Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Asus laptop quite slow with high processor usage when idle


  • Please log in to reply
9 replies to this topic

#1 Icomenid

Icomenid

  • Members
  • 8 posts
  • OFFLINE
  •  
  • Local time:01:39 PM

Posted 05 June 2015 - 06:19 PM

Good evening to you !

 

I am currently using an Asus Laptop X7BS (which is almost 4 years old, and is a "beta" version of the N-serie), running Windows 7, and having a couple of problems, meaning:

- images take a while to load on Opera (which may seem anecdotical, but quite often, they take a while (up to 30 seconds), or don't even load at all, without nonetheless displaying the typical "image link broken")

- all in all, he is getting slow. Slow in the sense I have framerate drops when starting Opera, not to mention games (like League of Legend, which does not ask for too high performance)

- of the four displayed processor kernels, the first tends to be at maximum even when the computer is idle ("idle" in the sense I'm not doing anything on it)

- it is thus running hot almost permanently (~70° according to SpeedFan)

Then, I got a message this afternoon from my antivirus, which is Avira Free version, saying that it has detected "ADWARE/iBryte.bxoq" right here:

C:\Windows\TEMP\tmp00004090\tmp0000001f

And not just once, but a forty-ish times.

 

Thus, right now, I am thinking about reinstalling my Windows 7 from scratch. However, I am wondering if there is a way to avoid doing so - as some programs are a real pain to reinstall (I am looking at you, Office 2010, PTC Creo, LabView).

 

Could some spare some time helping me ?

 

Thank you a lot,

 

Have a good night,

Icomenid



BC AdBot (Login to Remove)

 


#2 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,490 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:07:39 AM

Posted 05 June 2015 - 08:34 PM

Welcome, it does sound infected and cluttered, so let's clean/

3Al62Pm.pngMiniToolBox
  • Please download MiniToolBox, save it to your desktop and run it.
  • Checkmark the following checkboxes:
    • Flush DNS
    • Report IE Proxy Settings
    • Reset IE Proxy Settings
    • Report FF Proxy Settings
    • Reset FF Proxy Settings
    • List content of Hosts
    • List IP configuration
    • List Winsock Entries
    • List last 10 Event Viewer log
    • List Installed Programs
    • List Users, Partitions and Memory size.
  • Click Go and post the result (Result.txt). A copy of Result.txt will be saved in the same directory the tool is run. Note: When using "Reset FF Proxy Settings" option Firefox should be closed.
SXvL3ZF.pngTDSSKiller
  • Download TDSSKiller and save it to your desktop.
  • Extract (unzip) its contents to your desktop.
  • Open the TDSSKiller folder and doubleclick on TDSSKiller.exe to run the application, then on Start Scan.
  • If an infected file is detected, the default action will be Cure, click on Continue.
  • If a suspicious file is detected, the default action will be Skip, click on Continue.
  • It may ask you to reboot the computer to complete the process. Click on Reboot Now.
  • If no reboot is required, click on Report. A log file should appear. Please copy and paste the contents of that file here.
  • If a reboot is required, the report can also be found in your root directory (usually C:\ folder) in the form of TDSSKiller_xxxx_log.txt. Please copy and paste the contents of that file here.
zcMPezJ.pngAdwCleaner
  • Please download AdwCleaner by Xplode and save to your Desktop.
  • Double click on AdwCleaner.exe to run the tool. Vista/Windows 7/8 users right-click and select Run As Administrator
  • Click on the Scan button.
  • AdwCleaner will begin...be patient as the scan may take some time to complete.
  • After the scan has finished, click on the Report button...a logfile (AdwCleaner[R0].txt) will open in Notepad for review.
  • The contents of the log file may be confusing. Unless you see a program name that you know should not be removed, don't worry about it. If you see an entry you want to keep, let me know about it.
  • Copy and paste the contents of that logfile in your next reply.
  • A copy of all logfiles are saved in the C:\AdwCleaner folder which was created when running the tool.
lv0mVRW.pngJunkware Removal Tool
  • Please download Junkware Removal Tool to your desktop.
  • Shut down your protection software now to avoid potential conflicts.
  • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next message.
cvMlKv6.pngESET Online Scanner
  • Hold down Control and click on this link to open ESET Online Scanner in a new window.
  • Click the esetonlinebtn.png button.
  • For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)
  • Click on esetsmartinstaller_enu.exe to download the ESET Smart Installer. Save it to your desktop.
  • Double click on the esetsmartinstaller_enu.png icon on your desktop.
  • Check "YES, I accept the Terms of Use."
  • Click the Start button.
  • Accept any security warnings from your browser.
  • Under scan settings, check "Scan Archives" and "Remove found threats"
  • Click Advanced settings and select the following:
    • Scan potentially unwanted applications
    • Scan for potentially unsafe applications
    • Enable Anti-Stealth technology
  • ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
  • When the scan completes, click List Threats
  • Click Export, and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
  • Click the Back button.
  • Click the Finish button.
  • NOTE: Sometimes if ESET finds no infections it will not create a log.
>>>

51a46ae42d560-malwarebytes_anti_malware.Malwarebytes Anti-Malware
  • Download MalwareBytes Anti-Malware to your desktop.
  • Double-click mbam-setup-2.0.exe to start the installation of Malwarebytes Anti-Malware.
  • Follow the instructions on your screen to complete the installation. You can find the complete installation procedure here.
  • Click the Scan Now button, a threat scan will start automatically.
  • MalwareBytes Anti-Malware will now check for the latest updates. Click Update Now if new updates are available.
  • Your computer is now being scanned, please do not use your computer during the scan.
    • If no threats were found, click View detailed log.
      • Click Export and save the log as a .txt file on your Desktop or another location.
    • If the scan detected any threats, click Apply Actions.
      • To complete any actions taken you will be prompted to restart your computer...click on Yes.
      • After reboot, start Malwarebytes Anti-Malware again and click the History Tab at the top and select Application Logs.
      • Check the box next to Scan Log. Choose the most current scan and click View.
      • Click Export and save the log as a .txt file on your Desktop or another location.
  • Providing the MalwareBytes' Anti-Malware log file
    • Attach the log file you just saved to your next reply for further review.

How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#3 Icomenid

Icomenid
  • Topic Starter

  • Members
  • 8 posts
  • OFFLINE
  •  
  • Local time:01:39 PM

Posted 06 June 2015 - 02:19 AM

As I don't know how to attach the .txt-file to my message (not yet used to this forum), I will just c/p its content below. I hope that's not a problem? If you need any translation, juste please tell me. :)

I also have Spybot S&D 2 installed, which you will notice in the host content.

 

 

MiniToolBox report:

 

MiniToolBox by Farbar  Version: 11-05-2015 01
Ran by Domenico (administrator) on 06-06-2015 at 09:07:15
Running from "C:\Users\Domenico\Desktop"
Microsoft Windows 7 Home Premium  Service Pack 1 (X64)
Model: N73SV Manufacturer: ASUSTeK Computer Inc.
Boot Mode: Normal
***************************************************************************

========================= Flush DNS: ===================================

Windows-IP-Konfiguration

Der DNS-Auflsungscache wurde geleert.

========================= IE Proxy Settings: ==============================

Proxy is not enabled.
No Proxy Server is set.

"Reset IE Proxy Settings": IE Proxy Settings were reset.

========================= FF Proxy Settings: ==============================

"network.proxy.socks_remote_dns", true
"network.proxy.type", 0

"Reset FF Proxy Settings": Firefox Proxy settings were reset.

========================= Hosts content: =================================


127.0.0.1    www.007guard.com
127.0.0.1    007guard.com
127.0.0.1    008i.com
127.0.0.1    www.008k.com
127.0.0.1    008k.com
127.0.0.1    www.00hq.com
127.0.0.1    00hq.com
127.0.0.1    010402.com
127.0.0.1    www.032439.com
127.0.0.1    032439.com
127.0.0.1    www.0scan.com
127.0.0.1    0scan.com
127.0.0.1    1000gratisproben.com
127.0.0.1    www.1000gratisproben.com
127.0.0.1    1001namen.com
127.0.0.1    www.1001namen.com
127.0.0.1    100888290cs.com
127.0.0.1    www.100888290cs.com
127.0.0.1    www.100sexlinks.com

There are 15218 more lines starting with "127.0.0.1"

========================= IP Configuration: ================================

Atheros AR8151 PCI-E Gigabit Ethernet Controller (NDIS 6.20) = LAN-Verbindung (Connected)
Hamachi Network Interface = Hamachi (Connected)
VirtualBox Host-Only Ethernet Adapter = VirtualBox Host-Only Network (Hardware not present)
Intel® Centrino® Wireless-N 1000 = Drahtlosnetzwerkverbindung (Media disconnected)
Microsoft Virtual WiFi Miniport Adapter = Drahtlosnetzwerkverbindung 2 (Media disconnected)
Microsoft Virtual WiFi Miniport Adapter = Drahtlosnetzwerkverbindung 3 (Media disconnected)


# ----------------------------------
# IPv4-Konfiguration
# ----------------------------------
pushd interface ipv4

reset
set global icmpredirects=enabled
add route prefix=0.0.0.0/0 interface="Hamachi" nexthop=25.0.0.1 publish=Ja
set interface interface="Hamachi" forwarding=disabled advertise=disabled metric=9000 siteprefixlength=0 nud=disabled routerdiscovery=disabled managedaddress=disabled otherstateful=disabled weakhostsend=disabled weakhostreceive=disabled ignoredefaultroutes=disabled advertisedrouterlifetime=0 advertisedefaultroute=disabled currenthoplimit=0 forcearpndwolpattern=disabled enabledirectedmacwolpattern=disabled
add address name="VirtualBox Host-Only Network" address=192.168.56.1 mask=255.255.255.0


popd
# Ende der IPv4-Konfiguration



Windows-IP-Konfiguration

   Hostname  . . . . . . . . . . . . : LUNA_REDEMPTION
   Primres DNS-Suffix . . . . . . . :
   Knotentyp . . . . . . . . . . . . : Gemischt
   IP-Routing aktiviert  . . . . . . : Nein
   WINS-Proxy aktiviert  . . . . . . : Nein

Ethernet-Adapter LAN-Verbindung:

   Verbindungsspezifisches DNS-Suffix:
   Beschreibung. . . . . . . . . . . : Atheros AR8151 PCI-E Gigabit Ethernet Controller (NDIS 6.20)
   Physikalische Adresse . . . . . . : F4-6D-04-BE-28-E7
   DHCP aktiviert. . . . . . . . . . : Ja
   Autokonfiguration aktiviert . . . : Ja
   IPv6-Adresse. . . . . . . . . . . : 2a01:e35:2e82:55e0:bcfe:6fe5:3bf0:c3ba(Bevorzugt)
   Verbindungslokale IPv6-Adresse  . : fe80::bcfe:6fe5:3bf0:c3ba%13(Bevorzugt)
   IPv4-Adresse  . . . . . . . . . . : 192.168.0.11(Bevorzugt)
   Subnetzmaske  . . . . . . . . . . : 255.255.255.0
   Lease erhalten. . . . . . . . . . : Samstag, 6. Juni 2015 08:57:26
   Lease luft ab. . . . . . . . . . : Dienstag, 16. Juni 2015 08:57:26
   Standardgateway . . . . . . . . . : fe80::224:d4ff:feb7:2a22%13
                                       192.168.0.254
   DHCP-Server . . . . . . . . . . . : 192.168.0.254
   DNS-Server  . . . . . . . . . . . : 8.8.8.8
                                       8.8.4.4
   NetBIOS ber TCP/IP . . . . . . . : Aktiviert

Drahtlos-LAN-Adapter Drahtlosnetzwerkverbindung 3:

   Medienstatus. . . . . . . . . . . : Medium getrennt
   Verbindungsspezifisches DNS-Suffix:
   Beschreibung. . . . . . . . . . . : Microsoft Virtual WiFi Miniport Adapter #2
   Physikalische Adresse . . . . . . : 8C-A9-82-6B-B0-AB
   DHCP aktiviert. . . . . . . . . . : Ja
   Autokonfiguration aktiviert . . . : Ja

Drahtlos-LAN-Adapter Drahtlosnetzwerkverbindung 2:

   Medienstatus. . . . . . . . . . . : Medium getrennt
   Verbindungsspezifisches DNS-Suffix:
   Beschreibung. . . . . . . . . . . : Microsoft Virtual WiFi Miniport Adapter
   Physikalische Adresse . . . . . . : 8C-A9-82-6B-B0-AB
   DHCP aktiviert. . . . . . . . . . : Ja
   Autokonfiguration aktiviert . . . : Ja

Drahtlos-LAN-Adapter Drahtlosnetzwerkverbindung:

   Medienstatus. . . . . . . . . . . : Medium getrennt
   Verbindungsspezifisches DNS-Suffix:
   Beschreibung. . . . . . . . . . . : Intel® Centrino® Wireless-N 1000
   Physikalische Adresse . . . . . . : 8C-A9-82-6B-B0-AA
   DHCP aktiviert. . . . . . . . . . : Ja
   Autokonfiguration aktiviert . . . : Ja

Ethernet-Adapter Hamachi:

   Verbindungsspezifisches DNS-Suffix:
   Beschreibung. . . . . . . . . . . : Hamachi Network Interface
   Physikalische Adresse . . . . . . : 7A-79-19-A2-56-87
   DHCP aktiviert. . . . . . . . . . : Ja
   Autokonfiguration aktiviert . . . : Ja
   IPv6-Adresse. . . . . . . . . . . : 2620:9b::19a2:5687(Bevorzugt)
   Verbindungslokale IPv6-Adresse  . : fe80::159b:d129:e957:d4ca%15(Bevorzugt)
   IPv4-Adresse  . . . . . . . . . . : 25.162.86.135(Bevorzugt)
   Subnetzmaske  . . . . . . . . . . : 255.0.0.0
   Lease erhalten. . . . . . . . . . : Samstag, 6. Juni 2015 08:57:26
   Lease luft ab. . . . . . . . . . : Sonntag, 5. Juni 2016 09:01:39
   Standardgateway . . . . . . . . . : 2620:9b::1900:1
                                       25.0.0.1
   DHCP-Server . . . . . . . . . . . : 25.0.0.1
   DHCPv6-IAID . . . . . . . . . . . : 913996062
   DHCPv6-Client-DUID. . . . . . . . : 00-01-00-01-15-BA-68-85-8C-A9-82-6B-B0-AA
   DNS-Server  . . . . . . . . . . . : fec0:0:0:ffff::1%1
                                       fec0:0:0:ffff::2%1
                                       fec0:0:0:ffff::3%1
   NetBIOS ber TCP/IP . . . . . . . : Aktiviert

Tunneladapter LAN-Verbindung* 23:

   Medienstatus. . . . . . . . . . . : Medium getrennt
   Verbindungsspezifisches DNS-Suffix:
   Beschreibung. . . . . . . . . . . : Microsoft-6zu4-Adapter #5
   Physikalische Adresse . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP aktiviert. . . . . . . . . . : Nein
   Autokonfiguration aktiviert . . . : Ja

Tunneladapter LAN-Verbindung* 17:

   Medienstatus. . . . . . . . . . . : Medium getrennt
   Verbindungsspezifisches DNS-Suffix:
   Beschreibung. . . . . . . . . . . : Microsoft-6zu4-Adapter #2
   Physikalische Adresse . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP aktiviert. . . . . . . . . . : Nein
   Autokonfiguration aktiviert . . . : Ja

Tunneladapter LAN-Verbindung* 26:

   Medienstatus. . . . . . . . . . . : Medium getrennt
   Verbindungsspezifisches DNS-Suffix:
   Beschreibung. . . . . . . . . . . : Microsoft-6zu4-Adapter #6
   Physikalische Adresse . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP aktiviert. . . . . . . . . . : Nein
   Autokonfiguration aktiviert . . . : Ja

Tunneladapter LAN-Verbindung* 18:

   Medienstatus. . . . . . . . . . . : Medium getrennt
   Verbindungsspezifisches DNS-Suffix:
   Beschreibung. . . . . . . . . . . : Microsoft-6zu4-Adapter #3
   Physikalische Adresse . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP aktiviert. . . . . . . . . . : Nein
   Autokonfiguration aktiviert . . . : Ja

Tunneladapter LAN-Verbindung* 16:

   Medienstatus. . . . . . . . . . . : Medium getrennt
   Verbindungsspezifisches DNS-Suffix:
   Beschreibung. . . . . . . . . . . : Microsoft-6zu4-Adapter
   Physikalische Adresse . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP aktiviert. . . . . . . . . . : Nein
   Autokonfiguration aktiviert . . . : Ja

Tunneladapter LAN-Verbindung* 19:

   Medienstatus. . . . . . . . . . . : Medium getrennt
   Verbindungsspezifisches DNS-Suffix:
   Beschreibung. . . . . . . . . . . : Microsoft-6zu4-Adapter #4
   Physikalische Adresse . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP aktiviert. . . . . . . . . . : Nein
   Autokonfiguration aktiviert . . . : Ja

Tunneladapter isatap.{82AA5DE6-C249-4B5F-8476-DEE01F2E7A98}:

   Medienstatus. . . . . . . . . . . : Medium getrennt
   Verbindungsspezifisches DNS-Suffix:
   Beschreibung. . . . . . . . . . . : Microsoft-ISATAP-Adapter #5
   Physikalische Adresse . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP aktiviert. . . . . . . . . . : Nein
   Autokonfiguration aktiviert . . . : Ja

Tunneladapter LAN-Verbindung* 54:

   Medienstatus. . . . . . . . . . . : Medium getrennt
   Verbindungsspezifisches DNS-Suffix:
   Beschreibung. . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
   Physikalische Adresse . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP aktiviert. . . . . . . . . . : Nein
   Autokonfiguration aktiviert . . . : Ja

Tunneladapter isatap.{A97DA2F8-6162-4DEE-950D-B08343D4F29F}:

   Medienstatus. . . . . . . . . . . : Medium getrennt
   Verbindungsspezifisches DNS-Suffix:
   Beschreibung. . . . . . . . . . . : Microsoft-ISATAP-Adapter #6
   Physikalische Adresse . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP aktiviert. . . . . . . . . . : Nein
   Autokonfiguration aktiviert . . . : Ja
Server:  google-public-dns-a.google.com
Address:  8.8.8.8

Name:    google.com
Addresses:  2a00:1450:4007:80e::200e
      216.58.208.238


Ping wird ausgefhrt fr google.com [2a00:1450:4007:80e::200e] mit 32 Bytes Daten:
Antwort von 2a00:1450:4007:80e::200e: Zeit=33ms
Antwort von 2a00:1450:4007:80e::200e: Zeit=33ms

Ping-Statistik fr 2a00:1450:4007:80e::200e:
    Pakete: Gesendet = 2, Empfangen = 2, Verloren = 0
    (0% Verlust),
Ca. Zeitangaben in Millisek.:
    Minimum = 33ms, Maximum = 33ms, Mittelwert = 33ms
Server:  google-public-dns-a.google.com
Address:  8.8.8.8

Name:    yahoo.com
Addresses:  206.190.36.45
      98.138.253.109
      98.139.183.24


Ping wird ausgefhrt fr yahoo.com [206.190.36.45] mit 32 Bytes Daten:
Antwort von 206.190.36.45: Bytes=32 Zeit=183ms TTL=47
Antwort von 206.190.36.45: Bytes=32 Zeit=181ms TTL=47

Ping-Statistik fr 206.190.36.45:
    Pakete: Gesendet = 2, Empfangen = 2, Verloren = 0
    (0% Verlust),
Ca. Zeitangaben in Millisek.:
    Minimum = 181ms, Maximum = 183ms, Mittelwert = 182ms

Ping wird ausgefhrt fr 127.0.0.1 mit 32 Bytes Daten:
Antwort von 127.0.0.1: Bytes=32 Zeit<1ms TTL=128
Antwort von 127.0.0.1: Bytes=32 Zeit<1ms TTL=128

Ping-Statistik fr 127.0.0.1:
    Pakete: Gesendet = 2, Empfangen = 2, Verloren = 0
    (0% Verlust),
Ca. Zeitangaben in Millisek.:
    Minimum = 0ms, Maximum = 0ms, Mittelwert = 0ms
===========================================================================
Schnittstellenliste
 13...f4 6d 04 be 28 e7 ......Atheros AR8151 PCI-E Gigabit Ethernet Controller (NDIS 6.20)
 12...8c a9 82 6b b0 ab ......Microsoft Virtual WiFi Miniport Adapter #2
 11...8c a9 82 6b b0 ab ......Microsoft Virtual WiFi Miniport Adapter
 10...8c a9 82 6b b0 aa ......Intel® Centrino® Wireless-N 1000
 15...7a 79 19 a2 56 87 ......Hamachi Network Interface
  1...........................Software Loopback Interface 1
 28...00 00 00 00 00 00 00 e0 Microsoft-6zu4-Adapter #5
 20...00 00 00 00 00 00 00 e0 Microsoft-6zu4-Adapter #2
 30...00 00 00 00 00 00 00 e0 Microsoft-6zu4-Adapter #6
 21...00 00 00 00 00 00 00 e0 Microsoft-6zu4-Adapter #3
 19...00 00 00 00 00 00 00 e0 Microsoft-6zu4-Adapter
 22...00 00 00 00 00 00 00 e0 Microsoft-6zu4-Adapter #4
 68...00 00 00 00 00 00 00 e0 Microsoft-ISATAP-Adapter #5
 74...00 00 00 00 00 00 00 e0 Teredo Tunneling Pseudo-Interface
 72...00 00 00 00 00 00 00 e0 Microsoft-ISATAP-Adapter #6
===========================================================================

IPv4-Routentabelle
===========================================================================
Aktive Routen:
     Netzwerkziel    Netzwerkmaske          Gateway    Schnittstelle Metrik
          0.0.0.0          0.0.0.0         25.0.0.1    25.162.86.135   9256
          0.0.0.0          0.0.0.0    192.168.0.254     192.168.0.11     20
         25.0.0.0        255.0.0.0   Auf Verbindung     25.162.86.135   9256
    25.162.86.135  255.255.255.255   Auf Verbindung     25.162.86.135   9256
   25.255.255.255  255.255.255.255   Auf Verbindung     25.162.86.135   9256
        127.0.0.0        255.0.0.0   Auf Verbindung         127.0.0.1    306
        127.0.0.1  255.255.255.255   Auf Verbindung         127.0.0.1    306
  127.255.255.255  255.255.255.255   Auf Verbindung         127.0.0.1    306
      192.168.0.0    255.255.255.0   Auf Verbindung      192.168.0.11    276
     192.168.0.11  255.255.255.255   Auf Verbindung      192.168.0.11    276
    192.168.0.255  255.255.255.255   Auf Verbindung      192.168.0.11    276
        224.0.0.0        240.0.0.0   Auf Verbindung         127.0.0.1    306
        224.0.0.0        240.0.0.0   Auf Verbindung     25.162.86.135   9256
        224.0.0.0        240.0.0.0   Auf Verbindung      192.168.0.11    276
  255.255.255.255  255.255.255.255   Auf Verbindung         127.0.0.1    306
  255.255.255.255  255.255.255.255   Auf Verbindung     25.162.86.135   9256
  255.255.255.255  255.255.255.255   Auf Verbindung      192.168.0.11    276
===========================================================================
Stndige Routen:
  Netzwerkadresse          Netzmaske  Gatewayadresse  Metrik
          0.0.0.0          0.0.0.0         25.0.0.1  Standard
===========================================================================

IPv6-Routentabelle
===========================================================================
Aktive Routen:
 If Metrik Netzwerkziel             Gateway
 13    276 ::/0                     fe80::224:d4ff:feb7:2a22
 15   9020 ::/0                     2620:9b::1900:1
  1    306 ::1/128                  Auf Verbindung
 15    276 2620:9b::/96             Auf Verbindung
 15    276 2620:9b::19a2:5687/128   Auf Verbindung
 13     28 2a01:e35:2e82:55e0::/64  Auf Verbindung
 13    276 2a01:e35:2e82:55e0:bcfe:6fe5:3bf0:c3ba/128
                                    Auf Verbindung
 15    276 fe80::/64                Auf Verbindung
 13    276 fe80::/64                Auf Verbindung
 15    276 fe80::159b:d129:e957:d4ca/128
                                    Auf Verbindung
 13    276 fe80::bcfe:6fe5:3bf0:c3ba/128
                                    Auf Verbindung
  1    306 ff00::/8                 Auf Verbindung
 15    276 ff00::/8                 Auf Verbindung
 13    276 ff00::/8                 Auf Verbindung
===========================================================================
Stndige Routen:
 If Metrik Netzwerkziel             Gateway
  0 4294967295 2620:9b::/96             Auf Verbindung
  0   9000 ::/0                     2620:9b::1900:1
===========================================================================
========================= Winsock entries =====================================

Catalog5 01 C:\Windows\SysWOW64\NLAapi.dll [52224] (Microsoft Corporation)
Catalog5 02 C:\Windows\SysWOW64\napinsp.dll [52224] (Microsoft Corporation)
Catalog5 03 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 04 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 05 C:\Windows\SysWOW64\wshbth.dll [36352] (Microsoft Corporation)
Catalog5 06 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog5 07 C:\Windows\SysWOW64\winrnr.dll [20992] (Microsoft Corporation)
Catalog5 08 D:\Program Files (x86)\National Instruments\Shared\mDNS Responder\nimdnsNSP.dll [26512] (National Instruments Corporation)
Catalog5 09 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145648] (Microsoft Corp.)
Catalog5 10 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145648] (Microsoft Corp.)
Catalog5 11 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
Catalog9 01 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 02 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 03 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 04 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 05 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 06 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 07 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 08 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 09 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 10 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 11 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
x64-Catalog5 01 C:\Windows\System32\NLAapi.dll [70656] (Microsoft Corporation)
x64-Catalog5 02 C:\Windows\System32\napinsp.dll [68096] (Microsoft Corporation)
x64-Catalog5 03 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog5 04 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog5 05 C:\Windows\System32\wshbth.dll [47104] (Microsoft Corporation)
x64-Catalog5 06 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog5 07 C:\Windows\System32\winrnr.dll [28672] (Microsoft Corporation)
x64-Catalog5 08 C:\Program Files\National Instruments\Shared\mDNS Responder\nimdnsNSP.dll [28560] (National Instruments Corporation)
x64-Catalog5 09 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [171760] (Microsoft Corp.)
x64-Catalog5 10 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [171760] (Microsoft Corp.)
x64-Catalog5 11 C:\Program Files\Bonjour\mdnsNSP.dll [132968] (Apple Inc.)
x64-Catalog9 01 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 02 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 03 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 04 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 05 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 06 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 07 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 08 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 09 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 10 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 11 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)

========================= Event log errors: ===============================

Application errors:
==================
Error: (06/06/2015 09:02:01 AM) (Source: WTabletServiceCon) (User: )
Description: Prefs: Failed to get user path

Error: (06/06/2015 09:01:44 AM) (Source: .NET Runtime) (User: )
Description: Anwendung: Avira.OE.ServiceHost.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund eines Ausnahmefehlers beendet.
Ausnahmeinformationen: System.ComponentModel.Composition.CompositionException
Stapel:
   bei System.ComponentModel.Composition.Hosting.CompositionServices.GetExportedValueFromComposedPart(System.ComponentModel.Composition.Hosting.ImportEngine, System.ComponentModel.Composition.Primitives.ComposablePart, System.ComponentModel.Composition.Primitives.ExportDefinition)
   bei System.ComponentModel.Composition.Hosting.CatalogExportProvider.GetExportedValue(CatalogPart, System.ComponentModel.Composition.Primitives.ExportDefinition, Boolean)
   bei System.ComponentModel.Composition.Hosting.CatalogExportProvider+CatalogExport.GetExportedValueCore()
   bei System.ComponentModel.Composition.Primitives.Export.get_Value()
   bei System.ComponentModel.Composition.ExportServices.GetCastedExportedValue[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]](System.ComponentModel.Composition.Primitives.Export)
   bei System.ComponentModel.Composition.Hosting.ExportProvider.GetExportedValuesCore[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]](System.String)
   bei Avira.OE.ServiceHost.ServiceHost.Initialize(System.Object)
   bei System.Threading.QueueUserWorkItemCallback.WaitCallback_Context(System.Object)
   bei System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   bei System.Threading.QueueUserWorkItemCallback.System.Threading.IThreadPoolWorkItem.ExecuteWorkItem()
   bei System.Threading.ThreadPoolWorkQueue.Dispatch()
   bei System.Threading._ThreadPoolWaitCallback.PerformWaitCallback()

Error: (06/06/2015 09:01:35 AM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: Avira.OE.Systray.exe, Version: 1.1.21.25189, Zeitstempel: 0x53fdd63b
Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.1.7601.18869, Zeitstempel: 0x556363bc
Ausnahmecode: 0xe0434352
Fehleroffset: 0x0000c42d
ID des fehlerhaften Prozesses: 0xe28
Startzeit der fehlerhaften Anwendung: 0xAvira.OE.Systray.exe0
Pfad der fehlerhaften Anwendung: Avira.OE.Systray.exe1
Pfad des fehlerhaften Moduls: Avira.OE.Systray.exe2
Berichtskennung: Avira.OE.Systray.exe3

Error: (06/06/2015 09:01:32 AM) (Source: .NET Runtime) (User: )
Description: Anwendung: Avira.OE.ServiceHost.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund eines Ausnahmefehlers beendet.
Ausnahmeinformationen: System.ComponentModel.Composition.CompositionException
Stapel:
   bei System.ComponentModel.Composition.Hosting.CompositionServices.GetExportedValueFromComposedPart(System.ComponentModel.Composition.Hosting.ImportEngine, System.ComponentModel.Composition.Primitives.ComposablePart, System.ComponentModel.Composition.Primitives.ExportDefinition)
   bei System.ComponentModel.Composition.Hosting.CatalogExportProvider.GetExportedValue(CatalogPart, System.ComponentModel.Composition.Primitives.ExportDefinition, Boolean)
   bei System.ComponentModel.Composition.Hosting.CatalogExportProvider+CatalogExport.GetExportedValueCore()
   bei System.ComponentModel.Composition.Primitives.Export.get_Value()
   bei System.ComponentModel.Composition.ExportServices.GetCastedExportedValue[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]](System.ComponentModel.Composition.Primitives.Export)
   bei System.ComponentModel.Composition.Hosting.ExportProvider.GetExportedValuesCore[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]](System.String)
   bei Avira.OE.ServiceHost.ServiceHost.Initialize(System.Object)
   bei System.Threading.QueueUserWorkItemCallback.WaitCallback_Context(System.Object)
   bei System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   bei System.Threading.QueueUserWorkItemCallback.System.Threading.IThreadPoolWorkItem.ExecuteWorkItem()
   bei System.Threading.ThreadPoolWorkQueue.Dispatch()
   bei System.Threading._ThreadPoolWaitCallback.PerformWaitCallback()

Error: (06/06/2015 09:01:14 AM) (Source: .NET Runtime) (User: )
Description: Anwendung: Avira.OE.Systray.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund eines Ausnahmefehlers beendet.
Ausnahmeinformationen: System.BadImageFormatException
Stapel:
   bei Avira.OE.WinCore.Utility.LoggerFacade.GetLogger(System.String)
   bei Avira.OE.WinCore.Utility.LoggerFacade.GetCurrentClassLogger()
   bei Avira.OE.WinCore.Lazy`1[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]].get_Value()
   bei Avira.OE.WinCore.Utility.CommunicatorClientProxy.ConnectToCommunicator()
   bei Avira.OE.Systray.SystrayIcon..ctor(Avira.OE.WinCore.Interface.IServiceStatusMonitor, Avira.OE.Communicator.Interface.ICommunicatorClientProxy, Avira.OE.MiniGui.IMiniGuiWindow)
   bei Avira.OE.Systray.SystrayIcon..ctor()
   bei Avira.OE.Systray.Program.Main(System.String[])

Error: (06/06/2015 09:01:03 AM) (Source: .NET Runtime) (User: )
Description: Anwendung: Avira.OE.ServiceHost.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund eines Ausnahmefehlers beendet.
Ausnahmeinformationen: System.ComponentModel.Composition.CompositionException
Stapel:
   bei System.ComponentModel.Composition.Hosting.CompositionServices.GetExportedValueFromComposedPart(System.ComponentModel.Composition.Hosting.ImportEngine, System.ComponentModel.Composition.Primitives.ComposablePart, System.ComponentModel.Composition.Primitives.ExportDefinition)
   bei System.ComponentModel.Composition.Hosting.CatalogExportProvider.GetExportedValue(CatalogPart, System.ComponentModel.Composition.Primitives.ExportDefinition, Boolean)
   bei System.ComponentModel.Composition.Hosting.CatalogExportProvider+CatalogExport.GetExportedValueCore()
   bei System.ComponentModel.Composition.Primitives.Export.get_Value()
   bei System.ComponentModel.Composition.ExportServices.GetCastedExportedValue[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]](System.ComponentModel.Composition.Primitives.Export)
   bei System.ComponentModel.Composition.Hosting.ExportProvider.GetExportedValuesCore[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]](System.String)
   bei Avira.OE.ServiceHost.ServiceHost.Initialize(System.Object)
   bei System.Threading.QueueUserWorkItemCallback.WaitCallback_Context(System.Object)
   bei System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   bei System.Threading.QueueUserWorkItemCallback.System.Threading.IThreadPoolWorkItem.ExecuteWorkItem()
   bei System.Threading.ThreadPoolWorkQueue.Dispatch()
   bei System.Threading._ThreadPoolWaitCallback.PerformWaitCallback()

Error: (06/05/2015 01:34:02 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: Avira.OE.Systray.exe, Version: 1.1.21.25189, Zeitstempel: 0x53fdd63b
Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.1.7601.18869, Zeitstempel: 0x556363bc
Ausnahmecode: 0xe0434352
Fehleroffset: 0x0000c42d
ID des fehlerhaften Prozesses: 0x894
Startzeit der fehlerhaften Anwendung: 0xAvira.OE.Systray.exe0
Pfad der fehlerhaften Anwendung: Avira.OE.Systray.exe1
Pfad des fehlerhaften Moduls: Avira.OE.Systray.exe2
Berichtskennung: Avira.OE.Systray.exe3

Error: (06/05/2015 01:33:46 PM) (Source: .NET Runtime) (User: )
Description: Anwendung: Avira.OE.Systray.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund eines Ausnahmefehlers beendet.
Ausnahmeinformationen: System.BadImageFormatException
Stapel:
   bei Avira.OE.WinCore.Utility.LoggerFacade.GetLogger(System.String)
   bei Avira.OE.WinCore.Utility.LoggerFacade.GetCurrentClassLogger()
   bei Avira.OE.WinCore.Lazy`1[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]].get_Value()
   bei Avira.OE.WinCore.Utility.CommunicatorClientProxy.ConnectToCommunicator()
   bei Avira.OE.Systray.SystrayIcon..ctor(Avira.OE.WinCore.Interface.IServiceStatusMonitor, Avira.OE.Communicator.Interface.ICommunicatorClientProxy, Avira.OE.MiniGui.IMiniGuiWindow)
   bei Avira.OE.Systray.SystrayIcon..ctor()
   bei Avira.OE.Systray.Program.Main(System.String[])

Error: (06/05/2015 01:30:11 PM) (Source: .NET Runtime) (User: )
Description: Anwendung: Avira.OE.ServiceHost.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund eines Ausnahmefehlers beendet.
Ausnahmeinformationen: System.ComponentModel.Composition.CompositionException
Stapel:
   bei System.ComponentModel.Composition.Hosting.CompositionServices.GetExportedValueFromComposedPart(System.ComponentModel.Composition.Hosting.ImportEngine, System.ComponentModel.Composition.Primitives.ComposablePart, System.ComponentModel.Composition.Primitives.ExportDefinition)
   bei System.ComponentModel.Composition.Hosting.CatalogExportProvider.GetExportedValue(CatalogPart, System.ComponentModel.Composition.Primitives.ExportDefinition, Boolean)
   bei System.ComponentModel.Composition.Hosting.CatalogExportProvider+CatalogExport.GetExportedValueCore()
   bei System.ComponentModel.Composition.Primitives.Export.get_Value()
   bei System.ComponentModel.Composition.ExportServices.GetCastedExportedValue[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]](System.ComponentModel.Composition.Primitives.Export)
   bei System.ComponentModel.Composition.Hosting.ExportProvider.GetExportedValuesCore[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]](System.String)
   bei Avira.OE.ServiceHost.ServiceHost.Initialize(System.Object)
   bei System.Threading.QueueUserWorkItemCallback.WaitCallback_Context(System.Object)
   bei System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   bei System.Threading.QueueUserWorkItemCallback.System.Threading.IThreadPoolWorkItem.ExecuteWorkItem()
   bei System.Threading.ThreadPoolWorkQueue.Dispatch()
   bei System.Threading._ThreadPoolWaitCallback.PerformWaitCallback()

Error: (06/05/2015 01:29:56 PM) (Source: .NET Runtime) (User: )
Description: Anwendung: Avira.OE.ServiceHost.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund eines Ausnahmefehlers beendet.
Ausnahmeinformationen: System.ComponentModel.Composition.CompositionException
Stapel:
   bei System.ComponentModel.Composition.Hosting.CompositionServices.GetExportedValueFromComposedPart(System.ComponentModel.Composition.Hosting.ImportEngine, System.ComponentModel.Composition.Primitives.ComposablePart, System.ComponentModel.Composition.Primitives.ExportDefinition)
   bei System.ComponentModel.Composition.Hosting.CatalogExportProvider.GetExportedValue(CatalogPart, System.ComponentModel.Composition.Primitives.ExportDefinition, Boolean)
   bei System.ComponentModel.Composition.Hosting.CatalogExportProvider+CatalogExport.GetExportedValueCore()
   bei System.ComponentModel.Composition.Primitives.Export.get_Value()
   bei System.ComponentModel.Composition.ExportServices.GetCastedExportedValue[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]](System.ComponentModel.Composition.Primitives.Export)
   bei System.ComponentModel.Composition.Hosting.ExportProvider.GetExportedValuesCore[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]](System.String)
   bei Avira.OE.ServiceHost.ServiceHost.Initialize(System.Object)
   bei System.Threading.QueueUserWorkItemCallback.WaitCallback_Context(System.Object)
   bei System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   bei System.Threading.QueueUserWorkItemCallback.System.Threading.IThreadPoolWorkItem.ExecuteWorkItem()
   bei System.Threading.ThreadPoolWorkQueue.Dispatch()
   bei System.Threading._ThreadPoolWaitCallback.PerformWaitCallback()


System errors:
=============
Error: (06/06/2015 09:11:37 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "WinPcap Packet Driver (NPF)" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2

Error: (06/06/2015 09:11:37 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "WinPcap Packet Driver (NPF)" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2

Error: (06/06/2015 09:11:37 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "WinPcap Packet Driver (NPF)" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2

Error: (06/06/2015 09:11:37 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "WinPcap Packet Driver (NPF)" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2

Error: (06/06/2015 09:11:37 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "WinPcap Packet Driver (NPF)" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2

Error: (06/06/2015 09:11:37 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "WinPcap Packet Driver (NPF)" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2

Error: (06/06/2015 09:11:37 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "WinPcap Packet Driver (NPF)" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2

Error: (06/06/2015 09:11:37 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "WinPcap Packet Driver (NPF)" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2

Error: (06/06/2015 09:11:37 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "WinPcap Packet Driver (NPF)" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2

Error: (06/06/2015 09:11:37 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "WinPcap Packet Driver (NPF)" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2


Microsoft Office Sessions:
=========================
Error: (06/06/2015 09:02:01 AM) (Source: WTabletServiceCon)(User: )
Description: Prefs: Failed to get user path

Error: (06/06/2015 09:01:44 AM) (Source: .NET Runtime)(User: )
Description: Anwendung: Avira.OE.ServiceHost.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund eines Ausnahmefehlers beendet.
Ausnahmeinformationen: System.ComponentModel.Composition.CompositionException
Stapel:
   bei System.ComponentModel.Composition.Hosting.CompositionServices.GetExportedValueFromComposedPart(System.ComponentModel.Composition.Hosting.ImportEngine, System.ComponentModel.Composition.Primitives.ComposablePart, System.ComponentModel.Composition.Primitives.ExportDefinition)
   bei System.ComponentModel.Composition.Hosting.CatalogExportProvider.GetExportedValue(CatalogPart, System.ComponentModel.Composition.Primitives.ExportDefinition, Boolean)
   bei System.ComponentModel.Composition.Hosting.CatalogExportProvider+CatalogExport.GetExportedValueCore()
   bei System.ComponentModel.Composition.Primitives.Export.get_Value()
   bei System.ComponentModel.Composition.ExportServices.GetCastedExportedValue[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]](System.ComponentModel.Composition.Primitives.Export)
   bei System.ComponentModel.Composition.Hosting.ExportProvider.GetExportedValuesCore[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]](System.String)
   bei Avira.OE.ServiceHost.ServiceHost.Initialize(System.Object)
   bei System.Threading.QueueUserWorkItemCallback.WaitCallback_Context(System.Object)
   bei System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   bei System.Threading.QueueUserWorkItemCallback.System.Threading.IThreadPoolWorkItem.ExecuteWorkItem()
   bei System.Threading.ThreadPoolWorkQueue.Dispatch()
   bei System.Threading._ThreadPoolWaitCallback.PerformWaitCallback()

Error: (06/06/2015 09:01:35 AM) (Source: Application Error)(User: )
Description: Avira.OE.Systray.exe1.1.21.2518953fdd63bKERNELBASE.dll6.1.7601.18869556363bce04343520000c42de2801d0a0263cb0c07fC:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exeC:\Windows\syswow64\KERNELBASE.dllde0506b4-0c19-11e5-b4da-84d8280352c8

Error: (06/06/2015 09:01:32 AM) (Source: .NET Runtime)(User: )
Description: Anwendung: Avira.OE.ServiceHost.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund eines Ausnahmefehlers beendet.
Ausnahmeinformationen: System.ComponentModel.Composition.CompositionException
Stapel:
   bei System.ComponentModel.Composition.Hosting.CompositionServices.GetExportedValueFromComposedPart(System.ComponentModel.Composition.Hosting.ImportEngine, System.ComponentModel.Composition.Primitives.ComposablePart, System.ComponentModel.Composition.Primitives.ExportDefinition)
   bei System.ComponentModel.Composition.Hosting.CatalogExportProvider.GetExportedValue(CatalogPart, System.ComponentModel.Composition.Primitives.ExportDefinition, Boolean)
   bei System.ComponentModel.Composition.Hosting.CatalogExportProvider+CatalogExport.GetExportedValueCore()
   bei System.ComponentModel.Composition.Primitives.Export.get_Value()
   bei System.ComponentModel.Composition.ExportServices.GetCastedExportedValue[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]](System.ComponentModel.Composition.Primitives.Export)
   bei System.ComponentModel.Composition.Hosting.ExportProvider.GetExportedValuesCore[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]](System.String)
   bei Avira.OE.ServiceHost.ServiceHost.Initialize(System.Object)
   bei System.Threading.QueueUserWorkItemCallback.WaitCallback_Context(System.Object)
   bei System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   bei System.Threading.QueueUserWorkItemCallback.System.Threading.IThreadPoolWorkItem.ExecuteWorkItem()
   bei System.Threading.ThreadPoolWorkQueue.Dispatch()
   bei System.Threading._ThreadPoolWaitCallback.PerformWaitCallback()

Error: (06/06/2015 09:01:14 AM) (Source: .NET Runtime)(User: )
Description: Anwendung: Avira.OE.Systray.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund eines Ausnahmefehlers beendet.
Ausnahmeinformationen: System.BadImageFormatException
Stapel:
   bei Avira.OE.WinCore.Utility.LoggerFacade.GetLogger(System.String)
   bei Avira.OE.WinCore.Utility.LoggerFacade.GetCurrentClassLogger()
   bei Avira.OE.WinCore.Lazy`1[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]].get_Value()
   bei Avira.OE.WinCore.Utility.CommunicatorClientProxy.ConnectToCommunicator()
   bei Avira.OE.Systray.SystrayIcon..ctor(Avira.OE.WinCore.Interface.IServiceStatusMonitor, Avira.OE.Communicator.Interface.ICommunicatorClientProxy, Avira.OE.MiniGui.IMiniGuiWindow)
   bei Avira.OE.Systray.SystrayIcon..ctor()
   bei Avira.OE.Systray.Program.Main(System.String[])

Error: (06/06/2015 09:01:03 AM) (Source: .NET Runtime)(User: )
Description: Anwendung: Avira.OE.ServiceHost.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund eines Ausnahmefehlers beendet.
Ausnahmeinformationen: System.ComponentModel.Composition.CompositionException
Stapel:
   bei System.ComponentModel.Composition.Hosting.CompositionServices.GetExportedValueFromComposedPart(System.ComponentModel.Composition.Hosting.ImportEngine, System.ComponentModel.Composition.Primitives.ComposablePart, System.ComponentModel.Composition.Primitives.ExportDefinition)
   bei System.ComponentModel.Composition.Hosting.CatalogExportProvider.GetExportedValue(CatalogPart, System.ComponentModel.Composition.Primitives.ExportDefinition, Boolean)
   bei System.ComponentModel.Composition.Hosting.CatalogExportProvider+CatalogExport.GetExportedValueCore()
   bei System.ComponentModel.Composition.Primitives.Export.get_Value()
   bei System.ComponentModel.Composition.ExportServices.GetCastedExportedValue[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]](System.ComponentModel.Composition.Primitives.Export)
   bei System.ComponentModel.Composition.Hosting.ExportProvider.GetExportedValuesCore[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]](System.String)
   bei Avira.OE.ServiceHost.ServiceHost.Initialize(System.Object)
   bei System.Threading.QueueUserWorkItemCallback.WaitCallback_Context(System.Object)
   bei System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   bei System.Threading.QueueUserWorkItemCallback.System.Threading.IThreadPoolWorkItem.ExecuteWorkItem()
   bei System.Threading.ThreadPoolWorkQueue.Dispatch()
   bei System.Threading._ThreadPoolWaitCallback.PerformWaitCallback()

Error: (06/05/2015 01:34:02 PM) (Source: Application Error)(User: )
Description: Avira.OE.Systray.exe1.1.21.2518953fdd63bKERNELBASE.dll6.1.7601.18869556363bce04343520000c42d89401d09f836c8f965aC:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exeC:\Windows\syswow64\KERNELBASE.dllc35e48bf-0b76-11e5-9efa-c682f9b717dd

Error: (06/05/2015 01:33:46 PM) (Source: .NET Runtime)(User: )
Description: Anwendung: Avira.OE.Systray.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund eines Ausnahmefehlers beendet.
Ausnahmeinformationen: System.BadImageFormatException
Stapel:
   bei Avira.OE.WinCore.Utility.LoggerFacade.GetLogger(System.String)
   bei Avira.OE.WinCore.Utility.LoggerFacade.GetCurrentClassLogger()
   bei Avira.OE.WinCore.Lazy`1[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]].get_Value()
   bei Avira.OE.WinCore.Utility.CommunicatorClientProxy.ConnectToCommunicator()
   bei Avira.OE.Systray.SystrayIcon..ctor(Avira.OE.WinCore.Interface.IServiceStatusMonitor, Avira.OE.Communicator.Interface.ICommunicatorClientProxy, Avira.OE.MiniGui.IMiniGuiWindow)
   bei Avira.OE.Systray.SystrayIcon..ctor()
   bei Avira.OE.Systray.Program.Main(System.String[])

Error: (06/05/2015 01:30:11 PM) (Source: .NET Runtime)(User: )
Description: Anwendung: Avira.OE.ServiceHost.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund eines Ausnahmefehlers beendet.
Ausnahmeinformationen: System.ComponentModel.Composition.CompositionException
Stapel:
   bei System.ComponentModel.Composition.Hosting.CompositionServices.GetExportedValueFromComposedPart(System.ComponentModel.Composition.Hosting.ImportEngine, System.ComponentModel.Composition.Primitives.ComposablePart, System.ComponentModel.Composition.Primitives.ExportDefinition)
   bei System.ComponentModel.Composition.Hosting.CatalogExportProvider.GetExportedValue(CatalogPart, System.ComponentModel.Composition.Primitives.ExportDefinition, Boolean)
   bei System.ComponentModel.Composition.Hosting.CatalogExportProvider+CatalogExport.GetExportedValueCore()
   bei System.ComponentModel.Composition.Primitives.Export.get_Value()
   bei System.ComponentModel.Composition.ExportServices.GetCastedExportedValue[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]](System.ComponentModel.Composition.Primitives.Export)
   bei System.ComponentModel.Composition.Hosting.ExportProvider.GetExportedValuesCore[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]](System.String)
   bei Avira.OE.ServiceHost.ServiceHost.Initialize(System.Object)
   bei System.Threading.QueueUserWorkItemCallback.WaitCallback_Context(System.Object)
   bei System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   bei System.Threading.QueueUserWorkItemCallback.System.Threading.IThreadPoolWorkItem.ExecuteWorkItem()
   bei System.Threading.ThreadPoolWorkQueue.Dispatch()
   bei System.Threading._ThreadPoolWaitCallback.PerformWaitCallback()

Error: (06/05/2015 01:29:56 PM) (Source: .NET Runtime)(User: )
Description: Anwendung: Avira.OE.ServiceHost.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund eines Ausnahmefehlers beendet.
Ausnahmeinformationen: System.ComponentModel.Composition.CompositionException
Stapel:
   bei System.ComponentModel.Composition.Hosting.CompositionServices.GetExportedValueFromComposedPart(System.ComponentModel.Composition.Hosting.ImportEngine, System.ComponentModel.Composition.Primitives.ComposablePart, System.ComponentModel.Composition.Primitives.ExportDefinition)
   bei System.ComponentModel.Composition.Hosting.CatalogExportProvider.GetExportedValue(CatalogPart, System.ComponentModel.Composition.Primitives.ExportDefinition, Boolean)
   bei System.ComponentModel.Composition.Hosting.CatalogExportProvider+CatalogExport.GetExportedValueCore()
   bei System.ComponentModel.Composition.Primitives.Export.get_Value()
   bei System.ComponentModel.Composition.ExportServices.GetCastedExportedValue[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]](System.ComponentModel.Composition.Primitives.Export)
   bei System.ComponentModel.Composition.Hosting.ExportProvider.GetExportedValuesCore[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]](System.String)
   bei Avira.OE.ServiceHost.ServiceHost.Initialize(System.Object)
   bei System.Threading.QueueUserWorkItemCallback.WaitCallback_Context(System.Object)
   bei System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   bei System.Threading.QueueUserWorkItemCallback.System.Threading.IThreadPoolWorkItem.ExecuteWorkItem()
   bei System.Threading.ThreadPoolWorkQueue.Dispatch()
   bei System.Threading._ThreadPoolWaitCallback.PerformWaitCallback()


CodeIntegrity Errors:
===================================
  Date: 2014-11-23 23:37:28.159
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\hmpalert.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-11-23 23:26:55.129
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\hmpalert.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-11-23 23:03:26.160
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\hmpalert.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-11-23 22:56:43.886
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\hmpalert.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-11-23 21:30:41.998
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\hmpalert.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-11-23 20:57:39.539
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\hmpalert.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-11-23 20:34:23.295
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\hmpalert.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-11-23 20:27:28.263
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\hmpalert.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-11-23 20:20:10.717
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\hmpalert.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-11-23 19:57:33.625
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\hmpalert.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.


=========================== Installed Programs ============================

µTorrent (HKCU\...\uTorrent) (Version: 3.4.2.37248 - BitTorrent Inc.)
7 Days to Die (HKLM-x32\...\Steam App 251570) (Version:  - The Fun Pimps)
7-Zip 9.20 (HKLM-x32\...\7-Zip) (Version:  - )
7-Zip 9.22 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0922-000001000000}) (Version: 9.22.00.0 - Igor Pavlov)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 15.0.0.356 - Adobe Systems Incorporated)
Adobe Digital Editions 2.0 (HKLM-x32\...\Adobe Digital Editions 2.0) (Version: 2.0 - Adobe Systems Incorporated)
Adobe Flash Player 16 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 16.0.0.235 - Adobe Systems Incorporated)
Adobe Flash Player 16 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 16.0.0.305 - Adobe Systems Incorporated)
Adobe Flash Player 16 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 16.0.0.305 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.11) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.11 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.1 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.1.3.153 - Adobe Systems, Inc.)
Alcor Micro USB Card Reader (HKLM-x32\...\{1F7424F8-F992-48BC-90EF-7C4DB0405E3F}) (Version: 1.7.17.25416 - Ihr Firmenname) Hidden
Alcor Micro USB Card Reader (HKLM-x32\...\InstallShield_{1F7424F8-F992-48BC-90EF-7C4DB0405E3F}) (Version: 1.7.17.25416 - Ihr Firmenname)
Amnesia: The Dark Descent (HKLM-x32\...\Steam App 57300) (Version:  - )
ANNO 1503 (HKLM-x32\...\{EBBB1DEF-8878-4CB8-BC0D-1196B30E7527}) (Version: 1.05 - )
Anno 1701 (HKLM-x32\...\{A2433A63-5F5D-40E5-B529-9123C2B3E734}) (Version: 1.02 - Sunflowers)
Apple Application Support (HKLM-x32\...\{78002155-F025-4070-85B3-7C0453561701}) (Version: 3.0.6 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{6AF2AC2A-3532-43FD-9F4D-BDC9C0D724C7}) (Version: 7.1.2.6 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Arbortext IsoView 7.3 (HKLM-x32\...\{DE52A69A-978A-480A-82F7-E17C50F98EC6}) (Version: 7.3.10.22 - PTC) Hidden
Artweaver Free 3.0 (HKLM-x32\...\{96A9A1C8-FBAD-4703-ABF1-E93AA8FE85A0}_is1) (Version: 3.0 - Boris Eyrich Software)
ASUS AI Recovery (HKLM-x32\...\{38253529-D97D-4901-AE53-5CC9736D3A2E}) (Version: 1.0.13 - ASUS)
ASUS FancyStart (HKLM-x32\...\{2B81872B-A054-48DA-BE3B-FA5C164C303A}) (Version: 1.0.8 - ASUSTeK Computer Inc.)
ASUS Power4Gear Hybrid (HKLM\...\{9B6239BF-4E85-4590-8D72-51E30DB1A9AA}) (Version: 1.1.43 - ASUS)
ASUS SmartLogon (HKLM-x32\...\{64452561-169F-4A36-A2FF-B5E118EC65F5}) (Version: 1.0.0008 - ASUS)
ATK Package (HKLM-x32\...\{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}) (Version: 1.0.0007 - ASUS)
Attack Surface Analyzer (HKLM\...\{2710505A-D198-4906-8767-F869909D9FA6}) (Version: 5.3.0.0 - Microsoft Corporation)
Audacity 2.0.5 (HKLM-x32\...\Audacity_is1) (Version: 2.0.5 - Audacity Team)
Audiosurf (HKLM-x32\...\Steam App 12900) (Version:  - BestGameEver)
Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 10.2.2218 - AVAST Software)
Avira (HKLM-x32\...\{1CA8266F-73D8-413A-94DF-EEAC92770AD7}) (Version: 1.1.21.25162 - Avira Operations GmbH & Co. KG) Hidden
Avira (HKLM-x32\...\{70e83cd8-4bd5-4039-ab5a-6b94a8abb641}) (Version: 1.1.21.25162 - Avira Operations GmbH & Co. KG)
Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.10.434 - Avira Operations GmbH & Co. KG)
Bamboo Dock (HKLM-x32\...\{90DFD61B-8224-00C6-3D69-A983B60A394E}) (Version: 4.1.0 - Wacom Europe GmbH) Hidden
Bamboo Dock (HKLM-x32\...\Bamboo Dock) (Version: 4.1 - Wacom Co., Ltd.)
Bamboo Dock (HKLM-x32\...\wacomid-desktop-launcher.DCFD4B89A63EE70BC162777F06D4B93B6397AEC7.1) (Version: 4.1.0 - Wacom Europe GmbH) Hidden
Bamboo Tablets Tutorial (HKLM-x32\...\{6E0C3C3D-CF8A-4AEC-AD6C-B4486A96BE8E}) (Version: 3.0.20 - Wacom) Hidden
Bastion (HKLM-x32\...\Steam App 107100) (Version:  - Supergiant Games)
Battle.net (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
Battlefield 3™ (HKLM-x32\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: 1.6.0.0 - Electronic Arts)
Battlestations: Midway (HKLM-x32\...\{6BC0CDD6-E0C2-434D-9365-23E79E42DA95}) (Version: 1.00.0000 - Ihr Firmenname)
Beat Hazard Ultra (HKLM-x32\...\BeatHazardUltra) (Version:  - )
Besiege (HKLM-x32\...\Steam App 346010) (Version:  - Spiderling Studios)
Bibliothèques de noyaux mathématiques (64 bits) (HKLM\...\{112D8201-03A2-43B2-861B-EB3FCB855547}) (Version: 13.0.13 - National Instruments) Hidden
Bibliothèques de noyaux mathématiques (64 bits) (HKLM\...\{56B02DF2-C570-43E0-A16A-C6A1CE4AD7FB}) (Version: 1.0.31.0 - National Instruments) Hidden
Bibliothèques de noyaux mathématiques (HKLM-x32\...\{9BA528A0-F33B-4162-993A-538CF56A005E}) (Version: 1.0.31.0 - National Instruments) Hidden
Bibliothèques de noyaux mathématiques (HKLM-x32\...\{E71784F9-5B67-4052-A5FC-55C038396936}) (Version: 13.0.13 - National Instruments) Hidden
BioWare Premium Module: Neverwinter Nights™ Kingmaker (HKLM-x32\...\Neverwinter Nights™ Kingmaker) (Version:  - BioWare Corp.)
BIT.TRIP BEAT (HKLM-x32\...\Steam App 63700) (Version:  - Gaijin Games)
Black Ink Demo (HKLM-x32\...\Steam App 249970) (Version:  - Bleank)
Blender (HKLM\...\Blender) (Version: 2.70a - Blender Foundation)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Borderlands (HKLM-x32\...\{52B65911-1559-4ED5-9461-46957FDD48CD}) (Version: 1.0.295 - 2K Games)
Borderlands 2 (HKLM-x32\...\Steam App 49520) (Version:  - Gearbox Software)
CCleaner (HKLM\...\CCleaner) (Version: 4.13 - Piriform)
CodeBlocks (HKCU\...\CodeBlocks) (Version: 13.12 - The Code::Blocks Team)
Cogs (HKLM-x32\...\Steam App 26500) (Version:  - Lazy 8 Studios)
Company of Heroes: Opposing Fronts (HKLM-x32\...\Steam App 9340) (Version:  - Relic Entertainment)
Conteneur ActiveX NI (64 bits) (HKLM\...\{63B6ADAB-AB1B-4542-911D-C15FFBD5E1BE}) (Version: 13.0.4 - National Instruments) Hidden
Conteneur ActiveX NI (HKLM-x32\...\{53606225-A1A8-4A74-BA4B-00206F38DB60}) (Version: 13.0.4 - National Instruments) Hidden
Counter-Strike: Condition Zero (HKLM-x32\...\Steam App 80) (Version:  - Valve)
Creo (suite complète) pour la PFM (HKLM-x32\...\Creo-PFM) (Version: 20141217 - PFM, INSA de Strasbourg - PTC)
Creo Direct Version 2.0 Datecode [M110] (HKLM-x32\...\Creo Direct Version 2.0 Datecode [M110]) (Version: 2.0 - PTC) Hidden
Creo Help Version 2.0 Datecode [M110] (HKLM-x32\...\Creo Help Version 2.0 Datecode [M110]) (Version: 2.0 - PTC) Hidden
Creo Layout Version 2.0 Datecode [M110] (HKLM-x32\...\Creo Layout Version 2.0 Datecode [M110]) (Version: 2.0 - PTC) Hidden
Creo Parametric Version 2.0 Datecode [M110] (HKLM-x32\...\Creo Parametric Version 2.0 Datecode [M110]) (Version: 2.0 - PTC) Hidden
Creo Platform 2.36 (HKLM-x32\...\{D9D4456A-70ED-45A4-8F17-731BCC8219C4}) (Version: 2.36.0 - PTC) Hidden
Creo Simulate Version 2.0 Datecode [M110] (HKLM-x32\...\Creo Simulate Version 2.0 Datecode [M110]) (Version: 2.0 - PTC) Hidden
Creo Thumbnail Viewer 2.0 (HKLM\...\{3F32CC58-EE4C-4AD6-B985-3C901A8DBD4C}) (Version: 30.14.090 - PTC) Hidden
Creo View Express 2.0 (HKLM\...\{03F6002E-A32B-4C68-818F-DEE386463FBC}) (Version: 10.1.40.15 - PTC) Hidden
CyberLink LabelPrint (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.1908 - CyberLink Corp.)
CyberLink Power2Go (HKLM-x32\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.1.3602c - CyberLink Corp.)
D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden
DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.48.1.0347 - Disc Soft Ltd)
DATA BECKER America Gold Edition (HKLM-x32\...\DATA BECKER America Gold Edition) (Version:  - )
Defense Grid: The Awakening (HKLM-x32\...\Steam App 18500) (Version:  - Hidden Path Entertainment)
Democracy 3 (HKLM-x32\...\Steam App 245470) (Version:  - Positech Games)
Don't Starve (HKLM-x32\...\Steam App 219740) (Version:  - Klei Entertainment)
Don't Starve Together Dedicated Server (HKLM-x32\...\Steam App 343050) (Version:  - )
Dropbox (HKCU\...\Dropbox) (Version: 3.4.6 - Dropbox, Inc.)
Dungeon and Dragons: Neverwinter Nights Complete (HKLM-x32\...\{053FFC87-C5BD-4B3C-9D3E-783902D83D21}) (Version: 1.0.0 - Atari)
Duplicate Cleaner Free 3.1.5 (HKLM-x32\...\Duplicate Cleaner Free) (Version: 3.1.5 - DigitalVolcano Software Ltd)
Eastern Front (HKLM-x32\...\Eastern Front) (Version: 1.7.0.2 - )
Empire Earth (HKLM-x32\...\{2447500B-22D7-47BD-9B13-1A927F43A267}) (Version:  - )
Empire Earth Patch 1.0.4.0 (HKLM-x32\...\Empire Earth Patch 1.0.4.0) (Version:  - )
Emsisoft Anti-Malware (HKLM-x32\...\{BC30E5E7-047D-4232-A7E8-F2CB7CC7B2E0}_is1) (Version: 8.1 - Emsisoft GmbH)
EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version:  - )
EPSON Stylus SX200 Series Printer Uninstall (HKLM\...\EPSON Stylus SX200 Series) (Version:  - SEIKO EPSON Corporation)
ETDWare PS/2-x64 7.0.5.15_WHQL (HKLM\...\Elantech) (Version: 7.0.5.15 - ELAN Microelectronics Corp.)
Eufloria (HKLM-x32\...\Steam App 41210) (Version:  - )
Eufloria HD (HKLM-x32\...\Steam App 221180) (Version:  - Rudolf Kremers &amp; Alex May)
Evochron Mercenary (HKLM-x32\...\Steam App 71000) (Version:  - )
Evochron Mercenary Server Program (HKLM-x32\...\Evochron Mercenary Server Program_is1) (Version:  - StarWraith 3D Games LLC)
Far Cry (Patch 1) (HKLM-x32\...\{D792A069-B96B-40BA-BCB4-E5651A6E5926}) (Version: 1.00.0000 - Nom de votre société) Hidden
Far Cry (Patch 1.3) (HKLM-x32\...\{21A127AE-2DAF-40B7-8374-34C3E629521C}) (Version: 1.00.0000 - Ubisoft) Hidden
Far Cry (Patch 1.31) (HKLM-x32\...\{EE8592F6-FC2B-4AFD-B527-109D127C039F}) (Version: 1.00.0000 - Ubisoft) Hidden
Far Cry (Patch 1.4) (HKLM-x32\...\{7EF15AAF-42AC-4CF6-B4B4-C4F0D1D92122}) (Version: 1.00.0000 - Ubisoft) Hidden
Far Cry (Patch 2) (HKLM-x32\...\{5FA88830-5B3D-497B-88B5-8DD82BB7BC74}) (Version: 1.00.0000 - Ubisoft) Hidden
Far Cry 2 (HKLM-x32\...\Steam App 19900) (Version:  - Ubisoft)
Fast Boot (HKLM\...\{13F4A7F3-EABC-4261-AF6B-1317777F0755}) (Version: 1.0.9 - ASUS)
FileZilla Client 3.7.3 (HKLM-x32\...\FileZilla Client) (Version: 3.7.3 - Tim Kosse)
Finale NotePad 2012 (HKLM-x32\...\Finale NotePad 2012) (Version: 2012..r1.1 - MakeMusic)
FMOD Programmers API Windows (HKLM-x32\...\FMOD Programmers API Windows) (Version:  - )
FMOD Studio (HKLM-x32\...\FMOD Studio) (Version:  - )
Fotogalerie (HKLM-x32\...\{41BF4A3B-D60A-4E92-883F-C88C8C157261}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Freelancer (HKLM-x32\...\Freelancer 1.0) (Version:  - )
Fresco Logic USB3.0 Host Controller (HKLM\...\{F041F6B3-BA65-41DD-9747-AD0BD2129A0F}) (Version: 3.0.114.13 - Fresco Logic Inc.)
GameRanger (HKCU\...\GameRanger) (Version:  - GameRanger Technologies)
Garry's Mod (HKLM-x32\...\Steam App 4000) (Version:  - Team Garry)
GDR 5520 für SQL Server 2008 (KB 2977321) (64-bit) (HKLM\...\KB2977321) (Version: 10.3.5520.0 - Microsoft Corporation)
GeoGebra (HKLM-x32\...\GeoGebra) (Version: 4.0.32.0 - International GeoGebra Institute)
Gestionnaire de systèmes distribués NI 2013 (HKLM-x32\...\{FEA545A1-9CAA-415E-81D8-49951ED44F22}) (Version: 13.0.338 - National Instruments) Hidden
GIMP 2.8.4 (HKLM\...\GIMP-2_is1) (Version: 2.8.4 - The GIMP Team)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 36.0.1985.143 - Google Inc.)
Guild 2 Patch (HKLM-x32\...\{E9E09EAA-0FF8-42A1-ACAB-67F2A691E50F}) (Version: 1.0.0 - JoWood)
Guild Wars 2 (HKLM-x32\...\Guild Wars 2) (Version:  - NCsoft Corporation, Ltd.)
Hearthstone (HKLM-x32\...\Hearthstone) (Version:  - Blizzard Entertainment)
Hotline Miami (HKLM-x32\...\Steam App 219150) (Version:  - )
HTC Driver Installer (HKLM-x32\...\{4CEEE5D0-F905-4688-B9F9-ECC710507796}) (Version: 4.0.1.001 - HTC Corporation)
Hugin 2012.0.0 (HKLM-x32\...\Hugin) (Version: 2012.0.0 hg_a6e4184ad538 - The Hugin Development Team)
HxD Hex Editor Version 1.7.7.0 (HKLM-x32\...\HxD Hex Editor_is1) (Version: 1.7.7.0 - Maël Hörz)
ibb & obb (HKLM-x32\...\Steam App 95400) (Version:  - Sparpweed)
IDA Pro Free v5.0 (HKLM-x32\...\IDA Pro Free_is1) (Version:  - Hex-Rays SA)
Inkscape 0.48.2 (HKLM-x32\...\Inkscape) (Version: 0.48.2 - )
Innotiv Spekan Purge Tool 3.3 (HKLM\...\Innotiv Spekan Purge Tool_is1) (Version: 3.3 - Innotiv Spekan Consulting Services)
Intel® Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation)
Intel® Media SDK 2012 (x64) (HKLM\...\{D4527AD3-8757-4A1D-BE5F-B8F86EDD5933}) (Version: 3.0.774.38156 - Intel Corporation)
Intel® Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.3347 - Intel Corporation)
Intel® PROSet/Wireless for Bluetooth® + High Speed (HKLM\...\{BEE86606-EFB5-4353-9F34-29E0C59CDCFA}) (Version: 15.2.0.0284 - Intel Corporation)
Intel® SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation)
Intel® Wireless Display (HKLM\...\{C298FF86-AB23-4B58-AC53-A23383C07B3A}) (Version: 1.2.20.0 - Intel Corporation)
Intel® PROSet/Wireless WiFi-Software (HKLM\...\{181BBF43-CA17-4E1A-A78D-81E67A57B8A4}) (Version: 15.02.0000.1258 - Intel Corporation)
IONCROSS Freelancer Server Operator (HKLM-x32\...\IONCROSS Freelancer Server Operator) (Version:  - )
IPTInstaller (HKLM-x32\...\{08208143-777D-4A06-BB54-71BF0AD1BB70}) (Version: 4.0.8 - HTC)
iTunes (HKLM\...\{77DE5105-D05E-448C-96CB-7FA381903753}) (Version: 11.3.1.2 - Apple Inc.)
IVI Shared Component 64-bit (HKLM\...\{F35499BF-B4E7-4C3F-8769-229D9DE3E07E}) (Version: 2.21.49152 - IVI Foundation Inc.) Hidden
IVI Shared Components 2.2.1 (HKLM-x32\...\IviSharedComponent) (Version: 2.21.49152 - IVI Foundation)
Java 7 Update 65 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F06417065FF}) (Version: 7.0.650 - Oracle)
Java 7 Update 67 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217067FF}) (Version: 7.0.670 - Oracle)
Java 8 Update 25 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418025F0}) (Version: 8.0.250 - Oracle Corporation)
Java 8 Update 25 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218025F0}) (Version: 8.0.250 - Oracle Corporation)
Java™ 6 Update 31 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83216031FF}) (Version: 6.0.310 - Oracle)
Kobo (HKLM-x32\...\Kobo) (Version: /Qt-5.2.0 - Kobo Inc.)
KUDOS RS Gaming Mouse (HKLM-x32\...\SPEEDLINK KUDOS) (Version:  - )
La Bataille pour la Terre du Milieu™ II (HKLM-x32\...\{2A9F95AB-65A3-432c-8631-B8BC5BF7477A}) (Version:  - )
La Galère des Etoiles (HKLM-x32\...\La Galère des Etoiles) (Version:  - )
LAME v3.98.3 for Audacity (HKLM-x32\...\LAME for Audacity_is1) (Version:  - )
L'Avènement du Roi-sorcier™ (HKLM-x32\...\{B931FB80-537A-4600-00AD-AC5DEDB6C25B}) (Version:  - )
Le Maître de l'Olympe - Zeus. (HKLM-x32\...\Le Maître de l'Olympe - Zeus.) (Version:  - )
Le Maître de l'Olympe et le Maître de l'Atlandide (HKLM-x32\...\{8043219B-D2C0-4561-90AB-3F1113ED5A87}) (Version:  - )
League of Legends (HKLM-x32\...\{517CC397-B22F-4593-8DCB-DE72CC541E9A}) (Version: 3.0.1 - Riot Games ) Hidden
League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games )
Les Sims™ 3 (HKLM-x32\...\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}) (Version: 1.67.2 - Electronic Arts)
Les Sims™ 3 Accès VIP (HKLM-x32\...\{45057FCE-5784-48BE-8176-D9D00AF56C3C}) (Version: 6.5.1 - Electronic Arts)
Les Sims™ 3 Inspiration Loft Kit (HKLM-x32\...\{71828142-5A24-4BD0-97E7-976DA08CE6CF}) (Version: 3.0.38 - Electronic Arts)
LibreOffice 4.3.5.2 (HKLM-x32\...\{1D4E90DA-C33C-40ED-BA00-75F6E6DF9CB0}) (Version: 4.3.5.2 - The Document Foundation)
Licence pour le déploiement de NI LabVIEW 2013 (HKLM-x32\...\{87287A3C-0D30-42CE-867A-C595BE8C1721}) (Version: 13.0.303 - National Instruments) Hidden
Little Inferno 1.2 (HKLM-x32\...\{D3D39D29-432D-4151-BA0E-77FB6A115CD3}) (Version: 1.2.0 - Tomorrow Corporation)
LogMeIn Hamachi (HKLM-x32\...\{80EE9168-BB59-4F87-BF1A-57C137EAF714}) (Version: 2.2.0.328 - LogMeIn, Inc.) Hidden
LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.328 - LogMeIn, Inc.)
Magicka (HKLM-x32\...\Steam App 42910) (Version:  - Arrowhead Game Studios AB)
Malwarebytes Anti-Malware Version 2.1.6.1022 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.6.1022 - Malwarebytes Corporation)
MATLAB R2011a (HKLM\...\MatlabR2011a) (Version: 7.12 - The MathWorks, Inc.)
Microsoft .NET Framework 4 Multi-Targeting Pack (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 (Français) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1036) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Chart Controls for Microsoft .NET Framework 3.5 (KB2500170) (HKLM-x32\...\{41785C66-90F2-40CE-8CB5-1C94BFC97280}) (Version: 3.5.30730.0 - Microsoft Corporation)
Microsoft Flight (HKLM-x32\...\Steam App 203850) (Version:  - )
Microsoft Help Viewer 1.1 (HKLM\...\Microsoft Help Viewer 1.1) (Version: 1.1.40219 - Microsoft Corporation)
Microsoft Help Viewer 1.1 Language Pack - FRA (HKLM\...\Microsoft Help Viewer 1.1 Language Pack - FRA) (Version: 1.1.40219 - Microsoft Corporation)
Microsoft Office Home and Student 2010 (HKLM-x32\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Office Klick-und-Los 2010 (HKLM-x32\...\Office14.Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40416.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft SQL Server 2008 (64-bit) (HKLM\...\Microsoft SQL Server 10 Release) (Version:  - Microsoft Corporation)
Microsoft SQL Server 2008 Browser (HKLM-x32\...\{4401409D-25F1-4E85-8A3C-6BA6FFCFBFED}) (Version: 10.3.5500.0 - Microsoft Corporation)
Microsoft SQL Server 2008 Native Client (HKLM\...\{C53DEA03-3F2F-4CB7-895D-C4EE96571EA9}) (Version: 10.3.5500.0 - Microsoft Corporation)
Microsoft SQL Server 2008 Setup Support Files  (HKLM\...\{393CA5BF-0362-42FD-ABC2-BA9D22EF925E}) (Version: 10.3.5520.0 - Microsoft Corporation)
Microsoft SQL Server Compact 3.5 SP2 FRA (HKLM-x32\...\{AF6919D0-5691-4F35-9D65-54F981013514}) (Version: 3.5.8080.0 - Microsoft Corporation)
Microsoft SQL Server Compact 3.5 SP2 x64 FRA (HKLM\...\{2906A05E-2D38-4B47-85A2-D3485E372C8F}) (Version: 3.5.8080.0 - Microsoft Corporation)
Microsoft SQL Server System CLR Types (HKLM-x32\...\{531D566F-F5A9-4DE5-B839-8B1320D2830E}) (Version: 10.50.1750.9 - Microsoft Corporation)
Microsoft SQL Server VSS Writer (HKLM\...\{4E99A992-BF07-48AE-B0C6-5500F54EA3DA}) (Version: 10.3.5500.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Runtime - 10.0.40219 (HKLM\...\{1C7C8AAF-A16D-32E8-89E5-F6D165DE0BCE}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Runtime - 10.0.40219 (HKLM-x32\...\{5D9ED403-94DE-3BA0-B1D6-71F4BDA412E6}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Express Prerequisites x64 - FRA (HKLM\...\{F48F43AA-721D-335F-9CA2-01D910104560}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual Studio 2010 Service Pack 1 (HKLM-x32\...\Microsoft Visual Studio 2010 Service Pack 1) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.)
Microsoft XNA Framework Redistributable 3.1 (HKLM-x32\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation)
Microsoft Project Professionnel 2010 (HKLM-x32\...\Office14.PRJPROR) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft-Maus- und Tastatur-Center (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 2.3.188.0 - Microsoft Corporation)
MiKTeX 2.9 (HKLM-x32\...\MiKTeX 2.9) (Version: 2.9 - MiKTeX.org)
Mirror's Edge (HKLM-x32\...\Steam App 17410) (Version:  - DICE)
Moteur de variables NI 2.6.0 (HKLM-x32\...\{639C20B2-5F6C-4139-96EA-A206EEA6F995}) (Version: 2.7.297 - National Instruments) Hidden
Moteur d'exécution de Configuration système NI 5.5.0 (HKLM-x32\...\{FCBEDF17-375A-4963-B6BC-B8DD66036D2F}) (Version: 5.50.226 - National Instruments) Hidden
Moteur d'exécution de NI LabVIEW 2011 SP1 (HKLM-x32\...\{1D78A81A-58D9-46F7-BFF6-ADF7247803F9}) (Version: 11.0.448.0 - National Instruments) Hidden
Moteur d'exécution de NI LabVIEW 2012 SP1 f3 (HKLM-x32\...\{5157CC53-EB17-4E69-A5C9-73E5695198B1}) (Version: 12.1.58.0 - National Instruments) Hidden
Mount & Blade (HKLM-x32\...\Steam App 22100) (Version:  - Paradox Interactive)
Mount & Blade: Warband (HKLM-x32\...\Steam App 48700) (Version:  - Taleworlds Entertainment)
Mount & Blade: With Fire and Sword (HKLM-x32\...\Steam App 48720) (Version:  - )
Movie Maker (HKLM-x32\...\{70C91B91-61E8-4D06-86D6-A9DCC291983A}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Movie Maker (HKLM-x32\...\{DD67BE4B-7E62-4215-AFA3-F123A800A389}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Mozilla Firefox 38.0.5 (x86 de) (HKLM-x32\...\Mozilla Firefox 38.0.5 (x86 de)) (Version: 38.0.5 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 31.0 - Mozilla)
Mozilla Thunderbird 31.7.0 (x86 fr) (HKLM-x32\...\Mozilla Thunderbird 31.7.0 (x86 fr)) (Version: 31.7.0 - Mozilla)
MSI Afterburner 4.1.0 (HKLM-x32\...\Afterburner) (Version: 4.1.0 - MSI Co., LTD)
MSXML 4.0 SP3 Parser (KB2721691) (HKLM-x32\...\{355B5AC0-CEEE-42C5-AD4D-7F3CFD806C36}) (Version: 4.30.2114.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB973685) (HKLM-x32\...\{859DFA95-E4A6-48CD-B88E-A3E483E89B44}) (Version: 4.30.2107.0 - Microsoft Corporation)
National Instruments - Software (HKLM-x32\...\NI Uninstaller) (Version:  - National Instruments)
NBFifo NI LabVIEW Real-Time 2012 (HKLM-x32\...\{B4A772D4-ED42-4484-8C0E-663A52D07A2F}) (Version: 12.0.219.0 - National Instruments) Hidden
NBFifo NI LabVIEW Real-Time 2012 (HKLM-x32\...\{EEDB0927-3BD8-4349-856E-425A146CC680}) (Version: 13.0.336 - National Instruments) Hidden
Need for Speed™ Most Wanted (HKLM-x32\...\{A48B9CD8-C2BA-4EC9-0081-7260D238C7CF}) (Version:  - )
Nero Info (HKLM-x32\...\{B791E0AB-87A9-41A4-8D98-D13C2E37D928}) (Version: 15.1.0030 - Nero AG)
Nero Kwik Media (HKLM-x32\...\{E3749996-2D35-4591-B06A-4F62F2A5E18E}) (Version: 11.2.01100 - Nero AG)
Nero MediaHome Free (HKLM-x32\...\{AD35CA78-52F0-4A86-B672-0EF769752CEB}) (Version: 15.0.04700 - Nero AG)
Neverwinter Nights (HKLM-x32\...\{23F2AD64-EAB3-4C01-AECA-33FBA6C7BFCD}) (Version:  - )
Nexus Mod Manager (HKLM\...\6af12c54-643b-4752-87d0-8335503010de_is1) (Version: 0.49.6 - Black Tree Gaming)
NI .NET Framework 4.0 (HKLM-x32\...\{5CC95D76-A798-4722-AE76-E494D9664907}) (Version: 4.01.49152 - National Instruments) Hidden
NI AFW Channel Configuration Tool (HKLM-x32\...\{E1AF2E20-5BF9-489E-A34B-49580BCA6497}) (Version: 9.0.143 - National Instruments) Hidden
NI AFW Custom UI (HKLM-x32\...\{5676683A-F1F3-469A-BE50-71747F5C8072}) (Version: 9.0.143 - National Instruments) Hidden
NI AFW Custom UI Assemblies (HKLM-x32\...\{1D4D8FA8-2ACD-40AD-9BAE-1F2236BD3774}) (Version: 9.0.143 - National Instruments) Hidden
NI AFW UI Assemblies (HKLM-x32\...\{76AEC6E7-C888-4E25-B904-A1F6FC9E69C0}) (Version: 9.0.143 - National Instruments) Hidden
NI Assistant Framework (HKLM-x32\...\{4823D63E-2F23-462E-A124-483EB0220C76}) (Version: 9.0.143 - National Instruments) Hidden
NI Assistant Framework 64-bit (HKLM\...\{4E1321FD-9B77-44A0-A8F8-856815928A9C}) (Version: 9.0.143 - National Instruments) Hidden
NI Assistant Framework LabVIEW 2013 Support (HKLM-x32\...\{438C89DD-4603-4324-8F36-BAD073F88B58}) (Version: 9.0.107 - National Instruments) Hidden
NI Assistant Framework LabVIEW Code Generator 2013 (HKLM-x32\...\{1A535E17-6E6D-4CC7-AEE8-433103B599D6}) (Version: 9.0.107 - National Instruments) Hidden
NI Authentication 13.0.0 (64-bit) (HKLM\...\{2BF63B6D-6B44-46D5-8F2C-5BFBC78D9593}) (Version: 13.0.326 - National Instruments) Hidden
NI Authentication 13.0.0 (HKLM-x32\...\{6CB3DA3D-C753-423D-AB3B-670C5C2FE6C4}) (Version: 13.0.326 - National Instruments) Hidden
NI Certificates Deployment Support (HKLM-x32\...\{44ABC0C0-CB66-4120-BBA5-70514745109F}) (Version: 1.03.49152 - National Instruments) Hidden
NI Circuit Design Suite 12.0.1 Core (HKLM-x32\...\{3A06B1D8-C3FE-4F94-BA6E-4BCCD57E7276}) (Version: 12.0.923 - National Instruments) Hidden
NI Circuit Design Suite 12.0.1 Edu Licenses (HKLM-x32\...\{8049D63B-5F27-4F95-AC5D-944A99C2EA52}) (Version: 12.0.923 - National Instruments) Hidden
NI Circuit Design Suite 12.0.1 Education (HKLM-x32\...\{B268BA39-4FEE-4FAF-BE3F-6922AE93E684}) (Version: 12.0.923 - National Instruments) Hidden
NI CodeSignAPI (HKLM-x32\...\{E1D60C68-016C-4951-8C1F-52E24DFE7836}) (Version: 2.70.346 - National Instruments) Hidden
NI Control Design Assistant 2013 (HKLM-x32\...\{E68E2DC4-3C25-45C0-B356-4FA083378F16}) (Version: 13.0.229 - National Instruments) Hidden
NI Curl 13.0.0 (64-bit) (HKLM\...\{E957A395-E199-4B35-B06A-FF7CBA66B953}) (Version: 13.0.324 - National Instruments) Hidden
NI Curl 13.0.0 (HKLM-x32\...\{2DD33997-3C3E-4517-9D98-0CC5802D6D53}) (Version: 13.0.324 - National Instruments) Hidden
NI DataSocket 5.1 (64 bits) (HKLM\...\{3EE48061-4008-4429-854D-90EC62074C5D}) (Version: 5.1.227 - National Instruments) Hidden
NI DataSocket 5.1 (HKLM-x32\...\{88098056-C07B-4264-A824-C90D5BF3935E}) (Version: 5.1.227 - National Instruments) Hidden
NI Enhanced DSC Deployment Support for LabVIEW 2011 SP1 (HKLM-x32\...\{04B5A1A4-9746-4073-AFCA-12BBD98DAE4A}) (Version: 11.0.419.0 - National Instruments) Hidden
NI Error Reporting Interface Installer 5.5 (HKLM-x32\...\{843AA365-C682-4540-9E7C-9B9A10C6A539}) (Version: 5.50.49152 - National Instruments) Hidden
NI Error Reporting Interface Installer 5.5 for Windows 64-bit (HKLM\...\{817746FE-367D-4BA3-9ABF-D2214D0E5E33}) (Version: 5.50.49152 - National Instruments) Hidden
NI EulaDepot (HKLM-x32\...\{18468218-DFBA-4B46-B67E-02B8E9E392C1}) (Version: 3.20.361 - National Instruments) Hidden
NI Example Finder 13.0 (HKLM-x32\...\{4A1BCB81-2F91-451D-BEC6-59FAB0ADB8F0}) (Version: 13.0.324 - National Instruments) Hidden
NI GMP Windows 32-bit Installer 13.0.0 (HKLM-x32\...\{0AF8A008-7141-40DD-BB99-10B7F0C4769A}) (Version: 13.0.45.0 - National Instruments) Hidden
NI GMP Windows 64-bit Installer 13.0.0 (HKLM\...\{00D12A70-7B79-4A14-80B5-F12626237DE7}) (Version: 13.0.45.0 - National Instruments) Hidden
NI Help Assistant 2.0 (64bit) (HKLM\...\{DDAAADDD-C57E-4731-A29C-133191587488}) (Version: 2.0.3 - National Instruments) Hidden
NI Help Assistant 2.0 (HKLM-x32\...\{C9A0D47F-9A68-4917-868C-79E384E4DEE6}) (Version: 2.0.3 - National Instruments) Hidden
NI Help Configuration Utility for VS2010 (HKLM-x32\...\{CC926A29-E0F8-4D66-BB5D-B79E02FCF08C}) (Version: 13.0.00167 - National Instruments) Hidden
NI Instrument IO Assistant for LabVIEW 2013 32-bit (HKLM-x32\...\{5AFBEB79-C105-4A13-9136-7830FB0616E4}) (Version: 1.0.14.0 - National Instruments) Hidden
NI IVI Class Driver LabVIEW 2013 Support (HKLM-x32\...\{54CDBD30-5A7E-4063-BA50-5345FF6CBC4F}) (Version: 4.60.49152 - National Instruments) Hidden
NI IVI Class Drivers (64-bit) (HKLM\...\{93A3DD41-0F6B-4410-A44D-96883DB1B6F0}) (Version: 6.60.49152 - National Instruments) Hidden
NI IVI Class Drivers (HKLM-x32\...\{E9470D1A-238D-4C12-B190-CF7C6ED0CB13}) (Version: 6.60.49152 - National Instruments) Hidden
NI IVI Class Simulation Drivers (64-bit) (HKLM\...\{0273C20E-23A9-418C-83D0-83880A71CFB6}) (Version: 4.60.49152 - National Instruments) Hidden
NI IVI Class Simulation Drivers (HKLM-x32\...\{337CB8FC-7E99-46CB-89B3-AB5819DD9864}) (Version: 4.60.49152 - National Instruments) Hidden
NI IVI Compliance Package 4.6 (64-bit) (HKLM\...\{3E0360AA-EBEE-48F8-B803-7AA8C5CA42D2}) (Version: 4.60.49152 - National Instruments) Hidden
NI IVI Compliance Package 4.6 (HKLM-x32\...\{69E0EEA9-6C49-4BA4-9340-06AA32D29945}) (Version: 4.60.49152 - National Instruments) Hidden
NI IVI Engine (64-bit) (HKLM\...\{65EB94B5-93BF-444F-B145-B0D4D52CB8BD}) (Version: 134.60.49152 - National Instruments) Hidden
NI IVI Engine (HKLM-x32\...\{DED10DA8-2B95-440F-90A1-6F3501D8961C}) (Version: 134.60.49152 - National Instruments) Hidden
NI IVI Online Help (HKLM-x32\...\{5B692443-94A8-4270-A381-76D9EB35CCD3}) (Version: 4.60.49152 - National Instruments) Hidden
NI IVI Provider for MAX (HKLM-x32\...\{1E01DA77-2270-41BD-9936-F6D061D7CB74}) (Version: 5.70.49152 - National Instruments) Hidden
NI LabVIEW 2010 Real-Time NBFifo (HKLM-x32\...\{2BC9B2CE-D569-4ADC-A8A0-170F2FD57139}) (Version: 10.0.214.0 - National Instruments) Hidden
NI LabVIEW 2011 Real-Time NBFifo (HKLM-x32\...\{7C6869BF-6CBE-4CB0-8869-2743B419343C}) (Version: 11.0.250.0 - National Instruments) Hidden
NI LabVIEW 2013 Control Design and Simulation Module (HKLM-x32\...\{4A5159E0-0DAF-4BB6-8585-043C2757ABD6}) (Version: 13.0.228 - National Instruments) Hidden
NI LabVIEW 2013 Control Design MathScript Support (HKLM-x32\...\{F95ACD1A-60A9-4823-BA78-ED64EBF480DD}) (Version: 13.0.228 - National Instruments) Hidden
NI LabVIEW 2013 Control Design Real-Time Support (HKLM-x32\...\{7B2A461A-7881-4728-879A-074521C42DD6}) (Version: 13.0.227 - National Instruments) Hidden
NI LabVIEW 2013 Control Design Shared VIs (HKLM-x32\...\{046AC651-0E34-4C69-88C3-882FD8636292}) (Version: 13.0.227 - National Instruments) Hidden
NI LabVIEW 2013 Deployment Framework (HKLM-x32\...\{EE372D3C-8CDE-4141-8DE9-05A0734B63E4}) (Version: 13.0.330 - National Instruments) Hidden
NI LabVIEW 2013 Digital Filter Design Toolkit (HKLM-x32\...\{054A7564-F590-4416-9833-9D510105AB20}) (Version: 13.0.56 - National Instruments) Hidden
NI LabVIEW 2013 Digital Filter Design Toolkit License (HKLM-x32\...\{2667E50C-3D48-4777-B91F-D3E5F5EEEBC3}) (Version: 13.0.69 - National Instruments) Hidden
NI LabVIEW 2013 Digital Filter Design Toolkit RT Support (HKLM-x32\...\{D1268D42-3199-46DF-8974-073042FE5106}) (Version: 13.0.57 - National Instruments) Hidden
NI LabVIEW 2013 f2 (HKLM-x32\...\{7D69FDCF-6AE6-4694-96BA-DBBA602B2E1B}) (Version: 13.0.339 - National Instruments) Hidden
NI LabVIEW 2013 français (32 bits) (HKLM-x32\...\{29E9C514-A2CC-4CDA-AE82-83892D84C4AD}) (Version: 13.0.113 - National Instruments) Hidden
NI LabVIEW 2013 français (32 bits) (HKLM-x32\...\{78FAE515-1E78-4353-A7A2-A6CEDC5A3374}) (Version: 13.0.113 - National Instruments) Hidden
NI LabVIEW 2013 français (32 bits) (HKLM-x32\...\{A4BABB6C-2B17-434D-BBE5-019BC65FF440}) (Version: 13.0.113 - National Instruments) Hidden
NI LabVIEW 2013 français (32 bits) (HKLM-x32\...\{AF396C2C-0794-46D7-B206-AEDBC3CA4977}) (Version: 13.0.113 - National Instruments) Hidden
NI LabVIEW 2013 français (32 bits) (HKLM-x32\...\{B4C53C93-4D03-4D22-9E4B-17CDDD7D4DFA}) (Version: 13.0.113 - National Instruments) Hidden
NI LabVIEW 2013 français (32 bits) (HKLM-x32\...\{B983C5F2-2B57-4E24-8E56-08E8EFF1121E}) (Version: 13.0.113 - National Instruments) Hidden
NI LabVIEW 2013 français (32 bits) (HKLM-x32\...\{C35FCA79-47CE-4A77-A812-BE002A62E99A}) (Version: 13.0.113 - National Instruments) Hidden
NI LabVIEW 2013 français (32 bits) (HKLM-x32\...\{CD995AD7-4082-45A0-AE22-ADB41E5BE1F7}) (Version: 13.0.113 - National Instruments) Hidden
NI LabVIEW 2013 français (32 bits) (HKLM-x32\...\{D9EDF0F7-EC3B-404A-BD15-4E7032D70923}) (Version: 13.0.113 - National Instruments) Hidden
NI LabVIEW 2013 Help (HKLM-x32\...\{617324AA-97E3-4CF0-A73F-C061E1526C5B}) (Version: 13.0.114 - National Instruments) Hidden
NI LabVIEW 2013 Help File (HKLM-x32\...\{B0D9DFEE-6678-4EFA-909E-CDFAC1A967FB}) (Version: 13.0.299 - National Instruments) Hidden
NI LabVIEW 2013 LEGO® MINDSTORMS® NXT Module (HKLM-x32\...\{AE141793-5F4F-494E-932C-66CFE18A04D5}) (Version: 13.0.30 - National Instruments) Hidden
NI LabVIEW 2013 License (HKLM-x32\...\{FFB33CD3-1CE4-401B-BA96-3F6CDBA31F6B}) (Version: 13.0.342 - National Instruments) Hidden
NI LabVIEW 2013 Manuals (HKLM-x32\...\{3E8ED003-399E-482C-8178-6C19938CEFA9}) (Version: 13.0.112 - National Instruments) Hidden
NI LabVIEW 2013 MathScript RT Module (HKLM-x32\...\{A1554952-CD0C-4EFA-A97A-E971CFA95589}) (Version: 13.0.217 - National Instruments) Hidden
NI LabVIEW 2013 MathScript RT Module (HKLM-x32\...\{ACA94B3F-D74D-407B-B289-F48878C67DB6}) (Version: 13.0.45 - National Instruments) Hidden
NI LabVIEW 2013 MathScript RT Module License (HKLM-x32\...\{693B39A1-9855-4343-9363-AD14ABA11FA1}) (Version: 13.0.209 - National Instruments) Hidden
NI LabVIEW 2013 MeasAppChm File (HKLM-x32\...\{C66AFA34-E93D-4B4E-8944-F29988D915F3}) (Version: 13.0.299 - National Instruments) Hidden
NI LabVIEW 2013 Real-Time Error Dialog (HKLM-x32\...\{EA289B2D-80CE-486A-935D-FC3F088AB5C7}) (Version: 13.0.123 - National Instruments) Hidden
NI LabVIEW 2013 Scripting Code Generator (HKLM-x32\...\{841CC81E-6023-4795-BB9E-7A8EE31BB0BD}) (Version: 9.0.172 - National Instruments) Hidden
NI LabVIEW 2013 Search (HKLM-x32\...\{22E5FA11-6167-4DC5-89E2-27641105B780}) (Version: 13.0.16 - National Instruments) Hidden
NI LabVIEW 2013 Simulation (HKLM-x32\...\{5C26D671-05A5-4788-B75B-161EBC91EFE4}) (Version: 13.0.327 - National Instruments) Hidden
NI LabVIEW 2013 System Identification Toolkit (HKLM-x32\...\{BE2CE11C-3311-4968-B4C3-F73D8BA5A854}) (Version: 13.0.57 - National Instruments) Hidden
NI LabVIEW 2013 System Identification Toolkit License (HKLM-x32\...\{BD0DBA61-43EA-4F96-A2E0-76EBFA37ADBF}) (Version: 13.0.66 - National Instruments) Hidden
NI LabVIEW 2013 System Identification Toolkit VIs (HKLM-x32\...\{0BC64C0F-189C-4923-9DDF-F831FAA35673}) (Version: 13.0.57 - National Instruments) Hidden
NI LabVIEW 2013 Variable Web Service (HKLM-x32\...\{5E0425D0-A514-49F4-92CF-E639FE757A66}) (Version: 13.0.326 - National Instruments) Hidden
NI LabVIEW 2013 Web Server (HKLM-x32\...\{2F228DD5-DAF1-4D91-A419-D751FD2495CB}) (Version: 13.0.327 - National Instruments) Hidden
NI LabVIEW 64-bit Modulation Toolkit 4.3.4 (HKLM\...\{D7CAFCF6-E532-44FA-A07F-6D41A54120FA}) (Version: 4.34.49152 - National Instruments) Hidden
NI LabVIEW Analog Modulation Toolkit 4.3.4 (HKLM-x32\...\{93B374A4-07AD-4F0C-8B58-4CBD8DDD1111}) (Version: 4.34.49154 - National Instruments) Hidden
NI LabVIEW Broker (64 bit) (HKLM\...\{B9254715-D10D-4B4B-B002-54CBA61E6F64}) (Version: 6.8.10.0 - National Instruments) Hidden
NI LabVIEW Broker (HKLM-x32\...\{F37CC885-1E37-4F2A-93F3-7F1E1EEBBEBB}) (Version: 6.8.10.0 - National Instruments) Hidden
NI LabVIEW C Interface (HKLM-x32\...\{DEC25D81-2317-47F6-8B26-D54A939DA1EE}) (Version: 1.0.1 - National Instruments) Hidden
NI LabVIEW Compare Utility 13.0.0 (HKLM-x32\...\{01DAFF66-E9ED-4D91-9EBC-C3732FBBF078}) (Version: 13.0.340 - National Instruments) Hidden
NI LabVIEW EWB DeviceHandler (HKLM-x32\...\{0589DE15-AA9E-4319-B93E-64E554F8E150}) (Version: 7.0.148 - National Instruments) Hidden
NI LabVIEW MAX XML (HKLM-x32\...\{416B50BB-64CE-46C5-81A6-7F842CC35CDC}) (Version: 9.0.6.0 - National Instruments) Hidden
NI LabVIEW Merge Utility 13.0.0 (HKLM-x32\...\{D9254C4B-CB25-4348-8EBC-CD2670EDA0AA}) (Version: 13.0.339 - National Instruments) Hidden
NI LabVIEW Modulation Toolkit 4.3.4 (HKLM-x32\...\{5411710F-2EE6-495F-B670-E9DE558E7AAF}) (Version: 4.34.49152 - National Instruments) Hidden
NI LabVIEW Runtime Engine 2010 SP1 (HKLM-x32\...\{1478F207-677B-443B-B305-E924A6289F1B}) (Version: 10.1.114.0 - National Instruments) Hidden
NI LabVIEW Run-Time Engine Interop 2010 (HKLM-x32\...\{7247ABF1-C9E4-4242-8DA5-D0DF6977B018}) (Version: 10.1.115.0 - National Instruments) Hidden
NI LabVIEW Run-Time Engine Interop 2011 (HKLM-x32\...\{6B9F789C-1D28-44D5-BCCE-7CCDBFB14B79}) (Version: 11.0.449.0 - National Instruments) Hidden
NI LabVIEW Run-Time Engine Interop 2012 SP1 (HKLM-x32\...\{3750BCB6-B4E7-4678-817D-732F1CD84EF5}) (Version: 12.1.58.0 - National Instruments) Hidden
NI LabVIEW Run-Time Engine Interop 2013 (HKLM-x32\...\{0CC299AB-C016-4F11-BF88-B643F19C3C47}) (Version: 13.0.337 - National Instruments) Hidden
NI LabVIEW Runtime-Engine 2013 f2 (HKLM-x32\...\{CD4CAB41-CAB7-436F-8D66-A83B95F2F3E6}) (Version: 13.0.337 - National Instruments) Hidden
NI LabVIEW Web Server for Run-Time Engine (HKLM-x32\...\{BCC373FE-227D-46D9-827F-05BA296E2602}) (Version: 11.0.375.0 - National Instruments) Hidden
NI LabVIEW Web Server for Run-Time Engine (HKLM-x32\...\{DB68B420-5382-48EE-9A2A-CB984FEBB192}) (Version: 10.0.235.0 - National Instruments) Hidden
NI LabVIEW Web Services Runtime (HKLM-x32\...\{362294F9-C171-42B9-8436-4E8EE3467E3B}) (Version: 13.0.314 - National Instruments) Hidden
NI LabWindows/CVI 2010 SP1 Analysis Library (64-bit) (HKLM\...\{DABB1D70-482A-4B92-8B24-052AD650A2B0}) (Version: 10.0.1434 - National Instruments) Hidden
NI LabWindows/CVI 2010 SP1 Analysis Library (HKLM-x32\...\{94AEBDCC-159F-4CBB-ABDE-B16483D2CF6C}) (Version: 10.0.1434 - National Instruments) Hidden
NI LabWindows/CVI 2010 SP1 Code Generator (HKLM-x32\...\{5AEBB67E-812E-43BC-B029-CD83DBA7CE30}) (Version: 10.0.1434 - National Instruments) Hidden
NI LabWindows/CVI 2010 SP1 Low-Level Driver (Original) (HKLM-x32\...\{2B1D39F8-477A-4B40-B062-F5E0C4D42B9B}) (Version: 10.0.1434 - National Instruments) Hidden
NI LabWindows/CVI 2010 SP1 Low-Level Driver (Updated) (HKLM-x32\...\{74DBB98D-B4A7-4DD9-9E13-C51FDB1105D0}) (Version: 10.0.1434 - National Instruments) Hidden
NI LabWindows/CVI 2010 SP1 Network Variable Library (64-bit) (HKLM\...\{0C2486A3-EF0D-4C6C-9947-C63D6E8C6E4C}) (Version: 10.0.1434 - National Instruments) Hidden
NI LabWindows/CVI 2010 SP1 Network Variable Library (HKLM-x32\...\{7FB07065-F547-448A-A1C3-1F2EF5EB834F}) (Version: 10.0.1434 - National Instruments) Hidden
NI LabWindows/CVI 2010 SP1 Run-Time Engine (64-bit) (HKLM\...\{176468CE-41AB-4A9A-AC38-45A146D39688}) (Version: 10.0.1434 - National Instruments) Hidden
NI LabWindows/CVI 2010 SP1 TDM Streaming Library (64-bit) (HKLM\...\{25DECAB0-6580-4B9C-8174-5AC6C9E2D823}) (Version: 10.0.1434 - National Instruments) Hidden
NI LabWindows/CVI 2010 SP1 TDM Streaming Library (HKLM-x32\...\{A06A7065-FCA1-4D3C-BE65-2837ACCB135D}) (Version: 10.0.1434 - National Instruments) Hidden
NI LabWindows/CVI 2012 LabVIEW DLL Builder (HKLM-x32\...\{295D9649-5DFF-43EA-AE50-B749E84BB2C6}) (Version: 12.0.0422 - National Instruments) Hidden
NI LabWindows/CVI Run-Time Engine 2010 SP1 (HKLM-x32\...\{41F6CA61-82CB-4615-9A97-252C5D58FA4B}) (Version: 10.0.1434 - National Instruments) Hidden
NI LabWindows/CVI Run-Time Engine 2010 SP1 (Updated) (HKLM-x32\...\{075CA8A9-25A1-4EA7-885C-8A92AED7DB3A}) (Version: 10.0.1434 - National Instruments) Hidden
NI Launcher (HKLM-x32\...\{3E60279A-618E-4670-81CC-777B8E60991E}) (Version: 3.20.351 - National Instruments) Hidden
NI License Manager (HKLM-x32\...\{A8490B70-08B4-40F8-84FE-CCE239901EA1}) (Version: 3.7.53 - National Instruments) Hidden
NI Logos 5.5 (64 bits) (HKLM\...\{B2149E16-A01C-458E-A6E5-B9DC96EAD1AA}) (Version: 5.5.293 - National Instruments) Hidden
NI Logos 5.5 (HKLM-x32\...\{CA533BA0-E6F9-4349-B0EC-ABDEB0481E77}) (Version: 5.5.293 - National Instruments) Hidden
NI Logos XT Support (HKLM-x32\...\{A05EFB3F-19E2-4F9E-8380-BE095CCF0BE4}) (Version: 5.5.294 - National Instruments) Hidden
NI Logos64 XT Support (HKLM\...\{A3154334-4692-449E-8836-3CCD28D0B1D7}) (Version: 5.5.294 - National Instruments) Hidden
NI Math Kernel Libraries (64-bit) (HKLM\...\{4EE0B022-366F-432B-98C6-4EB27C87774E}) (Version: 1.0.15.0 - National Instruments) Hidden
NI Math Kernel Libraries (64-bit) (HKLM\...\{58A9B4F6-2E67-464A-9F71-95F6D7159702}) (Version: 1.0.10.0 - National Instruments) Hidden
NI Math Kernel Libraries (HKLM-x32\...\{231D0E11-0313-49FD-95CE-1D0264C7F1F5}) (Version: 1.0.10.0 - National Instruments) Hidden
NI Math Kernel Libraries (HKLM-x32\...\{AB55A100-AAC9-43EA-845E-2DCDC0D4D2B8}) (Version: 1.0.25.0 - National Instruments) Hidden
NI Math Kernel Libraries (HKLM-x32\...\{DB2C5648-700D-4AEF-83E1-70C72F0C34FA}) (Version: 1.0.861.0 - National Instruments) Hidden
NI MAX Remote Configuration 64-bit Installer 5.5 (HKLM\...\{4768A660-5962-491F-8B1D-9A3FA35819A6}) (Version: 5.50.49152 - National Instruments) Hidden
NI MAX Remote Configuration Installer 5.5 (HKLM-x32\...\{5A073702-D6E0-4D28-B43B-4C4D5DFB752D}) (Version: 5.50.49152 - National Instruments) Hidden
NI MAX Support for 64 Bit Windows (HKLM\...\{C7D66BE3-9A63-47A0-A422-D772F1216F43}) (Version: 5.50.49152 - National Instruments) Hidden
NI MDF Support (HKLM-x32\...\{54244B15-8A6A-425C-8D1F-DF9C4D2EB792}) (Version: 3.20.361 - National Instruments) Hidden
NI mDNS Responder 2.2 for Windows 64-bit (HKLM\...\{3A6898F6-9B23-40DE-9B2D-617DBDEFDBF9}) (Version: 2.20.49152 - National Instruments) Hidden
NI mDNS Responder 2.2.0 (HKLM-x32\...\{1F7F5330-D1C5-49D8-85A3-75E29C2434FE}) (Version: 2.20.49152 - National Instruments) Hidden
NI Measurement & Automation Explorer 5.5.0 (HKLM-x32\...\{6A996EAF-F118-4C11-AD14-8029547085CB}) (Version: 5.50.49152 - National Instruments) Hidden
NI Measurement Studio 2010 Service Pack 1 Enterprise RunTime for VS2010 (HKLM-x32\...\{22F3802A-C482-4819-9B6D-8A8125E5AEE2}) (Version: 9.1.10106 - National Instruments) Hidden
NI Measurement Studio Common .NET Assemblies (x64) for .NET 3.5 (HKLM\...\{A22A76F8-6577-4142-AC42-6CA4E248A297}) (Version: 13.0.00190 - National Instruments) Hidden
NI Measurement Studio Common .NET Assemblies (x64) for .NET 4.0 (HKLM\...\{4CEE2559-AF3E-4BC3-8E96-4F456D3ADCE7}) (Version: 13.0.00190 - National Instruments) Hidden
NI Measurement Studio Common .NET Assemblies for .NET 2.0 (HKLM-x32\...\{B930056F-D07E-419D-83F4-7AFCB212A3D8}) (Version: 12.0.00258 - National Instruments) Hidden
NI Measurement Studio Common .NET Assemblies for .NET 3.5 and VS2008 (HKLM-x32\...\{46165472-7304-4D9F-BE71-C897F596EA25}) (Version: 13.0.00190 - National Instruments) Hidden
NI Measurement Studio Common .NET Assemblies for .NET 4.0 and VS2010 (HKLM-x32\...\{A94ABCE7-46D1-48DD-8E65-896B1C6CB799}) (Version: 13.0.00190 - National Instruments) Hidden
NI Measurement Studio ComponentWorks 3D Graph (HKLM-x32\...\{F278392D-547E-4E67-AD1C-2576C2852B50}) (Version: 8.6.10603 - National Instruments) Hidden
NI Measurement Studio ComponentWorks UI (HKLM-x32\...\{2C77FBC4-79E2-4D25-86FB-CF7AAE02425E}) (Version: 8.6.10603 - National Instruments) Hidden
NI Measurement Studio Recipe Processor (HKLM-x32\...\{4159DD60-49C1-4323-A1A5-FB060CBA35C5}) (Version: 8.0.0101 - National Instruments) Hidden
NI MetaSuite Installer (HKLM-x32\...\{1610AE87-4FD0-4087-BE80-039C968E5C1A}) (Version: 3.20.351 - National Instruments) Hidden
NI MXS 5.5.0 (HKLM-x32\...\{DB974CAC-E29F-4F36-9343-6B589DF80593}) (Version: 5.50.49152 - National Instruments) Hidden
NI MXS 5.5.0 for 64 Bit Windows (HKLM\...\{2C222477-A505-4ACF-A5F2-1E026DBA288D}) (Version: 5.50.49152 - National Instruments) Hidden
NI Network Discovery 5.5 (HKLM-x32\...\{FC89B79E-AE5F-495F-A2B5-4469E5E2E284}) (Version: 5.50.49152 - National Instruments) Hidden
NI Network Discovery 5.5 for Windows 64-bit (HKLM\...\{B847F6E6-0C6C-4FE8-8BF2-E864F3520DC2}) (Version: 5.50.49152 - National Instruments) Hidden
NI OPC Support (HKLM-x32\...\{B34624AE-C43F-416E-B22A-F3B561EB9760}) (Version: 13.0.296 - National Instruments) Hidden
NI OPCEnum Shared (HKLM-x32\...\{1179FFB4-726B-4200-BF02-0387C86C429B}) (Version: 5.5.2018 - National Instruments) Hidden
NI Portable Configuration 5.5.0 (HKLM-x32\...\{646550E5-F469-410B-9721-01E3DCAFA7D2}) (Version: 5.50.49152 - National Instruments) Hidden
NI Portable Configuration for 64 Bit Windows 5.5.0 (HKLM\...\{91D415DC-5C6C-4512-902A-EEB48545A299}) (Version: 5.50.49152 - National Instruments) Hidden
NI Real-Time Device Manager (HKLM-x32\...\{DC36B56E-94EB-420E-A619-4FC70BBC970B}) (Version: 1.10.49152 - National Instruments) Hidden
NI Registration Wizard (HKLM-x32\...\{37CBF405-7780-4D61-BA64-048229E7CAEE}) (Version: 1.3.97.0 - National Instruments) Hidden
NI Remote Provider for MAX 5.5.0 (HKLM-x32\...\{4EDA6809-BAD6-416D-AACD-1EC39BF6DD41}) (Version: 5.50.49152 - National Instruments) Hidden
NI Remote PXI Provider for MAX 5.5.0 (HKLM-x32\...\{D426844E-2735-4881-BD41-29F7530FA06C}) (Version: 5.50.49152 - National Instruments) Hidden
NI Search Shared (HKLM-x32\...\{C89DD7B9-9ACA-4B8F-9B72-37CE3AEBDD46}) (Version: 13.0.13 - National Instruments) Hidden
NI Security Update (KB 67L8LCQW) (64-bit) (HKLM\...\{4A78D9E6-D349-4CCA-9295-45B12BE5BC6C}) (Version: 1.0.29.0 - National Instruments) Hidden
NI Security Update (KB 67L8LCQW) (HKLM-x32\...\{20124E21-206B-485F-838F-14BB88161045}) (Version: 1.0.29.0 - National Instruments) Hidden
NI Service Locator 13.0 (HKLM-x32\...\{A1E8BAD0-F70C-443B-B061-793E7D1B2B69}) (Version: 13.0.307 - National Instruments) Hidden
NI SignalExpress 2013 (HKLM\...\{89FB27DA-3CE2-4481-90D1-805FEEE9DC73}) (Version: 7.0.98 - National Instruments) Hidden
NI SignalExpress 2013 (HKLM\...\{B9E1BDC8-7FDE-4F7F-8DD5-F7736FD4F2DD}) (Version: 7.0.95 - National Instruments) Hidden
NI SignalExpress 2013 (HKLM-x32\...\{3AE42F0C-B01F-4800-B853-912F6CD805E1}) (Version: 7.0.151 - National Instruments) Hidden
NI SignalExpress 2013 Core (HKLM-x32\...\{78CD4631-D0B9-4C84-905A-BFF800F25446}) (Version: 7.0.148 - National Instruments) Hidden
NI SignalExpress 2013 Core LabVIEW 2013 Support (HKLM-x32\...\{20F0C479-3876-47E5-BE91-B5B5BA2129A6}) (Version: 7.0.110 - National Instruments) Hidden
NI SignalExpress 2013 Core LabVIEW Support (HKLM-x32\...\{18CC6107-2CA5-4334-979C-D9CCC0EBE76C}) (Version: 7.0.148 - National Instruments) Hidden
NI SignalExpress 2013 Datatypes (HKLM-x32\...\{7869E34C-D9D8-48FA-9A6E-6E863AD25DD9}) (Version: 7.0.148 - National Instruments) Hidden
NI SignalExpress 2013 Datatypes LabVIEW 2013 Support (HKLM-x32\...\{644EB2D1-5BF5-4DFF-A7BA-A091D6B398D3}) (Version: 7.0.110 - National Instruments) Hidden
NI SignalExpress 2013 LabVIEW 2013 Support (HKLM-x32\...\{1719BA89-9732-46B3-8BCC-31768CE1D903}) (Version: 7.0.114 - National Instruments) Hidden
NI SignalExpress 2013 LabVIEW Support (HKLM-x32\...\{88706492-8F6E-4270-8EAF-255FA4BD6258}) (Version: 7.0.154 - National Instruments) Hidden
NI SignalExpress 2013 Licenses (HKLM-x32\...\{C1C4D6EB-4ADB-4589-A328-3EECB16A6316}) (Version: 7.0.148 - National Instruments) Hidden
NI SignalExpress 2013 Steps (HKLM-x32\...\{A47B539F-59BF-4AAF-80A3-60954FDB9736}) (Version: 7.0.149 - National Instruments) Hidden
NI SignalExpress 2013 Tools (HKLM-x32\...\{D4E1D641-E362-4B63-BA78-565FE736A4BB}) (Version: 7.0.149 - National Instruments) Hidden
NI SLCP 2.0 (HKLM-x32\...\{3FAE02C9-923D-4096-AE28-04E6FCE67094}) (Version: 2.0.27 - National Instruments) Hidden
NI Software Provider for MAX 5.5.0 (HKLM-x32\...\{A6025DDF-67EF-4B5D-8365-907295F5D469}) (Version: 5.50.49152 - National Instruments) Hidden
NI Sound and Vibration Frequency Analysis 2013 (HKLM-x32\...\{F20EFF67-0DE1-444C-BF13-DA8156629345}) (Version: 13.0.100 - National Instruments) Hidden
NI Sound and Vibration Frequency Analysis LabVIEW 2013 Support (HKLM-x32\...\{1FF5B4D9-EFE6-48DE-9EB7-64C0FA45DE13}) (Version: 13.0.100 - National Instruments) Hidden
NI SSL LabVIEW 2013 Support (HKLM-x32\...\{AFF8EE12-DE6F-45DD-BFE6-AC78B0D7D01D}) (Version: 13.0.328 - National Instruments) Hidden
NI SSL LabVIEW RTE 2012 SP1 Support (HKLM-x32\...\{DFEB5AEC-611E-466F-A072-956751A66880}) (Version: 12.5.8.0 - National Instruments) Hidden
NI SSL LabVIEW RTE 2013 Support (HKLM-x32\...\{BF324FB5-4C39-4FDC-B023-19AEFFAE116A}) (Version: 13.0.317 - National Instruments) Hidden
NI Support des langues autres que l'anglais pour le moteur d'exécution LabVIEW 2011 SP1 (HKLM-x32\...\{38300A40-AB90-444D-A823-17EB95A5C731}) (Version: 11.0.302.0 - National Instruments) Hidden
NI System API .NET 5.5.0 (HKLM-x32\...\{556653E7-A474-4D05-AA00-D555DF8609C6}) (Version: 5.50.157 - National Instruments) Hidden
NI System API Client for WIF 5.5.0 (HKLM-x32\...\{9B51048C-8467-4C02-967E-0145E31BDE3C}) (Version: 5.50.419 - National Instruments) Hidden
NI System API Web-Service 32-bit 5.5.0 (HKLM-x32\...\{0E5A6C9B-E5F6-4BBD-8942-FC9BFC287F68}) (Version: 5.50.405 - National Instruments) Hidden
NI System API Windows 32-bit 5.5.0 (HKLM-x32\...\{A8779088-85BA-4CC0-8205-1C7AF40FCDBD}) (Version: 5.50.589 - National Instruments) Hidden
NI System API Windows 64-bit 5.5.0 (HKLM\...\{6662C75A-9A77-4959-9853-F4A2AF15C4B8}) (Version: 5.50.588 - National Instruments) Hidden
NI System Configuration 5.5.0 LabVIEW Support (HKLM-x32\...\{C202C5C6-AA4B-49D6-A373-554A3568382E}) (Version: 5.50.186 - National Instruments) Hidden
NI System Configuration LV2013 Support 5.5.0 (HKLM-x32\...\{7428E02E-9DE5-4454-951B-C68A88ABEEA4}) (Version: 5.50.178 - National Instruments) Hidden
NI System Configuration Runtime 5.5.0 for Windows 64-bit (HKLM\...\{E24A808C-68AE-4204-A6B5-55656CBE7AF1}) (Version: 5.50.226 - National Instruments) Hidden
NI System Identification Assistant 2013 (HKLM-x32\...\{9D2868E3-C81F-4111-98C7-0A436EC69CB0}) (Version: 13.0.88 - National Instruments) Hidden
NI System Identification Assistant 2013 LabVIEW Support (HKLM-x32\...\{F8C28FB3-D8FC-402E-A04D-2EB26EE45B4D}) (Version: 13.0.57 - National Instruments) Hidden
NI System State Publisher (64-bit) (HKLM\...\{68319FE7-1E06-4156-BC00-8D24828B5084}) (Version: 13.0.299 - National Instruments) Hidden
NI System State Publisher (HKLM-x32\...\{AE20D525-5D10-475F-9115-963DB67D49DF}) (Version: 13.0.304 - National Instruments) Hidden
NI System Web Server 13.0 (HKLM-x32\...\{6246AACB-D78A-4563-B76E-34C722A8A715}) (Version: 13.0.333 - National Instruments) Hidden
NI System Web Server Base 13.0.0 (64-bit) (HKLM\...\{76278DA5-3985-41F1-9116-031A9225A786}) (Version: 13.0.324 - National Instruments) Hidden
NI System Web Server Base 13.0.0 (HKLM-x32\...\{D23B2ECB-16E7-4120-AE2E-5E9F516324F9}) (Version: 13.0.324 - National Instruments) Hidden
NI TDM Excel Add-In 3.5 (HKLM-x32\...\{FC3DE99A-2D6A-428D-ADA5-6A86717E6129}) (Version: 3.5.9 - National Instruments) Hidden
NI TDM Excel Add-In 3.5 64-bit (HKLM\...\{BC7E190B-47EB-4B84-817B-E52120108C0E}) (Version: 3.5.9 - National Instruments) Hidden
NI TDM Streaming 2.5 (64 bits) (HKLM\...\{3ABCF186-64DE-439C-8B66-CC31B8513D8C}) (Version: 2.5.36 - National Instruments) Hidden
NI TDM Streaming 2.5 (HKLM-x32\...\{27367777-A95D-4014-B73B-18D4838E54A4}) (Version: 2.5.36 - National Instruments) Hidden
NI Trace Engine (64-bit) (HKLM\...\{DA83B4AC-EC3C-4F13-A867-CB0C24A8E1D5}) (Version: 13.0.324 - National Instruments) Hidden
NI Trace Engine (HKLM-x32\...\{63495F25-850C-4127-8BA6-1DFD5144723C}) (Version: 13.0.324 - National Instruments) Hidden
NI Uninstaller (HKLM-x32\...\{E05E5413-FFE7-4E83-92AB-C5F6BCE25F6C}) (Version: 3.20.361 - National Instruments) Hidden
NI Update Service 2.3 (64-bit) (HKLM\...\{FCA2E817-8584-43EF-ABCA-05514305F0C6}) (Version: 2.30.53 - National Instruments) Hidden
NI USI 2.0.1 (HKLM-x32\...\{FE82D7AF-0A22-40E8-B7A5-9D7615296BA6}) (Version: 2.0.15249 - National Instruments) Hidden
NI USI 2.0.1 64-Bit (HKLM\...\{0D8CE7D9-884A-4DF1-B459-E910CF34EE5C}) (Version: 2.0.15249 - National Instruments) Hidden
NI Variable Engine (64-bit) (HKLM\...\{75534D54-E901-4C68-B523-C4A9884AED61}) (Version: 2.7.297 - National Instruments) Hidden
NI Variable Engine LabVIEW 2013 Support (HKLM-x32\...\{E3E51024-ECEF-4473-BBB0-4A3A9A823DBE}) (Version: 13.0.113 - National Instruments) Hidden
NI VC2005MSMs x64 (HKLM\...\{E3E3E625-8F74-44CE-A6D2-C31CB43DA23D}) (Version: 8.05.0 - National Instruments) Hidden
NI VC2005MSMs x86 (HKLM-x32\...\{4B877FC6-F44C-4B39-B0B6-CE15ADC63997}) (Version: 8.05.0 - National Instruments) Hidden
NI VC2008MSMs x64 (HKLM\...\{07E00E94-7A78-40FA-9BEF-71C190E98041}) (Version: 9.0.401 - National Instruments) Hidden
NI VC2008MSMs x86 (HKLM-x32\...\{E84997A1-4D6F-4C0B-B60D-F85B360D2666}) (Version: 9.0.401 - National Instruments) Hidden
NI VC2010SP1MSMs x64 (HKLM\...\{AFC5A844-CA3A-4566-89E7-3E24E6AFF9A3}) (Version: 10.0.100 - National Instruments) Hidden
NI VC2010SP1MSMs x86 (HKLM-x32\...\{F2273FA7-117C-43D7-BD59-00B025535442}) (Version: 10.0.100 - National Instruments) Hidden
NI VIPM Helper 2013 (HKLM-x32\...\{BC2E5499-009B-4F1D-B978-8C0B2B1EC6BF}) (Version: 13.0.339 - National Instruments) Hidden
NI Vision 2013 (HKLM-x32\...\{963194EE-D9D1-41ED-B7E4-D7EC72D1DBEF}) (Version: 13.0.74 - National Instruments) Hidden
NI Vision 2013 .NET (HKLM-x32\...\{17F45C49-E230-4EE9-AFC0-C75C56D40215}) (Version: 13.0.74 - National Instruments) Hidden
NI Vision 2013 64-bit (HKLM\...\{8B11EC6D-15BE-4966-9A26-89DBAFC48B18}) (Version: 13.0.74 - National Instruments) Hidden
NI Vision Assistant 2013 (HKLM-x32\...\{E6BBD6E6-3CC5-4EEE-BB6D-DF0C08B59E2D}) (Version: 13.0.49 - National Instruments) Hidden
NI Vision Assistant 2013 .NET (HKLM-x32\...\{8761728F-2E4B-4A1A-B89B-A7FBC2689B61}) (Version: 13.0.49 - National Instruments) Hidden
NI Vision Assistant 2013 64-bit (HKLM\...\{1462B70C-E603-4005-A6E0-7587473B1DF8}) (Version: 13.0.49 - National Instruments) Hidden
NI Vision Builder AI 2012 SP1 API Interface (HKLM-x32\...\{1602570A-9F67-4D18-9D88-00A2BB175A88}) (Version: 5.3.2.0 - National Instruments) Hidden
NI Vision Builder AI 2012 SP1 f2 (HKLM-x32\...\{370EC28E-E34C-41A4-B58D-8765C6F9C184}) (Version: 5.3.2.0 - National Instruments) Hidden
NI Vision Builder AI 2012 SP1 f2 Shared Resources (HKLM-x32\...\{1FC06093-1D91-4E3A-9391-AC1C2A65DA78}) (Version: 5.3.2.0 - National Instruments) Hidden
NI Vision Common Resources 2013 (HKLM-x32\...\{84BFA8EA-45AD-4005-9D4F-239E883A7985}) (Version: 13.0.77 - National Instruments) Hidden
NI Vision Common Resources 2013 64-bit (HKLM\...\{7CFC0AFF-B937-4001-9430-9EF69BEE51DA}) (Version: 13.0.77 - National Instruments) Hidden
NI Vision Common Resources Real-Time 2013 (HKLM-x32\...\{71295CA8-F130-4DB2-BD7C-FA735B39CA6B}) (Version: 13.0.44 - National Instruments) Hidden
NI Vision Run-Time Engine 2013 (HKLM-x32\...\{98931CD1-111E-4C28-B43F-05BCF0133629}) (Version: 13.0.68 - National Instruments) Hidden
NI Vision Run-Time Engine 2013 64-bit (HKLM\...\{C9EB8ADA-E0F6-4472-B67E-2932FA4178C0}) (Version: 13.0.68 - National Instruments) Hidden
NI VisionRun-Time Engine 2013 .NET (HKLM-x32\...\{2903E062-FA91-4E7D-9397-516A4C1DB6BE}) (Version: 13.0.68 - National Instruments) Hidden
NI Visual C++ 2010 Redistributable Package (HKLM-x32\...\{87E698D6-02AC-485E-A6BA-9194C94CC547}) (Version: 10.10.16385 - National Instruments) Hidden
NI Web Pipeline 3.3 (64-bit) (HKLM\...\{F7F361A8-65E2-4A1B-9111-DA87B692AAD8}) (Version: 3.30.24 - National Instruments) Hidden
NI Web Pipeline 3.3 (HKLM-x32\...\{55D08CCF-C60F-4A4B-A78E-0E9430B45B42}) (Version: 3.30.24 - National Instruments) Hidden
NI Xalan Delay Load 1.10.2 (HKLM-x32\...\{2CB15350-C073-4A5B-A706-59E1F69DE11C}) (Version: 1.10.72.0 - National Instruments) Hidden
NI Xalan Delay Load 1.10.2 64-bit (HKLM\...\{B9293F41-3CB1-4E86-9523-010F8ACB782D}) (Version: 1.10.73.0 - National Instruments) Hidden
NI Xerces Delay Load 2.7.3 (HKLM-x32\...\{E6068691-1FBC-4EF0-87E8-609CDB32038A}) (Version: 2.7.180.0 - National Instruments) Hidden
NI Xerces Delay Load 2.7.3 64-bit (HKLM\...\{50B2D9D8-87B6-49EE-BC5C-874119FD6B7B}) (Version: 2.7.190.0 - National Instruments) Hidden
NI-APAL 2.2 Error Files for LabVIEW RT (HKLM-x32\...\{44D6B4F3-47AA-424E-A4AE-9F62D80D6701}) (Version: 2.20.49152 - National Instruments) Hidden
NI-APAL 2.2.1 64-Bit Error Files (HKLM\...\{8F77492A-C3DB-427D-94BE-5D32E6432868}) (Version: 2.21.49152 - National Instruments) Hidden
NI-APAL 2.2.1 Error Files (HKLM-x32\...\{A8371D82-90A4-4DB1-A915-1E88F3739AD5}) (Version: 2.21.49152 - National Instruments) Hidden
NI-APAL 2.2.1 Error Files for LabVIEW RT (HKLM-x32\...\{1D44ADDA-37B7-4DB0-B7F0-E733C54EECF1}) (Version: 2.21.49152 - National Instruments) Hidden
NI-DAQmx/LabVIEW shared documentation 9.7.5 (HKLM-x32\...\{55D00097-F9A4-4979-863C-E5345629D505}) (Version: 9.75.49152 - National Instruments) Hidden
NI-DAQmx/LabVIEW shared documentation for 64 Bit Windows 9.7.5 (HKLM\...\{CC95B8ED-58F6-4D0A-B040-75C9EA073ED1}) (Version: 9.75.49152 - National Instruments) Hidden
NI-DIM 1.13.0f0 (HKLM-x32\...\{9B7F4E37-64DC-4B50-A504-124C665AD3FA}) (Version: 1.130.49152 - National Instruments) Hidden
NI-DIM 1.13.0f0 for 64 Bit Windows (HKLM\...\{B684BA02-6EF0-4C0F-B29A-611BFB01436B}) (Version: 1.130.49152 - National Instruments) Hidden
Nikon Movie Editor (HKLM-x32\...\{5CAD3393-EEC0-44CE-9F93-BCAA365B77FB}) (Version: 2.8.0 - Nikon)
Nikon RAW Codec (HKLM-x32\...\{C8616041-2802-4DE2-B3BD-6285AAD65C2A}) (Version: 1.00.0000 - Nikon)
NI-Mesa (HKLM\...\{7716F0A8-AFEF-4C22-9A10-4D5BDCD6471D}) (Version: 12.0.7.0 - National Instruments) Hidden
NI-Mesa (HKLM-x32\...\{3AA5FCD0-8215-4604-920C-BC87CE1D843B}) (Version: 12.0.7.0 - National Instruments) Hidden
NI-ORB 1.10.0f0 (HKLM-x32\...\{18493A5A-1D24-4A71-BBD3-67348B68C3B1}) (Version: 1.100.49152 - National Instruments) Hidden
NI-ORB 1.10.0f0 for 64 Bit Windows (HKLM\...\{AF4525BB-39AE-4D9F-AE66-0D70E20DDBB0}) (Version: 1.100.49152 - National Instruments) Hidden
NI-PAL 2.9.1 64-Bit Error Files (HKLM\...\{B8A07D12-1F88-499B-86A7-F9597D4C37F8}) (Version: 2.91.49152 - National Instruments) Hidden
NI-PAL 2.9.1 Error Files (HKLM-x32\...\{6F3933B2-DA98-43EF-950E-CF2373918A12}) (Version: 2.91.49152 - National Instruments) Hidden
NI-PAL 2.9.1 Error Files for LabVIEW RT (HKLM-x32\...\{DACC9287-9FFD-4802-8605-E8FD6B0E9197}) (Version: 2.91.49152 - National Instruments) Hidden
NI-PAL 2.9.1f0 (HKLM-x32\...\{D0D82E7B-8456-4FE7-A09C-0B3A49C2A4C5}) (Version: 10.101.49152 - National Instruments) Hidden
NI-PAL 2.9.1f0 for 64 Bit Windows (HKLM\...\{86DFA469-CA55-49E1-87A1-6B56AAB7D3C8}) (Version: 10.101.49152 - National Instruments) Hidden
NI-PAL 2.9.1f0 for Phar Lap ETS (HKLM-x32\...\{14DD1A77-26E8-438A-AA68-A3FD38C7C573}) (Version: 10.101.49152 - National Instruments) Hidden
NI-RPC 4.4.0f0 (HKLM-x32\...\{9125CF98-08A9-41AA-96B9-A7A7A255E3DC}) (Version: 4.40.49152 - National Instruments) Hidden
NI-RPC 4.4.0f0 for 64 Bit Windows (HKLM\...\{B1153914-2CA8-4FFE-855E-FAC61EFD9C0D}) (Version: 4.40.49152 - National Instruments) Hidden
NI-RPC 4.4.0f0 for Phar Lap ETS (HKLM-x32\...\{9CF01499-669E-472A-89E3-54CC30C4FDBB}) (Version: 4.40.49152 - National Instruments) Hidden
NI-VISA Runtime 5.2.0 (HKLM-x32\...\{B4F17552-FEA2-40BC-82CA-4F1DF61FF1A8}) (Version: 5.20.49152 - National Instruments) Hidden
NI-VISA x64 support 5.2.0 (HKLM\...\{CC23C5E3-CF4A-43BB-BE54-B5DB77BDD732}) (Version: 5.20.49152 - National Instruments) Hidden
Notepad++ (HKLM-x32\...\Notepad++) (Version: 5.9.2 - )
NVIDIA 3D Vision Controller-Treiber 344.11 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 344.11 - NVIDIA Corporation)
NVIDIA 3D Vision Treiber 344.11 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 344.11 - NVIDIA Corporation)
NVIDIA Grafiktreiber 344.11 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 344.11 - NVIDIA Corporation)
NVIDIA HD-Audiotreiber 1.3.32.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.32.1 - NVIDIA Corporation)
NVIDIA PhysX-Systemsoftware 9.14.0702 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.14.0702 - NVIDIA Corporation)
Objets de gestion Microsoft SQL Server 2008 R2 (HKLM-x32\...\{0621170C-C584-41C8-906E-DF9D57798F6F}) (Version: 10.50.1750.9 - Microsoft Corporation)
Oddworld: Abe's Exoddus (HKLM-x32\...\Steam App 15710) (Version:  - Oddworld Inhabitants)
Oddworld: Abe's Oddysee (HKLM-x32\...\Steam App 15700) (Version:  - Oddworld Inhabitants)
OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
Opera 12.17 (HKLM-x32\...\Opera 12.17.1863) (Version: 12.17.1863 - Opera Software ASA)
Opera Password Recovery (HKCU\...\OPR) (Version:  - )
Opera Stable 29.0.1795.60 (HKLM-x32\...\Opera 29.0.1795.60) (Version: 29.0.1795.60 - Opera Software ASA)
Oracle VM VirtualBox 4.3.12 (HKLM\...\{B5121457-0126-4E62-BCBF-6DC7C73D9E4A}) (Version: 4.3.12 - Oracle Corporation)
Oracle VM VirtualBox 4.3.16 (HKLM\...\{D7FAEA32-7CE3-4D9F-9139-F7B87BCC50AF}) (Version: 4.3.16 - Oracle Corporation)
Origin (HKLM-x32\...\Origin) (Version: 8.5.0.4550 - Electronic Arts, Inc.)
Osmos (HKLM-x32\...\Steam App 29180) (Version:  - Hemisphere Games)
Outils Microsoft Visual Studio 2010 ADO.NET Entity Framework (HKLM-x32\...\{3BA7E387-9401-3371-9464-5E224D243FC5}) (Version: 10.0.40219 - Microsoft Corporation)
Patch 4.2 (HKLM-x32\...\{74A84478-70A5-4F7A-966C-FA2771FF91A5}_is1) (Version:  - RUNEFORGE Games Studios)
Pflanzen gegen Zombies™ (HKLM-x32\...\{5E6536C2-E79A-49CF-83EA-817AD81F9FC8}) (Version: 1.2.0.1093 - Electronic Arts, Inc.)
Pharaoh (HKLM-x32\...\Pharaoh) (Version:  - )
PhotoFiltre (HKCU\...\PhotoFiltre) (Version:  - )
Picture Control Utility (HKLM-x32\...\{87441A59-5E64-4096-A170-14EFE67200C3}) (Version: 1.1.5 - Nikon)
Picture Control Utility x64 (HKLM\...\{11953C65-BB4E-4CA4-B0F0-2600A4B20040}) (Version: 1.4.13 - Nikon)
Plants vs Zombies (HKLM-x32\...\Plants vs Zombies) (Version:  - Oberon Media Inc.)
Populous (HKLM-x32\...\{476CD9DE-C45F-4443-BFA7-E51C58B7E455}) (Version: 1.0.0.0 - Electronic Arts)
Portal (HKLM-x32\...\Steam App 400) (Version:  - Valve)
Portal 2 (HKLM-x32\...\Steam App 620) (Version:  - Valve)
Portal 2 Publishing Tool (HKLM-x32\...\Steam App 644) (Version:  - )
Prerequisite installer (HKLM-x32\...\{5909A89E-C97F-407C-AE2B-47BDED86BF5D}) (Version: 15.0.0005 - Nero AG) Hidden
Prince of Persia (HKLM-x32\...\{7C11154F-3539-4CB5-979D-EF7913473E53}) (Version: 1.0 - Ubisoft)
Prince of Persia (HKLM-x32\...\Steam App 19980) (Version:  - Ubisoft)
Prince of Persia: The Forgotten Sands (HKLM-x32\...\Steam App 33320) (Version:  - Ubisoft)
Prince of Persia: The Sands of Time (HKLM-x32\...\Steam App 13600) (Version:  - Ubisoft)
Prince of Persia: The Two Thrones (HKLM-x32\...\Steam App 13530) (Version:  - Ubisoft)
Prince of Persia: Warrior Within (HKLM-x32\...\Steam App 13500) (Version:  - Ubisoft)
Programme d'amélioration de l'expérience utilisateur NI (HKLM-x32\...\{B42BB38A-9B97-4494-A42C-A0FD79B94E7A}) (Version: 2.0.77 - National Instruments) Hidden
Python 3.4.0 (HKLM-x32\...\{a37f2d73-72d1-364d-ba5d-cea430bcc040}) (Version: 3.4.150 - Python Software Foundation)
Rapport d'erreur NI 2013 (HKLM-x32\...\{DF549FB9-B94F-4B8D-B007-39281EDB9A52}) (Version: 13.0.324 - National Instruments) Hidden
RealDownloader (HKLM-x32\...\{3DC873BB-FFE3-46BF-9701-26B9AE371F9F}) (Version: 1.3.2 - RealNetworks, Inc.) Hidden
RealNetworks - Microsoft Visual C++ 2008 Runtime (HKLM-x32\...\{7770E71B-2D43-4800-9CB3-5B6CAAEBEBEA}) (Version: 9.0 - RealNetworks, Inc) Hidden
RealNetworks - Microsoft Visual C++ 2010 Runtime (HKLM-x32\...\{AAECF7BA-E83B-4A10-87EA-DE0B333F8734}) (Version: 10.0 - RealNetworks, Inc) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7231 - Realtek Semiconductor Corp.)
Realtek USB 2.0 Reader Driver (HKLM-x32\...\{62BBB2F0-E220-4821-A564-730807D2C34D}) (Version: 6.1.7600.10010 - Realtek Semiconductor Corp.)
RealUpgrade 1.1 (HKLM-x32\...\{28C2DED6-325B-4CC7-983A-1777C8F7FBAB}) (Version: 1.1.0 - RealNetworks, Inc.) Hidden
Recuva (HKLM\...\Recuva) (Version: 1.48 - Piriform)
Reset NI Config 5.5.0 (HKLM-x32\...\{32D5858D-5BCE-407A-93CD-897E867ABA51}) (Version: 5.50.227 - National Instruments) Hidden
Ricochet (HKLM-x32\...\Steam App 60) (Version:  - Valve)
RivaTuner Statistics Server 6.3.0 (HKLM-x32\...\RTSS) (Version: 6.3.0 - Unwinder)
RPG Maker VX Ace (HKLM-x32\...\Steam App 220700) (Version:  - Enterbrain)
RUSH (HKLM-x32\...\Steam App 38720) (Version:  - Two Tribes)
Secure Download Manager (HKLM-x32\...\{0848DFF5-C123-4E34-800C-FE1D3AFD4EB9}) (Version: 3.1.0 - Kivuto Solutions Inc.)
SecureW2 EAP Suite 1.1.3 for Windows (HKLM-x32\...\SecureW2 EAP Suite) (Version:  - )
Serveur Web d'applications NI 13.0 (64 bits) (HKLM\...\{62126BD1-8107-48A1-9889-FA16F064893C}) (Version: 13.0.319 - National Instruments) Hidden
Serveur Web d'applications NI 13.0 (HKLM-x32\...\{4845B7A3-DDC3-44F9-A7DB-C50C94017129}) (Version: 13.0.324 - National Instruments) Hidden
Serveur Web pour le moteur d'exécution de NI LabVIEW 2012 (HKLM-x32\...\{3C717C2C-A9F4-4236-A539-89592B0652A7}) (Version: 12.5.198.0 - National Instruments) Hidden
Serveur Web pour le moteur d'exécution de NI LabVIEW 2013 (HKLM-x32\...\{ADC16943-45BD-4E47-89CD-A9CA790DE09C}) (Version: 13.0.321 - National Instruments) Hidden
Service de mise à jour NI 2.3 (HKLM-x32\...\{8FBAA717-6C1C-4BA1-B446-AA5118BA6401}) (Version: 2.30.65 - National Instruments) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version:  - Microsoft)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{91140000-003B-0000-0000-0000000FF1CE}_Office14.PRJPROR_{58FA40EF-ABA9-4FED-AD3D-318A6073934D}) (Version:  - Microsoft)
Service Pack 3 für SQL Server 2008 (KB2546951) (64-bit) (HKLM\...\KB2546951) (Version: 10.3.5500.0 - Microsoft Corporation)
Sid Meier's Civilization V (HKLM-x32\...\Steam App 8930) (Version:  - 2K Games, Inc.)
Sine qua non version 2.7.1.0 (HKLM-x32\...\Sine qua non_is1) (Version:  - © 29 Février 2012 Patrice Rabiller)
Skype™ 7.4 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.4.102 - Skype Technologies S.A.)
Solar 2 (HKLM-x32\...\{9A304435-E368-4F10-AB64-D6C1481D9AF9}) (Version: 1.1.0.0 - Murudai)
SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version:  - )
Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.0.12 - Safer-Networking Ltd.)
Sql Server Customer Experience Improvement Program (HKLM\...\{2F14965D-567B-4E59-ADEB-0A2CC1E3ADDF}) (Version: 10.3.5500.0 - Microsoft Corporation) Hidden
Star Wars - Battlefront II (HKLM-x32\...\Steam App 6060) (Version:  - Pandemic Studios)
Star Wars - Jedi Knight II: Jedi Outcast (HKLM-x32\...\Steam App 6030) (Version:  - Raven Software)
Star Wars - Jedi Knight: Mysteries of the Sith (HKLM-x32\...\Steam App 32390) (Version:  - )
Star Wars Empire at War (HKLM-x32\...\{99AE7207-8612-4DBA-A8F8-BAE5C633390D}) (Version: 1.0 - LucasArts)
Star Wars Jedi Knight: Dark Forces II (HKLM-x32\...\Steam App 32380) (Version:  - )
Star Wars Jedi Knight: Jedi Academy (HKLM-x32\...\Steam App 6020) (Version:  - LucasArts)
Star Wars: Dark Forces (HKLM-x32\...\Steam App 32400) (Version:  - )
Star Wars: Empire at War Gold (HKLM-x32\...\Steam App 32470) (Version:  - Petroglyph)
Star Wars®: Knights of the Old Republic ™ (HKLM-x32\...\{2A9A40C7-6670-4D5F-8F41-D12E2E08B48B}) (Version:  - )
Steam™ (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve)
Stronghold (HKLM-x32\...\{C917BA70-28A3-4C74-B163-41FD8C8E1A5A}) (Version:  - )
Suite (HKLM-x32\...\{5DB1DF0C-AABC-4362-8A6D-CEFDFB036E41}) (Version: 1.00.0000 - CyberLink Corp.) Hidden
Suite (HKLM-x32\...\InstallShield_{5DB1DF0C-AABC-4362-8A6D-CEFDFB036E41}) (Version: 1.00.0000 - CyberLink Corp.)
Super Meat Boy (HKLM-x32\...\Steam App 40800) (Version:  - )
Support de SSL NI (64 bits) (HKLM\...\{A6E0DCE3-A917-4234-B401-6D630E869FB3}) (Version: 13.0.319 - National Instruments) Hidden
Support de SSL NI (HKLM-x32\...\{87392509-BFBD-4780-9170-E0106DB472DF}) (Version: 13.0.324 - National Instruments) Hidden
Support des langues autres que l'anglais pour le moteur d'exécution de NI LabVIEW 2012 SP1. (HKLM-x32\...\{06897ACD-84E1-4F9E-8848-3E3BF27D2D99}) (Version: 12.1.52.0 - National Instruments) Hidden
Support des langues autres que l'anglais pour le moteur d'exécution de NI LabVIEW 2013 (HKLM-x32\...\{9BA381D6-F63D-4C03-BE13-940F39068E01}) (Version: 13.0.329 - National Instruments) Hidden
Surgeon Simulator 2013 (HKLM-x32\...\Steam App 233720) (Version:  - Bossa Studios)
Surveillance et configuration Web NI 2013 (HKLM-x32\...\{2DD64FD3-64E6-4198-9E3B-41686C4048CA}) (Version: 13.0.306 - National Instruments) Hidden
swMSM (HKLM-x32\...\{612C34C7-5E90-47D8-9B5C-0F717DD82726}) (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
Syberia (HKLM-x32\...\Steam App 46500) (Version:  - Anuman)
Syberia 2 (HKLM-x32\...\Steam App 46510) (Version:  - Anuman / Microids)
Texmaker (HKLM-x32\...\Texmaker) (Version:  - )
TeXnicCenter Version 2.02 Stable (HKLM\...\TeXnicCenter_is1) (Version: 2.02 Stable - The TeXnicCenter Team)
The Ball (HKLM-x32\...\Steam App 35460) (Version:  - Teotl Studios)
The Elder Scrolls IV: Oblivion  (HKLM-x32\...\Steam App 22330) (Version:  - Bethesda Game Studios)
The Elder Scrolls V: Skyrim (HKLM-x32\...\Steam App 72850) (Version:  - Bethesda Game Studios)
The Guild II - Pirates of the European Seas (HKLM-x32\...\Steam App 39660) (Version:  - 4 Head Studios)
The Guild II (HKLM-x32\...\Steam App 39650) (Version:  - 4 Head Studios)
The Guild II: Renaissance (HKLM-x32\...\Steam App 39680) (Version:  - Rune Forge)
The Sims 2: Ultimate Collection (HKLM-x32\...\{04450C18-F039-4B81-A621-70C3B0F523D5}) (Version: 1.0.0.0 - Electronic Arts)
The Wonderful End of the World (HKLM-x32\...\Steam App 15500) (Version:  - Dejobaan Games)
The Yawhg (HKLM-x32\...\Steam App 269030) (Version:  - Damian Sommer)
Titan Quest (HKLM-x32\...\Steam App 4540) (Version:  - IronLore)
Toki Tori (HKLM-x32\...\Steam App 38700) (Version:  - Two Tribes)
Tom Clancy's Splinter Cell Chaos Theory (HKLM-x32\...\{888DD888-82BE-4D85-BCB2-2E042CD3E844}) (Version: 1.05.157 - Ubisoft)
TortoiseSVN 1.7.5.22551 (64 bit) (HKLM\...\{C32A0C11-B1A1-4ABC-8C1E-C1E2E3936D26}) (Version: 1.7.22551 - TortoiseSVN)
TP-LINK TL-WN725N_TL-WN723N Treiber (HKLM-x32\...\{3C3F9CEB-2C5A-4A47-8EAA-DA76037546BA}) (Version: 1.3.1 - TP-LINK)
Trend Micro RUBotted 2.0 Beta (HKLM-x32\...\{54D4EAF5-4C80-4878-B4AC-5AE454A02E3C}_is1) (Version: 2.0.0.1034 - Trend Micro, Inc.)
Überwachungstool für die Intel® Turbo-Boost-Technik (HKLM\...\{39F4C6F9-618A-4E5B-8FB2-6BD661174E32}) (Version: 1.0.400.4 - Intel)
Überwachungstool für die Intel® Turbo-Boost-Technik 2.6 (HKLM\...\{6C9365EB-1F9E-4893-9196-3EC77C88D0C5}) (Version: 2.6.2.0 - Intel)
Universe Sandbox (HKLM-x32\...\Steam App 72200) (Version:  - )
Unturned (HKLM-x32\...\Steam App 304930) (Version:  - Nelson Sexton)
Uplay (HKLM-x32\...\Uplay) (Version: 2.0 - Ubisoft)
USB2.0 UVC 2M WebCam (HKLM\...\USB2.0 UVC 2M WebCam) (Version: 5.8.55133.208 - Sonix)
VC 9.0 Runtime (HKLM-x32\...\{02E89EFC-7B07-4D5A-AA03-9EC0902914EE}) (Version: 1.0.0 - Check Point Software Technologies Ltd) Hidden
VI Package Manager 2013 (HKLM-x32\...\{9645A76D-DEF7-4783-B710-AF611CAA23D9}) (Version: 13.0.0 - National Instruments) Hidden
VI Package Manager 2014 (HKLM-x32\...\{2BBF3D65-2975-414E-B64A-92DF54373136}) (Version: 14.0.1941 - JKI)
ViewNX 2 (HKLM\...\{635BE602-BB9C-4C59-8CC5-93F9366E8A21}) (Version: 2.8.0 - Nikon)
VISA Shared Components 64-Bit (HKLM\...\{198160F3-1387-4173-A50C-B9977140E258}) (Version: 1.4.0 - IVI Foundation Inc.) Hidden
VISA Shared Components 64-Bit (HKLM-x32\...\VISASharedComponents) (Version:  - )
Visual Studio 2010 Tools for SQL Server Compact 3.5 SP2 FRA (HKLM-x32\...\{D60023FA-3DF1-4537-93DD-13024CC4E366}) (Version: 4.0.8080.0 - Microsoft Corporation)
Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.1.5 - VideoLAN)
Wacom (HKLM\...\Pen Tablet Driver) (Version: 5.3.5-3 - Wacom Technology Corp.)
War Inc. Battlezone (HKLM-x32\...\Steam App 107900) (Version:  - )
Warhammer 40,000: Dawn of War - Game of the Year Edition (HKLM-x32\...\Steam App 4570) (Version:  - Relic)
WD Drive Utilities (HKLM-x32\...\{59E0381C-1047-45A3-B68A-57F586EAF3C2}) (Version: 1.1.0.51 - Western Digital Technologies, Inc.)
WD Security (HKLM-x32\...\{DEE2025E-D6C0-47E2-8657-AA57857FEEDA}) (Version: 1.1.1.3 - Western Digital Technologies, Inc.)
WD SmartWare (HKLM\...\{B7063C41-A5D1-482D-BE07-34750B26950B}) (Version: 2.1.0.11 - Western Digital Technologies, Inc.)
WebTablet FB Plugin 32 bit (HKLM-x32\...\Wacom WebTabletPlugin for Internet Explorer and Netscape) (Version: 2.1.0.7 - Wacom Technology Corp.)
WebTablet FB Plugin 64 bit (HKLM\...\Wacom WebTabletPlugin for Internet Explorer and Netscape) (Version: 2.1.0.7 - Wacom Technology Corp.)
WIF Core Dependencies Windows 5.5.0 (HKLM-x32\...\{4C280606-F07F-4BF4-80D1-CBEEC51A866C}) (Version: 5.50.155 - National Instruments) Hidden
Windows Driver Package - Digi International CDM Driver Package (10/28/2013 2.08.30.10) (HKLM\...\E34048117A7ADA54A13B2741325E53D9189993CC) (Version: 10/28/2013 2.08.30.10 - Digi International)
Windows Driver Package - Digi International CDM Driver Package (10/28/2013 2.08.30.10) (HKLM\...\FC9CE758D32BD6E481A68C06696B4CF706B1D7E3) (Version: 10/28/2013 2.08.30.10 - Digi International)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation)
Windows Media Encoder 9 Series (HKLM-x32\...\Windows Media Encoder 9) (Version:  - )
WinFlash (HKLM-x32\...\{8F21291E-0444-4B1D-B9F9-4370A73E346D}) (Version: 2.31.0 - ASUS)
WinRAR 5.11 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.11.0 - win.rar GmbH)
WinSCP 5.5.5 (HKLM-x32\...\winscp3_is1) (Version: 5.5.5 - Martin Prikryl)
Wireless Console 3 (HKLM-x32\...\{20FDF948-C8ED-4543-A539-F7F4AEF5AFA2}) (Version: 3.0.19 - ASUS)

========================= Memory info: ===================================

Percentage of memory in use: 33%
Total physical RAM: 12198.78 MB
Available physical RAM: 8069.77 MB
Total Pagefile: 24395.76 MB
Available Pagefile: 19787.46 MB
Total Virtual: 4095.88 MB
Available Virtual: 3974.09 MB

========================= Partitions: =====================================

1 Drive c: (OS) (Fixed) (Total:301.93 GB) (Free:19.72 GB) NTFS
2 Drive d: (Data) (Fixed) (Total:371.71 GB) (Free:11.05 GB) NTFS
3 Drive e: (Spiele und Krempel) (Fixed) (Total:349.32 GB) (Free:13.81 GB) NTFS
4 Drive f: (Fotos und temporäre Dateien) (Fixed) (Total:349.31 GB) (Free:16.02 GB) NTFS
6 Drive h: (NFSMW) (CDROM) (Total:2.19 GB) (Free:0 GB) UDF
8 Drive l: (Orbit) (Fixed) (Total:2794.49 GB) (Free:1580.44 GB) NTFS

========================= Users: ========================================

Benutzerkonten fr \\LUNA_REDEMPTION

Administrator            Domenico                 Gast                     
Philo                    Playutar                 
Der Befehl wurde erfolgreich ausgefhrt.


**** End of log ****
 



#4 Icomenid

Icomenid
  • Topic Starter

  • Members
  • 8 posts
  • OFFLINE
  •  
  • Local time:01:39 PM

Posted 06 June 2015 - 02:23 AM

No reboot was requested. 1 suspicious file found.

 

TDSSKiller report:

 

09:20:10.0697 0x1d2c  TDSS rootkit removing tool 3.0.0.44 Jan 22 2015 08:27:04
09:20:14.0194 0x1d2c  ============================================================
09:20:14.0194 0x1d2c  Current date / time: 2015/06/06 09:20:14.0194
09:20:14.0194 0x1d2c  SystemInfo:
09:20:14.0194 0x1d2c  
09:20:14.0194 0x1d2c  OS Version: 6.1.7601 ServicePack: 1.0
09:20:14.0194 0x1d2c  Product type: Workstation
09:20:14.0195 0x1d2c  ComputerName: LUNA_REDEMPTION
09:20:14.0195 0x1d2c  UserName: Domenico
09:20:14.0195 0x1d2c  Windows directory: C:\Windows
09:20:14.0195 0x1d2c  System windows directory: C:\Windows
09:20:14.0195 0x1d2c  Running under WOW64
09:20:14.0195 0x1d2c  Processor architecture: Intel x64
09:20:14.0195 0x1d2c  Number of processors: 8
09:20:14.0195 0x1d2c  Page size: 0x1000
09:20:14.0195 0x1d2c  Boot type: Normal boot
09:20:14.0195 0x1d2c  ============================================================
09:20:14.0742 0x1d2c  KLMD registered as C:\Windows\system32\drivers\78614680.sys
09:20:15.0505 0x1d2c  System UUID: {0CFA155F-9CC3-1F2E-B1B2-401C2E2A615F}
09:20:16.0838 0x1d2c  Drive \Device\Harddisk0\DR0 - Size: 0xAEA8CDE000 ( 698.64 Gb ), SectorSize: 0x200, Cylinders: 0x16441, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
09:20:17.0145 0x1d2c  Drive \Device\Harddisk1\DR1 - Size: 0xAEA8CDE000 ( 698.64 Gb ), SectorSize: 0x200, Cylinders: 0x16441, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
09:20:17.0224 0x1d2c  Drive \Device\Harddisk2\DR2 - Size: 0x2BA9F400000 ( 2794.49 Gb ), SectorSize: 0x1000, Cylinders: 0xB21F, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
09:20:17.0226 0x1d2c  ============================================================
09:20:17.0226 0x1d2c  \Device\Harddisk0\DR0:
09:20:17.0226 0x1d2c  MBR partitions:
09:20:17.0226 0x1d2c  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3200800, BlocksNum 0x25BDA000
09:20:17.0249 0x1d2c  \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x28DDB000, BlocksNum 0x2E76B000
09:20:17.0249 0x1d2c  \Device\Harddisk1\DR1:
09:20:17.0249 0x1d2c  MBR partitions:
09:20:17.0257 0x1d2c  \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x3F00, BlocksNum 0x2BAA48A2
09:20:17.0273 0x1d2c  \Device\Harddisk1\DR1\Partition2: MBR, Type 0x7, StartLBA 0x2BAA87E1, BlocksNum 0x2BA9CB20
09:20:17.0273 0x1d2c  \Device\Harddisk2\DR2:
09:20:17.0273 0x1d2c  MBR partitions:
09:20:17.0273 0x1d2c  \Device\Harddisk2\DR2\Partition1: MBR, Type 0x7, StartLBA 0x100, BlocksNum 0x2BA9F300
09:20:17.0273 0x1d2c  ============================================================
09:20:17.0292 0x1d2c  C: <-> \Device\Harddisk0\DR0\Partition1
09:20:17.0386 0x1d2c  D: <-> \Device\Harddisk0\DR0\Partition2
09:20:17.0420 0x1d2c  E: <-> \Device\Harddisk1\DR1\Partition1
09:20:17.0457 0x1d2c  F: <-> \Device\Harddisk1\DR1\Partition2
09:20:18.0145 0x1d2c  L: <-> \Device\Harddisk2\DR2\Partition1
09:20:18.0145 0x1d2c  ============================================================
09:20:18.0145 0x1d2c  Initialize success
09:20:18.0145 0x1d2c  ============================================================
09:20:22.0269 0x0f94  ============================================================
09:20:22.0269 0x0f94  Scan started
09:20:22.0269 0x0f94  Mode: Manual;
09:20:22.0269 0x0f94  ============================================================
09:20:22.0269 0x0f94  KSN ping started
09:20:25.0158 0x0f94  KSN ping finished: true
09:20:28.0803 0x0f94  ================ Scan system memory ========================
09:20:28.0803 0x0f94  System memory - ok
09:20:28.0804 0x0f94  ================ Scan services =============================
09:20:28.0996 0x0f94  [ A87D604AEA360176311474C87A63BB88, B1507868C382CD5D2DBC0D62114FCFBF7A780904A2E3CA7C7C1DD0844ADA9A8F ] 1394ohci        C:\Windows\system32\drivers\1394ohci.sys
09:20:29.0002 0x0f94  1394ohci - ok
09:20:29.0313 0x0f94  [ BBFD6BC7E79989B69F0998D0FEF4E6B8, 2283EC51F26AE34C79679741A220F0FF45703EB5F83823DF64F7AEA24A1966BA ] a2AntiMalware   C:\Program Files (x86)\Emsisoft Anti-Malware\a2service.exe
09:20:29.0434 0x0f94  a2AntiMalware - ok
09:20:29.0498 0x0f94  [ D81D9E70B8A6DD14D42D7B4EFA65D5F2, FDAAB7E23012B4D31537C5BDEF245BB0A12FA060A072C250E21C68E18B22E002 ] ACPI            C:\Windows\system32\drivers\ACPI.sys
09:20:29.0507 0x0f94  ACPI - ok
09:20:29.0561 0x0f94  [ 99F8E788246D495CE3794D7E7821D2CA, F91615463270AD2601F882CAED43B88E7EDA115B9FD03FC56320E48119F15F76 ] AcpiPmi         C:\Windows\system32\drivers\acpipmi.sys
09:20:29.0563 0x0f94  AcpiPmi - ok
09:20:29.0710 0x0f94  [ FC5B75CA6A1DA31EDD4F8D53F5540B98, CDC445F2790ADFC4C5568C40D4DA8BB95CD71991665B38AEC3D84571C99C3520 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
09:20:29.0713 0x0f94  AdobeARMservice - ok
09:20:29.0761 0x0f94  [ 2F6B34B83843F0C5118B63AC634F5BF4, 43E3F5FBFB5D33981AC503DEE476868EC029815D459E7C36C4ABC2D2F75B5735 ] adp94xx         C:\Windows\system32\DRIVERS\adp94xx.sys
09:20:29.0777 0x0f94  adp94xx - ok
09:20:29.0813 0x0f94  [ 597F78224EE9224EA1A13D6350CED962, DA7FD99BE5E3B7B98605BF5C13BF3F1A286C0DE1240617570B46FE4605E59BDC ] adpahci         C:\Windows\system32\DRIVERS\adpahci.sys
09:20:29.0824 0x0f94  adpahci - ok
09:20:29.0842 0x0f94  [ E109549C90F62FB570B9540C4B148E54, E804563735153EA00A00641814244BC8A347B578E7D63A16F43FB17566EE5559 ] adpu320         C:\Windows\system32\DRIVERS\adpu320.sys
09:20:29.0848 0x0f94  adpu320 - ok
09:20:29.0900 0x0f94  [ 83BFCCAC53795E8A5055A93672D0C46C, B2B03473D950A5BA9DE59D81E7B14C1FAFF17B2A4D8A5808588F5CC21D63B291 ] AeLookupSvc     C:\Windows\System32\aelupsvc.dll
09:20:29.0909 0x0f94  AeLookupSvc - ok
09:20:29.0959 0x0f94  [ 6E79A119B0CE418FE44E0C824BF3F039, 7C7E8ED41EFCDB20C1A0C038BB6C53CDBE6709E3573C8A93B4059C0CD08759EB ] AFBAgent        C:\Windows\system32\FBAgent.exe
09:20:29.0983 0x0f94  AFBAgent - ok
09:20:30.0024 0x0f94  [ FA886682CFC5D36718D3E436AACF10B9, F80AB4F91AA6B5C7ECCB000D8E1BC2CF776DC3D69B3D9EBC2558C19035A6B3AB ] AFD             C:\Windows\system32\drivers\afd.sys
09:20:30.0039 0x0f94  AFD - ok
09:20:30.0072 0x0f94  [ 608C14DBA7299D8CB6ED035A68A15799, 45360F89640BF1127C82A32393BD76205E4FA067889C40C491602F370C09282A ] agp440          C:\Windows\system32\drivers\agp440.sys
09:20:30.0074 0x0f94  agp440 - ok
09:20:30.0099 0x0f94  [ 3290D6946B5E30E70414990574883DDB, 0E9294E1991572256B3CDA6B031DB9F39CA601385515EE59F1F601725B889663 ] ALG             C:\Windows\System32\alg.exe
09:20:30.0110 0x0f94  ALG - ok
09:20:30.0168 0x0f94  [ 5812713A477A3AD7363C7438CA2EE038, A7316299470D2E57A11499C752A711BF4A71EB11C9CBA731ED0945FF6A966721 ] aliide          C:\Windows\system32\drivers\aliide.sys
09:20:30.0169 0x0f94  aliide - ok
09:20:30.0219 0x0f94  [ B3E801135E0C81733542C14D9AA8120A, 69A19C73BBB942DDEBD079EF924ED1AEFC3516867569618D2FBBD1CD831204C2 ] Alpham1         C:\Windows\system32\DRIVERS\Alpham164.sys
09:20:30.0222 0x0f94  Alpham1 - ok
09:20:30.0243 0x0f94  [ 6493983FEDBC49D9112703ECE9B251FE, E5D0EEBA8C8D9C02CC4109C86ABC6375E5CF79F6549917C011238FD2DD78BF71 ] Alpham2         C:\Windows\system32\DRIVERS\Alpham264.sys
09:20:30.0245 0x0f94  Alpham2 - ok
09:20:30.0781 0x0f94  ALSysIO - ok
09:20:30.0804 0x0f94  [ 1FF8B4431C353CE385C875F194924C0C, 3EA3A7F426B0FFC2461EDF4FDB4B58ACC9D0730EDA5B728D1EA1346EA0A02720 ] amdide          C:\Windows\system32\drivers\amdide.sys
09:20:30.0808 0x0f94  amdide - ok
09:20:30.0831 0x0f94  [ 7024F087CFF1833A806193EF9D22CDA9, E7F27E488C38338388103D3B7EEDD61D05E14FB140992AEE6F492FFC821BF529 ] AmdK8           C:\Windows\system32\DRIVERS\amdk8.sys
09:20:30.0834 0x0f94  AmdK8 - ok
09:20:30.0844 0x0f94  [ 1E56388B3FE0D031C44144EB8C4D6217, E88CA76FD47BA0EB427D59CB9BE040DE133D89D4E62D03A8D622624531D27487 ] AmdPPM          C:\Windows\system32\DRIVERS\amdppm.sys
09:20:30.0846 0x0f94  AmdPPM - ok
09:20:30.0866 0x0f94  [ D4121AE6D0C0E7E13AA221AA57EF2D49, 626F43C099BD197BE56648C367B711143C2BCCE96496BBDEF19F391D52FA01D0 ] amdsata         C:\Windows\system32\drivers\amdsata.sys
09:20:30.0869 0x0f94  amdsata - ok
09:20:30.0891 0x0f94  [ F67F933E79241ED32FF46A4F29B5120B, D6EF539058F159CC4DD14CA9B1FD924998FEAC9D325C823C7A2DD21FEF1DC1A8 ] amdsbs          C:\Windows\system32\DRIVERS\amdsbs.sys
09:20:30.0898 0x0f94  amdsbs - ok
09:20:30.0911 0x0f94  [ 540DAF1CEA6094886D72126FD7C33048, 296578572A93F5B74E1AD443E000B79DC99D1CBD25082E02704800F886A3065F ] amdxata         C:\Windows\system32\drivers\amdxata.sys
09:20:30.0912 0x0f94  amdxata - ok
09:20:31.0006 0x0f94  [ D46391F209DE0A98A97D1D1765F53438, 4D8C7D90BE3DB348ED4069CE3F4F403FCC6149D60B238E0B5DF9DCE4CF69C995 ] AMPPAL          C:\Windows\system32\DRIVERS\AMPPAL.sys
09:20:31.0013 0x0f94  AMPPAL - ok
09:20:31.0025 0x0f94  [ D46391F209DE0A98A97D1D1765F53438, 4D8C7D90BE3DB348ED4069CE3F4F403FCC6149D60B238E0B5DF9DCE4CF69C995 ] AMPPALP         C:\Windows\system32\DRIVERS\amppal.sys
09:20:31.0030 0x0f94  AMPPALP - ok
09:20:31.0155 0x0f94  [ EDFB061F7D553B84731B8263077FD520, 6A678358AAAB411C2A4911E1DA9E668F801831B8EE95E77977F72A0A5A3F90D9 ] AMPPALR3        C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
09:20:31.0173 0x0f94  AMPPALR3 - ok
09:20:31.0219 0x0f94  [ 9C7F164B49CADC658D1B3C575782F346, 7C5FD203735041B6AEB2E551A63CE5F46DB41044BC72E7E77A72F316197C80DA ] AmUStor         C:\Windows\system32\drivers\AmUStor.SYS
09:20:31.0221 0x0f94  AmUStor - ok
09:20:31.0371 0x0f94  [ D908096B873B940BB438CE63BA35BD1E, F1C79C907E6CDBC2770C16AFFAE0D6F9B9B7DA21F5074D602AC5FE1597975748 ] AntiVirMailService C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe
09:20:31.0392 0x0f94  AntiVirMailService - ok
09:20:31.0462 0x0f94  [ EC705D6ED3A7F3D9AE42F6239707D9FE, B50F6BB0FC308E7403B1807DF2AAF87BEDE0B044128C580970A26801CCABC43F ] AntiVirSchedulerService C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
09:20:31.0472 0x0f94  AntiVirSchedulerService - ok
09:20:31.0539 0x0f94  [ EC705D6ED3A7F3D9AE42F6239707D9FE, B50F6BB0FC308E7403B1807DF2AAF87BEDE0B044128C580970A26801CCABC43F ] AntiVirService  C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
09:20:31.0551 0x0f94  AntiVirService - ok
09:20:31.0639 0x0f94  [ 266C0506DF8BA3990E12885E64EE4420, 60995CFE54B8594179BEAB06C4498CBF997B0C85147E5DD747CE238C89F6979D ] AntiVirWebService C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE
09:20:31.0671 0x0f94  AntiVirWebService - ok
09:20:31.0743 0x0f94  [ 90C53BD47979FB8814F465A08B885102, 5EDFC1909FC1FF9133A534DFCC5408CF3A777AC41FB21FAD375436E3D86C02EC ] AppID           C:\Windows\system32\drivers\appid.sys
09:20:31.0745 0x0f94  AppID - ok
09:20:31.0760 0x0f94  [ 72D4757510FDA69D729169C00AFC211E, FB9686D0D94EE7C19A3994C29E8331A6EC3020B2980B2CC75F72F3AB25512C15 ] AppIDSvc        C:\Windows\System32\appidsvc.dll
09:20:31.0775 0x0f94  AppIDSvc - ok
09:20:31.0826 0x0f94  [ 9D2A2369AB4B08A4905FE72DB104498F, D6FA1705018BABABFA2362E05691A0D6408D14DE7B76129B16D0A1DAD6378E58 ] Appinfo         C:\Windows\System32\appinfo.dll
09:20:31.0835 0x0f94  Appinfo - ok
09:20:32.0083 0x0f94  [ 6B73E94F9FE82D45781B8C8A09483082, C35EEAE7457168387A7C77A315524A3703ABDE49D9F23F59057315D9249D3473 ] Apple Mobile Device C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
09:20:32.0085 0x0f94  Apple Mobile Device - ok
09:20:32.0129 0x0f94  [ C484F8CEB1717C540242531DB7845C4E, C507CE26716EB923B864ED85E8FA0B24591E2784A2F4F0E78AEED7E9953311F6 ] arc             C:\Windows\system32\DRIVERS\arc.sys
09:20:32.0132 0x0f94  arc - ok
09:20:32.0161 0x0f94  [ 019AF6924AEFE7839F61C830227FE79C, 5926B9DDFC9198043CDD6EA0B384C83B001EC225A8125628C4A45A3E6C42C72A ] arcsas          C:\Windows\system32\DRIVERS\arcsas.sys
09:20:32.0166 0x0f94  arcsas - ok
09:20:32.0226 0x0f94  [ 18E5C2F937F9DEB8C282DF66A3761925, 30294C381F8C7DCB45EF9BCF572F410FF47630E12D5AA02259C6C80F07BEF495 ] ASLDRService    C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
09:20:32.0231 0x0f94  ASLDRService - ok
09:20:32.0285 0x0f94  [ 4C016FD76ED5C05E84CA8CAB77993961, 025E7BE9FCEFD6A83F4471BBA0C11F1C11BD5047047D26626DA24EE9A419CDC4 ] ASMMAP64        C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys
09:20:32.0287 0x0f94  ASMMAP64 - ok
09:20:32.0593 0x0f94  [ F15AB80B867D3332D5DDFB0A05B9CE04, 5A16577106246AB5DCC04FE0A0B00B7C5702557B75F958721E4C00383AB99809 ] aspnet_state    C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
09:20:32.0659 0x0f94  aspnet_state - ok
09:20:32.0704 0x0f94  [ B5B4C90E9F52DA8586F1E5461AD90A5D, D1EAA34E6AEB014E942D22F8CB5FB19BF1E2EADE5B5357274C001F44FDC25F05 ] aswHwid         C:\Windows\system32\drivers\aswHwid.sys
09:20:32.0706 0x0f94  aswHwid - ok
09:20:32.0750 0x0f94  [ 300CB8E510855189CAD0B72FFB5590CB, EB50DC553FA8FD9DE3F60AAFED20702EAFBB1498EBD3220A39CC52A12F694246 ] aswMonFlt       C:\Windows\system32\drivers\aswMonFlt.sys
09:20:32.0758 0x0f94  aswMonFlt - ok
09:20:32.0786 0x0f94  [ 6D37D8DB30D086739507C5F6E542656A, 746D9E32E729138EA19062F4E6B6C98B6833504020A296E3E2A9CD92E0FED0B9 ] aswRdr          C:\Windows\system32\drivers\aswRdr2.sys
09:20:32.0789 0x0f94  aswRdr - ok
09:20:32.0826 0x0f94  [ 07E32DFCA422A2920482D762D01957EC, A6502D26266D708E55EB2883897673AD3087C41D9EA0B41CD6BF6BD923EBDCB8 ] aswRvrt         C:\Windows\system32\drivers\aswRvrt.sys
09:20:32.0833 0x0f94  aswRvrt - ok
09:20:32.0924 0x0f94  [ 3B4AC2DBFC86F7247C1FF1FAF2860530, A54A693D01C02AAE2B78BFE9B3900B5A6DD0C2C37C8FA58B14B5F57107032FF5 ] aswSnx          C:\Windows\system32\drivers\aswSnx.sys
09:20:32.0981 0x0f94  aswSnx - ok
09:20:33.0027 0x0f94  [ B1368BE5F6BA529E0886F4DA2361BD2D, B95F430B4E4EFE9D257870722AA8F0507FB96FBE3AAB12068C662CCB6A180FE2 ] aswSP           C:\Windows\system32\drivers\aswSP.sys
09:20:33.0042 0x0f94  aswSP - ok
09:20:33.0067 0x0f94  [ 6E53278ECCFFBC2ACC2A5006745ED4BB, 392170073A8933DB43CD1D64AD087F972F1971BF83BCAFE5B8FA1273C02026CE ] aswStm          C:\Windows\system32\drivers\aswStm.sys
09:20:33.0071 0x0f94  aswStm - ok
09:20:33.0121 0x0f94  [ 91782404718C6352C26B3242BAC3F0F1, 84B1CDD1EBC83FAEBDCC8F67B13CA405C6CF0C518FC016603889EBE48FC91AB9 ] aswVmm          C:\Windows\system32\drivers\aswVmm.sys
09:20:33.0152 0x0f94  aswVmm - ok
09:20:33.0181 0x0f94  [ 769765CE2CC62867468CEA93969B2242, 0D8F19D49869DF93A3876B4C2E249D12E83F9CE11DAE8917D368E292043D4D26 ] AsyncMac        C:\Windows\system32\DRIVERS\asyncmac.sys
09:20:33.0182 0x0f94  AsyncMac - ok
09:20:33.0245 0x0f94  [ 02062C0B390B7729EDC9E69C680A6F3C, 0261683C6DC2706DCE491A1CDC954AC9C9E649376EC30760BB4E225E18DC5273 ] atapi           C:\Windows\system32\drivers\atapi.sys
09:20:33.0246 0x0f94  atapi - ok
09:20:33.0309 0x0f94  [ E857EEE6B92AAA473EBB3465ADD8F7E7, 1C7E4737E649A025B3C4974A4F7D1353EAB85561FC8ED54E5C22A777E1A189B3 ] athr            C:\Windows\system32\DRIVERS\athrx.sys
09:20:33.0353 0x0f94  athr - ok
09:20:33.0407 0x0f94  [ 7910158929571214A959D5A6D16DD9C0, 9B4F8A3AF9E09B2F772EEF1CB8F7EAB8A226068784837F375AE97B89B0B3A383 ] ATKGFNEXSrv     C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
09:20:33.0412 0x0f94  ATKGFNEXSrv - ok
09:20:33.0451 0x0f94  [ FC0E8778C000291CAF60EB88C011E931, 09BCCA3DE01021AEF76DFB46F01D21BA6FF409E816FA7547E5C3DFBF3A615ED2 ] atksgt          C:\Windows\system32\DRIVERS\atksgt.sys
09:20:33.0462 0x0f94  atksgt - ok
09:20:33.0482 0x0f94  [ 1F7238A37389ED92E9D8EEE975CABD54, AFEE4B89A330C106651BB230920FC623813B075D2B75DFEDCC68A3207B291365 ] ATKWMIACPIIO    C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys
09:20:33.0485 0x0f94  ATKWMIACPIIO - ok
09:20:33.0558 0x0f94  [ 6968D02DC38757C3FBE7ED7C2F9670AA, C8B3115DDB32EFBE8C56C5AA78EEA05BBB77DF3F75CC2A04532EB32327E4735A ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
09:20:33.0587 0x0f94  AudioEndpointBuilder - ok
09:20:33.0611 0x0f94  [ 6968D02DC38757C3FBE7ED7C2F9670AA, C8B3115DDB32EFBE8C56C5AA78EEA05BBB77DF3F75CC2A04532EB32327E4735A ] AudioSrv        C:\Windows\System32\Audiosrv.dll
09:20:33.0629 0x0f94  AudioSrv - ok
09:20:33.0820 0x0f94  [ 54236E79A44F909612391C8A2D70D512, B0DF5BCC4F90AF087D0306F8D81F90B2CAE0176813E3AA6A7D5460F7878677CD ] avast! Antivirus C:\Program Files (x86)\Avast\AvastSvc.exe
09:20:33.0828 0x0f94  avast! Antivirus - ok
09:20:33.0886 0x0f94  [ 43B6D229C7DBA9F0FC0FC0C318DB5350, F5A525DBD71FC4A323E92839C6D27F323FB304B7E9FFA35E89E9B419570AA4C8 ] avgntflt        C:\Windows\system32\DRIVERS\avgntflt.sys
09:20:33.0890 0x0f94  avgntflt - ok
09:20:33.0968 0x0f94  [ 68430AD3FB0FADBFA5D1677617D1E1F5, CF732DD21B472653AB0A4063455F2E7608F3075C255B9882D18CB52026B6C972 ] avgtp           C:\Windows\system32\drivers\avgtpx64.sys
09:20:33.0970 0x0f94  avgtp - ok
09:20:34.0037 0x0f94  [ 626D1BAD7A1975A8FEE8876A8AD0EEA7, 59772746A2DF3B7E8D021756B8A64569AC8468CA1C802EB594494224354F1E60 ] avipbb          C:\Windows\system32\DRIVERS\avipbb.sys
09:20:34.0041 0x0f94  avipbb - ok
09:20:34.0110 0x0f94  [ 05ABC09DC0DFA5DF79A0BB39F60636B7, FEDE900D991F1FB40BA0A44E05181A6A506DC8B5F365E78E523CB6DF2CDACC15 ] Avira.OE.ServiceHost C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe
09:20:34.0114 0x0f94  Avira.OE.ServiceHost - ok
09:20:34.0151 0x0f94  [ 390184FAD8FCC1B6DA25AEBAE928C3B6, 537B0E0FAE080B55D70E990BBA0F7F22903CA340F6A42039BAD617A8ECF59119 ] avkmgr          C:\Windows\system32\DRIVERS\avkmgr.sys
09:20:34.0152 0x0f94  avkmgr - ok
09:20:34.0240 0x0f94  [ 13253E5E3B6BDF945B63B336A8C9489B, 671C716E43F89D4BDDAA2BE045CDEBBB569C85BC2BA334E1F550187B79A7740D ] avnetflt        C:\Windows\system32\DRIVERS\avnetflt.sys
09:20:34.0257 0x0f94  avnetflt - ok
09:20:34.0341 0x0f94  [ A6BF31A71B409DFA8CAC83159E1E2AFF, CBB83F73FFD3C3FB4F96605067739F8F7A4A40B2B05417FA49E575E95628753F ] AxInstSV        C:\Windows\System32\AxInstSV.dll
09:20:34.0356 0x0f94  AxInstSV - ok
09:20:34.0398 0x0f94  [ 3E5B191307609F7514148C6832BB0842, DE011CB7AA4A2405FAF21575182E0793A1D83DFFC44E9A7864D59F3D51D8D580 ] b06bdrv         C:\Windows\system32\DRIVERS\bxvbda.sys
09:20:34.0412 0x0f94  b06bdrv - ok
09:20:34.0454 0x0f94  [ B5ACE6968304A3900EEB1EBFD9622DF2, 1DAA118D8CA3F97B34DF3D3CDA1C78EAB2ED225699FEABE89D331AE0CB7679FA ] b57nd60a        C:\Windows\system32\DRIVERS\b57nd60a.sys
09:20:34.0465 0x0f94  b57nd60a - ok
09:20:34.0504 0x0f94  [ FDE360167101B4E45A96F939F388AEB0, 8D1457E866BBD645C4B9710DFBFF93405CC1193BF9AE42326F2382500B713B82 ] BDESVC          C:\Windows\System32\bdesvc.dll
09:20:34.0517 0x0f94  BDESVC - ok
09:20:34.0530 0x0f94  [ 16A47CE2DECC9B099349A5F840654746, 77C008AEDB07FAC66413841D65C952DDB56FE7DCA5E9EF9C8F4130336B838024 ] Beep            C:\Windows\system32\drivers\Beep.sys
09:20:34.0535 0x0f94  Beep - ok
09:20:34.0632 0x0f94  [ 82974D6A2FD19445CC5171FC378668A4, 075D25F47C0D2277E40AF8615571DAA5EB16B1824563632A9A7EC62505C29A4A ] BFE             C:\Windows\System32\bfe.dll
09:20:34.0665 0x0f94  BFE - ok
09:20:34.0731 0x0f94  [ 1EA7969E3271CBC59E1730697DC74682, D511A34D63A6E0E6E7D1879068E2CD3D87ABEAF4936B2EA8CDDAD9F79D60FA04 ] BITS            C:\Windows\System32\qmgr.dll
09:20:34.0764 0x0f94  BITS - ok
09:20:34.0800 0x0f94  [ 61583EE3C3A17003C4ACD0475646B4D3, 17E4BECC309C450E7E44F59A9C0BBC24D21BDC66DFBA65B8F198A00BB47A9811 ] blbdrive        C:\Windows\system32\DRIVERS\blbdrive.sys
09:20:34.0802 0x0f94  blbdrive - ok
09:20:34.0865 0x0f94  [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD, 17BFFC5DF609CE3B2F0CAB4BD6C118608C66A3AD86116A47E90B2BB7D8954122 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
09:20:34.0893 0x0f94  Bonjour Service - ok
09:20:34.0925 0x0f94  [ 6C02A83164F5CC0A262F4199F0871CF5, AD4632A6A203CB40970D848315D8ADB9C898349E20D8DF4107C2AE2703A2CF28 ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
09:20:34.0928 0x0f94  bowser - ok
09:20:34.0950 0x0f94  [ F09EEE9EDC320B5E1501F749FDE686C8, 66691114C42E12F4CC6DC4078D4D2FA4029759ACDAF1B59D17383487180E84E3 ] BrFiltLo        C:\Windows\system32\DRIVERS\BrFiltLo.sys
09:20:34.0952 0x0f94  BrFiltLo - ok
09:20:34.0972 0x0f94  [ B114D3098E9BDB8BEA8B053685831BE6, 0ED23C1897F35FA00B9C2848DE4ED200E18688AA7825674888054BBC3A3EB92C ] BrFiltUp        C:\Windows\system32\DRIVERS\BrFiltUp.sys
09:20:34.0973 0x0f94  BrFiltUp - ok
09:20:35.0031 0x0f94  [ 05F5A0D14A2EE1D8255C2AA0E9E8E694, 40011138869F5496A3E78D38C9900B466B6F3877526AC22952DCD528173F4645 ] Browser         C:\Windows\System32\browser.dll
09:20:35.0044 0x0f94  Browser - ok
09:20:35.0074 0x0f94  [ 43BEA8D483BF1870F018E2D02E06A5BD, 4E6F5A5FD8C796A110B0DC9FF29E31EA78C04518FC1C840EF61BABD58AB10272 ] Brserid         C:\Windows\System32\Drivers\Brserid.sys
09:20:35.0081 0x0f94  Brserid - ok
09:20:35.0118 0x0f94  [ A6ECA2151B08A09CACECA35C07F05B42, E2875BB7768ABAF38C3377007AA0A3C281503474D1831E396FB6599721586B0C ] BrSerWdm        C:\Windows\System32\Drivers\BrSerWdm.sys
09:20:35.0120 0x0f94  BrSerWdm - ok
09:20:35.0149 0x0f94  [ B79968002C277E869CF38BD22CD61524, 50631836502237AF4893ECDCEA43B9031C3DE97433F594D46AF7C3C77F331983 ] BrUsbMdm        C:\Windows\System32\Drivers\BrUsbMdm.sys
09:20:35.0150 0x0f94  BrUsbMdm - ok
09:20:35.0171 0x0f94  [ A87528880231C54E75EA7A44943B38BF, 4C8BBB29FDA76A96840AA47A8613C15D4466F9273A13941C19507008629709C9 ] BrUsbSer        C:\Windows\System32\Drivers\BrUsbSer.sys
09:20:35.0173 0x0f94  BrUsbSer - ok
09:20:35.0260 0x0f94  [ AC5D62BEEC185080934DEB4392694F3B, A4F36B3FBA0E3F8A220AF3CDB795FBD5422DB404DEA76FD0FBF460CDC109F286 ] BS_DEF          C:\Windows\BS_DEF.sys
09:20:35.0261 0x0f94  Suspicious file ( Forged ): C:\Windows\BS_DEF.sys. Real md5: AC5D62BEEC185080934DEB4392694F3B, sha256: A4F36B3FBA0E3F8A220AF3CDB795FBD5422DB404DEA76FD0FBF460CDC109F286, fake md5: 0D6BC1462F9EC5BE631FCF1C3EB5505D, fake sha256: 6327DA7F4CB8C45F6DC99BD2A4B2FBB75732B0A599106E1EB0FA530DA25BD032
09:20:35.0261 0x0f94  BS_DEF - detected ForgedFile.Multi.Generic ( 1 )
09:20:45.0344 0x0f94  BS_DEF ( ForgedFile.Multi.Generic ) - warning
09:20:45.0344 0x0f94  Force sending object to P2P due to detect: BS_DEF
09:20:49.0209 0x0f94  Object send P2P result: true
09:20:52.0191 0x0f94  [ CF98190A94F62E405C8CB255018B2315, E1B2540023C4FE9FD588E4B6AE6347DFA565EB3898F21E5360882BF3E8B5E781 ] BthEnum         C:\Windows\system32\drivers\BthEnum.sys
09:20:52.0193 0x0f94  BthEnum - ok
09:20:52.0228 0x0f94  [ 9DA669F11D1F894AB4EB69BF546A42E8, B498B8B6CEF957B73179D1ADAF084BBB57BB3735D810F9BE2C7B1D58A4FD25A4 ] BTHMODEM        C:\Windows\system32\DRIVERS\bthmodem.sys
09:20:52.0231 0x0f94  BTHMODEM - ok
09:20:52.0246 0x0f94  [ 02DD601B708DD0667E1331FA8518E9FF, 7DE6CC4DBB621CD03B01D9CE6CF66EAFE31D39030A391562CD0E278E1D70ADE1 ] BthPan          C:\Windows\system32\DRIVERS\bthpan.sys
09:20:52.0250 0x0f94  BthPan - ok
09:20:52.0299 0x0f94  [ 738D0E9272F59EB7A1449C3EC118E6C4, FE3D32C2A5E4DC21376A0F89C0B2EE024ECF1A3FB99213CC9BBC986ADF7AF080 ] BTHPORT         C:\Windows\System32\Drivers\BTHport.sys
09:20:52.0315 0x0f94  BTHPORT - ok
09:20:52.0359 0x0f94  [ 95F9C2976059462CBBF227F7AAB10DE9, 2797AE919FF7606B070FB039CECDB0707CD2131DCAC09C5DF14F443D881C9F34 ] bthserv         C:\Windows\system32\bthserv.dll
09:20:52.0371 0x0f94  bthserv - ok
09:20:52.0411 0x0f94  [ A3BC030FC526643DFDCA27299F75544B, A5BB94DBE52746D16CB35EE5311F1660232F6BA840F70420549360A19B7D6F7E ] BTHSSecurityMgr C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
09:20:52.0415 0x0f94  BTHSSecurityMgr - ok
09:20:52.0429 0x0f94  [ F188B7394D81010767B6DF3178519A37, 576304E92FD94908F093A6AB5F4D328F25829BE32EC3CA0D29EBFDF5DE83539B ] BTHUSB          C:\Windows\System32\Drivers\BTHUSB.sys
09:20:52.0432 0x0f94  BTHUSB - ok
09:20:52.0465 0x0f94  [ B8BD2BB284668C84865658C77574381A, 6C55BA288B626DF172FDFEA0BD7027FAEBA1F44EF20AB55160D7C7DC6E717D65 ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
09:20:52.0468 0x0f94  cdfs - ok
09:20:52.0503 0x0f94  [ F036CE71586E93D94DAB220D7BDF4416, BD07AAD9E20CEAF9FC84E4977C55EA2C45604A2C682AC70B9B9A2199B6713D5B ] cdrom           C:\Windows\system32\DRIVERS\cdrom.sys
09:20:52.0508 0x0f94  cdrom - ok
09:20:52.0552 0x0f94  [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] CertPropSvc     C:\Windows\System32\certprop.dll
09:20:52.0562 0x0f94  CertPropSvc - ok
09:20:52.0588 0x0f94  [ D7CD5C4E1B71FA62050515314CFB52CF, 513B5A849899F379F0BC6AB3A8A05C3493C2393C95F036612B96EC6E252E1C64 ] circlass        C:\Windows\system32\DRIVERS\circlass.sys
09:20:52.0590 0x0f94  circlass - ok
09:20:52.0643 0x0f94  [ 404B7DF9CA4D1CB675045AF220FF3285, 91FFADE2ABE5C48849E63134D5FFD20671FE0D1720F7D486F904391B3D142C96 ] CLFS            C:\Windows\system32\CLFS.sys
09:20:52.0655 0x0f94  CLFS - ok
09:20:52.0735 0x0f94  [ F13EC8A783E0CB0D6DC26A3CA848B7B8, 0809E3B71709F1343086EEB6C820543C1A7119E74EEF8AC1AEE1F81093ABEC66 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
09:20:52.0746 0x0f94  clr_optimization_v2.0.50727_32 - ok
09:20:52.0795 0x0f94  [ B4D73F04E9BC076F7CDAC4327DF636BB, 1ADED20D5A0D0A76E2F85CB778FD06BAB814868D35F8532E17D67045FF4770C2 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
09:20:52.0813 0x0f94  clr_optimization_v2.0.50727_64 - ok
09:20:52.0883 0x0f94  [ F5AB4D2E36625F355E81539239765107, 48E6AD65EEFD6C54F938F5753EF58377CDA77ADBB41CD8635F0040D61EFB92A4 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
09:20:53.0020 0x0f94  clr_optimization_v4.0.30319_32 - ok
09:20:53.0043 0x0f94  [ 9ACBE5EC13C2CC95833BFB7636CA8B1A, 6224DA9FB335D2A8374C60B8DEA539DD3A0E43230DB888B137B71A56EC57D6AF ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
09:20:53.0085 0x0f94  clr_optimization_v4.0.30319_64 - ok
09:20:53.0129 0x0f94  [ 0840155D0BDDF1190F84A663C284BD33, 696039FA63CFEB33487FAA8FD7BBDB220141E9C6E529355D768DFC87999A9C3A ] CmBatt          C:\Windows\system32\DRIVERS\CmBatt.sys
09:20:53.0131 0x0f94  CmBatt - ok
09:20:53.0160 0x0f94  [ E19D3F095812725D88F9001985B94EDD, 46243C5CCC4981CAC6FA6452FFCEC33329BF172448F1852D52592C9342E0E18B ] cmdide          C:\Windows\system32\drivers\cmdide.sys
09:20:53.0161 0x0f94  cmdide - ok
09:20:53.0215 0x0f94  [ 27667A788130A7F7A5858DE27572E6D7, 5501D80BCCB7A811ECCED3828DFD0A5D948BBED8504E9BCC4A3BFB840DD41CBC ] CNG             C:\Windows\system32\Drivers\cng.sys
09:20:53.0230 0x0f94  CNG - ok
09:20:53.0296 0x0f94  [ 102DE219C3F61415F964C88E9085AD14, CD74CB703381F1382C32CF892FF2F908F4C9412E1BC77234F8FEA5D4666E1BF1 ] Compbatt        C:\Windows\system32\DRIVERS\compbatt.sys
09:20:53.0298 0x0f94  Compbatt - ok
09:20:53.0341 0x0f94  [ 03EDB043586CCEBA243D689BDDA370A8, 0E4523AA332E242D5C2C61C5717DBA5AB6E42DADB5A7E512505FC2B6CC224959 ] CompositeBus    C:\Windows\system32\drivers\CompositeBus.sys
09:20:53.0343 0x0f94  CompositeBus - ok
09:20:53.0361 0x0f94  COMSysApp - ok
09:20:53.0451 0x0f94  [ 08F934092E0429BADF88E9F91DB0F61E, 6E9091C006FFFF261DC61C8E9A45219E47C351296E5355FC4B7242F30E1DDFE3 ] cphs            C:\Windows\SysWow64\IntelCpHeciSvc.exe
09:20:53.0473 0x0f94  cphs - ok
09:20:53.0498 0x0f94  [ 1C827878A998C18847245FE1F34EE597, 41EF7443D8B2733AA35CAC64B4F5F74FAC8BB0DA7D3936B69EC38E2DC3972E60 ] crcdisk         C:\Windows\system32\DRIVERS\crcdisk.sys
09:20:53.0500 0x0f94  crcdisk - ok
09:20:53.0554 0x0f94  [ 1CD76A83B9E8E9A5A3519B39E28354D9, F9931743B99820FFBFB13136DFFD92F86802D543F9D8478648CDC554FB38899D ] CryptSvc        C:\Windows\system32\cryptsvc.dll
09:20:53.0567 0x0f94  CryptSvc - ok
09:20:53.0726 0x0f94  [ B4D1D62A09F09CB2DFD55628350CDAFB, 7DD3CE77D88B5AFAC4B6187F4CA6D50B7BD3398207163B2A1E4C76467801FF28 ] cvhsvc          C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE
09:20:53.0748 0x0f94  cvhsvc - ok
09:20:53.0804 0x0f94  [ D06E443457FADC6B1AFAF3AA4B6936F6, 109B4D05E156604AFB3D63B380CC063B900AEB12F57A1D235B9F9399EE0909C7 ] dc3d            C:\Windows\system32\DRIVERS\dc3d.sys
09:20:53.0807 0x0f94  dc3d - ok
09:20:53.0877 0x0f94  [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] DcomLaunch      C:\Windows\system32\rpcss.dll
09:20:53.0896 0x0f94  DcomLaunch - ok
09:20:53.0933 0x0f94  [ 3CEC7631A84943677AA8FA8EE5B6B43D, 32061DAC9ED6C1EBA3B367B18D0E965AEEC2DF635DCF794EC39D086D32503AC5 ] defragsvc       C:\Windows\System32\defragsvc.dll
09:20:53.0943 0x0f94  defragsvc - ok
09:20:53.0983 0x0f94  [ 9BB2EF44EAA163B29C4A4587887A0FE4, 03667BC3EA5003F4236929C10F23D8F108AFCB29DB5559E751FB26DFB318636F ] DfsC            C:\Windows\system32\Drivers\dfsc.sys
09:20:53.0986 0x0f94  DfsC - ok
09:20:54.0042 0x0f94  [ 43D808F5D9E1A18E5EEB5EBC83969E4E, C10D1155D71EABE4ED44C656A8F13078A8A4E850C4A8FBB92D52D173430972B8 ] Dhcp            C:\Windows\system32\dhcpcore.dll
09:20:54.0060 0x0f94  Dhcp - ok
09:20:54.0184 0x0f94  [ AA5319FA8602676B5D3A2B4A1355896D, 57532E16FF0DDE3D62B6B6DC35E2598DD453140E9277247965A1E835645E588A ] DiagTrack       C:\Windows\system32\diagtrack.dll
09:20:54.0250 0x0f94  DiagTrack - ok
09:20:54.0284 0x0f94  [ 13096B05847EC78F0977F2C0F79E9AB3, 1E44981B684F3E56F5D2439BB7FA78BD1BC876BB2265AE089AEC68F241B05B26 ] discache        C:\Windows\system32\drivers\discache.sys
09:20:54.0286 0x0f94  discache - ok
09:20:54.0317 0x0f94  [ 9819EEE8B5EA3784EC4AF3B137A5244C, 571BC886E87C888DA96282E381A746D273B58B9074E84D4CA91275E26056D427 ] Disk            C:\Windows\system32\DRIVERS\disk.sys
09:20:54.0320 0x0f94  Disk - ok
09:20:54.0354 0x0f94  [ 16835866AAA693C7D7FCEBA8FFF706E4, 15891558F7C1F2BB57A98769601D447ED0D952354A8BB347312D034DC03E0242 ] Dnscache        C:\Windows\System32\dnsrslvr.dll
09:20:54.0368 0x0f94  Dnscache - ok
09:20:54.0412 0x0f94  [ B1FB3DDCA0FDF408750D5843591AFBC6, AB6AD9C5E7BA2E3646D0115B67C4800D1CB43B4B12716397657C7ADEEE807304 ] dot3svc         C:\Windows\System32\dot3svc.dll
09:20:54.0430 0x0f94  dot3svc - ok
09:20:54.0511 0x0f94  [ B42ED0320C6E41102FDE0005154849BB, 4DB872E23AD049C3C9FDC0759FC58BFA60DA91B18BC82B611BFA300D26DDFC7A ] dot4            C:\Windows\system32\DRIVERS\Dot4.sys
09:20:54.0516 0x0f94  dot4 - ok
09:20:54.0570 0x0f94  [ E9F5969233C5D89F3C35E3A66A52A361, C4BD35795C78FB11E6022372CB25DEB570730EFDAD3DC1584368235FF622638C ] Dot4Print       C:\Windows\system32\DRIVERS\Dot4Prt.sys
09:20:54.0571 0x0f94  Dot4Print - ok
09:20:54.0631 0x0f94  [ FD05A02B0370BC3000F402E543CA5814, 089B1113E640F495F470E8F57060B89546270481B309DC8ED3C3D13A849076A3 ] dot4usb         C:\Windows\system32\DRIVERS\dot4usb.sys
09:20:54.0634 0x0f94  dot4usb - ok
09:20:54.0704 0x0f94  [ B26F4F737E8F9DF4F31AF6CF31D05820, 394BBBED4EC7FAD4110F62A43BFE0801D4AC56FFAC6C741C69407B26402311C7 ] DPS             C:\Windows\system32\dps.dll
09:20:54.0710 0x0f94  DPS - ok
09:20:54.0745 0x0f94  [ 9B19F34400D24DF84C858A421C205754, 967AF267B4124BADA8F507CEBF25F2192D146A4D63BE71B45BFC03C5DA7F21A7 ] drmkaud         C:\Windows\system32\drivers\drmkaud.sys
09:20:54.0746 0x0f94  drmkaud - ok
09:20:54.0779 0x0f94  [ 6A0E850DDCB136AA3D2FB7234382DF12, C01863E95F45E1B74AC65C9CD12C8DC769299218255B3C94E3EBF58C4D79FEF3 ] dtsoftbus01     C:\Windows\system32\DRIVERS\dtsoftbus01.sys
09:20:54.0789 0x0f94  dtsoftbus01 - ok
09:20:54.0845 0x0f94  [ 87CE5C8965E101CCCED1F4675557E868, 077D98F0F130B2FC710208BA34016EF2B2506EE2BD71740B228145E34A3046F1 ] DXGKrnl         C:\Windows\System32\drivers\dxgkrnl.sys
09:20:54.0875 0x0f94  DXGKrnl - ok
09:20:54.0958 0x0f94  [ E2DDA8726DA9CB5B2C4000C9018A9633, 0C967DBC3636A76A696997192A158AA92A1AF19F01E3C66D5BF91818A8FAEA76 ] EapHost         C:\Windows\System32\eapsvc.dll
09:20:54.0970 0x0f94  EapHost - ok
09:20:55.0003 0x0f94  EasyAntiCheat - ok
09:20:55.0191 0x0f94  [ DC5D737F51BE844D8C82C695EB17372F, 6D4022D9A46EDE89CEF0FAEADCC94C903234DFC460C0180D24FF9E38E8853017 ] ebdrv           C:\Windows\system32\DRIVERS\evbda.sys
09:20:55.0308 0x0f94  ebdrv - ok
09:20:55.0360 0x0f94  [ 17A6A9AAD04CCC6EE53290585BFC43AF, E4901D86C6470D21ABA0F6D9615A613E5C74A3FEF931E497F51B6AFA5715332B ] EFS             C:\Windows\System32\lsass.exe
09:20:55.0369 0x0f94  EFS - ok
09:20:55.0480 0x0f94  [ C4002B6B41975F057D98C439030CEA07, 3D2484FBB832EFB90504DD406ED1CF3065139B1FE1646471811F3A5679EF75F1 ] ehRecvr         C:\Windows\ehome\ehRecvr.exe
09:20:55.0540 0x0f94  ehRecvr - ok
09:20:55.0566 0x0f94  [ 4705E8EF9934482C5BB488CE28AFC681, 359E9EC5693CE0BE89082E1D5D8F5C5439A5B985010FF0CB45C11E3CFE30637D ] ehSched         C:\Windows\ehome\ehsched.exe
09:20:55.0581 0x0f94  ehSched - ok
09:20:55.0657 0x0f94  [ 0E5DA5369A0FCAEA12456DD852545184, 9A64AC5396F978C3B92794EDCE84DCA938E4662868250F8C18FA7C2C172233F8 ] elxstor         C:\Windows\system32\DRIVERS\elxstor.sys
09:20:55.0675 0x0f94  elxstor - ok
09:20:55.0809 0x0f94  [ CA4ADE6C3929B70317BFDDF9ABBFE0CE, 824F3D26FDFBA38A5191C78E68379D48C915FB6F82BD353A1D5416537F8A0A42 ] epp64           C:\Windows\system32\DRIVERS\epp64.sys
09:20:55.0814 0x0f94  epp64 - ok
09:20:55.0833 0x0f94  [ 34A3C54752046E79A126E15C51DB409B, 7D5B5E150C7C73666F99CBAFF759029716C86F16B927E0078D77F8A696616D75 ] ErrDev          C:\Windows\system32\drivers\errdev.sys
09:20:55.0835 0x0f94  ErrDev - ok
09:20:55.0934 0x0f94  [ 05B0DCDA418E297A1B4CD8D7B8ADE403, 100F8093B3772563AD42F4C167E2A7C6ED65603FBB610804DBA0CAFAA7658520 ] ETD             C:\Windows\system32\DRIVERS\ETD.sys
09:20:55.0938 0x0f94  ETD - ok
09:20:55.0986 0x0f94  [ 4166F82BE4D24938977DD1746BE9B8A0, 24121751B7306225AD1C808442D7B030DEF377E9316AA0A3C5C7460E87317881 ] EventSystem     C:\Windows\system32\es.dll
09:20:56.0001 0x0f94  EventSystem - ok
09:20:56.0140 0x0f94  [ 6EB16C7286FBCD3AB206743BA813EC48, DF0BEDEF0205C940A4F14E196CDF4626DDCA6C8BEDF2C414CF7BB89303272C0E ] EvtEng          C:\Program Files\Intel\WiFi\bin\EvtEng.exe
09:20:56.0160 0x0f94  EvtEng - ok
09:20:56.0301 0x0f94  [ 86F7951BBCEE4A86E79A97306BD14318, 84B52A0392DA53ED71A2C4D483DD93DDF552BF8AC764C7BD47BE0EB58C7C8219 ] ew_hwusbdev     C:\Windows\system32\DRIVERS\ew_hwusbdev.sys
09:20:56.0306 0x0f94  ew_hwusbdev - ok
09:20:56.0384 0x0f94  [ 55E0EDA185869F7EA67EA97FD0655B39, D4A51E383102AA48F022EFCA08FAC389336A22C1DF60E17815117EFA60716964 ] ew_usbenumfilter C:\Windows\system32\DRIVERS\ew_usbenumfilter.sys
09:20:56.0386 0x0f94  ew_usbenumfilter - ok
09:20:56.0429 0x0f94  [ A510C654EC00C1E9BDD91EEB3A59823B, 76CD277730F7B08D375770CD373D786160F34D1481AF0536BA1A5D2727E255F5 ] exfat           C:\Windows\system32\drivers\exfat.sys
09:20:56.0442 0x0f94  exfat - ok
09:20:56.0467 0x0f94  [ 0ADC83218B66A6DB380C330836F3E36D, 798D6F83B5DBCC1656595E0A96CF12087FCCBE19D1982890D0CE5F629B328B29 ] fastfat         C:\Windows\system32\drivers\fastfat.sys
09:20:56.0480 0x0f94  fastfat - ok
09:20:56.0568 0x0f94  [ DBEFD454F8318A0EF691FDD2EAAB44EB, 7F52AE222FF28503B6FC4A5852BD0CAEAF187BE69AF4B577D3DE474C24366099 ] Fax             C:\Windows\system32\fxssvc.exe
09:20:56.0609 0x0f94  Fax - ok
09:20:56.0635 0x0f94  [ D765D19CD8EF61F650C384F62FAC00AB, 9F0A483A043D3BA873232AD3BA5F7BF9173832550A27AF3E8BD433905BD2A0EE ] fdc             C:\Windows\system32\DRIVERS\fdc.sys
09:20:56.0636 0x0f94  fdc - ok
09:20:56.0673 0x0f94  [ 0438CAB2E03F4FB61455A7956026FE86, 6D4DDC2973DB25CE0C7646BC85EFBCC004EBE35EA683F62162AE317C6F1D8DFE ] fdPHost         C:\Windows\system32\fdPHost.dll
09:20:56.0678 0x0f94  fdPHost - ok
09:20:56.0691 0x0f94  [ 802496CB59A30349F9A6DD22D6947644, 52D59D3D628D5661F83F090F33F744F6916E0CC1F76E5A33983E06EB66AE19F8 ] FDResPub        C:\Windows\system32\fdrespub.dll
09:20:56.0702 0x0f94  FDResPub - ok
09:20:56.0723 0x0f94  [ 655661BE46B5F5F3FD454E2C3095B930, 549C8E2A2A37757E560D55FFA6BFDD838205F17E40561E67F0124C934272CD1A ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
09:20:56.0726 0x0f94  FileInfo - ok
09:20:56.0747 0x0f94  [ 5F671AB5BC87EEA04EC38A6CD5962A47, 6B61D3363FF3F9C439BD51102C284972EAE96ACC0683B9DC7E12D25D0ADC51B6 ] Filetrace       C:\Windows\system32\drivers\filetrace.sys
09:20:56.0748 0x0f94  Filetrace - ok
09:20:56.0782 0x0f94  [ C172A0F53008EAEB8EA33FE10E177AF5, 9175A95B323696D1B35C9EFEB7790DD64E6EE0B7021E6C18E2F81009B169D77B ] flpydisk        C:\Windows\system32\DRIVERS\flpydisk.sys
09:20:56.0784 0x0f94  flpydisk - ok
09:20:56.0879 0x0f94  [ DA6B67270FD9DB3697B20FCE94950741, F621A4462C9F2904063578C427FAF22D7D66AE9967605C11C798099817CE5331 ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
09:20:56.0886 0x0f94  FltMgr - ok
09:20:56.0934 0x0f94  [ 72893DC6F72EABAEF5AA1013FD189050, F766819AC554064C10C91EE9D20E95FD1A896B86274425FE1A4F73F868476248 ] FLxHCIc         C:\Windows\system32\DRIVERS\FLxHCIc.sys
09:20:56.0939 0x0f94  FLxHCIc - ok
09:20:56.0954 0x0f94  [ A2156628A86450D490A387B9B06FB17D, B8FA1ED21016711B48F2DAEBF5DB1695D5D0C61B63ED92646DF45BE250CBE417 ] FLxHCIh         C:\Windows\system32\DRIVERS\FLxHCIh.sys
09:20:56.0956 0x0f94  FLxHCIh - ok
09:20:57.0124 0x0f94  [ E612E86FA15EA1EF9A52433A2743C447, 8A66164541D2EE2334B6DE3995C31138EA85E3A06BC7FD901E60D345E4E1E8A8 ] FontCache       C:\Windows\system32\FntCache.dll
09:20:57.0181 0x0f94  FontCache - ok
09:20:57.0334 0x0f94  [ A8B7F3818AB65695E3A0BB3279F6DCE6, 89FCF10F599767E67A1E011753E34DA44EAA311F105DBF69549009ED932A60F0 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
09:20:57.0341 0x0f94  FontCache3.0.0.0 - ok
09:20:57.0381 0x0f94  [ D43703496149971890703B4B1B723EAC, F06397B2EDCA61629249D2EF1CBB7827A8BEAB8488246BD85EF6AE1363C0DA6E ] FsDepends       C:\Windows\system32\drivers\FsDepends.sys
09:20:57.0384 0x0f94  FsDepends - ok
09:20:57.0409 0x0f94  [ 6BD9295CC032DD3077C671FCCF579A7B, 83622FBB0CB923798E7E584BF53CAAF75B8C016E3FF7F0FA35880FF34D1DFE33 ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
09:20:57.0416 0x0f94  Fs_Rec - ok
09:20:57.0473 0x0f94  [ 3779103752594C1E2EFDE57D3AEEEEF7, 4762ED39EB3EC64F164BE2C0B46A95E95CF901C659F952565542F941B44BA581 ] FTDIBUS         C:\Windows\system32\drivers\ftdibus.sys
09:20:57.0476 0x0f94  FTDIBUS - ok
09:20:57.0498 0x0f94  [ 10469A3585F8429E3BC1C2C4587B7028, F6779F3FAE4A8A4E97EBC51ACEEE78101ECE44605BE80448B29DEDFA73798B89 ] FTSER2K         C:\Windows\system32\drivers\ftser2k.sys
09:20:57.0501 0x0f94  FTSER2K - ok
09:20:57.0558 0x0f94  [ 8F6322049018354F45F05A2FD2D4E5E0, 73BF0FB4EBD7887E992DDEBB79E906958D6678F8D1107E8C368F5A0514D80359 ] fvevol          C:\Windows\system32\DRIVERS\fvevol.sys
09:20:57.0566 0x0f94  fvevol - ok
09:20:57.0593 0x0f94  [ 8C778D335C9D272CFD3298AB02ABE3B6, 85F0B13926B0F693FA9E70AA58DE47100E4B6F893772EBE4300C37D9A36E6005 ] gagp30kx        C:\Windows\system32\DRIVERS\gagp30kx.sys
09:20:57.0596 0x0f94  gagp30kx - ok
09:20:57.0645 0x0f94  [ 8E98D21EE06192492A5671A6144D092F, B8F656B34D361EA5AFB47F3A67AB2221580DADA59C8CD0CB83181E4AD8B562B4 ] GEARAspiWDM     C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
09:20:57.0649 0x0f94  GEARAspiWDM - ok
09:20:57.0718 0x0f94  [ 277BBC7E1AA1EE957F573A10ECA7EF3A, 2EE60B924E583E847CC24E78B401EF95C69DB777A5B74E1EC963E18D47B94D24 ] gpsvc           C:\Windows\System32\gpsvc.dll
09:20:57.0777 0x0f94  gpsvc - ok
09:20:57.0837 0x0f94  [ 8F0DE4FEF8201E306F9938B0905AC96A, CA7153FE0C037D79FBF7CE0E090D741FB52BCCBBBD4CA505EF4849A0C4199F72 ] gupdate         C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
09:20:57.0875 0x0f94  gupdate - ok
09:20:57.0953 0x0f94  [ 8F0DE4FEF8201E306F9938B0905AC96A, CA7153FE0C037D79FBF7CE0E090D741FB52BCCBBBD4CA505EF4849A0C4199F72 ] gupdatem        C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
09:20:57.0957 0x0f94  gupdatem - ok
09:20:57.0974 0x0f94  [ 1E6438D4EA6E1174A3B3B1EDC4DE660B, F9995CFEC7BBFE10B06EEE04CA6B49658275C43096E57747BFF9C2C31A0F9011 ] hamachi         C:\Windows\system32\DRIVERS\hamachi.sys
09:20:57.0976 0x0f94  hamachi - ok
09:20:58.0134 0x0f94  [ 03CABA844BC03C99DB84146BF51A9259, 81E6340B9C9DAC97FE5C6F26FEACAB204E857FD5B0490E52D209066B83610DBB ] Hamachi2Svc     C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
09:20:58.0190 0x0f94  Hamachi2Svc - ok
09:20:58.0225 0x0f94  [ F2523EF6460FC42405B12248338AB2F0, B2F3DE8DE1F512D871BC2BC2E8D0E33AB03335BFBC07627C5F88B65024928E19 ] hcw85cir        C:\Windows\system32\drivers\hcw85cir.sys
09:20:58.0226 0x0f94  hcw85cir - ok
09:20:58.0259 0x0f94  [ 975761C778E33CD22498059B91E7373A, 8304E15FBE6876BE57263A03621365DA8C88005EAC532A770303C06799D915D9 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
09:20:58.0268 0x0f94  HdAudAddService - ok
09:20:58.0307 0x0f94  [ 97BFED39B6B79EB12CDDBFEED51F56BB, 3CF981D668FB2381E52AF2E51E296C6CFB47B0D62249645278479D0111A47955 ] HDAudBus        C:\Windows\system32\drivers\HDAudBus.sys
09:20:58.0311 0x0f94  HDAudBus - ok
09:20:58.0344 0x0f94  [ 78E86380454A7B10A5EB255DC44A355F, 11F3ED7ACFFA3024B9BD504F81AC39F5B4CED5A8A425E8BADF7132EFEDB9BD64 ] HidBatt         C:\Windows\system32\DRIVERS\HidBatt.sys
09:20:58.0346 0x0f94  HidBatt - ok
09:20:58.0365 0x0f94  [ 7FD2A313F7AFE5C4DAB14798C48DD104, 94CBFD4506CBDE4162CEB3367BAB042D19ACA6785954DC0B554D4164B9FCD0D4 ] HidBth          C:\Windows\system32\DRIVERS\hidbth.sys
09:20:58.0368 0x0f94  HidBth - ok
09:20:58.0409 0x0f94  [ 0A77D29F311B88CFAE3B13F9C1A73825, 8615DC6CEFB591505CE16E054A71A4F371B827DDFD5E980777AB4233DCFDA01D ] HidIr           C:\Windows\system32\DRIVERS\hidir.sys
09:20:58.0411 0x0f94  HidIr - ok
09:20:58.0474 0x0f94  [ D42E350C3F5B9DDCE7BDDB109B413109, F015CCAB3719B1834DF3EE0265D905675C743F116526A2882B6077E540B8A74F ] hidkmdf         C:\Windows\system32\DRIVERS\hidkmdf.sys
09:20:58.0483 0x0f94  hidkmdf - ok
09:20:58.0509 0x0f94  [ BD9EB3958F213F96B97B1D897DEE006D, 4D01CBF898B528B3A4E5A683DF2177300AFABD7D4CB51F1A7891B1B545499631 ] hidserv         C:\Windows\system32\hidserv.dll
09:20:58.0518 0x0f94  hidserv - ok
09:20:58.0565 0x0f94  [ B3BF6B5B50006DEF50B66306D99FCF6F, D39A1DEBE7C464922919826D15199ED25E263BF58633593DD412D78F98921417 ] HidUsb          C:\Windows\system32\DRIVERS\hidusb.sys
09:20:58.0567 0x0f94  HidUsb - ok
09:20:58.0620 0x0f94  [ 387E72E739E15E3D37907A86D9FF98E2, 9935BE2E58788E79328293AF2F202CB0F6042441B176F75ACC5AEA93C8E05531 ] hkmsvc          C:\Windows\system32\kmsvc.dll
09:20:58.0631 0x0f94  hkmsvc - ok
09:20:58.0677 0x0f94  [ EFDFB3DD38A4376F93E7985173813ABD, 70402FA73A5A2A8BB557AAC8F531E373077D28DE5F40A1F3F14B940BE01CD2E1 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
09:20:58.0701 0x0f94  HomeGroupListener - ok
09:20:58.0724 0x0f94  [ 908ACB1F594274965A53926B10C81E89, 7D34A742AC486294D82676F8465A3EF26C8AC3317C32B63F62031CB007CFC208 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
09:20:58.0738 0x0f94  HomeGroupProvider - ok
09:20:58.0772 0x0f94  [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC, E9E6A1665740CFBC2DD321010007EF42ABA2102AEB9772EE8AA3354664B1E205 ] HpSAMD          C:\Windows\system32\drivers\HpSAMD.sys
09:20:58.0775 0x0f94  HpSAMD - ok
09:20:58.0829 0x0f94  [ F47CEC45FB85791D4AB237563AD0FA8F, 1035066D48BD179855BCA7F62EFA1B951E6E839D2E29E15A31844E18A126DD41 ] HTCAND64        C:\Windows\system32\Drivers\ANDROIDUSB.sys
09:20:58.0832 0x0f94  HTCAND64 - ok
09:20:58.0891 0x0f94  [ B8B1B284362E1D8135112573395D5DA5, 97BC6A7B2DCD7CC854B912A85BB2FCF199592E8E16A7C405EAF89B02D5DE4AEE ] htcnprot        C:\Windows\system32\DRIVERS\htcnprot.sys
09:20:58.0896 0x0f94  htcnprot - ok
09:20:58.0962 0x0f94  [ F61634BEC53F73702A10DE69F6DCAF57, BBA7344CF3AB96A46D1A6F1D50F2758EA8D097FE558C38B4EF45C8C334AF96E1 ] HTTP            C:\Windows\system32\drivers\HTTP.sys
09:20:58.0994 0x0f94  HTTP - ok
09:20:59.0071 0x0f94  [ 91971BCD780D6063DF90DE4F1DF10C2F, DC7898AF5CA9A317CD051DC62970C02D700FE192E22D94384C32A63C0B6420BD ] huawei_cdcacm   C:\Windows\system32\DRIVERS\ew_jucdcacm.sys
09:20:59.0074 0x0f94  huawei_cdcacm - ok
09:20:59.0107 0x0f94  [ CCE3DB0BA3C615CAA321EB1301532688, A1E2B635BAA50D4A59207EC4ADA5EA0C54F91D03721B648D4905FEEE4B6F79A6 ] huawei_enumerator C:\Windows\system32\DRIVERS\ew_jubusenum.sys
09:20:59.0112 0x0f94  huawei_enumerator - ok
09:20:59.0176 0x0f94  [ C4BC37B9E5E54A50B2AA458F1FCA428C, 1523C8FBCE1F7F9E86E229AADBE8F8EF5D064E968815740F50A54F329F91CFFF ] huawei_ext_ctrl C:\Windows\system32\DRIVERS\ew_juextctrl.sys
09:20:59.0178 0x0f94  huawei_ext_ctrl - ok
09:20:59.0209 0x0f94  [ EB56B9EF6B7FC87BF57AF7EDF0487F4A, 05C1BFAA5DAB9CEE15A6F2B9EDF4683990CCA433EB76C9AF5C87763A95050A48 ] huawei_wwanecm  C:\Windows\system32\DRIVERS\ew_juwwanecm.sys
09:20:59.0217 0x0f94  huawei_wwanecm - ok
09:20:59.0273 0x0f94  [ CE93B8AF848FE2AA44455A4769C1BC8A, 4344ED4179025E65F5386B97B63EB46E85CA62AA54C314B9894F2E65100EC86C ] hwdatacard      C:\Windows\system32\DRIVERS\ewusbmdm.sys
09:20:59.0281 0x0f94  hwdatacard - ok
09:20:59.0323 0x0f94  [ A5462BD6884960C9DC85ED49D34FF392, 53E65841AF5B06A2844D0BB6FC4DD3923A323FFA0E4BFC89B3B5CAFB592A3D53 ] hwpolicy        C:\Windows\system32\drivers\hwpolicy.sys
09:20:59.0324 0x0f94  hwpolicy - ok
09:20:59.0361 0x0f94  [ FA55C73D4AFFA7EE23AC4BE53B4592D3, 65CDDC62B89A60E942C5642C9D8B539EFB69DA8069B4A2E54978154B314531CD ] i8042prt        C:\Windows\system32\DRIVERS\i8042prt.sys
09:20:59.0365 0x0f94  i8042prt - ok
09:20:59.0420 0x0f94  [ F7CE9BE72EDAC499B713ECA6DAE5D26F, AF158C8ADF0815C406435AB051C8D8DD0ECBDBA8644CB75D7611980D70662193 ] iaStor          C:\Windows\system32\DRIVERS\iaStor.sys
09:20:59.0432 0x0f94  iaStor - ok
09:20:59.0468 0x0f94  [ AAAF44DB3BD0B9D1FB6969B23ECC8366, 805AA4A9464002D1AB3832E4106B2AAA1331F4281367E75956062AAE99699385 ] iaStorV         C:\Windows\system32\drivers\iaStorV.sys
09:20:59.0479 0x0f94  iaStorV - ok
09:20:59.0576 0x0f94  [ 1CF03C69B49ACB70C722DF92755C0C8C, C227850C133F29BB9DED91A26A22AE077FD69629CEF35B67D305F016C4BDAA81 ] IDriverT        C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
09:20:59.0590 0x0f94  IDriverT - ok
09:20:59.0675 0x0f94  [ C98A5B9D932430AD8EEBD3EF73756EF7, DF7E1D391A0F3345AD61154363922C27BD557DEEACE395A6A8A8A16BFD1BB9A8 ] idsvc           C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
09:20:59.0765 0x0f94  idsvc - ok
09:20:59.0800 0x0f94  IEEtwCollectorService - ok
09:21:00.0147 0x0f94  [ 8C44E6B688790E2AD3846C97661C54F1, CB487D167EDA3C1E30BD5FB8F98C15EB9E75A6FB793009C2F1BBCAAB4285F772 ] igfx            C:\Windows\system32\DRIVERS\igdkmd64.sys
09:21:00.0319 0x0f94  igfx - ok
09:21:00.0362 0x0f94  [ 5C18831C61933628F5BB0EA2675B9D21, 5CD9DE2F8C0256623A417B5C55BF55BB2562BD7AB2C3C83BB3D9886C2FBDA4E4 ] iirsp           C:\Windows\system32\DRIVERS\iirsp.sys
09:21:00.0363 0x0f94  iirsp - ok
09:21:00.0461 0x0f94  [ 344789398EC3EE5A4E00C52B31847946, 3DA5F08E4B46F4E63456AA588D49E39A6A09A97D0509880C00F327623DB6122D ] IKEEXT          C:\Windows\System32\ikeext.dll
09:21:00.0511 0x0f94  IKEEXT - ok
09:21:00.0861 0x0f94  [ 44ED7064A8CFF33E6D2BCC81412145F7, FFC2D581044D7E43D0287D13F33AA97CDF1F03D4B167ACD6BE551E92C9551C0E ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
09:21:01.0066 0x0f94  IntcAzAudAddService - ok
09:21:01.0147 0x0f94  [ F5495B38BFB9149925F54F65AB40EFBF, 7CBB72C41E2343DACBFB967A39CA04788561EDECB289C41BC2D6A06B80882AC4 ] IntcDAud        C:\Windows\system32\DRIVERS\IntcDAud.sys
09:21:01.0158 0x0f94  IntcDAud - ok
09:21:01.0208 0x0f94  [ F00F20E70C6EC3AA366910083A0518AA, E2F3E9FFD82C802C8BAC309893A3664ACF16A279959C0FDECCA64C3D3C60FD22 ] intelide        C:\Windows\system32\drivers\intelide.sys
09:21:01.0210 0x0f94  intelide - ok
09:21:01.0254 0x0f94  [ ADA036632C664CAA754079041CF1F8C1, F2386CC09AC6DE4C54189154F7D91C1DB7AA120B13FAE8BA5B579ACF99FCC610 ] intelppm        C:\Windows\system32\DRIVERS\intelppm.sys
09:21:01.0256 0x0f94  intelppm - ok
09:21:01.0290 0x0f94  [ 098A91C54546A3B878DAD6A7E90A455B, 044CCE2A0DF56EBE1EFD99B4F6F0A5B9EE12498CA358CF4B2E3A1CFD872823AA ] IPBusEnum       C:\Windows\system32\ipbusenum.dll
09:21:01.0303 0x0f94  IPBusEnum - ok
09:21:01.0344 0x0f94  [ C9F0E1BD74365A8771590E9008D22AB6, 728BC5A6AAE499FDC50EB01577AF16D83C2A9F3B09936DD2A89C01E074BA8E51 ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
09:21:01.0347 0x0f94  IpFilterDriver - ok
09:21:01.0427 0x0f94  [ 08C2957BB30058E663720C5606885653, E13EDF6701512E2A9977A531454932CA5023087CB50E1D2F416B8BCDD92B67BE ] iphlpsvc        C:\Windows\System32\iphlpsvc.dll
09:21:01.0479 0x0f94  iphlpsvc - ok
09:21:01.0511 0x0f94  [ 0FC1AEA580957AA8817B8F305D18CA3A, 7161E4DE91AAFC3FA8BF24FAE4636390C2627DB931505247C0D52C75A31473D9 ] IPMIDRV         C:\Windows\system32\drivers\IPMIDrv.sys
09:21:01.0514 0x0f94  IPMIDRV - ok
09:21:01.0550 0x0f94  [ AF9B39A7E7B6CAA203B3862582E9F2D0, 67128BE7EADBE6BD0205B050F96E268948E8660C4BAB259FB0BE03935153D04E ] IPNAT           C:\Windows\system32\drivers\ipnat.sys
09:21:01.0554 0x0f94  IPNAT - ok
09:21:01.0696 0x0f94  [ 68A5EDD4843CF0033BAE537C9C495F69, 386C66A6562218D0F0A616D75457CDA4B82DB87DC3DA83935497819963DB6D86 ] iPod Service    C:\Program Files\iPod\bin\iPodService.exe
09:21:01.0722 0x0f94  iPod Service - ok
09:21:01.0760 0x0f94  [ 3ABF5E7213EB28966D55D58B515D5CE9, A352BCC5B6B9A28805B15CAFB235676F1FAFF0D2394F88C03089EB157D6188AE ] IRENUM          C:\Windows\system32\drivers\irenum.sys
09:21:01.0761 0x0f94  IRENUM - ok
09:21:01.0784 0x0f94  [ 2F7B28DC3E1183E5EB418DF55C204F38, D40410A760965925D6F10959B2043F7BD4F68EAFCF5E743AF11AD860BD136548 ] isapnp          C:\Windows\system32\drivers\isapnp.sys
09:21:01.0786 0x0f94  isapnp - ok
09:21:01.0861 0x0f94  [ 96BB922A0981BC7432C8CF52B5410FE6, 236C05509B1040059B15021CBBDBDAF3B9C0F00910142BE5887B2C7561BAAFBA ] iScsiPrt        C:\Windows\system32\drivers\msiscsi.sys
09:21:01.0899 0x0f94  iScsiPrt - ok
09:21:01.0926 0x0f94  [ BC02336F1CBA7DCC7D1213BB588A68A5, 450C5BAD54CCE2AFCDFF1B6E7F8E1A8446D9D3255DF9D36C29A8F848048AAD93 ] kbdclass        C:\Windows\system32\DRIVERS\kbdclass.sys
09:21:01.0928 0x0f94  kbdclass - ok
09:21:01.0959 0x0f94  [ 6DEF98F8541E1B5DCEB2C822A11F7323, F6EE4A7A6A7A1F243D32CA9241CA4816C92EB7BF2AADDD09234968C2CAAE6C0D ] kbdhid          C:\Windows\system32\DRIVERS\kbdhid.sys
09:21:01.0961 0x0f94  kbdhid - ok
09:21:01.0998 0x0f94  [ E63EF8C3271D014F14E2469CE75FECB4, 3A8DFA4B446AFDC35F01FD5218D0BEBC510A1E3DE9976210F00D19767D0F9069 ] kbfiltr         C:\Windows\system32\DRIVERS\kbfiltr.sys
09:21:02.0000 0x0f94  kbfiltr - ok
09:21:02.0038 0x0f94  [ 17A6A9AAD04CCC6EE53290585BFC43AF, E4901D86C6470D21ABA0F6D9615A613E5C74A3FEF931E497F51B6AFA5715332B ] KeyIso          C:\Windows\system32\lsass.exe
09:21:02.0041 0x0f94  KeyIso - ok
09:21:02.0089 0x0f94  [ BF69D973523D539A35807946C6DA7E16, 38F2C59B0857131961DBEA48C4A5DFA9BE7B564941935086B8DC8DBEF896F3EC ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
09:21:02.0092 0x0f94  KSecDD - ok
09:21:02.0123 0x0f94  [ 272C27711C8AA6E7815EE33F8ACA9C66, 0A5A10A7A3E87DB92E06395A6676B94FE8B7AD6704864075D443CDC9BABDB4DF ] KSecPkg         C:\Windows\system32\Drivers\ksecpkg.sys
09:21:02.0128 0x0f94  KSecPkg - ok
09:21:02.0168 0x0f94  [ 6869281E78CB31A43E969F06B57347C4, 866A23E69B32A78D378D6CB3B3DA3695FFDFF0FEC3C9F68C8C3F988DF417044B ] ksthunk         C:\Windows\system32\drivers\ksthunk.sys
09:21:02.0170 0x0f94  ksthunk - ok
09:21:02.0204 0x0f94  [ 6AB66E16AA859232F64DEB66887A8C9C, 5F2B579BEA8098A2994B0DECECDAE7B396E7B5DC5F09645737B9F28BEEA77FFF ] KtmRm           C:\Windows\system32\msdtckrm.dll
09:21:02.0231 0x0f94  KtmRm - ok
09:21:02.0309 0x0f94  [ A4A9CA24E54E81C6C3E469EAEB4B3F42, FB6B72BF973EC2EE2D81AAAF47B030C0A5E7E7B079DAB257C52FEFC3F222CDC8 ] L1C             C:\Windows\system32\DRIVERS\L1C62x64.sys
09:21:02.0313 0x0f94  L1C - ok
09:21:02.0382 0x0f94  [ D9F42719019740BAA6D1C6D536CBDAA6, 8757599D0AE5302C4CE50861BEBA3A8DD14D7B0DBD916FD5404133688CDFCC40 ] LanmanServer    C:\Windows\system32\srvsvc.dll
09:21:02.0400 0x0f94  LanmanServer - ok
09:21:02.0457 0x0f94  [ 851A1382EED3E3A7476DB004F4EE3E1A, B1C67F47DD594D092E6E258F01DF5E7150227CE3131A908A244DEE9F8A1FABF9 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
09:21:02.0470 0x0f94  LanmanWorkstation - ok
09:21:02.0513 0x0f94  [ 285954C6C6EF43B78AB84034750FAC6A, 1ED9090015B2A896EF44C072E9662DCF78F044FF05A6B0174F2933AF11B252D1 ] libusb0         C:\Windows\system32\DRIVERS\libusb0.sys
09:21:02.0515 0x0f94  libusb0 - ok
09:21:02.0570 0x0f94  [ 156AB2E56DC3CA0B582E3362E07CDED7, 7B03929273861690DC42E4C686E655BE5A1C60136AE5E739D7E62306AFD4AB9A ] lirsgt          C:\Windows\system32\DRIVERS\lirsgt.sys
09:21:02.0572 0x0f94  lirsgt - ok
09:21:02.0694 0x0f94  [ 20CDB07017497C94A0BAD253C4BAFCBC, 5633D245525F9B8CAC4E87A95B0E19D1F34839483ED75AC8F7661DA29BC87EE7 ] LkCitadelServer C:\Windows\SysWOW64\lkcitdl.exe
09:21:02.0760 0x0f94  LkCitadelServer - ok
09:21:02.0785 0x0f94  [ 7CBF0476029371402D14CD776612EE6A, A8792826BC259E2AF7FFB6FBDA9E924D91D98D1E8D81A59ADCA515F83544D895 ] lkClassAds      C:\Windows\SysWOW64\lkads.exe
09:21:02.0809 0x0f94  lkClassAds - ok
09:21:02.0822 0x0f94  [ B9BA33801B5F9B79F0949AF206F96177, 8E2A459F844830F016B3BC2770C47B2D2414F82111C18712C14DEB8E2AA8D7BA ] lkTimeSync      C:\Windows\SysWOW64\lktsrv.exe
09:21:02.0828 0x0f94  lkTimeSync - ok
09:21:02.0873 0x0f94  [ 1538831CF8AD2979A04C423779465827, E1729B0CC4CEEE494A0B8817A8E98FF232E3A32FB023566EF0BC71A090262C0C ] lltdio          C:\Windows\system32\DRIVERS\lltdio.sys
09:21:02.0876 0x0f94  lltdio - ok
09:21:02.0912 0x0f94  [ C1185803384AB3FEED115F79F109427F, 0414FE73532DCAB17E906438A14711E928CECCD5F579255410C62984DD652700 ] lltdsvc         C:\Windows\System32\lltdsvc.dll
09:21:02.0935 0x0f94  lltdsvc - ok
09:21:03.0339 0x0f94  [ 4C7411E817209BE06919F8ADC52B2E78, 9C83BFA5AC49615C2C7453D43C041FC656CE570CAD8BC9A3C2498111BBD4DEA2 ] lmadmin_ptc     C:\Program Files\PTC\FLEXnet Admin License Server\lmadmin.exe
09:21:03.0669 0x0f94  lmadmin_ptc - ok
09:21:03.0728 0x0f94  [ F993A32249B66C9D622EA5592A8B76B8, EE64672A990C6145DC5601E2B8CDBE089272A72732F59AF9865DCBA8B1717E70 ] lmhosts         C:\Windows\System32\lmhsvc.dll
09:21:03.0737 0x0f94  lmhosts - ok
09:21:03.0838 0x0f94  [ D6BF6FD055BD719F3D62E51B90857159, A7777D18E404164B4DA531AD94D2A712D9CC6A9288795B7388037752A558E96F ] LMIGuardianSvc  C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
09:21:03.0848 0x0f94  LMIGuardianSvc - ok
09:21:03.0893 0x0f94  [ 1A93E54EB0ECE102495A51266DCDB6A6, DB6AA86AA36C3A7988BE96E87B5D3251BE7617C54EE8F894D9DC2E267FE3255B ] LSI_FC          C:\Windows\system32\DRIVERS\lsi_fc.sys
09:21:03.0897 0x0f94  LSI_FC - ok
09:21:03.0926 0x0f94  [ 1047184A9FDC8BDBFF857175875EE810, F2251EDB7736A26D388A0C5CC2FE5FB9C5E109CBB1E3800993554CB21D81AE4B ] LSI_SAS         C:\Windows\system32\DRIVERS\lsi_sas.sys
09:21:03.0930 0x0f94  LSI_SAS - ok
09:21:03.0953 0x0f94  [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93, 88D5740A4E9CC3FA80FA18035DAB441BDC5A039622D666BFDAA525CC9686BD06 ] LSI_SAS2        C:\Windows\system32\DRIVERS\lsi_sas2.sys
09:21:03.0957 0x0f94  LSI_SAS2 - ok
09:21:03.0983 0x0f94  [ 0504EACAFF0D3C8AED161C4B0D369D4A, 4D272237C189646F5C80822FD3CBA7C2728E482E2DAAF7A09C8AEF811C89C54D ] LSI_SCSI        C:\Windows\system32\DRIVERS\lsi_scsi.sys
09:21:03.0986 0x0f94  LSI_SCSI - ok
09:21:04.0019 0x0f94  [ 43D0F98E1D56CCDDB0D5254CFF7B356E, 5BA498183B5C4996C694CB0A9A6B66CE6C7A460F6C91BEB9F305486FCC3B7B22 ] luafv           C:\Windows\system32\drivers\luafv.sys
09:21:04.0022 0x0f94  luafv - ok
09:21:04.0107 0x0f94  [ 1E9E32AEC3E1EB1B31B8169F33168B56, 39114585E1FDBBA31E1F781C6A627281907183F94626EB347B08D1F78992ED2A ] MBAMProtector   C:\Windows\system32\drivers\mbam.sys
09:21:04.0109 0x0f94  MBAMProtector - ok
09:21:04.0301 0x0f94  [ 2B983F067AEE3F9EB4DF5E97F45D21D1, 0B9ED0E91FF01A5445927650113E320C3C0EA16F1401AA55A509DDBF704DF22F ] MBAMService     C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
09:21:04.0417 0x0f94  MBAMService - ok
09:21:04.0517 0x0f94  [ F49FB3C88E263AE9A246593B0BB29294, FB53D6FA4A98B98334DCFF81E40712265256D31A9E9FF36022887BABD50F39EB ] MBAMWebAccessControl C:\Windows\system32\drivers\mwac.sys
09:21:04.0520 0x0f94  MBAMWebAccessControl - ok
09:21:04.0559 0x0f94  [ BA3963A603F0504EB2A1475B335EAB53, 6154B89E29E2C81B018BD91D1F1AA0FE6A4200A7C3DD0136DD774E049E646EEE ] MCHPUSB         C:\Windows\system32\DRIVERS\mchpusb64.sys
09:21:04.0561 0x0f94  MCHPUSB - ok
09:21:04.0607 0x0f94  [ 0BE09CD858ABF9DF6ED259D57A1A1663, 2FD28889B93C8E801F74C1D0769673A461671E0189D0A22C94509E3F0EEB7428 ] Mcx2Svc         C:\Windows\system32\Mcx2Svc.dll
09:21:04.0624 0x0f94  Mcx2Svc - ok
09:21:04.0647 0x0f94  [ A55805F747C6EDB6A9080D7C633BD0F4, 2DA0E83BF3C8ADEF6F551B6CC1C0A3F6149CDBE6EC60413BA1767C4DE425A728 ] megasas         C:\Windows\system32\DRIVERS\megasas.sys
09:21:04.0649 0x0f94  megasas - ok
09:21:04.0691 0x0f94  [ BAF74CE0072480C3B6B7C13B2A94D6B3, 85CBB4949C090A904464F79713A3418338753D20D7FB811E68F287FDAC1DD834 ] MegaSR          C:\Windows\system32\DRIVERS\MegaSR.sys
09:21:04.0701 0x0f94  MegaSR - ok
09:21:04.0751 0x0f94  [ A6518DCC42F7A6E999BB3BEA8FD87567, 8A9AE992F93F37E0723761EA271A7E1AA8172702C471041A17324474FC96B9BC ] MEIx64          C:\Windows\system32\DRIVERS\HECIx64.sys
09:21:04.0754 0x0f94  MEIx64 - ok
09:21:04.0788 0x0f94  [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] MMCSS           C:\Windows\system32\mmcss.dll
09:21:04.0799 0x0f94  MMCSS - ok
09:21:04.0827 0x0f94  [ 800BA92F7010378B09F9ED9270F07137, 94F9AF9E1BE80AE6AC39A2A74EF9FAB115DCAACC011D07DFA8D6A1DDC8A93342 ] Modem           C:\Windows\system32\drivers\modem.sys
09:21:04.0829 0x0f94  Modem - ok
09:21:04.0867 0x0f94  [ B03D591DC7DA45ECE20B3B467E6AADAA, 701FB0CAD8138C58507BE28845D3E24CE269A040737C29885944A0D851238732 ] monitor         C:\Windows\system32\DRIVERS\monitor.sys
09:21:04.0869 0x0f94  monitor - ok
09:21:04.0907 0x0f94  [ 7D27EA49F3C1F687D357E77A470AEA99, 7FE7CAF95959F127C6D932C01D539C06D80273C49A09761F6E8331C05B1A7EE7 ] mouclass        C:\Windows\system32\DRIVERS\mouclass.sys
09:21:04.0909 0x0f94  mouclass - ok
09:21:04.0919 0x0f94  [ D3BF052C40B0C4166D9FD86A4288C1E6, 5E65264354CD94E844BF1838CA1B8E49080EFA34605A32CF2F6A47A2B97FC183 ] mouhid          C:\Windows\system32\DRIVERS\mouhid.sys
09:21:04.0921 0x0f94  mouhid - ok
09:21:04.0986 0x0f94  [ 87BCD1034CBF33537D4D4C251D39BA26, CB9DD235B62B79383F99873D75E26EEA5EE7914CA89E4B75992207F83420437F ] mountmgr        C:\Windows\system32\drivers\mountmgr.sys
09:21:04.0989 0x0f94  mountmgr - ok
09:21:05.0081 0x0f94  [ 9FC679D10A7377BB04ECC3D0E2E26B53, 24ACD4EC1618A052C29E4463138B28F62C8B78D442DB82F4925E64FC5849A096 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
09:21:05.0099 0x0f94  MozillaMaintenance - ok
09:21:05.0136 0x0f94  [ A44B420D30BD56E145D6A2BC8768EC58, B1E4DCA5A1008FA7A0492DC091FB2B820406AE13FD3D44F124E89B1037AF09B8 ] mpio            C:\Windows\system32\drivers\mpio.sys
09:21:05.0140 0x0f94  mpio - ok
09:21:05.0189 0x0f94  [ 6C38C9E45AE0EA2FA5E551F2ED5E978F, 5A3FA2F110029CB4CC4384998EDB59203FDD65EC45E01B897FB684F8956EAD20 ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
09:21:05.0192 0x0f94  mpsdrv - ok
09:21:05.0259 0x0f94  [ 54FFC9C8898113ACE189D4AA7199D2C1, 65F585C87F3F710FD5793FDFA96B740AD8D4317B0C120F4435CCF777300EA4F2 ] MpsSvc          C:\Windows\system32\mpssvc.dll
09:21:05.0313 0x0f94  MpsSvc - ok
09:21:05.0341 0x0f94  [ AE3334958D8F631FF14A0AEB3D7EFB3A, F5FD6B61F896104C20DFC43FEE2FCE6930B73F78DF876BD19A333EABB9139C6D ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
09:21:05.0346 0x0f94  MRxDAV - ok
09:21:05.0386 0x0f94  [ A5D9106A73DC88564C825D317CAC68AC, 0457B2AEA4E05A91D0E43F317894A614434D8CEBE35020785387F307E231FBE4 ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
09:21:05.0391 0x0f94  mrxsmb - ok
09:21:05.0501 0x0f94  [ D711B3C1D5F42C0C2415687BE09FC163, 9B3013AC60BD2D0FF52086658BA5FF486ADE15954A552D7DD590580E8BAE3EFF ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
09:21:05.0510 0x0f94  mrxsmb10 - ok
09:21:05.0552 0x0f94  [ 9423E9D355C8D303E76B8CFBD8A5C30C, 220B33F120C2DD937FE4D5664F4B581DC0ACF78D62EB56B7720888F67B9644CC ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
09:21:05.0556 0x0f94  mrxsmb20 - ok
09:21:05.0602 0x0f94  [ C25F0BAFA182CBCA2DD3C851C2E75796, 643E158A0948DF331807AEAA391F23960362E46C0A0CF6D22A99020EAE7B10F8 ] msahci          C:\Windows\system32\drivers\msahci.sys
09:21:05.0604 0x0f94  msahci - ok
09:21:05.0634 0x0f94  [ DB801A638D011B9633829EB6F663C900, B34FD33A215ACCF2905F4B7D061686CDB1CB9C652147AF56AE14686C1F6E3C74 ] msdsm           C:\Windows\system32\drivers\msdsm.sys
09:21:05.0638 0x0f94  msdsm - ok
09:21:05.0681 0x0f94  [ DE0ECE52236CFA3ED2DBFC03F28253A8, 2FBBEC4CACB5161F68D7C2935852A5888945CA0F107CF8A1C01F4528CE407DE3 ] MSDTC           C:\Windows\System32\msdtc.exe
09:21:05.0697 0x0f94  MSDTC - ok
09:21:05.0757 0x0f94  [ AA3FB40E17CE1388FA1BEDAB50EA8F96, 69F93E15536644C8FD679A20190CFE577F4985D3B1B4A4AA250A168615AE1E99 ] Msfs            C:\Windows\system32\drivers\Msfs.sys
09:21:05.0763 0x0f94  Msfs - ok
09:21:05.0785 0x0f94  [ F9D215A46A8B9753F61767FA72A20326, 6F76642B45E0A7EF6BCAB8B37D55CCE2EAA310ED07B76D43FCB88987C2174141 ] mshidkmdf       C:\Windows\System32\drivers\mshidkmdf.sys
09:21:05.0786 0x0f94  mshidkmdf - ok
09:21:05.0816 0x0f94  [ D916874BBD4F8B07BFB7FA9B3CCAE29D, B229DA150713DEDBC4F05386C9D9DC3BC095A74F44F3081E88311AB73BC992A1 ] msisadrv        C:\Windows\system32\drivers\msisadrv.sys
09:21:05.0817 0x0f94  msisadrv - ok
09:21:05.0855 0x0f94  [ 808E98FF49B155C522E6400953177B08, F873F5BFF0984C5165DF67E92874D3F6EB8D86F9B5AD17013A0091CA33A1A3D5 ] MSiSCSI         C:\Windows\system32\iscsiexe.dll
09:21:05.0871 0x0f94  MSiSCSI - ok
09:21:05.0882 0x0f94  msiserver - ok
09:21:05.0907 0x0f94  [ 49CCF2C4FEA34FFAD8B1B59D49439366, E5752EA57C7BDAD5F53E3BC441A415E909AC602CAE56234684FB8789A20396C7 ] MSKSSRV         C:\Windows\system32\drivers\MSKSSRV.sys
09:21:05.0909 0x0f94  MSKSSRV - ok
09:21:05.0924 0x0f94  [ BDD71ACE35A232104DDD349EE70E1AB3, 27464A66868513BE6A01B75D7FC5B0D6B71842E4E20CE3F76B15C071A0618BBB ] MSPCLOCK        C:\Windows\system32\drivers\MSPCLOCK.sys
09:21:05.0925 0x0f94  MSPCLOCK - ok
09:21:05.0945 0x0f94  [ 4ED981241DB27C3383D72092B618A1D0, E12F121E641249DB3491141851B59E1496F4413EDF58E863388F1C229838DFCC ] MSPQM           C:\Windows\system32\drivers\MSPQM.sys
09:21:05.0947 0x0f94  MSPQM - ok
09:21:06.0023 0x0f94  [ 759A9EEB0FA9ED79DA1FB7D4EF78866D, 64E3BC613EC4872B1B344CBF71EE15BE195592E3244C1EE099C6F8B95A40F133 ] MsRPC           C:\Windows\system32\drivers\MsRPC.sys
09:21:06.0043 0x0f94  MsRPC - ok
09:21:06.0088 0x0f94  [ 0EED230E37515A0EAEE3C2E1BC97B288, B1D8F8A75006B6E99214CA36D27A8594EF8D952F315BEB201E9BAC9DE3E64D42 ] mssmbios        C:\Windows\system32\drivers\mssmbios.sys
09:21:06.0090 0x0f94  mssmbios - ok
09:21:06.0192 0x0f94  MSSQL$SQLEXPRESS - ok
09:21:06.0306 0x0f94  [ 7A2A8C975356858EB38466A6B1592E8D, 97C3DFCCBE1BA92EE7E4848993D6F369D543A53344A6512C84EF03E7D737A482 ] MSSQLServerADHelper100 C:\Program Files\Microsoft SQL Server\100\Shared\SQLADHLP.EXE
09:21:06.0309 0x0f94  MSSQLServerADHelper100 - ok
09:21:06.0343 0x0f94  [ 2E66F9ECB30B4221A318C92AC2250779, DF175E1AB6962303E57F26DAE5C5C1E40B8640333F3E352A64F6A5F1301586CD ] MSTEE           C:\Windows\system32\drivers\MSTEE.sys
09:21:06.0345 0x0f94  MSTEE - ok
09:21:06.0397 0x0f94  [ 7EA404308934E675BFFDE8EDF0757BCD, 306CD02D89CFCFE576242360ED5F9EEEDCAFC43CD43B7D2977AE960F9AEC3232 ] MTConfig        C:\Windows\system32\DRIVERS\MTConfig.sys
09:21:06.0398 0x0f94  MTConfig - ok
09:21:06.0437 0x0f94  [ F9A18612FD3526FE473C1BDA678D61C8, 32F7975B5BAA447917F832D9E3499B4B6D3E90D73F478375D0B70B36C524693A ] Mup             C:\Windows\system32\Drivers\mup.sys
09:21:06.0439 0x0f94  Mup - ok
09:21:06.0585 0x0f94  [ 86D5EF02C4D1486CF1BDA4A71EC470C0, F64FF681B5CB7B1E03693892059BD677A5CAFCB039A22C5372C56C8C3D0D4D1E ] mxssvr          D:\Program Files (x86)\National Instruments\MAX\nimxs.exe
09:21:06.0603 0x0f94  mxssvr - ok
09:21:06.0716 0x0f94  [ 7E11D1788F5B531D49EF0AF97202437B, 8BF4A65466D235F0AB8E8855B04920BEF81A7EAC29C066FFC258BE816EBED2F4 ] MyWiFiDHCPDNS   C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
09:21:06.0726 0x0f94  MyWiFiDHCPDNS - ok
09:21:06.0782 0x0f94  [ 582AC6D9873E31DFA28A4547270862DD, BD540499F74E8F59A020D935D18E36A3A97C1A6EC59C8208436469A31B16B260 ] napagent        C:\Windows\system32\qagentRT.dll
09:21:06.0822 0x0f94  napagent - ok
09:21:06.0872 0x0f94  [ 1EA3749C4114DB3E3161156FFFFA6B33, 54C2E77BCE1037711A11313AC25B8706109098C10A31AA03AEB7A185E97800D7 ] NativeWifiP     C:\Windows\system32\DRIVERS\nwifi.sys
09:21:06.0883 0x0f94  NativeWifiP - ok
09:21:07.0131 0x0f94  [ 0CB8324F6CB624812FD9D4FE9186F845, 15E939AF3F11FD109BF7678C010F2C9C883DFA375A4A18FDE24B3C960C983B84 ] NAUpdate        C:\Program Files (x86)\Nero\Update\NASvc.exe
09:21:07.0164 0x0f94  NAUpdate - ok
09:21:07.0240 0x0f94  [ 760E38053BF56E501D562B70AD796B88, F856E81A975D44F8684A6F2466549CEEDFAEB3950191698555A93A1206E0A42D ] NDIS            C:\Windows\system32\drivers\ndis.sys
09:21:07.0262 0x0f94  NDIS - ok
09:21:07.0289 0x0f94  [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC, D7E5446E83909AE25506BB98FBDD878A529C87963E3C1125C4ABAB25823572BC ] NdisCap         C:\Windows\system32\DRIVERS\ndiscap.sys
09:21:07.0291 0x0f94  NdisCap - ok
09:21:07.0328 0x0f94  [ 30639C932D9FEF22B31268FE25A1B6E5, 32873D95339600F6EEFA51847D12C563FF01F320DC59055B242FA2887C99F9D6 ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
09:21:07.0330 0x0f94  NdisTapi - ok
09:21:07.0378 0x0f94  [ 136185F9FB2CC61E573E676AA5402356, BA3AD0A33416DA913B4242C6BE8C3E5812AD2B20BA6C11DD3094F2E8EB56E683 ] Ndisuio         C:\Windows\system32\DRIVERS\ndisuio.sys
09:21:07.0381 0x0f94  Ndisuio - ok
09:21:07.0467 0x0f94  [ 53F7305169863F0A2BDDC49E116C2E11, 881E9346D3C02405B7850ADC37E720990712EC9C666A0CE96E252A487FD2CE77 ] NdisWan         C:\Windows\system32\DRIVERS\ndiswan.sys
09:21:07.0472 0x0f94  NdisWan - ok
09:21:07.0531 0x0f94  [ 015C0D8E0E0421B4CFD48CFFE2825879, 4242E2D42CCFC859B2C0275C5331798BC0BDA68E51CF4650B6E64B1332071023 ] NDProxy         C:\Windows\system32\drivers\NDProxy.sys
09:21:07.0539 0x0f94  NDProxy - ok
09:21:07.0580 0x0f94  [ 86743D9F5D2B1048062B14B1D84501C4, DBF6D6A60AB774FCB0F464FF2D285A7521D0A24006687B243AB46B17D8032062 ] NetBIOS         C:\Windows\system32\DRIVERS\netbios.sys
09:21:07.0582 0x0f94  NetBIOS - ok
09:21:07.0634 0x0f94  [ 09594D1089C523423B32A4229263F068, 7426A9B8BA27D3225928DDEFBD399650ABB90798212F56B7D12158AC22CCCE37 ] NetBT           C:\Windows\system32\DRIVERS\netbt.sys
09:21:07.0641 0x0f94  NetBT - ok
09:21:07.0678 0x0f94  [ 17A6A9AAD04CCC6EE53290585BFC43AF, E4901D86C6470D21ABA0F6D9615A613E5C74A3FEF931E497F51B6AFA5715332B ] Netlogon        C:\Windows\system32\lsass.exe
09:21:07.0682 0x0f94  Netlogon - ok
09:21:07.0737 0x0f94  [ 847D3AE376C0817161A14A82C8922A9E, 37AE692B3481323134125EF58F2C3CBC20177371AF2F5874F53DD32A827CB936 ] Netman          C:\Windows\System32\netman.dll
09:21:07.0750 0x0f94  Netman - ok
09:21:07.0861 0x0f94  [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
09:21:07.0905 0x0f94  NetMsmqActivator - ok
09:21:07.0919 0x0f94  [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
09:21:07.0924 0x0f94  NetPipeActivator - ok
09:21:07.0970 0x0f94  [ 5F28111C648F1E24F7DBC87CDEB091B8, 2E8645285921EDB98BB2173E11E57459C888D52E80D85791D169C869DE8813B9 ] netprofm        C:\Windows\System32\netprofm.dll
09:21:08.0002 0x0f94  netprofm - ok
09:21:08.0016 0x0f94  [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
09:21:08.0021 0x0f94  NetTcpActivator - ok
09:21:08.0036 0x0f94  [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
09:21:08.0041 0x0f94  NetTcpPortSharing - ok
09:21:09.0425 0x0f94  [ 219A40EEEA50D638BA9D08680C354A0C, F4DD0B9A75C29BBB510D19719ABA283AC2FF3D47EE099A3197BBBD7658741BBD ] NETwNs64        C:\Windows\system32\DRIVERS\Netwsw00.sys
09:21:09.0906 0x0f94  NETwNs64 - ok
09:21:09.0970 0x0f94  [ 77889813BE4D166CDAB78DDBA990DA92, 2EF531AE502B943632EEC66A309A8BFCDD36120A5E1473F4AAF3C2393AD0E6A3 ] nfrd960         C:\Windows\system32\DRIVERS\nfrd960.sys
09:21:09.0973 0x0f94  nfrd960 - ok
09:21:10.0063 0x0f94  [ F0EA0AD4B1AFFEFE4AB34191D539509B, A5AEEC0F934F2FCC513545DD6E93FD3E516A7879F406A4E365AA8DA6349C63B1 ] NIApplicationWebServer D:\Program Files (x86)\National Instruments\Shared\NI WebServer\ApplicationWebServer.exe
09:21:10.0074 0x0f94  NIApplicationWebServer - ok
09:21:10.0225 0x0f94  [ E78AFBF3B76E805AED87C933A636BDA6, 5DD7B6E101D4B30BBCABA31E31CFF09DEFF96CE6E3A49F53315838110833AF09 ] NIApplicationWebServer64 C:\Program Files\National Instruments\Shared\NI WebServer\ApplicationWebServer.exe
09:21:10.0228 0x0f94  NIApplicationWebServer64 - ok
09:21:10.0275 0x0f94  [ 3FEE8FBB98918F1ED88DEB6DE1EBE66A, 3F55B9788262422E1621541D9922FC5828C2EEA4192CBCF4105CF7F213AA32B7 ] nidimk          C:\Windows\system32\drivers\nidimkl.sys
09:21:10.0277 0x0f94  nidimk - ok
09:21:10.0385 0x0f94  [ 3B712766DEA950ACA65789B460AA1899, 3FAC4AB814688EC1976CA10CBD59EA89941288D129495730B281E97450C0D111 ] NIDomainService D:\Program Files (x86)\National Instruments\Shared\Security\nidmsrv.exe
09:21:10.0412 0x0f94  NIDomainService - ok
09:21:10.0614 0x0f94  [ AA8896BCD689851665EFC02DC41181AC, 9860DF5E072F4F3E10CE919767EB755EA5FC35B533886007657A24D864A1CA27 ] NILM License Manager D:\Program Files (x86)\National Instruments\Shared\License Manager\Bin\lmgrd.exe
09:21:10.0680 0x0f94  NILM License Manager - ok
09:21:10.0837 0x0f94  [ 2BAFCA12F4B3CA5F6F586BFF7404E116, 412BC5C07705C46EB0D108E1D50FA52616F3695C2531F993EB050FC7464C1808 ] niLXIDiscovery  C:\Program Files (x86)\IVI Foundation\VISA\WinNT\NIvisa\niLxiDiscovery.exe
09:21:10.0843 0x0f94  niLXIDiscovery - ok
09:21:10.0918 0x0f94  [ F59599F4C0B3259AC1355F34E6AC6342, 228A4E921F001AD0BE98A499BC5DFD644EEBC3B80D00895F79CD6EE7B49F4AF1 ] nimDNSResponder D:\Program Files (x86)\National Instruments\Shared\mDNS Responder\nimdnsResponder.exe
09:21:10.0936 0x0f94  nimDNSResponder - ok
09:21:11.0020 0x0f94  [ 964D778400303BF6CB4F7826314DB8B2, E3AB2F05D34A9E35EC6588597F96FD8DF040CFD0B1414C4BE1D1326D1A50DCE6 ] NINetworkDiscovery D:\Program Files (x86)\National Instruments\Shared\NI Network Discovery\niDiscSvc.exe
09:21:11.0025 0x0f94  NINetworkDiscovery - ok
09:21:11.0090 0x0f94  [ 5A7F49F5E8C6953069F3E721C45A8504, 1FEA3174BCDBCBA5E86E88BD4409878924E82703C04FA6D02FF6B866824355B1 ] niorbk          C:\Windows\system32\drivers\niorbkl.sys
09:21:11.0092 0x0f94  niorbk - ok
09:21:11.0167 0x0f94  [ 91DF055159885DBA2B6E102B3B902602, 69905DA89EDF1C92CA5AF95788126F51B103E080514B8302B54EAB85A51DE39F ] nipalfwedl      C:\Windows\system32\drivers\nipalfwedl.sys
09:21:11.0168 0x0f94  nipalfwedl - ok
09:21:11.0238 0x0f94  [ 665499D0FC2971919A56B54ACC185923, 4869F436EE76FA989CF688B9F0730CC2C2F46BC829DBF3A6C6599DEA5859E8F4 ] NIPALK          C:\Windows\system32\drivers\nipalk.sys
09:21:11.0275 0x0f94  NIPALK - ok
09:21:11.0298 0x0f94  [ CF7CB7A251282CD90DA67EE6B568ED15, DFA147906B396D3A0AF0A770062712D438EFC63CE2DFB05ECA3D65EDFE0BFAE4 ] nipalusbedl     C:\Windows\system32\drivers\nipalusbedl.sys
09:21:11.0300 0x0f94  nipalusbedl - ok
09:21:11.0319 0x0f94  [ 0AEF3D16A49AB7DBA0C2D96588980F69, E8CCF530712D7378DC8D3D5D459F2AA897E4E33A4C5949C1082537623118BCB4 ] nipbcfk         C:\Windows\system32\drivers\nipbcfk.sys
09:21:11.0321 0x0f94  nipbcfk - ok
09:21:11.0349 0x0f94  NiSvcLoc - ok
09:21:11.0440 0x0f94  [ FD919AC3746322662DC21CDB7B9ADC07, A7187FE29C41A24E4854FF70E87A03C3C850314F0CD9A853BEBAC8B5260A3BB8 ] NISystemWebServer D:\Program Files (x86)\National Instruments\Shared\NI WebServer\SystemWebServer.exe
09:21:11.0455 0x0f94  NISystemWebServer - ok
09:21:11.0520 0x0f94  [ 343B7AF567C0B1E0B76E6C0F448EF42D, FF75D6AE3F824732D343C08E81353CB73B1E547AEC374C82F22F5C59EB970998 ] NITaggerService D:\Program Files (x86)\National Instruments\Shared\Tagger\tagsrv.exe
09:21:11.0566 0x0f94  NITaggerService - ok
09:21:11.0638 0x0f94  [ A6E54EC81AE1F64BF105711D05E028D9, D823791E1E0880ED3A97DE822A7D1C241A428E5F79C2048CF43B2ECDC02EDF4E ] NiViPciK        C:\Windows\system32\drivers\NiViPciKl.sys
09:21:11.0639 0x0f94  NiViPciK - ok
09:21:11.0705 0x0f94  [ 2F054AF296D3CDF34DACA98254B4FCB8, D93B204EA9403596A7C94815AEA3E33101A8F899C875B7AA0503926D34EE716D ] NiViPxiK        C:\Windows\system32\drivers\NiViPxiKl.sys
09:21:11.0707 0x0f94  NiViPxiK - ok
09:21:11.0734 0x0f94  [ 8B301D474B478E9A92823BAB50A7BC49, 8181816035F41B1DABEC05E65E4F67BCD785F56760A61F1049E91BA39D42F01D ] NlaSvc          C:\Windows\System32\nlasvc.dll
09:21:11.0753 0x0f94  NlaSvc - ok
09:21:11.0789 0x0f94  NPF - ok
09:21:11.0825 0x0f94  [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7, D8957EF7060A69DBB3CD6B2C45B1E4143592AB8D018471E17AC04668157DC67F ] Npfs            C:\Windows\system32\drivers\Npfs.sys
09:21:11.0833 0x0f94  Npfs - ok
09:21:11.0858 0x0f94  [ D54BFDF3E0C953F823B3D0BFE4732528, 497A1DCC5646EC22119273216DF10D5442D16F83E4363770F507518CF6EAA53A ] nsi             C:\Windows\system32\nsisvc.dll
09:21:11.0867 0x0f94  nsi - ok
09:21:11.0894 0x0f94  [ E7F5AE18AF4168178A642A9247C63001, 133023B7E4BA8049C4CAED3282BDD25571D1CC25FAC3B820C7F981D292689D76 ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
09:21:11.0908 0x0f94  nsiproxy - ok
09:21:12.0589 0x0f94  [ 1A29A59A4C5BA6F8C85062A613B7E2B2, CC137F499A12C724D4166C2D85E9F447413419A0683DAC6F1A802B7F210C77F1 ] Ntfs            C:\Windows\system32\drivers\Ntfs.sys
09:21:12.0717 0x0f94  Ntfs - ok
09:21:12.0870 0x0f94  [ 96ACBF3DDC38A52FEE115F577F36568F, DB8CB01971208C8D7A306A5FEDA39A3802195123E6B801DFB905B0E1934D3C96 ] NuidFltr        C:\Windows\system32\DRIVERS\NuidFltr.sys
09:21:12.0873 0x0f94  NuidFltr - ok
09:21:12.0901 0x0f94  [ 9899284589F75FA8724FF3D16AED75C1, 181188599FD5D4DE33B97010D9E0CAEABAB9A3EF50712FE7F9AA0735CD0666D6 ] Null            C:\Windows\system32\drivers\Null.sys
09:21:12.0906 0x0f94  Null - ok
09:21:15.0204 0x0f94  [ A6975E0E4BE34667933846DE2F28AEFC, DFCF194C457A80C8222821001626D089FB1D97A37CA4D50D92144CE324911A78 ] nvlddmkm        C:\Windows\system32\DRIVERS\nvlddmkm.sys
09:21:15.0739 0x0f94  nvlddmkm - ok
09:21:15.0911 0x0f94  [ 507E699BD36530491BA0F95251B22F06, BDE6EB91FADBCB8CE16C31EF43A97DC6CC5D0F4EBAEA7903810556D0D70F54BC ] NvNetworkService C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
09:21:15.0963 0x0f94  NvNetworkService - ok
09:21:16.0027 0x0f94  [ 6D424288FB76FBE7EE566347625A6EFB, 2E6E185A6FDA20147348B78658B6D84686904C74099B91B03BC9C646BD97622C ] nvpciflt        C:\Windows\system32\DRIVERS\nvpciflt.sys
09:21:16.0028 0x0f94  nvpciflt - ok
09:21:16.0064 0x0f94  [ 0A92CB65770442ED0DC44834632F66AD, 581327F07A68DBD5CC749214BE5F1211FC2CE41C7A4F0656B680AFB51A35ACE7 ] nvraid          C:\Windows\system32\drivers\nvraid.sys
09:21:16.0068 0x0f94  nvraid - ok
09:21:16.0091 0x0f94  [ DAB0E87525C10052BF65F06152F37E4A, AD9BFF0D5FD3FFB95C758B478E1F6A9FE45E7B37AEC71EB5070D292FEAAEDF37 ] nvstor          C:\Windows\system32\drivers\nvstor.sys
09:21:16.0096 0x0f94  nvstor - ok
09:21:16.0269 0x0f94  [ 9AEDEFFFE581D775E70C1C228CCD495E, F31C6DED1292A9392B83F9F557070543984AAB73718785B1C189752B34D4805B ] NVSvc           C:\Windows\system32\nvvsvc.exe
09:21:16.0301 0x0f94  NVSvc - ok
09:21:16.0329 0x0f94  nvvad_WaveExtensible - ok
09:21:16.0372 0x0f94  [ 270D7CD42D6E3979F6DD0146650F0E05, 752489E54C9004EDCBE1F1F208FFD864DA5C83E59A2DDE6B3E0D63ECA996F76F ] nv_agp          C:\Windows\system32\drivers\nv_agp.sys
09:21:16.0376 0x0f94  nv_agp - ok
09:21:16.0402 0x0f94  [ 3589478E4B22CE21B41FA1BFC0B8B8A0, AD2469FC753FE552CB809FF405A9AB23E7561292FE89117E3B3B62057EFF0203 ] ohci1394        C:\Windows\system32\drivers\ohci1394.sys
09:21:16.0405 0x0f94  ohci1394 - ok
09:21:16.0637 0x0f94  [ CBDBE92120FD36AE79B55339D79F6393, 10C2F35D2102156212A5175CE00D1875D8C0D2A970C9078564567FB571284952 ] OpcEnum         C:\Windows\SysWOW64\Opcenum.exe
09:21:16.0644 0x0f94  OpcEnum - ok
09:21:17.0181 0x0f94  [ FCE83ABDE761C87D17EA65960455F0E5, E59C13E26845FE0537AEBF0E4A9DC0AF3E6DF55C7A54247FC8078AC5DE666AD4 ] Origin Client Service E:\Program Files (x86)\Origin\OriginClientService.exe
09:21:17.0327 0x0f94  Origin Client Service - ok
09:21:17.0566 0x0f94  [ 9D10F99A6712E28F8ACD5641E3A7EA6B, 70964A0ED9011EA94044E15FA77EDD9CF535CC79ED8E03A3721FF007E69595CC ] ose             C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
09:21:17.0570 0x0f94  ose - ok
09:21:17.0839 0x0f94  [ 61BFFB5F57AD12F83AB64B7181829B34, 1DD0DD35E4158F95765EE6639F217DF03A0A19E624E020DBA609268C08A13846 ] osppsvc         C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
09:21:18.0011 0x0f94  osppsvc - ok
09:21:18.0116 0x0f94  [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] p2pimsvc        C:\Windows\system32\pnrpsvc.dll
09:21:18.0143 0x0f94  p2pimsvc - ok
09:21:18.0187 0x0f94  [ 927463ECB02179F88E4B9A17568C63C3, FEFD3447692C277D59EEC7BF218552C8BB6B8C98C26E973675549628408B94CE ] p2psvc          C:\Windows\system32\p2psvc.dll
09:21:18.0219 0x0f94  p2psvc - ok
09:21:18.0253 0x0f94  [ 0086431C29C35BE1DBC43F52CC273887, 0D116D49EF9ABB57DA005764F25E692622210627FC2048F06A989B12FA8D0A80 ] Parport         C:\Windows\system32\DRIVERS\parport.sys
09:21:18.0257 0x0f94  Parport - ok
09:21:18.0319 0x0f94  [ E9766131EEADE40A27DC27D2D68FBA9C, 63C295EC96DBD25F1A8B908295CCB86B54F2A77A02AAA11E5D9160C2C1A492B6 ] partmgr         C:\Windows\system32\drivers\partmgr.sys
09:21:18.0322 0x0f94  partmgr - ok
09:21:18.0439 0x0f94  [ 3CAE2BBC86FCF7F94C9696994AF30386, 4DA063A60523567272CFB35DF5D7CA142B100EF9123B1F23A6F11AB89DB83486 ] PassThru Service C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe
09:21:18.0443 0x0f94  PassThru Service - ok
09:21:18.0535 0x0f94  [ DB2D62AA2DF6B1F3D690A9EC9701AA2C, BEAC55E1AA0494565F1547DF5E6FE20FCEA66461764C016FCB68D8BFF0F0C375 ] PcaSvc          C:\Windows\System32\pcasvc.dll
09:21:18.0548 0x0f94  PcaSvc - ok
09:21:18.0590 0x0f94  [ 94575C0571D1462A0F70BDE6BD6EE6B3, 7139BAC653EA94A3DD3821CAB35FC5E22F4CCA5ACC2BAABDAA27E4C3C8B27FC9 ] pci             C:\Windows\system32\drivers\pci.sys
09:21:18.0596 0x0f94  pci - ok
09:21:18.0641 0x0f94  [ B5B8B5EF2E5CB34DF8DCF8831E3534FA, F2A7CC645B96946CC65BF60E14E70DC09C848D27C7943CE5DEA0C01A6B863480 ] pciide          C:\Windows\system32\drivers\pciide.sys
09:21:18.0642 0x0f94  pciide - ok
09:21:18.0725 0x0f94  [ B2E81D4E87CE48589F98CB8C05B01F2F, 6763BEE7270A4873B3E131BFB92313E2750FCBD0AD73C23D1C4F98F7DF73DE14 ] pcmcia          C:\Windows\system32\DRIVERS\pcmcia.sys
09:21:18.0731 0x0f94  pcmcia - ok
09:21:18.0764 0x0f94  [ D6B9C2E1A11A3A4B26A182FFEF18F603, BBA5FE08B1DDD6243118E11358FD61B10E850F090F061711C3CB207CE5FBBD36 ] pcw             C:\Windows\system32\drivers\pcw.sys
09:21:18.0767 0x0f94  pcw - ok
09:21:18.0900 0x0f94  [ ED6E75158D28D33A2E2A020AC5B2B59D, 0F364D9A88304C45F31318605C417A70A9D0E4CF087D73E949B42C12CC76CD6C ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
09:21:18.0938 0x0f94  PEAUTH - ok
09:21:19.0006 0x0f94  [ E495E408C93141E8FC72DC0C6046DDFA, 489B957DADA0DC128A09468F1AD082DCC657E86053208EA06A12937BE86FB919 ] PerfHost        C:\Windows\SysWow64\perfhost.exe
09:21:19.0017 0x0f94  PerfHost - ok
09:21:19.0180 0x0f94  [ C7CF6A6E137463219E1259E3F0F0DD6C, 08D7244F52AA17DD669AA6F77C291DAC88E7B2D1887DE422509C1F83EC85F3DD ] pla             C:\Windows\system32\pla.dll
09:21:19.0278 0x0f94  pla - ok
09:21:19.0330 0x0f94  [ 25FBDEF06C4D92815B353F6E792C8129, 57D9764AE6BCE33B242C399CDFC10DD405975BD6411CA8C75FBCD06EEB8442A9 ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
09:21:19.0347 0x0f94  PlugPlay - ok
09:21:19.0394 0x0f94  PnkBstrA - ok
09:21:19.0429 0x0f94  [ 7195581CEC9BB7D12ABE54036ACC2E38, 9C4E5D6EA984148F2663DC529083408B2248DFF6DAAC85D9195F80A722782315 ] PNRPAutoReg     C:\Windows\system32\pnrpauto.dll
09:21:19.0441 0x0f94  PNRPAutoReg - ok
09:21:19.0508 0x0f94  [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] PNRPsvc         C:\Windows\system32\pnrpsvc.dll
09:21:19.0519 0x0f94  PNRPsvc - ok
09:21:19.0555 0x0f94  [ E4799B87675C59AA1F620DE5C6F113BB, 094EE16D4CEC68DB316002994482344A6BFCFDE399131F7FA11BB46C2DCBF218 ] Point64         C:\Windows\system32\DRIVERS\point64.sys
09:21:19.0558 0x0f94  Point64 - ok
09:21:19.0696 0x0f94  [ 4F15D75ADF6156BF56ECED6D4A55C389, 2ADA3EA69A5D7EC2A4D2DD89178DB94EAFDDF95F07B0070D654D9F7A5C12A044 ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
09:21:19.0728 0x0f94  PolicyAgent - ok
09:21:19.0797 0x0f94  [ 6BA9D927DDED70BD1A9CADED45F8B184, 66203CE70A5EDE053929A940F38924C6792239CCCE10DD2C1D90D5B4D6748B55 ] Power           C:\Windows\system32\umpo.dll
09:21:19.0813 0x0f94  Power - ok
09:21:19.0868 0x0f94  [ F92A2C41117A11A00BE01CA01A7FCDE9, 38ADC6052696D110CA5F393BC586791920663F5DA66934C2A824DDA9CD89C763 ] PptpMiniport    C:\Windows\system32\DRIVERS\raspptp.sys
09:21:19.0872 0x0f94  PptpMiniport - ok
09:21:19.0916 0x0f94  [ 0D922E23C041EFB1C3FAC2A6F943C9BF, 855418A6A58DCAFB181A1A68613B3E203AFB0A9B3D9D26D0C521F9F613B4EAD5 ] Processor       C:\Windows\system32\DRIVERS\processr.sys
09:21:19.0918 0x0f94  Processor - ok
09:21:20.0052 0x0f94  [ B6A58491307B4CADA572583D863DC602, 5C44936605E52C9533E4CE22F18FAB8211475877F71EFD88DA4D02FD608C90A3 ] ProfSvc         C:\Windows\system32\profsvc.dll
09:21:20.0062 0x0f94  ProfSvc - ok
09:21:20.0113 0x0f94  [ 17A6A9AAD04CCC6EE53290585BFC43AF, E4901D86C6470D21ABA0F6D9615A613E5C74A3FEF931E497F51B6AFA5715332B ] ProtectedStorage C:\Windows\system32\lsass.exe
09:21:20.0117 0x0f94  ProtectedStorage - ok
09:21:20.0173 0x0f94  [ 0557CF5A2556BD58E26384169D72438D, F6F83A616B1F1C6C0DF6D2EC2513E6C23FD4FAA6D36518B8676C619AB74957B4 ] Psched          C:\Windows\system32\DRIVERS\pacer.sys
09:21:20.0178 0x0f94  Psched - ok
09:21:20.0260 0x0f94  [ A53A15A11EBFD21077463EE2C7AFEEF0, 6002B012A75045DEA62640A864A8721EADE2F8B65BEB5F5BA76D8CD819774489 ] ql2300          C:\Windows\system32\DRIVERS\ql2300.sys
09:21:20.0316 0x0f94  ql2300 - ok
09:21:20.0345 0x0f94  [ 4F6D12B51DE1AAEFF7DC58C4D75423C8, FB6ABAB741CED66A79E31A45111649F2FA3E26CEE77209B5296F789F6F7D08DE ] ql40xx          C:\Windows\system32\DRIVERS\ql40xx.sys
09:21:20.0350 0x0f94  ql40xx - ok
09:21:20.0395 0x0f94  [ 906191634E99AEA92C4816150BDA3732, A0305436384104C3B559F9C73902DA19B96B518413379E397C5CDAB0B2B9418F ] QWAVE           C:\Windows\system32\qwave.dll
09:21:20.0418 0x0f94  QWAVE - ok
09:21:20.0445 0x0f94  [ 76707BB36430888D9CE9D705398ADB6C, 35C1D1D05F98AC29A33D3781F497A0B40A3CB9CDF25FE1F28F574E40DDF70535 ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
09:21:20.0448 0x0f94  QWAVEdrv - ok
09:21:20.0472 0x0f94  [ 5A0DA8AD5762FA2D91678A8A01311704, 8A64EB5DBAB7048A9E42A21CEB62CCD5B007A80C199892D7F8C69B48E8A255EF ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
09:21:20.0473 0x0f94  RasAcd - ok
09:21:20.0510 0x0f94  [ 7ECFF9B22276B73F43A99A15A6094E90, 62C70DA127F48F796F8897BBFA23AB6EB080CC923F0F091DFA384A93F5C90CA1 ] RasAgileVpn     C:\Windows\system32\DRIVERS\AgileVpn.sys
09:21:20.0512 0x0f94  RasAgileVpn - ok
09:21:20.0534 0x0f94  [ 8F26510C5383B8DBE976DE1CD00FC8C7, 60E618C010E8A723960636415573FA17EA0BBEF79647196B3BC0B8DEE680E090 ] RasAuto         C:\Windows\System32\rasauto.dll
09:21:20.0548 0x0f94  RasAuto - ok
09:21:20.0592 0x0f94  [ 471815800AE33E6F1C32FB1B97C490CA, 27307265F743DE3A3A3EC1B2C472A3D85FDD0AEC458E0B1177593141EE072698 ] Rasl2tp         C:\Windows\system32\DRIVERS\rasl2tp.sys
09:21:20.0595 0x0f94  Rasl2tp - ok
09:21:20.0655 0x0f94  [ EE867A0870FC9E4972BA9EAAD35651E2, 1B848D81705081FD2E18AC762DA7F51455657DAF860BF363DC15925A148BCADA ] RasMan          C:\Windows\System32\rasmans.dll
09:21:20.0680 0x0f94  RasMan - ok
09:21:20.0723 0x0f94  [ 855C9B1CD4756C5E9A2AA58A15F58C25, A514F8A9C304D54BDA8DC60F5A64259B057EC83A1CAAF6D2B58CFD55E9561F72 ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
09:21:20.0727 0x0f94  RasPppoe - ok
09:21:20.0762 0x0f94  [ E8B1E447B008D07FF47D016C2B0EEECB, FEC789F82B912F3E14E49524D40FEAA4373B221156F14045E645D7C37859258C ] RasSstp         C:\Windows\system32\DRIVERS\rassstp.sys
09:21:20.0765 0x0f94  RasSstp - ok
09:21:20.0816 0x0f94  [ 77F665941019A1594D887A74F301FA2F, 1FDC6F6853400190C086042933F157814D915C54F26793CAD36CD2607D8810DA ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
09:21:20.0824 0x0f94  rdbss - ok
09:21:20.0870 0x0f94  [ 302DA2A0539F2CF54D7C6CC30C1F2D8D, 1DF3501BBFFB56C3ECC39DBCC4287D3302216C2208CE22428B8C4967E5DE9D17 ] rdpbus          C:\Windows\system32\DRIVERS\rdpbus.sys
09:21:20.0871 0x0f94  rdpbus - ok
09:21:20.0917 0x0f94  [ CEA6CC257FC9B7715F1C2B4849286D24, A78144D18352EA802C39D9D42921CF97A3E0211766B2169B6755C6FC2D77A804 ] RDPCDD          C:\Windows\system32\DRIVERS\RDPCDD.sys
09:21:20.0918 0x0f94  RDPCDD - ok
09:21:20.0978 0x0f94  [ BB5971A4F00659529A5C44831AF22365, 9AAA5C0D448E821FD85589505D99DF7749715A046BBD211F139E4E652ADDE41F ] RDPENCDD        C:\Windows\system32\drivers\rdpencdd.sys
09:21:20.0980 0x0f94  RDPENCDD - ok
09:21:21.0012 0x0f94  [ 216F3FA57533D98E1F74DED70113177A, 60C126A1409D1E9C39F1C9E95F70115BF4AF07780AB499F6E10A612540F173F4 ] RDPREFMP        C:\Windows\system32\drivers\rdprefmp.sys
09:21:21.0013 0x0f94  RDPREFMP - ok
09:21:21.0134 0x0f94  [ 313F68E1A3E6345A4F47A36B07062F34, B8318A0AE06BDE278931CA52F960B9FE226FD9894B076858DDB755AE26E1E66F ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
09:21:21.0136 0x0f94  RdpVideoMiniport - ok
09:21:21.0255 0x0f94  [ FE571E088C2D83619D2D48D4E961BF41, 88C5A2FCB1D0E528657842E39963471A6E42FCA3FCDF37955AEC8258AB4C48EA ] RDPWD           C:\Windows\system32\drivers\RDPWD.sys
09:21:21.0268 0x0f94  RDPWD - ok
09:21:21.0340 0x0f94  [ 34ED295FA0121C241BFEF24764FC4520, AAEE5F00CAA763A5BA51CF56BD7262C03409CD72BD5601490E3EC3FFF929BB5F ] rdyboost        C:\Windows\system32\drivers\rdyboost.sys
09:21:21.0347 0x0f94  rdyboost - ok
09:21:21.0458 0x0f94  [ B2D01290C0E0465ACA54C2088E947823, 6FB6E6CFAF3F2F948B753A0CFF6F9058BF3ED0E421204EE58848F0DFD694A747 ] RealNetworks Downloader Resolver Service C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe
09:21:21.0460 0x0f94  RealNetworks Downloader Resolver Service - ok
09:21:21.0530 0x0f94  [ F09087C51C6AE42AE7DABE1EB3E44C17, DAE1CB123EA830DFCB68FD34A95FC427755FBBAD7AD16EE3F0D4941A25AD49F4 ] RegSrvc         C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
09:21:21.0535 0x0f94  RegSrvc - ok
09:21:21.0574 0x0f94  [ 254FB7A22D74E5511C73A3F6D802F192, 3D0FB5840364200DE394F8CC28DA0E334C2B5FA8FF28A41656EE72287F3D3836 ] RemoteAccess    C:\Windows\System32\mprdim.dll
09:21:21.0616 0x0f94  RemoteAccess - ok
09:21:21.0653 0x0f94  [ E4D94F24081440B5FC5AA556C7C62702, 147CAA03568DC480F9506E30B84891AB7E433B5EBC05F34FF10F72B00E1C6B22 ] RemoteRegistry  C:\Windows\system32\regsvc.dll
09:21:21.0670 0x0f94  RemoteRegistry - ok
09:21:21.0715 0x0f94  [ 3DD798846E2C28102B922C56E71B7932, 30B111615D74CB2213997A5C08DD9C8613ADE441D9423CC1C49A753D13CE524D ] RFCOMM          C:\Windows\system32\DRIVERS\rfcomm.sys
09:21:21.0720 0x0f94  RFCOMM - ok
09:21:21.0770 0x0f94  [ E4DC58CF7B3EA515AE917FF0D402A7BB, 665B5CD9FE905B0EE3F59A7B1A94760F5393EBEE729877D8584349754C2867E8 ] RpcEptMapper    C:\Windows\System32\RpcEpMap.dll
09:21:21.0780 0x0f94  RpcEptMapper - ok
09:21:21.0823 0x0f94  [ D5BA242D4CF8E384DB90E6A8ED850B8C, CB4CB2608B5E31B55FB1A2CF4051E6D08A0C2A5FB231B2116F95938D7577334E ] RpcLocator      C:\Windows\system32\locator.exe
09:21:21.0835 0x0f94  RpcLocator - ok
09:21:21.0893 0x0f94  [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] RpcSs           C:\Windows\system32\rpcss.dll
09:21:21.0911 0x0f94  RpcSs - ok
09:21:22.0056 0x0f94  [ C9FE05A63C500ABE3AFA5786504C4D36, F076B57B9EF6A179A37D5E00E1891236025D451CF067D2F1A1CBA2113218FEB6 ] RsFx0105        C:\Windows\system32\DRIVERS\RsFx0105.sys
09:21:22.0067 0x0f94  RsFx0105 - ok
09:21:22.0111 0x0f94  [ DDC86E4F8E7456261E637E3552E804FF, D250C69CCC75F2D88E7E624FCC51300E75637333317D53908CCA7E0F117173DD ] rspndr          C:\Windows\system32\DRIVERS\rspndr.sys
09:21:22.0114 0x0f94  rspndr - ok
09:21:22.0171 0x0f94  [ CE0A1D8A59410E698140821E4E69DA0D, 4AEBF07C4016AF62B1A4F1C838FDC3A272FC643E596A86E4FE3C34F10523E318 ] RSUSBVSTOR      C:\Windows\system32\Drivers\RTSUVSTOR.sys
09:21:22.0182 0x0f94  RSUSBVSTOR - ok
09:21:22.0264 0x0f94  [ 0D992B69029D1F23A872FF5A3352FB5B, 0ACA4447EE54D635F76B941F6100B829DC8B2E0DF27BDF584ACB90F15F12FBDA ] RTCore64        C:\Program Files (x86)\MSI Afterburner\RTCore64.sys
09:21:22.0265 0x0f94  RTCore64 - ok
09:21:22.0349 0x0f94  [ 7135C3E86471731D4977396AF692CDB6, 74E5F7C9CE02602FC9D5475EE5CF9D145AFCCEEDE603EF4710B0DB3A164DAB2D ] RtlWlanu        C:\Windows\system32\DRIVERS\rtwlanu.sys
09:21:22.0401 0x0f94  RtlWlanu - ok
09:21:22.0510 0x0f94  [ 45F606823EAA469582318C722C76A29D, 1016FBE111638AE369F7C5FF6CA33178FD6CB06D361F3B488DE6C4D85A22253A ] RUBotSrv        C:\Program Files (x86)\Trend Micro\RUBotted\RUBotSrv.exe
09:21:22.0521 0x0f94  RUBotSrv - ok
09:21:22.0551 0x0f94  [ 17A6A9AAD04CCC6EE53290585BFC43AF, E4901D86C6470D21ABA0F6D9615A613E5C74A3FEF931E497F51B6AFA5715332B ] SamSs           C:\Windows\system32\lsass.exe
09:21:22.0555 0x0f94  SamSs - ok
09:21:22.0604 0x0f94  [ AC03AF3329579FFFB455AA2DAABBE22B, 7AD3B62ADFEC166F9E256F9FF8BAA0568B2ED7308142BF8F5269E6EAA5E0A656 ] sbp2port        C:\Windows\system32\drivers\sbp2port.sys
09:21:22.0612 0x0f94  sbp2port - ok
09:21:22.0667 0x0f94  [ 9B7395789E3791A3B6D000FE6F8B131E, E5F067F3F212BF5481668BE1779CBEF053F511F8967589BE2E865ACB9A620024 ] SCardSvr        C:\Windows\System32\SCardSvr.dll
09:21:22.0686 0x0f94  SCardSvr - ok
09:21:22.0736 0x0f94  [ 253F38D0D7074C02FF8DEB9836C97D2B, CB5CAFCB8628BB22877F74ACF1DED0BBAED8F4573A74DA7FE94BBBA584889116 ] scfilter        C:\Windows\system32\DRIVERS\scfilter.sys
09:21:22.0738 0x0f94  scfilter - ok
09:21:22.0827 0x0f94  [ 262F6592C3299C005FD6BEC90FC4463A, 54095E37F0B6CC677A3E9BDD40F4647C713273D197DB341063AA7F342A60C4A7 ] Schedule        C:\Windows\system32\schedsvc.dll
09:21:22.0920 0x0f94  Schedule - ok
09:21:22.0979 0x0f94  [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] SCPolicySvc     C:\Windows\System32\certprop.dll
09:21:22.0983 0x0f94  SCPolicySvc - ok
09:21:23.0033 0x0f94  [ 6EA4234DC55346E0709560FE7C2C1972, 64011E044C16E2F92689E5F7E4666A075E27BBFA61F3264E5D51CE1656C1D5B8 ] SDRSVC          C:\Windows\System32\SDRSVC.dll
09:21:23.0053 0x0f94  SDRSVC - ok
09:21:23.0277 0x0f94  [ 206387AB881E93A1A6EB89966C8651F1, 3BF9DFF3E70F0787F7F94BE5B9717DFADD9E13AB8154FAE295CEAC834F0835E5 ] SDScannerService C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
09:21:23.0310 0x0f94  SDScannerService - ok
09:21:23.0430 0x0f94  [ A529CFE32565C0B145578FFB2B32C9A5, 4B1596CBDDA74D510707FD475AAB3A89B1203E0B95ECAE3756CAA56555F9F66D ] SDUpdateService C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
09:21:23.0461 0x0f94  SDUpdateService - ok
09:21:23.0520 0x0f94  [ CB63BDB77BB86549FC3303C2F11EDC18, 1C96C082B9CE08C8F3C088D5DE68BA8783E6F6A837A88E2654BC4CBCF7B81846 ] SDWSCService    C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
09:21:23.0524 0x0f94  SDWSCService - ok
09:21:23.0560 0x0f94  [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv          C:\Windows\system32\drivers\secdrv.sys
09:21:23.0586 0x0f94  secdrv - ok
09:21:23.0636 0x0f94  [ BC617A4E1B4FA8DF523A061739A0BD87, 10C4057F6B321EB5237FF619747B74F5401BC17D15A8C7060829E8204A2297F9 ] seclogon        C:\Windows\system32\seclogon.dll
09:21:23.0647 0x0f94  seclogon - ok
09:21:23.0698 0x0f94  [ C32AB8FA018EF34C0F113BD501436D21, E0EB8E80B51E45CA7EB061E705DA0BC07878759418A8519AE6E12326FE79E7C7 ] SENS            C:\Windows\System32\sens.dll
09:21:23.0716 0x0f94  SENS - ok
09:21:23.0735 0x0f94  [ 0336CFFAFAAB87A11541F1CF1594B2B2, 8B8A6A33E78A12FB05E29B2E2775850626574AFD2EF88748D65E690A07B10B8D ] SensrSvc        C:\Windows\system32\sensrsvc.dll
09:21:23.0749 0x0f94  SensrSvc - ok
09:21:23.0792 0x0f94  [ CB624C0035412AF0DEBEC78C41F5CA1B, A4D937F11E06CAE914347CA1362F4C98EC5EE0C0C80321E360EA1ABD6726F8D4 ] Serenum         C:\Windows\system32\DRIVERS\serenum.sys
09:21:23.0793 0x0f94  Serenum - ok
09:21:23.0818 0x0f94  [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6, 8F9776FB84C5D11068EAF1FF1D1A46466C655D64D256A8B1E31DC0C23B5DD22D ] Serial          C:\Windows\system32\DRIVERS\serial.sys
09:21:23.0823 0x0f94  Serial - ok
09:21:23.0859 0x0f94  [ 1C545A7D0691CC4A027396535691C3E3, 065C30BE598FF4DC55C37E0BBE0CEDF10A370AE2BF5404B42EBBB867A3FFED6D ] sermouse        C:\Windows\system32\DRIVERS\sermouse.sys
09:21:23.0861 0x0f94  sermouse - ok
09:21:23.0948 0x0f94  [ 0B6231BF38174A1628C4AC812CC75804, E569BF1F7F5689E2E917FA6516DB53388A5B8B1C6699DEE030147E853218811D ] SessionEnv      C:\Windows\system32\sessenv.dll
09:21:23.0962 0x0f94  SessionEnv - ok
09:21:24.0018 0x0f94  [ A554811BCD09279536440C964AE35BBF, DA8F893722F803E189D7D4D6C6232ED34505B63A64ED3A0132A5BB7A2BABDE55 ] sffdisk         C:\Windows\system32\drivers\sffdisk.sys
09:21:24.0019 0x0f94  sffdisk - ok
09:21:24.0043 0x0f94  [ FF414F0BAEFEBA59BC6C04B3DB0B87BF, B81EF5D26AEB572CAB590F7AD7CA8C89F296420089EF5E6148E972F2DBCA1042 ] sffp_mmc        C:\Windows\system32\drivers\sffp_mmc.sys
09:21:24.0045 0x0f94  sffp_mmc - ok
09:21:24.0075 0x0f94  [ DD85B78243A19B59F0637DCF284DA63C, 6730D4F2BAE7E24615746ACC41B42D01DB6068D6504982008ADA1890DE900197 ] sffp_sd         C:\Windows\system32\drivers\sffp_sd.sys
09:21:24.0077 0x0f94  sffp_sd - ok
09:21:24.0145 0x0f94  [ A9D601643A1647211A1EE2EC4E433FF4, 7AC60B4AB48D4BBF1F9681C12EC2A75C72E6E12D30FABC564A24394310E9A5F9 ] sfloppy         C:\Windows\system32\DRIVERS\sfloppy.sys
09:21:24.0147 0x0f94  sfloppy - ok
09:21:24.0218 0x0f94  [ 21AB491BBCC8C1B26FDC402A374AB196, DD973C9963C840200D153A15078152D499639730D065BB8122C6BE65D4372300 ] Sftfs           C:\Windows\system32\DRIVERS\Sftfslh.sys
09:21:24.0269 0x0f94  Sftfs - ok
09:21:24.0356 0x0f94  [ 4E1BB8A9CCDB4BAF41F7F9A930EB121D, D994B20DACEB187BEB6530309E2185040B58105E4FD5AC1DA435712F9DE027D0 ] sftlist         C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
09:21:24.0369 0x0f94  sftlist - ok
09:21:24.0429 0x0f94  [ 3B8D43FEEFF7A187534DDDFD675FE123, 9308D5C552FE3AF1121A3F7B7595547C6B892FF500377953F3B623511D84698C ] Sftplay         C:\Windows\system32\DRIVERS\Sftplaylh.sys
09:21:24.0438 0x0f94  Sftplay - ok
09:21:24.0499 0x0f94  [ F1D1B1DC7A8765A09D7640FBF8D20970, 72E59B04BC44DAFFB88987C16CF3F9DC35438B15879E102FD83013673E0DB66F ] Sftredir        C:\Windows\system32\DRIVERS\Sftredirlh.sys
09:21:24.0502 0x0f94  Sftredir - ok
09:21:24.0524 0x0f94  [ B3B9ADE7F8C4AF0C20E712E040588543, 9A6BB11DA046BF6F0239952871263E148FAE91FB21065613645114B5FA054EC5 ] Sftvol          C:\Windows\system32\DRIVERS\Sftvollh.sys
09:21:24.0526 0x0f94  Sftvol - ok
09:21:24.0580 0x0f94  [ CECFDE5D3701B2D914862F5E6C3DFE18, E7627F90630C306324A39DC3C652B37D255F90636AC19D3302EE5B85BD504BD5 ] sftvsa          C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
09:21:24.0586 0x0f94  sftvsa - ok
09:21:24.0676 0x0f94  [ B95F6501A2F8B2E78C697FEC401970CE, 758B73A32902299A313348CE7EC189B20EB4CB398D0180E4EE24B84DAD55F291 ] SharedAccess    C:\Windows\System32\ipnathlp.dll
09:21:24.0704 0x0f94  SharedAccess - ok
09:21:24.0863 0x0f94  [ AAF932B4011D14052955D4B212A4DA8D, 2A3BFD0FA9569288E91AE3E72CA1EC39E1450D01E6473CE51157E0F138257923 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
09:21:24.0883 0x0f94  ShellHWDetection - ok
09:21:24.0953 0x0f94  [ 1BC348CF6BAA90EC8E533EF6E6A69933, 2B26F6EB701F48E092DED6A7B888F24736F2899EE81D54DD4B1E9DF7CFD36E7A ] SiSGbeLH        C:\Windows\system32\DRIVERS\SiSG664.sys
09:21:24.0955 0x0f94  SiSGbeLH - ok
09:21:24.0994 0x0f94  [ 843CAF1E5FDE1FFD5FF768F23A51E2E1, 89CA9F516E42A6B905474D738CDA2C121020A07DBD4E66CFE569DD77D79D7820 ] SiSRaid2        C:\Windows\system32\DRIVERS\SiSRaid2.sys
09:21:24.0996 0x0f94  SiSRaid2 - ok
09:21:25.0054 0x0f94  [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4, 87B85C66DF7EB6FDB8A2341D05FAA5261FF68A90CCFC63F0E4A03824F1E33E5E ] SiSRaid4        C:\Windows\system32\DRIVERS\sisraid4.sys
09:21:25.0057 0x0f94  SiSRaid4 - ok
09:21:25.0144 0x0f94  [ 704B4F81729F676BBF034529FC334D82, 1E50DAF97836807A500284385D99272780A8B69CA88761250451060B207824F8 ] SkypeUpdate     C:\Program Files (x86)\Skype\Updater\Updater.exe
09:21:25.0152 0x0f94  SkypeUpdate - ok
09:21:25.0242 0x0f94  [ 548260A7B8654E024DC30BF8A7C5BAA4, 4A7E58331D7765A12F53DC2371739DC9A463940B13E16157CE10DB80E958D740 ] Smb             C:\Windows\system32\DRIVERS\smb.sys
09:21:25.0245 0x0f94  Smb - ok
09:21:25.0316 0x0f94  [ 6313F223E817CC09AA41811DAA7F541D, D787061043BEEDB9386B048CB9E680E6A88A1CBAE9BD4A8C0209155BFB76C630 ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
09:21:25.0325 0x0f94  SNMPTRAP - ok
09:21:25.0477 0x0f94  [ C98375D19F9E9966F6201BAE65FB3728, F54146BFC5B3BDFD41B5793D63AFF1FE5DB2A562A723DD1203E0C549C9538906 ] SNP2UVC         C:\Windows\system32\DRIVERS\snp2uvc.sys
09:21:25.0556 0x0f94  SNP2UVC - ok
09:21:25.0763 0x0f94  [ 12583AF6CBE0050651EAF2723B3AD7B3, 965D4F981B54669A96C5AB02D09BF0A9850D13862425B8981F1A9271350F28BB ] speedfan        C:\Windows\syswow64\speedfan.sys
09:21:25.0772 0x0f94  speedfan - ok
09:21:25.0810 0x0f94  [ B9E31E5CACDFE584F34F730A677803F9, 21A5130BD00089C609522A372018A719F8E37103D2DD22C59EACB393BE35A063 ] spldr           C:\Windows\system32\drivers\spldr.sys
09:21:25.0817 0x0f94  spldr - ok
09:21:25.0896 0x0f94  [ 85DAA09A98C9286D4EA2BA8D0E644377, F9C324E2EF81193FE831C7EECC44A100CA06F82FA731BF555D9EA4D91DA13329 ] Spooler         C:\Windows\System32\spoolsv.exe
09:21:25.0926 0x0f94  Spooler - ok
09:21:26.0142 0x0f94  [ E17E0188BB90FAE42D83E98707EFA59C, FC075F7B39E86CC8EF6DA4E339FE946917E319C347AC70FB0C50AAF36F97E27F ] sppsvc          C:\Windows\system32\sppsvc.exe
09:21:26.0278 0x0f94  sppsvc - ok
09:21:26.0318 0x0f94  [ 93D7D61317F3D4BC4F4E9F8A96A7DE45, 36D48B23B8243BE5229707375FCD11C2DCAC96983199345365F065A0CBF33314 ] sppuinotify     C:\Windows\system32\sppuinotify.dll
09:21:26.0334 0x0f94  sppuinotify - ok
09:21:26.0407 0x0f94  [ 656736958178461D25B51BB0D9EC7D09, A1C987CD3C1B36516691B6FB6B0589897826E9237C72AD8B5D79D20ACAFCC883 ] sptd            C:\Windows\System32\Drivers\sptd.sys
09:21:26.0418 0x0f94  sptd - ok
09:21:26.0608 0x0f94  [ 2E21D0699F3DFFFFD141763E3AA99D9A, 60063207F002B67B3E2BC78BBD15A2725AE8CFBC3289D21BE598F13F53C929B1 ] SQLAgent$SQLEXPRESS C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE
09:21:26.0641 0x0f94  SQLAgent$SQLEXPRESS - ok
09:21:26.0741 0x0f94  [ 10D936DCED9EACD1A1B3FCDDA6D7A4EB, EE66162AEAF6A583A04BB5AF1220318C9ADD3A62987CDCEE0505C6FF37AB30FF ] SQLBrowser      C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe
09:21:26.0747 0x0f94  SQLBrowser - ok
09:21:26.0836 0x0f94  [ F92E5F93BE572B512DA3C016B675EDE0, 3BBE8B952A329E4BCD6F0C8D6225F809B99217A196301B6FE543B26C3689A37B ] SQLWriter       C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
09:21:26.0840 0x0f94  SQLWriter - ok
09:21:26.0968 0x0f94  [ 441FBA48BFF01FDB9D5969EBC1838F0B, 306128F1AD489F87161A089D1BDC1542A4CB742D91A0C12A7CD1863FDB8932C0 ] srv             C:\Windows\system32\DRIVERS\srv.sys
09:21:26.0980 0x0f94  srv - ok
09:21:27.0109 0x0f94  [ B4ADEBBF5E3677CCE9651E0F01F7CC28, 726DB2283113AB2A9681E8E9F61132303D6D86E9CD034C40EE4A8C9DB29E87F7 ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
09:21:27.0120 0x0f94  srv2 - ok
09:21:27.0153 0x0f94  [ 27E461F0BE5BFF5FC737328F749538C3, AFA4704ED8FFC1A0BAB40DFB81D3AE3F3D933A3C9BF54DDAF39FF9AF3646D9E6 ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
09:21:27.0159 0x0f94  srvnet - ok
09:21:27.0205 0x0f94  [ 51B52FBD583CDE8AA9BA62B8B4298F33, 2E2403F8AA39E79D1281CA006B51B43139C32A5FDD64BD34DAA4B935338BD740 ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
09:21:27.0223 0x0f94  SSDPSRV - ok
09:21:27.0263 0x0f94  [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB, D21CDBC4C2AA0DB5B4455D5108B0CAF4282A2E664B9035708F212CC094569D9D ] SstpSvc         C:\Windows\system32\sstpsvc.dll
09:21:27.0286 0x0f94  SstpSvc - ok
09:21:27.0327 0x0f94  StarOpen - ok
09:21:27.0487 0x0f94  [ EBAA82F7C9B97C0E450449178E007340, D470927CC216C4E3EA23236E6C6464187CD3A49C3A4A456F488FEC8E713EA31B ] Steam Client Service C:\Program Files (x86)\Common Files\Steam\SteamService.exe
09:21:27.0541 0x0f94  Steam Client Service - ok
09:21:27.0661 0x0f94  [ AD5CE4DBBBAFB82B728BA0548876C5B6, 09022AE357FFBD9F3DF7807BF57704AA8E71767E043E92DA06DB5FE828B3F26F ] Stereo Service  C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
09:21:27.0691 0x0f94  Stereo Service - ok
09:21:27.0763 0x0f94  [ F3817967ED533D08327DC73BC4D5542A, 1B204454408A690C0A86447F3E4AA9E7C58A9CFB567C94C17C21920BA648B4D5 ] stexstor        C:\Windows\system32\DRIVERS\stexstor.sys
09:21:27.0765 0x0f94  stexstor - ok
09:21:27.0847 0x0f94  [ 8DD52E8E6128F4B2DA92CE27402871C1, 1101C38BE8FC383B5F2F9FA402F9652B23B88A764DE2B584DFE62B88B11DEF92 ] stisvc          C:\Windows\System32\wiaservc.dll
09:21:27.0968 0x0f94  stisvc - ok
09:21:28.0025 0x0f94  [ D01EC09B6711A5F8E7E6564A4D0FBC90, 3CB922291DBADC92B46B9E28CCB6810CD8CCDA3E74518EC9522B58B998E1F969 ] swenum          C:\Windows\system32\drivers\swenum.sys
09:21:28.0032 0x0f94  swenum - ok
09:21:28.0086 0x0f94  [ E08E46FDD841B7184194011CA1955A0B, 9C3725BB1F08F92744C980A22ED5C874007D3B5863C7E1F140F50061052AC418 ] swprv           C:\Windows\System32\swprv.dll
09:21:28.0128 0x0f94  swprv - ok
09:21:28.0263 0x0f94  [ BF9CCC0BF39B418C8D0AE8B05CF95B7D, 3C13217548BE61F2BDB8BD41F77345CDDA1F97BF0AE17241C335B9807EB3DBB8 ] SysMain         C:\Windows\system32\sysmain.dll
09:21:28.0360 0x0f94  SysMain - ok
09:21:28.0423 0x0f94  [ E3C61FD7B7C2557E1F1B0B4CEC713585, 01F0E116606D185BF93B540868075BFB1A398197F6AABD994983DBFF56B3A8A0 ] TabletInputService C:\Windows\System32\TabSvc.dll
09:21:28.0438 0x0f94  TabletInputService - ok
09:21:28.0498 0x0f94  [ F0B9D3ED88E56D3CD713DFF21E42AAF0, D914422032A6EC6B161F20CD040B631F8AF18D4B942F6CBE7E32069EBF551B6A ] tap0901         C:\Windows\system32\DRIVERS\tap0901.sys
09:21:28.0500 0x0f94  tap0901 - ok
09:21:28.0616 0x0f94  [ 40F0849F65D13EE87B9A9AE3C1DD6823, E251A7EF3D0FD2973AF33A62FC457A7E8D5E8694208F811F52455F7C2426121F ] TapiSrv         C:\Windows\System32\tapisrv.dll
09:21:28.0638 0x0f94  TapiSrv - ok
09:21:28.0680 0x0f94  [ 1BE03AC720F4D302EA01D40F588162F6, AB644862BF1D2E824FD846180DEC4E2C0FAFCC517451486DE5A92E5E78A952E4 ] TBS             C:\Windows\System32\tbssvc.dll
09:21:28.0694 0x0f94  TBS - ok
09:21:28.0811 0x0f94  [ 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E, F05C0C4CA3DD234AD5D60CF1EF763C9A1D9EC3C157E180C2D75CC07E6B02A611 ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
09:21:28.0895 0x0f94  Tcpip - ok
09:21:28.0995 0x0f94  [ 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E, F05C0C4CA3DD234AD5D60CF1EF763C9A1D9EC3C157E180C2D75CC07E6B02A611 ] TCPIP6          C:\Windows\system32\DRIVERS\tcpip.sys
09:21:29.0048 0x0f94  TCPIP6 - ok
09:21:29.0106 0x0f94  [ 1B16D0BD9841794A6E0CDE0CEF744ABC, 7EB8BA97339199EEE7F2B09DA2DA6279DA64A510D4598D42CF86415D67CD674C ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
09:21:29.0109 0x0f94  tcpipreg - ok
09:21:29.0159 0x0f94  [ 3371D21011695B16333A3934340C4E7C, 7416F9BBFC1BA9D875EA7D1C7A0D912FC6977B49A865D67E3F9C4E18A965082D ] TDPIPE          C:\Windows\system32\drivers\tdpipe.sys
09:21:29.0161 0x0f94  TDPIPE - ok
09:21:29.0214 0x0f94  [ 51C5ECEB1CDEE2468A1748BE550CFBC8, 4E8F83877330B421F7B5D8393D34BC44C6450E69209DAA95B29CB298166A5DF9 ] TDTCP           C:\Windows\system32\drivers\tdtcp.sys
09:21:29.0216 0x0f94  TDTCP - ok
09:21:29.0287 0x0f94  [ 70988118145F5F10EF24720B97F35F65, F80C806417A68047FFB3D63214BC4AE5445315219AC594E043293006B704A63D ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
09:21:29.0291 0x0f94  tdx - ok
09:21:29.0322 0x0f94  [ 561E7E1F06895D78DE991E01DD0FB6E5, 83BFA50A528762EC52A011302AC3874636FB7E26628CD7ACFBF2BDC9FAA8110D ] TermDD          C:\Windows\system32\drivers\termdd.sys
09:21:29.0325 0x0f94  TermDD - ok
09:21:29.0541 0x0f94  [ 008CD4EBFABCF78D0F19B3778492648C, 9050490EEE0AD86E73F0A82D83E4FC29DF84F6B6FDB389AE135FD712B5F425BE ] TermService     C:\Windows\System32\termsrv.dll
09:21:29.0575 0x0f94  TermService - ok
09:21:29.0631 0x0f94  [ 48D9D00C2E0E72C3D4F52772C80355F6, 86F281C7F5FA2FCF1A36C69DD6561531E48483CACB8A873B955F7E93D9A1D259 ] TFsExDisk       C:\Windows\System32\Drivers\TFsExDisk.sys
09:21:29.0634 0x0f94  TFsExDisk - ok
09:21:29.0679 0x0f94  [ F0344071948D1A1FA732231785A0664C, DB9886C2C858FAF45AEA15F8E42860343F73EB8685C53EC2E8CCC10586CB0832 ] Themes          C:\Windows\system32\themeservice.dll
09:21:29.0692 0x0f94  Themes - ok
09:21:29.0724 0x0f94  [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] THREADORDER     C:\Windows\system32\mmcss.dll
09:21:29.0729 0x0f94  THREADORDER - ok
09:21:29.0757 0x0f94  [ 7E7AFD841694F6AC397E99D75CEAD49D, DE87F203FD8E6BDCCFCA1860A85F283301A365846FB703D9BB86278D8AC96B07 ] TrkWks          C:\Windows\System32\trkwks.dll
09:21:29.0771 0x0f94  TrkWks - ok
09:21:29.0898 0x0f94  [ 773212B2AAA24C1E31F10246B15B276C, F2EF85F5ABA307976D9C649D710B408952089458DDE97D4DEF321DF14E46A046 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
09:21:29.0907 0x0f94  TrustedInstaller - ok
09:21:29.0987 0x0f94  [ E232A3B43A894BB327FC161529BD9ED1, F2673DA8C920F21ACCECC25F7C59A05822E5E577D47F126EDF9C94FEB4B30C5F ] tssecsrv        C:\Windows\system32\DRIVERS\tssecsrv.sys
09:21:29.0990 0x0f94  tssecsrv - ok
09:21:30.0109 0x0f94  [ E9981ECE8D894CEF7038FD1D040EB426, DCDDCE933CAECE8180A3447199B07F2F0413704EEC1A09606EE357901A84A7CF ] TsUsbFlt        C:\Windows\system32\drivers\tsusbflt.sys
09:21:30.0112 0x0f94  TsUsbFlt - ok
09:21:30.0190 0x0f94  [ 3566A8DAAFA27AF944F5D705EAA64894, AE9D8B648DA08AF667B9456C3FE315489859C157510A258559F18238F2CC92B8 ] tunnel          C:\Windows\system32\DRIVERS\tunnel.sys
09:21:30.0194 0x0f94  tunnel - ok
09:21:30.0259 0x0f94  [ 42350E49DA754D2D77362FDAE3491651, F29E8BA444ECB0484066B02C0A3DCE09B8417159EE37D7A2E05D4C06A98449C4 ] TurboB          C:\Windows\system32\DRIVERS\TurboB.sys
09:21:30.0261 0x0f94  TurboB - ok
09:21:30.0391 0x0f94  [ 4F4B0AB2FB69C414CCBCEF7CF2E1C8D8, E1F197554369C97DBF61389346B4CB0233F40AAA2575F5D2FEC809AC9123FC69 ] TurboBoost      C:\Program Files\Intel\TurboBoost\TurboBoost.exe
09:21:30.0395 0x0f94  TurboBoost - ok
09:21:30.0459 0x0f94  [ B4DD609BD7E282BFC683CEC7EAAAAD67, EF131DB6F6411CAD36A989A421AF93F89DD61601AC524D2FF11C10FF6E3E9123 ] uagp35          C:\Windows\system32\DRIVERS\uagp35.sys
09:21:30.0462 0x0f94  uagp35 - ok
09:21:30.0561 0x0f94  [ FF4232A1A64012BAA1FD97C7B67DF593, D8591B4EB056899C7B604E4DD852D82D4D9809F508ABCED4A03E1BE6D5D456E3 ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
09:21:30.0570 0x0f94  udfs - ok
09:21:30.0636 0x0f94  [ 3CBDEC8D06B9968ABA702EBA076364A1, B8DAB8AA804FC23021BFEBD7AE4D40FBE648D6C6BA21CC008E26D1C084972F9B ] UI0Detect       C:\Windows\system32\UI0Detect.exe
09:21:30.0649 0x0f94  UI0Detect - ok
09:21:30.0697 0x0f94  [ 4BFE1BC28391222894CBF1E7D0E42320, 5918B1ED2030600DF77BDACF1C808DF6EADDD8BF3E7003AF1D72050D8B102B3A ] uliagpkx        C:\Windows\system32\drivers\uliagpkx.sys
09:21:30.0700 0x0f94  uliagpkx - ok
09:21:30.0735 0x0f94  [ DC54A574663A895C8763AF0FA1FF7561, 09A3F3597E91CBEB2F38E96E75134312B60CAE5574B2AD4606C2D3E992AEDDFE ] umbus           C:\Windows\system32\drivers\umbus.sys
09:21:30.0738 0x0f94  umbus - ok
09:21:30.0766 0x0f94  [ B2E8E8CB557B156DA5493BBDDCC1474D, F547509A08C0679ACB843E20C9C0CF51BED1B06530BBC529DFB0944504564A43 ] UmPass          C:\Windows\system32\DRIVERS\umpass.sys
09:21:30.0767 0x0f94  UmPass - ok
09:21:30.0866 0x0f94  [ D47EC6A8E81633DD18D2436B19BAF6DE, 0FB461E2D5E0B75BB5958F6362F4880BFA4C36AD930542609BCAF574941AA7AE ] upnphost        C:\Windows\System32\upnphost.dll
09:21:30.0915 0x0f94  upnphost - ok
09:21:30.0981 0x0f94  [ C9E9D59C0099A9FF51697E9306A44240, 78D9A7A5E5742962B6978F475BF06CB32262F1D214699D3D40538476A58012A1 ] USBAAPL64       C:\Windows\system32\Drivers\usbaapl64.sys
09:21:30.0984 0x0f94  USBAAPL64 - ok
09:21:31.0058 0x0f94  [ DCA68B0943D6FA415F0C56C92158A83A, BEE5A5B33B22D1DF50B884D46D89FC3B8286EB16E38AD5A20F0A49E5C6766C57 ] usbccgp         C:\Windows\system32\DRIVERS\usbccgp.sys
09:21:31.0062 0x0f94  usbccgp - ok
09:21:31.0135 0x0f94  [ 80B0F7D5CCF86CEB5D402EAAF61FEC31, 140C62116A425DEAD25FE8D82DE283BC92C482A9F643658D512F9F67061F28AD ] usbcir          C:\Windows\system32\drivers\usbcir.sys
09:21:31.0138 0x0f94  usbcir - ok
09:21:31.0183 0x0f94  [ 18A85013A3E0F7E1755365D287443965, 811C5EDF38C765BCF71BCE25CB6626FF6988C3699F5EF1846240EA0052F34C33 ] usbehci         C:\Windows\system32\drivers\usbehci.sys
09:21:31.0186 0x0f94  usbehci - ok
09:21:31.0297 0x0f94  [ 8D1196CFBB223621F2C67D45710F25BA, B5D7AFE51833B24FC9576F3AED3D8A2B290E5846060E73F9FFFAC1890A8B6003 ] usbhub          C:\Windows\system32\DRIVERS\usbhub.sys
09:21:31.0308 0x0f94  usbhub - ok
09:21:31.0347 0x0f94  [ 765A92D428A8DB88B960DA5A8D6089DC, 56DE8A2ED58E53B202C399CA7BACB1551136303C2EE0AB426BDBBF880E3C542C ] usbohci         C:\Windows\system32\drivers\usbohci.sys
09:21:31.0358 0x0f94  usbohci - ok
09:21:31.0409 0x0f94  [ 73188F58FB384E75C4063D29413CEE3D, B485463933306036B1D490722CB1674DC85670753D79FA0EF7EBCA7BBAAD9F7C ] usbprint        C:\Windows\system32\DRIVERS\usbprint.sys
09:21:31.0411 0x0f94  usbprint - ok
09:21:31.0472 0x0f94  [ 9661DA76B4531B2DA272ECCE25A8AF24, FEA93254A21E71A7EB8AD35FCCAD2C1E41F7329EC33B1734F5B41307A34D8637 ] usbscan         C:\Windows\system32\drivers\usbscan.sys
09:21:31.0475 0x0f94  usbscan - ok
09:21:31.0516 0x0f94  [ FED648B01349A3C8395A5169DB5FB7D6, DC4D7594C24ADD076927B9347F1B50B91CF03A4ABDB284248D5711D9C19DEB96 ] USBSTOR         C:\Windows\system32\DRIVERS\USBSTOR.SYS
09:21:31.0520 0x0f94  USBSTOR - ok
09:21:31.0563 0x0f94  [ DD253AFC3BC6CBA412342DE60C3647F3, 146F8613F1057AC054DC3593E84BC52899DA27EA33B0E72ACFB78C3699ADCDE7 ] usbuhci         C:\Windows\system32\drivers\usbuhci.sys
09:21:31.0565 0x0f94  usbuhci - ok
09:21:31.0632 0x0f94  [ 1F775DA4CF1A3A1834207E975A72E9D7, 6D3DE5BD3EF3A76E997E5BAF900C51D25308F5A9682D1F62017F577A24095B90 ] usbvideo        C:\Windows\System32\Drivers\usbvideo.sys
09:21:31.0640 0x0f94  usbvideo - ok
09:21:31.0692 0x0f94  [ 7B28E2FBE75115660FAB31079C0A9F29, 81BB5A3E64B652A672A0782A88ABF6DDD729D38712D0706CE0FB9DE6D1EE1515 ] usb_rndisx      C:\Windows\system32\DRIVERS\usb8023x.sys
09:21:31.0694 0x0f94  usb_rndisx - ok
09:21:31.0723 0x0f94  [ EDBB23CBCF2CDF727D64FF9B51A6070E, 7202484C8E1BFB2AFD64D8C81668F3EDE0E3BF5EB27572877A0A7B337AE5AE42 ] UxSms           C:\Windows\System32\uxsms.dll
09:21:31.0734 0x0f94  UxSms - ok
09:21:31.0791 0x0f94  [ 17A6A9AAD04CCC6EE53290585BFC43AF, E4901D86C6470D21ABA0F6D9615A613E5C74A3FEF931E497F51B6AFA5715332B ] VaultSvc        C:\Windows\system32\lsass.exe
09:21:31.0796 0x0f94  VaultSvc - ok
09:21:31.0939 0x0f94  [ CDA796F41C2B64CEEC143B3A86904CFB, 8D9CACB74608C145A75424F4169E447A9EFA0EC3DD1412F097B56F86C0FC8E6E ] VBoxDrv         C:\Windows\system32\DRIVERS\VBoxDrv.sys
09:21:31.0949 0x0f94  VBoxDrv - ok
09:21:32.0006 0x0f94  [ 8CD776EB77695524CCE594AAC3A71569, AEF6F9B0E5F67E87819EB0E9FA5220EEF247A160A2BF8511CEDC8D12A9D4D941 ] VBoxNetAdp      C:\Windows\system32\DRIVERS\VBoxNetAdp.sys
09:21:32.0011 0x0f94  VBoxNetAdp - ok
09:21:32.0050 0x0f94  [ 39D80811EB7E87CD7F682A3124693CBA, C90A08CCE322FB01F5D8E7CE269CFC5B91E7A30FC4BCCEE047C636D651E5A59A ] VBoxNetFlt      C:\Windows\system32\DRIVERS\VBoxNetFlt.sys
09:21:32.0055 0x0f94  VBoxNetFlt - ok
09:21:32.0110 0x0f94  [ 3447B8DC38D7E53E8C4BBA8270B5B9E8, 175DE2B17CA7A1542A743DEDECD5D420C1B030B5726B9368D61E62DE86DF49E8 ] VBoxUSB         C:\Windows\system32\Drivers\VBoxUSB.sys
09:21:32.0114 0x0f94  VBoxUSB - ok
09:21:32.0166 0x0f94  [ 248C6ADD9467AF319D1882A5E8B12966, EE23FB426C6408354A1D212978528F5ECA8ADBB7441C5734F5675D7306235163 ] VBoxUSBMon      C:\Windows\system32\DRIVERS\VBoxUSBMon.sys
09:21:32.0170 0x0f94  VBoxUSBMon - ok
09:21:32.0213 0x0f94  [ C5C876CCFC083FF3B128F933823E87BD, 6FE0FBB6C3207E09300E0789E2168F76668D87C317FE9F263E733827ADCFBE0D ] vdrvroot        C:\Windows\system32\drivers\vdrvroot.sys
09:21:32.0215 0x0f94  vdrvroot - ok
09:21:32.0276 0x0f94  [ 8D6B481601D01A456E75C3210F1830BE, A2CEF483F4231367138EEF7E67FD5BE5364FC0780C44CA1368E36CE4AA3D0633 ] vds             C:\Windows\System32\vds.exe
09:21:32.0316 0x0f94  vds - ok
09:21:32.0353 0x0f94  [ DA4DA3F5E02943C2DC8C6ED875DE68DD, EDE604536DB78C512D68C92B26DA77C8811AC109D1F0A473673F0A82D15A2838 ] vga             C:\Windows\system32\DRIVERS\vgapnp.sys
09:21:32.0355 0x0f94  vga - ok
09:21:32.0373 0x0f94  [ 53E92A310193CB3C03BEA963DE7D9CFC, 45898604375B42EB1246C17A22D91C2440F11C746FF6459AD38027C1BC2E3125 ] VgaSave         C:\Windows\System32\drivers\vga.sys
09:21:32.0375 0x0f94  VgaSave - ok
09:21:32.0421 0x0f94  [ 2CE2DF28C83AEAF30084E1B1EB253CBB, D1946816A1CB89F825CBEA58F94A4C9D0CE7249355CD3915563F54054EE564BF ] vhdmp           C:\Windows\system32\drivers\vhdmp.sys
09:21:32.0427 0x0f94  vhdmp - ok
09:21:32.0500 0x0f94  [ E5689D93FFE4E5D66C0178761240DD54, 6D35CED80681B12AAF63BFA0DA1C386E71D3838839B68A686990AA8031949D27 ] viaide          C:\Windows\system32\drivers\viaide.sys
09:21:32.0503 0x0f94  viaide - ok
09:21:32.0527 0x0f94  [ D2AAFD421940F640B407AEFAAEBD91B0, 31EF342A60AF04F4108759A71F8FB7B8C8819216CF3D16A95B2BA0E33A8A9161 ] volmgr          C:\Windows\system32\drivers\volmgr.sys
09:21:32.0529 0x0f94  volmgr - ok
09:21:32.0637 0x0f94  [ A255814907C89BE58B79EF2F189B843B, 463DB771851352185B6AC323BD93B9084D47291E53C1F7B628B65D6918B2E28F ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
09:21:32.0648 0x0f94  volmgrx - ok
09:21:32.0686 0x0f94  [ 0D08D2F3B3FF84E433346669B5E0F639, 3D6716CEC95B8861A7CC5778E91F310528DC6BEE0E57A3C8757FC675154EBDEC ] volsnap         C:\Windows\system32\drivers\volsnap.sys
09:21:32.0694 0x0f94  volsnap - ok
09:21:32.0737 0x0f94  [ 5E2016EA6EBACA03C04FEAC5F330D997, 53106EB877459FE55A459111F7AB0EE320BB3B4C954D3DB6FA1642396001F2AC ] vsmraid         C:\Windows\system32\DRIVERS\vsmraid.sys
09:21:32.0742 0x0f94  vsmraid - ok
09:21:33.0111 0x0f94  [ B60BA0BC31B0CB414593E169F6F21CC2, 47B801E623254CF0202B3591CB5C019CABFB52F123C7D47E29D19B32F1F2B915 ] VSS             C:\Windows\system32\vssvc.exe
09:21:33.0160 0x0f94  VSS - ok
09:21:33.0228 0x0f94  [ 36D4720B72B5C5D9CB2B9C29E9DF67A1, 3254523C85C70EBA2DBAC05DB2DBA89EDF8E9195F390F7C21F96458FB6B2E3D7 ] vwifibus        C:\Windows\system32\DRIVERS\vwifibus.sys
09:21:33.0230 0x0f94  vwifibus - ok
09:21:33.0253 0x0f94  [ 6A3D66263414FF0D6FA754C646612F3F, 30F6BA594B0D3B94113064015A16D97811CD989DF1715CCE21CEAB9894C1B4FB ] vwififlt        C:\Windows\system32\DRIVERS\vwififlt.sys
09:21:33.0256 0x0f94  vwififlt - ok
09:21:33.0292 0x0f94  [ 6A638FC4BFDDC4D9B186C28C91BD1A01, 5521F1DC515586777EC4837E0AEAA3E613CC178AF1074031C4D0D0C695A93168 ] vwifimp         C:\Windows\system32\DRIVERS\vwifimp.sys
09:21:33.0294 0x0f94  vwifimp - ok
09:21:33.0336 0x0f94  [ 1C9D80CC3849B3788048078C26486E1A, 34A89F31E53F6B6C209B286F580CC2257AE6D057E4E20741F241C9C167947962 ] W32Time         C:\Windows\system32\w32time.dll
09:21:33.0366 0x0f94  W32Time - ok
09:21:33.0451 0x0f94  [ A212A4F5D2BB731F9CC6E2C546A0B464, 32828D9A153519D3521F89419DCE91ABB25AD0601A525ED8947C1FA2434DF608 ] WacHidRouter    C:\Windows\system32\DRIVERS\wachidrouter.sys
09:21:33.0455 0x0f94  WacHidRouter - ok
09:21:33.0496 0x0f94  [ 4E9440F4F152A7B944CB1663D3935A3E, 8FE04EBD3BC612EE943A21A3E56F37E5C9B578CDACA6044048181DAD81816D53 ] WacomPen        C:\Windows\system32\DRIVERS\wacompen.sys
09:21:33.0498 0x0f94  WacomPen - ok
09:21:33.0585 0x0f94  [ E722E0C28881186D1B7E09A66C4D4DA5, 8BAF9D96706EE4251F20E850ECDF4201ADB04C9A8E31FD5C669F75E2299A0414 ] wacomrouterfilter C:\Windows\system32\DRIVERS\wacomrouterfilter.sys
09:21:33.0587 0x0f94  wacomrouterfilter - ok
09:21:33.0642 0x0f94  [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] WANARP          C:\Windows\system32\DRIVERS\wanarp.sys
09:21:33.0646 0x0f94  WANARP - ok
09:21:33.0673 0x0f94  [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] Wanarpv6        C:\Windows\system32\DRIVERS\wanarp.sys
09:21:33.0677 0x0f94  Wanarpv6 - ok
09:21:33.0815 0x0f94  [ 3CEC96DE223E49EAAE3651FCF8FAEA6C, 4150DAB33E8D61076F1D4767BCAFC9B4ECCCCBD58FD4FB3CFE5B8D27DCDCAB61 ] WatAdminSvc     C:\Windows\system32\Wat\WatAdminSvc.exe
09:21:33.0926 0x0f94  WatAdminSvc - ok
09:21:34.0326 0x0f94  [ 78F4E7F5C56CB9716238EB57DA4B6A75, 46A4E78CE5F2A4B26F4E9C3FF04A99D9B727A82AC2E390A82A1611C3F6E0C9AF ] wbengine        C:\Windows\system32\wbengine.exe
09:21:34.0402 0x0f94  wbengine - ok
09:21:34.0461 0x0f94  [ 3AA101E8EDAB2DB4131333F4325C76A3, 4F7BD3DA5E58B18BFF106CFF7B45E75FD13EE556D433C695BA23EC80827E49DE ] WbioSrvc        C:\Windows\System32\wbiosrvc.dll
09:21:34.0482 0x0f94  WbioSrvc - ok
09:21:34.0545 0x0f94  [ 7368A2AFD46E5A4481D1DE9D14848EDD, 8039C478FC2D9F095F5883A4FA47F9E6EDF57CC88A4AA74F07C88445F90DED57 ] wcncsvc         C:\Windows\System32\wcncsvc.dll
09:21:34.0591 0x0f94  wcncsvc - ok
09:21:34.0616 0x0f94  [ 20F7441334B18CEE52027661DF4A6129, 7B8E0247234B740FED2BE9B833E9CE8DD7453340123AB43F6B495A7E6A27B0DD ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
09:21:34.0630 0x0f94  WcsPlugInService - ok
09:21:34.0664 0x0f94  [ 72889E16FF12BA0F235467D6091B17DC, F2FD0BBD075E33608D93F350D216F97442AB89ABD540513C2D568C78096E12A8 ] Wd              C:\Windows\system32\DRIVERS\wd.sys
09:21:34.0666 0x0f94  Wd - ok
09:21:34.0974 0x0f94  [ D1CBAF2BA27E8CD3B696A47FDC2C81A5, F772B0573EC57DFF5D4DEDC34665DC0AAC2B915A7DAAEBA9C8925A979341CC8B ] WDBackup        C:\Program Files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe
09:21:35.0003 0x0f94  WDBackup - ok
09:21:35.0055 0x0f94  [ D0335A55E5C3F812548E18300C2ACB62, 7EF7C3A21E97197E1A6D2956D0F5A7C23F2D590C9709708394426031634990A5 ] WDC_SAM         C:\Windows\system32\DRIVERS\wdcsam64.sys
09:21:35.0057 0x0f94  WDC_SAM - ok
09:21:35.0156 0x0f94  [ 2E742EAD7E1B290CED554E30F69F5C1E, D146312C3745A5D3951F8F2F1239DB180A2E082255F2F5934DB8836FA77C50EF ] WDDriveService  C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe
09:21:35.0166 0x0f94  WDDriveService - ok
09:21:35.0248 0x0f94  [ E2C933EDBC389386EBE6D2BA953F43D8, AF1DEADD5F1267CCEBD226E8EEB971D1946EA6A5A9645A36F5D111F758AF2F07 ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
09:21:35.0286 0x0f94  Wdf01000 - ok
09:21:35.0375 0x0f94  [ C6F7473B55510F0B93961DA03D8E3B38, 4BAB9274DED8F7AC4A52B8739F501323FFFA0367CAA24BFAFDB5523812E0CE39 ] WdiServiceHost  C:\Windows\system32\wdi.dll
09:21:35.0388 0x0f94  WdiServiceHost - ok
09:21:35.0416 0x0f94  [ C6F7473B55510F0B93961DA03D8E3B38, 4BAB9274DED8F7AC4A52B8739F501323FFFA0367CAA24BFAFDB5523812E0CE39 ] WdiSystemHost   C:\Windows\system32\wdi.dll
09:21:35.0423 0x0f94  WdiSystemHost - ok
09:21:35.0492 0x0f94  [ FE31110E39A0B11ABAE1BA43A2DC94F9, 5C520E0FB737A2113FB89F23FB1D36916980BBBD020638EEB04144C10A9D9522 ] wdkmd           C:\Windows\system32\DRIVERS\WDKMD.sys
09:21:35.0494 0x0f94  wdkmd - ok
09:21:35.0591 0x0f94  [ 0EB0E5D22B1760F2DBCE632F2DD7A54D, B8A4CC62F88768947FB0A161CF9564DB28FD9C1C037B5475DF192982DE035C22 ] WebClient       C:\Windows\System32\webclnt.dll
09:21:35.0628 0x0f94  WebClient - ok
09:21:35.0697 0x0f94  [ C749025A679C5103E575E3B48E092C43, B71171D07EE7AB085A24BF3A1072FF2CE7EA021AAE695F6A90640E6EE8EB55C1 ] Wecsvc          C:\Windows\system32\wecsvc.dll
09:21:35.0724 0x0f94  Wecsvc - ok
09:21:35.0764 0x0f94  [ 7E591867422DC788B9E5BD337A669A08, 484E6BCCDF7ADCE9A1AACAD1BC7C7D7694B9E40FA90D94B14D80C607784F6C75 ] wercplsupport   C:\Windows\System32\wercplsupport.dll
09:21:35.0774 0x0f94  wercplsupport - ok
09:21:35.0810 0x0f94  [ 6D137963730144698CBD10F202E9F251, A9F522A125158D94F540544CCD4DBF47B9DCE2EA878C33675AFE40F80E8F4979 ] WerSvc          C:\Windows\System32\WerSvc.dll
09:21:35.0817 0x0f94  WerSvc - ok
09:21:35.0856 0x0f94  [ 611B23304BF067451A9FDEE01FBDD725, 0AF2734B978165FC6FD22B64862132CCE32528A21C698A49D176129446E099C8 ] WfpLwf          C:\Windows\system32\DRIVERS\wfplwf.sys
09:21:35.0858 0x0f94  WfpLwf - ok
09:21:35.0930 0x0f94  [ 52DED146E4797E6CCF94799E8E22BB2A, 57A29260D81AA3AD3F8C29E9CFA7CE3970D7A8BF673ADD9B256EE76C7DEC080E ] WimFltr         C:\Windows\system32\DRIVERS\wimfltr.sys
09:21:35.0935 0x0f94  WimFltr - ok
09:21:35.0969 0x0f94  [ 05ECAEC3E4529A7153B3136CEB49F0EC, 9995CB2CEC70A633EA33CBB0DEAD2BB28CB67132B41E9444BDAB9E75744C9A50 ] WIMMount        C:\Windows\system32\drivers\wimmount.sys
09:21:35.0971 0x0f94  WIMMount - ok
09:21:36.0009 0x0f94  WinDefend - ok
09:21:36.0097 0x0f94  [ C0B0103A7CF640D77FE9337AE5A6EAA8, 68636CBEB29F97CE1A770B5BD17F6E265B0AA83F3707EA9AAA99BCE7D45E196D ] WinDriver6      C:\Windows\system32\drivers\windrvr6.sys
09:21:36.0107 0x0f94  WinDriver6 - ok
09:21:36.0129 0x0f94  WinHttpAutoProxySvc - ok
09:21:36.0218 0x0f94  [ 19B07E7E8915D701225DA41CB3877306, D6555E8D276DBB11358246E0FE215F76F1FB358791C76B88D82C2A66A42DA19F ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
09:21:36.0237 0x0f94  Winmgmt - ok
09:21:36.0332 0x0f94  [ D929ABD465A2DED963DA8B30946A8D5C, DE8DBFB01C11D2AE903CBD6A974D6F995E9813CE2D6484B7DA06EAE4C545842A ] WinRM           C:\Windows\system32\WsmSvc.dll
09:21:36.0441 0x0f94  WinRM - ok
09:21:36.0583 0x0f94  [ FE88B288356E7B47B74B13372ADD906D, A16B166F6BB32EF9D2A142F27B9EC54CBC7B3AC915799783CF4C40E525BC9E03 ] WinUsb          C:\Windows\system32\drivers\WinUsb.sys
09:21:36.0585 0x0f94  WinUsb - ok
09:21:36.0734 0x0f94  [ 4FADA86E62F18A1B2F42BA18AE24E6AA, CE1683386886BF34862681A46199EA7E7FB4232A186047DA7FBD8EC240AF6726 ] Wlansvc         C:\Windows\System32\wlansvc.dll
09:21:36.0822 0x0f94  Wlansvc - ok
09:21:37.0161 0x0f94  [ 357CABBF155AFD1D3926E62539D2A3A7, C43CFF84E7D930B4999DC061AB0766B57AAD7540B3E6EE54605B10ECE90825F5 ] wlidsvc         C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
09:21:37.0248 0x0f94  wlidsvc - ok
09:21:37.0350 0x0f94  [ F6FF8944478594D0E414D3F048F0D778, 6F75E0AE6127B33A92A88E59D4B048FD4C15F997807BE7BF0EFE76F95235B1D9 ] WmiAcpi         C:\Windows\system32\drivers\wmiacpi.sys
09:21:37.0352 0x0f94  WmiAcpi - ok
09:21:37.0408 0x0f94  [ 38B84C94C5A8AF291ADFEA478AE54F93, 1AC267AC73670BEA5F3785C9AD9DB146F8E993A862C843742B21FDB90D102B2A ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
09:21:37.0422 0x0f94  wmiApSrv - ok
09:21:37.0450 0x0f94  WMPNetworkSvc - ok
09:21:37.0487 0x0f94  [ 96C6E7100D724C69FCF9E7BF590D1DCA, 2E63C9B0893B4FC03B7A71BAEA6202D3D3DB1B52F3643467829B5A573FD7655B ] WPCSvc          C:\Windows\System32\wpcsvc.dll
09:21:37.0498 0x0f94  WPCSvc - ok
09:21:37.0552 0x0f94  [ 93221146D4EBBF314C29B23CD6CC391D, C0750858A65BF51E210CD244C825C121D67E025CD2D2455139991AAC289A90FE ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
09:21:37.0566 0x0f94  WPDBusEnum - ok
09:21:37.0621 0x0f94  [ 6BCC1D7D2FD2453957C5479A32364E52, E48554D31FBDCF8F985C1C72524CAA9106F5B7CC2B79064F8F5E2562D517F090 ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
09:21:37.0622 0x0f94  ws2ifsl - ok
09:21:37.0657 0x0f94  [ E8B1FE6669397D1772D8196DF0E57A9E, 39FE0819360719F756BD31A1884A0508A1E2371ACC723E25E005CBEC0A7B02FA ] wscsvc          C:\Windows\System32\wscsvc.dll
09:21:37.0664 0x0f94  wscsvc - ok
09:21:37.0725 0x0f94  [ 8D918B1DB190A4D9B1753A66FA8C96E8, DB7D2714DC04D2D6999A207D7399A5647C8653E5A1AD80856A65C5B6065AEDFE ] WSDPrintDevice  C:\Windows\system32\DRIVERS\WSDPrint.sys
09:21:37.0727 0x0f94  WSDPrintDevice - ok
09:21:37.0744 0x0f94  WSearch - ok
09:21:37.0887 0x0f94  [ 539D52A1CB4CC3BFB9B6CAD7883B8ECA, 3CAC8F755F85F06C6FFA8C5328943DC55F410EAAA64F0E4241C3E7F60A48D4A9 ] WTabletServiceCon C:\Program Files\Tablet\Pen\WTabletServiceCon.exe
09:21:37.0903 0x0f94  WTabletServiceCon - ok
09:21:38.0472 0x0f94  [ 14882A15F5CE7B8EADC8E7F54FD5B53B, 75CE9845C6EE66B070EA3D11F5B49935B9D0A607DCC93D3105130F3987E39443 ] wuauserv        C:\Windows\system32\wuaueng.dll
09:21:38.0588 0x0f94  wuauserv - ok
09:21:38.0680 0x0f94  [ AB886378EEB55C6C75B4F2D14B6C869F, D6C4602EB8F291DADEDF3CD211013D4AC752DDE7E799C2D8D74AA4F5477CAED6 ] WudfPf          C:\Windows\system32\drivers\WudfPf.sys
09:21:38.0693 0x0f94  WudfPf - ok
09:21:38.0750 0x0f94  [ DDA4CAF29D8C0A297F886BFE561E6659, 94E5DD649B5D86FA1A7C7D30FCF9644D0EE048D312E626111458ADF66BFBE978 ] WUDFRd          C:\Windows\system32\drivers\WUDFRd.sys
09:21:38.0756 0x0f94  WUDFRd - ok
09:21:38.0803 0x0f94  [ B20F051B03A966392364C83F009F7D17, 88ECEB55AE91F58F592B96EBC10B572747D5A2F9B7629E8F371761E4F7408A65 ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
09:21:38.0815 0x0f94  wudfsvc - ok
09:21:38.0920 0x0f94  [ 04F82965C09CBDF646B487E145060301, 2CD8533EDBE24C3E42EB7550E20F8A2EB9E5E345B165DEF543163A6BC1FDD18B ] WwanSvc         C:\Windows\System32\wwansvc.dll
09:21:38.0950 0x0f94  WwanSvc - ok
09:21:39.0431 0x0f94  [ 5BCB1F6CB749B6826BE1C0F16FF2F600, EF36100ACC0591EB4E04D52E57423E43E331B5D5BA8DFF5854285198931CD3EE ] ZeroConfigService C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
09:21:39.0512 0x0f94  ZeroConfigService - ok
09:21:39.0570 0x0f94  [ 741D9BBFE2A392031157A39D921CE052, 3DA6FFFF6E7FC30F36105D7BDFC7F0E8C414535E4FA3FCE31F3A073BC8B25EC4 ] zghsnmea        C:\Windows\system32\DRIVERS\zghsnmea.sys
09:21:39.0574 0x0f94  zghsnmea - ok
09:21:39.0888 0x0f94  ================ Scan global ===============================
09:21:39.0912 0x0f94  [ BA0CD8C393E8C9F83354106093832C7B, 18D8A4780A2BAA6CEF7FBBBDA0EF6BF2DADF146E1E578A618DD5859E8ADBF1A8 ] C:\Windows\system32\basesrv.dll
09:21:39.0955 0x0f94  [ 2313AF8D5A9CEB4A55400A01DD311A95, A5779FE967EA2703E86BEDC32CD736617AF278C72048228F038DFC628E1E0AA2 ] C:\Windows\system32\winsrv.dll
09:21:39.0989 0x0f94  [ 2313AF8D5A9CEB4A55400A01DD311A95, A5779FE967EA2703E86BEDC32CD736617AF278C72048228F038DFC628E1E0AA2 ] C:\Windows\system32\winsrv.dll
09:21:40.0054 0x0f94  [ D6160F9D869BA3AF0B787F971DB56368, 0033E6212DD8683E4EE611B290931FDB227B4795F0B17C309DC686C696790529 ] C:\Windows\system32\sxssrv.dll
09:21:40.0163 0x0f94  [ 71C85477DF9347FE8E7BC55768473FCA, A86D6A6D1F5A0EFCD649792A06F3AE9B37158D48493D2ECA7F52DCC1CB9B6536 ] C:\Windows\system32\services.exe
09:21:40.0175 0x0f94  [ Global ] - ok
09:21:40.0176 0x0f94  ================ Scan MBR ==================================
09:21:40.0194 0x0f94  [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
09:21:40.0724 0x0f94  \Device\Harddisk0\DR0 - ok
09:21:41.0036 0x0f94  [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk1\DR1
09:21:41.0103 0x0f94  \Device\Harddisk1\DR1 - ok
09:21:41.0107 0x0f94  [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk2\DR2
09:21:41.0114 0x0f94  \Device\Harddisk2\DR2 - ok
09:21:41.0114 0x0f94  ================ Scan VBR ==================================
09:21:41.0131 0x0f94  [ A66426559C447ED5E04EB0823408A6FA ] \Device\Harddisk0\DR0\Partition1
09:21:41.0134 0x0f94  \Device\Harddisk0\DR0\Partition1 - ok
09:21:41.0150 0x0f94  [ F119045058F952EE2473CF34A347F453 ] \Device\Harddisk0\DR0\Partition2
09:21:41.0152 0x0f94  \Device\Harddisk0\DR0\Partition2 - ok
09:21:41.0154 0x0f94  [ 96649CC40FAE72C6AA85F01CBE8906D3 ] \Device\Harddisk1\DR1\Partition1
09:21:41.0157 0x0f94  \Device\Harddisk1\DR1\Partition1 - ok
09:21:41.0181 0x0f94  [ 1CD1FBA784ACAA341F66259F37064914 ] \Device\Harddisk1\DR1\Partition2
09:21:41.0184 0x0f94  \Device\Harddisk1\DR1\Partition2 - ok
09:21:41.0189 0x0f94  [ F0F58B385A84D1DF39C14D10FBB42C20 ] \Device\Harddisk2\DR2\Partition1
09:21:41.0913 0x0f94  \Device\Harddisk2\DR2\Partition1 - ok
09:21:41.0913 0x0f94  ================ Scan generic autorun ======================
09:21:42.0086 0x0f94  [ 4F011F572DAC7057DF9D6E9064AA77E8, CC05441572740A9996525C3B9382191022E4F918C45C09EC0DE4C11215F81008 ] C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
09:21:42.0145 0x0f94  NvBackend - ok
09:21:42.0148 0x0f94  ETDWare - ok
09:21:42.0151 0x0f94  IntelTBRunOnce - ok
09:21:42.0815 0x0f94  [ B5A4EBA9487F08BECC843A87422B8052, EA905E9169CE8C934F2D6F7E319A75E31EA9E1840CC455298BEB3F92E22FCAAE ] C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
09:21:42.0908 0x0f94  SDTray - ok
09:21:43.0009 0x0f94  [ 66177D4C99FD8B578C7C56DE445E4D5D, 003D0254D7C693A72DE84CB76858F8D67D9FD62206F1B56DF7F5D0FA834C3BA7 ] C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
09:21:43.0026 0x0f94  avgnt - ok
09:21:43.0080 0x0f94  [ 5AEBF6FA9805C9101220AA4FB4FA17E7, A9B2FC41380211A6C44E839A95676A5BA868CEEBB56D83A780230434C2A20836 ] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
09:21:43.0083 0x0f94  HControlUser - ok
09:21:43.0176 0x0f94  [ E20D1C0E5231C91E9341E74839867E85, D6953EC9858BB507767EA3B7DF8452F979BE3260B27DC930DDD3BD2F764AA5DF ] C:\Program Files\Fresco Logic Inc\Fresco Logic USB3.0 Host Controller\host\FLxHCIm.exe
09:21:43.0178 0x0f94  FLxHCIm - ok
09:21:43.0474 0x0f94  [ 0ADFE5BC5486935E79FEFA545CB8599B, 4D3FB3734321AD7C505E1A80977E9DF73EA52CD03467629E1DF3DA1A7B0F9147 ] C:\Program Files (x86)\SPEEDLINK\KUDOS RS Gaming Mouse\Gaming Mouse.exe
09:21:43.0515 0x0f94  SPEEDLINK KUDOS - ok
09:21:44.0060 0x0f94  [ 65C6AA484AD2287D20541C7735989437, 1842787640391F4A4CD9ED0A531298A61F4B2FB09BEC98FEE256313AFB458EDB ] C:\Program Files (x86)\Avast\AvastUI.exe
09:21:44.0238 0x0f94  AvastUI.exe - ok
09:21:44.0309 0x0f94  [ 79A3B950988F8D2B81906D0C0473158B, 7D9EDB4F9A4800D31C103CF2BBC93C0F5F31888E93E899C43EC5984B4807C3D8 ] C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
09:21:44.0313 0x0f94  ATKMEDIA - ok
09:21:44.0665 0x0f94  [ FD22B00049F775E952371E9C3DAC631B, CBC3BF5DBF3E0D5EA4095F9FE90D8688D43BEF352B657D5EF5D843267ED35388 ] C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
09:21:44.0733 0x0f94  Wireless Console 3 - ok
09:21:44.0769 0x0f94  [ 845EB283583BD3C89F09636A10114EF3, BCB3002B867052FB381B1E44D31E381200751E1AD3F991EB4233B73E3E034A0E ] C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
09:21:44.0774 0x0f94  Avira Systray - ok
09:21:45.0144 0x0f94  [ 38E330A28E034CE632F218AD2AD6452B, A0394688DD698A315EB1A40B0278B660D6EBB47E150A760649204945B703F640 ] C:\Program Files (x86)\Trend Micro\RUBotted\RUBottedGUI.exe
09:21:45.0206 0x0f94  Trend Micro RUBotted V2.0 Beta - ok
09:21:45.0661 0x0f94  [ F4A755E3A99F4F2324FC2138D30F01B4, EFA955082404977B13754E0DA9CAFF304CA9B87C8B0F2C7166A55ECDF1482DB4 ] C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
09:21:45.0769 0x0f94  LogMeIn Hamachi Ui - ok
09:21:45.0960 0x0f94  [ 3E04F1E482357B1FC8B088197C3D9FF8, 85524ADDC27ADC831EBBD24E079B412CFDC69E5F594BD153319087665A28D546 ] C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
09:21:46.0006 0x0f94  Adobe ARM - ok
09:21:46.0033 0x0f94  [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe
09:21:46.0052 0x0f94  mctadmin - ok
09:21:46.0239 0x0f94  [ 683C9DF0582D8EEFAA90CE1514019BC1, 62C875888029BF32C19656B13C5504016209E4553B0B93FAE21F3930149EE9CA ] C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
09:21:46.0351 0x0f94  DAEMON Tools Lite - ok
09:21:46.0493 0x0f94  [ E3BF29CED96790CDAAFA981FFDDF53A3, 76CB27EF7B27E5636EDA9D95229519B2A2870729A0BB694F1FD11CD602BAC4DC ] C:\Program Files\Windows Sidebar\sidebar.exe
09:21:46.0579 0x0f94  Sidebar - ok
09:21:46.0666 0x0f94  [ 0A7E2E2B10CE1F3530148E6824E79C53, CA1C3395046B7AEE4731A5D94B7BF55417B82255860ECD7FBB21788FE4ADE5B4 ] C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIEFE.EXE
09:21:46.0682 0x0f94  EPSON Stylus SX200 Series - ok
09:21:46.0833 0x0f94  [ 1B2B3215F4B6B735813844AC1769E239, FCC4D5E52329531904637C19F0BA6EBD857CDFB814D3DCD799062D049FF2E485 ] C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe
09:21:46.0930 0x0f94  Spybot-S&D Cleaning - ok
09:21:47.0004 0x0f94  [ E3BF29CED96790CDAAFA981FFDDF53A3, 76CB27EF7B27E5636EDA9D95229519B2A2870729A0BB694F1FD11CD602BAC4DC ] C:\Program Files\Windows Sidebar\sidebar.exe
09:21:47.0045 0x0f94  Sidebar - ok
09:21:47.0303 0x0f94  [ 683C9DF0582D8EEFAA90CE1514019BC1, 62C875888029BF32C19656B13C5504016209E4553B0B93FAE21F3930149EE9CA ] C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
09:21:47.0389 0x0f94  DAEMON Tools Lite - ok
09:21:47.0416 0x0f94  [ 0A7E2E2B10CE1F3530148E6824E79C53, CA1C3395046B7AEE4731A5D94B7BF55417B82255860ECD7FBB21788FE4ADE5B4 ] C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIEFE.EXE
09:21:47.0423 0x0f94  EPSON Stylus SX200 Series - ok
09:21:47.0608 0x0f94  [ 1B2B3215F4B6B735813844AC1769E239, FCC4D5E52329531904637C19F0BA6EBD857CDFB814D3DCD799062D049FF2E485 ] C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe
09:21:47.0697 0x0f94  Spybot-S&D Cleaning - ok
09:21:47.0791 0x0f94  [ E3BF29CED96790CDAAFA981FFDDF53A3, 76CB27EF7B27E5636EDA9D95229519B2A2870729A0BB694F1FD11CD602BAC4DC ] C:\Program Files\Windows Sidebar\sidebar.exe
09:21:47.0825 0x0f94  Sidebar - ok
09:21:48.0271 0x0f94  [ 683C9DF0582D8EEFAA90CE1514019BC1, 62C875888029BF32C19656B13C5504016209E4553B0B93FAE21F3930149EE9CA ] C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
09:21:48.0356 0x0f94  DAEMON Tools Lite - ok
09:21:48.0395 0x0f94  [ 0A7E2E2B10CE1F3530148E6824E79C53, CA1C3395046B7AEE4731A5D94B7BF55417B82255860ECD7FBB21788FE4ADE5B4 ] C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIEFE.EXE
09:21:48.0401 0x0f94  EPSON Stylus SX200 Series - ok
09:21:48.0638 0x0f94  [ 1B2B3215F4B6B735813844AC1769E239, FCC4D5E52329531904637C19F0BA6EBD857CDFB814D3DCD799062D049FF2E485 ] C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe
09:21:48.0722 0x0f94  Spybot-S&D Cleaning - ok
09:21:48.0727 0x0f94  Waiting for KSN requests completion. In queue: 185
09:21:49.0727 0x0f94  Waiting for KSN requests completion. In queue: 185
09:21:50.0727 0x0f94  Waiting for KSN requests completion. In queue: 185
09:21:51.0727 0x0f94  Waiting for KSN requests completion. In queue: 185
09:21:52.0727 0x0f94  Waiting for KSN requests completion. In queue: 185
09:21:53.0727 0x0f94  Waiting for KSN requests completion. In queue: 185
09:21:54.0727 0x0f94  Waiting for KSN requests completion. In queue: 185
09:21:55.0727 0x0f94  Waiting for KSN requests completion. In queue: 185
09:21:56.0727 0x0f94  Waiting for KSN requests completion. In queue: 185
09:21:57.0727 0x0f94  Waiting for KSN requests completion. In queue: 185
09:21:58.0727 0x0f94  Waiting for KSN requests completion. In queue: 185
09:21:59.0727 0x0f94  Waiting for KSN requests completion. In queue: 185
09:22:00.0727 0x0f94  Waiting for KSN requests completion. In queue: 185
09:22:01.0727 0x0f94  Waiting for KSN requests completion. In queue: 185
09:22:02.0728 0x0f94  Waiting for KSN requests completion. In queue: 185
09:22:03.0766 0x0f94  AV detected via SS2: Avira Antivirus, C:\Program Files (x86)\Avira\AntiVir Desktop\wsctool.exe ( 15.0.10.414 ), 0x41000 ( enabled : updated )
09:22:03.0793 0x0f94  AV detected via SS2: avast! Antivirus, C:\Program Files (x86)\Avast\VisthAux.exe ( 10.2.2218.942 ), 0x41000 ( enabled : updated )
09:22:03.0812 0x0f94  Win FW state via NFP2: enabled
09:22:06.0705 0x0f94  ============================================================
09:22:06.0705 0x0f94  Scan finished
09:22:06.0705 0x0f94  ============================================================
09:22:06.0719 0x1570  Detected object count: 1
09:22:06.0720 0x1570  Actual detected object count: 1
09:22:26.0234 0x1570  BS_DEF ( ForgedFile.Multi.Generic ) - skipped by user
09:22:26.0234 0x1570  BS_DEF ( ForgedFile.Multi.Generic ) - User select action: Skip
 


Edited by Icomenid, 06 June 2015 - 02:24 AM.


#5 Icomenid

Icomenid
  • Topic Starter

  • Members
  • 8 posts
  • OFFLINE
  •  
  • Local time:01:39 PM

Posted 06 June 2015 - 02:31 AM

AdwCleaner report:

 

# AdwCleaner v4.206 - Bericht erstellt 06/06/2015 um 09:26:13
# Aktualisiert 01/06/2015 von Xplode
# Datenbank : 2015-06-05.1 [Server]
# Betriebssystem : Windows 7 Home Premium Service Pack 1 (x64)
# Benutzername : Domenico - LUNA_REDEMPTION
# Gestarted von : C:\Users\Domenico\Downloads\AdwCleaner.exe
# Option : Suchlauf

***** [ Dienste ] *****


***** [ Dateien / Ordner ] *****


***** [ Geplante Tasks ] *****


***** [ Verknüpfungen ] *****


***** [ Registrierungsdatenbank ] *****


***** [ Internetbrowser ] *****

-\\ Internet Explorer v11.0.9600.17801


-\\ Mozilla Firefox v38.0.5 (x86 de)


-\\ Google Chrome v36.0.1985.143


-\\ Opera v29.0.1795.60


*************************

AdwCleaner[R0].txt - [6999 Bytes] - [13/02/2014 21:11:42]
AdwCleaner[R1].txt - [1224 Bytes] - [05/06/2015 00:33:16]
AdwCleaner[R2].txt - [850 Bytes] - [06/06/2015 09:26:13]
AdwCleaner[S0].txt - [6969 Bytes] - [13/02/2014 21:17:32]
AdwCleaner[S1].txt - [1223 Bytes] - [05/06/2015 00:41:07]

########## EOF - C:\AdwCleaner\AdwCleaner[R2].txt - [1026 Bytes] ##########
 



#6 Icomenid

Icomenid
  • Topic Starter

  • Members
  • 8 posts
  • OFFLINE
  •  
  • Local time:01:39 PM

Posted 06 June 2015 - 03:23 AM

JRT report:

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.8.8 (06.03.2015:1)
OS: Windows 7 Home Premium x64
Ran by Domenico on 06.06.2015 at  9:34:35,92
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Tasks



~~~ Registry Values



~~~ Registry Keys



~~~ Files



~~~ Folders



~~~ Chrome


[C:\Users\Domenico\appdata\local\Google\Chrome\User Data\Default\Preferences] - default search provider reset

[C:\Users\Domenico\appdata\local\Google\Chrome\User Data\Default\Preferences] - Extensions Deleted:

[C:\Users\Domenico\appdata\local\Google\Chrome\User Data\Default\Secure Preferences] - default search provider reset

[C:\Users\Domenico\appdata\local\Google\Chrome\User Data\Default\Secure Preferences] - Extensions Deleted:





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 06.06.2015 at 10:15:10,88
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 



#7 Icomenid

Icomenid
  • Topic Starter

  • Members
  • 8 posts
  • OFFLINE
  •  
  • Local time:01:39 PM

Posted 06 June 2015 - 01:31 PM

ESET scan has been running for about 8 hours, then suddenly disappeared. I have no clue where to find that report, nor if it has finished scanning.

It said, right before vanishing, that it had found 9 threats, being Ask Toolbar, Google Toolbar and OpenCandy, several times each.

I am going to start the MWB scan right now.

 

Should I restart EST scan?

 

Fast edit: Found this:

ESETSmartInstaller@High as downloader log:
all ok
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# EOSSerial=b5056fe0dc7455418ef06eaf8c98ad86
# end=init
# utc_time=2015-06-06 07:32:42
# local_time=2015-06-06 09:32:42 (+0100, Mitteleuropäische Sommerzeit)
# country="Germany"
# osver=6.1.7601 NT Service Pack 1
Update Init
Update Download
esets_scanner_update returned -1 esets_gle=41221
Update Finalize
Updated modules version: 0
Old modules - leave modules
Update Init
Update Download
esets_scanner_update returned -1 esets_gle=37126
Update Finalize
Updated modules version: 0
Old modules - delete modules
Update Init
Update Download
Update Finalize
Updated modules version: 24197
ESETSmartInstaller@High as downloader log:
all ok
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# EOSSerial=b5056fe0dc7455418ef06eaf8c98ad86
# end=init
# utc_time=2015-06-06 08:19:22
# local_time=2015-06-06 10:19:22 (+0100, Mitteleuropäische Sommerzeit)
# country="Germany"
# osver=6.1.7601 NT Service Pack 1
Update Init
Update Download
esets_scanner_update returned -1 esets_gle=53251
Update Finalize
Updated modules version: 24197
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# EOSSerial=b5056fe0dc7455418ef06eaf8c98ad86
# end=updated
# utc_time=2015-06-06 08:19:45
# local_time=2015-06-06 10:19:45 (+0100, Mitteleuropäische Sommerzeit)
# country="Germany"
# osver=6.1.7601 NT Service Pack 1
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# EOSSerial=b5056fe0dc7455418ef06eaf8c98ad86
# end=restart
# utc_time=2015-06-06 05:41:02
# local_time=2015-06-06 07:41:02 (+0100, Mitteleuropäische Sommerzeit)
# country="Germany"
# osver=6.1.7601 NT Service Pack 1
# compatibility_mode_1='avast! Antivirus'
# compatibility_mode=783 16777213 71 95 2188806 26641809 0 0
# compatibility_mode_1=''
# compatibility_mode=5893 16776573 100 94 74580 185242312 0 0
# scanned=1616728
# found=11
# cleaned=0
# scan_time=33676
sh=68CFB053DD61166DDB625FFD5DFD33FDF731CABD ft=1 fh=704167ddb796bd81 vn="a variant of Win32/OpenCandy.C potentially unsafe application" ac=I fn="C:\Users\Domenico\AppData\Roaming\uTorrent\uTorrent.exe"
sh=68CFB053DD61166DDB625FFD5DFD33FDF731CABD ft=1 fh=704167ddb796bd81 vn="a variant of Win32/OpenCandy.C potentially unsafe application" ac=I fn="C:\Users\Domenico\AppData\Roaming\uTorrent\updates\3.4.2_37248.exe"
sh=F82BA0F478BAF34CBF5F13ADB22A72B8829135A9 ft=1 fh=65fc87673ce8ba03 vn="a variant of Win32/Bundled.Toolbar.Ask potentially unsafe application" ac=I fn="C:\Users\Domenico\Desktop\Kürzel\ASUX\pf-setup-fr-652.exe"
sh=68CFB053DD61166DDB625FFD5DFD33FDF731CABD ft=1 fh=704167ddb796bd81 vn="a variant of Win32/OpenCandy.C potentially unsafe application" ac=I fn="C:\Users\Domenico\Downloads\uTorrent.exe"
sh=183AFEEF8824925D12476726DFEC706134557979 ft=1 fh=475ac59e7f197375 vn="Win32/Toolbar.Conduit potentially unwanted application" ac=I fn="C:\Users\Domenico\Downloads\zafwSetupWeb_133_209_000.exe"
sh=71435DDB11E00D0243380C4902324853FE4ECE8F ft=1 fh=12b0cd2dde452d65 vn="a variant of Win32/Bundled.Toolbar.Ask potentially unsafe application" ac=I fn="C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ApnIC[1].0"
sh=40E49124AD0B55A25F947333CA88E9D0BC30A7E3 ft=1 fh=e26ad988592b2af9 vn="a variant of Win32/Bundled.Toolbar.Ask potentially unsafe application" ac=I fn="C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0PS72R2M\ApnIC[1].0"
sh=40E49124AD0B55A25F947333CA88E9D0BC30A7E3 ft=1 fh=e26ad988592b2af9 vn="a variant of Win32/Bundled.Toolbar.Ask potentially unsafe application" ac=I fn="C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0PS72R2M\ApnIC[2].0"
sh=3094664D1394F9FB6ACC4749637602F05C91E58D ft=1 fh=cc8b4d4c983f3ca7 vn="Win32/Bundled.Toolbar.Google.E potentially unsafe application" ac=I fn="D:\Clusb\rcsetup142.exe"
sh=F82BA0F478BAF34CBF5F13ADB22A72B8829135A9 ft=1 fh=65fc87673ce8ba03 vn="a variant of Win32/Bundled.Toolbar.Ask potentially unsafe application" ac=I fn="F:\ED\Desktop\ASUX\pf-setup-fr-652.exe"
sh=3094664D1394F9FB6ACC4749637602F05C91E58D ft=1 fh=cc8b4d4c983f3ca7 vn="Win32/Bundled.Toolbar.Google.E potentially unsafe application" ac=I fn="F:\Shared\rcsetup142.exe"
ESETSmartInstaller@High as downloader log:
all ok
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# EOSSerial=b5056fe0dc7455418ef06eaf8c98ad86
# end=init
# utc_time=2015-06-06 06:29:15
# local_time=2015-06-06 08:29:15 (+0100, Mitteleuropäische Sommerzeit)
# country="Germany"
# osver=6.1.7601 NT Service Pack 1
Update Init
Update Download
 


Edited by Icomenid, 06 June 2015 - 01:33 PM.


#8 Icomenid

Icomenid
  • Topic Starter

  • Members
  • 8 posts
  • OFFLINE
  •  
  • Local time:01:39 PM

Posted 06 June 2015 - 04:22 PM

Malware Bytes Scan:

Malwarebytes Anti-Malware
www.malwarebytes.org

Suchlauf Datum: 06.06.2015
Suchlauf-Zeit: 20:36:31
Logdatei: MWB.txt
Administrator: Ja

Version: 2.01.6.1022
Malware Datenbank: v2015.06.04.04
Rootkit Datenbank: v2015.06.02.01
Lizenz: Kostenlos
Malware Schutz: Deaktiviert
Bösartiger Webseiten Schutz: Deaktiviert
Selbstschutz: Deaktiviert

Betriebssystem: Windows 7 Service Pack 1
CPU: x64
Dateisystem: NTFS
Benutzer: Domenico

Suchlauf-Art: Bedrohungs-Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 523856
Verstrichene Zeit: 1 Std, 13 Min, 19 Sek

Speicher: Aktiviert
Autostart: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Warnen
PUM: Aktiviert

Prozesse: 0
(Keine schädliche Elemente gefunden)

Module: 0
(Keine schädliche Elemente gefunden)

Registrierungsschlüssel: 0
(Keine schädliche Elemente gefunden)

Registrierungswerte: 0
(Keine schädliche Elemente gefunden)

Registrierungsdaten: 0
(Keine schädliche Elemente gefunden)

Ordner: 0
(Keine schädliche Elemente gefunden)

Dateien: 0
(Keine schädliche Elemente gefunden)

Physische Sektoren: 0
(Keine schädliche Elemente gefunden)


(end)



#9 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,490 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:07:39 AM

Posted 09 June 2015 - 02:41 PM

Ok, a couple things... You have 2 antivirus running (avast and avira). Probably causing half the slowness and scanning issues. Remove one and reboot. Disable SpyBot.
ESET found items it did not remove.

Run ESET Again..

◾Click the Start button.
◾Accept any security warnings from your browser.
◾Under scan settings, check "Scan Archives" and "Remove found threats"
◾Click Advanced settings and select the following:◦Scan potentially unwanted applications
◦Scan for potentially unsafe applications
◦Enable Anti-Stealth technology

Edited by boopme, 09 June 2015 - 02:43 PM.

How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#10 Icomenid

Icomenid
  • Topic Starter

  • Members
  • 8 posts
  • OFFLINE
  •  
  • Local time:01:39 PM

Posted 12 June 2015 - 01:26 AM

ESET scan results:

 

C:\Users\Domenico\Downloads\MIQ5.zip    Win32/Toolbar.Iminent.I potentially unwanted application    deleted - quarantined
C:\Users\Domenico\Downloads\zafwSetupWeb_133_209_000.exe    Win32/Toolbar.Conduit potentially unwanted application    deleted - quarantined
D:\INSA\MIQ3\Archives - Vagabond\Projet\MIQro Drone\CF design\Cfdesign v9.0.iso    a variant of Generik.FHGQQG trojan    deleted - quarantined
L:\C\Users\Domenico\Downloads\zafwSetupWeb_133_209_000.exe    Win32/Toolbar.Conduit potentially unwanted application    deleted - quarantined
L:\C\Users\Domenico\Dropbox\2014-2015 LV+Projekt 5ème année\Widaf\WIDAF-Texte\iwd 2014 20.10_fichiers\default_adapter.js    Win32/Toolbar.Iminent.I potentially unwanted application    cleaned by deleting - quarantined
L:\C\Users\Domenico\Dropbox\2014-2015 LV+Projekt 5ème année\Widaf\WIDAF-Texte\iwd 2014 20.10_fichiers\minibar.js    Win32/Toolbar.Iminent.I potentially unwanted application    cleaned by deleting - quarantined
L:\C\Users\Domenico\Dropbox\2014-2015 LV+Projekt 5ème année\Widaf\WIDAF-Texte\iwd 2014 20.10_fichiers\minibar_002.js    Win32/Toolbar.Iminent.I potentially unwanted application    cleaned by deleting - quarantined
L:\C\Users\Domenico\Dropbox\2014-2015 LV+Projekt 5ème année\Widaf\WIDAF-Texte\iwd 2014 20.10_fichiers\minibar_003.js    Win32/Toolbar.Iminent.I potentially unwanted application    cleaned by deleting - quarantined
L:\C\Users\Domenico\Dropbox\2014-2015 LV+Projekt 5ème année\Widaf\WIDAF-Texte\iwd 2014 20.10_fichiers\minibar_004.js    Win32/Toolbar.Iminent.I potentially unwanted application    cleaned by deleting - quarantined
L:\C\Users\Domenico\Dropbox\2014-2015 LV+Projekt 5ème année\Widaf\WIDAF-Texte\iwd 2014 20.10_fichiers\toolbar.js    Win32/Toolbar.Iminent.I potentially unwanted application    cleaned by deleting - quarantined
L:\C\Users\Domenico\Dropbox\2014-2015 LV+Projekt 5ème année\Widaf\WIDAF-Texte\iwd _ 3D-Zeitschrift_fichiers\default_adapter.js    Win32/Toolbar.Iminent.I potentially unwanted application    cleaned by deleting - quarantined
L:\C\Users\Domenico\Dropbox\2014-2015 LV+Projekt 5ème année\Widaf\WIDAF-Texte\iwd _ 3D-Zeitschrift_fichiers\minibar.js    Win32/Toolbar.Iminent.I potentially unwanted application    cleaned by deleting - quarantined
L:\C\Users\Domenico\Dropbox\2014-2015 LV+Projekt 5ème année\Widaf\WIDAF-Texte\iwd _ 3D-Zeitschrift_fichiers\minibar_002.js    Win32/Toolbar.Iminent.I potentially unwanted application    cleaned by deleting - quarantined
L:\C\Users\Domenico\Dropbox\2014-2015 LV+Projekt 5ème année\Widaf\WIDAF-Texte\iwd _ 3D-Zeitschrift_fichiers\minibar_003.js    Win32/Toolbar.Iminent.I potentially unwanted application    cleaned by deleting - quarantined
L:\C\Users\Domenico\Dropbox\2014-2015 LV+Projekt 5ème année\Widaf\WIDAF-Texte\iwd _ 3D-Zeitschrift_fichiers\minibar_004.js    Win32/Toolbar.Iminent.I potentially unwanted application    cleaned by deleting - quarantined
L:\C\Users\Domenico\Dropbox\2014-2015 LV+Projekt 5ème année\Widaf\WIDAF-Texte\iwd _ 3D-Zeitschrift_fichiers\toolbar.js    Win32/Toolbar.Iminent.I potentially unwanted application    cleaned by deleting - quarantined
L:\D\INSA\MIQ3\Archives - Vagabond\Projet\MIQro Drone\CF design\Cfdesign v9.0.iso    a variant of Generik.FHGQQG trojan    deleted - quarantined
 

I can't seem to see anything that was a real threat on the system. Nonetheless, temp-files containing iBryte, Conduit and installRex spawn on a regular base in C:/Windows/temp. At least, according to Avira.






0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users