prosim o kontrolu problem s vypnutim

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: prosim o kontrolu problem s vypnutim

Příspěvekod jaro3 » 25 dub 2014 18:59

To všechno ponechej , jen flash disky a USB disky.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Reklama
pavlinka39
Level 1
Level 1
Příspěvky: 69
Registrován: červenec 11
Pohlaví: Žena
Stav:
Offline

Re: prosim o kontrolu problem s vypnutim

Příspěvekod pavlinka39 » 26 dub 2014 08:29

tak vše udělané doufam že dobře:

RogueKiller V8.8.15 _x64_ [Mar 27 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com

Operační systém : Windows 8 (6.2.9200 ) 64 bits version
Spuštěno v : Normální režim
Uživatel : petra [Práva správce]
Mód : Odebrat -- Datum : 04/25/2014 19:14:02
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 8 ¤¤¤
[RUN][SUSP PATH] HKCU\[...]\Run : Google+ Auto Backup ("C:\Users\petra\AppData\Local\Programs\Google\Google+ Auto Backup\Google+ Auto Backup.exe" /autostart [7]) -> VYMAZÁNO
[RUN][HJNAME] HKCU\[...]\Run : ed6e2bf930f6d35b3ac57c049d10ac2c ("C:\Users\petra\AppData\Local\Temp\Explorer.exe" .. [x][-]) -> VYMAZÁNO
[RUN][SUSP PATH] HKUS\S-1-5-21-2966302708-920562775-2346796021-1002\[...]\Run : Google+ Auto Backup ("C:\Users\petra\AppData\Local\Programs\Google\Google+ Auto Backup\Google+ Auto Backup.exe" /autostart [7]) -> [0x2] Systém nemůže nalézt uvedený soubor.
[RUN][HJNAME] HKUS\S-1-5-21-2966302708-920562775-2346796021-1002\[...]\Run : ed6e2bf930f6d35b3ac57c049d10ac2c ("C:\Users\petra\AppData\Local\Temp\Explorer.exe" .. [x][-]) -> [0x2] Systém nemůže nalézt uvedený soubor.
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> VYMAZÁNO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> VYMAZÁNO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)

¤¤¤ naplánované úlohy : 0 ¤¤¤

¤¤¤ spuštění položky : 0 ¤¤¤

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Browser Addons : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NENAHRÁNO 0x0] ¤¤¤
[Address] IAT @explorer.exe (DeleteDC) : GDI32.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x57BB0000)
[Address] EAT @explorer.exe (BatMeterIconAnimationReset) : Windows.Networking.Connectivity.dll -> HOOKED (C:\Windows\system32\BatMeter.dll @ 0x47D84554)
[Address] EAT @explorer.exe (BatMeterIconThemeReset) : Windows.Networking.Connectivity.dll -> HOOKED (C:\Windows\system32\BatMeter.dll @ 0x47D846EC)
[Address] EAT @explorer.exe (BatMeterOnDeviceChange) : Windows.Networking.Connectivity.dll -> HOOKED (C:\Windows\system32\BatMeter.dll @ 0x47D84134)
[Address] EAT @explorer.exe (CleanupBatteryData) : Windows.Networking.Connectivity.dll -> HOOKED (C:\Windows\system32\BatMeter.dll @ 0x47D81884)
[Address] EAT @explorer.exe (CreateBatteryData) : Windows.Networking.Connectivity.dll -> HOOKED (C:\Windows\system32\BatMeter.dll @ 0x47D82B98)
[Address] EAT @explorer.exe (GetBatMeterIconAnimationState) : Windows.Networking.Connectivity.dll -> HOOKED (C:\Windows\system32\BatMeter.dll @ 0x47D841F0)
[Address] EAT @explorer.exe (GetBatMeterIconAnimationTimeDelay) : Windows.Networking.Connectivity.dll -> HOOKED (C:\Windows\system32\BatMeter.dll @ 0x47D84370)
[Address] EAT @explorer.exe (GetBatMeterIconAnimationUpdate) : Windows.Networking.Connectivity.dll -> HOOKED (C:\Windows\system32\BatMeter.dll @ 0x47D84494)
[Address] EAT @explorer.exe (GetBatteryCapacityInfo) : Windows.Networking.Connectivity.dll -> HOOKED (C:\Windows\system32\BatMeter.dll @ 0x47D83F18)
[Address] EAT @explorer.exe (GetBatteryDetails) : Windows.Networking.Connectivity.dll -> HOOKED (C:\Windows\system32\BatMeter.dll @ 0x47D85AD0)
[Address] EAT @explorer.exe (GetBatteryImmersiveIcon) : Windows.Networking.Connectivity.dll -> HOOKED (C:\Windows\system32\BatMeter.dll @ 0x47D82060)
[Address] EAT @explorer.exe (GetBatteryInfo) : Windows.Networking.Connectivity.dll -> HOOKED (C:\Windows\system32\BatMeter.dll @ 0x47D85100)
[Address] EAT @explorer.exe (GetBatteryStatusText) : Windows.Networking.Connectivity.dll -> HOOKED (C:\Windows\system32\BatMeter.dll @ 0x47D85190)
[Address] EAT @explorer.exe (GetBatteryWorkingState) : Windows.Networking.Connectivity.dll -> HOOKED (C:\Windows\system32\BatMeter.dll @ 0x47D819C0)
[Address] EAT @explorer.exe (IsBatteryBad) : Windows.Networking.Connectivity.dll -> HOOKED (C:\Windows\system32\BatMeter.dll @ 0x47D83F0C)
[Address] EAT @explorer.exe (IsBatteryHealthWarningEnabled) : Windows.Networking.Connectivity.dll -> HOOKED (C:\Windows\system32\BatMeter.dll @ 0x47D83F00)
[Address] EAT @explorer.exe (IsBatteryLevelCritical) : Windows.Networking.Connectivity.dll -> HOOKED (C:\Windows\system32\BatMeter.dll @ 0x47D83EC4)
[Address] EAT @explorer.exe (IsBatteryLevelLow) : Windows.Networking.Connectivity.dll -> HOOKED (C:\Windows\system32\BatMeter.dll @ 0x47D83ED8)
[Address] EAT @explorer.exe (IsBatteryLevelReserve) : Windows.Networking.Connectivity.dll -> HOOKED (C:\Windows\system32\BatMeter.dll @ 0x47D83EEC)
[Address] EAT @explorer.exe (PowerCapabilities) : Windows.Networking.Connectivity.dll -> HOOKED (C:\Windows\system32\BatMeter.dll @ 0x47D81560)
[Address] EAT @explorer.exe (QueryBatteryData) : Windows.Networking.Connectivity.dll -> HOOKED (C:\Windows\system32\BatMeter.dll @ 0x47D82C44)
[Address] EAT @explorer.exe (SetBatteryHealthWarningState) : Windows.Networking.Connectivity.dll -> HOOKED (C:\Windows\system32\BatMeter.dll @ 0x47D83F00)
[Address] EAT @explorer.exe (SetBatteryLevel) : Windows.Networking.Connectivity.dll -> HOOKED (C:\Windows\system32\BatMeter.dll @ 0x47D827A0)
[Address] EAT @explorer.exe (SetBatteryWorkingState) : Windows.Networking.Connectivity.dll -> HOOKED (C:\Windows\system32\BatMeter.dll @ 0x47D81048)
[Address] EAT @explorer.exe (SubscribeBatteryUpdateNotification) : Windows.Networking.Connectivity.dll -> HOOKED (C:\Windows\system32\BatMeter.dll @ 0x47D81FB8)
[Address] EAT @explorer.exe (UnsubscribeBatteryUpdateNotification) : Windows.Networking.Connectivity.dll -> HOOKED (C:\Windows\system32\BatMeter.dll @ 0x47D81980)
[Address] EAT @explorer.exe (UpdateBatteryData) : Windows.Networking.Connectivity.dll -> HOOKED (C:\Windows\system32\BatMeter.dll @ 0x47D850C4)
[Address] EAT @explorer.exe (UpdateBatteryDataAsync) : Windows.Networking.Connectivity.dll -> HOOKED (C:\Windows\system32\BatMeter.dll @ 0x47D81B60)

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts




¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) ST1000LM 024 HN-M101MBB SATA Disk Device +++++
--- User ---
[MBR] 5014411dd567daebd15664c675745c2d
[BSP] 1e48bb054cfc637b964c684c5a74860e : Empty MBR Code
Partition table:
0 - [XXXXXX] UNKNOWN (0x00) [VISIBLE] Offset (sectors): 1 | Size: 953869 MB
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[0]_D_04252014_191402.txt >>
RKreport[0]_S_04252014_100926.txt;RKreport[0]_S_04252014_191328.txt



Malwarebytes Anti-Malware
www.malwarebytes.org

Scan Date: 26. 4. 2014
Scan Time: 8:09:06
Logfile: 26' 4.txt
Administrator: Yes

Version: 2.00.1.1004
Malware Database: v2014.04.25.11
Rootkit Database: v2014.03.27.01
License: Trial
Malware Protection: Enabled
Malicious Website Protection: Enabled
Chameleon: Disabled

OS: Windows 8
CPU: x64
File System: NTFS
User: petra

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 248182
Time Elapsed: 35 min, 39 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Shuriken: Enabled
PUP: Enabled
PUM: Enabled

Processes: 0
(No malicious items detected)

Modules: 0
(No malicious items detected)

Registry Keys: 0
(No malicious items detected)

Registry Values: 0
(No malicious items detected)

Registry Data: 0
(No malicious items detected)

Folders: 0
(No malicious items detected)

Files: 1
Trojan.BitMiner, C:\Windows\SysWOW64\dcgmnccphoo.exe, Quarantined, [751ae846c2b91224eb4193f0a06105fb],

Physical Sectors: 0
(No malicious items detected)


(end)

pavlinka39
Level 1
Level 1
Příspěvky: 69
Registrován: červenec 11
Pohlaví: Žena
Stav:
Offline

Re: prosim o kontrolu problem s vypnutim

Příspěvekod pavlinka39 » 26 dub 2014 08:32

08:13:26.0659 2320 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
08:13:26.0659 2320 UEFI system
08:13:36.0893 2320 ============================================================
08:13:36.0893 2320 Current date / time: 2014/04/26 08:13:36.0893
08:13:36.0893 2320 SystemInfo:
08:13:36.0893 2320
08:13:36.0893 2320 OS Version: 6.2.9200 ServicePack: 0.0
08:13:36.0893 2320 Product type: Workstation
08:13:36.0893 2320 ComputerName: PETRA
08:13:36.0893 2320 UserName: petra
08:13:36.0893 2320 Windows directory: C:\Windows
08:13:36.0893 2320 System windows directory: C:\Windows
08:13:36.0893 2320 Running under WOW64
08:13:36.0893 2320 Processor architecture: Intel x64
08:13:36.0893 2320 Number of processors: 2
08:13:36.0893 2320 Page size: 0x1000
08:13:36.0893 2320 Boot type: Normal boot
08:13:36.0893 2320 ============================================================
08:13:37.0844 2320 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
08:13:37.0860 2320 ============================================================
08:13:37.0860 2320 \Device\Harddisk0\DR0:
08:13:37.0860 2320 GPT partitions:
08:13:37.0860 2320 \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {BEED14CE-3801-4596-9601-C5DBF96D5F5C}, Name: Basic data partition, StartLBA 0x800, BlocksNum 0xC8000
08:13:37.0860 2320 \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {8BDF613D-C508-4FC7-BAF1-C64EE657ADFE}, Name: EFI system partition, StartLBA 0xC8800, BlocksNum 0x82000
08:13:37.0860 2320 \Device\Harddisk0\DR0\Partition3: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {2E1577E4-5D29-40AB-8B9A-83CC56E6351E}, Name: Microsoft reserved partition, StartLBA 0x14A800, BlocksNum 0x40000
08:13:37.0860 2320 \Device\Harddisk0\DR0\Partition4: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {0ABE1E92-D7E8-4FDB-8039-0C409AA066AE}, Name: Basic data partition, StartLBA 0x18A800, BlocksNum 0x720DF800
08:13:37.0860 2320 \Device\Harddisk0\DR0\Partition5: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {62E8DF81-22B4-45F0-A1D7-9A27773B9056}, Name: Basic data partition, StartLBA 0x7226A000, BlocksNum 0x249C800
08:13:37.0860 2320 MBR partitions:
08:13:37.0860 2320 ============================================================
08:13:37.0891 2320 C: <-> \Device\Harddisk0\DR0\Partition4
08:13:37.0954 2320 D: <-> \Device\Harddisk0\DR0\Partition5
08:13:37.0954 2320 ============================================================
08:13:37.0954 2320 Initialize success
08:13:37.0954 2320 ============================================================
08:13:47.0766 2952 ============================================================
08:13:47.0766 2952 Scan started
08:13:47.0766 2952 Mode: Manual;
08:13:47.0766 2952 ============================================================
08:13:48.0530 2952 ================ Scan system memory ========================
08:13:48.0530 2952 System memory - ok
08:13:48.0530 2952 ================ Scan services =============================
08:13:48.0655 2952 [ E890C46E4754F0DF51BAFCC8D2E07498 ] 1394ohci C:\Windows\System32\drivers\1394ohci.sys
08:13:48.0655 2952 1394ohci - ok
08:13:48.0671 2952 [ 4F18D4C7EA14F11A7211F60D553C03DB ] 3ware C:\Windows\system32\drivers\3ware.sys
08:13:48.0671 2952 3ware - ok
08:13:48.0702 2952 [ F39180029723D7779C80360F9E255709 ] Accelerometer C:\Windows\system32\DRIVERS\Accelerometer.sys
08:13:48.0702 2952 Accelerometer - ok
08:13:48.0764 2952 [ 975AABEB243B800C23626D6B652C5A9C ] ACPI C:\Windows\system32\drivers\ACPI.sys
08:13:48.0764 2952 ACPI - ok
08:13:48.0827 2952 [ DC968C37822117E576B933F34A2D130C ] acpiex C:\Windows\system32\Drivers\acpiex.sys
08:13:48.0827 2952 acpiex - ok
08:13:48.0842 2952 [ 0CA9F7C3A78227C21A0A7854E245CFB2 ] acpipagr C:\Windows\System32\drivers\acpipagr.sys
08:13:48.0858 2952 acpipagr - ok
08:13:48.0889 2952 [ 8EB8DA03B142D3DD1EB9ED8107A76C43 ] AcpiPmi C:\Windows\System32\drivers\acpipmi.sys
08:13:48.0889 2952 AcpiPmi - ok
08:13:48.0905 2952 [ CBCE725C5D86ABA7D2604E22951AA9B8 ] acpitime C:\Windows\System32\drivers\acpitime.sys
08:13:48.0905 2952 acpitime - ok
08:13:48.0967 2952 [ B5E65ED7048E9714F51110E757E7A2B9 ] AdaptiveSleepService C:\Program Files\ATI Technologies\ATI.ACE\A4\AdaptiveSleepService.exe
08:13:48.0967 2952 AdaptiveSleepService - ok
08:13:48.0998 2952 [ 93C6388592B99925C1D1576E465BC80F ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
08:13:49.0014 2952 adp94xx - ok
08:13:49.0030 2952 [ D27763E0247292654E7F7D16444C7C72 ] adpahci C:\Windows\system32\drivers\adpahci.sys
08:13:49.0030 2952 adpahci - ok
08:13:49.0045 2952 [ 67B90070FF48F794AF19F9FCF0080D75 ] adpu320 C:\Windows\system32\drivers\adpu320.sys
08:13:49.0045 2952 adpu320 - ok
08:13:49.0092 2952 [ 974AE60BF5B90E31412D93596C968E5B ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
08:13:49.0092 2952 AeLookupSvc - ok
08:13:49.0139 2952 [ 7C0E0EDF18D6CC565D7BFBB451709FA5 ] AFD C:\Windows\system32\drivers\afd.sys
08:13:49.0154 2952 AFD - ok
08:13:49.0170 2952 [ 01590377A5AB19E792528C628A2A68F9 ] agp440 C:\Windows\system32\drivers\agp440.sys
08:13:49.0170 2952 agp440 - ok
08:13:49.0217 2952 [ D1BE8E6E5B3AF23A4393AF1BF867977A ] ALG C:\Windows\System32\alg.exe
08:13:49.0217 2952 ALG - ok
08:13:49.0248 2952 [ 025E8C755BE293E50854D26D1BBE5133 ] AllUserInstallAgent C:\Windows\system32\AUInstallAgent.dll
08:13:49.0264 2952 AllUserInstallAgent - ok
08:13:49.0295 2952 [ C32BACD958A69672621A4813038F2342 ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe
08:13:49.0310 2952 AMD External Events Utility - ok
08:13:49.0342 2952 AMD FUEL Service - ok
08:13:49.0342 2952 [ C0A486A51FDE02E22E8D5E5544479825 ] AmdAS4 C:\Windows\System32\drivers\AmdAS4.sys
08:13:49.0342 2952 AmdAS4 - ok
08:13:49.0404 2952 [ 5A81054B824004B1ECC04F0034A1CDF9 ] AmdK8 C:\Windows\System32\drivers\amdk8.sys
08:13:49.0404 2952 AmdK8 - ok
08:13:49.0654 2952 [ 3935E0F646D528DD3F8A7E9BF28E34CA ] amdkmdag C:\Windows\system32\DRIVERS\atikmdag.sys
08:13:49.0981 2952 amdkmdag - ok
08:13:50.0059 2952 [ 60CB86C5629AC78B1F3412806BB70AE3 ] amdkmdap C:\Windows\system32\DRIVERS\atikmpag.sys
08:13:50.0059 2952 amdkmdap - ok
08:13:50.0106 2952 [ B849D453E644FAB9BC8EF6DC8CA9C4C6 ] AmdPPM C:\Windows\System32\drivers\amdppm.sys
08:13:50.0106 2952 AmdPPM - ok
08:13:50.0122 2952 [ 35A0EB5AECB0FA3C41A2FB514A562304 ] amdsata C:\Windows\system32\drivers\amdsata.sys
08:13:50.0122 2952 amdsata - ok
08:13:50.0153 2952 [ 00452671904F5EE94B50BF0219C97164 ] amdsbs C:\Windows\system32\drivers\amdsbs.sys
08:13:50.0153 2952 amdsbs - ok
08:13:50.0168 2952 [ EA3FFE53E92E59C87E3ECA9BEB20D9B7 ] amdxata C:\Windows\system32\drivers\amdxata.sys
08:13:50.0168 2952 amdxata - ok
08:13:50.0200 2952 [ 0E6F9683928F99DF16E0E7924E4807D9 ] amd_sata C:\Windows\system32\drivers\amd_sata.sys
08:13:50.0200 2952 amd_sata - ok
08:13:50.0215 2952 [ F9254DE6FA0A2782A4810726F2D677EF ] amd_xata C:\Windows\system32\drivers\amd_xata.sys
08:13:50.0215 2952 amd_xata - ok
08:13:50.0278 2952 [ 823F34D1DEF120A657BB7529ABF4461F ] AppHostSvc C:\Windows\system32\inetsrv\apphostsvc.dll
08:13:50.0278 2952 AppHostSvc - ok
08:13:50.0293 2952 [ 83B3682CE922FB0F415734B26D9D6233 ] AppID C:\Windows\system32\drivers\appid.sys
08:13:50.0293 2952 AppID - ok
08:13:50.0324 2952 [ CE2BEAD7F31816FF0AC490D048C969F9 ] AppIDSvc C:\Windows\System32\appidsvc.dll
08:13:50.0324 2952 AppIDSvc - ok
08:13:50.0434 2952 [ 4F750B7EFCB6520AE01E01D082D7D476 ] Appinfo C:\Windows\System32\appinfo.dll
08:13:50.0434 2952 Appinfo - ok
08:13:50.0434 2952 [ E933401B392387F4BE34DE8BAF1722A7 ] arc C:\Windows\system32\drivers\arc.sys
08:13:50.0449 2952 arc - ok
08:13:50.0465 2952 [ 07CA323EF2E8247A568AB0F3662AD644 ] arcsas C:\Windows\system32\drivers\arcsas.sys
08:13:50.0465 2952 arcsas - ok
08:13:50.0574 2952 [ 108FB6DDB69E537A2EA53F425363FAE5 ] aspnet_state C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
08:13:50.0590 2952 aspnet_state - ok
08:13:50.0590 2952 [ 74DBAEC35366C4EE7670428808715A6A ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
08:13:50.0590 2952 AsyncMac - ok
08:13:50.0621 2952 [ A721FF570C2387E383BDDEA9632863C9 ] atapi C:\Windows\system32\drivers\atapi.sys
08:13:50.0621 2952 atapi - ok
08:13:50.0652 2952 [ 13A4B62FEE62843413724C45FD149D45 ] AtiHDAudioService C:\Windows\system32\drivers\AtihdW86.sys
08:13:50.0652 2952 AtiHDAudioService - ok
08:13:50.0714 2952 [ BCD7A47EF587DC00DD61D12D9C2D1E44 ] AudioEndpointBuilder C:\Windows\System32\AudioEndpointBuilder.dll
08:13:50.0714 2952 AudioEndpointBuilder - ok
08:13:50.0761 2952 [ 599B3F685A263A114FFAF3BE29C49C75 ] Audiosrv C:\Windows\System32\Audiosrv.dll
08:13:50.0777 2952 Audiosrv - ok
08:13:50.0824 2952 [ 89491EF71D5EA011127832C588002853 ] AxInstSV C:\Windows\System32\AxInstSV.dll
08:13:50.0824 2952 AxInstSV - ok
08:13:50.0870 2952 [ 87AB5BB072A3F128541D5B815F82FFDD ] b06bdrv C:\Windows\system32\drivers\bxvbda.sys
08:13:50.0870 2952 b06bdrv - ok
08:13:50.0902 2952 [ 81703BC5D68DEDBB086C2368FBE7B334 ] BasicDisplay C:\Windows\System32\drivers\BasicDisplay.sys
08:13:50.0902 2952 BasicDisplay - ok
08:13:50.0917 2952 [ 5EC68164E14D25675C98BBB5F09E8606 ] BasicRender C:\Windows\System32\drivers\BasicRender.sys
08:13:50.0917 2952 BasicRender - ok
08:13:50.0964 2952 [ 89143A7BA7850F5C7E61B43BB44B6418 ] BDESVC C:\Windows\System32\bdesvc.dll
08:13:50.0964 2952 BDESVC - ok
08:13:50.0980 2952 [ 9E7AEA59776D904607985AFFE7E5E183 ] Beep C:\Windows\system32\drivers\Beep.sys
08:13:50.0995 2952 Beep - ok
08:13:51.0026 2952 [ 53AA55632B94622F2DC3695E86EF9363 ] BFE C:\Windows\System32\bfe.dll
08:13:51.0042 2952 BFE - ok
08:13:51.0089 2952 [ D598C44A7072D3108D8D8102EC5E07F7 ] BITS C:\Windows\System32\qmgr.dll
08:13:51.0120 2952 BITS - ok
08:13:51.0307 2952 [ 72F3E18258F608C0D636BD82BA3EE5B6 ] BlueSoleilCS C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe
08:13:51.0338 2952 BlueSoleilCS - ok
08:13:51.0370 2952 [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
08:13:51.0385 2952 Bonjour Service - ok
08:13:51.0385 2952 [ B17AC10B47C7FCB44D22A1F06415840E ] bowser C:\Windows\system32\DRIVERS\bowser.sys
08:13:51.0401 2952 bowser - ok
08:13:51.0432 2952 [ 038FA1B55531E7020DB705B42FCCE373 ] BrokerInfrastructure C:\Windows\System32\bisrv.dll
08:13:51.0432 2952 BrokerInfrastructure - ok
08:13:51.0463 2952 [ 310068BDA80B1D55C36580FD8A873FAF ] Browser C:\Windows\System32\browser.dll
08:13:51.0463 2952 Browser - ok
08:13:51.0510 2952 [ CC27DC2E3F2768FB485AAC93F0F82E96 ] BsHelpCS C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe
08:13:51.0510 2952 BsHelpCS - ok
08:13:51.0541 2952 [ 34AAF6FD68B8403E76F0D08A8C1C1DA3 ] BtAudioBusSrv C:\Windows\System32\Drivers\BtAudioBus.sys
08:13:51.0541 2952 BtAudioBusSrv - ok
08:13:51.0588 2952 [ 6695200F455E251F0BCC9CE4D0978D59 ] BthAvrcpTg C:\Windows\System32\drivers\BthAvrcpTg.sys
08:13:51.0588 2952 BthAvrcpTg - ok
08:13:51.0604 2952 [ A8B20D852B07AE19A13B5D47EC4E4C3B ] BthEnum C:\Windows\System32\drivers\BthEnum.sys
08:13:51.0604 2952 BthEnum - ok
08:13:51.0635 2952 [ 616EB8748C988AEE98D93DA141C3D3B4 ] BthHFEnum C:\Windows\System32\drivers\bthhfenum.sys
08:13:51.0635 2952 BthHFEnum - ok
08:13:51.0650 2952 [ DCB4EBD928A6FB368BE6CAE522412DE1 ] bthhfhid C:\Windows\System32\drivers\BthHFHid.sys
08:13:51.0650 2952 bthhfhid - ok
08:13:51.0682 2952 [ CE3921CC0814574A699628776B3AE301 ] BthL2caScoIfSrv C:\Windows\System32\Drivers\BtL2caScoIf.sys
08:13:51.0682 2952 BthL2caScoIfSrv - ok
08:13:51.0697 2952 [ 42201C346F0B8C458E1E9CDE04D68A2C ] BthLEEnum C:\Windows\system32\DRIVERS\BthLEEnum.sys
08:13:51.0713 2952 BthLEEnum - ok
08:13:51.0728 2952 [ 033916CE8784A848B9A3D686B7F66D97 ] BTHMODEM C:\Windows\System32\drivers\bthmodem.sys
08:13:51.0744 2952 BTHMODEM - ok
08:13:51.0760 2952 [ 091BB978E9504D0AD14586929431A957 ] BthPan C:\Windows\system32\DRIVERS\bthpan.sys
08:13:51.0760 2952 BthPan - ok
08:13:51.0822 2952 [ 13795CAA34239D97A7211E7F9D96E012 ] BTHPORT C:\Windows\System32\Drivers\BTHport.sys
08:13:51.0838 2952 BTHPORT - ok
08:13:51.0931 2952 [ A4387C3D271959313E2577DB7BE8BA7A ] bthserv C:\Windows\system32\bthserv.dll
08:13:51.0931 2952 bthserv - ok
08:13:52.0072 2952 [ 1F715957F5236D30B6020A19A4271F6A ] BTHUSB C:\Windows\System32\Drivers\BTHUSB.sys
08:13:52.0087 2952 BTHUSB - ok
08:13:52.0103 2952 [ 6F9C5E08B53E9AB0C1AE380B87F41A9C ] btUrbFilterDrv C:\Windows\System32\Drivers\IvtUrbBtFlt.sys
08:13:52.0103 2952 btUrbFilterDrv - ok
08:13:52.0196 2952 [ 72551A9AE5F68905DFC3CBA0D5242566 ] c2cautoupdatesvc C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
08:13:52.0228 2952 c2cautoupdatesvc - ok
08:13:52.0290 2952 [ 6B669A00A431FF6CDCE67458933F5F0F ] c2cpnrsvc C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
08:13:52.0337 2952 c2cpnrsvc - ok
08:13:52.0368 2952 [ 990B1BABE6E81FB18E65A87EBEFB1772 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
08:13:52.0368 2952 cdfs - ok
08:13:52.0384 2952 [ 339BFF85D788268752DA8C9644B188EE ] cdrom C:\Windows\System32\drivers\cdrom.sys
08:13:52.0384 2952 cdrom - ok
08:13:52.0415 2952 [ BAF8F0F55BC300E5F882E521F054E345 ] CertPropSvc C:\Windows\System32\certprop.dll
08:13:52.0415 2952 CertPropSvc - ok
08:13:52.0508 2952 [ 0FB3259B15FFAE378630087CC970A558 ] CFRMD C:\Windows\system32\DRIVERS\CFRMD.sys
08:13:52.0508 2952 CFRMD - ok
08:13:52.0540 2952 [ F64B7D1A37CC1D5F421D5359EEC81E2E ] circlass C:\Windows\System32\drivers\circlass.sys
08:13:52.0540 2952 circlass - ok
08:13:52.0555 2952 [ 9905168708DB68849B879B5548F68AB3 ] CLFS C:\Windows\system32\drivers\CLFS.sys
08:13:52.0571 2952 CLFS - ok
08:13:52.0633 2952 [ 65A829A7FFA61ED996C8D43C47211FAE ] CLPSLauncher C:\Program Files (x86)\Common Files\COMODO\launcher_service.exe
08:13:52.0633 2952 CLPSLauncher - ok
08:13:52.0680 2952 [ 3E76A1547F2448BCEE3D2F4AE3931AB5 ] CLVirtualDrive C:\Windows\system32\DRIVERS\CLVirtualDrive.sys
08:13:52.0680 2952 CLVirtualDrive - ok
08:13:52.0711 2952 [ 39F71BF21E7F8EBE9B4810BC95EE26D6 ] clwvd C:\Windows\system32\DRIVERS\clwvd.sys
08:13:52.0711 2952 clwvd - ok
08:13:52.0727 2952 [ 2DC8538A2260647484A6C921CA837313 ] CmBatt C:\Windows\System32\drivers\CmBatt.sys
08:13:52.0743 2952 CmBatt - ok
08:13:52.0821 2952 [ E708BFF0473EC6B271EA46B65B16CA56 ] CNG C:\Windows\system32\Drivers\cng.sys
08:13:52.0836 2952 CNG - ok
08:13:52.0852 2952 [ 0E5B1E9E7122EDAAF1F6CE047965CA92 ] CompositeBus C:\Windows\System32\drivers\CompositeBus.sys
08:13:52.0852 2952 CompositeBus - ok
08:13:52.0867 2952 COMSysApp - ok
08:13:52.0883 2952 [ D9CB0782AF819548072AA45B70F8B22D ] condrv C:\Windows\system32\drivers\condrv.sys
08:13:52.0883 2952 condrv - ok
08:13:52.0930 2952 [ 5CE2742F063731EC10C1B2EE386A2C08 ] CryptSvc C:\Windows\system32\cryptsvc.dll
08:13:52.0930 2952 CryptSvc - ok
08:13:53.0023 2952 [ 218125F7D1793BEEA18749D75CFDE161 ] CyberLink PowerDVD 12 Media Server Monitor Service C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe
08:13:53.0039 2952 CyberLink PowerDVD 12 Media Server Monitor Service - ok
08:13:53.0070 2952 [ 0E7A0FCDAE3119183083025CE50C6FEA ] CyberLink PowerDVD 12 Media Server Service C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe
08:13:53.0070 2952 CyberLink PowerDVD 12 Media Server Service - ok
08:13:53.0117 2952 [ FAEF4C245BE832DB41B15DAAC336AFB7 ] dam C:\Windows\system32\drivers\dam.sys
08:13:53.0117 2952 dam - ok
08:13:53.0164 2952 [ 1EC6E533C954BDDF2A37E7851A7E58FD ] DcomLaunch C:\Windows\system32\rpcss.dll
08:13:53.0179 2952 DcomLaunch - ok
08:13:53.0304 2952 [ C8650D1F61149AA546BDBC99172EBBC1 ] defragsvc C:\Windows\System32\defragsvc.dll
08:13:53.0304 2952 defragsvc - ok
08:13:53.0335 2952 [ 5EAEF67AE2AF4D2DC664B649DB7B2E16 ] DeviceAssociationService C:\Windows\system32\das.dll
08:13:53.0351 2952 DeviceAssociationService - ok
08:13:53.0367 2952 [ 799BE46D45D486704CE0F37CA5385262 ] DeviceInstall C:\Windows\system32\umpnpmgr.dll
08:13:53.0382 2952 DeviceInstall - ok
08:13:53.0413 2952 [ 431141C6859990824D17F71C30A78728 ] Dfsc C:\Windows\system32\Drivers\dfsc.sys
08:13:53.0413 2952 Dfsc - ok
08:13:53.0445 2952 [ 9E0E72222264745ADEB0E5AC680B0ED6 ] Dhcp C:\Windows\system32\dhcpcore.dll
08:13:53.0445 2952 Dhcp - ok
08:13:53.0476 2952 [ 3C736FAE17BA6F91BA37594AAB139CD0 ] discache C:\Windows\system32\drivers\discache.sys
08:13:53.0476 2952 discache - ok
08:13:53.0507 2952 [ AE3786294CC246A5403783E1B86A0168 ] disk C:\Windows\system32\drivers\disk.sys
08:13:53.0507 2952 disk - ok
08:13:53.0523 2952 [ 82A7C72593793FE1EADA7A305BD1567A ] dmvsc C:\Windows\System32\drivers\dmvsc.sys
08:13:53.0523 2952 dmvsc - ok
08:13:53.0569 2952 [ 066B9710B36AB550E01EEFCA52155968 ] Dnscache C:\Windows\System32\dnsrslvr.dll
08:13:53.0569 2952 Dnscache - ok
08:13:53.0632 2952 [ 9949AD2ABA168A618D46C799D6CC898C ] dot3svc C:\Windows\System32\dot3svc.dll
08:13:53.0647 2952 dot3svc - ok
08:13:53.0663 2952 [ 109FC3F80BF4F4DC5A071058074F13C1 ] DPS C:\Windows\system32\dps.dll
08:13:53.0694 2952 DPS - ok
08:13:53.0725 2952 [ 9C7C183F937951AE17C5B8B3259CF3FF ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
08:13:53.0725 2952 drmkaud - ok
08:13:53.0772 2952 [ F87F4AAAF6664906248D11D5E579A53B ] DsmSvc C:\Windows\System32\DeviceSetupManager.dll
08:13:53.0772 2952 DsmSvc - ok
08:13:53.0819 2952 [ 33F90B202E9DD9B7D489EB59310FDC34 ] dtsoftbus01 C:\Windows\System32\drivers\dtsoftbus01.sys
08:13:53.0819 2952 dtsoftbus01 - ok
08:13:53.0881 2952 [ E6AF4DF1817953D73C519B17CF849756 ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
08:13:53.0897 2952 DXGKrnl - ok
08:13:53.0928 2952 [ 58BA473DD88F5FC1932282BA683AA03E ] Eaphost C:\Windows\System32\eapsvc.dll
08:13:53.0944 2952 Eaphost - ok
08:13:54.0069 2952 [ 5AB97B3282D7D6114949D1EB5C8598E4 ] ebdrv C:\Windows\system32\drivers\evbda.sys
08:13:54.0115 2952 ebdrv - ok
08:13:54.0147 2952 [ F702AB6181513303AB0FC8D59E52708B ] EFS C:\Windows\System32\lsass.exe
08:13:54.0162 2952 EFS - ok
08:13:54.0193 2952 [ 66D60BD9A4C05616ABECA2A901475098 ] EhStorClass C:\Windows\system32\drivers\EhStorClass.sys
08:13:54.0193 2952 EhStorClass - ok
08:13:54.0225 2952 [ A61D0F543024E458C0FE32352E1978E2 ] EhStorTcgDrv C:\Windows\system32\drivers\EhStorTcgDrv.sys
08:13:54.0225 2952 EhStorTcgDrv - ok
08:13:54.0240 2952 [ D790D058D67582DB9C84C2D33695FE6B ] ErrDev C:\Windows\System32\drivers\errdev.sys
08:13:54.0240 2952 ErrDev - ok
08:13:54.0303 2952 [ F9E01C2D9F8BC049E04CF5DC24A5F638 ] EventSystem C:\Windows\system32\es.dll
08:13:54.0303 2952 EventSystem - ok
08:13:54.0334 2952 [ 7A4D6FEB8C52B3FE855E4DCDF9107E03 ] exfat C:\Windows\system32\drivers\exfat.sys
08:13:54.0334 2952 exfat - ok
08:13:54.0349 2952 [ 60996602A7111FD2D086E803F33E4282 ] fastfat C:\Windows\system32\drivers\fastfat.sys
08:13:54.0365 2952 fastfat - ok
08:13:54.0412 2952 [ F0E7F8382ED5E138B0DFA4CB5058BCFE ] Fax C:\Windows\system32\fxssvc.exe
08:13:54.0427 2952 Fax - ok
08:13:54.0443 2952 [ 73B2D11DF0B6E03A0CB0323218ACB3E4 ] fdc C:\Windows\System32\drivers\fdc.sys
08:13:54.0459 2952 fdc - ok
08:13:54.0474 2952 [ 0828E3E7BD77C89149EAD3232BFD38DB ] fdPHost C:\Windows\system32\fdPHost.dll
08:13:54.0474 2952 fdPHost - ok
08:13:54.0490 2952 [ 872506AAB591E8908DF4461475AF92DF ] FDResPub C:\Windows\system32\fdrespub.dll
08:13:54.0490 2952 FDResPub - ok
08:13:54.0521 2952 [ 0588950D93A426F97C7AAADB1A9B0458 ] fhsvc C:\Windows\system32\fhsvc.dll
08:13:54.0521 2952 fhsvc - ok
08:13:54.0537 2952 [ 88A9EBACD1058ABB237A6B4E96E7F397 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
08:13:54.0537 2952 FileInfo - ok
08:13:54.0583 2952 [ 9E4EE3A0B00FF7D5F42A4AF9744CBA02 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
08:13:54.0583 2952 Filetrace - ok
08:13:54.0599 2952 [ B1D4C168FF7B8579E3745888658FFB1D ] flpydisk C:\Windows\System32\drivers\flpydisk.sys
08:13:54.0599 2952 flpydisk - ok
08:13:54.0615 2952 [ B33EC133AE4E6C1881D2302D93D2467D ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
08:13:54.0630 2952 FltMgr - ok
08:13:54.0677 2952 [ 0BCDC0FF11B984162B0CF0FF6E9E0146 ] FontCache C:\Windows\system32\FntCache.dll
08:13:54.0708 2952 FontCache - ok
08:13:54.0755 2952 [ 0B56259F5611787222A04A8F254E51D4 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
08:13:54.0755 2952 FontCache3.0.0.0 - ok
08:13:54.0771 2952 [ A5F7873A39E4E9FAAAE59B7E9E36B705 ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
08:13:54.0771 2952 FsDepends - ok
08:13:54.0786 2952 [ A6DD7D491F587F4BC13FB972977DC8E8 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
08:13:54.0786 2952 Fs_Rec - ok
08:13:54.0817 2952 [ C1646A95EAC515F60CDB2A7A8A013C1E ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
08:13:54.0864 2952 fvevol - ok
08:13:54.0880 2952 [ A969D92973DFA895E7776B4BFE36DBB2 ] FxPPM C:\Windows\System32\drivers\fxppm.sys
08:13:54.0895 2952 FxPPM - ok
08:13:54.0911 2952 [ 52BC441E07A827EBAB70CDC7EAEDB28D ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
08:13:54.0911 2952 gagp30kx - ok
08:13:54.0989 2952 [ 39B47A50DC3D5E898298468307765710 ] GeekBuddyRSP C:\Program Files (x86)\Common Files\COMODO\GeekBuddyRSP.exe
08:13:55.0020 2952 GeekBuddyRSP - ok
08:13:55.0051 2952 [ 721F8EEF5E9747F32670DEFF7FB92541 ] gencounter C:\Windows\System32\drivers\vmgencounter.sys
08:13:55.0051 2952 gencounter - ok
08:13:55.0114 2952 [ FC2B8B06BDBD3B6457F5A3DA9AD2410E ] GPIOClx0101 C:\Windows\system32\Drivers\msgpioclx.sys
08:13:55.0129 2952 GPIOClx0101 - ok
08:13:55.0176 2952 [ 5358678C6370F2ADC5291849F6503262 ] gpsvc C:\Windows\System32\gpsvc.dll
08:13:55.0192 2952 gpsvc - ok
08:13:55.0254 2952 [ C1B577B2169900F4CF7190C39F085794 ] gusvc C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
08:13:55.0254 2952 gusvc - ok
08:13:55.0301 2952 [ 630555943E5A3FE21010CE91EC7FC84F ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
08:13:55.0301 2952 HdAudAddService - ok
08:13:55.0348 2952 [ 7D87B5B6C7188D553E11B59DC7F0B111 ] HDAudBus C:\Windows\System32\drivers\HDAudBus.sys
08:13:55.0348 2952 HDAudBus - ok
08:13:55.0363 2952 [ 3F76BBA53D65E85A7F53E7A71082082C ] HidBatt C:\Windows\System32\drivers\HidBatt.sys
08:13:55.0379 2952 HidBatt - ok
08:13:55.0395 2952 [ 085F150D002B7F0153D3C06DDF33A143 ] HidBth C:\Windows\System32\drivers\hidbth.sys
08:13:55.0395 2952 HidBth - ok
08:13:55.0426 2952 [ CC4A07E51D89575CAB6F4EB590D87CD4 ] hidi2c C:\Windows\System32\drivers\hidi2c.sys
08:13:55.0426 2952 hidi2c - ok
08:13:55.0441 2952 [ DC96F7DACB777CDEAEF9958A50BFDA06 ] HidIr C:\Windows\System32\drivers\hidir.sys
08:13:55.0441 2952 HidIr - ok
08:13:55.0519 2952 [ FAC37D7B3D6354A5A5E19A45B50B4008 ] hidserv C:\Windows\system32\hidserv.dll
08:13:55.0519 2952 hidserv - ok
08:13:55.0551 2952 [ 012C354B4AB48E9A7A657DF39E3A2073 ] HidUsb C:\Windows\System32\drivers\hidusb.sys
08:13:55.0551 2952 HidUsb - ok
08:13:55.0582 2952 [ 43F884B61A24377567CD0FEB35236334 ] hkmsvc C:\Windows\system32\kmsvc.dll
08:13:55.0582 2952 hkmsvc - ok
08:13:55.0613 2952 [ D3A6BCD0047EE7923C2C3960C4CDCA4D ] HMD C:\Windows\system32\DRIVERS\hmd.sys
08:13:55.0613 2952 HMD - ok
08:13:55.0660 2952 [ 33DFC14DFDCCFA7AA10E392F6A8EC1CF ] HomeGroupListener C:\Windows\system32\ListSvc.dll
08:13:55.0660 2952 HomeGroupListener - ok
08:13:55.0707 2952 [ E0D9F6FE18FA7F53ADD29AF719CE2B7E ] HomeGroupProvider C:\Windows\system32\provsvc.dll
08:13:55.0707 2952 HomeGroupProvider - ok
08:13:55.0785 2952 [ 2A8B93A01621E100A578E83C768AFA2C ] HP Support Assistant Service C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
08:13:55.0785 2952 HP Support Assistant Service - ok
08:13:55.0816 2952 [ 8B8E6BD988EAF18C1B86704BF05E5C03 ] hpdskflt C:\Windows\system32\DRIVERS\hpdskflt.sys
08:13:55.0816 2952 hpdskflt - ok
08:13:55.0894 2952 [ D2946D9F020AE76E9CEF9B4A6DF838C0 ] hpqwmiex C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
08:13:55.0925 2952 hpqwmiex - ok
08:13:55.0941 2952 [ 64DB7A8D97CA53DCCF93D0A1E08342CF ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
08:13:55.0941 2952 HpSAMD - ok
08:13:55.0972 2952 [ 0865F178E272C682B0689F1AA269128D ] hpsrv C:\Windows\system32\Hpservice.exe
08:13:55.0972 2952 hpsrv - ok
08:13:56.0050 2952 [ FFE8CB95E972DEB7A4582488DD9E0CDA ] HPWMISVC c:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe
08:13:56.0065 2952 HPWMISVC - ok
08:13:56.0112 2952 [ F4A91D985EB9D1D2717D538F3424603C ] HTTP C:\Windows\system32\drivers\HTTP.sys
08:13:56.0128 2952 HTTP - ok
08:13:56.0159 2952 [ 2A98301068801700906C06649860FE94 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
08:13:56.0159 2952 hwpolicy - ok
08:13:56.0175 2952 [ DC76901D82097C9E297F20C287CB9A27 ] hyperkbd C:\Windows\System32\drivers\hyperkbd.sys
08:13:56.0175 2952 hyperkbd - ok
08:13:56.0206 2952 [ 716413AB3CA12DE0A7222D28C1C9352C ] HyperVideo C:\Windows\system32\DRIVERS\HyperVideo.sys
08:13:56.0206 2952 HyperVideo - ok
08:13:56.0221 2952 [ C9E9CBF73AFFBFE3E801EFB516787BA3 ] i8042prt C:\Windows\System32\drivers\i8042prt.sys
08:13:56.0221 2952 i8042prt - ok
08:13:56.0284 2952 [ 0A34D806EF2767E62CAFEA1A150A8830 ] iaStorA C:\Windows\system32\drivers\iaStorA.sys
08:13:56.0284 2952 iaStorA - ok
08:13:56.0315 2952 [ 5E394EBD26FD68AA9300332C46BEDD62 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
08:13:56.0315 2952 iaStorV - ok
08:13:56.0393 2952 [ 95B3CEAF06A2DF96FE28CD0755D319C4 ] iddgiax C:\Windows\system32\drivers\ugmmqlxy.sys
08:13:56.0393 2952 iddgiax - ok
08:13:56.0658 2952 [ 83915E05E168AB63B48302F7DC5D8E00 ] igfx C:\Windows\system32\DRIVERS\igdkmd64.sys
08:13:56.0892 2952 igfx - ok
08:13:57.0001 2952 [ 24847A06B84339FEEDE5CABF3D27D320 ] iirsp C:\Windows\system32\drivers\iirsp.sys
08:13:57.0001 2952 iirsp - ok
08:13:57.0282 2952 [ E455C83E029121270BED73CDAC381F37 ] IKEEXT C:\Windows\System32\ikeext.dll
08:13:57.0298 2952 IKEEXT - ok
08:13:57.0532 2952 [ A893C4179AF52E4E3861D9957FF0412E ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
08:13:57.0579 2952 IntcAzAudAddService - ok
08:13:57.0610 2952 [ 4F37726CF764CA18A8A84F85EF3A7F24 ] intelide C:\Windows\system32\drivers\intelide.sys
08:13:57.0610 2952 intelide - ok
08:13:57.0641 2952 [ E15CDF68DD73423F15D4AC404793AF0D ] intelppm C:\Windows\System32\drivers\intelppm.sys
08:13:57.0641 2952 intelppm - ok
08:13:57.0657 2952 [ 8FCA66234A0933D796BB780B7953BAB9 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
08:13:57.0657 2952 IpFilterDriver - ok
08:13:57.0703 2952 [ C217B8D2E58C57A319B16125C3D4B69C ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
08:13:57.0719 2952 iphlpsvc - ok
08:13:57.0735 2952 [ 6E98A046A12AA113F8898AA5D612BD6E ] IPMIDRV C:\Windows\System32\drivers\IPMIDrv.sys
08:13:57.0750 2952 IPMIDRV - ok
08:13:57.0766 2952 [ 3969B9C218DD3FAA9F4ED2FFC3651C02 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
08:13:57.0766 2952 IPNAT - ok
08:13:57.0797 2952 [ 25CD7C4BB2863FFC2B0B311F0AEBF77C ] IRENUM C:\Windows\system32\drivers\irenum.sys
08:13:57.0797 2952 IRENUM - ok
08:13:57.0813 2952 [ D940C5BB9DC92E588533C19ABCC3D2C2 ] isapnp C:\Windows\system32\drivers\isapnp.sys
08:13:57.0813 2952 isapnp - ok
08:13:57.0891 2952 [ E6530FD4F61B40F338BF4355A21B9A09 ] iScsiPrt C:\Windows\System32\drivers\msiscsi.sys
08:13:57.0891 2952 iScsiPrt - ok
08:13:57.0984 2952 [ 8FBD94B69D6423E20ABCD59D86368B21 ] kbdclass C:\Windows\System32\drivers\kbdclass.sys
08:13:57.0984 2952 kbdclass - ok
08:13:58.0000 2952 [ E88C932ABDF8185A62C8F2FC7B051FB6 ] kbdhid C:\Windows\System32\drivers\kbdhid.sys
08:13:58.0000 2952 kbdhid - ok
08:13:58.0015 2952 [ FB6C185092E18011EF49989425C2AA87 ] kdnic C:\Windows\system32\DRIVERS\kdnic.sys
08:13:58.0015 2952 kdnic - ok
08:13:58.0031 2952 [ F702AB6181513303AB0FC8D59E52708B ] KeyIso C:\Windows\system32\lsass.exe
08:13:58.0047 2952 KeyIso - ok
08:13:58.0062 2952 [ DFA480F6DED551464F3A5B959F437800 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
08:13:58.0062 2952 KSecDD - ok
08:13:58.0093 2952 [ 127FB0AAD232BAAD2C9BBACD374F4FC5 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
08:13:58.0093 2952 KSecPkg - ok
08:13:58.0093 2952 [ 81492FEEBF2F26455B00EE8DBAE8A1B0 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
08:13:58.0109 2952 ksthunk - ok
08:13:58.0249 2952 [ 5825DBACEDC3812B5CF8D40B997BF210 ] KtmRm C:\Windows\system32\msdtckrm.dll
08:13:58.0249 2952 KtmRm - ok
08:13:58.0405 2952 [ 256EE31588257E8A555DBFAA13F1908E ] LanmanServer C:\Windows\system32\srvsvc.dll
08:13:58.0405 2952 LanmanServer - ok
08:13:58.0437 2952 [ 16650912BE5A94B40E0B3B4C39652B56 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
08:13:58.0452 2952 LanmanWorkstation - ok
08:13:58.0468 2952 [ CEEFD29FC551F289810B0B9381B321DC ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
08:13:58.0468 2952 lltdio - ok
08:13:58.0515 2952 [ BCF53485E0A94722CDE3C4A93CD8EB8C ] lltdsvc C:\Windows\System32\lltdsvc.dll
08:13:58.0515 2952 lltdsvc - ok
08:13:58.0530 2952 [ 5A2F7F1CBC2E631A497DAD16164E06D2 ] lmhosts C:\Windows\System32\lmhsvc.dll
08:13:58.0530 2952 lmhosts - ok
08:13:58.0577 2952 [ 022CDD12161B063D7852B1075BF3FFF2 ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
08:13:58.0577 2952 LSI_SAS - ok
08:13:58.0593 2952 [ 07AD59D669B996F29F91817F0ECFA34F ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys
08:13:58.0593 2952 LSI_SAS2 - ok
08:13:58.0624 2952 [ 216FB796AA4E252ACCE93B1BCB80B5EC ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
08:13:58.0624 2952 LSI_SCSI - ok
08:13:58.0671 2952 [ 5E80530AF37102488EE980B4A92AF99F ] LSI_SSS C:\Windows\system32\drivers\lsi_sss.sys
08:13:58.0671 2952 LSI_SSS - ok
08:13:58.0717 2952 [ A57BA284F5996FFD32DCDBC41A4657DB ] LSM C:\Windows\System32\lsm.dll
08:13:58.0733 2952 LSM - ok
08:13:58.0749 2952 [ 2BDC5D711FA61307CE6190D47C956368 ] luafv C:\Windows\system32\drivers\luafv.sys
08:13:58.0764 2952 luafv - ok
08:13:58.0795 2952 [ FD5465B876D55534117963FAAA4B9DFC ] MBAMProtector C:\Windows\system32\drivers\mbam.sys
08:13:58.0795 2952 MBAMProtector - ok
08:13:58.0873 2952 [ 0E08BDD7326E657D59DB40BAD23D8169 ] MBAMScheduler C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
08:13:58.0905 2952 MBAMScheduler - ok
08:13:58.0936 2952 [ A8E7F3DB083EB0839DFC1C763CDD2594 ] MBAMService C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
08:13:58.0967 2952 MBAMService - ok
08:13:59.0029 2952 [ 6140163BFE9D8F2DFDBA088ED5521C13 ] MBAMSwissArmy C:\Windows\system32\drivers\MBAMSwissArmy.sys
08:13:59.0045 2952 MBAMSwissArmy - ok
08:13:59.0061 2952 [ 9B0D829C3BE4E7472DB9DD2B79908E3C ] megasas C:\Windows\system32\drivers\megasas.sys
08:13:59.0061 2952 megasas - ok
08:13:59.0092 2952 [ ECC3F54C7AFC318271C4F0B4606D8DB0 ] MegaSR C:\Windows\system32\drivers\MegaSR.sys
08:13:59.0092 2952 MegaSR - ok
08:13:59.0295 2952 Microsoft SharePoint Workspace Audit Service - ok
08:13:59.0326 2952 [ EEE908BE7143FCA48CF0CB87214E2AB8 ] MMCSS C:\Windows\system32\mmcss.dll
08:13:59.0326 2952 MMCSS - ok
08:13:59.0341 2952 [ 780098AD5DA8A4822E2563984C85EF7B ] Modem C:\Windows\system32\drivers\modem.sys
08:13:59.0341 2952 Modem - ok
08:13:59.0388 2952 [ EA8EAD3F5B762F889CC7F3966625B48B ] monitor C:\Windows\System32\drivers\monitor.sys
08:13:59.0388 2952 monitor - ok
08:13:59.0404 2952 [ 618446B98C79776654340CE27C73485E ] mouclass C:\Windows\System32\drivers\mouclass.sys
08:13:59.0404 2952 mouclass - ok
08:13:59.0435 2952 [ C0ADEBED913295803B579ED288936CBB ] mouhid C:\Windows\System32\drivers\mouhid.sys
08:13:59.0435 2952 mouhid - ok
08:13:59.0451 2952 [ 89D263DBF08119CE16273991C120D6DD ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
08:13:59.0451 2952 mountmgr - ok
08:13:59.0482 2952 [ 4CCBBD4944777CA100B9A6C2F149A46F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
08:13:59.0482 2952 mpsdrv - ok
08:13:59.0513 2952 [ 9DE3341BD4E14BC5FADFCAD3019F2D0D ] MpsSvc C:\Windows\system32\mpssvc.dll
08:13:59.0529 2952 MpsSvc - ok
08:13:59.0560 2952 [ 3D70147F55F1EC84EB9139ED7FFE48BC ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
08:13:59.0560 2952 MRxDAV - ok
08:13:59.0607 2952 [ 93179D48066918323628CB016D8C94DC ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
08:13:59.0607 2952 mrxsmb - ok
08:13:59.0622 2952 [ 06D5F2FA3C61E8EA91648EA8E9F99FD3 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
08:13:59.0622 2952 mrxsmb10 - ok
08:13:59.0653 2952 [ 5C7DD2E5759FFCCD2C7341C1B90F2B26 ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
08:13:59.0653 2952 mrxsmb20 - ok
08:13:59.0716 2952 [ 98487487D6B3797CA927E9D7B030AE13 ] MsBridge C:\Windows\system32\DRIVERS\bridge.sys
08:13:59.0716 2952 MsBridge - ok
08:13:59.0731 2952 [ 4A07458EB4F17573BD39F22029A991C1 ] MSDTC C:\Windows\System32\msdtc.exe
08:13:59.0731 2952 MSDTC - ok
08:13:59.0903 2952 [ 3886F1F2A4D2900ABAA7E4486BEEE6A2 ] Msfs C:\Windows\system32\drivers\Msfs.sys
08:13:59.0903 2952 Msfs - ok
08:13:59.0934 2952 [ C32A7A39B960A42BA9D4FBE47213CA03 ] msgpiowin32 C:\Windows\System32\drivers\msgpiowin32.sys
08:13:59.0934 2952 msgpiowin32 - ok
08:13:59.0950 2952 [ D3857A767B91A061B408CCAB02DA4F40 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
08:13:59.0950 2952 mshidkmdf - ok
08:13:59.0981 2952 [ 839B48910FB1E887635C48F3EC11A05E ] mshidumdf C:\Windows\System32\drivers\mshidumdf.sys
08:13:59.0981 2952 mshidumdf - ok
08:13:59.0997 2952 [ 55C0DB741E3AB7463242B185B1C2997C ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
08:13:59.0997 2952 msisadrv - ok
08:14:00.0028 2952 [ 216C6B035A4BA5560E1255BD8E5BB89F ] MSiSCSI C:\Windows\system32\iscsiexe.dll
08:14:00.0028 2952 MSiSCSI - ok
08:14:00.0043 2952 msiserver - ok
08:14:00.0075 2952 [ 509809566E49F4411055864EA8D437CD ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
08:14:00.0075 2952 MSKSSRV - ok
08:14:00.0106 2952 [ 63145201D6458E4958E572E7D6FC2604 ] MsLldp C:\Windows\system32\DRIVERS\mslldp.sys
08:14:00.0106 2952 MsLldp - ok
08:14:00.0137 2952 [ 99D526E803DB6D7FF290FD98B6204641 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
08:14:00.0153 2952 MSPCLOCK - ok
08:14:00.0168 2952 [ 06FA77C3E2A491ADCD704C5E73006269 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
08:14:00.0168 2952 MSPQM - ok
08:14:00.0199 2952 [ E134EC4DE11CF78CB01432D180710D84 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
08:14:00.0199 2952 MsRPC - ok
08:14:00.0215 2952 [ B5AECF12F09DEE97C9FCAA5BA016CE1E ] mssmbios C:\Windows\System32\drivers\mssmbios.sys
08:14:00.0215 2952 mssmbios - ok
08:14:00.0246 2952 [ 72D66A05E0F99F2528F6C6204FD22AA1 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
08:14:00.0262 2952 MSTEE - ok
08:14:00.0293 2952 [ 8AAAE399FC255FA105D4158CBA289001 ] MTConfig C:\Windows\System32\drivers\MTConfig.sys
08:14:00.0293 2952 MTConfig - ok
08:14:00.0387 2952 [ 3BCB702F3E6CC622DCAFCAA45D7CDE0A ] Mup C:\Windows\system32\Drivers\mup.sys
08:14:00.0402 2952 Mup - ok
08:14:00.0418 2952 [ 3A1E095277BBD406CEA8EA6B76950664 ] mvumis C:\Windows\system32\drivers\mvumis.sys
08:14:00.0418 2952 mvumis - ok
08:14:00.0465 2952 [ 4B18840511D720BA118D3017E8165875 ] napagent C:\Windows\system32\qagentRT.dll
08:14:00.0465 2952 napagent - ok
08:14:00.0496 2952 [ 43D7388A90A4C6EA346A4D6FF0377479 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
08:14:00.0543 2952 NativeWifiP - ok
08:14:00.0574 2952 [ 6A0C3996DA7DAE6D6939676D786EEEC4 ] NcaSvc C:\Windows\System32\ncasvc.dll
08:14:00.0574 2952 NcaSvc - ok
08:14:00.0589 2952 [ C982FE4CC91DECE2259F494FCEB4030F ] NcdAutoSetup C:\Windows\System32\NcdAutoSetup.dll
08:14:00.0589 2952 NcdAutoSetup - ok
08:14:00.0636 2952 [ A10E176F3B2BF83EDE7B5C4658C93B66 ] NDIS C:\Windows\system32\drivers\ndis.sys
08:14:00.0652 2952 NDIS - ok
08:14:00.0667 2952 [ 39C8A1D9D46F5E83A016BCAB72455284 ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
08:14:00.0667 2952 NdisCap - ok
08:14:00.0683 2952 [ 762941932B7E4C588E48A577BA9D6440 ] NdisImPlatform C:\Windows\system32\DRIVERS\NdisImPlatform.sys
08:14:00.0683 2952 NdisImPlatform - ok
08:14:00.0714 2952 [ 7A6F8A6D0E01432EBA294EF29CDD0FA7 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
08:14:00.0714 2952 NdisTapi - ok
08:14:00.0730 2952 [ 79AB68BB3FFF974AD4F41FA559F4EC67 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
08:14:00.0730 2952 Ndisuio - ok
08:14:00.0745 2952 [ 62C7DBF4F9301F76CF87D4B9D8F57BF8 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
08:14:00.0745 2952 NdisWan - ok
08:14:00.0761 2952 [ 62C7DBF4F9301F76CF87D4B9D8F57BF8 ] NDISWANLEGACY C:\Windows\system32\DRIVERS\ndiswan.sys
08:14:00.0761 2952 NDISWANLEGACY - ok
08:14:00.0792 2952 [ 3730942D7DB2F8BB5F84542B7FF6F650 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
08:14:00.0792 2952 NDProxy - ok
08:14:00.0823 2952 [ D3F60A4345FCA9C1BE68AD7D0D6DE770 ] Ndu C:\Windows\system32\drivers\Ndu.sys
08:14:00.0823 2952 Ndu - ok
08:14:00.0839 2952 [ 7C203A76394F9AE68F69EEE5F9612C4A ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
08:14:00.0839 2952 NetBIOS - ok
08:14:00.0855 2952 [ 7CEC25C682D319D484630B3952C31A11 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
08:14:00.0855 2952 NetBT - ok
08:14:00.0870 2952 [ F702AB6181513303AB0FC8D59E52708B ] Netlogon C:\Windows\system32\lsass.exe
08:14:00.0886 2952 Netlogon - ok
08:14:00.0901 2952 [ 89519D29CBEC2121CA65CC29C4D345E0 ] Netman C:\Windows\System32\netman.dll
08:14:00.0917 2952 Netman - ok
08:14:00.0948 2952 [ 79FA9393C67EBBF92A56923592CF7A7C ] netprofm C:\Windows\System32\netprofmsvc.dll
08:14:00.0964 2952 netprofm - ok
08:14:01.0042 2952 [ E35F159C7D4494834C92F6F3F411EAD7 ] netr28x C:\Windows\system32\DRIVERS\netr28x.sys
08:14:01.0073 2952 netr28x - ok
08:14:01.0135 2952 [ 5243CFC2E7161C91C2B355240035B9E4 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
08:14:01.0151 2952 NetTcpPortSharing - ok
08:14:01.0182 2952 [ 12DD2800E4EEA37DC9AE256AD62423B4 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
08:14:01.0182 2952 nfrd960 - ok
08:14:01.0213 2952 [ 80ABCD4C2DE9FD832477303AE0CA3BE5 ] NlaSvc C:\Windows\System32\nlasvc.dll
08:14:01.0229 2952 NlaSvc - ok
08:14:01.0260 2952 [ 17E19A742FB30C002F8B43575451DBE1 ] Npfs C:\Windows\system32\drivers\Npfs.sys
08:14:01.0260 2952 Npfs - ok
08:14:01.0276 2952 [ 8ED299C30792544264E558BEA79F0947 ] npsvctrig C:\Windows\System32\drivers\npsvctrig.sys
08:14:01.0276 2952 npsvctrig - ok
08:14:01.0338 2952 [ 832B5FDF0B5577713FD7F2465FCD0ACE ] nsi C:\Windows\system32\nsisvc.dll
08:14:01.0354 2952 nsi - ok
08:14:01.0369 2952 [ 689B3B1E95C70ABF7AFF29F9406EF1E0 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
08:14:01.0369 2952 nsiproxy - ok
08:14:01.0432 2952 [ 7BE3EDFFA3216F989A6BDCB14795DD08 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
08:14:01.0463 2952 Ntfs - ok
08:14:01.0494 2952 [ 4163ADE07DB51843AE31F65B94F5398D ] Null C:\Windows\system32\drivers\Null.sys
08:14:01.0494 2952 Null - ok
08:14:01.0525 2952 [ D6D34118263412D3AAA8348A9572B7F2 ] nvraid C:\Windows\system32\drivers\nvraid.sys
08:14:01.0525 2952 nvraid - ok
08:14:01.0541 2952 [ 27AFC428D1D32ABD04A86763A4EDDEA9 ] nvstor C:\Windows\system32\drivers\nvstor.sys
08:14:01.0541 2952 nvstor - ok
08:14:01.0557 2952 [ 051CFB5107BAAE510419BDC41F8C4036 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
08:14:01.0650 2952 nv_agp - ok
08:14:01.0681 2952 [ 9D10F99A6712E28F8ACD5641E3A7EA6B ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
08:14:01.0697 2952 ose - ok
08:14:01.0915 2952 [ 61BFFB5F57AD12F83AB64B7181829B34 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
08:14:01.0978 2952 osppsvc - ok
08:14:02.0025 2952 [ AB76700D764A342D7475FB8F47CAB18C ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
08:14:02.0040 2952 p2pimsvc - ok
08:14:02.0071 2952 [ 4319FD931DCD796435ECB5DB4A04FBA5 ] p2psvc C:\Windows\system32\p2psvc.dll
08:14:02.0071 2952 p2psvc - ok
08:14:02.0118 2952 [ 4563DAF8C6A740AD7F501E219BD10766 ] Parport C:\Windows\System32\drivers\parport.sys
08:14:02.0118 2952 Parport - ok
08:14:02.0134 2952 [ D6ACCF9F2EEEEA711C14EFD976E573F3 ] partmgr C:\Windows\system32\drivers\partmgr.sys
08:14:02.0134 2952 partmgr - ok
08:14:02.0181 2952 [ 4811D9EC53649105A5A8BEA661B0F936 ] PcaSvc C:\Windows\System32\pcasvc.dll
08:14:02.0181 2952 PcaSvc - ok
08:14:02.0212 2952 [ 4A003E8F718C1E6A2050CA98CD53E3E2 ] pci C:\Windows\system32\drivers\pci.sys
08:14:02.0212 2952 pci - ok
08:14:02.0227 2952 [ F9908D274D458220F91E89B54D78D837 ] pciide C:\Windows\system32\drivers\pciide.sys
08:14:02.0227 2952 pciide - ok
08:14:02.0259 2952 [ 84D19CB6102627932DCB5DFDF89FE269 ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
08:14:02.0259 2952 pcmcia - ok
08:14:02.0274 2952 [ CEBBAD5391C2644560C55628A40BFD27 ] pcw C:\Windows\system32\drivers\pcw.sys
08:14:02.0274 2952 pcw - ok
08:14:02.0321 2952 [ 0698DEDEAD6A00AD0D468C687D830FBF ] pdc C:\Windows\system32\drivers\pdc.sys
08:14:02.0321 2952 pdc - ok
08:14:02.0352 2952 [ 61FE70659CD43E07F94DA4DC31DEC493 ] PEAUTH C:\Windows\system32\drivers\peauth.sys
08:14:02.0368 2952 PEAUTH - ok
08:14:02.0446 2952 [ EB88FA19F0EA05DD04BE9C5FFEEFFE1A ] PerfHost C:\Windows\SysWow64\perfhost.exe
08:14:02.0461 2952 PerfHost - ok
08:14:02.0524 2952 [ 6E84BFF58F7643499277F29DFA2F8C8D ] pla C:\Windows\system32\pla.dll
08:14:02.0586 2952 pla - ok
08:14:02.0617 2952 [ 799BE46D45D486704CE0F37CA5385262 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
08:14:02.0633 2952 PlugPlay - ok
08:14:02.0649 2952 [ 8E2414E818C26C4A9C70CB2B8567F04F ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
08:14:02.0649 2952 PNRPAutoReg - ok
08:14:02.0664 2952 [ AB76700D764A342D7475FB8F47CAB18C ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
08:14:02.0680 2952 PNRPsvc - ok
08:14:02.0727 2952 [ 0108C8E5176D590F242701EF5A62CC26 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll

pavlinka39
Level 1
Level 1
Příspěvky: 69
Registrován: červenec 11
Pohlaví: Žena
Stav:
Offline

Re: prosim o kontrolu problem s vypnutim

Příspěvekod pavlinka39 » 26 dub 2014 08:33

08:14:02.0727 2952 PolicyAgent - ok
08:14:02.0773 2952 [ F1E067F56373F11EA4B785CAE823740A ] Power C:\Windows\system32\umpo.dll
08:14:02.0773 2952 Power - ok
08:14:02.0805 2952 [ 362D47E5B4D67270DE4B8606036F4ADD ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
08:14:02.0805 2952 PptpMiniport - ok
08:14:02.0929 2952 [ 9D59831262CAD44E709D695FC9D5E7AB ] PrintNotify C:\Windows\system32\spool\DRIVERS\x64\3\PrintConfig.dll
08:14:02.0976 2952 PrintNotify - ok
08:14:03.0007 2952 [ DD979EB6A7212F60E4AFBE96EDC7AE6D ] Processor C:\Windows\System32\drivers\processr.sys
08:14:03.0007 2952 Processor - ok
08:14:03.0023 2952 [ 429E8502AD2227CF88F8840FC5BD590D ] ProfSvc C:\Windows\system32\profsvc.dll
08:14:03.0039 2952 ProfSvc - ok
08:14:03.0054 2952 [ EB8034147D4820CD31BFCB11A2A652DF ] Psched C:\Windows\system32\DRIVERS\pacer.sys
08:14:03.0070 2952 Psched - ok
08:14:03.0101 2952 [ 0AFBF333B6F87A2F598EAB379AF100B8 ] QWAVE C:\Windows\system32\qwave.dll
08:14:03.0101 2952 QWAVE - ok
08:14:03.0195 2952 [ 13D47BB0CCA2FC51BD15F8E85C6A078E ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
08:14:03.0195 2952 QWAVEdrv - ok
08:14:03.0226 2952 [ 873C60F8178100557740A832FCE10B5F ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
08:14:03.0226 2952 RasAcd - ok
08:14:03.0273 2952 [ 69B93F623B130976243ECA3D84CC99CA ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
08:14:03.0273 2952 RasAgileVpn - ok
08:14:03.0288 2952 [ 005F6E54C4A2DA4EBF68FB0392CE8BB0 ] RasAuto C:\Windows\System32\rasauto.dll
08:14:03.0304 2952 RasAuto - ok
08:14:03.0304 2952 [ A14D625C5AEE5FFE0F47D1A1D419FAAE ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
08:14:03.0319 2952 Rasl2tp - ok
08:14:03.0335 2952 [ C923C785A2DE0B396AD6D13ACAFF2DE9 ] RasMan C:\Windows\System32\rasmans.dll
08:14:03.0335 2952 RasMan - ok
08:14:03.0351 2952 [ 00695B9C2DB6111064499C529E90C042 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
08:14:03.0366 2952 RasPppoe - ok
08:14:03.0366 2952 [ A7F24D8CD1956B0A1FDCB86CC5114DE4 ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
08:14:03.0382 2952 RasSstp - ok
08:14:03.0413 2952 [ CA03D642ACE58E1BA54E4B383F91CD69 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
08:14:03.0413 2952 rdbss - ok
08:14:03.0444 2952 [ CA7DF5EC95D8DE0DD24BE7FF97369F68 ] rdpbus C:\Windows\System32\drivers\rdpbus.sys
08:14:03.0444 2952 rdpbus - ok
08:14:03.0460 2952 [ B2A3AD74FF2E2FFA73AF2567108231B3 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys
08:14:03.0460 2952 RDPDR - ok
08:14:03.0491 2952 [ 57F4787E4602A3FCA719C0A33137C6DA ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
08:14:03.0507 2952 RdpVideoMiniport - ok
08:14:03.0522 2952 [ B3CB0721E81E30419CE7D837EF4EA151 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
08:14:03.0522 2952 RDPWD - ok
08:14:03.0553 2952 [ 62C1F8A0685FE07E998AA296C4F697C4 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
08:14:03.0569 2952 rdyboost - ok
08:14:03.0600 2952 [ 3663CCF243EE0C04E9F6F91ED1737273 ] RemoteAccess C:\Windows\System32\mprdim.dll
08:14:03.0616 2952 RemoteAccess - ok
08:14:03.0631 2952 [ E80DD61E52EDFFF9DA1ED7260A68855B ] RemoteRegistry C:\Windows\system32\regsvc.dll
08:14:03.0647 2952 RemoteRegistry - ok
08:14:03.0678 2952 [ CCBFCABDFE2BC22F0645CEAADDB36004 ] RFCOMM C:\Windows\System32\drivers\rfcomm.sys
08:14:03.0678 2952 RFCOMM - ok
08:14:03.0709 2952 [ 73F2E030B5C24E4E41401B5F0D59E6FD ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
08:14:03.0741 2952 RpcEptMapper - ok
08:14:03.0787 2952 [ 10B21284B3D964AB3DC45490E57D422E ] RpcLocator C:\Windows\system32\locator.exe
08:14:03.0787 2952 RpcLocator - ok
08:14:03.0834 2952 [ 1EC6E533C954BDDF2A37E7851A7E58FD ] RpcSs C:\Windows\system32\rpcss.dll
08:14:03.0850 2952 RpcSs - ok
08:14:03.0881 2952 [ 403535EAB2E89E7D09F781F4FEC451B3 ] RSP2STOR C:\Windows\system32\DRIVERS\RtsP2Stor.sys
08:14:03.0881 2952 RSP2STOR - ok
08:14:04.0037 2952 [ E04E770DD198B9399640717145E79EBF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
08:14:04.0053 2952 rspndr - ok
08:14:04.0177 2952 [ 3B7A94926B52D171C5B515EDECC2118E ] rtbth C:\Windows\System32\drivers\rtbth.sys
08:14:04.0193 2952 rtbth - ok
08:14:04.0255 2952 [ DDF3EFB4AD226C61D0ADA6E779E3D968 ] RtkAudioService C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
08:14:04.0255 2952 RtkAudioService - ok
08:14:04.0318 2952 [ CFE738C524F35B6E523A4D0F54840C30 ] RTL8168 C:\Windows\system32\DRIVERS\Rt630x64.sys
08:14:04.0318 2952 RTL8168 - ok
08:14:04.0349 2952 [ 752EC7DCD2F96871A3857EEE6AFE965A ] s3cap C:\Windows\System32\drivers\vms3cap.sys
08:14:04.0349 2952 s3cap - ok
08:14:04.0365 2952 [ F702AB6181513303AB0FC8D59E52708B ] SamSs C:\Windows\system32\lsass.exe
08:14:04.0365 2952 SamSs - ok
08:14:04.0396 2952 [ 9C7B28CE0D136DB226E24DB3BC817F92 ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
08:14:04.0396 2952 sbp2port - ok
08:14:04.0427 2952 [ 14316954FCE79C9DE5A0AFF9D42C83AA ] SCardSvr C:\Windows\System32\SCardSvr.dll
08:14:04.0443 2952 SCardSvr - ok
08:14:04.0458 2952 [ 5D7733A12756B267FCA021672B26BC9E ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
08:14:04.0458 2952 scfilter - ok
08:14:04.0521 2952 [ ED40ED9A65F3E79A8C43DD50C5FDADBF ] Schedule C:\Windows\system32\schedsvc.dll
08:14:04.0536 2952 Schedule - ok
08:14:04.0567 2952 [ BAF8F0F55BC300E5F882E521F054E345 ] SCPolicySvc C:\Windows\System32\certprop.dll
08:14:04.0583 2952 SCPolicySvc - ok
08:14:04.0692 2952 [ F58B030A0664385C707B8C1C63682041 ] sdbus C:\Windows\System32\drivers\sdbus.sys
08:14:04.0692 2952 sdbus - ok
08:14:04.0723 2952 [ 92968277ED491E4B3DDA361E3952361E ] SDRSVC C:\Windows\System32\SDRSVC.dll
08:14:04.0739 2952 SDRSVC - ok
08:14:04.0770 2952 [ BB107AA9980B0DA4E19A3A90C3BD4460 ] sdstor C:\Windows\System32\drivers\sdstor.sys
08:14:04.0770 2952 sdstor - ok
08:14:04.0786 2952 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys
08:14:04.0786 2952 secdrv - ok
08:14:04.0817 2952 [ CD282626738B6BC92B6E7CD0AAE95B63 ] seclogon C:\Windows\system32\seclogon.dll
08:14:04.0817 2952 seclogon - ok
08:14:04.0848 2952 [ 9C51620998F0763039DFA6BF68E475ED ] SENS C:\Windows\System32\sens.dll
08:14:04.0848 2952 SENS - ok
08:14:04.0864 2952 [ 0D50B4B860DAB65241628D04CD33ACAE ] SensrSvc C:\Windows\system32\sensrsvc.dll
08:14:04.0879 2952 SensrSvc - ok
08:14:04.0957 2952 [ 87C46B239A7EEF30FDFDD5E9BD46130C ] SerCx C:\Windows\system32\drivers\SerCx.sys
08:14:04.0957 2952 SerCx - ok
08:14:04.0973 2952 [ 7A1F9347C85FD55E39B8A76B3A25C5AD ] Serenum C:\Windows\System32\drivers\serenum.sys
08:14:04.0973 2952 Serenum - ok
08:14:05.0004 2952 [ F640A0A218BBF857F1D04A15D7D939F6 ] Serial C:\Windows\System32\drivers\serial.sys
08:14:05.0004 2952 Serial - ok
08:14:05.0020 2952 [ F1A5F56B2620B862CC28FF96A0A6DAAB ] sermouse C:\Windows\System32\drivers\sermouse.sys
08:14:05.0020 2952 sermouse - ok
08:14:05.0067 2952 [ CB60A60340788C8D6DE2A269D28086AB ] SessionEnv C:\Windows\system32\sessenv.dll
08:14:05.0082 2952 SessionEnv - ok
08:14:05.0113 2952 [ 7EE65419B29302C795714FF8073969A1 ] sfloppy C:\Windows\System32\drivers\sfloppy.sys
08:14:05.0113 2952 sfloppy - ok
08:14:05.0160 2952 [ 090AE16F79C8EAD04E6031F863DA85F3 ] SharedAccess C:\Windows\System32\ipnathlp.dll
08:14:05.0160 2952 SharedAccess - ok
08:14:05.0238 2952 [ A77F3ABE13FCC698511E5DEC7ACEBD5F ] ShellHWDetection C:\Windows\System32\shsvcs.dll
08:14:05.0254 2952 ShellHWDetection - ok
08:14:05.0269 2952 [ 2560721D6F16D5B611C36A3A9D28C1B2 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys
08:14:05.0269 2952 SiSRaid2 - ok
08:14:05.0301 2952 [ 3AA8FDE1DBF65BB8B88B053529554A0D ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
08:14:05.0301 2952 SiSRaid4 - ok
08:14:05.0394 2952 [ 50D9949020E02B847CD48F1243FCB895 ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
08:14:05.0394 2952 SkypeUpdate - ok
08:14:05.0425 2952 [ 1CAF46F60B49BA5004E4B9DDCF6EBE0A ] SmbDrv C:\Windows\System32\drivers\Smb_driver_AMDASF.sys
08:14:05.0425 2952 SmbDrv - ok
08:14:05.0441 2952 [ 8665EEC2ED81F1B26CC41DDAB6672B65 ] SmbDrvI C:\Windows\System32\drivers\Smb_driver_Intel.sys
08:14:05.0441 2952 SmbDrvI - ok
08:14:05.0472 2952 [ E660156A4588A84305CB772FD2C0DB21 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
08:14:05.0488 2952 SNMPTRAP - ok
08:14:05.0519 2952 [ 9110193D93960E38B8692E4519C75D72 ] spaceport C:\Windows\system32\drivers\spaceport.sys
08:14:05.0535 2952 spaceport - ok
08:14:05.0581 2952 [ 3D8679C8DF52EB26EB7583A4E0A29202 ] SpbCx C:\Windows\system32\drivers\SpbCx.sys
08:14:05.0581 2952 SpbCx - ok
08:14:05.0628 2952 [ 3F215BF2D4D8D6756298B25B579772C2 ] Spooler C:\Windows\System32\spoolsv.exe
08:14:05.0644 2952 Spooler - ok
08:14:05.0769 2952 [ 061A977C920FBE4BF71FF47C966DDDCA ] sppsvc C:\Windows\system32\sppsvc.exe
08:14:05.0893 2952 sppsvc - ok
08:14:05.0925 2952 [ 0F1FCD575A03ABDE13FCA9D0ADE4DDA6 ] srv C:\Windows\system32\DRIVERS\srv.sys
08:14:05.0925 2952 srv - ok
08:14:05.0971 2952 [ 56218A571ECF8D55E0CDFF8DF2546CF1 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
08:14:05.0971 2952 srv2 - ok
08:14:06.0003 2952 [ 14FC338B80CFF7E04215133B568D15C4 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
08:14:06.0003 2952 srvnet - ok
08:14:06.0065 2952 [ 7A20882D76D4A78240A5AC9F2C2EBA21 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
08:14:06.0081 2952 SSDPSRV - ok
08:14:06.0081 2952 [ D233B16999A8E626F6004BD7814C57EC ] SstpSvc C:\Windows\system32\sstpsvc.dll
08:14:06.0096 2952 SstpSvc - ok
08:14:06.0127 2952 [ 4E85355B94CFCB67C135F6521A4895A7 ] stexstor C:\Windows\system32\drivers\stexstor.sys
08:14:06.0127 2952 stexstor - ok
08:14:06.0174 2952 [ BAC8A721736AECC55A4F71523AEAB65F ] stisvc C:\Windows\System32\wiaservc.dll
08:14:06.0174 2952 stisvc - ok
08:14:06.0221 2952 [ B240874B2CA0CD02E8CD11E140B14C57 ] storahci C:\Windows\system32\drivers\storahci.sys
08:14:06.0221 2952 storahci - ok
08:14:06.0252 2952 [ F74DBC95A57B1EE866D3732EB5F79BE2 ] storflt C:\Windows\system32\DRIVERS\vmstorfl.sys
08:14:06.0252 2952 storflt - ok
08:14:06.0283 2952 [ 5337E138B49ED1F44CCBA4073BC35C20 ] StorSvc C:\Windows\system32\storsvc.dll
08:14:06.0283 2952 StorSvc - ok
08:14:06.0315 2952 [ 543CD3CC0E05B8D8815E0D4F040B6F59 ] storvsc C:\Windows\system32\drivers\storvsc.sys
08:14:06.0315 2952 storvsc - ok
08:14:06.0377 2952 [ 8BC1C1ED6EF9C985A3FAA6A72F41679A ] svsvc C:\Windows\system32\svsvc.dll
08:14:06.0377 2952 svsvc - ok
08:14:06.0393 2952 [ 4AFD66AAE74FFB5986BC240744DC5FC9 ] swenum C:\Windows\System32\drivers\swenum.sys
08:14:06.0408 2952 swenum - ok
08:14:06.0424 2952 [ 502F9488540051F3E6C39889ECFA76BB ] swprv C:\Windows\System32\swprv.dll
08:14:06.0439 2952 swprv - ok
08:14:06.0486 2952 [ 2D6C2C672D092B82FD22AFDB9E32B1EF ] SynTP C:\Windows\system32\DRIVERS\SynTP.sys
08:14:06.0486 2952 SynTP - ok
08:14:06.0549 2952 [ A06CB9269D29EE3D0F3F5630ABB660B8 ] SysMain C:\Windows\system32\sysmain.dll
08:14:06.0564 2952 SysMain - ok
08:14:06.0627 2952 [ 6FB88606C4A71E1BFAF97D63A676C673 ] SystemEventsBroker C:\Windows\System32\SystemEventsBrokerServer.dll
08:14:06.0627 2952 SystemEventsBroker - ok
08:14:06.0658 2952 [ A6C06C45C44AD06C70AF8899AEC15BDC ] TabletInputService C:\Windows\System32\TabSvc.dll
08:14:06.0658 2952 TabletInputService - ok
08:14:06.0689 2952 [ 88B7721AB551C4325036B25A34A2BF7B ] TapiSrv C:\Windows\System32\tapisrv.dll
08:14:06.0689 2952 TapiSrv - ok
08:14:06.0767 2952 [ B23882881EFD9404B62993906BC38709 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
08:14:06.0798 2952 Tcpip - ok
08:14:06.0907 2952 [ B23882881EFD9404B62993906BC38709 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
08:14:06.0923 2952 TCPIP6 - ok
08:14:06.0954 2952 [ 8F2A13A5DF99D72FDDE87F502A66F989 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
08:14:06.0954 2952 tcpipreg - ok
08:14:07.0001 2952 [ 73DC722CE5DF26D7638CE2446F2655C7 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
08:14:07.0001 2952 tdx - ok
08:14:07.0282 2952 [ CC907C2FB839D3F92690A25FF8E463BE ] TeamViewer9 C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
08:14:07.0344 2952 TeamViewer9 - ok
08:14:07.0375 2952 [ F7C8AB5D8AFFAA318D6A21093D139BF4 ] terminpt C:\Windows\System32\drivers\terminpt.sys
08:14:07.0375 2952 terminpt - ok
08:14:07.0422 2952 [ 541EE228D0DEF392F7B2DFD885DD021B ] TermService C:\Windows\System32\termsrv.dll
08:14:07.0516 2952 TermService - ok
08:14:07.0531 2952 [ 519A6F672FFF56B7D8EE8C730CEC8ECD ] Themes C:\Windows\system32\themeservice.dll
08:14:07.0531 2952 Themes - ok
08:14:07.0563 2952 [ EEE908BE7143FCA48CF0CB87214E2AB8 ] THREADORDER C:\Windows\system32\mmcss.dll
08:14:07.0578 2952 THREADORDER - ok
08:14:07.0609 2952 [ 4515B9E4140F04FB3907692DF89FCA87 ] TimeBroker C:\Windows\System32\TimeBrokerServer.dll
08:14:07.0609 2952 TimeBroker - ok
08:14:07.0641 2952 [ E94F7A7B48C7638D1F3F8089344C97B7 ] TPM C:\Windows\system32\drivers\tpm.sys
08:14:07.0656 2952 TPM - ok
08:14:07.0672 2952 [ 8C8CF3041B27E7657ADD0EE17F6DBFCA ] TrkWks C:\Windows\System32\trkwks.dll
08:14:07.0687 2952 TrkWks - ok
08:14:07.0734 2952 [ 8ABBB5CE0C62E0A6D28F32F44B7F865C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
08:14:07.0734 2952 TrustedInstaller - ok
08:14:07.0750 2952 [ 4E7C5FB10A50435523DE0CAA37DE2BD3 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
08:14:07.0765 2952 TsUsbFlt - ok
08:14:07.0765 2952 [ 16D684A820872EE54F6370703AC0B513 ] TsUsbGD C:\Windows\System32\drivers\TsUsbGD.sys
08:14:07.0765 2952 TsUsbGD - ok
08:14:07.0797 2952 [ 78C9EE193AC2B4CBDBC48B620314D740 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
08:14:07.0797 2952 tunnel - ok
08:14:07.0812 2952 [ 6D4F67CA56ACA2085DFA2CD89EAFBC1A ] uagp35 C:\Windows\system32\drivers\uagp35.sys
08:14:07.0828 2952 uagp35 - ok
08:14:07.0828 2952 [ 6FD6D03B7752C78712E5CFF29A305026 ] UASPStor C:\Windows\System32\drivers\uaspstor.sys
08:14:07.0843 2952 UASPStor - ok
08:14:07.0875 2952 [ 061BA3EE0D2BE17944990544008CF190 ] UCX01000 C:\Windows\System32\drivers\ucx01000.sys
08:14:07.0875 2952 UCX01000 - ok
08:14:07.0921 2952 [ 25C50F4EDF70D0A831E0566BD181CCF2 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
08:14:07.0937 2952 udfs - ok
08:14:07.0968 2952 [ FB3475FEA1CCB0DAEA1EBE44D0E3BB7D ] UI0Detect C:\Windows\system32\UI0Detect.exe
08:14:07.0968 2952 UI0Detect - ok
08:14:07.0984 2952 [ 07FEBCDF24FABA0D47B635D85A0FFB7A ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
08:14:07.0984 2952 uliagpkx - ok
08:14:07.0999 2952 [ 02CEB3FE6152668A7BA420B93B664860 ] umbus C:\Windows\System32\drivers\umbus.sys
08:14:07.0999 2952 umbus - ok
08:14:08.0015 2952 [ 991EE6B5FC41EAEF99C8AF5B92F2CA09 ] UmPass C:\Windows\System32\drivers\umpass.sys
08:14:08.0031 2952 UmPass - ok
08:14:08.0124 2952 [ 43FEFB040A0CC30F795FBF544169594D ] UmRdpService C:\Windows\System32\umrdp.dll
08:14:08.0124 2952 UmRdpService - ok
08:14:08.0171 2952 [ 14D22C411854AA2560AFC94CD2D5E61F ] upnphost C:\Windows\System32\upnphost.dll
08:14:08.0187 2952 upnphost - ok
08:14:08.0218 2952 [ C976C4306F9AE133D6BBD47FDFC3BF92 ] usbccgp C:\Windows\System32\drivers\usbccgp.sys
08:14:08.0218 2952 usbccgp - ok
08:14:08.0249 2952 [ 427B6DB8C05A5A977E8C3525370A2595 ] usbcir C:\Windows\System32\drivers\usbcir.sys
08:14:08.0249 2952 usbcir - ok
08:14:08.0280 2952 [ B24FDEB1B18496F1B463782235AA3AF1 ] usbehci C:\Windows\System32\drivers\usbehci.sys
08:14:08.0280 2952 usbehci - ok
08:14:08.0327 2952 [ 504901430B6E03B99EBB6BF26E0868C6 ] usbfilter C:\Windows\system32\DRIVERS\usbfilter.sys
08:14:08.0327 2952 usbfilter - ok
08:14:08.0374 2952 [ F8C2A832DF9403F5EA8080CBDBDA95FB ] usbhub C:\Windows\System32\drivers\usbhub.sys
08:14:08.0389 2952 usbhub - ok
08:14:08.0421 2952 [ E5F7328B1D29BCE791862CD3C0DD382A ] USBHUB3 C:\Windows\System32\drivers\UsbHub3.sys
08:14:08.0421 2952 USBHUB3 - ok
08:14:08.0467 2952 [ 325F6179009B5A7F6118951A5BA422AB ] usbohci C:\Windows\System32\drivers\usbohci.sys
08:14:08.0467 2952 usbohci - ok
08:14:08.0499 2952 [ 9FDBA6982582A6F2354144980F641E7B ] usbprint C:\Windows\System32\drivers\usbprint.sys
08:14:08.0499 2952 usbprint - ok
08:14:08.0530 2952 [ BFC7FE4AAEB61317A921871B4085EF4B ] USBSTOR C:\Windows\System32\drivers\USBSTOR.SYS
08:14:08.0530 2952 USBSTOR - ok
08:14:08.0561 2952 [ 1ABF657259DB57F7E5558E4DF1357C0C ] usbuhci C:\Windows\System32\drivers\usbuhci.sys
08:14:08.0561 2952 usbuhci - ok
08:14:08.0577 2952 [ 9EF7C01D3ACCBC243B5CB1A95865B2FF ] usbvideo C:\Windows\System32\Drivers\usbvideo.sys
08:14:08.0592 2952 usbvideo - ok
08:14:08.0639 2952 [ 8DC398D7B8E02C929A2096E74A170970 ] USBXHCI C:\Windows\System32\drivers\USBXHCI.SYS
08:14:08.0639 2952 USBXHCI - ok
08:14:08.0670 2952 [ F702AB6181513303AB0FC8D59E52708B ] VaultSvc C:\Windows\system32\lsass.exe
08:14:08.0670 2952 VaultSvc - ok
08:14:08.0701 2952 [ BACECBFF9C97F7627A60B0E0F1FE7EE8 ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
08:14:08.0701 2952 vdrvroot - ok
08:14:08.0748 2952 [ 1B4488988E5E7512E6C5CD1255E9E973 ] vds C:\Windows\System32\vds.exe
08:14:08.0779 2952 vds - ok
08:14:08.0795 2952 [ 74FA2D4368DE6F6CE14393EDF1F342BE ] VerifierExt C:\Windows\system32\drivers\VerifierExt.sys
08:14:08.0795 2952 VerifierExt - ok
08:14:08.0842 2952 [ 500BE6B2E49883720D0AE8BB859ED7A3 ] vhdmp C:\Windows\System32\drivers\vhdmp.sys
08:14:08.0857 2952 vhdmp - ok
08:14:08.0873 2952 [ F5B4A14B00E89250C50982AC762DDD1D ] viaide C:\Windows\system32\drivers\viaide.sys
08:14:08.0873 2952 viaide - ok
08:14:08.0889 2952 [ 78DB50F7329F6D1311658DABFFFC8BE0 ] vmbus C:\Windows\system32\drivers\vmbus.sys
08:14:08.0904 2952 vmbus - ok
08:14:08.0920 2952 [ ECFEE2F2BA3932C7880D1A8F67D68F91 ] VMBusHID C:\Windows\System32\drivers\VMBusHID.sys
08:14:08.0920 2952 VMBusHID - ok
08:14:08.0967 2952 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmicheartbeat C:\Windows\System32\ICSvc.dll
08:14:08.0967 2952 vmicheartbeat - ok
08:14:08.0982 2952 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmickvpexchange C:\Windows\System32\ICSvc.dll
08:14:08.0982 2952 vmickvpexchange - ok
08:14:08.0998 2952 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmicrdv C:\Windows\System32\ICSvc.dll
08:14:09.0013 2952 vmicrdv - ok
08:14:09.0013 2952 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmicshutdown C:\Windows\System32\ICSvc.dll
08:14:09.0029 2952 vmicshutdown - ok
08:14:09.0107 2952 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmictimesync C:\Windows\System32\ICSvc.dll
08:14:09.0107 2952 vmictimesync - ok
08:14:09.0123 2952 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmicvss C:\Windows\System32\ICSvc.dll
08:14:09.0123 2952 vmicvss - ok
08:14:09.0138 2952 [ CB60FAAED8B49B812EBBF77EB87D9B18 ] volmgr C:\Windows\system32\drivers\volmgr.sys
08:14:09.0138 2952 volmgr - ok
08:14:09.0185 2952 [ A74101DA9809251BCD0E5A26BAE0F824 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
08:14:09.0185 2952 volmgrx - ok
08:14:09.0216 2952 [ 78A5BBA3819FFFC62FFEC3E2220D102D ] volsnap C:\Windows\system32\drivers\volsnap.sys
08:14:09.0232 2952 volsnap - ok
08:14:09.0247 2952 [ A8DA1C1B52ECEA3726DEBED4FF1B700D ] vpci C:\Windows\System32\drivers\vpci.sys
08:14:09.0247 2952 vpci - ok
08:14:09.0263 2952 [ 38A60CD9C009C55C6D3B5586F8E6A353 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
08:14:09.0263 2952 vsmraid - ok
08:14:09.0310 2952 [ D0C69E44BC1E1D4AD290FD84104623D8 ] VSS C:\Windows\system32\vssvc.exe
08:14:09.0341 2952 VSS - ok
08:14:09.0357 2952 [ A0F6FE0FC2F647C22BBFD6BD4249DBCC ] VSTXRAID C:\Windows\system32\drivers\vstxraid.sys
08:14:09.0372 2952 VSTXRAID - ok
08:14:09.0403 2952 [ 62460A45435A26A334907E3F2EA45611 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys
08:14:09.0403 2952 vwifibus - ok
08:14:09.0419 2952 [ 095E943D27025E4D588AF0A72CC2318F ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys
08:14:09.0419 2952 vwififlt - ok
08:14:09.0435 2952 [ 73FA1A41A97A5C34ADC03B3577FF1A86 ] vwifimp C:\Windows\system32\DRIVERS\vwifimp.sys
08:14:09.0435 2952 vwifimp - ok
08:14:09.0481 2952 [ F690B6EEAA94576727B24376D7ED3601 ] W32Time C:\Windows\system32\w32time.dll
08:14:09.0481 2952 W32Time - ok
08:14:09.0497 2952 [ 6B806E893714019969E2B50D7EF6A4D9 ] WacomPen C:\Windows\System32\drivers\wacompen.sys
08:14:09.0513 2952 WacomPen - ok
08:14:09.0544 2952 [ 61F6972FF9AC9A8D0B4D62076DC30051 ] Wanarp C:\Windows\system32\DRIVERS\wanarp.sys
08:14:09.0575 2952 Wanarp - ok
08:14:09.0622 2952 [ 61F6972FF9AC9A8D0B4D62076DC30051 ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
08:14:09.0622 2952 Wanarpv6 - ok
08:14:09.0700 2952 [ 901CC968412F8155B08D7ABE0171166A ] WAS C:\Windows\system32\inetsrv\iisw3adm.dll
08:14:09.0700 2952 WAS - ok
08:14:09.0762 2952 [ 42DF22F8C448E7CD219F6D63743505E2 ] wbengine C:\Windows\system32\wbengine.exe
08:14:09.0793 2952 wbengine - ok
08:14:09.0809 2952 [ 31D37B2F6069C631EF0557D322924812 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
08:14:09.0809 2952 WbioSrvc - ok
08:14:09.0840 2952 [ AF1349386D4C6786EF4E34FACEF15042 ] Wcmsvc C:\Windows\System32\wcmsvc.dll
08:14:09.0856 2952 Wcmsvc - ok
08:14:09.0903 2952 [ 5B5FEAB51172F5513C2CF7B39CFA6A01 ] wcncsvc C:\Windows\System32\wcncsvc.dll
08:14:09.0903 2952 wcncsvc - ok
08:14:09.0934 2952 [ E19556D414332E2BEBA1F368229006B4 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
08:14:09.0934 2952 WcsPlugInService - ok
08:14:09.0965 2952 [ B3A4D918DAB90505B6BC7B70632913CB ] Wd C:\Windows\system32\drivers\wd.sys
08:14:09.0965 2952 Wd - ok
08:14:10.0012 2952 [ 07D19A55CD27B330534D2DDEA60D5FC6 ] WdBoot C:\Windows\system32\drivers\WdBoot.sys
08:14:10.0012 2952 WdBoot - ok
08:14:10.0043 2952 [ E2C933EDBC389386EBE6D2BA953F43D8 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
08:14:10.0059 2952 Wdf01000 - ok
08:14:10.0090 2952 [ CEBD9CDAADA11FAECCA82E4C06BCDD8E ] WdFilter C:\Windows\system32\drivers\WdFilter.sys
08:14:10.0090 2952 WdFilter - ok
08:14:10.0121 2952 [ 240FC332484572227CD1DF82407F33E5 ] WdiServiceHost C:\Windows\system32\wdi.dll
08:14:10.0121 2952 WdiServiceHost - ok
08:14:10.0152 2952 [ 240FC332484572227CD1DF82407F33E5 ] WdiSystemHost C:\Windows\system32\wdi.dll
08:14:10.0152 2952 WdiSystemHost - ok
08:14:10.0183 2952 [ 9B1384CE8E681D2D77BB3524B8E86311 ] WebClient C:\Windows\System32\webclnt.dll
08:14:10.0199 2952 WebClient - ok
08:14:10.0230 2952 [ 35FD720943D4FCD75C3275BF062FF140 ] Wecsvc C:\Windows\system32\wecsvc.dll
08:14:10.0230 2952 Wecsvc - ok
08:14:10.0261 2952 [ 4D2612E3C462B68F499D840B1133263E ] wercplsupport C:\Windows\System32\wercplsupport.dll
08:14:10.0261 2952 wercplsupport - ok
08:14:10.0308 2952 [ 5F70EBFC1F75B487DE79501E3CCBDB54 ] WerSvc C:\Windows\System32\WerSvc.dll
08:14:10.0308 2952 WerSvc - ok
08:14:10.0339 2952 [ 44BB9C31E6242C4BD1CE7C2B440C2533 ] WFPLWFS C:\Windows\system32\DRIVERS\wfplwfs.sys
08:14:10.0355 2952 WFPLWFS - ok
08:14:10.0371 2952 [ 60E0C220593DA4F7C289CB909D2DBAE0 ] WiaRpc C:\Windows\System32\wiarpc.dll
08:14:10.0386 2952 WiaRpc - ok
08:14:10.0402 2952 [ A3C7624A42A3447EF5EDD1ED37FE4E60 ] WIMMount C:\Windows\system32\drivers\wimmount.sys
08:14:10.0402 2952 WIMMount - ok
08:14:10.0433 2952 WinDefend - ok
08:14:10.0480 2952 [ 7911470B6018059A880469A63B65700A ] WinHttpAutoProxySvc C:\Windows\system32\winhttp.dll
08:14:10.0495 2952 WinHttpAutoProxySvc - ok
08:14:10.0558 2952 [ 3D6B518B71C75C8FA4115A33615C107A ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
08:14:10.0558 2952 Winmgmt - ok
08:14:10.0683 2952 [ 8E212A627F33F6FC3B5F3BB47212F66E ] WinRM C:\Windows\system32\WsmSvc.dll
08:14:10.0729 2952 WinRM - ok
08:14:10.0776 2952 [ BB20956C424531003F7FA6CD36F11D5D ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
08:14:10.0776 2952 WinUsb - ok
08:14:10.0807 2952 [ 4F2A80D65AE6F845776E2F06AE6782ED ] WirelessButtonDriver C:\Windows\System32\drivers\WirelessButtonDriver64.sys
08:14:10.0807 2952 WirelessButtonDriver - ok
08:14:10.0870 2952 [ 6351724B8FA0255C2DBD970297F00B93 ] WlanSvc C:\Windows\System32\wlansvc.dll
08:14:10.0885 2952 WlanSvc - ok
08:14:10.0979 2952 [ B330CE47FB74A6BE9A3FFFF4B3F64D9B ] wlidsvc C:\Windows\system32\wlidsvc.dll
08:14:11.0010 2952 wlidsvc - ok
08:14:11.0041 2952 [ E2A596CACFC6504306CDB7B593B90084 ] WmiAcpi C:\Windows\System32\drivers\wmiacpi.sys
08:14:11.0041 2952 WmiAcpi - ok
08:14:11.0088 2952 [ D113499052C5E541906B727779F0F959 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
08:14:11.0088 2952 wmiApSrv - ok
08:14:11.0119 2952 WMPNetworkSvc - ok
08:14:11.0135 2952 [ C6FF953D5D6F2EAE3B8883474D5076B3 ] wpcfltr C:\Windows\system32\DRIVERS\wpcfltr.sys
08:14:11.0135 2952 wpcfltr - ok
08:14:11.0182 2952 [ A6ED163169876BFD2437E872FE2F1509 ] WPCSvc C:\Windows\System32\wpcsvc.dll
08:14:11.0182 2952 WPCSvc - ok
08:14:11.0229 2952 [ 3013658A4D327854BEEC4A08D9655194 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
08:14:11.0229 2952 WPDBusEnum - ok
08:14:11.0244 2952 [ 0346CAFC181C91C6E2330332EB332ED6 ] WpdUpFltr C:\Windows\system32\drivers\WpdUpFltr.sys
08:14:11.0244 2952 WpdUpFltr - ok
08:14:11.0275 2952 [ BC8B5CB336E63BB25EAD1CE8EDD34B81 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
08:14:11.0275 2952 ws2ifsl - ok
08:14:11.0307 2952 [ 012CFE7F0F95266F554EE3B91EE2128A ] wscsvc C:\Windows\System32\wscsvc.dll
08:14:11.0353 2952 wscsvc - ok
08:14:11.0353 2952 WSearch - ok
08:14:11.0447 2952 [ D4D04839F3DFAF09D94BAB1016F7A297 ] WSService C:\Windows\System32\WSService.dll
08:14:11.0478 2952 WSService - ok
08:14:11.0572 2952 [ 311E5E1976E0BD9110A88B93158055D5 ] wuauserv C:\Windows\system32\wuaueng.dll
08:14:11.0619 2952 wuauserv - ok
08:14:11.0650 2952 [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
08:14:11.0650 2952 WudfPf - ok
08:14:11.0681 2952 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd C:\Windows\System32\drivers\WUDFRd.sys
08:14:11.0681 2952 WUDFRd - ok
08:14:11.0697 2952 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFSensorLP C:\Windows\system32\DRIVERS\WUDFRd.sys
08:14:11.0712 2952 WUDFSensorLP - ok
08:14:11.0744 2952 [ B20F051B03A966392364C83F009F7D17 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
08:14:11.0759 2952 wudfsvc - ok
08:14:11.0806 2952 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFWpdFs C:\Windows\system32\DRIVERS\WUDFRd.sys
08:14:11.0806 2952 WUDFWpdFs - ok
08:14:11.0822 2952 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFWpdMtp C:\Windows\system32\DRIVERS\WUDFRd.sys
08:14:11.0822 2952 WUDFWpdMtp - ok
08:14:11.0868 2952 [ 6D9E07436B6646EC8F7EFFD39B6BA288 ] WwanSvc C:\Windows\System32\wwansvc.dll
08:14:11.0884 2952 WwanSvc - ok
08:14:11.0915 2952 ================ Scan global ===============================
08:14:11.0962 2952 [ DDC1AFBF9DDF880CE9BD3896114D8DED ] C:\Windows\system32\basesrv.dll
08:14:12.0009 2952 [ E9343076AE704D20BB0D01F3AF3EFFEF ] C:\Windows\system32\winsrv.dll
08:14:12.0040 2952 [ BD7C6949984D19AAA609896B675E7357 ] C:\Windows\system32\sxssrv.dll
08:14:12.0087 2952 [ 8F226143046435C75C033B0C52E90FFE ] C:\Windows\system32\services.exe
08:14:12.0102 2952 [Global] - ok
08:14:12.0102 2952 ================ Scan MBR ==================================
08:14:12.0118 2952 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0
08:14:12.0196 2952 \Device\Harddisk0\DR0 - ok
08:14:12.0196 2952 ================ Scan VBR ==================================
08:14:12.0212 2952 [ DD63E3DEE0F6023AA4527A21664DFAC3 ] \Device\Harddisk0\DR0\Partition1
08:14:12.0227 2952 \Device\Harddisk0\DR0\Partition1 - ok
08:14:12.0243 2952 [ 93C4D0B61B1B2A556E9381B348806C63 ] \Device\Harddisk0\DR0\Partition2
08:14:12.0243 2952 \Device\Harddisk0\DR0\Partition2 - ok
08:14:12.0258 2952 [ B1E27AA018409DE6BFD73F8AFB883A65 ] \Device\Harddisk0\DR0\Partition3
08:14:12.0258 2952 \Device\Harddisk0\DR0\Partition3 - ok
08:14:12.0274 2952 [ 01467AB2852FD7C91D5CE289E6A03BA2 ] \Device\Harddisk0\DR0\Partition4
08:14:12.0274 2952 \Device\Harddisk0\DR0\Partition4 - ok
08:14:12.0305 2952 [ 643D216D0A063C185934C688A460F538 ] \Device\Harddisk0\DR0\Partition5
08:14:12.0305 2952 \Device\Harddisk0\DR0\Partition5 - ok
08:14:12.0305 2952 ============================================================
08:14:12.0305 2952 Scan finished
08:14:12.0305 2952 ============================================================
08:14:12.0336 4424 Detected object count: 0
08:14:12.0336 4424 Actual detected object count: 0

Uživatelský avatar
Orcus
člen Security týmu
Elite Level 10.5
Elite Level 10.5
Příspěvky: 10645
Registrován: duben 10
Bydliště: Okolo rostou 3 růže =o)
Pohlaví: Muž
Stav:
Offline

Re: prosim o kontrolu problem s vypnutim

Příspěvekod Orcus » 26 dub 2014 11:19

Vypni rezidentní štít antiviru a antispywaru
Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud bude po kontrole problém spustit aplikace nebo bude vyskakovat hláška o pokusu použít neplatnou operaci na klíč registru, který je označen pro odstranění, stačí restartovat počítač.

Pokud budou problémy , spusť v nouz. režimu.
Láska hřeje, ale uhlí je uhlí. :fire:



Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.

Pár rad k bezpečnosti PC.

Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix

Pokud budete spokojeni , můžete podpořit naše fórum.

pavlinka39
Level 1
Level 1
Příspěvky: 69
Registrován: červenec 11
Pohlaví: Žena
Stav:
Offline

Re: prosim o kontrolu problem s vypnutim

Příspěvekod pavlinka39 » 26 dub 2014 20:44

ComboFix 14-04-26.01 - petra . 04. 2014 19:22:31.1.2 - x64
Microsoft Windows 8 6.2.9200.0.1250.420.1029.18.3546.1711 [GMT 2:00]
Spuštěný z: c:\users\petra\Desktop\ComboFix.exe
AV: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\petra\AppData\Roaming\Microsoft\Windows\4BSYPn5V8kWWNMt.cfg
c:\users\petra\AppData\Roaming\Microsoft\Windows\4BSYPn5V8kWWNMt.dat
c:\users\petra\AppData\Roaming\Microsoft\Windows\4BSYPn5V8kWWNMt.xtr
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2014-03-26 do 2014-04-26 )))))))))))))))))))))))))))))))
.
.
2014-04-26 05:09 . 2014-04-26 17:01 75888 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{0974EC79-9BCD-4426-AD34-FF45A2D86895}\offreg.dll
2014-04-25 19:22 . 2014-04-16 01:22 10651704 ------w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{0974EC79-9BCD-4426-AD34-FF45A2D86895}\mpengine.dll
2014-04-25 07:56 . 2014-04-25 07:56 348160 ----a-w- c:\windows\SysWow64\msvcr71.dll
2014-04-25 07:56 . 2014-04-25 07:56 1060864 ----a-w- c:\windows\SysWow64\mfc71.dll
2014-04-23 16:57 . 2014-04-23 16:57 -------- d-----w- c:\windows\ERUNT
2014-04-22 17:29 . 2014-04-26 17:01 119512 ----a-w- c:\windows\system32\drivers\MBAMSwissArmy.sys
2014-04-22 17:27 . 2014-04-22 17:28 -------- d-----w- c:\program files (x86)\Malwarebytes Anti-Malware
2014-04-22 17:27 . 2014-04-22 17:27 -------- d-----w- c:\programdata\Malwarebytes
2014-04-22 17:27 . 2014-04-03 07:51 63192 ----a-w- c:\windows\system32\drivers\mwac.sys
2014-04-22 17:27 . 2014-04-03 07:51 88280 ----a-w- c:\windows\system32\drivers\mbamchameleon.sys
2014-04-22 17:27 . 2014-04-03 07:50 25816 ----a-w- c:\windows\system32\drivers\mbam.sys
2014-04-22 17:00 . 2014-04-22 17:00 -------- d-----w- C:\AdwCleaner
2014-04-22 11:33 . 2014-04-22 11:33 -------- d-----w- c:\users\petra\AppData\Local\AdTrustMedia
2014-04-22 07:41 . 2014-04-22 07:41 388096 ----a-r- c:\users\petra\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2014-04-22 07:41 . 2014-04-22 07:41 -------- d-----w- c:\program files (x86)\Trend Micro
2014-04-21 07:17 . 2014-04-21 07:17 -------- d-----w- c:\users\petra\AppData\Roaming\TeamViewer
2014-04-21 07:16 . 2014-04-21 07:16 -------- d-----w- c:\program files (x86)\TeamViewer
2014-04-17 13:48 . 2014-04-17 13:48 -------- d-----w- c:\program files\CCleaner
2014-04-17 13:42 . 2014-04-20 13:07 -------- d-----w- c:\users\petra\AppData\Roaming\StartMenu
2014-04-16 15:44 . 2014-04-16 15:44 -------- d-----w- c:\program files (x86)\Common Files\COMODO
2014-04-16 06:10 . 2014-04-16 06:10 -------- d-----w- c:\program files\AdTrustMedia
2014-04-16 06:10 . 2014-04-25 18:11 -------- d-----w- c:\program files\COMODO
2014-04-16 06:08 . 2014-04-25 18:10 -------- d-----w- c:\programdata\Comodo
2014-04-15 18:21 . 2014-04-15 18:21 51496 ----a-w- c:\windows\system32\drivers\stflt.sys
2014-04-15 18:20 . 2014-04-22 16:37 -------- d-----w- c:\program files (x86)\Spyware Terminator
2014-04-13 08:29 . 2014-04-13 08:29 -------- d-----w- c:\users\petra\AppData\Roaming\Kingsoft
2014-04-13 08:29 . 2014-04-13 08:29 -------- d-----w- c:\programdata\Kingsoft
2014-04-13 08:29 . 2014-04-13 08:29 -------- d-----w- c:\program files (x86)\Kingsoft
2014-04-13 08:07 . 2014-04-13 08:07 -------- d-----w- c:\program files (x86)\Microsoft Synchronization Services
2014-04-13 08:07 . 2014-04-13 08:07 -------- d-----w- c:\program files (x86)\Microsoft Sync Framework
2014-04-13 08:04 . 2014-04-13 08:04 -------- d-----w- c:\program files (x86)\Microsoft Visual Studio 8
2014-04-13 08:03 . 2014-04-13 08:03 -------- d-----w- c:\program files (x86)\Microsoft Analysis Services
2014-04-13 08:03 . 2014-04-13 08:03 -------- d-----r- C:\MSOCache
2014-04-13 07:59 . 2014-04-13 07:59 283064 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys
2014-04-13 07:59 . 2014-04-17 13:55 -------- d-----w- c:\users\petra\AppData\Roaming\DAEMON Tools Lite
2014-04-13 07:59 . 2014-04-13 07:59 -------- d-----w- c:\program files (x86)\DAEMON Tools Lite
2014-04-13 07:57 . 2014-04-13 08:01 -------- d-----w- c:\programdata\DAEMON Tools Lite
2014-04-12 14:14 . 2014-04-12 14:14 -------- d-----w- c:\users\petra\AppData\Local\Zoner
2014-04-12 14:14 . 2014-04-12 14:14 -------- d-----w- c:\users\petra\AppData\Roaming\Zoner
2014-04-12 14:14 . 2014-04-12 14:14 -------- d-----w- c:\programdata\Zoner
2014-04-12 14:13 . 2014-04-12 14:13 -------- d-----w- c:\program files\Zoner
2014-04-12 14:10 . 2014-04-12 14:18 -------- d-----w- c:\program files (x86)\Google
2014-04-12 14:03 . 2014-04-25 17:25 -------- d-----w- c:\users\Public\Other
2014-04-12 14:01 . 2014-03-05 20:19 7670 --s-a-w- c:\windows\SysWow64\mnccphoo.vbe
2014-04-12 12:36 . 2013-10-25 06:19 1084928 ----a-w- c:\program files\Common Files\Microsoft Shared\VGX\VGX.dll
2014-04-12 12:36 . 2014-03-07 00:08 2648576 ----a-w- c:\windows\system32\iertutil.dll
2014-04-12 12:36 . 2014-03-07 00:47 2877952 ----a-w- c:\windows\SysWow64\jscript9.dll
2014-04-12 12:36 . 2014-03-07 00:08 3959808 ----a-w- c:\windows\system32\jscript9.dll
2014-04-12 12:36 . 2013-04-28 22:30 108032 ----a-w- c:\program files (x86)\Internet Explorer\jsdebuggeride.dll
2014-04-12 10:10 . 2014-01-27 03:42 2232664 ----a-w- c:\windows\system32\drivers\tcpip.sys
2014-04-12 10:10 . 2014-01-27 00:31 19752448 ----a-w- c:\windows\system32\shell32.dll
2014-04-12 10:10 . 2014-01-27 03:39 1939288 ----a-w- c:\windows\system32\drivers\ntfs.sys
2014-04-09 16:50 . 2014-02-05 23:41 978432 ----a-w- c:\windows\system32\KernelBase.dll
2014-04-09 16:50 . 2014-02-05 23:41 1257984 ----a-w- c:\windows\system32\kernel32.dll
2014-04-09 16:50 . 2014-02-05 23:26 666112 ----a-w- c:\windows\SysWow64\KernelBase.dll
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-04-23 18:29 . 2013-09-02 22:43 65536 ----a-w- c:\windows\system32\spu_storage.bin
2014-04-11 12:12 . 2013-11-28 07:00 90655440 ----a-w- c:\windows\system32\MRT.exe
2014-03-31 21:18 . 2013-11-27 13:52 78296 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2014-03-31 21:18 . 2013-11-27 13:52 694232 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2014-02-08 04:34 . 2014-03-14 06:01 4036608 ----a-w- c:\windows\system32\win32k.sys
2014-02-05 23:41 . 2014-03-14 05:57 595968 ----a-w- c:\windows\system32\qedit.dll
2014-02-05 23:37 . 2014-03-14 05:57 496640 ----a-w- c:\windows\SysWow64\qedit.dll
2014-02-01 14:29 . 2014-02-01 14:29 17536 ----a-w- c:\programdata\Microsoft\windowssampling\Sqm\Manifest\Sqm3.bin
2014-01-31 00:48 . 2014-03-14 08:13 1339392 ----a-w- c:\windows\SysWow64\WindowsCodecs.dll
2014-01-31 00:06 . 2014-03-14 08:13 1628160 ----a-w- c:\windows\system32\WindowsCodecs.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive1]
@="{F241C880-6982-4CE5-8CF7-7085BA96DA5A}"
[HKEY_CLASSES_ROOT\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}]
2014-02-25 17:11 220632 ----a-w- c:\users\petra\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\SkyDriveShell.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive2]
@="{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}"
[HKEY_CLASSES_ROOT\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}]
2014-02-25 17:11 220632 ----a-w- c:\users\petra\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\SkyDriveShell.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive3]
@="{BBACC218-34EA-4666-9D7A-C78F2274A524}"
[HKEY_CLASSES_ROOT\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}]
2014-02-25 17:11 220632 ----a-w- c:\users\petra\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\SkyDriveShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Power2GoExpress8"="c:\program files (x86)\CyberLink\Power2Go8\Power2GoExpress8.exe" [2013-08-05 1713416]
"SystemProc"="c:\users\Public\Other\run_shc.lnk" [2014-03-04 1352]
"DAEMON Tools Lite"="c:\program files (x86)\DAEMON Tools Lite\DTLite.exe" [2014-03-04 3696912]
"Zoner Photo Studio Autoupdate"="c:\program files\Zoner\Photo Studio 16\Program32\ZPSTRAY.EXE" [2014-03-31 833024]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2013-04-16 642656]
"YouCam Service"="c:\program files (x86)\CyberLink\YouCam\YouCamService.exe" [2013-05-22 267224]
"BtTray"="c:\program files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe" [2013-05-14 387832]
"AccelerometerSysTrayApplet"="c:\program files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerST.exe" [2013-07-24 77088]
"HPMessageService"="c:\program files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe" [2013-12-25 1045304]
"mnclkefnhSrv"="c:\windows\system32\mnclkefnh.vbe" [2014-03-05 7670]
"mnccphooSrv"="c:\windows\system32\mnccphoo.vbe" [2014-03-05 7670]
"BCSSync"="c:\program files (x86)\Microsoft Office\Office14\BCSSync.exe" [2010-03-13 91520]
"tvncontrol"="c:\program files (x86)\Common Files\COMODO\GeekBuddyRSP.exe" [2014-03-20 2327248]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\StartUp\
Start GeekBuddy.lnk - c:\program files\COMODO\GeekBuddy\launcher.exe "unit_manager.exe" [2014-3-20 48848]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"EnableUIADesktopToggle"= 0 (0x0)
"EnableCursorSuppression"= 1 (0x1)
"ConsentPromptBehaviorUser"= 3 (0x3)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=1 (0x1)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"aux1"=wdmaud.drv
.
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x]
R3 26994138;26994138; [x]
R3 BthL2caScoIfSrv;Bluetooth Profile Interface Driver Service;c:\windows\System32\Drivers\BtL2caScoIf.sys;c:\windows\SYSNATIVE\Drivers\BtL2caScoIf.sys [x]
R3 BthLEEnum;Ovladač úspory energie technologie Bluetooth;c:\windows\system32\DRIVERS\BthLEEnum.sys;c:\windows\SYSNATIVE\DRIVERS\BthLEEnum.sys [x]
R3 btUrbFilterDrv;IVT URB Bluetooth Filter Driver Service;c:\windows\System32\Drivers\IvtUrbBtFlt.sys;c:\windows\SYSNATIVE\Drivers\IvtUrbBtFlt.sys [x]
R3 iaStorA;iaStorA;c:\windows\System32\drivers\iaStorA.sys;c:\windows\SYSNATIVE\drivers\iaStorA.sys [x]
R3 SmbDrv;SmbDrv;c:\windows\System32\drivers\Smb_driver_AMDASF.sys;c:\windows\SYSNATIVE\drivers\Smb_driver_AMDASF.sys [x]
R3 SmbDrvI;SmbDrvI;c:\windows\System32\drivers\Smb_driver_Intel.sys;c:\windows\SYSNATIVE\drivers\Smb_driver_Intel.sys [x]
R3 vmicheartbeat;Služba prezenčního signálu technologie Hyper-V;c:\windows\system32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x]
R3 WUDFWpdMtp;WUDFWpdMtp;c:\windows\system32\DRIVERS\WUDFRd.sys;c:\windows\SYSNATIVE\DRIVERS\WUDFRd.sys [x]
S0 amd_sata;amd_sata;c:\windows\System32\drivers\amd_sata.sys;c:\windows\SYSNATIVE\drivers\amd_sata.sys [x]
S0 amd_xata;amd_xata;c:\windows\System32\drivers\amd_xata.sys;c:\windows\SYSNATIVE\drivers\amd_xata.sys [x]
S1 CFRMD;CFRMD;c:\windows\system32\DRIVERS\CFRMD.sys;c:\windows\SYSNATIVE\DRIVERS\CFRMD.sys [x]
S1 CLVirtualDrive;CLVirtualDrive;c:\windows\system32\DRIVERS\CLVirtualDrive.sys;c:\windows\SYSNATIVE\DRIVERS\CLVirtualDrive.sys [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\System32\drivers\dtsoftbus01.sys;c:\windows\SYSNATIVE\drivers\dtsoftbus01.sys [x]
S1 HMD;COMODO livePCsupport Hardware Monitor Driver;c:\windows\system32\DRIVERS\hmd.sys;c:\windows\SYSNATIVE\DRIVERS\hmd.sys [x]
S2 AdaptiveSleepService;AdaptiveSleepService;c:\program files\ATI Technologies\ATI.ACE\A4\AdaptiveSleepService.exe;c:\program files\ATI Technologies\ATI.ACE\A4\AdaptiveSleepService.exe [x]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe;c:\windows\SYSNATIVE\atiesrxx.exe [x]
S2 AMD FUEL Service;AMD FUEL Service;c:\program files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe;c:\program files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [x]
S2 c2cautoupdatesvc;Skype Click to Call Updater;c:\program files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe;c:\program files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [x]
S2 c2cpnrsvc;Skype Click to Call PNR Service;c:\program files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe;c:\program files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [x]
S2 CLPSLauncher;COMODO LPS Launcher;c:\program files (x86)\Common Files\COMODO\launcher_service.exe;c:\program files (x86)\Common Files\COMODO\launcher_service.exe [x]
S2 CyberLink PowerDVD 12 Media Server Monitor Service;CyberLink PowerDVD 12 Media Server Monitor Service;c:\program files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe;c:\program files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe [x]
S2 CyberLink PowerDVD 12 Media Server Service;CyberLink PowerDVD 12 Media Server Service;c:\program files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe;c:\program files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe [x]
S2 GeekBuddyRSP;GeekBuddyRSP Server;c:\program files (x86)\Common Files\COMODO\GeekBuddyRSP.exe;c:\program files (x86)\Common Files\COMODO\GeekBuddyRSP.exe [x]
S2 HP Support Assistant Service;HP Support Assistant Service;c:\program files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe;c:\program files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [x]
S2 hpsrv;HP Service;c:\windows\system32\Hpservice.exe;c:\windows\SYSNATIVE\Hpservice.exe [x]
S2 HPWMISVC;HPWMISVC;c:\program files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe;c:\program files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe [x]
S2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes Anti-Malware\mbamservice.exe;c:\program files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [x]
S2 RtkAudioService;Realtek Audio Service;c:\program files\Realtek\Audio\HDA\RtkAudioService64.exe;c:\program files\Realtek\Audio\HDA\RtkAudioService64.exe [x]
S2 TeamViewer9;TeamViewer 9;c:\program files (x86)\TeamViewer\Version9\TeamViewer_Service.exe;c:\program files (x86)\TeamViewer\Version9\TeamViewer_Service.exe [x]
S3 AmdAS4;AmdAS4 service;c:\windows\System32\drivers\AmdAS4.sys;c:\windows\SYSNATIVE\drivers\AmdAS4.sys [x]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW86.sys;c:\windows\SYSNATIVE\drivers\AtihdW86.sys [x]
S3 BtAudioBusSrv;Ralink Bluetooth Audio Bus Service;c:\windows\System32\Drivers\BtAudioBus.sys;c:\windows\SYSNATIVE\Drivers\BtAudioBus.sys [x]
S3 clwvd;CyberLink WebCam Virtual Driver;c:\windows\system32\DRIVERS\clwvd.sys;c:\windows\SYSNATIVE\DRIVERS\clwvd.sys [x]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys;c:\windows\SYSNATIVE\drivers\mbam.sys [x]
S3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\MBAMSwissArmy.sys;c:\windows\SYSNATIVE\drivers\MBAMSwissArmy.sys [x]
S3 netr28x;Ralink 802.11n Extensible Wireless Driver;c:\windows\system32\DRIVERS\netr28x.sys;c:\windows\SYSNATIVE\DRIVERS\netr28x.sys [x]
S3 RSP2STOR;Realtek PCIE CardReader Driver - P2;c:\windows\system32\DRIVERS\RtsP2Stor.sys;c:\windows\SYSNATIVE\DRIVERS\RtsP2Stor.sys [x]
S3 rtbth;RTBTH Bluetooth Device Driver;c:\windows\System32\drivers\rtbth.sys;c:\windows\SYSNATIVE\drivers\rtbth.sys [x]
S3 RTL8168;Realtek 8168 NT Driver;c:\windows\system32\DRIVERS\Rt630x64.sys;c:\windows\SYSNATIVE\DRIVERS\Rt630x64.sys [x]
S3 usbfilter;AMD USB Filter Driver;c:\windows\system32\DRIVERS\usbfilter.sys;c:\windows\SYSNATIVE\DRIVERS\usbfilter.sys [x]
S3 WirelessButtonDriver;HP Wireless Button Driver Service;c:\windows\System32\drivers\WirelessButtonDriver64.sys;c:\windows\SYSNATIVE\drivers\WirelessButtonDriver64.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost]
apphost REG_MULTI_SZ apphostsvc
iissvcs REG_MULTI_SZ w3svc was
.
Obsah adresáře 'Naplánované úlohy'
.
2014-03-27 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2966302708-920562775-2346796021-1002Core1cf49c47e1b7505.job
- c:\users\petra\AppData\Local\Google\Update\GoogleUpdate.exe [2014-01-17 19:07]
.
2014-04-26 c:\windows\Tasks\HPCeeScheduleForpetra.job
- c:\program files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2011-07-15 03:43]
.
2014-04-13 c:\windows\Tasks\WpsUpdateTask_petra.job
- c:\program files (x86)\Kingsoft\Kingsoft Office\office6\wpsupdate.exe [2011-11-03 16:00]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive1]
@="{F241C880-6982-4CE5-8CF7-7085BA96DA5A}"
[HKEY_CLASSES_ROOT\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}]
2014-02-25 17:12 244696 ----a-w- c:\users\petra\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive2]
@="{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}"
[HKEY_CLASSES_ROOT\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}]
2014-02-25 17:12 244696 ----a-w- c:\users\petra\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive3]
@="{BBACC218-34EA-4666-9D7A-C78F2274A524}"
[HKEY_CLASSES_ROOT\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}]
2014-02-25 17:12 244696 ----a-w- c:\users\petra\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtkNGUI64.exe" [2013-06-18 7191768]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"NCPluginUpdater"="c:\program files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe" [2014-03-25 21720]
.
------- Doplňkový sken -------
.
uStart Page = hxxp://us.yahoo.com?fr=fp-comodo
uLocal Page = c:\windows\system32\blank.htm
mDefault_Page_URL = hxxp://www.bing.com?pc=HPNTDFJS
mStart Page = hxxp://www.bing.com?pc=HPNTDFJS
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~2\MICROS~1\Office14\EXCEL.EXE/3000
IE: E&xportovat do Microsoft Excelu - c:\progra~1\MICROS~1\Office15\EXCEL.EXE/3000
IE: Od&eslat do aplikace OneNote - c:\progra~2\MICROS~1\Office14\ONBttnIE.dll/105
IE: Od&eslat do OneNotu - c:\progra~1\MICROS~1\Office15\ONBttnIE.dll/105
IE: {{2F5C139F-79BD-4C84-A95A-E7140525BC55} - {5B06364D-FF00-4BD5-9D01-4379952513F2} - c:\program files (x86)\AdTrustMedia\PrivDog\1.8.0.15\trustedads.dll
TCP: DhcpNameServer = 10.0.0.138
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
BHO-{FB16E5C3-A9E2-47A2-8EFC-319E775E62CC} - c:\program files (x86)\AdTrustMedia\PrivDog\1.8.0.15\trustedads.dll
Wow6432Node-HKCU-Run-Zoner Photo Studio Service 16 - c:\program files\Zoner\Photo Studio 16\Program32\ZPSTRAY.EXEc:\program files\Zoner\Photo Studio 16\Program32\ZPSService.exe
Wow6432Node-HKLM-Run-ComodoFSChrome - c:\program files (x86)\AdTrustMedia\PrivDog\FinalizeSetup.exe
Wow6432Node-HKLM-Run-MSStp - c:\windows\inf\msstp.vbe
ShellIconOverlayIdentifiers-{472083B0-C522-11CF-8763-00608CC02F24} - (no file)
HKLM-Run-SpywareTerminatorShield - c:\program files (x86)\Spyware Terminator\SpywareTerminatorShield.exe
HKLM-Run-SpywareTerminatorUpdater - c:\program files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe
AddRemove-PrivDog - c:\program files (x86)\AdTrustMedia\PrivDog\UninstallTrustedAds.exe
AddRemove-{E35A3B13-78CD-4967-8AC8-AA9FDA693EDE} - c:\program files (x86)\InstallShield Installation Information\{E35A3B13-78CD-4967-8AC8-AA9FDA693EDE}\setup.exe
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}]
@Denied: (A) (Everyone)
"Solution"="{15727DE6-F92D-4E46-ACB4-0E2C58B31A18}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3]
@Denied: (A) (Everyone)
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3\0]
"Key"="ActionsPane3"
"Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\ActionsPane3.xsd"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
@SACL=(02 0000)
.
Celkový čas: 2014-04-26 20:10:21
ComboFix-quarantined-files.txt 2014-04-26 18:10
.
Před spuštěním: 927948640256 bytes free
Po spuštění: 927812476928 bytes free
.
- - End Of File - - DAFB96B4BA43A669A98129A3DF495FEF
5FB38429D5D77768867C76DCBDB35194

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: prosim o kontrolu problem s vypnutim

Příspěvekod jaro3 » 27 dub 2014 09:51

Používáš Comodo firewall?


Vypni rez. ochranu u antiviru a antispywaru,příp. firewall..

Otevři si Poznámkový blok (Start -> Spustit... a napiš do okna Notepad a dej Ok.
Zkopíruj do něj následující celý text označený zeleně:

Kód: Vybrat vše

ClearJavaCache::

KillAll::
File::
c:\users\Public\Other\run_shc.lnk
c:\windows\system32\mnclkefnh.vbe
c:\windows\system32\mnccphoo.vbe
c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2966302708-920562775-2346796021-1002Core1cf49c47e1b7505.job

Folder::
c:\users\Public
c:\program files (x86)\Skype\Updater
c:\users\petra\AppData\Local\Google\Update

Driver::
SkypeUpdate
26994138

Registry::
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SystemProc"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"mnclkefnhSrv"=-
"mnccphooSrv"=-

RegLock::
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
@SACL=(02 0000)

Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.

Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe a když se oba soubory překryjí, skript upusť.
- Automaticky se spustí ComboFix
- Vlož sem log, který vyběhne v závěru čistícího procesu + nový log z HJT

Upozornění : Může se stát, že po aplikaci Combofixu a restartu počítače, Windows nenaběhnou , nebo nenajede plocha , budou problémy s připojením, pak znovu restartuj počítač, pokud to nepomůže , po restartu mačkej klávesu F8 a pak zvol poslední známou funkční konfiguraci. , či použij bod obnovy.

Stáhni si aswMBR
na svojí plochu. Uzavři všechna okna , programy a prohlížeče. Poklepej na aswMBR.exe. Pokud se objeví hláška o možnosti stáhnutí databáze Avastu , klikni na NE. Poté klikni na „Scan“ . Po skenu klikni na „Save Log“ a ulož si log na plochu .Zkopíruj sem celý obsah toho logu. Pak klikni na „Exit“ k zavření programu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 89 hostů