Stránka 1 z 2

HiJackThis LOG

Napsal: 20 úno 2014 20:14
od Mejssi
Problém zde (viewtopic.php?f=47&t=127370)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 19:35:29, on 20. 2. 2014
Platform: Unknown Windows (WinNT 6.02.1008 SP1)
MSIE: Internet Explorer v10.0 (10.00.9200.16798)
Boot mode: Normal

Running processes:
C:\Users\Irena\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Users\Irena\AppData\Local\Akamai\netsession_win.exe
C:\Users\Irena\AppData\Local\Akamai\netsession_win.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\windows\SysWOW64\WScript.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe
C:\windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe
C:\Users\Irena\Downloads\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://search.us.com/v/2/?guid={08FF6AC4-F434-4269-BA96-13FD5D2A81B7}&serpv=17
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=HPDTDFJS
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: LinkSwift - {323420b6-65e5-4657-8106-a27392d4d4aa} - C:\Program Files (x86)\LinkSwift\LinkSwiftbho.dll
O2 - BHO: Microsoft Web Test Recorder 12.0 Helper - {432dd630-7e03-4c97-9d62-b99f52df4fc2} - C:\Program Files (x86)\Microsoft Visual Studio 12.0\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O2 - BHO: Shopping Suggestion. - {e7e8ed77-2fba-4ec6-bc07-65de4de6709f} - mscoree.dll (file missing)
O3 - Toolbar: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [CLMLServer_For_P2G8] "c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
O4 - HKLM\..\Run: [CLVirtualDrive] "c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe" /R
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [Winpopup LAN Messenger] "C:\Program Files (x86)\Winpopup LAN Messenger\WinPopup.exe" RUNALL
O4 - HKLM\..\Run: [StartCCC] "c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [BlueStacks Agent] C:\Program Files (x86)\BlueStacks\HD-Agent.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [msjhohhrSrv] "C:\windows\system32\msjhohhr.vbe" msoaact msimyel
O4 - HKLM\..\Run: [MSStp] C:\windows\system32\msstp.vbe
O4 - HKLM\..\Run: [mncdaousSrv] C:\windows\inf\mncdaous.vbe
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [uTorrent] "C:\Users\Irena\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Irena\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Irena\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Google Update] "C:\Users\Irena\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [UpdateChecker] C:\Program Files (x86)\SqueakyChocolate\UpdateChecker\UpdateCheckerApp.exe
O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_970073ABCF4380D98390C55D3E12765D] "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window
O4 - HKCU\..\Run: [Akamai NetSession Interface] "C:\Users\Irena\AppData\Local\Akamai\netsession_win.exe"
O4 - Startup: Mozilla Firefox.lnk = C:\Program Files (x86)\Mozilla Firefox\firefox.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O13 - Gopher Prefix:
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O20 - AppInit_DLLs:
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\windows\system32\atiesrxx.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: BlueStacks Android Service (BstHdAndroidSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-Service.exe
O23 - Service: BlueStacks Log Rotator Service (BstHdLogRotatorSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
O23 - Service: @%ProgramFiles%\Windows Identity Foundation\v3.5\c2wtsres.dll,-1000 (c2wts) - Unknown owner - C:\Program Files (x86)\Windows Identity Foundation\v3.5\c2wtshost.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Connected Remote Service (HPConnectedRemote) - Hewlett-Packard - c:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPConnectedRemoteService.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - c:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: LMIGuardianSvc - LogMeIn, Inc. - C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McMyAdmin - Unknown owner - C:\Users\Irena\Desktop\Kluci\Patosik\MCMyServerAdmin\MCMA_Service.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: RzKLService - Razer Inc. - C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10122 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: Util LinkSwift - Unknown owner - C:\Program Files (x86)\LinkSwift\bin\utilLinkSwift.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: wampapache - Apache Software Foundation - c:\wamp\bin\apache\apache2.4.4\bin\httpd.exe
O23 - Service: wampmysqld - Unknown owner - c:\wamp1\bin\mysql\mysql5.5.24\bin\mysqld.exe
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 14875 bytes

Re: HiJackThis LOG

Napsal: 20 úno 2014 22:13
od fredik
Máš starší verzi HJT, tak si stáhni aktuální.

Stáhni AdwCleaner (by Xplode)
Ulož si ho na plochu
Ukonči všechny programy , okna a prohlížeče
Spusť program poklepáním a klikni na „Prohledat-Scan“
Po skenu se objeví log ( jinak je uložen systémovém disku jako AdwCleaner[R?].txt), celý jeho obsah sem vlož.

Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Provést rychlý sken a klikni na tlačítko Skenovat
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Zobrazit výsledky
- pak zvol možnost uložit log a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.

Re: HiJackThis LOG

Napsal: 22 úno 2014 10:23
od Mejssi
LOG z AdwCleaner:

# AdwCleaner v3.019 - Report created 22/02/2014 at 09:46:27
# Updated 17/02/2014 by Xplode
# Operating System : Windows 8 Service Pack 1 (64 bits)
# Username : Irena - RODINKA
# Running from : C:\Users\Irena\Downloads\adwcleaner.exe
# Option : Scan

***** [ Services ] *****


***** [ Files / Folders ] *****

File Found : C:\Users\Irena\AppData\Roaming\Mozilla\Firefox\Profiles\fkvfauu8.default-1383028070246\invalidprefs.js
File Found : C:\windows\System32\roboot64.exe
Folder Found : C:\Users\Irena\AppData\Local\Google\Chrome\User Data\Default\Extensions\cknghehebaconkajgiobncfleofebcog
Folder Found C:\Program Files (x86)\LinkSwift
Folder Found C:\Program Files (x86)\optimizer pro
Folder Found C:\Program Files (x86)\TechSmith
Folder Found C:\ProgramData\TechSmith
Folder Found C:\Users\Irena\AppData\Local\Mobogenie
Folder Found C:\Users\Irena\AppData\Local\SwvUpdater
Folder Found C:\Users\Irena\AppData\Local\TechSmith
Folder Found C:\Users\Irena\AppData\Roaming\OpenCandy
Folder Found C:\Users\Irena\AppData\Roaming\Systweak
Folder Found C:\Users\Irena\Documents\optimizer pro
Folder Found C:\windows\SysWOW64\AI_RecycleBin

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Found : HKCU\Software\APN PIP
Key Found : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Key Found : HKCU\Software\AppDataLow\Software\SmartBar
Key Found : HKCU\Software\BI
Key Found : HKCU\Software\caphyon
Key Found : HKCU\Software\Conduit
Key Found : HKCU\Software\InstallCore
Key Found : HKCU\Software\LinkSwift
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{323420B6-65E5-4657-8106-A27392D4D4AA}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{323420B6-65E5-4657-8106-A27392D4D4AA}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DEDAF650-12B8-48F5-A843-BBA100716106}
Key Found : HKCU\Software\Popajar
Key Found : HKCU\Software\SmileysWeLove
Key Found : HKCU\Software\Softonic
Key Found : HKCU\Software\systweak
Key Found : [x64] HKCU\Software\APN PIP
Key Found : [x64] HKCU\Software\BI
Key Found : [x64] HKCU\Software\caphyon
Key Found : [x64] HKCU\Software\Conduit
Key Found : [x64] HKCU\Software\InstallCore
Key Found : [x64] HKCU\Software\LinkSwift
Key Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Key Found : [x64] HKCU\Software\Popajar
Key Found : [x64] HKCU\Software\SmileysWeLove
Key Found : [x64] HKCU\Software\Softonic
Key Found : [x64] HKCU\Software\systweak
Key Found : HKLM\Software\caphyon
Key Found : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{323420B6-65E5-4657-8106-A27392D4D4AA}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Key Found : HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{A0EE0278-2986-4E5A-884E-A3BF0357E476}
Key Found : HKLM\SOFTWARE\Classes\Updater.AmiUpd
Key Found : HKLM\SOFTWARE\Classes\Updater.AmiUpd.1
Key Found : HKLM\Software\Conduit
Key Found : HKLM\Software\LinkSwift
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{323420B6-65E5-4657-8106-A27392D4D4AA}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKLM\Software\PIP
Key Found : [x64] HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Key Found : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\LinkSwift
Value Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [UpdateChecker]

***** [ Browsers ] *****

-\\ Internet Explorer v10.0.9200.16798


-\\ Mozilla Firefox v27.0.1 (cs)

[ File : C:\Users\Irena\AppData\Roaming\Mozilla\Firefox\Profiles\fkvfauu8.default-1383028070246\prefs.js ]


-\\ Google Chrome v33.0.1750.117

[ File : C:\Users\Irena\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [5314 octets] - [22/02/2014 09:46:27]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [5374 octets] ##########

A Log z Malwarebytes' Anti-Malware:

Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware.) 1.75.0.1300
http://www.malwarebytes.org

Verze: v2014.02.22.02

Windows 8 Service Pack 1 x64 NTFS
Internet Explorer 10.0.9200.16798
Irena :: RODINKA [administrátor]

Ochrana: Povolena

22. 2. 2014 10:03:27
mbam-log-2014-02-22 (10-03-27).txt

Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 232613
Uplynulý čas: 5 minut, 42 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 7
HKLM\SYSTEM\CurrentControlSet\Services\Update LinkSwift (PUP.Optional.LinkSwift.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SqueakyChocolate, LLC UpdateChecker (PUP.Optional.SqueakyChocolate.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{e7e8ed77-2fba-4ec6-bc07-65de4de6709f} (PUP.Optional.ShoppingSuggestion.A) -> Nebyla provedena žádná instrukce.
HKCR\CLSID\{e7e8ed77-2fba-4ec6-bc07-65de4de6709f} (PUP.Optional.ShoppingSuggestion.A) -> Nebyla provedena žádná instrukce.
HKCR\ScriptInjector.AddOnIE (PUP.Optional.ShoppingSuggestion.A) -> Nebyla provedena žádná instrukce.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{E7E8ED77-2FBA-4EC6-BC07-65DE4DE6709F} (PUP.Optional.ShoppingSuggestion.A) -> Nebyla provedena žádná instrukce.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{E7E8ED77-2FBA-4EC6-BC07-65DE4DE6709F} (PUP.Optional.ShoppingSuggestion.A) -> Nebyla provedena žádná instrukce.

Nalezené hodnoty v registru: 2
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|MSStp (Malware.Trace) -> Data: C:\windows\system32\msstp.vbe -> Přesun do karantény a smazání se zdařilo.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|msjhohhrSrv (Trojan.Script) -> Data: "C:\windows\system32\msjhohhr.vbe" msoaact msimyel -> Přesun do karantény a smazání se zdařilo.

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 6
C:\Program Files (x86)\SqueakyChocolate\UpdateChecker (PUP.Optional.SqueakyChocolate.A) -> Nebyla provedena žádná instrukce.
C:\Users\Irena\AppData\Local\Google\Chrome\User Data\Default\Extensions\odpccdgkmiicgocepijnaeihjnjnomca (PUP.Optional.LinkSwift.A) -> Nebyla provedena žádná instrukce.
C:\Users\Irena\AppData\Local\Google\Chrome\User Data\Default\Extensions\odpccdgkmiicgocepijnaeihjnjnomca\1.0.0_0 (PUP.Optional.LinkSwift.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\Company\NewProduct (Backdoor.Agent.CoGen) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\Inf\mncdaous (Trojan.Agent.BCM) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\Inf\mncdaous\bitstreams (Trojan.Agent.BCM) -> Přesun do karantény a smazání se zdařilo.

Nalezené soubory: 40
C:\Users\Irena\Downloads\SoftonicDownloader_for_gimp-paint-studio.exe (PUP.Optional.Softonic.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\Shopping Suggestion\Shopping Suggestion.dll (PUP.Optional.ShoppingSuggestion.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SqueakyChocolate\UpdateChecker\System.Net.Json.dll (PUP.Optional.SqueakyChocolate.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SqueakyChocolate\UpdateChecker\uninstall.exe (PUP.Optional.SqueakyChocolate.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SqueakyChocolate\UpdateChecker\UpdateCheckerApp.exe (PUP.Optional.SqueakyChocolate.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SqueakyChocolate\UpdateChecker\UpdateNotifier.exe (PUP.Optional.SqueakyChocolate.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SqueakyChocolate\UpdateChecker\UpdaterLibrary.dll (PUP.Optional.SqueakyChocolate.A) -> Nebyla provedena žádná instrukce.
C:\Users\Irena\AppData\Local\Google\Chrome\User Data\Default\Extensions\odpccdgkmiicgocepijnaeihjnjnomca\1.0.0_0\background.js (PUP.Optional.LinkSwift.A) -> Nebyla provedena žádná instrukce.
C:\Users\Irena\AppData\Local\Google\Chrome\User Data\Default\Extensions\odpccdgkmiicgocepijnaeihjnjnomca\1.0.0_0\content.js (PUP.Optional.LinkSwift.A) -> Nebyla provedena žádná instrukce.
C:\Users\Irena\AppData\Local\Google\Chrome\User Data\Default\Extensions\odpccdgkmiicgocepijnaeihjnjnomca\1.0.0_0\icon.png (PUP.Optional.LinkSwift.A) -> Nebyla provedena žádná instrukce.
C:\Users\Irena\AppData\Local\Google\Chrome\User Data\Default\Extensions\odpccdgkmiicgocepijnaeihjnjnomca\1.0.0_0\manifest.json (PUP.Optional.LinkSwift.A) -> Nebyla provedena žádná instrukce.
C:\Windows\System32\msstp.vbe (Malware.Trace) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\SysWOW64\msstp.vbe (Malware.Trace) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\System32\msjhohhr.vbe (Trojan.Script) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\System32\msoaact.vbe (Trojan.Script) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\SysWOW64\msjhohhr.vbe (Trojan.Script) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\SysWOW64\msoaact.vbe (Trojan.Script) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files (x86)\Company\NewProduct\Uninstall.ini (Backdoor.Agent.CoGen) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files (x86)\Company\NewProduct\early_autumn_morning-1600x1200.jpg (Backdoor.Agent.CoGen) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files (x86)\Company\NewProduct\green_hyundai-1600x1200.jpg (Backdoor.Agent.CoGen) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files (x86)\Company\NewProduct\morning_on_the_lake_2-1600x1200.jpg (Backdoor.Agent.CoGen) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files (x86)\Company\NewProduct\mount_rainier-1600x1200.jpg (Backdoor.Agent.CoGen) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files (x86)\Company\NewProduct\path_in_the_park-1600x1200.jpg (Backdoor.Agent.CoGen) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files (x86)\Company\NewProduct\point_reyes-1600x1200.jpg (Backdoor.Agent.CoGen) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files (x86)\Company\NewProduct\sunlight_painting-1366x768.jpg (Backdoor.Agent.CoGen) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files (x86)\Company\NewProduct\Uninstall.exe (Backdoor.Agent.CoGen) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\Inf\mncdaous\diablo130302.cl (Trojan.Agent.BCM) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\Inf\mncdaous\diakgcn121016.cl (Trojan.Agent.BCM) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\Inf\mncdaous\libcurl-4.dll (Trojan.Agent.BCM) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\Inf\mncdaous\libeay32.dll (Trojan.Agent.BCM) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\Inf\mncdaous\libidn-11.dll (Trojan.Agent.BCM) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\Inf\mncdaous\librtmp.dll (Trojan.Agent.BCM) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\Inf\mncdaous\libssh2.dll (Trojan.Agent.BCM) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\Inf\mncdaous\mncdaous.exe (Trojan.Agent.BCM) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\Inf\mncdaous\phatk121016.cl (Trojan.Agent.BCM) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\Inf\mncdaous\poclbm130302.cl (Trojan.Agent.BCM) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\Inf\mncdaous\scrypt130511.cl (Trojan.Agent.BCM) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\Inf\mncdaous\ssleay32.dll (Trojan.Agent.BCM) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\Inf\mncdaous\zlib1.dll (Trojan.Agent.BCM) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\Inf\mncdaous\bitstreams\fpgaminer_top_fixed7_197MHz.ncd (Trojan.Agent.BCM) -> Přesun do karantény a smazání se zdařilo.

(konec)

PS: Co mám dělat dále? Všechny infikovaný škůdci jsou v karanténě, mám je odstranit?... Děkuji předem za odpověď :)

Re: HiJackThis LOG

Napsal: 22 úno 2014 10:24
od Mejssi
Jinak už se neukazuje při startu pc žádná tabulka, že avast zablokoval stránku... :)

Re: HiJackThis LOG

Napsal: 22 úno 2014 11:07
od jaro3
Spusť znovu AdwCleaner (u Windows Vista či Windows7, klikni na AdwCleaner pravým a vyber „Spustit jako správce
Klikni na „ Vymazat-Clean
Program provede opravu, po automatickém restartu neukáže log (C:\AdwCleaner [S?].txt) , jeho obsah sem celý vlož.

Stáhni si Junkware Removal Tool by Thisisu

na svojí plochu.

Deaktivuj si svůj antivirový program. Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.

. spusť znovu MbAM a dej Scan
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Ukaž výsledky
- ujisti se že máš zatrhnuté všechny vypsané nálezy a klikni na tlačítko Odstranit označené
- když skončí odstraňování tak se ti zobrazí log, tak ho sem dej.
- pak zvol v programu OK a pak program ukonči přes Exit
Můžeš sem pak vložit nový log z MbAM.

Stáhni si RogueKiller by Adlice Software
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit

-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.

Re: HiJackThis LOG

Napsal: 22 úno 2014 14:56
od Mejssi
Dobrý den, udělala jsem všechno co jste napsal. Vkládám logy:

LOG AdwCleaner:

# AdwCleaner v3.019 - Report created 22/02/2014 at 09:53:55
# Updated 17/02/2014 by Xplode
# Operating System : Windows 8 Service Pack 1 (64 bits)
# Username : Irena - RODINKA
# Running from : C:\Users\Irena\Downloads\adwcleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\TechSmith
Folder Deleted : C:\Program Files (x86)\LinkSwift
Folder Deleted : C:\Program Files (x86)\optimizer pro
Folder Deleted : C:\Program Files (x86)\TechSmith
Folder Deleted : C:\windows\SysWOW64\AI_RecycleBin
Folder Deleted : C:\Users\Irena\AppData\Local\Mobogenie
Folder Deleted : C:\Users\Irena\AppData\Local\SwvUpdater
Folder Deleted : C:\Users\Irena\AppData\Local\TechSmith
Folder Deleted : C:\Users\Irena\AppData\Roaming\OpenCandy
Folder Deleted : C:\Users\Irena\AppData\Roaming\Systweak
Folder Deleted : C:\Users\Irena\Documents\optimizer pro
Folder Deleted : C:\Users\Irena\AppData\Local\Google\Chrome\User Data\Default\Extensions\cknghehebaconkajgiobncfleofebcog
File Deleted : C:\windows\System32\roboot64.exe
File Deleted : C:\Users\Irena\AppData\Roaming\Mozilla\Firefox\Profiles\fkvfauu8.default-1383028070246\invalidprefs.js

***** [ Shortcuts ] *****


***** [ Registry ] *****

Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [UpdateChecker]
Key Deleted : HKLM\SOFTWARE\Classes\Updater.AmiUpd
Key Deleted : HKLM\SOFTWARE\Classes\Updater.AmiUpd.1
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{323420B6-65E5-4657-8106-A27392D4D4AA}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A0EE0278-2986-4E5A-884E-A3BF0357E476}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{323420B6-65E5-4657-8106-A27392D4D4AA}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{323420B6-65E5-4657-8106-A27392D4D4AA}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DEDAF650-12B8-48F5-A843-BBA100716106}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{323420B6-65E5-4657-8106-A27392D4D4AA}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Key Deleted : HKCU\Software\APN PIP
Key Deleted : HKCU\Software\BI
Key Deleted : HKCU\Software\caphyon
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\InstallCore
Key Deleted : HKCU\Software\LinkSwift
Key Deleted : HKCU\Software\Popajar
Key Deleted : HKCU\Software\SmileysWeLove
Key Deleted : HKCU\Software\Softonic
Key Deleted : HKCU\Software\systweak
Key Deleted : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Key Deleted : HKCU\Software\AppDataLow\Software\SmartBar
Key Deleted : HKLM\Software\caphyon
Key Deleted : HKLM\Software\Conduit
Key Deleted : HKLM\Software\LinkSwift
Key Deleted : HKLM\Software\PIP
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\LinkSwift

***** [ Browsers ] *****

-\\ Internet Explorer v10.0.9200.16798


-\\ Mozilla Firefox v27.0.1 (cs)

[ File : C:\Users\Irena\AppData\Roaming\Mozilla\Firefox\Profiles\fkvfauu8.default-1383028070246\prefs.js ]


-\\ Google Chrome v33.0.1750.117

[ File : C:\Users\Irena\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [5522 octets] - [22/02/2014 09:46:27]
AdwCleaner[S0].txt - [5025 octets] - [22/02/2014 09:53:55]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [5085 octets] ##########


LOG z JRT:

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.2 (02.20.2014:1)
OS: Windows 8 x64
Ran by Irena on so 22. 02. 2014 at 14:19:22,69
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services

Successfully stopped: [Service] update linkswift
Successfully deleted: [Service] update linkswift



~~~ Registry Values

Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Default_Page_URL



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{37180C8D-EAAC-4B12-91CE-BC2329EADF2D}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{92273014-8879-401B-BE75-3AD312F2F597}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{CF141012-2DBF-4808-BAC2-CCEC26E41981}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{CF141012-2DBF-4808-BAC2-CCEC26E41981}



~~~ Files



~~~ Folders

Successfully deleted: [Empty Folder] C:\Users\Irena\appdata\local\{1FE8FEB3-E69F-4804-B297-4D502573AEBC}
Successfully deleted: [Empty Folder] C:\Users\Irena\appdata\local\{230388FB-D02F-4903-BE10-609F36796146}
Successfully deleted: [Empty Folder] C:\Users\Irena\appdata\local\{52A646F7-A7B6-45E8-ABD8-E3F6D4808F3A}
Successfully deleted: [Empty Folder] C:\Users\Irena\appdata\local\{64346FA5-B9E1-40E1-880B-33AF11F87199}
Successfully deleted: [Empty Folder] C:\Users\Irena\appdata\local\{6AF3B4C3-F751-4C8E-9302-C3B536E71C77}
Successfully deleted: [Empty Folder] C:\Users\Irena\appdata\local\{AE4FD7F9-6C42-4356-84B0-3D58A613347E}
Successfully deleted: [Empty Folder] C:\Users\Irena\appdata\local\{E1A37B38-5852-4F4C-8626-A4DE730E1046}



~~~ FireFox

Emptied folder: C:\Users\Irena\AppData\Roaming\mozilla\firefox\profiles\fkvfauu8.default-1383028070246\minidumps [41 files]



~~~ Chrome

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Policies\Google [Blacklisted Policy]



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on so 22. 02. 2014 at 14:27:00,89
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~


LOG z MbAM:

Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware.) 1.75.0.1300
www.malwarebytes.org

Verze: v2014.02.22.02

Windows 8 Service Pack 1 x64 NTFS
Internet Explorer 10.0.9200.16798
Irena :: RODINKA [administrátor]

Ochrana: Zakázána

22. 2. 2014 14:31:35
mbam-log-2014-02-22 (14-31-35).txt

Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 232613
Uplynulý čas: 5 minut, 1 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 6
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SqueakyChocolate, LLC UpdateChecker (PUP.Optional.SqueakyChocolate.A) -> Přesun do karantény a smazání se zdařilo.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{e7e8ed77-2fba-4ec6-bc07-65de4de6709f} (PUP.Optional.ShoppingSuggestion.A) -> Přesun do karantény a smazání se zdařilo.
HKCR\CLSID\{e7e8ed77-2fba-4ec6-bc07-65de4de6709f} (PUP.Optional.ShoppingSuggestion.A) -> Přesun do karantény a smazání se zdařilo.
HKCR\ScriptInjector.AddOnIE (PUP.Optional.ShoppingSuggestion.A) -> Přesun do karantény a smazání se zdařilo.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{E7E8ED77-2FBA-4EC6-BC07-65DE4DE6709F} (PUP.Optional.ShoppingSuggestion.A) -> Přesun do karantény a smazání se zdařilo.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{E7E8ED77-2FBA-4EC6-BC07-65DE4DE6709F} (PUP.Optional.ShoppingSuggestion.A) -> Přesun do karantény a smazání se zdařilo.

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 3
C:\Program Files (x86)\SqueakyChocolate\UpdateChecker (PUP.Optional.SqueakyChocolate.A) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Irena\AppData\Local\Google\Chrome\User Data\Default\Extensions\odpccdgkmiicgocepijnaeihjnjnomca (PUP.Optional.LinkSwift.A) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Irena\AppData\Local\Google\Chrome\User Data\Default\Extensions\odpccdgkmiicgocepijnaeihjnjnomca\1.0.0_0 (PUP.Optional.LinkSwift.A) -> Přesun do karantény a smazání se zdařilo.

Nalezené soubory: 11
C:\Users\Irena\Downloads\SoftonicDownloader_for_gimp-paint-studio.exe (PUP.Optional.Softonic.A) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files (x86)\Shopping Suggestion\Shopping Suggestion.dll (PUP.Optional.ShoppingSuggestion.A) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files (x86)\SqueakyChocolate\UpdateChecker\System.Net.Json.dll (PUP.Optional.SqueakyChocolate.A) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files (x86)\SqueakyChocolate\UpdateChecker\uninstall.exe (PUP.Optional.SqueakyChocolate.A) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files (x86)\SqueakyChocolate\UpdateChecker\UpdateCheckerApp.exe (PUP.Optional.SqueakyChocolate.A) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files (x86)\SqueakyChocolate\UpdateChecker\UpdateNotifier.exe (PUP.Optional.SqueakyChocolate.A) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files (x86)\SqueakyChocolate\UpdateChecker\UpdaterLibrary.dll (PUP.Optional.SqueakyChocolate.A) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Irena\AppData\Local\Google\Chrome\User Data\Default\Extensions\odpccdgkmiicgocepijnaeihjnjnomca\1.0.0_0\background.js (PUP.Optional.LinkSwift.A) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Irena\AppData\Local\Google\Chrome\User Data\Default\Extensions\odpccdgkmiicgocepijnaeihjnjnomca\1.0.0_0\content.js (PUP.Optional.LinkSwift.A) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Irena\AppData\Local\Google\Chrome\User Data\Default\Extensions\odpccdgkmiicgocepijnaeihjnjnomca\1.0.0_0\icon.png (PUP.Optional.LinkSwift.A) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Irena\AppData\Local\Google\Chrome\User Data\Default\Extensions\odpccdgkmiicgocepijnaeihjnjnomca\1.0.0_0\manifest.json (PUP.Optional.LinkSwift.A) -> Přesun do karantény a smazání se zdařilo.

(konec)

LOG z RogueKiller by Adlice Software:

RogueKiller V8.8.8 _x64_ [Feb 19 2014] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com

Operační systém : Windows 8 (6.2.9200 Service Pack 1) 64 bits version
Spuštěno v : Normální režim
Uživatel : Irena [Práva správce]
Mód : Kontrola -- Datum : 02/22/2014 14:50:45
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 8 ¤¤¤
[RUN][SUSP PATH] HKCU\[...]\Run : cz.seznam.software.autoupdate ("C:\Users\Irena\AppData\Roaming\Seznam.cz\szninstall.exe" -c [7]) -> NALEZENO
[RUN][SUSP PATH] HKCU\[...]\Run : cz.seznam.software.szndesktop ("C:\Users\Irena\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q [7]) -> NALEZENO
[RUN][SUSP PATH] HKUS\S-1-5-21-1197985812-3980447561-4286486698-1001\[...]\Run : cz.seznam.software.autoupdate ("C:\Users\Irena\AppData\Roaming\Seznam.cz\szninstall.exe" -c [7]) -> NALEZENO
[RUN][SUSP PATH] HKUS\S-1-5-21-1197985812-3980447561-4286486698-1001\[...]\Run : cz.seznam.software.szndesktop ("C:\Users\Irena\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q [7]) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO

¤¤¤ naplánované úlohy : 0 ¤¤¤

¤¤¤ spuštění položky : 0 ¤¤¤

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Browser Addons : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NENAHRÁNO 0x0] ¤¤¤

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts


127.0.0.1 static3.cdn.ubi.com
127.0.0.1 ubisoft-orbit.s3.amazonaws.com
127.0.0.1 onlineconfigservice.ubi.com
127.0.0.1 orbitservice.ubi.com
127.0.0.1 ubisoft-orbit-savegames.s3.amazonaws.com
127.0.0.1 adobeereg.com
127.0.0.1 www.adobeereg.com
127.0.0.1 activate.adobe.com
127.0.0.1 activate-sea.adobe.com
127.0.0.1 activate-sjc0.adobe.com
127.0.0.1 wwis-dubc1-vip60.adobe.com
127.0.0.1 localhost
127.0.0.1 localhost


¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) Hitachi HDS721050CLA660 +++++
--- User ---
[MBR] 36e0b34943abead73f07d1853d86c2a1
[BSP] 768d055b68e7f309d548af02044e6ae4 : Empty MBR Code
Partition table:
0 - [XXXXXX] UNKNOWN (0x00) [VISIBLE] Offset (sectors): 1 | Size: 2097152 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[0]_S_02222014_145045.txt >>

A co teď? Je už můj počítač vpořádku? :)

Re: HiJackThis LOG

Napsal: 22 úno 2014 20:35
od Orcus
No vzhledem k upirátěnýmu Photoshopu tam toho bude víc. Rozhodně jej odinstaluj, jinak budem čistit zbytečně, protože bude natahovat další a další bordel.

Spusť RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Počkej, dokud status okno zobrazuje "Prohledat "

- Klikni na "Smazat"
- Počkej, dokud Status box zobrazuje "Smazání- Finished "
- Klikni na "Zprávy " a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [číslo]. txt na ploše.
- Zavři RogueKiller

====================================================

Stahni a použij resethosts:
http://go.microsoft.com/?linkid=9668866

===================================================

Stáhni si TDSSKiller

Na svojí plochu. Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller.2.2.7.1._(datum)_log.txt , vlož sem prosím celý obsah logu.

====================================================

Stáhni si aswMBR
na svojí plochu. Uzavři všechna okna , programy a prohlížeče. Poklepej na aswMBR.exe. Pokud se objeví hláška o možnosti stáhnutí databáze Avastu , klikni na NE. Poté klikni na „Scan“ . Po skenu klikni na „Save Log“ a ulož si log na plochu .Zkopíruj sem celý obsah toho logu. Pak klikni na „Exit“ k zavření programu.

Re: HiJackThis LOG

Napsal: 22 úno 2014 23:32
od Mejssi
RogueKiller

RogueKiller V8.8.8 _x64_ [Feb 19 2014] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com

Operační systém : Windows 8 (6.2.9200 Service Pack 1) 64 bits version
Spuštěno v : Normální režim
Uživatel : Irena [Práva správce]
Mód : Odebrat -- Datum : 02/22/2014 22:39:42
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 8 ¤¤¤
[RUN][SUSP PATH] HKCU\[...]\Run : cz.seznam.software.autoupdate ("C:\Users\Irena\AppData\Roaming\Seznam.cz\szninstall.exe" -c [7]) -> VYMAZÁNO
[RUN][SUSP PATH] HKCU\[...]\Run : cz.seznam.software.szndesktop ("C:\Users\Irena\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q [7]) -> VYMAZÁNO
[RUN][SUSP PATH] HKUS\S-1-5-21-1197985812-3980447561-4286486698-1001\[...]\Run : cz.seznam.software.autoupdate ("C:\Users\Irena\AppData\Roaming\Seznam.cz\szninstall.exe" -c [7]) -> [0x2] Systém nemůže nalézt uvedený soubor.
[RUN][SUSP PATH] HKUS\S-1-5-21-1197985812-3980447561-4286486698-1001\[...]\Run : cz.seznam.software.szndesktop ("C:\Users\Irena\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q [7]) -> [0x2] Systém nemůže nalézt uvedený soubor.
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> VYMAZÁNO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> VYMAZÁNO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)

¤¤¤ naplánované úlohy : 0 ¤¤¤

¤¤¤ spuštění položky : 0 ¤¤¤

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Browser Addons : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NENAHRÁNO 0x0] ¤¤¤

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts


127.0.0.1 static3.cdn.ubi.com
127.0.0.1 ubisoft-orbit.s3.amazonaws.com
127.0.0.1 onlineconfigservice.ubi.com
127.0.0.1 orbitservice.ubi.com
127.0.0.1 ubisoft-orbit-savegames.s3.amazonaws.com
127.0.0.1 adobeereg.com
127.0.0.1 www.adobeereg.com
127.0.0.1 activate.adobe.com
127.0.0.1 activate-sea.adobe.com
127.0.0.1 activate-sjc0.adobe.com
127.0.0.1 wwis-dubc1-vip60.adobe.com
127.0.0.1 localhost
127.0.0.1 localhost


¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) Hitachi HDS721050CLA660 +++++
--- User ---
[MBR] 36e0b34943abead73f07d1853d86c2a1
[BSP] 768d055b68e7f309d548af02044e6ae4 : Empty MBR Code
Partition table:
0 - [XXXXXX] UNKNOWN (0x00) [VISIBLE] Offset (sectors): 1 | Size: 2097152 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[0]_D_02222014_223942.txt >>
RKreport[0]_S_02222014_222920.txt

===================================================

Program Microsoft Fix it mi nešel nainstalovat, protože mi to naskočila hláška "Nástroj M. Fix it nlze použít ve vašem operačním systému nebo verzi aplikace

===================================================

aswMBR

aswMBR version 0.9.9.1771 Copyright(c) 2011 AVAST Software
Run date: 2014-02-22 23:13:14
-----------------------------
23:13:14.252 OS Version: Windows x64 6.2.9200 Service Pack 1
23:13:14.252 Number of processors: 2 586 0x2A07
23:13:14.253 ComputerName: RODINKA UserName: Irena
23:13:14.269 Initialze error 1
23:13:17.137 AVAST engine defs: 14022201
23:13:18.155 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\00000037
23:13:18.157 Disk 0 Vendor: Hitachi_HDS721050CLA660 JP2OA41A Size: 476940MB BusType: 11
23:13:18.181 Disk 0 MBR read successfully
23:13:18.182 Disk 0 MBR scan
23:13:18.184 Disk 0 unknown MBR code
23:13:18.186 Disk 0 Partition 1 00 EE GPT 2097151 MB offset 1
23:13:18.189 Disk 0 scanning C:\windows\system32\drivers
23:13:18.191 Service scanning
23:13:19.149 Modules scanning
23:13:19.151 Disk 0 trace - called modules:
23:13:19.189 ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys storport.sys hal.dll storahci.sys
23:13:19.191 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa8005d6c060]
23:13:19.194 3 CLASSPNP.SYS[fffff88001355e0a] -> nt!IofCallDriver -> [0xfffffa8005b23c00]
23:13:19.342 5 ACPI.sys[fffff8800115ba91] -> nt!IofCallDriver -> \Device\00000037[0xfffffa8005af57f0]
23:13:19.345 AVAST engine scan C:\windows
23:13:19.347 AVAST engine scan C:\windows\system32
23:13:19.350 AVAST engine scan C:\windows\system32\drivers
23:13:19.353 AVAST engine scan C:\Users\Irena
23:13:19.356 AVAST engine scan C:\ProgramData
23:13:19.359 Scan finished successfully
23:13:38.222 Disk 0 MBR has been saved successfully to "C:\Users\Irena\Desktop\MBR.dat"
23:13:38.224 The log file has been saved successfully to "C:\Users\Irena\Desktop\aswMBR.txt"


Ps: Začínám se bát, že počítač už nějak nevyčistím. Jinak jsem našla ve škožce C:/ soubor ve worldu s názvem "YOU". Když jsem to rozklikla tak mi naskočil internet a velkým písmem "YOU ARE PIRATE!!!!" tenhle soubor je tam od 27.10.2013 10:42. Dost mě to vyděsilo! Kdysi brácha stáhl něco na tenhle počítač a přes celou obrazovku naskakovaly piráti, kteří se vysmívaly. Pořád hrála dokola nějaká hudba. Nakonec nějak obnovil systém a vše bylo vpořádku, ale už je to dávno. Myslíte, že mohu soubor smazat? Nebo zatím raději nic nedělat.

Přikládám obrázek: http://nd06.jxs.cz/532/713/85bea3e7ea_9 ... 1393108097

Re: HiJackThis LOG

Napsal: 22 úno 2014 23:35
od Mejssi
TDSSKiller

22:59:58.0770 7140 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
22:59:58.0770 7140 UEFI system
23:00:43.0917 7140 ============================================================
23:00:43.0917 7140 Current date / time: 2014/02/22 23:00:43.0917
23:00:43.0917 7140 SystemInfo:
23:00:43.0917 7140
23:00:43.0917 7140 OS Version: 6.2.9200 ServicePack: 1.0
23:00:43.0917 7140 Product type: Workstation
23:00:43.0917 7140 ComputerName: RODINKA
23:00:43.0917 7140 UserName: Irena
23:00:43.0917 7140 Windows directory: C:\windows
23:00:43.0917 7140 System windows directory: C:\windows
23:00:43.0917 7140 Running under WOW64
23:00:43.0917 7140 Processor architecture: Intel x64
23:00:43.0917 7140 Number of processors: 2
23:00:43.0917 7140 Page size: 0x1000
23:00:43.0917 7140 Boot type: Normal boot
23:00:43.0917 7140 ============================================================
23:00:44.0543 7140 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
23:00:44.0558 7140 ============================================================
23:00:44.0558 7140 \Device\Harddisk0\DR0:
23:00:44.0574 7140 GPT partitions:
23:00:44.0574 7140 \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {E517E2B0-6659-4C3A-87B3-B85776213A99}, Name: Basic data partition, StartLBA 0x800, BlocksNum 0x1FF800
23:00:44.0574 7140 \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {3C05BF03-A70C-4523-9C35-2DEA19A20F00}, Name: EFI system partition, StartLBA 0x200000, BlocksNum 0xB4000
23:00:44.0574 7140 \Device\Harddisk0\DR0\Partition3: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {76A4B35B-8DD4-4451-8F7A-27409E6EFA88}, Name: Microsoft reserved partition, StartLBA 0x2B4000, BlocksNum 0x40000
23:00:44.0574 7140 \Device\Harddisk0\DR0\Partition4: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {41E66FD0-F1B2-43DD-A508-DE6208303E5F}, Name: Basic data partition, StartLBA 0x2F4000, BlocksNum 0x38A43800
23:00:44.0574 7140 \Device\Harddisk0\DR0\Partition5: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {390C9A95-4C40-4CE1-82D7-D86DD31EFD4E}, Name: Basic data partition, StartLBA 0x38D37800, BlocksNum 0x164E800
23:00:44.0574 7140 MBR partitions:
23:00:44.0574 7140 ============================================================
23:00:44.0605 7140 C: <-> \Device\Harddisk0\DR0\Partition4
23:00:44.0652 7140 D: <-> \Device\Harddisk0\DR0\Partition5
23:00:44.0652 7140 ============================================================
23:00:44.0652 7140 Initialize success
23:00:44.0652 7140 ============================================================
23:00:52.0297 10120 ============================================================
23:00:52.0297 10120 Scan started
23:00:52.0297 10120 Mode: Manual;
23:00:52.0297 10120 ============================================================
23:00:53.0657 10120 ================ Scan system memory ========================
23:00:53.0657 10120 System memory - ok
23:00:53.0657 10120 ================ Scan services =============================
23:00:53.0798 10120 [ E890C46E4754F0DF51BAFCC8D2E07498 ] 1394ohci C:\windows\System32\drivers\1394ohci.sys
23:00:53.0798 10120 1394ohci - ok
23:00:53.0798 10120 [ 4F18D4C7EA14F11A7211F60D553C03DB ] 3ware C:\windows\system32\drivers\3ware.sys
23:00:53.0813 10120 3ware - ok
23:00:53.0829 10120 [ 975AABEB243B800C23626D6B652C5A9C ] ACPI C:\windows\system32\drivers\ACPI.sys
23:00:53.0829 10120 ACPI - ok
23:00:53.0844 10120 [ DC968C37822117E576B933F34A2D130C ] acpiex C:\windows\system32\Drivers\acpiex.sys
23:00:53.0844 10120 acpiex - ok
23:00:53.0844 10120 [ 0CA9F7C3A78227C21A0A7854E245CFB2 ] acpipagr C:\windows\System32\drivers\acpipagr.sys
23:00:53.0860 10120 acpipagr - ok
23:00:53.0860 10120 [ 8EB8DA03B142D3DD1EB9ED8107A76C43 ] AcpiPmi C:\windows\System32\drivers\acpipmi.sys
23:00:53.0860 10120 AcpiPmi - ok
23:00:53.0860 10120 [ CBCE725C5D86ABA7D2604E22951AA9B8 ] acpitime C:\windows\System32\drivers\acpitime.sys
23:00:53.0860 10120 acpitime - ok
23:00:53.0954 10120 [ F7AB315A4D400CA876381D1E188A2E20 ] AdobeFlashPlayerUpdateSvc C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
23:00:53.0954 10120 AdobeFlashPlayerUpdateSvc - ok
23:00:53.0985 10120 [ 93C6388592B99925C1D1576E465BC80F ] adp94xx C:\windows\system32\drivers\adp94xx.sys
23:00:54.0001 10120 adp94xx - ok
23:00:54.0001 10120 [ D27763E0247292654E7F7D16444C7C72 ] adpahci C:\windows\system32\drivers\adpahci.sys
23:00:54.0001 10120 adpahci - ok
23:00:54.0001 10120 [ 67B90070FF48F794AF19F9FCF0080D75 ] adpu320 C:\windows\system32\drivers\adpu320.sys
23:00:54.0001 10120 adpu320 - ok
23:00:54.0032 10120 [ 974AE60BF5B90E31412D93596C968E5B ] AeLookupSvc C:\windows\System32\aelupsvc.dll
23:00:54.0032 10120 AeLookupSvc - ok
23:00:54.0079 10120 [ 7C0E0EDF18D6CC565D7BFBB451709FA5 ] AFD C:\windows\system32\drivers\afd.sys
23:00:54.0079 10120 AFD - ok
23:00:54.0094 10120 [ 01590377A5AB19E792528C628A2A68F9 ] agp440 C:\windows\system32\drivers\agp440.sys
23:00:54.0110 10120 agp440 - ok
23:00:54.0126 10120 [ D1BE8E6E5B3AF23A4393AF1BF867977A ] ALG C:\windows\System32\alg.exe
23:00:54.0126 10120 ALG - ok
23:00:54.0126 10120 [ 025E8C755BE293E50854D26D1BBE5133 ] AllUserInstallAgent C:\windows\system32\AUInstallAgent.dll
23:00:54.0141 10120 AllUserInstallAgent - ok
23:00:54.0157 10120 [ 5E4ABAE09E144C363839E8F10705F98A ] AMD External Events Utility C:\windows\system32\atiesrxx.exe
23:00:54.0157 10120 AMD External Events Utility - ok
23:00:54.0173 10120 [ 5A81054B824004B1ECC04F0034A1CDF9 ] AmdK8 C:\windows\System32\drivers\amdk8.sys
23:00:54.0173 10120 AmdK8 - ok
23:00:54.0188 10120 [ F2FF8C1B41B3784EDBD5C6D5397F403C ] amdkmafd C:\windows\system32\drivers\amdkmafd.sys
23:00:54.0188 10120 amdkmafd - ok
23:00:54.0329 10120 [ CD3C1C5ADBB06B6B50DE4D64797E74CB ] amdkmdag C:\windows\system32\DRIVERS\atikmdag.sys
23:00:54.0376 10120 amdkmdag - ok
23:00:54.0407 10120 [ 28FC287546FF4213B8346DAD7B443AFB ] amdkmdap C:\windows\system32\DRIVERS\atikmpag.sys
23:00:54.0423 10120 amdkmdap - ok
23:00:54.0438 10120 [ B849D453E644FAB9BC8EF6DC8CA9C4C6 ] AmdPPM C:\windows\System32\drivers\amdppm.sys
23:00:54.0438 10120 AmdPPM - ok
23:00:54.0454 10120 [ 35A0EB5AECB0FA3C41A2FB514A562304 ] amdsata C:\windows\system32\drivers\amdsata.sys
23:00:54.0454 10120 amdsata - ok
23:00:54.0454 10120 [ 00452671904F5EE94B50BF0219C97164 ] amdsbs C:\windows\system32\drivers\amdsbs.sys
23:00:54.0454 10120 amdsbs - ok
23:00:54.0454 10120 [ EA3FFE53E92E59C87E3ECA9BEB20D9B7 ] amdxata C:\windows\system32\drivers\amdxata.sys
23:00:54.0469 10120 amdxata - ok
23:00:54.0501 10120 [ 823F34D1DEF120A657BB7529ABF4461F ] AppHostSvc C:\windows\system32\inetsrv\apphostsvc.dll
23:00:54.0501 10120 AppHostSvc - ok
23:00:54.0501 10120 [ 83B3682CE922FB0F415734B26D9D6233 ] AppID C:\windows\system32\drivers\appid.sys
23:00:54.0501 10120 AppID - ok
23:00:54.0532 10120 [ CE2BEAD7F31816FF0AC490D048C969F9 ] AppIDSvc C:\windows\System32\appidsvc.dll
23:00:54.0532 10120 AppIDSvc - ok
23:00:54.0548 10120 [ 4F750B7EFCB6520AE01E01D082D7D476 ] Appinfo C:\windows\System32\appinfo.dll
23:00:54.0548 10120 Appinfo - ok
23:00:54.0579 10120 [ E933401B392387F4BE34DE8BAF1722A7 ] arc C:\windows\system32\drivers\arc.sys
23:00:54.0579 10120 arc - ok
23:00:54.0579 10120 [ 07CA323EF2E8247A568AB0F3662AD644 ] arcsas C:\windows\system32\drivers\arcsas.sys
23:00:54.0579 10120 arcsas - ok
23:00:54.0673 10120 [ 9A262EDD17F8473B91B333D6B031A901 ] aspnet_state C:\windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
23:00:54.0688 10120 aspnet_state - ok
23:00:54.0704 10120 [ 1EC6777695564CA7EB3ADB36C78322E5 ] aswFsBlk C:\windows\system32\drivers\aswFsBlk.sys
23:00:54.0704 10120 aswFsBlk - ok
23:00:54.0719 10120 [ FAF7B0B0C44A2FBD6FBC54E3E0F38545 ] aswMonFlt C:\windows\system32\drivers\aswMonFlt.sys
23:00:54.0719 10120 aswMonFlt - ok
23:00:54.0735 10120 [ 679712B7A353EE665B9301592164A172 ] aswRdr C:\windows\system32\drivers\aswRdr2.sys
23:00:54.0735 10120 aswRdr - ok
23:00:54.0751 10120 [ C04F7B373881009D7994D9BF55D24AB4 ] aswRvrt C:\windows\system32\drivers\aswRvrt.sys
23:00:54.0751 10120 aswRvrt - ok
23:00:54.0766 10120 [ 3E07C93A2CB67840E4CD56C00959A402 ] aswSnx C:\windows\system32\drivers\aswSnx.sys
23:00:54.0766 10120 aswSnx - ok
23:00:54.0813 10120 [ 79ADA401A6E2054F110E7FBDFAC71942 ] aswSP C:\windows\system32\drivers\aswSP.sys
23:00:54.0813 10120 aswSP - ok
23:00:54.0829 10120 [ 59787B95DD9CA44CB139D96863438587 ] aswVmm C:\windows\system32\drivers\aswVmm.sys
23:00:54.0829 10120 aswVmm - ok
23:00:54.0845 10120 [ 74DBAEC35366C4EE7670428808715A6A ] AsyncMac C:\windows\system32\DRIVERS\asyncmac.sys
23:00:54.0845 10120 AsyncMac - ok
23:00:54.0891 10120 [ A721FF570C2387E383BDDEA9632863C9 ] atapi C:\windows\system32\drivers\atapi.sys
23:00:54.0891 10120 atapi - ok
23:00:54.0907 10120 [ 13A4B62FEE62843413724C45FD149D45 ] AtiHDAudioService C:\windows\system32\drivers\AtihdW86.sys
23:00:54.0907 10120 AtiHDAudioService - ok
23:00:54.0938 10120 [ BCD7A47EF587DC00DD61D12D9C2D1E44 ] AudioEndpointBuilder C:\windows\System32\AudioEndpointBuilder.dll
23:00:54.0938 10120 AudioEndpointBuilder - ok
23:00:54.0985 10120 [ 599B3F685A263A114FFAF3BE29C49C75 ] Audiosrv C:\windows\System32\Audiosrv.dll
23:00:55.0001 10120 Audiosrv - ok
23:00:55.0063 10120 [ 7A189530FD0CFD415DBE41123F8A6A59 ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
23:00:55.0063 10120 avast! Antivirus - ok
23:00:55.0095 10120 [ 89491EF71D5EA011127832C588002853 ] AxInstSV C:\windows\System32\AxInstSV.dll
23:00:55.0095 10120 AxInstSV - ok
23:00:55.0126 10120 [ 87AB5BB072A3F128541D5B815F82FFDD ] b06bdrv C:\windows\system32\drivers\bxvbda.sys
23:00:55.0126 10120 b06bdrv - ok
23:00:55.0141 10120 [ 81703BC5D68DEDBB086C2368FBE7B334 ] BasicDisplay C:\windows\System32\drivers\BasicDisplay.sys
23:00:55.0157 10120 BasicDisplay - ok
23:00:55.0157 10120 [ 5EC68164E14D25675C98BBB5F09E8606 ] BasicRender C:\windows\System32\drivers\BasicRender.sys
23:00:55.0157 10120 BasicRender - ok
23:00:55.0204 10120 [ 89143A7BA7850F5C7E61B43BB44B6418 ] BDESVC C:\windows\System32\bdesvc.dll
23:00:55.0220 10120 BDESVC - ok
23:00:55.0220 10120 [ 9E7AEA59776D904607985AFFE7E5E183 ] Beep C:\windows\system32\drivers\Beep.sys
23:00:55.0220 10120 Beep - ok
23:00:55.0282 10120 [ 53AA55632B94622F2DC3695E86EF9363 ] BFE C:\windows\System32\bfe.dll
23:00:55.0282 10120 BFE - ok
23:00:55.0313 10120 [ D598C44A7072D3108D8D8102EC5E07F7 ] BITS C:\windows\System32\qmgr.dll
23:00:55.0329 10120 BITS - ok
23:00:55.0391 10120 [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
23:00:55.0391 10120 Bonjour Service - ok
23:00:55.0407 10120 [ B17AC10B47C7FCB44D22A1F06415840E ] bowser C:\windows\system32\DRIVERS\bowser.sys
23:00:55.0407 10120 bowser - ok
23:00:55.0423 10120 [ 038FA1B55531E7020DB705B42FCCE373 ] BrokerInfrastructure C:\windows\System32\bisrv.dll
23:00:55.0423 10120 BrokerInfrastructure - ok
23:00:55.0438 10120 [ 310068BDA80B1D55C36580FD8A873FAF ] Browser C:\windows\System32\browser.dll
23:00:55.0438 10120 Browser - ok
23:00:55.0548 10120 [ 6ED5DB8C1DB8A0D8F4B411E0C2A65EC6 ] BstHdAndroidSvc C:\Program Files (x86)\BlueStacks\HD-Service.exe
23:00:55.0548 10120 BstHdAndroidSvc - ok
23:00:55.0610 10120 [ E57BC16C486AD810A7EF946646A02466 ] BstHdDrv C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys
23:00:55.0610 10120 BstHdDrv - ok
23:00:55.0626 10120 [ 8059EDFA9616E569E861E0F68DDF0C72 ] BstHdLogRotatorSvc C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
23:00:55.0626 10120 BstHdLogRotatorSvc - ok
23:00:55.0641 10120 [ 6695200F455E251F0BCC9CE4D0978D59 ] BthAvrcpTg C:\windows\System32\drivers\BthAvrcpTg.sys
23:00:55.0641 10120 BthAvrcpTg - ok
23:00:55.0657 10120 [ 616EB8748C988AEE98D93DA141C3D3B4 ] BthHFEnum C:\windows\System32\drivers\bthhfenum.sys
23:00:55.0657 10120 BthHFEnum - ok
23:00:55.0704 10120 [ DCB4EBD928A6FB368BE6CAE522412DE1 ] bthhfhid C:\windows\System32\drivers\BthHFHid.sys
23:00:55.0704 10120 bthhfhid - ok
23:00:55.0720 10120 [ 033916CE8784A848B9A3D686B7F66D97 ] BTHMODEM C:\windows\System32\drivers\bthmodem.sys
23:00:55.0720 10120 BTHMODEM - ok
23:00:55.0751 10120 [ A4387C3D271959313E2577DB7BE8BA7A ] bthserv C:\windows\system32\bthserv.dll
23:00:55.0751 10120 bthserv - ok
23:00:55.0829 10120 [ 9E530C6F0EEE34CCEAC8104838AB68C7 ] c2cautoupdatesvc C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
23:00:55.0829 10120 c2cautoupdatesvc - ok
23:00:55.0907 10120 [ 96B14B79C71CE4A7783184CC8B5DBCE8 ] c2cpnrsvc C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
23:00:55.0923 10120 c2cpnrsvc - ok
23:00:55.0923 10120 c2wts - ok
23:00:55.0938 10120 [ 990B1BABE6E81FB18E65A87EBEFB1772 ] cdfs C:\windows\system32\DRIVERS\cdfs.sys
23:00:55.0938 10120 cdfs - ok
23:00:55.0954 10120 [ 339BFF85D788268752DA8C9644B188EE ] cdrom C:\windows\System32\drivers\cdrom.sys
23:00:55.0954 10120 cdrom - ok
23:00:55.0970 10120 [ BAF8F0F55BC300E5F882E521F054E345 ] CertPropSvc C:\windows\System32\certprop.dll
23:00:55.0970 10120 CertPropSvc - ok
23:00:55.0985 10120 [ F64B7D1A37CC1D5F421D5359EEC81E2E ] circlass C:\windows\System32\drivers\circlass.sys
23:00:55.0985 10120 circlass - ok
23:00:56.0001 10120 [ 9905168708DB68849B879B5548F68AB3 ] CLFS C:\windows\system32\drivers\CLFS.sys
23:00:56.0001 10120 CLFS - ok
23:00:56.0032 10120 [ 075CCE75090786F124573A788C8656E6 ] CLVirtualDrive C:\windows\system32\DRIVERS\CLVirtualDrive.sys
23:00:56.0032 10120 CLVirtualDrive - ok
23:00:56.0048 10120 [ 2DC8538A2260647484A6C921CA837313 ] CmBatt C:\windows\System32\drivers\CmBatt.sys
23:00:56.0048 10120 CmBatt - ok
23:00:56.0110 10120 [ E708BFF0473EC6B271EA46B65B16CA56 ] CNG C:\windows\system32\Drivers\cng.sys
23:00:56.0110 10120 CNG - ok
23:00:56.0126 10120 [ 0E5B1E9E7122EDAAF1F6CE047965CA92 ] CompositeBus C:\windows\System32\drivers\CompositeBus.sys
23:00:56.0126 10120 CompositeBus - ok
23:00:56.0141 10120 COMSysApp - ok
23:00:56.0141 10120 [ D9CB0782AF819548072AA45B70F8B22D ] condrv C:\windows\system32\drivers\condrv.sys
23:00:56.0141 10120 condrv - ok
23:00:56.0204 10120 [ 5CE2742F063731EC10C1B2EE386A2C08 ] CryptSvc C:\windows\system32\cryptsvc.dll
23:00:56.0204 10120 CryptSvc - ok
23:00:56.0251 10120 [ FAEF4C245BE832DB41B15DAAC336AFB7 ] dam C:\windows\system32\drivers\dam.sys
23:00:56.0251 10120 dam - ok
23:00:56.0282 10120 [ 1EC6E533C954BDDF2A37E7851A7E58FD ] DcomLaunch C:\windows\system32\rpcss.dll
23:00:56.0298 10120 DcomLaunch - ok
23:00:56.0313 10120 [ C8650D1F61149AA546BDBC99172EBBC1 ] defragsvc C:\windows\System32\defragsvc.dll
23:00:56.0313 10120 defragsvc - ok
23:00:56.0329 10120 [ 5EAEF67AE2AF4D2DC664B649DB7B2E16 ] DeviceAssociationService C:\windows\system32\das.dll
23:00:56.0329 10120 DeviceAssociationService - ok
23:00:56.0360 10120 [ 799BE46D45D486704CE0F37CA5385262 ] DeviceInstall C:\windows\system32\umpnpmgr.dll
23:00:56.0360 10120 DeviceInstall - ok
23:00:56.0392 10120 [ 09D9EB9E7898F8E6561473A20CC808B9 ] Dfsc C:\windows\system32\Drivers\dfsc.sys
23:00:56.0392 10120 Dfsc - ok
23:00:56.0438 10120 [ 9E0E72222264745ADEB0E5AC680B0ED6 ] Dhcp C:\windows\system32\dhcpcore.dll
23:00:56.0438 10120 Dhcp - ok
23:00:56.0454 10120 [ 3C736FAE17BA6F91BA37594AAB139CD0 ] discache C:\windows\system32\drivers\discache.sys
23:00:56.0454 10120 discache - ok
23:00:56.0501 10120 [ AE3786294CC246A5403783E1B86A0168 ] disk C:\windows\system32\drivers\disk.sys
23:00:56.0501 10120 disk - ok
23:00:56.0517 10120 [ 82A7C72593793FE1EADA7A305BD1567A ] dmvsc C:\windows\System32\drivers\dmvsc.sys
23:00:56.0517 10120 dmvsc - ok
23:00:56.0563 10120 [ 066B9710B36AB550E01EEFCA52155968 ] Dnscache C:\windows\System32\dnsrslvr.dll
23:00:56.0563 10120 Dnscache - ok
23:00:56.0595 10120 [ 9949AD2ABA168A618D46C799D6CC898C ] dot3svc C:\windows\System32\dot3svc.dll
23:00:56.0595 10120 dot3svc - ok
23:00:56.0610 10120 [ 109FC3F80BF4F4DC5A071058074F13C1 ] DPS C:\windows\system32\dps.dll
23:00:56.0610 10120 DPS - ok
23:00:56.0642 10120 [ 9C7C183F937951AE17C5B8B3259CF3FF ] drmkaud C:\windows\system32\drivers\drmkaud.sys
23:00:56.0642 10120 drmkaud - ok
23:00:56.0673 10120 [ F87F4AAAF6664906248D11D5E579A53B ] DsmSvc C:\windows\System32\DeviceSetupManager.dll
23:00:56.0688 10120 DsmSvc - ok
23:00:56.0735 10120 [ 6A0E850DDCB136AA3D2FB7234382DF12 ] dtsoftbus01 C:\windows\System32\drivers\dtsoftbus01.sys
23:00:56.0735 10120 dtsoftbus01 - ok
23:00:56.0798 10120 [ E6AF4DF1817953D73C519B17CF849756 ] DXGKrnl C:\windows\System32\drivers\dxgkrnl.sys
23:00:56.0798 10120 DXGKrnl - ok
23:00:56.0829 10120 [ 651FBD69A9713D623D456A240F96179C ] e1iexpress C:\windows\system32\DRIVERS\e1i63x64.sys
23:00:56.0829 10120 e1iexpress - ok
23:00:56.0829 10120 EagleX64 - ok
23:00:56.0845 10120 [ 58BA473DD88F5FC1932282BA683AA03E ] Eaphost C:\windows\System32\eapsvc.dll
23:00:56.0860 10120 Eaphost - ok
23:00:56.0907 10120 [ 5AB97B3282D7D6114949D1EB5C8598E4 ] ebdrv C:\windows\system32\drivers\evbda.sys
23:00:56.0923 10120 ebdrv - ok
23:00:56.0970 10120 [ F702AB6181513303AB0FC8D59E52708B ] EFS C:\windows\System32\lsass.exe
23:00:56.0970 10120 EFS - ok
23:00:57.0001 10120 [ 66D60BD9A4C05616ABECA2A901475098 ] EhStorClass C:\windows\system32\drivers\EhStorClass.sys
23:00:57.0001 10120 EhStorClass - ok
23:00:57.0017 10120 [ A61D0F543024E458C0FE32352E1978E2 ] EhStorTcgDrv C:\windows\system32\drivers\EhStorTcgDrv.sys
23:00:57.0017 10120 EhStorTcgDrv - ok
23:00:57.0017 10120 [ D790D058D67582DB9C84C2D33695FE6B ] ErrDev C:\windows\System32\drivers\errdev.sys
23:00:57.0017 10120 ErrDev - ok
23:00:57.0032 10120 esgiguard - ok
23:00:57.0063 10120 [ F9E01C2D9F8BC049E04CF5DC24A5F638 ] EventSystem C:\windows\system32\es.dll
23:00:57.0079 10120 EventSystem - ok
23:00:57.0095 10120 [ 7A4D6FEB8C52B3FE855E4DCDF9107E03 ] exfat C:\windows\system32\drivers\exfat.sys
23:00:57.0095 10120 exfat - ok
23:00:57.0126 10120 FairplayKD - ok
23:00:57.0142 10120 [ 60996602A7111FD2D086E803F33E4282 ] fastfat C:\windows\system32\drivers\fastfat.sys
23:00:57.0142 10120 fastfat - ok
23:00:57.0173 10120 [ F0E7F8382ED5E138B0DFA4CB5058BCFE ] Fax C:\windows\system32\fxssvc.exe
23:00:57.0173 10120 Fax - ok
23:00:57.0173 10120 [ 73B2D11DF0B6E03A0CB0323218ACB3E4 ] fdc C:\windows\System32\drivers\fdc.sys
23:00:57.0173 10120 fdc - ok
23:00:57.0188 10120 [ 0828E3E7BD77C89149EAD3232BFD38DB ] fdPHost C:\windows\system32\fdPHost.dll
23:00:57.0188 10120 fdPHost - ok
23:00:57.0188 10120 [ 872506AAB591E8908DF4461475AF92DF ] FDResPub C:\windows\system32\fdrespub.dll
23:00:57.0188 10120 FDResPub - ok
23:00:57.0235 10120 [ 0588950D93A426F97C7AAADB1A9B0458 ] fhsvc C:\windows\system32\fhsvc.dll
23:00:57.0251 10120 fhsvc - ok
23:00:57.0267 10120 [ 88A9EBACD1058ABB237A6B4E96E7F397 ] FileInfo C:\windows\system32\drivers\fileinfo.sys
23:00:57.0267 10120 FileInfo - ok
23:00:57.0282 10120 [ 9E4EE3A0B00FF7D5F42A4AF9744CBA02 ] Filetrace C:\windows\system32\drivers\filetrace.sys
23:00:57.0282 10120 Filetrace - ok
23:00:57.0298 10120 [ B1D4C168FF7B8579E3745888658FFB1D ] flpydisk C:\windows\System32\drivers\flpydisk.sys
23:00:57.0298 10120 flpydisk - ok
23:00:57.0298 10120 [ B33EC133AE4E6C1881D2302D93D2467D ] FltMgr C:\windows\system32\drivers\fltmgr.sys
23:00:57.0298 10120 FltMgr - ok
23:00:57.0360 10120 [ 0BCDC0FF11B984162B0CF0FF6E9E0146 ] FontCache C:\windows\system32\FntCache.dll
23:00:57.0376 10120 FontCache - ok
23:00:57.0407 10120 [ 0B56259F5611787222A04A8F254E51D4 ] FontCache3.0.0.0 C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
23:00:57.0407 10120 FontCache3.0.0.0 - ok
23:00:57.0438 10120 [ A5F7873A39E4E9FAAAE59B7E9E36B705 ] FsDepends C:\windows\system32\drivers\FsDepends.sys
23:00:57.0438 10120 FsDepends - ok
23:00:57.0454 10120 [ A6DD7D491F587F4BC13FB972977DC8E8 ] Fs_Rec C:\windows\system32\drivers\Fs_Rec.sys
23:00:57.0454 10120 Fs_Rec - ok
23:00:57.0579 10120 [ 014195B03B378CFEAA029958CBC53695 ] fussvc C:\Program Files (x86)\Windows Kits\8.1\App Certification Kit\fussvc.exe
23:00:57.0579 10120 fussvc - ok
23:00:57.0626 10120 [ C1646A95EAC515F60CDB2A7A8A013C1E ] fvevol C:\windows\system32\DRIVERS\fvevol.sys
23:00:57.0642 10120 fvevol - ok
23:00:57.0657 10120 [ A969D92973DFA895E7776B4BFE36DBB2 ] FxPPM C:\windows\System32\drivers\fxppm.sys
23:00:57.0657 10120 FxPPM - ok
23:00:57.0673 10120 [ 52BC441E07A827EBAB70CDC7EAEDB28D ] gagp30kx C:\windows\system32\drivers\gagp30kx.sys
23:00:57.0673 10120 gagp30kx - ok
23:00:57.0688 10120 [ 721F8EEF5E9747F32670DEFF7FB92541 ] gencounter C:\windows\System32\drivers\vmgencounter.sys
23:00:57.0688 10120 gencounter - ok
23:00:57.0735 10120 [ FC2B8B06BDBD3B6457F5A3DA9AD2410E ] GPIOClx0101 C:\windows\system32\Drivers\msgpioclx.sys
23:00:57.0735 10120 GPIOClx0101 - ok
23:00:57.0798 10120 [ 5358678C6370F2ADC5291849F6503262 ] gpsvc C:\windows\System32\gpsvc.dll
23:00:57.0813 10120 gpsvc - ok
23:00:57.0892 10120 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
23:00:57.0892 10120 gupdate - ok
23:00:57.0892 10120 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
23:00:57.0892 10120 gupdatem - ok
23:00:57.0938 10120 [ 4DBF4C90A50C105A80EACD9B2FCCBC96 ] hamachi C:\windows\system32\DRIVERS\Hamdrv.sys
23:00:57.0954 10120 hamachi - ok
23:00:58.0032 10120 [ 55706A31E8E2E67763ECD10F19CC3449 ] Hamachi2Svc C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
23:00:58.0032 10120 Hamachi2Svc - ok
23:00:58.0063 10120 [ 630555943E5A3FE21010CE91EC7FC84F ] HdAudAddService C:\windows\system32\drivers\HdAudio.sys
23:00:58.0063 10120 HdAudAddService - ok
23:00:58.0079 10120 [ 7D87B5B6C7188D553E11B59DC7F0B111 ] HDAudBus C:\windows\System32\drivers\HDAudBus.sys
23:00:58.0079 10120 HDAudBus - ok
23:00:58.0095 10120 [ 3F76BBA53D65E85A7F53E7A71082082C ] HidBatt C:\windows\System32\drivers\HidBatt.sys
23:00:58.0095 10120 HidBatt - ok
23:00:58.0142 10120 [ 085F150D002B7F0153D3C06DDF33A143 ] HidBth C:\windows\System32\drivers\hidbth.sys
23:00:58.0142 10120 HidBth - ok
23:00:58.0157 10120 [ CC4A07E51D89575CAB6F4EB590D87CD4 ] hidi2c C:\windows\System32\drivers\hidi2c.sys
23:00:58.0157 10120 hidi2c - ok
23:00:58.0157 10120 [ DC96F7DACB777CDEAEF9958A50BFDA06 ] HidIr C:\windows\System32\drivers\hidir.sys
23:00:58.0157 10120 HidIr - ok
23:00:58.0173 10120 [ FAC37D7B3D6354A5A5E19A45B50B4008 ] hidserv C:\windows\system32\hidserv.dll
23:00:58.0173 10120 hidserv - ok
23:00:58.0220 10120 [ 012C354B4AB48E9A7A657DF39E3A2073 ] HidUsb C:\windows\System32\drivers\hidusb.sys
23:00:58.0220 10120 HidUsb - ok
23:00:58.0235 10120 [ 43F884B61A24377567CD0FEB35236334 ] hkmsvc C:\windows\system32\kmsvc.dll
23:00:58.0251 10120 hkmsvc - ok
23:00:58.0298 10120 [ 33DFC14DFDCCFA7AA10E392F6A8EC1CF ] HomeGroupListener C:\windows\system32\ListSvc.dll
23:00:58.0298 10120 HomeGroupListener - ok
23:00:58.0329 10120 [ E0D9F6FE18FA7F53ADD29AF719CE2B7E ] HomeGroupProvider C:\windows\system32\provsvc.dll
23:00:58.0329 10120 HomeGroupProvider - ok
23:00:58.0376 10120 [ BB1FC298BE53AAB1E110F6E786BD8AC5 ] HP Support Assistant Service C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
23:00:58.0376 10120 HP Support Assistant Service - ok
23:00:58.0407 10120 [ E2550FBBBA31E2D4F9757E0A533689F0 ] HPConnectedRemote c:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPConnectedRemoteService.exe
23:00:58.0407 10120 HPConnectedRemote - ok
23:00:58.0454 10120 [ 9B7EDD3FE7C211C36E921D34D18A3A0A ] hpqwmiex C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
23:00:58.0454 10120 hpqwmiex - ok
23:00:58.0485 10120 [ 64DB7A8D97CA53DCCF93D0A1E08342CF ] HpSAMD C:\windows\system32\drivers\HpSAMD.sys
23:00:58.0485 10120 HpSAMD - ok
23:00:58.0548 10120 [ F4A91D985EB9D1D2717D538F3424603C ] HTTP C:\windows\system32\drivers\HTTP.sys
23:00:58.0548 10120 HTTP - ok
23:00:58.0563 10120 [ 2A98301068801700906C06649860FE94 ] hwpolicy C:\windows\system32\drivers\hwpolicy.sys
23:00:58.0563 10120 hwpolicy - ok
23:00:58.0579 10120 [ DC76901D82097C9E297F20C287CB9A27 ] hyperkbd C:\windows\System32\drivers\hyperkbd.sys
23:00:58.0579 10120 hyperkbd - ok
23:00:58.0579 10120 [ 716413AB3CA12DE0A7222D28C1C9352C ] HyperVideo C:\windows\system32\DRIVERS\HyperVideo.sys
23:00:58.0579 10120 HyperVideo - ok
23:00:58.0595 10120 [ C9E9CBF73AFFBFE3E801EFB516787BA3 ] i8042prt C:\windows\System32\drivers\i8042prt.sys
23:00:58.0595 10120 i8042prt - ok
23:00:58.0610 10120 [ 5E394EBD26FD68AA9300332C46BEDD62 ] iaStorV C:\windows\system32\drivers\iaStorV.sys
23:00:58.0610 10120 iaStorV - ok
23:00:58.0735 10120 [ 83915E05E168AB63B48302F7DC5D8E00 ] igfx C:\windows\system32\DRIVERS\igdkmd64.sys
23:00:58.0782 10120 igfx - ok
23:00:58.0798 10120 [ 24847A06B84339FEEDE5CABF3D27D320 ] iirsp C:\windows\system32\drivers\iirsp.sys
23:00:58.0798 10120 iirsp - ok
23:00:58.0860 10120 [ E455C83E029121270BED73CDAC381F37 ] IKEEXT C:\windows\System32\ikeext.dll
23:00:58.0876 10120 IKEEXT - ok
23:00:58.0907 10120 [ C99F8E90DE4B8F0C7FE15BB1CBCD29DC ] Intel(R) Capability Licensing Service Interface c:\Program Files\Intel\iCLS Client\HeciServer.exe
23:00:58.0923 10120 Intel(R) Capability Licensing Service Interface - ok
23:00:58.0939 10120 [ 30E9FAC23E2537D82F2836CB81AEE186 ] Intel(R) ME Service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
23:00:58.0939 10120 Intel(R) ME Service - ok
23:00:58.0954 10120 [ 4F37726CF764CA18A8A84F85EF3A7F24 ] intelide C:\windows\system32\drivers\intelide.sys
23:00:58.0954 10120 intelide - ok
23:00:58.0985 10120 [ E15CDF68DD73423F15D4AC404793AF0D ] intelppm C:\windows\System32\drivers\intelppm.sys
23:00:58.0985 10120 intelppm - ok
23:00:59.0001 10120 [ 8FCA66234A0933D796BB780B7953BAB9 ] IpFilterDriver C:\windows\system32\DRIVERS\ipfltdrv.sys
23:00:59.0001 10120 IpFilterDriver - ok
23:00:59.0064 10120 [ C217B8D2E58C57A319B16125C3D4B69C ] iphlpsvc C:\windows\System32\iphlpsvc.dll
23:00:59.0064 10120 iphlpsvc - ok
23:00:59.0079 10120 [ 6E98A046A12AA113F8898AA5D612BD6E ] IPMIDRV C:\windows\System32\drivers\IPMIDrv.sys
23:00:59.0079 10120 IPMIDRV - ok
23:00:59.0079 10120 [ 3969B9C218DD3FAA9F4ED2FFC3651C02 ] IPNAT C:\windows\system32\drivers\ipnat.sys
23:00:59.0079 10120 IPNAT - ok
23:00:59.0157 10120 [ 30228DC3268ADAA214B03A3948CA85BC ] IpOverUsbSvc C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\Bin\IpOverUsbSvc.exe
23:00:59.0157 10120 IpOverUsbSvc - ok
23:00:59.0173 10120 [ 25CD7C4BB2863FFC2B0B311F0AEBF77C ] IRENUM C:\windows\system32\drivers\irenum.sys
23:00:59.0173 10120 IRENUM - ok
23:00:59.0204 10120 [ D940C5BB9DC92E588533C19ABCC3D2C2 ] isapnp C:\windows\system32\drivers\isapnp.sys
23:00:59.0204 10120 isapnp - ok
23:00:59.0235 10120 [ 69C8BF0BC2B0EA10F130F4D3104DC2EF ] iScsiPrt C:\windows\System32\drivers\msiscsi.sys
23:00:59.0235 10120 iScsiPrt - ok
23:00:59.0251 10120 [ 3C4002D339491AF73D663FFC7F6E5ECB ] jhi_service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
23:00:59.0251 10120 jhi_service - ok
23:00:59.0314 10120 [ 8FBD94B69D6423E20ABCD59D86368B21 ] kbdclass C:\windows\System32\drivers\kbdclass.sys
23:00:59.0314 10120 kbdclass - ok
23:00:59.0314 10120 [ E88C932ABDF8185A62C8F2FC7B051FB6 ] kbdhid C:\windows\System32\drivers\kbdhid.sys
23:00:59.0314 10120 kbdhid - ok
23:00:59.0329 10120 [ FB6C185092E18011EF49989425C2AA87 ] kdnic C:\windows\system32\DRIVERS\kdnic.sys
23:00:59.0329 10120 kdnic - ok
23:00:59.0345 10120 [ F702AB6181513303AB0FC8D59E52708B ] KeyIso C:\windows\system32\lsass.exe
23:00:59.0345 10120 KeyIso - ok
23:00:59.0360 10120 [ DFA480F6DED551464F3A5B959F437800 ] KSecDD C:\windows\system32\Drivers\ksecdd.sys
23:00:59.0360 10120 KSecDD - ok
23:00:59.0407 10120 [ 127FB0AAD232BAAD2C9BBACD374F4FC5 ] KSecPkg C:\windows\system32\Drivers\ksecpkg.sys
23:00:59.0407 10120 KSecPkg - ok
23:00:59.0439 10120 [ 81492FEEBF2F26455B00EE8DBAE8A1B0 ] ksthunk C:\windows\system32\drivers\ksthunk.sys
23:00:59.0439 10120 ksthunk - ok
23:00:59.0470 10120 [ 5825DBACEDC3812B5CF8D40B997BF210 ] KtmRm C:\windows\system32\msdtckrm.dll
23:00:59.0470 10120 KtmRm - ok
23:00:59.0485 10120 [ 256EE31588257E8A555DBFAA13F1908E ] LanmanServer C:\windows\system32\srvsvc.dll
23:00:59.0485 10120 LanmanServer - ok
23:00:59.0517 10120 [ 16650912BE5A94B40E0B3B4C39652B56 ] LanmanWorkstation C:\windows\System32\wkssvc.dll
23:00:59.0517 10120 LanmanWorkstation - ok
23:00:59.0532 10120 [ CEEFD29FC551F289810B0B9381B321DC ] lltdio C:\windows\system32\DRIVERS\lltdio.sys
23:00:59.0532 10120 lltdio - ok
23:00:59.0548 10120 [ BCF53485E0A94722CDE3C4A93CD8EB8C ] lltdsvc C:\windows\System32\lltdsvc.dll
23:00:59.0548 10120 lltdsvc - ok
23:00:59.0564 10120 [ 5A2F7F1CBC2E631A497DAD16164E06D2 ] lmhosts C:\windows\System32\lmhsvc.dll
23:00:59.0564 10120 lmhosts - ok
23:00:59.0610 10120 [ 206D1495952A86E30CC997EA10A68A6C ] LMIGuardianSvc C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
23:00:59.0610 10120 LMIGuardianSvc - ok
23:00:59.0642 10120 [ 4269D44BB47A6DA5D80B11F4C8536458 ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
23:00:59.0642 10120 LMS - ok
23:00:59.0657 10120 [ 022CDD12161B063D7852B1075BF3FFF2 ] LSI_SAS C:\windows\system32\drivers\lsi_sas.sys
23:00:59.0657 10120 LSI_SAS - ok
23:00:59.0657 10120 [ 07AD59D669B996F29F91817F0ECFA34F ] LSI_SAS2 C:\windows\system32\drivers\lsi_sas2.sys
23:00:59.0673 10120 LSI_SAS2 - ok
23:00:59.0673 10120 [ 216FB796AA4E252ACCE93B1BCB80B5EC ] LSI_SCSI C:\windows\system32\drivers\lsi_scsi.sys
23:00:59.0673 10120 LSI_SCSI - ok
23:00:59.0673 10120 [ 5E80530AF37102488EE980B4A92AF99F ] LSI_SSS C:\windows\system32\drivers\lsi_sss.sys
23:00:59.0673 10120 LSI_SSS - ok
23:00:59.0720 10120 [ A57BA284F5996FFD32DCDBC41A4657DB ] LSM C:\windows\System32\lsm.dll
23:00:59.0735 10120 LSM - ok
23:00:59.0735 10120 [ 2BDC5D711FA61307CE6190D47C956368 ] luafv C:\windows\system32\drivers\luafv.sys
23:00:59.0735 10120 luafv - ok
23:00:59.0782 10120 [ 024DA28053D57E9E32BEE52600576BBB ] MarvinBus C:\windows\System32\drivers\MarvinBus64.sys
23:00:59.0798 10120 MarvinBus - ok
23:00:59.0829 10120 [ 0BB97D43299910CBFBA59C461B99B910 ] MBAMProtector C:\windows\system32\drivers\mbam.sys
23:00:59.0829 10120 MBAMProtector - ok
23:00:59.0907 10120 [ 65085456FD9A74D7F1A999520C299ECB ] MBAMScheduler C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
23:00:59.0907 10120 MBAMScheduler - ok
23:00:59.0923 10120 [ E0D7732F2D2E24B2DB3F67B6750295B8 ] MBAMService C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
23:00:59.0923 10120 MBAMService - ok
23:01:00.0126 10120 [ 43E7E1D311AC37995E9AA7248A19F67B ] McMyAdmin C:\Users\Irena\Desktop\Kluci\Patosik\MCMyServerAdmin\MCMA_Service.exe
23:01:00.0126 10120 McMyAdmin - ok
23:01:00.0157 10120 [ 9B0D829C3BE4E7472DB9DD2B79908E3C ] megasas C:\windows\system32\drivers\megasas.sys
23:01:00.0157 10120 megasas - ok
23:01:00.0157 10120 [ ECC3F54C7AFC318271C4F0B4606D8DB0 ] MegaSR C:\windows\system32\drivers\MegaSR.sys
23:01:00.0157 10120 MegaSR - ok
23:01:00.0189 10120 [ 772A1DEEDFDBC244183B5C805D1B7D85 ] MEIx64 C:\windows\System32\drivers\HECIx64.sys
23:01:00.0189 10120 MEIx64 - ok
23:01:00.0267 10120 Microsoft SharePoint Workspace Audit Service - ok
23:01:00.0298 10120 [ EEE908BE7143FCA48CF0CB87214E2AB8 ] MMCSS C:\windows\system32\mmcss.dll
23:01:00.0298 10120 MMCSS - ok
23:01:00.0314 10120 [ 780098AD5DA8A4822E2563984C85EF7B ] Modem C:\windows\system32\drivers\modem.sys
23:01:00.0314 10120 Modem - ok
23:01:00.0360 10120 [ EA8EAD3F5B762F889CC7F3966625B48B ] monitor C:\windows\System32\drivers\monitor.sys
23:01:00.0360 10120 monitor - ok
23:01:00.0376 10120 [ 618446B98C79776654340CE27C73485E ] mouclass C:\windows\System32\drivers\mouclass.sys
23:01:00.0376 10120 mouclass - ok
23:01:00.0376 10120 [ C0ADEBED913295803B579ED288936CBB ] mouhid C:\windows\System32\drivers\mouhid.sys
23:01:00.0376 10120 mouhid - ok
23:01:00.0407 10120 [ 89D263DBF08119CE16273991C120D6DD ] mountmgr C:\windows\system32\drivers\mountmgr.sys
23:01:00.0407 10120 mountmgr - ok
23:01:00.0439 10120 [ 338037EFA0E8E8699B2667D57B751574 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
23:01:00.0439 10120 MozillaMaintenance - ok
23:01:00.0517 10120 [ 4CCBBD4944777CA100B9A6C2F149A46F ] mpsdrv C:\windows\system32\drivers\mpsdrv.sys
23:01:00.0517 10120 mpsdrv - ok
23:01:00.0532 10120 [ 9DE3341BD4E14BC5FADFCAD3019F2D0D ] MpsSvc C:\windows\system32\mpssvc.dll
23:01:00.0548 10120 MpsSvc - ok
23:01:00.0564 10120 [ 3D70147F55F1EC84EB9139ED7FFE48BC ] MRxDAV C:\windows\system32\drivers\mrxdav.sys
23:01:00.0564 10120 MRxDAV - ok
23:01:00.0610 10120 [ 93179D48066918323628CB016D8C94DC ] mrxsmb C:\windows\system32\DRIVERS\mrxsmb.sys
23:01:00.0610 10120 mrxsmb - ok
23:01:00.0626 10120 [ 06D5F2FA3C61E8EA91648EA8E9F99FD3 ] mrxsmb10 C:\windows\system32\DRIVERS\mrxsmb10.sys
23:01:00.0626 10120 mrxsmb10 - ok
23:01:00.0642 10120 [ 5C7DD2E5759FFCCD2C7341C1B90F2B26 ] mrxsmb20 C:\windows\system32\DRIVERS\mrxsmb20.sys
23:01:00.0642 10120 mrxsmb20 - ok
23:01:00.0657 10120 [ 98487487D6B3797CA927E9D7B030AE13 ] MsBridge C:\windows\system32\DRIVERS\bridge.sys
23:01:00.0657 10120 MsBridge - ok
23:01:00.0689 10120 [ 4A07458EB4F17573BD39F22029A991C1 ] MSDTC C:\windows\System32\msdtc.exe
23:01:00.0689 10120 MSDTC - ok
23:01:00.0704 10120 [ 3886F1F2A4D2900ABAA7E4486BEEE6A2 ] Msfs C:\windows\system32\drivers\Msfs.sys
23:01:00.0704 10120 Msfs - ok
23:01:00.0751 10120 [ C32A7A39B960A42BA9D4FBE47213CA03 ] msgpiowin32 C:\windows\System32\drivers\msgpiowin32.sys
23:01:00.0751 10120 msgpiowin32 - ok
23:01:00.0767 10120 [ D3857A767B91A061B408CCAB02DA4F40 ] mshidkmdf C:\windows\System32\drivers\mshidkmdf.sys
23:01:00.0767 10120 mshidkmdf - ok
23:01:00.0782 10120 [ 839B48910FB1E887635C48F3EC11A05E ] mshidumdf C:\windows\System32\drivers\mshidumdf.sys
23:01:00.0782 10120 mshidumdf - ok
23:01:00.0782 10120 [ 55C0DB741E3AB7463242B185B1C2997C ] msisadrv C:\windows\system32\drivers\msisadrv.sys
23:01:00.0782 10120 msisadrv - ok
23:01:00.0798 10120 [ 216C6B035A4BA5560E1255BD8E5BB89F ] MSiSCSI C:\windows\system32\iscsiexe.dll
23:01:00.0814 10120 MSiSCSI - ok
23:01:00.0814 10120 msiserver - ok
23:01:00.0829 10120 [ 509809566E49F4411055864EA8D437CD ] MSKSSRV C:\windows\system32\drivers\MSKSSRV.sys
23:01:00.0829 10120 MSKSSRV - ok
23:01:00.0829 10120 [ 63145201D6458E4958E572E7D6FC2604 ] MsLldp C:\windows\system32\DRIVERS\mslldp.sys
23:01:00.0829 10120 MsLldp - ok
23:01:00.0845 10120 [ 99D526E803DB6D7FF290FD98B6204641 ] MSPCLOCK C:\windows\system32\drivers\MSPCLOCK.sys
23:01:00.0845 10120 MSPCLOCK - ok
23:01:00.0845 10120 [ 06FA77C3E2A491ADCD704C5E73006269 ] MSPQM C:\windows\system32\drivers\MSPQM.sys
23:01:00.0845 10120 MSPQM - ok
23:01:00.0876 10120 [ E134EC4DE11CF78CB01432D180710D84 ] MsRPC C:\windows\system32\drivers\MsRPC.sys
23:01:00.0876 10120 MsRPC - ok
23:01:00.0876 10120 [ B5AECF12F09DEE97C9FCAA5BA016CE1E ] mssmbios C:\windows\System32\drivers\mssmbios.sys
23:01:00.0876 10120 mssmbios - ok
23:01:00.0892 10120 [ 72D66A05E0F99F2528F6C6204FD22AA1 ] MSTEE C:\windows\system32\drivers\MSTEE.sys
23:01:00.0892 10120 MSTEE - ok
23:01:00.0892 10120 [ 8AAAE399FC255FA105D4158CBA289001 ] MTConfig C:\windows\System32\drivers\MTConfig.sys
23:01:00.0892 10120 MTConfig - ok
23:01:00.0907 10120 [ 3BCB702F3E6CC622DCAFCAA45D7CDE0A ] Mup C:\windows\system32\Drivers\mup.sys
23:01:00.0907 10120 Mup - ok
23:01:00.0907 10120 [ 3A1E095277BBD406CEA8EA6B76950664 ] mvumis C:\windows\system32\drivers\mvumis.sys
23:01:00.0907 10120 mvumis - ok
23:01:00.0923 10120 [ 4B18840511D720BA118D3017E8165875 ] napagent C:\windows\system32\qagentRT.dll
23:01:00.0939 10120 napagent - ok
23:01:00.0954 10120 [ 43D7388A90A4C6EA346A4D6FF0377479 ] NativeWifiP C:\windows\system32\DRIVERS\nwifi.sys
23:01:00.0954 10120 NativeWifiP - ok
23:01:00.0985 10120 [ 6A0C3996DA7DAE6D6939676D786EEEC4 ] NcaSvc C:\windows\System32\ncasvc.dll
23:01:00.0985 10120 NcaSvc - ok
23:01:01.0001 10120 [ C982FE4CC91DECE2259F494FCEB4030F ] NcdAutoSetup C:\windows\System32\NcdAutoSetup.dll
23:01:01.0001 10120 NcdAutoSetup - ok
23:01:01.0048 10120 [ A10E176F3B2BF83EDE7B5C4658C93B66 ] NDIS C:\windows\system32\drivers\ndis.sys
23:01:01.0048 10120 NDIS - ok
23:01:01.0064 10120 [ 39C8A1D9D46F5E83A016BCAB72455284 ] NdisCap C:\windows\system32\DRIVERS\ndiscap.sys
23:01:01.0079 10120 NdisCap - ok
23:01:01.0126 10120 [ 762941932B7E4C588E48A577BA9D6440 ] NdisImPlatform C:\windows\system32\DRIVERS\NdisImPlatform.sys
23:01:01.0142 10120 NdisImPlatform - ok
23:01:01.0142 10120 [ 7A6F8A6D0E01432EBA294EF29CDD0FA7 ] NdisTapi C:\windows\system32\DRIVERS\ndistapi.sys
23:01:01.0157 10120 NdisTapi - ok
23:01:01.0157 10120 [ 79AB68BB3FFF974AD4F41FA559F4EC67 ] Ndisuio C:\windows\system32\DRIVERS\ndisuio.sys
23:01:01.0173 10120 Ndisuio - ok
23:01:01.0173 10120 [ 62C7DBF4F9301F76CF87D4B9D8F57BF8 ] NdisWan C:\windows\system32\DRIVERS\ndiswan.sys
23:01:01.0173 10120 NdisWan - ok
23:01:01.0189 10120 [ 62C7DBF4F9301F76CF87D4B9D8F57BF8 ] NDISWANLEGACY C:\windows\system32\DRIVERS\ndiswan.sys
23:01:01.0189 10120 NDISWANLEGACY - ok
23:01:01.0204 10120 [ 3730942D7DB2F8BB5F84542B7FF6F650 ] NDProxy C:\windows\system32\drivers\NDProxy.sys
23:01:01.0204 10120 NDProxy - ok
23:01:01.0204 10120 [ D3F60A4345FCA9C1BE68AD7D0D6DE770 ] Ndu C:\windows\system32\drivers\Ndu.sys
23:01:01.0204 10120 Ndu - ok
23:01:01.0204 10120 [ 7C203A76394F9AE68F69EEE5F9612C4A ] NetBIOS C:\windows\system32\DRIVERS\netbios.sys
23:01:01.0204 10120 NetBIOS - ok
23:01:01.0220 10120 [ 7CEC25C682D319D484630B3952C31A11 ] NetBT C:\windows\system32\DRIVERS\netbt.sys
23:01:01.0220 10120 NetBT - ok
23:01:01.0220 10120 [ F702AB6181513303AB0FC8D59E52708B ] Netlogon C:\windows\system32\lsass.exe
23:01:01.0220 10120 Netlogon - ok
23:01:01.0236 10120 [ 89519D29CBEC2121CA65CC29C4D345E0 ] Netman C:\windows\System32\netman.dll
23:01:01.0251 10120 Netman - ok
23:01:01.0298 10120 [ 79FA9393C67EBBF92A56923592CF7A7C ] netprofm C:\windows\System32\netprofmsvc.dll
23:01:01.0314 10120 netprofm - ok
23:01:01.0376 10120 [ 5243CFC2E7161C91C2B355240035B9E4 ] NetTcpPortSharing C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
23:01:01.0407 10120 NetTcpPortSharing - ok
23:01:01.0423 10120 [ 12DD2800E4EEA37DC9AE256AD62423B4 ] nfrd960 C:\windows\system32\drivers\nfrd960.sys
23:01:01.0423 10120 nfrd960 - ok
23:01:01.0470 10120 [ 80ABCD4C2DE9FD832477303AE0CA3BE5 ] NlaSvc C:\windows\System32\nlasvc.dll
23:01:01.0486 10120 NlaSvc - ok
23:01:01.0517 10120 [ 351533ACC2A069B94E80BBFC177E8FDF ] npf C:\windows\system32\drivers\npf.sys
23:01:01.0517 10120 npf - ok
23:01:01.0532 10120 [ 17E19A742FB30C002F8B43575451DBE1 ] Npfs C:\windows\system32\drivers\Npfs.sys
23:01:01.0532 10120 Npfs - ok
23:01:01.0532 10120 [ 8ED299C30792544264E558BEA79F0947 ] npsvctrig C:\windows\System32\drivers\npsvctrig.sys
23:01:01.0548 10120 npsvctrig - ok
23:01:01.0564 10120 [ 832B5FDF0B5577713FD7F2465FCD0ACE ] nsi C:\windows\system32\nsisvc.dll
23:01:01.0564 10120 nsi - ok
23:01:01.0579 10120 [ 689B3B1E95C70ABF7AFF29F9406EF1E0 ] nsiproxy C:\windows\system32\drivers\nsiproxy.sys
23:01:01.0579 10120 nsiproxy - ok
23:01:01.0642 10120 [ 76929F4A69E425911A63B407E26C2589 ] Ntfs C:\windows\system32\drivers\Ntfs.sys
23:01:01.0657 10120 Ntfs - ok
23:01:01.0657 10120 [ 4163ADE07DB51843AE31F65B94F5398D ] Null C:\windows\system32\drivers\Null.sys
23:01:01.0673 10120 Null - ok
23:01:01.0673 10120 [ D6D34118263412D3AAA8348A9572B7F2 ] nvraid C:\windows\system32\drivers\nvraid.sys
23:01:01.0673 10120 nvraid - ok
23:01:01.0690 10120 [ 27AFC428D1D32ABD04A86763A4EDDEA9 ] nvstor C:\windows\system32\drivers\nvstor.sys
23:01:01.0690 10120 nvstor - ok
23:01:01.0690 10120 [ 051CFB5107BAAE510419BDC41F8C4036 ] nv_agp C:\windows\system32\drivers\nv_agp.sys
23:01:01.0690 10120 nv_agp - ok
23:01:01.0737 10120 [ 9D10F99A6712E28F8ACD5641E3A7EA6B ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
23:01:01.0737 10120 ose - ok
23:01:01.0877 10120 [ 61BFFB5F57AD12F83AB64B7181829B34 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
23:01:01.0893 10120 osppsvc - ok
23:01:01.0924 10120 [ AB76700D764A342D7475FB8F47CAB18C ] p2pimsvc C:\windows\system32\pnrpsvc.dll
23:01:01.0940 10120 p2pimsvc - ok
23:01:01.0955 10120 [ 4319FD931DCD796435ECB5DB4A04FBA5 ] p2psvc C:\windows\system32\p2psvc.dll
23:01:01.0955 10120 p2psvc - ok
23:01:01.0971 10120 [ 4563DAF8C6A740AD7F501E219BD10766 ] Parport C:\windows\System32\drivers\parport.sys
23:01:01.0987 10120 Parport - ok
23:01:01.0987 10120 [ D6ACCF9F2EEEEA711C14EFD976E573F3 ] partmgr C:\windows\system32\drivers\partmgr.sys
23:01:01.0987 10120 partmgr - ok
23:01:02.0033 10120 [ 4811D9EC53649105A5A8BEA661B0F936 ] PcaSvc C:\windows\System32\pcasvc.dll
23:01:02.0049 10120 PcaSvc - ok
23:01:02.0065 10120 [ 4A003E8F718C1E6A2050CA98CD53E3E2 ] pci C:\windows\system32\drivers\pci.sys
23:01:02.0065 10120 pci - ok
23:01:02.0112 10120 [ F9908D274D458220F91E89B54D78D837 ] pciide C:\windows\system32\drivers\pciide.sys
23:01:02.0112 10120 pciide - ok
23:01:02.0143 10120 [ 84D19CB6102627932DCB5DFDF89FE269 ] pcmcia C:\windows\system32\drivers\pcmcia.sys
23:01:02.0143 10120 pcmcia - ok
23:01:02.0143 10120 [ CEBBAD5391C2644560C55628A40BFD27 ] pcw C:\windows\system32\drivers\pcw.sys
23:01:02.0143 10120 pcw - ok
23:01:02.0158 10120 [ 0698DEDEAD6A00AD0D468C687D830FBF ] pdc C:\windows\system32\drivers\pdc.sys
23:01:02.0158 10120 pdc - ok
23:01:02.0190 10120 [ 61FE70659CD43E07F94DA4DC31DEC493 ] PEAUTH C:\windows\system32\drivers\peauth.sys
23:01:02.0190 10120 PEAUTH - ok
23:01:02.0268 10120 [ EB88FA19F0EA05DD04BE9C5FFEEFFE1A ] PerfHost C:\windows\SysWow64\perfhost.exe
23:01:02.0268 10120 PerfHost - ok
23:01:02.0299 10120 [ 6E84BFF58F7643499277F29DFA2F8C8D ] pla C:\windows\system32\pla.dll
23:01:02.0315 10120 pla - ok
23:01:02.0346 10120 [ 799BE46D45D486704CE0F37CA5385262 ] PlugPlay C:\windows\system32\umpnpmgr.dll
23:01:02.0346 10120 PlugPlay - ok
23:01:02.0362 10120 [ 8E2414E818C26C4A9C70CB2B8567F04F ] PNRPAutoReg C:\windows\system32\pnrpauto.dll
23:01:02.0362 10120 PNRPAutoReg - ok
23:01:02.0377 10120 [ AB76700D764A342D7475FB8F47CAB18C ] PNRPsvc C:\windows\system32\pnrpsvc.dll
23:01:02.0377 10120 PNRPsvc - ok
23:01:02.0409 10120 [ 0108C8E5176D590F242701EF5A62CC26 ] PolicyAgent C:\windows\System32\ipsecsvc.dll
23:01:02.0409 10120 PolicyAgent - ok
23:01:02.0455 10120 [ F1E067F56373F11EA4B785CAE823740A ] Power C:\windows\system32\umpo.dll
23:01:02.0455 10120 Power - ok
23:01:02.0487 10120 [ 362D47E5B4D67270DE4B8606036F4ADD ] PptpMiniport C:\windows\system32\DRIVERS\raspptp.sys
23:01:02.0487 10120 PptpMiniport - ok
23:01:02.0565 10120 [ 9D59831262CAD44E709D695FC9D5E7AB ] PrintNotify C:\Windows\system32\spool\DRIVERS\x64\3\PrintConfig.dll
23:01:02.0580 10120 PrintNotify - ok
23:01:02.0612 10120 [ DD979EB6A7212F60E4AFBE96EDC7AE6D ] Processor C:\windows\System32\drivers\processr.sys
23:01:02.0612 10120 Processor - ok
23:01:02.0627 10120 [ 429E8502AD2227CF88F8840FC5BD590D ] ProfSvc C:\windows\system32\profsvc.dll
23:01:02.0627 10120 ProfSvc - ok
23:01:02.0659 10120 [ EB8034147D4820CD31BFCB11A2A652DF ] Psched C:\windows\system32\DRIVERS\pacer.sys
23:01:02.0659 10120 Psched - ok
23:01:02.0674 10120 [ 0AFBF333B6F87A2F598EAB379AF100B8 ] QWAVE C:\windows\system32\qwave.dll
23:01:02.0674 10120 QWAVE - ok
23:01:02.0690 10120 [ 13D47BB0CCA2FC51BD15F8E85C6A078E ] QWAVEdrv C:\windows\system32\drivers\qwavedrv.sys

Re: HiJackThis LOG

Napsal: 22 úno 2014 23:36
od Mejssi
23:01:02.0690 10120 QWAVEdrv - ok
23:01:02.0705 10120 [ 873C60F8178100557740A832FCE10B5F ] RasAcd C:\windows\system32\DRIVERS\rasacd.sys
23:01:02.0705 10120 RasAcd - ok
23:01:02.0721 10120 [ 69B93F623B130976243ECA3D84CC99CA ] RasAgileVpn C:\windows\system32\DRIVERS\AgileVpn.sys
23:01:02.0721 10120 RasAgileVpn - ok
23:01:02.0737 10120 [ 005F6E54C4A2DA4EBF68FB0392CE8BB0 ] RasAuto C:\windows\System32\rasauto.dll
23:01:02.0752 10120 RasAuto - ok
23:01:02.0768 10120 [ A14D625C5AEE5FFE0F47D1A1D419FAAE ] Rasl2tp C:\windows\system32\DRIVERS\rasl2tp.sys
23:01:02.0768 10120 Rasl2tp - ok
23:01:02.0784 10120 [ C923C785A2DE0B396AD6D13ACAFF2DE9 ] RasMan C:\windows\System32\rasmans.dll
23:01:02.0784 10120 RasMan - ok
23:01:02.0799 10120 [ 00695B9C2DB6111064499C529E90C042 ] RasPppoe C:\windows\system32\DRIVERS\raspppoe.sys
23:01:02.0799 10120 RasPppoe - ok
23:01:02.0799 10120 [ A7F24D8CD1956B0A1FDCB86CC5114DE4 ] RasSstp C:\windows\system32\DRIVERS\rassstp.sys
23:01:02.0799 10120 RasSstp - ok
23:01:02.0862 10120 [ CA03D642ACE58E1BA54E4B383F91CD69 ] rdbss C:\windows\system32\DRIVERS\rdbss.sys
23:01:02.0862 10120 rdbss - ok
23:01:02.0862 10120 [ CA7DF5EC95D8DE0DD24BE7FF97369F68 ] rdpbus C:\windows\System32\drivers\rdpbus.sys
23:01:02.0877 10120 rdpbus - ok
23:01:02.0877 10120 [ B2A3AD74FF2E2FFA73AF2567108231B3 ] RDPDR C:\windows\system32\drivers\rdpdr.sys
23:01:02.0877 10120 RDPDR - ok
23:01:02.0924 10120 [ 57F4787E4602A3FCA719C0A33137C6DA ] RdpVideoMiniport C:\windows\system32\drivers\rdpvideominiport.sys
23:01:02.0924 10120 RdpVideoMiniport - ok
23:01:02.0940 10120 [ B3CB0721E81E30419CE7D837EF4EA151 ] RDPWD C:\windows\system32\drivers\RDPWD.sys
23:01:02.0940 10120 RDPWD - ok
23:01:02.0971 10120 [ 62C1F8A0685FE07E998AA296C4F697C4 ] rdyboost C:\windows\system32\drivers\rdyboost.sys
23:01:02.0971 10120 rdyboost - ok
23:01:02.0987 10120 [ 3663CCF243EE0C04E9F6F91ED1737273 ] RemoteAccess C:\windows\System32\mprdim.dll
23:01:02.0987 10120 RemoteAccess - ok
23:01:03.0018 10120 [ E80DD61E52EDFFF9DA1ED7260A68855B ] RemoteRegistry C:\windows\system32\regsvc.dll
23:01:03.0018 10120 RemoteRegistry - ok
23:01:03.0065 10120 [ 73F2E030B5C24E4E41401B5F0D59E6FD ] RpcEptMapper C:\windows\System32\RpcEpMap.dll
23:01:03.0065 10120 RpcEptMapper - ok
23:01:03.0080 10120 [ 10B21284B3D964AB3DC45490E57D422E ] RpcLocator C:\windows\system32\locator.exe
23:01:03.0080 10120 RpcLocator - ok
23:01:03.0096 10120 [ 1EC6E533C954BDDF2A37E7851A7E58FD ] RpcSs C:\windows\system32\rpcss.dll
23:01:03.0112 10120 RpcSs - ok
23:01:03.0127 10120 [ E04E770DD198B9399640717145E79EBF ] rspndr C:\windows\system32\DRIVERS\rspndr.sys
23:01:03.0127 10120 rspndr - ok
23:01:03.0159 10120 [ C4BE01C55656888152F57CC7E35A2BE6 ] RTL8168 C:\windows\system32\DRIVERS\Rt630x64.sys
23:01:03.0174 10120 RTL8168 - ok
23:01:03.0252 10120 [ FEFA32073D77BB9C741A63B6286479F6 ] RzKLService C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe
23:01:03.0252 10120 RzKLService - ok
23:01:03.0284 10120 [ 752EC7DCD2F96871A3857EEE6AFE965A ] s3cap C:\windows\System32\drivers\vms3cap.sys
23:01:03.0284 10120 s3cap - ok
23:01:03.0330 10120 [ F702AB6181513303AB0FC8D59E52708B ] SamSs C:\windows\system32\lsass.exe
23:01:03.0330 10120 SamSs - ok
23:01:03.0346 10120 [ 9C7B28CE0D136DB226E24DB3BC817F92 ] sbp2port C:\windows\system32\drivers\sbp2port.sys
23:01:03.0346 10120 sbp2port - ok
23:01:03.0377 10120 [ 14316954FCE79C9DE5A0AFF9D42C83AA ] SCardSvr C:\windows\System32\SCardSvr.dll
23:01:03.0377 10120 SCardSvr - ok
23:01:03.0393 10120 [ 5D7733A12756B267FCA021672B26BC9E ] scfilter C:\windows\system32\DRIVERS\scfilter.sys
23:01:03.0393 10120 scfilter - ok
23:01:03.0455 10120 [ ED40ED9A65F3E79A8C43DD50C5FDADBF ] Schedule C:\windows\system32\schedsvc.dll
23:01:03.0455 10120 Schedule - ok
23:01:03.0487 10120 [ BAF8F0F55BC300E5F882E521F054E345 ] SCPolicySvc C:\windows\System32\certprop.dll
23:01:03.0487 10120 SCPolicySvc - ok
23:01:03.0518 10120 [ F58B030A0664385C707B8C1C63682041 ] sdbus C:\windows\System32\drivers\sdbus.sys
23:01:03.0518 10120 sdbus - ok
23:01:03.0549 10120 [ 92968277ED491E4B3DDA361E3952361E ] SDRSVC C:\windows\System32\SDRSVC.dll
23:01:03.0549 10120 SDRSVC - ok
23:01:03.0565 10120 [ BB107AA9980B0DA4E19A3A90C3BD4460 ] sdstor C:\windows\System32\drivers\sdstor.sys
23:01:03.0565 10120 sdstor - ok
23:01:03.0580 10120 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\windows\system32\drivers\secdrv.sys
23:01:03.0580 10120 secdrv - ok
23:01:03.0596 10120 [ CD282626738B6BC92B6E7CD0AAE95B63 ] seclogon C:\windows\system32\seclogon.dll
23:01:03.0596 10120 seclogon - ok
23:01:03.0612 10120 [ 9C51620998F0763039DFA6BF68E475ED ] SENS C:\windows\System32\sens.dll
23:01:03.0612 10120 SENS - ok
23:01:03.0643 10120 [ DDA4CAF29D8C0A297F886BFE561E6659 ] SensorsSimulatorDriver C:\windows\system32\DRIVERS\WUDFRd.sys
23:01:03.0643 10120 SensorsSimulatorDriver - ok
23:01:03.0659 10120 [ 0D50B4B860DAB65241628D04CD33ACAE ] SensrSvc C:\windows\system32\sensrsvc.dll
23:01:03.0674 10120 SensrSvc - ok
23:01:03.0690 10120 [ 87C46B239A7EEF30FDFDD5E9BD46130C ] SerCx C:\windows\system32\drivers\SerCx.sys
23:01:03.0690 10120 SerCx - ok
23:01:03.0690 10120 [ 7A1F9347C85FD55E39B8A76B3A25C5AD ] Serenum C:\windows\System32\drivers\serenum.sys
23:01:03.0690 10120 Serenum - ok
23:01:03.0690 10120 [ F640A0A218BBF857F1D04A15D7D939F6 ] Serial C:\windows\System32\drivers\serial.sys
23:01:03.0690 10120 Serial - ok
23:01:03.0752 10120 [ F1A5F56B2620B862CC28FF96A0A6DAAB ] sermouse C:\windows\System32\drivers\sermouse.sys
23:01:03.0752 10120 sermouse - ok
23:01:03.0784 10120 [ CB60A60340788C8D6DE2A269D28086AB ] SessionEnv C:\windows\system32\sessenv.dll
23:01:03.0784 10120 SessionEnv - ok
23:01:03.0799 10120 [ 7EE65419B29302C795714FF8073969A1 ] sfloppy C:\windows\System32\drivers\sfloppy.sys
23:01:03.0799 10120 sfloppy - ok
23:01:03.0815 10120 [ 090AE16F79C8EAD04E6031F863DA85F3 ] SharedAccess C:\windows\System32\ipnathlp.dll
23:01:03.0830 10120 SharedAccess - ok
23:01:03.0846 10120 [ A77F3ABE13FCC698511E5DEC7ACEBD5F ] ShellHWDetection C:\windows\System32\shsvcs.dll
23:01:03.0862 10120 ShellHWDetection - ok
23:01:03.0862 10120 [ 2560721D6F16D5B611C36A3A9D28C1B2 ] SiSRaid2 C:\windows\system32\drivers\SiSRaid2.sys
23:01:03.0862 10120 SiSRaid2 - ok
23:01:03.0877 10120 [ 3AA8FDE1DBF65BB8B88B053529554A0D ] SiSRaid4 C:\windows\system32\drivers\sisraid4.sys
23:01:03.0877 10120 SiSRaid4 - ok
23:01:03.0924 10120 [ F5BBEDF602C310B00036EB2DBF4348A5 ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
23:01:03.0924 10120 SkypeUpdate - ok
23:01:03.0940 10120 [ E660156A4588A84305CB772FD2C0DB21 ] SNMPTRAP C:\windows\System32\snmptrap.exe
23:01:03.0940 10120 SNMPTRAP - ok
23:01:03.0987 10120 [ 9110193D93960E38B8692E4519C75D72 ] spaceport C:\windows\system32\drivers\spaceport.sys
23:01:03.0987 10120 spaceport - ok
23:01:04.0002 10120 [ 3D8679C8DF52EB26EB7583A4E0A29202 ] SpbCx C:\windows\system32\drivers\SpbCx.sys
23:01:04.0002 10120 SpbCx - ok
23:01:04.0065 10120 [ 3F215BF2D4D8D6756298B25B579772C2 ] Spooler C:\windows\System32\spoolsv.exe
23:01:04.0080 10120 Spooler - ok
23:01:04.0174 10120 [ 061A977C920FBE4BF71FF47C966DDDCA ] sppsvc C:\windows\system32\sppsvc.exe
23:01:04.0190 10120 sppsvc - ok
23:01:04.0205 10120 [ 0F1FCD575A03ABDE13FCA9D0ADE4DDA6 ] srv C:\windows\system32\DRIVERS\srv.sys
23:01:04.0221 10120 srv - ok
23:01:04.0268 10120 [ 56218A571ECF8D55E0CDFF8DF2546CF1 ] srv2 C:\windows\system32\DRIVERS\srv2.sys
23:01:04.0268 10120 srv2 - ok
23:01:04.0284 10120 [ 14FC338B80CFF7E04215133B568D15C4 ] srvnet C:\windows\system32\DRIVERS\srvnet.sys
23:01:04.0284 10120 srvnet - ok
23:01:04.0315 10120 [ 7A20882D76D4A78240A5AC9F2C2EBA21 ] SSDPSRV C:\windows\System32\ssdpsrv.dll
23:01:04.0330 10120 SSDPSRV - ok
23:01:04.0330 10120 [ D233B16999A8E626F6004BD7814C57EC ] SstpSvc C:\windows\system32\sstpsvc.dll
23:01:04.0330 10120 SstpSvc - ok
23:01:04.0440 10120 [ 6955A1EE65ED72A263C7F4EDBB8D80ED ] STacSV C:\Program Files\IDT\WDM\STacSV64.exe
23:01:04.0440 10120 STacSV - ok
23:01:04.0455 10120 [ 4E85355B94CFCB67C135F6521A4895A7 ] stexstor C:\windows\system32\drivers\stexstor.sys
23:01:04.0455 10120 stexstor - ok
23:01:04.0518 10120 [ 1F509093A44E75A4649A541613531D94 ] STHDA C:\windows\system32\DRIVERS\stwrt64.sys
23:01:04.0518 10120 STHDA - ok
23:01:04.0549 10120 [ BAC8A721736AECC55A4F71523AEAB65F ] stisvc C:\windows\System32\wiaservc.dll
23:01:04.0565 10120 stisvc - ok
23:01:04.0565 10120 [ B240874B2CA0CD02E8CD11E140B14C57 ] storahci C:\windows\system32\drivers\storahci.sys
23:01:04.0565 10120 storahci - ok
23:01:04.0580 10120 [ F74DBC95A57B1EE866D3732EB5F79BE2 ] storflt C:\windows\system32\DRIVERS\vmstorfl.sys
23:01:04.0580 10120 storflt - ok
23:01:04.0612 10120 [ 5337E138B49ED1F44CCBA4073BC35C20 ] StorSvc C:\windows\system32\storsvc.dll
23:01:04.0612 10120 StorSvc - ok
23:01:04.0627 10120 [ 543CD3CC0E05B8D8815E0D4F040B6F59 ] storvsc C:\windows\system32\drivers\storvsc.sys
23:01:04.0627 10120 storvsc - ok
23:01:04.0643 10120 [ 8BC1C1ED6EF9C985A3FAA6A72F41679A ] svsvc C:\windows\system32\svsvc.dll
23:01:04.0643 10120 svsvc - ok
23:01:04.0659 10120 [ 4AFD66AAE74FFB5986BC240744DC5FC9 ] swenum C:\windows\System32\drivers\swenum.sys
23:01:04.0659 10120 swenum - ok
23:01:04.0674 10120 [ 502F9488540051F3E6C39889ECFA76BB ] swprv C:\windows\System32\swprv.dll
23:01:04.0690 10120 swprv - ok
23:01:04.0752 10120 [ A06CB9269D29EE3D0F3F5630ABB660B8 ] SysMain C:\windows\system32\sysmain.dll
23:01:04.0768 10120 SysMain - ok
23:01:04.0784 10120 [ 6FB88606C4A71E1BFAF97D63A676C673 ] SystemEventsBroker C:\windows\System32\SystemEventsBrokerServer.dll
23:01:04.0784 10120 SystemEventsBroker - ok
23:01:04.0815 10120 [ A6C06C45C44AD06C70AF8899AEC15BDC ] TabletInputService C:\windows\System32\TabSvc.dll
23:01:04.0815 10120 TabletInputService - ok
23:01:04.0831 10120 [ 88B7721AB551C4325036B25A34A2BF7B ] TapiSrv C:\windows\System32\tapisrv.dll
23:01:04.0846 10120 TapiSrv - ok
23:01:04.0909 10120 [ DD4249F03598043DED6FA540EB14898A ] Tcpip C:\windows\system32\drivers\tcpip.sys
23:01:04.0924 10120 Tcpip - ok
23:01:04.0940 10120 [ DD4249F03598043DED6FA540EB14898A ] TCPIP6 C:\windows\system32\DRIVERS\tcpip.sys
23:01:04.0956 10120 TCPIP6 - ok
23:01:05.0018 10120 [ 8F2A13A5DF99D72FDDE87F502A66F989 ] tcpipreg C:\windows\system32\drivers\tcpipreg.sys
23:01:05.0018 10120 tcpipreg - ok
23:01:05.0018 10120 [ 73DC722CE5DF26D7638CE2446F2655C7 ] tdx C:\windows\system32\DRIVERS\tdx.sys
23:01:05.0018 10120 tdx - ok
23:01:05.0127 10120 [ 950AD1AE7498A492126FB9F9B2E27DB5 ] Te.Service C:\Program Files (x86)\Windows Kits\8.1\Testing\Runtimes\TAEF\Wex.Services.exe
23:01:05.0127 10120 Te.Service - ok
23:01:05.0159 10120 [ F7C8AB5D8AFFAA318D6A21093D139BF4 ] terminpt C:\windows\System32\drivers\terminpt.sys
23:01:05.0159 10120 terminpt - ok
23:01:05.0190 10120 [ 541EE228D0DEF392F7B2DFD885DD021B ] TermService C:\windows\System32\termsrv.dll
23:01:05.0190 10120 TermService - ok
23:01:05.0190 10120 [ 519A6F672FFF56B7D8EE8C730CEC8ECD ] Themes C:\windows\system32\themeservice.dll
23:01:05.0206 10120 Themes - ok
23:01:05.0252 10120 [ EEE908BE7143FCA48CF0CB87214E2AB8 ] THREADORDER C:\windows\system32\mmcss.dll
23:01:05.0252 10120 THREADORDER - ok
23:01:05.0299 10120 [ 31B93B02F9C2172418FE548EBBC9B2E1 ] tilfilter C:\windows\System32\drivers\TIxHCIlfilter.sys
23:01:05.0299 10120 tilfilter - ok
23:01:05.0346 10120 [ 4515B9E4140F04FB3907692DF89FCA87 ] TimeBroker C:\windows\System32\TimeBrokerServer.dll
23:01:05.0346 10120 TimeBroker - ok
23:01:05.0362 10120 [ 8479862916203D79DF714432C954ECA8 ] tiufilter C:\windows\System32\drivers\TIxHCIufilter.sys
23:01:05.0362 10120 tiufilter - ok
23:01:05.0409 10120 [ E94F7A7B48C7638D1F3F8089344C97B7 ] TPM C:\windows\system32\drivers\tpm.sys
23:01:05.0409 10120 TPM - ok
23:01:05.0424 10120 [ 8C8CF3041B27E7657ADD0EE17F6DBFCA ] TrkWks C:\windows\System32\trkwks.dll
23:01:05.0424 10120 TrkWks - ok
23:01:05.0471 10120 [ 8ABBB5CE0C62E0A6D28F32F44B7F865C ] TrustedInstaller C:\windows\servicing\TrustedInstaller.exe
23:01:05.0471 10120 TrustedInstaller - ok
23:01:05.0502 10120 [ 4E7C5FB10A50435523DE0CAA37DE2BD3 ] TsUsbFlt C:\windows\system32\drivers\tsusbflt.sys
23:01:05.0502 10120 TsUsbFlt - ok
23:01:05.0502 10120 [ 16D684A820872EE54F6370703AC0B513 ] TsUsbGD C:\windows\System32\drivers\TsUsbGD.sys
23:01:05.0502 10120 TsUsbGD - ok
23:01:05.0518 10120 [ 78C9EE193AC2B4CBDBC48B620314D740 ] tunnel C:\windows\system32\DRIVERS\tunnel.sys
23:01:05.0518 10120 tunnel - ok
23:01:05.0518 10120 [ 6D4F67CA56ACA2085DFA2CD89EAFBC1A ] uagp35 C:\windows\system32\drivers\uagp35.sys
23:01:05.0518 10120 uagp35 - ok
23:01:05.0518 10120 [ 6FD6D03B7752C78712E5CFF29A305026 ] UASPStor C:\windows\System32\drivers\uaspstor.sys
23:01:05.0518 10120 UASPStor - ok
23:01:05.0565 10120 [ 061BA3EE0D2BE17944990544008CF190 ] UCX01000 C:\windows\System32\drivers\ucx01000.sys
23:01:05.0565 10120 UCX01000 - ok
23:01:05.0627 10120 [ 25C50F4EDF70D0A831E0566BD181CCF2 ] udfs C:\windows\system32\DRIVERS\udfs.sys
23:01:05.0627 10120 udfs - ok
23:01:05.0643 10120 [ FB3475FEA1CCB0DAEA1EBE44D0E3BB7D ] UI0Detect C:\windows\system32\UI0Detect.exe
23:01:05.0643 10120 UI0Detect - ok
23:01:05.0674 10120 [ 07FEBCDF24FABA0D47B635D85A0FFB7A ] uliagpkx C:\windows\system32\drivers\uliagpkx.sys
23:01:05.0674 10120 uliagpkx - ok
23:01:05.0674 10120 [ 02CEB3FE6152668A7BA420B93B664860 ] umbus C:\windows\System32\drivers\umbus.sys
23:01:05.0674 10120 umbus - ok
23:01:05.0690 10120 [ 991EE6B5FC41EAEF99C8AF5B92F2CA09 ] UmPass C:\windows\System32\drivers\umpass.sys
23:01:05.0690 10120 UmPass - ok
23:01:05.0690 10120 [ 43FEFB040A0CC30F795FBF544169594D ] UmRdpService C:\windows\System32\umrdp.dll
23:01:05.0690 10120 UmRdpService - ok
23:01:05.0737 10120 [ DBE2E6388379D5CC78099650541E9566 ] UNS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
23:01:05.0752 10120 UNS - ok
23:01:05.0768 10120 [ 14D22C411854AA2560AFC94CD2D5E61F ] upnphost C:\windows\System32\upnphost.dll
23:01:05.0768 10120 upnphost - ok
23:01:05.0815 10120 [ 9E9F21FF91D7ECC0BCCB94D3FE52A959 ] usbaudio C:\windows\system32\drivers\usbaudio.sys
23:01:05.0831 10120 usbaudio - ok
23:01:05.0846 10120 [ C976C4306F9AE133D6BBD47FDFC3BF92 ] usbccgp C:\windows\System32\drivers\usbccgp.sys
23:01:05.0846 10120 usbccgp - ok
23:01:05.0862 10120 [ 427B6DB8C05A5A977E8C3525370A2595 ] usbcir C:\windows\System32\drivers\usbcir.sys
23:01:05.0862 10120 usbcir - ok
23:01:05.0877 10120 [ B24FDEB1B18496F1B463782235AA3AF1 ] usbehci C:\windows\System32\drivers\usbehci.sys
23:01:05.0877 10120 usbehci - ok
23:01:05.0893 10120 [ F8C2A832DF9403F5EA8080CBDBDA95FB ] usbhub C:\windows\System32\drivers\usbhub.sys
23:01:05.0909 10120 usbhub - ok
23:01:05.0909 10120 [ E5F7328B1D29BCE791862CD3C0DD382A ] USBHUB3 C:\windows\System32\drivers\UsbHub3.sys
23:01:05.0924 10120 USBHUB3 - ok
23:01:05.0956 10120 [ 325F6179009B5A7F6118951A5BA422AB ] usbohci C:\windows\System32\drivers\usbohci.sys
23:01:05.0956 10120 usbohci - ok
23:01:06.0018 10120 [ 9FDBA6982582A6F2354144980F641E7B ] usbprint C:\windows\System32\drivers\usbprint.sys
23:01:06.0018 10120 usbprint - ok
23:01:06.0034 10120 [ AD91D1BBE5D3CF4501887DC1C09384FD ] usbscan C:\windows\system32\DRIVERS\usbscan.sys
23:01:06.0034 10120 usbscan - ok
23:01:06.0049 10120 [ BFC7FE4AAEB61317A921871B4085EF4B ] USBSTOR C:\windows\System32\drivers\USBSTOR.SYS
23:01:06.0049 10120 USBSTOR - ok
23:01:06.0065 10120 [ 1ABF657259DB57F7E5558E4DF1357C0C ] usbuhci C:\windows\System32\drivers\usbuhci.sys
23:01:06.0065 10120 usbuhci - ok
23:01:06.0081 10120 [ 9EF7C01D3ACCBC243B5CB1A95865B2FF ] usbvideo C:\windows\System32\Drivers\usbvideo.sys
23:01:06.0081 10120 usbvideo - ok
23:01:06.0096 10120 [ 8DC398D7B8E02C929A2096E74A170970 ] USBXHCI C:\windows\System32\drivers\USBXHCI.SYS
23:01:06.0096 10120 USBXHCI - ok
23:01:06.0096 10120 Util LinkSwift - ok
23:01:06.0112 10120 [ F702AB6181513303AB0FC8D59E52708B ] VaultSvc C:\windows\system32\lsass.exe
23:01:06.0112 10120 VaultSvc - ok
23:01:06.0127 10120 [ BACECBFF9C97F7627A60B0E0F1FE7EE8 ] vdrvroot C:\windows\system32\drivers\vdrvroot.sys
23:01:06.0127 10120 vdrvroot - ok
23:01:06.0190 10120 [ 1B4488988E5E7512E6C5CD1255E9E973 ] vds C:\windows\System32\vds.exe
23:01:06.0190 10120 vds - ok
23:01:06.0206 10120 [ 74FA2D4368DE6F6CE14393EDF1F342BE ] VerifierExt C:\windows\system32\drivers\VerifierExt.sys
23:01:06.0206 10120 VerifierExt - ok
23:01:06.0252 10120 [ 500BE6B2E49883720D0AE8BB859ED7A3 ] vhdmp C:\windows\System32\drivers\vhdmp.sys
23:01:06.0268 10120 vhdmp - ok
23:01:06.0284 10120 [ F5B4A14B00E89250C50982AC762DDD1D ] viaide C:\windows\system32\drivers\viaide.sys
23:01:06.0284 10120 viaide - ok
23:01:06.0315 10120 [ 78DB50F7329F6D1311658DABFFFC8BE0 ] vmbus C:\windows\system32\drivers\vmbus.sys
23:01:06.0315 10120 vmbus - ok
23:01:06.0315 10120 [ ECFEE2F2BA3932C7880D1A8F67D68F91 ] VMBusHID C:\windows\System32\drivers\VMBusHID.sys
23:01:06.0315 10120 VMBusHID - ok
23:01:06.0331 10120 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmicheartbeat C:\windows\System32\ICSvc.dll
23:01:06.0346 10120 vmicheartbeat - ok
23:01:06.0346 10120 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmickvpexchange C:\windows\System32\ICSvc.dll
23:01:06.0346 10120 vmickvpexchange - ok
23:01:06.0362 10120 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmicrdv C:\windows\System32\ICSvc.dll
23:01:06.0362 10120 vmicrdv - ok
23:01:06.0362 10120 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmicshutdown C:\windows\System32\ICSvc.dll
23:01:06.0362 10120 vmicshutdown - ok
23:01:06.0377 10120 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmictimesync C:\windows\System32\ICSvc.dll
23:01:06.0377 10120 vmictimesync - ok
23:01:06.0377 10120 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmicvss C:\windows\System32\ICSvc.dll
23:01:06.0377 10120 vmicvss - ok
23:01:06.0393 10120 [ CB60FAAED8B49B812EBBF77EB87D9B18 ] volmgr C:\windows\system32\drivers\volmgr.sys
23:01:06.0393 10120 volmgr - ok
23:01:06.0393 10120 [ A74101DA9809251BCD0E5A26BAE0F824 ] volmgrx C:\windows\system32\drivers\volmgrx.sys
23:01:06.0393 10120 volmgrx - ok
23:01:06.0424 10120 [ 78A5BBA3819FFFC62FFEC3E2220D102D ] volsnap C:\windows\system32\drivers\volsnap.sys
23:01:06.0424 10120 volsnap - ok
23:01:06.0456 10120 [ A8DA1C1B52ECEA3726DEBED4FF1B700D ] vpci C:\windows\System32\drivers\vpci.sys
23:01:06.0456 10120 vpci - ok
23:01:06.0487 10120 [ 9B4F6978628D07FAEBF77FF6F8F2960D ] VsEtwService120 C:\Program Files\Microsoft Visual Studio 12.0\Common7\Packages\Debugger\Services\VsEtwService.exe
23:01:06.0487 10120 VsEtwService120 - ok
23:01:06.0502 10120 [ 38A60CD9C009C55C6D3B5586F8E6A353 ] vsmraid C:\windows\system32\drivers\vsmraid.sys
23:01:06.0502 10120 vsmraid - ok
23:01:06.0565 10120 [ D0C69E44BC1E1D4AD290FD84104623D8 ] VSS C:\windows\system32\vssvc.exe
23:01:06.0581 10120 VSS - ok
23:01:06.0596 10120 [ A0F6FE0FC2F647C22BBFD6BD4249DBCC ] VSTXRAID C:\windows\system32\drivers\vstxraid.sys
23:01:06.0596 10120 VSTXRAID - ok
23:01:06.0596 10120 [ 62460A45435A26A334907E3F2EA45611 ] vwifibus C:\windows\System32\drivers\vwifibus.sys
23:01:06.0596 10120 vwifibus - ok
23:01:06.0627 10120 [ F690B6EEAA94576727B24376D7ED3601 ] W32Time C:\windows\system32\w32time.dll
23:01:06.0643 10120 W32Time - ok
23:01:06.0659 10120 [ 6B806E893714019969E2B50D7EF6A4D9 ] WacomPen C:\windows\System32\drivers\wacompen.sys
23:01:06.0659 10120 WacomPen - ok
23:01:06.0753 10120 [ A650671AF9A670F678F29FF212B4950C ] wampapache c:\wamp\bin\apache\apache2.4.4\bin\httpd.exe
23:01:06.0753 10120 wampapache - ok
23:01:06.0893 10120 wampmysqld - ok
23:01:06.0940 10120 [ 61F6972FF9AC9A8D0B4D62076DC30051 ] Wanarp C:\windows\system32\DRIVERS\wanarp.sys
23:01:06.0940 10120 Wanarp - ok
23:01:06.0956 10120 [ 61F6972FF9AC9A8D0B4D62076DC30051 ] Wanarpv6 C:\windows\system32\DRIVERS\wanarp.sys
23:01:06.0956 10120 Wanarpv6 - ok
23:01:07.0018 10120 [ 901CC968412F8155B08D7ABE0171166A ] WAS C:\windows\system32\inetsrv\iisw3adm.dll
23:01:07.0034 10120 WAS - ok
23:01:07.0065 10120 [ 42DF22F8C448E7CD219F6D63743505E2 ] wbengine C:\windows\system32\wbengine.exe
23:01:07.0081 10120 wbengine - ok
23:01:07.0096 10120 [ 31D37B2F6069C631EF0557D322924812 ] WbioSrvc C:\windows\System32\wbiosrvc.dll
23:01:07.0096 10120 WbioSrvc - ok
23:01:07.0143 10120 [ AF1349386D4C6786EF4E34FACEF15042 ] Wcmsvc C:\windows\System32\wcmsvc.dll
23:01:07.0159 10120 Wcmsvc - ok
23:01:07.0206 10120 [ 5B5FEAB51172F5513C2CF7B39CFA6A01 ] wcncsvc C:\windows\System32\wcncsvc.dll
23:01:07.0206 10120 wcncsvc - ok
23:01:07.0268 10120 [ E19556D414332E2BEBA1F368229006B4 ] WcsPlugInService C:\windows\System32\WcsPlugInService.dll
23:01:07.0268 10120 WcsPlugInService - ok
23:01:07.0299 10120 [ B3A4D918DAB90505B6BC7B70632913CB ] Wd C:\windows\system32\drivers\wd.sys
23:01:07.0299 10120 Wd - ok
23:01:07.0331 10120 [ FD47DF026B32969B8A68721A0243E8EE ] WdBoot C:\windows\system32\drivers\WdBoot.sys
23:01:07.0331 10120 WdBoot - ok
23:01:07.0378 10120 [ E2C933EDBC389386EBE6D2BA953F43D8 ] Wdf01000 C:\windows\system32\drivers\Wdf01000.sys
23:01:07.0378 10120 Wdf01000 - ok
23:01:07.0409 10120 [ 5F425D842DD6ADE9F95A51A0616AFAD7 ] WdFilter C:\windows\system32\drivers\WdFilter.sys
23:01:07.0409 10120 WdFilter - ok
23:01:07.0424 10120 [ 240FC332484572227CD1DF82407F33E5 ] WdiServiceHost C:\windows\system32\wdi.dll
23:01:07.0424 10120 WdiServiceHost - ok
23:01:07.0440 10120 [ 240FC332484572227CD1DF82407F33E5 ] WdiSystemHost C:\windows\system32\wdi.dll
23:01:07.0440 10120 WdiSystemHost - ok
23:01:07.0503 10120 [ 9B1384CE8E681D2D77BB3524B8E86311 ] WebClient C:\windows\System32\webclnt.dll
23:01:07.0503 10120 WebClient - ok
23:01:07.0503 10120 [ 35FD720943D4FCD75C3275BF062FF140 ] Wecsvc C:\windows\system32\wecsvc.dll
23:01:07.0518 10120 Wecsvc - ok
23:01:07.0534 10120 [ 4D2612E3C462B68F499D840B1133263E ] wercplsupport C:\windows\System32\wercplsupport.dll
23:01:07.0534 10120 wercplsupport - ok
23:01:07.0581 10120 [ 5F70EBFC1F75B487DE79501E3CCBDB54 ] WerSvc C:\windows\System32\WerSvc.dll
23:01:07.0596 10120 WerSvc - ok
23:01:07.0643 10120 [ 44BB9C31E6242C4BD1CE7C2B440C2533 ] WFPLWFS C:\windows\system32\DRIVERS\wfplwfs.sys
23:01:07.0643 10120 WFPLWFS - ok
23:01:07.0659 10120 [ 60E0C220593DA4F7C289CB909D2DBAE0 ] WiaRpc C:\windows\System32\wiarpc.dll
23:01:07.0659 10120 WiaRpc - ok
23:01:07.0674 10120 [ A3C7624A42A3447EF5EDD1ED37FE4E60 ] WIMMount C:\windows\system32\drivers\wimmount.sys
23:01:07.0674 10120 WIMMount - ok
23:01:07.0721 10120 WinDefend - ok
23:01:07.0784 10120 [ 7911470B6018059A880469A63B65700A ] WinHttpAutoProxySvc C:\windows\system32\winhttp.dll
23:01:07.0784 10120 WinHttpAutoProxySvc - ok
23:01:07.0831 10120 [ 3D6B518B71C75C8FA4115A33615C107A ] Winmgmt C:\windows\system32\wbem\WMIsvc.dll
23:01:07.0831 10120 Winmgmt - ok
23:01:07.0878 10120 [ 8E212A627F33F6FC3B5F3BB47212F66E ] WinRM C:\windows\system32\WsmSvc.dll
23:01:07.0909 10120 WinRM - ok
23:01:07.0956 10120 [ BB20956C424531003F7FA6CD36F11D5D ] WinUsb C:\windows\system32\DRIVERS\WinUsb.sys
23:01:07.0956 10120 WinUsb - ok
23:01:08.0018 10120 [ 6351724B8FA0255C2DBD970297F00B93 ] WlanSvc C:\windows\System32\wlansvc.dll
23:01:08.0034 10120 WlanSvc - ok
23:01:08.0096 10120 [ B330CE47FB74A6BE9A3FFFF4B3F64D9B ] wlidsvc C:\windows\system32\wlidsvc.dll
23:01:08.0128 10120 wlidsvc - ok
23:01:08.0143 10120 [ E2A596CACFC6504306CDB7B593B90084 ] WmiAcpi C:\windows\System32\drivers\wmiacpi.sys
23:01:08.0143 10120 WmiAcpi - ok
23:01:08.0174 10120 [ D113499052C5E541906B727779F0F959 ] wmiApSrv C:\windows\system32\wbem\WmiApSrv.exe
23:01:08.0174 10120 wmiApSrv - ok
23:01:08.0206 10120 WMPNetworkSvc - ok
23:01:08.0206 10120 [ C6FF953D5D6F2EAE3B8883474D5076B3 ] wpcfltr C:\windows\system32\DRIVERS\wpcfltr.sys
23:01:08.0206 10120 wpcfltr - ok
23:01:08.0221 10120 [ A6ED163169876BFD2437E872FE2F1509 ] WPCSvc C:\windows\System32\wpcsvc.dll
23:01:08.0237 10120 WPCSvc - ok
23:01:08.0268 10120 [ 3013658A4D327854BEEC4A08D9655194 ] WPDBusEnum C:\windows\system32\wpdbusenum.dll
23:01:08.0284 10120 WPDBusEnum - ok
23:01:08.0284 10120 [ 0346CAFC181C91C6E2330332EB332ED6 ] WpdUpFltr C:\windows\system32\drivers\WpdUpFltr.sys
23:01:08.0284 10120 WpdUpFltr - ok
23:01:08.0331 10120 [ BC8B5CB336E63BB25EAD1CE8EDD34B81 ] ws2ifsl C:\windows\system32\drivers\ws2ifsl.sys
23:01:08.0331 10120 ws2ifsl - ok
23:01:08.0378 10120 [ 012CFE7F0F95266F554EE3B91EE2128A ] wscsvc C:\windows\System32\wscsvc.dll
23:01:08.0378 10120 wscsvc - ok
23:01:08.0378 10120 WSearch - ok
23:01:08.0424 10120 [ D4D04839F3DFAF09D94BAB1016F7A297 ] WSService C:\windows\System32\WSService.dll
23:01:08.0456 10120 WSService - ok
23:01:08.0534 10120 [ 311E5E1976E0BD9110A88B93158055D5 ] wuauserv C:\windows\system32\wuaueng.dll
23:01:08.0565 10120 wuauserv - ok
23:01:08.0581 10120 [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf C:\windows\system32\drivers\WudfPf.sys
23:01:08.0581 10120 WudfPf - ok
23:01:08.0581 10120 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd C:\windows\System32\drivers\WUDFRd.sys
23:01:08.0581 10120 WUDFRd - ok
23:01:08.0596 10120 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFSensorLP C:\windows\system32\DRIVERS\WUDFRd.sys
23:01:08.0596 10120 WUDFSensorLP - ok
23:01:08.0612 10120 [ B20F051B03A966392364C83F009F7D17 ] wudfsvc C:\windows\System32\WUDFSvc.dll
23:01:08.0612 10120 wudfsvc - ok
23:01:08.0612 10120 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFWpdFs C:\windows\system32\DRIVERS\WUDFRd.sys
23:01:08.0612 10120 WUDFWpdFs - ok
23:01:08.0628 10120 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFWpdMtp C:\windows\system32\DRIVERS\WUDFRd.sys
23:01:08.0628 10120 WUDFWpdMtp - ok
23:01:08.0674 10120 [ 6D9E07436B6646EC8F7EFFD39B6BA288 ] WwanSvc C:\windows\System32\wwansvc.dll
23:01:08.0674 10120 WwanSvc - ok
23:01:08.0690 10120 ================ Scan global ===============================
23:01:08.0737 10120 [ DDC1AFBF9DDF880CE9BD3896114D8DED ] C:\windows\system32\basesrv.dll
23:01:08.0799 10120 [ E9343076AE704D20BB0D01F3AF3EFFEF ] C:\windows\system32\winsrv.dll
23:01:08.0815 10120 [ BD7C6949984D19AAA609896B675E7357 ] C:\windows\system32\sxssrv.dll
23:01:08.0831 10120 [ 8F226143046435C75C033B0C52E90FFE ] C:\windows\system32\services.exe
23:01:08.0846 10120 [Global] - ok
23:01:08.0846 10120 ================ Scan MBR ==================================
23:01:08.0846 10120 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0
23:01:08.0862 10120 \Device\Harddisk0\DR0 - ok
23:01:08.0862 10120 ================ Scan VBR ==================================
23:01:08.0862 10120 [ 07EEFE498AC10622EF0EA8AC537F987A ] \Device\Harddisk0\DR0\Partition1
23:01:08.0862 10120 \Device\Harddisk0\DR0\Partition1 - ok
23:01:08.0878 10120 [ FB68B11C7901A1D427B6D8C83E19AA52 ] \Device\Harddisk0\DR0\Partition2
23:01:08.0878 10120 \Device\Harddisk0\DR0\Partition2 - ok
23:01:08.0893 10120 [ 6D1AFFCBA48A106BF91B07BBA00C0DA3 ] \Device\Harddisk0\DR0\Partition3
23:01:08.0893 10120 \Device\Harddisk0\DR0\Partition3 - ok
23:01:08.0893 10120 [ 4EF10EC9FFF8C9BC3F20F9A074880BE4 ] \Device\Harddisk0\DR0\Partition4
23:01:08.0893 10120 \Device\Harddisk0\DR0\Partition4 - ok
23:01:08.0924 10120 [ EB83321CE5C46CE6421D3C0E4E996696 ] \Device\Harddisk0\DR0\Partition5
23:01:08.0924 10120 \Device\Harddisk0\DR0\Partition5 - ok
23:01:08.0924 10120 ============================================================
23:01:08.0924 10120 Scan finished
23:01:08.0924 10120 ============================================================
23:01:08.0940 10060 Detected object count: 0
23:01:08.0940 10060 Actual detected object count: 0
23:01:46.0899 9236 ============================================================
23:01:46.0899 9236 Scan started
23:01:46.0899 9236 Mode: Manual;
23:01:46.0899 9236 ============================================================
23:01:47.0227 9236 ================ Scan system memory ========================
23:01:47.0227 9236 System memory - ok
23:01:47.0227 9236 ================ Scan services =============================
23:01:47.0352 9236 [ E890C46E4754F0DF51BAFCC8D2E07498 ] 1394ohci C:\windows\System32\drivers\1394ohci.sys
23:01:47.0352 9236 1394ohci - ok
23:01:47.0352 9236 [ 4F18D4C7EA14F11A7211F60D553C03DB ] 3ware C:\windows\system32\drivers\3ware.sys
23:01:47.0352 9236 3ware - ok
23:01:47.0383 9236 [ 975AABEB243B800C23626D6B652C5A9C ] ACPI C:\windows\system32\drivers\ACPI.sys
23:01:47.0383 9236 ACPI - ok
23:01:47.0399 9236 [ DC968C37822117E576B933F34A2D130C ] acpiex C:\windows\system32\Drivers\acpiex.sys
23:01:47.0399 9236 acpiex - ok
23:01:47.0399 9236 [ 0CA9F7C3A78227C21A0A7854E245CFB2 ] acpipagr C:\windows\System32\drivers\acpipagr.sys
23:01:47.0399 9236 acpipagr - ok
23:01:47.0399 9236 [ 8EB8DA03B142D3DD1EB9ED8107A76C43 ] AcpiPmi C:\windows\System32\drivers\acpipmi.sys
23:01:47.0399 9236 AcpiPmi - ok
23:01:47.0414 9236 [ CBCE725C5D86ABA7D2604E22951AA9B8 ] acpitime C:\windows\System32\drivers\acpitime.sys
23:01:47.0414 9236 acpitime - ok
23:01:47.0508 9236 [ F7AB315A4D400CA876381D1E188A2E20 ] AdobeFlashPlayerUpdateSvc C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
23:01:47.0508 9236 AdobeFlashPlayerUpdateSvc - ok
23:01:47.0539 9236 [ 93C6388592B99925C1D1576E465BC80F ] adp94xx C:\windows\system32\drivers\adp94xx.sys
23:01:47.0539 9236 adp94xx - ok
23:01:47.0555 9236 [ D27763E0247292654E7F7D16444C7C72 ] adpahci C:\windows\system32\drivers\adpahci.sys
23:01:47.0555 9236 adpahci - ok
23:01:47.0555 9236 [ 67B90070FF48F794AF19F9FCF0080D75 ] adpu320 C:\windows\system32\drivers\adpu320.sys
23:01:47.0555 9236 adpu320 - ok
23:01:47.0586 9236 [ 974AE60BF5B90E31412D93596C968E5B ] AeLookupSvc C:\windows\System32\aelupsvc.dll
23:01:47.0586 9236 AeLookupSvc - ok
23:01:47.0633 9236 [ 7C0E0EDF18D6CC565D7BFBB451709FA5 ] AFD C:\windows\system32\drivers\afd.sys
23:01:47.0633 9236 AFD - ok
23:01:47.0649 9236 [ 01590377A5AB19E792528C628A2A68F9 ] agp440 C:\windows\system32\drivers\agp440.sys
23:01:47.0649 9236 agp440 - ok
23:01:47.0664 9236 [ D1BE8E6E5B3AF23A4393AF1BF867977A ] ALG C:\windows\System32\alg.exe
23:01:47.0664 9236 ALG - ok
23:01:47.0680 9236 [ 025E8C755BE293E50854D26D1BBE5133 ] AllUserInstallAgent C:\windows\system32\AUInstallAgent.dll
23:01:47.0680 9236 AllUserInstallAgent - ok
23:01:47.0695 9236 [ 5E4ABAE09E144C363839E8F10705F98A ] AMD External Events Utility C:\windows\system32\atiesrxx.exe
23:01:47.0695 9236 AMD External Events Utility - ok
23:01:47.0711 9236 [ 5A81054B824004B1ECC04F0034A1CDF9 ] AmdK8 C:\windows\System32\drivers\amdk8.sys
23:01:47.0727 9236 AmdK8 - ok
23:01:47.0727 9236 [ F2FF8C1B41B3784EDBD5C6D5397F403C ] amdkmafd C:\windows\system32\drivers\amdkmafd.sys
23:01:47.0727 9236 amdkmafd - ok
23:01:47.0867 9236 [ CD3C1C5ADBB06B6B50DE4D64797E74CB ] amdkmdag C:\windows\system32\DRIVERS\atikmdag.sys
23:01:47.0930 9236 amdkmdag - ok
23:01:47.0961 9236 [ 28FC287546FF4213B8346DAD7B443AFB ] amdkmdap C:\windows\system32\DRIVERS\atikmpag.sys
23:01:47.0961 9236 amdkmdap - ok
23:01:47.0977 9236 [ B849D453E644FAB9BC8EF6DC8CA9C4C6 ] AmdPPM C:\windows\System32\drivers\amdppm.sys
23:01:47.0977 9236 AmdPPM - ok
23:01:47.0993 9236 [ 35A0EB5AECB0FA3C41A2FB514A562304 ] amdsata C:\windows\system32\drivers\amdsata.sys
23:01:47.0993 9236 amdsata - ok
23:01:47.0993 9236 [ 00452671904F5EE94B50BF0219C97164 ] amdsbs C:\windows\system32\drivers\amdsbs.sys
23:01:47.0993 9236 amdsbs - ok
23:01:48.0008 9236 [ EA3FFE53E92E59C87E3ECA9BEB20D9B7 ] amdxata C:\windows\system32\drivers\amdxata.sys
23:01:48.0008 9236 amdxata - ok
23:01:48.0024 9236 [ 823F34D1DEF120A657BB7529ABF4461F ] AppHostSvc C:\windows\system32\inetsrv\apphostsvc.dll
23:01:48.0024 9236 AppHostSvc - ok
23:01:48.0024 9236 [ 83B3682CE922FB0F415734B26D9D6233 ] AppID C:\windows\system32\drivers\appid.sys
23:01:48.0024 9236 AppID - ok
23:01:48.0055 9236 [ CE2BEAD7F31816FF0AC490D048C969F9 ] AppIDSvc C:\windows\System32\appidsvc.dll
23:01:48.0055 9236 AppIDSvc - ok
23:01:48.0071 9236 [ 4F750B7EFCB6520AE01E01D082D7D476 ] Appinfo C:\windows\System32\appinfo.dll
23:01:48.0071 9236 Appinfo - ok
23:01:48.0086 9236 [ E933401B392387F4BE34DE8BAF1722A7 ] arc C:\windows\system32\drivers\arc.sys
23:01:48.0086 9236 arc - ok
23:01:48.0086 9236 [ 07CA323EF2E8247A568AB0F3662AD644 ] arcsas C:\windows\system32\drivers\arcsas.sys
23:01:48.0086 9236 arcsas - ok
23:01:48.0180 9236 [ 9A262EDD17F8473B91B333D6B031A901 ] aspnet_state C:\windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
23:01:48.0180 9236 aspnet_state - ok
23:01:48.0211 9236 [ 1EC6777695564CA7EB3ADB36C78322E5 ] aswFsBlk C:\windows\system32\drivers\aswFsBlk.sys
23:01:48.0211 9236 aswFsBlk - ok
23:01:48.0211 9236 [ FAF7B0B0C44A2FBD6FBC54E3E0F38545 ] aswMonFlt C:\windows\system32\drivers\aswMonFlt.sys
23:01:48.0211 9236 aswMonFlt - ok
23:01:48.0227 9236 [ 679712B7A353EE665B9301592164A172 ] aswRdr C:\windows\system32\drivers\aswRdr2.sys
23:01:48.0227 9236 aswRdr - ok
23:01:48.0243 9236 [ C04F7B373881009D7994D9BF55D24AB4 ] aswRvrt C:\windows\system32\drivers\aswRvrt.sys
23:01:48.0243 9236 aswRvrt - ok
23:01:48.0258 9236 [ 3E07C93A2CB67840E4CD56C00959A402 ] aswSnx C:\windows\system32\drivers\aswSnx.sys
23:01:48.0274 9236 aswSnx - ok
23:01:48.0321 9236 [ 79ADA401A6E2054F110E7FBDFAC71942 ] aswSP C:\windows\system32\drivers\aswSP.sys
23:01:48.0321 9236 aswSP - ok
23:01:48.0321 9236 [ 59787B95DD9CA44CB139D96863438587 ] aswVmm C:\windows\system32\drivers\aswVmm.sys
23:01:48.0321 9236 aswVmm - ok
23:01:48.0336 9236 [ 74DBAEC35366C4EE7670428808715A6A ] AsyncMac C:\windows\system32\DRIVERS\asyncmac.sys
23:01:48.0336 9236 AsyncMac - ok
23:01:48.0383 9236 [ A721FF570C2387E383BDDEA9632863C9 ] atapi C:\windows\system32\drivers\atapi.sys
23:01:48.0383 9236 atapi - ok
23:01:48.0414 9236 [ 13A4B62FEE62843413724C45FD149D45 ] AtiHDAudioService C:\windows\system32\drivers\AtihdW86.sys
23:01:48.0414 9236 AtiHDAudioService - ok
23:01:48.0430 9236 [ BCD7A47EF587DC00DD61D12D9C2D1E44 ] AudioEndpointBuilder C:\windows\System32\AudioEndpointBuilder.dll
23:01:48.0430 9236 AudioEndpointBuilder - ok
23:01:48.0493 9236 [ 599B3F685A263A114FFAF3BE29C49C75 ] Audiosrv C:\windows\System32\Audiosrv.dll
23:01:48.0493 9236 Audiosrv - ok
23:01:48.0555 9236 [ 7A189530FD0CFD415DBE41123F8A6A59 ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
23:01:48.0555 9236 avast! Antivirus - ok
23:01:48.0571 9236 [ 89491EF71D5EA011127832C588002853 ] AxInstSV C:\windows\System32\AxInstSV.dll
23:01:48.0571 9236 AxInstSV - ok
23:01:48.0586 9236 [ 87AB5BB072A3F128541D5B815F82FFDD ] b06bdrv C:\windows\system32\drivers\bxvbda.sys
23:01:48.0602 9236 b06bdrv - ok
23:01:48.0618 9236 [ 81703BC5D68DEDBB086C2368FBE7B334 ] BasicDisplay C:\windows\System32\drivers\BasicDisplay.sys
23:01:48.0618 9236 BasicDisplay - ok
23:01:48.0633 9236 [ 5EC68164E14D25675C98BBB5F09E8606 ] BasicRender C:\windows\System32\drivers\BasicRender.sys
23:01:48.0633 9236 BasicRender - ok
23:01:48.0680 9236 [ 89143A7BA7850F5C7E61B43BB44B6418 ] BDESVC C:\windows\System32\bdesvc.dll
23:01:48.0680 9236 BDESVC - ok
23:01:48.0696 9236 [ 9E7AEA59776D904607985AFFE7E5E183 ] Beep C:\windows\system32\drivers\Beep.sys
23:01:48.0696 9236 Beep - ok
23:01:48.0743 9236 [ 53AA55632B94622F2DC3695E86EF9363 ] BFE C:\windows\System32\bfe.dll
23:01:48.0743 9236 BFE - ok
23:01:48.0774 9236 [ D598C44A7072D3108D8D8102EC5E07F7 ] BITS C:\windows\System32\qmgr.dll
23:01:48.0789 9236 BITS - ok
23:01:48.0852 9236 [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
23:01:48.0852 9236 Bonjour Service - ok
23:01:48.0852 9236 [ B17AC10B47C7FCB44D22A1F06415840E ] bowser C:\windows\system32\DRIVERS\bowser.sys
23:01:48.0852 9236 bowser - ok
23:01:48.0883 9236 [ 038FA1B55531E7020DB705B42FCCE373 ] BrokerInfrastructure C:\windows\System32\bisrv.dll
23:01:48.0883 9236 BrokerInfrastructure - ok
23:01:48.0899 9236 [ 310068BDA80B1D55C36580FD8A873FAF ] Browser C:\windows\System32\browser.dll
23:01:48.0899 9236 Browser - ok
23:01:49.0008 9236 [ 6ED5DB8C1DB8A0D8F4B411E0C2A65EC6 ] BstHdAndroidSvc C:\Program Files (x86)\BlueStacks\HD-Service.exe
23:01:49.0008 9236 BstHdAndroidSvc - ok
23:01:49.0055 9236 [ E57BC16C486AD810A7EF946646A02466 ] BstHdDrv C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys
23:01:49.0071 9236 BstHdDrv - ok
23:01:49.0071 9236 [ 8059EDFA9616E569E861E0F68DDF0C72 ] BstHdLogRotatorSvc C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
23:01:49.0071 9236 BstHdLogRotatorSvc - ok
23:01:49.0102 9236 [ 6695200F455E251F0BCC9CE4D0978D59 ] BthAvrcpTg C:\windows\System32\drivers\BthAvrcpTg.sys
23:01:49.0102 9236 BthAvrcpTg - ok
23:01:49.0118 9236 [ 616EB8748C988AEE98D93DA141C3D3B4 ] BthHFEnum C:\windows\System32\drivers\bthhfenum.sys
23:01:49.0118 9236 BthHFEnum - ok
23:01:49.0164 9236 [ DCB4EBD928A6FB368BE6CAE522412DE1 ] bthhfhid C:\windows\System32\drivers\BthHFHid.sys
23:01:49.0164 9236 bthhfhid - ok
23:01:49.0180 9236 [ 033916CE8784A848B9A3D686B7F66D97 ] BTHMODEM C:\windows\System32\drivers\bthmodem.sys
23:01:49.0180 9236 BTHMODEM - ok
23:01:49.0211 9236 [ A4387C3D271959313E2577DB7BE8BA7A ] bthserv C:\windows\system32\bthserv.dll
23:01:49.0211 9236 bthserv - ok
23:01:49.0289 9236 [ 9E530C6F0EEE34CCEAC8104838AB68C7 ] c2cautoupdatesvc C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
23:01:49.0289 9236 c2cautoupdatesvc - ok
23:01:49.0368 9236 [ 96B14B79C71CE4A7783184CC8B5DBCE8 ] c2cpnrsvc C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
23:01:49.0368 9236 c2cpnrsvc - ok
23:01:49.0368 9236 c2wts - ok
23:01:49.0399 9236 [ 990B1BABE6E81FB18E65A87EBEFB1772 ] cdfs C:\windows\system32\DRIVERS\cdfs.sys
23:01:49.0399 9236 cdfs - ok
23:01:49.0414 9236 [ 339BFF85D788268752DA8C9644B188EE ] cdrom C:\windows\System32\drivers\cdrom.sys
23:01:49.0414 9236 cdrom - ok
23:01:49.0430 9236 [ BAF8F0F55BC300E5F882E521F054E345 ] CertPropSvc C:\windows\System32\certprop.dll
23:01:49.0430 9236 CertPropSvc - ok
23:01:49.0446 9236 [ F64B7D1A37CC1D5F421D5359EEC81E2E ] circlass C:\windows\System32\drivers\circlass.sys
23:01:49.0446 9236 circlass - ok
23:01:49.0446 9236 [ 9905168708DB68849B879B5548F68AB3 ] CLFS C:\windows\system32\drivers\CLFS.sys
23:01:49.0461 9236 CLFS - ok
23:01:49.0477 9236 [ 075CCE75090786F124573A788C8656E6 ] CLVirtualDrive C:\windows\system32\DRIVERS\CLVirtualDrive.sys
23:01:49.0477 9236 CLVirtualDrive - ok
23:01:49.0477 9236 [ 2DC8538A2260647484A6C921CA837313 ] CmBatt C:\windows\System32\drivers\CmBatt.sys
23:01:49.0477 9236 CmBatt - ok
23:01:49.0539 9236 [ E708BFF0473EC6B271EA46B65B16CA56 ] CNG C:\windows\system32\Drivers\cng.sys
23:01:49.0539 9236 CNG - ok
23:01:49.0555 9236 [ 0E5B1E9E7122EDAAF1F6CE047965CA92 ] CompositeBus C:\windows\System32\drivers\CompositeBus.sys
23:01:49.0555 9236 CompositeBus - ok
23:01:49.0555 9236 COMSysApp - ok
23:01:49.0571 9236 [ D9CB0782AF819548072AA45B70F8B22D ] condrv C:\windows\system32\drivers\condrv.sys
23:01:49.0571 9236 condrv - ok
23:01:49.0618 9236 [ 5CE2742F063731EC10C1B2EE386A2C08 ] CryptSvc C:\windows\system32\cryptsvc.dll
23:01:49.0618 9236 CryptSvc - ok
23:01:49.0664 9236 [ FAEF4C245BE832DB41B15DAAC336AFB7 ] dam C:\windows\system32\drivers\dam.sys
23:01:49.0664 9236 dam - ok
23:01:49.0696 9236 [ 1EC6E533C954BDDF2A37E7851A7E58FD ] DcomLaunch C:\windows\system32\rpcss.dll
23:01:49.0711 9236 DcomLaunch - ok
23:01:49.0727 9236 [ C8650D1F61149AA546BDBC99172EBBC1 ] defragsvc C:\windows\System32\defragsvc.dll
23:01:49.0727 9236 defragsvc - ok
23:01:49.0743 9236 [ 5EAEF67AE2AF4D2DC664B649DB7B2E16 ] DeviceAssociationService C:\windows\system32\das.dll
23:01:49.0743 9236 DeviceAssociationService - ok

Re: HiJackThis LOG

Napsal: 22 úno 2014 23:36
od Mejssi
23:01:49.0774 9236 [ 799BE46D45D486704CE0F37CA5385262 ] DeviceInstall C:\windows\system32\umpnpmgr.dll
23:01:49.0774 9236 DeviceInstall - ok
23:01:49.0789 9236 [ 09D9EB9E7898F8E6561473A20CC808B9 ] Dfsc C:\windows\system32\Drivers\dfsc.sys
23:01:49.0789 9236 Dfsc - ok
23:01:49.0852 9236 [ 9E0E72222264745ADEB0E5AC680B0ED6 ] Dhcp C:\windows\system32\dhcpcore.dll
23:01:49.0852 9236 Dhcp - ok
23:01:49.0852 9236 [ 3C736FAE17BA6F91BA37594AAB139CD0 ] discache C:\windows\system32\drivers\discache.sys
23:01:49.0852 9236 discache - ok
23:01:49.0899 9236 [ AE3786294CC246A5403783E1B86A0168 ] disk C:\windows\system32\drivers\disk.sys
23:01:49.0899 9236 disk - ok
23:01:49.0914 9236 [ 82A7C72593793FE1EADA7A305BD1567A ] dmvsc C:\windows\System32\drivers\dmvsc.sys
23:01:49.0914 9236 dmvsc - ok
23:01:49.0961 9236 [ 066B9710B36AB550E01EEFCA52155968 ] Dnscache C:\windows\System32\dnsrslvr.dll
23:01:49.0961 9236 Dnscache - ok
23:01:49.0993 9236 [ 9949AD2ABA168A618D46C799D6CC898C ] dot3svc C:\windows\System32\dot3svc.dll
23:01:49.0993 9236 dot3svc - ok
23:01:50.0008 9236 [ 109FC3F80BF4F4DC5A071058074F13C1 ] DPS C:\windows\system32\dps.dll
23:01:50.0008 9236 DPS - ok
23:01:50.0039 9236 [ 9C7C183F937951AE17C5B8B3259CF3FF ] drmkaud C:\windows\system32\drivers\drmkaud.sys
23:01:50.0039 9236 drmkaud - ok
23:01:50.0086 9236 [ F87F4AAAF6664906248D11D5E579A53B ] DsmSvc C:\windows\System32\DeviceSetupManager.dll
23:01:50.0086 9236 DsmSvc - ok
23:01:50.0133 9236 [ 6A0E850DDCB136AA3D2FB7234382DF12 ] dtsoftbus01 C:\windows\System32\drivers\dtsoftbus01.sys
23:01:50.0133 9236 dtsoftbus01 - ok
23:01:50.0196 9236 [ E6AF4DF1817953D73C519B17CF849756 ] DXGKrnl C:\windows\System32\drivers\dxgkrnl.sys
23:01:50.0196 9236 DXGKrnl - ok
23:01:50.0227 9236 [ 651FBD69A9713D623D456A240F96179C ] e1iexpress C:\windows\system32\DRIVERS\e1i63x64.sys
23:01:50.0227 9236 e1iexpress - ok
23:01:50.0227 9236 EagleX64 - ok
23:01:50.0243 9236 [ 58BA473DD88F5FC1932282BA683AA03E ] Eaphost C:\windows\System32\eapsvc.dll
23:01:50.0258 9236 Eaphost - ok
23:01:50.0305 9236 [ 5AB97B3282D7D6114949D1EB5C8598E4 ] ebdrv C:\windows\system32\drivers\evbda.sys
23:01:50.0321 9236 ebdrv - ok
23:01:50.0368 9236 [ F702AB6181513303AB0FC8D59E52708B ] EFS C:\windows\System32\lsass.exe
23:01:50.0368 9236 EFS - ok
23:01:50.0399 9236 [ 66D60BD9A4C05616ABECA2A901475098 ] EhStorClass C:\windows\system32\drivers\EhStorClass.sys
23:01:50.0399 9236 EhStorClass - ok
23:01:50.0415 9236 [ A61D0F543024E458C0FE32352E1978E2 ] EhStorTcgDrv C:\windows\system32\drivers\EhStorTcgDrv.sys
23:01:50.0415 9236 EhStorTcgDrv - ok
23:01:50.0415 9236 [ D790D058D67582DB9C84C2D33695FE6B ] ErrDev C:\windows\System32\drivers\errdev.sys
23:01:50.0415 9236 ErrDev - ok
23:01:50.0446 9236 esgiguard - ok
23:01:50.0461 9236 [ F9E01C2D9F8BC049E04CF5DC24A5F638 ] EventSystem C:\windows\system32\es.dll
23:01:50.0461 9236 EventSystem - ok
23:01:50.0477 9236 [ 7A4D6FEB8C52B3FE855E4DCDF9107E03 ] exfat C:\windows\system32\drivers\exfat.sys
23:01:50.0477 9236 exfat - ok
23:01:50.0508 9236 FairplayKD - ok
23:01:50.0539 9236 [ 60996602A7111FD2D086E803F33E4282 ] fastfat C:\windows\system32\drivers\fastfat.sys
23:01:50.0539 9236 fastfat - ok
23:01:50.0555 9236 [ F0E7F8382ED5E138B0DFA4CB5058BCFE ] Fax C:\windows\system32\fxssvc.exe
23:01:50.0571 9236 Fax - ok
23:01:50.0586 9236 [ 73B2D11DF0B6E03A0CB0323218ACB3E4 ] fdc C:\windows\System32\drivers\fdc.sys
23:01:50.0586 9236 fdc - ok
23:01:50.0602 9236 [ 0828E3E7BD77C89149EAD3232BFD38DB ] fdPHost C:\windows\system32\fdPHost.dll
23:01:50.0602 9236 fdPHost - ok
23:01:50.0602 9236 [ 872506AAB591E8908DF4461475AF92DF ] FDResPub C:\windows\system32\fdrespub.dll
23:01:50.0602 9236 FDResPub - ok
23:01:50.0649 9236 [ 0588950D93A426F97C7AAADB1A9B0458 ] fhsvc C:\windows\system32\fhsvc.dll
23:01:50.0649 9236 fhsvc - ok
23:01:50.0680 9236 [ 88A9EBACD1058ABB237A6B4E96E7F397 ] FileInfo C:\windows\system32\drivers\fileinfo.sys
23:01:50.0680 9236 FileInfo - ok
23:01:50.0680 9236 [ 9E4EE3A0B00FF7D5F42A4AF9744CBA02 ] Filetrace C:\windows\system32\drivers\filetrace.sys
23:01:50.0680 9236 Filetrace - ok
23:01:50.0696 9236 [ B1D4C168FF7B8579E3745888658FFB1D ] flpydisk C:\windows\System32\drivers\flpydisk.sys
23:01:50.0696 9236 flpydisk - ok
23:01:50.0711 9236 [ B33EC133AE4E6C1881D2302D93D2467D ] FltMgr C:\windows\system32\drivers\fltmgr.sys
23:01:50.0711 9236 FltMgr - ok
23:01:50.0758 9236 [ 0BCDC0FF11B984162B0CF0FF6E9E0146 ] FontCache C:\windows\system32\FntCache.dll
23:01:50.0774 9236 FontCache - ok
23:01:50.0805 9236 [ 0B56259F5611787222A04A8F254E51D4 ] FontCache3.0.0.0 C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
23:01:50.0805 9236 FontCache3.0.0.0 - ok
23:01:50.0821 9236 [ A5F7873A39E4E9FAAAE59B7E9E36B705 ] FsDepends C:\windows\system32\drivers\FsDepends.sys
23:01:50.0836 9236 FsDepends - ok
23:01:50.0836 9236 [ A6DD7D491F587F4BC13FB972977DC8E8 ] Fs_Rec C:\windows\system32\drivers\Fs_Rec.sys
23:01:50.0836 9236 Fs_Rec - ok
23:01:50.0961 9236 [ 014195B03B378CFEAA029958CBC53695 ] fussvc C:\Program Files (x86)\Windows Kits\8.1\App Certification Kit\fussvc.exe
23:01:50.0977 9236 fussvc - ok
23:01:51.0008 9236 [ C1646A95EAC515F60CDB2A7A8A013C1E ] fvevol C:\windows\system32\DRIVERS\fvevol.sys
23:01:51.0024 9236 fvevol - ok
23:01:51.0040 9236 [ A969D92973DFA895E7776B4BFE36DBB2 ] FxPPM C:\windows\System32\drivers\fxppm.sys
23:01:51.0040 9236 FxPPM - ok
23:01:51.0055 9236 [ 52BC441E07A827EBAB70CDC7EAEDB28D ] gagp30kx C:\windows\system32\drivers\gagp30kx.sys
23:01:51.0055 9236 gagp30kx - ok
23:01:51.0071 9236 [ 721F8EEF5E9747F32670DEFF7FB92541 ] gencounter C:\windows\System32\drivers\vmgencounter.sys
23:01:51.0071 9236 gencounter - ok
23:01:51.0118 9236 [ FC2B8B06BDBD3B6457F5A3DA9AD2410E ] GPIOClx0101 C:\windows\system32\Drivers\msgpioclx.sys
23:01:51.0118 9236 GPIOClx0101 - ok
23:01:51.0165 9236 [ 5358678C6370F2ADC5291849F6503262 ] gpsvc C:\windows\System32\gpsvc.dll
23:01:51.0165 9236 gpsvc - ok
23:01:51.0258 9236 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
23:01:51.0258 9236 gupdate - ok
23:01:51.0258 9236 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
23:01:51.0258 9236 gupdatem - ok
23:01:51.0305 9236 [ 4DBF4C90A50C105A80EACD9B2FCCBC96 ] hamachi C:\windows\system32\DRIVERS\Hamdrv.sys
23:01:51.0305 9236 hamachi - ok
23:01:51.0383 9236 [ 55706A31E8E2E67763ECD10F19CC3449 ] Hamachi2Svc C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
23:01:51.0399 9236 Hamachi2Svc - ok
23:01:51.0415 9236 [ 630555943E5A3FE21010CE91EC7FC84F ] HdAudAddService C:\windows\system32\drivers\HdAudio.sys
23:01:51.0415 9236 HdAudAddService - ok
23:01:51.0446 9236 [ 7D87B5B6C7188D553E11B59DC7F0B111 ] HDAudBus C:\windows\System32\drivers\HDAudBus.sys
23:01:51.0446 9236 HDAudBus - ok
23:01:51.0461 9236 [ 3F76BBA53D65E85A7F53E7A71082082C ] HidBatt C:\windows\System32\drivers\HidBatt.sys
23:01:51.0461 9236 HidBatt - ok
23:01:51.0493 9236 [ 085F150D002B7F0153D3C06DDF33A143 ] HidBth C:\windows\System32\drivers\hidbth.sys
23:01:51.0493 9236 HidBth - ok
23:01:51.0508 9236 [ CC4A07E51D89575CAB6F4EB590D87CD4 ] hidi2c C:\windows\System32\drivers\hidi2c.sys
23:01:51.0508 9236 hidi2c - ok
23:01:51.0508 9236 [ DC96F7DACB777CDEAEF9958A50BFDA06 ] HidIr C:\windows\System32\drivers\hidir.sys
23:01:51.0524 9236 HidIr - ok
23:01:51.0540 9236 [ FAC37D7B3D6354A5A5E19A45B50B4008 ] hidserv C:\windows\system32\hidserv.dll
23:01:51.0540 9236 hidserv - ok
23:01:51.0586 9236 [ 012C354B4AB48E9A7A657DF39E3A2073 ] HidUsb C:\windows\System32\drivers\hidusb.sys
23:01:51.0586 9236 HidUsb - ok
23:01:51.0602 9236 [ 43F884B61A24377567CD0FEB35236334 ] hkmsvc C:\windows\system32\kmsvc.dll
23:01:51.0602 9236 hkmsvc - ok
23:01:51.0649 9236 [ 33DFC14DFDCCFA7AA10E392F6A8EC1CF ] HomeGroupListener C:\windows\system32\ListSvc.dll
23:01:51.0649 9236 HomeGroupListener - ok
23:01:51.0680 9236 [ E0D9F6FE18FA7F53ADD29AF719CE2B7E ] HomeGroupProvider C:\windows\system32\provsvc.dll
23:01:51.0680 9236 HomeGroupProvider - ok
23:01:51.0727 9236 [ BB1FC298BE53AAB1E110F6E786BD8AC5 ] HP Support Assistant Service C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
23:01:51.0727 9236 HP Support Assistant Service - ok
23:01:51.0758 9236 [ E2550FBBBA31E2D4F9757E0A533689F0 ] HPConnectedRemote c:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPConnectedRemoteService.exe
23:01:51.0758 9236 HPConnectedRemote - ok
23:01:51.0805 9236 [ 9B7EDD3FE7C211C36E921D34D18A3A0A ] hpqwmiex C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
23:01:51.0805 9236 hpqwmiex - ok
23:01:51.0836 9236 [ 64DB7A8D97CA53DCCF93D0A1E08342CF ] HpSAMD C:\windows\system32\drivers\HpSAMD.sys
23:01:51.0836 9236 HpSAMD - ok
23:01:51.0899 9236 [ F4A91D985EB9D1D2717D538F3424603C ] HTTP C:\windows\system32\drivers\HTTP.sys
23:01:51.0899 9236 HTTP - ok
23:01:51.0915 9236 [ 2A98301068801700906C06649860FE94 ] hwpolicy C:\windows\system32\drivers\hwpolicy.sys
23:01:51.0915 9236 hwpolicy - ok
23:01:51.0930 9236 [ DC76901D82097C9E297F20C287CB9A27 ] hyperkbd C:\windows\System32\drivers\hyperkbd.sys
23:01:51.0930 9236 hyperkbd - ok
23:01:51.0930 9236 [ 716413AB3CA12DE0A7222D28C1C9352C ] HyperVideo C:\windows\system32\DRIVERS\HyperVideo.sys
23:01:51.0930 9236 HyperVideo - ok
23:01:51.0946 9236 [ C9E9CBF73AFFBFE3E801EFB516787BA3 ] i8042prt C:\windows\System32\drivers\i8042prt.sys
23:01:51.0946 9236 i8042prt - ok
23:01:51.0961 9236 [ 5E394EBD26FD68AA9300332C46BEDD62 ] iaStorV C:\windows\system32\drivers\iaStorV.sys
23:01:51.0961 9236 iaStorV - ok
23:01:52.0086 9236 [ 83915E05E168AB63B48302F7DC5D8E00 ] igfx C:\windows\system32\DRIVERS\igdkmd64.sys
23:01:52.0133 9236 igfx - ok
23:01:52.0149 9236 [ 24847A06B84339FEEDE5CABF3D27D320 ] iirsp C:\windows\system32\drivers\iirsp.sys
23:01:52.0149 9236 iirsp - ok
23:01:52.0243 9236 [ E455C83E029121270BED73CDAC381F37 ] IKEEXT C:\windows\System32\ikeext.dll
23:01:52.0258 9236 IKEEXT - ok
23:01:52.0290 9236 [ C99F8E90DE4B8F0C7FE15BB1CBCD29DC ] Intel(R) Capability Licensing Service Interface c:\Program Files\Intel\iCLS Client\HeciServer.exe
23:01:52.0290 9236 Intel(R) Capability Licensing Service Interface - ok
23:01:52.0321 9236 [ 30E9FAC23E2537D82F2836CB81AEE186 ] Intel(R) ME Service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
23:01:52.0321 9236 Intel(R) ME Service - ok
23:01:52.0336 9236 [ 4F37726CF764CA18A8A84F85EF3A7F24 ] intelide C:\windows\system32\drivers\intelide.sys
23:01:52.0336 9236 intelide - ok
23:01:52.0352 9236 [ E15CDF68DD73423F15D4AC404793AF0D ] intelppm C:\windows\System32\drivers\intelppm.sys
23:01:52.0352 9236 intelppm - ok
23:01:52.0383 9236 [ 8FCA66234A0933D796BB780B7953BAB9 ] IpFilterDriver C:\windows\system32\DRIVERS\ipfltdrv.sys
23:01:52.0383 9236 IpFilterDriver - ok
23:01:52.0430 9236 [ C217B8D2E58C57A319B16125C3D4B69C ] iphlpsvc C:\windows\System32\iphlpsvc.dll
23:01:52.0446 9236 iphlpsvc - ok
23:01:52.0446 9236 [ 6E98A046A12AA113F8898AA5D612BD6E ] IPMIDRV C:\windows\System32\drivers\IPMIDrv.sys
23:01:52.0446 9236 IPMIDRV - ok
23:01:52.0446 9236 [ 3969B9C218DD3FAA9F4ED2FFC3651C02 ] IPNAT C:\windows\system32\drivers\ipnat.sys
23:01:52.0446 9236 IPNAT - ok
23:01:52.0513 9236 [ 30228DC3268ADAA214B03A3948CA85BC ] IpOverUsbSvc C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\Bin\IpOverUsbSvc.exe
23:01:52.0513 9236 IpOverUsbSvc - ok
23:01:52.0528 9236 [ 25CD7C4BB2863FFC2B0B311F0AEBF77C ] IRENUM C:\windows\system32\drivers\irenum.sys
23:01:52.0528 9236 IRENUM - ok
23:01:52.0560 9236 [ D940C5BB9DC92E588533C19ABCC3D2C2 ] isapnp C:\windows\system32\drivers\isapnp.sys
23:01:52.0560 9236 isapnp - ok
23:01:52.0591 9236 [ 69C8BF0BC2B0EA10F130F4D3104DC2EF ] iScsiPrt C:\windows\System32\drivers\msiscsi.sys
23:01:52.0591 9236 iScsiPrt - ok
23:01:52.0607 9236 [ 3C4002D339491AF73D663FFC7F6E5ECB ] jhi_service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
23:01:52.0622 9236 jhi_service - ok
23:01:52.0669 9236 [ 8FBD94B69D6423E20ABCD59D86368B21 ] kbdclass C:\windows\System32\drivers\kbdclass.sys
23:01:52.0669 9236 kbdclass - ok
23:01:52.0685 9236 [ E88C932ABDF8185A62C8F2FC7B051FB6 ] kbdhid C:\windows\System32\drivers\kbdhid.sys
23:01:52.0685 9236 kbdhid - ok
23:01:52.0716 9236 [ FB6C185092E18011EF49989425C2AA87 ] kdnic C:\windows\system32\DRIVERS\kdnic.sys
23:01:52.0716 9236 kdnic - ok
23:01:52.0716 9236 [ F702AB6181513303AB0FC8D59E52708B ] KeyIso C:\windows\system32\lsass.exe
23:01:52.0716 9236 KeyIso - ok
23:01:52.0747 9236 [ DFA480F6DED551464F3A5B959F437800 ] KSecDD C:\windows\system32\Drivers\ksecdd.sys
23:01:52.0747 9236 KSecDD - ok
23:01:52.0794 9236 [ 127FB0AAD232BAAD2C9BBACD374F4FC5 ] KSecPkg C:\windows\system32\Drivers\ksecpkg.sys
23:01:52.0794 9236 KSecPkg - ok
23:01:52.0810 9236 [ 81492FEEBF2F26455B00EE8DBAE8A1B0 ] ksthunk C:\windows\system32\drivers\ksthunk.sys
23:01:52.0810 9236 ksthunk - ok
23:01:52.0841 9236 [ 5825DBACEDC3812B5CF8D40B997BF210 ] KtmRm C:\windows\system32\msdtckrm.dll
23:01:52.0841 9236 KtmRm - ok
23:01:52.0872 9236 [ 256EE31588257E8A555DBFAA13F1908E ] LanmanServer C:\windows\system32\srvsvc.dll
23:01:52.0872 9236 LanmanServer - ok
23:01:52.0888 9236 [ 16650912BE5A94B40E0B3B4C39652B56 ] LanmanWorkstation C:\windows\System32\wkssvc.dll
23:01:52.0888 9236 LanmanWorkstation - ok
23:01:52.0903 9236 [ CEEFD29FC551F289810B0B9381B321DC ] lltdio C:\windows\system32\DRIVERS\lltdio.sys
23:01:52.0903 9236 lltdio - ok
23:01:52.0919 9236 [ BCF53485E0A94722CDE3C4A93CD8EB8C ] lltdsvc C:\windows\System32\lltdsvc.dll
23:01:52.0919 9236 lltdsvc - ok
23:01:52.0935 9236 [ 5A2F7F1CBC2E631A497DAD16164E06D2 ] lmhosts C:\windows\System32\lmhsvc.dll
23:01:52.0935 9236 lmhosts - ok
23:01:52.0982 9236 [ 206D1495952A86E30CC997EA10A68A6C ] LMIGuardianSvc C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
23:01:52.0997 9236 LMIGuardianSvc - ok
23:01:53.0013 9236 [ 4269D44BB47A6DA5D80B11F4C8536458 ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
23:01:53.0013 9236 LMS - ok
23:01:53.0028 9236 [ 022CDD12161B063D7852B1075BF3FFF2 ] LSI_SAS C:\windows\system32\drivers\lsi_sas.sys
23:01:53.0028 9236 LSI_SAS - ok
23:01:53.0044 9236 [ 07AD59D669B996F29F91817F0ECFA34F ] LSI_SAS2 C:\windows\system32\drivers\lsi_sas2.sys
23:01:53.0044 9236 LSI_SAS2 - ok
23:01:53.0044 9236 [ 216FB796AA4E252ACCE93B1BCB80B5EC ] LSI_SCSI C:\windows\system32\drivers\lsi_scsi.sys
23:01:53.0044 9236 LSI_SCSI - ok
23:01:53.0044 9236 [ 5E80530AF37102488EE980B4A92AF99F ] LSI_SSS C:\windows\system32\drivers\lsi_sss.sys
23:01:53.0044 9236 LSI_SSS - ok
23:01:53.0091 9236 [ A57BA284F5996FFD32DCDBC41A4657DB ] LSM C:\windows\System32\lsm.dll
23:01:53.0107 9236 LSM - ok
23:01:53.0107 9236 [ 2BDC5D711FA61307CE6190D47C956368 ] luafv C:\windows\system32\drivers\luafv.sys
23:01:53.0107 9236 luafv - ok
23:01:53.0169 9236 [ 024DA28053D57E9E32BEE52600576BBB ] MarvinBus C:\windows\System32\drivers\MarvinBus64.sys
23:01:53.0169 9236 MarvinBus - ok
23:01:53.0216 9236 [ 0BB97D43299910CBFBA59C461B99B910 ] MBAMProtector C:\windows\system32\drivers\mbam.sys
23:01:53.0216 9236 MBAMProtector - ok
23:01:53.0263 9236 [ 65085456FD9A74D7F1A999520C299ECB ] MBAMScheduler C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
23:01:53.0263 9236 MBAMScheduler - ok
23:01:53.0278 9236 [ E0D7732F2D2E24B2DB3F67B6750295B8 ] MBAMService C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
23:01:53.0278 9236 MBAMService - ok
23:01:53.0482 9236 [ 43E7E1D311AC37995E9AA7248A19F67B ] McMyAdmin C:\Users\Irena\Desktop\Kluci\Patosik\MCMyServerAdmin\MCMA_Service.exe
23:01:53.0482 9236 McMyAdmin - ok
23:01:53.0513 9236 [ 9B0D829C3BE4E7472DB9DD2B79908E3C ] megasas C:\windows\system32\drivers\megasas.sys
23:01:53.0513 9236 megasas - ok
23:01:53.0513 9236 [ ECC3F54C7AFC318271C4F0B4606D8DB0 ] MegaSR C:\windows\system32\drivers\MegaSR.sys
23:01:53.0513 9236 MegaSR - ok
23:01:53.0544 9236 [ 772A1DEEDFDBC244183B5C805D1B7D85 ] MEIx64 C:\windows\System32\drivers\HECIx64.sys
23:01:53.0544 9236 MEIx64 - ok
23:01:53.0622 9236 Microsoft SharePoint Workspace Audit Service - ok
23:01:53.0653 9236 [ EEE908BE7143FCA48CF0CB87214E2AB8 ] MMCSS C:\windows\system32\mmcss.dll
23:01:53.0653 9236 MMCSS - ok
23:01:53.0669 9236 [ 780098AD5DA8A4822E2563984C85EF7B ] Modem C:\windows\system32\drivers\modem.sys
23:01:53.0669 9236 Modem - ok
23:01:53.0716 9236 [ EA8EAD3F5B762F889CC7F3966625B48B ] monitor C:\windows\System32\drivers\monitor.sys
23:01:53.0716 9236 monitor - ok
23:01:53.0732 9236 [ 618446B98C79776654340CE27C73485E ] mouclass C:\windows\System32\drivers\mouclass.sys
23:01:53.0732 9236 mouclass - ok
23:01:53.0747 9236 [ C0ADEBED913295803B579ED288936CBB ] mouhid C:\windows\System32\drivers\mouhid.sys
23:01:53.0747 9236 mouhid - ok
23:01:53.0763 9236 [ 89D263DBF08119CE16273991C120D6DD ] mountmgr C:\windows\system32\drivers\mountmgr.sys
23:01:53.0763 9236 mountmgr - ok
23:01:53.0810 9236 [ 338037EFA0E8E8699B2667D57B751574 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
23:01:53.0810 9236 MozillaMaintenance - ok
23:01:53.0841 9236 [ 4CCBBD4944777CA100B9A6C2F149A46F ] mpsdrv C:\windows\system32\drivers\mpsdrv.sys
23:01:53.0841 9236 mpsdrv - ok
23:01:53.0857 9236 [ 9DE3341BD4E14BC5FADFCAD3019F2D0D ] MpsSvc C:\windows\system32\mpssvc.dll
23:01:53.0872 9236 MpsSvc - ok
23:01:53.0888 9236 [ 3D70147F55F1EC84EB9139ED7FFE48BC ] MRxDAV C:\windows\system32\drivers\mrxdav.sys
23:01:53.0888 9236 MRxDAV - ok
23:01:53.0935 9236 [ 93179D48066918323628CB016D8C94DC ] mrxsmb C:\windows\system32\DRIVERS\mrxsmb.sys
23:01:53.0935 9236 mrxsmb - ok
23:01:53.0950 9236 [ 06D5F2FA3C61E8EA91648EA8E9F99FD3 ] mrxsmb10 C:\windows\system32\DRIVERS\mrxsmb10.sys
23:01:53.0950 9236 mrxsmb10 - ok
23:01:53.0966 9236 [ 5C7DD2E5759FFCCD2C7341C1B90F2B26 ] mrxsmb20 C:\windows\system32\DRIVERS\mrxsmb20.sys
23:01:53.0966 9236 mrxsmb20 - ok
23:01:53.0982 9236 [ 98487487D6B3797CA927E9D7B030AE13 ] MsBridge C:\windows\system32\DRIVERS\bridge.sys
23:01:53.0982 9236 MsBridge - ok
23:01:54.0013 9236 [ 4A07458EB4F17573BD39F22029A991C1 ] MSDTC C:\windows\System32\msdtc.exe
23:01:54.0013 9236 MSDTC - ok
23:01:54.0028 9236 [ 3886F1F2A4D2900ABAA7E4486BEEE6A2 ] Msfs C:\windows\system32\drivers\Msfs.sys
23:01:54.0028 9236 Msfs - ok
23:01:54.0075 9236 [ C32A7A39B960A42BA9D4FBE47213CA03 ] msgpiowin32 C:\windows\System32\drivers\msgpiowin32.sys
23:01:54.0075 9236 msgpiowin32 - ok
23:01:54.0107 9236 [ D3857A767B91A061B408CCAB02DA4F40 ] mshidkmdf C:\windows\System32\drivers\mshidkmdf.sys
23:01:54.0107 9236 mshidkmdf - ok
23:01:54.0107 9236 [ 839B48910FB1E887635C48F3EC11A05E ] mshidumdf C:\windows\System32\drivers\mshidumdf.sys
23:01:54.0107 9236 mshidumdf - ok
23:01:54.0122 9236 [ 55C0DB741E3AB7463242B185B1C2997C ] msisadrv C:\windows\system32\drivers\msisadrv.sys
23:01:54.0122 9236 msisadrv - ok
23:01:54.0138 9236 [ 216C6B035A4BA5560E1255BD8E5BB89F ] MSiSCSI C:\windows\system32\iscsiexe.dll
23:01:54.0138 9236 MSiSCSI - ok
23:01:54.0138 9236 msiserver - ok
23:01:54.0153 9236 [ 509809566E49F4411055864EA8D437CD ] MSKSSRV C:\windows\system32\drivers\MSKSSRV.sys
23:01:54.0153 9236 MSKSSRV - ok
23:01:54.0169 9236 [ 63145201D6458E4958E572E7D6FC2604 ] MsLldp C:\windows\system32\DRIVERS\mslldp.sys
23:01:54.0169 9236 MsLldp - ok
23:01:54.0169 9236 [ 99D526E803DB6D7FF290FD98B6204641 ] MSPCLOCK C:\windows\system32\drivers\MSPCLOCK.sys
23:01:54.0169 9236 MSPCLOCK - ok
23:01:54.0169 9236 [ 06FA77C3E2A491ADCD704C5E73006269 ] MSPQM C:\windows\system32\drivers\MSPQM.sys
23:01:54.0169 9236 MSPQM - ok
23:01:54.0200 9236 [ E134EC4DE11CF78CB01432D180710D84 ] MsRPC C:\windows\system32\drivers\MsRPC.sys
23:01:54.0200 9236 MsRPC - ok
23:01:54.0200 9236 [ B5AECF12F09DEE97C9FCAA5BA016CE1E ] mssmbios C:\windows\System32\drivers\mssmbios.sys
23:01:54.0200 9236 mssmbios - ok
23:01:54.0216 9236 [ 72D66A05E0F99F2528F6C6204FD22AA1 ] MSTEE C:\windows\system32\drivers\MSTEE.sys
23:01:54.0216 9236 MSTEE - ok
23:01:54.0232 9236 [ 8AAAE399FC255FA105D4158CBA289001 ] MTConfig C:\windows\System32\drivers\MTConfig.sys
23:01:54.0232 9236 MTConfig - ok
23:01:54.0232 9236 [ 3BCB702F3E6CC622DCAFCAA45D7CDE0A ] Mup C:\windows\system32\Drivers\mup.sys
23:01:54.0232 9236 Mup - ok
23:01:54.0232 9236 [ 3A1E095277BBD406CEA8EA6B76950664 ] mvumis C:\windows\system32\drivers\mvumis.sys
23:01:54.0232 9236 mvumis - ok
23:01:54.0263 9236 [ 4B18840511D720BA118D3017E8165875 ] napagent C:\windows\system32\qagentRT.dll
23:01:54.0263 9236 napagent - ok
23:01:54.0278 9236 [ 43D7388A90A4C6EA346A4D6FF0377479 ] NativeWifiP C:\windows\system32\DRIVERS\nwifi.sys
23:01:54.0278 9236 NativeWifiP - ok
23:01:54.0310 9236 [ 6A0C3996DA7DAE6D6939676D786EEEC4 ] NcaSvc C:\windows\System32\ncasvc.dll
23:01:54.0310 9236 NcaSvc - ok
23:01:54.0325 9236 [ C982FE4CC91DECE2259F494FCEB4030F ] NcdAutoSetup C:\windows\System32\NcdAutoSetup.dll
23:01:54.0325 9236 NcdAutoSetup - ok
23:01:54.0357 9236 [ A10E176F3B2BF83EDE7B5C4658C93B66 ] NDIS C:\windows\system32\drivers\ndis.sys
23:01:54.0357 9236 NDIS - ok
23:01:54.0388 9236 [ 39C8A1D9D46F5E83A016BCAB72455284 ] NdisCap C:\windows\system32\DRIVERS\ndiscap.sys
23:01:54.0388 9236 NdisCap - ok
23:01:54.0450 9236 [ 762941932B7E4C588E48A577BA9D6440 ] NdisImPlatform C:\windows\system32\DRIVERS\NdisImPlatform.sys
23:01:54.0450 9236 NdisImPlatform - ok
23:01:54.0466 9236 [ 7A6F8A6D0E01432EBA294EF29CDD0FA7 ] NdisTapi C:\windows\system32\DRIVERS\ndistapi.sys
23:01:54.0466 9236 NdisTapi - ok
23:01:54.0482 9236 [ 79AB68BB3FFF974AD4F41FA559F4EC67 ] Ndisuio C:\windows\system32\DRIVERS\ndisuio.sys
23:01:54.0482 9236 Ndisuio - ok
23:01:54.0497 9236 [ 62C7DBF4F9301F76CF87D4B9D8F57BF8 ] NdisWan C:\windows\system32\DRIVERS\ndiswan.sys
23:01:54.0497 9236 NdisWan - ok
23:01:54.0497 9236 [ 62C7DBF4F9301F76CF87D4B9D8F57BF8 ] NDISWANLEGACY C:\windows\system32\DRIVERS\ndiswan.sys
23:01:54.0497 9236 NDISWANLEGACY - ok
23:01:54.0513 9236 [ 3730942D7DB2F8BB5F84542B7FF6F650 ] NDProxy C:\windows\system32\drivers\NDProxy.sys
23:01:54.0513 9236 NDProxy - ok
23:01:54.0513 9236 [ D3F60A4345FCA9C1BE68AD7D0D6DE770 ] Ndu C:\windows\system32\drivers\Ndu.sys
23:01:54.0513 9236 Ndu - ok
23:01:54.0528 9236 [ 7C203A76394F9AE68F69EEE5F9612C4A ] NetBIOS C:\windows\system32\DRIVERS\netbios.sys
23:01:54.0528 9236 NetBIOS - ok
23:01:54.0528 9236 [ 7CEC25C682D319D484630B3952C31A11 ] NetBT C:\windows\system32\DRIVERS\netbt.sys
23:01:54.0528 9236 NetBT - ok
23:01:54.0544 9236 [ F702AB6181513303AB0FC8D59E52708B ] Netlogon C:\windows\system32\lsass.exe
23:01:54.0544 9236 Netlogon - ok
23:01:54.0560 9236 [ 89519D29CBEC2121CA65CC29C4D345E0 ] Netman C:\windows\System32\netman.dll
23:01:54.0560 9236 Netman - ok
23:01:54.0607 9236 [ 79FA9393C67EBBF92A56923592CF7A7C ] netprofm C:\windows\System32\netprofmsvc.dll
23:01:54.0622 9236 netprofm - ok
23:01:54.0685 9236 [ 5243CFC2E7161C91C2B355240035B9E4 ] NetTcpPortSharing C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
23:01:54.0685 9236 NetTcpPortSharing - ok
23:01:54.0700 9236 [ 12DD2800E4EEA37DC9AE256AD62423B4 ] nfrd960 C:\windows\system32\drivers\nfrd960.sys
23:01:54.0700 9236 nfrd960 - ok
23:01:54.0747 9236 [ 80ABCD4C2DE9FD832477303AE0CA3BE5 ] NlaSvc C:\windows\System32\nlasvc.dll
23:01:54.0763 9236 NlaSvc - ok
23:01:54.0810 9236 [ 351533ACC2A069B94E80BBFC177E8FDF ] npf C:\windows\system32\drivers\npf.sys
23:01:54.0810 9236 npf - ok
23:01:54.0810 9236 [ 17E19A742FB30C002F8B43575451DBE1 ] Npfs C:\windows\system32\drivers\Npfs.sys
23:01:54.0810 9236 Npfs - ok
23:01:54.0825 9236 [ 8ED299C30792544264E558BEA79F0947 ] npsvctrig C:\windows\System32\drivers\npsvctrig.sys
23:01:54.0825 9236 npsvctrig - ok
23:01:54.0841 9236 [ 832B5FDF0B5577713FD7F2465FCD0ACE ] nsi C:\windows\system32\nsisvc.dll
23:01:54.0841 9236 nsi - ok
23:01:54.0857 9236 [ 689B3B1E95C70ABF7AFF29F9406EF1E0 ] nsiproxy C:\windows\system32\drivers\nsiproxy.sys
23:01:54.0857 9236 nsiproxy - ok
23:01:54.0935 9236 [ 76929F4A69E425911A63B407E26C2589 ] Ntfs C:\windows\system32\drivers\Ntfs.sys
23:01:54.0935 9236 Ntfs - ok
23:01:54.0950 9236 [ 4163ADE07DB51843AE31F65B94F5398D ] Null C:\windows\system32\drivers\Null.sys
23:01:54.0950 9236 Null - ok
23:01:54.0966 9236 [ D6D34118263412D3AAA8348A9572B7F2 ] nvraid C:\windows\system32\drivers\nvraid.sys
23:01:54.0966 9236 nvraid - ok
23:01:54.0966 9236 [ 27AFC428D1D32ABD04A86763A4EDDEA9 ] nvstor C:\windows\system32\drivers\nvstor.sys
23:01:54.0966 9236 nvstor - ok
23:01:54.0966 9236 [ 051CFB5107BAAE510419BDC41F8C4036 ] nv_agp C:\windows\system32\drivers\nv_agp.sys
23:01:54.0966 9236 nv_agp - ok
23:01:55.0029 9236 [ 9D10F99A6712E28F8ACD5641E3A7EA6B ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
23:01:55.0029 9236 ose - ok
23:01:55.0138 9236 [ 61BFFB5F57AD12F83AB64B7181829B34 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
23:01:55.0169 9236 osppsvc - ok
23:01:55.0185 9236 [ AB76700D764A342D7475FB8F47CAB18C ] p2pimsvc C:\windows\system32\pnrpsvc.dll
23:01:55.0185 9236 p2pimsvc - ok
23:01:55.0200 9236 [ 4319FD931DCD796435ECB5DB4A04FBA5 ] p2psvc C:\windows\system32\p2psvc.dll
23:01:55.0216 9236 p2psvc - ok
23:01:55.0232 9236 [ 4563DAF8C6A740AD7F501E219BD10766 ] Parport C:\windows\System32\drivers\parport.sys
23:01:55.0232 9236 Parport - ok
23:01:55.0247 9236 [ D6ACCF9F2EEEEA711C14EFD976E573F3 ] partmgr C:\windows\system32\drivers\partmgr.sys
23:01:55.0247 9236 partmgr - ok
23:01:55.0294 9236 [ 4811D9EC53649105A5A8BEA661B0F936 ] PcaSvc C:\windows\System32\pcasvc.dll
23:01:55.0294 9236 PcaSvc - ok
23:01:55.0310 9236 [ 4A003E8F718C1E6A2050CA98CD53E3E2 ] pci C:\windows\system32\drivers\pci.sys
23:01:55.0310 9236 pci - ok
23:01:55.0357 9236 [ F9908D274D458220F91E89B54D78D837 ] pciide C:\windows\system32\drivers\pciide.sys
23:01:55.0357 9236 pciide - ok
23:01:55.0388 9236 [ 84D19CB6102627932DCB5DFDF89FE269 ] pcmcia C:\windows\system32\drivers\pcmcia.sys
23:01:55.0404 9236 pcmcia - ok
23:01:55.0404 9236 [ CEBBAD5391C2644560C55628A40BFD27 ] pcw C:\windows\system32\drivers\pcw.sys
23:01:55.0404 9236 pcw - ok
23:01:55.0419 9236 [ 0698DEDEAD6A00AD0D468C687D830FBF ] pdc C:\windows\system32\drivers\pdc.sys
23:01:55.0419 9236 pdc - ok
23:01:55.0435 9236 [ 61FE70659CD43E07F94DA4DC31DEC493 ] PEAUTH C:\windows\system32\drivers\peauth.sys
23:01:55.0450 9236 PEAUTH - ok
23:01:55.0544 9236 [ EB88FA19F0EA05DD04BE9C5FFEEFFE1A ] PerfHost C:\windows\SysWow64\perfhost.exe
23:01:55.0544 9236 PerfHost - ok
23:01:55.0580 9236 [ 6E84BFF58F7643499277F29DFA2F8C8D ] pla C:\windows\system32\pla.dll
23:01:55.0595 9236 pla - ok
23:01:55.0611 9236 [ 799BE46D45D486704CE0F37CA5385262 ] PlugPlay C:\windows\system32\umpnpmgr.dll
23:01:55.0627 9236 PlugPlay - ok
23:01:55.0642 9236 [ 8E2414E818C26C4A9C70CB2B8567F04F ] PNRPAutoReg C:\windows\system32\pnrpauto.dll
23:01:55.0642 9236 PNRPAutoReg - ok
23:01:55.0658 9236 [ AB76700D764A342D7475FB8F47CAB18C ] PNRPsvc C:\windows\system32\pnrpsvc.dll
23:01:55.0658 9236 PNRPsvc - ok
23:01:55.0674 9236 [ 0108C8E5176D590F242701EF5A62CC26 ] PolicyAgent C:\windows\System32\ipsecsvc.dll
23:01:55.0674 9236 PolicyAgent - ok
23:01:55.0736 9236 [ F1E067F56373F11EA4B785CAE823740A ] Power C:\windows\system32\umpo.dll
23:01:55.0736 9236 Power - ok
23:01:55.0752 9236 [ 362D47E5B4D67270DE4B8606036F4ADD ] PptpMiniport C:\windows\system32\DRIVERS\raspptp.sys
23:01:55.0752 9236 PptpMiniport - ok
23:01:55.0830 9236 [ 9D59831262CAD44E709D695FC9D5E7AB ] PrintNotify C:\Windows\system32\spool\DRIVERS\x64\3\PrintConfig.dll
23:01:55.0845 9236 PrintNotify - ok
23:01:55.0877 9236 [ DD979EB6A7212F60E4AFBE96EDC7AE6D ] Processor C:\windows\System32\drivers\processr.sys
23:01:55.0877 9236 Processor - ok
23:01:55.0892 9236 [ 429E8502AD2227CF88F8840FC5BD590D ] ProfSvc C:\windows\system32\profsvc.dll
23:01:55.0892 9236 ProfSvc - ok
23:01:55.0924 9236 [ EB8034147D4820CD31BFCB11A2A652DF ] Psched C:\windows\system32\DRIVERS\pacer.sys
23:01:55.0924 9236 Psched - ok
23:01:55.0939 9236 [ 0AFBF333B6F87A2F598EAB379AF100B8 ] QWAVE C:\windows\system32\qwave.dll
23:01:55.0939 9236 QWAVE - ok
23:01:55.0955 9236 [ 13D47BB0CCA2FC51BD15F8E85C6A078E ] QWAVEdrv C:\windows\system32\drivers\qwavedrv.sys
23:01:55.0955 9236 QWAVEdrv - ok
23:01:55.0970 9236 [ 873C60F8178100557740A832FCE10B5F ] RasAcd C:\windows\system32\DRIVERS\rasacd.sys
23:01:55.0970 9236 RasAcd - ok
23:01:55.0986 9236 [ 69B93F623B130976243ECA3D84CC99CA ] RasAgileVpn C:\windows\system32\DRIVERS\AgileVpn.sys
23:01:55.0986 9236 RasAgileVpn - ok
23:01:56.0002 9236 [ 005F6E54C4A2DA4EBF68FB0392CE8BB0 ] RasAuto C:\windows\System32\rasauto.dll
23:01:56.0017 9236 RasAuto - ok
23:01:56.0033 9236 [ A14D625C5AEE5FFE0F47D1A1D419FAAE ] Rasl2tp C:\windows\system32\DRIVERS\rasl2tp.sys
23:01:56.0033 9236 Rasl2tp - ok
23:01:56.0049 9236 [ C923C785A2DE0B396AD6D13ACAFF2DE9 ] RasMan C:\windows\System32\rasmans.dll
23:01:56.0049 9236 RasMan - ok
23:01:56.0064 9236 [ 00695B9C2DB6111064499C529E90C042 ] RasPppoe C:\windows\system32\DRIVERS\raspppoe.sys
23:01:56.0064 9236 RasPppoe - ok
23:01:56.0064 9236 [ A7F24D8CD1956B0A1FDCB86CC5114DE4 ] RasSstp C:\windows\system32\DRIVERS\rassstp.sys
23:01:56.0064 9236 RasSstp - ok
23:01:56.0127 9236 [ CA03D642ACE58E1BA54E4B383F91CD69 ] rdbss C:\windows\system32\DRIVERS\rdbss.sys
23:01:56.0127 9236 rdbss - ok
23:01:56.0142 9236 [ CA7DF5EC95D8DE0DD24BE7FF97369F68 ] rdpbus C:\windows\System32\drivers\rdpbus.sys
23:01:56.0142 9236 rdpbus - ok
23:01:56.0142 9236 [ B2A3AD74FF2E2FFA73AF2567108231B3 ] RDPDR C:\windows\system32\drivers\rdpdr.sys
23:01:56.0142 9236 RDPDR - ok
23:01:56.0189 9236 [ 57F4787E4602A3FCA719C0A33137C6DA ] RdpVideoMiniport C:\windows\system32\drivers\rdpvideominiport.sys
23:01:56.0189 9236 RdpVideoMiniport - ok
23:01:56.0205 9236 [ B3CB0721E81E30419CE7D837EF4EA151 ] RDPWD C:\windows\system32\drivers\RDPWD.sys
23:01:56.0220 9236 RDPWD - ok
23:01:56.0236 9236 [ 62C1F8A0685FE07E998AA296C4F697C4 ] rdyboost C:\windows\system32\drivers\rdyboost.sys
23:01:56.0236 9236 rdyboost - ok
23:01:56.0252 9236 [ 3663CCF243EE0C04E9F6F91ED1737273 ] RemoteAccess C:\windows\System32\mprdim.dll
23:01:56.0252 9236 RemoteAccess - ok
23:01:56.0283 9236 [ E80DD61E52EDFFF9DA1ED7260A68855B ] RemoteRegistry C:\windows\system32\regsvc.dll
23:01:56.0283 9236 RemoteRegistry - ok
23:01:56.0330 9236 [ 73F2E030B5C24E4E41401B5F0D59E6FD ] RpcEptMapper C:\windows\System32\RpcEpMap.dll
23:01:56.0330 9236 RpcEptMapper - ok
23:01:56.0345 9236 [ 10B21284B3D964AB3DC45490E57D422E ] RpcLocator C:\windows\system32\locator.exe
23:01:56.0345 9236 RpcLocator - ok
23:01:56.0361 9236 [ 1EC6E533C954BDDF2A37E7851A7E58FD ] RpcSs C:\windows\system32\rpcss.dll
23:01:56.0377 9236 RpcSs - ok
23:01:56.0392 9236 [ E04E770DD198B9399640717145E79EBF ] rspndr C:\windows\system32\DRIVERS\rspndr.sys
23:01:56.0392 9236 rspndr - ok
23:01:56.0439 9236 [ C4BE01C55656888152F57CC7E35A2BE6 ] RTL8168 C:\windows\system32\DRIVERS\Rt630x64.sys
23:01:56.0439 9236 RTL8168 - ok
23:01:56.0517 9236 [ FEFA32073D77BB9C741A63B6286479F6 ] RzKLService C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe
23:01:56.0517 9236 RzKLService - ok
23:01:56.0533 9236 [ 752EC7DCD2F96871A3857EEE6AFE965A ] s3cap C:\windows\System32\drivers\vms3cap.sys
23:01:56.0533 9236 s3cap - ok
23:01:56.0580 9236 [ F702AB6181513303AB0FC8D59E52708B ] SamSs C:\windows\system32\lsass.exe
23:01:56.0595 9236 SamSs - ok
23:01:56.0595 9236 [ 9C7B28CE0D136DB226E24DB3BC817F92 ] sbp2port C:\windows\system32\drivers\sbp2port.sys
23:01:56.0595 9236 sbp2port - ok
23:01:56.0627 9236 [ 14316954FCE79C9DE5A0AFF9D42C83AA ] SCardSvr C:\windows\System32\SCardSvr.dll
23:01:56.0627 9236 SCardSvr - ok
23:01:56.0642 9236 [ 5D7733A12756B267FCA021672B26BC9E ] scfilter C:\windows\system32\DRIVERS\scfilter.sys
23:01:56.0642 9236 scfilter - ok
23:01:56.0705 9236 [ ED40ED9A65F3E79A8C43DD50C5FDADBF ] Schedule C:\windows\system32\schedsvc.dll
23:01:56.0720 9236 Schedule - ok
23:01:56.0752 9236 [ BAF8F0F55BC300E5F882E521F054E345 ] SCPolicySvc C:\windows\System32\certprop.dll
23:01:56.0752 9236 SCPolicySvc - ok
23:01:56.0783 9236 [ F58B030A0664385C707B8C1C63682041 ] sdbus C:\windows\System32\drivers\sdbus.sys
23:01:56.0783 9236 sdbus - ok
23:01:56.0814 9236 [ 92968277ED491E4B3DDA361E3952361E ] SDRSVC C:\windows\System32\SDRSVC.dll
23:01:56.0814 9236 SDRSVC - ok
23:01:56.0830 9236 [ BB107AA9980B0DA4E19A3A90C3BD4460 ] sdstor C:\windows\System32\drivers\sdstor.sys
23:01:56.0830 9236 sdstor - ok
23:01:56.0845 9236 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\windows\system32\drivers\secdrv.sys
23:01:56.0845 9236 secdrv - ok
23:01:56.0861 9236 [ CD282626738B6BC92B6E7CD0AAE95B63 ] seclogon C:\windows\system32\seclogon.dll
23:01:56.0861 9236 seclogon - ok
23:01:56.0877 9236 [ 9C51620998F0763039DFA6BF68E475ED ] SENS C:\windows\System32\sens.dll
23:01:56.0877 9236 SENS - ok
23:01:56.0908 9236 [ DDA4CAF29D8C0A297F886BFE561E6659 ] SensorsSimulatorDriver C:\windows\system32\DRIVERS\WUDFRd.sys
23:01:56.0908 9236 SensorsSimulatorDriver - ok
23:01:56.0924 9236 [ 0D50B4B860DAB65241628D04CD33ACAE ] SensrSvc C:\windows\system32\sensrsvc.dll
23:01:56.0939 9236 SensrSvc - ok
23:01:56.0955 9236 [ 87C46B239A7EEF30FDFDD5E9BD46130C ] SerCx C:\windows\system32\drivers\SerCx.sys
23:01:56.0955 9236 SerCx - ok
23:01:56.0955 9236 [ 7A1F9347C85FD55E39B8A76B3A25C5AD ] Serenum C:\windows\System32\drivers\serenum.sys
23:01:56.0955 9236 Serenum - ok
23:01:56.0955 9236 [ F640A0A218BBF857F1D04A15D7D939F6 ] Serial C:\windows\System32\drivers\serial.sys
23:01:56.0955 9236 Serial - ok
23:01:57.0017 9236 [ F1A5F56B2620B862CC28FF96A0A6DAAB ] sermouse C:\windows\System32\drivers\sermouse.sys
23:01:57.0017 9236 sermouse - ok
23:01:57.0033 9236 [ CB60A60340788C8D6DE2A269D28086AB ] SessionEnv C:\windows\system32\sessenv.dll
23:01:57.0033 9236 SessionEnv - ok
23:01:57.0049 9236 [ 7EE65419B29302C795714FF8073969A1 ] sfloppy C:\windows\System32\drivers\sfloppy.sys
23:01:57.0049 9236 sfloppy - ok
23:01:57.0080 9236 [ 090AE16F79C8EAD04E6031F863DA85F3 ] SharedAccess C:\windows\System32\ipnathlp.dll
23:01:57.0080 9236 SharedAccess - ok
23:01:57.0111 9236 [ A77F3ABE13FCC698511E5DEC7ACEBD5F ] ShellHWDetection C:\windows\System32\shsvcs.dll
23:01:57.0111 9236 ShellHWDetection - ok
23:01:57.0127 9236 [ 2560721D6F16D5B611C36A3A9D28C1B2 ] SiSRaid2 C:\windows\system32\drivers\SiSRaid2.sys
23:01:57.0127 9236 SiSRaid2 - ok
23:01:57.0142 9236 [ 3AA8FDE1DBF65BB8B88B053529554A0D ] SiSRaid4 C:\windows\system32\drivers\sisraid4.sys
23:01:57.0142 9236 SiSRaid4 - ok
23:01:57.0174 9236 [ F5BBEDF602C310B00036EB2DBF4348A5 ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
23:01:57.0189 9236 SkypeUpdate - ok
23:01:57.0189 9236 [ E660156A4588A84305CB772FD2C0DB21 ] SNMPTRAP C:\windows\System32\snmptrap.exe
23:01:57.0189 9236 SNMPTRAP - ok
23:01:57.0236 9236 [ 9110193D93960E38B8692E4519C75D72 ] spaceport C:\windows\system32\drivers\spaceport.sys
23:01:57.0252 9236 spaceport - ok
23:01:57.0267 9236 [ 3D8679C8DF52EB26EB7583A4E0A29202 ] SpbCx C:\windows\system32\drivers\SpbCx.sys
23:01:57.0267 9236 SpbCx - ok
23:01:57.0299 9236 [ 3F215BF2D4D8D6756298B25B579772C2 ] Spooler C:\windows\System32\spoolsv.exe
23:01:57.0299 9236 Spooler - ok
23:01:57.0392 9236 [ 061A977C920FBE4BF71FF47C966DDDCA ] sppsvc C:\windows\system32\sppsvc.exe
23:01:57.0424 9236 sppsvc - ok
23:01:57.0439 9236 [ 0F1FCD575A03ABDE13FCA9D0ADE4DDA6 ] srv C:\windows\system32\DRIVERS\srv.sys
23:01:57.0439 9236 srv - ok
23:01:57.0486 9236 [ 56218A571ECF8D55E0CDFF8DF2546CF1 ] srv2 C:\windows\system32\DRIVERS\srv2.sys
23:01:57.0486 9236 srv2 - ok
23:01:57.0502 9236 [ 14FC338B80CFF7E04215133B568D15C4 ] srvnet C:\windows\system32\DRIVERS\srvnet.sys
23:01:57.0517 9236 srvnet - ok
23:01:57.0533 9236 [ 7A20882D76D4A78240A5AC9F2C2EBA21 ] SSDPSRV C:\windows\System32\ssdpsrv.dll
23:01:57.0533 9236 SSDPSRV - ok
23:01:57.0533 9236 [ D233B16999A8E626F6004BD7814C57EC ] SstpSvc C:\windows\system32\sstpsvc.dll
23:01:57.0533 9236 SstpSvc - ok
23:01:57.0642 9236 [ 6955A1EE65ED72A263C7F4EDBB8D80ED ] STacSV C:\Program Files\IDT\WDM\STacSV64.exe
23:01:57.0642 9236 STacSV - ok
23:01:57.0658 9236 [ 4E85355B94CFCB67C135F6521A4895A7 ] stexstor C:\windows\system32\drivers\stexstor.sys
23:01:57.0658 9236 stexstor - ok
23:01:57.0721 9236 [ 1F509093A44E75A4649A541613531D94 ] STHDA C:\windows\system32\DRIVERS\stwrt64.sys
23:01:57.0721 9236 STHDA - ok
23:01:57.0752 9236 [ BAC8A721736AECC55A4F71523AEAB65F ] stisvc C:\windows\System32\wiaservc.dll
23:01:57.0752 9236 stisvc - ok
23:01:57.0767 9236 [ B240874B2CA0CD02E8CD11E140B14C57 ] storahci C:\windows\system32\drivers\storahci.sys
23:01:57.0767 9236 storahci - ok
23:01:57.0783 9236 [ F74DBC95A57B1EE866D3732EB5F79BE2 ] storflt C:\windows\system32\DRIVERS\vmstorfl.sys
23:01:57.0783 9236 storflt - ok
23:01:57.0799 9236 [ 5337E138B49ED1F44CCBA4073BC35C20 ] StorSvc C:\windows\system32\storsvc.dll
23:01:57.0799 9236 StorSvc - ok
23:01:57.0814 9236 [ 543CD3CC0E05B8D8815E0D4F040B6F59 ] storvsc C:\windows\system32\drivers\storvsc.sys
23:01:57.0814 9236 storvsc - ok
23:01:57.0830 9236 [ 8BC1C1ED6EF9C985A3FAA6A72F41679A ] svsvc C:\windows\system32\svsvc.dll
23:01:57.0830 9236 svsvc - ok
23:01:57.0846 9236 [ 4AFD66AAE74FFB5986BC240744DC5FC9 ] swenum C:\windows\System32\drivers\swenum.sys
23:01:57.0846 9236 swenum - ok
23:01:57.0877 9236 [ 502F9488540051F3E6C39889ECFA76BB ] swprv C:\windows\System32\swprv.dll
23:01:57.0877 9236 swprv - ok
23:01:57.0939 9236 [ A06CB9269D29EE3D0F3F5630ABB660B8 ] SysMain C:\windows\system32\sysmain.dll
23:01:57.0939 9236 SysMain - ok
23:01:57.0955 9236 [ 6FB88606C4A71E1BFAF97D63A676C673 ] SystemEventsBroker C:\windows\System32\SystemEventsBrokerServer.dll
23:01:57.0971 9236 SystemEventsBroker - ok
23:01:57.0986 9236 [ A6C06C45C44AD06C70AF8899AEC15BDC ] TabletInputService C:\windows\System32\TabSvc.dll
23:01:57.0986 9236 TabletInputService - ok
23:01:58.0002 9236 [ 88B7721AB551C4325036B25A34A2BF7B ] TapiSrv C:\windows\System32\tapisrv.dll
23:01:58.0002 9236 TapiSrv - ok
23:01:58.0080 9236 [ DD4249F03598043DED6FA540EB14898A ] Tcpip C:\windows\system32\drivers\tcpip.sys
23:01:58.0080 9236 Tcpip - ok
23:01:58.0111 9236 [ DD4249F03598043DED6FA540EB14898A ] TCPIP6 C:\windows\system32\DRIVERS\tcpip.sys
23:01:58.0127 9236 TCPIP6 - ok
23:01:58.0142 9236 [ 8F2A13A5DF99D72FDDE87F502A66F989 ] tcpipreg C:\windows\system32\drivers\tcpipreg.sys
23:01:58.0142 9236 tcpipreg - ok
23:01:58.0142 9236 [ 73DC722CE5DF26D7638CE2446F2655C7 ] tdx C:\windows\system32\DRIVERS\tdx.sys
23:01:58.0158 9236 tdx - ok
23:01:58.0267 9236 [ 950AD1AE7498A492126FB9F9B2E27DB5 ] Te.Service C:\Program Files (x86)\Windows Kits\8.1\Testing\Runtimes\TAEF\Wex.Services.exe
23:01:58.0267 9236 Te.Service - ok
23:01:58.0283 9236 [ F7C8AB5D8AFFAA318D6A21093D139BF4 ] terminpt C:\windows\System32\drivers\terminpt.sys
23:01:58.0283 9236 terminpt - ok
23:01:58.0314 9236 [ 541EE228D0DEF392F7B2DFD885DD021B ] TermService C:\windows\System32\termsrv.dll
23:01:58.0330 9236 TermService - ok
23:01:58.0330 9236 [ 519A6F672FFF56B7D8EE8C730CEC8ECD ] Themes C:\windows\system32\themeservice.dll
23:01:58.0330 9236 Themes - ok
23:01:58.0377 9236 [ EEE908BE7143FCA48CF0CB87214E2AB8 ] THREADORDER C:\windows\system32\mmcss.dll
23:01:58.0377 9236 THREADORDER - ok
23:01:58.0424 9236 [ 31B93B02F9C2172418FE548EBBC9B2E1 ] tilfilter C:\windows\System32\drivers\TIxHCIlfilter.sys
23:01:58.0424 9236 tilfilter - ok
23:01:58.0471 9236 [ 4515B9E4140F04FB3907692DF89FCA87 ] TimeBroker C:\windows\System32\TimeBrokerServer.dll
23:01:58.0486 9236 TimeBroker - ok
23:01:58.0486 9236 [ 8479862916203D79DF714432C954ECA8 ] tiufilter C:\windows\System32\drivers\TIxHCIufilter.sys
23:01:58.0486 9236 tiufilter - ok
23:01:58.0549 9236 [ E94F7A7B48C7638D1F3F8089344C97B7 ] TPM C:\windows\system32\drivers\tpm.sys
23:01:58.0549 9236 TPM - ok
23:01:58.0564 9236 [ 8C8CF3041B27E7657ADD0EE17F6DBFCA ] TrkWks C:\windows\System32\trkwks.dll
23:01:58.0564 9236 TrkWks - ok
23:01:58.0596 9236 [ 8ABBB5CE0C62E0A6D28F32F44B7F865C ] TrustedInstaller C:\windows\servicing\TrustedInstaller.exe
23:01:58.0596 9236 TrustedInstaller - ok
23:01:58.0627 9236 [ 4E7C5FB10A50435523DE0CAA37DE2BD3 ] TsUsbFlt C:\windows\system32\drivers\tsusbflt.sys
23:01:58.0627 9236 TsUsbFlt - ok
23:01:58.0642 9236 [ 16D684A820872EE54F6370703AC0B513 ] TsUsbGD C:\windows\System32\drivers\TsUsbGD.sys
23:01:58.0642 9236 TsUsbGD - ok
23:01:58.0642 9236 [ 78C9EE193AC2B4CBDBC48B620314D740 ] tunnel C:\windows\system32\DRIVERS\tunnel.sys
23:01:58.0642 9236 tunnel - ok
23:01:58.0658 9236 [ 6D4F67CA56ACA2085DFA2CD89EAFBC1A ] uagp35 C:\windows\system32\drivers\uagp35.sys
23:01:58.0658 9236 uagp35 - ok
23:01:58.0658 9236 [ 6FD6D03B7752C78712E5CFF29A305026 ] UASPStor C:\windows\System32\drivers\uaspstor.sys
23:01:58.0658 9236 UASPStor - ok
23:01:58.0705 9236 [ 061BA3EE0D2BE17944990544008CF190 ] UCX01000 C:\windows\System32\drivers\ucx01000.sys
23:01:58.0705 9236 UCX01000 - ok
23:01:58.0752 9236 [ 25C50F4EDF70D0A831E0566BD181CCF2 ] udfs C:\windows\system32\DRIVERS\udfs.sys
23:01:58.0752 9236 udfs - ok
23:01:58.0783 9236 [ FB3475FEA1CCB0DAEA1EBE44D0E3BB7D ] UI0Detect C:\windows\system32\UI0Detect.exe
23:01:58.0783 9236 UI0Detect - ok
23:01:58.0814 9236 [ 07FEBCDF24FABA0D47B635D85A0FFB7A ] uliagpkx C:\windows\system32\drivers\uliagpkx.sys
23:01:58.0814 9236 uliagpkx - ok
23:01:58.0814 9236 [ 02CEB3FE6152668A7BA420B93B664860 ] umbus C:\windows\System32\drivers\umbus.sys
23:01:58.0830 9236 umbus - ok
23:01:58.0830 9236 [ 991EE6B5FC41EAEF99C8AF5B92F2CA09 ] UmPass C:\windows\System32\drivers\umpass.sys
23:01:58.0830 9236 UmPass - ok
23:01:58.0830 9236 [ 43FEFB040A0CC30F795FBF544169594D ] UmRdpService C:\windows\System32\umrdp.dll
23:01:58.0830 9236 UmRdpService - ok
23:01:58.0892 9236 [ DBE2E6388379D5CC78099650541E9566 ] UNS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
23:01:58.0892 9236 UNS - ok
23:01:58.0908 9236 [ 14D22C411854AA2560AFC94CD2D5E61F ] upnphost C:\windows\System32\upnphost.dll
23:01:58.0908 9236 upnphost - ok
23:01:58.0959 9236 [ 9E9F21FF91D7ECC0BCCB94D3FE52A959 ] usbaudio C:\windows\system32\drivers\usbaudio.sys
23:01:58.0959 9236 usbaudio - ok
23:01:58.0975 9236 [ C976C4306F9AE133D6BBD47FDFC3BF92 ] usbccgp C:\windows\System32\drivers\usbccgp.sys
23:01:58.0975 9236 usbccgp - ok
23:01:58.0991 9236 [ 427B6DB8C05A5A977E8C3525370A2595 ] usbcir C:\windows\System32\drivers\usbcir.sys
23:01:58.0991 9236 usbcir - ok
23:01:59.0022 9236 [ B24FDEB1B18496F1B463782235AA3AF1 ] usbehci C:\windows\System32\drivers\usbehci.sys
23:01:59.0022 9236 usbehci - ok
23:01:59.0038 9236 [ F8C2A832DF9403F5EA8080CBDBDA95FB ] usbhub C:\windows\System32\drivers\usbhub.sys
23:01:59.0038 9236 usbhub - ok
23:01:59.0053 9236 [ E5F7328B1D29BCE791862CD3C0DD382A ] USBHUB3 C:\windows\System32\drivers\UsbHub3.sys
23:01:59.0053 9236 USBHUB3 - ok
23:01:59.0084 9236 [ 325F6179009B5A7F6118951A5BA422AB ] usbohci C:\windows\System32\drivers\usbohci.sys
23:01:59.0084 9236 usbohci - ok
23:01:59.0131 9236 [ 9FDBA6982582A6F2354144980F641E7B ] usbprint C:\windows\System32\drivers\usbprint.sys
23:01:59.0147 9236 usbprint - ok
23:01:59.0163 9236 [ AD91D1BBE5D3CF4501887DC1C09384FD ] usbscan C:\windows\system32\DRIVERS\usbscan.sys
23:01:59.0163 9236 usbscan - ok
23:01:59.0178 9236 [ BFC7FE4AAEB61317A921871B4085EF4B ] USBSTOR C:\windows\System32\drivers\USBSTOR.SYS
23:01:59.0178 9236 USBSTOR - ok
23:01:59.0178 9236 [ 1ABF657259DB57F7E5558E4DF1357C0C ] usbuhci C:\windows\System32\drivers\usbuhci.sys
23:01:59.0178 9236 usbuhci - ok
23:01:59.0194 9236 [ 9EF7C01D3ACCBC243B5CB1A95865B2FF ] usbvideo C:\windows\System32\Drivers\usbvideo.sys
23:01:59.0194 9236 usbvideo - ok
23:01:59.0209 9236 [ 8DC398D7B8E02C929A2096E74A170970 ] USBXHCI C:\windows\System32\drivers\USBXHCI.SYS
23:01:59.0209 9236 USBXHCI - ok
23:01:59.0209 9236 Util LinkSwift - ok
23:01:59.0225 9236 [ F702AB6181513303AB0FC8D59E52708B ] VaultSvc C:\windows\system32\lsass.exe
23:01:59.0225 9236 VaultSvc - ok
23:01:59.0256 9236 [ BACECBFF9C97F7627A60B0E0F1FE7EE8 ] vdrvroot C:\windows\system32\drivers\vdrvroot.sys
23:01:59.0256 9236 vdrvroot - ok
23:01:59.0303 9236 [ 1B4488988E5E7512E6C5CD1255E9E973 ] vds C:\windows\System32\vds.exe
23:01:59.0303 9236 vds - ok
23:01:59.0319 9236 [ 74FA2D4368DE6F6CE14393EDF1F342BE ] VerifierExt C:\windows\system32\drivers\VerifierExt.sys
23:01:59.0319 9236 VerifierExt - ok
23:01:59.0381 9236 [ 500BE6B2E49883720D0AE8BB859ED7A3 ] vhdmp C:\windows\System32\drivers\vhdmp.sys
23:01:59.0381 9236 vhdmp - ok
23:01:59.0397 9236 [ F5B4A14B00E89250C50982AC762DDD1D ] viaide C:\windows\system32\drivers\viaide.sys
23:01:59.0397 9236 viaide - ok
23:01:59.0428 9236 [ 78DB50F7329F6D1311658DABFFFC8BE0 ] vmbus C:\windows\system32\drivers\vmbus.sys
23:01:59.0428 9236 vmbus - ok
23:01:59.0428 9236 [ ECFEE2F2BA3932C7880D1A8F67D68F91 ] VMBusHID C:\windows\System32\drivers\VMBusHID.sys
23:01:59.0428 9236 VMBusHID - ok
23:01:59.0459 9236 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmicheartbeat C:\windows\System32\ICSvc.dll
23:01:59.0459 9236 vmicheartbeat - ok
23:01:59.0459 9236 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmickvpexchange C:\windows\System32\ICSvc.dll
23:01:59.0459 9236 vmickvpexchange - ok
23:01:59.0475 9236 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmicrdv C:\windows\System32\ICSvc.dll
23:01:59.0475 9236 vmicrdv - ok
23:01:59.0475 9236 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmicshutdown C:\windows\System32\ICSvc.dll
23:01:59.0475 9236 vmicshutdown - ok
23:01:59.0491 9236 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmictimesync C:\windows\System32\ICSvc.dll
23:01:59.0491 9236 vmictimesync - ok
23:01:59.0491 9236 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmicvss C:\windows\System32\ICSvc.dll
23:01:59.0491 9236 vmicvss - ok
23:01:59.0522 9236 [ CB60FAAED8B49B812EBBF77EB87D9B18 ] volmgr C:\windows\system32\drivers\volmgr.sys
23:01:59.0522 9236 volmgr - ok
23:01:59.0522 9236 [ A74101DA9809251BCD0E5A26BAE0F824 ] volmgrx C:\windows\system32\drivers\volmgrx.sys
23:01:59.0522 9236 volmgrx - ok
23:01:59.0543 9236 [ 78A5BBA3819FFFC62FFEC3E2220D102D ] volsnap C:\windows\system32\drivers\volsnap.sys
23:01:59.0558 9236 volsnap - ok
23:01:59.0573 9236 [ A8DA1C1B52ECEA3726DEBED4FF1B700D ] vpci C:\windows\System32\drivers\vpci.sys
23:01:59.0573 9236 vpci - ok
23:01:59.0620 9236 [ 9B4F6978628D07FAEBF77FF6F8F2960D ] VsEtwService120 C:\Program Files\Microsoft Visual Studio 12.0\Common7\Packages\Debugger\Services\VsEtwService.exe
23:01:59.0620 9236 VsEtwService120 - ok
23:01:59.0620 9236 [ 38A60CD9C009C55C6D3B5586F8E6A353 ] vsmraid C:\windows\system32\drivers\vsmraid.sys
23:01:59.0620 9236 vsmraid - ok
23:01:59.0683 9236 [ D0C69E44BC1E1D4AD290FD84104623D8 ] VSS C:\windows\system32\vssvc.exe
23:01:59.0698 9236 VSS - ok
23:01:59.0714 9236 [ A0F6FE0FC2F647C22BBFD6BD4249DBCC ] VSTXRAID C:\windows\system32\drivers\vstxraid.sys
23:01:59.0714 9236 VSTXRAID - ok
23:01:59.0730 9236 [ 62460A45435A26A334907E3F2EA45611 ] vwifibus C:\windows\System32\drivers\vwifibus.sys
23:01:59.0730 9236 vwifibus - ok
23:01:59.0761 9236 [ F690B6EEAA94576727B24376D7ED3601 ] W32Time C:\windows\system32\w32time.dll
23:01:59.0761 9236 W32Time - ok
23:01:59.0776 9236 [ 6B806E893714019969E2B50D7EF6A4D9 ] WacomPen C:\windows\System32\drivers\wacompen.sys
23:01:59.0776 9236 WacomPen - ok
23:01:59.0870 9236 [ A650671AF9A670F678F29FF212B4950C ] wampapache c:\wamp\bin\apache\apache2.4.4\bin\httpd.exe
23:01:59.0870 9236 wampapache - ok
23:02:00.0011 9236 wampmysqld - ok
23:02:00.0058 9236 [ 61F6972FF9AC9A8D0B4D62076DC30051 ] Wanarp C:\windows\system32\DRIVERS\wanarp.sys
23:02:00.0058 9236 Wanarp - ok
23:02:00.0058 9236 [ 61F6972FF9AC9A8D0B4D62076DC30051 ] Wanarpv6 C:\windows\system32\DRIVERS\wanarp.sys
23:02:00.0058 9236 Wanarpv6 - ok
23:02:00.0105 9236 [ 901CC968412F8155B08D7ABE0171166A ] WAS C:\windows\system32\inetsrv\iisw3adm.dll
23:02:00.0105 9236 WAS - ok
23:02:00.0151 9236 [ 42DF22F8C448E7CD219F6D63743505E2 ] wbengine C:\windows\system32\wbengine.exe
23:02:00.0151 9236 wbengine - ok
23:02:00.0183 9236 [ 31D37B2F6069C631EF0557D322924812 ] WbioSrvc C:\windows\System32\wbiosrvc.dll
23:02:00.0183 9236 WbioSrvc - ok
23:02:00.0261 9236 [ AF1349386D4C6786EF4E34FACEF15042 ] Wcmsvc C:\windows\System32\wcmsvc.dll
23:02:00.0261 9236 Wcmsvc - ok
23:02:00.0308 9236 [ 5B5FEAB51172F5513C2CF7B39CFA6A01 ] wcncsvc C:\windows\System32\wcncsvc.dll
23:02:00.0323 9236 wcncsvc - ok
23:02:00.0370 9236 [ E19556D414332E2BEBA1F368229006B4 ] WcsPlugInService C:\windows\System32\WcsPlugInService.dll
23:02:00.0370 9236 WcsPlugInService - ok
23:02:00.0401 9236 [ B3A4D918DAB90505B6BC7B70632913CB ] Wd C:\windows\system32\drivers\wd.sys
23:02:00.0401 9236 Wd - ok
23:02:00.0448 9236 [ FD47DF026B32969B8A68721A0243E8EE ] WdBoot C:\windows\system32\drivers\WdBoot.sys
23:02:00.0448 9236 WdBoot - ok
23:02:00.0464 9236 [ E2C933EDBC389386EBE6D2BA953F43D8 ] Wdf01000 C:\windows\system32\drivers\Wdf01000.sys
23:02:00.0464 9236 Wdf01000 - ok
23:02:00.0480 9236 [ 5F425D842DD6ADE9F95A51A0616AFAD7 ] WdFilter C:\windows\system32\drivers\WdFilter.sys
23:02:00.0495 9236 WdFilter - ok
23:02:00.0511 9236 [ 240FC332484572227CD1DF82407F33E5 ] WdiServiceHost C:\windows\system32\wdi.dll
23:02:00.0511 9236 WdiServiceHost - ok
23:02:00.0526 9236 [ 240FC332484572227CD1DF82407F33E5 ] WdiSystemHost C:\windows\system32\wdi.dll
23:02:00.0526 9236 WdiSystemHost - ok
23:02:00.0573 9236 [ 9B1384CE8E681D2D77BB3524B8E86311 ] WebClient C:\windows\System32\webclnt.dll
23:02:00.0573 9236 WebClient - ok
23:02:00.0589 9236 [ 35FD720943D4FCD75C3275BF062FF140 ] Wecsvc C:\windows\system32\wecsvc.dll
23:02:00.0589 9236 Wecsvc - ok
23:02:00.0605 9236 [ 4D2612E3C462B68F499D840B1133263E ] wercplsupport C:\windows\System32\wercplsupport.dll
23:02:00.0605 9236 wercplsupport - ok
23:02:00.0651 9236 [ 5F70EBFC1F75B487DE79501E3CCBDB54 ] WerSvc C:\windows\System32\WerSvc.dll
23:02:00.0651 9236 WerSvc - ok
23:02:00.0698 9236 [ 44BB9C31E6242C4BD1CE7C2B440C2533 ] WFPLWFS C:\windows\system32\DRIVERS\wfplwfs.sys
23:02:00.0698 9236 WFPLWFS - ok
23:02:00.0714 9236 [ 60E0C220593DA4F7C289CB909D2DBAE0 ] WiaRpc C:\windows\System32\wiarpc.dll
23:02:00.0730 9236 WiaRpc - ok
23:02:00.0745 9236 [ A3C7624A42A3447EF5EDD1ED37FE4E60 ] WIMMount C:\windows\system32\drivers\wimmount.sys
23:02:00.0745 9236 WIMMount - ok
23:02:00.0792 9236 WinDefend - ok
23:02:00.0839 9236 [ 7911470B6018059A880469A63B65700A ] WinHttpAutoProxySvc C:\windows\system32\winhttp.dll
23:02:00.0855 9236 WinHttpAutoProxySvc - ok
23:02:00.0902 9236 [ 3D6B518B71C75C8FA4115A33615C107A ] Winmgmt C:\windows\system32\wbem\WMIsvc.dll
23:02:00.0902 9236 Winmgmt - ok
23:02:00.0980 9236 [ 8E212A627F33F6FC3B5F3BB47212F66E ] WinRM C:\windows\system32\WsmSvc.dll
23:02:00.0980 9236 WinRM - ok
23:02:01.0042 9236 [ BB20956C424531003F7FA6CD36F11D5D ] WinUsb C:\windows\system32\DRIVERS\WinUsb.sys
23:02:01.0042 9236 WinUsb - ok
23:02:01.0105 9236 [ 6351724B8FA0255C2DBD970297F00B93 ] WlanSvc C:\windows\System32\wlansvc.dll
23:02:01.0105 9236 WlanSvc - ok
23:02:01.0167 9236 [ B330CE47FB74A6BE9A3FFFF4B3F64D9B ] wlidsvc C:\windows\system32\wlidsvc.dll
23:02:01.0183 9236 wlidsvc - ok
23:02:01.0198 9236 [ E2A596CACFC6504306CDB7B593B90084 ] WmiAcpi C:\windows\System32\drivers\wmiacpi.sys
23:02:01.0198 9236 WmiAcpi - ok
23:02:01.0230 9236 [ D113499052C5E541906B727779F0F959 ] wmiApSrv C:\windows\system32\wbem\WmiApSrv.exe
23:02:01.0230 9236 wmiApSrv - ok
23:02:01.0261 9236 WMPNetworkSvc - ok
23:02:01.0261 9236 [ C6FF953D5D6F2EAE3B8883474D5076B3 ] wpcfltr C:\windows\system32\DRIVERS\wpcfltr.sys
23:02:01.0261 9236 wpcfltr - ok
23:02:01.0277 9236 [ A6ED163169876BFD2437E872FE2F1509 ] WPCSvc C:\windows\System32\wpcsvc.dll
23:02:01.0277 9236 WPCSvc - ok
23:02:01.0323 9236 [ 3013658A4D327854BEEC4A08D9655194 ] WPDBusEnum C:\windows\system32\wpdbusenum.dll
23:02:01.0323 9236 WPDBusEnum - ok
23:02:01.0355 9236 [ 0346CAFC181C91C6E2330332EB332ED6 ] WpdUpFltr C:\windows\system32\drivers\WpdUpFltr.sys
23:02:01.0355 9236 WpdUpFltr - ok
23:02:01.0417 9236 [ BC8B5CB336E63BB25EAD1CE8EDD34B81 ] ws2ifsl C:\windows\system32\drivers\ws2ifsl.sys
23:02:01.0417 9236 ws2ifsl - ok
23:02:01.0464 9236 [ 012CFE7F0F95266F554EE3B91EE2128A ] wscsvc C:\windows\System32\wscsvc.dll
23:02:01.0464 9236 wscsvc - ok
23:02:01.0464 9236 WSearch - ok
23:02:01.0605 9236 [ D4D04839F3DFAF09D94BAB1016F7A297 ] WSService C:\windows\System32\WSService.dll
23:02:01.0605 9236 WSService - ok
23:02:01.0683 9236 [ 311E5E1976E0BD9110A88B93158055D5 ] wuauserv C:\windows\system32\wuaueng.dll
23:02:01.0698 9236 wuauserv - ok
23:02:01.0714 9236 [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf C:\windows\system32\drivers\WudfPf.sys
23:02:01.0714 9236 WudfPf - ok
23:02:01.0730 9236 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd C:\windows\System32\drivers\WUDFRd.sys
23:02:01.0730 9236 WUDFRd - ok
23:02:01.0730 9236 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFSensorLP C:\windows\system32\DRIVERS\WUDFRd.sys
23:02:01.0730 9236 WUDFSensorLP - ok
23:02:01.0745 9236 [ B20F051B03A966392364C83F009F7D17 ] wudfsvc C:\windows\System32\WUDFSvc.dll
23:02:01.0745 9236 wudfsvc - ok
23:02:01.0761 9236 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFWpdFs C:\windows\system32\DRIVERS\WUDFRd.sys
23:02:01.0761 9236 WUDFWpdFs - ok
23:02:01.0761 9236 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFWpdMtp C:\windows\system32\DRIVERS\WUDFRd.sys
23:02:01.0761 9236 WUDFWpdMtp - ok
23:02:01.0808 9236 [ 6D9E07436B6646EC8F7EFFD39B6BA288 ] WwanSvc C:\windows\System32\wwansvc.dll
23:02:01.0823 9236 WwanSvc - ok
23:02:01.0823 9236 ================ Scan global ===============================
23:02:01.0886 9236 [ DDC1AFBF9DDF880CE9BD3896114D8DED ] C:\windows\system32\basesrv.dll
23:02:01.0964 9236 [ E9343076AE704D20BB0D01F3AF3EFFEF ] C:\windows\system32\winsrv.dll
23:02:01.0980 9236 [ BD7C6949984D19AAA609896B675E7357 ] C:\windows\system32\sxssrv.dll
23:02:01.0995 9236 [ 8F226143046435C75C033B0C52E90FFE ] C:\windows\system32\services.exe
23:02:01.0995 9236 [Global] - ok
23:02:01.0995 9236 ================ Scan MBR ==================================
23:02:02.0011 9236 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0
23:02:02.0027 9236 \Device\Harddisk0\DR0 - ok
23:02:02.0027 9236 ================ Scan VBR ==================================
23:02:02.0027 9236 [ 07EEFE498AC10622EF0EA8AC537F987A ] \Device\Harddisk0\DR0\Partition1
23:02:02.0027 9236 \Device\Harddisk0\DR0\Partition1 - ok
23:02:02.0042 9236 [ FB68B11C7901A1D427B6D8C83E19AA52 ] \Device\Harddisk0\DR0\Partition2
23:02:02.0042 9236 \Device\Harddisk0\DR0\Partition2 - ok
23:02:02.0042 9236 [ 6D1AFFCBA48A106BF91B07BBA00C0DA3 ] \Device\Harddisk0\DR0\Partition3
23:02:02.0042 9236 \Device\Harddisk0\DR0\Partition3 - ok
23:02:02.0058 9236 [ 4EF10EC9FFF8C9BC3F20F9A074880BE4 ] \Device\Harddisk0\DR0\Partition4
23:02:02.0058 9236 \Device\Harddisk0\DR0\Partition4 - ok
23:02:02.0089 9236 [ EB83321CE5C46CE6421D3C0E4E996696 ] \Device\Harddisk0\DR0\Partition5
23:02:02.0089 9236 \Device\Harddisk0\DR0\Partition5 - ok
23:02:02.0089 9236 ============================================================
23:02:02.0089 9236 Scan finished
23:02:02.0089 9236 ============================================================
23:02:02.0089 9928 Detected object count: 0
23:02:02.0089 9928 Actual detected object count: 0
23:03:16.0090 9364 Deinitialize success

Re: HiJackThis LOG

Napsal: 23 úno 2014 10:14
od jaro3
Otevři si Poznámkový blok (Start -> Spustit... a napiš do okna Notepad a dej Ok.
Zkopíruj do něj následující celý text označený zeleně:
Poznámka: Nepoužij k označení skriptu funkci VYBRAT VŠE

Kód: Vybrat vše

@echo off
del /q /a /f %systemroot%\system32\drivers\etc\hosts 2>nul
echo 127.0.0.1 localhost>>%systemroot%\system32\drivers\etc\hosts
exit

Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:zev souboru: zde napiš: FixHosts.bat
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.
Poklepáním na soubor ho spusť.

Vypni rez. ochranu u antiviru a antispywaru,příp. firewall..

Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud budou problémy , spusť ho v nouz. režimu.

Upozornění : Může se stát, že po aplikaci Combofixu a restartu počítače, Windows nenaběhnou , nebo nenajede plocha , budou problémy s připojením, pak znovu restartuj počítač, pokud to nepomůže , po restartu mačkej klávesu F8 a pak zvol poslední známou funkční konfiguraci. , či použij bod obnovy.