Annatar17 | 21.02.2017 17:09 | Der jhdbca und dieser Plocersplog Ordner waren also Viren. Ok also darf ich behaupten das ich mein System kenne? :rolleyes::D. Gehts noch weiter oder ist jetzt alles wieder in Ordnung/Sauber?
Gruß!
Malwarebyte´s Antirootkit-Log: Code:
Malwarebytes Anti-Rootkit BETA 1.9.3.1001
www.malwarebytes.org
Database version:
main: v2017.02.21.05
rootkit: v2017.02.15.01
Windows 10 x64 NTFS
Internet Explorer 11.576.14393.0
-007-009- :: Z-1759-Z [administrator]
21.02.2017 16:23:41
mbar-log-2017-02-21 (16-23-41).txt
Scan type: Quick scan
Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken
Scan options disabled:
Objects scanned: 399588
Time elapsed: 10 minute(s), 46 second(s)
Memory Processes Detected: 0
(No malicious items detected)
Memory Modules Detected: 0
(No malicious items detected)
Registry Keys Detected: 3
HKLM\SYSTEM\CURRENTCONTROLSET\CONTROL\PRINT\PROVIDERS\DU03MV7B (Adware.Sasquor.SPL) -> Delete on reboot. [138634712385ac8aed717a0c0ef27f81]
HKU\.DEFAULT\SOFTWARE\jhdbca (Adware.Elex) -> Delete on reboot. [9ffa980d0e9a41f5a5d8c3e4b05010f0]
HKU\S-1-5-18\SOFTWARE\jhdbca (Adware.Elex) -> Delete on reboot. [514830758721a492f77ee3c57f8143bd]
Registry Values Detected: 1
HKLM\SYSTEM\CURRENTCONTROLSET\CONTROL\PRINT\PROVIDERS\du03mv7b|Name (Adware.Sasquor.SPL) -> Data: C:\Program Files (x86)\Plocersp Log\local64spl.dll -> Delete on reboot. [138634712385ac8aed717a0c0ef27f81]
Registry Data Items Detected: 0
(No malicious items detected)
Folders Detected: 0
(No malicious items detected)
Files Detected: 1
C:\Program Files (x86)\Plocersp Log\local64spl.dll (Adware.Elex) -> Delete on reboot. [e0b9eeb7d2d66ccafeda24dc6a97f010]
Physical Sectors Detected: 0
(No malicious items detected)
(end) Kaspersky TDSSKiller-Log: Code:
16:38:44.0576 0x09ec TDSS rootkit removing tool 3.1.0.12 Nov 7 2016 07:10:01
16:38:46.0883 0x09ec ============================================================
16:38:46.0883 0x09ec Current date / time: 2017/02/21 16:38:46.0883
16:38:46.0883 0x09ec SystemInfo:
16:38:46.0885 0x09ec
16:38:46.0885 0x09ec OS Version: 10.0.14393 ServicePack: 0.0
16:38:46.0885 0x09ec Product type: Workstation
16:38:46.0885 0x09ec ComputerName: Z-1759-Z
16:38:46.0885 0x09ec UserName: -007-009-
16:38:46.0885 0x09ec Windows directory: C:\WINDOWS
16:38:46.0885 0x09ec System windows directory: C:\WINDOWS
16:38:46.0885 0x09ec Running under WOW64
16:38:46.0885 0x09ec Processor architecture: Intel x64
16:38:46.0885 0x09ec Number of processors: 8
16:38:46.0885 0x09ec Page size: 0x1000
16:38:46.0886 0x09ec Boot type: Normal boot
16:38:46.0886 0x09ec CodeIntegrityOptions = 0x00000001
16:38:46.0886 0x09ec ============================================================
16:38:46.0963 0x09ec KLMD registered as C:\WINDOWS\system32\drivers\17847300.sys
16:38:46.0963 0x09ec KLMD ARK init status: drvProperties = 0xFFF00, osBuild = 14393.693, osProperties = 0x19
16:38:47.0199 0x09ec System UUID: {4177BD28-A88A-2199-057D-1049A6E961D9}
16:38:47.0563 0x09ec Drive \Device\Harddisk0\DR0 - Size: 0x1DCF856000 ( 119.24 Gb ), SectorSize: 0x200, Cylinders: 0x3CCE, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
16:38:47.0563 0x09ec Drive \Device\Harddisk1\DR1 - Size: 0x1DCF856000 ( 119.24 Gb ), SectorSize: 0x200, Cylinders: 0x3CCE, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
16:38:47.0572 0x09ec Drive \Device\Harddisk2\DR2 - Size: 0xE8E0DB5E00 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
16:38:47.0885 0x09ec Drive \Device\Harddisk3\DR3 - Size: 0xE6D000000 ( 57.70 Gb ), SectorSize: 0x200, Cylinders: 0x1D6C, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
16:38:47.0896 0x09ec ============================================================
16:38:47.0896 0x09ec \Device\Harddisk0\DR0:
16:38:47.0898 0x09ec MBR partitions:
16:38:47.0898 0x09ec \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0xFA000
16:38:47.0898 0x09ec \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0xFA800, BlocksNum 0xED81000
16:38:47.0898 0x09ec \Device\Harddisk1\DR1:
16:38:47.0900 0x09ec GPT partitions:
16:38:47.0901 0x09ec \Device\Harddisk1\DR1\Partition1: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {90276AB8-B83D-4C23-9A63-AA56C81951B1}, Name: Microsoft reserved partition, StartLBA 0x22, BlocksNum 0x40000
16:38:47.0901 0x09ec \Device\Harddisk1\DR1\Partition2: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {A6A61D34-026E-4FC0-89ED-228CD8D128A7}, Name: Basic data partition, StartLBA 0x40800, BlocksNum 0xEE3B800
16:38:47.0901 0x09ec MBR partitions:
16:38:47.0901 0x09ec \Device\Harddisk2\DR2:
16:38:47.0901 0x09ec MBR partitions:
16:38:47.0901 0x09ec \Device\Harddisk2\DR2\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x74705800
16:38:47.0901 0x09ec \Device\Harddisk3\DR3:
16:38:47.0902 0x09ec MBR partitions:
16:38:47.0902 0x09ec \Device\Harddisk3\DR3\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x7367FC1
16:38:47.0902 0x09ec ============================================================
16:38:47.0903 0x09ec C: <-> \Device\Harddisk0\DR0\Partition2
16:38:47.0926 0x09ec H: <-> \Device\Harddisk2\DR2\Partition1
16:38:47.0929 0x09ec Q: <-> \Device\Harddisk1\DR1\Partition2
16:38:47.0929 0x09ec ============================================================
16:38:47.0929 0x09ec Initialize success
16:38:47.0929 0x09ec ============================================================
16:39:25.0421 0x238c ============================================================
16:39:25.0421 0x238c Scan started
16:39:25.0421 0x238c Mode: Manual; SigCheck; TDLFS;
16:39:25.0421 0x238c ============================================================
16:39:25.0421 0x238c KSN ping started
16:39:30.0602 0x238c KSN ping finished: true
16:39:30.0948 0x238c ================ Scan system memory ========================
16:39:30.0948 0x238c System memory - ok
16:39:30.0948 0x238c ================ Scan services =============================
16:39:30.0986 0x238c 1394ohci - ok
16:39:30.0989 0x238c 3ware - ok
16:39:30.0994 0x238c ACPI - ok
16:39:30.0996 0x238c AcpiDev - ok
16:39:30.0999 0x238c acpiex - ok
16:39:31.0003 0x238c acpipagr - ok
16:39:31.0006 0x238c AcpiPmi - ok
16:39:31.0009 0x238c acpitime - ok
16:39:31.0015 0x238c [ B932E0EE190778D840F1442DFC0F9612, 8780963F14D57279FDD585BE945ED40F24590D32676C7A9EF94002D38B8BA643 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
16:39:31.0055 0x238c AdobeARMservice - ok
16:39:31.0064 0x238c ADP80XX - ok
16:39:31.0069 0x238c AFD - ok
16:39:31.0074 0x238c ahcache - ok
16:39:31.0078 0x238c AJRouter - ok
16:39:31.0081 0x238c ALG - ok
16:39:31.0084 0x238c AmdK8 - ok
16:39:31.0088 0x238c AmdPPM - ok
16:39:31.0091 0x238c amdsata - ok
16:39:31.0095 0x238c amdsbs - ok
16:39:31.0098 0x238c amdxata - ok
16:39:31.0102 0x238c AppHostSvc - ok
16:39:31.0105 0x238c AppID - ok
16:39:31.0109 0x238c AppIDSvc - ok
16:39:31.0112 0x238c Appinfo - ok
16:39:31.0115 0x238c applockerfltr - ok
16:39:31.0118 0x238c AppMgmt - ok
16:39:31.0122 0x238c AppReadiness - ok
16:39:31.0126 0x238c AppVClient - ok
16:39:31.0129 0x238c AppvStrm - ok
16:39:31.0133 0x238c AppvVemgr - ok
16:39:31.0136 0x238c AppvVfs - ok
16:39:31.0139 0x238c AppXSvc - ok
16:39:31.0143 0x238c arcsas - ok
16:39:31.0156 0x238c aspnet_state - ok
16:39:31.0307 0x238c [ AE3D994671A0497B9EA53E0CB686A471, 56F91FC9FF57D17FAB6B6B92CE25AC4ACFB9EF4EF79B81EECED021A1C29E6BF0 ] aswbIDSAgent Q:\Programme\Avast!\x64\aswidsagenta.exe
16:39:31.0491 0x238c aswbIDSAgent - ok
16:39:31.0511 0x238c [ 6F75DD4F4FD75123D25A0617EECE6FDE, F58C08B2FB0E096D707AEB24B4DFDD6039D09858D66452243D30ABD2A1DA90B3 ] aswbidsdriver C:\WINDOWS\system32\drivers\aswbidsdrivera.sys
16:39:31.0540 0x238c aswbidsdriver - ok
16:39:31.0548 0x238c [ 40C2E8C97ECA864335FA3F0078B6B5EF, 4269F0DB1DC2CD49E23F344C6289F9474FE74119F262645B4478EF6DD1D0A577 ] aswbidsh C:\WINDOWS\system32\drivers\aswbidsha.sys
16:39:31.0568 0x238c aswbidsh - ok
16:39:31.0578 0x238c [ 92CF5055E25B608B54B42A88F805ACD4, 4C33AFE136FDD1EC5E67006720A2BD9B00501135805C1A9E69550505134AF294 ] aswblog C:\WINDOWS\system32\drivers\aswbloga.sys
16:39:31.0604 0x238c aswblog - ok
16:39:31.0609 0x238c [ B322161C7CFC1F81B77CC87AD5D85BBA, 348198F7FA06C3729B87388A1782E982C8D4ED2AE6E424A0568AA68851585A21 ] aswbuniv C:\WINDOWS\system32\drivers\aswbuniva.sys
16:39:31.0625 0x238c aswbuniv - ok
16:39:31.0630 0x238c [ 1CB55C233334A3A3DACDD99647753055, BE4A23F38BD5233346DB01FA6E9387B3B3FAC3669AEF3E8DEF89F5464FFCF0D9 ] aswHwid C:\WINDOWS\system32\drivers\aswHwid.sys
16:39:31.0649 0x238c aswHwid - ok
16:39:31.0654 0x238c [ 18ABFE3C4878E2F410A23383DB850CF6, 9F348C071FCAE2595FBFD0488050393900AEFDDEAD898514AB68C9CDE7409A07 ] aswKbd C:\WINDOWS\system32\drivers\aswKbd.sys
16:39:31.0671 0x238c aswKbd - ok
16:39:31.0676 0x238c [ 7534937F601E1CF6D63BCFD3768982F0, 8A509E2B2A0A176ACE7C7302C55566171F244F49C011CF42881F79088304059B ] aswMonFlt C:\WINDOWS\system32\drivers\aswMonFlt.sys
16:39:31.0700 0x238c aswMonFlt - ok
16:39:31.0712 0x238c [ 2D36950E1ABE3905F2DC28BBDABA1187, 6A299FFD9CDD4E86F05703FA9F23D2C090BA77A64CE393611DB125C326BE092F ] aswNetSec C:\WINDOWS\system32\drivers\aswNetSec.sys
16:39:31.0731 0x238c aswNetSec - ok
16:39:31.0737 0x238c [ 29EF51E9D17276AFAA354AE09A543688, 9BB26119F876AA67C637B7642687555DB5B1D61683BCF30F0BF1C8C53EA17340 ] aswRdr C:\WINDOWS\system32\drivers\aswRdr2.sys
16:39:31.0758 0x238c aswRdr - ok
16:39:31.0763 0x238c [ EF03E68187720D35092E3D6858064170, C81B7005C50D7CFC0FED24DB42BA435F3C04898C0F7C4A58772D0439F45B5AA4 ] aswRvrt C:\WINDOWS\system32\drivers\aswRvrt.sys
16:39:31.0783 0x238c aswRvrt - ok
16:39:31.0806 0x238c [ 9A95D9A2726393975C3DD50751085B83, 37187F8BF05F7C6EA33B798F92282109DEF5C1806D5CFAB334DB1F9FD429CE49 ] aswSnx C:\WINDOWS\system32\drivers\aswSnx.sys
16:39:31.0865 0x238c aswSnx - ok
16:39:31.0880 0x238c [ 11DF322991B0E54278D5EBB7C7E3BCC8, CF133C27E740DD3D1BA84DFDFC668B279832995E8CE21F029CE978CA0575425F ] aswSP C:\WINDOWS\system32\drivers\aswSP.sys
16:39:31.0921 0x238c aswSP - ok
16:39:31.0929 0x238c [ 69AE094434DCDB5ABE292F4EBD261C9B, CBD3D8216B8C4D4A6A6A5D5BDCC7E77EC3F4BD4428C231E2C406A0205504BE44 ] aswStm C:\WINDOWS\system32\drivers\aswStm.sys
16:39:31.0940 0x238c aswStm - ok
16:39:31.0945 0x238c [ E4ABC023E251D2BB6B98C9FCAF5CF16D, 2A94320A3EF16E641B693BF6EABABB57C891B914B00F73ACD7ADB8CA5089EC40 ] aswTap C:\WINDOWS\System32\drivers\aswTap.sys
16:39:31.0963 0x238c aswTap - ok
16:39:31.0973 0x238c [ FF7843417D319B14F96AC4D883D5BEEA, 3283AD20E23F8C15A1C35B0431B32A9EB8B79D8AD6CAF0C5305E26C43DA10B97 ] aswVmm C:\WINDOWS\system32\drivers\aswVmm.sys
16:39:32.0004 0x238c aswVmm - ok
16:39:32.0008 0x238c AsyncMac - ok
16:39:32.0011 0x238c atapi - ok
16:39:32.0014 0x238c AudioEndpointBuilder - ok
16:39:32.0018 0x238c Audiosrv - ok
16:39:32.0027 0x238c [ EE5315059F4F7AF1E0E2082CF914839C, 4B41A3A1E19A3E14E11BD9F8A9FE97465E01E8F9B7DE7580F689BF723C246A42 ] avast! Antivirus Q:\Programme\Avast!\AvastSvc.exe
16:39:32.0041 0x238c avast! Antivirus - ok
16:39:32.0051 0x238c [ F1AD1E531E90B312BEB5F1E6B5A80A97, 23B59750E3F2B7B15026574DAAFE15030436CA044A9E26CD4DF69B670B2C4F87 ] avast! Firewall Q:\Programme\Avast!\afwServ.exe
16:39:32.0064 0x238c avast! Firewall - ok
16:39:32.0084 0x238c [ 85D7960265C55C141A36DD4F2EBF3CE3, 09A8D45D1AAC9CE74749C58A0F5FC441D9CDEE1CBA41F47EC8D9D59605C92992 ] AVerAF35 C:\WINDOWS\System32\Drivers\AVerAF35.sys
16:39:32.0139 0x238c AVerAF35 - ok
16:39:32.0145 0x238c AxInstSV - ok
16:39:32.0148 0x238c b06bdrv - ok
16:39:32.0151 0x238c BasicDisplay - ok
16:39:32.0155 0x238c BasicRender - ok
16:39:32.0160 0x238c bcmfn - ok
16:39:32.0164 0x238c bcmfn2 - ok
16:39:32.0167 0x238c BDESVC - ok
16:39:32.0170 0x238c Beep - ok
16:39:32.0173 0x238c BFE - ok
16:39:32.0177 0x238c BITS - ok
16:39:32.0180 0x238c bowser - ok
16:39:32.0183 0x238c BrokerInfrastructure - ok
16:39:32.0187 0x238c BthAvrcpTg - ok
16:39:32.0190 0x238c BthHFEnum - ok
16:39:32.0193 0x238c bthhfhid - ok
16:39:32.0197 0x238c BthHFSrv - ok
16:39:32.0200 0x238c BTHMODEM - ok
16:39:32.0205 0x238c bthserv - ok
16:39:32.0209 0x238c buttonconverter - ok
16:39:32.0214 0x238c [ 60EB6A4CE3E21887D302350631C16F26, 4270EFA22285C1A9336CF1220761E416950D2DA9C6A40D1D8452686CD5040DAB ] CapImg C:\WINDOWS\System32\drivers\capimg.sys
16:39:32.0247 0x238c CapImg - ok
16:39:32.0250 0x238c cdfs - ok
16:39:32.0254 0x238c CDPSvc - ok
16:39:32.0257 0x238c CDPUserSvc - ok
16:39:32.0262 0x238c cdrom - ok
16:39:32.0265 0x238c CertPropSvc - ok
16:39:32.0270 0x238c cht4iscsi - ok
16:39:32.0273 0x238c cht4vbd - ok
16:39:32.0277 0x238c circlass - ok
16:39:32.0280 0x238c CLFS - ok
16:39:32.0283 0x238c ClipSVC - ok
16:39:32.0287 0x238c clreg - ok
16:39:32.0295 0x238c CmBatt - ok
16:39:32.0299 0x238c [ 84FC81FF9F291A0FC8D10933C1748F66, 46B6C64659A24C1D4917963FECEC2D6AED516C047762F0B4E67651CF8241A7D8 ] CM_VENDER_CMD C:\Program Files\Common Files\Logitech\G430Install\CMVC64.sys
16:39:32.0316 0x238c CM_VENDER_CMD - ok
16:39:32.0319 0x238c CNG - ok
16:39:32.0323 0x238c cnghwassist - ok
16:39:32.0337 0x238c CompositeBus - ok
16:39:32.0340 0x238c COMSysApp - ok
16:39:32.0344 0x238c condrv - ok
16:39:32.0347 0x238c CoreMessagingRegistrar - ok
16:39:32.0353 0x238c CryptSvc - ok
16:39:32.0358 0x238c CSC - ok
16:39:32.0361 0x238c CscService - ok
16:39:32.0365 0x238c dam - ok
16:39:32.0370 0x238c DcomLaunch - ok
16:39:32.0373 0x238c DcpSvc - ok
16:39:32.0376 0x238c defragsvc - ok
16:39:32.0380 0x238c DeviceAssociationService - ok
16:39:32.0384 0x238c DeviceInstall - ok
16:39:32.0387 0x238c DevQueryBroker - ok
16:39:32.0391 0x238c Dfsc - ok
16:39:32.0395 0x238c Dhcp - ok
16:39:32.0399 0x238c diagnosticshub.standardcollector.service - ok
16:39:32.0402 0x238c DiagTrack - ok
16:39:32.0406 0x238c disk - ok
16:39:32.0409 0x238c DmEnrollmentSvc - ok
16:39:32.0413 0x238c dmvsc - ok
16:39:32.0416 0x238c dmwappushservice - ok
16:39:32.0419 0x238c Dnscache - ok
16:39:32.0424 0x238c dot3svc - ok
16:39:32.0427 0x238c DPS - ok
16:39:32.0431 0x238c drmkaud - ok
16:39:32.0434 0x238c DsmSvc - ok
16:39:32.0438 0x238c DsSvc - ok
16:39:32.0442 0x238c DXGKrnl - ok
16:39:32.0445 0x238c EapHost - ok
16:39:32.0448 0x238c ebdrv - ok
16:39:32.0451 0x238c EFS - ok
16:39:32.0455 0x238c EhStorClass - ok
16:39:32.0460 0x238c [ 2A9817B5A9260D8F60D52E36BEF10443, AC1A0203221AFAF584C71317FA07AA1B6E61BE619E918B3B1E4AD57CCED1CF03 ] EhStorTcgDrv C:\WINDOWS\system32\drivers\EhStorTcgDrv.sys
16:39:32.0487 0x238c EhStorTcgDrv - ok
16:39:32.0492 0x238c embeddedmode - ok
16:39:32.0496 0x238c EntAppSvc - ok
16:39:32.0499 0x238c ErrDev - ok
16:39:32.0505 0x238c EventSystem - ok
16:39:32.0509 0x238c exfat - ok
16:39:32.0512 0x238c fastfat - ok
16:39:32.0515 0x238c Fax - ok
16:39:32.0519 0x238c fdc - ok
16:39:32.0522 0x238c fdPHost - ok
16:39:32.0525 0x238c FDResPub - ok
16:39:32.0529 0x238c fhsvc - ok
16:39:32.0532 0x238c FileCrypt - ok
16:39:32.0536 0x238c FileInfo - ok
16:39:32.0539 0x238c Filetrace - ok
16:39:32.0543 0x238c flpydisk - ok
16:39:32.0546 0x238c FltMgr - ok
16:39:32.0550 0x238c FontCache - ok
16:39:32.0553 0x238c FontCache3.0.0.0 - ok
16:39:32.0556 0x238c FrameServer - ok
16:39:32.0559 0x238c FsDepends - ok
16:39:32.0563 0x238c Fs_Rec - ok
16:39:32.0570 0x238c [ 895BA1CFF25E867CE5A52073E905C93B, A417065E831B768BD76364EC1E5FEDAADF172DCD1E6C2A134CB311EDDC2DC477 ] fussvc C:\Program Files (x86)\Windows Kits\8.0\App Certification Kit\fussvc.exe
16:39:32.0582 0x238c fussvc - detected UnsignedFile.Multi.Generic ( 1 )
16:39:35.0861 0x238c Detect skipped due to KSN trusted
16:39:35.0861 0x238c fussvc - ok
16:39:35.0864 0x238c fvevol - ok
16:39:35.0868 0x238c gencounter - ok
16:39:35.0871 0x238c genericusbfn - ok
16:39:35.0874 0x238c GPIOClx0101 - ok
16:39:35.0878 0x238c gpsvc - ok
16:39:35.0881 0x238c GpuEnergyDrv - ok
16:39:35.0885 0x238c [ BDDBCFF870442B3C24C158CD53079132, 62314C296ACF1EF9EB38FB70B66B57D1BB9917C8536B39892272D172BC58A5C3 ] hcmon C:\WINDOWS\system32\drivers\hcmon.sys
16:39:35.0903 0x238c hcmon - ok
16:39:35.0907 0x238c HdAudAddService - ok
16:39:35.0910 0x238c HDAudBus - ok
16:39:35.0913 0x238c HidBatt - ok
16:39:35.0916 0x238c HidBth - ok
16:39:35.0921 0x238c hidi2c - ok
16:39:35.0924 0x238c hidinterrupt - ok
16:39:35.0928 0x238c HidIr - ok
16:39:35.0931 0x238c hidserv - ok
16:39:35.0936 0x238c HidUsb - ok
16:39:35.0939 0x238c HomeGroupListener - ok
16:39:35.0943 0x238c HomeGroupProvider - ok
16:39:35.0946 0x238c HpSAMD - ok
16:39:35.0949 0x238c HTTP - ok
16:39:35.0952 0x238c HvHost - ok
16:39:35.0955 0x238c hvservice - ok
16:39:35.0959 0x238c hwpolicy - ok
16:39:35.0963 0x238c hyperkbd - ok
16:39:35.0966 0x238c i8042prt - ok
16:39:35.0970 0x238c iagpio - ok
16:39:35.0973 0x238c iai2c - ok
16:39:35.0977 0x238c iaLPSS2i_GPIO2 - ok
16:39:35.0980 0x238c iaLPSS2i_I2C - ok
16:39:35.0984 0x238c iaLPSSi_GPIO - ok
16:39:35.0987 0x238c iaLPSSi_I2C - ok
16:39:35.0991 0x238c iaStorAV - ok
16:39:35.0994 0x238c iaStorV - ok
16:39:35.0998 0x238c ibbus - ok
16:39:36.0001 0x238c icssvc - ok
16:39:36.0004 0x238c IKEEXT - ok
16:39:36.0007 0x238c IndirectKmd - ok
16:39:36.0014 0x238c intelide - ok
16:39:36.0018 0x238c intelpep - ok
16:39:36.0021 0x238c intelppm - ok
16:39:36.0025 0x238c iorate - ok
16:39:36.0028 0x238c IpFilterDriver - ok
16:39:36.0032 0x238c iphlpsvc - ok
16:39:36.0035 0x238c IPMIDRV - ok
16:39:36.0039 0x238c IPNAT - ok
16:39:36.0042 0x238c irda - ok
16:39:36.0046 0x238c IRENUM - ok
16:39:36.0049 0x238c irmon - ok
16:39:36.0053 0x238c isapnp - ok
16:39:36.0056 0x238c iScsiPrt - ok
16:39:36.0060 0x238c kbdclass - ok
16:39:36.0063 0x238c kbdhid - ok
16:39:36.0067 0x238c kdnic - ok
16:39:36.0070 0x238c KeyIso - ok
16:39:36.0074 0x238c KSecDD - ok
16:39:36.0077 0x238c KSecPkg - ok
16:39:36.0081 0x238c ksthunk - ok
16:39:36.0084 0x238c KtmRm - ok
16:39:36.0088 0x238c [ 35649357A0578F7E208ECCB87884C756, FEEEF17E6B1E697EEC169B0CBAFF68DA45DFADC039DD52F93C83BEB46ADA4322 ] ladfGSS C:\WINDOWS\system32\drivers\ladfGSS.sys
16:39:36.0108 0x238c ladfGSS - ok
16:39:36.0119 0x238c [ 305BB2AC00D46542E0A653AB63F4ABB1, E3BE57A0EBB1194656D20C11688863A7864B06223419F688D82881F9F49604B6 ] LADF_CaptureOnly C:\WINDOWS\system32\DRIVERS\ladfGSCamd64.sys
16:39:36.0136 0x238c LADF_CaptureOnly - ok
16:39:36.0143 0x238c [ 28CDDC7D478A6313F55077416DCBD0DE, EE4174FC9444856DF0693D1A5F16EB88352A3B012AA82D49C462980703981A7A ] LADF_RenderOnly C:\WINDOWS\system32\DRIVERS\ladfGSRamd64.sys
16:39:36.0163 0x238c LADF_RenderOnly - ok
16:39:36.0166 0x238c LanmanServer - ok
16:39:36.0170 0x238c LanmanWorkstation - ok
16:39:36.0174 0x238c lfsvc - ok
16:39:36.0179 0x238c [ 5E7641AECAC4CFC7B4B442B461A25C83, 1F6AF4ED863C17A1A326A4CB0D289EAABFAD748A6B0A7CE40CF842694572FDB7 ] LGBusEnum C:\WINDOWS\system32\drivers\LGBusEnum.sys
16:39:36.0200 0x238c LGBusEnum - ok
16:39:36.0204 0x238c [ 2D7F1C02B94D6F0F3E10107E5EA8E141, 93B266F38C3C3EAAB475D81597ABBD7CC07943035068BB6FD670DBBE15DE0131 ] LGCoreTemp C:\Program Files\Logitech Gaming Software\Drivers\LgCoreTemp\lgcoretemp.sys
16:39:36.0220 0x238c LGCoreTemp - ok
16:39:36.0225 0x238c [ 822A0DFDF63EEF9786C3946EAA98FDF7, 940F1DE2610BBBC728BBDB2AAABBD232AB4B3F53530A0D54EB50416D89C133DC ] LGJoyHidFilter C:\WINDOWS\system32\drivers\LGJoyHidFilter.sys
16:39:36.0246 0x238c LGJoyHidFilter - ok
16:39:36.0251 0x238c [ 7D24DEBE7BC0C01A30A9A65806B61453, 342E758AD6F88E3FA83B69F26836A9F54D1A3BE344D1D2F9C6394E085E5FCA92 ] LGJoyXlCore C:\WINDOWS\system32\drivers\LGJoyXlCore.sys
16:39:36.0271 0x238c LGJoyXlCore - ok
16:39:36.0276 0x238c [ 07B1C1927BAE6431D3DFB1816DF05BBA, 9B296F6E801D14CE89F5E3EA9B3962EE99E1D3E22077D075F5B0EE4FE3CAB65E ] lgLowAudio C:\WINDOWS\system32\drivers\lgLowAudio.sys
16:39:36.0293 0x238c lgLowAudio - ok
16:39:36.0297 0x238c [ DBEAB45BA2B47C057F3BAE5AD0654173, 9660B803F4AD4BD3427F1A24D09B2712E4DC0E25A18942984AF01750D77C118C ] LGVirHid C:\WINDOWS\system32\drivers\LGVirHid.sys
16:39:36.0317 0x238c LGVirHid - ok
16:39:36.0321 0x238c LicenseManager - ok
16:39:36.0324 0x238c lltdio - ok
16:39:36.0327 0x238c lltdsvc - ok
16:39:36.0331 0x238c lmhosts - ok
16:39:36.0337 0x238c [ B78534B305C93D18CAED123E1F9346E5, 19FE198E0D7C81AAF1A00700AB85F19E37E4198EDB8A59C55D1766E03D9E060F ] LogiRegistryService C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe
16:39:36.0347 0x238c LogiRegistryService - ok
16:39:36.0352 0x238c LSI_SAS - ok
16:39:36.0355 0x238c LSI_SAS2i - ok
16:39:36.0359 0x238c LSI_SAS3i - ok
16:39:36.0362 0x238c LSI_SSS - ok
16:39:36.0366 0x238c LSM - ok
16:39:36.0369 0x238c luafv - ok
16:39:36.0373 0x238c MapsBroker - ok
16:39:36.0376 0x238c megasas - ok
16:39:36.0381 0x238c [ 2CF0CB2A0ED68C5455371E84C16F9627, 1C9166B52140145F1968E83E52BFF041250811B23C770FE181A18A4BA060CA81 ] megasas2i C:\WINDOWS\system32\drivers\MegaSas2i.sys
16:39:36.0403 0x238c megasas2i - ok
16:39:36.0407 0x238c megasr - ok
16:39:36.0410 0x238c MessagingService - ok
16:39:36.0415 0x238c mlx4_bus - ok
16:39:36.0419 0x238c MMCSS - ok
16:39:36.0422 0x238c Modem - ok
16:39:36.0425 0x238c monitor - ok
16:39:36.0428 0x238c mouclass - ok
16:39:36.0432 0x238c mouhid - ok
16:39:36.0435 0x238c mountmgr - ok
16:39:36.0438 0x238c mpsdrv - ok
16:39:36.0442 0x238c MpsSvc - ok
16:39:36.0445 0x238c MRxDAV - ok
16:39:36.0449 0x238c mrxsmb - ok
16:39:36.0452 0x238c mrxsmb20 - ok
16:39:36.0456 0x238c MsBridge - ok
16:39:36.0460 0x238c MSDTC - ok
16:39:36.0466 0x238c Msfs - ok
16:39:36.0469 0x238c msgpiowin32 - ok
16:39:36.0473 0x238c mshidkmdf - ok
16:39:36.0477 0x238c mshidumdf - ok
16:39:36.0480 0x238c msisadrv - ok
16:39:36.0484 0x238c MSiSCSI - ok
16:39:36.0487 0x238c msiserver - ok
16:39:36.0491 0x238c MSKSSRV - ok
16:39:36.0494 0x238c MsLldp - ok
16:39:36.0497 0x238c MSPCLOCK - ok
16:39:36.0501 0x238c MSPQM - ok
16:39:36.0504 0x238c MsRPC - ok
16:39:36.0510 0x238c MsSecFlt - ok
16:39:36.0513 0x238c mssmbios - ok
16:39:36.0517 0x238c MSTEE - ok
16:39:36.0520 0x238c MTConfig - ok
16:39:36.0524 0x238c [ 640617B6E682A150C36BE39D78547F6C, 784F712E9DC3EEE81F07946BBA08AA2BEAC7B3961E430B75043645EF7ECA715C ] MTsensor C:\WINDOWS\system32\DRIVERS\ASACPI.sys
16:39:36.0541 0x238c MTsensor - ok
16:39:36.0545 0x238c Mup - ok
16:39:36.0548 0x238c mvumis - ok
16:39:36.0553 0x238c NativeWifiP - ok
16:39:36.0557 0x238c NcaSvc - ok
16:39:36.0560 0x238c NcbService - ok
16:39:36.0563 0x238c NcdAutoSetup - ok
16:39:36.0567 0x238c ndfltr - ok
16:39:36.0571 0x238c NDIS - ok
16:39:36.0574 0x238c NdisCap - ok
16:39:36.0577 0x238c NdisImPlatform - ok
16:39:36.0581 0x238c NdisTapi - ok
16:39:36.0584 0x238c Ndisuio - ok
16:39:36.0587 0x238c NdisVirtualBus - ok
16:39:36.0590 0x238c NdisWan - ok
16:39:36.0594 0x238c ndiswanlegacy - ok
16:39:36.0597 0x238c ndproxy - ok
16:39:36.0600 0x238c Ndu - ok
16:39:36.0604 0x238c NetAdapterCx - ok
16:39:36.0607 0x238c NetBIOS - ok
16:39:36.0612 0x238c NetBT - ok
16:39:36.0615 0x238c Netlogon - ok
16:39:36.0618 0x238c Netman - ok
16:39:36.0622 0x238c netprofm - ok
16:39:36.0625 0x238c NetSetupSvc - ok
16:39:36.0631 0x238c NetTcpPortSharing - ok
16:39:36.0636 0x238c NgcCtnrSvc - ok
16:39:36.0640 0x238c NgcSvc - ok
16:39:36.0643 0x238c NlaSvc - ok
16:39:36.0646 0x238c Npfs - ok
16:39:36.0650 0x238c npsvctrig - ok
16:39:36.0653 0x238c nsi - ok
16:39:36.0656 0x238c nsiproxy - ok
16:39:36.0661 0x238c NTFS - ok
16:39:36.0665 0x238c Null - ok
16:39:36.0674 0x238c [ 207A78939B7BBA0EFE8BFA947A35E71C, BB7DDFED575F81CAB958DDC7CFF2D798EB14DAE633F49FA2229D98BDC489C0EE ] NVHDA C:\WINDOWS\system32\drivers\nvhda64v.sys
16:39:36.0688 0x238c NVHDA - ok
16:39:36.0985 0x238c [ 9337A5F17702A0FFE1E6C6978619B872, 8D4505BA62977BFE8C01F1ABD027AFBAEAA0D3EA6336865E46C28818471B196E ] nvlddmkm C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_0cc477a6fec64d8c\nvlddmkm.sys
16:39:37.0329 0x238c nvlddmkm - ok
16:39:37.0355 0x238c nvraid - ok
16:39:37.0358 0x238c nvstor - ok
16:39:37.0362 0x238c OneSyncSvc - ok
16:39:37.0367 0x238c p2pimsvc - ok
16:39:37.0371 0x238c p2psvc - ok
16:39:37.0376 0x238c Parport - ok
16:39:37.0379 0x238c partmgr - ok
16:39:37.0383 0x238c PcaSvc - ok
16:39:37.0393 0x238c [ 29AF16726F4DD84376ECA85AB6AFF2C6, BEF9EA10637065365ED343C4EBA51191B9BEADD8F1F3362D3EFE75F40BE9A027 ] pci C:\WINDOWS\system32\drivers\pci.sys
16:39:37.0428 0x238c pci - ok
16:39:37.0433 0x238c pciide - ok
16:39:37.0436 0x238c pcmcia - ok
16:39:37.0440 0x238c pcw - ok
16:39:37.0444 0x238c pdc - ok
16:39:37.0447 0x238c PEAUTH - ok
16:39:37.0451 0x238c PeerDistSvc - ok
16:39:37.0454 0x238c percsas2i - ok
16:39:37.0458 0x238c percsas3i - ok
16:39:37.0480 0x238c PerfHost - ok
16:39:37.0488 0x238c PhoneSvc - ok
16:39:37.0492 0x238c PimIndexMaintenanceSvc - ok
16:39:37.0498 0x238c pla - ok
16:39:37.0502 0x238c PlugPlay - ok
16:39:37.0505 0x238c PnkBstrA - ok
16:39:37.0509 0x238c PNRPAutoReg - ok
16:39:37.0512 0x238c PNRPsvc - ok
16:39:37.0516 0x238c PolicyAgent - ok
16:39:37.0521 0x238c Power - ok
16:39:37.0525 0x238c PptpMiniport - ok
16:39:37.0595 0x238c [ 7196D3C2E2E3129814C8DAB91F9A7D1E, 6763E4BF8E846B597E78778E520F5BADC95608BAA4EA0AC84971384B5D976DD7 ] PrintNotify C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll
16:39:37.0718 0x238c PrintNotify - ok
16:39:37.0727 0x238c Processor - ok
16:39:37.0731 0x238c ProfSvc - ok
16:39:37.0734 0x238c Psched - ok
16:39:37.0738 0x238c QWAVE - ok
16:39:37.0741 0x238c QWAVEdrv - ok
16:39:37.0745 0x238c RasAcd - ok
16:39:37.0748 0x238c RasAgileVpn - ok
16:39:37.0752 0x238c RasAuto - ok
16:39:37.0756 0x238c Rasl2tp - ok
16:39:37.0760 0x238c RasMan - ok
16:39:37.0763 0x238c RasPppoe - ok
16:39:37.0767 0x238c RasSstp - ok
16:39:37.0775 0x238c [ 5753CD9159718444F6D9E1634B984BF5, A4D6FB6583724F3DDDBA768D7786EB7E3AB1C8074F66DA9462BBB159CDFA2868 ] Razer Game Scanner Service C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
16:39:37.0786 0x238c Razer Game Scanner Service - ok
16:39:37.0790 0x238c rdbss - ok
16:39:37.0795 0x238c rdpbus - ok
16:39:37.0799 0x238c RDPDR - ok
16:39:37.0806 0x238c RdpVideoMiniport - ok
16:39:37.0810 0x238c rdyboost - ok
16:39:37.0813 0x238c ReFSv1 - ok
16:39:37.0819 0x238c RemoteAccess - ok
16:39:37.0823 0x238c RemoteRegistry - ok
16:39:37.0827 0x238c RetailDemo - ok
16:39:37.0831 0x238c RmSvc - ok
16:39:37.0835 0x238c RpcEptMapper - ok
16:39:37.0839 0x238c RpcLocator - ok
16:39:37.0843 0x238c RpcSs - ok
16:39:37.0846 0x238c rspndr - ok
16:39:37.0867 0x238c [ 12A3D1530E3F67B8664EBA923A3981E4, 8670C39EB0A7C37C17D014A8917493B776DE0829B55EFED13D91B6FA7B81CA11 ] rt640x64 C:\WINDOWS\System32\drivers\rt640x64.sys
16:39:37.0919 0x238c rt640x64 - ok
16:39:37.0925 0x238c [ 30A186D6A2A2853EEFAD7011E212E41B, 367B8FCCF29470C9237FC1F0EAEB59AE51E33778BC9914A2730AC7DDBC84942B ] rzpmgrk C:\WINDOWS\system32\drivers\rzpmgrk.sys
16:39:37.0935 0x238c rzpmgrk - ok
16:39:37.0941 0x238c [ F8A13D4413A93DD005FAD116CBD6B6F7, 8ED0C00920CE76E832701D45117ED00B12E20588CB6FE8039FBCCDFEF9841047 ] rzpnk C:\Windows\system32\drivers\rzpnk.sys
16:39:37.0962 0x238c rzpnk - ok
16:39:37.0971 0x238c [ 421497E425AFB40502013F362E4FA230, 20E2372BEE4BFB21138CA574C9806EC399DDA9D3439F3C391E34ABB2E518106D ] rzudd C:\WINDOWS\System32\drivers\rzudd.sys
16:39:37.0983 0x238c rzudd - ok
16:39:37.0988 0x238c s3cap - ok
16:39:37.0991 0x238c SamSs - ok
16:39:37.0995 0x238c sbp2port - ok
16:39:37.0999 0x238c SCardSvr - ok
16:39:38.0003 0x238c ScDeviceEnum - ok
16:39:38.0006 0x238c scfilter - ok
16:39:38.0010 0x238c Schedule - ok
16:39:38.0014 0x238c scmbus - ok
16:39:38.0017 0x238c scmdisk0101 - ok
16:39:38.0022 0x238c SCPolicySvc - ok
16:39:38.0031 0x238c [ 7C3D10BEC8B0DBA00A78C78EB10B3AE2, A671C9CB97977613576D70607E106C7A29B9EA9E875C7C5AF293EE5903D7AD0A ] sdbus C:\WINDOWS\System32\drivers\sdbus.sys
16:39:38.0064 0x238c sdbus - ok
16:39:38.0068 0x238c SDRSVC - ok
16:39:38.0072 0x238c sdstor - ok
16:39:38.0076 0x238c seclogon - ok
16:39:38.0080 0x238c SENS - ok
16:39:38.0082 0x238c Sense - ok
16:39:38.0088 0x238c SensorDataService - ok
16:39:38.0091 0x238c SensorService - ok
16:39:38.0095 0x238c SensorsSimulatorDriver - ok
16:39:38.0099 0x238c SensrSvc - ok
16:39:38.0102 0x238c SerCx - ok
16:39:38.0106 0x238c SerCx2 - ok
16:39:38.0110 0x238c Serenum - ok
16:39:38.0113 0x238c Serial - ok
16:39:38.0117 0x238c sermouse - ok
16:39:38.0127 0x238c SessionEnv - ok
16:39:38.0131 0x238c sfloppy - ok
16:39:38.0136 0x238c SharedAccess - ok
16:39:38.0140 0x238c ShellHWDetection - ok
16:39:38.0144 0x238c shpamsvc - ok
16:39:38.0148 0x238c SiSRaid2 - ok
16:39:38.0152 0x238c SiSRaid4 - ok
16:39:38.0156 0x238c smphost - ok
16:39:38.0161 0x238c SmsRouter - ok
16:39:38.0169 0x238c SNMPTRAP - ok
16:39:38.0184 0x238c [ C994DF90427103CCB80F893FFD2B1CE8, 7E4B08095C77E68D337A3425EEA38F8FEC4D103CA7661E34FD96BF518DFB4BCB ] spaceport C:\WINDOWS\system32\drivers\spaceport.sys
16:39:38.0232 0x238c spaceport - ok
16:39:38.0237 0x238c SpbCx - ok
16:39:38.0242 0x238c Spooler - ok
16:39:38.0246 0x238c sppsvc - ok
16:39:38.0252 0x238c [ EAD5300C93946B0250A309E2BF2BE4CF, 6B9131D94ED31F838B1820EE67F068C4741B69D5C655587C89C9477986BD270F ] SQLWriter C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
16:39:38.0266 0x238c SQLWriter - ok
16:39:38.0270 0x238c srv2 - ok
16:39:38.0274 0x238c srvnet - ok
16:39:38.0279 0x238c SSDPSRV - ok
16:39:38.0283 0x238c SstpSvc - ok
16:39:38.0287 0x238c StateRepository - ok
16:39:38.0318 0x238c [ 596DC69BB40A96FCA4B19D9D1E221E34, 3469D3B2E9A88E39C14AE2E3DD5EC3D91FBB88CA568D794555B397B50E64AB15 ] Steam Client Service C:\Program Files (x86)\Common Files\Steam\SteamService.exe
16:39:38.0360 0x238c Steam Client Service - ok
16:39:38.0367 0x238c stexstor - ok
16:39:38.0371 0x238c stisvc - ok
16:39:38.0375 0x238c storahci - ok
16:39:38.0380 0x238c storflt - ok
16:39:38.0385 0x238c [ B66D8C75C9BC59D637177AB3B1C569A6, 76252A631F03EEBF5FDC7693F6B0A5E73838CDBE3157114CC96B8BBE88B476BF ] stornvme C:\WINDOWS\system32\drivers\stornvme.sys
16:39:38.0409 0x238c stornvme - ok
16:39:38.0413 0x238c storqosflt - ok
16:39:38.0418 0x238c StorSvc - ok
16:39:38.0422 0x238c storufs - ok
16:39:38.0426 0x238c storvsc - ok
16:39:38.0430 0x238c svsvc - ok
16:39:38.0435 0x238c swenum - ok
16:39:38.0439 0x238c swprv - ok
16:39:38.0444 0x238c Synth3dVsc - ok
16:39:38.0448 0x238c SysMain - ok
16:39:38.0452 0x238c SystemEventsBroker - ok
16:39:38.0457 0x238c TabletInputService - ok
16:39:38.0461 0x238c TapiSrv - ok
16:39:38.0465 0x238c Tcpip - ok
16:39:38.0469 0x238c Tcpip6 - ok
16:39:38.0476 0x238c tcpipreg - ok
16:39:38.0482 0x238c tdx - ok
16:39:38.0488 0x238c [ BB676D2C7AD5E7131D12417E4691F9B9, C6DE7D8C08C2F059C696E9D63FC55692C8CB37FECF92F5A863D7D2C5AF3B425F ] Te.Service C:\Program Files (x86)\Windows Kits\8.0\Testing\Runtimes\TAEF\Wex.Services.exe
16:39:38.0499 0x238c Te.Service - detected UnsignedFile.Multi.Generic ( 1 )
16:39:41.0586 0x238c Detect skipped due to KSN trusted
16:39:41.0586 0x238c Te.Service - ok
16:39:41.0590 0x238c terminpt - ok
16:39:41.0594 0x238c TermService - ok
16:39:41.0598 0x238c Themes - ok
16:39:41.0603 0x238c TieringEngineService - ok
16:39:41.0606 0x238c tiledatamodelsvc - ok
16:39:41.0611 0x238c TimeBrokerSvc - ok
16:39:41.0619 0x238c [ 46171262D0E806779DEEDFCAB2F830CC, 7F4A4658B8BA217D99E5B5C0E01600C20DC96ECBCA32A5BA7FBE17D2A7B8BFD8 ] TPM C:\WINDOWS\System32\drivers\tpm.sys
16:39:41.0650 0x238c TPM - ok
16:39:41.0655 0x238c TrkWks - ok
16:39:41.0658 0x238c TrustedInstaller - ok
16:39:41.0665 0x238c tsusbflt - ok
16:39:41.0669 0x238c TsUsbGD - ok
16:39:41.0673 0x238c tsusbhub - ok
16:39:41.0677 0x238c tunnel - ok
16:39:41.0681 0x238c tzautoupdate - ok
16:39:41.0685 0x238c UASPStor - ok
16:39:41.0688 0x238c UcmCx0101 - ok
16:39:41.0693 0x238c UcmTcpciCx0101 - ok
16:39:41.0696 0x238c UcmUcsi - ok
16:39:41.0700 0x238c Ucx01000 - ok
16:39:41.0704 0x238c UdeCx - ok
16:39:41.0709 0x238c udfs - ok
16:39:41.0713 0x238c UEFI - ok
16:39:41.0717 0x238c UevAgentDriver - ok
16:39:41.0721 0x238c UevAgentService - ok
16:39:41.0725 0x238c Ufx01000 - ok
16:39:41.0729 0x238c UfxChipidea - ok
16:39:41.0733 0x238c ufxsynopsys - ok
16:39:41.0742 0x238c UI0Detect - ok
16:39:41.0745 0x238c umbus - ok
16:39:41.0749 0x238c UmPass - ok
16:39:41.0754 0x238c UmRdpService - ok
16:39:41.0758 0x238c UnistoreSvc - ok
16:39:41.0765 0x238c upnphost - ok
16:39:41.0769 0x238c UrsChipidea - ok
16:39:41.0773 0x238c UrsCx01000 - ok
16:39:41.0777 0x238c UrsSynopsys - ok
16:39:41.0781 0x238c usbaudio - ok
16:39:41.0785 0x238c usbccgp - ok
16:39:41.0789 0x238c usbcir - ok
16:39:41.0793 0x238c usbehci - ok
16:39:41.0797 0x238c usbhub - ok
16:39:41.0801 0x238c USBHUB3 - ok
16:39:41.0805 0x238c usbohci - ok
16:39:41.0809 0x238c usbprint - ok
16:39:41.0813 0x238c usbser - ok
16:39:41.0817 0x238c USBSTOR - ok
16:39:41.0821 0x238c usbuhci - ok
16:39:41.0825 0x238c USBXHCI - ok
16:39:41.0829 0x238c usb_rndisx - ok
16:39:41.0833 0x238c UserDataSvc - ok
16:39:41.0840 0x238c UserManager - ok
16:39:41.0844 0x238c UsoSvc - ok
16:39:41.0849 0x238c VaultSvc - ok
16:39:41.0853 0x238c vdrvroot - ok
16:39:41.0857 0x238c vds - ok
16:39:41.0861 0x238c VerifierExt - ok
16:39:41.0879 0x238c [ 3BB8D153A9A514EC9FFCB586251A1925, 5E4B46511F9791699826DC63B35528544347166BDE9981FB93F1F7F2A09599C7 ] vhdmp C:\WINDOWS\System32\drivers\vhdmp.sys
16:39:41.0931 0x238c vhdmp - ok
16:39:41.0936 0x238c vhf - ok
16:39:41.0954 0x238c [ 20D3701C516BB42F81A22EB727B9E419, 08A8D12626A322790C6679554D49AE388E33316121226DE9FCA9C22C8F509C56 ] VIAHdAudAddService C:\WINDOWS\system32\drivers\viahduaa.sys
16:39:42.0000 0x238c VIAHdAudAddService - ok
16:39:42.0006 0x238c [ 097A1A16F9F38715CEAA092DE626F517, 5D51D74C3264ADEA1A50F6620150B284E54C5294A548D1BC940B3B5FF5343998 ] VIAKaraokeService C:\WINDOWS\system32\viakaraokesrv.exe
16:39:42.0307 0x238c VIAKaraokeService - ok
16:39:42.0318 0x238c [ 2562943B90AFA9829097FB4274276D1D, EE003EF7A3EC49CFEF2EED841482721D7A89368967BFC44CE8DD9D3BDAF0572F ] VMAuthdService Q:\Programme\VM Ware Player\vmware-authd.exe
16:39:42.0326 0x238c VMAuthdService - ok
16:39:42.0330 0x238c vmbus - ok
16:39:42.0334 0x238c VMBusHID - ok
16:39:42.0340 0x238c [ BE8E5E5D53ACF71D4E8E686B68C99B04, 4F30A360095FCB2627068FA6A65A951688058E8FDDF5CE895E2AE39500A413B1 ] vmci C:\WINDOWS\system32\drivers\vmci.sys
16:39:42.0349 0x238c vmci - ok
16:39:42.0354 0x238c vmgid - ok
16:39:42.0358 0x238c vmicguestinterface - ok
16:39:42.0362 0x238c vmicheartbeat - ok
16:39:42.0367 0x238c vmickvpexchange - ok
16:39:42.0371 0x238c vmicrdv - ok
16:39:42.0375 0x238c vmicshutdown - ok
16:39:42.0379 0x238c vmictimesync - ok
16:39:42.0383 0x238c vmicvmsession - ok
16:39:42.0388 0x238c vmicvss - ok
16:39:42.0393 0x238c [ 4F19996D0765835797EC7B5F35D12240, FD4D222A373C3DF2B9FC7877C0EC050BF71A6C700FB52984E44FD25E49755A11 ] vmkbd C:\WINDOWS\system32\drivers\VMkbd.sys
16:39:42.0410 0x238c vmkbd - ok
16:39:42.0415 0x238c [ 18AA5F4A3B1204AD00045EE5AD39BCDB, 0211A8E94F169A2A52CD39CD580293907EBE104E52038DC36B988DE1CA7F2392 ] VMnetAdapter C:\WINDOWS\system32\DRIVERS\vmnetadapter.sys
16:39:42.0432 0x238c VMnetAdapter - ok
16:39:42.0438 0x238c [ 04CD4347CD9E8C40F78AD51F7FF426D0, BCA3E593E118BCA30142B23CD1CBE6905442D31C3DEB4C71B06D721E601F7BD8 ] VMnetBridge C:\WINDOWS\system32\DRIVERS\vmnetbridge.sys
16:39:42.0456 0x238c VMnetBridge - ok
16:39:42.0484 0x238c [ 05A869D1B12B08B5601487CA534B5021, 07A4BE681C0C0B23CBD5C05715DAA887D4DDE6D99251BC5D748F321940C23315 ] VMnetDHCP C:\WINDOWS\SYSWOW64\VMNETDHCP.EXE
16:39:42.0612 0x238c VMnetDHCP - ok
16:39:42.0618 0x238c [ F550680013FEA869820CB8320FAA2352, AA98DB7E71737DD8574ADB2DD9531C1DD46BABE99F89ED87D681D6C21BFA0D1C ] VMnetuserif C:\WINDOWS\system32\drivers\vmnetuserif.sys
16:39:42.0636 0x238c VMnetuserif - ok
16:39:42.0641 0x238c [ 396BB5901811148B2999134161FC86B3, 359112FAA69115BDFC212C3BA98DD3E9E73E29F0DC4DE13DBFCAAF4130F4680E ] VMparport C:\WINDOWS\system32\drivers\VMparport.sys
16:39:42.0660 0x238c VMparport - ok
16:39:42.0683 0x238c [ 41FAE6618768DC93D98DDAF3F8282D3E, 95995542026CC111B8FFAA01AC9E55B2F942A9108F5F00502A35339C13BBF20D ] VMUSBArbService C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe
16:39:42.0710 0x238c VMUSBArbService - ok
16:39:42.0726 0x238c [ F13B73E932CACDDE5ED825BDF7AA9637, 4B6C8D82324314294AE439ACDE933E6C8E77635ADE933BC52A0CD9A68927702D ] VMware NAT Service C:\WINDOWS\SYSWOW64\VMNAT.EXE
16:39:42.0749 0x238c VMware NAT Service - ok
16:39:42.0755 0x238c [ 227E4EA654B4D52C2AAA8B1DCD5C45DE, 7D9A675A6481D288846D7F22AE15EC62DF31C9385C83D875586EE371CC9C3410 ] vmx86 C:\WINDOWS\system32\drivers\vmx86.sys
16:39:42.0764 0x238c vmx86 - ok
16:39:42.0769 0x238c volmgr - ok
16:39:42.0773 0x238c volmgrx - ok
16:39:42.0779 0x238c volsnap - ok
16:39:42.0783 0x238c volume - ok
16:39:42.0789 0x238c [ 92F6E3E6D3F1795263EB34B37F74AEF7, 33AB1ECCA1216AF1995E1DB4F11E48156FF62391D7C176C8A4CC1037B9CB3A27 ] vpci C:\WINDOWS\System32\drivers\vpci.sys
16:39:42.0813 0x238c vpci - ok
16:39:42.0818 0x238c vsmraid - ok
16:39:42.0824 0x238c [ CB4D2E3C5E8BFA3CF6AFFF6DDC6CC70D, 32A891045AF36FEAC62373894B98ABDCEA437978BDE027169C22EBC2C72D586E ] vsock C:\WINDOWS\system32\drivers\vsock.sys
16:39:42.0843 0x238c vsock - ok
16:39:42.0858 0x238c [ F972436B5ED08069A1E7D623B77C226A, FA01505B5EC392ADE55019C22588D2F3608CBF9A6B03A44203F3587D372F8342 ] VSPerfDrv110 Q:\Programme\Microsoft Visual Studio Premium 2012\Team Tools\Performance Tools\x64\VSPerfDrv110.sys
16:39:42.0879 0x238c VSPerfDrv110 - ok
16:39:42.0884 0x238c VSS - ok
16:39:42.0889 0x238c VSTXRAID - ok
16:39:42.0894 0x238c vwifibus - ok
16:39:42.0898 0x238c vwififlt - ok
16:39:42.0903 0x238c W32Time - ok
16:39:42.0907 0x238c w3logsvc - ok
16:39:42.0911 0x238c WacomPen - ok
16:39:42.0916 0x238c WalletService - ok
16:39:42.0921 0x238c wanarp - ok
16:39:42.0925 0x238c wanarpv6 - ok
16:39:42.0930 0x238c WAS - ok
16:39:42.0934 0x238c wbengine - ok
16:39:42.0939 0x238c WbioSrvc - ok
16:39:42.0943 0x238c wcifs - ok
16:39:42.0949 0x238c Wcmsvc - ok
16:39:42.0954 0x238c wcncsvc - ok
16:39:42.0959 0x238c wcnfs - ok
16:39:42.0963 0x238c WdBoot - ok
16:39:42.0968 0x238c Wdf01000 - ok
16:39:42.0972 0x238c WdFilter - ok
16:39:42.0977 0x238c WdiServiceHost - ok
16:39:42.0982 0x238c WdiSystemHost - ok
16:39:42.0986 0x238c wdiwifi - ok
16:39:42.0991 0x238c WdNisDrv - ok
16:39:42.0995 0x238c WdNisSvc - ok
16:39:43.0000 0x238c WebClient - ok
16:39:43.0004 0x238c Wecsvc - ok
16:39:43.0009 0x238c WEPHOSTSVC - ok
16:39:43.0014 0x238c wercplsupport - ok
16:39:43.0018 0x238c WerSvc - ok
16:39:43.0023 0x238c WFPLWFS - ok
16:39:43.0028 0x238c WiaRpc - ok
16:39:43.0032 0x238c WIMMount - ok
16:39:43.0035 0x238c WinDefend - ok
16:39:43.0046 0x238c WindowsTrustedRT - ok
16:39:43.0051 0x238c WindowsTrustedRTProxy - ok
16:39:43.0055 0x238c WinHttpAutoProxySvc - ok
16:39:43.0060 0x238c WinMad - ok
16:39:43.0068 0x238c Winmgmt - ok
16:39:43.0073 0x238c WinRM - ok
16:39:43.0082 0x238c WINUSB - ok
16:39:43.0087 0x238c WinVerbs - ok
16:39:43.0092 0x238c wisvc - ok
16:39:43.0097 0x238c WlanSvc - ok
16:39:43.0102 0x238c wlidsvc - ok
16:39:43.0106 0x238c WmiAcpi - ok
16:39:43.0113 0x238c wmiApSrv - ok
16:39:43.0117 0x238c WMPNetworkSvc - ok
16:39:43.0122 0x238c Wof - ok
16:39:43.0130 0x238c WPDBusEnum - ok
16:39:43.0135 0x238c WpdUpFltr - ok
16:39:43.0140 0x238c WpnService - ok
16:39:43.0144 0x238c WpnUserService - ok
16:39:43.0152 0x238c ws2ifsl - ok
16:39:43.0157 0x238c wscsvc - ok
16:39:43.0161 0x238c WSearch - ok
16:39:43.0169 0x238c wuauserv - ok
16:39:43.0173 0x238c WudfPf - ok
16:39:43.0178 0x238c WUDFRd - ok
16:39:43.0182 0x238c wudfsvc - ok
16:39:43.0187 0x238c WUDFWpdFs - ok
16:39:43.0191 0x238c WUDFWpdMtp - ok
16:39:43.0196 0x238c WwanSvc - ok
16:39:43.0201 0x238c XblAuthManager - ok
16:39:43.0206 0x238c XblGameSave - ok
16:39:43.0216 0x238c [ 9627BBAA50878F6833A6A7843EE3B1D9, 637566BB56501C4D11E3B6E6AC1C602D880C9D357CCE3DF1DF74EE672744F2B7 ] xboxgip C:\WINDOWS\System32\drivers\xboxgip.sys
16:39:43.0263 0x238c xboxgip - ok
16:39:43.0269 0x238c XboxNetApiSvc - ok
16:39:43.0274 0x238c [ 63088A3361D9A308F328F11E9099DD87, E03FDB932FC57F199C8F8A8EADA338BDF7D2F9C6CB8FAB679A92B48B1E5AFE8A ] xinputhid C:\WINDOWS\System32\drivers\xinputhid.sys
16:39:43.0299 0x238c xinputhid - ok
16:39:43.0315 0x238c ================ Scan global ===============================
16:39:43.0334 0x238c [ Global ] - ok
16:39:43.0334 0x238c ================ Scan MBR ==================================
16:39:43.0336 0x238c [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
16:39:43.0397 0x238c \Device\Harddisk0\DR0 - ok
16:39:43.0402 0x238c [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk1\DR1
16:39:43.0422 0x238c \Device\Harddisk1\DR1 - ok
16:39:43.0425 0x238c [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk2\DR2
16:39:43.0786 0x238c \Device\Harddisk2\DR2 - ok
16:39:43.0790 0x238c [ 373F4DAF56249FD107189CCBA61161EB ] \Device\Harddisk3\DR3
16:39:43.0931 0x238c \Device\Harddisk3\DR3 - ok
16:39:43.0931 0x238c ================ Scan VBR ==================================
16:39:43.0933 0x238c [ 83F445321C35C67F127CD3166C85CDF7 ] \Device\Harddisk0\DR0\Partition1
16:39:43.0934 0x238c \Device\Harddisk0\DR0\Partition1 - ok
16:39:43.0936 0x238c [ 4F1E6A146D13C619CE312109B618C31E ] \Device\Harddisk0\DR0\Partition2
16:39:43.0937 0x238c \Device\Harddisk0\DR0\Partition2 - ok
16:39:43.0942 0x238c [ 00B6CDF571AA8A34726DFD7D584105C8 ] \Device\Harddisk1\DR1\Partition1
16:39:43.0942 0x238c \Device\Harddisk1\DR1\Partition1 - ok
16:39:43.0944 0x238c [ E381CD8C0602E1016F17614797D832BF ] \Device\Harddisk1\DR1\Partition2
16:39:43.0945 0x238c \Device\Harddisk1\DR1\Partition2 - ok
16:39:43.0947 0x238c [ E2EEFD8BCE158069F8F14D2AA080A2C9 ] \Device\Harddisk2\DR2\Partition1
16:39:43.0948 0x238c \Device\Harddisk2\DR2\Partition1 - ok
16:39:43.0952 0x238c [ 3845461D4FCA392626E0FC1010477043 ] \Device\Harddisk3\DR3\Partition1
16:39:43.0956 0x238c \Device\Harddisk3\DR3\Partition1 - ok
16:39:43.0957 0x238c ================ Scan generic autorun ======================
16:39:44.0277 0x238c [ 1BDEB33CEAA541F6FCB19D9C342FBF86, F7DF33410511011317915F2EC3E571D249F1C92D5E35485313BF4DE9999D534C ] C:\Program Files\Logitech Gaming Software\LCore.exe
16:39:44.0582 0x238c Launch LCore - ok
16:39:44.0621 0x238c OneDriveSetup - ok
16:39:44.0623 0x238c OneDriveSetup - ok
16:39:44.0625 0x238c OneDriveSetup - ok
16:39:44.0627 0x238c WAB Migrate - ok
16:39:44.0628 0x238c Waiting for KSN requests completion. In queue: 21
16:39:45.0629 0x238c Waiting for KSN requests completion. In queue: 21
16:39:46.0630 0x238c Waiting for KSN requests completion. In queue: 21
16:39:47.0631 0x238c Waiting for KSN requests completion. In queue: 21
16:39:48.0643 0x238c AV detected via SS2: Avast Antivirus, Q:\Programme\Avast!\wsc_proxy.exe ( 17.1.3394.0 ), 0x41000 ( enabled : updated )
16:39:48.0644 0x238c AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.10.14393.187 ), 0x60100 ( disabled : updated )
16:39:48.0645 0x238c FW detected via SS2: Avast Antivirus, Q:\Programme\Avast!\wsc_proxy.exe ( 17.1.3394.0 ), 0x41010 ( enabled )
16:39:58.0767 0x238c ============================================================
16:39:58.0767 0x238c Scan finished
16:39:58.0767 0x238c ============================================================
16:39:58.0774 0x2384 Detected object count: 0
16:39:58.0774 0x2384 Actual detected object count: 0
16:40:32.0670 0x23f0 ============================================================
16:40:32.0670 0x23f0 Scan started
16:40:32.0670 0x23f0 Mode: Manual; SigCheck; TDLFS;
16:40:32.0670 0x23f0 ============================================================
16:40:32.0670 0x23f0 KSN ping started
16:40:37.0882 0x23f0 KSN ping finished: true
16:40:38.0170 0x23f0 ================ Scan system memory ========================
16:40:38.0170 0x23f0 System memory - ok
16:40:38.0171 0x23f0 ================ Scan services =============================
16:40:38.0207 0x23f0 1394ohci - ok
16:40:38.0211 0x23f0 3ware - ok
16:40:38.0215 0x23f0 ACPI - ok
16:40:38.0218 0x23f0 AcpiDev - ok
16:40:38.0222 0x23f0 acpiex - ok
16:40:38.0226 0x23f0 acpipagr - ok
16:40:38.0229 0x23f0 AcpiPmi - ok
16:40:38.0232 0x23f0 acpitime - ok
16:40:38.0238 0x23f0 [ B932E0EE190778D840F1442DFC0F9612, 8780963F14D57279FDD585BE945ED40F24590D32676C7A9EF94002D38B8BA643 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
16:40:38.0250 0x23f0 AdobeARMservice - ok
16:40:38.0255 0x23f0 ADP80XX - ok
16:40:38.0261 0x23f0 AFD - ok
16:40:38.0266 0x23f0 ahcache - ok
16:40:38.0269 0x23f0 AJRouter - ok
16:40:38.0273 0x23f0 ALG - ok
16:40:38.0276 0x23f0 AmdK8 - ok
16:40:38.0280 0x23f0 AmdPPM - ok
16:40:38.0283 0x23f0 amdsata - ok
16:40:38.0287 0x23f0 amdsbs - ok
16:40:38.0291 0x23f0 amdxata - ok
16:40:38.0295 0x23f0 AppHostSvc - ok
16:40:38.0299 0x23f0 AppID - ok
16:40:38.0302 0x23f0 AppIDSvc - ok
16:40:38.0305 0x23f0 Appinfo - ok
16:40:38.0309 0x23f0 applockerfltr - ok
16:40:38.0312 0x23f0 AppMgmt - ok
16:40:38.0316 0x23f0 AppReadiness - ok
16:40:38.0319 0x23f0 AppVClient - ok
16:40:38.0322 0x23f0 AppvStrm - ok
16:40:38.0326 0x23f0 AppvVemgr - ok
16:40:38.0329 0x23f0 AppvVfs - ok
16:40:38.0333 0x23f0 AppXSvc - ok
16:40:38.0337 0x23f0 arcsas - ok
16:40:38.0348 0x23f0 aspnet_state - ok
16:40:38.0501 0x23f0 [ AE3D994671A0497B9EA53E0CB686A471, 56F91FC9FF57D17FAB6B6B92CE25AC4ACFB9EF4EF79B81EECED021A1C29E6BF0 ] aswbIDSAgent Q:\Programme\Avast!\x64\aswidsagenta.exe
16:40:38.0653 0x23f0 aswbIDSAgent - ok
16:40:38.0676 0x23f0 [ 6F75DD4F4FD75123D25A0617EECE6FDE, F58C08B2FB0E096D707AEB24B4DFDD6039D09858D66452243D30ABD2A1DA90B3 ] aswbidsdriver C:\WINDOWS\system32\drivers\aswbidsdrivera.sys
16:40:38.0703 0x23f0 aswbidsdriver - ok
16:40:38.0711 0x23f0 [ 40C2E8C97ECA864335FA3F0078B6B5EF, 4269F0DB1DC2CD49E23F344C6289F9474FE74119F262645B4478EF6DD1D0A577 ] aswbidsh C:\WINDOWS\system32\drivers\aswbidsha.sys
16:40:38.0730 0x23f0 aswbidsh - ok
16:40:38.0740 0x23f0 [ 92CF5055E25B608B54B42A88F805ACD4, 4C33AFE136FDD1EC5E67006720A2BD9B00501135805C1A9E69550505134AF294 ] aswblog C:\WINDOWS\system32\drivers\aswbloga.sys
16:40:38.0763 0x23f0 aswblog - ok
16:40:38.0768 0x23f0 [ B322161C7CFC1F81B77CC87AD5D85BBA, 348198F7FA06C3729B87388A1782E982C8D4ED2AE6E424A0568AA68851585A21 ] aswbuniv C:\WINDOWS\system32\drivers\aswbuniva.sys
16:40:38.0783 0x23f0 aswbuniv - ok
16:40:38.0787 0x23f0 [ 1CB55C233334A3A3DACDD99647753055, BE4A23F38BD5233346DB01FA6E9387B3B3FAC3669AEF3E8DEF89F5464FFCF0D9 ] aswHwid C:\WINDOWS\system32\drivers\aswHwid.sys
16:40:38.0803 0x23f0 aswHwid - ok
16:40:38.0808 0x23f0 [ 18ABFE3C4878E2F410A23383DB850CF6, 9F348C071FCAE2595FBFD0488050393900AEFDDEAD898514AB68C9CDE7409A07 ] aswKbd C:\WINDOWS\system32\drivers\aswKbd.sys
16:40:38.0822 0x23f0 aswKbd - ok
16:40:38.0828 0x23f0 [ 7534937F601E1CF6D63BCFD3768982F0, 8A509E2B2A0A176ACE7C7302C55566171F244F49C011CF42881F79088304059B ] aswMonFlt C:\WINDOWS\system32\drivers\aswMonFlt.sys
16:40:38.0847 0x23f0 aswMonFlt - ok
16:40:38.0860 0x23f0 [ 2D36950E1ABE3905F2DC28BBDABA1187, 6A299FFD9CDD4E86F05703FA9F23D2C090BA77A64CE393611DB125C326BE092F ] aswNetSec C:\WINDOWS\system32\drivers\aswNetSec.sys
16:40:38.0877 0x23f0 aswNetSec - ok
16:40:38.0883 0x23f0 [ 29EF51E9D17276AFAA354AE09A543688, 9BB26119F876AA67C637B7642687555DB5B1D61683BCF30F0BF1C8C53EA17340 ] aswRdr C:\WINDOWS\system32\drivers\aswRdr2.sys
16:40:38.0901 0x23f0 aswRdr - ok
16:40:38.0906 0x23f0 [ EF03E68187720D35092E3D6858064170, C81B7005C50D7CFC0FED24DB42BA435F3C04898C0F7C4A58772D0439F45B5AA4 ] aswRvrt C:\WINDOWS\system32\drivers\aswRvrt.sys
16:40:38.0922 0x23f0 aswRvrt - ok
16:40:38.0946 0x23f0 [ 9A95D9A2726393975C3DD50751085B83, 37187F8BF05F7C6EA33B798F92282109DEF5C1806D5CFAB334DB1F9FD429CE49 ] aswSnx C:\WINDOWS\system32\drivers\aswSnx.sys
16:40:38.0996 0x23f0 aswSnx - ok
16:40:39.0014 0x23f0 [ 11DF322991B0E54278D5EBB7C7E3BCC8, CF133C27E740DD3D1BA84DFDFC668B279832995E8CE21F029CE978CA0575425F ] aswSP C:\WINDOWS\system32\drivers\aswSP.sys
16:40:39.0047 0x23f0 aswSP - ok
16:40:39.0055 0x23f0 [ 69AE094434DCDB5ABE292F4EBD261C9B, CBD3D8216B8C4D4A6A6A5D5BDCC7E77EC3F4BD4428C231E2C406A0205504BE44 ] aswStm C:\WINDOWS\system32\drivers\aswStm.sys
16:40:39.0066 0x23f0 aswStm - ok
16:40:39.0070 0x23f0 [ E4ABC023E251D2BB6B98C9FCAF5CF16D, 2A94320A3EF16E641B693BF6EABABB57C891B914B00F73ACD7ADB8CA5089EC40 ] aswTap C:\WINDOWS\System32\drivers\aswTap.sys
16:40:39.0086 0x23f0 aswTap - ok
16:40:39.0097 0x23f0 [ FF7843417D319B14F96AC4D883D5BEEA, 3283AD20E23F8C15A1C35B0431B32A9EB8B79D8AD6CAF0C5305E26C43DA10B97 ] aswVmm C:\WINDOWS\system32\drivers\aswVmm.sys
16:40:39.0121 0x23f0 aswVmm - ok
16:40:39.0125 0x23f0 AsyncMac - ok
16:40:39.0129 0x23f0 atapi - ok
16:40:39.0133 0x23f0 AudioEndpointBuilder - ok
16:40:39.0136 0x23f0 Audiosrv - ok
16:40:39.0146 0x23f0 [ EE5315059F4F7AF1E0E2082CF914839C, 4B41A3A1E19A3E14E11BD9F8A9FE97465E01E8F9B7DE7580F689BF723C246A42 ] avast! Antivirus Q:\Programme\Avast!\AvastSvc.exe
16:40:39.0159 0x23f0 avast! Antivirus - ok
16:40:39.0170 0x23f0 [ F1AD1E531E90B312BEB5F1E6B5A80A97, 23B59750E3F2B7B15026574DAAFE15030436CA044A9E26CD4DF69B670B2C4F87 ] avast! Firewall Q:\Programme\Avast!\afwServ.exe
16:40:39.0183 0x23f0 avast! Firewall - ok
16:40:39.0202 0x23f0 [ 85D7960265C55C141A36DD4F2EBF3CE3, 09A8D45D1AAC9CE74749C58A0F5FC441D9CDEE1CBA41F47EC8D9D59605C92992 ] AVerAF35 C:\WINDOWS\System32\Drivers\AVerAF35.sys
16:40:39.0249 0x23f0 AVerAF35 - ok
16:40:39.0254 0x23f0 AxInstSV - ok
16:40:39.0258 0x23f0 b06bdrv - ok
16:40:39.0261 0x23f0 BasicDisplay - ok
16:40:39.0265 0x23f0 BasicRender - ok
16:40:39.0269 0x23f0 bcmfn - ok
16:40:39.0273 0x23f0 bcmfn2 - ok
16:40:39.0276 0x23f0 BDESVC - ok
16:40:39.0280 0x23f0 Beep - ok
16:40:39.0283 0x23f0 BFE - ok
16:40:39.0288 0x23f0 BITS - ok
16:40:39.0291 0x23f0 bowser - ok
16:40:39.0294 0x23f0 BrokerInfrastructure - ok
16:40:39.0298 0x23f0 BthAvrcpTg - ok
16:40:39.0301 0x23f0 BthHFEnum - ok
16:40:39.0304 0x23f0 bthhfhid - ok
16:40:39.0308 0x23f0 BthHFSrv - ok
16:40:39.0311 0x23f0 BTHMODEM - ok
16:40:39.0316 0x23f0 bthserv - ok
16:40:39.0321 0x23f0 buttonconverter - ok
16:40:39.0327 0x23f0 [ 60EB6A4CE3E21887D302350631C16F26, 4270EFA22285C1A9336CF1220761E416950D2DA9C6A40D1D8452686CD5040DAB ] CapImg C:\WINDOWS\System32\drivers\capimg.sys
16:40:39.0352 0x23f0 CapImg - ok
16:40:39.0356 0x23f0 cdfs - ok
16:40:39.0359 0x23f0 CDPSvc - ok
16:40:39.0363 0x23f0 CDPUserSvc - ok
16:40:39.0367 0x23f0 cdrom - ok
16:40:39.0370 0x23f0 CertPropSvc - ok
16:40:39.0375 0x23f0 cht4iscsi - ok
16:40:39.0378 0x23f0 cht4vbd - ok
16:40:39.0382 0x23f0 circlass - ok
16:40:39.0385 0x23f0 CLFS - ok
16:40:39.0389 0x23f0 ClipSVC - ok
16:40:39.0392 0x23f0 clreg - ok
16:40:39.0402 0x23f0 CmBatt - ok
16:40:39.0406 0x23f0 [ 84FC81FF9F291A0FC8D10933C1748F66, 46B6C64659A24C1D4917963FECEC2D6AED516C047762F0B4E67651CF8241A7D8 ] CM_VENDER_CMD C:\Program Files\Common Files\Logitech\G430Install\CMVC64.sys
16:40:39.0421 0x23f0 CM_VENDER_CMD - ok
16:40:39.0424 0x23f0 CNG - ok
16:40:39.0428 0x23f0 cnghwassist - ok
16:40:39.0442 0x23f0 CompositeBus - ok
16:40:39.0445 0x23f0 COMSysApp - ok
16:40:39.0449 0x23f0 condrv - ok
16:40:39.0452 0x23f0 CoreMessagingRegistrar - ok
16:40:39.0458 0x23f0 CryptSvc - ok
16:40:39.0461 0x23f0 CSC - ok
16:40:39.0464 0x23f0 CscService - ok
16:40:39.0467 0x23f0 dam - ok
16:40:39.0471 0x23f0 DcomLaunch - ok
16:40:39.0474 0x23f0 DcpSvc - ok
16:40:39.0478 0x23f0 defragsvc - ok
16:40:39.0481 0x23f0 DeviceAssociationService - ok
16:40:39.0484 0x23f0 DeviceInstall - ok
16:40:39.0488 0x23f0 DevQueryBroker - ok
16:40:39.0491 0x23f0 Dfsc - ok
16:40:39.0496 0x23f0 Dhcp - ok
16:40:39.0499 0x23f0 diagnosticshub.standardcollector.service - ok
16:40:39.0503 0x23f0 DiagTrack - ok
16:40:39.0506 0x23f0 disk - ok
16:40:39.0509 0x23f0 DmEnrollmentSvc - ok
16:40:39.0513 0x23f0 dmvsc - ok
16:40:39.0516 0x23f0 dmwappushservice - ok
16:40:39.0519 0x23f0 Dnscache - ok
16:40:39.0524 0x23f0 dot3svc - ok
16:40:39.0527 0x23f0 DPS - ok
16:40:39.0531 0x23f0 drmkaud - ok
16:40:39.0534 0x23f0 DsmSvc - ok
16:40:39.0538 0x23f0 DsSvc - ok
16:40:39.0541 0x23f0 DXGKrnl - ok
16:40:39.0545 0x23f0 EapHost - ok
16:40:39.0548 0x23f0 ebdrv - ok
16:40:39.0552 0x23f0 EFS - ok
16:40:39.0555 0x23f0 EhStorClass - ok
16:40:39.0561 0x23f0 [ 2A9817B5A9260D8F60D52E36BEF10443, AC1A0203221AFAF584C71317FA07AA1B6E61BE619E918B3B1E4AD57CCED1CF03 ] EhStorTcgDrv C:\WINDOWS\system32\drivers\EhStorTcgDrv.sys
16:40:39.0583 0x23f0 EhStorTcgDrv - ok
16:40:39.0587 0x23f0 embeddedmode - ok
16:40:39.0591 0x23f0 EntAppSvc - ok
16:40:39.0594 0x23f0 ErrDev - ok
16:40:39.0600 0x23f0 EventSystem - ok
16:40:39.0603 0x23f0 exfat - ok
16:40:39.0606 0x23f0 fastfat - ok
16:40:39.0609 0x23f0 Fax - ok
16:40:39.0612 0x23f0 fdc - ok
16:40:39.0616 0x23f0 fdPHost - ok
16:40:39.0619 0x23f0 FDResPub - ok
16:40:39.0622 0x23f0 fhsvc - ok
16:40:39.0625 0x23f0 FileCrypt - ok
16:40:39.0629 0x23f0 FileInfo - ok
16:40:39.0632 0x23f0 Filetrace - ok
16:40:39.0635 0x23f0 flpydisk - ok
16:40:39.0638 0x23f0 FltMgr - ok
16:40:39.0642 0x23f0 FontCache - ok
16:40:39.0645 0x23f0 FontCache3.0.0.0 - ok
16:40:39.0649 0x23f0 FrameServer - ok
16:40:39.0652 0x23f0 FsDepends - ok
16:40:39.0656 0x23f0 Fs_Rec - ok
16:40:39.0663 0x23f0 [ 895BA1CFF25E867CE5A52073E905C93B, A417065E831B768BD76364EC1E5FEDAADF172DCD1E6C2A134CB311EDDC2DC477 ] fussvc C:\Program Files (x86)\Windows Kits\8.0\App Certification Kit\fussvc.exe
16:40:39.0672 0x23f0 fussvc - detected UnsignedFile.Multi.Generic ( 1 )
16:40:39.0673 0x23f0 Detect skipped due to KSN trusted
16:40:39.0673 0x23f0 fussvc - ok
16:40:39.0676 0x23f0 fvevol - ok
16:40:39.0680 0x23f0 gencounter - ok
16:40:39.0683 0x23f0 genericusbfn - ok
16:40:39.0686 0x23f0 GPIOClx0101 - ok
16:40:39.0691 0x23f0 gpsvc - ok
16:40:39.0693 0x23f0 GpuEnergyDrv - ok
16:40:39.0699 0x23f0 [ BDDBCFF870442B3C24C158CD53079132, 62314C296ACF1EF9EB38FB70B66B57D1BB9917C8536B39892272D172BC58A5C3 ] hcmon C:\WINDOWS\system32\drivers\hcmon.sys
16:40:39.0715 0x23f0 hcmon - ok
16:40:39.0718 0x23f0 HdAudAddService - ok
16:40:39.0722 0x23f0 HDAudBus - ok
16:40:39.0725 0x23f0 HidBatt - ok
16:40:39.0728 0x23f0 HidBth - ok
16:40:39.0732 0x23f0 hidi2c - ok
16:40:39.0735 0x23f0 hidinterrupt - ok
16:40:39.0738 0x23f0 HidIr - ok
16:40:39.0741 0x23f0 hidserv - ok
16:40:39.0744 0x23f0 HidUsb - ok
16:40:39.0747 0x23f0 HomeGroupListener - ok
16:40:39.0750 0x23f0 HomeGroupProvider - ok
16:40:39.0753 0x23f0 HpSAMD - ok
16:40:39.0757 0x23f0 HTTP - ok
16:40:39.0760 0x23f0 HvHost - ok
16:40:39.0764 0x23f0 hvservice - ok
16:40:39.0767 0x23f0 hwpolicy - ok
16:40:39.0771 0x23f0 hyperkbd - ok
16:40:39.0774 0x23f0 i8042prt - ok
16:40:39.0777 0x23f0 iagpio - ok
16:40:39.0781 0x23f0 iai2c - ok
16:40:39.0784 0x23f0 iaLPSS2i_GPIO2 - ok
16:40:39.0788 0x23f0 iaLPSS2i_I2C - ok
16:40:39.0791 0x23f0 iaLPSSi_GPIO - ok
16:40:39.0795 0x23f0 iaLPSSi_I2C - ok
16:40:39.0798 0x23f0 iaStorAV - ok
16:40:39.0802 0x23f0 iaStorV - ok
16:40:39.0805 0x23f0 ibbus - ok
16:40:39.0809 0x23f0 icssvc - ok
16:40:39.0812 0x23f0 IKEEXT - ok
16:40:39.0816 0x23f0 IndirectKmd - ok
16:40:39.0823 0x23f0 intelide - ok
16:40:39.0826 0x23f0 intelpep - ok
16:40:39.0830 0x23f0 intelppm - ok
16:40:39.0833 0x23f0 iorate - ok
16:40:39.0837 0x23f0 IpFilterDriver - ok
16:40:39.0841 0x23f0 iphlpsvc - ok
16:40:39.0844 0x23f0 IPMIDRV - ok
16:40:39.0847 0x23f0 IPNAT - ok
16:40:39.0850 0x23f0 irda - ok
16:40:39.0853 0x23f0 IRENUM - ok
16:40:39.0857 0x23f0 irmon - ok
16:40:39.0860 0x23f0 isapnp - ok
16:40:39.0864 0x23f0 iScsiPrt - ok
16:40:39.0868 0x23f0 kbdclass - ok
16:40:39.0871 0x23f0 kbdhid - ok
16:40:39.0874 0x23f0 kdnic - ok
16:40:39.0878 0x23f0 KeyIso - ok
16:40:39.0881 0x23f0 KSecDD - ok
16:40:39.0885 0x23f0 KSecPkg - ok
16:40:39.0888 0x23f0 ksthunk - ok
16:40:39.0892 0x23f0 KtmRm - ok
16:40:39.0896 0x23f0 [ 35649357A0578F7E208ECCB87884C756, FEEEF17E6B1E697EEC169B0CBAFF68DA45DFADC039DD52F93C83BEB46ADA4322 ] ladfGSS C:\WINDOWS\system32\drivers\ladfGSS.sys
16:40:39.0912 0x23f0 ladfGSS - ok
16:40:39.0924 0x23f0 [ 305BB2AC00D46542E0A653AB63F4ABB1, E3BE57A0EBB1194656D20C11688863A7864B06223419F688D82881F9F49604B6 ] LADF_CaptureOnly C:\WINDOWS\system32\DRIVERS\ladfGSCamd64.sys
16:40:39.0940 0x23f0 LADF_CaptureOnly - ok
16:40:39.0946 0x23f0 [ 28CDDC7D478A6313F55077416DCBD0DE, EE4174FC9444856DF0693D1A5F16EB88352A3B012AA82D49C462980703981A7A ] LADF_RenderOnly C:\WINDOWS\system32\DRIVERS\ladfGSRamd64.sys
16:40:39.0963 0x23f0 LADF_RenderOnly - ok
16:40:39.0966 0x23f0 LanmanServer - ok
16:40:39.0970 0x23f0 LanmanWorkstation - ok
16:40:39.0974 0x23f0 lfsvc - ok
16:40:39.0979 0x23f0 [ 5E7641AECAC4CFC7B4B442B461A25C83, 1F6AF4ED863C17A1A326A4CB0D289EAABFAD748A6B0A7CE40CF842694572FDB7 ] LGBusEnum C:\WINDOWS\system32\drivers\LGBusEnum.sys
16:40:39.0995 0x23f0 LGBusEnum - ok
16:40:39.0999 0x23f0 [ 2D7F1C02B94D6F0F3E10107E5EA8E141, 93B266F38C3C3EAAB475D81597ABBD7CC07943035068BB6FD670DBBE15DE0131 ] LGCoreTemp C:\Program Files\Logitech Gaming Software\Drivers\LgCoreTemp\lgcoretemp.sys
16:40:40.0013 0x23f0 LGCoreTemp - ok
16:40:40.0018 0x23f0 [ 822A0DFDF63EEF9786C3946EAA98FDF7, 940F1DE2610BBBC728BBDB2AAABBD232AB4B3F53530A0D54EB50416D89C133DC ] LGJoyHidFilter C:\WINDOWS\system32\drivers\LGJoyHidFilter.sys
16:40:40.0036 0x23f0 LGJoyHidFilter - ok
16:40:40.0041 0x23f0 [ 7D24DEBE7BC0C01A30A9A65806B61453, 342E758AD6F88E3FA83B69F26836A9F54D1A3BE344D1D2F9C6394E085E5FCA92 ] LGJoyXlCore C:\WINDOWS\system32\drivers\LGJoyXlCore.sys
16:40:40.0058 0x23f0 LGJoyXlCore - ok
16:40:40.0062 0x23f0 [ 07B1C1927BAE6431D3DFB1816DF05BBA, 9B296F6E801D14CE89F5E3EA9B3962EE99E1D3E22077D075F5B0EE4FE3CAB65E ] lgLowAudio C:\WINDOWS\system32\drivers\lgLowAudio.sys
16:40:40.0077 0x23f0 lgLowAudio - ok
16:40:40.0081 0x23f0 [ DBEAB45BA2B47C057F3BAE5AD0654173, 9660B803F4AD4BD3427F1A24D09B2712E4DC0E25A18942984AF01750D77C118C ] LGVirHid C:\WINDOWS\system32\drivers\LGVirHid.sys
16:40:40.0097 0x23f0 LGVirHid - ok
16:40:40.0101 0x23f0 LicenseManager - ok
16:40:40.0104 0x23f0 lltdio - ok
16:40:40.0108 0x23f0 lltdsvc - ok
16:40:40.0111 0x23f0 lmhosts - ok
16:40:40.0117 0x23f0 [ B78534B305C93D18CAED123E1F9346E5, 19FE198E0D7C81AAF1A00700AB85F19E37E4198EDB8A59C55D1766E03D9E060F ] LogiRegistryService C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe
16:40:40.0127 0x23f0 LogiRegistryService - ok
16:40:40.0133 0x23f0 LSI_SAS - ok
16:40:40.0136 0x23f0 LSI_SAS2i - ok
16:40:40.0140 0x23f0 LSI_SAS3i - ok
16:40:40.0143 0x23f0 LSI_SSS - ok
16:40:40.0147 0x23f0 LSM - ok
16:40:40.0150 0x23f0 luafv - ok
16:40:40.0154 0x23f0 MapsBroker - ok
16:40:40.0157 0x23f0 megasas - ok
16:40:40.0162 0x23f0 [ 2CF0CB2A0ED68C5455371E84C16F9627, 1C9166B52140145F1968E83E52BFF041250811B23C770FE181A18A4BA060CA81 ] megasas2i C:\WINDOWS\system32\drivers\MegaSas2i.sys
16:40:40.0181 0x23f0 megasas2i - ok
16:40:40.0185 0x23f0 megasr - ok
16:40:40.0189 0x23f0 MessagingService - ok
16:40:40.0194 0x23f0 mlx4_bus - ok
16:40:40.0197 0x23f0 MMCSS - ok
16:40:40.0200 0x23f0 Modem - ok
16:40:40.0203 0x23f0 monitor - ok
16:40:40.0207 0x23f0 mouclass - ok
16:40:40.0210 0x23f0 mouhid - ok
16:40:40.0213 0x23f0 mountmgr - ok
16:40:40.0216 0x23f0 mpsdrv - ok
16:40:40.0220 0x23f0 MpsSvc - ok
16:40:40.0223 0x23f0 MRxDAV - ok
16:40:40.0226 0x23f0 mrxsmb - ok
16:40:40.0230 0x23f0 mrxsmb20 - ok
16:40:40.0233 0x23f0 MsBridge - ok
16:40:40.0236 0x23f0 MSDTC - ok
16:40:40.0242 0x23f0 Msfs - ok
16:40:40.0246 0x23f0 msgpiowin32 - ok
16:40:40.0249 0x23f0 mshidkmdf - ok
16:40:40.0252 0x23f0 mshidumdf - ok
16:40:40.0256 0x23f0 msisadrv - ok
16:40:40.0259 0x23f0 MSiSCSI - ok
16:40:40.0262 0x23f0 msiserver - ok
16:40:40.0266 0x23f0 MSKSSRV - ok
16:40:40.0269 0x23f0 MsLldp - ok
16:40:40.0272 0x23f0 MSPCLOCK - ok
16:40:40.0275 0x23f0 MSPQM - ok
16:40:40.0278 0x23f0 MsRPC - ok
16:40:40.0283 0x23f0 MsSecFlt - ok
16:40:40.0288 0x23f0 mssmbios - ok
16:40:40.0291 0x23f0 MSTEE - ok
16:40:40.0294 0x23f0 MTConfig - ok
16:40:40.0298 0x23f0 [ 640617B6E682A150C36BE39D78547F6C, 784F712E9DC3EEE81F07946BBA08AA2BEAC7B3961E430B75043645EF7ECA715C ] MTsensor C:\WINDOWS\system32\DRIVERS\ASACPI.sys
16:40:40.0312 0x23f0 MTsensor - ok
16:40:40.0316 0x23f0 Mup - ok
16:40:40.0320 0x23f0 mvumis - ok
16:40:40.0325 0x23f0 NativeWifiP - ok
16:40:40.0328 0x23f0 NcaSvc - ok
16:40:40.0331 0x23f0 NcbService - ok
16:40:40.0335 0x23f0 NcdAutoSetup - ok
16:40:40.0338 0x23f0 ndfltr - ok
16:40:40.0342 0x23f0 NDIS - ok
16:40:40.0345 0x23f0 NdisCap - ok
16:40:40.0349 0x23f0 NdisImPlatform - ok
16:40:40.0352 0x23f0 NdisTapi - ok
16:40:40.0356 0x23f0 Ndisuio - ok
16:40:40.0359 0x23f0 NdisVirtualBus - ok
16:40:40.0362 0x23f0 NdisWan - ok
16:40:40.0366 0x23f0 ndiswanlegacy - ok
16:40:40.0369 0x23f0 ndproxy - ok
16:40:40.0373 0x23f0 Ndu - ok
16:40:40.0376 0x23f0 NetAdapterCx - ok
16:40:40.0379 0x23f0 NetBIOS - ok
16:40:40.0384 0x23f0 NetBT - ok
16:40:40.0388 0x23f0 Netlogon - ok
16:40:40.0392 0x23f0 Netman - ok
16:40:40.0395 0x23f0 netprofm - ok
16:40:40.0399 0x23f0 NetSetupSvc - ok
16:40:40.0405 0x23f0 NetTcpPortSharing - ok
16:40:40.0410 0x23f0 NgcCtnrSvc - ok
16:40:40.0413 0x23f0 NgcSvc - ok
16:40:40.0417 0x23f0 NlaSvc - ok
16:40:40.0420 0x23f0 Npfs - ok
16:40:40.0424 0x23f0 npsvctrig - ok
16:40:40.0427 0x23f0 nsi - ok
16:40:40.0430 0x23f0 nsiproxy - ok
16:40:40.0435 0x23f0 NTFS - ok
16:40:40.0439 0x23f0 Null - ok
16:40:40.0448 0x23f0 [ 207A78939B7BBA0EFE8BFA947A35E71C, BB7DDFED575F81CAB958DDC7CFF2D798EB14DAE633F49FA2229D98BDC489C0EE ] NVHDA C:\WINDOWS\system32\drivers\nvhda64v.sys
16:40:40.0461 0x23f0 NVHDA - ok
16:40:40.0762 0x23f0 [ 9337A5F17702A0FFE1E6C6978619B872, 8D4505BA62977BFE8C01F1ABD027AFBAEAA0D3EA6336865E46C28818471B196E ] nvlddmkm C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_0cc477a6fec64d8c\nvlddmkm.sys
16:40:41.0054 0x23f0 nvlddmkm - ok
16:40:41.0084 0x23f0 nvraid - ok
16:40:41.0088 0x23f0 nvstor - ok
16:40:41.0092 0x23f0 OneSyncSvc - ok
16:40:41.0097 0x23f0 p2pimsvc - ok
16:40:41.0101 0x23f0 p2psvc - ok
16:40:41.0106 0x23f0 Parport - ok
16:40:41.0109 0x23f0 partmgr - ok
16:40:41.0113 0x23f0 PcaSvc - ok
16:40:41.0123 0x23f0 [ 29AF16726F4DD84376ECA85AB6AFF2C6, BEF9EA10637065365ED343C4EBA51191B9BEADD8F1F3362D3EFE75F40BE9A027 ] pci C:\WINDOWS\system32\drivers\pci.sys
16:40:41.0155 0x23f0 pci - ok
16:40:41.0160 0x23f0 pciide - ok
16:40:41.0163 0x23f0 pcmcia - ok
16:40:41.0168 0x23f0 pcw - ok
16:40:41.0171 0x23f0 pdc - ok
16:40:41.0175 0x23f0 PEAUTH - ok
16:40:41.0179 0x23f0 PeerDistSvc - ok
16:40:41.0183 0x23f0 percsas2i - ok
16:40:41.0187 0x23f0 percsas3i - ok
16:40:41.0209 0x23f0 PerfHost - ok
16:40:41.0218 0x23f0 PhoneSvc - ok
16:40:41.0222 0x23f0 PimIndexMaintenanceSvc - ok
16:40:41.0228 0x23f0 pla - ok
16:40:41.0231 0x23f0 PlugPlay - ok
16:40:41.0235 0x23f0 PnkBstrA - ok
16:40:41.0238 0x23f0 PNRPAutoReg - ok
16:40:41.0242 0x23f0 PNRPsvc - ok
16:40:41.0245 0x23f0 PolicyAgent - ok
16:40:41.0251 0x23f0 Power - ok
16:40:41.0254 0x23f0 PptpMiniport - ok
16:40:41.0327 0x23f0 [ 7196D3C2E2E3129814C8DAB91F9A7D1E, 6763E4BF8E846B597E78778E520F5BADC95608BAA4EA0AC84971384B5D976DD7 ] PrintNotify C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll
16:40:41.0438 0x23f0 PrintNotify - ok
16:40:41.0450 0x23f0 Processor - ok
16:40:41.0454 0x23f0 ProfSvc - ok
16:40:41.0458 0x23f0 Psched - ok
16:40:41.0461 0x23f0 QWAVE - ok
16:40:41.0465 0x23f0 QWAVEdrv - ok
16:40:41.0469 0x23f0 RasAcd - ok
16:40:41.0472 0x23f0 RasAgileVpn - ok
16:40:41.0476 0x23f0 RasAuto - ok
16:40:41.0479 0x23f0 Rasl2tp - ok
16:40:41.0483 0x23f0 RasMan - ok
16:40:41.0487 0x23f0 RasPppoe - ok
16:40:41.0491 0x23f0 RasSstp - ok
16:40:41.0499 0x23f0 [ 5753CD9159718444F6D9E1634B984BF5, A4D6FB6583724F3DDDBA768D7786EB7E3AB1C8074F66DA9462BBB159CDFA2868 ] Razer Game Scanner Service C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
16:40:41.0510 0x23f0 Razer Game Scanner Service - ok
16:40:41.0515 0x23f0 rdbss - ok
16:40:41.0520 0x23f0 rdpbus - ok
16:40:41.0524 0x23f0 RDPDR - ok
16:40:41.0532 0x23f0 RdpVideoMiniport - ok
16:40:41.0536 0x23f0 rdyboost - ok
16:40:41.0539 0x23f0 ReFSv1 - ok
16:40:41.0545 0x23f0 RemoteAccess - ok
16:40:41.0549 0x23f0 RemoteRegistry - ok
16:40:41.0552 0x23f0 RetailDemo - ok
16:40:41.0556 0x23f0 RmSvc - ok
16:40:41.0560 0x23f0 RpcEptMapper - ok
16:40:41.0564 0x23f0 RpcLocator - ok
16:40:41.0568 0x23f0 RpcSs - ok
16:40:41.0572 0x23f0 rspndr - ok
16:40:41.0593 0x23f0 [ 12A3D1530E3F67B8664EBA923A3981E4, 8670C39EB0A7C37C17D014A8917493B776DE0829B55EFED13D91B6FA7B81CA11 ] rt640x64 C:\WINDOWS\System32\drivers\rt640x64.sys
16:40:41.0636 0x23f0 rt640x64 - ok
16:40:41.0642 0x23f0 [ 30A186D6A2A2853EEFAD7011E212E41B, 367B8FCCF29470C9237FC1F0EAEB59AE51E33778BC9914A2730AC7DDBC84942B ] rzpmgrk C:\WINDOWS\system32\drivers\rzpmgrk.sys
16:40:41.0651 0x23f0 rzpmgrk - ok
16:40:41.0658 0x23f0 [ F8A13D4413A93DD005FAD116CBD6B6F7, 8ED0C00920CE76E832701D45117ED00B12E20588CB6FE8039FBCCDFEF9841047 ] rzpnk C:\Windows\system32\drivers\rzpnk.sys
16:40:41.0675 0x23f0 rzpnk - ok
16:40:41.0684 0x23f0 [ 421497E425AFB40502013F362E4FA230, 20E2372BEE4BFB21138CA574C9806EC399DDA9D3439F3C391E34ABB2E518106D ] rzudd C:\WINDOWS\System32\drivers\rzudd.sys
16:40:41.0696 0x23f0 rzudd - ok
16:40:41.0700 0x23f0 s3cap - ok
16:40:41.0704 0x23f0 SamSs - ok
16:40:41.0708 0x23f0 sbp2port - ok
16:40:41.0712 0x23f0 SCardSvr - ok
16:40:41.0716 0x23f0 ScDeviceEnum - ok
16:40:41.0720 0x23f0 scfilter - ok
16:40:41.0724 0x23f0 Schedule - ok
16:40:41.0727 0x23f0 scmbus - ok
16:40:41.0731 0x23f0 scmdisk0101 - ok
16:40:41.0735 0x23f0 SCPolicySvc - ok
16:40:41.0745 0x23f0 [ 7C3D10BEC8B0DBA00A78C78EB10B3AE2, A671C9CB97977613576D70607E106C7A29B9EA9E875C7C5AF293EE5903D7AD0A ] sdbus C:\WINDOWS\System32\drivers\sdbus.sys
16:40:41.0773 0x23f0 sdbus - ok
16:40:41.0778 0x23f0 SDRSVC - ok
16:40:41.0781 0x23f0 sdstor - ok
16:40:41.0785 0x23f0 seclogon - ok
16:40:41.0789 0x23f0 SENS - ok
16:40:41.0792 0x23f0 Sense - ok
16:40:41.0797 0x23f0 SensorDataService - ok
16:40:41.0802 0x23f0 SensorService - ok
16:40:41.0805 0x23f0 SensorsSimulatorDriver - ok
16:40:41.0809 0x23f0 SensrSvc - ok
16:40:41.0813 0x23f0 SerCx - ok
16:40:41.0816 0x23f0 SerCx2 - ok
16:40:41.0820 0x23f0 Serenum - ok
16:40:41.0824 0x23f0 Serial - ok
16:40:41.0828 0x23f0 sermouse - ok
16:40:41.0837 0x23f0 SessionEnv - ok
16:40:41.0841 0x23f0 sfloppy - ok
16:40:41.0845 0x23f0 SharedAccess - ok
16:40:41.0849 0x23f0 ShellHWDetection - ok
16:40:41.0854 0x23f0 shpamsvc - ok
16:40:41.0858 0x23f0 SiSRaid2 - ok
16:40:41.0862 0x23f0 SiSRaid4 - ok
16:40:41.0866 0x23f0 smphost - ok
16:40:41.0870 0x23f0 SmsRouter - ok
16:40:41.0878 0x23f0 SNMPTRAP - ok
16:40:41.0893 0x23f0 [ C994DF90427103CCB80F893FFD2B1CE8, 7E4B08095C77E68D337A3425EEA38F8FEC4D103CA7661E34FD96BF518DFB4BCB ] spaceport C:\WINDOWS\system32\drivers\spaceport.sys
16:40:41.0932 0x23f0 spaceport - ok
16:40:41.0939 0x23f0 SpbCx - ok
16:40:41.0943 0x23f0 Spooler - ok
16:40:41.0948 0x23f0 sppsvc - ok
16:40:41.0954 0x23f0 [ EAD5300C93946B0250A309E2BF2BE4CF, 6B9131D94ED31F838B1820EE67F068C4741B69D5C655587C89C9477986BD270F ] SQLWriter C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
16:40:41.0967 0x23f0 SQLWriter - ok
16:40:41.0972 0x23f0 srv2 - ok
16:40:41.0976 0x23f0 srvnet - ok
16:40:41.0980 0x23f0 SSDPSRV - ok
16:40:41.0984 0x23f0 SstpSvc - ok
16:40:41.0989 0x23f0 StateRepository - ok
16:40:42.0021 0x23f0 [ 596DC69BB40A96FCA4B19D9D1E221E34, 3469D3B2E9A88E39C14AE2E3DD5EC3D91FBB88CA568D794555B397B50E64AB15 ] Steam Client Service C:\Program Files (x86)\Common Files\Steam\SteamService.exe
16:40:42.0057 0x23f0 Steam Client Service - ok
16:40:42.0064 0x23f0 stexstor - ok
16:40:42.0068 0x23f0 stisvc - ok
16:40:42.0072 0x23f0 storahci - ok
16:40:42.0077 0x23f0 storflt - ok
16:40:42.0082 0x23f0 [ B66D8C75C9BC59D637177AB3B1C569A6, 76252A631F03EEBF5FDC7693F6B0A5E73838CDBE3157114CC96B8BBE88B476BF ] stornvme C:\WINDOWS\system32\drivers\stornvme.sys
16:40:42.0103 0x23f0 stornvme - ok
16:40:42.0108 0x23f0 storqosflt - ok
16:40:42.0112 0x23f0 StorSvc - ok
16:40:42.0116 0x23f0 storufs - ok
16:40:42.0120 0x23f0 storvsc - ok
16:40:42.0124 0x23f0 svsvc - ok
16:40:42.0128 0x23f0 swenum - ok
16:40:42.0132 0x23f0 swprv - ok
16:40:42.0136 0x23f0 Synth3dVsc - ok
16:40:42.0141 0x23f0 SysMain - ok
16:40:42.0146 0x23f0 SystemEventsBroker - ok
16:40:42.0150 0x23f0 TabletInputService - ok
16:40:42.0154 0x23f0 TapiSrv - ok
16:40:42.0158 0x23f0 Tcpip - ok
16:40:42.0164 0x23f0 Tcpip6 - ok
16:40:42.0170 0x23f0 tcpipreg - ok
16:40:42.0176 0x23f0 tdx - ok
16:40:42.0182 0x23f0 [ BB676D2C7AD5E7131D12417E4691F9B9, C6DE7D8C08C2F059C696E9D63FC55692C8CB37FECF92F5A863D7D2C5AF3B425F ] Te.Service C:\Program Files (x86)\Windows Kits\8.0\Testing\Runtimes\TAEF\Wex.Services.exe
16:40:42.0191 0x23f0 Te.Service - detected UnsignedFile.Multi.Generic ( 1 )
16:40:42.0191 0x23f0 Detect skipped due to KSN trusted
16:40:42.0191 0x23f0 Te.Service - ok
16:40:42.0196 0x23f0 terminpt - ok
16:40:42.0200 0x23f0 TermService - ok
16:40:42.0204 0x23f0 Themes - ok
16:40:42.0208 0x23f0 TieringEngineService - ok
16:40:42.0212 0x23f0 tiledatamodelsvc - ok
16:40:42.0216 0x23f0 TimeBrokerSvc - ok
16:40:42.0224 0x23f0 [ 46171262D0E806779DEEDFCAB2F830CC, 7F4A4658B8BA217D99E5B5C0E01600C20DC96ECBCA32A5BA7FBE17D2A7B8BFD8 ] TPM C:\WINDOWS\System32\drivers\tpm.sys
16:40:42.0250 0x23f0 TPM - ok
16:40:42.0255 0x23f0 TrkWks - ok
16:40:42.0258 0x23f0 TrustedInstaller - ok
16:40:42.0264 0x23f0 tsusbflt - ok
16:40:42.0269 0x23f0 TsUsbGD - ok
16:40:42.0273 0x23f0 tsusbhub - ok
16:40:42.0277 0x23f0 tunnel - ok
16:40:42.0281 0x23f0 tzautoupdate - ok
16:40:42.0285 0x23f0 UASPStor - ok
16:40:42.0289 0x23f0 UcmCx0101 - ok
16:40:42.0293 0x23f0 UcmTcpciCx0101 - ok
16:40:42.0297 0x23f0 UcmUcsi - ok
16:40:42.0301 0x23f0 Ucx01000 - ok
16:40:42.0305 0x23f0 UdeCx - ok
16:40:42.0309 0x23f0 udfs - ok
16:40:42.0313 0x23f0 UEFI - ok
16:40:42.0317 0x23f0 UevAgentDriver - ok
16:40:42.0321 0x23f0 UevAgentService - ok
16:40:42.0325 0x23f0 Ufx01000 - ok
16:40:42.0329 0x23f0 UfxChipidea - ok
16:40:42.0333 0x23f0 ufxsynopsys - ok
16:40:42.0341 0x23f0 UI0Detect - ok
16:40:42.0345 0x23f0 umbus - ok
16:40:42.0350 0x23f0 UmPass - ok
16:40:42.0354 0x23f0 UmRdpService - ok
16:40:42.0358 0x23f0 UnistoreSvc - ok
16:40:42.0364 0x23f0 upnphost - ok
16:40:42.0368 0x23f0 UrsChipidea - ok
16:40:42.0372 0x23f0 UrsCx01000 - ok
16:40:42.0376 0x23f0 UrsSynopsys - ok
16:40:42.0380 0x23f0 usbaudio - ok
16:40:42.0384 0x23f0 usbccgp - ok
16:40:42.0389 0x23f0 usbcir - ok
16:40:42.0393 0x23f0 usbehci - ok
16:40:42.0398 0x23f0 usbhub - ok
16:40:42.0402 0x23f0 USBHUB3 - ok
16:40:42.0406 0x23f0 usbohci - ok
16:40:42.0410 0x23f0 usbprint - ok
16:40:42.0414 0x23f0 usbser - ok
16:40:42.0419 0x23f0 USBSTOR - ok
16:40:42.0423 0x23f0 usbuhci - ok
16:40:42.0427 0x23f0 USBXHCI - ok
16:40:42.0431 0x23f0 usb_rndisx - ok
16:40:42.0435 0x23f0 UserDataSvc - ok
16:40:42.0443 0x23f0 UserManager - ok
16:40:42.0447 0x23f0 UsoSvc - ok
16:40:42.0451 0x23f0 VaultSvc - ok
16:40:42.0455 0x23f0 vdrvroot - ok
16:40:42.0459 0x23f0 vds - ok
16:40:42.0464 0x23f0 VerifierExt - ok
16:40:42.0482 0x23f0 [ 3BB8D153A9A514EC9FFCB586251A1925, 5E4B46511F9791699826DC63B35528544347166BDE9981FB93F1F7F2A09599C7 ] vhdmp C:\WINDOWS\System32\drivers\vhdmp.sys
16:40:42.0526 0x23f0 vhdmp - ok
16:40:42.0532 0x23f0 vhf - ok
16:40:42.0549 0x23f0 [ 20D3701C516BB42F81A22EB727B9E419, 08A8D12626A322790C6679554D49AE388E33316121226DE9FCA9C22C8F509C56 ] VIAHdAudAddService C:\WINDOWS\system32\drivers\viahduaa.sys
16:40:42.0587 0x23f0 VIAHdAudAddService - ok
16:40:42.0593 0x23f0 [ 097A1A16F9F38715CEAA092DE626F517, 5D51D74C3264ADEA1A50F6620150B284E54C5294A548D1BC940B3B5FF5343998 ] VIAKaraokeService C:\WINDOWS\system32\viakaraokesrv.exe
16:40:42.0617 0x23f0 VIAKaraokeService - ok
16:40:42.0627 0x23f0 [ 2562943B90AFA9829097FB4274276D1D, EE003EF7A3EC49CFEF2EED841482721D7A89368967BFC44CE8DD9D3BDAF0572F ] VMAuthdService Q:\Programme\VM Ware Player\vmware-authd.exe
16:40:42.0636 0x23f0 VMAuthdService - ok
16:40:42.0640 0x23f0 vmbus - ok
16:40:42.0645 0x23f0 VMBusHID - ok
16:40:42.0650 0x23f0 [ BE8E5E5D53ACF71D4E8E686B68C99B04, 4F30A360095FCB2627068FA6A65A951688058E8FDDF5CE895E2AE39500A413B1 ] vmci C:\WINDOWS\system32\drivers\vmci.sys
16:40:42.0660 0x23f0 vmci - ok
16:40:42.0664 0x23f0 vmgid - ok
16:40:42.0668 0x23f0 vmicguestinterface - ok
16:40:42.0672 0x23f0 vmicheartbeat - ok
16:40:42.0676 0x23f0 vmickvpexchange - ok
16:40:42.0680 0x23f0 vmicrdv - ok
16:40:42.0684 0x23f0 vmicshutdown - ok
16:40:42.0688 0x23f0 vmictimesync - ok
16:40:42.0692 0x23f0 vmicvmsession - ok
16:40:42.0696 0x23f0 vmicvss - ok
16:40:42.0702 0x23f0 [ 4F19996D0765835797EC7B5F35D12240, FD4D222A373C3DF2B9FC7877C0EC050BF71A6C700FB52984E44FD25E49755A11 ] vmkbd C:\WINDOWS\system32\drivers\VMkbd.sys
16:40:42.0717 0x23f0 vmkbd - ok
16:40:42.0722 0x23f0 [ 18AA5F4A3B1204AD00045EE5AD39BCDB, 0211A8E94F169A2A52CD39CD580293907EBE104E52038DC36B988DE1CA7F2392 ] VMnetAdapter C:\WINDOWS\system32\DRIVERS\vmnetadapter.sys
16:40:42.0736 0x23f0 VMnetAdapter - ok
16:40:42.0742 0x23f0 [ 04CD4347CD9E8C40F78AD51F7FF426D0, BCA3E593E118BCA30142B23CD1CBE6905442D31C3DEB4C71B06D721E601F7BD8 ] VMnetBridge C:\WINDOWS\system32\DRIVERS\vmnetbridge.sys
16:40:42.0757 0x23f0 VMnetBridge - ok
16:40:42.0785 0x23f0 [ 05A869D1B12B08B5601487CA534B5021, 07A4BE681C0C0B23CBD5C05715DAA887D4DDE6D99251BC5D748F321940C23315 ] VMnetDHCP C:\WINDOWS\SYSWOW64\VMNETDHCP.EXE
16:40:42.0811 0x23f0 VMnetDHCP - ok
16:40:42.0817 0x23f0 [ F550680013FEA869820CB8320FAA2352, AA98DB7E71737DD8574ADB2DD9531C1DD46BABE99F89ED87D681D6C21BFA0D1C ] VMnetuserif C:\WINDOWS\system32\drivers\vmnetuserif.sys
16:40:42.0832 0x23f0 VMnetuserif - ok
16:40:42.0837 0x23f0 [ 396BB5901811148B2999134161FC86B3, 359112FAA69115BDFC212C3BA98DD3E9E73E29F0DC4DE13DBFCAAF4130F4680E ] VMparport C:\WINDOWS\system32\drivers\VMparport.sys
16:40:42.0852 0x23f0 VMparport - ok
16:40:42.0875 0x23f0 [ 41FAE6618768DC93D98DDAF3F8282D3E, 95995542026CC111B8FFAA01AC9E55B2F942A9108F5F00502A35339C13BBF20D ] VMUSBArbService C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe
16:40:42.0900 0x23f0 VMUSBArbService - ok
16:40:42.0918 0x23f0 [ F13B73E932CACDDE5ED825BDF7AA9637, 4B6C8D82324314294AE439ACDE933E6C8E77635ADE933BC52A0CD9A68927702D ] VMware NAT Service C:\WINDOWS\SYSWOW64\VMNAT.EXE
16:40:42.0940 0x23f0 VMware NAT Service - ok
16:40:42.0946 0x23f0 [ 227E4EA654B4D52C2AAA8B1DCD5C45DE, 7D9A675A6481D288846D7F22AE15EC62DF31C9385C83D875586EE371CC9C3410 ] vmx86 C:\WINDOWS\system32\drivers\vmx86.sys
16:40:42.0956 0x23f0 vmx86 - ok
16:40:42.0961 0x23f0 volmgr - ok
16:40:42.0965 0x23f0 volmgrx - ok
16:40:42.0969 0x23f0 volsnap - ok
16:40:42.0973 0x23f0 volume - ok
16:40:42.0978 0x23f0 [ 92F6E3E6D3F1795263EB34B37F74AEF7, 33AB1ECCA1216AF1995E1DB4F11E48156FF62391D7C176C8A4CC1037B9CB3A27 ] vpci C:\WINDOWS\System32\drivers\vpci.sys
16:40:42.0999 0x23f0 vpci - ok
16:40:43.0004 0x23f0 vsmraid - ok
16:40:43.0010 0x23f0 [ CB4D2E3C5E8BFA3CF6AFFF6DDC6CC70D, 32A891045AF36FEAC62373894B98ABDCEA437978BDE027169C22EBC2C72D586E ] vsock C:\WINDOWS\system32\drivers\vsock.sys
16:40:43.0026 0x23f0 vsock - ok
16:40:43.0042 0x23f0 [ F972436B5ED08069A1E7D623B77C226A, FA01505B5EC392ADE55019C22588D2F3608CBF9A6B03A44203F3587D372F8342 ] VSPerfDrv110 Q:\Programme\Microsoft Visual Studio Premium 2012\Team Tools\Performance Tools\x64\VSPerfDrv110.sys
16:40:43.0059 0x23f0 VSPerfDrv110 - ok
16:40:43.0064 0x23f0 VSS - ok
16:40:43.0067 0x23f0 VSTXRAID - ok
16:40:43.0072 0x23f0 vwifibus - ok
16:40:43.0076 0x23f0 vwififlt - ok
16:40:43.0081 0x23f0 W32Time - ok
16:40:43.0084 0x23f0 w3logsvc - ok
16:40:43.0088 0x23f0 WacomPen - ok
16:40:43.0093 0x23f0 WalletService - ok
16:40:43.0097 0x23f0 wanarp - ok
16:40:43.0101 0x23f0 wanarpv6 - ok
16:40:43.0106 0x23f0 WAS - ok
16:40:43.0110 0x23f0 wbengine - ok
16:40:43.0116 0x23f0 WbioSrvc - ok
16:40:43.0120 0x23f0 wcifs - ok
16:40:43.0123 0x23f0 Wcmsvc - ok
16:40:43.0128 0x23f0 wcncsvc - ok
16:40:43.0132 0x23f0 wcnfs - ok
16:40:43.0137 0x23f0 WdBoot - ok
16:40:43.0140 0x23f0 Wdf01000 - ok
16:40:43.0145 0x23f0 WdFilter - ok
16:40:43.0150 0x23f0 WdiServiceHost - ok
16:40:43.0154 0x23f0 WdiSystemHost - ok
16:40:43.0158 0x23f0 wdiwifi - ok
16:40:43.0162 0x23f0 WdNisDrv - ok
16:40:43.0166 0x23f0 WdNisSvc - ok
16:40:43.0171 0x23f0 WebClient - ok
16:40:43.0175 0x23f0 Wecsvc - ok
16:40:43.0180 0x23f0 WEPHOSTSVC - ok
16:40:43.0185 0x23f0 wercplsupport - ok
16:40:43.0190 0x23f0 WerSvc - ok
16:40:43.0193 0x23f0 WFPLWFS - ok
16:40:43.0199 0x23f0 WiaRpc - ok
16:40:43.0203 0x23f0 WIMMount - ok
16:40:43.0205 0x23f0 WinDefend - ok
16:40:43.0216 0x23f0 WindowsTrustedRT - ok
16:40:43.0220 0x23f0 WindowsTrustedRTProxy - ok
16:40:43.0225 0x23f0 WinHttpAutoProxySvc - ok
16:40:43.0230 0x23f0 WinMad - ok
16:40:43.0237 0x23f0 Winmgmt - ok
16:40:43.0242 0x23f0 WinRM - ok
16:40:43.0251 0x23f0 WINUSB - ok
16:40:43.0257 0x23f0 WinVerbs - ok
16:40:43.0261 0x23f0 wisvc - ok
16:40:43.0265 0x23f0 WlanSvc - ok
16:40:43.0269 0x23f0 wlidsvc - ok
16:40:43.0273 0x23f0 WmiAcpi - ok
16:40:43.0280 0x23f0 wmiApSrv - ok
16:40:43.0284 0x23f0 WMPNetworkSvc - ok
16:40:43.0289 0x23f0 Wof - ok
16:40:43.0297 0x23f0 WPDBusEnum - ok
16:40:43.0301 0x23f0 WpdUpFltr - ok
16:40:43.0306 0x23f0 WpnService - ok
16:40:43.0310 0x23f0 WpnUserService - ok
16:40:43.0317 0x23f0 ws2ifsl - ok
16:40:43.0322 0x23f0 wscsvc - ok
16:40:43.0327 0x23f0 WSearch - ok
16:40:43.0333 0x23f0 wuauserv - ok
16:40:43.0338 0x23f0 WudfPf - ok
16:40:43.0343 0x23f0 WUDFRd - ok
16:40:43.0347 0x23f0 wudfsvc - ok
16:40:43.0351 0x23f0 WUDFWpdFs - ok
16:40:43.0355 0x23f0 WUDFWpdMtp - ok
16:40:43.0360 0x23f0 WwanSvc - ok
16:40:43.0365 0x23f0 XblAuthManager - ok
16:40:43.0369 0x23f0 XblGameSave - ok
16:40:43.0379 0x23f0 [ 9627BBAA50878F6833A6A7843EE3B1D9, 637566BB56501C4D11E3B6E6AC1C602D880C9D357CCE3DF1DF74EE672744F2B7 ] xboxgip C:\WINDOWS\System32\drivers\xboxgip.sys
16:40:43.0419 0x23f0 xboxgip - ok
16:40:43.0426 0x23f0 XboxNetApiSvc - ok
16:40:43.0430 0x23f0 [ 63088A3361D9A308F328F11E9099DD87, E03FDB932FC57F199C8F8A8EADA338BDF7D2F9C6CB8FAB679A92B48B1E5AFE8A ] xinputhid C:\WINDOWS\System32\drivers\xinputhid.sys
16:40:43.0452 0x23f0 xinputhid - ok
16:40:43.0469 0x23f0 ================ Scan global ===============================
16:40:43.0485 0x23f0 [ Global ] - ok
16:40:43.0486 0x23f0 ================ Scan MBR ==================================
16:40:43.0488 0x23f0 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
16:40:43.0546 0x23f0 \Device\Harddisk0\DR0 - ok
16:40:43.0550 0x23f0 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk1\DR1
16:40:43.0571 0x23f0 \Device\Harddisk1\DR1 - ok
16:40:43.0573 0x23f0 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk2\DR2
16:40:43.0602 0x23f0 \Device\Harddisk2\DR2 - ok
16:40:43.0606 0x23f0 [ 373F4DAF56249FD107189CCBA61161EB ] \Device\Harddisk3\DR3
16:40:43.0747 0x23f0 \Device\Harddisk3\DR3 - ok
16:40:43.0747 0x23f0 ================ Scan VBR ==================================
16:40:43.0751 0x23f0 [ 83F445321C35C67F127CD3166C85CDF7 ] \Device\Harddisk0\DR0\Partition1
16:40:43.0752 0x23f0 \Device\Harddisk0\DR0\Partition1 - ok
16:40:43.0754 0x23f0 [ 4F1E6A146D13C619CE312109B618C31E ] \Device\Harddisk0\DR0\Partition2
16:40:43.0756 0x23f0 \Device\Harddisk0\DR0\Partition2 - ok
16:40:43.0761 0x23f0 [ 00B6CDF571AA8A34726DFD7D584105C8 ] \Device\Harddisk1\DR1\Partition1
16:40:43.0761 0x23f0 \Device\Harddisk1\DR1\Partition1 - ok
16:40:43.0763 0x23f0 [ E381CD8C0602E1016F17614797D832BF ] \Device\Harddisk1\DR1\Partition2
16:40:43.0764 0x23f0 \Device\Harddisk1\DR1\Partition2 - ok
16:40:43.0766 0x23f0 [ E2EEFD8BCE158069F8F14D2AA080A2C9 ] \Device\Harddisk2\DR2\Partition1
16:40:43.0767 0x23f0 \Device\Harddisk2\DR2\Partition1 - ok
16:40:43.0771 0x23f0 [ 3845461D4FCA392626E0FC1010477043 ] \Device\Harddisk3\DR3\Partition1
16:40:43.0775 0x23f0 \Device\Harddisk3\DR3\Partition1 - ok
16:40:43.0776 0x23f0 ================ Scan generic autorun ======================
16:40:44.0099 0x23f0 [ 1BDEB33CEAA541F6FCB19D9C342FBF86, F7DF33410511011317915F2EC3E571D249F1C92D5E35485313BF4DE9999D534C ] C:\Program Files\Logitech Gaming Software\LCore.exe
16:40:44.0403 0x23f0 Launch LCore - ok
16:40:44.0443 0x23f0 OneDriveSetup - ok
16:40:44.0446 0x23f0 OneDriveSetup - ok
16:40:44.0448 0x23f0 OneDriveSetup - ok
16:40:44.0449 0x23f0 WAB Migrate - ok
16:40:44.0454 0x23f0 AV detected via SS2: Avast Antivirus, Q:\Programme\Avast!\wsc_proxy.exe ( 17.1.3394.0 ), 0x41000 ( enabled : updated )
16:40:44.0455 0x23f0 AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.10.14393.187 ), 0x60100 ( disabled : updated )
16:40:44.0456 0x23f0 FW detected via SS2: Avast Antivirus, Q:\Programme\Avast!\wsc_proxy.exe ( 17.1.3394.0 ), 0x41010 ( enabled )
16:40:49.0605 0x23f0 ============================================================
16:40:49.0605 0x23f0 Scan finished
16:40:49.0605 0x23f0 ============================================================
16:40:49.0610 0x23d4 Detected object count: 0
16:40:49.0610 0x23d4 Actual detected object count: 0 Ich habe mir selber die Logs von MBAR angeguckt. Es waren Objekte in der Registry.
Ich wollte fragen ob dieser Thread auch zur "jhdbca"-Geschichte passt?: http://www.trojaner-board.de/184151-...-ultimate.html
Und dann habe ich noch eine Frage zur Registry:
Ich habe einen Ordner mit diesem Namen 4 mal:
1. HKCU\SOFTWARE\BB6E08ABDA77AEA3E5F310C19FCB8022
zu 1) hier befinden sich 3 Dateien drinne mit dem Name c,d und o.
Ich finde es seltsam das sie vor 4 Tagen erstellt wurden.
Den Ordner kenne ich auch nicht. Was sind das für Dateien?
2. HKLM\SOFTWARE\BB6E08ABDA77AEA3E5F310C19FCB8022
zu 2) Ich finde in diesem Ordner eine Datei mit dem Namen:
{EFD519A3-DC49-498A-8DD4-AD1DA8F97FCD}
3. HKLM\SOFTWARE\WOW6432Node\BB6E08ABDA77AEA3E5F310C19FCB8022
zu 3) Ich finde in diesem Ordner eine Datei mit dem Namen, gleich dem darüber:
{EFD519A3-DC49-498A-8DD4-AD1DA8F97FCD}
4. HKUS\S-1-5-21-303598687-36277840-1408844204-1001\SOFTWARE
\BB6E08ABDA77AEA3E5F310C19FCB8022
zu 4) Ich finde in diesem Ordner wieder 3 Dateien mit den Namen c,d und o
Current User bedeutet aktueller Nutzer oder? Dann muss ich ja Punkt 4. sein? Und was macht der Schlüssel nun? Außerdem ist ja der Schlüssel noch lokal auf der Maschine.
Ich hoffe ich frage nicht zu viel.
Gruß. :) |