Zdravím, mohl bych poprosit o kontrolu logu? Přijde mi že se mi dost zpomalilo PC a když jsem na internetu tak se mi otvírá třeba při kliknutí na jeden odkaz více oken najednou a někdy se mi i přestane všechno najednou načítat a podobně.. Předem děkuji za odpověď. Přikládám log z Hijackthis
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:16:56, on 17.2.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16464)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskhost.exe
C:\Windows\Explorer.EXE
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\user\Desktop\HiJackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GR469A~1.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GRA32A~1.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
--
End of file - 5494 bytes
Prosím o kontrolu logu Vyřešeno
- memphisto
- Guru Level 13
- Příspěvky: 21113
- Registrován: září 06
- Bydliště: Zlín - České Budějovice
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu
v logu fixni:
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranìní historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit doèasné soubory Windows, vysypat koš atd.
Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Update Malwarebytes' Anti-Malware (Aktualizace Malwarebytes' Anti-Malware) a Launch Malwarebytes' Anti-Malware (Spustit aplikaci Malwarebytes' Anti-Malware), pokud jo tak klikni na tlačítko Finish
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Perform Quick Scan (Provést rychlý sken) a klikni na tlačítko Scan (Skenovat)
- po probìhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Show Results
- pak zvol možnost Save Logfile a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.
Stáhni AdwCleaner
Ulož si ho na svojí plochu
Ukonči všechny programy, okna a prohlížeče
Spusť program poklepáním a klikni na „Search“
Po skenu se objeví log (jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranìní historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit doèasné soubory Windows, vysypat koš atd.
Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Update Malwarebytes' Anti-Malware (Aktualizace Malwarebytes' Anti-Malware) a Launch Malwarebytes' Anti-Malware (Spustit aplikaci Malwarebytes' Anti-Malware), pokud jo tak klikni na tlačítko Finish
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Perform Quick Scan (Provést rychlý sken) a klikni na tlačítko Scan (Skenovat)
- po probìhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Show Results
- pak zvol možnost Save Logfile a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.
Stáhni AdwCleaner
Ulož si ho na svojí plochu
Ukonči všechny programy, okna a prohlížeče
Spusť program poklepáním a klikni na „Search“
Po skenu se objeví log (jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji
Re: Prosím o kontrolu logu
V Hijackthis jsem vše fixnul, ale ty první dva fixnout nejdou. Vše jsem provedl a přikládám logy:
Malwarebytes Anti-Malware 1.70.0.1100
www.malwarebytes.org
Verze: v2013.02.17.02
Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 9.0.8112.16421
user :: USER-PC [administrátor]
17.2.2013 11:01:12
mbam-log-2013-02-17 (11-01-12).txt
Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 193248
Uplynulý čas: 2 minut, 38 sekund
Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené soubory: 0
(Žádné škodlivé položky nebyly zjištěny)
(konec)
# AdwCleaner v2.112 - Logfile created 02/17/2013 at 11:08:20
# Updated 10/02/2013 by Xplode
# Operating system : Windows 7 Home Premium Service Pack 1 (32 bits)
# User : user - USER-PC
# Boot Mode : Normal
# Running from : C:\Users\user\Desktop\adwcleaner0.exe
# Option [Search]
***** [Services] *****
***** [Files / Folders] *****
***** [Registry] *****
***** [Internet Browsers] *****
-\\ Internet Explorer v9.0.8112.16464
[OK] Registry is clean.
-\\ Mozilla Firefox v18.0.2 (cs)
*************************
AdwCleaner[R1].txt - [549 octets] - [17/02/2013 11:08:20]
########## EOF - C:\AdwCleaner[R1].txt - [608 octets] ##########
Malwarebytes Anti-Malware 1.70.0.1100
www.malwarebytes.org
Verze: v2013.02.17.02
Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 9.0.8112.16421
user :: USER-PC [administrátor]
17.2.2013 11:01:12
mbam-log-2013-02-17 (11-01-12).txt
Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 193248
Uplynulý čas: 2 minut, 38 sekund
Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené soubory: 0
(Žádné škodlivé položky nebyly zjištěny)
(konec)
# AdwCleaner v2.112 - Logfile created 02/17/2013 at 11:08:20
# Updated 10/02/2013 by Xplode
# Operating system : Windows 7 Home Premium Service Pack 1 (32 bits)
# User : user - USER-PC
# Boot Mode : Normal
# Running from : C:\Users\user\Desktop\adwcleaner0.exe
# Option [Search]
***** [Services] *****
***** [Files / Folders] *****
***** [Registry] *****
***** [Internet Browsers] *****
-\\ Internet Explorer v9.0.8112.16464
[OK] Registry is clean.
-\\ Mozilla Firefox v18.0.2 (cs)
*************************
AdwCleaner[R1].txt - [549 octets] - [17/02/2013 11:08:20]
########## EOF - C:\AdwCleaner[R1].txt - [608 octets] ##########
- memphisto
- Guru Level 13
- Příspěvky: 21113
- Registrován: září 06
- Bydliště: Zlín - České Budějovice
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu
Zatím se nic neobjevilo...
Stáhni si TDSSKiller
Na svojí plochu. Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller.2.2.7.1._(datum)_log.txt , vlož sem prosím celý obsah logu.
Vypni rezidentní štít antiviru a antispywaru
Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Stáhni si TDSSKiller
Na svojí plochu. Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller.2.2.7.1._(datum)_log.txt , vlož sem prosím celý obsah logu.
Vypni rezidentní štít antiviru a antispywaru
Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji
Re: Prosím o kontrolu logu
Přikládám logy:
11:34:44.0863 3536 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
11:34:45.0082 3536 ============================================================
11:34:45.0082 3536 Current date / time: 2013/02/17 11:34:45.0082
11:34:45.0082 3536 SystemInfo:
11:34:45.0082 3536
11:34:45.0082 3536 OS Version: 6.1.7601 ServicePack: 1.0
11:34:45.0082 3536 Product type: Workstation
11:34:45.0082 3536 ComputerName: USER-PC
11:34:45.0082 3536 UserName: user
11:34:45.0082 3536 Windows directory: C:\Windows
11:34:45.0082 3536 System windows directory: C:\Windows
11:34:45.0082 3536 Processor architecture: Intel x86
11:34:45.0082 3536 Number of processors: 4
11:34:45.0082 3536 Page size: 0x1000
11:34:45.0082 3536 Boot type: Normal boot
11:34:45.0082 3536 ============================================================
11:34:46.0004 3536 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
11:34:46.0004 3536 ============================================================
11:34:46.0004 3536 \Device\Harddisk0\DR0:
11:34:46.0004 3536 MBR partitions:
11:34:46.0004 3536 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x273861
11:34:46.0004 3536 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x2738A0, BlocksNum 0x1ED8B256
11:34:46.0004 3536 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x1EFFEAF6, BlocksNum 0x55706ECB
11:34:46.0004 3536 ============================================================
11:34:46.0035 3536 C: <-> \Device\Harddisk0\DR0\Partition2
11:34:46.0050 3536 D: <-> \Device\Harddisk0\DR0\Partition3
11:34:46.0050 3536 ============================================================
11:34:46.0050 3536 Initialize success
11:34:46.0050 3536 ============================================================
11:35:01.0582 4412 ============================================================
11:35:01.0582 4412 Scan started
11:35:01.0582 4412 Mode: Manual;
11:35:01.0582 4412 ============================================================
11:35:02.0066 4412 ================ Scan system memory ========================
11:35:02.0066 4412 System memory - ok
11:35:02.0066 4412 ================ Scan services =============================
11:35:02.0175 4412 [ 1B133875B8AA8AC48969BD3458AFE9F5 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
11:35:02.0207 4412 1394ohci - ok
11:35:02.0238 4412 [ CEA80C80BED809AA0DA6FEBC04733349 ] ACPI C:\Windows\system32\drivers\ACPI.sys
11:35:02.0254 4412 ACPI - ok
11:35:02.0269 4412 [ 1EFBC664ABFF416D1D07DB115DCB264F ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
11:35:02.0269 4412 AcpiPmi - ok
11:35:02.0332 4412 [ 3927397AC60D943DAF8808AFFED582B7 ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
11:35:02.0332 4412 AdobeARMservice - ok
11:35:02.0410 4412 [ EC807244904FA170C299AB06D87FBDBE ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
11:35:02.0425 4412 AdobeFlashPlayerUpdateSvc - ok
11:35:02.0457 4412 [ 21E785EBD7DC90A06391141AAC7892FB ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys
11:35:02.0457 4412 adp94xx - ok
11:35:02.0472 4412 [ 0C676BC278D5B59FF5ABD57BBE9123F2 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys
11:35:02.0472 4412 adpahci - ok
11:35:02.0488 4412 [ 7C7B5EE4B7B822EC85321FE23A27DB33 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys
11:35:02.0488 4412 adpu320 - ok
11:35:02.0519 4412 [ 8B5EEFEEC1E6D1A72A06C526628AD161 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
11:35:02.0519 4412 AeLookupSvc - ok
11:35:02.0566 4412 [ 9EBBBA55060F786F0FCAA3893BFA2806 ] AFD C:\Windows\system32\drivers\afd.sys
11:35:02.0597 4412 AFD - ok
11:35:02.0629 4412 [ 507812C3054C21CEF746B6EE3D04DD6E ] agp440 C:\Windows\system32\drivers\agp440.sys
11:35:02.0644 4412 agp440 - ok
11:35:02.0660 4412 [ 8B30250D573A8F6B4BD23195160D8707 ] aic78xx C:\Windows\system32\DRIVERS\djsvs.sys
11:35:02.0675 4412 aic78xx - ok
11:35:02.0691 4412 [ 18A54E132947CD98FEA9ACCC57F98F13 ] ALG C:\Windows\System32\alg.exe
11:35:02.0691 4412 ALG - ok
11:35:02.0722 4412 [ 0D40BCF52EA90FC7DF2AEAB6503DEA44 ] aliide C:\Windows\system32\drivers\aliide.sys
11:35:02.0722 4412 aliide - ok
11:35:02.0738 4412 [ FF794EC143F166349B49CF13507311D2 ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe
11:35:02.0754 4412 AMD External Events Utility - ok
11:35:02.0754 4412 [ 3C6600A0696E90A463771C7422E23AB5 ] amdagp C:\Windows\system32\drivers\amdagp.sys
11:35:02.0769 4412 amdagp - ok
11:35:02.0785 4412 [ CD5914170297126B6266860198D1D4F0 ] amdide C:\Windows\system32\drivers\amdide.sys
11:35:02.0785 4412 amdide - ok
11:35:02.0816 4412 [ 00DDA200D71BAC534BF56A9DB5DFD666 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
11:35:02.0816 4412 AmdK8 - ok
11:35:02.0957 4412 [ 68D791D78454684340433E52059EB45E ] amdkmdag C:\Windows\system32\DRIVERS\atikmdag.sys
11:35:03.0019 4412 amdkmdag - ok
11:35:03.0035 4412 [ 96CD7053A516C30E61A05DF9757DA7DE ] amdkmdap C:\Windows\system32\DRIVERS\atikmpag.sys
11:35:03.0050 4412 amdkmdap - ok
11:35:03.0050 4412 [ 3CBF30F5370FDA40DD3E87DF38EA53B6 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
11:35:03.0082 4412 AmdPPM - ok
11:35:03.0097 4412 [ D320BF87125326F996D4904FE24300FC ] amdsata C:\Windows\system32\drivers\amdsata.sys
11:35:03.0113 4412 amdsata - ok
11:35:03.0113 4412 [ EA43AF0C423FF267355F74E7A53BDABA ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys
11:35:03.0129 4412 amdsbs - ok
11:35:03.0144 4412 [ 46387FB17B086D16DEA267D5BE23A2F2 ] amdxata C:\Windows\system32\drivers\amdxata.sys
11:35:03.0144 4412 amdxata - ok
11:35:03.0160 4412 [ AEA177F783E20150ACE5383EE368DA19 ] AppID C:\Windows\system32\drivers\appid.sys
11:35:03.0175 4412 AppID - ok
11:35:03.0191 4412 [ 62A9C86CB6085E20DB4823E4E97826F5 ] AppIDSvc C:\Windows\System32\appidsvc.dll
11:35:03.0207 4412 AppIDSvc - ok
11:35:03.0207 4412 [ FB1959012294D6AD43E5304DF65E3C26 ] Appinfo C:\Windows\System32\appinfo.dll
11:35:03.0207 4412 Appinfo - ok
11:35:03.0222 4412 [ 2932004F49677BD84DBC72EDB754FFB3 ] arc C:\Windows\system32\DRIVERS\arc.sys
11:35:03.0222 4412 arc - ok
11:35:03.0222 4412 [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7 ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys
11:35:03.0222 4412 arcsas - ok
11:35:03.0238 4412 [ ADD2ADE1C2B285AB8378D2DAAF991481 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
11:35:03.0238 4412 AsyncMac - ok
11:35:03.0254 4412 [ 338C86357871C167A96AB976519BF59E ] atapi C:\Windows\system32\drivers\atapi.sys
11:35:03.0254 4412 atapi - ok
11:35:03.0285 4412 [ 84FAF3D287D56D210F84DB7C1349D43B ] AtiHDAudioService C:\Windows\system32\drivers\AtihdW73.sys
11:35:03.0316 4412 AtiHDAudioService - ok
11:35:03.0457 4412 [ 68D791D78454684340433E52059EB45E ] atikmdag C:\Windows\system32\DRIVERS\atikmdag.sys
11:35:03.0488 4412 atikmdag - ok
11:35:03.0535 4412 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
11:35:03.0535 4412 AudioEndpointBuilder - ok
11:35:03.0535 4412 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] Audiosrv C:\Windows\System32\Audiosrv.dll
11:35:03.0535 4412 Audiosrv - ok
11:35:03.0550 4412 [ 6E30D02AAC9CAC84F421622E3A2F6178 ] AxInstSV C:\Windows\System32\AxInstSV.dll
11:35:03.0566 4412 AxInstSV - ok
11:35:03.0582 4412 [ 1A231ABEC60FD316EC54C66715543CEC ] b06bdrv C:\Windows\system32\DRIVERS\bxvbdx.sys
11:35:03.0582 4412 b06bdrv - ok
11:35:03.0597 4412 [ BD8869EB9CDE6BBE4508D869929869EE ] b57nd60x C:\Windows\system32\DRIVERS\b57nd60x.sys
11:35:03.0613 4412 b57nd60x - ok
11:35:03.0629 4412 [ EE1E9C3BB8228AE423DD38DB69128E71 ] BDESVC C:\Windows\System32\bdesvc.dll
11:35:03.0629 4412 BDESVC - ok
11:35:03.0629 4412 [ 505506526A9D467307B3C393DEDAF858 ] Beep C:\Windows\system32\drivers\Beep.sys
11:35:03.0644 4412 Beep - ok
11:35:03.0675 4412 [ 1E2BAC209D184BB851E1A187D8A29136 ] BFE C:\Windows\System32\bfe.dll
11:35:03.0691 4412 BFE - ok
11:35:03.0722 4412 [ E585445D5021971FAE10393F0F1C3961 ] BITS C:\Windows\System32\qmgr.dll
11:35:03.0738 4412 BITS - ok
11:35:03.0738 4412 [ 2287078ED48FCFC477B05B20CF38F36F ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
11:35:03.0754 4412 blbdrive - ok
11:35:03.0769 4412 [ 8F2DA3028D5FCBD1A060A3DE64CD6506 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
11:35:03.0769 4412 bowser - ok
11:35:03.0785 4412 [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys
11:35:03.0785 4412 BrFiltLo - ok
11:35:03.0800 4412 [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys
11:35:03.0800 4412 BrFiltUp - ok
11:35:03.0832 4412 [ 3DAA727B5B0A45039B0E1C9A211B8400 ] Browser C:\Windows\System32\browser.dll
11:35:03.0832 4412 Browser - ok
11:35:03.0847 4412 [ 845B8CE732E67F3B4133164868C666EA ] Brserid C:\Windows\System32\Drivers\Brserid.sys
11:35:03.0847 4412 Brserid - ok
11:35:03.0847 4412 [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
11:35:03.0847 4412 BrSerWdm - ok
11:35:03.0863 4412 [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
11:35:03.0863 4412 BrUsbMdm - ok
11:35:03.0879 4412 [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
11:35:03.0879 4412 BrUsbSer - ok
11:35:03.0894 4412 [ ED3DF7C56CE0084EB2034432FC56565A ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys
11:35:03.0894 4412 BTHMODEM - ok
11:35:03.0894 4412 [ 1DF19C96EEF6C29D1C3E1A8678E07190 ] bthserv C:\Windows\system32\bthserv.dll
11:35:03.0910 4412 bthserv - ok
11:35:03.0925 4412 [ 77EA11B065E0A8AB902D78145CA51E10 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
11:35:03.0925 4412 cdfs - ok
11:35:03.0957 4412 [ BE167ED0FDB9C1FA1133953C18D5A6C9 ] cdrom C:\Windows\system32\drivers\cdrom.sys
11:35:03.0957 4412 cdrom - ok
11:35:03.0988 4412 [ 319C6B309773D063541D01DF8AC6F55F ] CertPropSvc C:\Windows\System32\certprop.dll
11:35:03.0988 4412 CertPropSvc - ok
11:35:04.0004 4412 [ 3FE3FE94A34DF6FB06E6418D0F6A0060 ] circlass C:\Windows\system32\DRIVERS\circlass.sys
11:35:04.0004 4412 circlass - ok
11:35:04.0035 4412 [ 635181E0E9BBF16871BF5380D71DB02D ] CLFS C:\Windows\system32\CLFS.sys
11:35:04.0035 4412 CLFS - ok
11:35:04.0097 4412 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
11:35:04.0097 4412 clr_optimization_v2.0.50727_32 - ok
11:35:04.0129 4412 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
11:35:04.0129 4412 clr_optimization_v4.0.30319_32 - ok
11:35:04.0129 4412 [ DEA805815E587DAD1DD2C502220B5616 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
11:35:04.0129 4412 CmBatt - ok
11:35:04.0144 4412 [ C537B1DB64D495B9B4717B4D6D9EDBF2 ] cmdide C:\Windows\system32\drivers\cmdide.sys
11:35:04.0160 4412 cmdide - ok
11:35:04.0191 4412 [ 247B4CE2DAB1160CD422D532D5241E1F ] CNG C:\Windows\system32\Drivers\cng.sys
11:35:04.0191 4412 CNG - ok
11:35:04.0207 4412 [ A6023D3823C37043986713F118A89BEE ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
11:35:04.0207 4412 Compbatt - ok
11:35:04.0207 4412 [ CBE8C58A8579CFE5FCCF809E6F114E89 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys
11:35:04.0207 4412 CompositeBus - ok
11:35:04.0222 4412 COMSysApp - ok
11:35:04.0222 4412 [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys
11:35:04.0222 4412 crcdisk - ok
11:35:04.0269 4412 [ 96C0E38905CFD788313BE8E11DAE3F2F ] CryptSvc C:\Windows\system32\cryptsvc.dll
11:35:04.0269 4412 CryptSvc - ok
11:35:04.0285 4412 [ 7660F01D3B38ACA1747E397D21D790AF ] DcomLaunch C:\Windows\system32\rpcss.dll
11:35:04.0300 4412 DcomLaunch - ok
11:35:04.0316 4412 [ 8D6E10A2D9A5EED59562D9B82CF804E1 ] defragsvc C:\Windows\System32\defragsvc.dll
11:35:04.0332 4412 defragsvc - ok
11:35:04.0379 4412 [ F024449C97EC1E464AAFFDA18593DB88 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
11:35:04.0379 4412 DfsC - ok
11:35:04.0394 4412 [ E9E01EB683C132F7FA27CD607B8A2B63 ] Dhcp C:\Windows\system32\dhcpcore.dll
11:35:04.0410 4412 Dhcp - ok
11:35:04.0410 4412 [ 1A050B0274BFB3890703D490F330C0DA ] discache C:\Windows\system32\drivers\discache.sys
11:35:04.0410 4412 discache - ok
11:35:04.0425 4412 [ 565003F326F99802E68CA78F2A68E9FF ] Disk C:\Windows\system32\DRIVERS\disk.sys
11:35:04.0425 4412 Disk - ok
11:35:04.0441 4412 [ 33EF4861F19A0736B11314AAD9AE28D0 ] Dnscache C:\Windows\System32\dnsrslvr.dll
11:35:04.0457 4412 Dnscache - ok
11:35:04.0488 4412 [ 366BA8FB4B7BB7435E3B9EACB3843F67 ] dot3svc C:\Windows\System32\dot3svc.dll
11:35:04.0488 4412 dot3svc - ok
11:35:04.0504 4412 [ 8EC04CA86F1D68DA9E11952EB85973D6 ] DPS C:\Windows\system32\dps.dll
11:35:04.0519 4412 DPS - ok
11:35:04.0550 4412 [ B918E7C5F9BF77202F89E1A9539F2EB4 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
11:35:04.0550 4412 drmkaud - ok
11:35:04.0597 4412 [ 555E54AC2F601A8821CEF58961653991 ] dtsoftbus01 C:\Windows\system32\DRIVERS\dtsoftbus01.sys
11:35:04.0597 4412 dtsoftbus01 - ok
11:35:04.0629 4412 [ 23F5D28378A160352BA8F817BD8C71CB ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
11:35:04.0738 4412 DXGKrnl - ok
11:35:04.0769 4412 [ 73CE42907CF42BFB91BCD27FE7C7A7AF ] eamonm C:\Windows\system32\DRIVERS\eamonm.sys
11:35:04.0769 4412 eamonm - ok
11:35:04.0785 4412 [ 8600142FA91C1B96367D3300AD0F3F3A ] EapHost C:\Windows\System32\eapsvc.dll
11:35:04.0785 4412 EapHost - ok
11:35:04.0847 4412 [ 024E1B5CAC09731E4D868E64DBFB4AB0 ] ebdrv C:\Windows\system32\DRIVERS\evbdx.sys
11:35:04.0863 4412 ebdrv - ok
11:35:04.0894 4412 [ 81951F51E318AECC2D68559E47485CC4 ] EFS C:\Windows\System32\lsass.exe
11:35:04.0894 4412 EFS - ok
11:35:04.0910 4412 [ 7D300A43A7BD8769E0F901BF9E1AE367 ] ehdrv C:\Windows\system32\DRIVERS\ehdrv.sys
11:35:04.0910 4412 ehdrv - ok
11:35:04.0957 4412 [ A8C362018EFC87BEB013EE28F29C0863 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
11:35:04.0972 4412 ehRecvr - ok
11:35:04.0988 4412 [ D389BFF34F80CAEDE417BF9D1507996A ] ehSched C:\Windows\ehome\ehsched.exe
11:35:04.0988 4412 ehSched - ok
11:35:05.0035 4412 [ D83323D7CD5D1CC46B42DA9E59409890 ] EhttpSrv C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
11:35:05.0035 4412 EhttpSrv - ok
11:35:05.0082 4412 [ EFA198F8983D064A81052851F7BB80C2 ] ekrn C:\Program Files\ESET\ESET Smart Security\ekrn.exe
11:35:05.0082 4412 ekrn - ok
11:35:05.0113 4412 [ 0ED67910C8C326796FAA00B2BF6D9D3C ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys
11:35:05.0113 4412 elxstor - ok
11:35:05.0129 4412 [ 15BFE00F030EA20955117BB0677E9668 ] epfw C:\Windows\system32\DRIVERS\epfw.sys
11:35:05.0129 4412 epfw - ok
11:35:05.0160 4412 [ 52310E0E603D7DA79ECCA7D764937A91 ] Epfwndis C:\Windows\system32\DRIVERS\Epfwndis.sys
11:35:05.0175 4412 Epfwndis - ok
11:35:05.0207 4412 [ 235250A79CF1E16A5A42407CFE3F6A4C ] epfwwfp C:\Windows\system32\DRIVERS\epfwwfp.sys
11:35:05.0207 4412 epfwwfp - ok
11:35:05.0238 4412 [ 8FC3208352DD3912C94367A206AB3F11 ] ErrDev C:\Windows\system32\drivers\errdev.sys
11:35:05.0254 4412 ErrDev - ok
11:35:05.0285 4412 [ F6916EFC29D9953D5D0DF06882AE8E16 ] EventSystem C:\Windows\system32\es.dll
11:35:05.0285 4412 EventSystem - ok
11:35:05.0300 4412 [ 2DC9108D74081149CC8B651D3A26207F ] exfat C:\Windows\system32\drivers\exfat.sys
11:35:05.0300 4412 exfat - ok
11:35:05.0316 4412 [ 7E0AB74553476622FB6AE36F73D97D35 ] fastfat C:\Windows\system32\drivers\fastfat.sys
11:35:05.0316 4412 fastfat - ok
11:35:05.0363 4412 [ 967EA5B213E9984CBE270205DF37755B ] Fax C:\Windows\system32\fxssvc.exe
11:35:05.0363 4412 Fax - ok
11:35:05.0379 4412 [ E817A017F82DF2A1F8CFDBDA29388B29 ] fdc C:\Windows\system32\DRIVERS\fdc.sys
11:35:05.0379 4412 fdc - ok
11:35:05.0394 4412 [ F3222C893BD2F5821A0179E5C71E88FB ] fdPHost C:\Windows\system32\fdPHost.dll
11:35:05.0394 4412 fdPHost - ok
11:35:05.0394 4412 [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B ] FDResPub C:\Windows\system32\fdrespub.dll
11:35:05.0394 4412 FDResPub - ok
11:35:05.0410 4412 [ 6CF00369C97F3CF563BE99BE983D13D8 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
11:35:05.0410 4412 FileInfo - ok
11:35:05.0425 4412 [ 42C51DC94C91DA21CB9196EB64C45DB9 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
11:35:05.0441 4412 Filetrace - ok
11:35:05.0457 4412 [ 87907AA70CB3C56600F1C2FB8841579B ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
11:35:05.0457 4412 flpydisk - ok
11:35:05.0472 4412 [ 7520EC808E0C35E0EE6F841294316653 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
11:35:05.0472 4412 FltMgr - ok
11:35:05.0504 4412 [ B3A5EC6B6B6673DB7E87C2BCDBDDC074 ] FontCache C:\Windows\system32\FntCache.dll
11:35:05.0504 4412 FontCache - ok
11:35:05.0550 4412 [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
11:35:05.0550 4412 FontCache3.0.0.0 - ok
11:35:05.0566 4412 [ 1A16B57943853E598CFF37FE2B8CBF1D ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
11:35:05.0566 4412 FsDepends - ok
11:35:05.0582 4412 [ 7DAE5EBCC80E45D3253F4923DC424D05 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
11:35:05.0582 4412 Fs_Rec - ok
11:35:05.0597 4412 [ 8A73E79089B282100B9393B644CB853B ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
11:35:05.0597 4412 fvevol - ok
11:35:05.0613 4412 [ 65EE0C7A58B65E74AE05637418153938 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys
11:35:05.0629 4412 gagp30kx - ok
11:35:05.0660 4412 [ E897EAF5ED6BA41E081060C9B447A673 ] gpsvc C:\Windows\System32\gpsvc.dll
11:35:05.0675 4412 gpsvc - ok
11:35:05.0691 4412 [ C44E3C2BAB6837DB337DDEE7544736DB ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
11:35:05.0707 4412 hcw85cir - ok
11:35:05.0738 4412 [ A5EF29D5315111C80A5C1ABAD14C8972 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
11:35:05.0738 4412 HdAudAddService - ok
11:35:05.0754 4412 [ 9036377B8A6C15DC2EEC53E489D159B5 ] HDAudBus C:\Windows\system32\drivers\HDAudBus.sys
11:35:05.0754 4412 HDAudBus - ok
11:35:05.0769 4412 [ 1D58A7F3E11A9731D0EAAAA8405ACC36 ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys
11:35:05.0769 4412 HidBatt - ok
11:35:05.0769 4412 [ 89448F40E6DF260C206A193A4683BA78 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys
11:35:05.0800 4412 HidBth - ok
11:35:05.0816 4412 [ CF50B4CF4A4F229B9F3C08351F99CA5E ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
11:35:05.0816 4412 HidIr - ok
11:35:05.0832 4412 [ 2BC6F6A1992B3A77F5F41432CA6B3B6B ] hidserv C:\Windows\system32\hidserv.dll
11:35:05.0832 4412 hidserv - ok
11:35:05.0847 4412 [ 10C19F8290891AF023EAEC0832E1EB4D ] HidUsb C:\Windows\system32\drivers\hidusb.sys
11:35:05.0879 4412 HidUsb - ok
11:35:05.0894 4412 [ 196B4E3F4CCCC24AF836CE58FACBB699 ] hkmsvc C:\Windows\system32\kmsvc.dll
11:35:05.0894 4412 hkmsvc - ok
11:35:05.0910 4412 [ 6658F4404DE03D75FE3BA09F7ABA6A30 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
11:35:05.0925 4412 HomeGroupListener - ok
11:35:05.0941 4412 [ DBC02D918FFF1CAD628ACBE0C0EAA8E8 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
11:35:05.0957 4412 HomeGroupProvider - ok
11:35:05.0972 4412 [ 295FDC419039090EB8B49FFDBB374549 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
11:35:06.0004 4412 HpSAMD - ok
11:35:06.0066 4412 [ 871917B07A141BFF43D76D8844D48106 ] HTTP C:\Windows\system32\drivers\HTTP.sys
11:35:06.0097 4412 HTTP - ok
11:35:06.0113 4412 [ 0C4E035C7F105F1299258C90886C64C5 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
11:35:06.0129 4412 hwpolicy - ok
11:35:06.0144 4412 [ F151F0BDC47F4A28B1B20A0818EA36D6 ] i8042prt C:\Windows\system32\drivers\i8042prt.sys
11:35:06.0160 4412 i8042prt - ok
11:35:06.0175 4412 [ 5CD5F9A5444E6CDCB0AC89BD62D8B76E ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
11:35:06.0191 4412 iaStorV - ok
11:35:06.0238 4412 [ 1CF03C69B49ACB70C722DF92755C0C8C ] IDriverT C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
11:35:06.0238 4412 IDriverT - ok
11:35:06.0285 4412 [ C521D7EB6497BB1AF6AFA89E322FB43C ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
11:35:06.0300 4412 idsvc - ok
11:35:06.0316 4412 [ 4173FF5708F3236CF25195FECD742915 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys
11:35:06.0316 4412 iirsp - ok
11:35:06.0347 4412 [ F95622F161474511B8D80D6B093AA610 ] IKEEXT C:\Windows\System32\ikeext.dll
11:35:06.0347 4412 IKEEXT - ok
11:35:06.0363 4412 [ A0F12F2C9BA6C72F3987CE780E77C130 ] intelide C:\Windows\system32\drivers\intelide.sys
11:35:06.0363 4412 intelide - ok
11:35:06.0379 4412 [ 3B514D27BFC4ACCB4037BC6685F766E0 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
11:35:06.0379 4412 intelppm - ok
11:35:06.0394 4412 [ ACB364B9075A45C0736E5C47BE5CAE19 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
11:35:06.0394 4412 IPBusEnum - ok
11:35:06.0410 4412 [ 709D1761D3B19A932FF0238EA6D50200 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
11:35:06.0410 4412 IpFilterDriver - ok
11:35:06.0441 4412 [ 58F67245D041FBE7AF88F4EAF79DF0FA ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
11:35:06.0457 4412 iphlpsvc - ok
11:35:06.0472 4412 [ 4BD7134618C1D2A27466A099062547BF ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
11:35:06.0488 4412 IPMIDRV - ok
11:35:06.0519 4412 [ A5FA468D67ABCDAA36264E463A7BB0CD ] IPNAT C:\Windows\system32\drivers\ipnat.sys
11:35:06.0519 4412 IPNAT - ok
11:35:06.0535 4412 [ 42996CFF20A3084A56017B7902307E9F ] IRENUM C:\Windows\system32\drivers\irenum.sys
11:35:06.0535 4412 IRENUM - ok
11:35:06.0550 4412 [ 1F32BB6B38F62F7DF1A7AB7292638A35 ] isapnp C:\Windows\system32\drivers\isapnp.sys
11:35:06.0582 4412 isapnp - ok
11:35:06.0644 4412 [ CB7A9ABB12B8415BCE5D74994C7BA3AE ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
11:35:06.0660 4412 iScsiPrt - ok
11:35:06.0691 4412 [ ADEF52CA1AEAE82B50DF86B56413107E ] kbdclass C:\Windows\system32\drivers\kbdclass.sys
11:35:06.0707 4412 kbdclass - ok
11:35:06.0722 4412 [ 9E3CED91863E6EE98C24794D05E27A71 ] kbdhid C:\Windows\system32\drivers\kbdhid.sys
11:35:06.0738 4412 kbdhid - ok
11:35:06.0754 4412 [ 81951F51E318AECC2D68559E47485CC4 ] KeyIso C:\Windows\system32\lsass.exe
11:35:06.0754 4412 KeyIso - ok
11:35:06.0785 4412 [ B7895B4182C0D16F6EFADEB8081E8D36 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
11:35:06.0785 4412 KSecDD - ok
11:35:06.0800 4412 [ D30159AC9237519FBC62C6EC247D2D46 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
11:35:06.0800 4412 KSecPkg - ok
11:35:06.0832 4412 [ 89A7B9CC98D0D80C6F31B91C0A310FCD ] KtmRm C:\Windows\system32\msdtckrm.dll
11:35:06.0832 4412 KtmRm - ok
11:35:06.0847 4412 [ D64AF876D53ECA3668BB97B51B4E70AB ] LanmanServer C:\Windows\system32\srvsvc.dll
11:35:06.0847 4412 LanmanServer - ok
11:35:06.0879 4412 [ 58405E4F68BA8E4057C6E914F326ABA2 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
11:35:06.0879 4412 LanmanWorkstation - ok
11:35:06.0879 4412 [ F7611EC07349979DA9B0AE1F18CCC7A6 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
11:35:06.0894 4412 lltdio - ok
11:35:06.0910 4412 [ 5700673E13A2117FA3B9020C852C01E2 ] lltdsvc C:\Windows\System32\lltdsvc.dll
11:35:06.0910 4412 lltdsvc - ok
11:35:06.0910 4412 [ 55CA01BA19D0006C8F2639B6C045E08B ] lmhosts C:\Windows\System32\lmhsvc.dll
11:35:06.0925 4412 lmhosts - ok
11:35:06.0941 4412 [ EB119A53CCF2ACC000AC71B065B78FEF ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys
11:35:06.0957 4412 LSI_FC - ok
11:35:06.0972 4412 [ 8ADE1C877256A22E49B75D1CC9161F9C ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys
11:35:06.0988 4412 LSI_SAS - ok
11:35:06.0988 4412 [ DC9DC3D3DAA0E276FD2EC262E38B11E9 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys
11:35:06.0988 4412 LSI_SAS2 - ok
11:35:07.0004 4412 [ 0A036C7D7CAB643A7F07135AC47E0524 ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys
11:35:07.0004 4412 LSI_SCSI - ok
11:35:07.0019 4412 [ 6703E366CC18D3B6E534F5CF7DF39CEE ] luafv C:\Windows\system32\drivers\luafv.sys
11:35:07.0019 4412 luafv - ok
11:35:07.0050 4412 [ BFB9EE8EE977EFE85D1A3105ABEF6DD1 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
11:35:07.0050 4412 Mcx2Svc - ok
11:35:07.0066 4412 [ 0FFF5B045293002AB38EB1FD1FC2FB74 ] megasas C:\Windows\system32\DRIVERS\megasas.sys
11:35:07.0097 4412 megasas - ok
11:35:07.0097 4412 [ DCBAB2920C75F390CAF1D29F675D03D6 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys
11:35:07.0113 4412 MegaSR - ok
11:35:07.0175 4412 [ FAFE367D032ED82E9332B4C741A20216 ] Microsoft Office Groove Audit Service C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe
11:35:07.0175 4412 Microsoft Office Groove Audit Service - ok
11:35:07.0191 4412 [ 146B6F43A673379A3C670E86D89BE5EA ] MMCSS C:\Windows\system32\mmcss.dll
11:35:07.0191 4412 MMCSS - ok
11:35:07.0207 4412 [ F001861E5700EE84E2D4E52C712F4964 ] Modem C:\Windows\system32\drivers\modem.sys
11:35:07.0207 4412 Modem - ok
11:35:07.0207 4412 [ 79D10964DE86B292320E9DFE02282A23 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
11:35:07.0207 4412 monitor - ok
11:35:07.0238 4412 [ FB18CC1D4C2E716B6B903B0AC0CC0609 ] mouclass C:\Windows\system32\drivers\mouclass.sys
11:35:07.0254 4412 mouclass - ok
11:35:07.0269 4412 [ 2C388D2CD01C9042596CF3C8F3C7B24D ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
11:35:07.0285 4412 mouhid - ok
11:35:07.0300 4412 [ FC8771F45ECCCFD89684E38842539B9B ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
11:35:07.0300 4412 mountmgr - ok
11:35:07.0347 4412 [ 51A84B690DF519DCF656F780243D953E ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
11:35:07.0347 4412 MozillaMaintenance - ok
11:35:07.0379 4412 [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0 ] mpio C:\Windows\system32\drivers\mpio.sys
11:35:07.0410 4412 mpio - ok
11:35:07.0425 4412 [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
11:35:07.0425 4412 mpsdrv - ok
11:35:07.0457 4412 [ 9835584E999D25004E1EE8E5F3E3B881 ] MpsSvc C:\Windows\system32\mpssvc.dll
11:35:07.0457 4412 MpsSvc - ok
11:35:07.0488 4412 [ CEB46AB7C01C9F825F8CC6BABC18166A ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
11:35:07.0504 4412 MRxDAV - ok
11:35:07.0535 4412 [ 5D16C921E3671636C0EBA3BBAAC5FD25 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
11:35:07.0550 4412 mrxsmb - ok
11:35:07.0566 4412 [ 6D17A4791ACA19328C685D256349FEFC ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
11:35:07.0566 4412 mrxsmb10 - ok
11:35:07.0582 4412 [ B81F204D146000BE76651A50670A5E9E ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
11:35:07.0582 4412 mrxsmb20 - ok
11:35:07.0582 4412 [ 012C5F4E9349E711E11E0F19A8589F0A ] msahci C:\Windows\system32\drivers\msahci.sys
11:35:07.0582 4412 msahci - ok
11:35:07.0597 4412 [ 55055F8AD8BE27A64C831322A780A228 ] msdsm C:\Windows\system32\drivers\msdsm.sys
11:35:07.0613 4412 msdsm - ok
11:35:07.0629 4412 [ E1BCE74A3BD9902B72599C0192A07E27 ] MSDTC C:\Windows\System32\msdtc.exe
11:35:07.0629 4412 MSDTC - ok
11:35:07.0644 4412 [ DAEFB28E3AF5A76ABCC2C3078C07327F ] Msfs C:\Windows\system32\drivers\Msfs.sys
11:35:07.0660 4412 Msfs - ok
11:35:07.0675 4412 [ 3E1E5767043C5AF9367F0056295E9F84 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
11:35:07.0691 4412 mshidkmdf - ok
11:35:07.0722 4412 [ 0A4E5757AE09FA9622E3158CC1AEF114 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
11:35:07.0738 4412 msisadrv - ok
11:35:07.0769 4412 [ 90F7D9E6B6F27E1A707D4A297F077828 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
11:35:07.0769 4412 MSiSCSI - ok
11:35:07.0769 4412 msiserver - ok
11:35:07.0769 4412 [ 8C0860D6366AAFFB6C5BB9DF9448E631 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
11:35:07.0769 4412 MSKSSRV - ok
11:35:07.0785 4412 [ 3EA8B949F963562CEDBB549EAC0C11CE ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
11:35:07.0800 4412 MSPCLOCK - ok
11:35:07.0816 4412 [ F456E973590D663B1073E9C463B40932 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
11:35:07.0816 4412 MSPQM - ok
11:35:07.0832 4412 [ 0E008FC4819D238C51D7C93E7B41E560 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
11:35:07.0832 4412 MsRPC - ok
11:35:07.0832 4412 [ FC6B9FF600CC585EA38B12589BD4E246 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys
11:35:07.0847 4412 mssmbios - ok
11:35:07.0863 4412 [ B42C6B921F61A6E55159B8BE6CD54A36 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
11:35:07.0863 4412 MSTEE - ok
11:35:07.0879 4412 [ 33599130F44E1F34631CEA241DE8AC84 ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys
11:35:07.0879 4412 MTConfig - ok
11:35:07.0879 4412 [ 159FAD02F64E6381758C990F753BCC80 ] Mup C:\Windows\system32\Drivers\mup.sys
11:35:07.0879 4412 Mup - ok
11:35:07.0894 4412 [ 61D57A5D7C6D9AFE10E77DAE6E1B445E ] napagent C:\Windows\system32\qagentRT.dll
11:35:07.0894 4412 napagent - ok
11:35:07.0910 4412 [ 26384429FCD85D83746F63E798AB1480 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
11:35:07.0925 4412 NativeWifiP - ok
11:35:08.0004 4412 [ 6D8FCDD5BB3B676EF58FA234073492C6 ] NBService C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
11:35:08.0019 4412 NBService - ok
11:35:08.0050 4412 [ 8C9C922D71F1CD4DEF73F186416B7896 ] NDIS C:\Windows\system32\drivers\ndis.sys
11:35:08.0066 4412 NDIS - ok
11:35:08.0082 4412 [ 0E1787AA6C9191D3D319E8BAFE86F80C ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
11:35:08.0082 4412 NdisCap - ok
11:35:08.0097 4412 [ E4A8AEC125A2E43A9E32AFEEA7C9C888 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
11:35:08.0097 4412 NdisTapi - ok
11:35:08.0113 4412 [ D8A65DAFB3EB41CBB622745676FCD072 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
11:35:08.0129 4412 Ndisuio - ok
11:35:08.0160 4412 [ 38FBE267E7E6983311179230FACB1017 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
11:35:08.0175 4412 NdisWan - ok
11:35:08.0191 4412 [ A4BDC541E69674FBFF1A8FF00BE913F2 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
11:35:08.0207 4412 NDProxy - ok
11:35:08.0238 4412 [ 80B275B1CE3B0E79909DB7B39AF74D51 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
11:35:08.0238 4412 NetBIOS - ok
11:35:08.0269 4412 [ 280122DDCF04B378EDD1AD54D71C1E54 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
11:35:08.0269 4412 NetBT - ok
11:35:08.0285 4412 [ 81951F51E318AECC2D68559E47485CC4 ] Netlogon C:\Windows\system32\lsass.exe
11:35:08.0285 4412 Netlogon - ok
11:35:08.0300 4412 [ 7CCCFCA7510684768DA22092D1FA4DB2 ] Netman C:\Windows\System32\netman.dll
11:35:08.0316 4412 Netman - ok
11:35:08.0332 4412 [ 8C338238C16777A802D6A9211EB2BA50 ] netprofm C:\Windows\System32\netprofm.dll
11:35:08.0332 4412 netprofm - ok
11:35:08.0363 4412 [ F476EC40033CDB91EFBE73EB99B8362D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
11:35:08.0363 4412 NetTcpPortSharing - ok
11:35:08.0363 4412 [ 1D85C4B390B0EE09C7A46B91EFB2C097 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys
11:35:08.0394 4412 nfrd960 - ok
11:35:08.0410 4412 [ 374071043F9E4231EE43BE2BB48DD36D ] NlaSvc C:\Windows\System32\nlasvc.dll
11:35:08.0425 4412 NlaSvc - ok
11:35:08.0457 4412 [ 060DAF68493AD7ADF104413E5A62AFA8 ] NMIndexingService C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
11:35:08.0472 4412 NMIndexingService - ok
11:35:08.0472 4412 [ 1DB262A9F8C087E8153D89BEF3D2235F ] Npfs C:\Windows\system32\drivers\Npfs.sys
11:35:08.0472 4412 Npfs - ok
11:35:08.0488 4412 [ BA387E955E890C8A88306D9B8D06BF17 ] nsi C:\Windows\system32\nsisvc.dll
11:35:08.0488 4412 nsi - ok
11:35:08.0488 4412 [ E9A0A4D07E53D8FEA2BB8387A3293C58 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
11:35:08.0519 4412 nsiproxy - ok
11:35:08.0566 4412 [ 0D87503986BB3DFED58E343FE39DDE13 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
11:35:08.0566 4412 Ntfs - ok
11:35:08.0582 4412 [ F9756A98D69098DCA8945D62858A812C ] Null C:\Windows\system32\drivers\Null.sys
11:35:08.0582 4412 Null - ok
11:35:08.0613 4412 [ B3E25EE28883877076E0E1FF877D02E0 ] nvraid C:\Windows\system32\drivers\nvraid.sys
11:35:08.0629 4412 nvraid - ok
11:35:08.0660 4412 [ 4380E59A170D88C4F1022EFF6719A8A4 ] nvstor C:\Windows\system32\drivers\nvstor.sys
11:35:08.0691 4412 nvstor - ok
11:35:08.0707 4412 [ 5A0983915F02BAE73267CC2A041F717D ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
11:35:08.0722 4412 nv_agp - ok
11:35:08.0769 4412 [ 84DE1DD996B48B05ACE31AD015FA108A ] odserv C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
11:35:08.0769 4412 odserv - ok
11:35:08.0800 4412 [ 08A70A1F2CDDE9BB49B885CB817A66EB ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
11:35:08.0800 4412 ohci1394 - ok
11:35:08.0816 4412 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
11:35:08.0816 4412 ose - ok
11:35:08.0847 4412 [ 82A8521DDC60710C3D3D3E7325209BEC ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
11:35:08.0863 4412 p2pimsvc - ok
11:35:08.0863 4412 [ 59C3DDD501E39E006DAC31BF55150D91 ] p2psvc C:\Windows\system32\p2psvc.dll
11:35:08.0879 4412 p2psvc - ok
11:35:08.0894 4412 [ 2EA877ED5DD9713C5AC74E8EA7348D14 ] Parport C:\Windows\system32\DRIVERS\parport.sys
11:35:08.0910 4412 Parport - ok
11:35:08.0925 4412 [ 3F34A1B4C5F6475F320C275E63AFCE9B ] partmgr C:\Windows\system32\drivers\partmgr.sys
11:35:08.0925 4412 partmgr - ok
11:35:08.0941 4412 [ EB0A59F29C19B86479D36B35983DAADC ] Parvdm C:\Windows\system32\DRIVERS\parvdm.sys
11:35:08.0941 4412 Parvdm - ok
11:35:08.0957 4412 [ 358AB7956D3160000726574083DFC8A6 ] PcaSvc C:\Windows\System32\pcasvc.dll
11:35:08.0957 4412 PcaSvc - ok
11:35:08.0972 4412 [ 673E55C3498EB970088E812EA820AA8F ] pci C:\Windows\system32\drivers\pci.sys
11:35:08.0972 4412 pci - ok
11:35:09.0004 4412 [ AFE86F419014DB4E5593F69FFE26CE0A ] pciide C:\Windows\system32\drivers\pciide.sys
11:35:09.0004 4412 pciide - ok
11:35:09.0019 4412 [ F396431B31693E71E8A80687EF523506 ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys
11:35:09.0035 4412 pcmcia - ok
11:35:09.0050 4412 [ 250F6B43D2B613172035C6747AEEB19F ] pcw C:\Windows\system32\drivers\pcw.sys
11:35:09.0066 4412 pcw - ok
11:35:09.0082 4412 [ 9E0104BA49F4E6973749A02BF41344ED ] PEAUTH C:\Windows\system32\drivers\peauth.sys
11:35:09.0082 4412 PEAUTH - ok
11:35:09.0144 4412 [ 414BBA67A3DED1D28437EB66AEB8A720 ] pla C:\Windows\system32\pla.dll
11:35:09.0160 4412 pla - ok
11:35:09.0175 4412 [ EC7BC28D207DA09E79B3E9FAF8B232CA ] PlugPlay C:\Windows\system32\umpnpmgr.dll
11:35:09.0191 4412 PlugPlay - ok
11:35:09.0222 4412 [ 205E1B699FD3F2F9B036EEA2EC30C620 ] PnkBstrA C:\Windows\system32\PnkBstrA.exe
11:35:09.0222 4412 PnkBstrA - ok
11:35:09.0238 4412 [ 63FF8572611249931EB16BB8EED6AFC8 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
11:35:09.0238 4412 PNRPAutoReg - ok
11:35:09.0254 4412 [ 82A8521DDC60710C3D3D3E7325209BEC ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
11:35:09.0254 4412 PNRPsvc - ok
11:35:09.0285 4412 [ 3F1110901DA07CC428710460276E28A0 ] PolarUSB C:\Windows\system32\DRIVERS\PolarUSB.sys
11:35:09.0300 4412 PolarUSB - ok
11:35:09.0300 4412 [ 53946B69BA0836BD95B03759530C81EC ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
11:35:09.0316 4412 PolicyAgent - ok
11:35:09.0332 4412 [ F87D30E72E03D579A5199CCB3831D6EA ] Power C:\Windows\system32\umpo.dll
11:35:09.0332 4412 Power - ok
11:35:09.0347 4412 [ 631E3E205AD6D86F2AED6A4A8E69F2DB ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
11:35:09.0347 4412 PptpMiniport - ok
11:35:09.0363 4412 [ 85B1E3A0C7585BC4AAE6899EC6FCF011 ] Processor C:\Windows\system32\DRIVERS\processr.sys
11:35:09.0363 4412 Processor - ok
11:35:09.0379 4412 [ CADEFAC453040E370A1BDFF3973BE00D ] ProfSvc C:\Windows\system32\profsvc.dll
11:35:09.0379 4412 ProfSvc - ok
11:35:09.0394 4412 [ 81951F51E318AECC2D68559E47485CC4 ] ProtectedStorage C:\Windows\system32\lsass.exe
11:35:09.0394 4412 ProtectedStorage - ok
11:35:09.0425 4412 [ 6270CCAE2A86DE6D146529FE55B3246A ] Psched C:\Windows\system32\DRIVERS\pacer.sys
11:35:09.0425 4412 Psched - ok
11:35:09.0457 4412 [ AB95ECF1F6659A60DDC166D8315B0751 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys
11:35:09.0457 4412 ql2300 - ok
11:35:09.0472 4412 [ B4DD51DD25182244B86737DC51AF2270 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys
11:35:09.0472 4412 ql40xx - ok
11:35:09.0488 4412 [ 31AC809E7707EB580B2BDB760390765A ] QWAVE C:\Windows\system32\qwave.dll
11:35:09.0504 4412 QWAVE - ok
11:35:09.0519 4412 [ 584078CA1B95CA72DF2A27C336F9719D ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
11:35:09.0519 4412 QWAVEdrv - ok
11:35:09.0519 4412 [ 30A81B53C766D0133BB86D234E5556AB ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
11:35:09.0519 4412 RasAcd - ok
11:35:09.0550 4412 [ 57EC4AEF73660166074D8F7F31C0D4FD ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
11:35:09.0566 4412 RasAgileVpn - ok
11:35:09.0582 4412 [ A60F1839849C0C00739787FD5EC03F13 ] RasAuto C:\Windows\System32\rasauto.dll
11:35:09.0582 4412 RasAuto - ok
11:35:09.0582 4412 [ D9F91EAFEC2815365CBE6D167E4E332A ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
11:35:09.0582 4412 Rasl2tp - ok
11:35:09.0629 4412 [ CB9E04DC05EACF5B9A36CA276D475006 ] RasMan C:\Windows\System32\rasmans.dll
11:35:09.0629 4412 RasMan - ok
11:35:09.0644 4412 [ 0FE8B15916307A6AC12BFB6A63E45507 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
11:35:09.0644 4412 RasPppoe - ok
11:35:09.0660 4412 [ 44101F495A83EA6401D886E7FD70096B ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
11:35:09.0660 4412 RasSstp - ok
11:35:09.0691 4412 [ D528BC58A489409BA40334EBF96A311B ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
11:35:09.0691 4412 rdbss - ok
11:35:09.0691 4412 [ 0D8F05481CB76E70E1DA06EE9F0DA9DF ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
11:35:09.0722 4412 rdpbus - ok
11:35:09.0738 4412 [ 23DAE03F29D253AE74C44F99E515F9A1 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
11:35:09.0738 4412 RDPCDD - ok
11:35:09.0754 4412 [ 5A53CA1598DD4156D44196D200C94B8A ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
11:35:09.0785 4412 RDPENCDD - ok
11:35:09.0785 4412 [ 44B0A53CD4F27D50ED461DAE0C0B4E1F ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
11:35:09.0785 4412 RDPREFMP - ok
11:35:09.0816 4412 [ F031683E6D1FEA157ABB2FF260B51E61 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
11:35:09.0816 4412 RDPWD - ok
11:35:09.0847 4412 [ 518395321DC96FE2C9F0E96AC743B656 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
11:35:09.0863 4412 rdyboost - ok
11:35:09.0879 4412 [ 7B5E1419717FAC363A31CC302895217A ] RemoteAccess C:\Windows\System32\mprdim.dll
11:35:09.0894 4412 RemoteAccess - ok
11:35:09.0894 4412 [ CB9A8683F4EF2BF99E123D79950D7935 ] RemoteRegistry C:\Windows\system32\regsvc.dll
11:35:09.0910 4412 RemoteRegistry - ok
11:35:09.0910 4412 [ 78D072F35BC45D9E4E1B61895C152234 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
11:35:09.0925 4412 RpcEptMapper - ok
11:35:09.0941 4412 [ 94D36C0E44677DD26981D2BFEEF2A29D ] RpcLocator C:\Windows\system32\locator.exe
11:35:09.0941 4412 RpcLocator - ok
11:35:09.0957 4412 [ 7660F01D3B38ACA1747E397D21D790AF ] RpcSs C:\Windows\system32\rpcss.dll
11:35:09.0957 4412 RpcSs - ok
11:35:09.0972 4412 [ 032B0D36AD92B582D869879F5AF5B928 ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
11:35:10.0019 4412 rspndr - ok
11:35:10.0050 4412 [ 3983CEA05BB855351D75F5482B6C42CE ] RTL8167 C:\Windows\system32\DRIVERS\Rt86win7.sys
11:35:10.0050 4412 RTL8167 - ok
11:35:10.0050 4412 [ 81951F51E318AECC2D68559E47485CC4 ] SamSs C:\Windows\system32\lsass.exe
11:35:10.0050 4412 SamSs - ok
11:35:10.0097 4412 [ 05D860DA1040F111503AC416CCEF2BCA ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
11:35:10.0113 4412 sbp2port - ok
11:35:10.0129 4412 [ 8FC518FFE9519C2631D37515A68009C4 ] SCardSvr C:\Windows\System32\SCardSvr.dll
11:35:10.0129 4412 SCardSvr - ok
11:35:10.0129 4412 [ 0693B5EC673E34DC147E195779A4DCF6 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
11:35:10.0129 4412 scfilter - ok
11:35:10.0175 4412 [ A04BB13F8A72F8B6E8B4071723E4E336 ] Schedule C:\Windows\system32\schedsvc.dll
11:35:10.0175 4412 Schedule - ok
11:35:10.0191 4412 [ 319C6B309773D063541D01DF8AC6F55F ] SCPolicySvc C:\Windows\System32\certprop.dll
11:35:10.0191 4412 SCPolicySvc - ok
11:35:10.0207 4412 [ 08236C4BCE5EDD0A0318A438AF28E0F7 ] SDRSVC C:\Windows\System32\SDRSVC.dll
11:35:10.0207 4412 SDRSVC - ok
11:35:10.0222 4412 [ 90A3935D05B494A5A39D37E71F09A677 ] secdrv C:\Windows\system32\drivers\secdrv.sys
11:35:10.0222 4412 secdrv - ok
11:35:10.0238 4412 [ A59B3A4442C52060CC7A85293AA3546F ] seclogon C:\Windows\system32\seclogon.dll
11:35:10.0238 4412 seclogon - ok
11:35:10.0269 4412 [ DCB7FCDCC97F87360F75D77425B81737 ] SENS C:\Windows\System32\sens.dll
11:35:10.0269 4412 SENS - ok
11:35:10.0285 4412 [ 50087FE1EE447009C9CC2997B90DE53F ] SensrSvc C:\Windows\system32\sensrsvc.dll
11:35:10.0285 4412 SensrSvc - ok
11:35:10.0316 4412 [ 9AD8B8B515E3DF6ACD4212EF465DE2D1 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
11:35:10.0332 4412 Serenum - ok
11:35:10.0379 4412 [ 5FB7FCEA0490D821F26F39CC5EA3D1E2 ] Serial C:\Windows\system32\DRIVERS\serial.sys
11:35:10.0379 4412 Serial - ok
11:35:10.0379 4412 [ 79BFFB520327FF916A582DFEA17AA813 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys
11:35:10.0410 4412 sermouse - ok
11:35:10.0441 4412 [ 4AE380F39A0032EAB7DD953030B26D28 ] SessionEnv C:\Windows\system32\sessenv.dll
11:35:10.0441 4412 SessionEnv - ok
11:35:10.0457 4412 [ 9F976E1EB233DF46FCE808D9DEA3EB9C ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
11:35:10.0472 4412 sffdisk - ok
11:35:10.0472 4412 [ 932A68EE27833CFD57C1639D375F2731 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
11:35:10.0488 4412 sffp_mmc - ok
11:35:10.0488 4412 [ 6D4CCAEDC018F1CF52866BBBAA235982 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
11:35:10.0504 4412 sffp_sd - ok
11:35:10.0504 4412 [ DB96666CC8312EBC45032F30B007A547 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys
11:35:10.0504 4412 sfloppy - ok
11:35:10.0519 4412 [ D1A079A0DE2EA524513B6930C24527A2 ] SharedAccess C:\Windows\System32\ipnathlp.dll
11:35:10.0535 4412 SharedAccess - ok
11:35:10.0550 4412 [ 414DA952A35BF5D50192E28263B40577 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
11:35:10.0550 4412 ShellHWDetection - ok
11:35:10.0566 4412 [ 2565CAC0DC9FE0371BDCE60832582B2E ] sisagp C:\Windows\system32\drivers\sisagp.sys
11:35:10.0582 4412 sisagp - ok
11:35:10.0597 4412 [ A9F0486851BECB6DDA1D89D381E71055 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys
11:35:10.0613 4412 SiSRaid2 - ok
11:35:10.0629 4412 [ 3727097B55738E2F554972C3BE5BC1AA ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys
11:35:10.0629 4412 SiSRaid4 - ok
11:35:10.0644 4412 [ 3E21C083B8A01CB70BA1F09303010FCE ] Smb C:\Windows\system32\DRIVERS\smb.sys
11:35:10.0644 4412 Smb - ok
11:35:10.0660 4412 [ 6A984831644ECA1A33FFEAE4126F4F37 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
11:35:10.0660 4412 SNMPTRAP - ok
11:35:10.0660 4412 [ 95CF1AE7527FB70F7816563CBC09D942 ] spldr C:\Windows\system32\drivers\spldr.sys
11:35:10.0660 4412 spldr - ok
11:35:10.0691 4412 [ 9AEA093B8F9C37CF45538382CABA2475 ] Spooler C:\Windows\System32\spoolsv.exe
11:35:10.0691 4412 Spooler - ok
11:35:10.0769 4412 [ CF87A1DE791347E75B98885214CED2B8 ] sppsvc C:\Windows\system32\sppsvc.exe
11:35:10.0785 4412 sppsvc - ok
11:35:10.0816 4412 [ B0180B20B065D89232A78A40FE56EAA6 ] sppuinotify C:\Windows\system32\sppuinotify.dll
11:35:10.0816 4412 sppuinotify - ok
11:35:10.0832 4412 [ E4C2764065D66EA1D2D3EBC28FE99C46 ] srv C:\Windows\system32\DRIVERS\srv.sys
11:35:10.0832 4412 srv - ok
11:35:10.0847 4412 [ 03F0545BD8D4C77FA0AE1CEEDFCC71AB ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
11:35:10.0847 4412 srv2 - ok
11:35:10.0863 4412 [ BE6BD660CAA6F291AE06A718A4FA8ABC ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
11:35:10.0894 4412 srvnet - ok
11:35:10.0925 4412 [ D887C9FD02AC9FA880F6E5027A43E118 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
11:35:10.0925 4412 SSDPSRV - ok
11:35:10.0941 4412 [ D318F23BE45D5E3A107469EB64815B50 ] SstpSvc C:\Windows\system32\sstpsvc.dll
11:35:10.0941 4412 SstpSvc - ok
11:35:10.0957 4412 [ DB32D325C192B801DF274BFD12A7E72B ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys
11:35:10.0972 4412 stexstor - ok
11:35:11.0004 4412 [ E1FB3706030FB4578A0D72C2FC3689E4 ] StiSvc C:\Windows\System32\wiaservc.dll
11:35:11.0019 4412 StiSvc - ok
11:35:11.0035 4412 [ E58C78A848ADD9610A4DB6D214AF5224 ] swenum C:\Windows\system32\drivers\swenum.sys
11:35:11.0035 4412 swenum - ok
11:35:11.0050 4412 [ A28BD92DF340E57B024BA433165D34D7 ] swprv C:\Windows\System32\swprv.dll
11:35:11.0066 4412 swprv - ok
11:35:11.0097 4412 [ 36650D618CA34C9D357DFD3D89B2C56F ] SysMain C:\Windows\system32\sysmain.dll
11:35:11.0113 4412 SysMain - ok
11:35:11.0144 4412 [ 763FECDC3D30C815FE72DD57936C6CD1 ] TabletInputService C:\Windows\System32\TabSvc.dll
11:35:11.0144 4412 TabletInputService - ok
11:35:11.0175 4412 [ 613BF4820361543956909043A265C6AC ] TapiSrv C:\Windows\System32\tapisrv.dll
11:35:11.0175 4412 TapiSrv - ok
11:35:11.0191 4412 [ B799D9FDB26111737F58288D8DC172D9 ] TBS C:\Windows\System32\tbssvc.dll
11:35:11.0191 4412 TBS - ok
11:35:11.0254 4412 [ 7C0507D2391AF5933600CBCED799F277 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
11:35:11.0269 4412 Tcpip - ok
11:35:11.0300 4412 [ 7C0507D2391AF5933600CBCED799F277 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
11:35:11.0300 4412 TCPIP6 - ok
11:35:11.0316 4412 [ 3EEBD3BD93DA46A26E89893C7AB2FF3B ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
11:35:11.0316 4412 tcpipreg - ok
11:35:11.0332 4412 [ 1CB91B2BD8F6DD367DFC2EF26FD751B2 ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
11:35:11.0347 4412 TDPIPE - ok
11:35:11.0379 4412 [ 2C2C5AFE7EE4F620D69C23C0617651A8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
11:35:11.0394 4412 TDTCP - ok
11:35:11.0425 4412 [ B459575348C20E8121D6039DA063C704 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
11:35:11.0457 4412 tdx - ok
11:35:11.0472 4412 [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20 ] TermDD C:\Windows\system32\drivers\termdd.sys
11:35:11.0488 4412 TermDD - ok
11:35:11.0519 4412 [ 382C804C92811BE57829D8E550A900E2 ] TermService C:\Windows\System32\termsrv.dll
11:35:11.0519 4412 TermService - ok
11:35:11.0535 4412 [ 42FB6AFD6B79D9FE07381609172E7CA4 ] Themes C:\Windows\system32\themeservice.dll
11:35:11.0535 4412 Themes - ok
11:35:11.0550 4412 [ 146B6F43A673379A3C670E86D89BE5EA ] THREADORDER C:\Windows\system32\mmcss.dll
11:35:11.0550 4412 THREADORDER - ok
11:35:11.0566 4412 [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A ] TrkWks C:\Windows\System32\trkwks.dll
11:35:11.0582 4412 TrkWks - ok
11:35:11.0644 4412 [ 2C49B175AEE1D4364B91B531417FE583 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
11:35:11.0644 4412 TrustedInstaller - ok
11:35:11.0660 4412 [ 254BB140EEE3C59D6114C1A86B636877 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
11:35:11.0707 4412 tssecsrv - ok
11:35:11.0738 4412 [ FD1D6C73E6333BE727CBCC6054247654 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
11:35:11.0738 4412 TsUsbFlt - ok
11:35:11.0769 4412 [ B2FA25D9B17A68BB93D58B0556E8C90D ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
11:35:11.0769 4412 tunnel - ok
11:35:11.0800 4412 [ 750FBCB269F4D7DD2E420C56B795DB6D ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys
11:35:11.0800 4412 uagp35 - ok
11:35:11.0816 4412 [ EE43346C7E4B5E63E54F927BABBB32FF ] udfs C:\Windows\system32\DRIVERS\udfs.sys
11:35:11.0847 4412 udfs - ok
11:35:11.0863 4412 [ 8344FD4FCE927880AA1AA7681D4927E5 ] UI0Detect C:\Windows\system32\UI0Detect.exe
11:35:11.0863 4412 UI0Detect - ok
11:35:11.0894 4412 [ 44E8048ACE47BEFBFDC2E9BE4CBC8880 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
11:35:11.0910 4412 uliagpkx - ok
11:35:11.0941 4412 [ D295BED4B898F0FD999FCFA9B32B071B ] umbus C:\Windows\system32\DRIVERS\umbus.sys
11:35:11.0957 4412 umbus - ok
11:35:11.0972 4412 [ 7550AD0C6998BA1CB4843E920EE0FEAC ] UmPass C:\Windows\system32\DRIVERS\umpass.sys
11:35:11.0972 4412 UmPass - ok
11:35:11.0988 4412 [ 833FBB672460EFCE8011D262175FAD33 ] upnphost C:\Windows\System32\upnphost.dll
11:35:11.0988 4412 upnphost - ok
11:35:12.0004 4412 [ BD9C55D7023C5DE374507ACC7A14E2AC ] usbccgp C:\Windows\system32\drivers\usbccgp.sys
11:35:12.0004 4412 usbccgp - ok
11:35:12.0035 4412 [ 04EC7CEC62EC3B6D9354EEE93327FC82 ] usbcir C:\Windows\system32\drivers\usbcir.sys
11:35:12.0035 4412 usbcir - ok
11:35:12.0050 4412 [ F92DE757E4B7CE9C07C5E65423F3AE3B ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
11:35:12.0066 4412 usbehci - ok
11:35:12.0082 4412 [ 8DC94AEC6A7E644A06135AE7506DC2E9 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
11:35:12.0082 4412 usbhub - ok
11:35:12.0082 4412 [ E185D44FAC515A18D9DEDDC23C2CDF44 ] usbohci C:\Windows\system32\drivers\usbohci.sys
11:35:12.0097 4412 usbohci - ok
11:35:12.0097 4412 [ 797D862FE0875E75C7CC4C1AD7B30252 ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
11:35:12.0113 4412 usbprint - ok
11:35:12.0113 4412 [ F991AB9CC6B908DB552166768176896A ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
11:35:12.0129 4412 USBSTOR - ok
11:35:12.0144 4412 [ 68DF884CF41CDADA664BEB01DAF67E3D ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys
11:35:12.0144 4412 usbuhci - ok
11:35:12.0160 4412 [ 081E6E1C91AEC36758902A9F727CD23C ] UxSms C:\Windows\System32\uxsms.dll
11:35:12.0160 4412 UxSms - ok
11:35:12.0160 4412 [ 81951F51E318AECC2D68559E47485CC4 ] VaultSvc C:\Windows\system32\lsass.exe
11:35:12.0175 4412 VaultSvc - ok
11:35:12.0175 4412 [ A059C4C3EDB09E07D21A8E5C0AABD3CB ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
11:35:12.0175 4412 vdrvroot - ok
11:35:12.0207 4412 [ C3CD30495687C2A2F66A65CA6FD89BE9 ] vds C:\Windows\System32\vds.exe
11:35:12.0207 4412 vds - ok
11:35:12.0238 4412 [ 17C408214EA61696CEC9C66E388B14F3 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
11:35:12.0238 4412 vga - ok
11:35:12.0238 4412 [ 8E38096AD5C8570A6F1570A61E251561 ] VgaSave C:\Windows\System32\drivers\vga.sys
11:35:12.0238 4412 VgaSave - ok
11:35:12.0238 4412 [ 5461686CCA2FDA57B024547733AB42E3 ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
11:35:12.0269 4412 vhdmp - ok
11:35:12.0269 4412 [ C829317A37B4BEA8F39735D4B076E923 ] viaagp C:\Windows\system32\drivers\viaagp.sys
11:35:12.0285 4412 viaagp - ok
11:35:12.0316 4412 [ E02F079A6AA107F06B16549C6E5C7B74 ] ViaC7 C:\Windows\system32\DRIVERS\viac7.sys
11:35:12.0316 4412 ViaC7 - ok
11:35:12.0316 4412 [ E43574F6A56A0EE11809B48C09E4FD3C ] viaide C:\Windows\system32\drivers\viaide.sys
11:35:12.0316 4412 viaide - ok
11:35:12.0332 4412 [ 4C63E00F2F4B5F86AB48A58CD990F212 ] volmgr C:\Windows\system32\drivers\volmgr.sys
11:35:12.0363 4412 volmgr - ok
11:35:12.0394 4412 [ B5BB72067DDDDBBFB04B2F89FF8C3C87 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
11:35:12.0394 4412 volmgrx - ok
11:35:12.0410 4412 [ F497F67932C6FA693D7DE2780631CFE7 ] volsnap C:\Windows\system32\drivers\volsnap.sys
11:35:12.0441 4412 volsnap - ok
11:35:12.0457 4412 [ 9DFA0CC2F8855A04816729651175B631 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys
11:35:12.0457 4412 vsmraid - ok
11:35:12.0504 4412 [ 209A3B1901B83AEB8527ED211CCE9E4C ] VSS C:\Windows\system32\vssvc.exe
11:35:12.0504 4412 VSS - ok
11:35:12.0519 4412 [ 90567B1E658001E79D7C8BBD3DDE5AA6 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys
11:35:12.0519 4412 vwifibus - ok
11:35:12.0535 4412 [ 55187FD710E27D5095D10A472C8BAF1C ] W32Time C:\Windows\system32\w32time.dll
11:35:12.0535 4412 W32Time - ok
11:35:12.0535 4412 [ DE3721E89C653AA281428C8A69745D90 ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys
11:35:12.0550 4412 WacomPen - ok
11:35:12.0550 4412 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
11:35:12.0566 4412 WANARP - ok
11:35:12.0582 4412 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
11:35:12.0582 4412 Wanarpv6 - ok
11:35:12.0629 4412 [ 353A04C273EC58475D8633E75CCD5604 ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
11:35:12.0644 4412 WatAdminSvc - ok
11:35:12.0675 4412 [ 691E3285E53DCA558E1A84667F13E15A ] wbengine C:\Windows\system32\wbengine.exe
11:35:12.0691 4412 wbengine - ok
11:35:12.0707 4412 [ 9614B5D29DC76AC3C29F6D2D3AA70E67 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
11:35:12.0707 4412 WbioSrvc - ok
11:35:12.0754 4412 [ 34EEE0DFAADB4F691D6D5308A51315DC ] wcncsvc C:\Windows\System32\wcncsvc.dll
11:35:12.0754 4412 wcncsvc - ok
11:35:12.0769 4412 [ 5D930B6357A6D2AF4D7653BDABBF352F ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
11:35:12.0769 4412 WcsPlugInService - ok
11:35:12.0769 4412 [ 1112A9BADACB47B7C0BB0392E3158DFF ] Wd C:\Windows\system32\DRIVERS\wd.sys
11:35:12.0785 4412 Wd - ok
11:35:12.0816 4412 [ A840213F1ACDCC175B4D1D5AAEAC0D7A ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
11:35:12.0816 4412 Wdf01000 - ok
11:35:12.0832 4412 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiServiceHost C:\Windows\system32\wdi.dll
11:35:12.0832 4412 WdiServiceHost - ok
11:35:12.0832 4412 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiSystemHost C:\Windows\system32\wdi.dll
11:35:12.0832 4412 WdiSystemHost - ok
11:35:12.0863 4412 [ A9D880F97530D5B8FEE278923349929D ] WebClient C:\Windows\System32\webclnt.dll
11:35:12.0863 4412 WebClient - ok
11:35:12.0879 4412 [ 760F0AFE937A77CFF27153206534F275 ] Wecsvc C:\Windows\system32\wecsvc.dll
11:35:12.0879 4412 Wecsvc - ok
11:35:12.0894 4412 [ AC804569BB2364FB6017370258A4091B ] wercplsupport C:\Windows\System32\wercplsupport.dll
11:35:12.0894 4412 wercplsupport - ok
11:35:12.0910 4412 [ 08E420D873E4FD85241EE2421B02C4A4 ] WerSvc C:\Windows\System32\WerSvc.dll
11:35:12.0910 4412 WerSvc - ok
11:35:12.0925 4412 [ 8B9A943F3B53861F2BFAF6C186168F79 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
11:35:12.0941 4412 WfpLwf - ok
11:35:12.0957 4412 [ 5CF95B35E59E2A38023836FFF31BE64C ] WIMMount C:\Windows\system32\drivers\wimmount.sys
11:35:12.0957 4412 WIMMount - ok
11:35:13.0004 4412 [ 3FAE8F94296001C32EAB62CD7D82E0FD ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll
11:35:13.0019 4412 WinDefend - ok
11:35:13.0019 4412 WinHttpAutoProxySvc - ok
11:35:13.0066 4412 [ F62E510B6AD4C21EB9FE8668ED251826 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
11:35:13.0066 4412 Winmgmt - ok
11:35:13.0113 4412 [ 1B91CD34EA3A90AB6A4EF0550174F4CC ] WinRM C:\Windows\system32\WsmSvc.dll
11:35:13.0129 4412 WinRM - ok
11:35:13.0175 4412 [ A67E5F9A400F3BD1BE3D80613B45F708 ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
11:35:13.0175 4412 WinUsb - ok
11:35:13.0207 4412 [ 16935C98FF639D185086A3529B1F2067 ] Wlansvc C:\Windows\System32\wlansvc.dll
11:35:13.0207 4412 Wlansvc - ok
11:35:13.0222 4412 [ 0217679B8FCA58714C3BF2726D2CA84E ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
11:35:13.0238 4412 WmiAcpi - ok
11:35:13.0254 4412 [ 6EB6B66517B048D87DC1856DDF1F4C3F ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
11:35:13.0254 4412 wmiApSrv - ok
11:35:13.0285 4412 [ 3B40D3A61AA8C21B88AE57C58AB3122E ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
11:35:13.0300 4412 WMPNetworkSvc - ok
11:35:13.0316 4412 [ A2F0EC770A92F2B3F9DE6D518E11409C ] WPCSvc C:\Windows\System32\wpcsvc.dll
11:35:13.0316 4412 WPCSvc - ok
11:35:13.0347 4412 [ AA53356D60AF47EACC85BC617A4F3F66 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
11:35:13.0347 4412 WPDBusEnum - ok
11:35:13.0347 4412 [ 6DB3276587B853BF886B69528FDB048C ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
11:35:13.0363 4412 ws2ifsl - ok
11:35:13.0379 4412 [ 6F5D49EFE0E7164E03AE773A3FE25340 ] wscsvc C:\Windows\System32\wscsvc.dll
11:35:13.0394 4412 wscsvc - ok
11:35:13.0394 4412 WSearch - ok
11:35:13.0441 4412 [ FC3EC24FCE372C89423E015A2AC1A31E ] wuauserv C:\Windows\system32\wuaueng.dll
11:35:13.0457 4412 wuauserv - ok
11:35:13.0472 4412 [ 06E6F32C8D0A3F66D956F57B43A2E070 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
11:35:13.0472 4412 WudfPf - ok
11:35:13.0504 4412 [ 867C301E8B790040AE9CF6486E8041DF ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
11:35:13.0504 4412 WUDFRd - ok
11:35:13.0519 4412 [ FE47B7BC8EA320C2D9B5E5BF6E303765 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
11:35:13.0535 4412 wudfsvc - ok
11:35:13.0535 4412 [ FF2D745B560F7C71B31F30F4D49F73D2 ] WwanSvc C:\Windows\System32\wwansvc.dll
11:35:13.0550 4412 WwanSvc - ok
11:34:44.0863 3536 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
11:34:45.0082 3536 ============================================================
11:34:45.0082 3536 Current date / time: 2013/02/17 11:34:45.0082
11:34:45.0082 3536 SystemInfo:
11:34:45.0082 3536
11:34:45.0082 3536 OS Version: 6.1.7601 ServicePack: 1.0
11:34:45.0082 3536 Product type: Workstation
11:34:45.0082 3536 ComputerName: USER-PC
11:34:45.0082 3536 UserName: user
11:34:45.0082 3536 Windows directory: C:\Windows
11:34:45.0082 3536 System windows directory: C:\Windows
11:34:45.0082 3536 Processor architecture: Intel x86
11:34:45.0082 3536 Number of processors: 4
11:34:45.0082 3536 Page size: 0x1000
11:34:45.0082 3536 Boot type: Normal boot
11:34:45.0082 3536 ============================================================
11:34:46.0004 3536 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
11:34:46.0004 3536 ============================================================
11:34:46.0004 3536 \Device\Harddisk0\DR0:
11:34:46.0004 3536 MBR partitions:
11:34:46.0004 3536 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x273861
11:34:46.0004 3536 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x2738A0, BlocksNum 0x1ED8B256
11:34:46.0004 3536 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x1EFFEAF6, BlocksNum 0x55706ECB
11:34:46.0004 3536 ============================================================
11:34:46.0035 3536 C: <-> \Device\Harddisk0\DR0\Partition2
11:34:46.0050 3536 D: <-> \Device\Harddisk0\DR0\Partition3
11:34:46.0050 3536 ============================================================
11:34:46.0050 3536 Initialize success
11:34:46.0050 3536 ============================================================
11:35:01.0582 4412 ============================================================
11:35:01.0582 4412 Scan started
11:35:01.0582 4412 Mode: Manual;
11:35:01.0582 4412 ============================================================
11:35:02.0066 4412 ================ Scan system memory ========================
11:35:02.0066 4412 System memory - ok
11:35:02.0066 4412 ================ Scan services =============================
11:35:02.0175 4412 [ 1B133875B8AA8AC48969BD3458AFE9F5 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
11:35:02.0207 4412 1394ohci - ok
11:35:02.0238 4412 [ CEA80C80BED809AA0DA6FEBC04733349 ] ACPI C:\Windows\system32\drivers\ACPI.sys
11:35:02.0254 4412 ACPI - ok
11:35:02.0269 4412 [ 1EFBC664ABFF416D1D07DB115DCB264F ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
11:35:02.0269 4412 AcpiPmi - ok
11:35:02.0332 4412 [ 3927397AC60D943DAF8808AFFED582B7 ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
11:35:02.0332 4412 AdobeARMservice - ok
11:35:02.0410 4412 [ EC807244904FA170C299AB06D87FBDBE ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
11:35:02.0425 4412 AdobeFlashPlayerUpdateSvc - ok
11:35:02.0457 4412 [ 21E785EBD7DC90A06391141AAC7892FB ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys
11:35:02.0457 4412 adp94xx - ok
11:35:02.0472 4412 [ 0C676BC278D5B59FF5ABD57BBE9123F2 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys
11:35:02.0472 4412 adpahci - ok
11:35:02.0488 4412 [ 7C7B5EE4B7B822EC85321FE23A27DB33 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys
11:35:02.0488 4412 adpu320 - ok
11:35:02.0519 4412 [ 8B5EEFEEC1E6D1A72A06C526628AD161 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
11:35:02.0519 4412 AeLookupSvc - ok
11:35:02.0566 4412 [ 9EBBBA55060F786F0FCAA3893BFA2806 ] AFD C:\Windows\system32\drivers\afd.sys
11:35:02.0597 4412 AFD - ok
11:35:02.0629 4412 [ 507812C3054C21CEF746B6EE3D04DD6E ] agp440 C:\Windows\system32\drivers\agp440.sys
11:35:02.0644 4412 agp440 - ok
11:35:02.0660 4412 [ 8B30250D573A8F6B4BD23195160D8707 ] aic78xx C:\Windows\system32\DRIVERS\djsvs.sys
11:35:02.0675 4412 aic78xx - ok
11:35:02.0691 4412 [ 18A54E132947CD98FEA9ACCC57F98F13 ] ALG C:\Windows\System32\alg.exe
11:35:02.0691 4412 ALG - ok
11:35:02.0722 4412 [ 0D40BCF52EA90FC7DF2AEAB6503DEA44 ] aliide C:\Windows\system32\drivers\aliide.sys
11:35:02.0722 4412 aliide - ok
11:35:02.0738 4412 [ FF794EC143F166349B49CF13507311D2 ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe
11:35:02.0754 4412 AMD External Events Utility - ok
11:35:02.0754 4412 [ 3C6600A0696E90A463771C7422E23AB5 ] amdagp C:\Windows\system32\drivers\amdagp.sys
11:35:02.0769 4412 amdagp - ok
11:35:02.0785 4412 [ CD5914170297126B6266860198D1D4F0 ] amdide C:\Windows\system32\drivers\amdide.sys
11:35:02.0785 4412 amdide - ok
11:35:02.0816 4412 [ 00DDA200D71BAC534BF56A9DB5DFD666 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
11:35:02.0816 4412 AmdK8 - ok
11:35:02.0957 4412 [ 68D791D78454684340433E52059EB45E ] amdkmdag C:\Windows\system32\DRIVERS\atikmdag.sys
11:35:03.0019 4412 amdkmdag - ok
11:35:03.0035 4412 [ 96CD7053A516C30E61A05DF9757DA7DE ] amdkmdap C:\Windows\system32\DRIVERS\atikmpag.sys
11:35:03.0050 4412 amdkmdap - ok
11:35:03.0050 4412 [ 3CBF30F5370FDA40DD3E87DF38EA53B6 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
11:35:03.0082 4412 AmdPPM - ok
11:35:03.0097 4412 [ D320BF87125326F996D4904FE24300FC ] amdsata C:\Windows\system32\drivers\amdsata.sys
11:35:03.0113 4412 amdsata - ok
11:35:03.0113 4412 [ EA43AF0C423FF267355F74E7A53BDABA ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys
11:35:03.0129 4412 amdsbs - ok
11:35:03.0144 4412 [ 46387FB17B086D16DEA267D5BE23A2F2 ] amdxata C:\Windows\system32\drivers\amdxata.sys
11:35:03.0144 4412 amdxata - ok
11:35:03.0160 4412 [ AEA177F783E20150ACE5383EE368DA19 ] AppID C:\Windows\system32\drivers\appid.sys
11:35:03.0175 4412 AppID - ok
11:35:03.0191 4412 [ 62A9C86CB6085E20DB4823E4E97826F5 ] AppIDSvc C:\Windows\System32\appidsvc.dll
11:35:03.0207 4412 AppIDSvc - ok
11:35:03.0207 4412 [ FB1959012294D6AD43E5304DF65E3C26 ] Appinfo C:\Windows\System32\appinfo.dll
11:35:03.0207 4412 Appinfo - ok
11:35:03.0222 4412 [ 2932004F49677BD84DBC72EDB754FFB3 ] arc C:\Windows\system32\DRIVERS\arc.sys
11:35:03.0222 4412 arc - ok
11:35:03.0222 4412 [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7 ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys
11:35:03.0222 4412 arcsas - ok
11:35:03.0238 4412 [ ADD2ADE1C2B285AB8378D2DAAF991481 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
11:35:03.0238 4412 AsyncMac - ok
11:35:03.0254 4412 [ 338C86357871C167A96AB976519BF59E ] atapi C:\Windows\system32\drivers\atapi.sys
11:35:03.0254 4412 atapi - ok
11:35:03.0285 4412 [ 84FAF3D287D56D210F84DB7C1349D43B ] AtiHDAudioService C:\Windows\system32\drivers\AtihdW73.sys
11:35:03.0316 4412 AtiHDAudioService - ok
11:35:03.0457 4412 [ 68D791D78454684340433E52059EB45E ] atikmdag C:\Windows\system32\DRIVERS\atikmdag.sys
11:35:03.0488 4412 atikmdag - ok
11:35:03.0535 4412 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
11:35:03.0535 4412 AudioEndpointBuilder - ok
11:35:03.0535 4412 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] Audiosrv C:\Windows\System32\Audiosrv.dll
11:35:03.0535 4412 Audiosrv - ok
11:35:03.0550 4412 [ 6E30D02AAC9CAC84F421622E3A2F6178 ] AxInstSV C:\Windows\System32\AxInstSV.dll
11:35:03.0566 4412 AxInstSV - ok
11:35:03.0582 4412 [ 1A231ABEC60FD316EC54C66715543CEC ] b06bdrv C:\Windows\system32\DRIVERS\bxvbdx.sys
11:35:03.0582 4412 b06bdrv - ok
11:35:03.0597 4412 [ BD8869EB9CDE6BBE4508D869929869EE ] b57nd60x C:\Windows\system32\DRIVERS\b57nd60x.sys
11:35:03.0613 4412 b57nd60x - ok
11:35:03.0629 4412 [ EE1E9C3BB8228AE423DD38DB69128E71 ] BDESVC C:\Windows\System32\bdesvc.dll
11:35:03.0629 4412 BDESVC - ok
11:35:03.0629 4412 [ 505506526A9D467307B3C393DEDAF858 ] Beep C:\Windows\system32\drivers\Beep.sys
11:35:03.0644 4412 Beep - ok
11:35:03.0675 4412 [ 1E2BAC209D184BB851E1A187D8A29136 ] BFE C:\Windows\System32\bfe.dll
11:35:03.0691 4412 BFE - ok
11:35:03.0722 4412 [ E585445D5021971FAE10393F0F1C3961 ] BITS C:\Windows\System32\qmgr.dll
11:35:03.0738 4412 BITS - ok
11:35:03.0738 4412 [ 2287078ED48FCFC477B05B20CF38F36F ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
11:35:03.0754 4412 blbdrive - ok
11:35:03.0769 4412 [ 8F2DA3028D5FCBD1A060A3DE64CD6506 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
11:35:03.0769 4412 bowser - ok
11:35:03.0785 4412 [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys
11:35:03.0785 4412 BrFiltLo - ok
11:35:03.0800 4412 [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys
11:35:03.0800 4412 BrFiltUp - ok
11:35:03.0832 4412 [ 3DAA727B5B0A45039B0E1C9A211B8400 ] Browser C:\Windows\System32\browser.dll
11:35:03.0832 4412 Browser - ok
11:35:03.0847 4412 [ 845B8CE732E67F3B4133164868C666EA ] Brserid C:\Windows\System32\Drivers\Brserid.sys
11:35:03.0847 4412 Brserid - ok
11:35:03.0847 4412 [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
11:35:03.0847 4412 BrSerWdm - ok
11:35:03.0863 4412 [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
11:35:03.0863 4412 BrUsbMdm - ok
11:35:03.0879 4412 [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
11:35:03.0879 4412 BrUsbSer - ok
11:35:03.0894 4412 [ ED3DF7C56CE0084EB2034432FC56565A ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys
11:35:03.0894 4412 BTHMODEM - ok
11:35:03.0894 4412 [ 1DF19C96EEF6C29D1C3E1A8678E07190 ] bthserv C:\Windows\system32\bthserv.dll
11:35:03.0910 4412 bthserv - ok
11:35:03.0925 4412 [ 77EA11B065E0A8AB902D78145CA51E10 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
11:35:03.0925 4412 cdfs - ok
11:35:03.0957 4412 [ BE167ED0FDB9C1FA1133953C18D5A6C9 ] cdrom C:\Windows\system32\drivers\cdrom.sys
11:35:03.0957 4412 cdrom - ok
11:35:03.0988 4412 [ 319C6B309773D063541D01DF8AC6F55F ] CertPropSvc C:\Windows\System32\certprop.dll
11:35:03.0988 4412 CertPropSvc - ok
11:35:04.0004 4412 [ 3FE3FE94A34DF6FB06E6418D0F6A0060 ] circlass C:\Windows\system32\DRIVERS\circlass.sys
11:35:04.0004 4412 circlass - ok
11:35:04.0035 4412 [ 635181E0E9BBF16871BF5380D71DB02D ] CLFS C:\Windows\system32\CLFS.sys
11:35:04.0035 4412 CLFS - ok
11:35:04.0097 4412 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
11:35:04.0097 4412 clr_optimization_v2.0.50727_32 - ok
11:35:04.0129 4412 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
11:35:04.0129 4412 clr_optimization_v4.0.30319_32 - ok
11:35:04.0129 4412 [ DEA805815E587DAD1DD2C502220B5616 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
11:35:04.0129 4412 CmBatt - ok
11:35:04.0144 4412 [ C537B1DB64D495B9B4717B4D6D9EDBF2 ] cmdide C:\Windows\system32\drivers\cmdide.sys
11:35:04.0160 4412 cmdide - ok
11:35:04.0191 4412 [ 247B4CE2DAB1160CD422D532D5241E1F ] CNG C:\Windows\system32\Drivers\cng.sys
11:35:04.0191 4412 CNG - ok
11:35:04.0207 4412 [ A6023D3823C37043986713F118A89BEE ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
11:35:04.0207 4412 Compbatt - ok
11:35:04.0207 4412 [ CBE8C58A8579CFE5FCCF809E6F114E89 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys
11:35:04.0207 4412 CompositeBus - ok
11:35:04.0222 4412 COMSysApp - ok
11:35:04.0222 4412 [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys
11:35:04.0222 4412 crcdisk - ok
11:35:04.0269 4412 [ 96C0E38905CFD788313BE8E11DAE3F2F ] CryptSvc C:\Windows\system32\cryptsvc.dll
11:35:04.0269 4412 CryptSvc - ok
11:35:04.0285 4412 [ 7660F01D3B38ACA1747E397D21D790AF ] DcomLaunch C:\Windows\system32\rpcss.dll
11:35:04.0300 4412 DcomLaunch - ok
11:35:04.0316 4412 [ 8D6E10A2D9A5EED59562D9B82CF804E1 ] defragsvc C:\Windows\System32\defragsvc.dll
11:35:04.0332 4412 defragsvc - ok
11:35:04.0379 4412 [ F024449C97EC1E464AAFFDA18593DB88 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
11:35:04.0379 4412 DfsC - ok
11:35:04.0394 4412 [ E9E01EB683C132F7FA27CD607B8A2B63 ] Dhcp C:\Windows\system32\dhcpcore.dll
11:35:04.0410 4412 Dhcp - ok
11:35:04.0410 4412 [ 1A050B0274BFB3890703D490F330C0DA ] discache C:\Windows\system32\drivers\discache.sys
11:35:04.0410 4412 discache - ok
11:35:04.0425 4412 [ 565003F326F99802E68CA78F2A68E9FF ] Disk C:\Windows\system32\DRIVERS\disk.sys
11:35:04.0425 4412 Disk - ok
11:35:04.0441 4412 [ 33EF4861F19A0736B11314AAD9AE28D0 ] Dnscache C:\Windows\System32\dnsrslvr.dll
11:35:04.0457 4412 Dnscache - ok
11:35:04.0488 4412 [ 366BA8FB4B7BB7435E3B9EACB3843F67 ] dot3svc C:\Windows\System32\dot3svc.dll
11:35:04.0488 4412 dot3svc - ok
11:35:04.0504 4412 [ 8EC04CA86F1D68DA9E11952EB85973D6 ] DPS C:\Windows\system32\dps.dll
11:35:04.0519 4412 DPS - ok
11:35:04.0550 4412 [ B918E7C5F9BF77202F89E1A9539F2EB4 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
11:35:04.0550 4412 drmkaud - ok
11:35:04.0597 4412 [ 555E54AC2F601A8821CEF58961653991 ] dtsoftbus01 C:\Windows\system32\DRIVERS\dtsoftbus01.sys
11:35:04.0597 4412 dtsoftbus01 - ok
11:35:04.0629 4412 [ 23F5D28378A160352BA8F817BD8C71CB ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
11:35:04.0738 4412 DXGKrnl - ok
11:35:04.0769 4412 [ 73CE42907CF42BFB91BCD27FE7C7A7AF ] eamonm C:\Windows\system32\DRIVERS\eamonm.sys
11:35:04.0769 4412 eamonm - ok
11:35:04.0785 4412 [ 8600142FA91C1B96367D3300AD0F3F3A ] EapHost C:\Windows\System32\eapsvc.dll
11:35:04.0785 4412 EapHost - ok
11:35:04.0847 4412 [ 024E1B5CAC09731E4D868E64DBFB4AB0 ] ebdrv C:\Windows\system32\DRIVERS\evbdx.sys
11:35:04.0863 4412 ebdrv - ok
11:35:04.0894 4412 [ 81951F51E318AECC2D68559E47485CC4 ] EFS C:\Windows\System32\lsass.exe
11:35:04.0894 4412 EFS - ok
11:35:04.0910 4412 [ 7D300A43A7BD8769E0F901BF9E1AE367 ] ehdrv C:\Windows\system32\DRIVERS\ehdrv.sys
11:35:04.0910 4412 ehdrv - ok
11:35:04.0957 4412 [ A8C362018EFC87BEB013EE28F29C0863 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
11:35:04.0972 4412 ehRecvr - ok
11:35:04.0988 4412 [ D389BFF34F80CAEDE417BF9D1507996A ] ehSched C:\Windows\ehome\ehsched.exe
11:35:04.0988 4412 ehSched - ok
11:35:05.0035 4412 [ D83323D7CD5D1CC46B42DA9E59409890 ] EhttpSrv C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
11:35:05.0035 4412 EhttpSrv - ok
11:35:05.0082 4412 [ EFA198F8983D064A81052851F7BB80C2 ] ekrn C:\Program Files\ESET\ESET Smart Security\ekrn.exe
11:35:05.0082 4412 ekrn - ok
11:35:05.0113 4412 [ 0ED67910C8C326796FAA00B2BF6D9D3C ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys
11:35:05.0113 4412 elxstor - ok
11:35:05.0129 4412 [ 15BFE00F030EA20955117BB0677E9668 ] epfw C:\Windows\system32\DRIVERS\epfw.sys
11:35:05.0129 4412 epfw - ok
11:35:05.0160 4412 [ 52310E0E603D7DA79ECCA7D764937A91 ] Epfwndis C:\Windows\system32\DRIVERS\Epfwndis.sys
11:35:05.0175 4412 Epfwndis - ok
11:35:05.0207 4412 [ 235250A79CF1E16A5A42407CFE3F6A4C ] epfwwfp C:\Windows\system32\DRIVERS\epfwwfp.sys
11:35:05.0207 4412 epfwwfp - ok
11:35:05.0238 4412 [ 8FC3208352DD3912C94367A206AB3F11 ] ErrDev C:\Windows\system32\drivers\errdev.sys
11:35:05.0254 4412 ErrDev - ok
11:35:05.0285 4412 [ F6916EFC29D9953D5D0DF06882AE8E16 ] EventSystem C:\Windows\system32\es.dll
11:35:05.0285 4412 EventSystem - ok
11:35:05.0300 4412 [ 2DC9108D74081149CC8B651D3A26207F ] exfat C:\Windows\system32\drivers\exfat.sys
11:35:05.0300 4412 exfat - ok
11:35:05.0316 4412 [ 7E0AB74553476622FB6AE36F73D97D35 ] fastfat C:\Windows\system32\drivers\fastfat.sys
11:35:05.0316 4412 fastfat - ok
11:35:05.0363 4412 [ 967EA5B213E9984CBE270205DF37755B ] Fax C:\Windows\system32\fxssvc.exe
11:35:05.0363 4412 Fax - ok
11:35:05.0379 4412 [ E817A017F82DF2A1F8CFDBDA29388B29 ] fdc C:\Windows\system32\DRIVERS\fdc.sys
11:35:05.0379 4412 fdc - ok
11:35:05.0394 4412 [ F3222C893BD2F5821A0179E5C71E88FB ] fdPHost C:\Windows\system32\fdPHost.dll
11:35:05.0394 4412 fdPHost - ok
11:35:05.0394 4412 [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B ] FDResPub C:\Windows\system32\fdrespub.dll
11:35:05.0394 4412 FDResPub - ok
11:35:05.0410 4412 [ 6CF00369C97F3CF563BE99BE983D13D8 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
11:35:05.0410 4412 FileInfo - ok
11:35:05.0425 4412 [ 42C51DC94C91DA21CB9196EB64C45DB9 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
11:35:05.0441 4412 Filetrace - ok
11:35:05.0457 4412 [ 87907AA70CB3C56600F1C2FB8841579B ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
11:35:05.0457 4412 flpydisk - ok
11:35:05.0472 4412 [ 7520EC808E0C35E0EE6F841294316653 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
11:35:05.0472 4412 FltMgr - ok
11:35:05.0504 4412 [ B3A5EC6B6B6673DB7E87C2BCDBDDC074 ] FontCache C:\Windows\system32\FntCache.dll
11:35:05.0504 4412 FontCache - ok
11:35:05.0550 4412 [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
11:35:05.0550 4412 FontCache3.0.0.0 - ok
11:35:05.0566 4412 [ 1A16B57943853E598CFF37FE2B8CBF1D ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
11:35:05.0566 4412 FsDepends - ok
11:35:05.0582 4412 [ 7DAE5EBCC80E45D3253F4923DC424D05 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
11:35:05.0582 4412 Fs_Rec - ok
11:35:05.0597 4412 [ 8A73E79089B282100B9393B644CB853B ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
11:35:05.0597 4412 fvevol - ok
11:35:05.0613 4412 [ 65EE0C7A58B65E74AE05637418153938 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys
11:35:05.0629 4412 gagp30kx - ok
11:35:05.0660 4412 [ E897EAF5ED6BA41E081060C9B447A673 ] gpsvc C:\Windows\System32\gpsvc.dll
11:35:05.0675 4412 gpsvc - ok
11:35:05.0691 4412 [ C44E3C2BAB6837DB337DDEE7544736DB ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
11:35:05.0707 4412 hcw85cir - ok
11:35:05.0738 4412 [ A5EF29D5315111C80A5C1ABAD14C8972 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
11:35:05.0738 4412 HdAudAddService - ok
11:35:05.0754 4412 [ 9036377B8A6C15DC2EEC53E489D159B5 ] HDAudBus C:\Windows\system32\drivers\HDAudBus.sys
11:35:05.0754 4412 HDAudBus - ok
11:35:05.0769 4412 [ 1D58A7F3E11A9731D0EAAAA8405ACC36 ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys
11:35:05.0769 4412 HidBatt - ok
11:35:05.0769 4412 [ 89448F40E6DF260C206A193A4683BA78 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys
11:35:05.0800 4412 HidBth - ok
11:35:05.0816 4412 [ CF50B4CF4A4F229B9F3C08351F99CA5E ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
11:35:05.0816 4412 HidIr - ok
11:35:05.0832 4412 [ 2BC6F6A1992B3A77F5F41432CA6B3B6B ] hidserv C:\Windows\system32\hidserv.dll
11:35:05.0832 4412 hidserv - ok
11:35:05.0847 4412 [ 10C19F8290891AF023EAEC0832E1EB4D ] HidUsb C:\Windows\system32\drivers\hidusb.sys
11:35:05.0879 4412 HidUsb - ok
11:35:05.0894 4412 [ 196B4E3F4CCCC24AF836CE58FACBB699 ] hkmsvc C:\Windows\system32\kmsvc.dll
11:35:05.0894 4412 hkmsvc - ok
11:35:05.0910 4412 [ 6658F4404DE03D75FE3BA09F7ABA6A30 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
11:35:05.0925 4412 HomeGroupListener - ok
11:35:05.0941 4412 [ DBC02D918FFF1CAD628ACBE0C0EAA8E8 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
11:35:05.0957 4412 HomeGroupProvider - ok
11:35:05.0972 4412 [ 295FDC419039090EB8B49FFDBB374549 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
11:35:06.0004 4412 HpSAMD - ok
11:35:06.0066 4412 [ 871917B07A141BFF43D76D8844D48106 ] HTTP C:\Windows\system32\drivers\HTTP.sys
11:35:06.0097 4412 HTTP - ok
11:35:06.0113 4412 [ 0C4E035C7F105F1299258C90886C64C5 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
11:35:06.0129 4412 hwpolicy - ok
11:35:06.0144 4412 [ F151F0BDC47F4A28B1B20A0818EA36D6 ] i8042prt C:\Windows\system32\drivers\i8042prt.sys
11:35:06.0160 4412 i8042prt - ok
11:35:06.0175 4412 [ 5CD5F9A5444E6CDCB0AC89BD62D8B76E ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
11:35:06.0191 4412 iaStorV - ok
11:35:06.0238 4412 [ 1CF03C69B49ACB70C722DF92755C0C8C ] IDriverT C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
11:35:06.0238 4412 IDriverT - ok
11:35:06.0285 4412 [ C521D7EB6497BB1AF6AFA89E322FB43C ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
11:35:06.0300 4412 idsvc - ok
11:35:06.0316 4412 [ 4173FF5708F3236CF25195FECD742915 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys
11:35:06.0316 4412 iirsp - ok
11:35:06.0347 4412 [ F95622F161474511B8D80D6B093AA610 ] IKEEXT C:\Windows\System32\ikeext.dll
11:35:06.0347 4412 IKEEXT - ok
11:35:06.0363 4412 [ A0F12F2C9BA6C72F3987CE780E77C130 ] intelide C:\Windows\system32\drivers\intelide.sys
11:35:06.0363 4412 intelide - ok
11:35:06.0379 4412 [ 3B514D27BFC4ACCB4037BC6685F766E0 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
11:35:06.0379 4412 intelppm - ok
11:35:06.0394 4412 [ ACB364B9075A45C0736E5C47BE5CAE19 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
11:35:06.0394 4412 IPBusEnum - ok
11:35:06.0410 4412 [ 709D1761D3B19A932FF0238EA6D50200 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
11:35:06.0410 4412 IpFilterDriver - ok
11:35:06.0441 4412 [ 58F67245D041FBE7AF88F4EAF79DF0FA ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
11:35:06.0457 4412 iphlpsvc - ok
11:35:06.0472 4412 [ 4BD7134618C1D2A27466A099062547BF ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
11:35:06.0488 4412 IPMIDRV - ok
11:35:06.0519 4412 [ A5FA468D67ABCDAA36264E463A7BB0CD ] IPNAT C:\Windows\system32\drivers\ipnat.sys
11:35:06.0519 4412 IPNAT - ok
11:35:06.0535 4412 [ 42996CFF20A3084A56017B7902307E9F ] IRENUM C:\Windows\system32\drivers\irenum.sys
11:35:06.0535 4412 IRENUM - ok
11:35:06.0550 4412 [ 1F32BB6B38F62F7DF1A7AB7292638A35 ] isapnp C:\Windows\system32\drivers\isapnp.sys
11:35:06.0582 4412 isapnp - ok
11:35:06.0644 4412 [ CB7A9ABB12B8415BCE5D74994C7BA3AE ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
11:35:06.0660 4412 iScsiPrt - ok
11:35:06.0691 4412 [ ADEF52CA1AEAE82B50DF86B56413107E ] kbdclass C:\Windows\system32\drivers\kbdclass.sys
11:35:06.0707 4412 kbdclass - ok
11:35:06.0722 4412 [ 9E3CED91863E6EE98C24794D05E27A71 ] kbdhid C:\Windows\system32\drivers\kbdhid.sys
11:35:06.0738 4412 kbdhid - ok
11:35:06.0754 4412 [ 81951F51E318AECC2D68559E47485CC4 ] KeyIso C:\Windows\system32\lsass.exe
11:35:06.0754 4412 KeyIso - ok
11:35:06.0785 4412 [ B7895B4182C0D16F6EFADEB8081E8D36 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
11:35:06.0785 4412 KSecDD - ok
11:35:06.0800 4412 [ D30159AC9237519FBC62C6EC247D2D46 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
11:35:06.0800 4412 KSecPkg - ok
11:35:06.0832 4412 [ 89A7B9CC98D0D80C6F31B91C0A310FCD ] KtmRm C:\Windows\system32\msdtckrm.dll
11:35:06.0832 4412 KtmRm - ok
11:35:06.0847 4412 [ D64AF876D53ECA3668BB97B51B4E70AB ] LanmanServer C:\Windows\system32\srvsvc.dll
11:35:06.0847 4412 LanmanServer - ok
11:35:06.0879 4412 [ 58405E4F68BA8E4057C6E914F326ABA2 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
11:35:06.0879 4412 LanmanWorkstation - ok
11:35:06.0879 4412 [ F7611EC07349979DA9B0AE1F18CCC7A6 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
11:35:06.0894 4412 lltdio - ok
11:35:06.0910 4412 [ 5700673E13A2117FA3B9020C852C01E2 ] lltdsvc C:\Windows\System32\lltdsvc.dll
11:35:06.0910 4412 lltdsvc - ok
11:35:06.0910 4412 [ 55CA01BA19D0006C8F2639B6C045E08B ] lmhosts C:\Windows\System32\lmhsvc.dll
11:35:06.0925 4412 lmhosts - ok
11:35:06.0941 4412 [ EB119A53CCF2ACC000AC71B065B78FEF ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys
11:35:06.0957 4412 LSI_FC - ok
11:35:06.0972 4412 [ 8ADE1C877256A22E49B75D1CC9161F9C ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys
11:35:06.0988 4412 LSI_SAS - ok
11:35:06.0988 4412 [ DC9DC3D3DAA0E276FD2EC262E38B11E9 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys
11:35:06.0988 4412 LSI_SAS2 - ok
11:35:07.0004 4412 [ 0A036C7D7CAB643A7F07135AC47E0524 ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys
11:35:07.0004 4412 LSI_SCSI - ok
11:35:07.0019 4412 [ 6703E366CC18D3B6E534F5CF7DF39CEE ] luafv C:\Windows\system32\drivers\luafv.sys
11:35:07.0019 4412 luafv - ok
11:35:07.0050 4412 [ BFB9EE8EE977EFE85D1A3105ABEF6DD1 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
11:35:07.0050 4412 Mcx2Svc - ok
11:35:07.0066 4412 [ 0FFF5B045293002AB38EB1FD1FC2FB74 ] megasas C:\Windows\system32\DRIVERS\megasas.sys
11:35:07.0097 4412 megasas - ok
11:35:07.0097 4412 [ DCBAB2920C75F390CAF1D29F675D03D6 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys
11:35:07.0113 4412 MegaSR - ok
11:35:07.0175 4412 [ FAFE367D032ED82E9332B4C741A20216 ] Microsoft Office Groove Audit Service C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe
11:35:07.0175 4412 Microsoft Office Groove Audit Service - ok
11:35:07.0191 4412 [ 146B6F43A673379A3C670E86D89BE5EA ] MMCSS C:\Windows\system32\mmcss.dll
11:35:07.0191 4412 MMCSS - ok
11:35:07.0207 4412 [ F001861E5700EE84E2D4E52C712F4964 ] Modem C:\Windows\system32\drivers\modem.sys
11:35:07.0207 4412 Modem - ok
11:35:07.0207 4412 [ 79D10964DE86B292320E9DFE02282A23 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
11:35:07.0207 4412 monitor - ok
11:35:07.0238 4412 [ FB18CC1D4C2E716B6B903B0AC0CC0609 ] mouclass C:\Windows\system32\drivers\mouclass.sys
11:35:07.0254 4412 mouclass - ok
11:35:07.0269 4412 [ 2C388D2CD01C9042596CF3C8F3C7B24D ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
11:35:07.0285 4412 mouhid - ok
11:35:07.0300 4412 [ FC8771F45ECCCFD89684E38842539B9B ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
11:35:07.0300 4412 mountmgr - ok
11:35:07.0347 4412 [ 51A84B690DF519DCF656F780243D953E ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
11:35:07.0347 4412 MozillaMaintenance - ok
11:35:07.0379 4412 [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0 ] mpio C:\Windows\system32\drivers\mpio.sys
11:35:07.0410 4412 mpio - ok
11:35:07.0425 4412 [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
11:35:07.0425 4412 mpsdrv - ok
11:35:07.0457 4412 [ 9835584E999D25004E1EE8E5F3E3B881 ] MpsSvc C:\Windows\system32\mpssvc.dll
11:35:07.0457 4412 MpsSvc - ok
11:35:07.0488 4412 [ CEB46AB7C01C9F825F8CC6BABC18166A ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
11:35:07.0504 4412 MRxDAV - ok
11:35:07.0535 4412 [ 5D16C921E3671636C0EBA3BBAAC5FD25 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
11:35:07.0550 4412 mrxsmb - ok
11:35:07.0566 4412 [ 6D17A4791ACA19328C685D256349FEFC ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
11:35:07.0566 4412 mrxsmb10 - ok
11:35:07.0582 4412 [ B81F204D146000BE76651A50670A5E9E ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
11:35:07.0582 4412 mrxsmb20 - ok
11:35:07.0582 4412 [ 012C5F4E9349E711E11E0F19A8589F0A ] msahci C:\Windows\system32\drivers\msahci.sys
11:35:07.0582 4412 msahci - ok
11:35:07.0597 4412 [ 55055F8AD8BE27A64C831322A780A228 ] msdsm C:\Windows\system32\drivers\msdsm.sys
11:35:07.0613 4412 msdsm - ok
11:35:07.0629 4412 [ E1BCE74A3BD9902B72599C0192A07E27 ] MSDTC C:\Windows\System32\msdtc.exe
11:35:07.0629 4412 MSDTC - ok
11:35:07.0644 4412 [ DAEFB28E3AF5A76ABCC2C3078C07327F ] Msfs C:\Windows\system32\drivers\Msfs.sys
11:35:07.0660 4412 Msfs - ok
11:35:07.0675 4412 [ 3E1E5767043C5AF9367F0056295E9F84 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
11:35:07.0691 4412 mshidkmdf - ok
11:35:07.0722 4412 [ 0A4E5757AE09FA9622E3158CC1AEF114 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
11:35:07.0738 4412 msisadrv - ok
11:35:07.0769 4412 [ 90F7D9E6B6F27E1A707D4A297F077828 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
11:35:07.0769 4412 MSiSCSI - ok
11:35:07.0769 4412 msiserver - ok
11:35:07.0769 4412 [ 8C0860D6366AAFFB6C5BB9DF9448E631 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
11:35:07.0769 4412 MSKSSRV - ok
11:35:07.0785 4412 [ 3EA8B949F963562CEDBB549EAC0C11CE ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
11:35:07.0800 4412 MSPCLOCK - ok
11:35:07.0816 4412 [ F456E973590D663B1073E9C463B40932 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
11:35:07.0816 4412 MSPQM - ok
11:35:07.0832 4412 [ 0E008FC4819D238C51D7C93E7B41E560 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
11:35:07.0832 4412 MsRPC - ok
11:35:07.0832 4412 [ FC6B9FF600CC585EA38B12589BD4E246 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys
11:35:07.0847 4412 mssmbios - ok
11:35:07.0863 4412 [ B42C6B921F61A6E55159B8BE6CD54A36 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
11:35:07.0863 4412 MSTEE - ok
11:35:07.0879 4412 [ 33599130F44E1F34631CEA241DE8AC84 ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys
11:35:07.0879 4412 MTConfig - ok
11:35:07.0879 4412 [ 159FAD02F64E6381758C990F753BCC80 ] Mup C:\Windows\system32\Drivers\mup.sys
11:35:07.0879 4412 Mup - ok
11:35:07.0894 4412 [ 61D57A5D7C6D9AFE10E77DAE6E1B445E ] napagent C:\Windows\system32\qagentRT.dll
11:35:07.0894 4412 napagent - ok
11:35:07.0910 4412 [ 26384429FCD85D83746F63E798AB1480 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
11:35:07.0925 4412 NativeWifiP - ok
11:35:08.0004 4412 [ 6D8FCDD5BB3B676EF58FA234073492C6 ] NBService C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
11:35:08.0019 4412 NBService - ok
11:35:08.0050 4412 [ 8C9C922D71F1CD4DEF73F186416B7896 ] NDIS C:\Windows\system32\drivers\ndis.sys
11:35:08.0066 4412 NDIS - ok
11:35:08.0082 4412 [ 0E1787AA6C9191D3D319E8BAFE86F80C ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
11:35:08.0082 4412 NdisCap - ok
11:35:08.0097 4412 [ E4A8AEC125A2E43A9E32AFEEA7C9C888 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
11:35:08.0097 4412 NdisTapi - ok
11:35:08.0113 4412 [ D8A65DAFB3EB41CBB622745676FCD072 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
11:35:08.0129 4412 Ndisuio - ok
11:35:08.0160 4412 [ 38FBE267E7E6983311179230FACB1017 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
11:35:08.0175 4412 NdisWan - ok
11:35:08.0191 4412 [ A4BDC541E69674FBFF1A8FF00BE913F2 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
11:35:08.0207 4412 NDProxy - ok
11:35:08.0238 4412 [ 80B275B1CE3B0E79909DB7B39AF74D51 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
11:35:08.0238 4412 NetBIOS - ok
11:35:08.0269 4412 [ 280122DDCF04B378EDD1AD54D71C1E54 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
11:35:08.0269 4412 NetBT - ok
11:35:08.0285 4412 [ 81951F51E318AECC2D68559E47485CC4 ] Netlogon C:\Windows\system32\lsass.exe
11:35:08.0285 4412 Netlogon - ok
11:35:08.0300 4412 [ 7CCCFCA7510684768DA22092D1FA4DB2 ] Netman C:\Windows\System32\netman.dll
11:35:08.0316 4412 Netman - ok
11:35:08.0332 4412 [ 8C338238C16777A802D6A9211EB2BA50 ] netprofm C:\Windows\System32\netprofm.dll
11:35:08.0332 4412 netprofm - ok
11:35:08.0363 4412 [ F476EC40033CDB91EFBE73EB99B8362D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
11:35:08.0363 4412 NetTcpPortSharing - ok
11:35:08.0363 4412 [ 1D85C4B390B0EE09C7A46B91EFB2C097 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys
11:35:08.0394 4412 nfrd960 - ok
11:35:08.0410 4412 [ 374071043F9E4231EE43BE2BB48DD36D ] NlaSvc C:\Windows\System32\nlasvc.dll
11:35:08.0425 4412 NlaSvc - ok
11:35:08.0457 4412 [ 060DAF68493AD7ADF104413E5A62AFA8 ] NMIndexingService C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
11:35:08.0472 4412 NMIndexingService - ok
11:35:08.0472 4412 [ 1DB262A9F8C087E8153D89BEF3D2235F ] Npfs C:\Windows\system32\drivers\Npfs.sys
11:35:08.0472 4412 Npfs - ok
11:35:08.0488 4412 [ BA387E955E890C8A88306D9B8D06BF17 ] nsi C:\Windows\system32\nsisvc.dll
11:35:08.0488 4412 nsi - ok
11:35:08.0488 4412 [ E9A0A4D07E53D8FEA2BB8387A3293C58 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
11:35:08.0519 4412 nsiproxy - ok
11:35:08.0566 4412 [ 0D87503986BB3DFED58E343FE39DDE13 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
11:35:08.0566 4412 Ntfs - ok
11:35:08.0582 4412 [ F9756A98D69098DCA8945D62858A812C ] Null C:\Windows\system32\drivers\Null.sys
11:35:08.0582 4412 Null - ok
11:35:08.0613 4412 [ B3E25EE28883877076E0E1FF877D02E0 ] nvraid C:\Windows\system32\drivers\nvraid.sys
11:35:08.0629 4412 nvraid - ok
11:35:08.0660 4412 [ 4380E59A170D88C4F1022EFF6719A8A4 ] nvstor C:\Windows\system32\drivers\nvstor.sys
11:35:08.0691 4412 nvstor - ok
11:35:08.0707 4412 [ 5A0983915F02BAE73267CC2A041F717D ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
11:35:08.0722 4412 nv_agp - ok
11:35:08.0769 4412 [ 84DE1DD996B48B05ACE31AD015FA108A ] odserv C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
11:35:08.0769 4412 odserv - ok
11:35:08.0800 4412 [ 08A70A1F2CDDE9BB49B885CB817A66EB ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
11:35:08.0800 4412 ohci1394 - ok
11:35:08.0816 4412 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
11:35:08.0816 4412 ose - ok
11:35:08.0847 4412 [ 82A8521DDC60710C3D3D3E7325209BEC ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
11:35:08.0863 4412 p2pimsvc - ok
11:35:08.0863 4412 [ 59C3DDD501E39E006DAC31BF55150D91 ] p2psvc C:\Windows\system32\p2psvc.dll
11:35:08.0879 4412 p2psvc - ok
11:35:08.0894 4412 [ 2EA877ED5DD9713C5AC74E8EA7348D14 ] Parport C:\Windows\system32\DRIVERS\parport.sys
11:35:08.0910 4412 Parport - ok
11:35:08.0925 4412 [ 3F34A1B4C5F6475F320C275E63AFCE9B ] partmgr C:\Windows\system32\drivers\partmgr.sys
11:35:08.0925 4412 partmgr - ok
11:35:08.0941 4412 [ EB0A59F29C19B86479D36B35983DAADC ] Parvdm C:\Windows\system32\DRIVERS\parvdm.sys
11:35:08.0941 4412 Parvdm - ok
11:35:08.0957 4412 [ 358AB7956D3160000726574083DFC8A6 ] PcaSvc C:\Windows\System32\pcasvc.dll
11:35:08.0957 4412 PcaSvc - ok
11:35:08.0972 4412 [ 673E55C3498EB970088E812EA820AA8F ] pci C:\Windows\system32\drivers\pci.sys
11:35:08.0972 4412 pci - ok
11:35:09.0004 4412 [ AFE86F419014DB4E5593F69FFE26CE0A ] pciide C:\Windows\system32\drivers\pciide.sys
11:35:09.0004 4412 pciide - ok
11:35:09.0019 4412 [ F396431B31693E71E8A80687EF523506 ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys
11:35:09.0035 4412 pcmcia - ok
11:35:09.0050 4412 [ 250F6B43D2B613172035C6747AEEB19F ] pcw C:\Windows\system32\drivers\pcw.sys
11:35:09.0066 4412 pcw - ok
11:35:09.0082 4412 [ 9E0104BA49F4E6973749A02BF41344ED ] PEAUTH C:\Windows\system32\drivers\peauth.sys
11:35:09.0082 4412 PEAUTH - ok
11:35:09.0144 4412 [ 414BBA67A3DED1D28437EB66AEB8A720 ] pla C:\Windows\system32\pla.dll
11:35:09.0160 4412 pla - ok
11:35:09.0175 4412 [ EC7BC28D207DA09E79B3E9FAF8B232CA ] PlugPlay C:\Windows\system32\umpnpmgr.dll
11:35:09.0191 4412 PlugPlay - ok
11:35:09.0222 4412 [ 205E1B699FD3F2F9B036EEA2EC30C620 ] PnkBstrA C:\Windows\system32\PnkBstrA.exe
11:35:09.0222 4412 PnkBstrA - ok
11:35:09.0238 4412 [ 63FF8572611249931EB16BB8EED6AFC8 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
11:35:09.0238 4412 PNRPAutoReg - ok
11:35:09.0254 4412 [ 82A8521DDC60710C3D3D3E7325209BEC ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
11:35:09.0254 4412 PNRPsvc - ok
11:35:09.0285 4412 [ 3F1110901DA07CC428710460276E28A0 ] PolarUSB C:\Windows\system32\DRIVERS\PolarUSB.sys
11:35:09.0300 4412 PolarUSB - ok
11:35:09.0300 4412 [ 53946B69BA0836BD95B03759530C81EC ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
11:35:09.0316 4412 PolicyAgent - ok
11:35:09.0332 4412 [ F87D30E72E03D579A5199CCB3831D6EA ] Power C:\Windows\system32\umpo.dll
11:35:09.0332 4412 Power - ok
11:35:09.0347 4412 [ 631E3E205AD6D86F2AED6A4A8E69F2DB ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
11:35:09.0347 4412 PptpMiniport - ok
11:35:09.0363 4412 [ 85B1E3A0C7585BC4AAE6899EC6FCF011 ] Processor C:\Windows\system32\DRIVERS\processr.sys
11:35:09.0363 4412 Processor - ok
11:35:09.0379 4412 [ CADEFAC453040E370A1BDFF3973BE00D ] ProfSvc C:\Windows\system32\profsvc.dll
11:35:09.0379 4412 ProfSvc - ok
11:35:09.0394 4412 [ 81951F51E318AECC2D68559E47485CC4 ] ProtectedStorage C:\Windows\system32\lsass.exe
11:35:09.0394 4412 ProtectedStorage - ok
11:35:09.0425 4412 [ 6270CCAE2A86DE6D146529FE55B3246A ] Psched C:\Windows\system32\DRIVERS\pacer.sys
11:35:09.0425 4412 Psched - ok
11:35:09.0457 4412 [ AB95ECF1F6659A60DDC166D8315B0751 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys
11:35:09.0457 4412 ql2300 - ok
11:35:09.0472 4412 [ B4DD51DD25182244B86737DC51AF2270 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys
11:35:09.0472 4412 ql40xx - ok
11:35:09.0488 4412 [ 31AC809E7707EB580B2BDB760390765A ] QWAVE C:\Windows\system32\qwave.dll
11:35:09.0504 4412 QWAVE - ok
11:35:09.0519 4412 [ 584078CA1B95CA72DF2A27C336F9719D ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
11:35:09.0519 4412 QWAVEdrv - ok
11:35:09.0519 4412 [ 30A81B53C766D0133BB86D234E5556AB ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
11:35:09.0519 4412 RasAcd - ok
11:35:09.0550 4412 [ 57EC4AEF73660166074D8F7F31C0D4FD ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
11:35:09.0566 4412 RasAgileVpn - ok
11:35:09.0582 4412 [ A60F1839849C0C00739787FD5EC03F13 ] RasAuto C:\Windows\System32\rasauto.dll
11:35:09.0582 4412 RasAuto - ok
11:35:09.0582 4412 [ D9F91EAFEC2815365CBE6D167E4E332A ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
11:35:09.0582 4412 Rasl2tp - ok
11:35:09.0629 4412 [ CB9E04DC05EACF5B9A36CA276D475006 ] RasMan C:\Windows\System32\rasmans.dll
11:35:09.0629 4412 RasMan - ok
11:35:09.0644 4412 [ 0FE8B15916307A6AC12BFB6A63E45507 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
11:35:09.0644 4412 RasPppoe - ok
11:35:09.0660 4412 [ 44101F495A83EA6401D886E7FD70096B ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
11:35:09.0660 4412 RasSstp - ok
11:35:09.0691 4412 [ D528BC58A489409BA40334EBF96A311B ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
11:35:09.0691 4412 rdbss - ok
11:35:09.0691 4412 [ 0D8F05481CB76E70E1DA06EE9F0DA9DF ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
11:35:09.0722 4412 rdpbus - ok
11:35:09.0738 4412 [ 23DAE03F29D253AE74C44F99E515F9A1 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
11:35:09.0738 4412 RDPCDD - ok
11:35:09.0754 4412 [ 5A53CA1598DD4156D44196D200C94B8A ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
11:35:09.0785 4412 RDPENCDD - ok
11:35:09.0785 4412 [ 44B0A53CD4F27D50ED461DAE0C0B4E1F ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
11:35:09.0785 4412 RDPREFMP - ok
11:35:09.0816 4412 [ F031683E6D1FEA157ABB2FF260B51E61 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
11:35:09.0816 4412 RDPWD - ok
11:35:09.0847 4412 [ 518395321DC96FE2C9F0E96AC743B656 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
11:35:09.0863 4412 rdyboost - ok
11:35:09.0879 4412 [ 7B5E1419717FAC363A31CC302895217A ] RemoteAccess C:\Windows\System32\mprdim.dll
11:35:09.0894 4412 RemoteAccess - ok
11:35:09.0894 4412 [ CB9A8683F4EF2BF99E123D79950D7935 ] RemoteRegistry C:\Windows\system32\regsvc.dll
11:35:09.0910 4412 RemoteRegistry - ok
11:35:09.0910 4412 [ 78D072F35BC45D9E4E1B61895C152234 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
11:35:09.0925 4412 RpcEptMapper - ok
11:35:09.0941 4412 [ 94D36C0E44677DD26981D2BFEEF2A29D ] RpcLocator C:\Windows\system32\locator.exe
11:35:09.0941 4412 RpcLocator - ok
11:35:09.0957 4412 [ 7660F01D3B38ACA1747E397D21D790AF ] RpcSs C:\Windows\system32\rpcss.dll
11:35:09.0957 4412 RpcSs - ok
11:35:09.0972 4412 [ 032B0D36AD92B582D869879F5AF5B928 ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
11:35:10.0019 4412 rspndr - ok
11:35:10.0050 4412 [ 3983CEA05BB855351D75F5482B6C42CE ] RTL8167 C:\Windows\system32\DRIVERS\Rt86win7.sys
11:35:10.0050 4412 RTL8167 - ok
11:35:10.0050 4412 [ 81951F51E318AECC2D68559E47485CC4 ] SamSs C:\Windows\system32\lsass.exe
11:35:10.0050 4412 SamSs - ok
11:35:10.0097 4412 [ 05D860DA1040F111503AC416CCEF2BCA ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
11:35:10.0113 4412 sbp2port - ok
11:35:10.0129 4412 [ 8FC518FFE9519C2631D37515A68009C4 ] SCardSvr C:\Windows\System32\SCardSvr.dll
11:35:10.0129 4412 SCardSvr - ok
11:35:10.0129 4412 [ 0693B5EC673E34DC147E195779A4DCF6 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
11:35:10.0129 4412 scfilter - ok
11:35:10.0175 4412 [ A04BB13F8A72F8B6E8B4071723E4E336 ] Schedule C:\Windows\system32\schedsvc.dll
11:35:10.0175 4412 Schedule - ok
11:35:10.0191 4412 [ 319C6B309773D063541D01DF8AC6F55F ] SCPolicySvc C:\Windows\System32\certprop.dll
11:35:10.0191 4412 SCPolicySvc - ok
11:35:10.0207 4412 [ 08236C4BCE5EDD0A0318A438AF28E0F7 ] SDRSVC C:\Windows\System32\SDRSVC.dll
11:35:10.0207 4412 SDRSVC - ok
11:35:10.0222 4412 [ 90A3935D05B494A5A39D37E71F09A677 ] secdrv C:\Windows\system32\drivers\secdrv.sys
11:35:10.0222 4412 secdrv - ok
11:35:10.0238 4412 [ A59B3A4442C52060CC7A85293AA3546F ] seclogon C:\Windows\system32\seclogon.dll
11:35:10.0238 4412 seclogon - ok
11:35:10.0269 4412 [ DCB7FCDCC97F87360F75D77425B81737 ] SENS C:\Windows\System32\sens.dll
11:35:10.0269 4412 SENS - ok
11:35:10.0285 4412 [ 50087FE1EE447009C9CC2997B90DE53F ] SensrSvc C:\Windows\system32\sensrsvc.dll
11:35:10.0285 4412 SensrSvc - ok
11:35:10.0316 4412 [ 9AD8B8B515E3DF6ACD4212EF465DE2D1 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
11:35:10.0332 4412 Serenum - ok
11:35:10.0379 4412 [ 5FB7FCEA0490D821F26F39CC5EA3D1E2 ] Serial C:\Windows\system32\DRIVERS\serial.sys
11:35:10.0379 4412 Serial - ok
11:35:10.0379 4412 [ 79BFFB520327FF916A582DFEA17AA813 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys
11:35:10.0410 4412 sermouse - ok
11:35:10.0441 4412 [ 4AE380F39A0032EAB7DD953030B26D28 ] SessionEnv C:\Windows\system32\sessenv.dll
11:35:10.0441 4412 SessionEnv - ok
11:35:10.0457 4412 [ 9F976E1EB233DF46FCE808D9DEA3EB9C ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
11:35:10.0472 4412 sffdisk - ok
11:35:10.0472 4412 [ 932A68EE27833CFD57C1639D375F2731 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
11:35:10.0488 4412 sffp_mmc - ok
11:35:10.0488 4412 [ 6D4CCAEDC018F1CF52866BBBAA235982 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
11:35:10.0504 4412 sffp_sd - ok
11:35:10.0504 4412 [ DB96666CC8312EBC45032F30B007A547 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys
11:35:10.0504 4412 sfloppy - ok
11:35:10.0519 4412 [ D1A079A0DE2EA524513B6930C24527A2 ] SharedAccess C:\Windows\System32\ipnathlp.dll
11:35:10.0535 4412 SharedAccess - ok
11:35:10.0550 4412 [ 414DA952A35BF5D50192E28263B40577 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
11:35:10.0550 4412 ShellHWDetection - ok
11:35:10.0566 4412 [ 2565CAC0DC9FE0371BDCE60832582B2E ] sisagp C:\Windows\system32\drivers\sisagp.sys
11:35:10.0582 4412 sisagp - ok
11:35:10.0597 4412 [ A9F0486851BECB6DDA1D89D381E71055 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys
11:35:10.0613 4412 SiSRaid2 - ok
11:35:10.0629 4412 [ 3727097B55738E2F554972C3BE5BC1AA ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys
11:35:10.0629 4412 SiSRaid4 - ok
11:35:10.0644 4412 [ 3E21C083B8A01CB70BA1F09303010FCE ] Smb C:\Windows\system32\DRIVERS\smb.sys
11:35:10.0644 4412 Smb - ok
11:35:10.0660 4412 [ 6A984831644ECA1A33FFEAE4126F4F37 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
11:35:10.0660 4412 SNMPTRAP - ok
11:35:10.0660 4412 [ 95CF1AE7527FB70F7816563CBC09D942 ] spldr C:\Windows\system32\drivers\spldr.sys
11:35:10.0660 4412 spldr - ok
11:35:10.0691 4412 [ 9AEA093B8F9C37CF45538382CABA2475 ] Spooler C:\Windows\System32\spoolsv.exe
11:35:10.0691 4412 Spooler - ok
11:35:10.0769 4412 [ CF87A1DE791347E75B98885214CED2B8 ] sppsvc C:\Windows\system32\sppsvc.exe
11:35:10.0785 4412 sppsvc - ok
11:35:10.0816 4412 [ B0180B20B065D89232A78A40FE56EAA6 ] sppuinotify C:\Windows\system32\sppuinotify.dll
11:35:10.0816 4412 sppuinotify - ok
11:35:10.0832 4412 [ E4C2764065D66EA1D2D3EBC28FE99C46 ] srv C:\Windows\system32\DRIVERS\srv.sys
11:35:10.0832 4412 srv - ok
11:35:10.0847 4412 [ 03F0545BD8D4C77FA0AE1CEEDFCC71AB ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
11:35:10.0847 4412 srv2 - ok
11:35:10.0863 4412 [ BE6BD660CAA6F291AE06A718A4FA8ABC ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
11:35:10.0894 4412 srvnet - ok
11:35:10.0925 4412 [ D887C9FD02AC9FA880F6E5027A43E118 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
11:35:10.0925 4412 SSDPSRV - ok
11:35:10.0941 4412 [ D318F23BE45D5E3A107469EB64815B50 ] SstpSvc C:\Windows\system32\sstpsvc.dll
11:35:10.0941 4412 SstpSvc - ok
11:35:10.0957 4412 [ DB32D325C192B801DF274BFD12A7E72B ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys
11:35:10.0972 4412 stexstor - ok
11:35:11.0004 4412 [ E1FB3706030FB4578A0D72C2FC3689E4 ] StiSvc C:\Windows\System32\wiaservc.dll
11:35:11.0019 4412 StiSvc - ok
11:35:11.0035 4412 [ E58C78A848ADD9610A4DB6D214AF5224 ] swenum C:\Windows\system32\drivers\swenum.sys
11:35:11.0035 4412 swenum - ok
11:35:11.0050 4412 [ A28BD92DF340E57B024BA433165D34D7 ] swprv C:\Windows\System32\swprv.dll
11:35:11.0066 4412 swprv - ok
11:35:11.0097 4412 [ 36650D618CA34C9D357DFD3D89B2C56F ] SysMain C:\Windows\system32\sysmain.dll
11:35:11.0113 4412 SysMain - ok
11:35:11.0144 4412 [ 763FECDC3D30C815FE72DD57936C6CD1 ] TabletInputService C:\Windows\System32\TabSvc.dll
11:35:11.0144 4412 TabletInputService - ok
11:35:11.0175 4412 [ 613BF4820361543956909043A265C6AC ] TapiSrv C:\Windows\System32\tapisrv.dll
11:35:11.0175 4412 TapiSrv - ok
11:35:11.0191 4412 [ B799D9FDB26111737F58288D8DC172D9 ] TBS C:\Windows\System32\tbssvc.dll
11:35:11.0191 4412 TBS - ok
11:35:11.0254 4412 [ 7C0507D2391AF5933600CBCED799F277 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
11:35:11.0269 4412 Tcpip - ok
11:35:11.0300 4412 [ 7C0507D2391AF5933600CBCED799F277 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
11:35:11.0300 4412 TCPIP6 - ok
11:35:11.0316 4412 [ 3EEBD3BD93DA46A26E89893C7AB2FF3B ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
11:35:11.0316 4412 tcpipreg - ok
11:35:11.0332 4412 [ 1CB91B2BD8F6DD367DFC2EF26FD751B2 ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
11:35:11.0347 4412 TDPIPE - ok
11:35:11.0379 4412 [ 2C2C5AFE7EE4F620D69C23C0617651A8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
11:35:11.0394 4412 TDTCP - ok
11:35:11.0425 4412 [ B459575348C20E8121D6039DA063C704 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
11:35:11.0457 4412 tdx - ok
11:35:11.0472 4412 [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20 ] TermDD C:\Windows\system32\drivers\termdd.sys
11:35:11.0488 4412 TermDD - ok
11:35:11.0519 4412 [ 382C804C92811BE57829D8E550A900E2 ] TermService C:\Windows\System32\termsrv.dll
11:35:11.0519 4412 TermService - ok
11:35:11.0535 4412 [ 42FB6AFD6B79D9FE07381609172E7CA4 ] Themes C:\Windows\system32\themeservice.dll
11:35:11.0535 4412 Themes - ok
11:35:11.0550 4412 [ 146B6F43A673379A3C670E86D89BE5EA ] THREADORDER C:\Windows\system32\mmcss.dll
11:35:11.0550 4412 THREADORDER - ok
11:35:11.0566 4412 [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A ] TrkWks C:\Windows\System32\trkwks.dll
11:35:11.0582 4412 TrkWks - ok
11:35:11.0644 4412 [ 2C49B175AEE1D4364B91B531417FE583 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
11:35:11.0644 4412 TrustedInstaller - ok
11:35:11.0660 4412 [ 254BB140EEE3C59D6114C1A86B636877 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
11:35:11.0707 4412 tssecsrv - ok
11:35:11.0738 4412 [ FD1D6C73E6333BE727CBCC6054247654 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
11:35:11.0738 4412 TsUsbFlt - ok
11:35:11.0769 4412 [ B2FA25D9B17A68BB93D58B0556E8C90D ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
11:35:11.0769 4412 tunnel - ok
11:35:11.0800 4412 [ 750FBCB269F4D7DD2E420C56B795DB6D ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys
11:35:11.0800 4412 uagp35 - ok
11:35:11.0816 4412 [ EE43346C7E4B5E63E54F927BABBB32FF ] udfs C:\Windows\system32\DRIVERS\udfs.sys
11:35:11.0847 4412 udfs - ok
11:35:11.0863 4412 [ 8344FD4FCE927880AA1AA7681D4927E5 ] UI0Detect C:\Windows\system32\UI0Detect.exe
11:35:11.0863 4412 UI0Detect - ok
11:35:11.0894 4412 [ 44E8048ACE47BEFBFDC2E9BE4CBC8880 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
11:35:11.0910 4412 uliagpkx - ok
11:35:11.0941 4412 [ D295BED4B898F0FD999FCFA9B32B071B ] umbus C:\Windows\system32\DRIVERS\umbus.sys
11:35:11.0957 4412 umbus - ok
11:35:11.0972 4412 [ 7550AD0C6998BA1CB4843E920EE0FEAC ] UmPass C:\Windows\system32\DRIVERS\umpass.sys
11:35:11.0972 4412 UmPass - ok
11:35:11.0988 4412 [ 833FBB672460EFCE8011D262175FAD33 ] upnphost C:\Windows\System32\upnphost.dll
11:35:11.0988 4412 upnphost - ok
11:35:12.0004 4412 [ BD9C55D7023C5DE374507ACC7A14E2AC ] usbccgp C:\Windows\system32\drivers\usbccgp.sys
11:35:12.0004 4412 usbccgp - ok
11:35:12.0035 4412 [ 04EC7CEC62EC3B6D9354EEE93327FC82 ] usbcir C:\Windows\system32\drivers\usbcir.sys
11:35:12.0035 4412 usbcir - ok
11:35:12.0050 4412 [ F92DE757E4B7CE9C07C5E65423F3AE3B ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
11:35:12.0066 4412 usbehci - ok
11:35:12.0082 4412 [ 8DC94AEC6A7E644A06135AE7506DC2E9 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
11:35:12.0082 4412 usbhub - ok
11:35:12.0082 4412 [ E185D44FAC515A18D9DEDDC23C2CDF44 ] usbohci C:\Windows\system32\drivers\usbohci.sys
11:35:12.0097 4412 usbohci - ok
11:35:12.0097 4412 [ 797D862FE0875E75C7CC4C1AD7B30252 ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
11:35:12.0113 4412 usbprint - ok
11:35:12.0113 4412 [ F991AB9CC6B908DB552166768176896A ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
11:35:12.0129 4412 USBSTOR - ok
11:35:12.0144 4412 [ 68DF884CF41CDADA664BEB01DAF67E3D ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys
11:35:12.0144 4412 usbuhci - ok
11:35:12.0160 4412 [ 081E6E1C91AEC36758902A9F727CD23C ] UxSms C:\Windows\System32\uxsms.dll
11:35:12.0160 4412 UxSms - ok
11:35:12.0160 4412 [ 81951F51E318AECC2D68559E47485CC4 ] VaultSvc C:\Windows\system32\lsass.exe
11:35:12.0175 4412 VaultSvc - ok
11:35:12.0175 4412 [ A059C4C3EDB09E07D21A8E5C0AABD3CB ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
11:35:12.0175 4412 vdrvroot - ok
11:35:12.0207 4412 [ C3CD30495687C2A2F66A65CA6FD89BE9 ] vds C:\Windows\System32\vds.exe
11:35:12.0207 4412 vds - ok
11:35:12.0238 4412 [ 17C408214EA61696CEC9C66E388B14F3 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
11:35:12.0238 4412 vga - ok
11:35:12.0238 4412 [ 8E38096AD5C8570A6F1570A61E251561 ] VgaSave C:\Windows\System32\drivers\vga.sys
11:35:12.0238 4412 VgaSave - ok
11:35:12.0238 4412 [ 5461686CCA2FDA57B024547733AB42E3 ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
11:35:12.0269 4412 vhdmp - ok
11:35:12.0269 4412 [ C829317A37B4BEA8F39735D4B076E923 ] viaagp C:\Windows\system32\drivers\viaagp.sys
11:35:12.0285 4412 viaagp - ok
11:35:12.0316 4412 [ E02F079A6AA107F06B16549C6E5C7B74 ] ViaC7 C:\Windows\system32\DRIVERS\viac7.sys
11:35:12.0316 4412 ViaC7 - ok
11:35:12.0316 4412 [ E43574F6A56A0EE11809B48C09E4FD3C ] viaide C:\Windows\system32\drivers\viaide.sys
11:35:12.0316 4412 viaide - ok
11:35:12.0332 4412 [ 4C63E00F2F4B5F86AB48A58CD990F212 ] volmgr C:\Windows\system32\drivers\volmgr.sys
11:35:12.0363 4412 volmgr - ok
11:35:12.0394 4412 [ B5BB72067DDDDBBFB04B2F89FF8C3C87 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
11:35:12.0394 4412 volmgrx - ok
11:35:12.0410 4412 [ F497F67932C6FA693D7DE2780631CFE7 ] volsnap C:\Windows\system32\drivers\volsnap.sys
11:35:12.0441 4412 volsnap - ok
11:35:12.0457 4412 [ 9DFA0CC2F8855A04816729651175B631 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys
11:35:12.0457 4412 vsmraid - ok
11:35:12.0504 4412 [ 209A3B1901B83AEB8527ED211CCE9E4C ] VSS C:\Windows\system32\vssvc.exe
11:35:12.0504 4412 VSS - ok
11:35:12.0519 4412 [ 90567B1E658001E79D7C8BBD3DDE5AA6 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys
11:35:12.0519 4412 vwifibus - ok
11:35:12.0535 4412 [ 55187FD710E27D5095D10A472C8BAF1C ] W32Time C:\Windows\system32\w32time.dll
11:35:12.0535 4412 W32Time - ok
11:35:12.0535 4412 [ DE3721E89C653AA281428C8A69745D90 ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys
11:35:12.0550 4412 WacomPen - ok
11:35:12.0550 4412 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
11:35:12.0566 4412 WANARP - ok
11:35:12.0582 4412 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
11:35:12.0582 4412 Wanarpv6 - ok
11:35:12.0629 4412 [ 353A04C273EC58475D8633E75CCD5604 ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
11:35:12.0644 4412 WatAdminSvc - ok
11:35:12.0675 4412 [ 691E3285E53DCA558E1A84667F13E15A ] wbengine C:\Windows\system32\wbengine.exe
11:35:12.0691 4412 wbengine - ok
11:35:12.0707 4412 [ 9614B5D29DC76AC3C29F6D2D3AA70E67 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
11:35:12.0707 4412 WbioSrvc - ok
11:35:12.0754 4412 [ 34EEE0DFAADB4F691D6D5308A51315DC ] wcncsvc C:\Windows\System32\wcncsvc.dll
11:35:12.0754 4412 wcncsvc - ok
11:35:12.0769 4412 [ 5D930B6357A6D2AF4D7653BDABBF352F ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
11:35:12.0769 4412 WcsPlugInService - ok
11:35:12.0769 4412 [ 1112A9BADACB47B7C0BB0392E3158DFF ] Wd C:\Windows\system32\DRIVERS\wd.sys
11:35:12.0785 4412 Wd - ok
11:35:12.0816 4412 [ A840213F1ACDCC175B4D1D5AAEAC0D7A ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
11:35:12.0816 4412 Wdf01000 - ok
11:35:12.0832 4412 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiServiceHost C:\Windows\system32\wdi.dll
11:35:12.0832 4412 WdiServiceHost - ok
11:35:12.0832 4412 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiSystemHost C:\Windows\system32\wdi.dll
11:35:12.0832 4412 WdiSystemHost - ok
11:35:12.0863 4412 [ A9D880F97530D5B8FEE278923349929D ] WebClient C:\Windows\System32\webclnt.dll
11:35:12.0863 4412 WebClient - ok
11:35:12.0879 4412 [ 760F0AFE937A77CFF27153206534F275 ] Wecsvc C:\Windows\system32\wecsvc.dll
11:35:12.0879 4412 Wecsvc - ok
11:35:12.0894 4412 [ AC804569BB2364FB6017370258A4091B ] wercplsupport C:\Windows\System32\wercplsupport.dll
11:35:12.0894 4412 wercplsupport - ok
11:35:12.0910 4412 [ 08E420D873E4FD85241EE2421B02C4A4 ] WerSvc C:\Windows\System32\WerSvc.dll
11:35:12.0910 4412 WerSvc - ok
11:35:12.0925 4412 [ 8B9A943F3B53861F2BFAF6C186168F79 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
11:35:12.0941 4412 WfpLwf - ok
11:35:12.0957 4412 [ 5CF95B35E59E2A38023836FFF31BE64C ] WIMMount C:\Windows\system32\drivers\wimmount.sys
11:35:12.0957 4412 WIMMount - ok
11:35:13.0004 4412 [ 3FAE8F94296001C32EAB62CD7D82E0FD ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll
11:35:13.0019 4412 WinDefend - ok
11:35:13.0019 4412 WinHttpAutoProxySvc - ok
11:35:13.0066 4412 [ F62E510B6AD4C21EB9FE8668ED251826 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
11:35:13.0066 4412 Winmgmt - ok
11:35:13.0113 4412 [ 1B91CD34EA3A90AB6A4EF0550174F4CC ] WinRM C:\Windows\system32\WsmSvc.dll
11:35:13.0129 4412 WinRM - ok
11:35:13.0175 4412 [ A67E5F9A400F3BD1BE3D80613B45F708 ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
11:35:13.0175 4412 WinUsb - ok
11:35:13.0207 4412 [ 16935C98FF639D185086A3529B1F2067 ] Wlansvc C:\Windows\System32\wlansvc.dll
11:35:13.0207 4412 Wlansvc - ok
11:35:13.0222 4412 [ 0217679B8FCA58714C3BF2726D2CA84E ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
11:35:13.0238 4412 WmiAcpi - ok
11:35:13.0254 4412 [ 6EB6B66517B048D87DC1856DDF1F4C3F ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
11:35:13.0254 4412 wmiApSrv - ok
11:35:13.0285 4412 [ 3B40D3A61AA8C21B88AE57C58AB3122E ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
11:35:13.0300 4412 WMPNetworkSvc - ok
11:35:13.0316 4412 [ A2F0EC770A92F2B3F9DE6D518E11409C ] WPCSvc C:\Windows\System32\wpcsvc.dll
11:35:13.0316 4412 WPCSvc - ok
11:35:13.0347 4412 [ AA53356D60AF47EACC85BC617A4F3F66 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
11:35:13.0347 4412 WPDBusEnum - ok
11:35:13.0347 4412 [ 6DB3276587B853BF886B69528FDB048C ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
11:35:13.0363 4412 ws2ifsl - ok
11:35:13.0379 4412 [ 6F5D49EFE0E7164E03AE773A3FE25340 ] wscsvc C:\Windows\System32\wscsvc.dll
11:35:13.0394 4412 wscsvc - ok
11:35:13.0394 4412 WSearch - ok
11:35:13.0441 4412 [ FC3EC24FCE372C89423E015A2AC1A31E ] wuauserv C:\Windows\system32\wuaueng.dll
11:35:13.0457 4412 wuauserv - ok
11:35:13.0472 4412 [ 06E6F32C8D0A3F66D956F57B43A2E070 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
11:35:13.0472 4412 WudfPf - ok
11:35:13.0504 4412 [ 867C301E8B790040AE9CF6486E8041DF ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
11:35:13.0504 4412 WUDFRd - ok
11:35:13.0519 4412 [ FE47B7BC8EA320C2D9B5E5BF6E303765 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
11:35:13.0535 4412 wudfsvc - ok
11:35:13.0535 4412 [ FF2D745B560F7C71B31F30F4D49F73D2 ] WwanSvc C:\Windows\System32\wwansvc.dll
11:35:13.0550 4412 WwanSvc - ok
Re: Prosím o kontrolu logu
11:35:13.0550 4412 ================ Scan global ===============================
11:35:13.0582 4412 [ DAB748AE0439955ED2FA22357533DDDB ] C:\Windows\system32\basesrv.dll
11:35:13.0613 4412 [ 1F5F07091D50244F17DD8D5147A628CC ] C:\Windows\system32\winsrv.dll
11:35:13.0613 4412 [ 1F5F07091D50244F17DD8D5147A628CC ] C:\Windows\system32\winsrv.dll
11:35:13.0629 4412 [ 364455805E64882844EE9ACB72522830 ] C:\Windows\system32\sxssrv.dll
11:35:13.0660 4412 [ 5F1B6A9C35D3D5CA72D6D6FDEF9747D6 ] C:\Windows\system32\services.exe
11:35:13.0660 4412 [Global] - ok
11:35:13.0660 4412 ================ Scan MBR ==================================
11:35:13.0691 4412 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
11:35:13.0832 4412 \Device\Harddisk0\DR0 - ok
11:35:13.0832 4412 ================ Scan VBR ==================================
11:35:13.0832 4412 [ 29EB82BE2304FE9EEE6BBEBF0573D99F ] \Device\Harddisk0\DR0\Partition1
11:35:13.0832 4412 \Device\Harddisk0\DR0\Partition1 - ok
11:35:13.0847 4412 [ 908B7E4B94383B37253006D604B1D73A ] \Device\Harddisk0\DR0\Partition2
11:35:13.0847 4412 \Device\Harddisk0\DR0\Partition2 - ok
11:35:13.0863 4412 [ BD4A20CB66D67372FAAB7925CAB3D121 ] \Device\Harddisk0\DR0\Partition3
11:35:13.0863 4412 \Device\Harddisk0\DR0\Partition3 - ok
11:35:13.0863 4412 ============================================================
11:35:13.0863 4412 Scan finished
11:35:13.0863 4412 ============================================================
11:35:13.0879 4768 Detected object count: 0
11:35:13.0879 4768 Actual detected object count: 0
11:35:31.0504 1740 Deinitialize success
ComboFix 13-02-15.01 - user 17.02.2013 11:42:00.1.4 - x86
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.3327.2312 [GMT 1:00]
Spuštěný z: c:\users\user\Desktop\ComboFix.exe
AV: ESET Smart Security 4.2 *Disabled/Updated* {77DEAFED-8149-104B-25A1-21771CA47CD1}
FW: ESET personal firewall *Enabled* {4FE52EC8-CB26-1113-0EFE-8842E2773BAA}
SP: ESET Smart Security 4.2 *Disabled/Updated* {CCBF4E09-A773-1FC5-1F11-1A056723366C}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Vytvořen nový Bod Obnovení
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2013-01-17 do 2013-02-17 )))))))))))))))))))))))))))))))
.
.
2013-02-17 10:45 . 2013-02-17 10:45 -------- d-----w- c:\users\Default\AppData\Local\temp
2013-02-17 10:36 . 2013-02-17 10:36 -------- d-----w- c:\users\user\AppData\Local\ATI
2013-02-17 09:58 . 2013-02-17 09:58 -------- d-----w- c:\users\user\AppData\Roaming\Malwarebytes
2013-02-17 09:58 . 2013-02-17 09:58 -------- d-----w- c:\programdata\Malwarebytes
2013-02-17 09:58 . 2013-02-17 09:58 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2013-02-17 09:58 . 2012-12-14 15:49 21104 ----a-w- c:\windows\system32\drivers\mbam.sys
2013-02-17 09:58 . 2013-02-17 09:58 -------- d-----w- c:\users\user\AppData\Local\Programs
2013-02-15 10:04 . 2013-01-08 04:57 6991832 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{05701183-3882-4CFA-9C43-FD18A4D6F7CA}\mpengine.dll
2013-02-13 20:37 . 2013-01-04 03:00 2347008 ----a-w- c:\windows\system32\win32k.sys
2013-02-13 20:37 . 2013-01-05 05:00 3967848 ----a-w- c:\windows\system32\ntkrnlpa.exe
2013-02-13 20:36 . 2013-01-05 05:00 3913064 ----a-w- c:\windows\system32\ntoskrnl.exe
2013-02-13 20:36 . 2013-01-03 05:05 1293672 ----a-w- c:\windows\system32\drivers\tcpip.sys
2013-02-13 20:36 . 2013-01-03 05:04 187752 ----a-w- c:\windows\system32\drivers\FWPKCLNT.SYS
2013-02-13 20:36 . 2013-01-04 04:50 169984 ----a-w- c:\windows\system32\winsrv.dll
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-02-09 20:25 . 2012-04-09 05:43 697712 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-02-09 20:25 . 2011-09-08 17:51 74096 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-01-31 11:16 . 2011-09-23 21:19 138464 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2013-01-31 11:15 . 2011-09-23 21:18 111928 ----a-w- c:\windows\system32\PnkBstrB.exe
2013-01-31 11:15 . 2011-09-23 21:18 111928 ----a-w- c:\windows\system32\PnkBstrB.ex0
2013-01-17 00:28 . 2011-09-06 11:30 232336 ------w- c:\windows\system32\MpSigStub.exe
2012-12-16 14:13 . 2012-12-21 21:14 295424 ----a-w- c:\windows\system32\atmfd.dll
2012-12-16 14:13 . 2012-12-21 21:14 34304 ----a-w- c:\windows\system32\atmlib.dll
2012-12-07 12:26 . 2013-01-09 20:29 308736 ----a-w- c:\windows\system32\Wpc.dll
2012-12-07 12:20 . 2013-01-09 20:29 2576384 ----a-w- c:\windows\system32\gameux.dll
2012-12-07 10:46 . 2013-01-09 20:29 43520 ----a-w- c:\windows\system32\csrr.rs
2012-12-07 10:46 . 2013-01-09 20:29 30720 ----a-w- c:\windows\system32\usk.rs
2012-12-07 10:46 . 2013-01-09 20:29 45568 ----a-w- c:\windows\system32\oflc-nz.rs
2012-12-07 10:46 . 2013-01-09 20:29 44544 ----a-w- c:\windows\system32\pegibbfc.rs
2012-12-07 10:46 . 2013-01-09 20:29 20480 ----a-w- c:\windows\system32\pegi-pt.rs
2012-12-07 10:46 . 2013-01-09 20:29 23552 ----a-w- c:\windows\system32\oflc.rs
2012-12-07 10:46 . 2013-01-09 20:29 20480 ----a-w- c:\windows\system32\pegi-fi.rs
2012-12-07 10:46 . 2013-01-09 20:29 46592 ----a-w- c:\windows\system32\fpb.rs
2012-12-07 10:46 . 2013-01-09 20:29 20480 ----a-w- c:\windows\system32\pegi.rs
2012-12-07 10:46 . 2013-01-09 20:29 21504 ----a-w- c:\windows\system32\grb.rs
2012-12-07 10:46 . 2013-01-09 20:29 40960 ----a-w- c:\windows\system32\cob-au.rs
2012-12-07 10:46 . 2013-01-09 20:29 15360 ----a-w- c:\windows\system32\djctq.rs
2012-12-07 10:46 . 2013-01-09 20:29 55296 ----a-w- c:\windows\system32\cero.rs
2012-12-07 10:46 . 2013-01-09 20:29 51712 ----a-w- c:\windows\system32\esrb.rs
2012-11-30 04:47 . 2013-01-09 20:29 293376 ----a-w- c:\windows\system32\KernelBase.dll
2012-11-30 04:45 . 2013-01-09 20:29 4608 ---ha-w- c:\windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2012-11-30 04:45 . 2013-01-09 20:29 4096 ---ha-w- c:\windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2012-11-30 04:45 . 2013-01-09 20:29 4096 ---ha-w- c:\windows\system32\api-ms-win-core-synch-l1-1-0.dll
2012-11-30 04:45 . 2013-01-09 20:29 4096 ---ha-w- c:\windows\system32\api-ms-win-core-misc-l1-1-0.dll
2012-11-30 04:45 . 2013-01-09 20:29 4096 ---ha-w- c:\windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2012-11-30 04:45 . 2013-01-09 20:29 3584 ---ha-w- c:\windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2012-11-30 04:45 . 2013-01-09 20:29 3584 ---ha-w- c:\windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2012-11-30 04:45 . 2013-01-09 20:29 3584 ---ha-w- c:\windows\system32\api-ms-win-core-memory-l1-1-0.dll
2012-11-30 04:45 . 2013-01-09 20:29 3584 ---ha-w- c:\windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2012-11-30 04:45 . 2013-01-09 20:29 3584 ---ha-w- c:\windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2012-11-30 04:45 . 2013-01-09 20:29 3072 ---ha-w- c:\windows\system32\api-ms-win-core-string-l1-1-0.dll
2012-11-30 04:45 . 2013-01-09 20:29 3072 ---ha-w- c:\windows\system32\api-ms-win-core-profile-l1-1-0.dll
2012-11-30 04:45 . 2013-01-09 20:29 3072 ---ha-w- c:\windows\system32\api-ms-win-core-io-l1-1-0.dll
2012-11-30 04:45 . 2013-01-09 20:29 4096 ---ha-w- c:\windows\system32\api-ms-win-core-localization-l1-1-0.dll
2012-11-30 04:45 . 2013-01-09 20:29 3584 ---ha-w- c:\windows\system32\api-ms-win-core-heap-l1-1-0.dll
2012-11-30 04:45 . 2013-01-09 20:29 3072 ---ha-w- c:\windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2012-11-30 04:45 . 2013-01-09 20:29 5120 ---ha-w- c:\windows\system32\api-ms-win-core-file-l1-1-0.dll
2012-11-30 04:45 . 2013-01-09 20:29 3072 ---ha-w- c:\windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2012-11-30 04:45 . 2013-01-09 20:29 3072 ---ha-w- c:\windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2012-11-30 04:45 . 2013-01-09 20:29 3072 ---ha-w- c:\windows\system32\api-ms-win-core-handle-l1-1-0.dll
2012-11-30 04:45 . 2013-01-09 20:29 3072 ---ha-w- c:\windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2012-11-30 04:45 . 2013-01-09 20:29 3072 ---ha-w- c:\windows\system32\api-ms-win-core-debug-l1-1-0.dll
2012-11-30 04:45 . 2013-01-09 20:29 3072 ---ha-w- c:\windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2012-11-30 04:45 . 2013-01-09 20:29 3072 ---ha-w- c:\windows\system32\api-ms-win-core-console-l1-1-0.dll
2012-11-30 02:55 . 2013-01-09 20:29 271360 ----a-w- c:\windows\system32\conhost.exe
2012-11-30 02:38 . 2013-01-09 20:29 6144 ---ha-w- c:\windows\system32\api-ms-win-security-base-l1-1-0.dll
2012-11-30 02:38 . 2013-01-09 20:29 4608 ---ha-w- c:\windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2012-11-30 02:38 . 2013-01-09 20:29 3584 ---ha-w- c:\windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2012-11-30 02:38 . 2013-01-09 20:29 3072 ---ha-w- c:\windows\system32\api-ms-win-core-util-l1-1-0.dll
2012-11-23 02:48 . 2013-01-09 20:29 49152 ----a-w- c:\windows\system32\taskhost.exe
2012-11-22 04:45 . 2013-01-09 20:30 626688 ----a-w- c:\windows\system32\usp10.dll
2012-11-20 04:51 . 2013-01-09 20:29 220160 ----a-w- c:\windows\system32\ncrypt.dll
2013-02-06 14:11 . 2013-02-06 14:11 262552 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1174016]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2006-10-26 31016]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2011-07-28 336384]
"egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2010-08-12 2215064]
.
c:\users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk - c:\program files\Microsoft Office\Office12\ONENOTEM.EXE [2006-10-26 98632]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [x]
S1 ehdrv;ehdrv;c:\windows\system32\DRIVERS\ehdrv.sys [x]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [x]
S2 eamonm;eamonm;c:\windows\system32\DRIVERS\eamonm.sys [x]
S2 ekrn;ESET Service;c:\program files\ESET\ESET Smart Security\ekrn.exe [x]
S2 epfwwfp;epfwwfp;c:\windows\system32\DRIVERS\epfwwfp.sys [x]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW73.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt86win7.sys [x]
.
.
Obsah adresáře 'Naplánované úlohy'
.
2013-02-17 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-09 20:25]
.
.
------- Doplňkový sken -------
.
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
TCP: DhcpNameServer = 213.46.172.36 213.46.172.37
FF - ProfilePath - c:\users\user\AppData\Roaming\Mozilla\Firefox\Profiles\pdcpq8rn.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.cz
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
AddRemove-{08A25478-C5DD-4EA7-B168-3D687CA987FF} - c:\program files\InstallShield Installation Information\{08A25478-C5DD-4EA7-B168-3D687CA987FF}\Sims3SP05Setup.exe
AddRemove-{117B6BF6-82C3-420C-B284-9247C8568E53} - c:\program files\InstallShield Installation Information\{117B6BF6-82C3-420C-B284-9247C8568E53}\setup.exe
AddRemove-{3BBFD444-5FAB-49F6-98B1-A1954E831399} - c:\program files\InstallShield Installation Information\{3BBFD444-5FAB-49F6-98B1-A1954E831399}\Sims3EP06Setup.exe
AddRemove-{45057FCE-5784-48BE-8176-D9D00AF56C3C} - c:\program files\InstallShield Installation Information\{45057FCE-5784-48BE-8176-D9D00AF56C3C}\setup.exe
AddRemove-{71828142-5A24-4BD0-97E7-976DA08CE6CF} - c:\program files\InstallShield Installation Information\{71828142-5A24-4BD0-97E7-976DA08CE6CF}\setup.exe
AddRemove-{7B11296A-F894-449C-8DF6-6AAAA7D4D118} - c:\program files\InstallShield Installation Information\{7B11296A-F894-449C-8DF6-6AAAA7D4D118}\Sims3SP04Setup.exe
AddRemove-{910F4A29-1134-49E0-AD8B-56E4A3152BD1} - c:\program files\InstallShield Installation Information\{910F4A29-1134-49E0-AD8B-56E4A3152BD1}\setup.exe
AddRemove-{BA26FFA5-6D47-47DB-BE56-34C357B5F8CC} - c:\program files\InstallShield Installation Information\{BA26FFA5-6D47-47DB-BE56-34C357B5F8CC}\setup.exe
AddRemove-{C05D8CDB-417D-4335-A38C-A0659EDFD6B8} - c:\program files\InstallShield Installation Information\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}\setup.exe
AddRemove-{C12631C6-804D-4B32-B0DD-8A496462F106} - c:\program files\InstallShield Installation Information\{C12631C6-804D-4B32-B0DD-8A496462F106}\Sims3EP05Setup.exe
AddRemove-{E6B88BD6-E4B2-4701-A648-B6DAC6E491CC} - c:\program files\InstallShield Installation Information\{E6B88BD6-E4B2-4701-A648-B6DAC6E491CC}\Sims3EP04Setup.exe
AddRemove-{ED436EA8-4145-4703-AE5D-4D09DD24AF5A} - c:\program files\InstallShield Installation Information\{ED436EA8-4145-4703-AE5D-4D09DD24AF5A}\setup.exe
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'Explorer.exe'(3268)
c:\windows\system32\AUDIOSES.DLL
c:\windows\System32\Actioncenter.dll
c:\windows\system32\fxsst.dll
.
Celkový čas: 2013-02-17 11:46:16
ComboFix-quarantined-files.txt 2013-02-17 10:46
.
Před spuštěním: Volných bajtů: 201 712 304 128
Po spuštění: Volných bajtů: 201 622 175 744
.
- - End Of File - - D488CE93E655DD296D1B2526FD063E03
11:35:13.0582 4412 [ DAB748AE0439955ED2FA22357533DDDB ] C:\Windows\system32\basesrv.dll
11:35:13.0613 4412 [ 1F5F07091D50244F17DD8D5147A628CC ] C:\Windows\system32\winsrv.dll
11:35:13.0613 4412 [ 1F5F07091D50244F17DD8D5147A628CC ] C:\Windows\system32\winsrv.dll
11:35:13.0629 4412 [ 364455805E64882844EE9ACB72522830 ] C:\Windows\system32\sxssrv.dll
11:35:13.0660 4412 [ 5F1B6A9C35D3D5CA72D6D6FDEF9747D6 ] C:\Windows\system32\services.exe
11:35:13.0660 4412 [Global] - ok
11:35:13.0660 4412 ================ Scan MBR ==================================
11:35:13.0691 4412 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
11:35:13.0832 4412 \Device\Harddisk0\DR0 - ok
11:35:13.0832 4412 ================ Scan VBR ==================================
11:35:13.0832 4412 [ 29EB82BE2304FE9EEE6BBEBF0573D99F ] \Device\Harddisk0\DR0\Partition1
11:35:13.0832 4412 \Device\Harddisk0\DR0\Partition1 - ok
11:35:13.0847 4412 [ 908B7E4B94383B37253006D604B1D73A ] \Device\Harddisk0\DR0\Partition2
11:35:13.0847 4412 \Device\Harddisk0\DR0\Partition2 - ok
11:35:13.0863 4412 [ BD4A20CB66D67372FAAB7925CAB3D121 ] \Device\Harddisk0\DR0\Partition3
11:35:13.0863 4412 \Device\Harddisk0\DR0\Partition3 - ok
11:35:13.0863 4412 ============================================================
11:35:13.0863 4412 Scan finished
11:35:13.0863 4412 ============================================================
11:35:13.0879 4768 Detected object count: 0
11:35:13.0879 4768 Actual detected object count: 0
11:35:31.0504 1740 Deinitialize success
ComboFix 13-02-15.01 - user 17.02.2013 11:42:00.1.4 - x86
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.3327.2312 [GMT 1:00]
Spuštěný z: c:\users\user\Desktop\ComboFix.exe
AV: ESET Smart Security 4.2 *Disabled/Updated* {77DEAFED-8149-104B-25A1-21771CA47CD1}
FW: ESET personal firewall *Enabled* {4FE52EC8-CB26-1113-0EFE-8842E2773BAA}
SP: ESET Smart Security 4.2 *Disabled/Updated* {CCBF4E09-A773-1FC5-1F11-1A056723366C}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Vytvořen nový Bod Obnovení
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2013-01-17 do 2013-02-17 )))))))))))))))))))))))))))))))
.
.
2013-02-17 10:45 . 2013-02-17 10:45 -------- d-----w- c:\users\Default\AppData\Local\temp
2013-02-17 10:36 . 2013-02-17 10:36 -------- d-----w- c:\users\user\AppData\Local\ATI
2013-02-17 09:58 . 2013-02-17 09:58 -------- d-----w- c:\users\user\AppData\Roaming\Malwarebytes
2013-02-17 09:58 . 2013-02-17 09:58 -------- d-----w- c:\programdata\Malwarebytes
2013-02-17 09:58 . 2013-02-17 09:58 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2013-02-17 09:58 . 2012-12-14 15:49 21104 ----a-w- c:\windows\system32\drivers\mbam.sys
2013-02-17 09:58 . 2013-02-17 09:58 -------- d-----w- c:\users\user\AppData\Local\Programs
2013-02-15 10:04 . 2013-01-08 04:57 6991832 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{05701183-3882-4CFA-9C43-FD18A4D6F7CA}\mpengine.dll
2013-02-13 20:37 . 2013-01-04 03:00 2347008 ----a-w- c:\windows\system32\win32k.sys
2013-02-13 20:37 . 2013-01-05 05:00 3967848 ----a-w- c:\windows\system32\ntkrnlpa.exe
2013-02-13 20:36 . 2013-01-05 05:00 3913064 ----a-w- c:\windows\system32\ntoskrnl.exe
2013-02-13 20:36 . 2013-01-03 05:05 1293672 ----a-w- c:\windows\system32\drivers\tcpip.sys
2013-02-13 20:36 . 2013-01-03 05:04 187752 ----a-w- c:\windows\system32\drivers\FWPKCLNT.SYS
2013-02-13 20:36 . 2013-01-04 04:50 169984 ----a-w- c:\windows\system32\winsrv.dll
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-02-09 20:25 . 2012-04-09 05:43 697712 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-02-09 20:25 . 2011-09-08 17:51 74096 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-01-31 11:16 . 2011-09-23 21:19 138464 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2013-01-31 11:15 . 2011-09-23 21:18 111928 ----a-w- c:\windows\system32\PnkBstrB.exe
2013-01-31 11:15 . 2011-09-23 21:18 111928 ----a-w- c:\windows\system32\PnkBstrB.ex0
2013-01-17 00:28 . 2011-09-06 11:30 232336 ------w- c:\windows\system32\MpSigStub.exe
2012-12-16 14:13 . 2012-12-21 21:14 295424 ----a-w- c:\windows\system32\atmfd.dll
2012-12-16 14:13 . 2012-12-21 21:14 34304 ----a-w- c:\windows\system32\atmlib.dll
2012-12-07 12:26 . 2013-01-09 20:29 308736 ----a-w- c:\windows\system32\Wpc.dll
2012-12-07 12:20 . 2013-01-09 20:29 2576384 ----a-w- c:\windows\system32\gameux.dll
2012-12-07 10:46 . 2013-01-09 20:29 43520 ----a-w- c:\windows\system32\csrr.rs
2012-12-07 10:46 . 2013-01-09 20:29 30720 ----a-w- c:\windows\system32\usk.rs
2012-12-07 10:46 . 2013-01-09 20:29 45568 ----a-w- c:\windows\system32\oflc-nz.rs
2012-12-07 10:46 . 2013-01-09 20:29 44544 ----a-w- c:\windows\system32\pegibbfc.rs
2012-12-07 10:46 . 2013-01-09 20:29 20480 ----a-w- c:\windows\system32\pegi-pt.rs
2012-12-07 10:46 . 2013-01-09 20:29 23552 ----a-w- c:\windows\system32\oflc.rs
2012-12-07 10:46 . 2013-01-09 20:29 20480 ----a-w- c:\windows\system32\pegi-fi.rs
2012-12-07 10:46 . 2013-01-09 20:29 46592 ----a-w- c:\windows\system32\fpb.rs
2012-12-07 10:46 . 2013-01-09 20:29 20480 ----a-w- c:\windows\system32\pegi.rs
2012-12-07 10:46 . 2013-01-09 20:29 21504 ----a-w- c:\windows\system32\grb.rs
2012-12-07 10:46 . 2013-01-09 20:29 40960 ----a-w- c:\windows\system32\cob-au.rs
2012-12-07 10:46 . 2013-01-09 20:29 15360 ----a-w- c:\windows\system32\djctq.rs
2012-12-07 10:46 . 2013-01-09 20:29 55296 ----a-w- c:\windows\system32\cero.rs
2012-12-07 10:46 . 2013-01-09 20:29 51712 ----a-w- c:\windows\system32\esrb.rs
2012-11-30 04:47 . 2013-01-09 20:29 293376 ----a-w- c:\windows\system32\KernelBase.dll
2012-11-30 04:45 . 2013-01-09 20:29 4608 ---ha-w- c:\windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2012-11-30 04:45 . 2013-01-09 20:29 4096 ---ha-w- c:\windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2012-11-30 04:45 . 2013-01-09 20:29 4096 ---ha-w- c:\windows\system32\api-ms-win-core-synch-l1-1-0.dll
2012-11-30 04:45 . 2013-01-09 20:29 4096 ---ha-w- c:\windows\system32\api-ms-win-core-misc-l1-1-0.dll
2012-11-30 04:45 . 2013-01-09 20:29 4096 ---ha-w- c:\windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2012-11-30 04:45 . 2013-01-09 20:29 3584 ---ha-w- c:\windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2012-11-30 04:45 . 2013-01-09 20:29 3584 ---ha-w- c:\windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2012-11-30 04:45 . 2013-01-09 20:29 3584 ---ha-w- c:\windows\system32\api-ms-win-core-memory-l1-1-0.dll
2012-11-30 04:45 . 2013-01-09 20:29 3584 ---ha-w- c:\windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2012-11-30 04:45 . 2013-01-09 20:29 3584 ---ha-w- c:\windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2012-11-30 04:45 . 2013-01-09 20:29 3072 ---ha-w- c:\windows\system32\api-ms-win-core-string-l1-1-0.dll
2012-11-30 04:45 . 2013-01-09 20:29 3072 ---ha-w- c:\windows\system32\api-ms-win-core-profile-l1-1-0.dll
2012-11-30 04:45 . 2013-01-09 20:29 3072 ---ha-w- c:\windows\system32\api-ms-win-core-io-l1-1-0.dll
2012-11-30 04:45 . 2013-01-09 20:29 4096 ---ha-w- c:\windows\system32\api-ms-win-core-localization-l1-1-0.dll
2012-11-30 04:45 . 2013-01-09 20:29 3584 ---ha-w- c:\windows\system32\api-ms-win-core-heap-l1-1-0.dll
2012-11-30 04:45 . 2013-01-09 20:29 3072 ---ha-w- c:\windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2012-11-30 04:45 . 2013-01-09 20:29 5120 ---ha-w- c:\windows\system32\api-ms-win-core-file-l1-1-0.dll
2012-11-30 04:45 . 2013-01-09 20:29 3072 ---ha-w- c:\windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2012-11-30 04:45 . 2013-01-09 20:29 3072 ---ha-w- c:\windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2012-11-30 04:45 . 2013-01-09 20:29 3072 ---ha-w- c:\windows\system32\api-ms-win-core-handle-l1-1-0.dll
2012-11-30 04:45 . 2013-01-09 20:29 3072 ---ha-w- c:\windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2012-11-30 04:45 . 2013-01-09 20:29 3072 ---ha-w- c:\windows\system32\api-ms-win-core-debug-l1-1-0.dll
2012-11-30 04:45 . 2013-01-09 20:29 3072 ---ha-w- c:\windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2012-11-30 04:45 . 2013-01-09 20:29 3072 ---ha-w- c:\windows\system32\api-ms-win-core-console-l1-1-0.dll
2012-11-30 02:55 . 2013-01-09 20:29 271360 ----a-w- c:\windows\system32\conhost.exe
2012-11-30 02:38 . 2013-01-09 20:29 6144 ---ha-w- c:\windows\system32\api-ms-win-security-base-l1-1-0.dll
2012-11-30 02:38 . 2013-01-09 20:29 4608 ---ha-w- c:\windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2012-11-30 02:38 . 2013-01-09 20:29 3584 ---ha-w- c:\windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2012-11-30 02:38 . 2013-01-09 20:29 3072 ---ha-w- c:\windows\system32\api-ms-win-core-util-l1-1-0.dll
2012-11-23 02:48 . 2013-01-09 20:29 49152 ----a-w- c:\windows\system32\taskhost.exe
2012-11-22 04:45 . 2013-01-09 20:30 626688 ----a-w- c:\windows\system32\usp10.dll
2012-11-20 04:51 . 2013-01-09 20:29 220160 ----a-w- c:\windows\system32\ncrypt.dll
2013-02-06 14:11 . 2013-02-06 14:11 262552 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1174016]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2006-10-26 31016]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2011-07-28 336384]
"egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2010-08-12 2215064]
.
c:\users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk - c:\program files\Microsoft Office\Office12\ONENOTEM.EXE [2006-10-26 98632]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [x]
S1 ehdrv;ehdrv;c:\windows\system32\DRIVERS\ehdrv.sys [x]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [x]
S2 eamonm;eamonm;c:\windows\system32\DRIVERS\eamonm.sys [x]
S2 ekrn;ESET Service;c:\program files\ESET\ESET Smart Security\ekrn.exe [x]
S2 epfwwfp;epfwwfp;c:\windows\system32\DRIVERS\epfwwfp.sys [x]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW73.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt86win7.sys [x]
.
.
Obsah adresáře 'Naplánované úlohy'
.
2013-02-17 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-09 20:25]
.
.
------- Doplňkový sken -------
.
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
TCP: DhcpNameServer = 213.46.172.36 213.46.172.37
FF - ProfilePath - c:\users\user\AppData\Roaming\Mozilla\Firefox\Profiles\pdcpq8rn.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.cz
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
AddRemove-{08A25478-C5DD-4EA7-B168-3D687CA987FF} - c:\program files\InstallShield Installation Information\{08A25478-C5DD-4EA7-B168-3D687CA987FF}\Sims3SP05Setup.exe
AddRemove-{117B6BF6-82C3-420C-B284-9247C8568E53} - c:\program files\InstallShield Installation Information\{117B6BF6-82C3-420C-B284-9247C8568E53}\setup.exe
AddRemove-{3BBFD444-5FAB-49F6-98B1-A1954E831399} - c:\program files\InstallShield Installation Information\{3BBFD444-5FAB-49F6-98B1-A1954E831399}\Sims3EP06Setup.exe
AddRemove-{45057FCE-5784-48BE-8176-D9D00AF56C3C} - c:\program files\InstallShield Installation Information\{45057FCE-5784-48BE-8176-D9D00AF56C3C}\setup.exe
AddRemove-{71828142-5A24-4BD0-97E7-976DA08CE6CF} - c:\program files\InstallShield Installation Information\{71828142-5A24-4BD0-97E7-976DA08CE6CF}\setup.exe
AddRemove-{7B11296A-F894-449C-8DF6-6AAAA7D4D118} - c:\program files\InstallShield Installation Information\{7B11296A-F894-449C-8DF6-6AAAA7D4D118}\Sims3SP04Setup.exe
AddRemove-{910F4A29-1134-49E0-AD8B-56E4A3152BD1} - c:\program files\InstallShield Installation Information\{910F4A29-1134-49E0-AD8B-56E4A3152BD1}\setup.exe
AddRemove-{BA26FFA5-6D47-47DB-BE56-34C357B5F8CC} - c:\program files\InstallShield Installation Information\{BA26FFA5-6D47-47DB-BE56-34C357B5F8CC}\setup.exe
AddRemove-{C05D8CDB-417D-4335-A38C-A0659EDFD6B8} - c:\program files\InstallShield Installation Information\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}\setup.exe
AddRemove-{C12631C6-804D-4B32-B0DD-8A496462F106} - c:\program files\InstallShield Installation Information\{C12631C6-804D-4B32-B0DD-8A496462F106}\Sims3EP05Setup.exe
AddRemove-{E6B88BD6-E4B2-4701-A648-B6DAC6E491CC} - c:\program files\InstallShield Installation Information\{E6B88BD6-E4B2-4701-A648-B6DAC6E491CC}\Sims3EP04Setup.exe
AddRemove-{ED436EA8-4145-4703-AE5D-4D09DD24AF5A} - c:\program files\InstallShield Installation Information\{ED436EA8-4145-4703-AE5D-4D09DD24AF5A}\setup.exe
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'Explorer.exe'(3268)
c:\windows\system32\AUDIOSES.DLL
c:\windows\System32\Actioncenter.dll
c:\windows\system32\fxsst.dll
.
Celkový čas: 2013-02-17 11:46:16
ComboFix-quarantined-files.txt 2013-02-17 10:46
.
Před spuštěním: Volných bajtů: 201 712 304 128
Po spuštění: Volných bajtů: 201 622 175 744
.
- - End Of File - - D488CE93E655DD296D1B2526FD063E03
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu
ComboFix se odinstaluje takto:
Start-Spustit a zadej ComboFix /Uninstall
Vyčisti systém CCleanerem
Stáhni si OTC
na plochu. Poklepej na něj. Potom klikni na Clean up!.
Restartuj PC , pokud Ti bude doporučeno.
Stáhni si aswMBR
na svojí plochu. Uzavři všechna okna , programy a prohlížeče. Poklepej na aswMBR.exe. Pokud se objeví hláška o možnosti stáhnutí databáze Avastu , klikni na NE. Poté klikni na „Scan“ . Po skenu klikni na „Save Log“ a ulož si log na plochu .Zkopíruj sem celý obsah toho logu. Pak klikni na „Exit“ k zavření programu.
Start-Spustit a zadej ComboFix /Uninstall
Vyčisti systém CCleanerem
Stáhni si OTC
na plochu. Poklepej na něj. Potom klikni na Clean up!.
Restartuj PC , pokud Ti bude doporučeno.
Stáhni si aswMBR
na svojí plochu. Uzavři všechna okna , programy a prohlížeče. Poklepej na aswMBR.exe. Pokud se objeví hláška o možnosti stáhnutí databáze Avastu , klikni na NE. Poté klikni na „Scan“ . Po skenu klikni na „Save Log“ a ulož si log na plochu .Zkopíruj sem celý obsah toho logu. Pak klikni na „Exit“ k zavření programu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Prosím o kontrolu logu
Vše jsem provedl a přikládám výsledný log
aswMBR version 0.9.9.1707 Copyright(c) 2011 AVAST Software
Run date: 2013-02-18 17:51:09
-----------------------------
17:51:09.358 OS Version: Windows 6.1.7601 Service Pack 1
17:51:09.358 Number of processors: 4 586 0xF07
17:51:09.358 ComputerName: USER-PC UserName: user
17:51:30.311 Initialize success
17:51:42.492 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP2T0L0-3
17:51:42.492 Disk 0 Vendor: WDC_WD10EADS-00L5B1 01.01A01 Size: 953869MB BusType: 3
17:51:42.507 Disk 0 MBR read successfully
17:51:42.507 Disk 0 MBR scan
17:51:42.507 Disk 0 Windows 7 default MBR code
17:51:42.507 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 1255 MB offset 63
17:51:42.523 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 252694 MB offset 2570400
17:51:42.539 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 699917 MB offset 520088310
17:51:42.539 Disk 0 scanning sectors +1953520065
17:51:42.570 Disk 0 scanning C:\Windows\system32\drivers
17:51:50.851 Service scanning
17:52:01.664 Modules scanning
17:52:07.617 Disk 0 trace - called modules:
17:52:07.648 ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys halmacpi.dll ataport.SYS pciide.sys PCIIDEX.SYS atapi.sys
17:52:07.648 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x86297948]
17:52:07.648 3 CLASSPNP.SYS[8ca8c59e] -> nt!IofCallDriver -> [0x85d97918]
17:52:07.648 5 ACPI.sys[8c2253d4] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP2T0L0-3[0x85d7e908]
17:52:07.664 Scan finished successfully
17:52:41.726 Disk 0 MBR has been saved successfully to "C:\Users\user\Desktop\MBR.dat"
17:52:41.742 The log file has been saved successfully to "C:\Users\user\Desktop\aswMBR.txt"
aswMBR version 0.9.9.1707 Copyright(c) 2011 AVAST Software
Run date: 2013-02-18 17:51:09
-----------------------------
17:51:09.358 OS Version: Windows 6.1.7601 Service Pack 1
17:51:09.358 Number of processors: 4 586 0xF07
17:51:09.358 ComputerName: USER-PC UserName: user
17:51:30.311 Initialize success
17:51:42.492 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP2T0L0-3
17:51:42.492 Disk 0 Vendor: WDC_WD10EADS-00L5B1 01.01A01 Size: 953869MB BusType: 3
17:51:42.507 Disk 0 MBR read successfully
17:51:42.507 Disk 0 MBR scan
17:51:42.507 Disk 0 Windows 7 default MBR code
17:51:42.507 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 1255 MB offset 63
17:51:42.523 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 252694 MB offset 2570400
17:51:42.539 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 699917 MB offset 520088310
17:51:42.539 Disk 0 scanning sectors +1953520065
17:51:42.570 Disk 0 scanning C:\Windows\system32\drivers
17:51:50.851 Service scanning
17:52:01.664 Modules scanning
17:52:07.617 Disk 0 trace - called modules:
17:52:07.648 ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys halmacpi.dll ataport.SYS pciide.sys PCIIDEX.SYS atapi.sys
17:52:07.648 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x86297948]
17:52:07.648 3 CLASSPNP.SYS[8ca8c59e] -> nt!IofCallDriver -> [0x85d97918]
17:52:07.648 5 ACPI.sys[8c2253d4] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP2T0L0-3[0x85d7e908]
17:52:07.664 Scan finished successfully
17:52:41.726 Disk 0 MBR has been saved successfully to "C:\Users\user\Desktop\MBR.dat"
17:52:41.742 The log file has been saved successfully to "C:\Users\user\Desktop\aswMBR.txt"
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu
Vše OK. Jak jsou na tom problémy?
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Prosím o kontrolu logu Vyřešeno
Řekl bych že je vše v pořádku. Děkuji za pomoc.
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 112 hostů