deskaisers | 21.04.2016 22:21 | und der zweite Teil von TDSSKiller Code:
23:11:48.0074 0x2950 [ D358DF634F52247CB43F0781218F4D6E, D375E9E681551467FC5F7AB2AC053C9F22AAC541C0BCBA57090211F45009342C ] Ndu C:\WINDOWS\system32\drivers\Ndu.sys
23:11:48.0105 0x2950 Ndu - ok
23:11:48.0121 0x2950 [ 026618ECF6C4BEBDCB7885D42EC0DBE4, 8E7E13361DCF8748FA3AD518B3DE0A3DCE932316EE32E5529E75785BC5395AD1 ] NetBIOS C:\WINDOWS\system32\drivers\netbios.sys
23:11:48.0141 0x2950 NetBIOS - ok
23:11:48.0158 0x2950 [ F51C02D992A8D6BC5EC4D990F227D4C7, DBBDA422BFA82219403689637BE8D6B0D0A893895143E807FA5A007C166454CB ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys
23:11:48.0190 0x2950 NetBT - ok
23:11:48.0221 0x2950 [ 889459F1FDDC5EC58B437AA6C436F33F, 8ACC32C88D81943A8A90FDAF4772C3EDE06CAB5F489F59525BEA7AAB99DAAE73 ] Netlogon C:\WINDOWS\system32\lsass.exe
23:11:48.0241 0x2950 Netlogon - ok
23:11:48.0290 0x2950 [ 7FD4C3D32DAE890608F44074A3437CD8, 5B7D9E9AEE26896B818F3C5DBE4C96A33D43CE2CF7716B95AAB7203611C03BFE ] Netman C:\WINDOWS\System32\netman.dll
23:11:48.0321 0x2950 Netman - ok
23:11:48.0374 0x2950 [ A059F75402710535A90A8D043674A514, E98536DF74A2B75FDBA6B866DC1909544292DFE5E14F984941470FBA6E8D810C ] netprofm C:\WINDOWS\System32\netprofmsvc.dll
23:11:48.0452 0x2950 netprofm - ok
23:11:48.0490 0x2950 [ C5DEEC4F7ED591D1E322899ADC4EE45F, CA3BE40FA1216F77C6D5B9FD518378DB9561163BFDC90C8CB1C2C2EA4112B263 ] NetSetupSvc C:\WINDOWS\System32\NetSetupSvc.dll
23:11:48.0516 0x2950 NetSetupSvc - ok
23:11:48.0711 0x2950 [ 9E9BEB22644CE1DA521A1D7821BF891F, 5480D52AE1942205B513F916DBCBF5B5F2FFF92D927F4E598FBA618E75BBC2E9 ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
23:11:48.0773 0x2950 NetTcpPortSharing - ok
23:11:48.0827 0x2950 [ 91B32D7036700BEED5343E1F6A7122CC, 8123CA398A79F0E69126F962AA29C2464FAB50182E961CB6A6ADB6CEA09A6732 ] NgcCtnrSvc C:\WINDOWS\System32\NgcCtnrSvc.dll
23:11:48.0864 0x2950 NgcCtnrSvc - ok
23:11:48.0908 0x2950 [ C64B693DF26EB7BFF25F9BAD8B54D571, 12363E81B329D048E0148739AA542958F7CAF6FF3404BB001AF51850EF84338D ] NgcSvc C:\WINDOWS\system32\ngcsvc.dll
23:11:48.0971 0x2950 NgcSvc - ok
23:11:49.0020 0x2950 [ 1B8F07B59F7DAE02264FB8A16088C467, 1795DA9F72C34A9F47D9AAF5E95D40C3296948EB89D9600679AB4660671A5C65 ] NlaSvc C:\WINDOWS\System32\nlasvc.dll
23:11:49.0052 0x2950 NlaSvc - ok
23:11:49.0089 0x2950 [ 465DC580170CD844206D7E3EF1DBF2A1, 5A14001029BE154C708CCA34449B280905DB79978FC7F0BE0CF20B20E47752CF ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys
23:11:49.0174 0x2950 Npfs - ok
23:11:49.0221 0x2950 [ 29395C214D2CD4C81F73166AB988A797, 3631EB2EA17E455ECD151C0BC9A3DF6EC87C75B15DC9B607CFB68D7C463E04B7 ] npsvctrig C:\WINDOWS\System32\drivers\npsvctrig.sys
23:11:49.0252 0x2950 npsvctrig - ok
23:11:49.0321 0x2950 [ AF8B7848E102A83AAECCD24B181CEBE5, B2AAE3567EE3A7975CDFCB3FE41D33C74D4486BFF35FF56E0516A01C744BA52B ] nsi C:\WINDOWS\system32\nsisvc.dll
23:11:49.0374 0x2950 nsi - ok
23:11:49.0390 0x2950 [ 2871225495F832A8C8A7DD1A17EDB3DC, 2F6664C7F5FB2341B2AAF3C5A258FA0D7AEEE447562D7F39FD5A4EE905C18C6D ] nsiproxy C:\WINDOWS\system32\drivers\nsiproxy.sys
23:11:49.0437 0x2950 nsiproxy - ok
23:11:49.0574 0x2950 [ 19BD8A88AAC580592668B070AC0727D9, 60DB84895C40E6412BEB2D0E4D7F05891446B9DE992D70579CC90BA3FB27FC01 ] NTFS C:\WINDOWS\system32\drivers\NTFS.sys
23:11:49.0706 0x2950 NTFS - ok
23:11:49.0737 0x2950 [ 6DBD703320484C37CEA9E4E2D266A8CE, 85D6F73C0E3FDE16829C9BC0D13DD89E64183EAE02F84607F6B8440CB7F366E6 ] Null C:\WINDOWS\system32\drivers\Null.sys
23:11:49.0775 0x2950 Null - ok
23:11:49.0790 0x2950 [ 604D27CC38CC23493F218D0BB834B3FF, EF5E5759CCF16DD97271C82DAF47FB2086EBCA5DE7D05177B70CA1197B95F41E ] nvraid C:\WINDOWS\system32\drivers\nvraid.sys
23:11:49.0822 0x2950 nvraid - ok
23:11:49.0837 0x2950 [ 8B50D897657AB4A15FD9E251BBF7D107, 36036130DD46D9BF105AC7176E219F3BE7D1168A660A0F8DFF76F61FBFA4B417 ] nvstor C:\WINDOWS\system32\drivers\nvstor.sys
23:11:49.0875 0x2950 nvstor - ok
23:11:49.0891 0x2950 [ 31F990B2B6B91E9D7A667405CE12FCB1, 907E095D1E83CDAFF34BE789FC41CDD7BB4DEE23261E1D03C1CF0D4D030534AC ] nv_agp C:\WINDOWS\system32\drivers\nv_agp.sys
23:11:49.0922 0x2950 nv_agp - ok
23:11:49.0975 0x2950 [ 7F3A0D052B8E00E730316210B1DD092F, 14BD026EA759F6C81ED6B4DBB04E0584B7F6456725503FC73CD4347B7743005F ] OneSyncSvc C:\WINDOWS\System32\APHostService.dll
23:11:50.0075 0x2950 OneSyncSvc - ok
23:11:50.0138 0x2950 [ 7B2FD92550C937DBDADCC39854A1A6E5, 7AB1FAEF087585963751BDD2485FEE34A73915C25015504D961B102D80178DCB ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
23:11:50.0176 0x2950 ose - ok
23:11:50.0222 0x2950 [ 334131C162B118EF49930D41B0E17825, 10EF08870B6E118AED2E0E3F45E06BA8A485439823BE98F44E34E7D2B65AA2EF ] p2pimsvc C:\WINDOWS\system32\pnrpsvc.dll
23:11:50.0291 0x2950 p2pimsvc - ok
23:11:50.0376 0x2950 [ 4A5634915AF62C983E08425905D0C04C, 09BC3F7AD9F79C5FF59520933D06FE155AC21CD0ABAFE66B81C9F87D83A2339F ] p2psvc C:\WINDOWS\system32\p2psvc.dll
23:11:50.0471 0x2950 p2psvc - ok
23:11:50.0507 0x2950 [ 7D0FC96264C0F8F2C1321E33E8EB646C, 82A06437B9B096BCCF5CE31BDF3539696E2E41DFA9870C358566EEE2F7D3B447 ] Parport C:\WINDOWS\System32\drivers\parport.sys
23:11:50.0554 0x2950 Parport - ok
23:11:50.0578 0x2950 [ 24AC0FD10325FBC2303B29A5F237AEB0, D94B26A36EBE4EFE8EA270FA6600811206830480BE953809F74FAB80628DF879 ] partmgr C:\WINDOWS\system32\drivers\partmgr.sys
23:11:50.0593 0x2950 partmgr - ok
23:11:50.0656 0x2950 [ 0ECA2ADD5FBCE73183A68935C71B40B7, 08CC5F2F10D1DD1A1396CC29196314003491D3AF3DE59CADB281F252577F1860 ] PcaSvc C:\WINDOWS\System32\pcasvc.dll
23:11:50.0709 0x2950 PcaSvc - ok
23:11:50.0725 0x2950 [ 1D4E995955BDAE781C46CB97AE1CFB58, FF7475F19782CA253AA839DDB86E5AC20C5785D5CC1DD57D9FECBE4F5A5C0BFB ] pci C:\WINDOWS\system32\drivers\pci.sys
23:11:50.0756 0x2950 pci - ok
23:11:50.0777 0x2950 [ 2B4D98DF0CA57FB9536DBC80D2449D1F, AB34FA8585A20854369C0FAEB18BF5C7734D7E3C791F644B0576E40D609FCD09 ] pciide C:\WINDOWS\system32\drivers\pciide.sys
23:11:50.0778 0x2950 pciide - ok
23:11:50.0810 0x2950 [ F4D5793BF2E58AF15C6CF2FEEF9E73EB, 9B5A40AF8838063F8F0A2B1480B39A2711AAE78BD972CDA60CCA0EB2BA211A87 ] pcmcia C:\WINDOWS\system32\drivers\pcmcia.sys
23:11:50.0825 0x2950 pcmcia - ok
23:11:50.0841 0x2950 [ 22A53744CEEADFFFD33BA010FAD95229, 30B775EC9795105B8BF785BD63115C160955E7EFF74B995D3EC288138D1825A3 ] pcw C:\WINDOWS\system32\drivers\pcw.sys
23:11:50.0856 0x2950 pcw - ok
23:11:50.0878 0x2950 [ 48F3A3222CF340FE31535CB6D49C6D6F, 5F8904871219FA6C1BD74747583855B0FBCE42F340A3BE10270D8D3F02766E9D ] pdc C:\WINDOWS\system32\drivers\pdc.sys
23:11:50.0894 0x2950 pdc - ok
23:11:51.0010 0x2950 [ E2F8376F9731D12A009C522036C6073A, 5B8B68D3C013AAA8ED368C97042984C35E8D023542DBA404E7A03E89F2357E66 ] PEAUTH C:\WINDOWS\system32\drivers\peauth.sys
23:11:51.0110 0x2950 PEAUTH - ok
23:11:51.0126 0x2950 [ 1398A85E59698067CBBE1D66A9C13ADF, E3609F183068BFAED756B2F9237181D60A6F6D78691248B8BF5B0AEB6A367E3D ] percsas2i C:\WINDOWS\system32\drivers\percsas2i.sys
23:11:51.0141 0x2950 percsas2i - ok
23:11:51.0157 0x2950 [ 35F7C7AD709D909D618D9EDF987FC3ED, EE713E33688E74C5A2546CC58EBD8EA8F8116F25E42DCF8DA21DCBC7C7590E0E ] percsas3i C:\WINDOWS\system32\drivers\percsas3i.sys
23:11:51.0179 0x2950 percsas3i - ok
23:11:51.0577 0x2950 [ 0DAF7B7D85F7AF38E29161460899C63F, F2609F2BD02C714857F5D5E6EF580643429C54E175AA72D38467F8F3A4E7F59F ] PerfHost C:\WINDOWS\SysWow64\perfhost.exe
23:11:51.0614 0x2950 PerfHost - ok
23:11:51.0699 0x2950 [ 57606281E23B0F53347527691E947B2B, 7030182E706CEBE6BD52BDC71CA8F2230AD445AE6554188E76F09A5E2612BD2E ] PhoneSvc C:\WINDOWS\System32\PhoneService.dll
23:11:51.0799 0x2950 PhoneSvc - ok
23:11:51.0831 0x2950 [ 04F7878E7017105AB782353231561749, FB2811D98216720D4FDF0AC0EDF16C6CD33D7224B4CAFA752B4D2A839E6DD88A ] PimIndexMaintenanceSvc C:\WINDOWS\System32\PimIndexMaintenance.dll
23:11:51.0915 0x2950 PimIndexMaintenanceSvc - ok
23:11:52.0050 0x2950 [ A546F72EFFE5CBBC98003A0CA19DA0F8, 89AE396676A37D851F46427E421E8E8ED5B4BADC33023F1E215CC352A4110F44 ] pla C:\WINDOWS\system32\pla.dll
23:11:52.0151 0x2950 pla - ok
23:11:52.0203 0x2950 [ 15BA68662CED4B0618010A54478E18E5, 1B913BFA7AA11F3A82D80E95FC4857B810D341F9E68545710F90EBE44DAC1DF8 ] PlugPlay C:\WINDOWS\system32\umpnpmgr.dll
23:11:52.0219 0x2950 PlugPlay - ok
23:11:52.0235 0x2950 [ 6BF7093B27EA90FD9222845D19C1BE5F, CF8A6764BB6B369258F21FD303E4CAE08632195620A0BD66B62F62F5D7B762B8 ] PNRPAutoReg C:\WINDOWS\system32\pnrpauto.dll
23:11:52.0250 0x2950 PNRPAutoReg - ok
23:11:52.0289 0x2950 [ 334131C162B118EF49930D41B0E17825, 10EF08870B6E118AED2E0E3F45E06BA8A485439823BE98F44E34E7D2B65AA2EF ] PNRPsvc C:\WINDOWS\system32\pnrpsvc.dll
23:11:52.0320 0x2950 PNRPsvc - ok
23:11:52.0367 0x2950 [ 5A91C28F99043215121499257468C4BD, 816D2AEBA29B8A050747E01CE11EB12A05C1CDDF91835C44BBB6A7B9D348B15A ] PolicyAgent C:\WINDOWS\System32\ipsecsvc.dll
23:11:52.0466 0x2950 PolicyAgent - ok
23:11:52.0504 0x2950 [ AE3B1056FC1795F18D990C4908A6ECBF, 1C41F7714EBF54DF358D9B19D6AFE7281D3EABE20038B568A12031B76E1D50D9 ] Power C:\WINDOWS\system32\umpo.dll
23:11:52.0535 0x2950 Power - ok
23:11:52.0589 0x2950 [ 5BA6B9AD03B81546BA64E488C4EF9D17, C43442577685FA1A7C32094B2F14FC92BA6B511FD9FDBA6FD82473A1B165FC61 ] PptpMiniport C:\WINDOWS\System32\drivers\raspptp.sys
23:11:52.0636 0x2950 PptpMiniport - ok
23:11:53.0396 0x2950 [ 959F94AD1255BC749884EDDD14EC29C4, 2CD6DA9778EA36FA0B4080F6DB1C634712238E014E47546403CD3CDB35A1DCA8 ] PrintNotify C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll
23:11:53.0894 0x2950 PrintNotify - ok
23:11:53.0926 0x2950 [ 21AECFF3EB5748CBE12538A2500EFDE5, A1679F21363E99E3698B9C6F7E7E3BB2877D47089BC381AF0C51B1DD8B24325B ] Processor C:\WINDOWS\System32\drivers\processr.sys
23:11:53.0958 0x2950 Processor - ok
23:11:54.0011 0x2950 [ 7E0078F1EFEB6F8F47CF85C1D73C7EBC, 831BC3CE72F29AD259DEE7121D6F785CE0A8462CFB69DD7FB1F3BDAF16CDBF3E ] ProfSvc C:\WINDOWS\system32\profsvc.dll
23:11:54.0111 0x2950 ProfSvc - ok
23:11:54.0158 0x2950 [ 138DBAE80F390B22297ACD861BDA996E, F0799F40266A11058710AD8ED5D8797A350DCB2A55D3DEF179C1D8C87AFB5208 ] Ps2Kb2Hid C:\WINDOWS\System32\drivers\aPs2Kb2Hid.sys
23:11:54.0173 0x2950 Ps2Kb2Hid - ok
23:11:54.0227 0x2950 [ 596FB6C5A72F34B7566930985E543806, 870B43783DB4CF845FA72BC5E40CE76BE6DFC66FE9E9B4B0A52D6B7FE7EA65FC ] Psched C:\WINDOWS\system32\drivers\pacer.sys
23:11:54.0274 0x2950 Psched - ok
23:11:54.0346 0x2950 [ 543A4EF0923BF70D126625B034EF25AF, 9CC82C5221F11850419A796D48D5452B3DEE0C8E8E85A818F4AAA869673F9740 ] PSI_SVC_2 C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
23:11:54.0362 0x2950 PSI_SVC_2 - ok
23:11:54.0450 0x2950 [ 788CB65D49D1162C5EE6814AFE5B0A70, 74072698692C8237F5041BB111C4E24B6583456FDA084895EA00B677B6FF64FC ] PSI_SVC_2_x64 c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
23:11:54.0519 0x2950 PSI_SVC_2_x64 - ok
23:11:54.0581 0x2950 [ E84F66BA185934C166F8DF0FA8F88455, 2E0380E98DA29B3F43FB3FE0E1ECA52B3C9AEF54CE982D5514F70FAE81758449 ] QWAVE C:\WINDOWS\system32\qwave.dll
23:11:54.0666 0x2950 QWAVE - ok
23:11:54.0704 0x2950 [ CFBA9C976CBF6796E5DC39EF59984021, A1C956AD828FC70ED92D702516E0F88A4BDAF8C93C571D7CA20F1695FD8E70C2 ] QWAVEdrv C:\WINDOWS\system32\drivers\qwavedrv.sys
23:11:54.0751 0x2950 QWAVEdrv - ok
23:11:54.0782 0x2950 [ 7B2AD8C55217B514C14281AB97B4E21D, A1E295897B864B9C0177FF1C502EB060084A1783C0E7E53636291F901C2E2AA8 ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys
23:11:54.0820 0x2950 RasAcd - ok
23:11:54.0882 0x2950 [ E15A9CE1E2E7D1C8DF97A4FC1FFE6289, 44B53418D6BC51ACC567CF6917A0981889B44AE420489C9C03F5A30418B37267 ] RasAgileVpn C:\WINDOWS\System32\drivers\AgileVpn.sys
23:11:54.0936 0x2950 RasAgileVpn - ok
23:11:54.0983 0x2950 [ D60BA4C76D194472D6602FF3D2D51ADE, 01272663897685C75FFBC3F1C0CFDB8D0E1A58182049E0B607D634536A8F6400 ] RasAuto C:\WINDOWS\System32\rasauto.dll
23:11:55.0036 0x2950 RasAuto - ok
23:11:55.0083 0x2950 [ E3C82823B22463BC38AA4F8ADA852624, FF601B117F4003E2CC65B6143C2A270331EB257EE82B3BC020247D1AB1CD625F ] Rasl2tp C:\WINDOWS\System32\drivers\rasl2tp.sys
23:11:55.0120 0x2950 Rasl2tp - ok
23:11:55.0205 0x2950 [ 3655D86C5E2982B131FC0935DE24F98F, 0386B31FECDDED77450609A807097B2307361CB59B236DEC41037BDC95897463 ] RasMan C:\WINDOWS\System32\rasmans.dll
23:11:55.0336 0x2950 RasMan - ok
23:11:55.0352 0x2950 [ 3369023EB5790A75BA7DABA14B75D922, 36B63D5B74FDC932AAF1A876514024602D2F3EAF2CA33D1247CBA1E52FDB0418 ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys
23:11:55.0383 0x2950 RasPppoe - ok
23:11:55.0405 0x2950 [ 1E32A8CD65C4AD0A827CFEB13034DA29, 5D9A92E13020D994CCD39F701BACAFE2177A40A9CC89649441B91E3F3DECD911 ] RasSstp C:\WINDOWS\System32\drivers\rassstp.sys
23:11:55.0436 0x2950 RasSstp - ok
23:11:55.0501 0x2950 [ 2B648363E4C5E34B469C58596F377DD9, 30F82770468BBA562CEA0E9E39B24ACEFBE022343D0180C82E2ACE8957B73E44 ] rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys
23:11:55.0554 0x2950 rdbss - ok
23:11:55.0585 0x2950 [ D0221C13960E274CC539D72D5A842ED0, A5A961506B9D7429D97D0635FD69E74736C0E8405487E1D22BB5CD978A60044C ] rdpbus C:\WINDOWS\System32\drivers\rdpbus.sys
23:11:55.0607 0x2950 rdpbus - ok
23:11:55.0623 0x2950 [ 1DC2CC74B51E4DC4CD5A20C1021E4010, 46B7D17EE27439F2191504D1C6F6C70B2540BD4F2261DBB1F4BE783BEA99B04C ] RDPDR C:\WINDOWS\system32\drivers\rdpdr.sys
23:11:55.0654 0x2950 RDPDR - ok
23:11:55.0670 0x2950 [ 177DF954D0DEC0465A380C75F6E7F65F, 6B30C78223029BD5DBA586BF961968F85762209BA55CD031460A215B20F93AB2 ] RdpVideoMiniport C:\WINDOWS\system32\drivers\rdpvideominiport.sys
23:11:55.0685 0x2950 RdpVideoMiniport - ok
23:11:55.0708 0x2950 [ 5D1680871054D2B0B8A971BC8AB3B837, 9CAB0B2E3857829D34A82A78B120D07E292D4D5060168D964295EB23339B7DE7 ] rdyboost C:\WINDOWS\system32\drivers\rdyboost.sys
23:11:55.0739 0x2950 rdyboost - ok
23:11:55.0808 0x2950 [ 341E6830DA70F65730300DAB4CB0B490, 341EC8DB5E39963EF89E726F08730AFB2356C3BAD71CCE9EECCAB4D9B31C4863 ] ReFSv1 C:\WINDOWS\system32\drivers\ReFSv1.sys
23:11:55.0855 0x2950 ReFSv1 - ok
23:11:55.0941 0x2950 [ 8355BCA85B0928382DFCDD02FCD1681A, F306F038DA09C8D2095C311818E2F991B55BCD96B40B95D2A53A60EA6AC37014 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll
23:11:56.0055 0x2950 RemoteAccess - ok
23:11:56.0086 0x2950 [ 2C82F4DCABAB389CEBB1C9E86C715C9C, 70354621D3D467616A419A818C54D2C89EA013C5050BA9944E3A7A4F25CAD6BA ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll
23:11:56.0139 0x2950 RemoteRegistry - ok
23:11:56.0255 0x2950 [ 518A992A6700A86A47F79388F91737C0, 29B5D48F1E360714F9BCB26939AD49ED07F6D9C82E0DB5C9C6AF5B0BBFF04341 ] RetailDemo C:\WINDOWS\system32\RDXService.dll
23:11:56.0339 0x2950 RetailDemo - ok
23:11:56.0386 0x2950 [ F61333867216EDE1A09A7C55FEDCB6A8, 991FC810FB281F4E91B7D22A7C5AF5D11419ACE05BBB3F664812391069A336F0 ] RfButtonDriverService C:\Windows\RfBtnSvc64.exe
23:11:56.0408 0x2950 RfButtonDriverService - ok
23:11:56.0440 0x2950 [ AEEF76F938188EBF27DF70C1806877F2, 08560C5DE13EBC46EE77F369E92B89350135D5E01A2AF61AA2EA46BEC41EEDD6 ] RFCOMM C:\WINDOWS\System32\drivers\rfcomm.sys
23:11:56.0509 0x2950 RFCOMM - ok
23:11:56.0571 0x2950 [ 176D8470B15CD9080861594F9A33FA01, CFB66D7FEB9465985C2866D64EA03B7E7BE830DCF6C02B3FE2244D7F7E5343E2 ] RpcEptMapper C:\WINDOWS\System32\RpcEpMap.dll
23:11:56.0609 0x2950 RpcEptMapper - ok
23:11:56.0656 0x2950 [ 1A563653DAEDFE4CA81936E0D2FD8B56, 308B0DFEBA63333D407093C449A08ABFECE118C9274100809356BDAF7FA32EB6 ] RpcLocator C:\WINDOWS\system32\locator.exe
23:11:56.0671 0x2950 RpcLocator - ok
23:11:56.0740 0x2950 [ B339861C6A2A86FBCA67C2006B461473, 228ADC8A8603C0A4342C6CBC6F2CC919271D42391365061AF660E0D7151C66A4 ] RpcSs C:\WINDOWS\system32\rpcss.dll
23:11:56.0787 0x2950 RpcSs - ok
23:11:56.0824 0x2950 [ 49EEC19C34A6906883E1279EF8EDA361, 333E9A0A5A497B54D32AFF5D4E2E655FE849E73B8E2AE46CFC5E4E638617AE85 ] RSBASTOR C:\WINDOWS\system32\DRIVERS\RtsBaStor.sys
23:11:56.0855 0x2950 RSBASTOR - ok
23:11:56.0887 0x2950 [ 0AC5FCDC29ED97ECDEF1276425EE2059, 8A12D1732D4AA18A9ED8416F4D4A49B81CE7C4C86ABCEE8FF28A16EA61993CFE ] rspndr C:\WINDOWS\system32\drivers\rspndr.sys
23:11:56.0940 0x2950 rspndr - ok
23:11:56.0987 0x2950 [ FBEFF38DE03450E03E6CD9E8E37A8C74, C1C0876785DB4366D67792A3AFA219FC933FC1894AF93D07B0016BBCC81A5886 ] rt640x64 C:\WINDOWS\System32\drivers\rt640x64.sys
23:11:57.0087 0x2950 rt640x64 - ok
23:11:57.0107 0x2950 [ 044890BB0D6CF1E23C1087234D320509, FA6C79D24BE4ACCFAC617D2850B922BFAA7C2766AE625C725F3ACF43C934EFAF ] s3cap C:\WINDOWS\System32\drivers\vms3cap.sys
23:11:57.0124 0x2950 s3cap - ok
23:11:57.0156 0x2950 [ A49CDA75F8E41F769D19E2669BD62B37, 768A7CAD039C0285191E9D20E36ED8B9A2009499D75888AD88418385B0B9E1AB ] S3XXx64 C:\WINDOWS\system32\DRIVERS\S3XXx64.sys
23:11:57.0204 0x2950 S3XXx64 - ok
23:11:57.0209 0x2950 [ 889459F1FDDC5EC58B437AA6C436F33F, 8ACC32C88D81943A8A90FDAF4772C3EDE06CAB5F489F59525BEA7AAB99DAAE73 ] SamSs C:\WINDOWS\system32\lsass.exe
23:11:57.0241 0x2950 SamSs - ok
23:11:57.0288 0x2950 [ 530F797129776AA7E81994783A97E2AD, F131EF036702C6E741E5A6851AE07E81043CE8BAEED0768838C0F31CE14FEC1A ] sbp2port C:\WINDOWS\system32\drivers\sbp2port.sys
23:11:57.0325 0x2950 sbp2port - ok
23:11:57.0357 0x2950 [ 0C12493B333B96797AFC5F3C7831C051, BEE786D7ED14221B1A9450060597393AC44116D776B913E045B5F6066D720F74 ] SCardSvr C:\WINDOWS\System32\SCardSvr.dll
23:11:57.0457 0x2950 SCardSvr - ok
23:11:57.0510 0x2950 [ 40110802D217FE1CB581D9A70B1FD16F, CCB920593CCC6663676039F3F731536DFEF535C3F715F6DB6F34D0D733BEF89B ] ScDeviceEnum C:\WINDOWS\System32\ScDeviceEnum.dll
23:11:57.0588 0x2950 ScDeviceEnum - ok
23:11:57.0614 0x2950 [ 9B6B1D4DB35A3D9BEAF023BC95E1F49D, CA44124CA3E9958FB77A891CD234A993B63E8AC6632AE801CDEC6666267E7C7E ] scfilter C:\WINDOWS\system32\DRIVERS\scfilter.sys
23:11:57.0646 0x2950 scfilter - ok
23:11:57.0715 0x2950 [ EA195B8BC11C1CDB313CFD456EFFA0E9, EEDF349C59ED0645B04040707906BB4496527243858C2A6BE46BE7029B4A7F37 ] Schedule C:\WINDOWS\system32\schedsvc.dll
23:11:57.0813 0x2950 Schedule - ok
23:11:57.0846 0x2950 [ 4E9158CECF77A029AB98E8FBB43FCED5, AFF8BDB8F8F8DDF4FC0D65712E031DC360856CD3CE5C8A4C8FF960388F37462F ] SCPolicySvc C:\WINDOWS\System32\certprop.dll
23:11:57.0893 0x2950 SCPolicySvc - ok
23:11:57.0930 0x2950 [ B24408471C1BCB17FC44F5B47EA8DEA3, 1CFE07C793F2A3D883E9071B8703C01A7619C8C0A02AAEBAA1130F36654AFD4F ] sdbus C:\WINDOWS\System32\drivers\sdbus.sys
23:11:57.0962 0x2950 sdbus - ok
23:11:57.0993 0x2950 [ 811EC0B1221402FCED0BA37E112BF627, 366EB8AF04C603BED6CF53652CC937099B247D5DD8C58D699D0D8DA22F8FDD51 ] SDRSVC C:\WINDOWS\System32\SDRSVC.dll
23:11:58.0015 0x1e20 Object required for P2P: [ C35B91B6777E7C6DB67B8583D2AA66A7 ] c2cpnrsvc
23:11:58.0077 0x2950 SDRSVC - ok
23:11:58.0115 0x2950 [ DE6D7DC78D956928F59F7415A0F41E13, C0F8EEED29BF63A0D8FB5A0286C1C768BFEF598EC52715D910B5BB1A76231805 ] sdstor C:\WINDOWS\System32\drivers\sdstor.sys
23:11:58.0146 0x2950 sdstor - ok
23:11:58.0178 0x2950 [ EBD07BD20B5E0E92A398566EF8720F79, 8A88C861D4113B9938C32CBD28FD3D7F1C3133E700E23E17F5DFD7B26CCDA04A ] seclogon C:\WINDOWS\system32\seclogon.dll
23:11:58.0210 0x2950 seclogon - ok
23:11:58.0231 0x2950 [ B7B9EEBCB7466338403A75D15AC120D7, B8F79DA71F8CD0F30983F7D92B625A431C212DD543DE2B3DC03EC5A68C41B00D ] SENS C:\WINDOWS\System32\sens.dll
23:11:58.0262 0x2950 SENS - ok
23:11:58.0381 0x2950 [ D14DD7D766664F880FECF44CE6017966, ECF966E3ACF4EBD5A3259468A076619A539E35F1B97AB6A98FBD7882F1FBBBAB ] SensorDataService C:\WINDOWS\System32\SensorDataService.exe
23:11:58.0519 0x2950 SensorDataService - ok
23:11:58.0566 0x2950 [ 45D26646E3AD737E5DE3DB91CCCE7DBA, B05AB32700998C8347BC5797B18EB97F303FCB2302BED852348F2703DEDE72F9 ] SensorService C:\WINDOWS\system32\SensorService.dll
23:11:58.0619 0x2950 SensorService - ok
23:11:58.0666 0x2950 [ 7363A65C738F5A5292D7BDBE55D8C3C2, C53C10A0AE58613DFCC91E62E004D9B188E4793C2A19B4BE871A705EEE77048E ] SensrSvc C:\WINDOWS\system32\sensrsvc.dll
23:11:58.0698 0x2950 SensrSvc - ok
23:11:58.0735 0x2950 [ 67585C295FF2D221679E376B68893B35, 4B5E9A8DA8C6F7B1F7129F80A0603503D467E5650306FB4C309977D74037E46B ] SerCx C:\WINDOWS\system32\drivers\SerCx.sys
23:11:58.0766 0x2950 SerCx - ok
23:11:58.0797 0x2950 [ B8C4852CBCAAC1374C08EC7445443824, DDE577A81B3E11B5B56096317BC47AA6E286573042407B96A9D29BE981F3FA4D ] SerCx2 C:\WINDOWS\system32\drivers\SerCx2.sys
23:11:58.0851 0x2950 SerCx2 - ok
23:11:58.0897 0x2950 [ D3A103944A8FCD78FD48B2B19092790C, 252DB8395DA8639E748658D3BE7863C1700E27AA5C41BB700CFCE193FE3F04E9 ] Serenum C:\WINDOWS\System32\drivers\serenum.sys
23:11:58.0935 0x2950 Serenum - ok
23:11:58.0982 0x2950 [ 249A563C48DFD9E42A37587653E003BB, D022FAE2B7AC9D99B9F230A4DF0B045891588162587E1F468B5E05C8DA98AA9A ] Serial C:\WINDOWS\System32\drivers\serial.sys
23:11:59.0020 0x2950 Serial - ok
23:11:59.0036 0x2950 [ 0F5B43074AE731D2C6F061241C9D84A6, 05CFEB30A4FC11441552D37687608C8C2FD6DC2F2266AE9D6526753E26283DE6 ] sermouse C:\WINDOWS\System32\drivers\sermouse.sys
23:11:59.0067 0x2950 sermouse - ok
23:11:59.0135 0x2950 [ CD90E445F6458512A5BA884D561EFCF1, E792FAB8AFF4126C1977024060842D788A06475139782896AFD7B39C85FCDF3F ] SessionEnv C:\WINDOWS\system32\sessenv.dll
23:11:59.0198 0x2950 SessionEnv - ok
23:11:59.0218 0x2950 [ D9FE59276BD56A9643C32D5FACE2F251, 591862D868A545F468496DE97DEE42C9DB3AFBFC0881CBA79EB6641A254AF033 ] sfloppy C:\WINDOWS\System32\drivers\sfloppy.sys
23:11:59.0219 0x2950 sfloppy - ok
23:11:59.0266 0x2950 [ F8083C536BEDE61AFB4069D8A8C16DA7, 13AADAD7B5582911B8ABBE0CF7132CC517F7413A361CCF8ED502F803D061FFA3 ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll
23:11:59.0320 0x2950 SharedAccess - ok
23:11:59.0487 0x2950 [ AE6E4D3172FBF45B944668CB3998B8A8, E7D7F98CB464C236A17069987F7B678D7688D9D577334151EF09DF5C6F22AFFC ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
23:11:59.0587 0x2950 ShellHWDetection - ok
23:11:59.0641 0x2950 [ ABBE803FE0BDAE0E5BE74DDEFBE62F23, 5009F489F7A6D66628C23A0FA3D7632399D0AD72BD11A1B70D7E768ED507377D ] SiSRaid2 C:\WINDOWS\system32\drivers\SiSRaid2.sys
23:11:59.0672 0x2950 SiSRaid2 - ok
23:11:59.0726 0x2950 [ 6043DF55CFE3C7ACF477645FA64DEA98, 0E18EF8EC589841BC319C17FBABA7383FD247C9441ABF64A0D830976F3E611AE ] SiSRaid4 C:\WINDOWS\system32\drivers\sisraid4.sys
23:11:59.0757 0x2950 SiSRaid4 - ok
23:11:59.0845 0x2950 [ 52F7E8603E888E3DB0A8B3D1804098E9, 4E23DC9442C0C14AAE7146DACBB0B39743F1FFAA463EE7069CCDF866AD27BD77 ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
23:11:59.0908 0x2950 SkypeUpdate - ok
23:11:59.0981 0x2950 [ B922D32039A3B5991E64429EC4EE52A9, 5EB7EB1F6D2C25F06044D8CA9F3BA0471FB40C8C96432BDC2C80CC36DC49BA0B ] smphost C:\WINDOWS\System32\smphost.dll
23:12:00.0034 0x2950 smphost - ok
23:12:00.0234 0x2950 [ F07301C282AA222C33F8C28B4F545275, 2938943A3A62B33C8296DF3B57897D32293F5395A5E2A01C76B0160A98C12520 ] SmsRouter C:\WINDOWS\system32\SmsRouterSvc.dll
23:12:00.0350 0x2950 SmsRouter - ok
23:12:00.0397 0x2950 [ 0B6BECB2651EF947249CDC3715E8B9CC, EB7281AF3529DE16FE8CD0C0C0C8877641865A5864D58628DBAB865B510B0D0B ] SNMPTRAP C:\WINDOWS\System32\snmptrap.exe
23:12:00.0434 0x2950 SNMPTRAP - ok
23:12:00.0513 0x2950 [ 1A6CB30F0EFC1632E6F1B852CA892583, 0E6BDCEE837AEC3D02C437478143C75550C94A50E36895DDB095F54A2FA18E2A ] spaceport C:\WINDOWS\system32\drivers\spaceport.sys
23:12:00.0582 0x1e20 Object send P2P result: true
23:12:00.0582 0x1e20 Object required for P2P: [ D7C6DB84CF2D88DD450654C7D1DD469E ] ClickToRunSvc
23:12:00.0629 0x2950 spaceport - ok
23:12:00.0650 0x2950 [ E1C158F6C00359278727A2CEE5D2ED71, 1591F942C6DD99D3BA7FD4D72D957864117B2263F205468A15F1D1417C6F799D ] SpbCx C:\WINDOWS\system32\drivers\SpbCx.sys
23:12:00.0682 0x2950 SpbCx - ok
23:12:00.0751 0x2950 [ D1241DFC397FA8CCFB4BB4B63AAD31AC, F8C57C2F7CA8B6D8FEE1505A143A3FECF502C8DCFFC375F9C8848A87D9714C9E ] Spooler C:\WINDOWS\System32\spoolsv.exe
23:12:00.0798 0x2950 Spooler - ok
23:12:01.0061 0x2950 [ 7C58AFEC26E9F7730A8AA7FD40225937, 546EAD8889F2A1BB6DCCB7781976B975F34DA1C9047F95FEAA52CF38EC60C6DD ] sppsvc C:\WINDOWS\system32\sppsvc.exe
23:12:01.0395 0x2950 sppsvc - ok
23:12:01.0442 0x2950 [ ACC1709EC7FE6EB8999DBC91C50C2B34, 83ABF51751A264291C53A32B86239A607361E56CB045CD2CBE6E41DBB8A01F54 ] srv C:\WINDOWS\system32\DRIVERS\srv.sys
23:12:01.0511 0x2950 srv - ok
23:12:01.0558 0x2950 [ AFBCFC946FAE7483E27BD316D03F94A5, CC9478EA717E85C38304957E923997821DFE2A995D7C8DF98C15267D952BEFBE ] srv2 C:\WINDOWS\system32\DRIVERS\srv2.sys
23:12:01.0626 0x2950 srv2 - ok
23:12:01.0675 0x2950 [ 107C1EBE79710E4A759449BD6604245A, 963D693F4E61EDC7B3AA9006CC274D56E577CE0035A61DDB2A6DE72116D5C52B ] srvnet C:\WINDOWS\system32\DRIVERS\srvnet.sys
23:12:01.0742 0x2950 srvnet - ok
23:12:01.0827 0x2950 [ 8C1786C073A496B8C0C8A5450A4FFD5B, 13BF3B42A63CE6C461259D4CE767FB0DE1F10433512A11D2B2C033E36E652542 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll
23:12:01.0896 0x2950 SSDPSRV - ok
23:12:01.0927 0x2950 [ 217A982201052EFC8C3C0C88D229791C, 11509E3446ED7B75C9A05CDC4A7AF18926CB463E0D98BAE1CD5DB43E88F94F90 ] SstpSvc C:\WINDOWS\system32\sstpsvc.dll
23:12:01.0980 0x2950 SstpSvc - ok
23:12:02.0158 0x2950 [ 9DA3B55B17B54789AFB8C657D4ACE4D7, 5E4599E682327E3B8097A88A69ED73F96254A29054744D5DFB782054863F131E ] ss_conn_service C:\Program Files (x86)\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe
23:12:02.0211 0x2950 ss_conn_service - ok
23:12:02.0346 0x2950 [ E2496AF75B2099453D6DBCD91C600D2D, 4B00123F677F6998223B5C51ADFB44781348919BA154442146AA0542C36D76B9 ] StarMoney 10 OnlineUpdate C:\Program Files (x86)\StarMoney 10\ouservice\StarMoneyOnlineUpdate.exe
23:12:02.0384 0x2950 StarMoney 10 OnlineUpdate - ok
23:12:02.0520 0x2950 [ 3BF022F8064A83A23DF90971DD78CA83, 85754DF1C6DE745ADF9A0BAB1948AFF2CA16C4569128DA90AF610D199E621BF4 ] StarMoney 9.0 OnlineUpdate C:\Program Files (x86)\StarMoney 9.0\ouservice\StarMoneyOnlineUpdate.exe
23:12:02.0589 0x2950 StarMoney 9.0 OnlineUpdate - ok
23:12:02.0767 0x2950 [ 58863C57E4598C4F9DA967C5C36CFA5D, BB34FBC324E84E05128258CE3755241ECB63F7F2AE7F96716AC373931FAF92A8 ] StateRepository C:\WINDOWS\system32\windows.staterepository.dll
23:12:02.0968 0x2950 StateRepository - ok
23:12:02.0989 0x2950 [ CCDA497C880AD16D87EDFAEFCFB2EDF5, 622599AA35ACFF0375DA252210BE42E7E90F30EDFEFF2F62FDB14AE6E45B5F88 ] stexstor C:\WINDOWS\system32\drivers\stexstor.sys
23:12:03.0020 0x2950 stexstor - ok
23:12:03.0052 0x2950 [ 2834415C4EDD6CE35CB3CFEC50E08469, 28426616C709457DF38B5E2B4B9666C1255B81D2097589A95AAABD1BFACD302A ] StillCam C:\WINDOWS\system32\DRIVERS\serscan.sys
23:12:03.0089 0x2950 StillCam - ok
23:12:03.0105 0x1e20 Object send P2P result: true
23:12:03.0105 0x1e20 Object required for P2P: [ 2619DC483579DB9FE804044C1ADFFD1A ] dam
23:12:03.0168 0x2950 [ 75476CAA8FA0A4E573948CDE8C7F0304, 68C4405CACA77AEED71761875A9AF60BCFBDD39E356BEA1BA8226E099BAA5FA4 ] stisvc C:\WINDOWS\System32\wiaservc.dll
23:12:03.0268 0x2950 stisvc - ok
23:12:03.0290 0x2950 [ BF8EA6FC3358C2F69678E3E94F764F84, D274DAD7B5756DD49CA44277C73497F1EC465C8E365CC730CD194932C3825920 ] storahci C:\WINDOWS\system32\drivers\storahci.sys
23:12:03.0306 0x2950 storahci - ok
23:12:03.0353 0x2950 [ 32FF460DA8C1F370F5C08B7654899B73, 0C9D5D38D033109BA672ABAFEF0F0CD295E9FFA108ACFCA9044429D9B2CA9057 ] storflt C:\WINDOWS\system32\drivers\vmstorfl.sys
23:12:03.0391 0x2950 storflt - ok
23:12:03.0422 0x2950 [ CC21DB3EF619B9480FE31A4EFE92CBEB, 256EFCA2F231F41D34250E1460BF88894D943EAE83A0B153FCADE700AB4DE11E ] stornvme C:\WINDOWS\system32\drivers\stornvme.sys
23:12:03.0453 0x2950 stornvme - ok
23:12:03.0488 0x2950 [ 390B8A75768E2689586539C224520895, D72F52E6D7AC5DC318FF9C1DF1F4E8A435D65B6BB59D7F1642222EC026BC54DB ] storqosflt C:\WINDOWS\system32\drivers\storqosflt.sys
23:12:03.0522 0x2950 storqosflt - ok
23:12:03.0591 0x2950 [ E5C3042B68D4EA89B3C52E150E553DA0, 83428E8EFC584778745F6B30F6F8FD96A645AD33F39AA955E97F9A0D458847B1 ] StorSvc C:\WINDOWS\system32\storsvc.dll
23:12:03.0669 0x2950 StorSvc - ok
23:12:03.0695 0x2950 [ 770A92D9D3A0BF61C97C3AFCB36847D9, 21A8CC3F8E63B971C4FF8DDED5C7032E093A7B0F16E2128A9BD2E890BA76A1D9 ] storufs C:\WINDOWS\system32\drivers\storufs.sys
23:12:03.0710 0x2950 storufs - ok
23:12:03.0742 0x2950 [ 736A2418E3E7F3DB3CF6EB0A55D1D581, 2D3BBC4E0C7B51EDE7479A978E4BCD5F47A7257745179F01D2D9ECFD83CCCC82 ] storvsc C:\WINDOWS\system32\drivers\storvsc.sys
23:12:03.0773 0x2950 storvsc - ok
23:12:03.0814 0x2950 [ FA8F6E3AD3F92B35D2673CC9FD20429C, 62F81CBACF7E16FEF9DE3BE95FA5C9BDB51BAE4667AE5AE71399864A390FF6D5 ] svsvc C:\WINDOWS\system32\svsvc.dll
23:12:03.0877 0x2950 svsvc - ok
23:12:03.0877 0x2950 [ BD98B0225BCD49E8A62F4F8EE1D1F613, CDAD11969B2DA417079547724BECC3DB4FC4711B3C01590EB0D02774B69B6D90 ] swenum C:\WINDOWS\System32\drivers\swenum.sys
23:12:03.0899 0x2950 swenum - ok
23:12:03.0946 0x2950 [ 22E539A9B96C66A713583EC017562616, 210DA61DFC7AA9AD23277D9CC0239B781F4EABD322D0803AEC9434D68B81FABD ] swprv C:\WINDOWS\System32\swprv.dll
23:12:04.0015 0x2950 swprv - ok
23:12:04.0077 0x2950 [ CAE4B27B469C583131EA5AAE622F5D76, 3979006EB22489D1AAD2EC2E9F32C286EEDCDB83B37B97E58BA831263EC33B84 ] Synth3dVsc C:\WINDOWS\System32\drivers\Synth3dVsc.sys
23:12:04.0162 0x2950 Synth3dVsc - ok
23:12:05.0049 0x2950 [ 34A3EB84B2A830E6F450B8F885AE4E6E, E61AC6D17B815CB71F26D71CA3CCAFD9E66A170E3ED2E64A4F20D097A0C683B5 ] SysMain C:\WINDOWS\system32\sysmain.dll
23:12:05.0322 0x2950 SysMain - ok
23:12:05.0422 0x2950 [ AF2C8D7C1D4DCFD5C31501F009DF42B7, 3DDF9353F014EE99B031BBC969620CA07647FBB8D78EB4697C8D633021B46B11 ] SystemEventsBroker C:\WINDOWS\System32\SystemEventsBrokerServer.dll
23:12:05.0485 0x2950 SystemEventsBroker - ok
23:12:05.0553 0x2950 [ 6979A147C0D5C5CAB621ADC394D32B80, C30B8E3D271A1591D965559EA4A11A1BE63A34D832ED53B26CE91799C888DF77 ] TabletInputService C:\WINDOWS\System32\TabSvc.dll
23:12:05.0622 0x1e20 Object send P2P result: true
23:12:05.0622 0x2950 TabletInputService - ok
23:12:05.0638 0x1e20 Object required for P2P: [ 9A2A2F3C69B9A30B6E78536F6D258BAD ] iai2c
23:12:05.0704 0x2950 [ 86B62FC8CB89946446F9B24FE49A66FD, 7B095310D1C78B82E5ACAC4713E101DD1323A3CF6FB39218C2E78ABE2B0385B5 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll
23:12:05.0770 0x2950 TapiSrv - ok
23:12:05.0907 0x2950 [ 083A727D784009F9CCFB120C7841B7AF, 14242ECC3EB17154AD856A2C5229324BA6914291F4E2CD93E6AE251A31130448 ] Tcpip C:\WINDOWS\system32\drivers\tcpip.sys
23:12:06.0023 0x2950 Tcpip - ok
23:12:06.0123 0x2950 [ 083A727D784009F9CCFB120C7841B7AF, 14242ECC3EB17154AD856A2C5229324BA6914291F4E2CD93E6AE251A31130448 ] Tcpip6 C:\WINDOWS\system32\drivers\tcpip.sys
23:12:06.0224 0x2950 Tcpip6 - ok
23:12:06.0286 0x2950 [ 17F37EC9042D84561C550620643D9A85, B01620BA319A1383D403E6E50C7724879520F3267654556D975CAFFF91A82C78 ] tcpipreg C:\WINDOWS\system32\drivers\tcpipreg.sys
23:12:06.0324 0x2950 tcpipreg - ok
23:12:06.0371 0x2950 [ 91D3F2A6253EF83EFBD7903028F58C4D, C15768CCCF734093B0F8A5E76882B35927B716E4F14D91ACEE897E1C078D43D1 ] tdx C:\WINDOWS\system32\DRIVERS\tdx.sys
23:12:06.0409 0x2950 tdx - ok
23:12:06.0847 0x2950 [ E1E13735B6D2FE4FFEAEB91989B9C46F, 32CCCDD17C72ECBD96BB15B9362AD5BC0B173E95F9A4045F084719A5E956932B ] TeamViewer C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
23:12:07.0094 0x2950 TeamViewer - ok
23:12:07.0110 0x2950 [ E730D0EB1B84EBC98423FC8D285EDBC0, 442DD433F9D22304E64EC7ACFC4E04892D4D92D8AC545A3530FC932A2EEC4767 ] terminpt C:\WINDOWS\System32\drivers\terminpt.sys
23:12:07.0125 0x2950 terminpt - ok
23:12:07.0241 0x2950 [ 14307D4801C8CEF0A615907C09E886B3, C7F34C294D70DE689F673E0B5E9253B27EFEBBE6FA38B68B3B0B0374A896407E ] TermService C:\WINDOWS\System32\termsrv.dll
23:12:07.0327 0x2950 TermService - ok
23:12:07.0342 0x2950 [ D009D1BC14FD5F2AC93D1878735F6C39, D8BCE505B66E05BC00075E46B38359CA4D0FA484EB7981A74221885E8A1FFB87 ] Themes C:\WINDOWS\system32\themeservice.dll
23:12:07.0364 0x2950 Themes - ok
23:12:07.0396 0x2950 [ 5F27DE2082E16D4C1D6C627C8ECBD341, 08DA3EB3EF2B2006B6F9F2C8C149DF55DE6738975D556206A814096CAB5C1411 ] TieringEngineService C:\WINDOWS\system32\TieringEngineService.exe
23:12:07.0463 0x2950 TieringEngineService - ok
23:12:07.0543 0x2950 [ 62300878366762EABAC7834543964A6E, 84E3DE6C93B31CBA71BA90669EB52C3122774E0EF803390EE8A483164D2CFE18 ] tiledatamodelsvc C:\WINDOWS\system32\tileobjserver.dll
23:12:07.0627 0x2950 tiledatamodelsvc - ok
23:12:07.0665 0x2950 [ 7E81E3E0D7F83BFE3C3975020B6C7F12, 316F9415646CC7A4E9A5F1E07310D433457E623B3E589543E4A6C73C4F77712C ] TimeBroker C:\WINDOWS\System32\TimeBrokerServer.dll
23:12:07.0728 0x2950 TimeBroker - ok
23:12:07.0765 0x2950 [ 169B0A246067457FEF8A18EED7EED9D5, BF5AC0CB29E1E456253B881CD0608B578D7343E9DFE1738A14598D1DFFE1AB66 ] TPM C:\WINDOWS\System32\drivers\tpm.sys
23:12:07.0797 0x2950 TPM - ok
23:12:07.0863 0x2950 [ AA84AF93CE5AF1F05838B51D20295419, 85B3EE773C691EEDFA080CD9C59D31CB58A5BC577AEE91A929F5DFBE1368AB6D ] TrkWks C:\WINDOWS\System32\trkwks.dll
23:12:07.0913 0x2950 TrkWks - ok
23:12:07.0997 0x2950 [ E50DD57F496CED8873FA3E7D38BCCD42, 36B95F6F2CF48078C6B19FB452C87BB07E95C8804A5C6B526D349AC6227CAB26 ] TrustedInstaller C:\WINDOWS\servicing\TrustedInstaller.exe
23:12:08.0044 0x2950 TrustedInstaller - ok
23:12:08.0082 0x2950 [ 48E828C66AB016E48F2CB4DD585315FD, 063809B610F6B177B65D62D12605FB94F108DB26A9FD3067E6D6C51F0D92E774 ] tsusbflt C:\WINDOWS\system32\drivers\TsUsbFlt.sys
23:12:08.0128 0x2950 tsusbflt - ok
23:12:08.0144 0x2950 [ 267C76EE60736EA5A1811A53FA02AABE, 28D4C4CB972534204B8336D0403B70E4EFE4F8369ABDE7401FFCCF7D4E3EA165 ] TsUsbGD C:\WINDOWS\System32\drivers\TsUsbGD.sys
23:12:08.0182 0x2950 TsUsbGD - ok
23:12:08.0182 0x1e20 Object send P2P result: true
23:12:08.0182 0x1e20 Object required for P2P: [ 59A20F5AD9F4AE54098154359519408E ] iaLPSS2i_I2C
23:12:08.0197 0x2950 [ 8CE72F094B822AD5EE9C3A3AFC0C16B6, 827CCD849544E1DA364B03DBC82A848D2F93AD32BA14ED52709C609BC70CE5CA ] tunnel C:\WINDOWS\System32\drivers\tunnel.sys
23:12:08.0244 0x2950 tunnel - ok
23:12:08.0297 0x2950 [ 56C238ACFE4CB020D3E38508249039EA, 172868080F07D98175229A02410FE751B5958ED5A3D567D4AE5736F4025DF432 ] tzautoupdate C:\WINDOWS\system32\tzautoupdate.dll
23:12:08.0344 0x2950 tzautoupdate - ok
23:12:08.0367 0x2950 [ 42C546414F80BD6C0137FC3A106F8A69, 067FFCAF0059935851888BD984E848E4E1A6CC1941A8F4534067CCF0B2A3B2E6 ] uagp35 C:\WINDOWS\system32\drivers\uagp35.sys
23:12:08.0413 0x2950 uagp35 - ok
23:12:08.0429 0x2950 [ 1686DBC81748B096232B15F16C302985, 63D72D1838C42A95599AF3C0B19A069E310ADB091208011D7D6FBAC968D1A59A ] UASPStor C:\WINDOWS\System32\drivers\uaspstor.sys
23:12:08.0445 0x2950 UASPStor - ok
23:12:08.0467 0x2950 [ 3995CC3DEDED258768B8EBC2F4C0DC73, 130E99EF13EB494B8BB6A8E037DD8D59C195190EA3C27CA9E3A695AF4349DC7C ] UcmCx0101 C:\WINDOWS\system32\Drivers\UcmCx.sys
23:12:08.0482 0x2950 UcmCx0101 - ok
23:12:08.0514 0x2950 [ 1C95F7CE37D9EFB90EBE987A9712356C, B9EE7743ADA50276F05D735C5C29E44039D630A7DC93766A0EAF400DA037E4AF ] UcmUcsi C:\WINDOWS\System32\drivers\UcmUcsi.sys
23:12:08.0563 0x2950 UcmUcsi - ok
23:12:08.0598 0x2950 [ AED081772091C98173905E2DF28C223B, 08541CF3354EBB634BD590E0019128F70A6FCA9075B7E785A9E9BD82EC234DD3 ] Ucx01000 C:\WINDOWS\system32\drivers\ucx01000.sys
23:12:08.0630 0x2950 Ucx01000 - ok
23:12:08.0665 0x2950 [ DCA34A111C29E4578DF2B8CEA3C7CDBD, 86BCE4C8EC228724D5896067A85A4768B6069D10A482ECC51A8F828DBD3880C9 ] UdeCx C:\WINDOWS\system32\drivers\udecx.sys
23:12:08.0682 0x2950 UdeCx - ok
23:12:08.0729 0x2950 [ 718A956AE00CE086F381044AB66CC29C, E4EED1600C72CECE1D4507827C329A93D356BBA027470FCF6C4B5C1651DED643 ] udfs C:\WINDOWS\system32\DRIVERS\udfs.sys
23:12:08.0829 0x2950 udfs - ok
23:12:08.0829 0x2950 [ BA760F8E66428BA9FF1E8BFBC6248136, BE7DCBB293B12672CB3653E640C46F669BD738D320F34F4FA4A26F6B248561F0 ] UEFI C:\WINDOWS\System32\drivers\UEFI.sys
23:12:08.0845 0x2950 UEFI - ok
23:12:08.0898 0x2950 [ 28B8E1C6CBCF9FFE2FABFF3160C26ADF, 1C90E6C4E17C9B5555151943970BB6CC196E7EFC6665D9B9DCBB1EC51C70C715 ] Ufx01000 C:\WINDOWS\system32\drivers\ufx01000.sys
23:12:08.0963 0x2950 Ufx01000 - ok
23:12:08.0982 0x2950 [ 2B1DABA97DDF5365FC66EE7DEDD86A13, 2FF3355862938B37EE63FCA149415CE5032BF54747B07517BB21460733B65AD8 ] UfxChipidea C:\WINDOWS\System32\drivers\UfxChipidea.sys
23:12:08.0998 0x2950 UfxChipidea - ok
23:12:09.0029 0x2950 [ DB630FC660443D63EBAB2C830C298EFE, 7698772FF9C988DF752DF3FAF1B154E923EBA425B92F288ABB6EF0805ABD3296 ] ufxsynopsys C:\WINDOWS\System32\drivers\ufxsynopsys.sys
23:12:09.0045 0x2950 ufxsynopsys - ok
23:12:09.0098 0x2950 [ 63451BD694651307254B8DD37A3D79C7, C781E2D876AF42D5972CCDCF86B7A59F6AF8AF0C6350647F3FA1B209119B5EF9 ] UI0Detect C:\WINDOWS\system32\UI0Detect.exe
23:12:09.0130 0x2950 UI0Detect - ok
23:12:09.0187 0x2950 [ 6E566C1708DDC93ADF9286E9C714B652, AF179BCA9395D51ACDFB5BACE29388E2B4D5587FCAB53898AAA4F4011851B115 ] UimBus C:\WINDOWS\System32\drivers\UimBus.sys
23:12:09.0218 0x2950 UimBus - ok
23:12:09.0249 0x2950 [ 7DF6A08B0B74C4F9357EFBAE309B87F1, 9A5BB8EA70709519A3599D0818923321AE691CC9EBC1ABC3F5BB008AF18B797B ] Uim_DEVIM C:\WINDOWS\System32\drivers\uim_devim.sys
23:12:09.0271 0x2950 Uim_DEVIM - ok
23:12:09.0334 0x2950 [ 2DDD63E0948474B91046CF1AB7661189, A91A1F1E646B928C95C30DA4D70220262D3A67C1B66E365C981AA23A401624E9 ] Uim_IM C:\WINDOWS\System32\drivers\uim_im.sys
23:12:09.0403 0x2950 Uim_IM - ok
23:12:09.0450 0x2950 [ 6DE78C04BF32ECA7AF3064F53687C9A5, 164D3BB24EBA3EAF613799928063FE75220A4E583D985F53A895017782C18600 ] uliagpkx C:\WINDOWS\system32\drivers\uliagpkx.sys
23:12:09.0488 0x2950 uliagpkx - ok
23:12:09.0519 0x2950 [ 67D1E0E6E4D5D33AF0AEF0E33B4DA0F4, BA2E6F16B6B3B54C943F1E7B9F79A6D1332A7ED228D754CC5AE70E3CD78B1F37 ] umbus C:\WINDOWS\System32\drivers\umbus.sys
23:12:09.0572 0x2950 umbus - ok
23:12:09.0588 0x2950 [ 11680607944A719EF20E0E740785712A, 1567C2B3AAD702DCC2DC9C6B7B92EE5B681C06701A39DAC3AA7E2BE9E1E04F47 ] UmPass C:\WINDOWS\System32\drivers\umpass.sys
23:12:09.0635 0x2950 UmPass - ok
23:12:09.0704 0x2950 [ FD949725D9EB52C0B87435CDE1134668, 96E2B3D3379E9AE225E5A4C5251207F1E7DA573901F4F026758EDE9FAEF4F2C5 ] UmRdpService C:\WINDOWS\System32\umrdp.dll
23:12:09.0788 0x2950 UmRdpService - ok
23:12:09.0867 0x2950 [ CB902A15DD21B363FECA5DCCF34F5C57, 6A0836A12A410EBD5C667982852B58CA9E9EDB11EA666C413CC0F811E01A549D ] UnistoreSvc C:\WINDOWS\System32\unistore.dll
23:12:10.0005 0x2950 UnistoreSvc - ok
23:12:10.0172 0x2950 [ E1A119AD21F5AFE22EB516C549306D3D, 48769D5E7A78B7A2C00F1F6798AC133CF3E0B2C76F71D3719BD741DDD8F2D229 ] UNS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
23:12:10.0205 0x2950 UNS - ok
23:12:10.0290 0x2950 [ B85A8CF2BE74DFF1E80097AC94584112, B1DBACC33A4143FEE2CF54E567590A69580312AD7A053BCC85B487C4D451FBDA ] upnphost C:\WINDOWS\System32\upnphost.dll
23:12:10.0374 0x2950 upnphost - ok
23:12:10.0405 0x2950 [ 2410A0C20D21A25E6C01979FA886BE90, DD3F92D8CF110D47B9E36BA0EB10EB34C0FDD28FE0D57E4B60F9326703388F75 ] UrsChipidea C:\WINDOWS\System32\drivers\urschipidea.sys
23:12:10.0421 0x2950 UrsChipidea - ok
23:12:10.0452 0x2950 [ 6E59CE43B6BA5AA1ADCF36A4DBBB92BB, 647D66775A90F67D803043DE8C8AE8BC2F7A042A8DCF9C95BF5458C79609481B ] UrsCx01000 C:\WINDOWS\system32\drivers\urscx01000.sys
23:12:10.0474 0x2950 UrsCx01000 - ok
23:12:10.0474 0x2950 [ E8A59FA109A22FC07E44BDFCC9727DBD, 0DC5928C0FF7E5B38917660D6EFECCC22172DB0BB9B23216F33E750790529C16 ] UrsSynopsys C:\WINDOWS\System32\drivers\urssynopsys.sys
23:12:10.0490 0x2950 UrsSynopsys - ok
23:12:10.0537 0x2950 [ D8A44550ECE102B6443F5D54DCE7DAB3, 97F5AE7B17DAC4A4F3186C77116BC8E49874FB0018C99D8E2CDA29D89E8B0912 ] usbccgp C:\WINDOWS\System32\drivers\usbccgp.sys
23:12:10.0552 0x2950 usbccgp - ok
23:12:10.0569 0x2950 [ 66B3D22DAB5312FF238ABF5C6D9F8FAB, 4A644AFC1C27D692D352BEB8801398A00EA5B4055476063AF905A0A46DDBF8BB ] usbcir C:\WINDOWS\System32\drivers\usbcir.sys
23:12:10.0590 0x2950 usbcir - ok
23:12:10.0621 0x2950 [ 3E4F20DB902D2E2914F3FF3DB9772200, F3D32BE06A26164B5F6E8DB67160D1DBBDC6D14666EEF84EA43C78CB7706E31C ] usbehci C:\WINDOWS\System32\drivers\usbehci.sys
23:12:10.0652 0x2950 usbehci - ok
23:12:10.0690 0x1e20 Object send P2P result: true
23:12:10.0706 0x1e20 Object required for P2P: [ 63282F5EB7E5BFB58FD1EC93C6ADB457 ] MozillaMaintenance
23:12:10.0722 0x2950 [ 41F7F00D76904416EF1F9EFA1A4C37A2, 7A4250EB2E2E0037B3AE1480C13B229ECFF5C575E68E4F934EE011DB1833B46A ] usbhub C:\WINDOWS\System32\drivers\usbhub.sys
23:12:10.0791 0x2950 usbhub - ok
23:12:10.0837 0x2950 [ B7E1CAA9429E4C3E7E01CB35B97E1536, 11A6431C27821F247202AC9F18441FEA26544630461522C129F1671257C527BA ] USBHUB3 C:\WINDOWS\System32\drivers\UsbHub3.sys
23:12:10.0922 0x2950 USBHUB3 - ok
23:12:10.0937 0x2950 [ DAB35CCA86F5FBE77D870A40089BC4A1, 4A47D59D882D0F2B93F2EE7F10995E7D68B58009434E2CBD04C659E0D1F059D8 ] usbohci C:\WINDOWS\System32\drivers\usbohci.sys
23:12:10.0953 0x2950 usbohci - ok
23:12:10.0973 0x2950 [ 21162F65C7756AAECAEBED9E67D0A5FE, DE3B43964171DB5B0464DA5E7A674A5D200A8695E6EF1AE2030681066ABA2688 ] usbprint C:\WINDOWS\System32\drivers\usbprint.sys
23:12:10.0991 0x2950 usbprint - ok
23:12:11.0022 0x2950 [ F259A45D6B555B14CC8365AA6BC8DC20, 28A588656449307F6E9C999BE5D73E34A2542A5771F4B504D9D36B9F93F32303 ] usbser C:\WINDOWS\System32\drivers\usbser.sys
23:12:11.0038 0x2950 usbser - ok
23:12:11.0071 0x2950 [ 8949F77132A4F8F3BA17C6727099F002, 86AD4A2263B34983335180FDAE775D1744E042D2A11300D27DF546F15F285A25 ] USBSTOR C:\WINDOWS\System32\drivers\USBSTOR.SYS
23:12:11.0075 0x2950 USBSTOR - ok
23:12:11.0107 0x2950 [ 8B3E458A8851F9A3B2109B1680EE1159, 753AC8F82F65564F00EA2F60B43E4B815FEAABE0DA35B6356210A5F4B1CA3EFC ] usbuhci C:\WINDOWS\System32\drivers\usbuhci.sys
23:12:11.0138 0x2950 usbuhci - ok
23:12:11.0154 0x2950 [ 4B13B61CBB9CC3CB373C60B930D648F5, C79D10A1BF2B6BF141DD37A90BCCA0E1F2AF31B5028BB21537A8EE6EED630F5B ] usbvideo C:\WINDOWS\System32\Drivers\usbvideo.sys
23:12:11.0191 0x2950 usbvideo - ok
23:12:11.0307 0x2950 [ 9E9D58F5E1702955B2F4D62996F80E8E, 6C21C250B9D98346D0D5CB7D6C11AB120A1D195C28313BDB0CE532663F0114E2 ] USBXHCI C:\WINDOWS\System32\drivers\USBXHCI.SYS
23:12:11.0391 0x2950 USBXHCI - ok
23:12:11.0492 0x2950 [ 2771EBB565F5C121E66060B173991D4D, 1EB34A6262A18E47ADCA392FDB2D58E8428A1CA43EB4196D76A897F74A03CA7F ] UserDataSvc C:\WINDOWS\System32\userdataservice.dll
23:12:11.0608 0x2950 UserDataSvc - ok
23:12:11.0655 0x2950 [ 36EC82F0E399F36BD25F593D63DC144A, 2A9E916A098ACD5A5074A5FD053ECAB027A0932A348C728F20CD63EF16289533 ] UserManager C:\WINDOWS\System32\usermgr.dll
23:12:11.0738 0x2950 UserManager - ok
23:12:11.0777 0x2950 [ 05F4CB5991D897E4253BF61FA5E828F8, 25B5B6751B4455491E9A050DF5C12F788B5677F70FB4844E0BF851090AC1F74C ] UsoSvc C:\WINDOWS\system32\usocore.dll
23:12:11.0896 0x2950 UsoSvc - ok
23:12:11.0927 0x2950 [ 889459F1FDDC5EC58B437AA6C436F33F, 8ACC32C88D81943A8A90FDAF4772C3EDE06CAB5F489F59525BEA7AAB99DAAE73 ] VaultSvc C:\WINDOWS\system32\lsass.exe
23:12:11.0958 0x2950 VaultSvc - ok
23:12:11.0996 0x2950 [ E1BE37312785A71862516F66B3FD24CE, D248C513DBEACB192653C6E46809209F341771B146544BBF43B86369280B4F8B ] vdrvroot C:\WINDOWS\system32\drivers\vdrvroot.sys
23:12:12.0027 0x2950 vdrvroot - ok
23:12:12.0080 0x2950 [ 67A6E949395A09914AD8B38FE14B8D15, 593F2FAA880B2E0468F98BD58B5214A170E5890907B25294D7A47C66505A3D45 ] vds C:\WINDOWS\System32\vds.exe
23:12:12.0158 0x2950 vds - ok
23:12:12.0181 0x2950 [ E42C0F2850735FF9D908B9DB581E6314, E2204A56BF37FC57CD2ED96E3F908882D72B4BFF1BFB97C5172C851F1E4F9650 ] VerifierExt C:\WINDOWS\system32\drivers\VerifierExt.sys
23:12:12.0196 0x2950 VerifierExt - ok
23:12:12.0243 0x2950 [ EC15FD6A28757793E2DA394CD94ABD52, DC758BBEE9C6952D7B3F7171EF67B037B4068E88189A2C4A894122D1D1209468 ] vhdmp C:\WINDOWS\System32\drivers\vhdmp.sys
23:12:12.0296 0x2950 vhdmp - ok
23:12:12.0296 0x2950 [ D0C9632C350F46786643A069251BC249, CF65BA0D3F3D2B821C10E2D4F53F5B6BF6236CA9767419392A561CFA79254C3B ] vhf C:\WINDOWS\System32\drivers\vhf.sys
23:12:12.0328 0x2950 vhf - ok
23:12:12.0359 0x2950 [ E886CB75DA2B6EB35469EF10135624C7, 3AFC59A0709B984F517A918D5BBEBEB1C80001BEC87C133447DCEAEDE00E516D ] vmbus C:\WINDOWS\system32\drivers\vmbus.sys
23:12:12.0381 0x2950 vmbus - ok
23:12:12.0397 0x2950 [ 46D2EC27820EC0F798F85821E53C2942, D298A7D6AC16F76A069F843C8DD323ECB340D361733CB9B076BCDE8FC5F1FEFC ] VMBusHID C:\WINDOWS\System32\drivers\VMBusHID.sys
23:12:12.0412 0x2950 VMBusHID - ok
23:12:12.0497 0x2950 [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicguestinterface C:\WINDOWS\System32\ICSvc.dll
23:12:12.0582 0x2950 vmicguestinterface - ok
23:12:12.0629 0x2950 [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicheartbeat C:\WINDOWS\System32\ICSvc.dll
23:12:12.0682 0x2950 vmicheartbeat - ok
23:12:12.0698 0x2950 [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmickvpexchange C:\WINDOWS\System32\ICSvc.dll
23:12:12.0744 0x2950 vmickvpexchange - ok
23:12:12.0760 0x2950 [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicrdv C:\WINDOWS\System32\ICSvc.dll
23:12:12.0798 0x2950 vmicrdv - ok
23:12:12.0877 0x2950 [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicshutdown C:\WINDOWS\System32\ICSvc.dll
23:12:12.0914 0x2950 vmicshutdown - ok
23:12:12.0983 0x2950 [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmictimesync C:\WINDOWS\System32\ICSvc.dll
23:12:13.0045 0x2950 vmictimesync - ok
23:12:13.0083 0x2950 [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicvmsession C:\WINDOWS\System32\ICSvc.dll
23:12:13.0130 0x2950 vmicvmsession - ok
23:12:13.0180 0x2950 [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicvss C:\WINDOWS\System32\ICSvc.dll
23:12:13.0215 0x2950 vmicvss - ok
23:12:13.0230 0x1e20 Object send P2P result: true
23:12:13.0230 0x1e20 Object required for P2P: [ 807A6636828E5F43C10A01474B8907EE ] MSDTC
23:12:13.0246 0x2950 [ B9265F47E7A354BAAA0AF5CBA3F8F7CE, F836E7BEDC7CAB1C01225164D171A0210D8F909F52992E4C0BF3C92B365BCD52 ] volmgr C:\WINDOWS\system32\drivers\volmgr.sys
23:12:13.0261 0x2950 volmgr - ok
23:12:13.0300 0x2950 [ BEE9C8B72AB752B794F69C2B9B3678AA, 49A5093C26F3CDCD60577F7F2D7F936C7B2BD010B27F2C49A7B6AA41E42DF98D ] volmgrx C:\WINDOWS\system32\drivers\volmgrx.sys
23:12:13.0316 0x2950 volmgrx - ok
23:12:13.0347 0x2950 [ E1F91A727A04C9F8199D04FF3BBBF63C, 076CAEE621DBF7DE24ED92BA239C440879FDB674CF3213DF3E35AEC03D0D2031 ] volsnap C:\WINDOWS\system32\drivers\volsnap.sys
23:12:13.0384 0x2950 volsnap - ok
23:12:13.0416 0x2950 [ F7B1B1101271E31F43CC76E890704F51, 2282D82B220C3D13FF980ED8E40443C83816D3DA9557EACEA137873F92BB9CF4 ] vpci C:\WINDOWS\System32\drivers\vpci.sys
23:12:13.0447 0x2950 vpci - ok
23:12:13.0485 0x2950 [ D48ED0A08BD2FD25A833E6AC99623091, 6CA7580878D3893E14B4938023A00CDFC9BE215A0CE4ED59A94F95DFD9FDF4D8 ] vsmraid C:\WINDOWS\system32\drivers\vsmraid.sys
23:12:13.0547 0x2950 vsmraid - ok
23:12:13.0663 0x2950 [ 4CF5A1E0C4FCA956ACD6C654E2A8610E, 57F3C7200C25E8717AF92AF2ED7615C6605179D3514B432220FA6EA94CAB4F2E ] VSS C:\WINDOWS\system32\vssvc.exe
23:12:13.0785 0x2950 VSS - ok
23:12:13.0832 0x2950 [ 6990D4AFDF545669D4E6C232F26DE1FB, 9B8F99A035188FD96BA79E935E8EF387BEA2223ECA0B74CF64AB993DABAA5722 ] VSTXRAID C:\WINDOWS\system32\drivers\vstxraid.sys
23:12:13.0901 0x2950 VSTXRAID - ok
23:12:13.0932 0x2950 [ 1EE11F0508C58EF081F4176E66D6970B, 9069B3FC8850C7CF617909C6DBFC3753FEB59A9E708379CC57190F4097FB374E ] vwifibus C:\WINDOWS\System32\drivers\vwifibus.sys
23:12:13.0964 0x2950 vwifibus - ok
23:12:13.0964 0x2950 [ 938E4EF58E42D252B742B0E243011B90, AC0C21FBAF15924CB271CA43ACB7A86287936C78B4852BCFC59EC7EC703E036C ] vwififlt C:\WINDOWS\system32\drivers\vwififlt.sys
23:12:14.0001 0x2950 vwififlt - ok
23:12:14.0001 0x2950 [ 3BE5AAC930447FD18D4A8255A2FEC95C, A517357188FE4A5BD98A3CDB2165ACCE96CCE4BE2B90DDBEAF70B6DDF393F506 ] vwifimp C:\WINDOWS\System32\drivers\vwifimp.sys
23:12:14.0032 0x2950 vwifimp - ok
23:12:14.0117 0x2950 [ 48C1A256591297C43ECFC4E30D144EAA, 8E66833ED2CEB6D7E499EB2E4282B4F9DFA28B6D21757BB88EC52FD069D7FACE ] W32Time C:\WINDOWS\system32\w32time.dll
23:12:14.0202 0x2950 W32Time - ok
23:12:14.0233 0x2950 [ 00C27B64C758C111E5D78A70DE6CA2B6, C99761B9B671B3A1FF1C52796CCA3F4F825BF50D9657D13B551E849CDD82055D ] WacomPen C:\WINDOWS\System32\drivers\wacompen.sys
23:12:14.0249 0x2950 WacomPen - ok
23:12:14.0334 0x2950 [ D76D1AC4F2C642D09A68227D129A4726, D14D6C4D94E9660848C74B220359683D91A4A3D70750E781A20B6D86D46794CE ] WalletService C:\WINDOWS\system32\WalletService.dll
23:12:14.0418 0x2950 WalletService - ok
23:12:14.0449 0x2950 [ 8CB53620B2C2F0641DD7563EA0FDF491, D62FE75C908409A54949F0E3C39558DC7A8F11AF7496ED7B0872D80D08CB67A7 ] wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys
23:12:14.0486 0x2950 wanarp - ok
23:12:14.0487 0x2950 [ 8CB53620B2C2F0641DD7563EA0FDF491, D62FE75C908409A54949F0E3C39558DC7A8F11AF7496ED7B0872D80D08CB67A7 ] wanarpv6 C:\WINDOWS\system32\DRIVERS\wanarp.sys
23:12:14.0518 0x2950 wanarpv6 - ok
23:12:14.0619 0x2950 [ 2598BBF11C9E7D0885DCA52E7FD5BCBD, 46B1FB080A2CD88C89A0EB8BA2594A1FA2C341ED77A6C6835CBFFE42907FAC55 ] wbengine C:\WINDOWS\system32\wbengine.exe
23:12:14.0735 0x2950 wbengine - ok
23:12:14.0851 0x2950 [ 642EFABF900374FA85639D83B5533AFD, 292692D6AAC2A785D237ADFBC7CA3D379E8FC79FA366A8CE7D06F5CA5CE6866B ] WbioSrvc C:\WINDOWS\System32\wbiosrvc.dll
23:12:14.0951 0x2950 WbioSrvc - ok
23:12:15.0035 0x2950 [ E9A0D466F6D8EC349DB526146618BCB6, CFD6F3F979E4366A68FBEC3BE90A42BF3D65403A987E80741A720C0622871F32 ] Wcmsvc C:\WINDOWS\System32\wcmsvc.dll
23:12:15.0135 0x2950 Wcmsvc - ok
23:12:15.0204 0x2950 [ 53A036CED1270F2459E708A05922FD49, 2F281A72E4B0408DE6C8153F5988C9AA38591FB1E72558767D389637D0666A85 ] wcncsvc C:\WINDOWS\System32\wcncsvc.dll
23:12:15.0288 0x2950 wcncsvc - ok
23:12:15.0304 0x2950 [ 965B6197A659782B6A0F68411A180AAD, 5541AB78B71E4FA655BCBF2D80D574B2A3B4AA8871F65D26620BDE549FA5459A ] WcsPlugInService C:\WINDOWS\System32\WcsPlugInService.dll
23:12:15.0320 0x2950 WcsPlugInService - ok
23:12:15.0389 0x2950 [ 069D3D6E20AD753B34FCE856F0436869, CF8C12295DDAA56E7350019AADBA533D7857CFB3F20DEE14E557963645A9331B ] WdBoot C:\WINDOWS\system32\drivers\WdBoot.sys
23:12:15.0420 0x2950 WdBoot - ok
23:12:15.0636 0x2950 [ 6CC727E94CD84E9720FDCDA8089CABCC, BCF66056B06DED6BC2D329E910FCD3E685D627BAD3B5D7F4B0E970B45CD9CEF4 ] Wdf01000 C:\WINDOWS\system32\drivers\Wdf01000.sys
23:12:15.0721 0x2950 Wdf01000 - ok
23:12:15.0721 0x1e20 Object send P2P result: true
23:12:15.0736 0x2950 [ E3E97151A1D1E87BB2D5371F66C5F169, 0ED0B9852FE0533816F5EE2F06045B3964A00FD749A7011DB3C663AB6FA369E2 ] WdFilter C:\WINDOWS\system32\drivers\WdFilter.sys
23:12:15.0768 0x2950 WdFilter - ok
23:12:15.0805 0x2950 [ 75DC67553051103547B693898CB32D08, 4FCF2C3DBBE85461364B1F3A3F3629B52C8664487D30142D15937A4C96EF6A8F ] WdiServiceHost C:\WINDOWS\system32\wdi.dll
23:12:15.0821 0x2950 WdiServiceHost - ok
23:12:15.0852 0x2950 [ 75DC67553051103547B693898CB32D08, 4FCF2C3DBBE85461364B1F3A3F3629B52C8664487D30142D15937A4C96EF6A8F ] WdiSystemHost C:\WINDOWS\system32\wdi.dll
23:12:15.0884 0x2950 WdiSystemHost - ok
23:12:15.0953 0x2950 [ 2BC2E99623119521EEF7910A11D0FDE0, 3F3E48A79534F0F65F961D9B170D534562E04901B630127B16DF02E6D42F2BBF ] wdiwifi C:\WINDOWS\system32\DRIVERS\wdiwifi.sys
23:12:16.0037 0x2950 wdiwifi - ok
23:12:16.0069 0x2950 [ 07B043160399AF4009054E2EA3464BF4, 8D652D7CD75F8FB2B5414155355F0C970015914E1AC6522DBB8387BB8662F542 ] WdNisDrv C:\WINDOWS\system32\Drivers\WdNisDrv.sys
23:12:16.0091 0x2950 WdNisDrv - ok
23:12:16.0122 0x2950 WdNisSvc - ok
23:12:16.0169 0x2950 [ 9972D395DBD05D91DA5EDADEB9325680, 9382D846793F285721A1A0FED42F914035A53D856B902FADB0B7144C471BDA91 ] WebClient C:\WINDOWS\System32\webclnt.dll
23:12:16.0254 0x2950 WebClient - ok
23:12:16.0290 0x2950 [ B6BF579761489720BCE787F723F596E5, 879B17F6A4F23F5E85A09126B7B407955DDCEB1BA4A8FFC0A418B7F47311C056 ] Wecsvc C:\WINDOWS\system32\wecsvc.dll
23:12:16.0323 0x2950 Wecsvc - ok
23:12:16.0323 0x2950 [ 10C9CF8771A2A87F575F9FB56821474E, 15E3DFFE9CF6777F67E426ECF797D2DF743EA152DEE336DCC9C2F92A0E6EB9A3 ] WEPHOSTSVC C:\WINDOWS\system32\wephostsvc.dll
23:12:16.0354 0x2950 WEPHOSTSVC - ok
23:12:16.0370 0x2950 [ 357C083FE35D030D991D163AAF622A06, F301852D49DBDEF0D28F56CD74CBDC71CA003EBD07D3F46EA5C870DC1BD07896 ] wercplsupport C:\WINDOWS\System32\wercplsupport.dll
23:12:16.0392 0x2950 wercplsupport - ok
23:12:16.0408 0x2950 [ 2235AF716D15D9DFE4C59DC2AC0C440C, 2DCFCEBEA77E7E40CEF9A785BE1A794B390B36E40FBCF49B494F9CEA3F6A28C4 ] WerSvc C:\WINDOWS\System32\WerSvc.dll
23:12:16.0439 0x2950 WerSvc - ok
23:12:16.0439 0x2950 [ C11272713719922DE5711094333BD166, 61D4F07E02AECF04964FF51EEA31069A2B0EAA549AD2B29B5FD3E1E6BB543593 ] WFPLWFS C:\WINDOWS\system32\drivers\wfplwfs.sys
23:12:16.0470 0x2950 WFPLWFS - ok
23:12:16.0470 0x2950 [ 205A1FAE910F5C493D236245850BB62A, DBA4D1D734BAA3CDEB8A7F9C81A8DAA88CEA55AF5C4C5908E76FB8E522C5EC8A ] WiaRpc C:\WINDOWS\System32\wiarpc.dll
23:12:16.0492 0x2950 WiaRpc - ok
23:12:16.0523 0x2950 [ EF536C54AB9281FDC4E83B07279FCFC4, 22E4F133170682EE14413CA8FDC2DBE73AB31960D6ACB728A6B398229FDDFD3B ] WIMMount C:\WINDOWS\system32\drivers\wimmount.sys
23:12:16.0555 0x2950 WIMMount - ok
23:12:16.0570 0x2950 WinDefend - ok
23:12:16.0591 0x2950 [ D8966A76408107224C6013993135DD78, 6159F69BC26FF817078E68C70E6DFC9075FEBF9EF9F4F046C7A65BC377544AE6 ] WindowsTrustedRT C:\WINDOWS\system32\drivers\WindowsTrustedRT.sys
23:12:16.0608 0x2950 WindowsTrustedRT - ok
23:12:16.0608 0x2950 [ 8B102A7B6CE326FD4208CC7C2D183343, E47C1D76CBFD2A382C3A7BB048D752FB6DD4616FADDEB1C3ADD5DDAE149742AF ] WindowsTrustedRTProxy C:\WINDOWS\system32\drivers\WindowsTrustedRTProxy.sys
23:12:16.0624 0x2950 WindowsTrustedRTProxy - ok
23:12:16.0692 0x2950 [ FFD04E8263FC9CDB89BAD8C27C337223, 7021161D354F1536DA261D001524B92301466631DCFA161A7C6355AAC86BBE40 ] WinHttpAutoProxySvc C:\WINDOWS\system32\winhttp.dll
23:12:16.0793 0x2950 WinHttpAutoProxySvc - ok
23:12:16.0808 0x2950 [ 4A53441C1C4D2878BEF27E381138BB2D, C221E74491E6FD2AF472B53876B46788D5CF62F4E645457F3B3816FD0ED2BAA1 ] WinMad C:\WINDOWS\System32\drivers\winmad.sys
23:12:16.0840 0x2950 WinMad - ok
23:12:17.0072 0x2950 [ 1033C37122C7404C3B926ADF84874832, 163B3A7112F13AE7BB2655A28C6B19AF9B263F2AD2FF1B75314BE3E2B9118903 ] Winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll
23:12:17.0110 0x2950 Winmgmt - ok
23:12:17.0294 0x2950 [ 703D0F62C5AA4D08EE8756516C0D125D, 02015A5E62490C11EC968160C528C2AFD1D7194AACA27F407B06EB462657511F ] WinRM C:\WINDOWS\system32\WsmSvc.dll
23:12:17.0503 0x2950 WinRM - ok
23:12:17.0543 0x2950 [ 260907CE034FE327AC99BDA4153AB22F, B96501F43248713C2E153B9D22B78D51412A3C6989A2FB5F53A406C6CDC98D30 ] WINUSB C:\WINDOWS\System32\drivers\WinUSB.SYS
23:12:17.0574 0x2950 WINUSB - ok
23:12:17.0589 0x2950 [ 40A3E8D729F458B2C9A8BD9380FF83D5, CD42FFC138969EF8C9588FD113F0B9A98FBA282D46A5B6BCFA765F55ED6E97A1 ] WinVerbs C:\WINDOWS\System32\drivers\winverbs.sys
23:12:17.0628 0x2950 WinVerbs - ok
23:12:17.0759 0x2950 [ 453740989239803FE363FF8B40EA2E08, 25499705627C38D3431B3C336E0CF3BF55ABB0C461B88DA6D3767CAAE1E2B893 ] WlanSvc C:\WINDOWS\System32\wlansvc.dll
23:12:17.0928 0x2950 WlanSvc - ok
23:12:18.0044 0x2950 [ E48BBF1363F843E030757EC190DD33E6, B37199495115ED423BA99B7317377CE865BB482D4E847861E871480AC49D4A84 ] wlidsvc C:\WINDOWS\system32\wlidsvc.dll
23:12:18.0176 0x2950 wlidsvc - ok
23:12:18.0207 0x2950 [ 8F010BF65238F3F822D22BA12831796E, 2CA830F259B742D2F5CDD0437960BF512D40FB4A4C2342E3BABB38D468F79694 ] WmiAcpi C:\WINDOWS\System32\drivers\wmiacpi.sys
23:12:18.0245 0x2950 WmiAcpi - ok
23:12:18.0291 0x2950 [ 74ACA5A7880C1F0BB9D60E32E1705A70, A89817BCCBFF94D7394614DA81D1C6C4F53AF47A539E674EEF6DC3FC496BF702 ] wmiApSrv C:\WINDOWS\system32\wbem\WmiApSrv.exe
23:12:18.0345 0x2950 wmiApSrv - ok
23:12:18.0392 0x2950 WMPNetworkSvc - ok
23:12:18.0429 0x2950 [ 2A9650FCC696DB28E45EA8B33B99B8E6, FBEBC6C05D50F578C6EEE0A7285EBE1DEADB08DD21FA3232630FD8D5A68FC3FB ] Wof C:\WINDOWS\system32\drivers\Wof.sys
23:12:18.0476 0x2950 Wof - ok
23:12:18.0607 0x2950 [ 4090C6738AA92B428220857B4D44F638, 4A3EE47494051E5BA8393F2AC8226EF434DA3AA1895CF4BADC9BC1BC378647C6 ] workfolderssvc C:\WINDOWS\system32\workfolderssvc.dll
23:12:18.0777 0x2950 workfolderssvc - ok
23:12:18.0845 0x2950 [ 22C52D7EE7C7D0E02C8EFD8CAE8E3A71, 126605A12CEC9CC07DE3050F12E43CECABEAF0D00DF12300AF70F34700F7FE8E ] wpcfltr C:\WINDOWS\system32\DRIVERS\wpcfltr.sys
23:12:18.0876 0x2950 wpcfltr - ok
23:12:18.0908 0x2950 [ D282ECA35ADAC7A93D6B4943E775010B, A76A9698A95646FA63AC18DFFA02B744D7C6043934CBF6C37832ED2E6B21F570 ] WPDBusEnum C:\WINDOWS\system32\wpdbusenum.dll
23:12:18.0945 0x2950 WPDBusEnum - ok
23:12:18.0945 0x2950 [ 1C08E424CBDD5065BB7266F8C048C1B1, 0452C85EDA6CBAB75C2617886C5D8117ED25D91F1BE0F8377B08D55B6629B028 ] WpdUpFltr C:\WINDOWS\system32\drivers\WpdUpFltr.sys
23:12:18.0977 0x2950 WpdUpFltr - ok
23:12:18.0992 0x2950 [ 2C6EEFFBB7FB1C51CCD3737C77AB9109, 8C2ED309FAF4312512E7BCCBBC51B1353603A3499077A1DE21991F0692AF1620 ] WpnService C:\WINDOWS\system32\WpnService.dll
23:12:19.0030 0x2950 WpnService - ok
23:12:19.0046 0x2950 [ 638B43D39A3D0B47024555CF1095E6F1, C7EA0A6ED227A5256EB02CA76FEC538DF196B8DC38DA2A567757D2B221C9473E ] ws2ifsl C:\WINDOWS\system32\drivers\ws2ifsl.sys
23:12:19.0061 0x2950 ws2ifsl - ok
23:12:19.0108 0x2950 [ 9C17CF2D05F8DA5AC66880B6BEE64E7D, 8930079A1AFA97657BE567038EE57C988D3DE9A6C24EA46160E2974837082535 ] wscsvc C:\WINDOWS\System32\wscsvc.dll
23:12:19.0162 0x2950 wscsvc - ok
23:12:19.0177 0x2950 [ F517CB0182B1DA5C0E0FC6B548FF60CC, F09CA4172D611487F157973C808627F04B0CF0A71CE19D49280BFBEA4AE6027B ] WSDPrintDevice C:\WINDOWS\System32\drivers\WSDPrint.sys
23:12:19.0209 0x2950 WSDPrintDevice - ok
23:12:19.0230 0x2950 [ 3A3294E2E5CBFC51999180C06051DDE9, 2EEE0A5BEBB366E4C12245E8175685CF2173E260B482A8EEB7F8255BA43C6CE3 ] WSDScan C:\WINDOWS\system32\DRIVERS\WSDScan.sys
23:12:19.0246 0x2950 WSDScan - ok
23:12:19.0246 0x2950 WSearch - ok
23:12:19.0482 0x2950 [ 6E04BBE242E2889B37300C4DF5CE1126, FBDAEAC62C48A4FC5EF412AE47FF10590AE83E8871412F76F6F9BAE910542DFA ] WSService C:\WINDOWS\System32\WSService.dll
23:12:19.0667 0x2950 WSService - ok
23:12:19.0813 0x2950 [ 3D0DE8170ECCEC20CBF205D79C535BA1, 9249A420B9024AB3B18D7E4DAC20E2080E0759C620F46D37D467DC25A77F2025 ] wuauserv C:\WINDOWS\system32\wuaueng.dll
23:12:20.0014 0x2950 wuauserv - ok
23:12:20.0054 0x2950 [ A928F25CB62232F413EE655352856E10, 1D2B278A24DDDE8792ADE7649FF90A98E186B79F13AA296C30E4180293BE906A ] WudfPf C:\WINDOWS\system32\drivers\WudfPf.sys
23:12:20.0085 0x2950 WudfPf - ok
23:12:20.0101 0x2950 [ A932391623D5CEC4EF4A2A17D3CEBFCD, 54AA17F385347DED262BDA84F2D99106DC5D9BF8765D647BD76265356193BDFA ] WUDFRd C:\WINDOWS\System32\drivers\WUDFRd.sys
23:12:20.0139 0x2950 WUDFRd - ok
23:12:20.0186 0x2950 [ 1336DA39FE006EAB2733CA4DE5B3560C, F0D6C71ADCB66D4D14EC6D09FD43F5521A3A8CA53F248DFD01696FB4F033BE77 ] wudfsvc C:\WINDOWS\System32\WUDFSvc.dll
23:12:20.0239 0x2950 wudfsvc - ok
23:12:20.0340 0x2950 [ 7F7591CCC146EC7D9EB77C1277D605F4, 80D6D45BD3C3C7F79BFA98B864CBFA443245416ED64C0BC16E9E7C8C5E958AFB ] WwanSvc C:\WINDOWS\System32\wwansvc.dll
23:12:20.0518 0x2950 WwanSvc - ok
23:12:20.0574 0x2950 [ 5DFAF8BE5A3CABAABF6795BC09EB7876, 1AFD0BC50EA5C2CCB2874E97FE5205175C80849BD6C9BDAF9FBC49174D478997 ] XblAuthManager C:\WINDOWS\System32\XblAuthManager.dll
23:12:20.0656 0x2950 XblAuthManager - ok
23:12:20.0740 0x2950 [ 7118498F6E48758A2EF5A7D1982E2B62, 1FF75AE64CB6DB263E8B35515E092B325AA71A6B2210F8F2B0AD087B3BA33345 ] XblGameSave C:\WINDOWS\System32\XblGameSave.dll
23:12:20.0856 0x2950 XblGameSave - ok
23:12:20.0888 0x2950 [ F279536122B83FD0D8E158AA753E1B7C, 6A542F28E24B30DBDC2EEE24DA33C2F4ADB3596AEDDD71DC1495DD40577CE4BB ] xboxgip C:\WINDOWS\System32\drivers\xboxgip.sys
23:12:20.0919 0x2950 xboxgip - ok
23:12:21.0105 0x2950 [ 69E727F94BEA64E66C284F3C482F33E6, B3E0F287E7A251E0FC17C41089C45737027E54F0213BDE847356AC882B4D3700 ] XboxNetApiSvc C:\WINDOWS\system32\XboxNetApiSvc.dll
23:12:21.0189 0x2950 XboxNetApiSvc - ok
23:12:21.0242 0x2950 [ DA0807D87A62D076C29C4E30F1E84F46, CA3079350038091AEE04D4DA7C06865E9DB3095120AE61AAB575AA77E86A6223 ] xinputhid C:\WINDOWS\System32\drivers\xinputhid.sys
23:12:21.0273 0x2950 xinputhid - ok
23:12:21.0273 0x2950 ================ Scan global ===============================
23:12:21.0342 0x2950 [ 82E25186617BA6C15010F0D47C705705, 5BF9E38918E6EAE86448137E2D120B80318AA1143CDDF539A2BFBEE227646816 ] C:\WINDOWS\system32\basesrv.dll
23:12:21.0389 0x2950 [ E2899695BD30B5F93EC626EBBEF2CB69, B190D2903A109D2C146D881F90769060A0E971942F4AA61AEAD81861032D89C3 ] C:\WINDOWS\system32\winsrv.dll
23:12:21.0457 0x2950 [ 09E92888FFF86F3334E59778724DCA6F, 2344763B52395EF565A9DE5F55BEDCA026AD2E8072FFD06F826BF366B3BA2AB4 ] C:\WINDOWS\system32\sxssrv.dll
23:12:21.0520 0x2950 [ 6FF8248F3A9D69A095C7F3F42BC29CB2, 9077B1AA0AFB8DB329FDED0E51085DE1C51B22A986162F29037FCA404A80D512 ] C:\WINDOWS\system32\services.exe
23:12:21.0557 0x2950 [ Global ] - ok
23:12:21.0557 0x2950 ================ Scan MBR ==================================
23:12:21.0589 0x2950 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0
23:12:21.0773 0x2950 \Device\Harddisk0\DR0 - ok
23:12:21.0773 0x2950 ================ Scan VBR ==================================
23:12:21.0773 0x2950 [ DBC33C161DFFD249C144D5044CACBC58 ] \Device\Harddisk0\DR0\Partition1
23:12:21.0805 0x2950 \Device\Harddisk0\DR0\Partition1 - ok
23:12:21.0820 0x2950 [ 77B6A96EDC6FD9678CC787A5BD7F09B0 ] \Device\Harddisk0\DR0\Partition2
23:12:21.0842 0x2950 \Device\Harddisk0\DR0\Partition2 - ok
23:12:21.0857 0x2950 [ 7B04C5E3C6961173AD5D859B4356E58D ] \Device\Harddisk0\DR0\Partition3
23:12:21.0857 0x2950 \Device\Harddisk0\DR0\Partition3 - ok
23:12:21.0889 0x2950 [ D7126E14CD7A21BAAC731C97055F18D2 ] \Device\Harddisk0\DR0\Partition4
23:12:21.0904 0x2950 \Device\Harddisk0\DR0\Partition4 - ok
23:12:21.0942 0x2950 [ DF75BA8976686039BAC45B146B48FFDD ] \Device\Harddisk0\DR0\Partition5
23:12:21.0957 0x2950 \Device\Harddisk0\DR0\Partition5 - ok
23:12:21.0973 0x2950 [ 3E96DCCC3A532DA325866E0E97D4398C ] \Device\Harddisk0\DR0\Partition6
23:12:21.0989 0x2950 \Device\Harddisk0\DR0\Partition6 - ok
23:12:21.0989 0x2950 ================ Scan generic autorun ======================
23:12:21.0989 0x2950 ETDCtrl - ok
23:12:22.0538 0x2950 [ 6B446D957B19C6DFA0C0F1EA9AFE72BF, 58351ABDAF793BDBB2D19E090A15CD7792C6AF0D97E7D0941296AB18ADB9D256 ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
23:12:23.0094 0x2950 RtHDVCpl - ok
23:12:23.0208 0x2950 [ DC1E9A0B09A6068BA2E48E04F0F7F406, 1F7C44175C3F54D6A791B0E2C75977764B27DF526A6D9A0A40B7424B03561FD2 ] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
23:12:23.0311 0x2950 RtHDVBg_Dolby - ok
23:12:23.0716 0x2950 [ A118C52E94780AEBFA52D05A3313CCF6, 26537CC3312B2C0477751152FDA18CECAC14023DCD1DB033944A11E12F449885 ] C:\Program Files\ESET\ESET Smart Security\egui.exe
23:12:23.0938 0x2950 egui - ok
23:12:23.0954 0x2950 mcui_exe - ok
23:12:23.0985 0x2950 [ FF7CB5344094510654C240486B4B1B3F, 2A50A3BC366D5293C61FEDC5639C0EB2BB3176933599B6C1533F06F9B6C5D2DF ] C:\Program Files (x86)\RadioController\RfBtnHelper.exe
23:12:24.0016 0x2950 RadioController - ok
23:12:24.0200 0x2950 [ 5EE9595568218E6AA0FE0F6065B65EC7, 8ED0A1A8E4FC37E24D205EC4BA357574FA22B8B5019AFCCB9D0F55B03519163C ] C:\Program Files (x86)\MyHeritage\Bin\FTBCheckUpdates.exe
23:12:24.0416 0x2950 Family Tree Builder Update - detected UnsignedFile.Multi.Generic ( 1 )
23:12:26.0763 0x2950 Detect skipped due to KSN trusted
23:12:26.0763 0x2950 Family Tree Builder Update - ok
23:12:26.0964 0x2950 [ 42E4E281D9646F15E5C4D0CFD61CE684, 0F0ED72CA029C7B0F50DE507FD2EACFBCB89F2262B81A7DB0B260E34CB19BC05 ] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
23:12:27.0080 0x2950 WSHelperSetup.exe - ok
23:12:27.0160 0x2950 [ 42E4E281D9646F15E5C4D0CFD61CE684, 0F0ED72CA029C7B0F50DE507FD2EACFBCB89F2262B81A7DB0B260E34CB19BC05 ] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
23:12:27.0211 0x2950 Wondershare Helper Compact.exe - ok
23:12:27.0258 0x2950 [ 61E4289E91E88C90478D7F4BEB10DCF7, 1D0F4034E0111CF5758F470C15A22A0A28EB8269CB5BF07222C9C0FB07A15C55 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
23:12:27.0265 0x2950 APSDaemon - ok
23:12:27.0343 0x2950 [ 34D296AFC913E302953C70463EF09A48, BC413307CBC56C039EE8A05B51A56E14EF59678FBB33815AEB320078056C8CE7 ] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe
23:12:27.0365 0x2950 HP Software Update - ok
23:12:28.0049 0x2950 [ 88F8A731DEA7F49D92F84A0A77C5CC67, 030458922DA43AAF6C95EC430860A73032616851E03E58170F71E918720717CB ] C:\Windows\SysWOW64\OneDriveSetup.exe
23:12:28.0415 0x2950 OneDriveSetup - ok
23:12:28.0441 0x2570 Object required for P2P: [ 7C58AFEC26E9F7730A8AA7FD40225937 ] sppsvc
23:12:28.0742 0x2950 [ 88F8A731DEA7F49D92F84A0A77C5CC67, 030458922DA43AAF6C95EC430860A73032616851E03E58170F71E918720717CB ] C:\Windows\SysWOW64\OneDriveSetup.exe
23:12:29.0100 0x2950 OneDriveSetup - ok
23:12:29.0184 0x2950 [ 42E4E281D9646F15E5C4D0CFD61CE684, 0F0ED72CA029C7B0F50DE507FD2EACFBCB89F2262B81A7DB0B260E34CB19BC05 ] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
23:12:29.0254 0x2950 WSHelperSetup.exe - ok
23:12:29.0401 0x2950 [ 4FF9A9F17E5722357EA1F614155F7BCB, 6E43F9269383FEDDE31CC1D3F7268DB2910079550CC2CA440ABB8C3A1E31F2A0 ] C:\Program Files (x86)\MyDrive Connect\TomTom MyDrive Connect.exe
23:12:29.0486 0x2950 MyDriveConnect.exe - ok
23:12:29.0724 0x2950 [ 61F488AC3053DEB2AADB6A34DEBC8876, B5C5E0325F0FB4A37E80F08273B7483630F676C6342519564798CE7D1F121CB7 ] C:\Users\Julius\AppData\Local\Microsoft\OneDrive\OneDrive.exe
23:12:29.0802 0x2950 OneDrive - ok
23:12:30.0002 0x2950 [ 501E808B5832505C51F539874E586353, 2F0C36BBB52052DD86E31BD7E0D3B7DD3BB7CF84E212900518E9CBE0C935DC43 ] C:\Program Files\HP\HP Officejet Pro 8610\Bin\ScanToPCActivationApp.exe
23:12:30.0186 0x2950 HP Officejet Pro 8610 (NET) - ok
23:12:30.0244 0x2950 Skype - ok
23:12:30.0750 0x2950 [ E93D62A6DB736AA82A3EEDDFDFE73311, 96EC57F66EE1A36580536518A814299DE6D5DACC0026F5A659B41918434ED8FA ] C:\Program Files\CCleaner\CCleaner64.exe
23:12:30.0973 0x2570 Object send P2P result: true
23:12:30.0978 0x2570 Object required for P2P: [ 34A3EB84B2A830E6F450B8F885AE4E6E ] SysMain
23:12:31.0077 0x2950 CCleaner Monitoring - ok
23:12:31.0278 0x2950 [ 7E2857D4C8F7732AABB68CEBD8C8A239, CCDC4A497B182A46DE4C11043D5F61EA467F59D6BF528F13341432BF2E0D1BE0 ] C:\Program Files (x86)\Acer\Acer Portal\acpanel_win.exe
23:12:31.0440 0x2950 AcerCloud - ok
23:12:31.0709 0x2950 [ C18C7783D197EE27E8B71DB8F51E0628, 290F29FF5212B810DBDB5F23A537178EAC9E98BC05AFAC5F776A7BD4D3FB51AC ] C:\Program Files (x86)\MyPhoneExplorer\MyPhoneExplorer.exe
23:12:31.0994 0x2950 MyPhoneExplorer - ok
23:12:32.0161 0x2950 [ BF0C5F1D9F26E3AFDD577D72B48EA917, 427C6CD1179F1B813C3068EC8F11A634C0F27407109E639F4AFA121644885B11 ] C:\Users\mail_000.DEKANPC09\AppData\Roaming\OTi\AndroidShadow1422\ExImg\ImageRoot\ADLauncher.exe
23:12:32.0214 0x2950 AndroidShadowCable - ok
23:12:32.0399 0x2950 [ 501E808B5832505C51F539874E586353, 2F0C36BBB52052DD86E31BD7E0D3B7DD3BB7CF84E212900518E9CBE0C935DC43 ] C:\Program Files\HP\HP Officejet Pro 8610\Bin\ScanToPCActivationApp.exe
23:12:32.0584 0x2950 HP Officejet Pro 8610 (NET) - ok
23:12:32.0700 0x2950 [ 7C6D524C78A1722AD987B9E47AC1FEE2, FFDC6C92ABB547D0DCD2621EC423C755A78079B061A41FA1751A56799D1A79A5 ] C:\Users\mail_000.DEKANPC09\AppData\Local\Dropbox\Update\DropboxUpdate.exe
23:12:32.0731 0x2950 Dropbox Update - ok
23:12:32.0915 0x2950 [ 61F488AC3053DEB2AADB6A34DEBC8876, B5C5E0325F0FB4A37E80F08273B7483630F676C6342519564798CE7D1F121CB7 ] C:\Users\mail_000.DEKANPC09\AppData\Local\Microsoft\OneDrive\OneDrive.exe
23:12:32.0962 0x2950 OneDrive - ok
23:12:32.0962 0x2950 Waiting for KSN requests completion. In queue: 166
23:12:33.0501 0x2570 Object send P2P result: true
23:12:33.0516 0x2570 Object required for P2P: [ 4CF5A1E0C4FCA956ACD6C654E2A8610E ] VSS
23:12:33.0985 0x2950 Waiting for KSN requests completion. In queue: 84
23:12:34.0998 0x2950 Waiting for KSN requests completion. In queue: 84
23:12:35.0326 0x2a84 Object required for P2P: [ 4FF9A9F17E5722357EA1F614155F7BCB ] C:\Program Files (x86)\MyDrive Connect\TomTom MyDrive Connect.exe
23:12:36.0013 0x2950 Waiting for KSN requests completion. In queue: 77
23:12:36.0047 0x2570 Object send P2P result: true
23:12:37.0025 0x2950 Waiting for KSN requests completion. In queue: 10
23:12:37.0855 0x2a84 Object send P2P result: true
23:12:37.0855 0x2a84 Object required for P2P: [ E93D62A6DB736AA82A3EEDDFDFE73311 ] C:\Program Files\CCleaner\CCleaner64.exe
23:12:38.0037 0x2950 Waiting for KSN requests completion. In queue: 5
23:12:39.0047 0x2950 Waiting for KSN requests completion. In queue: 5
23:12:40.0058 0x2950 Waiting for KSN requests completion. In queue: 5
23:12:40.0434 0x2a84 Object send P2P result: true
23:12:40.0434 0x2a84 Object required for P2P: [ 7E2857D4C8F7732AABB68CEBD8C8A239 ] C:\Program Files (x86)\Acer\Acer Portal\acpanel_win.exe
23:12:41.0068 0x2950 Waiting for KSN requests completion. In queue: 4
23:12:42.0082 0x2950 Waiting for KSN requests completion. In queue: 4
23:12:42.0970 0x2a84 Object send P2P result: true
23:12:43.0190 0x2950 AV detected via SS2: ESET Smart Security 8.0, C:\Program Files\ESET\ESET Smart Security\ecmd.exe ( 8.0.319.0 ), 0x41000 ( enabled : updated )
23:12:43.0230 0x2950 AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.9.10586.0 ), 0x60100 ( disabled : updated )
23:12:43.0230 0x2950 FW detected via SS2: ESET Personal Firewall, C:\Program Files\ESET\ESET Smart Security\ecmd.exe ( 8.0.319.0 ), 0x41010 ( enabled )
23:12:45.0689 0x2950 ============================================================
23:12:45.0689 0x2950 Scan finished
23:12:45.0689 0x2950 ============================================================
23:12:45.0705 0x16f4 Detected object count: 0
23:12:45.0705 0x16f4 Actual detected object count: 0 So...
Ich hoffe ich habe alles richtig gemacht
Nochmals danke
Werner |