HiJackThis LOG

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
Mejssi
nováček
Příspěvky: 15
Registrován: říjen 13
Pohlaví: Žena
Stav:
Offline

HiJackThis LOG

Příspěvekod Mejssi » 20 úno 2014 20:14

Problém zde (viewtopic.php?f=47&t=127370)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 19:35:29, on 20. 2. 2014
Platform: Unknown Windows (WinNT 6.02.1008 SP1)
MSIE: Internet Explorer v10.0 (10.00.9200.16798)
Boot mode: Normal

Running processes:
C:\Users\Irena\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Users\Irena\AppData\Local\Akamai\netsession_win.exe
C:\Users\Irena\AppData\Local\Akamai\netsession_win.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\windows\SysWOW64\WScript.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe
C:\windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe
C:\Users\Irena\Downloads\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://search.us.com/v/2/?guid={08FF6AC4-F434-4269-BA96-13FD5D2A81B7}&serpv=17
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=HPDTDFJS
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: LinkSwift - {323420b6-65e5-4657-8106-a27392d4d4aa} - C:\Program Files (x86)\LinkSwift\LinkSwiftbho.dll
O2 - BHO: Microsoft Web Test Recorder 12.0 Helper - {432dd630-7e03-4c97-9d62-b99f52df4fc2} - C:\Program Files (x86)\Microsoft Visual Studio 12.0\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O2 - BHO: Shopping Suggestion. - {e7e8ed77-2fba-4ec6-bc07-65de4de6709f} - mscoree.dll (file missing)
O3 - Toolbar: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [CLMLServer_For_P2G8] "c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
O4 - HKLM\..\Run: [CLVirtualDrive] "c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe" /R
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [Winpopup LAN Messenger] "C:\Program Files (x86)\Winpopup LAN Messenger\WinPopup.exe" RUNALL
O4 - HKLM\..\Run: [StartCCC] "c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [BlueStacks Agent] C:\Program Files (x86)\BlueStacks\HD-Agent.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [msjhohhrSrv] "C:\windows\system32\msjhohhr.vbe" msoaact msimyel
O4 - HKLM\..\Run: [MSStp] C:\windows\system32\msstp.vbe
O4 - HKLM\..\Run: [mncdaousSrv] C:\windows\inf\mncdaous.vbe
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [uTorrent] "C:\Users\Irena\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Irena\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Irena\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Google Update] "C:\Users\Irena\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [UpdateChecker] C:\Program Files (x86)\SqueakyChocolate\UpdateChecker\UpdateCheckerApp.exe
O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_970073ABCF4380D98390C55D3E12765D] "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window
O4 - HKCU\..\Run: [Akamai NetSession Interface] "C:\Users\Irena\AppData\Local\Akamai\netsession_win.exe"
O4 - Startup: Mozilla Firefox.lnk = C:\Program Files (x86)\Mozilla Firefox\firefox.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O13 - Gopher Prefix:
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O20 - AppInit_DLLs:
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\windows\system32\atiesrxx.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: BlueStacks Android Service (BstHdAndroidSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-Service.exe
O23 - Service: BlueStacks Log Rotator Service (BstHdLogRotatorSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
O23 - Service: @%ProgramFiles%\Windows Identity Foundation\v3.5\c2wtsres.dll,-1000 (c2wts) - Unknown owner - C:\Program Files (x86)\Windows Identity Foundation\v3.5\c2wtshost.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Connected Remote Service (HPConnectedRemote) - Hewlett-Packard - c:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPConnectedRemoteService.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - c:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: LMIGuardianSvc - LogMeIn, Inc. - C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McMyAdmin - Unknown owner - C:\Users\Irena\Desktop\Kluci\Patosik\MCMyServerAdmin\MCMA_Service.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: RzKLService - Razer Inc. - C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10122 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: Util LinkSwift - Unknown owner - C:\Program Files (x86)\LinkSwift\bin\utilLinkSwift.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: wampapache - Apache Software Foundation - c:\wamp\bin\apache\apache2.4.4\bin\httpd.exe
O23 - Service: wampmysqld - Unknown owner - c:\wamp1\bin\mysql\mysql5.5.24\bin\mysqld.exe
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 14875 bytes

Reklama
Uživatelský avatar
fredik
člen Security týmu
Master Level 7
Master Level 7
Příspěvky: 4680
Registrován: červenec 06
Pohlaví: Muž
Stav:
Offline

Re: HiJackThis LOG

Příspěvekod fredik » 20 úno 2014 22:13

Máš starší verzi HJT, tak si stáhni aktuální.

Stáhni AdwCleaner (by Xplode)
Ulož si ho na plochu
Ukonči všechny programy , okna a prohlížeče
Spusť program poklepáním a klikni na „Prohledat-Scan“
Po skenu se objeví log ( jinak je uložen systémovém disku jako AdwCleaner[R?].txt), celý jeho obsah sem vlož.

Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Provést rychlý sken a klikni na tlačítko Skenovat
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Zobrazit výsledky
- pak zvol možnost uložit log a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.
It may take a while to get a response, because the "HJT Team" are very busy. Please, be patient, these people are volunteers. They will help you out, as soon as possible.
Pokud máte nějaký problém, tak mi neposílejte SZ/PM zprávy s logy a dejte je do fóra. Na tyto SZ není možno odpovědět

Uživatelský avatar
Mejssi
nováček
Příspěvky: 15
Registrován: říjen 13
Pohlaví: Žena
Stav:
Offline

Re: HiJackThis LOG

Příspěvekod Mejssi » 22 úno 2014 10:23

LOG z AdwCleaner:

# AdwCleaner v3.019 - Report created 22/02/2014 at 09:46:27
# Updated 17/02/2014 by Xplode
# Operating System : Windows 8 Service Pack 1 (64 bits)
# Username : Irena - RODINKA
# Running from : C:\Users\Irena\Downloads\adwcleaner.exe
# Option : Scan

***** [ Services ] *****


***** [ Files / Folders ] *****

File Found : C:\Users\Irena\AppData\Roaming\Mozilla\Firefox\Profiles\fkvfauu8.default-1383028070246\invalidprefs.js
File Found : C:\windows\System32\roboot64.exe
Folder Found : C:\Users\Irena\AppData\Local\Google\Chrome\User Data\Default\Extensions\cknghehebaconkajgiobncfleofebcog
Folder Found C:\Program Files (x86)\LinkSwift
Folder Found C:\Program Files (x86)\optimizer pro
Folder Found C:\Program Files (x86)\TechSmith
Folder Found C:\ProgramData\TechSmith
Folder Found C:\Users\Irena\AppData\Local\Mobogenie
Folder Found C:\Users\Irena\AppData\Local\SwvUpdater
Folder Found C:\Users\Irena\AppData\Local\TechSmith
Folder Found C:\Users\Irena\AppData\Roaming\OpenCandy
Folder Found C:\Users\Irena\AppData\Roaming\Systweak
Folder Found C:\Users\Irena\Documents\optimizer pro
Folder Found C:\windows\SysWOW64\AI_RecycleBin

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Found : HKCU\Software\APN PIP
Key Found : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Key Found : HKCU\Software\AppDataLow\Software\SmartBar
Key Found : HKCU\Software\BI
Key Found : HKCU\Software\caphyon
Key Found : HKCU\Software\Conduit
Key Found : HKCU\Software\InstallCore
Key Found : HKCU\Software\LinkSwift
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{323420B6-65E5-4657-8106-A27392D4D4AA}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{323420B6-65E5-4657-8106-A27392D4D4AA}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DEDAF650-12B8-48F5-A843-BBA100716106}
Key Found : HKCU\Software\Popajar
Key Found : HKCU\Software\SmileysWeLove
Key Found : HKCU\Software\Softonic
Key Found : HKCU\Software\systweak
Key Found : [x64] HKCU\Software\APN PIP
Key Found : [x64] HKCU\Software\BI
Key Found : [x64] HKCU\Software\caphyon
Key Found : [x64] HKCU\Software\Conduit
Key Found : [x64] HKCU\Software\InstallCore
Key Found : [x64] HKCU\Software\LinkSwift
Key Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Key Found : [x64] HKCU\Software\Popajar
Key Found : [x64] HKCU\Software\SmileysWeLove
Key Found : [x64] HKCU\Software\Softonic
Key Found : [x64] HKCU\Software\systweak
Key Found : HKLM\Software\caphyon
Key Found : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{323420B6-65E5-4657-8106-A27392D4D4AA}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Key Found : HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{A0EE0278-2986-4E5A-884E-A3BF0357E476}
Key Found : HKLM\SOFTWARE\Classes\Updater.AmiUpd
Key Found : HKLM\SOFTWARE\Classes\Updater.AmiUpd.1
Key Found : HKLM\Software\Conduit
Key Found : HKLM\Software\LinkSwift
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{323420B6-65E5-4657-8106-A27392D4D4AA}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKLM\Software\PIP
Key Found : [x64] HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Key Found : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\LinkSwift
Value Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [UpdateChecker]

***** [ Browsers ] *****

-\\ Internet Explorer v10.0.9200.16798


-\\ Mozilla Firefox v27.0.1 (cs)

[ File : C:\Users\Irena\AppData\Roaming\Mozilla\Firefox\Profiles\fkvfauu8.default-1383028070246\prefs.js ]


-\\ Google Chrome v33.0.1750.117

[ File : C:\Users\Irena\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [5314 octets] - [22/02/2014 09:46:27]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [5374 octets] ##########

A Log z Malwarebytes' Anti-Malware:

Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware.) 1.75.0.1300
http://www.malwarebytes.org

Verze: v2014.02.22.02

Windows 8 Service Pack 1 x64 NTFS
Internet Explorer 10.0.9200.16798
Irena :: RODINKA [administrátor]

Ochrana: Povolena

22. 2. 2014 10:03:27
mbam-log-2014-02-22 (10-03-27).txt

Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 232613
Uplynulý čas: 5 minut, 42 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 7
HKLM\SYSTEM\CurrentControlSet\Services\Update LinkSwift (PUP.Optional.LinkSwift.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SqueakyChocolate, LLC UpdateChecker (PUP.Optional.SqueakyChocolate.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{e7e8ed77-2fba-4ec6-bc07-65de4de6709f} (PUP.Optional.ShoppingSuggestion.A) -> Nebyla provedena žádná instrukce.
HKCR\CLSID\{e7e8ed77-2fba-4ec6-bc07-65de4de6709f} (PUP.Optional.ShoppingSuggestion.A) -> Nebyla provedena žádná instrukce.
HKCR\ScriptInjector.AddOnIE (PUP.Optional.ShoppingSuggestion.A) -> Nebyla provedena žádná instrukce.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{E7E8ED77-2FBA-4EC6-BC07-65DE4DE6709F} (PUP.Optional.ShoppingSuggestion.A) -> Nebyla provedena žádná instrukce.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{E7E8ED77-2FBA-4EC6-BC07-65DE4DE6709F} (PUP.Optional.ShoppingSuggestion.A) -> Nebyla provedena žádná instrukce.

Nalezené hodnoty v registru: 2
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|MSStp (Malware.Trace) -> Data: C:\windows\system32\msstp.vbe -> Přesun do karantény a smazání se zdařilo.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|msjhohhrSrv (Trojan.Script) -> Data: "C:\windows\system32\msjhohhr.vbe" msoaact msimyel -> Přesun do karantény a smazání se zdařilo.

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 6
C:\Program Files (x86)\SqueakyChocolate\UpdateChecker (PUP.Optional.SqueakyChocolate.A) -> Nebyla provedena žádná instrukce.
C:\Users\Irena\AppData\Local\Google\Chrome\User Data\Default\Extensions\odpccdgkmiicgocepijnaeihjnjnomca (PUP.Optional.LinkSwift.A) -> Nebyla provedena žádná instrukce.
C:\Users\Irena\AppData\Local\Google\Chrome\User Data\Default\Extensions\odpccdgkmiicgocepijnaeihjnjnomca\1.0.0_0 (PUP.Optional.LinkSwift.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\Company\NewProduct (Backdoor.Agent.CoGen) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\Inf\mncdaous (Trojan.Agent.BCM) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\Inf\mncdaous\bitstreams (Trojan.Agent.BCM) -> Přesun do karantény a smazání se zdařilo.

Nalezené soubory: 40
C:\Users\Irena\Downloads\SoftonicDownloader_for_gimp-paint-studio.exe (PUP.Optional.Softonic.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\Shopping Suggestion\Shopping Suggestion.dll (PUP.Optional.ShoppingSuggestion.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SqueakyChocolate\UpdateChecker\System.Net.Json.dll (PUP.Optional.SqueakyChocolate.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SqueakyChocolate\UpdateChecker\uninstall.exe (PUP.Optional.SqueakyChocolate.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SqueakyChocolate\UpdateChecker\UpdateCheckerApp.exe (PUP.Optional.SqueakyChocolate.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SqueakyChocolate\UpdateChecker\UpdateNotifier.exe (PUP.Optional.SqueakyChocolate.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SqueakyChocolate\UpdateChecker\UpdaterLibrary.dll (PUP.Optional.SqueakyChocolate.A) -> Nebyla provedena žádná instrukce.
C:\Users\Irena\AppData\Local\Google\Chrome\User Data\Default\Extensions\odpccdgkmiicgocepijnaeihjnjnomca\1.0.0_0\background.js (PUP.Optional.LinkSwift.A) -> Nebyla provedena žádná instrukce.
C:\Users\Irena\AppData\Local\Google\Chrome\User Data\Default\Extensions\odpccdgkmiicgocepijnaeihjnjnomca\1.0.0_0\content.js (PUP.Optional.LinkSwift.A) -> Nebyla provedena žádná instrukce.
C:\Users\Irena\AppData\Local\Google\Chrome\User Data\Default\Extensions\odpccdgkmiicgocepijnaeihjnjnomca\1.0.0_0\icon.png (PUP.Optional.LinkSwift.A) -> Nebyla provedena žádná instrukce.
C:\Users\Irena\AppData\Local\Google\Chrome\User Data\Default\Extensions\odpccdgkmiicgocepijnaeihjnjnomca\1.0.0_0\manifest.json (PUP.Optional.LinkSwift.A) -> Nebyla provedena žádná instrukce.
C:\Windows\System32\msstp.vbe (Malware.Trace) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\SysWOW64\msstp.vbe (Malware.Trace) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\System32\msjhohhr.vbe (Trojan.Script) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\System32\msoaact.vbe (Trojan.Script) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\SysWOW64\msjhohhr.vbe (Trojan.Script) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\SysWOW64\msoaact.vbe (Trojan.Script) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files (x86)\Company\NewProduct\Uninstall.ini (Backdoor.Agent.CoGen) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files (x86)\Company\NewProduct\early_autumn_morning-1600x1200.jpg (Backdoor.Agent.CoGen) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files (x86)\Company\NewProduct\green_hyundai-1600x1200.jpg (Backdoor.Agent.CoGen) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files (x86)\Company\NewProduct\morning_on_the_lake_2-1600x1200.jpg (Backdoor.Agent.CoGen) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files (x86)\Company\NewProduct\mount_rainier-1600x1200.jpg (Backdoor.Agent.CoGen) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files (x86)\Company\NewProduct\path_in_the_park-1600x1200.jpg (Backdoor.Agent.CoGen) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files (x86)\Company\NewProduct\point_reyes-1600x1200.jpg (Backdoor.Agent.CoGen) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files (x86)\Company\NewProduct\sunlight_painting-1366x768.jpg (Backdoor.Agent.CoGen) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files (x86)\Company\NewProduct\Uninstall.exe (Backdoor.Agent.CoGen) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\Inf\mncdaous\diablo130302.cl (Trojan.Agent.BCM) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\Inf\mncdaous\diakgcn121016.cl (Trojan.Agent.BCM) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\Inf\mncdaous\libcurl-4.dll (Trojan.Agent.BCM) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\Inf\mncdaous\libeay32.dll (Trojan.Agent.BCM) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\Inf\mncdaous\libidn-11.dll (Trojan.Agent.BCM) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\Inf\mncdaous\librtmp.dll (Trojan.Agent.BCM) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\Inf\mncdaous\libssh2.dll (Trojan.Agent.BCM) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\Inf\mncdaous\mncdaous.exe (Trojan.Agent.BCM) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\Inf\mncdaous\phatk121016.cl (Trojan.Agent.BCM) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\Inf\mncdaous\poclbm130302.cl (Trojan.Agent.BCM) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\Inf\mncdaous\scrypt130511.cl (Trojan.Agent.BCM) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\Inf\mncdaous\ssleay32.dll (Trojan.Agent.BCM) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\Inf\mncdaous\zlib1.dll (Trojan.Agent.BCM) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\Inf\mncdaous\bitstreams\fpgaminer_top_fixed7_197MHz.ncd (Trojan.Agent.BCM) -> Přesun do karantény a smazání se zdařilo.

(konec)

PS: Co mám dělat dále? Všechny infikovaný škůdci jsou v karanténě, mám je odstranit?... Děkuji předem za odpověď :)
Naposledy upravil(a) Mejssi dne 22 úno 2014 10:36, celkem upraveno 1 x.

Uživatelský avatar
Mejssi
nováček
Příspěvky: 15
Registrován: říjen 13
Pohlaví: Žena
Stav:
Offline

Re: HiJackThis LOG

Příspěvekod Mejssi » 22 úno 2014 10:24

Jinak už se neukazuje při startu pc žádná tabulka, že avast zablokoval stránku... :)

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43072
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: HiJackThis LOG

Příspěvekod jaro3 » 22 úno 2014 11:07

Spusť znovu AdwCleaner (u Windows Vista či Windows7, klikni na AdwCleaner pravým a vyber „Spustit jako správce
Klikni na „ Vymazat-Clean
Program provede opravu, po automatickém restartu neukáže log (C:\AdwCleaner [S?].txt) , jeho obsah sem celý vlož.

Stáhni si Junkware Removal Tool by Thisisu

na svojí plochu.

Deaktivuj si svůj antivirový program. Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.

. spusť znovu MbAM a dej Scan
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Ukaž výsledky
- ujisti se že máš zatrhnuté všechny vypsané nálezy a klikni na tlačítko Odstranit označené
- když skončí odstraňování tak se ti zobrazí log, tak ho sem dej.
- pak zvol v programu OK a pak program ukonči přes Exit
Můžeš sem pak vložit nový log z MbAM.

Stáhni si RogueKiller by Adlice Software
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit

-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
Mejssi
nováček
Příspěvky: 15
Registrován: říjen 13
Pohlaví: Žena
Stav:
Offline

Re: HiJackThis LOG

Příspěvekod Mejssi » 22 úno 2014 14:56

Dobrý den, udělala jsem všechno co jste napsal. Vkládám logy:

LOG AdwCleaner:

# AdwCleaner v3.019 - Report created 22/02/2014 at 09:53:55
# Updated 17/02/2014 by Xplode
# Operating System : Windows 8 Service Pack 1 (64 bits)
# Username : Irena - RODINKA
# Running from : C:\Users\Irena\Downloads\adwcleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\TechSmith
Folder Deleted : C:\Program Files (x86)\LinkSwift
Folder Deleted : C:\Program Files (x86)\optimizer pro
Folder Deleted : C:\Program Files (x86)\TechSmith
Folder Deleted : C:\windows\SysWOW64\AI_RecycleBin
Folder Deleted : C:\Users\Irena\AppData\Local\Mobogenie
Folder Deleted : C:\Users\Irena\AppData\Local\SwvUpdater
Folder Deleted : C:\Users\Irena\AppData\Local\TechSmith
Folder Deleted : C:\Users\Irena\AppData\Roaming\OpenCandy
Folder Deleted : C:\Users\Irena\AppData\Roaming\Systweak
Folder Deleted : C:\Users\Irena\Documents\optimizer pro
Folder Deleted : C:\Users\Irena\AppData\Local\Google\Chrome\User Data\Default\Extensions\cknghehebaconkajgiobncfleofebcog
File Deleted : C:\windows\System32\roboot64.exe
File Deleted : C:\Users\Irena\AppData\Roaming\Mozilla\Firefox\Profiles\fkvfauu8.default-1383028070246\invalidprefs.js

***** [ Shortcuts ] *****


***** [ Registry ] *****

Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [UpdateChecker]
Key Deleted : HKLM\SOFTWARE\Classes\Updater.AmiUpd
Key Deleted : HKLM\SOFTWARE\Classes\Updater.AmiUpd.1
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{323420B6-65E5-4657-8106-A27392D4D4AA}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A0EE0278-2986-4E5A-884E-A3BF0357E476}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{323420B6-65E5-4657-8106-A27392D4D4AA}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{323420B6-65E5-4657-8106-A27392D4D4AA}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DEDAF650-12B8-48F5-A843-BBA100716106}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{323420B6-65E5-4657-8106-A27392D4D4AA}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Key Deleted : HKCU\Software\APN PIP
Key Deleted : HKCU\Software\BI
Key Deleted : HKCU\Software\caphyon
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\InstallCore
Key Deleted : HKCU\Software\LinkSwift
Key Deleted : HKCU\Software\Popajar
Key Deleted : HKCU\Software\SmileysWeLove
Key Deleted : HKCU\Software\Softonic
Key Deleted : HKCU\Software\systweak
Key Deleted : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Key Deleted : HKCU\Software\AppDataLow\Software\SmartBar
Key Deleted : HKLM\Software\caphyon
Key Deleted : HKLM\Software\Conduit
Key Deleted : HKLM\Software\LinkSwift
Key Deleted : HKLM\Software\PIP
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\LinkSwift

***** [ Browsers ] *****

-\\ Internet Explorer v10.0.9200.16798


-\\ Mozilla Firefox v27.0.1 (cs)

[ File : C:\Users\Irena\AppData\Roaming\Mozilla\Firefox\Profiles\fkvfauu8.default-1383028070246\prefs.js ]


-\\ Google Chrome v33.0.1750.117

[ File : C:\Users\Irena\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [5522 octets] - [22/02/2014 09:46:27]
AdwCleaner[S0].txt - [5025 octets] - [22/02/2014 09:53:55]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [5085 octets] ##########


LOG z JRT:

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.2 (02.20.2014:1)
OS: Windows 8 x64
Ran by Irena on so 22. 02. 2014 at 14:19:22,69
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services

Successfully stopped: [Service] update linkswift
Successfully deleted: [Service] update linkswift



~~~ Registry Values

Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Default_Page_URL



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{37180C8D-EAAC-4B12-91CE-BC2329EADF2D}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{92273014-8879-401B-BE75-3AD312F2F597}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{CF141012-2DBF-4808-BAC2-CCEC26E41981}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{CF141012-2DBF-4808-BAC2-CCEC26E41981}



~~~ Files



~~~ Folders

Successfully deleted: [Empty Folder] C:\Users\Irena\appdata\local\{1FE8FEB3-E69F-4804-B297-4D502573AEBC}
Successfully deleted: [Empty Folder] C:\Users\Irena\appdata\local\{230388FB-D02F-4903-BE10-609F36796146}
Successfully deleted: [Empty Folder] C:\Users\Irena\appdata\local\{52A646F7-A7B6-45E8-ABD8-E3F6D4808F3A}
Successfully deleted: [Empty Folder] C:\Users\Irena\appdata\local\{64346FA5-B9E1-40E1-880B-33AF11F87199}
Successfully deleted: [Empty Folder] C:\Users\Irena\appdata\local\{6AF3B4C3-F751-4C8E-9302-C3B536E71C77}
Successfully deleted: [Empty Folder] C:\Users\Irena\appdata\local\{AE4FD7F9-6C42-4356-84B0-3D58A613347E}
Successfully deleted: [Empty Folder] C:\Users\Irena\appdata\local\{E1A37B38-5852-4F4C-8626-A4DE730E1046}



~~~ FireFox

Emptied folder: C:\Users\Irena\AppData\Roaming\mozilla\firefox\profiles\fkvfauu8.default-1383028070246\minidumps [41 files]



~~~ Chrome

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Policies\Google [Blacklisted Policy]



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on so 22. 02. 2014 at 14:27:00,89
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~


LOG z MbAM:

Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware.) 1.75.0.1300
www.malwarebytes.org

Verze: v2014.02.22.02

Windows 8 Service Pack 1 x64 NTFS
Internet Explorer 10.0.9200.16798
Irena :: RODINKA [administrátor]

Ochrana: Zakázána

22. 2. 2014 14:31:35
mbam-log-2014-02-22 (14-31-35).txt

Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 232613
Uplynulý čas: 5 minut, 1 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 6
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SqueakyChocolate, LLC UpdateChecker (PUP.Optional.SqueakyChocolate.A) -> Přesun do karantény a smazání se zdařilo.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{e7e8ed77-2fba-4ec6-bc07-65de4de6709f} (PUP.Optional.ShoppingSuggestion.A) -> Přesun do karantény a smazání se zdařilo.
HKCR\CLSID\{e7e8ed77-2fba-4ec6-bc07-65de4de6709f} (PUP.Optional.ShoppingSuggestion.A) -> Přesun do karantény a smazání se zdařilo.
HKCR\ScriptInjector.AddOnIE (PUP.Optional.ShoppingSuggestion.A) -> Přesun do karantény a smazání se zdařilo.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{E7E8ED77-2FBA-4EC6-BC07-65DE4DE6709F} (PUP.Optional.ShoppingSuggestion.A) -> Přesun do karantény a smazání se zdařilo.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{E7E8ED77-2FBA-4EC6-BC07-65DE4DE6709F} (PUP.Optional.ShoppingSuggestion.A) -> Přesun do karantény a smazání se zdařilo.

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 3
C:\Program Files (x86)\SqueakyChocolate\UpdateChecker (PUP.Optional.SqueakyChocolate.A) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Irena\AppData\Local\Google\Chrome\User Data\Default\Extensions\odpccdgkmiicgocepijnaeihjnjnomca (PUP.Optional.LinkSwift.A) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Irena\AppData\Local\Google\Chrome\User Data\Default\Extensions\odpccdgkmiicgocepijnaeihjnjnomca\1.0.0_0 (PUP.Optional.LinkSwift.A) -> Přesun do karantény a smazání se zdařilo.

Nalezené soubory: 11
C:\Users\Irena\Downloads\SoftonicDownloader_for_gimp-paint-studio.exe (PUP.Optional.Softonic.A) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files (x86)\Shopping Suggestion\Shopping Suggestion.dll (PUP.Optional.ShoppingSuggestion.A) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files (x86)\SqueakyChocolate\UpdateChecker\System.Net.Json.dll (PUP.Optional.SqueakyChocolate.A) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files (x86)\SqueakyChocolate\UpdateChecker\uninstall.exe (PUP.Optional.SqueakyChocolate.A) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files (x86)\SqueakyChocolate\UpdateChecker\UpdateCheckerApp.exe (PUP.Optional.SqueakyChocolate.A) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files (x86)\SqueakyChocolate\UpdateChecker\UpdateNotifier.exe (PUP.Optional.SqueakyChocolate.A) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files (x86)\SqueakyChocolate\UpdateChecker\UpdaterLibrary.dll (PUP.Optional.SqueakyChocolate.A) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Irena\AppData\Local\Google\Chrome\User Data\Default\Extensions\odpccdgkmiicgocepijnaeihjnjnomca\1.0.0_0\background.js (PUP.Optional.LinkSwift.A) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Irena\AppData\Local\Google\Chrome\User Data\Default\Extensions\odpccdgkmiicgocepijnaeihjnjnomca\1.0.0_0\content.js (PUP.Optional.LinkSwift.A) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Irena\AppData\Local\Google\Chrome\User Data\Default\Extensions\odpccdgkmiicgocepijnaeihjnjnomca\1.0.0_0\icon.png (PUP.Optional.LinkSwift.A) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Irena\AppData\Local\Google\Chrome\User Data\Default\Extensions\odpccdgkmiicgocepijnaeihjnjnomca\1.0.0_0\manifest.json (PUP.Optional.LinkSwift.A) -> Přesun do karantény a smazání se zdařilo.

(konec)

LOG z RogueKiller by Adlice Software:

RogueKiller V8.8.8 _x64_ [Feb 19 2014] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com

Operační systém : Windows 8 (6.2.9200 Service Pack 1) 64 bits version
Spuštěno v : Normální režim
Uživatel : Irena [Práva správce]
Mód : Kontrola -- Datum : 02/22/2014 14:50:45
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 8 ¤¤¤
[RUN][SUSP PATH] HKCU\[...]\Run : cz.seznam.software.autoupdate ("C:\Users\Irena\AppData\Roaming\Seznam.cz\szninstall.exe" -c [7]) -> NALEZENO
[RUN][SUSP PATH] HKCU\[...]\Run : cz.seznam.software.szndesktop ("C:\Users\Irena\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q [7]) -> NALEZENO
[RUN][SUSP PATH] HKUS\S-1-5-21-1197985812-3980447561-4286486698-1001\[...]\Run : cz.seznam.software.autoupdate ("C:\Users\Irena\AppData\Roaming\Seznam.cz\szninstall.exe" -c [7]) -> NALEZENO
[RUN][SUSP PATH] HKUS\S-1-5-21-1197985812-3980447561-4286486698-1001\[...]\Run : cz.seznam.software.szndesktop ("C:\Users\Irena\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q [7]) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO

¤¤¤ naplánované úlohy : 0 ¤¤¤

¤¤¤ spuštění položky : 0 ¤¤¤

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Browser Addons : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NENAHRÁNO 0x0] ¤¤¤

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts


127.0.0.1 static3.cdn.ubi.com
127.0.0.1 ubisoft-orbit.s3.amazonaws.com
127.0.0.1 onlineconfigservice.ubi.com
127.0.0.1 orbitservice.ubi.com
127.0.0.1 ubisoft-orbit-savegames.s3.amazonaws.com
127.0.0.1 adobeereg.com
127.0.0.1 www.adobeereg.com
127.0.0.1 activate.adobe.com
127.0.0.1 activate-sea.adobe.com
127.0.0.1 activate-sjc0.adobe.com
127.0.0.1 wwis-dubc1-vip60.adobe.com
127.0.0.1 localhost
127.0.0.1 localhost


¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) Hitachi HDS721050CLA660 +++++
--- User ---
[MBR] 36e0b34943abead73f07d1853d86c2a1
[BSP] 768d055b68e7f309d548af02044e6ae4 : Empty MBR Code
Partition table:
0 - [XXXXXX] UNKNOWN (0x00) [VISIBLE] Offset (sectors): 1 | Size: 2097152 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[0]_S_02222014_145045.txt >>

A co teď? Je už můj počítač vpořádku? :)

Uživatelský avatar
Orcus
člen Security týmu
Elite Level 10.5
Elite Level 10.5
Příspěvky: 10645
Registrován: duben 10
Bydliště: Okolo rostou 3 růže =o)
Pohlaví: Muž
Stav:
Offline

Re: HiJackThis LOG

Příspěvekod Orcus » 22 úno 2014 20:35

No vzhledem k upirátěnýmu Photoshopu tam toho bude víc. Rozhodně jej odinstaluj, jinak budem čistit zbytečně, protože bude natahovat další a další bordel.

Spusť RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Počkej, dokud status okno zobrazuje "Prohledat "

- Klikni na "Smazat"
- Počkej, dokud Status box zobrazuje "Smazání- Finished "
- Klikni na "Zprávy " a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [číslo]. txt na ploše.
- Zavři RogueKiller

====================================================

Stahni a použij resethosts:
http://go.microsoft.com/?linkid=9668866

===================================================

Stáhni si TDSSKiller

Na svojí plochu. Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller.2.2.7.1._(datum)_log.txt , vlož sem prosím celý obsah logu.

====================================================

Stáhni si aswMBR
na svojí plochu. Uzavři všechna okna , programy a prohlížeče. Poklepej na aswMBR.exe. Pokud se objeví hláška o možnosti stáhnutí databáze Avastu , klikni na NE. Poté klikni na „Scan“ . Po skenu klikni na „Save Log“ a ulož si log na plochu .Zkopíruj sem celý obsah toho logu. Pak klikni na „Exit“ k zavření programu.
Láska hřeje, ale uhlí je uhlí. :fire:



Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.

Pár rad k bezpečnosti PC.

Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix

Pokud budete spokojeni , můžete podpořit naše fórum.

Uživatelský avatar
Mejssi
nováček
Příspěvky: 15
Registrován: říjen 13
Pohlaví: Žena
Stav:
Offline

Re: HiJackThis LOG

Příspěvekod Mejssi » 22 úno 2014 23:32

RogueKiller

RogueKiller V8.8.8 _x64_ [Feb 19 2014] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com

Operační systém : Windows 8 (6.2.9200 Service Pack 1) 64 bits version
Spuštěno v : Normální režim
Uživatel : Irena [Práva správce]
Mód : Odebrat -- Datum : 02/22/2014 22:39:42
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 8 ¤¤¤
[RUN][SUSP PATH] HKCU\[...]\Run : cz.seznam.software.autoupdate ("C:\Users\Irena\AppData\Roaming\Seznam.cz\szninstall.exe" -c [7]) -> VYMAZÁNO
[RUN][SUSP PATH] HKCU\[...]\Run : cz.seznam.software.szndesktop ("C:\Users\Irena\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q [7]) -> VYMAZÁNO
[RUN][SUSP PATH] HKUS\S-1-5-21-1197985812-3980447561-4286486698-1001\[...]\Run : cz.seznam.software.autoupdate ("C:\Users\Irena\AppData\Roaming\Seznam.cz\szninstall.exe" -c [7]) -> [0x2] Systém nemůže nalézt uvedený soubor.
[RUN][SUSP PATH] HKUS\S-1-5-21-1197985812-3980447561-4286486698-1001\[...]\Run : cz.seznam.software.szndesktop ("C:\Users\Irena\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q [7]) -> [0x2] Systém nemůže nalézt uvedený soubor.
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> VYMAZÁNO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> VYMAZÁNO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)

¤¤¤ naplánované úlohy : 0 ¤¤¤

¤¤¤ spuštění položky : 0 ¤¤¤

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Browser Addons : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NENAHRÁNO 0x0] ¤¤¤

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts


127.0.0.1 static3.cdn.ubi.com
127.0.0.1 ubisoft-orbit.s3.amazonaws.com
127.0.0.1 onlineconfigservice.ubi.com
127.0.0.1 orbitservice.ubi.com
127.0.0.1 ubisoft-orbit-savegames.s3.amazonaws.com
127.0.0.1 adobeereg.com
127.0.0.1 www.adobeereg.com
127.0.0.1 activate.adobe.com
127.0.0.1 activate-sea.adobe.com
127.0.0.1 activate-sjc0.adobe.com
127.0.0.1 wwis-dubc1-vip60.adobe.com
127.0.0.1 localhost
127.0.0.1 localhost


¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) Hitachi HDS721050CLA660 +++++
--- User ---
[MBR] 36e0b34943abead73f07d1853d86c2a1
[BSP] 768d055b68e7f309d548af02044e6ae4 : Empty MBR Code
Partition table:
0 - [XXXXXX] UNKNOWN (0x00) [VISIBLE] Offset (sectors): 1 | Size: 2097152 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[0]_D_02222014_223942.txt >>
RKreport[0]_S_02222014_222920.txt

===================================================

Program Microsoft Fix it mi nešel nainstalovat, protože mi to naskočila hláška "Nástroj M. Fix it nlze použít ve vašem operačním systému nebo verzi aplikace

===================================================

aswMBR

aswMBR version 0.9.9.1771 Copyright(c) 2011 AVAST Software
Run date: 2014-02-22 23:13:14
-----------------------------
23:13:14.252 OS Version: Windows x64 6.2.9200 Service Pack 1
23:13:14.252 Number of processors: 2 586 0x2A07
23:13:14.253 ComputerName: RODINKA UserName: Irena
23:13:14.269 Initialze error 1
23:13:17.137 AVAST engine defs: 14022201
23:13:18.155 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\00000037
23:13:18.157 Disk 0 Vendor: Hitachi_HDS721050CLA660 JP2OA41A Size: 476940MB BusType: 11
23:13:18.181 Disk 0 MBR read successfully
23:13:18.182 Disk 0 MBR scan
23:13:18.184 Disk 0 unknown MBR code
23:13:18.186 Disk 0 Partition 1 00 EE GPT 2097151 MB offset 1
23:13:18.189 Disk 0 scanning C:\windows\system32\drivers
23:13:18.191 Service scanning
23:13:19.149 Modules scanning
23:13:19.151 Disk 0 trace - called modules:
23:13:19.189 ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys storport.sys hal.dll storahci.sys
23:13:19.191 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa8005d6c060]
23:13:19.194 3 CLASSPNP.SYS[fffff88001355e0a] -> nt!IofCallDriver -> [0xfffffa8005b23c00]
23:13:19.342 5 ACPI.sys[fffff8800115ba91] -> nt!IofCallDriver -> \Device\00000037[0xfffffa8005af57f0]
23:13:19.345 AVAST engine scan C:\windows
23:13:19.347 AVAST engine scan C:\windows\system32
23:13:19.350 AVAST engine scan C:\windows\system32\drivers
23:13:19.353 AVAST engine scan C:\Users\Irena
23:13:19.356 AVAST engine scan C:\ProgramData
23:13:19.359 Scan finished successfully
23:13:38.222 Disk 0 MBR has been saved successfully to "C:\Users\Irena\Desktop\MBR.dat"
23:13:38.224 The log file has been saved successfully to "C:\Users\Irena\Desktop\aswMBR.txt"


Ps: Začínám se bát, že počítač už nějak nevyčistím. Jinak jsem našla ve škožce C:/ soubor ve worldu s názvem "YOU". Když jsem to rozklikla tak mi naskočil internet a velkým písmem "YOU ARE PIRATE!!!!" tenhle soubor je tam od 27.10.2013 10:42. Dost mě to vyděsilo! Kdysi brácha stáhl něco na tenhle počítač a přes celou obrazovku naskakovaly piráti, kteří se vysmívaly. Pořád hrála dokola nějaká hudba. Nakonec nějak obnovil systém a vše bylo vpořádku, ale už je to dávno. Myslíte, že mohu soubor smazat? Nebo zatím raději nic nedělat.

Přikládám obrázek: http://nd06.jxs.cz/532/713/85bea3e7ea_9 ... 1393108097

Uživatelský avatar
Mejssi
nováček
Příspěvky: 15
Registrován: říjen 13
Pohlaví: Žena
Stav:
Offline

Re: HiJackThis LOG

Příspěvekod Mejssi » 22 úno 2014 23:35

TDSSKiller

22:59:58.0770 7140 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
22:59:58.0770 7140 UEFI system
23:00:43.0917 7140 ============================================================
23:00:43.0917 7140 Current date / time: 2014/02/22 23:00:43.0917
23:00:43.0917 7140 SystemInfo:
23:00:43.0917 7140
23:00:43.0917 7140 OS Version: 6.2.9200 ServicePack: 1.0
23:00:43.0917 7140 Product type: Workstation
23:00:43.0917 7140 ComputerName: RODINKA
23:00:43.0917 7140 UserName: Irena
23:00:43.0917 7140 Windows directory: C:\windows
23:00:43.0917 7140 System windows directory: C:\windows
23:00:43.0917 7140 Running under WOW64
23:00:43.0917 7140 Processor architecture: Intel x64
23:00:43.0917 7140 Number of processors: 2
23:00:43.0917 7140 Page size: 0x1000
23:00:43.0917 7140 Boot type: Normal boot
23:00:43.0917 7140 ============================================================
23:00:44.0543 7140 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
23:00:44.0558 7140 ============================================================
23:00:44.0558 7140 \Device\Harddisk0\DR0:
23:00:44.0574 7140 GPT partitions:
23:00:44.0574 7140 \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {E517E2B0-6659-4C3A-87B3-B85776213A99}, Name: Basic data partition, StartLBA 0x800, BlocksNum 0x1FF800
23:00:44.0574 7140 \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {3C05BF03-A70C-4523-9C35-2DEA19A20F00}, Name: EFI system partition, StartLBA 0x200000, BlocksNum 0xB4000
23:00:44.0574 7140 \Device\Harddisk0\DR0\Partition3: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {76A4B35B-8DD4-4451-8F7A-27409E6EFA88}, Name: Microsoft reserved partition, StartLBA 0x2B4000, BlocksNum 0x40000
23:00:44.0574 7140 \Device\Harddisk0\DR0\Partition4: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {41E66FD0-F1B2-43DD-A508-DE6208303E5F}, Name: Basic data partition, StartLBA 0x2F4000, BlocksNum 0x38A43800
23:00:44.0574 7140 \Device\Harddisk0\DR0\Partition5: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {390C9A95-4C40-4CE1-82D7-D86DD31EFD4E}, Name: Basic data partition, StartLBA 0x38D37800, BlocksNum 0x164E800
23:00:44.0574 7140 MBR partitions:
23:00:44.0574 7140 ============================================================
23:00:44.0605 7140 C: <-> \Device\Harddisk0\DR0\Partition4
23:00:44.0652 7140 D: <-> \Device\Harddisk0\DR0\Partition5
23:00:44.0652 7140 ============================================================
23:00:44.0652 7140 Initialize success
23:00:44.0652 7140 ============================================================
23:00:52.0297 10120 ============================================================
23:00:52.0297 10120 Scan started
23:00:52.0297 10120 Mode: Manual;
23:00:52.0297 10120 ============================================================
23:00:53.0657 10120 ================ Scan system memory ========================
23:00:53.0657 10120 System memory - ok
23:00:53.0657 10120 ================ Scan services =============================
23:00:53.0798 10120 [ E890C46E4754F0DF51BAFCC8D2E07498 ] 1394ohci C:\windows\System32\drivers\1394ohci.sys
23:00:53.0798 10120 1394ohci - ok
23:00:53.0798 10120 [ 4F18D4C7EA14F11A7211F60D553C03DB ] 3ware C:\windows\system32\drivers\3ware.sys
23:00:53.0813 10120 3ware - ok
23:00:53.0829 10120 [ 975AABEB243B800C23626D6B652C5A9C ] ACPI C:\windows\system32\drivers\ACPI.sys
23:00:53.0829 10120 ACPI - ok
23:00:53.0844 10120 [ DC968C37822117E576B933F34A2D130C ] acpiex C:\windows\system32\Drivers\acpiex.sys
23:00:53.0844 10120 acpiex - ok
23:00:53.0844 10120 [ 0CA9F7C3A78227C21A0A7854E245CFB2 ] acpipagr C:\windows\System32\drivers\acpipagr.sys
23:00:53.0860 10120 acpipagr - ok
23:00:53.0860 10120 [ 8EB8DA03B142D3DD1EB9ED8107A76C43 ] AcpiPmi C:\windows\System32\drivers\acpipmi.sys
23:00:53.0860 10120 AcpiPmi - ok
23:00:53.0860 10120 [ CBCE725C5D86ABA7D2604E22951AA9B8 ] acpitime C:\windows\System32\drivers\acpitime.sys
23:00:53.0860 10120 acpitime - ok
23:00:53.0954 10120 [ F7AB315A4D400CA876381D1E188A2E20 ] AdobeFlashPlayerUpdateSvc C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
23:00:53.0954 10120 AdobeFlashPlayerUpdateSvc - ok
23:00:53.0985 10120 [ 93C6388592B99925C1D1576E465BC80F ] adp94xx C:\windows\system32\drivers\adp94xx.sys
23:00:54.0001 10120 adp94xx - ok
23:00:54.0001 10120 [ D27763E0247292654E7F7D16444C7C72 ] adpahci C:\windows\system32\drivers\adpahci.sys
23:00:54.0001 10120 adpahci - ok
23:00:54.0001 10120 [ 67B90070FF48F794AF19F9FCF0080D75 ] adpu320 C:\windows\system32\drivers\adpu320.sys
23:00:54.0001 10120 adpu320 - ok
23:00:54.0032 10120 [ 974AE60BF5B90E31412D93596C968E5B ] AeLookupSvc C:\windows\System32\aelupsvc.dll
23:00:54.0032 10120 AeLookupSvc - ok
23:00:54.0079 10120 [ 7C0E0EDF18D6CC565D7BFBB451709FA5 ] AFD C:\windows\system32\drivers\afd.sys
23:00:54.0079 10120 AFD - ok
23:00:54.0094 10120 [ 01590377A5AB19E792528C628A2A68F9 ] agp440 C:\windows\system32\drivers\agp440.sys
23:00:54.0110 10120 agp440 - ok
23:00:54.0126 10120 [ D1BE8E6E5B3AF23A4393AF1BF867977A ] ALG C:\windows\System32\alg.exe
23:00:54.0126 10120 ALG - ok
23:00:54.0126 10120 [ 025E8C755BE293E50854D26D1BBE5133 ] AllUserInstallAgent C:\windows\system32\AUInstallAgent.dll
23:00:54.0141 10120 AllUserInstallAgent - ok
23:00:54.0157 10120 [ 5E4ABAE09E144C363839E8F10705F98A ] AMD External Events Utility C:\windows\system32\atiesrxx.exe
23:00:54.0157 10120 AMD External Events Utility - ok
23:00:54.0173 10120 [ 5A81054B824004B1ECC04F0034A1CDF9 ] AmdK8 C:\windows\System32\drivers\amdk8.sys
23:00:54.0173 10120 AmdK8 - ok
23:00:54.0188 10120 [ F2FF8C1B41B3784EDBD5C6D5397F403C ] amdkmafd C:\windows\system32\drivers\amdkmafd.sys
23:00:54.0188 10120 amdkmafd - ok
23:00:54.0329 10120 [ CD3C1C5ADBB06B6B50DE4D64797E74CB ] amdkmdag C:\windows\system32\DRIVERS\atikmdag.sys
23:00:54.0376 10120 amdkmdag - ok
23:00:54.0407 10120 [ 28FC287546FF4213B8346DAD7B443AFB ] amdkmdap C:\windows\system32\DRIVERS\atikmpag.sys
23:00:54.0423 10120 amdkmdap - ok
23:00:54.0438 10120 [ B849D453E644FAB9BC8EF6DC8CA9C4C6 ] AmdPPM C:\windows\System32\drivers\amdppm.sys
23:00:54.0438 10120 AmdPPM - ok
23:00:54.0454 10120 [ 35A0EB5AECB0FA3C41A2FB514A562304 ] amdsata C:\windows\system32\drivers\amdsata.sys
23:00:54.0454 10120 amdsata - ok
23:00:54.0454 10120 [ 00452671904F5EE94B50BF0219C97164 ] amdsbs C:\windows\system32\drivers\amdsbs.sys
23:00:54.0454 10120 amdsbs - ok
23:00:54.0454 10120 [ EA3FFE53E92E59C87E3ECA9BEB20D9B7 ] amdxata C:\windows\system32\drivers\amdxata.sys
23:00:54.0469 10120 amdxata - ok
23:00:54.0501 10120 [ 823F34D1DEF120A657BB7529ABF4461F ] AppHostSvc C:\windows\system32\inetsrv\apphostsvc.dll
23:00:54.0501 10120 AppHostSvc - ok
23:00:54.0501 10120 [ 83B3682CE922FB0F415734B26D9D6233 ] AppID C:\windows\system32\drivers\appid.sys
23:00:54.0501 10120 AppID - ok
23:00:54.0532 10120 [ CE2BEAD7F31816FF0AC490D048C969F9 ] AppIDSvc C:\windows\System32\appidsvc.dll
23:00:54.0532 10120 AppIDSvc - ok
23:00:54.0548 10120 [ 4F750B7EFCB6520AE01E01D082D7D476 ] Appinfo C:\windows\System32\appinfo.dll
23:00:54.0548 10120 Appinfo - ok
23:00:54.0579 10120 [ E933401B392387F4BE34DE8BAF1722A7 ] arc C:\windows\system32\drivers\arc.sys
23:00:54.0579 10120 arc - ok
23:00:54.0579 10120 [ 07CA323EF2E8247A568AB0F3662AD644 ] arcsas C:\windows\system32\drivers\arcsas.sys
23:00:54.0579 10120 arcsas - ok
23:00:54.0673 10120 [ 9A262EDD17F8473B91B333D6B031A901 ] aspnet_state C:\windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
23:00:54.0688 10120 aspnet_state - ok
23:00:54.0704 10120 [ 1EC6777695564CA7EB3ADB36C78322E5 ] aswFsBlk C:\windows\system32\drivers\aswFsBlk.sys
23:00:54.0704 10120 aswFsBlk - ok
23:00:54.0719 10120 [ FAF7B0B0C44A2FBD6FBC54E3E0F38545 ] aswMonFlt C:\windows\system32\drivers\aswMonFlt.sys
23:00:54.0719 10120 aswMonFlt - ok
23:00:54.0735 10120 [ 679712B7A353EE665B9301592164A172 ] aswRdr C:\windows\system32\drivers\aswRdr2.sys
23:00:54.0735 10120 aswRdr - ok
23:00:54.0751 10120 [ C04F7B373881009D7994D9BF55D24AB4 ] aswRvrt C:\windows\system32\drivers\aswRvrt.sys
23:00:54.0751 10120 aswRvrt - ok
23:00:54.0766 10120 [ 3E07C93A2CB67840E4CD56C00959A402 ] aswSnx C:\windows\system32\drivers\aswSnx.sys
23:00:54.0766 10120 aswSnx - ok
23:00:54.0813 10120 [ 79ADA401A6E2054F110E7FBDFAC71942 ] aswSP C:\windows\system32\drivers\aswSP.sys
23:00:54.0813 10120 aswSP - ok
23:00:54.0829 10120 [ 59787B95DD9CA44CB139D96863438587 ] aswVmm C:\windows\system32\drivers\aswVmm.sys
23:00:54.0829 10120 aswVmm - ok
23:00:54.0845 10120 [ 74DBAEC35366C4EE7670428808715A6A ] AsyncMac C:\windows\system32\DRIVERS\asyncmac.sys
23:00:54.0845 10120 AsyncMac - ok
23:00:54.0891 10120 [ A721FF570C2387E383BDDEA9632863C9 ] atapi C:\windows\system32\drivers\atapi.sys
23:00:54.0891 10120 atapi - ok
23:00:54.0907 10120 [ 13A4B62FEE62843413724C45FD149D45 ] AtiHDAudioService C:\windows\system32\drivers\AtihdW86.sys
23:00:54.0907 10120 AtiHDAudioService - ok
23:00:54.0938 10120 [ BCD7A47EF587DC00DD61D12D9C2D1E44 ] AudioEndpointBuilder C:\windows\System32\AudioEndpointBuilder.dll
23:00:54.0938 10120 AudioEndpointBuilder - ok
23:00:54.0985 10120 [ 599B3F685A263A114FFAF3BE29C49C75 ] Audiosrv C:\windows\System32\Audiosrv.dll
23:00:55.0001 10120 Audiosrv - ok
23:00:55.0063 10120 [ 7A189530FD0CFD415DBE41123F8A6A59 ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
23:00:55.0063 10120 avast! Antivirus - ok
23:00:55.0095 10120 [ 89491EF71D5EA011127832C588002853 ] AxInstSV C:\windows\System32\AxInstSV.dll
23:00:55.0095 10120 AxInstSV - ok
23:00:55.0126 10120 [ 87AB5BB072A3F128541D5B815F82FFDD ] b06bdrv C:\windows\system32\drivers\bxvbda.sys
23:00:55.0126 10120 b06bdrv - ok
23:00:55.0141 10120 [ 81703BC5D68DEDBB086C2368FBE7B334 ] BasicDisplay C:\windows\System32\drivers\BasicDisplay.sys
23:00:55.0157 10120 BasicDisplay - ok
23:00:55.0157 10120 [ 5EC68164E14D25675C98BBB5F09E8606 ] BasicRender C:\windows\System32\drivers\BasicRender.sys
23:00:55.0157 10120 BasicRender - ok
23:00:55.0204 10120 [ 89143A7BA7850F5C7E61B43BB44B6418 ] BDESVC C:\windows\System32\bdesvc.dll
23:00:55.0220 10120 BDESVC - ok
23:00:55.0220 10120 [ 9E7AEA59776D904607985AFFE7E5E183 ] Beep C:\windows\system32\drivers\Beep.sys
23:00:55.0220 10120 Beep - ok
23:00:55.0282 10120 [ 53AA55632B94622F2DC3695E86EF9363 ] BFE C:\windows\System32\bfe.dll
23:00:55.0282 10120 BFE - ok
23:00:55.0313 10120 [ D598C44A7072D3108D8D8102EC5E07F7 ] BITS C:\windows\System32\qmgr.dll
23:00:55.0329 10120 BITS - ok
23:00:55.0391 10120 [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
23:00:55.0391 10120 Bonjour Service - ok
23:00:55.0407 10120 [ B17AC10B47C7FCB44D22A1F06415840E ] bowser C:\windows\system32\DRIVERS\bowser.sys
23:00:55.0407 10120 bowser - ok
23:00:55.0423 10120 [ 038FA1B55531E7020DB705B42FCCE373 ] BrokerInfrastructure C:\windows\System32\bisrv.dll
23:00:55.0423 10120 BrokerInfrastructure - ok
23:00:55.0438 10120 [ 310068BDA80B1D55C36580FD8A873FAF ] Browser C:\windows\System32\browser.dll
23:00:55.0438 10120 Browser - ok
23:00:55.0548 10120 [ 6ED5DB8C1DB8A0D8F4B411E0C2A65EC6 ] BstHdAndroidSvc C:\Program Files (x86)\BlueStacks\HD-Service.exe
23:00:55.0548 10120 BstHdAndroidSvc - ok
23:00:55.0610 10120 [ E57BC16C486AD810A7EF946646A02466 ] BstHdDrv C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys
23:00:55.0610 10120 BstHdDrv - ok
23:00:55.0626 10120 [ 8059EDFA9616E569E861E0F68DDF0C72 ] BstHdLogRotatorSvc C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
23:00:55.0626 10120 BstHdLogRotatorSvc - ok
23:00:55.0641 10120 [ 6695200F455E251F0BCC9CE4D0978D59 ] BthAvrcpTg C:\windows\System32\drivers\BthAvrcpTg.sys
23:00:55.0641 10120 BthAvrcpTg - ok
23:00:55.0657 10120 [ 616EB8748C988AEE98D93DA141C3D3B4 ] BthHFEnum C:\windows\System32\drivers\bthhfenum.sys
23:00:55.0657 10120 BthHFEnum - ok
23:00:55.0704 10120 [ DCB4EBD928A6FB368BE6CAE522412DE1 ] bthhfhid C:\windows\System32\drivers\BthHFHid.sys
23:00:55.0704 10120 bthhfhid - ok
23:00:55.0720 10120 [ 033916CE8784A848B9A3D686B7F66D97 ] BTHMODEM C:\windows\System32\drivers\bthmodem.sys
23:00:55.0720 10120 BTHMODEM - ok
23:00:55.0751 10120 [ A4387C3D271959313E2577DB7BE8BA7A ] bthserv C:\windows\system32\bthserv.dll
23:00:55.0751 10120 bthserv - ok
23:00:55.0829 10120 [ 9E530C6F0EEE34CCEAC8104838AB68C7 ] c2cautoupdatesvc C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
23:00:55.0829 10120 c2cautoupdatesvc - ok
23:00:55.0907 10120 [ 96B14B79C71CE4A7783184CC8B5DBCE8 ] c2cpnrsvc C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
23:00:55.0923 10120 c2cpnrsvc - ok
23:00:55.0923 10120 c2wts - ok
23:00:55.0938 10120 [ 990B1BABE6E81FB18E65A87EBEFB1772 ] cdfs C:\windows\system32\DRIVERS\cdfs.sys
23:00:55.0938 10120 cdfs - ok
23:00:55.0954 10120 [ 339BFF85D788268752DA8C9644B188EE ] cdrom C:\windows\System32\drivers\cdrom.sys
23:00:55.0954 10120 cdrom - ok
23:00:55.0970 10120 [ BAF8F0F55BC300E5F882E521F054E345 ] CertPropSvc C:\windows\System32\certprop.dll
23:00:55.0970 10120 CertPropSvc - ok
23:00:55.0985 10120 [ F64B7D1A37CC1D5F421D5359EEC81E2E ] circlass C:\windows\System32\drivers\circlass.sys
23:00:55.0985 10120 circlass - ok
23:00:56.0001 10120 [ 9905168708DB68849B879B5548F68AB3 ] CLFS C:\windows\system32\drivers\CLFS.sys
23:00:56.0001 10120 CLFS - ok
23:00:56.0032 10120 [ 075CCE75090786F124573A788C8656E6 ] CLVirtualDrive C:\windows\system32\DRIVERS\CLVirtualDrive.sys
23:00:56.0032 10120 CLVirtualDrive - ok
23:00:56.0048 10120 [ 2DC8538A2260647484A6C921CA837313 ] CmBatt C:\windows\System32\drivers\CmBatt.sys
23:00:56.0048 10120 CmBatt - ok
23:00:56.0110 10120 [ E708BFF0473EC6B271EA46B65B16CA56 ] CNG C:\windows\system32\Drivers\cng.sys
23:00:56.0110 10120 CNG - ok
23:00:56.0126 10120 [ 0E5B1E9E7122EDAAF1F6CE047965CA92 ] CompositeBus C:\windows\System32\drivers\CompositeBus.sys
23:00:56.0126 10120 CompositeBus - ok
23:00:56.0141 10120 COMSysApp - ok
23:00:56.0141 10120 [ D9CB0782AF819548072AA45B70F8B22D ] condrv C:\windows\system32\drivers\condrv.sys
23:00:56.0141 10120 condrv - ok
23:00:56.0204 10120 [ 5CE2742F063731EC10C1B2EE386A2C08 ] CryptSvc C:\windows\system32\cryptsvc.dll
23:00:56.0204 10120 CryptSvc - ok
23:00:56.0251 10120 [ FAEF4C245BE832DB41B15DAAC336AFB7 ] dam C:\windows\system32\drivers\dam.sys
23:00:56.0251 10120 dam - ok
23:00:56.0282 10120 [ 1EC6E533C954BDDF2A37E7851A7E58FD ] DcomLaunch C:\windows\system32\rpcss.dll
23:00:56.0298 10120 DcomLaunch - ok
23:00:56.0313 10120 [ C8650D1F61149AA546BDBC99172EBBC1 ] defragsvc C:\windows\System32\defragsvc.dll
23:00:56.0313 10120 defragsvc - ok
23:00:56.0329 10120 [ 5EAEF67AE2AF4D2DC664B649DB7B2E16 ] DeviceAssociationService C:\windows\system32\das.dll
23:00:56.0329 10120 DeviceAssociationService - ok
23:00:56.0360 10120 [ 799BE46D45D486704CE0F37CA5385262 ] DeviceInstall C:\windows\system32\umpnpmgr.dll
23:00:56.0360 10120 DeviceInstall - ok
23:00:56.0392 10120 [ 09D9EB9E7898F8E6561473A20CC808B9 ] Dfsc C:\windows\system32\Drivers\dfsc.sys
23:00:56.0392 10120 Dfsc - ok
23:00:56.0438 10120 [ 9E0E72222264745ADEB0E5AC680B0ED6 ] Dhcp C:\windows\system32\dhcpcore.dll
23:00:56.0438 10120 Dhcp - ok
23:00:56.0454 10120 [ 3C736FAE17BA6F91BA37594AAB139CD0 ] discache C:\windows\system32\drivers\discache.sys
23:00:56.0454 10120 discache - ok
23:00:56.0501 10120 [ AE3786294CC246A5403783E1B86A0168 ] disk C:\windows\system32\drivers\disk.sys
23:00:56.0501 10120 disk - ok
23:00:56.0517 10120 [ 82A7C72593793FE1EADA7A305BD1567A ] dmvsc C:\windows\System32\drivers\dmvsc.sys
23:00:56.0517 10120 dmvsc - ok
23:00:56.0563 10120 [ 066B9710B36AB550E01EEFCA52155968 ] Dnscache C:\windows\System32\dnsrslvr.dll
23:00:56.0563 10120 Dnscache - ok
23:00:56.0595 10120 [ 9949AD2ABA168A618D46C799D6CC898C ] dot3svc C:\windows\System32\dot3svc.dll
23:00:56.0595 10120 dot3svc - ok
23:00:56.0610 10120 [ 109FC3F80BF4F4DC5A071058074F13C1 ] DPS C:\windows\system32\dps.dll
23:00:56.0610 10120 DPS - ok
23:00:56.0642 10120 [ 9C7C183F937951AE17C5B8B3259CF3FF ] drmkaud C:\windows\system32\drivers\drmkaud.sys
23:00:56.0642 10120 drmkaud - ok
23:00:56.0673 10120 [ F87F4AAAF6664906248D11D5E579A53B ] DsmSvc C:\windows\System32\DeviceSetupManager.dll
23:00:56.0688 10120 DsmSvc - ok
23:00:56.0735 10120 [ 6A0E850DDCB136AA3D2FB7234382DF12 ] dtsoftbus01 C:\windows\System32\drivers\dtsoftbus01.sys
23:00:56.0735 10120 dtsoftbus01 - ok
23:00:56.0798 10120 [ E6AF4DF1817953D73C519B17CF849756 ] DXGKrnl C:\windows\System32\drivers\dxgkrnl.sys
23:00:56.0798 10120 DXGKrnl - ok
23:00:56.0829 10120 [ 651FBD69A9713D623D456A240F96179C ] e1iexpress C:\windows\system32\DRIVERS\e1i63x64.sys
23:00:56.0829 10120 e1iexpress - ok
23:00:56.0829 10120 EagleX64 - ok
23:00:56.0845 10120 [ 58BA473DD88F5FC1932282BA683AA03E ] Eaphost C:\windows\System32\eapsvc.dll
23:00:56.0860 10120 Eaphost - ok
23:00:56.0907 10120 [ 5AB97B3282D7D6114949D1EB5C8598E4 ] ebdrv C:\windows\system32\drivers\evbda.sys
23:00:56.0923 10120 ebdrv - ok
23:00:56.0970 10120 [ F702AB6181513303AB0FC8D59E52708B ] EFS C:\windows\System32\lsass.exe
23:00:56.0970 10120 EFS - ok
23:00:57.0001 10120 [ 66D60BD9A4C05616ABECA2A901475098 ] EhStorClass C:\windows\system32\drivers\EhStorClass.sys
23:00:57.0001 10120 EhStorClass - ok
23:00:57.0017 10120 [ A61D0F543024E458C0FE32352E1978E2 ] EhStorTcgDrv C:\windows\system32\drivers\EhStorTcgDrv.sys
23:00:57.0017 10120 EhStorTcgDrv - ok
23:00:57.0017 10120 [ D790D058D67582DB9C84C2D33695FE6B ] ErrDev C:\windows\System32\drivers\errdev.sys
23:00:57.0017 10120 ErrDev - ok
23:00:57.0032 10120 esgiguard - ok
23:00:57.0063 10120 [ F9E01C2D9F8BC049E04CF5DC24A5F638 ] EventSystem C:\windows\system32\es.dll
23:00:57.0079 10120 EventSystem - ok
23:00:57.0095 10120 [ 7A4D6FEB8C52B3FE855E4DCDF9107E03 ] exfat C:\windows\system32\drivers\exfat.sys
23:00:57.0095 10120 exfat - ok
23:00:57.0126 10120 FairplayKD - ok
23:00:57.0142 10120 [ 60996602A7111FD2D086E803F33E4282 ] fastfat C:\windows\system32\drivers\fastfat.sys
23:00:57.0142 10120 fastfat - ok
23:00:57.0173 10120 [ F0E7F8382ED5E138B0DFA4CB5058BCFE ] Fax C:\windows\system32\fxssvc.exe
23:00:57.0173 10120 Fax - ok
23:00:57.0173 10120 [ 73B2D11DF0B6E03A0CB0323218ACB3E4 ] fdc C:\windows\System32\drivers\fdc.sys
23:00:57.0173 10120 fdc - ok
23:00:57.0188 10120 [ 0828E3E7BD77C89149EAD3232BFD38DB ] fdPHost C:\windows\system32\fdPHost.dll
23:00:57.0188 10120 fdPHost - ok
23:00:57.0188 10120 [ 872506AAB591E8908DF4461475AF92DF ] FDResPub C:\windows\system32\fdrespub.dll
23:00:57.0188 10120 FDResPub - ok
23:00:57.0235 10120 [ 0588950D93A426F97C7AAADB1A9B0458 ] fhsvc C:\windows\system32\fhsvc.dll
23:00:57.0251 10120 fhsvc - ok
23:00:57.0267 10120 [ 88A9EBACD1058ABB237A6B4E96E7F397 ] FileInfo C:\windows\system32\drivers\fileinfo.sys
23:00:57.0267 10120 FileInfo - ok
23:00:57.0282 10120 [ 9E4EE3A0B00FF7D5F42A4AF9744CBA02 ] Filetrace C:\windows\system32\drivers\filetrace.sys
23:00:57.0282 10120 Filetrace - ok
23:00:57.0298 10120 [ B1D4C168FF7B8579E3745888658FFB1D ] flpydisk C:\windows\System32\drivers\flpydisk.sys
23:00:57.0298 10120 flpydisk - ok
23:00:57.0298 10120 [ B33EC133AE4E6C1881D2302D93D2467D ] FltMgr C:\windows\system32\drivers\fltmgr.sys
23:00:57.0298 10120 FltMgr - ok
23:00:57.0360 10120 [ 0BCDC0FF11B984162B0CF0FF6E9E0146 ] FontCache C:\windows\system32\FntCache.dll
23:00:57.0376 10120 FontCache - ok
23:00:57.0407 10120 [ 0B56259F5611787222A04A8F254E51D4 ] FontCache3.0.0.0 C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
23:00:57.0407 10120 FontCache3.0.0.0 - ok
23:00:57.0438 10120 [ A5F7873A39E4E9FAAAE59B7E9E36B705 ] FsDepends C:\windows\system32\drivers\FsDepends.sys
23:00:57.0438 10120 FsDepends - ok
23:00:57.0454 10120 [ A6DD7D491F587F4BC13FB972977DC8E8 ] Fs_Rec C:\windows\system32\drivers\Fs_Rec.sys
23:00:57.0454 10120 Fs_Rec - ok
23:00:57.0579 10120 [ 014195B03B378CFEAA029958CBC53695 ] fussvc C:\Program Files (x86)\Windows Kits\8.1\App Certification Kit\fussvc.exe
23:00:57.0579 10120 fussvc - ok
23:00:57.0626 10120 [ C1646A95EAC515F60CDB2A7A8A013C1E ] fvevol C:\windows\system32\DRIVERS\fvevol.sys
23:00:57.0642 10120 fvevol - ok
23:00:57.0657 10120 [ A969D92973DFA895E7776B4BFE36DBB2 ] FxPPM C:\windows\System32\drivers\fxppm.sys
23:00:57.0657 10120 FxPPM - ok
23:00:57.0673 10120 [ 52BC441E07A827EBAB70CDC7EAEDB28D ] gagp30kx C:\windows\system32\drivers\gagp30kx.sys
23:00:57.0673 10120 gagp30kx - ok
23:00:57.0688 10120 [ 721F8EEF5E9747F32670DEFF7FB92541 ] gencounter C:\windows\System32\drivers\vmgencounter.sys
23:00:57.0688 10120 gencounter - ok
23:00:57.0735 10120 [ FC2B8B06BDBD3B6457F5A3DA9AD2410E ] GPIOClx0101 C:\windows\system32\Drivers\msgpioclx.sys
23:00:57.0735 10120 GPIOClx0101 - ok
23:00:57.0798 10120 [ 5358678C6370F2ADC5291849F6503262 ] gpsvc C:\windows\System32\gpsvc.dll
23:00:57.0813 10120 gpsvc - ok
23:00:57.0892 10120 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
23:00:57.0892 10120 gupdate - ok
23:00:57.0892 10120 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
23:00:57.0892 10120 gupdatem - ok
23:00:57.0938 10120 [ 4DBF4C90A50C105A80EACD9B2FCCBC96 ] hamachi C:\windows\system32\DRIVERS\Hamdrv.sys
23:00:57.0954 10120 hamachi - ok
23:00:58.0032 10120 [ 55706A31E8E2E67763ECD10F19CC3449 ] Hamachi2Svc C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
23:00:58.0032 10120 Hamachi2Svc - ok
23:00:58.0063 10120 [ 630555943E5A3FE21010CE91EC7FC84F ] HdAudAddService C:\windows\system32\drivers\HdAudio.sys
23:00:58.0063 10120 HdAudAddService - ok
23:00:58.0079 10120 [ 7D87B5B6C7188D553E11B59DC7F0B111 ] HDAudBus C:\windows\System32\drivers\HDAudBus.sys
23:00:58.0079 10120 HDAudBus - ok
23:00:58.0095 10120 [ 3F76BBA53D65E85A7F53E7A71082082C ] HidBatt C:\windows\System32\drivers\HidBatt.sys
23:00:58.0095 10120 HidBatt - ok
23:00:58.0142 10120 [ 085F150D002B7F0153D3C06DDF33A143 ] HidBth C:\windows\System32\drivers\hidbth.sys
23:00:58.0142 10120 HidBth - ok
23:00:58.0157 10120 [ CC4A07E51D89575CAB6F4EB590D87CD4 ] hidi2c C:\windows\System32\drivers\hidi2c.sys
23:00:58.0157 10120 hidi2c - ok
23:00:58.0157 10120 [ DC96F7DACB777CDEAEF9958A50BFDA06 ] HidIr C:\windows\System32\drivers\hidir.sys
23:00:58.0157 10120 HidIr - ok
23:00:58.0173 10120 [ FAC37D7B3D6354A5A5E19A45B50B4008 ] hidserv C:\windows\system32\hidserv.dll
23:00:58.0173 10120 hidserv - ok
23:00:58.0220 10120 [ 012C354B4AB48E9A7A657DF39E3A2073 ] HidUsb C:\windows\System32\drivers\hidusb.sys
23:00:58.0220 10120 HidUsb - ok
23:00:58.0235 10120 [ 43F884B61A24377567CD0FEB35236334 ] hkmsvc C:\windows\system32\kmsvc.dll
23:00:58.0251 10120 hkmsvc - ok
23:00:58.0298 10120 [ 33DFC14DFDCCFA7AA10E392F6A8EC1CF ] HomeGroupListener C:\windows\system32\ListSvc.dll
23:00:58.0298 10120 HomeGroupListener - ok
23:00:58.0329 10120 [ E0D9F6FE18FA7F53ADD29AF719CE2B7E ] HomeGroupProvider C:\windows\system32\provsvc.dll
23:00:58.0329 10120 HomeGroupProvider - ok
23:00:58.0376 10120 [ BB1FC298BE53AAB1E110F6E786BD8AC5 ] HP Support Assistant Service C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
23:00:58.0376 10120 HP Support Assistant Service - ok
23:00:58.0407 10120 [ E2550FBBBA31E2D4F9757E0A533689F0 ] HPConnectedRemote c:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPConnectedRemoteService.exe
23:00:58.0407 10120 HPConnectedRemote - ok
23:00:58.0454 10120 [ 9B7EDD3FE7C211C36E921D34D18A3A0A ] hpqwmiex C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
23:00:58.0454 10120 hpqwmiex - ok
23:00:58.0485 10120 [ 64DB7A8D97CA53DCCF93D0A1E08342CF ] HpSAMD C:\windows\system32\drivers\HpSAMD.sys
23:00:58.0485 10120 HpSAMD - ok
23:00:58.0548 10120 [ F4A91D985EB9D1D2717D538F3424603C ] HTTP C:\windows\system32\drivers\HTTP.sys
23:00:58.0548 10120 HTTP - ok
23:00:58.0563 10120 [ 2A98301068801700906C06649860FE94 ] hwpolicy C:\windows\system32\drivers\hwpolicy.sys
23:00:58.0563 10120 hwpolicy - ok
23:00:58.0579 10120 [ DC76901D82097C9E297F20C287CB9A27 ] hyperkbd C:\windows\System32\drivers\hyperkbd.sys
23:00:58.0579 10120 hyperkbd - ok
23:00:58.0579 10120 [ 716413AB3CA12DE0A7222D28C1C9352C ] HyperVideo C:\windows\system32\DRIVERS\HyperVideo.sys
23:00:58.0579 10120 HyperVideo - ok
23:00:58.0595 10120 [ C9E9CBF73AFFBFE3E801EFB516787BA3 ] i8042prt C:\windows\System32\drivers\i8042prt.sys
23:00:58.0595 10120 i8042prt - ok
23:00:58.0610 10120 [ 5E394EBD26FD68AA9300332C46BEDD62 ] iaStorV C:\windows\system32\drivers\iaStorV.sys
23:00:58.0610 10120 iaStorV - ok
23:00:58.0735 10120 [ 83915E05E168AB63B48302F7DC5D8E00 ] igfx C:\windows\system32\DRIVERS\igdkmd64.sys
23:00:58.0782 10120 igfx - ok
23:00:58.0798 10120 [ 24847A06B84339FEEDE5CABF3D27D320 ] iirsp C:\windows\system32\drivers\iirsp.sys
23:00:58.0798 10120 iirsp - ok
23:00:58.0860 10120 [ E455C83E029121270BED73CDAC381F37 ] IKEEXT C:\windows\System32\ikeext.dll
23:00:58.0876 10120 IKEEXT - ok
23:00:58.0907 10120 [ C99F8E90DE4B8F0C7FE15BB1CBCD29DC ] Intel(R) Capability Licensing Service Interface c:\Program Files\Intel\iCLS Client\HeciServer.exe
23:00:58.0923 10120 Intel(R) Capability Licensing Service Interface - ok
23:00:58.0939 10120 [ 30E9FAC23E2537D82F2836CB81AEE186 ] Intel(R) ME Service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
23:00:58.0939 10120 Intel(R) ME Service - ok
23:00:58.0954 10120 [ 4F37726CF764CA18A8A84F85EF3A7F24 ] intelide C:\windows\system32\drivers\intelide.sys
23:00:58.0954 10120 intelide - ok
23:00:58.0985 10120 [ E15CDF68DD73423F15D4AC404793AF0D ] intelppm C:\windows\System32\drivers\intelppm.sys
23:00:58.0985 10120 intelppm - ok
23:00:59.0001 10120 [ 8FCA66234A0933D796BB780B7953BAB9 ] IpFilterDriver C:\windows\system32\DRIVERS\ipfltdrv.sys
23:00:59.0001 10120 IpFilterDriver - ok
23:00:59.0064 10120 [ C217B8D2E58C57A319B16125C3D4B69C ] iphlpsvc C:\windows\System32\iphlpsvc.dll
23:00:59.0064 10120 iphlpsvc - ok
23:00:59.0079 10120 [ 6E98A046A12AA113F8898AA5D612BD6E ] IPMIDRV C:\windows\System32\drivers\IPMIDrv.sys
23:00:59.0079 10120 IPMIDRV - ok
23:00:59.0079 10120 [ 3969B9C218DD3FAA9F4ED2FFC3651C02 ] IPNAT C:\windows\system32\drivers\ipnat.sys
23:00:59.0079 10120 IPNAT - ok
23:00:59.0157 10120 [ 30228DC3268ADAA214B03A3948CA85BC ] IpOverUsbSvc C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\Bin\IpOverUsbSvc.exe
23:00:59.0157 10120 IpOverUsbSvc - ok
23:00:59.0173 10120 [ 25CD7C4BB2863FFC2B0B311F0AEBF77C ] IRENUM C:\windows\system32\drivers\irenum.sys
23:00:59.0173 10120 IRENUM - ok
23:00:59.0204 10120 [ D940C5BB9DC92E588533C19ABCC3D2C2 ] isapnp C:\windows\system32\drivers\isapnp.sys
23:00:59.0204 10120 isapnp - ok
23:00:59.0235 10120 [ 69C8BF0BC2B0EA10F130F4D3104DC2EF ] iScsiPrt C:\windows\System32\drivers\msiscsi.sys
23:00:59.0235 10120 iScsiPrt - ok
23:00:59.0251 10120 [ 3C4002D339491AF73D663FFC7F6E5ECB ] jhi_service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
23:00:59.0251 10120 jhi_service - ok
23:00:59.0314 10120 [ 8FBD94B69D6423E20ABCD59D86368B21 ] kbdclass C:\windows\System32\drivers\kbdclass.sys
23:00:59.0314 10120 kbdclass - ok
23:00:59.0314 10120 [ E88C932ABDF8185A62C8F2FC7B051FB6 ] kbdhid C:\windows\System32\drivers\kbdhid.sys
23:00:59.0314 10120 kbdhid - ok
23:00:59.0329 10120 [ FB6C185092E18011EF49989425C2AA87 ] kdnic C:\windows\system32\DRIVERS\kdnic.sys
23:00:59.0329 10120 kdnic - ok
23:00:59.0345 10120 [ F702AB6181513303AB0FC8D59E52708B ] KeyIso C:\windows\system32\lsass.exe
23:00:59.0345 10120 KeyIso - ok
23:00:59.0360 10120 [ DFA480F6DED551464F3A5B959F437800 ] KSecDD C:\windows\system32\Drivers\ksecdd.sys
23:00:59.0360 10120 KSecDD - ok
23:00:59.0407 10120 [ 127FB0AAD232BAAD2C9BBACD374F4FC5 ] KSecPkg C:\windows\system32\Drivers\ksecpkg.sys
23:00:59.0407 10120 KSecPkg - ok
23:00:59.0439 10120 [ 81492FEEBF2F26455B00EE8DBAE8A1B0 ] ksthunk C:\windows\system32\drivers\ksthunk.sys
23:00:59.0439 10120 ksthunk - ok
23:00:59.0470 10120 [ 5825DBACEDC3812B5CF8D40B997BF210 ] KtmRm C:\windows\system32\msdtckrm.dll
23:00:59.0470 10120 KtmRm - ok
23:00:59.0485 10120 [ 256EE31588257E8A555DBFAA13F1908E ] LanmanServer C:\windows\system32\srvsvc.dll
23:00:59.0485 10120 LanmanServer - ok
23:00:59.0517 10120 [ 16650912BE5A94B40E0B3B4C39652B56 ] LanmanWorkstation C:\windows\System32\wkssvc.dll
23:00:59.0517 10120 LanmanWorkstation - ok
23:00:59.0532 10120 [ CEEFD29FC551F289810B0B9381B321DC ] lltdio C:\windows\system32\DRIVERS\lltdio.sys
23:00:59.0532 10120 lltdio - ok
23:00:59.0548 10120 [ BCF53485E0A94722CDE3C4A93CD8EB8C ] lltdsvc C:\windows\System32\lltdsvc.dll
23:00:59.0548 10120 lltdsvc - ok
23:00:59.0564 10120 [ 5A2F7F1CBC2E631A497DAD16164E06D2 ] lmhosts C:\windows\System32\lmhsvc.dll
23:00:59.0564 10120 lmhosts - ok
23:00:59.0610 10120 [ 206D1495952A86E30CC997EA10A68A6C ] LMIGuardianSvc C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
23:00:59.0610 10120 LMIGuardianSvc - ok
23:00:59.0642 10120 [ 4269D44BB47A6DA5D80B11F4C8536458 ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
23:00:59.0642 10120 LMS - ok
23:00:59.0657 10120 [ 022CDD12161B063D7852B1075BF3FFF2 ] LSI_SAS C:\windows\system32\drivers\lsi_sas.sys
23:00:59.0657 10120 LSI_SAS - ok
23:00:59.0657 10120 [ 07AD59D669B996F29F91817F0ECFA34F ] LSI_SAS2 C:\windows\system32\drivers\lsi_sas2.sys
23:00:59.0673 10120 LSI_SAS2 - ok
23:00:59.0673 10120 [ 216FB796AA4E252ACCE93B1BCB80B5EC ] LSI_SCSI C:\windows\system32\drivers\lsi_scsi.sys
23:00:59.0673 10120 LSI_SCSI - ok
23:00:59.0673 10120 [ 5E80530AF37102488EE980B4A92AF99F ] LSI_SSS C:\windows\system32\drivers\lsi_sss.sys
23:00:59.0673 10120 LSI_SSS - ok
23:00:59.0720 10120 [ A57BA284F5996FFD32DCDBC41A4657DB ] LSM C:\windows\System32\lsm.dll
23:00:59.0735 10120 LSM - ok
23:00:59.0735 10120 [ 2BDC5D711FA61307CE6190D47C956368 ] luafv C:\windows\system32\drivers\luafv.sys
23:00:59.0735 10120 luafv - ok
23:00:59.0782 10120 [ 024DA28053D57E9E32BEE52600576BBB ] MarvinBus C:\windows\System32\drivers\MarvinBus64.sys
23:00:59.0798 10120 MarvinBus - ok
23:00:59.0829 10120 [ 0BB97D43299910CBFBA59C461B99B910 ] MBAMProtector C:\windows\system32\drivers\mbam.sys
23:00:59.0829 10120 MBAMProtector - ok
23:00:59.0907 10120 [ 65085456FD9A74D7F1A999520C299ECB ] MBAMScheduler C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
23:00:59.0907 10120 MBAMScheduler - ok
23:00:59.0923 10120 [ E0D7732F2D2E24B2DB3F67B6750295B8 ] MBAMService C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
23:00:59.0923 10120 MBAMService - ok
23:01:00.0126 10120 [ 43E7E1D311AC37995E9AA7248A19F67B ] McMyAdmin C:\Users\Irena\Desktop\Kluci\Patosik\MCMyServerAdmin\MCMA_Service.exe
23:01:00.0126 10120 McMyAdmin - ok
23:01:00.0157 10120 [ 9B0D829C3BE4E7472DB9DD2B79908E3C ] megasas C:\windows\system32\drivers\megasas.sys
23:01:00.0157 10120 megasas - ok
23:01:00.0157 10120 [ ECC3F54C7AFC318271C4F0B4606D8DB0 ] MegaSR C:\windows\system32\drivers\MegaSR.sys
23:01:00.0157 10120 MegaSR - ok
23:01:00.0189 10120 [ 772A1DEEDFDBC244183B5C805D1B7D85 ] MEIx64 C:\windows\System32\drivers\HECIx64.sys
23:01:00.0189 10120 MEIx64 - ok
23:01:00.0267 10120 Microsoft SharePoint Workspace Audit Service - ok
23:01:00.0298 10120 [ EEE908BE7143FCA48CF0CB87214E2AB8 ] MMCSS C:\windows\system32\mmcss.dll
23:01:00.0298 10120 MMCSS - ok
23:01:00.0314 10120 [ 780098AD5DA8A4822E2563984C85EF7B ] Modem C:\windows\system32\drivers\modem.sys
23:01:00.0314 10120 Modem - ok
23:01:00.0360 10120 [ EA8EAD3F5B762F889CC7F3966625B48B ] monitor C:\windows\System32\drivers\monitor.sys
23:01:00.0360 10120 monitor - ok
23:01:00.0376 10120 [ 618446B98C79776654340CE27C73485E ] mouclass C:\windows\System32\drivers\mouclass.sys
23:01:00.0376 10120 mouclass - ok
23:01:00.0376 10120 [ C0ADEBED913295803B579ED288936CBB ] mouhid C:\windows\System32\drivers\mouhid.sys
23:01:00.0376 10120 mouhid - ok
23:01:00.0407 10120 [ 89D263DBF08119CE16273991C120D6DD ] mountmgr C:\windows\system32\drivers\mountmgr.sys
23:01:00.0407 10120 mountmgr - ok
23:01:00.0439 10120 [ 338037EFA0E8E8699B2667D57B751574 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
23:01:00.0439 10120 MozillaMaintenance - ok
23:01:00.0517 10120 [ 4CCBBD4944777CA100B9A6C2F149A46F ] mpsdrv C:\windows\system32\drivers\mpsdrv.sys
23:01:00.0517 10120 mpsdrv - ok
23:01:00.0532 10120 [ 9DE3341BD4E14BC5FADFCAD3019F2D0D ] MpsSvc C:\windows\system32\mpssvc.dll
23:01:00.0548 10120 MpsSvc - ok
23:01:00.0564 10120 [ 3D70147F55F1EC84EB9139ED7FFE48BC ] MRxDAV C:\windows\system32\drivers\mrxdav.sys
23:01:00.0564 10120 MRxDAV - ok
23:01:00.0610 10120 [ 93179D48066918323628CB016D8C94DC ] mrxsmb C:\windows\system32\DRIVERS\mrxsmb.sys
23:01:00.0610 10120 mrxsmb - ok
23:01:00.0626 10120 [ 06D5F2FA3C61E8EA91648EA8E9F99FD3 ] mrxsmb10 C:\windows\system32\DRIVERS\mrxsmb10.sys
23:01:00.0626 10120 mrxsmb10 - ok
23:01:00.0642 10120 [ 5C7DD2E5759FFCCD2C7341C1B90F2B26 ] mrxsmb20 C:\windows\system32\DRIVERS\mrxsmb20.sys
23:01:00.0642 10120 mrxsmb20 - ok
23:01:00.0657 10120 [ 98487487D6B3797CA927E9D7B030AE13 ] MsBridge C:\windows\system32\DRIVERS\bridge.sys
23:01:00.0657 10120 MsBridge - ok
23:01:00.0689 10120 [ 4A07458EB4F17573BD39F22029A991C1 ] MSDTC C:\windows\System32\msdtc.exe
23:01:00.0689 10120 MSDTC - ok
23:01:00.0704 10120 [ 3886F1F2A4D2900ABAA7E4486BEEE6A2 ] Msfs C:\windows\system32\drivers\Msfs.sys
23:01:00.0704 10120 Msfs - ok
23:01:00.0751 10120 [ C32A7A39B960A42BA9D4FBE47213CA03 ] msgpiowin32 C:\windows\System32\drivers\msgpiowin32.sys
23:01:00.0751 10120 msgpiowin32 - ok
23:01:00.0767 10120 [ D3857A767B91A061B408CCAB02DA4F40 ] mshidkmdf C:\windows\System32\drivers\mshidkmdf.sys
23:01:00.0767 10120 mshidkmdf - ok
23:01:00.0782 10120 [ 839B48910FB1E887635C48F3EC11A05E ] mshidumdf C:\windows\System32\drivers\mshidumdf.sys
23:01:00.0782 10120 mshidumdf - ok
23:01:00.0782 10120 [ 55C0DB741E3AB7463242B185B1C2997C ] msisadrv C:\windows\system32\drivers\msisadrv.sys
23:01:00.0782 10120 msisadrv - ok
23:01:00.0798 10120 [ 216C6B035A4BA5560E1255BD8E5BB89F ] MSiSCSI C:\windows\system32\iscsiexe.dll
23:01:00.0814 10120 MSiSCSI - ok
23:01:00.0814 10120 msiserver - ok
23:01:00.0829 10120 [ 509809566E49F4411055864EA8D437CD ] MSKSSRV C:\windows\system32\drivers\MSKSSRV.sys
23:01:00.0829 10120 MSKSSRV - ok
23:01:00.0829 10120 [ 63145201D6458E4958E572E7D6FC2604 ] MsLldp C:\windows\system32\DRIVERS\mslldp.sys
23:01:00.0829 10120 MsLldp - ok
23:01:00.0845 10120 [ 99D526E803DB6D7FF290FD98B6204641 ] MSPCLOCK C:\windows\system32\drivers\MSPCLOCK.sys
23:01:00.0845 10120 MSPCLOCK - ok
23:01:00.0845 10120 [ 06FA77C3E2A491ADCD704C5E73006269 ] MSPQM C:\windows\system32\drivers\MSPQM.sys
23:01:00.0845 10120 MSPQM - ok
23:01:00.0876 10120 [ E134EC4DE11CF78CB01432D180710D84 ] MsRPC C:\windows\system32\drivers\MsRPC.sys
23:01:00.0876 10120 MsRPC - ok
23:01:00.0876 10120 [ B5AECF12F09DEE97C9FCAA5BA016CE1E ] mssmbios C:\windows\System32\drivers\mssmbios.sys
23:01:00.0876 10120 mssmbios - ok
23:01:00.0892 10120 [ 72D66A05E0F99F2528F6C6204FD22AA1 ] MSTEE C:\windows\system32\drivers\MSTEE.sys
23:01:00.0892 10120 MSTEE - ok
23:01:00.0892 10120 [ 8AAAE399FC255FA105D4158CBA289001 ] MTConfig C:\windows\System32\drivers\MTConfig.sys
23:01:00.0892 10120 MTConfig - ok
23:01:00.0907 10120 [ 3BCB702F3E6CC622DCAFCAA45D7CDE0A ] Mup C:\windows\system32\Drivers\mup.sys
23:01:00.0907 10120 Mup - ok
23:01:00.0907 10120 [ 3A1E095277BBD406CEA8EA6B76950664 ] mvumis C:\windows\system32\drivers\mvumis.sys
23:01:00.0907 10120 mvumis - ok
23:01:00.0923 10120 [ 4B18840511D720BA118D3017E8165875 ] napagent C:\windows\system32\qagentRT.dll
23:01:00.0939 10120 napagent - ok
23:01:00.0954 10120 [ 43D7388A90A4C6EA346A4D6FF0377479 ] NativeWifiP C:\windows\system32\DRIVERS\nwifi.sys
23:01:00.0954 10120 NativeWifiP - ok
23:01:00.0985 10120 [ 6A0C3996DA7DAE6D6939676D786EEEC4 ] NcaSvc C:\windows\System32\ncasvc.dll
23:01:00.0985 10120 NcaSvc - ok
23:01:01.0001 10120 [ C982FE4CC91DECE2259F494FCEB4030F ] NcdAutoSetup C:\windows\System32\NcdAutoSetup.dll
23:01:01.0001 10120 NcdAutoSetup - ok
23:01:01.0048 10120 [ A10E176F3B2BF83EDE7B5C4658C93B66 ] NDIS C:\windows\system32\drivers\ndis.sys
23:01:01.0048 10120 NDIS - ok
23:01:01.0064 10120 [ 39C8A1D9D46F5E83A016BCAB72455284 ] NdisCap C:\windows\system32\DRIVERS\ndiscap.sys
23:01:01.0079 10120 NdisCap - ok
23:01:01.0126 10120 [ 762941932B7E4C588E48A577BA9D6440 ] NdisImPlatform C:\windows\system32\DRIVERS\NdisImPlatform.sys
23:01:01.0142 10120 NdisImPlatform - ok
23:01:01.0142 10120 [ 7A6F8A6D0E01432EBA294EF29CDD0FA7 ] NdisTapi C:\windows\system32\DRIVERS\ndistapi.sys
23:01:01.0157 10120 NdisTapi - ok
23:01:01.0157 10120 [ 79AB68BB3FFF974AD4F41FA559F4EC67 ] Ndisuio C:\windows\system32\DRIVERS\ndisuio.sys
23:01:01.0173 10120 Ndisuio - ok
23:01:01.0173 10120 [ 62C7DBF4F9301F76CF87D4B9D8F57BF8 ] NdisWan C:\windows\system32\DRIVERS\ndiswan.sys
23:01:01.0173 10120 NdisWan - ok
23:01:01.0189 10120 [ 62C7DBF4F9301F76CF87D4B9D8F57BF8 ] NDISWANLEGACY C:\windows\system32\DRIVERS\ndiswan.sys
23:01:01.0189 10120 NDISWANLEGACY - ok
23:01:01.0204 10120 [ 3730942D7DB2F8BB5F84542B7FF6F650 ] NDProxy C:\windows\system32\drivers\NDProxy.sys
23:01:01.0204 10120 NDProxy - ok
23:01:01.0204 10120 [ D3F60A4345FCA9C1BE68AD7D0D6DE770 ] Ndu C:\windows\system32\drivers\Ndu.sys
23:01:01.0204 10120 Ndu - ok
23:01:01.0204 10120 [ 7C203A76394F9AE68F69EEE5F9612C4A ] NetBIOS C:\windows\system32\DRIVERS\netbios.sys
23:01:01.0204 10120 NetBIOS - ok
23:01:01.0220 10120 [ 7CEC25C682D319D484630B3952C31A11 ] NetBT C:\windows\system32\DRIVERS\netbt.sys
23:01:01.0220 10120 NetBT - ok
23:01:01.0220 10120 [ F702AB6181513303AB0FC8D59E52708B ] Netlogon C:\windows\system32\lsass.exe
23:01:01.0220 10120 Netlogon - ok
23:01:01.0236 10120 [ 89519D29CBEC2121CA65CC29C4D345E0 ] Netman C:\windows\System32\netman.dll
23:01:01.0251 10120 Netman - ok
23:01:01.0298 10120 [ 79FA9393C67EBBF92A56923592CF7A7C ] netprofm C:\windows\System32\netprofmsvc.dll
23:01:01.0314 10120 netprofm - ok
23:01:01.0376 10120 [ 5243CFC2E7161C91C2B355240035B9E4 ] NetTcpPortSharing C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
23:01:01.0407 10120 NetTcpPortSharing - ok
23:01:01.0423 10120 [ 12DD2800E4EEA37DC9AE256AD62423B4 ] nfrd960 C:\windows\system32\drivers\nfrd960.sys
23:01:01.0423 10120 nfrd960 - ok
23:01:01.0470 10120 [ 80ABCD4C2DE9FD832477303AE0CA3BE5 ] NlaSvc C:\windows\System32\nlasvc.dll
23:01:01.0486 10120 NlaSvc - ok
23:01:01.0517 10120 [ 351533ACC2A069B94E80BBFC177E8FDF ] npf C:\windows\system32\drivers\npf.sys
23:01:01.0517 10120 npf - ok
23:01:01.0532 10120 [ 17E19A742FB30C002F8B43575451DBE1 ] Npfs C:\windows\system32\drivers\Npfs.sys
23:01:01.0532 10120 Npfs - ok
23:01:01.0532 10120 [ 8ED299C30792544264E558BEA79F0947 ] npsvctrig C:\windows\System32\drivers\npsvctrig.sys
23:01:01.0548 10120 npsvctrig - ok
23:01:01.0564 10120 [ 832B5FDF0B5577713FD7F2465FCD0ACE ] nsi C:\windows\system32\nsisvc.dll
23:01:01.0564 10120 nsi - ok
23:01:01.0579 10120 [ 689B3B1E95C70ABF7AFF29F9406EF1E0 ] nsiproxy C:\windows\system32\drivers\nsiproxy.sys
23:01:01.0579 10120 nsiproxy - ok
23:01:01.0642 10120 [ 76929F4A69E425911A63B407E26C2589 ] Ntfs C:\windows\system32\drivers\Ntfs.sys
23:01:01.0657 10120 Ntfs - ok
23:01:01.0657 10120 [ 4163ADE07DB51843AE31F65B94F5398D ] Null C:\windows\system32\drivers\Null.sys
23:01:01.0673 10120 Null - ok
23:01:01.0673 10120 [ D6D34118263412D3AAA8348A9572B7F2 ] nvraid C:\windows\system32\drivers\nvraid.sys
23:01:01.0673 10120 nvraid - ok
23:01:01.0690 10120 [ 27AFC428D1D32ABD04A86763A4EDDEA9 ] nvstor C:\windows\system32\drivers\nvstor.sys
23:01:01.0690 10120 nvstor - ok
23:01:01.0690 10120 [ 051CFB5107BAAE510419BDC41F8C4036 ] nv_agp C:\windows\system32\drivers\nv_agp.sys
23:01:01.0690 10120 nv_agp - ok
23:01:01.0737 10120 [ 9D10F99A6712E28F8ACD5641E3A7EA6B ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
23:01:01.0737 10120 ose - ok
23:01:01.0877 10120 [ 61BFFB5F57AD12F83AB64B7181829B34 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
23:01:01.0893 10120 osppsvc - ok
23:01:01.0924 10120 [ AB76700D764A342D7475FB8F47CAB18C ] p2pimsvc C:\windows\system32\pnrpsvc.dll
23:01:01.0940 10120 p2pimsvc - ok
23:01:01.0955 10120 [ 4319FD931DCD796435ECB5DB4A04FBA5 ] p2psvc C:\windows\system32\p2psvc.dll
23:01:01.0955 10120 p2psvc - ok
23:01:01.0971 10120 [ 4563DAF8C6A740AD7F501E219BD10766 ] Parport C:\windows\System32\drivers\parport.sys
23:01:01.0987 10120 Parport - ok
23:01:01.0987 10120 [ D6ACCF9F2EEEEA711C14EFD976E573F3 ] partmgr C:\windows\system32\drivers\partmgr.sys
23:01:01.0987 10120 partmgr - ok
23:01:02.0033 10120 [ 4811D9EC53649105A5A8BEA661B0F936 ] PcaSvc C:\windows\System32\pcasvc.dll
23:01:02.0049 10120 PcaSvc - ok
23:01:02.0065 10120 [ 4A003E8F718C1E6A2050CA98CD53E3E2 ] pci C:\windows\system32\drivers\pci.sys
23:01:02.0065 10120 pci - ok
23:01:02.0112 10120 [ F9908D274D458220F91E89B54D78D837 ] pciide C:\windows\system32\drivers\pciide.sys
23:01:02.0112 10120 pciide - ok
23:01:02.0143 10120 [ 84D19CB6102627932DCB5DFDF89FE269 ] pcmcia C:\windows\system32\drivers\pcmcia.sys
23:01:02.0143 10120 pcmcia - ok
23:01:02.0143 10120 [ CEBBAD5391C2644560C55628A40BFD27 ] pcw C:\windows\system32\drivers\pcw.sys
23:01:02.0143 10120 pcw - ok
23:01:02.0158 10120 [ 0698DEDEAD6A00AD0D468C687D830FBF ] pdc C:\windows\system32\drivers\pdc.sys
23:01:02.0158 10120 pdc - ok
23:01:02.0190 10120 [ 61FE70659CD43E07F94DA4DC31DEC493 ] PEAUTH C:\windows\system32\drivers\peauth.sys
23:01:02.0190 10120 PEAUTH - ok
23:01:02.0268 10120 [ EB88FA19F0EA05DD04BE9C5FFEEFFE1A ] PerfHost C:\windows\SysWow64\perfhost.exe
23:01:02.0268 10120 PerfHost - ok
23:01:02.0299 10120 [ 6E84BFF58F7643499277F29DFA2F8C8D ] pla C:\windows\system32\pla.dll
23:01:02.0315 10120 pla - ok
23:01:02.0346 10120 [ 799BE46D45D486704CE0F37CA5385262 ] PlugPlay C:\windows\system32\umpnpmgr.dll
23:01:02.0346 10120 PlugPlay - ok
23:01:02.0362 10120 [ 8E2414E818C26C4A9C70CB2B8567F04F ] PNRPAutoReg C:\windows\system32\pnrpauto.dll
23:01:02.0362 10120 PNRPAutoReg - ok
23:01:02.0377 10120 [ AB76700D764A342D7475FB8F47CAB18C ] PNRPsvc C:\windows\system32\pnrpsvc.dll
23:01:02.0377 10120 PNRPsvc - ok
23:01:02.0409 10120 [ 0108C8E5176D590F242701EF5A62CC26 ] PolicyAgent C:\windows\System32\ipsecsvc.dll
23:01:02.0409 10120 PolicyAgent - ok
23:01:02.0455 10120 [ F1E067F56373F11EA4B785CAE823740A ] Power C:\windows\system32\umpo.dll
23:01:02.0455 10120 Power - ok
23:01:02.0487 10120 [ 362D47E5B4D67270DE4B8606036F4ADD ] PptpMiniport C:\windows\system32\DRIVERS\raspptp.sys
23:01:02.0487 10120 PptpMiniport - ok
23:01:02.0565 10120 [ 9D59831262CAD44E709D695FC9D5E7AB ] PrintNotify C:\Windows\system32\spool\DRIVERS\x64\3\PrintConfig.dll
23:01:02.0580 10120 PrintNotify - ok
23:01:02.0612 10120 [ DD979EB6A7212F60E4AFBE96EDC7AE6D ] Processor C:\windows\System32\drivers\processr.sys
23:01:02.0612 10120 Processor - ok
23:01:02.0627 10120 [ 429E8502AD2227CF88F8840FC5BD590D ] ProfSvc C:\windows\system32\profsvc.dll
23:01:02.0627 10120 ProfSvc - ok
23:01:02.0659 10120 [ EB8034147D4820CD31BFCB11A2A652DF ] Psched C:\windows\system32\DRIVERS\pacer.sys
23:01:02.0659 10120 Psched - ok
23:01:02.0674 10120 [ 0AFBF333B6F87A2F598EAB379AF100B8 ] QWAVE C:\windows\system32\qwave.dll
23:01:02.0674 10120 QWAVE - ok
23:01:02.0690 10120 [ 13D47BB0CCA2FC51BD15F8E85C6A078E ] QWAVEdrv C:\windows\system32\drivers\qwavedrv.sys

Uživatelský avatar
Mejssi
nováček
Příspěvky: 15
Registrován: říjen 13
Pohlaví: Žena
Stav:
Offline

Re: HiJackThis LOG

Příspěvekod Mejssi » 22 úno 2014 23:36

23:01:02.0690 10120 QWAVEdrv - ok
23:01:02.0705 10120 [ 873C60F8178100557740A832FCE10B5F ] RasAcd C:\windows\system32\DRIVERS\rasacd.sys
23:01:02.0705 10120 RasAcd - ok
23:01:02.0721 10120 [ 69B93F623B130976243ECA3D84CC99CA ] RasAgileVpn C:\windows\system32\DRIVERS\AgileVpn.sys
23:01:02.0721 10120 RasAgileVpn - ok
23:01:02.0737 10120 [ 005F6E54C4A2DA4EBF68FB0392CE8BB0 ] RasAuto C:\windows\System32\rasauto.dll
23:01:02.0752 10120 RasAuto - ok
23:01:02.0768 10120 [ A14D625C5AEE5FFE0F47D1A1D419FAAE ] Rasl2tp C:\windows\system32\DRIVERS\rasl2tp.sys
23:01:02.0768 10120 Rasl2tp - ok
23:01:02.0784 10120 [ C923C785A2DE0B396AD6D13ACAFF2DE9 ] RasMan C:\windows\System32\rasmans.dll
23:01:02.0784 10120 RasMan - ok
23:01:02.0799 10120 [ 00695B9C2DB6111064499C529E90C042 ] RasPppoe C:\windows\system32\DRIVERS\raspppoe.sys
23:01:02.0799 10120 RasPppoe - ok
23:01:02.0799 10120 [ A7F24D8CD1956B0A1FDCB86CC5114DE4 ] RasSstp C:\windows\system32\DRIVERS\rassstp.sys
23:01:02.0799 10120 RasSstp - ok
23:01:02.0862 10120 [ CA03D642ACE58E1BA54E4B383F91CD69 ] rdbss C:\windows\system32\DRIVERS\rdbss.sys
23:01:02.0862 10120 rdbss - ok
23:01:02.0862 10120 [ CA7DF5EC95D8DE0DD24BE7FF97369F68 ] rdpbus C:\windows\System32\drivers\rdpbus.sys
23:01:02.0877 10120 rdpbus - ok
23:01:02.0877 10120 [ B2A3AD74FF2E2FFA73AF2567108231B3 ] RDPDR C:\windows\system32\drivers\rdpdr.sys
23:01:02.0877 10120 RDPDR - ok
23:01:02.0924 10120 [ 57F4787E4602A3FCA719C0A33137C6DA ] RdpVideoMiniport C:\windows\system32\drivers\rdpvideominiport.sys
23:01:02.0924 10120 RdpVideoMiniport - ok
23:01:02.0940 10120 [ B3CB0721E81E30419CE7D837EF4EA151 ] RDPWD C:\windows\system32\drivers\RDPWD.sys
23:01:02.0940 10120 RDPWD - ok
23:01:02.0971 10120 [ 62C1F8A0685FE07E998AA296C4F697C4 ] rdyboost C:\windows\system32\drivers\rdyboost.sys
23:01:02.0971 10120 rdyboost - ok
23:01:02.0987 10120 [ 3663CCF243EE0C04E9F6F91ED1737273 ] RemoteAccess C:\windows\System32\mprdim.dll
23:01:02.0987 10120 RemoteAccess - ok
23:01:03.0018 10120 [ E80DD61E52EDFFF9DA1ED7260A68855B ] RemoteRegistry C:\windows\system32\regsvc.dll
23:01:03.0018 10120 RemoteRegistry - ok
23:01:03.0065 10120 [ 73F2E030B5C24E4E41401B5F0D59E6FD ] RpcEptMapper C:\windows\System32\RpcEpMap.dll
23:01:03.0065 10120 RpcEptMapper - ok
23:01:03.0080 10120 [ 10B21284B3D964AB3DC45490E57D422E ] RpcLocator C:\windows\system32\locator.exe
23:01:03.0080 10120 RpcLocator - ok
23:01:03.0096 10120 [ 1EC6E533C954BDDF2A37E7851A7E58FD ] RpcSs C:\windows\system32\rpcss.dll
23:01:03.0112 10120 RpcSs - ok
23:01:03.0127 10120 [ E04E770DD198B9399640717145E79EBF ] rspndr C:\windows\system32\DRIVERS\rspndr.sys
23:01:03.0127 10120 rspndr - ok
23:01:03.0159 10120 [ C4BE01C55656888152F57CC7E35A2BE6 ] RTL8168 C:\windows\system32\DRIVERS\Rt630x64.sys
23:01:03.0174 10120 RTL8168 - ok
23:01:03.0252 10120 [ FEFA32073D77BB9C741A63B6286479F6 ] RzKLService C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe
23:01:03.0252 10120 RzKLService - ok
23:01:03.0284 10120 [ 752EC7DCD2F96871A3857EEE6AFE965A ] s3cap C:\windows\System32\drivers\vms3cap.sys
23:01:03.0284 10120 s3cap - ok
23:01:03.0330 10120 [ F702AB6181513303AB0FC8D59E52708B ] SamSs C:\windows\system32\lsass.exe
23:01:03.0330 10120 SamSs - ok
23:01:03.0346 10120 [ 9C7B28CE0D136DB226E24DB3BC817F92 ] sbp2port C:\windows\system32\drivers\sbp2port.sys
23:01:03.0346 10120 sbp2port - ok
23:01:03.0377 10120 [ 14316954FCE79C9DE5A0AFF9D42C83AA ] SCardSvr C:\windows\System32\SCardSvr.dll
23:01:03.0377 10120 SCardSvr - ok
23:01:03.0393 10120 [ 5D7733A12756B267FCA021672B26BC9E ] scfilter C:\windows\system32\DRIVERS\scfilter.sys
23:01:03.0393 10120 scfilter - ok
23:01:03.0455 10120 [ ED40ED9A65F3E79A8C43DD50C5FDADBF ] Schedule C:\windows\system32\schedsvc.dll
23:01:03.0455 10120 Schedule - ok
23:01:03.0487 10120 [ BAF8F0F55BC300E5F882E521F054E345 ] SCPolicySvc C:\windows\System32\certprop.dll
23:01:03.0487 10120 SCPolicySvc - ok
23:01:03.0518 10120 [ F58B030A0664385C707B8C1C63682041 ] sdbus C:\windows\System32\drivers\sdbus.sys
23:01:03.0518 10120 sdbus - ok
23:01:03.0549 10120 [ 92968277ED491E4B3DDA361E3952361E ] SDRSVC C:\windows\System32\SDRSVC.dll
23:01:03.0549 10120 SDRSVC - ok
23:01:03.0565 10120 [ BB107AA9980B0DA4E19A3A90C3BD4460 ] sdstor C:\windows\System32\drivers\sdstor.sys
23:01:03.0565 10120 sdstor - ok
23:01:03.0580 10120 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\windows\system32\drivers\secdrv.sys
23:01:03.0580 10120 secdrv - ok
23:01:03.0596 10120 [ CD282626738B6BC92B6E7CD0AAE95B63 ] seclogon C:\windows\system32\seclogon.dll
23:01:03.0596 10120 seclogon - ok
23:01:03.0612 10120 [ 9C51620998F0763039DFA6BF68E475ED ] SENS C:\windows\System32\sens.dll
23:01:03.0612 10120 SENS - ok
23:01:03.0643 10120 [ DDA4CAF29D8C0A297F886BFE561E6659 ] SensorsSimulatorDriver C:\windows\system32\DRIVERS\WUDFRd.sys
23:01:03.0643 10120 SensorsSimulatorDriver - ok
23:01:03.0659 10120 [ 0D50B4B860DAB65241628D04CD33ACAE ] SensrSvc C:\windows\system32\sensrsvc.dll
23:01:03.0674 10120 SensrSvc - ok
23:01:03.0690 10120 [ 87C46B239A7EEF30FDFDD5E9BD46130C ] SerCx C:\windows\system32\drivers\SerCx.sys
23:01:03.0690 10120 SerCx - ok
23:01:03.0690 10120 [ 7A1F9347C85FD55E39B8A76B3A25C5AD ] Serenum C:\windows\System32\drivers\serenum.sys
23:01:03.0690 10120 Serenum - ok
23:01:03.0690 10120 [ F640A0A218BBF857F1D04A15D7D939F6 ] Serial C:\windows\System32\drivers\serial.sys
23:01:03.0690 10120 Serial - ok
23:01:03.0752 10120 [ F1A5F56B2620B862CC28FF96A0A6DAAB ] sermouse C:\windows\System32\drivers\sermouse.sys
23:01:03.0752 10120 sermouse - ok
23:01:03.0784 10120 [ CB60A60340788C8D6DE2A269D28086AB ] SessionEnv C:\windows\system32\sessenv.dll
23:01:03.0784 10120 SessionEnv - ok
23:01:03.0799 10120 [ 7EE65419B29302C795714FF8073969A1 ] sfloppy C:\windows\System32\drivers\sfloppy.sys
23:01:03.0799 10120 sfloppy - ok
23:01:03.0815 10120 [ 090AE16F79C8EAD04E6031F863DA85F3 ] SharedAccess C:\windows\System32\ipnathlp.dll
23:01:03.0830 10120 SharedAccess - ok
23:01:03.0846 10120 [ A77F3ABE13FCC698511E5DEC7ACEBD5F ] ShellHWDetection C:\windows\System32\shsvcs.dll
23:01:03.0862 10120 ShellHWDetection - ok
23:01:03.0862 10120 [ 2560721D6F16D5B611C36A3A9D28C1B2 ] SiSRaid2 C:\windows\system32\drivers\SiSRaid2.sys
23:01:03.0862 10120 SiSRaid2 - ok
23:01:03.0877 10120 [ 3AA8FDE1DBF65BB8B88B053529554A0D ] SiSRaid4 C:\windows\system32\drivers\sisraid4.sys
23:01:03.0877 10120 SiSRaid4 - ok
23:01:03.0924 10120 [ F5BBEDF602C310B00036EB2DBF4348A5 ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
23:01:03.0924 10120 SkypeUpdate - ok
23:01:03.0940 10120 [ E660156A4588A84305CB772FD2C0DB21 ] SNMPTRAP C:\windows\System32\snmptrap.exe
23:01:03.0940 10120 SNMPTRAP - ok
23:01:03.0987 10120 [ 9110193D93960E38B8692E4519C75D72 ] spaceport C:\windows\system32\drivers\spaceport.sys
23:01:03.0987 10120 spaceport - ok
23:01:04.0002 10120 [ 3D8679C8DF52EB26EB7583A4E0A29202 ] SpbCx C:\windows\system32\drivers\SpbCx.sys
23:01:04.0002 10120 SpbCx - ok
23:01:04.0065 10120 [ 3F215BF2D4D8D6756298B25B579772C2 ] Spooler C:\windows\System32\spoolsv.exe
23:01:04.0080 10120 Spooler - ok
23:01:04.0174 10120 [ 061A977C920FBE4BF71FF47C966DDDCA ] sppsvc C:\windows\system32\sppsvc.exe
23:01:04.0190 10120 sppsvc - ok
23:01:04.0205 10120 [ 0F1FCD575A03ABDE13FCA9D0ADE4DDA6 ] srv C:\windows\system32\DRIVERS\srv.sys
23:01:04.0221 10120 srv - ok
23:01:04.0268 10120 [ 56218A571ECF8D55E0CDFF8DF2546CF1 ] srv2 C:\windows\system32\DRIVERS\srv2.sys
23:01:04.0268 10120 srv2 - ok
23:01:04.0284 10120 [ 14FC338B80CFF7E04215133B568D15C4 ] srvnet C:\windows\system32\DRIVERS\srvnet.sys
23:01:04.0284 10120 srvnet - ok
23:01:04.0315 10120 [ 7A20882D76D4A78240A5AC9F2C2EBA21 ] SSDPSRV C:\windows\System32\ssdpsrv.dll
23:01:04.0330 10120 SSDPSRV - ok
23:01:04.0330 10120 [ D233B16999A8E626F6004BD7814C57EC ] SstpSvc C:\windows\system32\sstpsvc.dll
23:01:04.0330 10120 SstpSvc - ok
23:01:04.0440 10120 [ 6955A1EE65ED72A263C7F4EDBB8D80ED ] STacSV C:\Program Files\IDT\WDM\STacSV64.exe
23:01:04.0440 10120 STacSV - ok
23:01:04.0455 10120 [ 4E85355B94CFCB67C135F6521A4895A7 ] stexstor C:\windows\system32\drivers\stexstor.sys
23:01:04.0455 10120 stexstor - ok
23:01:04.0518 10120 [ 1F509093A44E75A4649A541613531D94 ] STHDA C:\windows\system32\DRIVERS\stwrt64.sys
23:01:04.0518 10120 STHDA - ok
23:01:04.0549 10120 [ BAC8A721736AECC55A4F71523AEAB65F ] stisvc C:\windows\System32\wiaservc.dll
23:01:04.0565 10120 stisvc - ok
23:01:04.0565 10120 [ B240874B2CA0CD02E8CD11E140B14C57 ] storahci C:\windows\system32\drivers\storahci.sys
23:01:04.0565 10120 storahci - ok
23:01:04.0580 10120 [ F74DBC95A57B1EE866D3732EB5F79BE2 ] storflt C:\windows\system32\DRIVERS\vmstorfl.sys
23:01:04.0580 10120 storflt - ok
23:01:04.0612 10120 [ 5337E138B49ED1F44CCBA4073BC35C20 ] StorSvc C:\windows\system32\storsvc.dll
23:01:04.0612 10120 StorSvc - ok
23:01:04.0627 10120 [ 543CD3CC0E05B8D8815E0D4F040B6F59 ] storvsc C:\windows\system32\drivers\storvsc.sys
23:01:04.0627 10120 storvsc - ok
23:01:04.0643 10120 [ 8BC1C1ED6EF9C985A3FAA6A72F41679A ] svsvc C:\windows\system32\svsvc.dll
23:01:04.0643 10120 svsvc - ok
23:01:04.0659 10120 [ 4AFD66AAE74FFB5986BC240744DC5FC9 ] swenum C:\windows\System32\drivers\swenum.sys
23:01:04.0659 10120 swenum - ok
23:01:04.0674 10120 [ 502F9488540051F3E6C39889ECFA76BB ] swprv C:\windows\System32\swprv.dll
23:01:04.0690 10120 swprv - ok
23:01:04.0752 10120 [ A06CB9269D29EE3D0F3F5630ABB660B8 ] SysMain C:\windows\system32\sysmain.dll
23:01:04.0768 10120 SysMain - ok
23:01:04.0784 10120 [ 6FB88606C4A71E1BFAF97D63A676C673 ] SystemEventsBroker C:\windows\System32\SystemEventsBrokerServer.dll
23:01:04.0784 10120 SystemEventsBroker - ok
23:01:04.0815 10120 [ A6C06C45C44AD06C70AF8899AEC15BDC ] TabletInputService C:\windows\System32\TabSvc.dll
23:01:04.0815 10120 TabletInputService - ok
23:01:04.0831 10120 [ 88B7721AB551C4325036B25A34A2BF7B ] TapiSrv C:\windows\System32\tapisrv.dll
23:01:04.0846 10120 TapiSrv - ok
23:01:04.0909 10120 [ DD4249F03598043DED6FA540EB14898A ] Tcpip C:\windows\system32\drivers\tcpip.sys
23:01:04.0924 10120 Tcpip - ok
23:01:04.0940 10120 [ DD4249F03598043DED6FA540EB14898A ] TCPIP6 C:\windows\system32\DRIVERS\tcpip.sys
23:01:04.0956 10120 TCPIP6 - ok
23:01:05.0018 10120 [ 8F2A13A5DF99D72FDDE87F502A66F989 ] tcpipreg C:\windows\system32\drivers\tcpipreg.sys
23:01:05.0018 10120 tcpipreg - ok
23:01:05.0018 10120 [ 73DC722CE5DF26D7638CE2446F2655C7 ] tdx C:\windows\system32\DRIVERS\tdx.sys
23:01:05.0018 10120 tdx - ok
23:01:05.0127 10120 [ 950AD1AE7498A492126FB9F9B2E27DB5 ] Te.Service C:\Program Files (x86)\Windows Kits\8.1\Testing\Runtimes\TAEF\Wex.Services.exe
23:01:05.0127 10120 Te.Service - ok
23:01:05.0159 10120 [ F7C8AB5D8AFFAA318D6A21093D139BF4 ] terminpt C:\windows\System32\drivers\terminpt.sys
23:01:05.0159 10120 terminpt - ok
23:01:05.0190 10120 [ 541EE228D0DEF392F7B2DFD885DD021B ] TermService C:\windows\System32\termsrv.dll
23:01:05.0190 10120 TermService - ok
23:01:05.0190 10120 [ 519A6F672FFF56B7D8EE8C730CEC8ECD ] Themes C:\windows\system32\themeservice.dll
23:01:05.0206 10120 Themes - ok
23:01:05.0252 10120 [ EEE908BE7143FCA48CF0CB87214E2AB8 ] THREADORDER C:\windows\system32\mmcss.dll
23:01:05.0252 10120 THREADORDER - ok
23:01:05.0299 10120 [ 31B93B02F9C2172418FE548EBBC9B2E1 ] tilfilter C:\windows\System32\drivers\TIxHCIlfilter.sys
23:01:05.0299 10120 tilfilter - ok
23:01:05.0346 10120 [ 4515B9E4140F04FB3907692DF89FCA87 ] TimeBroker C:\windows\System32\TimeBrokerServer.dll
23:01:05.0346 10120 TimeBroker - ok
23:01:05.0362 10120 [ 8479862916203D79DF714432C954ECA8 ] tiufilter C:\windows\System32\drivers\TIxHCIufilter.sys
23:01:05.0362 10120 tiufilter - ok
23:01:05.0409 10120 [ E94F7A7B48C7638D1F3F8089344C97B7 ] TPM C:\windows\system32\drivers\tpm.sys
23:01:05.0409 10120 TPM - ok
23:01:05.0424 10120 [ 8C8CF3041B27E7657ADD0EE17F6DBFCA ] TrkWks C:\windows\System32\trkwks.dll
23:01:05.0424 10120 TrkWks - ok
23:01:05.0471 10120 [ 8ABBB5CE0C62E0A6D28F32F44B7F865C ] TrustedInstaller C:\windows\servicing\TrustedInstaller.exe
23:01:05.0471 10120 TrustedInstaller - ok
23:01:05.0502 10120 [ 4E7C5FB10A50435523DE0CAA37DE2BD3 ] TsUsbFlt C:\windows\system32\drivers\tsusbflt.sys
23:01:05.0502 10120 TsUsbFlt - ok
23:01:05.0502 10120 [ 16D684A820872EE54F6370703AC0B513 ] TsUsbGD C:\windows\System32\drivers\TsUsbGD.sys
23:01:05.0502 10120 TsUsbGD - ok
23:01:05.0518 10120 [ 78C9EE193AC2B4CBDBC48B620314D740 ] tunnel C:\windows\system32\DRIVERS\tunnel.sys
23:01:05.0518 10120 tunnel - ok
23:01:05.0518 10120 [ 6D4F67CA56ACA2085DFA2CD89EAFBC1A ] uagp35 C:\windows\system32\drivers\uagp35.sys
23:01:05.0518 10120 uagp35 - ok
23:01:05.0518 10120 [ 6FD6D03B7752C78712E5CFF29A305026 ] UASPStor C:\windows\System32\drivers\uaspstor.sys
23:01:05.0518 10120 UASPStor - ok
23:01:05.0565 10120 [ 061BA3EE0D2BE17944990544008CF190 ] UCX01000 C:\windows\System32\drivers\ucx01000.sys
23:01:05.0565 10120 UCX01000 - ok
23:01:05.0627 10120 [ 25C50F4EDF70D0A831E0566BD181CCF2 ] udfs C:\windows\system32\DRIVERS\udfs.sys
23:01:05.0627 10120 udfs - ok
23:01:05.0643 10120 [ FB3475FEA1CCB0DAEA1EBE44D0E3BB7D ] UI0Detect C:\windows\system32\UI0Detect.exe
23:01:05.0643 10120 UI0Detect - ok
23:01:05.0674 10120 [ 07FEBCDF24FABA0D47B635D85A0FFB7A ] uliagpkx C:\windows\system32\drivers\uliagpkx.sys
23:01:05.0674 10120 uliagpkx - ok
23:01:05.0674 10120 [ 02CEB3FE6152668A7BA420B93B664860 ] umbus C:\windows\System32\drivers\umbus.sys
23:01:05.0674 10120 umbus - ok
23:01:05.0690 10120 [ 991EE6B5FC41EAEF99C8AF5B92F2CA09 ] UmPass C:\windows\System32\drivers\umpass.sys
23:01:05.0690 10120 UmPass - ok
23:01:05.0690 10120 [ 43FEFB040A0CC30F795FBF544169594D ] UmRdpService C:\windows\System32\umrdp.dll
23:01:05.0690 10120 UmRdpService - ok
23:01:05.0737 10120 [ DBE2E6388379D5CC78099650541E9566 ] UNS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
23:01:05.0752 10120 UNS - ok
23:01:05.0768 10120 [ 14D22C411854AA2560AFC94CD2D5E61F ] upnphost C:\windows\System32\upnphost.dll
23:01:05.0768 10120 upnphost - ok
23:01:05.0815 10120 [ 9E9F21FF91D7ECC0BCCB94D3FE52A959 ] usbaudio C:\windows\system32\drivers\usbaudio.sys
23:01:05.0831 10120 usbaudio - ok
23:01:05.0846 10120 [ C976C4306F9AE133D6BBD47FDFC3BF92 ] usbccgp C:\windows\System32\drivers\usbccgp.sys
23:01:05.0846 10120 usbccgp - ok
23:01:05.0862 10120 [ 427B6DB8C05A5A977E8C3525370A2595 ] usbcir C:\windows\System32\drivers\usbcir.sys
23:01:05.0862 10120 usbcir - ok
23:01:05.0877 10120 [ B24FDEB1B18496F1B463782235AA3AF1 ] usbehci C:\windows\System32\drivers\usbehci.sys
23:01:05.0877 10120 usbehci - ok
23:01:05.0893 10120 [ F8C2A832DF9403F5EA8080CBDBDA95FB ] usbhub C:\windows\System32\drivers\usbhub.sys
23:01:05.0909 10120 usbhub - ok
23:01:05.0909 10120 [ E5F7328B1D29BCE791862CD3C0DD382A ] USBHUB3 C:\windows\System32\drivers\UsbHub3.sys
23:01:05.0924 10120 USBHUB3 - ok
23:01:05.0956 10120 [ 325F6179009B5A7F6118951A5BA422AB ] usbohci C:\windows\System32\drivers\usbohci.sys
23:01:05.0956 10120 usbohci - ok
23:01:06.0018 10120 [ 9FDBA6982582A6F2354144980F641E7B ] usbprint C:\windows\System32\drivers\usbprint.sys
23:01:06.0018 10120 usbprint - ok
23:01:06.0034 10120 [ AD91D1BBE5D3CF4501887DC1C09384FD ] usbscan C:\windows\system32\DRIVERS\usbscan.sys
23:01:06.0034 10120 usbscan - ok
23:01:06.0049 10120 [ BFC7FE4AAEB61317A921871B4085EF4B ] USBSTOR C:\windows\System32\drivers\USBSTOR.SYS
23:01:06.0049 10120 USBSTOR - ok
23:01:06.0065 10120 [ 1ABF657259DB57F7E5558E4DF1357C0C ] usbuhci C:\windows\System32\drivers\usbuhci.sys
23:01:06.0065 10120 usbuhci - ok
23:01:06.0081 10120 [ 9EF7C01D3ACCBC243B5CB1A95865B2FF ] usbvideo C:\windows\System32\Drivers\usbvideo.sys
23:01:06.0081 10120 usbvideo - ok
23:01:06.0096 10120 [ 8DC398D7B8E02C929A2096E74A170970 ] USBXHCI C:\windows\System32\drivers\USBXHCI.SYS
23:01:06.0096 10120 USBXHCI - ok
23:01:06.0096 10120 Util LinkSwift - ok
23:01:06.0112 10120 [ F702AB6181513303AB0FC8D59E52708B ] VaultSvc C:\windows\system32\lsass.exe
23:01:06.0112 10120 VaultSvc - ok
23:01:06.0127 10120 [ BACECBFF9C97F7627A60B0E0F1FE7EE8 ] vdrvroot C:\windows\system32\drivers\vdrvroot.sys
23:01:06.0127 10120 vdrvroot - ok
23:01:06.0190 10120 [ 1B4488988E5E7512E6C5CD1255E9E973 ] vds C:\windows\System32\vds.exe
23:01:06.0190 10120 vds - ok
23:01:06.0206 10120 [ 74FA2D4368DE6F6CE14393EDF1F342BE ] VerifierExt C:\windows\system32\drivers\VerifierExt.sys
23:01:06.0206 10120 VerifierExt - ok
23:01:06.0252 10120 [ 500BE6B2E49883720D0AE8BB859ED7A3 ] vhdmp C:\windows\System32\drivers\vhdmp.sys
23:01:06.0268 10120 vhdmp - ok
23:01:06.0284 10120 [ F5B4A14B00E89250C50982AC762DDD1D ] viaide C:\windows\system32\drivers\viaide.sys
23:01:06.0284 10120 viaide - ok
23:01:06.0315 10120 [ 78DB50F7329F6D1311658DABFFFC8BE0 ] vmbus C:\windows\system32\drivers\vmbus.sys
23:01:06.0315 10120 vmbus - ok
23:01:06.0315 10120 [ ECFEE2F2BA3932C7880D1A8F67D68F91 ] VMBusHID C:\windows\System32\drivers\VMBusHID.sys
23:01:06.0315 10120 VMBusHID - ok
23:01:06.0331 10120 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmicheartbeat C:\windows\System32\ICSvc.dll
23:01:06.0346 10120 vmicheartbeat - ok
23:01:06.0346 10120 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmickvpexchange C:\windows\System32\ICSvc.dll
23:01:06.0346 10120 vmickvpexchange - ok
23:01:06.0362 10120 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmicrdv C:\windows\System32\ICSvc.dll
23:01:06.0362 10120 vmicrdv - ok
23:01:06.0362 10120 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmicshutdown C:\windows\System32\ICSvc.dll
23:01:06.0362 10120 vmicshutdown - ok
23:01:06.0377 10120 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmictimesync C:\windows\System32\ICSvc.dll
23:01:06.0377 10120 vmictimesync - ok
23:01:06.0377 10120 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmicvss C:\windows\System32\ICSvc.dll
23:01:06.0377 10120 vmicvss - ok
23:01:06.0393 10120 [ CB60FAAED8B49B812EBBF77EB87D9B18 ] volmgr C:\windows\system32\drivers\volmgr.sys
23:01:06.0393 10120 volmgr - ok
23:01:06.0393 10120 [ A74101DA9809251BCD0E5A26BAE0F824 ] volmgrx C:\windows\system32\drivers\volmgrx.sys
23:01:06.0393 10120 volmgrx - ok
23:01:06.0424 10120 [ 78A5BBA3819FFFC62FFEC3E2220D102D ] volsnap C:\windows\system32\drivers\volsnap.sys
23:01:06.0424 10120 volsnap - ok
23:01:06.0456 10120 [ A8DA1C1B52ECEA3726DEBED4FF1B700D ] vpci C:\windows\System32\drivers\vpci.sys
23:01:06.0456 10120 vpci - ok
23:01:06.0487 10120 [ 9B4F6978628D07FAEBF77FF6F8F2960D ] VsEtwService120 C:\Program Files\Microsoft Visual Studio 12.0\Common7\Packages\Debugger\Services\VsEtwService.exe
23:01:06.0487 10120 VsEtwService120 - ok
23:01:06.0502 10120 [ 38A60CD9C009C55C6D3B5586F8E6A353 ] vsmraid C:\windows\system32\drivers\vsmraid.sys
23:01:06.0502 10120 vsmraid - ok
23:01:06.0565 10120 [ D0C69E44BC1E1D4AD290FD84104623D8 ] VSS C:\windows\system32\vssvc.exe
23:01:06.0581 10120 VSS - ok
23:01:06.0596 10120 [ A0F6FE0FC2F647C22BBFD6BD4249DBCC ] VSTXRAID C:\windows\system32\drivers\vstxraid.sys
23:01:06.0596 10120 VSTXRAID - ok
23:01:06.0596 10120 [ 62460A45435A26A334907E3F2EA45611 ] vwifibus C:\windows\System32\drivers\vwifibus.sys
23:01:06.0596 10120 vwifibus - ok
23:01:06.0627 10120 [ F690B6EEAA94576727B24376D7ED3601 ] W32Time C:\windows\system32\w32time.dll
23:01:06.0643 10120 W32Time - ok
23:01:06.0659 10120 [ 6B806E893714019969E2B50D7EF6A4D9 ] WacomPen C:\windows\System32\drivers\wacompen.sys
23:01:06.0659 10120 WacomPen - ok
23:01:06.0753 10120 [ A650671AF9A670F678F29FF212B4950C ] wampapache c:\wamp\bin\apache\apache2.4.4\bin\httpd.exe
23:01:06.0753 10120 wampapache - ok
23:01:06.0893 10120 wampmysqld - ok
23:01:06.0940 10120 [ 61F6972FF9AC9A8D0B4D62076DC30051 ] Wanarp C:\windows\system32\DRIVERS\wanarp.sys
23:01:06.0940 10120 Wanarp - ok
23:01:06.0956 10120 [ 61F6972FF9AC9A8D0B4D62076DC30051 ] Wanarpv6 C:\windows\system32\DRIVERS\wanarp.sys
23:01:06.0956 10120 Wanarpv6 - ok
23:01:07.0018 10120 [ 901CC968412F8155B08D7ABE0171166A ] WAS C:\windows\system32\inetsrv\iisw3adm.dll
23:01:07.0034 10120 WAS - ok
23:01:07.0065 10120 [ 42DF22F8C448E7CD219F6D63743505E2 ] wbengine C:\windows\system32\wbengine.exe
23:01:07.0081 10120 wbengine - ok
23:01:07.0096 10120 [ 31D37B2F6069C631EF0557D322924812 ] WbioSrvc C:\windows\System32\wbiosrvc.dll
23:01:07.0096 10120 WbioSrvc - ok
23:01:07.0143 10120 [ AF1349386D4C6786EF4E34FACEF15042 ] Wcmsvc C:\windows\System32\wcmsvc.dll
23:01:07.0159 10120 Wcmsvc - ok
23:01:07.0206 10120 [ 5B5FEAB51172F5513C2CF7B39CFA6A01 ] wcncsvc C:\windows\System32\wcncsvc.dll
23:01:07.0206 10120 wcncsvc - ok
23:01:07.0268 10120 [ E19556D414332E2BEBA1F368229006B4 ] WcsPlugInService C:\windows\System32\WcsPlugInService.dll
23:01:07.0268 10120 WcsPlugInService - ok
23:01:07.0299 10120 [ B3A4D918DAB90505B6BC7B70632913CB ] Wd C:\windows\system32\drivers\wd.sys
23:01:07.0299 10120 Wd - ok
23:01:07.0331 10120 [ FD47DF026B32969B8A68721A0243E8EE ] WdBoot C:\windows\system32\drivers\WdBoot.sys
23:01:07.0331 10120 WdBoot - ok
23:01:07.0378 10120 [ E2C933EDBC389386EBE6D2BA953F43D8 ] Wdf01000 C:\windows\system32\drivers\Wdf01000.sys
23:01:07.0378 10120 Wdf01000 - ok
23:01:07.0409 10120 [ 5F425D842DD6ADE9F95A51A0616AFAD7 ] WdFilter C:\windows\system32\drivers\WdFilter.sys
23:01:07.0409 10120 WdFilter - ok
23:01:07.0424 10120 [ 240FC332484572227CD1DF82407F33E5 ] WdiServiceHost C:\windows\system32\wdi.dll
23:01:07.0424 10120 WdiServiceHost - ok
23:01:07.0440 10120 [ 240FC332484572227CD1DF82407F33E5 ] WdiSystemHost C:\windows\system32\wdi.dll
23:01:07.0440 10120 WdiSystemHost - ok
23:01:07.0503 10120 [ 9B1384CE8E681D2D77BB3524B8E86311 ] WebClient C:\windows\System32\webclnt.dll
23:01:07.0503 10120 WebClient - ok
23:01:07.0503 10120 [ 35FD720943D4FCD75C3275BF062FF140 ] Wecsvc C:\windows\system32\wecsvc.dll
23:01:07.0518 10120 Wecsvc - ok
23:01:07.0534 10120 [ 4D2612E3C462B68F499D840B1133263E ] wercplsupport C:\windows\System32\wercplsupport.dll
23:01:07.0534 10120 wercplsupport - ok
23:01:07.0581 10120 [ 5F70EBFC1F75B487DE79501E3CCBDB54 ] WerSvc C:\windows\System32\WerSvc.dll
23:01:07.0596 10120 WerSvc - ok
23:01:07.0643 10120 [ 44BB9C31E6242C4BD1CE7C2B440C2533 ] WFPLWFS C:\windows\system32\DRIVERS\wfplwfs.sys
23:01:07.0643 10120 WFPLWFS - ok
23:01:07.0659 10120 [ 60E0C220593DA4F7C289CB909D2DBAE0 ] WiaRpc C:\windows\System32\wiarpc.dll
23:01:07.0659 10120 WiaRpc - ok
23:01:07.0674 10120 [ A3C7624A42A3447EF5EDD1ED37FE4E60 ] WIMMount C:\windows\system32\drivers\wimmount.sys
23:01:07.0674 10120 WIMMount - ok
23:01:07.0721 10120 WinDefend - ok
23:01:07.0784 10120 [ 7911470B6018059A880469A63B65700A ] WinHttpAutoProxySvc C:\windows\system32\winhttp.dll
23:01:07.0784 10120 WinHttpAutoProxySvc - ok
23:01:07.0831 10120 [ 3D6B518B71C75C8FA4115A33615C107A ] Winmgmt C:\windows\system32\wbem\WMIsvc.dll
23:01:07.0831 10120 Winmgmt - ok
23:01:07.0878 10120 [ 8E212A627F33F6FC3B5F3BB47212F66E ] WinRM C:\windows\system32\WsmSvc.dll
23:01:07.0909 10120 WinRM - ok
23:01:07.0956 10120 [ BB20956C424531003F7FA6CD36F11D5D ] WinUsb C:\windows\system32\DRIVERS\WinUsb.sys
23:01:07.0956 10120 WinUsb - ok
23:01:08.0018 10120 [ 6351724B8FA0255C2DBD970297F00B93 ] WlanSvc C:\windows\System32\wlansvc.dll
23:01:08.0034 10120 WlanSvc - ok
23:01:08.0096 10120 [ B330CE47FB74A6BE9A3FFFF4B3F64D9B ] wlidsvc C:\windows\system32\wlidsvc.dll
23:01:08.0128 10120 wlidsvc - ok
23:01:08.0143 10120 [ E2A596CACFC6504306CDB7B593B90084 ] WmiAcpi C:\windows\System32\drivers\wmiacpi.sys
23:01:08.0143 10120 WmiAcpi - ok
23:01:08.0174 10120 [ D113499052C5E541906B727779F0F959 ] wmiApSrv C:\windows\system32\wbem\WmiApSrv.exe
23:01:08.0174 10120 wmiApSrv - ok
23:01:08.0206 10120 WMPNetworkSvc - ok
23:01:08.0206 10120 [ C6FF953D5D6F2EAE3B8883474D5076B3 ] wpcfltr C:\windows\system32\DRIVERS\wpcfltr.sys
23:01:08.0206 10120 wpcfltr - ok
23:01:08.0221 10120 [ A6ED163169876BFD2437E872FE2F1509 ] WPCSvc C:\windows\System32\wpcsvc.dll
23:01:08.0237 10120 WPCSvc - ok
23:01:08.0268 10120 [ 3013658A4D327854BEEC4A08D9655194 ] WPDBusEnum C:\windows\system32\wpdbusenum.dll
23:01:08.0284 10120 WPDBusEnum - ok
23:01:08.0284 10120 [ 0346CAFC181C91C6E2330332EB332ED6 ] WpdUpFltr C:\windows\system32\drivers\WpdUpFltr.sys
23:01:08.0284 10120 WpdUpFltr - ok
23:01:08.0331 10120 [ BC8B5CB336E63BB25EAD1CE8EDD34B81 ] ws2ifsl C:\windows\system32\drivers\ws2ifsl.sys
23:01:08.0331 10120 ws2ifsl - ok
23:01:08.0378 10120 [ 012CFE7F0F95266F554EE3B91EE2128A ] wscsvc C:\windows\System32\wscsvc.dll
23:01:08.0378 10120 wscsvc - ok
23:01:08.0378 10120 WSearch - ok
23:01:08.0424 10120 [ D4D04839F3DFAF09D94BAB1016F7A297 ] WSService C:\windows\System32\WSService.dll
23:01:08.0456 10120 WSService - ok
23:01:08.0534 10120 [ 311E5E1976E0BD9110A88B93158055D5 ] wuauserv C:\windows\system32\wuaueng.dll
23:01:08.0565 10120 wuauserv - ok
23:01:08.0581 10120 [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf C:\windows\system32\drivers\WudfPf.sys
23:01:08.0581 10120 WudfPf - ok
23:01:08.0581 10120 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd C:\windows\System32\drivers\WUDFRd.sys
23:01:08.0581 10120 WUDFRd - ok
23:01:08.0596 10120 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFSensorLP C:\windows\system32\DRIVERS\WUDFRd.sys
23:01:08.0596 10120 WUDFSensorLP - ok
23:01:08.0612 10120 [ B20F051B03A966392364C83F009F7D17 ] wudfsvc C:\windows\System32\WUDFSvc.dll
23:01:08.0612 10120 wudfsvc - ok
23:01:08.0612 10120 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFWpdFs C:\windows\system32\DRIVERS\WUDFRd.sys
23:01:08.0612 10120 WUDFWpdFs - ok
23:01:08.0628 10120 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFWpdMtp C:\windows\system32\DRIVERS\WUDFRd.sys
23:01:08.0628 10120 WUDFWpdMtp - ok
23:01:08.0674 10120 [ 6D9E07436B6646EC8F7EFFD39B6BA288 ] WwanSvc C:\windows\System32\wwansvc.dll
23:01:08.0674 10120 WwanSvc - ok
23:01:08.0690 10120 ================ Scan global ===============================
23:01:08.0737 10120 [ DDC1AFBF9DDF880CE9BD3896114D8DED ] C:\windows\system32\basesrv.dll
23:01:08.0799 10120 [ E9343076AE704D20BB0D01F3AF3EFFEF ] C:\windows\system32\winsrv.dll
23:01:08.0815 10120 [ BD7C6949984D19AAA609896B675E7357 ] C:\windows\system32\sxssrv.dll
23:01:08.0831 10120 [ 8F226143046435C75C033B0C52E90FFE ] C:\windows\system32\services.exe
23:01:08.0846 10120 [Global] - ok
23:01:08.0846 10120 ================ Scan MBR ==================================
23:01:08.0846 10120 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0
23:01:08.0862 10120 \Device\Harddisk0\DR0 - ok
23:01:08.0862 10120 ================ Scan VBR ==================================
23:01:08.0862 10120 [ 07EEFE498AC10622EF0EA8AC537F987A ] \Device\Harddisk0\DR0\Partition1
23:01:08.0862 10120 \Device\Harddisk0\DR0\Partition1 - ok
23:01:08.0878 10120 [ FB68B11C7901A1D427B6D8C83E19AA52 ] \Device\Harddisk0\DR0\Partition2
23:01:08.0878 10120 \Device\Harddisk0\DR0\Partition2 - ok
23:01:08.0893 10120 [ 6D1AFFCBA48A106BF91B07BBA00C0DA3 ] \Device\Harddisk0\DR0\Partition3
23:01:08.0893 10120 \Device\Harddisk0\DR0\Partition3 - ok
23:01:08.0893 10120 [ 4EF10EC9FFF8C9BC3F20F9A074880BE4 ] \Device\Harddisk0\DR0\Partition4
23:01:08.0893 10120 \Device\Harddisk0\DR0\Partition4 - ok
23:01:08.0924 10120 [ EB83321CE5C46CE6421D3C0E4E996696 ] \Device\Harddisk0\DR0\Partition5
23:01:08.0924 10120 \Device\Harddisk0\DR0\Partition5 - ok
23:01:08.0924 10120 ============================================================
23:01:08.0924 10120 Scan finished
23:01:08.0924 10120 ============================================================
23:01:08.0940 10060 Detected object count: 0
23:01:08.0940 10060 Actual detected object count: 0
23:01:46.0899 9236 ============================================================
23:01:46.0899 9236 Scan started
23:01:46.0899 9236 Mode: Manual;
23:01:46.0899 9236 ============================================================
23:01:47.0227 9236 ================ Scan system memory ========================
23:01:47.0227 9236 System memory - ok
23:01:47.0227 9236 ================ Scan services =============================
23:01:47.0352 9236 [ E890C46E4754F0DF51BAFCC8D2E07498 ] 1394ohci C:\windows\System32\drivers\1394ohci.sys
23:01:47.0352 9236 1394ohci - ok
23:01:47.0352 9236 [ 4F18D4C7EA14F11A7211F60D553C03DB ] 3ware C:\windows\system32\drivers\3ware.sys
23:01:47.0352 9236 3ware - ok
23:01:47.0383 9236 [ 975AABEB243B800C23626D6B652C5A9C ] ACPI C:\windows\system32\drivers\ACPI.sys
23:01:47.0383 9236 ACPI - ok
23:01:47.0399 9236 [ DC968C37822117E576B933F34A2D130C ] acpiex C:\windows\system32\Drivers\acpiex.sys
23:01:47.0399 9236 acpiex - ok
23:01:47.0399 9236 [ 0CA9F7C3A78227C21A0A7854E245CFB2 ] acpipagr C:\windows\System32\drivers\acpipagr.sys
23:01:47.0399 9236 acpipagr - ok
23:01:47.0399 9236 [ 8EB8DA03B142D3DD1EB9ED8107A76C43 ] AcpiPmi C:\windows\System32\drivers\acpipmi.sys
23:01:47.0399 9236 AcpiPmi - ok
23:01:47.0414 9236 [ CBCE725C5D86ABA7D2604E22951AA9B8 ] acpitime C:\windows\System32\drivers\acpitime.sys
23:01:47.0414 9236 acpitime - ok
23:01:47.0508 9236 [ F7AB315A4D400CA876381D1E188A2E20 ] AdobeFlashPlayerUpdateSvc C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
23:01:47.0508 9236 AdobeFlashPlayerUpdateSvc - ok
23:01:47.0539 9236 [ 93C6388592B99925C1D1576E465BC80F ] adp94xx C:\windows\system32\drivers\adp94xx.sys
23:01:47.0539 9236 adp94xx - ok
23:01:47.0555 9236 [ D27763E0247292654E7F7D16444C7C72 ] adpahci C:\windows\system32\drivers\adpahci.sys
23:01:47.0555 9236 adpahci - ok
23:01:47.0555 9236 [ 67B90070FF48F794AF19F9FCF0080D75 ] adpu320 C:\windows\system32\drivers\adpu320.sys
23:01:47.0555 9236 adpu320 - ok
23:01:47.0586 9236 [ 974AE60BF5B90E31412D93596C968E5B ] AeLookupSvc C:\windows\System32\aelupsvc.dll
23:01:47.0586 9236 AeLookupSvc - ok
23:01:47.0633 9236 [ 7C0E0EDF18D6CC565D7BFBB451709FA5 ] AFD C:\windows\system32\drivers\afd.sys
23:01:47.0633 9236 AFD - ok
23:01:47.0649 9236 [ 01590377A5AB19E792528C628A2A68F9 ] agp440 C:\windows\system32\drivers\agp440.sys
23:01:47.0649 9236 agp440 - ok
23:01:47.0664 9236 [ D1BE8E6E5B3AF23A4393AF1BF867977A ] ALG C:\windows\System32\alg.exe
23:01:47.0664 9236 ALG - ok
23:01:47.0680 9236 [ 025E8C755BE293E50854D26D1BBE5133 ] AllUserInstallAgent C:\windows\system32\AUInstallAgent.dll
23:01:47.0680 9236 AllUserInstallAgent - ok
23:01:47.0695 9236 [ 5E4ABAE09E144C363839E8F10705F98A ] AMD External Events Utility C:\windows\system32\atiesrxx.exe
23:01:47.0695 9236 AMD External Events Utility - ok
23:01:47.0711 9236 [ 5A81054B824004B1ECC04F0034A1CDF9 ] AmdK8 C:\windows\System32\drivers\amdk8.sys
23:01:47.0727 9236 AmdK8 - ok
23:01:47.0727 9236 [ F2FF8C1B41B3784EDBD5C6D5397F403C ] amdkmafd C:\windows\system32\drivers\amdkmafd.sys
23:01:47.0727 9236 amdkmafd - ok
23:01:47.0867 9236 [ CD3C1C5ADBB06B6B50DE4D64797E74CB ] amdkmdag C:\windows\system32\DRIVERS\atikmdag.sys
23:01:47.0930 9236 amdkmdag - ok
23:01:47.0961 9236 [ 28FC287546FF4213B8346DAD7B443AFB ] amdkmdap C:\windows\system32\DRIVERS\atikmpag.sys
23:01:47.0961 9236 amdkmdap - ok
23:01:47.0977 9236 [ B849D453E644FAB9BC8EF6DC8CA9C4C6 ] AmdPPM C:\windows\System32\drivers\amdppm.sys
23:01:47.0977 9236 AmdPPM - ok
23:01:47.0993 9236 [ 35A0EB5AECB0FA3C41A2FB514A562304 ] amdsata C:\windows\system32\drivers\amdsata.sys
23:01:47.0993 9236 amdsata - ok
23:01:47.0993 9236 [ 00452671904F5EE94B50BF0219C97164 ] amdsbs C:\windows\system32\drivers\amdsbs.sys
23:01:47.0993 9236 amdsbs - ok
23:01:48.0008 9236 [ EA3FFE53E92E59C87E3ECA9BEB20D9B7 ] amdxata C:\windows\system32\drivers\amdxata.sys
23:01:48.0008 9236 amdxata - ok
23:01:48.0024 9236 [ 823F34D1DEF120A657BB7529ABF4461F ] AppHostSvc C:\windows\system32\inetsrv\apphostsvc.dll
23:01:48.0024 9236 AppHostSvc - ok
23:01:48.0024 9236 [ 83B3682CE922FB0F415734B26D9D6233 ] AppID C:\windows\system32\drivers\appid.sys
23:01:48.0024 9236 AppID - ok
23:01:48.0055 9236 [ CE2BEAD7F31816FF0AC490D048C969F9 ] AppIDSvc C:\windows\System32\appidsvc.dll
23:01:48.0055 9236 AppIDSvc - ok
23:01:48.0071 9236 [ 4F750B7EFCB6520AE01E01D082D7D476 ] Appinfo C:\windows\System32\appinfo.dll
23:01:48.0071 9236 Appinfo - ok
23:01:48.0086 9236 [ E933401B392387F4BE34DE8BAF1722A7 ] arc C:\windows\system32\drivers\arc.sys
23:01:48.0086 9236 arc - ok
23:01:48.0086 9236 [ 07CA323EF2E8247A568AB0F3662AD644 ] arcsas C:\windows\system32\drivers\arcsas.sys
23:01:48.0086 9236 arcsas - ok
23:01:48.0180 9236 [ 9A262EDD17F8473B91B333D6B031A901 ] aspnet_state C:\windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
23:01:48.0180 9236 aspnet_state - ok
23:01:48.0211 9236 [ 1EC6777695564CA7EB3ADB36C78322E5 ] aswFsBlk C:\windows\system32\drivers\aswFsBlk.sys
23:01:48.0211 9236 aswFsBlk - ok
23:01:48.0211 9236 [ FAF7B0B0C44A2FBD6FBC54E3E0F38545 ] aswMonFlt C:\windows\system32\drivers\aswMonFlt.sys
23:01:48.0211 9236 aswMonFlt - ok
23:01:48.0227 9236 [ 679712B7A353EE665B9301592164A172 ] aswRdr C:\windows\system32\drivers\aswRdr2.sys
23:01:48.0227 9236 aswRdr - ok
23:01:48.0243 9236 [ C04F7B373881009D7994D9BF55D24AB4 ] aswRvrt C:\windows\system32\drivers\aswRvrt.sys
23:01:48.0243 9236 aswRvrt - ok
23:01:48.0258 9236 [ 3E07C93A2CB67840E4CD56C00959A402 ] aswSnx C:\windows\system32\drivers\aswSnx.sys
23:01:48.0274 9236 aswSnx - ok
23:01:48.0321 9236 [ 79ADA401A6E2054F110E7FBDFAC71942 ] aswSP C:\windows\system32\drivers\aswSP.sys
23:01:48.0321 9236 aswSP - ok
23:01:48.0321 9236 [ 59787B95DD9CA44CB139D96863438587 ] aswVmm C:\windows\system32\drivers\aswVmm.sys
23:01:48.0321 9236 aswVmm - ok
23:01:48.0336 9236 [ 74DBAEC35366C4EE7670428808715A6A ] AsyncMac C:\windows\system32\DRIVERS\asyncmac.sys
23:01:48.0336 9236 AsyncMac - ok
23:01:48.0383 9236 [ A721FF570C2387E383BDDEA9632863C9 ] atapi C:\windows\system32\drivers\atapi.sys
23:01:48.0383 9236 atapi - ok
23:01:48.0414 9236 [ 13A4B62FEE62843413724C45FD149D45 ] AtiHDAudioService C:\windows\system32\drivers\AtihdW86.sys
23:01:48.0414 9236 AtiHDAudioService - ok
23:01:48.0430 9236 [ BCD7A47EF587DC00DD61D12D9C2D1E44 ] AudioEndpointBuilder C:\windows\System32\AudioEndpointBuilder.dll
23:01:48.0430 9236 AudioEndpointBuilder - ok
23:01:48.0493 9236 [ 599B3F685A263A114FFAF3BE29C49C75 ] Audiosrv C:\windows\System32\Audiosrv.dll
23:01:48.0493 9236 Audiosrv - ok
23:01:48.0555 9236 [ 7A189530FD0CFD415DBE41123F8A6A59 ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
23:01:48.0555 9236 avast! Antivirus - ok
23:01:48.0571 9236 [ 89491EF71D5EA011127832C588002853 ] AxInstSV C:\windows\System32\AxInstSV.dll
23:01:48.0571 9236 AxInstSV - ok
23:01:48.0586 9236 [ 87AB5BB072A3F128541D5B815F82FFDD ] b06bdrv C:\windows\system32\drivers\bxvbda.sys
23:01:48.0602 9236 b06bdrv - ok
23:01:48.0618 9236 [ 81703BC5D68DEDBB086C2368FBE7B334 ] BasicDisplay C:\windows\System32\drivers\BasicDisplay.sys
23:01:48.0618 9236 BasicDisplay - ok
23:01:48.0633 9236 [ 5EC68164E14D25675C98BBB5F09E8606 ] BasicRender C:\windows\System32\drivers\BasicRender.sys
23:01:48.0633 9236 BasicRender - ok
23:01:48.0680 9236 [ 89143A7BA7850F5C7E61B43BB44B6418 ] BDESVC C:\windows\System32\bdesvc.dll
23:01:48.0680 9236 BDESVC - ok
23:01:48.0696 9236 [ 9E7AEA59776D904607985AFFE7E5E183 ] Beep C:\windows\system32\drivers\Beep.sys
23:01:48.0696 9236 Beep - ok
23:01:48.0743 9236 [ 53AA55632B94622F2DC3695E86EF9363 ] BFE C:\windows\System32\bfe.dll
23:01:48.0743 9236 BFE - ok
23:01:48.0774 9236 [ D598C44A7072D3108D8D8102EC5E07F7 ] BITS C:\windows\System32\qmgr.dll
23:01:48.0789 9236 BITS - ok
23:01:48.0852 9236 [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
23:01:48.0852 9236 Bonjour Service - ok
23:01:48.0852 9236 [ B17AC10B47C7FCB44D22A1F06415840E ] bowser C:\windows\system32\DRIVERS\bowser.sys
23:01:48.0852 9236 bowser - ok
23:01:48.0883 9236 [ 038FA1B55531E7020DB705B42FCCE373 ] BrokerInfrastructure C:\windows\System32\bisrv.dll
23:01:48.0883 9236 BrokerInfrastructure - ok
23:01:48.0899 9236 [ 310068BDA80B1D55C36580FD8A873FAF ] Browser C:\windows\System32\browser.dll
23:01:48.0899 9236 Browser - ok
23:01:49.0008 9236 [ 6ED5DB8C1DB8A0D8F4B411E0C2A65EC6 ] BstHdAndroidSvc C:\Program Files (x86)\BlueStacks\HD-Service.exe
23:01:49.0008 9236 BstHdAndroidSvc - ok
23:01:49.0055 9236 [ E57BC16C486AD810A7EF946646A02466 ] BstHdDrv C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys
23:01:49.0071 9236 BstHdDrv - ok
23:01:49.0071 9236 [ 8059EDFA9616E569E861E0F68DDF0C72 ] BstHdLogRotatorSvc C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
23:01:49.0071 9236 BstHdLogRotatorSvc - ok
23:01:49.0102 9236 [ 6695200F455E251F0BCC9CE4D0978D59 ] BthAvrcpTg C:\windows\System32\drivers\BthAvrcpTg.sys
23:01:49.0102 9236 BthAvrcpTg - ok
23:01:49.0118 9236 [ 616EB8748C988AEE98D93DA141C3D3B4 ] BthHFEnum C:\windows\System32\drivers\bthhfenum.sys
23:01:49.0118 9236 BthHFEnum - ok
23:01:49.0164 9236 [ DCB4EBD928A6FB368BE6CAE522412DE1 ] bthhfhid C:\windows\System32\drivers\BthHFHid.sys
23:01:49.0164 9236 bthhfhid - ok
23:01:49.0180 9236 [ 033916CE8784A848B9A3D686B7F66D97 ] BTHMODEM C:\windows\System32\drivers\bthmodem.sys
23:01:49.0180 9236 BTHMODEM - ok
23:01:49.0211 9236 [ A4387C3D271959313E2577DB7BE8BA7A ] bthserv C:\windows\system32\bthserv.dll
23:01:49.0211 9236 bthserv - ok
23:01:49.0289 9236 [ 9E530C6F0EEE34CCEAC8104838AB68C7 ] c2cautoupdatesvc C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
23:01:49.0289 9236 c2cautoupdatesvc - ok
23:01:49.0368 9236 [ 96B14B79C71CE4A7783184CC8B5DBCE8 ] c2cpnrsvc C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
23:01:49.0368 9236 c2cpnrsvc - ok
23:01:49.0368 9236 c2wts - ok
23:01:49.0399 9236 [ 990B1BABE6E81FB18E65A87EBEFB1772 ] cdfs C:\windows\system32\DRIVERS\cdfs.sys
23:01:49.0399 9236 cdfs - ok
23:01:49.0414 9236 [ 339BFF85D788268752DA8C9644B188EE ] cdrom C:\windows\System32\drivers\cdrom.sys
23:01:49.0414 9236 cdrom - ok
23:01:49.0430 9236 [ BAF8F0F55BC300E5F882E521F054E345 ] CertPropSvc C:\windows\System32\certprop.dll
23:01:49.0430 9236 CertPropSvc - ok
23:01:49.0446 9236 [ F64B7D1A37CC1D5F421D5359EEC81E2E ] circlass C:\windows\System32\drivers\circlass.sys
23:01:49.0446 9236 circlass - ok
23:01:49.0446 9236 [ 9905168708DB68849B879B5548F68AB3 ] CLFS C:\windows\system32\drivers\CLFS.sys
23:01:49.0461 9236 CLFS - ok
23:01:49.0477 9236 [ 075CCE75090786F124573A788C8656E6 ] CLVirtualDrive C:\windows\system32\DRIVERS\CLVirtualDrive.sys
23:01:49.0477 9236 CLVirtualDrive - ok
23:01:49.0477 9236 [ 2DC8538A2260647484A6C921CA837313 ] CmBatt C:\windows\System32\drivers\CmBatt.sys
23:01:49.0477 9236 CmBatt - ok
23:01:49.0539 9236 [ E708BFF0473EC6B271EA46B65B16CA56 ] CNG C:\windows\system32\Drivers\cng.sys
23:01:49.0539 9236 CNG - ok
23:01:49.0555 9236 [ 0E5B1E9E7122EDAAF1F6CE047965CA92 ] CompositeBus C:\windows\System32\drivers\CompositeBus.sys
23:01:49.0555 9236 CompositeBus - ok
23:01:49.0555 9236 COMSysApp - ok
23:01:49.0571 9236 [ D9CB0782AF819548072AA45B70F8B22D ] condrv C:\windows\system32\drivers\condrv.sys
23:01:49.0571 9236 condrv - ok
23:01:49.0618 9236 [ 5CE2742F063731EC10C1B2EE386A2C08 ] CryptSvc C:\windows\system32\cryptsvc.dll
23:01:49.0618 9236 CryptSvc - ok
23:01:49.0664 9236 [ FAEF4C245BE832DB41B15DAAC336AFB7 ] dam C:\windows\system32\drivers\dam.sys
23:01:49.0664 9236 dam - ok
23:01:49.0696 9236 [ 1EC6E533C954BDDF2A37E7851A7E58FD ] DcomLaunch C:\windows\system32\rpcss.dll
23:01:49.0711 9236 DcomLaunch - ok
23:01:49.0727 9236 [ C8650D1F61149AA546BDBC99172EBBC1 ] defragsvc C:\windows\System32\defragsvc.dll
23:01:49.0727 9236 defragsvc - ok
23:01:49.0743 9236 [ 5EAEF67AE2AF4D2DC664B649DB7B2E16 ] DeviceAssociationService C:\windows\system32\das.dll
23:01:49.0743 9236 DeviceAssociationService - ok

Uživatelský avatar
Mejssi
nováček
Příspěvky: 15
Registrován: říjen 13
Pohlaví: Žena
Stav:
Offline

Re: HiJackThis LOG

Příspěvekod Mejssi » 22 úno 2014 23:36

23:01:49.0774 9236 [ 799BE46D45D486704CE0F37CA5385262 ] DeviceInstall C:\windows\system32\umpnpmgr.dll
23:01:49.0774 9236 DeviceInstall - ok
23:01:49.0789 9236 [ 09D9EB9E7898F8E6561473A20CC808B9 ] Dfsc C:\windows\system32\Drivers\dfsc.sys
23:01:49.0789 9236 Dfsc - ok
23:01:49.0852 9236 [ 9E0E72222264745ADEB0E5AC680B0ED6 ] Dhcp C:\windows\system32\dhcpcore.dll
23:01:49.0852 9236 Dhcp - ok
23:01:49.0852 9236 [ 3C736FAE17BA6F91BA37594AAB139CD0 ] discache C:\windows\system32\drivers\discache.sys
23:01:49.0852 9236 discache - ok
23:01:49.0899 9236 [ AE3786294CC246A5403783E1B86A0168 ] disk C:\windows\system32\drivers\disk.sys
23:01:49.0899 9236 disk - ok
23:01:49.0914 9236 [ 82A7C72593793FE1EADA7A305BD1567A ] dmvsc C:\windows\System32\drivers\dmvsc.sys
23:01:49.0914 9236 dmvsc - ok
23:01:49.0961 9236 [ 066B9710B36AB550E01EEFCA52155968 ] Dnscache C:\windows\System32\dnsrslvr.dll
23:01:49.0961 9236 Dnscache - ok
23:01:49.0993 9236 [ 9949AD2ABA168A618D46C799D6CC898C ] dot3svc C:\windows\System32\dot3svc.dll
23:01:49.0993 9236 dot3svc - ok
23:01:50.0008 9236 [ 109FC3F80BF4F4DC5A071058074F13C1 ] DPS C:\windows\system32\dps.dll
23:01:50.0008 9236 DPS - ok
23:01:50.0039 9236 [ 9C7C183F937951AE17C5B8B3259CF3FF ] drmkaud C:\windows\system32\drivers\drmkaud.sys
23:01:50.0039 9236 drmkaud - ok
23:01:50.0086 9236 [ F87F4AAAF6664906248D11D5E579A53B ] DsmSvc C:\windows\System32\DeviceSetupManager.dll
23:01:50.0086 9236 DsmSvc - ok
23:01:50.0133 9236 [ 6A0E850DDCB136AA3D2FB7234382DF12 ] dtsoftbus01 C:\windows\System32\drivers\dtsoftbus01.sys
23:01:50.0133 9236 dtsoftbus01 - ok
23:01:50.0196 9236 [ E6AF4DF1817953D73C519B17CF849756 ] DXGKrnl C:\windows\System32\drivers\dxgkrnl.sys
23:01:50.0196 9236 DXGKrnl - ok
23:01:50.0227 9236 [ 651FBD69A9713D623D456A240F96179C ] e1iexpress C:\windows\system32\DRIVERS\e1i63x64.sys
23:01:50.0227 9236 e1iexpress - ok
23:01:50.0227 9236 EagleX64 - ok
23:01:50.0243 9236 [ 58BA473DD88F5FC1932282BA683AA03E ] Eaphost C:\windows\System32\eapsvc.dll
23:01:50.0258 9236 Eaphost - ok
23:01:50.0305 9236 [ 5AB97B3282D7D6114949D1EB5C8598E4 ] ebdrv C:\windows\system32\drivers\evbda.sys
23:01:50.0321 9236 ebdrv - ok
23:01:50.0368 9236 [ F702AB6181513303AB0FC8D59E52708B ] EFS C:\windows\System32\lsass.exe
23:01:50.0368 9236 EFS - ok
23:01:50.0399 9236 [ 66D60BD9A4C05616ABECA2A901475098 ] EhStorClass C:\windows\system32\drivers\EhStorClass.sys
23:01:50.0399 9236 EhStorClass - ok
23:01:50.0415 9236 [ A61D0F543024E458C0FE32352E1978E2 ] EhStorTcgDrv C:\windows\system32\drivers\EhStorTcgDrv.sys
23:01:50.0415 9236 EhStorTcgDrv - ok
23:01:50.0415 9236 [ D790D058D67582DB9C84C2D33695FE6B ] ErrDev C:\windows\System32\drivers\errdev.sys
23:01:50.0415 9236 ErrDev - ok
23:01:50.0446 9236 esgiguard - ok
23:01:50.0461 9236 [ F9E01C2D9F8BC049E04CF5DC24A5F638 ] EventSystem C:\windows\system32\es.dll
23:01:50.0461 9236 EventSystem - ok
23:01:50.0477 9236 [ 7A4D6FEB8C52B3FE855E4DCDF9107E03 ] exfat C:\windows\system32\drivers\exfat.sys
23:01:50.0477 9236 exfat - ok
23:01:50.0508 9236 FairplayKD - ok
23:01:50.0539 9236 [ 60996602A7111FD2D086E803F33E4282 ] fastfat C:\windows\system32\drivers\fastfat.sys
23:01:50.0539 9236 fastfat - ok
23:01:50.0555 9236 [ F0E7F8382ED5E138B0DFA4CB5058BCFE ] Fax C:\windows\system32\fxssvc.exe
23:01:50.0571 9236 Fax - ok
23:01:50.0586 9236 [ 73B2D11DF0B6E03A0CB0323218ACB3E4 ] fdc C:\windows\System32\drivers\fdc.sys
23:01:50.0586 9236 fdc - ok
23:01:50.0602 9236 [ 0828E3E7BD77C89149EAD3232BFD38DB ] fdPHost C:\windows\system32\fdPHost.dll
23:01:50.0602 9236 fdPHost - ok
23:01:50.0602 9236 [ 872506AAB591E8908DF4461475AF92DF ] FDResPub C:\windows\system32\fdrespub.dll
23:01:50.0602 9236 FDResPub - ok
23:01:50.0649 9236 [ 0588950D93A426F97C7AAADB1A9B0458 ] fhsvc C:\windows\system32\fhsvc.dll
23:01:50.0649 9236 fhsvc - ok
23:01:50.0680 9236 [ 88A9EBACD1058ABB237A6B4E96E7F397 ] FileInfo C:\windows\system32\drivers\fileinfo.sys
23:01:50.0680 9236 FileInfo - ok
23:01:50.0680 9236 [ 9E4EE3A0B00FF7D5F42A4AF9744CBA02 ] Filetrace C:\windows\system32\drivers\filetrace.sys
23:01:50.0680 9236 Filetrace - ok
23:01:50.0696 9236 [ B1D4C168FF7B8579E3745888658FFB1D ] flpydisk C:\windows\System32\drivers\flpydisk.sys
23:01:50.0696 9236 flpydisk - ok
23:01:50.0711 9236 [ B33EC133AE4E6C1881D2302D93D2467D ] FltMgr C:\windows\system32\drivers\fltmgr.sys
23:01:50.0711 9236 FltMgr - ok
23:01:50.0758 9236 [ 0BCDC0FF11B984162B0CF0FF6E9E0146 ] FontCache C:\windows\system32\FntCache.dll
23:01:50.0774 9236 FontCache - ok
23:01:50.0805 9236 [ 0B56259F5611787222A04A8F254E51D4 ] FontCache3.0.0.0 C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
23:01:50.0805 9236 FontCache3.0.0.0 - ok
23:01:50.0821 9236 [ A5F7873A39E4E9FAAAE59B7E9E36B705 ] FsDepends C:\windows\system32\drivers\FsDepends.sys
23:01:50.0836 9236 FsDepends - ok
23:01:50.0836 9236 [ A6DD7D491F587F4BC13FB972977DC8E8 ] Fs_Rec C:\windows\system32\drivers\Fs_Rec.sys
23:01:50.0836 9236 Fs_Rec - ok
23:01:50.0961 9236 [ 014195B03B378CFEAA029958CBC53695 ] fussvc C:\Program Files (x86)\Windows Kits\8.1\App Certification Kit\fussvc.exe
23:01:50.0977 9236 fussvc - ok
23:01:51.0008 9236 [ C1646A95EAC515F60CDB2A7A8A013C1E ] fvevol C:\windows\system32\DRIVERS\fvevol.sys
23:01:51.0024 9236 fvevol - ok
23:01:51.0040 9236 [ A969D92973DFA895E7776B4BFE36DBB2 ] FxPPM C:\windows\System32\drivers\fxppm.sys
23:01:51.0040 9236 FxPPM - ok
23:01:51.0055 9236 [ 52BC441E07A827EBAB70CDC7EAEDB28D ] gagp30kx C:\windows\system32\drivers\gagp30kx.sys
23:01:51.0055 9236 gagp30kx - ok
23:01:51.0071 9236 [ 721F8EEF5E9747F32670DEFF7FB92541 ] gencounter C:\windows\System32\drivers\vmgencounter.sys
23:01:51.0071 9236 gencounter - ok
23:01:51.0118 9236 [ FC2B8B06BDBD3B6457F5A3DA9AD2410E ] GPIOClx0101 C:\windows\system32\Drivers\msgpioclx.sys
23:01:51.0118 9236 GPIOClx0101 - ok
23:01:51.0165 9236 [ 5358678C6370F2ADC5291849F6503262 ] gpsvc C:\windows\System32\gpsvc.dll
23:01:51.0165 9236 gpsvc - ok
23:01:51.0258 9236 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
23:01:51.0258 9236 gupdate - ok
23:01:51.0258 9236 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
23:01:51.0258 9236 gupdatem - ok
23:01:51.0305 9236 [ 4DBF4C90A50C105A80EACD9B2FCCBC96 ] hamachi C:\windows\system32\DRIVERS\Hamdrv.sys
23:01:51.0305 9236 hamachi - ok
23:01:51.0383 9236 [ 55706A31E8E2E67763ECD10F19CC3449 ] Hamachi2Svc C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
23:01:51.0399 9236 Hamachi2Svc - ok
23:01:51.0415 9236 [ 630555943E5A3FE21010CE91EC7FC84F ] HdAudAddService C:\windows\system32\drivers\HdAudio.sys
23:01:51.0415 9236 HdAudAddService - ok
23:01:51.0446 9236 [ 7D87B5B6C7188D553E11B59DC7F0B111 ] HDAudBus C:\windows\System32\drivers\HDAudBus.sys
23:01:51.0446 9236 HDAudBus - ok
23:01:51.0461 9236 [ 3F76BBA53D65E85A7F53E7A71082082C ] HidBatt C:\windows\System32\drivers\HidBatt.sys
23:01:51.0461 9236 HidBatt - ok
23:01:51.0493 9236 [ 085F150D002B7F0153D3C06DDF33A143 ] HidBth C:\windows\System32\drivers\hidbth.sys
23:01:51.0493 9236 HidBth - ok
23:01:51.0508 9236 [ CC4A07E51D89575CAB6F4EB590D87CD4 ] hidi2c C:\windows\System32\drivers\hidi2c.sys
23:01:51.0508 9236 hidi2c - ok
23:01:51.0508 9236 [ DC96F7DACB777CDEAEF9958A50BFDA06 ] HidIr C:\windows\System32\drivers\hidir.sys
23:01:51.0524 9236 HidIr - ok
23:01:51.0540 9236 [ FAC37D7B3D6354A5A5E19A45B50B4008 ] hidserv C:\windows\system32\hidserv.dll
23:01:51.0540 9236 hidserv - ok
23:01:51.0586 9236 [ 012C354B4AB48E9A7A657DF39E3A2073 ] HidUsb C:\windows\System32\drivers\hidusb.sys
23:01:51.0586 9236 HidUsb - ok
23:01:51.0602 9236 [ 43F884B61A24377567CD0FEB35236334 ] hkmsvc C:\windows\system32\kmsvc.dll
23:01:51.0602 9236 hkmsvc - ok
23:01:51.0649 9236 [ 33DFC14DFDCCFA7AA10E392F6A8EC1CF ] HomeGroupListener C:\windows\system32\ListSvc.dll
23:01:51.0649 9236 HomeGroupListener - ok
23:01:51.0680 9236 [ E0D9F6FE18FA7F53ADD29AF719CE2B7E ] HomeGroupProvider C:\windows\system32\provsvc.dll
23:01:51.0680 9236 HomeGroupProvider - ok
23:01:51.0727 9236 [ BB1FC298BE53AAB1E110F6E786BD8AC5 ] HP Support Assistant Service C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
23:01:51.0727 9236 HP Support Assistant Service - ok
23:01:51.0758 9236 [ E2550FBBBA31E2D4F9757E0A533689F0 ] HPConnectedRemote c:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPConnectedRemoteService.exe
23:01:51.0758 9236 HPConnectedRemote - ok
23:01:51.0805 9236 [ 9B7EDD3FE7C211C36E921D34D18A3A0A ] hpqwmiex C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
23:01:51.0805 9236 hpqwmiex - ok
23:01:51.0836 9236 [ 64DB7A8D97CA53DCCF93D0A1E08342CF ] HpSAMD C:\windows\system32\drivers\HpSAMD.sys
23:01:51.0836 9236 HpSAMD - ok
23:01:51.0899 9236 [ F4A91D985EB9D1D2717D538F3424603C ] HTTP C:\windows\system32\drivers\HTTP.sys
23:01:51.0899 9236 HTTP - ok
23:01:51.0915 9236 [ 2A98301068801700906C06649860FE94 ] hwpolicy C:\windows\system32\drivers\hwpolicy.sys
23:01:51.0915 9236 hwpolicy - ok
23:01:51.0930 9236 [ DC76901D82097C9E297F20C287CB9A27 ] hyperkbd C:\windows\System32\drivers\hyperkbd.sys
23:01:51.0930 9236 hyperkbd - ok
23:01:51.0930 9236 [ 716413AB3CA12DE0A7222D28C1C9352C ] HyperVideo C:\windows\system32\DRIVERS\HyperVideo.sys
23:01:51.0930 9236 HyperVideo - ok
23:01:51.0946 9236 [ C9E9CBF73AFFBFE3E801EFB516787BA3 ] i8042prt C:\windows\System32\drivers\i8042prt.sys
23:01:51.0946 9236 i8042prt - ok
23:01:51.0961 9236 [ 5E394EBD26FD68AA9300332C46BEDD62 ] iaStorV C:\windows\system32\drivers\iaStorV.sys
23:01:51.0961 9236 iaStorV - ok
23:01:52.0086 9236 [ 83915E05E168AB63B48302F7DC5D8E00 ] igfx C:\windows\system32\DRIVERS\igdkmd64.sys
23:01:52.0133 9236 igfx - ok
23:01:52.0149 9236 [ 24847A06B84339FEEDE5CABF3D27D320 ] iirsp C:\windows\system32\drivers\iirsp.sys
23:01:52.0149 9236 iirsp - ok
23:01:52.0243 9236 [ E455C83E029121270BED73CDAC381F37 ] IKEEXT C:\windows\System32\ikeext.dll
23:01:52.0258 9236 IKEEXT - ok
23:01:52.0290 9236 [ C99F8E90DE4B8F0C7FE15BB1CBCD29DC ] Intel(R) Capability Licensing Service Interface c:\Program Files\Intel\iCLS Client\HeciServer.exe
23:01:52.0290 9236 Intel(R) Capability Licensing Service Interface - ok
23:01:52.0321 9236 [ 30E9FAC23E2537D82F2836CB81AEE186 ] Intel(R) ME Service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
23:01:52.0321 9236 Intel(R) ME Service - ok
23:01:52.0336 9236 [ 4F37726CF764CA18A8A84F85EF3A7F24 ] intelide C:\windows\system32\drivers\intelide.sys
23:01:52.0336 9236 intelide - ok
23:01:52.0352 9236 [ E15CDF68DD73423F15D4AC404793AF0D ] intelppm C:\windows\System32\drivers\intelppm.sys
23:01:52.0352 9236 intelppm - ok
23:01:52.0383 9236 [ 8FCA66234A0933D796BB780B7953BAB9 ] IpFilterDriver C:\windows\system32\DRIVERS\ipfltdrv.sys
23:01:52.0383 9236 IpFilterDriver - ok
23:01:52.0430 9236 [ C217B8D2E58C57A319B16125C3D4B69C ] iphlpsvc C:\windows\System32\iphlpsvc.dll
23:01:52.0446 9236 iphlpsvc - ok
23:01:52.0446 9236 [ 6E98A046A12AA113F8898AA5D612BD6E ] IPMIDRV C:\windows\System32\drivers\IPMIDrv.sys
23:01:52.0446 9236 IPMIDRV - ok
23:01:52.0446 9236 [ 3969B9C218DD3FAA9F4ED2FFC3651C02 ] IPNAT C:\windows\system32\drivers\ipnat.sys
23:01:52.0446 9236 IPNAT - ok
23:01:52.0513 9236 [ 30228DC3268ADAA214B03A3948CA85BC ] IpOverUsbSvc C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\Bin\IpOverUsbSvc.exe
23:01:52.0513 9236 IpOverUsbSvc - ok
23:01:52.0528 9236 [ 25CD7C4BB2863FFC2B0B311F0AEBF77C ] IRENUM C:\windows\system32\drivers\irenum.sys
23:01:52.0528 9236 IRENUM - ok
23:01:52.0560 9236 [ D940C5BB9DC92E588533C19ABCC3D2C2 ] isapnp C:\windows\system32\drivers\isapnp.sys
23:01:52.0560 9236 isapnp - ok
23:01:52.0591 9236 [ 69C8BF0BC2B0EA10F130F4D3104DC2EF ] iScsiPrt C:\windows\System32\drivers\msiscsi.sys
23:01:52.0591 9236 iScsiPrt - ok
23:01:52.0607 9236 [ 3C4002D339491AF73D663FFC7F6E5ECB ] jhi_service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
23:01:52.0622 9236 jhi_service - ok
23:01:52.0669 9236 [ 8FBD94B69D6423E20ABCD59D86368B21 ] kbdclass C:\windows\System32\drivers\kbdclass.sys
23:01:52.0669 9236 kbdclass - ok
23:01:52.0685 9236 [ E88C932ABDF8185A62C8F2FC7B051FB6 ] kbdhid C:\windows\System32\drivers\kbdhid.sys
23:01:52.0685 9236 kbdhid - ok
23:01:52.0716 9236 [ FB6C185092E18011EF49989425C2AA87 ] kdnic C:\windows\system32\DRIVERS\kdnic.sys
23:01:52.0716 9236 kdnic - ok
23:01:52.0716 9236 [ F702AB6181513303AB0FC8D59E52708B ] KeyIso C:\windows\system32\lsass.exe
23:01:52.0716 9236 KeyIso - ok
23:01:52.0747 9236 [ DFA480F6DED551464F3A5B959F437800 ] KSecDD C:\windows\system32\Drivers\ksecdd.sys
23:01:52.0747 9236 KSecDD - ok
23:01:52.0794 9236 [ 127FB0AAD232BAAD2C9BBACD374F4FC5 ] KSecPkg C:\windows\system32\Drivers\ksecpkg.sys
23:01:52.0794 9236 KSecPkg - ok
23:01:52.0810 9236 [ 81492FEEBF2F26455B00EE8DBAE8A1B0 ] ksthunk C:\windows\system32\drivers\ksthunk.sys
23:01:52.0810 9236 ksthunk - ok
23:01:52.0841 9236 [ 5825DBACEDC3812B5CF8D40B997BF210 ] KtmRm C:\windows\system32\msdtckrm.dll
23:01:52.0841 9236 KtmRm - ok
23:01:52.0872 9236 [ 256EE31588257E8A555DBFAA13F1908E ] LanmanServer C:\windows\system32\srvsvc.dll
23:01:52.0872 9236 LanmanServer - ok
23:01:52.0888 9236 [ 16650912BE5A94B40E0B3B4C39652B56 ] LanmanWorkstation C:\windows\System32\wkssvc.dll
23:01:52.0888 9236 LanmanWorkstation - ok
23:01:52.0903 9236 [ CEEFD29FC551F289810B0B9381B321DC ] lltdio C:\windows\system32\DRIVERS\lltdio.sys
23:01:52.0903 9236 lltdio - ok
23:01:52.0919 9236 [ BCF53485E0A94722CDE3C4A93CD8EB8C ] lltdsvc C:\windows\System32\lltdsvc.dll
23:01:52.0919 9236 lltdsvc - ok
23:01:52.0935 9236 [ 5A2F7F1CBC2E631A497DAD16164E06D2 ] lmhosts C:\windows\System32\lmhsvc.dll
23:01:52.0935 9236 lmhosts - ok
23:01:52.0982 9236 [ 206D1495952A86E30CC997EA10A68A6C ] LMIGuardianSvc C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
23:01:52.0997 9236 LMIGuardianSvc - ok
23:01:53.0013 9236 [ 4269D44BB47A6DA5D80B11F4C8536458 ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
23:01:53.0013 9236 LMS - ok
23:01:53.0028 9236 [ 022CDD12161B063D7852B1075BF3FFF2 ] LSI_SAS C:\windows\system32\drivers\lsi_sas.sys
23:01:53.0028 9236 LSI_SAS - ok
23:01:53.0044 9236 [ 07AD59D669B996F29F91817F0ECFA34F ] LSI_SAS2 C:\windows\system32\drivers\lsi_sas2.sys
23:01:53.0044 9236 LSI_SAS2 - ok
23:01:53.0044 9236 [ 216FB796AA4E252ACCE93B1BCB80B5EC ] LSI_SCSI C:\windows\system32\drivers\lsi_scsi.sys
23:01:53.0044 9236 LSI_SCSI - ok
23:01:53.0044 9236 [ 5E80530AF37102488EE980B4A92AF99F ] LSI_SSS C:\windows\system32\drivers\lsi_sss.sys
23:01:53.0044 9236 LSI_SSS - ok
23:01:53.0091 9236 [ A57BA284F5996FFD32DCDBC41A4657DB ] LSM C:\windows\System32\lsm.dll
23:01:53.0107 9236 LSM - ok
23:01:53.0107 9236 [ 2BDC5D711FA61307CE6190D47C956368 ] luafv C:\windows\system32\drivers\luafv.sys
23:01:53.0107 9236 luafv - ok
23:01:53.0169 9236 [ 024DA28053D57E9E32BEE52600576BBB ] MarvinBus C:\windows\System32\drivers\MarvinBus64.sys
23:01:53.0169 9236 MarvinBus - ok
23:01:53.0216 9236 [ 0BB97D43299910CBFBA59C461B99B910 ] MBAMProtector C:\windows\system32\drivers\mbam.sys
23:01:53.0216 9236 MBAMProtector - ok
23:01:53.0263 9236 [ 65085456FD9A74D7F1A999520C299ECB ] MBAMScheduler C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
23:01:53.0263 9236 MBAMScheduler - ok
23:01:53.0278 9236 [ E0D7732F2D2E24B2DB3F67B6750295B8 ] MBAMService C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
23:01:53.0278 9236 MBAMService - ok
23:01:53.0482 9236 [ 43E7E1D311AC37995E9AA7248A19F67B ] McMyAdmin C:\Users\Irena\Desktop\Kluci\Patosik\MCMyServerAdmin\MCMA_Service.exe
23:01:53.0482 9236 McMyAdmin - ok
23:01:53.0513 9236 [ 9B0D829C3BE4E7472DB9DD2B79908E3C ] megasas C:\windows\system32\drivers\megasas.sys
23:01:53.0513 9236 megasas - ok
23:01:53.0513 9236 [ ECC3F54C7AFC318271C4F0B4606D8DB0 ] MegaSR C:\windows\system32\drivers\MegaSR.sys
23:01:53.0513 9236 MegaSR - ok
23:01:53.0544 9236 [ 772A1DEEDFDBC244183B5C805D1B7D85 ] MEIx64 C:\windows\System32\drivers\HECIx64.sys
23:01:53.0544 9236 MEIx64 - ok
23:01:53.0622 9236 Microsoft SharePoint Workspace Audit Service - ok
23:01:53.0653 9236 [ EEE908BE7143FCA48CF0CB87214E2AB8 ] MMCSS C:\windows\system32\mmcss.dll
23:01:53.0653 9236 MMCSS - ok
23:01:53.0669 9236 [ 780098AD5DA8A4822E2563984C85EF7B ] Modem C:\windows\system32\drivers\modem.sys
23:01:53.0669 9236 Modem - ok
23:01:53.0716 9236 [ EA8EAD3F5B762F889CC7F3966625B48B ] monitor C:\windows\System32\drivers\monitor.sys
23:01:53.0716 9236 monitor - ok
23:01:53.0732 9236 [ 618446B98C79776654340CE27C73485E ] mouclass C:\windows\System32\drivers\mouclass.sys
23:01:53.0732 9236 mouclass - ok
23:01:53.0747 9236 [ C0ADEBED913295803B579ED288936CBB ] mouhid C:\windows\System32\drivers\mouhid.sys
23:01:53.0747 9236 mouhid - ok
23:01:53.0763 9236 [ 89D263DBF08119CE16273991C120D6DD ] mountmgr C:\windows\system32\drivers\mountmgr.sys
23:01:53.0763 9236 mountmgr - ok
23:01:53.0810 9236 [ 338037EFA0E8E8699B2667D57B751574 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
23:01:53.0810 9236 MozillaMaintenance - ok
23:01:53.0841 9236 [ 4CCBBD4944777CA100B9A6C2F149A46F ] mpsdrv C:\windows\system32\drivers\mpsdrv.sys
23:01:53.0841 9236 mpsdrv - ok
23:01:53.0857 9236 [ 9DE3341BD4E14BC5FADFCAD3019F2D0D ] MpsSvc C:\windows\system32\mpssvc.dll
23:01:53.0872 9236 MpsSvc - ok
23:01:53.0888 9236 [ 3D70147F55F1EC84EB9139ED7FFE48BC ] MRxDAV C:\windows\system32\drivers\mrxdav.sys
23:01:53.0888 9236 MRxDAV - ok
23:01:53.0935 9236 [ 93179D48066918323628CB016D8C94DC ] mrxsmb C:\windows\system32\DRIVERS\mrxsmb.sys
23:01:53.0935 9236 mrxsmb - ok
23:01:53.0950 9236 [ 06D5F2FA3C61E8EA91648EA8E9F99FD3 ] mrxsmb10 C:\windows\system32\DRIVERS\mrxsmb10.sys
23:01:53.0950 9236 mrxsmb10 - ok
23:01:53.0966 9236 [ 5C7DD2E5759FFCCD2C7341C1B90F2B26 ] mrxsmb20 C:\windows\system32\DRIVERS\mrxsmb20.sys
23:01:53.0966 9236 mrxsmb20 - ok
23:01:53.0982 9236 [ 98487487D6B3797CA927E9D7B030AE13 ] MsBridge C:\windows\system32\DRIVERS\bridge.sys
23:01:53.0982 9236 MsBridge - ok
23:01:54.0013 9236 [ 4A07458EB4F17573BD39F22029A991C1 ] MSDTC C:\windows\System32\msdtc.exe
23:01:54.0013 9236 MSDTC - ok
23:01:54.0028 9236 [ 3886F1F2A4D2900ABAA7E4486BEEE6A2 ] Msfs C:\windows\system32\drivers\Msfs.sys
23:01:54.0028 9236 Msfs - ok
23:01:54.0075 9236 [ C32A7A39B960A42BA9D4FBE47213CA03 ] msgpiowin32 C:\windows\System32\drivers\msgpiowin32.sys
23:01:54.0075 9236 msgpiowin32 - ok
23:01:54.0107 9236 [ D3857A767B91A061B408CCAB02DA4F40 ] mshidkmdf C:\windows\System32\drivers\mshidkmdf.sys
23:01:54.0107 9236 mshidkmdf - ok
23:01:54.0107 9236 [ 839B48910FB1E887635C48F3EC11A05E ] mshidumdf C:\windows\System32\drivers\mshidumdf.sys
23:01:54.0107 9236 mshidumdf - ok
23:01:54.0122 9236 [ 55C0DB741E3AB7463242B185B1C2997C ] msisadrv C:\windows\system32\drivers\msisadrv.sys
23:01:54.0122 9236 msisadrv - ok
23:01:54.0138 9236 [ 216C6B035A4BA5560E1255BD8E5BB89F ] MSiSCSI C:\windows\system32\iscsiexe.dll
23:01:54.0138 9236 MSiSCSI - ok
23:01:54.0138 9236 msiserver - ok
23:01:54.0153 9236 [ 509809566E49F4411055864EA8D437CD ] MSKSSRV C:\windows\system32\drivers\MSKSSRV.sys
23:01:54.0153 9236 MSKSSRV - ok
23:01:54.0169 9236 [ 63145201D6458E4958E572E7D6FC2604 ] MsLldp C:\windows\system32\DRIVERS\mslldp.sys
23:01:54.0169 9236 MsLldp - ok
23:01:54.0169 9236 [ 99D526E803DB6D7FF290FD98B6204641 ] MSPCLOCK C:\windows\system32\drivers\MSPCLOCK.sys
23:01:54.0169 9236 MSPCLOCK - ok
23:01:54.0169 9236 [ 06FA77C3E2A491ADCD704C5E73006269 ] MSPQM C:\windows\system32\drivers\MSPQM.sys
23:01:54.0169 9236 MSPQM - ok
23:01:54.0200 9236 [ E134EC4DE11CF78CB01432D180710D84 ] MsRPC C:\windows\system32\drivers\MsRPC.sys
23:01:54.0200 9236 MsRPC - ok
23:01:54.0200 9236 [ B5AECF12F09DEE97C9FCAA5BA016CE1E ] mssmbios C:\windows\System32\drivers\mssmbios.sys
23:01:54.0200 9236 mssmbios - ok
23:01:54.0216 9236 [ 72D66A05E0F99F2528F6C6204FD22AA1 ] MSTEE C:\windows\system32\drivers\MSTEE.sys
23:01:54.0216 9236 MSTEE - ok
23:01:54.0232 9236 [ 8AAAE399FC255FA105D4158CBA289001 ] MTConfig C:\windows\System32\drivers\MTConfig.sys
23:01:54.0232 9236 MTConfig - ok
23:01:54.0232 9236 [ 3BCB702F3E6CC622DCAFCAA45D7CDE0A ] Mup C:\windows\system32\Drivers\mup.sys
23:01:54.0232 9236 Mup - ok
23:01:54.0232 9236 [ 3A1E095277BBD406CEA8EA6B76950664 ] mvumis C:\windows\system32\drivers\mvumis.sys
23:01:54.0232 9236 mvumis - ok
23:01:54.0263 9236 [ 4B18840511D720BA118D3017E8165875 ] napagent C:\windows\system32\qagentRT.dll
23:01:54.0263 9236 napagent - ok
23:01:54.0278 9236 [ 43D7388A90A4C6EA346A4D6FF0377479 ] NativeWifiP C:\windows\system32\DRIVERS\nwifi.sys
23:01:54.0278 9236 NativeWifiP - ok
23:01:54.0310 9236 [ 6A0C3996DA7DAE6D6939676D786EEEC4 ] NcaSvc C:\windows\System32\ncasvc.dll
23:01:54.0310 9236 NcaSvc - ok
23:01:54.0325 9236 [ C982FE4CC91DECE2259F494FCEB4030F ] NcdAutoSetup C:\windows\System32\NcdAutoSetup.dll
23:01:54.0325 9236 NcdAutoSetup - ok
23:01:54.0357 9236 [ A10E176F3B2BF83EDE7B5C4658C93B66 ] NDIS C:\windows\system32\drivers\ndis.sys
23:01:54.0357 9236 NDIS - ok
23:01:54.0388 9236 [ 39C8A1D9D46F5E83A016BCAB72455284 ] NdisCap C:\windows\system32\DRIVERS\ndiscap.sys
23:01:54.0388 9236 NdisCap - ok
23:01:54.0450 9236 [ 762941932B7E4C588E48A577BA9D6440 ] NdisImPlatform C:\windows\system32\DRIVERS\NdisImPlatform.sys
23:01:54.0450 9236 NdisImPlatform - ok
23:01:54.0466 9236 [ 7A6F8A6D0E01432EBA294EF29CDD0FA7 ] NdisTapi C:\windows\system32\DRIVERS\ndistapi.sys
23:01:54.0466 9236 NdisTapi - ok
23:01:54.0482 9236 [ 79AB68BB3FFF974AD4F41FA559F4EC67 ] Ndisuio C:\windows\system32\DRIVERS\ndisuio.sys
23:01:54.0482 9236 Ndisuio - ok
23:01:54.0497 9236 [ 62C7DBF4F9301F76CF87D4B9D8F57BF8 ] NdisWan C:\windows\system32\DRIVERS\ndiswan.sys
23:01:54.0497 9236 NdisWan - ok
23:01:54.0497 9236 [ 62C7DBF4F9301F76CF87D4B9D8F57BF8 ] NDISWANLEGACY C:\windows\system32\DRIVERS\ndiswan.sys
23:01:54.0497 9236 NDISWANLEGACY - ok
23:01:54.0513 9236 [ 3730942D7DB2F8BB5F84542B7FF6F650 ] NDProxy C:\windows\system32\drivers\NDProxy.sys
23:01:54.0513 9236 NDProxy - ok
23:01:54.0513 9236 [ D3F60A4345FCA9C1BE68AD7D0D6DE770 ] Ndu C:\windows\system32\drivers\Ndu.sys
23:01:54.0513 9236 Ndu - ok
23:01:54.0528 9236 [ 7C203A76394F9AE68F69EEE5F9612C4A ] NetBIOS C:\windows\system32\DRIVERS\netbios.sys
23:01:54.0528 9236 NetBIOS - ok
23:01:54.0528 9236 [ 7CEC25C682D319D484630B3952C31A11 ] NetBT C:\windows\system32\DRIVERS\netbt.sys
23:01:54.0528 9236 NetBT - ok
23:01:54.0544 9236 [ F702AB6181513303AB0FC8D59E52708B ] Netlogon C:\windows\system32\lsass.exe
23:01:54.0544 9236 Netlogon - ok
23:01:54.0560 9236 [ 89519D29CBEC2121CA65CC29C4D345E0 ] Netman C:\windows\System32\netman.dll
23:01:54.0560 9236 Netman - ok
23:01:54.0607 9236 [ 79FA9393C67EBBF92A56923592CF7A7C ] netprofm C:\windows\System32\netprofmsvc.dll
23:01:54.0622 9236 netprofm - ok
23:01:54.0685 9236 [ 5243CFC2E7161C91C2B355240035B9E4 ] NetTcpPortSharing C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
23:01:54.0685 9236 NetTcpPortSharing - ok
23:01:54.0700 9236 [ 12DD2800E4EEA37DC9AE256AD62423B4 ] nfrd960 C:\windows\system32\drivers\nfrd960.sys
23:01:54.0700 9236 nfrd960 - ok
23:01:54.0747 9236 [ 80ABCD4C2DE9FD832477303AE0CA3BE5 ] NlaSvc C:\windows\System32\nlasvc.dll
23:01:54.0763 9236 NlaSvc - ok
23:01:54.0810 9236 [ 351533ACC2A069B94E80BBFC177E8FDF ] npf C:\windows\system32\drivers\npf.sys
23:01:54.0810 9236 npf - ok
23:01:54.0810 9236 [ 17E19A742FB30C002F8B43575451DBE1 ] Npfs C:\windows\system32\drivers\Npfs.sys
23:01:54.0810 9236 Npfs - ok
23:01:54.0825 9236 [ 8ED299C30792544264E558BEA79F0947 ] npsvctrig C:\windows\System32\drivers\npsvctrig.sys
23:01:54.0825 9236 npsvctrig - ok
23:01:54.0841 9236 [ 832B5FDF0B5577713FD7F2465FCD0ACE ] nsi C:\windows\system32\nsisvc.dll
23:01:54.0841 9236 nsi - ok
23:01:54.0857 9236 [ 689B3B1E95C70ABF7AFF29F9406EF1E0 ] nsiproxy C:\windows\system32\drivers\nsiproxy.sys
23:01:54.0857 9236 nsiproxy - ok
23:01:54.0935 9236 [ 76929F4A69E425911A63B407E26C2589 ] Ntfs C:\windows\system32\drivers\Ntfs.sys
23:01:54.0935 9236 Ntfs - ok
23:01:54.0950 9236 [ 4163ADE07DB51843AE31F65B94F5398D ] Null C:\windows\system32\drivers\Null.sys
23:01:54.0950 9236 Null - ok
23:01:54.0966 9236 [ D6D34118263412D3AAA8348A9572B7F2 ] nvraid C:\windows\system32\drivers\nvraid.sys
23:01:54.0966 9236 nvraid - ok
23:01:54.0966 9236 [ 27AFC428D1D32ABD04A86763A4EDDEA9 ] nvstor C:\windows\system32\drivers\nvstor.sys
23:01:54.0966 9236 nvstor - ok
23:01:54.0966 9236 [ 051CFB5107BAAE510419BDC41F8C4036 ] nv_agp C:\windows\system32\drivers\nv_agp.sys
23:01:54.0966 9236 nv_agp - ok
23:01:55.0029 9236 [ 9D10F99A6712E28F8ACD5641E3A7EA6B ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
23:01:55.0029 9236 ose - ok
23:01:55.0138 9236 [ 61BFFB5F57AD12F83AB64B7181829B34 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
23:01:55.0169 9236 osppsvc - ok
23:01:55.0185 9236 [ AB76700D764A342D7475FB8F47CAB18C ] p2pimsvc C:\windows\system32\pnrpsvc.dll
23:01:55.0185 9236 p2pimsvc - ok
23:01:55.0200 9236 [ 4319FD931DCD796435ECB5DB4A04FBA5 ] p2psvc C:\windows\system32\p2psvc.dll
23:01:55.0216 9236 p2psvc - ok
23:01:55.0232 9236 [ 4563DAF8C6A740AD7F501E219BD10766 ] Parport C:\windows\System32\drivers\parport.sys
23:01:55.0232 9236 Parport - ok
23:01:55.0247 9236 [ D6ACCF9F2EEEEA711C14EFD976E573F3 ] partmgr C:\windows\system32\drivers\partmgr.sys
23:01:55.0247 9236 partmgr - ok
23:01:55.0294 9236 [ 4811D9EC53649105A5A8BEA661B0F936 ] PcaSvc C:\windows\System32\pcasvc.dll
23:01:55.0294 9236 PcaSvc - ok
23:01:55.0310 9236 [ 4A003E8F718C1E6A2050CA98CD53E3E2 ] pci C:\windows\system32\drivers\pci.sys
23:01:55.0310 9236 pci - ok
23:01:55.0357 9236 [ F9908D274D458220F91E89B54D78D837 ] pciide C:\windows\system32\drivers\pciide.sys
23:01:55.0357 9236 pciide - ok
23:01:55.0388 9236 [ 84D19CB6102627932DCB5DFDF89FE269 ] pcmcia C:\windows\system32\drivers\pcmcia.sys
23:01:55.0404 9236 pcmcia - ok
23:01:55.0404 9236 [ CEBBAD5391C2644560C55628A40BFD27 ] pcw C:\windows\system32\drivers\pcw.sys
23:01:55.0404 9236 pcw - ok
23:01:55.0419 9236 [ 0698DEDEAD6A00AD0D468C687D830FBF ] pdc C:\windows\system32\drivers\pdc.sys
23:01:55.0419 9236 pdc - ok
23:01:55.0435 9236 [ 61FE70659CD43E07F94DA4DC31DEC493 ] PEAUTH C:\windows\system32\drivers\peauth.sys
23:01:55.0450 9236 PEAUTH - ok
23:01:55.0544 9236 [ EB88FA19F0EA05DD04BE9C5FFEEFFE1A ] PerfHost C:\windows\SysWow64\perfhost.exe
23:01:55.0544 9236 PerfHost - ok
23:01:55.0580 9236 [ 6E84BFF58F7643499277F29DFA2F8C8D ] pla C:\windows\system32\pla.dll
23:01:55.0595 9236 pla - ok
23:01:55.0611 9236 [ 799BE46D45D486704CE0F37CA5385262 ] PlugPlay C:\windows\system32\umpnpmgr.dll
23:01:55.0627 9236 PlugPlay - ok
23:01:55.0642 9236 [ 8E2414E818C26C4A9C70CB2B8567F04F ] PNRPAutoReg C:\windows\system32\pnrpauto.dll
23:01:55.0642 9236 PNRPAutoReg - ok
23:01:55.0658 9236 [ AB76700D764A342D7475FB8F47CAB18C ] PNRPsvc C:\windows\system32\pnrpsvc.dll
23:01:55.0658 9236 PNRPsvc - ok
23:01:55.0674 9236 [ 0108C8E5176D590F242701EF5A62CC26 ] PolicyAgent C:\windows\System32\ipsecsvc.dll
23:01:55.0674 9236 PolicyAgent - ok
23:01:55.0736 9236 [ F1E067F56373F11EA4B785CAE823740A ] Power C:\windows\system32\umpo.dll
23:01:55.0736 9236 Power - ok
23:01:55.0752 9236 [ 362D47E5B4D67270DE4B8606036F4ADD ] PptpMiniport C:\windows\system32\DRIVERS\raspptp.sys
23:01:55.0752 9236 PptpMiniport - ok
23:01:55.0830 9236 [ 9D59831262CAD44E709D695FC9D5E7AB ] PrintNotify C:\Windows\system32\spool\DRIVERS\x64\3\PrintConfig.dll
23:01:55.0845 9236 PrintNotify - ok
23:01:55.0877 9236 [ DD979EB6A7212F60E4AFBE96EDC7AE6D ] Processor C:\windows\System32\drivers\processr.sys
23:01:55.0877 9236 Processor - ok
23:01:55.0892 9236 [ 429E8502AD2227CF88F8840FC5BD590D ] ProfSvc C:\windows\system32\profsvc.dll
23:01:55.0892 9236 ProfSvc - ok
23:01:55.0924 9236 [ EB8034147D4820CD31BFCB11A2A652DF ] Psched C:\windows\system32\DRIVERS\pacer.sys
23:01:55.0924 9236 Psched - ok
23:01:55.0939 9236 [ 0AFBF333B6F87A2F598EAB379AF100B8 ] QWAVE C:\windows\system32\qwave.dll
23:01:55.0939 9236 QWAVE - ok
23:01:55.0955 9236 [ 13D47BB0CCA2FC51BD15F8E85C6A078E ] QWAVEdrv C:\windows\system32\drivers\qwavedrv.sys
23:01:55.0955 9236 QWAVEdrv - ok
23:01:55.0970 9236 [ 873C60F8178100557740A832FCE10B5F ] RasAcd C:\windows\system32\DRIVERS\rasacd.sys
23:01:55.0970 9236 RasAcd - ok
23:01:55.0986 9236 [ 69B93F623B130976243ECA3D84CC99CA ] RasAgileVpn C:\windows\system32\DRIVERS\AgileVpn.sys
23:01:55.0986 9236 RasAgileVpn - ok
23:01:56.0002 9236 [ 005F6E54C4A2DA4EBF68FB0392CE8BB0 ] RasAuto C:\windows\System32\rasauto.dll
23:01:56.0017 9236 RasAuto - ok
23:01:56.0033 9236 [ A14D625C5AEE5FFE0F47D1A1D419FAAE ] Rasl2tp C:\windows\system32\DRIVERS\rasl2tp.sys
23:01:56.0033 9236 Rasl2tp - ok
23:01:56.0049 9236 [ C923C785A2DE0B396AD6D13ACAFF2DE9 ] RasMan C:\windows\System32\rasmans.dll
23:01:56.0049 9236 RasMan - ok
23:01:56.0064 9236 [ 00695B9C2DB6111064499C529E90C042 ] RasPppoe C:\windows\system32\DRIVERS\raspppoe.sys
23:01:56.0064 9236 RasPppoe - ok
23:01:56.0064 9236 [ A7F24D8CD1956B0A1FDCB86CC5114DE4 ] RasSstp C:\windows\system32\DRIVERS\rassstp.sys
23:01:56.0064 9236 RasSstp - ok
23:01:56.0127 9236 [ CA03D642ACE58E1BA54E4B383F91CD69 ] rdbss C:\windows\system32\DRIVERS\rdbss.sys
23:01:56.0127 9236 rdbss - ok
23:01:56.0142 9236 [ CA7DF5EC95D8DE0DD24BE7FF97369F68 ] rdpbus C:\windows\System32\drivers\rdpbus.sys
23:01:56.0142 9236 rdpbus - ok
23:01:56.0142 9236 [ B2A3AD74FF2E2FFA73AF2567108231B3 ] RDPDR C:\windows\system32\drivers\rdpdr.sys
23:01:56.0142 9236 RDPDR - ok
23:01:56.0189 9236 [ 57F4787E4602A3FCA719C0A33137C6DA ] RdpVideoMiniport C:\windows\system32\drivers\rdpvideominiport.sys
23:01:56.0189 9236 RdpVideoMiniport - ok
23:01:56.0205 9236 [ B3CB0721E81E30419CE7D837EF4EA151 ] RDPWD C:\windows\system32\drivers\RDPWD.sys
23:01:56.0220 9236 RDPWD - ok
23:01:56.0236 9236 [ 62C1F8A0685FE07E998AA296C4F697C4 ] rdyboost C:\windows\system32\drivers\rdyboost.sys
23:01:56.0236 9236 rdyboost - ok
23:01:56.0252 9236 [ 3663CCF243EE0C04E9F6F91ED1737273 ] RemoteAccess C:\windows\System32\mprdim.dll
23:01:56.0252 9236 RemoteAccess - ok
23:01:56.0283 9236 [ E80DD61E52EDFFF9DA1ED7260A68855B ] RemoteRegistry C:\windows\system32\regsvc.dll
23:01:56.0283 9236 RemoteRegistry - ok
23:01:56.0330 9236 [ 73F2E030B5C24E4E41401B5F0D59E6FD ] RpcEptMapper C:\windows\System32\RpcEpMap.dll
23:01:56.0330 9236 RpcEptMapper - ok
23:01:56.0345 9236 [ 10B21284B3D964AB3DC45490E57D422E ] RpcLocator C:\windows\system32\locator.exe
23:01:56.0345 9236 RpcLocator - ok
23:01:56.0361 9236 [ 1EC6E533C954BDDF2A37E7851A7E58FD ] RpcSs C:\windows\system32\rpcss.dll
23:01:56.0377 9236 RpcSs - ok
23:01:56.0392 9236 [ E04E770DD198B9399640717145E79EBF ] rspndr C:\windows\system32\DRIVERS\rspndr.sys
23:01:56.0392 9236 rspndr - ok
23:01:56.0439 9236 [ C4BE01C55656888152F57CC7E35A2BE6 ] RTL8168 C:\windows\system32\DRIVERS\Rt630x64.sys
23:01:56.0439 9236 RTL8168 - ok
23:01:56.0517 9236 [ FEFA32073D77BB9C741A63B6286479F6 ] RzKLService C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe
23:01:56.0517 9236 RzKLService - ok
23:01:56.0533 9236 [ 752EC7DCD2F96871A3857EEE6AFE965A ] s3cap C:\windows\System32\drivers\vms3cap.sys
23:01:56.0533 9236 s3cap - ok
23:01:56.0580 9236 [ F702AB6181513303AB0FC8D59E52708B ] SamSs C:\windows\system32\lsass.exe
23:01:56.0595 9236 SamSs - ok
23:01:56.0595 9236 [ 9C7B28CE0D136DB226E24DB3BC817F92 ] sbp2port C:\windows\system32\drivers\sbp2port.sys
23:01:56.0595 9236 sbp2port - ok
23:01:56.0627 9236 [ 14316954FCE79C9DE5A0AFF9D42C83AA ] SCardSvr C:\windows\System32\SCardSvr.dll
23:01:56.0627 9236 SCardSvr - ok
23:01:56.0642 9236 [ 5D7733A12756B267FCA021672B26BC9E ] scfilter C:\windows\system32\DRIVERS\scfilter.sys
23:01:56.0642 9236 scfilter - ok
23:01:56.0705 9236 [ ED40ED9A65F3E79A8C43DD50C5FDADBF ] Schedule C:\windows\system32\schedsvc.dll
23:01:56.0720 9236 Schedule - ok
23:01:56.0752 9236 [ BAF8F0F55BC300E5F882E521F054E345 ] SCPolicySvc C:\windows\System32\certprop.dll
23:01:56.0752 9236 SCPolicySvc - ok
23:01:56.0783 9236 [ F58B030A0664385C707B8C1C63682041 ] sdbus C:\windows\System32\drivers\sdbus.sys
23:01:56.0783 9236 sdbus - ok
23:01:56.0814 9236 [ 92968277ED491E4B3DDA361E3952361E ] SDRSVC C:\windows\System32\SDRSVC.dll
23:01:56.0814 9236 SDRSVC - ok
23:01:56.0830 9236 [ BB107AA9980B0DA4E19A3A90C3BD4460 ] sdstor C:\windows\System32\drivers\sdstor.sys
23:01:56.0830 9236 sdstor - ok
23:01:56.0845 9236 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\windows\system32\drivers\secdrv.sys
23:01:56.0845 9236 secdrv - ok
23:01:56.0861 9236 [ CD282626738B6BC92B6E7CD0AAE95B63 ] seclogon C:\windows\system32\seclogon.dll
23:01:56.0861 9236 seclogon - ok
23:01:56.0877 9236 [ 9C51620998F0763039DFA6BF68E475ED ] SENS C:\windows\System32\sens.dll
23:01:56.0877 9236 SENS - ok
23:01:56.0908 9236 [ DDA4CAF29D8C0A297F886BFE561E6659 ] SensorsSimulatorDriver C:\windows\system32\DRIVERS\WUDFRd.sys
23:01:56.0908 9236 SensorsSimulatorDriver - ok
23:01:56.0924 9236 [ 0D50B4B860DAB65241628D04CD33ACAE ] SensrSvc C:\windows\system32\sensrsvc.dll
23:01:56.0939 9236 SensrSvc - ok
23:01:56.0955 9236 [ 87C46B239A7EEF30FDFDD5E9BD46130C ] SerCx C:\windows\system32\drivers\SerCx.sys
23:01:56.0955 9236 SerCx - ok
23:01:56.0955 9236 [ 7A1F9347C85FD55E39B8A76B3A25C5AD ] Serenum C:\windows\System32\drivers\serenum.sys
23:01:56.0955 9236 Serenum - ok
23:01:56.0955 9236 [ F640A0A218BBF857F1D04A15D7D939F6 ] Serial C:\windows\System32\drivers\serial.sys
23:01:56.0955 9236 Serial - ok
23:01:57.0017 9236 [ F1A5F56B2620B862CC28FF96A0A6DAAB ] sermouse C:\windows\System32\drivers\sermouse.sys
23:01:57.0017 9236 sermouse - ok
23:01:57.0033 9236 [ CB60A60340788C8D6DE2A269D28086AB ] SessionEnv C:\windows\system32\sessenv.dll
23:01:57.0033 9236 SessionEnv - ok
23:01:57.0049 9236 [ 7EE65419B29302C795714FF8073969A1 ] sfloppy C:\windows\System32\drivers\sfloppy.sys
23:01:57.0049 9236 sfloppy - ok
23:01:57.0080 9236 [ 090AE16F79C8EAD04E6031F863DA85F3 ] SharedAccess C:\windows\System32\ipnathlp.dll
23:01:57.0080 9236 SharedAccess - ok
23:01:57.0111 9236 [ A77F3ABE13FCC698511E5DEC7ACEBD5F ] ShellHWDetection C:\windows\System32\shsvcs.dll
23:01:57.0111 9236 ShellHWDetection - ok
23:01:57.0127 9236 [ 2560721D6F16D5B611C36A3A9D28C1B2 ] SiSRaid2 C:\windows\system32\drivers\SiSRaid2.sys
23:01:57.0127 9236 SiSRaid2 - ok
23:01:57.0142 9236 [ 3AA8FDE1DBF65BB8B88B053529554A0D ] SiSRaid4 C:\windows\system32\drivers\sisraid4.sys
23:01:57.0142 9236 SiSRaid4 - ok
23:01:57.0174 9236 [ F5BBEDF602C310B00036EB2DBF4348A5 ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
23:01:57.0189 9236 SkypeUpdate - ok
23:01:57.0189 9236 [ E660156A4588A84305CB772FD2C0DB21 ] SNMPTRAP C:\windows\System32\snmptrap.exe
23:01:57.0189 9236 SNMPTRAP - ok
23:01:57.0236 9236 [ 9110193D93960E38B8692E4519C75D72 ] spaceport C:\windows\system32\drivers\spaceport.sys
23:01:57.0252 9236 spaceport - ok
23:01:57.0267 9236 [ 3D8679C8DF52EB26EB7583A4E0A29202 ] SpbCx C:\windows\system32\drivers\SpbCx.sys
23:01:57.0267 9236 SpbCx - ok
23:01:57.0299 9236 [ 3F215BF2D4D8D6756298B25B579772C2 ] Spooler C:\windows\System32\spoolsv.exe
23:01:57.0299 9236 Spooler - ok
23:01:57.0392 9236 [ 061A977C920FBE4BF71FF47C966DDDCA ] sppsvc C:\windows\system32\sppsvc.exe
23:01:57.0424 9236 sppsvc - ok
23:01:57.0439 9236 [ 0F1FCD575A03ABDE13FCA9D0ADE4DDA6 ] srv C:\windows\system32\DRIVERS\srv.sys
23:01:57.0439 9236 srv - ok
23:01:57.0486 9236 [ 56218A571ECF8D55E0CDFF8DF2546CF1 ] srv2 C:\windows\system32\DRIVERS\srv2.sys
23:01:57.0486 9236 srv2 - ok
23:01:57.0502 9236 [ 14FC338B80CFF7E04215133B568D15C4 ] srvnet C:\windows\system32\DRIVERS\srvnet.sys
23:01:57.0517 9236 srvnet - ok
23:01:57.0533 9236 [ 7A20882D76D4A78240A5AC9F2C2EBA21 ] SSDPSRV C:\windows\System32\ssdpsrv.dll
23:01:57.0533 9236 SSDPSRV - ok
23:01:57.0533 9236 [ D233B16999A8E626F6004BD7814C57EC ] SstpSvc C:\windows\system32\sstpsvc.dll
23:01:57.0533 9236 SstpSvc - ok
23:01:57.0642 9236 [ 6955A1EE65ED72A263C7F4EDBB8D80ED ] STacSV C:\Program Files\IDT\WDM\STacSV64.exe
23:01:57.0642 9236 STacSV - ok
23:01:57.0658 9236 [ 4E85355B94CFCB67C135F6521A4895A7 ] stexstor C:\windows\system32\drivers\stexstor.sys
23:01:57.0658 9236 stexstor - ok
23:01:57.0721 9236 [ 1F509093A44E75A4649A541613531D94 ] STHDA C:\windows\system32\DRIVERS\stwrt64.sys
23:01:57.0721 9236 STHDA - ok
23:01:57.0752 9236 [ BAC8A721736AECC55A4F71523AEAB65F ] stisvc C:\windows\System32\wiaservc.dll
23:01:57.0752 9236 stisvc - ok
23:01:57.0767 9236 [ B240874B2CA0CD02E8CD11E140B14C57 ] storahci C:\windows\system32\drivers\storahci.sys
23:01:57.0767 9236 storahci - ok
23:01:57.0783 9236 [ F74DBC95A57B1EE866D3732EB5F79BE2 ] storflt C:\windows\system32\DRIVERS\vmstorfl.sys
23:01:57.0783 9236 storflt - ok
23:01:57.0799 9236 [ 5337E138B49ED1F44CCBA4073BC35C20 ] StorSvc C:\windows\system32\storsvc.dll
23:01:57.0799 9236 StorSvc - ok
23:01:57.0814 9236 [ 543CD3CC0E05B8D8815E0D4F040B6F59 ] storvsc C:\windows\system32\drivers\storvsc.sys
23:01:57.0814 9236 storvsc - ok
23:01:57.0830 9236 [ 8BC1C1ED6EF9C985A3FAA6A72F41679A ] svsvc C:\windows\system32\svsvc.dll
23:01:57.0830 9236 svsvc - ok
23:01:57.0846 9236 [ 4AFD66AAE74FFB5986BC240744DC5FC9 ] swenum C:\windows\System32\drivers\swenum.sys
23:01:57.0846 9236 swenum - ok
23:01:57.0877 9236 [ 502F9488540051F3E6C39889ECFA76BB ] swprv C:\windows\System32\swprv.dll
23:01:57.0877 9236 swprv - ok
23:01:57.0939 9236 [ A06CB9269D29EE3D0F3F5630ABB660B8 ] SysMain C:\windows\system32\sysmain.dll
23:01:57.0939 9236 SysMain - ok
23:01:57.0955 9236 [ 6FB88606C4A71E1BFAF97D63A676C673 ] SystemEventsBroker C:\windows\System32\SystemEventsBrokerServer.dll
23:01:57.0971 9236 SystemEventsBroker - ok
23:01:57.0986 9236 [ A6C06C45C44AD06C70AF8899AEC15BDC ] TabletInputService C:\windows\System32\TabSvc.dll
23:01:57.0986 9236 TabletInputService - ok
23:01:58.0002 9236 [ 88B7721AB551C4325036B25A34A2BF7B ] TapiSrv C:\windows\System32\tapisrv.dll
23:01:58.0002 9236 TapiSrv - ok
23:01:58.0080 9236 [ DD4249F03598043DED6FA540EB14898A ] Tcpip C:\windows\system32\drivers\tcpip.sys
23:01:58.0080 9236 Tcpip - ok
23:01:58.0111 9236 [ DD4249F03598043DED6FA540EB14898A ] TCPIP6 C:\windows\system32\DRIVERS\tcpip.sys
23:01:58.0127 9236 TCPIP6 - ok
23:01:58.0142 9236 [ 8F2A13A5DF99D72FDDE87F502A66F989 ] tcpipreg C:\windows\system32\drivers\tcpipreg.sys
23:01:58.0142 9236 tcpipreg - ok
23:01:58.0142 9236 [ 73DC722CE5DF26D7638CE2446F2655C7 ] tdx C:\windows\system32\DRIVERS\tdx.sys
23:01:58.0158 9236 tdx - ok
23:01:58.0267 9236 [ 950AD1AE7498A492126FB9F9B2E27DB5 ] Te.Service C:\Program Files (x86)\Windows Kits\8.1\Testing\Runtimes\TAEF\Wex.Services.exe
23:01:58.0267 9236 Te.Service - ok
23:01:58.0283 9236 [ F7C8AB5D8AFFAA318D6A21093D139BF4 ] terminpt C:\windows\System32\drivers\terminpt.sys
23:01:58.0283 9236 terminpt - ok
23:01:58.0314 9236 [ 541EE228D0DEF392F7B2DFD885DD021B ] TermService C:\windows\System32\termsrv.dll
23:01:58.0330 9236 TermService - ok
23:01:58.0330 9236 [ 519A6F672FFF56B7D8EE8C730CEC8ECD ] Themes C:\windows\system32\themeservice.dll
23:01:58.0330 9236 Themes - ok
23:01:58.0377 9236 [ EEE908BE7143FCA48CF0CB87214E2AB8 ] THREADORDER C:\windows\system32\mmcss.dll
23:01:58.0377 9236 THREADORDER - ok
23:01:58.0424 9236 [ 31B93B02F9C2172418FE548EBBC9B2E1 ] tilfilter C:\windows\System32\drivers\TIxHCIlfilter.sys
23:01:58.0424 9236 tilfilter - ok
23:01:58.0471 9236 [ 4515B9E4140F04FB3907692DF89FCA87 ] TimeBroker C:\windows\System32\TimeBrokerServer.dll
23:01:58.0486 9236 TimeBroker - ok
23:01:58.0486 9236 [ 8479862916203D79DF714432C954ECA8 ] tiufilter C:\windows\System32\drivers\TIxHCIufilter.sys
23:01:58.0486 9236 tiufilter - ok
23:01:58.0549 9236 [ E94F7A7B48C7638D1F3F8089344C97B7 ] TPM C:\windows\system32\drivers\tpm.sys
23:01:58.0549 9236 TPM - ok
23:01:58.0564 9236 [ 8C8CF3041B27E7657ADD0EE17F6DBFCA ] TrkWks C:\windows\System32\trkwks.dll
23:01:58.0564 9236 TrkWks - ok
23:01:58.0596 9236 [ 8ABBB5CE0C62E0A6D28F32F44B7F865C ] TrustedInstaller C:\windows\servicing\TrustedInstaller.exe
23:01:58.0596 9236 TrustedInstaller - ok
23:01:58.0627 9236 [ 4E7C5FB10A50435523DE0CAA37DE2BD3 ] TsUsbFlt C:\windows\system32\drivers\tsusbflt.sys
23:01:58.0627 9236 TsUsbFlt - ok
23:01:58.0642 9236 [ 16D684A820872EE54F6370703AC0B513 ] TsUsbGD C:\windows\System32\drivers\TsUsbGD.sys
23:01:58.0642 9236 TsUsbGD - ok
23:01:58.0642 9236 [ 78C9EE193AC2B4CBDBC48B620314D740 ] tunnel C:\windows\system32\DRIVERS\tunnel.sys
23:01:58.0642 9236 tunnel - ok
23:01:58.0658 9236 [ 6D4F67CA56ACA2085DFA2CD89EAFBC1A ] uagp35 C:\windows\system32\drivers\uagp35.sys
23:01:58.0658 9236 uagp35 - ok
23:01:58.0658 9236 [ 6FD6D03B7752C78712E5CFF29A305026 ] UASPStor C:\windows\System32\drivers\uaspstor.sys
23:01:58.0658 9236 UASPStor - ok
23:01:58.0705 9236 [ 061BA3EE0D2BE17944990544008CF190 ] UCX01000 C:\windows\System32\drivers\ucx01000.sys
23:01:58.0705 9236 UCX01000 - ok
23:01:58.0752 9236 [ 25C50F4EDF70D0A831E0566BD181CCF2 ] udfs C:\windows\system32\DRIVERS\udfs.sys
23:01:58.0752 9236 udfs - ok
23:01:58.0783 9236 [ FB3475FEA1CCB0DAEA1EBE44D0E3BB7D ] UI0Detect C:\windows\system32\UI0Detect.exe
23:01:58.0783 9236 UI0Detect - ok
23:01:58.0814 9236 [ 07FEBCDF24FABA0D47B635D85A0FFB7A ] uliagpkx C:\windows\system32\drivers\uliagpkx.sys
23:01:58.0814 9236 uliagpkx - ok
23:01:58.0814 9236 [ 02CEB3FE6152668A7BA420B93B664860 ] umbus C:\windows\System32\drivers\umbus.sys
23:01:58.0830 9236 umbus - ok
23:01:58.0830 9236 [ 991EE6B5FC41EAEF99C8AF5B92F2CA09 ] UmPass C:\windows\System32\drivers\umpass.sys
23:01:58.0830 9236 UmPass - ok
23:01:58.0830 9236 [ 43FEFB040A0CC30F795FBF544169594D ] UmRdpService C:\windows\System32\umrdp.dll
23:01:58.0830 9236 UmRdpService - ok
23:01:58.0892 9236 [ DBE2E6388379D5CC78099650541E9566 ] UNS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
23:01:58.0892 9236 UNS - ok
23:01:58.0908 9236 [ 14D22C411854AA2560AFC94CD2D5E61F ] upnphost C:\windows\System32\upnphost.dll
23:01:58.0908 9236 upnphost - ok
23:01:58.0959 9236 [ 9E9F21FF91D7ECC0BCCB94D3FE52A959 ] usbaudio C:\windows\system32\drivers\usbaudio.sys
23:01:58.0959 9236 usbaudio - ok
23:01:58.0975 9236 [ C976C4306F9AE133D6BBD47FDFC3BF92 ] usbccgp C:\windows\System32\drivers\usbccgp.sys
23:01:58.0975 9236 usbccgp - ok
23:01:58.0991 9236 [ 427B6DB8C05A5A977E8C3525370A2595 ] usbcir C:\windows\System32\drivers\usbcir.sys
23:01:58.0991 9236 usbcir - ok
23:01:59.0022 9236 [ B24FDEB1B18496F1B463782235AA3AF1 ] usbehci C:\windows\System32\drivers\usbehci.sys
23:01:59.0022 9236 usbehci - ok
23:01:59.0038 9236 [ F8C2A832DF9403F5EA8080CBDBDA95FB ] usbhub C:\windows\System32\drivers\usbhub.sys
23:01:59.0038 9236 usbhub - ok
23:01:59.0053 9236 [ E5F7328B1D29BCE791862CD3C0DD382A ] USBHUB3 C:\windows\System32\drivers\UsbHub3.sys
23:01:59.0053 9236 USBHUB3 - ok
23:01:59.0084 9236 [ 325F6179009B5A7F6118951A5BA422AB ] usbohci C:\windows\System32\drivers\usbohci.sys
23:01:59.0084 9236 usbohci - ok
23:01:59.0131 9236 [ 9FDBA6982582A6F2354144980F641E7B ] usbprint C:\windows\System32\drivers\usbprint.sys
23:01:59.0147 9236 usbprint - ok
23:01:59.0163 9236 [ AD91D1BBE5D3CF4501887DC1C09384FD ] usbscan C:\windows\system32\DRIVERS\usbscan.sys
23:01:59.0163 9236 usbscan - ok
23:01:59.0178 9236 [ BFC7FE4AAEB61317A921871B4085EF4B ] USBSTOR C:\windows\System32\drivers\USBSTOR.SYS
23:01:59.0178 9236 USBSTOR - ok
23:01:59.0178 9236 [ 1ABF657259DB57F7E5558E4DF1357C0C ] usbuhci C:\windows\System32\drivers\usbuhci.sys
23:01:59.0178 9236 usbuhci - ok
23:01:59.0194 9236 [ 9EF7C01D3ACCBC243B5CB1A95865B2FF ] usbvideo C:\windows\System32\Drivers\usbvideo.sys
23:01:59.0194 9236 usbvideo - ok
23:01:59.0209 9236 [ 8DC398D7B8E02C929A2096E74A170970 ] USBXHCI C:\windows\System32\drivers\USBXHCI.SYS
23:01:59.0209 9236 USBXHCI - ok
23:01:59.0209 9236 Util LinkSwift - ok
23:01:59.0225 9236 [ F702AB6181513303AB0FC8D59E52708B ] VaultSvc C:\windows\system32\lsass.exe
23:01:59.0225 9236 VaultSvc - ok
23:01:59.0256 9236 [ BACECBFF9C97F7627A60B0E0F1FE7EE8 ] vdrvroot C:\windows\system32\drivers\vdrvroot.sys
23:01:59.0256 9236 vdrvroot - ok
23:01:59.0303 9236 [ 1B4488988E5E7512E6C5CD1255E9E973 ] vds C:\windows\System32\vds.exe
23:01:59.0303 9236 vds - ok
23:01:59.0319 9236 [ 74FA2D4368DE6F6CE14393EDF1F342BE ] VerifierExt C:\windows\system32\drivers\VerifierExt.sys
23:01:59.0319 9236 VerifierExt - ok
23:01:59.0381 9236 [ 500BE6B2E49883720D0AE8BB859ED7A3 ] vhdmp C:\windows\System32\drivers\vhdmp.sys
23:01:59.0381 9236 vhdmp - ok
23:01:59.0397 9236 [ F5B4A14B00E89250C50982AC762DDD1D ] viaide C:\windows\system32\drivers\viaide.sys
23:01:59.0397 9236 viaide - ok
23:01:59.0428 9236 [ 78DB50F7329F6D1311658DABFFFC8BE0 ] vmbus C:\windows\system32\drivers\vmbus.sys
23:01:59.0428 9236 vmbus - ok
23:01:59.0428 9236 [ ECFEE2F2BA3932C7880D1A8F67D68F91 ] VMBusHID C:\windows\System32\drivers\VMBusHID.sys
23:01:59.0428 9236 VMBusHID - ok
23:01:59.0459 9236 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmicheartbeat C:\windows\System32\ICSvc.dll
23:01:59.0459 9236 vmicheartbeat - ok
23:01:59.0459 9236 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmickvpexchange C:\windows\System32\ICSvc.dll
23:01:59.0459 9236 vmickvpexchange - ok
23:01:59.0475 9236 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmicrdv C:\windows\System32\ICSvc.dll
23:01:59.0475 9236 vmicrdv - ok
23:01:59.0475 9236 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmicshutdown C:\windows\System32\ICSvc.dll
23:01:59.0475 9236 vmicshutdown - ok
23:01:59.0491 9236 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmictimesync C:\windows\System32\ICSvc.dll
23:01:59.0491 9236 vmictimesync - ok
23:01:59.0491 9236 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmicvss C:\windows\System32\ICSvc.dll
23:01:59.0491 9236 vmicvss - ok
23:01:59.0522 9236 [ CB60FAAED8B49B812EBBF77EB87D9B18 ] volmgr C:\windows\system32\drivers\volmgr.sys
23:01:59.0522 9236 volmgr - ok
23:01:59.0522 9236 [ A74101DA9809251BCD0E5A26BAE0F824 ] volmgrx C:\windows\system32\drivers\volmgrx.sys
23:01:59.0522 9236 volmgrx - ok
23:01:59.0543 9236 [ 78A5BBA3819FFFC62FFEC3E2220D102D ] volsnap C:\windows\system32\drivers\volsnap.sys
23:01:59.0558 9236 volsnap - ok
23:01:59.0573 9236 [ A8DA1C1B52ECEA3726DEBED4FF1B700D ] vpci C:\windows\System32\drivers\vpci.sys
23:01:59.0573 9236 vpci - ok
23:01:59.0620 9236 [ 9B4F6978628D07FAEBF77FF6F8F2960D ] VsEtwService120 C:\Program Files\Microsoft Visual Studio 12.0\Common7\Packages\Debugger\Services\VsEtwService.exe
23:01:59.0620 9236 VsEtwService120 - ok
23:01:59.0620 9236 [ 38A60CD9C009C55C6D3B5586F8E6A353 ] vsmraid C:\windows\system32\drivers\vsmraid.sys
23:01:59.0620 9236 vsmraid - ok
23:01:59.0683 9236 [ D0C69E44BC1E1D4AD290FD84104623D8 ] VSS C:\windows\system32\vssvc.exe
23:01:59.0698 9236 VSS - ok
23:01:59.0714 9236 [ A0F6FE0FC2F647C22BBFD6BD4249DBCC ] VSTXRAID C:\windows\system32\drivers\vstxraid.sys
23:01:59.0714 9236 VSTXRAID - ok
23:01:59.0730 9236 [ 62460A45435A26A334907E3F2EA45611 ] vwifibus C:\windows\System32\drivers\vwifibus.sys
23:01:59.0730 9236 vwifibus - ok
23:01:59.0761 9236 [ F690B6EEAA94576727B24376D7ED3601 ] W32Time C:\windows\system32\w32time.dll
23:01:59.0761 9236 W32Time - ok
23:01:59.0776 9236 [ 6B806E893714019969E2B50D7EF6A4D9 ] WacomPen C:\windows\System32\drivers\wacompen.sys
23:01:59.0776 9236 WacomPen - ok
23:01:59.0870 9236 [ A650671AF9A670F678F29FF212B4950C ] wampapache c:\wamp\bin\apache\apache2.4.4\bin\httpd.exe
23:01:59.0870 9236 wampapache - ok
23:02:00.0011 9236 wampmysqld - ok
23:02:00.0058 9236 [ 61F6972FF9AC9A8D0B4D62076DC30051 ] Wanarp C:\windows\system32\DRIVERS\wanarp.sys
23:02:00.0058 9236 Wanarp - ok
23:02:00.0058 9236 [ 61F6972FF9AC9A8D0B4D62076DC30051 ] Wanarpv6 C:\windows\system32\DRIVERS\wanarp.sys
23:02:00.0058 9236 Wanarpv6 - ok
23:02:00.0105 9236 [ 901CC968412F8155B08D7ABE0171166A ] WAS C:\windows\system32\inetsrv\iisw3adm.dll
23:02:00.0105 9236 WAS - ok
23:02:00.0151 9236 [ 42DF22F8C448E7CD219F6D63743505E2 ] wbengine C:\windows\system32\wbengine.exe
23:02:00.0151 9236 wbengine - ok
23:02:00.0183 9236 [ 31D37B2F6069C631EF0557D322924812 ] WbioSrvc C:\windows\System32\wbiosrvc.dll
23:02:00.0183 9236 WbioSrvc - ok
23:02:00.0261 9236 [ AF1349386D4C6786EF4E34FACEF15042 ] Wcmsvc C:\windows\System32\wcmsvc.dll
23:02:00.0261 9236 Wcmsvc - ok
23:02:00.0308 9236 [ 5B5FEAB51172F5513C2CF7B39CFA6A01 ] wcncsvc C:\windows\System32\wcncsvc.dll
23:02:00.0323 9236 wcncsvc - ok
23:02:00.0370 9236 [ E19556D414332E2BEBA1F368229006B4 ] WcsPlugInService C:\windows\System32\WcsPlugInService.dll
23:02:00.0370 9236 WcsPlugInService - ok
23:02:00.0401 9236 [ B3A4D918DAB90505B6BC7B70632913CB ] Wd C:\windows\system32\drivers\wd.sys
23:02:00.0401 9236 Wd - ok
23:02:00.0448 9236 [ FD47DF026B32969B8A68721A0243E8EE ] WdBoot C:\windows\system32\drivers\WdBoot.sys
23:02:00.0448 9236 WdBoot - ok
23:02:00.0464 9236 [ E2C933EDBC389386EBE6D2BA953F43D8 ] Wdf01000 C:\windows\system32\drivers\Wdf01000.sys
23:02:00.0464 9236 Wdf01000 - ok
23:02:00.0480 9236 [ 5F425D842DD6ADE9F95A51A0616AFAD7 ] WdFilter C:\windows\system32\drivers\WdFilter.sys
23:02:00.0495 9236 WdFilter - ok
23:02:00.0511 9236 [ 240FC332484572227CD1DF82407F33E5 ] WdiServiceHost C:\windows\system32\wdi.dll
23:02:00.0511 9236 WdiServiceHost - ok
23:02:00.0526 9236 [ 240FC332484572227CD1DF82407F33E5 ] WdiSystemHost C:\windows\system32\wdi.dll
23:02:00.0526 9236 WdiSystemHost - ok
23:02:00.0573 9236 [ 9B1384CE8E681D2D77BB3524B8E86311 ] WebClient C:\windows\System32\webclnt.dll
23:02:00.0573 9236 WebClient - ok
23:02:00.0589 9236 [ 35FD720943D4FCD75C3275BF062FF140 ] Wecsvc C:\windows\system32\wecsvc.dll
23:02:00.0589 9236 Wecsvc - ok
23:02:00.0605 9236 [ 4D2612E3C462B68F499D840B1133263E ] wercplsupport C:\windows\System32\wercplsupport.dll
23:02:00.0605 9236 wercplsupport - ok
23:02:00.0651 9236 [ 5F70EBFC1F75B487DE79501E3CCBDB54 ] WerSvc C:\windows\System32\WerSvc.dll
23:02:00.0651 9236 WerSvc - ok
23:02:00.0698 9236 [ 44BB9C31E6242C4BD1CE7C2B440C2533 ] WFPLWFS C:\windows\system32\DRIVERS\wfplwfs.sys
23:02:00.0698 9236 WFPLWFS - ok
23:02:00.0714 9236 [ 60E0C220593DA4F7C289CB909D2DBAE0 ] WiaRpc C:\windows\System32\wiarpc.dll
23:02:00.0730 9236 WiaRpc - ok
23:02:00.0745 9236 [ A3C7624A42A3447EF5EDD1ED37FE4E60 ] WIMMount C:\windows\system32\drivers\wimmount.sys
23:02:00.0745 9236 WIMMount - ok
23:02:00.0792 9236 WinDefend - ok
23:02:00.0839 9236 [ 7911470B6018059A880469A63B65700A ] WinHttpAutoProxySvc C:\windows\system32\winhttp.dll
23:02:00.0855 9236 WinHttpAutoProxySvc - ok
23:02:00.0902 9236 [ 3D6B518B71C75C8FA4115A33615C107A ] Winmgmt C:\windows\system32\wbem\WMIsvc.dll
23:02:00.0902 9236 Winmgmt - ok
23:02:00.0980 9236 [ 8E212A627F33F6FC3B5F3BB47212F66E ] WinRM C:\windows\system32\WsmSvc.dll
23:02:00.0980 9236 WinRM - ok
23:02:01.0042 9236 [ BB20956C424531003F7FA6CD36F11D5D ] WinUsb C:\windows\system32\DRIVERS\WinUsb.sys
23:02:01.0042 9236 WinUsb - ok
23:02:01.0105 9236 [ 6351724B8FA0255C2DBD970297F00B93 ] WlanSvc C:\windows\System32\wlansvc.dll
23:02:01.0105 9236 WlanSvc - ok
23:02:01.0167 9236 [ B330CE47FB74A6BE9A3FFFF4B3F64D9B ] wlidsvc C:\windows\system32\wlidsvc.dll
23:02:01.0183 9236 wlidsvc - ok
23:02:01.0198 9236 [ E2A596CACFC6504306CDB7B593B90084 ] WmiAcpi C:\windows\System32\drivers\wmiacpi.sys
23:02:01.0198 9236 WmiAcpi - ok
23:02:01.0230 9236 [ D113499052C5E541906B727779F0F959 ] wmiApSrv C:\windows\system32\wbem\WmiApSrv.exe
23:02:01.0230 9236 wmiApSrv - ok
23:02:01.0261 9236 WMPNetworkSvc - ok
23:02:01.0261 9236 [ C6FF953D5D6F2EAE3B8883474D5076B3 ] wpcfltr C:\windows\system32\DRIVERS\wpcfltr.sys
23:02:01.0261 9236 wpcfltr - ok
23:02:01.0277 9236 [ A6ED163169876BFD2437E872FE2F1509 ] WPCSvc C:\windows\System32\wpcsvc.dll
23:02:01.0277 9236 WPCSvc - ok
23:02:01.0323 9236 [ 3013658A4D327854BEEC4A08D9655194 ] WPDBusEnum C:\windows\system32\wpdbusenum.dll
23:02:01.0323 9236 WPDBusEnum - ok
23:02:01.0355 9236 [ 0346CAFC181C91C6E2330332EB332ED6 ] WpdUpFltr C:\windows\system32\drivers\WpdUpFltr.sys
23:02:01.0355 9236 WpdUpFltr - ok
23:02:01.0417 9236 [ BC8B5CB336E63BB25EAD1CE8EDD34B81 ] ws2ifsl C:\windows\system32\drivers\ws2ifsl.sys
23:02:01.0417 9236 ws2ifsl - ok
23:02:01.0464 9236 [ 012CFE7F0F95266F554EE3B91EE2128A ] wscsvc C:\windows\System32\wscsvc.dll
23:02:01.0464 9236 wscsvc - ok
23:02:01.0464 9236 WSearch - ok
23:02:01.0605 9236 [ D4D04839F3DFAF09D94BAB1016F7A297 ] WSService C:\windows\System32\WSService.dll
23:02:01.0605 9236 WSService - ok
23:02:01.0683 9236 [ 311E5E1976E0BD9110A88B93158055D5 ] wuauserv C:\windows\system32\wuaueng.dll
23:02:01.0698 9236 wuauserv - ok
23:02:01.0714 9236 [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf C:\windows\system32\drivers\WudfPf.sys
23:02:01.0714 9236 WudfPf - ok
23:02:01.0730 9236 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd C:\windows\System32\drivers\WUDFRd.sys
23:02:01.0730 9236 WUDFRd - ok
23:02:01.0730 9236 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFSensorLP C:\windows\system32\DRIVERS\WUDFRd.sys
23:02:01.0730 9236 WUDFSensorLP - ok
23:02:01.0745 9236 [ B20F051B03A966392364C83F009F7D17 ] wudfsvc C:\windows\System32\WUDFSvc.dll
23:02:01.0745 9236 wudfsvc - ok
23:02:01.0761 9236 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFWpdFs C:\windows\system32\DRIVERS\WUDFRd.sys
23:02:01.0761 9236 WUDFWpdFs - ok
23:02:01.0761 9236 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFWpdMtp C:\windows\system32\DRIVERS\WUDFRd.sys
23:02:01.0761 9236 WUDFWpdMtp - ok
23:02:01.0808 9236 [ 6D9E07436B6646EC8F7EFFD39B6BA288 ] WwanSvc C:\windows\System32\wwansvc.dll
23:02:01.0823 9236 WwanSvc - ok
23:02:01.0823 9236 ================ Scan global ===============================
23:02:01.0886 9236 [ DDC1AFBF9DDF880CE9BD3896114D8DED ] C:\windows\system32\basesrv.dll
23:02:01.0964 9236 [ E9343076AE704D20BB0D01F3AF3EFFEF ] C:\windows\system32\winsrv.dll
23:02:01.0980 9236 [ BD7C6949984D19AAA609896B675E7357 ] C:\windows\system32\sxssrv.dll
23:02:01.0995 9236 [ 8F226143046435C75C033B0C52E90FFE ] C:\windows\system32\services.exe
23:02:01.0995 9236 [Global] - ok
23:02:01.0995 9236 ================ Scan MBR ==================================
23:02:02.0011 9236 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0
23:02:02.0027 9236 \Device\Harddisk0\DR0 - ok
23:02:02.0027 9236 ================ Scan VBR ==================================
23:02:02.0027 9236 [ 07EEFE498AC10622EF0EA8AC537F987A ] \Device\Harddisk0\DR0\Partition1
23:02:02.0027 9236 \Device\Harddisk0\DR0\Partition1 - ok
23:02:02.0042 9236 [ FB68B11C7901A1D427B6D8C83E19AA52 ] \Device\Harddisk0\DR0\Partition2
23:02:02.0042 9236 \Device\Harddisk0\DR0\Partition2 - ok
23:02:02.0042 9236 [ 6D1AFFCBA48A106BF91B07BBA00C0DA3 ] \Device\Harddisk0\DR0\Partition3
23:02:02.0042 9236 \Device\Harddisk0\DR0\Partition3 - ok
23:02:02.0058 9236 [ 4EF10EC9FFF8C9BC3F20F9A074880BE4 ] \Device\Harddisk0\DR0\Partition4
23:02:02.0058 9236 \Device\Harddisk0\DR0\Partition4 - ok
23:02:02.0089 9236 [ EB83321CE5C46CE6421D3C0E4E996696 ] \Device\Harddisk0\DR0\Partition5
23:02:02.0089 9236 \Device\Harddisk0\DR0\Partition5 - ok
23:02:02.0089 9236 ============================================================
23:02:02.0089 9236 Scan finished
23:02:02.0089 9236 ============================================================
23:02:02.0089 9928 Detected object count: 0
23:02:02.0089 9928 Actual detected object count: 0
23:03:16.0090 9364 Deinitialize success

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43072
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: HiJackThis LOG

Příspěvekod jaro3 » 23 úno 2014 10:14

Otevři si Poznámkový blok (Start -> Spustit... a napiš do okna Notepad a dej Ok.
Zkopíruj do něj následující celý text označený zeleně:
Poznámka: Nepoužij k označení skriptu funkci VYBRAT VŠE

Kód: Vybrat vše

@echo off
del /q /a /f %systemroot%\system32\drivers\etc\hosts 2>nul
echo 127.0.0.1 localhost>>%systemroot%\system32\drivers\etc\hosts
exit

Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:zev souboru: zde napiš: FixHosts.bat
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.
Poklepáním na soubor ho spusť.

Vypni rez. ochranu u antiviru a antispywaru,příp. firewall..

Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud budou problémy , spusť ho v nouz. režimu.

Upozornění : Může se stát, že po aplikaci Combofixu a restartu počítače, Windows nenaběhnou , nebo nenajede plocha , budou problémy s připojením, pak znovu restartuj počítač, pokud to nepomůže , po restartu mačkej klávesu F8 a pak zvol poslední známou funkční konfiguraci. , či použij bod obnovy.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Facebook [Bot] a 5 hostů