Prosím o kontrolu logu. Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
mmmartin
Moderátor
Elite Level 10
Elite Level 10
Příspěvky: 9641
Registrován: srpen 04
Bydliště: Praha
Pohlaví: Muž
Stav:
Offline

Prosím o kontrolu logu.

Příspěvekod mmmartin » 06 led 2014 18:24

Prosím o kontrolu logu HJT. V duchu standardního postupu jsem systém vyčistil ATF Cleanerem a připojuji i log z Malwarebytes' Anti-Malware.

Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 17:59:00, on 6.1.2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v10.0 (10.00.9200.16537)


Boot mode: Normal

Running processes:
C:\Program Files (x86)\TeamViewer\Version8\TeamViewer.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files\WinFast\WFDTV\WFWIZ.exe
C:\Program Files (x86)\AVG\AVG2014\avgui.exe
C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
C:\Program Files (x86)\Creative\USB Sound Blaster HD\Volume Panel\VolPanlu.exe
C:\Program Files\WinFast\WFDTV\DTVSchdl.exe
C:\Program Files (x86)\CyberLink\PowerDVD13\PowerDVD13Agent.exe
C:\Program Files (x86)\HiJackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = avangate.com,www.avangate.com,regnow.com,www.regnow.com,
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AppGraffiti - {6F6A5334-78E9-4D9B-8182-8B41EA8C39EF} - C:\PROGRA~2\APPGRA~1\APPGRA~1.DLL
O4 - HKLM\..\Run: [AVG_UI] "C:\Program Files (x86)\AVG\AVG2014\avgui.exe" /TRAYONLY
O4 - HKLM\..\Run: [LWS] C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe -hide
O4 - HKLM\..\Run: [NUSB3MON] "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [VolPanel] "C:\Program Files (x86)\Creative\USB Sound Blaster HD\Volume Panel\VolPanlu.exe" /r
O4 - HKLM\..\Run: [WinFastDTV] C:\Program Files\WinFast\WFDTV\DTVSchdl.exe
O4 - HKLM\..\Run: [ArcSoft Connection Service] C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
O4 - HKLM\..\Run: [PowerDVD13Agent] "C:\Program Files (x86)\CyberLink\PowerDVD13\PowerDVD13Agent.exe"
O4 - HKCU\..\Run: [GarminExpressTrayApp] "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe"
O4 - HKCU\..\Run: [AGupdate] C:\Program Files (x86)\AppGraffiti\AGupdate.exe
O4 - HKCU\..\Run: [WinFast Schedule] C:\Program Files\WinFast\WFDTV\WFWIZ.exe
O4 - Global Startup: GIGABYTE OC_GURU.lnk = C:\Program Files (x86)\GIGABYTE\GIGABYTE OC_GURU II\OC_GURU.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: AtherosSvc - Unknown owner - C:\WINDOWS\system32\AdminService.exe (file missing)
O23 - Service: AVG Firewall (avgfws) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2014\avgfws.exe
O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe
O23 - Service: CyberLink PowerDVD 13 Media Server Monitor Service - CyberLink - C:\Program Files (x86)\CyberLink\PowerDVD13\Kernel\DMS\CLMSMonitorServicePDVD13.exe
O23 - Service: CyberLink PowerDVD 13 Media Server Service - CyberLink - C:\Program Files (x86)\CyberLink\PowerDVD13\Kernel\DMS\CLMSServerPDVD13.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Garmin Core Update Service - Garmin Ltd or its subsidiaries - C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @mqutil.dll,-6102 (MSMQ) - Unknown owner - C:\WINDOWS\system32\mqsvc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: TeamViewer 8 (TeamViewer8) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
O23 - Service: AVG PC TuneUp Service (TuneUp.UtilitiesSvc) - AVG - C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files (x86)\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
O23 - Service: UMVPFSrv - Logitech Inc. - C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 9807 bytes


Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org

Verze: v2014.01.06.05

Windows 8 x64 NTFS
Internet Explorer 10.0.9200.16750
martin :: MARTIN-PC [administrátor]

6.1.2014 18:09:26
MBAM-log-2014-01-06 (18-16-32).txt

Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 260193
Uplynulý čas: 5 minut, 26 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 11
HKCR\CLSID\{6F6A5334-78E9-4D9B-8182-8B41EA8C39EF} (PUP.Optional.AppGraffiti.A) -> Nebyla provedena žádná instrukce.
HKCR\TypeLib\{DB02BC6B-B0F0-4074-99E6-884B70FCB6AE} (PUP.Optional.AppGraffiti.A) -> Nebyla provedena žádná instrukce.
HKCR\Interface\{022C9F90-2E96-47D6-A971-107650154563} (PUP.Optional.AppGraffiti.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6F6A5334-78E9-4D9B-8182-8B41EA8C39EF} (PUP.Optional.AppGraffiti.A) -> Nebyla provedena žádná instrukce.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{6F6A5334-78E9-4D9B-8182-8B41EA8C39EF} (PUP.Optional.AppGraffiti.A) -> Nebyla provedena žádná instrukce.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{6F6A5334-78E9-4D9B-8182-8B41EA8C39EF} (PUP.Optional.AppGraffiti.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{6F6A5334-78E9-4D9B-8182-8B41EA8C39EF} (PUP.Optional.AppGraffiti.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{6F6A5334-78E9-4D9B-8182-8B41EA8C39EF}_is1 (PUP.Optional.AppGraffiti.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\UNINS000.EXE (PUP.Optional.AppGraffiti.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\autoupdate.exe (Security.Hijack) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\launcher.exe (Security.Hijack) -> Nebyla provedena žádná instrukce.

Nalezené hodnoty v registru: 1
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|AGupdate (PUP.Optional.AppGraffiti.A) -> Data: C:\Program Files (x86)\AppGraffiti\AGupdate.exe -> Nebyla provedena žádná instrukce.

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 8
C:\Program Files (x86)\AppGraffiti (PUP.Optional.AppGraffiti.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\AppGraffiti\chrome (PUP.Optional.AppGraffiti.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\AppGraffiti\chrome\img (PUP.Optional.AppGraffiti.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\AppGraffiti\chrome\js (PUP.Optional.AppGraffiti.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\AppGraffiti\chrome\plugins (PUP.Optional.AppGraffiti.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\AppGraffiti\Update (PUP.Optional.AppGraffiti.A) -> Nebyla provedena žádná instrukce.
C:\Users\martin\AppData\Roaming\OpenCandy (PUP.Optional.OpenCandy) -> Nebyla provedena žádná instrukce.
C:\Users\martin\AppData\Roaming\OpenCandy\A602C947F1A8425BA3B26A66564D98E0 (PUP.Optional.OpenCandy) -> Nebyla provedena žádná instrukce.

Nalezené soubory: 19
C:\Program Files (x86)\AppGraffiti\AppGraffiti.dll (PUP.Optional.AppGraffiti.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\AppGraffiti\unins000.dat (PUP.Optional.AppGraffiti.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\AppGraffiti\AGupdate.exe (PUP.Optional.AppGraffiti.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\AppGraffiti\AppGraffiti.exe (PUP.Optional.AppGraffiti.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\AppGraffiti\unins000.exe (PUP.Optional.AppGraffiti.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\AppGraffiti\chrome\appgraffiti-chrome.pem (PUP.Optional.AppGraffiti.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\AppGraffiti\chrome\background.html (PUP.Optional.AppGraffiti.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\AppGraffiti\chrome\graff_chr.ver (PUP.Optional.AppGraffiti.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\AppGraffiti\chrome\manifest.json (PUP.Optional.AppGraffiti.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\AppGraffiti\chrome\img\128x128.png (PUP.Optional.AppGraffiti.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\AppGraffiti\chrome\img\16x16.png (PUP.Optional.AppGraffiti.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\AppGraffiti\chrome\img\48x48.png (PUP.Optional.AppGraffiti.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\AppGraffiti\chrome\js\background.js (PUP.Optional.AppGraffiti.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\AppGraffiti\chrome\js\facebook.js (PUP.Optional.AppGraffiti.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\AppGraffiti\chrome\js\getevent.js (PUP.Optional.AppGraffiti.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\AppGraffiti\chrome\js\myspace.js (PUP.Optional.AppGraffiti.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\AppGraffiti\chrome\js\twitter.js (PUP.Optional.AppGraffiti.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\AppGraffiti\chrome\plugins\npUniPlugin.dll (PUP.Optional.AppGraffiti.A) -> Nebyla provedena žádná instrukce.
C:\Users\martin\AppData\Roaming\OpenCandy\A602C947F1A8425BA3B26A66564D98E0\AppGraffitiSetup.exe (PUP.Optional.OpenCandy) -> Nebyla provedena žádná instrukce.

(konec)


Děkuji.
ASUS Prime Z390-P / Hexa Core Intel core i5 Coffee Lake-S / Gigabyte GeForce GTX 650 Ti / FORTRON BlueStorm Bronze 80PLUS / W 11

Reklama
Uživatelský avatar
mmmartin
Moderátor
Elite Level 10
Elite Level 10
Příspěvky: 9641
Registrován: srpen 04
Bydliště: Praha
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu.

Příspěvekod mmmartin » 07 led 2014 15:48

UP.
ASUS Prime Z390-P / Hexa Core Intel core i5 Coffee Lake-S / Gigabyte GeForce GTX 650 Ti / FORTRON BlueStorm Bronze 80PLUS / W 11

Uživatelský avatar
mmmartin
Moderátor
Elite Level 10
Elite Level 10
Příspěvky: 9641
Registrován: srpen 04
Bydliště: Praha
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu.

Příspěvekod mmmartin » 07 led 2014 19:23

Ještě jednou UP.
ASUS Prime Z390-P / Hexa Core Intel core i5 Coffee Lake-S / Gigabyte GeForce GTX 650 Ti / FORTRON BlueStorm Bronze 80PLUS / W 11

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu.

Příspěvekod jaro3 » 08 led 2014 11:10

Logy nedávej do code.

. Takže spusť znovu MbAM a dej Scan
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Ukaž výsledky
- ujisti se že máš zatrhnuté všechny vypsané nálezy a klikni na tlačítko Odstranit označené
- když skončí odstraňování tak se ti zobrazí log, tak ho sem dej.
- pak zvol v programu OK a pak program ukonči přes Exit
Můžeš sem pak vložit nový log z MbAM.

Stáhni si TFC
Otevři soubor a zavři všechny ostatní okna, Klikni na Start k zahájení procesu. Program by neměl trvat dlouho.
Poté by se měl PC restartovat, pokud ne , proveď sám.

Stáhni AdwCleaner (by Xplode)

Ulož si ho na svojí plochu
Ukonči všechny programy , okna a prohlížeče
Spusť program poklepáním a klikni na „Prohledat-Scan“
Po skenu se objeví log ( jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
mmmartin
Moderátor
Elite Level 10
Elite Level 10
Příspěvky: 9641
Registrován: srpen 04
Bydliště: Praha
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu.

Příspěvekod mmmartin » 08 led 2014 16:00

Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org

Verze: v2014.01.06.05

Windows 8 x64 NTFS
Internet Explorer 10.0.9200.16750
martin :: MARTIN-PC [administrátor]

8.1.2014 15:21:47
mbam-log-2014-01-08 (15-21-47).txt

Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 263258
Uplynulý čas: 5 minut, 50 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 4
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{6F6A5334-78E9-4D9B-8182-8B41EA8C39EF} (PUP.Optional.AppGraffiti.A) -> Přesun do karantény a smazání se zdařilo.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{6F6A5334-78E9-4D9B-8182-8B41EA8C39EF} (PUP.Optional.AppGraffiti.A) -> Přesun do karantény a smazání se zdařilo.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\autoupdate.exe (Security.Hijack) -> Přesun do karantény a smazání se zdařilo.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\launcher.exe (Security.Hijack) -> Přesun do karantény a smazání se zdařilo.

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 0
(Žádné škodlivé položky nebyly zjištěny)

(konec)

xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx

Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org

Verze: v2014.01.06.05

Windows 8 x64 NTFS
Internet Explorer 10.0.9200.16750
martin :: MARTIN-PC [administrátor]

8.1.2014 15:45:05
mbam-log-2014-01-08 (15-45-05).txt

Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 262629
Uplynulý čas: 5 minut, 16 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 0
(Žádné škodlivé položky nebyly zjištěny)

(konec)

xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx

# AdwCleaner v3.016 - Report created 08/01/2014 at 15:53:10
# Updated 23/12/2013 by Xplode
# Operating System : Windows 8 Pro (64 bits)
# Username : martin - MARTIN-PC
# Running from : C:\Users\martin\Desktop\adwcleaner.exe
# Option : Scan

***** [ Services ] *****


***** [ Files / Folders ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Found : HKCU\Software\BI
Key Found : HKCU\Software\CToolbar
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{6F6A5334-78E9-4D9B-8182-8B41EA8C39EF}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CC99A798-FD3D-4AB4-969E-6071612524F9}
Key Found : [x64] HKCU\Software\BI
Key Found : [x64] HKCU\Software\CToolbar
Key Found : HKLM\SOFTWARE\Classes\CLSID\{CC99A798-FD3D-4AB4-969E-6071612524F9}
Key Found : HKLM\Software\CToolbar

***** [ Browsers ] *****

-\\ Internet Explorer v10.0.9200.16537


*************************

AdwCleaner[R0].txt - [954 octets] - [08/01/2014 15:53:10]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [1013 octets] ##########
ASUS Prime Z390-P / Hexa Core Intel core i5 Coffee Lake-S / Gigabyte GeForce GTX 650 Ti / FORTRON BlueStorm Bronze 80PLUS / W 11

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu.

Příspěvekod jaro3 » 08 led 2014 16:59

Spusť znovu AdwCleaner (u Windows Vista či Windows7, klikni na AdwCleaner pravým a vyber „Spustit jako správce
Klikni na „ Vymazat-Clean
Program provede opravu, po automatickém restartu neukáže log (C:\AdwCleaner [S?].txt) , jeho obsah sem celý vlož.

Stáhni si Junkware Removal Tool by Thisisu

na svojí plochu.

Deaktivuj si svůj antivirový program. Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.

Stáhni si RogueKiller by Adlice Software
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit

-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
mmmartin
Moderátor
Elite Level 10
Elite Level 10
Příspěvky: 9641
Registrován: srpen 04
Bydliště: Praha
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu.

Příspěvekod mmmartin » 08 led 2014 18:25

# AdwCleaner v3.016 - Report created 08/01/2014 at 17:53:27
# Updated 23/12/2013 by Xplode
# Operating System : Windows 8 Pro (64 bits)
# Username : martin - MARTIN-PC
# Running from : C:\Users\martin\Desktop\adwcleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CC99A798-FD3D-4AB4-969E-6071612524F9}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CC99A798-FD3D-4AB4-969E-6071612524F9}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{6F6A5334-78E9-4D9B-8182-8B41EA8C39EF}
Key Deleted : HKCU\Software\BI
Key Deleted : HKCU\Software\CToolbar
Key Deleted : HKLM\Software\CToolbar

***** [ Browsers ] *****

-\\ Internet Explorer v10.0.9200.16537


*************************

AdwCleaner[R0].txt - [1101 octets] - [08/01/2014 15:53:10]
AdwCleaner[R1].txt - [1162 octets] - [08/01/2014 17:51:45]
AdwCleaner[S0].txt - [1017 octets] - [08/01/2014 17:53:27]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1077 octets] ##########


xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.0 (01.07.2014:1)
OS: Windows 8 Pro x64
Ran by martin on st 08.01.2014 at 18:07:58,34
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values

Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL



~~~ Registry Keys



~~~ Files



~~~ Folders



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on st 08.01.2014 at 18:13:23,96
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx

RogueKiller V8.8.0 _x64_ [Dec 27 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.adlice.com/forum/
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com

Operační systém : Windows 8 (6.2.9200 ) 64 bits version
Spuštěno v : Normální režim
Uživatel : martin [Práva správce]
Mód : Kontrola -- Datum : 01/08/2014 18:22:17
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 8 ¤¤¤
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ POL][PUM] HKLM\[...]\System : ConsentPromptBehaviorAdmin (0) -> NALEZENO
[HJ POL][PUM] HKLM\[...]\Wow6432Node\[...]\System : ConsentPromptBehaviorAdmin (0) -> NALEZENO
[HJ SMENU][PUM] HKCU\[...]\Advanced : Start_ShowMyGames (0) -> NALEZENO
[HJ SMENU][PUM] HKCU\[...]\Advanced : Start_TrackProgs (0) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO

¤¤¤ naplánované úlohy : 0 ¤¤¤

¤¤¤ spuštění položky : 0 ¤¤¤

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Browser Addons : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NENAHRÁNO 0x0] ¤¤¤

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts




¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) WDC WD5000AAKX-001CA0 ATA Device +++++
--- User ---
[MBR] 45280c660fc521f8b91f4c2a98ab4e46
[BSP] bb36c154a8d7dc892476e6b59f68a683 : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 63 | Size: 476937 Mo
User = LL1 ... OK!
User = LL2 ... OK!

+++++ PhysicalDrive1: (\\.\PHYSICALDRIVE1 @ IDE) WDC WD5000AAKX-001CA0 ATA Device +++++
--- User ---
[MBR] a64f72a730ba0a76e29201ab00380b13
[BSP] 53012f80407cf6cc164d4d0160e63be2 : Empty MBR Code
Partition table:
0 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 29999 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 61442048 | Size: 436937 Mo
2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 956289024 | Size: 10000 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[0]_S_01082014_182217.txt >>
ASUS Prime Z390-P / Hexa Core Intel core i5 Coffee Lake-S / Gigabyte GeForce GTX 650 Ti / FORTRON BlueStorm Bronze 80PLUS / W 11

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu.

Příspěvekod jaro3 » 08 led 2014 21:55

Zavři všechny programy a prohlížeče. Deaktivuj antivir a firewall.
Prosím, odpoj všechny USB nebo externí disky z počítače před spuštěním tohoto programu.
Spusť RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Počkej, dokud status okno zobrazuje "Prohledat "
- Klikni na "Smazat"
- Počkej, dokud Status box zobrazuje " Mazání dokončeno "
- Klikni na "Zpráva " a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [číslo]. txt na ploše.
- Zavři RogueKiller

Stáhni si TDSSKiller
Na svojí plochu.Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller. 2.8.16.0_(datum)_log.txt , vlož sem prosím celý obsah logu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
mmmartin
Moderátor
Elite Level 10
Elite Level 10
Příspěvky: 9641
Registrován: srpen 04
Bydliště: Praha
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu.

Příspěvekod mmmartin » 08 led 2014 22:27

RogueKiller V8.8.0 _x64_ [Dec 27 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.adlice.com/forum/
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com

Operační systém : Windows 8 (6.2.9200 ) 64 bits version
Spuštěno v : Normální režim
Uživatel : martin [Práva správce]
Mód : Odebrat -- Datum : 01/08/2014 22:12:22
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 8 ¤¤¤
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> VYMAZÁNO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> VYMAZÁNO
[HJ POL][PUM] HKLM\[...]\System : ConsentPromptBehaviorAdmin (0) -> NAHRAZENO (2)
[HJ POL][PUM] HKLM\[...]\Wow6432Node\[...]\System : ConsentPromptBehaviorAdmin (0) -> NAHRAZENO (2)
[HJ SMENU][PUM] HKCU\[...]\Advanced : Start_ShowMyGames (0) -> NAHRAZENO (1)
[HJ SMENU][PUM] HKCU\[...]\Advanced : Start_TrackProgs (0) -> NAHRAZENO (1)
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)

¤¤¤ naplánované úlohy : 0 ¤¤¤

¤¤¤ spuštění položky : 0 ¤¤¤

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Browser Addons : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NENAHRÁNO 0x0] ¤¤¤

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts




¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) WDC WD5000AAKX-001CA0 ATA Device +++++
--- User ---
[MBR] 45280c660fc521f8b91f4c2a98ab4e46
[BSP] bb36c154a8d7dc892476e6b59f68a683 : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 63 | Size: 476937 Mo
User = LL1 ... OK!
User = LL2 ... OK!

+++++ PhysicalDrive1: (\\.\PHYSICALDRIVE1 @ IDE) WDC WD5000AAKX-001CA0 ATA Device +++++
--- User ---
[MBR] a64f72a730ba0a76e29201ab00380b13
[BSP] 53012f80407cf6cc164d4d0160e63be2 : Empty MBR Code
Partition table:
0 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 29999 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 61442048 | Size: 436937 Mo
2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 956289024 | Size: 10000 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[0]_D_01082014_221222.txt >>
RKreport[0]_S_01082014_182217.txt;RKreport[0]_S_01082014_221119.txt

xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx

22:13:42.0900 3552 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
22:13:42.0912 3552 ============================================================
22:13:42.0912 3552 Current date / time: 2014/01/08 22:13:42.0912
22:13:42.0912 3552 SystemInfo:
22:13:42.0912 3552
22:13:42.0912 3552 OS Version: 6.2.9200 ServicePack: 0.0
22:13:42.0912 3552 Product type: Workstation
22:13:42.0912 3552 ComputerName: MARTIN-PC
22:13:42.0912 3552 UserName: martin
22:13:42.0912 3552 Windows directory: C:\WINDOWS
22:13:42.0912 3552 System windows directory: C:\WINDOWS
22:13:42.0912 3552 Running under WOW64
22:13:42.0912 3552 Processor architecture: Intel x64
22:13:42.0912 3552 Number of processors: 4
22:13:42.0912 3552 Page size: 0x1000
22:13:42.0912 3552 Boot type: Normal boot
22:13:42.0912 3552 ============================================================
22:13:43.0338 3552 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
22:13:43.0355 3552 Drive \Device\Harddisk1\DR1 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
22:13:43.0359 3552 ============================================================
22:13:43.0359 3552 \Device\Harddisk0\DR0:
22:13:43.0359 3552 MBR partitions:
22:13:43.0359 3552 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x3A384D41
22:13:43.0359 3552 \Device\Harddisk1\DR1:
22:13:43.0360 3552 MBR partitions:
22:13:43.0360 3552 \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x3A97800
22:13:43.0360 3552 \Device\Harddisk1\DR1\Partition2: MBR, Type 0x7, StartLBA 0x3A98800, BlocksNum 0x35564800
22:13:43.0360 3552 \Device\Harddisk1\DR1\Partition3: MBR, Type 0x7, StartLBA 0x38FFD000, BlocksNum 0x1388000
22:13:43.0360 3552 ============================================================
22:13:43.0380 3552 C: <-> \Device\Harddisk0\DR0\Partition1
22:13:43.0421 3552 F: <-> \Device\Harddisk1\DR1\Partition2
22:13:43.0438 3552 G: <-> \Device\Harddisk1\DR1\Partition1
22:13:43.0482 3552 S: <-> \Device\Harddisk1\DR1\Partition3
22:13:43.0482 3552 ============================================================
22:13:43.0482 3552 Initialize success
22:13:43.0482 3552 ============================================================
22:13:47.0978 2684 ============================================================
22:13:47.0978 2684 Scan started
22:13:47.0978 2684 Mode: Manual;
22:13:47.0978 2684 ============================================================
22:13:48.0382 2684 ================ Scan system memory ========================
22:13:48.0382 2684 System memory - ok
22:13:48.0382 2684 ================ Scan services =============================
22:13:48.0593 2684 [ E890C46E4754F0DF51BAFCC8D2E07498 ] 1394ohci C:\WINDOWS\System32\drivers\1394ohci.sys
22:13:48.0594 2684 1394ohci - ok
22:13:48.0623 2684 [ 4F18D4C7EA14F11A7211F60D553C03DB ] 3ware C:\WINDOWS\system32\drivers\3ware.sys
22:13:48.0624 2684 3ware - ok
22:13:48.0710 2684 [ ADC420616C501B45D26C0FD3EF1E54E4 ] ACDaemon C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
22:13:48.0711 2684 ACDaemon - ok
22:13:48.0741 2684 [ 975AABEB243B800C23626D6B652C5A9C ] ACPI C:\WINDOWS\system32\drivers\ACPI.sys
22:13:48.0743 2684 ACPI - ok
22:13:48.0760 2684 [ DC968C37822117E576B933F34A2D130C ] acpiex C:\WINDOWS\system32\Drivers\acpiex.sys
22:13:48.0761 2684 acpiex - ok
22:13:48.0776 2684 [ 0CA9F7C3A78227C21A0A7854E245CFB2 ] acpipagr C:\WINDOWS\System32\drivers\acpipagr.sys
22:13:48.0776 2684 acpipagr - ok
22:13:48.0784 2684 [ 8EB8DA03B142D3DD1EB9ED8107A76C43 ] AcpiPmi C:\WINDOWS\System32\drivers\acpipmi.sys
22:13:48.0785 2684 AcpiPmi - ok
22:13:48.0802 2684 [ CBCE725C5D86ABA7D2604E22951AA9B8 ] acpitime C:\WINDOWS\System32\drivers\acpitime.sys
22:13:48.0803 2684 acpitime - ok
22:13:48.0840 2684 [ 4AE327C9C375D985FF2A2AAB92765218 ] Adobe LM Service C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
22:13:48.0841 2684 Adobe LM Service - ok
22:13:48.0902 2684 [ ADDA5E1951B90D3D23C56D3CF0622ADC ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
22:13:48.0902 2684 AdobeARMservice - ok
22:13:48.0927 2684 [ 93C6388592B99925C1D1576E465BC80F ] adp94xx C:\WINDOWS\system32\drivers\adp94xx.sys
22:13:48.0930 2684 adp94xx - ok
22:13:48.0954 2684 [ D27763E0247292654E7F7D16444C7C72 ] adpahci C:\WINDOWS\system32\drivers\adpahci.sys
22:13:48.0956 2684 adpahci - ok
22:13:48.0976 2684 [ 67B90070FF48F794AF19F9FCF0080D75 ] adpu320 C:\WINDOWS\system32\drivers\adpu320.sys
22:13:48.0977 2684 adpu320 - ok
22:13:49.0004 2684 [ 974AE60BF5B90E31412D93596C968E5B ] AeLookupSvc C:\WINDOWS\System32\aelupsvc.dll
22:13:49.0006 2684 AeLookupSvc - ok
22:13:49.0030 2684 [ 7C0E0EDF18D6CC565D7BFBB451709FA5 ] AFD C:\WINDOWS\system32\drivers\afd.sys
22:13:49.0033 2684 AFD - ok
22:13:49.0046 2684 [ 01590377A5AB19E792528C628A2A68F9 ] agp440 C:\WINDOWS\system32\drivers\agp440.sys
22:13:49.0047 2684 agp440 - ok
22:13:49.0070 2684 [ D1BE8E6E5B3AF23A4393AF1BF867977A ] ALG C:\WINDOWS\System32\alg.exe
22:13:49.0070 2684 ALG - ok
22:13:49.0098 2684 [ 025E8C755BE293E50854D26D1BBE5133 ] AllUserInstallAgent C:\WINDOWS\system32\AUInstallAgent.dll
22:13:49.0100 2684 AllUserInstallAgent - ok
22:13:49.0148 2684 AMD FUEL Service - ok
22:13:49.0180 2684 [ 5A81054B824004B1ECC04F0034A1CDF9 ] AmdK8 C:\WINDOWS\System32\drivers\amdk8.sys
22:13:49.0181 2684 AmdK8 - ok
22:13:49.0357 2684 [ 8DC532B5BF820E48194C6AFC8862FCBC ] amdkmdag C:\WINDOWS\system32\DRIVERS\atikmdag.sys
22:13:49.0412 2684 amdkmdag - ok
22:13:49.0444 2684 [ AA48FEABA50C2DED9C485DFDBA044E40 ] amdkmdap C:\WINDOWS\system32\DRIVERS\atikmpag.sys
22:13:49.0446 2684 amdkmdap - ok
22:13:49.0468 2684 [ B849D453E644FAB9BC8EF6DC8CA9C4C6 ] AmdPPM C:\WINDOWS\System32\drivers\amdppm.sys
22:13:49.0468 2684 AmdPPM - ok
22:13:49.0489 2684 [ 35A0EB5AECB0FA3C41A2FB514A562304 ] amdsata C:\WINDOWS\system32\drivers\amdsata.sys
22:13:49.0490 2684 amdsata - ok
22:13:49.0511 2684 [ 00452671904F5EE94B50BF0219C97164 ] amdsbs C:\WINDOWS\system32\drivers\amdsbs.sys
22:13:49.0513 2684 amdsbs - ok
22:13:49.0527 2684 [ EA3FFE53E92E59C87E3ECA9BEB20D9B7 ] amdxata C:\WINDOWS\system32\drivers\amdxata.sys
22:13:49.0528 2684 amdxata - ok
22:13:49.0576 2684 [ 823F34D1DEF120A657BB7529ABF4461F ] AppHostSvc C:\WINDOWS\system32\inetsrv\apphostsvc.dll
22:13:49.0578 2684 AppHostSvc - ok
22:13:49.0590 2684 [ 83B3682CE922FB0F415734B26D9D6233 ] AppID C:\WINDOWS\system32\drivers\appid.sys
22:13:49.0591 2684 AppID - ok
22:13:49.0616 2684 [ CE2BEAD7F31816FF0AC490D048C969F9 ] AppIDSvc C:\WINDOWS\System32\appidsvc.dll
22:13:49.0617 2684 AppIDSvc - ok
22:13:49.0640 2684 [ 4F750B7EFCB6520AE01E01D082D7D476 ] Appinfo C:\WINDOWS\System32\appinfo.dll
22:13:49.0641 2684 Appinfo - ok
22:13:49.0658 2684 [ 2D14788C5D0836292BEB27BBE109BE56 ] AppMgmt C:\WINDOWS\System32\appmgmts.dll
22:13:49.0660 2684 AppMgmt - ok
22:13:49.0673 2684 [ E933401B392387F4BE34DE8BAF1722A7 ] arc C:\WINDOWS\system32\drivers\arc.sys
22:13:49.0674 2684 arc - ok
22:13:49.0688 2684 [ 07CA323EF2E8247A568AB0F3662AD644 ] arcsas C:\WINDOWS\system32\drivers\arcsas.sys
22:13:49.0689 2684 arcsas - ok
22:13:49.0777 2684 [ 108FB6DDB69E537A2EA53F425363FAE5 ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
22:13:49.0786 2684 aspnet_state - ok
22:13:49.0800 2684 [ 74DBAEC35366C4EE7670428808715A6A ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys
22:13:49.0801 2684 AsyncMac - ok
22:13:49.0811 2684 [ A721FF570C2387E383BDDEA9632863C9 ] atapi C:\WINDOWS\system32\drivers\atapi.sys
22:13:49.0811 2684 atapi - ok
22:13:49.0834 2684 [ 4ECC791539F23982411864037D1AC8FC ] AthDfu C:\WINDOWS\System32\Drivers\AthDfu.sys
22:13:49.0835 2684 AthDfu - ok
22:13:49.0860 2684 [ 51B7849747A0582096A41A366454E88E ] AtherosSvc C:\WINDOWS\system32\AdminService.exe
22:13:49.0861 2684 AtherosSvc - ok
22:13:49.0902 2684 [ BCD7A47EF587DC00DD61D12D9C2D1E44 ] AudioEndpointBuilder C:\WINDOWS\System32\AudioEndpointBuilder.dll
22:13:49.0904 2684 AudioEndpointBuilder - ok
22:13:49.0938 2684 [ 599B3F685A263A114FFAF3BE29C49C75 ] Audiosrv C:\WINDOWS\System32\Audiosrv.dll
22:13:49.0946 2684 Audiosrv - ok
22:13:49.0989 2684 [ 4EB2E8EE8BA47B58E08B67139C31CB41 ] Avgboota C:\WINDOWS\system32\DRIVERS\avgboota.sys
22:13:49.0990 2684 Avgboota - ok
22:13:50.0013 2684 [ 27CA53E91543B800E16129BCEC3247AD ] Avgdiska C:\WINDOWS\system32\DRIVERS\avgdiska.sys
22:13:50.0014 2684 Avgdiska - ok
22:13:50.0055 2684 [ CA10D51653068DB6A0ADEEDDC4946C47 ] Avgfwfd C:\WINDOWS\system32\DRIVERS\avgfwd6a.sys
22:13:50.0056 2684 Avgfwfd - ok
22:13:50.0113 2684 [ 1E68487EF81995767905DE628866215B ] avgfws C:\Program Files (x86)\AVG\AVG2014\avgfws.exe
22:13:50.0120 2684 avgfws - ok
22:13:50.0174 2684 [ F89B2DACE0FBE54CF65D12B7081C19C3 ] AVGIDSAgent C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe
22:13:50.0191 2684 AVGIDSAgent - ok
22:13:50.0219 2684 [ 57250DDDE2523115D0927DBBA745F9FA ] AVGIDSDriver C:\WINDOWS\system32\DRIVERS\avgidsdrivera.sys
22:13:50.0221 2684 AVGIDSDriver - ok
22:13:50.0249 2684 [ 19AD820FC44AA71EDD1BC70B6E3F36B0 ] AVGIDSHA C:\WINDOWS\system32\DRIVERS\avgidsha.sys
22:13:50.0250 2684 AVGIDSHA - ok
22:13:50.0279 2684 [ 4BE8BB177B4C2BC3564845EF6D1073F1 ] Avgldx64 C:\WINDOWS\system32\DRIVERS\avgldx64.sys
22:13:50.0281 2684 Avgldx64 - ok
22:13:50.0319 2684 [ D3772CC086FB81F76B5A82C85E1C7C8E ] Avgloga C:\WINDOWS\system32\DRIVERS\avgloga.sys
22:13:50.0321 2684 Avgloga - ok
22:13:50.0346 2684 [ A0BCE5DC2C1F1EE5C1CA19A33375AC23 ] Avgmfx64 C:\WINDOWS\system32\DRIVERS\avgmfx64.sys
22:13:50.0347 2684 Avgmfx64 - ok
22:13:50.0352 2684 [ 12FAAF366975B2BF2E93F1866C0E480D ] Avgrkx64 C:\WINDOWS\system32\DRIVERS\avgrkx64.sys
22:13:50.0353 2684 Avgrkx64 - ok
22:13:50.0374 2684 [ B747B6BB015E552F49C634BB19540F3D ] avgwd C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe
22:13:50.0377 2684 avgwd - ok
22:13:50.0412 2684 [ 94DCBB875A66685C934EE6E3D71A3452 ] Avgwfpa C:\WINDOWS\system32\DRIVERS\avgwfpa.sys
22:13:50.0414 2684 Avgwfpa - ok
22:13:50.0440 2684 [ 89491EF71D5EA011127832C588002853 ] AxInstSV C:\WINDOWS\System32\AxInstSV.dll
22:13:50.0441 2684 AxInstSV - ok
22:13:50.0458 2684 [ 87AB5BB072A3F128541D5B815F82FFDD ] b06bdrv C:\WINDOWS\system32\drivers\bxvbda.sys
22:13:50.0461 2684 b06bdrv - ok
22:13:50.0478 2684 [ 81703BC5D68DEDBB086C2368FBE7B334 ] BasicDisplay C:\WINDOWS\System32\drivers\BasicDisplay.sys
22:13:50.0479 2684 BasicDisplay - ok
22:13:50.0494 2684 [ 5EC68164E14D25675C98BBB5F09E8606 ] BasicRender C:\WINDOWS\System32\drivers\BasicRender.sys
22:13:50.0495 2684 BasicRender - ok
22:13:50.0524 2684 [ 89143A7BA7850F5C7E61B43BB44B6418 ] BDESVC C:\WINDOWS\System32\bdesvc.dll
22:13:50.0527 2684 BDESVC - ok
22:13:50.0555 2684 [ 9E7AEA59776D904607985AFFE7E5E183 ] Beep C:\WINDOWS\system32\drivers\Beep.sys
22:13:50.0555 2684 Beep - ok
22:13:50.0604 2684 [ 53AA55632B94622F2DC3695E86EF9363 ] BFE C:\WINDOWS\System32\bfe.dll
22:13:50.0611 2684 BFE - ok
22:13:50.0640 2684 [ D598C44A7072D3108D8D8102EC5E07F7 ] BITS C:\WINDOWS\System32\qmgr.dll
22:13:50.0649 2684 BITS - ok
22:13:50.0656 2684 [ B17AC10B47C7FCB44D22A1F06415840E ] bowser C:\WINDOWS\system32\DRIVERS\bowser.sys
22:13:50.0657 2684 bowser - ok
22:13:50.0682 2684 [ 038FA1B55531E7020DB705B42FCCE373 ] BrokerInfrastructure C:\WINDOWS\System32\bisrv.dll
22:13:50.0685 2684 BrokerInfrastructure - ok
22:13:50.0706 2684 [ 310068BDA80B1D55C36580FD8A873FAF ] Browser C:\WINDOWS\System32\browser.dll
22:13:50.0708 2684 Browser - ok
22:13:50.0738 2684 [ 8C816EBE14B24CD9CFBE94254D92A89A ] BtFilter C:\WINDOWS\system32\DRIVERS\btfilter.sys
22:13:50.0741 2684 BtFilter - ok
22:13:50.0786 2684 [ D4FA5A33E345CFB6D635579A8EE02399 ] BthA2DP C:\WINDOWS\system32\drivers\BthA2DP.sys
22:13:50.0787 2684 BthA2DP - ok
22:13:50.0816 2684 [ 6695200F455E251F0BCC9CE4D0978D59 ] BthAvrcpTg C:\WINDOWS\System32\drivers\BthAvrcpTg.sys
22:13:50.0817 2684 BthAvrcpTg - ok
22:13:50.0836 2684 [ A8B20D852B07AE19A13B5D47EC4E4C3B ] BthEnum C:\WINDOWS\System32\drivers\BthEnum.sys
22:13:50.0837 2684 BthEnum - ok
22:13:50.0843 2684 [ E695E706C9E11DD5201605F1F6B4505C ] BthHFAud C:\WINDOWS\System32\drivers\BthHfAud.sys
22:13:50.0844 2684 BthHFAud - ok
22:13:50.0871 2684 [ 616EB8748C988AEE98D93DA141C3D3B4 ] BthHFEnum C:\WINDOWS\System32\drivers\bthhfenum.sys
22:13:50.0871 2684 BthHFEnum - ok
22:13:50.0887 2684 [ DCB4EBD928A6FB368BE6CAE522412DE1 ] bthhfhid C:\WINDOWS\System32\drivers\BthHFHid.sys
22:13:50.0888 2684 bthhfhid - ok
22:13:50.0896 2684 [ 447A41162B74E345C8E80A681867C653 ] BthHFSrv C:\WINDOWS\System32\BthHFSrv.dll
22:13:50.0908 2684 BthHFSrv - ok
22:13:50.0932 2684 [ EB4CBCB3288233CD964716D0A5E1CFC5 ] BTHMODEM C:\WINDOWS\System32\drivers\bthmodem.sys
22:13:50.0933 2684 BTHMODEM - ok
22:13:50.0968 2684 [ 091BB978E9504D0AD14586929431A957 ] BthPan C:\WINDOWS\system32\DRIVERS\bthpan.sys
22:13:50.0969 2684 BthPan - ok
22:13:51.0009 2684 [ 13795CAA34239D97A7211E7F9D96E012 ] BTHPORT C:\WINDOWS\System32\Drivers\BTHport.sys
22:13:51.0015 2684 BTHPORT - ok
22:13:51.0022 2684 [ A4387C3D271959313E2577DB7BE8BA7A ] bthserv C:\WINDOWS\system32\bthserv.dll
22:13:51.0023 2684 bthserv - ok
22:13:51.0054 2684 [ 1F715957F5236D30B6020A19A4271F6A ] BTHUSB C:\WINDOWS\System32\Drivers\BTHUSB.sys
22:13:51.0054 2684 BTHUSB - ok
22:13:51.0077 2684 [ 990B1BABE6E81FB18E65A87EBEFB1772 ] cdfs C:\WINDOWS\system32\DRIVERS\cdfs.sys
22:13:51.0078 2684 cdfs - ok
22:13:51.0099 2684 [ 339BFF85D788268752DA8C9644B188EE ] cdrom C:\WINDOWS\System32\drivers\cdrom.sys
22:13:51.0101 2684 cdrom - ok
22:13:51.0120 2684 [ BAF8F0F55BC300E5F882E521F054E345 ] CertPropSvc C:\WINDOWS\System32\certprop.dll
22:13:51.0122 2684 CertPropSvc - ok
22:13:51.0138 2684 [ F64B7D1A37CC1D5F421D5359EEC81E2E ] circlass C:\WINDOWS\System32\drivers\circlass.sys
22:13:51.0139 2684 circlass - ok
22:13:51.0149 2684 [ 9905168708DB68849B879B5548F68AB3 ] CLFS C:\WINDOWS\system32\drivers\CLFS.sys
22:13:51.0151 2684 CLFS - ok
22:13:51.0194 2684 [ 2DC8538A2260647484A6C921CA837313 ] CmBatt C:\WINDOWS\System32\drivers\CmBatt.sys
22:13:51.0195 2684 CmBatt - ok
22:13:51.0226 2684 [ E708BFF0473EC6B271EA46B65B16CA56 ] CNG C:\WINDOWS\system32\Drivers\cng.sys
22:13:51.0230 2684 CNG - ok
22:13:51.0247 2684 [ 0E5B1E9E7122EDAAF1F6CE047965CA92 ] CompositeBus C:\WINDOWS\System32\drivers\CompositeBus.sys
22:13:51.0248 2684 CompositeBus - ok
22:13:51.0253 2684 COMSysApp - ok
22:13:51.0260 2684 [ D9CB0782AF819548072AA45B70F8B22D ] condrv C:\WINDOWS\system32\drivers\condrv.sys
22:13:51.0261 2684 condrv - ok
22:13:51.0281 2684 [ C0EAD9F8AB83D41FF07303C75589C2B8 ] Creative Audio Engine Licensing Service C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe
22:13:51.0282 2684 Creative Audio Engine Licensing Service - ok
22:13:51.0305 2684 [ D03466C36EF0E5C7694FF38B45271D9D ] Creative Media Toolbox 6 Licensing Service C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\MT6Licensing.exe
22:13:51.0305 2684 Creative Media Toolbox 6 Licensing Service - ok
22:13:51.0345 2684 [ 5CE2742F063731EC10C1B2EE386A2C08 ] CryptSvc C:\WINDOWS\system32\cryptsvc.dll
22:13:51.0346 2684 CryptSvc - ok
22:13:51.0379 2684 [ F2C69C3D98249DE14D4B2832516D4FD5 ] CSC C:\WINDOWS\system32\drivers\csc.sys
22:13:51.0382 2684 CSC - ok
22:13:51.0405 2684 [ 22CCB6AFF617AAC6121DF6CDA5ABF3F4 ] CscService C:\WINDOWS\System32\cscsvc.dll
22:13:51.0413 2684 CscService - ok
22:13:51.0467 2684 [ 07BA6D17E66879018B30B6C3F976EBED ] CTAudSvcService C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
22:13:51.0469 2684 CTAudSvcService - ok
22:13:51.0491 2684 [ FAEF4C245BE832DB41B15DAAC336AFB7 ] dam C:\WINDOWS\system32\drivers\dam.sys
22:13:51.0491 2684 dam - ok
22:13:51.0538 2684 [ 1EC6E533C954BDDF2A37E7851A7E58FD ] DcomLaunch C:\WINDOWS\system32\rpcss.dll
22:13:51.0547 2684 DcomLaunch - ok
22:13:51.0562 2684 [ C8650D1F61149AA546BDBC99172EBBC1 ] defragsvc C:\WINDOWS\System32\defragsvc.dll
22:13:51.0566 2684 defragsvc - ok
22:13:51.0588 2684 [ 5EAEF67AE2AF4D2DC664B649DB7B2E16 ] DeviceAssociationService C:\WINDOWS\system32\das.dll
22:13:51.0592 2684 DeviceAssociationService - ok
22:13:51.0617 2684 [ 799BE46D45D486704CE0F37CA5385262 ] DeviceInstall C:\WINDOWS\system32\umpnpmgr.dll
22:13:51.0620 2684 DeviceInstall - ok
22:13:51.0635 2684 [ 09D9EB9E7898F8E6561473A20CC808B9 ] Dfsc C:\WINDOWS\system32\Drivers\dfsc.sys
22:13:51.0636 2684 Dfsc - ok
22:13:51.0675 2684 [ 9E0E72222264745ADEB0E5AC680B0ED6 ] Dhcp C:\WINDOWS\system32\dhcpcore.dll
22:13:51.0679 2684 Dhcp - ok
22:13:51.0686 2684 [ 3C736FAE17BA6F91BA37594AAB139CD0 ] discache C:\WINDOWS\system32\drivers\discache.sys
22:13:51.0687 2684 discache - ok
22:13:51.0711 2684 [ AE3786294CC246A5403783E1B86A0168 ] disk C:\WINDOWS\system32\drivers\disk.sys
22:13:51.0712 2684 disk - ok
22:13:51.0727 2684 [ 82A7C72593793FE1EADA7A305BD1567A ] dmvsc C:\WINDOWS\System32\drivers\dmvsc.sys
22:13:51.0728 2684 dmvsc - ok
22:13:51.0756 2684 [ 066B9710B36AB550E01EEFCA52155968 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll
22:13:51.0759 2684 Dnscache - ok
22:13:51.0775 2684 [ 9949AD2ABA168A618D46C799D6CC898C ] dot3svc C:\WINDOWS\System32\dot3svc.dll
22:13:51.0778 2684 dot3svc - ok
22:13:51.0791 2684 [ 109FC3F80BF4F4DC5A071058074F13C1 ] DPS C:\WINDOWS\system32\dps.dll
22:13:51.0794 2684 DPS - ok
22:13:51.0814 2684 [ 9C7C183F937951AE17C5B8B3259CF3FF ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys
22:13:51.0814 2684 drmkaud - ok
22:13:51.0844 2684 [ F87F4AAAF6664906248D11D5E579A53B ] DsmSvc C:\WINDOWS\System32\DeviceSetupManager.dll
22:13:51.0847 2684 DsmSvc - ok
22:13:51.0889 2684 [ E6AF4DF1817953D73C519B17CF849756 ] DXGKrnl C:\WINDOWS\System32\drivers\dxgkrnl.sys
22:13:51.0896 2684 DXGKrnl - ok
22:13:51.0917 2684 [ 58BA473DD88F5FC1932282BA683AA03E ] Eaphost C:\WINDOWS\System32\eapsvc.dll
22:13:51.0919 2684 Eaphost - ok
22:13:51.0984 2684 [ 5AB97B3282D7D6114949D1EB5C8598E4 ] ebdrv C:\WINDOWS\system32\drivers\evbda.sys
22:13:51.0999 2684 ebdrv - ok
22:13:52.0028 2684 [ F702AB6181513303AB0FC8D59E52708B ] EFS C:\WINDOWS\System32\lsass.exe
22:13:52.0029 2684 EFS - ok
22:13:52.0047 2684 [ 66D60BD9A4C05616ABECA2A901475098 ] EhStorClass C:\WINDOWS\system32\drivers\EhStorClass.sys
22:13:52.0048 2684 EhStorClass - ok
22:13:52.0063 2684 [ A61D0F543024E458C0FE32352E1978E2 ] EhStorTcgDrv C:\WINDOWS\system32\drivers\EhStorTcgDrv.sys
22:13:52.0064 2684 EhStorTcgDrv - ok
22:13:52.0080 2684 [ D790D058D67582DB9C84C2D33695FE6B ] ErrDev C:\WINDOWS\System32\drivers\errdev.sys
22:13:52.0081 2684 ErrDev - ok
22:13:52.0105 2684 [ F9E01C2D9F8BC049E04CF5DC24A5F638 ] EventSystem C:\WINDOWS\system32\es.dll
22:13:52.0109 2684 EventSystem - ok
22:13:52.0126 2684 [ 7A4D6FEB8C52B3FE855E4DCDF9107E03 ] exfat C:\WINDOWS\system32\drivers\exfat.sys
22:13:52.0127 2684 exfat - ok
22:13:52.0144 2684 [ 60996602A7111FD2D086E803F33E4282 ] fastfat C:\WINDOWS\system32\drivers\fastfat.sys
22:13:52.0146 2684 fastfat - ok
22:13:52.0171 2684 [ F0E7F8382ED5E138B0DFA4CB5058BCFE ] Fax C:\WINDOWS\system32\fxssvc.exe
22:13:52.0175 2684 Fax - ok
22:13:52.0191 2684 [ 73B2D11DF0B6E03A0CB0323218ACB3E4 ] fdc C:\WINDOWS\System32\drivers\fdc.sys
22:13:52.0192 2684 fdc - ok
22:13:52.0223 2684 [ 0828E3E7BD77C89149EAD3232BFD38DB ] fdPHost C:\WINDOWS\system32\fdPHost.dll
22:13:52.0224 2684 fdPHost - ok
22:13:52.0239 2684 [ 872506AAB591E8908DF4461475AF92DF ] FDResPub C:\WINDOWS\system32\fdrespub.dll
22:13:52.0241 2684 FDResPub - ok
22:13:52.0267 2684 [ 0588950D93A426F97C7AAADB1A9B0458 ] fhsvc C:\WINDOWS\system32\fhsvc.dll
22:13:52.0269 2684 fhsvc - ok
22:13:52.0281 2684 [ 88A9EBACD1058ABB237A6B4E96E7F397 ] FileInfo C:\WINDOWS\system32\drivers\fileinfo.sys
22:13:52.0282 2684 FileInfo - ok
22:13:52.0302 2684 [ 9E4EE3A0B00FF7D5F42A4AF9744CBA02 ] Filetrace C:\WINDOWS\system32\drivers\filetrace.sys
22:13:52.0303 2684 Filetrace - ok
22:13:52.0315 2684 [ B1D4C168FF7B8579E3745888658FFB1D ] flpydisk C:\WINDOWS\System32\drivers\flpydisk.sys
22:13:52.0316 2684 flpydisk - ok
22:13:52.0326 2684 [ B33EC133AE4E6C1881D2302D93D2467D ] FltMgr C:\WINDOWS\system32\drivers\fltmgr.sys
22:13:52.0328 2684 FltMgr - ok
22:13:52.0374 2684 [ 0BCDC0FF11B984162B0CF0FF6E9E0146 ] FontCache C:\WINDOWS\system32\FntCache.dll
22:13:52.0399 2684 FontCache - ok
22:13:52.0446 2684 [ 0B56259F5611787222A04A8F254E51D4 ] FontCache3.0.0.0 C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
22:13:52.0447 2684 FontCache3.0.0.0 - ok
22:13:52.0461 2684 [ A5F7873A39E4E9FAAAE59B7E9E36B705 ] FsDepends C:\WINDOWS\system32\drivers\FsDepends.sys
22:13:52.0461 2684 FsDepends - ok
22:13:52.0481 2684 [ 07DA62C960DDCCC2D35836AEAB4FC578 ] fssfltr C:\WINDOWS\system32\DRIVERS\fssfltr.sys
22:13:52.0482 2684 fssfltr - ok
22:13:52.0488 2684 [ A6DD7D491F587F4BC13FB972977DC8E8 ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys
22:13:52.0489 2684 Fs_Rec - ok
22:13:52.0519 2684 [ C1646A95EAC515F60CDB2A7A8A013C1E ] fvevol C:\WINDOWS\system32\DRIVERS\fvevol.sys
22:13:52.0522 2684 fvevol - ok
22:13:52.0549 2684 [ A969D92973DFA895E7776B4BFE36DBB2 ] FxPPM C:\WINDOWS\System32\drivers\fxppm.sys
22:13:52.0550 2684 FxPPM - ok
22:13:52.0574 2684 [ 52BC441E07A827EBAB70CDC7EAEDB28D ] gagp30kx C:\WINDOWS\system32\drivers\gagp30kx.sys
22:13:52.0574 2684 gagp30kx - ok
22:13:52.0609 2684 [ E99CF7AD8704278B7C8A8FB84BE4B3B6 ] Garmin Core Update Service C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe
22:13:52.0611 2684 Garmin Core Update Service - ok
22:13:52.0632 2684 [ 721F8EEF5E9747F32670DEFF7FB92541 ] gencounter C:\WINDOWS\System32\drivers\vmgencounter.sys
22:13:52.0633 2684 gencounter - ok
22:13:52.0661 2684 [ FC2B8B06BDBD3B6457F5A3DA9AD2410E ] GPIOClx0101 C:\WINDOWS\system32\Drivers\msgpioclx.sys
22:13:52.0662 2684 GPIOClx0101 - ok
22:13:52.0700 2684 [ 5358678C6370F2ADC5291849F6503262 ] gpsvc C:\WINDOWS\System32\gpsvc.dll
22:13:52.0726 2684 gpsvc - ok
22:13:52.0752 2684 [ 630555943E5A3FE21010CE91EC7FC84F ] HdAudAddService C:\WINDOWS\system32\drivers\HdAudio.sys
22:13:52.0755 2684 HdAudAddService - ok
22:13:52.0782 2684 [ 7D87B5B6C7188D553E11B59DC7F0B111 ] HDAudBus C:\WINDOWS\System32\drivers\HDAudBus.sys
22:13:52.0782 2684 HDAudBus - ok
22:13:52.0802 2684 [ 3F76BBA53D65E85A7F53E7A71082082C ] HidBatt C:\WINDOWS\System32\drivers\HidBatt.sys
22:13:52.0803 2684 HidBatt - ok
22:13:52.0833 2684 [ 085F150D002B7F0153D3C06DDF33A143 ] HidBth C:\WINDOWS\System32\drivers\hidbth.sys
22:13:52.0834 2684 HidBth - ok
22:13:52.0845 2684 [ CC4A07E51D89575CAB6F4EB590D87CD4 ] hidi2c C:\WINDOWS\System32\drivers\hidi2c.sys
22:13:52.0846 2684 hidi2c - ok
22:13:52.0857 2684 [ DC96F7DACB777CDEAEF9958A50BFDA06 ] HidIr C:\WINDOWS\System32\drivers\hidir.sys
22:13:52.0858 2684 HidIr - ok
22:13:52.0880 2684 [ FAC37D7B3D6354A5A5E19A45B50B4008 ] hidserv C:\WINDOWS\system32\hidserv.dll
22:13:52.0881 2684 hidserv - ok
22:13:52.0887 2684 [ 012C354B4AB48E9A7A657DF39E3A2073 ] HidUsb C:\WINDOWS\System32\drivers\hidusb.sys
22:13:52.0888 2684 HidUsb - ok
22:13:52.0901 2684 [ 43F884B61A24377567CD0FEB35236334 ] hkmsvc C:\WINDOWS\system32\kmsvc.dll
22:13:52.0904 2684 hkmsvc - ok
22:13:52.0941 2684 [ 33DFC14DFDCCFA7AA10E392F6A8EC1CF ] HomeGroupListener C:\WINDOWS\system32\ListSvc.dll
22:13:52.0945 2684 HomeGroupListener - ok
22:13:52.0973 2684 [ E0D9F6FE18FA7F53ADD29AF719CE2B7E ] HomeGroupProvider C:\WINDOWS\system32\provsvc.dll
22:13:52.0977 2684 HomeGroupProvider - ok
22:13:52.0995 2684 [ 64DB7A8D97CA53DCCF93D0A1E08342CF ] HpSAMD C:\WINDOWS\system32\drivers\HpSAMD.sys
22:13:52.0995 2684 HpSAMD - ok
22:13:53.0032 2684 [ F4A91D985EB9D1D2717D538F3424603C ] HTTP C:\WINDOWS\system32\drivers\HTTP.sys
22:13:53.0037 2684 HTTP - ok
22:13:53.0050 2684 [ 2A98301068801700906C06649860FE94 ] hwpolicy C:\WINDOWS\system32\drivers\hwpolicy.sys
22:13:53.0051 2684 hwpolicy - ok
22:13:53.0064 2684 [ DC76901D82097C9E297F20C287CB9A27 ] hyperkbd C:\WINDOWS\System32\drivers\hyperkbd.sys
22:13:53.0065 2684 hyperkbd - ok
22:13:53.0079 2684 [ 716413AB3CA12DE0A7222D28C1C9352C ] HyperVideo C:\WINDOWS\system32\DRIVERS\HyperVideo.sys
22:13:53.0079 2684 HyperVideo - ok
22:13:53.0095 2684 [ C9E9CBF73AFFBFE3E801EFB516787BA3 ] i8042prt C:\WINDOWS\System32\drivers\i8042prt.sys
22:13:53.0096 2684 i8042prt - ok
22:13:53.0110 2684 [ 5E394EBD26FD68AA9300332C46BEDD62 ] iaStorV C:\WINDOWS\system32\drivers\iaStorV.sys
22:13:53.0112 2684 iaStorV - ok
22:13:53.0160 2684 [ DAF66902F08796F9C694901660E5A64A ] IDriverT C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
22:13:53.0160 2684 IDriverT - ok
22:13:53.0174 2684 [ 24847A06B84339FEEDE5CABF3D27D320 ] iirsp C:\WINDOWS\system32\drivers\iirsp.sys
22:13:53.0174 2684 iirsp - ok
22:13:53.0221 2684 [ E455C83E029121270BED73CDAC381F37 ] IKEEXT C:\WINDOWS\System32\ikeext.dll
22:13:53.0238 2684 IKEEXT - ok
22:13:53.0249 2684 [ 4F37726CF764CA18A8A84F85EF3A7F24 ] intelide C:\WINDOWS\system32\drivers\intelide.sys
22:13:53.0250 2684 intelide - ok
22:13:53.0273 2684 [ E15CDF68DD73423F15D4AC404793AF0D ] intelppm C:\WINDOWS\System32\drivers\intelppm.sys
22:13:53.0274 2684 intelppm - ok
22:13:53.0286 2684 [ 8FCA66234A0933D796BB780B7953BAB9 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
22:13:53.0286 2684 IpFilterDriver - ok
22:13:53.0330 2684 [ C217B8D2E58C57A319B16125C3D4B69C ] iphlpsvc C:\WINDOWS\System32\iphlpsvc.dll
22:13:53.0345 2684 iphlpsvc - ok
22:13:53.0368 2684 [ 6E98A046A12AA113F8898AA5D612BD6E ] IPMIDRV C:\WINDOWS\System32\drivers\IPMIDrv.sys
22:13:53.0369 2684 IPMIDRV - ok
22:13:53.0390 2684 [ 3969B9C218DD3FAA9F4ED2FFC3651C02 ] IPNAT C:\WINDOWS\system32\drivers\ipnat.sys
22:13:53.0391 2684 IPNAT - ok
22:13:53.0409 2684 [ 25CD7C4BB2863FFC2B0B311F0AEBF77C ] IRENUM C:\WINDOWS\system32\drivers\irenum.sys
22:13:53.0410 2684 IRENUM - ok
22:13:53.0415 2684 [ D940C5BB9DC92E588533C19ABCC3D2C2 ] isapnp C:\WINDOWS\system32\drivers\isapnp.sys
22:13:53.0416 2684 isapnp - ok
22:13:53.0445 2684 [ 69C8BF0BC2B0EA10F130F4D3104DC2EF ] iScsiPrt C:\WINDOWS\System32\drivers\msiscsi.sys
22:13:53.0446 2684 iScsiPrt - ok
22:13:53.0459 2684 [ 8FBD94B69D6423E20ABCD59D86368B21 ] kbdclass C:\WINDOWS\System32\drivers\kbdclass.sys
22:13:53.0460 2684 kbdclass - ok
22:13:53.0466 2684 [ E88C932ABDF8185A62C8F2FC7B051FB6 ] kbdhid C:\WINDOWS\System32\drivers\kbdhid.sys
22:13:53.0467 2684 kbdhid - ok
22:13:53.0472 2684 [ FB6C185092E18011EF49989425C2AA87 ] kdnic C:\WINDOWS\system32\DRIVERS\kdnic.sys
22:13:53.0473 2684 kdnic - ok
22:13:53.0494 2684 [ F702AB6181513303AB0FC8D59E52708B ] KeyIso C:\WINDOWS\system32\lsass.exe
22:13:53.0495 2684 KeyIso - ok
22:13:53.0551 2684 [ 51F6FBE49CD2E8CB5EA96034134D8EDE ] ksaud C:\WINDOWS\system32\drivers\ksaud.sys
22:13:53.0559 2684 ksaud - ok
22:13:53.0590 2684 [ DFA480F6DED551464F3A5B959F437800 ] KSecDD C:\WINDOWS\system32\Drivers\ksecdd.sys
22:13:53.0591 2684 KSecDD - ok
22:13:53.0612 2684 [ 127FB0AAD232BAAD2C9BBACD374F4FC5 ] KSecPkg C:\WINDOWS\system32\Drivers\ksecpkg.sys
22:13:53.0614 2684 KSecPkg - ok
22:13:53.0619 2684 [ 81492FEEBF2F26455B00EE8DBAE8A1B0 ] ksthunk C:\WINDOWS\system32\drivers\ksthunk.sys
22:13:53.0620 2684 ksthunk - ok
22:13:53.0663 2684 [ 5825DBACEDC3812B5CF8D40B997BF210 ] KtmRm C:\WINDOWS\system32\msdtckrm.dll
22:13:53.0668 2684 KtmRm - ok
22:13:53.0697 2684 [ 256EE31588257E8A555DBFAA13F1908E ] LanmanServer C:\WINDOWS\system32\srvsvc.dll
22:13:53.0702 2684 LanmanServer - ok
22:13:53.0718 2684 [ 16650912BE5A94B40E0B3B4C39652B56 ] LanmanWorkstation C:\WINDOWS\System32\wkssvc.dll
22:13:53.0722 2684 LanmanWorkstation - ok
22:13:53.0746 2684 [ ADA0C09E8AEDC17F11D8E1731986A88A ] LightScribeService C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
22:13:53.0747 2684 LightScribeService - ok
22:13:53.0768 2684 [ CEEFD29FC551F289810B0B9381B321DC ] lltdio C:\WINDOWS\system32\DRIVERS\lltdio.sys
22:13:53.0769 2684 lltdio - ok
22:13:53.0793 2684 [ BCF53485E0A94722CDE3C4A93CD8EB8C ] lltdsvc C:\WINDOWS\System32\lltdsvc.dll
22:13:53.0797 2684 lltdsvc - ok
22:13:53.0812 2684 [ 5A2F7F1CBC2E631A497DAD16164E06D2 ] lmhosts C:\WINDOWS\System32\lmhsvc.dll
22:13:53.0814 2684 lmhosts - ok
22:13:53.0830 2684 [ 022CDD12161B063D7852B1075BF3FFF2 ] LSI_SAS C:\WINDOWS\system32\drivers\lsi_sas.sys
22:13:53.0831 2684 LSI_SAS - ok
22:13:53.0847 2684 [ 07AD59D669B996F29F91817F0ECFA34F ] LSI_SAS2 C:\WINDOWS\system32\drivers\lsi_sas2.sys
22:13:53.0848 2684 LSI_SAS2 - ok
22:13:53.0862 2684 [ 216FB796AA4E252ACCE93B1BCB80B5EC ] LSI_SCSI C:\WINDOWS\system32\drivers\lsi_scsi.sys
22:13:53.0863 2684 LSI_SCSI - ok
22:13:53.0875 2684 [ 5E80530AF37102488EE980B4A92AF99F ] LSI_SSS C:\WINDOWS\system32\drivers\lsi_sss.sys
22:13:53.0876 2684 LSI_SSS - ok
22:13:53.0902 2684 [ A57BA284F5996FFD32DCDBC41A4657DB ] LSM C:\WINDOWS\System32\lsm.dll
22:13:53.0907 2684 LSM - ok
22:13:53.0915 2684 [ 2BDC5D711FA61307CE6190D47C956368 ] luafv C:\WINDOWS\system32\drivers\luafv.sys
22:13:53.0916 2684 luafv - ok
22:13:53.0946 2684 [ A0A527569856B9814E8920F52EBB67F5 ] LVRS64 C:\WINDOWS\system32\DRIVERS\lvrs64.sys
22:13:53.0948 2684 LVRS64 - ok
22:13:54.0037 2684 [ 415E344294D1C0D04627B29146F68481 ] LVUVC64 C:\WINDOWS\system32\DRIVERS\lvuvc64.sys
22:13:54.0060 2684 LVUVC64 - ok
22:13:54.0080 2684 [ 9B0D829C3BE4E7472DB9DD2B79908E3C ] megasas C:\WINDOWS\system32\drivers\megasas.sys
22:13:54.0081 2684 megasas - ok
22:13:54.0104 2684 [ ECC3F54C7AFC318271C4F0B4606D8DB0 ] MegaSR C:\WINDOWS\system32\drivers\MegaSR.sys
22:13:54.0106 2684 MegaSR - ok
22:13:54.0133 2684 [ EEE908BE7143FCA48CF0CB87214E2AB8 ] MMCSS C:\WINDOWS\system32\mmcss.dll
22:13:54.0135 2684 MMCSS - ok
22:13:54.0152 2684 [ 780098AD5DA8A4822E2563984C85EF7B ] Modem C:\WINDOWS\system32\drivers\modem.sys
22:13:54.0152 2684 Modem - ok
22:13:54.0178 2684 [ EA8EAD3F5B762F889CC7F3966625B48B ] monitor C:\WINDOWS\System32\drivers\monitor.sys
22:13:54.0179 2684 monitor - ok
22:13:54.0194 2684 [ 618446B98C79776654340CE27C73485E ] mouclass C:\WINDOWS\System32\drivers\mouclass.sys
22:13:54.0194 2684 mouclass - ok
22:13:54.0217 2684 [ C0ADEBED913295803B579ED288936CBB ] mouhid C:\WINDOWS\System32\drivers\mouhid.sys
22:13:54.0218 2684 mouhid - ok
22:13:54.0225 2684 [ 89D263DBF08119CE16273991C120D6DD ] mountmgr C:\WINDOWS\system32\drivers\mountmgr.sys

Pokračování v příštím příspěvku
ASUS Prime Z390-P / Hexa Core Intel core i5 Coffee Lake-S / Gigabyte GeForce GTX 650 Ti / FORTRON BlueStorm Bronze 80PLUS / W 11

Uživatelský avatar
mmmartin
Moderátor
Elite Level 10
Elite Level 10
Příspěvky: 9641
Registrován: srpen 04
Bydliště: Praha
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu.

Příspěvekod mmmartin » 08 led 2014 22:28

22:13:54.0225 2684 [ 89D263DBF08119CE16273991C120D6DD ] mountmgr C:\WINDOWS\system32\drivers\mountmgr.sys
22:13:54.0226 2684 mountmgr - ok
22:13:54.0262 2684 [ E05FD9D5854A26A13D7F138F02BF2420 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
22:13:54.0263 2684 MozillaMaintenance - ok
22:13:54.0285 2684 [ 4CCBBD4944777CA100B9A6C2F149A46F ] mpsdrv C:\WINDOWS\system32\drivers\mpsdrv.sys
22:13:54.0286 2684 mpsdrv - ok
22:13:54.0307 2684 [ 9DE3341BD4E14BC5FADFCAD3019F2D0D ] MpsSvc C:\WINDOWS\system32\mpssvc.dll
22:13:54.0317 2684 MpsSvc - ok
22:13:54.0338 2684 [ 866AF645A3B1F4358C4201CE089839EA ] MQAC C:\WINDOWS\system32\drivers\mqac.sys
22:13:54.0339 2684 MQAC - ok
22:13:54.0358 2684 [ 3D70147F55F1EC84EB9139ED7FFE48BC ] MRxDAV C:\WINDOWS\system32\drivers\mrxdav.sys
22:13:54.0359 2684 MRxDAV - ok
22:13:54.0390 2684 [ 93179D48066918323628CB016D8C94DC ] mrxsmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
22:13:54.0393 2684 mrxsmb - ok
22:13:54.0425 2684 [ 06D5F2FA3C61E8EA91648EA8E9F99FD3 ] mrxsmb10 C:\WINDOWS\system32\DRIVERS\mrxsmb10.sys
22:13:54.0427 2684 mrxsmb10 - ok
22:13:54.0448 2684 [ 5C7DD2E5759FFCCD2C7341C1B90F2B26 ] mrxsmb20 C:\WINDOWS\system32\DRIVERS\mrxsmb20.sys
22:13:54.0449 2684 mrxsmb20 - ok
22:13:54.0477 2684 [ 98487487D6B3797CA927E9D7B030AE13 ] MsBridge C:\WINDOWS\system32\DRIVERS\bridge.sys
22:13:54.0478 2684 MsBridge - ok
22:13:54.0505 2684 [ 4A07458EB4F17573BD39F22029A991C1 ] MSDTC C:\WINDOWS\System32\msdtc.exe
22:13:54.0507 2684 MSDTC - ok
22:13:54.0530 2684 [ 3886F1F2A4D2900ABAA7E4486BEEE6A2 ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys
22:13:54.0530 2684 Msfs - ok
22:13:54.0554 2684 [ C32A7A39B960A42BA9D4FBE47213CA03 ] msgpiowin32 C:\WINDOWS\System32\drivers\msgpiowin32.sys
22:13:54.0554 2684 msgpiowin32 - ok
22:13:54.0567 2684 [ D3857A767B91A061B408CCAB02DA4F40 ] mshidkmdf C:\WINDOWS\System32\drivers\mshidkmdf.sys
22:13:54.0568 2684 mshidkmdf - ok
22:13:54.0586 2684 [ 839B48910FB1E887635C48F3EC11A05E ] mshidumdf C:\WINDOWS\System32\drivers\mshidumdf.sys
22:13:54.0586 2684 mshidumdf - ok
22:13:54.0592 2684 [ 55C0DB741E3AB7463242B185B1C2997C ] msisadrv C:\WINDOWS\system32\drivers\msisadrv.sys
22:13:54.0593 2684 msisadrv - ok
22:13:54.0616 2684 [ 216C6B035A4BA5560E1255BD8E5BB89F ] MSiSCSI C:\WINDOWS\system32\iscsiexe.dll
22:13:54.0619 2684 MSiSCSI - ok
22:13:54.0624 2684 msiserver - ok
22:13:54.0639 2684 [ 509809566E49F4411055864EA8D437CD ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys
22:13:54.0640 2684 MSKSSRV - ok
22:13:54.0658 2684 [ 63145201D6458E4958E572E7D6FC2604 ] MsLldp C:\WINDOWS\system32\DRIVERS\mslldp.sys
22:13:54.0658 2684 MsLldp - ok
22:13:54.0674 2684 [ 80FF037D6184FFACB2740A50C7949D20 ] MSMQ C:\WINDOWS\system32\mqsvc.exe
22:13:54.0676 2684 MSMQ - ok
22:13:54.0694 2684 [ 99D526E803DB6D7FF290FD98B6204641 ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys
22:13:54.0695 2684 MSPCLOCK - ok
22:13:54.0701 2684 [ 06FA77C3E2A491ADCD704C5E73006269 ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys
22:13:54.0701 2684 MSPQM - ok
22:13:54.0713 2684 [ E134EC4DE11CF78CB01432D180710D84 ] MsRPC C:\WINDOWS\system32\drivers\MsRPC.sys
22:13:54.0716 2684 MsRPC - ok
22:13:54.0724 2684 [ B5AECF12F09DEE97C9FCAA5BA016CE1E ] mssmbios C:\WINDOWS\System32\drivers\mssmbios.sys
22:13:54.0725 2684 mssmbios - ok
22:13:54.0764 2684 [ 72D66A05E0F99F2528F6C6204FD22AA1 ] MSTEE C:\WINDOWS\system32\drivers\MSTEE.sys
22:13:54.0765 2684 MSTEE - ok
22:13:54.0779 2684 [ 8AAAE399FC255FA105D4158CBA289001 ] MTConfig C:\WINDOWS\System32\drivers\MTConfig.sys
22:13:54.0780 2684 MTConfig - ok
22:13:54.0786 2684 [ 3BCB702F3E6CC622DCAFCAA45D7CDE0A ] Mup C:\WINDOWS\system32\Drivers\mup.sys
22:13:54.0787 2684 Mup - ok
22:13:54.0801 2684 [ 3A1E095277BBD406CEA8EA6B76950664 ] mvumis C:\WINDOWS\system32\drivers\mvumis.sys
22:13:54.0802 2684 mvumis - ok
22:13:54.0839 2684 [ 4B18840511D720BA118D3017E8165875 ] napagent C:\WINDOWS\system32\qagentRT.dll
22:13:54.0845 2684 napagent - ok
22:13:54.0868 2684 [ 43D7388A90A4C6EA346A4D6FF0377479 ] NativeWifiP C:\WINDOWS\system32\DRIVERS\nwifi.sys
22:13:54.0871 2684 NativeWifiP - ok
22:13:54.0899 2684 [ 6A0C3996DA7DAE6D6939676D786EEEC4 ] NcaSvc C:\WINDOWS\System32\ncasvc.dll
22:13:54.0902 2684 NcaSvc - ok
22:13:54.0916 2684 [ C982FE4CC91DECE2259F494FCEB4030F ] NcdAutoSetup C:\WINDOWS\System32\NcdAutoSetup.dll
22:13:54.0919 2684 NcdAutoSetup - ok
22:13:54.0958 2684 [ A10E176F3B2BF83EDE7B5C4658C93B66 ] NDIS C:\WINDOWS\system32\drivers\ndis.sys
22:13:54.0964 2684 NDIS - ok
22:13:54.0975 2684 [ 39C8A1D9D46F5E83A016BCAB72455284 ] NdisCap C:\WINDOWS\system32\DRIVERS\ndiscap.sys
22:13:54.0976 2684 NdisCap - ok
22:13:54.0989 2684 [ 762941932B7E4C588E48A577BA9D6440 ] NdisImPlatform C:\WINDOWS\system32\DRIVERS\NdisImPlatform.sys
22:13:54.0990 2684 NdisImPlatform - ok
22:13:55.0016 2684 [ 7A6F8A6D0E01432EBA294EF29CDD0FA7 ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys
22:13:55.0017 2684 NdisTapi - ok
22:13:55.0028 2684 [ 79AB68BB3FFF974AD4F41FA559F4EC67 ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys
22:13:55.0029 2684 Ndisuio - ok
22:13:55.0045 2684 [ 62C7DBF4F9301F76CF87D4B9D8F57BF8 ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys
22:13:55.0047 2684 NdisWan - ok
22:13:55.0052 2684 [ 62C7DBF4F9301F76CF87D4B9D8F57BF8 ] NDISWANLEGACY C:\WINDOWS\system32\DRIVERS\ndiswan.sys
22:13:55.0053 2684 NDISWANLEGACY - ok
22:13:55.0070 2684 [ 3730942D7DB2F8BB5F84542B7FF6F650 ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys
22:13:55.0071 2684 NDProxy - ok
22:13:55.0094 2684 [ D3F60A4345FCA9C1BE68AD7D0D6DE770 ] Ndu C:\WINDOWS\system32\drivers\Ndu.sys
22:13:55.0095 2684 Ndu - ok
22:13:55.0109 2684 [ 7C203A76394F9AE68F69EEE5F9612C4A ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys
22:13:55.0110 2684 NetBIOS - ok
22:13:55.0119 2684 [ 7CEC25C682D319D484630B3952C31A11 ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys
22:13:55.0121 2684 NetBT - ok
22:13:55.0144 2684 [ F702AB6181513303AB0FC8D59E52708B ] Netlogon C:\WINDOWS\system32\lsass.exe
22:13:55.0145 2684 Netlogon - ok
22:13:55.0169 2684 [ 89519D29CBEC2121CA65CC29C4D345E0 ] Netman C:\WINDOWS\System32\netman.dll
22:13:55.0173 2684 Netman - ok
22:13:55.0224 2684 [ 5243CFC2E7161C91C2B355240035B9E4 ] NetMsmqActivator C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
22:13:55.0247 2684 NetMsmqActivator - ok
22:13:55.0252 2684 [ 5243CFC2E7161C91C2B355240035B9E4 ] NetPipeActivator C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
22:13:55.0253 2684 NetPipeActivator - ok
22:13:55.0281 2684 [ 79FA9393C67EBBF92A56923592CF7A7C ] netprofm C:\WINDOWS\System32\netprofmsvc.dll
22:13:55.0288 2684 netprofm - ok
22:13:55.0293 2684 [ 5243CFC2E7161C91C2B355240035B9E4 ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
22:13:55.0294 2684 NetTcpActivator - ok
22:13:55.0300 2684 [ 5243CFC2E7161C91C2B355240035B9E4 ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
22:13:55.0301 2684 NetTcpPortSharing - ok
22:13:55.0328 2684 [ 12DD2800E4EEA37DC9AE256AD62423B4 ] nfrd960 C:\WINDOWS\system32\drivers\nfrd960.sys
22:13:55.0329 2684 nfrd960 - ok
22:13:55.0362 2684 [ 80ABCD4C2DE9FD832477303AE0CA3BE5 ] NlaSvc C:\WINDOWS\System32\nlasvc.dll
22:13:55.0366 2684 NlaSvc - ok
22:13:55.0384 2684 [ 17E19A742FB30C002F8B43575451DBE1 ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys
22:13:55.0385 2684 Npfs - ok
22:13:55.0392 2684 [ 8ED299C30792544264E558BEA79F0947 ] npsvctrig C:\WINDOWS\System32\drivers\npsvctrig.sys
22:13:55.0393 2684 npsvctrig - ok
22:13:55.0412 2684 [ 832B5FDF0B5577713FD7F2465FCD0ACE ] nsi C:\WINDOWS\system32\nsisvc.dll
22:13:55.0414 2684 nsi - ok
22:13:55.0420 2684 [ 689B3B1E95C70ABF7AFF29F9406EF1E0 ] nsiproxy C:\WINDOWS\system32\drivers\nsiproxy.sys
22:13:55.0421 2684 nsiproxy - ok
22:13:55.0459 2684 [ 76929F4A69E425911A63B407E26C2589 ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys
22:13:55.0468 2684 Ntfs - ok
22:13:55.0482 2684 [ 4163ADE07DB51843AE31F65B94F5398D ] Null C:\WINDOWS\system32\drivers\Null.sys
22:13:55.0483 2684 Null - ok
22:13:55.0516 2684 [ 554964B900AE2954B8B589B6287034AC ] NVHDA C:\WINDOWS\system32\drivers\nvhda64v.sys
22:13:55.0518 2684 NVHDA - ok
22:13:55.0701 2684 [ F554291C0A11F5B713B54C5886D4AA31 ] nvlddmkm C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys
22:13:55.0759 2684 nvlddmkm - ok
22:13:55.0825 2684 [ 1C7C6D7481CABD4EF38A81F5B68F02E8 ] NvNetworkService C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
22:13:55.0833 2684 NvNetworkService - ok
22:13:55.0853 2684 [ D6D34118263412D3AAA8348A9572B7F2 ] nvraid C:\WINDOWS\system32\drivers\nvraid.sys
22:13:55.0855 2684 nvraid - ok
22:13:55.0885 2684 [ 27AFC428D1D32ABD04A86763A4EDDEA9 ] nvstor C:\WINDOWS\system32\drivers\nvstor.sys
22:13:55.0886 2684 nvstor - ok
22:13:56.0159 2684 [ 7A03646D5330A790A9D47D9F9C38758D ] NvStreamSvc C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
22:13:56.0229 2684 NvStreamSvc - ok
22:13:56.0263 2684 [ 8E99BF264C1F20934A67E91BC9F4FB20 ] nvsvc C:\WINDOWS\system32\nvvsvc.exe
22:13:56.0269 2684 nvsvc - ok
22:13:56.0290 2684 [ 09216A70CC364D0974F606F6F2109210 ] nvvad_WaveExtensible C:\WINDOWS\system32\drivers\nvvad64v.sys
22:13:56.0291 2684 nvvad_WaveExtensible - ok
22:13:56.0325 2684 [ 051CFB5107BAAE510419BDC41F8C4036 ] nv_agp C:\WINDOWS\system32\drivers\nv_agp.sys
22:13:56.0326 2684 nv_agp - ok
22:13:56.0376 2684 [ 785F487A64950F3CB8E9F16253BA3B7B ] odserv C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
22:13:56.0379 2684 odserv - ok
22:13:56.0401 2684 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
22:13:56.0402 2684 ose - ok
22:13:56.0427 2684 [ AB76700D764A342D7475FB8F47CAB18C ] p2pimsvc C:\WINDOWS\system32\pnrpsvc.dll
22:13:56.0431 2684 p2pimsvc - ok
22:13:56.0461 2684 [ 4319FD931DCD796435ECB5DB4A04FBA5 ] p2psvc C:\WINDOWS\system32\p2psvc.dll
22:13:56.0467 2684 p2psvc - ok
22:13:56.0489 2684 [ 4563DAF8C6A740AD7F501E219BD10766 ] Parport C:\WINDOWS\System32\drivers\parport.sys
22:13:56.0490 2684 Parport - ok
22:13:56.0510 2684 [ D6ACCF9F2EEEEA711C14EFD976E573F3 ] partmgr C:\WINDOWS\system32\drivers\partmgr.sys
22:13:56.0511 2684 partmgr - ok
22:13:56.0541 2684 [ 4811D9EC53649105A5A8BEA661B0F936 ] PcaSvc C:\WINDOWS\System32\pcasvc.dll
22:13:56.0547 2684 PcaSvc - ok
22:13:56.0565 2684 [ 4A003E8F718C1E6A2050CA98CD53E3E2 ] pci C:\WINDOWS\system32\drivers\pci.sys
22:13:56.0567 2684 pci - ok
22:13:56.0573 2684 [ F9908D274D458220F91E89B54D78D837 ] pciide C:\WINDOWS\system32\drivers\pciide.sys
22:13:56.0574 2684 pciide - ok
22:13:56.0594 2684 [ 84D19CB6102627932DCB5DFDF89FE269 ] pcmcia C:\WINDOWS\system32\drivers\pcmcia.sys
22:13:56.0596 2684 pcmcia - ok
22:13:56.0602 2684 [ CEBBAD5391C2644560C55628A40BFD27 ] pcw C:\WINDOWS\system32\drivers\pcw.sys
22:13:56.0603 2684 pcw - ok
22:13:56.0634 2684 [ 0698DEDEAD6A00AD0D468C687D830FBF ] pdc C:\WINDOWS\system32\drivers\pdc.sys
22:13:56.0635 2684 pdc - ok
22:13:56.0675 2684 [ 61FE70659CD43E07F94DA4DC31DEC493 ] PEAUTH C:\WINDOWS\system32\drivers\peauth.sys
22:13:56.0679 2684 PEAUTH - ok
22:13:56.0726 2684 [ DF0D9BDCB600913F40FF125BF8CE1979 ] PeerDistSvc C:\WINDOWS\system32\peerdistsvc.dll
22:13:56.0761 2684 PeerDistSvc - ok
22:13:56.0838 2684 [ EB88FA19F0EA05DD04BE9C5FFEEFFE1A ] PerfHost C:\WINDOWS\SysWow64\perfhost.exe
22:13:56.0840 2684 PerfHost - ok
22:13:56.0880 2684 [ 6E84BFF58F7643499277F29DFA2F8C8D ] pla C:\WINDOWS\system32\pla.dll
22:13:56.0906 2684 pla - ok
22:13:56.0925 2684 [ 799BE46D45D486704CE0F37CA5385262 ] PlugPlay C:\WINDOWS\system32\umpnpmgr.dll
22:13:56.0927 2684 PlugPlay - ok
22:13:56.0941 2684 [ 8E2414E818C26C4A9C70CB2B8567F04F ] PNRPAutoReg C:\WINDOWS\system32\pnrpauto.dll
22:13:56.0943 2684 PNRPAutoReg - ok
22:13:56.0960 2684 [ AB76700D764A342D7475FB8F47CAB18C ] PNRPsvc C:\WINDOWS\system32\pnrpsvc.dll
22:13:56.0963 2684 PNRPsvc - ok
22:13:56.0983 2684 [ 0108C8E5176D590F242701EF5A62CC26 ] PolicyAgent C:\WINDOWS\System32\ipsecsvc.dll
22:13:56.0988 2684 PolicyAgent - ok
22:13:57.0019 2684 [ F1E067F56373F11EA4B785CAE823740A ] Power C:\WINDOWS\system32\umpo.dll
22:13:57.0021 2684 Power - ok
22:13:57.0042 2684 [ 362D47E5B4D67270DE4B8606036F4ADD ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys
22:13:57.0043 2684 PptpMiniport - ok
22:13:57.0124 2684 [ 9D59831262CAD44E709D695FC9D5E7AB ] PrintNotify C:\Windows\system32\spool\DRIVERS\x64\3\PrintConfig.dll
22:13:57.0159 2684 PrintNotify - ok
22:13:57.0184 2684 [ DD979EB6A7212F60E4AFBE96EDC7AE6D ] Processor C:\WINDOWS\System32\drivers\processr.sys
22:13:57.0185 2684 Processor - ok
22:13:57.0205 2684 [ 429E8502AD2227CF88F8840FC5BD590D ] ProfSvc C:\WINDOWS\system32\profsvc.dll
22:13:57.0209 2684 ProfSvc - ok
22:13:57.0221 2684 [ EB8034147D4820CD31BFCB11A2A652DF ] Psched C:\WINDOWS\system32\DRIVERS\pacer.sys
22:13:57.0222 2684 Psched - ok
22:13:57.0284 2684 [ 543A4EF0923BF70D126625B034EF25AF ] PSI_SVC_2 c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
22:13:57.0285 2684 PSI_SVC_2 - ok
22:13:57.0306 2684 [ 0AFBF333B6F87A2F598EAB379AF100B8 ] QWAVE C:\WINDOWS\system32\qwave.dll
22:13:57.0310 2684 QWAVE - ok
22:13:57.0324 2684 [ 13D47BB0CCA2FC51BD15F8E85C6A078E ] QWAVEdrv C:\WINDOWS\system32\drivers\qwavedrv.sys
22:13:57.0325 2684 QWAVEdrv - ok
22:13:57.0341 2684 [ 873C60F8178100557740A832FCE10B5F ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys
22:13:57.0341 2684 RasAcd - ok
22:13:57.0361 2684 [ 69B93F623B130976243ECA3D84CC99CA ] RasAgileVpn C:\WINDOWS\system32\DRIVERS\AgileVpn.sys
22:13:57.0361 2684 RasAgileVpn - ok
22:13:57.0378 2684 [ 005F6E54C4A2DA4EBF68FB0392CE8BB0 ] RasAuto C:\WINDOWS\System32\rasauto.dll
22:13:57.0381 2684 RasAuto - ok
22:13:57.0401 2684 [ A14D625C5AEE5FFE0F47D1A1D419FAAE ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
22:13:57.0403 2684 Rasl2tp - ok
22:13:57.0419 2684 [ C923C785A2DE0B396AD6D13ACAFF2DE9 ] RasMan C:\WINDOWS\System32\rasmans.dll
22:13:57.0424 2684 RasMan - ok
22:13:57.0440 2684 [ 00695B9C2DB6111064499C529E90C042 ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys
22:13:57.0441 2684 RasPppoe - ok
22:13:57.0448 2684 [ A7F24D8CD1956B0A1FDCB86CC5114DE4 ] RasSstp C:\WINDOWS\system32\DRIVERS\rassstp.sys
22:13:57.0449 2684 RasSstp - ok
22:13:57.0478 2684 [ CA03D642ACE58E1BA54E4B383F91CD69 ] rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys
22:13:57.0480 2684 rdbss - ok
22:13:57.0490 2684 [ CA7DF5EC95D8DE0DD24BE7FF97369F68 ] rdpbus C:\WINDOWS\System32\drivers\rdpbus.sys
22:13:57.0490 2684 rdpbus - ok
22:13:57.0522 2684 [ B2A3AD74FF2E2FFA73AF2567108231B3 ] RDPDR C:\WINDOWS\system32\drivers\rdpdr.sys
22:13:57.0524 2684 RDPDR - ok
22:13:57.0549 2684 [ 57F4787E4602A3FCA719C0A33137C6DA ] RdpVideoMiniport C:\WINDOWS\system32\drivers\rdpvideominiport.sys
22:13:57.0550 2684 RdpVideoMiniport - ok
22:13:57.0570 2684 [ B3CB0721E81E30419CE7D837EF4EA151 ] RDPWD C:\WINDOWS\system32\drivers\RDPWD.sys
22:13:57.0572 2684 RDPWD - ok
22:13:57.0580 2684 [ 62C1F8A0685FE07E998AA296C4F697C4 ] rdyboost C:\WINDOWS\system32\drivers\rdyboost.sys
22:13:57.0582 2684 rdyboost - ok
22:13:57.0614 2684 [ 3663CCF243EE0C04E9F6F91ED1737273 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll
22:13:57.0616 2684 RemoteAccess - ok
22:13:57.0650 2684 [ E80DD61E52EDFFF9DA1ED7260A68855B ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll
22:13:57.0654 2684 RemoteRegistry - ok
22:13:57.0693 2684 [ CCBFCABDFE2BC22F0645CEAADDB36004 ] RFCOMM C:\WINDOWS\System32\drivers\rfcomm.sys
22:13:57.0695 2684 RFCOMM - ok
22:13:57.0718 2684 [ 73F2E030B5C24E4E41401B5F0D59E6FD ] RpcEptMapper C:\WINDOWS\System32\RpcEpMap.dll
22:13:57.0721 2684 RpcEptMapper - ok
22:13:57.0745 2684 [ 10B21284B3D964AB3DC45490E57D422E ] RpcLocator C:\WINDOWS\system32\locator.exe
22:13:57.0746 2684 RpcLocator - ok
22:13:57.0771 2684 [ 1EC6E533C954BDDF2A37E7851A7E58FD ] RpcSs C:\WINDOWS\system32\rpcss.dll
22:13:57.0776 2684 RpcSs - ok
22:13:57.0785 2684 [ E04E770DD198B9399640717145E79EBF ] rspndr C:\WINDOWS\system32\DRIVERS\rspndr.sys
22:13:57.0786 2684 rspndr - ok
22:13:57.0838 2684 [ 15923AA360F7675D3D43C9669316A0BA ] RTL8168 C:\WINDOWS\system32\DRIVERS\Rt630x64.sys
22:13:57.0841 2684 RTL8168 - ok
22:13:57.0864 2684 [ 752EC7DCD2F96871A3857EEE6AFE965A ] s3cap C:\WINDOWS\System32\drivers\vms3cap.sys
22:13:57.0865 2684 s3cap - ok
22:13:57.0885 2684 [ F702AB6181513303AB0FC8D59E52708B ] SamSs C:\WINDOWS\system32\lsass.exe
22:13:57.0886 2684 SamSs - ok
22:13:57.0900 2684 [ 9C7B28CE0D136DB226E24DB3BC817F92 ] sbp2port C:\WINDOWS\system32\drivers\sbp2port.sys
22:13:57.0901 2684 sbp2port - ok
22:13:57.0923 2684 [ 14316954FCE79C9DE5A0AFF9D42C83AA ] SCardSvr C:\WINDOWS\System32\SCardSvr.dll
22:13:57.0927 2684 SCardSvr - ok
22:13:57.0937 2684 [ 5D7733A12756B267FCA021672B26BC9E ] scfilter C:\WINDOWS\system32\DRIVERS\scfilter.sys
22:13:57.0938 2684 scfilter - ok
22:13:57.0981 2684 [ ED40ED9A65F3E79A8C43DD50C5FDADBF ] Schedule C:\WINDOWS\system32\schedsvc.dll
22:13:58.0008 2684 Schedule - ok
22:13:58.0045 2684 [ BAF8F0F55BC300E5F882E521F054E345 ] SCPolicySvc C:\WINDOWS\System32\certprop.dll
22:13:58.0046 2684 SCPolicySvc - ok
22:13:58.0071 2684 [ F58B030A0664385C707B8C1C63682041 ] sdbus C:\WINDOWS\System32\drivers\sdbus.sys
22:13:58.0072 2684 sdbus - ok
22:13:58.0104 2684 [ 92968277ED491E4B3DDA361E3952361E ] SDRSVC C:\WINDOWS\System32\SDRSVC.dll
22:13:58.0107 2684 SDRSVC - ok
22:13:58.0135 2684 [ BB107AA9980B0DA4E19A3A90C3BD4460 ] sdstor C:\WINDOWS\System32\drivers\sdstor.sys
22:13:58.0135 2684 sdstor - ok
22:13:58.0152 2684 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\WINDOWS\system32\drivers\secdrv.sys
22:13:58.0152 2684 secdrv - ok
22:13:58.0167 2684 [ CD282626738B6BC92B6E7CD0AAE95B63 ] seclogon C:\WINDOWS\system32\seclogon.dll
22:13:58.0169 2684 seclogon - ok
22:13:58.0181 2684 [ 9C51620998F0763039DFA6BF68E475ED ] SENS C:\WINDOWS\System32\sens.dll
22:13:58.0184 2684 SENS - ok
22:13:58.0203 2684 [ 0D50B4B860DAB65241628D04CD33ACAE ] SensrSvc C:\WINDOWS\system32\sensrsvc.dll
22:13:58.0206 2684 SensrSvc - ok
22:13:58.0223 2684 [ 87C46B239A7EEF30FDFDD5E9BD46130C ] SerCx C:\WINDOWS\system32\drivers\SerCx.sys
22:13:58.0224 2684 SerCx - ok
22:13:58.0229 2684 [ 7A1F9347C85FD55E39B8A76B3A25C5AD ] Serenum C:\WINDOWS\System32\drivers\serenum.sys
22:13:58.0230 2684 Serenum - ok
22:13:58.0237 2684 [ F640A0A218BBF857F1D04A15D7D939F6 ] Serial C:\WINDOWS\System32\drivers\serial.sys
22:13:58.0238 2684 Serial - ok
22:13:58.0250 2684 [ F1A5F56B2620B862CC28FF96A0A6DAAB ] sermouse C:\WINDOWS\System32\drivers\sermouse.sys
22:13:58.0250 2684 sermouse - ok
22:13:58.0279 2684 [ CB60A60340788C8D6DE2A269D28086AB ] SessionEnv C:\WINDOWS\system32\sessenv.dll
22:13:58.0284 2684 SessionEnv - ok
22:13:58.0299 2684 [ 7EE65419B29302C795714FF8073969A1 ] sfloppy C:\WINDOWS\System32\drivers\sfloppy.sys
22:13:58.0300 2684 sfloppy - ok
22:13:58.0331 2684 [ 090AE16F79C8EAD04E6031F863DA85F3 ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll
22:13:58.0337 2684 SharedAccess - ok
22:13:58.0370 2684 [ A77F3ABE13FCC698511E5DEC7ACEBD5F ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
22:13:58.0377 2684 ShellHWDetection - ok
22:13:58.0399 2684 [ 2560721D6F16D5B611C36A3A9D28C1B2 ] SiSRaid2 C:\WINDOWS\system32\drivers\SiSRaid2.sys
22:13:58.0400 2684 SiSRaid2 - ok
22:13:58.0412 2684 [ 3AA8FDE1DBF65BB8B88B053529554A0D ] SiSRaid4 C:\WINDOWS\system32\drivers\sisraid4.sys
22:13:58.0413 2684 SiSRaid4 - ok
22:13:58.0439 2684 [ F5BBEDF602C310B00036EB2DBF4348A5 ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
22:13:58.0440 2684 SkypeUpdate - ok
22:13:58.0459 2684 [ E660156A4588A84305CB772FD2C0DB21 ] SNMPTRAP C:\WINDOWS\System32\snmptrap.exe
22:13:58.0461 2684 SNMPTRAP - ok
22:13:58.0490 2684 [ 9110193D93960E38B8692E4519C75D72 ] spaceport C:\WINDOWS\system32\drivers\spaceport.sys
22:13:58.0492 2684 spaceport - ok
22:13:58.0504 2684 [ 3D8679C8DF52EB26EB7583A4E0A29202 ] SpbCx C:\WINDOWS\system32\drivers\SpbCx.sys
22:13:58.0505 2684 SpbCx - ok
22:13:58.0580 2684 [ 12583AF6CBE0050651EAF2723B3AD7B3 ] speedfan C:\WINDOWS\syswow64\speedfan.sys
22:13:58.0582 2684 speedfan - ok
22:13:58.0606 2684 [ 3F215BF2D4D8D6756298B25B579772C2 ] Spooler C:\WINDOWS\System32\spoolsv.exe
22:13:58.0611 2684 Spooler - ok
22:13:58.0698 2684 [ 061A977C920FBE4BF71FF47C966DDDCA ] sppsvc C:\WINDOWS\system32\sppsvc.exe
22:13:58.0722 2684 sppsvc - ok
22:13:58.0753 2684 [ 0F1FCD575A03ABDE13FCA9D0ADE4DDA6 ] srv C:\WINDOWS\system32\DRIVERS\srv.sys
22:13:58.0755 2684 srv - ok
22:13:58.0798 2684 [ 56218A571ECF8D55E0CDFF8DF2546CF1 ] srv2 C:\WINDOWS\system32\DRIVERS\srv2.sys
22:13:58.0802 2684 srv2 - ok
22:13:58.0817 2684 [ 14FC338B80CFF7E04215133B568D15C4 ] srvnet C:\WINDOWS\system32\DRIVERS\srvnet.sys
22:13:58.0819 2684 srvnet - ok
22:13:58.0840 2684 [ 7A20882D76D4A78240A5AC9F2C2EBA21 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll
22:13:58.0845 2684 SSDPSRV - ok
22:13:58.0860 2684 [ D233B16999A8E626F6004BD7814C57EC ] SstpSvc C:\WINDOWS\system32\sstpsvc.dll
22:13:58.0863 2684 SstpSvc - ok
22:13:58.0908 2684 [ 49D9C17FDDFAC66F27FA735E94923216 ] Stereo Service C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
22:13:58.0911 2684 Stereo Service - ok
22:13:58.0938 2684 [ 4E85355B94CFCB67C135F6521A4895A7 ] stexstor C:\WINDOWS\system32\drivers\stexstor.sys
22:13:58.0939 2684 stexstor - ok
22:13:58.0961 2684 [ BAC8A721736AECC55A4F71523AEAB65F ] stisvc C:\WINDOWS\System32\wiaservc.dll
22:13:58.0968 2684 stisvc - ok
22:13:58.0996 2684 [ B240874B2CA0CD02E8CD11E140B14C57 ] storahci C:\WINDOWS\system32\drivers\storahci.sys
22:13:58.0997 2684 storahci - ok
22:13:59.0014 2684 [ F74DBC95A57B1EE866D3732EB5F79BE2 ] storflt C:\WINDOWS\system32\DRIVERS\vmstorfl.sys
22:13:59.0015 2684 storflt - ok
22:13:59.0031 2684 [ 5337E138B49ED1F44CCBA4073BC35C20 ] StorSvc C:\WINDOWS\system32\storsvc.dll
22:13:59.0033 2684 StorSvc - ok
22:13:59.0045 2684 [ 543CD3CC0E05B8D8815E0D4F040B6F59 ] storvsc C:\WINDOWS\system32\drivers\storvsc.sys
22:13:59.0046 2684 storvsc - ok
22:13:59.0060 2684 [ 1A36AC469140F87CDE62D7F8524E270C ] storvsp C:\WINDOWS\System32\drivers\storvsp.sys
22:13:59.0061 2684 storvsp - ok
22:13:59.0067 2684 [ 8BC1C1ED6EF9C985A3FAA6A72F41679A ] svsvc C:\WINDOWS\system32\svsvc.dll
22:13:59.0069 2684 svsvc - ok
22:13:59.0079 2684 [ 4AFD66AAE74FFB5986BC240744DC5FC9 ] swenum C:\WINDOWS\System32\drivers\swenum.sys
22:13:59.0080 2684 swenum - ok
22:13:59.0100 2684 [ 502F9488540051F3E6C39889ECFA76BB ] swprv C:\WINDOWS\System32\swprv.dll
22:13:59.0107 2684 swprv - ok
22:13:59.0149 2684 [ A06CB9269D29EE3D0F3F5630ABB660B8 ] SysMain C:\WINDOWS\system32\sysmain.dll
22:13:59.0175 2684 SysMain - ok
22:13:59.0206 2684 [ 6FB88606C4A71E1BFAF97D63A676C673 ] SystemEventsBroker C:\WINDOWS\System32\SystemEventsBrokerServer.dll
22:13:59.0209 2684 SystemEventsBroker - ok
22:13:59.0226 2684 [ A6C06C45C44AD06C70AF8899AEC15BDC ] TabletInputService C:\WINDOWS\System32\TabSvc.dll
22:13:59.0228 2684 TabletInputService - ok
22:13:59.0244 2684 [ 88B7721AB551C4325036B25A34A2BF7B ] TapiSrv C:\WINDOWS\System32\tapisrv.dll
22:13:59.0249 2684 TapiSrv - ok
22:13:59.0299 2684 [ 37D85E873C9531A2F88DD9C63D3F8A9E ] Tcpip C:\WINDOWS\system32\drivers\tcpip.sys
22:13:59.0310 2684 Tcpip - ok
22:13:59.0349 2684 [ 37D85E873C9531A2F88DD9C63D3F8A9E ] TCPIP6 C:\WINDOWS\system32\DRIVERS\tcpip.sys
22:13:59.0360 2684 TCPIP6 - ok
22:13:59.0380 2684 [ 8F2A13A5DF99D72FDDE87F502A66F989 ] tcpipreg C:\WINDOWS\system32\drivers\tcpipreg.sys
22:13:59.0380 2684 tcpipreg - ok
22:13:59.0390 2684 [ 73DC722CE5DF26D7638CE2446F2655C7 ] tdx C:\WINDOWS\system32\DRIVERS\tdx.sys
22:13:59.0391 2684 tdx - ok
22:13:59.0483 2684 [ F67C21CC4195F6AFC447418FE163E156 ] TeamViewer8 C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
22:13:59.0507 2684 TeamViewer8 - ok
22:13:59.0527 2684 [ F7C8AB5D8AFFAA318D6A21093D139BF4 ] terminpt C:\WINDOWS\System32\drivers\terminpt.sys
22:13:59.0528 2684 terminpt - ok
22:13:59.0562 2684 [ 541EE228D0DEF392F7B2DFD885DD021B ] TermService C:\WINDOWS\System32\termsrv.dll
22:13:59.0571 2684 TermService - ok
22:13:59.0596 2684 [ 519A6F672FFF56B7D8EE8C730CEC8ECD ] Themes C:\WINDOWS\system32\themeservice.dll
22:13:59.0599 2684 Themes - ok
22:13:59.0625 2684 [ EEE908BE7143FCA48CF0CB87214E2AB8 ] THREADORDER C:\WINDOWS\system32\mmcss.dll
22:13:59.0627 2684 THREADORDER - ok
22:13:59.0656 2684 [ 4515B9E4140F04FB3907692DF89FCA87 ] TimeBroker C:\WINDOWS\System32\TimeBrokerServer.dll
22:13:59.0659 2684 TimeBroker - ok
22:13:59.0684 2684 [ E94F7A7B48C7638D1F3F8089344C97B7 ] TPM C:\WINDOWS\system32\drivers\tpm.sys
22:13:59.0686 2684 TPM - ok
22:13:59.0697 2684 [ 8C8CF3041B27E7657ADD0EE17F6DBFCA ] TrkWks C:\WINDOWS\System32\trkwks.dll
22:13:59.0700 2684 TrkWks - ok
22:13:59.0722 2684 [ B66EE1D68197DFB9AA24F961E68ACDCC ] trufos C:\WINDOWS\system32\drivers\trufos.sys
22:13:59.0725 2684 trufos - ok
22:13:59.0759 2684 [ 8ABBB5CE0C62E0A6D28F32F44B7F865C ] TrustedInstaller C:\WINDOWS\servicing\TrustedInstaller.exe
22:13:59.0760 2684 TrustedInstaller - ok
22:13:59.0777 2684 [ 4E7C5FB10A50435523DE0CAA37DE2BD3 ] TsUsbFlt C:\WINDOWS\system32\drivers\tsusbflt.sys
22:13:59.0778 2684 TsUsbFlt - ok
22:13:59.0789 2684 [ 16D684A820872EE54F6370703AC0B513 ] TsUsbGD C:\WINDOWS\System32\drivers\TsUsbGD.sys
22:13:59.0790 2684 TsUsbGD - ok
22:13:59.0864 2684 [ 1433DCC7F0785EA1DB1608EA9F86CCBB ] TuneUp.UtilitiesSvc C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe
22:13:59.0874 2684 TuneUp.UtilitiesSvc - ok
22:13:59.0885 2684 [ 45427C4B8CAC6B241478F149B935CD80 ] TuneUpUtilitiesDrv C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver64.sys
22:13:59.0886 2684 TuneUpUtilitiesDrv - ok
22:13:59.0905 2684 [ 78C9EE193AC2B4CBDBC48B620314D740 ] tunnel C:\WINDOWS\system32\DRIVERS\tunnel.sys
22:13:59.0906 2684 tunnel - ok
22:13:59.0922 2684 [ 6D4F67CA56ACA2085DFA2CD89EAFBC1A ] uagp35 C:\WINDOWS\system32\drivers\uagp35.sys
22:13:59.0923 2684 uagp35 - ok
22:13:59.0943 2684 [ 6FD6D03B7752C78712E5CFF29A305026 ] UASPStor C:\WINDOWS\System32\drivers\uaspstor.sys
22:13:59.0944 2684 UASPStor - ok
22:13:59.0973 2684 [ 061BA3EE0D2BE17944990544008CF190 ] UCX01000 C:\WINDOWS\System32\drivers\ucx01000.sys
22:13:59.0974 2684 UCX01000 - ok
22:14:00.0009 2684 [ 25C50F4EDF70D0A831E0566BD181CCF2 ] udfs C:\WINDOWS\system32\DRIVERS\udfs.sys
22:14:00.0011 2684 udfs - ok
22:14:00.0035 2684 [ FB3475FEA1CCB0DAEA1EBE44D0E3BB7D ] UI0Detect C:\WINDOWS\system32\UI0Detect.exe
22:14:00.0037 2684 UI0Detect - ok
22:14:00.0042 2684 ULCDRHlp - ok
22:14:00.0074 2684 [ 332D341D92B933600D41953B08360DFB ] UleadBurningHelper C:\Program Files (x86)\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
22:14:00.0075 2684 UleadBurningHelper - ok
22:14:00.0086 2684 [ 07FEBCDF24FABA0D47B635D85A0FFB7A ] uliagpkx C:\WINDOWS\system32\drivers\uliagpkx.sys
22:14:00.0087 2684 uliagpkx - ok
22:14:00.0103 2684 [ 02CEB3FE6152668A7BA420B93B664860 ] umbus C:\WINDOWS\System32\drivers\umbus.sys
22:14:00.0104 2684 umbus - ok
22:14:00.0123 2684 [ 991EE6B5FC41EAEF99C8AF5B92F2CA09 ] UmPass C:\WINDOWS\System32\drivers\umpass.sys
22:14:00.0124 2684 UmPass - ok
22:14:00.0143 2684 [ 43FEFB040A0CC30F795FBF544169594D ] UmRdpService C:\WINDOWS\System32\umrdp.dll
22:14:00.0148 2684 UmRdpService - ok
22:14:00.0176 2684 [ 67A95B9D129ED5399E7965CD09CF30E7 ] UMVPFSrv C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe
22:14:00.0179 2684 UMVPFSrv - ok
22:14:00.0203 2684 [ 14D22C411854AA2560AFC94CD2D5E61F ] upnphost C:\WINDOWS\System32\upnphost.dll
22:14:00.0210 2684 upnphost - ok
22:14:00.0241 2684 [ 9E9F21FF91D7ECC0BCCB94D3FE52A959 ] usbaudio C:\WINDOWS\system32\drivers\usbaudio.sys
22:14:00.0243 2684 usbaudio - ok
22:14:00.0271 2684 [ C976C4306F9AE133D6BBD47FDFC3BF92 ] usbccgp C:\WINDOWS\System32\drivers\usbccgp.sys
22:14:00.0273 2684 usbccgp - ok
22:14:00.0292 2684 [ 427B6DB8C05A5A977E8C3525370A2595 ] usbcir C:\WINDOWS\System32\drivers\usbcir.sys
22:14:00.0293 2684 usbcir - ok
22:14:00.0308 2684 [ B24FDEB1B18496F1B463782235AA3AF1 ] usbehci C:\WINDOWS\System32\drivers\usbehci.sys
22:14:00.0309 2684 usbehci - ok
22:14:00.0321 2684 [ F8C2A832DF9403F5EA8080CBDBDA95FB ] usbhub C:\WINDOWS\System32\drivers\usbhub.sys
22:14:00.0324 2684 usbhub - ok
22:14:00.0355 2684 [ E5F7328B1D29BCE791862CD3C0DD382A ] USBHUB3 C:\WINDOWS\System32\drivers\UsbHub3.sys
22:14:00.0358 2684 USBHUB3 - ok
22:14:00.0364 2684 [ 325F6179009B5A7F6118951A5BA422AB ] usbohci C:\WINDOWS\System32\drivers\usbohci.sys
22:14:00.0365 2684 usbohci - ok
22:14:00.0385 2684 [ 9FDBA6982582A6F2354144980F641E7B ] usbprint C:\WINDOWS\System32\drivers\usbprint.sys
22:14:00.0386 2684 usbprint - ok
22:14:00.0412 2684 [ BFC7FE4AAEB61317A921871B4085EF4B ] USBSTOR C:\WINDOWS\System32\drivers\USBSTOR.SYS
22:14:00.0413 2684 USBSTOR - ok
22:14:00.0425 2684 [ 1ABF657259DB57F7E5558E4DF1357C0C ] usbuhci C:\WINDOWS\System32\drivers\usbuhci.sys
22:14:00.0425 2684 usbuhci - ok
22:14:00.0450 2684 [ 8DC398D7B8E02C929A2096E74A170970 ] USBXHCI C:\WINDOWS\System32\drivers\USBXHCI.SYS
22:14:00.0452 2684 USBXHCI - ok
22:14:00.0484 2684 [ C2EEB6C5599C54B2B4C144E8DC78D91C ] UxTuneUp C:\WINDOWS\System32\uxtuneup.dll
22:14:00.0486 2684 UxTuneUp - ok
22:14:00.0511 2684 [ F702AB6181513303AB0FC8D59E52708B ] VaultSvc C:\WINDOWS\system32\lsass.exe
22:14:00.0512 2684 VaultSvc - ok
22:14:00.0530 2684 [ BACECBFF9C97F7627A60B0E0F1FE7EE8 ] vdrvroot C:\WINDOWS\system32\drivers\vdrvroot.sys
22:14:00.0530 2684 vdrvroot - ok
22:14:00.0559 2684 [ 1B4488988E5E7512E6C5CD1255E9E973 ] vds C:\WINDOWS\System32\vds.exe
22:14:00.0564 2684 vds - ok
22:14:00.0572 2684 [ 74FA2D4368DE6F6CE14393EDF1F342BE ] VerifierExt C:\WINDOWS\system32\drivers\VerifierExt.sys
22:14:00.0573 2684 VerifierExt - ok
22:14:00.0593 2684 [ 500BE6B2E49883720D0AE8BB859ED7A3 ] vhdmp C:\WINDOWS\System32\drivers\vhdmp.sys
22:14:00.0596 2684 vhdmp - ok
22:14:00.0608 2684 [ F5B4A14B00E89250C50982AC762DDD1D ] viaide C:\WINDOWS\system32\drivers\viaide.sys
22:14:00.0609 2684 viaide - ok
22:14:00.0624 2684 [ 0E43886F01C85B47BA0A3157274BCF59 ] Vid C:\WINDOWS\System32\drivers\Vid.sys
22:14:00.0626 2684 Vid - ok
22:14:00.0645 2684 [ 78DB50F7329F6D1311658DABFFFC8BE0 ] vmbus C:\WINDOWS\system32\drivers\vmbus.sys
22:14:00.0646 2684 vmbus - ok
22:14:00.0659 2684 [ ECFEE2F2BA3932C7880D1A8F67D68F91 ] VMBusHID C:\WINDOWS\System32\drivers\VMBusHID.sys
22:14:00.0659 2684 VMBusHID - ok
22:14:00.0672 2684 [ B4F432A51826FFC66F4DF72A83E8E4B1 ] vmbusr C:\WINDOWS\System32\drivers\vmbusr.sys
22:14:00.0673 2684 vmbusr - ok
22:14:00.0704 2684 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmicheartbeat C:\WINDOWS\System32\ICSvc.dll
22:14:00.0717 2684 vmicheartbeat - ok
22:14:00.0724 2684 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmickvpexchange C:\WINDOWS\System32\ICSvc.dll
22:14:00.0726 2684 vmickvpexchange - ok
22:14:00.0733 2684 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmicrdv C:\WINDOWS\System32\ICSvc.dll
22:14:00.0736 2684 vmicrdv - ok
22:14:00.0743 2684 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmicshutdown C:\WINDOWS\System32\ICSvc.dll
22:14:00.0745 2684 vmicshutdown - ok
22:14:00.0753 2684 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmictimesync C:\WINDOWS\System32\ICSvc.dll
22:14:00.0755 2684 vmictimesync - ok
22:14:00.0762 2684 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmicvss C:\WINDOWS\System32\ICSvc.dll
22:14:00.0765 2684 vmicvss - ok
22:14:00.0772 2684 [ CB60FAAED8B49B812EBBF77EB87D9B18 ] volmgr C:\WINDOWS\system32\drivers\volmgr.sys
22:14:00.0773 2684 volmgr - ok
22:14:00.0782 2684 [ A74101DA9809251BCD0E5A26BAE0F824 ] volmgrx C:\WINDOWS\system32\drivers\volmgrx.sys
22:14:00.0785 2684 volmgrx - ok
22:14:00.0818 2684 [ 78A5BBA3819FFFC62FFEC3E2220D102D ] volsnap C:\WINDOWS\system32\drivers\volsnap.sys
22:14:00.0820 2684 volsnap - ok
22:14:00.0836 2684 [ A8DA1C1B52ECEA3726DEBED4FF1B700D ] vpci C:\WINDOWS\System32\drivers\vpci.sys
22:14:00.0837 2684 vpci - ok
22:14:00.0850 2684 [ 0190AFFF28F600461C0164353CC7EE27 ] vpcivsp C:\WINDOWS\System32\drivers\vpcivsp.sys
22:14:00.0851 2684 vpcivsp - ok
22:14:00.0865 2684 [ 38A60CD9C009C55C6D3B5586F8E6A353 ] vsmraid C:\WINDOWS\system32\drivers\vsmraid.sys
22:14:00.0866 2684 vsmraid - ok
22:14:00.0913 2684 [ D0C69E44BC1E1D4AD290FD84104623D8 ] VSS C:\WINDOWS\system32\vssvc.exe
22:14:00.0921 2684 VSS - ok
22:14:00.0938 2684 [ A0F6FE0FC2F647C22BBFD6BD4249DBCC ] VSTXRAID C:\WINDOWS\system32\drivers\vstxraid.sys
22:14:00.0941 2684 VSTXRAID - ok
22:14:00.0953 2684 [ 62460A45435A26A334907E3F2EA45611 ] vwifibus C:\WINDOWS\System32\drivers\vwifibus.sys
22:14:00.0954 2684 vwifibus - ok
22:14:00.0979 2684 [ F690B6EEAA94576727B24376D7ED3601 ] W32Time C:\WINDOWS\system32\w32time.dll
22:14:00.0985 2684 W32Time - ok
22:14:01.0036 2684 [ 901CC968412F8155B08D7ABE0171166A ] W3SVC C:\WINDOWS\system32\inetsrv\iisw3adm.dll
22:14:01.0041 2684 W3SVC - ok
22:14:01.0052 2684 [ 6B806E893714019969E2B50D7EF6A4D9 ] WacomPen C:\WINDOWS\System32\drivers\wacompen.sys
22:14:01.0053 2684 WacomPen - ok
22:14:01.0081 2684 [ 61F6972FF9AC9A8D0B4D62076DC30051 ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys
22:14:01.0082 2684 Wanarp - ok
22:14:01.0086 2684 [ 61F6972FF9AC9A8D0B4D62076DC30051 ] Wanarpv6 C:\WINDOWS\system32\DRIVERS\wanarp.sys
22:14:01.0088 2684 Wanarpv6 - ok
22:14:01.0111 2684 [ 901CC968412F8155B08D7ABE0171166A ] WAS C:\WINDOWS\system32\inetsrv\iisw3adm.dll
22:14:01.0113 2684 WAS - ok
22:14:01.0143 2684 [ 42DF22F8C448E7CD219F6D63743505E2 ] wbengine C:\WINDOWS\system32\wbengine.exe
22:14:01.0153 2684 wbengine - ok
22:14:01.0169 2684 [ 31D37B2F6069C631EF0557D322924812 ] WbioSrvc C:\WINDOWS\System32\wbiosrvc.dll
22:14:01.0174 2684 WbioSrvc - ok
22:14:01.0201 2684 [ AF1349386D4C6786EF4E34FACEF15042 ] Wcmsvc C:\WINDOWS\System32\wcmsvc.dll
22:14:01.0206 2684 Wcmsvc - ok
22:14:01.0241 2684 [ 5B5FEAB51172F5513C2CF7B39CFA6A01 ] wcncsvc C:\WINDOWS\System32\wcncsvc.dll
22:14:01.0248 2684 wcncsvc - ok
22:14:01.0259 2684 [ E19556D414332E2BEBA1F368229006B4 ] WcsPlugInService C:\WINDOWS\System32\WcsPlugInService.dll
22:14:01.0262 2684 WcsPlugInService - ok
22:14:01.0273 2684 [ B3A4D918DAB90505B6BC7B70632913CB ] Wd C:\WINDOWS\system32\drivers\wd.sys
22:14:01.0274 2684 Wd - ok
22:14:01.0292 2684 [ FD47DF026B32969B8A68721A0243E8EE ] WdBoot C:\WINDOWS\system32\drivers\WdBoot.sys
22:14:01.0293 2684 WdBoot - ok
22:14:01.0315 2684 [ A3D04EBF5227886029B4532F20D026F7 ] WDC_SAM C:\WINDOWS\System32\drivers\wdcsam64.sys
22:14:01.0316 2684 WDC_SAM - ok
22:14:01.0350 2684 [ E2C933EDBC389386EBE6D2BA953F43D8 ] Wdf01000 C:\WINDOWS\system32\drivers\Wdf01000.sys
22:14:01.0354 2684 Wdf01000 - ok
22:14:01.0376 2684 [ 5F425D842DD6ADE9F95A51A0616AFAD7 ] WdFilter C:\WINDOWS\system32\drivers\WdFilter.sys
22:14:01.0377 2684 WdFilter - ok
22:14:01.0396 2684 [ 240FC332484572227CD1DF82407F33E5 ] WdiServiceHost C:\WINDOWS\system32\wdi.dll
22:14:01.0399 2684 WdiServiceHost - ok
22:14:01.0404 2684 [ 240FC332484572227CD1DF82407F33E5 ] WdiSystemHost C:\WINDOWS\system32\wdi.dll
22:14:01.0406 2684 WdiSystemHost - ok
22:14:01.0427 2684 [ 9B1384CE8E681D2D77BB3524B8E86311 ] WebClient C:\WINDOWS\System32\webclnt.dll
22:14:01.0431 2684 WebClient - ok
22:14:01.0446 2684 [ 35FD720943D4FCD75C3275BF062FF140 ] Wecsvc C:\WINDOWS\system32\wecsvc.dll
22:14:01.0450 2684 Wecsvc - ok
22:14:01.0466 2684 [ 4D2612E3C462B68F499D840B1133263E ] wercplsupport C:\WINDOWS\System32\wercplsupport.dll
22:14:01.0468 2684 wercplsupport - ok
22:14:01.0486 2684 [ 5F70EBFC1F75B487DE79501E3CCBDB54 ] WerSvc C:\WINDOWS\System32\WerSvc.dll
22:14:01.0490 2684 WerSvc - ok
22:14:01.0530 2684 [ 4C47C55502806F8FEC5B523F24E8DC22 ] WFLR6654 C:\WINDOWS\system32\drivers\wfeaglxt.sys
22:14:01.0533 2684 WFLR6654 - ok
22:14:01.0558 2684 [ 44BB9C31E6242C4BD1CE7C2B440C2533 ] WFPLWFS C:\WINDOWS\system32\DRIVERS\wfplwfs.sys
22:14:01.0559 2684 WFPLWFS - ok
22:14:01.0578 2684 [ 60E0C220593DA4F7C289CB909D2DBAE0 ] WiaRpc C:\WINDOWS\System32\wiarpc.dll
22:14:01.0580 2684 WiaRpc - ok
22:14:01.0611 2684 [ A3C7624A42A3447EF5EDD1ED37FE4E60 ] WIMMount C:\WINDOWS\system32\drivers\wimmount.sys
22:14:01.0612 2684 WIMMount - ok
22:14:01.0634 2684 WinDefend - ok
22:14:01.0667 2684 [ 7911470B6018059A880469A63B65700A ] WinHttpAutoProxySvc C:\WINDOWS\system32\winhttp.dll
22:14:01.0675 2684 WinHttpAutoProxySvc - ok
22:14:01.0785 2684 [ 3D6B518B71C75C8FA4115A33615C107A ] Winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll
22:14:01.0803 2684 Winmgmt - ok
22:14:01.0870 2684 [ 8E212A627F33F6FC3B5F3BB47212F66E ] WinRM C:\WINDOWS\system32\WsmSvc.dll
22:14:01.0914 2684 WinRM - ok
22:14:01.0944 2684 [ BB20956C424531003F7FA6CD36F11D5D ] WinUsb C:\WINDOWS\system32\DRIVERS\WinUsb.sys
22:14:01.0945 2684 WinUsb - ok
22:14:01.0988 2684 [ 6351724B8FA0255C2DBD970297F00B93 ] WlanSvc C:\WINDOWS\System32\wlansvc.dll
22:14:02.0015 2684 WlanSvc - ok
22:14:02.0061 2684 [ B330CE47FB74A6BE9A3FFFF4B3F64D9B ] wlidsvc C:\WINDOWS\system32\wlidsvc.dll
22:14:02.0088 2684 wlidsvc - ok
22:14:02.0114 2684 [ E2A596CACFC6504306CDB7B593B90084 ] WmiAcpi C:\WINDOWS\System32\drivers\wmiacpi.sys
22:14:02.0115 2684 WmiAcpi - ok
22:14:02.0149 2684 [ D113499052C5E541906B727779F0F959 ] wmiApSrv C:\WINDOWS\system32\wbem\WmiApSrv.exe
22:14:02.0151 2684 wmiApSrv - ok
22:14:02.0170 2684 WMPNetworkSvc - ok
22:14:02.0187 2684 [ C6FF953D5D6F2EAE3B8883474D5076B3 ] wpcfltr C:\WINDOWS\system32\DRIVERS\wpcfltr.sys
22:14:02.0188 2684 wpcfltr - ok
22:14:02.0206 2684 [ A6ED163169876BFD2437E872FE2F1509 ] WPCSvc C:\WINDOWS\System32\wpcsvc.dll
22:14:02.0208 2684 WPCSvc - ok
22:14:02.0236 2684 [ 3013658A4D327854BEEC4A08D9655194 ] WPDBusEnum C:\WINDOWS\system32\wpdbusenum.dll
22:14:02.0239 2684 WPDBusEnum - ok
22:14:02.0258 2684 [ 0346CAFC181C91C6E2330332EB332ED6 ] WpdUpFltr C:\WINDOWS\system32\drivers\WpdUpFltr.sys
22:14:02.0259 2684 WpdUpFltr - ok
22:14:02.0285 2684 [ BC8B5CB336E63BB25EAD1CE8EDD34B81 ] ws2ifsl C:\WINDOWS\system32\drivers\ws2ifsl.sys
22:14:02.0286 2684 ws2ifsl - ok
22:14:02.0316 2684 [ 012CFE7F0F95266F554EE3B91EE2128A ] wscsvc C:\WINDOWS\System32\wscsvc.dll
22:14:02.0319 2684 wscsvc - ok
22:14:02.0325 2684 WSearch - ok
22:14:02.0377 2684 [ D4D04839F3DFAF09D94BAB1016F7A297 ] WSService C:\WINDOWS\System32\WSService.dll
22:14:02.0412 2684 WSService - ok
22:14:02.0474 2684 [ 311E5E1976E0BD9110A88B93158055D5 ] wuauserv C:\WINDOWS\system32\wuaueng.dll
22:14:02.0526 2684 wuauserv - ok
22:14:02.0557 2684 [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf C:\WINDOWS\system32\drivers\WudfPf.sys
22:14:02.0558 2684 WudfPf - ok
22:14:02.0575 2684 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd C:\WINDOWS\System32\drivers\WUDFRd.sys
22:14:02.0577 2684 WUDFRd - ok
22:14:02.0601 2684 [ B20F051B03A966392364C83F009F7D17 ] wudfsvc C:\WINDOWS\System32\WUDFSvc.dll
22:14:02.0603 2684 wudfsvc - ok
22:14:02.0611 2684 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFWpdFs C:\WINDOWS\system32\DRIVERS\WUDFRd.sys
22:14:02.0613 2684 WUDFWpdFs - ok
22:14:02.0618 2684 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFWpdMtp C:\WINDOWS\system32\DRIVERS\WUDFRd.sys
22:14:02.0619 2684 WUDFWpdMtp - ok
22:14:02.0645 2684 [ 6D9E07436B6646EC8F7EFFD39B6BA288 ] WwanSvc C:\WINDOWS\System32\wwansvc.dll
22:14:02.0651 2684 WwanSvc - ok
22:14:02.0759 2684 [ 529D9F6C9A3BB3E8450E6EFAF24F9B7D ] {09F57980-3432-4AFC-957D-27AC45FAE1F5} C:\Program Files (x86)\CyberLink\PowerDVD13\Common\NavFilter\000.fcl
22:14:02.0760 2684 {09F57980-3432-4AFC-957D-27AC45FAE1F5} - ok
22:14:02.0768 2684 ================ Scan global ===============================
22:14:02.0788 2684 [ DDC1AFBF9DDF880CE9BD3896114D8DED ] C:\WINDOWS\system32\basesrv.dll
22:14:02.0814 2684 [ E9343076AE704D20BB0D01F3AF3EFFEF ] C:\WINDOWS\system32\winsrv.dll
22:14:02.0837 2684 [ BD7C6949984D19AAA609896B675E7357 ] C:\WINDOWS\system32\sxssrv.dll
22:14:02.0868 2684 [ 8F226143046435C75C033B0C52E90FFE ] C:\WINDOWS\system32\services.exe
22:14:02.0872 2684 [Global] - ok
22:14:02.0872 2684 ================ Scan MBR ==================================
22:14:02.0880 2684 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
22:14:03.0158 2684 \Device\Harddisk0\DR0 - ok
22:14:03.0161 2684 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk1\DR1
22:14:03.0165 2684 \Device\Harddisk1\DR1 - ok
22:14:03.0165 2684 ================ Scan VBR ==================================
22:14:03.0168 2684 [ 231CF4B7FF681F7C1146FFC6DCF80782 ] \Device\Harddisk0\DR0\Partition1
22:14:03.0169 2684 \Device\Harddisk0\DR0\Partition1 - ok
22:14:03.0173 2684 [ 01B9EA7F21679C457E2EA614A8894EFA ] \Device\Harddisk1\DR1\Partition1
22:14:03.0175 2684 \Device\Harddisk1\DR1\Partition1 - ok
22:14:03.0179 2684 [ 3A3121B2FA6EF35876C25A6583A759E6 ] \Device\Harddisk1\DR1\Partition2
22:14:03.0180 2684 \Device\Harddisk1\DR1\Partition2 - ok
22:14:03.0185 2684 [ 5C01C30CC4E9555E3B387B905C365087 ] \Device\Harddisk1\DR1\Partition3
22:14:03.0186 2684 \Device\Harddisk1\DR1\Partition3 - ok
22:14:03.0187 2684 ============================================================
22:14:03.0187 2684 Scan finished
22:14:03.0187 2684 ============================================================
22:14:03.0198 1448 Detected object count: 0
22:14:03.0198 1448 Actual detected object count: 0
ASUS Prime Z390-P / Hexa Core Intel core i5 Coffee Lake-S / Gigabyte GeForce GTX 650 Ti / FORTRON BlueStorm Bronze 80PLUS / W 11

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu.

Příspěvekod jaro3 » 08 led 2014 22:29

Vypni rez. ochranu u antiviru a antispywaru,příp. firewall..

Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud budou problémy , spusť ho v nouz. režimu.

Upozornění : Může se stát, že po aplikaci Combofixu a restartu počítače, Windows nenaběhnou , nebo nenajede plocha , budou problémy s připojením, pak znovu restartuj počítač, pokud to nepomůže , po restartu mačkej klávesu F8 a pak zvol poslední známou funkční konfiguraci. , či použij bod obnovy.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
mmmartin
Moderátor
Elite Level 10
Elite Level 10
Příspěvky: 9641
Registrován: srpen 04
Bydliště: Praha
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu.

Příspěvekod mmmartin » 08 led 2014 23:18

ComboFix 14-01-08.03 - martin 08.01.2014 23:03:20.2.4 - x64
Microsoft Windows 8 Pro 6.2.9200.0.1250.420.1029.18.4095.2890 [GMT 1:00]
Spuštěný z: c:\users\martin\Desktop\ComboFix.exe
AV: AVG Internet Security 2014 *Disabled/Updated* {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9}
AV: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: AVG Internet Security 2014 *Disabled* {36AFA1E1-4CDC-7EF8-11EE-C77C3581ABA2}
SP: AVG Internet Security 2014 *Disabled/Updated* {B5F5C120-2089-702E-0001-553BB0D5A664}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\martin\AppData\Local\Temp\sfamcc00001.dll
c:\users\martin\AppData\Local\Temp\sfareca00001.dll
.
---- Předchozí spuštění -------
.
c:\users\martin\AppData\Local\Temp\sfamcc00001.dll
c:\users\martin\AppData\Local\Temp\sfareca00001.dll
c:\windows\SysWow64\Dvbpws.dll
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2013-12-08 do 2014-01-08 )))))))))))))))))))))))))))))))
.
.
2014-01-08 22:09 . 2014-01-08 22:10 -------- d-----w- c:\users\martin\AppData\Local\temp
2014-01-08 22:09 . 2014-01-08 22:09 -------- d-----w- c:\users\DefaultAppPool\AppData\Local\temp
2014-01-08 22:09 . 2014-01-08 22:09 -------- d-----w- c:\users\Default\AppData\Local\temp
2014-01-08 17:21 . 2014-01-08 21:11 2233688 ----a-w- c:\windows\system32\drivers\tcpip.sys.bak
2014-01-08 17:07 . 2014-01-08 17:07 -------- d-----w- c:\windows\ERUNT
2014-01-08 14:53 . 2014-01-08 16:53 -------- d-----w- C:\AdwCleaner
2014-01-07 19:49 . 2014-01-07 19:49 -------- d-----w- c:\users\martin\AppData\Local\Ashampoo
2014-01-07 14:20 . 2014-01-07 14:23 -------- d-----w- c:\users\TEMP
2014-01-06 21:19 . 2014-01-06 21:19 -------- d-----w- c:\users\martin\AppData\Local\Adobe
2014-01-06 17:08 . 2014-01-06 17:08 -------- d-----w- c:\users\martin\AppData\Roaming\Malwarebytes
2014-01-06 17:08 . 2014-01-06 17:08 -------- d-----w- c:\programdata\Malwarebytes
2014-01-06 17:08 . 2014-01-06 17:08 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware
2014-01-06 17:08 . 2013-04-04 13:50 25928 ----a-w- c:\windows\system32\drivers\mbam.sys
2013-12-28 18:47 . 2013-12-28 19:48 -------- d-----w- c:\users\martin\AppData\Local\NVIDIA Corporation
2013-12-28 18:46 . 2013-12-05 08:42 39200 ----a-w- c:\windows\system32\drivers\nvvad64v.sys
2013-12-28 18:46 . 2013-12-05 08:42 32544 ----a-w- c:\windows\SysWow64\nvaudcap32v.dll
2013-12-28 16:11 . 2013-12-28 16:12 -------- d-----w- c:\program files (x86)\JetAudio
2013-12-28 16:11 . 2013-12-28 16:12 -------- d-----w- c:\program files (x86)\Common Files\COWON
2013-12-26 10:53 . 2013-12-26 10:53 -------- d---a-w- c:\windows\rundll16.exe
2013-12-26 10:53 . 2013-12-26 10:53 -------- d---a-w- c:\windows\logo1_.exe
2013-12-24 11:48 . 2013-12-24 11:49 -------- d-----w- c:\program files (x86)\DVD Patcher
2013-12-22 15:01 . 2013-12-22 15:01 -------- d-----w- c:\users\martin\AppData\Roaming\FastStone
2013-12-15 19:07 . 2013-12-15 19:07 -------- d-----w- c:\users\martin\AppData\Roaming\hideip_firefox_plugin
2013-12-15 19:07 . 2013-12-15 19:07 -------- d-----w- c:\program files (x86)\Hide IP Speed
2013-12-15 18:24 . 2013-12-15 19:07 -------- d-----w- c:\users\martin\AppData\Roaming\Hide IP Speed
2013-12-12 18:30 . 2013-12-12 18:30 -------- d-----w- c:\program files (x86)\Common Files\LightScribe
2013-12-12 09:30 . 2013-12-12 09:30 -------- d-----w- c:\users\Default\AppData\Local\Microsoft Help
2013-12-12 09:30 . 2013-12-12 09:30 -------- d-----w- c:\windows\PCHEALTH
2013-12-12 09:28 . 2013-10-19 05:45 62976 ----a-w- c:\windows\system32\imagehlp.dll
2013-12-12 09:27 . 2013-11-23 06:43 420864 ----a-w- c:\windows\system32\WMPhoto.dll
2013-12-12 09:27 . 2013-11-23 05:05 368640 ----a-w- c:\windows\SysWow64\WMPhoto.dll
2013-12-12 09:27 . 2013-11-06 23:18 4036608 ----a-w- c:\windows\system32\win32k.sys
2013-12-12 09:27 . 2013-09-28 03:35 288768 ----a-w- c:\windows\system32\drivers\portcls.sys
2013-12-12 09:27 . 2013-11-01 05:38 312320 ----a-w- c:\windows\system32\msieftp.dll
2013-12-12 09:27 . 2013-11-01 03:49 273408 ----a-w- c:\windows\SysWow64\msieftp.dll
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-01-08 22:10 . 2013-10-29 21:09 4194304 ----a-w- c:\windows\ServiceProfiles\NetworkService\msmqlog.bin
2013-12-12 09:31 . 2013-10-27 17:56 90708896 ----a-w- c:\windows\system32\MRT.exe
2013-12-10 02:13 . 2013-11-24 15:14 982232 ----a-w- c:\windows\SysWow64\nvspcap.dll
2013-12-10 02:13 . 2013-11-24 15:14 1100248 ----a-w- c:\windows\system32\nvspcap64.dll
2013-12-05 08:42 . 2013-11-24 15:13 35104 ----a-w- c:\windows\system32\nvaudcap64v.dll
2013-12-04 00:53 . 2013-10-29 23:19 78304 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2013-12-04 00:53 . 2013-10-29 23:19 694240 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2013-11-25 21:28 . 2013-10-28 10:47 29480 ----a-w- c:\windows\SysWow64\msxml3a.dll
2013-11-25 21:28 . 2013-10-28 10:47 505128 ----a-w- c:\windows\SysWow64\msvcp71.dll
2013-11-25 21:28 . 2013-10-28 10:47 353576 ----a-w- c:\windows\SysWow64\msvcr71.dll
2013-11-14 11:57 . 2013-11-24 15:18 31520 ----a-w- c:\windows\system32\nvhdap64.dll
2013-11-14 11:57 . 2013-11-24 15:18 196384 ----a-w- c:\windows\system32\drivers\nvhda64v.sys
2013-11-14 11:57 . 2013-11-24 15:18 1510176 ----a-w- c:\windows\system32\nvhdagenco64.dll
2013-11-14 11:56 . 2013-11-24 14:21 61216 ----a-w- c:\windows\system32\OpenCL.dll
2013-11-14 11:56 . 2013-11-24 14:21 53024 ----a-w- c:\windows\SysWow64\OpenCL.dll
2013-11-14 11:56 . 2013-02-25 23:32 18293608 ----a-w- c:\windows\system32\nvwgf2umx.dll
2013-11-14 11:56 . 2013-11-24 15:18 15862272 ----a-w- c:\windows\SysWow64\nvwgf2um.dll
2013-11-14 11:56 . 2013-11-24 15:18 1242400 ----a-w- c:\windows\SysWow64\nvumdshim.dll
2013-11-14 11:56 . 2013-02-25 23:32 1436528 ----a-w- c:\windows\system32\nvumdshimx.dll
2013-11-14 11:56 . 2013-11-24 15:18 9619872 ----a-w- c:\windows\SysWow64\nvopencl.dll
2013-11-14 11:56 . 2013-11-24 15:18 11514624 ----a-w- c:\windows\system32\nvopencl.dll
2013-11-14 11:56 . 2013-11-24 15:18 30361888 ----a-w- c:\windows\system32\nvoglv64.dll
2013-11-14 11:56 . 2013-11-24 15:18 317472 ----a-w- c:\windows\system32\nvoglshim64.dll
2013-11-14 11:56 . 2013-11-24 15:18 22951200 ----a-w- c:\windows\SysWow64\nvoglv32.dll
2013-11-14 11:56 . 2013-11-24 15:18 266984 ----a-w- c:\windows\SysWow64\nvoglshim32.dll
2013-11-14 11:56 . 2013-11-24 15:18 12613408 ----a-w- c:\windows\system32\drivers\nvlddmkm.sys
2013-11-14 11:56 . 2013-11-24 15:18 707360 ----a-w- c:\windows\system32\NvFBC64.dll
2013-11-14 11:56 . 2013-11-24 15:18 657184 ----a-w- c:\windows\system32\NvIFR64.dll
2013-11-14 11:56 . 2013-11-24 15:18 609568 ----a-w- c:\windows\SysWow64\NvFBC.dll
2013-11-14 11:56 . 2013-11-24 15:18 562464 ----a-w- c:\windows\SysWow64\NvIFR.dll
2013-11-14 11:56 . 2013-11-24 15:18 479520 ----a-w- c:\windows\system32\nvEncodeAPI64.dll
2013-11-14 11:56 . 2013-11-24 15:18 405280 ----a-w- c:\windows\SysWow64\nvEncodeAPI.dll
2013-11-14 11:56 . 2013-11-24 15:18 357152 ----a-w- c:\windows\system32\NvIFROpenGL.dll
2013-11-14 11:56 . 2013-11-24 15:18 314656 ----a-w- c:\windows\SysWow64\NvIFROpenGL.dll
2013-11-14 11:56 . 2013-11-24 15:18 168616 ----a-w- c:\windows\system32\nvinitx.dll
2013-11-14 11:56 . 2013-11-24 15:18 1511712 ----a-w- c:\windows\system32\nvdispgenco6433182.dll
2013-11-14 11:56 . 2013-11-24 15:18 141336 ----a-w- c:\windows\SysWow64\nvinit.dll
2013-11-14 11:56 . 2013-11-24 15:18 1884448 ----a-w- c:\windows\system32\nvdispco6433182.dll
2013-11-14 11:56 . 2013-11-24 15:18 18208624 ----a-w- c:\windows\system32\nvd3dumx.dll
2013-11-14 11:56 . 2013-02-25 23:32 15218504 ----a-w- c:\windows\SysWow64\nvd3dum.dll
2013-11-14 11:56 . 2013-11-24 15:18 3132704 ----a-w- c:\windows\system32\nvcuvid.dll
2013-11-14 11:56 . 2013-11-24 15:18 2947872 ----a-w- c:\windows\SysWow64\nvcuvid.dll
2013-11-14 11:56 . 2013-11-24 15:18 9691888 ----a-w- c:\windows\SysWow64\nvcuda.dll
2013-11-14 11:56 . 2013-11-24 15:18 3125024 ----a-w- c:\windows\system32\nvcuvenc.dll
2013-11-14 11:56 . 2013-11-24 15:18 2747680 ----a-w- c:\windows\SysWow64\nvcuvenc.dll
2013-11-14 11:56 . 2013-11-24 15:18 11600432 ----a-w- c:\windows\system32\nvcuda.dll
2013-11-14 11:56 . 2013-11-24 15:18 25257248 ----a-w- c:\windows\system32\nvcompiler.dll
2013-11-14 11:56 . 2013-11-24 15:18 17560352 ----a-w- c:\windows\SysWow64\nvcompiler.dll
2013-11-14 11:56 . 2013-02-25 23:32 2697248 ----a-w- c:\windows\SysWow64\nvapi.dll
2013-11-14 11:56 . 2013-02-25 23:32 3069608 ----a-w- c:\windows\system32\nvapi64.dll
2013-11-11 15:02 . 2013-11-24 14:22 6674208 ----a-w- c:\windows\system32\nvcpl.dll
2013-11-11 15:02 . 2013-11-24 14:22 3490080 ----a-w- c:\windows\system32\nvsvc64.dll
2013-11-11 15:01 . 2013-11-24 14:22 922912 ----a-w- c:\windows\system32\nvvsvc.exe
2013-11-11 15:01 . 2013-11-24 14:22 63776 ----a-w- c:\windows\system32\nvshext.dll
2013-11-11 15:01 . 2013-11-24 14:22 2559776 ----a-w- c:\windows\system32\nvsvcr.dll
2013-11-11 15:01 . 2013-11-24 14:22 219424 ----a-w- c:\windows\system32\nvmctray.dll
2013-11-11 15:01 . 2013-11-24 14:22 3467927 ----a-w- c:\windows\system32\nvcoproc.bin
2013-11-11 07:59 . 2013-11-11 07:59 590112 ----a-w- c:\windows\SysWow64\nvStreaming.exe
2013-11-05 20:55 . 2013-11-05 20:55 150808 ----a-w- c:\windows\system32\drivers\avgdiska.sys
2013-11-04 20:52 . 2013-11-04 20:52 240920 ----a-w- c:\windows\system32\drivers\avgidsdrivera.sys
2013-10-31 22:00 . 2013-10-31 22:00 212280 ----a-w- c:\windows\system32\drivers\avgldx64.sys
2013-10-31 21:49 . 2013-10-31 21:49 294712 ----a-w- c:\windows\system32\drivers\avgloga.sys
2013-10-30 16:03 . 2013-10-30 16:03 17536 ----a-w- c:\programdata\Microsoft\windowssampling\Sqm\Manifest\Sqm3.bin
2013-10-30 10:27 . 2013-10-28 01:30 40248 ----a-w- c:\windows\system32\TURegOpt.exe
2013-10-30 10:27 . 2013-10-28 01:31 42808 ----a-w- c:\windows\system32\uxtuneup.dll
2013-10-30 10:27 . 2013-10-28 01:31 35640 ----a-w- c:\windows\SysWow64\uxtuneup.dll
2013-10-30 10:27 . 2013-10-28 01:30 29496 ----a-w- c:\windows\system32\authuitu.dll
2013-10-30 10:27 . 2013-10-28 01:30 25400 ----a-w- c:\windows\SysWow64\authuitu.dll
2013-10-29 18:18 . 2013-10-29 18:18 719360 ----a-w- c:\windows\SysWow64\mshtmlmedia.dll
2013-10-29 18:18 . 2013-10-29 18:18 1054720 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe
2013-10-29 18:18 . 2013-10-29 18:18 905728 ----a-w- c:\windows\system32\mshtmlmedia.dll
2013-10-28 10:29 . 2013-10-28 10:29 466456 ----a-w- c:\windows\system32\wrap_oal.dll
2013-10-28 10:29 . 2013-10-28 10:29 444952 ----a-w- c:\windows\SysWow64\wrap_oal.dll
2013-10-28 10:29 . 2013-10-28 10:29 122904 ----a-w- c:\windows\system32\OpenAL32.dll
2013-10-28 10:29 . 2013-10-28 10:29 109080 ----a-w- c:\windows\SysWow64\OpenAL32.dll
2013-10-28 10:22 . 2013-10-28 10:22 53248 ----a-r- c:\users\martin\AppData\Roaming\Microsoft\Installer\{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}\ARPPRODUCTICON.exe
2013-10-28 00:43 . 2011-03-28 17:36 22240 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
2013-10-27 22:45 . 2013-10-27 22:45 350160 ----a-w- c:\windows\system32\drivers\trufos.sys
2013-10-27 22:45 . 2013-10-27 22:45 632064 ----a-w- c:\windows\SysWow64\msvcr80.dll
2013-10-27 22:45 . 2013-10-27 22:45 554240 ----a-w- c:\windows\SysWow64\msvcp80.dll
2013-10-27 22:45 . 2013-10-27 22:45 572928 ----a-w- c:\windows\SysWow64\msvcp90.dll
2013-10-27 22:45 . 2013-10-27 22:45 655872 ----a-w- c:\windows\SysWow64\msvcr90.dll
2013-10-27 22:45 . 2013-10-27 22:45 34048 ----a-w- c:\windows\SysWow64\eEmpty.exe
2013-10-24 21:25 . 2013-10-24 21:25 194872 ----a-w- c:\windows\system32\drivers\avgidsha.sys
2013-10-21 21:28 . 2013-10-21 21:28 252728 ----a-w- c:\windows\system32\drivers\avgwfpa.sys
2013-10-13 20:49 . 2012-07-26 02:29 100696 ----a-w- c:\windows\system32\drivers\disk.sys
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"GarminExpressTrayApp"="c:\program files (x86)\Garmin\Express Tray\ExpressTray.exe" [2013-09-19 1093976]
"WinFast Schedule"="c:\program files\WinFast\WFDTV\WFWIZ.exe" [2013-01-09 2916352]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"AVG_UI"="c:\program files (x86)\AVG\AVG2014\avgui.exe" [2013-11-07 4956176]
"LWS"="c:\program files (x86)\Logitech\LWS\Webcam Software\LWS.exe" [2011-11-11 205336]
"NUSB3MON"="c:\program files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe" [2010-11-17 113288]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2011-07-07 336384]
"VolPanel"="c:\program files (x86)\Creative\USB Sound Blaster HD\Volume Panel\VolPanlu.exe" [2009-07-07 241789]
"WinFastDTV"="c:\program files\WinFast\WFDTV\DTVSchdl.exe" [2013-07-16 103424]
"ArcSoft Connection Service"="c:\program files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe" [2010-10-27 207424]
"PowerDVD13Agent"="c:\program files (x86)\CyberLink\PowerDVD13\PowerDVD13Agent.exe" [2013-11-29 517144]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\StartUp\
GIGABYTE OC_GURU.lnk - c:\program files (x86)\GIGABYTE\GIGABYTE OC_GURU II\OC_GURU.exe [2013-3-1 21946368]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"PromptOnSecureDesktop"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"EnableCursorSuppression"= 1 (0x1)
"ConsentPromptBehaviorUser"= 3 (0x3)
.
R0 Avgboota;AVG Early Launch Anti-Malware Driver;c:\windows\system32\DRIVERS\avgboota.sys;c:\windows\SYSNATIVE\DRIVERS\avgboota.sys [x]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x]
R3 AthDfu;Atheros Valkyrie USB BootROM;c:\windows\System32\Drivers\AthDfu.sys;c:\windows\SYSNATIVE\Drivers\AthDfu.sys [x]
R3 Garmin Core Update Service;Garmin Core Update Service;c:\program files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe;c:\program files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe [x]
R3 vmicheartbeat;Služba prezenčního signálu technologie Hyper-V;c:\windows\system32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x]
R3 WDC_SAM;WD SCSI Pass Thru driver;c:\windows\System32\drivers\wdcsam64.sys;c:\windows\SYSNATIVE\drivers\wdcsam64.sys [x]
R3 WUDFWpdMtp;WUDFWpdMtp;c:\windows\system32\DRIVERS\WUDFRd.sys;c:\windows\SYSNATIVE\DRIVERS\WUDFRd.sys [x]
R4 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service;c:\program files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe;c:\program files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [x]
R4 Creative Media Toolbox 6 Licensing Service;Creative Media Toolbox 6 Licensing Service;c:\program files (x86)\Common Files\Creative Labs Shared\Service\MT6Licensing.exe;c:\program files (x86)\Common Files\Creative Labs Shared\Service\MT6Licensing.exe [x]
S0 AVGIDSHA;AVGIDSHA;c:\windows\system32\DRIVERS\avgidsha.sys;c:\windows\SYSNATIVE\DRIVERS\avgidsha.sys [x]
S0 Avgloga;AVG Logging Driver;c:\windows\system32\DRIVERS\avgloga.sys;c:\windows\SYSNATIVE\DRIVERS\avgloga.sys [x]
S0 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield;c:\windows\system32\DRIVERS\avgmfx64.sys;c:\windows\SYSNATIVE\DRIVERS\avgmfx64.sys [x]
S0 Avgrkx64;AVG Anti-Rootkit Driver;c:\windows\system32\DRIVERS\avgrkx64.sys;c:\windows\SYSNATIVE\DRIVERS\avgrkx64.sys [x]
S1 Avgdiska;AVG Disk Driver;c:\windows\system32\DRIVERS\avgdiska.sys;c:\windows\SYSNATIVE\DRIVERS\avgdiska.sys [x]
S1 Avgfwfd;AVG network filter service;c:\windows\system32\DRIVERS\avgfwd6a.sys;c:\windows\SYSNATIVE\DRIVERS\avgfwd6a.sys [x]
S1 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\DRIVERS\avgidsdrivera.sys;c:\windows\SYSNATIVE\DRIVERS\avgidsdrivera.sys [x]
S1 Avgldx64;AVG AVI Loader Driver;c:\windows\system32\DRIVERS\avgldx64.sys;c:\windows\SYSNATIVE\DRIVERS\avgldx64.sys [x]
S1 Avgwfpa;AVG Firewall Driver;c:\windows\system32\DRIVERS\avgwfpa.sys;c:\windows\SYSNATIVE\DRIVERS\avgwfpa.sys [x]
S2 {09F57980-3432-4AFC-957D-27AC45FAE1F5};Power Control [2014/01/06 20:13];c:\program files (x86)\CyberLink\PowerDVD13\Common\NavFilter\000.fcl;c:\program files (x86)\CyberLink\PowerDVD13\Common\NavFilter\000.fcl [x]
S2 AMD FUEL Service;AMD FUEL Service;c:\program files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe;c:\program files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [x]
S2 AtherosSvc;AtherosSvc;c:\windows\system32\AdminService.exe;c:\windows\SYSNATIVE\AdminService.exe [x]
S2 avgfws;AVG Firewall;c:\program files (x86)\AVG\AVG2014\avgfws.exe;c:\program files (x86)\AVG\AVG2014\avgfws.exe [x]
S2 AVGIDSAgent;AVGIDSAgent;c:\program files (x86)\AVG\AVG2014\avgidsagent.exe;c:\program files (x86)\AVG\AVG2014\avgidsagent.exe [x]
S2 avgwd;AVG WatchDog;c:\program files (x86)\AVG\AVG2014\avgwdsvc.exe;c:\program files (x86)\AVG\AVG2014\avgwdsvc.exe [x]
S2 NvNetworkService;NVIDIA Network Service;c:\program files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe;c:\program files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [x]
S2 NvStreamSvc;NVIDIA Streamer Service;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [x]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x]
S2 TeamViewer8;TeamViewer 8;c:\program files (x86)\TeamViewer\Version8\TeamViewer_Service.exe;c:\program files (x86)\TeamViewer\Version8\TeamViewer_Service.exe [x]
S2 TuneUp.UtilitiesSvc;AVG PC TuneUp Service;c:\program files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe;c:\program files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe [x]
S2 UMVPFSrv;UMVPFSrv;c:\program files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe;c:\program files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe [x]
S3 BtFilter;BtFilter;c:\windows\system32\DRIVERS\btfilter.sys;c:\windows\SYSNATIVE\DRIVERS\btfilter.sys [x]
S3 BthA2DP;Bluetooth stereo;c:\windows\system32\drivers\BthA2DP.sys;c:\windows\SYSNATIVE\drivers\BthA2DP.sys [x]
S3 BthHFAud;Bluetooth handsfree;c:\windows\System32\drivers\BthHfAud.sys;c:\windows\SYSNATIVE\drivers\BthHfAud.sys [x]
S3 BthHFSrv;Služba Bluetooth Handsfree;c:\windows\system32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x]
S3 ksaud;Creative USB Audio Driver;c:\windows\system32\drivers\ksaud.sys;c:\windows\SYSNATIVE\drivers\ksaud.sys [x]
S3 LVRS64;Logitech RightSound Filter Driver;c:\windows\system32\DRIVERS\lvrs64.sys;c:\windows\SYSNATIVE\DRIVERS\lvrs64.sys [x]
S3 LVUVC64;@oem16.inf,%PID_0825_DD%(UVC);Logitech HD Webcam C270(UVC);c:\windows\system32\DRIVERS\lvuvc64.sys;c:\windows\SYSNATIVE\DRIVERS\lvuvc64.sys [x]
S3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);c:\windows\system32\drivers\nvvad64v.sys;c:\windows\SYSNATIVE\drivers\nvvad64v.sys [x]
S3 RTL8168;Realtek 8168 NT Driver;c:\windows\system32\DRIVERS\Rt630x64.sys;c:\windows\SYSNATIVE\DRIVERS\Rt630x64.sys [x]
S3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver64.sys;c:\program files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver64.sys [x]
S3 WFLR6654;WinFast DTV1800 H (XC3028);c:\windows\system32\drivers\wfeaglxt.sys;c:\windows\SYSNATIVE\drivers\wfeaglxt.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost]
apphost REG_MULTI_SZ apphostsvc
iissvcs REG_MULTI_SZ w3svc was
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
2013-01-16 11:46 454176 ----a-w- c:\program files (x86)\Common Files\LightScribe\LSRunOnce.exe
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Creative SB Monitoring Utility"="sbavmon.dll" [2010-01-12 109056]
"Nvtmru"="c:\program files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" [2013-11-08 1028384]
"ShadowPlay"="c:\windows\system32\nvspcap64.dll" [2013-12-10 1100248]
"NvBackend"="c:\program files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" [2013-12-10 2279712]
.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp
.
------- Doplňkový sken -------
.
mDefault_Search_URL = hxxp://www.google.com
mSearch Page = hxxp://www.google.com
mDefault_Page_URL = hxxp://www.google.com
uInternet Settings,ProxyOverride = avangate.com,www.avangate.com,regnow.com,www.regnow.com,
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000
TCP: DhcpNameServer = 213.46.172.36 213.46.172.37
.
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\{09F57980-3432-4AFC-957D-27AC45FAE1F5}]
"ImagePath"="\??\c:\program files (x86)\CyberLink\PowerDVD13\Common\NavFilter\000.fcl"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
@SACL=(02 0000)
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
c:\program files (x86)\Common Files\LightScribe\LSSrvc.exe
c:\program files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
c:\program files (x86)\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
c:\program files (x86)\TeamViewer\Version8\TeamViewer.exe
c:\program files (x86)\TeamViewer\Version8\tv_w32.exe
c:\program files (x86)\SpeedFan\speedfan.exe
.
**************************************************************************
.
Celkový čas: 2014-01-08 23:14:12 - počítač byl restartován
ComboFix-quarantined-files.txt 2014-01-08 22:14
.
Před spuštěním: 269 037 248 512 bytes free
Po spuštění: 268 874 264 576 bytes free
.
- - End Of File - - D74761258E9A4D6BAA45BAF9160312C3
A36C5E4F47E84449FF07ED3517B43A31
ASUS Prime Z390-P / Hexa Core Intel core i5 Coffee Lake-S / Gigabyte GeForce GTX 650 Ti / FORTRON BlueStorm Bronze 80PLUS / W 11


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 116 hostů