted
19:44:37.0748 0x1ebc SpybotPostWindows10UpgradeReInstall - ok
19:44:37.0754 0x1ebc [ 8562C35489C8D687E47DB87885E3BEF6, C01700A08ABFCD4FC4ECBCE621DE6C2DB5BF48810A6B5D54A15873CBFD587397 ] C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe
19:44:37.0762 0x1ebc AlcoholAutomount - ok
19:44:37.0877 0x1ebc [ 397125F8AADEA1035B472018515FB35E, 713AC72EF4E25D15D6F08713C4AD4F85BF4679EE8B725D1028964EA37341311E ] C:\Program Files\DAEMON Tools Ultra\DTAgent.exe
19:44:37.0981 0x1ebc DAEMON Tools Ultra Agent - ok
19:44:37.0991 0x1ebc WAZPWNA0WB - ok
19:44:37.0993 0x1ebc E21ZCY697U - ok
19:44:38.0000 0x1ebc OneDriveSetup - ok
19:44:38.0003 0x1ebc WAB Migrate - ok
19:44:38.0005 0x1ebc Waiting for KSN requests completion. In queue: 60
19:44:39.0075 0x1ebc AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.10.14393.187 ), 0x61100 ( enabled : updated )
19:44:39.0086 0x1ebc Win FW state via NFP2: enabled ( trusted )
19:44:39.0240 0x1ebc ============================================================
19:44:39.0240 0x1ebc Scan finished
19:44:39.0240 0x1ebc ============================================================
19:44:39.0257 0x0bd8 Detected object count: 0
19:44:39.0257 0x0bd8 Actual detected object count: 0
19:45:42.0829 0x0ef8 Deinitialize success |