Stránka 1 z 3

We're sorry... ... but your computer or network may be send

Napsal: 21 lis 2013 16:42
od Martin95k
Dobrý den,

Chtě bych Vás požádat o pomoc. Toto se mi objevilo na googlu. Chtěl bych poprosit, jak se dálá kontrolu logu nebo nějak poradit s tímto problémem.
Mám stáhnutý hijackthis, ale nevím, jak získat ten kód, který sem každý posílá.

Děkuji

Re: We're sorry... ... but your computer or network may be

Napsal: 21 lis 2013 16:52
od Stene
Tady máš návod viewtopic.php?t=5119

Re: We're sorry... ... but your computer or network may be

Napsal: 21 lis 2013 16:58
od Martin95k
Díky, zde přikládám můj log:

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:56:55, on 21/11/2013
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v10.0 (10.00.9200.16537)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnCfg.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
C:\Windows\SysWOW64\ACEngSvr.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
C:\Windows\Xerox\PanelMgr\SSMMgr.exe
C:\Users\Martin\AppData\Local\VNT\vntldr.exe
C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe
C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Windows\syswow64\wwahost.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Martin\Desktop\hijackthis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus13.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Ask Toolbar BHO - {5054562D-5247-006A-76A7-7A786E7484D7} - "C:\Program Files (x86)\AskPartnerNetwork\Toolbar\PTV-RG\Passport.dll" (file missing)
O2 - BHO: ContentBlockerBrowserHelperObject - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\ContentBlocker\ie_content_blocker_plugin.dll
O2 - BHO: VirtualKeyboardBrowserHelperObject - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll
O2 - BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\OnlineBanking\online_banking_bho.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: link filter bho - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\UrlAdvisor\klwtbbho.dll
O3 - Toolbar: Ask Toolbar - {5054562D-5247-006A-76A7-7A786E7484D7} - "C:\Program Files (x86)\AskPartnerNetwork\Toolbar\PTV-RG\Passport.dll" (file missing)
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
O4 - HKLM\..\Run: [ASUSWebStorage] C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.9.120\AsusWSPanel.exe /S
O4 - HKLM\..\Run: [AVP] "C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\runner_avp.exe"
O4 - HKLM\..\Run: [Xerox PanelMgr] C:\Windows\Xerox\PanelMgr\ssmmgr.exe /autorun
O4 - HKLM\..\Run: [VNT] C:\Program Files (x86)\VNT\vntldr.exe
O4 - Global Startup: AsusVibeLauncher.lnk = C:\Program Files (x86)\ASUS\AsusVibe\AsusVibeLauncher.exe
O8 - Extra context menu item: Add to Anti-Banner - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ie_banner_deny.htm
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: Virtual Keyboard - {0C4CC089-D306-440D-9772-464E226F6539} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: URLs check - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\UrlAdvisor\klwtbbho.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O20 - AppInit_DLLs: C:\PROGRA~2\NVIDIA~1\3DVISI~1\nvStInit.dll,C:\Windows\SysWOW64\nvinit.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - ASUSTek Computer Inc. - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ASUS InstantOn Service (ASUS InstantOn) - ASUS - C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe
O23 - Service: AtherosSvc - Unknown owner - C:\Windows\system32\AdminService.exe (file missing)
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Kaspersky Anti-Virus Service (AVP) - Kaspersky Lab ZAO - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe
O23 - Service: Classic Shell Service (ClassicShellService) - IvoSoft - C:\Program Files\Classic Shell\ClassicShellService.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 11369 bytes

Re: We're sorry... ... but your computer or network may be

Napsal: 21 lis 2013 18:53
od Orcus
Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected. Poté klikni na Main (hlavní stránku ) a klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.

===================================================

Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Provést rychlý sken a klikni na tlačítko Skenovat
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Zobrazit výsledky
- pak zvol možnost uložit log a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.

====================================================

Stáhni AdwCleaner

Ulož si ho na svojí plochu
Ukonči všechny programy, okna a prohlížeče
Spusť program poklepáním a klikni na „Search“
Po skenu se objeví log (jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.

====================================================

Stáhni si Junkware Removal Tool

na svojí plochu.
Deaktivuj si svůj antivirový program.
Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.

Re: We're sorry... ... but your computer or network may be

Napsal: 21 lis 2013 19:46
od Martin95k
Dobrý den, provedl jsem všechny 3 úkony (používám chrome, takže jsem ATF Cleaner nepoužil).
Zde je Malwarebytes Anti-malware log:
Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware.) 1.75.0.1300
www.malwarebytes.org

Verze: v2013.11.21.06

Windows 8 x64 NTFS
Internet Explorer 10.0.9200.16736
Martin :: MARTIN [administrátor]

Ochrana: Povolena

21/11/2013 19:21:29
mbam-log-2013-11-21 (19-21-29).txt

Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 249765
Uplynulý čas: 2 minut, 58 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 0
(Žádné škodlivé položky nebyly zjištěny)

(konec)

Re: We're sorry... ... but your computer or network may be

Napsal: 21 lis 2013 19:48
od Martin95k
Zde přikládám Adw Cleaner (po spuštění tam nebylo ,,search,, tak jsem dal ,,scan,,)



# AdwCleaner v3.012 - Report created 21/11/2013 at 19:31:43
# Updated 11/11/2013 by Xplode
# Operating System : Windows 8 (64 bits)
# Username : Martin - MARTIN
# Running from : C:\Users\Martin\Desktop\adwcleaner.exe
# Option : Scan

***** [ Services ] *****


***** [ Files / Folders ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****


***** [ Browsers ] *****

-\\ Internet Explorer v10.0.9200.16537


-\\ Mozilla Firefox v

-\\ Google Chrome v31.0.1650.57

[ File : C:\Users\Martin\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [2262 octets] - [21/11/2013 16:04:12]
AdwCleaner[R1].txt - [879 octets] - [21/11/2013 16:14:29]
AdwCleaner[R2].txt - [940 octets] - [21/11/2013 19:30:24]
AdwCleaner[R3].txt - [799 octets] - [21/11/2013 19:31:43]
AdwCleaner[S0].txt - [2322 octets] - [21/11/2013 16:07:29]

########## EOF - C:\AdwCleaner\AdwCleaner[R3].txt - [918 octets] ##########

Re: We're sorry... ... but your computer or network may be

Napsal: 21 lis 2013 19:50
od Martin95k
Zde je Junkware removal tool:


~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.8 (11.05.2013:1)
OS: Windows 8 x64
Ran by Martin on 21/11/2013 at 19:39:23.34
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys



~~~ Files



~~~ Folders

Successfully deleted: [Folder] "C:\Users\Martin\music\qtrax media library"



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 21/11/2013 at 19:43:51.90
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Re: We're sorry... ... but your computer or network may be

Napsal: 21 lis 2013 20:37
od memphisto
Stáhni si RogueKiller
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit

-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.

Re: We're sorry... ... but your computer or network may be

Napsal: 21 lis 2013 21:39
od Martin95k
Tak jsem to udělal, jen jsem to nespustil jako správce, protože mám WIN8.

RogueKiller V8.7.8 _x64_ [Nov 14 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.adlice.com/forum/
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://tigzyrk.blogspot.com/

Operační systém : Windows 8 (6.2.9200 ) 64 bits version
Spuštěno v : Normální režim
Uživatel : Martin [Práva správce]
Mód : Kontrola -- Datum : 11/21/2013 21:34:04
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 1 ¤¤¤
[SUSP PATH] vntldr.exe -- C:\Users\Martin\AppData\Local\VNT\vntldr.exe [7] -> SMAZÁNO [TermProc]

¤¤¤ ¤¤¤ Záznamy Registrů: : 4 ¤¤¤
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO

¤¤¤ naplánované úlohy : 0 ¤¤¤

¤¤¤ spuštění položky : 0 ¤¤¤

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NENAHRÁNO 0x0] ¤¤¤

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts




¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) Hitachi HTS547575A9E384 +++++
--- User ---
[MBR] 5121ed68627e23ab97862d4b9d9f4d5e
[BSP] 4816b00b2e7efa2cda2c0a65fdf3e385 : Empty MBR Code
Partition table:
0 - [XXXXXX] UNKNOWN (0x00) [VISIBLE] Offset (sectors): 1 | Size: 2097152 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[0]_S_11212013_213404.txt >>

Re: We're sorry... ... but your computer or network may be

Napsal: 22 lis 2013 09:18
od jaro3
Zavři všechny programy a prohlížeče. Deaktivuj antivir a firewall.
Prosím, odpoj všechny USB nebo externí disky z počítače před spuštěním tohoto programu.
Spusť RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Počkej, dokud status okno zobrazuje "Prohledat "
- Klikni na "Smazat"
- Počkej, dokud Status box zobrazuje " Mazání dokončeno "
- Klikni na "Zpráva " a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [číslo]. txt na ploše.
- Zavři RogueKiller

Stáhni si TDSSKiller
Na svojí plochu.Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller. 2.8.16.0_(datum)_log.txt , vlož sem prosím celý obsah logu.

Re: We're sorry... ... but your computer or network may be

Napsal: 22 lis 2013 13:01
od Martin95k
Zde je smazání z Roguekiller:


RogueKiller V8.7.8 _x64_ [Nov 14 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.adlice.com/forum/
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://tigzyrk.blogspot.com/

Operační systém : Windows 8 (6.2.9200 ) 64 bits version
Spuštěno v : Normální režim
Uživatel : Martin [Práva správce]
Mód : Kontrola -- Datum : 11/22/2013 12:56:57
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 1 ¤¤¤
[SUSP PATH] vntldr.exe -- C:\Users\Martin\AppData\Local\VNT\vntldr.exe [7] -> SMAZÁNO [TermProc]

¤¤¤ ¤¤¤ Záznamy Registrů: : 4 ¤¤¤
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO

¤¤¤ naplánované úlohy : 0 ¤¤¤

¤¤¤ spuštění položky : 0 ¤¤¤

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NENAHRÁNO 0x0] ¤¤¤

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts




¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) Hitachi HTS547575A9E384 +++++
--- User ---
[MBR] 5121ed68627e23ab97862d4b9d9f4d5e
[BSP] 4816b00b2e7efa2cda2c0a65fdf3e385 : Empty MBR Code
Partition table:
0 - [XXXXXX] UNKNOWN (0x00) [VISIBLE] Offset (sectors): 1 | Size: 2097152 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[0]_S_11222013_125657.txt >>

Re: We're sorry... ... but your computer or network may be

Napsal: 22 lis 2013 13:18
od Martin95k
13:04:29.0943 14628 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
13:04:29.0943 14628 UEFI system
13:04:40.0100 14628 ============================================================
13:04:40.0100 14628 Current date / time: 2013/11/22 13:04:40.0100
13:04:40.0100 14628 SystemInfo:
13:04:40.0100 14628
13:04:40.0100 14628 OS Version: 6.2.9200 ServicePack: 0.0
13:04:40.0100 14628 Product type: Workstation
13:04:40.0100 14628 ComputerName: MARTIN
13:04:40.0100 14628 UserName: Martin
13:04:40.0100 14628 Windows directory: C:\Windows
13:04:40.0100 14628 System windows directory: C:\Windows
13:04:40.0100 14628 Running under WOW64
13:04:40.0100 14628 Processor architecture: Intel x64
13:04:40.0100 14628 Number of processors: 4
13:04:40.0100 14628 Page size: 0x1000
13:04:40.0100 14628 Boot type: Normal boot
13:04:40.0100 14628 ============================================================
13:04:40.0819 14628 Drive \Device\Harddisk0\DR0 - Size: 0xAEA8CDE000 (698.64 Gb), SectorSize: 0x200, Cylinders: 0x16441, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
13:04:40.0819 14628 ============================================================
13:04:40.0819 14628 \Device\Harddisk0\DR0:
13:04:40.0819 14628 GPT partitions:
13:04:40.0819 14628 \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {5A60FFF2-384A-4168-AD7B-7BA25C03C910}, Name: EFI system partition, StartLBA 0x800, BlocksNum 0x96000
13:04:40.0819 14628 \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {5DA02B32-607A-4C63-88EF-00499BD6E05C}, Name: Basic data partition, StartLBA 0x96800, BlocksNum 0x12C000
13:04:40.0819 14628 \Device\Harddisk0\DR0\Partition3: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {6C501A91-71A5-45D8-A9EE-2E2A1C427258}, Name: Microsoft reserved partition, StartLBA 0x1C2800, BlocksNum 0x40000
13:04:40.0819 14628 \Device\Harddisk0\DR0\Partition4: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {6E182189-B0E3-479A-AC74-8E69452D7C66}, Name: Basic data partition, StartLBA 0x202800, BlocksNum 0x22EE8800
13:04:40.0819 14628 \Device\Harddisk0\DR0\Partition5: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {BE7E04AC-FB01-44FD-9571-E0B001652322}, Name: Basic data partition, StartLBA 0x230EB000, BlocksNum 0x31C56000
13:04:40.0819 14628 \Device\Harddisk0\DR0\Partition6: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {4D42C26D-2C85-4EBF-88EC-7A83A4814A61}, Name: Basic data partition, StartLBA 0x54D41000, BlocksNum 0x2805000
13:04:40.0819 14628 MBR partitions:
13:04:40.0819 14628 ============================================================
13:04:40.0834 14628 C: <-> \Device\Harddisk0\DR0\Partition4
13:04:40.0866 14628 D: <-> \Device\Harddisk0\DR0\Partition5
13:04:40.0866 14628 ============================================================
13:04:40.0866 14628 Initialize success
13:04:40.0866 14628 ============================================================
13:04:49.0085 16360 ============================================================
13:04:49.0085 16360 Scan started
13:04:49.0085 16360 Mode: Manual;
13:04:49.0085 16360 ============================================================
13:04:49.0663 16360 ================ Scan system memory ========================
13:04:49.0663 16360 System memory - ok
13:04:49.0663 16360 ================ Scan services =============================
13:04:49.0851 16360 [ E890C46E4754F0DF51BAFCC8D2E07498 ] 1394ohci C:\Windows\System32\drivers\1394ohci.sys
13:04:49.0866 16360 1394ohci - ok
13:04:49.0882 16360 [ 4F18D4C7EA14F11A7211F60D553C03DB ] 3ware C:\Windows\system32\drivers\3ware.sys
13:04:49.0882 16360 3ware - ok
13:04:49.0913 16360 [ 975AABEB243B800C23626D6B652C5A9C ] ACPI C:\Windows\system32\drivers\ACPI.sys
13:04:49.0929 16360 ACPI - ok
13:04:49.0960 16360 [ DC968C37822117E576B933F34A2D130C ] acpiex C:\Windows\system32\Drivers\acpiex.sys
13:04:49.0960 16360 acpiex - ok
13:04:49.0976 16360 [ 0CA9F7C3A78227C21A0A7854E245CFB2 ] acpipagr C:\Windows\System32\drivers\acpipagr.sys
13:04:49.0976 16360 acpipagr - ok
13:04:49.0976 16360 [ 8EB8DA03B142D3DD1EB9ED8107A76C43 ] AcpiPmi C:\Windows\System32\drivers\acpipmi.sys
13:04:49.0976 16360 AcpiPmi - ok
13:04:49.0991 16360 [ CBCE725C5D86ABA7D2604E22951AA9B8 ] acpitime C:\Windows\System32\drivers\acpitime.sys
13:04:49.0991 16360 acpitime - ok
13:04:50.0069 16360 [ ADDA5E1951B90D3D23C56D3CF0622ADC ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
13:04:50.0069 16360 AdobeARMservice - ok
13:04:50.0101 16360 [ 93C6388592B99925C1D1576E465BC80F ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
13:04:50.0101 16360 adp94xx - ok
13:04:50.0132 16360 [ D27763E0247292654E7F7D16444C7C72 ] adpahci C:\Windows\system32\drivers\adpahci.sys
13:04:50.0147 16360 adpahci - ok
13:04:50.0163 16360 [ 67B90070FF48F794AF19F9FCF0080D75 ] adpu320 C:\Windows\system32\drivers\adpu320.sys
13:04:50.0163 16360 adpu320 - ok
13:04:50.0210 16360 [ 974AE60BF5B90E31412D93596C968E5B ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
13:04:50.0210 16360 AeLookupSvc - ok
13:04:50.0241 16360 [ 7C0E0EDF18D6CC565D7BFBB451709FA5 ] AFD C:\Windows\system32\drivers\afd.sys
13:04:50.0241 16360 AFD - ok
13:04:50.0288 16360 [ 98022774D9930ECBB292E70DB7601DF6 ] AgereSoftModem C:\Windows\system32\DRIVERS\agrsm64.sys
13:04:50.0304 16360 AgereSoftModem - ok
13:04:50.0319 16360 [ 01590377A5AB19E792528C628A2A68F9 ] agp440 C:\Windows\system32\drivers\agp440.sys
13:04:50.0319 16360 agp440 - ok
13:04:50.0366 16360 [ 16F6F6B7903B913AB41AB848C8BB5658 ] AiCharger C:\Windows\system32\DRIVERS\AiCharger.sys
13:04:50.0366 16360 AiCharger - ok
13:04:50.0397 16360 [ D1BE8E6E5B3AF23A4393AF1BF867977A ] ALG C:\Windows\System32\alg.exe
13:04:50.0397 16360 ALG - ok
13:04:50.0429 16360 [ 025E8C755BE293E50854D26D1BBE5133 ] AllUserInstallAgent C:\Windows\system32\AUInstallAgent.dll
13:04:50.0429 16360 AllUserInstallAgent - ok
13:04:50.0460 16360 [ 5A81054B824004B1ECC04F0034A1CDF9 ] AmdK8 C:\Windows\System32\drivers\amdk8.sys
13:04:50.0460 16360 AmdK8 - ok
13:04:50.0476 16360 [ B849D453E644FAB9BC8EF6DC8CA9C4C6 ] AmdPPM C:\Windows\System32\drivers\amdppm.sys
13:04:50.0476 16360 AmdPPM - ok
13:04:50.0507 16360 [ 35A0EB5AECB0FA3C41A2FB514A562304 ] amdsata C:\Windows\system32\drivers\amdsata.sys
13:04:50.0507 16360 amdsata - ok
13:04:50.0522 16360 [ 00452671904F5EE94B50BF0219C97164 ] amdsbs C:\Windows\system32\drivers\amdsbs.sys
13:04:50.0538 16360 amdsbs - ok
13:04:50.0538 16360 [ EA3FFE53E92E59C87E3ECA9BEB20D9B7 ] amdxata C:\Windows\system32\drivers\amdxata.sys
13:04:50.0538 16360 amdxata - ok
13:04:50.0569 16360 [ 83B3682CE922FB0F415734B26D9D6233 ] AppID C:\Windows\system32\drivers\appid.sys
13:04:50.0569 16360 AppID - ok
13:04:50.0616 16360 [ CE2BEAD7F31816FF0AC490D048C969F9 ] AppIDSvc C:\Windows\System32\appidsvc.dll
13:04:50.0616 16360 AppIDSvc - ok
13:04:50.0647 16360 [ 4F750B7EFCB6520AE01E01D082D7D476 ] Appinfo C:\Windows\System32\appinfo.dll
13:04:50.0647 16360 Appinfo - ok
13:04:50.0679 16360 [ E933401B392387F4BE34DE8BAF1722A7 ] arc C:\Windows\system32\drivers\arc.sys
13:04:50.0679 16360 arc - ok
13:04:50.0726 16360 [ 07CA323EF2E8247A568AB0F3662AD644 ] arcsas C:\Windows\system32\drivers\arcsas.sys
13:04:50.0726 16360 arcsas - ok
13:04:50.0788 16360 [ FA713019412C061385F09BD373BF747A ] ASLDRService C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
13:04:50.0788 16360 ASLDRService - ok
13:04:50.0804 16360 [ 4C016FD76ED5C05E84CA8CAB77993961 ] ASMMAP64 C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys
13:04:50.0804 16360 ASMMAP64 - ok
13:04:50.0851 16360 [ 6A122B4F0E5293CACFA8A5F2CBA9B356 ] ASUS InstantOn C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe
13:04:50.0851 16360 ASUS InstantOn - ok
13:04:50.0882 16360 [ 74DBAEC35366C4EE7670428808715A6A ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
13:04:50.0882 16360 AsyncMac - ok
13:04:50.0913 16360 [ A721FF570C2387E383BDDEA9632863C9 ] atapi C:\Windows\system32\drivers\atapi.sys
13:04:50.0913 16360 atapi - ok
13:04:50.0913 16360 AthBTPort - ok
13:04:50.0944 16360 [ 4ECC791539F23982411864037D1AC8FC ] ATHDFU C:\Windows\System32\Drivers\AthDfu.sys
13:04:50.0944 16360 ATHDFU - ok
13:04:50.0976 16360 [ 51B7849747A0582096A41A366454E88E ] AtherosSvc C:\Windows\system32\AdminService.exe
13:04:50.0976 16360 AtherosSvc - ok
13:04:51.0085 16360 [ D55EBCD80CA519020338F75E420FDF3F ] athr C:\Windows\system32\DRIVERS\athw8x.sys
13:04:51.0116 16360 athr - ok
13:04:51.0132 16360 [ DBC598E47E7A382E60E2A4745D41FEF9 ] ATKGFNEXSrv C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
13:04:51.0132 16360 ATKGFNEXSrv - ok
13:04:51.0194 16360 [ 41CEAFFCF3550785E59E3EC9BEE8D97A ] ATKWMIACPIIO C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys
13:04:51.0194 16360 ATKWMIACPIIO - ok
13:04:51.0226 16360 [ 437EB91CB20144375DDE145149778405 ] ATP C:\Windows\System32\drivers\AsusTP.sys
13:04:51.0226 16360 ATP - ok
13:04:51.0257 16360 [ BCD7A47EF587DC00DD61D12D9C2D1E44 ] AudioEndpointBuilder C:\Windows\System32\AudioEndpointBuilder.dll
13:04:51.0272 16360 AudioEndpointBuilder - ok
13:04:51.0304 16360 [ 599B3F685A263A114FFAF3BE29C49C75 ] Audiosrv C:\Windows\System32\Audiosrv.dll
13:04:51.0319 16360 Audiosrv - ok
13:04:51.0397 16360 [ 15D2DB9BFA8E833ED31FAB2BB088FDDA ] AVP C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe
13:04:51.0413 16360 AVP - ok
13:04:51.0444 16360 [ 89491EF71D5EA011127832C588002853 ] AxInstSV C:\Windows\System32\AxInstSV.dll
13:04:51.0444 16360 AxInstSV - ok
13:04:51.0476 16360 [ 87AB5BB072A3F128541D5B815F82FFDD ] b06bdrv C:\Windows\system32\drivers\bxvbda.sys
13:04:51.0476 16360 b06bdrv - ok
13:04:51.0507 16360 [ 81703BC5D68DEDBB086C2368FBE7B334 ] BasicDisplay C:\Windows\System32\drivers\BasicDisplay.sys
13:04:51.0507 16360 BasicDisplay - ok
13:04:51.0522 16360 [ 5EC68164E14D25675C98BBB5F09E8606 ] BasicRender C:\Windows\System32\drivers\BasicRender.sys
13:04:51.0522 16360 BasicRender - ok
13:04:51.0569 16360 [ 89143A7BA7850F5C7E61B43BB44B6418 ] BDESVC C:\Windows\System32\bdesvc.dll
13:04:51.0569 16360 BDESVC - ok
13:04:51.0585 16360 [ 9E7AEA59776D904607985AFFE7E5E183 ] Beep C:\Windows\system32\drivers\Beep.sys
13:04:51.0585 16360 Beep - ok
13:04:51.0616 16360 [ 53AA55632B94622F2DC3695E86EF9363 ] BFE C:\Windows\System32\bfe.dll
13:04:51.0632 16360 BFE - ok
13:04:51.0679 16360 [ D598C44A7072D3108D8D8102EC5E07F7 ] BITS C:\Windows\System32\qmgr.dll
13:04:51.0694 16360 BITS - ok
13:04:51.0726 16360 [ B17AC10B47C7FCB44D22A1F06415840E ] bowser C:\Windows\system32\DRIVERS\bowser.sys
13:04:51.0726 16360 bowser - ok
13:04:51.0773 16360 [ 038FA1B55531E7020DB705B42FCCE373 ] BrokerInfrastructure C:\Windows\System32\bisrv.dll
13:04:51.0773 16360 BrokerInfrastructure - ok
13:04:51.0804 16360 [ 310068BDA80B1D55C36580FD8A873FAF ] Browser C:\Windows\System32\browser.dll
13:04:51.0804 16360 Browser - ok
13:04:51.0804 16360 BTATH_A2DP - ok
13:04:51.0819 16360 btath_avdt - ok
13:04:51.0819 16360 BTATH_BUS - ok
13:04:51.0835 16360 BTATH_HCRP - ok
13:04:51.0835 16360 BTATH_LWFLT - ok
13:04:51.0835 16360 BTATH_RCP - ok
13:04:51.0882 16360 [ 8C816EBE14B24CD9CFBE94254D92A89A ] BtFilter C:\Windows\system32\DRIVERS\btfilter.sys
13:04:51.0882 16360 BtFilter - ok
13:04:51.0913 16360 [ 6695200F455E251F0BCC9CE4D0978D59 ] BthAvrcpTg C:\Windows\System32\drivers\BthAvrcpTg.sys
13:04:51.0913 16360 BthAvrcpTg - ok
13:04:51.0960 16360 [ A8B20D852B07AE19A13B5D47EC4E4C3B ] BthEnum C:\Windows\System32\drivers\BthEnum.sys
13:04:51.0960 16360 BthEnum - ok
13:04:51.0991 16360 [ 616EB8748C988AEE98D93DA141C3D3B4 ] BthHFEnum C:\Windows\System32\drivers\bthhfenum.sys
13:04:51.0991 16360 BthHFEnum - ok
13:04:51.0991 16360 [ DCB4EBD928A6FB368BE6CAE522412DE1 ] bthhfhid C:\Windows\System32\drivers\BthHFHid.sys
13:04:52.0007 16360 bthhfhid - ok
13:04:52.0023 16360 [ 42201C346F0B8C458E1E9CDE04D68A2C ] BthLEEnum C:\Windows\system32\DRIVERS\BthLEEnum.sys
13:04:52.0038 16360 BthLEEnum - ok
13:04:52.0069 16360 [ 033916CE8784A848B9A3D686B7F66D97 ] BTHMODEM C:\Windows\System32\drivers\bthmodem.sys
13:04:52.0069 16360 BTHMODEM - ok
13:04:52.0085 16360 [ 091BB978E9504D0AD14586929431A957 ] BthPan C:\Windows\system32\DRIVERS\bthpan.sys
13:04:52.0085 16360 BthPan - ok
13:04:52.0132 16360 [ 13795CAA34239D97A7211E7F9D96E012 ] BTHPORT C:\Windows\System32\Drivers\BTHport.sys
13:04:52.0132 16360 BTHPORT - ok
13:04:52.0163 16360 [ A4387C3D271959313E2577DB7BE8BA7A ] bthserv C:\Windows\system32\bthserv.dll
13:04:52.0163 16360 bthserv - ok
13:04:52.0179 16360 [ 1F715957F5236D30B6020A19A4271F6A ] BTHUSB C:\Windows\System32\Drivers\BTHUSB.sys
13:04:52.0179 16360 BTHUSB - ok
13:04:52.0210 16360 [ 990B1BABE6E81FB18E65A87EBEFB1772 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
13:04:52.0210 16360 cdfs - ok
13:04:52.0241 16360 [ 339BFF85D788268752DA8C9644B188EE ] cdrom C:\Windows\System32\drivers\cdrom.sys
13:04:52.0241 16360 cdrom - ok
13:04:52.0273 16360 [ BAF8F0F55BC300E5F882E521F054E345 ] CertPropSvc C:\Windows\System32\certprop.dll
13:04:52.0273 16360 CertPropSvc - ok
13:04:52.0304 16360 [ F64B7D1A37CC1D5F421D5359EEC81E2E ] circlass C:\Windows\System32\drivers\circlass.sys
13:04:52.0304 16360 circlass - ok
13:04:52.0351 16360 [ 55FE970B500F6D2A550B5E80AB8C4EAC ] ClassicShellService C:\Program Files\Classic Shell\ClassicShellService.exe
13:04:52.0351 16360 ClassicShellService - ok
13:04:52.0382 16360 [ 9905168708DB68849B879B5548F68AB3 ] CLFS C:\Windows\system32\drivers\CLFS.sys
13:04:52.0382 16360 CLFS - ok
13:04:52.0429 16360 [ 2DC8538A2260647484A6C921CA837313 ] CmBatt C:\Windows\System32\drivers\CmBatt.sys
13:04:52.0429 16360 CmBatt - ok
13:04:52.0476 16360 [ E708BFF0473EC6B271EA46B65B16CA56 ] CNG C:\Windows\system32\Drivers\cng.sys
13:04:52.0476 16360 CNG - ok
13:04:52.0491 16360 [ 0E5B1E9E7122EDAAF1F6CE047965CA92 ] CompositeBus C:\Windows\System32\drivers\CompositeBus.sys
13:04:52.0491 16360 CompositeBus - ok
13:04:52.0507 16360 COMSysApp - ok
13:04:52.0507 16360 [ D9CB0782AF819548072AA45B70F8B22D ] condrv C:\Windows\system32\drivers\condrv.sys
13:04:52.0507 16360 condrv - ok
13:04:52.0601 16360 [ EB726E02074FDC44EBE97E01A2660AA6 ] cphs C:\Windows\SysWow64\IntelCpHeciSvc.exe
13:04:52.0616 16360 cphs - ok
13:04:52.0632 16360 [ 5CE2742F063731EC10C1B2EE386A2C08 ] CryptSvc C:\Windows\system32\cryptsvc.dll
13:04:52.0632 16360 CryptSvc - ok
13:04:52.0663 16360 [ FAEF4C245BE832DB41B15DAAC336AFB7 ] dam C:\Windows\system32\drivers\dam.sys
13:04:52.0663 16360 dam - ok
13:04:52.0710 16360 [ 1EC6E533C954BDDF2A37E7851A7E58FD ] DcomLaunch C:\Windows\system32\rpcss.dll
13:04:52.0726 16360 DcomLaunch - ok
13:04:52.0757 16360 [ C8650D1F61149AA546BDBC99172EBBC1 ] defragsvc C:\Windows\System32\defragsvc.dll
13:04:52.0773 16360 defragsvc - ok
13:04:52.0788 16360 [ 5EAEF67AE2AF4D2DC664B649DB7B2E16 ] DeviceAssociationService C:\Windows\system32\das.dll
13:04:52.0788 16360 DeviceAssociationService - ok
13:04:52.0819 16360 [ 799BE46D45D486704CE0F37CA5385262 ] DeviceInstall C:\Windows\system32\umpnpmgr.dll
13:04:52.0835 16360 DeviceInstall - ok
13:04:52.0866 16360 [ 09D9EB9E7898F8E6561473A20CC808B9 ] Dfsc C:\Windows\system32\Drivers\dfsc.sys
13:04:52.0866 16360 Dfsc - ok
13:04:52.0882 16360 DgiVecp - ok
13:04:52.0929 16360 [ 9E0E72222264745ADEB0E5AC680B0ED6 ] Dhcp C:\Windows\system32\dhcpcore.dll
13:04:52.0944 16360 Dhcp - ok
13:04:52.0976 16360 [ 3C736FAE17BA6F91BA37594AAB139CD0 ] discache C:\Windows\system32\drivers\discache.sys
13:04:52.0976 16360 discache - ok
13:04:52.0991 16360 [ 560495FF4CA22E1D9B1972FA18F43B6F ] disk C:\Windows\system32\drivers\disk.sys
13:04:52.0991 16360 disk - ok
13:04:53.0007 16360 [ 82A7C72593793FE1EADA7A305BD1567A ] dmvsc C:\Windows\System32\drivers\dmvsc.sys
13:04:53.0007 16360 dmvsc - ok
13:04:53.0054 16360 [ 066B9710B36AB550E01EEFCA52155968 ] Dnscache C:\Windows\System32\dnsrslvr.dll
13:04:53.0054 16360 Dnscache - ok
13:04:53.0085 16360 [ 9949AD2ABA168A618D46C799D6CC898C ] dot3svc C:\Windows\System32\dot3svc.dll
13:04:53.0101 16360 dot3svc - ok
13:04:53.0116 16360 [ 109FC3F80BF4F4DC5A071058074F13C1 ] DPS C:\Windows\system32\dps.dll
13:04:53.0116 16360 DPS - ok
13:04:53.0148 16360 [ 9C7C183F937951AE17C5B8B3259CF3FF ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
13:04:53.0148 16360 drmkaud - ok
13:04:53.0163 16360 [ F87F4AAAF6664906248D11D5E579A53B ] DsmSvc C:\Windows\System32\DeviceSetupManager.dll
13:04:53.0163 16360 DsmSvc - ok
13:04:53.0226 16360 [ 6D1B8A9A2C0BD4851D8AF1AB43E67AD9 ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
13:04:53.0241 16360 DXGKrnl - ok
13:04:53.0273 16360 [ 651FBD69A9713D623D456A240F96179C ] e1iexpress C:\Windows\system32\DRIVERS\e1i63x64.sys
13:04:53.0273 16360 e1iexpress - ok
13:04:53.0304 16360 [ 58BA473DD88F5FC1932282BA683AA03E ] Eaphost C:\Windows\System32\eapsvc.dll
13:04:53.0319 16360 Eaphost - ok
13:04:53.0398 16360 [ 5AB97B3282D7D6114949D1EB5C8598E4 ] ebdrv C:\Windows\system32\drivers\evbda.sys
13:04:53.0429 16360 ebdrv - ok
13:04:53.0444 16360 [ F702AB6181513303AB0FC8D59E52708B ] EFS C:\Windows\System32\lsass.exe
13:04:53.0460 16360 EFS - ok
13:04:53.0460 16360 [ 66D60BD9A4C05616ABECA2A901475098 ] EhStorClass C:\Windows\system32\drivers\EhStorClass.sys
13:04:53.0460 16360 EhStorClass - ok
13:04:53.0491 16360 [ A61D0F543024E458C0FE32352E1978E2 ] EhStorTcgDrv C:\Windows\system32\drivers\EhStorTcgDrv.sys
13:04:53.0507 16360 EhStorTcgDrv - ok
13:04:53.0523 16360 [ D790D058D67582DB9C84C2D33695FE6B ] ErrDev C:\Windows\System32\drivers\errdev.sys
13:04:53.0523 16360 ErrDev - ok
13:04:53.0569 16360 [ F9E01C2D9F8BC049E04CF5DC24A5F638 ] EventSystem C:\Windows\system32\es.dll
13:04:53.0569 16360 EventSystem - ok
13:04:53.0601 16360 [ 7A4D6FEB8C52B3FE855E4DCDF9107E03 ] exfat C:\Windows\system32\drivers\exfat.sys
13:04:53.0601 16360 exfat - ok
13:04:53.0616 16360 [ 60996602A7111FD2D086E803F33E4282 ] fastfat C:\Windows\system32\drivers\fastfat.sys
13:04:53.0632 16360 fastfat - ok
13:04:53.0663 16360 [ F0E7F8382ED5E138B0DFA4CB5058BCFE ] Fax C:\Windows\system32\fxssvc.exe
13:04:53.0679 16360 Fax - ok
13:04:53.0710 16360 [ 73B2D11DF0B6E03A0CB0323218ACB3E4 ] fdc C:\Windows\System32\drivers\fdc.sys
13:04:53.0710 16360 fdc - ok
13:04:53.0741 16360 [ 0828E3E7BD77C89149EAD3232BFD38DB ] fdPHost C:\Windows\system32\fdPHost.dll
13:04:53.0741 16360 fdPHost - ok
13:04:53.0757 16360 [ 872506AAB591E8908DF4461475AF92DF ] FDResPub C:\Windows\system32\fdrespub.dll
13:04:53.0757 16360 FDResPub - ok
13:04:53.0788 16360 [ 0588950D93A426F97C7AAADB1A9B0458 ] fhsvc C:\Windows\system32\fhsvc.dll
13:04:53.0804 16360 fhsvc - ok
13:04:53.0819 16360 [ 88A9EBACD1058ABB237A6B4E96E7F397 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
13:04:53.0819 16360 FileInfo - ok
13:04:53.0851 16360 [ 9E4EE3A0B00FF7D5F42A4AF9744CBA02 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
13:04:53.0851 16360 Filetrace - ok
13:04:53.0866 16360 [ B1D4C168FF7B8579E3745888658FFB1D ] flpydisk C:\Windows\System32\drivers\flpydisk.sys
13:04:53.0866 16360 flpydisk - ok
13:04:53.0882 16360 [ B33EC133AE4E6C1881D2302D93D2467D ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
13:04:53.0898 16360 FltMgr - ok
13:04:53.0945 16360 [ 0BCDC0FF11B984162B0CF0FF6E9E0146 ] FontCache C:\Windows\system32\FntCache.dll
13:04:53.0976 16360 FontCache - ok
13:04:54.0085 16360 [ 0B56259F5611787222A04A8F254E51D4 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
13:04:54.0085 16360 FontCache3.0.0.0 - ok
13:04:54.0101 16360 [ A5F7873A39E4E9FAAAE59B7E9E36B705 ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
13:04:54.0101 16360 FsDepends - ok
13:04:54.0132 16360 [ A6DD7D491F587F4BC13FB972977DC8E8 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
13:04:54.0132 16360 Fs_Rec - ok
13:04:54.0163 16360 [ C1646A95EAC515F60CDB2A7A8A013C1E ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
13:04:54.0163 16360 fvevol - ok
13:04:54.0210 16360 [ A969D92973DFA895E7776B4BFE36DBB2 ] FxPPM C:\Windows\System32\drivers\fxppm.sys
13:04:54.0210 16360 FxPPM - ok
13:04:54.0226 16360 [ 52BC441E07A827EBAB70CDC7EAEDB28D ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
13:04:54.0226 16360 gagp30kx - ok
13:04:54.0257 16360 [ 721F8EEF5E9747F32670DEFF7FB92541 ] gencounter C:\Windows\System32\drivers\vmgencounter.sys
13:04:54.0257 16360 gencounter - ok
13:04:54.0288 16360 [ FC2B8B06BDBD3B6457F5A3DA9AD2410E ] GPIOClx0101 C:\Windows\system32\Drivers\msgpioclx.sys
13:04:54.0304 16360 GPIOClx0101 - ok
13:04:54.0351 16360 [ 5358678C6370F2ADC5291849F6503262 ] gpsvc C:\Windows\System32\gpsvc.dll
13:04:54.0366 16360 gpsvc - ok
13:04:54.0413 16360 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
13:04:54.0413 16360 gupdate - ok
13:04:54.0429 16360 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
13:04:54.0429 16360 gupdatem - ok
13:04:54.0460 16360 [ 630555943E5A3FE21010CE91EC7FC84F ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
13:04:54.0460 16360 HdAudAddService - ok
13:04:54.0476 16360 [ 7D87B5B6C7188D553E11B59DC7F0B111 ] HDAudBus C:\Windows\System32\drivers\HDAudBus.sys
13:04:54.0491 16360 HDAudBus - ok
13:04:54.0507 16360 [ 3F76BBA53D65E85A7F53E7A71082082C ] HidBatt C:\Windows\System32\drivers\HidBatt.sys
13:04:54.0507 16360 HidBatt - ok
13:04:54.0538 16360 [ 085F150D002B7F0153D3C06DDF33A143 ] HidBth C:\Windows\System32\drivers\hidbth.sys
13:04:54.0538 16360 HidBth - ok
13:04:54.0554 16360 [ CC4A07E51D89575CAB6F4EB590D87CD4 ] hidi2c C:\Windows\System32\drivers\hidi2c.sys
13:04:54.0570 16360 hidi2c - ok
13:04:54.0585 16360 [ DC96F7DACB777CDEAEF9958A50BFDA06 ] HidIr C:\Windows\System32\drivers\hidir.sys
13:04:54.0585 16360 HidIr - ok
13:04:54.0616 16360 [ FAC37D7B3D6354A5A5E19A45B50B4008 ] hidserv C:\Windows\system32\hidserv.dll
13:04:54.0616 16360 hidserv - ok
13:04:54.0632 16360 [ A9F2301B8D28BB4D887F5AEBB55ACB3A ] HIDSwitch C:\Windows\System32\drivers\AsHIDSwitch64.sys
13:04:54.0632 16360 HIDSwitch - ok
13:04:54.0663 16360 [ 012C354B4AB48E9A7A657DF39E3A2073 ] HidUsb C:\Windows\System32\drivers\hidusb.sys
13:04:54.0663 16360 HidUsb - ok
13:04:54.0695 16360 [ 43F884B61A24377567CD0FEB35236334 ] hkmsvc C:\Windows\system32\kmsvc.dll
13:04:54.0710 16360 hkmsvc - ok
13:04:54.0741 16360 [ 33DFC14DFDCCFA7AA10E392F6A8EC1CF ] HomeGroupListener C:\Windows\system32\ListSvc.dll
13:04:54.0741 16360 HomeGroupListener - ok
13:04:54.0788 16360 [ E0D9F6FE18FA7F53ADD29AF719CE2B7E ] HomeGroupProvider C:\Windows\system32\provsvc.dll
13:04:54.0804 16360 HomeGroupProvider - ok
13:04:54.0835 16360 [ 64DB7A8D97CA53DCCF93D0A1E08342CF ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
13:04:54.0835 16360 HpSAMD - ok
13:04:54.0882 16360 [ F4A91D985EB9D1D2717D538F3424603C ] HTTP C:\Windows\system32\drivers\HTTP.sys
13:04:54.0898 16360 HTTP - ok
13:04:54.0913 16360 [ 2A98301068801700906C06649860FE94 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
13:04:54.0913 16360 hwpolicy - ok
13:04:54.0945 16360 [ DC76901D82097C9E297F20C287CB9A27 ] hyperkbd C:\Windows\System32\drivers\hyperkbd.sys
13:04:54.0945 16360 hyperkbd - ok
13:04:54.0960 16360 [ 716413AB3CA12DE0A7222D28C1C9352C ] HyperVideo C:\Windows\system32\DRIVERS\HyperVideo.sys
13:04:54.0960 16360 HyperVideo - ok
13:04:54.0976 16360 [ C9E9CBF73AFFBFE3E801EFB516787BA3 ] i8042prt C:\Windows\System32\drivers\i8042prt.sys
13:04:54.0976 16360 i8042prt - ok
13:04:55.0023 16360 [ 0FE66A51D81A25AACEAAE4C26308121D ] iaStorA C:\Windows\system32\drivers\iaStorA.sys
13:04:55.0038 16360 iaStorA - ok
13:04:55.0054 16360 [ 5E394EBD26FD68AA9300332C46BEDD62 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
13:04:55.0054 16360 iaStorV - ok
13:04:55.0257 16360 [ B9857625DF8B539ABCB90E15B5716568 ] igfx C:\Windows\system32\DRIVERS\igdkmd64.sys
13:04:55.0351 16360 igfx - ok
13:04:55.0366 16360 [ 24847A06B84339FEEDE5CABF3D27D320 ] iirsp C:\Windows\system32\drivers\iirsp.sys
13:04:55.0366 16360 iirsp - ok
13:04:55.0445 16360 [ E455C83E029121270BED73CDAC381F37 ] IKEEXT C:\Windows\System32\ikeext.dll
13:04:55.0476 16360 IKEEXT - ok
13:04:55.0585 16360 [ 7D00AD50AAF957F0CA3A07F0E20EA58B ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
13:04:55.0616 16360 IntcAzAudAddService - ok
13:04:55.0663 16360 [ F5495B38BFB9149925F54F65AB40EFBF ] IntcDAud C:\Windows\system32\DRIVERS\IntcDAud.sys
13:04:55.0663 16360 IntcDAud - ok
13:04:55.0741 16360 [ C99F8E90DE4B8F0C7FE15BB1CBCD29DC ] Intel(R) Capability Licensing Service Interface C:\Program Files\Intel\iCLS Client\HeciServer.exe
13:04:55.0741 16360 Intel(R) Capability Licensing Service Interface - ok
13:04:55.0788 16360 [ 4F37726CF764CA18A8A84F85EF3A7F24 ] intelide C:\Windows\system32\drivers\intelide.sys
13:04:55.0788 16360 intelide - ok
13:04:55.0804 16360 [ E15CDF68DD73423F15D4AC404793AF0D ] intelppm C:\Windows\System32\drivers\intelppm.sys
13:04:55.0820 16360 intelppm - ok
13:04:55.0835 16360 [ 8FCA66234A0933D796BB780B7953BAB9 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
13:04:55.0835 16360 IpFilterDriver - ok
13:04:55.0882 16360 [ C217B8D2E58C57A319B16125C3D4B69C ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
13:04:55.0898 16360 iphlpsvc - ok
13:04:55.0929 16360 [ 6E98A046A12AA113F8898AA5D612BD6E ] IPMIDRV C:\Windows\System32\drivers\IPMIDrv.sys
13:04:55.0945 16360 IPMIDRV - ok
13:04:55.0960 16360 [ 3969B9C218DD3FAA9F4ED2FFC3651C02 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
13:04:55.0960 16360 IPNAT - ok
13:04:55.0991 16360 [ 25CD7C4BB2863FFC2B0B311F0AEBF77C ] IRENUM C:\Windows\system32\drivers\irenum.sys
13:04:55.0991 16360 IRENUM - ok
13:04:56.0007 16360 [ D940C5BB9DC92E588533C19ABCC3D2C2 ] isapnp C:\Windows\system32\drivers\isapnp.sys
13:04:56.0007 16360 isapnp - ok
13:04:56.0038 16360 [ 69C8BF0BC2B0EA10F130F4D3104DC2EF ] iScsiPrt C:\Windows\System32\drivers\msiscsi.sys
13:04:56.0054 16360 iScsiPrt - ok
13:04:56.0117 16360 [ 78ABBE558F57144047F10A0F50FE4B2F ] jhi_service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
13:04:56.0117 16360 jhi_service - ok
13:04:56.0148 16360 [ 8FBD94B69D6423E20ABCD59D86368B21 ] kbdclass C:\Windows\System32\drivers\kbdclass.sys
13:04:56.0148 16360 kbdclass - ok
13:04:56.0163 16360 [ E88C932ABDF8185A62C8F2FC7B051FB6 ] kbdhid C:\Windows\System32\drivers\kbdhid.sys
13:04:56.0163 16360 kbdhid - ok
13:04:56.0195 16360 [ A8080BEBCDB7A16495CE1205921DCAC5 ] kbfiltr C:\Windows\System32\drivers\kbfiltr.sys
13:04:56.0195 16360 kbfiltr - ok
13:04:56.0210 16360 [ FB6C185092E18011EF49989425C2AA87 ] kdnic C:\Windows\system32\DRIVERS\kdnic.sys
13:04:56.0210 16360 kdnic - ok
13:04:56.0226 16360 [ F702AB6181513303AB0FC8D59E52708B ] KeyIso C:\Windows\system32\lsass.exe
13:04:56.0226 16360 KeyIso - ok
13:04:56.0398 16360 [ 1C6256096A341051509D36AD724830BE ] kl1 C:\Windows\system32\DRIVERS\kl1.sys
13:04:56.0476 16360 kl1 - ok
13:04:56.0507 16360 [ F2EB9202FCCC81E0902D3C5A70037A44 ] klelam C:\Windows\system32\DRIVERS\klelam.sys
13:04:56.0507 16360 klelam - ok
13:04:56.0554 16360 [ 5F247D87B44E26AED440A063A7A4FDB7 ] KLIF C:\Windows\system32\DRIVERS\klif.sys
13:04:56.0554 16360 KLIF - ok
13:04:56.0570 16360 [ 1B5B924D27399F41DECD1CC6D706429F ] KLIM6 C:\Windows\system32\DRIVERS\klim6.sys
13:04:56.0570 16360 KLIM6 - ok
13:04:56.0601 16360 [ AEEC4E904850525C4D4552AF4A971BA3 ] klkbdflt C:\Windows\system32\DRIVERS\klkbdflt.sys
13:04:56.0601 16360 klkbdflt - ok
13:04:56.0617 16360 [ 8849D8F6259D3494E8C5C9482EE40A08 ] klmouflt C:\Windows\system32\DRIVERS\klmouflt.sys
13:04:56.0617 16360 klmouflt - ok
13:04:56.0632 16360 [ 781EFBB7BDE229C1615892E2A2D98721 ] klwfp C:\Windows\system32\DRIVERS\klwfp.sys
13:04:56.0632 16360 klwfp - ok
13:04:56.0648 16360 [ 1FCB657B581CC4DF17FD6571F93602DE ] kneps C:\Windows\system32\DRIVERS\kneps.sys
13:04:56.0648 16360 kneps - ok
13:04:56.0695 16360 [ DFA480F6DED551464F3A5B959F437800 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
13:04:56.0695 16360 KSecDD - ok
13:04:56.0726 16360 [ 127FB0AAD232BAAD2C9BBACD374F4FC5 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
13:04:56.0726 16360 KSecPkg - ok
13:04:56.0757 16360 [ 81492FEEBF2F26455B00EE8DBAE8A1B0 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
13:04:56.0757 16360 ksthunk - ok
13:04:56.0804 16360 [ 5825DBACEDC3812B5CF8D40B997BF210 ] KtmRm C:\Windows\system32\msdtckrm.dll
13:04:56.0820 16360 KtmRm - ok
13:04:56.0867 16360 [ 256EE31588257E8A555DBFAA13F1908E ] LanmanServer C:\Windows\system32\srvsvc.dll
13:04:56.0882 16360 LanmanServer - ok
13:04:56.0913 16360 [ 16650912BE5A94B40E0B3B4C39652B56 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
13:04:56.0929 16360 LanmanWorkstation - ok
13:04:56.0960 16360 [ CEEFD29FC551F289810B0B9381B321DC ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
13:04:56.0960 16360 lltdio - ok
13:04:56.0992 16360 [ BCF53485E0A94722CDE3C4A93CD8EB8C ] lltdsvc C:\Windows\System32\lltdsvc.dll
13:04:57.0007 16360 lltdsvc - ok
13:04:57.0023 16360 [ 5A2F7F1CBC2E631A497DAD16164E06D2 ] lmhosts C:\Windows\System32\lmhsvc.dll
13:04:57.0023 16360 lmhosts - ok
13:04:57.0070 16360 [ 2C24DC448DBE8DB9BE1441B824C57E79 ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
13:04:57.0070 16360 LMS - ok
13:04:57.0101 16360 [ 022CDD12161B063D7852B1075BF3FFF2 ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
13:04:57.0101 16360 LSI_SAS - ok
13:04:57.0117 16360 [ 07AD59D669B996F29F91817F0ECFA34F ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys
13:04:57.0117 16360 LSI_SAS2 - ok
13:04:57.0148 16360 [ 216FB796AA4E252ACCE93B1BCB80B5EC ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
13:04:57.0148 16360 LSI_SCSI - ok
13:04:57.0163 16360 [ 5E80530AF37102488EE980B4A92AF99F ] LSI_SSS C:\Windows\system32\drivers\lsi_sss.sys
13:04:57.0163 16360 LSI_SSS - ok
13:04:57.0195 16360 [ A57BA284F5996FFD32DCDBC41A4657DB ] LSM C:\Windows\System32\lsm.dll
13:04:57.0210 16360 LSM - ok
13:04:57.0242 16360 [ 2BDC5D711FA61307CE6190D47C956368 ] luafv C:\Windows\system32\drivers\luafv.sys
13:04:57.0242 16360 luafv - ok
13:04:57.0273 16360 [ 0BB97D43299910CBFBA59C461B99B910 ] MBAMProtector C:\Windows\system32\drivers\mbam.sys
13:04:57.0273 16360 MBAMProtector - ok
13:04:57.0304 16360 [ 65085456FD9A74D7F1A999520C299ECB ] MBAMScheduler C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
13:04:57.0304 16360 MBAMScheduler - ok
13:04:57.0335 16360 [ E0D7732F2D2E24B2DB3F67B6750295B8 ] MBAMService C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
13:04:57.0351 16360 MBAMService - ok
13:04:57.0367 16360 [ 9B0D829C3BE4E7472DB9DD2B79908E3C ] megasas C:\Windows\system32\drivers\megasas.sys
13:04:57.0367 16360 megasas - ok
13:04:57.0398 16360 [ ECC3F54C7AFC318271C4F0B4606D8DB0 ] MegaSR C:\Windows\system32\drivers\MegaSR.sys
13:04:57.0398 16360 MegaSR - ok
13:04:57.0429 16360 [ 772A1DEEDFDBC244183B5C805D1B7D85 ] MEIx64 C:\Windows\System32\drivers\HECIx64.sys
13:04:57.0429 16360 MEIx64 - ok
13:04:57.0460 16360 [ EEE908BE7143FCA48CF0CB87214E2AB8 ] MMCSS C:\Windows\system32\mmcss.dll
13:04:57.0476 16360 MMCSS - ok
13:04:57.0492 16360 [ 780098AD5DA8A4822E2563984C85EF7B ] Modem C:\Windows\system32\drivers\modem.sys
13:04:57.0492 16360 Modem - ok
13:04:57.0507 16360 [ EA8EAD3F5B762F889CC7F3966625B48B ] monitor C:\Windows\System32\drivers\monitor.sys
13:04:57.0507 16360 monitor - ok
13:04:57.0538 16360 [ C030F9E822A057C1A7A9BB4EA3E8877E ] MotioninJoyXFilter C:\Windows\System32\drivers\MijXfilt.sys
13:04:57.0538 16360 MotioninJoyXFilter - ok
13:04:57.0585 16360 [ 618446B98C79776654340CE27C73485E ] mouclass C:\Windows\System32\drivers\mouclass.sys
13:04:57.0585 16360 mouclass - ok
13:04:57.0617 16360 [ C0ADEBED913295803B579ED288936CBB ] mouhid C:\Windows\System32\drivers\mouhid.sys
13:04:57.0617 16360 mouhid - ok
13:04:57.0632 16360 [ 89D263DBF08119CE16273991C120D6DD ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
13:04:57.0632 16360 mountmgr - ok
13:04:57.0648 16360 [ 0D1609DD82C7440F5D5BF21A9D4D5C0C ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
13:04:57.0663 16360 mpsdrv - ok
13:04:57.0695 16360 [ 3031573A739DBEE8923851929D0AF423 ] MpsSvc C:\Windows\system32\mpssvc.dll
13:04:57.0710 16360 MpsSvc - ok
13:04:57.0742 16360 [ 3D70147F55F1EC84EB9139ED7FFE48BC ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
13:04:57.0742 16360 MRxDAV - ok
13:04:57.0788 16360 [ 93179D48066918323628CB016D8C94DC ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
13:04:57.0788 16360 mrxsmb - ok
13:04:57.0820 16360 [ 06D5F2FA3C61E8EA91648EA8E9F99FD3 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
13:04:57.0835 16360 mrxsmb10 - ok
13:04:57.0867 16360 [ 5C7DD2E5759FFCCD2C7341C1B90F2B26 ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
13:04:57.0867 16360 mrxsmb20 - ok
13:04:57.0913 16360 [ 98487487D6B3797CA927E9D7B030AE13 ] MsBridge C:\Windows\system32\DRIVERS\bridge.sys
13:04:57.0913 16360 MsBridge - ok
13:04:57.0929 16360 [ 4A07458EB4F17573BD39F22029A991C1 ] MSDTC C:\Windows\System32\msdtc.exe
13:04:57.0929 16360 MSDTC - ok
13:04:57.0960 16360 [ 3886F1F2A4D2900ABAA7E4486BEEE6A2 ] Msfs C:\Windows\system32\drivers\Msfs.sys
13:04:57.0960 16360 Msfs - ok
13:04:57.0976 16360 [ C32A7A39B960A42BA9D4FBE47213CA03 ] msgpiowin32 C:\Windows\System32\drivers\msgpiowin32.sys
13:04:57.0976 16360 msgpiowin32 - ok
13:04:58.0007 16360 [ D3857A767B91A061B408CCAB02DA4F40 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
13:04:58.0007 16360 mshidkmdf - ok
13:04:58.0023 16360 [ 839B48910FB1E887635C48F3EC11A05E ] mshidumdf C:\Windows\System32\drivers\mshidumdf.sys
13:04:58.0023 16360 mshidumdf - ok
13:04:58.0038 16360 [ 55C0DB741E3AB7463242B185B1C2997C ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
13:04:58.0038 16360 msisadrv - ok
13:04:58.0070 16360 [ 216C6B035A4BA5560E1255BD8E5BB89F ] MSiSCSI C:\Windows\system32\iscsiexe.dll
13:04:58.0070 16360 MSiSCSI - ok
13:04:58.0070 16360 msiserver - ok
13:04:58.0085 16360 [ 509809566E49F4411055864EA8D437CD ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
13:04:58.0101 16360 MSKSSRV - ok
13:04:58.0117 16360 [ 63145201D6458E4958E572E7D6FC2604 ] MsLldp C:\Windows\system32\DRIVERS\mslldp.sys
13:04:58.0132 16360 MsLldp - ok
13:04:58.0148 16360 [ 99D526E803DB6D7FF290FD98B6204641 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
13:04:58.0148 16360 MSPCLOCK - ok
13:04:58.0163 16360 [ 06FA77C3E2A491ADCD704C5E73006269 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
13:04:58.0179 16360 MSPQM - ok
13:04:58.0195 16360 [ E134EC4DE11CF78CB01432D180710D84 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
13:04:58.0195 16360 MsRPC - ok
13:04:58.0226 16360 [ B5AECF12F09DEE97C9FCAA5BA016CE1E ] mssmbios C:\Windows\System32\drivers\mssmbios.sys
13:04:58.0226 16360 mssmbios - ok
13:04:58.0242 16360 [ 72D66A05E0F99F2528F6C6204FD22AA1 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
13:04:58.0242 16360 MSTEE - ok
13:04:58.0273 16360 [ 8AAAE399FC255FA105D4158CBA289001 ] MTConfig C:\Windows\System32\drivers\MTConfig.sys
13:04:58.0273 16360 MTConfig - ok
13:04:58.0288 16360 [ 3BCB702F3E6CC622DCAFCAA45D7CDE0A ] Mup C:\Windows\system32\Drivers\mup.sys
13:04:58.0288 16360 Mup - ok
13:04:58.0320 16360 [ 3A1E095277BBD406CEA8EA6B76950664 ] mvumis C:\Windows\system32\drivers\mvumis.sys
13:04:58.0320 16360 mvumis - ok
13:04:58.0351 16360 [ 4B18840511D720BA118D3017E8165875 ] napagent C:\Windows\system32\qagentRT.dll
13:04:58.0351 16360 napagent - ok
13:04:58.0398 16360 [ 43D7388A90A4C6EA346A4D6FF0377479 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
13:04:58.0413 16360 NativeWifiP - ok
13:04:58.0445 16360 [ 6A0C3996DA7DAE6D6939676D786EEEC4 ] NcaSvc C:\Windows\System32\ncasvc.dll
13:04:58.0445 16360 NcaSvc - ok
13:04:58.0460 16360 [ C982FE4CC91DECE2259F494FCEB4030F ] NcdAutoSetup C:\Windows\System32\NcdAutoSetup.dll
13:04:58.0460 16360 NcdAutoSetup - ok
13:04:58.0507 16360 [ A10E176F3B2BF83EDE7B5C4658C93B66 ] NDIS C:\Windows\system32\drivers\ndis.sys
13:04:58.0523 16360 NDIS - ok
13:04:58.0570 16360 [ 39C8A1D9D46F5E83A016BCAB72455284 ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
13:04:58.0570 16360 NdisCap - ok
13:04:58.0585 16360 [ 762941932B7E4C588E48A577BA9D6440 ] NdisImPlatform C:\Windows\system32\DRIVERS\NdisImPlatform.sys
13:04:58.0585 16360 NdisImPlatform - ok
13:04:58.0617 16360 [ 7A6F8A6D0E01432EBA294EF29CDD0FA7 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
13:04:58.0617 16360 NdisTapi - ok
13:04:58.0648 16360 [ 79AB68BB3FFF974AD4F41FA559F4EC67 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
13:04:58.0648 16360 Ndisuio - ok
13:04:58.0663 16360 [ 62C7DBF4F9301F76CF87D4B9D8F57BF8 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
13:04:58.0679 16360 NdisWan - ok
13:04:58.0679 16360 [ 62C7DBF4F9301F76CF87D4B9D8F57BF8 ] NDISWANLEGACY C:\Windows\system32\DRIVERS\ndiswan.sys
13:04:58.0679 16360 NDISWANLEGACY - ok
13:04:58.0726 16360 [ 3730942D7DB2F8BB5F84542B7FF6F650 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
13:04:58.0726 16360 NDProxy - ok
13:04:58.0773 16360 [ D3F60A4345FCA9C1BE68AD7D0D6DE770 ] Ndu C:\Windows\system32\drivers\Ndu.sys
13:04:58.0773 16360 Ndu - ok
13:04:58.0788 16360 [ 7C203A76394F9AE68F69EEE5F9612C4A ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
13:04:58.0788 16360 NetBIOS - ok
13:04:58.0804 16360 [ 7CEC25C682D319D484630B3952C31A11 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
13:04:58.0804 16360 NetBT - ok
13:04:58.0820 16360 [ F702AB6181513303AB0FC8D59E52708B ] Netlogon C:\Windows\system32\lsass.exe
13:04:58.0820 16360 Netlogon - ok
13:04:58.0851 16360 [ 89519D29CBEC2121CA65CC29C4D345E0 ] Netman C:\Windows\System32\netman.dll
13:04:58.0867 16360 Netman - ok
13:04:58.0898 16360 [ 79FA9393C67EBBF92A56923592CF7A7C ] netprofm C:\Windows\System32\netprofmsvc.dll
13:04:58.0898 16360 netprofm - ok
13:04:58.0960 16360 [ 5243CFC2E7161C91C2B355240035B9E4 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
13:04:58.0992 16360 NetTcpPortSharing - ok
13:04:59.0195 16360 [ 57B9C04D673F236D41FAB03842C8640B ] NETwNs64 C:\Windows\system32\DRIVERS\NETwNs64.sys
13:04:59.0273 16360 NETwNs64 - ok
13:04:59.0304 16360 [ 12DD2800E4EEA37DC9AE256AD62423B4 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
13:04:59.0304 16360 nfrd960 - ok
13:04:59.0335 16360 [ 80ABCD4C2DE9FD832477303AE0CA3BE5 ] NlaSvc C:\Windows\System32\nlasvc.dll
13:04:59.0335 16360 NlaSvc - ok
13:04:59.0367 16360 [ 17E19A742FB30C002F8B43575451DBE1 ] Npfs C:\Windows\system32\drivers\Npfs.sys
13:04:59.0367 16360 Npfs - ok
13:04:59.0398 16360 [ 8ED299C30792544264E558BEA79F0947 ] npsvctrig C:\Windows\System32\drivers\npsvctrig.sys
13:04:59.0398 16360 npsvctrig - ok
13:04:59.0429 16360 [ 832B5FDF0B5577713FD7F2465FCD0ACE ] nsi C:\Windows\system32\nsisvc.dll
13:04:59.0429 16360 nsi - ok
13:04:59.0460 16360 [ 689B3B1E95C70ABF7AFF29F9406EF1E0 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
13:04:59.0460 16360 nsiproxy - ok
13:04:59.0554 16360 [ 76929F4A69E425911A63B407E26C2589 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
13:04:59.0570 16360 Ntfs - ok
13:04:59.0585 16360 [ 4163ADE07DB51843AE31F65B94F5398D ] Null C:\Windows\system32\drivers\Null.sys
13:04:59.0585 16360 Null - ok
13:04:59.0835 16360 [ EE6B7B6A54BCAFF516E30B1C15467495 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
13:04:59.0929 16360 nvlddmkm - ok
13:04:59.0960 16360 [ 4086D655D237E091ECC34BEC94E55C3E ] nvpciflt C:\Windows\system32\DRIVERS\nvpciflt.sys
13:04:59.0960 16360 nvpciflt - ok
13:04:59.0992 16360 [ D6D34118263412D3AAA8348A9572B7F2 ] nvraid C:\Windows\system32\drivers\nvraid.sys
13:04:59.0992 16360 nvraid - ok
13:05:00.0039 16360 [ 27AFC428D1D32ABD04A86763A4EDDEA9 ] nvstor C:\Windows\system32\drivers\nvstor.sys
13:05:00.0039 16360 nvstor - ok
13:05:00.0085 16360 [ 25626309AD2F81D47C829CCB5E46E478 ] nvsvc C:\Windows\system32\nvvsvc.exe
13:05:00.0085 16360 nvsvc - ok
13:05:00.0179 16360 [ 7BAB808957880CF38EFC6816FEF7276E ] nvUpdatusService C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
13:05:00.0195 16360 nvUpdatusService - ok
13:05:00.0226 16360 [ 051CFB5107BAAE510419BDC41F8C4036 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
13:05:00.0226 16360 nv_agp - ok
13:05:00.0289 16360 [ 9D10F99A6712E28F8ACD5641E3A7EA6B ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source