Prosím o kontrolu logu Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

tempus
Level 1.5
Level 1.5
Příspěvky: 131
Registrován: září 09
Pohlaví: Nespecifikováno
Stav:
Offline

Prosím o kontrolu logu

Příspěvekod tempus » 08 srp 2013 09:24

Ahoj, počítač se zdá občas trochu zabrzděný a samo vyskakuje okno, ketré se ani neotevře, je to z této adresy:
http://scrzz.tester-rewards.birthdaypeoms.com

Ke konci skenu programem HiJackThis se zobrazilo okno, ketré je na konci příspěvku. A při prvním skenu vyskočil prázdný *.log, tak nevím jestli je to standardní postup.

Dále bych měl ještě dotaz, snad to sem patří? Do emailu mi chodí spam, nějaké nabídky výdělku či co, např. toto:

,,Important Information Enclosed!!! Huge New Pick!

Name: BUILDING TURBINES CORP
Trade Date: Tue, August 6th
Symbol traded: BLD_W
Current Price: $.044
Short Term Target: .85

New Pick Coming Tomorrow!!! It Was One Of Favorite Alerts This Year!,,

Dá se toho nějak zbavit, adresa odesílatele se neustále mění..
Děkuji za pomoc s řešením.


Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 9:05:21, on 8.8.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16635)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Users\Ichigo\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe
C:\Program Files (x86)\Launch Manager\LManager.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe
C:\Program Files (x86)\totalcmd\TOTALCMD.EXE
C:\Program Files (x86)\Trend Micro\HiJackThis\HiJackThis.exe
C:\Program Files (x86)\Microsoft Office\Office12\WINWORD.EXE
C:\Windows\SysWOW64\DllHost.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: IESpeakDoc - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Pomocná služba pro přihlášení ke službě Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [BackupManagerTray] "C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe" -h -k
O4 - HKLM\..\Run: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - Startup: BatteryBar.lnk = C:\Program Files\BatteryBar\BatteryBar.exe
O4 - Startup: Dropbox.lnk = Ichigo\AppData\Roaming\Dropbox\bin\Dropbox.exe
O4 - Global Startup: Acer VCM.lnk = ?
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: ICQ7.7 - {77F665FD-3F60-4B0A-AE14-EC124B7A7FCE} - C:\Program Files (x86)\ICQ7.7\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.7 - {77F665FD-3F60-4B0A-AE14-EC124B7A7FCE} - C:\Program Files (x86)\ICQ7.7\ICQ.exe
O9 - Extra button: (no name) - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O9 - Extra 'Tools' menuitem: Send by Bluetooth to - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~3\Office12\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - AppInit_DLLs: c:\progra~3\browse~1\261249~1.132\{c16c1~1\browse~1.dll c:\windows\syswow64\nvinit.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AtherosSvc - Atheros Commnucations - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: Autodesk Content Service - Unknown owner - C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: @C:\Windows\system32\CxAudMsg64.exe,-100 (CxAudMsg) - Unknown owner - C:\Windows\system32\CxAudMsg64.exe (file missing)
O23 - Service: DokanMounter - Unknown owner - C:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe
O23 - Service: Dritek WMI Service (DsiWMIService) - Dritek System Inc. - C:\Program Files (x86)\Launch Manager\dsiwmis.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Acer ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: FLEXlm server for PTC - Macrovision Corporation - C:\Program Files\flexnet\x86e_win64\obj\lmgrd.exe
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: FLEXnet Licensing Service 64 - Flexera Software, Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
O23 - Service: GREGService - Acer Incorporated - C:\Program Files (x86)\Acer\Registration\GREGsvc.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: IconMan_R - Realsil Microelectronics Inc. - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
O23 - Service: IviRegMgr - InterVideo - C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NTI IScheduleSvc - NTI Corporation - C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: Overwolf Updater Service (OverwolfUpdaterService) - Overwolf Ltd - C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: Raw Socket Service (RS_Service) - Acer Incorporated - C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype C2C Service - Unknown owner - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: Intel(R) Turbo Boost Technology Monitor 2.0 (TurboBoost) - Intel(R) Corporation - C:\Program Files\Intel\TurboBoost\TurboBoost.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: Updater Service - Acer Group - C:\Program Files\Acer\Acer Updater\UpdaterService.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 13778 bytes
Přílohy
Bez názvu.jpg

Reklama
Uživatelský avatar
memphisto
Guru Level 13
Guru Level 13
Příspěvky: 21113
Registrován: září 06
Bydliště: Zlín - České Budějovice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod memphisto » 08 srp 2013 09:26

To okno říká, že máš HJT spouštět jako správce...

Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
- Pokud používáš Firefox, klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
- Pokud používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected.
- Pokud používáš Chrome, nic dalšího nevybírej a dej Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.

Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Update Malwarebytes' Anti-Malware (Aktualizace Malwarebytes' Anti-Malware) a Launch Malwarebytes' Anti-Malware (Spustit aplikaci Malwarebytes' Anti-Malware), pokud jo tak klikni na tlačítko Finish
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Perform Quick Scan (Provést rychlý sken) a klikni na tlačítko Scan (Skenovat)
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Show Results
- pak zvol možnost Save Logfile a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(ZATÍM SÁM NIC NEMAŽ!).
Vlož sem pak obsah toho logu.

Stáhni AdwCleaner

Ulož si ho na svojí plochu
Ukonči všechny programy, okna a prohlížeče
Spusť program poklepáním a klikni na „Search“
Po skenu se objeví log (jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji

tempus
Level 1.5
Level 1.5
Příspěvky: 131
Registrován: září 09
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod tempus » 08 srp 2013 09:48

Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware.) 1.75.0.1300
www.malwarebytes.org

Verze: v2013.08.08.02

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 10.0.9200.16635
Ichigo :: ICHIGO-PC [administrátor]

Ochrana: Povolena

8.8.2013 9:36:16
MBAM-log-2013-08-08 (09-43-28).txt

Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 247742
Uplynulý čas: 5 minut, 55 sekund

Nalezené procesy v paměti: 1
D:\Download\setup.exe (PUP.Optional.IBryte.A) -> 5924 -> Nebyla provedena žádná instrukce.

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 4
D:\Download\setup.exe (PUP.Optional.IBryte.A) -> Nebyla provedena žádná instrukce.
C:\Users\Ichigo\AppData\Local\Temp\bicxJVRA.exe.part (PUP.BundleInstaller.DW) -> Nebyla provedena žádná instrukce.
C:\Users\Ichigo\AppData\Local\Temp\EOpNHWz4.exe.part (PUP.BundleInstaller.DW) -> Nebyla provedena žádná instrukce.
C:\Users\Ichigo\AppData\Local\Temp\qOoYzLFO.exe.part (PUP.BundleInstaller.DW) -> Nebyla provedena žádná instrukce.

(konec)

tempus
Level 1.5
Level 1.5
Příspěvky: 131
Registrován: září 09
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod tempus » 08 srp 2013 09:50

# AdwCleaner v2.306 - Log vytvooen 08/08/2013 v 09:48:35
# Aktualizováno 19/07/2013 Xplode
# Operaení systém : Windows 7 Home Premium Service Pack 1 (64 bits)
# Uživatel : Ichigo - ICHIGO-PC
# Spuštin systém : Normální
# Spuštino z : C:\Users\Ichigo\Desktop\adwcleaner.exe
# Volba [Prohledat]


***** [Služby] *****


***** [Soubory / Složky] *****

Složka Nalezeno : C:\ProgramData\boost_interprocess
Složka Nalezeno : C:\ProgramData\BrowserProtect
Složka Nalezeno : C:\Users\Ichigo\AppData\Local\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde
Složka Nalezeno : C:\Users\Ichigo\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn
Složka Nalezeno : C:\Users\Ichigo\AppData\Local\Google\Chrome\User Data\Default\Extensions\kpkbnefaikfaeadgidhpoanckoiaheli
Složka Nalezeno : C:\Users\Ichigo\AppData\Local\Google\Chrome\User Data\Default\Extensions\niapdbllcanepiiimjjndipklodoedlc
Složka Nalezeno : C:\Users\Ichigo\AppData\Roaming\Mozilla\Firefox\Profiles\v3njk07u.default\jetpack
Soubor Nalezeno : C:\Users\Ichigo\AppData\Roaming\Mozilla\Firefox\Profiles\v3njk07u.default\extensions\hdvc@hdvc.com.xpi
Soubor Nalezeno : C:\Users\Ichigo\AppData\Roaming\Mozilla\Firefox\Profiles\v3njk07u.default\searchplugins\Babylon.xml

***** [Registry] *****

Data Nalezeno : HKLM\..\Windows [AppInit_DLLs] = c:\progra~3\browse~1\261249~1.132\{c16c1~1\browse~1.dll
Klíe Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}
Klíe Nalezeno : HKCU\Software\YahooPartnerToolbar
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\kpkbnefaikfaeadgidhpoanckoiaheli
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}

***** [Internetové prohlížeee] *****

-\\ Internet Explorer v10.0.9200.16635

[OK] Registry jsou eisté.

-\\ Mozilla Firefox v22.0 (cs)

Soubor : C:\Users\Ichigo\AppData\Roaming\Mozilla\Firefox\Profiles\v3njk07u.default\prefs.js

Nalezeno : user_pref("extensions.antigameorigin@antigame.de.AGO_CZ_UNI104_106845_Current", "{\"version\":1,\"I3[...]
Nalezeno : user_pref("extensions.antigameorigin@antigame.de.AGO_CZ_UNI106_100998_Current", "{\"version\":1,\"I3[...]

-\\ Google Chrome v28.0.1500.95

Soubor : C:\Users\Ichigo\AppData\Local\Google\Chrome\User Data\Default\Preferences

[OK] Soubor je eistý.

-\\ Opera v12.16.1860.0

Soubor : C:\Users\Ichigo\AppData\Roaming\Opera\Opera\operaprefs.ini

[OK] Soubor je eistý.

*************************

AdwCleaner[R1].txt - [9339 octets] - [04/05/2013 23:19:11]
AdwCleaner[R2].txt - [9128 octets] - [04/05/2013 23:37:46]
AdwCleaner[R3].txt - [3365 octets] - [08/08/2013 09:48:36]
AdwCleaner[S1].txt - [9033 octets] - [04/05/2013 23:38:16]

########## EOF - C:\AdwCleaner[R3].txt - [3485 octets] ##########

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod jaro3 » 08 srp 2013 09:53

. Takže spusť znovu MbAM a dej Scan
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Ukaž výsledky
- ujisti se že máš zatrhnuté všechny vypsané nálezy a klikni na tlačítko Odstranit označené
- když skončí odstraňování tak se ti zobrazí log, tak ho sem dej.
- pak zvol v programu OK a pak program ukonči přes Exit
Můžeš sem pak vložit nový log z MbAM.

Spusť znovu AdwCleaner (u Windows Vista či Windows7, klikni na AdwCleaner pravým a vyber „Spustit jako správce
Klikni na „ Vymazat
Program provede opravu, po automatickém restartu neukáže log (C:\AdwCleaner [S?].txt) , jeho obsah sem celý vlož.

Stáhni si Junkware Removal Tool

na svojí plochu.

Deaktivuj si svůj antivirový program. Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.

Stáhni si RogueKiller
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit

-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

tempus
Level 1.5
Level 1.5
Příspěvky: 131
Registrován: září 09
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod tempus » 08 srp 2013 10:08

Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware.) 1.75.0.1300
www.malwarebytes.org

Verze: v2013.08.08.02

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 10.0.9200.16635
Ichigo :: ICHIGO-PC [administrátor]

Ochrana: Povolena

8.8.2013 9:58:33
mbam-log-2013-08-08 (09-58-33).txt

Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 247366
Uplynulý čas: 4 minut, 46 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 3
C:\Users\Ichigo\AppData\Local\Temp\bicxJVRA.exe.part (PUP.BundleInstaller.DW) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Ichigo\AppData\Local\Temp\EOpNHWz4.exe.part (PUP.BundleInstaller.DW) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Ichigo\AppData\Local\Temp\qOoYzLFO.exe.part (PUP.BundleInstaller.DW) -> Přesun do karantény a smazání se zdařilo.

(konec)

tempus
Level 1.5
Level 1.5
Příspěvky: 131
Registrován: září 09
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod tempus » 08 srp 2013 10:28

# AdwCleaner v2.306 - Log vytvooen 08/08/2013 v 10:18:28
# Aktualizováno 19/07/2013 Xplode
# Operaení systém : Windows 7 Home Premium Service Pack 1 (64 bits)
# Uživatel : Ichigo - ICHIGO-PC
# Spuštin systém : Normální
# Spuštino z : C:\Users\Ichigo\Desktop\adwcleaner.exe
# Volba [Vymazat]


***** [Služby] *****


***** [Soubory / Složky] *****

Složka Vymazáno : C:\ProgramData\boost_interprocess
Složka Vymazáno : C:\ProgramData\BrowserProtect
Složka Vymazáno : C:\Users\Ichigo\AppData\Local\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde
Složka Vymazáno : C:\Users\Ichigo\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn
Složka Vymazáno : C:\Users\Ichigo\AppData\Local\Google\Chrome\User Data\Default\Extensions\kpkbnefaikfaeadgidhpoanckoiaheli
Složka Vymazáno : C:\Users\Ichigo\AppData\Local\Google\Chrome\User Data\Default\Extensions\niapdbllcanepiiimjjndipklodoedlc
Složka Vymazáno : C:\Users\Ichigo\AppData\Roaming\Mozilla\Firefox\Profiles\v3njk07u.default\jetpack
Soubor Vymazáno : C:\Users\Ichigo\AppData\Roaming\Mozilla\Firefox\Profiles\v3njk07u.default\extensions\hdvc@hdvc.com.xpi
Soubor Vymazáno : C:\Users\Ichigo\AppData\Roaming\Mozilla\Firefox\Profiles\v3njk07u.default\searchplugins\Babylon.xml

***** [Registry] *****

Data Vymazáno : HKLM\..\Windows [AppInit_DLLs] = c:\progra~3\browse~1\261249~1.132\{c16c1~1\browse~1.dll
Klíe Vymazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}
Klíe Vymazáno : HKCU\Software\YahooPartnerToolbar
Klíe Vymazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Klíe Vymazáno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Klíe Vymazáno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Klíe Vymazáno : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\kpkbnefaikfaeadgidhpoanckoiaheli
Klíe Vymazáno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Klíe Vymazáno : HKLM\SOFTWARE\Classes\CLSID\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Klíe Vymazáno : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Klíe Vymazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}

***** [Internetové prohlížeee] *****

-\\ Internet Explorer v10.0.9200.16635

[OK] Registry jsou eisté.

-\\ Mozilla Firefox v22.0 (cs)

Soubor : C:\Users\Ichigo\AppData\Roaming\Mozilla\Firefox\Profiles\v3njk07u.default\prefs.js

Vymazáno : user_pref("extensions.antigameorigin@antigame.de.AGO_CZ_UNI104_106845_Current", "{\"version\":1,\"I3[...]
Vymazáno : user_pref("extensions.antigameorigin@antigame.de.AGO_CZ_UNI106_100998_Current", "{\"version\":1,\"I3[...]

-\\ Google Chrome v28.0.1500.95

Soubor : C:\Users\Ichigo\AppData\Local\Google\Chrome\User Data\Default\Preferences

[OK] Soubor je eistý.

-\\ Opera v12.16.1860.0

Soubor : C:\Users\Ichigo\AppData\Roaming\Opera\Opera\operaprefs.ini

[OK] Soubor je eistý.

*************************

AdwCleaner[R1].txt - [9339 octets] - [04/05/2013 23:19:11]
AdwCleaner[R2].txt - [9128 octets] - [04/05/2013 23:37:46]
AdwCleaner[R3].txt - [3548 octets] - [08/08/2013 09:48:36]
AdwCleaner[R4].txt - [3608 octets] - [08/08/2013 10:17:49]
AdwCleaner[S1].txt - [9033 octets] - [04/05/2013 23:38:16]
AdwCleaner[S2].txt - [3543 octets] - [08/08/2013 10:18:28]

########## EOF - C:\AdwCleaner[S2].txt - [3603 octets] ##########

tempus
Level 1.5
Level 1.5
Příspěvky: 131
Registrován: září 09
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod tempus » 08 srp 2013 10:42

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 5.3.8 (08.07.2013:4)
OS: Windows 7 Home Premium x64
Ran by Ichigo on źt 08.08.2013 at 10:32:17,47
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\trolltech
Successfully deleted: [Registry Key] "HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-2288138061-4054031001-2292805786-1002\Software\SweetIM"
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{371B8821-A95D-46D9-879C-C4CAF16C81A8}



~~~ Files



~~~ Folders

Successfully deleted: [Folder] "C:\ProgramData\boost_interprocess"
Successfully deleted: [Folder] "C:\Users\Ichigo\AppData\Roaming\software informer"
Successfully deleted: [Empty Folder] C:\Users\Ichigo\appdata\local\{005B8373-111B-43FB-9FCA-D87EB417AF48}
Successfully deleted: [Empty Folder] C:\Users\Ichigo\appdata\local\{03F21034-EAE8-4D65-94B4-DBA1BDF6D782}
Successfully deleted: [Empty Folder] C:\Users\Ichigo\appdata\local\{07B92D19-2DB3-462F-A325-9C91AB4B738A}
Successfully deleted: [Empty Folder] C:\Users\Ichigo\appdata\local\{0A6E1797-1C31-441D-8594-D26864D79831}
Successfully deleted: [Empty Folder] C:\Users\Ichigo\appdata\local\{19B75FF3-606D-4688-8416-EA4C711B1BDF}
Successfully deleted: [Empty Folder] C:\Users\Ichigo\appdata\local\{1B3DAE62-71D8-468D-AABD-58DFC5323E77}
Successfully deleted: [Empty Folder] C:\Users\Ichigo\appdata\local\{39A9542E-34E1-4E96-8097-74013D6D6328}
Successfully deleted: [Empty Folder] C:\Users\Ichigo\appdata\local\{49119644-4076-4F3A-91F3-4E5F540E6DD5}
Successfully deleted: [Empty Folder] C:\Users\Ichigo\appdata\local\{865CDC6D-1CCC-4465-AA72-89ABD48CC267}
Successfully deleted: [Empty Folder] C:\Users\Ichigo\appdata\local\{A6670DC0-59AD-4C7D-9F55-92E9E3F0D5A6}
Successfully deleted: [Empty Folder] C:\Users\Ichigo\appdata\local\{B06BC664-A9D1-45F0-B067-44A8FC78F229}
Successfully deleted: [Empty Folder] C:\Users\Ichigo\appdata\local\{E2E33AFC-AC1C-4EF6-873F-85ABCF6209CD}
Successfully deleted: [Empty Folder] C:\Users\Ichigo\appdata\local\{E5EB1922-BD31-474B-A51E-EB9FC8310C3C}



~~~ FireFox

Emptied folder: C:\Users\Ichigo\AppData\Roaming\mozilla\firefox\profiles\v3njk07u.default\minidumps [331 files]



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on źt 08.08.2013 at 10:41:19,66
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

tempus
Level 1.5
Level 1.5
Příspěvky: 131
Registrován: září 09
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod tempus » 08 srp 2013 10:48

RogueKiller V8.6.5 _x64_ [Aug 5 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.adlice.com/forum/
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://tigzyrk.blogspot.com/

Operační systém : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Spuštěno v : Normální režim
Uživatel : Ichigo [Práva správce]
Mód : Kontrola -- Datum : 08/08/2013 10:46:05
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 4 ¤¤¤
[HJ POL] HKCU\[...]\System : DisableTaskMgr (0) -> NALEZENO
[HJ POL] HKCU\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ DESK] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO

¤¤¤ naplánované úlohy : 0 ¤¤¤

¤¤¤ spuštění položky : 0 ¤¤¤

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NENAHRÁNO 0x0] ¤¤¤

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts




¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: TOSHIBA MK7559GSXP +++++
--- User ---
[MBR] 5bdd37137e9e0189901f611d65868e7b
[BSP] 148319d46569c6d2a7c4de83585ecbe3 : Windows 7/8 MBR Code
Partition table:
0 - [XXXXXX] ACER (0x27) [VISIBLE] Offset (sectors): 2048 | Size: 15360 Mo
1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 31459328 | Size: 100 Mo
2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 31664128 | Size: 80003 Mo
3 - [XXXXXX] EXTEN-LBA (0x0f) [VISIBLE] Offset (sectors): 195511050 | Size: 619938 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[0]_S_08082013_104605.txt >>

Uživatelský avatar
memphisto
Guru Level 13
Guru Level 13
Příspěvky: 21113
Registrován: září 06
Bydliště: Zlín - České Budějovice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod memphisto » 08 srp 2013 11:20

Zavři všechny programy a prohlížeče.
Odpoj všechny USB nebo externí disky z počítače před spuštěním tohoto programu.
Spusť RogueKiller (Pro Windows Vista nebo WIN7 klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Počkej, dokud status box zobrazuje "Scan" "
- Klikni na "Delete"
- Počkej, dokud status box zobrazuje "Smazání - Finished"
- Klikni na "Zprávy", zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [1].txt na ploše.
- Zavři RogueKiller

Stáhni si TDSSKiller
Na svojí plochu.Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller.2.2.7.1._(datum)_log.txt , vlož sem prosím celý obsah logu.
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji

tempus
Level 1.5
Level 1.5
Příspěvky: 131
Registrován: září 09
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod tempus » 08 srp 2013 11:32

RogueKiller V8.6.5 _x64_ [Aug 5 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.adlice.com/forum/
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://tigzyrk.blogspot.com/

Operační systém : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Spuštěno v : Normální režim
Uživatel : Ichigo [Práva správce]
Mód : Odebrat -- Datum : 08/08/2013 11:31:23
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 0 ¤¤¤

¤¤¤ naplánované úlohy : 0 ¤¤¤

¤¤¤ spuštění položky : 0 ¤¤¤

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NENAHRÁNO 0x0] ¤¤¤

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts




¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: TOSHIBA MK7559GSXP +++++
--- User ---
[MBR] 5bdd37137e9e0189901f611d65868e7b
[BSP] 148319d46569c6d2a7c4de83585ecbe3 : Windows 7/8 MBR Code
Partition table:
0 - [XXXXXX] ACER (0x27) [VISIBLE] Offset (sectors): 2048 | Size: 15360 Mo
1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 31459328 | Size: 100 Mo
2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 31664128 | Size: 80003 Mo
3 - [XXXXXX] EXTEN-LBA (0x0f) [VISIBLE] Offset (sectors): 195511050 | Size: 619938 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[0]_D_08082013_113123.txt >>
RKreport[0]_D_08082013_112411.txt;RKreport[0]_S_08082013_104605.txt;RKreport[0]_S_08082013_112655.txt
RKreport[0]_S_08082013_112936.txt

tempus
Level 1.5
Level 1.5
Příspěvky: 131
Registrován: září 09
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod tempus » 08 srp 2013 11:42

11:34:58.0997 1248 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
11:34:59.0153 1248 ============================================================
11:34:59.0153 1248 Current date / time: 2013/08/08 11:34:59.0153
11:34:59.0153 1248 SystemInfo:
11:34:59.0153 1248
11:34:59.0153 1248 OS Version: 6.1.7601 ServicePack: 1.0
11:34:59.0153 1248 Product type: Workstation
11:34:59.0153 1248 ComputerName: ICHIGO-PC
11:34:59.0153 1248 UserName: Ichigo
11:34:59.0153 1248 Windows directory: C:\Windows
11:34:59.0153 1248 System windows directory: C:\Windows
11:34:59.0153 1248 Running under WOW64
11:34:59.0153 1248 Processor architecture: Intel x64
11:34:59.0153 1248 Number of processors: 4
11:34:59.0153 1248 Page size: 0x1000
11:34:59.0153 1248 Boot type: Normal boot
11:34:59.0153 1248 ============================================================
11:34:59.0496 1248 Drive \Device\Harddisk0\DR0 - Size: 0xAEA8CDE000 (698.64 Gb), SectorSize: 0x200, Cylinders: 0x16441, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
11:34:59.0511 1248 ============================================================
11:34:59.0511 1248 \Device\Harddisk0\DR0:
11:34:59.0511 1248 MBR partitions:
11:34:59.0511 1248 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x1E00800, BlocksNum 0x32000
11:34:59.0511 1248 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x1E32800, BlocksNum 0x9C41B0A
11:34:59.0527 1248 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0xBA74349, BlocksNum 0x4BAD0FB8
11:34:59.0527 1248 ============================================================
11:34:59.0543 1248 C: <-> \Device\Harddisk0\DR0\Partition2
11:34:59.0558 1248 D: <-> \Device\Harddisk0\DR0\Partition3
11:34:59.0558 1248 ============================================================
11:34:59.0558 1248 Initialize success
11:34:59.0558 1248 ============================================================
11:35:00.0635 3040 ============================================================
11:35:00.0635 3040 Scan started
11:35:00.0635 3040 Mode: Manual;
11:35:00.0635 3040 ============================================================
11:35:00.0791 3040 ================ Scan system memory ========================
11:35:00.0791 3040 System memory - ok
11:35:00.0791 3040 ================ Scan services =============================
11:35:01.0056 3040 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
11:35:01.0056 3040 1394ohci - ok
11:35:01.0118 3040 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\Windows\system32\drivers\ACPI.sys
11:35:01.0118 3040 ACPI - ok
11:35:01.0149 3040 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
11:35:01.0149 3040 AcpiPmi - ok
11:35:01.0305 3040 [ ADDA5E1951B90D3D23C56D3CF0622ADC ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
11:35:01.0305 3040 AdobeARMservice - ok
11:35:01.0493 3040 [ 476BB014F3F68C0C15EDDD5B444DA8FF ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
11:35:01.0493 3040 AdobeFlashPlayerUpdateSvc - ok
11:35:01.0555 3040 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys
11:35:01.0555 3040 adp94xx - ok
11:35:01.0586 3040 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys
11:35:01.0586 3040 adpahci - ok
11:35:01.0617 3040 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys
11:35:01.0617 3040 adpu320 - ok
11:35:01.0664 3040 [ 1FE2BA15E16FA1B9A33618B4FA105151 ] adusbser C:\Windows\system32\DRIVERS\adusbser.sys
11:35:01.0664 3040 adusbser - ok
11:35:01.0695 3040 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
11:35:01.0695 3040 AeLookupSvc - ok
11:35:01.0773 3040 [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD C:\Windows\system32\drivers\afd.sys
11:35:01.0773 3040 AFD - ok
11:35:01.0836 3040 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\drivers\agp440.sys
11:35:01.0836 3040 agp440 - ok
11:35:01.0883 3040 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe
11:35:01.0883 3040 ALG - ok
11:35:01.0914 3040 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\drivers\aliide.sys
11:35:01.0914 3040 aliide - ok
11:35:01.0961 3040 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\drivers\amdide.sys
11:35:01.0961 3040 amdide - ok
11:35:01.0992 3040 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
11:35:01.0992 3040 AmdK8 - ok
11:35:02.0023 3040 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
11:35:02.0023 3040 AmdPPM - ok
11:35:02.0054 3040 [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata C:\Windows\system32\drivers\amdsata.sys
11:35:02.0054 3040 amdsata - ok
11:35:02.0085 3040 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys
11:35:02.0085 3040 amdsbs - ok
11:35:02.0101 3040 [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata C:\Windows\system32\drivers\amdxata.sys
11:35:02.0101 3040 amdxata - ok
11:35:02.0163 3040 [ 89A69C3F2F319B43379399547526D952 ] AppID C:\Windows\system32\drivers\appid.sys
11:35:02.0163 3040 AppID - ok
11:35:02.0210 3040 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll
11:35:02.0210 3040 AppIDSvc - ok
11:35:02.0257 3040 [ 9D2A2369AB4B08A4905FE72DB104498F ] Appinfo C:\Windows\System32\appinfo.dll
11:35:02.0257 3040 Appinfo - ok
11:35:02.0288 3040 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\DRIVERS\arc.sys
11:35:02.0288 3040 arc - ok
11:35:02.0319 3040 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys
11:35:02.0319 3040 arcsas - ok
11:35:02.0413 3040 [ 9217D874131AE6FF8F642F124F00A555 ] aspnet_state C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
11:35:02.0413 3040 aspnet_state - ok
11:35:02.0460 3040 [ 4FCAEF0C5BE7629AEB878998E0FE959B ] aswFsBlk C:\Windows\system32\drivers\aswFsBlk.sys
11:35:02.0460 3040 aswFsBlk - ok
11:35:02.0475 3040 [ B50CDD87772D6A11CB90924AAD399DF8 ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
11:35:02.0475 3040 aswMonFlt - ok
11:35:02.0538 3040 [ 57768C7DB4681F2510F247F82EF31D4F ] aswRdr C:\Windows\System32\Drivers\aswrdr2.sys
11:35:02.0538 3040 aswRdr - ok
11:35:02.0569 3040 [ E71D826A1F3CE9C9DE3E77F2D02AFFBF ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
11:35:02.0585 3040 aswSnx - ok
11:35:02.0600 3040 [ 538A32E2C99BF073D4CA76C30BEDAA60 ] aswSP C:\Windows\system32\drivers\aswSP.sys
11:35:02.0600 3040 aswSP - ok
11:35:02.0616 3040 [ 6EDC79D73745FD44C41B55B2D13D0B70 ] aswTdi C:\Windows\system32\drivers\aswTdi.sys
11:35:02.0616 3040 aswTdi - ok
11:35:02.0631 3040 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
11:35:02.0647 3040 AsyncMac - ok
11:35:02.0694 3040 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\drivers\atapi.sys
11:35:02.0694 3040 atapi - ok
11:35:02.0725 3040 [ AAAE03F8EDA817EC28C5445193EA8BF3 ] AthBTPort C:\Windows\system32\DRIVERS\btath_flt.sys
11:35:02.0725 3040 AthBTPort - ok
11:35:02.0819 3040 [ FB3FF3DB34CB86F2B936B24D96F21F6F ] AtherosSvc C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
11:35:02.0819 3040 AtherosSvc - ok
11:35:02.0912 3040 [ 931884F5F2D7E6973366782690BF1754 ] athr C:\Windows\system32\DRIVERS\athrx.sys
11:35:02.0928 3040 athr - ok
11:35:02.0975 3040 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
11:35:02.0975 3040 AudioEndpointBuilder - ok
11:35:02.0990 3040 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv C:\Windows\System32\Audiosrv.dll
11:35:02.0990 3040 AudioSrv - ok
11:35:03.0053 3040 [ 1992C2A1867D95AA3A0802539358D162 ] Autodesk Content Service C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe
11:35:03.0053 3040 Autodesk Content Service - ok
11:35:03.0131 3040 [ 8FA553E9AE69808D99C164733A0F9590 ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
11:35:03.0131 3040 avast! Antivirus - ok
11:35:03.0193 3040 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\Windows\System32\AxInstSV.dll
11:35:03.0193 3040 AxInstSV - ok
11:35:03.0224 3040 [ 344B907477FF1BC01BD315AB93DF9764 ] Axtmvflt C:\Windows\system32\DRIVERS\Axtmvflt.sys
11:35:03.0224 3040 Axtmvflt - ok
11:35:03.0240 3040 [ 4F8D9A8C04C33496403CC4DDE3E9D6CE ] Axtmvmdm C:\Windows\system32\DRIVERS\Axtmvmdm.sys
11:35:03.0240 3040 Axtmvmdm - ok
11:35:03.0255 3040 [ C24F39E3CC13FA14477EBE12461739FF ] Axtmvprt C:\Windows\system32\Drivers\Axtmvprt.sys
11:35:03.0255 3040 Axtmvprt - ok
11:35:03.0302 3040 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\DRIVERS\bxvbda.sys
11:35:03.0302 3040 b06bdrv - ok
11:35:03.0333 3040 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys
11:35:03.0349 3040 b57nd60a - ok
11:35:03.0380 3040 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll
11:35:03.0380 3040 BDESVC - ok
11:35:03.0411 3040 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys
11:35:03.0411 3040 Beep - ok
11:35:03.0474 3040 [ 82974D6A2FD19445CC5171FC378668A4 ] BFE C:\Windows\System32\bfe.dll
11:35:03.0474 3040 BFE - ok
11:35:03.0521 3040 [ 1EA7969E3271CBC59E1730697DC74682 ] BITS C:\Windows\System32\qmgr.dll
11:35:03.0521 3040 BITS - ok
11:35:03.0552 3040 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
11:35:03.0552 3040 blbdrive - ok
11:35:03.0583 3040 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
11:35:03.0583 3040 bowser - ok
11:35:03.0630 3040 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys
11:35:03.0630 3040 BrFiltLo - ok
11:35:03.0645 3040 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys
11:35:03.0645 3040 BrFiltUp - ok
11:35:03.0692 3040 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser C:\Windows\System32\browser.dll
11:35:03.0692 3040 Browser - ok
11:35:03.0723 3040 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys
11:35:03.0723 3040 Brserid - ok
11:35:03.0755 3040 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
11:35:03.0755 3040 BrSerWdm - ok
11:35:03.0755 3040 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
11:35:03.0755 3040 BrUsbMdm - ok
11:35:03.0786 3040 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
11:35:03.0786 3040 BrUsbSer - ok
11:35:03.0848 3040 [ 3B1B573371B206D1D5F25E0EF5FCD6D6 ] BTATH_A2DP C:\Windows\system32\drivers\btath_a2dp.sys
11:35:03.0848 3040 BTATH_A2DP - ok
11:35:03.0864 3040 [ 2D0446336D9DB55A742B999EC16ADF15 ] BTATH_BUS C:\Windows\system32\DRIVERS\btath_bus.sys
11:35:03.0864 3040 BTATH_BUS - ok
11:35:03.0895 3040 [ 9A9694BBEB2849EAF95DFFCAE5DF02AD ] BTATH_HCRP C:\Windows\system32\DRIVERS\btath_hcrp.sys
11:35:03.0895 3040 BTATH_HCRP - ok
11:35:03.0926 3040 [ FC0A8075DDF2E9C66267AEC91E0676F9 ] BTATH_LWFLT C:\Windows\system32\DRIVERS\btath_lwflt.sys
11:35:03.0926 3040 BTATH_LWFLT - ok
11:35:03.0973 3040 [ 5EB4815CBDDBA4541F2380DAE6E269AB ] BTATH_RCP C:\Windows\system32\DRIVERS\btath_rcp.sys
11:35:03.0973 3040 BTATH_RCP - ok
11:35:04.0020 3040 [ E24FBEFF8FD3BD997AA5E9BD68BD7C74 ] BtFilter C:\Windows\system32\DRIVERS\btfilter.sys
11:35:04.0035 3040 BtFilter - ok
11:35:04.0098 3040 [ CF98190A94F62E405C8CB255018B2315 ] BthEnum C:\Windows\system32\DRIVERS\BthEnum.sys
11:35:04.0098 3040 BthEnum - ok
11:35:04.0129 3040 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys
11:35:04.0129 3040 BTHMODEM - ok
11:35:04.0160 3040 [ 02DD601B708DD0667E1331FA8518E9FF ] BthPan C:\Windows\system32\DRIVERS\bthpan.sys
11:35:04.0160 3040 BthPan - ok
11:35:04.0223 3040 [ 738D0E9272F59EB7A1449C3EC118E6C4 ] BTHPORT C:\Windows\system32\Drivers\BTHport.sys
11:35:04.0238 3040 BTHPORT - ok
11:35:04.0269 3040 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll
11:35:04.0269 3040 bthserv - ok
11:35:04.0301 3040 [ F188B7394D81010767B6DF3178519A37 ] BTHUSB C:\Windows\system32\Drivers\BTHUSB.sys
11:35:04.0301 3040 BTHUSB - ok
11:35:04.0332 3040 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
11:35:04.0332 3040 cdfs - ok
11:35:04.0394 3040 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
11:35:04.0394 3040 cdrom - ok
11:35:04.0425 3040 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\Windows\System32\certprop.dll
11:35:04.0425 3040 CertPropSvc - ok
11:35:04.0472 3040 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\DRIVERS\circlass.sys
11:35:04.0472 3040 circlass - ok
11:35:04.0503 3040 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys
11:35:04.0503 3040 CLFS - ok
11:35:04.0550 3040 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
11:35:04.0550 3040 clr_optimization_v2.0.50727_32 - ok
11:35:04.0597 3040 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
11:35:04.0597 3040 clr_optimization_v2.0.50727_64 - ok
11:35:04.0675 3040 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
11:35:04.0675 3040 clr_optimization_v4.0.30319_32 - ok
11:35:05.0065 3040 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
11:35:05.0065 3040 clr_optimization_v4.0.30319_64 - ok
11:35:05.0112 3040 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
11:35:05.0112 3040 CmBatt - ok
11:35:05.0127 3040 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\drivers\cmdide.sys
11:35:05.0143 3040 cmdide - ok
11:35:05.0190 3040 [ 9AC4F97C2D3E93367E2148EA940CD2CD ] CNG C:\Windows\system32\Drivers\cng.sys
11:35:05.0205 3040 CNG - ok
11:35:05.0283 3040 [ 2A214FCC149E2A061BD2EB6FB00BB0ED ] CnxtHdAudService C:\Windows\system32\drivers\CHDRT64.sys
11:35:05.0299 3040 CnxtHdAudService - ok
11:35:05.0330 3040 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
11:35:05.0330 3040 Compbatt - ok
11:35:05.0361 3040 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys
11:35:05.0377 3040 CompositeBus - ok
11:35:05.0377 3040 COMSysApp - ok
11:35:05.0393 3040 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys
11:35:05.0393 3040 crcdisk - ok
11:35:05.0455 3040 [ D8129C49798CBBFB2E4351D4B7B8EF9C ] CryptSvc C:\Windows\system32\cryptsvc.dll
11:35:05.0455 3040 CryptSvc - ok
11:35:05.0486 3040 [ 9D0D050170D47E778B624A28C90F23DE ] CxAudMsg C:\Windows\system32\CxAudMsg64.exe
11:35:05.0502 3040 CxAudMsg - ok
11:35:05.0549 3040 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\Windows\system32\rpcss.dll
11:35:05.0564 3040 DcomLaunch - ok
11:35:05.0611 3040 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll
11:35:05.0611 3040 defragsvc - ok
11:35:05.0642 3040 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
11:35:05.0642 3040 DfsC - ok
11:35:05.0705 3040 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\Windows\system32\dhcpcore.dll
11:35:05.0705 3040 Dhcp - ok
11:35:05.0720 3040 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys
11:35:05.0720 3040 discache - ok
11:35:05.0751 3040 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\DRIVERS\disk.sys
11:35:05.0751 3040 Disk - ok
11:35:05.0767 3040 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\Windows\System32\dnsrslvr.dll
11:35:05.0783 3040 Dnscache - ok
11:35:05.0829 3040 [ FA122BC1451B1B35B7814FBE1ACF1924 ] Dokan C:\Windows\system32\drivers\dokan.sys
11:35:05.0829 3040 Dokan - ok
11:35:05.0907 3040 [ 8C856E531A1170F53AC6844E89CD0B5F ] DokanMounter C:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe
11:35:05.0907 3040 DokanMounter - ok
11:35:05.0939 3040 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\Windows\System32\dot3svc.dll
11:35:05.0939 3040 dot3svc - ok
11:35:05.0985 3040 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\Windows\system32\dps.dll
11:35:05.0985 3040 DPS - ok
11:35:06.0001 3040 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
11:35:06.0001 3040 drmkaud - ok
11:35:06.0063 3040 [ 0B40F53CF189D627D618B5ED97F16B9A ] DsiWMIService C:\Program Files (x86)\Launch Manager\dsiwmis.exe
11:35:06.0063 3040 DsiWMIService - ok
11:35:06.0126 3040 [ AF2E16242AA723F68F461B6EAE2EAD3D ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
11:35:06.0141 3040 DXGKrnl - ok
11:35:06.0173 3040 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll
11:35:06.0173 3040 EapHost - ok
11:35:06.0282 3040 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\DRIVERS\evbda.sys
11:35:06.0297 3040 ebdrv - ok
11:35:06.0329 3040 [ C118A82CD78818C29AB228366EBF81C3 ] EFS C:\Windows\System32\lsass.exe
11:35:06.0329 3040 EFS - ok
11:35:06.0391 3040 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
11:35:06.0407 3040 ehRecvr - ok
11:35:06.0438 3040 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe
11:35:06.0438 3040 ehSched - ok
11:35:06.0485 3040 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys
11:35:06.0500 3040 elxstor - ok
11:35:06.0516 3040 [ 9EAFB3B3B60B8AD958985152A9309ACA ] epmntdrv C:\Windows\system32\epmntdrv.sys
11:35:06.0516 3040 epmntdrv - ok
11:35:06.0594 3040 [ 753FAD8FD476116FA93799B0DB77702B ] ePowerSvc C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
11:35:06.0609 3040 ePowerSvc - ok
11:35:06.0625 3040 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\drivers\errdev.sys
11:35:06.0625 3040 ErrDev - ok
11:35:06.0672 3040 [ FB949ED2C93C878A189039F3D7730942 ] EuGdiDrv C:\Windows\system32\EuGdiDrv.sys
11:35:06.0672 3040 EuGdiDrv - ok
11:35:06.0687 3040 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll
11:35:06.0703 3040 EventSystem - ok
11:35:06.0765 3040 [ 17C7BCAE7EBABB95AF2F7C91B19C361C ] EverestDriver C:\Program Files (x86)\Lavalys\EVEREST Ultimate Edition\kerneld.amd64
11:35:06.0765 3040 EverestDriver - ok
11:35:06.0812 3040 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys
11:35:06.0812 3040 exfat - ok
11:35:06.0828 3040 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys
11:35:06.0828 3040 fastfat - ok
11:35:06.0890 3040 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\Windows\system32\fxssvc.exe
11:35:06.0906 3040 Fax - ok
11:35:06.0937 3040 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\DRIVERS\fdc.sys
11:35:06.0937 3040 fdc - ok
11:35:06.0984 3040 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll
11:35:06.0984 3040 fdPHost - ok
11:35:06.0999 3040 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll
11:35:06.0999 3040 FDResPub - ok
11:35:07.0031 3040 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
11:35:07.0031 3040 FileInfo - ok
11:35:07.0046 3040 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
11:35:07.0062 3040 Filetrace - ok
11:35:07.0187 3040 [ 8F7D44D42B720A3B2710546EAD451B6F ] FLEXlm server for PTC C:\Program Files\flexnet\x86e_win64\obj\lmgrd.exe
11:35:07.0218 3040 FLEXlm server for PTC - ok
11:35:07.0265 3040 [ BB0667B0171B632B97EA759515476F07 ] FLEXnet Licensing Service C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
11:35:07.0280 3040 FLEXnet Licensing Service - ok
11:35:07.0358 3040 [ 5CEE6CD43AE5844C49300EA0B1E557EE ] FLEXnet Licensing Service 64 C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
11:35:07.0374 3040 FLEXnet Licensing Service 64 - ok
11:35:07.0389 3040 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
11:35:07.0405 3040 flpydisk - ok
11:35:07.0421 3040 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
11:35:07.0421 3040 FltMgr - ok
11:35:07.0483 3040 [ C4C183E6551084039EC862DA1C945E3D ] FontCache C:\Windows\system32\FntCache.dll
11:35:07.0499 3040 FontCache - ok
11:35:07.0545 3040 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
11:35:07.0545 3040 FontCache3.0.0.0 - ok
11:35:07.0577 3040 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
11:35:07.0577 3040 FsDepends - ok
11:35:07.0623 3040 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
11:35:07.0623 3040 Fs_Rec - ok
11:35:07.0670 3040 [ 8F6322049018354F45F05A2FD2D4E5E0 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
11:35:07.0686 3040 fvevol - ok
11:35:07.0701 3040 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys
11:35:07.0701 3040 gagp30kx - ok
11:35:07.0764 3040 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\Windows\System32\gpsvc.dll
11:35:07.0779 3040 gpsvc - ok
11:35:07.0842 3040 [ 0191DEE9B9EB7902AF2CF4F67301095D ] GREGService C:\Program Files (x86)\Acer\Registration\GREGsvc.exe
11:35:07.0842 3040 GREGService - ok
11:35:07.0920 3040 [ F02A533F517EB38333CB12A9E8963773 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
11:35:07.0920 3040 gupdate - ok
11:35:07.0935 3040 [ F02A533F517EB38333CB12A9E8963773 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
11:35:07.0935 3040 gupdatem - ok
11:35:07.0967 3040 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
11:35:07.0967 3040 hcw85cir - ok
11:35:08.0045 3040 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
11:35:08.0060 3040 HdAudAddService - ok
11:35:08.0123 3040 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
11:35:08.0123 3040 HDAudBus - ok
11:35:08.0154 3040 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys
11:35:08.0154 3040 HidBatt - ok
11:35:08.0185 3040 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys
11:35:08.0185 3040 HidBth - ok
11:35:08.0232 3040 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
11:35:08.0232 3040 HidIr - ok
11:35:08.0263 3040 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\system32\hidserv.dll
11:35:08.0263 3040 hidserv - ok
11:35:08.0325 3040 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
11:35:08.0325 3040 HidUsb - ok
11:35:08.0357 3040 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\Windows\system32\kmsvc.dll
11:35:08.0357 3040 hkmsvc - ok
11:35:08.0403 3040 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll
11:35:08.0419 3040 HomeGroupListener - ok
11:35:08.0450 3040 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
11:35:08.0466 3040 HomeGroupProvider - ok
11:35:08.0528 3040 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
11:35:08.0528 3040 HpSAMD - ok
11:35:08.0591 3040 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\Windows\system32\drivers\HTTP.sys
11:35:08.0606 3040 HTTP - ok
11:35:08.0637 3040 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
11:35:08.0637 3040 hwpolicy - ok
11:35:08.0684 3040 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\drivers\i8042prt.sys
11:35:08.0684 3040 i8042prt - ok
11:35:08.0715 3040 [ F7CE9BE72EDAC499B713ECA6DAE5D26F ] iaStor C:\Windows\system32\DRIVERS\iaStor.sys
11:35:08.0731 3040 iaStor - ok
11:35:08.0778 3040 [ B25F192EA1F84A316EB7C19EFCCCF33D ] IAStorDataMgrSvc C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
11:35:08.0778 3040 IAStorDataMgrSvc - ok
11:35:08.0809 3040 [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
11:35:08.0825 3040 iaStorV - ok
11:35:08.0918 3040 [ 2C3CC41FEFCB77E2826886E6B7EF93AE ] IconMan_R C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
11:35:08.0934 3040 IconMan_R - ok
11:35:08.0996 3040 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
11:35:09.0012 3040 idsvc - ok
11:35:09.0261 3040 [ 38A74E208945A2C30C35C999AE184A79 ] igfx C:\Windows\system32\DRIVERS\igdkmd64.sys
11:35:09.0324 3040 igfx - ok
11:35:09.0355 3040 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys
11:35:09.0355 3040 iirsp - ok
11:35:09.0417 3040 [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT C:\Windows\System32\ikeext.dll
11:35:09.0433 3040 IKEEXT - ok
11:35:09.0464 3040 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\drivers\intelide.sys
11:35:09.0464 3040 intelide - ok
11:35:09.0480 3040 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
11:35:09.0480 3040 intelppm - ok
11:35:09.0527 3040 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll
11:35:09.0527 3040 IPBusEnum - ok
11:35:09.0558 3040 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
11:35:09.0558 3040 IpFilterDriver - ok
11:35:09.0636 3040 [ 08C2957BB30058E663720C5606885653 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
11:35:09.0651 3040 iphlpsvc - ok
11:35:09.0698 3040 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
11:35:09.0698 3040 IPMIDRV - ok
11:35:09.0729 3040 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
11:35:09.0729 3040 IPNAT - ok
11:35:09.0761 3040 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
11:35:09.0761 3040 IRENUM - ok
11:35:09.0776 3040 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\drivers\isapnp.sys
11:35:09.0776 3040 isapnp - ok
11:35:09.0823 3040 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
11:35:09.0823 3040 iScsiPrt - ok
11:35:09.0885 3040 [ F415A88162D23977B5EDAE4F0410E903 ] IviRegMgr C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe
11:35:09.0885 3040 IviRegMgr - ok
11:35:09.0917 3040 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\drivers\kbdclass.sys
11:35:09.0917 3040 kbdclass - ok
11:35:09.0963 3040 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\Windows\system32\drivers\kbdhid.sys
11:35:09.0963 3040 kbdhid - ok
11:35:09.0979 3040 [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso C:\Windows\system32\lsass.exe
11:35:09.0995 3040 KeyIso - ok
11:35:10.0041 3040 [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
11:35:10.0041 3040 KSecDD - ok
11:35:10.0073 3040 [ 26C43A7C2862447EC59DEDA188D1DA07 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
11:35:10.0073 3040 KSecPkg - ok
11:35:10.0104 3040 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
11:35:10.0104 3040 ksthunk - ok
11:35:10.0119 3040 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll
11:35:10.0135 3040 KtmRm - ok
11:35:10.0166 3040 [ 95CA93FC12BE372BB952669F37FFF9C5 ] L1C C:\Windows\system32\DRIVERS\L1C62x64.sys
11:35:10.0166 3040 L1C - ok
11:35:10.0213 3040 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\Windows\system32\srvsvc.dll
11:35:10.0213 3040 LanmanServer - ok
11:35:10.0244 3040 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
11:35:10.0244 3040 LanmanWorkstation - ok
11:35:10.0307 3040 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
11:35:10.0307 3040 lltdio - ok
11:35:10.0338 3040 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll
11:35:10.0338 3040 lltdsvc - ok
11:35:10.0369 3040 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll
11:35:10.0369 3040 lmhosts - ok
11:35:10.0431 3040 [ 2ED1786B7542CDA261029F6B526EDF44 ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
11:35:10.0431 3040 LMS - ok
11:35:10.0447 3040 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys
11:35:10.0447 3040 LSI_FC - ok
11:35:10.0494 3040 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys
11:35:10.0494 3040 LSI_SAS - ok
11:35:10.0509 3040 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys
11:35:10.0509 3040 LSI_SAS2 - ok
11:35:10.0525 3040 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys
11:35:10.0525 3040 LSI_SCSI - ok
11:35:10.0541 3040 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys
11:35:10.0541 3040 luafv - ok
11:35:10.0603 3040 [ 23488767CB18FC3FF39E3AF1DB3FB02C ] massfilter C:\Windows\system32\drivers\massfilter.sys
11:35:10.0603 3040 massfilter - ok
11:35:10.0650 3040 [ 0BB97D43299910CBFBA59C461B99B910 ] MBAMProtector C:\Windows\system32\drivers\mbam.sys
11:35:10.0665 3040 MBAMProtector - ok
11:35:10.0728 3040 [ 65085456FD9A74D7F1A999520C299ECB ] MBAMScheduler C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
11:35:10.0728 3040 MBAMScheduler - ok
11:35:10.0775 3040 [ E0D7732F2D2E24B2DB3F67B6750295B8 ] MBAMService C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
11:35:10.0790 3040 MBAMService - ok
11:35:10.0821 3040 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
11:35:10.0821 3040 Mcx2Svc - ok
11:35:10.0853 3040 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\DRIVERS\megasas.sys
11:35:10.0853 3040 megasas - ok
11:35:10.0868 3040 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys
11:35:10.0868 3040 MegaSR - ok
11:35:10.0915 3040 [ A6518DCC42F7A6E999BB3BEA8FD87567 ] MEIx64 C:\Windows\system32\DRIVERS\HECIx64.sys
11:35:10.0915 3040 MEIx64 - ok
11:35:11.0009 3040 [ 123271BD5237AB991DC5C21FDF8835EB ] Microsoft Office Groove Audit Service C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe
11:35:11.0009 3040 Microsoft Office Groove Audit Service - ok
11:35:11.0040 3040 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll
11:35:11.0055 3040 MMCSS - ok
11:35:11.0071 3040 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys
11:35:11.0071 3040 Modem - ok
11:35:11.0102 3040 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys
11:35:11.0102 3040 monitor - ok
11:35:11.0149 3040 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
11:35:11.0149 3040 mouclass - ok
11:35:11.0165 3040 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
11:35:11.0165 3040 mouhid - ok
11:35:11.0211 3040 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
11:35:11.0211 3040 mountmgr - ok
11:35:11.0227 3040 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\Windows\system32\drivers\mpio.sys
11:35:11.0227 3040 mpio - ok
11:35:11.0258 3040 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
11:35:11.0258 3040 mpsdrv - ok
11:35:11.0305 3040 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc C:\Windows\system32\mpssvc.dll
11:35:11.0305 3040 MpsSvc - ok
11:35:11.0336 3040 [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
11:35:11.0336 3040 MRxDAV - ok
11:35:11.0383 3040 [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
11:35:11.0383 3040 mrxsmb - ok
11:35:11.0414 3040 [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
11:35:11.0414 3040 mrxsmb10 - ok
11:35:11.0414 3040 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
11:35:11.0414 3040 mrxsmb20 - ok
11:35:11.0461 3040 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\Windows\system32\drivers\msahci.sys
11:35:11.0461 3040 msahci - ok
11:35:11.0492 3040 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\Windows\system32\drivers\msdsm.sys
11:35:11.0492 3040 msdsm - ok
11:35:11.0508 3040 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe
11:35:11.0508 3040 MSDTC - ok
11:35:11.0523 3040 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys
11:35:11.0523 3040 Msfs - ok
11:35:11.0555 3040 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
11:35:11.0555 3040 mshidkmdf - ok
11:35:11.0570 3040 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
11:35:11.0570 3040 msisadrv - ok
11:35:11.0601 3040 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
11:35:11.0601 3040 MSiSCSI - ok
11:35:11.0601 3040 msiserver - ok
11:35:11.0633 3040 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
11:35:11.0633 3040 MSKSSRV - ok
11:35:11.0648 3040 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
11:35:11.0648 3040 MSPCLOCK - ok
11:35:11.0679 3040 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
11:35:11.0679 3040 MSPQM - ok
11:35:11.0726 3040 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
11:35:11.0726 3040 MsRPC - ok
11:35:11.0773 3040 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys
11:35:11.0773 3040 mssmbios - ok
11:35:11.0789 3040 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
11:35:11.0789 3040 MSTEE - ok
11:35:11.0820 3040 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys
11:35:11.0820 3040 MTConfig - ok
11:35:11.0835 3040 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys
11:35:11.0835 3040 Mup - ok
11:35:11.0882 3040 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\Windows\system32\qagentRT.dll
11:35:11.0882 3040 napagent - ok
11:35:11.0929 3040 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
11:35:11.0929 3040 NativeWifiP - ok
11:35:11.0991 3040 [ 760E38053BF56E501D562B70AD796B88 ] NDIS C:\Windows\system32\drivers\ndis.sys
11:35:11.0991 3040 NDIS - ok
11:35:12.0023 3040 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
11:35:12.0023 3040 NdisCap - ok
11:35:12.0054 3040 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
11:35:12.0054 3040 NdisTapi - ok
11:35:12.0069 3040 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
11:35:12.0085 3040 Ndisuio - ok
11:35:12.0116 3040 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
11:35:12.0116 3040 NdisWan - ok
11:35:12.0163 3040 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
11:35:12.0163 3040 NDProxy - ok
11:35:12.0179 3040 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
11:35:12.0194 3040 NetBIOS - ok
11:35:12.0225 3040 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
11:35:12.0225 3040 NetBT - ok
11:35:12.0257 3040 [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon C:\Windows\system32\lsass.exe
11:35:12.0257 3040 Netlogon - ok
11:35:12.0303 3040 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll
11:35:12.0303 3040 Netman - ok
11:35:12.0350 3040 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
11:35:12.0366 3040 NetMsmqActivator - ok
11:35:12.0366 3040 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
11:35:12.0366 3040 NetPipeActivator - ok
11:35:12.0381 3040 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll
11:35:12.0397 3040 netprofm - ok
11:35:12.0397 3040 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
11:35:12.0397 3040 NetTcpActivator - ok
11:35:12.0413 3040 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
11:35:12.0413 3040 NetTcpPortSharing - ok
11:35:12.0428 3040 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys
11:35:12.0444 3040 nfrd960 - ok
11:35:12.0475 3040 [ 8AD77806D336673F270DB31645267293 ] NlaSvc C:\Windows\System32\nlasvc.dll
11:35:12.0475 3040 NlaSvc - ok
11:35:12.0491 3040 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys
11:35:12.0491 3040 Npfs - ok
11:35:12.0506 3040 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll
11:35:12.0506 3040 nsi - ok
11:35:12.0537 3040 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
11:35:12.0537 3040 nsiproxy - ok
11:35:12.0584 3040 [ B98F8C6E31CD07B2E6F71F7F648E38C0 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
11:35:12.0600 3040 Ntfs - ok
11:35:12.0678 3040 [ D27A4546417ED7C4AEA7B3420D4F1F50 ] NTI IScheduleSvc C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe
11:35:12.0678 3040 NTI IScheduleSvc - ok
11:35:12.0725 3040 [ EE3BA1024594D5D09E314F206B94069E ] NTIDrvr C:\Windows\system32\drivers\NTIDrvr.sys
11:35:12.0725 3040 NTIDrvr - ok
11:35:12.0740 3040 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys
11:35:12.0740 3040 Null - ok
11:35:12.0803 3040 [ 8D4AAC74B571FC356560E5B308955E93 ] NVHDA C:\Windows\system32\drivers\nvhda64v.sys
11:35:12.0803 3040 NVHDA - ok
11:35:12.0849 3040 [ 63BCFAE1E3756A4A3BA28CA6CC92CFD9 ] nvkflt C:\Windows\system32\DRIVERS\nvkflt.sys
11:35:12.0849 3040 nvkflt - ok
11:35:13.0115 3040 [ 9C1996DD3C0469BC8933321F15709F5A ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
11:35:13.0177 3040 nvlddmkm - ok
11:35:13.0224 3040 [ 6856261C915DD080DBADAE9D6B788D85 ] nvpciflt C:\Windows\system32\DRIVERS\nvpciflt.sys
11:35:13.0224 3040 nvpciflt - ok
11:35:13.0271 3040 [ 0A92CB65770442ED0DC44834632F66AD ] nvraid C:\Windows\system32\drivers\nvraid.sys
11:35:13.0271 3040 nvraid - ok
11:35:13.0286 3040 [ DAB0E87525C10052BF65F06152F37E4A ] nvstor C:\Windows\system32\drivers\nvstor.sys
11:35:13.0286 3040 nvstor - ok
11:35:13.0364 3040 [ 34E5498528BB3D5A951F889F8756AD26 ] nvsvc C:\Windows\system32\nvvsvc.exe
11:35:13.0380 3040 nvsvc - ok
11:35:13.0489 3040 [ CD0BFAA6872CFE38C908D313AE17C350 ] nvUpdatusService C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
11:35:13.0505 3040 nvUpdatusService - ok
11:35:13.0536 3040 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
11:35:13.0536 3040 nv_agp - ok
11:35:13.0629 3040 [ 785F487A64950F3CB8E9F16253BA3B7B ] odserv C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
11:35:13.0645 3040 odserv - ok
11:35:13.0676 3040 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
11:35:13.0676 3040 ohci1394 - ok
11:35:13.0739 3040 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
11:35:13.0739 3040 ose - ok
11:35:13.0832 3040 [ 23E03977052162A348ADD43621C2CAB4 ] OverwolfUpdaterService C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe
11:35:13.0832 3040 OverwolfUpdaterService - ok
11:35:13.0879 3040 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
11:35:13.0879 3040 p2pimsvc - ok
11:35:13.0910 3040 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll
11:35:13.0926 3040 p2psvc - ok
11:35:13.0957 3040 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\DRIVERS\parport.sys
11:35:13.0957 3040 Parport - ok
11:35:13.0988 3040 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\Windows\system32\drivers\partmgr.sys
11:35:13.0988 3040 partmgr - ok
11:35:14.0019 3040 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\Windows\System32\pcasvc.dll
11:35:14.0035 3040 PcaSvc - ok
11:35:14.0051 3040 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\Windows\system32\drivers\pci.sys
11:35:14.0051 3040 pci - ok
11:35:14.0097 3040 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\drivers\pciide.sys
11:35:14.0097 3040 pciide - ok
11:35:14.0129 3040 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys
11:35:14.0129 3040 pcmcia - ok
11:35:14.0160 3040 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys
11:35:14.0160 3040 pcw - ok
11:35:14.0191 3040 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\Windows\system32\drivers\peauth.sys
11:35:14.0191 3040 PEAUTH - ok
11:35:14.0269 3040 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe
11:35:14.0285 3040 PerfHost - ok
11:35:14.0347 3040 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\Windows\system32\pla.dll
11:35:14.0363 3040 pla - ok
11:35:14.0409 3040 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
11:35:14.0425 3040 PlugPlay - ok
11:35:14.0441 3040 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
11:35:14.0441 3040 PNRPAutoReg - ok
11:35:14.0441 3040 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
11:35:14.0456 3040 PNRPsvc - ok
11:35:14.0487 3040 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
11:35:14.0487 3040 PolicyAgent - ok
11:35:14.0519 3040 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll
11:35:14.0519 3040 Power - ok
11:35:14.0565 3040 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
11:35:14.0565 3040 PptpMiniport - ok
11:35:14.0597 3040 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\DRIVERS\processr.sys
11:35:14.0597 3040 Processor - ok
11:35:14.0643 3040 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc C:\Windows\system32\profsvc.dll
11:35:14.0643 3040 ProfSvc - ok
11:35:14.0659 3040 [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\Windows\system32\lsass.exe
11:35:14.0675 3040 ProtectedStorage - ok
11:35:14.0706 3040 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\Windows\system32\DRIVERS\pacer.sys
11:35:14.0721 3040 Psched - ok
11:35:14.0737 3040 [ F036CFB275D0C55F4E45FBBF5F98B3C8 ] PSI_SVC_2 C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
11:35:14.0737 3040 PSI_SVC_2 - ok
11:35:14.0799 3040 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys
11:35:14.0815 3040 ql2300 - ok
11:35:14.0846 3040 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys
11:35:14.0846 3040 ql40xx - ok
11:35:14.0877 3040 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll
11:35:14.0877 3040 QWAVE - ok
11:35:14.0893 3040 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
11:35:14.0893 3040 QWAVEdrv - ok
11:35:14.0893 3040 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
11:35:14.0893 3040 RasAcd - ok
11:35:14.0940 3040 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
11:35:14.0940 3040 RasAgileVpn - ok
11:35:14.0955 3040 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll
11:35:14.0955 3040 RasAuto - ok
11:35:15.0002 3040 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
11:35:15.0002 3040 Rasl2tp - ok
11:35:15.0049 3040 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\Windows\System32\rasmans.dll
11:35:15.0065 3040 RasMan - ok
11:35:15.0096 3040 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
11:35:15.0096 3040 RasPppoe - ok
11:35:15.0111 3040 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
11:35:15.0111 3040 RasSstp - ok
11:35:15.0158 3040 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
11:35:15.0158 3040 rdbss - ok
11:35:15.0174 3040 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
11:35:15.0189 3040 rdpbus - ok
11:35:15.0221 3040 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
11:35:15.0221 3040 RDPCDD - ok
11:35:15.0252 3040 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
11:35:15.0252 3040 RDPENCDD - ok
11:35:15.0267 3040 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
11:35:15.0267 3040 RDPREFMP - ok
11:35:15.0299 3040 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
11:35:15.0314 3040 RDPWD - ok
11:35:15.0345 3040 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
11:35:15.0361 3040 rdyboost - ok
11:35:15.0392 3040 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\Windows\System32\mprdim.dll
11:35:15.0392 3040 RemoteAccess - ok
11:35:15.0439 3040 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll
11:35:15.0439 3040 RemoteRegistry - ok
11:35:15.0486 3040 [ 3DD798846E2C28102B922C56E71B7932 ] RFCOMM C:\Windows\system32\DRIVERS\rfcomm.sys
11:35:15.0486 3040 RFCOMM - ok
11:35:15.0501 3040 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
11:35:15.0501 3040 RpcEptMapper - ok
11:35:15.0517 3040 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe
11:35:15.0533 3040 RpcLocator - ok
11:35:15.0579 3040 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\Windows\system32\rpcss.dll
11:35:15.0579 3040 RpcSs - ok
11:35:15.0642 3040 [ D5C3E1629A3F7F0857D27949252B94CE ] RSPCIESTOR C:\Windows\system32\DRIVERS\RtsPStor.sys
11:35:15.0657 3040 RSPCIESTOR - ok
11:35:15.0689 3040 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
11:35:15.0704 3040 rspndr - ok
11:35:15.0751 3040 [ 7CB9F0FDD730F4A4ECF6CDE15EA12E8A ] RS_Service C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe
11:35:15.0767 3040 RS_Service - ok
11:35:15.0767 3040 [ C118A82CD78818C29AB228366EBF81C3 ] SamSs C:\Windows\system32\lsass.exe
11:35:15.0782 3040 SamSs - ok
11:35:15.0813 3040 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
11:35:15.0813 3040 sbp2port - ok
11:35:15.0845 3040 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll
11:35:15.0845 3040 SCardSvr - ok
11:35:15.0891 3040 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
11:35:15.0891 3040 scfilter - ok
11:35:15.0954 3040 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\Windows\system32\schedsvc.dll
11:35:15.0969 3040 Schedule - ok
11:35:16.0001 3040 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\Windows\System32\certprop.dll
11:35:16.0001 3040 SCPolicySvc - ok
11:35:16.0032 3040 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\Windows\System32\SDRSVC.dll
11:35:16.0047 3040 SDRSVC - ok
11:35:16.0079 3040 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys
11:35:16.0079 3040 secdrv - ok
11:35:16.0110 3040 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\Windows\system32\seclogon.dll
11:35:16.0110 3040 seclogon - ok
11:35:16.0157 3040 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\System32\sens.dll
11:35:16.0157 3040 SENS - ok
11:35:16.0172 3040 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll
11:35:16.0188 3040 SensrSvc - ok
11:35:16.0219 3040 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
11:35:16.0219 3040 Serenum - ok
11:35:16.0250 3040 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\DRIVERS\serial.sys
11:35:16.0250 3040 Serial - ok
11:35:16.0281 3040 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys
11:35:16.0281 3040 sermouse - ok
11:35:16.0328 3040 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\Windows\system32\sessenv.dll
11:35:16.0344 3040 SessionEnv - ok
11:35:16.0375 3040 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
11:35:16.0375 3040 sffdisk - ok
11:35:16.0391 3040 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
11:35:16.0391 3040 sffp_mmc - ok
11:35:16.0406 3040 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
11:35:16.0406 3040 sffp_sd - ok
11:35:16.0453 3040 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys
11:35:16.0453 3040 sfloppy - ok
11:35:16.0484 3040 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\Windows\System32\ipnathlp.dll
11:35:16.0500 3040 SharedAccess - ok
11:35:16.0531 3040 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll
11:35:16.0547 3040 ShellHWDetection - ok
11:35:16.0562 3040 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys
11:35:16.0562 3040 SiSRaid2 - ok
11:35:16.0578 3040 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys
11:35:16.0578 3040 SiSRaid4 - ok
11:35:16.0765 3040 [ AE40D1BC6FB02A5625516AD74CA9A309 ] Skype C2C Service C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
11:35:16.0781 3040 Skype C2C Service - ok
11:35:16.0890 3040 [ 3E587DBBDFF938DDE5D4CE4047BE9041 ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
11:35:16.0890 3040 SkypeUpdate - ok
11:35:16.0921 3040 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys
11:35:16.0921 3040 Smb - ok
11:35:16.0952 3040 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe
11:35:16.0968 3040 SNMPTRAP - ok
11:35:16.0983 3040 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys
11:35:16.0983 3040 spldr - ok
11:35:17.0030 3040 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler C:\Windows\System32\spoolsv.exe
11:35:17.0046 3040 Spooler - ok
11:35:17.0155 3040 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\Windows\system32\sppsvc.exe
11:35:17.0171 3040 sppsvc - ok
11:35:17.0202 3040 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll
11:35:17.0202 3040 sppuinotify - ok
11:35:17.0264 3040 [ DFC4E2081324E505CA479E473A78D893 ] sptd C:\Windows\System32\Drivers\sptd.sys
11:35:17.0280 3040 sptd - ok
11:35:17.0327 3040 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv C:\Windows\system32\DRIVERS\srv.sys
11:35:17.0327 3040 srv - ok
11:35:17.0358 3040 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
11:35:17.0373 3040 srv2 - ok
11:35:17.0373 3040 [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
11:35:17.0389 3040 srvnet - ok
11:35:17.0420 3040 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
11:35:17.0420 3040 SSDPSRV - ok
11:35:17.0436 3040 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\Windows\system32\sstpsvc.dll
11:35:17.0451 3040 SstpSvc - ok


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 73 hostů