Prosím o kontrolu logu

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Zubin332
Level 1.5
Level 1.5
Příspěvky: 101
Registrován: prosinec 10
Pohlaví: Nespecifikováno
Stav:
Offline

Prosím o kontrolu logu

Příspěvekod Zubin332 » 11 dub 2013 13:14

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:07:57, on 11.4.2013
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal

Running processes:
C:\Windows\SysWOW64\rundll32.exe
D:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Lenovo\Onekey Theater\OnekeySupport.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_6_602_180.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_6_602_180.exe
C:\Users\Kuba\Downloads\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.delta-search.com/?affID=1198 ... e50bab5853
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - D:\PROGRA~1\MICROS~1\Office12\GR469A~1.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [GrooveMonitor] "D:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-2821126583-4238001618-3695001564-1001\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-2821126583-4238001618-3695001564-1001\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://D:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\PROGRA~1\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\PROGRA~1\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - D:\PROGRA~1\MICROS~1\Office12\GRA32A~1.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - D:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: Úložná technologie Intel(R) Rapid (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: UDisk Monitor - Unknown owner - C:\Program Files (x86)\Froyo_Android_Driver\Bin\MonServiceUDisk.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 9175 bytes

Reklama
Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43287
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod jaro3 » 11 dub 2013 18:37

Zavři ostatní aplikace a prohlížeče, odpoj se od netu a fixni v HJT:
Návod

Kód: Vybrat vše

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.delta-search.com/?affID=1198 ... e50bab5853
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-2821126583-4238001618-3695001564-1001\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')

Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected. Poté klikni na Main (hlavní stránku ) a klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.


Stáhni si TFC
Otevři soubor a zavři všechny ostatní okna, Klikni na Start k zahájení procesu. Program by neměl trvat dlouho.
Poté by se měl PC restartovat, pokud ne , proveď sám.

Stáhni AdwCleaner

Ulož si ho na svojí plochu
Ukonči všechny programy , okna a prohlížeče
Spusť program poklepáním a klikni na „Search“
Po skenu se objeví log ( jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.

Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Provést rychlý sken a klikni na tlačítko Skenovat
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Zobrazit výsledky
- pak zvol možnost uložit log a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.

Pokud budou problémy , spusť v nouz. režimu.

popiš problémy.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Zubin332
Level 1.5
Level 1.5
Příspěvky: 101
Registrován: prosinec 10
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod Zubin332 » 12 dub 2013 13:05

# AdwCleaner v2.200 - Log vytvooen 12/04/2013 v 12:59:42
# Aktualizováno 02/04/2013 Xplode
# Operaení systém : Windows 7 Home Premium (64 bits)
# Uživatel : Kuba - KUBA-PC
# Spuštin systém : Normální
# Spuštino z : C:\Users\Kuba\Desktop\adwcleaner.exe
# Volba [Prohledat]


***** [Služby] *****


***** [Soubory / Složky] *****

Složka Nalezeno : C:\ProgramData\Babylon
Složka Nalezeno : C:\Users\Kuba\AppData\Roaming\Babylon

***** [Registry] *****

Klíe Nalezeno : HKCU\Software\BabylonToolbar
Klíe Nalezeno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Klíe Nalezeno : HKLM\Software\Babylon
Klíe Nalezeno : HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\Prod.cap
Klíe Nalezeno : HKU\S-1-5-21-2821126583-4238001618-3695001564-1000\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}

***** [Internetové prohlížeee] *****

-\\ Internet Explorer v8.0.7600.16385

[HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls - Tabs] = hxxp://www.delta-search.com/?affID=1198 ... e50bab5853

-\\ Mozilla Firefox v14.0.1 (cs)

Soubor : C:\Users\Kuba\AppData\Roaming\Mozilla\Firefox\Profiles\n4y50z4x.default\prefs.js

Nalezeno : user_pref("browser.newtab.url", "hxxp://www.delta-search.com/?affID=119816&babsrc=NT_ss&mntrId=16858[...]
Nalezeno : user_pref("extensions.BabylonToolbar_i.newTab", true);
Nalezeno : user_pref("extensions.BabylonToolbar_i.newTabUrl", "hxxp://www.delta-search.com/?affID=119816&babsrc[...]

*************************

AdwCleaner[R1].txt - [1665 octets] - [12/04/2013 12:59:42]

########## EOF - C:\AdwCleaner[R1].txt - [1725 octets] ##########

Zubin332
Level 1.5
Level 1.5
Příspěvky: 101
Registrován: prosinec 10
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod Zubin332 » 12 dub 2013 13:06

Malwarebytes Anti-Malware 1.75.0.1300
http://www.malwarebytes.org

Verze: v2013.04.12.03

Windows 7 x64 NTFS
Internet Explorer 8.0.7600.16385
Kuba :: KUBA-PC [administrátor]

12.4.2013 13:02:38
mbam-log-2013-04-12 (13-02-38).txt

Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 229739
Uplynulý čas: 1 minut, 34 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 0
(Žádné škodlivé položky nebyly zjištěny)

(konec)

Uživatelský avatar
Žbeky
Moderátor
Guru Level 13
Guru Level 13
Příspěvky: 22288
Registrován: květen 08
Bydliště: Vsetín - Pardubice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod Žbeky » 12 dub 2013 18:30

Problémy?

Spusť znovu AdwCleaner (u Windows Vista či Windows7, klikni na AdwCleaner pravým a vyber „Spustit jako správce“)
Klikni na „ Delete“
Program provede opravu, po automatickém restartu neukáže log (C:\AdwCleaner [S?].txt), jeho obsah sem celý vlož.

Stáhni si RogueKiller
32bit:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a WIN7 spusť program jako správce, u XP poklepáním.
- Počkej až skončí Prescan.
- Zkontroluj, zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit

- Potom klikni na „Prohledat“.
- Program skenuje PC. Po proskenování klikni na „Zpráva“ - celý obsah logu sem zkopíruj.
Pokud je program blokován, zkus ho spustit několikrát. Pokud dále program nepůjde spustit, přejmenuj ho na winlogon.exe.
V SZ řeším jen záležitosti týkající se fóra. Na prosby a žádosti o technickou podporu nereaguji. Díky za pochopení.

HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra

Zubin332
Level 1.5
Level 1.5
Příspěvky: 101
Registrován: prosinec 10
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod Zubin332 » 13 dub 2013 09:15

Výrazně delší dobu se mi zapínají ovladacě při startu PC, dřív to byla otázka 3 sekund, teď i třeba půl minuty pokterou jde jen hýbat kurzorem a rád bych se zbavil toho delta searche (když sem ho dřív odinstaloval tak se sice tvářil, že už tam není, ale furt otravoval) už ho ten adwc vymazal.

# AdwCleaner v2.200 - Log vytvooen 13/04/2013 v 08:57:41
# Aktualizováno 02/04/2013 Xplode
# Operaení systém : Windows 7 Home Premium (64 bits)
# Uživatel : Kuba - KUBA-PC
# Spuštin systém : Normální
# Spuštino z : C:\Users\Kuba\Desktop\adwcleaner.exe
# Volba [Vymazat]


***** [Služby] *****


***** [Soubory / Složky] *****

Vymazáno poi restartu : C:\ProgramData\Babylon
Vymazáno poi restartu : C:\Users\Kuba\AppData\Roaming\Babylon

***** [Registry] *****

Klíe Vymazáno : HKCU\Software\BabylonToolbar
Klíe Vymazáno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Klíe Vymazáno : HKLM\Software\Babylon
Klíe Vymazáno : HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}
Klíe Vymazáno : HKLM\SOFTWARE\Classes\Prod.cap

***** [Internetové prohlížeee] *****

-\\ Internet Explorer v8.0.7600.16385

Zaminino : [HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls - Tabs] = hxxp://www.delta-search.com/?affID=1198 ... e50bab5853 --> hxxp://www.google.com

-\\ Mozilla Firefox v14.0.1 (cs)

Soubor : C:\Users\Kuba\AppData\Roaming\Mozilla\Firefox\Profiles\n4y50z4x.default\prefs.js

Vymazáno : user_pref("browser.newtab.url", "hxxp://www.delta-search.com/?affID=119816&babsrc=NT_ss&mntrId=16858[...]
Vymazáno : user_pref("extensions.BabylonToolbar_i.newTab", true);
Vymazáno : user_pref("extensions.BabylonToolbar_i.newTabUrl", "hxxp://www.delta-search.com/?affID=119816&babsrc[...]

*************************

AdwCleaner[R1].txt - [1792 octets] - [12/04/2013 12:59:42]
AdwCleaner[R2].txt - [1852 octets] - [12/04/2013 14:07:25]
AdwCleaner[S1].txt - [1675 octets] - [13/04/2013 08:57:41]

########## EOF - C:\AdwCleaner[S1].txt - [1735 octets] ##########



RogueKiller V8.5.4 _x64_ [Mar 18 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.geekstogo.com/forum/files/fi ... guekiller/
Webové stránky : http://tigzy.geekstogo.com/roguekiller.php
: http://tigzyrk.blogspot.com/

Operační systém : Windows 7 (6.1.7600 ) 64 bits version
Spuštěno v : Normální režim
Uživatel : Kuba [Práva správce]
Mód : Kontrola -- Datum : 04/13/2013 09:02:00
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 6 ¤¤¤
[HJ] HKLM\[...]\System : ConsentPromptBehaviorAdmin (0) -> NALEZENO
[HJ] HKLM\[...]\Wow6432Node\System : ConsentPromptBehaviorAdmin (0) -> NALEZENO
[HJ] HKLM\[...]\System : EnableLUA (0) -> NALEZENO
[HJ] HKLM\[...]\Wow6432Node\System : EnableLUA (0) -> NALEZENO
[HJ DESK] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NENAHRÁNO] ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> C:\Windows\system32\drivers\etc\hosts



¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: OCZ-OCTANE S2 +++++
--- User ---
[MBR] 60e2c843dea6513d39241bc756a03288
[BSP] 33a6aa5708572860f53098c4c6d5958b : Empty MBR Code
Partition table:
0 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 61055 Mo
User = LL1 ... OK!
User = LL2 ... OK!

+++++ PhysicalDrive1: WDC WD7500BPVT-24HXZT3 +++++
--- User ---
[MBR] fa27732aa2bf166fa870b7fdfa830111
[BSP] 6df0064d83c426fe5f07aa03d41cdaae : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 715401 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[1]_S_04132013_02d0902.txt >>
RKreport[1]_S_04132013_02d0902.txt

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43287
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod jaro3 » 13 dub 2013 11:06

Spusť RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Počkej, dokud status okno zobrazuje "Prohledat "

- Klikni na "Smazat"
- Počkej, dokud Status box zobrazuje "Smazání- Finished "
- Klikni na "Zprávy " a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [číslo]. txt na ploše.
- Zavři RogueKiller

Stáhni si CrystalDiskInfo
Spusť program a klikni na Úpravy-Kopírovat. Poté sem vlož pomocí Ctrl+V obsah logu.

Stáhni si TDSSKiller
Na svojí plochu.Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller.2.2.7.1._(datum)_log.txt , vlož sem prosím celý obsah logu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Zubin332
Level 1.5
Level 1.5
Příspěvky: 101
Registrován: prosinec 10
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod Zubin332 » 13 dub 2013 14:14

RogueKiller V8.5.4 _x64_ [Mar 18 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.geekstogo.com/forum/files/fi ... guekiller/
Webové stránky : http://tigzy.geekstogo.com/roguekiller.php
: http://tigzyrk.blogspot.com/

Operační systém : Windows 7 (6.1.7600 ) 64 bits version
Spuštěno v : Normální režim
Uživatel : Kuba [Práva správce]
Mód : Odebrat -- Datum : 04/13/2013 14:08:30
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 4 ¤¤¤
[HJ] HKLM\[...]\System : ConsentPromptBehaviorAdmin (0) -> NAHRAZENO (2)
[HJ] HKLM\[...]\System : EnableLUA (0) -> NAHRAZENO (1)
[HJ DESK] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NENAHRÁNO] ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> C:\Windows\system32\drivers\etc\hosts



¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: OCZ-OCTANE S2 +++++
--- User ---
[MBR] 60e2c843dea6513d39241bc756a03288
[BSP] 33a6aa5708572860f53098c4c6d5958b : Empty MBR Code
Partition table:
0 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 61055 Mo
User = LL1 ... OK!
User = LL2 ... OK!

+++++ PhysicalDrive1: WDC WD7500BPVT-24HXZT3 +++++
--- User ---
[MBR] fa27732aa2bf166fa870b7fdfa830111
[BSP] 6df0064d83c426fe5f07aa03d41cdaae : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 715401 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[2]_D_04132013_02d1408.txt >>
RKreport[1]_S_04132013_02d1408.txt ; RKreport[2]_D_04132013_02d1408.txt



----------------------------------------------------------------------------
CrystalDiskInfo 5.4.1 (C) 2008-2013 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------

OS : Windows 7 Home Premium Edition [6.1 Build 7600] (x64)
Date : 2013/04/13 14:09:51

-- Controller Map ----------------------------------------------------------
+ Intel(R) Mobile Express Chipset SATA AHCI Controller [ATA]
- OCZ-OCTANE S2
- WDC WD7500BPVT-24HXZT3

-- Disk List ---------------------------------------------------------------
(1) OCZ-OCTANE S2 : 64,0 GB [0/0/0, pd1] - oz
(2) WDC WD7500BPVT-24HXZT3 : 750,1 GB [1/0/1, pd1] - wd

----------------------------------------------------------------------------
(1) OCZ-OCTANE S2
----------------------------------------------------------------------------
Model : OCZ-OCTANE S2
Firmware : 4.14
Serial Number : OCZ-GJZ94VS61WV8SV61
Disk Size : 64,0 GB (8,4/64,0/64,0)
Buffer Size : >= 32767 KB
Queue Depth : 32
# of Sectors : 125045424
Rotation Rate : ---- (SSD)
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ----
Transfer Mode : SATA/300
Power On Hours : 1253 hod.
Power On Count : 822 krát
Host Writes : 0 GB
Temparature : Neznámy údaj
Health Status : Dobrý (97 %)
Features : S.M.A.R.T., 48bit LBA, NCQ, TRIM
APM Level : ----
AAM Level : ----

-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 __8 __0 __0 000000000008 Raw Read Error Rate
03 100 100 __0 000000000000 Spin Up Time
04 100 100 __0 000000000000 Start Stop Count
05 100 100 __0 000000000000 Reallocated Sectors Count
09 100 100 __0 0000000004E5 Power-On Hours
0C 100 100 __0 000000000336 Power Cycle Count
E8 100 100 __0 000000000050 Total Count of Write Sectors
E9 _97 __0 __0 000000000061 Remaining Life

-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 0C5A 3FFF C837 0010 0000 0000 003F 0000 0000 0000
010: 4F43 5A2D 474A 5A39 3456 5336 3157 5638 5356 3631
020: 0000 FFFF 3000 342E 3134 2020 2020 4F43 5A2D 4F43
030: 5441 4E45 2053 3220 2020 2020 2020 2020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 0000 2F00
050: 4000 0200 0200 0007 FFFF 0001 003F FFC1 003E 0110
060: 0AB0 0774 0000 0007 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 001F 0706 0000 0048 0048
080: 01E0 0000 346B 7D01 4123 3469 3C01 4023 407F 000A
090: 0000 0000 FFFE 0000 0000 0000 0000 0000 0000 0000
100: 0AB0 0774 0000 0000 0000 0010 4000 0000 5E83 A97E
110: DFA6 8E33 0000 0000 0000 0000 0000 0000 0000 0000
120: 0000 0000 0000 0000 0000 0000 0000 0000 0001 0000
130: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
140: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
150: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0001
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
210: 0000 0000 0000 0000 0000 0000 0000 0001 0000 0000
220: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 39A5

-- SMART_READ_DATA ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 12 00 01 00 00 08 00 08 00 00 00 00 00 00 03 00
010: 00 64 64 00 00 00 00 00 00 00 04 00 00 64 64 00
020: 00 00 00 00 00 00 05 00 00 64 64 00 00 00 00 00
030: 00 00 09 00 00 64 64 E5 04 00 00 00 00 00 0C 00
040: 00 64 64 36 03 00 00 00 00 00 E8 00 00 64 64 50
050: 00 00 00 00 00 00 E9 00 00 61 00 61 00 00 00 00
060: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
070: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
080: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
090: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1D
170: 03 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 E7

-- SMART_READ_THRESHOLD ----------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 12 00 01 00 00 00 00 00 00 00 00 00 00 00 03 00
010: 00 00 00 00 00 00 00 00 00 00 04 00 00 00 00 00
020: 00 00 00 00 00 00 05 00 00 00 00 00 00 00 00 00
030: 00 00 09 00 00 00 00 00 00 00 00 00 00 00 0C 00
040: 00 00 00 00 00 00 00 00 00 00 E8 00 00 00 00 00
050: 00 00 00 00 00 00 E9 00 00 00 00 00 00 00 00 00
060: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
070: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
080: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
090: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 FB

----------------------------------------------------------------------------
(2) WDC WD7500BPVT-24HXZT3
----------------------------------------------------------------------------
Model : WDC WD7500BPVT-24HXZT3
Firmware : 03.01A03
Serial Number : WD-WXP1E91DKNVK
Disk Size : 750,1 GB (8,4/137,4/750,1)
Buffer Size : 8192 KB
Queue Depth : 32
# of Sectors : 1465149168
Rotation Rate : 5400 RPM
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ----
Transfer Mode : SATA/300
Power On Hours : 1947 hod.
Power On Count : 910 krát
Temparature : 26 C (78 F)
Health Status : Dobrý
Features : S.M.A.R.T., APM, 48bit LBA, NCQ
APM Level : 0080h [ON]
AAM Level : ----

-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 200 200 _51 000000000000 Počet chyb čtení
03 177 174 _21 00000000083C Čas na roztočení ploten
04 100 100 __0 0000000003A2 Počet spuštění/zastavení
05 200 200 140 000000000000 Počet přemapovaných sektorů
07 200 200 __0 000000000000 Počet chybných hledání
09 _98 _98 __0 00000000079B Hodin v činnosti
0A 100 100 __0 000000000000 Počet opakovaných pokusů o roztočení ploten
0B 100 100 __0 000000000000 Počet pokusů o překalibrování
0C 100 100 __0 00000000038E Počet cyklů zapnutí zařízení
C0 200 200 __0 00000000003D Počet vypnutí disku
C1 186 186 __0 00000000A5DB Počet cyklů načítání/vymazání
C2 121 _98 __0 00000000001A Teplota
C4 200 200 __0 000000000000 Počet udalostí s číslem realokování sektorů
C5 200 200 __0 000000000000 Počet podezřelých sektorů
C6 100 253 __0 000000000000 Počet neopravitelných sektorů
C7 200 200 __0 000000000000 Počet chyb v kontrolním součtu UltraDMA
C8 100 253 __0 000000000000 Počet chyb při zápisu sektorů

-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 427A 3FFF C837 0010 0000 0000 003F 0000 0000 0000
010: 2020 2020 2057 442D 5758 5031 4539 3144 4B4E 564B
020: 0000 4000 0032 3033 2E30 3141 3033 5744 4320 5744
030: 3735 3030 4250 5654 2D32 3448 585A 5433 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 0000 2F00
050: 4001 0000 0000 0007 FFFF 0001 003F FFC1 003E 0110
060: FFFF 0FFF 0000 0007 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 001F 1F06 0004 004C 0044
080: 01FE 0000 746B 7D09 6123 7469 BC09 6123 407F 0050
090: 0050 0080 FFFE 0000 0000 0000 0000 0000 0000 0000
100: 66F0 5754 0000 0000 0000 0000 6003 0000 5001 4EE6
110: 01FD E1A0 0000 0000 0000 0000 0000 0000 0000 401C
120: 401C 0000 0000 0000 0000 0000 0000 0000 0029 0000
130: 0000 0000 0000 16FE 012D 0000 0000 0000 0000 0000
140: 0000 0000 0004 0000 0000 0000 0000 0000 0000 0000
150: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 0000 7035 0000 0000 4000
210: 0000 0000 0000 0000 0000 0000 0000 1518 0000 0000
220: 0000 0000 101F 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0001 1000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 64A5

-- SMART_READ_DATA ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 2F 00 C8 C8 00 00 00 00 00 00 00 03 27
010: 00 B1 AE 3C 08 00 00 00 00 00 04 32 00 64 64 A2
020: 03 00 00 00 00 00 05 33 00 C8 C8 00 00 00 00 00
030: 00 00 07 2E 00 C8 C8 00 00 00 00 00 00 00 09 32
040: 00 62 62 9B 07 00 00 00 00 00 0A 32 00 64 64 00
050: 00 00 00 00 00 00 0B 32 00 64 64 00 00 00 00 00
060: 00 00 0C 32 00 64 64 8E 03 00 00 00 00 00 C0 32
070: 00 C8 C8 3D 00 00 00 00 00 00 C1 32 00 BA BA DB
080: A5 00 00 00 00 00 C2 22 00 79 62 1A 00 00 00 00
090: 00 00 C4 32 00 C8 C8 00 00 00 00 00 00 00 C5 32
0A0: 00 C8 C8 00 00 00 00 00 00 00 C6 30 00 64 FD 00
0B0: 00 00 00 00 00 00 C7 32 00 C8 C8 00 00 00 00 00
0C0: 00 00 C8 08 00 64 FD 00 00 00 00 00 00 00 00 00
0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 A4 3D 01 7B
170: 03 00 01 00 02 9B 05 00 00 00 00 00 00 00 00 00
180: 00 00 01 04 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 4D

-- SMART_READ_THRESHOLD ----------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 33 C8 C8 C8 C8 00 00 00 00 00 00 03 15
010: 00 00 00 00 00 00 00 00 00 00 04 00 00 00 00 00
020: 00 00 00 00 00 00 05 8C 00 00 00 00 00 00 00 00
030: 00 00 07 00 C8 C8 C8 C8 00 00 00 00 00 00 09 00
040: 00 00 00 00 00 00 00 00 00 00 0A 00 00 00 00 00
050: 00 00 00 00 00 00 0B 00 00 00 00 00 00 00 00 00
060: 00 00 0C 00 00 00 00 00 00 00 00 00 00 00 C0 00
070: 00 00 00 00 00 00 00 00 00 00 C1 00 00 00 00 00
080: 00 00 00 00 00 00 C2 00 00 00 00 00 00 00 00 00
090: 00 00 C4 00 00 00 00 00 00 00 00 00 00 00 C5 00
0A0: 00 00 00 00 00 00 00 00 00 00 C6 00 00 00 00 00
0B0: 00 00 00 00 00 00 C7 00 00 00 00 00 00 00 00 00
0C0: 00 00 C8 00 00 00 00 00 00 00 00 00 00 00 00 00
0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 7D

Zubin332
Level 1.5
Level 1.5
Příspěvky: 101
Registrován: prosinec 10
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod Zubin332 » 13 dub 2013 14:17

14:11:01.0705 4932 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
14:11:01.0798 4932 ============================================================
14:11:01.0798 4932 Current date / time: 2013/04/13 14:11:01.0798
14:11:01.0798 4932 SystemInfo:
14:11:01.0798 4932
14:11:01.0798 4932 OS Version: 6.1.7600 ServicePack: 0.0
14:11:01.0798 4932 Product type: Workstation
14:11:01.0798 4932 ComputerName: KUBA-PC
14:11:01.0798 4932 UserName: Kuba
14:11:01.0814 4932 Windows directory: C:\Windows
14:11:01.0814 4932 System windows directory: C:\Windows
14:11:01.0814 4932 Running under WOW64
14:11:01.0814 4932 Processor architecture: Intel x64
14:11:01.0814 4932 Number of processors: 4
14:11:01.0814 4932 Page size: 0x1000
14:11:01.0814 4932 Boot type: Normal boot
14:11:01.0814 4932 ============================================================
14:11:02.0282 4932 Drive \Device\Harddisk0\DR0 - Size: 0xEE8156000 (59.63 Gb), SectorSize: 0x200, Cylinders: 0x1E67, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
14:11:02.0594 4932 Drive \Device\Harddisk1\DR1 - Size: 0xAEA8CDE000 (698.64 Gb), SectorSize: 0x200, Cylinders: 0x162DD1, SectorsPerTrack: 0x3F, TracksPerCylinder: 0x10, Type 'K0', Flags 0x00000040
14:11:02.0594 4932 ============================================================
14:11:02.0594 4932 \Device\Harddisk0\DR0:
14:11:02.0594 4932 MBR partitions:
14:11:02.0594 4932 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x773F800
14:11:02.0594 4932 \Device\Harddisk1\DR1:
14:11:02.0594 4932 MBR partitions:
14:11:02.0594 4932 \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x57544800
14:11:02.0594 4932 ============================================================
14:11:02.0594 4932 C: <-> \Device\Harddisk0\DR0\Partition1
14:11:02.0609 4932 D: <-> \Device\Harddisk1\DR1\Partition1
14:11:02.0609 4932 ============================================================
14:11:02.0609 4932 Initialize success
14:11:02.0609 4932 ============================================================
14:11:05.0761 3684 ============================================================
14:11:05.0761 3684 Scan started
14:11:05.0761 3684 Mode: Manual;
14:11:05.0761 3684 ============================================================
14:11:05.0901 3684 ================ Scan system memory ========================
14:11:05.0901 3684 System memory - ok
14:11:05.0917 3684 ================ Scan services =============================
14:11:05.0948 3684 [ 1B00662092F9F9568B995902F0CC40D5 ] 1394ohci C:\Windows\system32\DRIVERS\1394ohci.sys
14:11:05.0963 3684 1394ohci - ok
14:11:05.0963 3684 [ 6F11E88748CDEFD2F76AA215F97DDFE5 ] ACPI C:\Windows\system32\DRIVERS\ACPI.sys
14:11:05.0963 3684 ACPI - ok
14:11:05.0979 3684 [ 63B05A0420CE4BF0E4AF6DCC7CADA254 ] AcpiPmi C:\Windows\system32\DRIVERS\acpipmi.sys
14:11:05.0979 3684 AcpiPmi - ok
14:11:05.0979 3684 [ 5BBFF8B826EC38D32C26334E079C7EFC ] ACPIVPC C:\Windows\system32\DRIVERS\AcpiVpc.sys
14:11:05.0979 3684 ACPIVPC - ok
14:11:05.0995 3684 [ B1EA9681502EE57F87DB71D726288A5B ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
14:11:05.0995 3684 AdobeARMservice - ok
14:11:05.0995 3684 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys
14:11:06.0010 3684 adp94xx - ok
14:11:06.0010 3684 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys
14:11:06.0010 3684 adpahci - ok
14:11:06.0026 3684 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys
14:11:06.0026 3684 adpu320 - ok
14:11:06.0026 3684 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
14:11:06.0041 3684 AeLookupSvc - ok
14:11:06.0057 3684 [ B9384E03479D2506BC924C16A3DB87BC ] AFD C:\Windows\system32\drivers\afd.sys
14:11:06.0057 3684 AFD - ok
14:11:06.0057 3684 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\DRIVERS\agp440.sys
14:11:06.0057 3684 agp440 - ok
14:11:06.0057 3684 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe
14:11:06.0073 3684 ALG - ok
14:11:06.0073 3684 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\DRIVERS\aliide.sys
14:11:06.0073 3684 aliide - ok
14:11:06.0073 3684 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\DRIVERS\amdide.sys
14:11:06.0073 3684 amdide - ok
14:11:06.0088 3684 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
14:11:06.0088 3684 AmdK8 - ok
14:11:06.0088 3684 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
14:11:06.0088 3684 AmdPPM - ok
14:11:06.0088 3684 [ 7A4B413614C055935567CF88A9734D38 ] amdsata C:\Windows\system32\DRIVERS\amdsata.sys
14:11:06.0104 3684 amdsata - ok
14:11:06.0104 3684 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys
14:11:06.0104 3684 amdsbs - ok
14:11:06.0104 3684 [ B4AD0CACBAB298671DD6F6EF7E20679D ] amdxata C:\Windows\system32\DRIVERS\amdxata.sys
14:11:06.0104 3684 amdxata - ok
14:11:06.0119 3684 [ 42FD751B27FA0E9C69BB39F39E409594 ] AppID C:\Windows\system32\drivers\appid.sys
14:11:06.0119 3684 AppID - ok
14:11:06.0119 3684 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll
14:11:06.0119 3684 AppIDSvc - ok
14:11:06.0119 3684 [ D065BE66822847B7F127D1F90158376E ] Appinfo C:\Windows\System32\appinfo.dll
14:11:06.0135 3684 Appinfo - ok
14:11:06.0135 3684 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\DRIVERS\arc.sys
14:11:06.0135 3684 arc - ok
14:11:06.0135 3684 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys
14:11:06.0135 3684 arcsas - ok
14:11:06.0151 3684 [ 9217D874131AE6FF8F642F124F00A555 ] aspnet_state C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
14:11:06.0151 3684 aspnet_state - ok
14:11:06.0166 3684 [ 4CA8E3A70263C3029935551204586701 ] aswFsBlk C:\Windows\system32\drivers\aswFsBlk.sys
14:11:06.0166 3684 aswFsBlk - ok
14:11:06.0166 3684 [ CF6A24076F978BF9C1FE61EE8595DB66 ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
14:11:06.0166 3684 aswMonFlt - ok
14:11:06.0182 3684 [ 24EB5B96B8D215BAC4FC280D39B73049 ] aswRdr C:\Windows\System32\Drivers\aswrdr2.sys
14:11:06.0182 3684 aswRdr - ok
14:11:06.0182 3684 [ 76A2BD420185B468B6DE89AED1EEAE40 ] aswRvrt C:\Windows\system32\drivers\aswRvrt.sys
14:11:06.0182 3684 aswRvrt - ok
14:11:06.0213 3684 [ 5EB2FC36BD4639097A2F9BB68C825604 ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
14:11:06.0213 3684 aswSnx - ok
14:11:06.0229 3684 [ AB1403AF5CC781D5148096216DA3A2A3 ] aswSP C:\Windows\system32\drivers\aswSP.sys
14:11:06.0229 3684 aswSP - ok
14:11:06.0229 3684 [ 6A2D4BB9DDAA7D74839936403BB31F06 ] aswTdi C:\Windows\system32\drivers\aswTdi.sys
14:11:06.0229 3684 aswTdi - ok
14:11:06.0244 3684 [ 0A83FFF1AEF6113EF8DCBB32D5014AB1 ] aswVmm C:\Windows\system32\drivers\aswVmm.sys
14:11:06.0244 3684 aswVmm - ok
14:11:06.0244 3684 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
14:11:06.0244 3684 AsyncMac - ok
14:11:06.0244 3684 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\DRIVERS\atapi.sys
14:11:06.0244 3684 atapi - ok
14:11:06.0275 3684 [ 07721A77180EDD4D39CCB865BF63C7FD ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
14:11:06.0275 3684 AudioEndpointBuilder - ok
14:11:06.0291 3684 [ 07721A77180EDD4D39CCB865BF63C7FD ] AudioSrv C:\Windows\System32\Audiosrv.dll
14:11:06.0307 3684 AudioSrv - ok
14:11:06.0307 3684 [ AEF6E1DE647339C4990586D1DE427BBB ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
14:11:06.0307 3684 avast! Antivirus - ok
14:11:06.0322 3684 [ B20B5FA5CA050E9926E4D1DB81501B32 ] AxInstSV C:\Windows\System32\AxInstSV.dll
14:11:06.0322 3684 AxInstSV - ok
14:11:06.0338 3684 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\DRIVERS\bxvbda.sys
14:11:06.0338 3684 b06bdrv - ok
14:11:06.0353 3684 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys
14:11:06.0353 3684 b57nd60a - ok
14:11:06.0369 3684 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll
14:11:06.0369 3684 BDESVC - ok
14:11:06.0369 3684 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys
14:11:06.0369 3684 Beep - ok
14:11:06.0385 3684 [ 4992C609A6315671463E30F6512BC022 ] BFE C:\Windows\System32\bfe.dll
14:11:06.0400 3684 BFE - ok
14:11:06.0431 3684 [ 7F0C323FE3DA28AA4AA1BDA3F575707F ] BITS C:\Windows\System32\qmgr.dll
14:11:06.0447 3684 BITS - ok
14:11:06.0447 3684 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
14:11:06.0447 3684 blbdrive - ok
14:11:06.0463 3684 [ 91CE0D3DC57DD377E690A2D324022B08 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
14:11:06.0463 3684 bowser - ok
14:11:06.0463 3684 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys
14:11:06.0463 3684 BrFiltLo - ok
14:11:06.0463 3684 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys
14:11:06.0463 3684 BrFiltUp - ok
14:11:06.0478 3684 [ 94FBC06F294D58D02361918418F996E3 ] Browser C:\Windows\System32\browser.dll
14:11:06.0478 3684 Browser - ok
14:11:06.0494 3684 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys
14:11:06.0494 3684 Brserid - ok
14:11:06.0494 3684 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
14:11:06.0494 3684 BrSerWdm - ok
14:11:06.0494 3684 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
14:11:06.0494 3684 BrUsbMdm - ok
14:11:06.0509 3684 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
14:11:06.0509 3684 BrUsbSer - ok
14:11:06.0509 3684 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys
14:11:06.0509 3684 BTHMODEM - ok
14:11:06.0525 3684 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll
14:11:06.0525 3684 bthserv - ok
14:11:06.0525 3684 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
14:11:06.0525 3684 cdfs - ok
14:11:06.0541 3684 [ 83D2D75E1EFB81B3450C18131443F7DB ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
14:11:06.0541 3684 cdrom - ok
14:11:06.0541 3684 [ 312E2F82AF11E79906898AC3E3D58A1F ] CertPropSvc C:\Windows\System32\certprop.dll
14:11:06.0541 3684 CertPropSvc - ok
14:11:06.0556 3684 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\DRIVERS\circlass.sys
14:11:06.0556 3684 circlass - ok
14:11:06.0572 3684 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys
14:11:06.0572 3684 CLFS - ok
14:11:06.0572 3684 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
14:11:06.0572 3684 clr_optimization_v2.0.50727_32 - ok
14:11:06.0587 3684 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
14:11:06.0587 3684 clr_optimization_v2.0.50727_64 - ok
14:11:06.0603 3684 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
14:11:06.0603 3684 clr_optimization_v4.0.30319_32 - ok
14:11:06.0603 3684 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
14:11:06.0603 3684 clr_optimization_v4.0.30319_64 - ok
14:11:06.0619 3684 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
14:11:06.0619 3684 CmBatt - ok
14:11:06.0619 3684 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\DRIVERS\cmdide.sys
14:11:06.0619 3684 cmdide - ok
14:11:06.0634 3684 [ F95FD4CB7DA00BA2A63CE9F6B5C053E1 ] CNG C:\Windows\system32\Drivers\cng.sys
14:11:06.0634 3684 CNG - ok
14:11:06.0634 3684 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
14:11:06.0634 3684 Compbatt - ok
14:11:06.0650 3684 [ F26B3A86F6FA87CA360B879581AB4123 ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys
14:11:06.0650 3684 CompositeBus - ok
14:11:06.0650 3684 COMSysApp - ok
14:11:06.0650 3684 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys
14:11:06.0650 3684 crcdisk - ok
14:11:06.0665 3684 [ 8C57411B66282C01533CB776F98AD384 ] CryptSvc C:\Windows\system32\cryptsvc.dll
14:11:06.0681 3684 CryptSvc - ok
14:11:06.0697 3684 [ 7266972E86890E2B30C0C322E906B027 ] DcomLaunch C:\Windows\system32\rpcss.dll
14:11:06.0697 3684 DcomLaunch - ok
14:11:06.0712 3684 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll
14:11:06.0728 3684 defragsvc - ok
14:11:06.0728 3684 [ 3F1DC527070ACB87E40AFE46EF6DA749 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
14:11:06.0728 3684 DfsC - ok
14:11:06.0743 3684 [ CE3B9562D997F69B330D181A8875960F ] Dhcp C:\Windows\system32\dhcpcore.dll
14:11:06.0743 3684 Dhcp - ok
14:11:06.0743 3684 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys
14:11:06.0743 3684 discache - ok
14:11:06.0759 3684 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\DRIVERS\disk.sys
14:11:06.0759 3684 Disk - ok
14:11:06.0759 3684 [ 676108C4E3AA6F6B34633748BD0BEBD9 ] Dnscache C:\Windows\System32\dnsrslvr.dll
14:11:06.0759 3684 Dnscache - ok
14:11:06.0775 3684 [ 14452ACDB09B70964C8C21BF80A13ACB ] dot3svc C:\Windows\System32\dot3svc.dll
14:11:06.0775 3684 dot3svc - ok
14:11:06.0790 3684 [ 8C2BA6BEA949EE6E68385F5692BAFB94 ] DPS C:\Windows\system32\dps.dll
14:11:06.0790 3684 DPS - ok
14:11:06.0790 3684 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
14:11:06.0790 3684 drmkaud - ok
14:11:06.0806 3684 [ 46571ED73AE84469DCA53081D33CF3C8 ] dtsoftbus01 C:\Windows\system32\DRIVERS\dtsoftbus01.sys
14:11:06.0806 3684 dtsoftbus01 - ok
14:11:06.0821 3684 [ 7CB7D2B73813CE05C7BC0F5F95D27CEC ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
14:11:06.0837 3684 DXGKrnl - ok
14:11:06.0837 3684 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll
14:11:06.0853 3684 EapHost - ok
14:11:06.0899 3684 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\DRIVERS\evbda.sys
14:11:06.0915 3684 ebdrv - ok
14:11:06.0931 3684 [ 0793F40B9B8A1BDD266296409DBD91EA ] EFS C:\Windows\System32\lsass.exe
14:11:06.0931 3684 EFS - ok
14:11:06.0946 3684 [ B91D81B3B54A54CCAFC03733DBC2E29E ] ehRecvr C:\Windows\ehome\ehRecvr.exe
14:11:06.0946 3684 ehRecvr - ok
14:11:06.0962 3684 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe
14:11:06.0962 3684 ehSched - ok
14:11:06.0977 3684 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys
14:11:06.0977 3684 elxstor - ok
14:11:06.0977 3684 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\DRIVERS\errdev.sys
14:11:06.0977 3684 ErrDev - ok
14:11:06.0993 3684 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll
14:11:07.0009 3684 EventSystem - ok
14:11:07.0040 3684 [ F8F610093E1D7FDFA477FC34D15D5C60 ] EvtEng C:\Program Files\Intel\WiFi\bin\EvtEng.exe
14:11:07.0040 3684 EvtEng - ok
14:11:07.0055 3684 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys
14:11:07.0055 3684 exfat - ok
14:11:07.0055 3684 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys
14:11:07.0071 3684 fastfat - ok
14:11:07.0087 3684 [ D607B2F1BEE3992AA6C2C92C0A2F0855 ] Fax C:\Windows\system32\fxssvc.exe
14:11:07.0087 3684 Fax - ok
14:11:07.0087 3684 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\DRIVERS\fdc.sys
14:11:07.0087 3684 fdc - ok
14:11:07.0102 3684 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll
14:11:07.0102 3684 fdPHost - ok
14:11:07.0102 3684 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll
14:11:07.0102 3684 FDResPub - ok
14:11:07.0118 3684 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
14:11:07.0118 3684 FileInfo - ok
14:11:07.0118 3684 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
14:11:07.0118 3684 Filetrace - ok
14:11:07.0118 3684 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
14:11:07.0118 3684 flpydisk - ok
14:11:07.0133 3684 [ F7866AF72ABBAF84B1FA5AA195378C59 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
14:11:07.0133 3684 FltMgr - ok
14:11:07.0165 3684 [ 8AC4CB4EA61E41009FAE9AE7B2B5DA3A ] FontCache C:\Windows\system32\FntCache.dll
14:11:07.0180 3684 FontCache - ok
14:11:07.0196 3684 [ 8D89E3131C27FDD6932189CB785E1B7A ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
14:11:07.0196 3684 FontCache3.0.0.0 - ok
14:11:07.0196 3684 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
14:11:07.0196 3684 FsDepends - ok
14:11:07.0196 3684 [ E95EF8547DE20CF0603557C0CF7A9462 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
14:11:07.0196 3684 Fs_Rec - ok
14:11:07.0211 3684 [ B8B2A6E1558F8F5DE5CE431C5B2C7B09 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
14:11:07.0211 3684 fvevol - ok
14:11:07.0211 3684 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys
14:11:07.0211 3684 gagp30kx - ok
14:11:07.0227 3684 [ 22B6BE519C112FD9C6ADA3C96B54EC15 ] Generalusbserialser20675 C:\Windows\system32\DRIVERS\CT_U_USBSER.sys
14:11:07.0227 3684 Generalusbserialser20675 - ok
14:11:07.0321 3684 GGSAFERDriver - ok
14:11:07.0336 3684 [ FE5AB4525BC2EC68B9119A6E5D40128B ] gpsvc C:\Windows\System32\gpsvc.dll
14:11:07.0352 3684 gpsvc - ok
14:11:07.0367 3684 [ 1E6438D4EA6E1174A3B3B1EDC4DE660B ] hamachi C:\Windows\system32\DRIVERS\hamachi.sys
14:11:07.0367 3684 hamachi - ok
14:11:07.0445 3684 [ 3832D6353272000BD48C4748B386A786 ] Hamachi2Svc D:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
14:11:07.0461 3684 Hamachi2Svc - ok
14:11:07.0461 3684 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
14:11:07.0461 3684 hcw85cir - ok
14:11:07.0477 3684 [ 6410F6F415B2A5A9037224C41DA8BF12 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
14:11:07.0477 3684 HdAudAddService - ok
14:11:07.0492 3684 [ 0A49913402747A0B67DE940FB42CBDBB ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
14:11:07.0492 3684 HDAudBus - ok
14:11:07.0492 3684 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys
14:11:07.0492 3684 HidBatt - ok
14:11:07.0492 3684 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys
14:11:07.0492 3684 HidBth - ok
14:11:07.0508 3684 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
14:11:07.0508 3684 HidIr - ok
14:11:07.0508 3684 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\system32\hidserv.dll
14:11:07.0508 3684 hidserv - ok
14:11:07.0523 3684 [ B3BF6B5B50006DEF50B66306D99FCF6F ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
14:11:07.0523 3684 HidUsb - ok
14:11:07.0523 3684 [ EFA58EDE58DD74388FFD04CB32681518 ] hkmsvc C:\Windows\system32\kmsvc.dll
14:11:07.0523 3684 hkmsvc - ok
14:11:07.0539 3684 [ 046B2673767CA626E2CFB7FDF735E9E8 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
14:11:07.0539 3684 HomeGroupListener - ok
14:11:07.0555 3684 [ 06A7422224D9865A5613710A089987DF ] HomeGroupProvider C:\Windows\system32\provsvc.dll
14:11:07.0555 3684 HomeGroupProvider - ok
14:11:07.0555 3684 [ 0886D440058F203EBA0E1825E4355914 ] HpSAMD C:\Windows\system32\DRIVERS\HpSAMD.sys
14:11:07.0570 3684 HpSAMD - ok
14:11:07.0586 3684 [ CEE049CAC4EFA7F4E1E4AD014414A5D4 ] HTTP C:\Windows\system32\drivers\HTTP.sys
14:11:07.0586 3684 HTTP - ok
14:11:07.0586 3684 [ F17766A19145F111856378DF337A5D79 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
14:11:07.0586 3684 hwpolicy - ok
14:11:07.0601 3684 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
14:11:07.0601 3684 i8042prt - ok
14:11:07.0601 3684 [ F7CE9BE72EDAC499B713ECA6DAE5D26F ] iaStor C:\Windows\system32\DRIVERS\iaStor.sys
14:11:07.0617 3684 iaStor - ok
14:11:07.0617 3684 [ B25F192EA1F84A316EB7C19EFCCCF33D ] IAStorDataMgrSvc C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
14:11:07.0617 3684 IAStorDataMgrSvc - ok
14:11:07.0633 3684 [ D83EFB6FD45DF9D55E9A1AFC63640D50 ] iaStorV C:\Windows\system32\DRIVERS\iaStorV.sys
14:11:07.0633 3684 iaStorV - ok
14:11:07.0648 3684 [ 2F2BE70D3E02B6FA877921AB9516D43C ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
14:11:07.0664 3684 idsvc - ok
14:11:07.0929 3684 [ 8CB8667F5A3B5515F2585F3254F3AAF7 ] igfx C:\Windows\system32\DRIVERS\igdkmd64.sys
14:11:07.0991 3684 igfx - ok
14:11:08.0007 3684 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys
14:11:08.0007 3684 iirsp - ok
14:11:08.0023 3684 [ C5B4683680DF085B57BC53E5EF34861F ] IKEEXT C:\Windows\System32\ikeext.dll
14:11:08.0038 3684 IKEEXT - ok
14:11:08.0101 3684 [ A9853214CC97796579D75B1F59C51DCD ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
14:11:08.0116 3684 IntcAzAudAddService - ok
14:11:08.0116 3684 [ FC727061C0F47C8059E88E05D5C8E381 ] IntcDAud C:\Windows\system32\DRIVERS\IntcDAud.sys
14:11:08.0132 3684 IntcDAud - ok
14:11:08.0132 3684 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\DRIVERS\intelide.sys
14:11:08.0132 3684 intelide - ok
14:11:08.0132 3684 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
14:11:08.0132 3684 intelppm - ok
14:11:08.0147 3684 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll
14:11:08.0147 3684 IPBusEnum - ok
14:11:08.0147 3684 [ 722DD294DF62483CECAAE6E094B4D695 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
14:11:08.0147 3684 IpFilterDriver - ok
14:11:08.0163 3684 [ F8E058D17363EC580E4B7232778B6CB5 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
14:11:08.0179 3684 iphlpsvc - ok
14:11:08.0179 3684 [ E2B4A4494DB7CB9B89B55CA268C337C5 ] IPMIDRV C:\Windows\system32\DRIVERS\IPMIDrv.sys
14:11:08.0179 3684 IPMIDRV - ok
14:11:08.0194 3684 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
14:11:08.0194 3684 IPNAT - ok
14:11:08.0194 3684 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
14:11:08.0194 3684 IRENUM - ok
14:11:08.0194 3684 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\DRIVERS\isapnp.sys
14:11:08.0194 3684 isapnp - ok
14:11:08.0210 3684 [ FA4D2557DE56D45B0A346F93564BE6E1 ] iScsiPrt C:\Windows\system32\DRIVERS\msiscsi.sys
14:11:08.0210 3684 iScsiPrt - ok
14:11:08.0210 3684 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
14:11:08.0210 3684 kbdclass - ok
14:11:08.0225 3684 [ 6DEF98F8541E1B5DCEB2C822A11F7323 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
14:11:08.0225 3684 kbdhid - ok
14:11:08.0225 3684 [ 0793F40B9B8A1BDD266296409DBD91EA ] KeyIso C:\Windows\system32\lsass.exe
14:11:08.0225 3684 KeyIso - ok
14:11:08.0225 3684 [ E8B6FCC9C83535C67F835D407620BD27 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
14:11:08.0241 3684 KSecDD - ok
14:11:08.0241 3684 [ BBE1BF6D9B661C354D4857D5FADB943B ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
14:11:08.0241 3684 KSecPkg - ok
14:11:08.0241 3684 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
14:11:08.0241 3684 ksthunk - ok
14:11:08.0257 3684 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll
14:11:08.0272 3684 KtmRm - ok
14:11:08.0272 3684 [ C926920B8978DE6ACFE9E15C709E9B57 ] LanmanServer C:\Windows\system32\srvsvc.dll
14:11:08.0288 3684 LanmanServer - ok
14:11:08.0288 3684 [ 27026EAC8818E8A6C00A1CAD2F11D29A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
14:11:08.0288 3684 LanmanWorkstation - ok
14:11:08.0303 3684 [ BE166935083F9C38EDFDC21B9A7A679B ] LHDmgr C:\Windows\system32\DRIVERS\LhdX64.sys
14:11:08.0303 3684 LHDmgr - ok
14:11:08.0303 3684 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
14:11:08.0303 3684 lltdio - ok
14:11:08.0319 3684 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll
14:11:08.0319 3684 lltdsvc - ok
14:11:08.0319 3684 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll
14:11:08.0335 3684 lmhosts - ok
14:11:08.0335 3684 [ 926EBA26A8B49D1597751CED06B50862 ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
14:11:08.0335 3684 LMS - ok
14:11:08.0350 3684 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys
14:11:08.0350 3684 LSI_FC - ok
14:11:08.0366 3684 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys
14:11:08.0366 3684 LSI_SAS - ok
14:11:08.0366 3684 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys
14:11:08.0366 3684 LSI_SAS2 - ok
14:11:08.0366 3684 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys
14:11:08.0381 3684 LSI_SCSI - ok
14:11:08.0381 3684 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys
14:11:08.0381 3684 luafv - ok
14:11:08.0381 3684 [ F84C8F1000BC11E3B7B23CBD3BAFF111 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
14:11:08.0397 3684 Mcx2Svc - ok
14:11:08.0397 3684 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\DRIVERS\megasas.sys
14:11:08.0397 3684 megasas - ok
14:11:08.0397 3684 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys
14:11:08.0413 3684 MegaSR - ok
14:11:08.0413 3684 [ 1C6E73FC46B509EFF9D0086AA37132DF ] MEIx64 C:\Windows\system32\DRIVERS\HECIx64.sys
14:11:08.0413 3684 MEIx64 - ok

Zubin332
Level 1.5
Level 1.5
Příspěvky: 101
Registrován: prosinec 10
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod Zubin332 » 13 dub 2013 14:17

14:11:08.0522 3684 [ FAFE367D032ED82E9332B4C741A20216 ] Microsoft Office Groove Audit Service D:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe
14:11:08.0522 3684 Microsoft Office Groove Audit Service - ok
14:11:08.0537 3684 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll
14:11:08.0537 3684 MMCSS - ok
14:11:08.0537 3684 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys
14:11:08.0537 3684 Modem - ok
14:11:08.0553 3684 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys
14:11:08.0553 3684 monitor - ok
14:11:08.0553 3684 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
14:11:08.0553 3684 mouclass - ok
14:11:08.0553 3684 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
14:11:08.0553 3684 mouhid - ok
14:11:08.0569 3684 [ 791AF66C4D0E7C90A3646066386FB571 ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
14:11:08.0569 3684 mountmgr - ok
14:11:08.0569 3684 [ 46297FA8E30A6007F14118FC2B942FBC ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
14:11:08.0569 3684 MozillaMaintenance - ok
14:11:08.0584 3684 [ 609D1D87649ECC19796F4D76D4C15CEA ] mpio C:\Windows\system32\DRIVERS\mpio.sys
14:11:08.0584 3684 mpio - ok
14:11:08.0584 3684 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
14:11:08.0584 3684 mpsdrv - ok
14:11:08.0600 3684 [ AECAB449567D1846DAD63ECE49E893E3 ] MpsSvc C:\Windows\system32\mpssvc.dll
14:11:08.0615 3684 MpsSvc - ok
14:11:08.0631 3684 [ 30524261BB51D96D6FCBAC20C810183C ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
14:11:08.0631 3684 MRxDAV - ok
14:11:08.0631 3684 [ CFDCD8CA87C2A657DEBC150AC35B5E08 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
14:11:08.0631 3684 mrxsmb - ok
14:11:08.0647 3684 [ 1BEE517B220B7F024F411AEC1571DD5A ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
14:11:08.0647 3684 mrxsmb10 - ok
14:11:08.0647 3684 [ 6B2D5FEF385828B6E485C1C90AFB8195 ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
14:11:08.0662 3684 mrxsmb20 - ok
14:11:08.0678 3684 [ 5C37497276E3B3A5488B23A326A754B7 ] msahci C:\Windows\system32\DRIVERS\msahci.sys
14:11:08.0678 3684 msahci - ok
14:11:08.0693 3684 [ 8D27B597229AED79430FB9DB3BCBFBD0 ] msdsm C:\Windows\system32\DRIVERS\msdsm.sys
14:11:08.0693 3684 msdsm - ok
14:11:08.0693 3684 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe
14:11:08.0693 3684 MSDTC - ok
14:11:08.0709 3684 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys
14:11:08.0709 3684 Msfs - ok
14:11:08.0709 3684 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
14:11:08.0709 3684 mshidkmdf - ok
14:11:08.0725 3684 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\DRIVERS\msisadrv.sys
14:11:08.0725 3684 msisadrv - ok
14:11:08.0725 3684 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
14:11:08.0725 3684 MSiSCSI - ok
14:11:08.0740 3684 msiserver - ok
14:11:08.0756 3684 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
14:11:08.0756 3684 MSKSSRV - ok
14:11:08.0756 3684 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
14:11:08.0756 3684 MSPCLOCK - ok
14:11:08.0756 3684 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
14:11:08.0771 3684 MSPQM - ok
14:11:08.0771 3684 [ 89CB141AA8616D8C6A4610FA26C60964 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
14:11:08.0771 3684 MsRPC - ok
14:11:08.0787 3684 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
14:11:08.0787 3684 mssmbios - ok
14:11:08.0787 3684 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
14:11:08.0787 3684 MSTEE - ok
14:11:08.0787 3684 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys
14:11:08.0787 3684 MTConfig - ok
14:11:08.0803 3684 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys
14:11:08.0803 3684 Mup - ok
14:11:08.0818 3684 [ F6EA50DBC391F04CA49427010657CCB3 ] MyWiFiDHCPDNS C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
14:11:08.0818 3684 MyWiFiDHCPDNS - ok
14:11:08.0834 3684 [ 4987E079A4530FA737A128BE54B63B12 ] napagent C:\Windows\system32\qagentRT.dll
14:11:08.0834 3684 napagent - ok
14:11:08.0849 3684 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
14:11:08.0849 3684 NativeWifiP - ok
14:11:08.0865 3684 [ CAD515DBD07D082BB317D9928CE8962C ] NDIS C:\Windows\system32\drivers\ndis.sys
14:11:08.0881 3684 NDIS - ok
14:11:08.0881 3684 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
14:11:08.0881 3684 NdisCap - ok
14:11:08.0881 3684 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
14:11:08.0896 3684 NdisTapi - ok
14:11:08.0896 3684 [ F105BA1E22BF1F2EE8F005D4305E4BEC ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
14:11:08.0896 3684 Ndisuio - ok
14:11:08.0896 3684 [ 557DFAB9CA1FCB036AC77564C010DAD3 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
14:11:08.0896 3684 NdisWan - ok
14:11:08.0912 3684 [ 659B74FB74B86228D6338D643CD3E3CF ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
14:11:08.0912 3684 NDProxy - ok
14:11:08.0912 3684 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
14:11:08.0912 3684 NetBIOS - ok
14:11:08.0927 3684 [ 9162B273A44AB9DCE5B44362731D062A ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
14:11:08.0927 3684 NetBT - ok
14:11:08.0927 3684 [ 0793F40B9B8A1BDD266296409DBD91EA ] Netlogon C:\Windows\system32\lsass.exe
14:11:08.0927 3684 Netlogon - ok
14:11:08.0943 3684 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll
14:11:08.0943 3684 Netman - ok
14:11:08.0959 3684 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
14:11:08.0959 3684 NetMsmqActivator - ok
14:11:08.0959 3684 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
14:11:08.0959 3684 NetPipeActivator - ok
14:11:08.0974 3684 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll
14:11:08.0990 3684 netprofm - ok
14:11:08.0990 3684 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
14:11:08.0990 3684 NetTcpActivator - ok
14:11:08.0990 3684 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
14:11:09.0005 3684 NetTcpPortSharing - ok
14:11:09.0177 3684 [ 30933BB56FB611D0252BAD488ADFB533 ] NETwNs64 C:\Windows\system32\DRIVERS\NETwNs64.sys
14:11:09.0224 3684 NETwNs64 - ok
14:11:09.0239 3684 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys
14:11:09.0239 3684 nfrd960 - ok
14:11:09.0239 3684 [ D9A0CE66046D6EFA0C61BAA885CBA0A8 ] NlaSvc C:\Windows\System32\nlasvc.dll
14:11:09.0255 3684 NlaSvc - ok
14:11:09.0255 3684 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys
14:11:09.0255 3684 Npfs - ok
14:11:09.0271 3684 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll
14:11:09.0271 3684 nsi - ok
14:11:09.0271 3684 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
14:11:09.0271 3684 nsiproxy - ok
14:11:09.0302 3684 [ 356698A13C4630D5B31C37378D469196 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
14:11:09.0317 3684 Ntfs - ok
14:11:09.0317 3684 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys
14:11:09.0317 3684 Null - ok
14:11:09.0333 3684 [ B4F53BCA4C688FF47F04FA90098F896E ] NVHDA C:\Windows\system32\drivers\nvhda64v.sys
14:11:09.0333 3684 NVHDA - ok
14:11:09.0567 3684 [ 0A2F27B5BCC45B64E152DD6AE0815198 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
14:11:09.0614 3684 nvlddmkm - ok
14:11:09.0629 3684 [ EB12E165FD233F2DDC47B11423186177 ] nvpciflt C:\Windows\system32\DRIVERS\nvpciflt.sys
14:11:09.0629 3684 nvpciflt - ok
14:11:09.0629 3684 [ 3E38712941E9BB4DDBEE00AFFE3FED3D ] nvraid C:\Windows\system32\DRIVERS\nvraid.sys
14:11:09.0629 3684 nvraid - ok
14:11:09.0645 3684 [ 477DC4D6DEB99BE37084C9AC6D013DA1 ] nvstor C:\Windows\system32\DRIVERS\nvstor.sys
14:11:09.0645 3684 nvstor - ok
14:11:09.0692 3684 [ 574087EA9105F23FB522A4FDDD5292D9 ] nvsvc C:\Windows\system32\nvvsvc.exe
14:11:09.0692 3684 nvsvc - ok
14:11:09.0723 3684 [ ABA5A88740635D37A2B6CEB27DBC738A ] nvUpdatusService C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
14:11:09.0739 3684 nvUpdatusService - ok
14:11:09.0739 3684 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\DRIVERS\nv_agp.sys
14:11:09.0739 3684 nv_agp - ok
14:11:09.0754 3684 [ 84DE1DD996B48B05ACE31AD015FA108A ] odserv C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
14:11:09.0754 3684 odserv - ok
14:11:09.0770 3684 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\DRIVERS\ohci1394.sys
14:11:09.0770 3684 ohci1394 - ok
14:11:09.0770 3684 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
14:11:09.0770 3684 ose - ok
14:11:09.0785 3684 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
14:11:09.0785 3684 p2pimsvc - ok
14:11:09.0801 3684 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll
14:11:09.0817 3684 p2psvc - ok
14:11:09.0817 3684 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\DRIVERS\parport.sys
14:11:09.0832 3684 Parport - ok
14:11:09.0832 3684 [ 7DAA117143316C4A1537E074A5A9EAF0 ] partmgr C:\Windows\system32\drivers\partmgr.sys
14:11:09.0832 3684 partmgr - ok
14:11:09.0832 3684 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\Windows\System32\pcasvc.dll
14:11:09.0848 3684 PcaSvc - ok
14:11:09.0848 3684 [ F36F6504009F2FB0DFD1B17A116AD74B ] pci C:\Windows\system32\DRIVERS\pci.sys
14:11:09.0848 3684 pci - ok
14:11:09.0863 3684 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\DRIVERS\pciide.sys
14:11:09.0863 3684 pciide - ok
14:11:09.0863 3684 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys
14:11:09.0863 3684 pcmcia - ok
14:11:09.0879 3684 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys
14:11:09.0879 3684 pcw - ok
14:11:09.0895 3684 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\Windows\system32\drivers\peauth.sys
14:11:09.0895 3684 PEAUTH - ok
14:11:09.0910 3684 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe
14:11:09.0910 3684 PerfHost - ok
14:11:09.0957 3684 [ 557E9A86F65F0DE18C9B6751DFE9D3F1 ] pla C:\Windows\system32\pla.dll
14:11:09.0973 3684 pla - ok
14:11:09.0988 3684 [ 23157D583244400E1D7FBAEE2E4B31B7 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
14:11:10.0004 3684 PlugPlay - ok
14:11:10.0004 3684 PnkBstrA - ok
14:11:10.0019 3684 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
14:11:10.0019 3684 PNRPAutoReg - ok
14:11:10.0019 3684 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
14:11:10.0035 3684 PNRPsvc - ok
14:11:10.0051 3684 [ 166EB40D1F5B47E615DE3D0FFFE5F243 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
14:11:10.0051 3684 PolicyAgent - ok
14:11:10.0066 3684 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll
14:11:10.0066 3684 Power - ok
14:11:10.0082 3684 [ 27CC19E81BA5E3403C48302127BDA717 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
14:11:10.0082 3684 PptpMiniport - ok
14:11:10.0082 3684 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\DRIVERS\processr.sys
14:11:10.0082 3684 Processor - ok
14:11:10.0097 3684 [ F381975E1F4346DE875CB07339CE8D3A ] ProfSvc C:\Windows\system32\profsvc.dll
14:11:10.0097 3684 ProfSvc - ok
14:11:10.0097 3684 [ 0793F40B9B8A1BDD266296409DBD91EA ] ProtectedStorage C:\Windows\system32\lsass.exe
14:11:10.0097 3684 ProtectedStorage - ok
14:11:10.0113 3684 [ EE992183BD8EAEFD9973F352E587A299 ] Psched C:\Windows\system32\DRIVERS\pacer.sys
14:11:10.0113 3684 Psched - ok
14:11:10.0144 3684 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys
14:11:10.0160 3684 ql2300 - ok
14:11:10.0160 3684 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys
14:11:10.0160 3684 ql40xx - ok
14:11:10.0175 3684 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll
14:11:10.0175 3684 QWAVE - ok
14:11:10.0175 3684 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
14:11:10.0175 3684 QWAVEdrv - ok
14:11:10.0191 3684 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
14:11:10.0191 3684 RasAcd - ok
14:11:10.0191 3684 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
14:11:10.0191 3684 RasAgileVpn - ok
14:11:10.0191 3684 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll
14:11:10.0207 3684 RasAuto - ok
14:11:10.0207 3684 [ 87A6E852A22991580D6D39ADC4790463 ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
14:11:10.0207 3684 Rasl2tp - ok
14:11:10.0222 3684 [ 47394ED3D16D053F5906EFE5AB51CC83 ] RasMan C:\Windows\System32\rasmans.dll
14:11:10.0238 3684 RasMan - ok
14:11:10.0238 3684 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
14:11:10.0238 3684 RasPppoe - ok
14:11:10.0238 3684 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
14:11:10.0238 3684 RasSstp - ok
14:11:10.0253 3684 [ 3BAC8142102C15D59A87757C1D41DCE5 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
14:11:10.0253 3684 rdbss - ok
14:11:10.0253 3684 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
14:11:10.0253 3684 rdpbus - ok
14:11:10.0269 3684 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
14:11:10.0269 3684 RDPCDD - ok
14:11:10.0269 3684 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
14:11:10.0269 3684 RDPENCDD - ok
14:11:10.0285 3684 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
14:11:10.0285 3684 RDPREFMP - ok
14:11:10.0285 3684 [ 8A3E6BEA1C53EA6177FE2B6EBA2C80D7 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
14:11:10.0285 3684 RDPWD - ok
14:11:10.0300 3684 [ 634B9A2181D98F15941236886164EC8B ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
14:11:10.0300 3684 rdyboost - ok
14:11:10.0316 3684 [ 9276F4D4109FC349925D28E00E533146 ] RegSrvc C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
14:11:10.0316 3684 RegSrvc - ok
14:11:10.0331 3684 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\Windows\System32\mprdim.dll
14:11:10.0331 3684 RemoteAccess - ok
14:11:10.0331 3684 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll
14:11:10.0347 3684 RemoteRegistry - ok
14:11:10.0347 3684 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
14:11:10.0347 3684 RpcEptMapper - ok
14:11:10.0363 3684 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe
14:11:10.0363 3684 RpcLocator - ok
14:11:10.0378 3684 [ 7266972E86890E2B30C0C322E906B027 ] RpcSs C:\Windows\system32\rpcss.dll
14:11:10.0378 3684 RpcSs - ok
14:11:10.0378 3684 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
14:11:10.0378 3684 rspndr - ok
14:11:10.0394 3684 [ E54A5586A28D0630A79A68BBAB84BFCF ] RSUSBVSTOR C:\Windows\system32\Drivers\RtsUVStor.sys
14:11:10.0394 3684 RSUSBVSTOR - ok
14:11:10.0409 3684 [ 20A466B9EA2BD828C0EC723F99B8CFE7 ] RTL8167 C:\Windows\system32\DRIVERS\Rt64win7.sys
14:11:10.0409 3684 RTL8167 - ok
14:11:10.0565 3684 [ 8AC69F3C7A8A8BD94EA26A08AE5D1839 ] rtsuvc C:\Windows\system32\DRIVERS\rtsuvc.sys
14:11:10.0612 3684 rtsuvc - ok
14:11:10.0612 3684 [ 0793F40B9B8A1BDD266296409DBD91EA ] SamSs C:\Windows\system32\lsass.exe
14:11:10.0628 3684 SamSs - ok
14:11:10.0628 3684 [ E3BBB89983DAF5622C1D50CF49F28227 ] sbp2port C:\Windows\system32\DRIVERS\sbp2port.sys
14:11:10.0628 3684 sbp2port - ok
14:11:10.0643 3684 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll
14:11:10.0643 3684 SCardSvr - ok
14:11:10.0643 3684 [ C94DA20C7E3BA1DCA269BC8460D98387 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
14:11:10.0643 3684 scfilter - ok
14:11:10.0690 3684 [ EC56B171F85C7E855E7B0588AC503EEA ] Schedule C:\Windows\system32\schedsvc.dll
14:11:10.0721 3684 Schedule - ok
14:11:10.0721 3684 [ 312E2F82AF11E79906898AC3E3D58A1F ] SCPolicySvc C:\Windows\System32\certprop.dll
14:11:10.0721 3684 SCPolicySvc - ok
14:11:10.0737 3684 [ 765A27C3279CE11D14CB9E4F5869FCA5 ] SDRSVC C:\Windows\System32\SDRSVC.dll
14:11:10.0737 3684 SDRSVC - ok
14:11:10.0737 3684 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys
14:11:10.0737 3684 secdrv - ok
14:11:10.0753 3684 [ 463B386EBC70F98DA5DFF85F7E654346 ] seclogon C:\Windows\system32\seclogon.dll
14:11:10.0753 3684 seclogon - ok
14:11:10.0753 3684 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\System32\sens.dll
14:11:10.0753 3684 SENS - ok
14:11:10.0768 3684 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll
14:11:10.0768 3684 SensrSvc - ok
14:11:10.0768 3684 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
14:11:10.0768 3684 Serenum - ok
14:11:10.0784 3684 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\DRIVERS\serial.sys
14:11:10.0784 3684 Serial - ok
14:11:10.0784 3684 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys
14:11:10.0784 3684 sermouse - ok
14:11:10.0799 3684 [ C3BC61CE47FF6F4E88AB8A3B429A36AF ] SessionEnv C:\Windows\system32\sessenv.dll
14:11:10.0799 3684 SessionEnv - ok
14:11:10.0799 3684 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\DRIVERS\sffdisk.sys
14:11:10.0799 3684 sffdisk - ok
14:11:10.0815 3684 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\DRIVERS\sffp_mmc.sys
14:11:10.0815 3684 sffp_mmc - ok
14:11:10.0815 3684 [ 5588B8C6193EB1522490C122EB94DFFA ] sffp_sd C:\Windows\system32\DRIVERS\sffp_sd.sys
14:11:10.0815 3684 sffp_sd - ok
14:11:10.0815 3684 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys
14:11:10.0815 3684 sfloppy - ok
14:11:10.0831 3684 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\Windows\System32\ipnathlp.dll
14:11:10.0846 3684 SharedAccess - ok
14:11:10.0846 3684 [ 0298AC45D0EFFFB2DB4BAA7DD186E7BF ] ShellHWDetection C:\Windows\System32\shsvcs.dll
14:11:10.0862 3684 ShellHWDetection - ok
14:11:10.0862 3684 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys
14:11:10.0862 3684 SiSRaid2 - ok
14:11:10.0877 3684 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys
14:11:10.0877 3684 SiSRaid4 - ok
14:11:10.0877 3684 [ 7C15061CD0372487903B07B9BB03AFAD ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
14:11:10.0877 3684 SkypeUpdate - ok
14:11:10.0893 3684 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys
14:11:10.0893 3684 Smb - ok
14:11:10.0893 3684 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe
14:11:10.0893 3684 SNMPTRAP - ok
14:11:10.0909 3684 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys
14:11:10.0909 3684 spldr - ok
14:11:10.0924 3684 [ 89E8550C5862999FCF482EA562B0E98E ] Spooler C:\Windows\System32\spoolsv.exe
14:11:10.0940 3684 Spooler - ok
14:11:11.0002 3684 [ 913D843498553A1BC8F8DBAD6358E49F ] sppsvc C:\Windows\system32\sppsvc.exe
14:11:11.0080 3684 sppsvc - ok
14:11:11.0080 3684 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll
14:11:11.0080 3684 sppuinotify - ok
14:11:11.0096 3684 [ EC8F67289105BF270498095F14963464 ] srv C:\Windows\system32\DRIVERS\srv.sys
14:11:11.0096 3684 srv - ok
14:11:11.0111 3684 [ F773D2ED090B7BAA1C1A034F3CA476C8 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
14:11:11.0111 3684 srv2 - ok
14:11:11.0127 3684 [ 26E84D3649019C3244622E654DFCD75B ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
14:11:11.0127 3684 srvnet - ok
14:11:11.0127 3684 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
14:11:11.0143 3684 SSDPSRV - ok
14:11:11.0143 3684 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\Windows\system32\sstpsvc.dll
14:11:11.0143 3684 SstpSvc - ok
14:11:11.0158 3684 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys
14:11:11.0158 3684 stexstor - ok
14:11:11.0174 3684 [ 52D0E33B681BD0F33FDC08812FEE4F7D ] stisvc C:\Windows\System32\wiaservc.dll
14:11:11.0189 3684 stisvc - ok
14:11:11.0189 3684 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\Windows\system32\DRIVERS\swenum.sys
14:11:11.0189 3684 swenum - ok
14:11:11.0205 3684 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\Windows\System32\swprv.dll
14:11:11.0221 3684 swprv - ok
14:11:11.0252 3684 [ 09E811486038F1C06F9E00DFFAAB7A4E ] SynTP C:\Windows\system32\DRIVERS\SynTP.sys
14:11:11.0252 3684 SynTP - ok
14:11:11.0299 3684 [ 3C1284516A62078FB68F768DE4F1A7BE ] SysMain C:\Windows\system32\sysmain.dll
14:11:11.0330 3684 SysMain - ok
14:11:11.0345 3684 [ 238935C3CF2854886DC7CBB2A0E2CC66 ] TabletInputService C:\Windows\System32\TabSvc.dll
14:11:11.0345 3684 TabletInputService - ok
14:11:11.0361 3684 [ 884264AC597B690C5707C89723BB8E7B ] TapiSrv C:\Windows\System32\tapisrv.dll
14:11:11.0361 3684 TapiSrv - ok
14:11:11.0361 3684 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\Windows\System32\tbssvc.dll
14:11:11.0377 3684 TBS - ok
14:11:11.0408 3684 [ 912107716BAB424C7870E8E6AF5E07E1 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
14:11:11.0423 3684 Tcpip - ok
14:11:11.0470 3684 [ 912107716BAB424C7870E8E6AF5E07E1 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
14:11:11.0486 3684 TCPIP6 - ok
14:11:11.0486 3684 [ 76D078AF6F587B162D50210F761EB9ED ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
14:11:11.0486 3684 tcpipreg - ok
14:11:11.0501 3684 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
14:11:11.0501 3684 TDPIPE - ok
14:11:11.0501 3684 [ E4245BDA3190A582D55ED09E137401A9 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
14:11:11.0501 3684 TDTCP - ok
14:11:11.0501 3684 [ 079125C4B17B01FCAEEBCE0BCB290C0F ] tdx C:\Windows\system32\DRIVERS\tdx.sys
14:11:11.0501 3684 tdx - ok
14:11:11.0517 3684 [ C448651339196C0E869A355171875522 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
14:11:11.0517 3684 TermDD - ok
14:11:11.0533 3684 [ 0F05EC2887BFE197AD82A13287D2F404 ] TermService C:\Windows\System32\termsrv.dll
14:11:11.0548 3684 TermService - ok
14:11:11.0548 3684 [ F0344071948D1A1FA732231785A0664C ] Themes C:\Windows\system32\themeservice.dll
14:11:11.0564 3684 Themes - ok
14:11:11.0564 3684 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\Windows\system32\mmcss.dll
14:11:11.0564 3684 THREADORDER - ok
14:11:11.0579 3684 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\Windows\System32\trkwks.dll
14:11:11.0579 3684 TrkWks - ok
14:11:11.0579 3684 [ 840F7FB849F5887A49BA18C13B2DA920 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
14:11:11.0579 3684 TrustedInstaller - ok
14:11:11.0595 3684 [ 61B96C26131E37B24E93327A0BD1FB95 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
14:11:11.0595 3684 tssecsrv - ok
14:11:11.0595 3684 [ 3836171A2CDF3AF8EF10856DB9835A70 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
14:11:11.0611 3684 tunnel - ok
14:11:11.0611 3684 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys
14:11:11.0611 3684 uagp35 - ok
14:11:11.0611 3684 [ D47BAEAD86C65D4F4069D7CE0A4EDCEB ] udfs C:\Windows\system32\DRIVERS\udfs.sys
14:11:11.0626 3684 udfs - ok
14:11:11.0642 3684 [ 54A4A93A984E5C30B5CAB9257A0A05BF ] UDisk Monitor C:\Program Files (x86)\Froyo_Android_Driver\Bin\MonServiceUDisk.exe
14:11:11.0642 3684 UDisk Monitor - ok
14:11:11.0642 3684 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\Windows\system32\UI0Detect.exe
14:11:11.0642 3684 UI0Detect - ok
14:11:11.0673 3684 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\Windows\system32\DRIVERS\uliagpkx.sys
14:11:11.0673 3684 uliagpkx - ok
14:11:11.0689 3684 [ EAB6C35E62B1B0DB0D1B48B671D3A117 ] umbus C:\Windows\system32\DRIVERS\umbus.sys
14:11:11.0689 3684 umbus - ok
14:11:11.0689 3684 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\Windows\system32\DRIVERS\umpass.sys
14:11:11.0689 3684 UmPass - ok
14:11:11.0735 3684 [ FDF92EC84FECEE834FB10A2A0A19BCDA ] UNS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
14:11:11.0751 3684 UNS - ok
14:11:11.0767 3684 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\Windows\System32\upnphost.dll
14:11:11.0767 3684 upnphost - ok
14:11:11.0767 3684 [ B26AFB54A534D634523C4FB66765B026 ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
14:11:11.0767 3684 usbccgp - ok
14:11:11.0782 3684 [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir C:\Windows\system32\DRIVERS\usbcir.sys
14:11:11.0782 3684 usbcir - ok
14:11:11.0782 3684 [ 2EA4AFF7BE7EB4632E3AA8595B0803B5 ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
14:11:11.0782 3684 usbehci - ok
14:11:11.0798 3684 [ 4C9042B8DF86C1E8E6240C218B99B39B ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
14:11:11.0798 3684 usbhub - ok
14:11:11.0798 3684 [ 58E546BBAF87664FC57E0F6081E4F609 ] usbohci C:\Windows\system32\DRIVERS\usbohci.sys
14:11:11.0798 3684 usbohci - ok
14:11:11.0813 3684 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
14:11:11.0813 3684 usbprint - ok
14:11:11.0813 3684 [ 080D3820DA6C046BE82FC8B45A893E83 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
14:11:11.0813 3684 USBSTOR - ok
14:11:11.0813 3684 [ 81FB2216D3A60D1284455D511797DB3D ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys
14:11:11.0813 3684 usbuhci - ok
14:11:11.0829 3684 [ D501E12614B00A3252073101D6A1A74B ] usbvideo C:\Windows\system32\Drivers\usbvideo.sys
14:11:11.0829 3684 usbvideo - ok
14:11:11.0829 3684 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\Windows\System32\uxsms.dll
14:11:11.0845 3684 UxSms - ok
14:11:11.0845 3684 [ 0793F40B9B8A1BDD266296409DBD91EA ] VaultSvc C:\Windows\system32\lsass.exe
14:11:11.0845 3684 VaultSvc - ok
14:11:11.0845 3684 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\Windows\system32\DRIVERS\vdrvroot.sys
14:11:11.0860 3684 vdrvroot - ok
14:11:11.0876 3684 [ 44D73E0BBC1D3C8981304BA15135C2F2 ] vds C:\Windows\System32\vds.exe
14:11:11.0876 3684 vds - ok
14:11:11.0876 3684 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
14:11:11.0876 3684 vga - ok
14:11:11.0891 3684 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\Windows\System32\drivers\vga.sys
14:11:11.0891 3684 VgaSave - ok
14:11:11.0891 3684 [ C82E748660F62A242B2DFAC1442F22A4 ] vhdmp C:\Windows\system32\DRIVERS\vhdmp.sys
14:11:11.0891 3684 vhdmp - ok
14:11:11.0891 3684 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\Windows\system32\DRIVERS\viaide.sys
14:11:11.0907 3684 viaide - ok
14:11:11.0907 3684 [ 2B1A3DAE2B4E70DBBA822B7A03FBD4A3 ] volmgr C:\Windows\system32\DRIVERS\volmgr.sys
14:11:11.0907 3684 volmgr - ok
14:11:11.0923 3684 [ 99B0CBB569CA79ACAED8C91461D765FB ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
14:11:11.0923 3684 volmgrx - ok
14:11:11.0923 3684 [ 58F82EED8CA24B461441F9C3E4F0BF5C ] volsnap C:\Windows\system32\DRIVERS\volsnap.sys
14:11:11.0938 3684 volsnap - ok
14:11:11.0938 3684 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys
14:11:11.0938 3684 vsmraid - ok
14:11:11.0969 3684 [ 787898BF9FB6D7BD87A36E2D95C899BA ] VSS C:\Windows\system32\vssvc.exe
14:11:11.0985 3684 VSS - ok
14:11:11.0985 3684 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys
14:11:11.0985 3684 vwifibus - ok
14:11:12.0001 3684 [ 6A3D66263414FF0D6FA754C646612F3F ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys
14:11:12.0001 3684 vwififlt - ok
14:11:12.0001 3684 [ 6A638FC4BFDDC4D9B186C28C91BD1A01 ] vwifimp C:\Windows\system32\DRIVERS\vwifimp.sys
14:11:12.0001 3684 vwifimp - ok
14:11:12.0016 3684 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\Windows\system32\w32time.dll
14:11:12.0032 3684 W32Time - ok
14:11:12.0032 3684 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys
14:11:12.0032 3684 WacomPen - ok
14:11:12.0032 3684 [ 47CA49400643EFFD3F1C9A27E1D69324 ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
14:11:12.0032 3684 WANARP - ok
14:11:12.0047 3684 [ 47CA49400643EFFD3F1C9A27E1D69324 ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
14:11:12.0047 3684 Wanarpv6 - ok
14:11:12.0079 3684 [ 5AB1BB85BD8B5089CC5D64200DEDAE68 ] wbengine C:\Windows\system32\wbengine.exe
14:11:12.0094 3684 wbengine - ok
14:11:12.0094 3684 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
14:11:12.0110 3684 WbioSrvc - ok
14:11:12.0110 3684 [ 8321C2CA3B62B61B293CDA3451984468 ] wcncsvc C:\Windows\System32\wcncsvc.dll
14:11:12.0125 3684 wcncsvc - ok
14:11:12.0125 3684 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
14:11:12.0125 3684 WcsPlugInService - ok
14:11:12.0141 3684 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\Windows\system32\DRIVERS\wd.sys
14:11:12.0141 3684 Wd - ok
14:11:12.0157 3684 [ 441BD2D7B4F98134C3A4F9FA570FD250 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
14:11:12.0157 3684 Wdf01000 - ok
14:11:12.0172 3684 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\Windows\system32\wdi.dll
14:11:12.0172 3684 WdiServiceHost - ok
14:11:12.0172 3684 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\Windows\system32\wdi.dll
14:11:12.0172 3684 WdiSystemHost - ok
14:11:12.0188 3684 [ 8A438CBB8C032A0C798B0C642FFBE572 ] WebClient C:\Windows\System32\webclnt.dll
14:11:12.0188 3684 WebClient - ok
14:11:12.0203 3684 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\Windows\system32\wecsvc.dll
14:11:12.0203 3684 Wecsvc - ok
14:11:12.0219 3684 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\Windows\System32\wercplsupport.dll
14:11:12.0219 3684 wercplsupport - ok
14:11:12.0219 3684 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\Windows\System32\WerSvc.dll
14:11:12.0235 3684 WerSvc - ok
14:11:12.0235 3684 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
14:11:12.0235 3684 WfpLwf - ok
14:11:12.0235 3684 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\Windows\system32\drivers\wimmount.sys
14:11:12.0235 3684 WIMMount - ok
14:11:12.0250 3684 WinDefend - ok
14:11:12.0250 3684 WinHttpAutoProxySvc - ok
14:11:12.0266 3684 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
14:11:12.0266 3684 Winmgmt - ok
14:11:12.0313 3684 [ 41FBB751936B387F9179E7F03A74FE29 ] WinRM C:\Windows\system32\WsmSvc.dll
14:11:12.0344 3684 WinRM - ok
14:11:12.0375 3684 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\Windows\System32\wlansvc.dll
14:11:12.0391 3684 Wlansvc - ok
14:11:12.0406 3684 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\Windows\system32\DRIVERS\wmiacpi.sys
14:11:12.0406 3684 WmiAcpi - ok
14:11:12.0406 3684 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
14:11:12.0406 3684 wmiApSrv - ok
14:11:12.0422 3684 WMPNetworkSvc - ok
14:11:12.0422 3684 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\Windows\System32\wpcsvc.dll
14:11:12.0422 3684 WPCSvc - ok
14:11:12.0437 3684 [ 2E57DDF2880A7E52E76F41C7E96D327B ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
14:11:12.0437 3684 WPDBusEnum - ok
14:11:12.0437 3684 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
14:11:12.0437 3684 ws2ifsl - ok
14:11:12.0453 3684 [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc C:\Windows\System32\wscsvc.dll
14:11:12.0453 3684 wscsvc - ok
14:11:12.0453 3684 WSearch - ok
14:11:12.0515 3684 [ 38340204A2D0228F1E87740FC5E554A7 ] wuauserv C:\Windows\system32\wuaueng.dll
14:11:12.0562 3684 wuauserv - ok
14:11:12.0578 3684 [ 7CADC74271DD6461C452C271B30BD378 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
14:11:12.0578 3684 WudfPf - ok
14:11:12.0578 3684 [ 3B197AF0FFF08AA66B6B2241CA538D64 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
14:11:12.0578 3684 WUDFRd - ok
14:11:12.0593 3684 [ B551D6637AA0E132C18AC6E504F7B79B ] wudfsvc C:\Windows\System32\WUDFSvc.dll
14:11:12.0593 3684 wudfsvc - ok
14:11:12.0609 3684 [ 9A3452B3C2A46C073166C5CF49FAD1AE ] WwanSvc C:\Windows\System32\wwansvc.dll
14:11:12.0609 3684 WwanSvc - ok
14:11:12.0625 3684 ================ Scan global ===============================
14:11:12.0625 3684 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll
14:11:12.0640 3684 [ 457B44AB6D502E55F64A867D4F35C76C ] C:\Windows\system32\winsrv.dll
14:11:12.0656 3684 [ 457B44AB6D502E55F64A867D4F35C76C ] C:\Windows\system32\winsrv.dll
14:11:12.0687 3684 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll
14:11:12.0734 3684 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe
14:11:12.0734 3684 [Global] - ok
14:11:12.0734 3684 ================ Scan MBR ==================================
14:11:12.0734 3684 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0
14:11:12.0749 3684 \Device\Harddisk0\DR0 - ok
14:11:12.0781 3684 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk1\DR1
14:11:13.0280 3684 \Device\Harddisk1\DR1 - ok
14:11:13.0280 3684 ================ Scan VBR ==================================
14:11:13.0280 3684 [ 7F55E33104A3B38B3E52044C3EF144DD ] \Device\Harddisk0\DR0\Partition1
14:11:13.0280 3684 \Device\Harddisk0\DR0\Partition1 - ok
14:11:13.0295 3684 [ 979366269217D47CA107D9FA5CB50C08 ] \Device\Harddisk1\DR1\Partition1
14:11:13.0295 3684 \Device\Harddisk1\DR1\Partition1 - ok
14:11:13.0295 3684 ============================================================
14:11:13.0295 3684 Scan finished
14:11:13.0295 3684 ============================================================
14:11:13.0295 0876 Detected object count: 0
14:11:13.0295 0876 Actual detected object count: 0
14:11:28.0022 2648 Deinitialize success

Uživatelský avatar
Žbeky
Moderátor
Guru Level 13
Guru Level 13
Příspěvky: 22288
Registrován: květen 08
Bydliště: Vsetín - Pardubice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod Žbeky » 13 dub 2013 16:50

Vypni rezidentní štít antiviru a antispywaru
Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud bude po kontrole problém spustit aplikace nebo bude vyskakovat hláška o pokusu použít neplatnou operaci na klíč registru, který je označen pro odstranění, stačí restartovat počítač.
V SZ řeším jen záležitosti týkající se fóra. Na prosby a žádosti o technickou podporu nereaguji. Díky za pochopení.

HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra

Zubin332
Level 1.5
Level 1.5
Příspěvky: 101
Registrován: prosinec 10
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod Zubin332 » 17 dub 2013 14:44

ComboFix 13-04-17.01 - Kuba 17.04.2013 14:36:01.3.4 - x64
Microsoft Windows 7 Home Premium 6.1.7600.0.1250.420.1029.18.4010.2663 [GMT 2:00]
Spuštěný z: c:\users\Kuba\Desktop\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2013-03-17 do 2013-04-17 )))))))))))))))))))))))))))))))
.
.
2013-04-17 12:39 . 2013-04-17 12:39 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
2013-04-17 12:39 . 2013-04-17 12:39 -------- d-----w- c:\users\Default\AppData\Local\temp
2013-04-15 14:10 . 2013-04-15 14:10 -------- d-----w- c:\users\Kuba\AppData\Local\CrashRpt
2013-04-15 10:30 . 2013-04-16 18:11 -------- d-----w- c:\users\Kuba\AppData\Roaming\Tunngle
2013-04-15 10:30 . 2013-04-16 17:57 -------- d-----w- c:\programdata\Tunngle
2013-04-15 10:30 . 2009-09-16 05:02 31232 ----a-w- c:\windows\system32\drivers\tap0901t.sys
2013-04-15 10:30 . 2013-04-15 10:30 -------- d-----w- c:\program files (x86)\Tunngle
2013-04-14 15:29 . 2013-04-14 15:29 -------- d-----w- c:\users\Kuba\AppData\Local\ArmA 2 OA
2013-04-13 14:07 . 2013-04-13 14:07 -------- d-----w- c:\users\Kuba\AppData\Local\Chromium
2013-04-13 12:23 . 2013-04-13 12:23 -------- d-----w- c:\program files (x86)\Common Files\Steam
2013-04-13 12:06 . 2013-04-13 12:09 -------- d-----w- c:\program files (x86)\CrystalDiskInfo
2013-04-11 12:57 . 2013-04-14 17:54 -------- d-----w- c:\users\Kuba\AppData\Roaming\.minecraft
2013-04-09 13:59 . 2013-04-09 12:06 3130440 ----a-w- c:\windows\SysWow64\pbsvc_blr.exe
2013-04-09 13:59 . 2013-04-09 13:59 -------- d-----w- c:\program files (x86)\Common Files\Wise Installation Wizard
2013-04-09 12:40 . 2013-04-09 12:40 -------- d-----w- c:\users\Kuba\AppData\Roaming\dvdcss
2013-04-08 15:37 . 2013-04-08 15:37 -------- d-----w- c:\programdata\Energy Management
2013-04-05 16:15 . 2013-04-05 16:15 98304 ----a-w- c:\windows\SysWow64\CmdLineExt.dll
2013-04-03 14:50 . 2013-04-03 14:50 282756 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\0701\Intel32\setup.dll
2013-04-03 14:50 . 2013-04-03 14:50 163972 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\0701\Intel32\iGdi.dll
2013-04-03 14:50 . 2002-12-05 12:12 692224 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\0701\Intel32\iKernel.dll
2013-04-03 14:50 . 2002-12-05 12:10 155648 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\0701\Intel32\iuser.dll
2013-04-03 14:50 . 2002-12-02 13:22 5632 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\0701\Intel32\DotNetInstaller.exe
2013-04-03 14:50 . 2002-12-02 11:33 57344 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\0701\Intel32\ctor.dll
2013-04-03 14:50 . 2002-12-02 11:33 237568 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\0701\Intel32\iscript.dll
2013-03-29 13:27 . 2013-04-17 12:02 -------- d-----w- c:\users\Kuba\AppData\Roaming\vlc
2013-03-29 10:32 . 2013-03-29 10:32 -------- d-----w- c:\programdata\Blizzard Entertainment
2013-03-29 10:32 . 2013-03-29 10:32 -------- d-----w- c:\program files (x86)\Common Files\Blizzard Entertainment
2013-03-29 10:31 . 2013-03-29 10:31 -------- d-----w- c:\programdata\Battle.net
2013-03-28 12:33 . 2013-03-28 12:33 -------- d-----w- c:\users\Kuba\AppData\Local\ElevatedDiagnostics
2013-03-27 19:06 . 2013-03-27 19:06 -------- d-----w- c:\program files (x86)\Common Files\Skype
2013-03-21 18:06 . 2013-03-21 18:06 -------- d--h--r- c:\users\Kuba\AppData\Roaming\SecuROM
2013-03-18 17:57 . 2011-08-24 08:02 122368 ----a-w- c:\windows\system32\drivers\CT_U_USBSER.sys
2013-03-18 17:57 . 2013-03-18 17:57 -------- d-----w- c:\program files (x86)\Froyo_Android_Driver
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-04-16 13:35 . 2013-02-24 15:32 280792 ----a-w- c:\windows\SysWow64\PnkBstrB.xtr
2013-04-16 13:35 . 2013-02-24 15:27 280792 ----a-w- c:\windows\SysWow64\PnkBstrB.exe
2013-04-16 13:34 . 2013-02-24 15:27 281032 ----a-w- c:\windows\SysWow64\PnkBstrB.ex0
2013-04-09 14:13 . 2013-02-24 15:27 76888 ----a-w- c:\windows\SysWow64\PnkBstrA.exe
2013-04-04 12:50 . 2013-03-01 15:35 25928 ----a-w- c:\windows\system32\drivers\mbam.sys
2013-03-18 15:18 . 2013-02-24 16:56 73432 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2013-03-18 15:18 . 2013-02-24 16:56 693976 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2013-03-04 17:26 . 2013-03-04 17:26 283200 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys
2013-02-28 08:36 . 2013-03-01 15:47 177672 ----a-w- c:\windows\system32\drivers\aswVmm.sys
2013-02-28 08:36 . 2013-02-25 18:59 68992 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2013-02-28 08:36 . 2013-03-01 15:47 65408 ----a-w- c:\windows\system32\drivers\aswRvrt.sys
2013-02-28 08:36 . 2013-02-25 18:59 377992 ----a-w- c:\windows\system32\drivers\aswSP.sys
2013-02-28 08:36 . 2013-02-25 18:59 71064 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2013-02-28 08:36 . 2013-02-25 18:59 1025880 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2013-02-28 08:36 . 2013-02-25 18:59 80888 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2013-02-28 08:36 . 2013-02-25 18:59 33472 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2013-02-28 08:36 . 2013-02-25 18:59 41664 ----a-w- c:\windows\avastSS.scr
2013-02-28 08:35 . 2013-02-25 18:59 287840 ----a-w- c:\windows\system32\aswBoot.exe
2013-02-24 14:51 . 2013-02-24 14:51 861088 ----a-w- c:\windows\SysWow64\npDeployJava1.dll
2013-02-24 14:51 . 2013-02-24 14:51 782240 ----a-w- c:\windows\SysWow64\deployJava1.dll
2013-02-24 14:51 . 2013-02-24 14:51 95648 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll
2013-02-24 14:45 . 2013-02-24 14:45 279968 ----a-w- c:\windows\system32\LenovoSdk.OKTDLL.dll
2013-02-24 14:44 . 2013-02-24 14:44 39008 ----a-w- c:\windows\system32\drivers\LhdX64.sys
2013-02-24 14:44 . 2013-02-24 14:44 19872 ----a-w- c:\windows\system32\LenovoSDKEmSubSystem.dll
2013-02-24 14:44 . 2010-10-25 18:44 29792 ----a-w- c:\windows\system32\drivers\AcpiVpc.sys
2013-02-19 02:57 . 2013-02-24 15:14 9162192 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{95C555DA-7208-4D0F-8B9D-7AA0261444E3}\mpengine.dll
2013-02-10 03:25 . 2013-02-24 14:54 61216 ----a-w- c:\windows\system32\OpenCL.dll
2013-02-10 03:25 . 2013-02-24 14:54 53024 ----a-w- c:\windows\SysWow64\OpenCL.dll
2013-02-10 03:25 . 2013-02-24 14:53 963776 ----a-w- c:\windows\SysWow64\nvumdshim.dll
2013-02-10 03:25 . 2013-02-24 14:53 9422672 ----a-w- c:\windows\system32\nvcuda.dll
2013-02-10 03:25 . 2013-02-24 14:53 7964680 ----a-w- c:\windows\SysWow64\nvcuda.dll
2013-02-10 03:25 . 2013-02-24 14:53 7569184 ----a-w- c:\windows\system32\nvopencl.dll
2013-02-10 03:25 . 2013-02-24 14:53 6267240 ----a-w- c:\windows\SysWow64\nvopencl.dll
2013-02-10 03:25 . 2013-02-24 14:53 30496 ----a-w- c:\windows\system32\drivers\nvpciflt.sys
2013-02-10 03:25 . 2013-02-24 14:53 2911008 ----a-w- c:\windows\system32\nvcuvid.dll
2013-02-10 03:25 . 2013-02-24 14:53 2854344 ----a-w- c:\windows\system32\nvapi64.dll
2013-02-10 03:25 . 2013-02-24 14:53 2726176 ----a-w- c:\windows\SysWow64\nvcuvid.dll
2013-02-10 03:25 . 2013-02-24 14:53 26947360 ----a-w- c:\windows\system32\nvoglv64.dll
2013-02-10 03:25 . 2013-02-24 14:53 2528840 ----a-w- c:\windows\SysWow64\nvapi.dll
2013-02-10 03:25 . 2013-02-24 14:53 25256736 ----a-w- c:\windows\system32\nvcompiler.dll
2013-02-10 03:25 . 2013-02-24 14:53 250504 ----a-w- c:\windows\system32\nvinitx.dll
2013-02-10 03:25 . 2013-02-24 14:53 2350368 ----a-w- c:\windows\system32\nvcuvenc.dll
2013-02-10 03:25 . 2013-02-24 14:53 20534560 ----a-w- c:\windows\SysWow64\nvoglv32.dll
2013-02-10 03:25 . 2013-02-24 14:53 205184 ----a-w- c:\windows\SysWow64\nvinit.dll
2013-02-10 03:25 . 2013-02-24 14:53 1990944 ----a-w- c:\windows\SysWow64\nvcuvenc.dll
2013-02-10 03:25 . 2013-02-24 14:53 1807136 ----a-w- c:\windows\system32\nvdispco6420294.dll
2013-02-10 03:25 . 2013-02-24 14:53 17987192 ----a-w- c:\windows\system32\nvd3dumx.dll
2013-02-10 03:25 . 2013-02-24 14:53 17560352 ----a-w- c:\windows\SysWow64\nvcompiler.dll
2013-02-10 03:25 . 2013-02-24 14:53 15275744 ----a-w- c:\windows\system32\nvwgf2umx.dll
2013-02-10 03:25 . 2013-02-24 14:53 1510176 ----a-w- c:\windows\system32\nvdispgenco6420162.dll
2013-02-10 03:25 . 2013-02-24 14:53 15038296 ----a-w- c:\windows\SysWow64\nvd3dum.dll
2013-02-10 03:25 . 2013-02-24 14:53 12862400 ----a-w- c:\windows\SysWow64\nvwgf2um.dll
2013-02-10 03:25 . 2013-02-24 14:53 1114144 ----a-w- c:\windows\system32\nvumdshimx.dll
2013-02-10 03:25 . 2013-02-24 14:53 11040544 ----a-w- c:\windows\system32\drivers\nvlddmkm.sys
2013-02-10 01:04 . 2013-02-24 14:54 6393120 ----a-w- c:\windows\system32\nvcpl.dll
2013-02-10 01:04 . 2013-02-24 14:54 3472672 ----a-w- c:\windows\system32\nvsvc64.dll
2013-02-10 01:04 . 2013-02-24 14:54 76064 ----a-w- c:\windows\system32\nv3dappshextr.dll
2013-02-10 01:04 . 2013-02-24 14:54 63776 ----a-w- c:\windows\system32\nvshext.dll
2013-02-10 01:04 . 2013-02-24 14:54 1012000 ----a-w- c:\windows\system32\nv3dappshext.dll
2013-02-10 01:04 . 2013-02-24 14:54 877856 ----a-w- c:\windows\system32\nvvsvc.exe
2013-02-10 01:04 . 2013-02-24 14:54 564000 ----a-w- c:\windows\SysWow64\oemdspif.dll
2013-02-10 01:04 . 2013-02-24 14:54 2555680 ----a-w- c:\windows\system32\nvsvcr.dll
2013-02-10 01:04 . 2013-02-24 14:54 237856 ----a-w- c:\windows\system32\nvmctray.dll
2013-02-09 13:25 . 2013-02-24 14:54 3035306 ----a-w- c:\windows\system32\nvcoproc.bin
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"="c:\program files (x86)\DAEMON Tools Lite\DTLite.exe" [2013-01-08 3674320]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"="c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" [2010-09-13 283160]
"GrooveMonitor"="d:\program files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" [2006-10-26 31016]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2013-02-28 4767304]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=1 (0x1)
"AppInit_DLLs"=c:\windows\SysWOW64\nvinit.dll
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe [2013-02-28 161384]
R2 UDisk Monitor;UDisk Monitor;c:\program files (x86)\Froyo_Android_Driver\Bin\MonServiceUDisk.exe [2011-05-12 512000]
R3 aswVmm;aswVmm; [x]
R3 Generalusbserialser20675;USB Legacy Serial Communication 20675;c:\windows\system32\DRIVERS\CT_U_USBSER.sys [2011-08-24 122368]
R3 GGSAFERDriver;GGSAFER Driver;d:\program files (x86)\Garena Plus\Room\safedrv.sys [x]
R3 MyWiFiDHCPDNS;Wireless PAN DHCP Server;c:\program files\Intel\WiFi\bin\PanDhcpDns.exe [2010-11-02 340240]
R3 RSUSBVSTOR;RtsUVStor.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RtsUVStor.sys [2010-11-30 307304]
R3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [2010-05-31 333928]
R3 TunngleService;TunngleService;c:\program files (x86)\Tunngle\TnglCtrl.exe [2013-03-20 746392]
S0 aswRvrt;aswRvrt; [x]
S0 LHDmgr;LHDmgr;c:\windows\System32\DRIVERS\LhdX64.sys [2013-02-24 39008]
S0 nvpciflt;nvpciflt;c:\windows\system32\DRIVERS\nvpciflt.sys [2013-02-10 30496]
S1 aswSnx;aswSnx; [x]
S1 aswSP;aswSP; [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [2013-03-04 283200]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2013-02-28 80888]
S2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine;d:\program files (x86)\LogMeIn Hamachi\hamachi-2.exe [2012-12-14 2466304]
S2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-09-13 13336]
S2 UNS;Intel(R) Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-10-05 2655768]
S3 ACPIVPC;Lenovo Virtual Power Controller Driver;c:\windows\system32\DRIVERS\AcpiVpc.sys [2013-02-24 29792]
S3 IntcDAud;Intel(R) Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys [2010-10-14 317440]
S3 rtsuvc;Lenovo EasyCamera;c:\windows\system32\DRIVERS\rtsuvc.sys [2010-12-15 8200552]
S3 tap0901t;TAP-Win32 Adapter V9 (Tunngle);c:\windows\system32\DRIVERS\tap0901t.sys [2009-09-16 31232]
.
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2013-02-28 08:35 133840 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2010-12-20 167960]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2010-12-20 391704]
"Persistence"="c:\windows\system32\igfxpers.exe" [2010-12-20 418328]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2010-12-14 11697768]
"IntelWireless"="c:\program files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" [2010-11-02 1933584]
"Energy Management"="c:\program files (x86)\Lenovo\Energy Management\Energy Management.exe" [2013-02-24 9745312]
"EnergyUtility"="c:\program files (x86)\Lenovo\Energy Management\Utility.exe" [2013-02-24 5374880]
"OnekeyStudio"="c:\program files (x86)\Lenovo\Onekey Theater\OnekeyStudio.exe" [2013-02-24 789920]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=c:\windows\System32\nvinitx.dll
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SYSTEM32\blank.htm
IE: E&xportovat do aplikace Microsoft Excel - d:\progra~1\MICROS~1\Office12\EXCEL.EXE/3000
FF - ProfilePath - c:\users\Kuba\AppData\Roaming\Mozilla\Firefox\Profiles\n4y50z4x.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
FF - prefs.js: keyword.URL - hxxp://search.seznam.cz/?sourceid=undefined&q=
FF - ExtSQL: 2013-02-25 20:02; wrc@avast.com; c:\program files\AVAST Software\Avast\WebRep\FF
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
HKLM-Run-SynTPEnh - c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe
AddRemove-PunkBusterSvc - c:\windows\system32\pbsvc_blr.exe
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\S-1-5-21-2821126583-4238001618-3695001564-1000\Software\SecuROM\License information*]
"datasecu"=hex:11,15,b6,0d,4e,8b,ba,bb,81,33,47,4d,ad,25,4e,85,8b,07,4a,60,39,
ed,f0,3e,5a,ce,b5,d5,4f,8a,b9,96,5b,44,a5,7b,83,4e,28,ec,e3,02,aa,54,ac,26,\
"rkeysecu"=hex:da,6d,7f,57,55,be,87,91,f4,34,6e,46,da,b4,90,31
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VideoLAN.VLCPlugin.*1*]
@="?????????????????? v1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VideoLAN.VLCPlugin.*1*\CLSID]
@="{E23FE9C6-778E-49D4-B537-38FCDE4887D8}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VideoLAN.VLCPlugin.*2*]
@="?????????????????? v2"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VideoLAN.VLCPlugin.*2*\CLSID]
@="{9BE31822-FDAD-461B-AD51-BE1D1C159921}"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2013-04-17 14:42:09
ComboFix-quarantined-files.txt 2013-04-17 12:42
.
Před spuštěním: Volných bajtů: 34 086 133 760
Po spuštění: Volných bajtů: 33 838 665 728
.
- - End Of File - - DFC45D9E8E1A1C374660D3E097E2A590


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 63 hostů