Prosím o kontrolu logu, zřejmě se jedná o vir, Prohlížeče pracují pomaleji a stějně tak i PC
RSIT log:
Logfile of random's system information tool 1.08 (written by random/random)
Run by Oraj at 2013-06-18 13:14:51
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 105 GB (40%) free of 261 GB
Total RAM: 4094 MB (65% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:15:08, on 18.6.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16611)
Boot mode: Normal
Running processes:
C:\Windows\DAODx.exe
C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
C:\Program Files (x86)\OSCAR Editor X7\OscarEditor.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\EPSON\BSTM\PG\E_L20IC2.EXE
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Emsisoft Anti-Malware\a2Guard.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Oraj.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:newtab
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:newtab
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [EPSON PageSTM TrayIcon01] C:\Program Files (x86)\EPSON\BSTM\PG\E_L20IC2.EXE
O4 - HKLM\..\Run: [NBAgent] "C:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe" /WinStart
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS5.5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [EAM Trial Reset] "C:\Program Files (x86)\EAM-TR.exe" /autoreset
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Pando Media Booster] C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
O4 - HKCU\..\Run: [OscarEditor] "C:\Program Files (x86)\OSCAR Editor X7\OscarEditor.exe" Minimum
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Emsisoft Anti-Malware 7.0 - Service (a2AntiMalware) - Emsisoft GmbH - C:\Program Files (x86)\Emsisoft Anti-Malware\a2service.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: EpsonBidirectionalService - SEIKO EPSON CORPORATION - C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSVC.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 9232 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Program Files (x86)\Emsisoft Anti-Malware\a2service.exe"
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
taskeng.exe {642BC607-91B2-4B63-83D7-049AFD173D3D}
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"taskhost.exe"
taskeng.exe {B60A4E76-82BF-4458-921E-0973D9AEEF54}
C:\Windows\DAODx.exe
"C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe"
"C:\Program Files (x86)\OSCAR Editor X7\OscarEditor.exe" Minimum
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSVC.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\EPSON\BSTM\PG\E_L20IC2.EXE"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe"
"C:\Program Files (x86)\Emsisoft Anti-Malware\a2Guard.exe"
C:\Windows\SysWOW64\PnkBstrA.exe
"C:\Program Files (x86)\Skype\Updater\Updater.exe"
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k WerSvcGroup
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-2298817069-1754506854-539177474-10001_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-2298817069-1754506854-539177474-10001 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\Windows\system32\SearchFilterHost.exe" 0 524 528 536 65536 532
"C:\Users\Oraj\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="4736.0.1368302934\1325395196" --supports-dual-gpus=false --gpu-vendor-id=0x10de --gpu-device-id=0x0e22 --gpu-driver-vendor=NVIDIA --gpu-driver-version=9.18.13.1407 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_1/DefaultControl/ForceCompositingMode/thread/InfiniteCache/No/InstantDummy/DummyGroup10 channel:stable mods:100/InstantExtended/Padding1 channel:stable/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxSearchSuggestTrialStarted2013Q1/7/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadDisabled/Prerender/PrerenderEnabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-1-Percent/group_48/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/default/" --renderer-print-preview --instant-process --enable-threaded-compositing --channel="4736.2.1713611846\803321242" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_1/DefaultControl/ForceCompositingMode/thread/InfiniteCache/No/InstantDummy/DummyGroup10 channel:stable mods:100/InstantExtended/Padding1 channel:stable/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxSearchSuggestTrialStarted2013Q1/7/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadDisabled/Prerender/PrerenderEnabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-1-Percent/group_48/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/default/" --extension-process --renderer-print-preview --enable-threaded-compositing --channel="4736.3.147936313\1759202091" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_1/DefaultControl/ForceCompositingMode/thread/InfiniteCache/No/InstantDummy/DummyGroup10 channel:stable mods:100/InstantExtended/Padding1 channel:stable/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxSearchSuggestTrialStarted2013Q1/7/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadDisabled/Prerender/PrerenderEnabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-1-Percent/group_48/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/default/" --extension-process --renderer-print-preview --enable-threaded-compositing --channel="4736.4.218196782\484007236" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_1/DefaultControl/ForceCompositingMode/thread/InfiniteCache/No/InstantDummy/DummyGroup10 channel:stable mods:100/InstantExtended/Padding1 channel:stable/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxSearchSuggestTrialStarted2013Q1/7/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadDisabled/Prerender/PrerenderEnabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-1-Percent/group_48/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/default/" --extension-process --renderer-print-preview --enable-threaded-compositing --channel="4736.5.1599453551\629077038" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_1/DefaultControl/ForceCompositingMode/thread/InfiniteCache/No/InstantDummy/DummyGroup10 channel:stable mods:100/InstantExtended/Padding1 channel:stable/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxSearchSuggestTrialStarted2013Q1/7/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadDisabled/Prerender/PrerenderEnabled/SpdyCwnd/cwndMin10/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-1-Percent/group_48/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/default/" --renderer-print-preview --enable-threaded-compositing --channel="4736.6.586008767\889062709" /prefetch:673131151
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\AutoKMS.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-05-09 242496]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2012-08-16 6670496]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2010-12-21 689040]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-09-23 60568]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-04-04 462752]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-05-09 198688]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2010-12-21 561552]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-04-04 171424]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-05-09 242496]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-05-09 198688]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"BCSSync"=C:\Program Files\Microsoft Office\Office14\BCSSync.exe [2010-03-13 112512]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2011-03-15 499608]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2012-04-11 3672384]
"Pando Media Booster"=C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe [2013-01-09 3093624]
"OscarEditor"=C:\Program Files (x86)\OSCAR Editor X7\OscarEditor.exe [2012-03-20 3340288]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-21 1475584]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2013-05-09 4858968]
"EPSON PageSTM TrayIcon01"=C:\Program Files (x86)\EPSON\BSTM\PG\E_L20IC2.EXE [2010-02-05 181248]
"NBAgent"=C:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe [2010-03-26 1234216]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS5.5ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe [2011-01-12 1523360]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-03-12 253816]
"EAM Trial Reset"=C:\Program Files (x86)\EAM-TR.exe [2013-01-01 357337]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2012-08-16 6670496]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLinkedConnections"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
2013-06-18 13:03:00 ----D---- C:\rsit
2013-06-18 13:03:00 ----D---- C:\Program Files\trend micro
2013-06-18 12:49:22 ----A---- C:\AdwCleaner[S1].txt
2013-06-18 12:49:11 ----A---- C:\AdwCleaner[R2].txt
2013-06-18 12:47:49 ----A---- C:\AdwCleaner[R1].txt
2013-06-16 21:04:45 ----D---- C:\Users\Oraj\AppData\Roaming\vlc
2013-06-16 17:41:30 ----D---- C:\ProgramData\McAfee
2013-06-16 17:28:29 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2013-06-15 06:18:16 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2013-06-15 06:18:16 ----A---- C:\Windows\system32\urlmon.dll
2013-06-15 06:18:15 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2013-06-15 06:18:14 ----A---- C:\Windows\SYSWOW64\ieui.dll
2013-06-15 06:18:14 ----A---- C:\Windows\system32\ieui.dll
2013-06-15 06:18:14 ----A---- C:\Windows\system32\iertutil.dll
2013-06-15 06:18:12 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2013-06-15 06:18:12 ----A---- C:\Windows\system32\ieframe.dll
2013-06-15 06:18:09 ----A---- C:\Windows\system32\mshtml.dll
2013-06-15 06:18:06 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2013-06-13 08:47:54 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2013-06-13 08:47:54 ----A---- C:\Windows\system32\iesetup.dll
2013-06-13 08:47:54 ----A---- C:\Windows\system32\iernonce.dll
2013-06-13 08:47:53 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2013-06-13 08:47:53 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2013-06-13 08:47:53 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2013-06-13 08:47:53 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-06-13 08:47:53 ----A---- C:\Windows\system32\iesysprep.dll
2013-06-13 08:47:53 ----A---- C:\Windows\system32\ie4uinit.exe
2013-06-13 08:47:51 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-06-13 08:47:51 ----A---- C:\Windows\SYSWOW64\jscript.dll
2013-06-13 08:47:51 ----A---- C:\Windows\system32\msfeeds.dll
2013-06-13 08:47:51 ----A---- C:\Windows\system32\jscript.dll
2013-06-13 08:47:50 ----A---- C:\Windows\system32\jscript9.dll
2013-06-13 08:47:49 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2013-06-13 08:47:47 ----A---- C:\Windows\system32\jsproxy.dll
2013-06-13 08:47:46 ----A---- C:\Windows\SYSWOW64\wininet.dll
2013-06-13 08:47:46 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2013-06-13 08:47:45 ----A---- C:\Windows\system32\wininet.dll
2013-06-12 17:40:40 ----A---- C:\Windows\system32\drivers\tcpip.sys
2013-06-12 17:40:38 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2013-06-12 17:40:38 ----A---- C:\Windows\system32\win32spl.dll
2013-06-12 17:40:33 ----A---- C:\Windows\SYSWOW64\cryptdlg.dll
2013-06-12 17:40:33 ----A---- C:\Windows\system32\cryptdlg.dll
2013-06-12 17:40:30 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2013-06-12 17:40:30 ----A---- C:\Windows\system32\WindowsCodecs.dll
2013-06-12 17:40:27 ----A---- C:\Windows\SYSWOW64\certutil.exe
2013-06-12 17:40:27 ----A---- C:\Windows\system32\crypt32.dll
2013-06-12 17:40:27 ----A---- C:\Windows\system32\certutil.exe
2013-06-12 17:40:26 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2013-06-12 17:40:26 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2013-06-12 17:40:26 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2013-06-12 17:40:26 ----A---- C:\Windows\system32\cryptsvc.dll
2013-06-12 17:40:26 ----A---- C:\Windows\system32\cryptnet.dll
2013-06-12 17:40:25 ----A---- C:\Windows\SYSWOW64\certenc.dll
2013-06-12 17:40:25 ----A---- C:\Windows\system32\certenc.dll
2013-06-12 17:40:17 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2013-06-12 17:40:17 ----A---- C:\Windows\system32\d3d11.dll
2013-06-12 13:07:21 ----D---- C:\Program Files (x86)\pazera-software
2013-06-10 22:12:07 ----A---- C:\Windows\lexicon.INI
2013-06-10 22:08:56 ----A---- C:\Windows\SYSWOW64\Pkwdcl.dll
2013-06-10 22:08:56 ----A---- C:\Windows\SYSWOW64\MVut14n.dll
2013-06-10 22:08:56 ----A---- C:\Windows\SYSWOW64\MVtl14n.dll
2013-06-10 22:08:56 ----A---- C:\Windows\SYSWOW64\MVsr14n.dll
2013-06-10 22:08:55 ----A---- C:\Windows\SYSWOW64\MVmg14n.dll
2013-06-10 22:08:55 ----A---- C:\Windows\SYSWOW64\MVmc14n.dll
2013-06-10 22:08:55 ----A---- C:\Windows\SYSWOW64\MVix14n.dll
2013-06-10 22:08:55 ----A---- C:\Windows\SYSWOW64\MVfs14n.dll
2013-06-10 22:08:55 ----A---- C:\Windows\SYSWOW64\MVcl14n.dll
2013-06-10 22:08:55 ----A---- C:\Windows\SYSWOW64\MVbk14n.dll
2013-06-01 13:00:46 ----D---- C:\Program Files (x86)\Robot Entertainment
2013-05-23 18:26:23 ----D---- C:\Program Files (x86)\Mozilla Firefox
2013-05-22 19:25:31 ----D---- C:\Users\Oraj\AppData\Roaming\TERA
======List of files/folders modified in the last 1 months======
2013-06-18 13:15:03 ----D---- C:\Program Files (x86)\Emsisoft Anti-Malware
2013-06-18 13:14:42 ----D---- C:\Windows\Prefetch
2013-06-18 13:13:56 ----D---- C:\Windows\Temp
2013-06-18 13:13:11 ----D---- C:\ProgramData\NVIDIA
2013-06-18 13:07:16 ----D---- C:\Windows\system32\config
2013-06-18 13:03:00 ----RD---- C:\Program Files
2013-06-18 12:56:10 ----D---- C:\Windows\System32
2013-06-18 12:56:10 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-06-18 12:56:09 ----D---- C:\Windows\inf
2013-06-18 12:49:38 ----RD---- C:\Program Files (x86)
2013-06-18 12:49:38 ----HD---- C:\ProgramData
2013-06-18 08:13:08 ----SHD---- C:\System Volume Information
2013-06-17 18:15:44 ----D---- C:\ProgramData\PMB Files
2013-06-16 22:08:09 ----D---- C:\Windows\system32\Tasks
2013-06-16 22:04:11 ----D---- C:\Users\Oraj\AppData\Roaming\uTorrent
2013-06-16 18:33:38 ----SHD---- C:\Windows\Installer
2013-06-16 18:33:29 ----D---- C:\Windows\SysWOW64
2013-06-16 18:04:29 ----D---- C:\Program Files (x86)\War Thunder
2013-06-16 17:48:22 ----D---- C:\Windows\system32\drivers
2013-06-16 17:48:20 ----D---- C:\Windows\system32\drivers\UMDF
2013-06-16 17:41:18 ----D---- C:\ProgramData\Adobe
2013-06-16 17:41:17 ----D---- C:\Program Files (x86)\Adobe
2013-06-15 08:21:42 ----D---- C:\Windows\winsxs
2013-06-15 08:21:25 ----D---- C:\Program Files\Internet Explorer
2013-06-15 08:21:25 ----D---- C:\Program Files (x86)\Internet Explorer
2013-06-15 06:18:22 ----D---- C:\Windows\system32\catroot
2013-06-13 11:57:29 ----D---- C:\Windows\Tasks
2013-06-13 11:57:09 ----D---- C:\Users\Oraj\AppData\Roaming\systweak
2013-06-13 10:57:34 ----D---- C:\Windows\rescache
2013-06-13 09:19:49 ----D---- C:\Windows\SYSWOW64\cs-CZ
2013-06-13 09:19:49 ----D---- C:\Windows\system32\cs-CZ
2013-06-13 08:48:33 ----A---- C:\Windows\system32\MRT.exe
2013-06-13 08:48:08 ----D---- C:\Windows\system32\catroot2
2013-06-12 12:05:30 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-06-11 12:31:22 ----A---- C:\Windows\SYSWOW64\PnkBstrB.exe
2013-06-10 22:12:07 ----D---- C:\Windows
2013-06-10 07:58:14 ----D---- C:\Program Files (x86)\uTorrent
2013-06-07 07:53:27 ----D---- C:\Windows\Minidump
2013-05-28 15:53:40 ----D---- C:\Users\Oraj\AppData\Roaming\Skype
2013-05-27 19:29:28 ----D---- C:\Program Files (x86)\ManiaPlanet
2013-05-27 19:29:23 ----D---- C:\ProgramData\ManiaPlanet
2013-05-22 19:25:31 ----D---- C:\Program Files (x86)\TERA
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [2013-05-09 65336]
R0 aswVmm;aswVmm; C:\Windows\system32\drivers\aswVmm.sys [2013-05-09 189936]
R0 AtiPcie;AMD PCI Express (3GIO) Filter; C:\Windows\system32\DRIVERS\AtiPcie.sys [2009-05-05 16440]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 A2DDA;A2 Direct Disk Access Support Driver; \??\C:\Program Files (x86)\Emsisoft Anti-Malware\a2ddax64.sys [2013-03-27 26176]
R1 a2injectiondriver;a2injectiondriver; \??\C:\Program Files (x86)\Emsisoft Anti-Malware\a2dix64.sys [2012-04-30 44688]
R1 a2util;a-squared Malware-IDS utility driver; \??\C:\Program Files (x86)\Emsisoft Anti-Malware\a2util64.sys [2013-03-27 17384]
R1 aswRdr;aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [2013-05-09 72016]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2013-05-09 1025808]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2013-05-09 378432]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2013-05-09 64288]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-21 514560]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2012-09-04 283200]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2013-05-09 33400]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2013-05-09 80816]
R3 a2acc;a2acc; \??\C:\PROGRAM FILES (X86)\EMSISOFT ANTI-MALWARE\a2accx64.sys [2012-04-30 66320]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2009-07-16 15416]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2012-12-19 194488]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2011-06-10 539240]
R3 usbfilter;AMD USB Filter Driver; C:\Windows\system32\DRIVERS\usbfilter.sys [2009-12-22 38456]
S1 Amfilter;A4Tech Mouse Filter Driver; C:\Windows\system32\DRIVERS\Amfltx64.sys [2007-05-15 12288]
S2 atksgt;atksgt; C:\Windows\system32\DRIVERS\atksgt.sys [2013-01-16 303616]
S2 lirsgt;lirsgt; C:\Windows\system32\DRIVERS\lirsgt.sys [2013-01-16 35328]
S3 Amusbprt;A4Tech HID-compliant Mouse Driver; C:\Windows\system32\DRIVERS\Amusbx64.sys [2007-05-15 17408]
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-21 71168]
S3 EagleX64;EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys []
S3 GMSIPCI;GMSIPCI; \??\E:\INSTALL\GMSIPCI.SYS []
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-21 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-21 6656]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-21 34688]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys [2010-11-21 88960]
S3 terminpt;Microsoft Remote Desktop Input Driver; C:\Windows\system32\drivers\terminpt.sys [2012-08-23 29696]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2012-08-23 57856]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-08-23 30208]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys [2010-11-21 117248]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 41984]
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-21 199552]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-21 21760]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-21 41984]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 a2AntiMalware;Emsisoft Anti-Malware 7.0 - Service; C:\Program Files (x86)\Emsisoft Anti-Malware\a2service.exe [2013-05-31 2626880]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-09-23 65192]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2013-05-09 46808]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 EpsonBidirectionalService;EpsonBidirectionalService; C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSVC.exe [2008-11-05 94208]
R2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe [2009-09-23 935208]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-02-10 877856]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2012-09-19 76888]
R2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-02-28 161384]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-02-09 383264]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-11-04 116648]
S2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-02-10 1266464]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-06-12 256904]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-11-04 116648]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files\Microsoft Office\Office14\GROOVE.EXE [2012-09-20 50899608]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-05-12 117144]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 174440]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2013-02-25 543144]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-09-04 1255736]
-----------------EOF-----------------
Zřejmě mám zavirované PC Vyřešeno
- memphisto
- Guru Level 13
- Příspěvky: 21113
- Registrován: září 06
- Bydliště: Zlín - České Budějovice
- Pohlaví:
- Stav:
Offline
Re: Zřejmě mám zavirované PC
Dej log z HijackThis a ne RSIT
Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
- Pokud používáš Firefox, klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
- Pokud používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected.
- Pokud používáš Chrome, nic dalšího nevybírej a dej Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.
Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Update Malwarebytes' Anti-Malware (Aktualizace Malwarebytes' Anti-Malware) a Launch Malwarebytes' Anti-Malware (Spustit aplikaci Malwarebytes' Anti-Malware), pokud jo tak klikni na tlačítko Finish
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Perform Quick Scan (Provést rychlý sken) a klikni na tlačítko Scan (Skenovat)
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Show Results
- pak zvol možnost Save Logfile a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(ZATÍM SÁM NIC NEMAŽ!).
Vlož sem pak obsah toho logu.
Stáhni AdwCleaner
Ulož si ho na svojí plochu
Ukonči všechny programy, okna a prohlížeče
Spusť program poklepáním a klikni na „Search“
Po skenu se objeví log (jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.
Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
- Pokud používáš Firefox, klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
- Pokud používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected.
- Pokud používáš Chrome, nic dalšího nevybírej a dej Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.
Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Update Malwarebytes' Anti-Malware (Aktualizace Malwarebytes' Anti-Malware) a Launch Malwarebytes' Anti-Malware (Spustit aplikaci Malwarebytes' Anti-Malware), pokud jo tak klikni na tlačítko Finish
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Perform Quick Scan (Provést rychlý sken) a klikni na tlačítko Scan (Skenovat)
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Show Results
- pak zvol možnost Save Logfile a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(ZATÍM SÁM NIC NEMAŽ!).
Vlož sem pak obsah toho logu.
Stáhni AdwCleaner
Ulož si ho na svojí plochu
Ukonči všechny programy, okna a prohlížeče
Spusť program poklepáním a klikni na „Search“
Po skenu se objeví log (jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji
Re: Zřejmě mám zavirované PC
Zde jsou logy:
log z HijackThis:
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:59:16, on 18.6.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16611)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
C:\Program Files (x86)\OSCAR Editor X7\OscarEditor.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\EPSON\BSTM\PG\E_L20IC2.EXE
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Oraj\Desktop\hijackthis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:newtab
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:newtab
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [EPSON PageSTM TrayIcon01] C:\Program Files (x86)\EPSON\BSTM\PG\E_L20IC2.EXE
O4 - HKLM\..\Run: [NBAgent] "C:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe" /WinStart
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS5.5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [EAM Trial Reset] "C:\Program Files (x86)\EAM-TR.exe" /autoreset
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Pando Media Booster] C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
O4 - HKCU\..\Run: [OscarEditor] "C:\Program Files (x86)\OSCAR Editor X7\OscarEditor.exe" Minimum
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Emsisoft Anti-Malware 7.0 - Service (a2AntiMalware) - Emsisoft GmbH - C:\Program Files (x86)\Emsisoft Anti-Malware\a2service.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: EpsonBidirectionalService - SEIKO EPSON CORPORATION - C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSVC.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 9273 bytes
log z mbam:
Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org
Verze: v2013.06.18.04
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 10.0.9200.16618
Oraj :: ORAJ-PC [administrátor]
18.6.2013 15:02:22
mbam-log-2013-06-18 (15-02-22).txt
Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 234423
Uplynulý čas: 3 minut, 54 sekund
Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené soubory: 0
(Žádné škodlivé položky nebyly zjištěny)
(konec)
AdwCleaner log:
# AdwCleaner v2.303 - Log vytvooen 18/06/2013 v 15:09:26
# Aktualizováno 08/06/2013 Xplode
# Operaení systém : Windows 7 Ultimate Service Pack 1 (64 bits)
# Uživatel : Oraj - ORAJ-PC
# Spuštin systém : Normální
# Spuštino z : C:\Users\Oraj\Desktop\adwcleaner.exe
# Volba [Prohledat]
***** [Služby] *****
***** [Soubory / Složky] *****
***** [Registry] *****
***** [Internetové prohlížeee] *****
-\\ Internet Explorer v10.0.9200.16611
[OK] Registry jsou eisté.
-\\ Mozilla Firefox v21.0 (cs)
Soubor : C:\Users\Oraj\AppData\Roaming\Mozilla\Firefox\Profiles\rsqbfnbb.default\prefs.js
[OK] Soubor je eistý.
-\\ Google Chrome v27.0.1453.110
Soubor : C:\Users\Oraj\AppData\Local\Google\Chrome\User Data\Default\Preferences
[OK] Soubor je eistý.
*************************
AdwCleaner[R5].txt - [821 octets] - [18/06/2013 15:09:26]
########## EOF - C:\AdwCleaner[R5].txt - [880 octets] ##########
log z HijackThis:
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:59:16, on 18.6.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16611)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
C:\Program Files (x86)\OSCAR Editor X7\OscarEditor.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\EPSON\BSTM\PG\E_L20IC2.EXE
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Oraj\Desktop\hijackthis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:newtab
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:newtab
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [EPSON PageSTM TrayIcon01] C:\Program Files (x86)\EPSON\BSTM\PG\E_L20IC2.EXE
O4 - HKLM\..\Run: [NBAgent] "C:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe" /WinStart
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS5.5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [EAM Trial Reset] "C:\Program Files (x86)\EAM-TR.exe" /autoreset
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Pando Media Booster] C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
O4 - HKCU\..\Run: [OscarEditor] "C:\Program Files (x86)\OSCAR Editor X7\OscarEditor.exe" Minimum
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Emsisoft Anti-Malware 7.0 - Service (a2AntiMalware) - Emsisoft GmbH - C:\Program Files (x86)\Emsisoft Anti-Malware\a2service.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: EpsonBidirectionalService - SEIKO EPSON CORPORATION - C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSVC.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 9273 bytes
log z mbam:
Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org
Verze: v2013.06.18.04
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 10.0.9200.16618
Oraj :: ORAJ-PC [administrátor]
18.6.2013 15:02:22
mbam-log-2013-06-18 (15-02-22).txt
Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 234423
Uplynulý čas: 3 minut, 54 sekund
Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené soubory: 0
(Žádné škodlivé položky nebyly zjištěny)
(konec)
AdwCleaner log:
# AdwCleaner v2.303 - Log vytvooen 18/06/2013 v 15:09:26
# Aktualizováno 08/06/2013 Xplode
# Operaení systém : Windows 7 Ultimate Service Pack 1 (64 bits)
# Uživatel : Oraj - ORAJ-PC
# Spuštin systém : Normální
# Spuštino z : C:\Users\Oraj\Desktop\adwcleaner.exe
# Volba [Prohledat]
***** [Služby] *****
***** [Soubory / Složky] *****
***** [Registry] *****
***** [Internetové prohlížeee] *****
-\\ Internet Explorer v10.0.9200.16611
[OK] Registry jsou eisté.
-\\ Mozilla Firefox v21.0 (cs)
Soubor : C:\Users\Oraj\AppData\Roaming\Mozilla\Firefox\Profiles\rsqbfnbb.default\prefs.js
[OK] Soubor je eistý.
-\\ Google Chrome v27.0.1453.110
Soubor : C:\Users\Oraj\AppData\Local\Google\Chrome\User Data\Default\Preferences
[OK] Soubor je eistý.
*************************
AdwCleaner[R5].txt - [821 octets] - [18/06/2013 15:09:26]
########## EOF - C:\AdwCleaner[R5].txt - [880 octets] ##########
- memphisto
- Guru Level 13
- Příspěvky: 21113
- Registrován: září 06
- Bydliště: Zlín - České Budějovice
- Pohlaví:
- Stav:
Offline
Re: Zřejmě mám zavirované PC
Stáhni si RogueKiller
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit
- Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit
- Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji
Re: Zřejmě mám zavirované PC
Program běžel bez problémů. Zde je log:
RogueKiller V8.6.1 _x64_ [Jun 17 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.geekstogo.com/forum/files/fi ... guekiller/
Webové stránky : http://tigzy.geekstogo.com/roguekiller.php
: http://tigzyrk.blogspot.com/
Operační systém : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Spuštěno v : Normální režim
Uživatel : Oraj [Práva správce]
Mód : Kontrola -- Datum : 06/18/2013 15:21:59
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 0 ¤¤¤
¤¤¤ ¤¤¤ Záznamy Registrů: : 4 ¤¤¤
[HJ DESK] HKCU\[...]\ClassicStartMenu : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK] HKCU\[...]\ClassicStartMenu : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO
[HJ DESK] HKCU\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK] HKCU\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO
¤¤¤ naplánované úlohy : 0 ¤¤¤
¤¤¤ spuštění položky : 0 ¤¤¤
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
¤¤¤ Ovladač : [NENAHRÁNO] ¤¤¤
¤¤¤ Externí včelstvo: ¤¤¤
¤¤¤ Nákaza : ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts
127.0.0.1 localhost
¤¤¤ Kontrola MBR: ¤¤¤
+++++ PhysicalDrive0: WDC WD1002FAEX-00Y9A0 ATA Device +++++
--- User ---
[MBR] 0b4ca96cfe4fa839745659a2b9d3b2a5
[BSP] 21ec915c6fd10c8b81333b91d1989155 : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 100 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 206848 | Size: 260900 Mo
2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 534530048 | Size: 692867 Mo
User = LL1 ... OK!
User = LL2 ... OK!
Dokončeno : << RKreport[0]_S_06182013_152159.txt >>
RKreport[0]_S_06182013_152031.txt
RogueKiller V8.6.1 _x64_ [Jun 17 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.geekstogo.com/forum/files/fi ... guekiller/
Webové stránky : http://tigzy.geekstogo.com/roguekiller.php
: http://tigzyrk.blogspot.com/
Operační systém : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Spuštěno v : Normální režim
Uživatel : Oraj [Práva správce]
Mód : Kontrola -- Datum : 06/18/2013 15:21:59
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 0 ¤¤¤
¤¤¤ ¤¤¤ Záznamy Registrů: : 4 ¤¤¤
[HJ DESK] HKCU\[...]\ClassicStartMenu : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK] HKCU\[...]\ClassicStartMenu : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO
[HJ DESK] HKCU\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK] HKCU\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO
¤¤¤ naplánované úlohy : 0 ¤¤¤
¤¤¤ spuštění položky : 0 ¤¤¤
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
¤¤¤ Ovladač : [NENAHRÁNO] ¤¤¤
¤¤¤ Externí včelstvo: ¤¤¤
¤¤¤ Nákaza : ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts
127.0.0.1 localhost
¤¤¤ Kontrola MBR: ¤¤¤
+++++ PhysicalDrive0: WDC WD1002FAEX-00Y9A0 ATA Device +++++
--- User ---
[MBR] 0b4ca96cfe4fa839745659a2b9d3b2a5
[BSP] 21ec915c6fd10c8b81333b91d1989155 : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 100 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 206848 | Size: 260900 Mo
2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 534530048 | Size: 692867 Mo
User = LL1 ... OK!
User = LL2 ... OK!
Dokončeno : << RKreport[0]_S_06182013_152159.txt >>
RKreport[0]_S_06182013_152031.txt
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Zřejmě mám zavirované PC
Zavři všechny programy a prohlížeče. Deaktivuj antivir a firewall.
Prosím, odpoj všechny USB nebo externí disky z počítače před spuštěním tohoto programu.
Spusť RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Počkej, dokud status okno zobrazuje "Prohledat "
- Klikni na "Smazat"
- Počkej, dokud Status box zobrazuje "Smazání skončeno "
- Klikni na "Zprávy " a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [číslo]. txt na ploše.
- Zavři RogueKiller
Stáhni si TDSSKiller
Na svojí plochu.Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller. 2.8.16.0_(datum)_log.txt , vlož sem prosím celý obsah logu.
+
nový log z HJT-
Prosím, odpoj všechny USB nebo externí disky z počítače před spuštěním tohoto programu.
Spusť RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Počkej, dokud status okno zobrazuje "Prohledat "
- Klikni na "Smazat"
- Počkej, dokud Status box zobrazuje "Smazání skončeno "
- Klikni na "Zprávy " a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [číslo]. txt na ploše.
- Zavři RogueKiller
Stáhni si TDSSKiller
Na svojí plochu.Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller. 2.8.16.0_(datum)_log.txt , vlož sem prosím celý obsah logu.
+
nový log z HJT-
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Zřejmě mám zavirované PC
log z RogueKiller
RogueKiller V8.6.1 _x64_ [Jun 17 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.geekstogo.com/forum/files/fi ... guekiller/
Webové stránky : http://tigzy.geekstogo.com/roguekiller.php
: http://tigzyrk.blogspot.com/
Operační systém : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Spuštěno v : Normální režim
Uživatel : Oraj [Práva správce]
Mód : Odebrat -- Datum : 06/18/2013 16:15:19
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 0 ¤¤¤
¤¤¤ ¤¤¤ Záznamy Registrů: : 4 ¤¤¤
[HJ DESK] HKCU\[...]\ClassicStartMenu : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK] HKCU\[...]\ClassicStartMenu : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)
[HJ DESK] HKCU\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK] HKCU\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)
¤¤¤ naplánované úlohy : 0 ¤¤¤
¤¤¤ spuštění položky : 0 ¤¤¤
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
¤¤¤ Ovladač : [NENAHRÁNO] ¤¤¤
¤¤¤ Externí včelstvo: ¤¤¤
¤¤¤ Nákaza : ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts
127.0.0.1 localhost
¤¤¤ Kontrola MBR: ¤¤¤
+++++ PhysicalDrive0: WDC WD1002FAEX-00Y9A0 ATA Device +++++
--- User ---
[MBR] 0b4ca96cfe4fa839745659a2b9d3b2a5
[BSP] 21ec915c6fd10c8b81333b91d1989155 : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 100 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 206848 | Size: 260900 Mo
2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 534530048 | Size: 692867 Mo
User = LL1 ... OK!
User = LL2 ... OK!
Dokončeno : << RKreport[0]_D_06182013_161519.txt >>
RKreport[0]_S_06182013_161511.txt
nový HJT log:
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:21:40, on 18.6.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16611)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
C:\Program Files (x86)\OSCAR Editor X7\OscarEditor.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\EPSON\BSTM\PG\E_L20IC2.EXE
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Users\Oraj\Desktop\hijackthis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:newtab
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:newtab
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [EPSON PageSTM TrayIcon01] C:\Program Files (x86)\EPSON\BSTM\PG\E_L20IC2.EXE
O4 - HKLM\..\Run: [NBAgent] "C:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe" /WinStart
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS5.5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [EAM Trial Reset] "C:\Program Files (x86)\EAM-TR.exe" /autoreset
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Pando Media Booster] C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
O4 - HKCU\..\Run: [OscarEditor] "C:\Program Files (x86)\OSCAR Editor X7\OscarEditor.exe" Minimum
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Emsisoft Anti-Malware 7.0 - Service (a2AntiMalware) - Emsisoft GmbH - C:\Program Files (x86)\Emsisoft Anti-Malware\a2service.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: EpsonBidirectionalService - SEIKO EPSON CORPORATION - C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSVC.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8296 bytes
První část z TDSSkiller:
16:15:38.0913 0440 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
16:15:39.0178 0440 ============================================================
16:15:39.0178 0440 Current date / time: 2013/06/18 16:15:39.0178
16:15:39.0178 0440 SystemInfo:
16:15:39.0178 0440
16:15:39.0178 0440 OS Version: 6.1.7601 ServicePack: 1.0
16:15:39.0178 0440 Product type: Workstation
16:15:39.0178 0440 ComputerName: ORAJ-PC
16:15:39.0178 0440 UserName: Oraj
16:15:39.0178 0440 Windows directory: C:\Windows
16:15:39.0178 0440 System windows directory: C:\Windows
16:15:39.0194 0440 Running under WOW64
16:15:39.0194 0440 Processor architecture: Intel x64
16:15:39.0194 0440 Number of processors: 4
16:15:39.0194 0440 Page size: 0x1000
16:15:39.0194 0440 Boot type: Normal boot
16:15:39.0194 0440 ============================================================
16:15:40.0114 0440 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
16:15:40.0114 0440 ============================================================
16:15:40.0114 0440 \Device\Harddisk0\DR0:
16:15:40.0114 0440 MBR partitions:
16:15:40.0114 0440 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
16:15:40.0114 0440 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x1FD92000
16:15:40.0114 0440 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x1FDC4800, BlocksNum 0x54941800
16:15:40.0114 0440 ============================================================
16:15:40.0130 0440 C: <-> \Device\Harddisk0\DR0\Partition2
16:15:40.0161 0440 D: <-> \Device\Harddisk0\DR0\Partition3
16:15:40.0192 0440 ============================================================
16:15:40.0192 0440 Initialize success
16:15:40.0192 0440 ============================================================
16:16:38.0982 3152 ============================================================
16:16:38.0982 3152 Scan started
16:16:38.0982 3152 Mode: Manual;
16:16:38.0982 3152 ============================================================
16:16:39.0824 3152 ================ Scan system memory ========================
16:16:39.0824 3152 System memory - ok
16:16:39.0824 3152 ================ Scan services =============================
16:16:39.0933 3152 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
16:16:39.0933 3152 1394ohci - ok
16:16:39.0996 3152 [ 2D6434E957F7CFA0035C20890F77BBC6 ] a2acc C:\PROGRAM FILES (X86)\EMSISOFT ANTI-MALWARE\a2accx64.sys
16:16:39.0996 3152 a2acc - ok
16:16:40.0089 3152 [ E773B6AD4182A01986DB8BF0AEE32A15 ] a2AntiMalware C:\Program Files (x86)\Emsisoft Anti-Malware\a2service.exe
16:16:40.0105 3152 a2AntiMalware - ok
16:16:40.0136 3152 [ D27A8B7BB0E15DFBFC6B4E774EE17AD9 ] A2DDA C:\Program Files (x86)\Emsisoft Anti-Malware\a2ddax64.sys
16:16:40.0136 3152 A2DDA - ok
16:16:40.0152 3152 [ 3D55CE53128C81E06CD6B024C3B9FAC3 ] a2injectiondriver C:\Program Files (x86)\Emsisoft Anti-Malware\a2dix64.sys
16:16:40.0152 3152 a2injectiondriver - ok
16:16:40.0167 3152 [ 0932B29AA1B9372FFE6D3AF8BA2ABA3A ] a2util C:\Program Files (x86)\Emsisoft Anti-Malware\a2util64.sys
16:16:40.0167 3152 a2util - ok
16:16:40.0183 3152 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\Windows\system32\drivers\ACPI.sys
16:16:40.0183 3152 ACPI - ok
16:16:40.0183 3152 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
16:16:40.0183 3152 AcpiPmi - ok
16:16:40.0245 3152 [ B1EA9681502EE57F87DB71D726288A5B ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
16:16:40.0245 3152 AdobeARMservice - ok
16:16:40.0308 3152 [ 9915504F602D277EE47FD843A677FD15 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
16:16:40.0308 3152 AdobeFlashPlayerUpdateSvc - ok
16:16:40.0339 3152 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
16:16:40.0355 3152 adp94xx - ok
16:16:40.0370 3152 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\drivers\adpahci.sys
16:16:40.0386 3152 adpahci - ok
16:16:40.0401 3152 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\drivers\adpu320.sys
16:16:40.0401 3152 adpu320 - ok
16:16:40.0433 3152 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
16:16:40.0433 3152 AeLookupSvc - ok
16:16:40.0464 3152 [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD C:\Windows\system32\drivers\afd.sys
16:16:40.0479 3152 AFD - ok
16:16:40.0479 3152 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\drivers\agp440.sys
16:16:40.0495 3152 agp440 - ok
16:16:40.0495 3152 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe
16:16:40.0495 3152 ALG - ok
16:16:40.0495 3152 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\drivers\aliide.sys
16:16:40.0511 3152 aliide - ok
16:16:40.0511 3152 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\drivers\amdide.sys
16:16:40.0511 3152 amdide - ok
16:16:40.0511 3152 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\drivers\amdk8.sys
16:16:40.0526 3152 AmdK8 - ok
16:16:40.0542 3152 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
16:16:40.0542 3152 AmdPPM - ok
16:16:40.0573 3152 [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata C:\Windows\system32\drivers\amdsata.sys
16:16:40.0573 3152 amdsata - ok
16:16:40.0573 3152 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\drivers\amdsbs.sys
16:16:40.0573 3152 amdsbs - ok
16:16:40.0589 3152 [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata C:\Windows\system32\drivers\amdxata.sys
16:16:40.0589 3152 amdxata - ok
16:16:40.0604 3152 [ E4B0BB52FCCB391CD31BC5D617F1303C ] Amfilter C:\Windows\system32\DRIVERS\Amfltx64.sys
16:16:40.0620 3152 Amfilter - ok
16:16:40.0620 3152 [ DE7F69DE4F10EEB2B9F05B8CFE8BFDAC ] Amusbprt C:\Windows\system32\DRIVERS\Amusbx64.sys
16:16:40.0620 3152 Amusbprt - ok
16:16:40.0635 3152 [ 89A69C3F2F319B43379399547526D952 ] AppID C:\Windows\system32\drivers\appid.sys
16:16:40.0635 3152 AppID - ok
16:16:40.0635 3152 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll
16:16:40.0635 3152 AppIDSvc - ok
16:16:40.0667 3152 [ 9D2A2369AB4B08A4905FE72DB104498F ] Appinfo C:\Windows\System32\appinfo.dll
16:16:40.0667 3152 Appinfo - ok
16:16:40.0682 3152 [ 4ABA3E75A76195A3E38ED2766C962899 ] AppMgmt C:\Windows\System32\appmgmts.dll
16:16:40.0682 3152 AppMgmt - ok
16:16:40.0682 3152 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\drivers\arc.sys
16:16:40.0698 3152 arc - ok
16:16:40.0698 3152 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\drivers\arcsas.sys
16:16:40.0698 3152 arcsas - ok
16:16:40.0713 3152 [ 0BAEFD3F648C6E7AB52990DD9565E4E2 ] aswFsBlk C:\Windows\system32\drivers\aswFsBlk.sys
16:16:40.0713 3152 aswFsBlk - ok
16:16:40.0729 3152 [ FA562F34ED6633C66170B09182B4C049 ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
16:16:40.0729 3152 aswMonFlt - ok
16:16:40.0729 3152 [ 64E2BAB4096C13D2342BC4661C967E07 ] aswRdr C:\Windows\System32\Drivers\aswrdr2.sys
16:16:40.0729 3152 aswRdr - ok
16:16:40.0760 3152 [ 5573AA70993A2BB81525B1C704B88763 ] aswRvrt C:\Windows\system32\drivers\aswRvrt.sys
16:16:40.0760 3152 aswRvrt - ok
16:16:40.0791 3152 [ 10ED1CAB84AA65983C41A11F60294C9B ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
16:16:40.0807 3152 aswSnx - ok
16:16:40.0823 3152 [ 00E5253353717D3CA12A0F5A6F9991EC ] aswSP C:\Windows\system32\drivers\aswSP.sys
16:16:40.0823 3152 aswSP - ok
16:16:40.0838 3152 [ 29DD8E458A84171202AA4979364C30C0 ] aswTdi C:\Windows\system32\drivers\aswTdi.sys
16:16:40.0838 3152 aswTdi - ok
16:16:40.0838 3152 [ 6359B99C955DB9F40B653159A0EED261 ] aswVmm C:\Windows\system32\drivers\aswVmm.sys
16:16:40.0838 3152 aswVmm - ok
16:16:40.0854 3152 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
16:16:40.0854 3152 AsyncMac - ok
16:16:40.0869 3152 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\drivers\atapi.sys
16:16:40.0869 3152 atapi - ok
16:16:40.0901 3152 [ 7C5D273E29DCC5505469B299C6F29163 ] AtiPcie C:\Windows\system32\DRIVERS\AtiPcie.sys
16:16:40.0901 3152 AtiPcie - ok
16:16:40.0932 3152 [ 4AEF9EC86818375495FB78CA58DF4E18 ] atksgt C:\Windows\system32\DRIVERS\atksgt.sys
16:16:40.0932 3152 atksgt - ok
16:16:40.0947 3152 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
16:16:40.0947 3152 AudioEndpointBuilder - ok
16:16:40.0979 3152 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv C:\Windows\System32\Audiosrv.dll
16:16:40.0979 3152 AudioSrv - ok
16:16:41.0010 3152 [ 28D6701C710AD7BA3CB95E75F8F1A9AA ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
16:16:41.0010 3152 avast! Antivirus - ok
16:16:41.0010 3152 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\Windows\System32\AxInstSV.dll
16:16:41.0025 3152 AxInstSV - ok
16:16:41.0025 3152 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\drivers\bxvbda.sys
16:16:41.0025 3152 b06bdrv - ok
16:16:41.0041 3152 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys
16:16:41.0041 3152 b57nd60a - ok
16:16:41.0041 3152 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll
16:16:41.0041 3152 BDESVC - ok
16:16:41.0041 3152 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys
16:16:41.0041 3152 Beep - ok
16:16:41.0072 3152 [ 82974D6A2FD19445CC5171FC378668A4 ] BFE C:\Windows\System32\bfe.dll
16:16:41.0072 3152 BFE - ok
16:16:41.0103 3152 [ 1EA7969E3271CBC59E1730697DC74682 ] BITS C:\Windows\System32\qmgr.dll
16:16:41.0119 3152 BITS - ok
16:16:41.0119 3152 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
16:16:41.0119 3152 blbdrive - ok
16:16:41.0135 3152 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
16:16:41.0135 3152 bowser - ok
16:16:41.0150 3152 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\drivers\BrFiltLo.sys
16:16:41.0150 3152 BrFiltLo - ok
16:16:41.0166 3152 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\drivers\BrFiltUp.sys
16:16:41.0166 3152 BrFiltUp - ok
16:16:41.0181 3152 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser C:\Windows\System32\browser.dll
16:16:41.0181 3152 Browser - ok
16:16:41.0181 3152 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys
16:16:41.0197 3152 Brserid - ok
16:16:41.0197 3152 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
16:16:41.0197 3152 BrSerWdm - ok
16:16:41.0197 3152 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
16:16:41.0197 3152 BrUsbMdm - ok
16:16:41.0213 3152 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
16:16:41.0213 3152 BrUsbSer - ok
16:16:41.0213 3152 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
16:16:41.0213 3152 BTHMODEM - ok
16:16:41.0228 3152 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll
16:16:41.0228 3152 bthserv - ok
16:16:41.0244 3152 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
16:16:41.0244 3152 cdfs - ok
16:16:41.0259 3152 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
16:16:41.0259 3152 cdrom - ok
16:16:41.0259 3152 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\Windows\System32\certprop.dll
16:16:41.0259 3152 CertPropSvc - ok
16:16:41.0275 3152 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\drivers\circlass.sys
16:16:41.0275 3152 circlass - ok
16:16:41.0291 3152 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys
16:16:41.0291 3152 CLFS - ok
16:16:41.0322 3152 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
16:16:41.0322 3152 clr_optimization_v2.0.50727_32 - ok
16:16:41.0369 3152 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
16:16:41.0369 3152 clr_optimization_v2.0.50727_64 - ok
16:16:41.0415 3152 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
16:16:41.0415 3152 clr_optimization_v4.0.30319_32 - ok
16:16:41.0431 3152 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
16:16:41.0447 3152 clr_optimization_v4.0.30319_64 - ok
16:16:41.0447 3152 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\drivers\CmBatt.sys
16:16:41.0462 3152 CmBatt - ok
16:16:41.0462 3152 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\drivers\cmdide.sys
16:16:41.0462 3152 cmdide - ok
16:16:41.0509 3152 [ AAFCB52FE0037207FB6FBEA070D25EFE ] CNG C:\Windows\system32\Drivers\cng.sys
16:16:41.0509 3152 CNG - ok
16:16:41.0540 3152 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\drivers\compbatt.sys
16:16:41.0540 3152 Compbatt - ok
16:16:41.0556 3152 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys
16:16:41.0556 3152 CompositeBus - ok
16:16:41.0571 3152 COMSysApp - ok
16:16:41.0571 3152 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
16:16:41.0587 3152 crcdisk - ok
16:16:41.0618 3152 [ D8129C49798CBBFB2E4351D4B7B8EF9C ] CryptSvc C:\Windows\system32\cryptsvc.dll
16:16:41.0634 3152 CryptSvc - ok
16:16:41.0743 3152 [ 54DA3DFD29ED9F1619B6F53F3CE55E49 ] CSC C:\Windows\system32\drivers\csc.sys
16:16:41.0743 3152 CSC - ok
16:16:41.0774 3152 [ 3AB183AB4D2C79DCF459CD2C1266B043 ] CscService C:\Windows\System32\cscsvc.dll
16:16:41.0790 3152 CscService - ok
16:16:41.0805 3152 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\Windows\system32\rpcss.dll
16:16:41.0821 3152 DcomLaunch - ok
16:16:41.0821 3152 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll
16:16:41.0837 3152 defragsvc - ok
16:16:41.0837 3152 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
16:16:41.0837 3152 DfsC - ok
16:16:41.0852 3152 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\Windows\system32\dhcpcore.dll
16:16:41.0852 3152 Dhcp - ok
16:16:41.0868 3152 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys
16:16:41.0868 3152 discache - ok
16:16:41.0883 3152 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\drivers\disk.sys
16:16:41.0883 3152 Disk - ok
16:16:41.0899 3152 [ 5DB085A8A6600BE6401F2B24EECB5415 ] dmvsc C:\Windows\system32\drivers\dmvsc.sys
16:16:41.0899 3152 dmvsc - ok
16:16:41.0915 3152 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\Windows\System32\dnsrslvr.dll
16:16:41.0915 3152 Dnscache - ok
16:16:41.0930 3152 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\Windows\System32\dot3svc.dll
16:16:41.0946 3152 dot3svc - ok
16:16:41.0961 3152 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\Windows\system32\dps.dll
16:16:41.0961 3152 DPS - ok
16:16:41.0977 3152 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
16:16:41.0977 3152 drmkaud - ok
16:16:41.0993 3152 [ 46571ED73AE84469DCA53081D33CF3C8 ] dtsoftbus01 C:\Windows\system32\DRIVERS\dtsoftbus01.sys
16:16:42.0008 3152 dtsoftbus01 - ok
16:16:42.0039 3152 [ AF2E16242AA723F68F461B6EAE2EAD3D ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
16:16:42.0039 3152 DXGKrnl - ok
16:16:42.0071 3152 EagleX64 - ok
16:16:42.0071 3152 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll
16:16:42.0071 3152 EapHost - ok
16:16:42.0149 3152 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\drivers\evbda.sys
16:16:42.0164 3152 ebdrv - ok
16:16:42.0195 3152 [ C118A82CD78818C29AB228366EBF81C3 ] EFS C:\Windows\System32\lsass.exe
16:16:42.0195 3152 EFS - ok
16:16:42.0227 3152 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
16:16:42.0242 3152 ehRecvr - ok
16:16:42.0258 3152 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe
16:16:42.0258 3152 ehSched - ok
16:16:42.0289 3152 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\drivers\elxstor.sys
16:16:42.0305 3152 elxstor - ok
16:16:42.0336 3152 [ 017CF0AAA4574066DE88B69EC616A816 ] EpsonBidirectionalService C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSVC.exe
16:16:42.0351 3152 EpsonBidirectionalService - ok
16:16:42.0367 3152 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\drivers\errdev.sys
16:16:42.0367 3152 ErrDev - ok
16:16:42.0383 3152 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll
16:16:42.0398 3152 EventSystem - ok
16:16:42.0414 3152 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys
16:16:42.0414 3152 exfat - ok
16:16:42.0429 3152 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys
16:16:42.0445 3152 fastfat - ok
16:16:42.0461 3152 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\Windows\system32\fxssvc.exe
16:16:42.0476 3152 Fax - ok
16:16:42.0476 3152 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\drivers\fdc.sys
16:16:42.0476 3152 fdc - ok
16:16:42.0476 3152 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll
16:16:42.0492 3152 fdPHost - ok
16:16:42.0492 3152 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll
16:16:42.0492 3152 FDResPub - ok
16:16:42.0507 3152 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
16:16:42.0507 3152 FileInfo - ok
16:16:42.0507 3152 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
16:16:42.0507 3152 Filetrace - ok
16:16:42.0507 3152 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\drivers\flpydisk.sys
16:16:42.0507 3152 flpydisk - ok
16:16:42.0523 3152 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
16:16:42.0523 3152 FltMgr - ok
16:16:42.0554 3152 [ C4C183E6551084039EC862DA1C945E3D ] FontCache C:\Windows\system32\FntCache.dll
16:16:42.0570 3152 FontCache - ok
16:16:42.0601 3152 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
16:16:42.0601 3152 FontCache3.0.0.0 - ok
16:16:42.0617 3152 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
16:16:42.0617 3152 FsDepends - ok
16:16:42.0617 3152 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
16:16:42.0617 3152 Fs_Rec - ok
16:16:42.0648 3152 [ 8F6322049018354F45F05A2FD2D4E5E0 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
16:16:42.0648 3152 fvevol - ok
16:16:42.0663 3152 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
16:16:42.0663 3152 gagp30kx - ok
16:16:42.0679 3152 GMSIPCI - ok
16:16:42.0710 3152 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\Windows\System32\gpsvc.dll
16:16:42.0710 3152 gpsvc - ok
16:16:42.0773 3152 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
16:16:42.0788 3152 gupdate - ok
16:16:42.0788 3152 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
16:16:42.0804 3152 gupdatem - ok
16:16:42.0804 3152 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
16:16:42.0804 3152 hcw85cir - ok
16:16:42.0835 3152 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
16:16:42.0835 3152 HdAudAddService - ok
16:16:42.0851 3152 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
16:16:42.0851 3152 HDAudBus - ok
16:16:42.0851 3152 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\drivers\HidBatt.sys
16:16:42.0851 3152 HidBatt - ok
16:16:42.0866 3152 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\drivers\hidbth.sys
16:16:42.0866 3152 HidBth - ok
16:16:42.0866 3152 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\drivers\hidir.sys
16:16:42.0866 3152 HidIr - ok
16:16:42.0882 3152 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\system32\hidserv.dll
16:16:42.0882 3152 hidserv - ok
16:16:42.0913 3152 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
16:16:42.0913 3152 HidUsb - ok
16:16:42.0913 3152 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\Windows\system32\kmsvc.dll
16:16:42.0929 3152 hkmsvc - ok
16:16:42.0929 3152 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll
16:16:42.0929 3152 HomeGroupListener - ok
16:16:42.0960 3152 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
16:16:42.0960 3152 HomeGroupProvider - ok
16:16:42.0960 3152 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
16:16:42.0960 3152 HpSAMD - ok
16:16:42.0975 3152 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\Windows\system32\drivers\HTTP.sys
16:16:42.0991 3152 HTTP - ok
16:16:42.0991 3152 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
16:16:42.0991 3152 hwpolicy - ok
16:16:43.0007 3152 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
16:16:43.0007 3152 i8042prt - ok
16:16:43.0038 3152 [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
16:16:43.0038 3152 iaStorV - ok
16:16:43.0053 3152 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
16:16:43.0069 3152 idsvc - ok
16:16:43.0085 3152 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\drivers\iirsp.sys
16:16:43.0085 3152 iirsp - ok
16:16:43.0100 3152 [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT C:\Windows\System32\ikeext.dll
16:16:43.0100 3152 IKEEXT - ok
16:16:43.0116 3152 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\drivers\intelide.sys
16:16:43.0116 3152 intelide - ok
16:16:43.0116 3152 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\drivers\intelppm.sys
16:16:43.0116 3152 intelppm - ok
16:16:43.0131 3152 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll
16:16:43.0131 3152 IPBusEnum - ok
16:16:43.0131 3152 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
16:16:43.0131 3152 IpFilterDriver - ok
16:16:43.0163 3152 [ 08C2957BB30058E663720C5606885653 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
16:16:43.0163 3152 iphlpsvc - ok
16:16:43.0178 3152 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
16:16:43.0178 3152 IPMIDRV - ok
16:16:43.0178 3152 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
16:16:43.0178 3152 IPNAT - ok
16:16:43.0194 3152 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
16:16:43.0194 3152 IRENUM - ok
16:16:43.0194 3152 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\drivers\isapnp.sys
16:16:43.0194 3152 isapnp - ok
16:16:43.0225 3152 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
16:16:43.0225 3152 iScsiPrt - ok
16:16:43.0225 3152 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
16:16:43.0241 3152 kbdclass - ok
16:16:43.0241 3152 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
16:16:43.0241 3152 kbdhid - ok
16:16:43.0241 3152 [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso C:\Windows\system32\lsass.exe
16:16:43.0256 3152 KeyIso - ok
16:16:43.0272 3152 [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
16:16:43.0272 3152 KSecDD - ok
16:16:43.0287 3152 [ 7EFB9333E4ECCE6AE4AE9D777D9E553E ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
16:16:43.0287 3152 KSecPkg - ok
16:16:43.0287 3152 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
16:16:43.0287 3152 ksthunk - ok
16:16:43.0319 3152 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll
16:16:43.0319 3152 KtmRm - ok
16:16:43.0319 3152 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\Windows\system32\srvsvc.dll
16:16:43.0334 3152 LanmanServer - ok
16:16:43.0350 3152 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
16:16:43.0350 3152 LanmanWorkstation - ok
16:16:43.0381 3152 [ B658B7076B1ACAA5876524595630F183 ] lirsgt C:\Windows\system32\DRIVERS\lirsgt.sys
16:16:43.0397 3152 lirsgt - ok
16:16:43.0412 3152 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
16:16:43.0412 3152 lltdio - ok
16:16:43.0443 3152 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll
16:16:43.0459 3152 lltdsvc - ok
16:16:43.0475 3152 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll
16:16:43.0475 3152 lmhosts - ok
16:16:43.0490 3152 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
16:16:43.0490 3152 LSI_FC - ok
16:16:43.0506 3152 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
16:16:43.0506 3152 LSI_SAS - ok
16:16:43.0521 3152 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys
16:16:43.0521 3152 LSI_SAS2 - ok
16:16:43.0521 3152 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
16:16:43.0521 3152 LSI_SCSI - ok
16:16:43.0537 3152 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys
16:16:43.0537 3152 luafv - ok
16:16:43.0553 3152 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
16:16:43.0553 3152 Mcx2Svc - ok
16:16:43.0584 3152 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\drivers\megasas.sys
16:16:43.0584 3152 megasas - ok
16:16:43.0599 3152 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\drivers\MegaSR.sys
16:16:43.0599 3152 MegaSR - ok
16:16:43.0646 3152 Microsoft SharePoint Workspace Audit Service - ok
16:16:43.0662 3152 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll
16:16:43.0662 3152 MMCSS - ok
16:16:43.0677 3152 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys
16:16:43.0677 3152 Modem - ok
16:16:43.0693 3152 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys
16:16:43.0693 3152 monitor - ok
16:16:43.0709 3152 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
16:16:43.0709 3152 mouclass - ok
16:16:43.0709 3152 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
16:16:43.0724 3152 mouhid - ok
16:16:43.0724 3152 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
16:16:43.0724 3152 mountmgr - ok
16:16:43.0771 3152 [ 825BF0E46B4470A463AEB641480C5FCA ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
16:16:43.0771 3152 MozillaMaintenance - ok
16:16:43.0787 3152 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\Windows\system32\drivers\mpio.sys
16:16:43.0787 3152 mpio - ok
16:16:43.0802 3152 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
16:16:43.0802 3152 mpsdrv - ok
16:16:43.0833 3152 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc C:\Windows\system32\mpssvc.dll
16:16:43.0849 3152 MpsSvc - ok
16:16:43.0849 3152 [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
16:16:43.0849 3152 MRxDAV - ok
16:16:43.0865 3152 [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
16:16:43.0880 3152 mrxsmb - ok
16:16:43.0880 3152 [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
16:16:43.0880 3152 mrxsmb10 - ok
16:16:43.0896 3152 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
16:16:43.0896 3152 mrxsmb20 - ok
16:16:43.0911 3152 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\Windows\system32\drivers\msahci.sys
16:16:43.0911 3152 msahci - ok
16:16:43.0911 3152 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\Windows\system32\drivers\msdsm.sys
16:16:43.0911 3152 msdsm - ok
16:16:43.0927 3152 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe
16:16:43.0927 3152 MSDTC - ok
16:16:43.0958 3152 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys
16:16:43.0958 3152 Msfs - ok
16:16:43.0958 3152 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
16:16:43.0958 3152 mshidkmdf - ok
16:16:43.0974 3152 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
16:16:43.0974 3152 msisadrv - ok
16:16:43.0989 3152 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
16:16:43.0989 3152 MSiSCSI - ok
16:16:43.0989 3152 msiserver - ok
16:16:44.0005 3152 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
16:16:44.0005 3152 MSKSSRV - ok
16:16:44.0021 3152 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
16:16:44.0021 3152 MSPCLOCK - ok
16:16:44.0021 3152 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
16:16:44.0021 3152 MSPQM - ok
16:16:44.0036 3152 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
16:16:44.0036 3152 MsRPC - ok
16:16:44.0052 3152 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
16:16:44.0052 3152 mssmbios - ok
16:16:44.0052 3152 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
16:16:44.0052 3152 MSTEE - ok
16:16:44.0067 3152 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\drivers\MTConfig.sys
16:16:44.0067 3152 MTConfig - ok
16:16:44.0083 3152 [ 19B006B181E3875FD254F7B67ACF1E7C ] MTsensor C:\Windows\system32\DRIVERS\ASACPI.sys
16:16:44.0083 3152 MTsensor - ok
16:16:44.0099 3152 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys
16:16:44.0099 3152 Mup - ok
16:16:44.0114 3152 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\Windows\system32\qagentRT.dll
16:16:44.0130 3152 napagent - ok
16:16:44.0130 3152 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
16:16:44.0130 3152 NativeWifiP - ok
16:16:44.0177 3152 [ 760E38053BF56E501D562B70AD796B88 ] NDIS C:\Windows\system32\drivers\ndis.sys
16:16:44.0192 3152 NDIS - ok
16:16:44.0192 3152 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
16:16:44.0192 3152 NdisCap - ok
16:16:44.0208 3152 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
16:16:44.0208 3152 NdisTapi - ok
16:16:44.0223 3152 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
16:16:44.0223 3152 Ndisuio - ok
16:16:44.0239 3152 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
16:16:44.0239 3152 NdisWan - ok
16:16:44.0255 3152 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
16:16:44.0255 3152 NDProxy - ok
16:16:44.0317 3152 [ 7D2633295EB6FF2B938185874884059D ] Nero BackItUp Scheduler 4.0 C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
16:16:44.0333 3152 Nero BackItUp Scheduler 4.0 - ok
16:16:44.0348 3152 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
16:16:44.0348 3152 NetBIOS - ok
16:16:44.0364 3152 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
16:16:44.0364 3152 NetBT - ok
16:16:44.0379 3152 [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon C:\Windows\system32\lsass.exe
16:16:44.0379 3152 Netlogon - ok
16:16:44.0411 3152 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll
16:16:44.0411 3152 Netman - ok
16:16:44.0426 3152 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll
16:16:44.0426 3152 netprofm - ok
16:16:44.0442 3152 [ 3E5A36127E201DDF663176B66828FAFE ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
16:16:44.0442 3152 NetTcpPortSharing - ok
16:16:44.0457 3152 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
16:16:44.0457 3152 nfrd960 - ok
16:16:44.0489 3152 [ 8AD77806D336673F270DB31645267293 ] NlaSvc C:\Windows\System32\nlasvc.dll
16:16:44.0489 3152 NlaSvc - ok
16:16:44.0489 3152 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys
16:16:44.0504 3152 Npfs - ok
16:16:44.0504 3152 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll
16:16:44.0504 3152 nsi - ok
16:16:44.0504 3152 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
16:16:44.0504 3152 nsiproxy - ok
16:16:44.0567 3152 [ B98F8C6E31CD07B2E6F71F7F648E38C0 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
16:16:44.0582 3152 Ntfs - ok
16:16:44.0598 3152 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys
16:16:44.0598 3152 Null - ok
16:16:44.0629 3152 [ B4F53BCA4C688FF47F04FA90098F896E ] NVHDA C:\Windows\system32\drivers\nvhda64v.sys
16:16:44.0645 3152 NVHDA - ok
16:16:44.0847 3152 [ 0A2F27B5BCC45B64E152DD6AE0815198 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
16:16:44.0894 3152 nvlddmkm - ok
16:16:44.0910 3152 [ 0A92CB65770442ED0DC44834632F66AD ] nvraid C:\Windows\system32\drivers\nvraid.sys
16:16:44.0910 3152 nvraid - ok
16:16:44.0925 3152 [ DAB0E87525C10052BF65F06152F37E4A ] nvstor C:\Windows\system32\drivers\nvstor.sys
16:16:44.0925 3152 nvstor - ok
16:16:44.0988 3152 [ 574087EA9105F23FB522A4FDDD5292D9 ] nvsvc C:\Windows\system32\nvvsvc.exe
16:16:45.0019 3152 nvsvc - ok
16:16:45.0081 3152 [ ABA5A88740635D37A2B6CEB27DBC738A ] nvUpdatusService C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
16:16:45.0097 3152 nvUpdatusService - ok
16:16:45.0097 3152 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
16:16:45.0097 3152 nv_agp - ok
16:16:45.0113 3152 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
16:16:45.0113 3152 ohci1394 - ok
16:16:45.0159 3152 [ 4965B005492CBA7719E82B71E3245495 ] ose64 C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
16:16:45.0159 3152 ose64 - ok
16:16:45.0269 3152 [ 61BFFB5F57AD12F83AB64B7181829B34 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
16:16:45.0362 3152 osppsvc - ok
16:16:45.0393 3152 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
16:16:45.0393 3152 p2pimsvc - ok
16:16:45.0409 3152 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll
16:16:45.0409 3152 p2psvc - ok
16:16:45.0425 3152 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\drivers\parport.sys
16:16:45.0425 3152 Parport - ok
16:16:45.0440 3152 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\Windows\system32\drivers\partmgr.sys
16:16:45.0440 3152 partmgr - ok
16:16:45.0440 3152 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\Windows\System32\pcasvc.dll
16:16:45.0456 3152 PcaSvc - ok
16:16:45.0456 3152 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\Windows\system32\drivers\pci.sys
16:16:45.0456 3152 pci - ok
16:16:45.0471 3152 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\drivers\pciide.sys
16:16:45.0471 3152 pciide - ok
16:16:45.0487 3152 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
16:16:45.0487 3152 pcmcia - ok
16:16:45.0487 3152 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys
16:16:45.0487 3152 pcw - ok
16:16:45.0518 3152 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\Windows\system32\drivers\peauth.sys
16:16:45.0518 3152 PEAUTH - ok
16:16:45.0549 3152 [ B9B0A4299DD2D76A4243F75FD54DC680 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll
16:16:45.0565 3152 PeerDistSvc - ok
16:16:45.0596 3152 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe
16:16:45.0612 3152 PerfHost - ok
16:16:45.0627 3152 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\Windows\system32\pla.dll
16:16:45.0643 3152 pla - ok
16:16:45.0674 3152 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
16:16:45.0674 3152 PlugPlay - ok
16:16:45.0690 3152 PnkBstrA - ok
16:16:45.0690 3152 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
16:16:45.0690 3152 PNRPAutoReg - ok
16:16:45.0690 3152 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
16:16:45.0705 3152 PNRPsvc - ok
16:16:45.0721 3152 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
16:16:45.0737 3152 PolicyAgent - ok
16:16:45.0752 3152 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll
16:16:45.0752 3152 Power - ok
16:16:45.0783 3152 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
16:16:45.0783 3152 PptpMiniport - ok
16:16:45.0799 3152 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\drivers\processr.sys
16:16:45.0799 3152 Processor - ok
16:16:45.0815 3152 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc C:\Windows\system32\profsvc.dll
16:16:45.0815 3152 ProfSvc - ok
16:16:45.0830 3152 [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\Windows\system32\lsass.exe
16:16:45.0830 3152 ProtectedStorage - ok
16:16:45.0846 3152 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\Windows\system32\DRIVERS\pacer.sys
16:16:45.0846 3152 Psched - ok
16:16:45.0877 3152 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\drivers\ql2300.sys
16:16:45.0877 3152 ql2300 - ok
16:16:45.0893 3152 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
16:16:45.0893 3152 ql40xx - ok
16:16:45.0908 3152 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll
16:16:45.0908 3152 QWAVE - ok
16:16:45.0924 3152 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
16:16:45.0924 3152 QWAVEdrv - ok
16:16:45.0939 3152 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
16:16:45.0939 3152 RasAcd - ok
16:16:45.0955 3152 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
16:16:45.0955 3152 RasAgileVpn - ok
16:16:45.0971 3152 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll
16:16:45.0971 3152 RasAuto - ok
16:16:45.0971 3152 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
16:16:45.0986 3152 Rasl2tp - ok
16:16:45.0986 3152 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\Windows\System32\rasmans.dll
16:16:45.0986 3152 RasMan - ok
16:16:46.0002 3152 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
16:16:46.0002 3152 RasPppoe - ok
16:16:46.0002 3152 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
16:16:46.0002 3152 RasSstp - ok
16:16:46.0017 3152 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
16:16:46.0017 3152 rdbss - ok
16:16:46.0033 3152 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
16:16:46.0033 3152 rdpbus - ok
16:16:46.0033 3152 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
16:16:46.0033 3152 RDPCDD - ok
16:16:46.0064 3152 [ 1B6163C503398B23FF8B939C67747683 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys
16:16:46.0064 3152 RDPDR - ok
16:16:46.0080 3152 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
16:16:46.0080 3152 RDPENCDD - ok
16:16:46.0095 3152 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
16:16:46.0095 3152 RDPREFMP - ok
16:16:46.0111 3152 [ 313F68E1A3E6345A4F47A36B07062F34 ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
16:16:46.0111 3152 RdpVideoMiniport - ok
16:16:46.0127 3152 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
16:16:46.0142 3152 RDPWD - ok
16:16:46.0158 3152 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
16:16:46.0158 3152 rdyboost - ok
16:16:46.0173 3152 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\Windows\System32\mprdim.dll
16:16:46.0173 3152 RemoteAccess - ok
16:16:46.0173 3152 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll
16:16:46.0173 3152 RemoteRegistry - ok
16:16:46.0189 3152 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
16:16:46.0189 3152 RpcEptMapper - ok
16:16:46.0205 3152 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe
16:16:46.0205 3152 RpcLocator - ok
16:16:46.0220 3152 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\Windows\system32\rpcss.dll
16:16:46.0236 3152 RpcSs - ok
16:16:46.0236 3152 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
16:16:46.0236 3152 rspndr - ok
16:16:46.0283 3152 [ EE082E06A82FF630351D1E0EBBD3D8D0 ] RTL8167 C:\Windows\system32\DRIVERS\Rt64win7.sys
16:16:46.0283 3152 RTL8167 - ok
16:16:46.0298 3152 [ E60C0A09F997826C7627B244195AB581 ] s3cap C:\Windows\system32\drivers\vms3cap.sys
16:16:46.0298 3152 s3cap - ok
16:16:46.0298 3152 [ C118A82CD78818C29AB228366EBF81C3 ] SamSs C:\Windows\system32\lsass.exe
16:16:46.0298 3152 SamSs - ok
16:16:46.0314 3152 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
16:16:46.0314 3152 sbp2port - ok
16:16:46.0329 3152 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll
16:16:46.0329 3152 SCardSvr - ok
16:16:46.0345 3152 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
16:16:46.0345 3152 scfilter - ok
16:16:46.0361 3152 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\Windows\system32\schedsvc.dll
16:16:46.0361 3152 Schedule - ok
16:16:46.0376 3152 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\Windows\System32\certprop.dll
16:16:46.0376 3152 SCPolicySvc - ok
16:16:46.0376 3152 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\Windows\System32\SDRSVC.dll
16:16:46.0392 3152 SDRSVC - ok
16:16:46.0392 3152 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys
16:16:46.0392 3152 secdrv - ok
16:16:46.0407 3152 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\Windows\system32\seclogon.dll
16:16:46.0407 3152 seclogon - ok
16:16:46.0423 3152 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\System32\sens.dll
16:16:46.0423 3152 SENS - ok
16:16:46.0423 3152 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll
16:16:46.0423 3152 SensrSvc - ok
16:16:46.0454 3152 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
16:16:46.0454 3152 Serenum - ok
16:16:46.0454 3152 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\DRIVERS\serial.sys
16:16:46.0454 3152 Serial - ok
16:16:46.0454 3152 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\drivers\sermouse.sys
16:16:46.0454 3152 sermouse - ok
16:16:46.0470 3152 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\Windows\system32\sessenv.dll
16:16:46.0470 3152 SessionEnv - ok
16:16:46.0470 3152 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
16:16:46.0470 3152 sffdisk - ok
16:16:46.0485 3152 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
16:16:46.0485 3152 sffp_mmc - ok
16:16:46.0485 3152 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
16:16:46.0485 3152 sffp_sd - ok
16:16:46.0485 3152 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
16:16:46.0501 3152 sfloppy - ok
16:16:46.0501 3152 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\Windows\System32\ipnathlp.dll
16:16:46.0501 3152 SharedAccess - ok
16:16:46.0517 3152 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll
16:16:46.0532 3152 ShellHWDetection - ok
16:16:46.0532 3152 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys
16:16:46.0532 3152 SiSRaid2 - ok
16:16:46.0548 3152 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
16:16:46.0548 3152 SiSRaid4 - ok
16:16:46.0579 3152 [ 7C15061CD0372487903B07B9BB03AFAD ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
16:16:46.0579 3152 SkypeUpdate - ok
16:16:46.0595 3152 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys
16:16:46.0595 3152 Smb - ok
16:16:46.0610 3152 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe
16:16:46.0626 3152 SNMPTRAP - ok
16:16:46.0626 3152 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys
16:16:46.0626 3152 spldr - ok
16:16:46.0641 3152 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler C:\Windows\System32\spoolsv.exe
16:16:46.0657 3152 Spooler - ok
16:16:46.0735 3152 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\Windows\system32\sppsvc.exe
16:16:46.0751 3152 sppsvc - ok
16:16:46.0751 3152 Scan interrupted by user!
16:16:46.0751 3152 ================ Scan global ===============================
16:16:46.0751 3152 Scan interrupted by user!
16:16:46.0751 3152 ================ Scan MBR ==================================
16:16:46.0751 3152 Scan interrupted by user!
16:16:46.0751 3152 ================ Scan VBR ==================================
16:16:46.0751 3152 Scan interrupted by user!
16:16:46.0751 3152 ============================================================
16:16:46.0751 3152 Scan finished
16:16:46.0751 3152 ============================================================
16:16:46.0766 1396 Detected object count: 0
16:16:46.0766 1396 Actual detected object count: 0
16:16:48.0763 2916 Deinitialize success
RogueKiller V8.6.1 _x64_ [Jun 17 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.geekstogo.com/forum/files/fi ... guekiller/
Webové stránky : http://tigzy.geekstogo.com/roguekiller.php
: http://tigzyrk.blogspot.com/
Operační systém : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Spuštěno v : Normální režim
Uživatel : Oraj [Práva správce]
Mód : Odebrat -- Datum : 06/18/2013 16:15:19
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 0 ¤¤¤
¤¤¤ ¤¤¤ Záznamy Registrů: : 4 ¤¤¤
[HJ DESK] HKCU\[...]\ClassicStartMenu : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK] HKCU\[...]\ClassicStartMenu : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)
[HJ DESK] HKCU\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK] HKCU\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)
¤¤¤ naplánované úlohy : 0 ¤¤¤
¤¤¤ spuštění položky : 0 ¤¤¤
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
¤¤¤ Ovladač : [NENAHRÁNO] ¤¤¤
¤¤¤ Externí včelstvo: ¤¤¤
¤¤¤ Nákaza : ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts
127.0.0.1 localhost
¤¤¤ Kontrola MBR: ¤¤¤
+++++ PhysicalDrive0: WDC WD1002FAEX-00Y9A0 ATA Device +++++
--- User ---
[MBR] 0b4ca96cfe4fa839745659a2b9d3b2a5
[BSP] 21ec915c6fd10c8b81333b91d1989155 : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 100 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 206848 | Size: 260900 Mo
2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 534530048 | Size: 692867 Mo
User = LL1 ... OK!
User = LL2 ... OK!
Dokončeno : << RKreport[0]_D_06182013_161519.txt >>
RKreport[0]_S_06182013_161511.txt
nový HJT log:
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:21:40, on 18.6.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16611)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
C:\Program Files (x86)\OSCAR Editor X7\OscarEditor.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\EPSON\BSTM\PG\E_L20IC2.EXE
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Users\Oraj\Desktop\hijackthis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:newtab
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:newtab
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [EPSON PageSTM TrayIcon01] C:\Program Files (x86)\EPSON\BSTM\PG\E_L20IC2.EXE
O4 - HKLM\..\Run: [NBAgent] "C:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe" /WinStart
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS5.5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [EAM Trial Reset] "C:\Program Files (x86)\EAM-TR.exe" /autoreset
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Pando Media Booster] C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
O4 - HKCU\..\Run: [OscarEditor] "C:\Program Files (x86)\OSCAR Editor X7\OscarEditor.exe" Minimum
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Emsisoft Anti-Malware 7.0 - Service (a2AntiMalware) - Emsisoft GmbH - C:\Program Files (x86)\Emsisoft Anti-Malware\a2service.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: EpsonBidirectionalService - SEIKO EPSON CORPORATION - C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSVC.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8296 bytes
První část z TDSSkiller:
16:15:38.0913 0440 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
16:15:39.0178 0440 ============================================================
16:15:39.0178 0440 Current date / time: 2013/06/18 16:15:39.0178
16:15:39.0178 0440 SystemInfo:
16:15:39.0178 0440
16:15:39.0178 0440 OS Version: 6.1.7601 ServicePack: 1.0
16:15:39.0178 0440 Product type: Workstation
16:15:39.0178 0440 ComputerName: ORAJ-PC
16:15:39.0178 0440 UserName: Oraj
16:15:39.0178 0440 Windows directory: C:\Windows
16:15:39.0178 0440 System windows directory: C:\Windows
16:15:39.0194 0440 Running under WOW64
16:15:39.0194 0440 Processor architecture: Intel x64
16:15:39.0194 0440 Number of processors: 4
16:15:39.0194 0440 Page size: 0x1000
16:15:39.0194 0440 Boot type: Normal boot
16:15:39.0194 0440 ============================================================
16:15:40.0114 0440 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
16:15:40.0114 0440 ============================================================
16:15:40.0114 0440 \Device\Harddisk0\DR0:
16:15:40.0114 0440 MBR partitions:
16:15:40.0114 0440 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
16:15:40.0114 0440 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x1FD92000
16:15:40.0114 0440 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x1FDC4800, BlocksNum 0x54941800
16:15:40.0114 0440 ============================================================
16:15:40.0130 0440 C: <-> \Device\Harddisk0\DR0\Partition2
16:15:40.0161 0440 D: <-> \Device\Harddisk0\DR0\Partition3
16:15:40.0192 0440 ============================================================
16:15:40.0192 0440 Initialize success
16:15:40.0192 0440 ============================================================
16:16:38.0982 3152 ============================================================
16:16:38.0982 3152 Scan started
16:16:38.0982 3152 Mode: Manual;
16:16:38.0982 3152 ============================================================
16:16:39.0824 3152 ================ Scan system memory ========================
16:16:39.0824 3152 System memory - ok
16:16:39.0824 3152 ================ Scan services =============================
16:16:39.0933 3152 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
16:16:39.0933 3152 1394ohci - ok
16:16:39.0996 3152 [ 2D6434E957F7CFA0035C20890F77BBC6 ] a2acc C:\PROGRAM FILES (X86)\EMSISOFT ANTI-MALWARE\a2accx64.sys
16:16:39.0996 3152 a2acc - ok
16:16:40.0089 3152 [ E773B6AD4182A01986DB8BF0AEE32A15 ] a2AntiMalware C:\Program Files (x86)\Emsisoft Anti-Malware\a2service.exe
16:16:40.0105 3152 a2AntiMalware - ok
16:16:40.0136 3152 [ D27A8B7BB0E15DFBFC6B4E774EE17AD9 ] A2DDA C:\Program Files (x86)\Emsisoft Anti-Malware\a2ddax64.sys
16:16:40.0136 3152 A2DDA - ok
16:16:40.0152 3152 [ 3D55CE53128C81E06CD6B024C3B9FAC3 ] a2injectiondriver C:\Program Files (x86)\Emsisoft Anti-Malware\a2dix64.sys
16:16:40.0152 3152 a2injectiondriver - ok
16:16:40.0167 3152 [ 0932B29AA1B9372FFE6D3AF8BA2ABA3A ] a2util C:\Program Files (x86)\Emsisoft Anti-Malware\a2util64.sys
16:16:40.0167 3152 a2util - ok
16:16:40.0183 3152 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\Windows\system32\drivers\ACPI.sys
16:16:40.0183 3152 ACPI - ok
16:16:40.0183 3152 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
16:16:40.0183 3152 AcpiPmi - ok
16:16:40.0245 3152 [ B1EA9681502EE57F87DB71D726288A5B ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
16:16:40.0245 3152 AdobeARMservice - ok
16:16:40.0308 3152 [ 9915504F602D277EE47FD843A677FD15 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
16:16:40.0308 3152 AdobeFlashPlayerUpdateSvc - ok
16:16:40.0339 3152 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
16:16:40.0355 3152 adp94xx - ok
16:16:40.0370 3152 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\drivers\adpahci.sys
16:16:40.0386 3152 adpahci - ok
16:16:40.0401 3152 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\drivers\adpu320.sys
16:16:40.0401 3152 adpu320 - ok
16:16:40.0433 3152 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
16:16:40.0433 3152 AeLookupSvc - ok
16:16:40.0464 3152 [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD C:\Windows\system32\drivers\afd.sys
16:16:40.0479 3152 AFD - ok
16:16:40.0479 3152 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\drivers\agp440.sys
16:16:40.0495 3152 agp440 - ok
16:16:40.0495 3152 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe
16:16:40.0495 3152 ALG - ok
16:16:40.0495 3152 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\drivers\aliide.sys
16:16:40.0511 3152 aliide - ok
16:16:40.0511 3152 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\drivers\amdide.sys
16:16:40.0511 3152 amdide - ok
16:16:40.0511 3152 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\drivers\amdk8.sys
16:16:40.0526 3152 AmdK8 - ok
16:16:40.0542 3152 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
16:16:40.0542 3152 AmdPPM - ok
16:16:40.0573 3152 [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata C:\Windows\system32\drivers\amdsata.sys
16:16:40.0573 3152 amdsata - ok
16:16:40.0573 3152 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\drivers\amdsbs.sys
16:16:40.0573 3152 amdsbs - ok
16:16:40.0589 3152 [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata C:\Windows\system32\drivers\amdxata.sys
16:16:40.0589 3152 amdxata - ok
16:16:40.0604 3152 [ E4B0BB52FCCB391CD31BC5D617F1303C ] Amfilter C:\Windows\system32\DRIVERS\Amfltx64.sys
16:16:40.0620 3152 Amfilter - ok
16:16:40.0620 3152 [ DE7F69DE4F10EEB2B9F05B8CFE8BFDAC ] Amusbprt C:\Windows\system32\DRIVERS\Amusbx64.sys
16:16:40.0620 3152 Amusbprt - ok
16:16:40.0635 3152 [ 89A69C3F2F319B43379399547526D952 ] AppID C:\Windows\system32\drivers\appid.sys
16:16:40.0635 3152 AppID - ok
16:16:40.0635 3152 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll
16:16:40.0635 3152 AppIDSvc - ok
16:16:40.0667 3152 [ 9D2A2369AB4B08A4905FE72DB104498F ] Appinfo C:\Windows\System32\appinfo.dll
16:16:40.0667 3152 Appinfo - ok
16:16:40.0682 3152 [ 4ABA3E75A76195A3E38ED2766C962899 ] AppMgmt C:\Windows\System32\appmgmts.dll
16:16:40.0682 3152 AppMgmt - ok
16:16:40.0682 3152 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\drivers\arc.sys
16:16:40.0698 3152 arc - ok
16:16:40.0698 3152 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\drivers\arcsas.sys
16:16:40.0698 3152 arcsas - ok
16:16:40.0713 3152 [ 0BAEFD3F648C6E7AB52990DD9565E4E2 ] aswFsBlk C:\Windows\system32\drivers\aswFsBlk.sys
16:16:40.0713 3152 aswFsBlk - ok
16:16:40.0729 3152 [ FA562F34ED6633C66170B09182B4C049 ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
16:16:40.0729 3152 aswMonFlt - ok
16:16:40.0729 3152 [ 64E2BAB4096C13D2342BC4661C967E07 ] aswRdr C:\Windows\System32\Drivers\aswrdr2.sys
16:16:40.0729 3152 aswRdr - ok
16:16:40.0760 3152 [ 5573AA70993A2BB81525B1C704B88763 ] aswRvrt C:\Windows\system32\drivers\aswRvrt.sys
16:16:40.0760 3152 aswRvrt - ok
16:16:40.0791 3152 [ 10ED1CAB84AA65983C41A11F60294C9B ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
16:16:40.0807 3152 aswSnx - ok
16:16:40.0823 3152 [ 00E5253353717D3CA12A0F5A6F9991EC ] aswSP C:\Windows\system32\drivers\aswSP.sys
16:16:40.0823 3152 aswSP - ok
16:16:40.0838 3152 [ 29DD8E458A84171202AA4979364C30C0 ] aswTdi C:\Windows\system32\drivers\aswTdi.sys
16:16:40.0838 3152 aswTdi - ok
16:16:40.0838 3152 [ 6359B99C955DB9F40B653159A0EED261 ] aswVmm C:\Windows\system32\drivers\aswVmm.sys
16:16:40.0838 3152 aswVmm - ok
16:16:40.0854 3152 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
16:16:40.0854 3152 AsyncMac - ok
16:16:40.0869 3152 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\drivers\atapi.sys
16:16:40.0869 3152 atapi - ok
16:16:40.0901 3152 [ 7C5D273E29DCC5505469B299C6F29163 ] AtiPcie C:\Windows\system32\DRIVERS\AtiPcie.sys
16:16:40.0901 3152 AtiPcie - ok
16:16:40.0932 3152 [ 4AEF9EC86818375495FB78CA58DF4E18 ] atksgt C:\Windows\system32\DRIVERS\atksgt.sys
16:16:40.0932 3152 atksgt - ok
16:16:40.0947 3152 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
16:16:40.0947 3152 AudioEndpointBuilder - ok
16:16:40.0979 3152 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv C:\Windows\System32\Audiosrv.dll
16:16:40.0979 3152 AudioSrv - ok
16:16:41.0010 3152 [ 28D6701C710AD7BA3CB95E75F8F1A9AA ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
16:16:41.0010 3152 avast! Antivirus - ok
16:16:41.0010 3152 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\Windows\System32\AxInstSV.dll
16:16:41.0025 3152 AxInstSV - ok
16:16:41.0025 3152 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\drivers\bxvbda.sys
16:16:41.0025 3152 b06bdrv - ok
16:16:41.0041 3152 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys
16:16:41.0041 3152 b57nd60a - ok
16:16:41.0041 3152 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll
16:16:41.0041 3152 BDESVC - ok
16:16:41.0041 3152 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys
16:16:41.0041 3152 Beep - ok
16:16:41.0072 3152 [ 82974D6A2FD19445CC5171FC378668A4 ] BFE C:\Windows\System32\bfe.dll
16:16:41.0072 3152 BFE - ok
16:16:41.0103 3152 [ 1EA7969E3271CBC59E1730697DC74682 ] BITS C:\Windows\System32\qmgr.dll
16:16:41.0119 3152 BITS - ok
16:16:41.0119 3152 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
16:16:41.0119 3152 blbdrive - ok
16:16:41.0135 3152 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
16:16:41.0135 3152 bowser - ok
16:16:41.0150 3152 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\drivers\BrFiltLo.sys
16:16:41.0150 3152 BrFiltLo - ok
16:16:41.0166 3152 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\drivers\BrFiltUp.sys
16:16:41.0166 3152 BrFiltUp - ok
16:16:41.0181 3152 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser C:\Windows\System32\browser.dll
16:16:41.0181 3152 Browser - ok
16:16:41.0181 3152 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys
16:16:41.0197 3152 Brserid - ok
16:16:41.0197 3152 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
16:16:41.0197 3152 BrSerWdm - ok
16:16:41.0197 3152 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
16:16:41.0197 3152 BrUsbMdm - ok
16:16:41.0213 3152 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
16:16:41.0213 3152 BrUsbSer - ok
16:16:41.0213 3152 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
16:16:41.0213 3152 BTHMODEM - ok
16:16:41.0228 3152 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll
16:16:41.0228 3152 bthserv - ok
16:16:41.0244 3152 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
16:16:41.0244 3152 cdfs - ok
16:16:41.0259 3152 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
16:16:41.0259 3152 cdrom - ok
16:16:41.0259 3152 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\Windows\System32\certprop.dll
16:16:41.0259 3152 CertPropSvc - ok
16:16:41.0275 3152 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\drivers\circlass.sys
16:16:41.0275 3152 circlass - ok
16:16:41.0291 3152 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys
16:16:41.0291 3152 CLFS - ok
16:16:41.0322 3152 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
16:16:41.0322 3152 clr_optimization_v2.0.50727_32 - ok
16:16:41.0369 3152 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
16:16:41.0369 3152 clr_optimization_v2.0.50727_64 - ok
16:16:41.0415 3152 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
16:16:41.0415 3152 clr_optimization_v4.0.30319_32 - ok
16:16:41.0431 3152 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
16:16:41.0447 3152 clr_optimization_v4.0.30319_64 - ok
16:16:41.0447 3152 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\drivers\CmBatt.sys
16:16:41.0462 3152 CmBatt - ok
16:16:41.0462 3152 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\drivers\cmdide.sys
16:16:41.0462 3152 cmdide - ok
16:16:41.0509 3152 [ AAFCB52FE0037207FB6FBEA070D25EFE ] CNG C:\Windows\system32\Drivers\cng.sys
16:16:41.0509 3152 CNG - ok
16:16:41.0540 3152 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\drivers\compbatt.sys
16:16:41.0540 3152 Compbatt - ok
16:16:41.0556 3152 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys
16:16:41.0556 3152 CompositeBus - ok
16:16:41.0571 3152 COMSysApp - ok
16:16:41.0571 3152 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
16:16:41.0587 3152 crcdisk - ok
16:16:41.0618 3152 [ D8129C49798CBBFB2E4351D4B7B8EF9C ] CryptSvc C:\Windows\system32\cryptsvc.dll
16:16:41.0634 3152 CryptSvc - ok
16:16:41.0743 3152 [ 54DA3DFD29ED9F1619B6F53F3CE55E49 ] CSC C:\Windows\system32\drivers\csc.sys
16:16:41.0743 3152 CSC - ok
16:16:41.0774 3152 [ 3AB183AB4D2C79DCF459CD2C1266B043 ] CscService C:\Windows\System32\cscsvc.dll
16:16:41.0790 3152 CscService - ok
16:16:41.0805 3152 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\Windows\system32\rpcss.dll
16:16:41.0821 3152 DcomLaunch - ok
16:16:41.0821 3152 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll
16:16:41.0837 3152 defragsvc - ok
16:16:41.0837 3152 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
16:16:41.0837 3152 DfsC - ok
16:16:41.0852 3152 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\Windows\system32\dhcpcore.dll
16:16:41.0852 3152 Dhcp - ok
16:16:41.0868 3152 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys
16:16:41.0868 3152 discache - ok
16:16:41.0883 3152 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\drivers\disk.sys
16:16:41.0883 3152 Disk - ok
16:16:41.0899 3152 [ 5DB085A8A6600BE6401F2B24EECB5415 ] dmvsc C:\Windows\system32\drivers\dmvsc.sys
16:16:41.0899 3152 dmvsc - ok
16:16:41.0915 3152 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\Windows\System32\dnsrslvr.dll
16:16:41.0915 3152 Dnscache - ok
16:16:41.0930 3152 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\Windows\System32\dot3svc.dll
16:16:41.0946 3152 dot3svc - ok
16:16:41.0961 3152 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\Windows\system32\dps.dll
16:16:41.0961 3152 DPS - ok
16:16:41.0977 3152 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
16:16:41.0977 3152 drmkaud - ok
16:16:41.0993 3152 [ 46571ED73AE84469DCA53081D33CF3C8 ] dtsoftbus01 C:\Windows\system32\DRIVERS\dtsoftbus01.sys
16:16:42.0008 3152 dtsoftbus01 - ok
16:16:42.0039 3152 [ AF2E16242AA723F68F461B6EAE2EAD3D ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
16:16:42.0039 3152 DXGKrnl - ok
16:16:42.0071 3152 EagleX64 - ok
16:16:42.0071 3152 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll
16:16:42.0071 3152 EapHost - ok
16:16:42.0149 3152 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\drivers\evbda.sys
16:16:42.0164 3152 ebdrv - ok
16:16:42.0195 3152 [ C118A82CD78818C29AB228366EBF81C3 ] EFS C:\Windows\System32\lsass.exe
16:16:42.0195 3152 EFS - ok
16:16:42.0227 3152 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
16:16:42.0242 3152 ehRecvr - ok
16:16:42.0258 3152 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe
16:16:42.0258 3152 ehSched - ok
16:16:42.0289 3152 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\drivers\elxstor.sys
16:16:42.0305 3152 elxstor - ok
16:16:42.0336 3152 [ 017CF0AAA4574066DE88B69EC616A816 ] EpsonBidirectionalService C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSVC.exe
16:16:42.0351 3152 EpsonBidirectionalService - ok
16:16:42.0367 3152 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\drivers\errdev.sys
16:16:42.0367 3152 ErrDev - ok
16:16:42.0383 3152 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll
16:16:42.0398 3152 EventSystem - ok
16:16:42.0414 3152 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys
16:16:42.0414 3152 exfat - ok
16:16:42.0429 3152 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys
16:16:42.0445 3152 fastfat - ok
16:16:42.0461 3152 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\Windows\system32\fxssvc.exe
16:16:42.0476 3152 Fax - ok
16:16:42.0476 3152 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\drivers\fdc.sys
16:16:42.0476 3152 fdc - ok
16:16:42.0476 3152 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll
16:16:42.0492 3152 fdPHost - ok
16:16:42.0492 3152 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll
16:16:42.0492 3152 FDResPub - ok
16:16:42.0507 3152 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
16:16:42.0507 3152 FileInfo - ok
16:16:42.0507 3152 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
16:16:42.0507 3152 Filetrace - ok
16:16:42.0507 3152 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\drivers\flpydisk.sys
16:16:42.0507 3152 flpydisk - ok
16:16:42.0523 3152 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
16:16:42.0523 3152 FltMgr - ok
16:16:42.0554 3152 [ C4C183E6551084039EC862DA1C945E3D ] FontCache C:\Windows\system32\FntCache.dll
16:16:42.0570 3152 FontCache - ok
16:16:42.0601 3152 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
16:16:42.0601 3152 FontCache3.0.0.0 - ok
16:16:42.0617 3152 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
16:16:42.0617 3152 FsDepends - ok
16:16:42.0617 3152 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
16:16:42.0617 3152 Fs_Rec - ok
16:16:42.0648 3152 [ 8F6322049018354F45F05A2FD2D4E5E0 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
16:16:42.0648 3152 fvevol - ok
16:16:42.0663 3152 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
16:16:42.0663 3152 gagp30kx - ok
16:16:42.0679 3152 GMSIPCI - ok
16:16:42.0710 3152 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\Windows\System32\gpsvc.dll
16:16:42.0710 3152 gpsvc - ok
16:16:42.0773 3152 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
16:16:42.0788 3152 gupdate - ok
16:16:42.0788 3152 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
16:16:42.0804 3152 gupdatem - ok
16:16:42.0804 3152 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
16:16:42.0804 3152 hcw85cir - ok
16:16:42.0835 3152 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
16:16:42.0835 3152 HdAudAddService - ok
16:16:42.0851 3152 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
16:16:42.0851 3152 HDAudBus - ok
16:16:42.0851 3152 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\drivers\HidBatt.sys
16:16:42.0851 3152 HidBatt - ok
16:16:42.0866 3152 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\drivers\hidbth.sys
16:16:42.0866 3152 HidBth - ok
16:16:42.0866 3152 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\drivers\hidir.sys
16:16:42.0866 3152 HidIr - ok
16:16:42.0882 3152 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\system32\hidserv.dll
16:16:42.0882 3152 hidserv - ok
16:16:42.0913 3152 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
16:16:42.0913 3152 HidUsb - ok
16:16:42.0913 3152 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\Windows\system32\kmsvc.dll
16:16:42.0929 3152 hkmsvc - ok
16:16:42.0929 3152 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll
16:16:42.0929 3152 HomeGroupListener - ok
16:16:42.0960 3152 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
16:16:42.0960 3152 HomeGroupProvider - ok
16:16:42.0960 3152 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
16:16:42.0960 3152 HpSAMD - ok
16:16:42.0975 3152 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\Windows\system32\drivers\HTTP.sys
16:16:42.0991 3152 HTTP - ok
16:16:42.0991 3152 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
16:16:42.0991 3152 hwpolicy - ok
16:16:43.0007 3152 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
16:16:43.0007 3152 i8042prt - ok
16:16:43.0038 3152 [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
16:16:43.0038 3152 iaStorV - ok
16:16:43.0053 3152 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
16:16:43.0069 3152 idsvc - ok
16:16:43.0085 3152 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\drivers\iirsp.sys
16:16:43.0085 3152 iirsp - ok
16:16:43.0100 3152 [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT C:\Windows\System32\ikeext.dll
16:16:43.0100 3152 IKEEXT - ok
16:16:43.0116 3152 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\drivers\intelide.sys
16:16:43.0116 3152 intelide - ok
16:16:43.0116 3152 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\drivers\intelppm.sys
16:16:43.0116 3152 intelppm - ok
16:16:43.0131 3152 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll
16:16:43.0131 3152 IPBusEnum - ok
16:16:43.0131 3152 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
16:16:43.0131 3152 IpFilterDriver - ok
16:16:43.0163 3152 [ 08C2957BB30058E663720C5606885653 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
16:16:43.0163 3152 iphlpsvc - ok
16:16:43.0178 3152 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
16:16:43.0178 3152 IPMIDRV - ok
16:16:43.0178 3152 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
16:16:43.0178 3152 IPNAT - ok
16:16:43.0194 3152 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
16:16:43.0194 3152 IRENUM - ok
16:16:43.0194 3152 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\drivers\isapnp.sys
16:16:43.0194 3152 isapnp - ok
16:16:43.0225 3152 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
16:16:43.0225 3152 iScsiPrt - ok
16:16:43.0225 3152 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
16:16:43.0241 3152 kbdclass - ok
16:16:43.0241 3152 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
16:16:43.0241 3152 kbdhid - ok
16:16:43.0241 3152 [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso C:\Windows\system32\lsass.exe
16:16:43.0256 3152 KeyIso - ok
16:16:43.0272 3152 [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
16:16:43.0272 3152 KSecDD - ok
16:16:43.0287 3152 [ 7EFB9333E4ECCE6AE4AE9D777D9E553E ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
16:16:43.0287 3152 KSecPkg - ok
16:16:43.0287 3152 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
16:16:43.0287 3152 ksthunk - ok
16:16:43.0319 3152 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll
16:16:43.0319 3152 KtmRm - ok
16:16:43.0319 3152 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\Windows\system32\srvsvc.dll
16:16:43.0334 3152 LanmanServer - ok
16:16:43.0350 3152 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
16:16:43.0350 3152 LanmanWorkstation - ok
16:16:43.0381 3152 [ B658B7076B1ACAA5876524595630F183 ] lirsgt C:\Windows\system32\DRIVERS\lirsgt.sys
16:16:43.0397 3152 lirsgt - ok
16:16:43.0412 3152 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
16:16:43.0412 3152 lltdio - ok
16:16:43.0443 3152 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll
16:16:43.0459 3152 lltdsvc - ok
16:16:43.0475 3152 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll
16:16:43.0475 3152 lmhosts - ok
16:16:43.0490 3152 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
16:16:43.0490 3152 LSI_FC - ok
16:16:43.0506 3152 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
16:16:43.0506 3152 LSI_SAS - ok
16:16:43.0521 3152 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys
16:16:43.0521 3152 LSI_SAS2 - ok
16:16:43.0521 3152 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
16:16:43.0521 3152 LSI_SCSI - ok
16:16:43.0537 3152 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys
16:16:43.0537 3152 luafv - ok
16:16:43.0553 3152 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
16:16:43.0553 3152 Mcx2Svc - ok
16:16:43.0584 3152 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\drivers\megasas.sys
16:16:43.0584 3152 megasas - ok
16:16:43.0599 3152 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\drivers\MegaSR.sys
16:16:43.0599 3152 MegaSR - ok
16:16:43.0646 3152 Microsoft SharePoint Workspace Audit Service - ok
16:16:43.0662 3152 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll
16:16:43.0662 3152 MMCSS - ok
16:16:43.0677 3152 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys
16:16:43.0677 3152 Modem - ok
16:16:43.0693 3152 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys
16:16:43.0693 3152 monitor - ok
16:16:43.0709 3152 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
16:16:43.0709 3152 mouclass - ok
16:16:43.0709 3152 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
16:16:43.0724 3152 mouhid - ok
16:16:43.0724 3152 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
16:16:43.0724 3152 mountmgr - ok
16:16:43.0771 3152 [ 825BF0E46B4470A463AEB641480C5FCA ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
16:16:43.0771 3152 MozillaMaintenance - ok
16:16:43.0787 3152 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\Windows\system32\drivers\mpio.sys
16:16:43.0787 3152 mpio - ok
16:16:43.0802 3152 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
16:16:43.0802 3152 mpsdrv - ok
16:16:43.0833 3152 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc C:\Windows\system32\mpssvc.dll
16:16:43.0849 3152 MpsSvc - ok
16:16:43.0849 3152 [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
16:16:43.0849 3152 MRxDAV - ok
16:16:43.0865 3152 [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
16:16:43.0880 3152 mrxsmb - ok
16:16:43.0880 3152 [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
16:16:43.0880 3152 mrxsmb10 - ok
16:16:43.0896 3152 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
16:16:43.0896 3152 mrxsmb20 - ok
16:16:43.0911 3152 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\Windows\system32\drivers\msahci.sys
16:16:43.0911 3152 msahci - ok
16:16:43.0911 3152 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\Windows\system32\drivers\msdsm.sys
16:16:43.0911 3152 msdsm - ok
16:16:43.0927 3152 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe
16:16:43.0927 3152 MSDTC - ok
16:16:43.0958 3152 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys
16:16:43.0958 3152 Msfs - ok
16:16:43.0958 3152 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
16:16:43.0958 3152 mshidkmdf - ok
16:16:43.0974 3152 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
16:16:43.0974 3152 msisadrv - ok
16:16:43.0989 3152 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
16:16:43.0989 3152 MSiSCSI - ok
16:16:43.0989 3152 msiserver - ok
16:16:44.0005 3152 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
16:16:44.0005 3152 MSKSSRV - ok
16:16:44.0021 3152 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
16:16:44.0021 3152 MSPCLOCK - ok
16:16:44.0021 3152 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
16:16:44.0021 3152 MSPQM - ok
16:16:44.0036 3152 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
16:16:44.0036 3152 MsRPC - ok
16:16:44.0052 3152 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
16:16:44.0052 3152 mssmbios - ok
16:16:44.0052 3152 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
16:16:44.0052 3152 MSTEE - ok
16:16:44.0067 3152 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\drivers\MTConfig.sys
16:16:44.0067 3152 MTConfig - ok
16:16:44.0083 3152 [ 19B006B181E3875FD254F7B67ACF1E7C ] MTsensor C:\Windows\system32\DRIVERS\ASACPI.sys
16:16:44.0083 3152 MTsensor - ok
16:16:44.0099 3152 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys
16:16:44.0099 3152 Mup - ok
16:16:44.0114 3152 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\Windows\system32\qagentRT.dll
16:16:44.0130 3152 napagent - ok
16:16:44.0130 3152 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
16:16:44.0130 3152 NativeWifiP - ok
16:16:44.0177 3152 [ 760E38053BF56E501D562B70AD796B88 ] NDIS C:\Windows\system32\drivers\ndis.sys
16:16:44.0192 3152 NDIS - ok
16:16:44.0192 3152 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
16:16:44.0192 3152 NdisCap - ok
16:16:44.0208 3152 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
16:16:44.0208 3152 NdisTapi - ok
16:16:44.0223 3152 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
16:16:44.0223 3152 Ndisuio - ok
16:16:44.0239 3152 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
16:16:44.0239 3152 NdisWan - ok
16:16:44.0255 3152 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
16:16:44.0255 3152 NDProxy - ok
16:16:44.0317 3152 [ 7D2633295EB6FF2B938185874884059D ] Nero BackItUp Scheduler 4.0 C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
16:16:44.0333 3152 Nero BackItUp Scheduler 4.0 - ok
16:16:44.0348 3152 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
16:16:44.0348 3152 NetBIOS - ok
16:16:44.0364 3152 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
16:16:44.0364 3152 NetBT - ok
16:16:44.0379 3152 [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon C:\Windows\system32\lsass.exe
16:16:44.0379 3152 Netlogon - ok
16:16:44.0411 3152 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll
16:16:44.0411 3152 Netman - ok
16:16:44.0426 3152 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll
16:16:44.0426 3152 netprofm - ok
16:16:44.0442 3152 [ 3E5A36127E201DDF663176B66828FAFE ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
16:16:44.0442 3152 NetTcpPortSharing - ok
16:16:44.0457 3152 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
16:16:44.0457 3152 nfrd960 - ok
16:16:44.0489 3152 [ 8AD77806D336673F270DB31645267293 ] NlaSvc C:\Windows\System32\nlasvc.dll
16:16:44.0489 3152 NlaSvc - ok
16:16:44.0489 3152 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys
16:16:44.0504 3152 Npfs - ok
16:16:44.0504 3152 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll
16:16:44.0504 3152 nsi - ok
16:16:44.0504 3152 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
16:16:44.0504 3152 nsiproxy - ok
16:16:44.0567 3152 [ B98F8C6E31CD07B2E6F71F7F648E38C0 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
16:16:44.0582 3152 Ntfs - ok
16:16:44.0598 3152 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys
16:16:44.0598 3152 Null - ok
16:16:44.0629 3152 [ B4F53BCA4C688FF47F04FA90098F896E ] NVHDA C:\Windows\system32\drivers\nvhda64v.sys
16:16:44.0645 3152 NVHDA - ok
16:16:44.0847 3152 [ 0A2F27B5BCC45B64E152DD6AE0815198 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
16:16:44.0894 3152 nvlddmkm - ok
16:16:44.0910 3152 [ 0A92CB65770442ED0DC44834632F66AD ] nvraid C:\Windows\system32\drivers\nvraid.sys
16:16:44.0910 3152 nvraid - ok
16:16:44.0925 3152 [ DAB0E87525C10052BF65F06152F37E4A ] nvstor C:\Windows\system32\drivers\nvstor.sys
16:16:44.0925 3152 nvstor - ok
16:16:44.0988 3152 [ 574087EA9105F23FB522A4FDDD5292D9 ] nvsvc C:\Windows\system32\nvvsvc.exe
16:16:45.0019 3152 nvsvc - ok
16:16:45.0081 3152 [ ABA5A88740635D37A2B6CEB27DBC738A ] nvUpdatusService C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
16:16:45.0097 3152 nvUpdatusService - ok
16:16:45.0097 3152 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
16:16:45.0097 3152 nv_agp - ok
16:16:45.0113 3152 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
16:16:45.0113 3152 ohci1394 - ok
16:16:45.0159 3152 [ 4965B005492CBA7719E82B71E3245495 ] ose64 C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
16:16:45.0159 3152 ose64 - ok
16:16:45.0269 3152 [ 61BFFB5F57AD12F83AB64B7181829B34 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
16:16:45.0362 3152 osppsvc - ok
16:16:45.0393 3152 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
16:16:45.0393 3152 p2pimsvc - ok
16:16:45.0409 3152 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll
16:16:45.0409 3152 p2psvc - ok
16:16:45.0425 3152 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\drivers\parport.sys
16:16:45.0425 3152 Parport - ok
16:16:45.0440 3152 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\Windows\system32\drivers\partmgr.sys
16:16:45.0440 3152 partmgr - ok
16:16:45.0440 3152 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\Windows\System32\pcasvc.dll
16:16:45.0456 3152 PcaSvc - ok
16:16:45.0456 3152 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\Windows\system32\drivers\pci.sys
16:16:45.0456 3152 pci - ok
16:16:45.0471 3152 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\drivers\pciide.sys
16:16:45.0471 3152 pciide - ok
16:16:45.0487 3152 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
16:16:45.0487 3152 pcmcia - ok
16:16:45.0487 3152 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys
16:16:45.0487 3152 pcw - ok
16:16:45.0518 3152 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\Windows\system32\drivers\peauth.sys
16:16:45.0518 3152 PEAUTH - ok
16:16:45.0549 3152 [ B9B0A4299DD2D76A4243F75FD54DC680 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll
16:16:45.0565 3152 PeerDistSvc - ok
16:16:45.0596 3152 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe
16:16:45.0612 3152 PerfHost - ok
16:16:45.0627 3152 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\Windows\system32\pla.dll
16:16:45.0643 3152 pla - ok
16:16:45.0674 3152 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
16:16:45.0674 3152 PlugPlay - ok
16:16:45.0690 3152 PnkBstrA - ok
16:16:45.0690 3152 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
16:16:45.0690 3152 PNRPAutoReg - ok
16:16:45.0690 3152 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
16:16:45.0705 3152 PNRPsvc - ok
16:16:45.0721 3152 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
16:16:45.0737 3152 PolicyAgent - ok
16:16:45.0752 3152 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll
16:16:45.0752 3152 Power - ok
16:16:45.0783 3152 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
16:16:45.0783 3152 PptpMiniport - ok
16:16:45.0799 3152 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\drivers\processr.sys
16:16:45.0799 3152 Processor - ok
16:16:45.0815 3152 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc C:\Windows\system32\profsvc.dll
16:16:45.0815 3152 ProfSvc - ok
16:16:45.0830 3152 [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\Windows\system32\lsass.exe
16:16:45.0830 3152 ProtectedStorage - ok
16:16:45.0846 3152 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\Windows\system32\DRIVERS\pacer.sys
16:16:45.0846 3152 Psched - ok
16:16:45.0877 3152 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\drivers\ql2300.sys
16:16:45.0877 3152 ql2300 - ok
16:16:45.0893 3152 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
16:16:45.0893 3152 ql40xx - ok
16:16:45.0908 3152 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll
16:16:45.0908 3152 QWAVE - ok
16:16:45.0924 3152 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
16:16:45.0924 3152 QWAVEdrv - ok
16:16:45.0939 3152 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
16:16:45.0939 3152 RasAcd - ok
16:16:45.0955 3152 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
16:16:45.0955 3152 RasAgileVpn - ok
16:16:45.0971 3152 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll
16:16:45.0971 3152 RasAuto - ok
16:16:45.0971 3152 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
16:16:45.0986 3152 Rasl2tp - ok
16:16:45.0986 3152 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\Windows\System32\rasmans.dll
16:16:45.0986 3152 RasMan - ok
16:16:46.0002 3152 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
16:16:46.0002 3152 RasPppoe - ok
16:16:46.0002 3152 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
16:16:46.0002 3152 RasSstp - ok
16:16:46.0017 3152 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
16:16:46.0017 3152 rdbss - ok
16:16:46.0033 3152 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
16:16:46.0033 3152 rdpbus - ok
16:16:46.0033 3152 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
16:16:46.0033 3152 RDPCDD - ok
16:16:46.0064 3152 [ 1B6163C503398B23FF8B939C67747683 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys
16:16:46.0064 3152 RDPDR - ok
16:16:46.0080 3152 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
16:16:46.0080 3152 RDPENCDD - ok
16:16:46.0095 3152 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
16:16:46.0095 3152 RDPREFMP - ok
16:16:46.0111 3152 [ 313F68E1A3E6345A4F47A36B07062F34 ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
16:16:46.0111 3152 RdpVideoMiniport - ok
16:16:46.0127 3152 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
16:16:46.0142 3152 RDPWD - ok
16:16:46.0158 3152 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
16:16:46.0158 3152 rdyboost - ok
16:16:46.0173 3152 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\Windows\System32\mprdim.dll
16:16:46.0173 3152 RemoteAccess - ok
16:16:46.0173 3152 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll
16:16:46.0173 3152 RemoteRegistry - ok
16:16:46.0189 3152 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
16:16:46.0189 3152 RpcEptMapper - ok
16:16:46.0205 3152 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe
16:16:46.0205 3152 RpcLocator - ok
16:16:46.0220 3152 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\Windows\system32\rpcss.dll
16:16:46.0236 3152 RpcSs - ok
16:16:46.0236 3152 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
16:16:46.0236 3152 rspndr - ok
16:16:46.0283 3152 [ EE082E06A82FF630351D1E0EBBD3D8D0 ] RTL8167 C:\Windows\system32\DRIVERS\Rt64win7.sys
16:16:46.0283 3152 RTL8167 - ok
16:16:46.0298 3152 [ E60C0A09F997826C7627B244195AB581 ] s3cap C:\Windows\system32\drivers\vms3cap.sys
16:16:46.0298 3152 s3cap - ok
16:16:46.0298 3152 [ C118A82CD78818C29AB228366EBF81C3 ] SamSs C:\Windows\system32\lsass.exe
16:16:46.0298 3152 SamSs - ok
16:16:46.0314 3152 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
16:16:46.0314 3152 sbp2port - ok
16:16:46.0329 3152 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll
16:16:46.0329 3152 SCardSvr - ok
16:16:46.0345 3152 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
16:16:46.0345 3152 scfilter - ok
16:16:46.0361 3152 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\Windows\system32\schedsvc.dll
16:16:46.0361 3152 Schedule - ok
16:16:46.0376 3152 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\Windows\System32\certprop.dll
16:16:46.0376 3152 SCPolicySvc - ok
16:16:46.0376 3152 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\Windows\System32\SDRSVC.dll
16:16:46.0392 3152 SDRSVC - ok
16:16:46.0392 3152 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys
16:16:46.0392 3152 secdrv - ok
16:16:46.0407 3152 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\Windows\system32\seclogon.dll
16:16:46.0407 3152 seclogon - ok
16:16:46.0423 3152 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\System32\sens.dll
16:16:46.0423 3152 SENS - ok
16:16:46.0423 3152 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll
16:16:46.0423 3152 SensrSvc - ok
16:16:46.0454 3152 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
16:16:46.0454 3152 Serenum - ok
16:16:46.0454 3152 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\DRIVERS\serial.sys
16:16:46.0454 3152 Serial - ok
16:16:46.0454 3152 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\drivers\sermouse.sys
16:16:46.0454 3152 sermouse - ok
16:16:46.0470 3152 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\Windows\system32\sessenv.dll
16:16:46.0470 3152 SessionEnv - ok
16:16:46.0470 3152 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
16:16:46.0470 3152 sffdisk - ok
16:16:46.0485 3152 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
16:16:46.0485 3152 sffp_mmc - ok
16:16:46.0485 3152 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
16:16:46.0485 3152 sffp_sd - ok
16:16:46.0485 3152 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
16:16:46.0501 3152 sfloppy - ok
16:16:46.0501 3152 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\Windows\System32\ipnathlp.dll
16:16:46.0501 3152 SharedAccess - ok
16:16:46.0517 3152 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll
16:16:46.0532 3152 ShellHWDetection - ok
16:16:46.0532 3152 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys
16:16:46.0532 3152 SiSRaid2 - ok
16:16:46.0548 3152 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
16:16:46.0548 3152 SiSRaid4 - ok
16:16:46.0579 3152 [ 7C15061CD0372487903B07B9BB03AFAD ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
16:16:46.0579 3152 SkypeUpdate - ok
16:16:46.0595 3152 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys
16:16:46.0595 3152 Smb - ok
16:16:46.0610 3152 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe
16:16:46.0626 3152 SNMPTRAP - ok
16:16:46.0626 3152 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys
16:16:46.0626 3152 spldr - ok
16:16:46.0641 3152 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler C:\Windows\System32\spoolsv.exe
16:16:46.0657 3152 Spooler - ok
16:16:46.0735 3152 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\Windows\system32\sppsvc.exe
16:16:46.0751 3152 sppsvc - ok
16:16:46.0751 3152 Scan interrupted by user!
16:16:46.0751 3152 ================ Scan global ===============================
16:16:46.0751 3152 Scan interrupted by user!
16:16:46.0751 3152 ================ Scan MBR ==================================
16:16:46.0751 3152 Scan interrupted by user!
16:16:46.0751 3152 ================ Scan VBR ==================================
16:16:46.0751 3152 Scan interrupted by user!
16:16:46.0751 3152 ============================================================
16:16:46.0751 3152 Scan finished
16:16:46.0751 3152 ============================================================
16:16:46.0766 1396 Detected object count: 0
16:16:46.0766 1396 Actual detected object count: 0
16:16:48.0763 2916 Deinitialize success
Re: Zřejmě mám zavirované PC
Druhá část z TDSSkiller:
16:16:52.0129 4836 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
16:16:52.0659 4836 ============================================================
16:16:52.0659 4836 Current date / time: 2013/06/18 16:16:52.0659
16:16:52.0659 4836 SystemInfo:
16:16:52.0659 4836
16:16:52.0659 4836 OS Version: 6.1.7601 ServicePack: 1.0
16:16:52.0659 4836 Product type: Workstation
16:16:52.0659 4836 ComputerName: ORAJ-PC
16:16:52.0659 4836 UserName: Oraj
16:16:52.0659 4836 Windows directory: C:\Windows
16:16:52.0659 4836 System windows directory: C:\Windows
16:16:52.0659 4836 Running under WOW64
16:16:52.0659 4836 Processor architecture: Intel x64
16:16:52.0659 4836 Number of processors: 4
16:16:52.0659 4836 Page size: 0x1000
16:16:52.0659 4836 Boot type: Normal boot
16:16:52.0659 4836 ============================================================
16:16:53.0346 4836 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
16:16:53.0346 4836 ============================================================
16:16:53.0346 4836 \Device\Harddisk0\DR0:
16:16:53.0346 4836 MBR partitions:
16:16:53.0346 4836 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
16:16:53.0346 4836 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x1FD92000
16:16:53.0346 4836 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x1FDC4800, BlocksNum 0x54941800
16:16:53.0346 4836 ============================================================
16:16:53.0377 4836 C: <-> \Device\Harddisk0\DR0\Partition2
16:16:53.0424 4836 D: <-> \Device\Harddisk0\DR0\Partition3
16:16:53.0424 4836 ============================================================
16:16:53.0424 4836 Initialize success
16:16:53.0424 4836 ============================================================
16:16:55.0171 4752 ============================================================
16:16:55.0171 4752 Scan started
16:16:55.0171 4752 Mode: Manual;
16:16:55.0171 4752 ============================================================
16:16:55.0452 4752 ================ Scan system memory ========================
16:16:55.0452 4752 System memory - ok
16:16:55.0452 4752 ================ Scan services =============================
16:16:55.0545 4752 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
16:16:55.0561 4752 1394ohci - ok
16:16:55.0608 4752 [ 2D6434E957F7CFA0035C20890F77BBC6 ] a2acc C:\PROGRAM FILES (X86)\EMSISOFT ANTI-MALWARE\a2accx64.sys
16:16:55.0608 4752 a2acc - ok
16:16:55.0701 4752 [ E773B6AD4182A01986DB8BF0AEE32A15 ] a2AntiMalware C:\Program Files (x86)\Emsisoft Anti-Malware\a2service.exe
16:16:55.0717 4752 a2AntiMalware - ok
16:16:55.0733 4752 [ D27A8B7BB0E15DFBFC6B4E774EE17AD9 ] A2DDA C:\Program Files (x86)\Emsisoft Anti-Malware\a2ddax64.sys
16:16:55.0733 4752 A2DDA - ok
16:16:55.0748 4752 [ 3D55CE53128C81E06CD6B024C3B9FAC3 ] a2injectiondriver C:\Program Files (x86)\Emsisoft Anti-Malware\a2dix64.sys
16:16:55.0748 4752 a2injectiondriver - ok
16:16:55.0748 4752 [ 0932B29AA1B9372FFE6D3AF8BA2ABA3A ] a2util C:\Program Files (x86)\Emsisoft Anti-Malware\a2util64.sys
16:16:55.0748 4752 a2util - ok
16:16:55.0764 4752 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\Windows\system32\drivers\ACPI.sys
16:16:55.0779 4752 ACPI - ok
16:16:55.0779 4752 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
16:16:55.0779 4752 AcpiPmi - ok
16:16:55.0826 4752 [ B1EA9681502EE57F87DB71D726288A5B ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
16:16:55.0826 4752 AdobeARMservice - ok
16:16:55.0904 4752 [ 9915504F602D277EE47FD843A677FD15 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
16:16:55.0904 4752 AdobeFlashPlayerUpdateSvc - ok
16:16:55.0935 4752 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
16:16:55.0951 4752 adp94xx - ok
16:16:55.0982 4752 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\drivers\adpahci.sys
16:16:55.0982 4752 adpahci - ok
16:16:55.0998 4752 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\drivers\adpu320.sys
16:16:56.0013 4752 adpu320 - ok
16:16:56.0029 4752 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
16:16:56.0029 4752 AeLookupSvc - ok
16:16:56.0076 4752 [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD C:\Windows\system32\drivers\afd.sys
16:16:56.0076 4752 AFD - ok
16:16:56.0091 4752 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\drivers\agp440.sys
16:16:56.0091 4752 agp440 - ok
16:16:56.0107 4752 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe
16:16:56.0107 4752 ALG - ok
16:16:56.0107 4752 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\drivers\aliide.sys
16:16:56.0107 4752 aliide - ok
16:16:56.0123 4752 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\drivers\amdide.sys
16:16:56.0123 4752 amdide - ok
16:16:56.0123 4752 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\drivers\amdk8.sys
16:16:56.0123 4752 AmdK8 - ok
16:16:56.0154 4752 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
16:16:56.0154 4752 AmdPPM - ok
16:16:56.0185 4752 [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata C:\Windows\system32\drivers\amdsata.sys
16:16:56.0185 4752 amdsata - ok
16:16:56.0201 4752 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\drivers\amdsbs.sys
16:16:56.0201 4752 amdsbs - ok
16:16:56.0216 4752 [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata C:\Windows\system32\drivers\amdxata.sys
16:16:56.0232 4752 amdxata - ok
16:16:56.0247 4752 [ E4B0BB52FCCB391CD31BC5D617F1303C ] Amfilter C:\Windows\system32\DRIVERS\Amfltx64.sys
16:16:56.0247 4752 Amfilter - ok
16:16:56.0263 4752 [ DE7F69DE4F10EEB2B9F05B8CFE8BFDAC ] Amusbprt C:\Windows\system32\DRIVERS\Amusbx64.sys
16:16:56.0279 4752 Amusbprt - ok
16:16:56.0279 4752 [ 89A69C3F2F319B43379399547526D952 ] AppID C:\Windows\system32\drivers\appid.sys
16:16:56.0279 4752 AppID - ok
16:16:56.0294 4752 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll
16:16:56.0294 4752 AppIDSvc - ok
16:16:56.0325 4752 [ 9D2A2369AB4B08A4905FE72DB104498F ] Appinfo C:\Windows\System32\appinfo.dll
16:16:56.0325 4752 Appinfo - ok
16:16:56.0357 4752 [ 4ABA3E75A76195A3E38ED2766C962899 ] AppMgmt C:\Windows\System32\appmgmts.dll
16:16:56.0357 4752 AppMgmt - ok
16:16:56.0372 4752 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\drivers\arc.sys
16:16:56.0372 4752 arc - ok
16:16:56.0372 4752 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\drivers\arcsas.sys
16:16:56.0388 4752 arcsas - ok
16:16:56.0403 4752 [ 0BAEFD3F648C6E7AB52990DD9565E4E2 ] aswFsBlk C:\Windows\system32\drivers\aswFsBlk.sys
16:16:56.0403 4752 aswFsBlk - ok
16:16:56.0419 4752 [ FA562F34ED6633C66170B09182B4C049 ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
16:16:56.0419 4752 aswMonFlt - ok
16:16:56.0419 4752 [ 64E2BAB4096C13D2342BC4661C967E07 ] aswRdr C:\Windows\System32\Drivers\aswrdr2.sys
16:16:56.0419 4752 aswRdr - ok
16:16:56.0450 4752 [ 5573AA70993A2BB81525B1C704B88763 ] aswRvrt C:\Windows\system32\drivers\aswRvrt.sys
16:16:56.0450 4752 aswRvrt - ok
16:16:56.0466 4752 [ 10ED1CAB84AA65983C41A11F60294C9B ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
16:16:56.0481 4752 aswSnx - ok
16:16:56.0497 4752 [ 00E5253353717D3CA12A0F5A6F9991EC ] aswSP C:\Windows\system32\drivers\aswSP.sys
16:16:56.0497 4752 aswSP - ok
16:16:56.0513 4752 [ 29DD8E458A84171202AA4979364C30C0 ] aswTdi C:\Windows\system32\drivers\aswTdi.sys
16:16:56.0513 4752 aswTdi - ok
16:16:56.0513 4752 [ 6359B99C955DB9F40B653159A0EED261 ] aswVmm C:\Windows\system32\drivers\aswVmm.sys
16:16:56.0513 4752 aswVmm - ok
16:16:56.0528 4752 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
16:16:56.0528 4752 AsyncMac - ok
16:16:56.0544 4752 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\drivers\atapi.sys
16:16:56.0544 4752 atapi - ok
16:16:56.0575 4752 [ 7C5D273E29DCC5505469B299C6F29163 ] AtiPcie C:\Windows\system32\DRIVERS\AtiPcie.sys
16:16:56.0575 4752 AtiPcie - ok
16:16:56.0606 4752 [ 4AEF9EC86818375495FB78CA58DF4E18 ] atksgt C:\Windows\system32\DRIVERS\atksgt.sys
16:16:56.0622 4752 atksgt - ok
16:16:56.0637 4752 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
16:16:56.0653 4752 AudioEndpointBuilder - ok
16:16:56.0684 4752 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv C:\Windows\System32\Audiosrv.dll
16:16:56.0684 4752 AudioSrv - ok
16:16:56.0731 4752 [ 28D6701C710AD7BA3CB95E75F8F1A9AA ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
16:16:56.0731 4752 avast! Antivirus - ok
16:16:56.0747 4752 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\Windows\System32\AxInstSV.dll
16:16:56.0747 4752 AxInstSV - ok
16:16:56.0762 4752 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\drivers\bxvbda.sys
16:16:56.0778 4752 b06bdrv - ok
16:16:56.0793 4752 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys
16:16:56.0793 4752 b57nd60a - ok
16:16:56.0793 4752 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll
16:16:56.0793 4752 BDESVC - ok
16:16:56.0793 4752 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys
16:16:56.0793 4752 Beep - ok
16:16:56.0825 4752 [ 82974D6A2FD19445CC5171FC378668A4 ] BFE C:\Windows\System32\bfe.dll
16:16:56.0840 4752 BFE - ok
16:16:56.0871 4752 [ 1EA7969E3271CBC59E1730697DC74682 ] BITS C:\Windows\System32\qmgr.dll
16:16:56.0871 4752 BITS - ok
16:16:56.0887 4752 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
16:16:56.0887 4752 blbdrive - ok
16:16:56.0903 4752 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
16:16:56.0903 4752 bowser - ok
16:16:56.0918 4752 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\drivers\BrFiltLo.sys
16:16:56.0918 4752 BrFiltLo - ok
16:16:56.0934 4752 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\drivers\BrFiltUp.sys
16:16:56.0934 4752 BrFiltUp - ok
16:16:56.0949 4752 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser C:\Windows\System32\browser.dll
16:16:56.0949 4752 Browser - ok
16:16:56.0949 4752 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys
16:16:56.0949 4752 Brserid - ok
16:16:56.0965 4752 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
16:16:56.0965 4752 BrSerWdm - ok
16:16:56.0965 4752 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
16:16:56.0965 4752 BrUsbMdm - ok
16:16:56.0965 4752 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
16:16:56.0965 4752 BrUsbSer - ok
16:16:56.0981 4752 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
16:16:56.0981 4752 BTHMODEM - ok
16:16:56.0981 4752 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll
16:16:56.0981 4752 bthserv - ok
16:16:56.0996 4752 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
16:16:56.0996 4752 cdfs - ok
16:16:57.0012 4752 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
16:16:57.0012 4752 cdrom - ok
16:16:57.0012 4752 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\Windows\System32\certprop.dll
16:16:57.0027 4752 CertPropSvc - ok
16:16:57.0027 4752 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\drivers\circlass.sys
16:16:57.0027 4752 circlass - ok
16:16:57.0043 4752 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys
16:16:57.0043 4752 CLFS - ok
16:16:57.0074 4752 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
16:16:57.0090 4752 clr_optimization_v2.0.50727_32 - ok
16:16:57.0105 4752 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
16:16:57.0121 4752 clr_optimization_v2.0.50727_64 - ok
16:16:57.0152 4752 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
16:16:57.0152 4752 clr_optimization_v4.0.30319_32 - ok
16:16:57.0183 4752 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
16:16:57.0183 4752 clr_optimization_v4.0.30319_64 - ok
16:16:57.0199 4752 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\drivers\CmBatt.sys
16:16:57.0199 4752 CmBatt - ok
16:16:57.0215 4752 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\drivers\cmdide.sys
16:16:57.0215 4752 cmdide - ok
16:16:57.0246 4752 [ AAFCB52FE0037207FB6FBEA070D25EFE ] CNG C:\Windows\system32\Drivers\cng.sys
16:16:57.0246 4752 CNG - ok
16:16:57.0277 4752 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\drivers\compbatt.sys
16:16:57.0277 4752 Compbatt - ok
16:16:57.0293 4752 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys
16:16:57.0293 4752 CompositeBus - ok
16:16:57.0293 4752 COMSysApp - ok
16:16:57.0308 4752 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
16:16:57.0308 4752 crcdisk - ok
16:16:57.0339 4752 [ D8129C49798CBBFB2E4351D4B7B8EF9C ] CryptSvc C:\Windows\system32\cryptsvc.dll
16:16:57.0339 4752 CryptSvc - ok
16:16:57.0371 4752 [ 54DA3DFD29ED9F1619B6F53F3CE55E49 ] CSC C:\Windows\system32\drivers\csc.sys
16:16:57.0386 4752 CSC - ok
16:16:57.0402 4752 [ 3AB183AB4D2C79DCF459CD2C1266B043 ] CscService C:\Windows\System32\cscsvc.dll
16:16:57.0417 4752 CscService - ok
16:16:57.0449 4752 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\Windows\system32\rpcss.dll
16:16:57.0464 4752 DcomLaunch - ok
16:16:57.0480 4752 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll
16:16:57.0480 4752 defragsvc - ok
16:16:57.0495 4752 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
16:16:57.0495 4752 DfsC - ok
16:16:57.0511 4752 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\Windows\system32\dhcpcore.dll
16:16:57.0511 4752 Dhcp - ok
16:16:57.0527 4752 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys
16:16:57.0527 4752 discache - ok
16:16:57.0527 4752 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\drivers\disk.sys
16:16:57.0527 4752 Disk - ok
16:16:57.0542 4752 [ 5DB085A8A6600BE6401F2B24EECB5415 ] dmvsc C:\Windows\system32\drivers\dmvsc.sys
16:16:57.0542 4752 dmvsc - ok
16:16:57.0573 4752 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\Windows\System32\dnsrslvr.dll
16:16:57.0573 4752 Dnscache - ok
16:16:57.0589 4752 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\Windows\System32\dot3svc.dll
16:16:57.0605 4752 dot3svc - ok
16:16:57.0620 4752 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\Windows\system32\dps.dll
16:16:57.0620 4752 DPS - ok
16:16:57.0651 4752 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
16:16:57.0651 4752 drmkaud - ok
16:16:57.0683 4752 [ 46571ED73AE84469DCA53081D33CF3C8 ] dtsoftbus01 C:\Windows\system32\DRIVERS\dtsoftbus01.sys
16:16:57.0683 4752 dtsoftbus01 - ok
16:16:57.0729 4752 [ AF2E16242AA723F68F461B6EAE2EAD3D ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
16:16:57.0745 4752 DXGKrnl - ok
16:16:57.0761 4752 EagleX64 - ok
16:16:57.0761 4752 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll
16:16:57.0761 4752 EapHost - ok
16:16:57.0839 4752 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\drivers\evbda.sys
16:16:57.0854 4752 ebdrv - ok
16:16:57.0870 4752 [ C118A82CD78818C29AB228366EBF81C3 ] EFS C:\Windows\System32\lsass.exe
16:16:57.0870 4752 EFS - ok
16:16:57.0917 4752 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
16:16:57.0917 4752 ehRecvr - ok
16:16:57.0932 4752 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe
16:16:57.0932 4752 ehSched - ok
16:16:57.0963 4752 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\drivers\elxstor.sys
16:16:57.0963 4752 elxstor - ok
16:16:57.0995 4752 [ 017CF0AAA4574066DE88B69EC616A816 ] EpsonBidirectionalService C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSVC.exe
16:16:57.0995 4752 EpsonBidirectionalService - ok
16:16:58.0010 4752 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\drivers\errdev.sys
16:16:58.0010 4752 ErrDev - ok
16:16:58.0026 4752 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll
16:16:58.0026 4752 EventSystem - ok
16:16:58.0041 4752 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys
16:16:58.0041 4752 exfat - ok
16:16:58.0057 4752 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys
16:16:58.0057 4752 fastfat - ok
16:16:58.0104 4752 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\Windows\system32\fxssvc.exe
16:16:58.0104 4752 Fax - ok
16:16:58.0119 4752 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\drivers\fdc.sys
16:16:58.0119 4752 fdc - ok
16:16:58.0135 4752 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll
16:16:58.0135 4752 fdPHost - ok
16:16:58.0135 4752 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll
16:16:58.0135 4752 FDResPub - ok
16:16:58.0135 4752 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
16:16:58.0135 4752 FileInfo - ok
16:16:58.0151 4752 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
16:16:58.0151 4752 Filetrace - ok
16:16:58.0151 4752 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\drivers\flpydisk.sys
16:16:58.0151 4752 flpydisk - ok
16:16:58.0166 4752 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
16:16:58.0166 4752 FltMgr - ok
16:16:58.0213 4752 [ C4C183E6551084039EC862DA1C945E3D ] FontCache C:\Windows\system32\FntCache.dll
16:16:58.0229 4752 FontCache - ok
16:16:58.0244 4752 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
16:16:58.0244 4752 FontCache3.0.0.0 - ok
16:16:58.0260 4752 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
16:16:58.0260 4752 FsDepends - ok
16:16:58.0260 4752 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
16:16:58.0260 4752 Fs_Rec - ok
16:16:58.0307 4752 [ 8F6322049018354F45F05A2FD2D4E5E0 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
16:16:58.0307 4752 fvevol - ok
16:16:58.0353 4752 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
16:16:58.0353 4752 gagp30kx - ok
16:16:58.0400 4752 GMSIPCI - ok
16:16:58.0447 4752 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\Windows\System32\gpsvc.dll
16:16:58.0463 4752 gpsvc - ok
16:16:58.0525 4752 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
16:16:58.0525 4752 gupdate - ok
16:16:58.0525 4752 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
16:16:58.0525 4752 gupdatem - ok
16:16:58.0541 4752 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
16:16:58.0556 4752 hcw85cir - ok
16:16:58.0556 4752 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
16:16:58.0572 4752 HdAudAddService - ok
16:16:58.0572 4752 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
16:16:58.0572 4752 HDAudBus - ok
16:16:58.0572 4752 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\drivers\HidBatt.sys
16:16:58.0572 4752 HidBatt - ok
16:16:58.0603 4752 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\drivers\hidbth.sys
16:16:58.0603 4752 HidBth - ok
16:16:58.0603 4752 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\drivers\hidir.sys
16:16:58.0603 4752 HidIr - ok
16:16:58.0619 4752 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\system32\hidserv.dll
16:16:58.0619 4752 hidserv - ok
16:16:58.0634 4752 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
16:16:58.0634 4752 HidUsb - ok
16:16:58.0650 4752 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\Windows\system32\kmsvc.dll
16:16:58.0650 4752 hkmsvc - ok
16:16:58.0665 4752 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll
16:16:58.0665 4752 HomeGroupListener - ok
16:16:58.0681 4752 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
16:16:58.0681 4752 HomeGroupProvider - ok
16:16:58.0681 4752 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
16:16:58.0697 4752 HpSAMD - ok
16:16:58.0697 4752 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\Windows\system32\drivers\HTTP.sys
16:16:58.0712 4752 HTTP - ok
16:16:58.0728 4752 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
16:16:58.0728 4752 hwpolicy - ok
16:16:58.0728 4752 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
16:16:58.0728 4752 i8042prt - ok
16:16:58.0759 4752 [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
16:16:58.0759 4752 iaStorV - ok
16:16:58.0790 4752 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
16:16:58.0790 4752 idsvc - ok
16:16:58.0806 4752 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\drivers\iirsp.sys
16:16:58.0806 4752 iirsp - ok
16:16:58.0821 4752 [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT C:\Windows\System32\ikeext.dll
16:16:58.0821 4752 IKEEXT - ok
16:16:58.0837 4752 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\drivers\intelide.sys
16:16:58.0837 4752 intelide - ok
16:16:58.0837 4752 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\drivers\intelppm.sys
16:16:58.0837 4752 intelppm - ok
16:16:58.0853 4752 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll
16:16:58.0853 4752 IPBusEnum - ok
16:16:58.0853 4752 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
16:16:58.0853 4752 IpFilterDriver - ok
16:16:58.0884 4752 [ 08C2957BB30058E663720C5606885653 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
16:16:58.0899 4752 iphlpsvc - ok
16:16:58.0899 4752 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
16:16:58.0915 4752 IPMIDRV - ok
16:16:58.0915 4752 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
16:16:58.0915 4752 IPNAT - ok
16:16:58.0931 4752 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
16:16:58.0931 4752 IRENUM - ok
16:16:58.0931 4752 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\drivers\isapnp.sys
16:16:58.0931 4752 isapnp - ok
16:16:58.0946 4752 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
16:16:58.0946 4752 iScsiPrt - ok
16:16:58.0962 4752 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
16:16:58.0962 4752 kbdclass - ok
16:16:58.0977 4752 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
16:16:58.0977 4752 kbdhid - ok
16:16:58.0993 4752 [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso C:\Windows\system32\lsass.exe
16:16:58.0993 4752 KeyIso - ok
16:16:59.0009 4752 [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
16:16:59.0009 4752 KSecDD - ok
16:16:59.0024 4752 [ 7EFB9333E4ECCE6AE4AE9D777D9E553E ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
16:16:59.0024 4752 KSecPkg - ok
16:16:59.0040 4752 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
16:16:59.0040 4752 ksthunk - ok
16:16:59.0055 4752 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll
16:16:59.0055 4752 KtmRm - ok
16:16:59.0055 4752 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\Windows\system32\srvsvc.dll
16:16:59.0071 4752 LanmanServer - ok
16:16:59.0087 4752 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
16:16:59.0087 4752 LanmanWorkstation - ok
16:16:59.0118 4752 [ B658B7076B1ACAA5876524595630F183 ] lirsgt C:\Windows\system32\DRIVERS\lirsgt.sys
16:16:59.0118 4752 lirsgt - ok
16:16:59.0133 4752 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
16:16:59.0133 4752 lltdio - ok
16:16:59.0149 4752 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll
16:16:59.0149 4752 lltdsvc - ok
16:16:59.0165 4752 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll
16:16:59.0165 4752 lmhosts - ok
16:16:59.0165 4752 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
16:16:59.0165 4752 LSI_FC - ok
16:16:59.0180 4752 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
16:16:59.0180 4752 LSI_SAS - ok
16:16:59.0196 4752 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys
16:16:59.0196 4752 LSI_SAS2 - ok
16:16:59.0196 4752 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
16:16:59.0196 4752 LSI_SCSI - ok
16:16:59.0211 4752 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys
16:16:59.0211 4752 luafv - ok
16:16:59.0227 4752 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
16:16:59.0227 4752 Mcx2Svc - ok
16:16:59.0243 4752 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\drivers\megasas.sys
16:16:59.0243 4752 megasas - ok
16:16:59.0258 4752 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\drivers\MegaSR.sys
16:16:59.0258 4752 MegaSR - ok
16:16:59.0289 4752 Microsoft SharePoint Workspace Audit Service - ok
16:16:59.0289 4752 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll
16:16:59.0289 4752 MMCSS - ok
16:16:59.0305 4752 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys
16:16:59.0305 4752 Modem - ok
16:16:59.0321 4752 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys
16:16:59.0321 4752 monitor - ok
16:16:59.0321 4752 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
16:16:59.0321 4752 mouclass - ok
16:16:59.0336 4752 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
16:16:59.0336 4752 mouhid - ok
16:16:59.0352 4752 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
16:16:59.0352 4752 mountmgr - ok
16:16:59.0383 4752 [ 825BF0E46B4470A463AEB641480C5FCA ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
16:16:59.0383 4752 MozillaMaintenance - ok
16:16:59.0399 4752 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\Windows\system32\drivers\mpio.sys
16:16:59.0399 4752 mpio - ok
16:16:59.0414 4752 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
16:16:59.0414 4752 mpsdrv - ok
16:16:59.0445 4752 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc C:\Windows\system32\mpssvc.dll
16:16:59.0445 4752 MpsSvc - ok
16:16:59.0461 4752 [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
16:16:59.0461 4752 MRxDAV - ok
16:16:59.0477 4752 [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
16:16:59.0477 4752 mrxsmb - ok
16:16:59.0492 4752 [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
16:16:59.0492 4752 mrxsmb10 - ok
16:16:59.0508 4752 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
16:16:59.0508 4752 mrxsmb20 - ok
16:16:59.0523 4752 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\Windows\system32\drivers\msahci.sys
16:16:59.0523 4752 msahci - ok
16:16:59.0523 4752 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\Windows\system32\drivers\msdsm.sys
16:16:59.0523 4752 msdsm - ok
16:16:59.0539 4752 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe
16:16:59.0539 4752 MSDTC - ok
16:16:59.0555 4752 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys
16:16:59.0555 4752 Msfs - ok
16:16:59.0555 4752 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
16:16:59.0555 4752 mshidkmdf - ok
16:16:59.0570 4752 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
16:16:59.0570 4752 msisadrv - ok
16:16:59.0586 4752 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
16:16:59.0586 4752 MSiSCSI - ok
16:16:59.0586 4752 msiserver - ok
16:16:59.0601 4752 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
16:16:59.0601 4752 MSKSSRV - ok
16:16:59.0601 4752 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
16:16:59.0601 4752 MSPCLOCK - ok
16:16:59.0617 4752 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
16:16:59.0617 4752 MSPQM - ok
16:16:59.0633 4752 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
16:16:59.0633 4752 MsRPC - ok
16:16:59.0633 4752 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
16:16:59.0633 4752 mssmbios - ok
16:16:59.0633 4752 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
16:16:59.0633 4752 MSTEE - ok
16:16:59.0648 4752 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\drivers\MTConfig.sys
16:16:59.0648 4752 MTConfig - ok
16:16:59.0679 4752 [ 19B006B181E3875FD254F7B67ACF1E7C ] MTsensor C:\Windows\system32\DRIVERS\ASACPI.sys
16:16:59.0679 4752 MTsensor - ok
16:16:59.0679 4752 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys
16:16:59.0679 4752 Mup - ok
16:16:59.0711 4752 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\Windows\system32\qagentRT.dll
16:16:59.0711 4752 napagent - ok
16:16:59.0726 4752 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
16:16:59.0726 4752 NativeWifiP - ok
16:16:59.0773 4752 [ 760E38053BF56E501D562B70AD796B88 ] NDIS C:\Windows\system32\drivers\ndis.sys
16:16:59.0789 4752 NDIS - ok
16:16:59.0804 4752 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
16:16:59.0804 4752 NdisCap - ok
16:16:59.0820 4752 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
16:16:59.0820 4752 NdisTapi - ok
16:16:59.0835 4752 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
16:16:59.0835 4752 Ndisuio - ok
16:16:59.0851 4752 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
16:16:59.0851 4752 NdisWan - ok
16:16:59.0851 4752 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
16:16:59.0851 4752 NDProxy - ok
16:16:59.0945 4752 [ 7D2633295EB6FF2B938185874884059D ] Nero BackItUp Scheduler 4.0 C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
16:16:59.0960 4752 Nero BackItUp Scheduler 4.0 - ok
16:16:59.0976 4752 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
16:16:59.0976 4752 NetBIOS - ok
16:16:59.0991 4752 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
16:16:59.0991 4752 NetBT - ok
16:17:00.0007 4752 [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon C:\Windows\system32\lsass.exe
16:17:00.0007 4752 Netlogon - ok
16:17:00.0038 4752 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll
16:17:00.0054 4752 Netman - ok
16:17:00.0069 4752 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll
16:17:00.0085 4752 netprofm - ok
16:17:00.0101 4752 [ 3E5A36127E201DDF663176B66828FAFE ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
16:17:00.0101 4752 NetTcpPortSharing - ok
16:17:00.0132 4752 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
16:17:00.0132 4752 nfrd960 - ok
16:17:00.0147 4752 [ 8AD77806D336673F270DB31645267293 ] NlaSvc C:\Windows\System32\nlasvc.dll
16:17:00.0147 4752 NlaSvc - ok
16:17:00.0163 4752 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys
16:17:00.0163 4752 Npfs - ok
16:17:00.0163 4752 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll
16:17:00.0163 4752 nsi - ok
16:17:00.0179 4752 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
16:17:00.0179 4752 nsiproxy - ok
16:17:00.0225 4752 [ B98F8C6E31CD07B2E6F71F7F648E38C0 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
16:17:00.0241 4752 Ntfs - ok
16:17:00.0241 4752 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys
16:17:00.0241 4752 Null - ok
16:17:00.0288 4752 [ B4F53BCA4C688FF47F04FA90098F896E ] NVHDA C:\Windows\system32\drivers\nvhda64v.sys
16:17:00.0288 4752 NVHDA - ok
16:17:00.0475 4752 [ 0A2F27B5BCC45B64E152DD6AE0815198 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
16:17:00.0522 4752 nvlddmkm - ok
16:17:00.0553 4752 [ 0A92CB65770442ED0DC44834632F66AD ] nvraid C:\Windows\system32\drivers\nvraid.sys
16:17:00.0553 4752 nvraid - ok
16:17:00.0569 4752 [ DAB0E87525C10052BF65F06152F37E4A ] nvstor C:\Windows\system32\drivers\nvstor.sys
16:17:00.0569 4752 nvstor - ok
16:17:00.0631 4752 [ 574087EA9105F23FB522A4FDDD5292D9 ] nvsvc C:\Windows\system32\nvvsvc.exe
16:17:00.0647 4752 nvsvc - ok
16:17:00.0709 4752 [ ABA5A88740635D37A2B6CEB27DBC738A ] nvUpdatusService C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
16:17:00.0725 4752 nvUpdatusService - ok
16:17:00.0740 4752 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
16:17:00.0740 4752 nv_agp - ok
16:17:00.0740 4752 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
16:17:00.0740 4752 ohci1394 - ok
16:17:00.0803 4752 [ 4965B005492CBA7719E82B71E3245495 ] ose64 C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
16:17:00.0803 4752 ose64 - ok
16:17:00.0927 4752 [ 61BFFB5F57AD12F83AB64B7181829B34 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
16:17:00.0959 4752 osppsvc - ok
16:17:00.0974 4752 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
16:17:00.0974 4752 p2pimsvc - ok
16:17:00.0990 4752 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll
16:17:00.0990 4752 p2psvc - ok
16:17:00.0990 4752 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\drivers\parport.sys
16:17:00.0990 4752 Parport - ok
16:17:01.0005 4752 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\Windows\system32\drivers\partmgr.sys
16:17:01.0005 4752 partmgr - ok
16:17:01.0021 4752 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\Windows\System32\pcasvc.dll
16:17:01.0021 4752 PcaSvc - ok
16:17:01.0037 4752 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\Windows\system32\drivers\pci.sys
16:17:01.0037 4752 pci - ok
16:17:01.0052 4752 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\drivers\pciide.sys
16:17:01.0052 4752 pciide - ok
16:17:01.0052 4752 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
16:17:01.0052 4752 pcmcia - ok
16:17:01.0068 4752 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys
16:17:01.0068 4752 pcw - ok
16:17:01.0083 4752 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\Windows\system32\drivers\peauth.sys
16:17:01.0083 4752 PEAUTH - ok
16:17:01.0115 4752 [ B9B0A4299DD2D76A4243F75FD54DC680 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll
16:17:01.0130 4752 PeerDistSvc - ok
16:17:01.0161 4752 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe
16:17:01.0177 4752 PerfHost - ok
16:17:01.0208 4752 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\Windows\system32\pla.dll
16:17:01.0224 4752 pla - ok
16:17:01.0255 4752 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
16:17:01.0271 4752 PlugPlay - ok
16:17:01.0271 4752 PnkBstrA - ok
16:17:01.0286 4752 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
16:17:01.0286 4752 PNRPAutoReg - ok
16:17:01.0286 4752 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
16:17:01.0302 4752 PNRPsvc - ok
16:17:01.0317 4752 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
16:17:01.0317 4752 PolicyAgent - ok
16:17:01.0349 4752 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll
16:17:01.0349 4752 Power - ok
16:17:01.0364 4752 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
16:17:01.0364 4752 PptpMiniport - ok
16:17:01.0380 4752 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\drivers\processr.sys
16:17:01.0380 4752 Processor - ok
16:17:01.0395 4752 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc C:\Windows\system32\profsvc.dll
16:17:01.0395 4752 ProfSvc - ok
16:17:01.0411 4752 [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\Windows\system32\lsass.exe
16:17:01.0411 4752 ProtectedStorage - ok
16:17:01.0427 4752 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\Windows\system32\DRIVERS\pacer.sys
16:17:01.0427 4752 Psched - ok
16:17:01.0458 4752 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\drivers\ql2300.sys
16:17:01.0458 4752 ql2300 - ok
16:17:01.0473 4752 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
16:17:01.0473 4752 ql40xx - ok
16:17:01.0489 4752 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll
16:17:01.0489 4752 QWAVE - ok
16:17:01.0505 4752 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
16:17:01.0505 4752 QWAVEdrv - ok
16:17:01.0520 4752 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
16:17:01.0520 4752 RasAcd - ok
16:17:01.0536 4752 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
16:17:01.0551 4752 RasAgileVpn - ok
16:17:01.0551 4752 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll
16:17:01.0551 4752 RasAuto - ok
16:17:01.0567 4752 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
16:17:01.0567 4752 Rasl2tp - ok
16:17:01.0567 4752 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\Windows\System32\rasmans.dll
16:17:01.0567 4752 RasMan - ok
16:17:01.0583 4752 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
16:17:01.0583 4752 RasPppoe - ok
16:17:01.0583 4752 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
16:17:01.0583 4752 RasSstp - ok
16:17:01.0598 4752 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
16:17:01.0598 4752 rdbss - ok
16:17:01.0614 4752 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
16:17:01.0614 4752 rdpbus - ok
16:17:01.0614 4752 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
16:17:01.0629 4752 RDPCDD - ok
16:17:01.0645 4752 [ 1B6163C503398B23FF8B939C67747683 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys
16:17:01.0645 4752 RDPDR - ok
16:17:01.0661 4752 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
16:17:01.0676 4752 RDPENCDD - ok
16:17:01.0676 4752 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
16:17:01.0676 4752 RDPREFMP - ok
16:17:01.0707 4752 [ 313F68E1A3E6345A4F47A36B07062F34 ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
16:17:01.0723 4752 RdpVideoMiniport - ok
16:17:01.0739 4752 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
16:17:01.0739 4752 RDPWD - ok
16:17:01.0770 4752 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
16:17:01.0770 4752 rdyboost - ok
16:17:01.0785 4752 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\Windows\System32\mprdim.dll
16:17:01.0785 4752 RemoteAccess - ok
16:17:01.0801 4752 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll
16:17:01.0801 4752 RemoteRegistry - ok
16:17:01.0801 4752 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
16:17:01.0817 4752 RpcEptMapper - ok
16:17:01.0817 4752 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe
16:17:01.0817 4752 RpcLocator - ok
16:17:01.0848 4752 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\Windows\system32\rpcss.dll
16:17:01.0848 4752 RpcSs - ok
16:17:01.0863 4752 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
16:17:01.0863 4752 rspndr - ok
16:17:01.0895 4752 [ EE082E06A82FF630351D1E0EBBD3D8D0 ] RTL8167 C:\Windows\system32\DRIVERS\Rt64win7.sys
16:17:01.0910 4752 RTL8167 - ok
16:17:01.0926 4752 [ E60C0A09F997826C7627B244195AB581 ] s3cap C:\Windows\system32\drivers\vms3cap.sys
16:17:01.0941 4752 s3cap - ok
16:17:01.0941 4752 [ C118A82CD78818C29AB228366EBF81C3 ] SamSs C:\Windows\system32\lsass.exe
16:17:01.0941 4752 SamSs - ok
16:17:01.0957 4752 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
16:17:01.0957 4752 sbp2port - ok
16:17:01.0973 4752 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll
16:17:01.0973 4752 SCardSvr - ok
16:17:01.0988 4752 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
16:17:01.0988 4752 scfilter - ok
16:17:02.0004 4752 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\Windows\system32\schedsvc.dll
16:17:02.0019 4752 Schedule - ok
16:17:02.0035 4752 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\Windows\System32\certprop.dll
16:17:02.0035 4752 SCPolicySvc - ok
16:17:02.0035 4752 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\Windows\System32\SDRSVC.dll
16:17:02.0035 4752 SDRSVC - ok
16:17:02.0051 4752 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys
16:17:02.0051 4752 secdrv - ok
16:17:02.0066 4752 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\Windows\system32\seclogon.dll
16:17:02.0066 4752 seclogon - ok
16:17:02.0082 4752 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\System32\sens.dll
16:17:02.0082 4752 SENS - ok
16:17:02.0082 4752 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll
16:17:02.0082 4752 SensrSvc - ok
16:17:02.0113 4752 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
16:17:02.0113 4752 Serenum - ok
16:17:02.0129 4752 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\DRIVERS\serial.sys
16:17:02.0129 4752 Serial - ok
16:17:02.0129 4752 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\drivers\sermouse.sys
16:17:02.0129 4752 sermouse - ok
16:17:02.0144 4752 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\Windows\system32\sessenv.dll
16:17:02.0144 4752 SessionEnv - ok
16:17:02.0144 4752 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
16:17:02.0160 4752 sffdisk - ok
16:17:02.0160 4752 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
16:17:02.0160 4752 sffp_mmc - ok
16:17:02.0160 4752 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
16:17:02.0160 4752 sffp_sd - ok
16:17:02.0175 4752 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
16:17:02.0175 4752 sfloppy - ok
16:17:02.0191 4752 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\Windows\System32\ipnathlp.dll
16:17:02.0191 4752 SharedAccess - ok
16:17:02.0207 4752 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll
16:17:02.0207 4752 ShellHWDetection - ok
16:17:02.0222 4752 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys
16:17:02.0222 4752 SiSRaid2 - ok
16:17:02.0222 4752 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
16:17:02.0222 4752 SiSRaid4 - ok
16:17:02.0253 4752 [ 7C15061CD0372487903B07B9BB03AFAD ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
16:17:02.0269 4752 SkypeUpdate - ok
16:17:02.0269 4752 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys
16:17:02.0269 4752 Smb - ok
16:17:02.0285 4752 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe
16:17:02.0285 4752 SNMPTRAP - ok
16:17:02.0300 4752 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys
16:17:02.0300 4752 spldr - ok
16:17:02.0316 4752 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler C:\Windows\System32\spoolsv.exe
16:17:02.0316 4752 Spooler - ok
16:17:02.0378 4752 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\Windows\system32\sppsvc.exe
16:17:02.0394 4752 sppsvc - ok
16:17:02.0394 4752 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll
16:17:02.0394 4752 sppuinotify - ok
16:17:02.0409 4752 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv C:\Windows\system32\DRIVERS\srv.sys
16:17:02.0409 4752 srv - ok
16:17:02.0425 4752 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
16:17:02.0425 4752 srv2 - ok
16:17:02.0441 4752 [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
16:17:02.0441 4752 srvnet - ok
16:17:02.0456 4752 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
16:17:02.0456 4752 SSDPSRV - ok
16:17:02.0472 4752 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\Windows\system32\sstpsvc.dll
16:17:02.0472 4752 SstpSvc - ok
16:17:02.0503 4752 Steam Client Service - ok
16:17:02.0550 4752 [ 78216A10BF8B200890A88D8820F33F14 ] Stereo Service C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
16:17:02.0565 4752 Stereo Service - ok
16:17:02.0581 4752 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\Windows\system32\drivers\stexstor.sys
16:17:02.0581 4752 stexstor - ok
16:17:02.0612 4752 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc C:\Windows\System32\wiaservc.dll
16:17:02.0628 4752 stisvc - ok
16:17:02.0659 4752 [ 7785DC213270D2FC066538DAF94087E7 ] storflt C:\Windows\system32\drivers\vmstorfl.sys
16:17:02.0659 4752 storflt - ok
16:17:02.0659 4752 [ D34E4943D5AC096C8EDEEBFD80D76E23 ] storvsc C:\Windows\system32\drivers\storvsc.sys
16:17:02.0659 4752 storvsc - ok
16:17:02.0675 4752 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\Windows\system32\DRIVERS\swenum.sys
16:17:02.0675 4752 swenum - ok
16:17:02.0768 4752 [ F577910A133A592234EBAAD3F3AFA258 ] SwitchBoard C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
16:17:02.0768 4752 SwitchBoard - ok
16:17:02.0799 4752 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\Windows\System32\swprv.dll
16:17:02.0799 4752 swprv - ok
16:17:02.0815 4752 [ C3A39C4079305480972D29C44B868C78 ] Synth3dVsc C:\Windows\system32\drivers\synth3dvsc.sys
16:17:02.0815 4752 Synth3dVsc - ok
16:17:02.0846 4752 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain C:\Windows\system32\sysmain.dll
16:17:02.0877 4752 SysMain - ok
16:17:02.0893 4752 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\Windows\System32\TabSvc.dll
16:17:02.0893 4752 TabletInputService - ok
16:17:02.0909 4752 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv C:\Windows\System32\tapisrv.dll
16:17:02.0909 4752 TapiSrv - ok
16:17:02.0924 4752 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\Windows\System32\tbssvc.dll
16:17:02.0924 4752 TBS - ok
16:17:02.0971 4752 [ 9849EA3843A2ADBDD1497E97A85D8CAE ] Tcpip C:\Windows\system32\drivers\tcpip.sys
16:17:02.0971 4752 Tcpip - ok
16:17:03.0002 4752 [ 9849EA3843A2ADBDD1497E97A85D8CAE ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
16:17:03.0018 4752 TCPIP6 - ok
16:17:03.0033 4752 [ 1B16D0BD9841794A6E0CDE0CEF744ABC ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
16:17:03.0033 4752 tcpipreg - ok
16:17:03.0049 4752 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
16:17:03.0049 4752 TDPIPE - ok
16:17:03.0065 4752 [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
16:17:03.0065 4752 TDTCP - ok
16:17:03.0080 4752 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
16:17:03.0080 4752 tdx - ok
16:17:03.0096 4752 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
16:17:03.0096 4752 TermDD - ok
16:17:03.0111 4752 [ EF4469AB69EB15E5D3754E6AEAFBCD3D ] terminpt C:\Windows\system32\drivers\terminpt.sys
16:17:03.0127 4752 terminpt - ok
16:17:03.0143 4752 [ 2E648163254233755035B46DD7B89123 ] TermService C:\Windows\System32\termsrv.dll
16:17:03.0174 4752 TermService - ok
16:17:03.0189 4752 [ F0344071948D1A1FA732231785A0664C ] Themes C:\Windows\system32\themeservice.dll
16:17:03.0189 4752 Themes - ok
16:17:03.0205 4752 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\Windows\system32\mmcss.dll
16:17:03.0205 4752 THREADORDER - ok
16:17:03.0221 4752 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\Windows\System32\trkwks.dll
16:17:03.0221 4752 TrkWks - ok
16:17:03.0252 4752 [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
16:17:03.0252 4752 TrustedInstaller - ok
16:17:03.0267 4752 [ CE18B2CDFC837C99E5FAE9CA6CBA5D30 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
16:17:03.0267 4752 tssecsrv - ok
16:17:03.0283 4752 [ 17C6B51CBCCDED95B3CC14E22791F85E ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
16:17:03.0299 4752 TsUsbFlt - ok
16:17:03.0314 4752 [ AD64450A4ABE076F5CB34CC08EEACB07 ] TsUsbGD C:\Windows\system32\drivers\TsUsbGD.sys
16:17:03.0314 4752 TsUsbGD - ok
16:17:03.0330 4752 [ E1748D04AE40118B62BC18AC86032192 ] tsusbhub C:\Windows\system32\drivers\tsusbhub.sys
16:17:03.0330 4752 tsusbhub - ok
16:17:03.0345 4752 [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
16:17:03.0345 4752 tunnel - ok
16:17:03.0361 4752 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\Windows\system32\drivers\uagp35.sys
16:17:03.0361 4752 uagp35 - ok
16:17:03.0377 4752 [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
16:17:03.0377 4752 udfs - ok
16:17:03.0392 4752 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\Windows\system32\UI0Detect.exe
16:17:03.0392 4752 UI0Detect - ok
16:17:03.0392 4752 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
16:17:03.0392 4752 uliagpkx - ok
16:17:03.0423 4752 [ DC54A574663A895C8763AF0FA1FF7561 ] umbus C:\Windows\system32\DRIVERS\umbus.sys
16:17:03.0423 4752 umbus - ok
tialize success
16:16:52.0129 4836 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
16:16:52.0659 4836 ============================================================
16:16:52.0659 4836 Current date / time: 2013/06/18 16:16:52.0659
16:16:52.0659 4836 SystemInfo:
16:16:52.0659 4836
16:16:52.0659 4836 OS Version: 6.1.7601 ServicePack: 1.0
16:16:52.0659 4836 Product type: Workstation
16:16:52.0659 4836 ComputerName: ORAJ-PC
16:16:52.0659 4836 UserName: Oraj
16:16:52.0659 4836 Windows directory: C:\Windows
16:16:52.0659 4836 System windows directory: C:\Windows
16:16:52.0659 4836 Running under WOW64
16:16:52.0659 4836 Processor architecture: Intel x64
16:16:52.0659 4836 Number of processors: 4
16:16:52.0659 4836 Page size: 0x1000
16:16:52.0659 4836 Boot type: Normal boot
16:16:52.0659 4836 ============================================================
16:16:53.0346 4836 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
16:16:53.0346 4836 ============================================================
16:16:53.0346 4836 \Device\Harddisk0\DR0:
16:16:53.0346 4836 MBR partitions:
16:16:53.0346 4836 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
16:16:53.0346 4836 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x1FD92000
16:16:53.0346 4836 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x1FDC4800, BlocksNum 0x54941800
16:16:53.0346 4836 ============================================================
16:16:53.0377 4836 C: <-> \Device\Harddisk0\DR0\Partition2
16:16:53.0424 4836 D: <-> \Device\Harddisk0\DR0\Partition3
16:16:53.0424 4836 ============================================================
16:16:53.0424 4836 Initialize success
16:16:53.0424 4836 ============================================================
16:16:55.0171 4752 ============================================================
16:16:55.0171 4752 Scan started
16:16:55.0171 4752 Mode: Manual;
16:16:55.0171 4752 ============================================================
16:16:55.0452 4752 ================ Scan system memory ========================
16:16:55.0452 4752 System memory - ok
16:16:55.0452 4752 ================ Scan services =============================
16:16:55.0545 4752 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
16:16:55.0561 4752 1394ohci - ok
16:16:55.0608 4752 [ 2D6434E957F7CFA0035C20890F77BBC6 ] a2acc C:\PROGRAM FILES (X86)\EMSISOFT ANTI-MALWARE\a2accx64.sys
16:16:55.0608 4752 a2acc - ok
16:16:55.0701 4752 [ E773B6AD4182A01986DB8BF0AEE32A15 ] a2AntiMalware C:\Program Files (x86)\Emsisoft Anti-Malware\a2service.exe
16:16:55.0717 4752 a2AntiMalware - ok
16:16:55.0733 4752 [ D27A8B7BB0E15DFBFC6B4E774EE17AD9 ] A2DDA C:\Program Files (x86)\Emsisoft Anti-Malware\a2ddax64.sys
16:16:55.0733 4752 A2DDA - ok
16:16:55.0748 4752 [ 3D55CE53128C81E06CD6B024C3B9FAC3 ] a2injectiondriver C:\Program Files (x86)\Emsisoft Anti-Malware\a2dix64.sys
16:16:55.0748 4752 a2injectiondriver - ok
16:16:55.0748 4752 [ 0932B29AA1B9372FFE6D3AF8BA2ABA3A ] a2util C:\Program Files (x86)\Emsisoft Anti-Malware\a2util64.sys
16:16:55.0748 4752 a2util - ok
16:16:55.0764 4752 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\Windows\system32\drivers\ACPI.sys
16:16:55.0779 4752 ACPI - ok
16:16:55.0779 4752 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
16:16:55.0779 4752 AcpiPmi - ok
16:16:55.0826 4752 [ B1EA9681502EE57F87DB71D726288A5B ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
16:16:55.0826 4752 AdobeARMservice - ok
16:16:55.0904 4752 [ 9915504F602D277EE47FD843A677FD15 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
16:16:55.0904 4752 AdobeFlashPlayerUpdateSvc - ok
16:16:55.0935 4752 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
16:16:55.0951 4752 adp94xx - ok
16:16:55.0982 4752 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\drivers\adpahci.sys
16:16:55.0982 4752 adpahci - ok
16:16:55.0998 4752 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\drivers\adpu320.sys
16:16:56.0013 4752 adpu320 - ok
16:16:56.0029 4752 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
16:16:56.0029 4752 AeLookupSvc - ok
16:16:56.0076 4752 [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD C:\Windows\system32\drivers\afd.sys
16:16:56.0076 4752 AFD - ok
16:16:56.0091 4752 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\drivers\agp440.sys
16:16:56.0091 4752 agp440 - ok
16:16:56.0107 4752 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe
16:16:56.0107 4752 ALG - ok
16:16:56.0107 4752 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\drivers\aliide.sys
16:16:56.0107 4752 aliide - ok
16:16:56.0123 4752 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\drivers\amdide.sys
16:16:56.0123 4752 amdide - ok
16:16:56.0123 4752 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\drivers\amdk8.sys
16:16:56.0123 4752 AmdK8 - ok
16:16:56.0154 4752 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
16:16:56.0154 4752 AmdPPM - ok
16:16:56.0185 4752 [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata C:\Windows\system32\drivers\amdsata.sys
16:16:56.0185 4752 amdsata - ok
16:16:56.0201 4752 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\drivers\amdsbs.sys
16:16:56.0201 4752 amdsbs - ok
16:16:56.0216 4752 [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata C:\Windows\system32\drivers\amdxata.sys
16:16:56.0232 4752 amdxata - ok
16:16:56.0247 4752 [ E4B0BB52FCCB391CD31BC5D617F1303C ] Amfilter C:\Windows\system32\DRIVERS\Amfltx64.sys
16:16:56.0247 4752 Amfilter - ok
16:16:56.0263 4752 [ DE7F69DE4F10EEB2B9F05B8CFE8BFDAC ] Amusbprt C:\Windows\system32\DRIVERS\Amusbx64.sys
16:16:56.0279 4752 Amusbprt - ok
16:16:56.0279 4752 [ 89A69C3F2F319B43379399547526D952 ] AppID C:\Windows\system32\drivers\appid.sys
16:16:56.0279 4752 AppID - ok
16:16:56.0294 4752 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll
16:16:56.0294 4752 AppIDSvc - ok
16:16:56.0325 4752 [ 9D2A2369AB4B08A4905FE72DB104498F ] Appinfo C:\Windows\System32\appinfo.dll
16:16:56.0325 4752 Appinfo - ok
16:16:56.0357 4752 [ 4ABA3E75A76195A3E38ED2766C962899 ] AppMgmt C:\Windows\System32\appmgmts.dll
16:16:56.0357 4752 AppMgmt - ok
16:16:56.0372 4752 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\drivers\arc.sys
16:16:56.0372 4752 arc - ok
16:16:56.0372 4752 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\drivers\arcsas.sys
16:16:56.0388 4752 arcsas - ok
16:16:56.0403 4752 [ 0BAEFD3F648C6E7AB52990DD9565E4E2 ] aswFsBlk C:\Windows\system32\drivers\aswFsBlk.sys
16:16:56.0403 4752 aswFsBlk - ok
16:16:56.0419 4752 [ FA562F34ED6633C66170B09182B4C049 ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
16:16:56.0419 4752 aswMonFlt - ok
16:16:56.0419 4752 [ 64E2BAB4096C13D2342BC4661C967E07 ] aswRdr C:\Windows\System32\Drivers\aswrdr2.sys
16:16:56.0419 4752 aswRdr - ok
16:16:56.0450 4752 [ 5573AA70993A2BB81525B1C704B88763 ] aswRvrt C:\Windows\system32\drivers\aswRvrt.sys
16:16:56.0450 4752 aswRvrt - ok
16:16:56.0466 4752 [ 10ED1CAB84AA65983C41A11F60294C9B ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
16:16:56.0481 4752 aswSnx - ok
16:16:56.0497 4752 [ 00E5253353717D3CA12A0F5A6F9991EC ] aswSP C:\Windows\system32\drivers\aswSP.sys
16:16:56.0497 4752 aswSP - ok
16:16:56.0513 4752 [ 29DD8E458A84171202AA4979364C30C0 ] aswTdi C:\Windows\system32\drivers\aswTdi.sys
16:16:56.0513 4752 aswTdi - ok
16:16:56.0513 4752 [ 6359B99C955DB9F40B653159A0EED261 ] aswVmm C:\Windows\system32\drivers\aswVmm.sys
16:16:56.0513 4752 aswVmm - ok
16:16:56.0528 4752 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
16:16:56.0528 4752 AsyncMac - ok
16:16:56.0544 4752 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\drivers\atapi.sys
16:16:56.0544 4752 atapi - ok
16:16:56.0575 4752 [ 7C5D273E29DCC5505469B299C6F29163 ] AtiPcie C:\Windows\system32\DRIVERS\AtiPcie.sys
16:16:56.0575 4752 AtiPcie - ok
16:16:56.0606 4752 [ 4AEF9EC86818375495FB78CA58DF4E18 ] atksgt C:\Windows\system32\DRIVERS\atksgt.sys
16:16:56.0622 4752 atksgt - ok
16:16:56.0637 4752 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
16:16:56.0653 4752 AudioEndpointBuilder - ok
16:16:56.0684 4752 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv C:\Windows\System32\Audiosrv.dll
16:16:56.0684 4752 AudioSrv - ok
16:16:56.0731 4752 [ 28D6701C710AD7BA3CB95E75F8F1A9AA ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
16:16:56.0731 4752 avast! Antivirus - ok
16:16:56.0747 4752 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\Windows\System32\AxInstSV.dll
16:16:56.0747 4752 AxInstSV - ok
16:16:56.0762 4752 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\drivers\bxvbda.sys
16:16:56.0778 4752 b06bdrv - ok
16:16:56.0793 4752 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys
16:16:56.0793 4752 b57nd60a - ok
16:16:56.0793 4752 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll
16:16:56.0793 4752 BDESVC - ok
16:16:56.0793 4752 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys
16:16:56.0793 4752 Beep - ok
16:16:56.0825 4752 [ 82974D6A2FD19445CC5171FC378668A4 ] BFE C:\Windows\System32\bfe.dll
16:16:56.0840 4752 BFE - ok
16:16:56.0871 4752 [ 1EA7969E3271CBC59E1730697DC74682 ] BITS C:\Windows\System32\qmgr.dll
16:16:56.0871 4752 BITS - ok
16:16:56.0887 4752 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
16:16:56.0887 4752 blbdrive - ok
16:16:56.0903 4752 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
16:16:56.0903 4752 bowser - ok
16:16:56.0918 4752 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\drivers\BrFiltLo.sys
16:16:56.0918 4752 BrFiltLo - ok
16:16:56.0934 4752 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\drivers\BrFiltUp.sys
16:16:56.0934 4752 BrFiltUp - ok
16:16:56.0949 4752 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser C:\Windows\System32\browser.dll
16:16:56.0949 4752 Browser - ok
16:16:56.0949 4752 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys
16:16:56.0949 4752 Brserid - ok
16:16:56.0965 4752 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
16:16:56.0965 4752 BrSerWdm - ok
16:16:56.0965 4752 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
16:16:56.0965 4752 BrUsbMdm - ok
16:16:56.0965 4752 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
16:16:56.0965 4752 BrUsbSer - ok
16:16:56.0981 4752 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
16:16:56.0981 4752 BTHMODEM - ok
16:16:56.0981 4752 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll
16:16:56.0981 4752 bthserv - ok
16:16:56.0996 4752 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
16:16:56.0996 4752 cdfs - ok
16:16:57.0012 4752 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
16:16:57.0012 4752 cdrom - ok
16:16:57.0012 4752 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\Windows\System32\certprop.dll
16:16:57.0027 4752 CertPropSvc - ok
16:16:57.0027 4752 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\drivers\circlass.sys
16:16:57.0027 4752 circlass - ok
16:16:57.0043 4752 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys
16:16:57.0043 4752 CLFS - ok
16:16:57.0074 4752 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
16:16:57.0090 4752 clr_optimization_v2.0.50727_32 - ok
16:16:57.0105 4752 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
16:16:57.0121 4752 clr_optimization_v2.0.50727_64 - ok
16:16:57.0152 4752 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
16:16:57.0152 4752 clr_optimization_v4.0.30319_32 - ok
16:16:57.0183 4752 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
16:16:57.0183 4752 clr_optimization_v4.0.30319_64 - ok
16:16:57.0199 4752 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\drivers\CmBatt.sys
16:16:57.0199 4752 CmBatt - ok
16:16:57.0215 4752 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\drivers\cmdide.sys
16:16:57.0215 4752 cmdide - ok
16:16:57.0246 4752 [ AAFCB52FE0037207FB6FBEA070D25EFE ] CNG C:\Windows\system32\Drivers\cng.sys
16:16:57.0246 4752 CNG - ok
16:16:57.0277 4752 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\drivers\compbatt.sys
16:16:57.0277 4752 Compbatt - ok
16:16:57.0293 4752 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys
16:16:57.0293 4752 CompositeBus - ok
16:16:57.0293 4752 COMSysApp - ok
16:16:57.0308 4752 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
16:16:57.0308 4752 crcdisk - ok
16:16:57.0339 4752 [ D8129C49798CBBFB2E4351D4B7B8EF9C ] CryptSvc C:\Windows\system32\cryptsvc.dll
16:16:57.0339 4752 CryptSvc - ok
16:16:57.0371 4752 [ 54DA3DFD29ED9F1619B6F53F3CE55E49 ] CSC C:\Windows\system32\drivers\csc.sys
16:16:57.0386 4752 CSC - ok
16:16:57.0402 4752 [ 3AB183AB4D2C79DCF459CD2C1266B043 ] CscService C:\Windows\System32\cscsvc.dll
16:16:57.0417 4752 CscService - ok
16:16:57.0449 4752 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\Windows\system32\rpcss.dll
16:16:57.0464 4752 DcomLaunch - ok
16:16:57.0480 4752 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll
16:16:57.0480 4752 defragsvc - ok
16:16:57.0495 4752 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
16:16:57.0495 4752 DfsC - ok
16:16:57.0511 4752 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\Windows\system32\dhcpcore.dll
16:16:57.0511 4752 Dhcp - ok
16:16:57.0527 4752 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys
16:16:57.0527 4752 discache - ok
16:16:57.0527 4752 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\drivers\disk.sys
16:16:57.0527 4752 Disk - ok
16:16:57.0542 4752 [ 5DB085A8A6600BE6401F2B24EECB5415 ] dmvsc C:\Windows\system32\drivers\dmvsc.sys
16:16:57.0542 4752 dmvsc - ok
16:16:57.0573 4752 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\Windows\System32\dnsrslvr.dll
16:16:57.0573 4752 Dnscache - ok
16:16:57.0589 4752 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\Windows\System32\dot3svc.dll
16:16:57.0605 4752 dot3svc - ok
16:16:57.0620 4752 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\Windows\system32\dps.dll
16:16:57.0620 4752 DPS - ok
16:16:57.0651 4752 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
16:16:57.0651 4752 drmkaud - ok
16:16:57.0683 4752 [ 46571ED73AE84469DCA53081D33CF3C8 ] dtsoftbus01 C:\Windows\system32\DRIVERS\dtsoftbus01.sys
16:16:57.0683 4752 dtsoftbus01 - ok
16:16:57.0729 4752 [ AF2E16242AA723F68F461B6EAE2EAD3D ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
16:16:57.0745 4752 DXGKrnl - ok
16:16:57.0761 4752 EagleX64 - ok
16:16:57.0761 4752 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll
16:16:57.0761 4752 EapHost - ok
16:16:57.0839 4752 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\drivers\evbda.sys
16:16:57.0854 4752 ebdrv - ok
16:16:57.0870 4752 [ C118A82CD78818C29AB228366EBF81C3 ] EFS C:\Windows\System32\lsass.exe
16:16:57.0870 4752 EFS - ok
16:16:57.0917 4752 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
16:16:57.0917 4752 ehRecvr - ok
16:16:57.0932 4752 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe
16:16:57.0932 4752 ehSched - ok
16:16:57.0963 4752 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\drivers\elxstor.sys
16:16:57.0963 4752 elxstor - ok
16:16:57.0995 4752 [ 017CF0AAA4574066DE88B69EC616A816 ] EpsonBidirectionalService C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSVC.exe
16:16:57.0995 4752 EpsonBidirectionalService - ok
16:16:58.0010 4752 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\drivers\errdev.sys
16:16:58.0010 4752 ErrDev - ok
16:16:58.0026 4752 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll
16:16:58.0026 4752 EventSystem - ok
16:16:58.0041 4752 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys
16:16:58.0041 4752 exfat - ok
16:16:58.0057 4752 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys
16:16:58.0057 4752 fastfat - ok
16:16:58.0104 4752 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\Windows\system32\fxssvc.exe
16:16:58.0104 4752 Fax - ok
16:16:58.0119 4752 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\drivers\fdc.sys
16:16:58.0119 4752 fdc - ok
16:16:58.0135 4752 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll
16:16:58.0135 4752 fdPHost - ok
16:16:58.0135 4752 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll
16:16:58.0135 4752 FDResPub - ok
16:16:58.0135 4752 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
16:16:58.0135 4752 FileInfo - ok
16:16:58.0151 4752 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
16:16:58.0151 4752 Filetrace - ok
16:16:58.0151 4752 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\drivers\flpydisk.sys
16:16:58.0151 4752 flpydisk - ok
16:16:58.0166 4752 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
16:16:58.0166 4752 FltMgr - ok
16:16:58.0213 4752 [ C4C183E6551084039EC862DA1C945E3D ] FontCache C:\Windows\system32\FntCache.dll
16:16:58.0229 4752 FontCache - ok
16:16:58.0244 4752 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
16:16:58.0244 4752 FontCache3.0.0.0 - ok
16:16:58.0260 4752 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
16:16:58.0260 4752 FsDepends - ok
16:16:58.0260 4752 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
16:16:58.0260 4752 Fs_Rec - ok
16:16:58.0307 4752 [ 8F6322049018354F45F05A2FD2D4E5E0 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
16:16:58.0307 4752 fvevol - ok
16:16:58.0353 4752 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
16:16:58.0353 4752 gagp30kx - ok
16:16:58.0400 4752 GMSIPCI - ok
16:16:58.0447 4752 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\Windows\System32\gpsvc.dll
16:16:58.0463 4752 gpsvc - ok
16:16:58.0525 4752 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
16:16:58.0525 4752 gupdate - ok
16:16:58.0525 4752 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
16:16:58.0525 4752 gupdatem - ok
16:16:58.0541 4752 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
16:16:58.0556 4752 hcw85cir - ok
16:16:58.0556 4752 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
16:16:58.0572 4752 HdAudAddService - ok
16:16:58.0572 4752 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
16:16:58.0572 4752 HDAudBus - ok
16:16:58.0572 4752 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\drivers\HidBatt.sys
16:16:58.0572 4752 HidBatt - ok
16:16:58.0603 4752 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\drivers\hidbth.sys
16:16:58.0603 4752 HidBth - ok
16:16:58.0603 4752 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\drivers\hidir.sys
16:16:58.0603 4752 HidIr - ok
16:16:58.0619 4752 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\system32\hidserv.dll
16:16:58.0619 4752 hidserv - ok
16:16:58.0634 4752 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
16:16:58.0634 4752 HidUsb - ok
16:16:58.0650 4752 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\Windows\system32\kmsvc.dll
16:16:58.0650 4752 hkmsvc - ok
16:16:58.0665 4752 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll
16:16:58.0665 4752 HomeGroupListener - ok
16:16:58.0681 4752 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
16:16:58.0681 4752 HomeGroupProvider - ok
16:16:58.0681 4752 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
16:16:58.0697 4752 HpSAMD - ok
16:16:58.0697 4752 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\Windows\system32\drivers\HTTP.sys
16:16:58.0712 4752 HTTP - ok
16:16:58.0728 4752 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
16:16:58.0728 4752 hwpolicy - ok
16:16:58.0728 4752 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
16:16:58.0728 4752 i8042prt - ok
16:16:58.0759 4752 [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
16:16:58.0759 4752 iaStorV - ok
16:16:58.0790 4752 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
16:16:58.0790 4752 idsvc - ok
16:16:58.0806 4752 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\drivers\iirsp.sys
16:16:58.0806 4752 iirsp - ok
16:16:58.0821 4752 [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT C:\Windows\System32\ikeext.dll
16:16:58.0821 4752 IKEEXT - ok
16:16:58.0837 4752 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\drivers\intelide.sys
16:16:58.0837 4752 intelide - ok
16:16:58.0837 4752 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\drivers\intelppm.sys
16:16:58.0837 4752 intelppm - ok
16:16:58.0853 4752 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll
16:16:58.0853 4752 IPBusEnum - ok
16:16:58.0853 4752 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
16:16:58.0853 4752 IpFilterDriver - ok
16:16:58.0884 4752 [ 08C2957BB30058E663720C5606885653 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
16:16:58.0899 4752 iphlpsvc - ok
16:16:58.0899 4752 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
16:16:58.0915 4752 IPMIDRV - ok
16:16:58.0915 4752 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
16:16:58.0915 4752 IPNAT - ok
16:16:58.0931 4752 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
16:16:58.0931 4752 IRENUM - ok
16:16:58.0931 4752 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\drivers\isapnp.sys
16:16:58.0931 4752 isapnp - ok
16:16:58.0946 4752 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
16:16:58.0946 4752 iScsiPrt - ok
16:16:58.0962 4752 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
16:16:58.0962 4752 kbdclass - ok
16:16:58.0977 4752 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
16:16:58.0977 4752 kbdhid - ok
16:16:58.0993 4752 [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso C:\Windows\system32\lsass.exe
16:16:58.0993 4752 KeyIso - ok
16:16:59.0009 4752 [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
16:16:59.0009 4752 KSecDD - ok
16:16:59.0024 4752 [ 7EFB9333E4ECCE6AE4AE9D777D9E553E ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
16:16:59.0024 4752 KSecPkg - ok
16:16:59.0040 4752 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
16:16:59.0040 4752 ksthunk - ok
16:16:59.0055 4752 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll
16:16:59.0055 4752 KtmRm - ok
16:16:59.0055 4752 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\Windows\system32\srvsvc.dll
16:16:59.0071 4752 LanmanServer - ok
16:16:59.0087 4752 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
16:16:59.0087 4752 LanmanWorkstation - ok
16:16:59.0118 4752 [ B658B7076B1ACAA5876524595630F183 ] lirsgt C:\Windows\system32\DRIVERS\lirsgt.sys
16:16:59.0118 4752 lirsgt - ok
16:16:59.0133 4752 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
16:16:59.0133 4752 lltdio - ok
16:16:59.0149 4752 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll
16:16:59.0149 4752 lltdsvc - ok
16:16:59.0165 4752 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll
16:16:59.0165 4752 lmhosts - ok
16:16:59.0165 4752 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
16:16:59.0165 4752 LSI_FC - ok
16:16:59.0180 4752 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
16:16:59.0180 4752 LSI_SAS - ok
16:16:59.0196 4752 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys
16:16:59.0196 4752 LSI_SAS2 - ok
16:16:59.0196 4752 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
16:16:59.0196 4752 LSI_SCSI - ok
16:16:59.0211 4752 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys
16:16:59.0211 4752 luafv - ok
16:16:59.0227 4752 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
16:16:59.0227 4752 Mcx2Svc - ok
16:16:59.0243 4752 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\drivers\megasas.sys
16:16:59.0243 4752 megasas - ok
16:16:59.0258 4752 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\drivers\MegaSR.sys
16:16:59.0258 4752 MegaSR - ok
16:16:59.0289 4752 Microsoft SharePoint Workspace Audit Service - ok
16:16:59.0289 4752 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll
16:16:59.0289 4752 MMCSS - ok
16:16:59.0305 4752 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys
16:16:59.0305 4752 Modem - ok
16:16:59.0321 4752 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys
16:16:59.0321 4752 monitor - ok
16:16:59.0321 4752 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
16:16:59.0321 4752 mouclass - ok
16:16:59.0336 4752 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
16:16:59.0336 4752 mouhid - ok
16:16:59.0352 4752 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
16:16:59.0352 4752 mountmgr - ok
16:16:59.0383 4752 [ 825BF0E46B4470A463AEB641480C5FCA ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
16:16:59.0383 4752 MozillaMaintenance - ok
16:16:59.0399 4752 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\Windows\system32\drivers\mpio.sys
16:16:59.0399 4752 mpio - ok
16:16:59.0414 4752 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
16:16:59.0414 4752 mpsdrv - ok
16:16:59.0445 4752 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc C:\Windows\system32\mpssvc.dll
16:16:59.0445 4752 MpsSvc - ok
16:16:59.0461 4752 [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
16:16:59.0461 4752 MRxDAV - ok
16:16:59.0477 4752 [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
16:16:59.0477 4752 mrxsmb - ok
16:16:59.0492 4752 [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
16:16:59.0492 4752 mrxsmb10 - ok
16:16:59.0508 4752 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
16:16:59.0508 4752 mrxsmb20 - ok
16:16:59.0523 4752 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\Windows\system32\drivers\msahci.sys
16:16:59.0523 4752 msahci - ok
16:16:59.0523 4752 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\Windows\system32\drivers\msdsm.sys
16:16:59.0523 4752 msdsm - ok
16:16:59.0539 4752 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe
16:16:59.0539 4752 MSDTC - ok
16:16:59.0555 4752 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys
16:16:59.0555 4752 Msfs - ok
16:16:59.0555 4752 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
16:16:59.0555 4752 mshidkmdf - ok
16:16:59.0570 4752 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
16:16:59.0570 4752 msisadrv - ok
16:16:59.0586 4752 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
16:16:59.0586 4752 MSiSCSI - ok
16:16:59.0586 4752 msiserver - ok
16:16:59.0601 4752 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
16:16:59.0601 4752 MSKSSRV - ok
16:16:59.0601 4752 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
16:16:59.0601 4752 MSPCLOCK - ok
16:16:59.0617 4752 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
16:16:59.0617 4752 MSPQM - ok
16:16:59.0633 4752 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
16:16:59.0633 4752 MsRPC - ok
16:16:59.0633 4752 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
16:16:59.0633 4752 mssmbios - ok
16:16:59.0633 4752 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
16:16:59.0633 4752 MSTEE - ok
16:16:59.0648 4752 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\drivers\MTConfig.sys
16:16:59.0648 4752 MTConfig - ok
16:16:59.0679 4752 [ 19B006B181E3875FD254F7B67ACF1E7C ] MTsensor C:\Windows\system32\DRIVERS\ASACPI.sys
16:16:59.0679 4752 MTsensor - ok
16:16:59.0679 4752 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys
16:16:59.0679 4752 Mup - ok
16:16:59.0711 4752 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\Windows\system32\qagentRT.dll
16:16:59.0711 4752 napagent - ok
16:16:59.0726 4752 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
16:16:59.0726 4752 NativeWifiP - ok
16:16:59.0773 4752 [ 760E38053BF56E501D562B70AD796B88 ] NDIS C:\Windows\system32\drivers\ndis.sys
16:16:59.0789 4752 NDIS - ok
16:16:59.0804 4752 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
16:16:59.0804 4752 NdisCap - ok
16:16:59.0820 4752 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
16:16:59.0820 4752 NdisTapi - ok
16:16:59.0835 4752 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
16:16:59.0835 4752 Ndisuio - ok
16:16:59.0851 4752 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
16:16:59.0851 4752 NdisWan - ok
16:16:59.0851 4752 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
16:16:59.0851 4752 NDProxy - ok
16:16:59.0945 4752 [ 7D2633295EB6FF2B938185874884059D ] Nero BackItUp Scheduler 4.0 C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
16:16:59.0960 4752 Nero BackItUp Scheduler 4.0 - ok
16:16:59.0976 4752 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
16:16:59.0976 4752 NetBIOS - ok
16:16:59.0991 4752 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
16:16:59.0991 4752 NetBT - ok
16:17:00.0007 4752 [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon C:\Windows\system32\lsass.exe
16:17:00.0007 4752 Netlogon - ok
16:17:00.0038 4752 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll
16:17:00.0054 4752 Netman - ok
16:17:00.0069 4752 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll
16:17:00.0085 4752 netprofm - ok
16:17:00.0101 4752 [ 3E5A36127E201DDF663176B66828FAFE ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
16:17:00.0101 4752 NetTcpPortSharing - ok
16:17:00.0132 4752 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
16:17:00.0132 4752 nfrd960 - ok
16:17:00.0147 4752 [ 8AD77806D336673F270DB31645267293 ] NlaSvc C:\Windows\System32\nlasvc.dll
16:17:00.0147 4752 NlaSvc - ok
16:17:00.0163 4752 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys
16:17:00.0163 4752 Npfs - ok
16:17:00.0163 4752 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll
16:17:00.0163 4752 nsi - ok
16:17:00.0179 4752 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
16:17:00.0179 4752 nsiproxy - ok
16:17:00.0225 4752 [ B98F8C6E31CD07B2E6F71F7F648E38C0 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
16:17:00.0241 4752 Ntfs - ok
16:17:00.0241 4752 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys
16:17:00.0241 4752 Null - ok
16:17:00.0288 4752 [ B4F53BCA4C688FF47F04FA90098F896E ] NVHDA C:\Windows\system32\drivers\nvhda64v.sys
16:17:00.0288 4752 NVHDA - ok
16:17:00.0475 4752 [ 0A2F27B5BCC45B64E152DD6AE0815198 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
16:17:00.0522 4752 nvlddmkm - ok
16:17:00.0553 4752 [ 0A92CB65770442ED0DC44834632F66AD ] nvraid C:\Windows\system32\drivers\nvraid.sys
16:17:00.0553 4752 nvraid - ok
16:17:00.0569 4752 [ DAB0E87525C10052BF65F06152F37E4A ] nvstor C:\Windows\system32\drivers\nvstor.sys
16:17:00.0569 4752 nvstor - ok
16:17:00.0631 4752 [ 574087EA9105F23FB522A4FDDD5292D9 ] nvsvc C:\Windows\system32\nvvsvc.exe
16:17:00.0647 4752 nvsvc - ok
16:17:00.0709 4752 [ ABA5A88740635D37A2B6CEB27DBC738A ] nvUpdatusService C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
16:17:00.0725 4752 nvUpdatusService - ok
16:17:00.0740 4752 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
16:17:00.0740 4752 nv_agp - ok
16:17:00.0740 4752 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
16:17:00.0740 4752 ohci1394 - ok
16:17:00.0803 4752 [ 4965B005492CBA7719E82B71E3245495 ] ose64 C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
16:17:00.0803 4752 ose64 - ok
16:17:00.0927 4752 [ 61BFFB5F57AD12F83AB64B7181829B34 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
16:17:00.0959 4752 osppsvc - ok
16:17:00.0974 4752 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
16:17:00.0974 4752 p2pimsvc - ok
16:17:00.0990 4752 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll
16:17:00.0990 4752 p2psvc - ok
16:17:00.0990 4752 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\drivers\parport.sys
16:17:00.0990 4752 Parport - ok
16:17:01.0005 4752 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\Windows\system32\drivers\partmgr.sys
16:17:01.0005 4752 partmgr - ok
16:17:01.0021 4752 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\Windows\System32\pcasvc.dll
16:17:01.0021 4752 PcaSvc - ok
16:17:01.0037 4752 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\Windows\system32\drivers\pci.sys
16:17:01.0037 4752 pci - ok
16:17:01.0052 4752 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\drivers\pciide.sys
16:17:01.0052 4752 pciide - ok
16:17:01.0052 4752 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
16:17:01.0052 4752 pcmcia - ok
16:17:01.0068 4752 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys
16:17:01.0068 4752 pcw - ok
16:17:01.0083 4752 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\Windows\system32\drivers\peauth.sys
16:17:01.0083 4752 PEAUTH - ok
16:17:01.0115 4752 [ B9B0A4299DD2D76A4243F75FD54DC680 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll
16:17:01.0130 4752 PeerDistSvc - ok
16:17:01.0161 4752 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe
16:17:01.0177 4752 PerfHost - ok
16:17:01.0208 4752 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\Windows\system32\pla.dll
16:17:01.0224 4752 pla - ok
16:17:01.0255 4752 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
16:17:01.0271 4752 PlugPlay - ok
16:17:01.0271 4752 PnkBstrA - ok
16:17:01.0286 4752 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
16:17:01.0286 4752 PNRPAutoReg - ok
16:17:01.0286 4752 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
16:17:01.0302 4752 PNRPsvc - ok
16:17:01.0317 4752 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
16:17:01.0317 4752 PolicyAgent - ok
16:17:01.0349 4752 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll
16:17:01.0349 4752 Power - ok
16:17:01.0364 4752 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
16:17:01.0364 4752 PptpMiniport - ok
16:17:01.0380 4752 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\drivers\processr.sys
16:17:01.0380 4752 Processor - ok
16:17:01.0395 4752 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc C:\Windows\system32\profsvc.dll
16:17:01.0395 4752 ProfSvc - ok
16:17:01.0411 4752 [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\Windows\system32\lsass.exe
16:17:01.0411 4752 ProtectedStorage - ok
16:17:01.0427 4752 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\Windows\system32\DRIVERS\pacer.sys
16:17:01.0427 4752 Psched - ok
16:17:01.0458 4752 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\drivers\ql2300.sys
16:17:01.0458 4752 ql2300 - ok
16:17:01.0473 4752 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
16:17:01.0473 4752 ql40xx - ok
16:17:01.0489 4752 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll
16:17:01.0489 4752 QWAVE - ok
16:17:01.0505 4752 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
16:17:01.0505 4752 QWAVEdrv - ok
16:17:01.0520 4752 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
16:17:01.0520 4752 RasAcd - ok
16:17:01.0536 4752 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
16:17:01.0551 4752 RasAgileVpn - ok
16:17:01.0551 4752 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll
16:17:01.0551 4752 RasAuto - ok
16:17:01.0567 4752 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
16:17:01.0567 4752 Rasl2tp - ok
16:17:01.0567 4752 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\Windows\System32\rasmans.dll
16:17:01.0567 4752 RasMan - ok
16:17:01.0583 4752 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
16:17:01.0583 4752 RasPppoe - ok
16:17:01.0583 4752 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
16:17:01.0583 4752 RasSstp - ok
16:17:01.0598 4752 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
16:17:01.0598 4752 rdbss - ok
16:17:01.0614 4752 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
16:17:01.0614 4752 rdpbus - ok
16:17:01.0614 4752 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
16:17:01.0629 4752 RDPCDD - ok
16:17:01.0645 4752 [ 1B6163C503398B23FF8B939C67747683 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys
16:17:01.0645 4752 RDPDR - ok
16:17:01.0661 4752 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
16:17:01.0676 4752 RDPENCDD - ok
16:17:01.0676 4752 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
16:17:01.0676 4752 RDPREFMP - ok
16:17:01.0707 4752 [ 313F68E1A3E6345A4F47A36B07062F34 ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
16:17:01.0723 4752 RdpVideoMiniport - ok
16:17:01.0739 4752 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
16:17:01.0739 4752 RDPWD - ok
16:17:01.0770 4752 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
16:17:01.0770 4752 rdyboost - ok
16:17:01.0785 4752 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\Windows\System32\mprdim.dll
16:17:01.0785 4752 RemoteAccess - ok
16:17:01.0801 4752 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll
16:17:01.0801 4752 RemoteRegistry - ok
16:17:01.0801 4752 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
16:17:01.0817 4752 RpcEptMapper - ok
16:17:01.0817 4752 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe
16:17:01.0817 4752 RpcLocator - ok
16:17:01.0848 4752 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\Windows\system32\rpcss.dll
16:17:01.0848 4752 RpcSs - ok
16:17:01.0863 4752 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
16:17:01.0863 4752 rspndr - ok
16:17:01.0895 4752 [ EE082E06A82FF630351D1E0EBBD3D8D0 ] RTL8167 C:\Windows\system32\DRIVERS\Rt64win7.sys
16:17:01.0910 4752 RTL8167 - ok
16:17:01.0926 4752 [ E60C0A09F997826C7627B244195AB581 ] s3cap C:\Windows\system32\drivers\vms3cap.sys
16:17:01.0941 4752 s3cap - ok
16:17:01.0941 4752 [ C118A82CD78818C29AB228366EBF81C3 ] SamSs C:\Windows\system32\lsass.exe
16:17:01.0941 4752 SamSs - ok
16:17:01.0957 4752 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
16:17:01.0957 4752 sbp2port - ok
16:17:01.0973 4752 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll
16:17:01.0973 4752 SCardSvr - ok
16:17:01.0988 4752 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
16:17:01.0988 4752 scfilter - ok
16:17:02.0004 4752 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\Windows\system32\schedsvc.dll
16:17:02.0019 4752 Schedule - ok
16:17:02.0035 4752 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\Windows\System32\certprop.dll
16:17:02.0035 4752 SCPolicySvc - ok
16:17:02.0035 4752 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\Windows\System32\SDRSVC.dll
16:17:02.0035 4752 SDRSVC - ok
16:17:02.0051 4752 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys
16:17:02.0051 4752 secdrv - ok
16:17:02.0066 4752 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\Windows\system32\seclogon.dll
16:17:02.0066 4752 seclogon - ok
16:17:02.0082 4752 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\System32\sens.dll
16:17:02.0082 4752 SENS - ok
16:17:02.0082 4752 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll
16:17:02.0082 4752 SensrSvc - ok
16:17:02.0113 4752 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
16:17:02.0113 4752 Serenum - ok
16:17:02.0129 4752 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\DRIVERS\serial.sys
16:17:02.0129 4752 Serial - ok
16:17:02.0129 4752 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\drivers\sermouse.sys
16:17:02.0129 4752 sermouse - ok
16:17:02.0144 4752 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\Windows\system32\sessenv.dll
16:17:02.0144 4752 SessionEnv - ok
16:17:02.0144 4752 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
16:17:02.0160 4752 sffdisk - ok
16:17:02.0160 4752 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
16:17:02.0160 4752 sffp_mmc - ok
16:17:02.0160 4752 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
16:17:02.0160 4752 sffp_sd - ok
16:17:02.0175 4752 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
16:17:02.0175 4752 sfloppy - ok
16:17:02.0191 4752 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\Windows\System32\ipnathlp.dll
16:17:02.0191 4752 SharedAccess - ok
16:17:02.0207 4752 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll
16:17:02.0207 4752 ShellHWDetection - ok
16:17:02.0222 4752 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys
16:17:02.0222 4752 SiSRaid2 - ok
16:17:02.0222 4752 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
16:17:02.0222 4752 SiSRaid4 - ok
16:17:02.0253 4752 [ 7C15061CD0372487903B07B9BB03AFAD ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
16:17:02.0269 4752 SkypeUpdate - ok
16:17:02.0269 4752 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys
16:17:02.0269 4752 Smb - ok
16:17:02.0285 4752 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe
16:17:02.0285 4752 SNMPTRAP - ok
16:17:02.0300 4752 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys
16:17:02.0300 4752 spldr - ok
16:17:02.0316 4752 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler C:\Windows\System32\spoolsv.exe
16:17:02.0316 4752 Spooler - ok
16:17:02.0378 4752 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\Windows\system32\sppsvc.exe
16:17:02.0394 4752 sppsvc - ok
16:17:02.0394 4752 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll
16:17:02.0394 4752 sppuinotify - ok
16:17:02.0409 4752 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv C:\Windows\system32\DRIVERS\srv.sys
16:17:02.0409 4752 srv - ok
16:17:02.0425 4752 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
16:17:02.0425 4752 srv2 - ok
16:17:02.0441 4752 [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
16:17:02.0441 4752 srvnet - ok
16:17:02.0456 4752 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
16:17:02.0456 4752 SSDPSRV - ok
16:17:02.0472 4752 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\Windows\system32\sstpsvc.dll
16:17:02.0472 4752 SstpSvc - ok
16:17:02.0503 4752 Steam Client Service - ok
16:17:02.0550 4752 [ 78216A10BF8B200890A88D8820F33F14 ] Stereo Service C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
16:17:02.0565 4752 Stereo Service - ok
16:17:02.0581 4752 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\Windows\system32\drivers\stexstor.sys
16:17:02.0581 4752 stexstor - ok
16:17:02.0612 4752 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc C:\Windows\System32\wiaservc.dll
16:17:02.0628 4752 stisvc - ok
16:17:02.0659 4752 [ 7785DC213270D2FC066538DAF94087E7 ] storflt C:\Windows\system32\drivers\vmstorfl.sys
16:17:02.0659 4752 storflt - ok
16:17:02.0659 4752 [ D34E4943D5AC096C8EDEEBFD80D76E23 ] storvsc C:\Windows\system32\drivers\storvsc.sys
16:17:02.0659 4752 storvsc - ok
16:17:02.0675 4752 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\Windows\system32\DRIVERS\swenum.sys
16:17:02.0675 4752 swenum - ok
16:17:02.0768 4752 [ F577910A133A592234EBAAD3F3AFA258 ] SwitchBoard C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
16:17:02.0768 4752 SwitchBoard - ok
16:17:02.0799 4752 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\Windows\System32\swprv.dll
16:17:02.0799 4752 swprv - ok
16:17:02.0815 4752 [ C3A39C4079305480972D29C44B868C78 ] Synth3dVsc C:\Windows\system32\drivers\synth3dvsc.sys
16:17:02.0815 4752 Synth3dVsc - ok
16:17:02.0846 4752 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain C:\Windows\system32\sysmain.dll
16:17:02.0877 4752 SysMain - ok
16:17:02.0893 4752 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\Windows\System32\TabSvc.dll
16:17:02.0893 4752 TabletInputService - ok
16:17:02.0909 4752 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv C:\Windows\System32\tapisrv.dll
16:17:02.0909 4752 TapiSrv - ok
16:17:02.0924 4752 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\Windows\System32\tbssvc.dll
16:17:02.0924 4752 TBS - ok
16:17:02.0971 4752 [ 9849EA3843A2ADBDD1497E97A85D8CAE ] Tcpip C:\Windows\system32\drivers\tcpip.sys
16:17:02.0971 4752 Tcpip - ok
16:17:03.0002 4752 [ 9849EA3843A2ADBDD1497E97A85D8CAE ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
16:17:03.0018 4752 TCPIP6 - ok
16:17:03.0033 4752 [ 1B16D0BD9841794A6E0CDE0CEF744ABC ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
16:17:03.0033 4752 tcpipreg - ok
16:17:03.0049 4752 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
16:17:03.0049 4752 TDPIPE - ok
16:17:03.0065 4752 [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
16:17:03.0065 4752 TDTCP - ok
16:17:03.0080 4752 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
16:17:03.0080 4752 tdx - ok
16:17:03.0096 4752 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
16:17:03.0096 4752 TermDD - ok
16:17:03.0111 4752 [ EF4469AB69EB15E5D3754E6AEAFBCD3D ] terminpt C:\Windows\system32\drivers\terminpt.sys
16:17:03.0127 4752 terminpt - ok
16:17:03.0143 4752 [ 2E648163254233755035B46DD7B89123 ] TermService C:\Windows\System32\termsrv.dll
16:17:03.0174 4752 TermService - ok
16:17:03.0189 4752 [ F0344071948D1A1FA732231785A0664C ] Themes C:\Windows\system32\themeservice.dll
16:17:03.0189 4752 Themes - ok
16:17:03.0205 4752 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\Windows\system32\mmcss.dll
16:17:03.0205 4752 THREADORDER - ok
16:17:03.0221 4752 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\Windows\System32\trkwks.dll
16:17:03.0221 4752 TrkWks - ok
16:17:03.0252 4752 [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
16:17:03.0252 4752 TrustedInstaller - ok
16:17:03.0267 4752 [ CE18B2CDFC837C99E5FAE9CA6CBA5D30 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
16:17:03.0267 4752 tssecsrv - ok
16:17:03.0283 4752 [ 17C6B51CBCCDED95B3CC14E22791F85E ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
16:17:03.0299 4752 TsUsbFlt - ok
16:17:03.0314 4752 [ AD64450A4ABE076F5CB34CC08EEACB07 ] TsUsbGD C:\Windows\system32\drivers\TsUsbGD.sys
16:17:03.0314 4752 TsUsbGD - ok
16:17:03.0330 4752 [ E1748D04AE40118B62BC18AC86032192 ] tsusbhub C:\Windows\system32\drivers\tsusbhub.sys
16:17:03.0330 4752 tsusbhub - ok
16:17:03.0345 4752 [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
16:17:03.0345 4752 tunnel - ok
16:17:03.0361 4752 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\Windows\system32\drivers\uagp35.sys
16:17:03.0361 4752 uagp35 - ok
16:17:03.0377 4752 [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
16:17:03.0377 4752 udfs - ok
16:17:03.0392 4752 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\Windows\system32\UI0Detect.exe
16:17:03.0392 4752 UI0Detect - ok
16:17:03.0392 4752 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
16:17:03.0392 4752 uliagpkx - ok
16:17:03.0423 4752 [ DC54A574663A895C8763AF0FA1FF7561 ] umbus C:\Windows\system32\DRIVERS\umbus.sys
16:17:03.0423 4752 umbus - ok
tialize success
Re: Zřejmě mám zavirované PC
16:17:03.0455 4752 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\Windows\system32\drivers\umpass.sys
16:17:03.0455 4752 UmPass - ok
16:17:03.0470 4752 [ A293DCD756D04D8492A750D03B9A297C ] UmRdpService C:\Windows\System32\umrdp.dll
16:17:03.0486 4752 UmRdpService - ok
16:17:03.0501 4752 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\Windows\System32\upnphost.dll
16:17:03.0517 4752 upnphost - ok
16:17:03.0533 4752 [ 6F1A3157A1C89435352CEB543CDB359C ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
16:17:03.0533 4752 usbccgp - ok
16:17:03.0548 4752 [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir C:\Windows\system32\drivers\usbcir.sys
16:17:03.0564 4752 usbcir - ok
16:17:03.0579 4752 [ C025055FE7B87701EB042095DF1A2D7B ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
16:17:03.0579 4752 usbehci - ok
16:17:03.0626 4752 [ 2C780746DC44A28FE67004DC58173F05 ] usbfilter C:\Windows\system32\DRIVERS\usbfilter.sys
16:17:03.0642 4752 usbfilter - ok
16:17:03.0657 4752 [ 287C6C9410B111B68B52CA298F7B8C24 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
16:17:03.0657 4752 usbhub - ok
16:17:03.0673 4752 [ 9840FC418B4CBD632D3D0A667A725C31 ] usbohci C:\Windows\system32\DRIVERS\usbohci.sys
16:17:03.0673 4752 usbohci - ok
16:17:03.0689 4752 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
16:17:03.0689 4752 usbprint - ok
16:17:03.0704 4752 [ AAA2513C8AED8B54B189FD0C6B1634C0 ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys
16:17:03.0704 4752 usbscan - ok
16:17:03.0720 4752 [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
16:17:03.0720 4752 USBSTOR - ok
16:17:03.0735 4752 [ 62069A34518BCF9C1FD9E74B3F6DB7CD ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
16:17:03.0735 4752 usbuhci - ok
16:17:03.0751 4752 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\Windows\System32\uxsms.dll
16:17:03.0751 4752 UxSms - ok
16:17:03.0751 4752 [ C118A82CD78818C29AB228366EBF81C3 ] VaultSvc C:\Windows\system32\lsass.exe
16:17:03.0751 4752 VaultSvc - ok
16:17:03.0767 4752 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
16:17:03.0767 4752 vdrvroot - ok
16:17:03.0782 4752 [ 8D6B481601D01A456E75C3210F1830BE ] vds C:\Windows\System32\vds.exe
16:17:03.0782 4752 vds - ok
16:17:03.0798 4752 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
16:17:03.0798 4752 vga - ok
16:17:03.0813 4752 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\Windows\System32\drivers\vga.sys
16:17:03.0813 4752 VgaSave - ok
16:17:03.0813 4752 VGPU - ok
16:17:03.0829 4752 [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
16:17:03.0829 4752 vhdmp - ok
16:17:03.0845 4752 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\Windows\system32\drivers\viaide.sys
16:17:03.0845 4752 viaide - ok
16:17:03.0860 4752 [ 86EA3E79AE350FEA5331A1303054005F ] vmbus C:\Windows\system32\drivers\vmbus.sys
16:17:03.0860 4752 vmbus - ok
16:17:03.0876 4752 [ 7DE90B48F210D29649380545DB45A187 ] VMBusHID C:\Windows\system32\drivers\VMBusHID.sys
16:17:03.0876 4752 VMBusHID - ok
16:17:03.0876 4752 [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr C:\Windows\system32\drivers\volmgr.sys
16:17:03.0876 4752 volmgr - ok
16:17:03.0891 4752 [ A255814907C89BE58B79EF2F189B843B ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
16:17:03.0891 4752 volmgrx - ok
16:17:03.0923 4752 [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap C:\Windows\system32\drivers\volsnap.sys
16:17:03.0923 4752 volsnap - ok
16:17:03.0938 4752 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
16:17:03.0938 4752 vsmraid - ok
16:17:03.0969 4752 [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS C:\Windows\system32\vssvc.exe
16:17:03.0985 4752 VSS - ok
16:17:04.0001 4752 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys
16:17:04.0001 4752 vwifibus - ok
16:17:04.0016 4752 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\Windows\system32\w32time.dll
16:17:04.0016 4752 W32Time - ok
16:17:04.0032 4752 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\Windows\system32\drivers\wacompen.sys
16:17:04.0032 4752 WacomPen - ok
16:17:04.0047 4752 [ 356AFD78A6ED4457169241AC3965230C ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
16:17:04.0047 4752 WANARP - ok
16:17:04.0047 4752 [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
16:17:04.0047 4752 Wanarpv6 - ok
16:17:04.0094 4752 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
16:17:04.0110 4752 WatAdminSvc - ok
16:17:04.0125 4752 [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine C:\Windows\system32\wbengine.exe
16:17:04.0141 4752 wbengine - ok
16:17:04.0141 4752 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
16:17:04.0141 4752 WbioSrvc - ok
16:17:04.0157 4752 [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc C:\Windows\System32\wcncsvc.dll
16:17:04.0157 4752 wcncsvc - ok
16:17:04.0157 4752 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
16:17:04.0157 4752 WcsPlugInService - ok
16:17:04.0172 4752 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\Windows\system32\drivers\wd.sys
16:17:04.0172 4752 Wd - ok
16:17:04.0203 4752 [ 442783E2CB0DA19873B7A63833FF4CB4 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
16:17:04.0219 4752 Wdf01000 - ok
16:17:04.0235 4752 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\Windows\system32\wdi.dll
16:17:04.0235 4752 WdiServiceHost - ok
16:17:04.0235 4752 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\Windows\system32\wdi.dll
16:17:04.0235 4752 WdiSystemHost - ok
16:17:04.0250 4752 [ 3DB6D04E1C64272F8B14EB8BC4616280 ] WebClient C:\Windows\System32\webclnt.dll
16:17:04.0250 4752 WebClient - ok
16:17:04.0250 4752 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\Windows\system32\wecsvc.dll
16:17:04.0266 4752 Wecsvc - ok
16:17:04.0266 4752 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\Windows\System32\wercplsupport.dll
16:17:04.0266 4752 wercplsupport - ok
16:17:04.0297 4752 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\Windows\System32\WerSvc.dll
16:17:04.0297 4752 WerSvc - ok
16:17:04.0297 4752 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
16:17:04.0297 4752 WfpLwf - ok
16:17:04.0313 4752 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\Windows\system32\drivers\wimmount.sys
16:17:04.0313 4752 WIMMount - ok
16:17:04.0313 4752 WinDefend - ok
16:17:04.0328 4752 WinHttpAutoProxySvc - ok
16:17:04.0359 4752 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
16:17:04.0359 4752 Winmgmt - ok
16:17:04.0422 4752 [ BCB1310604AA415C4508708975B3931E ] WinRM C:\Windows\system32\WsmSvc.dll
16:17:04.0469 4752 WinRM - ok
16:17:04.0515 4752 [ FE88B288356E7B47B74B13372ADD906D ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
16:17:04.0515 4752 WinUsb - ok
16:17:04.0531 4752 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\Windows\System32\wlansvc.dll
16:17:04.0531 4752 Wlansvc - ok
16:17:04.0547 4752 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\Windows\system32\DRIVERS\wmiacpi.sys
16:17:04.0547 4752 WmiAcpi - ok
16:17:04.0562 4752 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
16:17:04.0562 4752 wmiApSrv - ok
16:17:04.0562 4752 WMPNetworkSvc - ok
16:17:04.0578 4752 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\Windows\System32\wpcsvc.dll
16:17:04.0578 4752 WPCSvc - ok
16:17:04.0593 4752 [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
16:17:04.0593 4752 WPDBusEnum - ok
16:17:04.0609 4752 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
16:17:04.0609 4752 ws2ifsl - ok
16:17:04.0625 4752 [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc C:\Windows\System32\wscsvc.dll
16:17:04.0625 4752 wscsvc - ok
16:17:04.0625 4752 WSearch - ok
16:17:04.0687 4752 [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv C:\Windows\system32\wuaueng.dll
16:17:04.0718 4752 wuauserv - ok
16:17:04.0749 4752 [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
16:17:04.0749 4752 WudfPf - ok
16:17:04.0765 4752 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
16:17:04.0765 4752 WUDFRd - ok
16:17:04.0781 4752 [ B20F051B03A966392364C83F009F7D17 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
16:17:04.0796 4752 wudfsvc - ok
16:17:04.0827 4752 [ FE90B750AB808FB9DD8FBB428B5FF83B ] WwanSvc C:\Windows\System32\wwansvc.dll
16:17:04.0843 4752 WwanSvc - ok
16:17:04.0859 4752 ================ Scan global ===============================
16:17:04.0874 4752 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll
16:17:04.0905 4752 [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\system32\winsrv.dll
16:17:04.0905 4752 [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\system32\winsrv.dll
16:17:04.0921 4752 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll
16:17:04.0952 4752 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe
16:17:04.0952 4752 [Global] - ok
16:17:04.0952 4752 ================ Scan MBR ==================================
16:17:04.0968 4752 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
16:17:05.0311 4752 \Device\Harddisk0\DR0 - ok
16:17:05.0311 4752 ================ Scan VBR ==================================
16:17:05.0311 4752 [ B8AFA9A728DACCB1B3788372B049F74F ] \Device\Harddisk0\DR0\Partition1
16:17:05.0311 4752 \Device\Harddisk0\DR0\Partition1 - ok
16:17:05.0311 4752 [ E6F9444850967C362EF177844500D1F2 ] \Device\Harddisk0\DR0\Partition2
16:17:05.0311 4752 \Device\Harddisk0\DR0\Partition2 - ok
16:17:05.0327 4752 [ 0F45817D5050E7C05F23D56B53C1C7D1 ] \Device\Harddisk0\DR0\Partition3
16:17:05.0327 4752 \Device\Harddisk0\DR0\Partition3 - ok
16:17:05.0327 4752 ============================================================
16:17:05.0327 4752 Scan finished
16:17:05.0327 4752 ============================================================
16:17:05.0342 4380 Detected object count: 0
16:17:05.0342 4380 Actual detected object count: 0
16:17:15.0779 4760 Deinitialize success
Poslední část:
16:17:21.0656 3076 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
16:17:21.0844 3076 ============================================================
16:17:21.0844 3076 Current date / time: 2013/06/18 16:17:21.0844
16:17:21.0844 3076 SystemInfo:
16:17:21.0844 3076
16:17:21.0844 3076 OS Version: 6.1.7601 ServicePack: 1.0
16:17:21.0844 3076 Product type: Workstation
16:17:21.0844 3076 ComputerName: ORAJ-PC
16:17:21.0844 3076 UserName: Oraj
16:17:21.0844 3076 Windows directory: C:\Windows
16:17:21.0844 3076 System windows directory: C:\Windows
16:17:21.0844 3076 Running under WOW64
16:17:21.0844 3076 Processor architecture: Intel x64
16:17:21.0844 3076 Number of processors: 4
16:17:21.0844 3076 Page size: 0x1000
16:17:21.0844 3076 Boot type: Normal boot
16:17:21.0844 3076 ============================================================
16:17:22.0483 3076 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
16:17:22.0483 3076 ============================================================
16:17:22.0483 3076 \Device\Harddisk0\DR0:
16:17:22.0483 3076 MBR partitions:
16:17:22.0483 3076 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
16:17:22.0483 3076 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x1FD92000
16:17:22.0483 3076 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x1FDC4800, BlocksNum 0x54941800
16:17:22.0483 3076 ============================================================
16:17:22.0514 3076 C: <-> \Device\Harddisk0\DR0\Partition2
16:17:22.0561 3076 D: <-> \Device\Harddisk0\DR0\Partition3
16:17:22.0561 3076 ============================================================
16:17:22.0561 3076 Initialize success
16:17:22.0561 3076 ============================================================
16:17:23.0357 4664 ============================================================
16:17:23.0357 4664 Scan started
16:17:23.0357 4664 Mode: Manual;
16:17:23.0357 4664 ============================================================
16:17:23.0762 4664 ================ Scan system memory ========================
16:17:23.0762 4664 System memory - ok
16:17:23.0762 4664 ================ Scan services =============================
16:17:23.0872 4664 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
16:17:23.0872 4664 1394ohci - ok
16:17:23.0934 4664 [ 2D6434E957F7CFA0035C20890F77BBC6 ] a2acc C:\PROGRAM FILES (X86)\EMSISOFT ANTI-MALWARE\a2accx64.sys
16:17:23.0934 4664 a2acc - ok
16:17:24.0028 4664 [ E773B6AD4182A01986DB8BF0AEE32A15 ] a2AntiMalware C:\Program Files (x86)\Emsisoft Anti-Malware\a2service.exe
16:17:24.0043 4664 a2AntiMalware - ok
16:17:24.0059 4664 [ D27A8B7BB0E15DFBFC6B4E774EE17AD9 ] A2DDA C:\Program Files (x86)\Emsisoft Anti-Malware\a2ddax64.sys
16:17:24.0059 4664 A2DDA - ok
16:17:24.0074 4664 [ 3D55CE53128C81E06CD6B024C3B9FAC3 ] a2injectiondriver C:\Program Files (x86)\Emsisoft Anti-Malware\a2dix64.sys
16:17:24.0074 4664 a2injectiondriver - ok
16:17:24.0090 4664 [ 0932B29AA1B9372FFE6D3AF8BA2ABA3A ] a2util C:\Program Files (x86)\Emsisoft Anti-Malware\a2util64.sys
16:17:24.0090 4664 a2util - ok
16:17:24.0106 4664 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\Windows\system32\drivers\ACPI.sys
16:17:24.0106 4664 ACPI - ok
16:17:24.0121 4664 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
16:17:24.0121 4664 AcpiPmi - ok
16:17:24.0184 4664 [ B1EA9681502EE57F87DB71D726288A5B ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
16:17:24.0184 4664 AdobeARMservice - ok
16:17:24.0277 4664 [ 9915504F602D277EE47FD843A677FD15 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
16:17:24.0277 4664 AdobeFlashPlayerUpdateSvc - ok
16:17:24.0293 4664 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
16:17:24.0308 4664 adp94xx - ok
16:17:24.0324 4664 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\drivers\adpahci.sys
16:17:24.0324 4664 adpahci - ok
16:17:24.0340 4664 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\drivers\adpu320.sys
16:17:24.0340 4664 adpu320 - ok
16:17:24.0355 4664 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
16:17:24.0355 4664 AeLookupSvc - ok
16:17:24.0402 4664 [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD C:\Windows\system32\drivers\afd.sys
16:17:24.0402 4664 AFD - ok
16:17:24.0418 4664 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\drivers\agp440.sys
16:17:24.0418 4664 agp440 - ok
16:17:24.0433 4664 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe
16:17:24.0449 4664 ALG - ok
16:17:24.0449 4664 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\drivers\aliide.sys
16:17:24.0449 4664 aliide - ok
16:17:24.0464 4664 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\drivers\amdide.sys
16:17:24.0464 4664 amdide - ok
16:17:24.0480 4664 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\drivers\amdk8.sys
16:17:24.0480 4664 AmdK8 - ok
16:17:24.0511 4664 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
16:17:24.0511 4664 AmdPPM - ok
16:17:24.0527 4664 [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata C:\Windows\system32\drivers\amdsata.sys
16:17:24.0527 4664 amdsata - ok
16:17:24.0542 4664 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\drivers\amdsbs.sys
16:17:24.0542 4664 amdsbs - ok
16:17:24.0558 4664 [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata C:\Windows\system32\drivers\amdxata.sys
16:17:24.0558 4664 amdxata - ok
16:17:24.0589 4664 [ E4B0BB52FCCB391CD31BC5D617F1303C ] Amfilter C:\Windows\system32\DRIVERS\Amfltx64.sys
16:17:24.0589 4664 Amfilter - ok
16:17:24.0605 4664 [ DE7F69DE4F10EEB2B9F05B8CFE8BFDAC ] Amusbprt C:\Windows\system32\DRIVERS\Amusbx64.sys
16:17:24.0605 4664 Amusbprt - ok
16:17:24.0605 4664 [ 89A69C3F2F319B43379399547526D952 ] AppID C:\Windows\system32\drivers\appid.sys
16:17:24.0605 4664 AppID - ok
16:17:24.0605 4664 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll
16:17:24.0605 4664 AppIDSvc - ok
16:17:24.0636 4664 [ 9D2A2369AB4B08A4905FE72DB104498F ] Appinfo C:\Windows\System32\appinfo.dll
16:17:24.0652 4664 Appinfo - ok
16:17:24.0652 4664 [ 4ABA3E75A76195A3E38ED2766C962899 ] AppMgmt C:\Windows\System32\appmgmts.dll
16:17:24.0667 4664 AppMgmt - ok
16:17:24.0667 4664 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\drivers\arc.sys
16:17:24.0667 4664 arc - ok
16:17:24.0667 4664 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\drivers\arcsas.sys
16:17:24.0667 4664 arcsas - ok
16:17:24.0698 4664 [ 0BAEFD3F648C6E7AB52990DD9565E4E2 ] aswFsBlk C:\Windows\system32\drivers\aswFsBlk.sys
16:17:24.0698 4664 aswFsBlk - ok
16:17:24.0698 4664 [ FA562F34ED6633C66170B09182B4C049 ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
16:17:24.0698 4664 aswMonFlt - ok
16:17:24.0714 4664 [ 64E2BAB4096C13D2342BC4661C967E07 ] aswRdr C:\Windows\System32\Drivers\aswrdr2.sys
16:17:24.0714 4664 aswRdr - ok
16:17:24.0730 4664 [ 5573AA70993A2BB81525B1C704B88763 ] aswRvrt C:\Windows\system32\drivers\aswRvrt.sys
16:17:24.0730 4664 aswRvrt - ok
16:17:24.0761 4664 [ 10ED1CAB84AA65983C41A11F60294C9B ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
16:17:24.0761 4664 aswSnx - ok
16:17:24.0776 4664 [ 00E5253353717D3CA12A0F5A6F9991EC ] aswSP C:\Windows\system32\drivers\aswSP.sys
16:17:24.0776 4664 aswSP - ok
16:17:24.0792 4664 [ 29DD8E458A84171202AA4979364C30C0 ] aswTdi C:\Windows\system32\drivers\aswTdi.sys
16:17:24.0792 4664 aswTdi - ok
16:17:24.0808 4664 [ 6359B99C955DB9F40B653159A0EED261 ] aswVmm C:\Windows\system32\drivers\aswVmm.sys
16:17:24.0808 4664 aswVmm - ok
16:17:24.0823 4664 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
16:17:24.0823 4664 AsyncMac - ok
16:17:24.0823 4664 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\drivers\atapi.sys
16:17:24.0839 4664 atapi - ok
16:17:24.0854 4664 [ 7C5D273E29DCC5505469B299C6F29163 ] AtiPcie C:\Windows\system32\DRIVERS\AtiPcie.sys
16:17:24.0854 4664 AtiPcie - ok
16:17:24.0886 4664 [ 4AEF9EC86818375495FB78CA58DF4E18 ] atksgt C:\Windows\system32\DRIVERS\atksgt.sys
16:17:24.0886 4664 atksgt - ok
16:17:24.0917 4664 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
16:17:24.0932 4664 AudioEndpointBuilder - ok
16:17:24.0948 4664 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv C:\Windows\System32\Audiosrv.dll
16:17:24.0964 4664 AudioSrv - ok
16:17:25.0026 4664 [ 28D6701C710AD7BA3CB95E75F8F1A9AA ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
16:17:25.0026 4664 avast! Antivirus - ok
16:17:25.0026 4664 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\Windows\System32\AxInstSV.dll
16:17:25.0042 4664 AxInstSV - ok
16:17:25.0057 4664 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\drivers\bxvbda.sys
16:17:25.0057 4664 b06bdrv - ok
16:17:25.0057 4664 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys
16:17:25.0057 4664 b57nd60a - ok
16:17:25.0073 4664 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll
16:17:25.0073 4664 BDESVC - ok
16:17:25.0073 4664 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys
16:17:25.0073 4664 Beep - ok
16:17:25.0104 4664 [ 82974D6A2FD19445CC5171FC378668A4 ] BFE C:\Windows\System32\bfe.dll
16:17:25.0104 4664 BFE - ok
16:17:25.0135 4664 [ 1EA7969E3271CBC59E1730697DC74682 ] BITS C:\Windows\System32\qmgr.dll
16:17:25.0135 4664 BITS - ok
16:17:25.0151 4664 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
16:17:25.0151 4664 blbdrive - ok
16:17:25.0182 4664 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
16:17:25.0182 4664 bowser - ok
16:17:25.0182 4664 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\drivers\BrFiltLo.sys
16:17:25.0182 4664 BrFiltLo - ok
16:17:25.0198 4664 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\drivers\BrFiltUp.sys
16:17:25.0198 4664 BrFiltUp - ok
16:17:25.0229 4664 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser C:\Windows\System32\browser.dll
16:17:25.0229 4664 Browser - ok
16:17:25.0229 4664 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys
16:17:25.0229 4664 Brserid - ok
16:17:25.0229 4664 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
16:17:25.0229 4664 BrSerWdm - ok
16:17:25.0244 4664 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
16:17:25.0244 4664 BrUsbMdm - ok
16:17:25.0244 4664 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
16:17:25.0244 4664 BrUsbSer - ok
16:17:25.0244 4664 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
16:17:25.0244 4664 BTHMODEM - ok
16:17:25.0276 4664 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll
16:17:25.0276 4664 bthserv - ok
16:17:25.0291 4664 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
16:17:25.0291 4664 cdfs - ok
16:17:25.0338 4664 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
16:17:25.0354 4664 cdrom - ok
16:17:25.0385 4664 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\Windows\System32\certprop.dll
16:17:25.0385 4664 CertPropSvc - ok
16:17:25.0400 4664 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\drivers\circlass.sys
16:17:25.0400 4664 circlass - ok
16:17:25.0416 4664 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys
16:17:25.0416 4664 CLFS - ok
16:17:25.0478 4664 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
16:17:25.0478 4664 clr_optimization_v2.0.50727_32 - ok
16:17:25.0525 4664 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
16:17:25.0525 4664 clr_optimization_v2.0.50727_64 - ok
16:17:25.0588 4664 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
16:17:25.0588 4664 clr_optimization_v4.0.30319_32 - ok
16:17:25.0603 4664 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
16:17:25.0603 4664 clr_optimization_v4.0.30319_64 - ok
16:17:25.0619 4664 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\drivers\CmBatt.sys
16:17:25.0619 4664 CmBatt - ok
16:17:25.0634 4664 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\drivers\cmdide.sys
16:17:25.0634 4664 cmdide - ok
16:17:25.0681 4664 [ AAFCB52FE0037207FB6FBEA070D25EFE ] CNG C:\Windows\system32\Drivers\cng.sys
16:17:25.0681 4664 CNG - ok
16:17:25.0697 4664 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\drivers\compbatt.sys
16:17:25.0697 4664 Compbatt - ok
16:17:25.0728 4664 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys
16:17:25.0728 4664 CompositeBus - ok
16:17:25.0728 4664 COMSysApp - ok
16:17:25.0744 4664 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
16:17:25.0744 4664 crcdisk - ok
16:17:25.0775 4664 [ D8129C49798CBBFB2E4351D4B7B8EF9C ] CryptSvc C:\Windows\system32\cryptsvc.dll
16:17:25.0775 4664 CryptSvc - ok
16:17:25.0806 4664 [ 54DA3DFD29ED9F1619B6F53F3CE55E49 ] CSC C:\Windows\system32\drivers\csc.sys
16:17:25.0806 4664 CSC - ok
16:17:25.0822 4664 [ 3AB183AB4D2C79DCF459CD2C1266B043 ] CscService C:\Windows\System32\cscsvc.dll
16:17:25.0822 4664 CscService - ok
16:17:25.0837 4664 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\Windows\system32\rpcss.dll
16:17:25.0853 4664 DcomLaunch - ok
16:17:25.0853 4664 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll
16:17:25.0868 4664 defragsvc - ok
16:17:25.0868 4664 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
16:17:25.0868 4664 DfsC - ok
16:17:25.0884 4664 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\Windows\system32\dhcpcore.dll
16:17:25.0884 4664 Dhcp - ok
16:17:25.0900 4664 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys
16:17:25.0900 4664 discache - ok
16:17:25.0900 4664 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\drivers\disk.sys
16:17:25.0915 4664 Disk - ok
16:17:25.0931 4664 [ 5DB085A8A6600BE6401F2B24EECB5415 ] dmvsc C:\Windows\system32\drivers\dmvsc.sys
16:17:25.0931 4664 dmvsc - ok
16:17:25.0946 4664 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\Windows\System32\dnsrslvr.dll
16:17:25.0946 4664 Dnscache - ok
16:17:25.0962 4664 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\Windows\System32\dot3svc.dll
16:17:25.0978 4664 dot3svc - ok
16:17:25.0993 4664 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\Windows\system32\dps.dll
16:17:25.0993 4664 DPS - ok
16:17:26.0009 4664 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
16:17:26.0009 4664 drmkaud - ok
16:17:26.0024 4664 [ 46571ED73AE84469DCA53081D33CF3C8 ] dtsoftbus01 C:\Windows\system32\DRIVERS\dtsoftbus01.sys
16:17:26.0040 4664 dtsoftbus01 - ok
16:17:26.0071 4664 [ AF2E16242AA723F68F461B6EAE2EAD3D ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
16:17:26.0071 4664 DXGKrnl - ok
16:17:26.0087 4664 EagleX64 - ok
16:17:26.0087 4664 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll
16:17:26.0102 4664 EapHost - ok
16:17:26.0180 4664 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\drivers\evbda.sys
16:17:26.0212 4664 ebdrv - ok
16:17:26.0212 4664 [ C118A82CD78818C29AB228366EBF81C3 ] EFS C:\Windows\System32\lsass.exe
16:17:26.0212 4664 EFS - ok
16:17:26.0243 4664 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
16:17:26.0243 4664 ehRecvr - ok
16:17:26.0258 4664 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe
16:17:26.0258 4664 ehSched - ok
16:17:26.0274 4664 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\drivers\elxstor.sys
16:17:26.0274 4664 elxstor - ok
16:17:26.0321 4664 [ 017CF0AAA4574066DE88B69EC616A816 ] EpsonBidirectionalService C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSVC.exe
16:17:26.0321 4664 EpsonBidirectionalService - ok
16:17:26.0336 4664 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\drivers\errdev.sys
16:17:26.0336 4664 ErrDev - ok
16:17:26.0368 4664 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll
16:17:26.0368 4664 EventSystem - ok
16:17:26.0383 4664 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys
16:17:26.0383 4664 exfat - ok
16:17:26.0399 4664 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys
16:17:26.0399 4664 fastfat - ok
16:17:26.0430 4664 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\Windows\system32\fxssvc.exe
16:17:26.0446 4664 Fax - ok
16:17:26.0446 4664 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\drivers\fdc.sys
16:17:26.0461 4664 fdc - ok
16:17:26.0461 4664 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll
16:17:26.0461 4664 fdPHost - ok
16:17:26.0461 4664 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll
16:17:26.0461 4664 FDResPub - ok
16:17:26.0477 4664 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
16:17:26.0477 4664 FileInfo - ok
16:17:26.0492 4664 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
16:17:26.0492 4664 Filetrace - ok
16:17:26.0492 4664 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\drivers\flpydisk.sys
16:17:26.0492 4664 flpydisk - ok
16:17:26.0508 4664 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
16:17:26.0508 4664 FltMgr - ok
16:17:26.0555 4664 [ C4C183E6551084039EC862DA1C945E3D ] FontCache C:\Windows\system32\FntCache.dll
16:17:26.0586 4664 FontCache - ok
16:17:26.0617 4664 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
16:17:26.0617 4664 FontCache3.0.0.0 - ok
16:17:26.0617 4664 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
16:17:26.0617 4664 FsDepends - ok
16:17:26.0633 4664 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
16:17:26.0633 4664 Fs_Rec - ok
16:17:26.0664 4664 [ 8F6322049018354F45F05A2FD2D4E5E0 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
16:17:26.0664 4664 fvevol - ok
16:17:26.0680 4664 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
16:17:26.0680 4664 gagp30kx - ok
16:17:26.0680 4664 GMSIPCI - ok
16:17:26.0711 4664 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\Windows\System32\gpsvc.dll
16:17:26.0711 4664 gpsvc - ok
16:17:26.0773 4664 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
16:17:26.0773 4664 gupdate - ok
16:17:26.0773 4664 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
16:17:26.0789 4664 gupdatem - ok
16:17:26.0804 4664 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
16:17:26.0804 4664 hcw85cir - ok
16:17:26.0836 4664 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
16:17:26.0836 4664 HdAudAddService - ok
16:17:26.0836 4664 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
16:17:26.0836 4664 HDAudBus - ok
16:17:26.0836 4664 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\drivers\HidBatt.sys
16:17:26.0836 4664 HidBatt - ok
16:17:26.0851 4664 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\drivers\hidbth.sys
16:17:26.0851 4664 HidBth - ok
16:17:26.0867 4664 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\drivers\hidir.sys
16:17:26.0867 4664 HidIr - ok
16:17:26.0867 4664 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\system32\hidserv.dll
16:17:26.0882 4664 hidserv - ok
16:17:26.0898 4664 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
16:17:26.0898 4664 HidUsb - ok
16:17:26.0914 4664 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\Windows\system32\kmsvc.dll
16:17:26.0914 4664 hkmsvc - ok
16:17:26.0914 4664 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll
16:17:26.0914 4664 HomeGroupListener - ok
16:17:26.0945 4664 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
16:17:26.0945 4664 HomeGroupProvider - ok
16:17:26.0960 4664 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
16:17:26.0960 4664 HpSAMD - ok
16:17:26.0992 4664 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\Windows\system32\drivers\HTTP.sys
16:17:26.0992 4664 HTTP - ok
16:17:27.0007 4664 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
16:17:27.0007 4664 hwpolicy - ok
16:17:27.0023 4664 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
16:17:27.0023 4664 i8042prt - ok
16:17:27.0038 4664 [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
16:17:27.0038 4664 iaStorV - ok
16:17:27.0070 4664 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
16:17:27.0070 4664 idsvc - ok
16:17:27.0070 4664 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\drivers\iirsp.sys
16:17:27.0070 4664 iirsp - ok
16:17:27.0085 4664 [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT C:\Windows\System32\ikeext.dll
16:17:27.0085 4664 IKEEXT - ok
16:17:27.0101 4664 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\drivers\intelide.sys
16:17:27.0101 4664 intelide - ok
16:17:27.0116 4664 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\drivers\intelppm.sys
16:17:27.0116 4664 intelppm - ok
16:17:27.0116 4664 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll
16:17:27.0132 4664 IPBusEnum - ok
16:17:27.0132 4664 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
16:17:27.0132 4664 IpFilterDriver - ok
16:17:27.0148 4664 [ 08C2957BB30058E663720C5606885653 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
16:17:27.0163 4664 iphlpsvc - ok
16:17:27.0163 4664 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
16:17:27.0163 4664 IPMIDRV - ok
16:17:27.0179 4664 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
16:17:27.0179 4664 IPNAT - ok
16:17:27.0194 4664 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
16:17:27.0194 4664 IRENUM - ok
16:17:27.0210 4664 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\drivers\isapnp.sys
16:17:27.0210 4664 isapnp - ok
16:17:27.0226 4664 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
16:17:27.0226 4664 iScsiPrt - ok
16:17:27.0241 4664 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
16:17:27.0241 4664 kbdclass - ok
16:17:27.0257 4664 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
16:17:27.0257 4664 kbdhid - ok
16:17:27.0257 4664 [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso C:\Windows\system32\lsass.exe
16:17:27.0272 4664 KeyIso - ok
16:17:27.0288 4664 [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
16:17:27.0288 4664 KSecDD - ok
16:17:27.0304 4664 [ 7EFB9333E4ECCE6AE4AE9D777D9E553E ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
16:17:27.0304 4664 KSecPkg - ok
16:17:27.0304 4664 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
16:17:27.0304 4664 ksthunk - ok
16:17:27.0319 4664 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll
16:17:27.0335 4664 KtmRm - ok
16:17:27.0335 4664 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\Windows\system32\srvsvc.dll
16:17:27.0335 4664 LanmanServer - ok
16:17:27.0350 4664 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
16:17:27.0366 4664 LanmanWorkstation - ok
16:17:27.0397 4664 [ B658B7076B1ACAA5876524595630F183 ] lirsgt C:\Windows\system32\DRIVERS\lirsgt.sys
16:17:27.0397 4664 lirsgt - ok
16:17:27.0397 4664 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
16:17:27.0413 4664 lltdio - ok
16:17:27.0428 4664 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll
16:17:27.0428 4664 lltdsvc - ok
16:17:27.0428 4664 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll
16:17:27.0428 4664 lmhosts - ok
16:17:27.0444 4664 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
16:17:27.0444 4664 LSI_FC - ok
16:17:27.0475 4664 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
16:17:27.0475 4664 LSI_SAS - ok
16:17:27.0475 4664 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys
16:17:27.0491 4664 LSI_SAS2 - ok
16:17:27.0491 4664 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
16:17:27.0491 4664 LSI_SCSI - ok
16:17:27.0506 4664 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys
16:17:27.0506 4664 luafv - ok
16:17:27.0522 4664 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
16:17:27.0522 4664 Mcx2Svc - ok
16:17:27.0538 4664 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\drivers\megasas.sys
16:17:27.0538 4664 megasas - ok
16:17:27.0553 4664 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\drivers\MegaSR.sys
16:17:27.0553 4664 MegaSR - ok
16:17:27.0569 4664 Microsoft SharePoint Workspace Audit Service - ok
16:17:27.0569 4664 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll
16:17:27.0584 4664 MMCSS - ok
16:17:27.0584 4664 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys
16:17:27.0584 4664 Modem - ok
16:17:27.0600 4664 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys
16:17:27.0600 4664 monitor - ok
16:17:27.0616 4664 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
16:17:27.0616 4664 mouclass - ok
16:17:27.0631 4664 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
16:17:27.0631 4664 mouhid - ok
16:17:27.0647 4664 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
16:17:27.0647 4664 mountmgr - ok
16:17:27.0694 4664 [ 825BF0E46B4470A463AEB641480C5FCA ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
16:17:27.0694 4664 MozillaMaintenance - ok
16:17:27.0694 4664 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\Windows\system32\drivers\mpio.sys
16:17:27.0709 4664 mpio - ok
16:17:27.0725 4664 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
16:17:27.0725 4664 mpsdrv - ok
16:17:27.0740 4664 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc C:\Windows\system32\mpssvc.dll
16:17:27.0756 4664 MpsSvc - ok
16:17:27.0756 4664 [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
16:17:27.0756 4664 MRxDAV - ok
16:17:27.0772 4664 [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
16:17:27.0787 4664 mrxsmb - ok
16:17:27.0787 4664 [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
16:17:27.0787 4664 mrxsmb10 - ok
16:17:27.0803 4664 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
16:17:27.0803 4664 mrxsmb20 - ok
16:17:27.0818 4664 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\Windows\system32\drivers\msahci.sys
16:17:27.0818 4664 msahci - ok
16:17:27.0834 4664 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\Windows\system32\drivers\msdsm.sys
16:17:27.0834 4664 msdsm - ok
16:17:27.0850 4664 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe
16:17:27.0850 4664 MSDTC - ok
16:17:27.0865 4664 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys
16:17:27.0865 4664 Msfs - ok
16:17:27.0881 4664 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
16:17:27.0881 4664 mshidkmdf - ok
16:17:27.0881 4664 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
16:17:27.0881 4664 msisadrv - ok
16:17:27.0896 4664 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
16:17:27.0896 4664 MSiSCSI - ok
16:17:27.0912 4664 msiserver - ok
16:17:27.0912 4664 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
16:17:27.0912 4664 MSKSSRV - ok
16:17:27.0928 4664 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
16:17:27.0928 4664 MSPCLOCK - ok
16:17:27.0928 4664 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
16:17:27.0928 4664 MSPQM - ok
16:17:27.0943 4664 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
16:17:27.0943 4664 MsRPC - ok
16:17:27.0959 4664 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
16:17:27.0959 4664 mssmbios - ok
16:17:27.0959 4664 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
16:17:27.0959 4664 MSTEE - ok
16:17:27.0974 4664 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\drivers\MTConfig.sys
16:17:27.0974 4664 MTConfig - ok
16:17:27.0990 4664 [ 19B006B181E3875FD254F7B67ACF1E7C ] MTsensor C:\Windows\system32\DRIVERS\ASACPI.sys
16:17:27.0990 4664 MTsensor - ok
16:17:28.0006 4664 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys
16:17:28.0006 4664 Mup - ok
16:17:28.0037 4664 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\Windows\system32\qagentRT.dll
16:17:28.0037 4664 napagent - ok
16:17:28.0052 4664 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
16:17:28.0052 4664 NativeWifiP - ok
16:17:28.0099 4664 [ 760E38053BF56E501D562B70AD796B88 ] NDIS C:\Windows\system32\drivers\ndis.sys
16:17:28.0099 4664 NDIS - ok
16:17:28.0115 4664 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
16:17:28.0115 4664 NdisCap - ok
16:17:28.0115 4664 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
16:17:28.0115 4664 NdisTapi - ok
16:17:28.0130 4664 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
16:17:28.0130 4664 Ndisuio - ok
16:17:28.0146 4664 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
16:17:28.0146 4664 NdisWan - ok
16:17:28.0162 4664 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
16:17:28.0162 4664 NDProxy - ok
16:17:28.0240 4664 [ 7D2633295EB6FF2B938185874884059D ] Nero BackItUp Scheduler 4.0 C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
16:17:28.0255 4664 Nero BackItUp Scheduler 4.0 - ok
16:17:28.0271 4664 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
16:17:28.0286 4664 NetBIOS - ok
16:17:28.0302 4664 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
16:17:28.0318 4664 NetBT - ok
16:17:28.0333 4664 [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon C:\Windows\system32\lsass.exe
16:17:28.0333 4664 Netlogon - ok
16:17:28.0364 4664 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll
16:17:28.0364 4664 Netman - ok
16:17:28.0396 4664 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll
16:17:28.0396 4664 netprofm - ok
16:17:28.0411 4664 [ 3E5A36127E201DDF663176B66828FAFE ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
16:17:28.0411 4664 NetTcpPortSharing - ok
16:17:28.0442 4664 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
16:17:28.0442 4664 nfrd960 - ok
16:17:28.0474 4664 [ 8AD77806D336673F270DB31645267293 ] NlaSvc C:\Windows\System32\nlasvc.dll
16:17:28.0474 4664 NlaSvc - ok
16:17:28.0489 4664 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys
16:17:28.0489 4664 Npfs - ok
16:17:28.0505 4664 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll
16:17:28.0505 4664 nsi - ok
16:17:28.0520 4664 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
16:17:28.0520 4664 nsiproxy - ok
16:17:28.0583 4664 [ B98F8C6E31CD07B2E6F71F7F648E38C0 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
16:17:28.0598 4664 Ntfs - ok
16:17:28.0598 4664 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys
16:17:28.0598 4664 Null - ok
16:17:28.0645 4664 [ B4F53BCA4C688FF47F04FA90098F896E ] NVHDA C:\Windows\system32\drivers\nvhda64v.sys
16:17:28.0645 4664 NVHDA - ok
16:17:28.0864 4664 [ 0A2F27B5BCC45B64E152DD6AE0815198 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
16:17:28.0910 4664 nvlddmkm - ok
16:17:28.0926 4664 [ 0A92CB65770442ED0DC44834632F66AD ] nvraid C:\Windows\system32\drivers\nvraid.sys
16:17:28.0926 4664 nvraid - ok
16:17:28.0942 4664 [ DAB0E87525C10052BF65F06152F37E4A ] nvstor C:\Windows\system32\drivers\nvstor.sys
16:17:28.0942 4664 nvstor - ok
16:17:28.0988 4664 [ 574087EA9105F23FB522A4FDDD5292D9 ] nvsvc C:\Windows\system32\nvvsvc.exe
16:17:29.0004 4664 nvsvc - ok
16:17:29.0051 4664 [ ABA5A88740635D37A2B6CEB27DBC738A ] nvUpdatusService C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
16:17:29.0066 4664 nvUpdatusService - ok
16:17:29.0082 4664 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
16:17:29.0082 4664 nv_agp - ok
16:17:29.0082 4664 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
16:17:29.0082 4664 ohci1394 - ok
16:17:29.0144 4664 [ 4965B005492CBA7719E82B71E3245495 ] ose64 C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
16:17:29.0144 4664 ose64 - ok
16:17:29.0285 4664 [ 61BFFB5F57AD12F83AB64B7181829B34 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
16:17:29.0316 4664 osppsvc - ok
16:17:29.0332 4664 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
16:17:29.0332 4664 p2pimsvc - ok
16:17:29.0347 4664 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll
16:17:29.0347 4664 p2psvc - ok
16:17:29.0347 4664 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\drivers\parport.sys
16:17:29.0347 4664 Parport - ok
16:17:29.0363 4664 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\Windows\system32\drivers\partmgr.sys
16:17:29.0363 4664 partmgr - ok
16:17:29.0378 4664 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\Windows\System32\pcasvc.dll
16:17:29.0378 4664 PcaSvc - ok
16:17:29.0394 4664 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\Windows\system32\drivers\pci.sys
16:17:29.0394 4664 pci - ok
16:17:29.0410 4664 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\drivers\pciide.sys
16:17:29.0410 4664 pciide - ok
16:17:29.0410 4664 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
16:17:29.0410 4664 pcmcia - ok
16:17:29.0425 4664 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys
16:17:29.0425 4664 pcw - ok
16:17:29.0456 4664 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\Windows\system32\drivers\peauth.sys
16:17:29.0472 4664 PEAUTH - ok
16:17:29.0503 4664 [ B9B0A4299DD2D76A4243F75FD54DC680 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll
16:17:29.0519 4664 PeerDistSvc - ok
16:17:29.0566 4664 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe
16:17:29.0566 4664 PerfHost - ok
16:17:29.0581 4664 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\Windows\system32\pla.dll
16:17:29.0597 4664 pla - ok
16:17:29.0628 4664 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
16:17:29.0628 4664 PlugPlay - ok
16:17:29.0644 4664 PnkBstrA - ok
16:17:29.0644 4664 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
16:17:29.0644 4664 PNRPAutoReg - ok
16:17:29.0644 4664 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
16:17:29.0659 4664 PNRPsvc - ok
16:17:29.0675 4664 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
16:17:29.0675 4664 PolicyAgent - ok
16:17:29.0690 4664 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll
16:17:29.0690 4664 Power - ok
16:17:29.0706 4664 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
16:17:29.0706 4664 PptpMiniport - ok
16:17:29.0722 4664 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\drivers\processr.sys
16:17:29.0722 4664 Processor - ok
16:17:29.0737 4664 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc C:\Windows\system32\profsvc.dll
16:17:29.0737 4664 ProfSvc - ok
16:17:29.0753 4664 [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\Windows\system32\lsass.exe
16:17:29.0753 4664 ProtectedStorage - ok
16:17:29.0753 4664 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\Windows\system32\DRIVERS\pacer.sys
16:17:29.0753 4664 Psched - ok
16:17:29.0800 4664 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\drivers\ql2300.sys
16:17:29.0815 4664 ql2300 - ok
16:17:29.0846 4664 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
16:17:29.0846 4664 ql40xx - ok
16:17:29.0862 4664 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll
16:17:29.0862 4664 QWAVE - ok
16:17:29.0878 4664 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
16:17:29.0878 4664 QWAVEdrv - ok
16:17:29.0893 4664 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
16:17:29.0893 4664 RasAcd - ok
16:17:29.0909 4664 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
16:17:29.0909 4664 RasAgileVpn - ok
16:17:29.0909 4664 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll
16:17:29.0924 4664 RasAuto - ok
16:17:29.0924 4664 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
16:17:29.0924 4664 Rasl2tp - ok
16:17:29.0940 4664 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\Windows\System32\rasmans.dll
16:17:29.0940 4664 RasMan - ok
16:17:29.0956 4664 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
16:17:29.0956 4664 RasPppoe - ok
16:17:29.0956 4664 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
16:17:29.0956 4664 RasSstp - ok
16:17:29.0971 4664 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
16:17:29.0971 4664 rdbss - ok
16:17:29.0987 4664 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
16:17:29.0987 4664 rdpbus - ok
16:17:29.0987 4664 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
16:17:29.0987 4664 RDPCDD - ok
16:17:30.0018 4664 [ 1B6163C503398B23FF8B939C67747683 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys
16:17:30.0018 4664 RDPDR - ok
16:17:30.0034 4664 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
16:17:30.0034 4664 RDPENCDD - ok
16:17:30.0049 4664 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
16:17:30.0049 4664 RDPREFMP - ok
16:17:30.0080 4664 [ 313F68E1A3E6345A4F47A36B07062F34 ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
16:17:30.0080 4664 RdpVideoMiniport - ok
16:17:30.0096 4664 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
16:17:30.0096 4664 RDPWD - ok
16:17:30.0112 4664 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
16:17:30.0127 4664 rdyboost - ok
16:17:30.0143 4664 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\Windows\System32\mprdim.dll
16:17:30.0143 4664 RemoteAccess - ok
16:17:30.0143 4664 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll
16:17:30.0158 4664 RemoteRegistry - ok
16:17:30.0158 4664 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
16:17:30.0158 4664 RpcEptMapper - ok
16:17:30.0174 4664 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe
16:17:30.0174 4664 RpcLocator - ok
16:17:30.0190 4664 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\Windows\system32\rpcss.dll
16:17:30.0205 4664 RpcSs - ok
16:17:30.0205 4664 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
16:17:30.0205 4664 rspndr - ok
16:17:30.0236 4664 [ EE082E06A82FF630351D1E0EBBD3D8D0 ] RTL8167 C:\Windows\system32\DRIVERS\Rt64win7.sys
16:17:30.0252 4664 RTL8167 - ok
16:17:30.0252 4664 [ E60C0A09F997826C7627B244195AB581 ] s3cap C:\Windows\system32\drivers\vms3cap.sys
16:17:30.0252 4664 s3cap - ok
16:17:30.0268 4664 [ C118A82CD78818C29AB228366EBF81C3 ] SamSs C:\Windows\system32\lsass.exe
16:17:30.0268 4664 SamSs - ok
16:17:03.0455 4752 UmPass - ok
16:17:03.0470 4752 [ A293DCD756D04D8492A750D03B9A297C ] UmRdpService C:\Windows\System32\umrdp.dll
16:17:03.0486 4752 UmRdpService - ok
16:17:03.0501 4752 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\Windows\System32\upnphost.dll
16:17:03.0517 4752 upnphost - ok
16:17:03.0533 4752 [ 6F1A3157A1C89435352CEB543CDB359C ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
16:17:03.0533 4752 usbccgp - ok
16:17:03.0548 4752 [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir C:\Windows\system32\drivers\usbcir.sys
16:17:03.0564 4752 usbcir - ok
16:17:03.0579 4752 [ C025055FE7B87701EB042095DF1A2D7B ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
16:17:03.0579 4752 usbehci - ok
16:17:03.0626 4752 [ 2C780746DC44A28FE67004DC58173F05 ] usbfilter C:\Windows\system32\DRIVERS\usbfilter.sys
16:17:03.0642 4752 usbfilter - ok
16:17:03.0657 4752 [ 287C6C9410B111B68B52CA298F7B8C24 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
16:17:03.0657 4752 usbhub - ok
16:17:03.0673 4752 [ 9840FC418B4CBD632D3D0A667A725C31 ] usbohci C:\Windows\system32\DRIVERS\usbohci.sys
16:17:03.0673 4752 usbohci - ok
16:17:03.0689 4752 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
16:17:03.0689 4752 usbprint - ok
16:17:03.0704 4752 [ AAA2513C8AED8B54B189FD0C6B1634C0 ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys
16:17:03.0704 4752 usbscan - ok
16:17:03.0720 4752 [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
16:17:03.0720 4752 USBSTOR - ok
16:17:03.0735 4752 [ 62069A34518BCF9C1FD9E74B3F6DB7CD ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
16:17:03.0735 4752 usbuhci - ok
16:17:03.0751 4752 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\Windows\System32\uxsms.dll
16:17:03.0751 4752 UxSms - ok
16:17:03.0751 4752 [ C118A82CD78818C29AB228366EBF81C3 ] VaultSvc C:\Windows\system32\lsass.exe
16:17:03.0751 4752 VaultSvc - ok
16:17:03.0767 4752 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
16:17:03.0767 4752 vdrvroot - ok
16:17:03.0782 4752 [ 8D6B481601D01A456E75C3210F1830BE ] vds C:\Windows\System32\vds.exe
16:17:03.0782 4752 vds - ok
16:17:03.0798 4752 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
16:17:03.0798 4752 vga - ok
16:17:03.0813 4752 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\Windows\System32\drivers\vga.sys
16:17:03.0813 4752 VgaSave - ok
16:17:03.0813 4752 VGPU - ok
16:17:03.0829 4752 [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
16:17:03.0829 4752 vhdmp - ok
16:17:03.0845 4752 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\Windows\system32\drivers\viaide.sys
16:17:03.0845 4752 viaide - ok
16:17:03.0860 4752 [ 86EA3E79AE350FEA5331A1303054005F ] vmbus C:\Windows\system32\drivers\vmbus.sys
16:17:03.0860 4752 vmbus - ok
16:17:03.0876 4752 [ 7DE90B48F210D29649380545DB45A187 ] VMBusHID C:\Windows\system32\drivers\VMBusHID.sys
16:17:03.0876 4752 VMBusHID - ok
16:17:03.0876 4752 [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr C:\Windows\system32\drivers\volmgr.sys
16:17:03.0876 4752 volmgr - ok
16:17:03.0891 4752 [ A255814907C89BE58B79EF2F189B843B ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
16:17:03.0891 4752 volmgrx - ok
16:17:03.0923 4752 [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap C:\Windows\system32\drivers\volsnap.sys
16:17:03.0923 4752 volsnap - ok
16:17:03.0938 4752 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
16:17:03.0938 4752 vsmraid - ok
16:17:03.0969 4752 [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS C:\Windows\system32\vssvc.exe
16:17:03.0985 4752 VSS - ok
16:17:04.0001 4752 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys
16:17:04.0001 4752 vwifibus - ok
16:17:04.0016 4752 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\Windows\system32\w32time.dll
16:17:04.0016 4752 W32Time - ok
16:17:04.0032 4752 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\Windows\system32\drivers\wacompen.sys
16:17:04.0032 4752 WacomPen - ok
16:17:04.0047 4752 [ 356AFD78A6ED4457169241AC3965230C ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
16:17:04.0047 4752 WANARP - ok
16:17:04.0047 4752 [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
16:17:04.0047 4752 Wanarpv6 - ok
16:17:04.0094 4752 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
16:17:04.0110 4752 WatAdminSvc - ok
16:17:04.0125 4752 [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine C:\Windows\system32\wbengine.exe
16:17:04.0141 4752 wbengine - ok
16:17:04.0141 4752 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
16:17:04.0141 4752 WbioSrvc - ok
16:17:04.0157 4752 [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc C:\Windows\System32\wcncsvc.dll
16:17:04.0157 4752 wcncsvc - ok
16:17:04.0157 4752 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
16:17:04.0157 4752 WcsPlugInService - ok
16:17:04.0172 4752 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\Windows\system32\drivers\wd.sys
16:17:04.0172 4752 Wd - ok
16:17:04.0203 4752 [ 442783E2CB0DA19873B7A63833FF4CB4 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
16:17:04.0219 4752 Wdf01000 - ok
16:17:04.0235 4752 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\Windows\system32\wdi.dll
16:17:04.0235 4752 WdiServiceHost - ok
16:17:04.0235 4752 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\Windows\system32\wdi.dll
16:17:04.0235 4752 WdiSystemHost - ok
16:17:04.0250 4752 [ 3DB6D04E1C64272F8B14EB8BC4616280 ] WebClient C:\Windows\System32\webclnt.dll
16:17:04.0250 4752 WebClient - ok
16:17:04.0250 4752 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\Windows\system32\wecsvc.dll
16:17:04.0266 4752 Wecsvc - ok
16:17:04.0266 4752 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\Windows\System32\wercplsupport.dll
16:17:04.0266 4752 wercplsupport - ok
16:17:04.0297 4752 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\Windows\System32\WerSvc.dll
16:17:04.0297 4752 WerSvc - ok
16:17:04.0297 4752 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
16:17:04.0297 4752 WfpLwf - ok
16:17:04.0313 4752 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\Windows\system32\drivers\wimmount.sys
16:17:04.0313 4752 WIMMount - ok
16:17:04.0313 4752 WinDefend - ok
16:17:04.0328 4752 WinHttpAutoProxySvc - ok
16:17:04.0359 4752 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
16:17:04.0359 4752 Winmgmt - ok
16:17:04.0422 4752 [ BCB1310604AA415C4508708975B3931E ] WinRM C:\Windows\system32\WsmSvc.dll
16:17:04.0469 4752 WinRM - ok
16:17:04.0515 4752 [ FE88B288356E7B47B74B13372ADD906D ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
16:17:04.0515 4752 WinUsb - ok
16:17:04.0531 4752 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\Windows\System32\wlansvc.dll
16:17:04.0531 4752 Wlansvc - ok
16:17:04.0547 4752 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\Windows\system32\DRIVERS\wmiacpi.sys
16:17:04.0547 4752 WmiAcpi - ok
16:17:04.0562 4752 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
16:17:04.0562 4752 wmiApSrv - ok
16:17:04.0562 4752 WMPNetworkSvc - ok
16:17:04.0578 4752 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\Windows\System32\wpcsvc.dll
16:17:04.0578 4752 WPCSvc - ok
16:17:04.0593 4752 [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
16:17:04.0593 4752 WPDBusEnum - ok
16:17:04.0609 4752 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
16:17:04.0609 4752 ws2ifsl - ok
16:17:04.0625 4752 [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc C:\Windows\System32\wscsvc.dll
16:17:04.0625 4752 wscsvc - ok
16:17:04.0625 4752 WSearch - ok
16:17:04.0687 4752 [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv C:\Windows\system32\wuaueng.dll
16:17:04.0718 4752 wuauserv - ok
16:17:04.0749 4752 [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
16:17:04.0749 4752 WudfPf - ok
16:17:04.0765 4752 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
16:17:04.0765 4752 WUDFRd - ok
16:17:04.0781 4752 [ B20F051B03A966392364C83F009F7D17 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
16:17:04.0796 4752 wudfsvc - ok
16:17:04.0827 4752 [ FE90B750AB808FB9DD8FBB428B5FF83B ] WwanSvc C:\Windows\System32\wwansvc.dll
16:17:04.0843 4752 WwanSvc - ok
16:17:04.0859 4752 ================ Scan global ===============================
16:17:04.0874 4752 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll
16:17:04.0905 4752 [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\system32\winsrv.dll
16:17:04.0905 4752 [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\system32\winsrv.dll
16:17:04.0921 4752 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll
16:17:04.0952 4752 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe
16:17:04.0952 4752 [Global] - ok
16:17:04.0952 4752 ================ Scan MBR ==================================
16:17:04.0968 4752 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
16:17:05.0311 4752 \Device\Harddisk0\DR0 - ok
16:17:05.0311 4752 ================ Scan VBR ==================================
16:17:05.0311 4752 [ B8AFA9A728DACCB1B3788372B049F74F ] \Device\Harddisk0\DR0\Partition1
16:17:05.0311 4752 \Device\Harddisk0\DR0\Partition1 - ok
16:17:05.0311 4752 [ E6F9444850967C362EF177844500D1F2 ] \Device\Harddisk0\DR0\Partition2
16:17:05.0311 4752 \Device\Harddisk0\DR0\Partition2 - ok
16:17:05.0327 4752 [ 0F45817D5050E7C05F23D56B53C1C7D1 ] \Device\Harddisk0\DR0\Partition3
16:17:05.0327 4752 \Device\Harddisk0\DR0\Partition3 - ok
16:17:05.0327 4752 ============================================================
16:17:05.0327 4752 Scan finished
16:17:05.0327 4752 ============================================================
16:17:05.0342 4380 Detected object count: 0
16:17:05.0342 4380 Actual detected object count: 0
16:17:15.0779 4760 Deinitialize success
Poslední část:
16:17:21.0656 3076 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
16:17:21.0844 3076 ============================================================
16:17:21.0844 3076 Current date / time: 2013/06/18 16:17:21.0844
16:17:21.0844 3076 SystemInfo:
16:17:21.0844 3076
16:17:21.0844 3076 OS Version: 6.1.7601 ServicePack: 1.0
16:17:21.0844 3076 Product type: Workstation
16:17:21.0844 3076 ComputerName: ORAJ-PC
16:17:21.0844 3076 UserName: Oraj
16:17:21.0844 3076 Windows directory: C:\Windows
16:17:21.0844 3076 System windows directory: C:\Windows
16:17:21.0844 3076 Running under WOW64
16:17:21.0844 3076 Processor architecture: Intel x64
16:17:21.0844 3076 Number of processors: 4
16:17:21.0844 3076 Page size: 0x1000
16:17:21.0844 3076 Boot type: Normal boot
16:17:21.0844 3076 ============================================================
16:17:22.0483 3076 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
16:17:22.0483 3076 ============================================================
16:17:22.0483 3076 \Device\Harddisk0\DR0:
16:17:22.0483 3076 MBR partitions:
16:17:22.0483 3076 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
16:17:22.0483 3076 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x1FD92000
16:17:22.0483 3076 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x1FDC4800, BlocksNum 0x54941800
16:17:22.0483 3076 ============================================================
16:17:22.0514 3076 C: <-> \Device\Harddisk0\DR0\Partition2
16:17:22.0561 3076 D: <-> \Device\Harddisk0\DR0\Partition3
16:17:22.0561 3076 ============================================================
16:17:22.0561 3076 Initialize success
16:17:22.0561 3076 ============================================================
16:17:23.0357 4664 ============================================================
16:17:23.0357 4664 Scan started
16:17:23.0357 4664 Mode: Manual;
16:17:23.0357 4664 ============================================================
16:17:23.0762 4664 ================ Scan system memory ========================
16:17:23.0762 4664 System memory - ok
16:17:23.0762 4664 ================ Scan services =============================
16:17:23.0872 4664 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
16:17:23.0872 4664 1394ohci - ok
16:17:23.0934 4664 [ 2D6434E957F7CFA0035C20890F77BBC6 ] a2acc C:\PROGRAM FILES (X86)\EMSISOFT ANTI-MALWARE\a2accx64.sys
16:17:23.0934 4664 a2acc - ok
16:17:24.0028 4664 [ E773B6AD4182A01986DB8BF0AEE32A15 ] a2AntiMalware C:\Program Files (x86)\Emsisoft Anti-Malware\a2service.exe
16:17:24.0043 4664 a2AntiMalware - ok
16:17:24.0059 4664 [ D27A8B7BB0E15DFBFC6B4E774EE17AD9 ] A2DDA C:\Program Files (x86)\Emsisoft Anti-Malware\a2ddax64.sys
16:17:24.0059 4664 A2DDA - ok
16:17:24.0074 4664 [ 3D55CE53128C81E06CD6B024C3B9FAC3 ] a2injectiondriver C:\Program Files (x86)\Emsisoft Anti-Malware\a2dix64.sys
16:17:24.0074 4664 a2injectiondriver - ok
16:17:24.0090 4664 [ 0932B29AA1B9372FFE6D3AF8BA2ABA3A ] a2util C:\Program Files (x86)\Emsisoft Anti-Malware\a2util64.sys
16:17:24.0090 4664 a2util - ok
16:17:24.0106 4664 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\Windows\system32\drivers\ACPI.sys
16:17:24.0106 4664 ACPI - ok
16:17:24.0121 4664 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
16:17:24.0121 4664 AcpiPmi - ok
16:17:24.0184 4664 [ B1EA9681502EE57F87DB71D726288A5B ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
16:17:24.0184 4664 AdobeARMservice - ok
16:17:24.0277 4664 [ 9915504F602D277EE47FD843A677FD15 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
16:17:24.0277 4664 AdobeFlashPlayerUpdateSvc - ok
16:17:24.0293 4664 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
16:17:24.0308 4664 adp94xx - ok
16:17:24.0324 4664 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\drivers\adpahci.sys
16:17:24.0324 4664 adpahci - ok
16:17:24.0340 4664 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\drivers\adpu320.sys
16:17:24.0340 4664 adpu320 - ok
16:17:24.0355 4664 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
16:17:24.0355 4664 AeLookupSvc - ok
16:17:24.0402 4664 [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD C:\Windows\system32\drivers\afd.sys
16:17:24.0402 4664 AFD - ok
16:17:24.0418 4664 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\drivers\agp440.sys
16:17:24.0418 4664 agp440 - ok
16:17:24.0433 4664 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe
16:17:24.0449 4664 ALG - ok
16:17:24.0449 4664 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\drivers\aliide.sys
16:17:24.0449 4664 aliide - ok
16:17:24.0464 4664 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\drivers\amdide.sys
16:17:24.0464 4664 amdide - ok
16:17:24.0480 4664 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\drivers\amdk8.sys
16:17:24.0480 4664 AmdK8 - ok
16:17:24.0511 4664 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
16:17:24.0511 4664 AmdPPM - ok
16:17:24.0527 4664 [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata C:\Windows\system32\drivers\amdsata.sys
16:17:24.0527 4664 amdsata - ok
16:17:24.0542 4664 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\drivers\amdsbs.sys
16:17:24.0542 4664 amdsbs - ok
16:17:24.0558 4664 [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata C:\Windows\system32\drivers\amdxata.sys
16:17:24.0558 4664 amdxata - ok
16:17:24.0589 4664 [ E4B0BB52FCCB391CD31BC5D617F1303C ] Amfilter C:\Windows\system32\DRIVERS\Amfltx64.sys
16:17:24.0589 4664 Amfilter - ok
16:17:24.0605 4664 [ DE7F69DE4F10EEB2B9F05B8CFE8BFDAC ] Amusbprt C:\Windows\system32\DRIVERS\Amusbx64.sys
16:17:24.0605 4664 Amusbprt - ok
16:17:24.0605 4664 [ 89A69C3F2F319B43379399547526D952 ] AppID C:\Windows\system32\drivers\appid.sys
16:17:24.0605 4664 AppID - ok
16:17:24.0605 4664 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll
16:17:24.0605 4664 AppIDSvc - ok
16:17:24.0636 4664 [ 9D2A2369AB4B08A4905FE72DB104498F ] Appinfo C:\Windows\System32\appinfo.dll
16:17:24.0652 4664 Appinfo - ok
16:17:24.0652 4664 [ 4ABA3E75A76195A3E38ED2766C962899 ] AppMgmt C:\Windows\System32\appmgmts.dll
16:17:24.0667 4664 AppMgmt - ok
16:17:24.0667 4664 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\drivers\arc.sys
16:17:24.0667 4664 arc - ok
16:17:24.0667 4664 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\drivers\arcsas.sys
16:17:24.0667 4664 arcsas - ok
16:17:24.0698 4664 [ 0BAEFD3F648C6E7AB52990DD9565E4E2 ] aswFsBlk C:\Windows\system32\drivers\aswFsBlk.sys
16:17:24.0698 4664 aswFsBlk - ok
16:17:24.0698 4664 [ FA562F34ED6633C66170B09182B4C049 ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
16:17:24.0698 4664 aswMonFlt - ok
16:17:24.0714 4664 [ 64E2BAB4096C13D2342BC4661C967E07 ] aswRdr C:\Windows\System32\Drivers\aswrdr2.sys
16:17:24.0714 4664 aswRdr - ok
16:17:24.0730 4664 [ 5573AA70993A2BB81525B1C704B88763 ] aswRvrt C:\Windows\system32\drivers\aswRvrt.sys
16:17:24.0730 4664 aswRvrt - ok
16:17:24.0761 4664 [ 10ED1CAB84AA65983C41A11F60294C9B ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
16:17:24.0761 4664 aswSnx - ok
16:17:24.0776 4664 [ 00E5253353717D3CA12A0F5A6F9991EC ] aswSP C:\Windows\system32\drivers\aswSP.sys
16:17:24.0776 4664 aswSP - ok
16:17:24.0792 4664 [ 29DD8E458A84171202AA4979364C30C0 ] aswTdi C:\Windows\system32\drivers\aswTdi.sys
16:17:24.0792 4664 aswTdi - ok
16:17:24.0808 4664 [ 6359B99C955DB9F40B653159A0EED261 ] aswVmm C:\Windows\system32\drivers\aswVmm.sys
16:17:24.0808 4664 aswVmm - ok
16:17:24.0823 4664 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
16:17:24.0823 4664 AsyncMac - ok
16:17:24.0823 4664 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\drivers\atapi.sys
16:17:24.0839 4664 atapi - ok
16:17:24.0854 4664 [ 7C5D273E29DCC5505469B299C6F29163 ] AtiPcie C:\Windows\system32\DRIVERS\AtiPcie.sys
16:17:24.0854 4664 AtiPcie - ok
16:17:24.0886 4664 [ 4AEF9EC86818375495FB78CA58DF4E18 ] atksgt C:\Windows\system32\DRIVERS\atksgt.sys
16:17:24.0886 4664 atksgt - ok
16:17:24.0917 4664 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
16:17:24.0932 4664 AudioEndpointBuilder - ok
16:17:24.0948 4664 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv C:\Windows\System32\Audiosrv.dll
16:17:24.0964 4664 AudioSrv - ok
16:17:25.0026 4664 [ 28D6701C710AD7BA3CB95E75F8F1A9AA ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
16:17:25.0026 4664 avast! Antivirus - ok
16:17:25.0026 4664 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\Windows\System32\AxInstSV.dll
16:17:25.0042 4664 AxInstSV - ok
16:17:25.0057 4664 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\drivers\bxvbda.sys
16:17:25.0057 4664 b06bdrv - ok
16:17:25.0057 4664 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys
16:17:25.0057 4664 b57nd60a - ok
16:17:25.0073 4664 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll
16:17:25.0073 4664 BDESVC - ok
16:17:25.0073 4664 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys
16:17:25.0073 4664 Beep - ok
16:17:25.0104 4664 [ 82974D6A2FD19445CC5171FC378668A4 ] BFE C:\Windows\System32\bfe.dll
16:17:25.0104 4664 BFE - ok
16:17:25.0135 4664 [ 1EA7969E3271CBC59E1730697DC74682 ] BITS C:\Windows\System32\qmgr.dll
16:17:25.0135 4664 BITS - ok
16:17:25.0151 4664 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
16:17:25.0151 4664 blbdrive - ok
16:17:25.0182 4664 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
16:17:25.0182 4664 bowser - ok
16:17:25.0182 4664 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\drivers\BrFiltLo.sys
16:17:25.0182 4664 BrFiltLo - ok
16:17:25.0198 4664 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\drivers\BrFiltUp.sys
16:17:25.0198 4664 BrFiltUp - ok
16:17:25.0229 4664 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser C:\Windows\System32\browser.dll
16:17:25.0229 4664 Browser - ok
16:17:25.0229 4664 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys
16:17:25.0229 4664 Brserid - ok
16:17:25.0229 4664 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
16:17:25.0229 4664 BrSerWdm - ok
16:17:25.0244 4664 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
16:17:25.0244 4664 BrUsbMdm - ok
16:17:25.0244 4664 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
16:17:25.0244 4664 BrUsbSer - ok
16:17:25.0244 4664 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
16:17:25.0244 4664 BTHMODEM - ok
16:17:25.0276 4664 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll
16:17:25.0276 4664 bthserv - ok
16:17:25.0291 4664 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
16:17:25.0291 4664 cdfs - ok
16:17:25.0338 4664 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
16:17:25.0354 4664 cdrom - ok
16:17:25.0385 4664 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\Windows\System32\certprop.dll
16:17:25.0385 4664 CertPropSvc - ok
16:17:25.0400 4664 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\drivers\circlass.sys
16:17:25.0400 4664 circlass - ok
16:17:25.0416 4664 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys
16:17:25.0416 4664 CLFS - ok
16:17:25.0478 4664 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
16:17:25.0478 4664 clr_optimization_v2.0.50727_32 - ok
16:17:25.0525 4664 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
16:17:25.0525 4664 clr_optimization_v2.0.50727_64 - ok
16:17:25.0588 4664 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
16:17:25.0588 4664 clr_optimization_v4.0.30319_32 - ok
16:17:25.0603 4664 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
16:17:25.0603 4664 clr_optimization_v4.0.30319_64 - ok
16:17:25.0619 4664 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\drivers\CmBatt.sys
16:17:25.0619 4664 CmBatt - ok
16:17:25.0634 4664 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\drivers\cmdide.sys
16:17:25.0634 4664 cmdide - ok
16:17:25.0681 4664 [ AAFCB52FE0037207FB6FBEA070D25EFE ] CNG C:\Windows\system32\Drivers\cng.sys
16:17:25.0681 4664 CNG - ok
16:17:25.0697 4664 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\drivers\compbatt.sys
16:17:25.0697 4664 Compbatt - ok
16:17:25.0728 4664 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys
16:17:25.0728 4664 CompositeBus - ok
16:17:25.0728 4664 COMSysApp - ok
16:17:25.0744 4664 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
16:17:25.0744 4664 crcdisk - ok
16:17:25.0775 4664 [ D8129C49798CBBFB2E4351D4B7B8EF9C ] CryptSvc C:\Windows\system32\cryptsvc.dll
16:17:25.0775 4664 CryptSvc - ok
16:17:25.0806 4664 [ 54DA3DFD29ED9F1619B6F53F3CE55E49 ] CSC C:\Windows\system32\drivers\csc.sys
16:17:25.0806 4664 CSC - ok
16:17:25.0822 4664 [ 3AB183AB4D2C79DCF459CD2C1266B043 ] CscService C:\Windows\System32\cscsvc.dll
16:17:25.0822 4664 CscService - ok
16:17:25.0837 4664 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\Windows\system32\rpcss.dll
16:17:25.0853 4664 DcomLaunch - ok
16:17:25.0853 4664 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll
16:17:25.0868 4664 defragsvc - ok
16:17:25.0868 4664 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
16:17:25.0868 4664 DfsC - ok
16:17:25.0884 4664 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\Windows\system32\dhcpcore.dll
16:17:25.0884 4664 Dhcp - ok
16:17:25.0900 4664 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys
16:17:25.0900 4664 discache - ok
16:17:25.0900 4664 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\drivers\disk.sys
16:17:25.0915 4664 Disk - ok
16:17:25.0931 4664 [ 5DB085A8A6600BE6401F2B24EECB5415 ] dmvsc C:\Windows\system32\drivers\dmvsc.sys
16:17:25.0931 4664 dmvsc - ok
16:17:25.0946 4664 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\Windows\System32\dnsrslvr.dll
16:17:25.0946 4664 Dnscache - ok
16:17:25.0962 4664 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\Windows\System32\dot3svc.dll
16:17:25.0978 4664 dot3svc - ok
16:17:25.0993 4664 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\Windows\system32\dps.dll
16:17:25.0993 4664 DPS - ok
16:17:26.0009 4664 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
16:17:26.0009 4664 drmkaud - ok
16:17:26.0024 4664 [ 46571ED73AE84469DCA53081D33CF3C8 ] dtsoftbus01 C:\Windows\system32\DRIVERS\dtsoftbus01.sys
16:17:26.0040 4664 dtsoftbus01 - ok
16:17:26.0071 4664 [ AF2E16242AA723F68F461B6EAE2EAD3D ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
16:17:26.0071 4664 DXGKrnl - ok
16:17:26.0087 4664 EagleX64 - ok
16:17:26.0087 4664 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll
16:17:26.0102 4664 EapHost - ok
16:17:26.0180 4664 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\drivers\evbda.sys
16:17:26.0212 4664 ebdrv - ok
16:17:26.0212 4664 [ C118A82CD78818C29AB228366EBF81C3 ] EFS C:\Windows\System32\lsass.exe
16:17:26.0212 4664 EFS - ok
16:17:26.0243 4664 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
16:17:26.0243 4664 ehRecvr - ok
16:17:26.0258 4664 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe
16:17:26.0258 4664 ehSched - ok
16:17:26.0274 4664 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\drivers\elxstor.sys
16:17:26.0274 4664 elxstor - ok
16:17:26.0321 4664 [ 017CF0AAA4574066DE88B69EC616A816 ] EpsonBidirectionalService C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSVC.exe
16:17:26.0321 4664 EpsonBidirectionalService - ok
16:17:26.0336 4664 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\drivers\errdev.sys
16:17:26.0336 4664 ErrDev - ok
16:17:26.0368 4664 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll
16:17:26.0368 4664 EventSystem - ok
16:17:26.0383 4664 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys
16:17:26.0383 4664 exfat - ok
16:17:26.0399 4664 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys
16:17:26.0399 4664 fastfat - ok
16:17:26.0430 4664 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\Windows\system32\fxssvc.exe
16:17:26.0446 4664 Fax - ok
16:17:26.0446 4664 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\drivers\fdc.sys
16:17:26.0461 4664 fdc - ok
16:17:26.0461 4664 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll
16:17:26.0461 4664 fdPHost - ok
16:17:26.0461 4664 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll
16:17:26.0461 4664 FDResPub - ok
16:17:26.0477 4664 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
16:17:26.0477 4664 FileInfo - ok
16:17:26.0492 4664 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
16:17:26.0492 4664 Filetrace - ok
16:17:26.0492 4664 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\drivers\flpydisk.sys
16:17:26.0492 4664 flpydisk - ok
16:17:26.0508 4664 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
16:17:26.0508 4664 FltMgr - ok
16:17:26.0555 4664 [ C4C183E6551084039EC862DA1C945E3D ] FontCache C:\Windows\system32\FntCache.dll
16:17:26.0586 4664 FontCache - ok
16:17:26.0617 4664 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
16:17:26.0617 4664 FontCache3.0.0.0 - ok
16:17:26.0617 4664 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
16:17:26.0617 4664 FsDepends - ok
16:17:26.0633 4664 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
16:17:26.0633 4664 Fs_Rec - ok
16:17:26.0664 4664 [ 8F6322049018354F45F05A2FD2D4E5E0 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
16:17:26.0664 4664 fvevol - ok
16:17:26.0680 4664 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
16:17:26.0680 4664 gagp30kx - ok
16:17:26.0680 4664 GMSIPCI - ok
16:17:26.0711 4664 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\Windows\System32\gpsvc.dll
16:17:26.0711 4664 gpsvc - ok
16:17:26.0773 4664 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
16:17:26.0773 4664 gupdate - ok
16:17:26.0773 4664 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
16:17:26.0789 4664 gupdatem - ok
16:17:26.0804 4664 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
16:17:26.0804 4664 hcw85cir - ok
16:17:26.0836 4664 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
16:17:26.0836 4664 HdAudAddService - ok
16:17:26.0836 4664 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
16:17:26.0836 4664 HDAudBus - ok
16:17:26.0836 4664 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\drivers\HidBatt.sys
16:17:26.0836 4664 HidBatt - ok
16:17:26.0851 4664 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\drivers\hidbth.sys
16:17:26.0851 4664 HidBth - ok
16:17:26.0867 4664 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\drivers\hidir.sys
16:17:26.0867 4664 HidIr - ok
16:17:26.0867 4664 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\system32\hidserv.dll
16:17:26.0882 4664 hidserv - ok
16:17:26.0898 4664 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
16:17:26.0898 4664 HidUsb - ok
16:17:26.0914 4664 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\Windows\system32\kmsvc.dll
16:17:26.0914 4664 hkmsvc - ok
16:17:26.0914 4664 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll
16:17:26.0914 4664 HomeGroupListener - ok
16:17:26.0945 4664 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
16:17:26.0945 4664 HomeGroupProvider - ok
16:17:26.0960 4664 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
16:17:26.0960 4664 HpSAMD - ok
16:17:26.0992 4664 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\Windows\system32\drivers\HTTP.sys
16:17:26.0992 4664 HTTP - ok
16:17:27.0007 4664 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
16:17:27.0007 4664 hwpolicy - ok
16:17:27.0023 4664 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
16:17:27.0023 4664 i8042prt - ok
16:17:27.0038 4664 [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
16:17:27.0038 4664 iaStorV - ok
16:17:27.0070 4664 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
16:17:27.0070 4664 idsvc - ok
16:17:27.0070 4664 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\drivers\iirsp.sys
16:17:27.0070 4664 iirsp - ok
16:17:27.0085 4664 [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT C:\Windows\System32\ikeext.dll
16:17:27.0085 4664 IKEEXT - ok
16:17:27.0101 4664 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\drivers\intelide.sys
16:17:27.0101 4664 intelide - ok
16:17:27.0116 4664 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\drivers\intelppm.sys
16:17:27.0116 4664 intelppm - ok
16:17:27.0116 4664 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll
16:17:27.0132 4664 IPBusEnum - ok
16:17:27.0132 4664 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
16:17:27.0132 4664 IpFilterDriver - ok
16:17:27.0148 4664 [ 08C2957BB30058E663720C5606885653 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
16:17:27.0163 4664 iphlpsvc - ok
16:17:27.0163 4664 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
16:17:27.0163 4664 IPMIDRV - ok
16:17:27.0179 4664 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
16:17:27.0179 4664 IPNAT - ok
16:17:27.0194 4664 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
16:17:27.0194 4664 IRENUM - ok
16:17:27.0210 4664 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\drivers\isapnp.sys
16:17:27.0210 4664 isapnp - ok
16:17:27.0226 4664 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
16:17:27.0226 4664 iScsiPrt - ok
16:17:27.0241 4664 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
16:17:27.0241 4664 kbdclass - ok
16:17:27.0257 4664 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
16:17:27.0257 4664 kbdhid - ok
16:17:27.0257 4664 [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso C:\Windows\system32\lsass.exe
16:17:27.0272 4664 KeyIso - ok
16:17:27.0288 4664 [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
16:17:27.0288 4664 KSecDD - ok
16:17:27.0304 4664 [ 7EFB9333E4ECCE6AE4AE9D777D9E553E ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
16:17:27.0304 4664 KSecPkg - ok
16:17:27.0304 4664 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
16:17:27.0304 4664 ksthunk - ok
16:17:27.0319 4664 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll
16:17:27.0335 4664 KtmRm - ok
16:17:27.0335 4664 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\Windows\system32\srvsvc.dll
16:17:27.0335 4664 LanmanServer - ok
16:17:27.0350 4664 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
16:17:27.0366 4664 LanmanWorkstation - ok
16:17:27.0397 4664 [ B658B7076B1ACAA5876524595630F183 ] lirsgt C:\Windows\system32\DRIVERS\lirsgt.sys
16:17:27.0397 4664 lirsgt - ok
16:17:27.0397 4664 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
16:17:27.0413 4664 lltdio - ok
16:17:27.0428 4664 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll
16:17:27.0428 4664 lltdsvc - ok
16:17:27.0428 4664 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll
16:17:27.0428 4664 lmhosts - ok
16:17:27.0444 4664 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
16:17:27.0444 4664 LSI_FC - ok
16:17:27.0475 4664 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
16:17:27.0475 4664 LSI_SAS - ok
16:17:27.0475 4664 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys
16:17:27.0491 4664 LSI_SAS2 - ok
16:17:27.0491 4664 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
16:17:27.0491 4664 LSI_SCSI - ok
16:17:27.0506 4664 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys
16:17:27.0506 4664 luafv - ok
16:17:27.0522 4664 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
16:17:27.0522 4664 Mcx2Svc - ok
16:17:27.0538 4664 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\drivers\megasas.sys
16:17:27.0538 4664 megasas - ok
16:17:27.0553 4664 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\drivers\MegaSR.sys
16:17:27.0553 4664 MegaSR - ok
16:17:27.0569 4664 Microsoft SharePoint Workspace Audit Service - ok
16:17:27.0569 4664 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll
16:17:27.0584 4664 MMCSS - ok
16:17:27.0584 4664 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys
16:17:27.0584 4664 Modem - ok
16:17:27.0600 4664 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys
16:17:27.0600 4664 monitor - ok
16:17:27.0616 4664 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
16:17:27.0616 4664 mouclass - ok
16:17:27.0631 4664 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
16:17:27.0631 4664 mouhid - ok
16:17:27.0647 4664 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
16:17:27.0647 4664 mountmgr - ok
16:17:27.0694 4664 [ 825BF0E46B4470A463AEB641480C5FCA ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
16:17:27.0694 4664 MozillaMaintenance - ok
16:17:27.0694 4664 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\Windows\system32\drivers\mpio.sys
16:17:27.0709 4664 mpio - ok
16:17:27.0725 4664 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
16:17:27.0725 4664 mpsdrv - ok
16:17:27.0740 4664 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc C:\Windows\system32\mpssvc.dll
16:17:27.0756 4664 MpsSvc - ok
16:17:27.0756 4664 [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
16:17:27.0756 4664 MRxDAV - ok
16:17:27.0772 4664 [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
16:17:27.0787 4664 mrxsmb - ok
16:17:27.0787 4664 [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
16:17:27.0787 4664 mrxsmb10 - ok
16:17:27.0803 4664 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
16:17:27.0803 4664 mrxsmb20 - ok
16:17:27.0818 4664 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\Windows\system32\drivers\msahci.sys
16:17:27.0818 4664 msahci - ok
16:17:27.0834 4664 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\Windows\system32\drivers\msdsm.sys
16:17:27.0834 4664 msdsm - ok
16:17:27.0850 4664 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe
16:17:27.0850 4664 MSDTC - ok
16:17:27.0865 4664 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys
16:17:27.0865 4664 Msfs - ok
16:17:27.0881 4664 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
16:17:27.0881 4664 mshidkmdf - ok
16:17:27.0881 4664 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
16:17:27.0881 4664 msisadrv - ok
16:17:27.0896 4664 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
16:17:27.0896 4664 MSiSCSI - ok
16:17:27.0912 4664 msiserver - ok
16:17:27.0912 4664 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
16:17:27.0912 4664 MSKSSRV - ok
16:17:27.0928 4664 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
16:17:27.0928 4664 MSPCLOCK - ok
16:17:27.0928 4664 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
16:17:27.0928 4664 MSPQM - ok
16:17:27.0943 4664 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
16:17:27.0943 4664 MsRPC - ok
16:17:27.0959 4664 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
16:17:27.0959 4664 mssmbios - ok
16:17:27.0959 4664 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
16:17:27.0959 4664 MSTEE - ok
16:17:27.0974 4664 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\drivers\MTConfig.sys
16:17:27.0974 4664 MTConfig - ok
16:17:27.0990 4664 [ 19B006B181E3875FD254F7B67ACF1E7C ] MTsensor C:\Windows\system32\DRIVERS\ASACPI.sys
16:17:27.0990 4664 MTsensor - ok
16:17:28.0006 4664 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys
16:17:28.0006 4664 Mup - ok
16:17:28.0037 4664 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\Windows\system32\qagentRT.dll
16:17:28.0037 4664 napagent - ok
16:17:28.0052 4664 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
16:17:28.0052 4664 NativeWifiP - ok
16:17:28.0099 4664 [ 760E38053BF56E501D562B70AD796B88 ] NDIS C:\Windows\system32\drivers\ndis.sys
16:17:28.0099 4664 NDIS - ok
16:17:28.0115 4664 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
16:17:28.0115 4664 NdisCap - ok
16:17:28.0115 4664 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
16:17:28.0115 4664 NdisTapi - ok
16:17:28.0130 4664 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
16:17:28.0130 4664 Ndisuio - ok
16:17:28.0146 4664 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
16:17:28.0146 4664 NdisWan - ok
16:17:28.0162 4664 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
16:17:28.0162 4664 NDProxy - ok
16:17:28.0240 4664 [ 7D2633295EB6FF2B938185874884059D ] Nero BackItUp Scheduler 4.0 C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
16:17:28.0255 4664 Nero BackItUp Scheduler 4.0 - ok
16:17:28.0271 4664 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
16:17:28.0286 4664 NetBIOS - ok
16:17:28.0302 4664 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
16:17:28.0318 4664 NetBT - ok
16:17:28.0333 4664 [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon C:\Windows\system32\lsass.exe
16:17:28.0333 4664 Netlogon - ok
16:17:28.0364 4664 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll
16:17:28.0364 4664 Netman - ok
16:17:28.0396 4664 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll
16:17:28.0396 4664 netprofm - ok
16:17:28.0411 4664 [ 3E5A36127E201DDF663176B66828FAFE ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
16:17:28.0411 4664 NetTcpPortSharing - ok
16:17:28.0442 4664 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
16:17:28.0442 4664 nfrd960 - ok
16:17:28.0474 4664 [ 8AD77806D336673F270DB31645267293 ] NlaSvc C:\Windows\System32\nlasvc.dll
16:17:28.0474 4664 NlaSvc - ok
16:17:28.0489 4664 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys
16:17:28.0489 4664 Npfs - ok
16:17:28.0505 4664 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll
16:17:28.0505 4664 nsi - ok
16:17:28.0520 4664 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
16:17:28.0520 4664 nsiproxy - ok
16:17:28.0583 4664 [ B98F8C6E31CD07B2E6F71F7F648E38C0 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
16:17:28.0598 4664 Ntfs - ok
16:17:28.0598 4664 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys
16:17:28.0598 4664 Null - ok
16:17:28.0645 4664 [ B4F53BCA4C688FF47F04FA90098F896E ] NVHDA C:\Windows\system32\drivers\nvhda64v.sys
16:17:28.0645 4664 NVHDA - ok
16:17:28.0864 4664 [ 0A2F27B5BCC45B64E152DD6AE0815198 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
16:17:28.0910 4664 nvlddmkm - ok
16:17:28.0926 4664 [ 0A92CB65770442ED0DC44834632F66AD ] nvraid C:\Windows\system32\drivers\nvraid.sys
16:17:28.0926 4664 nvraid - ok
16:17:28.0942 4664 [ DAB0E87525C10052BF65F06152F37E4A ] nvstor C:\Windows\system32\drivers\nvstor.sys
16:17:28.0942 4664 nvstor - ok
16:17:28.0988 4664 [ 574087EA9105F23FB522A4FDDD5292D9 ] nvsvc C:\Windows\system32\nvvsvc.exe
16:17:29.0004 4664 nvsvc - ok
16:17:29.0051 4664 [ ABA5A88740635D37A2B6CEB27DBC738A ] nvUpdatusService C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
16:17:29.0066 4664 nvUpdatusService - ok
16:17:29.0082 4664 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
16:17:29.0082 4664 nv_agp - ok
16:17:29.0082 4664 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
16:17:29.0082 4664 ohci1394 - ok
16:17:29.0144 4664 [ 4965B005492CBA7719E82B71E3245495 ] ose64 C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
16:17:29.0144 4664 ose64 - ok
16:17:29.0285 4664 [ 61BFFB5F57AD12F83AB64B7181829B34 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
16:17:29.0316 4664 osppsvc - ok
16:17:29.0332 4664 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
16:17:29.0332 4664 p2pimsvc - ok
16:17:29.0347 4664 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll
16:17:29.0347 4664 p2psvc - ok
16:17:29.0347 4664 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\drivers\parport.sys
16:17:29.0347 4664 Parport - ok
16:17:29.0363 4664 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\Windows\system32\drivers\partmgr.sys
16:17:29.0363 4664 partmgr - ok
16:17:29.0378 4664 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\Windows\System32\pcasvc.dll
16:17:29.0378 4664 PcaSvc - ok
16:17:29.0394 4664 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\Windows\system32\drivers\pci.sys
16:17:29.0394 4664 pci - ok
16:17:29.0410 4664 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\drivers\pciide.sys
16:17:29.0410 4664 pciide - ok
16:17:29.0410 4664 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
16:17:29.0410 4664 pcmcia - ok
16:17:29.0425 4664 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys
16:17:29.0425 4664 pcw - ok
16:17:29.0456 4664 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\Windows\system32\drivers\peauth.sys
16:17:29.0472 4664 PEAUTH - ok
16:17:29.0503 4664 [ B9B0A4299DD2D76A4243F75FD54DC680 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll
16:17:29.0519 4664 PeerDistSvc - ok
16:17:29.0566 4664 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe
16:17:29.0566 4664 PerfHost - ok
16:17:29.0581 4664 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\Windows\system32\pla.dll
16:17:29.0597 4664 pla - ok
16:17:29.0628 4664 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
16:17:29.0628 4664 PlugPlay - ok
16:17:29.0644 4664 PnkBstrA - ok
16:17:29.0644 4664 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
16:17:29.0644 4664 PNRPAutoReg - ok
16:17:29.0644 4664 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
16:17:29.0659 4664 PNRPsvc - ok
16:17:29.0675 4664 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
16:17:29.0675 4664 PolicyAgent - ok
16:17:29.0690 4664 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll
16:17:29.0690 4664 Power - ok
16:17:29.0706 4664 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
16:17:29.0706 4664 PptpMiniport - ok
16:17:29.0722 4664 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\drivers\processr.sys
16:17:29.0722 4664 Processor - ok
16:17:29.0737 4664 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc C:\Windows\system32\profsvc.dll
16:17:29.0737 4664 ProfSvc - ok
16:17:29.0753 4664 [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\Windows\system32\lsass.exe
16:17:29.0753 4664 ProtectedStorage - ok
16:17:29.0753 4664 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\Windows\system32\DRIVERS\pacer.sys
16:17:29.0753 4664 Psched - ok
16:17:29.0800 4664 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\drivers\ql2300.sys
16:17:29.0815 4664 ql2300 - ok
16:17:29.0846 4664 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
16:17:29.0846 4664 ql40xx - ok
16:17:29.0862 4664 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll
16:17:29.0862 4664 QWAVE - ok
16:17:29.0878 4664 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
16:17:29.0878 4664 QWAVEdrv - ok
16:17:29.0893 4664 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
16:17:29.0893 4664 RasAcd - ok
16:17:29.0909 4664 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
16:17:29.0909 4664 RasAgileVpn - ok
16:17:29.0909 4664 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll
16:17:29.0924 4664 RasAuto - ok
16:17:29.0924 4664 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
16:17:29.0924 4664 Rasl2tp - ok
16:17:29.0940 4664 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\Windows\System32\rasmans.dll
16:17:29.0940 4664 RasMan - ok
16:17:29.0956 4664 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
16:17:29.0956 4664 RasPppoe - ok
16:17:29.0956 4664 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
16:17:29.0956 4664 RasSstp - ok
16:17:29.0971 4664 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
16:17:29.0971 4664 rdbss - ok
16:17:29.0987 4664 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
16:17:29.0987 4664 rdpbus - ok
16:17:29.0987 4664 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
16:17:29.0987 4664 RDPCDD - ok
16:17:30.0018 4664 [ 1B6163C503398B23FF8B939C67747683 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys
16:17:30.0018 4664 RDPDR - ok
16:17:30.0034 4664 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
16:17:30.0034 4664 RDPENCDD - ok
16:17:30.0049 4664 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
16:17:30.0049 4664 RDPREFMP - ok
16:17:30.0080 4664 [ 313F68E1A3E6345A4F47A36B07062F34 ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
16:17:30.0080 4664 RdpVideoMiniport - ok
16:17:30.0096 4664 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
16:17:30.0096 4664 RDPWD - ok
16:17:30.0112 4664 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
16:17:30.0127 4664 rdyboost - ok
16:17:30.0143 4664 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\Windows\System32\mprdim.dll
16:17:30.0143 4664 RemoteAccess - ok
16:17:30.0143 4664 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll
16:17:30.0158 4664 RemoteRegistry - ok
16:17:30.0158 4664 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
16:17:30.0158 4664 RpcEptMapper - ok
16:17:30.0174 4664 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe
16:17:30.0174 4664 RpcLocator - ok
16:17:30.0190 4664 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\Windows\system32\rpcss.dll
16:17:30.0205 4664 RpcSs - ok
16:17:30.0205 4664 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
16:17:30.0205 4664 rspndr - ok
16:17:30.0236 4664 [ EE082E06A82FF630351D1E0EBBD3D8D0 ] RTL8167 C:\Windows\system32\DRIVERS\Rt64win7.sys
16:17:30.0252 4664 RTL8167 - ok
16:17:30.0252 4664 [ E60C0A09F997826C7627B244195AB581 ] s3cap C:\Windows\system32\drivers\vms3cap.sys
16:17:30.0252 4664 s3cap - ok
16:17:30.0268 4664 [ C118A82CD78818C29AB228366EBF81C3 ] SamSs C:\Windows\system32\lsass.exe
16:17:30.0268 4664 SamSs - ok
Re: Zřejmě mám zavirované PC
16:17:30.0283 4664 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
16:17:30.0283 4664 sbp2port - ok
16:17:30.0283 4664 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll
16:17:30.0283 4664 SCardSvr - ok
16:17:30.0299 4664 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
16:17:30.0299 4664 scfilter - ok
16:17:30.0330 4664 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\Windows\system32\schedsvc.dll
16:17:30.0330 4664 Schedule - ok
16:17:30.0346 4664 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\Windows\System32\certprop.dll
16:17:30.0346 4664 SCPolicySvc - ok
16:17:30.0346 4664 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\Windows\System32\SDRSVC.dll
16:17:30.0346 4664 SDRSVC - ok
16:17:30.0361 4664 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys
16:17:30.0361 4664 secdrv - ok
16:17:30.0392 4664 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\Windows\system32\seclogon.dll
16:17:30.0392 4664 seclogon - ok
16:17:30.0424 4664 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\System32\sens.dll
16:17:30.0424 4664 SENS - ok
16:17:30.0455 4664 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll
16:17:30.0470 4664 SensrSvc - ok
16:17:30.0486 4664 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
16:17:30.0486 4664 Serenum - ok
16:17:30.0517 4664 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\DRIVERS\serial.sys
16:17:30.0533 4664 Serial - ok
16:17:30.0533 4664 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\drivers\sermouse.sys
16:17:30.0533 4664 sermouse - ok
16:17:30.0548 4664 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\Windows\system32\sessenv.dll
16:17:30.0548 4664 SessionEnv - ok
16:17:30.0564 4664 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
16:17:30.0564 4664 sffdisk - ok
16:17:30.0564 4664 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
16:17:30.0564 4664 sffp_mmc - ok
16:17:30.0580 4664 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
16:17:30.0580 4664 sffp_sd - ok
16:17:30.0580 4664 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
16:17:30.0580 4664 sfloppy - ok
16:17:30.0580 4664 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\Windows\System32\ipnathlp.dll
16:17:30.0580 4664 SharedAccess - ok
16:17:30.0595 4664 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll
16:17:30.0595 4664 ShellHWDetection - ok
16:17:30.0611 4664 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys
16:17:30.0611 4664 SiSRaid2 - ok
16:17:30.0611 4664 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
16:17:30.0611 4664 SiSRaid4 - ok
16:17:30.0658 4664 [ 7C15061CD0372487903B07B9BB03AFAD ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
16:17:30.0658 4664 SkypeUpdate - ok
16:17:30.0658 4664 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys
16:17:30.0673 4664 Smb - ok
16:17:30.0689 4664 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe
16:17:30.0689 4664 SNMPTRAP - ok
16:17:30.0704 4664 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys
16:17:30.0704 4664 spldr - ok
16:17:30.0720 4664 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler C:\Windows\System32\spoolsv.exe
16:17:30.0736 4664 Spooler - ok
16:17:30.0782 4664 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\Windows\system32\sppsvc.exe
16:17:30.0814 4664 sppsvc - ok
16:17:30.0814 4664 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll
16:17:30.0814 4664 sppuinotify - ok
16:17:30.0829 4664 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv C:\Windows\system32\DRIVERS\srv.sys
16:17:30.0829 4664 srv - ok
16:17:30.0845 4664 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
16:17:30.0845 4664 srv2 - ok
16:17:30.0845 4664 [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
16:17:30.0845 4664 srvnet - ok
16:17:30.0860 4664 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
16:17:30.0860 4664 SSDPSRV - ok
16:17:30.0876 4664 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\Windows\system32\sstpsvc.dll
16:17:30.0876 4664 SstpSvc - ok
16:17:30.0923 4664 Steam Client Service - ok
16:17:30.0970 4664 [ 78216A10BF8B200890A88D8820F33F14 ] Stereo Service C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
16:17:30.0970 4664 Stereo Service - ok
16:17:30.0985 4664 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\Windows\system32\drivers\stexstor.sys
16:17:30.0985 4664 stexstor - ok
16:17:31.0016 4664 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc C:\Windows\System32\wiaservc.dll
16:17:31.0032 4664 stisvc - ok
16:17:31.0048 4664 [ 7785DC213270D2FC066538DAF94087E7 ] storflt C:\Windows\system32\drivers\vmstorfl.sys
16:17:31.0048 4664 storflt - ok
16:17:31.0063 4664 [ D34E4943D5AC096C8EDEEBFD80D76E23 ] storvsc C:\Windows\system32\drivers\storvsc.sys
16:17:31.0063 4664 storvsc - ok
16:17:31.0063 4664 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\Windows\system32\DRIVERS\swenum.sys
16:17:31.0063 4664 swenum - ok
16:17:31.0157 4664 [ F577910A133A592234EBAAD3F3AFA258 ] SwitchBoard C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
16:17:31.0157 4664 SwitchBoard - ok
16:17:31.0172 4664 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\Windows\System32\swprv.dll
16:17:31.0188 4664 swprv - ok
16:17:31.0188 4664 [ C3A39C4079305480972D29C44B868C78 ] Synth3dVsc C:\Windows\system32\drivers\synth3dvsc.sys
16:17:31.0188 4664 Synth3dVsc - ok
16:17:31.0250 4664 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain C:\Windows\system32\sysmain.dll
16:17:31.0266 4664 SysMain - ok
16:17:31.0282 4664 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\Windows\System32\TabSvc.dll
16:17:31.0282 4664 TabletInputService - ok
16:17:31.0297 4664 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv C:\Windows\System32\tapisrv.dll
16:17:31.0297 4664 TapiSrv - ok
16:17:31.0297 4664 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\Windows\System32\tbssvc.dll
16:17:31.0313 4664 TBS - ok
16:17:31.0375 4664 [ 9849EA3843A2ADBDD1497E97A85D8CAE ] Tcpip C:\Windows\system32\drivers\tcpip.sys
16:17:31.0375 4664 Tcpip - ok
16:17:31.0422 4664 [ 9849EA3843A2ADBDD1497E97A85D8CAE ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
16:17:31.0422 4664 TCPIP6 - ok
16:17:31.0453 4664 [ 1B16D0BD9841794A6E0CDE0CEF744ABC ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
16:17:31.0453 4664 tcpipreg - ok
16:17:31.0453 4664 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
16:17:31.0453 4664 TDPIPE - ok
16:17:31.0484 4664 [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
16:17:31.0484 4664 TDTCP - ok
16:17:31.0500 4664 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
16:17:31.0500 4664 tdx - ok
16:17:31.0516 4664 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
16:17:31.0516 4664 TermDD - ok
16:17:31.0547 4664 [ EF4469AB69EB15E5D3754E6AEAFBCD3D ] terminpt C:\Windows\system32\drivers\terminpt.sys
16:17:31.0547 4664 terminpt - ok
16:17:31.0562 4664 [ 2E648163254233755035B46DD7B89123 ] TermService C:\Windows\System32\termsrv.dll
16:17:31.0578 4664 TermService - ok
16:17:31.0594 4664 [ F0344071948D1A1FA732231785A0664C ] Themes C:\Windows\system32\themeservice.dll
16:17:31.0594 4664 Themes - ok
16:17:31.0609 4664 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\Windows\system32\mmcss.dll
16:17:31.0609 4664 THREADORDER - ok
16:17:31.0625 4664 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\Windows\System32\trkwks.dll
16:17:31.0625 4664 TrkWks - ok
16:17:31.0656 4664 [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
16:17:31.0656 4664 TrustedInstaller - ok
16:17:31.0672 4664 [ CE18B2CDFC837C99E5FAE9CA6CBA5D30 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
16:17:31.0672 4664 tssecsrv - ok
16:17:31.0687 4664 [ 17C6B51CBCCDED95B3CC14E22791F85E ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
16:17:31.0687 4664 TsUsbFlt - ok
16:17:31.0718 4664 [ AD64450A4ABE076F5CB34CC08EEACB07 ] TsUsbGD C:\Windows\system32\drivers\TsUsbGD.sys
16:17:31.0718 4664 TsUsbGD - ok
16:17:31.0734 4664 [ E1748D04AE40118B62BC18AC86032192 ] tsusbhub C:\Windows\system32\drivers\tsusbhub.sys
16:17:31.0734 4664 tsusbhub - ok
16:17:31.0750 4664 [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
16:17:31.0750 4664 tunnel - ok
16:17:31.0765 4664 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\Windows\system32\drivers\uagp35.sys
16:17:31.0765 4664 uagp35 - ok
16:17:31.0765 4664 [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
16:17:31.0781 4664 udfs - ok
16:17:31.0781 4664 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\Windows\system32\UI0Detect.exe
16:17:31.0781 4664 UI0Detect - ok
16:17:31.0796 4664 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
16:17:31.0796 4664 uliagpkx - ok
16:17:31.0812 4664 [ DC54A574663A895C8763AF0FA1FF7561 ] umbus C:\Windows\system32\DRIVERS\umbus.sys
16:17:31.0812 4664 umbus - ok
16:17:31.0828 4664 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\Windows\system32\drivers\umpass.sys
16:17:31.0828 4664 UmPass - ok
16:17:31.0843 4664 [ A293DCD756D04D8492A750D03B9A297C ] UmRdpService C:\Windows\System32\umrdp.dll
16:17:31.0843 4664 UmRdpService - ok
16:17:31.0874 4664 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\Windows\System32\upnphost.dll
16:17:31.0874 4664 upnphost - ok
16:17:31.0890 4664 [ 6F1A3157A1C89435352CEB543CDB359C ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
16:17:31.0890 4664 usbccgp - ok
16:17:31.0906 4664 [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir C:\Windows\system32\drivers\usbcir.sys
16:17:31.0921 4664 usbcir - ok
16:17:31.0937 4664 [ C025055FE7B87701EB042095DF1A2D7B ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
16:17:31.0937 4664 usbehci - ok
16:17:31.0984 4664 [ 2C780746DC44A28FE67004DC58173F05 ] usbfilter C:\Windows\system32\DRIVERS\usbfilter.sys
16:17:31.0999 4664 usbfilter - ok
16:17:32.0015 4664 [ 287C6C9410B111B68B52CA298F7B8C24 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
16:17:32.0015 4664 usbhub - ok
16:17:32.0030 4664 [ 9840FC418B4CBD632D3D0A667A725C31 ] usbohci C:\Windows\system32\DRIVERS\usbohci.sys
16:17:32.0030 4664 usbohci - ok
16:17:32.0062 4664 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
16:17:32.0062 4664 usbprint - ok
16:17:32.0077 4664 [ AAA2513C8AED8B54B189FD0C6B1634C0 ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys
16:17:32.0077 4664 usbscan - ok
16:17:32.0093 4664 [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
16:17:32.0093 4664 USBSTOR - ok
16:17:32.0108 4664 [ 62069A34518BCF9C1FD9E74B3F6DB7CD ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
16:17:32.0108 4664 usbuhci - ok
16:17:32.0108 4664 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\Windows\System32\uxsms.dll
16:17:32.0108 4664 UxSms - ok
16:17:32.0140 4664 [ C118A82CD78818C29AB228366EBF81C3 ] VaultSvc C:\Windows\system32\lsass.exe
16:17:32.0140 4664 VaultSvc - ok
16:17:32.0140 4664 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
16:17:32.0140 4664 vdrvroot - ok
16:17:32.0155 4664 [ 8D6B481601D01A456E75C3210F1830BE ] vds C:\Windows\System32\vds.exe
16:17:32.0171 4664 vds - ok
16:17:32.0186 4664 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
16:17:32.0186 4664 vga - ok
16:17:32.0186 4664 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\Windows\System32\drivers\vga.sys
16:17:32.0202 4664 VgaSave - ok
16:17:32.0202 4664 VGPU - ok
16:17:32.0202 4664 [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
16:17:32.0202 4664 vhdmp - ok
16:17:32.0218 4664 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\Windows\system32\drivers\viaide.sys
16:17:32.0218 4664 viaide - ok
16:17:32.0218 4664 [ 86EA3E79AE350FEA5331A1303054005F ] vmbus C:\Windows\system32\drivers\vmbus.sys
16:17:32.0218 4664 vmbus - ok
16:17:32.0233 4664 [ 7DE90B48F210D29649380545DB45A187 ] VMBusHID C:\Windows\system32\drivers\VMBusHID.sys
16:17:32.0233 4664 VMBusHID - ok
16:17:32.0249 4664 [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr C:\Windows\system32\drivers\volmgr.sys
16:17:32.0249 4664 volmgr - ok
16:17:32.0264 4664 [ A255814907C89BE58B79EF2F189B843B ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
16:17:32.0264 4664 volmgrx - ok
16:17:32.0280 4664 [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap C:\Windows\system32\drivers\volsnap.sys
16:17:32.0280 4664 volsnap - ok
16:17:32.0280 4664 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
16:17:32.0280 4664 vsmraid - ok
16:17:32.0311 4664 [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS C:\Windows\system32\vssvc.exe
16:17:32.0327 4664 VSS - ok
16:17:32.0327 4664 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys
16:17:32.0327 4664 vwifibus - ok
16:17:32.0342 4664 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\Windows\system32\w32time.dll
16:17:32.0342 4664 W32Time - ok
16:17:32.0358 4664 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\Windows\system32\drivers\wacompen.sys
16:17:32.0358 4664 WacomPen - ok
16:17:32.0374 4664 [ 356AFD78A6ED4457169241AC3965230C ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
16:17:32.0374 4664 WANARP - ok
16:17:32.0374 4664 [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
16:17:32.0374 4664 Wanarpv6 - ok
16:17:32.0420 4664 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
16:17:32.0420 4664 WatAdminSvc - ok
16:17:32.0436 4664 [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine C:\Windows\system32\wbengine.exe
16:17:32.0436 4664 wbengine - ok
16:17:32.0452 4664 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
16:17:32.0452 4664 WbioSrvc - ok
16:17:32.0452 4664 [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc C:\Windows\System32\wcncsvc.dll
16:17:32.0467 4664 wcncsvc - ok
16:17:32.0467 4664 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
16:17:32.0467 4664 WcsPlugInService - ok
16:17:32.0467 4664 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\Windows\system32\drivers\wd.sys
16:17:32.0467 4664 Wd - ok
16:17:32.0498 4664 [ 442783E2CB0DA19873B7A63833FF4CB4 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
16:17:32.0514 4664 Wdf01000 - ok
16:17:32.0530 4664 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\Windows\system32\wdi.dll
16:17:32.0530 4664 WdiServiceHost - ok
16:17:32.0530 4664 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\Windows\system32\wdi.dll
16:17:32.0545 4664 WdiSystemHost - ok
16:17:32.0545 4664 [ 3DB6D04E1C64272F8B14EB8BC4616280 ] WebClient C:\Windows\System32\webclnt.dll
16:17:32.0545 4664 WebClient - ok
16:17:32.0545 4664 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\Windows\system32\wecsvc.dll
16:17:32.0545 4664 Wecsvc - ok
16:17:32.0561 4664 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\Windows\System32\wercplsupport.dll
16:17:32.0561 4664 wercplsupport - ok
16:17:32.0592 4664 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\Windows\System32\WerSvc.dll
16:17:32.0592 4664 WerSvc - ok
16:17:32.0592 4664 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
16:17:32.0592 4664 WfpLwf - ok
16:17:32.0608 4664 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\Windows\system32\drivers\wimmount.sys
16:17:32.0608 4664 WIMMount - ok
16:17:32.0608 4664 WinDefend - ok
16:17:32.0608 4664 WinHttpAutoProxySvc - ok
16:17:32.0654 4664 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
16:17:32.0654 4664 Winmgmt - ok
16:17:32.0701 4664 [ BCB1310604AA415C4508708975B3931E ] WinRM C:\Windows\system32\WsmSvc.dll
16:17:32.0701 4664 WinRM - ok
16:17:32.0748 4664 [ FE88B288356E7B47B74B13372ADD906D ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
16:17:32.0748 4664 WinUsb - ok
16:17:32.0764 4664 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\Windows\System32\wlansvc.dll
16:17:32.0764 4664 Wlansvc - ok
16:17:32.0795 4664 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\Windows\system32\DRIVERS\wmiacpi.sys
16:17:32.0795 4664 WmiAcpi - ok
16:17:32.0842 4664 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
16:17:32.0842 4664 wmiApSrv - ok
16:17:32.0873 4664 WMPNetworkSvc - ok
16:17:32.0904 4664 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\Windows\System32\wpcsvc.dll
16:17:32.0904 4664 WPCSvc - ok
16:17:32.0935 4664 [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
16:17:32.0951 4664 WPDBusEnum - ok
16:17:32.0951 4664 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
16:17:32.0951 4664 ws2ifsl - ok
16:17:32.0982 4664 [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc C:\Windows\System32\wscsvc.dll
16:17:32.0982 4664 wscsvc - ok
16:17:32.0982 4664 WSearch - ok
16:17:33.0060 4664 [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv C:\Windows\system32\wuaueng.dll
16:17:33.0091 4664 wuauserv - ok
16:17:33.0107 4664 [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
16:17:33.0107 4664 WudfPf - ok
16:17:33.0122 4664 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
16:17:33.0138 4664 WUDFRd - ok
16:17:33.0138 4664 [ B20F051B03A966392364C83F009F7D17 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
16:17:33.0138 4664 wudfsvc - ok
16:17:33.0169 4664 [ FE90B750AB808FB9DD8FBB428B5FF83B ] WwanSvc C:\Windows\System32\wwansvc.dll
16:17:33.0169 4664 WwanSvc - ok
16:17:33.0185 4664 ================ Scan global ===============================
16:17:33.0185 4664 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll
16:17:33.0216 4664 [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\system32\winsrv.dll
16:17:33.0232 4664 [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\system32\winsrv.dll
16:17:33.0247 4664 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll
16:17:33.0263 4664 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe
16:17:33.0263 4664 [Global] - ok
16:17:33.0263 4664 ================ Scan MBR ==================================
16:17:33.0278 4664 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
16:17:33.0606 4664 \Device\Harddisk0\DR0 - ok
16:17:33.0606 4664 ================ Scan VBR ==================================
16:17:33.0606 4664 [ B8AFA9A728DACCB1B3788372B049F74F ] \Device\Harddisk0\DR0\Partition1
16:17:33.0606 4664 \Device\Harddisk0\DR0\Partition1 - ok
16:17:33.0622 4664 [ E6F9444850967C362EF177844500D1F2 ] \Device\Harddisk0\DR0\Partition2
16:17:33.0622 4664 \Device\Harddisk0\DR0\Partition2 - ok
16:17:33.0637 4664 [ 0F45817D5050E7C05F23D56B53C1C7D1 ] \Device\Harddisk0\DR0\Partition3
16:17:33.0637 4664 \Device\Harddisk0\DR0\Partition3 - ok
16:17:33.0637 4664 ============================================================
16:17:33.0637 4664 Scan finished
16:17:33.0637 4664 ============================================================
16:17:33.0653 4824 Detected object count: 0
16:17:33.0653 4824 Actual detected object count: 0
16:17:42.0904 3468 Deinitialize success
16:17:30.0283 4664 sbp2port - ok
16:17:30.0283 4664 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll
16:17:30.0283 4664 SCardSvr - ok
16:17:30.0299 4664 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
16:17:30.0299 4664 scfilter - ok
16:17:30.0330 4664 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\Windows\system32\schedsvc.dll
16:17:30.0330 4664 Schedule - ok
16:17:30.0346 4664 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\Windows\System32\certprop.dll
16:17:30.0346 4664 SCPolicySvc - ok
16:17:30.0346 4664 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\Windows\System32\SDRSVC.dll
16:17:30.0346 4664 SDRSVC - ok
16:17:30.0361 4664 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys
16:17:30.0361 4664 secdrv - ok
16:17:30.0392 4664 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\Windows\system32\seclogon.dll
16:17:30.0392 4664 seclogon - ok
16:17:30.0424 4664 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\System32\sens.dll
16:17:30.0424 4664 SENS - ok
16:17:30.0455 4664 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll
16:17:30.0470 4664 SensrSvc - ok
16:17:30.0486 4664 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
16:17:30.0486 4664 Serenum - ok
16:17:30.0517 4664 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\DRIVERS\serial.sys
16:17:30.0533 4664 Serial - ok
16:17:30.0533 4664 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\drivers\sermouse.sys
16:17:30.0533 4664 sermouse - ok
16:17:30.0548 4664 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\Windows\system32\sessenv.dll
16:17:30.0548 4664 SessionEnv - ok
16:17:30.0564 4664 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
16:17:30.0564 4664 sffdisk - ok
16:17:30.0564 4664 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
16:17:30.0564 4664 sffp_mmc - ok
16:17:30.0580 4664 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
16:17:30.0580 4664 sffp_sd - ok
16:17:30.0580 4664 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
16:17:30.0580 4664 sfloppy - ok
16:17:30.0580 4664 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\Windows\System32\ipnathlp.dll
16:17:30.0580 4664 SharedAccess - ok
16:17:30.0595 4664 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll
16:17:30.0595 4664 ShellHWDetection - ok
16:17:30.0611 4664 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys
16:17:30.0611 4664 SiSRaid2 - ok
16:17:30.0611 4664 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
16:17:30.0611 4664 SiSRaid4 - ok
16:17:30.0658 4664 [ 7C15061CD0372487903B07B9BB03AFAD ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
16:17:30.0658 4664 SkypeUpdate - ok
16:17:30.0658 4664 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys
16:17:30.0673 4664 Smb - ok
16:17:30.0689 4664 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe
16:17:30.0689 4664 SNMPTRAP - ok
16:17:30.0704 4664 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys
16:17:30.0704 4664 spldr - ok
16:17:30.0720 4664 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler C:\Windows\System32\spoolsv.exe
16:17:30.0736 4664 Spooler - ok
16:17:30.0782 4664 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\Windows\system32\sppsvc.exe
16:17:30.0814 4664 sppsvc - ok
16:17:30.0814 4664 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll
16:17:30.0814 4664 sppuinotify - ok
16:17:30.0829 4664 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv C:\Windows\system32\DRIVERS\srv.sys
16:17:30.0829 4664 srv - ok
16:17:30.0845 4664 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
16:17:30.0845 4664 srv2 - ok
16:17:30.0845 4664 [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
16:17:30.0845 4664 srvnet - ok
16:17:30.0860 4664 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
16:17:30.0860 4664 SSDPSRV - ok
16:17:30.0876 4664 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\Windows\system32\sstpsvc.dll
16:17:30.0876 4664 SstpSvc - ok
16:17:30.0923 4664 Steam Client Service - ok
16:17:30.0970 4664 [ 78216A10BF8B200890A88D8820F33F14 ] Stereo Service C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
16:17:30.0970 4664 Stereo Service - ok
16:17:30.0985 4664 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\Windows\system32\drivers\stexstor.sys
16:17:30.0985 4664 stexstor - ok
16:17:31.0016 4664 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc C:\Windows\System32\wiaservc.dll
16:17:31.0032 4664 stisvc - ok
16:17:31.0048 4664 [ 7785DC213270D2FC066538DAF94087E7 ] storflt C:\Windows\system32\drivers\vmstorfl.sys
16:17:31.0048 4664 storflt - ok
16:17:31.0063 4664 [ D34E4943D5AC096C8EDEEBFD80D76E23 ] storvsc C:\Windows\system32\drivers\storvsc.sys
16:17:31.0063 4664 storvsc - ok
16:17:31.0063 4664 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\Windows\system32\DRIVERS\swenum.sys
16:17:31.0063 4664 swenum - ok
16:17:31.0157 4664 [ F577910A133A592234EBAAD3F3AFA258 ] SwitchBoard C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
16:17:31.0157 4664 SwitchBoard - ok
16:17:31.0172 4664 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\Windows\System32\swprv.dll
16:17:31.0188 4664 swprv - ok
16:17:31.0188 4664 [ C3A39C4079305480972D29C44B868C78 ] Synth3dVsc C:\Windows\system32\drivers\synth3dvsc.sys
16:17:31.0188 4664 Synth3dVsc - ok
16:17:31.0250 4664 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain C:\Windows\system32\sysmain.dll
16:17:31.0266 4664 SysMain - ok
16:17:31.0282 4664 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\Windows\System32\TabSvc.dll
16:17:31.0282 4664 TabletInputService - ok
16:17:31.0297 4664 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv C:\Windows\System32\tapisrv.dll
16:17:31.0297 4664 TapiSrv - ok
16:17:31.0297 4664 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\Windows\System32\tbssvc.dll
16:17:31.0313 4664 TBS - ok
16:17:31.0375 4664 [ 9849EA3843A2ADBDD1497E97A85D8CAE ] Tcpip C:\Windows\system32\drivers\tcpip.sys
16:17:31.0375 4664 Tcpip - ok
16:17:31.0422 4664 [ 9849EA3843A2ADBDD1497E97A85D8CAE ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
16:17:31.0422 4664 TCPIP6 - ok
16:17:31.0453 4664 [ 1B16D0BD9841794A6E0CDE0CEF744ABC ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
16:17:31.0453 4664 tcpipreg - ok
16:17:31.0453 4664 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
16:17:31.0453 4664 TDPIPE - ok
16:17:31.0484 4664 [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
16:17:31.0484 4664 TDTCP - ok
16:17:31.0500 4664 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
16:17:31.0500 4664 tdx - ok
16:17:31.0516 4664 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
16:17:31.0516 4664 TermDD - ok
16:17:31.0547 4664 [ EF4469AB69EB15E5D3754E6AEAFBCD3D ] terminpt C:\Windows\system32\drivers\terminpt.sys
16:17:31.0547 4664 terminpt - ok
16:17:31.0562 4664 [ 2E648163254233755035B46DD7B89123 ] TermService C:\Windows\System32\termsrv.dll
16:17:31.0578 4664 TermService - ok
16:17:31.0594 4664 [ F0344071948D1A1FA732231785A0664C ] Themes C:\Windows\system32\themeservice.dll
16:17:31.0594 4664 Themes - ok
16:17:31.0609 4664 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\Windows\system32\mmcss.dll
16:17:31.0609 4664 THREADORDER - ok
16:17:31.0625 4664 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\Windows\System32\trkwks.dll
16:17:31.0625 4664 TrkWks - ok
16:17:31.0656 4664 [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
16:17:31.0656 4664 TrustedInstaller - ok
16:17:31.0672 4664 [ CE18B2CDFC837C99E5FAE9CA6CBA5D30 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
16:17:31.0672 4664 tssecsrv - ok
16:17:31.0687 4664 [ 17C6B51CBCCDED95B3CC14E22791F85E ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
16:17:31.0687 4664 TsUsbFlt - ok
16:17:31.0718 4664 [ AD64450A4ABE076F5CB34CC08EEACB07 ] TsUsbGD C:\Windows\system32\drivers\TsUsbGD.sys
16:17:31.0718 4664 TsUsbGD - ok
16:17:31.0734 4664 [ E1748D04AE40118B62BC18AC86032192 ] tsusbhub C:\Windows\system32\drivers\tsusbhub.sys
16:17:31.0734 4664 tsusbhub - ok
16:17:31.0750 4664 [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
16:17:31.0750 4664 tunnel - ok
16:17:31.0765 4664 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\Windows\system32\drivers\uagp35.sys
16:17:31.0765 4664 uagp35 - ok
16:17:31.0765 4664 [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
16:17:31.0781 4664 udfs - ok
16:17:31.0781 4664 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\Windows\system32\UI0Detect.exe
16:17:31.0781 4664 UI0Detect - ok
16:17:31.0796 4664 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
16:17:31.0796 4664 uliagpkx - ok
16:17:31.0812 4664 [ DC54A574663A895C8763AF0FA1FF7561 ] umbus C:\Windows\system32\DRIVERS\umbus.sys
16:17:31.0812 4664 umbus - ok
16:17:31.0828 4664 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\Windows\system32\drivers\umpass.sys
16:17:31.0828 4664 UmPass - ok
16:17:31.0843 4664 [ A293DCD756D04D8492A750D03B9A297C ] UmRdpService C:\Windows\System32\umrdp.dll
16:17:31.0843 4664 UmRdpService - ok
16:17:31.0874 4664 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\Windows\System32\upnphost.dll
16:17:31.0874 4664 upnphost - ok
16:17:31.0890 4664 [ 6F1A3157A1C89435352CEB543CDB359C ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
16:17:31.0890 4664 usbccgp - ok
16:17:31.0906 4664 [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir C:\Windows\system32\drivers\usbcir.sys
16:17:31.0921 4664 usbcir - ok
16:17:31.0937 4664 [ C025055FE7B87701EB042095DF1A2D7B ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
16:17:31.0937 4664 usbehci - ok
16:17:31.0984 4664 [ 2C780746DC44A28FE67004DC58173F05 ] usbfilter C:\Windows\system32\DRIVERS\usbfilter.sys
16:17:31.0999 4664 usbfilter - ok
16:17:32.0015 4664 [ 287C6C9410B111B68B52CA298F7B8C24 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
16:17:32.0015 4664 usbhub - ok
16:17:32.0030 4664 [ 9840FC418B4CBD632D3D0A667A725C31 ] usbohci C:\Windows\system32\DRIVERS\usbohci.sys
16:17:32.0030 4664 usbohci - ok
16:17:32.0062 4664 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
16:17:32.0062 4664 usbprint - ok
16:17:32.0077 4664 [ AAA2513C8AED8B54B189FD0C6B1634C0 ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys
16:17:32.0077 4664 usbscan - ok
16:17:32.0093 4664 [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
16:17:32.0093 4664 USBSTOR - ok
16:17:32.0108 4664 [ 62069A34518BCF9C1FD9E74B3F6DB7CD ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
16:17:32.0108 4664 usbuhci - ok
16:17:32.0108 4664 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\Windows\System32\uxsms.dll
16:17:32.0108 4664 UxSms - ok
16:17:32.0140 4664 [ C118A82CD78818C29AB228366EBF81C3 ] VaultSvc C:\Windows\system32\lsass.exe
16:17:32.0140 4664 VaultSvc - ok
16:17:32.0140 4664 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
16:17:32.0140 4664 vdrvroot - ok
16:17:32.0155 4664 [ 8D6B481601D01A456E75C3210F1830BE ] vds C:\Windows\System32\vds.exe
16:17:32.0171 4664 vds - ok
16:17:32.0186 4664 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
16:17:32.0186 4664 vga - ok
16:17:32.0186 4664 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\Windows\System32\drivers\vga.sys
16:17:32.0202 4664 VgaSave - ok
16:17:32.0202 4664 VGPU - ok
16:17:32.0202 4664 [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
16:17:32.0202 4664 vhdmp - ok
16:17:32.0218 4664 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\Windows\system32\drivers\viaide.sys
16:17:32.0218 4664 viaide - ok
16:17:32.0218 4664 [ 86EA3E79AE350FEA5331A1303054005F ] vmbus C:\Windows\system32\drivers\vmbus.sys
16:17:32.0218 4664 vmbus - ok
16:17:32.0233 4664 [ 7DE90B48F210D29649380545DB45A187 ] VMBusHID C:\Windows\system32\drivers\VMBusHID.sys
16:17:32.0233 4664 VMBusHID - ok
16:17:32.0249 4664 [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr C:\Windows\system32\drivers\volmgr.sys
16:17:32.0249 4664 volmgr - ok
16:17:32.0264 4664 [ A255814907C89BE58B79EF2F189B843B ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
16:17:32.0264 4664 volmgrx - ok
16:17:32.0280 4664 [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap C:\Windows\system32\drivers\volsnap.sys
16:17:32.0280 4664 volsnap - ok
16:17:32.0280 4664 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
16:17:32.0280 4664 vsmraid - ok
16:17:32.0311 4664 [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS C:\Windows\system32\vssvc.exe
16:17:32.0327 4664 VSS - ok
16:17:32.0327 4664 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys
16:17:32.0327 4664 vwifibus - ok
16:17:32.0342 4664 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\Windows\system32\w32time.dll
16:17:32.0342 4664 W32Time - ok
16:17:32.0358 4664 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\Windows\system32\drivers\wacompen.sys
16:17:32.0358 4664 WacomPen - ok
16:17:32.0374 4664 [ 356AFD78A6ED4457169241AC3965230C ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
16:17:32.0374 4664 WANARP - ok
16:17:32.0374 4664 [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
16:17:32.0374 4664 Wanarpv6 - ok
16:17:32.0420 4664 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
16:17:32.0420 4664 WatAdminSvc - ok
16:17:32.0436 4664 [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine C:\Windows\system32\wbengine.exe
16:17:32.0436 4664 wbengine - ok
16:17:32.0452 4664 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
16:17:32.0452 4664 WbioSrvc - ok
16:17:32.0452 4664 [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc C:\Windows\System32\wcncsvc.dll
16:17:32.0467 4664 wcncsvc - ok
16:17:32.0467 4664 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
16:17:32.0467 4664 WcsPlugInService - ok
16:17:32.0467 4664 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\Windows\system32\drivers\wd.sys
16:17:32.0467 4664 Wd - ok
16:17:32.0498 4664 [ 442783E2CB0DA19873B7A63833FF4CB4 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
16:17:32.0514 4664 Wdf01000 - ok
16:17:32.0530 4664 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\Windows\system32\wdi.dll
16:17:32.0530 4664 WdiServiceHost - ok
16:17:32.0530 4664 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\Windows\system32\wdi.dll
16:17:32.0545 4664 WdiSystemHost - ok
16:17:32.0545 4664 [ 3DB6D04E1C64272F8B14EB8BC4616280 ] WebClient C:\Windows\System32\webclnt.dll
16:17:32.0545 4664 WebClient - ok
16:17:32.0545 4664 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\Windows\system32\wecsvc.dll
16:17:32.0545 4664 Wecsvc - ok
16:17:32.0561 4664 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\Windows\System32\wercplsupport.dll
16:17:32.0561 4664 wercplsupport - ok
16:17:32.0592 4664 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\Windows\System32\WerSvc.dll
16:17:32.0592 4664 WerSvc - ok
16:17:32.0592 4664 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
16:17:32.0592 4664 WfpLwf - ok
16:17:32.0608 4664 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\Windows\system32\drivers\wimmount.sys
16:17:32.0608 4664 WIMMount - ok
16:17:32.0608 4664 WinDefend - ok
16:17:32.0608 4664 WinHttpAutoProxySvc - ok
16:17:32.0654 4664 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
16:17:32.0654 4664 Winmgmt - ok
16:17:32.0701 4664 [ BCB1310604AA415C4508708975B3931E ] WinRM C:\Windows\system32\WsmSvc.dll
16:17:32.0701 4664 WinRM - ok
16:17:32.0748 4664 [ FE88B288356E7B47B74B13372ADD906D ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
16:17:32.0748 4664 WinUsb - ok
16:17:32.0764 4664 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\Windows\System32\wlansvc.dll
16:17:32.0764 4664 Wlansvc - ok
16:17:32.0795 4664 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\Windows\system32\DRIVERS\wmiacpi.sys
16:17:32.0795 4664 WmiAcpi - ok
16:17:32.0842 4664 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
16:17:32.0842 4664 wmiApSrv - ok
16:17:32.0873 4664 WMPNetworkSvc - ok
16:17:32.0904 4664 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\Windows\System32\wpcsvc.dll
16:17:32.0904 4664 WPCSvc - ok
16:17:32.0935 4664 [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
16:17:32.0951 4664 WPDBusEnum - ok
16:17:32.0951 4664 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
16:17:32.0951 4664 ws2ifsl - ok
16:17:32.0982 4664 [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc C:\Windows\System32\wscsvc.dll
16:17:32.0982 4664 wscsvc - ok
16:17:32.0982 4664 WSearch - ok
16:17:33.0060 4664 [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv C:\Windows\system32\wuaueng.dll
16:17:33.0091 4664 wuauserv - ok
16:17:33.0107 4664 [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
16:17:33.0107 4664 WudfPf - ok
16:17:33.0122 4664 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
16:17:33.0138 4664 WUDFRd - ok
16:17:33.0138 4664 [ B20F051B03A966392364C83F009F7D17 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
16:17:33.0138 4664 wudfsvc - ok
16:17:33.0169 4664 [ FE90B750AB808FB9DD8FBB428B5FF83B ] WwanSvc C:\Windows\System32\wwansvc.dll
16:17:33.0169 4664 WwanSvc - ok
16:17:33.0185 4664 ================ Scan global ===============================
16:17:33.0185 4664 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll
16:17:33.0216 4664 [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\system32\winsrv.dll
16:17:33.0232 4664 [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\system32\winsrv.dll
16:17:33.0247 4664 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll
16:17:33.0263 4664 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe
16:17:33.0263 4664 [Global] - ok
16:17:33.0263 4664 ================ Scan MBR ==================================
16:17:33.0278 4664 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
16:17:33.0606 4664 \Device\Harddisk0\DR0 - ok
16:17:33.0606 4664 ================ Scan VBR ==================================
16:17:33.0606 4664 [ B8AFA9A728DACCB1B3788372B049F74F ] \Device\Harddisk0\DR0\Partition1
16:17:33.0606 4664 \Device\Harddisk0\DR0\Partition1 - ok
16:17:33.0622 4664 [ E6F9444850967C362EF177844500D1F2 ] \Device\Harddisk0\DR0\Partition2
16:17:33.0622 4664 \Device\Harddisk0\DR0\Partition2 - ok
16:17:33.0637 4664 [ 0F45817D5050E7C05F23D56B53C1C7D1 ] \Device\Harddisk0\DR0\Partition3
16:17:33.0637 4664 \Device\Harddisk0\DR0\Partition3 - ok
16:17:33.0637 4664 ============================================================
16:17:33.0637 4664 Scan finished
16:17:33.0637 4664 ============================================================
16:17:33.0653 4824 Detected object count: 0
16:17:33.0653 4824 Actual detected object count: 0
16:17:42.0904 3468 Deinitialize success
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Zřejmě mám zavirované PC
Zavři ostatní aplikace a prohlížeče, odpoj se od netu a fixni v HJT:
Návod
Vypni rez. ochranu u antiviru a antispywaru,příp. firewall..
Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud budou problémy , spusť ho v nouz. režimu.
Upozornění : Může se stát, že po aplikaci Combofixu a restartu počítače, Windows nenaběhnou , nebo nenajede plocha , budou problémy s připojením, pak znovu restartuj počítač, pokud to nepomůže , po restartu mačkej klávesu F8 a pak zvol poslední známou funkční konfiguraci. , či použij bod obnovy.
Stáhni si CrystalDiskInfo
Spusť program a klikni na Úpravy-Kopírovat. Poté sem vlož pomocí Ctrl+V obsah logu.
Návod
Kód: Vybrat vše
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:newtab
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:newtab
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O4 - HKLM\..\Run: [AdobeCS5.5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [EAM Trial Reset] "C:\Program Files (x86)\EAM-TR.exe" /autoreset
Vypni rez. ochranu u antiviru a antispywaru,příp. firewall..
Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud budou problémy , spusť ho v nouz. režimu.
Upozornění : Může se stát, že po aplikaci Combofixu a restartu počítače, Windows nenaběhnou , nebo nenajede plocha , budou problémy s připojením, pak znovu restartuj počítač, pokud to nepomůže , po restartu mačkej klávesu F8 a pak zvol poslední známou funkční konfiguraci. , či použij bod obnovy.
Stáhni si CrystalDiskInfo
Spusť program a klikni na Úpravy-Kopírovat. Poté sem vlož pomocí Ctrl+V obsah logu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Zřejmě mám zavirované PC
vše fixnuto bez problému HJT
Combo log:
ComboFix 13-06-18.02 - Oraj 19.06.2013 9:47.2.4 - x64
Microsoft Windows 7 Ultimate 6.1.7601.1.1250.420.1029.18.4094.2459 [GMT 2:00]
Spuštěný z: c:\users\Oraj\Desktop\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2013-05-19 do 2013-06-19 )))))))))))))))))))))))))))))))
.
.
2013-06-19 07:51 . 2013-06-19 07:51 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
2013-06-19 07:51 . 2013-06-19 07:51 -------- d-----w- c:\users\Default\AppData\Local\temp
2013-06-19 07:41 . 2013-06-19 07:41 -------- d-----w- c:\users\Oraj\AppData\Local\Adobe
2013-06-19 07:38 . 2013-06-19 07:39 -------- d-----w- c:\program files (x86)\CrystalDiskInfo
2013-06-18 12:31 . 2013-06-18 12:31 -------- d-----w- c:\users\Oraj\AppData\Roaming\Malwarebytes
2013-06-18 12:30 . 2013-06-18 12:30 -------- d-----w- c:\programdata\Malwarebytes
2013-06-18 12:30 . 2013-06-18 12:30 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware
2013-06-18 12:30 . 2013-04-04 12:50 25928 ----a-w- c:\windows\system32\drivers\mbam.sys
2013-06-18 11:03 . 2013-06-18 11:15 -------- d-----w- c:\program files\trend micro
2013-06-18 11:03 . 2013-06-18 11:03 -------- d-----w- C:\rsit
2013-06-18 06:13 . 2013-06-12 03:08 9552976 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{7788DA15-7416-44B2-ADEE-1FEC743D5A3C}\mpengine.dll
2013-06-16 19:04 . 2013-06-17 17:52 -------- d-----w- c:\users\Oraj\AppData\Roaming\vlc
2013-06-16 15:41 . 2013-06-16 15:41 -------- d-----w- c:\programdata\McAfee
2013-06-16 15:28 . 2013-06-16 15:28 -------- d-----w- c:\program files (x86)\Mozilla Maintenance Service
2013-06-13 06:47 . 2013-05-17 01:25 257536 ----a-w- c:\program files (x86)\Internet Explorer\ieproxy.dll
2013-06-12 15:40 . 2013-05-08 06:39 1910632 ----a-w- c:\windows\system32\drivers\tcpip.sys
2013-06-12 11:07 . 2013-06-12 11:07 -------- d-----w- c:\program files (x86)\pazera-software
2013-06-10 20:08 . 1996-07-27 12:02 156160 ----a-w- c:\windows\SysWow64\Medv141n.ocx
2013-06-10 20:08 . 1996-07-27 12:01 51200 ----a-w- c:\windows\SysWow64\MVsr14n.dll
2013-06-10 20:08 . 1996-07-27 12:01 50688 ----a-w- c:\windows\SysWow64\MVtl14n.dll
2013-06-10 20:08 . 1996-07-27 12:01 10240 ----a-w- c:\windows\SysWow64\MVut14n.dll
2013-06-10 20:08 . 1995-03-14 21:13 23056 ----a-w- c:\windows\SysWow64\Pkwdcl.dll
2013-06-10 20:08 . 1996-07-27 12:01 73728 ----a-w- c:\windows\SysWow64\MVmc14n.dll
2013-06-10 20:08 . 1996-07-27 12:01 68608 ----a-w- c:\windows\SysWow64\MVix14n.dll
2013-06-10 20:08 . 1996-07-27 12:01 56320 ----a-w- c:\windows\SysWow64\MVfs14n.dll
2013-06-10 20:08 . 1996-07-27 12:01 32768 ----a-w- c:\windows\SysWow64\MVmg14n.dll
2013-06-10 20:08 . 1996-07-27 12:01 25600 ----a-w- c:\windows\SysWow64\MVbk14n.dll
2013-06-10 20:08 . 1996-07-27 12:01 112128 ----a-w- c:\windows\SysWow64\MVcl14n.dll
2013-06-01 11:00 . 2013-06-01 11:00 -------- d-----w- c:\program files (x86)\Robot Entertainment
2013-05-22 17:25 . 2013-05-22 17:25 -------- d-----w- c:\users\Oraj\AppData\Roaming\TERA
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-06-13 06:48 . 2012-09-04 18:16 75825640 ----a-w- c:\windows\system32\MRT.exe
2013-06-12 10:05 . 2012-10-20 16:10 692104 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2013-06-12 10:05 . 2012-09-05 07:25 71048 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2013-06-11 10:31 . 2012-09-18 19:01 282296 ----a-w- c:\windows\SysWow64\PnkBstrB.xtr
2013-06-11 10:31 . 2012-09-05 07:31 282296 ----a-w- c:\windows\SysWow64\PnkBstrB.exe
2013-06-11 10:30 . 2012-09-05 07:31 215128 ----a-w- c:\windows\SysWow64\PnkBstrB.ex0
2013-05-09 08:59 . 2013-03-01 09:41 189936 ----a-w- c:\windows\system32\drivers\aswVmm.sys
2013-05-09 08:59 . 2013-03-01 09:41 65336 ----a-w- c:\windows\system32\drivers\aswRvrt.sys
2013-05-09 08:59 . 2012-09-04 15:56 378432 ----a-w- c:\windows\system32\drivers\aswSP.sys
2013-05-09 08:59 . 2012-09-04 15:56 72016 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2013-05-09 08:59 . 2012-09-04 15:56 64288 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2013-05-09 08:59 . 2012-09-04 15:56 1025808 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2013-05-09 08:59 . 2012-09-04 15:56 33400 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2013-05-09 08:59 . 2012-09-04 15:56 80816 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2013-05-09 08:58 . 2012-09-04 15:55 41664 ----a-w- c:\windows\avastSS.scr
2013-05-09 08:58 . 2012-09-04 15:56 287840 ----a-w- c:\windows\system32\aswBoot.exe
2013-05-02 00:06 . 2010-11-21 03:27 278800 ------w- c:\windows\system32\MpSigStub.exe
2013-04-13 05:49 . 2013-05-15 07:46 135168 ----a-w- c:\windows\apppatch\AppPatch64\AcXtrnal.dll
2013-04-13 05:49 . 2013-05-15 07:46 308736 ----a-w- c:\windows\apppatch\AppPatch64\AcGenral.dll
2013-04-13 05:49 . 2013-05-15 07:46 350208 ----a-w- c:\windows\apppatch\AppPatch64\AcLayers.dll
2013-04-13 05:49 . 2013-05-15 07:46 111104 ----a-w- c:\windows\apppatch\AppPatch64\acspecfc.dll
2013-04-13 04:45 . 2013-05-15 07:46 474624 ----a-w- c:\windows\apppatch\AcSpecfc.dll
2013-04-13 04:45 . 2013-05-15 07:46 2176512 ----a-w- c:\windows\apppatch\AcGenral.dll
2013-04-12 14:45 . 2013-04-24 06:48 1656680 ----a-w- c:\windows\system32\drivers\ntfs.sys
2013-04-10 06:01 . 2013-05-15 07:46 265064 ----a-w- c:\windows\system32\drivers\dxgmms1.sys
2013-04-10 06:01 . 2013-05-15 07:46 983400 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys
2013-04-10 03:30 . 2013-05-15 07:45 3153920 ----a-w- c:\windows\system32\win32k.sys
2013-04-04 03:35 . 2013-04-23 09:48 95648 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll
2013-03-29 12:09 . 2013-03-29 12:09 226304 ----a-w- c:\windows\system32\elshyph.dll
2013-03-29 12:09 . 2013-03-29 12:09 185344 ----a-w- c:\windows\SysWow64\elshyph.dll
2013-03-29 12:09 . 2013-03-29 12:09 158720 ----a-w- c:\windows\SysWow64\msls31.dll
2013-03-29 12:09 . 2013-03-29 12:09 1054720 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe
2013-03-29 12:09 . 2013-03-29 12:09 719360 ----a-w- c:\windows\SysWow64\mshtmlmedia.dll
2013-03-29 12:09 . 2013-03-29 12:09 523264 ----a-w- c:\windows\SysWow64\vbscript.dll
2013-03-29 12:09 . 2013-03-29 12:09 150528 ----a-w- c:\windows\SysWow64\iexpress.exe
2013-03-29 12:09 . 2013-03-29 12:09 138752 ----a-w- c:\windows\SysWow64\wextract.exe
2013-03-29 12:09 . 2013-03-29 12:09 137216 ----a-w- c:\windows\SysWow64\ieUnatt.exe
2013-03-29 12:09 . 2013-03-29 12:09 12800 ----a-w- c:\windows\SysWow64\mshta.exe
2013-03-29 12:09 . 2013-03-29 12:09 73728 ----a-w- c:\windows\SysWow64\SetIEInstalledDate.exe
2013-03-29 12:09 . 2013-03-29 12:09 61952 ----a-w- c:\windows\SysWow64\tdc.ocx
2013-03-29 12:09 . 2013-03-29 12:09 48640 ----a-w- c:\windows\SysWow64\mshtmler.dll
2013-03-29 12:09 . 2013-03-29 12:09 38400 ----a-w- c:\windows\SysWow64\imgutil.dll
2013-03-29 12:09 . 2013-03-29 12:09 361984 ----a-w- c:\windows\SysWow64\html.iec
2013-03-29 12:09 . 2013-03-29 12:09 110592 ----a-w- c:\windows\SysWow64\IEAdvpack.dll
2013-03-29 12:09 . 2013-03-29 12:09 1441280 ----a-w- c:\windows\SysWow64\inetcpl.cpl
2013-03-29 12:09 . 2013-03-29 12:09 905728 ----a-w- c:\windows\system32\mshtmlmedia.dll
2013-03-29 12:09 . 2013-03-29 12:09 81408 ----a-w- c:\windows\system32\icardie.dll
2013-03-29 12:09 . 2013-03-29 12:09 762368 ----a-w- c:\windows\system32\ieapfltr.dll
2013-03-29 12:09 . 2013-03-29 12:09 452096 ----a-w- c:\windows\system32\dxtmsft.dll
2013-03-29 12:09 . 2013-03-29 12:09 441856 ----a-w- c:\windows\system32\html.iec
2013-03-29 12:09 . 2013-03-29 12:09 281600 ----a-w- c:\windows\system32\dxtrans.dll
2013-03-29 12:09 . 2013-03-29 12:09 270848 ----a-w- c:\windows\system32\iedkcs32.dll
2013-03-29 12:09 . 2013-03-29 12:09 235008 ----a-w- c:\windows\system32\url.dll
2013-03-29 12:09 . 2013-03-29 12:09 23040 ----a-w- c:\windows\SysWow64\licmgr10.dll
2013-03-29 12:09 . 2013-03-29 12:09 216064 ----a-w- c:\windows\system32\msls31.dll
2013-03-29 12:09 . 2013-03-29 12:09 197120 ----a-w- c:\windows\system32\msrating.dll
2013-03-29 12:09 . 2013-03-29 12:09 1400416 ----a-w- c:\windows\system32\ieapfltr.dat
2013-03-29 12:09 . 2013-03-29 12:09 1509376 ----a-w- c:\windows\system32\inetcpl.cpl
2013-03-29 12:09 . 2013-03-29 12:09 97280 ----a-w- c:\windows\system32\mshtmled.dll
2013-03-29 12:09 . 2013-03-29 12:09 92160 ----a-w- c:\windows\system32\SetIEInstalledDate.exe
2013-03-29 12:09 . 2013-03-29 12:09 62976 ----a-w- c:\windows\system32\pngfilt.dll
2013-03-29 12:09 . 2013-03-29 12:09 599552 ----a-w- c:\windows\system32\vbscript.dll
2013-03-29 12:09 . 2013-03-29 12:09 52224 ----a-w- c:\windows\system32\msfeedsbs.dll
2013-03-29 12:09 . 2013-03-29 12:09 51200 ----a-w- c:\windows\system32\imgutil.dll
2013-03-29 12:09 . 2013-03-29 12:09 48640 ----a-w- c:\windows\system32\mshtmler.dll
2013-03-29 12:09 . 2013-03-29 12:09 27648 ----a-w- c:\windows\system32\licmgr10.dll
2013-03-29 12:09 . 2013-03-29 12:09 247296 ----a-w- c:\windows\system32\webcheck.dll
2013-03-29 12:09 . 2013-03-29 12:09 173568 ----a-w- c:\windows\system32\ieUnatt.exe
2013-03-29 12:09 . 2013-03-29 12:09 167424 ----a-w- c:\windows\system32\iexpress.exe
2013-03-29 12:09 . 2013-03-29 12:09 149504 ----a-w- c:\windows\system32\occache.dll
2013-03-29 12:09 . 2013-03-29 12:09 144896 ----a-w- c:\windows\system32\wextract.exe
2013-03-29 12:09 . 2013-03-29 12:09 13824 ----a-w- c:\windows\system32\mshta.exe
2013-03-29 12:09 . 2013-03-29 12:09 136192 ----a-w- c:\windows\system32\iepeers.dll
2013-03-29 12:09 . 2013-03-29 12:09 135680 ----a-w- c:\windows\system32\IEAdvpack.dll
2013-03-29 12:09 . 2013-03-29 12:09 12800 ----a-w- c:\windows\system32\msfeedssync.exe
2013-03-29 12:09 . 2013-03-29 12:09 102912 ----a-w- c:\windows\system32\inseng.dll
2013-03-29 12:08 . 2013-03-29 12:08 77312 ----a-w- c:\windows\system32\tdc.ocx
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"="c:\program files (x86)\DAEMON Tools Lite\DTLite.exe" [2012-04-11 3672384]
"Pando Media Booster"="c:\program files (x86)\Pando Networks\Media Booster\PMB.exe" [2013-01-09 3093624]
"OscarEditor"="c:\program files (x86)\OSCAR Editor X7\OscarEditor.exe" [2012-03-20 3340288]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-21 1475584]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2013-05-09 4858968]
"EPSON PageSTM TrayIcon01"="c:\program files (x86)\EPSON\BSTM\PG\E_L20IC2.EXE" [2010-02-05 181248]
"NBAgent"="c:\program files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe" [2010-03-26 1234216]
"SwitchBoard"="c:\program files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe" [2010-02-19 517096]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
"EnableLinkedConnections"= 1 (0x1)
.
R1 A2DDA;A2 Direct Disk Access Support Driver;c:\program files (x86)\Emsisoft Anti-Malware\a2ddax64.sys;c:\program files (x86)\Emsisoft Anti-Malware\a2ddax64.sys [x]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x]
R3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys;c:\windows\SYSNATIVE\drivers\dmvsc.sys [x]
R3 EagleX64;EagleX64;c:\windows\system32\drivers\EagleX64.sys;c:\windows\SYSNATIVE\drivers\EagleX64.sys [x]
R3 ose64;Office 64 Source Engine;c:\program files\Common Files\Microsoft Shared\Source Engine\OSE.EXE;c:\program files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x]
R3 SwitchBoard;SwitchBoard;c:\program files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe;c:\program files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [x]
R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys;c:\windows\SYSNATIVE\drivers\synth3dvsc.sys [x]
R3 terminpt;Microsoft Remote Desktop Input Driver;c:\windows\system32\drivers\terminpt.sys;c:\windows\SYSNATIVE\drivers\terminpt.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x]
R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys;c:\windows\SYSNATIVE\drivers\tsusbhub.sys [x]
R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys;c:\windows\SYSNATIVE\drivers\rdvgkmd.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
S0 aswRvrt;aswRvrt; [x]
S0 aswVmm;aswVmm; [x]
S1 aswSnx;aswSnx; [x]
S1 aswSP;aswSP; [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys;c:\windows\SYSNATIVE\DRIVERS\dtsoftbus01.sys [x]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys;c:\windows\SYSNATIVE\drivers\aswMonFlt.sys [x]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
S3 usbfilter;AMD USB Filter Driver;c:\windows\system32\DRIVERS\usbfilter.sys;c:\windows\SYSNATIVE\DRIVERS\usbfilter.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2013-06-07 06:04 1165776 ----a-w- c:\program files (x86)\Google\Chrome\Application\27.0.1453.110\Installer\chrmstp.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2013-06-19 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-10-20 10:05]
.
2013-06-19 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2012-11-04 20:46]
.
2013-06-19 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2012-11-04 20:46]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2013-05-09 08:58 133840 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"BCSSync"="c:\program files\Microsoft Office\Office14\BCSSync.exe" [2010-03-13 112512]
"AdobeAAMUpdater-1.0"="c:\program files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2011-03-15 499608]
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
uDefault_Search_URL = hxxp://www.google.com
mDefault_Search_URL = hxxp://www.google.com
mLocal Page = c:\windows\SYSTEM32\blank.htm
mSearch Page = hxxp://www.google.com
mSearch Bar = hxxp://www.google.com
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office14\EXCEL.EXE/3000
TCP: DhcpNameServer = 192.168.2.1
FF - ProfilePath - c:\users\Oraj\AppData\Roaming\Mozilla\Firefox\Profiles\rsqbfnbb.default\
FF - prefs.js: browser.startup.homepage - about:home
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
AddRemove-OpenTTD - d:\instal hry\tyccon\uninstall.exe
AddRemove-PunkBusterSvc - c:\windows\system32\pbsvc_bc2.exe
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\S-1-5-21-2298817069-1754506854-539177474-1000\Software\SecuROM\License information*]
"datasecu"=hex:12,b2,03,ce,58,45,85,f8,c9,03,8c,6b,3d,ca,c2,2b,19,dd,54,df,97,
a5,10,02,16,4e,a3,6b,ba,95,ec,ef,bd,13,7d,9e,2e,09,91,5a,53,c1,0b,88,cc,fa,\
"rkeysecu"=hex:b4,1a,d7,04,bd,87,3a,1b,fa,8c,36,45,66,c9,3c,3c
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_7_700_224_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_7_700_224_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_7_700_224_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_7_700_224_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.11"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2013-06-19 09:53:00
ComboFix-quarantined-files.txt 2013-06-19 07:53
ComboFix2.txt 2013-06-19 07:35
.
Před spuštěním: Volných bajtů: 113 878 872 064
Po spuštění: Volných bajtů: 113 846 517 760
.
- - End Of File - - 202E3943F1F2B41DB35AC9A50A8F9D70
A36C5E4F47E84449FF07ED3517B43A31
Diskinfo:
----------------------------------------------------------------------------
CrystalDiskInfo 5.6.1 (C) 2008-2013 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------
OS : Windows 7 Ultimate SP1 [6.1 Build 7601] (x64)
Date : 2013/06/19 9:59:31
-- Controller Map ----------------------------------------------------------
+ PCI Standardní dvoukanálový řadič IDE [ATA]
+ ATA Channel 0 (0)
- WDC WD1002FAEX-00Y9A0 ATA Device
+ ATA Channel 1 (1)
- HL-DT-ST DVDRAM GH22NS50 ATA Device
+ PCI Standardní dvoukanálový řadič IDE [ATA]
- ATA Channel 0 (0)
- ATA Channel 1 (1)
+ PCI Standardní dvoukanálový řadič IDE [ATA]
- ATA Channel 0 (0)
- ATA Channel 1 (1)
-- Disk List ---------------------------------------------------------------
(1) WDC WD1002FAEX-00Y9A0 : 1000,2 GB [0/0/0, pd1] - wd
----------------------------------------------------------------------------
(1) WDC WD1002FAEX-00Y9A0
----------------------------------------------------------------------------
Model : WDC WD1002FAEX-00Y9A0
Firmware : 05.01D05
Serial Number : WD-WCAW31307753
Disk Size : 1000,2 GB (8,4/137,4/1000,2/1000,2)
Buffer Size : Neznámy údaj
Queue Depth : 32
# of Sectors : 1953525168
Rotation Rate : Neznámy údaj
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ----
Transfer Mode : SATA/600
Power On Hours : 8916 hod.
Power On Count : 1274 krát
Temparature : 38 C (100 F)
Health Status : Dobrý
Features : S.M.A.R.T., AAM, 48bit LBA, NCQ
APM Level : ----
AAM Level : 80FEh [OFF]
-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 200 200 _51 000000000000 Počet chyb čtení
03 172 171 _21 000000001106 Čas na roztočení ploten
04 _99 _99 __0 000000000507 Počet spuštění/zastavení
05 200 200 140 000000000000 Počet přemapovaných sektorů
07 100 253 __0 000000000000 Počet chybných hledání
09 _88 _88 __0 0000000022D4 Hodin v činnosti
0A 100 100 __0 000000000000 Počet opakovaných pokusů o roztočení ploten
0B 100 100 __0 000000000000 Počet pokusů o překalibrování
0C _99 _99 __0 0000000004FA Počet cyklů zapnutí zařízení
C0 200 200 __0 00000000001D Počet vypnutí disku
C1 200 200 __0 0000000004EB Počet cyklů načítání/vymazání
C2 109 105 __0 000000000026 Teplota
C4 200 200 __0 000000000000 Počet udalostí s číslem realokování sektorů
C5 200 200 __0 000000000000 Počet podezřelých sektorů
C6 100 253 __0 000000000000 Počet neopravitelných sektorů
C7 200 200 __0 000000000000 Počet chyb v kontrolním součtu UltraDMA
C8 100 253 __0 000000000000 Počet chyb při zápisu sektorů
-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 427A 3FFF C837 0010 0000 0000 003F 0000 0000 0000
010: 2020 2020 2057 442D 5743 4157 3331 3330 3737 3533
020: 0000 0000 0032 3035 2E30 3144 3035 5744 4320 5744
030: 3130 3032 4641 4558 2D30 3059 3941 3020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 0000 2F00
050: 4001 0000 0000 0007 3FFF 0010 003F FC10 00FB 0110
060: FFFF 0FFF 0000 0007 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 001F 170E 0000 0044 0040
080: 01FE 0000 746B 7761 4123 7469 B441 4123 407F 0055
090: 0055 0000 FFFE 0000 80FE 0000 0000 0000 0000 0000
100: 6DB0 7470 0000 0000 0000 0000 0000 0000 5001 4EE2
110: B046 AFA3 0000 0000 0000 0000 0000 0000 0000 4018
120: 4018 0000 0000 0000 0000 0000 0000 0000 0029 0000
130: 0000 0000 0000 16FE 00E6 0000 0000 0000 0000 0000
140: 0000 0000 0004 0000 0000 0000 0000 0000 0000 0000
150: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 0000 3035 0000 0000 0000
210: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
220: 0000 0000 101E 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0001 1000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 BAA5
-- SMART_READ_DATA ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 2F 00 C8 C8 00 00 00 00 00 00 00 03 27
010: 00 AC AB 06 11 00 00 00 00 00 04 32 00 63 63 07
020: 05 00 00 00 00 00 05 33 00 C8 C8 00 00 00 00 00
030: 00 00 07 2E 00 64 FD 00 00 00 00 00 00 00 09 32
040: 00 58 58 D4 22 00 00 00 00 00 0A 32 00 64 64 00
050: 00 00 00 00 00 00 0B 32 00 64 64 00 00 00 00 00
060: 00 00 0C 32 00 63 63 FA 04 00 00 00 00 00 C0 32
070: 00 C8 C8 1D 00 00 00 00 00 00 C1 32 00 C8 C8 EB
080: 04 00 00 00 00 00 C2 22 00 6D 69 26 00 00 00 00
090: 00 00 C4 32 00 C8 C8 00 00 00 00 00 00 00 C5 32
0A0: 00 C8 C8 00 00 00 00 00 00 00 C6 30 00 64 FD 00
0B0: 00 00 00 00 00 00 C7 32 00 C8 C8 00 00 00 00 00
0C0: 00 00 C8 08 00 64 FD 00 00 00 00 00 00 00 00 00
0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 84 00 28 41 01 7B
170: 03 00 01 00 02 AC 05 00 00 00 00 00 00 00 00 00
180: 00 00 01 04 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 12
-- SMART_READ_THRESHOLD ----------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 33 C8 C8 C8 C8 00 00 00 00 00 00 03 15
010: 00 00 00 00 00 00 00 00 00 00 04 00 00 00 00 00
020: 00 00 00 00 00 00 05 8C 00 00 00 00 00 00 00 00
030: 00 00 07 00 64 64 64 64 00 00 00 00 00 00 09 00
040: 00 00 00 00 00 00 00 00 00 00 0A 00 00 00 00 00
050: 00 00 00 00 00 00 0B 00 00 00 00 00 00 00 00 00
060: 00 00 0C 00 00 00 00 00 00 00 00 00 00 00 C0 00
070: 00 00 00 00 00 00 00 00 00 00 C1 00 00 00 00 00
080: 00 00 00 00 00 00 C2 00 00 00 00 00 00 00 00 00
090: 00 00 C4 00 00 00 00 00 00 00 00 00 00 00 C5 00
0A0: 00 00 00 00 00 00 00 00 00 00 C6 00 00 00 00 00
0B0: 00 00 00 00 00 00 C7 00 00 00 00 00 00 00 00 00
0C0: 00 00 C8 00 00 00 00 00 00 00 00 00 00 00 00 00
0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 0D
Combo log:
ComboFix 13-06-18.02 - Oraj 19.06.2013 9:47.2.4 - x64
Microsoft Windows 7 Ultimate 6.1.7601.1.1250.420.1029.18.4094.2459 [GMT 2:00]
Spuštěný z: c:\users\Oraj\Desktop\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2013-05-19 do 2013-06-19 )))))))))))))))))))))))))))))))
.
.
2013-06-19 07:51 . 2013-06-19 07:51 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
2013-06-19 07:51 . 2013-06-19 07:51 -------- d-----w- c:\users\Default\AppData\Local\temp
2013-06-19 07:41 . 2013-06-19 07:41 -------- d-----w- c:\users\Oraj\AppData\Local\Adobe
2013-06-19 07:38 . 2013-06-19 07:39 -------- d-----w- c:\program files (x86)\CrystalDiskInfo
2013-06-18 12:31 . 2013-06-18 12:31 -------- d-----w- c:\users\Oraj\AppData\Roaming\Malwarebytes
2013-06-18 12:30 . 2013-06-18 12:30 -------- d-----w- c:\programdata\Malwarebytes
2013-06-18 12:30 . 2013-06-18 12:30 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware
2013-06-18 12:30 . 2013-04-04 12:50 25928 ----a-w- c:\windows\system32\drivers\mbam.sys
2013-06-18 11:03 . 2013-06-18 11:15 -------- d-----w- c:\program files\trend micro
2013-06-18 11:03 . 2013-06-18 11:03 -------- d-----w- C:\rsit
2013-06-18 06:13 . 2013-06-12 03:08 9552976 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{7788DA15-7416-44B2-ADEE-1FEC743D5A3C}\mpengine.dll
2013-06-16 19:04 . 2013-06-17 17:52 -------- d-----w- c:\users\Oraj\AppData\Roaming\vlc
2013-06-16 15:41 . 2013-06-16 15:41 -------- d-----w- c:\programdata\McAfee
2013-06-16 15:28 . 2013-06-16 15:28 -------- d-----w- c:\program files (x86)\Mozilla Maintenance Service
2013-06-13 06:47 . 2013-05-17 01:25 257536 ----a-w- c:\program files (x86)\Internet Explorer\ieproxy.dll
2013-06-12 15:40 . 2013-05-08 06:39 1910632 ----a-w- c:\windows\system32\drivers\tcpip.sys
2013-06-12 11:07 . 2013-06-12 11:07 -------- d-----w- c:\program files (x86)\pazera-software
2013-06-10 20:08 . 1996-07-27 12:02 156160 ----a-w- c:\windows\SysWow64\Medv141n.ocx
2013-06-10 20:08 . 1996-07-27 12:01 51200 ----a-w- c:\windows\SysWow64\MVsr14n.dll
2013-06-10 20:08 . 1996-07-27 12:01 50688 ----a-w- c:\windows\SysWow64\MVtl14n.dll
2013-06-10 20:08 . 1996-07-27 12:01 10240 ----a-w- c:\windows\SysWow64\MVut14n.dll
2013-06-10 20:08 . 1995-03-14 21:13 23056 ----a-w- c:\windows\SysWow64\Pkwdcl.dll
2013-06-10 20:08 . 1996-07-27 12:01 73728 ----a-w- c:\windows\SysWow64\MVmc14n.dll
2013-06-10 20:08 . 1996-07-27 12:01 68608 ----a-w- c:\windows\SysWow64\MVix14n.dll
2013-06-10 20:08 . 1996-07-27 12:01 56320 ----a-w- c:\windows\SysWow64\MVfs14n.dll
2013-06-10 20:08 . 1996-07-27 12:01 32768 ----a-w- c:\windows\SysWow64\MVmg14n.dll
2013-06-10 20:08 . 1996-07-27 12:01 25600 ----a-w- c:\windows\SysWow64\MVbk14n.dll
2013-06-10 20:08 . 1996-07-27 12:01 112128 ----a-w- c:\windows\SysWow64\MVcl14n.dll
2013-06-01 11:00 . 2013-06-01 11:00 -------- d-----w- c:\program files (x86)\Robot Entertainment
2013-05-22 17:25 . 2013-05-22 17:25 -------- d-----w- c:\users\Oraj\AppData\Roaming\TERA
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-06-13 06:48 . 2012-09-04 18:16 75825640 ----a-w- c:\windows\system32\MRT.exe
2013-06-12 10:05 . 2012-10-20 16:10 692104 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2013-06-12 10:05 . 2012-09-05 07:25 71048 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2013-06-11 10:31 . 2012-09-18 19:01 282296 ----a-w- c:\windows\SysWow64\PnkBstrB.xtr
2013-06-11 10:31 . 2012-09-05 07:31 282296 ----a-w- c:\windows\SysWow64\PnkBstrB.exe
2013-06-11 10:30 . 2012-09-05 07:31 215128 ----a-w- c:\windows\SysWow64\PnkBstrB.ex0
2013-05-09 08:59 . 2013-03-01 09:41 189936 ----a-w- c:\windows\system32\drivers\aswVmm.sys
2013-05-09 08:59 . 2013-03-01 09:41 65336 ----a-w- c:\windows\system32\drivers\aswRvrt.sys
2013-05-09 08:59 . 2012-09-04 15:56 378432 ----a-w- c:\windows\system32\drivers\aswSP.sys
2013-05-09 08:59 . 2012-09-04 15:56 72016 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2013-05-09 08:59 . 2012-09-04 15:56 64288 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2013-05-09 08:59 . 2012-09-04 15:56 1025808 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2013-05-09 08:59 . 2012-09-04 15:56 33400 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2013-05-09 08:59 . 2012-09-04 15:56 80816 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2013-05-09 08:58 . 2012-09-04 15:55 41664 ----a-w- c:\windows\avastSS.scr
2013-05-09 08:58 . 2012-09-04 15:56 287840 ----a-w- c:\windows\system32\aswBoot.exe
2013-05-02 00:06 . 2010-11-21 03:27 278800 ------w- c:\windows\system32\MpSigStub.exe
2013-04-13 05:49 . 2013-05-15 07:46 135168 ----a-w- c:\windows\apppatch\AppPatch64\AcXtrnal.dll
2013-04-13 05:49 . 2013-05-15 07:46 308736 ----a-w- c:\windows\apppatch\AppPatch64\AcGenral.dll
2013-04-13 05:49 . 2013-05-15 07:46 350208 ----a-w- c:\windows\apppatch\AppPatch64\AcLayers.dll
2013-04-13 05:49 . 2013-05-15 07:46 111104 ----a-w- c:\windows\apppatch\AppPatch64\acspecfc.dll
2013-04-13 04:45 . 2013-05-15 07:46 474624 ----a-w- c:\windows\apppatch\AcSpecfc.dll
2013-04-13 04:45 . 2013-05-15 07:46 2176512 ----a-w- c:\windows\apppatch\AcGenral.dll
2013-04-12 14:45 . 2013-04-24 06:48 1656680 ----a-w- c:\windows\system32\drivers\ntfs.sys
2013-04-10 06:01 . 2013-05-15 07:46 265064 ----a-w- c:\windows\system32\drivers\dxgmms1.sys
2013-04-10 06:01 . 2013-05-15 07:46 983400 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys
2013-04-10 03:30 . 2013-05-15 07:45 3153920 ----a-w- c:\windows\system32\win32k.sys
2013-04-04 03:35 . 2013-04-23 09:48 95648 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll
2013-03-29 12:09 . 2013-03-29 12:09 226304 ----a-w- c:\windows\system32\elshyph.dll
2013-03-29 12:09 . 2013-03-29 12:09 185344 ----a-w- c:\windows\SysWow64\elshyph.dll
2013-03-29 12:09 . 2013-03-29 12:09 158720 ----a-w- c:\windows\SysWow64\msls31.dll
2013-03-29 12:09 . 2013-03-29 12:09 1054720 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe
2013-03-29 12:09 . 2013-03-29 12:09 719360 ----a-w- c:\windows\SysWow64\mshtmlmedia.dll
2013-03-29 12:09 . 2013-03-29 12:09 523264 ----a-w- c:\windows\SysWow64\vbscript.dll
2013-03-29 12:09 . 2013-03-29 12:09 150528 ----a-w- c:\windows\SysWow64\iexpress.exe
2013-03-29 12:09 . 2013-03-29 12:09 138752 ----a-w- c:\windows\SysWow64\wextract.exe
2013-03-29 12:09 . 2013-03-29 12:09 137216 ----a-w- c:\windows\SysWow64\ieUnatt.exe
2013-03-29 12:09 . 2013-03-29 12:09 12800 ----a-w- c:\windows\SysWow64\mshta.exe
2013-03-29 12:09 . 2013-03-29 12:09 73728 ----a-w- c:\windows\SysWow64\SetIEInstalledDate.exe
2013-03-29 12:09 . 2013-03-29 12:09 61952 ----a-w- c:\windows\SysWow64\tdc.ocx
2013-03-29 12:09 . 2013-03-29 12:09 48640 ----a-w- c:\windows\SysWow64\mshtmler.dll
2013-03-29 12:09 . 2013-03-29 12:09 38400 ----a-w- c:\windows\SysWow64\imgutil.dll
2013-03-29 12:09 . 2013-03-29 12:09 361984 ----a-w- c:\windows\SysWow64\html.iec
2013-03-29 12:09 . 2013-03-29 12:09 110592 ----a-w- c:\windows\SysWow64\IEAdvpack.dll
2013-03-29 12:09 . 2013-03-29 12:09 1441280 ----a-w- c:\windows\SysWow64\inetcpl.cpl
2013-03-29 12:09 . 2013-03-29 12:09 905728 ----a-w- c:\windows\system32\mshtmlmedia.dll
2013-03-29 12:09 . 2013-03-29 12:09 81408 ----a-w- c:\windows\system32\icardie.dll
2013-03-29 12:09 . 2013-03-29 12:09 762368 ----a-w- c:\windows\system32\ieapfltr.dll
2013-03-29 12:09 . 2013-03-29 12:09 452096 ----a-w- c:\windows\system32\dxtmsft.dll
2013-03-29 12:09 . 2013-03-29 12:09 441856 ----a-w- c:\windows\system32\html.iec
2013-03-29 12:09 . 2013-03-29 12:09 281600 ----a-w- c:\windows\system32\dxtrans.dll
2013-03-29 12:09 . 2013-03-29 12:09 270848 ----a-w- c:\windows\system32\iedkcs32.dll
2013-03-29 12:09 . 2013-03-29 12:09 235008 ----a-w- c:\windows\system32\url.dll
2013-03-29 12:09 . 2013-03-29 12:09 23040 ----a-w- c:\windows\SysWow64\licmgr10.dll
2013-03-29 12:09 . 2013-03-29 12:09 216064 ----a-w- c:\windows\system32\msls31.dll
2013-03-29 12:09 . 2013-03-29 12:09 197120 ----a-w- c:\windows\system32\msrating.dll
2013-03-29 12:09 . 2013-03-29 12:09 1400416 ----a-w- c:\windows\system32\ieapfltr.dat
2013-03-29 12:09 . 2013-03-29 12:09 1509376 ----a-w- c:\windows\system32\inetcpl.cpl
2013-03-29 12:09 . 2013-03-29 12:09 97280 ----a-w- c:\windows\system32\mshtmled.dll
2013-03-29 12:09 . 2013-03-29 12:09 92160 ----a-w- c:\windows\system32\SetIEInstalledDate.exe
2013-03-29 12:09 . 2013-03-29 12:09 62976 ----a-w- c:\windows\system32\pngfilt.dll
2013-03-29 12:09 . 2013-03-29 12:09 599552 ----a-w- c:\windows\system32\vbscript.dll
2013-03-29 12:09 . 2013-03-29 12:09 52224 ----a-w- c:\windows\system32\msfeedsbs.dll
2013-03-29 12:09 . 2013-03-29 12:09 51200 ----a-w- c:\windows\system32\imgutil.dll
2013-03-29 12:09 . 2013-03-29 12:09 48640 ----a-w- c:\windows\system32\mshtmler.dll
2013-03-29 12:09 . 2013-03-29 12:09 27648 ----a-w- c:\windows\system32\licmgr10.dll
2013-03-29 12:09 . 2013-03-29 12:09 247296 ----a-w- c:\windows\system32\webcheck.dll
2013-03-29 12:09 . 2013-03-29 12:09 173568 ----a-w- c:\windows\system32\ieUnatt.exe
2013-03-29 12:09 . 2013-03-29 12:09 167424 ----a-w- c:\windows\system32\iexpress.exe
2013-03-29 12:09 . 2013-03-29 12:09 149504 ----a-w- c:\windows\system32\occache.dll
2013-03-29 12:09 . 2013-03-29 12:09 144896 ----a-w- c:\windows\system32\wextract.exe
2013-03-29 12:09 . 2013-03-29 12:09 13824 ----a-w- c:\windows\system32\mshta.exe
2013-03-29 12:09 . 2013-03-29 12:09 136192 ----a-w- c:\windows\system32\iepeers.dll
2013-03-29 12:09 . 2013-03-29 12:09 135680 ----a-w- c:\windows\system32\IEAdvpack.dll
2013-03-29 12:09 . 2013-03-29 12:09 12800 ----a-w- c:\windows\system32\msfeedssync.exe
2013-03-29 12:09 . 2013-03-29 12:09 102912 ----a-w- c:\windows\system32\inseng.dll
2013-03-29 12:08 . 2013-03-29 12:08 77312 ----a-w- c:\windows\system32\tdc.ocx
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"="c:\program files (x86)\DAEMON Tools Lite\DTLite.exe" [2012-04-11 3672384]
"Pando Media Booster"="c:\program files (x86)\Pando Networks\Media Booster\PMB.exe" [2013-01-09 3093624]
"OscarEditor"="c:\program files (x86)\OSCAR Editor X7\OscarEditor.exe" [2012-03-20 3340288]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-21 1475584]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2013-05-09 4858968]
"EPSON PageSTM TrayIcon01"="c:\program files (x86)\EPSON\BSTM\PG\E_L20IC2.EXE" [2010-02-05 181248]
"NBAgent"="c:\program files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe" [2010-03-26 1234216]
"SwitchBoard"="c:\program files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe" [2010-02-19 517096]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
"EnableLinkedConnections"= 1 (0x1)
.
R1 A2DDA;A2 Direct Disk Access Support Driver;c:\program files (x86)\Emsisoft Anti-Malware\a2ddax64.sys;c:\program files (x86)\Emsisoft Anti-Malware\a2ddax64.sys [x]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x]
R3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys;c:\windows\SYSNATIVE\drivers\dmvsc.sys [x]
R3 EagleX64;EagleX64;c:\windows\system32\drivers\EagleX64.sys;c:\windows\SYSNATIVE\drivers\EagleX64.sys [x]
R3 ose64;Office 64 Source Engine;c:\program files\Common Files\Microsoft Shared\Source Engine\OSE.EXE;c:\program files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x]
R3 SwitchBoard;SwitchBoard;c:\program files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe;c:\program files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [x]
R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys;c:\windows\SYSNATIVE\drivers\synth3dvsc.sys [x]
R3 terminpt;Microsoft Remote Desktop Input Driver;c:\windows\system32\drivers\terminpt.sys;c:\windows\SYSNATIVE\drivers\terminpt.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x]
R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys;c:\windows\SYSNATIVE\drivers\tsusbhub.sys [x]
R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys;c:\windows\SYSNATIVE\drivers\rdvgkmd.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
S0 aswRvrt;aswRvrt; [x]
S0 aswVmm;aswVmm; [x]
S1 aswSnx;aswSnx; [x]
S1 aswSP;aswSP; [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys;c:\windows\SYSNATIVE\DRIVERS\dtsoftbus01.sys [x]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys;c:\windows\SYSNATIVE\drivers\aswMonFlt.sys [x]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
S3 usbfilter;AMD USB Filter Driver;c:\windows\system32\DRIVERS\usbfilter.sys;c:\windows\SYSNATIVE\DRIVERS\usbfilter.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2013-06-07 06:04 1165776 ----a-w- c:\program files (x86)\Google\Chrome\Application\27.0.1453.110\Installer\chrmstp.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2013-06-19 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-10-20 10:05]
.
2013-06-19 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2012-11-04 20:46]
.
2013-06-19 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2012-11-04 20:46]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2013-05-09 08:58 133840 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"BCSSync"="c:\program files\Microsoft Office\Office14\BCSSync.exe" [2010-03-13 112512]
"AdobeAAMUpdater-1.0"="c:\program files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2011-03-15 499608]
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
uDefault_Search_URL = hxxp://www.google.com
mDefault_Search_URL = hxxp://www.google.com
mLocal Page = c:\windows\SYSTEM32\blank.htm
mSearch Page = hxxp://www.google.com
mSearch Bar = hxxp://www.google.com
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office14\EXCEL.EXE/3000
TCP: DhcpNameServer = 192.168.2.1
FF - ProfilePath - c:\users\Oraj\AppData\Roaming\Mozilla\Firefox\Profiles\rsqbfnbb.default\
FF - prefs.js: browser.startup.homepage - about:home
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
AddRemove-OpenTTD - d:\instal hry\tyccon\uninstall.exe
AddRemove-PunkBusterSvc - c:\windows\system32\pbsvc_bc2.exe
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\S-1-5-21-2298817069-1754506854-539177474-1000\Software\SecuROM\License information*]
"datasecu"=hex:12,b2,03,ce,58,45,85,f8,c9,03,8c,6b,3d,ca,c2,2b,19,dd,54,df,97,
a5,10,02,16,4e,a3,6b,ba,95,ec,ef,bd,13,7d,9e,2e,09,91,5a,53,c1,0b,88,cc,fa,\
"rkeysecu"=hex:b4,1a,d7,04,bd,87,3a,1b,fa,8c,36,45,66,c9,3c,3c
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_7_700_224_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_7_700_224_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_7_700_224_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_7_700_224_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.11"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2013-06-19 09:53:00
ComboFix-quarantined-files.txt 2013-06-19 07:53
ComboFix2.txt 2013-06-19 07:35
.
Před spuštěním: Volných bajtů: 113 878 872 064
Po spuštění: Volných bajtů: 113 846 517 760
.
- - End Of File - - 202E3943F1F2B41DB35AC9A50A8F9D70
A36C5E4F47E84449FF07ED3517B43A31
Diskinfo:
----------------------------------------------------------------------------
CrystalDiskInfo 5.6.1 (C) 2008-2013 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------
OS : Windows 7 Ultimate SP1 [6.1 Build 7601] (x64)
Date : 2013/06/19 9:59:31
-- Controller Map ----------------------------------------------------------
+ PCI Standardní dvoukanálový řadič IDE [ATA]
+ ATA Channel 0 (0)
- WDC WD1002FAEX-00Y9A0 ATA Device
+ ATA Channel 1 (1)
- HL-DT-ST DVDRAM GH22NS50 ATA Device
+ PCI Standardní dvoukanálový řadič IDE [ATA]
- ATA Channel 0 (0)
- ATA Channel 1 (1)
+ PCI Standardní dvoukanálový řadič IDE [ATA]
- ATA Channel 0 (0)
- ATA Channel 1 (1)
-- Disk List ---------------------------------------------------------------
(1) WDC WD1002FAEX-00Y9A0 : 1000,2 GB [0/0/0, pd1] - wd
----------------------------------------------------------------------------
(1) WDC WD1002FAEX-00Y9A0
----------------------------------------------------------------------------
Model : WDC WD1002FAEX-00Y9A0
Firmware : 05.01D05
Serial Number : WD-WCAW31307753
Disk Size : 1000,2 GB (8,4/137,4/1000,2/1000,2)
Buffer Size : Neznámy údaj
Queue Depth : 32
# of Sectors : 1953525168
Rotation Rate : Neznámy údaj
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ----
Transfer Mode : SATA/600
Power On Hours : 8916 hod.
Power On Count : 1274 krát
Temparature : 38 C (100 F)
Health Status : Dobrý
Features : S.M.A.R.T., AAM, 48bit LBA, NCQ
APM Level : ----
AAM Level : 80FEh [OFF]
-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 200 200 _51 000000000000 Počet chyb čtení
03 172 171 _21 000000001106 Čas na roztočení ploten
04 _99 _99 __0 000000000507 Počet spuštění/zastavení
05 200 200 140 000000000000 Počet přemapovaných sektorů
07 100 253 __0 000000000000 Počet chybných hledání
09 _88 _88 __0 0000000022D4 Hodin v činnosti
0A 100 100 __0 000000000000 Počet opakovaných pokusů o roztočení ploten
0B 100 100 __0 000000000000 Počet pokusů o překalibrování
0C _99 _99 __0 0000000004FA Počet cyklů zapnutí zařízení
C0 200 200 __0 00000000001D Počet vypnutí disku
C1 200 200 __0 0000000004EB Počet cyklů načítání/vymazání
C2 109 105 __0 000000000026 Teplota
C4 200 200 __0 000000000000 Počet udalostí s číslem realokování sektorů
C5 200 200 __0 000000000000 Počet podezřelých sektorů
C6 100 253 __0 000000000000 Počet neopravitelných sektorů
C7 200 200 __0 000000000000 Počet chyb v kontrolním součtu UltraDMA
C8 100 253 __0 000000000000 Počet chyb při zápisu sektorů
-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 427A 3FFF C837 0010 0000 0000 003F 0000 0000 0000
010: 2020 2020 2057 442D 5743 4157 3331 3330 3737 3533
020: 0000 0000 0032 3035 2E30 3144 3035 5744 4320 5744
030: 3130 3032 4641 4558 2D30 3059 3941 3020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 0000 2F00
050: 4001 0000 0000 0007 3FFF 0010 003F FC10 00FB 0110
060: FFFF 0FFF 0000 0007 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 001F 170E 0000 0044 0040
080: 01FE 0000 746B 7761 4123 7469 B441 4123 407F 0055
090: 0055 0000 FFFE 0000 80FE 0000 0000 0000 0000 0000
100: 6DB0 7470 0000 0000 0000 0000 0000 0000 5001 4EE2
110: B046 AFA3 0000 0000 0000 0000 0000 0000 0000 4018
120: 4018 0000 0000 0000 0000 0000 0000 0000 0029 0000
130: 0000 0000 0000 16FE 00E6 0000 0000 0000 0000 0000
140: 0000 0000 0004 0000 0000 0000 0000 0000 0000 0000
150: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 0000 3035 0000 0000 0000
210: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
220: 0000 0000 101E 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0001 1000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 BAA5
-- SMART_READ_DATA ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 2F 00 C8 C8 00 00 00 00 00 00 00 03 27
010: 00 AC AB 06 11 00 00 00 00 00 04 32 00 63 63 07
020: 05 00 00 00 00 00 05 33 00 C8 C8 00 00 00 00 00
030: 00 00 07 2E 00 64 FD 00 00 00 00 00 00 00 09 32
040: 00 58 58 D4 22 00 00 00 00 00 0A 32 00 64 64 00
050: 00 00 00 00 00 00 0B 32 00 64 64 00 00 00 00 00
060: 00 00 0C 32 00 63 63 FA 04 00 00 00 00 00 C0 32
070: 00 C8 C8 1D 00 00 00 00 00 00 C1 32 00 C8 C8 EB
080: 04 00 00 00 00 00 C2 22 00 6D 69 26 00 00 00 00
090: 00 00 C4 32 00 C8 C8 00 00 00 00 00 00 00 C5 32
0A0: 00 C8 C8 00 00 00 00 00 00 00 C6 30 00 64 FD 00
0B0: 00 00 00 00 00 00 C7 32 00 C8 C8 00 00 00 00 00
0C0: 00 00 C8 08 00 64 FD 00 00 00 00 00 00 00 00 00
0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 84 00 28 41 01 7B
170: 03 00 01 00 02 AC 05 00 00 00 00 00 00 00 00 00
180: 00 00 01 04 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 12
-- SMART_READ_THRESHOLD ----------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 33 C8 C8 C8 C8 00 00 00 00 00 00 03 15
010: 00 00 00 00 00 00 00 00 00 00 04 00 00 00 00 00
020: 00 00 00 00 00 00 05 8C 00 00 00 00 00 00 00 00
030: 00 00 07 00 64 64 64 64 00 00 00 00 00 00 09 00
040: 00 00 00 00 00 00 00 00 00 00 0A 00 00 00 00 00
050: 00 00 00 00 00 00 0B 00 00 00 00 00 00 00 00 00
060: 00 00 0C 00 00 00 00 00 00 00 00 00 00 00 C0 00
070: 00 00 00 00 00 00 00 00 00 00 C1 00 00 00 00 00
080: 00 00 00 00 00 00 C2 00 00 00 00 00 00 00 00 00
090: 00 00 C4 00 00 00 00 00 00 00 00 00 00 00 C5 00
0A0: 00 00 00 00 00 00 00 00 00 00 C6 00 00 00 00 00
0B0: 00 00 00 00 00 00 C7 00 00 00 00 00 00 00 00 00
0C0: 00 00 C8 00 00 00 00 00 00 00 00 00 00 00 00 00
0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 0D
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 67 hostů