kontrola HJT logu - odesilani aut. požadavku do sitě Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Blood
Level 1
Level 1
Příspěvky: 81
Registrován: říjen 12
Pohlaví: Nespecifikováno
Stav:
Offline

kontrola HJT logu - odesilani aut. požadavku do sitě

Příspěvekod Blood » 24 lis 2013 11:50

Hoy, děje se mi tohle:

We're sorry...

... but your computer or network may be sending automated queries. To protect our users, we can't process your request right now.
See Google Help for more information.


Byl by někdo ochotný se podívat na log? Díky :)
I'm still in love with .. Phenom II 955BE

Reklama
Blood
Level 1
Level 1
Příspěvky: 81
Registrován: říjen 12
Pohlaví: Nespecifikováno
Stav:
Offline

Re: kontrola HJT logu - odesilani aut. požadavku do sitě

Příspěvekod Blood » 24 lis 2013 11:50

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:44:04, on 24.11.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16428)
Boot mode: Normal

Running processes:
S:\Program Files (x86)\ICQ7M\ICQ.exe
S:\Program Files (x86)\Skype\Phone\Skype.exe
S:\Windows\SoftwareProtection\systemvital.exe
C:\Program Files (x86)\multisim\Shared\NI Error Reporting\nierserver.exe
S:\Program Files\AVAST Software\Avast\AvastUI.exe
S:\Program Files (x86)\Mozilla Firefox\firefox.exe
S:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
S:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_117.exe
S:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_117.exe
S:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
S:\Users\Dostal\AppData\Local\Google\Google Talk Plugin\googletalkplugin.exe
S:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
C:\Program Files (x86)\HiJackThis\Trend Micro\HiJackThis\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = S:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - S:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - S:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - S:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Pomocná služba pro přihlášení k účtu Microsoft - {9030D464-4C02-4ABF-8ECC-5164760863C6} - S:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - S:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - S:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - S:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - S:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll
O4 - HKLM\..\Run: [Adobe ARM] "S:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [StartCCC] "S:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [AMD AVT] Cmd.exe /c start "AMD Accelerated Video Transcoding device initialization" /min "S:\Program Files (x86)\AMD AVT\bin\kdbsync.exe" aml
O4 - HKLM\..\Run: [AvastUI.exe] "S:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [NI Update Service] "C:\Program Files (x86)\multisim\Shared\Update Service\NIUpdateService.exe" -startupTask
O4 - HKLM\..\Run: [20131121] S:\Program Files\AVAST Software\Avast\setup\emupdate\b913d596-0726-4f98-88cb-eb8fb36fcb52.exe /check
O4 - HKCU\..\Run: [DAEMON Tools Lite] "S:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [ICQ] "S:\Program Files (x86)\ICQ7M\ICQ.exe" silent loginmode=4
O4 - HKCU\..\Run: [Sidebar] S:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [Skype] "S:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Google Update] "S:\Users\Dostal\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [system34] S:\Windows\SoftwareProtection\systemvital.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] S:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] S:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "S:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "S:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O4 - Global Startup: NI Error Reporting.lnk = C:\Program Files (x86)\multisim\Shared\NI Error Reporting\nierserver.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://S:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://S:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - S:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - S:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - S:\Program Files (x86)\ICQ7M\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - S:\Program Files (x86)\ICQ7M\ICQ.exe
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - S:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - S:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O10 - Unknown file in Winsock LSP: s:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: s:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\multisim\shared\mdns responder\nimdnsnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - S:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - S:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: ABBYY FineReader 11 PE Licensing Service (ABBYY.Licensing.FineReader.Professional.11.0) - ABBYY - C:\Program Files (x86)\Abbyy\NetworkLicenseServer.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - S:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - S:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - S:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - S:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - S:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: avast! Antivirus - AVAST Software - S:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: DokanMounter - Unknown owner - S:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - S:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - S:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - S:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - S:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - S:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - S:\Windows\system32\lsass.exe (file missing)
O23 - Service: NI Citadel 4 Service (LkCitadelServer) - National Instruments, Inc. - S:\Windows\SysWOW64\lkcitdl.exe
O23 - Service: NI PSP Service Locator (lkClassAds) - National Instruments Corporation - S:\Windows\SysWOW64\lkads.exe
O23 - Service: NI Time Synchronization (lkTimeSync) - National Instruments Corporation - S:\Windows\SysWOW64\lktsrv.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - S:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - S:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - S:\Windows\system32\lsass.exe (file missing)
O23 - Service: NI Application Web Server (NIApplicationWebServer) - National Instruments Corporation - C:\Program Files (x86)\multisim\Shared\NI WebServer\ApplicationWebServer.exe
O23 - Service: NI Domain Service (NIDomainService) - National Instruments Corporation - C:\Program Files (x86)\multisim\Shared\Security\nidmsrv.exe
O23 - Service: NI License Server (NILM License Manager) - Macrovision Corporation - C:\Program Files (x86)\multisim\Shared\License Manager\Bin\lmgrd.exe
O23 - Service: NI mDNS Responder Service (nimDNSResponder) - National Instruments Corporation - C:\Program Files (x86)\multisim\Shared\mDNS Responder\nimdnsResponder.exe
O23 - Service: NI Service Locator (NiSvcLoc) - National Instruments Corporation - C:\Program Files (x86)\multisim\Shared\niSvcLoc\nisvcloc.exe
O23 - Service: NI System Web Server (NISystemWebServer) - National Instruments Corporation - C:\Program Files (x86)\multisim\Shared\NI WebServer\SystemWebServer.exe
O23 - Service: PnkBstrA - Unknown owner - S:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - S:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - S:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - S:\Windows\system32\lsass.exe (file missing)
O23 - Service: ServiceLayer - Nokia - S:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - S:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - S:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - S:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - S:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - S:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: Adobe SwitchBoard (SwitchBoard) - Adobe Systems Incorporated - S:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: TeamViewer 8 (TeamViewer8) - TeamViewer GmbH - S:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - S:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - S:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - S:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - S:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - S:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - S:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - S:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - S:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 13450 bytes
I'm still in love with .. Phenom II 955BE

Uživatelský avatar
Orcus
člen Security týmu
Elite Level 10.5
Elite Level 10.5
Příspěvky: 10645
Registrován: duben 10
Bydliště: Okolo rostou 3 růže =o)
Pohlaví: Muž
Stav:
Offline

Re: kontrola HJT logu - odesilani aut. požadavku do sitě

Příspěvekod Orcus » 24 lis 2013 12:05

Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected. Poté klikni na Main (hlavní stránku ) a klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.

===================================================

Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Provést rychlý sken a klikni na tlačítko Skenovat
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Zobrazit výsledky
- pak zvol možnost uložit log a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.

====================================================

Stáhni AdwCleaner

Ulož si ho na svojí plochu
Ukonči všechny programy, okna a prohlížeče
Spusť program poklepáním a klikni na „Search“
Po skenu se objeví log (jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.

====================================================

Stáhni si Junkware Removal Tool

na svojí plochu.
Deaktivuj si svůj antivirový program.
Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.
Láska hřeje, ale uhlí je uhlí. :fire:



Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.

Pár rad k bezpečnosti PC.

Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix

Pokud budete spokojeni , můžete podpořit naše fórum.

Blood
Level 1
Level 1
Příspěvky: 81
Registrován: říjen 12
Pohlaví: Nespecifikováno
Stav:
Offline

Re: kontrola HJT logu - odesilani aut. požadavku do sitě

Příspěvekod Blood » 24 lis 2013 12:34

Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware.) 1.75.0.1300
www.malwarebytes.org

Verze: v2013.11.24.03

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 11.0.9600.16428
Dostal :: DOSTAL-PC [administrátor]

Ochrana: Povolena

24.11.2013 12:13:43
MBAM-log-2013-11-24 (12-17-04).txt

Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 209001
Uplynulý čas: 2 minut, 53 sekund

Nalezené procesy v paměti: 1
S:\Windows\SoftwareProtection\systemvital.exe (Trojan.Agent) -> 1968 -> Nebyla provedena žádná instrukce.

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené hodnoty v registru: 1
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|system34 (Trojan.Agent) -> Data: S:\Windows\SoftwareProtection\systemvital.exe -> Nebyla provedena žádná instrukce.

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 3
S:\Windows\AutoKMS.exe (Riskware.Keygen) -> Nebyla provedena žádná instrukce.
S:\Windows\KMSEmulator.exe (RiskWare.Tool.CK) -> Nebyla provedena žádná instrukce.
S:\Windows\SoftwareProtection\systemvital.exe (Trojan.Agent) -> Nebyla provedena žádná instrukce.

(konec)

____________________________________________________________________________________________

# AdwCleaner v3.013 - Report created 24/11/2013 at 12:25:12
# Updated 24/11/2013 by Xplode
# Operating System : Windows 7 Ultimate Service Pack 1 (64 bits)
# Username : Dostal - DOSTAL-PC
# Running from : C:\Files\Staženy\adwcleaner.exe
# Option : Scan

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Found S:\Users\Dostal\AppData\Local\thinstall
Folder Found S:\Users\Dostal\AppData\Roaming\pdfforge

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Found : HKCU\Software\OCS
Key Found : HKCU\Software\ParetoLogic
Key Found : HKCU\Software\Softonic
Key Found : [x64] HKCU\Software\OCS
Key Found : [x64] HKCU\Software\ParetoLogic
Key Found : [x64] HKCU\Software\Softonic
Key Found : HKLM\SOFTWARE\Classes\Interface\{813A22E0-3E2B-4188-9BDA-ECA9878B8D48}
Key Found : HKLM\SOFTWARE\Classes\Interface\{BCFF5F55-6F44-11D2-86F8-00104B265ED5}
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_ubuntu-netbook-edition(1)_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_ubuntu-netbook-edition(1)_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_ubuntu-netbook-edition_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_ubuntu-netbook-edition_RASMANCS
Key Found : HKLM\Software\ParetoLogic
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{813A22E0-3E2B-4188-9BDA-ECA9878B8D48}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{BCFF5F55-6F44-11D2-86F8-00104B265ED5}

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.16428


-\\ Mozilla Firefox v25.0.1 (cs)

[ File : S:\Users\Dostal\AppData\Roaming\Mozilla\Firefox\Profiles\r9b4cyfx.default\prefs.js ]


-\\ Google Chrome v31.0.1650.57

[ File : S:\Users\Dostal\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [2022 octets] - [24/11/2013 12:20:44]
AdwCleaner[R1].txt - [1922 octets] - [24/11/2013 12:25:12]

########## EOF - S:\AdwCleaner\AdwCleaner[R1].txt - [1982 octets] ##########

____________________________________________________________________________________________

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.8 (11.05.2013:1)
OS: Windows 7 Ultimate x64
Ran by Dostal on ne 24.11.2013 at 12:27:49,77
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\softonic
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\SoftonicDownloader_for_ubuntu-netbook-edition(1)_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\SoftonicDownloader_for_ubuntu-netbook-edition(1)_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\SoftonicDownloader_for_ubuntu-netbook-edition_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\SoftonicDownloader_for_ubuntu-netbook-edition_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\SoftonicDownloader_for_ubuntu-netbook-edition(1)_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\SoftonicDownloader_for_ubuntu-netbook-edition(1)_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\SoftonicDownloader_for_ubuntu-netbook-edition_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\SoftonicDownloader_for_ubuntu-netbook-edition_RASMANCS



~~~ Files



~~~ Folders

Successfully deleted: [Folder] "S:\Users\Dostal\AppData\Roaming\pdfforge"
Successfully deleted: [Folder] "S:\Users\Dostal\appdata\local\thinstall"
Successfully deleted: [Folder] "S:\Windows\syswow64\ai_recyclebin"



~~~ FireFox

Emptied folder: S:\Users\Dostal\AppData\Roaming\mozilla\firefox\profiles\r9b4cyfx.default\minidumps [540 files]



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on ne 24.11.2013 at 12:33:01,81
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
I'm still in love with .. Phenom II 955BE

Uživatelský avatar
memphisto
Guru Level 13
Guru Level 13
Příspěvky: 21113
Registrován: září 06
Bydliště: Zlín - České Budějovice
Pohlaví: Muž
Stav:
Offline

Re: kontrola HJT logu - odesilani aut. požadavku do sitě

Příspěvekod memphisto » 24 lis 2013 21:56

V Mbam i adw nech vše smazat a dodej logy

Stáhni si RogueKiller
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit

-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.

Stáhni si Junkware Removal Tool

na svojí plochu.
Deaktivuj si svůj antivirový program.
Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji

Blood
Level 1
Level 1
Příspěvky: 81
Registrován: říjen 12
Pohlaví: Nespecifikováno
Stav:
Offline

Re: kontrola HJT logu - odesilani aut. požadavku do sitě

Příspěvekod Blood » 25 lis 2013 18:54

Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware.) 1.75.0.1300
www.malwarebytes.org

Verze: v2013.11.25.04

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 11.0.9600.16428
Dostal :: DOSTAL-PC [administrátor]

Ochrana: Povolena

25.11.2013 18:21:04
mbam-log-2013-11-25 (18-21-04).txt

Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 209353
Uplynulý čas: 2 minut, 42 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 0
(Žádné škodlivé položky nebyly zjištěny)

(konec)
____________________________________________________________________________________________

# AdwCleaner v3.013 - Report created 25/11/2013 at 18:33:53
# Updated 24/11/2013 by Xplode
# Operating System : Windows 7 Ultimate Service Pack 1 (64 bits)
# Username : Dostal - DOSTAL-PC
# Running from : C:\Files\Staženy\adwcleaner.exe
# Option : Scan

***** [ Services ] *****


***** [ Files / Folders ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****


***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.16428


-\\ Mozilla Firefox v25.0.1 (cs)

[ File : S:\Users\Dostal\AppData\Roaming\Mozilla\Firefox\Profiles\r9b4cyfx.default\prefs.js ]


-\\ Google Chrome v31.0.1650.57

[ File : S:\Users\Dostal\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [2022 octets] - [24/11/2013 12:20:44]
AdwCleaner[R1].txt - [2082 octets] - [24/11/2013 12:25:12]
AdwCleaner[R2].txt - [1549 octets] - [25/11/2013 18:28:24]
AdwCleaner[R3].txt - [930 octets] - [25/11/2013 18:33:53]
AdwCleaner[S0].txt - [1542 octets] - [25/11/2013 18:32:19]

########## EOF - S:\AdwCleaner\AdwCleaner[R3].txt - [1049 octets] ##########
____________________________________________________________________________________________

RogueKiller V8.7.9 _x64_ [Nov 25 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.adlice.com/forum/
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://tigzyrk.blogspot.com/

Operační systém : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Spuštěno v : Normální režim
Uživatel : Dostal [Práva správce]
Mód : Kontrola -- Datum : 11/25/2013 18:41:43
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 8 ¤¤¤
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ POL][PUM] HKLM\[...]\System : ConsentPromptBehaviorAdmin (0) -> NALEZENO
[HJ POL][PUM] HKLM\[...]\System : EnableLUA (0) -> NALEZENO
[HJ POL][PUM] HKLM\[...]\Wow6432Node\[...]\System : ConsentPromptBehaviorAdmin (0) -> NALEZENO
[HJ POL][PUM] HKLM\[...]\Wow6432Node\[...]\System : EnableLUA (0) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO

¤¤¤ naplánované úlohy : 0 ¤¤¤

¤¤¤ spuštění položky : 0 ¤¤¤

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NENAHRÁNO 0x0] ¤¤¤

¤¤¤ Externí včelstvo: ¤¤¤
-> C:\windows\system32\config\SYSTEM | DRVINFO [Drv - C:] | SYSTEMINFO [Sys - C:] [Sys32 - FOUND] | USERINFO [Startup - NOT_FOUND]
-> C:\windows\system32\config\SOFTWARE | DRVINFO [Drv - C:] | SYSTEMINFO [Sys - C:] [Sys32 - FOUND] | USERINFO [Startup - NOT_FOUND]
-> C:\windows\system32\config\SECURITY | DRVINFO [Drv - C:] | SYSTEMINFO [Sys - C:] [Sys32 - FOUND] | USERINFO [Startup - NOT_FOUND]
-> C:\windows\system32\config\SAM | DRVINFO [Drv - C:] | SYSTEMINFO [Sys - C:] [Sys32 - FOUND] | USERINFO [Startup - NOT_FOUND]
-> C:\windows\system32\config\DEFAULT | DRVINFO [Drv - C:] | SYSTEMINFO [Sys - C:] [Sys32 - FOUND] | USERINFO [Startup - NOT_FOUND]

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts




¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) ST3500418AS ATA Device +++++
--- User ---
[MBR] c409f68e1b3670b719cf1e8d7f1f3af6
[BSP] 38f487e8d481bd160ebe7e4128f69f95 : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 63 | Size: 379963 Mo
User = LL1 ... OK!
User = LL2 ... OK!

+++++ PhysicalDrive1: (\\.\PHYSICALDRIVE1 @ IDE) KINGSTON SVP200S360G ATA Device +++++
--- User ---
[MBR] 862c3e604a981e8c479c91e2bde2814b
[BSP] 32070d1d443c2638fa3ad0f26c5899c2 : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 57239 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[0]_S_11252013_184143.txt >>
RKreport[0]_S_11252013_184031.txt



____________________________________________________________________________________________

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.8 (11.05.2013:1)
OS: Windows 7 Ultimate x64
Ran by Dostal on po 25.11.2013 at 18:47:14,13
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys



~~~ Files



~~~ Folders



~~~ FireFox

Emptied folder: S:\Users\Dostal\AppData\Roaming\mozilla\firefox\profiles\r9b4cyfx.default\minidumps [1 files]



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on po 25.11.2013 at 18:52:28,47
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
I'm still in love with .. Phenom II 955BE

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: kontrola HJT logu - odesilani aut. požadavku do sitě

Příspěvekod jaro3 » 26 lis 2013 09:50

Zavři všechny programy a prohlížeče. Deaktivuj antivir a firewall.
Prosím, odpoj všechny USB nebo externí disky z počítače před spuštěním tohoto programu.
Spusť RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Počkej, dokud status okno zobrazuje "Prohledat "
- Klikni na "Smazat"
- Počkej, dokud Status box zobrazuje " Mazání dokončeno "
- Klikni na "Zpráva " a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [číslo]. txt na ploše.
- Zavři RogueKiller

Stáhni si TDSSKiller
Na svojí plochu.Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller. 2.8.16.0_(datum)_log.txt , vlož sem prosím celý obsah logu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Blood
Level 1
Level 1
Příspěvky: 81
Registrován: říjen 12
Pohlaví: Nespecifikováno
Stav:
Offline

Re: kontrola HJT logu - odesilani aut. požadavku do sitě

Příspěvekod Blood » 26 lis 2013 14:44

Tak jsem udělal co mi bylo raděno, ale pouze s tim Roguekillerem. Chvili po tom, se mi začala lehce trhat mozilla, tak jsem restnul PC, a najednou čumim, že to nemuže najit OS. Bo tam prej neni bootmgr

Ještě že normalni OS mam na SSD, a druhej založni system na tom druhym "kdyby něco".

Takže co teď s tim? Rád bych předchozí stav bez reinstallu, jelikož tohle je fakt jen takovej nouzovej OS, kde totálně nic nemám, píšu dokonce z IE.

EDIT: Tak jsem připojil zpátky SSD a samo se to chytlo z5. Takže vyřešeno *wheeeew*
Naposledy upravil(a) Blood dne 26 lis 2013 15:04, celkem upraveno 1 x.
I'm still in love with .. Phenom II 955BE

Blood
Level 1
Level 1
Příspěvky: 81
Registrován: říjen 12
Pohlaví: Nespecifikováno
Stav:
Offline

Re: kontrola HJT logu - odesilani aut. požadavku do sitě

Příspěvekod Blood » 26 lis 2013 15:02

RogueKiller V8.7.9 _x64_ [Nov 25 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.adlice.com/forum/
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://tigzyrk.blogspot.com/

Operační systém : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Spuštěno v : Normální režim
Uživatel : Dostal [Práva správce]
Mód : Odebrat -- Datum : 11/26/2013 14:20:13
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 8 ¤¤¤
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> VYMAZÁNO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> VYMAZÁNO
[HJ POL][PUM] HKLM\[...]\System : ConsentPromptBehaviorAdmin (0) -> NAHRAZENO (2)
[HJ POL][PUM] HKLM\[...]\System : EnableLUA (0) -> NAHRAZENO (1)
[HJ POL][PUM] HKLM\[...]\Wow6432Node\[...]\System : ConsentPromptBehaviorAdmin (0) -> NAHRAZENO (2)
[HJ POL][PUM] HKLM\[...]\Wow6432Node\[...]\System : EnableLUA (0) -> NAHRAZENO (1)
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)

¤¤¤ naplánované úlohy : 0 ¤¤¤

¤¤¤ spuštění položky : 0 ¤¤¤

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NENAHRÁNO 0x0] ¤¤¤

¤¤¤ Externí včelstvo: ¤¤¤
-> C:\windows\system32\config\SYSTEM | DRVINFO [Drv - C:] | SYSTEMINFO [Sys - C:] [Sys32 - FOUND] | USERINFO [Startup - NOT_FOUND]
-> C:\windows\system32\config\SOFTWARE | DRVINFO [Drv - C:] | SYSTEMINFO [Sys - C:] [Sys32 - FOUND] | USERINFO [Startup - NOT_FOUND]
-> C:\windows\system32\config\SECURITY | DRVINFO [Drv - C:] | SYSTEMINFO [Sys - C:] [Sys32 - FOUND] | USERINFO [Startup - NOT_FOUND]
-> C:\windows\system32\config\SAM | DRVINFO [Drv - C:] | SYSTEMINFO [Sys - C:] [Sys32 - FOUND] | USERINFO [Startup - NOT_FOUND]
-> C:\windows\system32\config\DEFAULT | DRVINFO [Drv - C:] | SYSTEMINFO [Sys - C:] [Sys32 - FOUND] | USERINFO [Startup - NOT_FOUND]

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts




¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) ST3500418AS ATA Device +++++
--- User ---
[MBR] c409f68e1b3670b719cf1e8d7f1f3af6
[BSP] 38f487e8d481bd160ebe7e4128f69f95 : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 63 | Size: 379963 Mo
User = LL1 ... OK!
User = LL2 ... OK!

+++++ PhysicalDrive1: (\\.\PHYSICALDRIVE1 @ IDE) KINGSTON SVP200S360G ATA Device +++++
--- User ---
[MBR] 862c3e604a981e8c479c91e2bde2814b
[BSP] 32070d1d443c2638fa3ad0f26c5899c2 : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 57239 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[0]_D_11262013_142013.txt >>
RKreport[0]_S_11252013_184031.txt;RKreport[0]_S_11252013_184143.txt;RKreport[0]_S_11262013_141950.txt

____________________________________________________________________________________________
I'm still in love with .. Phenom II 955BE

Blood
Level 1
Level 1
Příspěvky: 81
Registrován: říjen 12
Pohlaví: Nespecifikováno
Stav:
Offline

Re: kontrola HJT logu - odesilani aut. požadavku do sitě

Příspěvekod Blood » 26 lis 2013 15:14

15:09:50.0240 5304 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
15:09:57.0440 5304 ============================================================
15:09:57.0440 5304 Current date / time: 2013/11/26 15:09:57.0440
15:09:57.0440 5304 SystemInfo:
15:09:57.0440 5304
15:09:57.0440 5304 OS Version: 6.1.7601 ServicePack: 1.0
15:09:57.0440 5304 Product type: Workstation
15:09:57.0440 5304 ComputerName: DOSTAL-PC
15:09:57.0440 5304 UserName: Dostal
15:09:57.0440 5304 Windows directory: S:\Windows
15:09:57.0440 5304 System windows directory: S:\Windows
15:09:57.0440 5304 Running under WOW64
15:09:57.0440 5304 Processor architecture: Intel x64
15:09:57.0440 5304 Number of processors: 4
15:09:57.0440 5304 Page size: 0x1000
15:09:57.0440 5304 Boot type: Normal boot
15:09:57.0440 5304 ============================================================
15:09:57.0670 5304 Drive \Device\Harddisk1\DR1 - Size: 0xDF99E6000 (55.90 Gb), SectorSize: 0x200, Cylinders: 0x1C81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
15:09:57.0670 5304 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
15:09:57.0670 5304 ============================================================
15:09:57.0670 5304 \Device\Harddisk1\DR1:
15:09:57.0670 5304 MBR partitions:
15:09:57.0670 5304 \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x6FCB800
15:09:57.0670 5304 \Device\Harddisk0\DR0:
15:09:57.0670 5304 MBR partitions:
15:09:57.0670 5304 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x2E61D89A
15:09:57.0670 5304 ============================================================
15:09:57.0690 5304 C: <-> \Device\Harddisk0\DR0\Partition1
15:09:57.0690 5304 S: <-> \Device\Harddisk1\DR1\Partition1
15:09:57.0690 5304 ============================================================
15:09:57.0690 5304 Initialize success
15:09:57.0690 5304 ============================================================
15:10:00.0640 1808 ============================================================
15:10:00.0640 1808 Scan started
15:10:00.0640 1808 Mode: Manual;
15:10:00.0640 1808 ============================================================
15:10:00.0740 1808 ================ Scan system memory ========================
15:10:00.0740 1808 Scan interrupted by user!
15:10:00.0740 1808 ================ Scan services =============================
15:10:00.0740 1808 Scan interrupted by user!
15:10:00.0740 1808 ================ Scan global ===============================
15:10:00.0740 1808 Scan interrupted by user!
15:10:00.0740 1808 ================ Scan MBR ==================================
15:10:00.0740 1808 Scan interrupted by user!
15:10:00.0740 1808 ================ Scan VBR ==================================
15:10:00.0740 1808 Scan interrupted by user!
15:10:00.0740 1808 ============================================================
15:10:00.0740 1808 Scan finished
15:10:00.0740 1808 ============================================================
15:10:00.0740 6080 Detected object count: 0
15:10:00.0740 6080 Actual detected object count: 0
15:10:02.0150 2940 ============================================================
15:10:02.0150 2940 Scan started
15:10:02.0150 2940 Mode: Manual;
15:10:02.0150 2940 ============================================================
15:10:02.0240 2940 ================ Scan system memory ========================
15:10:02.0240 2940 System memory - ok
15:10:02.0240 2940 ================ Scan services =============================
15:10:02.0270 2940 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci S:\Windows\system32\drivers\1394ohci.sys
15:10:02.0280 2940 1394ohci - ok
15:10:02.0360 2940 [ 656F06850D02BAED19F0E2E72B047CE2 ] ABBYY.Licensing.FineReader.Professional.11.0 C:\Program Files (x86)\Abbyy\NetworkLicenseServer.exe
15:10:02.0390 2940 ABBYY.Licensing.FineReader.Professional.11.0 - ok
15:10:02.0410 2940 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI S:\Windows\system32\drivers\ACPI.sys
15:10:02.0410 2940 ACPI - ok
15:10:02.0420 2940 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi S:\Windows\system32\drivers\acpipmi.sys
15:10:02.0430 2940 AcpiPmi - ok
15:10:02.0440 2940 [ ADDA5E1951B90D3D23C56D3CF0622ADC ] AdobeARMservice S:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
15:10:02.0440 2940 AdobeARMservice - ok
15:10:02.0480 2940 [ A283108E14F3970432C21AF4C0CB1BCE ] AdobeFlashPlayerUpdateSvc S:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
15:10:02.0490 2940 AdobeFlashPlayerUpdateSvc - ok
15:10:02.0510 2940 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx S:\Windows\system32\DRIVERS\adp94xx.sys
15:10:02.0520 2940 adp94xx - ok
15:10:02.0530 2940 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci S:\Windows\system32\DRIVERS\adpahci.sys
15:10:02.0530 2940 adpahci - ok
15:10:02.0540 2940 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 S:\Windows\system32\DRIVERS\adpu320.sys
15:10:02.0540 2940 adpu320 - ok
15:10:02.0550 2940 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc S:\Windows\System32\aelupsvc.dll
15:10:02.0550 2940 AeLookupSvc - ok
15:10:02.0560 2940 [ 79059559E89D06E8B80CE2944BE20228 ] AFD S:\Windows\system32\drivers\afd.sys
15:10:02.0560 2940 AFD - ok
15:10:02.0570 2940 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 S:\Windows\system32\drivers\agp440.sys
15:10:02.0570 2940 agp440 - ok
15:10:02.0580 2940 [ 3290D6946B5E30E70414990574883DDB ] ALG S:\Windows\System32\alg.exe
15:10:02.0580 2940 ALG - ok
15:10:02.0580 2940 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide S:\Windows\system32\drivers\aliide.sys
15:10:02.0580 2940 aliide - ok
15:10:02.0590 2940 [ 0A098B01D485E6978C596420C5179E98 ] AMD External Events Utility S:\Windows\system32\atiesrxx.exe
15:10:02.0590 2940 AMD External Events Utility - ok
15:10:02.0600 2940 AMD FUEL Service - ok
15:10:02.0600 2940 [ 1FF8B4431C353CE385C875F194924C0C ] amdide S:\Windows\system32\drivers\amdide.sys
15:10:02.0600 2940 amdide - ok
15:10:02.0600 2940 [ 6A2EEB0C4133B20773BB3DD0B7B377B4 ] amdiox64 S:\Windows\system32\DRIVERS\amdiox64.sys
15:10:02.0610 2940 amdiox64 - ok
15:10:02.0610 2940 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 S:\Windows\system32\DRIVERS\amdk8.sys
15:10:02.0610 2940 AmdK8 - ok
15:10:02.0770 2940 [ B13F0B5859EA6CE01C1DD847E7E50C39 ] amdkmdag S:\Windows\system32\DRIVERS\atikmdag.sys
15:10:02.0900 2940 amdkmdag - ok
15:10:02.0910 2940 [ 48C7EFC581E0E37DD967A5BCC0AB33EF ] amdkmdap S:\Windows\system32\DRIVERS\atikmpag.sys
15:10:02.0920 2940 amdkmdap - ok
15:10:02.0920 2940 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM S:\Windows\system32\DRIVERS\amdppm.sys
15:10:02.0920 2940 AmdPPM - ok
15:10:02.0920 2940 [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata S:\Windows\system32\drivers\amdsata.sys
15:10:02.0930 2940 amdsata - ok
15:10:02.0930 2940 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs S:\Windows\system32\DRIVERS\amdsbs.sys
15:10:02.0930 2940 amdsbs - ok
15:10:02.0940 2940 [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata S:\Windows\system32\drivers\amdxata.sys
15:10:02.0940 2940 amdxata - ok
15:10:02.0940 2940 [ 5B25D1A753CC3A3EDB909BB759AC1098 ] AODDriver4.1 S:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys
15:10:02.0940 2940 AODDriver4.1 - ok
15:10:02.0940 2940 [ 89A69C3F2F319B43379399547526D952 ] AppID S:\Windows\system32\drivers\appid.sys
15:10:02.0950 2940 AppID - ok
15:10:02.0950 2940 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc S:\Windows\System32\appidsvc.dll
15:10:02.0950 2940 AppIDSvc - ok
15:10:02.0950 2940 [ 9D2A2369AB4B08A4905FE72DB104498F ] Appinfo S:\Windows\System32\appinfo.dll
15:10:02.0950 2940 Appinfo - ok
15:10:02.0960 2940 [ 4ABA3E75A76195A3E38ED2766C962899 ] AppMgmt S:\Windows\System32\appmgmts.dll
15:10:02.0960 2940 AppMgmt - ok
15:10:02.0970 2940 [ C484F8CEB1717C540242531DB7845C4E ] arc S:\Windows\system32\DRIVERS\arc.sys
15:10:02.0970 2940 arc - ok
15:10:02.0970 2940 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas S:\Windows\system32\DRIVERS\arcsas.sys
15:10:02.0970 2940 arcsas - ok
15:10:02.0980 2940 [ 108FB6DDB69E537A2EA53F425363FAE5 ] aspnet_state S:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
15:10:02.0990 2940 aspnet_state - ok
15:10:02.0990 2940 [ 1EC6777695564CA7EB3ADB36C78322E5 ] aswFsBlk S:\Windows\system32\drivers\aswFsBlk.sys
15:10:02.0990 2940 aswFsBlk - ok
15:10:02.0990 2940 [ FAF7B0B0C44A2FBD6FBC54E3E0F38545 ] aswMonFlt S:\Windows\system32\drivers\aswMonFlt.sys
15:10:02.0990 2940 aswMonFlt - ok
15:10:03.0000 2940 [ 679712B7A353EE665B9301592164A172 ] aswRdr S:\Windows\system32\drivers\aswRdr2.sys
15:10:03.0000 2940 aswRdr - ok
15:10:03.0000 2940 [ C04F7B373881009D7994D9BF55D24AB4 ] aswRvrt S:\Windows\system32\drivers\aswRvrt.sys
15:10:03.0000 2940 aswRvrt - ok
15:10:03.0020 2940 [ 3E07C93A2CB67840E4CD56C00959A402 ] aswSnx S:\Windows\system32\drivers\aswSnx.sys
15:10:03.0020 2940 aswSnx - ok
15:10:03.0030 2940 [ 79ADA401A6E2054F110E7FBDFAC71942 ] aswSP S:\Windows\system32\drivers\aswSP.sys
15:10:03.0030 2940 aswSP - ok
15:10:03.0030 2940 [ 81C42096CE90B45C03DCFF017A8A49C7 ] aswTdi S:\Windows\system32\drivers\aswTdi.sys
15:10:03.0030 2940 aswTdi - ok
15:10:03.0040 2940 [ 59787B95DD9CA44CB139D96863438587 ] aswVmm S:\Windows\system32\drivers\aswVmm.sys
15:10:03.0040 2940 aswVmm - ok
15:10:03.0040 2940 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac S:\Windows\system32\DRIVERS\asyncmac.sys
15:10:03.0040 2940 AsyncMac - ok
15:10:03.0050 2940 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi S:\Windows\system32\drivers\atapi.sys
15:10:03.0050 2940 atapi - ok
15:10:03.0050 2940 [ B0790FF0E25B7A2674296052F2162C1A ] AtiHDAudioService S:\Windows\system32\drivers\AtihdW76.sys
15:10:03.0050 2940 AtiHDAudioService - ok
15:10:03.0200 2940 [ B13F0B5859EA6CE01C1DD847E7E50C39 ] atikmdag S:\Windows\system32\DRIVERS\atikmdag.sys
15:10:03.0250 2940 atikmdag - ok
15:10:03.0260 2940 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder S:\Windows\System32\Audiosrv.dll
15:10:03.0280 2940 AudioEndpointBuilder - ok
15:10:03.0290 2940 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv S:\Windows\System32\Audiosrv.dll
15:10:03.0290 2940 AudioSrv - ok
15:10:03.0300 2940 [ 7A189530FD0CFD415DBE41123F8A6A59 ] avast! Antivirus S:\Program Files\AVAST Software\Avast\AvastSvc.exe
15:10:03.0300 2940 avast! Antivirus - ok
15:10:03.0300 2940 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV S:\Windows\System32\AxInstSV.dll
15:10:03.0310 2940 AxInstSV - ok
15:10:03.0310 2940 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv S:\Windows\system32\DRIVERS\bxvbda.sys
15:10:03.0320 2940 b06bdrv - ok
15:10:03.0320 2940 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a S:\Windows\system32\DRIVERS\b57nd60a.sys
15:10:03.0330 2940 b57nd60a - ok
15:10:03.0330 2940 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC S:\Windows\System32\bdesvc.dll
15:10:03.0330 2940 BDESVC - ok
15:10:03.0340 2940 [ 16A47CE2DECC9B099349A5F840654746 ] Beep S:\Windows\system32\drivers\Beep.sys
15:10:03.0340 2940 Beep - ok
15:10:03.0350 2940 [ 82974D6A2FD19445CC5171FC378668A4 ] BFE S:\Windows\System32\bfe.dll
15:10:03.0360 2940 BFE - ok
15:10:03.0380 2940 [ 1EA7969E3271CBC59E1730697DC74682 ] BITS S:\Windows\System32\qmgr.dll
15:10:03.0390 2940 BITS - ok
15:10:03.0390 2940 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive S:\Windows\system32\DRIVERS\blbdrive.sys
15:10:03.0390 2940 blbdrive - ok
15:10:03.0400 2940 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser S:\Windows\system32\DRIVERS\bowser.sys
15:10:03.0400 2940 bowser - ok
15:10:03.0400 2940 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo S:\Windows\system32\DRIVERS\BrFiltLo.sys
15:10:03.0400 2940 BrFiltLo - ok
15:10:03.0410 2940 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp S:\Windows\system32\DRIVERS\BrFiltUp.sys
15:10:03.0410 2940 BrFiltUp - ok
15:10:03.0410 2940 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser S:\Windows\System32\browser.dll
15:10:03.0410 2940 Browser - ok
15:10:03.0420 2940 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid S:\Windows\System32\Drivers\Brserid.sys
15:10:03.0420 2940 Brserid - ok
15:10:03.0420 2940 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm S:\Windows\System32\Drivers\BrSerWdm.sys
15:10:03.0430 2940 BrSerWdm - ok
15:10:03.0430 2940 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm S:\Windows\System32\Drivers\BrUsbMdm.sys
15:10:03.0430 2940 BrUsbMdm - ok
15:10:03.0430 2940 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer S:\Windows\System32\Drivers\BrUsbSer.sys
15:10:03.0430 2940 BrUsbSer - ok
15:10:03.0440 2940 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM S:\Windows\system32\DRIVERS\bthmodem.sys
15:10:03.0440 2940 BTHMODEM - ok
15:10:03.0440 2940 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv S:\Windows\system32\bthserv.dll
15:10:03.0450 2940 bthserv - ok
15:10:03.0450 2940 [ B8BD2BB284668C84865658C77574381A ] cdfs S:\Windows\system32\DRIVERS\cdfs.sys
15:10:03.0450 2940 cdfs - ok
15:10:03.0450 2940 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom S:\Windows\system32\DRIVERS\cdrom.sys
15:10:03.0460 2940 cdrom - ok
15:10:03.0460 2940 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc S:\Windows\System32\certprop.dll
15:10:03.0460 2940 CertPropSvc - ok
15:10:03.0470 2940 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass S:\Windows\system32\DRIVERS\circlass.sys
15:10:03.0470 2940 circlass - ok
15:10:03.0480 2940 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS S:\Windows\system32\CLFS.sys
15:10:03.0480 2940 CLFS - ok
15:10:03.0490 2940 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 S:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
15:10:03.0490 2940 clr_optimization_v2.0.50727_32 - ok
15:10:03.0500 2940 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 S:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
15:10:03.0500 2940 clr_optimization_v2.0.50727_64 - ok
15:10:03.0510 2940 [ 6D7C8A951AF6AD6835C029B3CB88D333 ] clr_optimization_v4.0.30319_32 S:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
15:10:03.0510 2940 clr_optimization_v4.0.30319_32 - ok
15:10:03.0510 2940 [ 86329C35FF23CFEF0FB6C0023BA06BCE ] clr_optimization_v4.0.30319_64 S:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
15:10:03.0520 2940 clr_optimization_v4.0.30319_64 - ok
15:10:03.0520 2940 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt S:\Windows\system32\DRIVERS\CmBatt.sys
15:10:03.0520 2940 CmBatt - ok
15:10:03.0520 2940 [ E19D3F095812725D88F9001985B94EDD ] cmdide S:\Windows\system32\drivers\cmdide.sys
15:10:03.0520 2940 cmdide - ok
15:10:03.0530 2940 [ EBF28856F69CF094A902F884CF989706 ] CNG S:\Windows\system32\Drivers\cng.sys
15:10:03.0540 2940 CNG - ok
15:10:03.0540 2940 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt S:\Windows\system32\DRIVERS\compbatt.sys
15:10:03.0540 2940 Compbatt - ok
15:10:03.0540 2940 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus S:\Windows\system32\drivers\CompositeBus.sys
15:10:03.0540 2940 CompositeBus - ok
15:10:03.0550 2940 COMSysApp - ok
15:10:03.0550 2940 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk S:\Windows\system32\DRIVERS\crcdisk.sys
15:10:03.0550 2940 crcdisk - ok
15:10:03.0560 2940 [ 6B400F211BEE880A37A1ED0368776BF4 ] CryptSvc S:\Windows\system32\cryptsvc.dll
15:10:03.0560 2940 CryptSvc - ok
15:10:03.0570 2940 [ 54DA3DFD29ED9F1619B6F53F3CE55E49 ] CSC S:\Windows\system32\drivers\csc.sys
15:10:03.0580 2940 CSC - ok
15:10:03.0590 2940 [ 3AB183AB4D2C79DCF459CD2C1266B043 ] CscService S:\Windows\System32\cscsvc.dll
15:10:03.0600 2940 CscService - ok
15:10:03.0610 2940 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch S:\Windows\system32\rpcss.dll
15:10:03.0620 2940 DcomLaunch - ok
15:10:03.0620 2940 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc S:\Windows\System32\defragsvc.dll
15:10:03.0630 2940 defragsvc - ok
15:10:03.0630 2940 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC S:\Windows\system32\Drivers\dfsc.sys
15:10:03.0630 2940 DfsC - ok
15:10:03.0640 2940 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp S:\Windows\system32\dhcpcore.dll
15:10:03.0640 2940 Dhcp - ok
15:10:03.0650 2940 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache S:\Windows\system32\drivers\discache.sys
15:10:03.0650 2940 discache - ok
15:10:03.0650 2940 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk S:\Windows\system32\DRIVERS\disk.sys
15:10:03.0650 2940 Disk - ok
15:10:03.0660 2940 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache S:\Windows\System32\dnsrslvr.dll
15:10:03.0660 2940 Dnscache - ok
15:10:03.0670 2940 [ FA122BC1451B1B35B7814FBE1ACF1924 ] Dokan S:\Windows\system32\drivers\dokan.sys
15:10:03.0670 2940 Dokan - ok
15:10:03.0670 2940 [ 8C856E531A1170F53AC6844E89CD0B5F ] DokanMounter S:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe
15:10:03.0670 2940 DokanMounter - ok
15:10:03.0680 2940 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc S:\Windows\System32\dot3svc.dll
15:10:03.0680 2940 dot3svc - ok
15:10:03.0680 2940 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS S:\Windows\system32\dps.dll
15:10:03.0690 2940 DPS - ok
15:10:03.0690 2940 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud S:\Windows\system32\drivers\drmkaud.sys
15:10:03.0690 2940 drmkaud - ok
15:10:03.0690 2940 [ 46571ED73AE84469DCA53081D33CF3C8 ] dtsoftbus01 S:\Windows\system32\DRIVERS\dtsoftbus01.sys
15:10:03.0700 2940 dtsoftbus01 - ok
15:10:03.0710 2940 [ 88612F1CE3BF42256913BF6E61C70D52 ] DXGKrnl S:\Windows\System32\drivers\dxgkrnl.sys
15:10:03.0710 2940 DXGKrnl - ok
15:10:03.0720 2940 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost S:\Windows\System32\eapsvc.dll
15:10:03.0720 2940 EapHost - ok
15:10:03.0750 2940 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv S:\Windows\system32\DRIVERS\evbda.sys
15:10:03.0780 2940 ebdrv - ok
15:10:03.0790 2940 [ 4D71227301DD8D09097B9E4CC6527E5A ] EFS S:\Windows\System32\lsass.exe
15:10:03.0790 2940 EFS - ok
15:10:03.0800 2940 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr S:\Windows\ehome\ehRecvr.exe
15:10:03.0820 2940 ehRecvr - ok
15:10:03.0820 2940 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched S:\Windows\ehome\ehsched.exe
15:10:03.0820 2940 ehSched - ok
15:10:03.0830 2940 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor S:\Windows\system32\DRIVERS\elxstor.sys
15:10:03.0830 2940 elxstor - ok
15:10:03.0840 2940 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev S:\Windows\system32\drivers\errdev.sys
15:10:03.0840 2940 ErrDev - ok
15:10:03.0850 2940 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem S:\Windows\system32\es.dll
15:10:03.0860 2940 EventSystem - ok
15:10:03.0860 2940 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat S:\Windows\system32\drivers\exfat.sys
15:10:03.0860 2940 exfat - ok
15:10:03.0870 2940 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat S:\Windows\system32\drivers\fastfat.sys
15:10:03.0870 2940 fastfat - ok
15:10:03.0880 2940 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax S:\Windows\system32\fxssvc.exe
15:10:03.0890 2940 Fax - ok
15:10:03.0890 2940 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc S:\Windows\system32\DRIVERS\fdc.sys
15:10:03.0890 2940 fdc - ok
15:10:03.0890 2940 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost S:\Windows\system32\fdPHost.dll
15:10:03.0900 2940 fdPHost - ok
15:10:03.0900 2940 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub S:\Windows\system32\fdrespub.dll
15:10:03.0900 2940 FDResPub - ok
15:10:03.0900 2940 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo S:\Windows\system32\drivers\fileinfo.sys
15:10:03.0910 2940 FileInfo - ok
15:10:03.0910 2940 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace S:\Windows\system32\drivers\filetrace.sys
15:10:03.0910 2940 Filetrace - ok
15:10:03.0910 2940 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk S:\Windows\system32\DRIVERS\flpydisk.sys
15:10:03.0910 2940 flpydisk - ok
15:10:03.0920 2940 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr S:\Windows\system32\drivers\fltmgr.sys
15:10:03.0920 2940 FltMgr - ok
15:10:03.0940 2940 [ C4C183E6551084039EC862DA1C945E3D ] FontCache S:\Windows\system32\FntCache.dll
15:10:03.0960 2940 FontCache - ok
15:10:03.0960 2940 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 S:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
15:10:03.0960 2940 FontCache3.0.0.0 - ok
15:10:03.0960 2940 [ D43703496149971890703B4B1B723EAC ] FsDepends S:\Windows\system32\drivers\FsDepends.sys
15:10:03.0960 2940 FsDepends - ok
15:10:03.0970 2940 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec S:\Windows\system32\drivers\Fs_Rec.sys
15:10:03.0970 2940 Fs_Rec - ok
15:10:03.0970 2940 [ 1F7B25B858FA27015169FE95E54108ED ] fvevol S:\Windows\system32\DRIVERS\fvevol.sys
15:10:03.0980 2940 fvevol - ok
15:10:03.0980 2940 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx S:\Windows\system32\DRIVERS\gagp30kx.sys
15:10:03.0980 2940 gagp30kx - ok
15:10:04.0000 2940 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc S:\Windows\System32\gpsvc.dll
15:10:04.0010 2940 gpsvc - ok
15:10:04.0020 2940 [ F02A533F517EB38333CB12A9E8963773 ] gupdate S:\Program Files (x86)\Google\Update\GoogleUpdate.exe
15:10:04.0020 2940 gupdate - ok
15:10:04.0020 2940 [ F02A533F517EB38333CB12A9E8963773 ] gupdatem S:\Program Files (x86)\Google\Update\GoogleUpdate.exe
15:10:04.0020 2940 gupdatem - ok
15:10:04.0020 2940 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir S:\Windows\system32\drivers\hcw85cir.sys
15:10:04.0030 2940 hcw85cir - ok
15:10:04.0030 2940 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService S:\Windows\system32\drivers\HdAudio.sys
15:10:04.0040 2940 HdAudAddService - ok
15:10:04.0050 2940 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus S:\Windows\system32\drivers\HDAudBus.sys
15:10:04.0050 2940 HDAudBus - ok
15:10:04.0050 2940 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt S:\Windows\system32\DRIVERS\HidBatt.sys
15:10:04.0050 2940 HidBatt - ok
15:10:04.0050 2940 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth S:\Windows\system32\DRIVERS\hidbth.sys
15:10:04.0060 2940 HidBth - ok
15:10:04.0060 2940 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr S:\Windows\system32\DRIVERS\hidir.sys
15:10:04.0060 2940 HidIr - ok
15:10:04.0060 2940 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv S:\Windows\system32\hidserv.dll
15:10:04.0070 2940 hidserv - ok
15:10:04.0070 2940 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb S:\Windows\system32\DRIVERS\hidusb.sys
15:10:04.0070 2940 HidUsb - ok
15:10:04.0070 2940 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc S:\Windows\system32\kmsvc.dll
15:10:04.0080 2940 hkmsvc - ok
15:10:04.0080 2940 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener S:\Windows\system32\ListSvc.dll
15:10:04.0090 2940 HomeGroupListener - ok
15:10:04.0090 2940 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider S:\Windows\system32\provsvc.dll
15:10:04.0100 2940 HomeGroupProvider - ok
15:10:04.0100 2940 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD S:\Windows\system32\drivers\HpSAMD.sys
15:10:04.0100 2940 HpSAMD - ok
15:10:04.0120 2940 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP S:\Windows\system32\drivers\HTTP.sys
15:10:04.0130 2940 HTTP - ok
15:10:04.0130 2940 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy S:\Windows\system32\drivers\hwpolicy.sys
15:10:04.0130 2940 hwpolicy - ok
15:10:04.0140 2940 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt S:\Windows\system32\drivers\i8042prt.sys
15:10:04.0140 2940 i8042prt - ok
15:10:04.0140 2940 [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV S:\Windows\system32\drivers\iaStorV.sys
15:10:04.0150 2940 iaStorV - ok
15:10:04.0170 2940 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc S:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
15:10:04.0180 2940 idsvc - ok
15:10:04.0180 2940 IEEtwCollectorService - ok
15:10:04.0190 2940 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp S:\Windows\system32\DRIVERS\iirsp.sys
15:10:04.0190 2940 iirsp - ok
15:10:04.0200 2940 [ 344789398EC3EE5A4E00C52B31847946 ] IKEEXT S:\Windows\System32\ikeext.dll
15:10:04.0210 2940 IKEEXT - ok
15:10:04.0210 2940 [ F00F20E70C6EC3AA366910083A0518AA ] intelide S:\Windows\system32\drivers\intelide.sys
15:10:04.0210 2940 intelide - ok
15:10:04.0220 2940 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm S:\Windows\system32\DRIVERS\intelppm.sys
15:10:04.0220 2940 intelppm - ok
15:10:04.0220 2940 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum S:\Windows\system32\ipbusenum.dll
15:10:04.0230 2940 IPBusEnum - ok
15:10:04.0230 2940 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver S:\Windows\system32\DRIVERS\ipfltdrv.sys
15:10:04.0230 2940 IpFilterDriver - ok
15:10:04.0240 2940 [ A34A587FFFD45FA649FBA6D03784D257 ] iphlpsvc S:\Windows\System32\iphlpsvc.dll
15:10:04.0240 2940 iphlpsvc - ok
15:10:04.0250 2940 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV S:\Windows\system32\drivers\IPMIDrv.sys
15:10:04.0250 2940 IPMIDRV - ok
15:10:04.0250 2940 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT S:\Windows\system32\drivers\ipnat.sys
15:10:04.0250 2940 IPNAT - ok
15:10:04.0260 2940 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM S:\Windows\system32\drivers\irenum.sys
15:10:04.0260 2940 IRENUM - ok
15:10:04.0260 2940 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp S:\Windows\system32\drivers\isapnp.sys
15:10:04.0260 2940 isapnp - ok
15:10:04.0270 2940 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt S:\Windows\system32\drivers\msiscsi.sys
15:10:04.0270 2940 iScsiPrt - ok
15:10:04.0270 2940 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass S:\Windows\system32\DRIVERS\kbdclass.sys
15:10:04.0270 2940 kbdclass - ok
15:10:04.0280 2940 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid S:\Windows\system32\DRIVERS\kbdhid.sys
15:10:04.0280 2940 kbdhid - ok
15:10:04.0280 2940 [ 4D71227301DD8D09097B9E4CC6527E5A ] KeyIso S:\Windows\system32\lsass.exe
15:10:04.0280 2940 KeyIso - ok
15:10:04.0290 2940 [ 8F489706472F7E9A06BAAA198703FA64 ] KSecDD S:\Windows\system32\Drivers\ksecdd.sys
15:10:04.0290 2940 KSecDD - ok
15:10:04.0290 2940 [ 868A2CAAB12EFC7A021682BCA0EEC54C ] KSecPkg S:\Windows\system32\Drivers\ksecpkg.sys
15:10:04.0290 2940 KSecPkg - ok
15:10:04.0300 2940 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk S:\Windows\system32\drivers\ksthunk.sys
15:10:04.0300 2940 ksthunk - ok
15:10:04.0300 2940 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm S:\Windows\system32\msdtckrm.dll
15:10:04.0310 2940 KtmRm - ok
15:10:04.0310 2940 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer S:\Windows\system32\srvsvc.dll
15:10:04.0320 2940 LanmanServer - ok
15:10:04.0320 2940 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation S:\Windows\System32\wkssvc.dll
15:10:04.0320 2940 LanmanWorkstation - ok
15:10:04.0360 2940 [ 20CDB07017497C94A0BAD253C4BAFCBC ] LkCitadelServer S:\Windows\SysWOW64\lkcitdl.exe
15:10:04.0360 2940 LkCitadelServer - ok
15:10:04.0360 2940 [ 7CBF0476029371402D14CD776612EE6A ] lkClassAds S:\Windows\SysWOW64\lkads.exe
15:10:04.0370 2940 lkClassAds - ok
15:10:04.0370 2940 [ B9BA33801B5F9B79F0949AF206F96177 ] lkTimeSync S:\Windows\SysWOW64\lktsrv.exe
15:10:04.0370 2940 lkTimeSync - ok
15:10:04.0370 2940 [ 1538831CF8AD2979A04C423779465827 ] lltdio S:\Windows\system32\DRIVERS\lltdio.sys
15:10:04.0370 2940 lltdio - ok
15:10:04.0380 2940 [ C1185803384AB3FEED115F79F109427F ] lltdsvc S:\Windows\System32\lltdsvc.dll
15:10:04.0380 2940 lltdsvc - ok
15:10:04.0390 2940 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts S:\Windows\System32\lmhsvc.dll
15:10:04.0390 2940 lmhosts - ok
15:10:04.0400 2940 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC S:\Windows\system32\DRIVERS\lsi_fc.sys
15:10:04.0400 2940 LSI_FC - ok
15:10:04.0400 2940 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS S:\Windows\system32\DRIVERS\lsi_sas.sys
15:10:04.0400 2940 LSI_SAS - ok
15:10:04.0410 2940 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 S:\Windows\system32\DRIVERS\lsi_sas2.sys
15:10:04.0410 2940 LSI_SAS2 - ok
15:10:04.0410 2940 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI S:\Windows\system32\DRIVERS\lsi_scsi.sys
15:10:04.0410 2940 LSI_SCSI - ok
15:10:04.0420 2940 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv S:\Windows\system32\drivers\luafv.sys
15:10:04.0420 2940 luafv - ok
15:10:04.0420 2940 [ 0BB97D43299910CBFBA59C461B99B910 ] MBAMProtector S:\Windows\system32\drivers\mbam.sys
15:10:04.0420 2940 MBAMProtector - ok
15:10:04.0450 2940 [ 65085456FD9A74D7F1A999520C299ECB ] MBAMScheduler C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
15:10:04.0460 2940 MBAMScheduler - ok
15:10:04.0490 2940 [ E0D7732F2D2E24B2DB3F67B6750295B8 ] MBAMService C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
15:10:04.0500 2940 MBAMService - ok
15:10:04.0510 2940 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc S:\Windows\system32\Mcx2Svc.dll
15:10:04.0510 2940 Mcx2Svc - ok
15:10:04.0520 2940 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas S:\Windows\system32\DRIVERS\megasas.sys
15:10:04.0520 2940 megasas - ok
15:10:04.0520 2940 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR S:\Windows\system32\DRIVERS\MegaSR.sys
15:10:04.0530 2940 MegaSR - ok
15:10:04.0530 2940 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS S:\Windows\system32\mmcss.dll
15:10:04.0540 2940 MMCSS - ok
15:10:04.0540 2940 [ 800BA92F7010378B09F9ED9270F07137 ] Modem S:\Windows\system32\drivers\modem.sys
15:10:04.0540 2940 Modem - ok
15:10:04.0540 2940 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor S:\Windows\system32\DRIVERS\monitor.sys
15:10:04.0540 2940 monitor - ok
15:10:04.0550 2940 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass S:\Windows\system32\DRIVERS\mouclass.sys
15:10:04.0550 2940 mouclass - ok
15:10:04.0550 2940 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid S:\Windows\system32\DRIVERS\mouhid.sys
15:10:04.0550 2940 mouhid - ok
15:10:04.0550 2940 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr S:\Windows\system32\drivers\mountmgr.sys
15:10:04.0560 2940 mountmgr - ok
15:10:04.0560 2940 [ 5E0686615A80A6279B2314E13CD23F6E ] MozillaMaintenance S:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
15:10:04.0560 2940 MozillaMaintenance - ok
15:10:04.0570 2940 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio S:\Windows\system32\drivers\mpio.sys
15:10:04.0570 2940 mpio - ok
15:10:04.0570 2940 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv S:\Windows\system32\drivers\mpsdrv.sys
15:10:04.0570 2940 mpsdrv - ok
15:10:04.0580 2940 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc S:\Windows\system32\mpssvc.dll
15:10:04.0590 2940 MpsSvc - ok
15:10:04.0600 2940 [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV S:\Windows\system32\drivers\mrxdav.sys
15:10:04.0600 2940 MRxDAV - ok
I'm still in love with .. Phenom II 955BE

Blood
Level 1
Level 1
Příspěvky: 81
Registrován: říjen 12
Pohlaví: Nespecifikováno
Stav:
Offline

Re: kontrola HJT logu - odesilani aut. požadavku do sitě

Příspěvekod Blood » 26 lis 2013 15:15

15:10:04.0600 2940 [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb S:\Windows\system32\DRIVERS\mrxsmb.sys
15:10:04.0610 2940 mrxsmb - ok
15:10:04.0610 2940 [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10 S:\Windows\system32\DRIVERS\mrxsmb10.sys
15:10:04.0610 2940 mrxsmb10 - ok
15:10:04.0620 2940 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20 S:\Windows\system32\DRIVERS\mrxsmb20.sys
15:10:04.0620 2940 mrxsmb20 - ok
15:10:04.0620 2940 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci S:\Windows\system32\drivers\msahci.sys
15:10:04.0620 2940 msahci - ok
15:10:04.0630 2940 [ DB801A638D011B9633829EB6F663C900 ] msdsm S:\Windows\system32\drivers\msdsm.sys
15:10:04.0630 2940 msdsm - ok
15:10:04.0630 2940 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC S:\Windows\System32\msdtc.exe
15:10:04.0640 2940 MSDTC - ok
15:10:04.0640 2940 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs S:\Windows\system32\drivers\Msfs.sys
15:10:04.0640 2940 Msfs - ok
15:10:04.0650 2940 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf S:\Windows\System32\drivers\mshidkmdf.sys
15:10:04.0650 2940 mshidkmdf - ok
15:10:04.0650 2940 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv S:\Windows\system32\drivers\msisadrv.sys
15:10:04.0650 2940 msisadrv - ok
15:10:04.0650 2940 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI S:\Windows\system32\iscsiexe.dll
15:10:04.0660 2940 MSiSCSI - ok
15:10:04.0660 2940 msiserver - ok
15:10:04.0660 2940 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV S:\Windows\system32\drivers\MSKSSRV.sys
15:10:04.0660 2940 MSKSSRV - ok
15:10:04.0670 2940 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK S:\Windows\system32\drivers\MSPCLOCK.sys
15:10:04.0670 2940 MSPCLOCK - ok
15:10:04.0670 2940 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM S:\Windows\system32\drivers\MSPQM.sys
15:10:04.0670 2940 MSPQM - ok
15:10:04.0680 2940 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC S:\Windows\system32\drivers\MsRPC.sys
15:10:04.0680 2940 MsRPC - ok
15:10:04.0690 2940 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios S:\Windows\system32\drivers\mssmbios.sys
15:10:04.0690 2940 mssmbios - ok
15:10:04.0690 2940 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE S:\Windows\system32\drivers\MSTEE.sys
15:10:04.0690 2940 MSTEE - ok
15:10:04.0690 2940 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig S:\Windows\system32\DRIVERS\MTConfig.sys
15:10:04.0690 2940 MTConfig - ok
15:10:04.0700 2940 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup S:\Windows\system32\Drivers\mup.sys
15:10:04.0700 2940 Mup - ok
15:10:04.0710 2940 [ 582AC6D9873E31DFA28A4547270862DD ] napagent S:\Windows\system32\qagentRT.dll
15:10:04.0710 2940 napagent - ok
15:10:04.0720 2940 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP S:\Windows\system32\DRIVERS\nwifi.sys
15:10:04.0720 2940 NativeWifiP - ok
15:10:04.0740 2940 [ 79B47FD40D9A817E932F9D26FAC0A81C ] NDIS S:\Windows\system32\drivers\ndis.sys
15:10:04.0760 2940 NDIS - ok
15:10:04.0760 2940 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap S:\Windows\system32\DRIVERS\ndiscap.sys
15:10:04.0760 2940 NdisCap - ok
15:10:04.0770 2940 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi S:\Windows\system32\DRIVERS\ndistapi.sys
15:10:04.0770 2940 NdisTapi - ok
15:10:04.0770 2940 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio S:\Windows\system32\DRIVERS\ndisuio.sys
15:10:04.0770 2940 Ndisuio - ok
15:10:04.0780 2940 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan S:\Windows\system32\DRIVERS\ndiswan.sys
15:10:04.0780 2940 NdisWan - ok
15:10:04.0780 2940 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy S:\Windows\system32\drivers\NDProxy.sys
15:10:04.0780 2940 NDProxy - ok
15:10:04.0790 2940 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS S:\Windows\system32\DRIVERS\netbios.sys
15:10:04.0790 2940 NetBIOS - ok
15:10:04.0790 2940 [ 09594D1089C523423B32A4229263F068 ] NetBT S:\Windows\system32\DRIVERS\netbt.sys
15:10:04.0800 2940 NetBT - ok
15:10:04.0800 2940 [ 4D71227301DD8D09097B9E4CC6527E5A ] Netlogon S:\Windows\system32\lsass.exe
15:10:04.0800 2940 Netlogon - ok
15:10:04.0810 2940 [ 847D3AE376C0817161A14A82C8922A9E ] Netman S:\Windows\System32\netman.dll
15:10:04.0820 2940 Netman - ok
15:10:04.0820 2940 [ 5243CFC2E7161C91C2B355240035B9E4 ] NetMsmqActivator S:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
15:10:04.0830 2940 NetMsmqActivator - ok
15:10:04.0830 2940 [ 5243CFC2E7161C91C2B355240035B9E4 ] NetPipeActivator S:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
15:10:04.0830 2940 NetPipeActivator - ok
15:10:04.0840 2940 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm S:\Windows\System32\netprofm.dll
15:10:04.0850 2940 netprofm - ok
15:10:04.0860 2940 [ 5243CFC2E7161C91C2B355240035B9E4 ] NetTcpActivator S:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
15:10:04.0860 2940 NetTcpActivator - ok
15:10:04.0860 2940 [ 5243CFC2E7161C91C2B355240035B9E4 ] NetTcpPortSharing S:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
15:10:04.0860 2940 NetTcpPortSharing - ok
15:10:04.0860 2940 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 S:\Windows\system32\DRIVERS\nfrd960.sys
15:10:04.0870 2940 nfrd960 - ok
15:10:04.0940 2940 [ F0EA0AD4B1AFFEFE4AB34191D539509B ] NIApplicationWebServer C:\Program Files (x86)\multisim\Shared\NI WebServer\ApplicationWebServer.exe
15:10:04.0940 2940 NIApplicationWebServer - ok
15:10:04.0950 2940 [ E78AFBF3B76E805AED87C933A636BDA6 ] NIApplicationWebServer64 S:\Program Files\National Instruments\Shared\NI WebServer\ApplicationWebServer.exe
15:10:04.0950 2940 NIApplicationWebServer64 - ok
15:10:05.0000 2940 [ 3B712766DEA950ACA65789B460AA1899 ] NIDomainService C:\Program Files (x86)\multisim\Shared\Security\nidmsrv.exe
15:10:05.0000 2940 NIDomainService - ok
15:10:05.0080 2940 [ AA8896BCD689851665EFC02DC41181AC ] NILM License Manager C:\Program Files (x86)\multisim\Shared\License Manager\Bin\lmgrd.exe
15:10:05.0110 2940 NILM License Manager - ok
15:10:05.0150 2940 [ F59599F4C0B3259AC1355F34E6AC6342 ] nimDNSResponder C:\Program Files (x86)\multisim\Shared\mDNS Responder\nimdnsResponder.exe
15:10:05.0150 2940 nimDNSResponder - ok
15:10:05.0160 2940 NiSvcLoc - ok
15:10:05.0190 2940 [ FD919AC3746322662DC21CDB7B9ADC07 ] NISystemWebServer C:\Program Files (x86)\multisim\Shared\NI WebServer\SystemWebServer.exe
15:10:05.0190 2940 NISystemWebServer - ok
15:10:05.0200 2940 [ 1EE99A89CC788ADA662441D1E9830529 ] NlaSvc S:\Windows\System32\nlasvc.dll
15:10:05.0210 2940 NlaSvc - ok
15:10:05.0210 2940 [ 907B5E1E4A592E5EDC5E4CCBDE4863C2 ] nmwcd S:\Windows\system32\drivers\ccdcmbx64.sys
15:10:05.0210 2940 nmwcd - ok
15:10:05.0210 2940 [ 41C1AC1F3613435EB32D67BCB80A5FA5 ] nmwcdc S:\Windows\system32\drivers\ccdcmbox64.sys
15:10:05.0220 2940 nmwcdc - ok
15:10:05.0220 2940 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs S:\Windows\system32\drivers\Npfs.sys
15:10:05.0220 2940 Npfs - ok
15:10:05.0220 2940 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi S:\Windows\system32\nsisvc.dll
15:10:05.0230 2940 nsi - ok
15:10:05.0230 2940 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy S:\Windows\system32\drivers\nsiproxy.sys
15:10:05.0230 2940 nsiproxy - ok
15:10:05.0250 2940 [ B98F8C6E31CD07B2E6F71F7F648E38C0 ] Ntfs S:\Windows\system32\drivers\Ntfs.sys
15:10:05.0270 2940 Ntfs - ok
15:10:05.0270 2940 [ 9899284589F75FA8724FF3D16AED75C1 ] Null S:\Windows\system32\drivers\Null.sys
15:10:05.0270 2940 Null - ok
15:10:05.0270 2940 [ 0A92CB65770442ED0DC44834632F66AD ] nvraid S:\Windows\system32\drivers\nvraid.sys
15:10:05.0280 2940 nvraid - ok
15:10:05.0280 2940 [ DAB0E87525C10052BF65F06152F37E4A ] nvstor S:\Windows\system32\drivers\nvstor.sys
15:10:05.0280 2940 nvstor - ok
15:10:05.0290 2940 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp S:\Windows\system32\drivers\nv_agp.sys
15:10:05.0290 2940 nv_agp - ok
15:10:05.0290 2940 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 S:\Windows\system32\drivers\ohci1394.sys
15:10:05.0290 2940 ohci1394 - ok
15:10:05.0300 2940 [ 9D10F99A6712E28F8ACD5641E3A7EA6B ] ose S:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
15:10:05.0300 2940 ose - ok
15:10:05.0420 2940 [ 61BFFB5F57AD12F83AB64B7181829B34 ] osppsvc S:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
15:10:05.0510 2940 osppsvc - ok
15:10:05.0530 2940 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc S:\Windows\system32\pnrpsvc.dll
15:10:05.0540 2940 p2pimsvc - ok
15:10:05.0540 2940 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc S:\Windows\system32\p2psvc.dll
15:10:05.0550 2940 p2psvc - ok
15:10:05.0560 2940 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport S:\Windows\system32\DRIVERS\parport.sys
15:10:05.0560 2940 Parport - ok
15:10:05.0560 2940 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr S:\Windows\system32\drivers\partmgr.sys
15:10:05.0560 2940 partmgr - ok
15:10:05.0570 2940 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc S:\Windows\System32\pcasvc.dll
15:10:05.0570 2940 PcaSvc - ok
15:10:05.0580 2940 [ BC0018C2D29F655188A0ED3FA94FDB24 ] pccsmcfd S:\Windows\system32\DRIVERS\pccsmcfdx64.sys
15:10:05.0580 2940 pccsmcfd - ok
15:10:05.0580 2940 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci S:\Windows\system32\drivers\pci.sys
15:10:05.0580 2940 pci - ok
15:10:05.0590 2940 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide S:\Windows\system32\drivers\pciide.sys
15:10:05.0590 2940 pciide - ok
15:10:05.0590 2940 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia S:\Windows\system32\DRIVERS\pcmcia.sys
15:10:05.0600 2940 pcmcia - ok
15:10:05.0600 2940 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw S:\Windows\system32\drivers\pcw.sys
15:10:05.0600 2940 pcw - ok
15:10:05.0610 2940 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH S:\Windows\system32\drivers\peauth.sys
15:10:05.0610 2940 PEAUTH - ok
15:10:05.0630 2940 [ B9B0A4299DD2D76A4243F75FD54DC680 ] PeerDistSvc S:\Windows\system32\peerdistsvc.dll
15:10:05.0640 2940 PeerDistSvc - ok
15:10:05.0650 2940 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost S:\Windows\SysWow64\perfhost.exe
15:10:05.0650 2940 PerfHost - ok
15:10:05.0680 2940 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla S:\Windows\system32\pla.dll
15:10:05.0700 2940 pla - ok
15:10:05.0710 2940 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay S:\Windows\system32\umpnpmgr.dll
15:10:05.0720 2940 PlugPlay - ok
15:10:05.0720 2940 PnkBstrA - ok
15:10:05.0720 2940 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg S:\Windows\system32\pnrpauto.dll
15:10:05.0730 2940 PNRPAutoReg - ok
15:10:05.0730 2940 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc S:\Windows\system32\pnrpsvc.dll
15:10:05.0740 2940 PNRPsvc - ok
15:10:05.0750 2940 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent S:\Windows\System32\ipsecsvc.dll
15:10:05.0750 2940 PolicyAgent - ok
15:10:05.0760 2940 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power S:\Windows\system32\umpo.dll
15:10:05.0760 2940 Power - ok
15:10:05.0770 2940 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport S:\Windows\system32\DRIVERS\raspptp.sys
15:10:05.0770 2940 PptpMiniport - ok
15:10:05.0770 2940 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor S:\Windows\system32\DRIVERS\processr.sys
15:10:05.0770 2940 Processor - ok
15:10:05.0780 2940 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc S:\Windows\system32\profsvc.dll
15:10:05.0780 2940 ProfSvc - ok
15:10:05.0780 2940 [ 4D71227301DD8D09097B9E4CC6527E5A ] ProtectedStorage S:\Windows\system32\lsass.exe
15:10:05.0790 2940 ProtectedStorage - ok
15:10:05.0790 2940 [ 0557CF5A2556BD58E26384169D72438D ] Psched S:\Windows\system32\DRIVERS\pacer.sys
15:10:05.0790 2940 Psched - ok
15:10:05.0810 2940 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 S:\Windows\system32\DRIVERS\ql2300.sys
15:10:05.0820 2940 ql2300 - ok
15:10:05.0830 2940 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx S:\Windows\system32\DRIVERS\ql40xx.sys
15:10:05.0830 2940 ql40xx - ok
15:10:05.0830 2940 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE S:\Windows\system32\qwave.dll
15:10:05.0840 2940 QWAVE - ok
15:10:05.0840 2940 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv S:\Windows\system32\drivers\qwavedrv.sys
15:10:05.0840 2940 QWAVEdrv - ok
15:10:05.0840 2940 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd S:\Windows\system32\DRIVERS\rasacd.sys
15:10:05.0850 2940 RasAcd - ok
15:10:05.0850 2940 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn S:\Windows\system32\DRIVERS\AgileVpn.sys
15:10:05.0850 2940 RasAgileVpn - ok
15:10:05.0860 2940 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto S:\Windows\System32\rasauto.dll
15:10:05.0860 2940 RasAuto - ok
15:10:05.0860 2940 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp S:\Windows\system32\DRIVERS\rasl2tp.sys
15:10:05.0870 2940 Rasl2tp - ok
15:10:05.0870 2940 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan S:\Windows\System32\rasmans.dll
15:10:05.0880 2940 RasMan - ok
15:10:05.0880 2940 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe S:\Windows\system32\DRIVERS\raspppoe.sys
15:10:05.0880 2940 RasPppoe - ok
15:10:05.0890 2940 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp S:\Windows\system32\DRIVERS\rassstp.sys
15:10:05.0890 2940 RasSstp - ok
15:10:05.0890 2940 [ 77F665941019A1594D887A74F301FA2F ] rdbss S:\Windows\system32\DRIVERS\rdbss.sys
15:10:05.0900 2940 rdbss - ok
15:10:05.0900 2940 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus S:\Windows\system32\DRIVERS\rdpbus.sys
15:10:05.0900 2940 rdpbus - ok
15:10:05.0900 2940 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD S:\Windows\system32\DRIVERS\RDPCDD.sys
15:10:05.0900 2940 RDPCDD - ok
15:10:05.0910 2940 [ 1B6163C503398B23FF8B939C67747683 ] RDPDR S:\Windows\system32\drivers\rdpdr.sys
15:10:05.0910 2940 RDPDR - ok
15:10:05.0910 2940 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD S:\Windows\system32\drivers\rdpencdd.sys
15:10:05.0910 2940 RDPENCDD - ok
15:10:05.0920 2940 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP S:\Windows\system32\drivers\rdprefmp.sys
15:10:05.0920 2940 RDPREFMP - ok
15:10:05.0920 2940 [ 70CBA1A0C98600A2AA1863479B35CB90 ] RdpVideoMiniport S:\Windows\system32\drivers\rdpvideominiport.sys
15:10:05.0930 2940 RdpVideoMiniport - ok
15:10:05.0930 2940 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD S:\Windows\system32\drivers\RDPWD.sys
15:10:05.0940 2940 RDPWD - ok
15:10:05.0940 2940 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost S:\Windows\system32\drivers\rdyboost.sys
15:10:05.0940 2940 rdyboost - ok
15:10:05.0950 2940 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess S:\Windows\System32\mprdim.dll
15:10:05.0950 2940 RemoteAccess - ok
15:10:05.0950 2940 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry S:\Windows\system32\regsvc.dll
15:10:05.0960 2940 RemoteRegistry - ok
15:10:05.0960 2940 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper S:\Windows\System32\RpcEpMap.dll
15:10:05.0970 2940 RpcEptMapper - ok
15:10:05.0970 2940 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator S:\Windows\system32\locator.exe
15:10:05.0970 2940 RpcLocator - ok
15:10:05.0980 2940 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs S:\Windows\system32\rpcss.dll
15:10:05.0990 2940 RpcSs - ok
15:10:05.0990 2940 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr S:\Windows\system32\DRIVERS\rspndr.sys
15:10:05.0990 2940 rspndr - ok
15:10:06.0000 2940 [ BAEFEE35D27A5440D35092CE10267BEC ] RTL8167 S:\Windows\system32\DRIVERS\Rt64win7.sys
15:10:06.0000 2940 RTL8167 - ok
15:10:06.0000 2940 [ C92E383CDAFE94B0DA30CBFCD561ECF8 ] s1039bus S:\Windows\system32\DRIVERS\s1039bus.sys
15:10:06.0000 2940 s1039bus - ok
15:10:06.0010 2940 [ CBACDDCE5FD32310FD5855E1FD8517E8 ] s1039mdfl S:\Windows\system32\DRIVERS\s1039mdfl.sys
15:10:06.0010 2940 s1039mdfl - ok
15:10:06.0010 2940 [ A339F1E0BC7AF29B2FDBA32AE4B9FCA4 ] s1039mdm S:\Windows\system32\DRIVERS\s1039mdm.sys
15:10:06.0010 2940 s1039mdm - ok
15:10:06.0020 2940 [ 84E260AAD1BB19DFCC0DD333CB83BBA7 ] s1039mgmt S:\Windows\system32\DRIVERS\s1039mgmt.sys
15:10:06.0020 2940 s1039mgmt - ok
15:10:06.0020 2940 [ 0772F403D615563E9D8D32BA7A132D1E ] s1039nd5 S:\Windows\system32\DRIVERS\s1039nd5.sys
15:10:06.0020 2940 s1039nd5 - ok
15:10:06.0030 2940 [ 134EDBCE4DACD749FC508AFE1C512D09 ] s1039obex S:\Windows\system32\DRIVERS\s1039obex.sys
15:10:06.0030 2940 s1039obex - ok
15:10:06.0030 2940 [ BC54B27EC3900328BC390E98BBFC9D3A ] s1039unic S:\Windows\system32\DRIVERS\s1039unic.sys
15:10:06.0040 2940 s1039unic - ok
15:10:06.0040 2940 [ E60C0A09F997826C7627B244195AB581 ] s3cap S:\Windows\system32\drivers\vms3cap.sys
15:10:06.0040 2940 s3cap - ok
15:10:06.0040 2940 [ 4D71227301DD8D09097B9E4CC6527E5A ] SamSs S:\Windows\system32\lsass.exe
15:10:06.0040 2940 SamSs - ok
15:10:06.0050 2940 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port S:\Windows\system32\drivers\sbp2port.sys
15:10:06.0050 2940 sbp2port - ok
15:10:06.0050 2940 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr S:\Windows\System32\SCardSvr.dll
15:10:06.0060 2940 SCardSvr - ok
15:10:06.0060 2940 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter S:\Windows\system32\DRIVERS\scfilter.sys
15:10:06.0060 2940 scfilter - ok
15:10:06.0080 2940 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule S:\Windows\system32\schedsvc.dll
15:10:06.0100 2940 Schedule - ok
15:10:06.0100 2940 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc S:\Windows\System32\certprop.dll
15:10:06.0100 2940 SCPolicySvc - ok
15:10:06.0110 2940 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC S:\Windows\System32\SDRSVC.dll
15:10:06.0110 2940 SDRSVC - ok
15:10:06.0120 2940 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv S:\Windows\system32\drivers\secdrv.sys
15:10:06.0120 2940 secdrv - ok
15:10:06.0120 2940 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon S:\Windows\system32\seclogon.dll
15:10:06.0120 2940 seclogon - ok
15:10:06.0130 2940 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS S:\Windows\System32\sens.dll
15:10:06.0130 2940 SENS - ok
15:10:06.0130 2940 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc S:\Windows\system32\sensrsvc.dll
15:10:06.0130 2940 SensrSvc - ok
15:10:06.0140 2940 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum S:\Windows\system32\DRIVERS\serenum.sys
15:10:06.0140 2940 Serenum - ok
15:10:06.0140 2940 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial S:\Windows\system32\DRIVERS\serial.sys
15:10:06.0140 2940 Serial - ok
15:10:06.0150 2940 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse S:\Windows\system32\DRIVERS\sermouse.sys
15:10:06.0150 2940 sermouse - ok
15:10:06.0160 2940 [ 668043F192AB9659761A349A4703600D ] ServiceLayer S:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
15:10:06.0160 2940 ServiceLayer - ok
15:10:06.0170 2940 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv S:\Windows\system32\sessenv.dll
15:10:06.0180 2940 SessionEnv - ok
15:10:06.0180 2940 [ A554811BCD09279536440C964AE35BBF ] sffdisk S:\Windows\system32\drivers\sffdisk.sys
15:10:06.0180 2940 sffdisk - ok
15:10:06.0190 2940 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc S:\Windows\system32\drivers\sffp_mmc.sys
15:10:06.0190 2940 sffp_mmc - ok
15:10:06.0190 2940 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd S:\Windows\system32\drivers\sffp_sd.sys
15:10:06.0190 2940 sffp_sd - ok
15:10:06.0190 2940 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy S:\Windows\system32\DRIVERS\sfloppy.sys
15:10:06.0190 2940 sfloppy - ok
15:10:06.0200 2940 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess S:\Windows\System32\ipnathlp.dll
15:10:06.0210 2940 SharedAccess - ok
15:10:06.0210 2940 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection S:\Windows\System32\shsvcs.dll
15:10:06.0220 2940 ShellHWDetection - ok
15:10:06.0220 2940 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 S:\Windows\system32\DRIVERS\SiSRaid2.sys
15:10:06.0220 2940 SiSRaid2 - ok
15:10:06.0230 2940 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 S:\Windows\system32\DRIVERS\sisraid4.sys
15:10:06.0230 2940 SiSRaid4 - ok
15:10:06.0230 2940 [ F5BBEDF602C310B00036EB2DBF4348A5 ] SkypeUpdate S:\Program Files (x86)\Skype\Updater\Updater.exe
15:10:06.0240 2940 SkypeUpdate - ok
15:10:06.0240 2940 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb S:\Windows\system32\DRIVERS\smb.sys
15:10:06.0240 2940 Smb - ok
15:10:06.0250 2940 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP S:\Windows\System32\snmptrap.exe
15:10:06.0250 2940 SNMPTRAP - ok
15:10:06.0250 2940 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr S:\Windows\system32\drivers\spldr.sys
15:10:06.0250 2940 spldr - ok
15:10:06.0260 2940 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler S:\Windows\System32\spoolsv.exe
15:10:06.0270 2940 Spooler - ok
15:10:06.0340 2940 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc S:\Windows\system32\sppsvc.exe
15:10:06.0400 2940 sppsvc - ok
15:10:06.0410 2940 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify S:\Windows\system32\sppuinotify.dll
15:10:06.0410 2940 sppuinotify - ok
15:10:06.0410 2940 [ EAD5300C93946B0250A309E2BF2BE4CF ] SQLWriter S:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
15:10:06.0420 2940 SQLWriter - ok
15:10:06.0420 2940 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv S:\Windows\system32\DRIVERS\srv.sys
15:10:06.0430 2940 srv - ok
15:10:06.0430 2940 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2 S:\Windows\system32\DRIVERS\srv2.sys
15:10:06.0440 2940 srv2 - ok
15:10:06.0440 2940 [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet S:\Windows\system32\DRIVERS\srvnet.sys
15:10:06.0450 2940 srvnet - ok
15:10:06.0450 2940 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV S:\Windows\System32\ssdpsrv.dll
15:10:06.0460 2940 SSDPSRV - ok
15:10:06.0460 2940 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc S:\Windows\system32\sstpsvc.dll
15:10:06.0460 2940 SstpSvc - ok
15:10:06.0470 2940 Steam Client Service - ok
15:10:06.0470 2940 [ F3817967ED533D08327DC73BC4D5542A ] stexstor S:\Windows\system32\DRIVERS\stexstor.sys
15:10:06.0470 2940 stexstor - ok
15:10:06.0480 2940 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc S:\Windows\System32\wiaservc.dll
15:10:06.0490 2940 stisvc - ok
15:10:06.0500 2940 [ 7785DC213270D2FC066538DAF94087E7 ] storflt S:\Windows\system32\drivers\vmstorfl.sys
15:10:06.0500 2940 storflt - ok
15:10:06.0500 2940 [ D34E4943D5AC096C8EDEEBFD80D76E23 ] storvsc S:\Windows\system32\drivers\storvsc.sys
15:10:06.0500 2940 storvsc - ok
15:10:06.0510 2940 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum S:\Windows\system32\drivers\swenum.sys
15:10:06.0510 2940 swenum - ok
15:10:06.0520 2940 [ F577910A133A592234EBAAD3F3AFA258 ] SwitchBoard S:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
15:10:06.0520 2940 SwitchBoard - ok
15:10:06.0530 2940 [ E08E46FDD841B7184194011CA1955A0B ] swprv S:\Windows\System32\swprv.dll
15:10:06.0540 2940 swprv - ok
15:10:06.0540 2940 Synth3dVsc - ok
15:10:06.0570 2940 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain S:\Windows\system32\sysmain.dll
15:10:06.0600 2940 SysMain - ok
15:10:06.0600 2940 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService S:\Windows\System32\TabSvc.dll
15:10:06.0610 2940 TabletInputService - ok
15:10:06.0610 2940 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv S:\Windows\System32\tapisrv.dll
15:10:06.0620 2940 TapiSrv - ok
15:10:06.0620 2940 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS S:\Windows\System32\tbssvc.dll
15:10:06.0620 2940 TBS - ok
15:10:06.0650 2940 [ 40AF23633D197905F03AB5628C558C51 ] Tcpip S:\Windows\system32\drivers\tcpip.sys
15:10:06.0660 2940 Tcpip - ok
15:10:06.0680 2940 [ 40AF23633D197905F03AB5628C558C51 ] TCPIP6 S:\Windows\system32\DRIVERS\tcpip.sys
15:10:06.0690 2940 TCPIP6 - ok
15:10:06.0700 2940 [ DF687E3D8836BFB04FCC0615BF15A519 ] tcpipreg S:\Windows\system32\drivers\tcpipreg.sys
15:10:06.0700 2940 tcpipreg - ok
15:10:06.0700 2940 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE S:\Windows\system32\drivers\tdpipe.sys
15:10:06.0700 2940 TDPIPE - ok
15:10:06.0710 2940 [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP S:\Windows\system32\drivers\tdtcp.sys
15:10:06.0710 2940 TDTCP - ok
15:10:06.0710 2940 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx S:\Windows\system32\DRIVERS\tdx.sys
15:10:06.0710 2940 tdx - ok
15:10:06.0800 2940 [ 851C5080261DFC1FCDC21DF0E5EA3BCB ] TeamViewer8 S:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
15:10:06.0830 2940 TeamViewer8 - ok
15:10:06.0840 2940 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD S:\Windows\system32\drivers\termdd.sys
15:10:06.0840 2940 TermDD - ok
15:10:06.0850 2940 [ 2E648163254233755035B46DD7B89123 ] TermService S:\Windows\System32\termsrv.dll
15:10:06.0870 2940 TermService - ok
15:10:06.0870 2940 [ F0344071948D1A1FA732231785A0664C ] Themes S:\Windows\system32\themeservice.dll
15:10:06.0870 2940 Themes - ok
15:10:06.0880 2940 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER S:\Windows\system32\mmcss.dll
15:10:06.0880 2940 THREADORDER - ok
15:10:06.0890 2940 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks S:\Windows\System32\trkwks.dll
15:10:06.0890 2940 TrkWks - ok
15:10:06.0900 2940 [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller S:\Windows\servicing\TrustedInstaller.exe
15:10:06.0900 2940 TrustedInstaller - ok
15:10:06.0910 2940 [ 4CE278FC9671BA81A138D70823FCAA09 ] tssecsrv S:\Windows\system32\DRIVERS\tssecsrv.sys
15:10:06.0910 2940 tssecsrv - ok
15:10:06.0910 2940 [ D11C783E3EF9A3C52C0EBE83CC5000E9 ] TsUsbFlt S:\Windows\system32\drivers\tsusbflt.sys
15:10:06.0910 2940 TsUsbFlt - ok
15:10:06.0910 2940 tsusbhub - ok
15:10:06.0920 2940 [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel S:\Windows\system32\DRIVERS\tunnel.sys
15:10:06.0920 2940 tunnel - ok
15:10:06.0920 2940 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 S:\Windows\system32\DRIVERS\uagp35.sys
15:10:06.0920 2940 uagp35 - ok
15:10:06.0930 2940 [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs S:\Windows\system32\DRIVERS\udfs.sys
15:10:06.0930 2940 udfs - ok
15:10:06.0940 2940 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect S:\Windows\system32\UI0Detect.exe
15:10:06.0940 2940 UI0Detect - ok
15:10:06.0950 2940 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx S:\Windows\system32\drivers\uliagpkx.sys
15:10:06.0950 2940 uliagpkx - ok
15:10:06.0950 2940 [ DC54A574663A895C8763AF0FA1FF7561 ] umbus S:\Windows\system32\drivers\umbus.sys
15:10:06.0950 2940 umbus - ok
15:10:06.0950 2940 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass S:\Windows\system32\DRIVERS\umpass.sys
15:10:06.0960 2940 UmPass - ok
15:10:06.0960 2940 [ A293DCD756D04D8492A750D03B9A297C ] UmRdpService S:\Windows\System32\umrdp.dll
15:10:06.0970 2940 UmRdpService - ok
15:10:06.0970 2940 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost S:\Windows\System32\upnphost.dll
15:10:06.0980 2940 upnphost - ok
15:10:06.0990 2940 [ 4E93C8496359E97830C75AC36393654D ] upperdev S:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys
15:10:06.0990 2940 upperdev - ok
15:10:06.0990 2940 [ B0435098C81D04CAFFF80DDB746CD3A2 ] usbaudio S:\Windows\system32\drivers\usbaudio.sys
15:10:06.0990 2940 usbaudio - ok
15:10:07.0000 2940 [ 6F1A3157A1C89435352CEB543CDB359C ] usbccgp S:\Windows\system32\DRIVERS\usbccgp.sys
15:10:07.0000 2940 usbccgp - ok
15:10:07.0000 2940 [ 80B0F7D5CCF86CEB5D402EAAF61FEC31 ] usbcir S:\Windows\system32\drivers\usbcir.sys
15:10:07.0000 2940 usbcir - ok
15:10:07.0010 2940 [ C025055FE7B87701EB042095DF1A2D7B ] usbehci S:\Windows\system32\DRIVERS\usbehci.sys
15:10:07.0010 2940 usbehci - ok
15:10:07.0010 2940 [ 287C6C9410B111B68B52CA298F7B8C24 ] usbhub S:\Windows\system32\DRIVERS\usbhub.sys
15:10:07.0020 2940 usbhub - ok
15:10:07.0020 2940 [ 9840FC418B4CBD632D3D0A667A725C31 ] usbohci S:\Windows\system32\DRIVERS\usbohci.sys
15:10:07.0020 2940 usbohci - ok
15:10:07.0020 2940 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint S:\Windows\system32\DRIVERS\usbprint.sys
15:10:07.0020 2940 usbprint - ok
15:10:07.0030 2940 [ 9661DA76B4531B2DA272ECCE25A8AF24 ] usbscan S:\Windows\system32\drivers\usbscan.sys
15:10:07.0030 2940 usbscan - ok
15:10:07.0030 2940 [ B57B4F0BEC4270A281B9F8537EB2FA04 ] usbser S:\Windows\system32\drivers\usbser.sys
15:10:07.0030 2940 usbser - ok
15:10:07.0040 2940 [ 8844CB19A37B65E27049D4A7786726A9 ] UsbserFilt S:\Windows\system32\DRIVERS\usbser_lowerfltjx64.sys
15:10:07.0040 2940 UsbserFilt - ok
15:10:07.0040 2940 [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR S:\Windows\system32\DRIVERS\USBSTOR.SYS
15:10:07.0040 2940 USBSTOR - ok
15:10:07.0050 2940 [ 62069A34518BCF9C1FD9E74B3F6DB7CD ] usbuhci S:\Windows\system32\drivers\usbuhci.sys
15:10:07.0050 2940 usbuhci - ok
15:10:07.0050 2940 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms S:\Windows\System32\uxsms.dll
15:10:07.0050 2940 UxSms - ok
15:10:07.0060 2940 [ 4D71227301DD8D09097B9E4CC6527E5A ] VaultSvc S:\Windows\system32\lsass.exe
15:10:07.0060 2940 VaultSvc - ok
15:10:07.0060 2940 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot S:\Windows\system32\drivers\vdrvroot.sys
15:10:07.0060 2940 vdrvroot - ok
15:10:07.0070 2940 [ 8D6B481601D01A456E75C3210F1830BE ] vds S:\Windows\System32\vds.exe
15:10:07.0080 2940 vds - ok
15:10:07.0080 2940 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga S:\Windows\system32\DRIVERS\vgapnp.sys
15:10:07.0080 2940 vga - ok
15:10:07.0090 2940 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave S:\Windows\System32\drivers\vga.sys
15:10:07.0090 2940 VgaSave - ok
15:10:07.0090 2940 VGPU - ok
15:10:07.0090 2940 [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp S:\Windows\system32\drivers\vhdmp.sys
15:10:07.0100 2940 vhdmp - ok
15:10:07.0100 2940 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide S:\Windows\system32\drivers\viaide.sys
15:10:07.0100 2940 viaide - ok
15:10:07.0100 2940 [ 86EA3E79AE350FEA5331A1303054005F ] vmbus S:\Windows\system32\drivers\vmbus.sys
15:10:07.0110 2940 vmbus - ok
15:10:07.0110 2940 [ 7DE90B48F210D29649380545DB45A187 ] VMBusHID S:\Windows\system32\drivers\VMBusHID.sys
15:10:07.0110 2940 VMBusHID - ok
15:10:07.0110 2940 [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr S:\Windows\system32\drivers\volmgr.sys
15:10:07.0120 2940 volmgr - ok
15:10:07.0120 2940 [ A255814907C89BE58B79EF2F189B843B ] volmgrx S:\Windows\system32\drivers\volmgrx.sys
15:10:07.0130 2940 volmgrx - ok
15:10:07.0130 2940 [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap S:\Windows\system32\drivers\volsnap.sys
15:10:07.0130 2940 volsnap - ok
15:10:07.0140 2940 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid S:\Windows\system32\DRIVERS\vsmraid.sys
15:10:07.0140 2940 vsmraid - ok
15:10:07.0160 2940 [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS S:\Windows\system32\vssvc.exe
15:10:07.0190 2940 VSS - ok
15:10:07.0190 2940 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus S:\Windows\System32\drivers\vwifibus.sys
15:10:07.0190 2940 vwifibus - ok
15:10:07.0200 2940 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time S:\Windows\system32\w32time.dll
15:10:07.0200 2940 W32Time - ok
15:10:07.0210 2940 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen S:\Windows\system32\DRIVERS\wacompen.sys
15:10:07.0210 2940 WacomPen - ok
15:10:07.0210 2940 [ 356AFD78A6ED4457169241AC3965230C ] WANARP S:\Windows\system32\DRIVERS\wanarp.sys
15:10:07.0210 2940 WANARP - ok
15:10:07.0220 2940 [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6 S:\Windows\system32\DRIVERS\wanarp.sys
15:10:07.0220 2940 Wanarpv6 - ok
15:10:07.0230 2940 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc S:\Windows\system32\Wat\WatAdminSvc.exe
15:10:07.0240 2940 WatAdminSvc - ok
15:10:07.0260 2940 [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine S:\Windows\system32\wbengine.exe
15:10:07.0280 2940 wbengine - ok
15:10:07.0280 2940 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc S:\Windows\System32\wbiosrvc.dll
15:10:07.0290 2940 WbioSrvc - ok
15:10:07.0300 2940 [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc S:\Windows\System32\wcncsvc.dll
15:10:07.0300 2940 wcncsvc - ok
15:10:07.0310 2940 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService S:\Windows\System32\WcsPlugInService.dll
15:10:07.0310 2940 WcsPlugInService - ok
15:10:07.0310 2940 [ 72889E16FF12BA0F235467D6091B17DC ] Wd S:\Windows\system32\DRIVERS\wd.sys
15:10:07.0310 2940 Wd - ok
15:10:07.0320 2940 [ E2C933EDBC389386EBE6D2BA953F43D8 ] Wdf01000 S:\Windows\system32\drivers\Wdf01000.sys
15:10:07.0330 2940 Wdf01000 - ok
15:10:07.0330 2940 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost S:\Windows\system32\wdi.dll
15:10:07.0340 2940 WdiServiceHost - ok
15:10:07.0340 2940 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost S:\Windows\system32\wdi.dll
15:10:07.0340 2940 WdiSystemHost - ok
15:10:07.0350 2940 [ 3DB6D04E1C64272F8B14EB8BC4616280 ] WebClient S:\Windows\System32\webclnt.dll
15:10:07.0360 2940 WebClient - ok
15:10:07.0360 2940 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc S:\Windows\system32\wecsvc.dll
15:10:07.0370 2940 Wecsvc - ok
15:10:07.0370 2940 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport S:\Windows\System32\wercplsupport.dll
15:10:07.0370 2940 wercplsupport - ok
15:10:07.0380 2940 [ 6D137963730144698CBD10F202E9F251 ] WerSvc S:\Windows\System32\WerSvc.dll
15:10:07.0380 2940 WerSvc - ok
15:10:07.0380 2940 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf S:\Windows\system32\DRIVERS\wfplwf.sys
15:10:07.0380 2940 WfpLwf - ok
15:10:07.0390 2940 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount S:\Windows\system32\drivers\wimmount.sys
15:10:07.0390 2940 WIMMount - ok
15:10:07.0390 2940 WinDefend - ok
15:10:07.0400 2940 WinHttpAutoProxySvc - ok
15:10:07.0410 2940 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt S:\Windows\system32\wbem\WMIsvc.dll
15:10:07.0410 2940 Winmgmt - ok
15:10:07.0430 2940 [ BCB1310604AA415C4508708975B3931E ] WinRM S:\Windows\system32\WsmSvc.dll
15:10:07.0450 2940 WinRM - ok
15:10:07.0460 2940 [ FE88B288356E7B47B74B13372ADD906D ] WinUsb S:\Windows\system32\DRIVERS\WinUsb.sys
15:10:07.0460 2940 WinUsb - ok
15:10:07.0470 2940 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc S:\Windows\System32\wlansvc.dll
15:10:07.0480 2940 Wlansvc - ok
15:10:07.0520 2940 [ 357CABBF155AFD1D3926E62539D2A3A7 ] wlidsvc S:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
15:10:07.0570 2940 wlidsvc - ok
15:10:07.0570 2940 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi S:\Windows\system32\drivers\wmiacpi.sys
15:10:07.0580 2940 WmiAcpi - ok
15:10:07.0580 2940 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv S:\Windows\system32\wbem\WmiApSrv.exe
15:10:07.0590 2940 wmiApSrv - ok
15:10:07.0590 2940 WMPNetworkSvc - ok
15:10:07.0600 2940 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc S:\Windows\System32\wpcsvc.dll
15:10:07.0600 2940 WPCSvc - ok
15:10:07.0600 2940 [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum S:\Windows\system32\wpdbusenum.dll
15:10:07.0610 2940 WPDBusEnum - ok
15:10:07.0610 2940 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl S:\Windows\system32\drivers\ws2ifsl.sys
15:10:07.0610 2940 ws2ifsl - ok
15:10:07.0610 2940 [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc S:\Windows\System32\wscsvc.dll
15:10:07.0620 2940 wscsvc - ok
15:10:07.0620 2940 WSearch - ok
15:10:07.0680 2940 [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv S:\Windows\system32\wuaueng.dll
15:10:07.0750 2940 wuauserv - ok
15:10:07.0750 2940 [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf S:\Windows\system32\drivers\WudfPf.sys
15:10:07.0750 2940 WudfPf - ok
15:10:07.0760 2940 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd S:\Windows\system32\DRIVERS\WUDFRd.sys
15:10:07.0760 2940 WUDFRd - ok
15:10:07.0770 2940 [ B20F051B03A966392364C83F009F7D17 ] wudfsvc S:\Windows\System32\WUDFSvc.dll
15:10:07.0770 2940 wudfsvc - ok
15:10:07.0780 2940 [ 9A3452B3C2A46C073166C5CF49FAD1AE ] WwanSvc S:\Windows\System32\wwansvc.dll
15:10:07.0780 2940 WwanSvc - ok
15:10:07.0790 2940 ================ Scan global ===============================
15:10:07.0790 2940 [ BA0CD8C393E8C9F83354106093832C7B ] S:\Windows\system32\basesrv.dll
15:10:07.0800 2940 [ 88EDD0B34EED542745931E581AD21A32 ] S:\Windows\system32\winsrv.dll
15:10:07.0800 2940 [ 88EDD0B34EED542745931E581AD21A32 ] S:\Windows\system32\winsrv.dll
15:10:07.0810 2940 [ D6160F9D869BA3AF0B787F971DB56368 ] S:\Windows\system32\sxssrv.dll
15:10:07.0820 2940 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] S:\Windows\system32\services.exe
15:10:07.0830 2940 [Global] - ok
15:10:07.0830 2940 ================ Scan MBR ==================================
15:10:07.0830 2940 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk1\DR1
15:10:07.0850 2940 \Device\Harddisk1\DR1 - ok
15:10:07.0870 2940 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
15:10:08.0180 2940 \Device\Harddisk0\DR0 - ok
15:10:08.0190 2940 ================ Scan VBR ==================================
15:10:08.0190 2940 [ F4C1A1820CB6759121DC6D109297B22A ] \Device\Harddisk1\DR1\Partition1
15:10:08.0190 2940 \Device\Harddisk1\DR1\Partition1 - ok
15:10:08.0190 2940 [ 7C1FE5B31B683D5FF5520553A9D686BE ] \Device\Harddisk0\DR0\Partition1
15:10:08.0190 2940 \Device\Harddisk0\DR0\Partition1 - ok
15:10:08.0190 2940 ============================================================
15:10:08.0190 2940 Scan finished
15:10:08.0190 2940 ============================================================
15:10:08.0200 1136 Detected object count: 0
15:10:08.0200 1136 Actual detected object count: 0
15:10:16.0320 6096 Deinitialize success
I'm still in love with .. Phenom II 955BE

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: kontrola HJT logu - odesilani aut. požadavku do sitě

Příspěvekod jaro3 » 26 lis 2013 19:35

Vypni rez. ochranu u antiviru a antispywaru,příp. firewall..

Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud budou problémy , spusť ho v nouz. režimu.

Upozornění : Může se stát, že po aplikaci Combofixu a restartu počítače, Windows nenaběhnou , nebo nenajede plocha , budou problémy s připojením, pak znovu restartuj počítač, pokud to nepomůže , po restartu mačkej klávesu F8 a pak zvol poslední známou funkční konfiguraci. , či použij bod obnovy.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 116 hostů