rupertbayern | 04.07.2013 00:13 | Dealfinder im Browser Hallo,
häufig wird mir beim Browsen im Internet der Dealfinder angezeigt. Wie bekomme ich den weg? Die Logs (kein Programm findet etwas!!)
Malwarebytes vom 28.Juni Code:
Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org
Datenbank Version: v2013.06.27.09
Windows 8 x64 NTFS
Internet Explorer 10.0.9200.16599
Rupert :: RUPERTSPC [Administrator]
28.06.2013 00:19:46
mbam-log-2013-06-28 (00-19-46).txt
Art des Suchlaufs: Quick-Scan
Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM
Deaktivierte Suchlaufeinstellungen: P2P
Durchsuchte Objekte: 229700
Laufzeit: 2 Minute(n), 19 Sekunde(n)
Infizierte Speicherprozesse: 0
(Keine bösartigen Objekte gefunden)
Infizierte Speichermodule: 0
(Keine bösartigen Objekte gefunden)
Infizierte Registrierungsschlüssel: 0
(Keine bösartigen Objekte gefunden)
Infizierte Registrierungswerte: 0
(Keine bösartigen Objekte gefunden)
Infizierte Dateiobjekte der Registrierung: 0
(Keine bösartigen Objekte gefunden)
Infizierte Verzeichnisse: 0
(Keine bösartigen Objekte gefunden)
Infizierte Dateien: 0
(Keine bösartigen Objekte gefunden)
(Ende) Malwarebytes vom 4. Juli Code:
Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org
Datenbank Version: v2013.06.27.09
Windows 8 x64 NTFS
Internet Explorer 10.0.9200.16599
Rupert :: RUPERTSPC [Administrator]
04.07.2013 00:02:20
mbam-log-2013-07-04 (00-02-20).txt
Art des Suchlaufs: Quick-Scan
Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM
Deaktivierte Suchlaufeinstellungen: P2P
Durchsuchte Objekte: 230342
Laufzeit: 2 Minute(n), 53 Sekunde(n)
Infizierte Speicherprozesse: 0
(Keine bösartigen Objekte gefunden)
Infizierte Speichermodule: 0
(Keine bösartigen Objekte gefunden)
Infizierte Registrierungsschlüssel: 0
(Keine bösartigen Objekte gefunden)
Infizierte Registrierungswerte: 0
(Keine bösartigen Objekte gefunden)
Infizierte Dateiobjekte der Registrierung: 0
(Keine bösartigen Objekte gefunden)
Infizierte Verzeichnisse: 0
(Keine bösartigen Objekte gefunden)
Infizierte Dateien: 0
(Keine bösartigen Objekte gefunden)
(Ende) ADW Cleaner:
LOG 1 25.Juni
AdwCleaner Logfile: Code:
# AdwCleaner v2.303 - Datei am 25/06/2013 um 21:55:30 erstellt
# Aktualisiert am 08/06/2013 von Xplode
# Betriebssystem : Windows 8 (64 bits)
# Benutzer : Rupert - RUPERTSPC
# Bootmodus : Normal
# Ausgeführt unter : E:\Ruperts laptop backup\Users\Rupert\Desktop\adwcleaner.exe
# Option [Löschen]
**** [Dienste] ****
***** [Dateien / Ordner] *****
Ordner Gelöscht : C:\Program Files (x86)\Iminent
Ordner Gelöscht : C:\Users\Rupert\AppData\Local\Google\Chrome\User Data\Default\Extensions\aiennapmieppnpfhhogglccgepbdajan
Ordner Gelöscht : C:\Users\Rupert\AppData\Roaming\Iminent
***** [Registrierungsdatenbank] *****
Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\Crossrider
Schlüssel Gelöscht : HKCU\Software\FoxyDeal
Schlüssel Gelöscht : HKCU\Software\Iminent
Schlüssel Gelöscht : HKCU\Software\InstalledBrowserExtensions
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CrossriderApp0033434.BHO
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CrossriderApp0033434.BHO.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CrossriderApp0033434.Sandbox
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CrossriderApp0033434.Sandbox.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{2BF2028E-3F3C-4C05-AB45-B2F1DCFE0759}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440344344434}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{DB538320-D3C5-433C-BCA9-C4081A054FCF}
Schlüssel Gelöscht : HKLM\Software\Iminent
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{02054E11-5113-4BE3-8153-AA8DFB5D3761}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{11111111-1111-1111-1111-110311341134}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{22222222-2222-2222-2222-220322342234}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{55555555-5555-5555-5555-550355345534}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{66666666-6666-6666-6666-660366346634}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68B81CCD-A80C-4060-8947-5AE69ED01199}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B969FB-6D33-48D2-9061-8BBD4899EB08}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311341134}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\SearchTheWebARP
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550355345534}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660366346634}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}
***** [Internet Browser] *****
-\\ Internet Explorer v10.0.9200.16537
[OK] Die Registrierungsdatenbank ist sauber.
-\\ Google Chrome v27.0.1453.116
Datei : C:\Users\Rupert\AppData\Local\Google\Chrome\User Data\Default\Preferences
[OK] Die Datei ist sauber.
*************************
AdwCleaner[S1].txt - [11762 octets] - [25/06/2013 21:55:30]
########## EOF - C:\AdwCleaner[S1].txt - [11823 octets] ########## --- --- ---
LOG 2 4.Juli
AdwCleaner Logfile: Code:
# AdwCleaner v2.304 - Datei am 04/07/2013 um 00:06:05 erstellt
# Aktualisiert am 03/07/2013 von Xplode
# Betriebssystem : Windows 8 (64 bits)
# Benutzer : Rupert - RUPERTSPC
# Bootmodus : Normal
# Ausgeführt unter : C:\Users\Rupert\Downloads\adwcleaner.exe
# Option [Löschen]
**** [Dienste] ****
Gestoppt & Gelöscht : SystemStoreService
***** [Dateien / Ordner] *****
Ordner Gelöscht : C:\Program Files (x86)\SoftwareUpdater
Ordner Gelöscht : C:\Users\Rupert\AppData\Local\Google\Chrome\User Data\Default\Extensions\aiennapmieppnpfhhogglccgepbdajan
***** [Registrierungsdatenbank] *****
***** [Internet Browser] *****
-\\ Internet Explorer v10.0.9200.16537
[OK] Die Registrierungsdatenbank ist sauber.
-\\ Mozilla Firefox v22.0 (de)
Datei : C:\Users\Rupert\AppData\Roaming\Mozilla\Firefox\Profiles\9hmfohks.default\prefs.js
[OK] Die Datei ist sauber.
-\\ Google Chrome v27.0.1453.116
Datei : C:\Users\Rupert\AppData\Local\Google\Chrome\User Data\Default\Preferences
[OK] Die Datei ist sauber.
*************************
AdwCleaner[S1].txt - [11803 octets] - [26/06/2013 06:55:30]
AdwCleaner[S2].txt - [1140 octets] - [04/07/2013 00:06:05]
########## EOF - C:\AdwCleaner[S2].txt - [1200 octets] ########## --- --- ---
Junware removal Tool findet auch nichts:
JRT Logfile: Code:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 4.9.4 (05.06.2013:1)
OS: Windows 8 x64
Ran by Rupert on 04.07.2013 at 0:27:45,91
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
~~~ Files
~~~ Folders
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 04.07.2013 at 0:31:00,84
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ --- --- ---
TDSS Killer Code:
01:00:58.0651 15516 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
01:00:58.0651 15516 UEFI system
01:00:59.0091 15516 ============================================================
01:00:59.0091 15516 Current date / time: 2013/07/04 01:00:59.0091
01:00:59.0091 15516 SystemInfo:
01:00:59.0091 15516
01:00:59.0091 15516 OS Version: 6.2.9200 ServicePack: 0.0
01:00:59.0091 15516 Product type: Workstation
01:00:59.0091 15516 ComputerName: RUPERTSPC
01:00:59.0091 15516 UserName: Rupert
01:00:59.0091 15516 Windows directory: C:\Windows
01:00:59.0091 15516 System windows directory: C:\Windows
01:00:59.0091 15516 Running under WOW64
01:00:59.0091 15516 Processor architecture: Intel x64
01:00:59.0091 15516 Number of processors: 8
01:00:59.0091 15516 Page size: 0x1000
01:00:59.0091 15516 Boot type: Normal boot
01:00:59.0091 15516 ============================================================
01:00:59.0619 15516 Drive \Device\Harddisk0\DR0 - Size: 0xAEA8CDE000 (698.64 Gb), SectorSize: 0x200, Cylinders: 0x16441, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
01:00:59.0629 15516 Drive \Device\Harddisk1\DR1 - Size: 0x7745D6000 (29.82 Gb), SectorSize: 0x200, Cylinders: 0xF34, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
01:00:59.0632 15516 Drive \Device\Harddisk2\DR2 - Size: 0x15D50F66000 (1397.27 Gb), SectorSize: 0x200, Cylinders: 0x2C881, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
01:00:59.0633 15516 ============================================================
01:00:59.0633 15516 \Device\Harddisk0\DR0:
01:00:59.0634 15516 GPT partitions:
01:00:59.0634 15516 \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {4E7CDD1D-5219-468C-865E-E42221C0A4E5}, Name: , StartLBA 0x22, BlocksNum 0x81FDE
01:00:59.0634 15516 \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {32314658-E2C1-47BD-81D2-D0DE04228537}, Name: Microsoft reserved partition, StartLBA 0x82000, BlocksNum 0x40000
01:00:59.0635 15516 \Device\Harddisk0\DR0\Partition3: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {FB05EE6C-B336-4410-91F1-B0E3C49BBD89}, Name: , StartLBA 0xC2000, BlocksNum 0x573D5000
01:00:59.0635 15516 \Device\Harddisk0\DR0\Partition4: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {06FDACA6-1BD4-48F0-AC6E-E1E9ED45497B}, Name: , StartLBA 0x57497000, BlocksNum 0xAF000
01:00:59.0635 15516 MBR partitions:
01:00:59.0635 15516 \Device\Harddisk1\DR1:
01:00:59.0635 15516 GPT partitions:
01:00:59.0635 15516 \Device\Harddisk1\DR1\Partition1: GPT, TypeGUID: {D3BFE2DE-3DAF-11DF-BA40-E3A556D89593}, UniqueGUID: {F031536F-39F4-4E26-BCCA-2C5B2A0C2297}, Name: Basic data partition, StartLBA 0x800, BlocksNum 0xFFF000
01:00:59.0635 15516 MBR partitions:
01:00:59.0635 15516 \Device\Harddisk2\DR2:
01:00:59.0636 15516 MBR partitions:
01:00:59.0636 15516 \Device\Harddisk2\DR2\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0xAEA87AF1
01:00:59.0636 15516 ============================================================
01:00:59.0659 15516 C: <-> \Device\Harddisk0\DR0\Partition3
01:00:59.0958 15516 E: <-> \Device\Harddisk2\DR2\Partition1
01:00:59.0958 15516 ============================================================
01:00:59.0958 15516 Initialize success
01:00:59.0958 15516 ============================================================
01:02:38.0446 15536 ============================================================
01:02:38.0446 15536 Scan started
01:02:38.0446 15536 Mode: Manual; SigCheck; TDLFS;
01:02:38.0446 15536 ============================================================
01:02:39.0618 15536 ================ Scan system memory ========================
01:02:39.0618 15536 System memory - ok
01:02:39.0618 15536 ================ Scan services =============================
01:02:39.0728 15536 [ E890C46E4754F0DF51BAFCC8D2E07498 ] 1394ohci C:\Windows\System32\drivers\1394ohci.sys
01:02:39.0774 15536 1394ohci - ok
01:02:39.0774 15536 [ 4F18D4C7EA14F11A7211F60D553C03DB ] 3ware C:\Windows\system32\drivers\3ware.sys
01:02:39.0790 15536 3ware - ok
01:02:39.0821 15536 [ 975AABEB243B800C23626D6B652C5A9C ] ACPI C:\Windows\system32\drivers\ACPI.sys
01:02:39.0837 15536 ACPI - ok
01:02:39.0837 15536 [ DC968C37822117E576B933F34A2D130C ] acpiex C:\Windows\system32\Drivers\acpiex.sys
01:02:39.0853 15536 acpiex - ok
01:02:39.0853 15536 [ 0CA9F7C3A78227C21A0A7854E245CFB2 ] acpipagr C:\Windows\System32\drivers\acpipagr.sys
01:02:39.0884 15536 acpipagr - ok
01:02:39.0884 15536 [ 8EB8DA03B142D3DD1EB9ED8107A76C43 ] AcpiPmi C:\Windows\System32\drivers\acpipmi.sys
01:02:39.0899 15536 AcpiPmi - ok
01:02:39.0899 15536 [ CBCE725C5D86ABA7D2604E22951AA9B8 ] acpitime C:\Windows\System32\drivers\acpitime.sys
01:02:39.0915 15536 acpitime - ok
01:02:39.0946 15536 [ 93C6388592B99925C1D1576E465BC80F ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
01:02:39.0962 15536 adp94xx - ok
01:02:39.0978 15536 [ D27763E0247292654E7F7D16444C7C72 ] adpahci C:\Windows\system32\drivers\adpahci.sys
01:02:39.0993 15536 adpahci - ok
01:02:40.0009 15536 [ 67B90070FF48F794AF19F9FCF0080D75 ] adpu320 C:\Windows\system32\drivers\adpu320.sys
01:02:40.0009 15536 adpu320 - ok
01:02:40.0040 15536 [ 974AE60BF5B90E31412D93596C968E5B ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
01:02:40.0071 15536 AeLookupSvc - ok
01:02:40.0103 15536 [ 36D6A3201721558A8AFBCC09C2DA4C2C ] AFD C:\Windows\system32\drivers\afd.sys
01:02:40.0149 15536 AFD - ok
01:02:40.0149 15536 [ 01590377A5AB19E792528C628A2A68F9 ] agp440 C:\Windows\system32\drivers\agp440.sys
01:02:40.0165 15536 agp440 - ok
01:02:40.0243 15536 [ 3439DE51D888039DAF7A180219A40A6C ] akw8x64 C:\Windows\system32\DRIVERS\akw8x64.sys
01:02:40.0353 15536 akw8x64 - ok
01:02:40.0368 15536 [ D1BE8E6E5B3AF23A4393AF1BF867977A ] ALG C:\Windows\System32\alg.exe
01:02:40.0399 15536 ALG - ok
01:02:40.0415 15536 [ 025E8C755BE293E50854D26D1BBE5133 ] AllUserInstallAgent C:\Windows\system32\AUInstallAgent.dll
01:02:40.0431 15536 AllUserInstallAgent - ok
01:02:40.0462 15536 [ 5A81054B824004B1ECC04F0034A1CDF9 ] AmdK8 C:\Windows\System32\drivers\amdk8.sys
01:02:40.0493 15536 AmdK8 - ok
01:02:40.0509 15536 [ B849D453E644FAB9BC8EF6DC8CA9C4C6 ] AmdPPM C:\Windows\System32\drivers\amdppm.sys
01:02:40.0509 15536 AmdPPM - ok
01:02:40.0540 15536 [ 35A0EB5AECB0FA3C41A2FB514A562304 ] amdsata C:\Windows\system32\drivers\amdsata.sys
01:02:40.0540 15536 amdsata - ok
01:02:40.0556 15536 [ 00452671904F5EE94B50BF0219C97164 ] amdsbs C:\Windows\system32\drivers\amdsbs.sys
01:02:40.0571 15536 amdsbs - ok
01:02:40.0571 15536 [ EA3FFE53E92E59C87E3ECA9BEB20D9B7 ] amdxata C:\Windows\system32\drivers\amdxata.sys
01:02:40.0587 15536 amdxata - ok
01:02:40.0587 15536 [ 83B3682CE922FB0F415734B26D9D6233 ] AppID C:\Windows\system32\drivers\appid.sys
01:02:40.0603 15536 AppID - ok
01:02:40.0634 15536 [ CE2BEAD7F31816FF0AC490D048C969F9 ] AppIDSvc C:\Windows\System32\appidsvc.dll
01:02:40.0649 15536 AppIDSvc - ok
01:02:40.0665 15536 [ 4F750B7EFCB6520AE01E01D082D7D476 ] Appinfo C:\Windows\System32\appinfo.dll
01:02:40.0696 15536 Appinfo - ok
01:02:40.0759 15536 [ 4FE5C6D40664AE07BE5105874357D2ED ] Apple Mobile Device C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
01:02:40.0774 15536 Apple Mobile Device - ok
01:02:40.0790 15536 [ E933401B392387F4BE34DE8BAF1722A7 ] arc C:\Windows\system32\drivers\arc.sys
01:02:40.0806 15536 arc - ok
01:02:40.0821 15536 [ 07CA323EF2E8247A568AB0F3662AD644 ] arcsas C:\Windows\system32\drivers\arcsas.sys
01:02:40.0837 15536 arcsas - ok
01:02:40.0837 15536 [ 74DBAEC35366C4EE7670428808715A6A ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
01:02:40.0853 15536 AsyncMac - ok
01:02:40.0853 15536 [ A721FF570C2387E383BDDEA9632863C9 ] atapi C:\Windows\system32\drivers\atapi.sys
01:02:40.0868 15536 atapi - ok
01:02:40.0915 15536 [ 51B7849747A0582096A41A366454E88E ] AtherosSvc C:\Windows\system32\AdminService.exe
01:02:40.0915 15536 AtherosSvc - ok
01:02:40.0946 15536 [ BCD7A47EF587DC00DD61D12D9C2D1E44 ] AudioEndpointBuilder C:\Windows\System32\AudioEndpointBuilder.dll
01:02:40.0978 15536 AudioEndpointBuilder - ok
01:02:40.0993 15536 [ 810F30FF8490ED5ED510621DF10DE320 ] Audiosrv C:\Windows\System32\Audiosrv.dll
01:02:41.0025 15536 Audiosrv - ok
01:02:41.0056 15536 [ C6CDA4E093DD3B2977F87DA498827FCB ] AVP C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe
01:02:41.0071 15536 AVP - ok
01:02:41.0103 15536 [ 89491EF71D5EA011127832C588002853 ] AxInstSV C:\Windows\System32\AxInstSV.dll
01:02:41.0118 15536 AxInstSV - ok
01:02:41.0134 15536 [ 87AB5BB072A3F128541D5B815F82FFDD ] b06bdrv C:\Windows\system32\drivers\bxvbda.sys
01:02:41.0165 15536 b06bdrv - ok
01:02:41.0228 15536 [ 81703BC5D68DEDBB086C2368FBE7B334 ] BasicDisplay C:\Windows\System32\drivers\BasicDisplay.sys
01:02:41.0243 15536 BasicDisplay - ok
01:02:41.0259 15536 [ 5EC68164E14D25675C98BBB5F09E8606 ] BasicRender C:\Windows\System32\drivers\BasicRender.sys
01:02:41.0290 15536 BasicRender - ok
01:02:41.0306 15536 [ 89143A7BA7850F5C7E61B43BB44B6418 ] BDESVC C:\Windows\System32\bdesvc.dll
01:02:41.0337 15536 BDESVC - ok
01:02:41.0353 15536 [ 9E7AEA59776D904607985AFFE7E5E183 ] Beep C:\Windows\system32\drivers\Beep.sys
01:02:41.0368 15536 Beep - ok
01:02:41.0400 15536 [ 9E6A544F465C582AB42444A217CF04DC ] BFE C:\Windows\System32\bfe.dll
01:02:41.0415 15536 BFE - ok
01:02:41.0446 15536 [ D598C44A7072D3108D8D8102EC5E07F7 ] BITS C:\Windows\System32\qmgr.dll
01:02:41.0478 15536 BITS - ok
01:02:41.0540 15536 [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
01:02:41.0571 15536 Bonjour Service - ok
01:02:41.0587 15536 [ B17AC10B47C7FCB44D22A1F06415840E ] bowser C:\Windows\system32\DRIVERS\bowser.sys
01:02:41.0603 15536 bowser - ok
01:02:41.0634 15536 [ 038FA1B55531E7020DB705B42FCCE373 ] BrokerInfrastructure C:\Windows\System32\bisrv.dll
01:02:41.0650 15536 BrokerInfrastructure - ok
01:02:41.0681 15536 [ 310068BDA80B1D55C36580FD8A873FAF ] Browser C:\Windows\System32\browser.dll
01:02:41.0712 15536 Browser - ok
01:02:41.0759 15536 [ 8C816EBE14B24CD9CFBE94254D92A89A ] BtFilter C:\Windows\system32\DRIVERS\btfilter.sys
01:02:41.0806 15536 BtFilter - ok
01:02:41.0837 15536 [ F17DEEAC7D51D44CF1BFF8DD4F0A2B6D ] BthAvrcpTg C:\Windows\System32\drivers\BthAvrcpTg.sys
01:02:41.0853 15536 BthAvrcpTg - ok
01:02:41.0868 15536 [ A8B20D852B07AE19A13B5D47EC4E4C3B ] BthEnum C:\Windows\System32\drivers\BthEnum.sys
01:02:41.0884 15536 BthEnum - ok
01:02:41.0915 15536 [ 616EB8748C988AEE98D93DA141C3D3B4 ] BthHFEnum C:\Windows\System32\drivers\bthhfenum.sys
01:02:41.0931 15536 BthHFEnum - ok
01:02:41.0946 15536 [ DCB4EBD928A6FB368BE6CAE522412DE1 ] bthhfhid C:\Windows\System32\drivers\BthHFHid.sys
01:02:41.0962 15536 bthhfhid - ok
01:02:41.0978 15536 [ 42201C346F0B8C458E1E9CDE04D68A2C ] BthLEEnum C:\Windows\system32\DRIVERS\BthLEEnum.sys
01:02:42.0009 15536 BthLEEnum - ok
01:02:42.0009 15536 [ 033916CE8784A848B9A3D686B7F66D97 ] BTHMODEM C:\Windows\System32\drivers\bthmodem.sys
01:02:42.0025 15536 BTHMODEM - ok
01:02:42.0040 15536 [ 091BB978E9504D0AD14586929431A957 ] BthPan C:\Windows\system32\DRIVERS\bthpan.sys
01:02:42.0071 15536 BthPan - ok
01:02:42.0087 15536 [ 13795CAA34239D97A7211E7F9D96E012 ] BTHPORT C:\Windows\System32\Drivers\BTHport.sys
01:02:42.0118 15536 BTHPORT - ok
01:02:42.0134 15536 [ A4387C3D271959313E2577DB7BE8BA7A ] bthserv C:\Windows\system32\bthserv.dll
01:02:42.0150 15536 bthserv - ok
01:02:42.0165 15536 [ 1F715957F5236D30B6020A19A4271F6A ] BTHUSB C:\Windows\System32\Drivers\BTHUSB.sys
01:02:42.0181 15536 BTHUSB - ok
01:02:42.0196 15536 [ 990B1BABE6E81FB18E65A87EBEFB1772 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
01:02:42.0212 15536 cdfs - ok
01:02:42.0228 15536 [ 339BFF85D788268752DA8C9644B188EE ] cdrom C:\Windows\System32\drivers\cdrom.sys
01:02:42.0243 15536 cdrom - ok
01:02:42.0259 15536 [ BAF8F0F55BC300E5F882E521F054E345 ] CertPropSvc C:\Windows\System32\certprop.dll
01:02:42.0275 15536 CertPropSvc - ok
01:02:42.0290 15536 [ F64B7D1A37CC1D5F421D5359EEC81E2E ] circlass C:\Windows\System32\drivers\circlass.sys
01:02:42.0321 15536 circlass - ok
01:02:42.0353 15536 [ 9905168708DB68849B879B5548F68AB3 ] CLFS C:\Windows\system32\drivers\CLFS.sys
01:02:42.0384 15536 CLFS - ok
01:02:42.0384 15536 [ 2DC8538A2260647484A6C921CA837313 ] CmBatt C:\Windows\System32\drivers\CmBatt.sys
01:02:42.0415 15536 CmBatt - ok
01:02:42.0431 15536 [ E708BFF0473EC6B271EA46B65B16CA56 ] CNG C:\Windows\system32\Drivers\cng.sys
01:02:42.0446 15536 CNG - ok
01:02:42.0462 15536 [ 0E5B1E9E7122EDAAF1F6CE047965CA92 ] CompositeBus C:\Windows\System32\drivers\CompositeBus.sys
01:02:42.0509 15536 CompositeBus - ok
01:02:42.0509 15536 COMSysApp - ok
01:02:42.0525 15536 [ D9CB0782AF819548072AA45B70F8B22D ] condrv C:\Windows\system32\drivers\condrv.sys
01:02:42.0540 15536 condrv - ok
01:02:42.0665 15536 [ 815F3180B5117E42E422188E9CCC89C6 ] cphs C:\Windows\SysWow64\IntelCpHeciSvc.exe
01:02:42.0696 15536 cphs - ok
01:02:42.0712 15536 [ AFA426B0E7975CEB21F8B6711EFA8945 ] CryptSvc C:\Windows\system32\cryptsvc.dll
01:02:42.0743 15536 CryptSvc - ok
01:02:42.0759 15536 [ 8128B65589C944622D6809C144972ECF ] CSCrySec C:\Windows\system32\DRIVERS\CSCrySec.sys
01:02:42.0775 15536 CSCrySec - ok
01:02:42.0837 15536 [ 0F9FE82E229C039F0AC1996E44059653 ] CSObjectsSrv C:\Program Files (x86)\Common Files\InfoWatch\CryptoStorage\ProtectedObjectsSrv.exe
01:02:42.0868 15536 CSObjectsSrv - ok
01:02:42.0868 15536 [ A6B7212B3735C7B4ABD602E78573F970 ] CSVirtualDiskDrv C:\Windows\system32\DRIVERS\CSVirtualDiskDrv.sys
01:02:42.0884 15536 CSVirtualDiskDrv - ok
01:02:42.0915 15536 [ 019DCE6591D10227AFB76DB8BDFA477F ] dam C:\Windows\system32\drivers\dam.sys
01:02:42.0915 15536 dam - ok
01:02:42.0946 15536 [ 1EC6E533C954BDDF2A37E7851A7E58FD ] DcomLaunch C:\Windows\system32\rpcss.dll
01:02:42.0978 15536 DcomLaunch - ok
01:02:43.0009 15536 [ C8650D1F61149AA546BDBC99172EBBC1 ] defragsvc C:\Windows\System32\defragsvc.dll
01:02:43.0025 15536 defragsvc - ok
01:02:43.0040 15536 [ 5EAEF67AE2AF4D2DC664B649DB7B2E16 ] DeviceAssociationService C:\Windows\system32\das.dll
01:02:43.0071 15536 DeviceAssociationService - ok
01:02:43.0087 15536 [ 799BE46D45D486704CE0F37CA5385262 ] DeviceInstall C:\Windows\system32\umpnpmgr.dll
01:02:43.0134 15536 DeviceInstall - ok
01:02:43.0150 15536 [ 09D9EB9E7898F8E6561473A20CC808B9 ] Dfsc C:\Windows\system32\Drivers\dfsc.sys
01:02:43.0150 15536 Dfsc - ok
01:02:43.0196 15536 [ 9E0E72222264745ADEB0E5AC680B0ED6 ] Dhcp C:\Windows\system32\dhcpcore.dll
01:02:43.0196 15536 Dhcp - ok
01:02:43.0212 15536 [ 3C736FAE17BA6F91BA37594AAB139CD0 ] discache C:\Windows\system32\drivers\discache.sys
01:02:43.0228 15536 discache - ok
01:02:43.0228 15536 [ 560495FF4CA22E1D9B1972FA18F43B6F ] disk C:\Windows\system32\drivers\disk.sys
01:02:43.0243 15536 disk - ok
01:02:43.0243 15536 [ 82A7C72593793FE1EADA7A305BD1567A ] dmvsc C:\Windows\System32\drivers\dmvsc.sys
01:02:43.0275 15536 dmvsc - ok
01:02:43.0290 15536 [ 066B9710B36AB550E01EEFCA52155968 ] Dnscache C:\Windows\System32\dnsrslvr.dll
01:02:43.0306 15536 Dnscache - ok
01:02:43.0322 15536 [ 9949AD2ABA168A618D46C799D6CC898C ] dot3svc C:\Windows\System32\dot3svc.dll
01:02:43.0353 15536 dot3svc - ok
01:02:43.0368 15536 [ 109FC3F80BF4F4DC5A071058074F13C1 ] DPS C:\Windows\system32\dps.dll
01:02:43.0384 15536 DPS - ok
01:02:43.0400 15536 [ 9C7C183F937951AE17C5B8B3259CF3FF ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
01:02:43.0415 15536 drmkaud - ok
01:02:43.0431 15536 [ BF48F32EE248C3D371DA5DC93BBEADA7 ] DsmSvc C:\Windows\System32\DeviceSetupManager.dll
01:02:43.0462 15536 DsmSvc - ok
01:02:43.0540 15536 [ 6D1B8A9A2C0BD4851D8AF1AB43E67AD9 ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
01:02:43.0634 15536 DXGKrnl - ok
01:02:43.0665 15536 [ 58BA473DD88F5FC1932282BA683AA03E ] Eaphost C:\Windows\System32\eapsvc.dll
01:02:43.0712 15536 Eaphost - ok
01:02:43.0775 15536 [ 5AB97B3282D7D6114949D1EB5C8598E4 ] ebdrv C:\Windows\system32\drivers\evbda.sys
01:02:43.0868 15536 ebdrv - ok
01:02:43.0900 15536 [ F702AB6181513303AB0FC8D59E52708B ] EFS C:\Windows\System32\lsass.exe
01:02:43.0931 15536 EFS - ok
01:02:43.0947 15536 [ 66D60BD9A4C05616ABECA2A901475098 ] EhStorClass C:\Windows\system32\drivers\EhStorClass.sys
01:02:43.0947 15536 EhStorClass - ok
01:02:43.0962 15536 [ A61D0F543024E458C0FE32352E1978E2 ] EhStorTcgDrv C:\Windows\system32\drivers\EhStorTcgDrv.sys
01:02:43.0978 15536 EhStorTcgDrv - ok
01:02:43.0978 15536 [ D790D058D67582DB9C84C2D33695FE6B ] ErrDev C:\Windows\System32\drivers\errdev.sys
01:02:43.0993 15536 ErrDev - ok
01:02:44.0040 15536 [ F9E01C2D9F8BC049E04CF5DC24A5F638 ] EventSystem C:\Windows\system32\es.dll
01:02:44.0072 15536 EventSystem - ok
01:02:44.0087 15536 [ 7A4D6FEB8C52B3FE855E4DCDF9107E03 ] exfat C:\Windows\system32\drivers\exfat.sys
01:02:44.0118 15536 exfat - ok
01:02:44.0118 15536 [ 60996602A7111FD2D086E803F33E4282 ] fastfat C:\Windows\system32\drivers\fastfat.sys
01:02:44.0134 15536 fastfat - ok
01:02:44.0150 15536 [ F0E7F8382ED5E138B0DFA4CB5058BCFE ] Fax C:\Windows\system32\fxssvc.exe
01:02:44.0181 15536 Fax - ok
01:02:44.0181 15536 [ 73B2D11DF0B6E03A0CB0323218ACB3E4 ] fdc C:\Windows\System32\drivers\fdc.sys
01:02:44.0197 15536 fdc - ok
01:02:44.0212 15536 [ 0828E3E7BD77C89149EAD3232BFD38DB ] fdPHost C:\Windows\system32\fdPHost.dll
01:02:44.0243 15536 fdPHost - ok
01:02:44.0259 15536 [ 872506AAB591E8908DF4461475AF92DF ] FDResPub C:\Windows\system32\fdrespub.dll
01:02:44.0290 15536 FDResPub - ok
01:02:44.0322 15536 [ 0588950D93A426F97C7AAADB1A9B0458 ] fhsvc C:\Windows\system32\fhsvc.dll
01:02:44.0337 15536 fhsvc - ok
01:02:44.0368 15536 [ 88A9EBACD1058ABB237A6B4E96E7F397 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
01:02:44.0368 15536 FileInfo - ok
01:02:44.0384 15536 [ 9E4EE3A0B00FF7D5F42A4AF9744CBA02 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
01:02:44.0400 15536 Filetrace - ok
01:02:44.0462 15536 [ B1D4C168FF7B8579E3745888658FFB1D ] flpydisk C:\Windows\System32\drivers\flpydisk.sys
01:02:44.0493 15536 flpydisk - ok
01:02:44.0509 15536 [ B33EC133AE4E6C1881D2302D93D2467D ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
01:02:44.0525 15536 FltMgr - ok
01:02:44.0572 15536 [ 0BCDC0FF11B984162B0CF0FF6E9E0146 ] FontCache C:\Windows\system32\FntCache.dll
01:02:44.0775 15536 FontCache - ok
01:02:44.0822 15536 [ 0B56259F5611787222A04A8F254E51D4 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
01:02:44.0853 15536 FontCache3.0.0.0 - ok
01:02:44.0868 15536 [ A5F7873A39E4E9FAAAE59B7E9E36B705 ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
01:02:44.0884 15536 FsDepends - ok
01:02:44.0900 15536 [ A6DD7D491F587F4BC13FB972977DC8E8 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
01:02:44.0931 15536 Fs_Rec - ok
01:02:44.0947 15536 [ FA228F4BB10DC7ED7E7D131C034E2331 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
01:02:44.0978 15536 fvevol - ok
01:02:44.0993 15536 [ A969D92973DFA895E7776B4BFE36DBB2 ] FxPPM C:\Windows\System32\drivers\fxppm.sys
01:02:45.0009 15536 FxPPM - ok
01:02:45.0025 15536 [ 52BC441E07A827EBAB70CDC7EAEDB28D ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
01:02:45.0040 15536 gagp30kx - ok
01:02:45.0056 15536 [ 8E98D21EE06192492A5671A6144D092F ] GEARAspiWDM C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
01:02:45.0072 15536 GEARAspiWDM - ok
01:02:45.0103 15536 [ 721F8EEF5E9747F32670DEFF7FB92541 ] gencounter C:\Windows\System32\drivers\vmgencounter.sys
01:02:45.0103 15536 gencounter - ok
01:02:45.0118 15536 [ CA18ECFCFFDD638ECE80799A9056B238 ] GPIOClx0101 C:\Windows\system32\Drivers\msgpioclx.sys
01:02:45.0134 15536 GPIOClx0101 - ok
01:02:45.0181 15536 [ 5358678C6370F2ADC5291849F6503262 ] gpsvc C:\Windows\System32\gpsvc.dll
01:02:45.0228 15536 gpsvc - ok
01:02:45.0259 15536 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
01:02:45.0275 15536 gupdate - ok
01:02:45.0290 15536 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
01:02:45.0290 15536 gupdatem - ok
01:02:45.0322 15536 [ C2504AA983B5D411F7D31402E8B57725 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
01:02:45.0337 15536 HdAudAddService - ok
01:02:45.0353 15536 [ 7D87B5B6C7188D553E11B59DC7F0B111 ] HDAudBus C:\Windows\System32\drivers\HDAudBus.sys
01:02:45.0368 15536 HDAudBus - ok
01:02:45.0400 15536 [ 3F76BBA53D65E85A7F53E7A71082082C ] HidBatt C:\Windows\System32\drivers\HidBatt.sys
01:02:45.0415 15536 HidBatt - ok
01:02:45.0431 15536 [ 085F150D002B7F0153D3C06DDF33A143 ] HidBth C:\Windows\System32\drivers\hidbth.sys
01:02:45.0431 15536 HidBth - ok
01:02:45.0447 15536 [ CC4A07E51D89575CAB6F4EB590D87CD4 ] hidi2c C:\Windows\System32\drivers\hidi2c.sys
01:02:45.0462 15536 hidi2c - ok
01:02:45.0462 15536 [ DC96F7DACB777CDEAEF9958A50BFDA06 ] HidIr C:\Windows\System32\drivers\hidir.sys
01:02:45.0478 15536 HidIr - ok
01:02:45.0493 15536 [ FAC37D7B3D6354A5A5E19A45B50B4008 ] hidserv C:\Windows\system32\hidserv.dll
01:02:45.0509 15536 hidserv - ok
01:02:45.0540 15536 [ 012C354B4AB48E9A7A657DF39E3A2073 ] HidUsb C:\Windows\System32\drivers\hidusb.sys
01:02:45.0540 15536 HidUsb - ok
01:02:45.0572 15536 [ 43F884B61A24377567CD0FEB35236334 ] hkmsvc C:\Windows\system32\kmsvc.dll
01:02:45.0587 15536 hkmsvc - ok
01:02:45.0619 15536 [ 33DFC14DFDCCFA7AA10E392F6A8EC1CF ] HomeGroupListener C:\Windows\system32\ListSvc.dll
01:02:45.0634 15536 HomeGroupListener - ok
01:02:45.0665 15536 [ E0D9F6FE18FA7F53ADD29AF719CE2B7E ] HomeGroupProvider C:\Windows\system32\provsvc.dll
01:02:45.0697 15536 HomeGroupProvider - ok
01:02:45.0712 15536 [ 64DB7A8D97CA53DCCF93D0A1E08342CF ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
01:02:45.0728 15536 HpSAMD - ok
01:02:45.0744 15536 [ F4A91D985EB9D1D2717D538F3424603C ] HTTP C:\Windows\system32\drivers\HTTP.sys
01:02:45.0775 15536 HTTP - ok
01:02:45.0790 15536 [ 2A98301068801700906C06649860FE94 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
01:02:45.0806 15536 hwpolicy - ok
01:02:45.0806 15536 [ DC76901D82097C9E297F20C287CB9A27 ] hyperkbd C:\Windows\System32\drivers\hyperkbd.sys
01:02:45.0822 15536 hyperkbd - ok
01:02:45.0822 15536 [ 716413AB3CA12DE0A7222D28C1C9352C ] HyperVideo C:\Windows\system32\DRIVERS\HyperVideo.sys
01:02:45.0837 15536 HyperVideo - ok
01:02:45.0853 15536 [ C9E9CBF73AFFBFE3E801EFB516787BA3 ] i8042prt C:\Windows\System32\drivers\i8042prt.sys
01:02:45.0869 15536 i8042prt - ok
01:02:45.0900 15536 [ 459016E8A4FA6426EDB5A9456A6E5E58 ] iaStorA C:\Windows\system32\drivers\iaStorA.sys
01:02:45.0915 15536 iaStorA - ok
01:02:45.0931 15536 [ 5E394EBD26FD68AA9300332C46BEDD62 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
01:02:45.0947 15536 iaStorV - ok
01:02:46.0056 15536 [ ACD1812E8A531E1CEA09BA3991371E48 ] IconMan_R C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
01:02:46.0134 15536 IconMan_R - ok
01:02:46.0259 15536 [ 348214F96642FD4FEF630DE021BA3540 ] igfx C:\Windows\system32\DRIVERS\igdkmd64.sys
01:02:46.0384 15536 igfx - ok
01:02:46.0400 15536 [ 24847A06B84339FEEDE5CABF3D27D320 ] iirsp C:\Windows\system32\drivers\iirsp.sys
01:02:46.0400 15536 iirsp - ok
01:02:46.0431 15536 [ 531B5A98145DA689741A0AC18F14EA94 ] IKEEXT C:\Windows\System32\ikeext.dll
01:02:46.0478 15536 IKEEXT - ok
01:02:46.0494 15536 [ 4F37726CF764CA18A8A84F85EF3A7F24 ] intelide C:\Windows\system32\drivers\intelide.sys
01:02:46.0509 15536 intelide - ok
01:02:46.0525 15536 [ E15CDF68DD73423F15D4AC404793AF0D ] intelppm C:\Windows\System32\drivers\intelppm.sys
01:02:46.0540 15536 intelppm - ok
01:02:46.0540 15536 [ 8FCA66234A0933D796BB780B7953BAB9 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
01:02:46.0572 15536 IpFilterDriver - ok
01:02:46.0603 15536 [ C217B8D2E58C57A319B16125C3D4B69C ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
01:02:46.0634 15536 iphlpsvc - ok
01:02:46.0634 15536 [ 6E98A046A12AA113F8898AA5D612BD6E ] IPMIDRV C:\Windows\System32\drivers\IPMIDrv.sys
01:02:46.0650 15536 IPMIDRV - ok
01:02:46.0650 15536 [ 3969B9C218DD3FAA9F4ED2FFC3651C02 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
01:02:46.0681 15536 IPNAT - ok
01:02:46.0728 15536 [ 0FF335D687C85097725A53458160E81E ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
01:02:46.0744 15536 iPod Service - ok
01:02:46.0775 15536 [ 25CD7C4BB2863FFC2B0B311F0AEBF77C ] IRENUM C:\Windows\system32\drivers\irenum.sys
01:02:47.0009 15536 IRENUM - ok
01:02:47.0025 15536 [ D940C5BB9DC92E588533C19ABCC3D2C2 ] isapnp C:\Windows\system32\drivers\isapnp.sys
01:02:47.0040 15536 isapnp - ok
01:02:47.0056 15536 [ 69C8BF0BC2B0EA10F130F4D3104DC2EF ] iScsiPrt C:\Windows\System32\drivers\msiscsi.sys
01:02:47.0072 15536 iScsiPrt - ok
01:02:47.0087 15536 [ 8FBD94B69D6423E20ABCD59D86368B21 ] kbdclass C:\Windows\System32\drivers\kbdclass.sys
01:02:47.0087 15536 kbdclass - ok
01:02:47.0103 15536 [ E88C932ABDF8185A62C8F2FC7B051FB6 ] kbdhid C:\Windows\System32\drivers\kbdhid.sys
01:02:47.0103 15536 kbdhid - ok
01:02:47.0119 15536 [ FB6C185092E18011EF49989425C2AA87 ] kdnic C:\Windows\system32\DRIVERS\kdnic.sys
01:02:47.0119 15536 kdnic - ok
01:02:47.0134 15536 [ F702AB6181513303AB0FC8D59E52708B ] KeyIso C:\Windows\system32\lsass.exe
01:02:47.0150 15536 KeyIso - ok
01:02:47.0165 15536 [ 8B5219318DF5895ABD230C373F2DF18A ] kl1 C:\Windows\system32\DRIVERS\kl1.sys
01:02:47.0181 15536 kl1 - ok
01:02:47.0181 15536 [ F2EB9202FCCC81E0902D3C5A70037A44 ] klelam C:\Windows\system32\DRIVERS\klelam.sys
01:02:47.0197 15536 klelam - ok
01:02:47.0228 15536 [ 5D0104D068AA740A4CD75158652EA986 ] KLIF C:\Windows\system32\DRIVERS\klif.sys
01:02:47.0244 15536 KLIF - ok
01:02:47.0259 15536 [ 1B5B924D27399F41DECD1CC6D706429F ] KLIM6 C:\Windows\system32\DRIVERS\klim6.sys
01:02:47.0259 15536 KLIM6 - ok
01:02:47.0259 15536 [ A0B1AE842D7C7F2FDF530A7049CB988D ] klkbdflt C:\Windows\system32\DRIVERS\klkbdflt.sys
01:02:47.0275 15536 klkbdflt - ok
01:02:47.0275 15536 [ A8FFD74947077D8BD9A80936EC24514D ] klmouflt C:\Windows\system32\DRIVERS\klmouflt.sys
01:02:47.0275 15536 klmouflt - ok
01:02:47.0290 15536 [ 07124B89A614CB25D993B81DE041E595 ] klwfp C:\Windows\system32\DRIVERS\klwfp.sys
01:02:47.0290 15536 klwfp - ok
01:02:47.0306 15536 [ 185D21CB8F10CFB351FF65DA88C18BC9 ] kneps C:\Windows\system32\DRIVERS\kneps.sys
01:02:47.0322 15536 kneps - ok
01:02:47.0337 15536 [ DFA480F6DED551464F3A5B959F437800 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
01:02:47.0353 15536 KSecDD - ok
01:02:47.0369 15536 [ 127FB0AAD232BAAD2C9BBACD374F4FC5 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
01:02:47.0369 15536 KSecPkg - ok
01:02:47.0400 15536 [ 81492FEEBF2F26455B00EE8DBAE8A1B0 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
01:02:47.0415 15536 ksthunk - ok
01:02:47.0447 15536 [ 5825DBACEDC3812B5CF8D40B997BF210 ] KtmRm C:\Windows\system32\msdtckrm.dll
01:02:47.0462 15536 KtmRm - ok
01:02:47.0478 15536 [ CBD16721541EE334F6D623CE0B4003BF ] L1C C:\Windows\system32\DRIVERS\L1C63x64.sys
01:02:47.0478 15536 L1C - ok
01:02:47.0509 15536 [ 256EE31588257E8A555DBFAA13F1908E ] LanmanServer C:\Windows\system32\srvsvc.dll
01:02:47.0525 15536 LanmanServer - ok
01:02:47.0556 15536 [ 16650912BE5A94B40E0B3B4C39652B56 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
01:02:47.0572 15536 LanmanWorkstation - ok
01:02:47.0603 15536 [ CEEFD29FC551F289810B0B9381B321DC ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
01:02:47.0634 15536 lltdio - ok
01:02:47.0665 15536 [ BCF53485E0A94722CDE3C4A93CD8EB8C ] lltdsvc C:\Windows\System32\lltdsvc.dll
01:02:47.0712 15536 lltdsvc - ok
01:02:47.0728 15536 [ 5A2F7F1CBC2E631A497DAD16164E06D2 ] lmhosts C:\Windows\System32\lmhsvc.dll
01:02:47.0744 15536 lmhosts - ok
01:02:47.0759 15536 [ 022CDD12161B063D7852B1075BF3FFF2 ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
01:02:47.0775 15536 LSI_SAS - ok
01:02:47.0790 15536 [ 07AD59D669B996F29F91817F0ECFA34F ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys
01:02:47.0790 15536 LSI_SAS2 - ok
01:02:47.0806 15536 [ 216FB796AA4E252ACCE93B1BCB80B5EC ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
01:02:47.0822 15536 LSI_SCSI - ok
01:02:47.0837 15536 [ 5E80530AF37102488EE980B4A92AF99F ] LSI_SSS C:\Windows\system32\drivers\lsi_sss.sys
01:02:47.0837 15536 LSI_SSS - ok
01:02:47.0869 15536 [ A57BA284F5996FFD32DCDBC41A4657DB ] LSM C:\Windows\System32\lsm.dll
01:02:47.0884 15536 LSM - ok
01:02:47.0900 15536 [ 2BDC5D711FA61307CE6190D47C956368 ] luafv C:\Windows\system32\drivers\luafv.sys
01:02:47.0900 15536 luafv - ok
01:02:47.0915 15536 [ 0BB97D43299910CBFBA59C461B99B910 ] MBAMProtector C:\Windows\system32\drivers\mbam.sys
01:02:47.0931 15536 MBAMProtector - ok
01:02:47.0947 15536 [ 65085456FD9A74D7F1A999520C299ECB ] MBAMScheduler C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
01:02:47.0962 15536 MBAMScheduler - ok
01:02:47.0994 15536 [ E0D7732F2D2E24B2DB3F67B6750295B8 ] MBAMService C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
01:02:48.0009 15536 MBAMService - ok
01:02:48.0009 15536 [ 9B0D829C3BE4E7472DB9DD2B79908E3C ] megasas C:\Windows\system32\drivers\megasas.sys
01:02:48.0025 15536 megasas - ok
01:02:48.0025 15536 [ ECC3F54C7AFC318271C4F0B4606D8DB0 ] MegaSR C:\Windows\system32\drivers\MegaSR.sys
01:02:48.0040 15536 MegaSR - ok
01:02:48.0056 15536 [ 2BB3EAE2EA641515D4B205CAB29E1624 ] MEIx64 C:\Windows\System32\drivers\HECIx64.sys
01:02:48.0056 15536 MEIx64 - ok
01:02:48.0087 15536 [ EEE908BE7143FCA48CF0CB87214E2AB8 ] MMCSS C:\Windows\system32\mmcss.dll
01:02:48.0103 15536 MMCSS - ok
01:02:48.0103 15536 [ 780098AD5DA8A4822E2563984C85EF7B ] Modem C:\Windows\system32\drivers\modem.sys
01:02:48.0134 15536 Modem - ok
01:02:48.0134 15536 [ EA8EAD3F5B762F889CC7F3966625B48B ] monitor C:\Windows\System32\drivers\monitor.sys
01:02:48.0165 15536 monitor - ok
01:02:48.0181 15536 [ 618446B98C79776654340CE27C73485E ] mouclass C:\Windows\System32\drivers\mouclass.sys
01:02:48.0181 15536 mouclass - ok
01:02:48.0197 15536 [ C0ADEBED913295803B579ED288936CBB ] mouhid C:\Windows\System32\drivers\mouhid.sys
01:02:48.0212 15536 mouhid - ok
01:02:48.0228 15536 [ 89D263DBF08119CE16273991C120D6DD ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
01:02:48.0228 15536 mountmgr - ok
01:02:48.0259 15536 [ 0D1609DD82C7440F5D5BF21A9D4D5C0C ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
01:02:48.0259 15536 mpsdrv - ok
01:02:48.0291 15536 [ 3031573A739DBEE8923851929D0AF423 ] MpsSvc C:\Windows\system32\mpssvc.dll
01:02:48.0322 15536 MpsSvc - ok
01:02:48.0353 15536 [ 3D70147F55F1EC84EB9139ED7FFE48BC ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
01:02:48.0353 15536 MRxDAV - ok
01:02:48.0384 15536 [ 93179D48066918323628CB016D8C94DC ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
01:02:48.0416 15536 mrxsmb - ok
01:02:48.0431 15536 [ 06D5F2FA3C61E8EA91648EA8E9F99FD3 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
01:02:48.0447 15536 mrxsmb10 - ok
01:02:48.0462 15536 [ 5C7DD2E5759FFCCD2C7341C1B90F2B26 ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
01:02:48.0478 15536 mrxsmb20 - ok
01:02:48.0494 15536 [ 98487487D6B3797CA927E9D7B030AE13 ] MsBridge C:\Windows\system32\DRIVERS\bridge.sys
01:02:48.0525 15536 MsBridge - ok
01:02:48.0541 15536 [ 4A07458EB4F17573BD39F22029A991C1 ] MSDTC C:\Windows\System32\msdtc.exe
01:02:48.0572 15536 MSDTC - ok
01:02:48.0572 15536 [ 3886F1F2A4D2900ABAA7E4486BEEE6A2 ] Msfs C:\Windows\system32\drivers\Msfs.sys
01:02:48.0587 15536 Msfs - ok
01:02:48.0603 15536 [ C32A7A39B960A42BA9D4FBE47213CA03 ] msgpiowin32 C:\Windows\System32\drivers\msgpiowin32.sys
01:02:48.0619 15536 msgpiowin32 - ok
01:02:48.0634 15536 [ D3857A767B91A061B408CCAB02DA4F40 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
01:02:48.0650 15536 mshidkmdf - ok
01:02:48.0650 15536 [ 839B48910FB1E887635C48F3EC11A05E ] mshidumdf C:\Windows\System32\drivers\mshidumdf.sys
01:02:48.0650 15536 mshidumdf - ok
01:02:48.0666 15536 [ 55C0DB741E3AB7463242B185B1C2997C ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
01:02:48.0681 15536 msisadrv - ok
01:02:48.0697 15536 [ 216C6B035A4BA5560E1255BD8E5BB89F ] MSiSCSI C:\Windows\system32\iscsiexe.dll
01:02:48.0728 15536 MSiSCSI - ok
01:02:48.0728 15536 msiserver - ok
01:02:48.0744 15536 [ 509809566E49F4411055864EA8D437CD ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
01:02:48.0759 15536 MSKSSRV - ok
01:02:48.0759 15536 [ 63145201D6458E4958E572E7D6FC2604 ] MsLldp C:\Windows\system32\DRIVERS\mslldp.sys
01:02:48.0775 15536 MsLldp - ok
01:02:48.0775 15536 [ 99D526E803DB6D7FF290FD98B6204641 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
01:02:48.0791 15536 MSPCLOCK - ok
01:02:48.0791 15536 [ 06FA77C3E2A491ADCD704C5E73006269 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
01:02:48.0806 15536 MSPQM - ok
01:02:48.0837 15536 [ E134EC4DE11CF78CB01432D180710D84 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
01:02:48.0853 15536 MsRPC - ok
01:02:48.0853 15536 [ B5AECF12F09DEE97C9FCAA5BA016CE1E ] mssmbios C:\Windows\System32\drivers\mssmbios.sys
01:02:48.0869 15536 mssmbios - ok
01:02:48.0869 15536 [ 72D66A05E0F99F2528F6C6204FD22AA1 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
01:02:48.0884 15536 MSTEE - ok
01:02:48.0884 15536 [ 8AAAE399FC255FA105D4158CBA289001 ] MTConfig C:\Windows\System32\drivers\MTConfig.sys
01:02:48.0900 15536 MTConfig - ok
01:02:48.0900 15536 [ 3BCB702F3E6CC622DCAFCAA45D7CDE0A ] Mup C:\Windows\system32\Drivers\mup.sys
01:02:48.0916 15536 Mup - ok
01:02:48.0916 15536 [ 3A1E095277BBD406CEA8EA6B76950664 ] mvumis C:\Windows\system32\drivers\mvumis.sys
01:02:48.0931 15536 mvumis - ok
01:02:48.0947 15536 [ 4B18840511D720BA118D3017E8165875 ] napagent C:\Windows\system32\qagentRT.dll
01:02:48.0978 15536 napagent - ok
01:02:48.0994 15536 [ 43D7388A90A4C6EA346A4D6FF0377479 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
01:02:49.0009 15536 NativeWifiP - ok
01:02:49.0041 15536 [ 6A0C3996DA7DAE6D6939676D786EEEC4 ] NcaSvc C:\Windows\System32\ncasvc.dll
01:02:49.0056 15536 NcaSvc - ok
01:02:49.0072 15536 [ C982FE4CC91DECE2259F494FCEB4030F ] NcdAutoSetup C:\Windows\System32\NcdAutoSetup.dll
01:02:49.0087 15536 NcdAutoSetup - ok
01:02:49.0119 15536 [ 03CFE4108D1DE16D6C59455B5C73319C ] NDIS C:\Windows\system32\drivers\ndis.sys
01:02:49.0166 15536 NDIS - ok
01:02:49.0181 15536 [ 39C8A1D9D46F5E83A016BCAB72455284 ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
01:02:49.0212 15536 NdisCap - ok
01:02:49.0228 15536 [ 762941932B7E4C588E48A577BA9D6440 ] NdisImPlatform C:\Windows\system32\DRIVERS\NdisImPlatform.sys
01:02:49.0244 15536 NdisImPlatform - ok
01:02:49.0275 15536 [ 7A6F8A6D0E01432EBA294EF29CDD0FA7 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
01:02:49.0291 15536 NdisTapi - ok
01:02:49.0291 15536 [ 79AB68BB3FFF974AD4F41FA559F4EC67 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
01:02:49.0306 15536 Ndisuio - ok
01:02:49.0306 15536 [ 62C7DBF4F9301F76CF87D4B9D8F57BF8 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
01:02:49.0322 15536 NdisWan - ok
01:02:49.0322 15536 [ 62C7DBF4F9301F76CF87D4B9D8F57BF8 ] NDISWANLEGACY C:\Windows\system32\DRIVERS\ndiswan.sys
01:02:49.0337 15536 NDISWANLEGACY - ok
01:02:49.0369 15536 [ 3730942D7DB2F8BB5F84542B7FF6F650 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
01:02:49.0384 15536 NDProxy - ok
01:02:49.0384 15536 [ D3F60A4345FCA9C1BE68AD7D0D6DE770 ] Ndu C:\Windows\system32\drivers\Ndu.sys
01:02:49.0384 15536 Ndu - ok
01:02:49.0400 15536 [ 7C203A76394F9AE68F69EEE5F9612C4A ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
01:02:49.0416 15536 NetBIOS - ok
01:02:49.0416 15536 [ 7CEC25C682D319D484630B3952C31A11 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
01:02:49.0447 15536 NetBT - ok
01:02:49.0462 15536 [ F702AB6181513303AB0FC8D59E52708B ] Netlogon C:\Windows\system32\lsass.exe
01:02:49.0462 15536 Netlogon - ok
01:02:49.0494 15536 [ 89519D29CBEC2121CA65CC29C4D345E0 ] Netman C:\Windows\System32\netman.dll
01:02:49.0509 15536 Netman - ok
01:02:49.0541 15536 [ 79FA9393C67EBBF92A56923592CF7A7C ] netprofm C:\Windows\System32\netprofmsvc.dll
01:02:49.0556 15536 netprofm - ok
01:02:49.0603 15536 [ 5243CFC2E7161C91C2B355240035B9E4 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
01:02:49.0603 15536 NetTcpPortSharing - ok
01:02:49.0619 15536 [ 12DD2800E4EEA37DC9AE256AD62423B4 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
01:02:49.0634 15536 nfrd960 - ok
01:02:49.0650 15536 [ 80ABCD4C2DE9FD832477303AE0CA3BE5 ] NlaSvc C:\Windows\System32\nlasvc.dll
01:02:49.0681 15536 NlaSvc - ok
01:02:49.0697 15536 [ 17E19A742FB30C002F8B43575451DBE1 ] Npfs C:\Windows\system32\drivers\Npfs.sys
01:02:49.0697 15536 Npfs - ok
01:02:49.0712 15536 [ 8ED299C30792544264E558BEA79F0947 ] npsvctrig C:\Windows\System32\drivers\npsvctrig.sys
01:02:49.0728 15536 npsvctrig - ok
01:02:49.0744 15536 [ 832B5FDF0B5577713FD7F2465FCD0ACE ] nsi C:\Windows\system32\nsisvc.dll
01:02:49.0759 15536 nsi - ok
01:02:49.0775 15536 [ 689B3B1E95C70ABF7AFF29F9406EF1E0 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
01:02:49.0791 15536 nsiproxy - ok
01:02:49.0853 15536 [ 76929F4A69E425911A63B407E26C2589 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
01:02:49.0931 15536 Ntfs - ok
01:02:49.0947 15536 [ 4163ADE07DB51843AE31F65B94F5398D ] Null C:\Windows\system32\drivers\Null.sys
01:02:49.0962 15536 Null - ok
01:02:49.0994 15536 [ FB49C2A67096411EF5D20871946F0BE7 ] nvkflt C:\Windows\system32\DRIVERS\nvkflt.sys
01:02:49.0994 15536 nvkflt - ok
01:02:50.0166 15536 [ 993D73A8090C957230DE4E14AA9C5DFF ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
01:02:50.0384 15536 nvlddmkm - ok
01:02:50.0416 15536 [ 29C4634D4B9A36CAA14BA5C91E5F4E8B ] nvpciflt C:\Windows\system32\DRIVERS\nvpciflt.sys
01:02:50.0416 15536 nvpciflt - ok
01:02:50.0431 15536 [ D6D34118263412D3AAA8348A9572B7F2 ] nvraid C:\Windows\system32\drivers\nvraid.sys
01:02:50.0447 15536 nvraid - ok
01:02:50.0447 15536 [ 27AFC428D1D32ABD04A86763A4EDDEA9 ] nvstor C:\Windows\system32\drivers\nvstor.sys
01:02:50.0462 15536 nvstor - ok
01:02:50.0494 15536 [ C367AD646714E03E14F24F39EC206736 ] nvsvc C:\Windows\system32\nvvsvc.exe
01:02:50.0509 15536 nvsvc - ok
01:02:50.0572 15536 [ 44407283382D82C64C9195DE686D4205 ] nvUpdatusService C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
01:02:50.0634 15536 nvUpdatusService - ok
01:02:50.0634 15536 [ 051CFB5107BAAE510419BDC41F8C4036 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
01:02:50.0634 15536 nv_agp - ok
01:02:50.0666 15536 [ AB76700D764A342D7475FB8F47CAB18C ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
01:02:50.0681 15536 p2pimsvc - ok
01:02:50.0697 15536 [ 4319FD931DCD796435ECB5DB4A04FBA5 ] p2psvc C:\Windows\system32\p2psvc.dll
01:02:50.0713 15536 p2psvc - ok
01:02:50.0728 15536 [ 4563DAF8C6A740AD7F501E219BD10766 ] Parport C:\Windows\System32\drivers\parport.sys
01:02:50.0728 15536 Parport - ok
01:02:50.0759 15536 [ D6ACCF9F2EEEEA711C14EFD976E573F3 ] partmgr C:\Windows\system32\drivers\partmgr.sys
01:02:50.0775 15536 partmgr - ok
01:02:50.0775 15536 [ 4811D9EC53649105A5A8BEA661B0F936 ] PcaSvc C:\Windows\System32\pcasvc.dll
01:02:50.0806 15536 PcaSvc - ok
01:02:50.0822 15536 [ 4A003E8F718C1E6A2050CA98CD53E3E2 ] pci C:\Windows\system32\drivers\pci.sys
01:02:50.0822 15536 pci - ok
01:02:50.0838 15536 [ F9908D274D458220F91E89B54D78D837 ] pciide C:\Windows\system32\drivers\pciide.sys
01:02:50.0838 15536 pciide - ok
01:02:50.0853 15536 [ 84D19CB6102627932DCB5DFDF89FE269 ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
01:02:50.0869 15536 pcmcia - ok
01:02:50.0869 15536 [ CEBBAD5391C2644560C55628A40BFD27 ] pcw C:\Windows\system32\drivers\pcw.sys
01:02:50.0884 15536 pcw - ok
01:02:50.0900 15536 [ 0698DEDEAD6A00AD0D468C687D830FBF ] pdc C:\Windows\system32\drivers\pdc.sys
01:02:50.0916 15536 pdc - ok
01:02:50.0931 15536 [ 61FE70659CD43E07F94DA4DC31DEC493 ] PEAUTH C:\Windows\system32\drivers\peauth.sys
01:02:50.0947 15536 PEAUTH - ok
01:02:51.0009 15536 [ EB88FA19F0EA05DD04BE9C5FFEEFFE1A ] PerfHost C:\Windows\SysWow64\perfhost.exe
01:02:51.0025 15536 PerfHost - ok
01:02:51.0072 15536 [ 6E84BFF58F7643499277F29DFA2F8C8D ] pla C:\Windows\system32\pla.dll
01:02:51.0150 15536 pla - ok
01:02:51.0166 15536 [ 799BE46D45D486704CE0F37CA5385262 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
01:02:51.0181 15536 PlugPlay - ok
01:02:51.0181 15536 [ 8E2414E818C26C4A9C70CB2B8567F04F ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
01:02:51.0213 15536 PNRPAutoReg - ok
01:02:51.0213 15536 [ AB76700D764A342D7475FB8F47CAB18C ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
01:02:51.0228 15536 PNRPsvc - ok
01:02:51.0259 15536 [ 0108C8E5176D590F242701EF5A62CC26 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
01:02:51.0291 15536 PolicyAgent - ok
01:02:51.0322 15536 [ F1E067F56373F11EA4B785CAE823740A ] Power C:\Windows\system32\umpo.dll
01:02:51.0322 15536 Power - ok
01:02:51.0353 15536 [ 362D47E5B4D67270DE4B8606036F4ADD ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
01:02:51.0385 15536 PptpMiniport - ok
01:02:51.0464 15536 [ 9D59831262CAD44E709D695FC9D5E7AB ] PrintNotify C:\Windows\system32\spool\DRIVERS\x64\3\PrintConfig.dll
01:02:51.0557 15536 PrintNotify - ok
01:02:51.0573 15536 [ DD979EB6A7212F60E4AFBE96EDC7AE6D ] Processor C:\Windows\System32\drivers\processr.sys
01:02:51.0589 15536 Processor - ok
01:02:51.0604 15536 [ 429E8502AD2227CF88F8840FC5BD590D ] ProfSvc C:\Windows\system32\profsvc.dll
01:02:51.0635 15536 ProfSvc - ok
01:02:51.0651 15536 [ EB8034147D4820CD31BFCB11A2A652DF ] Psched C:\Windows\system32\DRIVERS\pacer.sys
01:02:51.0682 15536 Psched - ok
01:02:51.0698 15536 [ 0AFBF333B6F87A2F598EAB379AF100B8 ] QWAVE C:\Windows\system32\qwave.dll
01:02:51.0714 15536 QWAVE - ok
01:02:51.0729 15536 [ 13D47BB0CCA2FC51BD15F8E85C6A078E ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
01:02:51.0745 15536 QWAVEdrv - ok
01:02:51.0760 15536 [ 873C60F8178100557740A832FCE10B5F ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
01:02:51.0776 15536 RasAcd - ok
01:02:51.0807 15536 [ 69B93F623B130976243ECA3D84CC99CA ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
01:02:51.0807 15536 RasAgileVpn - ok
01:02:51.0823 15536 [ 005F6E54C4A2DA4EBF68FB0392CE8BB0 ] RasAuto C:\Windows\System32\rasauto.dll
01:02:51.0854 15536 RasAuto - ok
01:02:51.0854 15536 [ A14D625C5AEE5FFE0F47D1A1D419FAAE ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
01:02:51.0870 15536 Rasl2tp - ok
01:02:51.0870 15536 [ C923C785A2DE0B396AD6D13ACAFF2DE9 ] RasMan C:\Windows\System32\rasmans.dll
01:02:51.0901 15536 RasMan - ok
01:02:51.0917 15536 [ 00695B9C2DB6111064499C529E90C042 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
01:02:51.0932 15536 RasPppoe - ok
01:02:51.0964 15536 [ A7F24D8CD1956B0A1FDCB86CC5114DE4 ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
01:02:51.0979 15536 RasSstp - ok
01:02:52.0010 15536 [ CA03D642ACE58E1BA54E4B383F91CD69 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
01:02:52.0026 15536 rdbss - ok
01:02:52.0042 15536 [ CA7DF5EC95D8DE0DD24BE7FF97369F68 ] rdpbus C:\Windows\System32\drivers\rdpbus.sys
01:02:52.0073 15536 rdpbus - ok
01:02:52.0089 15536 [ B2A3AD74FF2E2FFA73AF2567108231B3 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys
01:02:52.0104 15536 RDPDR - ok
01:02:52.0120 15536 [ 57F4787E4602A3FCA719C0A33137C6DA ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
01:02:52.0135 15536 RdpVideoMiniport - ok
01:02:52.0151 15536 [ B3CB0721E81E30419CE7D837EF4EA151 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
01:02:52.0167 15536 RDPWD - ok
01:02:52.0182 15536 [ 62C1F8A0685FE07E998AA296C4F697C4 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
01:02:52.0182 15536 rdyboost - ok
01:02:52.0214 15536 [ 3663CCF243EE0C04E9F6F91ED1737273 ] RemoteAccess C:\Windows\System32\mprdim.dll
01:02:52.0245 15536 RemoteAccess - ok
01:02:52.0260 15536 [ E80DD61E52EDFFF9DA1ED7260A68855B ] RemoteRegistry C:\Windows\system32\regsvc.dll
01:02:52.0276 15536 RemoteRegistry - ok
01:02:52.0292 15536 [ CCBFCABDFE2BC22F0645CEAADDB36004 ] RFCOMM C:\Windows\System32\drivers\rfcomm.sys
01:02:52.0323 15536 RFCOMM - ok
01:02:52.0339 15536 [ 73F2E030B5C24E4E41401B5F0D59E6FD ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
01:02:52.0354 15536 RpcEptMapper - ok
01:02:52.0386 15536 [ 10B21284B3D964AB3DC45490E57D422E ] RpcLocator C:\Windows\system32\locator.exe
01:02:52.0386 15536 RpcLocator - ok
01:02:52.0495 15536 [ 1EC6E533C954BDDF2A37E7851A7E58FD ] RpcSs C:\Windows\system32\rpcss.dll
01:02:52.0526 15536 RpcSs - ok
01:02:52.0542 15536 [ FD2F7ABB0B3C777CDC9D342CADBF0131 ] RSPCIESTOR C:\Windows\system32\DRIVERS\RtsPStor.sys
01:02:52.0557 15536 RSPCIESTOR - ok
01:02:52.0573 15536 [ E04E770DD198B9399640717145E79EBF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
01:02:52.0604 15536 rspndr - ok
01:02:52.0620 15536 [ 15923AA360F7675D3D43C9669316A0BA ] RTL8168 C:\Windows\system32\DRIVERS\Rt630x64.sys
01:02:52.0636 15536 RTL8168 - ok
01:02:52.0651 15536 [ 752EC7DCD2F96871A3857EEE6AFE965A ] s3cap C:\Windows\System32\drivers\vms3cap.sys
01:02:52.0682 15536 s3cap - ok
01:02:52.0698 15536 [ F702AB6181513303AB0FC8D59E52708B ] SamSs C:\Windows\system32\lsass.exe
01:02:52.0714 15536 SamSs - ok
01:02:52.0714 15536 [ 9C7B28CE0D136DB226E24DB3BC817F92 ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
01:02:52.0729 15536 sbp2port - ok
01:02:52.0745 15536 [ 14316954FCE79C9DE5A0AFF9D42C83AA ] SCardSvr C:\Windows\System32\SCardSvr.dll
01:02:52.0761 15536 SCardSvr - ok
01:02:52.0776 15536 [ 5D7733A12756B267FCA021672B26BC9E ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
01:02:52.0792 15536 scfilter - ok
01:02:52.0823 15536 [ ED40ED9A65F3E79A8C43DD50C5FDADBF ] Schedule C:\Windows\system32\schedsvc.dll
01:02:52.0870 15536 Schedule - ok
01:02:52.0886 15536 [ BAF8F0F55BC300E5F882E521F054E345 ] SCPolicySvc C:\Windows\System32\certprop.dll
01:02:52.0901 15536 SCPolicySvc - ok
01:02:52.0917 15536 [ 047315E75392CEA447ACC86257824C16 ] sdbus C:\Windows\System32\drivers\sdbus.sys
01:02:52.0932 15536 sdbus - ok
01:02:52.0948 15536 [ 92968277ED491E4B3DDA361E3952361E ] SDRSVC C:\Windows\System32\SDRSVC.dll
01:02:52.0979 15536 SDRSVC - ok
01:02:52.0995 15536 [ BB107AA9980B0DA4E19A3A90C3BD4460 ] sdstor C:\Windows\System32\drivers\sdstor.sys
01:02:52.0995 15536 sdstor - ok
01:02:53.0026 15536 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys
01:02:53.0026 15536 secdrv - ok
01:02:53.0042 15536 [ CD282626738B6BC92B6E7CD0AAE95B63 ] seclogon C:\Windows\system32\seclogon.dll
01:02:53.0057 15536 seclogon - ok
01:02:53.0073 15536 [ 9C51620998F0763039DFA6BF68E475ED ] SENS C:\Windows\System32\sens.dll
01:02:53.0104 15536 SENS - ok
01:02:53.0120 15536 [ 0D50B4B860DAB65241628D04CD33ACAE ] SensrSvc C:\Windows\system32\sensrsvc.dll
01:02:53.0136 15536 SensrSvc - ok
01:02:53.0151 15536 [ 87C46B239A7EEF30FDFDD5E9BD46130C ] SerCx C:\Windows\system32\drivers\SerCx.sys
01:02:53.0167 15536 SerCx - ok
01:02:53.0167 15536 [ 7A1F9347C85FD55E39B8A76B3A25C5AD ] Serenum C:\Windows\System32\drivers\serenum.sys
01:02:53.0182 15536 Serenum - ok
01:02:53.0198 15536 [ F640A0A218BBF857F1D04A15D7D939F6 ] Serial C:\Windows\System32\drivers\serial.sys
01:02:53.0214 15536 Serial - ok
01:02:53.0214 15536 [ F1A5F56B2620B862CC28FF96A0A6DAAB ] sermouse C:\Windows\System32\drivers\sermouse.sys
01:02:53.0214 15536 sermouse - ok
01:02:53.0229 15536 [ CB60A60340788C8D6DE2A269D28086AB ] SessionEnv C:\Windows\system32\sessenv.dll
01:02:53.0245 15536 SessionEnv - ok
01:02:53.0245 15536 [ 7EE65419B29302C795714FF8073969A1 ] sfloppy C:\Windows\System32\drivers\sfloppy.sys
01:02:53.0261 15536 sfloppy - ok
01:02:53.0354 15536 [ 820368BFF0E36FF72A7DE2C20833FFEE ] SftService C:\Program Files (x86)\Dell Backup and Recovery\SftService.exe
01:02:53.0417 15536 SftService - ok
01:02:53.0464 15536 [ 090AE16F79C8EAD04E6031F863DA85F3 ] SharedAccess C:\Windows\System32\ipnathlp.dll
01:02:53.0479 15536 SharedAccess - ok
01:02:53.0511 15536 [ A77F3ABE13FCC698511E5DEC7ACEBD5F ] ShellHWDetection C:\Windows\System32\shsvcs.dll
01:02:53.0542 15536 ShellHWDetection - ok
01:02:53.0542 15536 [ 2560721D6F16D5B611C36A3A9D28C1B2 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys
01:02:53.0557 15536 SiSRaid2 - ok
01:02:53.0573 15536 [ 3AA8FDE1DBF65BB8B88B053529554A0D ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
01:02:53.0573 15536 SiSRaid4 - ok
01:02:53.0589 15536 [ E660156A4588A84305CB772FD2C0DB21 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
01:02:53.0604 15536 SNMPTRAP - ok
01:02:53.0636 15536 [ FD3AF5575B99871BADB94E7699DBCE08 ] spaceport C:\Windows\system32\drivers\spaceport.sys
01:02:53.0651 15536 spaceport - ok
01:02:53.0651 15536 [ 3D8679C8DF52EB26EB7583A4E0A29202 ] SpbCx C:\Windows\system32\drivers\SpbCx.sys
01:02:53.0667 15536 SpbCx - ok
01:02:53.0682 15536 [ 3F215BF2D4D8D6756298B25B579772C2 ] Spooler C:\Windows\System32\spoolsv.exe
01:02:53.0714 15536 Spooler - ok
01:02:53.0823 15536 [ 32FC8A2AD443468F85CA450C8F6A45F6 ] sppsvc C:\Windows\system32\sppsvc.exe
01:02:53.0932 15536 sppsvc - ok
01:02:53.0948 15536 [ 0F1FCD575A03ABDE13FCA9D0ADE4DDA6 ] srv C:\Windows\system32\DRIVERS\srv.sys
01:02:53.0979 15536 srv - ok
01:02:53.0995 15536 [ 56218A571ECF8D55E0CDFF8DF2546CF1 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
01:02:54.0011 15536 srv2 - ok
01:02:54.0042 15536 [ 14FC338B80CFF7E04215133B568D15C4 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
01:02:54.0058 15536 srvnet - ok
01:02:54.0073 15536 [ 7A20882D76D4A78240A5AC9F2C2EBA21 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
01:02:54.0089 15536 SSDPSRV - ok
01:02:54.0105 15536 [ D233B16999A8E626F6004BD7814C57EC ] SstpSvc C:\Windows\system32\sstpsvc.dll
01:02:54.0136 15536 SstpSvc - ok
01:02:54.0152 15536 Steam Client Service - ok
01:02:54.0183 15536 [ 17FC2EAD763F0237457817A753A5A676 ] Stereo Service C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
01:02:54.0198 15536 Stereo Service - ok
01:02:54.0214 15536 [ 4E85355B94CFCB67C135F6521A4895A7 ] stexstor C:\Windows\system32\drivers\stexstor.sys
01:02:54.0230 15536 stexstor - ok
01:02:54.0245 15536 [ BAC8A721736AECC55A4F71523AEAB65F ] stisvc C:\Windows\System32\wiaservc.dll
01:02:54.0277 15536 stisvc - ok
01:02:54.0308 15536 [ B240874B2CA0CD02E8CD11E140B14C57 ] storahci C:\Windows\system32\drivers\storahci.sys
01:02:54.0323 15536 storahci - ok
01:02:54.0339 15536 [ F74DBC95A57B1EE866D3732EB5F79BE2 ] storflt C:\Windows\system32\DRIVERS\vmstorfl.sys
01:02:54.0370 15536 storflt - ok
01:02:54.0386 15536 [ 5337E138B49ED1F44CCBA4073BC35C20 ] StorSvc C:\Windows\system32\storsvc.dll
01:02:54.0417 15536 StorSvc - ok
01:02:54.0448 15536 [ 543CD3CC0E05B8D8815E0D4F040B6F59 ] storvsc C:\Windows\system32\drivers\storvsc.sys
01:02:54.0448 15536 storvsc - ok
01:02:54.0464 15536 [ 8BC1C1ED6EF9C985A3FAA6A72F41679A ] svsvc C:\Windows\system32\svsvc.dll
01:02:54.0495 15536 svsvc - ok
01:02:54.0511 15536 [ 4AFD66AAE74FFB5986BC240744DC5FC9 ] swenum C:\Windows\System32\drivers\swenum.sys
01:02:54.0527 15536 swenum - ok
01:02:54.0542 15536 [ 502F9488540051F3E6C39889ECFA76BB ] swprv C:\Windows\System32\swprv.dll
01:02:54.0589 15536 swprv - ok
01:02:54.0620 15536 [ A06CB9269D29EE3D0F3F5630ABB660B8 ] SysMain C:\Windows\system32\sysmain.dll
01:02:54.0683 15536 SysMain - ok
01:02:54.0698 15536 [ 6FB88606C4A71E1BFAF97D63A676C673 ] SystemEventsBroker C:\Windows\System32\SystemEventsBrokerServer.dll
01:02:54.0745 15536 SystemEventsBroker - ok
01:02:54.0761 15536 [ A6C06C45C44AD06C70AF8899AEC15BDC ] TabletInputService C:\Windows\System32\TabSvc.dll
01:02:54.0777 15536 TabletInputService - ok
01:02:54.0777 15536 [ 88B7721AB551C4325036B25A34A2BF7B ] TapiSrv C:\Windows\System32\tapisrv.dll
01:02:54.0808 15536 TapiSrv - ok
01:02:54.0855 15536 [ D750CE2A52F1B95E654CF2904C88EF1F ] Tcpip C:\Windows\system32\drivers\tcpip.sys
01:02:54.0917 15536 Tcpip - ok
01:02:54.0964 15536 [ D750CE2A52F1B95E654CF2904C88EF1F ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
01:02:54.0995 15536 TCPIP6 - ok
01:02:55.0011 15536 [ 8F2A13A5DF99D72FDDE87F502A66F989 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
01:02:55.0027 15536 tcpipreg - ok
01:02:55.0042 15536 [ 73DC722CE5DF26D7638CE2446F2655C7 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
01:02:55.0058 15536 tdx - ok
01:02:55.0073 15536 [ F7C8AB5D8AFFAA318D6A21093D139BF4 ] terminpt C:\Windows\System32\drivers\terminpt.sys
01:02:55.0073 15536 terminpt - ok
01:02:55.0105 15536 [ 541EE228D0DEF392F7B2DFD885DD021B ] TermService C:\Windows\System32\termsrv.dll
01:02:55.0136 15536 TermService - ok
01:02:55.0152 15536 [ 519A6F672FFF56B7D8EE8C730CEC8ECD ] Themes C:\Windows\system32\themeservice.dll
01:02:55.0183 15536 Themes - ok
01:02:55.0198 15536 [ EEE908BE7143FCA48CF0CB87214E2AB8 ] THREADORDER C:\Windows\system32\mmcss.dll
01:02:55.0214 15536 THREADORDER - ok
01:02:55.0230 15536 [ 4515B9E4140F04FB3907692DF89FCA87 ] TimeBroker C:\Windows\System32\TimeBrokerServer.dll
01:02:55.0245 15536 TimeBroker - ok
01:02:55.0261 15536 [ 6F0BFF80EE2A5BC841286A51F893CBAD ] TPM C:\Windows\system32\drivers\tpm.sys
01:02:55.0261 15536 TPM - ok
01:02:55.0292 15536 [ 8C8CF3041B27E7657ADD0EE17F6DBFCA ] TrkWks C:\Windows\System32\trkwks.dll
01:02:55.0292 15536 TrkWks - ok
01:02:55.0323 15536 [ 8ABBB5CE0C62E0A6D28F32F44B7F865C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
01:02:55.0339 15536 TrustedInstaller - ok
01:02:55.0355 15536 [ 4E7C5FB10A50435523DE0CAA37DE2BD3 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
01:02:55.0370 15536 TsUsbFlt - ok
01:02:55.0370 15536 [ 16D684A820872EE54F6370703AC0B513 ] TsUsbGD C:\Windows\System32\drivers\TsUsbGD.sys
01:02:55.0386 15536 TsUsbGD - ok
01:02:55.0402 15536 [ 78C9EE193AC2B4CBDBC48B620314D740 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
01:02:55.0417 15536 tunnel - ok
01:02:55.0417 15536 [ 6D4F67CA56ACA2085DFA2CD89EAFBC1A ] uagp35 C:\Windows\system32\drivers\uagp35.sys
01:02:55.0433 15536 uagp35 - ok
01:02:55.0433 15536 [ 6FD6D03B7752C78712E5CFF29A305026 ] UASPStor C:\Windows\System32\drivers\uaspstor.sys
01:02:55.0433 15536 UASPStor - ok
01:02:55.0448 15536 [ 7C33D8B8A5EA2321B84A1B6653CBD0DB ] UCX01000 C:\Windows\System32\drivers\ucx01000.sys
01:02:55.0464 15536 UCX01000 - ok
01:02:55.0464 15536 [ DC5A461591C71AF7F19DC048A81E3F88 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
01:02:55.0480 15536 udfs - ok
01:02:55.0511 15536 [ FB3475FEA1CCB0DAEA1EBE44D0E3BB7D ] UI0Detect C:\Windows\system32\UI0Detect.exe
01:02:55.0511 15536 UI0Detect - ok
01:02:55.0527 15536 [ 07FEBCDF24FABA0D47B635D85A0FFB7A ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
01:02:55.0527 15536 uliagpkx - ok
01:02:55.0542 15536 [ 02CEB3FE6152668A7BA420B93B664860 ] umbus C:\Windows\System32\drivers\umbus.sys
01:02:55.0542 15536 umbus - ok
01:02:55.0558 15536 [ 991EE6B5FC41EAEF99C8AF5B92F2CA09 ] UmPass C:\Windows\System32\drivers\umpass.sys
01:02:55.0573 15536 UmPass - ok
01:02:55.0589 15536 [ 43FEFB040A0CC30F795FBF544169594D ] UmRdpService C:\Windows\System32\umrdp.dll
01:02:55.0605 15536 UmRdpService - ok
01:02:55.0605 15536 [ 14D22C411854AA2560AFC94CD2D5E61F ] upnphost C:\Windows\System32\upnphost.dll
01:02:55.0636 15536 upnphost - ok
01:02:55.0667 15536 [ C9E9D59C0099A9FF51697E9306A44240 ] USBAAPL64 C:\Windows\System32\Drivers\usbaapl64.sys
01:02:55.0683 15536 USBAAPL64 - ok
01:02:55.0698 15536 [ 2AF9F0E16D75B8F783A1ACE74EF51C9B ] usbccgp C:\Windows\System32\drivers\usbccgp.sys
01:02:55.0714 15536 usbccgp - ok
01:02:55.0730 15536 [ B395B62B62F28106218FA6FB17F4C797 ] usbcir C:\Windows\System32\drivers\usbcir.sys
01:02:55.0745 15536 usbcir - ok
01:02:55.0777 15536 [ 52F267AEE8CA5AA5CEB88C6A71EE1E86 ] usbehci C:\Windows\System32\drivers\usbehci.sys
01:02:55.0777 15536 usbehci - ok
01:02:55.0808 15536 [ ADBF89B8E0BB372FEFE2E4B84E1E20AE ] usbhub C:\Windows\System32\drivers\usbhub.sys
01:02:55.0823 15536 usbhub - ok
01:02:55.0839 15536 [ EA040D4C6C94F315A85F3D0EAA884B37 ] USBHUB3 C:\Windows\System32\drivers\UsbHub3.sys
01:02:55.0855 15536 USBHUB3 - ok
01:02:55.0870 15536 [ 325F6179009B5A7F6118951A5BA422AB ] usbohci C:\Windows\System32\drivers\usbohci.sys
01:02:55.0870 15536 usbohci - ok
01:02:55.0886 15536 [ BA3ABE0CD1C14B3295BAD0F076B84CAC ] usbprint C:\Windows\System32\drivers\usbprint.sys
01:02:55.0917 15536 usbprint - ok
01:02:55.0933 15536 [ F77177F6C95B2116EE7AD23B5EF57007 ] USBSTOR C:\Windows\System32\drivers\USBSTOR.SYS
01:02:55.0933 15536 USBSTOR - ok
01:02:55.0949 15536 [ D25EF4A6EC244C5DE85D88A05B7C149D ] usbuhci C:\Windows\System32\drivers\usbuhci.sys
01:02:55.0964 15536 usbuhci - ok
01:02:55.0980 15536 [ 09799E701B4327097E9F63D3FE221083 ] usbvideo C:\Windows\System32\Drivers\usbvideo.sys
01:02:55.0980 15536 usbvideo - ok
01:02:55.0995 15536 [ 11C0CF143D246E2F0E9BDBF17A0CC70B ] USBXHCI C:\Windows\System32\drivers\USBXHCI.SYS
01:02:56.0011 15536 USBXHCI - ok
01:02:56.0027 15536 [ F702AB6181513303AB0FC8D59E52708B ] VaultSvc C:\Windows\system32\lsass.exe
01:02:56.0042 15536 VaultSvc - ok
01:02:56.0042 15536 [ BACECBFF9C97F7627A60B0E0F1FE7EE8 ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
01:02:56.0058 15536 vdrvroot - ok
01:02:56.0074 15536 [ 8A8CDA9E3CF2E0B4C6CC19FBC6FB9A71 ] vds C:\Windows\System32\vds.exe
01:02:56.0105 15536 vds - ok
01:02:56.0120 15536 [ 74FA2D4368DE6F6CE14393EDF1F342BE ] VerifierExt C:\Windows\system32\drivers\VerifierExt.sys
01:02:56.0136 15536 VerifierExt - ok
01:02:56.0152 15536 [ 500BE6B2E49883720D0AE8BB859ED7A3 ] vhdmp C:\Windows\System32\drivers\vhdmp.sys
01:02:56.0167 15536 vhdmp - ok
01:02:56.0183 15536 [ F5B4A14B00E89250C50982AC762DDD1D ] viaide C:\Windows\system32\drivers\viaide.sys
01:02:56.0199 15536 viaide - ok
01:02:56.0199 15536 [ 78DB50F7329F6D1311658DABFFFC8BE0 ] vmbus C:\Windows\system32\drivers\vmbus.sys
01:02:56.0214 15536 vmbus - ok
01:02:56.0214 15536 [ ECFEE2F2BA3932C7880D1A8F67D68F91 ] VMBusHID C:\Windows\System32\drivers\VMBusHID.sys
01:02:56.0230 15536 VMBusHID - ok
01:02:56.0261 15536 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmicheartbeat C:\Windows\System32\ICSvc.dll
01:02:56.0292 15536 vmicheartbeat - ok
01:02:56.0292 15536 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmickvpexchange C:\Windows\System32\ICSvc.dll
01:02:56.0308 15536 vmickvpexchange - ok
01:02:56.0308 15536 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmicrdv C:\Windows\System32\ICSvc.dll
01:02:56.0324 15536 vmicrdv - ok
01:02:56.0324 15536 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmicshutdown C:\Windows\System32\ICSvc.dll
01:02:56.0339 15536 vmicshutdown - ok
01:02:56.0339 15536 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmictimesync C:\Windows\System32\ICSvc.dll
01:02:56.0355 15536 vmictimesync - ok
01:02:56.0355 15536 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmicvss C:\Windows\System32\ICSvc.dll
01:02:56.0370 15536 vmicvss - ok
01:02:56.0370 15536 [ CB60FAAED8B49B812EBBF77EB87D9B18 ] volmgr C:\Windows\system32\drivers\volmgr.sys
01:02:56.0386 15536 volmgr - ok
01:02:56.0386 15536 [ A74101DA9809251BCD0E5A26BAE0F824 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
01:02:56.0402 15536 volmgrx - ok
01:02:56.0417 15536 [ 2FB3CDFD5EAF4CD9D4AFAF96877D13AE ] volsnap C:\Windows\system32\drivers\volsnap.sys
01:02:56.0433 15536 volsnap - ok
01:02:56.0449 15536 [ A8DA1C1B52ECEA3726DEBED4FF1B700D ] vpci C:\Windows\System32\drivers\vpci.sys
01:02:56.0464 15536 vpci - ok
01:02:56.0480 15536 [ 38A60CD9C009C55C6D3B5586F8E6A353 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
01:02:56.0480 15536 vsmraid - ok
01:02:56.0511 15536 [ D0C69E44BC1E1D4AD290FD84104623D8 ] VSS C:\Windows\system32\vssvc.exe
01:02:56.0574 15536 VSS - ok
01:02:56.0589 15536 [ A0F6FE0FC2F647C22BBFD6BD4249DBCC ] VSTXRAID C:\Windows\system32\drivers\vstxraid.sys
01:02:56.0605 15536 VSTXRAID - ok
01:02:56.0605 15536 [ 62460A45435A26A334907E3F2EA45611 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys
01:02:56.0620 15536 vwifibus - ok
01:02:56.0620 15536 [ 095E943D27025E4D588AF0A72CC2318F ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys
01:02:56.0636 15536 vwififlt - ok
01:02:56.0652 15536 [ 73FA1A41A97A5C34ADC03B3577FF1A86 ] vwifimp C:\Windows\system32\DRIVERS\vwifimp.sys
01:02:56.0683 15536 vwifimp - ok
01:02:56.0699 15536 [ F690B6EEAA94576727B24376D7ED3601 ] W32Time C:\Windows\system32\w32time.dll
01:02:56.0714 15536 W32Time - ok
01:02:56.0714 15536 [ 6B806E893714019969E2B50D7EF6A4D9 ] WacomPen C:\Windows\System32\drivers\wacompen.sys
01:02:56.0730 15536 WacomPen - ok
01:02:56.0761 15536 [ 61F6972FF9AC9A8D0B4D62076DC30051 ] Wanarp C:\Windows\system32\DRIVERS\wanarp.sys
01:02:56.0761 15536 Wanarp - ok
01:02:56.0761 15536 [ 61F6972FF9AC9A8D0B4D62076DC30051 ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
01:02:56.0777 15536 Wanarpv6 - ok
01:02:56.0808 15536 [ 42DF22F8C448E7CD219F6D63743505E2 ] wbengine C:\Windows\system32\wbengine.exe
01:02:56.0870 15536 wbengine - ok
01:02:56.0886 15536 [ 31D37B2F6069C631EF0557D322924812 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
01:02:56.0902 15536 WbioSrvc - ok
01:02:56.0917 15536 [ D9C1E82651BF19C6FF69CEC6FD400124 ] Wcmsvc C:\Windows\System32\wcmsvc.dll
01:02:56.0933 15536 Wcmsvc - ok
01:02:56.0949 15536 [ 5B5FEAB51172F5513C2CF7B39CFA6A01 ] wcncsvc C:\Windows\System32\wcncsvc.dll
01:02:56.0980 15536 wcncsvc - ok
01:02:56.0995 15536 [ E19556D414332E2BEBA1F368229006B4 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
01:02:57.0011 15536 WcsPlugInService - ok
01:02:57.0027 15536 [ B3A4D918DAB90505B6BC7B70632913CB ] Wd C:\Windows\system32\drivers\wd.sys
01:02:57.0042 15536 Wd - ok
01:02:57.0058 15536 [ 6F4B5DDDC3B86091E94BC47347A78AF7 ] WdBoot C:\Windows\system32\drivers\WdBoot.sys
01:02:57.0074 15536 WdBoot - ok
01:02:57.0105 15536 [ 2ADC985B85A71BD7D99712EC0C24358B ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
01:02:57.0120 15536 Wdf01000 - ok
01:02:57.0136 15536 [ 99D404A9A0AFC4734E014EBEBAC13F8F ] WdFilter C:\Windows\system32\drivers\WdFilter.sys
01:02:57.0136 15536 WdFilter - ok
01:02:57.0152 15536 [ 240FC332484572227CD1DF82407F33E5 ] WdiServiceHost C:\Windows\system32\wdi.dll
01:02:57.0167 15536 WdiServiceHost - ok
01:02:57.0167 15536 [ 240FC332484572227CD1DF82407F33E5 ] WdiSystemHost C:\Windows\system32\wdi.dll
01:02:57.0183 15536 WdiSystemHost - ok
01:02:57.0199 15536 [ F2002DA5E6B78C15B2CD48CFF8F0FBB6 ] WebClient C:\Windows\System32\webclnt.dll
01:02:57.0214 15536 WebClient - ok
01:02:57.0230 15536 [ 35FD720943D4FCD75C3275BF062FF140 ] Wecsvc C:\Windows\system32\wecsvc.dll
01:02:57.0261 15536 Wecsvc - ok
01:02:57.0277 15536 [ 4D2612E3C462B68F499D840B1133263E ] wercplsupport C:\Windows\System32\wercplsupport.dll
01:02:57.0308 15536 wercplsupport - ok
01:02:57.0324 15536 [ 5F70EBFC1F75B487DE79501E3CCBDB54 ] WerSvc C:\Windows\System32\WerSvc.dll
01:02:57.0355 15536 WerSvc - ok
01:02:57.0386 15536 [ FE762D3498719C3A23471BBA62F747B4 ] WFPLWFS C:\Windows\system32\DRIVERS\wfplwfs.sys
01:02:57.0386 15536 WFPLWFS - ok
01:02:57.0402 15536 [ 60E0C220593DA4F7C289CB909D2DBAE0 ] WiaRpc C:\Windows\System32\wiarpc.dll
01:02:57.0417 15536 WiaRpc - ok
01:02:57.0433 15536 [ A3C7624A42A3447EF5EDD1ED37FE4E60 ] WIMMount C:\Windows\system32\drivers\wimmount.sys
01:02:57.0449 15536 WIMMount - ok
01:02:57.0464 15536 WinDefend - ok
01:02:57.0495 15536 [ 7911470B6018059A880469A63B65700A ] WinHttpAutoProxySvc C:\Windows\system32\winhttp.dll
01:02:57.0511 15536 WinHttpAutoProxySvc - ok
01:02:57.0542 15536 [ 3D6B518B71C75C8FA4115A33615C107A ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
01:02:57.0574 15536 Winmgmt - ok
01:02:57.0620 15536 [ 8E212A627F33F6FC3B5F3BB47212F66E ] WinRM C:\Windows\system32\WsmSvc.dll
01:02:57.0699 15536 WinRM - ok
01:02:57.0730 15536 [ BB20956C424531003F7FA6CD36F11D5D ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
01:02:57.0745 15536 WinUsb - ok
01:02:57.0761 15536 [ 6351724B8FA0255C2DBD970297F00B93 ] WlanSvc C:\Windows\System32\wlansvc.dll
01:02:57.0808 15536 WlanSvc - ok
01:02:57.0839 15536 [ B330CE47FB74A6BE9A3FFFF4B3F64D9B ] wlidsvc C:\Windows\system32\wlidsvc.dll
01:02:57.0917 15536 wlidsvc - ok
01:02:57.0933 15536 [ E2A596CACFC6504306CDB7B593B90084 ] WmiAcpi C:\Windows\System32\drivers\wmiacpi.sys
01:02:57.0949 15536 WmiAcpi - ok
01:02:57.0964 15536 [ D113499052C5E541906B727779F0F959 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
01:02:57.0980 15536 wmiApSrv - ok
01:02:57.0995 15536 WMPNetworkSvc - ok
01:02:58.0011 15536 [ C6FF953D5D6F2EAE3B8883474D5076B3 ] wpcfltr C:\Windows\system32\DRIVERS\wpcfltr.sys
01:02:58.0074 15536 wpcfltr - ok
01:02:58.0089 15536 [ A6ED163169876BFD2437E872FE2F1509 ] WPCSvc C:\Windows\System32\wpcsvc.dll
01:02:58.0120 15536 WPCSvc - ok
01:02:58.0152 15536 [ 3013658A4D327854BEEC4A08D9655194 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
01:02:58.0167 15536 WPDBusEnum - ok
01:02:58.0183 15536 [ 0346CAFC181C91C6E2330332EB332ED6 ] WpdUpFltr C:\Windows\system32\drivers\WpdUpFltr.sys
01:02:58.0199 15536 WpdUpFltr - ok
01:02:58.0214 15536 [ BC8B5CB336E63BB25EAD1CE8EDD34B81 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
01:02:58.0230 15536 ws2ifsl - ok
01:02:58.0230 15536 [ 012CFE7F0F95266F554EE3B91EE2128A ] wscsvc C:\Windows\System32\wscsvc.dll
01:02:58.0261 15536 wscsvc - ok
01:02:58.0277 15536 [ 74EFDA0526862C3D8D01A776182798EA ] WSDPrintDevice C:\Windows\System32\drivers\WSDPrint.sys
01:02:58.0292 15536 WSDPrintDevice - ok
01:02:58.0308 15536 [ 6ED437C0BE2280AF78070B4BEDD0D221 ] WSDScan C:\Windows\system32\DRIVERS\WSDScan.sys
01:02:58.0324 15536 WSDScan - ok
01:02:58.0324 15536 WSearch - ok
01:02:58.0386 15536 [ 96BB424C62A17E7C3BDAC52BEB715AEF ] WSService C:\Windows\System32\WSService.dll
01:02:58.0480 15536 WSService - ok
01:02:58.0542 15536 [ 63C98A7FE7707A185E88CC302F63ECC3 ] wuauserv C:\Windows\system32\wuaueng.dll
01:02:58.0636 15536 wuauserv - ok
01:02:58.0636 15536 [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
01:02:58.0652 15536 WudfPf - ok
01:02:58.0667 15536 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd C:\Windows\System32\drivers\WUDFRd.sys
01:02:58.0683 15536 WUDFRd - ok
01:02:58.0714 15536 [ B20F051B03A966392364C83F009F7D17 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
01:02:58.0714 15536 wudfsvc - ok
01:02:58.0730 15536 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFWpdFs C:\Windows\system32\DRIVERS\WUDFRd.sys
01:02:58.0730 15536 WUDFWpdFs - ok
01:02:58.0730 15536 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFWpdMtp C:\Windows\system32\DRIVERS\WUDFRd.sys
01:02:58.0746 15536 WUDFWpdMtp - ok
01:02:58.0777 15536 [ F9D8D2E6ECE08B278621D5BF3A7240A6 ] WwanSvc C:\Windows\System32\wwansvc.dll
01:02:58.0792 15536 WwanSvc - ok
01:02:58.0792 15536 ================ Scan global ===============================
01:02:58.0824 15536 [ DDC1AFBF9DDF880CE9BD3896114D8DED ] C:\Windows\system32\basesrv.dll
01:02:58.0855 15536 [ E9343076AE704D20BB0D01F3AF3EFFEF ] C:\Windows\system32\winsrv.dll
01:02:58.0871 15536 [ BD7C6949984D19AAA609896B675E7357 ] C:\Windows\system32\sxssrv.dll
01:02:58.0902 15536 [ 8F226143046435C75C033B0C52E90FFE ] C:\Windows\system32\services.exe
01:02:58.0902 15536 [Global] - ok
01:02:58.0902 15536 ================ Scan MBR ==================================
01:02:58.0917 15536 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0
01:02:59.0027 15536 \Device\Harddisk0\DR0 - ok
01:02:59.0027 15536 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk1\DR1
01:02:59.0042 15536 \Device\Harddisk1\DR1 - ok
01:02:59.0058 15536 [ 739B36F7A373FC81121D831231B6D311 ] \Device\Harddisk2\DR2
01:02:59.0542 15536 \Device\Harddisk2\DR2 - ok
01:02:59.0542 15536 ================ Scan VBR ==================================
01:02:59.0542 15536 [ 35C4E47DA62391FC191E447AACE79EB4 ] \Device\Harddisk0\DR0\Partition1
01:02:59.0542 15536 \Device\Harddisk0\DR0\Partition1 - ok
01:02:59.0589 15536 [ B1E27AA018409DE6BFD73F8AFB883A65 ] \Device\Harddisk0\DR0\Partition2
01:02:59.0589 15536 \Device\Harddisk0\DR0\Partition2 - ok
01:02:59.0652 15536 [ 63165E57932684B1BA1652284C1AF595 ] \Device\Harddisk0\DR0\Partition3
01:02:59.0652 15536 \Device\Harddisk0\DR0\Partition3 - ok
01:02:59.0683 15536 [ 9C9EF54ABD3CB75D83AE3956B8215E75 ] \Device\Harddisk0\DR0\Partition4
01:02:59.0683 15536 \Device\Harddisk0\DR0\Partition4 - ok
01:02:59.0699 15536 [ B1E27AA018409DE6BFD73F8AFB883A65 ] \Device\Harddisk1\DR1\Partition1
01:02:59.0699 15536 \Device\Harddisk1\DR1\Partition1 - ok
01:02:59.0730 15536 [ C7FE15A0AF1A4D409D5E41BFB050DB65 ] \Device\Harddisk2\DR2\Partition1
01:02:59.0730 15536 \Device\Harddisk2\DR2\Partition1 - ok
01:02:59.0730 15536 ============================================================
01:02:59.0730 15536 Scan finished
01:02:59.0730 15536 ============================================================
01:02:59.0746 15504 Detected object count: 0
01:02:59.0746 15504 Actual detected object count: 0 Mein Virenschutzprogramm (Kaspersky Pure 3.0) findet auch keine Infektion. Was mache ich jetzt?
Mit freundlichen Grüßen
rupertbayern
log |