Dobrý den...
Mám problém s checker.exe . Vždy když zapnu kompl tak my vyhodí okínko checker.exe přestal pracovat i kdyz srovna hraju hry a su na FB atd...stalo se to hned po te co jsem stahl a nainstaloval CoD:BO2-Call of Duty:Black Ops 2 . A jeden TYPEK mi poradil abych to dal do HiJackThis a tak som to udelal prosííím o pomoooooc....
Tu mate HiJackThis
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:20:04, on 6.12.2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16450)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\uTorrent\uTorrent.exe
C:\Users\uzivatel\AppData\Roaming\Identities\msess.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\DAEMON Tools Lite\DTShellHlp.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Fraps\fraps.exe
C:\Users\uzivatel\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\uzivatel\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\uzivatel\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\uzivatel\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\uzivatel\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\uzivatel\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\uzivatel\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\uzivatel\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\uzivatel\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\uzivatel\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Preserve
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim.com/?st=6&barid={AB37BDA0-150C-11E2-B2B8-001BFC8C33CA}
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Complitly - {0FB6A909-6086-458F-BD92-1F8EE10042A0} - C:\Users\uzivatel\AppData\Roaming\Complitly\Complitly.dll
O2 - BHO: IB Updater Helper - {336D0C35-8A85-403a-B9D2-65C292C39087} - C:\Program Files\IB Updater\Extension32.dll
O2 - BHO: Incredibar.com Helper Object - {6E13DDE1-2B6E-46CE-8B66-DC8BF36F6B99} - C:\Program Files\Incredibar.com\incredibar\1.5.11.14\bh\incredibar.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Freecorder extension - {B15BBE59-42F5-4206-B3F0-BE98F5DC4B93} - C:\Program Files\Freecorder extension\ScriptHost.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: SWEETIE - {EEE6C35C-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll (file missing)
O2 - BHO: SMTTB2009 - {FCBCCB87-9224-4B8D-B117-F56D924BEB18} - C:\Program Files\Xilisoft Download Youtube Toolbar\tbcore3.dll
O3 - Toolbar: SweetPacks Toolbar for Internet Explorer - {EEE6C35B-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll (file missing)
O3 - Toolbar: Incredibar Toolbar - {F9639E4A-801B-4843-AEE3-03D9DA199E77} - C:\Program Files\Incredibar.com\incredibar\1.5.11.14\incredibarTlbr.dll
O3 - Toolbar: Xilisoft Download Youtube Toolbar - {338B4DFE-2E2C-4338-9E41-E176D497299E} - C:\Program Files\Xilisoft Download Youtube Toolbar\tbcore3.dll
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [Google Update] "C:\Users\uzivatel\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [System] C:\Users\uzivatel\Music\lst.exe
O4 - HKCU\..\Run: [Integrated Driver] C:\Users\uzivatel\AppData\Roaming\Identities\msess.exe
O4 - HKCU\..\RunOnce: [FlashPlayerUpdate] C:\Windows\system32\Macromed\Flash\FlashUtil32_11_5_502_110_Plugin.exe -update plugin
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: IB Updater - Unknown owner - C:\Program Files\IB Updater\ExtensionUpdaterService.exe
O23 - Service: IBUpdaterService - Unknown owner - C:\Windows\system32\dmwu.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
--
End of file - 9000 bytes
Win7 Checker.exe Vyřešeno
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Win7 Checker.exe
Odinstaluj:
IB Updater Helper
Incredibar.com
Skype\Toolbars\
SweetIM
Xilisoft Download Youtube Toolbar
Zavři ostatní aplikace a prohlížeče, odpoj se od netu a fixni v HJT:
Návod
Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected. Poté klikni na Main (hlavní stránku ) a klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.
Stáhni si TFC
Otevři soubor a zavři všechny ostatní okna, Klikni na Start k zahájení procesu. Program by neměl trvat dlouho.
Poté by se měl PC restartovat, pokud ne , proveď sám.
Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Provést rychlý sken a klikni na tlačítko Skenovat
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Zobrazit výsledky
- pak zvol možnost uložit log a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.
Pokud budou problémy , spusť v nouz. režimu.
IB Updater Helper
Incredibar.com
Skype\Toolbars\
SweetIM
Xilisoft Download Youtube Toolbar
Zavři ostatní aplikace a prohlížeče, odpoj se od netu a fixni v HJT:
Návod
Kód: Vybrat vše
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: IB Updater Helper - {336D0C35-8A85-403a-B9D2-65C292C39087} - C:\Program Files\IB Updater\Extension32.dll
O2 - BHO: Incredibar.com Helper Object - {6E13DDE1-2B6E-46CE-8B66-DC8BF36F6B99} - C:\Program Files\Incredibar.com\incredibar\1.5.11.14\bh\incredibar.dll
O2 - BHO: SWEETIE - {EEE6C35C-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll (file missing)
O2 - BHO: SMTTB2009 - {FCBCCB87-9224-4B8D-B117-F56D924BEB18} - C:\Program Files\Xilisoft Download Youtube Toolbar\tbcore3.dll
O3 - Toolbar: SweetPacks Toolbar for Internet Explorer - {EEE6C35B-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll (file missing)
O3 - Toolbar: Incredibar Toolbar - {F9639E4A-801B-4843-AEE3-03D9DA199E77} - C:\Program Files\Incredibar.com\incredibar\1.5.11.14\incredibarTlbr.dll
O3 - Toolbar: Xilisoft Download Youtube Toolbar - {338B4DFE-2E2C-4338-9E41-E176D497299E} - C:\Program Files\Xilisoft Download Youtube Toolbar\tbcore3.dll
O4 - HKCU\..\Run: [Google Update] "C:\Users\uzivatel\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [System] C:\Users\uzivatel\Music\lst.exe
O4 - HKCU\..\RunOnce: [FlashPlayerUpdate] C:\Windows\system32\Macromed\Flash\FlashUtil32_11_5_502_110_Plugin.exe -update plugin
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected. Poté klikni na Main (hlavní stránku ) a klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.
Stáhni si TFC
Otevři soubor a zavři všechny ostatní okna, Klikni na Start k zahájení procesu. Program by neměl trvat dlouho.
Poté by se měl PC restartovat, pokud ne , proveď sám.
Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Provést rychlý sken a klikni na tlačítko Skenovat
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Zobrazit výsledky
- pak zvol možnost uložit log a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.
Pokud budou problémy , spusť v nouz. režimu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Win7 Checker.exe
Tu máš s toho Programu malwarabytes Anti-Malware:
Malwarebytes Anti-Malware 1.65.1.1000
www.malwarebytes.org
Verze databáze: v2012.12.06.12
Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 9.0.8112.16421
uzivatel :: UZIVATEL-PC [administrátor]
6.12.2012 21:27:42
mbam-log-2012-12-06 (21-35-27).txt
Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 196529
Uplynulý čas: 7 minut, 6 sekund
Nalezené procesy v paměti: 2
C:\Users\uzivatel\AppData\Roaming\Identities\msess.exe (Heuristics.Shuriken) -> 2844 -> Žádná instrukce nebyla provedena.
C:\Windows\System32\dmwu.exe (PUP.InstallBrain) -> 1704 -> Žádná instrukce nebyla provedena.
Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené klíče v registru: 1
HKLM\SYSTEM\CurrentControlSet\Services\IBUpdaterService (PUP.InstallBrain) -> Žádná instrukce nebyla provedena.
Nalezené hodnoty v registru: 2
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|Integrated Driver (Heuristics.Shuriken) -> Data: C:\Users\uzivatel\AppData\Roaming\Identities\msess.exe -> Žádná instrukce nebyla provedena.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|System (Worm.AutoRun) -> Data: C:\Users\uzivatel\Music\lst.exe -> Žádná instrukce nebyla provedena.
Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené soubory: 24
C:\Users\uzivatel\AppData\Roaming\Identities\msess.exe (Heuristics.Shuriken) -> Žádná instrukce nebyla provedena.
C:\Users\uzivatel\AppData\Roaming\BEF1.exe (Heuristics.Shuriken) -> Žádná instrukce nebyla provedena.
C:\Users\uzivatel\AppData\Roaming\1271.exe (Trojan.Agent) -> Žádná instrukce nebyla provedena.
C:\Users\uzivatel\AppData\Roaming\1AC7.exe (Trojan.Agent) -> Žádná instrukce nebyla provedena.
C:\Users\uzivatel\AppData\Roaming\75B4.exe (Trojan.Agent) -> Žádná instrukce nebyla provedena.
C:\Users\uzivatel\AppData\Roaming\AEB5.exe (Heuristics.Shuriken) -> Žádná instrukce nebyla provedena.
C:\Users\uzivatel\AppData\Roaming\B4FB.exe (Heuristics.Shuriken) -> Žádná instrukce nebyla provedena.
C:\Users\uzivatel\AppData\Roaming\Xgbmbj.exe (Trojan.VBKrypt) -> Žádná instrukce nebyla provedena.
C:\Users\uzivatel\AppData\Roaming\Assassin's Creed III\msess.exe (Heuristics.Shuriken) -> Žádná instrukce nebyla provedena.
C:\Users\uzivatel\AppData\Roaming\AVS4YOU\msess.exe (Heuristics.Shuriken) -> Žádná instrukce nebyla provedena.
C:\Users\uzivatel\AppData\Roaming\InstallShield\msess.exe (Heuristics.Shuriken) -> Žádná instrukce nebyla provedena.
C:\Users\uzivatel\AppData\Roaming\Skype\msess.exe (Heuristics.Shuriken) -> Žádná instrukce nebyla provedena.
C:\Users\uzivatel\AppData\Roaming\Theta\msess.exe (Heuristics.Shuriken) -> Žádná instrukce nebyla provedena.
C:\Users\uzivatel\AppData\Roaming\Unity\msess.exe (Heuristics.Shuriken) -> Žádná instrukce nebyla provedena.
C:\Users\uzivatel\AppData\Roaming\vlc\msess.exe (Heuristics.Shuriken) -> Žádná instrukce nebyla provedena.
C:\Users\uzivatel\AppData\Roaming\Win7codecs\msess.exe (Heuristics.Shuriken) -> Žádná instrukce nebyla provedena.
C:\Users\uzivatel\AppData\Roaming\ESET\msess.exe (Heuristics.Shuriken) -> Žádná instrukce nebyla provedena.
C:\Users\uzivatel\AppData\Roaming\FlashgetSetup\msess.exe (Heuristics.Shuriken) -> Žádná instrukce nebyla provedena.
C:\Users\uzivatel\AppData\Roaming\FunnyGames\msess.exe (Heuristics.Shuriken) -> Žádná instrukce nebyla provedena.
C:\Users\uzivatel\AppData\Roaming\GHISLER\msess.exe (Heuristics.Shuriken) -> Žádná instrukce nebyla provedena.
C:\Windows\AutoKMS.exe (Riskware.Keygen) -> Žádná instrukce nebyla provedena.
C:\Windows\KMSEmulator.exe (RiskWare.Tool.CK) -> Žádná instrukce nebyla provedena.
C:\Users\uzivatel\AppData\Roaming\91.exe (Trojan.Agent) -> Žádná instrukce nebyla provedena.
C:\Windows\System32\dmwu.exe (PUP.InstallBrain) -> Žádná instrukce nebyla provedena.
(konec)
Malwarebytes Anti-Malware 1.65.1.1000
www.malwarebytes.org
Verze databáze: v2012.12.06.12
Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 9.0.8112.16421
uzivatel :: UZIVATEL-PC [administrátor]
6.12.2012 21:27:42
mbam-log-2012-12-06 (21-35-27).txt
Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 196529
Uplynulý čas: 7 minut, 6 sekund
Nalezené procesy v paměti: 2
C:\Users\uzivatel\AppData\Roaming\Identities\msess.exe (Heuristics.Shuriken) -> 2844 -> Žádná instrukce nebyla provedena.
C:\Windows\System32\dmwu.exe (PUP.InstallBrain) -> 1704 -> Žádná instrukce nebyla provedena.
Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené klíče v registru: 1
HKLM\SYSTEM\CurrentControlSet\Services\IBUpdaterService (PUP.InstallBrain) -> Žádná instrukce nebyla provedena.
Nalezené hodnoty v registru: 2
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|Integrated Driver (Heuristics.Shuriken) -> Data: C:\Users\uzivatel\AppData\Roaming\Identities\msess.exe -> Žádná instrukce nebyla provedena.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|System (Worm.AutoRun) -> Data: C:\Users\uzivatel\Music\lst.exe -> Žádná instrukce nebyla provedena.
Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené soubory: 24
C:\Users\uzivatel\AppData\Roaming\Identities\msess.exe (Heuristics.Shuriken) -> Žádná instrukce nebyla provedena.
C:\Users\uzivatel\AppData\Roaming\BEF1.exe (Heuristics.Shuriken) -> Žádná instrukce nebyla provedena.
C:\Users\uzivatel\AppData\Roaming\1271.exe (Trojan.Agent) -> Žádná instrukce nebyla provedena.
C:\Users\uzivatel\AppData\Roaming\1AC7.exe (Trojan.Agent) -> Žádná instrukce nebyla provedena.
C:\Users\uzivatel\AppData\Roaming\75B4.exe (Trojan.Agent) -> Žádná instrukce nebyla provedena.
C:\Users\uzivatel\AppData\Roaming\AEB5.exe (Heuristics.Shuriken) -> Žádná instrukce nebyla provedena.
C:\Users\uzivatel\AppData\Roaming\B4FB.exe (Heuristics.Shuriken) -> Žádná instrukce nebyla provedena.
C:\Users\uzivatel\AppData\Roaming\Xgbmbj.exe (Trojan.VBKrypt) -> Žádná instrukce nebyla provedena.
C:\Users\uzivatel\AppData\Roaming\Assassin's Creed III\msess.exe (Heuristics.Shuriken) -> Žádná instrukce nebyla provedena.
C:\Users\uzivatel\AppData\Roaming\AVS4YOU\msess.exe (Heuristics.Shuriken) -> Žádná instrukce nebyla provedena.
C:\Users\uzivatel\AppData\Roaming\InstallShield\msess.exe (Heuristics.Shuriken) -> Žádná instrukce nebyla provedena.
C:\Users\uzivatel\AppData\Roaming\Skype\msess.exe (Heuristics.Shuriken) -> Žádná instrukce nebyla provedena.
C:\Users\uzivatel\AppData\Roaming\Theta\msess.exe (Heuristics.Shuriken) -> Žádná instrukce nebyla provedena.
C:\Users\uzivatel\AppData\Roaming\Unity\msess.exe (Heuristics.Shuriken) -> Žádná instrukce nebyla provedena.
C:\Users\uzivatel\AppData\Roaming\vlc\msess.exe (Heuristics.Shuriken) -> Žádná instrukce nebyla provedena.
C:\Users\uzivatel\AppData\Roaming\Win7codecs\msess.exe (Heuristics.Shuriken) -> Žádná instrukce nebyla provedena.
C:\Users\uzivatel\AppData\Roaming\ESET\msess.exe (Heuristics.Shuriken) -> Žádná instrukce nebyla provedena.
C:\Users\uzivatel\AppData\Roaming\FlashgetSetup\msess.exe (Heuristics.Shuriken) -> Žádná instrukce nebyla provedena.
C:\Users\uzivatel\AppData\Roaming\FunnyGames\msess.exe (Heuristics.Shuriken) -> Žádná instrukce nebyla provedena.
C:\Users\uzivatel\AppData\Roaming\GHISLER\msess.exe (Heuristics.Shuriken) -> Žádná instrukce nebyla provedena.
C:\Windows\AutoKMS.exe (Riskware.Keygen) -> Žádná instrukce nebyla provedena.
C:\Windows\KMSEmulator.exe (RiskWare.Tool.CK) -> Žádná instrukce nebyla provedena.
C:\Users\uzivatel\AppData\Roaming\91.exe (Trojan.Agent) -> Žádná instrukce nebyla provedena.
C:\Windows\System32\dmwu.exe (PUP.InstallBrain) -> Žádná instrukce nebyla provedena.
(konec)
- memphisto
- Guru Level 13
- Příspěvky: 21113
- Registrován: září 06
- Bydliště: Zlín - České Budějovice
- Pohlaví:
- Stav:
Offline
Re: Win7 Checker.exe
- Takže spus znovu MbAM a dej Scan
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Show Results
- ujistit se že máš zatrhnuté všechny vypsané nálezy a klikni na tlačítko Remove Selected
- když skončí odstraňování tak se ti zobrazí log, tak ho sem dej.
- pak zvol v programu OK a pak program ukonči přes Exit
Stáhni si TDSSKiller
Na svojí plochu. Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller.2.2.7.1._(datum)_log.txt , vlož sem prosím celý obsah logu.
Vypni rezidentní štít antiviru a antispywaru
Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud bude po kontrole problém spustit aplikace nebo bude vyskakovat hláška o pokusu použít neplatnou operaci na klíč registru, který je oznaèen pro odstranění, stačí restartovat počítač.
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Show Results
- ujistit se že máš zatrhnuté všechny vypsané nálezy a klikni na tlačítko Remove Selected
- když skončí odstraňování tak se ti zobrazí log, tak ho sem dej.
- pak zvol v programu OK a pak program ukonči přes Exit
Stáhni si TDSSKiller
Na svojí plochu. Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller.2.2.7.1._(datum)_log.txt , vlož sem prosím celý obsah logu.
Vypni rezidentní štít antiviru a antispywaru
Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud bude po kontrole problém spustit aplikace nebo bude vyskakovat hláška o pokusu použít neplatnou operaci na klíč registru, který je oznaèen pro odstranění, stačí restartovat počítač.
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji
Re: Win7 Checker.exe
MB:AM Log:
Malwarebytes Anti-Malware 1.65.1.1000
www.malwarebytes.org
Verze databáze: v2012.12.06.12
Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 9.0.8112.16421
uzivatel :: UZIVATEL-PC [administrátor]
7.12.2012 14:21:16
mbam-log-2012-12-07 (14-21-16).txt
Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 196703
Uplynulý čas: 7 minut, 31 sekund
Nalezené procesy v paměti: 2
C:\Users\uzivatel\AppData\Roaming\ESET\msess.exe (Heuristics.Shuriken) -> 3336 -> Bude smazán při restartu.
C:\Windows\System32\dmwu.exe (PUP.InstallBrain) -> 1692 -> Bude smazán při restartu.
Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené klíče v registru: 1
HKLM\SYSTEM\CurrentControlSet\Services\IBUpdaterService (PUP.InstallBrain) -> Umístnění do karantény a smazání se zdařilo.
Nalezené hodnoty v registru: 2
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|Integrated Driver (Heuristics.Shuriken) -> Data: C:\Users\uzivatel\AppData\Roaming\ESET\msess.exe -> Umístnění do karantény a smazání se zdařilo.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|System (Worm.AutoRun) -> Data: C:\Users\uzivatel\Music\lst.exe -> Umístnění do karantény a smazání se zdařilo.
Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené soubory: 19
C:\Users\uzivatel\AppData\Roaming\ESET\msess.exe (Heuristics.Shuriken) -> Bude smazán při restartu.
C:\Users\uzivatel\AppData\Roaming\BEF1.exe (Heuristics.Shuriken) -> Umístnění do karantény a smazání se zdařilo.
C:\Users\uzivatel\AppData\Roaming\Assassin's Creed III\msess.exe (Heuristics.Shuriken) -> Umístnění do karantény a smazání se zdařilo.
C:\Users\uzivatel\AppData\Roaming\AVS4YOU\msess.exe (Heuristics.Shuriken) -> Umístnění do karantény a smazání se zdařilo.
C:\Users\uzivatel\AppData\Roaming\InstallShield\msess.exe (Heuristics.Shuriken) -> Umístnění do karantény a smazání se zdařilo.
C:\Users\uzivatel\AppData\Roaming\Media Center Programs\msess.exe (Heuristics.Shuriken) -> Umístnění do karantény a smazání se zdařilo.
C:\Users\uzivatel\AppData\Roaming\Origin\msess.exe (Heuristics.Shuriken) -> Umístnění do karantény a smazání se zdařilo.
C:\Users\uzivatel\AppData\Roaming\Skype\msess.exe (Heuristics.Shuriken) -> Umístnění do karantény a smazání se zdařilo.
C:\Users\uzivatel\AppData\Roaming\Theta\msess.exe (Heuristics.Shuriken) -> Umístnění do karantény a smazání se zdařilo.
C:\Users\uzivatel\AppData\Roaming\Unity\msess.exe (Heuristics.Shuriken) -> Umístnění do karantény a smazání se zdařilo.
C:\Users\uzivatel\AppData\Roaming\vlc\msess.exe (Heuristics.Shuriken) -> Umístnění do karantény a smazání se zdařilo.
C:\Users\uzivatel\AppData\Roaming\Win7codecs\msess.exe (Heuristics.Shuriken) -> Umístnění do karantény a smazání se zdařilo.
C:\Users\uzivatel\AppData\Roaming\FlashgetSetup\msess.exe (Heuristics.Shuriken) -> Umístnění do karantény a smazání se zdařilo.
C:\Users\uzivatel\AppData\Roaming\FunnyGames\msess.exe (Heuristics.Shuriken) -> Umístnění do karantény a smazání se zdařilo.
C:\Users\uzivatel\AppData\Roaming\GHISLER\msess.exe (Heuristics.Shuriken) -> Umístnění do karantény a smazání se zdařilo.
C:\Windows\AutoKMS.exe (Riskware.Keygen) -> Umístnění do karantény a smazání se zdařilo.
C:\Windows\KMSEmulator.exe (RiskWare.Tool.CK) -> Umístnění do karantény a smazání se zdařilo.
C:\Users\uzivatel\AppData\Roaming\91.exe (Trojan.Agent) -> Umístnění do karantény a smazání se zdařilo.
C:\Windows\System32\dmwu.exe (PUP.InstallBrain) -> Bude smazán při restartu.
(konec)
Malwarebytes Anti-Malware 1.65.1.1000
www.malwarebytes.org
Verze databáze: v2012.12.06.12
Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 9.0.8112.16421
uzivatel :: UZIVATEL-PC [administrátor]
7.12.2012 14:21:16
mbam-log-2012-12-07 (14-21-16).txt
Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 196703
Uplynulý čas: 7 minut, 31 sekund
Nalezené procesy v paměti: 2
C:\Users\uzivatel\AppData\Roaming\ESET\msess.exe (Heuristics.Shuriken) -> 3336 -> Bude smazán při restartu.
C:\Windows\System32\dmwu.exe (PUP.InstallBrain) -> 1692 -> Bude smazán při restartu.
Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené klíče v registru: 1
HKLM\SYSTEM\CurrentControlSet\Services\IBUpdaterService (PUP.InstallBrain) -> Umístnění do karantény a smazání se zdařilo.
Nalezené hodnoty v registru: 2
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|Integrated Driver (Heuristics.Shuriken) -> Data: C:\Users\uzivatel\AppData\Roaming\ESET\msess.exe -> Umístnění do karantény a smazání se zdařilo.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|System (Worm.AutoRun) -> Data: C:\Users\uzivatel\Music\lst.exe -> Umístnění do karantény a smazání se zdařilo.
Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené soubory: 19
C:\Users\uzivatel\AppData\Roaming\ESET\msess.exe (Heuristics.Shuriken) -> Bude smazán při restartu.
C:\Users\uzivatel\AppData\Roaming\BEF1.exe (Heuristics.Shuriken) -> Umístnění do karantény a smazání se zdařilo.
C:\Users\uzivatel\AppData\Roaming\Assassin's Creed III\msess.exe (Heuristics.Shuriken) -> Umístnění do karantény a smazání se zdařilo.
C:\Users\uzivatel\AppData\Roaming\AVS4YOU\msess.exe (Heuristics.Shuriken) -> Umístnění do karantény a smazání se zdařilo.
C:\Users\uzivatel\AppData\Roaming\InstallShield\msess.exe (Heuristics.Shuriken) -> Umístnění do karantény a smazání se zdařilo.
C:\Users\uzivatel\AppData\Roaming\Media Center Programs\msess.exe (Heuristics.Shuriken) -> Umístnění do karantény a smazání se zdařilo.
C:\Users\uzivatel\AppData\Roaming\Origin\msess.exe (Heuristics.Shuriken) -> Umístnění do karantény a smazání se zdařilo.
C:\Users\uzivatel\AppData\Roaming\Skype\msess.exe (Heuristics.Shuriken) -> Umístnění do karantény a smazání se zdařilo.
C:\Users\uzivatel\AppData\Roaming\Theta\msess.exe (Heuristics.Shuriken) -> Umístnění do karantény a smazání se zdařilo.
C:\Users\uzivatel\AppData\Roaming\Unity\msess.exe (Heuristics.Shuriken) -> Umístnění do karantény a smazání se zdařilo.
C:\Users\uzivatel\AppData\Roaming\vlc\msess.exe (Heuristics.Shuriken) -> Umístnění do karantény a smazání se zdařilo.
C:\Users\uzivatel\AppData\Roaming\Win7codecs\msess.exe (Heuristics.Shuriken) -> Umístnění do karantény a smazání se zdařilo.
C:\Users\uzivatel\AppData\Roaming\FlashgetSetup\msess.exe (Heuristics.Shuriken) -> Umístnění do karantény a smazání se zdařilo.
C:\Users\uzivatel\AppData\Roaming\FunnyGames\msess.exe (Heuristics.Shuriken) -> Umístnění do karantény a smazání se zdařilo.
C:\Users\uzivatel\AppData\Roaming\GHISLER\msess.exe (Heuristics.Shuriken) -> Umístnění do karantény a smazání se zdařilo.
C:\Windows\AutoKMS.exe (Riskware.Keygen) -> Umístnění do karantény a smazání se zdařilo.
C:\Windows\KMSEmulator.exe (RiskWare.Tool.CK) -> Umístnění do karantény a smazání se zdařilo.
C:\Users\uzivatel\AppData\Roaming\91.exe (Trojan.Agent) -> Umístnění do karantény a smazání se zdařilo.
C:\Windows\System32\dmwu.exe (PUP.InstallBrain) -> Bude smazán při restartu.
(konec)
Re: Win7 Checker.exe
TDSSKiller Log:
14:39:07.0518 3452 TDSS rootkit removing tool 2.8.15.0 Oct 31 2012 21:47:35
14:39:07.0861 3452 ============================================================
14:39:07.0861 3452 Current date / time: 2012/12/07 14:39:07.0861
14:39:07.0861 3452 SystemInfo:
14:39:07.0861 3452
14:39:07.0861 3452 OS Version: 6.1.7601 ServicePack: 1.0
14:39:07.0861 3452 Product type: Workstation
14:39:07.0861 3452 ComputerName: UZIVATEL-PC
14:39:07.0861 3452 UserName: uzivatel
14:39:07.0861 3452 Windows directory: C:\Windows
14:39:07.0861 3452 System windows directory: C:\Windows
14:39:07.0861 3452 Processor architecture: Intel x86
14:39:07.0861 3452 Number of processors: 1
14:39:07.0861 3452 Page size: 0x1000
14:39:07.0861 3452 Boot type: Normal boot
14:39:07.0861 3452 ============================================================
14:39:09.0078 3452 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0x7E2CB, SectorsPerTrack: 0xE, TracksPerCylinder: 0x87, Type 'K0', Flags 0x00000050
14:39:09.0078 3452 ============================================================
14:39:09.0078 3452 \Device\Harddisk0\DR0:
14:39:09.0078 3452 MBR partitions:
14:39:09.0078 3452 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
14:39:09.0078 3452 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x3A353000
14:39:09.0078 3452 ============================================================
14:39:09.0140 3452 C: <-> \Device\Harddisk0\DR0\Partition2
14:39:09.0140 3452 ============================================================
14:39:09.0140 3452 Initialize success
14:39:09.0140 3452 ============================================================
14:39:13.0368 3076 ============================================================
14:39:13.0368 3076 Scan started
14:39:13.0368 3076 Mode: Manual;
14:39:13.0368 3076 ============================================================
14:39:14.0585 3076 ================ Scan system memory ========================
14:39:14.0585 3076 System memory - ok
14:39:14.0585 3076 ================ Scan services =============================
14:39:14.0741 3076 [ 1B133875B8AA8AC48969BD3458AFE9F5 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
14:39:14.0741 3076 1394ohci - ok
14:39:14.0772 3076 [ CEA80C80BED809AA0DA6FEBC04733349 ] ACPI C:\Windows\system32\drivers\ACPI.sys
14:39:14.0788 3076 ACPI - ok
14:39:14.0819 3076 [ 1EFBC664ABFF416D1D07DB115DCB264F ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
14:39:14.0819 3076 AcpiPmi - ok
14:39:14.0866 3076 [ 575307983C9EF41C456C41DFF3574A38 ] ADIHdAudAddService C:\Windows\system32\drivers\ADIHdAud.sys
14:39:14.0881 3076 ADIHdAudAddService - ok
14:39:14.0975 3076 [ 0CB0AA071C7B86A64F361DCFDF357329 ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
14:39:14.0975 3076 AdobeFlashPlayerUpdateSvc - ok
14:39:15.0022 3076 [ 21E785EBD7DC90A06391141AAC7892FB ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
14:39:15.0053 3076 adp94xx - ok
14:39:15.0068 3076 [ 0C676BC278D5B59FF5ABD57BBE9123F2 ] adpahci C:\Windows\system32\drivers\adpahci.sys
14:39:15.0084 3076 adpahci - ok
14:39:15.0100 3076 [ 7C7B5EE4B7B822EC85321FE23A27DB33 ] adpu320 C:\Windows\system32\drivers\adpu320.sys
14:39:15.0100 3076 adpu320 - ok
14:39:15.0146 3076 [ 8B5EEFEEC1E6D1A72A06C526628AD161 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
14:39:15.0146 3076 AeLookupSvc - ok
14:39:15.0178 3076 [ 9EBBBA55060F786F0FCAA3893BFA2806 ] AFD C:\Windows\system32\drivers\afd.sys
14:39:15.0193 3076 AFD - ok
14:39:15.0209 3076 [ 507812C3054C21CEF746B6EE3D04DD6E ] agp440 C:\Windows\system32\drivers\agp440.sys
14:39:15.0209 3076 agp440 - ok
14:39:15.0240 3076 [ 8B30250D573A8F6B4BD23195160D8707 ] aic78xx C:\Windows\system32\drivers\djsvs.sys
14:39:15.0256 3076 aic78xx - ok
14:39:15.0256 3076 [ 18A54E132947CD98FEA9ACCC57F98F13 ] ALG C:\Windows\System32\alg.exe
14:39:15.0271 3076 ALG - ok
14:39:15.0287 3076 [ 0D40BCF52EA90FC7DF2AEAB6503DEA44 ] aliide C:\Windows\system32\drivers\aliide.sys
14:39:15.0287 3076 aliide - ok
14:39:15.0334 3076 [ E608D708EFE1F8AE7160DB7C0DE4D8E6 ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe
14:39:15.0334 3076 AMD External Events Utility - ok
14:39:15.0396 3076 AMD FUEL Service - ok
14:39:15.0427 3076 [ 3C6600A0696E90A463771C7422E23AB5 ] amdagp C:\Windows\system32\drivers\amdagp.sys
14:39:15.0427 3076 amdagp - ok
14:39:15.0458 3076 [ CD5914170297126B6266860198D1D4F0 ] amdide C:\Windows\system32\drivers\amdide.sys
14:39:15.0458 3076 amdide - ok
14:39:15.0474 3076 [ FF258424F0B2EF25EB98F04EE386E6E3 ] amdiox86 C:\Windows\system32\DRIVERS\amdiox86.sys
14:39:15.0474 3076 amdiox86 - ok
14:39:15.0505 3076 [ 00DDA200D71BAC534BF56A9DB5DFD666 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
14:39:15.0505 3076 AmdK8 - ok
14:39:15.0724 3076 [ F611C341A8B0926D6C2D6417464BD11E ] amdkmdag C:\Windows\system32\DRIVERS\atikmdag.sys
14:39:15.0864 3076 amdkmdag - ok
14:39:15.0895 3076 [ C08F6E9987D2AACFF9653ADB30C4DA3D ] amdkmdap C:\Windows\system32\DRIVERS\atikmpag.sys
14:39:15.0926 3076 amdkmdap - ok
14:39:15.0942 3076 [ 3CBF30F5370FDA40DD3E87DF38EA53B6 ] AmdPPM C:\Windows\system32\drivers\amdppm.sys
14:39:15.0942 3076 AmdPPM - ok
14:39:15.0973 3076 [ D320BF87125326F996D4904FE24300FC ] amdsata C:\Windows\system32\drivers\amdsata.sys
14:39:15.0989 3076 amdsata - ok
14:39:16.0020 3076 [ EA43AF0C423FF267355F74E7A53BDABA ] amdsbs C:\Windows\system32\drivers\amdsbs.sys
14:39:16.0020 3076 amdsbs - ok
14:39:16.0067 3076 [ 46387FB17B086D16DEA267D5BE23A2F2 ] amdxata C:\Windows\system32\drivers\amdxata.sys
14:39:16.0067 3076 amdxata - ok
14:39:16.0098 3076 [ AEA177F783E20150ACE5383EE368DA19 ] AppID C:\Windows\system32\drivers\appid.sys
14:39:16.0114 3076 AppID - ok
14:39:16.0129 3076 [ 62A9C86CB6085E20DB4823E4E97826F5 ] AppIDSvc C:\Windows\System32\appidsvc.dll
14:39:16.0129 3076 AppIDSvc - ok
14:39:16.0145 3076 [ FB1959012294D6AD43E5304DF65E3C26 ] Appinfo C:\Windows\System32\appinfo.dll
14:39:16.0145 3076 Appinfo - ok
14:39:16.0176 3076 [ A45D184DF6A8803DA13A0B329517A64A ] AppMgmt C:\Windows\System32\appmgmts.dll
14:39:16.0176 3076 AppMgmt - ok
14:39:16.0207 3076 [ 2932004F49677BD84DBC72EDB754FFB3 ] arc C:\Windows\system32\drivers\arc.sys
14:39:16.0207 3076 arc - ok
14:39:16.0223 3076 [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7 ] arcsas C:\Windows\system32\drivers\arcsas.sys
14:39:16.0223 3076 arcsas - ok
14:39:16.0316 3076 [ 776ACEFA0CA9DF0FAA51A5FB2F435705 ] aspnet_state C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
14:39:16.0348 3076 aspnet_state - ok
14:39:16.0379 3076 [ ADD2ADE1C2B285AB8378D2DAAF991481 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
14:39:16.0379 3076 AsyncMac - ok
14:39:16.0410 3076 [ 338C86357871C167A96AB976519BF59E ] atapi C:\Windows\system32\drivers\atapi.sys
14:39:16.0410 3076 atapi - ok
14:39:16.0457 3076 [ 434192D027A6A11E32E1C74C7C43E1ED ] AtiHDAudioService C:\Windows\system32\drivers\AtihdW73.sys
14:39:16.0472 3076 AtiHDAudioService - ok
14:39:16.0519 3076 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
14:39:16.0535 3076 AudioEndpointBuilder - ok
14:39:16.0597 3076 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] Audiosrv C:\Windows\System32\Audiosrv.dll
14:39:16.0597 3076 Audiosrv - ok
14:39:16.0628 3076 [ 6E30D02AAC9CAC84F421622E3A2F6178 ] AxInstSV C:\Windows\System32\AxInstSV.dll
14:39:16.0628 3076 AxInstSV - ok
14:39:16.0660 3076 [ 1A231ABEC60FD316EC54C66715543CEC ] b06bdrv C:\Windows\system32\drivers\bxvbdx.sys
14:39:16.0675 3076 b06bdrv - ok
14:39:16.0691 3076 [ BD8869EB9CDE6BBE4508D869929869EE ] b57nd60x C:\Windows\system32\DRIVERS\b57nd60x.sys
14:39:16.0706 3076 b57nd60x - ok
14:39:16.0722 3076 [ EE1E9C3BB8228AE423DD38DB69128E71 ] BDESVC C:\Windows\System32\bdesvc.dll
14:39:16.0722 3076 BDESVC - ok
14:39:16.0753 3076 [ 505506526A9D467307B3C393DEDAF858 ] Beep C:\Windows\system32\drivers\Beep.sys
14:39:16.0753 3076 Beep - ok
14:39:16.0784 3076 [ 1E2BAC209D184BB851E1A187D8A29136 ] BFE C:\Windows\System32\bfe.dll
14:39:16.0784 3076 BFE - ok
14:39:16.0831 3076 [ E585445D5021971FAE10393F0F1C3961 ] BITS C:\Windows\System32\qmgr.dll
14:39:16.0831 3076 BITS - ok
14:39:16.0878 3076 [ 2287078ED48FCFC477B05B20CF38F36F ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
14:39:16.0878 3076 blbdrive - ok
14:39:16.0909 3076 [ 8F2DA3028D5FCBD1A060A3DE64CD6506 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
14:39:16.0909 3076 bowser - ok
14:39:16.0925 3076 [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo C:\Windows\system32\drivers\BrFiltLo.sys
14:39:16.0925 3076 BrFiltLo - ok
14:39:16.0940 3076 [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp C:\Windows\system32\drivers\BrFiltUp.sys
14:39:16.0940 3076 BrFiltUp - ok
14:39:16.0972 3076 [ 3DAA727B5B0A45039B0E1C9A211B8400 ] Browser C:\Windows\System32\browser.dll
14:39:16.0972 3076 Browser - ok
14:39:17.0018 3076 [ 845B8CE732E67F3B4133164868C666EA ] Brserid C:\Windows\System32\Drivers\Brserid.sys
14:39:17.0050 3076 Brserid - ok
14:39:17.0065 3076 [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
14:39:17.0065 3076 BrSerWdm - ok
14:39:17.0096 3076 [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
14:39:17.0096 3076 BrUsbMdm - ok
14:39:17.0112 3076 [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
14:39:17.0112 3076 BrUsbSer - ok
14:39:17.0128 3076 [ ED3DF7C56CE0084EB2034432FC56565A ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
14:39:17.0128 3076 BTHMODEM - ok
14:39:17.0174 3076 [ 1DF19C96EEF6C29D1C3E1A8678E07190 ] bthserv C:\Windows\system32\bthserv.dll
14:39:17.0174 3076 bthserv - ok
14:39:17.0221 3076 [ 77EA11B065E0A8AB902D78145CA51E10 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
14:39:17.0221 3076 cdfs - ok
14:39:17.0237 3076 [ BE167ED0FDB9C1FA1133953C18D5A6C9 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
14:39:17.0237 3076 cdrom - ok
14:39:17.0268 3076 [ 319C6B309773D063541D01DF8AC6F55F ] CertPropSvc C:\Windows\System32\certprop.dll
14:39:17.0268 3076 CertPropSvc - ok
14:39:17.0284 3076 [ 3FE3FE94A34DF6FB06E6418D0F6A0060 ] circlass C:\Windows\system32\drivers\circlass.sys
14:39:17.0284 3076 circlass - ok
14:39:17.0299 3076 [ 635181E0E9BBF16871BF5380D71DB02D ] CLFS C:\Windows\system32\CLFS.sys
14:39:17.0315 3076 CLFS - ok
14:39:17.0346 3076 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
14:39:17.0377 3076 clr_optimization_v2.0.50727_32 - ok
14:39:17.0440 3076 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
14:39:17.0455 3076 clr_optimization_v4.0.30319_32 - ok
14:39:17.0486 3076 [ DEA805815E587DAD1DD2C502220B5616 ] CmBatt C:\Windows\system32\drivers\CmBatt.sys
14:39:17.0486 3076 CmBatt - ok
14:39:17.0502 3076 [ C537B1DB64D495B9B4717B4D6D9EDBF2 ] cmdide C:\Windows\system32\drivers\cmdide.sys
14:39:17.0502 3076 cmdide - ok
14:39:17.0533 3076 [ 247B4CE2DAB1160CD422D532D5241E1F ] CNG C:\Windows\system32\Drivers\cng.sys
14:39:17.0549 3076 CNG - ok
14:39:17.0564 3076 [ A6023D3823C37043986713F118A89BEE ] Compbatt C:\Windows\system32\drivers\compbatt.sys
14:39:17.0596 3076 Compbatt - ok
14:39:17.0627 3076 [ CBE8C58A8579CFE5FCCF809E6F114E89 ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys
14:39:17.0627 3076 CompositeBus - ok
14:39:17.0658 3076 COMSysApp - ok
14:39:17.0674 3076 [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
14:39:17.0674 3076 crcdisk - ok
14:39:17.0720 3076 [ 96C0E38905CFD788313BE8E11DAE3F2F ] CryptSvc C:\Windows\system32\cryptsvc.dll
14:39:17.0720 3076 CryptSvc - ok
14:39:17.0752 3076 [ 3C2177A897B4CA2788C6FB0C3FD81D4B ] CSC C:\Windows\system32\drivers\csc.sys
14:39:17.0752 3076 CSC - ok
14:39:17.0783 3076 [ 15F93B37F6801943360D9EB42485D5D3 ] CscService C:\Windows\System32\cscsvc.dll
14:39:17.0783 3076 CscService - ok
14:39:17.0830 3076 [ 7660F01D3B38ACA1747E397D21D790AF ] DcomLaunch C:\Windows\system32\rpcss.dll
14:39:17.0830 3076 DcomLaunch - ok
14:39:17.0861 3076 [ 8D6E10A2D9A5EED59562D9B82CF804E1 ] defragsvc C:\Windows\System32\defragsvc.dll
14:39:17.0861 3076 defragsvc - ok
14:39:17.0892 3076 [ F024449C97EC1E464AAFFDA18593DB88 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
14:39:17.0908 3076 DfsC - ok
14:39:17.0939 3076 [ E9E01EB683C132F7FA27CD607B8A2B63 ] Dhcp C:\Windows\system32\dhcpcore.dll
14:39:17.0939 3076 Dhcp - ok
14:39:17.0954 3076 [ 1A050B0274BFB3890703D490F330C0DA ] discache C:\Windows\system32\drivers\discache.sys
14:39:17.0970 3076 discache - ok
14:39:18.0001 3076 [ 565003F326F99802E68CA78F2A68E9FF ] Disk C:\Windows\system32\drivers\disk.sys
14:39:18.0001 3076 Disk - ok
14:39:18.0048 3076 [ 2A958EF85DB1B61FFCA65044FA4BCE9E ] dmvsc C:\Windows\system32\drivers\dmvsc.sys
14:39:18.0048 3076 dmvsc - ok
14:39:18.0110 3076 [ 33EF4861F19A0736B11314AAD9AE28D0 ] Dnscache C:\Windows\System32\dnsrslvr.dll
14:39:18.0110 3076 Dnscache - ok
14:39:18.0157 3076 [ 366BA8FB4B7BB7435E3B9EACB3843F67 ] dot3svc C:\Windows\System32\dot3svc.dll
14:39:18.0157 3076 dot3svc - ok
14:39:18.0173 3076 [ 8EC04CA86F1D68DA9E11952EB85973D6 ] DPS C:\Windows\system32\dps.dll
14:39:18.0173 3076 DPS - ok
14:39:18.0204 3076 [ B918E7C5F9BF77202F89E1A9539F2EB4 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
14:39:18.0204 3076 drmkaud - ok
14:39:18.0266 3076 [ 687AF6BB383885FF6A64071B189A7F3E ] dtsoftbus01 C:\Windows\system32\DRIVERS\dtsoftbus01.sys
14:39:18.0266 3076 dtsoftbus01 - ok
14:39:18.0298 3076 [ 23F5D28378A160352BA8F817BD8C71CB ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
14:39:18.0313 3076 DXGKrnl - ok
14:39:18.0344 3076 EagleXNt - ok
14:39:18.0376 3076 [ 8A45015E85A4DCE0086B9973F0FD9A20 ] eamonm C:\Windows\system32\DRIVERS\eamonm.sys
14:39:18.0376 3076 eamonm - ok
14:39:18.0407 3076 [ 8600142FA91C1B96367D3300AD0F3F3A ] EapHost C:\Windows\System32\eapsvc.dll
14:39:18.0407 3076 EapHost - ok
14:39:18.0485 3076 [ 024E1B5CAC09731E4D868E64DBFB4AB0 ] ebdrv C:\Windows\system32\drivers\evbdx.sys
14:39:18.0563 3076 ebdrv - ok
14:39:18.0594 3076 [ 81951F51E318AECC2D68559E47485CC4 ] EFS C:\Windows\System32\lsass.exe
14:39:18.0610 3076 EFS - ok
14:39:18.0641 3076 [ 5412ED24FFFCA64E2F0168399B86C952 ] ehdrv C:\Windows\system32\DRIVERS\ehdrv.sys
14:39:18.0641 3076 ehdrv - ok
14:39:18.0688 3076 [ A8C362018EFC87BEB013EE28F29C0863 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
14:39:18.0703 3076 ehRecvr - ok
14:39:18.0719 3076 [ D389BFF34F80CAEDE417BF9D1507996A ] ehSched C:\Windows\ehome\ehsched.exe
14:39:18.0719 3076 ehSched - ok
14:39:18.0766 3076 [ AD4FAADE819E0DA9933BEA7C01D2C763 ] ekrn C:\Program Files\ESET\ESET Smart Security\ekrn.exe
14:39:18.0766 3076 ekrn - ok
14:39:18.0797 3076 [ 0ED67910C8C326796FAA00B2BF6D9D3C ] elxstor C:\Windows\system32\drivers\elxstor.sys
14:39:18.0812 3076 elxstor - ok
14:39:18.0844 3076 [ 774BABCB1144513DC86992003740B774 ] epfw C:\Windows\system32\DRIVERS\epfw.sys
14:39:18.0844 3076 epfw - ok
14:39:18.0859 3076 [ 2C22CC39309EE06AE870C183BF2A769D ] EpfwLWF C:\Windows\system32\DRIVERS\EpfwLWF.sys
14:39:18.0875 3076 EpfwLWF - ok
14:39:18.0890 3076 [ 2B4E5F01A4E786B422F4D617B51FA7D9 ] epfwwfp C:\Windows\system32\DRIVERS\epfwwfp.sys
14:39:18.0890 3076 epfwwfp - ok
14:39:18.0922 3076 [ 8FC3208352DD3912C94367A206AB3F11 ] ErrDev C:\Windows\system32\drivers\errdev.sys
14:39:18.0922 3076 ErrDev - ok
14:39:18.0968 3076 [ F6916EFC29D9953D5D0DF06882AE8E16 ] EventSystem C:\Windows\system32\es.dll
14:39:18.0968 3076 EventSystem - ok
14:39:19.0000 3076 [ 2DC9108D74081149CC8B651D3A26207F ] exfat C:\Windows\system32\drivers\exfat.sys
14:39:19.0000 3076 exfat - ok
14:39:19.0015 3076 [ 7E0AB74553476622FB6AE36F73D97D35 ] fastfat C:\Windows\system32\drivers\fastfat.sys
14:39:19.0031 3076 fastfat - ok
14:39:19.0062 3076 [ 967EA5B213E9984CBE270205DF37755B ] Fax C:\Windows\system32\fxssvc.exe
14:39:19.0078 3076 Fax - ok
14:39:19.0109 3076 [ E817A017F82DF2A1F8CFDBDA29388B29 ] fdc C:\Windows\system32\DRIVERS\fdc.sys
14:39:19.0109 3076 fdc - ok
14:39:19.0124 3076 [ F3222C893BD2F5821A0179E5C71E88FB ] fdPHost C:\Windows\system32\fdPHost.dll
14:39:19.0140 3076 fdPHost - ok
14:39:19.0140 3076 [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B ] FDResPub C:\Windows\system32\fdrespub.dll
14:39:19.0156 3076 FDResPub - ok
14:39:19.0156 3076 [ 6CF00369C97F3CF563BE99BE983D13D8 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
14:39:19.0171 3076 FileInfo - ok
14:39:19.0187 3076 [ 42C51DC94C91DA21CB9196EB64C45DB9 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
14:39:19.0187 3076 Filetrace - ok
14:39:19.0202 3076 [ 87907AA70CB3C56600F1C2FB8841579B ] flpydisk C:\Windows\system32\drivers\flpydisk.sys
14:39:19.0202 3076 flpydisk - ok
14:39:19.0234 3076 [ 7520EC808E0C35E0EE6F841294316653 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
14:39:19.0234 3076 FltMgr - ok
14:39:19.0280 3076 [ B3A5EC6B6B6673DB7E87C2BCDBDDC074 ] FontCache C:\Windows\system32\FntCache.dll
14:39:19.0296 3076 FontCache - ok
14:39:19.0343 3076 [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
14:39:19.0374 3076 FontCache3.0.0.0 - ok
14:39:19.0390 3076 [ 1A16B57943853E598CFF37FE2B8CBF1D ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
14:39:19.0405 3076 FsDepends - ok
14:39:19.0421 3076 [ 7DAE5EBCC80E45D3253F4923DC424D05 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
14:39:19.0421 3076 Fs_Rec - ok
14:39:19.0452 3076 [ 8A73E79089B282100B9393B644CB853B ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
14:39:19.0452 3076 fvevol - ok
14:39:19.0499 3076 [ 65EE0C7A58B65E74AE05637418153938 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
14:39:19.0499 3076 gagp30kx - ok
14:39:19.0530 3076 [ E897EAF5ED6BA41E081060C9B447A673 ] gpsvc C:\Windows\System32\gpsvc.dll
14:39:19.0546 3076 gpsvc - ok
14:39:19.0608 3076 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
14:39:19.0608 3076 gupdate - ok
14:39:19.0624 3076 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
14:39:19.0624 3076 gupdatem - ok
14:39:19.0655 3076 [ 7929A161F9951D173CA9900FE7067391 ] hamachi C:\Windows\system32\DRIVERS\hamachi.sys
14:39:19.0655 3076 hamachi - ok
14:39:19.0686 3076 [ C44E3C2BAB6837DB337DDEE7544736DB ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
14:39:19.0686 3076 hcw85cir - ok
14:39:19.0717 3076 [ A5EF29D5315111C80A5C1ABAD14C8972 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
14:39:19.0733 3076 HdAudAddService - ok
14:39:19.0748 3076 [ 9036377B8A6C15DC2EEC53E489D159B5 ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
14:39:19.0748 3076 HDAudBus - ok
14:39:19.0780 3076 [ 1D58A7F3E11A9731D0EAAAA8405ACC36 ] HidBatt C:\Windows\system32\drivers\HidBatt.sys
14:39:19.0780 3076 HidBatt - ok
14:39:19.0795 3076 [ 89448F40E6DF260C206A193A4683BA78 ] HidBth C:\Windows\system32\drivers\hidbth.sys
14:39:19.0795 3076 HidBth - ok
14:39:19.0842 3076 [ CF50B4CF4A4F229B9F3C08351F99CA5E ] HidIr C:\Windows\system32\drivers\hidir.sys
14:39:19.0842 3076 HidIr - ok
14:39:19.0873 3076 [ 2BC6F6A1992B3A77F5F41432CA6B3B6B ] hidserv C:\Windows\system32\hidserv.dll
14:39:19.0873 3076 hidserv - ok
14:39:19.0904 3076 [ 10C19F8290891AF023EAEC0832E1EB4D ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
14:39:19.0904 3076 HidUsb - ok
14:39:19.0936 3076 [ 196B4E3F4CCCC24AF836CE58FACBB699 ] hkmsvc C:\Windows\system32\kmsvc.dll
14:39:19.0936 3076 hkmsvc - ok
14:39:19.0967 3076 [ 6658F4404DE03D75FE3BA09F7ABA6A30 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
14:39:19.0967 3076 HomeGroupListener - ok
14:39:19.0998 3076 [ DBC02D918FFF1CAD628ACBE0C0EAA8E8 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
14:39:19.0998 3076 HomeGroupProvider - ok
14:39:20.0060 3076 [ 295FDC419039090EB8B49FFDBB374549 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
14:39:20.0060 3076 HpSAMD - ok
14:39:20.0092 3076 [ 871917B07A141BFF43D76D8844D48106 ] HTTP C:\Windows\system32\drivers\HTTP.sys
14:39:20.0092 3076 HTTP - ok
14:39:20.0107 3076 [ 0C4E035C7F105F1299258C90886C64C5 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
14:39:20.0107 3076 hwpolicy - ok
14:39:20.0138 3076 [ F151F0BDC47F4A28B1B20A0818EA36D6 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
14:39:20.0138 3076 i8042prt - ok
14:39:20.0170 3076 [ 5CD5F9A5444E6CDCB0AC89BD62D8B76E ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
14:39:20.0185 3076 iaStorV - ok
14:39:20.0216 3076 [ C521D7EB6497BB1AF6AFA89E322FB43C ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
14:39:20.0248 3076 idsvc - ok
14:39:20.0263 3076 [ 4173FF5708F3236CF25195FECD742915 ] iirsp C:\Windows\system32\drivers\iirsp.sys
14:39:20.0279 3076 iirsp - ok
14:39:20.0310 3076 [ F95622F161474511B8D80D6B093AA610 ] IKEEXT C:\Windows\System32\ikeext.dll
14:39:20.0326 3076 IKEEXT - ok
14:39:20.0341 3076 [ A0F12F2C9BA6C72F3987CE780E77C130 ] intelide C:\Windows\system32\drivers\intelide.sys
14:39:20.0341 3076 intelide - ok
14:39:20.0372 3076 [ 3B514D27BFC4ACCB4037BC6685F766E0 ] intelppm C:\Windows\system32\drivers\intelppm.sys
14:39:20.0372 3076 intelppm - ok
14:39:20.0404 3076 [ ACB364B9075A45C0736E5C47BE5CAE19 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
14:39:20.0404 3076 IPBusEnum - ok
14:39:20.0419 3076 [ 709D1761D3B19A932FF0238EA6D50200 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
14:39:20.0419 3076 IpFilterDriver - ok
14:39:20.0466 3076 [ 4D65A07B795D6674312F879D09AA7663 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
14:39:20.0466 3076 iphlpsvc - ok
14:39:20.0513 3076 [ 4BD7134618C1D2A27466A099062547BF ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
14:39:20.0513 3076 IPMIDRV - ok
14:39:20.0528 3076 [ A5FA468D67ABCDAA36264E463A7BB0CD ] IPNAT C:\Windows\system32\drivers\ipnat.sys
14:39:20.0528 3076 IPNAT - ok
14:39:20.0560 3076 [ 42996CFF20A3084A56017B7902307E9F ] IRENUM C:\Windows\system32\drivers\irenum.sys
14:39:20.0560 3076 IRENUM - ok
14:39:20.0575 3076 [ 1F32BB6B38F62F7DF1A7AB7292638A35 ] isapnp C:\Windows\system32\drivers\isapnp.sys
14:39:20.0575 3076 isapnp - ok
14:39:20.0591 3076 [ CB7A9ABB12B8415BCE5D74994C7BA3AE ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
14:39:20.0606 3076 iScsiPrt - ok
14:39:20.0622 3076 [ ADEF52CA1AEAE82B50DF86B56413107E ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
14:39:20.0622 3076 kbdclass - ok
14:39:20.0638 3076 [ 9E3CED91863E6EE98C24794D05E27A71 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
14:39:20.0638 3076 kbdhid - ok
14:39:20.0653 3076 [ 81951F51E318AECC2D68559E47485CC4 ] KeyIso C:\Windows\system32\lsass.exe
14:39:20.0669 3076 KeyIso - ok
14:39:20.0700 3076 [ B7895B4182C0D16F6EFADEB8081E8D36 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
14:39:20.0700 3076 KSecDD - ok
14:39:20.0747 3076 [ D30159AC9237519FBC62C6EC247D2D46 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
14:39:20.0747 3076 KSecPkg - ok
14:39:20.0794 3076 [ 89A7B9CC98D0D80C6F31B91C0A310FCD ] KtmRm C:\Windows\system32\msdtckrm.dll
14:39:20.0794 3076 KtmRm - ok
14:39:20.0840 3076 [ D64AF876D53ECA3668BB97B51B4E70AB ] LanmanServer C:\Windows\system32\srvsvc.dll
14:39:20.0840 3076 LanmanServer - ok
14:39:20.0872 3076 [ 58405E4F68BA8E4057C6E914F326ABA2 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
14:39:20.0872 3076 LanmanWorkstation - ok
14:39:20.0918 3076 [ F7611EC07349979DA9B0AE1F18CCC7A6 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
14:39:20.0918 3076 lltdio - ok
14:39:20.0950 3076 [ 5700673E13A2117FA3B9020C852C01E2 ] lltdsvc C:\Windows\System32\lltdsvc.dll
14:39:20.0965 3076 lltdsvc - ok
14:39:20.0981 3076 [ 55CA01BA19D0006C8F2639B6C045E08B ] lmhosts C:\Windows\System32\lmhsvc.dll
14:39:20.0981 3076 lmhosts - ok
14:39:21.0012 3076 [ EB119A53CCF2ACC000AC71B065B78FEF ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
14:39:21.0012 3076 LSI_FC - ok
14:39:21.0074 3076 [ 8ADE1C877256A22E49B75D1CC9161F9C ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
14:39:21.0074 3076 LSI_SAS - ok
14:39:21.0090 3076 [ DC9DC3D3DAA0E276FD2EC262E38B11E9 ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys
14:39:21.0090 3076 LSI_SAS2 - ok
14:39:21.0106 3076 [ 0A036C7D7CAB643A7F07135AC47E0524 ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
14:39:21.0106 3076 LSI_SCSI - ok
14:39:21.0121 3076 [ 6703E366CC18D3B6E534F5CF7DF39CEE ] luafv C:\Windows\system32\drivers\luafv.sys
14:39:21.0137 3076 luafv - ok
14:39:21.0152 3076 [ BFB9EE8EE977EFE85D1A3105ABEF6DD1 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
14:39:21.0168 3076 Mcx2Svc - ok
14:39:21.0184 3076 [ 0FFF5B045293002AB38EB1FD1FC2FB74 ] megasas C:\Windows\system32\drivers\megasas.sys
14:39:21.0184 3076 megasas - ok
14:39:21.0199 3076 [ DCBAB2920C75F390CAF1D29F675D03D6 ] MegaSR C:\Windows\system32\drivers\MegaSR.sys
14:39:21.0199 3076 MegaSR - ok
14:39:21.0246 3076 Microsoft SharePoint Workspace Audit Service - ok
14:39:21.0277 3076 [ 146B6F43A673379A3C670E86D89BE5EA ] MMCSS C:\Windows\system32\mmcss.dll
14:39:21.0293 3076 MMCSS - ok
14:39:21.0308 3076 [ F001861E5700EE84E2D4E52C712F4964 ] Modem C:\Windows\system32\drivers\modem.sys
14:39:21.0308 3076 Modem - ok
14:39:21.0340 3076 [ 79D10964DE86B292320E9DFE02282A23 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
14:39:21.0340 3076 monitor - ok
14:39:21.0371 3076 [ FB18CC1D4C2E716B6B903B0AC0CC0609 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
14:39:21.0371 3076 mouclass - ok
14:39:21.0386 3076 [ 2C388D2CD01C9042596CF3C8F3C7B24D ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
14:39:21.0386 3076 mouhid - ok
14:39:21.0402 3076 [ FC8771F45ECCCFD89684E38842539B9B ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
14:39:21.0402 3076 mountmgr - ok
14:39:21.0418 3076 [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0 ] mpio C:\Windows\system32\drivers\mpio.sys
14:39:21.0433 3076 mpio - ok
14:39:21.0449 3076 [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
14:39:21.0449 3076 mpsdrv - ok
14:39:21.0480 3076 [ 9835584E999D25004E1EE8E5F3E3B881 ] MpsSvc C:\Windows\system32\mpssvc.dll
14:39:21.0496 3076 MpsSvc - ok
14:39:21.0511 3076 [ CEB46AB7C01C9F825F8CC6BABC18166A ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
14:39:21.0511 3076 MRxDAV - ok
14:39:21.0542 3076 [ 5D16C921E3671636C0EBA3BBAAC5FD25 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
14:39:21.0558 3076 mrxsmb - ok
14:39:21.0574 3076 [ 6D17A4791ACA19328C685D256349FEFC ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
14:39:21.0589 3076 mrxsmb10 - ok
14:39:21.0605 3076 [ B81F204D146000BE76651A50670A5E9E ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
14:39:21.0605 3076 mrxsmb20 - ok
14:39:21.0652 3076 [ 012C5F4E9349E711E11E0F19A8589F0A ] msahci C:\Windows\system32\drivers\msahci.sys
14:39:21.0652 3076 msahci - ok
14:39:21.0667 3076 [ 55055F8AD8BE27A64C831322A780A228 ] msdsm C:\Windows\system32\drivers\msdsm.sys
14:39:21.0667 3076 msdsm - ok
14:39:21.0698 3076 [ E1BCE74A3BD9902B72599C0192A07E27 ] MSDTC C:\Windows\System32\msdtc.exe
14:39:21.0698 3076 MSDTC - ok
14:39:21.0730 3076 [ DAEFB28E3AF5A76ABCC2C3078C07327F ] Msfs C:\Windows\system32\drivers\Msfs.sys
14:39:21.0730 3076 Msfs - ok
14:39:21.0745 3076 [ 3E1E5767043C5AF9367F0056295E9F84 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
14:39:21.0745 3076 mshidkmdf - ok
14:39:21.0761 3076 [ 0A4E5757AE09FA9622E3158CC1AEF114 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
14:39:21.0776 3076 msisadrv - ok
14:39:21.0808 3076 [ 90F7D9E6B6F27E1A707D4A297F077828 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
14:39:21.0808 3076 MSiSCSI - ok
14:39:21.0823 3076 msiserver - ok
14:39:21.0839 3076 [ 8C0860D6366AAFFB6C5BB9DF9448E631 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
14:39:21.0839 3076 MSKSSRV - ok
14:39:21.0870 3076 [ 3EA8B949F963562CEDBB549EAC0C11CE ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
14:39:21.0870 3076 MSPCLOCK - ok
14:39:21.0886 3076 [ F456E973590D663B1073E9C463B40932 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
14:39:21.0901 3076 MSPQM - ok
14:39:21.0917 3076 [ 0E008FC4819D238C51D7C93E7B41E560 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
14:39:21.0917 3076 MsRPC - ok
14:39:21.0948 3076 [ FC6B9FF600CC585EA38B12589BD4E246 ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
14:39:21.0948 3076 mssmbios - ok
14:39:21.0964 3076 [ B42C6B921F61A6E55159B8BE6CD54A36 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
14:39:21.0964 3076 MSTEE - ok
14:39:21.0995 3076 [ 33599130F44E1F34631CEA241DE8AC84 ] MTConfig C:\Windows\system32\drivers\MTConfig.sys
14:39:21.0995 3076 MTConfig - ok
14:39:22.0042 3076 [ CBE71C122434805CB73FFB6619F60598 ] MTsensor C:\Windows\system32\DRIVERS\ASACPI.sys
14:39:22.0042 3076 MTsensor - ok
14:39:22.0073 3076 [ 159FAD02F64E6381758C990F753BCC80 ] Mup C:\Windows\system32\Drivers\mup.sys
14:39:22.0073 3076 Mup - ok
14:39:22.0104 3076 [ 61D57A5D7C6D9AFE10E77DAE6E1B445E ] napagent C:\Windows\system32\qagentRT.dll
14:39:22.0120 3076 napagent - ok
14:39:22.0151 3076 [ 26384429FCD85D83746F63E798AB1480 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
14:39:22.0151 3076 NativeWifiP - ok
14:39:22.0198 3076 [ 8C9C922D71F1CD4DEF73F186416B7896 ] NDIS C:\Windows\system32\drivers\ndis.sys
14:39:22.0198 3076 NDIS - ok
14:39:22.0229 3076 [ 0E1787AA6C9191D3D319E8BAFE86F80C ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
14:39:22.0229 3076 NdisCap - ok
14:39:22.0260 3076 [ E4A8AEC125A2E43A9E32AFEEA7C9C888 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
14:39:22.0260 3076 NdisTapi - ok
14:39:22.0291 3076 [ D8A65DAFB3EB41CBB622745676FCD072 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
14:39:22.0291 3076 Ndisuio - ok
14:39:22.0307 3076 [ 38FBE267E7E6983311179230FACB1017 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
14:39:22.0307 3076 NdisWan - ok
14:39:22.0322 3076 [ A4BDC541E69674FBFF1A8FF00BE913F2 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
14:39:22.0338 3076 NDProxy - ok
14:39:22.0354 3076 [ 80B275B1CE3B0E79909DB7B39AF74D51 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
14:39:22.0354 3076 NetBIOS - ok
14:39:22.0369 3076 [ 280122DDCF04B378EDD1AD54D71C1E54 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
14:39:22.0385 3076 NetBT - ok
14:39:22.0400 3076 [ 81951F51E318AECC2D68559E47485CC4 ] Netlogon C:\Windows\system32\lsass.exe
14:39:22.0400 3076 Netlogon - ok
14:39:22.0432 3076 [ 7CCCFCA7510684768DA22092D1FA4DB2 ] Netman C:\Windows\System32\netman.dll
14:39:22.0447 3076 Netman - ok
14:39:22.0494 3076 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
14:39:22.0510 3076 NetMsmqActivator - ok
14:39:22.0510 3076 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetPipeActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
14:39:22.0510 3076 NetPipeActivator - ok
14:39:22.0541 3076 [ 8C338238C16777A802D6A9211EB2BA50 ] netprofm C:\Windows\System32\netprofm.dll
14:39:22.0541 3076 netprofm - ok
14:39:22.0556 3076 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
14:39:22.0556 3076 NetTcpActivator - ok
14:39:22.0572 3076 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
14:39:22.0572 3076 NetTcpPortSharing - ok
14:39:22.0619 3076 [ 1D85C4B390B0EE09C7A46B91EFB2C097 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
14:39:22.0619 3076 nfrd960 - ok
14:39:22.0650 3076 [ 912084381D30D8B89EC4E293053F4710 ] NlaSvc C:\Windows\System32\nlasvc.dll
14:39:22.0650 3076 NlaSvc - ok
14:39:22.0666 3076 [ 1DB262A9F8C087E8153D89BEF3D2235F ] Npfs C:\Windows\system32\drivers\Npfs.sys
14:39:22.0681 3076 Npfs - ok
14:39:22.0697 3076 [ BA387E955E890C8A88306D9B8D06BF17 ] nsi C:\Windows\system32\nsisvc.dll
14:39:22.0697 3076 nsi - ok
14:39:22.0728 3076 [ E9A0A4D07E53D8FEA2BB8387A3293C58 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
14:39:22.0728 3076 nsiproxy - ok
14:39:22.0775 3076 [ 0D87503986BB3DFED58E343FE39DDE13 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
14:39:22.0806 3076 Ntfs - ok
14:39:22.0853 3076 [ F9756A98D69098DCA8945D62858A812C ] Null C:\Windows\system32\drivers\Null.sys
14:39:22.0853 3076 Null - ok
14:39:22.0884 3076 [ B5E37E31C053BC9950455A257526514B ] NVENETFD C:\Windows\system32\DRIVERS\nvm62x32.sys
14:39:22.0884 3076 NVENETFD - ok
14:39:22.0931 3076 [ 1DE923088878B495CD4219E47BA34EB8 ] NVNET C:\Windows\system32\DRIVERS\nvmf6232.sys
14:39:22.0931 3076 NVNET - ok
14:39:22.0962 3076 [ B3E25EE28883877076E0E1FF877D02E0 ] nvraid C:\Windows\system32\drivers\nvraid.sys
14:39:22.0962 3076 nvraid - ok
14:39:22.0993 3076 [ 4380E59A170D88C4F1022EFF6719A8A4 ] nvstor C:\Windows\system32\drivers\nvstor.sys
14:39:22.0993 3076 nvstor - ok
14:39:23.0024 3076 [ 5A0983915F02BAE73267CC2A041F717D ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
14:39:23.0024 3076 nv_agp - ok
14:39:23.0056 3076 [ 08A70A1F2CDDE9BB49B885CB817A66EB ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
14:39:23.0071 3076 ohci1394 - ok
14:39:23.0118 3076 [ 9D10F99A6712E28F8ACD5641E3A7EA6B ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
14:39:23.0134 3076 ose - ok
14:39:23.0258 3076 [ 358A9CCA612C68EB2F07DDAD4CE1D8D7 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
14:39:23.0336 3076 osppsvc - ok
14:39:23.0383 3076 [ 82A8521DDC60710C3D3D3E7325209BEC ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
14:39:23.0383 3076 p2pimsvc - ok
14:39:23.0414 3076 [ 59C3DDD501E39E006DAC31BF55150D91 ] p2psvc C:\Windows\system32\p2psvc.dll
14:39:23.0430 3076 p2psvc - ok
14:39:23.0461 3076 [ 2EA877ED5DD9713C5AC74E8EA7348D14 ] Parport C:\Windows\system32\DRIVERS\parport.sys
14:39:23.0461 3076 Parport - ok
14:39:23.0492 3076 [ 3F34A1B4C5F6475F320C275E63AFCE9B ] partmgr C:\Windows\system32\drivers\partmgr.sys
14:39:23.0508 3076 partmgr - ok
14:39:23.0524 3076 [ EB0A59F29C19B86479D36B35983DAADC ] Parvdm C:\Windows\system32\DRIVERS\parvdm.sys
14:39:23.0524 3076 Parvdm - ok
14:39:23.0539 3076 [ 358AB7956D3160000726574083DFC8A6 ] PcaSvc C:\Windows\System32\pcasvc.dll
14:39:23.0555 3076 PcaSvc - ok
14:39:23.0570 3076 [ 673E55C3498EB970088E812EA820AA8F ] pci C:\Windows\system32\drivers\pci.sys
14:39:23.0570 3076 pci - ok
14:39:23.0586 3076 [ AFE86F419014DB4E5593F69FFE26CE0A ] pciide C:\Windows\system32\drivers\pciide.sys
14:39:23.0586 3076 pciide - ok
14:39:23.0602 3076 [ F396431B31693E71E8A80687EF523506 ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
14:39:23.0617 3076 pcmcia - ok
14:39:23.0633 3076 [ 250F6B43D2B613172035C6747AEEB19F ] pcw C:\Windows\system32\drivers\pcw.sys
14:39:23.0633 3076 pcw - ok
14:39:23.0664 3076 [ 9E0104BA49F4E6973749A02BF41344ED ] PEAUTH C:\Windows\system32\drivers\peauth.sys
14:39:23.0664 3076 PEAUTH - ok
14:39:23.0711 3076 [ AF4D64D2A57B9772CF3801950B8058A6 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll
14:39:23.0726 3076 PeerDistSvc - ok
14:39:23.0789 3076 [ 414BBA67A3DED1D28437EB66AEB8A720 ] pla C:\Windows\system32\pla.dll
14:39:23.0820 3076 pla - ok
14:39:23.0851 3076 [ EC7BC28D207DA09E79B3E9FAF8B232CA ] PlugPlay C:\Windows\system32\umpnpmgr.dll
14:39:23.0867 3076 PlugPlay - ok
14:39:23.0914 3076 [ 1713D9DE407313138118D501B0E3C05B ] PnkBstrA C:\Windows\system32\PnkBstrA.exe
14:39:23.0914 3076 PnkBstrA - ok
14:39:23.0929 3076 [ 63FF8572611249931EB16BB8EED6AFC8 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
14:39:23.0945 3076 PNRPAutoReg - ok
14:39:23.0960 3076 [ 82A8521DDC60710C3D3D3E7325209BEC ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
14:39:23.0960 3076 PNRPsvc - ok
14:39:23.0992 3076 [ 53946B69BA0836BD95B03759530C81EC ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
14:39:24.0007 3076 PolicyAgent - ok
14:39:24.0038 3076 [ F87D30E72E03D579A5199CCB3831D6EA ] Power C:\Windows\system32\umpo.dll
14:39:24.0038 3076 Power - ok
14:39:24.0085 3076 [ 631E3E205AD6D86F2AED6A4A8E69F2DB ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
14:39:24.0085 3076 PptpMiniport - ok
14:39:24.0101 3076 [ 85B1E3A0C7585BC4AAE6899EC6FCF011 ] Processor C:\Windows\system32\drivers\processr.sys
14:39:24.0116 3076 Processor - ok
14:39:24.0148 3076 [ CADEFAC453040E370A1BDFF3973BE00D ] ProfSvc C:\Windows\system32\profsvc.dll
14:39:24.0163 3076 ProfSvc - ok
14:39:24.0179 3076 [ 81951F51E318AECC2D68559E47485CC4 ] ProtectedStorage C:\Windows\system32\lsass.exe
14:39:24.0179 3076 ProtectedStorage - ok
14:39:24.0194 3076 [ 6270CCAE2A86DE6D146529FE55B3246A ] Psched C:\Windows\system32\DRIVERS\pacer.sys
14:39:24.0194 3076 Psched - ok
14:39:24.0241 3076 [ AB95ECF1F6659A60DDC166D8315B0751 ] ql2300 C:\Windows\system32\drivers\ql2300.sys
14:39:24.0272 3076 ql2300 - ok
14:39:24.0288 3076 [ B4DD51DD25182244B86737DC51AF2270 ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
14:39:24.0288 3076 ql40xx - ok
14:39:24.0319 3076 [ 31AC809E7707EB580B2BDB760390765A ] QWAVE C:\Windows\system32\qwave.dll
14:39:24.0319 3076 QWAVE - ok
14:39:24.0350 3076 [ 584078CA1B95CA72DF2A27C336F9719D ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
14:39:24.0350 3076 QWAVEdrv - ok
14:39:24.0366 3076 [ 30A81B53C766D0133BB86D234E5556AB ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
14:39:24.0382 3076 RasAcd - ok
14:39:24.0397 3076 [ 57EC4AEF73660166074D8F7F31C0D4FD ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
14:39:24.0397 3076 RasAgileVpn - ok
14:39:24.0428 3076 [ A60F1839849C0C00739787FD5EC03F13 ] RasAuto C:\Windows\System32\rasauto.dll
14:39:24.0428 3076 RasAuto - ok
14:39:24.0460 3076 [ D9F91EAFEC2815365CBE6D167E4E332A ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
14:39:24.0460 3076 Rasl2tp - ok
14:39:24.0491 3076 [ CB9E04DC05EACF5B9A36CA276D475006 ] RasMan C:\Windows\System32\rasmans.dll
14:39:24.0491 3076 RasMan - ok
14:39:24.0522 3076 [ 0FE8B15916307A6AC12BFB6A63E45507 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
14:39:24.0522 3076 RasPppoe - ok
14:39:24.0553 3076 [ 44101F495A83EA6401D886E7FD70096B ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
14:39:24.0553 3076 RasSstp - ok
14:39:24.0584 3076 [ D528BC58A489409BA40334EBF96A311B ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
14:39:24.0584 3076 rdbss - ok
14:39:24.0616 3076 [ 0D8F05481CB76E70E1DA06EE9F0DA9DF ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
14:39:24.0616 3076 rdpbus - ok
14:39:24.0662 3076 [ 23DAE03F29D253AE74C44F99E515F9A1 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
14:39:24.0662 3076 RDPCDD - ok
14:39:24.0709 3076 [ B973FCFC50DC1434E1970A146F7E3885 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys
14:39:24.0725 3076 RDPDR - ok
14:39:24.0740 3076 [ 5A53CA1598DD4156D44196D200C94B8A ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
14:39:24.0756 3076 RDPENCDD - ok
14:39:24.0772 3076 [ 44B0A53CD4F27D50ED461DAE0C0B4E1F ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
14:39:24.0772 3076 RDPREFMP - ok
14:39:24.0818 3076 [ 68A0387F58E226DEEE23D9715955572A ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
14:39:24.0818 3076 RdpVideoMiniport - ok
14:39:24.0865 3076 [ F031683E6D1FEA157ABB2FF260B51E61 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
14:39:24.0865 3076 RDPWD - ok
14:39:24.0896 3076 [ 518395321DC96FE2C9F0E96AC743B656 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
14:39:24.0896 3076 rdyboost - ok
14:39:24.0928 3076 [ 7B5E1419717FAC363A31CC302895217A ] RemoteAccess C:\Windows\System32\mprdim.dll
14:39:24.0928 3076 RemoteAccess - ok
14:39:24.0959 3076 [ CB9A8683F4EF2BF99E123D79950D7935 ] RemoteRegistry C:\Windows\system32\regsvc.dll
14:39:24.0959 3076 RemoteRegistry - ok
14:39:24.0990 3076 [ 78D072F35BC45D9E4E1B61895C152234 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
14:39:24.0990 3076 RpcEptMapper - ok
14:39:25.0006 3076 [ 94D36C0E44677DD26981D2BFEEF2A29D ] RpcLocator C:\Windows\system32\locator.exe
14:39:25.0006 3076 RpcLocator - ok
14:39:25.0037 3076 [ 7660F01D3B38ACA1747E397D21D790AF ] RpcSs C:\Windows\system32\rpcss.dll
14:39:25.0037 3076 RpcSs - ok
14:39:25.0084 3076 [ 032B0D36AD92B582D869879F5AF5B928 ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
14:39:25.0084 3076 rspndr - ok
14:39:25.0115 3076 [ 79C8488DFA2AA377441645123CB73845 ] RTHDMIAzAudService C:\Windows\system32\drivers\RtHDMIV.sys
14:39:25.0130 3076 RTHDMIAzAudService - ok
14:39:25.0162 3076 [ 9CE8DEFFAFFCCBF473015D76AE8EE514 ] RTL8192su C:\Windows\system32\DRIVERS\RTL8192su.sys
14:39:25.0177 3076 RTL8192su - ok
14:39:25.0193 3076 [ 7FA7F2E249A5DCBB7970630E15E1F482 ] s3cap C:\Windows\system32\drivers\vms3cap.sys
14:39:25.0208 3076 s3cap - ok
14:39:25.0224 3076 [ 81951F51E318AECC2D68559E47485CC4 ] SamSs C:\Windows\system32\lsass.exe
14:39:25.0224 3076 SamSs - ok
14:39:25.0255 3076 [ 05D860DA1040F111503AC416CCEF2BCA ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
14:39:25.0255 3076 sbp2port - ok
14:39:25.0271 3076 [ 8FC518FFE9519C2631D37515A68009C4 ] SCardSvr C:\Windows\System32\SCardSvr.dll
14:39:25.0286 3076 SCardSvr - ok
14:39:25.0302 3076 [ 0693B5EC673E34DC147E195779A4DCF6 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
14:39:25.0302 3076 scfilter - ok
14:39:25.0333 3076 [ A04BB13F8A72F8B6E8B4071723E4E336 ] Schedule C:\Windows\system32\schedsvc.dll
14:39:25.0333 3076 Schedule - ok
14:39:25.0364 3076 [ 319C6B309773D063541D01DF8AC6F55F ] SCPolicySvc C:\Windows\System32\certprop.dll
14:39:25.0364 3076 SCPolicySvc - ok
14:39:25.0380 3076 [ 08236C4BCE5EDD0A0318A438AF28E0F7 ] SDRSVC C:\Windows\System32\SDRSVC.dll
14:39:25.0380 3076 SDRSVC - ok
14:39:25.0411 3076 [ 90A3935D05B494A5A39D37E71F09A677 ] secdrv C:\Windows\system32\drivers\secdrv.sys
14:39:25.0411 3076 secdrv - ok
14:39:25.0427 3076 [ A59B3A4442C52060CC7A85293AA3546F ] seclogon C:\Windows\system32\seclogon.dll
14:39:25.0442 3076 seclogon - ok
14:39:25.0458 3076 [ DCB7FCDCC97F87360F75D77425B81737 ] SENS C:\Windows\System32\sens.dll
14:39:25.0474 3076 SENS - ok
14:39:25.0505 3076 [ 50087FE1EE447009C9CC2997B90DE53F ] SensrSvc C:\Windows\system32\sensrsvc.dll
14:39:25.0505 3076 SensrSvc - ok
14:39:25.0536 3076 [ 9AD8B8B515E3DF6ACD4212EF465DE2D1 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
14:39:25.0536 3076 Serenum - ok
14:39:25.0552 3076 [ 5FB7FCEA0490D821F26F39CC5EA3D1E2 ] Serial C:\Windows\system32\DRIVERS\serial.sys
14:39:25.0567 3076 Serial - ok
14:39:25.0583 3076 [ 79BFFB520327FF916A582DFEA17AA813 ] sermouse C:\Windows\system32\drivers\sermouse.sys
14:39:25.0583 3076 sermouse - ok
14:39:25.0630 3076 [ 4AE380F39A0032EAB7DD953030B26D28 ] SessionEnv C:\Windows\system32\sessenv.dll
14:39:25.0630 3076 SessionEnv - ok
14:39:25.0645 3076 [ 9F976E1EB233DF46FCE808D9DEA3EB9C ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
14:39:25.0645 3076 sffdisk - ok
14:39:25.0676 3076 [ 932A68EE27833CFD57C1639D375F2731 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
14:39:25.0676 3076 sffp_mmc - ok
14:39:25.0692 3076 [ 6D4CCAEDC018F1CF52866BBBAA235982 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
14:39:25.0708 3076 sffp_sd - ok
14:39:25.0723 3076 [ DB96666CC8312EBC45032F30B007A547 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
14:39:25.0723 3076 sfloppy - ok
14:39:25.0754 3076 [ D1A079A0DE2EA524513B6930C24527A2 ] SharedAccess C:\Windows\System32\ipnathlp.dll
14:39:25.0770 3076 SharedAccess - ok
14:39:25.0786 3076 [ 414DA952A35BF5D50192E28263B40577 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
14:39:25.0786 3076 ShellHWDetection - ok
14:39:25.0817 3076 [ 2565CAC0DC9FE0371BDCE60832582B2E ] sisagp C:\Windows\system32\drivers\sisagp.sys
14:39:25.0817 3076 sisagp - ok
14:39:25.0864 3076 [ A9F0486851BECB6DDA1D89D381E71055 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys
14:39:25.0864 3076 SiSRaid2 - ok
14:39:25.0910 3076 [ 3727097B55738E2F554972C3BE5BC1AA ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
14:39:25.0910 3076 SiSRaid4 - ok
14:39:26.0020 3076 [ 3740B83AEC21D981065D7E819BD7E878 ] Skype C2C Service C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
14:39:26.0082 3076 Skype C2C Service - ok
14:39:26.0160 3076 [ A4FAB5F7818A69DA6E740943CB8F7CA9 ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe
14:39:26.0160 3076 SkypeUpdate - ok
14:39:26.0191 3076 [ 3E21C083B8A01CB70BA1F09303010FCE ] Smb C:\Windows\system32\DRIVERS\smb.sys
14:39:26.0191 3076 Smb - ok
14:39:26.0254 3076 [ 6A984831644ECA1A33FFEAE4126F4F37 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
14:39:26.0254 3076 SNMPTRAP - ok
14:39:26.0285 3076 [ 95CF1AE7527FB70F7816563CBC09D942 ] spldr C:\Windows\system32\drivers\spldr.sys
14:39:26.0300 3076 spldr - ok
14:39:26.0332 3076 [ 9AEA093B8F9C37CF45538382CABA2475 ] Spooler C:\Windows\System32\spoolsv.exe
14:39:26.0332 3076 Spooler - ok
14:39:26.0410 3076 [ CF87A1DE791347E75B98885214CED2B8 ] sppsvc C:\Windows\system32\sppsvc.exe
14:39:26.0472 3076 sppsvc - ok
14:39:26.0488 3076 [ B0180B20B065D89232A78A40FE56EAA6 ] sppuinotify C:\Windows\system32\sppuinotify.dll
14:39:26.0488 3076 sppuinotify - ok
14:39:26.0519 3076 [ E4C2764065D66EA1D2D3EBC28FE99C46 ] srv C:\Windows\system32\DRIVERS\srv.sys
14:39:26.0534 3076 srv - ok
14:39:26.0550 3076 [ 03F0545BD8D4C77FA0AE1CEEDFCC71AB ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
14:39:26.0566 3076 srv2 - ok
14:39:26.0581 3076 [ BE6BD660CAA6F291AE06A718A4FA8ABC ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
14:39:26.0581 3076 srvnet - ok
14:39:26.0612 3076 [ D887C9FD02AC9FA880F6E5027A43E118 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
14:39:26.0628 3076 SSDPSRV - ok
14:39:26.0644 3076 [ D318F23BE45D5E3A107469EB64815B50 ] SstpSvc C:\Windows\system32\sstpsvc.dll
14:39:26.0644 3076 SstpSvc - ok
14:39:26.0675 3076 Steam Client Service - ok
14:39:26.0706 3076 [ DB32D325C192B801DF274BFD12A7E72B ] stexstor C:\Windows\system32\drivers\stexstor.sys
14:39:26.0706 3076 stexstor - ok
14:39:26.0737 3076 [ E1FB3706030FB4578A0D72C2FC3689E4 ] StiSvc C:\Windows\System32\wiaservc.dll
14:39:26.0753 3076 StiSvc - ok
14:39:26.0768 3076 [ 472AF0311073DCECEAA8FA18BA2BDF89 ] storflt C:\Windows\system32\drivers\vmstorfl.sys
14:39:26.0768 3076 storflt - ok
14:39:26.0800 3076 [ DCAFFD62259E0BDB433DD67B5BB37619 ] storvsc C:\Windows\system32\drivers\storvsc.sys
14:39:26.0800 3076 storvsc - ok
14:39:26.0846 3076 [ E58C78A848ADD9610A4DB6D214AF5224 ] swenum C:\Windows\system32\DRIVERS\swenum.sys
14:39:26.0862 3076 swenum - ok
14:39:26.0893 3076 [ A28BD92DF340E57B024BA433165D34D7 ] swprv C:\Windows\System32\swprv.dll
14:39:26.0893 3076 swprv - ok
14:39:26.0924 3076 [ F2AD8960812FD111E20E84659EF19D43 ] Synth3dVsc C:\Windows\system32\drivers\synth3dvsc.sys
14:39:26.0924 3076 Synth3dVsc - ok
14:39:26.0987 3076 [ 36650D618CA34C9D357DFD3D89B2C56F ] SysMain C:\Windows\system32\sysmain.dll
14:39:27.0018 3076 SysMain - ok
14:39:27.0034 3076 [ 763FECDC3D30C815FE72DD57936C6CD1 ] TabletInputService C:\Windows\System32\TabSvc.dll
14:39:27.0034 3076 TabletInputService - ok
14:39:27.0065 3076 [ 613BF4820361543956909043A265C6AC ] TapiSrv C:\Windows\System32\tapisrv.dll
14:39:27.0080 3076 TapiSrv - ok
14:39:27.0096 3076 [ B799D9FDB26111737F58288D8DC172D9 ] TBS C:\Windows\System32\tbssvc.dll
14:39:27.0096 3076 TBS - ok
14:39:27.0143 3076 [ A5EBB8F648000E88B7D9390B514976BF ] Tcpip C:\Windows\system32\drivers\tcpip.sys
14:39:27.0190 3076 Tcpip - ok
14:39:27.0236 3076 [ A5EBB8F648000E88B7D9390B514976BF ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
14:39:27.0236 3076 TCPIP6 - ok
14:39:27.0268 3076 [ CCA24162E055C3714CE5A88B100C64ED ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
14:39:27.0268 3076 tcpipreg - ok
14:39:27.0299 3076 [ 1CB91B2BD8F6DD367DFC2EF26FD751B2 ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
14:39:27.0299 3076 TDPIPE - ok
14:39:27.0330 3076 [ 2C2C5AFE7EE4F620D69C23C0617651A8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
14:39:27.0330 3076 TDTCP - ok
14:39:27.0346 3076 [ B459575348C20E8121D6039DA063C704 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
14:39:27.0346 3076 tdx - ok
14:39:27.0377 3076 [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
14:39:27.0377 3076 TermDD - ok
14:39:27.0392 3076 [ 052306FD76793D5D5AB5D9891FD1ADBB ] terminpt C:\Windows\system32\drivers\terminpt.sys
14:39:27.0408 3076 terminpt - ok
14:39:27.0439 3076 [ 382C804C92811BE57829D8E550A900E2 ] TermService C:\Windows\System32\termsrv.dll
14:39:27.0439 3076 TermService - ok
14:39:27.0470 3076 [ 42FB6AFD6B79D9FE07381609172E7CA4 ] Themes C:\Windows\system32\themeservice.dll
14:39:27.0470 3076 Themes - ok
14:39:27.0486 3076 [ 146B6F43A673379A3C670E86D89BE5EA ] THREADORDER C:\Windows\system32\mmcss.dll
14:39:27.0486 3076 THREADORDER - ok
14:39:27.0517 3076 [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A ] TrkWks C:\Windows\System32\trkwks.dll
14:39:27.0517 3076 TrkWks - ok
14:39:27.0564 3076 [ 2C49B175AEE1D4364B91B531417FE583 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
14:39:27.0580 3076 TrustedInstaller - ok
14:39:27.0595 3076 [ 254BB140EEE3C59D6114C1A86B636877 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
14:39:27.0595 3076 tssecsrv - ok
14:39:27.0626 3076 [ FD1D6C73E6333BE727CBCC6054247654 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
14:39:27.0626 3076 TsUsbFlt - ok
14:39:27.0658 3076 [ 01246F0BAAD7B68EC0F472AA41E33282 ] TsUsbGD C:\Windows\system32\drivers\TsUsbGD.sys
14:39:27.0658 3076 TsUsbGD - ok
14:39:27.0689 3076 [ 045ACB987C650D8186C6B4A692223860 ] tsusbhub C:\Windows\system32\drivers\tsusbhub.sys
14:39:27.0704 3076 tsusbhub - ok
14:39:27.0736 3076 [ B2FA25D9B17A68BB93D58B0556E8C90D ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
14:39:27.0736 3076 tunnel - ok
14:39:27.0767 3076 [ 750FBCB269F4D7DD2E420C56B795DB6D ] uagp35 C:\Windows\system32\drivers\uagp35.sys
14:39:27.0767 3076 uagp35 - ok
14:39:27.0798 3076 [ EE43346C7E4B5E63E54F927BABBB32FF ] udfs C:\Windows\system32\DRIVERS\udfs.sys
14:39:27.0798 3076 udfs - ok
14:39:27.0860 3076 [ 8344FD4FCE927880AA1AA7681D4927E5 ] UI0Detect C:\Windows\system32\UI0Detect.exe
14:39:27.0860 3076 UI0Detect - ok
14:39:27.0876 3076 [ 44E8048ACE47BEFBFDC2E9BE4CBC8880 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
14:39:27.0892 3076 uliagpkx - ok
14:39:27.0923 3076 [ D295BED4B898F0FD999FCFA9B32B071B ] umbus C:\Windows\system32\DRIVERS\umbus.sys
14:39:27.0923 3076 umbus - ok
14:39:27.0938 3076 [ 7550AD0C6998BA1CB4843E920EE0FEAC ] UmPass C:\Windows\system32\drivers\umpass.sys
14:39:27.0954 3076 UmPass - ok
14:39:27.0970 3076 [ 409994A8EACEEE4E328749C0353527A0 ] UmRdpService C:\Windows\System32\umrdp.dll
14:39:27.0985 3076 UmRdpService - ok
14:39:28.0001 3076 [ 833FBB672460EFCE8011D262175FAD33 ] upnphost C:\Windows\System32\upnphost.dll
14:39:28.0016 3076 upnphost - ok
14:39:28.0079 3076 [ 1D9F2BD026E8E2D45033A4DF3F16B78C ] usbaudio C:\Windows\system32\drivers\usbaudio.sys
14:39:28.0079 3076 usbaudio - ok
14:39:28.0094 3076 [ BD9C55D7023C5DE374507ACC7A14E2AC ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
14:39:28.0110 3076 usbccgp - ok
14:39:28.0141 3076 [ 04EC7CEC62EC3B6D9354EEE93327FC82 ] usbcir C:\Windows\system32\drivers\usbcir.sys
14:39:28.0141 3076 usbcir - ok
14:39:28.0172 3076 [ F92DE757E4B7CE9C07C5E65423F3AE3B ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
14:39:28.0172 3076 usbehci - ok
14:39:28.0204 3076 [ 8DC94AEC6A7E644A06135AE7506DC2E9 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
14:39:28.0219 3076 usbhub - ok
14:39:28.0235 3076 [ E185D44FAC515A18D9DEDDC23C2CDF44 ] usbohci C:\Windows\system32\DRIVERS\usbohci.sys
14:39:28.0235 3076 usbohci - ok
14:39:28.0266 3076 [ 797D862FE0875E75C7CC4C1AD7B30252 ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
14:39:28.0266 3076 usbprint - ok
14:39:28.0297 3076 [ 576096CCBC07E7C4EA4F5E6686D6888F ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys
14:39:28.0297 3076 usbscan - ok
14:39:28.0313 3076 [ F991AB9CC6B908DB552166768176896A ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
14:39:28.0328 3076 USBSTOR - ok
14:39:28.0328 3076 [ 68DF884CF41CDADA664BEB01DAF67E3D ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
14:39:28.0344 3076 usbuhci - ok
14:39:28.0391 3076 [ 45F4E7BF43DB40A6C6B4D92C76CBC3F2 ] usbvideo C:\Windows\system32\Drivers\usbvideo.sys
14:39:28.0406 3076 usbvideo - ok
14:39:28.0422 3076 [ 081E6E1C91AEC36758902A9F727CD23C ] UxSms C:\Windows\System32\uxsms.dll
14:39:28.0422 3076 UxSms - ok
14:39:28.0438 3076 [ 81951F51E318AECC2D68559E47485CC4 ] VaultSvc C:\Windows\system32\lsass.exe
14:39:28.0453 3076 VaultSvc - ok
14:39:28.0469 3076 [ A059C4C3EDB09E07D21A8E5C0AABD3CB ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
14:39:28.0469 3076 vdrvroot - ok
14:39:28.0500 3076 [ C3CD30495687C2A2F66A65CA6FD89BE9 ] vds C:\Windows\System32\vds.exe
14:39:28.0516 3076 vds - ok
14:39:28.0531 3076 [ 17C408214EA61696CEC9C66E388B14F3 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
14:39:28.0531 3076 vga - ok
14:39:28.0562 3076 [ 8E38096AD5C8570A6F1570A61E251561 ] VgaSave C:\Windows\System32\drivers\vga.sys
14:39:28.0562 3076 VgaSave - ok
14:39:28.0578 3076 VGPU - ok
14:39:28.0594 3076 [ 5461686CCA2FDA57B024547733AB42E3 ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
14:39:28.0594 3076 vhdmp - ok
14:39:28.0625 3076 [ C829317A37B4BEA8F39735D4B076E923 ] viaagp C:\Windows\system32\drivers\viaagp.sys
14:39:28.0640 3076 viaagp - ok
14:39:28.0656 3076 [ E02F079A6AA107F06B16549C6E5C7B74 ] ViaC7 C:\Windows\system32\drivers\viac7.sys
14:39:28.0656 3076 ViaC7 - ok
14:39:28.0672 3076 [ E43574F6A56A0EE11809B48C09E4FD3C ] viaide C:\Windows\system32\drivers\viaide.sys
14:39:28.0687 3076 viaide - ok
14:39:28.0703 3076 [ C2F2911156FDC7817C52829C86DA494E ] vmbus C:\Windows\system32\drivers\vmbus.sys
14:39:28.0718 3076 vmbus - ok
14:39:28.0734 3076 [ D4D77455211E204F370D08F4963063CE ] VMBusHID C:\Windows\system32\drivers\VMBusHID.sys
14:39:28.0734 3076 VMBusHID - ok
14:39:28.0750 3076 [ 4C63E00F2F4B5F86AB48A58CD990F212 ] volmgr C:\Windows\system32\drivers\volmgr.sys
14:39:28.0750 3076 volmgr - ok
14:39:28.0781 3076 [ B5BB72067DDDDBBFB04B2F89FF8C3C87 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
14:39:28.0781 3076 volmgrx - ok
14:39:28.0812 3076 [ F497F67932C6FA693D7DE2780631CFE7 ] volsnap C:\Windows\system32\drivers\volsnap.sys
14:39:28.0812 3076 volsnap - ok
14:39:28.0843 3076 [ 9DFA0CC2F8855A04816729651175B631 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
14:39:28.0843 3076 vsmraid - ok
14:39:28.0890 3076 [ 209A3B1901B83AEB8527ED211CCE9E4C ] VSS C:\Windows\system32\vssvc.exe
14:39:28.0921 3076 VSS - ok
14:39:28.0921 3076 [ 90567B1E658001E79D7C8BBD3DDE5AA6 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys
14:39:28.0921 3076 vwifibus - ok
14:39:28.0968 3076 [ 7090D3436EEB4E7DA3373090A23448F7 ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys
14:39:28.0968 3076 vwififlt - ok
14:39:28.0984 3076 [ 55187FD710E27D5095D10A472C8BAF1C ] W32Time C:\Windows\system32\w32time.dll
14:39:28.0999 3076 W32Time - ok
14:39:29.0015 3076 [ DE3721E89C653AA281428C8A69745D90 ] WacomPen C:\Windows\system32\drivers\wacompen.sys
14:39:29.0030 3076 WacomPen - ok
14:39:29.0062 3076 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
14:39:29.0062 3076 WANARP - ok
14:39:29.0077 3076 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
14:39:29.0077 3076 Wanarpv6 - ok
14:39:29.0124 3076 [ 353A04C273EC58475D8633E75CCD5604 ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
14:39:29.0155 3076 WatAdminSvc - ok
14:39:29.0202 3076 [ 691E3285E53DCA558E1A84667F13E15A ] wbengine C:\Windows\system32\wbengine.exe
14:39:29.0233 3076 wbengine - ok
14:39:07.0518 3452 TDSS rootkit removing tool 2.8.15.0 Oct 31 2012 21:47:35
14:39:07.0861 3452 ============================================================
14:39:07.0861 3452 Current date / time: 2012/12/07 14:39:07.0861
14:39:07.0861 3452 SystemInfo:
14:39:07.0861 3452
14:39:07.0861 3452 OS Version: 6.1.7601 ServicePack: 1.0
14:39:07.0861 3452 Product type: Workstation
14:39:07.0861 3452 ComputerName: UZIVATEL-PC
14:39:07.0861 3452 UserName: uzivatel
14:39:07.0861 3452 Windows directory: C:\Windows
14:39:07.0861 3452 System windows directory: C:\Windows
14:39:07.0861 3452 Processor architecture: Intel x86
14:39:07.0861 3452 Number of processors: 1
14:39:07.0861 3452 Page size: 0x1000
14:39:07.0861 3452 Boot type: Normal boot
14:39:07.0861 3452 ============================================================
14:39:09.0078 3452 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0x7E2CB, SectorsPerTrack: 0xE, TracksPerCylinder: 0x87, Type 'K0', Flags 0x00000050
14:39:09.0078 3452 ============================================================
14:39:09.0078 3452 \Device\Harddisk0\DR0:
14:39:09.0078 3452 MBR partitions:
14:39:09.0078 3452 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
14:39:09.0078 3452 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x3A353000
14:39:09.0078 3452 ============================================================
14:39:09.0140 3452 C: <-> \Device\Harddisk0\DR0\Partition2
14:39:09.0140 3452 ============================================================
14:39:09.0140 3452 Initialize success
14:39:09.0140 3452 ============================================================
14:39:13.0368 3076 ============================================================
14:39:13.0368 3076 Scan started
14:39:13.0368 3076 Mode: Manual;
14:39:13.0368 3076 ============================================================
14:39:14.0585 3076 ================ Scan system memory ========================
14:39:14.0585 3076 System memory - ok
14:39:14.0585 3076 ================ Scan services =============================
14:39:14.0741 3076 [ 1B133875B8AA8AC48969BD3458AFE9F5 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
14:39:14.0741 3076 1394ohci - ok
14:39:14.0772 3076 [ CEA80C80BED809AA0DA6FEBC04733349 ] ACPI C:\Windows\system32\drivers\ACPI.sys
14:39:14.0788 3076 ACPI - ok
14:39:14.0819 3076 [ 1EFBC664ABFF416D1D07DB115DCB264F ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
14:39:14.0819 3076 AcpiPmi - ok
14:39:14.0866 3076 [ 575307983C9EF41C456C41DFF3574A38 ] ADIHdAudAddService C:\Windows\system32\drivers\ADIHdAud.sys
14:39:14.0881 3076 ADIHdAudAddService - ok
14:39:14.0975 3076 [ 0CB0AA071C7B86A64F361DCFDF357329 ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
14:39:14.0975 3076 AdobeFlashPlayerUpdateSvc - ok
14:39:15.0022 3076 [ 21E785EBD7DC90A06391141AAC7892FB ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
14:39:15.0053 3076 adp94xx - ok
14:39:15.0068 3076 [ 0C676BC278D5B59FF5ABD57BBE9123F2 ] adpahci C:\Windows\system32\drivers\adpahci.sys
14:39:15.0084 3076 adpahci - ok
14:39:15.0100 3076 [ 7C7B5EE4B7B822EC85321FE23A27DB33 ] adpu320 C:\Windows\system32\drivers\adpu320.sys
14:39:15.0100 3076 adpu320 - ok
14:39:15.0146 3076 [ 8B5EEFEEC1E6D1A72A06C526628AD161 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
14:39:15.0146 3076 AeLookupSvc - ok
14:39:15.0178 3076 [ 9EBBBA55060F786F0FCAA3893BFA2806 ] AFD C:\Windows\system32\drivers\afd.sys
14:39:15.0193 3076 AFD - ok
14:39:15.0209 3076 [ 507812C3054C21CEF746B6EE3D04DD6E ] agp440 C:\Windows\system32\drivers\agp440.sys
14:39:15.0209 3076 agp440 - ok
14:39:15.0240 3076 [ 8B30250D573A8F6B4BD23195160D8707 ] aic78xx C:\Windows\system32\drivers\djsvs.sys
14:39:15.0256 3076 aic78xx - ok
14:39:15.0256 3076 [ 18A54E132947CD98FEA9ACCC57F98F13 ] ALG C:\Windows\System32\alg.exe
14:39:15.0271 3076 ALG - ok
14:39:15.0287 3076 [ 0D40BCF52EA90FC7DF2AEAB6503DEA44 ] aliide C:\Windows\system32\drivers\aliide.sys
14:39:15.0287 3076 aliide - ok
14:39:15.0334 3076 [ E608D708EFE1F8AE7160DB7C0DE4D8E6 ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe
14:39:15.0334 3076 AMD External Events Utility - ok
14:39:15.0396 3076 AMD FUEL Service - ok
14:39:15.0427 3076 [ 3C6600A0696E90A463771C7422E23AB5 ] amdagp C:\Windows\system32\drivers\amdagp.sys
14:39:15.0427 3076 amdagp - ok
14:39:15.0458 3076 [ CD5914170297126B6266860198D1D4F0 ] amdide C:\Windows\system32\drivers\amdide.sys
14:39:15.0458 3076 amdide - ok
14:39:15.0474 3076 [ FF258424F0B2EF25EB98F04EE386E6E3 ] amdiox86 C:\Windows\system32\DRIVERS\amdiox86.sys
14:39:15.0474 3076 amdiox86 - ok
14:39:15.0505 3076 [ 00DDA200D71BAC534BF56A9DB5DFD666 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
14:39:15.0505 3076 AmdK8 - ok
14:39:15.0724 3076 [ F611C341A8B0926D6C2D6417464BD11E ] amdkmdag C:\Windows\system32\DRIVERS\atikmdag.sys
14:39:15.0864 3076 amdkmdag - ok
14:39:15.0895 3076 [ C08F6E9987D2AACFF9653ADB30C4DA3D ] amdkmdap C:\Windows\system32\DRIVERS\atikmpag.sys
14:39:15.0926 3076 amdkmdap - ok
14:39:15.0942 3076 [ 3CBF30F5370FDA40DD3E87DF38EA53B6 ] AmdPPM C:\Windows\system32\drivers\amdppm.sys
14:39:15.0942 3076 AmdPPM - ok
14:39:15.0973 3076 [ D320BF87125326F996D4904FE24300FC ] amdsata C:\Windows\system32\drivers\amdsata.sys
14:39:15.0989 3076 amdsata - ok
14:39:16.0020 3076 [ EA43AF0C423FF267355F74E7A53BDABA ] amdsbs C:\Windows\system32\drivers\amdsbs.sys
14:39:16.0020 3076 amdsbs - ok
14:39:16.0067 3076 [ 46387FB17B086D16DEA267D5BE23A2F2 ] amdxata C:\Windows\system32\drivers\amdxata.sys
14:39:16.0067 3076 amdxata - ok
14:39:16.0098 3076 [ AEA177F783E20150ACE5383EE368DA19 ] AppID C:\Windows\system32\drivers\appid.sys
14:39:16.0114 3076 AppID - ok
14:39:16.0129 3076 [ 62A9C86CB6085E20DB4823E4E97826F5 ] AppIDSvc C:\Windows\System32\appidsvc.dll
14:39:16.0129 3076 AppIDSvc - ok
14:39:16.0145 3076 [ FB1959012294D6AD43E5304DF65E3C26 ] Appinfo C:\Windows\System32\appinfo.dll
14:39:16.0145 3076 Appinfo - ok
14:39:16.0176 3076 [ A45D184DF6A8803DA13A0B329517A64A ] AppMgmt C:\Windows\System32\appmgmts.dll
14:39:16.0176 3076 AppMgmt - ok
14:39:16.0207 3076 [ 2932004F49677BD84DBC72EDB754FFB3 ] arc C:\Windows\system32\drivers\arc.sys
14:39:16.0207 3076 arc - ok
14:39:16.0223 3076 [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7 ] arcsas C:\Windows\system32\drivers\arcsas.sys
14:39:16.0223 3076 arcsas - ok
14:39:16.0316 3076 [ 776ACEFA0CA9DF0FAA51A5FB2F435705 ] aspnet_state C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
14:39:16.0348 3076 aspnet_state - ok
14:39:16.0379 3076 [ ADD2ADE1C2B285AB8378D2DAAF991481 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
14:39:16.0379 3076 AsyncMac - ok
14:39:16.0410 3076 [ 338C86357871C167A96AB976519BF59E ] atapi C:\Windows\system32\drivers\atapi.sys
14:39:16.0410 3076 atapi - ok
14:39:16.0457 3076 [ 434192D027A6A11E32E1C74C7C43E1ED ] AtiHDAudioService C:\Windows\system32\drivers\AtihdW73.sys
14:39:16.0472 3076 AtiHDAudioService - ok
14:39:16.0519 3076 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
14:39:16.0535 3076 AudioEndpointBuilder - ok
14:39:16.0597 3076 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] Audiosrv C:\Windows\System32\Audiosrv.dll
14:39:16.0597 3076 Audiosrv - ok
14:39:16.0628 3076 [ 6E30D02AAC9CAC84F421622E3A2F6178 ] AxInstSV C:\Windows\System32\AxInstSV.dll
14:39:16.0628 3076 AxInstSV - ok
14:39:16.0660 3076 [ 1A231ABEC60FD316EC54C66715543CEC ] b06bdrv C:\Windows\system32\drivers\bxvbdx.sys
14:39:16.0675 3076 b06bdrv - ok
14:39:16.0691 3076 [ BD8869EB9CDE6BBE4508D869929869EE ] b57nd60x C:\Windows\system32\DRIVERS\b57nd60x.sys
14:39:16.0706 3076 b57nd60x - ok
14:39:16.0722 3076 [ EE1E9C3BB8228AE423DD38DB69128E71 ] BDESVC C:\Windows\System32\bdesvc.dll
14:39:16.0722 3076 BDESVC - ok
14:39:16.0753 3076 [ 505506526A9D467307B3C393DEDAF858 ] Beep C:\Windows\system32\drivers\Beep.sys
14:39:16.0753 3076 Beep - ok
14:39:16.0784 3076 [ 1E2BAC209D184BB851E1A187D8A29136 ] BFE C:\Windows\System32\bfe.dll
14:39:16.0784 3076 BFE - ok
14:39:16.0831 3076 [ E585445D5021971FAE10393F0F1C3961 ] BITS C:\Windows\System32\qmgr.dll
14:39:16.0831 3076 BITS - ok
14:39:16.0878 3076 [ 2287078ED48FCFC477B05B20CF38F36F ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
14:39:16.0878 3076 blbdrive - ok
14:39:16.0909 3076 [ 8F2DA3028D5FCBD1A060A3DE64CD6506 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
14:39:16.0909 3076 bowser - ok
14:39:16.0925 3076 [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo C:\Windows\system32\drivers\BrFiltLo.sys
14:39:16.0925 3076 BrFiltLo - ok
14:39:16.0940 3076 [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp C:\Windows\system32\drivers\BrFiltUp.sys
14:39:16.0940 3076 BrFiltUp - ok
14:39:16.0972 3076 [ 3DAA727B5B0A45039B0E1C9A211B8400 ] Browser C:\Windows\System32\browser.dll
14:39:16.0972 3076 Browser - ok
14:39:17.0018 3076 [ 845B8CE732E67F3B4133164868C666EA ] Brserid C:\Windows\System32\Drivers\Brserid.sys
14:39:17.0050 3076 Brserid - ok
14:39:17.0065 3076 [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
14:39:17.0065 3076 BrSerWdm - ok
14:39:17.0096 3076 [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
14:39:17.0096 3076 BrUsbMdm - ok
14:39:17.0112 3076 [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
14:39:17.0112 3076 BrUsbSer - ok
14:39:17.0128 3076 [ ED3DF7C56CE0084EB2034432FC56565A ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
14:39:17.0128 3076 BTHMODEM - ok
14:39:17.0174 3076 [ 1DF19C96EEF6C29D1C3E1A8678E07190 ] bthserv C:\Windows\system32\bthserv.dll
14:39:17.0174 3076 bthserv - ok
14:39:17.0221 3076 [ 77EA11B065E0A8AB902D78145CA51E10 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
14:39:17.0221 3076 cdfs - ok
14:39:17.0237 3076 [ BE167ED0FDB9C1FA1133953C18D5A6C9 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
14:39:17.0237 3076 cdrom - ok
14:39:17.0268 3076 [ 319C6B309773D063541D01DF8AC6F55F ] CertPropSvc C:\Windows\System32\certprop.dll
14:39:17.0268 3076 CertPropSvc - ok
14:39:17.0284 3076 [ 3FE3FE94A34DF6FB06E6418D0F6A0060 ] circlass C:\Windows\system32\drivers\circlass.sys
14:39:17.0284 3076 circlass - ok
14:39:17.0299 3076 [ 635181E0E9BBF16871BF5380D71DB02D ] CLFS C:\Windows\system32\CLFS.sys
14:39:17.0315 3076 CLFS - ok
14:39:17.0346 3076 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
14:39:17.0377 3076 clr_optimization_v2.0.50727_32 - ok
14:39:17.0440 3076 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
14:39:17.0455 3076 clr_optimization_v4.0.30319_32 - ok
14:39:17.0486 3076 [ DEA805815E587DAD1DD2C502220B5616 ] CmBatt C:\Windows\system32\drivers\CmBatt.sys
14:39:17.0486 3076 CmBatt - ok
14:39:17.0502 3076 [ C537B1DB64D495B9B4717B4D6D9EDBF2 ] cmdide C:\Windows\system32\drivers\cmdide.sys
14:39:17.0502 3076 cmdide - ok
14:39:17.0533 3076 [ 247B4CE2DAB1160CD422D532D5241E1F ] CNG C:\Windows\system32\Drivers\cng.sys
14:39:17.0549 3076 CNG - ok
14:39:17.0564 3076 [ A6023D3823C37043986713F118A89BEE ] Compbatt C:\Windows\system32\drivers\compbatt.sys
14:39:17.0596 3076 Compbatt - ok
14:39:17.0627 3076 [ CBE8C58A8579CFE5FCCF809E6F114E89 ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys
14:39:17.0627 3076 CompositeBus - ok
14:39:17.0658 3076 COMSysApp - ok
14:39:17.0674 3076 [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
14:39:17.0674 3076 crcdisk - ok
14:39:17.0720 3076 [ 96C0E38905CFD788313BE8E11DAE3F2F ] CryptSvc C:\Windows\system32\cryptsvc.dll
14:39:17.0720 3076 CryptSvc - ok
14:39:17.0752 3076 [ 3C2177A897B4CA2788C6FB0C3FD81D4B ] CSC C:\Windows\system32\drivers\csc.sys
14:39:17.0752 3076 CSC - ok
14:39:17.0783 3076 [ 15F93B37F6801943360D9EB42485D5D3 ] CscService C:\Windows\System32\cscsvc.dll
14:39:17.0783 3076 CscService - ok
14:39:17.0830 3076 [ 7660F01D3B38ACA1747E397D21D790AF ] DcomLaunch C:\Windows\system32\rpcss.dll
14:39:17.0830 3076 DcomLaunch - ok
14:39:17.0861 3076 [ 8D6E10A2D9A5EED59562D9B82CF804E1 ] defragsvc C:\Windows\System32\defragsvc.dll
14:39:17.0861 3076 defragsvc - ok
14:39:17.0892 3076 [ F024449C97EC1E464AAFFDA18593DB88 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
14:39:17.0908 3076 DfsC - ok
14:39:17.0939 3076 [ E9E01EB683C132F7FA27CD607B8A2B63 ] Dhcp C:\Windows\system32\dhcpcore.dll
14:39:17.0939 3076 Dhcp - ok
14:39:17.0954 3076 [ 1A050B0274BFB3890703D490F330C0DA ] discache C:\Windows\system32\drivers\discache.sys
14:39:17.0970 3076 discache - ok
14:39:18.0001 3076 [ 565003F326F99802E68CA78F2A68E9FF ] Disk C:\Windows\system32\drivers\disk.sys
14:39:18.0001 3076 Disk - ok
14:39:18.0048 3076 [ 2A958EF85DB1B61FFCA65044FA4BCE9E ] dmvsc C:\Windows\system32\drivers\dmvsc.sys
14:39:18.0048 3076 dmvsc - ok
14:39:18.0110 3076 [ 33EF4861F19A0736B11314AAD9AE28D0 ] Dnscache C:\Windows\System32\dnsrslvr.dll
14:39:18.0110 3076 Dnscache - ok
14:39:18.0157 3076 [ 366BA8FB4B7BB7435E3B9EACB3843F67 ] dot3svc C:\Windows\System32\dot3svc.dll
14:39:18.0157 3076 dot3svc - ok
14:39:18.0173 3076 [ 8EC04CA86F1D68DA9E11952EB85973D6 ] DPS C:\Windows\system32\dps.dll
14:39:18.0173 3076 DPS - ok
14:39:18.0204 3076 [ B918E7C5F9BF77202F89E1A9539F2EB4 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
14:39:18.0204 3076 drmkaud - ok
14:39:18.0266 3076 [ 687AF6BB383885FF6A64071B189A7F3E ] dtsoftbus01 C:\Windows\system32\DRIVERS\dtsoftbus01.sys
14:39:18.0266 3076 dtsoftbus01 - ok
14:39:18.0298 3076 [ 23F5D28378A160352BA8F817BD8C71CB ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
14:39:18.0313 3076 DXGKrnl - ok
14:39:18.0344 3076 EagleXNt - ok
14:39:18.0376 3076 [ 8A45015E85A4DCE0086B9973F0FD9A20 ] eamonm C:\Windows\system32\DRIVERS\eamonm.sys
14:39:18.0376 3076 eamonm - ok
14:39:18.0407 3076 [ 8600142FA91C1B96367D3300AD0F3F3A ] EapHost C:\Windows\System32\eapsvc.dll
14:39:18.0407 3076 EapHost - ok
14:39:18.0485 3076 [ 024E1B5CAC09731E4D868E64DBFB4AB0 ] ebdrv C:\Windows\system32\drivers\evbdx.sys
14:39:18.0563 3076 ebdrv - ok
14:39:18.0594 3076 [ 81951F51E318AECC2D68559E47485CC4 ] EFS C:\Windows\System32\lsass.exe
14:39:18.0610 3076 EFS - ok
14:39:18.0641 3076 [ 5412ED24FFFCA64E2F0168399B86C952 ] ehdrv C:\Windows\system32\DRIVERS\ehdrv.sys
14:39:18.0641 3076 ehdrv - ok
14:39:18.0688 3076 [ A8C362018EFC87BEB013EE28F29C0863 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
14:39:18.0703 3076 ehRecvr - ok
14:39:18.0719 3076 [ D389BFF34F80CAEDE417BF9D1507996A ] ehSched C:\Windows\ehome\ehsched.exe
14:39:18.0719 3076 ehSched - ok
14:39:18.0766 3076 [ AD4FAADE819E0DA9933BEA7C01D2C763 ] ekrn C:\Program Files\ESET\ESET Smart Security\ekrn.exe
14:39:18.0766 3076 ekrn - ok
14:39:18.0797 3076 [ 0ED67910C8C326796FAA00B2BF6D9D3C ] elxstor C:\Windows\system32\drivers\elxstor.sys
14:39:18.0812 3076 elxstor - ok
14:39:18.0844 3076 [ 774BABCB1144513DC86992003740B774 ] epfw C:\Windows\system32\DRIVERS\epfw.sys
14:39:18.0844 3076 epfw - ok
14:39:18.0859 3076 [ 2C22CC39309EE06AE870C183BF2A769D ] EpfwLWF C:\Windows\system32\DRIVERS\EpfwLWF.sys
14:39:18.0875 3076 EpfwLWF - ok
14:39:18.0890 3076 [ 2B4E5F01A4E786B422F4D617B51FA7D9 ] epfwwfp C:\Windows\system32\DRIVERS\epfwwfp.sys
14:39:18.0890 3076 epfwwfp - ok
14:39:18.0922 3076 [ 8FC3208352DD3912C94367A206AB3F11 ] ErrDev C:\Windows\system32\drivers\errdev.sys
14:39:18.0922 3076 ErrDev - ok
14:39:18.0968 3076 [ F6916EFC29D9953D5D0DF06882AE8E16 ] EventSystem C:\Windows\system32\es.dll
14:39:18.0968 3076 EventSystem - ok
14:39:19.0000 3076 [ 2DC9108D74081149CC8B651D3A26207F ] exfat C:\Windows\system32\drivers\exfat.sys
14:39:19.0000 3076 exfat - ok
14:39:19.0015 3076 [ 7E0AB74553476622FB6AE36F73D97D35 ] fastfat C:\Windows\system32\drivers\fastfat.sys
14:39:19.0031 3076 fastfat - ok
14:39:19.0062 3076 [ 967EA5B213E9984CBE270205DF37755B ] Fax C:\Windows\system32\fxssvc.exe
14:39:19.0078 3076 Fax - ok
14:39:19.0109 3076 [ E817A017F82DF2A1F8CFDBDA29388B29 ] fdc C:\Windows\system32\DRIVERS\fdc.sys
14:39:19.0109 3076 fdc - ok
14:39:19.0124 3076 [ F3222C893BD2F5821A0179E5C71E88FB ] fdPHost C:\Windows\system32\fdPHost.dll
14:39:19.0140 3076 fdPHost - ok
14:39:19.0140 3076 [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B ] FDResPub C:\Windows\system32\fdrespub.dll
14:39:19.0156 3076 FDResPub - ok
14:39:19.0156 3076 [ 6CF00369C97F3CF563BE99BE983D13D8 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
14:39:19.0171 3076 FileInfo - ok
14:39:19.0187 3076 [ 42C51DC94C91DA21CB9196EB64C45DB9 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
14:39:19.0187 3076 Filetrace - ok
14:39:19.0202 3076 [ 87907AA70CB3C56600F1C2FB8841579B ] flpydisk C:\Windows\system32\drivers\flpydisk.sys
14:39:19.0202 3076 flpydisk - ok
14:39:19.0234 3076 [ 7520EC808E0C35E0EE6F841294316653 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
14:39:19.0234 3076 FltMgr - ok
14:39:19.0280 3076 [ B3A5EC6B6B6673DB7E87C2BCDBDDC074 ] FontCache C:\Windows\system32\FntCache.dll
14:39:19.0296 3076 FontCache - ok
14:39:19.0343 3076 [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
14:39:19.0374 3076 FontCache3.0.0.0 - ok
14:39:19.0390 3076 [ 1A16B57943853E598CFF37FE2B8CBF1D ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
14:39:19.0405 3076 FsDepends - ok
14:39:19.0421 3076 [ 7DAE5EBCC80E45D3253F4923DC424D05 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
14:39:19.0421 3076 Fs_Rec - ok
14:39:19.0452 3076 [ 8A73E79089B282100B9393B644CB853B ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
14:39:19.0452 3076 fvevol - ok
14:39:19.0499 3076 [ 65EE0C7A58B65E74AE05637418153938 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
14:39:19.0499 3076 gagp30kx - ok
14:39:19.0530 3076 [ E897EAF5ED6BA41E081060C9B447A673 ] gpsvc C:\Windows\System32\gpsvc.dll
14:39:19.0546 3076 gpsvc - ok
14:39:19.0608 3076 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
14:39:19.0608 3076 gupdate - ok
14:39:19.0624 3076 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
14:39:19.0624 3076 gupdatem - ok
14:39:19.0655 3076 [ 7929A161F9951D173CA9900FE7067391 ] hamachi C:\Windows\system32\DRIVERS\hamachi.sys
14:39:19.0655 3076 hamachi - ok
14:39:19.0686 3076 [ C44E3C2BAB6837DB337DDEE7544736DB ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
14:39:19.0686 3076 hcw85cir - ok
14:39:19.0717 3076 [ A5EF29D5315111C80A5C1ABAD14C8972 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
14:39:19.0733 3076 HdAudAddService - ok
14:39:19.0748 3076 [ 9036377B8A6C15DC2EEC53E489D159B5 ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
14:39:19.0748 3076 HDAudBus - ok
14:39:19.0780 3076 [ 1D58A7F3E11A9731D0EAAAA8405ACC36 ] HidBatt C:\Windows\system32\drivers\HidBatt.sys
14:39:19.0780 3076 HidBatt - ok
14:39:19.0795 3076 [ 89448F40E6DF260C206A193A4683BA78 ] HidBth C:\Windows\system32\drivers\hidbth.sys
14:39:19.0795 3076 HidBth - ok
14:39:19.0842 3076 [ CF50B4CF4A4F229B9F3C08351F99CA5E ] HidIr C:\Windows\system32\drivers\hidir.sys
14:39:19.0842 3076 HidIr - ok
14:39:19.0873 3076 [ 2BC6F6A1992B3A77F5F41432CA6B3B6B ] hidserv C:\Windows\system32\hidserv.dll
14:39:19.0873 3076 hidserv - ok
14:39:19.0904 3076 [ 10C19F8290891AF023EAEC0832E1EB4D ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
14:39:19.0904 3076 HidUsb - ok
14:39:19.0936 3076 [ 196B4E3F4CCCC24AF836CE58FACBB699 ] hkmsvc C:\Windows\system32\kmsvc.dll
14:39:19.0936 3076 hkmsvc - ok
14:39:19.0967 3076 [ 6658F4404DE03D75FE3BA09F7ABA6A30 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
14:39:19.0967 3076 HomeGroupListener - ok
14:39:19.0998 3076 [ DBC02D918FFF1CAD628ACBE0C0EAA8E8 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
14:39:19.0998 3076 HomeGroupProvider - ok
14:39:20.0060 3076 [ 295FDC419039090EB8B49FFDBB374549 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
14:39:20.0060 3076 HpSAMD - ok
14:39:20.0092 3076 [ 871917B07A141BFF43D76D8844D48106 ] HTTP C:\Windows\system32\drivers\HTTP.sys
14:39:20.0092 3076 HTTP - ok
14:39:20.0107 3076 [ 0C4E035C7F105F1299258C90886C64C5 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
14:39:20.0107 3076 hwpolicy - ok
14:39:20.0138 3076 [ F151F0BDC47F4A28B1B20A0818EA36D6 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
14:39:20.0138 3076 i8042prt - ok
14:39:20.0170 3076 [ 5CD5F9A5444E6CDCB0AC89BD62D8B76E ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
14:39:20.0185 3076 iaStorV - ok
14:39:20.0216 3076 [ C521D7EB6497BB1AF6AFA89E322FB43C ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
14:39:20.0248 3076 idsvc - ok
14:39:20.0263 3076 [ 4173FF5708F3236CF25195FECD742915 ] iirsp C:\Windows\system32\drivers\iirsp.sys
14:39:20.0279 3076 iirsp - ok
14:39:20.0310 3076 [ F95622F161474511B8D80D6B093AA610 ] IKEEXT C:\Windows\System32\ikeext.dll
14:39:20.0326 3076 IKEEXT - ok
14:39:20.0341 3076 [ A0F12F2C9BA6C72F3987CE780E77C130 ] intelide C:\Windows\system32\drivers\intelide.sys
14:39:20.0341 3076 intelide - ok
14:39:20.0372 3076 [ 3B514D27BFC4ACCB4037BC6685F766E0 ] intelppm C:\Windows\system32\drivers\intelppm.sys
14:39:20.0372 3076 intelppm - ok
14:39:20.0404 3076 [ ACB364B9075A45C0736E5C47BE5CAE19 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
14:39:20.0404 3076 IPBusEnum - ok
14:39:20.0419 3076 [ 709D1761D3B19A932FF0238EA6D50200 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
14:39:20.0419 3076 IpFilterDriver - ok
14:39:20.0466 3076 [ 4D65A07B795D6674312F879D09AA7663 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
14:39:20.0466 3076 iphlpsvc - ok
14:39:20.0513 3076 [ 4BD7134618C1D2A27466A099062547BF ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
14:39:20.0513 3076 IPMIDRV - ok
14:39:20.0528 3076 [ A5FA468D67ABCDAA36264E463A7BB0CD ] IPNAT C:\Windows\system32\drivers\ipnat.sys
14:39:20.0528 3076 IPNAT - ok
14:39:20.0560 3076 [ 42996CFF20A3084A56017B7902307E9F ] IRENUM C:\Windows\system32\drivers\irenum.sys
14:39:20.0560 3076 IRENUM - ok
14:39:20.0575 3076 [ 1F32BB6B38F62F7DF1A7AB7292638A35 ] isapnp C:\Windows\system32\drivers\isapnp.sys
14:39:20.0575 3076 isapnp - ok
14:39:20.0591 3076 [ CB7A9ABB12B8415BCE5D74994C7BA3AE ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
14:39:20.0606 3076 iScsiPrt - ok
14:39:20.0622 3076 [ ADEF52CA1AEAE82B50DF86B56413107E ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
14:39:20.0622 3076 kbdclass - ok
14:39:20.0638 3076 [ 9E3CED91863E6EE98C24794D05E27A71 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
14:39:20.0638 3076 kbdhid - ok
14:39:20.0653 3076 [ 81951F51E318AECC2D68559E47485CC4 ] KeyIso C:\Windows\system32\lsass.exe
14:39:20.0669 3076 KeyIso - ok
14:39:20.0700 3076 [ B7895B4182C0D16F6EFADEB8081E8D36 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
14:39:20.0700 3076 KSecDD - ok
14:39:20.0747 3076 [ D30159AC9237519FBC62C6EC247D2D46 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
14:39:20.0747 3076 KSecPkg - ok
14:39:20.0794 3076 [ 89A7B9CC98D0D80C6F31B91C0A310FCD ] KtmRm C:\Windows\system32\msdtckrm.dll
14:39:20.0794 3076 KtmRm - ok
14:39:20.0840 3076 [ D64AF876D53ECA3668BB97B51B4E70AB ] LanmanServer C:\Windows\system32\srvsvc.dll
14:39:20.0840 3076 LanmanServer - ok
14:39:20.0872 3076 [ 58405E4F68BA8E4057C6E914F326ABA2 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
14:39:20.0872 3076 LanmanWorkstation - ok
14:39:20.0918 3076 [ F7611EC07349979DA9B0AE1F18CCC7A6 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
14:39:20.0918 3076 lltdio - ok
14:39:20.0950 3076 [ 5700673E13A2117FA3B9020C852C01E2 ] lltdsvc C:\Windows\System32\lltdsvc.dll
14:39:20.0965 3076 lltdsvc - ok
14:39:20.0981 3076 [ 55CA01BA19D0006C8F2639B6C045E08B ] lmhosts C:\Windows\System32\lmhsvc.dll
14:39:20.0981 3076 lmhosts - ok
14:39:21.0012 3076 [ EB119A53CCF2ACC000AC71B065B78FEF ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
14:39:21.0012 3076 LSI_FC - ok
14:39:21.0074 3076 [ 8ADE1C877256A22E49B75D1CC9161F9C ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
14:39:21.0074 3076 LSI_SAS - ok
14:39:21.0090 3076 [ DC9DC3D3DAA0E276FD2EC262E38B11E9 ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys
14:39:21.0090 3076 LSI_SAS2 - ok
14:39:21.0106 3076 [ 0A036C7D7CAB643A7F07135AC47E0524 ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
14:39:21.0106 3076 LSI_SCSI - ok
14:39:21.0121 3076 [ 6703E366CC18D3B6E534F5CF7DF39CEE ] luafv C:\Windows\system32\drivers\luafv.sys
14:39:21.0137 3076 luafv - ok
14:39:21.0152 3076 [ BFB9EE8EE977EFE85D1A3105ABEF6DD1 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
14:39:21.0168 3076 Mcx2Svc - ok
14:39:21.0184 3076 [ 0FFF5B045293002AB38EB1FD1FC2FB74 ] megasas C:\Windows\system32\drivers\megasas.sys
14:39:21.0184 3076 megasas - ok
14:39:21.0199 3076 [ DCBAB2920C75F390CAF1D29F675D03D6 ] MegaSR C:\Windows\system32\drivers\MegaSR.sys
14:39:21.0199 3076 MegaSR - ok
14:39:21.0246 3076 Microsoft SharePoint Workspace Audit Service - ok
14:39:21.0277 3076 [ 146B6F43A673379A3C670E86D89BE5EA ] MMCSS C:\Windows\system32\mmcss.dll
14:39:21.0293 3076 MMCSS - ok
14:39:21.0308 3076 [ F001861E5700EE84E2D4E52C712F4964 ] Modem C:\Windows\system32\drivers\modem.sys
14:39:21.0308 3076 Modem - ok
14:39:21.0340 3076 [ 79D10964DE86B292320E9DFE02282A23 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
14:39:21.0340 3076 monitor - ok
14:39:21.0371 3076 [ FB18CC1D4C2E716B6B903B0AC0CC0609 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
14:39:21.0371 3076 mouclass - ok
14:39:21.0386 3076 [ 2C388D2CD01C9042596CF3C8F3C7B24D ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
14:39:21.0386 3076 mouhid - ok
14:39:21.0402 3076 [ FC8771F45ECCCFD89684E38842539B9B ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
14:39:21.0402 3076 mountmgr - ok
14:39:21.0418 3076 [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0 ] mpio C:\Windows\system32\drivers\mpio.sys
14:39:21.0433 3076 mpio - ok
14:39:21.0449 3076 [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
14:39:21.0449 3076 mpsdrv - ok
14:39:21.0480 3076 [ 9835584E999D25004E1EE8E5F3E3B881 ] MpsSvc C:\Windows\system32\mpssvc.dll
14:39:21.0496 3076 MpsSvc - ok
14:39:21.0511 3076 [ CEB46AB7C01C9F825F8CC6BABC18166A ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
14:39:21.0511 3076 MRxDAV - ok
14:39:21.0542 3076 [ 5D16C921E3671636C0EBA3BBAAC5FD25 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
14:39:21.0558 3076 mrxsmb - ok
14:39:21.0574 3076 [ 6D17A4791ACA19328C685D256349FEFC ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
14:39:21.0589 3076 mrxsmb10 - ok
14:39:21.0605 3076 [ B81F204D146000BE76651A50670A5E9E ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
14:39:21.0605 3076 mrxsmb20 - ok
14:39:21.0652 3076 [ 012C5F4E9349E711E11E0F19A8589F0A ] msahci C:\Windows\system32\drivers\msahci.sys
14:39:21.0652 3076 msahci - ok
14:39:21.0667 3076 [ 55055F8AD8BE27A64C831322A780A228 ] msdsm C:\Windows\system32\drivers\msdsm.sys
14:39:21.0667 3076 msdsm - ok
14:39:21.0698 3076 [ E1BCE74A3BD9902B72599C0192A07E27 ] MSDTC C:\Windows\System32\msdtc.exe
14:39:21.0698 3076 MSDTC - ok
14:39:21.0730 3076 [ DAEFB28E3AF5A76ABCC2C3078C07327F ] Msfs C:\Windows\system32\drivers\Msfs.sys
14:39:21.0730 3076 Msfs - ok
14:39:21.0745 3076 [ 3E1E5767043C5AF9367F0056295E9F84 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
14:39:21.0745 3076 mshidkmdf - ok
14:39:21.0761 3076 [ 0A4E5757AE09FA9622E3158CC1AEF114 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
14:39:21.0776 3076 msisadrv - ok
14:39:21.0808 3076 [ 90F7D9E6B6F27E1A707D4A297F077828 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
14:39:21.0808 3076 MSiSCSI - ok
14:39:21.0823 3076 msiserver - ok
14:39:21.0839 3076 [ 8C0860D6366AAFFB6C5BB9DF9448E631 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
14:39:21.0839 3076 MSKSSRV - ok
14:39:21.0870 3076 [ 3EA8B949F963562CEDBB549EAC0C11CE ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
14:39:21.0870 3076 MSPCLOCK - ok
14:39:21.0886 3076 [ F456E973590D663B1073E9C463B40932 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
14:39:21.0901 3076 MSPQM - ok
14:39:21.0917 3076 [ 0E008FC4819D238C51D7C93E7B41E560 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
14:39:21.0917 3076 MsRPC - ok
14:39:21.0948 3076 [ FC6B9FF600CC585EA38B12589BD4E246 ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
14:39:21.0948 3076 mssmbios - ok
14:39:21.0964 3076 [ B42C6B921F61A6E55159B8BE6CD54A36 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
14:39:21.0964 3076 MSTEE - ok
14:39:21.0995 3076 [ 33599130F44E1F34631CEA241DE8AC84 ] MTConfig C:\Windows\system32\drivers\MTConfig.sys
14:39:21.0995 3076 MTConfig - ok
14:39:22.0042 3076 [ CBE71C122434805CB73FFB6619F60598 ] MTsensor C:\Windows\system32\DRIVERS\ASACPI.sys
14:39:22.0042 3076 MTsensor - ok
14:39:22.0073 3076 [ 159FAD02F64E6381758C990F753BCC80 ] Mup C:\Windows\system32\Drivers\mup.sys
14:39:22.0073 3076 Mup - ok
14:39:22.0104 3076 [ 61D57A5D7C6D9AFE10E77DAE6E1B445E ] napagent C:\Windows\system32\qagentRT.dll
14:39:22.0120 3076 napagent - ok
14:39:22.0151 3076 [ 26384429FCD85D83746F63E798AB1480 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
14:39:22.0151 3076 NativeWifiP - ok
14:39:22.0198 3076 [ 8C9C922D71F1CD4DEF73F186416B7896 ] NDIS C:\Windows\system32\drivers\ndis.sys
14:39:22.0198 3076 NDIS - ok
14:39:22.0229 3076 [ 0E1787AA6C9191D3D319E8BAFE86F80C ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
14:39:22.0229 3076 NdisCap - ok
14:39:22.0260 3076 [ E4A8AEC125A2E43A9E32AFEEA7C9C888 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
14:39:22.0260 3076 NdisTapi - ok
14:39:22.0291 3076 [ D8A65DAFB3EB41CBB622745676FCD072 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
14:39:22.0291 3076 Ndisuio - ok
14:39:22.0307 3076 [ 38FBE267E7E6983311179230FACB1017 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
14:39:22.0307 3076 NdisWan - ok
14:39:22.0322 3076 [ A4BDC541E69674FBFF1A8FF00BE913F2 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
14:39:22.0338 3076 NDProxy - ok
14:39:22.0354 3076 [ 80B275B1CE3B0E79909DB7B39AF74D51 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
14:39:22.0354 3076 NetBIOS - ok
14:39:22.0369 3076 [ 280122DDCF04B378EDD1AD54D71C1E54 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
14:39:22.0385 3076 NetBT - ok
14:39:22.0400 3076 [ 81951F51E318AECC2D68559E47485CC4 ] Netlogon C:\Windows\system32\lsass.exe
14:39:22.0400 3076 Netlogon - ok
14:39:22.0432 3076 [ 7CCCFCA7510684768DA22092D1FA4DB2 ] Netman C:\Windows\System32\netman.dll
14:39:22.0447 3076 Netman - ok
14:39:22.0494 3076 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
14:39:22.0510 3076 NetMsmqActivator - ok
14:39:22.0510 3076 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetPipeActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
14:39:22.0510 3076 NetPipeActivator - ok
14:39:22.0541 3076 [ 8C338238C16777A802D6A9211EB2BA50 ] netprofm C:\Windows\System32\netprofm.dll
14:39:22.0541 3076 netprofm - ok
14:39:22.0556 3076 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
14:39:22.0556 3076 NetTcpActivator - ok
14:39:22.0572 3076 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
14:39:22.0572 3076 NetTcpPortSharing - ok
14:39:22.0619 3076 [ 1D85C4B390B0EE09C7A46B91EFB2C097 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
14:39:22.0619 3076 nfrd960 - ok
14:39:22.0650 3076 [ 912084381D30D8B89EC4E293053F4710 ] NlaSvc C:\Windows\System32\nlasvc.dll
14:39:22.0650 3076 NlaSvc - ok
14:39:22.0666 3076 [ 1DB262A9F8C087E8153D89BEF3D2235F ] Npfs C:\Windows\system32\drivers\Npfs.sys
14:39:22.0681 3076 Npfs - ok
14:39:22.0697 3076 [ BA387E955E890C8A88306D9B8D06BF17 ] nsi C:\Windows\system32\nsisvc.dll
14:39:22.0697 3076 nsi - ok
14:39:22.0728 3076 [ E9A0A4D07E53D8FEA2BB8387A3293C58 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
14:39:22.0728 3076 nsiproxy - ok
14:39:22.0775 3076 [ 0D87503986BB3DFED58E343FE39DDE13 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
14:39:22.0806 3076 Ntfs - ok
14:39:22.0853 3076 [ F9756A98D69098DCA8945D62858A812C ] Null C:\Windows\system32\drivers\Null.sys
14:39:22.0853 3076 Null - ok
14:39:22.0884 3076 [ B5E37E31C053BC9950455A257526514B ] NVENETFD C:\Windows\system32\DRIVERS\nvm62x32.sys
14:39:22.0884 3076 NVENETFD - ok
14:39:22.0931 3076 [ 1DE923088878B495CD4219E47BA34EB8 ] NVNET C:\Windows\system32\DRIVERS\nvmf6232.sys
14:39:22.0931 3076 NVNET - ok
14:39:22.0962 3076 [ B3E25EE28883877076E0E1FF877D02E0 ] nvraid C:\Windows\system32\drivers\nvraid.sys
14:39:22.0962 3076 nvraid - ok
14:39:22.0993 3076 [ 4380E59A170D88C4F1022EFF6719A8A4 ] nvstor C:\Windows\system32\drivers\nvstor.sys
14:39:22.0993 3076 nvstor - ok
14:39:23.0024 3076 [ 5A0983915F02BAE73267CC2A041F717D ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
14:39:23.0024 3076 nv_agp - ok
14:39:23.0056 3076 [ 08A70A1F2CDDE9BB49B885CB817A66EB ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
14:39:23.0071 3076 ohci1394 - ok
14:39:23.0118 3076 [ 9D10F99A6712E28F8ACD5641E3A7EA6B ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
14:39:23.0134 3076 ose - ok
14:39:23.0258 3076 [ 358A9CCA612C68EB2F07DDAD4CE1D8D7 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
14:39:23.0336 3076 osppsvc - ok
14:39:23.0383 3076 [ 82A8521DDC60710C3D3D3E7325209BEC ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
14:39:23.0383 3076 p2pimsvc - ok
14:39:23.0414 3076 [ 59C3DDD501E39E006DAC31BF55150D91 ] p2psvc C:\Windows\system32\p2psvc.dll
14:39:23.0430 3076 p2psvc - ok
14:39:23.0461 3076 [ 2EA877ED5DD9713C5AC74E8EA7348D14 ] Parport C:\Windows\system32\DRIVERS\parport.sys
14:39:23.0461 3076 Parport - ok
14:39:23.0492 3076 [ 3F34A1B4C5F6475F320C275E63AFCE9B ] partmgr C:\Windows\system32\drivers\partmgr.sys
14:39:23.0508 3076 partmgr - ok
14:39:23.0524 3076 [ EB0A59F29C19B86479D36B35983DAADC ] Parvdm C:\Windows\system32\DRIVERS\parvdm.sys
14:39:23.0524 3076 Parvdm - ok
14:39:23.0539 3076 [ 358AB7956D3160000726574083DFC8A6 ] PcaSvc C:\Windows\System32\pcasvc.dll
14:39:23.0555 3076 PcaSvc - ok
14:39:23.0570 3076 [ 673E55C3498EB970088E812EA820AA8F ] pci C:\Windows\system32\drivers\pci.sys
14:39:23.0570 3076 pci - ok
14:39:23.0586 3076 [ AFE86F419014DB4E5593F69FFE26CE0A ] pciide C:\Windows\system32\drivers\pciide.sys
14:39:23.0586 3076 pciide - ok
14:39:23.0602 3076 [ F396431B31693E71E8A80687EF523506 ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
14:39:23.0617 3076 pcmcia - ok
14:39:23.0633 3076 [ 250F6B43D2B613172035C6747AEEB19F ] pcw C:\Windows\system32\drivers\pcw.sys
14:39:23.0633 3076 pcw - ok
14:39:23.0664 3076 [ 9E0104BA49F4E6973749A02BF41344ED ] PEAUTH C:\Windows\system32\drivers\peauth.sys
14:39:23.0664 3076 PEAUTH - ok
14:39:23.0711 3076 [ AF4D64D2A57B9772CF3801950B8058A6 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll
14:39:23.0726 3076 PeerDistSvc - ok
14:39:23.0789 3076 [ 414BBA67A3DED1D28437EB66AEB8A720 ] pla C:\Windows\system32\pla.dll
14:39:23.0820 3076 pla - ok
14:39:23.0851 3076 [ EC7BC28D207DA09E79B3E9FAF8B232CA ] PlugPlay C:\Windows\system32\umpnpmgr.dll
14:39:23.0867 3076 PlugPlay - ok
14:39:23.0914 3076 [ 1713D9DE407313138118D501B0E3C05B ] PnkBstrA C:\Windows\system32\PnkBstrA.exe
14:39:23.0914 3076 PnkBstrA - ok
14:39:23.0929 3076 [ 63FF8572611249931EB16BB8EED6AFC8 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
14:39:23.0945 3076 PNRPAutoReg - ok
14:39:23.0960 3076 [ 82A8521DDC60710C3D3D3E7325209BEC ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
14:39:23.0960 3076 PNRPsvc - ok
14:39:23.0992 3076 [ 53946B69BA0836BD95B03759530C81EC ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
14:39:24.0007 3076 PolicyAgent - ok
14:39:24.0038 3076 [ F87D30E72E03D579A5199CCB3831D6EA ] Power C:\Windows\system32\umpo.dll
14:39:24.0038 3076 Power - ok
14:39:24.0085 3076 [ 631E3E205AD6D86F2AED6A4A8E69F2DB ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
14:39:24.0085 3076 PptpMiniport - ok
14:39:24.0101 3076 [ 85B1E3A0C7585BC4AAE6899EC6FCF011 ] Processor C:\Windows\system32\drivers\processr.sys
14:39:24.0116 3076 Processor - ok
14:39:24.0148 3076 [ CADEFAC453040E370A1BDFF3973BE00D ] ProfSvc C:\Windows\system32\profsvc.dll
14:39:24.0163 3076 ProfSvc - ok
14:39:24.0179 3076 [ 81951F51E318AECC2D68559E47485CC4 ] ProtectedStorage C:\Windows\system32\lsass.exe
14:39:24.0179 3076 ProtectedStorage - ok
14:39:24.0194 3076 [ 6270CCAE2A86DE6D146529FE55B3246A ] Psched C:\Windows\system32\DRIVERS\pacer.sys
14:39:24.0194 3076 Psched - ok
14:39:24.0241 3076 [ AB95ECF1F6659A60DDC166D8315B0751 ] ql2300 C:\Windows\system32\drivers\ql2300.sys
14:39:24.0272 3076 ql2300 - ok
14:39:24.0288 3076 [ B4DD51DD25182244B86737DC51AF2270 ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
14:39:24.0288 3076 ql40xx - ok
14:39:24.0319 3076 [ 31AC809E7707EB580B2BDB760390765A ] QWAVE C:\Windows\system32\qwave.dll
14:39:24.0319 3076 QWAVE - ok
14:39:24.0350 3076 [ 584078CA1B95CA72DF2A27C336F9719D ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
14:39:24.0350 3076 QWAVEdrv - ok
14:39:24.0366 3076 [ 30A81B53C766D0133BB86D234E5556AB ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
14:39:24.0382 3076 RasAcd - ok
14:39:24.0397 3076 [ 57EC4AEF73660166074D8F7F31C0D4FD ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
14:39:24.0397 3076 RasAgileVpn - ok
14:39:24.0428 3076 [ A60F1839849C0C00739787FD5EC03F13 ] RasAuto C:\Windows\System32\rasauto.dll
14:39:24.0428 3076 RasAuto - ok
14:39:24.0460 3076 [ D9F91EAFEC2815365CBE6D167E4E332A ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
14:39:24.0460 3076 Rasl2tp - ok
14:39:24.0491 3076 [ CB9E04DC05EACF5B9A36CA276D475006 ] RasMan C:\Windows\System32\rasmans.dll
14:39:24.0491 3076 RasMan - ok
14:39:24.0522 3076 [ 0FE8B15916307A6AC12BFB6A63E45507 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
14:39:24.0522 3076 RasPppoe - ok
14:39:24.0553 3076 [ 44101F495A83EA6401D886E7FD70096B ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
14:39:24.0553 3076 RasSstp - ok
14:39:24.0584 3076 [ D528BC58A489409BA40334EBF96A311B ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
14:39:24.0584 3076 rdbss - ok
14:39:24.0616 3076 [ 0D8F05481CB76E70E1DA06EE9F0DA9DF ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
14:39:24.0616 3076 rdpbus - ok
14:39:24.0662 3076 [ 23DAE03F29D253AE74C44F99E515F9A1 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
14:39:24.0662 3076 RDPCDD - ok
14:39:24.0709 3076 [ B973FCFC50DC1434E1970A146F7E3885 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys
14:39:24.0725 3076 RDPDR - ok
14:39:24.0740 3076 [ 5A53CA1598DD4156D44196D200C94B8A ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
14:39:24.0756 3076 RDPENCDD - ok
14:39:24.0772 3076 [ 44B0A53CD4F27D50ED461DAE0C0B4E1F ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
14:39:24.0772 3076 RDPREFMP - ok
14:39:24.0818 3076 [ 68A0387F58E226DEEE23D9715955572A ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
14:39:24.0818 3076 RdpVideoMiniport - ok
14:39:24.0865 3076 [ F031683E6D1FEA157ABB2FF260B51E61 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
14:39:24.0865 3076 RDPWD - ok
14:39:24.0896 3076 [ 518395321DC96FE2C9F0E96AC743B656 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
14:39:24.0896 3076 rdyboost - ok
14:39:24.0928 3076 [ 7B5E1419717FAC363A31CC302895217A ] RemoteAccess C:\Windows\System32\mprdim.dll
14:39:24.0928 3076 RemoteAccess - ok
14:39:24.0959 3076 [ CB9A8683F4EF2BF99E123D79950D7935 ] RemoteRegistry C:\Windows\system32\regsvc.dll
14:39:24.0959 3076 RemoteRegistry - ok
14:39:24.0990 3076 [ 78D072F35BC45D9E4E1B61895C152234 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
14:39:24.0990 3076 RpcEptMapper - ok
14:39:25.0006 3076 [ 94D36C0E44677DD26981D2BFEEF2A29D ] RpcLocator C:\Windows\system32\locator.exe
14:39:25.0006 3076 RpcLocator - ok
14:39:25.0037 3076 [ 7660F01D3B38ACA1747E397D21D790AF ] RpcSs C:\Windows\system32\rpcss.dll
14:39:25.0037 3076 RpcSs - ok
14:39:25.0084 3076 [ 032B0D36AD92B582D869879F5AF5B928 ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
14:39:25.0084 3076 rspndr - ok
14:39:25.0115 3076 [ 79C8488DFA2AA377441645123CB73845 ] RTHDMIAzAudService C:\Windows\system32\drivers\RtHDMIV.sys
14:39:25.0130 3076 RTHDMIAzAudService - ok
14:39:25.0162 3076 [ 9CE8DEFFAFFCCBF473015D76AE8EE514 ] RTL8192su C:\Windows\system32\DRIVERS\RTL8192su.sys
14:39:25.0177 3076 RTL8192su - ok
14:39:25.0193 3076 [ 7FA7F2E249A5DCBB7970630E15E1F482 ] s3cap C:\Windows\system32\drivers\vms3cap.sys
14:39:25.0208 3076 s3cap - ok
14:39:25.0224 3076 [ 81951F51E318AECC2D68559E47485CC4 ] SamSs C:\Windows\system32\lsass.exe
14:39:25.0224 3076 SamSs - ok
14:39:25.0255 3076 [ 05D860DA1040F111503AC416CCEF2BCA ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
14:39:25.0255 3076 sbp2port - ok
14:39:25.0271 3076 [ 8FC518FFE9519C2631D37515A68009C4 ] SCardSvr C:\Windows\System32\SCardSvr.dll
14:39:25.0286 3076 SCardSvr - ok
14:39:25.0302 3076 [ 0693B5EC673E34DC147E195779A4DCF6 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
14:39:25.0302 3076 scfilter - ok
14:39:25.0333 3076 [ A04BB13F8A72F8B6E8B4071723E4E336 ] Schedule C:\Windows\system32\schedsvc.dll
14:39:25.0333 3076 Schedule - ok
14:39:25.0364 3076 [ 319C6B309773D063541D01DF8AC6F55F ] SCPolicySvc C:\Windows\System32\certprop.dll
14:39:25.0364 3076 SCPolicySvc - ok
14:39:25.0380 3076 [ 08236C4BCE5EDD0A0318A438AF28E0F7 ] SDRSVC C:\Windows\System32\SDRSVC.dll
14:39:25.0380 3076 SDRSVC - ok
14:39:25.0411 3076 [ 90A3935D05B494A5A39D37E71F09A677 ] secdrv C:\Windows\system32\drivers\secdrv.sys
14:39:25.0411 3076 secdrv - ok
14:39:25.0427 3076 [ A59B3A4442C52060CC7A85293AA3546F ] seclogon C:\Windows\system32\seclogon.dll
14:39:25.0442 3076 seclogon - ok
14:39:25.0458 3076 [ DCB7FCDCC97F87360F75D77425B81737 ] SENS C:\Windows\System32\sens.dll
14:39:25.0474 3076 SENS - ok
14:39:25.0505 3076 [ 50087FE1EE447009C9CC2997B90DE53F ] SensrSvc C:\Windows\system32\sensrsvc.dll
14:39:25.0505 3076 SensrSvc - ok
14:39:25.0536 3076 [ 9AD8B8B515E3DF6ACD4212EF465DE2D1 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
14:39:25.0536 3076 Serenum - ok
14:39:25.0552 3076 [ 5FB7FCEA0490D821F26F39CC5EA3D1E2 ] Serial C:\Windows\system32\DRIVERS\serial.sys
14:39:25.0567 3076 Serial - ok
14:39:25.0583 3076 [ 79BFFB520327FF916A582DFEA17AA813 ] sermouse C:\Windows\system32\drivers\sermouse.sys
14:39:25.0583 3076 sermouse - ok
14:39:25.0630 3076 [ 4AE380F39A0032EAB7DD953030B26D28 ] SessionEnv C:\Windows\system32\sessenv.dll
14:39:25.0630 3076 SessionEnv - ok
14:39:25.0645 3076 [ 9F976E1EB233DF46FCE808D9DEA3EB9C ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
14:39:25.0645 3076 sffdisk - ok
14:39:25.0676 3076 [ 932A68EE27833CFD57C1639D375F2731 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
14:39:25.0676 3076 sffp_mmc - ok
14:39:25.0692 3076 [ 6D4CCAEDC018F1CF52866BBBAA235982 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
14:39:25.0708 3076 sffp_sd - ok
14:39:25.0723 3076 [ DB96666CC8312EBC45032F30B007A547 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
14:39:25.0723 3076 sfloppy - ok
14:39:25.0754 3076 [ D1A079A0DE2EA524513B6930C24527A2 ] SharedAccess C:\Windows\System32\ipnathlp.dll
14:39:25.0770 3076 SharedAccess - ok
14:39:25.0786 3076 [ 414DA952A35BF5D50192E28263B40577 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
14:39:25.0786 3076 ShellHWDetection - ok
14:39:25.0817 3076 [ 2565CAC0DC9FE0371BDCE60832582B2E ] sisagp C:\Windows\system32\drivers\sisagp.sys
14:39:25.0817 3076 sisagp - ok
14:39:25.0864 3076 [ A9F0486851BECB6DDA1D89D381E71055 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys
14:39:25.0864 3076 SiSRaid2 - ok
14:39:25.0910 3076 [ 3727097B55738E2F554972C3BE5BC1AA ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
14:39:25.0910 3076 SiSRaid4 - ok
14:39:26.0020 3076 [ 3740B83AEC21D981065D7E819BD7E878 ] Skype C2C Service C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
14:39:26.0082 3076 Skype C2C Service - ok
14:39:26.0160 3076 [ A4FAB5F7818A69DA6E740943CB8F7CA9 ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe
14:39:26.0160 3076 SkypeUpdate - ok
14:39:26.0191 3076 [ 3E21C083B8A01CB70BA1F09303010FCE ] Smb C:\Windows\system32\DRIVERS\smb.sys
14:39:26.0191 3076 Smb - ok
14:39:26.0254 3076 [ 6A984831644ECA1A33FFEAE4126F4F37 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
14:39:26.0254 3076 SNMPTRAP - ok
14:39:26.0285 3076 [ 95CF1AE7527FB70F7816563CBC09D942 ] spldr C:\Windows\system32\drivers\spldr.sys
14:39:26.0300 3076 spldr - ok
14:39:26.0332 3076 [ 9AEA093B8F9C37CF45538382CABA2475 ] Spooler C:\Windows\System32\spoolsv.exe
14:39:26.0332 3076 Spooler - ok
14:39:26.0410 3076 [ CF87A1DE791347E75B98885214CED2B8 ] sppsvc C:\Windows\system32\sppsvc.exe
14:39:26.0472 3076 sppsvc - ok
14:39:26.0488 3076 [ B0180B20B065D89232A78A40FE56EAA6 ] sppuinotify C:\Windows\system32\sppuinotify.dll
14:39:26.0488 3076 sppuinotify - ok
14:39:26.0519 3076 [ E4C2764065D66EA1D2D3EBC28FE99C46 ] srv C:\Windows\system32\DRIVERS\srv.sys
14:39:26.0534 3076 srv - ok
14:39:26.0550 3076 [ 03F0545BD8D4C77FA0AE1CEEDFCC71AB ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
14:39:26.0566 3076 srv2 - ok
14:39:26.0581 3076 [ BE6BD660CAA6F291AE06A718A4FA8ABC ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
14:39:26.0581 3076 srvnet - ok
14:39:26.0612 3076 [ D887C9FD02AC9FA880F6E5027A43E118 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
14:39:26.0628 3076 SSDPSRV - ok
14:39:26.0644 3076 [ D318F23BE45D5E3A107469EB64815B50 ] SstpSvc C:\Windows\system32\sstpsvc.dll
14:39:26.0644 3076 SstpSvc - ok
14:39:26.0675 3076 Steam Client Service - ok
14:39:26.0706 3076 [ DB32D325C192B801DF274BFD12A7E72B ] stexstor C:\Windows\system32\drivers\stexstor.sys
14:39:26.0706 3076 stexstor - ok
14:39:26.0737 3076 [ E1FB3706030FB4578A0D72C2FC3689E4 ] StiSvc C:\Windows\System32\wiaservc.dll
14:39:26.0753 3076 StiSvc - ok
14:39:26.0768 3076 [ 472AF0311073DCECEAA8FA18BA2BDF89 ] storflt C:\Windows\system32\drivers\vmstorfl.sys
14:39:26.0768 3076 storflt - ok
14:39:26.0800 3076 [ DCAFFD62259E0BDB433DD67B5BB37619 ] storvsc C:\Windows\system32\drivers\storvsc.sys
14:39:26.0800 3076 storvsc - ok
14:39:26.0846 3076 [ E58C78A848ADD9610A4DB6D214AF5224 ] swenum C:\Windows\system32\DRIVERS\swenum.sys
14:39:26.0862 3076 swenum - ok
14:39:26.0893 3076 [ A28BD92DF340E57B024BA433165D34D7 ] swprv C:\Windows\System32\swprv.dll
14:39:26.0893 3076 swprv - ok
14:39:26.0924 3076 [ F2AD8960812FD111E20E84659EF19D43 ] Synth3dVsc C:\Windows\system32\drivers\synth3dvsc.sys
14:39:26.0924 3076 Synth3dVsc - ok
14:39:26.0987 3076 [ 36650D618CA34C9D357DFD3D89B2C56F ] SysMain C:\Windows\system32\sysmain.dll
14:39:27.0018 3076 SysMain - ok
14:39:27.0034 3076 [ 763FECDC3D30C815FE72DD57936C6CD1 ] TabletInputService C:\Windows\System32\TabSvc.dll
14:39:27.0034 3076 TabletInputService - ok
14:39:27.0065 3076 [ 613BF4820361543956909043A265C6AC ] TapiSrv C:\Windows\System32\tapisrv.dll
14:39:27.0080 3076 TapiSrv - ok
14:39:27.0096 3076 [ B799D9FDB26111737F58288D8DC172D9 ] TBS C:\Windows\System32\tbssvc.dll
14:39:27.0096 3076 TBS - ok
14:39:27.0143 3076 [ A5EBB8F648000E88B7D9390B514976BF ] Tcpip C:\Windows\system32\drivers\tcpip.sys
14:39:27.0190 3076 Tcpip - ok
14:39:27.0236 3076 [ A5EBB8F648000E88B7D9390B514976BF ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
14:39:27.0236 3076 TCPIP6 - ok
14:39:27.0268 3076 [ CCA24162E055C3714CE5A88B100C64ED ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
14:39:27.0268 3076 tcpipreg - ok
14:39:27.0299 3076 [ 1CB91B2BD8F6DD367DFC2EF26FD751B2 ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
14:39:27.0299 3076 TDPIPE - ok
14:39:27.0330 3076 [ 2C2C5AFE7EE4F620D69C23C0617651A8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
14:39:27.0330 3076 TDTCP - ok
14:39:27.0346 3076 [ B459575348C20E8121D6039DA063C704 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
14:39:27.0346 3076 tdx - ok
14:39:27.0377 3076 [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
14:39:27.0377 3076 TermDD - ok
14:39:27.0392 3076 [ 052306FD76793D5D5AB5D9891FD1ADBB ] terminpt C:\Windows\system32\drivers\terminpt.sys
14:39:27.0408 3076 terminpt - ok
14:39:27.0439 3076 [ 382C804C92811BE57829D8E550A900E2 ] TermService C:\Windows\System32\termsrv.dll
14:39:27.0439 3076 TermService - ok
14:39:27.0470 3076 [ 42FB6AFD6B79D9FE07381609172E7CA4 ] Themes C:\Windows\system32\themeservice.dll
14:39:27.0470 3076 Themes - ok
14:39:27.0486 3076 [ 146B6F43A673379A3C670E86D89BE5EA ] THREADORDER C:\Windows\system32\mmcss.dll
14:39:27.0486 3076 THREADORDER - ok
14:39:27.0517 3076 [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A ] TrkWks C:\Windows\System32\trkwks.dll
14:39:27.0517 3076 TrkWks - ok
14:39:27.0564 3076 [ 2C49B175AEE1D4364B91B531417FE583 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
14:39:27.0580 3076 TrustedInstaller - ok
14:39:27.0595 3076 [ 254BB140EEE3C59D6114C1A86B636877 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
14:39:27.0595 3076 tssecsrv - ok
14:39:27.0626 3076 [ FD1D6C73E6333BE727CBCC6054247654 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
14:39:27.0626 3076 TsUsbFlt - ok
14:39:27.0658 3076 [ 01246F0BAAD7B68EC0F472AA41E33282 ] TsUsbGD C:\Windows\system32\drivers\TsUsbGD.sys
14:39:27.0658 3076 TsUsbGD - ok
14:39:27.0689 3076 [ 045ACB987C650D8186C6B4A692223860 ] tsusbhub C:\Windows\system32\drivers\tsusbhub.sys
14:39:27.0704 3076 tsusbhub - ok
14:39:27.0736 3076 [ B2FA25D9B17A68BB93D58B0556E8C90D ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
14:39:27.0736 3076 tunnel - ok
14:39:27.0767 3076 [ 750FBCB269F4D7DD2E420C56B795DB6D ] uagp35 C:\Windows\system32\drivers\uagp35.sys
14:39:27.0767 3076 uagp35 - ok
14:39:27.0798 3076 [ EE43346C7E4B5E63E54F927BABBB32FF ] udfs C:\Windows\system32\DRIVERS\udfs.sys
14:39:27.0798 3076 udfs - ok
14:39:27.0860 3076 [ 8344FD4FCE927880AA1AA7681D4927E5 ] UI0Detect C:\Windows\system32\UI0Detect.exe
14:39:27.0860 3076 UI0Detect - ok
14:39:27.0876 3076 [ 44E8048ACE47BEFBFDC2E9BE4CBC8880 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
14:39:27.0892 3076 uliagpkx - ok
14:39:27.0923 3076 [ D295BED4B898F0FD999FCFA9B32B071B ] umbus C:\Windows\system32\DRIVERS\umbus.sys
14:39:27.0923 3076 umbus - ok
14:39:27.0938 3076 [ 7550AD0C6998BA1CB4843E920EE0FEAC ] UmPass C:\Windows\system32\drivers\umpass.sys
14:39:27.0954 3076 UmPass - ok
14:39:27.0970 3076 [ 409994A8EACEEE4E328749C0353527A0 ] UmRdpService C:\Windows\System32\umrdp.dll
14:39:27.0985 3076 UmRdpService - ok
14:39:28.0001 3076 [ 833FBB672460EFCE8011D262175FAD33 ] upnphost C:\Windows\System32\upnphost.dll
14:39:28.0016 3076 upnphost - ok
14:39:28.0079 3076 [ 1D9F2BD026E8E2D45033A4DF3F16B78C ] usbaudio C:\Windows\system32\drivers\usbaudio.sys
14:39:28.0079 3076 usbaudio - ok
14:39:28.0094 3076 [ BD9C55D7023C5DE374507ACC7A14E2AC ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
14:39:28.0110 3076 usbccgp - ok
14:39:28.0141 3076 [ 04EC7CEC62EC3B6D9354EEE93327FC82 ] usbcir C:\Windows\system32\drivers\usbcir.sys
14:39:28.0141 3076 usbcir - ok
14:39:28.0172 3076 [ F92DE757E4B7CE9C07C5E65423F3AE3B ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
14:39:28.0172 3076 usbehci - ok
14:39:28.0204 3076 [ 8DC94AEC6A7E644A06135AE7506DC2E9 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
14:39:28.0219 3076 usbhub - ok
14:39:28.0235 3076 [ E185D44FAC515A18D9DEDDC23C2CDF44 ] usbohci C:\Windows\system32\DRIVERS\usbohci.sys
14:39:28.0235 3076 usbohci - ok
14:39:28.0266 3076 [ 797D862FE0875E75C7CC4C1AD7B30252 ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
14:39:28.0266 3076 usbprint - ok
14:39:28.0297 3076 [ 576096CCBC07E7C4EA4F5E6686D6888F ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys
14:39:28.0297 3076 usbscan - ok
14:39:28.0313 3076 [ F991AB9CC6B908DB552166768176896A ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
14:39:28.0328 3076 USBSTOR - ok
14:39:28.0328 3076 [ 68DF884CF41CDADA664BEB01DAF67E3D ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
14:39:28.0344 3076 usbuhci - ok
14:39:28.0391 3076 [ 45F4E7BF43DB40A6C6B4D92C76CBC3F2 ] usbvideo C:\Windows\system32\Drivers\usbvideo.sys
14:39:28.0406 3076 usbvideo - ok
14:39:28.0422 3076 [ 081E6E1C91AEC36758902A9F727CD23C ] UxSms C:\Windows\System32\uxsms.dll
14:39:28.0422 3076 UxSms - ok
14:39:28.0438 3076 [ 81951F51E318AECC2D68559E47485CC4 ] VaultSvc C:\Windows\system32\lsass.exe
14:39:28.0453 3076 VaultSvc - ok
14:39:28.0469 3076 [ A059C4C3EDB09E07D21A8E5C0AABD3CB ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
14:39:28.0469 3076 vdrvroot - ok
14:39:28.0500 3076 [ C3CD30495687C2A2F66A65CA6FD89BE9 ] vds C:\Windows\System32\vds.exe
14:39:28.0516 3076 vds - ok
14:39:28.0531 3076 [ 17C408214EA61696CEC9C66E388B14F3 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
14:39:28.0531 3076 vga - ok
14:39:28.0562 3076 [ 8E38096AD5C8570A6F1570A61E251561 ] VgaSave C:\Windows\System32\drivers\vga.sys
14:39:28.0562 3076 VgaSave - ok
14:39:28.0578 3076 VGPU - ok
14:39:28.0594 3076 [ 5461686CCA2FDA57B024547733AB42E3 ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
14:39:28.0594 3076 vhdmp - ok
14:39:28.0625 3076 [ C829317A37B4BEA8F39735D4B076E923 ] viaagp C:\Windows\system32\drivers\viaagp.sys
14:39:28.0640 3076 viaagp - ok
14:39:28.0656 3076 [ E02F079A6AA107F06B16549C6E5C7B74 ] ViaC7 C:\Windows\system32\drivers\viac7.sys
14:39:28.0656 3076 ViaC7 - ok
14:39:28.0672 3076 [ E43574F6A56A0EE11809B48C09E4FD3C ] viaide C:\Windows\system32\drivers\viaide.sys
14:39:28.0687 3076 viaide - ok
14:39:28.0703 3076 [ C2F2911156FDC7817C52829C86DA494E ] vmbus C:\Windows\system32\drivers\vmbus.sys
14:39:28.0718 3076 vmbus - ok
14:39:28.0734 3076 [ D4D77455211E204F370D08F4963063CE ] VMBusHID C:\Windows\system32\drivers\VMBusHID.sys
14:39:28.0734 3076 VMBusHID - ok
14:39:28.0750 3076 [ 4C63E00F2F4B5F86AB48A58CD990F212 ] volmgr C:\Windows\system32\drivers\volmgr.sys
14:39:28.0750 3076 volmgr - ok
14:39:28.0781 3076 [ B5BB72067DDDDBBFB04B2F89FF8C3C87 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
14:39:28.0781 3076 volmgrx - ok
14:39:28.0812 3076 [ F497F67932C6FA693D7DE2780631CFE7 ] volsnap C:\Windows\system32\drivers\volsnap.sys
14:39:28.0812 3076 volsnap - ok
14:39:28.0843 3076 [ 9DFA0CC2F8855A04816729651175B631 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
14:39:28.0843 3076 vsmraid - ok
14:39:28.0890 3076 [ 209A3B1901B83AEB8527ED211CCE9E4C ] VSS C:\Windows\system32\vssvc.exe
14:39:28.0921 3076 VSS - ok
14:39:28.0921 3076 [ 90567B1E658001E79D7C8BBD3DDE5AA6 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys
14:39:28.0921 3076 vwifibus - ok
14:39:28.0968 3076 [ 7090D3436EEB4E7DA3373090A23448F7 ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys
14:39:28.0968 3076 vwififlt - ok
14:39:28.0984 3076 [ 55187FD710E27D5095D10A472C8BAF1C ] W32Time C:\Windows\system32\w32time.dll
14:39:28.0999 3076 W32Time - ok
14:39:29.0015 3076 [ DE3721E89C653AA281428C8A69745D90 ] WacomPen C:\Windows\system32\drivers\wacompen.sys
14:39:29.0030 3076 WacomPen - ok
14:39:29.0062 3076 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
14:39:29.0062 3076 WANARP - ok
14:39:29.0077 3076 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
14:39:29.0077 3076 Wanarpv6 - ok
14:39:29.0124 3076 [ 353A04C273EC58475D8633E75CCD5604 ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
14:39:29.0155 3076 WatAdminSvc - ok
14:39:29.0202 3076 [ 691E3285E53DCA558E1A84667F13E15A ] wbengine C:\Windows\system32\wbengine.exe
14:39:29.0233 3076 wbengine - ok
Re: Win7 Checker.exe
Konec TDDSKiller Log:
14:39:29.0249 3076 [ 9614B5D29DC76AC3C29F6D2D3AA70E67 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
14:39:29.0249 3076 WbioSrvc - ok
14:39:29.0280 3076 [ 34EEE0DFAADB4F691D6D5308A51315DC ] wcncsvc C:\Windows\System32\wcncsvc.dll
14:39:29.0280 3076 wcncsvc - ok
14:39:29.0311 3076 [ 5D930B6357A6D2AF4D7653BDABBF352F ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
14:39:29.0311 3076 WcsPlugInService - ok
14:39:29.0327 3076 [ 1112A9BADACB47B7C0BB0392E3158DFF ] Wd C:\Windows\system32\drivers\wd.sys
14:39:29.0342 3076 Wd - ok
14:39:29.0374 3076 [ 9950E3D0F08141C7E89E64456AE7DC73 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
14:39:29.0374 3076 Wdf01000 - ok
14:39:29.0405 3076 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiServiceHost C:\Windows\system32\wdi.dll
14:39:29.0405 3076 WdiServiceHost - ok
14:39:29.0420 3076 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiSystemHost C:\Windows\system32\wdi.dll
14:39:29.0420 3076 WdiSystemHost - ok
14:39:29.0452 3076 [ A9D880F97530D5B8FEE278923349929D ] WebClient C:\Windows\System32\webclnt.dll
14:39:29.0452 3076 WebClient - ok
14:39:29.0483 3076 [ 760F0AFE937A77CFF27153206534F275 ] Wecsvc C:\Windows\system32\wecsvc.dll
14:39:29.0498 3076 Wecsvc - ok
14:39:29.0514 3076 [ AC804569BB2364FB6017370258A4091B ] wercplsupport C:\Windows\System32\wercplsupport.dll
14:39:29.0514 3076 wercplsupport - ok
14:39:29.0545 3076 [ 08E420D873E4FD85241EE2421B02C4A4 ] WerSvc C:\Windows\System32\WerSvc.dll
14:39:29.0545 3076 WerSvc - ok
14:39:29.0592 3076 [ 8B9A943F3B53861F2BFAF6C186168F79 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
14:39:29.0592 3076 WfpLwf - ok
14:39:29.0608 3076 [ 5CF95B35E59E2A38023836FFF31BE64C ] WIMMount C:\Windows\system32\drivers\wimmount.sys
14:39:29.0608 3076 WIMMount - ok
14:39:29.0654 3076 [ 3FAE8F94296001C32EAB62CD7D82E0FD ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll
14:39:29.0670 3076 WinDefend - ok
14:39:29.0686 3076 WinHttpAutoProxySvc - ok
14:39:29.0732 3076 [ F62E510B6AD4C21EB9FE8668ED251826 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
14:39:29.0732 3076 Winmgmt - ok
14:39:29.0779 3076 WinRing0_1_2_0 - ok
14:39:29.0826 3076 [ 1B91CD34EA3A90AB6A4EF0550174F4CC ] WinRM C:\Windows\system32\WsmSvc.dll
14:39:29.0857 3076 WinRM - ok
14:39:29.0904 3076 [ 16935C98FF639D185086A3529B1F2067 ] Wlansvc C:\Windows\System32\wlansvc.dll
14:39:29.0920 3076 Wlansvc - ok
14:39:30.0013 3076 [ 5E7C103F8475C4289847D15E129C20F7 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
14:39:30.0029 3076 wlidsvc - ok
14:39:30.0044 3076 [ 0217679B8FCA58714C3BF2726D2CA84E ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
14:39:30.0044 3076 WmiAcpi - ok
14:39:30.0091 3076 [ 6EB6B66517B048D87DC1856DDF1F4C3F ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
14:39:30.0091 3076 wmiApSrv - ok
14:39:30.0154 3076 [ 3B40D3A61AA8C21B88AE57C58AB3122E ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
14:39:30.0169 3076 WMPNetworkSvc - ok
14:39:30.0200 3076 [ A2F0EC770A92F2B3F9DE6D518E11409C ] WPCSvc C:\Windows\System32\wpcsvc.dll
14:39:30.0200 3076 WPCSvc - ok
14:39:30.0232 3076 [ AA53356D60AF47EACC85BC617A4F3F66 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
14:39:30.0232 3076 WPDBusEnum - ok
14:39:30.0263 3076 [ 6DB3276587B853BF886B69528FDB048C ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
14:39:30.0263 3076 ws2ifsl - ok
14:39:30.0278 3076 [ 6F5D49EFE0E7164E03AE773A3FE25340 ] wscsvc C:\Windows\System32\wscsvc.dll
14:39:30.0278 3076 wscsvc - ok
14:39:30.0294 3076 WSearch - ok
14:39:30.0372 3076 [ FC3EC24FCE372C89423E015A2AC1A31E ] wuauserv C:\Windows\system32\wuaueng.dll
14:39:30.0403 3076 wuauserv - ok
14:39:30.0434 3076 [ E714A1C0354636837E20CCBF00888EE7 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
14:39:30.0434 3076 WudfPf - ok
14:39:30.0466 3076 [ 1023EE888C9B47178C5293ED5336AB69 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
14:39:30.0466 3076 WUDFRd - ok
14:39:30.0497 3076 [ 8D1E1E529A2C9E9B6A85B55A345F7629 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
14:39:30.0512 3076 wudfsvc - ok
14:39:30.0528 3076 [ FF2D745B560F7C71B31F30F4D49F73D2 ] WwanSvc C:\Windows\System32\wwansvc.dll
14:39:30.0544 3076 WwanSvc - ok
14:39:30.0559 3076 ================ Scan global ===============================
14:39:30.0590 3076 [ DAB748AE0439955ED2FA22357533DDDB ] C:\Windows\system32\basesrv.dll
14:39:30.0622 3076 [ 48CB4FDBCAAEAC7BCE2F5941545FF071 ] C:\Windows\system32\winsrv.dll
14:39:30.0637 3076 [ 48CB4FDBCAAEAC7BCE2F5941545FF071 ] C:\Windows\system32\winsrv.dll
14:39:30.0668 3076 [ 364455805E64882844EE9ACB72522830 ] C:\Windows\system32\sxssrv.dll
14:39:30.0684 3076 [ 5F1B6A9C35D3D5CA72D6D6FDEF9747D6 ] C:\Windows\system32\services.exe
14:39:30.0700 3076 [Global] - ok
14:39:30.0700 3076 ================ Scan MBR ==================================
14:39:30.0715 3076 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
14:39:31.0168 3076 \Device\Harddisk0\DR0 - ok
14:39:31.0168 3076 ================ Scan VBR ==================================
14:39:31.0183 3076 [ 5FE04127C0F117CC5C2111FCB0C8BF7E ] \Device\Harddisk0\DR0\Partition1
14:39:31.0183 3076 \Device\Harddisk0\DR0\Partition1 - ok
14:39:31.0199 3076 [ 3D16E8EA2614EC8349C4F39AE0C2D14E ] \Device\Harddisk0\DR0\Partition2
14:39:31.0199 3076 \Device\Harddisk0\DR0\Partition2 - ok
14:39:31.0214 3076 ============================================================
14:39:31.0214 3076 Scan finished
14:39:31.0214 3076 ============================================================
14:39:31.0230 4092 Detected object count: 0
14:39:31.0230 4092 Actual detected object count: 0
14:39:29.0249 3076 [ 9614B5D29DC76AC3C29F6D2D3AA70E67 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
14:39:29.0249 3076 WbioSrvc - ok
14:39:29.0280 3076 [ 34EEE0DFAADB4F691D6D5308A51315DC ] wcncsvc C:\Windows\System32\wcncsvc.dll
14:39:29.0280 3076 wcncsvc - ok
14:39:29.0311 3076 [ 5D930B6357A6D2AF4D7653BDABBF352F ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
14:39:29.0311 3076 WcsPlugInService - ok
14:39:29.0327 3076 [ 1112A9BADACB47B7C0BB0392E3158DFF ] Wd C:\Windows\system32\drivers\wd.sys
14:39:29.0342 3076 Wd - ok
14:39:29.0374 3076 [ 9950E3D0F08141C7E89E64456AE7DC73 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
14:39:29.0374 3076 Wdf01000 - ok
14:39:29.0405 3076 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiServiceHost C:\Windows\system32\wdi.dll
14:39:29.0405 3076 WdiServiceHost - ok
14:39:29.0420 3076 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiSystemHost C:\Windows\system32\wdi.dll
14:39:29.0420 3076 WdiSystemHost - ok
14:39:29.0452 3076 [ A9D880F97530D5B8FEE278923349929D ] WebClient C:\Windows\System32\webclnt.dll
14:39:29.0452 3076 WebClient - ok
14:39:29.0483 3076 [ 760F0AFE937A77CFF27153206534F275 ] Wecsvc C:\Windows\system32\wecsvc.dll
14:39:29.0498 3076 Wecsvc - ok
14:39:29.0514 3076 [ AC804569BB2364FB6017370258A4091B ] wercplsupport C:\Windows\System32\wercplsupport.dll
14:39:29.0514 3076 wercplsupport - ok
14:39:29.0545 3076 [ 08E420D873E4FD85241EE2421B02C4A4 ] WerSvc C:\Windows\System32\WerSvc.dll
14:39:29.0545 3076 WerSvc - ok
14:39:29.0592 3076 [ 8B9A943F3B53861F2BFAF6C186168F79 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
14:39:29.0592 3076 WfpLwf - ok
14:39:29.0608 3076 [ 5CF95B35E59E2A38023836FFF31BE64C ] WIMMount C:\Windows\system32\drivers\wimmount.sys
14:39:29.0608 3076 WIMMount - ok
14:39:29.0654 3076 [ 3FAE8F94296001C32EAB62CD7D82E0FD ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll
14:39:29.0670 3076 WinDefend - ok
14:39:29.0686 3076 WinHttpAutoProxySvc - ok
14:39:29.0732 3076 [ F62E510B6AD4C21EB9FE8668ED251826 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
14:39:29.0732 3076 Winmgmt - ok
14:39:29.0779 3076 WinRing0_1_2_0 - ok
14:39:29.0826 3076 [ 1B91CD34EA3A90AB6A4EF0550174F4CC ] WinRM C:\Windows\system32\WsmSvc.dll
14:39:29.0857 3076 WinRM - ok
14:39:29.0904 3076 [ 16935C98FF639D185086A3529B1F2067 ] Wlansvc C:\Windows\System32\wlansvc.dll
14:39:29.0920 3076 Wlansvc - ok
14:39:30.0013 3076 [ 5E7C103F8475C4289847D15E129C20F7 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
14:39:30.0029 3076 wlidsvc - ok
14:39:30.0044 3076 [ 0217679B8FCA58714C3BF2726D2CA84E ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
14:39:30.0044 3076 WmiAcpi - ok
14:39:30.0091 3076 [ 6EB6B66517B048D87DC1856DDF1F4C3F ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
14:39:30.0091 3076 wmiApSrv - ok
14:39:30.0154 3076 [ 3B40D3A61AA8C21B88AE57C58AB3122E ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
14:39:30.0169 3076 WMPNetworkSvc - ok
14:39:30.0200 3076 [ A2F0EC770A92F2B3F9DE6D518E11409C ] WPCSvc C:\Windows\System32\wpcsvc.dll
14:39:30.0200 3076 WPCSvc - ok
14:39:30.0232 3076 [ AA53356D60AF47EACC85BC617A4F3F66 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
14:39:30.0232 3076 WPDBusEnum - ok
14:39:30.0263 3076 [ 6DB3276587B853BF886B69528FDB048C ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
14:39:30.0263 3076 ws2ifsl - ok
14:39:30.0278 3076 [ 6F5D49EFE0E7164E03AE773A3FE25340 ] wscsvc C:\Windows\System32\wscsvc.dll
14:39:30.0278 3076 wscsvc - ok
14:39:30.0294 3076 WSearch - ok
14:39:30.0372 3076 [ FC3EC24FCE372C89423E015A2AC1A31E ] wuauserv C:\Windows\system32\wuaueng.dll
14:39:30.0403 3076 wuauserv - ok
14:39:30.0434 3076 [ E714A1C0354636837E20CCBF00888EE7 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
14:39:30.0434 3076 WudfPf - ok
14:39:30.0466 3076 [ 1023EE888C9B47178C5293ED5336AB69 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
14:39:30.0466 3076 WUDFRd - ok
14:39:30.0497 3076 [ 8D1E1E529A2C9E9B6A85B55A345F7629 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
14:39:30.0512 3076 wudfsvc - ok
14:39:30.0528 3076 [ FF2D745B560F7C71B31F30F4D49F73D2 ] WwanSvc C:\Windows\System32\wwansvc.dll
14:39:30.0544 3076 WwanSvc - ok
14:39:30.0559 3076 ================ Scan global ===============================
14:39:30.0590 3076 [ DAB748AE0439955ED2FA22357533DDDB ] C:\Windows\system32\basesrv.dll
14:39:30.0622 3076 [ 48CB4FDBCAAEAC7BCE2F5941545FF071 ] C:\Windows\system32\winsrv.dll
14:39:30.0637 3076 [ 48CB4FDBCAAEAC7BCE2F5941545FF071 ] C:\Windows\system32\winsrv.dll
14:39:30.0668 3076 [ 364455805E64882844EE9ACB72522830 ] C:\Windows\system32\sxssrv.dll
14:39:30.0684 3076 [ 5F1B6A9C35D3D5CA72D6D6FDEF9747D6 ] C:\Windows\system32\services.exe
14:39:30.0700 3076 [Global] - ok
14:39:30.0700 3076 ================ Scan MBR ==================================
14:39:30.0715 3076 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
14:39:31.0168 3076 \Device\Harddisk0\DR0 - ok
14:39:31.0168 3076 ================ Scan VBR ==================================
14:39:31.0183 3076 [ 5FE04127C0F117CC5C2111FCB0C8BF7E ] \Device\Harddisk0\DR0\Partition1
14:39:31.0183 3076 \Device\Harddisk0\DR0\Partition1 - ok
14:39:31.0199 3076 [ 3D16E8EA2614EC8349C4F39AE0C2D14E ] \Device\Harddisk0\DR0\Partition2
14:39:31.0199 3076 \Device\Harddisk0\DR0\Partition2 - ok
14:39:31.0214 3076 ============================================================
14:39:31.0214 3076 Scan finished
14:39:31.0214 3076 ============================================================
14:39:31.0230 4092 Detected object count: 0
14:39:31.0230 4092 Actual detected object count: 0
Re: Win7 Checker.exe
ComboFix Log:
ComboFix 12-12-04.01 - uzivatel 07.12.2012 15:17:20.2.1 - x86
Microsoft Windows 7 Ultimate 6.1.7601.1.1250.420.1029.18.2047.1140 [GMT 1:00]
Spuštěný z: c:\users\uzivatel\Desktop\ComboFix.exe
AV: ESET Smart Security 5.2 *Enabled/Updated* {77DEAFED-8149-104B-25A1-21771CA47CD1}
FW: ESET personal firewall *Enabled* {4FE52EC8-CB26-1113-0EFE-8842E2773BAA}
SP: ESET Smart Security 5.2 *Enabled/Updated* {CCBF4E09-A773-1FC5-1F11-1A056723366C}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Rezidentní štít AV je zapnutý
.
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\temp\catchme.dll
.
---- Předchozí spuštění -------
.
c:\program files\Complitly
c:\program files\Complitly\FireFoxExtensionWithFF8Fix.exe
c:\program files\Complitly\FireFoxUninstaller.exe
c:\program files\Complitly\chrome\ComplitlyChrome.crx
c:\program files\Complitly\InstTracker.exe
c:\program files\Complitly\support@Complitly.com\defaults\preferences\predictad.js
c:\program files\Complitly\support@Complitly.com\chrome.manifest
c:\program files\Complitly\support@Complitly.com\chrome\content\appIcon.png
c:\program files\Complitly\support@Complitly.com\chrome\content\browserOverlay.xul
c:\program files\Complitly\support@Complitly.com\chrome\content\options.js
c:\program files\Complitly\support@Complitly.com\chrome\content\options.xul
c:\program files\Complitly\support@Complitly.com\chrome\content\utils.js
c:\program files\Complitly\support@Complitly.com\install.rdf
c:\program files\Complitly\System.Data.SQLite.dll
c:\program files\Complitly\unins000.dat
c:\program files\Complitly\unins000.exe
c:\program files\Xilisoft Download Youtube Toolbar\tbHElper.dll
c:\temp\catchme.dll
c:\users\uzivatel\AppData\Roaming\185C.exe
c:\users\uzivatel\AppData\Roaming\44E4.exe
c:\users\uzivatel\AppData\Roaming\54B6.exe
c:\users\uzivatel\AppData\Roaming\8E9B.exe
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-11-07 do 2012-12-07 )))))))))))))))))))))))))))))))
.
.
2012-12-07 14:31 . 2012-12-07 14:31 -------- d-----w- c:\users\uzivatel\AppData\Local\temp
2012-12-07 14:31 . 2012-12-07 14:31 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-12-06 20:24 . 2012-12-06 20:24 -------- d-----w- c:\users\uzivatel\AppData\Roaming\Malwarebytes
2012-12-06 20:24 . 2012-12-06 20:24 -------- d-----w- c:\programdata\Malwarebytes
2012-12-06 20:24 . 2012-12-06 20:24 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2012-12-06 20:24 . 2012-09-29 18:54 22856 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-12-06 17:19 . 2012-12-06 17:19 388096 ----a-r- c:\users\uzivatel\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2012-12-06 17:19 . 2012-12-06 17:19 -------- d-----w- c:\program files\Trend Micro
2012-12-06 16:38 . 2012-12-06 16:38 -------- d-----w- c:\program files\Adobe Download Assistant
2012-12-06 14:55 . 2012-12-06 14:55 -------- d-----w- c:\programdata\YTD Video Downloader
2012-12-06 14:54 . 2012-12-06 14:54 -------- d-----w- c:\program files\GreenTree Applications
2012-12-06 14:47 . 2012-12-06 14:47 -------- d-----w- C:\FFOutput
2012-12-06 14:47 . 2012-12-06 14:47 -------- d-----w- c:\programdata\Ask
2012-12-06 14:46 . 2012-12-06 16:35 -------- d-----w- c:\program files\FreeTime
2012-12-06 14:24 . 2012-12-06 14:24 -------- d-----w- c:\users\uzivatel\AppData\Local\Xilisoft
2012-12-06 14:21 . 2012-12-07 14:04 -------- d-----w- c:\program files\Xilisoft Download Youtube Toolbar
2012-12-05 19:23 . 2012-12-05 19:23 -------- d-----w- c:\windows\cs
2012-12-05 19:15 . 2012-12-05 19:15 -------- d-----w- c:\users\uzivatel\AppData\Roaming\Complitly
2012-12-05 18:47 . 2012-12-05 18:47 -------- d-----w- C:\2051b0f01fd5becb07
2012-12-05 18:40 . 2012-12-05 19:22 -------- d-----w- c:\program files\Windows Live
2012-12-05 18:21 . 2012-12-05 18:21 -------- d-----w- c:\program files\Microsoft SkyDrive
2012-12-05 18:21 . 2012-12-05 19:15 -------- d-----r- c:\users\uzivatel\SkyDrive
2012-12-05 18:19 . 2012-12-05 18:19 -------- d-----w- c:\programdata\Microsoft SkyDrive
2012-12-05 18:17 . 2012-12-06 16:36 -------- d-----w- c:\users\uzivatel\AppData\Local\Windows Live
2012-12-05 18:17 . 2012-12-05 18:17 -------- d-----w- c:\program files\Common Files\Windows Live
2012-12-03 07:44 . 2010-06-02 03:55 74072 ----a-w- c:\windows\system32\XAPOFX1_5.dll
2012-12-03 07:44 . 2010-06-02 03:55 527192 ----a-w- c:\windows\system32\XAudio2_7.dll
2012-12-03 07:44 . 2010-06-02 03:55 239960 ----a-w- c:\windows\system32\xactengine3_7.dll
2012-12-03 07:44 . 2010-05-26 10:41 1868128 ----a-w- c:\windows\system32\d3dcsx_43.dll
2012-12-03 07:20 . 2012-12-03 07:20 -------- d-----w- c:\program files\Activision
2012-12-02 17:03 . 2012-12-02 17:03 -------- d-----w- c:\users\uzivatel\AppData\Roaming\Charles
2012-12-01 10:44 . 2012-12-01 10:45 -------- d-----w- c:\program files\Google
2012-11-28 17:51 . 2012-12-07 13:32 -------- d-----w- c:\users\uzivatel\AppData\Roaming\Assassin's Creed III
2012-11-28 17:50 . 2010-05-26 10:41 2106216 ----a-w- c:\windows\system32\D3DCompiler_43.dll
2012-11-28 17:50 . 2010-05-26 10:41 248672 ----a-w- c:\windows\system32\d3dx11_43.dll
2012-11-28 17:50 . 2010-05-26 10:41 1998168 ----a-w- c:\windows\system32\D3DX9_43.dll
2012-11-26 20:39 . 2012-11-26 20:40 -------- d-----w- c:\program files\Perion
2012-11-26 20:39 . 2012-11-26 20:39 447 ----a-w- C:\user.js
2012-11-26 20:39 . 2011-05-13 23:17 632656 ----a-w- c:\windows\system32\msvcr80.dll
2012-11-26 20:39 . 2011-05-13 23:17 479232 ----a-w- c:\windows\system32\msvcm80.dll
2012-11-26 20:39 . 2011-05-13 23:17 554832 ----a-w- c:\windows\system32\msvcp80.dll
2012-11-26 20:39 . 2012-11-26 20:39 -------- d-----w- c:\windows\system32\ARFC
2012-11-26 20:39 . 2012-10-02 15:18 28160 ----a-w- c:\windows\system32\ImHttpComm.dll
2012-11-26 20:39 . 2012-11-27 06:30 -------- d-----w- c:\windows\system32\WNLT
2012-11-26 20:34 . 2012-11-26 20:34 -------- d-----w- c:\program files\Gophoto.it
2012-11-26 20:34 . 2012-12-06 17:08 -------- d-----w- c:\program files\TornTV.com
2012-11-26 19:06 . 2012-11-28 17:25 -------- d-----w- c:\program files\R.G. Mechanics
2012-11-26 18:26 . 2012-11-26 18:26 242240 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys
2012-11-26 18:26 . 2012-11-26 18:26 -------- d-----w- c:\program files\DAEMON Tools Lite
2012-11-26 17:59 . 2012-11-26 18:09 -------- d-----w- c:\users\uzivatel\AppData\Roaming\DAEMON Tools Lite
2012-11-26 17:58 . 2012-11-26 18:05 -------- d-----w- c:\programdata\DAEMON Tools Lite
2012-11-23 14:21 . 2012-12-07 13:32 -------- d-----w- c:\users\uzivatel\AppData\Roaming\Theta
2012-11-22 13:20 . 2012-11-22 13:40 -------- d-----w- c:\users\uzivatel\AppData\Local\Ubisoft Game Launcher
2012-11-22 13:15 . 2012-11-18 23:07 -------- d-----w- c:\program files\Ubisoft
2012-11-21 19:34 . 2012-11-21 19:34 -------- d-----w- c:\program files\Common Files\Skype
2012-11-21 19:20 . 2012-11-27 14:21 -------- d-----w- c:\program files\Metin2
2012-11-12 14:17 . 2012-11-12 14:17 -------- d-----w- c:\program files\CPUID
2012-11-12 13:38 . 2006-11-29 12:06 3426072 ----a-w- c:\windows\system32\d3dx9_32.dll
2012-11-10 13:15 . 2012-11-10 13:15 -------- d-----w- c:\programdata\AVS4YOU
2012-11-10 13:14 . 2012-12-07 13:32 -------- d-----w- c:\users\uzivatel\AppData\Roaming\AVS4YOU
2012-11-10 13:10 . 2012-11-25 19:38 -------- d-----w- c:\program files\Common Files\AVSMedia
2012-11-10 13:10 . 2011-06-23 12:26 1700352 ----a-w- c:\windows\system32\GdiPlus.dll
2012-11-10 13:10 . 2011-06-23 12:25 24576 ----a-w- c:\windows\system32\msxml3a.dll
2012-11-09 15:14 . 2012-12-07 13:32 -------- d-----w- c:\users\uzivatel\AppData\Roaming\FlashgetSetup
2012-11-09 15:14 . 2012-11-09 17:35 -------- d-----w- c:\users\uzivatel\AppData\Roaming\BITS
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-12-07 14:22 . 2012-12-07 14:22 60872 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{7896DFD6-C032-4166-9651-8F725E3D13BC}\offreg.dll
2012-11-08 18:00 . 2012-12-03 02:08 6812136 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{7896DFD6-C032-4166-9651-8F725E3D13BC}\mpengine.dll
2012-11-06 18:21 . 2012-11-06 18:08 73656 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-11-06 18:21 . 2012-11-06 18:08 697272 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2012-10-02 21:04 . 2012-10-02 21:04 28616 ----a-w- c:\users\uzivatel\AppData\Roaming\A16A.exe
2012-10-02 19:30 . 2012-10-02 19:30 19313 ----a-w- c:\users\uzivatel\AppData\Roaming\B286.exe
2012-09-29 17:37 . 2012-09-29 17:37 25280 ----a-w- c:\windows\system32\drivers\hamachi.sys
2012-09-28 14:36 . 2012-09-28 14:36 180224 ----a-w- c:\windows\system32\clinfo.exe
2012-09-28 14:36 . 2012-09-28 14:36 65536 ----a-w- c:\windows\system32\OpenVideo.dll
2012-09-28 14:36 . 2012-09-28 14:36 56320 ----a-w- c:\windows\system32\OVDecode.dll
2012-09-28 14:32 . 2012-09-28 14:32 27341824 ----a-w- c:\windows\system32\amdocl.dll
2012-09-28 12:28 . 2012-09-19 21:17 282104 ----a-w- c:\windows\system32\PnkBstrB.xtr
2012-09-28 12:28 . 2012-09-19 21:17 282104 ----a-w- c:\windows\system32\PnkBstrB.exe
2012-09-28 12:24 . 2012-09-20 04:15 138264 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2012-09-28 11:46 . 2012-09-28 11:46 138056 ----a-w- c:\users\uzivatel\AppData\Roaming\PnkBstrK.sys
2012-09-28 11:46 . 2012-09-19 21:16 75136 ----a-w- c:\windows\system32\PnkBstrA.exe
2012-09-28 02:22 . 2012-07-28 04:09 5557928 ----a-w- c:\windows\system32\atiumdag.dll
2012-09-28 02:20 . 2012-09-28 02:20 9107968 ----a-w- c:\windows\system32\drivers\atikmdag.sys
2012-09-28 02:05 . 2012-09-28 02:05 58880 ----a-w- c:\windows\system32\coinst_9.002.dll
2012-09-28 02:03 . 2012-09-28 02:03 163840 ----a-w- c:\windows\system32\atiapfxx.exe
2012-09-28 02:02 . 2012-09-28 02:02 46080 ----a-w- c:\windows\system32\aticalrt.dll
2012-09-28 02:02 . 2012-09-28 02:02 44032 ----a-w- c:\windows\system32\aticalcl.dll
2012-09-28 01:57 . 2012-09-28 01:57 13703168 ----a-w- c:\windows\system32\aticaldd.dll
2012-09-28 01:43 . 2012-07-28 02:15 935424 ----a-w- c:\windows\system32\aticfx32.dll
2012-09-28 01:41 . 2012-09-28 01:41 19624960 ----a-w- c:\windows\system32\atioglxx.dll
2012-09-28 01:39 . 2012-07-28 02:07 6536192 ----a-w- c:\windows\system32\atidxx32.dll
2012-09-28 01:39 . 2012-09-28 01:39 442368 ----a-w- c:\windows\system32\atidemgy.dll
2012-09-28 01:38 . 2012-09-28 01:38 473088 ----a-w- c:\windows\system32\atieclxx.exe
2012-09-28 01:38 . 2012-09-28 01:38 217600 ----a-w- c:\windows\system32\atiesrxx.exe
2012-09-28 01:36 . 2012-09-28 01:36 163840 ----a-w- c:\windows\system32\atitmmxx.dll
2012-09-28 01:36 . 2012-09-28 01:36 20992 ----a-w- c:\windows\system32\atimuixx.dll
2012-09-28 01:36 . 2012-09-28 01:36 43520 ----a-w- c:\windows\system32\ati2edxx.dll
2012-09-28 01:22 . 2012-07-28 01:32 2691584 ----a-w- c:\windows\system32\atiumdva.dll
2012-09-28 01:13 . 2012-09-28 01:13 405504 ----a-w- c:\windows\system32\atiadlxx.dll
2012-09-28 01:13 . 2012-09-28 01:13 14848 ----a-w- c:\windows\system32\atiglpxx.dll
2012-09-28 01:13 . 2012-09-28 01:13 33280 ----a-w- c:\windows\system32\atigktxx.dll
2012-09-28 01:12 . 2012-09-28 01:12 56832 ----a-w- c:\windows\system32\atimpc32.dll
2012-09-28 01:12 . 2012-09-28 01:12 56832 ----a-w- c:\windows\system32\amdpcom32.dll
2012-09-28 01:12 . 2012-09-28 01:12 370176 ----a-w- c:\windows\system32\drivers\atikmpag.sys
2012-09-28 01:11 . 2012-07-28 01:13 109568 ----a-w- c:\windows\system32\atiuxpag.dll
2012-09-28 01:10 . 2012-07-28 01:13 82944 ----a-w- c:\windows\system32\atiu9pag.dll
2012-09-28 01:09 . 2012-09-28 01:09 53248 ----a-w- c:\windows\system32\drivers\ati2erec.dll
2012-09-21 17:39 . 2012-09-19 21:17 281120 ----a-w- c:\windows\system32\PnkBstrB.ex0
2012-09-16 09:54 . 2012-09-16 09:54 98304 ----a-w- c:\windows\system32\CmdLineExt.dll
2012-09-14 18:28 . 2012-11-07 10:36 2048 ----a-w- c:\windows\system32\tzres.dll
2012-09-12 14:57 . 2012-09-12 14:57 322048 ----a-w- c:\windows\WLXPGSS.SCR
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{B15BBE59-42F5-4206-B3F0-BE98F5DC4B93}]
2012-10-13 17:43 364920 ----a-w- c:\program files\Freecorder extension\ScriptHost.dll
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{EEE6C35C-6118-11DC-9C72-001320C79847}]
c:\program files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll [BU]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{EEE6C35B-6118-11DC-9C72-001320C79847}"= "c:\program files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll" [BU]
.
[HKEY_CLASSES_ROOT\clsid\{eee6c35b-6118-11dc-9c72-001320c79847}]
[HKEY_CLASSES_ROOT\SWEETIE.IEToolbar.1]
[HKEY_CLASSES_ROOT\TypeLib\{EEE6C35E-6118-11DC-9C72-001320C79847}]
[HKEY_CLASSES_ROOT\SWEETIE.IEToolbar]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive1]
@="{F241C880-6982-4CE5-8CF7-7085BA96DA5A}"
[HKEY_CLASSES_ROOT\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}]
2012-12-05 19:14 222712 ----a-w- c:\users\uzivatel\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112_1\SkyDriveShell.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive2]
@="{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}"
[HKEY_CLASSES_ROOT\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}]
2012-12-05 19:14 222712 ----a-w- c:\users\uzivatel\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112_1\SkyDriveShell.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive3]
@="{BBACC218-34EA-4666-9D7A-C78F2274A524}"
[HKEY_CLASSES_ROOT\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}]
2012-12-05 19:14 222712 ----a-w- c:\users\uzivatel\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112_1\SkyDriveShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1174016]
"uTorrent"="c:\program files\uTorrent\uTorrent.exe" [2012-12-04 968592]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" [2012-04-11 3672384]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2012-03-07 3117344]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2012-09-28 642728]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\tcpip\parameters\persistentroutes]
"62.75.206.182,255.255.255.255,192.168.2.80,1"=""
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [BU]
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BCSSync]
2010-03-13 12:54 91520 ----a-w- c:\program files\Microsoft Office\Office14\BCSSync.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Pro Agent]
c:\program files\DAEMON Tools Pro\DTAgent.exe [BU]
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
2012-09-11 17:00 116648 ----atw- c:\users\uzivatel\AppData\Local\Google\Update\GoogleUpdate.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
2012-11-09 10:27 17877168 ----a-r- c:\program files\Skype\Phone\Skype.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
2012-09-11 17:58 1353080 ----a-w- c:\program files\Steam\Steam.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SweetIM]
c:\program files\SweetIM\Messenger\SweetIM.exe [BU]
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sweetpacks Communicator]
c:\program files\SweetIM\Communicator\SweetPacksUpdateManager.exe [BU]
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\uTorrent]
2012-12-04 13:24 968592 ----a-w- c:\program files\uTorrent\uTorrent.exe
.
R2 Skype C2C Service;Skype C2C Service;c:\programdata\Skype\Toolbars\Skype C2C Service\c2c_service.exe [x]
R2 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [x]
R3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys [x]
R3 EagleXNt;EagleXNt;c:\windows\system32\drivers\EagleXNt.sys [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [x]
R3 RTL8192su;Realtek RTL8192SU Wireless LAN 802.11n USB 2.0 Network Adapter;c:\windows\system32\DRIVERS\RTL8192su.sys [x]
R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys [x]
R3 terminpt;Microsoft Remote Desktop Input Driver;c:\windows\system32\drivers\terminpt.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [x]
R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys [x]
R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [x]
R3 WinRing0_1_2_0;WinRing0_1_2_0;c:\program files\IObit\Game Booster 3\Driver\WinRing0.sys [x]
S0 epfwwfp;epfwwfp;c:\windows\system32\DRIVERS\epfwwfp.sys [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [x]
S1 eamonm;eamonm;c:\windows\system32\DRIVERS\eamonm.sys [x]
S1 ehdrv;ehdrv;c:\windows\system32\DRIVERS\ehdrv.sys [x]
S1 EpfwLWF;Epfw NDIS LightWeight Filter;c:\windows\system32\DRIVERS\EpfwLWF.sys [x]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [x]
S2 AMD FUEL Service;AMD FUEL Service;c:\program files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [x]
S2 ekrn;ESET Service;c:\program files\ESET\ESET Smart Security\ekrn.exe [x]
S3 amdiox86;AMD IO Driver;c:\windows\system32\DRIVERS\amdiox86.sys [x]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW73.sys [x]
.
.
--- Ostatní služby/ovladače v paměti ---
.
*NewlyCreated* - WS2IFSL
.
Obsah adresáře 'Naplánované úlohy'
.
2012-12-07 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-11-06 18:21]
.
2012-12-07 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2012-12-01 10:44]
.
2012-12-07 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2012-12-01 10:44]
.
2012-12-02 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2205251023-1918171308-2231897689-1000Core.job
- c:\users\uzivatel\AppData\Local\Google\Update\GoogleUpdate.exe [2012-09-11 17:00]
.
2012-12-06 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2205251023-1918171308-2231897689-1000UA.job
- c:\users\uzivatel\AppData\Local\Google\Update\GoogleUpdate.exe [2012-09-11 17:00]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://seznam.cz/
mStart Page = hxxp://home.sweetim.com/?st=6&barid={AB37BDA0-150C-11E2-B2B8-001BFC8C33CA}
TCP: DhcpNameServer = 192.168.2.1
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Toolbar-Locked - (no file)
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil32_11_5_502_110_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil32_11_5_502_110_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VideoLAN.VLCPlugin.*1*]
@="?????????????????? v1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VideoLAN.VLCPlugin.*1*\CLSID]
@="{E23FE9C6-778E-49D4-B537-38FCDE4887D8}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VideoLAN.VLCPlugin.*2*]
@="?????????????????? v2"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VideoLAN.VLCPlugin.*2*\CLSID]
@="{9BE31822-FDAD-461B-AD51-BE1D1C159921}"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2012-12-07 15:34:51
ComboFix-quarantined-files.txt 2012-12-07 14:34
.
Před spuštěním: Volných bajtů: 329 171 369 984
Po spuštění: Volných bajtů: 329 121 341 440
.
- - End Of File - - B96D62733618A89C9DD0AB66DF2DFDB7
ComboFix 12-12-04.01 - uzivatel 07.12.2012 15:17:20.2.1 - x86
Microsoft Windows 7 Ultimate 6.1.7601.1.1250.420.1029.18.2047.1140 [GMT 1:00]
Spuštěný z: c:\users\uzivatel\Desktop\ComboFix.exe
AV: ESET Smart Security 5.2 *Enabled/Updated* {77DEAFED-8149-104B-25A1-21771CA47CD1}
FW: ESET personal firewall *Enabled* {4FE52EC8-CB26-1113-0EFE-8842E2773BAA}
SP: ESET Smart Security 5.2 *Enabled/Updated* {CCBF4E09-A773-1FC5-1F11-1A056723366C}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Rezidentní štít AV je zapnutý
.
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\temp\catchme.dll
.
---- Předchozí spuštění -------
.
c:\program files\Complitly
c:\program files\Complitly\FireFoxExtensionWithFF8Fix.exe
c:\program files\Complitly\FireFoxUninstaller.exe
c:\program files\Complitly\chrome\ComplitlyChrome.crx
c:\program files\Complitly\InstTracker.exe
c:\program files\Complitly\support@Complitly.com\defaults\preferences\predictad.js
c:\program files\Complitly\support@Complitly.com\chrome.manifest
c:\program files\Complitly\support@Complitly.com\chrome\content\appIcon.png
c:\program files\Complitly\support@Complitly.com\chrome\content\browserOverlay.xul
c:\program files\Complitly\support@Complitly.com\chrome\content\options.js
c:\program files\Complitly\support@Complitly.com\chrome\content\options.xul
c:\program files\Complitly\support@Complitly.com\chrome\content\utils.js
c:\program files\Complitly\support@Complitly.com\install.rdf
c:\program files\Complitly\System.Data.SQLite.dll
c:\program files\Complitly\unins000.dat
c:\program files\Complitly\unins000.exe
c:\program files\Xilisoft Download Youtube Toolbar\tbHElper.dll
c:\temp\catchme.dll
c:\users\uzivatel\AppData\Roaming\185C.exe
c:\users\uzivatel\AppData\Roaming\44E4.exe
c:\users\uzivatel\AppData\Roaming\54B6.exe
c:\users\uzivatel\AppData\Roaming\8E9B.exe
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-11-07 do 2012-12-07 )))))))))))))))))))))))))))))))
.
.
2012-12-07 14:31 . 2012-12-07 14:31 -------- d-----w- c:\users\uzivatel\AppData\Local\temp
2012-12-07 14:31 . 2012-12-07 14:31 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-12-06 20:24 . 2012-12-06 20:24 -------- d-----w- c:\users\uzivatel\AppData\Roaming\Malwarebytes
2012-12-06 20:24 . 2012-12-06 20:24 -------- d-----w- c:\programdata\Malwarebytes
2012-12-06 20:24 . 2012-12-06 20:24 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2012-12-06 20:24 . 2012-09-29 18:54 22856 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-12-06 17:19 . 2012-12-06 17:19 388096 ----a-r- c:\users\uzivatel\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2012-12-06 17:19 . 2012-12-06 17:19 -------- d-----w- c:\program files\Trend Micro
2012-12-06 16:38 . 2012-12-06 16:38 -------- d-----w- c:\program files\Adobe Download Assistant
2012-12-06 14:55 . 2012-12-06 14:55 -------- d-----w- c:\programdata\YTD Video Downloader
2012-12-06 14:54 . 2012-12-06 14:54 -------- d-----w- c:\program files\GreenTree Applications
2012-12-06 14:47 . 2012-12-06 14:47 -------- d-----w- C:\FFOutput
2012-12-06 14:47 . 2012-12-06 14:47 -------- d-----w- c:\programdata\Ask
2012-12-06 14:46 . 2012-12-06 16:35 -------- d-----w- c:\program files\FreeTime
2012-12-06 14:24 . 2012-12-06 14:24 -------- d-----w- c:\users\uzivatel\AppData\Local\Xilisoft
2012-12-06 14:21 . 2012-12-07 14:04 -------- d-----w- c:\program files\Xilisoft Download Youtube Toolbar
2012-12-05 19:23 . 2012-12-05 19:23 -------- d-----w- c:\windows\cs
2012-12-05 19:15 . 2012-12-05 19:15 -------- d-----w- c:\users\uzivatel\AppData\Roaming\Complitly
2012-12-05 18:47 . 2012-12-05 18:47 -------- d-----w- C:\2051b0f01fd5becb07
2012-12-05 18:40 . 2012-12-05 19:22 -------- d-----w- c:\program files\Windows Live
2012-12-05 18:21 . 2012-12-05 18:21 -------- d-----w- c:\program files\Microsoft SkyDrive
2012-12-05 18:21 . 2012-12-05 19:15 -------- d-----r- c:\users\uzivatel\SkyDrive
2012-12-05 18:19 . 2012-12-05 18:19 -------- d-----w- c:\programdata\Microsoft SkyDrive
2012-12-05 18:17 . 2012-12-06 16:36 -------- d-----w- c:\users\uzivatel\AppData\Local\Windows Live
2012-12-05 18:17 . 2012-12-05 18:17 -------- d-----w- c:\program files\Common Files\Windows Live
2012-12-03 07:44 . 2010-06-02 03:55 74072 ----a-w- c:\windows\system32\XAPOFX1_5.dll
2012-12-03 07:44 . 2010-06-02 03:55 527192 ----a-w- c:\windows\system32\XAudio2_7.dll
2012-12-03 07:44 . 2010-06-02 03:55 239960 ----a-w- c:\windows\system32\xactengine3_7.dll
2012-12-03 07:44 . 2010-05-26 10:41 1868128 ----a-w- c:\windows\system32\d3dcsx_43.dll
2012-12-03 07:20 . 2012-12-03 07:20 -------- d-----w- c:\program files\Activision
2012-12-02 17:03 . 2012-12-02 17:03 -------- d-----w- c:\users\uzivatel\AppData\Roaming\Charles
2012-12-01 10:44 . 2012-12-01 10:45 -------- d-----w- c:\program files\Google
2012-11-28 17:51 . 2012-12-07 13:32 -------- d-----w- c:\users\uzivatel\AppData\Roaming\Assassin's Creed III
2012-11-28 17:50 . 2010-05-26 10:41 2106216 ----a-w- c:\windows\system32\D3DCompiler_43.dll
2012-11-28 17:50 . 2010-05-26 10:41 248672 ----a-w- c:\windows\system32\d3dx11_43.dll
2012-11-28 17:50 . 2010-05-26 10:41 1998168 ----a-w- c:\windows\system32\D3DX9_43.dll
2012-11-26 20:39 . 2012-11-26 20:40 -------- d-----w- c:\program files\Perion
2012-11-26 20:39 . 2012-11-26 20:39 447 ----a-w- C:\user.js
2012-11-26 20:39 . 2011-05-13 23:17 632656 ----a-w- c:\windows\system32\msvcr80.dll
2012-11-26 20:39 . 2011-05-13 23:17 479232 ----a-w- c:\windows\system32\msvcm80.dll
2012-11-26 20:39 . 2011-05-13 23:17 554832 ----a-w- c:\windows\system32\msvcp80.dll
2012-11-26 20:39 . 2012-11-26 20:39 -------- d-----w- c:\windows\system32\ARFC
2012-11-26 20:39 . 2012-10-02 15:18 28160 ----a-w- c:\windows\system32\ImHttpComm.dll
2012-11-26 20:39 . 2012-11-27 06:30 -------- d-----w- c:\windows\system32\WNLT
2012-11-26 20:34 . 2012-11-26 20:34 -------- d-----w- c:\program files\Gophoto.it
2012-11-26 20:34 . 2012-12-06 17:08 -------- d-----w- c:\program files\TornTV.com
2012-11-26 19:06 . 2012-11-28 17:25 -------- d-----w- c:\program files\R.G. Mechanics
2012-11-26 18:26 . 2012-11-26 18:26 242240 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys
2012-11-26 18:26 . 2012-11-26 18:26 -------- d-----w- c:\program files\DAEMON Tools Lite
2012-11-26 17:59 . 2012-11-26 18:09 -------- d-----w- c:\users\uzivatel\AppData\Roaming\DAEMON Tools Lite
2012-11-26 17:58 . 2012-11-26 18:05 -------- d-----w- c:\programdata\DAEMON Tools Lite
2012-11-23 14:21 . 2012-12-07 13:32 -------- d-----w- c:\users\uzivatel\AppData\Roaming\Theta
2012-11-22 13:20 . 2012-11-22 13:40 -------- d-----w- c:\users\uzivatel\AppData\Local\Ubisoft Game Launcher
2012-11-22 13:15 . 2012-11-18 23:07 -------- d-----w- c:\program files\Ubisoft
2012-11-21 19:34 . 2012-11-21 19:34 -------- d-----w- c:\program files\Common Files\Skype
2012-11-21 19:20 . 2012-11-27 14:21 -------- d-----w- c:\program files\Metin2
2012-11-12 14:17 . 2012-11-12 14:17 -------- d-----w- c:\program files\CPUID
2012-11-12 13:38 . 2006-11-29 12:06 3426072 ----a-w- c:\windows\system32\d3dx9_32.dll
2012-11-10 13:15 . 2012-11-10 13:15 -------- d-----w- c:\programdata\AVS4YOU
2012-11-10 13:14 . 2012-12-07 13:32 -------- d-----w- c:\users\uzivatel\AppData\Roaming\AVS4YOU
2012-11-10 13:10 . 2012-11-25 19:38 -------- d-----w- c:\program files\Common Files\AVSMedia
2012-11-10 13:10 . 2011-06-23 12:26 1700352 ----a-w- c:\windows\system32\GdiPlus.dll
2012-11-10 13:10 . 2011-06-23 12:25 24576 ----a-w- c:\windows\system32\msxml3a.dll
2012-11-09 15:14 . 2012-12-07 13:32 -------- d-----w- c:\users\uzivatel\AppData\Roaming\FlashgetSetup
2012-11-09 15:14 . 2012-11-09 17:35 -------- d-----w- c:\users\uzivatel\AppData\Roaming\BITS
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-12-07 14:22 . 2012-12-07 14:22 60872 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{7896DFD6-C032-4166-9651-8F725E3D13BC}\offreg.dll
2012-11-08 18:00 . 2012-12-03 02:08 6812136 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{7896DFD6-C032-4166-9651-8F725E3D13BC}\mpengine.dll
2012-11-06 18:21 . 2012-11-06 18:08 73656 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-11-06 18:21 . 2012-11-06 18:08 697272 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2012-10-02 21:04 . 2012-10-02 21:04 28616 ----a-w- c:\users\uzivatel\AppData\Roaming\A16A.exe
2012-10-02 19:30 . 2012-10-02 19:30 19313 ----a-w- c:\users\uzivatel\AppData\Roaming\B286.exe
2012-09-29 17:37 . 2012-09-29 17:37 25280 ----a-w- c:\windows\system32\drivers\hamachi.sys
2012-09-28 14:36 . 2012-09-28 14:36 180224 ----a-w- c:\windows\system32\clinfo.exe
2012-09-28 14:36 . 2012-09-28 14:36 65536 ----a-w- c:\windows\system32\OpenVideo.dll
2012-09-28 14:36 . 2012-09-28 14:36 56320 ----a-w- c:\windows\system32\OVDecode.dll
2012-09-28 14:32 . 2012-09-28 14:32 27341824 ----a-w- c:\windows\system32\amdocl.dll
2012-09-28 12:28 . 2012-09-19 21:17 282104 ----a-w- c:\windows\system32\PnkBstrB.xtr
2012-09-28 12:28 . 2012-09-19 21:17 282104 ----a-w- c:\windows\system32\PnkBstrB.exe
2012-09-28 12:24 . 2012-09-20 04:15 138264 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2012-09-28 11:46 . 2012-09-28 11:46 138056 ----a-w- c:\users\uzivatel\AppData\Roaming\PnkBstrK.sys
2012-09-28 11:46 . 2012-09-19 21:16 75136 ----a-w- c:\windows\system32\PnkBstrA.exe
2012-09-28 02:22 . 2012-07-28 04:09 5557928 ----a-w- c:\windows\system32\atiumdag.dll
2012-09-28 02:20 . 2012-09-28 02:20 9107968 ----a-w- c:\windows\system32\drivers\atikmdag.sys
2012-09-28 02:05 . 2012-09-28 02:05 58880 ----a-w- c:\windows\system32\coinst_9.002.dll
2012-09-28 02:03 . 2012-09-28 02:03 163840 ----a-w- c:\windows\system32\atiapfxx.exe
2012-09-28 02:02 . 2012-09-28 02:02 46080 ----a-w- c:\windows\system32\aticalrt.dll
2012-09-28 02:02 . 2012-09-28 02:02 44032 ----a-w- c:\windows\system32\aticalcl.dll
2012-09-28 01:57 . 2012-09-28 01:57 13703168 ----a-w- c:\windows\system32\aticaldd.dll
2012-09-28 01:43 . 2012-07-28 02:15 935424 ----a-w- c:\windows\system32\aticfx32.dll
2012-09-28 01:41 . 2012-09-28 01:41 19624960 ----a-w- c:\windows\system32\atioglxx.dll
2012-09-28 01:39 . 2012-07-28 02:07 6536192 ----a-w- c:\windows\system32\atidxx32.dll
2012-09-28 01:39 . 2012-09-28 01:39 442368 ----a-w- c:\windows\system32\atidemgy.dll
2012-09-28 01:38 . 2012-09-28 01:38 473088 ----a-w- c:\windows\system32\atieclxx.exe
2012-09-28 01:38 . 2012-09-28 01:38 217600 ----a-w- c:\windows\system32\atiesrxx.exe
2012-09-28 01:36 . 2012-09-28 01:36 163840 ----a-w- c:\windows\system32\atitmmxx.dll
2012-09-28 01:36 . 2012-09-28 01:36 20992 ----a-w- c:\windows\system32\atimuixx.dll
2012-09-28 01:36 . 2012-09-28 01:36 43520 ----a-w- c:\windows\system32\ati2edxx.dll
2012-09-28 01:22 . 2012-07-28 01:32 2691584 ----a-w- c:\windows\system32\atiumdva.dll
2012-09-28 01:13 . 2012-09-28 01:13 405504 ----a-w- c:\windows\system32\atiadlxx.dll
2012-09-28 01:13 . 2012-09-28 01:13 14848 ----a-w- c:\windows\system32\atiglpxx.dll
2012-09-28 01:13 . 2012-09-28 01:13 33280 ----a-w- c:\windows\system32\atigktxx.dll
2012-09-28 01:12 . 2012-09-28 01:12 56832 ----a-w- c:\windows\system32\atimpc32.dll
2012-09-28 01:12 . 2012-09-28 01:12 56832 ----a-w- c:\windows\system32\amdpcom32.dll
2012-09-28 01:12 . 2012-09-28 01:12 370176 ----a-w- c:\windows\system32\drivers\atikmpag.sys
2012-09-28 01:11 . 2012-07-28 01:13 109568 ----a-w- c:\windows\system32\atiuxpag.dll
2012-09-28 01:10 . 2012-07-28 01:13 82944 ----a-w- c:\windows\system32\atiu9pag.dll
2012-09-28 01:09 . 2012-09-28 01:09 53248 ----a-w- c:\windows\system32\drivers\ati2erec.dll
2012-09-21 17:39 . 2012-09-19 21:17 281120 ----a-w- c:\windows\system32\PnkBstrB.ex0
2012-09-16 09:54 . 2012-09-16 09:54 98304 ----a-w- c:\windows\system32\CmdLineExt.dll
2012-09-14 18:28 . 2012-11-07 10:36 2048 ----a-w- c:\windows\system32\tzres.dll
2012-09-12 14:57 . 2012-09-12 14:57 322048 ----a-w- c:\windows\WLXPGSS.SCR
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{B15BBE59-42F5-4206-B3F0-BE98F5DC4B93}]
2012-10-13 17:43 364920 ----a-w- c:\program files\Freecorder extension\ScriptHost.dll
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{EEE6C35C-6118-11DC-9C72-001320C79847}]
c:\program files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll [BU]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{EEE6C35B-6118-11DC-9C72-001320C79847}"= "c:\program files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll" [BU]
.
[HKEY_CLASSES_ROOT\clsid\{eee6c35b-6118-11dc-9c72-001320c79847}]
[HKEY_CLASSES_ROOT\SWEETIE.IEToolbar.1]
[HKEY_CLASSES_ROOT\TypeLib\{EEE6C35E-6118-11DC-9C72-001320C79847}]
[HKEY_CLASSES_ROOT\SWEETIE.IEToolbar]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive1]
@="{F241C880-6982-4CE5-8CF7-7085BA96DA5A}"
[HKEY_CLASSES_ROOT\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}]
2012-12-05 19:14 222712 ----a-w- c:\users\uzivatel\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112_1\SkyDriveShell.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive2]
@="{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}"
[HKEY_CLASSES_ROOT\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}]
2012-12-05 19:14 222712 ----a-w- c:\users\uzivatel\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112_1\SkyDriveShell.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive3]
@="{BBACC218-34EA-4666-9D7A-C78F2274A524}"
[HKEY_CLASSES_ROOT\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}]
2012-12-05 19:14 222712 ----a-w- c:\users\uzivatel\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112_1\SkyDriveShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1174016]
"uTorrent"="c:\program files\uTorrent\uTorrent.exe" [2012-12-04 968592]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" [2012-04-11 3672384]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2012-03-07 3117344]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2012-09-28 642728]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\tcpip\parameters\persistentroutes]
"62.75.206.182,255.255.255.255,192.168.2.80,1"=""
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [BU]
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BCSSync]
2010-03-13 12:54 91520 ----a-w- c:\program files\Microsoft Office\Office14\BCSSync.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Pro Agent]
c:\program files\DAEMON Tools Pro\DTAgent.exe [BU]
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
2012-09-11 17:00 116648 ----atw- c:\users\uzivatel\AppData\Local\Google\Update\GoogleUpdate.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
2012-11-09 10:27 17877168 ----a-r- c:\program files\Skype\Phone\Skype.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
2012-09-11 17:58 1353080 ----a-w- c:\program files\Steam\Steam.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SweetIM]
c:\program files\SweetIM\Messenger\SweetIM.exe [BU]
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sweetpacks Communicator]
c:\program files\SweetIM\Communicator\SweetPacksUpdateManager.exe [BU]
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\uTorrent]
2012-12-04 13:24 968592 ----a-w- c:\program files\uTorrent\uTorrent.exe
.
R2 Skype C2C Service;Skype C2C Service;c:\programdata\Skype\Toolbars\Skype C2C Service\c2c_service.exe [x]
R2 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [x]
R3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys [x]
R3 EagleXNt;EagleXNt;c:\windows\system32\drivers\EagleXNt.sys [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [x]
R3 RTL8192su;Realtek RTL8192SU Wireless LAN 802.11n USB 2.0 Network Adapter;c:\windows\system32\DRIVERS\RTL8192su.sys [x]
R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys [x]
R3 terminpt;Microsoft Remote Desktop Input Driver;c:\windows\system32\drivers\terminpt.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [x]
R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys [x]
R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [x]
R3 WinRing0_1_2_0;WinRing0_1_2_0;c:\program files\IObit\Game Booster 3\Driver\WinRing0.sys [x]
S0 epfwwfp;epfwwfp;c:\windows\system32\DRIVERS\epfwwfp.sys [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [x]
S1 eamonm;eamonm;c:\windows\system32\DRIVERS\eamonm.sys [x]
S1 ehdrv;ehdrv;c:\windows\system32\DRIVERS\ehdrv.sys [x]
S1 EpfwLWF;Epfw NDIS LightWeight Filter;c:\windows\system32\DRIVERS\EpfwLWF.sys [x]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [x]
S2 AMD FUEL Service;AMD FUEL Service;c:\program files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [x]
S2 ekrn;ESET Service;c:\program files\ESET\ESET Smart Security\ekrn.exe [x]
S3 amdiox86;AMD IO Driver;c:\windows\system32\DRIVERS\amdiox86.sys [x]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW73.sys [x]
.
.
--- Ostatní služby/ovladače v paměti ---
.
*NewlyCreated* - WS2IFSL
.
Obsah adresáře 'Naplánované úlohy'
.
2012-12-07 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-11-06 18:21]
.
2012-12-07 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2012-12-01 10:44]
.
2012-12-07 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2012-12-01 10:44]
.
2012-12-02 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2205251023-1918171308-2231897689-1000Core.job
- c:\users\uzivatel\AppData\Local\Google\Update\GoogleUpdate.exe [2012-09-11 17:00]
.
2012-12-06 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2205251023-1918171308-2231897689-1000UA.job
- c:\users\uzivatel\AppData\Local\Google\Update\GoogleUpdate.exe [2012-09-11 17:00]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://seznam.cz/
mStart Page = hxxp://home.sweetim.com/?st=6&barid={AB37BDA0-150C-11E2-B2B8-001BFC8C33CA}
TCP: DhcpNameServer = 192.168.2.1
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Toolbar-Locked - (no file)
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil32_11_5_502_110_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil32_11_5_502_110_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VideoLAN.VLCPlugin.*1*]
@="?????????????????? v1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VideoLAN.VLCPlugin.*1*\CLSID]
@="{E23FE9C6-778E-49D4-B537-38FCDE4887D8}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VideoLAN.VLCPlugin.*2*]
@="?????????????????? v2"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VideoLAN.VLCPlugin.*2*\CLSID]
@="{9BE31822-FDAD-461B-AD51-BE1D1C159921}"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2012-12-07 15:34:51
ComboFix-quarantined-files.txt 2012-12-07 14:34
.
Před spuštěním: Volných bajtů: 329 171 369 984
Po spuštění: Volných bajtů: 329 121 341 440
.
- - End Of File - - B96D62733618A89C9DD0AB66DF2DFDB7
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Win7 Checker.exe
Otevři si Poznámkový blok (Start -> Spustit... a napiš do okna Notepad a dej Ok.
Zkopíruj do něj následující celý text označený zeleně:
Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.
Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe a když se oba soubory překryjí, skript upusť.
- Automaticky se spustí ComboFix
- Vlož sem log, který vyběhne v závěru čistícího procesu + nový log z HJT
Upozornění : Může se stát, že po aplikaci Combofixu a restartu počítače, Windows nenaběhnou , nebo nenajede plocha , budou problémy s připojením, pak znovu restartuj počítač, pokud to nepomůže , po restartu mačkej klávesu F8 a pak zvol poslední známou funkční konfiguraci. , či použij bod obnovy.
Stáhni si aswMBR
na svojí plochu. Uzavři všechna okna , programy a prohlížeče. Poklepej na aswMBR.exe. Pokud se objeví hláška o možnosti stáhnutí databáze Avastu , klikni na NE. Poté klikni na „Scan“ . Po skenu klikni na „Save Log“ a ulož si log na plochu .Zkopíruj sem celý obsah toho logu. Pak klikni na „Exit“ k zavření programu.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\tcpip\parameters\persistentroutes]
"62.75.206.182,255.255.255.255,192.168.2.80,1"=""
tohle Ti něco říká??
Zkopíruj do něj následující celý text označený zeleně:
Kód: Vybrat vše
ClearJavaCache::
KillAll::
File::
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2205251023-1918171308-2231897689-1000Core.job
c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2205251023-1918171308-2231897689-1000UA.job
Folder::
c:\programdata\Ask
c:\program files\Freecorder extension
c:\program files\SweetIM
c:\users\uzivatel\AppData\Local\Google\Update
c:\program files\Skype\Updater
c:\program files\Google\Update
DirLook::
c:\windows\system32\ARFC
c:\windows\system32\WNLT
Friver::
SkypeUpdate
Registry::
[-HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{B15BBE59-42F5-4206-B3F0-BE98F5DC4B93}]
[-HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{EEE6C35C-6118-11DC-9C72-001320C79847}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{EEE6C35B-6118-11DC-9C72-001320C79847}"=-
[-HKEY_CLASSES_ROOT\clsid\{eee6c35b-6118-11dc-9c72-001320c79847}]
[-HKEY_CLASSES_ROOT\SWEETIE.IEToolbar.1]
[-HKEY_CLASSES_ROOT\TypeLib\{EEE6C35E-6118-11DC-9C72-001320C79847}]
[-HKEY_CLASSES_ROOT\SWEETIE.IEToolbar]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SweetIM]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sweetpacks Communicator]
DDS::
mStart Page = hxxp://home.sweetim.com/?st=6&barid={AB37BDA0-150C-11E2-B2B8-001BFC8C33CA}
RegLock::
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.
Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe a když se oba soubory překryjí, skript upusť.
- Automaticky se spustí ComboFix
- Vlož sem log, který vyběhne v závěru čistícího procesu + nový log z HJT
Upozornění : Může se stát, že po aplikaci Combofixu a restartu počítače, Windows nenaběhnou , nebo nenajede plocha , budou problémy s připojením, pak znovu restartuj počítač, pokud to nepomůže , po restartu mačkej klávesu F8 a pak zvol poslední známou funkční konfiguraci. , či použij bod obnovy.
Stáhni si aswMBR
na svojí plochu. Uzavři všechna okna , programy a prohlížeče. Poklepej na aswMBR.exe. Pokud se objeví hláška o možnosti stáhnutí databáze Avastu , klikni na NE. Poté klikni na „Scan“ . Po skenu klikni na „Save Log“ a ulož si log na plochu .Zkopíruj sem celý obsah toho logu. Pak klikni na „Exit“ k zavření programu.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\tcpip\parameters\persistentroutes]
"62.75.206.182,255.255.255.255,192.168.2.80,1"=""
tohle Ti něco říká??
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 117 hostů