prosím o kontrolu logu

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

dezire
nováček
Příspěvky: 11
Registrován: srpen 11
Pohlaví: Žena
Stav:
Offline

prosím o kontrolu logu

Příspěvekod dezire » 12 led 2013 23:07

Dobrý den prosím o kontrolu logu.Notebok se mi při vypnutí zasekne a zustane jen modrá obrazovka s vypínáním,dále jsem našla v přidat ,odebrat programy program Nexon game manager,na který když kliknu k odinstalaci tak mam BSOD a nelze ho nijako odinstalovat :?
Moc děkuji Dezire


Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:56:44, on 12.1.2013
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Acer\Empowering Technology\admServ.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Acer\Empowering Technology\admtray.exe
C:\Acer\Empowering Technology\eRecovery\Monitor.exe
C:\Program Files\Acer\Acer Arcade\PCMService.exe
C:\Program Files\Acer\Acer Arcade\Kernel\TV\CLCapSvc.exe
C:\Program Files\Acer\Acer Arcade\Kernel\CLML_NTService\CLMLServer.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Acer\Acer Arcade\Kernel\CLML_NTService\CLMLService.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Program Files\CyberLink\Shared Files\RichVideo.exe
C:\Acer\Empowering Technology\ePower\ePower_DMC.exe
C:\WINDOWS\system32\svchost.exe
C:\PROGRA~1\LAUNCH~1\LManager.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\WINDOWS\system32\igfxsrvc.exe
C:\Documents and Settings\Ferda\Local Settings\Data aplikací\ChemTable Software\Handy Start Menu\HandyStartMenu.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Acer\Acer Arcade\Kernel\TV\CLSched.exe
C:\WINDOWS\system32\igfxext.exe
C:\DOCUME~1\Ferda\LOCALS~1\Temp\RtkBtMnt.exe
C:\WINDOWS\system32\wbem\unsecapp.exe
C:\Documents and Settings\Ferda\Local Settings\Data aplikací\ChemTable Software\Handy Start Menu\StartMenuService.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\13.3.2\ToolbarUpdater.exe
C:\Program Files\AVG Secure Search\vprot.exe
C:\Program Files\AVG\AVG2013\avgidsagent.exe
C:\Program Files\AVG\AVG2013\avgwdsvc.exe
C:\Program Files\AVG\AVG2013\avgnsx.exe
C:\Program Files\AVG\AVG2013\avgemcx.exe
C:\Program Files\AVG\AVG2013\avgrsx.exe
C:\Program Files\AVG\AVG2013\avgui.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\AVG\AVG2013\avgcsrvx.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\WINDOWS\system32\msiexec.exe
C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://sujin.com.np/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://cs.intl.acer.yahoo.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://cs.intl.acer.yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Sujin.com.np
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: HP Print Clips - {053F9267-DC04-4294-A72C-58F732D338C0} - C:\Program Files\HP\Smart Web Printing\hpswp_framework.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - c:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - (no file)
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: (no name) - {95B7759C-8C7F-4BF1-B163-73684A933233} - (no file)
O2 - BHO: (no name) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - (no file)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: (no name) - {95B7759C-8C7F-4BF1-B163-73684A933233} - (no file)
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [LaunchApp] Alaunch
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [AzMixerSel] C:\Program Files\Realtek\InstallShield\AzMixerSel.exe
O4 - HKLM\..\Run: [ADMTray.exe] "C:\Acer\Empowering Technology\admtray.exe"
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Acer\Acer Arcade\PCMService.exe"
O4 - HKLM\..\Run: [ePower_DMC] C:\Acer\Empowering Technology\ePower\ePower_DMC.exe
O4 - HKLM\..\Run: [Acer ePower Management] C:\Acer\Empowering Technology\ePower\Acer ePower Management.exe boot
O4 - HKLM\..\Run: [LManager] C:\PROGRA~1\LAUNCH~1\LManager.exe
O4 - HKLM\..\Run: [eRecoveryService] C:\Acer\Empowering Technology\eRecovery\Monitor.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [AVG_UI] "C:\Program Files\AVG\AVG2013\avgui.exe" /TRAYONLY
O4 - HKLM\..\Run: [vProt] "C:\Program Files\AVG Secure Search\vprot.exe"
O4 - HKCU\..\Run: [Handy Start Menu] "C:\Documents and Settings\Ferda\Local Settings\Data aplikací\ChemTable Software\Handy Start Menu\HandyStartMenu.exe" /Enable
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Kniha klipů HP - {58ECB495-38F0-49cb-A538-10282ABF65E7} - C:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll
O9 - Extra button: HP Chytrý výběr - {700259D7-1666-479a-93B1-3250410481E8} - C:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA} (Java Plug-in 1.6.0_18) -
O17 - HKLM\System\CCS\Services\Tcpip\..\{A3FD8652-FE95-451B-8863-C15DAED322E0}: NameServer = 10.0.0.1,10.2.0.1
O18 - Protocol: skyline - {3A4F9195-65A8-11D5-85C1-0001023952C1} - C:\Program Files\Skyline\TerraExplorer\TerraExplorerX.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\13.3.2\ViProtocol.dll
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2013\avgidsagent.exe
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2013\avgwdsvc.exe
O23 - Service: AdminWorks Agent X6 (AWService) - Avocent Inc. - C:\Acer\Empowering Technology\admServ.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Program Files\Acer\Acer Arcade\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Program Files\Acer\Acer Arcade\Kernel\TV\CLSched.exe
O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Program Files\Acer\Acer Arcade\Kernel\CLML_NTService\CLMLServer.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\WINDOWS\system32\GameMon.des.exe (file missing)
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: vToolbarUpdater13.3.2 - Unknown owner - C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\13.3.2\ToolbarUpdater.exe

--
End of file - 10622 bytes

Reklama
Uživatelský avatar
Orcus
člen Security týmu
Elite Level 10.5
Elite Level 10.5
Příspěvky: 10645
Registrován: duben 10
Bydliště: Okolo rostou 3 růže =o)
Pohlaví: Muž
Stav:
Offline

Re: prosím o kontrolu logu

Příspěvekod Orcus » 12 led 2013 23:34

Odinstaluj:
Yahoo! Toolbar

Fixni:

Kód: Vybrat vše

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://sujin.com.np/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://cs.intl.acer.yahoo.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://cs.intl.acer.yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Sujin.com.np
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O3 - Toolbar: (no name) - {95B7759C-8C7F-4BF1-B163-73684A933233} - (no file)

Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected. Poté klikni na Main (hlavní stránku ) a klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.

===================================================

Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Provést rychlý sken a klikni na tlačítko Skenovat
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Zobrazit výsledky
- pak zvol možnost uložit log a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.
Láska hřeje, ale uhlí je uhlí. :fire:



Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.

Pár rad k bezpečnosti PC.

Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix

Pokud budete spokojeni , můžete podpořit naše fórum.

dezire
nováček
Příspěvky: 11
Registrován: srpen 11
Pohlaví: Žena
Stav:
Offline

Re: prosím o kontrolu logu

Příspěvekod dezire » 13 led 2013 17:27

Moc děkuji za pomoc vše jsem udělala dle návodu a zde je log :

Malwarebytes Anti-Malware 1.70.0.1100
www.malwarebytes.org

Verze: v2013.01.13.06

Windows XP Service Pack 3 x86 FAT32
Internet Explorer 6.0.2900.5512
Ferda :: ACER-0613CCA6BC [administrátor]

13.1.2013 17:09:53
MBAM-log-2013-01-13 (17-23-33).txt

Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 226749
Uplynulý čas: 12 minut, 34 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 2
HKLM\SOFTWARE\Microsoft\Security Center|AntiVirusDisableNotify (PUM.Disabled.SecurityCenter) -> Špatný: (1) Dobrý: (0) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Security Center|FirewallDisableNotify (PUM.Disabled.SecurityCenter) -> Špatný: (1) Dobrý: (0) -> Nebyla provedena žádná instrukce.

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 1
C:\WINDOWS\system32\winrtsnr.txt (Malware.Trace) -> Nebyla provedena žádná instrukce.

(konec)

Uživatelský avatar
memphisto
Guru Level 13
Guru Level 13
Příspěvky: 21113
Registrován: září 06
Bydliště: Zlín - České Budějovice
Pohlaví: Muž
Stav:
Offline

Re: prosím o kontrolu logu

Příspěvekod memphisto » 13 led 2013 18:14

- Takže spus znovu MbAM a dej Scan
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Show Results
- ujistit se že máš zatrhnuté všechny vypsané nálezy a klikni na tlačítko Remove Selected
- když skončí odstraňování tak se ti zobrazí log, tak ho sem dej.
- pak zvol v programu OK a pak program ukonči přes Exit

Stáhni si TDSSKiller

Na svojí plochu. Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller.2.2.7.1._(datum)_log.txt , vlož sem prosím celý obsah logu.

Vypni rezidentní štít antiviru a antispywaru
Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud bude po kontrole problém spustit aplikace nebo bude vyskakovat hláška o pokusu použít neplatnou operaci na klíč registru, který je oznaèen pro odstranění, stačí restartovat počítač.
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji

dezire
nováček
Příspěvky: 11
Registrován: srpen 11
Pohlaví: Žena
Stav:
Offline

Re: prosím o kontrolu logu

Příspěvekod dezire » 14 led 2013 18:14

Vše uděláno dle návodu a zde jsou logy :

Malwarebytes Anti-Malware 1.70.0.1100
http://www.malwarebytes.org

Verze: v2013.01.14.06

Windows XP Service Pack 3 x86 FAT32
Internet Explorer 6.0.2900.5512
Ferda :: ACER-0613CCA6BC [administrátor]

14.1.2013 16:02:21
mbam-log-2013-01-14 (16-02-21).txt

Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 227014
Uplynulý čas: 13 minut, 32 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 2
HKLM\SOFTWARE\Microsoft\Security Center|AntiVirusDisableNotify (PUM.Disabled.SecurityCenter) -> Špatný: (1) Dobrý: (0) -> Přesun do karantény a opravení se zdařilo.
HKLM\SOFTWARE\Microsoft\Security Center|FirewallDisableNotify (PUM.Disabled.SecurityCenter) -> Špatný: (1) Dobrý: (0) -> Přesun do karantény a opravení se zdařilo.

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 1
C:\WINDOWS\system32\winrtsnr.txt (Malware.Trace) -> Přesun do karantény a smazání se zdařilo.

(konec)




16:20:57.0562 3364 TDSS rootkit removing tool 2.8.15.0 Oct 31 2012 21:47:35
16:20:57.0906 3364 ============================================================
16:20:57.0906 3364 Current date / time: 2013/01/14 16:20:57.0906
16:20:57.0906 3364 SystemInfo:
16:20:57.0906 3364
16:20:57.0906 3364 OS Version: 5.1.2600 ServicePack: 3.0
16:20:57.0906 3364 Product type: Workstation
16:20:57.0906 3364 ComputerName: ACER-0613CCA6BC
16:20:57.0906 3364 UserName: Ferda
16:20:57.0906 3364 Windows directory: C:\WINDOWS
16:20:57.0906 3364 System windows directory: C:\WINDOWS
16:20:57.0906 3364 Processor architecture: Intel x86
16:20:57.0906 3364 Number of processors: 1
16:20:57.0906 3364 Page size: 0x1000
16:20:57.0906 3364 Boot type: Normal boot
16:20:57.0906 3364 ============================================================
16:20:59.0156 3364 Drive \Device\Harddisk0\DR0 - Size: 0x1BF2976000 (111.79 Gb), SectorSize: 0x200, Cylinders: 0x3901, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
16:20:59.0156 3364 ============================================================
16:20:59.0171 3364 \Device\Harddisk0\DR0:
16:20:59.0171 3364 MBR partitions:
16:20:59.0171 3364 \Device\Harddisk0\DR0\Partition1: MBR, Type 0xC, StartLBA 0x9C263D, BlocksNum 0x6A6B0A2
16:20:59.0171 3364 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x742D6DF, BlocksNum 0x6B660E2
16:20:59.0171 3364 ============================================================
16:20:59.0171 3364 C: <-> \Device\Harddisk0\DR0\Partition1
16:20:59.0218 3364 D: <-> \Device\Harddisk0\DR0\Partition2
16:20:59.0218 3364 ============================================================
16:20:59.0218 3364 Initialize success
16:20:59.0218 3364 ============================================================
16:21:03.0656 2732 ============================================================
16:21:03.0656 2732 Scan started
16:21:03.0656 2732 Mode: Manual;
16:21:03.0656 2732 ============================================================
16:21:04.0546 2732 ================ Scan system memory ========================
16:21:04.0546 2732 System memory - ok
16:21:04.0546 2732 ================ Scan services =============================
16:21:04.0656 2732 Abiosdsk - ok
16:21:04.0718 2732 [ 6ABB91494FE6C59089B9336452AB2EA3 ] abp480n5 C:\WINDOWS\system32\DRIVERS\ABP480N5.SYS
16:21:04.0734 2732 abp480n5 - ok
16:21:04.0750 2732 [ 4FE34F1F3126B61FCC6B2043AA8112C9 ] ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys
16:21:04.0781 2732 ACPI - ok
16:21:04.0796 2732 [ AFDFF022A01F0B11C776F0860C3B282F ] ACPIEC C:\WINDOWS\system32\DRIVERS\ACPIEC.sys
16:21:04.0812 2732 ACPIEC - ok
16:21:04.0828 2732 Ad-Watch Connect Filter - ok
16:21:04.0906 2732 [ 424877CB9D5517F980FF7BACA2EB379D ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
16:21:04.0906 2732 AdobeFlashPlayerUpdateSvc - ok
16:21:04.0937 2732 [ 9A11864873DA202C996558B2106B0BBC ] adpu160m C:\WINDOWS\system32\DRIVERS\adpu160m.sys
16:21:04.0953 2732 adpu160m - ok
16:21:05.0015 2732 [ 8BED39E3C35D6A489438B8141717A557 ] aec C:\WINDOWS\system32\drivers\aec.sys
16:21:05.0015 2732 aec - ok
16:21:05.0062 2732 [ 1E44BC1E83D8FD2305F8D452DB109CF9 ] AFD C:\WINDOWS\System32\drivers\afd.sys
16:21:05.0093 2732 AFD - ok
16:21:05.0125 2732 [ 08FD04AA961BDC77FB983F328334E3D7 ] agp440 C:\WINDOWS\system32\DRIVERS\agp440.sys
16:21:05.0140 2732 agp440 - ok
16:21:05.0156 2732 [ 03A7E0922ACFE1B07D5DB2EEB0773063 ] agpCPQ C:\WINDOWS\system32\DRIVERS\agpCPQ.sys
16:21:05.0187 2732 agpCPQ - ok
16:21:05.0203 2732 [ C23EA9B5F46C7F7910DB3EAB648FF013 ] Aha154x C:\WINDOWS\system32\DRIVERS\aha154x.sys
16:21:05.0218 2732 Aha154x - ok
16:21:05.0234 2732 [ 19DD0FB48B0C18892F70E2E7D61A1529 ] aic78u2 C:\WINDOWS\system32\DRIVERS\aic78u2.sys
16:21:05.0250 2732 aic78u2 - ok
16:21:05.0265 2732 [ B7FE594A7468AA0132DEB03FB8E34326 ] aic78xx C:\WINDOWS\system32\DRIVERS\aic78xx.sys
16:21:05.0281 2732 aic78xx - ok
16:21:05.0546 2732 [ E0A6FA244B8624D78FE5FF6F56A33BAE ] Alerter C:\WINDOWS\system32\alrsvc.dll
16:21:05.0562 2732 Alerter - ok
16:21:05.0625 2732 [ 88842DE939A827577BF24243699AC80A ] ALG C:\WINDOWS\System32\alg.exe
16:21:05.0625 2732 ALG - ok
16:21:05.0640 2732 [ 1140AB9938809700B46BB88E46D72A96 ] AliIde C:\WINDOWS\system32\DRIVERS\aliide.sys
16:21:05.0656 2732 AliIde - ok
16:21:05.0671 2732 [ CB08AED0DE2DD889A8A820CD8082D83C ] alim1541 C:\WINDOWS\system32\DRIVERS\alim1541.sys
16:21:05.0703 2732 alim1541 - ok
16:21:05.0718 2732 [ 95B4FB835E28AA1336CEEB07FD5B9398 ] amdagp C:\WINDOWS\system32\DRIVERS\amdagp.sys
16:21:05.0734 2732 amdagp - ok
16:21:05.0750 2732 [ 79F5ADD8D24BD6893F2903A3E2F3FAD6 ] amsint C:\WINDOWS\system32\DRIVERS\amsint.sys
16:21:05.0765 2732 amsint - ok
16:21:05.0828 2732 [ BAA6B3CC74A4377D063C5A92DD9C4098 ] AR5211 C:\WINDOWS\system32\DRIVERS\ar5211.sys
16:21:05.0859 2732 AR5211 - ok
16:21:05.0906 2732 [ B5B8A80875C1DEDEDA8B02765642C32F ] Arp1394 C:\WINDOWS\system32\DRIVERS\arp1394.sys
16:21:05.0921 2732 Arp1394 - ok
16:21:05.0937 2732 [ 62D318E9A0C8FC9B780008E724283707 ] asc C:\WINDOWS\system32\DRIVERS\asc.sys
16:21:05.0953 2732 asc - ok
16:21:05.0984 2732 [ 69EB0CC7714B32896CCBFD5EDCBEA447 ] asc3350p C:\WINDOWS\system32\DRIVERS\asc3350p.sys
16:21:06.0000 2732 asc3350p - ok
16:21:06.0015 2732 [ 5D8DE112AA0254B907861E9E9C31D597 ] asc3550 C:\WINDOWS\system32\DRIVERS\asc3550.sys
16:21:06.0031 2732 asc3550 - ok
16:21:06.0125 2732 [ 0E5E4957549056E2BF2C49F4F6B601AD ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
16:21:06.0140 2732 aspnet_state - ok
16:21:06.0171 2732 [ B153AFFAC761E7F5FCFA822B9C4E97BC ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys
16:21:06.0187 2732 AsyncMac - ok
16:21:06.0203 2732 [ 9F3A2F5AA6875C72BF062C712CFA2674 ] atapi C:\WINDOWS\system32\DRIVERS\atapi.sys
16:21:06.0203 2732 atapi - ok
16:21:06.0218 2732 Atdisk - ok
16:21:06.0250 2732 [ 9916C1225104BA14794209CFA8012159 ] Atmarpc C:\WINDOWS\system32\DRIVERS\atmarpc.sys
16:21:06.0265 2732 Atmarpc - ok
16:21:06.0390 2732 [ DE31B88962A8645DBA5A37B993E7B0F1 ] AudioSrv C:\WINDOWS\System32\audiosrv.dll
16:21:06.0390 2732 AudioSrv - ok
16:21:06.0421 2732 [ D9F724AA26C010A217C97606B160ED68 ] audstub C:\WINDOWS\system32\DRIVERS\audstub.sys
16:21:06.0437 2732 audstub - ok
16:21:06.0968 2732 [ 4AFC14AFA58878FAA1D249E7E90EA54B ] AVGIDSAgent C:\Program Files\AVG\AVG2013\avgidsagent.exe
16:21:07.0171 2732 AVGIDSAgent - ok
16:21:07.0281 2732 [ 7BB2C605094DBCA536D127B434214862 ] AVGIDSDriver C:\WINDOWS\system32\DRIVERS\avgidsdriverx.sys
16:21:07.0296 2732 AVGIDSDriver - ok
16:21:07.0359 2732 [ 8F50F98686C9A397A19FCBAE284DB1C5 ] AVGIDSHX C:\WINDOWS\system32\DRIVERS\avgidshx.sys
16:21:07.0375 2732 AVGIDSHX - ok
16:21:07.0406 2732 [ A8DE230CC8536790CA07D37FBCD87A74 ] AVGIDSShim C:\WINDOWS\system32\DRIVERS\avgidsshimx.sys
16:21:07.0421 2732 AVGIDSShim - ok
16:21:07.0453 2732 [ D53D35031365A0ECCB1DC1BC1B15B18E ] Avgldx86 C:\WINDOWS\system32\DRIVERS\avgldx86.sys
16:21:07.0484 2732 Avgldx86 - ok
16:21:07.0515 2732 [ 95889A9D23F3133250FA8AD13C982D58 ] Avglogx C:\WINDOWS\system32\DRIVERS\avglogx.sys
16:21:07.0546 2732 Avglogx - ok
16:21:07.0593 2732 [ AF7AA9BA434CD28833A66E90993E8DFD ] Avgmfx86 C:\WINDOWS\system32\DRIVERS\avgmfx86.sys
16:21:07.0609 2732 Avgmfx86 - ok
16:21:07.0687 2732 [ F3D57358DE0B8B3491013C615754A7C7 ] Avgrkx86 C:\WINDOWS\system32\DRIVERS\avgrkx86.sys
16:21:07.0703 2732 Avgrkx86 - ok
16:21:07.0734 2732 [ BA73B38E9033FC6018DB736B635706AE ] Avgtdix C:\WINDOWS\system32\DRIVERS\avgtdix.sys
16:21:07.0765 2732 Avgtdix - ok
16:21:07.0828 2732 [ C6B83088D7EE2D3212AF7F2515E17725 ] avgtp C:\WINDOWS\system32\drivers\avgtpx86.sys
16:21:07.0843 2732 avgtp - ok
16:21:07.0921 2732 [ 6B72E1E329C4E98C6B6FDD2D265E3BA3 ] avgwd C:\Program Files\AVG\AVG2013\avgwdsvc.exe
16:21:07.0937 2732 avgwd - ok
16:21:07.0937 2732 AWService - ok
16:21:08.0000 2732 [ C768C8A463D32C219CE291645A0621A4 ] bcm4sbxp C:\WINDOWS\system32\DRIVERS\bcm4sbxp.sys
16:21:08.0015 2732 bcm4sbxp - ok
16:21:08.0062 2732 [ DA1F27D85E0D1525F6621372E7B685E9 ] Beep C:\WINDOWS\system32\drivers\Beep.sys
16:21:08.0062 2732 Beep - ok
16:21:08.0203 2732 [ 19395D092FD85DDC2D9C7729CF5A2AC8 ] BITS C:\WINDOWS\system32\qmgr.dll
16:21:08.0218 2732 BITS - ok
16:21:08.0265 2732 [ F934D1B230F84E1D19DD00AC5A7A83ED ] Bridge C:\WINDOWS\system32\DRIVERS\bridge.sys
16:21:08.0281 2732 Bridge - ok
16:21:08.0296 2732 [ F934D1B230F84E1D19DD00AC5A7A83ED ] BridgeMP C:\WINDOWS\system32\DRIVERS\bridge.sys
16:21:08.0296 2732 BridgeMP - ok
16:21:08.0390 2732 [ 249276D3EF1E74B992299CB96099E4D7 ] Browser C:\WINDOWS\System32\browser.dll
16:21:08.0390 2732 Browser - ok
16:21:08.0421 2732 [ B279426E3C0C344893ED78A613A73BDE ] BthEnum C:\WINDOWS\system32\DRIVERS\BthEnum.sys
16:21:08.0437 2732 BthEnum - ok
16:21:08.0468 2732 [ 80602B8746D3738F5886CE3D67EF06B6 ] BthPan C:\WINDOWS\system32\DRIVERS\bthpan.sys
16:21:08.0484 2732 BthPan - ok
16:21:08.0562 2732 [ F338662A6C1FC11DD9508F6DFF2C06A2 ] BTHPORT C:\WINDOWS\system32\Drivers\BTHport.sys
16:21:08.0578 2732 BTHPORT - ok
16:21:08.0625 2732 [ 70CA4B3F634C9DCA200832F8DA76E009 ] BthServ C:\WINDOWS\System32\bthserv.dll
16:21:08.0640 2732 BthServ - ok
16:21:08.0671 2732 [ 61364CD71EF63B0F038B7E9DF00F1EFA ] BTHUSB C:\WINDOWS\system32\Drivers\BTHUSB.sys
16:21:08.0687 2732 BTHUSB - ok
16:21:08.0796 2732 [ B2C100ADE3A01B663CAA7EB68EE80A51 ] Cam5603D C:\WINDOWS\system32\Drivers\BisonCam.sys
16:21:08.0828 2732 Cam5603D - ok
16:21:08.0859 2732 [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf C:\WINDOWS\system32\DRIVERS\cbidf2k.sys
16:21:08.0875 2732 cbidf - ok
16:21:08.0890 2732 [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf2k C:\WINDOWS\system32\drivers\cbidf2k.sys
16:21:08.0890 2732 cbidf2k - ok
16:21:08.0937 2732 [ 0BE5AEF125BE881C4F854C554F2B025C ] CCDECODE C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
16:21:08.0937 2732 CCDECODE - ok
16:21:08.0968 2732 [ F3EC03299634490E97BBCE94CD2954C7 ] cd20xrnt C:\WINDOWS\system32\DRIVERS\cd20xrnt.sys
16:21:08.0984 2732 cd20xrnt - ok
16:21:09.0000 2732 [ C1B486A7658353D33A10CC15211A873B ] Cdaudio C:\WINDOWS\system32\drivers\Cdaudio.sys
16:21:09.0015 2732 Cdaudio - ok
16:21:09.0031 2732 [ C885B02847F5D2FD45A24E219ED93B32 ] Cdfs C:\WINDOWS\system32\drivers\Cdfs.sys
16:21:09.0046 2732 Cdfs - ok
16:21:09.0078 2732 [ 1F4260CC5B42272D71F79E570A27A4FE ] Cdrom C:\WINDOWS\system32\DRIVERS\cdrom.sys
16:21:09.0078 2732 Cdrom - ok
16:21:09.0109 2732 Changer - ok
16:21:09.0203 2732 [ E390DC1D7C461D7D56EC53402F329928 ] CiSvc C:\WINDOWS\system32\cisvc.exe
16:21:09.0218 2732 CiSvc - ok
16:21:09.0390 2732 [ D5C2B2085086C2B594502E23913D1CB8 ] CLCapSvc C:\Program Files\Acer\Acer Arcade\Kernel\TV\CLCapSvc.exe
16:21:09.0390 2732 CLCapSvc - ok
16:21:09.0453 2732 [ 064507A8DFA8C5C7E2FFDDD3E6F424FA ] ClipSrv C:\WINDOWS\system32\clipsrv.exe
16:21:09.0468 2732 ClipSrv - ok
16:21:09.0546 2732 [ D87ACAED61E417BBA546CED5E7E36D9C ] clr_optimization_v2.0.50727_32 C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
16:21:09.0546 2732 clr_optimization_v2.0.50727_32 - ok
16:21:09.0625 2732 [ 2303219FA3D03DF12636DBB7AD8B6801 ] CLSched C:\Program Files\Acer\Acer Arcade\Kernel\TV\CLSched.exe
16:21:09.0625 2732 CLSched - ok
16:21:09.0656 2732 [ 0F6C187D38D98F8DF904589A5F94D411 ] CmBatt C:\WINDOWS\system32\DRIVERS\CmBatt.sys
16:21:09.0671 2732 CmBatt - ok
16:21:09.0687 2732 [ 964D0F042ACA51D5644779EB9D9EE40F ] CmdIde C:\WINDOWS\system32\DRIVERS\cmdide.sys
16:21:09.0703 2732 CmdIde - ok
16:21:09.0718 2732 [ 6E4C9F21F0FAE8940661144F41B13203 ] Compbatt C:\WINDOWS\system32\DRIVERS\compbatt.sys
16:21:09.0734 2732 Compbatt - ok
16:21:09.0859 2732 COMSysApp - ok
16:21:09.0890 2732 [ 3EE529119EED34CD212A215E8C40D4B6 ] Cpqarray C:\WINDOWS\system32\DRIVERS\cpqarray.sys
16:21:09.0906 2732 Cpqarray - ok
16:21:09.0937 2732 [ D01F685F8B4598D144B0CCE9FF95D8D5 ] cpudrv C:\Program Files\SystemRequirementsLab\cpudrv.sys
16:21:09.0953 2732 cpudrv - ok
16:21:10.0031 2732 [ F3AB0933CBD166D271992F411C27CCAF ] CryptSvc C:\WINDOWS\System32\cryptsvc.dll
16:21:10.0046 2732 CryptSvc - ok
16:21:10.0078 2732 [ 5B417ED5B49D5A65355A81A2A5FBC1E0 ] CyberLink Media Library Service C:\Program Files\Acer\Acer Arcade\Kernel\CLML_NTService\CLMLServer.exe
16:21:10.0078 2732 CyberLink Media Library Service - ok
16:21:10.0109 2732 [ E550E7418984B65A78299D248F0A7F36 ] dac2w2k C:\WINDOWS\system32\DRIVERS\dac2w2k.sys
16:21:10.0140 2732 dac2w2k - ok
16:21:10.0156 2732 [ 683789CAA3864EB46125AE86FF677D34 ] dac960nt C:\WINDOWS\system32\DRIVERS\dac960nt.sys
16:21:10.0171 2732 dac960nt - ok
16:21:10.0296 2732 [ BE27674D1CBC3214AEC84B4336A38BBF ] DcomLaunch C:\WINDOWS\system32\rpcss.dll
16:21:10.0312 2732 DcomLaunch - ok
16:21:10.0375 2732 [ 8C9A53E285AC5E6704844D0459EC85BE ] Dhcp C:\WINDOWS\System32\dhcpcsvc.dll
16:21:10.0375 2732 Dhcp - ok
16:21:10.0406 2732 [ 044452051F3E02E7963599FC8F4F3E25 ] Disk C:\WINDOWS\system32\DRIVERS\disk.sys
16:21:10.0421 2732 Disk - ok
16:21:10.0453 2732 [ 08D30AF92C270F2E76787C81589DBAD6 ] DKbFltr C:\WINDOWS\system32\DRIVERS\DKbFltr.sys
16:21:10.0468 2732 DKbFltr - ok
16:21:10.0531 2732 dmadmin - ok
16:21:10.0656 2732 [ DB5FD2BF5B07DC54BFCB3664FF05BD7C ] dmboot C:\WINDOWS\system32\drivers\dmboot.sys
16:21:10.0687 2732 dmboot - ok
16:21:10.0734 2732 [ FFF1720AF51171F32F1EAD5CF71F2810 ] dmio C:\WINDOWS\system32\drivers\dmio.sys
16:21:10.0750 2732 dmio - ok
16:21:10.0765 2732 [ E9317282A63CA4D188C0DF5E09C6AC5F ] dmload C:\WINDOWS\system32\drivers\dmload.sys
16:21:10.0781 2732 dmload - ok
16:21:10.0843 2732 [ 2BFEFE9E865655A76982F050450B9591 ] dmserver C:\WINDOWS\System32\dmserver.dll
16:21:10.0859 2732 dmserver - ok
16:21:10.0921 2732 [ 8A208DFCF89792A484E76C40E5F50B45 ] DMusic C:\WINDOWS\system32\drivers\DMusic.sys
16:21:10.0921 2732 DMusic - ok
16:21:11.0000 2732 [ DFAA406BF19F4EE806A6F8D4342137F7 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll
16:21:11.0015 2732 Dnscache - ok
16:21:11.0093 2732 [ 4A3E2BD20157A0946751229E92EB8621 ] Dot3svc C:\WINDOWS\System32\dot3svc.dll
16:21:11.0140 2732 Dot3svc - ok
16:21:11.0171 2732 [ 40F3B93B4E5B0126F2F5C0A7A5E22660 ] dpti2o C:\WINDOWS\system32\DRIVERS\dpti2o.sys
16:21:11.0187 2732 dpti2o - ok
16:21:11.0203 2732 [ 8F5FCFF8E8848AFAC920905FBD9D33C8 ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys
16:21:11.0203 2732 drmkaud - ok
16:21:11.0218 2732 EagleNT - ok
16:21:11.0234 2732 EagleXNt - ok
16:21:11.0296 2732 [ 0887D9C2BE8D940778CAD1E3B85F2A41 ] EapHost C:\WINDOWS\System32\eapsvc.dll
16:21:11.0312 2732 EapHost - ok
16:21:11.0343 2732 [ 5AEE9EEDCFBF2B0F9DEC53C27EE722A3 ] EMSCR C:\WINDOWS\system32\DRIVERS\EMS7SK.sys
16:21:11.0359 2732 EMSCR - ok
16:21:11.0437 2732 [ A2A4912798F2BE706ABADD3D30800D16 ] ERSvc C:\WINDOWS\System32\ersvc.dll
16:21:11.0453 2732 ERSvc - ok
16:21:11.0468 2732 [ 8E56AB21D10C368029CEA57DE47D79C2 ] ESDCR C:\WINDOWS\system32\DRIVERS\ESD7SK.sys
16:21:11.0484 2732 ESDCR - ok
16:21:11.0500 2732 [ 0A58FADE5E12D3A611427292073362CB ] ESMCR C:\WINDOWS\system32\DRIVERS\ESM7SK.sys
16:21:11.0515 2732 ESMCR - ok
16:21:11.0562 2732 [ 076B1A923259F7A10998FA234A01D629 ] Ethpdrv C:\WINDOWS\system32\DRIVERS\ethpdrv.sys
16:21:11.0578 2732 Ethpdrv - ok
16:21:11.0687 2732 [ 9EF697AF07BB8DD82C3B02CA953A95B7 ] Eventlog C:\WINDOWS\system32\services.exe
16:21:11.0687 2732 Eventlog - ok
16:21:11.0765 2732 [ A371F11EF07653591C8DE26AFB13CE7F ] EventSystem C:\WINDOWS\system32\es.dll
16:21:11.0781 2732 EventSystem - ok
16:21:11.0843 2732 [ 13D0F39D356E70F0A5E80D7771382245 ] ewusbnet C:\WINDOWS\system32\DRIVERS\ewusbnet.sys
16:21:11.0859 2732 ewusbnet - ok
16:21:11.0890 2732 [ 38D332A6D56AF32635675F132548343E ] Fastfat C:\WINDOWS\system32\drivers\Fastfat.sys
16:21:11.0906 2732 Fastfat - ok
16:21:11.0984 2732 [ EE9A2B9EA968A792A053C9D1A86BF870 ] FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll
16:21:11.0984 2732 FastUserSwitchingCompatibility - ok
16:21:12.0062 2732 [ 2CD14C70D1D81AF054AA5ED8024DCAE6 ] Fax C:\WINDOWS\system32\fxssvc.exe
16:21:12.0093 2732 Fax - ok
16:21:12.0125 2732 [ 92CDD60B6730B9F50F6A1A0C1F8CDC81 ] Fdc C:\WINDOWS\system32\drivers\Fdc.sys
16:21:12.0140 2732 Fdc - ok
16:21:12.0171 2732 [ AC366695A0796560AA37215AD5762AAF ] Fips C:\WINDOWS\system32\drivers\Fips.sys
16:21:12.0187 2732 Fips - ok
16:21:12.0203 2732 [ 9D27E7B80BFCDF1CDD9B555862D5E7F0 ] Flpydisk C:\WINDOWS\system32\drivers\Flpydisk.sys
16:21:12.0203 2732 Flpydisk - ok
16:21:12.0234 2732 [ B2CF4B0786F8212CB92ED2B50C6DB6B0 ] FltMgr C:\WINDOWS\system32\drivers\fltmgr.sys
16:21:12.0265 2732 FltMgr - ok
16:21:12.0375 2732 [ 8BA7C024070F2B7FDD98ED8A4BA41789 ] FontCache3.0.0.0 C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
16:21:12.0406 2732 FontCache3.0.0.0 - ok
16:21:12.0421 2732 [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys
16:21:12.0437 2732 Fs_Rec - ok
16:21:12.0468 2732 [ 4E664D8541DB4A66B73A24257E322E1F ] Ftdisk C:\WINDOWS\system32\DRIVERS\ftdisk.sys
16:21:12.0484 2732 Ftdisk - ok
16:21:12.0531 2732 [ 0A02C63C8B144BD8C86B103DEE7C86A2 ] Gpc C:\WINDOWS\system32\DRIVERS\msgpc.sys
16:21:12.0546 2732 Gpc - ok
16:21:12.0625 2732 [ C3DB46765F31E9FAFB98C5642365C988 ] GT43XX C:\WINDOWS\system32\DRIVERS\gtwl5.sys
16:21:12.0640 2732 GT43XX - ok
16:21:12.0671 2732 [ A1459F7C1824C539D56E3F84EA749EB1 ] GTEDGWModem C:\WINDOWS\system32\DRIVERS\GTEDG.sys
16:21:12.0687 2732 GTEDGWModem - ok
16:21:12.0750 2732 [ B89D4B0520B31946F1302BD6BD4F3517 ] GTEDGWWNIC C:\WINDOWS\system32\DRIVERS\GTEDGNet.sys
16:21:12.0765 2732 GTEDGWWNIC - ok
16:21:12.0875 2732 [ 8F0DE4FEF8201E306F9938B0905AC96A ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
16:21:12.0875 2732 gupdate - ok
16:21:12.0890 2732 [ 8F0DE4FEF8201E306F9938B0905AC96A ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
16:21:12.0890 2732 gupdatem - ok
16:21:12.0937 2732 [ 833051C6C6C42117191935F734CFBD97 ] hamachi C:\WINDOWS\system32\DRIVERS\hamachi.sys
16:21:12.0968 2732 hamachi - ok
16:21:13.0000 2732 [ 573C7D0A32852B48F3058CFD8026F511 ] HDAudBus C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
16:21:13.0015 2732 HDAudBus - ok
16:21:13.0078 2732 [ FCFE31FB75F8A6295B6B0AF87A626282 ] helpsvc C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
16:21:13.0078 2732 helpsvc - ok
16:21:13.0140 2732 [ CCF82C5EC8A7326C3066DE870C06DAF1 ] HidUsb C:\WINDOWS\system32\DRIVERS\hidusb.sys
16:21:13.0156 2732 HidUsb - ok
16:21:13.0250 2732 [ 7A6B320928F86BC851530D63C82965D9 ] hkmsvc C:\WINDOWS\System32\kmsvc.dll
16:21:13.0281 2732 hkmsvc - ok
16:21:13.0328 2732 [ E4E0B356A8756066CF89080D9DA69F22 ] HPFXBULK C:\WINDOWS\system32\drivers\hpfxbulk.sys
16:21:13.0343 2732 HPFXBULK - ok
16:21:13.0375 2732 [ B028377DEA0546A5FCFBA928A8AEFAE0 ] hpn C:\WINDOWS\system32\DRIVERS\hpn.sys
16:21:13.0390 2732 hpn - ok
16:21:13.0515 2732 [ 38D6B51F04DEF7FB248FA56E4C47407E ] hpqcxs08 C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll
16:21:13.0515 2732 hpqcxs08 - ok
16:21:13.0562 2732 [ 3EE4A63539EC04EE2D4BD293985087AB ] hpqddsvc C:\Program Files\HP\Digital Imaging\bin\hpqddsvc.dll
16:21:13.0562 2732 hpqddsvc - ok
16:21:13.0625 2732 [ A902A7E76C245210EEE9EF5185158E9C ] HSFHWAZL C:\WINDOWS\system32\DRIVERS\HSFHWAZL.sys
16:21:13.0640 2732 HSFHWAZL - ok
16:21:13.0718 2732 [ C9F4E7DA78A02623ABF78A4A34CE79B1 ] HSF_DPV C:\WINDOWS\system32\DRIVERS\HSF_DPV.sys
16:21:13.0750 2732 HSF_DPV - ok
16:21:13.0828 2732 [ F80A415EF82CD06FFAF0D971528EAD38 ] HTTP C:\WINDOWS\system32\Drivers\HTTP.sys
16:21:13.0859 2732 HTTP - ok
16:21:13.0953 2732 [ 58FE2F2DA3BC5573F4A35B3760D3125F ] HTTPFilter C:\WINDOWS\System32\w3ssl.dll
16:21:13.0968 2732 HTTPFilter - ok
16:21:14.0015 2732 [ 8ADF5EF39E896A65BEDED878494EE2B6 ] hwdatacard C:\WINDOWS\system32\DRIVERS\ewusbmdm.sys
16:21:14.0031 2732 hwdatacard - ok
16:21:14.0125 2732 [ 83026E41D9960430491432DBD6AF969A ] hwusbfake C:\WINDOWS\system32\DRIVERS\ewusbfake.sys
16:21:14.0156 2732 hwusbfake - ok
16:21:14.0187 2732 [ 9368670BD426EBEA5E8B18A62416EC28 ] i2omgmt C:\WINDOWS\system32\drivers\i2omgmt.sys
16:21:14.0203 2732 i2omgmt - ok
16:21:14.0218 2732 [ F10863BF1CCC290BABD1A09188AE49E0 ] i2omp C:\WINDOWS\system32\DRIVERS\i2omp.sys
16:21:14.0234 2732 i2omp - ok
16:21:14.0265 2732 [ C528E27945367191E7BAE364930B6932 ] i8042prt C:\WINDOWS\system32\DRIVERS\i8042prt.sys
16:21:14.0281 2732 i8042prt - ok
16:21:14.0687 2732 [ 48846B31BE5A4FA662CCFDE7A1BA86B9 ] ialm C:\WINDOWS\system32\DRIVERS\igxpmp32.sys
16:21:14.0906 2732 ialm - ok
16:21:15.0078 2732 [ C01AC32DC5C03076CFB852CB5DA5229C ] idsvc C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
16:21:15.0437 2732 idsvc - ok
16:21:15.0500 2732 [ 083A052659F5310DD8B6A6CB05EDCF8E ] Imapi C:\WINDOWS\system32\DRIVERS\imapi.sys
16:21:15.0515 2732 Imapi - ok
16:21:15.0687 2732 [ F7B93AAFAD33B2320954C17E26C8D361 ] ImapiService C:\WINDOWS\system32\imapi.exe
16:21:15.0718 2732 ImapiService - ok
16:21:15.0750 2732 [ 4A40E045FAEE58631FD8D91AFC620719 ] ini910u C:\WINDOWS\system32\DRIVERS\ini910u.sys
16:21:15.0765 2732 ini910u - ok
16:21:15.0781 2732 int15.sys - ok
16:21:16.0093 2732 [ 909D03B3B7FB7C830B74F74F4D0EA7CE ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RtkHDAud.sys
16:21:16.0218 2732 IntcAzAudAddService - ok
16:21:16.0312 2732 [ 57D928E548B38502ABBA7A77A6EB7312 ] IntelIde C:\WINDOWS\system32\DRIVERS\intelide.sys
16:21:16.0328 2732 IntelIde - ok
16:21:16.0343 2732 [ 27B290D632AF2CF3CF40BFDDB7370985 ] intelppm C:\WINDOWS\system32\DRIVERS\intelppm.sys
16:21:16.0359 2732 intelppm - ok
16:21:16.0421 2732 [ 3BB22519A194418D5FEC05D800A19AD0 ] Ip6Fw C:\WINDOWS\system32\drivers\ip6fw.sys
16:21:16.0437 2732 Ip6Fw - ok
16:21:16.0468 2732 [ 731F22BA402EE4B62748ADAF6363C182 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
16:21:16.0484 2732 IpFilterDriver - ok
16:21:16.0515 2732 [ B87AB476DCF76E72010632B5550955F5 ] IpInIp C:\WINDOWS\system32\DRIVERS\ipinip.sys
16:21:16.0531 2732 IpInIp - ok
16:21:16.0562 2732 [ CC748EA12C6EFFDE940EE98098BF96BB ] IpNat C:\WINDOWS\system32\DRIVERS\ipnat.sys
16:21:16.0578 2732 IpNat - ok
16:21:16.0625 2732 [ 23C74D75E36E7158768DD63D92789A91 ] IPSec C:\WINDOWS\system32\DRIVERS\ipsec.sys
16:21:16.0640 2732 IPSec - ok
16:21:16.0687 2732 [ ACA5E7B54409F9CB5EED97ED0C81120E ] irda C:\WINDOWS\system32\DRIVERS\irda.sys
16:21:16.0718 2732 irda - ok
16:21:16.0750 2732 [ C93C9FF7B04D772627A3646D89F7BF89 ] IRENUM C:\WINDOWS\system32\DRIVERS\irenum.sys
16:21:16.0750 2732 IRENUM - ok
16:21:16.0859 2732 [ 8024EA8C5B2D2A4D201F418B0AADB804 ] Irmon C:\WINDOWS\System32\irmon.dll
16:21:16.0875 2732 Irmon - ok
16:21:16.0906 2732 [ CC9F8A2D60AED1A51A3AC34C59B987AE ] isapnp C:\WINDOWS\system32\DRIVERS\isapnp.sys
16:21:16.0921 2732 isapnp - ok
16:21:17.0031 2732 [ A12175F063302CD68F8FC6D572D7E5FD ] JavaQuickStarterService C:\Program Files\Java\jre7\bin\jqs.exe
16:21:17.0062 2732 JavaQuickStarterService - ok
16:21:17.0093 2732 [ 1B6162FE7F66B1A71A4B70F941C4AA9B ] Kbdclass C:\WINDOWS\system32\DRIVERS\kbdclass.sys
16:21:17.0109 2732 Kbdclass - ok
16:21:17.0140 2732 [ 86C8F23616C6C6E5B2776901C17B945B ] kbdhid C:\WINDOWS\system32\DRIVERS\kbdhid.sys
16:21:17.0156 2732 kbdhid - ok
16:21:17.0187 2732 [ 692BCF44383D056AED41B045A323D378 ] kmixer C:\WINDOWS\system32\drivers\kmixer.sys
16:21:17.0203 2732 kmixer - ok
16:21:17.0218 2732 [ B467646C54CC746128904E1654C750C1 ] KSecDD C:\WINDOWS\system32\drivers\KSecDD.sys
16:21:17.0250 2732 KSecDD - ok
16:21:17.0281 2732 [ 3428E8F86F8ADD36B42FB23542C7B3E4 ] lanmanserver C:\WINDOWS\System32\srvsvc.dll
16:21:17.0296 2732 lanmanserver - ok
16:21:17.0437 2732 [ 936C1D110232D23B621CB0196E4F80F0 ] lanmanworkstation C:\WINDOWS\System32\wkssvc.dll
16:21:17.0437 2732 lanmanworkstation - ok
16:21:17.0453 2732 lbrtfdc - ok
16:21:17.0531 2732 [ 86E8BCAA91FC2ACFACD99CF2BF9F1F47 ] LightScribeService C:\Program Files\Common Files\LightScribe\LSSrvc.exe
16:21:17.0531 2732 LightScribeService - ok
16:21:17.0593 2732 [ 0AB159F536E3E8F7F07113702A07CCA5 ] LmHosts C:\WINDOWS\System32\lmhsvc.dll
16:21:17.0593 2732 LmHosts - ok
16:21:17.0640 2732 [ 0B058116D3D4ECCA7DED38F16E0581B2 ] massfilter C:\WINDOWS\system32\drivers\massfilter.sys
16:21:17.0656 2732 massfilter - ok
16:21:17.0687 2732 [ E246A32C445056996074A397DA56E815 ] mdmxsdk C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys
16:21:17.0703 2732 mdmxsdk - ok
16:21:17.0765 2732 [ 221CD1C815B8A6B79389C3F5D1018DE8 ] Messenger C:\WINDOWS\System32\msgsvc.dll
16:21:17.0781 2732 Messenger - ok
16:21:17.0796 2732 [ 4AE068242760A1FB6E1A44BF4E16AFA6 ] mnmdd C:\WINDOWS\system32\drivers\mnmdd.sys
16:21:17.0812 2732 mnmdd - ok
16:21:17.0890 2732 [ 9A57D046F88F4B69751B11FD40088A61 ] mnmsrvc C:\WINDOWS\system32\mnmsrvc.exe
16:21:17.0906 2732 mnmsrvc - ok
16:21:17.0937 2732 [ 44032B0C6D9954D3FD26438330B99EE7 ] Modem C:\WINDOWS\system32\drivers\Modem.sys
16:21:17.0937 2732 Modem - ok
16:21:17.0953 2732 [ 4CB582831DBDE63CE43B45D771218374 ] Mouclass C:\WINDOWS\system32\DRIVERS\mouclass.sys
16:21:17.0968 2732 Mouclass - ok
16:21:18.0031 2732 [ BB269EBA740737AB749B214D568B6812 ] mouhid C:\WINDOWS\system32\DRIVERS\mouhid.sys
16:21:18.0046 2732 mouhid - ok
16:21:18.0093 2732 [ A80B9A0BAD1B73637DBCBBA7DF72D3FD ] MountMgr C:\WINDOWS\system32\drivers\MountMgr.sys
16:21:18.0109 2732 MountMgr - ok
16:21:18.0187 2732 [ 730A519505621DF46BCBF9CDAC9FB6AD ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
16:21:18.0218 2732 MozillaMaintenance - ok
16:21:18.0281 2732 [ C0F8E0C2C3C0437CF37C6781896DC3EC ] MPE C:\WINDOWS\system32\DRIVERS\MPE.sys
16:21:18.0296 2732 MPE - ok
16:21:18.0312 2732 [ 3F4BB95E5A44F3BE34824E8E7CAF0737 ] mraid35x C:\WINDOWS\system32\DRIVERS\mraid35x.sys
16:21:18.0328 2732 mraid35x - ok
16:21:18.0359 2732 [ 11D42BB6206F33FBB3BA0288D3EF81BD ] MRxDAV C:\WINDOWS\system32\DRIVERS\mrxdav.sys
16:21:18.0359 2732 MRxDAV - ok
16:21:18.0453 2732 [ 7D304A5EB4344EBEEAB53A2FE3FFB9F0 ] MRxSmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
16:21:18.0484 2732 MRxSmb - ok
16:21:18.0562 2732 [ 6DB4D1521CABA9A5FFAB54ADE0AE867D ] MSDTC C:\WINDOWS\system32\msdtc.exe
16:21:18.0578 2732 MSDTC - ok
16:21:18.0625 2732 [ C941EA2454BA8350021D774DAF0F1027 ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys
16:21:18.0640 2732 Msfs - ok
16:21:18.0703 2732 MSIServer - ok
16:21:18.0750 2732 [ D1575E71568F4D9E14CA56B7B0453BF1 ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys
16:21:18.0765 2732 MSKSSRV - ok
16:21:18.0796 2732 [ 325BB26842FC7CCC1FCCE2C457317F3E ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys
16:21:18.0812 2732 MSPCLOCK - ok
16:21:18.0859 2732 [ BAD59648BA099DA4A17680B39730CB3D ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys
16:21:18.0875 2732 MSPQM - ok
16:21:18.0906 2732 [ AF5F4F3F14A8EA2C26DE30F7A1E17136 ] mssmbios C:\WINDOWS\system32\DRIVERS\mssmbios.sys
16:21:18.0921 2732 mssmbios - ok
16:21:18.0968 2732 [ E53736A9E30C45FA9E7B5EAC55056D1D ] MSTEE C:\WINDOWS\system32\drivers\MSTEE.sys
16:21:18.0984 2732 MSTEE - ok
16:21:19.0000 2732 [ DE6A75F5C270E756C5508D94B6CF68F5 ] Mup C:\WINDOWS\system32\drivers\Mup.sys
16:21:19.0031 2732 Mup - ok
16:21:19.0062 2732 [ 5B50F1B2A2ED47D560577B221DA734DB ] NABTSFEC C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
16:21:19.0078 2732 NABTSFEC - ok
16:21:19.0203 2732 [ 6EA362E9DB03D44F6B996F4D8BE237E9 ] napagent C:\WINDOWS\System32\qagentrt.dll
16:21:19.0218 2732 napagent - ok
16:21:19.0375 2732 [ B498A14133BD09AD0817590ACE4470AD ] NBService C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
16:21:19.0437 2732 NBService - ok
16:21:19.0484 2732 [ 1DF7F42665C94B825322FAE71721130D ] NDIS C:\WINDOWS\system32\drivers\NDIS.sys
16:21:19.0500 2732 NDIS - ok
16:21:19.0562 2732 [ 1F76996253071CBAE0A5AB5D8551EF88 ] NdisFilt C:\WINDOWS\system32\Drivers\NdisFilt.sys
16:21:19.0578 2732 NdisFilt - ok
16:21:19.0640 2732 [ 7FF1F1FD8609C149AA432F95A8163D97 ] NdisIP C:\WINDOWS\system32\DRIVERS\NdisIP.sys
16:21:19.0656 2732 NdisIP - ok
16:21:19.0703 2732 [ 0109C4F3850DFBAB279542515386AE22 ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys
16:21:19.0718 2732 NdisTapi - ok
16:21:19.0781 2732 [ F927A4434C5028758A842943EF1A3849 ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys
16:21:19.0781 2732 Ndisuio - ok
16:21:19.0828 2732 [ EDC1531A49C80614B2CFDA43CA8659AB ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys
16:21:19.0843 2732 NdisWan - ok
16:21:19.0875 2732 [ 9282BD12DFB069D3889EB3FCC1000A9B ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys
16:21:19.0890 2732 NDProxy - ok
16:21:19.0921 2732 [ 5D81CF9A2F1A3A756B66CF684911CDF0 ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys
16:21:19.0937 2732 NetBIOS - ok
16:21:19.0984 2732 [ 74B2B2F5BEA5E9A3DC021D685551BD3D ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys
16:21:20.0000 2732 NetBT - ok
16:21:20.0093 2732 [ 933DE774986EC85E48210C44AB431DE6 ] NetDDE C:\WINDOWS\system32\netdde.exe
16:21:20.0125 2732 NetDDE - ok
16:21:20.0140 2732 [ 933DE774986EC85E48210C44AB431DE6 ] NetDDEdsdm C:\WINDOWS\system32\netdde.exe
16:21:20.0140 2732 NetDDEdsdm - ok
16:21:20.0218 2732 [ ED0A176354487CEED65B80A7148AB739 ] Netlogon C:\WINDOWS\system32\lsass.exe
16:21:20.0218 2732 Netlogon - ok
16:21:20.0312 2732 [ 72E1E9E2977BE08BDEEDB6D8FD9D4D40 ] Netman C:\WINDOWS\System32\netman.dll
16:21:20.0312 2732 Netman - ok
16:21:20.0359 2732 [ 6A25F27202F3122A44A6B74EE46E7A76 ] NETMNT C:\WINDOWS\system32\DRIVERS\NETMNT.sys
16:21:20.0375 2732 NETMNT - ok
16:21:20.0468 2732 [ D34612C5D02D026535B3095D620626AE ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
16:21:20.0781 2732 NetTcpPortSharing - ok
16:21:20.0828 2732 [ E9E47CFB2D461FA0FC75B7A74C6383EA ] NIC1394 C:\WINDOWS\system32\DRIVERS\nic1394.sys
16:21:20.0843 2732 NIC1394 - ok
16:21:20.0953 2732 [ 39EE7C3BFBC64BA87CC8CF67386E814C ] Nla C:\WINDOWS\System32\mswsock.dll
16:21:20.0953 2732 Nla - ok
16:21:21.0062 2732 [ A328A46D87BB92CE4D8A4528E9D84787 ] NMIndexingService C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
16:21:21.0125 2732 NMIndexingService - ok
16:21:21.0171 2732 [ 357DDB51E03CAE598C096D95497373D0 ] nmwcd C:\WINDOWS\system32\drivers\ccdcmb.sys
16:21:21.0203 2732 nmwcd - ok
16:21:21.0234 2732 [ 7CD443F9D36C80E152FADB274089577A ] nmwcdc C:\WINDOWS\system32\drivers\ccdcmbo.sys
16:21:21.0250 2732 nmwcdc - ok
16:21:21.0281 2732 [ 3182D64AE053D6FB034F44B6DEF8034A ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys
16:21:21.0312 2732 Npfs - ok
16:21:21.0421 2732 npggsvc - ok
16:21:21.0500 2732 [ 78A08DD6A8D65E697C18E1DB01C5CDCA ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys
16:21:21.0531 2732 Ntfs - ok
16:21:21.0546 2732 [ 7F1C1F78D709C4A54CBB46EDE7E0B48D ] NTIDrvr C:\WINDOWS\system32\DRIVERS\NTIDrvr.sys
16:21:21.0562 2732 NTIDrvr - ok
16:21:21.0640 2732 [ ED0A176354487CEED65B80A7148AB739 ] NtLmSsp C:\WINDOWS\system32\lsass.exe
16:21:21.0656 2732 NtLmSsp - ok
16:21:21.0765 2732 [ 023DD70573D644F3D9C8B1258A7BFD08 ] NtmsSvc C:\WINDOWS\system32\ntmssvc.dll
16:21:21.0796 2732 NtmsSvc - ok
16:21:21.0828 2732 [ 73C1E1F395918BC2C6DD67AF7591A3AD ] Null C:\WINDOWS\system32\drivers\Null.sys
16:21:21.0843 2732 Null - ok
16:21:21.0875 2732 [ B305F3FAD35083837EF46A0BBCE2FC57 ] NwlnkFlt C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
16:21:21.0890 2732 NwlnkFlt - ok
16:21:21.0906 2732 [ C99B3415198D1AAB7227F2C88FD664B9 ] NwlnkFwd C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
16:21:21.0921 2732 NwlnkFwd - ok
16:21:21.0953 2732 [ CA33832DF41AFB202EE7AEB05145922F ] ohci1394 C:\WINDOWS\system32\DRIVERS\ohci1394.sys
16:21:21.0968 2732 ohci1394 - ok
16:21:22.0015 2732 [ EEAE713C70C53BDD8D3F6584804D0F79 ] OptionWWSC C:\WINDOWS\system32\DRIVERS\GTEDGSC.sys
16:21:22.0031 2732 OptionWWSC - ok
16:21:22.0062 2732 [ 26C4A4B64D1DD8E6FDFB2F4897BE029C ] OsaFsLoc C:\WINDOWS\system32\drivers\OsaFsLoc.sys
16:21:22.0078 2732 OsaFsLoc - ok
16:21:22.0140 2732 [ 9D1177C2A8DE936B33D85FF75E8CBF1A ] osaio C:\WINDOWS\system32\drivers\osaio.sys
16:21:22.0156 2732 osaio - ok
16:21:22.0218 2732 [ 3245BEE5176697FAF0744A2E1288DC77 ] osanbm C:\WINDOWS\system32\drivers\osanbm.sys
16:21:22.0234 2732 osanbm - ok
16:21:22.0312 2732 [ 7A56CF3E3F12E8AF599963B16F50FB6A ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
16:21:22.0343 2732 ose - ok
16:21:22.0406 2732 [ 46F8DB73B4A53E543F8E371DC7C75BAE ] Parport C:\WINDOWS\system32\drivers\Parport.sys
16:21:22.0421 2732 Parport - ok
16:21:22.0453 2732 [ BEB3BA25197665D82EC7065B724171C6 ] PartMgr C:\WINDOWS\system32\drivers\PartMgr.sys
16:21:22.0468 2732 PartMgr - ok
16:21:22.0500 2732 [ 1FAE19D0457176318BBA4A8795656EBC ] ParVdm C:\WINDOWS\system32\drivers\ParVdm.sys
16:21:22.0515 2732 ParVdm - ok
16:21:22.0546 2732 [ FD2041E9BA03DB7764B2248F02475079 ] pccsmcfd C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys
16:21:22.0562 2732 pccsmcfd - ok
16:21:22.0593 2732 [ 6CE351D149CB4BEFC702951E471E1730 ] PCI C:\WINDOWS\system32\DRIVERS\pci.sys
16:21:22.0640 2732 PCI - ok
16:21:22.0656 2732 PCIDump - ok
16:21:22.0671 2732 [ 2DA4EC85E0EA7A45C6B2A05820492D5A ] PCIIde C:\WINDOWS\system32\DRIVERS\pciide.sys
16:21:22.0703 2732 PCIIde - ok
16:21:22.0718 2732 [ 4FC31E6C19A5CE5198B1ABFF94CAE758 ] Pcmcia C:\WINDOWS\system32\DRIVERS\pcmcia.sys
16:21:22.0750 2732 Pcmcia - ok
16:21:22.0765 2732 PDCOMP - ok
16:21:22.0781 2732 PDFRAME - ok
16:21:22.0812 2732 PDRELI - ok
16:21:22.0828 2732 PDRFRAME - ok
16:21:22.0843 2732 [ 6C14B9C19BA84F73D3A86DBA11133101 ] perc2 C:\WINDOWS\system32\DRIVERS\perc2.sys
16:21:22.0859 2732 perc2 - ok
16:21:22.0875 2732 [ F50F7C27F131AFE7BEBA13E14A3B9416 ] perc2hib C:\WINDOWS\system32\DRIVERS\perc2hib.sys
16:21:22.0890 2732 perc2hib - ok
16:21:22.0953 2732 [ 5903FA75200807AD739286BBF40C4904 ] pfc C:\WINDOWS\system32\drivers\pfc.sys
16:21:22.0953 2732 pfc - ok
16:21:23.0093 2732 [ 9EF697AF07BB8DD82C3B02CA953A95B7 ] PlugPlay C:\WINDOWS\system32\services.exe
16:21:23.0109 2732 PlugPlay - ok
16:21:23.0156 2732 [ ED0A176354487CEED65B80A7148AB739 ] PolicyAgent C:\WINDOWS\system32\lsass.exe
16:21:23.0156 2732 PolicyAgent - ok
16:21:23.0187 2732 [ EFEEC01B1D3CF84F16DDD24D9D9D8F99 ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys
16:21:23.0218 2732 PptpMiniport - ok
16:21:23.0250 2732 [ ED0A176354487CEED65B80A7148AB739 ] ProtectedStorage C:\WINDOWS\system32\lsass.exe
16:21:23.0250 2732 ProtectedStorage - ok
16:21:23.0281 2732 [ 09298EC810B07E5D582CB3A3F9255424 ] PSched C:\WINDOWS\system32\DRIVERS\psched.sys
16:21:23.0312 2732 PSched - ok
16:21:23.0312 2732 [ 80D317BD1C3DBC5D4FE7B1678C60CADD ] Ptilink C:\WINDOWS\system32\DRIVERS\ptilink.sys
16:21:23.0343 2732 Ptilink - ok
16:21:23.0359 2732 [ 0A63FB54039EB5662433CABA3B26DBA7 ] ql1080 C:\WINDOWS\system32\DRIVERS\ql1080.sys
16:21:23.0375 2732 ql1080 - ok
16:21:23.0437 2732 [ 6503449E1D43A0FF0201AD5CB1B8C706 ] Ql10wnt C:\WINDOWS\system32\DRIVERS\ql10wnt.sys
16:21:23.0453 2732 Ql10wnt - ok
16:21:23.0484 2732 [ 156ED0EF20C15114CA097A34A30D8A01 ] ql12160 C:\WINDOWS\system32\DRIVERS\ql12160.sys
16:21:23.0500 2732 ql12160 - ok
16:21:23.0515 2732 [ 70F016BEBDE6D29E864C1230A07CC5E6 ] ql1240 C:\WINDOWS\system32\DRIVERS\ql1240.sys
16:21:23.0531 2732 ql1240 - ok
16:21:23.0562 2732 [ 907F0AEEA6BC451011611E732BD31FCF ] ql1280 C:\WINDOWS\system32\DRIVERS\ql1280.sys
16:21:23.0578 2732 ql1280 - ok
16:21:23.0609 2732 [ FE0D99D6F31E4FAD8159F690D68DED9C ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys
16:21:23.0625 2732 RasAcd - ok
16:21:23.0718 2732 [ 2B5E44EA009F2F374B980E1E9A70635D ] RasAuto C:\WINDOWS\System32\rasauto.dll
16:21:23.0734 2732 RasAuto - ok
16:21:23.0750 2732 [ 0207D26DDF796A193CCD9F83047BB5FC ] Rasirda C:\WINDOWS\system32\DRIVERS\rasirda.sys
16:21:23.0765 2732 Rasirda - ok
16:21:23.0796 2732 [ 11B4A627BC9614B885C4969BFA5FF8A6 ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
16:21:23.0812 2732 Rasl2tp - ok
16:21:23.0906 2732 [ D57554C664B64604BD1EE13EA2C07E77 ] RasMan C:\WINDOWS\System32\rasmans.dll
16:21:23.0906 2732 RasMan - ok
16:21:23.0937 2732 [ 5BC962F2654137C9909C3D4603587DEE ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys
16:21:23.0953 2732 RasPppoe - ok
16:21:23.0968 2732 [ FDBB1D60066FCFBB7452FD8F9829B242 ] Raspti C:\WINDOWS\system32\DRIVERS\raspti.sys
16:21:23.0984 2732 Raspti - ok
16:21:24.0031 2732 [ 7AD224AD1A1437FE28D89CF22B17780A ] Rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys
16:21:24.0046 2732 Rdbss - ok
16:21:24.0062 2732 [ 4912D5B403614CE99C28420F75353332 ] RDPCDD C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
16:21:24.0078 2732 RDPCDD - ok
16:21:24.0156 2732 [ 15CABD0F7C00C47C70124907916AF3F1 ] rdpdr C:\WINDOWS\system32\DRIVERS\rdpdr.sys
16:21:24.0187 2732 rdpdr - ok
16:21:24.0265 2732 [ 43AF5212BD8FB5BA6EED9754358BD8F7 ] RDPWD C:\WINDOWS\system32\drivers\RDPWD.sys
16:21:24.0281 2732 RDPWD - ok
16:21:24.0343 2732 [ C0D9D9711CB74EE9BC66353D8CBDAB0E ] RDSessMgr C:\WINDOWS\system32\sessmgr.exe
16:21:24.0375 2732 RDSessMgr - ok
16:21:24.0406 2732 [ 611BFD220305BE3A85AE876EA47D4AA5 ] redbook C:\WINDOWS\system32\DRIVERS\redbook.sys
16:21:24.0421 2732 redbook - ok
16:21:24.0500 2732 [ 127C26B5371651043450E52542099ABA ] RemoteAccess C:\WINDOWS\System32\mprdim.dll
16:21:24.0531 2732 RemoteAccess - ok
16:21:24.0546 2732 [ 851C30DF2807FCFA21E4C681A7D6440E ] RFCOMM C:\WINDOWS\system32\DRIVERS\rfcomm.sys
16:21:24.0578 2732 RFCOMM - ok
16:21:24.0671 2732 [ BD517C7FB119997EFFBE39D5E4B37B05 ] RichVideo C:\Program Files\CyberLink\Shared Files\RichVideo.exe
16:21:24.0687 2732 RichVideo - ok
16:21:24.0703 2732 RkHit - ok
16:21:24.0734 2732 [ 718B3BDC0BC3C2F7D065A53D26202AF9 ] RpcLocator C:\WINDOWS\system32\locator.exe
16:21:24.0750 2732 RpcLocator - ok
16:21:24.0906 2732 [ BE27674D1CBC3214AEC84B4336A38BBF ] RpcSs C:\WINDOWS\system32\rpcss.dll
16:21:24.0906 2732 RpcSs - ok
16:21:24.0953 2732 [ 09AB2E71E58B078038E3BFDBA7FFC984 ] RSVP C:\WINDOWS\system32\rsvp.exe
16:21:24.0984 2732 RSVP - ok
16:21:25.0015 2732 [ D507C1400284176573224903819FFDA3 ] rtl8139 C:\WINDOWS\system32\DRIVERS\RTL8139.SYS
16:21:25.0031 2732 rtl8139 - ok
16:21:25.0078 2732 [ ED0A176354487CEED65B80A7148AB739 ] SamSs C:\WINDOWS\system32\lsass.exe
16:21:25.0093 2732 SamSs - ok
16:21:25.0156 2732 [ 410046E401EB11E1E6749E9DEEA41D4A ] SCardSvr C:\WINDOWS\System32\SCardSvr.exe
16:21:25.0171 2732 SCardSvr - ok
16:21:25.0218 2732 [ 3FF232A7731621B8902D81D42418C93C ] Schedule C:\WINDOWS\system32\schedsvc.dll
16:21:25.0234 2732 Schedule - ok
16:21:25.0265 2732 [ 8D04819A3CE51B9EB47E5689B44D43C4 ] sdbus C:\WINDOWS\system32\DRIVERS\sdbus.sys
16:21:25.0281 2732 sdbus - ok
16:21:25.0343 2732 [ 90A3935D05B494A5A39D37E71F09A677 ] Secdrv C:\WINDOWS\system32\DRIVERS\secdrv.sys
16:21:25.0343 2732 Secdrv - ok
16:21:25.0406 2732 [ 477E2C3CC5E4A0D635BCB0EA8DCAC3C6 ] seclogon C:\WINDOWS\System32\seclogon.dll
16:21:25.0421 2732 seclogon - ok
16:21:25.0484 2732 [ A530B75C10C23C9AB28FDB6CE719E21F ] SENS C:\WINDOWS\system32\sens.dll
16:21:25.0484 2732 SENS - ok
16:21:25.0515 2732 [ B842729337C9B921615C40D3C1A1AF96 ] Serial C:\WINDOWS\system32\drivers\Serial.sys
16:21:25.0531 2732 Serial - ok
16:21:25.0656 2732 [ 8988D1F32F56B3CD3F0F6C39F8A91A98 ] ServiceLayer C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
16:21:25.0703 2732 ServiceLayer - ok
16:21:25.0765 2732 [ 8E6B8C671615D126FDC553D1E2DE5562 ] Sfloppy C:\WINDOWS\system32\drivers\Sfloppy.sys
16:21:25.0781 2732 Sfloppy - ok
16:21:25.0859 2732 [ F58FACA9621D2DB01BD0927D9A0A208E ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll
16:21:25.0859 2732 SharedAccess - ok
16:21:25.0953 2732 [ EE9A2B9EA968A792A053C9D1A86BF870 ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
16:21:25.0953 2732 ShellHWDetection - ok
16:21:25.0968 2732 Simbad - ok
16:21:26.0031 2732 [ 6B33D0EBD30DB32E27D1D78FE946A754 ] sisagp C:\WINDOWS\system32\DRIVERS\sisagp.sys
16:21:26.0046 2732 sisagp - ok
16:21:26.0156 2732 [ F07AF60B152221472FBDB2FECEC4896D ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe
16:21:26.0750 2732 SkypeUpdate - ok
16:21:26.0812 2732 [ 866D538EBE33709A5C9F5C62B73B7D14 ] SLIP C:\WINDOWS\system32\DRIVERS\SLIP.sys
16:21:26.0812 2732 SLIP - ok
16:21:26.0859 2732 [ A8EB0AA07632A4C936FF6F8EDA5BDEAD ] SMCIRDA C:\WINDOWS\system32\DRIVERS\smcirda.sys
16:21:26.0875 2732 SMCIRDA - ok
16:21:26.0906 2732 [ 83C0F71F86D3BDAF915685F3D568B20E ] Sparrow C:\WINDOWS\system32\DRIVERS\sparrow.sys
16:21:26.0921 2732 Sparrow - ok
16:21:26.0968 2732 [ AB8B92451ECB048A4D1DE7C3FFCB4A9F ] splitter C:\WINDOWS\system32\drivers\splitter.sys
16:21:26.0968 2732 splitter - ok
16:21:27.0046 2732 [ CB1090BCA0E7B40D0B5B4E4D66531809 ] Spooler C:\WINDOWS\system32\spoolsv.exe
16:21:27.0046 2732 Spooler - ok
16:21:27.0062 2732 [ 94610C8653635E4459316A0050D55CE7 ] sr C:\WINDOWS\system32\DRIVERS\sr.sys
16:21:27.0156 2732 sr - ok
16:21:27.0218 2732 [ 35B91147124F64AC8081A2EDB9EA4DEE ] srservice C:\WINDOWS\system32\srsvc.dll
16:21:27.0218 2732 srservice - ok
16:21:27.0281 2732 [ 47DDFC2F003F7F9F0592C6874962A2E7 ] Srv C:\WINDOWS\system32\DRIVERS\srv.sys
16:21:27.0312 2732 Srv - ok
16:21:27.0390 2732 [ BECD5271DC4E3B7C3D035F790FCBC1E5 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll
16:21:27.0390 2732 SSDPSRV - ok
16:21:27.0484 2732 [ C1CDD9275F6A115BB0AE1D55D8D27BA6 ] stisvc C:\WINDOWS\system32\wiaservc.dll
16:21:27.0500 2732 stisvc - ok
16:21:27.0546 2732 [ 77813007BA6265C4B6098187E6ED79D2 ] streamip C:\WINDOWS\system32\DRIVERS\StreamIP.sys
16:21:27.0562 2732 streamip - ok
16:21:27.0609 2732 [ 3941D127AEF12E93ADDF6FE6EE027E0F ] swenum C:\WINDOWS\system32\DRIVERS\swenum.sys
16:21:27.0625 2732 swenum - ok
16:21:27.0656 2732 [ 8CE882BCC6CF8A62F2B2323D95CB3D01 ] swmidi C:\WINDOWS\system32\drivers\swmidi.sys
16:21:27.0671 2732 swmidi - ok
16:21:27.0781 2732 SwPrv - ok
16:21:27.0828 2732 [ 1FF3217614018630D0A6758630FC698C ] symc810 C:\WINDOWS\system32\DRIVERS\symc810.sys
16:21:27.0843 2732 symc810 - ok
16:21:27.0859 2732 [ 070E001D95CF725186EF8B20335F933C ] symc8xx C:\WINDOWS\system32\DRIVERS\symc8xx.sys
16:21:27.0875 2732 symc8xx - ok
16:21:27.0890 2732 [ 80AC1C4ABBE2DF3B738BF15517A51F2C ] sym_hi C:\WINDOWS\system32\DRIVERS\sym_hi.sys
16:21:27.0906 2732 sym_hi - ok
16:21:27.0921 2732 [ BF4FAB949A382A8E105F46EBB4937058 ] sym_u3 C:\WINDOWS\system32\DRIVERS\sym_u3.sys
16:21:27.0937 2732 sym_u3 - ok
16:21:27.0984 2732 [ 8B83F3ED0F1688B4958F77CD6D2BF290 ] sysaudio C:\WINDOWS\system32\drivers\sysaudio.sys
16:21:27.0984 2732 sysaudio - ok
16:21:28.0078 2732 [ CE06F01B88ACE199A1BF460CAC29C110 ] SysmonLog C:\WINDOWS\system32\smlogsvc.exe
16:21:28.0109 2732 SysmonLog - ok
16:21:28.0156 2732 [ C2546CD7A398476F9DF5614B2AE160E8 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll
16:21:28.0171 2732 TapiSrv - ok
16:21:28.0218 2732 [ 9AEFA14BD6B182D61E3119FA5F436D3D ] Tcpip C:\WINDOWS\system32\DRIVERS\tcpip.sys
16:21:28.0250 2732 Tcpip - ok
16:21:28.0296 2732 [ 6471A66807F5E104E4885F5B67349397 ] TDPIPE C:\WINDOWS\system32\drivers\TDPIPE.sys
16:21:28.0312 2732 TDPIPE - ok
16:21:28.0343 2732 [ C56B6D0402371CF3700EB322EF3AAF61 ] TDTCP C:\WINDOWS\system32\drivers\TDTCP.sys
16:21:28.0359 2732 TDTCP - ok
16:21:28.0390 2732 [ 88155247177638048422893737429D9E ] TermDD C:\WINDOWS\system32\DRIVERS\termdd.sys
16:21:28.0421 2732 TermDD - ok
16:21:28.0531 2732 [ A75DD6FC3DBEE4FFF5EBC9F2C28BB66E ] TermService C:\WINDOWS\System32\termsrv.dll
16:21:28.0531 2732 TermService - ok
16:21:28.0625 2732 [ EE9A2B9EA968A792A053C9D1A86BF870 ] Themes C:\WINDOWS\System32\shsvcs.dll
16:21:28.0625 2732 Themes - ok
16:21:28.0656 2732 [ FD4FD7D6FDA5C019ED86025D7BE1510F ] TosIde C:\WINDOWS\system32\DRIVERS\toside.sys
16:21:28.0671 2732 TosIde - ok
16:21:28.0734 2732 [ 38853304CCB938D30E0C4CDE8D2C2A8A ] TrkWks C:\WINDOWS\system32\trkwks.dll
16:21:28.0750 2732 TrkWks - ok
16:21:28.0812 2732 [ 5787B80C2E3C5E2F56C2A233D91FA2C9 ] Udfs C:\WINDOWS\system32\drivers\Udfs.sys
16:21:28.0828 2732 Udfs - ok
16:21:28.0843 2732 [ 1B698A51CD528D8DA4FFAED66DFC51B9 ] ultra C:\WINDOWS\system32\DRIVERS\ultra.sys
16:21:28.0859 2732 ultra - ok
16:21:28.0890 2732 [ 402DDC88356B1BAC0EE3DD1580C76A31 ] Update C:\WINDOWS\system32\DRIVERS\update.sys
16:21:28.0921 2732 Update - ok
16:21:29.0000 2732 [ 651BD90DCEE5B7BDC74A2EB7C9266F9E ] upnphost C:\WINDOWS\System32\upnphost.dll
16:21:29.0000 2732 upnphost - ok
16:21:29.0062 2732 [ 15629E4D65F97AB5432D6D9597CF6A33 ] upperdev C:\WINDOWS\system32\DRIVERS\usbser_lowerflt.sys
16:21:29.0078 2732 upperdev - ok
16:21:29.0156 2732 [ 20A0F6A11959E92908717D09E87D670D ] UPS C:\WINDOWS\System32\ups.exe
16:21:29.0187 2732 UPS - ok
16:21:29.0250 2732 [ E919708DB44ED8543A7C017953148330 ] usbaudio C:\WINDOWS\system32\drivers\usbaudio.sys
16:21:29.0265 2732 usbaudio - ok
16:21:29.0328 2732 [ 173F317CE0DB8E21322E71B7E60A27E8 ] usbccgp C:\WINDOWS\system32\DRIVERS\usbccgp.sys
16:21:29.0343 2732 usbccgp - ok
16:21:29.0359 2732 [ 65DCF09D0E37D4C6B11B5B0B76D470A7 ] usbehci C:\WINDOWS\system32\DRIVERS\usbehci.sys
16:21:29.0375 2732 usbehci - ok
16:21:29.0406 2732 [ 1AB3CDDE553B6E064D2E754EFE20285C ] usbhub C:\WINDOWS\system32\DRIVERS\usbhub.sys
16:21:29.0421 2732 usbhub - ok
16:21:29.0468 2732 [ A717C8721046828520C9EDF31288FC00 ] usbprint C:\WINDOWS\system32\DRIVERS\usbprint.sys
16:21:29.0500 2732 usbprint - ok
16:21:29.0531 2732 [ A0B8CF9DEB1184FBDD20784A58FA75D4 ] usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys
16:21:29.0546 2732 usbscan - ok
16:21:29.0593 2732 [ 1C888B000C2F9492F4B15B5B6B84873E ] usbser C:\WINDOWS\system32\drivers\usbser.sys
16:21:29.0609 2732 usbser - ok
16:21:29.0640 2732 [ 5C17E6A11AA8BE53F79FD364BA19F0CE ] UsbserFilt C:\WINDOWS\system32\DRIVERS\usbser_lowerfltj.sys
16:21:29.0656 2732 UsbserFilt - ok
16:21:29.0703 2732 [ A32426D9B14A089EAA1D922E0C5801A9 ] USBSTOR C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
16:21:29.0718 2732 USBSTOR - ok
16:21:29.0765 2732 [ 26496F9DEE2D787FC3E61AD54821FFE6 ] usbuhci C:\WINDOWS\system32\DRIVERS\usbuhci.sys
16:21:29.0781 2732 usbuhci - ok
16:21:29.0812 2732 [ 0D3A8FAFCEACD8B7625CD549757A7DF1 ] VgaSave C:\WINDOWS\System32\drivers\vga.sys
16:21:29.0828 2732 VgaSave - ok
16:21:29.0859 2732 [ 754292CE5848B3738281B4F3607EAEF4 ] viaagp C:\WINDOWS\system32\DRIVERS\viaagp.sys
16:21:29.0875 2732 viaagp - ok
16:21:29.0921 2732 [ 3B3EFCDA263B8AC14FDF9CBDD0791B2E ] ViaIde C:\WINDOWS\system32\DRIVERS\viaide.sys
16:21:29.0937 2732 ViaIde - ok
16:21:29.0953 2732 [ 28A4B296B47782173C346E376CB374D1 ] VolSnap C:\WINDOWS\system32\drivers\VolSnap.sys
16:21:29.0968 2732 VolSnap - ok
16:21:30.0078 2732 [ D6BA1A63D9E00933F1CD2A885573AFB2 ] VSS C:\WINDOWS\System32\vssvc.exe
16:21:30.0109 2732 VSS - ok
16:21:30.0250 2732 [ EF11725916A69DFAF82AB26EC219F088 ] vToolbarUpdater13.3.2 C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\13.3.2\ToolbarUpdater.exe
16:21:30.0265 2732 vToolbarUpdater13.3.2 - ok
16:21:30.0343 2732 [ FA4E1CDBA256787F2149F4AAD07BC91F ] W32Time C:\WINDOWS\system32\w32time.dll
16:21:30.0343 2732 W32Time - ok
16:21:30.0484 2732 [ 73395A19FC86461A151D3C330604E8B3 ] w39n51 C:\WINDOWS\system32\DRIVERS\w39n51.sys
16:21:30.0531 2732 w39n51 - ok
16:21:30.0578 2732 [ E20B95BAEDB550F32DD489265C1DA1F6 ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys
16:21:30.0593 2732 Wanarp - ok
16:21:30.0687 2732 [ BBCFEAB7E871CDDAC2D397EE7FA91FDC ] Wdf01000 C:\WINDOWS\system32\Drivers\wdf01000.sys
16:21:30.0703 2732 Wdf01000 - ok
16:21:30.0734 2732 WDICA - ok
16:21:30.0796 2732 [ 6768ACF64B18196494413695F0C3A00F ] wdmaud C:\WINDOWS\system32\drivers\wdmaud.sys
16:21:30.0796 2732 wdmaud - ok
16:21:30.0890 2732 [ 47AE51048A82DFA1CD6B51D369F7E169 ] WebClient C:\WINDOWS\System32\webclnt.dll
16:21:30.0890 2732 WebClient - ok
16:21:30.0968 2732 [ C1D5CBD8AA0D674DA1BA1BB189696396 ] winachsf C:\WINDOWS\system32\DRIVERS\HSF_CNXT.sys
16:21:31.0000 2732 winachsf - ok
16:21:31.0078 2732 [ E488332126E3B1182D2B8A0C35408EC6 ] winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll
16:21:31.0078 2732 winmgmt - ok
16:21:31.0171 2732 [ C51B4A5C05A5475708E3C81C7765B71D ] WmdmPmSN C:\WINDOWS\system32\MsPMSNSv.dll
16:21:31.0171 2732 WmdmPmSN - ok
16:21:31.0218 2732 [ C42584FD66CE9E17403AEBCA199F7BDB ] WmiAcpi C:\WINDOWS\system32\DRIVERS\wmiacpi.sys
16:21:31.0234 2732 WmiAcpi - ok
16:21:31.0296 2732 [ 23F6F03272F7E5679F1F050AED5ACEE6 ] WmiApSrv C:\WINDOWS\system32\wbem\wmiapsrv.exe
16:21:31.0328 2732 WmiApSrv - ok
16:21:31.0437 2732 [ 3739866D20ABD42F26A7B85F9E2560AF ] WMPNetworkSvc C:\Program Files\Windows Media Player\WMPNetwk.exe
16:21:31.0468 2732 WMPNetworkSvc - ok
16:21:31.0515 2732 [ CF4DEF1BF66F06964DC0D91844239104 ] WpdUsb C:\WINDOWS\system32\DRIVERS\wpdusb.sys
16:21:31.0531 2732 WpdUsb - ok
16:21:31.0625 2732 [ 4C86D5FAF78194995AF9CC1075F65DD3 ] wscsvc C:\WINDOWS\system32\wscsvc.dll
16:21:31.0625 2732 wscsvc - ok
16:21:31.0671 2732 [ C98B39829C2BBD34E454150633C62C78 ] WSTCODEC C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
16:21:31.0687 2732 WSTCODEC - ok
16:21:31.0765 2732 [ C1364564800EE9784192145324A23308 ] wuauserv C:\WINDOWS\system32\wuauserv.dll
16:21:31.0765 2732 wuauserv - ok
16:21:31.0812 2732 [ 6FF66513D372D479EF1810223C8D20CE ] WudfPf C:\WINDOWS\system32\DRIVERS\WudfPf.sys
16:21:31.0828 2732 WudfPf - ok
16:21:31.0890 2732 [ AC13CB789D93412106B0FB6C7EB2BCB6 ] WudfRd C:\WINDOWS\system32\DRIVERS\wudfrd.sys
16:21:31.0921 2732 WudfRd - ok
16:21:31.0984 2732 [ 575A4190D989F64732119E4114045A4F ] WudfSvc C:\WINDOWS\System32\WUDFSvc.dll
16:21:31.0984 2732 WudfSvc - ok
16:21:32.0093 2732 [ A27D4BA7264C0BF52F32D10405BEA1D4 ] WZCSVC C:\WINDOWS\System32\wzcsvc.dll
16:21:32.0109 2732 WZCSVC - ok
16:21:32.0171 2732 [ EAA4BB9EDB3FB10CF8979FE65E63658F ] xmlprov C:\WINDOWS\System32\xmlprov.dll
16:21:32.0171 2732 xmlprov - ok
16:21:32.0234 2732 [ 28FB86AD7CC64AE5639E6E87F3B017D9 ] ZTEusbmdm6k C:\WINDOWS\system32\DRIVERS\ZTEusbmdm6k.sys
16:21:32.0250 2732 ZTEusbmdm6k - ok
16:21:32.0281 2732 [ 28FB86AD7CC64AE5639E6E87F3B017D9 ] ZTEusbnmea C:\WINDOWS\system32\DRIVERS\ZTEusbnmea.sys
16:21:32.0312 2732 ZTEusbnmea - ok
16:21:32.0328 2732 [ 28FB86AD7CC64AE5639E6E87F3B017D9 ] ZTEusbser6k C:\WINDOWS\system32\DRIVERS\ZTEusbser6k.sys
16:21:32.0359 2732 ZTEusbser6k - ok
16:21:32.0500 2732 [ 8098180B3F6C430A4E60333BC036F936 ] {95808DC4-FA4A-4c74-92FE-5B863F82066B} C:\Program Files\CyberLink\PowerDVD\000.fcl
16:21:32.0500 2732 {95808DC4-FA4A-4c74-92FE-5B863F82066B} - ok
16:21:32.0531 2732 ================ Scan global ===============================
16:21:32.0703 2732 [ F36278E42C8C5DF03CE17DAC8231C91C ] C:\WINDOWS\system32\basesrv.dll
16:21:32.0859 2732 [ F3FA14A297BC687D0B51289D034033C9 ] C:\WINDOWS\system32\winsrv.dll
16:21:32.0984 2732 [ F3FA14A297BC687D0B51289D034033C9 ] C:\WINDOWS\system32\winsrv.dll
16:21:33.0125 2732 [ 9EF697AF07BB8DD82C3B02CA953A95B7 ] C:\WINDOWS\system32\services.exe
16:21:33.0140 2732 [Global] - ok
16:21:33.0140 2732 ================ Scan MBR ==================================
16:21:33.0171 2732 [ 99852D5C3A78447C3D6D82B6155FE848 ] \Device\Harddisk0\DR0
16:21:37.0281 2732 \Device\Harddisk0\DR0 - ok
16:21:37.0281 2732 ================ Scan VBR ==================================
16:21:37.0281 2732 [ 231471BEE0F8DE6480B20EFE83F6FAE8 ] \Device\Harddisk0\DR0\Partition1
16:21:37.0281 2732 \Device\Harddisk0\DR0\Partition1 - ok
16:21:37.0312 2732 [ 444ADDBCED784AAAA0F46BCD540B668C ] \Device\Harddisk0\DR0\Partition2
16:21:37.0312 2732 \Device\Harddisk0\DR0\Partition2 - ok
16:21:37.0312 2732 ============================================================
16:21:37.0312 2732 Scan finished
16:21:37.0312 2732 ============================================================
16:21:37.0328 2676 Detected object count: 0
16:21:37.0328 2676 Actual detected object count: 0

U Combo fix se mi nezdařil log,nejdříve bylo vše v pořádku nainstalovala e konzole obnovení ,na nic jsem neklikla v okne probíhala kontrola do bodu 50 pak se najdnou vše zaseklo při hlášce mažu soubory na systém 32 temp...(nepamatuji přesně)co tam bylo a následjící hodinu se nic nedělo,noťa jsem restartovala a žádný log ohuel neudělala.
Děkui Dezire

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: prosím o kontrolu logu

Příspěvekod jaro3 » 14 led 2013 23:13

Zkus ho spustit v nouz. režimu.

Stáhni si Memtest:

Do políčka vlož největší velikost Tvé jednotlivé paměti RAM (256,512 nebo 1024,2048) dej Start , nech nejméně 2h běžet , pokud bude po 2h stále 0 errors , jsou v pořádku.


Je třeba zkontrolovat HDD na chyby , zkusit jeho defragmentaci ..

Stáhni si CrystalDiskInfo
Spusť program a klikni na Úpravy-Kopírovat. Poté sem vlož pomocí Ctrl+V obsah logu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

dezire
nováček
Příspěvky: 11
Registrován: srpen 11
Pohlaví: Žena
Stav:
Offline

Re: prosím o kontrolu logu

Příspěvekod dezire » 26 zář 2013 16:37

----------------------------------------------------------------------------
CrystalDiskInfo 5.6.1 Shizuku Edition (C) 2008-2013 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------

OS : Windows XP Home Edition SP3 [5.1 Build 2600] (x86)
Date : 2013/09/26 16:37:10

-- Controller Map ----------------------------------------------------------
+ Intel(R) 82801G (ICH7 Family) Ultra ATA Storage Controllers - 27DF [ATA]
+ Primární kanál IDE (0)
- HL-DT-ST DVDRAM GSA-T10N
- Hitachi HTS541212H9AT00
- ENE PCI Memory Stick Card Reader Controller [SCSI]
- ENE PCI SmartMedia / xD Card Reader Controller [SCSI]
- ENE PCI Secure Digital / MMC Card Reader Controller [SCSI]

-- Disk List ---------------------------------------------------------------
(1) Hitachi HTS541212H9AT00 : 120,0 GB [0/0/0, pd1]

----------------------------------------------------------------------------
(1) Hitachi HTS541212H9AT00
----------------------------------------------------------------------------
Model : Hitachi HTS541212H9AT00
Firmware : HP4OA23C
Serial Number : HP0400BEG9JL5A
Disk Size : 120,0 GB (8,4/120,0/120,0/120,0)
Buffer Size : 7528 KB
Queue Depth : 1
# of Sectors : 234441648
Rotation Rate : Neznámy údaj
Interface : Parallel ATA
Major Version : ATA/ATAPI-7
Minor Version : ATA/ATAPI-7 T13 1532D version 1
Transfer Mode : Ultra DMA/100
Power On Hours : 9890 hod.
Power On Count : 1716 krát
Temparature : 42 C (107 F)
Health Status : Dobrý
Features : S.M.A.R.T., APM, AAM, 48bit LBA
APM Level : 4080h [ON]
AAM Level : 80FEh [OFF]

-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 100 100 _62 000000000000 Počet chyb čtení
02 100 100 _40 000000000000 Průchodnost disku
03 113 113 _33 001F00000003 Čas na roztočení ploten
04 _95 _95 __0 000000001FB3 Počet spuštění/zastavení
05 100 100 __5 000000000000 Počet přemapovaných sektorů
07 100 100 _67 000000000000 Počet chybných hledání
08 100 100 _40 000000000000 Čas potřebný na vyhledání
09 _78 _78 __0 0000000026A2 Hodin v činnosti
0A 100 100 _60 000000000000 Počet opakovaných pokusů o roztočení ploten
0C _99 _99 __0 0000000006B4 Počet cyklů zapnutí zařízení
BF 100 100 __0 000000000000 Počet udalostí zaznamenaných otřesovým senzorem
C0 100 100 __0 000000000035 Počet vypnutí disku
C1 _40 _40 __0 000000094DD9 Počet cyklů načítání/vymazání
C2 130 130 __0 00350008002A Teplota
C4 100 100 __0 000000000002 Počet udalostí s číslem realokování sektorů
C5 100 100 __0 000000000000 Počet podezřelých sektorů
C6 100 100 __0 000000000000 Počet neopravitelných sektorů
C7 200 200 __0 000000000000 Počet chyb v kontrolním součtu UltraDMA

-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 045A 3FFF C837 0010 0000 0000 003F 0000 0000 0000
010: 2020 2020 2020 4850 3034 3030 4245 4739 4A4C 3541
020: 0003 3AD1 0004 4850 344F 4132 3343 4869 7461 6368
030: 6920 4854 5335 3431 3231 3248 3941 5430 3020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 0000 0F00
050: 4000 0200 0200 0007 3FFF 0010 003F FC10 00FB 0110
060: 4BB0 0DF9 0000 0007 0003 0078 0078 00F0 0078 0000
070: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
080: 00FC 001A 746B 7FE9 6163 7469 3D49 6163 203F 0022
090: 0000 4080 FFFE 603B 80FE 0000 0000 0000 0000 0000
100: 4BB0 0DF9 0000 0000 0000 0000 0000 8848 5000 CCA5
110: 19C4 559A 0000 0000 0000 0000 0000 0000 0000 0000
120: 0000 0000 0000 0000 0000 0000 0000 0000 0009 000B
130: 001D 0000 0000 0000 0000 0000 0000 0000 0000 0000
140: 0000 0000 0000 0000 0000 0000 0000 0000 4001 0000
150: 8000 0000 344F 0000 0000 3041 3131 0000 0000 0000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
210: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
220: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 67A5

-- SMART_READ_DATA ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 0B 00 64 64 00 00 00 00 00 00 00 02 05
010: 00 64 64 00 00 00 00 00 00 00 03 07 00 71 71 03
020: 00 00 00 1F 00 00 04 12 00 5F 5F B3 1F 00 00 00
030: 00 00 05 33 00 64 64 00 00 00 00 00 00 00 07 0B
040: 00 64 64 00 00 00 00 00 00 00 08 05 00 64 64 00
050: 00 00 00 00 00 00 09 12 00 4E 4E A2 26 00 00 00
060: 00 00 0A 13 00 64 64 00 00 00 00 00 00 00 0C 32
070: 00 63 63 B4 06 00 00 00 00 00 BF 0A 00 64 64 00
080: 00 00 00 00 00 00 C0 32 00 64 64 35 00 00 00 00
090: 00 00 C1 12 00 28 28 D9 4D 09 00 00 00 00 C2 02
0A0: 00 82 82 2A 00 08 00 35 00 00 C4 32 00 64 64 02
0B0: 00 00 00 00 00 00 C5 22 00 64 64 00 00 00 00 00
0C0: 00 00 C6 08 00 64 64 00 00 00 00 00 00 00 C7 0A
0D0: 00 C8 C8 00 00 00 00 00 00 00 00 00 00 00 00 00
0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 85 02 01 5B
170: 03 00 01 00 02 45 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 33

-- SMART_READ_THRESHOLD ----------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 3E 00 00 00 00 00 00 00 00 00 00 02 28
010: 00 00 00 00 00 00 00 00 00 00 03 21 00 00 00 00
020: 00 00 00 00 00 00 04 00 00 00 00 00 00 00 00 00
030: 00 00 05 05 00 00 00 00 00 00 00 00 00 00 07 43
040: 00 00 00 00 00 00 00 00 00 00 08 28 00 00 00 00
050: 00 00 00 00 00 00 09 00 00 00 00 00 00 00 00 00
060: 00 00 0A 3C 00 00 00 00 00 00 00 00 00 00 0C 00
070: 00 00 00 00 00 00 00 00 00 00 BF 00 00 00 00 00
080: 00 00 00 00 00 00 C0 00 00 00 00 00 00 00 00 00
090: 00 00 C1 00 00 00 00 00 00 00 00 00 00 00 C2 00
0A0: 00 00 00 00 00 00 00 00 00 00 C4 00 00 00 00 00
0B0: 00 00 00 00 00 00 C5 00 00 00 00 00 00 00 00 00
0C0: 00 00 C6 00 00 00 00 00 00 00 00 00 00 00 C7 00
0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 68

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: prosím o kontrolu logu

Příspěvekod jaro3 » 27 zář 2013 09:48

Co Memtest?

Stáhni si Junkware Removal Tool

na svojí plochu.

Deaktivuj si svůj antivirový program. Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.

Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected. Poté klikni na Main (hlavní stránku ) a klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.


Stáhni si TFC
Otevři soubor a zavři všechny ostatní okna, Klikni na Start k zahájení procesu. Program by neměl trvat dlouho.
Poté by se měl PC restartovat, pokud ne , proveď sám.

Stáhni AdwCleaner

Ulož si ho na svojí plochu
Ukonči všechny programy , okna a prohlížeče
Spusť program poklepáním a klikni na „Prohledat-Scan“
Po skenu se objeví log ( jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

dezire
nováček
Příspěvky: 11
Registrován: srpen 11
Pohlaví: Žena
Stav:
Offline

Re: prosím o kontrolu logu

Příspěvekod dezire » 29 zář 2013 16:53

Ahoj Memtest nezjistil zadne problemy tady je report z

# AdwCleaner v3.005 - Report created 29/09/2013 at 16:40:09
# Updated 22/09/2013 by Xplode
# Operating System : Microsoft Windows XP Service Pack 3 (32 bits)
# Username : Ferda - ACER-0613CCA6BC
# Running from : C:\Documents and Settings\Ferda\Plocha\adwcleaner.exe
# Option : Scan

***** [ Services ] *****


***** [ Files / Folders ] *****

File Found : C:\Program Files\Mozilla Firefox\searchplugins\avg-secure-search.xml
Folder Found C:\Documents and Settings\All Users\Data aplikací\AVG Secure Search
Folder Found C:\Documents and Settings\All Users\Data aplikací\DriverCure
Folder Found C:\Documents and Settings\All Users\Data aplikací\ParetoLogic
Folder Found C:\Documents and Settings\Ferda\Data aplikací\AVG Secure Search
Folder Found C:\Documents and Settings\Ferda\Local Settings\Data aplikací\AVG Secure Search
Folder Found C:\Program Files\AVG Secure Search
Folder Found C:\Program Files\Common Files\AVG Secure Search

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Found : HKCU\Software\AVG Secure Search
Key Found : HKCU\Software\ICQToolbar
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\grusskartencenter.com
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\grusskartencenter.com
Key Found : HKCU\Software\ParetoLogic
Key Found : HKLM\Software\AVG Secure Search
Key Found : HKLM\Software\AVG Security Toolbar
Key Found : HKLM\SOFTWARE\Classes\AppID\{5B1881D1-D9C7-46DF-B041-1E593282C7D0}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\AVG Secure Search
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\facemoods
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG Secure Search
Key Found : HKLM\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin
Key Found : HKLM\Software\ParetoLogic
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{855F3B16-6D32-4FE6-8A56-BBB695989046}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{EF99BD32-C1FB-11D2-892F-0090271D4F88}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{EF99BD32-C1FB-11D2-892F-0090271D4F88}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{95B7759C-8C7F-4BF1-B163-73684A933233}]
Value Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [vProt]
Value Found : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [Avg@toolbar]

***** [ Browsers ] *****

-\\ Internet Explorer v6.0.2900.5512


-\\ Mozilla Firefox v23.0.1 (cs)

[ File : C:\Documents and Settings\Ferda\Data aplikací\Mozilla\Firefox\Profiles\z2q0c01z.default\prefs.js ]


*************************

AdwCleaner[R0].txt - [3058 octets] - [29/09/2013 16:40:09]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [3118 octets] ##########



a report

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.3 (09.27.2013:1)
OS: Microsoft Windows XP x86
Ran by Ferda on ne 29.09.2013 at 13:51:45,31
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys



~~~ Files



~~~ Folders





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on ne 29.09.2013 at 13:59:39,76
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
vše jsem udelala jak jsi mi napsal vyčištěno.)děkuji za pomoc

Uživatelský avatar
memphisto
Guru Level 13
Guru Level 13
Příspěvky: 21113
Registrován: září 06
Bydliště: Zlín - České Budějovice
Pohlaví: Muž
Stav:
Offline

Re: prosím o kontrolu logu

Příspěvekod memphisto » 29 zář 2013 17:19

V adw nech vše smazat a dodej log po smazání

Stáhni si RogueKiller
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit

-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji

dezire
nováček
Příspěvky: 11
Registrován: srpen 11
Pohlaví: Žena
Stav:
Offline

Re: prosím o kontrolu logu

Příspěvekod dezire » 30 zář 2013 10:15

Tak log je zde

RogueKiller V8.6.12 [Sep 18 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.adlice.com/forum/
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://tigzyrk.blogspot.com/

Operační systém : Windows XP (5.1.2600 Service Pack 3) 32 bits version
Spuštěno v : Normální režim
Uživatel : Ferda [Práva správce]
Mód : Kontrola -- Datum : 09/30/2013 09:25:35
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 9 ¤¤¤
[DNS][PUM] HKLM\[...]\CCSet\[...]\{A3FD8652-FE95-451B-8863-C15DAED322E0} : NameServer (10.0.0.1,10.2.0.1) -> NALEZENO
[DNS][PUM] HKLM\[...]\CS001\[...]\{A3FD8652-FE95-451B-8863-C15DAED322E0} : NameServer (10.0.0.1,10.2.0.1) -> NALEZENO
[DNS][PUM] HKLM\[...]\CS002\[...]\{A3FD8652-FE95-451B-8863-C15DAED322E0} : NameServer (10.0.0.1,10.2.0.1) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ POL][PUM] HKLM\[...]\System : DisableTaskMgr (0) -> NALEZENO
[HJ POL][PUM] HKLM\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ SMENU][PUM] HKLM\[...]\Advanced : Start_ShowRecentDocs (0) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO

¤¤¤ naplánované úlohy : 1 ¤¤¤
[V1][SUSP PATH] AVG-Secure-Search-Update_JUNE2013_TB_rmv.job : C:\WINDOWS\TEMP\{942912EA-10F4-4995-A40B-A812127A49EB}.exe - --uninstall=1 [x] -> NALEZENO

¤¤¤ spuštění položky : 0 ¤¤¤

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts


127.0.0.1 localhost
127.0.0.1 www.007guard.com
127.0.0.1 007guard.com
127.0.0.1 008i.com
127.0.0.1 www.008k.com
127.0.0.1 008k.com
127.0.0.1 www.00hq.com
127.0.0.1 00hq.com
127.0.0.1 010402.com
127.0.0.1 www.032439.com
127.0.0.1 032439.com
127.0.0.1 www.0scan.com
127.0.0.1 0scan.com
127.0.0.1 1000gratisproben.com
127.0.0.1 www.1000gratisproben.com
127.0.0.1 1001namen.com
127.0.0.1 www.1001namen.com
127.0.0.1 100888290cs.com
127.0.0.1 www.100888290cs.com
127.0.0.1 www.100sexlinks.com
[...]


¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) (Standardní diskové jednotky) - Hitachi HTS541212H9AT00 +++++
--- User ---
[MBR] d0849dbdcd7866b51867cad24691e290
[BSP] 18db25e1f380666d9382efae67561906 : Acer MBR Code
Partition table:
0 - [XXXXXX] COMPAQ (0x12) [VISIBLE] Offset (sectors): 63 | Size: 4996 Mo
1 - [ACTIVE] FAT32-LBA (0x0c) [VISIBLE] Offset (sectors): 10233405 | Size: 54486 Mo
2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 121820895 | Size: 54988 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[0]_S_09302013_092535.txt >>
Díky

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: prosím o kontrolu logu

Příspěvekod jaro3 » 30 zář 2013 11:41

Ještě jednou:
Spusť znovu AdwCleaner (u Windows Vista či Windows7, klikni na AdwCleaner pravým a vyber „Spustit jako správce
Klikni na „ Vymazat-Clean
Program provede opravu, po automatickém restartu neukáže log (C:\AdwCleaner [S?].txt) , jeho obsah sem celý vlož.

Zavři všechny programy a prohlížeče. Deaktivuj antivir a firewall.
Prosím, odpoj všechny USB nebo externí disky z počítače před spuštěním tohoto programu.

Spusť RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Počkej, dokud status okno zobrazuje "Prohledat "

- Klikni na "Smazat"
- Počkej, dokud Status box zobrazuje " Mazání dokončeno "
- Klikni na "Zpráva " a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [číslo]. txt na ploše.
- Zavři RogueKiller

Spusť znovu RogueKiller
Pokud používáš Win Vista či W7, klikni na RogueKiller pravým a dej spustit jako správce.
Pak klikni na Oprava Host a Zpráva - otevře se log, ten sem vlož.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 118 hostů