Dobrý den poprosil bych laskavě o pomoc při řešení mého problému. Je jasné že se mi do PC dostala nějaká potvora. Nedávno jsem něco instaloval a omylem jsem povolil přístup při instalaci (registry). Od té doby se mi při spuštění stránek v prohlížeči otevírá několik oken s raklamou a skoro neustále se mi načítají a pracují už i otevřená okna. Celkově se i zpomalilo načítání stránek v prohlížeči.
OS: Windows 7(64bit) Ultimate
Prohlížeč: Mozzila Firefox
Antivir: Avast
Firewall: Comodo
Děkuji předem za jakoukoliv pomoc.
PC - vyskakování stránek reklam Vyřešeno
-
- nováček
- Příspěvky: 47
- Registrován: duben 12
- Pohlaví:
- Stav:
Offline
PC - vyskakování stránek reklam Vyřešeno
ZD: Gigabyte GA-PH67A-D3-B3 (rev.1.0) CPU: Intel Core i5-2320 3GHz BOX Chladič: Arctic Freezer 7 Pro Rev.2 Zdroj: Seasonic SS-500ET-F3 500W OEM OP:Kingston HyperX Blu 8GB 1333MHz GK: Sapphire ATI Radeon HD 4870 Vapor-X 1GB DDR5 11133-16-20R HDD: WD Caviar Black 3.5" 640GB + externí WD 320GB
-
- nováček
- Příspěvky: 47
- Registrován: duben 12
- Pohlaví:
- Stav:
Offline
Re: PC - vyskakování stránek reklam
Zde je log z HijackThis
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:27:04, on 18.1.2014
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal
Running processes:
D:\Programs\rainlendar pro 2.9\Rainlendar2.exe
D:\Programs\Win fast\WFDTV\WFWIZ.exe
C:\Program Files (x86)\ScanSoft\PaperPort\pptd40nt.exe
D:\Programs\Hamachi\hamachi-2-ui.exe
C:\Program Files (x86)\Canon\Solution Menu EX\CNSEMAIN.EXE
C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
D:\Programs\Avast! free\AvastUI.exe
D:\Programs\Win fast\WFDTV\DTVSchdl.exe
C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
D:\Programs\Mozzila Firefox\firefox.exe
D:\Programs\Mozzila Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe
D:\Programs\Total commander\totalcmd\TOTALCMD.EXE
D:\Programs\HiJackThis\Trend Micro\HiJackThis\HiJackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: greeatsaver - {590AEAB8-AFF4-FB62-85F7-D4270A615E77} - C:\Program Files (x86)\greeatsaver\72_bPk_D6.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - D:\Programs\MSOFFI~1\Office12\GR469A~1.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - D:\Programs\Avast! free\aswWebRepIE.dll
O2 - BHO: YoutubeAdblocker - {99B80A54-2B29-1BD1-3401-A9E97CF3C478} - C:\Program Files (x86)\YoutubeAdblocker\X_7.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - D:\Programs\Avast! free\aswWebRepIE.dll
O4 - HKLM\..\Run: [GrooveMonitor] "D:\Programs\MS Office Enterprise 2007\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files (x86)\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [PaperPort PTD] "C:\Program Files (x86)\ScanSoft\PaperPort\pptd40nt.exe"
O4 - HKLM\..\Run: [IndexSearch] "C:\Program Files (x86)\ScanSoft\PaperPort\IndexSearch.exe"
O4 - HKLM\..\Run: [PPort11reminder] "C:\Program Files (x86)\ScanSoft\PaperPort\Ereg\Ereg.exe" -r "C:\ProgramData\ScanSoft\PaperPort\11\Config\Ereg\Ereg.ini"
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "D:\Programs\Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKLM\..\Run: [CanonSolutionMenuEx] C:\Program Files (x86)\Canon\Solution Menu EX\CNSEMAIN.EXE /logon
O4 - HKLM\..\Run: [IJNetworkScannerSelectorEX] C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe /FORCE
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [AMD AVT] Cmd.exe /c start "AMD Accelerated Video Transcoding device initialization" /min "C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe" aml
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "D:\Programs\Avast! free\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [WinFastDTV] D:\Programs\Win fast\WFDTV\DTVSchdl.exe
O4 - HKLM\..\Run: [ArcSoft Connection Service] C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [Rainlendar2] D:\Programs\rainlendar pro 2.9\Rainlendar2.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "D:\Programs\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [WinFast Schedule] D:\Programs\Win fast\WFDTV\WFWIZ.exe
O4 - HKCU\..\Run: [LiveSupport] "C:\Program Files (x86)\LiveSupport\LiveSupport.exe" /noshow /log
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk = D:\Programs\MS Office Enterprise 2007\Office12\ONENOTEM.EXE
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://D:\Programs\MSOFFI~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\Programs\MSOFFI~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\Programs\MSOFFI~1\Office12\ONBttnIE.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\Programs\MSOFFI~1\Office12\REFIEBAR.DLL
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{D8077A3B-51E5-4DB0-B9A9-2966F554DCBE}: NameServer = 8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - D:\Programs\MSOFFI~1\Office12\GRA32A~1.DLL
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: c:\progra~3\browse~1\261125~1.80\{c16c1~1\browse~1.dll c:\windows\syswow64\guard32.dll c:\progra~2\gs-ena~1\assist~1.dll
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - D:\Programs\Avast! free\AvastSvc.exe
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - D:\Programs\Comodo firewall\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - D:\Programs\Hamachi\hamachi-2.exe
O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: PandoraService (PanService) - Pandora.TV - C:\Program Files (x86)\PANDORA.TV\PanService\PandoraService.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype C2C Service - Unknown owner - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files (x86)\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 10870 bytes
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:27:04, on 18.1.2014
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal
Running processes:
D:\Programs\rainlendar pro 2.9\Rainlendar2.exe
D:\Programs\Win fast\WFDTV\WFWIZ.exe
C:\Program Files (x86)\ScanSoft\PaperPort\pptd40nt.exe
D:\Programs\Hamachi\hamachi-2-ui.exe
C:\Program Files (x86)\Canon\Solution Menu EX\CNSEMAIN.EXE
C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
D:\Programs\Avast! free\AvastUI.exe
D:\Programs\Win fast\WFDTV\DTVSchdl.exe
C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
D:\Programs\Mozzila Firefox\firefox.exe
D:\Programs\Mozzila Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe
D:\Programs\Total commander\totalcmd\TOTALCMD.EXE
D:\Programs\HiJackThis\Trend Micro\HiJackThis\HiJackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: greeatsaver - {590AEAB8-AFF4-FB62-85F7-D4270A615E77} - C:\Program Files (x86)\greeatsaver\72_bPk_D6.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - D:\Programs\MSOFFI~1\Office12\GR469A~1.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - D:\Programs\Avast! free\aswWebRepIE.dll
O2 - BHO: YoutubeAdblocker - {99B80A54-2B29-1BD1-3401-A9E97CF3C478} - C:\Program Files (x86)\YoutubeAdblocker\X_7.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - D:\Programs\Avast! free\aswWebRepIE.dll
O4 - HKLM\..\Run: [GrooveMonitor] "D:\Programs\MS Office Enterprise 2007\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files (x86)\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [PaperPort PTD] "C:\Program Files (x86)\ScanSoft\PaperPort\pptd40nt.exe"
O4 - HKLM\..\Run: [IndexSearch] "C:\Program Files (x86)\ScanSoft\PaperPort\IndexSearch.exe"
O4 - HKLM\..\Run: [PPort11reminder] "C:\Program Files (x86)\ScanSoft\PaperPort\Ereg\Ereg.exe" -r "C:\ProgramData\ScanSoft\PaperPort\11\Config\Ereg\Ereg.ini"
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "D:\Programs\Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKLM\..\Run: [CanonSolutionMenuEx] C:\Program Files (x86)\Canon\Solution Menu EX\CNSEMAIN.EXE /logon
O4 - HKLM\..\Run: [IJNetworkScannerSelectorEX] C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe /FORCE
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [AMD AVT] Cmd.exe /c start "AMD Accelerated Video Transcoding device initialization" /min "C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe" aml
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "D:\Programs\Avast! free\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [WinFastDTV] D:\Programs\Win fast\WFDTV\DTVSchdl.exe
O4 - HKLM\..\Run: [ArcSoft Connection Service] C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [Rainlendar2] D:\Programs\rainlendar pro 2.9\Rainlendar2.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "D:\Programs\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [WinFast Schedule] D:\Programs\Win fast\WFDTV\WFWIZ.exe
O4 - HKCU\..\Run: [LiveSupport] "C:\Program Files (x86)\LiveSupport\LiveSupport.exe" /noshow /log
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk = D:\Programs\MS Office Enterprise 2007\Office12\ONENOTEM.EXE
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://D:\Programs\MSOFFI~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\Programs\MSOFFI~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\Programs\MSOFFI~1\Office12\ONBttnIE.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\Programs\MSOFFI~1\Office12\REFIEBAR.DLL
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{D8077A3B-51E5-4DB0-B9A9-2966F554DCBE}: NameServer = 8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - D:\Programs\MSOFFI~1\Office12\GRA32A~1.DLL
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: c:\progra~3\browse~1\261125~1.80\{c16c1~1\browse~1.dll c:\windows\syswow64\guard32.dll c:\progra~2\gs-ena~1\assist~1.dll
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - D:\Programs\Avast! free\AvastSvc.exe
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - D:\Programs\Comodo firewall\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - D:\Programs\Hamachi\hamachi-2.exe
O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: PandoraService (PanService) - Pandora.TV - C:\Program Files (x86)\PANDORA.TV\PanService\PandoraService.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype C2C Service - Unknown owner - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files (x86)\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 10870 bytes
ZD: Gigabyte GA-PH67A-D3-B3 (rev.1.0) CPU: Intel Core i5-2320 3GHz BOX Chladič: Arctic Freezer 7 Pro Rev.2 Zdroj: Seasonic SS-500ET-F3 500W OEM OP:Kingston HyperX Blu 8GB 1333MHz GK: Sapphire ATI Radeon HD 4870 Vapor-X 1GB DDR5 11133-16-20R HDD: WD Caviar Black 3.5" 640GB + externí WD 320GB
- Orcus
- člen Security týmu
-
Elite Level 10.5
- Příspěvky: 10645
- Registrován: duben 10
- Bydliště: Okolo rostou 3 růže =o)
- Pohlaví:
- Stav:
Offline
Re: PC - vyskakování stránek reklam
Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected. Poté klikni na Main (hlavní stránku ) a klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.
===================================================
Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Provést rychlý sken a klikni na tlačítko Skenovat
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Zobrazit výsledky
- pak zvol možnost uložit log a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.
====================================================
Stáhni AdwCleaner
Ulož si ho na svojí plochu
Ukonči všechny programy, okna a prohlížeče
Spusť program poklepáním a klikni na „Search“
Po skenu se objeví log (jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.
====================================================
Stáhni si Junkware Removal Tool
na svojí plochu.
Deaktivuj si svůj antivirový program.
Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected. Poté klikni na Main (hlavní stránku ) a klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.
===================================================
Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Provést rychlý sken a klikni na tlačítko Skenovat
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Zobrazit výsledky
- pak zvol možnost uložit log a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.
====================================================
Stáhni AdwCleaner
Ulož si ho na svojí plochu
Ukonči všechny programy, okna a prohlížeče
Spusť program poklepáním a klikni na „Search“
Po skenu se objeví log (jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.
====================================================
Stáhni si Junkware Removal Tool
na svojí plochu.
Deaktivuj si svůj antivirový program.
Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.
Láska hřeje, ale uhlí je uhlí.
Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.
Pár rad k bezpečnosti PC.
Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix
Pokud budete spokojeni , můžete podpořit naše fórum.

Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.
Pár rad k bezpečnosti PC.
Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix
Pokud budete spokojeni , můžete podpořit naše fórum.
-
- nováček
- Příspěvky: 47
- Registrován: duben 12
- Pohlaví:
- Stav:
Offline
Re: PC - vyskakování stránek reklam
Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware.) 1.75.0.1300
www.malwarebytes.org
Verze: v2014.01.18.02
Windows 7 x64 NTFS
Internet Explorer 8.0.7600.16385
DarkWerewolf :: DARKWEREWOLF-PC [administrátor]
Ochrana: Povolena
18.1.2014 13:47:27
MBAM-log-2014-01-18 (13-51-58).txt
Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 233605
Uplynulý čas: 2 minut, 6 sekund
Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené klíče v registru: 12
HKCR\CLSID\{590AEAB8-AFF4-FB62-85F7-D4270A615E77} (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{590AEAB8-AFF4-FB62-85F7-D4270A615E77} (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{590AEAB8-AFF4-FB62-85F7-D4270A615E77} (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
HKCR\CLSID\{99B80A54-2B29-1BD1-3401-A9E97CF3C478} (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{99B80A54-2B29-1BD1-3401-A9E97CF3C478} (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{99B80A54-2B29-1BD1-3401-A9E97CF3C478} (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\{77D46E27-0E41-4478-87A6-AABE6FBCF252} (PUP.Optional.GreatSaver.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{CA41BB14-E67B-1653-C57B-5CA99418A866} (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{4820778D-AB0D-6D18-C316-52A6A0E1D507} (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE} (PUP.Optional.WebSearchInfo) -> Nebyla provedena žádná instrukce.
HKCR\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755} (PUP.Optional.Multiplug) -> Nebyla provedena žádná instrukce.
HKCR\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F} (PUP.Optional.Multiplug) -> Nebyla provedena žádná instrukce.
Nalezené hodnoty v registru: 1
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes|DefaultScope (PUP.Optional.WebSearchInfo) -> Data: {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} -> Nebyla provedena žádná instrukce.
Nalezené datové položky v registru: 1
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows|AppInit_DLLs (PUP.Optional.GreatSaver.A) -> Špatný: (c:\progra~2\gs-ena~1\assist~1.dll) Dobrý: () -> Nebyla provedena žádná instrukce.
Nalezené složky: 1
C:\Program Files (x86)\YoutubeAdblocker (PUP.Optional.Multiplug) -> Nebyla provedena žádná instrukce.
Nalezené soubory: 9
C:\Program Files (x86)\greeatsaver\72_bPk_D6.dll (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\YoutubeAdblocker\X_7.dll (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
C:\ProgramData\greeatsaver\rzLH0mocUB.exe (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
C:\ProgramData\YoutubeAdblocker\xb52.exe (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\GS-Enabler\Assistant.dll (PUP.Optional.GreatSaver.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\GS-Enabler\AssistantSvc.dll (PUP.Optional.GreatSaver.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\YoutubeAdblocker\X_7.dat (PUP.Optional.Multiplug) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\YoutubeAdblocker\X_7.tlb (PUP.Optional.Multiplug) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\YoutubeAdblocker\X_7.x64.dll (PUP.Optional.Multiplug) -> Nebyla provedena žádná instrukce.
(konec)
www.malwarebytes.org
Verze: v2014.01.18.02
Windows 7 x64 NTFS
Internet Explorer 8.0.7600.16385
DarkWerewolf :: DARKWEREWOLF-PC [administrátor]
Ochrana: Povolena
18.1.2014 13:47:27
MBAM-log-2014-01-18 (13-51-58).txt
Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 233605
Uplynulý čas: 2 minut, 6 sekund
Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené klíče v registru: 12
HKCR\CLSID\{590AEAB8-AFF4-FB62-85F7-D4270A615E77} (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{590AEAB8-AFF4-FB62-85F7-D4270A615E77} (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{590AEAB8-AFF4-FB62-85F7-D4270A615E77} (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
HKCR\CLSID\{99B80A54-2B29-1BD1-3401-A9E97CF3C478} (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{99B80A54-2B29-1BD1-3401-A9E97CF3C478} (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{99B80A54-2B29-1BD1-3401-A9E97CF3C478} (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\{77D46E27-0E41-4478-87A6-AABE6FBCF252} (PUP.Optional.GreatSaver.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{CA41BB14-E67B-1653-C57B-5CA99418A866} (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{4820778D-AB0D-6D18-C316-52A6A0E1D507} (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE} (PUP.Optional.WebSearchInfo) -> Nebyla provedena žádná instrukce.
HKCR\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755} (PUP.Optional.Multiplug) -> Nebyla provedena žádná instrukce.
HKCR\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F} (PUP.Optional.Multiplug) -> Nebyla provedena žádná instrukce.
Nalezené hodnoty v registru: 1
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes|DefaultScope (PUP.Optional.WebSearchInfo) -> Data: {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} -> Nebyla provedena žádná instrukce.
Nalezené datové položky v registru: 1
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows|AppInit_DLLs (PUP.Optional.GreatSaver.A) -> Špatný: (c:\progra~2\gs-ena~1\assist~1.dll) Dobrý: () -> Nebyla provedena žádná instrukce.
Nalezené složky: 1
C:\Program Files (x86)\YoutubeAdblocker (PUP.Optional.Multiplug) -> Nebyla provedena žádná instrukce.
Nalezené soubory: 9
C:\Program Files (x86)\greeatsaver\72_bPk_D6.dll (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\YoutubeAdblocker\X_7.dll (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
C:\ProgramData\greeatsaver\rzLH0mocUB.exe (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
C:\ProgramData\YoutubeAdblocker\xb52.exe (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\GS-Enabler\Assistant.dll (PUP.Optional.GreatSaver.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\GS-Enabler\AssistantSvc.dll (PUP.Optional.GreatSaver.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\YoutubeAdblocker\X_7.dat (PUP.Optional.Multiplug) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\YoutubeAdblocker\X_7.tlb (PUP.Optional.Multiplug) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\YoutubeAdblocker\X_7.x64.dll (PUP.Optional.Multiplug) -> Nebyla provedena žádná instrukce.
(konec)
ZD: Gigabyte GA-PH67A-D3-B3 (rev.1.0) CPU: Intel Core i5-2320 3GHz BOX Chladič: Arctic Freezer 7 Pro Rev.2 Zdroj: Seasonic SS-500ET-F3 500W OEM OP:Kingston HyperX Blu 8GB 1333MHz GK: Sapphire ATI Radeon HD 4870 Vapor-X 1GB DDR5 11133-16-20R HDD: WD Caviar Black 3.5" 640GB + externí WD 320GB
-
- nováček
- Příspěvky: 47
- Registrován: duben 12
- Pohlaví:
- Stav:
Offline
Re: PC - vyskakování stránek reklam
# AdwCleaner v3.017 - Report created 18/01/2014 at 14:01:27
# Updated 12/01/2014 by Xplode
# Operating System : Windows 7 Ultimate (64 bits)
# Username : DarkWerewolf - DARKWEREWOLF-PC
# Running from : C:\Users\DarkWerewolf\Desktop\adwcleaner.exe
# Option : Scan
***** [ Services ] *****
***** [ Files / Folders ] *****
File Found : C:\Users\DarkWerewolf\AppData\Roaming\Mozilla\Firefox\Profiles\2sc2jhfb.default\invalidprefs.js
File Found : C:\Users\DarkWerewolf\AppData\Roaming\Mozilla\Firefox\Profiles\2sc2jhfb.default\searchplugins\WebSearch.xml
File Found : C:\Windows\System32\Tasks\Scheduled Update for Ask Toolbar
Folder Found : C:\Users\DarkWerewolf\AppData\Roaming\Mozilla\Firefox\Profiles\2sc2jhfb.default\Extensions\{77d2ed30-4cd2-11e0-b8af-0800200c9a66}
Folder Found : C:\Users\DarkWerewolf\AppData\Roaming\Mozilla\Firefox\Profiles\2sc2jhfb.default\Extensions\oiiie@wgj-.org
Folder Found : C:\Users\DarkWerewolf\AppData\Roaming\Mozilla\Firefox\Profiles\2sc2jhfb.default\Extensions\r3uaiayy@qiiei.org
Folder Found C:\Program Files (x86)\Ask.com
Folder Found C:\Program Files (x86)\greeatsaver
Folder Found C:\Program Files (x86)\TornTV.com
Folder Found C:\Program Files (x86)\YoutubeAdblocker
Folder Found C:\ProgramData\Ask
Folder Found C:\ProgramData\Babylon
Folder Found C:\ProgramData\BrowserProtect
Folder Found C:\ProgramData\greeatsaver
Folder Found C:\ProgramData\Premium
Folder Found C:\ProgramData\YoutubeAdblocker
Folder Found C:\Users\Administrator\AppData\Local\torch
Folder Found C:\Users\Administrator\AppData\LocalLow\AskToolbar
Folder Found C:\Users\DarkWerewolf\AppData\Local\torch
Folder Found C:\Windows\installer\{86d4b82a-abed-442a-be86-96357b70f4fe}
***** [ Shortcuts ] *****
***** [ Registry ] *****
Data Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - c:\progra~3\browse~1\261125~1.80\{c16c1~1\browse~1.dll
Key Found : HKCU\Software\AppDataLow\Software\AskToolbar
Key Found : HKCU\Software\LiveSupport
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKCU\Software\OCS
Key Found : [x64] HKCU\Software\LiveSupport
Key Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
Key Found : [x64] HKCU\Software\OCS
Key Found : HKLM\Software\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{00000001-4FEF-40D3-B3FA-E0531B897F98}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{64697678-0000-0010-8000-00AA00389B71}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
Key Found : HKLM\SOFTWARE\Classes\Interface\{C66F0B7A-BD67-4982-AF71-C6CA6E7F016F}
Key Found : HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasapi32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasmancs
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\AskSLib_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\AskSLib_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\LiveSupport_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\LiveSupport_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\optprostart_rasapi32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\optprostart_rasmancs
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{4820778D-AB0D-6D18-C316-52A6A0E1D507}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{CA41BB14-E67B-1653-C57B-5CA99418A866}
Key Found : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{C66F0B7A-BD67-4982-AF71-C6CA6E7F016F}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Optimizer Pro_is1
Value Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [livesupport]
***** [ Browsers ] *****
-\\ Internet Explorer v8.0.7600.16385
-\\ Mozilla Firefox v11.0 (cs)
[ File : C:\Users\DarkWerewolf\AppData\Roaming\Mozilla\Firefox\Profiles\2sc2jhfb.default\prefs.js ]
Line Found : user_pref("browser.search.defaultenginename", "WebSearch");
Line Found : user_pref("browser.search.defaultenginename,S", "WebSearch");
Line Found : user_pref("browser.search.defaulturl", "hxxp://websearch.pur-esult.info/?pid=724&r=2014/01/16&hid=389674607513827350&lg=EN&cc=CZ&l=1&q=");
Line Found : user_pref("browser.search.order.1", "WebSearch");
Line Found : user_pref("browser.search.order.1,S", "WebSearch");
Line Found : user_pref("browser.search.selectedEngine", "WebSearch");
Line Found : user_pref("browser.search.selectedEngine,S", "WebSearch");
Line Found : user_pref("extensions.sSpGr4rgcP.scode", "(function(){try{if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};}catch(e){};if(window.self.location.protocol.indexOf('hxxp')>-1 && window[...]
Line Found : user_pref("extensions.sYrfX.scode", "(function(){try{if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};}catch(e){};if(window.self.location.hostname.indexOf('mail.')==-1)\r\n{try{for[...]
Line Found : user_pref("extensions.wrc.SearchRules.ask.com.style", ".WRCN {display:none} #yui-main .tsrc_vnru .title + .WRCN, #yui-main #teoma-results .title + .WRCN {display:inline !important; background: url(\"I[...]
Line Found : user_pref("extensions.wrc.SearchRules.ask.com.url", "^hxxp(s)?\\:\\/\\/(.+\\.)?ask\\.com\\/.*");
Line Found : user_pref("keyword.URL", "hxxp://websearch.pur-esult.info/?pid=724&r=2014/01/16&hid=389674607513827350&lg=EN&cc=CZ&l=1&q=");
*************************
AdwCleaner[R0].txt - [6991 octets] - [18/01/2014 13:54:55]
AdwCleaner[R1].txt - [6875 octets] - [18/01/2014 14:01:27]
########## EOF - C:\AdwCleaner\AdwCleaner[R1].txt - [6935 octets] ##########
# Updated 12/01/2014 by Xplode
# Operating System : Windows 7 Ultimate (64 bits)
# Username : DarkWerewolf - DARKWEREWOLF-PC
# Running from : C:\Users\DarkWerewolf\Desktop\adwcleaner.exe
# Option : Scan
***** [ Services ] *****
***** [ Files / Folders ] *****
File Found : C:\Users\DarkWerewolf\AppData\Roaming\Mozilla\Firefox\Profiles\2sc2jhfb.default\invalidprefs.js
File Found : C:\Users\DarkWerewolf\AppData\Roaming\Mozilla\Firefox\Profiles\2sc2jhfb.default\searchplugins\WebSearch.xml
File Found : C:\Windows\System32\Tasks\Scheduled Update for Ask Toolbar
Folder Found : C:\Users\DarkWerewolf\AppData\Roaming\Mozilla\Firefox\Profiles\2sc2jhfb.default\Extensions\{77d2ed30-4cd2-11e0-b8af-0800200c9a66}
Folder Found : C:\Users\DarkWerewolf\AppData\Roaming\Mozilla\Firefox\Profiles\2sc2jhfb.default\Extensions\oiiie@wgj-.org
Folder Found : C:\Users\DarkWerewolf\AppData\Roaming\Mozilla\Firefox\Profiles\2sc2jhfb.default\Extensions\r3uaiayy@qiiei.org
Folder Found C:\Program Files (x86)\Ask.com
Folder Found C:\Program Files (x86)\greeatsaver
Folder Found C:\Program Files (x86)\TornTV.com
Folder Found C:\Program Files (x86)\YoutubeAdblocker
Folder Found C:\ProgramData\Ask
Folder Found C:\ProgramData\Babylon
Folder Found C:\ProgramData\BrowserProtect
Folder Found C:\ProgramData\greeatsaver
Folder Found C:\ProgramData\Premium
Folder Found C:\ProgramData\YoutubeAdblocker
Folder Found C:\Users\Administrator\AppData\Local\torch
Folder Found C:\Users\Administrator\AppData\LocalLow\AskToolbar
Folder Found C:\Users\DarkWerewolf\AppData\Local\torch
Folder Found C:\Windows\installer\{86d4b82a-abed-442a-be86-96357b70f4fe}
***** [ Shortcuts ] *****
***** [ Registry ] *****
Data Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - c:\progra~3\browse~1\261125~1.80\{c16c1~1\browse~1.dll
Key Found : HKCU\Software\AppDataLow\Software\AskToolbar
Key Found : HKCU\Software\LiveSupport
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKCU\Software\OCS
Key Found : [x64] HKCU\Software\LiveSupport
Key Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
Key Found : [x64] HKCU\Software\OCS
Key Found : HKLM\Software\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{00000001-4FEF-40D3-B3FA-E0531B897F98}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{64697678-0000-0010-8000-00AA00389B71}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
Key Found : HKLM\SOFTWARE\Classes\Interface\{C66F0B7A-BD67-4982-AF71-C6CA6E7F016F}
Key Found : HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasapi32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasmancs
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\AskSLib_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\AskSLib_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\LiveSupport_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\LiveSupport_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\optprostart_rasapi32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\optprostart_rasmancs
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{4820778D-AB0D-6D18-C316-52A6A0E1D507}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{CA41BB14-E67B-1653-C57B-5CA99418A866}
Key Found : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{C66F0B7A-BD67-4982-AF71-C6CA6E7F016F}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Optimizer Pro_is1
Value Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [livesupport]
***** [ Browsers ] *****
-\\ Internet Explorer v8.0.7600.16385
-\\ Mozilla Firefox v11.0 (cs)
[ File : C:\Users\DarkWerewolf\AppData\Roaming\Mozilla\Firefox\Profiles\2sc2jhfb.default\prefs.js ]
Line Found : user_pref("browser.search.defaultenginename", "WebSearch");
Line Found : user_pref("browser.search.defaultenginename,S", "WebSearch");
Line Found : user_pref("browser.search.defaulturl", "hxxp://websearch.pur-esult.info/?pid=724&r=2014/01/16&hid=389674607513827350&lg=EN&cc=CZ&l=1&q=");
Line Found : user_pref("browser.search.order.1", "WebSearch");
Line Found : user_pref("browser.search.order.1,S", "WebSearch");
Line Found : user_pref("browser.search.selectedEngine", "WebSearch");
Line Found : user_pref("browser.search.selectedEngine,S", "WebSearch");
Line Found : user_pref("extensions.sSpGr4rgcP.scode", "(function(){try{if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};}catch(e){};if(window.self.location.protocol.indexOf('hxxp')>-1 && window[...]
Line Found : user_pref("extensions.sYrfX.scode", "(function(){try{if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};}catch(e){};if(window.self.location.hostname.indexOf('mail.')==-1)\r\n{try{for[...]
Line Found : user_pref("extensions.wrc.SearchRules.ask.com.style", ".WRCN {display:none} #yui-main .tsrc_vnru .title + .WRCN, #yui-main #teoma-results .title + .WRCN {display:inline !important; background: url(\"I[...]
Line Found : user_pref("extensions.wrc.SearchRules.ask.com.url", "^hxxp(s)?\\:\\/\\/(.+\\.)?ask\\.com\\/.*");
Line Found : user_pref("keyword.URL", "hxxp://websearch.pur-esult.info/?pid=724&r=2014/01/16&hid=389674607513827350&lg=EN&cc=CZ&l=1&q=");
*************************
AdwCleaner[R0].txt - [6991 octets] - [18/01/2014 13:54:55]
AdwCleaner[R1].txt - [6875 octets] - [18/01/2014 14:01:27]
########## EOF - C:\AdwCleaner\AdwCleaner[R1].txt - [6935 octets] ##########
ZD: Gigabyte GA-PH67A-D3-B3 (rev.1.0) CPU: Intel Core i5-2320 3GHz BOX Chladič: Arctic Freezer 7 Pro Rev.2 Zdroj: Seasonic SS-500ET-F3 500W OEM OP:Kingston HyperX Blu 8GB 1333MHz GK: Sapphire ATI Radeon HD 4870 Vapor-X 1GB DDR5 11133-16-20R HDD: WD Caviar Black 3.5" 640GB + externí WD 320GB
-
- nováček
- Příspěvky: 47
- Registrován: duben 12
- Pohlaví:
- Stav:
Offline
Re: PC - vyskakování stránek reklam
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.0 (01.07.2014:1)
OS: Windows 7 Ultimate x64
Ran by DarkWerewolf on so 18.01.2014 at 14:45:24,44
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
Successfully deleted: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\livesupport
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows\\AppInit_DLLs
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\livesupport
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-3689603141-1990402863-4256546215-1000\Software\sweetim
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\caphyon
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\installer\upgradecodes\f928123a039649549966d4c29d35b1c9
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\apnstub_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\apnstub_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\askpartnercobrandingtool_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\askpartnercobrandingtool_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\livesupport_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\livesupport_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\optprostart_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\optprostart_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskSLib_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskSLib_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\AskSLib_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\AskSLib_RASMANCS
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{590AEAB8-AFF4-FB62-85F7-D4270A615E77}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{590AEAB8-AFF4-FB62-85F7-D4270A615E77}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{590AEAB8-AFF4-FB62-85F7-D4270A615E77}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{99B80A54-2B29-1BD1-3401-A9E97CF3C478}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{99B80A54-2B29-1BD1-3401-A9E97CF3C478}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{99B80A54-2B29-1BD1-3401-A9E97CF3C478}
Successfully deleted: [Registry Key] "hkey_current_user\software\appdatalow\software\asktoolbar"
~~~ Files
~~~ Folders
Successfully deleted: [Folder] "C:\ProgramData\babylon"
Successfully deleted: [Folder] "C:\ProgramData\browserprotect"
Successfully deleted: [Folder] "C:\ProgramData\premium"
Successfully deleted: [Folder] "C:\ProgramData\youtubeadblocker"
Successfully deleted: [Folder] "C:\Users\DarkWerewolf\appdata\local\torch"
Successfully deleted: [Folder] "C:\Program Files (x86)\torntv.com"
Successfully deleted: [Folder] "C:\Program Files (x86)\youtubeadblocker"
Successfully deleted: [Folder] "C:\ProgramData\ask"
Successfully deleted: [Folder] "C:\Program Files (x86)\ask.com"
Successfully deleted: [Folder] "C:\Windows\installer\{86d4b82a-abed-442a-be86-96357b70f4fe}"
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on so 18.01.2014 at 14:51:33,59
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.0 (01.07.2014:1)
OS: Windows 7 Ultimate x64
Ran by DarkWerewolf on so 18.01.2014 at 14:45:24,44
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
Successfully deleted: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\livesupport
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows\\AppInit_DLLs
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\livesupport
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-3689603141-1990402863-4256546215-1000\Software\sweetim
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\caphyon
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\installer\upgradecodes\f928123a039649549966d4c29d35b1c9
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\apnstub_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\apnstub_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\askpartnercobrandingtool_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\askpartnercobrandingtool_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\livesupport_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\livesupport_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\optprostart_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\optprostart_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskSLib_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskSLib_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\AskSLib_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\AskSLib_RASMANCS
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{590AEAB8-AFF4-FB62-85F7-D4270A615E77}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{590AEAB8-AFF4-FB62-85F7-D4270A615E77}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{590AEAB8-AFF4-FB62-85F7-D4270A615E77}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{99B80A54-2B29-1BD1-3401-A9E97CF3C478}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{99B80A54-2B29-1BD1-3401-A9E97CF3C478}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{99B80A54-2B29-1BD1-3401-A9E97CF3C478}
Successfully deleted: [Registry Key] "hkey_current_user\software\appdatalow\software\asktoolbar"
~~~ Files
~~~ Folders
Successfully deleted: [Folder] "C:\ProgramData\babylon"
Successfully deleted: [Folder] "C:\ProgramData\browserprotect"
Successfully deleted: [Folder] "C:\ProgramData\premium"
Successfully deleted: [Folder] "C:\ProgramData\youtubeadblocker"
Successfully deleted: [Folder] "C:\Users\DarkWerewolf\appdata\local\torch"
Successfully deleted: [Folder] "C:\Program Files (x86)\torntv.com"
Successfully deleted: [Folder] "C:\Program Files (x86)\youtubeadblocker"
Successfully deleted: [Folder] "C:\ProgramData\ask"
Successfully deleted: [Folder] "C:\Program Files (x86)\ask.com"
Successfully deleted: [Folder] "C:\Windows\installer\{86d4b82a-abed-442a-be86-96357b70f4fe}"
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on so 18.01.2014 at 14:51:33,59
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
ZD: Gigabyte GA-PH67A-D3-B3 (rev.1.0) CPU: Intel Core i5-2320 3GHz BOX Chladič: Arctic Freezer 7 Pro Rev.2 Zdroj: Seasonic SS-500ET-F3 500W OEM OP:Kingston HyperX Blu 8GB 1333MHz GK: Sapphire ATI Radeon HD 4870 Vapor-X 1GB DDR5 11133-16-20R HDD: WD Caviar Black 3.5" 640GB + externí WD 320GB
-
- nováček
- Příspěvky: 47
- Registrován: duben 12
- Pohlaví:
- Stav:
Offline
Re: PC - vyskakování stránek reklam
Omlouvám se že jsem to sem vložil později, nebyl jsem u PC a musel jsem něco dělat.
ZD: Gigabyte GA-PH67A-D3-B3 (rev.1.0) CPU: Intel Core i5-2320 3GHz BOX Chladič: Arctic Freezer 7 Pro Rev.2 Zdroj: Seasonic SS-500ET-F3 500W OEM OP:Kingston HyperX Blu 8GB 1333MHz GK: Sapphire ATI Radeon HD 4870 Vapor-X 1GB DDR5 11133-16-20R HDD: WD Caviar Black 3.5" 640GB + externí WD 320GB
- memphisto
- Guru Level 13
- Příspěvky: 21113
- Registrován: září 06
- Bydliště: Zlín - České Budějovice
- Pohlaví:
- Stav:
Offline
Re: PC - vyskakování stránek reklam
V Mbam i adw nech všechno smazat a dodej logy
Stáhni si RogueKiller
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit
-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
Stáhni si RogueKiller
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit
-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji
-
- nováček
- Příspěvky: 47
- Registrován: duben 12
- Pohlaví:
- Stav:
Offline
Re: PC - vyskakování stránek reklam
# AdwCleaner v3.017 - Report created 18/01/2014 at 23:50:17
# Updated 12/01/2014 by Xplode
# Operating System : Windows 7 Ultimate (64 bits)
# Username : DarkWerewolf - DARKWEREWOLF-PC
# Running from : C:\Users\DarkWerewolf\Desktop\adwcleaner.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
[!] Folder Deleted : C:\ProgramData\greeatsaver
[!] Folder Deleted : C:\Program Files (x86)\greeatsaver
[!] Folder Deleted : C:\Users\Administrator\AppData\Local\torch
[!] Folder Deleted : C:\Users\Administrator\AppData\LocalLow\AskToolbar
[!] Folder Deleted : C:\Users\DarkWerewolf\AppData\Roaming\Mozilla\Firefox\Profiles\2sc2jhfb.default\Extensions\oiiie@wgj-.org
[!] Folder Deleted : C:\Users\DarkWerewolf\AppData\Roaming\Mozilla\Firefox\Profiles\2sc2jhfb.default\Extensions\r3uaiayy@qiiei.org
[!] Folder Deleted : C:\Users\DarkWerewolf\AppData\Roaming\Mozilla\Firefox\Profiles\2sc2jhfb.default\Extensions\{77d2ed30-4cd2-11e0-b8af-0800200c9a66}
File Deleted : C:\Users\DarkWerewolf\AppData\Roaming\Mozilla\Firefox\Profiles\2sc2jhfb.default\invalidprefs.js
File Deleted : C:\Users\DarkWerewolf\AppData\Roaming\Mozilla\Firefox\Profiles\2sc2jhfb.default\searchplugins\WebSearch.xml
File Deleted : C:\Windows\System32\Tasks\Scheduled Update for Ask Toolbar
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{00000001-4FEF-40D3-B3FA-E0531B897F98}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{64697678-0000-0010-8000-00AA00389B71}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C66F0B7A-BD67-4982-AF71-C6CA6E7F016F}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{C66F0B7A-BD67-4982-AF71-C6CA6E7F016F}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\OCS
Key Deleted : HKLM\Software\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{4820778D-AB0D-6D18-C316-52A6A0E1D507}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Optimizer Pro_is1
***** [ Browsers ] *****
-\\ Internet Explorer v8.0.7600.16385
-\\ Mozilla Firefox v11.0 (cs)
[ File : C:\Users\DarkWerewolf\AppData\Roaming\Mozilla\Firefox\Profiles\2sc2jhfb.default\prefs.js ]
Line Deleted : user_pref("browser.search.defaultenginename", "WebSearch");
Line Deleted : user_pref("browser.search.defaultenginename,S", "WebSearch");
Line Deleted : user_pref("browser.search.defaulturl", "hxxp://websearch.pur-esult.info/?pid=724&r=2014/01/16&hid=389674607513827350&lg=EN&cc=CZ&l=1&q=");
Line Deleted : user_pref("browser.search.order.1", "WebSearch");
Line Deleted : user_pref("browser.search.order.1,S", "WebSearch");
Line Deleted : user_pref("browser.search.selectedEngine", "WebSearch");
Line Deleted : user_pref("browser.search.selectedEngine,S", "WebSearch");
Line Deleted : user_pref("extensions.sSpGr4rgcP.scode", "(function(){try{if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};}catch(e){};if(window.self.location.protocol.indexOf('hxxp')>-1 && window[...]
Line Deleted : user_pref("extensions.sYrfX.scode", "(function(){try{if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};}catch(e){};if(window.self.location.hostname.indexOf('mail.')==-1)\r\n{try{for[...]
Line Deleted : user_pref("extensions.wrc.SearchRules.ask.com.style", ".WRCN {display:none} #yui-main .tsrc_vnru .title + .WRCN, #yui-main #teoma-results .title + .WRCN {display:inline !important; background: url(\"I[...]
Line Deleted : user_pref("extensions.wrc.SearchRules.ask.com.url", "^hxxp(s)?\\:\\/\\/(.+\\.)?ask\\.com\\/.*");
Line Deleted : user_pref("keyword.URL", "hxxp://websearch.pur-esult.info/?pid=724&r=2014/01/16&hid=389674607513827350&lg=EN&cc=CZ&l=1&q=");
*************************
AdwCleaner[R0].txt - [11932 octets] - [18/01/2014 13:54:55]
AdwCleaner[R1].txt - [7051 octets] - [18/01/2014 14:01:27]
AdwCleaner[S0].txt - [4916 octets] - [18/01/2014 23:50:17]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [4976 octets] ##########
Malwarebytes Anti-Malware (Trial) 1.75.0.1300
www.malwarebytes.org
Database version: v2014.01.18.06
Windows 7 x64 NTFS
Internet Explorer 8.0.7600.16385
DarkWerewolf :: DARKWEREWOLF-PC [administrator]
Protection: Disabled
18.1.2014 23:55:26
mbam-log-2014-01-18 (23-55-26).txt
Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 233749
Time elapsed: 2 minute(s), 38 second(s)
Memory Processes Detected: 0
(No malicious items detected)
Memory Modules Detected: 0
(No malicious items detected)
Registry Keys Detected: 0
(No malicious items detected)
Registry Values Detected: 0
(No malicious items detected)
Registry Data Items Detected: 0
(No malicious items detected)
Folders Detected: 0
(No malicious items detected)
Files Detected: 0
(No malicious items detected)
(end)
# Updated 12/01/2014 by Xplode
# Operating System : Windows 7 Ultimate (64 bits)
# Username : DarkWerewolf - DARKWEREWOLF-PC
# Running from : C:\Users\DarkWerewolf\Desktop\adwcleaner.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
[!] Folder Deleted : C:\ProgramData\greeatsaver
[!] Folder Deleted : C:\Program Files (x86)\greeatsaver
[!] Folder Deleted : C:\Users\Administrator\AppData\Local\torch
[!] Folder Deleted : C:\Users\Administrator\AppData\LocalLow\AskToolbar
[!] Folder Deleted : C:\Users\DarkWerewolf\AppData\Roaming\Mozilla\Firefox\Profiles\2sc2jhfb.default\Extensions\oiiie@wgj-.org
[!] Folder Deleted : C:\Users\DarkWerewolf\AppData\Roaming\Mozilla\Firefox\Profiles\2sc2jhfb.default\Extensions\r3uaiayy@qiiei.org
[!] Folder Deleted : C:\Users\DarkWerewolf\AppData\Roaming\Mozilla\Firefox\Profiles\2sc2jhfb.default\Extensions\{77d2ed30-4cd2-11e0-b8af-0800200c9a66}
File Deleted : C:\Users\DarkWerewolf\AppData\Roaming\Mozilla\Firefox\Profiles\2sc2jhfb.default\invalidprefs.js
File Deleted : C:\Users\DarkWerewolf\AppData\Roaming\Mozilla\Firefox\Profiles\2sc2jhfb.default\searchplugins\WebSearch.xml
File Deleted : C:\Windows\System32\Tasks\Scheduled Update for Ask Toolbar
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{00000001-4FEF-40D3-B3FA-E0531B897F98}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{64697678-0000-0010-8000-00AA00389B71}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C66F0B7A-BD67-4982-AF71-C6CA6E7F016F}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{C66F0B7A-BD67-4982-AF71-C6CA6E7F016F}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\OCS
Key Deleted : HKLM\Software\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{4820778D-AB0D-6D18-C316-52A6A0E1D507}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Optimizer Pro_is1
***** [ Browsers ] *****
-\\ Internet Explorer v8.0.7600.16385
-\\ Mozilla Firefox v11.0 (cs)
[ File : C:\Users\DarkWerewolf\AppData\Roaming\Mozilla\Firefox\Profiles\2sc2jhfb.default\prefs.js ]
Line Deleted : user_pref("browser.search.defaultenginename", "WebSearch");
Line Deleted : user_pref("browser.search.defaultenginename,S", "WebSearch");
Line Deleted : user_pref("browser.search.defaulturl", "hxxp://websearch.pur-esult.info/?pid=724&r=2014/01/16&hid=389674607513827350&lg=EN&cc=CZ&l=1&q=");
Line Deleted : user_pref("browser.search.order.1", "WebSearch");
Line Deleted : user_pref("browser.search.order.1,S", "WebSearch");
Line Deleted : user_pref("browser.search.selectedEngine", "WebSearch");
Line Deleted : user_pref("browser.search.selectedEngine,S", "WebSearch");
Line Deleted : user_pref("extensions.sSpGr4rgcP.scode", "(function(){try{if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};}catch(e){};if(window.self.location.protocol.indexOf('hxxp')>-1 && window[...]
Line Deleted : user_pref("extensions.sYrfX.scode", "(function(){try{if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};}catch(e){};if(window.self.location.hostname.indexOf('mail.')==-1)\r\n{try{for[...]
Line Deleted : user_pref("extensions.wrc.SearchRules.ask.com.style", ".WRCN {display:none} #yui-main .tsrc_vnru .title + .WRCN, #yui-main #teoma-results .title + .WRCN {display:inline !important; background: url(\"I[...]
Line Deleted : user_pref("extensions.wrc.SearchRules.ask.com.url", "^hxxp(s)?\\:\\/\\/(.+\\.)?ask\\.com\\/.*");
Line Deleted : user_pref("keyword.URL", "hxxp://websearch.pur-esult.info/?pid=724&r=2014/01/16&hid=389674607513827350&lg=EN&cc=CZ&l=1&q=");
*************************
AdwCleaner[R0].txt - [11932 octets] - [18/01/2014 13:54:55]
AdwCleaner[R1].txt - [7051 octets] - [18/01/2014 14:01:27]
AdwCleaner[S0].txt - [4916 octets] - [18/01/2014 23:50:17]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [4976 octets] ##########
Malwarebytes Anti-Malware (Trial) 1.75.0.1300
www.malwarebytes.org
Database version: v2014.01.18.06
Windows 7 x64 NTFS
Internet Explorer 8.0.7600.16385
DarkWerewolf :: DARKWEREWOLF-PC [administrator]
Protection: Disabled
18.1.2014 23:55:26
mbam-log-2014-01-18 (23-55-26).txt
Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 233749
Time elapsed: 2 minute(s), 38 second(s)
Memory Processes Detected: 0
(No malicious items detected)
Memory Modules Detected: 0
(No malicious items detected)
Registry Keys Detected: 0
(No malicious items detected)
Registry Values Detected: 0
(No malicious items detected)
Registry Data Items Detected: 0
(No malicious items detected)
Folders Detected: 0
(No malicious items detected)
Files Detected: 0
(No malicious items detected)
(end)
ZD: Gigabyte GA-PH67A-D3-B3 (rev.1.0) CPU: Intel Core i5-2320 3GHz BOX Chladič: Arctic Freezer 7 Pro Rev.2 Zdroj: Seasonic SS-500ET-F3 500W OEM OP:Kingston HyperX Blu 8GB 1333MHz GK: Sapphire ATI Radeon HD 4870 Vapor-X 1GB DDR5 11133-16-20R HDD: WD Caviar Black 3.5" 640GB + externí WD 320GB
-
- nováček
- Příspěvky: 47
- Registrován: duben 12
- Pohlaví:
- Stav:
Offline
Re: PC - vyskakování stránek reklam
RogueKiller V8.8.2 _x64_ [Jan 17 2014] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.adlice.com/forum/
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com
Operační systém : Windows 7 (6.1.7600 ) 64 bits version
Spuštěno v : Normální režim
Uživatel : DarkWerewolf [Práva správce]
Mód : Kontrola -- Datum : 01/19/2014 00:05:14
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 0 ¤¤¤
¤¤¤ ¤¤¤ Záznamy Registrů: : 7 ¤¤¤
[DNS][PUM] HKLM\[...]\CCSet\[...]\{D8077A3B-51E5-4DB0-B9A9-2966F554DCBE} : NameServer (8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1 [UNITED STATES (US) - UNITED STATES (US) - UNITED STATES (US) - UNITED STATES (US) - UNITED STATES (US) - UNITED STATES (US) - UNITED STATES (US) - UNITED STATES (US) - PHILIPPINES (PH) - UNITED STATES (US)]) -> NALEZENO
[DNS][PUM] HKLM\[...]\CS001\[...]\{D8077A3B-51E5-4DB0-B9A9-2966F554DCBE} : NameServer (8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1 [UNITED STATES (US) - UNITED STATES (US) - UNITED STATES (US) - UNITED STATES (US) - UNITED STATES (US) - UNITED STATES (US) - UNITED STATES (US) - UNITED STATES (US) - PHILIPPINES (PH) - UNITED STATES (US)]) -> NALEZENO
[DNS][PUM] HKLM\[...]\CS002\[...]\{D8077A3B-51E5-4DB0-B9A9-2966F554DCBE} : NameServer (8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1 [UNITED STATES (US) - UNITED STATES (US) - UNITED STATES (US) - UNITED STATES (US) - UNITED STATES (US) - UNITED STATES (US) - UNITED STATES (US) - UNITED STATES (US) - PHILIPPINES (PH) - UNITED STATES (US)]) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO
¤¤¤ naplánované úlohy : 0 ¤¤¤
¤¤¤ spuštění položky : 1 ¤¤¤
[DarkWerewolf][SUSP UNIC] Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk : C:\Users\DarkWerewolf\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk [-] -> NALEZENO
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Browser Addons : 0 ¤¤¤
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
¤¤¤ Ovladač : [NENAHRÁNO 0x0] ¤¤¤
¤¤¤ Externí včelstvo: ¤¤¤
¤¤¤ Nákaza : ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts
¤¤¤ Kontrola MBR: ¤¤¤
+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) ST2000DM001-1CH164 ATA Device +++++
--- User ---
[MBR] bf41439ebef9126339c98814c48c2c76
[BSP] 35639d0f6ab84e4b4b9ab29b0a633d3b : Windows 7/8 MBR Code
Partition table:
0 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 1907727 Mo
User = LL1 ... OK!
User = LL2 ... OK!
+++++ PhysicalDrive1: (\\.\PHYSICALDRIVE1 @ IDE) WDC WD6401AALS-00L3B2 ATA Device +++++
--- User ---
[MBR] 4bf7beb2629d0ce6340dd28fced78608
[BSP] 3ec41d6096dfe42b66019cb4ce91c663 : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 100 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 206848 | Size: 49900 Mo
2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 102402048 | Size: 560476 Mo
User = LL1 ... OK!
User = LL2 ... OK!
+++++ PhysicalDrive2: (\\.\PHYSICALDRIVE2 @ USB) WD 3200BMV External USB Device +++++
--- User ---
[MBR] d4b165d9e1b403aecbee87962ab56abd
[BSP] 0aa7b47126457242ae67ea791b49585d : Windows XP MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 63 | Size: 305234 Mo
User = LL1 ... OK!
Error reading LL2 MBR! ([0x32] Po?adavek není podporován. )
Dokončeno : << RKreport[0]_S_01192014_000514.txt >>
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.adlice.com/forum/
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com
Operační systém : Windows 7 (6.1.7600 ) 64 bits version
Spuštěno v : Normální režim
Uživatel : DarkWerewolf [Práva správce]
Mód : Kontrola -- Datum : 01/19/2014 00:05:14
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 0 ¤¤¤
¤¤¤ ¤¤¤ Záznamy Registrů: : 7 ¤¤¤
[DNS][PUM] HKLM\[...]\CCSet\[...]\{D8077A3B-51E5-4DB0-B9A9-2966F554DCBE} : NameServer (8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1 [UNITED STATES (US) - UNITED STATES (US) - UNITED STATES (US) - UNITED STATES (US) - UNITED STATES (US) - UNITED STATES (US) - UNITED STATES (US) - UNITED STATES (US) - PHILIPPINES (PH) - UNITED STATES (US)]) -> NALEZENO
[DNS][PUM] HKLM\[...]\CS001\[...]\{D8077A3B-51E5-4DB0-B9A9-2966F554DCBE} : NameServer (8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1 [UNITED STATES (US) - UNITED STATES (US) - UNITED STATES (US) - UNITED STATES (US) - UNITED STATES (US) - UNITED STATES (US) - UNITED STATES (US) - UNITED STATES (US) - PHILIPPINES (PH) - UNITED STATES (US)]) -> NALEZENO
[DNS][PUM] HKLM\[...]\CS002\[...]\{D8077A3B-51E5-4DB0-B9A9-2966F554DCBE} : NameServer (8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1 [UNITED STATES (US) - UNITED STATES (US) - UNITED STATES (US) - UNITED STATES (US) - UNITED STATES (US) - UNITED STATES (US) - UNITED STATES (US) - UNITED STATES (US) - PHILIPPINES (PH) - UNITED STATES (US)]) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO
¤¤¤ naplánované úlohy : 0 ¤¤¤
¤¤¤ spuštění položky : 1 ¤¤¤
[DarkWerewolf][SUSP UNIC] Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk : C:\Users\DarkWerewolf\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk [-] -> NALEZENO
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Browser Addons : 0 ¤¤¤
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
¤¤¤ Ovladač : [NENAHRÁNO 0x0] ¤¤¤
¤¤¤ Externí včelstvo: ¤¤¤
¤¤¤ Nákaza : ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts
¤¤¤ Kontrola MBR: ¤¤¤
+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) ST2000DM001-1CH164 ATA Device +++++
--- User ---
[MBR] bf41439ebef9126339c98814c48c2c76
[BSP] 35639d0f6ab84e4b4b9ab29b0a633d3b : Windows 7/8 MBR Code
Partition table:
0 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 1907727 Mo
User = LL1 ... OK!
User = LL2 ... OK!
+++++ PhysicalDrive1: (\\.\PHYSICALDRIVE1 @ IDE) WDC WD6401AALS-00L3B2 ATA Device +++++
--- User ---
[MBR] 4bf7beb2629d0ce6340dd28fced78608
[BSP] 3ec41d6096dfe42b66019cb4ce91c663 : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 100 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 206848 | Size: 49900 Mo
2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 102402048 | Size: 560476 Mo
User = LL1 ... OK!
User = LL2 ... OK!
+++++ PhysicalDrive2: (\\.\PHYSICALDRIVE2 @ USB) WD 3200BMV External USB Device +++++
--- User ---
[MBR] d4b165d9e1b403aecbee87962ab56abd
[BSP] 0aa7b47126457242ae67ea791b49585d : Windows XP MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 63 | Size: 305234 Mo
User = LL1 ... OK!
Error reading LL2 MBR! ([0x32] Po?adavek není podporován. )
Dokončeno : << RKreport[0]_S_01192014_000514.txt >>
ZD: Gigabyte GA-PH67A-D3-B3 (rev.1.0) CPU: Intel Core i5-2320 3GHz BOX Chladič: Arctic Freezer 7 Pro Rev.2 Zdroj: Seasonic SS-500ET-F3 500W OEM OP:Kingston HyperX Blu 8GB 1333MHz GK: Sapphire ATI Radeon HD 4870 Vapor-X 1GB DDR5 11133-16-20R HDD: WD Caviar Black 3.5" 640GB + externí WD 320GB
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: PC - vyskakování stránek reklam
Zavři všechny programy a prohlížeče. Deaktivuj antivir a firewall.
Prosím, odpoj všechny USB nebo externí disky z počítače před spuštěním tohoto programu.
Spusť RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Počkej, dokud status okno zobrazuje "Prohledat "
- Klikni na "Smazat"
- Počkej, dokud Status box zobrazuje " Mazání dokončeno "
- Klikni na "Zpráva " a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [číslo]. txt na ploše.
- Zavři RogueKiller
Stáhni si TDSSKiller
Na svojí plochu.Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller. 2.8.16.0_(datum)_log.txt , vlož sem prosím celý obsah logu.
Doinstaluj si SP1.
Prosím, odpoj všechny USB nebo externí disky z počítače před spuštěním tohoto programu.
Spusť RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Počkej, dokud status okno zobrazuje "Prohledat "
- Klikni na "Smazat"
- Počkej, dokud Status box zobrazuje " Mazání dokončeno "
- Klikni na "Zpráva " a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [číslo]. txt na ploše.
- Zavři RogueKiller
Stáhni si TDSSKiller
Na svojí plochu.Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller. 2.8.16.0_(datum)_log.txt , vlož sem prosím celý obsah logu.
Doinstaluj si SP1.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
-
- nováček
- Příspěvky: 47
- Registrován: duben 12
- Pohlaví:
- Stav:
Offline
Re: PC - vyskakování stránek reklam
14:05:09.0001 2028 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
14:07:02.0478 2028 ============================================================
14:07:02.0478 2028 Current date / time: 2014/01/19 14:07:02.0478
14:07:02.0478 2028 SystemInfo:
14:07:02.0478 2028
14:07:02.0478 2028 OS Version: 6.1.7600 ServicePack: 0.0
14:07:02.0478 2028 Product type: Workstation
14:07:02.0478 2028 ComputerName: DARKWEREWOLF-PC
14:07:02.0478 2028 UserName: DarkWerewolf
14:07:02.0478 2028 Windows directory: C:\Windows
14:07:02.0478 2028 System windows directory: C:\Windows
14:07:02.0478 2028 Running under WOW64
14:07:02.0478 2028 Processor architecture: Intel x64
14:07:02.0478 2028 Number of processors: 4
14:07:02.0479 2028 Page size: 0x1000
14:07:02.0479 2028 Boot type: Normal boot
14:07:02.0479 2028 ============================================================
14:07:03.0233 2028 Drive \Device\Harddisk0\DR0 - Size: 0x950AF4DE00 (596.17 Gb), SectorSize: 0x200, Cylinders: 0x47B84, SectorsPerTrack: 0x13, TracksPerCylinder: 0xE0, Type 'K0', Flags 0x00000040
14:07:03.0468 2028 Drive \Device\Harddisk1\DR1 - Size: 0x1D1C1116000 (1863.02 Gb), SectorSize: 0x200, Cylinders: 0x3B601, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
14:07:03.0488 2028 Drive \Device\Harddisk2\DR2 - Size: 0x4A85D56000 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
14:07:07.0336 2028 ============================================================
14:07:07.0336 2028 \Device\Harddisk0\DR0:
14:07:07.0342 2028 MBR partitions:
14:07:07.0342 2028 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
14:07:07.0342 2028 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x6176000
14:07:07.0342 2028 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x61A8800, BlocksNum 0x446AE000
14:07:07.0342 2028 \Device\Harddisk1\DR1:
14:07:07.0342 2028 MBR partitions:
14:07:07.0342 2028 \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0xE8E07800
14:07:07.0342 2028 \Device\Harddisk2\DR2:
14:07:07.0343 2028 MBR partitions:
14:07:07.0343 2028 \Device\Harddisk2\DR2\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x254297C1
14:07:07.0343 2028 ============================================================
14:07:07.0358 2028 C: <-> \Device\Harddisk0\DR0\Partition2
14:07:07.0372 2028 D: <-> \Device\Harddisk0\DR0\Partition3
14:07:07.0461 2028 H: <-> \Device\Harddisk2\DR2\Partition1
14:07:07.0483 2028 E: <-> \Device\Harddisk1\DR1\Partition1
14:07:07.0483 2028 ============================================================
14:07:07.0484 2028 Initialize success
14:07:07.0484 2028 ============================================================
14:07:09.0374 4268 ============================================================
14:07:09.0374 4268 Scan started
14:07:09.0374 4268 Mode: Manual;
14:07:09.0374 4268 ============================================================
14:07:09.0723 4268 ================ Scan system memory ========================
14:07:09.0723 4268 System memory - ok
14:07:09.0723 4268 ================ Scan services =============================
14:07:09.0854 4268 [ 1B00662092F9F9568B995902F0CC40D5 ] 1394ohci C:\Windows\system32\DRIVERS\1394ohci.sys
14:07:09.0857 4268 1394ohci - ok
14:07:09.0893 4268 [ A0E3452CBFF4AD4D9B82A98BEBF476A3 ] 3xHybr64 C:\Windows\system32\DRIVERS\3xHybr64.sys
14:07:09.0904 4268 3xHybr64 - ok
14:07:09.0969 4268 [ ADC420616C501B45D26C0FD3EF1E54E4 ] ACDaemon C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
14:07:09.0970 4268 ACDaemon - ok
14:07:09.0991 4268 [ 6F11E88748CDEFD2F76AA215F97DDFE5 ] ACPI C:\Windows\system32\DRIVERS\ACPI.sys
14:07:09.0994 4268 ACPI - ok
14:07:10.0001 4268 [ 63B05A0420CE4BF0E4AF6DCC7CADA254 ] AcpiPmi C:\Windows\system32\DRIVERS\acpipmi.sys
14:07:10.0002 4268 AcpiPmi - ok
14:07:10.0116 4268 [ 1BA1AB4141A92EB34DA99F1249CA2D4D ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
14:07:10.0117 4268 AdobeFlashPlayerUpdateSvc - ok
14:07:10.0145 4268 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys
14:07:10.0149 4268 adp94xx - ok
14:07:10.0170 4268 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys
14:07:10.0173 4268 adpahci - ok
14:07:10.0180 4268 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys
14:07:10.0182 4268 adpu320 - ok
14:07:10.0197 4268 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
14:07:10.0198 4268 AeLookupSvc - ok
14:07:10.0228 4268 [ B9384E03479D2506BC924C16A3DB87BC ] AFD C:\Windows\system32\drivers\afd.sys
14:07:10.0233 4268 AFD - ok
14:07:10.0245 4268 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\DRIVERS\agp440.sys
14:07:10.0246 4268 agp440 - ok
14:07:10.0255 4268 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe
14:07:10.0256 4268 ALG - ok
14:07:10.0261 4268 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\DRIVERS\aliide.sys
14:07:10.0262 4268 aliide - ok
14:07:10.0281 4268 [ 0A098B01D485E6978C596420C5179E98 ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe
14:07:10.0282 4268 AMD External Events Utility - ok
14:07:10.0294 4268 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\DRIVERS\amdide.sys
14:07:10.0295 4268 amdide - ok
14:07:10.0306 4268 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
14:07:10.0307 4268 AmdK8 - ok
14:07:10.0473 4268 [ B13F0B5859EA6CE01C1DD847E7E50C39 ] amdkmdag C:\Windows\system32\DRIVERS\atikmdag.sys
14:07:10.0634 4268 amdkmdag - ok
14:07:10.0650 4268 [ 48C7EFC581E0E37DD967A5BCC0AB33EF ] amdkmdap C:\Windows\system32\DRIVERS\atikmpag.sys
14:07:10.0652 4268 amdkmdap - ok
14:07:10.0671 4268 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
14:07:10.0672 4268 AmdPPM - ok
14:07:10.0689 4268 [ 7A4B413614C055935567CF88A9734D38 ] amdsata C:\Windows\system32\DRIVERS\amdsata.sys
14:07:10.0691 4268 amdsata - ok
14:07:10.0708 4268 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys
14:07:10.0710 4268 amdsbs - ok
14:07:10.0716 4268 [ B4AD0CACBAB298671DD6F6EF7E20679D ] amdxata C:\Windows\system32\DRIVERS\amdxata.sys
14:07:10.0717 4268 amdxata - ok
14:07:10.0728 4268 [ 42FD751B27FA0E9C69BB39F39E409594 ] AppID C:\Windows\system32\drivers\appid.sys
14:07:10.0729 4268 AppID - ok
14:07:10.0739 4268 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll
14:07:10.0740 4268 AppIDSvc - ok
14:07:10.0753 4268 [ D065BE66822847B7F127D1F90158376E ] Appinfo C:\Windows\System32\appinfo.dll
14:07:10.0754 4268 Appinfo - ok
14:07:10.0783 4268 [ 4ABA3E75A76195A3E38ED2766C962899 ] AppMgmt C:\Windows\System32\appmgmts.dll
14:07:10.0785 4268 AppMgmt - ok
14:07:10.0798 4268 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\DRIVERS\arc.sys
14:07:10.0799 4268 arc - ok
14:07:10.0802 4268 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys
14:07:10.0803 4268 arcsas - ok
14:07:10.0837 4268 [ 9F34AA1124EEA112E49E48258B1D6394 ] aswFsBlk C:\Windows\system32\drivers\aswFsBlk.sys
14:07:10.0837 4268 aswFsBlk - ok
14:07:10.0851 4268 [ 6B91E6D483AADB3FC4E13E2355200611 ] aswKbd C:\Windows\system32\drivers\aswKbd.sys
14:07:10.0851 4268 aswKbd - ok
14:07:10.0875 4268 [ 5C49AB607897C94E123EC8364FF4BF61 ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
14:07:10.0876 4268 aswMonFlt - ok
14:07:10.0893 4268 [ 679712B7A353EE665B9301592164A172 ] aswRdr C:\Windows\system32\drivers\aswRdr2.sys
14:07:10.0894 4268 aswRdr - ok
14:07:10.0944 4268 [ C04F7B373881009D7994D9BF55D24AB4 ] aswRvrt C:\Windows\system32\drivers\aswRvrt.sys
14:07:10.0945 4268 aswRvrt - ok
14:07:10.0979 4268 [ 1BA60C77EB3CDB6129DAD25BAF675F43 ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
14:07:10.0983 4268 aswSnx - ok
14:07:11.0012 4268 [ 79ADA401A6E2054F110E7FBDFAC71942 ] aswSP C:\Windows\system32\drivers\aswSP.sys
14:07:11.0013 4268 aswSP - ok
14:07:11.0016 4268 [ 6FFECAE6A7BF190D4A3D7AFA6D7B5478 ] aswTdi C:\Windows\system32\drivers\aswTdi.sys
14:07:11.0016 4268 aswTdi - ok
14:07:11.0023 4268 [ 59787B95DD9CA44CB139D96863438587 ] aswVmm C:\Windows\system32\drivers\aswVmm.sys
14:07:11.0025 4268 aswVmm - ok
14:07:11.0044 4268 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
14:07:11.0045 4268 AsyncMac - ok
14:07:11.0060 4268 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\DRIVERS\atapi.sys
14:07:11.0060 4268 atapi - ok
14:07:11.0082 4268 [ C647C19B70B4717106F6B59E80D6F38F ] AthBTPort C:\Windows\system32\DRIVERS\btath_flt.sys
14:07:11.0083 4268 AthBTPort - ok
14:07:11.0097 4268 [ 17D367AE1AD05852303A8BDFAB5D028B ] AthDfu C:\Windows\system32\Drivers\AthDfu.sys
14:07:11.0099 4268 AthDfu - ok
14:07:11.0138 4268 [ B0790FF0E25B7A2674296052F2162C1A ] AtiHDAudioService C:\Windows\system32\drivers\AtihdW76.sys
14:07:11.0139 4268 AtiHDAudioService - ok
14:07:11.0307 4268 [ B13F0B5859EA6CE01C1DD847E7E50C39 ] atikmdag C:\Windows\system32\DRIVERS\atikmdag.sys
14:07:11.0352 4268 atikmdag - ok
14:07:11.0367 4268 [ 07721A77180EDD4D39CCB865BF63C7FD ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
14:07:11.0373 4268 AudioEndpointBuilder - ok
14:07:11.0381 4268 [ 07721A77180EDD4D39CCB865BF63C7FD ] AudioSrv C:\Windows\System32\Audiosrv.dll
14:07:11.0384 4268 AudioSrv - ok
14:07:11.0419 4268 [ 4D41D30E2FAB3307967C7A0B045DC874 ] avast! Antivirus D:\Programs\Avast! free\AvastSvc.exe
14:07:11.0420 4268 avast! Antivirus - ok
14:07:11.0462 4268 [ B20B5FA5CA050E9926E4D1DB81501B32 ] AxInstSV C:\Windows\System32\AxInstSV.dll
14:07:11.0464 4268 AxInstSV - ok
14:07:11.0489 4268 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\DRIVERS\bxvbda.sys
14:07:11.0494 4268 b06bdrv - ok
14:07:11.0525 4268 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys
14:07:11.0528 4268 b57nd60a - ok
14:07:11.0560 4268 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll
14:07:11.0562 4268 BDESVC - ok
14:07:11.0590 4268 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys
14:07:11.0590 4268 Beep - ok
14:07:11.0622 4268 [ 4992C609A6315671463E30F6512BC022 ] BFE C:\Windows\System32\bfe.dll
14:07:11.0628 4268 BFE - ok
14:07:11.0650 4268 [ 7F0C323FE3DA28AA4AA1BDA3F575707F ] BITS C:\Windows\System32\qmgr.dll
14:07:11.0659 4268 BITS - ok
14:07:11.0681 4268 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
14:07:11.0682 4268 blbdrive - ok
14:07:11.0692 4268 [ 91CE0D3DC57DD377E690A2D324022B08 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
14:07:11.0694 4268 bowser - ok
14:07:11.0701 4268 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys
14:07:11.0702 4268 BrFiltLo - ok
14:07:11.0713 4268 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys
14:07:11.0714 4268 BrFiltUp - ok
14:07:11.0722 4268 [ 94FBC06F294D58D02361918418F996E3 ] Browser C:\Windows\System32\browser.dll
14:07:11.0724 4268 Browser - ok
14:07:11.0735 4268 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys
14:07:11.0738 4268 Brserid - ok
14:07:11.0748 4268 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
14:07:11.0749 4268 BrSerWdm - ok
14:07:11.0756 4268 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
14:07:11.0757 4268 BrUsbMdm - ok
14:07:11.0774 4268 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
14:07:11.0775 4268 BrUsbSer - ok
14:07:11.0793 4268 [ F5B0C8426147F8455A58470753355A86 ] BTATH_A2DP C:\Windows\system32\drivers\btath_a2dp.sys
14:07:11.0797 4268 BTATH_A2DP - ok
14:07:11.0815 4268 [ 613A1FD0DB78F8DF45FC0091868F1032 ] BTATH_BUS C:\Windows\system32\DRIVERS\btath_bus.sys
14:07:11.0816 4268 BTATH_BUS - ok
14:07:11.0834 4268 [ 30C1769F1DBF567A2F31492E819CBDC2 ] BTATH_HCRP C:\Windows\system32\DRIVERS\btath_hcrp.sys
14:07:11.0837 4268 BTATH_HCRP - ok
14:07:11.0849 4268 [ 6B476536C991F953DED4B92CC505B3A8 ] BTATH_RCP C:\Windows\system32\DRIVERS\btath_rcp.sys
14:07:11.0851 4268 BTATH_RCP - ok
14:07:11.0860 4268 [ E808A9B7DBD8DB51D6A02BEBA677AE88 ] BtFilter C:\Windows\system32\DRIVERS\btfilter.sys
14:07:11.0862 4268 BtFilter - ok
14:07:11.0879 4268 [ CF98190A94F62E405C8CB255018B2315 ] BthEnum C:\Windows\system32\DRIVERS\BthEnum.sys
14:07:11.0880 4268 BthEnum - ok
14:07:11.0887 4268 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys
14:07:11.0889 4268 BTHMODEM - ok
14:07:11.0904 4268 [ 02DD601B708DD0667E1331FA8518E9FF ] BthPan C:\Windows\system32\DRIVERS\bthpan.sys
14:07:11.0905 4268 BthPan - ok
14:07:11.0922 4268 [ A51FA9D0E85D5ADABEF72E67F386309C ] BTHPORT C:\Windows\system32\Drivers\BTHport.sys
14:07:11.0928 4268 BTHPORT - ok
14:07:11.0939 4268 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll
14:07:11.0940 4268 bthserv - ok
14:07:11.0951 4268 [ F740B9A16B2C06700F2130E19986BF3B ] BTHUSB C:\Windows\system32\Drivers\BTHUSB.sys
14:07:11.0952 4268 BTHUSB - ok
14:07:11.0965 4268 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
14:07:11.0966 4268 cdfs - ok
14:07:11.0977 4268 [ 83D2D75E1EFB81B3450C18131443F7DB ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
14:07:11.0979 4268 cdrom - ok
14:07:11.0994 4268 [ 312E2F82AF11E79906898AC3E3D58A1F ] CertPropSvc C:\Windows\System32\certprop.dll
14:07:11.0996 4268 CertPropSvc - ok
14:07:12.0001 4268 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\DRIVERS\circlass.sys
14:07:12.0002 4268 circlass - ok
14:07:12.0019 4268 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys
14:07:12.0022 4268 CLFS - ok
14:07:12.0076 4268 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
14:07:12.0078 4268 clr_optimization_v2.0.50727_32 - ok
14:07:12.0111 4268 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
14:07:12.0112 4268 clr_optimization_v2.0.50727_64 - ok
14:07:12.0122 4268 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
14:07:12.0123 4268 CmBatt - ok
14:07:12.0195 4268 [ 65FB5097D9EE7E3A99E932CFA0E4B344 ] cmdAgent D:\Programs\Comodo firewall\COMODO\COMODO Internet Security\cmdagent.exe
14:07:12.0206 4268 cmdAgent - ok
14:07:12.0238 4268 [ 919ACCC22ABDC1C3CA68326C0E5DEAF9 ] cmdGuard C:\Windows\system32\DRIVERS\cmdguard.sys
14:07:12.0240 4268 cmdGuard - ok
14:07:12.0252 4268 [ F8FECE0F1D44C4A58778083B00EEADAC ] cmdHlp C:\Windows\system32\DRIVERS\cmdhlp.sys
14:07:12.0253 4268 cmdHlp - ok
14:07:12.0266 4268 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\DRIVERS\cmdide.sys
14:07:12.0267 4268 cmdide - ok
14:07:12.0279 4268 [ F95FD4CB7DA00BA2A63CE9F6B5C053E1 ] CNG C:\Windows\system32\Drivers\cng.sys
14:07:12.0283 4268 CNG - ok
14:07:12.0296 4268 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
14:07:12.0297 4268 Compbatt - ok
14:07:12.0316 4268 [ F26B3A86F6FA87CA360B879581AB4123 ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys
14:07:12.0317 4268 CompositeBus - ok
14:07:12.0319 4268 COMSysApp - ok
14:07:12.0329 4268 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys
14:07:12.0331 4268 crcdisk - ok
14:07:12.0365 4268 [ 8C57411B66282C01533CB776F98AD384 ] CryptSvc C:\Windows\system32\cryptsvc.dll
14:07:12.0367 4268 CryptSvc - ok
14:07:12.0388 4268 [ 4A6173C2279B498CD8F57CAE504564CB ] CSC C:\Windows\system32\drivers\csc.sys
14:07:12.0392 4268 CSC - ok
14:07:12.0415 4268 [ 873FBF927C06E5CEE04DEC617502F8FD ] CscService C:\Windows\System32\cscsvc.dll
14:07:12.0421 4268 CscService - ok
14:07:12.0448 4268 [ 7266972E86890E2B30C0C322E906B027 ] DcomLaunch C:\Windows\system32\rpcss.dll
14:07:12.0454 4268 DcomLaunch - ok
14:07:12.0472 4268 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll
14:07:12.0476 4268 defragsvc - ok
14:07:12.0485 4268 [ 3F1DC527070ACB87E40AFE46EF6DA749 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
14:07:12.0486 4268 DfsC - ok
14:07:12.0504 4268 [ CE3B9562D997F69B330D181A8875960F ] Dhcp C:\Windows\system32\dhcpcore.dll
14:07:12.0507 4268 Dhcp - ok
14:07:12.0516 4268 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys
14:07:12.0517 4268 discache - ok
14:07:12.0535 4268 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\DRIVERS\disk.sys
14:07:12.0536 4268 Disk - ok
14:07:12.0546 4268 [ 676108C4E3AA6F6B34633748BD0BEBD9 ] Dnscache C:\Windows\System32\dnsrslvr.dll
14:07:12.0548 4268 Dnscache - ok
14:07:12.0562 4268 [ 14452ACDB09B70964C8C21BF80A13ACB ] dot3svc C:\Windows\System32\dot3svc.dll
14:07:12.0565 4268 dot3svc - ok
14:07:12.0577 4268 [ 8C2BA6BEA949EE6E68385F5692BAFB94 ] DPS C:\Windows\system32\dps.dll
14:07:12.0579 4268 DPS - ok
14:07:12.0607 4268 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
14:07:12.0608 4268 drmkaud - ok
14:07:12.0641 4268 [ 46571ED73AE84469DCA53081D33CF3C8 ] dtsoftbus01 C:\Windows\system32\DRIVERS\dtsoftbus01.sys
14:07:12.0642 4268 dtsoftbus01 - ok
14:07:12.0659 4268 [ 7CB7D2B73813CE05C7BC0F5F95D27CEC ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
14:07:12.0667 4268 DXGKrnl - ok
14:07:12.0693 4268 [ DD81D91FF3B0763C392422865C9AC12E ] e81a9dc1 C:\Windows\system32\rundll32.exe
14:07:12.0696 4268 e81a9dc1 - ok
14:07:12.0708 4268 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll
14:07:12.0762 4268 EapHost - ok
14:07:12.0814 4268 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\DRIVERS\evbda.sys
14:07:12.0861 4268 ebdrv - ok
14:07:12.0877 4268 [ 0793F40B9B8A1BDD266296409DBD91EA ] EFS C:\Windows\System32\lsass.exe
14:07:12.0879 4268 EFS - ok
14:07:12.0926 4268 [ B91D81B3B54A54CCAFC03733DBC2E29E ] ehRecvr C:\Windows\ehome\ehRecvr.exe
14:07:12.0929 4268 ehRecvr - ok
14:07:12.0938 4268 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe
14:07:12.0940 4268 ehSched - ok
14:07:12.0958 4268 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys
14:07:12.0963 4268 elxstor - ok
14:07:12.0976 4268 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\DRIVERS\errdev.sys
14:07:12.0977 4268 ErrDev - ok
14:07:13.0026 4268 esgiguard - ok
14:07:13.0050 4268 [ D182C5A0D436C8FD8C08A5424A3448FA ] EtronHub3 C:\Windows\system32\Drivers\EtronHub3.sys
14:07:13.0051 4268 EtronHub3 - ok
14:07:13.0075 4268 [ CAD747ACEB8E693B3D92613655602219 ] EtronXHCI C:\Windows\system32\Drivers\EtronXHCI.sys
14:07:13.0076 4268 EtronXHCI - ok
14:07:13.0095 4268 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll
14:07:13.0099 4268 EventSystem - ok
14:07:13.0112 4268 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys
14:07:13.0115 4268 exfat - ok
14:07:13.0128 4268 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys
14:07:13.0130 4268 fastfat - ok
14:07:13.0155 4268 [ D607B2F1BEE3992AA6C2C92C0A2F0855 ] Fax C:\Windows\system32\fxssvc.exe
14:07:13.0161 4268 Fax - ok
14:07:13.0174 4268 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\DRIVERS\fdc.sys
14:07:13.0175 4268 fdc - ok
14:07:13.0200 4268 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll
14:07:13.0201 4268 fdPHost - ok
14:07:13.0212 4268 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll
14:07:13.0214 4268 FDResPub - ok
14:07:13.0224 4268 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
14:07:13.0225 4268 FileInfo - ok
14:07:13.0237 4268 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
14:07:13.0238 4268 Filetrace - ok
14:07:13.0246 4268 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
14:07:13.0247 4268 flpydisk - ok
14:07:13.0258 4268 [ F7866AF72ABBAF84B1FA5AA195378C59 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
14:07:13.0261 4268 FltMgr - ok
14:07:13.0286 4268 [ 8AC4CB4EA61E41009FAE9AE7B2B5DA3A ] FontCache C:\Windows\system32\FntCache.dll
14:07:13.0295 4268 FontCache - ok
14:07:13.0338 4268 [ 8D89E3131C27FDD6932189CB785E1B7A ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
14:07:13.0339 4268 FontCache3.0.0.0 - ok
14:07:13.0351 4268 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
14:07:13.0353 4268 FsDepends - ok
14:07:13.0360 4268 [ E95EF8547DE20CF0603557C0CF7A9462 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
14:07:13.0361 4268 Fs_Rec - ok
14:07:13.0393 4268 [ B8B2A6E1558F8F5DE5CE431C5B2C7B09 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
14:07:13.0395 4268 fvevol - ok
14:07:13.0419 4268 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys
14:07:13.0421 4268 gagp30kx - ok
14:07:13.0438 4268 [ FE5AB4525BC2EC68B9119A6E5D40128B ] gpsvc C:\Windows\System32\gpsvc.dll
14:07:13.0445 4268 gpsvc - ok
14:07:13.0470 4268 [ 1E6438D4EA6E1174A3B3B1EDC4DE660B ] hamachi C:\Windows\system32\DRIVERS\hamachi.sys
14:07:13.0470 4268 hamachi - ok
14:07:13.0504 4268 Hamachi2Svc - ok
14:07:13.0514 4268 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
14:07:13.0515 4268 hcw85cir - ok
14:07:13.0542 4268 [ 6410F6F415B2A5A9037224C41DA8BF12 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
14:07:13.0546 4268 HdAudAddService - ok
14:07:13.0554 4268 [ 0A49913402747A0B67DE940FB42CBDBB ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
14:07:13.0556 4268 HDAudBus - ok
14:07:13.0562 4268 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys
14:07:13.0563 4268 HidBatt - ok
14:07:13.0576 4268 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys
14:07:13.0577 4268 HidBth - ok
14:07:13.0587 4268 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
14:07:13.0589 4268 HidIr - ok
14:07:13.0591 4268 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\system32\hidserv.dll
14:07:13.0593 4268 hidserv - ok
14:07:13.0620 4268 [ B3BF6B5B50006DEF50B66306D99FCF6F ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
14:07:13.0621 4268 HidUsb - ok
14:07:13.0650 4268 [ EFA58EDE58DD74388FFD04CB32681518 ] hkmsvc C:\Windows\system32\kmsvc.dll
14:07:13.0652 4268 hkmsvc - ok
14:07:13.0667 4268 [ 046B2673767CA626E2CFB7FDF735E9E8 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
14:07:13.0671 4268 HomeGroupListener - ok
14:07:13.0696 4268 [ 06A7422224D9865A5613710A089987DF ] HomeGroupProvider C:\Windows\system32\provsvc.dll
14:07:13.0700 4268 HomeGroupProvider - ok
14:07:13.0717 4268 [ 0886D440058F203EBA0E1825E4355914 ] HpSAMD C:\Windows\system32\DRIVERS\HpSAMD.sys
14:07:13.0718 4268 HpSAMD - ok
14:07:13.0739 4268 [ CEE049CAC4EFA7F4E1E4AD014414A5D4 ] HTTP C:\Windows\system32\drivers\HTTP.sys
14:07:13.0746 4268 HTTP - ok
14:07:13.0754 4268 [ F17766A19145F111856378DF337A5D79 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
14:07:13.0755 4268 hwpolicy - ok
14:07:13.0779 4268 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
14:07:13.0781 4268 i8042prt - ok
14:07:13.0799 4268 [ D83EFB6FD45DF9D55E9A1AFC63640D50 ] iaStorV C:\Windows\system32\DRIVERS\iaStorV.sys
14:07:13.0803 4268 iaStorV - ok
14:07:13.0833 4268 [ 2F2BE70D3E02B6FA877921AB9516D43C ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
14:07:13.0841 4268 idsvc - ok
14:07:13.0854 4268 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys
14:07:13.0855 4268 iirsp - ok
14:07:13.0909 4268 [ CE1EE31FFF730CA975A5535D8A71AF61 ] IJPLMSVC C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE
14:07:13.0910 4268 IJPLMSVC - ok
14:07:13.0933 4268 [ C5B4683680DF085B57BC53E5EF34861F ] IKEEXT C:\Windows\System32\ikeext.dll
14:07:13.0941 4268 IKEEXT - ok
14:07:13.0951 4268 [ C4E67D3037DC79E39D7136581A947F50 ] inspect C:\Windows\system32\DRIVERS\inspect.sys
14:07:13.0952 4268 inspect - ok
14:07:14.0033 4268 [ ACACD1B925D448558C1C9D0258749451 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
14:07:14.0051 4268 IntcAzAudAddService - ok
14:07:14.0061 4268 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\DRIVERS\intelide.sys
14:07:14.0062 4268 intelide - ok
14:07:14.0081 4268 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
14:07:14.0082 4268 intelppm - ok
14:07:14.0124 4268 [ A79A140AB6CC3D1E0BB4E54DD3B17B07 ] IObitUnlocker D:\Programs\IObit Unlocker\IObitUnlocker.sys
14:07:14.0126 4268 IObitUnlocker - ok
14:07:14.0137 4268 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll
14:07:14.0140 4268 IPBusEnum - ok
14:07:14.0152 4268 [ 722DD294DF62483CECAAE6E094B4D695 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
14:07:14.0153 4268 IpFilterDriver - ok
14:07:14.0170 4268 [ F8E058D17363EC580E4B7232778B6CB5 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
14:07:14.0176 4268 iphlpsvc - ok
14:07:14.0196 4268 [ E2B4A4494DB7CB9B89B55CA268C337C5 ] IPMIDRV C:\Windows\system32\DRIVERS\IPMIDrv.sys
14:07:14.0198 4268 IPMIDRV - ok
14:07:14.0205 4268 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
14:07:14.0207 4268 IPNAT - ok
14:07:14.0226 4268 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
14:07:14.0227 4268 IRENUM - ok
14:07:14.0246 4268 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\DRIVERS\isapnp.sys
14:07:14.0247 4268 isapnp - ok
14:07:14.0261 4268 [ FA4D2557DE56D45B0A346F93564BE6E1 ] iScsiPrt C:\Windows\system32\DRIVERS\msiscsi.sys
14:07:14.0263 4268 iScsiPrt - ok
14:07:14.0270 4268 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
14:07:14.0271 4268 kbdclass - ok
14:07:14.0283 4268 [ 6DEF98F8541E1B5DCEB2C822A11F7323 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
14:07:14.0284 4268 kbdhid - ok
14:07:14.0294 4268 [ 0793F40B9B8A1BDD266296409DBD91EA ] KeyIso C:\Windows\system32\lsass.exe
14:07:14.0295 4268 KeyIso - ok
14:07:14.0309 4268 [ E8B6FCC9C83535C67F835D407620BD27 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
14:07:14.0310 4268 KSecDD - ok
14:07:14.0320 4268 [ BBE1BF6D9B661C354D4857D5FADB943B ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
14:07:14.0321 4268 KSecPkg - ok
14:07:14.0334 4268 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
14:07:14.0335 4268 ksthunk - ok
14:07:14.0354 4268 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll
14:07:14.0359 4268 KtmRm - ok
14:07:14.0378 4268 [ C926920B8978DE6ACFE9E15C709E9B57 ] LanmanServer C:\Windows\system32\srvsvc.dll
14:07:14.0382 4268 LanmanServer - ok
14:07:14.0402 4268 [ 27026EAC8818E8A6C00A1CAD2F11D29A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
14:07:14.0406 4268 LanmanWorkstation - ok
14:07:14.0429 4268 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
14:07:14.0430 4268 lltdio - ok
14:07:14.0450 4268 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll
14:07:14.0454 4268 lltdsvc - ok
14:07:14.0466 4268 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll
14:07:14.0468 4268 lmhosts - ok
14:07:14.0492 4268 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys
14:07:14.0494 4268 LSI_FC - ok
14:07:14.0502 4268 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys
14:07:14.0504 4268 LSI_SAS - ok
14:07:14.0511 4268 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys
14:07:14.0513 4268 LSI_SAS2 - ok
14:07:14.0526 4268 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys
14:07:14.0528 4268 LSI_SCSI - ok
14:07:14.0542 4268 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys
14:07:14.0543 4268 luafv - ok
14:07:14.0550 4268 [ F84C8F1000BC11E3B7B23CBD3BAFF111 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
14:07:14.0553 4268 Mcx2Svc - ok
14:07:14.0559 4268 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\DRIVERS\megasas.sys
14:07:14.0561 4268 megasas - ok
14:07:14.0576 4268 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys
14:07:14.0579 4268 MegaSR - ok
14:07:14.0644 4268 [ FAFE367D032ED82E9332B4C741A20216 ] Microsoft Office Groove Audit Service D:\Programs\MS Office Enterprise 2007\Office12\GrooveAuditService.exe
14:07:14.0645 4268 Microsoft Office Groove Audit Service - ok
14:07:14.0654 4268 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll
14:07:14.0657 4268 MMCSS - ok
14:07:14.0668 4268 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys
14:07:14.0670 4268 Modem - ok
14:07:14.0698 4268 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys
14:07:14.0699 4268 monitor - ok
14:07:14.0721 4268 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
14:07:14.0721 4268 mouclass - ok
14:07:14.0724 4268 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
14:07:14.0725 4268 mouhid - ok
14:07:14.0733 4268 [ 791AF66C4D0E7C90A3646066386FB571 ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
14:07:14.0734 4268 mountmgr - ok
14:07:14.0745 4268 [ 609D1D87649ECC19796F4D76D4C15CEA ] mpio C:\Windows\system32\DRIVERS\mpio.sys
14:07:14.0747 4268 mpio - ok
14:07:14.0760 4268 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
14:07:14.0762 4268 mpsdrv - ok
14:07:14.0779 4268 [ AECAB449567D1846DAD63ECE49E893E3 ] MpsSvc C:\Windows\system32\mpssvc.dll
14:07:14.0788 4268 MpsSvc - ok
14:07:14.0811 4268 [ 30524261BB51D96D6FCBAC20C810183C ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
14:07:14.0813 4268 MRxDAV - ok
14:07:14.0820 4268 [ CFDCD8CA87C2A657DEBC150AC35B5E08 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
14:07:14.0822 4268 mrxsmb - ok
14:07:14.0834 4268 [ 1BEE517B220B7F024F411AEC1571DD5A ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
14:07:14.0837 4268 mrxsmb10 - ok
14:07:14.0844 4268 [ 6B2D5FEF385828B6E485C1C90AFB8195 ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
14:07:14.0846 4268 mrxsmb20 - ok
14:07:14.0858 4268 [ 5C37497276E3B3A5488B23A326A754B7 ] msahci C:\Windows\system32\DRIVERS\msahci.sys
14:07:14.0858 4268 msahci - ok
14:07:14.0870 4268 [ 8D27B597229AED79430FB9DB3BCBFBD0 ] msdsm C:\Windows\system32\DRIVERS\msdsm.sys
14:07:14.0872 4268 msdsm - ok
14:07:14.0880 4268 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe
14:07:14.0883 4268 MSDTC - ok
14:07:14.0896 4268 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys
14:07:14.0897 4268 Msfs - ok
14:07:14.0909 4268 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
14:07:02.0478 2028 ============================================================
14:07:02.0478 2028 Current date / time: 2014/01/19 14:07:02.0478
14:07:02.0478 2028 SystemInfo:
14:07:02.0478 2028
14:07:02.0478 2028 OS Version: 6.1.7600 ServicePack: 0.0
14:07:02.0478 2028 Product type: Workstation
14:07:02.0478 2028 ComputerName: DARKWEREWOLF-PC
14:07:02.0478 2028 UserName: DarkWerewolf
14:07:02.0478 2028 Windows directory: C:\Windows
14:07:02.0478 2028 System windows directory: C:\Windows
14:07:02.0478 2028 Running under WOW64
14:07:02.0478 2028 Processor architecture: Intel x64
14:07:02.0478 2028 Number of processors: 4
14:07:02.0479 2028 Page size: 0x1000
14:07:02.0479 2028 Boot type: Normal boot
14:07:02.0479 2028 ============================================================
14:07:03.0233 2028 Drive \Device\Harddisk0\DR0 - Size: 0x950AF4DE00 (596.17 Gb), SectorSize: 0x200, Cylinders: 0x47B84, SectorsPerTrack: 0x13, TracksPerCylinder: 0xE0, Type 'K0', Flags 0x00000040
14:07:03.0468 2028 Drive \Device\Harddisk1\DR1 - Size: 0x1D1C1116000 (1863.02 Gb), SectorSize: 0x200, Cylinders: 0x3B601, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
14:07:03.0488 2028 Drive \Device\Harddisk2\DR2 - Size: 0x4A85D56000 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
14:07:07.0336 2028 ============================================================
14:07:07.0336 2028 \Device\Harddisk0\DR0:
14:07:07.0342 2028 MBR partitions:
14:07:07.0342 2028 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
14:07:07.0342 2028 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x6176000
14:07:07.0342 2028 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x61A8800, BlocksNum 0x446AE000
14:07:07.0342 2028 \Device\Harddisk1\DR1:
14:07:07.0342 2028 MBR partitions:
14:07:07.0342 2028 \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0xE8E07800
14:07:07.0342 2028 \Device\Harddisk2\DR2:
14:07:07.0343 2028 MBR partitions:
14:07:07.0343 2028 \Device\Harddisk2\DR2\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x254297C1
14:07:07.0343 2028 ============================================================
14:07:07.0358 2028 C: <-> \Device\Harddisk0\DR0\Partition2
14:07:07.0372 2028 D: <-> \Device\Harddisk0\DR0\Partition3
14:07:07.0461 2028 H: <-> \Device\Harddisk2\DR2\Partition1
14:07:07.0483 2028 E: <-> \Device\Harddisk1\DR1\Partition1
14:07:07.0483 2028 ============================================================
14:07:07.0484 2028 Initialize success
14:07:07.0484 2028 ============================================================
14:07:09.0374 4268 ============================================================
14:07:09.0374 4268 Scan started
14:07:09.0374 4268 Mode: Manual;
14:07:09.0374 4268 ============================================================
14:07:09.0723 4268 ================ Scan system memory ========================
14:07:09.0723 4268 System memory - ok
14:07:09.0723 4268 ================ Scan services =============================
14:07:09.0854 4268 [ 1B00662092F9F9568B995902F0CC40D5 ] 1394ohci C:\Windows\system32\DRIVERS\1394ohci.sys
14:07:09.0857 4268 1394ohci - ok
14:07:09.0893 4268 [ A0E3452CBFF4AD4D9B82A98BEBF476A3 ] 3xHybr64 C:\Windows\system32\DRIVERS\3xHybr64.sys
14:07:09.0904 4268 3xHybr64 - ok
14:07:09.0969 4268 [ ADC420616C501B45D26C0FD3EF1E54E4 ] ACDaemon C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
14:07:09.0970 4268 ACDaemon - ok
14:07:09.0991 4268 [ 6F11E88748CDEFD2F76AA215F97DDFE5 ] ACPI C:\Windows\system32\DRIVERS\ACPI.sys
14:07:09.0994 4268 ACPI - ok
14:07:10.0001 4268 [ 63B05A0420CE4BF0E4AF6DCC7CADA254 ] AcpiPmi C:\Windows\system32\DRIVERS\acpipmi.sys
14:07:10.0002 4268 AcpiPmi - ok
14:07:10.0116 4268 [ 1BA1AB4141A92EB34DA99F1249CA2D4D ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
14:07:10.0117 4268 AdobeFlashPlayerUpdateSvc - ok
14:07:10.0145 4268 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys
14:07:10.0149 4268 adp94xx - ok
14:07:10.0170 4268 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys
14:07:10.0173 4268 adpahci - ok
14:07:10.0180 4268 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys
14:07:10.0182 4268 adpu320 - ok
14:07:10.0197 4268 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
14:07:10.0198 4268 AeLookupSvc - ok
14:07:10.0228 4268 [ B9384E03479D2506BC924C16A3DB87BC ] AFD C:\Windows\system32\drivers\afd.sys
14:07:10.0233 4268 AFD - ok
14:07:10.0245 4268 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\DRIVERS\agp440.sys
14:07:10.0246 4268 agp440 - ok
14:07:10.0255 4268 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe
14:07:10.0256 4268 ALG - ok
14:07:10.0261 4268 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\DRIVERS\aliide.sys
14:07:10.0262 4268 aliide - ok
14:07:10.0281 4268 [ 0A098B01D485E6978C596420C5179E98 ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe
14:07:10.0282 4268 AMD External Events Utility - ok
14:07:10.0294 4268 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\DRIVERS\amdide.sys
14:07:10.0295 4268 amdide - ok
14:07:10.0306 4268 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
14:07:10.0307 4268 AmdK8 - ok
14:07:10.0473 4268 [ B13F0B5859EA6CE01C1DD847E7E50C39 ] amdkmdag C:\Windows\system32\DRIVERS\atikmdag.sys
14:07:10.0634 4268 amdkmdag - ok
14:07:10.0650 4268 [ 48C7EFC581E0E37DD967A5BCC0AB33EF ] amdkmdap C:\Windows\system32\DRIVERS\atikmpag.sys
14:07:10.0652 4268 amdkmdap - ok
14:07:10.0671 4268 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
14:07:10.0672 4268 AmdPPM - ok
14:07:10.0689 4268 [ 7A4B413614C055935567CF88A9734D38 ] amdsata C:\Windows\system32\DRIVERS\amdsata.sys
14:07:10.0691 4268 amdsata - ok
14:07:10.0708 4268 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys
14:07:10.0710 4268 amdsbs - ok
14:07:10.0716 4268 [ B4AD0CACBAB298671DD6F6EF7E20679D ] amdxata C:\Windows\system32\DRIVERS\amdxata.sys
14:07:10.0717 4268 amdxata - ok
14:07:10.0728 4268 [ 42FD751B27FA0E9C69BB39F39E409594 ] AppID C:\Windows\system32\drivers\appid.sys
14:07:10.0729 4268 AppID - ok
14:07:10.0739 4268 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll
14:07:10.0740 4268 AppIDSvc - ok
14:07:10.0753 4268 [ D065BE66822847B7F127D1F90158376E ] Appinfo C:\Windows\System32\appinfo.dll
14:07:10.0754 4268 Appinfo - ok
14:07:10.0783 4268 [ 4ABA3E75A76195A3E38ED2766C962899 ] AppMgmt C:\Windows\System32\appmgmts.dll
14:07:10.0785 4268 AppMgmt - ok
14:07:10.0798 4268 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\DRIVERS\arc.sys
14:07:10.0799 4268 arc - ok
14:07:10.0802 4268 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys
14:07:10.0803 4268 arcsas - ok
14:07:10.0837 4268 [ 9F34AA1124EEA112E49E48258B1D6394 ] aswFsBlk C:\Windows\system32\drivers\aswFsBlk.sys
14:07:10.0837 4268 aswFsBlk - ok
14:07:10.0851 4268 [ 6B91E6D483AADB3FC4E13E2355200611 ] aswKbd C:\Windows\system32\drivers\aswKbd.sys
14:07:10.0851 4268 aswKbd - ok
14:07:10.0875 4268 [ 5C49AB607897C94E123EC8364FF4BF61 ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
14:07:10.0876 4268 aswMonFlt - ok
14:07:10.0893 4268 [ 679712B7A353EE665B9301592164A172 ] aswRdr C:\Windows\system32\drivers\aswRdr2.sys
14:07:10.0894 4268 aswRdr - ok
14:07:10.0944 4268 [ C04F7B373881009D7994D9BF55D24AB4 ] aswRvrt C:\Windows\system32\drivers\aswRvrt.sys
14:07:10.0945 4268 aswRvrt - ok
14:07:10.0979 4268 [ 1BA60C77EB3CDB6129DAD25BAF675F43 ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
14:07:10.0983 4268 aswSnx - ok
14:07:11.0012 4268 [ 79ADA401A6E2054F110E7FBDFAC71942 ] aswSP C:\Windows\system32\drivers\aswSP.sys
14:07:11.0013 4268 aswSP - ok
14:07:11.0016 4268 [ 6FFECAE6A7BF190D4A3D7AFA6D7B5478 ] aswTdi C:\Windows\system32\drivers\aswTdi.sys
14:07:11.0016 4268 aswTdi - ok
14:07:11.0023 4268 [ 59787B95DD9CA44CB139D96863438587 ] aswVmm C:\Windows\system32\drivers\aswVmm.sys
14:07:11.0025 4268 aswVmm - ok
14:07:11.0044 4268 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
14:07:11.0045 4268 AsyncMac - ok
14:07:11.0060 4268 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\DRIVERS\atapi.sys
14:07:11.0060 4268 atapi - ok
14:07:11.0082 4268 [ C647C19B70B4717106F6B59E80D6F38F ] AthBTPort C:\Windows\system32\DRIVERS\btath_flt.sys
14:07:11.0083 4268 AthBTPort - ok
14:07:11.0097 4268 [ 17D367AE1AD05852303A8BDFAB5D028B ] AthDfu C:\Windows\system32\Drivers\AthDfu.sys
14:07:11.0099 4268 AthDfu - ok
14:07:11.0138 4268 [ B0790FF0E25B7A2674296052F2162C1A ] AtiHDAudioService C:\Windows\system32\drivers\AtihdW76.sys
14:07:11.0139 4268 AtiHDAudioService - ok
14:07:11.0307 4268 [ B13F0B5859EA6CE01C1DD847E7E50C39 ] atikmdag C:\Windows\system32\DRIVERS\atikmdag.sys
14:07:11.0352 4268 atikmdag - ok
14:07:11.0367 4268 [ 07721A77180EDD4D39CCB865BF63C7FD ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
14:07:11.0373 4268 AudioEndpointBuilder - ok
14:07:11.0381 4268 [ 07721A77180EDD4D39CCB865BF63C7FD ] AudioSrv C:\Windows\System32\Audiosrv.dll
14:07:11.0384 4268 AudioSrv - ok
14:07:11.0419 4268 [ 4D41D30E2FAB3307967C7A0B045DC874 ] avast! Antivirus D:\Programs\Avast! free\AvastSvc.exe
14:07:11.0420 4268 avast! Antivirus - ok
14:07:11.0462 4268 [ B20B5FA5CA050E9926E4D1DB81501B32 ] AxInstSV C:\Windows\System32\AxInstSV.dll
14:07:11.0464 4268 AxInstSV - ok
14:07:11.0489 4268 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\DRIVERS\bxvbda.sys
14:07:11.0494 4268 b06bdrv - ok
14:07:11.0525 4268 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys
14:07:11.0528 4268 b57nd60a - ok
14:07:11.0560 4268 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll
14:07:11.0562 4268 BDESVC - ok
14:07:11.0590 4268 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys
14:07:11.0590 4268 Beep - ok
14:07:11.0622 4268 [ 4992C609A6315671463E30F6512BC022 ] BFE C:\Windows\System32\bfe.dll
14:07:11.0628 4268 BFE - ok
14:07:11.0650 4268 [ 7F0C323FE3DA28AA4AA1BDA3F575707F ] BITS C:\Windows\System32\qmgr.dll
14:07:11.0659 4268 BITS - ok
14:07:11.0681 4268 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
14:07:11.0682 4268 blbdrive - ok
14:07:11.0692 4268 [ 91CE0D3DC57DD377E690A2D324022B08 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
14:07:11.0694 4268 bowser - ok
14:07:11.0701 4268 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys
14:07:11.0702 4268 BrFiltLo - ok
14:07:11.0713 4268 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys
14:07:11.0714 4268 BrFiltUp - ok
14:07:11.0722 4268 [ 94FBC06F294D58D02361918418F996E3 ] Browser C:\Windows\System32\browser.dll
14:07:11.0724 4268 Browser - ok
14:07:11.0735 4268 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys
14:07:11.0738 4268 Brserid - ok
14:07:11.0748 4268 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
14:07:11.0749 4268 BrSerWdm - ok
14:07:11.0756 4268 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
14:07:11.0757 4268 BrUsbMdm - ok
14:07:11.0774 4268 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
14:07:11.0775 4268 BrUsbSer - ok
14:07:11.0793 4268 [ F5B0C8426147F8455A58470753355A86 ] BTATH_A2DP C:\Windows\system32\drivers\btath_a2dp.sys
14:07:11.0797 4268 BTATH_A2DP - ok
14:07:11.0815 4268 [ 613A1FD0DB78F8DF45FC0091868F1032 ] BTATH_BUS C:\Windows\system32\DRIVERS\btath_bus.sys
14:07:11.0816 4268 BTATH_BUS - ok
14:07:11.0834 4268 [ 30C1769F1DBF567A2F31492E819CBDC2 ] BTATH_HCRP C:\Windows\system32\DRIVERS\btath_hcrp.sys
14:07:11.0837 4268 BTATH_HCRP - ok
14:07:11.0849 4268 [ 6B476536C991F953DED4B92CC505B3A8 ] BTATH_RCP C:\Windows\system32\DRIVERS\btath_rcp.sys
14:07:11.0851 4268 BTATH_RCP - ok
14:07:11.0860 4268 [ E808A9B7DBD8DB51D6A02BEBA677AE88 ] BtFilter C:\Windows\system32\DRIVERS\btfilter.sys
14:07:11.0862 4268 BtFilter - ok
14:07:11.0879 4268 [ CF98190A94F62E405C8CB255018B2315 ] BthEnum C:\Windows\system32\DRIVERS\BthEnum.sys
14:07:11.0880 4268 BthEnum - ok
14:07:11.0887 4268 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys
14:07:11.0889 4268 BTHMODEM - ok
14:07:11.0904 4268 [ 02DD601B708DD0667E1331FA8518E9FF ] BthPan C:\Windows\system32\DRIVERS\bthpan.sys
14:07:11.0905 4268 BthPan - ok
14:07:11.0922 4268 [ A51FA9D0E85D5ADABEF72E67F386309C ] BTHPORT C:\Windows\system32\Drivers\BTHport.sys
14:07:11.0928 4268 BTHPORT - ok
14:07:11.0939 4268 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll
14:07:11.0940 4268 bthserv - ok
14:07:11.0951 4268 [ F740B9A16B2C06700F2130E19986BF3B ] BTHUSB C:\Windows\system32\Drivers\BTHUSB.sys
14:07:11.0952 4268 BTHUSB - ok
14:07:11.0965 4268 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
14:07:11.0966 4268 cdfs - ok
14:07:11.0977 4268 [ 83D2D75E1EFB81B3450C18131443F7DB ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
14:07:11.0979 4268 cdrom - ok
14:07:11.0994 4268 [ 312E2F82AF11E79906898AC3E3D58A1F ] CertPropSvc C:\Windows\System32\certprop.dll
14:07:11.0996 4268 CertPropSvc - ok
14:07:12.0001 4268 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\DRIVERS\circlass.sys
14:07:12.0002 4268 circlass - ok
14:07:12.0019 4268 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys
14:07:12.0022 4268 CLFS - ok
14:07:12.0076 4268 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
14:07:12.0078 4268 clr_optimization_v2.0.50727_32 - ok
14:07:12.0111 4268 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
14:07:12.0112 4268 clr_optimization_v2.0.50727_64 - ok
14:07:12.0122 4268 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
14:07:12.0123 4268 CmBatt - ok
14:07:12.0195 4268 [ 65FB5097D9EE7E3A99E932CFA0E4B344 ] cmdAgent D:\Programs\Comodo firewall\COMODO\COMODO Internet Security\cmdagent.exe
14:07:12.0206 4268 cmdAgent - ok
14:07:12.0238 4268 [ 919ACCC22ABDC1C3CA68326C0E5DEAF9 ] cmdGuard C:\Windows\system32\DRIVERS\cmdguard.sys
14:07:12.0240 4268 cmdGuard - ok
14:07:12.0252 4268 [ F8FECE0F1D44C4A58778083B00EEADAC ] cmdHlp C:\Windows\system32\DRIVERS\cmdhlp.sys
14:07:12.0253 4268 cmdHlp - ok
14:07:12.0266 4268 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\DRIVERS\cmdide.sys
14:07:12.0267 4268 cmdide - ok
14:07:12.0279 4268 [ F95FD4CB7DA00BA2A63CE9F6B5C053E1 ] CNG C:\Windows\system32\Drivers\cng.sys
14:07:12.0283 4268 CNG - ok
14:07:12.0296 4268 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
14:07:12.0297 4268 Compbatt - ok
14:07:12.0316 4268 [ F26B3A86F6FA87CA360B879581AB4123 ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys
14:07:12.0317 4268 CompositeBus - ok
14:07:12.0319 4268 COMSysApp - ok
14:07:12.0329 4268 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys
14:07:12.0331 4268 crcdisk - ok
14:07:12.0365 4268 [ 8C57411B66282C01533CB776F98AD384 ] CryptSvc C:\Windows\system32\cryptsvc.dll
14:07:12.0367 4268 CryptSvc - ok
14:07:12.0388 4268 [ 4A6173C2279B498CD8F57CAE504564CB ] CSC C:\Windows\system32\drivers\csc.sys
14:07:12.0392 4268 CSC - ok
14:07:12.0415 4268 [ 873FBF927C06E5CEE04DEC617502F8FD ] CscService C:\Windows\System32\cscsvc.dll
14:07:12.0421 4268 CscService - ok
14:07:12.0448 4268 [ 7266972E86890E2B30C0C322E906B027 ] DcomLaunch C:\Windows\system32\rpcss.dll
14:07:12.0454 4268 DcomLaunch - ok
14:07:12.0472 4268 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll
14:07:12.0476 4268 defragsvc - ok
14:07:12.0485 4268 [ 3F1DC527070ACB87E40AFE46EF6DA749 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
14:07:12.0486 4268 DfsC - ok
14:07:12.0504 4268 [ CE3B9562D997F69B330D181A8875960F ] Dhcp C:\Windows\system32\dhcpcore.dll
14:07:12.0507 4268 Dhcp - ok
14:07:12.0516 4268 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys
14:07:12.0517 4268 discache - ok
14:07:12.0535 4268 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\DRIVERS\disk.sys
14:07:12.0536 4268 Disk - ok
14:07:12.0546 4268 [ 676108C4E3AA6F6B34633748BD0BEBD9 ] Dnscache C:\Windows\System32\dnsrslvr.dll
14:07:12.0548 4268 Dnscache - ok
14:07:12.0562 4268 [ 14452ACDB09B70964C8C21BF80A13ACB ] dot3svc C:\Windows\System32\dot3svc.dll
14:07:12.0565 4268 dot3svc - ok
14:07:12.0577 4268 [ 8C2BA6BEA949EE6E68385F5692BAFB94 ] DPS C:\Windows\system32\dps.dll
14:07:12.0579 4268 DPS - ok
14:07:12.0607 4268 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
14:07:12.0608 4268 drmkaud - ok
14:07:12.0641 4268 [ 46571ED73AE84469DCA53081D33CF3C8 ] dtsoftbus01 C:\Windows\system32\DRIVERS\dtsoftbus01.sys
14:07:12.0642 4268 dtsoftbus01 - ok
14:07:12.0659 4268 [ 7CB7D2B73813CE05C7BC0F5F95D27CEC ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
14:07:12.0667 4268 DXGKrnl - ok
14:07:12.0693 4268 [ DD81D91FF3B0763C392422865C9AC12E ] e81a9dc1 C:\Windows\system32\rundll32.exe
14:07:12.0696 4268 e81a9dc1 - ok
14:07:12.0708 4268 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll
14:07:12.0762 4268 EapHost - ok
14:07:12.0814 4268 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\DRIVERS\evbda.sys
14:07:12.0861 4268 ebdrv - ok
14:07:12.0877 4268 [ 0793F40B9B8A1BDD266296409DBD91EA ] EFS C:\Windows\System32\lsass.exe
14:07:12.0879 4268 EFS - ok
14:07:12.0926 4268 [ B91D81B3B54A54CCAFC03733DBC2E29E ] ehRecvr C:\Windows\ehome\ehRecvr.exe
14:07:12.0929 4268 ehRecvr - ok
14:07:12.0938 4268 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe
14:07:12.0940 4268 ehSched - ok
14:07:12.0958 4268 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys
14:07:12.0963 4268 elxstor - ok
14:07:12.0976 4268 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\DRIVERS\errdev.sys
14:07:12.0977 4268 ErrDev - ok
14:07:13.0026 4268 esgiguard - ok
14:07:13.0050 4268 [ D182C5A0D436C8FD8C08A5424A3448FA ] EtronHub3 C:\Windows\system32\Drivers\EtronHub3.sys
14:07:13.0051 4268 EtronHub3 - ok
14:07:13.0075 4268 [ CAD747ACEB8E693B3D92613655602219 ] EtronXHCI C:\Windows\system32\Drivers\EtronXHCI.sys
14:07:13.0076 4268 EtronXHCI - ok
14:07:13.0095 4268 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll
14:07:13.0099 4268 EventSystem - ok
14:07:13.0112 4268 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys
14:07:13.0115 4268 exfat - ok
14:07:13.0128 4268 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys
14:07:13.0130 4268 fastfat - ok
14:07:13.0155 4268 [ D607B2F1BEE3992AA6C2C92C0A2F0855 ] Fax C:\Windows\system32\fxssvc.exe
14:07:13.0161 4268 Fax - ok
14:07:13.0174 4268 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\DRIVERS\fdc.sys
14:07:13.0175 4268 fdc - ok
14:07:13.0200 4268 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll
14:07:13.0201 4268 fdPHost - ok
14:07:13.0212 4268 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll
14:07:13.0214 4268 FDResPub - ok
14:07:13.0224 4268 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
14:07:13.0225 4268 FileInfo - ok
14:07:13.0237 4268 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
14:07:13.0238 4268 Filetrace - ok
14:07:13.0246 4268 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
14:07:13.0247 4268 flpydisk - ok
14:07:13.0258 4268 [ F7866AF72ABBAF84B1FA5AA195378C59 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
14:07:13.0261 4268 FltMgr - ok
14:07:13.0286 4268 [ 8AC4CB4EA61E41009FAE9AE7B2B5DA3A ] FontCache C:\Windows\system32\FntCache.dll
14:07:13.0295 4268 FontCache - ok
14:07:13.0338 4268 [ 8D89E3131C27FDD6932189CB785E1B7A ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
14:07:13.0339 4268 FontCache3.0.0.0 - ok
14:07:13.0351 4268 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
14:07:13.0353 4268 FsDepends - ok
14:07:13.0360 4268 [ E95EF8547DE20CF0603557C0CF7A9462 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
14:07:13.0361 4268 Fs_Rec - ok
14:07:13.0393 4268 [ B8B2A6E1558F8F5DE5CE431C5B2C7B09 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
14:07:13.0395 4268 fvevol - ok
14:07:13.0419 4268 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys
14:07:13.0421 4268 gagp30kx - ok
14:07:13.0438 4268 [ FE5AB4525BC2EC68B9119A6E5D40128B ] gpsvc C:\Windows\System32\gpsvc.dll
14:07:13.0445 4268 gpsvc - ok
14:07:13.0470 4268 [ 1E6438D4EA6E1174A3B3B1EDC4DE660B ] hamachi C:\Windows\system32\DRIVERS\hamachi.sys
14:07:13.0470 4268 hamachi - ok
14:07:13.0504 4268 Hamachi2Svc - ok
14:07:13.0514 4268 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
14:07:13.0515 4268 hcw85cir - ok
14:07:13.0542 4268 [ 6410F6F415B2A5A9037224C41DA8BF12 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
14:07:13.0546 4268 HdAudAddService - ok
14:07:13.0554 4268 [ 0A49913402747A0B67DE940FB42CBDBB ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
14:07:13.0556 4268 HDAudBus - ok
14:07:13.0562 4268 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys
14:07:13.0563 4268 HidBatt - ok
14:07:13.0576 4268 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys
14:07:13.0577 4268 HidBth - ok
14:07:13.0587 4268 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
14:07:13.0589 4268 HidIr - ok
14:07:13.0591 4268 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\system32\hidserv.dll
14:07:13.0593 4268 hidserv - ok
14:07:13.0620 4268 [ B3BF6B5B50006DEF50B66306D99FCF6F ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
14:07:13.0621 4268 HidUsb - ok
14:07:13.0650 4268 [ EFA58EDE58DD74388FFD04CB32681518 ] hkmsvc C:\Windows\system32\kmsvc.dll
14:07:13.0652 4268 hkmsvc - ok
14:07:13.0667 4268 [ 046B2673767CA626E2CFB7FDF735E9E8 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
14:07:13.0671 4268 HomeGroupListener - ok
14:07:13.0696 4268 [ 06A7422224D9865A5613710A089987DF ] HomeGroupProvider C:\Windows\system32\provsvc.dll
14:07:13.0700 4268 HomeGroupProvider - ok
14:07:13.0717 4268 [ 0886D440058F203EBA0E1825E4355914 ] HpSAMD C:\Windows\system32\DRIVERS\HpSAMD.sys
14:07:13.0718 4268 HpSAMD - ok
14:07:13.0739 4268 [ CEE049CAC4EFA7F4E1E4AD014414A5D4 ] HTTP C:\Windows\system32\drivers\HTTP.sys
14:07:13.0746 4268 HTTP - ok
14:07:13.0754 4268 [ F17766A19145F111856378DF337A5D79 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
14:07:13.0755 4268 hwpolicy - ok
14:07:13.0779 4268 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
14:07:13.0781 4268 i8042prt - ok
14:07:13.0799 4268 [ D83EFB6FD45DF9D55E9A1AFC63640D50 ] iaStorV C:\Windows\system32\DRIVERS\iaStorV.sys
14:07:13.0803 4268 iaStorV - ok
14:07:13.0833 4268 [ 2F2BE70D3E02B6FA877921AB9516D43C ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
14:07:13.0841 4268 idsvc - ok
14:07:13.0854 4268 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys
14:07:13.0855 4268 iirsp - ok
14:07:13.0909 4268 [ CE1EE31FFF730CA975A5535D8A71AF61 ] IJPLMSVC C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE
14:07:13.0910 4268 IJPLMSVC - ok
14:07:13.0933 4268 [ C5B4683680DF085B57BC53E5EF34861F ] IKEEXT C:\Windows\System32\ikeext.dll
14:07:13.0941 4268 IKEEXT - ok
14:07:13.0951 4268 [ C4E67D3037DC79E39D7136581A947F50 ] inspect C:\Windows\system32\DRIVERS\inspect.sys
14:07:13.0952 4268 inspect - ok
14:07:14.0033 4268 [ ACACD1B925D448558C1C9D0258749451 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
14:07:14.0051 4268 IntcAzAudAddService - ok
14:07:14.0061 4268 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\DRIVERS\intelide.sys
14:07:14.0062 4268 intelide - ok
14:07:14.0081 4268 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
14:07:14.0082 4268 intelppm - ok
14:07:14.0124 4268 [ A79A140AB6CC3D1E0BB4E54DD3B17B07 ] IObitUnlocker D:\Programs\IObit Unlocker\IObitUnlocker.sys
14:07:14.0126 4268 IObitUnlocker - ok
14:07:14.0137 4268 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll
14:07:14.0140 4268 IPBusEnum - ok
14:07:14.0152 4268 [ 722DD294DF62483CECAAE6E094B4D695 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
14:07:14.0153 4268 IpFilterDriver - ok
14:07:14.0170 4268 [ F8E058D17363EC580E4B7232778B6CB5 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
14:07:14.0176 4268 iphlpsvc - ok
14:07:14.0196 4268 [ E2B4A4494DB7CB9B89B55CA268C337C5 ] IPMIDRV C:\Windows\system32\DRIVERS\IPMIDrv.sys
14:07:14.0198 4268 IPMIDRV - ok
14:07:14.0205 4268 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
14:07:14.0207 4268 IPNAT - ok
14:07:14.0226 4268 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
14:07:14.0227 4268 IRENUM - ok
14:07:14.0246 4268 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\DRIVERS\isapnp.sys
14:07:14.0247 4268 isapnp - ok
14:07:14.0261 4268 [ FA4D2557DE56D45B0A346F93564BE6E1 ] iScsiPrt C:\Windows\system32\DRIVERS\msiscsi.sys
14:07:14.0263 4268 iScsiPrt - ok
14:07:14.0270 4268 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
14:07:14.0271 4268 kbdclass - ok
14:07:14.0283 4268 [ 6DEF98F8541E1B5DCEB2C822A11F7323 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
14:07:14.0284 4268 kbdhid - ok
14:07:14.0294 4268 [ 0793F40B9B8A1BDD266296409DBD91EA ] KeyIso C:\Windows\system32\lsass.exe
14:07:14.0295 4268 KeyIso - ok
14:07:14.0309 4268 [ E8B6FCC9C83535C67F835D407620BD27 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
14:07:14.0310 4268 KSecDD - ok
14:07:14.0320 4268 [ BBE1BF6D9B661C354D4857D5FADB943B ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
14:07:14.0321 4268 KSecPkg - ok
14:07:14.0334 4268 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
14:07:14.0335 4268 ksthunk - ok
14:07:14.0354 4268 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll
14:07:14.0359 4268 KtmRm - ok
14:07:14.0378 4268 [ C926920B8978DE6ACFE9E15C709E9B57 ] LanmanServer C:\Windows\system32\srvsvc.dll
14:07:14.0382 4268 LanmanServer - ok
14:07:14.0402 4268 [ 27026EAC8818E8A6C00A1CAD2F11D29A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
14:07:14.0406 4268 LanmanWorkstation - ok
14:07:14.0429 4268 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
14:07:14.0430 4268 lltdio - ok
14:07:14.0450 4268 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll
14:07:14.0454 4268 lltdsvc - ok
14:07:14.0466 4268 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll
14:07:14.0468 4268 lmhosts - ok
14:07:14.0492 4268 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys
14:07:14.0494 4268 LSI_FC - ok
14:07:14.0502 4268 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys
14:07:14.0504 4268 LSI_SAS - ok
14:07:14.0511 4268 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys
14:07:14.0513 4268 LSI_SAS2 - ok
14:07:14.0526 4268 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys
14:07:14.0528 4268 LSI_SCSI - ok
14:07:14.0542 4268 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys
14:07:14.0543 4268 luafv - ok
14:07:14.0550 4268 [ F84C8F1000BC11E3B7B23CBD3BAFF111 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
14:07:14.0553 4268 Mcx2Svc - ok
14:07:14.0559 4268 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\DRIVERS\megasas.sys
14:07:14.0561 4268 megasas - ok
14:07:14.0576 4268 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys
14:07:14.0579 4268 MegaSR - ok
14:07:14.0644 4268 [ FAFE367D032ED82E9332B4C741A20216 ] Microsoft Office Groove Audit Service D:\Programs\MS Office Enterprise 2007\Office12\GrooveAuditService.exe
14:07:14.0645 4268 Microsoft Office Groove Audit Service - ok
14:07:14.0654 4268 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll
14:07:14.0657 4268 MMCSS - ok
14:07:14.0668 4268 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys
14:07:14.0670 4268 Modem - ok
14:07:14.0698 4268 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys
14:07:14.0699 4268 monitor - ok
14:07:14.0721 4268 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
14:07:14.0721 4268 mouclass - ok
14:07:14.0724 4268 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
14:07:14.0725 4268 mouhid - ok
14:07:14.0733 4268 [ 791AF66C4D0E7C90A3646066386FB571 ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
14:07:14.0734 4268 mountmgr - ok
14:07:14.0745 4268 [ 609D1D87649ECC19796F4D76D4C15CEA ] mpio C:\Windows\system32\DRIVERS\mpio.sys
14:07:14.0747 4268 mpio - ok
14:07:14.0760 4268 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
14:07:14.0762 4268 mpsdrv - ok
14:07:14.0779 4268 [ AECAB449567D1846DAD63ECE49E893E3 ] MpsSvc C:\Windows\system32\mpssvc.dll
14:07:14.0788 4268 MpsSvc - ok
14:07:14.0811 4268 [ 30524261BB51D96D6FCBAC20C810183C ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
14:07:14.0813 4268 MRxDAV - ok
14:07:14.0820 4268 [ CFDCD8CA87C2A657DEBC150AC35B5E08 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
14:07:14.0822 4268 mrxsmb - ok
14:07:14.0834 4268 [ 1BEE517B220B7F024F411AEC1571DD5A ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
14:07:14.0837 4268 mrxsmb10 - ok
14:07:14.0844 4268 [ 6B2D5FEF385828B6E485C1C90AFB8195 ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
14:07:14.0846 4268 mrxsmb20 - ok
14:07:14.0858 4268 [ 5C37497276E3B3A5488B23A326A754B7 ] msahci C:\Windows\system32\DRIVERS\msahci.sys
14:07:14.0858 4268 msahci - ok
14:07:14.0870 4268 [ 8D27B597229AED79430FB9DB3BCBFBD0 ] msdsm C:\Windows\system32\DRIVERS\msdsm.sys
14:07:14.0872 4268 msdsm - ok
14:07:14.0880 4268 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe
14:07:14.0883 4268 MSDTC - ok
14:07:14.0896 4268 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys
14:07:14.0897 4268 Msfs - ok
14:07:14.0909 4268 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
ZD: Gigabyte GA-PH67A-D3-B3 (rev.1.0) CPU: Intel Core i5-2320 3GHz BOX Chladič: Arctic Freezer 7 Pro Rev.2 Zdroj: Seasonic SS-500ET-F3 500W OEM OP:Kingston HyperX Blu 8GB 1333MHz GK: Sapphire ATI Radeon HD 4870 Vapor-X 1GB DDR5 11133-16-20R HDD: WD Caviar Black 3.5" 640GB + externí WD 320GB
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 87 hostů