Zdravím, už to budou asi dva měsíce, co mi přestala fungovat hra League of Legends, nejdřív jsem to neřešil, protože jsem měl o prázdninách ještě notebook, ale pak už ne a snažil jsem se přijít na to, jak to opravit, ale neúspěšně. Dnes jsem narazil na nějaký odkaz a došel jsem až sem, stáhl jsem si tedy program HijackThis a provedl výpis logu. Chtěl bych Vás tedy poprosit o pomoc, protože se v tom vůbec nevyznám. Log:
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:24:09, on 16. 10. 2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v10.0 (10.00.9200.16537)
FIREFOX: 31.0 (x86 cs)
Boot mode: Normal
Running processes:
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Windows\system32\taskhostex.exe
C:\Windows\Explorer.EXE
C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16.4.4206.722_x86__8wekyb3d8bbwe\LiveComm.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Users\František\AppData\Local\Pokki\Engine\pokki.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Users\František\AppData\Local\Pokki\Engine\pokki.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\Users\František\AppData\Roaming\Spotify\spotify.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
C:\Users\František\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
C:\Users\František\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
C:\Users\František\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
C:\Users\František\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
C:\Users\František\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\System32\RuntimeBroker.exe
C:\Users\František\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
C:\Users\František\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Users\František\Downloads\HijackThis.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Preserve
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.search.ask.com/?o=APN10645A& ... 54-153&t=4
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: ArcPluginIEBHO - {84BFE29A-8139-402a-B2A4-C23AE9E1A75F} - C:\Program Files\Perfect World Entertainment\Arc\Plugins\ArcPluginIE.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKCU\..\Run: [Optimizer Pro] C:\Program Files\Optimizer Pro\OptProLauncher.exe
O4 - HKCU\..\Run: [Overwolf] C:\Program Files\Overwolf\Overwolf.exe -silent
O4 - HKCU\..\Run: [EA Core] "C:\Program Files\Origin\LegacyPM\Core.exe" -silent
O4 - HKCU\..\Run: [Pokki] C:\Windows\system32\rundll32.exe "%LOCALAPPDATA%\Pokki\Engine\Launcher.dll",RunLaunchPlatform
O4 - HKCU\..\Run: [EADM] "C:\Program Files\Origin\Origin.exe" -AutoStart
O4 - HKCU\..\Run: [iLivid] "C:\Users\František\AppData\Local\iLivid\iLivid.exe" -autorun
O4 - HKCU\..\Run: [MyDriveConnect.exe] "C:\Program Files\MyDrive Connect\MyDriveConnect.exe"
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [Spotify] "C:\Users\František\AppData\Roaming\Spotify\Spotify.exe" /uri spotify:autostart
O4 - HKCU\..\Run: [Spotify Web Helper] "C:\Users\František\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Facebook Update] "C:\Users\František\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
O4 - Global Startup: GamePark klient 2.lnk = C:\Program Files\GamePark2\gpcl.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {784797A8-342D-4072-9486-03C8D0F2F0A1} (Battlefield Heroes Updater) - http://www.battlefieldheroes.com/static ... .203.0.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: c:\progra~1\movies~1\datamngr\mgrldr.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Arc Service (ArcService) - Perfect World Entertainment Inc - C:\Program Files\Perfect World Entertainment\Arc\ArcService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: avast! Firewall - AVAST Software - C:\Program Files\AVAST Software\Avast\afwServ.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\system32\IntelCpHeciSvc.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: TeamViewer 8 (TeamViewer8) - TeamViewer GmbH - C:\Program Files\TeamViewer\Version8\TeamViewer_Service.exe
--
End of file - 8199 bytes
Prosím o kontrolu logu Vyřešeno
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu
Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected. Poté klikni na Main (hlavní stránku ) a klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.
- Pokud používáš jen Google Chrome , tak ATF nemusíš použít.
Stáhni si TFC
Otevři soubor a zavři všechny ostatní okna, Klikni na Start k zahájení procesu. Program by neměl trvat dlouho.
Poté by se měl PC restartovat, pokud ne , proveď sám.
Stáhni AdwCleaner (by Xplode)
http://www.bleepingcomputer.com/download/adwcleaner/
Ulož si ho na svojí plochu
Ukonči všechny programy , okna a prohlížeče
Spusť program poklepáním a klikni na „Prohledat-Scan“
Po skenu se objeví log ( jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.
Stáhni si Malwarebytes' Anti-Malware
- Při instalaci odeber zatržítko u „Povolit bezplatnou zkušební verzi Malwarebytes' Anti-Malware Premium“
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a klikni na Skenovat nyní a
- po proběhnutí programu se ti objeví hláška vpravo dole tak klikni na b] Kopírovat do schránky [/b]a a vlož sem celý log.
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Pokud budou problémy , spusť v nouz. režimu.
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected. Poté klikni na Main (hlavní stránku ) a klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.
- Pokud používáš jen Google Chrome , tak ATF nemusíš použít.
Stáhni si TFC
Otevři soubor a zavři všechny ostatní okna, Klikni na Start k zahájení procesu. Program by neměl trvat dlouho.
Poté by se měl PC restartovat, pokud ne , proveď sám.
Stáhni AdwCleaner (by Xplode)
http://www.bleepingcomputer.com/download/adwcleaner/
Ulož si ho na svojí plochu
Ukonči všechny programy , okna a prohlížeče
Spusť program poklepáním a klikni na „Prohledat-Scan“
Po skenu se objeví log ( jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.
Stáhni si Malwarebytes' Anti-Malware
- Při instalaci odeber zatržítko u „Povolit bezplatnou zkušební verzi Malwarebytes' Anti-Malware Premium“
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a klikni na Skenovat nyní a
- po proběhnutí programu se ti objeví hláška vpravo dole tak klikni na b] Kopírovat do schránky [/b]a a vlož sem celý log.
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Pokud budou problémy , spusť v nouz. režimu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Prosím o kontrolu logu
ATF-používám jen Google Chrome
TFC-provedl jsem
AdwCleaner-
# AdwCleaner v4.000 - Report created 17/10/2014 at 11:06:09
# Updated 12/10/2014 by Xplode
# Database : 2014-10-17.9
# Operating System : Windows 8 Enterprise (32 bits)
# Username : František - PC-POKOJ
# Running from : C:\Users\František\Desktop\adwcleaner_4.000.exe
# Option : Scan
***** [ Services ] *****
***** [ Files / Folders ] *****
File Found : C:\Users\František\Desktop\Optimizer Pro.lnk
Folder Found : C:\Program Files\Movies Toolbar
Folder Found : C:\Program Files\Optimizer Pro
Folder Found : C:\ProgramData\Babylon
Folder Found : C:\ProgramData\BitGuard
Folder Found : C:\ProgramData\Browser Manager
Folder Found : C:\ProgramData\BrowserProtect
Folder Found : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro
Folder Found : C:\Users\František\AppData\Local\Pokki
Folder Found : C:\Users\František\AppData\Local\torch
Folder Found : C:\Users\František\AppData\LocalLow\DataMngr
Folder Found : C:\Users\František\AppData\Roaming\Babylon
Folder Found : C:\Users\František\AppData\Roaming\OpenCandy
Folder Found : C:\Users\František\AppData\Roaming\Optimizer Pro
***** [ Scheduled Tasks ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
Data Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - c:\progra~1\movies~1\datamngr\mgrldr.dll
Key Found : HKCU\Software\Classes\pokki
Key Found : HKCU\Software\ilivid
Key Found : HKCU\Software\iVIDI Plugin
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Pokki
Key Found : HKCU\Software\Optimizer Pro
Key Found : HKCU\Software\Pokki
Key Found : HKCU\Software\Softonic
Key Found : HKCU\Software\torch
Key Found : HKCU\Software\Unitech LLC
Key Found : HKLM\SOFTWARE\Classes\AppID\{685F23D9-FCFD-475C-B56A-362645945C5A}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{A1B48071-416D-474E-A13B-BE5456E7FC31}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{A75BE48D-BF58-4A8B-B96C-F9A09DFB9844}
Key Found : HKLM\SOFTWARE\Classes\Prod.cap
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{99C22A61-21BA-4F81-85FF-CDC9EB5DB10B}
Key Found : HKLM\SOFTWARE\DataMngr
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3D86A75B-CB6B-4764-885D-CA6336F04BA2}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bitguard.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsemngr.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsemngr.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsermngr.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsermngr.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bundlesweetimsetup.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bundlesweetimsetup.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\cltmngsvc.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\cltmngsvc.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta babylon.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta babylon.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta tb.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta tb.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta2.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta2.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltainstaller.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltainstaller.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltasetup.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltasetup.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltatb.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltatb.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltatb_2501-c733154b.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltatb_2501-c733154b.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\iminentsetup.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\iminentsetup.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\rjatydimofu.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\sweetimsetup.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\sweetimsetup.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\tbdelta.exetoolbar783881609.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\tbdelta.exetoolbar783881609.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\iVIDI Plugin
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Optimizer Pro_is1
Key Found : HKLM\SOFTWARE\torch
Key Found : HKLM\SOFTWARE\Unitech LLC
Value Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [iLivid]
Value Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Optimizer Pro]
Value Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Pokki]
Value Found : HKLM\SYSTEM\ControlSet001\Control\Session Manager\AppCertDlls [x64]
Value Found : HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\AppCertDlls [x64]
***** [ Browsers ] *****
-\\ Internet Explorer v10.0.9200.17116
Setting Found : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] - hxxp://www.search.ask.com/?o=APN10645A& ... 54-153&t=4
-\\ Mozilla Firefox v31.0 (x86 cs)
-\\ Google Chrome v38.0.2125.104
Found [Search Provider] : hxxp://dts.search.ask.com/sr?src=crb&gc ... nrs=AG6&q={searchTerms}
*************************
AdwCleaner[R0].txt - [7674 octets] - [17/10/2014 11:06:09]
########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [7734 octets] ##########
Malwarebytes' Anti-Malware-
Malwarebytes Anti-Malware
www.malwarebytes.org
Scan Date: 17. 10. 2014
Scan Time: 11:17:24
Logfile:
Administrator: Yes
Version: 2.00.3.1025
Malware Database: v2014.10.17.03
Rootkit Database: v2014.10.15.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled
OS: Windows 8
CPU: x86
File System: NTFS
User: František
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 324598
Time Elapsed: 7 min, 5 sec
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled
Processes: 1
PUP.Optional.OptimizerPro, C:\Program Files\Optimizer Pro\OptProSmartScan.exe, 2148, , [b6119382bebe57df07863408ee1358a8]
Modules: 0
(No malicious items detected)
Registry Keys: 15
PUP.Optional.iVIDI.A, HKLM\SOFTWARE\CLASSES\APPID\{685F23D9-FCFD-475C-B56A-362645945C5A}, , [4f7867ae7efe73c3bb334d55996960a0],
PUP.Optional.Babylon.A, HKU\S-1-5-21-1472965391-1808300874-1493842840-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}, , [3295e62f5725b77f294e871730d27a86],
PUP.Optional.MoviesToolBar.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{3d86a75b-cb6b-4764-885d-ca6336f04ba2}, , [3e89d83d413bd462d4f80b94f30ffa06],
PUP.Optional.IVidi.A, HKLM\SOFTWARE\CLASSES\CLSID\{A1B48071-416D-474E-A13B-BE5456E7FC31}, , [c9fe62b38af29e98cd36a892d52b956b],
PUP.Optional.IVidi.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{99C22A61-21BA-4F81-85FF-CDC9EB5DB10B}, , [c9fe62b38af29e98cd36a892d52b956b],
PUP.Optional.IVidi.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{231047C5-F7E9-45BE-9EFD-6E9BB6D59A9F}, , [c9fe62b38af29e98cd36a892d52b956b],
PUP.Optional.IVidi.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{82443621-A29A-473E-8335-F5C958A7A4CA}, , [c9fe62b38af29e98cd36a892d52b956b],
PUP.Optional.IVidi.A, HKLM\SOFTWARE\CLASSES\IEhelperActiveX.IEhelperLabel.1, , [c9fe62b38af29e98cd36a892d52b956b],
PUP.Optional.IVidi.A, HKLM\SOFTWARE\CLASSES\IEhelperActiveX.IEhelperLabel, , [c9fe62b38af29e98cd36a892d52b956b],
PUP.Optional.DataMangr.A, HKLM\SOFTWARE\Datamngr, , [2a9d6da891eb2313c164d65ebc471ae6],
PUP.Optional.Ividi.A, HKLM\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\giacfgjdclhnmkacnfbaljbmpnelflol, , [19ae3dd85a2264d23edce66b46bd966a],
PUP.Optional.Ividi.A, HKU\S-1-5-21-1472965391-1808300874-1493842840-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\iVIDI Plugin, , [4b7c49cc97e5cf6722fc4e03ae557e82],
PUP.Optional.Ividi.A, HKU\S-1-5-21-1472965391-1808300874-1493842840-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\iVIDI.org, , [bb0c977ee795a5915cc36ce5ce3515eb],
PUP.Optional.Softonic.A, HKU\S-1-5-21-1472965391-1808300874-1493842840-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SOFTONIC\Universal Downloader, , [5176997c1e5e48eee4244df3ff042fd1],
PUP.Optional.Ividi.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\iVIDI Plugin, , [14b30e07c6b63ef83bf39e4ff0123dc3],
Registry Values: 2
PUP.Optional.OptimizePro.A, HKU\S-1-5-21-1472965391-1808300874-1493842840-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|Optimizer Pro, C:\Program Files\Optimizer Pro\OptProLauncher.exe, , [6a5d789d5d1f90a687e665b9b44cd32d]
PUP.Optional.DataMangr.A, HKLM\SYSTEM\CURRENTCONTROLSET\CONTROL\SESSION MANAGER\APPCERTDLLS|x64, c:\program files\movies toolbar\datamngr\x64\apcrtldr.dll, , [7f4847ce94e882b4ec413653cb39718f]
Registry Data: 0
(No malicious items detected)
Folders: 7
PUP.Optional.OpenCandy, C:\Users\František\AppData\Roaming\OpenCandy, , [ac1ba570fe7eb08672ef1ad12bd74ab6],
PUP.Optional.OpenCandy, C:\Users\František\AppData\Roaming\OpenCandy\A9C51AA2876B47FDB707B722F2703E89, , [ac1ba570fe7eb08672ef1ad12bd74ab6],
PUP.Optional.MoviesToolbar.A, C:\Program Files\Movies Toolbar\Datamngr, , [ecdb2beacfade84ec2decd1e857d38c8],
PUP.Optional.Ividi.A, C:\Program Files\iVIDI.org plugin, , [14b30e07c6b63ef83bf39e4ff0123dc3],
PUP.Optional.Datamngr.A, C:\Users\František\AppData\LocalLow\DataMngr, , [d7f01cf9176583b34a61945df70b738d],
PUP.Optional.Ividi.A, C:\Users\František\AppData\Local\Google\Chrome\User Data\Default\Extensions\giacfgjdclhnmkacnfbaljbmpnelflol, , [3b8ccc494d2f9f9759613ab7f11130d0],
PUP.Optional.Ividi.A, C:\Users\František\AppData\Local\Google\Chrome\User Data\Default\Extensions\giacfgjdclhnmkacnfbaljbmpnelflol\1.3_0, , [3b8ccc494d2f9f9759613ab7f11130d0],
Files: 16
PUP.Optional.OptimizerPro, C:\Program Files\Optimizer Pro\OptProSmartScan.exe, , [b6119382bebe57df07863408ee1358a8],
PUP.Optional.OptimizePro.A, C:\Program Files\Optimizer Pro\OptProLauncher.exe, , [6a5d789d5d1f90a687e665b9b44cd32d],
PUP.Optional.OptimizerPro, C:\Program Files\Optimizer Pro\OptProGuard.exe, , [af18d83d4e2ed95dfa913a02b44d649c],
PUP.Optional.OptimizerPro, C:\Program Files\Optimizer Pro\OptProReminder.exe, , [f4d3f61f611bcb6bb1da1428e41dbe42],
PUP.Optional.OptimizerPro, C:\Program Files\Optimizer Pro\OptProSchedule.exe, , [05c237de3e3ee650f3998daf629f669a],
PUP.Optional.IVidi.A, C:\Program Files\iVIDI.org plugin\IEhelperActiveX.dll, , [c9fe62b38af29e98cd36a892d52b956b],
PUP.Optional.Bitcoin, C:\Windows\System32\acumncoyqsem.exe, , [7057af660a7200361072ab341ae7d12f],
Adware.InstallBrain, C:\Users\František\Downloads\77ZipSetup.exe, , [3196d63fa2da2b0b91d233e99e63f010],
PUP.Optional.Bandoo, C:\Users\František\Downloads\iLividSetup_A-r641-t-bc.exe, , [4e7936df0676d36353f66ab4f50c7d83],
PUP.Optional.OpenCandy, C:\Users\František\AppData\Roaming\OpenCandy\A9C51AA2876B47FDB707B722F2703E89\PokkiInstaller.exe, , [ac1ba570fe7eb08672ef1ad12bd74ab6],
PUP.Optional.MoviesToolbar.A, C:\Program Files\Movies Toolbar\Datamngr\del_DM_LL_nsuC2F5.dll, , [ecdb2beacfade84ec2decd1e857d38c8],
PUP.Optional.Ividi.A, C:\Program Files\iVIDI.org plugin\ividiplg.crx, , [14b30e07c6b63ef83bf39e4ff0123dc3],
PUP.Optional.Ividi.A, C:\Program Files\iVIDI.org plugin\uninst.exe, , [14b30e07c6b63ef83bf39e4ff0123dc3],
PUP.Optional.Datamngr.A, C:\Users\František\AppData\LocalLow\DataMngr\{7CA1F051-A4FB-4143-B263-02B41E571EED}64, , [d7f01cf9176583b34a61945df70b738d],
PUP.Optional.Ividi.A, C:\Users\František\AppData\Local\Google\Chrome\User Data\Default\Extensions\giacfgjdclhnmkacnfbaljbmpnelflol\1.3_0\chividiplg.dll, , [3b8ccc494d2f9f9759613ab7f11130d0],
PUP.Optional.Ividi.A, C:\Users\František\AppData\Local\Google\Chrome\User Data\Default\Extensions\giacfgjdclhnmkacnfbaljbmpnelflol\1.3_0\manifest.json, , [3b8ccc494d2f9f9759613ab7f11130d0],
Physical Sectors: 0
(No malicious items detected)
(end)
Snad jsem vše udělal dobře.
TFC-provedl jsem
AdwCleaner-
# AdwCleaner v4.000 - Report created 17/10/2014 at 11:06:09
# Updated 12/10/2014 by Xplode
# Database : 2014-10-17.9
# Operating System : Windows 8 Enterprise (32 bits)
# Username : František - PC-POKOJ
# Running from : C:\Users\František\Desktop\adwcleaner_4.000.exe
# Option : Scan
***** [ Services ] *****
***** [ Files / Folders ] *****
File Found : C:\Users\František\Desktop\Optimizer Pro.lnk
Folder Found : C:\Program Files\Movies Toolbar
Folder Found : C:\Program Files\Optimizer Pro
Folder Found : C:\ProgramData\Babylon
Folder Found : C:\ProgramData\BitGuard
Folder Found : C:\ProgramData\Browser Manager
Folder Found : C:\ProgramData\BrowserProtect
Folder Found : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro
Folder Found : C:\Users\František\AppData\Local\Pokki
Folder Found : C:\Users\František\AppData\Local\torch
Folder Found : C:\Users\František\AppData\LocalLow\DataMngr
Folder Found : C:\Users\František\AppData\Roaming\Babylon
Folder Found : C:\Users\František\AppData\Roaming\OpenCandy
Folder Found : C:\Users\František\AppData\Roaming\Optimizer Pro
***** [ Scheduled Tasks ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
Data Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - c:\progra~1\movies~1\datamngr\mgrldr.dll
Key Found : HKCU\Software\Classes\pokki
Key Found : HKCU\Software\ilivid
Key Found : HKCU\Software\iVIDI Plugin
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Pokki
Key Found : HKCU\Software\Optimizer Pro
Key Found : HKCU\Software\Pokki
Key Found : HKCU\Software\Softonic
Key Found : HKCU\Software\torch
Key Found : HKCU\Software\Unitech LLC
Key Found : HKLM\SOFTWARE\Classes\AppID\{685F23D9-FCFD-475C-B56A-362645945C5A}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{A1B48071-416D-474E-A13B-BE5456E7FC31}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{A75BE48D-BF58-4A8B-B96C-F9A09DFB9844}
Key Found : HKLM\SOFTWARE\Classes\Prod.cap
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{99C22A61-21BA-4F81-85FF-CDC9EB5DB10B}
Key Found : HKLM\SOFTWARE\DataMngr
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3D86A75B-CB6B-4764-885D-CA6336F04BA2}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bitguard.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsemngr.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsemngr.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsermngr.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsermngr.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bundlesweetimsetup.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bundlesweetimsetup.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\cltmngsvc.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\cltmngsvc.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta babylon.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta babylon.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta tb.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta tb.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta2.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta2.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltainstaller.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltainstaller.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltasetup.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltasetup.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltatb.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltatb.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltatb_2501-c733154b.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltatb_2501-c733154b.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\iminentsetup.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\iminentsetup.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\rjatydimofu.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\sweetimsetup.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\sweetimsetup.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\tbdelta.exetoolbar783881609.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\tbdelta.exetoolbar783881609.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\iVIDI Plugin
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Optimizer Pro_is1
Key Found : HKLM\SOFTWARE\torch
Key Found : HKLM\SOFTWARE\Unitech LLC
Value Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [iLivid]
Value Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Optimizer Pro]
Value Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Pokki]
Value Found : HKLM\SYSTEM\ControlSet001\Control\Session Manager\AppCertDlls [x64]
Value Found : HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\AppCertDlls [x64]
***** [ Browsers ] *****
-\\ Internet Explorer v10.0.9200.17116
Setting Found : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] - hxxp://www.search.ask.com/?o=APN10645A& ... 54-153&t=4
-\\ Mozilla Firefox v31.0 (x86 cs)
-\\ Google Chrome v38.0.2125.104
Found [Search Provider] : hxxp://dts.search.ask.com/sr?src=crb&gc ... nrs=AG6&q={searchTerms}
*************************
AdwCleaner[R0].txt - [7674 octets] - [17/10/2014 11:06:09]
########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [7734 octets] ##########
Malwarebytes' Anti-Malware-
Malwarebytes Anti-Malware
www.malwarebytes.org
Scan Date: 17. 10. 2014
Scan Time: 11:17:24
Logfile:
Administrator: Yes
Version: 2.00.3.1025
Malware Database: v2014.10.17.03
Rootkit Database: v2014.10.15.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled
OS: Windows 8
CPU: x86
File System: NTFS
User: František
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 324598
Time Elapsed: 7 min, 5 sec
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled
Processes: 1
PUP.Optional.OptimizerPro, C:\Program Files\Optimizer Pro\OptProSmartScan.exe, 2148, , [b6119382bebe57df07863408ee1358a8]
Modules: 0
(No malicious items detected)
Registry Keys: 15
PUP.Optional.iVIDI.A, HKLM\SOFTWARE\CLASSES\APPID\{685F23D9-FCFD-475C-B56A-362645945C5A}, , [4f7867ae7efe73c3bb334d55996960a0],
PUP.Optional.Babylon.A, HKU\S-1-5-21-1472965391-1808300874-1493842840-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}, , [3295e62f5725b77f294e871730d27a86],
PUP.Optional.MoviesToolBar.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{3d86a75b-cb6b-4764-885d-ca6336f04ba2}, , [3e89d83d413bd462d4f80b94f30ffa06],
PUP.Optional.IVidi.A, HKLM\SOFTWARE\CLASSES\CLSID\{A1B48071-416D-474E-A13B-BE5456E7FC31}, , [c9fe62b38af29e98cd36a892d52b956b],
PUP.Optional.IVidi.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{99C22A61-21BA-4F81-85FF-CDC9EB5DB10B}, , [c9fe62b38af29e98cd36a892d52b956b],
PUP.Optional.IVidi.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{231047C5-F7E9-45BE-9EFD-6E9BB6D59A9F}, , [c9fe62b38af29e98cd36a892d52b956b],
PUP.Optional.IVidi.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{82443621-A29A-473E-8335-F5C958A7A4CA}, , [c9fe62b38af29e98cd36a892d52b956b],
PUP.Optional.IVidi.A, HKLM\SOFTWARE\CLASSES\IEhelperActiveX.IEhelperLabel.1, , [c9fe62b38af29e98cd36a892d52b956b],
PUP.Optional.IVidi.A, HKLM\SOFTWARE\CLASSES\IEhelperActiveX.IEhelperLabel, , [c9fe62b38af29e98cd36a892d52b956b],
PUP.Optional.DataMangr.A, HKLM\SOFTWARE\Datamngr, , [2a9d6da891eb2313c164d65ebc471ae6],
PUP.Optional.Ividi.A, HKLM\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\giacfgjdclhnmkacnfbaljbmpnelflol, , [19ae3dd85a2264d23edce66b46bd966a],
PUP.Optional.Ividi.A, HKU\S-1-5-21-1472965391-1808300874-1493842840-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\iVIDI Plugin, , [4b7c49cc97e5cf6722fc4e03ae557e82],
PUP.Optional.Ividi.A, HKU\S-1-5-21-1472965391-1808300874-1493842840-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\iVIDI.org, , [bb0c977ee795a5915cc36ce5ce3515eb],
PUP.Optional.Softonic.A, HKU\S-1-5-21-1472965391-1808300874-1493842840-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SOFTONIC\Universal Downloader, , [5176997c1e5e48eee4244df3ff042fd1],
PUP.Optional.Ividi.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\iVIDI Plugin, , [14b30e07c6b63ef83bf39e4ff0123dc3],
Registry Values: 2
PUP.Optional.OptimizePro.A, HKU\S-1-5-21-1472965391-1808300874-1493842840-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|Optimizer Pro, C:\Program Files\Optimizer Pro\OptProLauncher.exe, , [6a5d789d5d1f90a687e665b9b44cd32d]
PUP.Optional.DataMangr.A, HKLM\SYSTEM\CURRENTCONTROLSET\CONTROL\SESSION MANAGER\APPCERTDLLS|x64, c:\program files\movies toolbar\datamngr\x64\apcrtldr.dll, , [7f4847ce94e882b4ec413653cb39718f]
Registry Data: 0
(No malicious items detected)
Folders: 7
PUP.Optional.OpenCandy, C:\Users\František\AppData\Roaming\OpenCandy, , [ac1ba570fe7eb08672ef1ad12bd74ab6],
PUP.Optional.OpenCandy, C:\Users\František\AppData\Roaming\OpenCandy\A9C51AA2876B47FDB707B722F2703E89, , [ac1ba570fe7eb08672ef1ad12bd74ab6],
PUP.Optional.MoviesToolbar.A, C:\Program Files\Movies Toolbar\Datamngr, , [ecdb2beacfade84ec2decd1e857d38c8],
PUP.Optional.Ividi.A, C:\Program Files\iVIDI.org plugin, , [14b30e07c6b63ef83bf39e4ff0123dc3],
PUP.Optional.Datamngr.A, C:\Users\František\AppData\LocalLow\DataMngr, , [d7f01cf9176583b34a61945df70b738d],
PUP.Optional.Ividi.A, C:\Users\František\AppData\Local\Google\Chrome\User Data\Default\Extensions\giacfgjdclhnmkacnfbaljbmpnelflol, , [3b8ccc494d2f9f9759613ab7f11130d0],
PUP.Optional.Ividi.A, C:\Users\František\AppData\Local\Google\Chrome\User Data\Default\Extensions\giacfgjdclhnmkacnfbaljbmpnelflol\1.3_0, , [3b8ccc494d2f9f9759613ab7f11130d0],
Files: 16
PUP.Optional.OptimizerPro, C:\Program Files\Optimizer Pro\OptProSmartScan.exe, , [b6119382bebe57df07863408ee1358a8],
PUP.Optional.OptimizePro.A, C:\Program Files\Optimizer Pro\OptProLauncher.exe, , [6a5d789d5d1f90a687e665b9b44cd32d],
PUP.Optional.OptimizerPro, C:\Program Files\Optimizer Pro\OptProGuard.exe, , [af18d83d4e2ed95dfa913a02b44d649c],
PUP.Optional.OptimizerPro, C:\Program Files\Optimizer Pro\OptProReminder.exe, , [f4d3f61f611bcb6bb1da1428e41dbe42],
PUP.Optional.OptimizerPro, C:\Program Files\Optimizer Pro\OptProSchedule.exe, , [05c237de3e3ee650f3998daf629f669a],
PUP.Optional.IVidi.A, C:\Program Files\iVIDI.org plugin\IEhelperActiveX.dll, , [c9fe62b38af29e98cd36a892d52b956b],
PUP.Optional.Bitcoin, C:\Windows\System32\acumncoyqsem.exe, , [7057af660a7200361072ab341ae7d12f],
Adware.InstallBrain, C:\Users\František\Downloads\77ZipSetup.exe, , [3196d63fa2da2b0b91d233e99e63f010],
PUP.Optional.Bandoo, C:\Users\František\Downloads\iLividSetup_A-r641-t-bc.exe, , [4e7936df0676d36353f66ab4f50c7d83],
PUP.Optional.OpenCandy, C:\Users\František\AppData\Roaming\OpenCandy\A9C51AA2876B47FDB707B722F2703E89\PokkiInstaller.exe, , [ac1ba570fe7eb08672ef1ad12bd74ab6],
PUP.Optional.MoviesToolbar.A, C:\Program Files\Movies Toolbar\Datamngr\del_DM_LL_nsuC2F5.dll, , [ecdb2beacfade84ec2decd1e857d38c8],
PUP.Optional.Ividi.A, C:\Program Files\iVIDI.org plugin\ividiplg.crx, , [14b30e07c6b63ef83bf39e4ff0123dc3],
PUP.Optional.Ividi.A, C:\Program Files\iVIDI.org plugin\uninst.exe, , [14b30e07c6b63ef83bf39e4ff0123dc3],
PUP.Optional.Datamngr.A, C:\Users\František\AppData\LocalLow\DataMngr\{7CA1F051-A4FB-4143-B263-02B41E571EED}64, , [d7f01cf9176583b34a61945df70b738d],
PUP.Optional.Ividi.A, C:\Users\František\AppData\Local\Google\Chrome\User Data\Default\Extensions\giacfgjdclhnmkacnfbaljbmpnelflol\1.3_0\chividiplg.dll, , [3b8ccc494d2f9f9759613ab7f11130d0],
PUP.Optional.Ividi.A, C:\Users\František\AppData\Local\Google\Chrome\User Data\Default\Extensions\giacfgjdclhnmkacnfbaljbmpnelflol\1.3_0\manifest.json, , [3b8ccc494d2f9f9759613ab7f11130d0],
Physical Sectors: 0
(No malicious items detected)
(end)
Snad jsem vše udělal dobře.
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu
Spusť znovu AdwCleaner (u Windows Vista či Windows7, klikni na AdwCleaner pravým a vyber „Spustit jako správce“
klikni na „Prohledat-Scan“, po prohledání klikni na „ Vymazat-Clean“
Program provede opravu, po automatickém restartu neukáže log (C:\AdwCleaner [S?].txt) , jeho obsah sem celý vlož.
Stáhni si Junkware Removal Tool by Thisisu
na svojí plochu.
Deaktivuj si svůj antivirový program. Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.
. spusť znovu MbAM a dej Skenovat nyní
- po proběhnutí programu se ti objeví hláška tak klikni na „Vše do karantény(smazat vybrané)“ a na „Exportovat záznam“ a vyber „textový soubor“ , soubor nějak pojmenuj a někam ho ulož. Zkopíruj se celý obsah toho logu.
Stáhni si RogueKiller by Adlice Software
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit
-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
klikni na „Prohledat-Scan“, po prohledání klikni na „ Vymazat-Clean“
Program provede opravu, po automatickém restartu neukáže log (C:\AdwCleaner [S?].txt) , jeho obsah sem celý vlož.
Stáhni si Junkware Removal Tool by Thisisu
na svojí plochu.
Deaktivuj si svůj antivirový program. Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.
. spusť znovu MbAM a dej Skenovat nyní
- po proběhnutí programu se ti objeví hláška tak klikni na „Vše do karantény(smazat vybrané)“ a na „Exportovat záznam“ a vyber „textový soubor“ , soubor nějak pojmenuj a někam ho ulož. Zkopíruj se celý obsah toho logu.
Stáhni si RogueKiller by Adlice Software
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit
-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Prosím o kontrolu logu
AdwCleaner
# AdwCleaner v4.000 - Report created 17/10/2014 at 22:13:57
# DB v2014-10-17.9
# Updated 12/10/2014 by Xplode
# Operating System : Windows 8 Enterprise (32 bits)
# Username : František - PC-POKOJ
# Running from : C:\Users\František\Desktop\adwcleaner_4.000.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
Folder Deleted : C:\ProgramData\Babylon
Folder Deleted : C:\Users\František\AppData\Roaming\Babylon
[#] Folder Deleted : C:\ProgramData\BitGuard
[#] Folder Deleted : C:\ProgramData\Browser Manager
[#] Folder Deleted : C:\ProgramData\BrowserProtect
Folder Deleted : C:\Users\František\AppData\LocalLow\DataMngr
Folder Deleted : C:\Program Files\Movies Toolbar
Folder Deleted : C:\Users\František\AppData\Roaming\OpenCandy
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro
Folder Deleted : C:\Program Files\Optimizer Pro
Folder Deleted : C:\Users\František\AppData\Roaming\Optimizer Pro
[!] Folder Deleted : C:\Users\František\AppData\Local\Pokki
Folder Deleted : C:\Users\František\AppData\Local\torch
File Deleted : C:\Users\František\Desktop\Optimizer Pro.lnk
***** [ Scheduled Tasks ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKCU\Software\Classes\pokki
Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [iLivid]
Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Optimizer Pro]
Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Pokki]
Key Deleted : HKLM\SOFTWARE\Classes\Prod.cap
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bitguard.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsemngr.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsermngr.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bundlesweetimsetup.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\cltmngsvc.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta babylon.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta tb.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta2.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltainstaller.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltasetup.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltatb.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltatb_2501-c733154b.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\iminentsetup.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\sweetimsetup.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\tbdelta.exetoolbar783881609.exe
Value Deleted : HKLM\SYSTEM\ControlSet001\Control\Session Manager\AppCertDlls [x64]
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{685F23D9-FCFD-475C-B56A-362645945C5A}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A1B48071-416D-474E-A13B-BE5456E7FC31}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A75BE48D-BF58-4A8B-B96C-F9A09DFB9844}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{99C22A61-21BA-4F81-85FF-CDC9EB5DB10B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3D86A75B-CB6B-4764-885D-CA6336F04BA2}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Key Deleted : HKCU\Software\ilivid
Key Deleted : HKCU\Software\iVIDI Plugin
Key Deleted : HKCU\Software\Optimizer Pro
Key Deleted : HKCU\Software\Pokki
Key Deleted : HKCU\Software\Softonic
Key Deleted : HKCU\Software\torch
Key Deleted : HKCU\Software\Unitech LLC
Key Deleted : HKLM\SOFTWARE\DataMngr
Key Deleted : HKLM\SOFTWARE\torch
Key Deleted : HKLM\SOFTWARE\Unitech LLC
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Pokki
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\iVIDI Plugin
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Optimizer Pro_is1
Data Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - c:\progra~1\movies~1\datamngr\mgrldr.dll
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\rjatydimofu.exe
***** [ Browsers ] *****
-\\ Internet Explorer v10.0.9200.17116
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
-\\ Mozilla Firefox v31.0 (x86 cs)
-\\ Google Chrome v38.0.2125.104
*************************
AdwCleaner[R0].txt - [7814 octets] - [17/10/2014 11:06:09]
AdwCleaner[R1].txt - [7874 octets] - [17/10/2014 21:31:26]
AdwCleaner[S0].txt - [5716 octets] - [17/10/2014 22:13:57]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [5776 octets] ##########
Junkware Removal Tool
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.3.3 (10.14.2014:1)
OS: Windows 8 Enterprise x86
Ran by Frantiçek on p 17. 10. 2014 at 22:21:28,14
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{043DB837-DD6B-4707-9F46-4847233C8942}
~~~ Files
Successfully deleted: [File] C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1472965391-1808300874-1493842840-1001
Successfully deleted: [File] "C:\Windows\wininit.ini"
~~~ Folders
Successfully deleted: [Folder] "C:\Windows\system32\ai_recyclebin"
~~~ FireFox
Successfully deleted the following from C:\Users\Frantiçek\AppData\Roaming\mozilla\firefox\profiles\mcnowdmy.default-1399755991489\prefs.js
user_pref("extensions.foxcub.config.encodedConfig", "{\"core\":{\"configUrl\":\"hxxp://download.seznam.cz/software/conf/\",\"updateUrl\":\"hxxp://download.seznam.cz/software/c
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on p 17. 10. 2014 at 22:24:02,79
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
MbAM
Malwarebytes Anti-Malware
http://www.malwarebytes.org
Scan Date: 17. 10. 2014
Scan Time: 22:29:11
Logfile: Log.txt
Administrator: Yes
Version: 2.00.3.1025
Malware Database: v2014.10.17.03
Rootkit Database: v2014.10.15.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled
OS: Windows 8
CPU: x86
File System: NTFS
User: FrantiA!ek
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 320843
Time Elapsed: 6 min, 45 sec
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled
Processes: 0
(No malicious items detected)
Modules: 0
(No malicious items detected)
Registry Keys: 2
PUP.Optional.Ividi.A, HKLM\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\giacfgjdclhnmkacnfbaljbmpnelflol, Quarantined, [be090015cfadfc3a8c8ef1600df64fb1],
PUP.Optional.Ividi.A, HKU\S-1-5-21-1472965391-1808300874-1493842840-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\iVIDI.org, Quarantined, [626513029ae2bc7a9e812a27b0539b65],
Registry Values: 0
(No malicious items detected)
Registry Data: 0
(No malicious items detected)
Folders: 3
PUP.Optional.Ividi.A, C:\Program Files\iVIDI.org plugin, Quarantined, [0abd38dd126a013574ba14d90cf60ff1],
PUP.Optional.Ividi.A, C:\Users\FrantiA!ek\AppData\Local\Google\Chrome\User Data\Default\Extensions\giacfgjdclhnmkacnfbaljbmpnelflol, Quarantined, [01c6e134b5c7e2549a20d0214eb4db25],
PUP.Optional.Ividi.A, C:\Users\FrantiA!ek\AppData\Local\Google\Chrome\User Data\Default\Extensions\giacfgjdclhnmkacnfbaljbmpnelflol\1.3_0, Quarantined, [01c6e134b5c7e2549a20d0214eb4db25],
Files: 8
PUP.Optional.IVidi.A, C:\Program Files\iVIDI.org plugin\IEhelperActiveX.dll, Quarantined, [d5f2b75e2953b38341c21b1f1de341bf],
PUP.Optional.Bitcoin, C:\Windows\System32\acumncoyqsem.exe, Quarantined, [26a1d144c3b9f4422161fce34fb2bf41],
Adware.InstallBrain, C:\Users\FrantiA!ek\Downloads\77ZipSetup.exe, Quarantined, [6a5d2ee738440e2864ffeb31cc3508f8],
PUP.Optional.Bandoo, C:\Users\FrantiA!ek\Downloads\iLividSetup_A-r641-t-bc.exe, Quarantined, [51768b8a87f537ffba8f2bf32dd4916f],
PUP.Optional.Ividi.A, C:\Program Files\iVIDI.org plugin\ividiplg.crx, Quarantined, [0abd38dd126a013574ba14d90cf60ff1],
PUP.Optional.Ividi.A, C:\Program Files\iVIDI.org plugin\uninst.exe, Quarantined, [0abd38dd126a013574ba14d90cf60ff1],
PUP.Optional.Ividi.A, C:\Users\FrantiA!ek\AppData\Local\Google\Chrome\User Data\Default\Extensions\giacfgjdclhnmkacnfbaljbmpnelflol\1.3_0\chividiplg.dll, Quarantined, [01c6e134b5c7e2549a20d0214eb4db25],
PUP.Optional.Ividi.A, C:\Users\FrantiA!ek\AppData\Local\Google\Chrome\User Data\Default\Extensions\giacfgjdclhnmkacnfbaljbmpnelflol\1.3_0\manifest.json, Quarantined, [01c6e134b5c7e2549a20d0214eb4db25],
Physical Sectors: 0
(No malicious items detected)
(end)
RogueKiller
RogueKiller V10.0.2.0 [Oct 16 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Feedback : http://forum.adlice.com
Webová stránka : http://www.adlice.com/softwares/roguekiller/
Blog : http://www.adlice.com
Operační systém : Windows 8 (6.2.9200 ) 32 bits version
Spuštěno : Normální režim
Uživatel : František [Práva správce]
Mód : Prohledat -- Datum : 10/17/2014 22:45:03
¤¤¤ Procesy : 0 ¤¤¤
¤¤¤ Registry : 9 ¤¤¤
[Suspicious.Path] HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\FairplayKD (\??\C:\ProgramData\MTA San Andreas All\Common\temp\FairplayKD.sys) -> Nalezeno
[Hidden.From.SCM] HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\yuktr (System32\drivers\xmmlew.sys) -> Nalezeno
[Suspicious.Path] HKEY_LOCAL_MACHINE\System\ControlSet001\Services\FairplayKD (\??\C:\ProgramData\MTA San Andreas All\Common\temp\FairplayKD.sys) -> Nalezeno
[PUM.Dns] HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters | DhcpNameServer : 10.0.0.138 -> Nalezeno
[PUM.Dns] HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters | DhcpNameServer : 10.0.0.138 -> Nalezeno
[PUM.Dns] HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{0F9AC8DB-D3CB-45A3-BC16-85BEF30E5BC1} | DhcpNameServer : 10.0.0.138 -> Nalezeno
[PUM.Dns] HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters\Interfaces\{0F9AC8DB-D3CB-45A3-BC16-85BEF30E5BC1} | DhcpNameServer : 10.0.0.138 -> Nalezeno
[PUM.DesktopIcons] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {20D04FE0-3AEA-1069-A2D8-08002B30309D} : 1 -> Nalezeno
[PUM.DesktopIcons] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {59031a47-3f72-44a7-89c5-5595fe6b30ee} : 1 -> Nalezeno
¤¤¤ Úlohy : 0 ¤¤¤
¤¤¤ Soubory : 0 ¤¤¤
¤¤¤ Soubor HOSTS : 0 ¤¤¤
¤¤¤ Antirootkit : 9 (Driver: Nahrán) ¤¤¤
[IAT:Addr] (explorer.exe @ DEVOBJ.dll) api-ms-win-devices-config-l1-1-0.dll - CM_Get_Class_Registry_PropertyW : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x74f7a599
[IAT:Addr] (explorer.exe @ DEVOBJ.dll) api-ms-win-devices-config-l1-1-0.dll - CM_Set_Class_Registry_PropertyW : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x74f7a161
[IAT:Addr] (explorer.exe @ DEVOBJ.dll) api-ms-win-devices-query-l1-1-0.dll - DevCreateObjectQuery : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x74f5c607
[IAT:Addr] (explorer.exe @ DEVOBJ.dll) api-ms-win-devices-query-l1-1-0.dll - DevCloseObjectQuery : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x74f5bb8d
[IAT:Addr] (explorer.exe @ pnidui.dll) api-ms-win-devices-config-l1-1-0.dll - CM_Unregister_Notification : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x74f547bb
[IAT:Addr] (explorer.exe @ pnidui.dll) api-ms-win-devices-config-l1-1-0.dll - CM_Register_Notification : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x74f56afc
[IAT:Addr] (explorer.exe @ bthprops.cpl) api-ms-win-devices-query-l1-1-0.dll - DevCloseObjectQuery : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x74f5bb8d
[IAT:Addr] (explorer.exe @ bthprops.cpl) api-ms-win-devices-query-l1-1-0.dll - DevCreateObjectQuery : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x74f5c607
[IAT:Addr] (explorer.exe @ WINMMBASE.dll) api-ms-win-devices-config-l1-1-0.dll - CM_Get_DevNode_Status : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x74f56b36
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Kontrola MBR : ¤¤¤
+++++ PhysicalDrive0: ST3500320AS ATA Device +++++
--- User ---
[MBR] dd81acd3173d88b9dcd5481f07f8ffbc
[BSP] f186e9470b2d51fd7357967e2ffbc1c9 : Windows Vista/7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 2048 | Size: 350 MB
1 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 718848 | Size: 476586 MB
User = LL1 ... OK
User = LL2 ... OK
Mělo by to být dobře. :)
# AdwCleaner v4.000 - Report created 17/10/2014 at 22:13:57
# DB v2014-10-17.9
# Updated 12/10/2014 by Xplode
# Operating System : Windows 8 Enterprise (32 bits)
# Username : František - PC-POKOJ
# Running from : C:\Users\František\Desktop\adwcleaner_4.000.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
Folder Deleted : C:\ProgramData\Babylon
Folder Deleted : C:\Users\František\AppData\Roaming\Babylon
[#] Folder Deleted : C:\ProgramData\BitGuard
[#] Folder Deleted : C:\ProgramData\Browser Manager
[#] Folder Deleted : C:\ProgramData\BrowserProtect
Folder Deleted : C:\Users\František\AppData\LocalLow\DataMngr
Folder Deleted : C:\Program Files\Movies Toolbar
Folder Deleted : C:\Users\František\AppData\Roaming\OpenCandy
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro
Folder Deleted : C:\Program Files\Optimizer Pro
Folder Deleted : C:\Users\František\AppData\Roaming\Optimizer Pro
[!] Folder Deleted : C:\Users\František\AppData\Local\Pokki
Folder Deleted : C:\Users\František\AppData\Local\torch
File Deleted : C:\Users\František\Desktop\Optimizer Pro.lnk
***** [ Scheduled Tasks ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKCU\Software\Classes\pokki
Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [iLivid]
Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Optimizer Pro]
Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Pokki]
Key Deleted : HKLM\SOFTWARE\Classes\Prod.cap
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bitguard.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsemngr.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsermngr.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bundlesweetimsetup.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\cltmngsvc.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta babylon.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta tb.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta2.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltainstaller.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltasetup.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltatb.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltatb_2501-c733154b.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\iminentsetup.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\sweetimsetup.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\tbdelta.exetoolbar783881609.exe
Value Deleted : HKLM\SYSTEM\ControlSet001\Control\Session Manager\AppCertDlls [x64]
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{685F23D9-FCFD-475C-B56A-362645945C5A}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A1B48071-416D-474E-A13B-BE5456E7FC31}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A75BE48D-BF58-4A8B-B96C-F9A09DFB9844}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{99C22A61-21BA-4F81-85FF-CDC9EB5DB10B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3D86A75B-CB6B-4764-885D-CA6336F04BA2}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Key Deleted : HKCU\Software\ilivid
Key Deleted : HKCU\Software\iVIDI Plugin
Key Deleted : HKCU\Software\Optimizer Pro
Key Deleted : HKCU\Software\Pokki
Key Deleted : HKCU\Software\Softonic
Key Deleted : HKCU\Software\torch
Key Deleted : HKCU\Software\Unitech LLC
Key Deleted : HKLM\SOFTWARE\DataMngr
Key Deleted : HKLM\SOFTWARE\torch
Key Deleted : HKLM\SOFTWARE\Unitech LLC
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Pokki
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\iVIDI Plugin
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Optimizer Pro_is1
Data Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - c:\progra~1\movies~1\datamngr\mgrldr.dll
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\rjatydimofu.exe
***** [ Browsers ] *****
-\\ Internet Explorer v10.0.9200.17116
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
-\\ Mozilla Firefox v31.0 (x86 cs)
-\\ Google Chrome v38.0.2125.104
*************************
AdwCleaner[R0].txt - [7814 octets] - [17/10/2014 11:06:09]
AdwCleaner[R1].txt - [7874 octets] - [17/10/2014 21:31:26]
AdwCleaner[S0].txt - [5716 octets] - [17/10/2014 22:13:57]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [5776 octets] ##########
Junkware Removal Tool
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.3.3 (10.14.2014:1)
OS: Windows 8 Enterprise x86
Ran by Frantiçek on p 17. 10. 2014 at 22:21:28,14
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{043DB837-DD6B-4707-9F46-4847233C8942}
~~~ Files
Successfully deleted: [File] C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1472965391-1808300874-1493842840-1001
Successfully deleted: [File] "C:\Windows\wininit.ini"
~~~ Folders
Successfully deleted: [Folder] "C:\Windows\system32\ai_recyclebin"
~~~ FireFox
Successfully deleted the following from C:\Users\Frantiçek\AppData\Roaming\mozilla\firefox\profiles\mcnowdmy.default-1399755991489\prefs.js
user_pref("extensions.foxcub.config.encodedConfig", "{\"core\":{\"configUrl\":\"hxxp://download.seznam.cz/software/conf/\",\"updateUrl\":\"hxxp://download.seznam.cz/software/c
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on p 17. 10. 2014 at 22:24:02,79
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
MbAM
Malwarebytes Anti-Malware
http://www.malwarebytes.org
Scan Date: 17. 10. 2014
Scan Time: 22:29:11
Logfile: Log.txt
Administrator: Yes
Version: 2.00.3.1025
Malware Database: v2014.10.17.03
Rootkit Database: v2014.10.15.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled
OS: Windows 8
CPU: x86
File System: NTFS
User: FrantiA!ek
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 320843
Time Elapsed: 6 min, 45 sec
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled
Processes: 0
(No malicious items detected)
Modules: 0
(No malicious items detected)
Registry Keys: 2
PUP.Optional.Ividi.A, HKLM\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\giacfgjdclhnmkacnfbaljbmpnelflol, Quarantined, [be090015cfadfc3a8c8ef1600df64fb1],
PUP.Optional.Ividi.A, HKU\S-1-5-21-1472965391-1808300874-1493842840-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\iVIDI.org, Quarantined, [626513029ae2bc7a9e812a27b0539b65],
Registry Values: 0
(No malicious items detected)
Registry Data: 0
(No malicious items detected)
Folders: 3
PUP.Optional.Ividi.A, C:\Program Files\iVIDI.org plugin, Quarantined, [0abd38dd126a013574ba14d90cf60ff1],
PUP.Optional.Ividi.A, C:\Users\FrantiA!ek\AppData\Local\Google\Chrome\User Data\Default\Extensions\giacfgjdclhnmkacnfbaljbmpnelflol, Quarantined, [01c6e134b5c7e2549a20d0214eb4db25],
PUP.Optional.Ividi.A, C:\Users\FrantiA!ek\AppData\Local\Google\Chrome\User Data\Default\Extensions\giacfgjdclhnmkacnfbaljbmpnelflol\1.3_0, Quarantined, [01c6e134b5c7e2549a20d0214eb4db25],
Files: 8
PUP.Optional.IVidi.A, C:\Program Files\iVIDI.org plugin\IEhelperActiveX.dll, Quarantined, [d5f2b75e2953b38341c21b1f1de341bf],
PUP.Optional.Bitcoin, C:\Windows\System32\acumncoyqsem.exe, Quarantined, [26a1d144c3b9f4422161fce34fb2bf41],
Adware.InstallBrain, C:\Users\FrantiA!ek\Downloads\77ZipSetup.exe, Quarantined, [6a5d2ee738440e2864ffeb31cc3508f8],
PUP.Optional.Bandoo, C:\Users\FrantiA!ek\Downloads\iLividSetup_A-r641-t-bc.exe, Quarantined, [51768b8a87f537ffba8f2bf32dd4916f],
PUP.Optional.Ividi.A, C:\Program Files\iVIDI.org plugin\ividiplg.crx, Quarantined, [0abd38dd126a013574ba14d90cf60ff1],
PUP.Optional.Ividi.A, C:\Program Files\iVIDI.org plugin\uninst.exe, Quarantined, [0abd38dd126a013574ba14d90cf60ff1],
PUP.Optional.Ividi.A, C:\Users\FrantiA!ek\AppData\Local\Google\Chrome\User Data\Default\Extensions\giacfgjdclhnmkacnfbaljbmpnelflol\1.3_0\chividiplg.dll, Quarantined, [01c6e134b5c7e2549a20d0214eb4db25],
PUP.Optional.Ividi.A, C:\Users\FrantiA!ek\AppData\Local\Google\Chrome\User Data\Default\Extensions\giacfgjdclhnmkacnfbaljbmpnelflol\1.3_0\manifest.json, Quarantined, [01c6e134b5c7e2549a20d0214eb4db25],
Physical Sectors: 0
(No malicious items detected)
(end)
RogueKiller
RogueKiller V10.0.2.0 [Oct 16 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Feedback : http://forum.adlice.com
Webová stránka : http://www.adlice.com/softwares/roguekiller/
Blog : http://www.adlice.com
Operační systém : Windows 8 (6.2.9200 ) 32 bits version
Spuštěno : Normální režim
Uživatel : František [Práva správce]
Mód : Prohledat -- Datum : 10/17/2014 22:45:03
¤¤¤ Procesy : 0 ¤¤¤
¤¤¤ Registry : 9 ¤¤¤
[Suspicious.Path] HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\FairplayKD (\??\C:\ProgramData\MTA San Andreas All\Common\temp\FairplayKD.sys) -> Nalezeno
[Hidden.From.SCM] HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\yuktr (System32\drivers\xmmlew.sys) -> Nalezeno
[Suspicious.Path] HKEY_LOCAL_MACHINE\System\ControlSet001\Services\FairplayKD (\??\C:\ProgramData\MTA San Andreas All\Common\temp\FairplayKD.sys) -> Nalezeno
[PUM.Dns] HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters | DhcpNameServer : 10.0.0.138 -> Nalezeno
[PUM.Dns] HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters | DhcpNameServer : 10.0.0.138 -> Nalezeno
[PUM.Dns] HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{0F9AC8DB-D3CB-45A3-BC16-85BEF30E5BC1} | DhcpNameServer : 10.0.0.138 -> Nalezeno
[PUM.Dns] HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters\Interfaces\{0F9AC8DB-D3CB-45A3-BC16-85BEF30E5BC1} | DhcpNameServer : 10.0.0.138 -> Nalezeno
[PUM.DesktopIcons] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {20D04FE0-3AEA-1069-A2D8-08002B30309D} : 1 -> Nalezeno
[PUM.DesktopIcons] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {59031a47-3f72-44a7-89c5-5595fe6b30ee} : 1 -> Nalezeno
¤¤¤ Úlohy : 0 ¤¤¤
¤¤¤ Soubory : 0 ¤¤¤
¤¤¤ Soubor HOSTS : 0 ¤¤¤
¤¤¤ Antirootkit : 9 (Driver: Nahrán) ¤¤¤
[IAT:Addr] (explorer.exe @ DEVOBJ.dll) api-ms-win-devices-config-l1-1-0.dll - CM_Get_Class_Registry_PropertyW : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x74f7a599
[IAT:Addr] (explorer.exe @ DEVOBJ.dll) api-ms-win-devices-config-l1-1-0.dll - CM_Set_Class_Registry_PropertyW : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x74f7a161
[IAT:Addr] (explorer.exe @ DEVOBJ.dll) api-ms-win-devices-query-l1-1-0.dll - DevCreateObjectQuery : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x74f5c607
[IAT:Addr] (explorer.exe @ DEVOBJ.dll) api-ms-win-devices-query-l1-1-0.dll - DevCloseObjectQuery : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x74f5bb8d
[IAT:Addr] (explorer.exe @ pnidui.dll) api-ms-win-devices-config-l1-1-0.dll - CM_Unregister_Notification : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x74f547bb
[IAT:Addr] (explorer.exe @ pnidui.dll) api-ms-win-devices-config-l1-1-0.dll - CM_Register_Notification : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x74f56afc
[IAT:Addr] (explorer.exe @ bthprops.cpl) api-ms-win-devices-query-l1-1-0.dll - DevCloseObjectQuery : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x74f5bb8d
[IAT:Addr] (explorer.exe @ bthprops.cpl) api-ms-win-devices-query-l1-1-0.dll - DevCreateObjectQuery : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x74f5c607
[IAT:Addr] (explorer.exe @ WINMMBASE.dll) api-ms-win-devices-config-l1-1-0.dll - CM_Get_DevNode_Status : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x74f56b36
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Kontrola MBR : ¤¤¤
+++++ PhysicalDrive0: ST3500320AS ATA Device +++++
--- User ---
[MBR] dd81acd3173d88b9dcd5481f07f8ffbc
[BSP] f186e9470b2d51fd7357967e2ffbc1c9 : Windows Vista/7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 2048 | Size: 350 MB
1 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 718848 | Size: 476586 MB
User = LL1 ... OK
User = LL2 ... OK
Mělo by to být dobře. :)
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu
Zavři všechny programy a prohlížeče. Deaktivuj antivir a firewall.
Prosím, odpoj všechny USB (kromě myši s klávesnice) nebo externí disky z počítače před spuštěním tohoto programu.
Spusť znovu RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Pak klikni na "Prohledat " ,po jeho skončení:
- V záložkách (Registry , Tasks , Web Browser apod.) vše zatrhni (dej zatržítka)
- Klikni na "Smazat"
- Počkej, dokud Status box nezobrazí " Mazání dokončeno "
- Klikni na "Zpráva " a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [číslo]. txt na ploše.
- Zavři RogueKiller
Stáhni
Zoek.exe
a uloz si ho na plochu.
Zavři všechny ostatní programy , okna i prohlížeče.
Spusť Zoek.exe ( u win vista , win7, 8 klikni na něj pravým a vyber : „Spustit jako správce“
- pozor , náběh programu může trvat déle.
Do okna programu vlož skript níže:
klikni na Run Script
Program provede sken , opravu, sken i oprava může trvat i více minut ,je třeba posečkat do konce. Do okna neklikej!
Program nabídne restart , potvrď .
Po restartu se může nějaký čas ukázat pouze černá plocha , to je normální. Je třeba počkat až se vytvoří log. Ten si můžeš uložit třeba do dokumentů , jinak se sám ukládá do:
C:\zoek-results.log
Zkopíruj sem celý obsah toho logu.
Prosím, odpoj všechny USB (kromě myši s klávesnice) nebo externí disky z počítače před spuštěním tohoto programu.
Spusť znovu RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Pak klikni na "Prohledat " ,po jeho skončení:
- V záložkách (Registry , Tasks , Web Browser apod.) vše zatrhni (dej zatržítka)
- Klikni na "Smazat"
- Počkej, dokud Status box nezobrazí " Mazání dokončeno "
- Klikni na "Zpráva " a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [číslo]. txt na ploše.
- Zavři RogueKiller
Stáhni
Zoek.exe
a uloz si ho na plochu.
Zavři všechny ostatní programy , okna i prohlížeče.
Spusť Zoek.exe ( u win vista , win7, 8 klikni na něj pravým a vyber : „Spustit jako správce“
- pozor , náběh programu může trvat déle.
Do okna programu vlož skript níže:
Kód: Vybrat vše
autoclean;
emptyclsid;
iedefaults;
FFdefaults;
CHRdefaults;
emptyalltemp;
resethosts;
klikni na Run Script
Program provede sken , opravu, sken i oprava může trvat i více minut ,je třeba posečkat do konce. Do okna neklikej!
Program nabídne restart , potvrď .
Po restartu se může nějaký čas ukázat pouze černá plocha , to je normální. Je třeba počkat až se vytvoří log. Ten si můžeš uložit třeba do dokumentů , jinak se sám ukládá do:
C:\zoek-results.log
Zkopíruj sem celý obsah toho logu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Prosím o kontrolu logu
RogueKiller
Šlo mi zatrhávat jen v Registry, v ničem jiném.
RogueKiller V10.0.2.0 [Oct 16 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Feedback : http://forum.adlice.com
Webová stránka : http://www.adlice.com/softwares/roguekiller/
Blog : http://www.adlice.com
Operační systém : Windows 8 (6.2.9200 ) 32 bits version
Spuštěno : Normální režim
Uživatel : František [Práva správce]
Mód : Smazat -- Datum : 10/18/2014 10:42:00
¤¤¤ Procesy : 0 ¤¤¤
¤¤¤ Registry : 8 ¤¤¤
[Suspicious.Path] HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\FairplayKD -> Smazáno
[Suspicious.Path] HKEY_LOCAL_MACHINE\System\ControlSet001\Services\FairplayKD -> Smazáno
[PUM.Dns] HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters | DhcpNameServer : 10.0.0.138 -> Nahrazeno ()
[PUM.Dns] HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters | DhcpNameServer : 10.0.0.138 -> Nahrazeno ()
[PUM.Dns] HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{0F9AC8DB-D3CB-45A3-BC16-85BEF30E5BC1} | DhcpNameServer : 10.0.0.138 -> Nahrazeno ()
[PUM.Dns] HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters\Interfaces\{0F9AC8DB-D3CB-45A3-BC16-85BEF30E5BC1} | DhcpNameServer : 10.0.0.138 -> Nahrazeno ()
[PUM.DesktopIcons] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {20D04FE0-3AEA-1069-A2D8-08002B30309D} : 1 -> Nahrazeno (0)
[PUM.DesktopIcons] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {59031a47-3f72-44a7-89c5-5595fe6b30ee} : 1 -> Nahrazeno (0)
¤¤¤ Úlohy : 0 ¤¤¤
¤¤¤ Soubory : 0 ¤¤¤
¤¤¤ Soubor HOSTS : 0 ¤¤¤
¤¤¤ Antirootkit : 20 (Driver: Nahrán) ¤¤¤
[IAT:Addr] (explorer.exe @ DEVOBJ.dll) api-ms-win-devices-config-l1-1-0.dll - CM_Get_Class_Registry_PropertyW : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x751aa599
[IAT:Addr] (explorer.exe @ DEVOBJ.dll) api-ms-win-devices-config-l1-1-0.dll - CM_Set_Class_Registry_PropertyW : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x751aa161
[IAT:Addr] (explorer.exe @ DEVOBJ.dll) api-ms-win-devices-query-l1-1-0.dll - DevCreateObjectQuery : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x7518c607
[IAT:Addr] (explorer.exe @ DEVOBJ.dll) api-ms-win-devices-query-l1-1-0.dll - DevCloseObjectQuery : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x7518bb8d
[IAT:Addr] (explorer.exe @ pnidui.dll) api-ms-win-devices-config-l1-1-0.dll - CM_Unregister_Notification : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x751847bb
[IAT:Addr] (explorer.exe @ pnidui.dll) api-ms-win-devices-config-l1-1-0.dll - CM_Register_Notification : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x75186afc
[IAT:Addr] (explorer.exe @ bthprops.cpl) api-ms-win-devices-query-l1-1-0.dll - DevCloseObjectQuery : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x7518bb8d
[IAT:Addr] (explorer.exe @ bthprops.cpl) api-ms-win-devices-query-l1-1-0.dll - DevCreateObjectQuery : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x7518c607
[IAT:Addr] (explorer.exe @ WINMMBASE.dll) api-ms-win-devices-config-l1-1-0.dll - CM_Get_DevNode_Status : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x75186b36
[IAT:Addr] (explorer.exe @ MFPlat.DLL) api-ms-win-devices-config-l1-1-0.dll - CM_Unregister_Notification : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x751847bb
[IAT:Addr] (explorer.exe @ MFPlat.DLL) api-ms-win-devices-config-l1-1-0.dll - CM_Register_Notification : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x75186afc
[IAT:Addr] (explorer.exe @ usbui.dll) SETUPAPI.dll - CM_Get_Child : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x7518acf9
[IAT:Addr] (explorer.exe @ usbui.dll) SETUPAPI.dll - CM_Get_DevNode_Registry_PropertyW : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x7518da6b
[IAT:Addr] (explorer.exe @ usbui.dll) SETUPAPI.dll - CM_Get_Device_IDW : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x75184a7a
[IAT:Addr] (explorer.exe @ usbui.dll) SETUPAPI.dll - CM_Locate_DevNodeW : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x751856a6
[IAT:Addr] (explorer.exe @ usbui.dll) SETUPAPI.dll - CM_Open_DevNode_Key : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x75196198
[IAT:Addr] (explorer.exe @ usbui.dll) SETUPAPI.dll - CM_Get_DevNode_Status : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x75186b36
[IAT:Addr] (explorer.exe @ usbui.dll) SETUPAPI.dll - CM_Get_Sibling : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x75195ea1
[IAT:Addr] (explorer.exe @ usbui.dll) SETUPAPI.dll - CM_Get_Parent : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x7518a9f3
[IAT:Addr] (explorer.exe @ acppage.dll) sfc.dll - SfcIsFileProtected : C:\Windows\System32\sfc_os.dll @ 0x6b7a239d
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Kontrola MBR : ¤¤¤
+++++ PhysicalDrive0: ST3500320AS ATA Device +++++
--- User ---
[MBR] dd81acd3173d88b9dcd5481f07f8ffbc
[BSP] f186e9470b2d51fd7357967e2ffbc1c9 : Windows Vista/7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 2048 | Size: 350 MB
1 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 718848 | Size: 476586 MB
User = LL1 ... OK
User = LL2 ... OK
============================================
RKreport_SCN_10172014_224503.log - RKreport_SCN_10182014_103955.log
Zoek
Zoek.exe v5.0.0.0 Updated 17-10-2014
Tool run by Frantiçek on so 18. 10. 2014 at 10:47:28,94.
Microsoft Windows 8 Enterprise 6.2.9200 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\FRANTI~1\Desktop\zoek.exe [Scan all users] [Script inserted]
==== System Restore Info ======================
18. 10. 2014 10:48:28 Zoek.exe System Restore Point Created Succesfully.
==== Reset Hosts File ======================
# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host
# localhost name resolution is handle within DNS itself.
127.0.0.1 localhost
::1 localhost
==== Deleting CLSID Registry Keys ======================
==== Deleting CLSID Registry Values ======================
==== Deleting Services ======================
==== FireFox Fix ======================
Deleted from C:\Users\FRANTI~1\AppData\Roaming\Mozilla\Firefox\Profiles\mcnowdmy.default-1399755991489\prefs.js:
Added to C:\Users\FRANTI~1\AppData\Roaming\Mozilla\Firefox\Profiles\mcnowdmy.default-1399755991489\prefs.js:
user_pref("browser.startup.homepage", "http://www.google.com");
user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "http://www.google.com/");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.suggest.enabled", true);
user_pref("browser.search.useDBForOrder", true);
ProfilePath: C:\Users\FRANTI~1\AppData\Roaming\Mozilla\Firefox\Profiles\mcnowdmy.default-1399755991489
user.js not found
---- FireFox user.js and prefs.js backups ----
prefs_201418.10._1055_.backup
==== Deleting Files \ Folders ======================
C:\PROGRA~2\Overwolf deleted
C:\Users\FRANTI~1\AppData\Local\Pokki deleted
C:\Users\FRANTI~1\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\PC App Store.lnk deleted
==== Firefox Extensions Registry ======================
[HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions]
"wrc@avast.com"="C:\Program Files\AVAST Software\Avast\WebRep\FF" [15. 09. 2014 19:13]
==== Firefox Extensions ======================
ProfilePath: C:\Users\FRANTI~1\AppData\Roaming\Mozilla\Firefox\Profiles\mcnowdmy.default-1399755991489
- Undetermined - C:\Users\František\AppData\Roaming\Mozilla\Firefox\Profiles\mcnowdmy.default-1399755991489\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
- Seznam litika - %ProfilePath%\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
AppDir: C:\Program Files\Mozilla Firefox
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
==== Firefox Plugins ======================
==== Chromium Look ======================
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[15. 09. 2014 19:12]
Battlefield Heroes - FRANTI~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\cehdakiococlfmjcbebbkjkfjhbieknh
avast Online Security - FRANTI~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"
{87C8C64A-29E3-42BE-A11E-1402B2523F0E} Seznam TV Program Url="http://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_12902"
==== Reset Google Chrome ======================
C:\Users\FRANTI~1\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\FRANTI~1\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
==== Empty IE Cache ======================
C:\Users\FRANTI~1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
==== Empty FireFox Cache ======================
No FireFox Cache found
==== Empty Chrome Cache ======================
C:\Users\FRANTI~1\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
==== Empty All Flash Cache ======================
Flash Cache Emptied Successfully
==== Empty All Java Cache ======================
Java Cache cleared successfully
==== C:\zoek_backup content ======================
C:\zoek_backup (files=5 folders=6 54404702 bytes)
==== Empty Temp Folders ======================
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\UpdatusUser\AppData\Local\Temp emptied successfully
C:\Users\FRANTI~1\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\Windows\Temp successfully emptied
C:\Users\FRANTI~1\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied
==== EOF on so 18. 10. 2014 at 10:59:30,22 ======================
Šlo mi zatrhávat jen v Registry, v ničem jiném.
RogueKiller V10.0.2.0 [Oct 16 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Feedback : http://forum.adlice.com
Webová stránka : http://www.adlice.com/softwares/roguekiller/
Blog : http://www.adlice.com
Operační systém : Windows 8 (6.2.9200 ) 32 bits version
Spuštěno : Normální režim
Uživatel : František [Práva správce]
Mód : Smazat -- Datum : 10/18/2014 10:42:00
¤¤¤ Procesy : 0 ¤¤¤
¤¤¤ Registry : 8 ¤¤¤
[Suspicious.Path] HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\FairplayKD -> Smazáno
[Suspicious.Path] HKEY_LOCAL_MACHINE\System\ControlSet001\Services\FairplayKD -> Smazáno
[PUM.Dns] HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters | DhcpNameServer : 10.0.0.138 -> Nahrazeno ()
[PUM.Dns] HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters | DhcpNameServer : 10.0.0.138 -> Nahrazeno ()
[PUM.Dns] HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{0F9AC8DB-D3CB-45A3-BC16-85BEF30E5BC1} | DhcpNameServer : 10.0.0.138 -> Nahrazeno ()
[PUM.Dns] HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters\Interfaces\{0F9AC8DB-D3CB-45A3-BC16-85BEF30E5BC1} | DhcpNameServer : 10.0.0.138 -> Nahrazeno ()
[PUM.DesktopIcons] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {20D04FE0-3AEA-1069-A2D8-08002B30309D} : 1 -> Nahrazeno (0)
[PUM.DesktopIcons] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {59031a47-3f72-44a7-89c5-5595fe6b30ee} : 1 -> Nahrazeno (0)
¤¤¤ Úlohy : 0 ¤¤¤
¤¤¤ Soubory : 0 ¤¤¤
¤¤¤ Soubor HOSTS : 0 ¤¤¤
¤¤¤ Antirootkit : 20 (Driver: Nahrán) ¤¤¤
[IAT:Addr] (explorer.exe @ DEVOBJ.dll) api-ms-win-devices-config-l1-1-0.dll - CM_Get_Class_Registry_PropertyW : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x751aa599
[IAT:Addr] (explorer.exe @ DEVOBJ.dll) api-ms-win-devices-config-l1-1-0.dll - CM_Set_Class_Registry_PropertyW : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x751aa161
[IAT:Addr] (explorer.exe @ DEVOBJ.dll) api-ms-win-devices-query-l1-1-0.dll - DevCreateObjectQuery : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x7518c607
[IAT:Addr] (explorer.exe @ DEVOBJ.dll) api-ms-win-devices-query-l1-1-0.dll - DevCloseObjectQuery : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x7518bb8d
[IAT:Addr] (explorer.exe @ pnidui.dll) api-ms-win-devices-config-l1-1-0.dll - CM_Unregister_Notification : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x751847bb
[IAT:Addr] (explorer.exe @ pnidui.dll) api-ms-win-devices-config-l1-1-0.dll - CM_Register_Notification : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x75186afc
[IAT:Addr] (explorer.exe @ bthprops.cpl) api-ms-win-devices-query-l1-1-0.dll - DevCloseObjectQuery : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x7518bb8d
[IAT:Addr] (explorer.exe @ bthprops.cpl) api-ms-win-devices-query-l1-1-0.dll - DevCreateObjectQuery : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x7518c607
[IAT:Addr] (explorer.exe @ WINMMBASE.dll) api-ms-win-devices-config-l1-1-0.dll - CM_Get_DevNode_Status : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x75186b36
[IAT:Addr] (explorer.exe @ MFPlat.DLL) api-ms-win-devices-config-l1-1-0.dll - CM_Unregister_Notification : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x751847bb
[IAT:Addr] (explorer.exe @ MFPlat.DLL) api-ms-win-devices-config-l1-1-0.dll - CM_Register_Notification : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x75186afc
[IAT:Addr] (explorer.exe @ usbui.dll) SETUPAPI.dll - CM_Get_Child : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x7518acf9
[IAT:Addr] (explorer.exe @ usbui.dll) SETUPAPI.dll - CM_Get_DevNode_Registry_PropertyW : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x7518da6b
[IAT:Addr] (explorer.exe @ usbui.dll) SETUPAPI.dll - CM_Get_Device_IDW : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x75184a7a
[IAT:Addr] (explorer.exe @ usbui.dll) SETUPAPI.dll - CM_Locate_DevNodeW : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x751856a6
[IAT:Addr] (explorer.exe @ usbui.dll) SETUPAPI.dll - CM_Open_DevNode_Key : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x75196198
[IAT:Addr] (explorer.exe @ usbui.dll) SETUPAPI.dll - CM_Get_DevNode_Status : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x75186b36
[IAT:Addr] (explorer.exe @ usbui.dll) SETUPAPI.dll - CM_Get_Sibling : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x75195ea1
[IAT:Addr] (explorer.exe @ usbui.dll) SETUPAPI.dll - CM_Get_Parent : C:\Windows\SYSTEM32\cfgmgr32.dll @ 0x7518a9f3
[IAT:Addr] (explorer.exe @ acppage.dll) sfc.dll - SfcIsFileProtected : C:\Windows\System32\sfc_os.dll @ 0x6b7a239d
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Kontrola MBR : ¤¤¤
+++++ PhysicalDrive0: ST3500320AS ATA Device +++++
--- User ---
[MBR] dd81acd3173d88b9dcd5481f07f8ffbc
[BSP] f186e9470b2d51fd7357967e2ffbc1c9 : Windows Vista/7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 2048 | Size: 350 MB
1 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 718848 | Size: 476586 MB
User = LL1 ... OK
User = LL2 ... OK
============================================
RKreport_SCN_10172014_224503.log - RKreport_SCN_10182014_103955.log
Zoek
Zoek.exe v5.0.0.0 Updated 17-10-2014
Tool run by Frantiçek on so 18. 10. 2014 at 10:47:28,94.
Microsoft Windows 8 Enterprise 6.2.9200 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\FRANTI~1\Desktop\zoek.exe [Scan all users] [Script inserted]
==== System Restore Info ======================
18. 10. 2014 10:48:28 Zoek.exe System Restore Point Created Succesfully.
==== Reset Hosts File ======================
# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host
# localhost name resolution is handle within DNS itself.
127.0.0.1 localhost
::1 localhost
==== Deleting CLSID Registry Keys ======================
==== Deleting CLSID Registry Values ======================
==== Deleting Services ======================
==== FireFox Fix ======================
Deleted from C:\Users\FRANTI~1\AppData\Roaming\Mozilla\Firefox\Profiles\mcnowdmy.default-1399755991489\prefs.js:
Added to C:\Users\FRANTI~1\AppData\Roaming\Mozilla\Firefox\Profiles\mcnowdmy.default-1399755991489\prefs.js:
user_pref("browser.startup.homepage", "http://www.google.com");
user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "http://www.google.com/");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.suggest.enabled", true);
user_pref("browser.search.useDBForOrder", true);
ProfilePath: C:\Users\FRANTI~1\AppData\Roaming\Mozilla\Firefox\Profiles\mcnowdmy.default-1399755991489
user.js not found
---- FireFox user.js and prefs.js backups ----
prefs_201418.10._1055_.backup
==== Deleting Files \ Folders ======================
C:\PROGRA~2\Overwolf deleted
C:\Users\FRANTI~1\AppData\Local\Pokki deleted
C:\Users\FRANTI~1\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\PC App Store.lnk deleted
==== Firefox Extensions Registry ======================
[HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions]
"wrc@avast.com"="C:\Program Files\AVAST Software\Avast\WebRep\FF" [15. 09. 2014 19:13]
==== Firefox Extensions ======================
ProfilePath: C:\Users\FRANTI~1\AppData\Roaming\Mozilla\Firefox\Profiles\mcnowdmy.default-1399755991489
- Undetermined - C:\Users\František\AppData\Roaming\Mozilla\Firefox\Profiles\mcnowdmy.default-1399755991489\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
- Seznam litika - %ProfilePath%\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
AppDir: C:\Program Files\Mozilla Firefox
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
==== Firefox Plugins ======================
==== Chromium Look ======================
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[15. 09. 2014 19:12]
Battlefield Heroes - FRANTI~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\cehdakiococlfmjcbebbkjkfjhbieknh
avast Online Security - FRANTI~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"
{87C8C64A-29E3-42BE-A11E-1402B2523F0E} Seznam TV Program Url="http://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_12902"
==== Reset Google Chrome ======================
C:\Users\FRANTI~1\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\FRANTI~1\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
==== Empty IE Cache ======================
C:\Users\FRANTI~1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
==== Empty FireFox Cache ======================
No FireFox Cache found
==== Empty Chrome Cache ======================
C:\Users\FRANTI~1\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
==== Empty All Flash Cache ======================
Flash Cache Emptied Successfully
==== Empty All Java Cache ======================
Java Cache cleared successfully
==== C:\zoek_backup content ======================
C:\zoek_backup (files=5 folders=6 54404702 bytes)
==== Empty Temp Folders ======================
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\UpdatusUser\AppData\Local\Temp emptied successfully
C:\Users\FRANTI~1\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\Windows\Temp successfully emptied
C:\Users\FRANTI~1\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied
==== EOF on so 18. 10. 2014 at 10:59:30,22 ======================
- Orcus
- člen Security týmu
-
Elite Level 10.5
- Příspěvky: 10645
- Registrován: duben 10
- Bydliště: Okolo rostou 3 růže =o)
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu
Co problémy?
Láska hřeje, ale uhlí je uhlí.
Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.
Pár rad k bezpečnosti PC.
Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix
Pokud budete spokojeni , můžete podpořit naše fórum.

Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.
Pár rad k bezpečnosti PC.
Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix
Pokud budete spokojeni , můžete podpořit naše fórum.
Re: Prosím o kontrolu logu
Hra mi furt nejde. :/
- Orcus
- člen Security týmu
-
Elite Level 10.5
- Příspěvky: 10645
- Registrován: duben 10
- Bydliště: Okolo rostou 3 růže =o)
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu
Stáhni si TDSSKiller
Na svojí plochu. Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller.2.2.7.1._(datum)_log.txt , vlož sem prosím celý obsah logu.
Pokud se log nevejde do jedné zprávy, rozděl jej na více částí.
Na svojí plochu. Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller.2.2.7.1._(datum)_log.txt , vlož sem prosím celý obsah logu.
Pokud se log nevejde do jedné zprávy, rozděl jej na více částí.
Láska hřeje, ale uhlí je uhlí.
Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.
Pár rad k bezpečnosti PC.
Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix
Pokud budete spokojeni , můžete podpořit naše fórum.

Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.
Pár rad k bezpečnosti PC.
Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix
Pokud budete spokojeni , můžete podpořit naše fórum.
Re: Prosím o kontrolu logu
17:30:44.0010 0x0b7c TDSS rootkit removing tool 3.0.0.40 Jul 10 2014 12:37:58
17:30:49.0343 0x0b7c ============================================================
17:30:49.0343 0x0b7c Current date / time: 2014/10/18 17:30:49.0343
17:30:49.0343 0x0b7c SystemInfo:
17:30:49.0343 0x0b7c
17:30:49.0343 0x0b7c OS Version: 6.2.9200 ServicePack: 0.0
17:30:49.0343 0x0b7c Product type: Workstation
17:30:49.0343 0x0b7c ComputerName: PC-POKOJ
17:30:49.0343 0x0b7c UserName: František
17:30:49.0343 0x0b7c Windows directory: C:\Windows
17:30:49.0343 0x0b7c System windows directory: C:\Windows
17:30:49.0343 0x0b7c Processor architecture: Intel x86
17:30:49.0343 0x0b7c Number of processors: 4
17:30:49.0343 0x0b7c Page size: 0x1000
17:30:49.0343 0x0b7c Boot type: Normal boot
17:30:49.0343 0x0b7c ============================================================
17:30:50.0265 0x0b7c KLMD registered as C:\Windows\system32\drivers\01892400.sys
17:30:50.0562 0x0b7c System UUID: {C44DF396-8AFF-3AD8-58F2-07B6DB5C67D3}
17:30:50.0999 0x0b7c Drive \Device\Harddisk0\DR0 - Size: 0x7470AFDE00 ( 465.76 Gb ), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
17:30:51.0046 0x0b7c ============================================================
17:30:51.0046 0x0b7c \Device\Harddisk0\DR0:
17:30:51.0046 0x0b7c MBR partitions:
17:30:51.0046 0x0b7c \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0xAF000
17:30:51.0046 0x0b7c \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0xAF800, BlocksNum 0x3A2D5000
17:30:51.0046 0x0b7c ============================================================
17:30:51.0093 0x0b7c C: <-> \Device\Harddisk0\DR0\Partition2
17:30:51.0093 0x0b7c ============================================================
17:30:51.0093 0x0b7c Initialize success
17:30:51.0093 0x0b7c ============================================================
17:30:54.0022 0x15ac ============================================================
17:30:54.0022 0x15ac Scan started
17:30:54.0022 0x15ac Mode: Manual;
17:30:54.0022 0x15ac ============================================================
17:30:54.0022 0x15ac KSN ping started
17:30:56.0691 0x15ac KSN ping finished: true
17:30:58.0763 0x15ac ================ Scan system memory ========================
17:30:58.0763 0x15ac System memory - ok
17:30:58.0763 0x15ac ================ Scan services =============================
17:30:58.0873 0x15ac [ E7B9E170EFF01486D3118E372BA0AF21, 70A640CBA334F087D216D13005E98484DE125541A941D669398673243B714189 ] 1394ohci C:\Windows\System32\drivers\1394ohci.sys
17:30:58.0888 0x15ac 1394ohci - ok
17:30:58.0904 0x15ac [ 96191579DDB1A201A2FB79C1D05680B4, 0A21C2F3031A9D147DF3E34F25F382B54A62B8764C05A26C388C4F05F56E6F73 ] 3ware C:\Windows\system32\drivers\3ware.sys
17:30:58.0904 0x15ac 3ware - ok
17:30:58.0967 0x15ac [ B69DD3D0C195558ED5A4CF69A9D241A4, B4358F678F7CC3AA85E1E06B233A788E4A2B13A489436E85314F633EE4728B62 ] ACPI C:\Windows\system32\drivers\ACPI.sys
17:30:58.0967 0x15ac ACPI - ok
17:30:58.0982 0x15ac [ 3A5DA97644B9E2662CFF186A8798519C, 8AF47B3C6C2CDACD1323E97B9C02FDDFA2CAF68D660B4E8713B160D3C81491ED ] acpiex C:\Windows\system32\Drivers\acpiex.sys
17:30:58.0982 0x15ac acpiex - ok
17:30:58.0998 0x15ac [ 87C4AE693CA8AB6E2A13B7C7453466DB, 127D0B337F6B26DCC00E8FBC6A0A403DBEF1436D2F3B2C81B2AAA0DE6B0A879F ] acpipagr C:\Windows\System32\drivers\acpipagr.sys
17:30:58.0998 0x15ac acpipagr - ok
17:30:58.0998 0x15ac [ C7D2BA04BA3C6CA702C2615A0C50469C, AA6EF530F76B89BA380DF696AE88E63D345407A6164D7DA67827B362144B6F8C ] AcpiPmi C:\Windows\System32\drivers\acpipmi.sys
17:30:58.0998 0x15ac AcpiPmi - ok
17:30:59.0013 0x15ac [ 38E110C96B2ACAB4D9A701777C9BCD98, D62A26C5EE6B9900F4BCC1B941437A9B6115478563FC8B77860D783BE83C32A9 ] acpitime C:\Windows\System32\drivers\acpitime.sys
17:30:59.0013 0x15ac acpitime - ok
17:30:59.0092 0x15ac [ FBB312C9DA3863673EC18F4AE4101778, 4E9AAE7C700E485C17FDFCC9100A79784673B006D00D4D4CE8F1DB617D25C864 ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
17:30:59.0092 0x15ac AdobeFlashPlayerUpdateSvc - ok
17:30:59.0123 0x15ac [ 2FE756FD6E0336990D0B3652A07EBB9B, 17B803E37096E89EF02EF30E7D26B82BCD21469C98092B83D853B1108E1CD757 ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
17:30:59.0138 0x15ac adp94xx - ok
17:30:59.0154 0x15ac [ CC579EC50EE5435A4070306C0E4EF9E6, CEEF9B8821B6C68AA217B7650DD778381670807E7487D0E82367585FE6C6F494 ] adpahci C:\Windows\system32\drivers\adpahci.sys
17:30:59.0154 0x15ac adpahci - ok
17:30:59.0170 0x15ac [ 82743090D0259BF9F1373AD48372CBAC, B667E0F830B4250737955E6F83D5AC39FCEFB2FB27F37EEBF89E130D0055F550 ] adpu320 C:\Windows\system32\drivers\adpu320.sys
17:30:59.0170 0x15ac adpu320 - ok
17:30:59.0201 0x15ac [ 5D4FC8F08B45241857776E44AC71F0ED, D7FFD69FC3FF95ABFC0CC3FFDD290370AD0332A6E9C7FCB5E56371CA33C4557B ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
17:30:59.0201 0x15ac AeLookupSvc - ok
17:30:59.0248 0x15ac [ B92C9A8C3CAE22129CC5B4A920B00608, 104A246306268B3DC3674F36BD4C4D9E99C7EE02AD81D442B902F8AD2A0915B0 ] AFD C:\Windows\system32\drivers\afd.sys
17:30:59.0248 0x15ac AFD - ok
17:30:59.0263 0x15ac [ 73BB2C687305C4195ED7511587B041AA, AF3151C3BDBEEEF422B6A2672E376AA0FC0AF5E800A48659256CDE7E522FBE13 ] agp440 C:\Windows\system32\drivers\agp440.sys
17:30:59.0263 0x15ac agp440 - ok
17:30:59.0279 0x15ac [ B5A707E902BE5FC9B93C389FBA6EDF9C, 3274D0FC8B3CC0C27EBE3D1E7AA31BF261F265FA31B0EF767F15289E2843A1D6 ] ALG C:\Windows\System32\alg.exe
17:30:59.0279 0x15ac ALG - ok
17:30:59.0295 0x15ac [ 8F12F6811F8C4C248E2FAA8779C6FCFE, FFFF2F7F3E60FDF669D37B2396B987CBAE9E32E74C5D59297AB7B5BCE7B3ADAA ] AllUserInstallAgent C:\Windows\system32\AUInstallAgent.dll
17:30:59.0310 0x15ac AllUserInstallAgent - ok
17:30:59.0310 0x15ac [ E44885EA3E89A54BF14C78892CE85EA0, C80C5FA0D1CE02E1E03D4EEC6C77A3C3ACAFFE5A01F24A66183EB4447C027801 ] amdagp C:\Windows\system32\drivers\amdagp.sys
17:30:59.0310 0x15ac amdagp - ok
17:30:59.0326 0x15ac [ FFDBB0DC75CDF6A3CC63B3DF790313EB, 1B98218B120894CCE2F86B9EC6C18B764FF7FF004EB5BAE4CD1086EB3579610D ] AmdK8 C:\Windows\System32\drivers\amdk8.sys
17:30:59.0326 0x15ac AmdK8 - ok
17:30:59.0342 0x15ac [ DF7FE35014C17CC4659C2531F9EA5A36, 1C8B38C4901A3734EA4FCF50034F1FB23A5FAB78CE6092903088B774D1C31EEE ] AmdPPM C:\Windows\System32\drivers\amdppm.sys
17:30:59.0342 0x15ac AmdPPM - ok
17:30:59.0357 0x15ac [ 8D5D89177552EDFD5C9730CCE79F7FCC, 5A62F0FA7C2A2EBDD88B0670CA017B96C82D1591BF50DDC58B93518CEF67D179 ] amdsata C:\Windows\system32\drivers\amdsata.sys
17:30:59.0373 0x15ac amdsata - ok
17:30:59.0373 0x15ac [ 5725597CF5E002FB665C6C69787DAA8A, E2C284A4380C014319DA29B3224EDB45E12FE0FE0ED81C35AA5A1A91D9BDF7EE ] amdsbs C:\Windows\system32\drivers\amdsbs.sys
17:30:59.0388 0x15ac amdsbs - ok
17:30:59.0388 0x15ac [ FB336B5F110770CF22F6BFEB1906E773, C1673F45081137E29E22DBF1BDE882ADC9E9508CF72EF1583A53339B65098E35 ] amdxata C:\Windows\system32\drivers\amdxata.sys
17:30:59.0388 0x15ac amdxata - ok
17:30:59.0404 0x15ac [ CB3613E82A5B058AB6A69846B0DDC6C5, 56C2E1DD51C8EDB5057A2DCF5B12400695715BDCF81A9D75C786186D08B80147 ] AppID C:\Windows\system32\drivers\appid.sys
17:30:59.0404 0x15ac AppID - ok
17:30:59.0420 0x15ac [ 721C445A7EE59589B26EE0DC767A7967, 2EFE73128524DC70D61FE8B3429AAEA23F29F931E904949BD554BD50F93D9797 ] AppIDSvc C:\Windows\System32\appidsvc.dll
17:30:59.0420 0x15ac AppIDSvc - ok
17:30:59.0467 0x15ac [ 2153ADB83E48B54B384FF9651D695913, 979CD19EB1B7EAC864937663F172ED0BFDD246248178BC0C939F4EA845802EC3 ] Appinfo C:\Windows\System32\appinfo.dll
17:30:59.0467 0x15ac Appinfo - ok
17:30:59.0482 0x15ac [ 8F0F777B167CADDF9D206180B8558433, 4811E247DC398C3E0F49AD494CF3DB4349678D9D3A0DB2CE8F684E4E63515BF9 ] AppMgmt C:\Windows\System32\appmgmts.dll
17:30:59.0482 0x15ac AppMgmt - ok
17:30:59.0482 0x15ac [ A0982052EE6B01DC9B0CB7FEFD13040F, BB307503D44BBA825A4FA3B2E138F6603D06CC1BDADD25AEDF4CEDF8F456C58B ] arc C:\Windows\system32\drivers\arc.sys
17:30:59.0498 0x15ac arc - ok
17:30:59.0498 0x15ac [ 7E17A734B0D33B8F9287F28F1C583DD7, FE5B11768A17BFDBE5566DC3FC9E33F6D692B74321D2945CDE1EE9C5C49A7FC4 ] arcsas C:\Windows\system32\drivers\arcsas.sys
17:30:59.0498 0x15ac arcsas - ok
17:30:59.0576 0x15ac [ E208D0E0128B44387822DC6E9A95BF69, AD604EAF0F98A44F8D842C858D40AFC195F06E2EB1BC3656777BF5757A5FBF13 ] ArcService C:\Program Files\Perfect World Entertainment\Arc\ArcService.exe
17:30:59.0592 0x15ac ArcService - ok
17:30:59.0623 0x15ac [ 3BFBB5DAE801CB893B8B46345FED6437, 2C2B71C1294585265D4871E74F17541500CA20DE34AC516F2A906DD81964C833 ] aswHwid C:\Windows\system32\drivers\aswHwid.sys
17:30:59.0623 0x15ac aswHwid - ok
17:30:59.0638 0x15ac aswKbd - ok
17:30:59.0654 0x15ac [ C3014C735F450FE822C97FFBB0627113, 1CCFE845AED1757B8C1F52D310933076FF1EC197D82E499DB4592B09D66137B0 ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
17:30:59.0654 0x15ac aswMonFlt - ok
17:30:59.0701 0x15ac [ E3A9DB9A256311128382D54F40981CFD, 5FFBFEA39A7B220ADF69B791ACDC0FB6983FAC7149630F30AAEF458D30D60ADD ] aswNdisFlt C:\Windows\system32\DRIVERS\aswNdisFlt.sys
17:30:59.0717 0x15ac aswNdisFlt - ok
17:30:59.0732 0x15ac [ A4614218584E41C31C7D1CBFF0432ED5, C9632FDB13FB0DD73A5FA5E2DFA5EFF97A9CD719DC0D28097B765077AD0FB3E7 ] aswRdr C:\Windows\system32\drivers\aswRdr2.sys
17:30:59.0732 0x15ac aswRdr - ok
17:30:59.0748 0x15ac [ B7750AF7EDFD95674EB7CA92BCDD3358, A097577004F3CF71E2F9465F02B073D39926D7DEE2E2A9516D888158A5CB19E9 ] aswRvrt C:\Windows\system32\drivers\aswRvrt.sys
17:30:59.0748 0x15ac aswRvrt - ok
17:30:59.0826 0x15ac [ 51FDE588D860857A97E4C4B560E40C9B, 8A3AC3E55249DAE6CCD95593989F8B100D5C4712A16681A36E5D0F2F08BD57AA ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
17:30:59.0857 0x15ac aswSnx - ok
17:30:59.0935 0x15ac [ 1AEB8CDB797666AF709A291B47AE81E0, 12AC4DBC6338BA5E5C04B449FF8362E7EC8EBFCA675C4F21BE847DFDCAE8F7C9 ] aswSP C:\Windows\system32\drivers\aswSP.sys
17:30:59.0951 0x15ac aswSP - ok
17:30:59.0951 0x15ac [ 83378AE48209388D0F9BD16A44D19EEC, 0BEBD1E425077D81B5439E90B2C518EA8B94F590B551F52289842012BA3BAB2C ] aswStm C:\Windows\system32\drivers\aswStm.sys
17:30:59.0951 0x15ac aswStm - ok
17:30:59.0951 0x15ac [ 90BEE0170D70D6744CEF2355EEAF8086, 8F9FF53F529B854934020E2F8163605DC794FF48464D3D4439BAAF70ECE8E963 ] aswVmm C:\Windows\system32\drivers\aswVmm.sys
17:30:59.0967 0x15ac aswVmm - ok
17:30:59.0967 0x15ac [ E12BC771325E70C2A875136B0BAF491E, B01621A5B26551A9AA0D379976ABB6CF1672F8F9A7689A651AFAB4A8E72DF343 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
17:30:59.0982 0x15ac AsyncMac - ok
17:30:59.0982 0x15ac [ 48D8C3F2006698691F5AE0BB595FDCC8, 374DC9E6DF7D97A1AEBBA38F04387B0621C8C994056DC7679F02F2FBE6C6C6E7 ] atapi C:\Windows\system32\drivers\atapi.sys
17:30:59.0982 0x15ac atapi - ok
17:31:00.0029 0x15ac [ 5FC6CF6B66485CE46F6193080B525F77, CBB33B54810035521AA01FBE9DCF636901B06BAF2E7A979A939D3409B2D12993 ] AudioEndpointBuilder C:\Windows\System32\AudioEndpointBuilder.dll
17:31:00.0029 0x15ac AudioEndpointBuilder - ok
17:31:00.0076 0x15ac [ CE5284B94EC4FE9A9AE25A40E73CF675, 11668A2C26398E0E595274EB773401FD28531DDF60E90E5EA0804D9444338561 ] Audiosrv C:\Windows\System32\Audiosrv.dll
17:31:00.0092 0x15ac Audiosrv - ok
17:31:00.0154 0x15ac [ 73F5C13B431915BAE35254B4E95DFB71, 393A045859382C44133C004598B1512048046BCC129FED2247A77FDBFCDB6DFF ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
17:31:00.0154 0x15ac avast! Antivirus - ok
17:31:00.0185 0x15ac [ 3B5DA02DEA6910A709F19180746FF0CE, A97CD150692171663FE15B2BFAC8176C657C4D99232E17BD3ABA6ED1D65259E3 ] avast! Firewall C:\Program Files\AVAST Software\Avast\afwServ.exe
17:31:00.0185 0x15ac avast! Firewall - ok
17:31:00.0201 0x15ac [ 3F642D45EC0BE2E4843C35A2A1AA93D5, 2F00E40B6C0105D6EF9B1F37B7635E30197DF5F6455DA4AF08D3F38E7A117F1A ] AxInstSV C:\Windows\System32\AxInstSV.dll
17:31:00.0201 0x15ac AxInstSV - ok
17:31:00.0217 0x15ac [ A96A499B6C931B7242D964D5D695A506, 8AFA1F9709494DF7D541868B3A9C9041E83BA7F02605D86A1DE84F3BE7905C7D ] BasicDisplay C:\Windows\System32\drivers\BasicDisplay.sys
17:31:00.0217 0x15ac BasicDisplay - ok
17:31:00.0217 0x15ac [ D313E4D7DF0187CEDA121793F937EA89, 213D1F9115D929E2103D193BEF72BD14BA0828A3629F99940F42B07989DCAC49 ] BasicRender C:\Windows\System32\drivers\BasicRender.sys
17:31:00.0232 0x15ac BasicRender - ok
17:31:00.0263 0x15ac [ 30D98AE688C681196D411CA65E5E90D1, A1F01227523648AAFCB777554885F49E61829940B44E1DA888E6DC117B50072D ] BDESVC C:\Windows\System32\bdesvc.dll
17:31:00.0279 0x15ac BDESVC - ok
17:31:00.0279 0x15ac [ E53DDF8C101E3CB6A0483D592A8CC476, DB688B7E857D9A95F61773E6CA5C2F6CED22B1E781822730AF31BBCAD63C4BBA ] Beep C:\Windows\system32\drivers\Beep.sys
17:31:00.0279 0x15ac Beep - ok
17:31:00.0342 0x15ac [ 29A9288E5ADE3805899B1FC1905B43D3, 06E3543F265D8E7EF4352DA129007D8C7B63F22548F766370CAD7B309CA08197 ] BFE C:\Windows\System32\bfe.dll
17:31:00.0357 0x15ac BFE - ok
17:31:00.0388 0x15ac [ 6723B30920D4371367F468DF6061A7E9, 39D7B7F5EB2A3D7B30B49DDD92ED90B0BF57C864AC10F61E5C730AC85108777F ] BITS C:\Windows\System32\qmgr.dll
17:31:00.0404 0x15ac BITS - ok
17:31:00.0404 0x15ac [ D7148E90581185DB2CC6A2EED9C8281C, 8E8D87E744895CE035EF484EFE66D2BA1CAC7947058F0CE40F6B13AA3FFF3FEC ] bowser C:\Windows\system32\DRIVERS\bowser.sys
17:31:00.0404 0x15ac bowser - ok
17:31:00.0435 0x15ac [ CCD0AAF957BE9FF1EF46E59A2824E992, 9BC60E5393CAAABCC0AC0624C17BFE4393A0F7E4A609C9E491BFC4CB5031A038 ] BrokerInfrastructure C:\Windows\System32\bisrv.dll
17:31:00.0451 0x15ac BrokerInfrastructure - ok
17:31:00.0467 0x15ac [ 771EE7009E428CCC3476838CB22DBA8D, ABA093468160F9D3E73B19F38E43299972FD583883BDD824BE366D0D3E3F8C49 ] Browser C:\Windows\System32\browser.dll
17:31:00.0482 0x15ac Browser - ok
17:31:00.0513 0x15ac [ 9053BEDE5844021CBF53273A5FE37333, 548F0BBE764268943C5DF10C3ABC693195FDB036CDF23365BFE77092CA46729A ] BthAvrcpTg C:\Windows\System32\drivers\BthAvrcpTg.sys
17:31:00.0513 0x15ac BthAvrcpTg - ok
17:31:00.0529 0x15ac [ 3EEEA1B69C16A8D159B53896EC78420C, 048039CE173B1ACBBBF97500107F2E2C1BDA1A58C2CD0F7B279D16CCCEB0A88B ] BthHFEnum C:\Windows\System32\drivers\bthhfenum.sys
17:31:00.0529 0x15ac BthHFEnum - ok
17:31:00.0560 0x15ac [ 403C9BA247F4D4C0E4FF6FFA5F096EF6, EEFF77282788ACBE94B82FB3D3C795C2698C47A3F53EB9B39E3F90118FFAB013 ] bthhfhid C:\Windows\System32\drivers\BthHFHid.sys
17:31:00.0560 0x15ac bthhfhid - ok
17:31:00.0576 0x15ac [ 0C706A8B022A44413F6C36ECEAAA2838, 7C2476F99AF4391FAEADA7F37B14631BEA15950F837176167D7036CC3A48CF39 ] BTHMODEM C:\Windows\System32\drivers\bthmodem.sys
17:31:00.0576 0x15ac BTHMODEM - ok
17:31:00.0592 0x15ac [ 171AF9795CABEC4985D45640D3A5F8F0, D50FD89FDC392720FBB0FE23341EAE95E446FC98D5487B7EE0EDC2533CA0D5A9 ] bthserv C:\Windows\system32\bthserv.dll
17:31:00.0592 0x15ac bthserv - ok
17:31:00.0607 0x15ac [ 00B4FA77732C7823D292ECD672660882, 214102B841193654BFCF6618F7D3D1928D303A01EB44A57E6333AA72CFD9F124 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
17:31:00.0607 0x15ac cdfs - ok
17:31:00.0623 0x15ac [ 4E707EC5071DD8F5C29A7410780BD4C3, 425881E5A122439A86D3C1CD54CD5CD0A122CE6689A1798887759D714E5E586C ] cdrom C:\Windows\System32\drivers\cdrom.sys
17:31:00.0623 0x15ac cdrom - ok
17:31:00.0638 0x15ac [ BAEE72BFBEC7B96AA85F861A6F4FE428, 78E6C63848C5AFCD67C08F2A17BFD764524B8A9117EAF74CD5514F8239E155CB ] CertPropSvc C:\Windows\System32\certprop.dll
17:31:00.0638 0x15ac CertPropSvc - ok
17:31:00.0654 0x15ac [ 17BE1CB162768E886B2BBA63F8B89371, 115EB95F7203BD62F7B9DE051592849195BD1ED8F42C58F1BA32419DEE18275D ] circlass C:\Windows\System32\drivers\circlass.sys
17:31:00.0654 0x15ac circlass - ok
17:31:00.0670 0x15ac [ D5370A0D3A8F7E531FE9BA3E3C81BAC8, F9E795D2D8E7AD553C69BA148C910AF1BB30864F90B3A17D69944BBB595A0740 ] CLFS C:\Windows\system32\drivers\CLFS.sys
17:31:00.0670 0x15ac CLFS - ok
17:31:00.0685 0x15ac [ 16744C84320D33880E38DF7409585EBF, 1ED734A585BBBDECFB3E248EBFEC26FAC6B6931C5E469772E30EC7BA5FC53667 ] CmBatt C:\Windows\System32\drivers\CmBatt.sys
17:31:00.0685 0x15ac CmBatt - ok
17:31:00.0748 0x15ac [ 023C35E0281580F5BD2F8F2DEB7C72F7, 72D77575792D3FCCDF391DA78C271EE736ADA4D054D187E6E06C07276AFB7F69 ] CNG C:\Windows\system32\Drivers\cng.sys
17:31:00.0763 0x15ac CNG - ok
17:31:00.0795 0x15ac [ 765969F18ABD50298AA880E803D2096F, 3289A99611E7E5E3876E102D63249177A3714D60E49EF8C71813C337C1E44FF3 ] cnghwassist C:\Windows\system32\DRIVERS\cnghwassist.sys
17:31:00.0795 0x15ac cnghwassist - ok
17:31:00.0795 0x15ac [ 357444DE560252A907F8B687005B3DCA, EE9D4FB34E8DF1AED4C16C47507820D958BE270E0761DF5C178DAB66491BAAE3 ] CompositeBus C:\Windows\System32\drivers\CompositeBus.sys
17:31:00.0810 0x15ac CompositeBus - ok
17:31:00.0810 0x15ac COMSysApp - ok
17:31:00.0810 0x15ac [ F1B79B7B595B0D7990756C12FA64F00E, AD7D3984D2A519ED8AD472AC61011B6371C1D18BB2DA8CBE5E74AE062E238AD0 ] condrv C:\Windows\system32\drivers\condrv.sys
17:31:00.0810 0x15ac condrv - ok
17:31:00.0842 0x15ac [ 2155D9C6F9EF97E149BB5A75D608524D, B93EA1F811FE3F0C265CFE7627206A2A75952122B7C1F0E0509927FA9C237D8F ] cphs C:\Windows\system32\IntelCpHeciSvc.exe
17:31:00.0857 0x15ac cphs - ok
17:31:00.0888 0x15ac [ 14CCD65AE749AC76584CA5F0916300D3, 1D36C1C8DE27B7981D14AF1EB41531CAC1DC64898ACC54BB8D46431370641331 ] CryptSvc C:\Windows\system32\cryptsvc.dll
17:31:00.0888 0x15ac CryptSvc - ok
17:31:00.0935 0x15ac [ 5531D4CFCBB6CBBD5BFB9E5FD089FADF, 86FFC15BB5848EEB863D4016971F5ADDB2234611428A6D7741E10F717BD18C93 ] CSC C:\Windows\system32\drivers\csc.sys
17:31:00.0935 0x15ac CSC - ok
17:31:00.0967 0x15ac [ A36C84BAC3128A6A3F41136A6ED426B1, AEDB1FAABACB304546D9432BACF0A7B1DB5BAB203EA381A885DC8D0386036855 ] CscService C:\Windows\System32\cscsvc.dll
17:31:00.0982 0x15ac CscService - ok
17:31:01.0013 0x15ac [ EE5C5712BBA245CD0C394EF54410CBEB, 4C1624A81C2EF7B927F3628A5695EC4D8A073E57070024037FE9D5B46D4F8C9A ] dam C:\Windows\system32\drivers\dam.sys
17:31:01.0013 0x15ac dam - ok
17:31:01.0045 0x15ac [ BCD3562ACB27B8137BF809F61BA44E80, 3BE2617996696AD8A2402C0767E55CE53EF48B4234660C9948E153B5ACBE98C7 ] DcomLaunch C:\Windows\system32\rpcss.dll
17:31:01.0060 0x15ac DcomLaunch - ok
17:31:01.0092 0x15ac [ 2456D5CC4D15B62F7A6F071167821664, 5B08B753BDE52CA7806BE71E02FE7151E66028E51CD09C117BAC24A2A7EFC0E0 ] defragsvc C:\Windows\System32\defragsvc.dll
17:31:01.0107 0x15ac defragsvc - ok
17:31:01.0123 0x15ac [ E5935B79D5AE9288AEB72487E1A1B662, 2DED999FCC89C29649E519D7545A40925E8AD1785EF00EA6826A36B441863012 ] DeviceAssociationService C:\Windows\system32\das.dll
17:31:01.0123 0x15ac DeviceAssociationService - ok
17:31:01.0154 0x15ac [ 84C433F0FA896BACFAB67D0B22CFA73C, 10C3C9326A011C3E2006C0FA119BBEF9C5C622BB9D10175527D6D07837D3F07A ] DeviceInstall C:\Windows\system32\umpnpmgr.dll
17:31:01.0170 0x15ac DeviceInstall - ok
17:31:01.0201 0x15ac [ E608E26B536A42B5ACC145D25CB9F2AC, 92E2CC3D09CAC2B56E7DBFE37A303C2F4EC16CD24DFAEF84D29DEAF042019E02 ] Dfsc C:\Windows\system32\Drivers\dfsc.sys
17:31:01.0217 0x15ac Dfsc - ok
17:31:01.0263 0x15ac [ 120BFA182545EE73B832595137E080F8, 8B1C528E1C836F9F3D3CF241B39C2FF25757DCD6B776C2ED4E298B5849C034ED ] Dhcp C:\Windows\system32\dhcpcore.dll
17:31:01.0263 0x15ac Dhcp - ok
17:31:01.0279 0x15ac [ C0C87CCE88C4532B575AD60A95E7FD57, E1E8EF3FEDA44E39F36687D5387E7E84216D0A37A8DE0EADAC3B96C6761E01A0 ] discache C:\Windows\system32\drivers\discache.sys
17:31:01.0279 0x15ac discache - ok
17:31:01.0279 0x15ac [ 4E3237D8266580412CCA774321056111, 781B4CF6ED4F26C0D3EEB77805DE9B3696E7D1BFF54D9344D2955D5AAC11D137 ] disk C:\Windows\system32\drivers\disk.sys
17:31:01.0279 0x15ac disk - ok
17:31:01.0295 0x15ac [ 9B20A9DB154249E0E40036BC8BDC3E38, F506C7DDE0FC8014F579D82AE35522B76E5F5FFCC89E401F17E1B31C02E79697 ] dmvsc C:\Windows\System32\drivers\dmvsc.sys
17:31:01.0295 0x15ac dmvsc - ok
17:31:01.0342 0x15ac [ 090D65A0A412F9056F16297D5A5B830F, 4AE813F1603814102056F9F747B9A9623E42AA5E538CC05F936031DF12BD1BDB ] Dnscache C:\Windows\System32\dnsrslvr.dll
17:31:01.0342 0x15ac Dnscache - ok
17:31:01.0389 0x15ac [ 7F0C01E0C0BB063136DF09845FFC4CE1, 94542591AF4BCED1EDCF033D6617CC0A1AAE592BB7ACDC51AC6B26C32B9C6DB2 ] dot3svc C:\Windows\System32\dot3svc.dll
17:31:01.0389 0x15ac dot3svc - ok
17:31:01.0404 0x15ac [ 07D96198AFB530CF4A0A9B5C0E49073F, 988B50CDA4EBC3A8626A947CB741F74F6682877AB313822B717D88CDA2227A6B ] DPS C:\Windows\system32\dps.dll
17:31:01.0420 0x15ac DPS - ok
17:31:01.0435 0x15ac [ 50B8D915F3514EC8BE7DF0D2EDEC44BA, 4956FDF10BF18A2C26A987EAA5B8695057823B11B459BB5554B1B5A1940FFE40 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
17:31:01.0451 0x15ac drmkaud - ok
17:31:01.0482 0x15ac [ 4C925A9D110897409544F19D3EC460A3, 2781E2D8FEF82F1DA5BD5C83419AB21057FE2747B853284F8F7F0EFF813542A2 ] DsmSvc C:\Windows\System32\DeviceSetupManager.dll
17:31:01.0482 0x15ac DsmSvc - ok
17:31:01.0545 0x15ac [ 04AE01AD604EAE0909283B90A9BD0BCB, 0FA34F45281B97FDA0B7DB162A58832C27B059CF147B0CDCFBF68C53C9F1AA9D ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
17:31:01.0576 0x15ac DXGKrnl - ok
17:31:01.0592 0x15ac [ 59ECF01342E0CDB726C7948E36A43309, 045AB706C24B6717ABBEA749D5382A2EBB894D871CCA641D7CDC40DB76F38B76 ] EapHost C:\Windows\System32\eapsvc.dll
17:31:01.0592 0x15ac EapHost - ok
17:31:01.0623 0x15ac [ EA154EBBD85C649ED42C3BA43AD539FF, 689C9F9B89D0745FA8C3C1B4830B76D7758EFCC1DB2206C9A8D9E880F9C45E84 ] EFS C:\Windows\System32\lsass.exe
17:31:01.0623 0x15ac EFS - ok
17:31:01.0639 0x15ac [ BC7119CF5B5BC9F54C8FAE221C3227F2, 96F089419DD28E84F81A23BE6EDDC2440DDE58B626031EE2778F55708747EA42 ] EhStorClass C:\Windows\system32\drivers\EhStorClass.sys
17:31:01.0639 0x15ac EhStorClass - ok
17:31:01.0654 0x15ac [ 1A5945FA87A05A97A1175657B7BA4EDB, A4909FF016E363E3C3E6F7236C5A867C20BA0FD88D09828272809FA8323AE5F6 ] EhStorTcgDrv C:\Windows\system32\drivers\EhStorTcgDrv.sys
17:31:01.0654 0x15ac EhStorTcgDrv - ok
17:31:01.0654 0x15ac [ 8B22B788A329645F08AB4F86B9580AF3, 7C0772A049AA0279E46334BE210038666E543437305A5FCF31750B10F6012B95 ] ErrDev C:\Windows\System32\drivers\errdev.sys
17:31:01.0654 0x15ac ErrDev - ok
17:31:01.0685 0x15ac [ 39FB0D2C74D4201F01BA30D06162525A, D37571D3B7F50282A45168A64F379331E7ACAECF74578A6F2C3A403F6342E429 ] EventSystem C:\Windows\system32\es.dll
17:31:01.0701 0x15ac EventSystem - ok
17:31:01.0717 0x15ac [ B60B2A0E110D640440263268FC02C726, 4E90F01E2E65987DFF1BD919277D800B8A32DF693862D7D3D8D78EBB3C07DA07 ] exfat C:\Windows\system32\drivers\exfat.sys
17:31:01.0717 0x15ac exfat - ok
17:31:01.0732 0x15ac [ C8B18803E1521225BDBA86B5F7D2E9FC, B28722E9CE8474E5A85219F65B4748EB154455DB138FF428182B2F3FCDEDC108 ] fastfat C:\Windows\system32\drivers\fastfat.sys
17:31:01.0748 0x15ac fastfat - ok
17:31:01.0764 0x15ac [ 22A38E2F78153AB500482FD0D4A9DB65, 43BE0D52487DED1CD608210D2786D010A5E5A7652A5273950707FE1FFD59DBA0 ] Fax C:\Windows\system32\fxssvc.exe
17:31:01.0779 0x15ac Fax - ok
17:31:01.0779 0x15ac [ 9709867A1354A4D10046ADE31DA67511, 0DF012548E04E5AA2B7A65CB328E46F8BA8D202D8638F6D72BA0802880A8AD0B ] fdc C:\Windows\System32\drivers\fdc.sys
17:31:01.0779 0x15ac fdc - ok
17:31:01.0795 0x15ac [ E099DF1CE3285FCA613AF84D792DBC15, 1F8037BE6385BF7BC3C572A696E83FC28E09FDA1BAB05F3AE0C9AE873FF2120A ] fdPHost C:\Windows\system32\fdPHost.dll
17:31:01.0810 0x15ac fdPHost - ok
17:31:01.0810 0x15ac [ 141B98F42D71B4F5CFB0D8D4769FBA0C, CEF7061874C9AB713F793768D273153351E7C883FF4B4006EBCFA3758BC8173E ] FDResPub C:\Windows\system32\fdrespub.dll
17:31:01.0810 0x15ac FDResPub - ok
17:31:01.0857 0x15ac [ 2754F16876B03037CCA6FBD8C20E1686, 5BFA9925AD7786692A412264262BC10D45E10FF2FACE5C05CF6AC7BF7FB06C21 ] fhsvc C:\Windows\system32\fhsvc.dll
17:31:01.0857 0x15ac fhsvc - ok
17:31:01.0873 0x15ac [ 1018AE04A4D36BA60247C2C22D7BA7D1, CA0A60CCCD31A34E78F6A494288FE152B3977ECB45C8C8AD5ACCC36FDE02C411 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
17:31:01.0873 0x15ac FileInfo - ok
17:31:01.0873 0x15ac [ 3A2F87EF4400B5E542E2C2BA8FAB4222, 9145B79639FEACE79274C4DE05FA5D2FF79B4E0A57A802DFB9A0844DAC7A8A76 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
17:31:01.0889 0x15ac Filetrace - ok
17:31:01.0889 0x15ac [ F37314C92AB8C876DB478A36A6D9FF0E, 68238B5242F9CB2D62BCD26B206E6BA49364A9B18EDFE7EE9DBFEC642A13345E ] flpydisk C:\Windows\System32\drivers\flpydisk.sys
17:31:01.0889 0x15ac flpydisk - ok
17:31:01.0904 0x15ac [ 13C0B6F6EFD0D5C6871C07B56CB5403D, 7D099F06CB9FE72B36477D60A8B6DADAE3FDB6B20D40F0D1620A471E88EE68A5 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
17:31:01.0920 0x15ac FltMgr - ok
17:31:01.0998 0x15ac [ 89FB9BDDCEC278661EAF57639F9920D7, EBA1597399B636CA9FA4D61C7A4B53756C4D993EA3FE3D00A91B73D5284AE256 ] FontCache C:\Windows\system32\FntCache.dll
17:31:02.0014 0x15ac FontCache - ok
17:31:02.0107 0x15ac [ 2AAF650823623D89B5FE5C399FC5D1BD, 101E96BF8CA63BAF69C4F4EDAFAB42D39A8203D3A70BB131693828CEDC882CE2 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
17:31:02.0123 0x15ac FontCache3.0.0.0 - ok
17:31:02.0123 0x15ac [ 16D4CC9AE485BC60B6AE026FF2497DE8, 8247B2C487782A15F74CB2E39A6BB9357E0D86CFC4D3CCBFA116BA33DD8EC7AB ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
17:31:02.0139 0x15ac FsDepends - ok
17:31:02.0139 0x15ac [ 28E64CAC27FE3A7CA34E2F93E9A8092A, AFEF4BABE162581217FCA01AD2E637A9049B584F6FFB562355E1EDD61DABFB4F ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
17:31:02.0139 0x15ac Fs_Rec - ok
17:31:02.0185 0x15ac [ EB45DB29D3B3BCD557F4A57DADA7B2BE, 59A0B548F14E8144D94AB5546138E4AF7D37359DA3BDF70FCD4F78CFF71FC2EA ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
17:31:02.0201 0x15ac fvevol - ok
17:31:02.0232 0x15ac [ 05F58A34B5E1EB3274AE7B0875A143EF, 59C5A3FC486D508653FC50A9F6021C106B5612210FB488BE46F8F589FB774047 ] FxPPM C:\Windows\System32\drivers\fxppm.sys
17:31:02.0248 0x15ac FxPPM - ok
17:31:02.0248 0x15ac [ B5AD0B13AD7FD1C749FC45D81392B9DF, 2C5CA3934A47538292F537DB5E60740C12C6D489BFEE378015A1F4CD63963843 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
17:31:02.0264 0x15ac gagp30kx - ok
17:31:02.0264 0x15ac [ A9608FF3B1B577BFC969A7B6797B1FC1, 2D90C1554C099BC7666A24F26ECEFAFC4CC03DE7F7FE1AA2991FE3283EF9D590 ] gencounter C:\Windows\System32\drivers\vmgencounter.sys
17:31:02.0279 0x15ac gencounter - ok
17:31:02.0310 0x15ac [ 1F4CF4223F27C515A9F6F5FE4D268E67, 3E43F739E27FB14F1B303FB1E096F7095AD8E3CED8FD0F0CA18AC43B85878C0E ] GPIOClx0101 C:\Windows\system32\Drivers\msgpioclx.sys
17:31:02.0310 0x15ac GPIOClx0101 - ok
17:31:02.0389 0x15ac [ B13CCD3028A44C6E16E03A3E1AD95FA4, 151CB2605C3B7FA8A3925B07CFF5F999EA7F3D6D5F9881C3149609826B4B90A5 ] gpsvc C:\Windows\System32\gpsvc.dll
17:31:02.0420 0x15ac gpsvc - ok
17:31:02.0451 0x15ac [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
17:31:02.0467 0x15ac gupdate - ok
17:31:02.0467 0x15ac [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
17:31:02.0467 0x15ac gupdatem - ok
17:31:02.0498 0x15ac [ 8794D406B154C2DECEC6618ECF3491CF, C8B3E4BD8CA985F4079E7F9F43E78DF0D7D7381EB791CABA5F9E3B78BD72616D ] hamachi C:\Windows\system32\DRIVERS\Hamdrv.sys
17:31:02.0514 0x15ac hamachi - ok
17:31:02.0560 0x15ac [ 89D57B5741BAB84D7B846FEE23D576BE, 6AC4B2186432A6D222D0505B115DA43D73B121C49AEDD6D5EFD819AE76FFFE39 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
17:31:02.0576 0x15ac HdAudAddService - ok
17:31:02.0607 0x15ac [ 6BFEBBA25AD34E5922E60349C721B1DD, 12B8A58ADEC2DB1974CA124290B917E597EBAA44350139EE6C3A137BADB6C629 ] HDAudBus C:\Windows\System32\drivers\HDAudBus.sys
17:31:02.0607 0x15ac HDAudBus - ok
17:31:02.0623 0x15ac [ 8CBCFA78D2B43CCC23BF5A4C09A700CA, DBAB62EB256146BAF02D1B043ACE7F1A2DEB2D29FD0150848CC7629A670B217F ] HidBatt C:\Windows\System32\drivers\HidBatt.sys
17:31:02.0623 0x15ac HidBatt - ok
17:31:02.0654 0x15ac [ 9133AFFBA020B97100703DB8E598C73F, 523256CA84D15E55A1AE32609FB53A9E7EE0F5FF85CEC1D26005E3F5BBE6A3AF ] HidBth C:\Windows\System32\drivers\hidbth.sys
17:31:02.0654 0x15ac HidBth - ok
17:31:02.0685 0x15ac [ 804019176228EBE260A821C5688CAFD2, FA762B5020248C53DB7C17A69182A6FBF31DCF13EC8B5433E1B6E9B6ADE6E0D6 ] hidi2c C:\Windows\System32\drivers\hidi2c.sys
17:31:02.0685 0x15ac hidi2c - ok
17:31:02.0701 0x15ac [ 11A4D12F4CADD18CDA334C2756FE450A, 54ACCD91991D223E5A93BDFF0A4D270F0746945836796FBF04DB42EE33708FD0 ] HidIr C:\Windows\System32\drivers\hidir.sys
17:31:02.0701 0x15ac HidIr - ok
17:31:02.0717 0x15ac [ C0A9999E5B4C1953C6B07CD9105B41FD, A83C91DC0BC3A4E19877846A567A2A39C83FA9B468CC508405137A91E77F0780 ] hidserv C:\Windows\system32\hidserv.dll
17:31:02.0717 0x15ac hidserv - ok
17:31:02.0748 0x15ac [ 48ADFEFD445291AE7D619B3F4638B092, 043C879544C04FBDD01EE6A44E2FD635F7BF9033238F92EA23A1C29AAEB4D5A1 ] HidUsb C:\Windows\System32\drivers\hidusb.sys
17:31:02.0748 0x15ac HidUsb - ok
17:31:02.0764 0x15ac [ 40AAA716A3F2E494E7F533C45DA3E7E8, 1A0085CCBFC7E67B6C6028B76361A45E6706FFE2C37F763C3A434FB66EBBC0F1 ] hkmsvc C:\Windows\system32\kmsvc.dll
17:31:02.0764 0x15ac hkmsvc - ok
17:31:02.0795 0x15ac [ F4847FFB1D1FD522B4B3848A6A97BE47, 25D64A2F16E840926EB577BFFC6D3B668B88B2FB9A812A3EA6ED178204A4A778 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
17:31:02.0810 0x15ac HomeGroupListener - ok
17:31:02.0842 0x15ac [ EFC6EEA348478FBAFCF2B2D03DE0B127, 82B6CFFE1A55D847D33D15AD0539C80902CE9587F0E0ADFDA4425525CD8F5278 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
17:31:02.0857 0x15ac HomeGroupProvider - ok
17:31:02.0857 0x15ac [ D7544353157E11864C00A48BC90EF183, 5991C823E8C18E7650FFE8B33D19E552D2D91DB76957895C2719B04B0CCCE0BD ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
17:31:02.0873 0x15ac HpSAMD - ok
17:31:02.0920 0x15ac [ 8FE9867871C32E9B9A3276C61A0FACC0, 1AAAD1F11FB09B1D322A376EA63E8AD61B06C45646C1014F5E95DBF2C0C413B2 ] HTTP C:\Windows\system32\drivers\HTTP.sys
17:31:02.0920 0x15ac HTTP - ok
17:31:02.0935 0x15ac [ 4A3E6732E5BEF6DF531A217B5EBB5C54, BA259C5F3D1FA4B16DB709F6D417F2998751C9983F73712C4F62E50CF661E788 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
17:31:02.0935 0x15ac hwpolicy - ok
17:31:02.0935 0x15ac [ 0F819743721DFB5906734243ED0CE935, A67E7ED2B0948E494C3953A6639AC75AB88B9CE33C3E107E64290CC4EBDD8A92 ] hyperkbd C:\Windows\System32\drivers\hyperkbd.sys
17:31:02.0935 0x15ac hyperkbd - ok
17:31:02.0935 0x15ac [ A14A2EBA22929901F64B496C1D555982, DD9C19B1D01B0E3A6423BA1932428C49DE4CDC1DA8D1E0B7D55CEF5568D7FA1D ] HyperVideo C:\Windows\system32\DRIVERS\HyperVideo.sys
17:31:02.0935 0x15ac HyperVideo - ok
17:31:02.0951 0x15ac [ 11EDC37780E8A2F8E311D73F7658A4D7, CB60EFBD16467692C0877DE70FF34F54058CABB38413FD03F7905156D2FE4AB8 ] i8042prt C:\Windows\System32\drivers\i8042prt.sys
17:31:02.0951 0x15ac i8042prt - ok
17:31:02.0998 0x15ac [ C444F83C318BE18719DC1FDAEFF10898, E5A9D49A478D67BF0530930276B7A5C751CF49C72710FA37E50283F145DAE44B ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
17:31:02.0998 0x15ac iaStorV - ok
17:31:03.0123 0x15ac [ 8CC51204BCE551B90B45E97BE446C48B, DF10E454D0A16E5FEC11368157A421750D04F9DBB74289FF27146E4CD97B76AE ] igfx C:\Windows\system32\DRIVERS\igdkmd32.sys
17:31:03.0232 0x15ac igfx - ok
17:31:03.0232 0x15ac [ 7BB542C7156FA72CC83C1177BB190F94, BD50E0CBB67521EEDC9F6156ED85C3086B3A64F417CE04B7E1FB6040D10E1017 ] iirsp C:\Windows\system32\drivers\iirsp.sys
17:31:03.0232 0x15ac iirsp - ok
17:31:03.0295 0x15ac [ 051874425696386EC3D4C3FB475F25C2, 2D569DBBC72ABF1FC2B4D921B9339ED0A953EC8BB7A1F72F21A5745D54A7B6A7 ] IKEEXT C:\Windows\System32\ikeext.dll
17:31:03.0310 0x15ac IKEEXT - ok
17:31:03.0310 0x15ac [ A43BC9416741ABEA2B8DF60D2C0EA6A2, 74FF63BB16F62B1085CF2D09E666EA8B5965A6CE44A98F1F9CF9C6ABCA7BD23C ] intelide C:\Windows\system32\drivers\intelide.sys
17:31:03.0310 0x15ac intelide - ok
17:31:03.0326 0x15ac [ BE23B0DF1401DC890B5CEFA369B1BD8E, 56039BEE1B1CE35D2ED3C6D26AEFB35CA6DD3E00F536BBE337473051D3BD98C1 ] intelppm C:\Windows\System32\drivers\intelppm.sys
17:31:03.0326 0x15ac intelppm - ok
17:31:03.0342 0x15ac [ AB308167857138B84E4DECDF2000DD27, D761E84A3B0986B4351D970110701BF4E628C19941552FC436CA8559A5E4B468 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
17:31:03.0342 0x15ac IpFilterDriver - ok
17:31:03.0389 0x15ac [ 933DBF31E0632B96B74D1A1230AA2199, 5FA8540674D5481F1846CE14533CA32C18398DF2A129B4C2B53DFA8361FB5AAE ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
17:31:03.0404 0x15ac iphlpsvc - ok
17:31:03.0451 0x15ac [ DB125C2902A6455518C5F8F8A147483D, 3A77CB707273A3B41724737CEDDC68AD820DAABE60531A28EF559175F90FB6E6 ] IPMIDRV C:\Windows\System32\drivers\IPMIDrv.sys
17:31:03.0451 0x15ac IPMIDRV - ok
17:31:03.0451 0x15ac [ 57B0C0D982013C72911A3F5CBA795034, 2A09BC1565772C3698153A7F0B9727A8B8DA4A98CC3E3290A1D8FC2350E9168C ] IPNAT C:\Windows\system32\drivers\ipnat.sys
17:31:03.0451 0x15ac IPNAT - ok
17:31:03.0467 0x15ac [ 9D6DB34476AC6448B3CA59D8676F7CE6, A77A8207719F571D62EE8AE3D3185E7C5D9F44747DD1276418B0B4B4C6B5182B ] IRENUM C:\Windows\system32\drivers\irenum.sys
17:31:03.0467 0x15ac IRENUM - ok
17:31:03.0482 0x15ac [ 2E1347C9CC7DDB43183AF725135ACF0D, 08AF2DDFD929332D0C373CA9FFD75E86A5109C6F228F6391C3AD4841922045BB ] isapnp C:\Windows\system32\drivers\isapnp.sys
17:31:03.0482 0x15ac isapnp - ok
17:31:03.0529 0x15ac [ EDC90A617A17AFD204D041638EAD320B, 58C4DEDB2B51D071A79ACF3903B83828267BBDFE546D9F0242C61354D41347B1 ] iScsiPrt C:\Windows\System32\drivers\msiscsi.sys
17:31:03.0545 0x15ac iScsiPrt - ok
17:31:03.0545 0x15ac [ 4533BE9F8D67BDCF5FECA87DCC345448, 89852E7479EFD73309037083B43DB94AAACC2FA4BB323C547F87CD66C59C20D7 ] kbdclass C:\Windows\System32\drivers\kbdclass.sys
17:31:03.0545 0x15ac kbdclass - ok
17:31:03.0560 0x15ac [ 8F73A6DAEF7F7D102FBBA6F3EBC47F97, 5FBF9348D9886961E8FD771E8B4F81FA37B0EBC076AC62C5D4A024078CC4CF1F ] kbdhid C:\Windows\System32\drivers\kbdhid.sys
17:31:03.0560 0x15ac kbdhid - ok
17:31:03.0560 0x15ac [ F7E302012680B0617C904B58594E0376, 2269289081D3E03270C8D3675D1B5901B0EE0C6C8F6A9F3381B3C34BDAF07E1A ] kdnic C:\Windows\system32\DRIVERS\kdnic.sys
17:31:03.0560 0x15ac kdnic - ok
17:31:03.0576 0x15ac [ EA154EBBD85C649ED42C3BA43AD539FF, 689C9F9B89D0745FA8C3C1B4830B76D7758EFCC1DB2206C9A8D9E880F9C45E84 ] KeyIso C:\Windows\system32\lsass.exe
17:31:03.0576 0x15ac KeyIso - ok
17:31:03.0607 0x15ac [ 60650221CA2C39B70E0DDAB942831420, 9DC109A7B40494DAA29EDF644B783D6B43558B4A4AF11C4B24A6F3F48F284E82 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
17:31:03.0607 0x15ac KSecDD - ok
17:31:03.0623 0x15ac [ 825D7CDC20121255AAFBD002CC947AC1, 9394E7EABEC0C190F308E613ABBD7A3505911A19510605841B732464F202F481 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
17:31:03.0623 0x15ac KSecPkg - ok
17:31:03.0639 0x15ac [ C2ADC979C11A858949ECC1B9233B884C, 43AB852954F801D31956C17513F8178B1F2AB9808BB64A3995C794651960EE5C ] KtmRm C:\Windows\system32\msdtckrm.dll
17:31:03.0654 0x15ac KtmRm - ok
17:31:03.0670 0x15ac [ C6D54261F610556FF91952409E65B9FE, 4A563C25DB8747DE2C2AD179CBA767BE067D74E2FF5209A6637D38A6F15360CE ] L1C C:\Windows\system32\DRIVERS\L1C63x86.sys
17:31:03.0670 0x15ac L1C - ok
17:31:03.0732 0x15ac [ 05933529B37640290285DA67A84885C5, 976E5CF6AFAB1A5EAE7289930EC928CF3E537568D3E012C40301E9963612766C ] LanmanServer C:\Windows\system32\srvsvc.dll
17:31:03.0748 0x15ac LanmanServer - ok
17:31:03.0764 0x15ac [ 7867CD2CC05D8B1377DC7FEE93716015, 22546EFB97DE4EC89A5FDB5FC0779C3DCC9EEA885B7340B88C55B25A4CFA5698 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
17:31:03.0779 0x15ac LanmanWorkstation - ok
17:31:03.0779 0x15ac [ AD581D8BA8C2CE46933D44392BA35C24, 9520352D564AD670BC003B90ACDB8EFCD581D2540286729708E1085C659EF262 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
17:31:03.0779 0x15ac lltdio - ok
17:31:03.0811 0x15ac [ BCDCFD2C2115334419EF025C533AB6C5, 8461B3A9B721905A46020B2384B7587FB699D87E13050390D1D7936CB1EB9C83 ] lltdsvc C:\Windows\System32\lltdsvc.dll
17:31:03.0826 0x15ac lltdsvc - ok
17:31:03.0826 0x15ac [ FBA8BDF947B5289E85324F00043CC5D8, 28091B1CB0137024E4EDA28A8AD0C3C090090942E8D2CEC242CFAFE91F7E69F2 ] lmhosts C:\Windows\System32\lmhsvc.dll
17:31:03.0842 0x15ac lmhosts - ok
17:31:03.0842 0x15ac [ 6B01CB678E1E390CEA9514D4774EFB51, D1454269D2054C71ED732D34E5D625E468ED01689824603704E64A6AF0125629 ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
17:31:03.0857 0x15ac LSI_SAS - ok
17:31:03.0857 0x15ac [ 4C3AFBA9ED36535313054AC26532E9DE, 1557BEA6F30B1DE7C4D9E4FECB6DDF8AFA87D91586ACD5B700E1966446F2DA85 ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys
17:31:03.0857 0x15ac LSI_SAS2 - ok
17:31:03.0873 0x15ac [ 0715DC27611C202D04BC0365D666DD27, EAF76A9A5CD515C874AB1964A035CEC7FF446FDFE642A67491028190B464CE38 ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
17:31:03.0873 0x15ac LSI_SCSI - ok
17:31:03.0873 0x15ac [ DB6B9554AA4F83212E80D5107D8C53EE, CF8032926AAE9846291FCEDE10E8633AAE01DCCBE67F6907584A61259FFE7DC4 ] LSI_SSS C:\Windows\system32\drivers\lsi_sss.sys
17:31:03.0889 0x15ac LSI_SSS - ok
17:31:03.0904 0x15ac [ 2576E646F41F6E72BD57B952E93FBBCE, D9901504B78FABE88C2AFA9D1092BCEEB00E24A825A2DDECBE02BF7CBEABCC1E ] LSM C:\Windows\System32\lsm.dll
17:31:03.0920 0x15ac LSM - ok
17:31:03.0920 0x15ac [ F731770C339FEB6563397D410793A756, 6338F009BE439AE507AC878ACE92D96A8A87FD9EFEA2B47D5A350A835C98A427 ] luafv C:\Windows\system32\drivers\luafv.sys
17:31:03.0920 0x15ac luafv - ok
17:31:03.0967 0x15ac [ 8B878D0F1F34F0C6E1990F949F6AEF64, 5878B544A23B42BC0B6FABBC0532B8A025503A8FD7F87146CC8B35736D9E382B ] LVRS C:\Windows\system32\DRIVERS\lvrs.sys
17:31:03.0967 0x15ac LVRS - ok
17:31:03.0982 0x15ac [ 125C3C5A315500A1AD54F0B4766AF815, 6ED651E48818B56EB772B5278D7A4BC183FC02599C5C6554ACA9B8DBA65AEC2B ] megasas C:\Windows\system32\drivers\megasas.sys
17:31:03.0982 0x15ac megasas - ok
17:31:03.0998 0x15ac [ 05457CC7F5586C6E8D02FFA7F23FCEDF, 9D5C4E6988701515FC745F0833ABE81749779235615EE3FEC74825E9C7B1B1FF ] MegaSR C:\Windows\system32\drivers\MegaSR.sys
17:31:04.0014 0x15ac MegaSR - ok
17:31:04.0029 0x15ac [ D86AC00883B9C98B570E7643AAF8E554, 4B4BDC01DC20F820A9D1E1B8E875B6445F9B920F0AB1E115ADD9651A368911C4 ] MEI C:\Windows\System32\drivers\HECI.sys
17:31:04.0029 0x15ac MEI - ok
17:31:04.0061 0x15ac [ CAAAB04E7775D8F11E166482F3596539, FE4D2043E63586521F84CEC0C12764AE97EF58E2BE2666BA21692D95A965734A ] MMCSS C:\Windows\system32\mmcss.dll
17:31:04.0061 0x15ac MMCSS - ok
17:31:04.0076 0x15ac [ 049E433162AFE9B08C05D81D2C62CD61, 3CA4F3D569E2E827A1E70E3FACF65739499E23890848896BEF91B93230249746 ] Modem C:\Windows\system32\drivers\modem.sys
17:31:04.0076 0x15ac Modem - ok
17:31:04.0107 0x15ac [ 81F2FEE55660E51820C93A388AE8FEB9, 70E492BE3B94963CD8AD8DD2BB1EAD0B723FFF6DCD8FD11383BC6EA9AB888DA4 ] monitor C:\Windows\System32\drivers\monitor.sys
17:31:04.0123 0x15ac monitor - ok
17:31:04.0123 0x15ac [ 9D3F069A705325E7B7CEA36BFB65E616, C32805CBD337F17BB263F1A7677DD03EE4E7017A53C671606C96EF1F686D8B68 ] mouclass C:\Windows\System32\drivers\mouclass.sys
17:31:04.0123 0x15ac mouclass - ok
17:31:04.0170 0x15ac [ 3C3C50AA12E2E48A9FEAA4BF5AA789A0, 47463F054E8FDD5A857AC2B589BDD9312074D90F8F5A4F4B9194A983E7C888FE ] mouhid C:\Windows\System32\drivers\mouhid.sys
17:31:04.0170 0x15ac mouhid - ok
17:31:04.0217 0x15ac [ 96AD36823AAFB32694F6FB9BF1237CA6, 0FB3F6C3C056AD075481325C4FABE572C1A85798C4281040FBD1E1914D179F9F ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
17:31:04.0217 0x15ac mountmgr - ok
17:31:04.0279 0x15ac [ 4E9D8041D352A33332FD6F59A3A78B03, D4E6229B07EF9866993EEE4F6223DC7F1FF1108273FE14A3DC74E65C181DE56A ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
17:31:04.0279 0x15ac MozillaMaintenance - ok
17:31:04.0326 0x15ac [ E8AA1C862C926126FBAD748565205586, 8717E41C7AECCD8DAA994C57EC048F965C9B8F88695D7044B36DFBDCBA577002 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
17:31:04.0326 0x15ac mpsdrv - ok
17:31:04.0357 0x15ac [ 23B5BCA94C50D0B87684C10867F83136, A7936E46628B94E18B8DF6E056C30E599916296D8D22CF8EAE25B1F5442014FD ] MpsSvc C:\Windows\system32\mpssvc.dll
17:31:04.0373 0x15ac MpsSvc - ok
17:31:04.0389 0x15ac [ 329E3ACBFC616666D3D04C6FDC1B71E0, 124D98145025966987B6973B9B3A52A11AB99B72F036616D8D41B64717676523 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
17:31:04.0389 0x15ac MRxDAV - ok
17:31:04.0404 0x15ac [ 1A04B8E0C9156FB742BA41DD71C40F28, 1447076D4628015333646307CA60BA89399A310F36EECBE118596BE05ED1C5AC ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
17:31:04.0404 0x15ac mrxsmb - ok
17:31:04.0420 0x15ac [ B9F3DA35CDE171B5CBA70319AD7D5E59, A05FD89B048CBF96FFC0E78E58304B1468E2C0272288FEB200C0B92361239722 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
17:31:04.0436 0x15ac mrxsmb10 - ok
17:31:04.0451 0x15ac [ 5F5878D3D0A4E86D5D43991AFCEA908B, F6F80C07CA8C95CD7DDEA54F07882B0172EA1F82D2A4327FE130F993F9809395 ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
17:31:04.0451 0x15ac mrxsmb20 - ok
17:31:04.0467 0x15ac [ 61E23CF0A54EDBAE5CFE3322E960ECC9, FA6BC02B2502BAB383A0A021B4283CF48513CF8CE2F2902C80F3F992F82B82DE ] MsBridge C:\Windows\system32\DRIVERS\bridge.sys
17:31:04.0467 0x15ac MsBridge - ok
17:31:04.0498 0x15ac [ 37594E0C3119827CA7F8D16D187239E0, A41B23E7EFC03F87D6DE6937D1E695AE386E04C21192E5D037BE00B756F39DDC ] MSDTC C:\Windows\System32\msdtc.exe
17:31:04.0498 0x15ac MSDTC - ok
17:31:04.0498 0x15ac [ 651DEF4337DD77E6A607CEE49D3C4B30, C236987022AAF21BCF076D73D51A93DD12CAFDADC3CC2291790EF1F5B54CC4AA ] Msfs C:\Windows\system32\drivers\Msfs.sys
17:31:04.0498 0x15ac Msfs - ok
17:31:04.0545 0x15ac [ 8F47F5F31F001C4F97840DB723618DD0, 226FA6B25BC8ACB0989743A7F76493D7F6BF82618F0888FF1B6EE11DC73D5357 ] msgpiowin32 C:\Windows\System32\drivers\msgpiowin32.sys
17:31:04.0545 0x15ac msgpiowin32 - ok
17:31:04.0561 0x15ac [ 26BBD77D23FFABB14C3291A1B8555EA5, C49421E288922F4E55D4A30929D6EC459FFDA7F74E0F75D0E0F242A06CC4EA52 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
17:31:04.0561 0x15ac mshidkmdf - ok
17:31:04.0576 0x15ac [ 51808FEF911B77758A6CF7CEB469AF9E, C5CECAC8CB7BA8DE3B41F7C9EA4C1EB57FE36798D74EB31A521BD0AE60F37812 ] mshidumdf C:\Windows\System32\drivers\mshidumdf.sys
17:31:04.0576 0x15ac mshidumdf - ok
17:31:04.0576 0x15ac [ F103DF830D370B7535FDA3D477C8D8A0, B46C8C3767FBFEC39F43BD7018227B69D9BBEB1EA8D2BB73E9590931719F4B6E ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
17:31:04.0592 0x15ac msisadrv - ok
17:31:04.0607 0x15ac [ 2C777DD7FD2340F9F9F8BD76B9810956, B626AC922488274C2EA82F880FE9041EFBC9017F8C87A1316312E9B5BB7EE3B9 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
17:31:04.0623 0x15ac MSiSCSI - ok
17:31:04.0623 0x15ac msiserver - ok
17:31:04.0623 0x15ac [ 3FCF6AA904516872CF70ED248F86889B, 00D72A08BDFBE1E10F7C05C144D50946708CDF42258C0F353B677B35696DC1D7 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
17:31:04.0639 0x15ac MSKSSRV - ok
17:31:04.0639 0x15ac [ 10C229EAC28FDB8550EE93D955932F83, 5A45CE23CEADB7234C38C85173D35897CB7D2AA132B7391EF8014C1BEE439932 ] MsLldp C:\Windows\system32\DRIVERS\mslldp.sys
17:31:04.0639 0x15ac MsLldp - ok
17:31:04.0654 0x15ac [ BA786F089895196E18120F66F996A3D2, 5760FBD42095205C02BBBE31FDFFFD5E81B7152014A7838AC946D664B61337CA ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
17:31:04.0654 0x15ac MSPCLOCK - ok
17:31:04.0654 0x15ac [ 362950A5F7B1794DA9CB985AF7BBCC4B, 2F106BEC7533FE7E584A04369390D487563B7D5E1B92FBAF9ABB8F97457DE829 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
17:31:04.0654 0x15ac MSPQM - ok
17:31:04.0670 0x15ac [ 79A14AB6C6A5B01E9CE99937D1304D13, EC2FF1D0E3BF3C056D111803D3EAAB64F35E40CE4354F765F1EDF76A5C05341F ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
17:31:04.0686 0x15ac MsRPC - ok
17:31:04.0686 0x15ac [ A819A3006C27870AF05E408AD06FACFF, C97A384944962E6A5DAC416A98342B7BFFE3B0793A33EA099DA0951F2A5F5067 ] mssmbios C:\Windows\System32\drivers\mssmbios.sys
17:31:04.0686 0x15ac mssmbios - ok
17:31:04.0686 0x15ac [ FB1D61A2998A5C4456C6B73DD41D5352, C11FDA9240A36BA45878C70416F5A40E34A127B4D2F0F7E65F1E9D407D69338D ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
17:31:04.0686 0x15ac MSTEE - ok
17:31:04.0701 0x15ac [ 3CC687876469F0FD3B2D936FA7A6EC59, A61610E34DD8258924ECD9FF95E28D69CAC90DC6EE3BF64CE3126332761625FD ] MTConfig C:\Windows\System32\drivers\MTConfig.sys
17:31:04.0701 0x15ac MTConfig - ok
17:31:04.0701 0x15ac [ 6779B2A319A563C68B56DE8491E9EA76, DFD78A3931014668E88274DFCDCB08713FD5E5DEE14F9AF16BCACA45604FB5C8 ] Mup C:\Windows\system32\Drivers\mup.sys
17:31:04.0701 0x15ac Mup - ok
17:31:04.0717 0x15ac [ 1DEF95DC467131BF4AB52A8F72C42D89, 9141A50E1C472D09D273E02C48B2C36CEE5EC6E4A7E9E568A096A144F9B7AB91 ] mvumis C:\Windows\system32\drivers\mvumis.sys
17:31:04.0717 0x15ac mvumis - ok
17:31:04.0748 0x15ac [ 34FEF8CBBD7C4FACDD6AB68E39E02062, EE10E2C22A2DEC635BC97E4C044052232353891B63D81C429FE2984D278C8371 ] napagent C:\Windows\system32\qagentRT.dll
17:31:04.0748 0x15ac napagent - ok
17:31:04.0779 0x15ac [ D48E3B33BD911BA28413A4337456724F, B68A782BDEB0B2E592A6FE72E1BAC3636D6385B6535443608B2F8B2F42705BC6 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
17:31:04.0795 0x15ac NativeWifiP - ok
17:31:04.0936 0x15ac [ 6D8FCDD5BB3B676EF58FA234073492C6, 07A69DD00E45C59CBB6FABFBD62FE897655970BE2D09997CF29D20241ED9AF13 ] NBService C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
17:31:04.0951 0x15ac NBService - ok
17:31:04.0967 0x15ac [ 4B947B7F1ADCF1AE86B0EB717D55CE0C, 6E0A0C1AA5B4DB709DFC28C708176731C934A48451E7AE8F11DE75DEAB7CAAE7 ] NcaSvc C:\Windows\System32\ncasvc.dll
17:31:04.0967 0x15ac NcaSvc - ok
17:31:04.0982 0x15ac [ 466C47B1335533884C06CA88D073B759, F2C989EA1FE487020E35FDF121721D81FAA6E2A51FF7E12309D933EFECFE0FEA ] NcdAutoSetup C:\Windows\System32\NcdAutoSetup.dll
17:31:04.0982 0x15ac NcdAutoSetup - ok
17:31:05.0061 0x15ac [ 46D2FC2CB94830C57EA760CE6FD32F37, 7447C101AE34ED97E405FECBC8A28ECF9D3E5575307AB0B2A17D4A9C81845F99 ] NDIS C:\Windows\system32\drivers\ndis.sys
17:31:05.0076 0x15ac NDIS - ok
17:31:05.0092 0x15ac [ 9B8BC481DEEAA07C51DA214D2CEF2FC9, 187D3BE38CF64AA695512ACCB2D0050772F07A21E200AFA6C6BA6030A2680AD9 ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
17:31:05.0092 0x15ac NdisCap - ok
17:31:05.0107 0x15ac [ 1EA68DB9E05248EF9B940D6D0A0725B3, 7D3DADA83FCF7346516907D5CBF2F9AD2D49955A3F9F29ED2DCCB51F7B44D3D1 ] NdisImPlatform C:\Windows\system32\DRIVERS\NdisImPlatform.sys
17:31:05.0107 0x15ac NdisImPlatform - ok
17:31:05.0139 0x15ac [ 71F6E2AF63B0E52B36CEE7F0AE076A18, 7CADADA8D93581EAA1BFFB27D71C61569AF640FC41DD6C5F7988066AA9BF9B16 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
17:31:05.0139 0x15ac NdisTapi - ok
17:31:05.0139 0x15ac [ DDC67239BFE82DC5A878039B464B1968, 11A9DDC53C1FBF12623964BF2788C5B3F6F1C45D4F283A7CC407E4050CD1F071 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
17:31:05.0154 0x15ac Ndisuio - ok
17:31:05.0154 0x15ac [ 556DB924D61BC4A5E0F95D383E9B1009, 17848845E920400CA1C97F6A8F1FD9CEF66C7B761663EFB3809DC80F7F3BB748 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
17:31:05.0154 0x15ac NdisWan - ok
17:31:05.0170 0x15ac [ 556DB924D61BC4A5E0F95D383E9B1009, 17848845E920400CA1C97F6A8F1FD9CEF66C7B761663EFB3809DC80F7F3BB748 ] NDISWANLEGACY C:\Windows\system32\DRIVERS\ndiswan.sys
17:31:05.0170 0x15ac NDISWANLEGACY - ok
17:31:05.0201 0x15ac [ B8C10B9DE50120E8CA3E995F94CA80D7, B3EC4335ADA2B5CABB054C9723167E910C105CF7D51BE94508ABDB814F6570D5 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
17:31:05.0201 0x15ac NDProxy - ok
17:31:05.0217 0x15ac [ 583F95CEFCD5D896B5531BD338030401, 0CB24459430CBDC367B86B8085C14D0F9DC1992BC1B282F543641583B752CF38 ] Ndu C:\Windows\system32\drivers\Ndu.sys
17:31:05.0217 0x15ac Ndu - ok
17:31:05.0342 0x15ac [ B90E093E7A7250906F1054418B5339C0, F9A0BAC5B4B29F14B5CACA1047F8928A495EFD56E485492BF71C856B296476D6 ] Nero BackItUp Scheduler 4.0 C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
17:31:05.0373 0x15ac Nero BackItUp Scheduler 4.0 - ok
17:31:05.0373 0x15ac [ 4CA677A214248DB8227F8035B546F7D0, 50B89A5AF9423EE0820E7E15F22345EF9EFB284882B2C4CDC6E86B898C74108D ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
17:31:05.0373 0x15ac NetBIOS - ok
17:31:05.0389 0x15ac [ 303A053C25E468B9925C22288BEF8484, 7A5BCE4B6BB0D20187E4F9E253D86F0F6ACD90C16367DD427F6FB5DE76B79A5F ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
17:31:05.0404 0x15ac NetBT - ok
17:31:05.0420 0x15ac [ EA154EBBD85C649ED42C3BA43AD539FF, 689C9F9B89D0745FA8C3C1B4830B76D7758EFCC1DB2206C9A8D9E880F9C45E84 ] Netlogon C:\Windows\system32\lsass.exe
17:31:05.0420 0x15ac Netlogon - ok
17:31:05.0436 0x15ac [ A54157CE7FF480834897CC0FA6DDF620, E126AA31791CE374E83472C51BEDE5EBD80CF3A6B69B10767D50E26C2AC328BA ] Netman C:\Windows\System32\netman.dll
17:31:05.0436 0x15ac Netman - ok
17:31:05.0482 0x15ac [ 58E8D9AD811E1BAEA04EAFB7D987FEA9, 7C4356C5D1D8511DB1A14F6AF92846BA8500DA8ED30C6C2333B7A5A4FD243F4C ] netprofm C:\Windows\System32\netprofmsvc.dll
17:31:05.0498 0x15ac netprofm - ok
17:31:05.0545 0x15ac [ 5243CFC2E7161C91C2B355240035B9E4, CFD77485A9D7BC47F3A9C53D73B2AE2D5D04B90ED38628F3124EA569F4DE969E ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
17:31:05.0561 0x15ac NetTcpPortSharing - ok
17:31:05.0576 0x15ac [ 4B539272E9F5C3B8D9714D137FD340A6, 382E36ADA5B80119915B4A3506EDBE4EAB96427CFFD591B9AC2930884C60A67B ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
17:31:05.0576 0x15ac nfrd960 - ok
17:31:05.0623 0x15ac [ 6906D71601703792F395CF8497209FDD, 5F82CB1BD19AACF4D28959123F6422A9263A13A51F9EB7669C2C614BF4EC75B1 ] NlaSvc C:\Windows\System32\nlasvc.dll
17:31:05.0639 0x15ac NlaSvc - ok
17:31:05.0764 0x15ac [ E32686B4E27D11F83E3F2844E104C66C, 9EE5A95EA4779387ECD6DCAB7A72D22E1E6D98501DCAED8884CCC97B0FF618A0 ] NMIndexingService C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
17:31:05.0779 0x15ac NMIndexingService - ok
17:31:05.0779 0x15ac [ EAC569A77BE92B247FCA51E498B17DF1, 3295DB8AC8BE62AE39A4EF212E1E02E72F4AC13F56D3D6105590A0906B27DD69 ] Npfs C:\Windows\system32\drivers\Npfs.sys
17:31:05.0779 0x15ac Npfs - ok
17:31:05.0779 0x15ac [ 6E994702ED294CDBED7621590EC75735, 475DAD1282C2959C385397D93D99EB610081A05A85D0210735FBDF160FA64A38 ] npsvctrig C:\Windows\System32\drivers\npsvctrig.sys
17:31:05.0795 0x15ac npsvctrig - ok
17:30:49.0343 0x0b7c ============================================================
17:30:49.0343 0x0b7c Current date / time: 2014/10/18 17:30:49.0343
17:30:49.0343 0x0b7c SystemInfo:
17:30:49.0343 0x0b7c
17:30:49.0343 0x0b7c OS Version: 6.2.9200 ServicePack: 0.0
17:30:49.0343 0x0b7c Product type: Workstation
17:30:49.0343 0x0b7c ComputerName: PC-POKOJ
17:30:49.0343 0x0b7c UserName: František
17:30:49.0343 0x0b7c Windows directory: C:\Windows
17:30:49.0343 0x0b7c System windows directory: C:\Windows
17:30:49.0343 0x0b7c Processor architecture: Intel x86
17:30:49.0343 0x0b7c Number of processors: 4
17:30:49.0343 0x0b7c Page size: 0x1000
17:30:49.0343 0x0b7c Boot type: Normal boot
17:30:49.0343 0x0b7c ============================================================
17:30:50.0265 0x0b7c KLMD registered as C:\Windows\system32\drivers\01892400.sys
17:30:50.0562 0x0b7c System UUID: {C44DF396-8AFF-3AD8-58F2-07B6DB5C67D3}
17:30:50.0999 0x0b7c Drive \Device\Harddisk0\DR0 - Size: 0x7470AFDE00 ( 465.76 Gb ), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
17:30:51.0046 0x0b7c ============================================================
17:30:51.0046 0x0b7c \Device\Harddisk0\DR0:
17:30:51.0046 0x0b7c MBR partitions:
17:30:51.0046 0x0b7c \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0xAF000
17:30:51.0046 0x0b7c \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0xAF800, BlocksNum 0x3A2D5000
17:30:51.0046 0x0b7c ============================================================
17:30:51.0093 0x0b7c C: <-> \Device\Harddisk0\DR0\Partition2
17:30:51.0093 0x0b7c ============================================================
17:30:51.0093 0x0b7c Initialize success
17:30:51.0093 0x0b7c ============================================================
17:30:54.0022 0x15ac ============================================================
17:30:54.0022 0x15ac Scan started
17:30:54.0022 0x15ac Mode: Manual;
17:30:54.0022 0x15ac ============================================================
17:30:54.0022 0x15ac KSN ping started
17:30:56.0691 0x15ac KSN ping finished: true
17:30:58.0763 0x15ac ================ Scan system memory ========================
17:30:58.0763 0x15ac System memory - ok
17:30:58.0763 0x15ac ================ Scan services =============================
17:30:58.0873 0x15ac [ E7B9E170EFF01486D3118E372BA0AF21, 70A640CBA334F087D216D13005E98484DE125541A941D669398673243B714189 ] 1394ohci C:\Windows\System32\drivers\1394ohci.sys
17:30:58.0888 0x15ac 1394ohci - ok
17:30:58.0904 0x15ac [ 96191579DDB1A201A2FB79C1D05680B4, 0A21C2F3031A9D147DF3E34F25F382B54A62B8764C05A26C388C4F05F56E6F73 ] 3ware C:\Windows\system32\drivers\3ware.sys
17:30:58.0904 0x15ac 3ware - ok
17:30:58.0967 0x15ac [ B69DD3D0C195558ED5A4CF69A9D241A4, B4358F678F7CC3AA85E1E06B233A788E4A2B13A489436E85314F633EE4728B62 ] ACPI C:\Windows\system32\drivers\ACPI.sys
17:30:58.0967 0x15ac ACPI - ok
17:30:58.0982 0x15ac [ 3A5DA97644B9E2662CFF186A8798519C, 8AF47B3C6C2CDACD1323E97B9C02FDDFA2CAF68D660B4E8713B160D3C81491ED ] acpiex C:\Windows\system32\Drivers\acpiex.sys
17:30:58.0982 0x15ac acpiex - ok
17:30:58.0998 0x15ac [ 87C4AE693CA8AB6E2A13B7C7453466DB, 127D0B337F6B26DCC00E8FBC6A0A403DBEF1436D2F3B2C81B2AAA0DE6B0A879F ] acpipagr C:\Windows\System32\drivers\acpipagr.sys
17:30:58.0998 0x15ac acpipagr - ok
17:30:58.0998 0x15ac [ C7D2BA04BA3C6CA702C2615A0C50469C, AA6EF530F76B89BA380DF696AE88E63D345407A6164D7DA67827B362144B6F8C ] AcpiPmi C:\Windows\System32\drivers\acpipmi.sys
17:30:58.0998 0x15ac AcpiPmi - ok
17:30:59.0013 0x15ac [ 38E110C96B2ACAB4D9A701777C9BCD98, D62A26C5EE6B9900F4BCC1B941437A9B6115478563FC8B77860D783BE83C32A9 ] acpitime C:\Windows\System32\drivers\acpitime.sys
17:30:59.0013 0x15ac acpitime - ok
17:30:59.0092 0x15ac [ FBB312C9DA3863673EC18F4AE4101778, 4E9AAE7C700E485C17FDFCC9100A79784673B006D00D4D4CE8F1DB617D25C864 ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
17:30:59.0092 0x15ac AdobeFlashPlayerUpdateSvc - ok
17:30:59.0123 0x15ac [ 2FE756FD6E0336990D0B3652A07EBB9B, 17B803E37096E89EF02EF30E7D26B82BCD21469C98092B83D853B1108E1CD757 ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
17:30:59.0138 0x15ac adp94xx - ok
17:30:59.0154 0x15ac [ CC579EC50EE5435A4070306C0E4EF9E6, CEEF9B8821B6C68AA217B7650DD778381670807E7487D0E82367585FE6C6F494 ] adpahci C:\Windows\system32\drivers\adpahci.sys
17:30:59.0154 0x15ac adpahci - ok
17:30:59.0170 0x15ac [ 82743090D0259BF9F1373AD48372CBAC, B667E0F830B4250737955E6F83D5AC39FCEFB2FB27F37EEBF89E130D0055F550 ] adpu320 C:\Windows\system32\drivers\adpu320.sys
17:30:59.0170 0x15ac adpu320 - ok
17:30:59.0201 0x15ac [ 5D4FC8F08B45241857776E44AC71F0ED, D7FFD69FC3FF95ABFC0CC3FFDD290370AD0332A6E9C7FCB5E56371CA33C4557B ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
17:30:59.0201 0x15ac AeLookupSvc - ok
17:30:59.0248 0x15ac [ B92C9A8C3CAE22129CC5B4A920B00608, 104A246306268B3DC3674F36BD4C4D9E99C7EE02AD81D442B902F8AD2A0915B0 ] AFD C:\Windows\system32\drivers\afd.sys
17:30:59.0248 0x15ac AFD - ok
17:30:59.0263 0x15ac [ 73BB2C687305C4195ED7511587B041AA, AF3151C3BDBEEEF422B6A2672E376AA0FC0AF5E800A48659256CDE7E522FBE13 ] agp440 C:\Windows\system32\drivers\agp440.sys
17:30:59.0263 0x15ac agp440 - ok
17:30:59.0279 0x15ac [ B5A707E902BE5FC9B93C389FBA6EDF9C, 3274D0FC8B3CC0C27EBE3D1E7AA31BF261F265FA31B0EF767F15289E2843A1D6 ] ALG C:\Windows\System32\alg.exe
17:30:59.0279 0x15ac ALG - ok
17:30:59.0295 0x15ac [ 8F12F6811F8C4C248E2FAA8779C6FCFE, FFFF2F7F3E60FDF669D37B2396B987CBAE9E32E74C5D59297AB7B5BCE7B3ADAA ] AllUserInstallAgent C:\Windows\system32\AUInstallAgent.dll
17:30:59.0310 0x15ac AllUserInstallAgent - ok
17:30:59.0310 0x15ac [ E44885EA3E89A54BF14C78892CE85EA0, C80C5FA0D1CE02E1E03D4EEC6C77A3C3ACAFFE5A01F24A66183EB4447C027801 ] amdagp C:\Windows\system32\drivers\amdagp.sys
17:30:59.0310 0x15ac amdagp - ok
17:30:59.0326 0x15ac [ FFDBB0DC75CDF6A3CC63B3DF790313EB, 1B98218B120894CCE2F86B9EC6C18B764FF7FF004EB5BAE4CD1086EB3579610D ] AmdK8 C:\Windows\System32\drivers\amdk8.sys
17:30:59.0326 0x15ac AmdK8 - ok
17:30:59.0342 0x15ac [ DF7FE35014C17CC4659C2531F9EA5A36, 1C8B38C4901A3734EA4FCF50034F1FB23A5FAB78CE6092903088B774D1C31EEE ] AmdPPM C:\Windows\System32\drivers\amdppm.sys
17:30:59.0342 0x15ac AmdPPM - ok
17:30:59.0357 0x15ac [ 8D5D89177552EDFD5C9730CCE79F7FCC, 5A62F0FA7C2A2EBDD88B0670CA017B96C82D1591BF50DDC58B93518CEF67D179 ] amdsata C:\Windows\system32\drivers\amdsata.sys
17:30:59.0373 0x15ac amdsata - ok
17:30:59.0373 0x15ac [ 5725597CF5E002FB665C6C69787DAA8A, E2C284A4380C014319DA29B3224EDB45E12FE0FE0ED81C35AA5A1A91D9BDF7EE ] amdsbs C:\Windows\system32\drivers\amdsbs.sys
17:30:59.0388 0x15ac amdsbs - ok
17:30:59.0388 0x15ac [ FB336B5F110770CF22F6BFEB1906E773, C1673F45081137E29E22DBF1BDE882ADC9E9508CF72EF1583A53339B65098E35 ] amdxata C:\Windows\system32\drivers\amdxata.sys
17:30:59.0388 0x15ac amdxata - ok
17:30:59.0404 0x15ac [ CB3613E82A5B058AB6A69846B0DDC6C5, 56C2E1DD51C8EDB5057A2DCF5B12400695715BDCF81A9D75C786186D08B80147 ] AppID C:\Windows\system32\drivers\appid.sys
17:30:59.0404 0x15ac AppID - ok
17:30:59.0420 0x15ac [ 721C445A7EE59589B26EE0DC767A7967, 2EFE73128524DC70D61FE8B3429AAEA23F29F931E904949BD554BD50F93D9797 ] AppIDSvc C:\Windows\System32\appidsvc.dll
17:30:59.0420 0x15ac AppIDSvc - ok
17:30:59.0467 0x15ac [ 2153ADB83E48B54B384FF9651D695913, 979CD19EB1B7EAC864937663F172ED0BFDD246248178BC0C939F4EA845802EC3 ] Appinfo C:\Windows\System32\appinfo.dll
17:30:59.0467 0x15ac Appinfo - ok
17:30:59.0482 0x15ac [ 8F0F777B167CADDF9D206180B8558433, 4811E247DC398C3E0F49AD494CF3DB4349678D9D3A0DB2CE8F684E4E63515BF9 ] AppMgmt C:\Windows\System32\appmgmts.dll
17:30:59.0482 0x15ac AppMgmt - ok
17:30:59.0482 0x15ac [ A0982052EE6B01DC9B0CB7FEFD13040F, BB307503D44BBA825A4FA3B2E138F6603D06CC1BDADD25AEDF4CEDF8F456C58B ] arc C:\Windows\system32\drivers\arc.sys
17:30:59.0498 0x15ac arc - ok
17:30:59.0498 0x15ac [ 7E17A734B0D33B8F9287F28F1C583DD7, FE5B11768A17BFDBE5566DC3FC9E33F6D692B74321D2945CDE1EE9C5C49A7FC4 ] arcsas C:\Windows\system32\drivers\arcsas.sys
17:30:59.0498 0x15ac arcsas - ok
17:30:59.0576 0x15ac [ E208D0E0128B44387822DC6E9A95BF69, AD604EAF0F98A44F8D842C858D40AFC195F06E2EB1BC3656777BF5757A5FBF13 ] ArcService C:\Program Files\Perfect World Entertainment\Arc\ArcService.exe
17:30:59.0592 0x15ac ArcService - ok
17:30:59.0623 0x15ac [ 3BFBB5DAE801CB893B8B46345FED6437, 2C2B71C1294585265D4871E74F17541500CA20DE34AC516F2A906DD81964C833 ] aswHwid C:\Windows\system32\drivers\aswHwid.sys
17:30:59.0623 0x15ac aswHwid - ok
17:30:59.0638 0x15ac aswKbd - ok
17:30:59.0654 0x15ac [ C3014C735F450FE822C97FFBB0627113, 1CCFE845AED1757B8C1F52D310933076FF1EC197D82E499DB4592B09D66137B0 ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
17:30:59.0654 0x15ac aswMonFlt - ok
17:30:59.0701 0x15ac [ E3A9DB9A256311128382D54F40981CFD, 5FFBFEA39A7B220ADF69B791ACDC0FB6983FAC7149630F30AAEF458D30D60ADD ] aswNdisFlt C:\Windows\system32\DRIVERS\aswNdisFlt.sys
17:30:59.0717 0x15ac aswNdisFlt - ok
17:30:59.0732 0x15ac [ A4614218584E41C31C7D1CBFF0432ED5, C9632FDB13FB0DD73A5FA5E2DFA5EFF97A9CD719DC0D28097B765077AD0FB3E7 ] aswRdr C:\Windows\system32\drivers\aswRdr2.sys
17:30:59.0732 0x15ac aswRdr - ok
17:30:59.0748 0x15ac [ B7750AF7EDFD95674EB7CA92BCDD3358, A097577004F3CF71E2F9465F02B073D39926D7DEE2E2A9516D888158A5CB19E9 ] aswRvrt C:\Windows\system32\drivers\aswRvrt.sys
17:30:59.0748 0x15ac aswRvrt - ok
17:30:59.0826 0x15ac [ 51FDE588D860857A97E4C4B560E40C9B, 8A3AC3E55249DAE6CCD95593989F8B100D5C4712A16681A36E5D0F2F08BD57AA ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
17:30:59.0857 0x15ac aswSnx - ok
17:30:59.0935 0x15ac [ 1AEB8CDB797666AF709A291B47AE81E0, 12AC4DBC6338BA5E5C04B449FF8362E7EC8EBFCA675C4F21BE847DFDCAE8F7C9 ] aswSP C:\Windows\system32\drivers\aswSP.sys
17:30:59.0951 0x15ac aswSP - ok
17:30:59.0951 0x15ac [ 83378AE48209388D0F9BD16A44D19EEC, 0BEBD1E425077D81B5439E90B2C518EA8B94F590B551F52289842012BA3BAB2C ] aswStm C:\Windows\system32\drivers\aswStm.sys
17:30:59.0951 0x15ac aswStm - ok
17:30:59.0951 0x15ac [ 90BEE0170D70D6744CEF2355EEAF8086, 8F9FF53F529B854934020E2F8163605DC794FF48464D3D4439BAAF70ECE8E963 ] aswVmm C:\Windows\system32\drivers\aswVmm.sys
17:30:59.0967 0x15ac aswVmm - ok
17:30:59.0967 0x15ac [ E12BC771325E70C2A875136B0BAF491E, B01621A5B26551A9AA0D379976ABB6CF1672F8F9A7689A651AFAB4A8E72DF343 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
17:30:59.0982 0x15ac AsyncMac - ok
17:30:59.0982 0x15ac [ 48D8C3F2006698691F5AE0BB595FDCC8, 374DC9E6DF7D97A1AEBBA38F04387B0621C8C994056DC7679F02F2FBE6C6C6E7 ] atapi C:\Windows\system32\drivers\atapi.sys
17:30:59.0982 0x15ac atapi - ok
17:31:00.0029 0x15ac [ 5FC6CF6B66485CE46F6193080B525F77, CBB33B54810035521AA01FBE9DCF636901B06BAF2E7A979A939D3409B2D12993 ] AudioEndpointBuilder C:\Windows\System32\AudioEndpointBuilder.dll
17:31:00.0029 0x15ac AudioEndpointBuilder - ok
17:31:00.0076 0x15ac [ CE5284B94EC4FE9A9AE25A40E73CF675, 11668A2C26398E0E595274EB773401FD28531DDF60E90E5EA0804D9444338561 ] Audiosrv C:\Windows\System32\Audiosrv.dll
17:31:00.0092 0x15ac Audiosrv - ok
17:31:00.0154 0x15ac [ 73F5C13B431915BAE35254B4E95DFB71, 393A045859382C44133C004598B1512048046BCC129FED2247A77FDBFCDB6DFF ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
17:31:00.0154 0x15ac avast! Antivirus - ok
17:31:00.0185 0x15ac [ 3B5DA02DEA6910A709F19180746FF0CE, A97CD150692171663FE15B2BFAC8176C657C4D99232E17BD3ABA6ED1D65259E3 ] avast! Firewall C:\Program Files\AVAST Software\Avast\afwServ.exe
17:31:00.0185 0x15ac avast! Firewall - ok
17:31:00.0201 0x15ac [ 3F642D45EC0BE2E4843C35A2A1AA93D5, 2F00E40B6C0105D6EF9B1F37B7635E30197DF5F6455DA4AF08D3F38E7A117F1A ] AxInstSV C:\Windows\System32\AxInstSV.dll
17:31:00.0201 0x15ac AxInstSV - ok
17:31:00.0217 0x15ac [ A96A499B6C931B7242D964D5D695A506, 8AFA1F9709494DF7D541868B3A9C9041E83BA7F02605D86A1DE84F3BE7905C7D ] BasicDisplay C:\Windows\System32\drivers\BasicDisplay.sys
17:31:00.0217 0x15ac BasicDisplay - ok
17:31:00.0217 0x15ac [ D313E4D7DF0187CEDA121793F937EA89, 213D1F9115D929E2103D193BEF72BD14BA0828A3629F99940F42B07989DCAC49 ] BasicRender C:\Windows\System32\drivers\BasicRender.sys
17:31:00.0232 0x15ac BasicRender - ok
17:31:00.0263 0x15ac [ 30D98AE688C681196D411CA65E5E90D1, A1F01227523648AAFCB777554885F49E61829940B44E1DA888E6DC117B50072D ] BDESVC C:\Windows\System32\bdesvc.dll
17:31:00.0279 0x15ac BDESVC - ok
17:31:00.0279 0x15ac [ E53DDF8C101E3CB6A0483D592A8CC476, DB688B7E857D9A95F61773E6CA5C2F6CED22B1E781822730AF31BBCAD63C4BBA ] Beep C:\Windows\system32\drivers\Beep.sys
17:31:00.0279 0x15ac Beep - ok
17:31:00.0342 0x15ac [ 29A9288E5ADE3805899B1FC1905B43D3, 06E3543F265D8E7EF4352DA129007D8C7B63F22548F766370CAD7B309CA08197 ] BFE C:\Windows\System32\bfe.dll
17:31:00.0357 0x15ac BFE - ok
17:31:00.0388 0x15ac [ 6723B30920D4371367F468DF6061A7E9, 39D7B7F5EB2A3D7B30B49DDD92ED90B0BF57C864AC10F61E5C730AC85108777F ] BITS C:\Windows\System32\qmgr.dll
17:31:00.0404 0x15ac BITS - ok
17:31:00.0404 0x15ac [ D7148E90581185DB2CC6A2EED9C8281C, 8E8D87E744895CE035EF484EFE66D2BA1CAC7947058F0CE40F6B13AA3FFF3FEC ] bowser C:\Windows\system32\DRIVERS\bowser.sys
17:31:00.0404 0x15ac bowser - ok
17:31:00.0435 0x15ac [ CCD0AAF957BE9FF1EF46E59A2824E992, 9BC60E5393CAAABCC0AC0624C17BFE4393A0F7E4A609C9E491BFC4CB5031A038 ] BrokerInfrastructure C:\Windows\System32\bisrv.dll
17:31:00.0451 0x15ac BrokerInfrastructure - ok
17:31:00.0467 0x15ac [ 771EE7009E428CCC3476838CB22DBA8D, ABA093468160F9D3E73B19F38E43299972FD583883BDD824BE366D0D3E3F8C49 ] Browser C:\Windows\System32\browser.dll
17:31:00.0482 0x15ac Browser - ok
17:31:00.0513 0x15ac [ 9053BEDE5844021CBF53273A5FE37333, 548F0BBE764268943C5DF10C3ABC693195FDB036CDF23365BFE77092CA46729A ] BthAvrcpTg C:\Windows\System32\drivers\BthAvrcpTg.sys
17:31:00.0513 0x15ac BthAvrcpTg - ok
17:31:00.0529 0x15ac [ 3EEEA1B69C16A8D159B53896EC78420C, 048039CE173B1ACBBBF97500107F2E2C1BDA1A58C2CD0F7B279D16CCCEB0A88B ] BthHFEnum C:\Windows\System32\drivers\bthhfenum.sys
17:31:00.0529 0x15ac BthHFEnum - ok
17:31:00.0560 0x15ac [ 403C9BA247F4D4C0E4FF6FFA5F096EF6, EEFF77282788ACBE94B82FB3D3C795C2698C47A3F53EB9B39E3F90118FFAB013 ] bthhfhid C:\Windows\System32\drivers\BthHFHid.sys
17:31:00.0560 0x15ac bthhfhid - ok
17:31:00.0576 0x15ac [ 0C706A8B022A44413F6C36ECEAAA2838, 7C2476F99AF4391FAEADA7F37B14631BEA15950F837176167D7036CC3A48CF39 ] BTHMODEM C:\Windows\System32\drivers\bthmodem.sys
17:31:00.0576 0x15ac BTHMODEM - ok
17:31:00.0592 0x15ac [ 171AF9795CABEC4985D45640D3A5F8F0, D50FD89FDC392720FBB0FE23341EAE95E446FC98D5487B7EE0EDC2533CA0D5A9 ] bthserv C:\Windows\system32\bthserv.dll
17:31:00.0592 0x15ac bthserv - ok
17:31:00.0607 0x15ac [ 00B4FA77732C7823D292ECD672660882, 214102B841193654BFCF6618F7D3D1928D303A01EB44A57E6333AA72CFD9F124 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
17:31:00.0607 0x15ac cdfs - ok
17:31:00.0623 0x15ac [ 4E707EC5071DD8F5C29A7410780BD4C3, 425881E5A122439A86D3C1CD54CD5CD0A122CE6689A1798887759D714E5E586C ] cdrom C:\Windows\System32\drivers\cdrom.sys
17:31:00.0623 0x15ac cdrom - ok
17:31:00.0638 0x15ac [ BAEE72BFBEC7B96AA85F861A6F4FE428, 78E6C63848C5AFCD67C08F2A17BFD764524B8A9117EAF74CD5514F8239E155CB ] CertPropSvc C:\Windows\System32\certprop.dll
17:31:00.0638 0x15ac CertPropSvc - ok
17:31:00.0654 0x15ac [ 17BE1CB162768E886B2BBA63F8B89371, 115EB95F7203BD62F7B9DE051592849195BD1ED8F42C58F1BA32419DEE18275D ] circlass C:\Windows\System32\drivers\circlass.sys
17:31:00.0654 0x15ac circlass - ok
17:31:00.0670 0x15ac [ D5370A0D3A8F7E531FE9BA3E3C81BAC8, F9E795D2D8E7AD553C69BA148C910AF1BB30864F90B3A17D69944BBB595A0740 ] CLFS C:\Windows\system32\drivers\CLFS.sys
17:31:00.0670 0x15ac CLFS - ok
17:31:00.0685 0x15ac [ 16744C84320D33880E38DF7409585EBF, 1ED734A585BBBDECFB3E248EBFEC26FAC6B6931C5E469772E30EC7BA5FC53667 ] CmBatt C:\Windows\System32\drivers\CmBatt.sys
17:31:00.0685 0x15ac CmBatt - ok
17:31:00.0748 0x15ac [ 023C35E0281580F5BD2F8F2DEB7C72F7, 72D77575792D3FCCDF391DA78C271EE736ADA4D054D187E6E06C07276AFB7F69 ] CNG C:\Windows\system32\Drivers\cng.sys
17:31:00.0763 0x15ac CNG - ok
17:31:00.0795 0x15ac [ 765969F18ABD50298AA880E803D2096F, 3289A99611E7E5E3876E102D63249177A3714D60E49EF8C71813C337C1E44FF3 ] cnghwassist C:\Windows\system32\DRIVERS\cnghwassist.sys
17:31:00.0795 0x15ac cnghwassist - ok
17:31:00.0795 0x15ac [ 357444DE560252A907F8B687005B3DCA, EE9D4FB34E8DF1AED4C16C47507820D958BE270E0761DF5C178DAB66491BAAE3 ] CompositeBus C:\Windows\System32\drivers\CompositeBus.sys
17:31:00.0810 0x15ac CompositeBus - ok
17:31:00.0810 0x15ac COMSysApp - ok
17:31:00.0810 0x15ac [ F1B79B7B595B0D7990756C12FA64F00E, AD7D3984D2A519ED8AD472AC61011B6371C1D18BB2DA8CBE5E74AE062E238AD0 ] condrv C:\Windows\system32\drivers\condrv.sys
17:31:00.0810 0x15ac condrv - ok
17:31:00.0842 0x15ac [ 2155D9C6F9EF97E149BB5A75D608524D, B93EA1F811FE3F0C265CFE7627206A2A75952122B7C1F0E0509927FA9C237D8F ] cphs C:\Windows\system32\IntelCpHeciSvc.exe
17:31:00.0857 0x15ac cphs - ok
17:31:00.0888 0x15ac [ 14CCD65AE749AC76584CA5F0916300D3, 1D36C1C8DE27B7981D14AF1EB41531CAC1DC64898ACC54BB8D46431370641331 ] CryptSvc C:\Windows\system32\cryptsvc.dll
17:31:00.0888 0x15ac CryptSvc - ok
17:31:00.0935 0x15ac [ 5531D4CFCBB6CBBD5BFB9E5FD089FADF, 86FFC15BB5848EEB863D4016971F5ADDB2234611428A6D7741E10F717BD18C93 ] CSC C:\Windows\system32\drivers\csc.sys
17:31:00.0935 0x15ac CSC - ok
17:31:00.0967 0x15ac [ A36C84BAC3128A6A3F41136A6ED426B1, AEDB1FAABACB304546D9432BACF0A7B1DB5BAB203EA381A885DC8D0386036855 ] CscService C:\Windows\System32\cscsvc.dll
17:31:00.0982 0x15ac CscService - ok
17:31:01.0013 0x15ac [ EE5C5712BBA245CD0C394EF54410CBEB, 4C1624A81C2EF7B927F3628A5695EC4D8A073E57070024037FE9D5B46D4F8C9A ] dam C:\Windows\system32\drivers\dam.sys
17:31:01.0013 0x15ac dam - ok
17:31:01.0045 0x15ac [ BCD3562ACB27B8137BF809F61BA44E80, 3BE2617996696AD8A2402C0767E55CE53EF48B4234660C9948E153B5ACBE98C7 ] DcomLaunch C:\Windows\system32\rpcss.dll
17:31:01.0060 0x15ac DcomLaunch - ok
17:31:01.0092 0x15ac [ 2456D5CC4D15B62F7A6F071167821664, 5B08B753BDE52CA7806BE71E02FE7151E66028E51CD09C117BAC24A2A7EFC0E0 ] defragsvc C:\Windows\System32\defragsvc.dll
17:31:01.0107 0x15ac defragsvc - ok
17:31:01.0123 0x15ac [ E5935B79D5AE9288AEB72487E1A1B662, 2DED999FCC89C29649E519D7545A40925E8AD1785EF00EA6826A36B441863012 ] DeviceAssociationService C:\Windows\system32\das.dll
17:31:01.0123 0x15ac DeviceAssociationService - ok
17:31:01.0154 0x15ac [ 84C433F0FA896BACFAB67D0B22CFA73C, 10C3C9326A011C3E2006C0FA119BBEF9C5C622BB9D10175527D6D07837D3F07A ] DeviceInstall C:\Windows\system32\umpnpmgr.dll
17:31:01.0170 0x15ac DeviceInstall - ok
17:31:01.0201 0x15ac [ E608E26B536A42B5ACC145D25CB9F2AC, 92E2CC3D09CAC2B56E7DBFE37A303C2F4EC16CD24DFAEF84D29DEAF042019E02 ] Dfsc C:\Windows\system32\Drivers\dfsc.sys
17:31:01.0217 0x15ac Dfsc - ok
17:31:01.0263 0x15ac [ 120BFA182545EE73B832595137E080F8, 8B1C528E1C836F9F3D3CF241B39C2FF25757DCD6B776C2ED4E298B5849C034ED ] Dhcp C:\Windows\system32\dhcpcore.dll
17:31:01.0263 0x15ac Dhcp - ok
17:31:01.0279 0x15ac [ C0C87CCE88C4532B575AD60A95E7FD57, E1E8EF3FEDA44E39F36687D5387E7E84216D0A37A8DE0EADAC3B96C6761E01A0 ] discache C:\Windows\system32\drivers\discache.sys
17:31:01.0279 0x15ac discache - ok
17:31:01.0279 0x15ac [ 4E3237D8266580412CCA774321056111, 781B4CF6ED4F26C0D3EEB77805DE9B3696E7D1BFF54D9344D2955D5AAC11D137 ] disk C:\Windows\system32\drivers\disk.sys
17:31:01.0279 0x15ac disk - ok
17:31:01.0295 0x15ac [ 9B20A9DB154249E0E40036BC8BDC3E38, F506C7DDE0FC8014F579D82AE35522B76E5F5FFCC89E401F17E1B31C02E79697 ] dmvsc C:\Windows\System32\drivers\dmvsc.sys
17:31:01.0295 0x15ac dmvsc - ok
17:31:01.0342 0x15ac [ 090D65A0A412F9056F16297D5A5B830F, 4AE813F1603814102056F9F747B9A9623E42AA5E538CC05F936031DF12BD1BDB ] Dnscache C:\Windows\System32\dnsrslvr.dll
17:31:01.0342 0x15ac Dnscache - ok
17:31:01.0389 0x15ac [ 7F0C01E0C0BB063136DF09845FFC4CE1, 94542591AF4BCED1EDCF033D6617CC0A1AAE592BB7ACDC51AC6B26C32B9C6DB2 ] dot3svc C:\Windows\System32\dot3svc.dll
17:31:01.0389 0x15ac dot3svc - ok
17:31:01.0404 0x15ac [ 07D96198AFB530CF4A0A9B5C0E49073F, 988B50CDA4EBC3A8626A947CB741F74F6682877AB313822B717D88CDA2227A6B ] DPS C:\Windows\system32\dps.dll
17:31:01.0420 0x15ac DPS - ok
17:31:01.0435 0x15ac [ 50B8D915F3514EC8BE7DF0D2EDEC44BA, 4956FDF10BF18A2C26A987EAA5B8695057823B11B459BB5554B1B5A1940FFE40 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
17:31:01.0451 0x15ac drmkaud - ok
17:31:01.0482 0x15ac [ 4C925A9D110897409544F19D3EC460A3, 2781E2D8FEF82F1DA5BD5C83419AB21057FE2747B853284F8F7F0EFF813542A2 ] DsmSvc C:\Windows\System32\DeviceSetupManager.dll
17:31:01.0482 0x15ac DsmSvc - ok
17:31:01.0545 0x15ac [ 04AE01AD604EAE0909283B90A9BD0BCB, 0FA34F45281B97FDA0B7DB162A58832C27B059CF147B0CDCFBF68C53C9F1AA9D ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
17:31:01.0576 0x15ac DXGKrnl - ok
17:31:01.0592 0x15ac [ 59ECF01342E0CDB726C7948E36A43309, 045AB706C24B6717ABBEA749D5382A2EBB894D871CCA641D7CDC40DB76F38B76 ] EapHost C:\Windows\System32\eapsvc.dll
17:31:01.0592 0x15ac EapHost - ok
17:31:01.0623 0x15ac [ EA154EBBD85C649ED42C3BA43AD539FF, 689C9F9B89D0745FA8C3C1B4830B76D7758EFCC1DB2206C9A8D9E880F9C45E84 ] EFS C:\Windows\System32\lsass.exe
17:31:01.0623 0x15ac EFS - ok
17:31:01.0639 0x15ac [ BC7119CF5B5BC9F54C8FAE221C3227F2, 96F089419DD28E84F81A23BE6EDDC2440DDE58B626031EE2778F55708747EA42 ] EhStorClass C:\Windows\system32\drivers\EhStorClass.sys
17:31:01.0639 0x15ac EhStorClass - ok
17:31:01.0654 0x15ac [ 1A5945FA87A05A97A1175657B7BA4EDB, A4909FF016E363E3C3E6F7236C5A867C20BA0FD88D09828272809FA8323AE5F6 ] EhStorTcgDrv C:\Windows\system32\drivers\EhStorTcgDrv.sys
17:31:01.0654 0x15ac EhStorTcgDrv - ok
17:31:01.0654 0x15ac [ 8B22B788A329645F08AB4F86B9580AF3, 7C0772A049AA0279E46334BE210038666E543437305A5FCF31750B10F6012B95 ] ErrDev C:\Windows\System32\drivers\errdev.sys
17:31:01.0654 0x15ac ErrDev - ok
17:31:01.0685 0x15ac [ 39FB0D2C74D4201F01BA30D06162525A, D37571D3B7F50282A45168A64F379331E7ACAECF74578A6F2C3A403F6342E429 ] EventSystem C:\Windows\system32\es.dll
17:31:01.0701 0x15ac EventSystem - ok
17:31:01.0717 0x15ac [ B60B2A0E110D640440263268FC02C726, 4E90F01E2E65987DFF1BD919277D800B8A32DF693862D7D3D8D78EBB3C07DA07 ] exfat C:\Windows\system32\drivers\exfat.sys
17:31:01.0717 0x15ac exfat - ok
17:31:01.0732 0x15ac [ C8B18803E1521225BDBA86B5F7D2E9FC, B28722E9CE8474E5A85219F65B4748EB154455DB138FF428182B2F3FCDEDC108 ] fastfat C:\Windows\system32\drivers\fastfat.sys
17:31:01.0748 0x15ac fastfat - ok
17:31:01.0764 0x15ac [ 22A38E2F78153AB500482FD0D4A9DB65, 43BE0D52487DED1CD608210D2786D010A5E5A7652A5273950707FE1FFD59DBA0 ] Fax C:\Windows\system32\fxssvc.exe
17:31:01.0779 0x15ac Fax - ok
17:31:01.0779 0x15ac [ 9709867A1354A4D10046ADE31DA67511, 0DF012548E04E5AA2B7A65CB328E46F8BA8D202D8638F6D72BA0802880A8AD0B ] fdc C:\Windows\System32\drivers\fdc.sys
17:31:01.0779 0x15ac fdc - ok
17:31:01.0795 0x15ac [ E099DF1CE3285FCA613AF84D792DBC15, 1F8037BE6385BF7BC3C572A696E83FC28E09FDA1BAB05F3AE0C9AE873FF2120A ] fdPHost C:\Windows\system32\fdPHost.dll
17:31:01.0810 0x15ac fdPHost - ok
17:31:01.0810 0x15ac [ 141B98F42D71B4F5CFB0D8D4769FBA0C, CEF7061874C9AB713F793768D273153351E7C883FF4B4006EBCFA3758BC8173E ] FDResPub C:\Windows\system32\fdrespub.dll
17:31:01.0810 0x15ac FDResPub - ok
17:31:01.0857 0x15ac [ 2754F16876B03037CCA6FBD8C20E1686, 5BFA9925AD7786692A412264262BC10D45E10FF2FACE5C05CF6AC7BF7FB06C21 ] fhsvc C:\Windows\system32\fhsvc.dll
17:31:01.0857 0x15ac fhsvc - ok
17:31:01.0873 0x15ac [ 1018AE04A4D36BA60247C2C22D7BA7D1, CA0A60CCCD31A34E78F6A494288FE152B3977ECB45C8C8AD5ACCC36FDE02C411 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
17:31:01.0873 0x15ac FileInfo - ok
17:31:01.0873 0x15ac [ 3A2F87EF4400B5E542E2C2BA8FAB4222, 9145B79639FEACE79274C4DE05FA5D2FF79B4E0A57A802DFB9A0844DAC7A8A76 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
17:31:01.0889 0x15ac Filetrace - ok
17:31:01.0889 0x15ac [ F37314C92AB8C876DB478A36A6D9FF0E, 68238B5242F9CB2D62BCD26B206E6BA49364A9B18EDFE7EE9DBFEC642A13345E ] flpydisk C:\Windows\System32\drivers\flpydisk.sys
17:31:01.0889 0x15ac flpydisk - ok
17:31:01.0904 0x15ac [ 13C0B6F6EFD0D5C6871C07B56CB5403D, 7D099F06CB9FE72B36477D60A8B6DADAE3FDB6B20D40F0D1620A471E88EE68A5 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
17:31:01.0920 0x15ac FltMgr - ok
17:31:01.0998 0x15ac [ 89FB9BDDCEC278661EAF57639F9920D7, EBA1597399B636CA9FA4D61C7A4B53756C4D993EA3FE3D00A91B73D5284AE256 ] FontCache C:\Windows\system32\FntCache.dll
17:31:02.0014 0x15ac FontCache - ok
17:31:02.0107 0x15ac [ 2AAF650823623D89B5FE5C399FC5D1BD, 101E96BF8CA63BAF69C4F4EDAFAB42D39A8203D3A70BB131693828CEDC882CE2 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
17:31:02.0123 0x15ac FontCache3.0.0.0 - ok
17:31:02.0123 0x15ac [ 16D4CC9AE485BC60B6AE026FF2497DE8, 8247B2C487782A15F74CB2E39A6BB9357E0D86CFC4D3CCBFA116BA33DD8EC7AB ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
17:31:02.0139 0x15ac FsDepends - ok
17:31:02.0139 0x15ac [ 28E64CAC27FE3A7CA34E2F93E9A8092A, AFEF4BABE162581217FCA01AD2E637A9049B584F6FFB562355E1EDD61DABFB4F ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
17:31:02.0139 0x15ac Fs_Rec - ok
17:31:02.0185 0x15ac [ EB45DB29D3B3BCD557F4A57DADA7B2BE, 59A0B548F14E8144D94AB5546138E4AF7D37359DA3BDF70FCD4F78CFF71FC2EA ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
17:31:02.0201 0x15ac fvevol - ok
17:31:02.0232 0x15ac [ 05F58A34B5E1EB3274AE7B0875A143EF, 59C5A3FC486D508653FC50A9F6021C106B5612210FB488BE46F8F589FB774047 ] FxPPM C:\Windows\System32\drivers\fxppm.sys
17:31:02.0248 0x15ac FxPPM - ok
17:31:02.0248 0x15ac [ B5AD0B13AD7FD1C749FC45D81392B9DF, 2C5CA3934A47538292F537DB5E60740C12C6D489BFEE378015A1F4CD63963843 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
17:31:02.0264 0x15ac gagp30kx - ok
17:31:02.0264 0x15ac [ A9608FF3B1B577BFC969A7B6797B1FC1, 2D90C1554C099BC7666A24F26ECEFAFC4CC03DE7F7FE1AA2991FE3283EF9D590 ] gencounter C:\Windows\System32\drivers\vmgencounter.sys
17:31:02.0279 0x15ac gencounter - ok
17:31:02.0310 0x15ac [ 1F4CF4223F27C515A9F6F5FE4D268E67, 3E43F739E27FB14F1B303FB1E096F7095AD8E3CED8FD0F0CA18AC43B85878C0E ] GPIOClx0101 C:\Windows\system32\Drivers\msgpioclx.sys
17:31:02.0310 0x15ac GPIOClx0101 - ok
17:31:02.0389 0x15ac [ B13CCD3028A44C6E16E03A3E1AD95FA4, 151CB2605C3B7FA8A3925B07CFF5F999EA7F3D6D5F9881C3149609826B4B90A5 ] gpsvc C:\Windows\System32\gpsvc.dll
17:31:02.0420 0x15ac gpsvc - ok
17:31:02.0451 0x15ac [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
17:31:02.0467 0x15ac gupdate - ok
17:31:02.0467 0x15ac [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
17:31:02.0467 0x15ac gupdatem - ok
17:31:02.0498 0x15ac [ 8794D406B154C2DECEC6618ECF3491CF, C8B3E4BD8CA985F4079E7F9F43E78DF0D7D7381EB791CABA5F9E3B78BD72616D ] hamachi C:\Windows\system32\DRIVERS\Hamdrv.sys
17:31:02.0514 0x15ac hamachi - ok
17:31:02.0560 0x15ac [ 89D57B5741BAB84D7B846FEE23D576BE, 6AC4B2186432A6D222D0505B115DA43D73B121C49AEDD6D5EFD819AE76FFFE39 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
17:31:02.0576 0x15ac HdAudAddService - ok
17:31:02.0607 0x15ac [ 6BFEBBA25AD34E5922E60349C721B1DD, 12B8A58ADEC2DB1974CA124290B917E597EBAA44350139EE6C3A137BADB6C629 ] HDAudBus C:\Windows\System32\drivers\HDAudBus.sys
17:31:02.0607 0x15ac HDAudBus - ok
17:31:02.0623 0x15ac [ 8CBCFA78D2B43CCC23BF5A4C09A700CA, DBAB62EB256146BAF02D1B043ACE7F1A2DEB2D29FD0150848CC7629A670B217F ] HidBatt C:\Windows\System32\drivers\HidBatt.sys
17:31:02.0623 0x15ac HidBatt - ok
17:31:02.0654 0x15ac [ 9133AFFBA020B97100703DB8E598C73F, 523256CA84D15E55A1AE32609FB53A9E7EE0F5FF85CEC1D26005E3F5BBE6A3AF ] HidBth C:\Windows\System32\drivers\hidbth.sys
17:31:02.0654 0x15ac HidBth - ok
17:31:02.0685 0x15ac [ 804019176228EBE260A821C5688CAFD2, FA762B5020248C53DB7C17A69182A6FBF31DCF13EC8B5433E1B6E9B6ADE6E0D6 ] hidi2c C:\Windows\System32\drivers\hidi2c.sys
17:31:02.0685 0x15ac hidi2c - ok
17:31:02.0701 0x15ac [ 11A4D12F4CADD18CDA334C2756FE450A, 54ACCD91991D223E5A93BDFF0A4D270F0746945836796FBF04DB42EE33708FD0 ] HidIr C:\Windows\System32\drivers\hidir.sys
17:31:02.0701 0x15ac HidIr - ok
17:31:02.0717 0x15ac [ C0A9999E5B4C1953C6B07CD9105B41FD, A83C91DC0BC3A4E19877846A567A2A39C83FA9B468CC508405137A91E77F0780 ] hidserv C:\Windows\system32\hidserv.dll
17:31:02.0717 0x15ac hidserv - ok
17:31:02.0748 0x15ac [ 48ADFEFD445291AE7D619B3F4638B092, 043C879544C04FBDD01EE6A44E2FD635F7BF9033238F92EA23A1C29AAEB4D5A1 ] HidUsb C:\Windows\System32\drivers\hidusb.sys
17:31:02.0748 0x15ac HidUsb - ok
17:31:02.0764 0x15ac [ 40AAA716A3F2E494E7F533C45DA3E7E8, 1A0085CCBFC7E67B6C6028B76361A45E6706FFE2C37F763C3A434FB66EBBC0F1 ] hkmsvc C:\Windows\system32\kmsvc.dll
17:31:02.0764 0x15ac hkmsvc - ok
17:31:02.0795 0x15ac [ F4847FFB1D1FD522B4B3848A6A97BE47, 25D64A2F16E840926EB577BFFC6D3B668B88B2FB9A812A3EA6ED178204A4A778 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
17:31:02.0810 0x15ac HomeGroupListener - ok
17:31:02.0842 0x15ac [ EFC6EEA348478FBAFCF2B2D03DE0B127, 82B6CFFE1A55D847D33D15AD0539C80902CE9587F0E0ADFDA4425525CD8F5278 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
17:31:02.0857 0x15ac HomeGroupProvider - ok
17:31:02.0857 0x15ac [ D7544353157E11864C00A48BC90EF183, 5991C823E8C18E7650FFE8B33D19E552D2D91DB76957895C2719B04B0CCCE0BD ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
17:31:02.0873 0x15ac HpSAMD - ok
17:31:02.0920 0x15ac [ 8FE9867871C32E9B9A3276C61A0FACC0, 1AAAD1F11FB09B1D322A376EA63E8AD61B06C45646C1014F5E95DBF2C0C413B2 ] HTTP C:\Windows\system32\drivers\HTTP.sys
17:31:02.0920 0x15ac HTTP - ok
17:31:02.0935 0x15ac [ 4A3E6732E5BEF6DF531A217B5EBB5C54, BA259C5F3D1FA4B16DB709F6D417F2998751C9983F73712C4F62E50CF661E788 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
17:31:02.0935 0x15ac hwpolicy - ok
17:31:02.0935 0x15ac [ 0F819743721DFB5906734243ED0CE935, A67E7ED2B0948E494C3953A6639AC75AB88B9CE33C3E107E64290CC4EBDD8A92 ] hyperkbd C:\Windows\System32\drivers\hyperkbd.sys
17:31:02.0935 0x15ac hyperkbd - ok
17:31:02.0935 0x15ac [ A14A2EBA22929901F64B496C1D555982, DD9C19B1D01B0E3A6423BA1932428C49DE4CDC1DA8D1E0B7D55CEF5568D7FA1D ] HyperVideo C:\Windows\system32\DRIVERS\HyperVideo.sys
17:31:02.0935 0x15ac HyperVideo - ok
17:31:02.0951 0x15ac [ 11EDC37780E8A2F8E311D73F7658A4D7, CB60EFBD16467692C0877DE70FF34F54058CABB38413FD03F7905156D2FE4AB8 ] i8042prt C:\Windows\System32\drivers\i8042prt.sys
17:31:02.0951 0x15ac i8042prt - ok
17:31:02.0998 0x15ac [ C444F83C318BE18719DC1FDAEFF10898, E5A9D49A478D67BF0530930276B7A5C751CF49C72710FA37E50283F145DAE44B ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
17:31:02.0998 0x15ac iaStorV - ok
17:31:03.0123 0x15ac [ 8CC51204BCE551B90B45E97BE446C48B, DF10E454D0A16E5FEC11368157A421750D04F9DBB74289FF27146E4CD97B76AE ] igfx C:\Windows\system32\DRIVERS\igdkmd32.sys
17:31:03.0232 0x15ac igfx - ok
17:31:03.0232 0x15ac [ 7BB542C7156FA72CC83C1177BB190F94, BD50E0CBB67521EEDC9F6156ED85C3086B3A64F417CE04B7E1FB6040D10E1017 ] iirsp C:\Windows\system32\drivers\iirsp.sys
17:31:03.0232 0x15ac iirsp - ok
17:31:03.0295 0x15ac [ 051874425696386EC3D4C3FB475F25C2, 2D569DBBC72ABF1FC2B4D921B9339ED0A953EC8BB7A1F72F21A5745D54A7B6A7 ] IKEEXT C:\Windows\System32\ikeext.dll
17:31:03.0310 0x15ac IKEEXT - ok
17:31:03.0310 0x15ac [ A43BC9416741ABEA2B8DF60D2C0EA6A2, 74FF63BB16F62B1085CF2D09E666EA8B5965A6CE44A98F1F9CF9C6ABCA7BD23C ] intelide C:\Windows\system32\drivers\intelide.sys
17:31:03.0310 0x15ac intelide - ok
17:31:03.0326 0x15ac [ BE23B0DF1401DC890B5CEFA369B1BD8E, 56039BEE1B1CE35D2ED3C6D26AEFB35CA6DD3E00F536BBE337473051D3BD98C1 ] intelppm C:\Windows\System32\drivers\intelppm.sys
17:31:03.0326 0x15ac intelppm - ok
17:31:03.0342 0x15ac [ AB308167857138B84E4DECDF2000DD27, D761E84A3B0986B4351D970110701BF4E628C19941552FC436CA8559A5E4B468 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
17:31:03.0342 0x15ac IpFilterDriver - ok
17:31:03.0389 0x15ac [ 933DBF31E0632B96B74D1A1230AA2199, 5FA8540674D5481F1846CE14533CA32C18398DF2A129B4C2B53DFA8361FB5AAE ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
17:31:03.0404 0x15ac iphlpsvc - ok
17:31:03.0451 0x15ac [ DB125C2902A6455518C5F8F8A147483D, 3A77CB707273A3B41724737CEDDC68AD820DAABE60531A28EF559175F90FB6E6 ] IPMIDRV C:\Windows\System32\drivers\IPMIDrv.sys
17:31:03.0451 0x15ac IPMIDRV - ok
17:31:03.0451 0x15ac [ 57B0C0D982013C72911A3F5CBA795034, 2A09BC1565772C3698153A7F0B9727A8B8DA4A98CC3E3290A1D8FC2350E9168C ] IPNAT C:\Windows\system32\drivers\ipnat.sys
17:31:03.0451 0x15ac IPNAT - ok
17:31:03.0467 0x15ac [ 9D6DB34476AC6448B3CA59D8676F7CE6, A77A8207719F571D62EE8AE3D3185E7C5D9F44747DD1276418B0B4B4C6B5182B ] IRENUM C:\Windows\system32\drivers\irenum.sys
17:31:03.0467 0x15ac IRENUM - ok
17:31:03.0482 0x15ac [ 2E1347C9CC7DDB43183AF725135ACF0D, 08AF2DDFD929332D0C373CA9FFD75E86A5109C6F228F6391C3AD4841922045BB ] isapnp C:\Windows\system32\drivers\isapnp.sys
17:31:03.0482 0x15ac isapnp - ok
17:31:03.0529 0x15ac [ EDC90A617A17AFD204D041638EAD320B, 58C4DEDB2B51D071A79ACF3903B83828267BBDFE546D9F0242C61354D41347B1 ] iScsiPrt C:\Windows\System32\drivers\msiscsi.sys
17:31:03.0545 0x15ac iScsiPrt - ok
17:31:03.0545 0x15ac [ 4533BE9F8D67BDCF5FECA87DCC345448, 89852E7479EFD73309037083B43DB94AAACC2FA4BB323C547F87CD66C59C20D7 ] kbdclass C:\Windows\System32\drivers\kbdclass.sys
17:31:03.0545 0x15ac kbdclass - ok
17:31:03.0560 0x15ac [ 8F73A6DAEF7F7D102FBBA6F3EBC47F97, 5FBF9348D9886961E8FD771E8B4F81FA37B0EBC076AC62C5D4A024078CC4CF1F ] kbdhid C:\Windows\System32\drivers\kbdhid.sys
17:31:03.0560 0x15ac kbdhid - ok
17:31:03.0560 0x15ac [ F7E302012680B0617C904B58594E0376, 2269289081D3E03270C8D3675D1B5901B0EE0C6C8F6A9F3381B3C34BDAF07E1A ] kdnic C:\Windows\system32\DRIVERS\kdnic.sys
17:31:03.0560 0x15ac kdnic - ok
17:31:03.0576 0x15ac [ EA154EBBD85C649ED42C3BA43AD539FF, 689C9F9B89D0745FA8C3C1B4830B76D7758EFCC1DB2206C9A8D9E880F9C45E84 ] KeyIso C:\Windows\system32\lsass.exe
17:31:03.0576 0x15ac KeyIso - ok
17:31:03.0607 0x15ac [ 60650221CA2C39B70E0DDAB942831420, 9DC109A7B40494DAA29EDF644B783D6B43558B4A4AF11C4B24A6F3F48F284E82 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
17:31:03.0607 0x15ac KSecDD - ok
17:31:03.0623 0x15ac [ 825D7CDC20121255AAFBD002CC947AC1, 9394E7EABEC0C190F308E613ABBD7A3505911A19510605841B732464F202F481 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
17:31:03.0623 0x15ac KSecPkg - ok
17:31:03.0639 0x15ac [ C2ADC979C11A858949ECC1B9233B884C, 43AB852954F801D31956C17513F8178B1F2AB9808BB64A3995C794651960EE5C ] KtmRm C:\Windows\system32\msdtckrm.dll
17:31:03.0654 0x15ac KtmRm - ok
17:31:03.0670 0x15ac [ C6D54261F610556FF91952409E65B9FE, 4A563C25DB8747DE2C2AD179CBA767BE067D74E2FF5209A6637D38A6F15360CE ] L1C C:\Windows\system32\DRIVERS\L1C63x86.sys
17:31:03.0670 0x15ac L1C - ok
17:31:03.0732 0x15ac [ 05933529B37640290285DA67A84885C5, 976E5CF6AFAB1A5EAE7289930EC928CF3E537568D3E012C40301E9963612766C ] LanmanServer C:\Windows\system32\srvsvc.dll
17:31:03.0748 0x15ac LanmanServer - ok
17:31:03.0764 0x15ac [ 7867CD2CC05D8B1377DC7FEE93716015, 22546EFB97DE4EC89A5FDB5FC0779C3DCC9EEA885B7340B88C55B25A4CFA5698 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
17:31:03.0779 0x15ac LanmanWorkstation - ok
17:31:03.0779 0x15ac [ AD581D8BA8C2CE46933D44392BA35C24, 9520352D564AD670BC003B90ACDB8EFCD581D2540286729708E1085C659EF262 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
17:31:03.0779 0x15ac lltdio - ok
17:31:03.0811 0x15ac [ BCDCFD2C2115334419EF025C533AB6C5, 8461B3A9B721905A46020B2384B7587FB699D87E13050390D1D7936CB1EB9C83 ] lltdsvc C:\Windows\System32\lltdsvc.dll
17:31:03.0826 0x15ac lltdsvc - ok
17:31:03.0826 0x15ac [ FBA8BDF947B5289E85324F00043CC5D8, 28091B1CB0137024E4EDA28A8AD0C3C090090942E8D2CEC242CFAFE91F7E69F2 ] lmhosts C:\Windows\System32\lmhsvc.dll
17:31:03.0842 0x15ac lmhosts - ok
17:31:03.0842 0x15ac [ 6B01CB678E1E390CEA9514D4774EFB51, D1454269D2054C71ED732D34E5D625E468ED01689824603704E64A6AF0125629 ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
17:31:03.0857 0x15ac LSI_SAS - ok
17:31:03.0857 0x15ac [ 4C3AFBA9ED36535313054AC26532E9DE, 1557BEA6F30B1DE7C4D9E4FECB6DDF8AFA87D91586ACD5B700E1966446F2DA85 ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys
17:31:03.0857 0x15ac LSI_SAS2 - ok
17:31:03.0873 0x15ac [ 0715DC27611C202D04BC0365D666DD27, EAF76A9A5CD515C874AB1964A035CEC7FF446FDFE642A67491028190B464CE38 ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
17:31:03.0873 0x15ac LSI_SCSI - ok
17:31:03.0873 0x15ac [ DB6B9554AA4F83212E80D5107D8C53EE, CF8032926AAE9846291FCEDE10E8633AAE01DCCBE67F6907584A61259FFE7DC4 ] LSI_SSS C:\Windows\system32\drivers\lsi_sss.sys
17:31:03.0889 0x15ac LSI_SSS - ok
17:31:03.0904 0x15ac [ 2576E646F41F6E72BD57B952E93FBBCE, D9901504B78FABE88C2AFA9D1092BCEEB00E24A825A2DDECBE02BF7CBEABCC1E ] LSM C:\Windows\System32\lsm.dll
17:31:03.0920 0x15ac LSM - ok
17:31:03.0920 0x15ac [ F731770C339FEB6563397D410793A756, 6338F009BE439AE507AC878ACE92D96A8A87FD9EFEA2B47D5A350A835C98A427 ] luafv C:\Windows\system32\drivers\luafv.sys
17:31:03.0920 0x15ac luafv - ok
17:31:03.0967 0x15ac [ 8B878D0F1F34F0C6E1990F949F6AEF64, 5878B544A23B42BC0B6FABBC0532B8A025503A8FD7F87146CC8B35736D9E382B ] LVRS C:\Windows\system32\DRIVERS\lvrs.sys
17:31:03.0967 0x15ac LVRS - ok
17:31:03.0982 0x15ac [ 125C3C5A315500A1AD54F0B4766AF815, 6ED651E48818B56EB772B5278D7A4BC183FC02599C5C6554ACA9B8DBA65AEC2B ] megasas C:\Windows\system32\drivers\megasas.sys
17:31:03.0982 0x15ac megasas - ok
17:31:03.0998 0x15ac [ 05457CC7F5586C6E8D02FFA7F23FCEDF, 9D5C4E6988701515FC745F0833ABE81749779235615EE3FEC74825E9C7B1B1FF ] MegaSR C:\Windows\system32\drivers\MegaSR.sys
17:31:04.0014 0x15ac MegaSR - ok
17:31:04.0029 0x15ac [ D86AC00883B9C98B570E7643AAF8E554, 4B4BDC01DC20F820A9D1E1B8E875B6445F9B920F0AB1E115ADD9651A368911C4 ] MEI C:\Windows\System32\drivers\HECI.sys
17:31:04.0029 0x15ac MEI - ok
17:31:04.0061 0x15ac [ CAAAB04E7775D8F11E166482F3596539, FE4D2043E63586521F84CEC0C12764AE97EF58E2BE2666BA21692D95A965734A ] MMCSS C:\Windows\system32\mmcss.dll
17:31:04.0061 0x15ac MMCSS - ok
17:31:04.0076 0x15ac [ 049E433162AFE9B08C05D81D2C62CD61, 3CA4F3D569E2E827A1E70E3FACF65739499E23890848896BEF91B93230249746 ] Modem C:\Windows\system32\drivers\modem.sys
17:31:04.0076 0x15ac Modem - ok
17:31:04.0107 0x15ac [ 81F2FEE55660E51820C93A388AE8FEB9, 70E492BE3B94963CD8AD8DD2BB1EAD0B723FFF6DCD8FD11383BC6EA9AB888DA4 ] monitor C:\Windows\System32\drivers\monitor.sys
17:31:04.0123 0x15ac monitor - ok
17:31:04.0123 0x15ac [ 9D3F069A705325E7B7CEA36BFB65E616, C32805CBD337F17BB263F1A7677DD03EE4E7017A53C671606C96EF1F686D8B68 ] mouclass C:\Windows\System32\drivers\mouclass.sys
17:31:04.0123 0x15ac mouclass - ok
17:31:04.0170 0x15ac [ 3C3C50AA12E2E48A9FEAA4BF5AA789A0, 47463F054E8FDD5A857AC2B589BDD9312074D90F8F5A4F4B9194A983E7C888FE ] mouhid C:\Windows\System32\drivers\mouhid.sys
17:31:04.0170 0x15ac mouhid - ok
17:31:04.0217 0x15ac [ 96AD36823AAFB32694F6FB9BF1237CA6, 0FB3F6C3C056AD075481325C4FABE572C1A85798C4281040FBD1E1914D179F9F ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
17:31:04.0217 0x15ac mountmgr - ok
17:31:04.0279 0x15ac [ 4E9D8041D352A33332FD6F59A3A78B03, D4E6229B07EF9866993EEE4F6223DC7F1FF1108273FE14A3DC74E65C181DE56A ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
17:31:04.0279 0x15ac MozillaMaintenance - ok
17:31:04.0326 0x15ac [ E8AA1C862C926126FBAD748565205586, 8717E41C7AECCD8DAA994C57EC048F965C9B8F88695D7044B36DFBDCBA577002 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
17:31:04.0326 0x15ac mpsdrv - ok
17:31:04.0357 0x15ac [ 23B5BCA94C50D0B87684C10867F83136, A7936E46628B94E18B8DF6E056C30E599916296D8D22CF8EAE25B1F5442014FD ] MpsSvc C:\Windows\system32\mpssvc.dll
17:31:04.0373 0x15ac MpsSvc - ok
17:31:04.0389 0x15ac [ 329E3ACBFC616666D3D04C6FDC1B71E0, 124D98145025966987B6973B9B3A52A11AB99B72F036616D8D41B64717676523 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
17:31:04.0389 0x15ac MRxDAV - ok
17:31:04.0404 0x15ac [ 1A04B8E0C9156FB742BA41DD71C40F28, 1447076D4628015333646307CA60BA89399A310F36EECBE118596BE05ED1C5AC ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
17:31:04.0404 0x15ac mrxsmb - ok
17:31:04.0420 0x15ac [ B9F3DA35CDE171B5CBA70319AD7D5E59, A05FD89B048CBF96FFC0E78E58304B1468E2C0272288FEB200C0B92361239722 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
17:31:04.0436 0x15ac mrxsmb10 - ok
17:31:04.0451 0x15ac [ 5F5878D3D0A4E86D5D43991AFCEA908B, F6F80C07CA8C95CD7DDEA54F07882B0172EA1F82D2A4327FE130F993F9809395 ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
17:31:04.0451 0x15ac mrxsmb20 - ok
17:31:04.0467 0x15ac [ 61E23CF0A54EDBAE5CFE3322E960ECC9, FA6BC02B2502BAB383A0A021B4283CF48513CF8CE2F2902C80F3F992F82B82DE ] MsBridge C:\Windows\system32\DRIVERS\bridge.sys
17:31:04.0467 0x15ac MsBridge - ok
17:31:04.0498 0x15ac [ 37594E0C3119827CA7F8D16D187239E0, A41B23E7EFC03F87D6DE6937D1E695AE386E04C21192E5D037BE00B756F39DDC ] MSDTC C:\Windows\System32\msdtc.exe
17:31:04.0498 0x15ac MSDTC - ok
17:31:04.0498 0x15ac [ 651DEF4337DD77E6A607CEE49D3C4B30, C236987022AAF21BCF076D73D51A93DD12CAFDADC3CC2291790EF1F5B54CC4AA ] Msfs C:\Windows\system32\drivers\Msfs.sys
17:31:04.0498 0x15ac Msfs - ok
17:31:04.0545 0x15ac [ 8F47F5F31F001C4F97840DB723618DD0, 226FA6B25BC8ACB0989743A7F76493D7F6BF82618F0888FF1B6EE11DC73D5357 ] msgpiowin32 C:\Windows\System32\drivers\msgpiowin32.sys
17:31:04.0545 0x15ac msgpiowin32 - ok
17:31:04.0561 0x15ac [ 26BBD77D23FFABB14C3291A1B8555EA5, C49421E288922F4E55D4A30929D6EC459FFDA7F74E0F75D0E0F242A06CC4EA52 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
17:31:04.0561 0x15ac mshidkmdf - ok
17:31:04.0576 0x15ac [ 51808FEF911B77758A6CF7CEB469AF9E, C5CECAC8CB7BA8DE3B41F7C9EA4C1EB57FE36798D74EB31A521BD0AE60F37812 ] mshidumdf C:\Windows\System32\drivers\mshidumdf.sys
17:31:04.0576 0x15ac mshidumdf - ok
17:31:04.0576 0x15ac [ F103DF830D370B7535FDA3D477C8D8A0, B46C8C3767FBFEC39F43BD7018227B69D9BBEB1EA8D2BB73E9590931719F4B6E ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
17:31:04.0592 0x15ac msisadrv - ok
17:31:04.0607 0x15ac [ 2C777DD7FD2340F9F9F8BD76B9810956, B626AC922488274C2EA82F880FE9041EFBC9017F8C87A1316312E9B5BB7EE3B9 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
17:31:04.0623 0x15ac MSiSCSI - ok
17:31:04.0623 0x15ac msiserver - ok
17:31:04.0623 0x15ac [ 3FCF6AA904516872CF70ED248F86889B, 00D72A08BDFBE1E10F7C05C144D50946708CDF42258C0F353B677B35696DC1D7 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
17:31:04.0639 0x15ac MSKSSRV - ok
17:31:04.0639 0x15ac [ 10C229EAC28FDB8550EE93D955932F83, 5A45CE23CEADB7234C38C85173D35897CB7D2AA132B7391EF8014C1BEE439932 ] MsLldp C:\Windows\system32\DRIVERS\mslldp.sys
17:31:04.0639 0x15ac MsLldp - ok
17:31:04.0654 0x15ac [ BA786F089895196E18120F66F996A3D2, 5760FBD42095205C02BBBE31FDFFFD5E81B7152014A7838AC946D664B61337CA ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
17:31:04.0654 0x15ac MSPCLOCK - ok
17:31:04.0654 0x15ac [ 362950A5F7B1794DA9CB985AF7BBCC4B, 2F106BEC7533FE7E584A04369390D487563B7D5E1B92FBAF9ABB8F97457DE829 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
17:31:04.0654 0x15ac MSPQM - ok
17:31:04.0670 0x15ac [ 79A14AB6C6A5B01E9CE99937D1304D13, EC2FF1D0E3BF3C056D111803D3EAAB64F35E40CE4354F765F1EDF76A5C05341F ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
17:31:04.0686 0x15ac MsRPC - ok
17:31:04.0686 0x15ac [ A819A3006C27870AF05E408AD06FACFF, C97A384944962E6A5DAC416A98342B7BFFE3B0793A33EA099DA0951F2A5F5067 ] mssmbios C:\Windows\System32\drivers\mssmbios.sys
17:31:04.0686 0x15ac mssmbios - ok
17:31:04.0686 0x15ac [ FB1D61A2998A5C4456C6B73DD41D5352, C11FDA9240A36BA45878C70416F5A40E34A127B4D2F0F7E65F1E9D407D69338D ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
17:31:04.0686 0x15ac MSTEE - ok
17:31:04.0701 0x15ac [ 3CC687876469F0FD3B2D936FA7A6EC59, A61610E34DD8258924ECD9FF95E28D69CAC90DC6EE3BF64CE3126332761625FD ] MTConfig C:\Windows\System32\drivers\MTConfig.sys
17:31:04.0701 0x15ac MTConfig - ok
17:31:04.0701 0x15ac [ 6779B2A319A563C68B56DE8491E9EA76, DFD78A3931014668E88274DFCDCB08713FD5E5DEE14F9AF16BCACA45604FB5C8 ] Mup C:\Windows\system32\Drivers\mup.sys
17:31:04.0701 0x15ac Mup - ok
17:31:04.0717 0x15ac [ 1DEF95DC467131BF4AB52A8F72C42D89, 9141A50E1C472D09D273E02C48B2C36CEE5EC6E4A7E9E568A096A144F9B7AB91 ] mvumis C:\Windows\system32\drivers\mvumis.sys
17:31:04.0717 0x15ac mvumis - ok
17:31:04.0748 0x15ac [ 34FEF8CBBD7C4FACDD6AB68E39E02062, EE10E2C22A2DEC635BC97E4C044052232353891B63D81C429FE2984D278C8371 ] napagent C:\Windows\system32\qagentRT.dll
17:31:04.0748 0x15ac napagent - ok
17:31:04.0779 0x15ac [ D48E3B33BD911BA28413A4337456724F, B68A782BDEB0B2E592A6FE72E1BAC3636D6385B6535443608B2F8B2F42705BC6 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
17:31:04.0795 0x15ac NativeWifiP - ok
17:31:04.0936 0x15ac [ 6D8FCDD5BB3B676EF58FA234073492C6, 07A69DD00E45C59CBB6FABFBD62FE897655970BE2D09997CF29D20241ED9AF13 ] NBService C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
17:31:04.0951 0x15ac NBService - ok
17:31:04.0967 0x15ac [ 4B947B7F1ADCF1AE86B0EB717D55CE0C, 6E0A0C1AA5B4DB709DFC28C708176731C934A48451E7AE8F11DE75DEAB7CAAE7 ] NcaSvc C:\Windows\System32\ncasvc.dll
17:31:04.0967 0x15ac NcaSvc - ok
17:31:04.0982 0x15ac [ 466C47B1335533884C06CA88D073B759, F2C989EA1FE487020E35FDF121721D81FAA6E2A51FF7E12309D933EFECFE0FEA ] NcdAutoSetup C:\Windows\System32\NcdAutoSetup.dll
17:31:04.0982 0x15ac NcdAutoSetup - ok
17:31:05.0061 0x15ac [ 46D2FC2CB94830C57EA760CE6FD32F37, 7447C101AE34ED97E405FECBC8A28ECF9D3E5575307AB0B2A17D4A9C81845F99 ] NDIS C:\Windows\system32\drivers\ndis.sys
17:31:05.0076 0x15ac NDIS - ok
17:31:05.0092 0x15ac [ 9B8BC481DEEAA07C51DA214D2CEF2FC9, 187D3BE38CF64AA695512ACCB2D0050772F07A21E200AFA6C6BA6030A2680AD9 ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
17:31:05.0092 0x15ac NdisCap - ok
17:31:05.0107 0x15ac [ 1EA68DB9E05248EF9B940D6D0A0725B3, 7D3DADA83FCF7346516907D5CBF2F9AD2D49955A3F9F29ED2DCCB51F7B44D3D1 ] NdisImPlatform C:\Windows\system32\DRIVERS\NdisImPlatform.sys
17:31:05.0107 0x15ac NdisImPlatform - ok
17:31:05.0139 0x15ac [ 71F6E2AF63B0E52B36CEE7F0AE076A18, 7CADADA8D93581EAA1BFFB27D71C61569AF640FC41DD6C5F7988066AA9BF9B16 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
17:31:05.0139 0x15ac NdisTapi - ok
17:31:05.0139 0x15ac [ DDC67239BFE82DC5A878039B464B1968, 11A9DDC53C1FBF12623964BF2788C5B3F6F1C45D4F283A7CC407E4050CD1F071 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
17:31:05.0154 0x15ac Ndisuio - ok
17:31:05.0154 0x15ac [ 556DB924D61BC4A5E0F95D383E9B1009, 17848845E920400CA1C97F6A8F1FD9CEF66C7B761663EFB3809DC80F7F3BB748 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
17:31:05.0154 0x15ac NdisWan - ok
17:31:05.0170 0x15ac [ 556DB924D61BC4A5E0F95D383E9B1009, 17848845E920400CA1C97F6A8F1FD9CEF66C7B761663EFB3809DC80F7F3BB748 ] NDISWANLEGACY C:\Windows\system32\DRIVERS\ndiswan.sys
17:31:05.0170 0x15ac NDISWANLEGACY - ok
17:31:05.0201 0x15ac [ B8C10B9DE50120E8CA3E995F94CA80D7, B3EC4335ADA2B5CABB054C9723167E910C105CF7D51BE94508ABDB814F6570D5 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
17:31:05.0201 0x15ac NDProxy - ok
17:31:05.0217 0x15ac [ 583F95CEFCD5D896B5531BD338030401, 0CB24459430CBDC367B86B8085C14D0F9DC1992BC1B282F543641583B752CF38 ] Ndu C:\Windows\system32\drivers\Ndu.sys
17:31:05.0217 0x15ac Ndu - ok
17:31:05.0342 0x15ac [ B90E093E7A7250906F1054418B5339C0, F9A0BAC5B4B29F14B5CACA1047F8928A495EFD56E485492BF71C856B296476D6 ] Nero BackItUp Scheduler 4.0 C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
17:31:05.0373 0x15ac Nero BackItUp Scheduler 4.0 - ok
17:31:05.0373 0x15ac [ 4CA677A214248DB8227F8035B546F7D0, 50B89A5AF9423EE0820E7E15F22345EF9EFB284882B2C4CDC6E86B898C74108D ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
17:31:05.0373 0x15ac NetBIOS - ok
17:31:05.0389 0x15ac [ 303A053C25E468B9925C22288BEF8484, 7A5BCE4B6BB0D20187E4F9E253D86F0F6ACD90C16367DD427F6FB5DE76B79A5F ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
17:31:05.0404 0x15ac NetBT - ok
17:31:05.0420 0x15ac [ EA154EBBD85C649ED42C3BA43AD539FF, 689C9F9B89D0745FA8C3C1B4830B76D7758EFCC1DB2206C9A8D9E880F9C45E84 ] Netlogon C:\Windows\system32\lsass.exe
17:31:05.0420 0x15ac Netlogon - ok
17:31:05.0436 0x15ac [ A54157CE7FF480834897CC0FA6DDF620, E126AA31791CE374E83472C51BEDE5EBD80CF3A6B69B10767D50E26C2AC328BA ] Netman C:\Windows\System32\netman.dll
17:31:05.0436 0x15ac Netman - ok
17:31:05.0482 0x15ac [ 58E8D9AD811E1BAEA04EAFB7D987FEA9, 7C4356C5D1D8511DB1A14F6AF92846BA8500DA8ED30C6C2333B7A5A4FD243F4C ] netprofm C:\Windows\System32\netprofmsvc.dll
17:31:05.0498 0x15ac netprofm - ok
17:31:05.0545 0x15ac [ 5243CFC2E7161C91C2B355240035B9E4, CFD77485A9D7BC47F3A9C53D73B2AE2D5D04B90ED38628F3124EA569F4DE969E ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
17:31:05.0561 0x15ac NetTcpPortSharing - ok
17:31:05.0576 0x15ac [ 4B539272E9F5C3B8D9714D137FD340A6, 382E36ADA5B80119915B4A3506EDBE4EAB96427CFFD591B9AC2930884C60A67B ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
17:31:05.0576 0x15ac nfrd960 - ok
17:31:05.0623 0x15ac [ 6906D71601703792F395CF8497209FDD, 5F82CB1BD19AACF4D28959123F6422A9263A13A51F9EB7669C2C614BF4EC75B1 ] NlaSvc C:\Windows\System32\nlasvc.dll
17:31:05.0639 0x15ac NlaSvc - ok
17:31:05.0764 0x15ac [ E32686B4E27D11F83E3F2844E104C66C, 9EE5A95EA4779387ECD6DCAB7A72D22E1E6D98501DCAED8884CCC97B0FF618A0 ] NMIndexingService C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
17:31:05.0779 0x15ac NMIndexingService - ok
17:31:05.0779 0x15ac [ EAC569A77BE92B247FCA51E498B17DF1, 3295DB8AC8BE62AE39A4EF212E1E02E72F4AC13F56D3D6105590A0906B27DD69 ] Npfs C:\Windows\system32\drivers\Npfs.sys
17:31:05.0779 0x15ac Npfs - ok
17:31:05.0779 0x15ac [ 6E994702ED294CDBED7621590EC75735, 475DAD1282C2959C385397D93D99EB610081A05A85D0210735FBDF160FA64A38 ] npsvctrig C:\Windows\System32\drivers\npsvctrig.sys
17:31:05.0795 0x15ac npsvctrig - ok
Re: Prosím o kontrolu logu
17:31:05.0811 0x15ac [ 61C583D971CC3411CCD3D58704E9301B, 4B4A24B39FAA4E755C016253B69CE48A7FEBF1D1A910D4373D7F60C2CF2A8D63 ] nsi C:\Windows\system32\nsisvc.dll
17:31:05.0811 0x15ac nsi - ok
17:31:05.0826 0x15ac [ 9588CCD14571FA22F8F2ECCF198AB448, 7F194114CD81E2DEE36D1000B8A89402399216815837C34239B35EA1CCD7A59D ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
17:31:05.0826 0x15ac nsiproxy - ok
17:31:05.0982 0x15ac [ 6C816842AC5E2B0E033ED0BD1058E077, 20EFDE034776C1DB9A796EC55BEF3DD938CB704824B1DDBD2DA2D4645EB4CDA8 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
17:31:06.0029 0x15ac Ntfs - ok
17:31:06.0045 0x15ac [ 0F965AF67042AF539274738FFD0C8C71, 69CE25330134F30B6FE9205D7AAAEC1B6EE2D9784300DD7816295B766B2BA027 ] Null C:\Windows\system32\drivers\Null.sys
17:31:06.0045 0x15ac Null - ok
17:31:06.0311 0x15ac [ B69E6F70CE1151C8D62ABC9DEF64DFBE, B7BD731D1CCF4E71EF1CF4AFA9189C1831306483B4BF57B12B89113A5230871B ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
17:31:06.0545 0x15ac nvlddmkm - ok
17:31:06.0576 0x15ac [ BD23FF50A9A59AAF48052F5E7D0682B0, 36177EA9B24B5F6E9A5F4431056AC0B682B3495A0373468E8B37662DB434A31F ] nvraid C:\Windows\system32\drivers\nvraid.sys
17:31:06.0576 0x15ac nvraid - ok
17:31:06.0592 0x15ac [ 108DD54A5B1E73F583AF7DC94CCE52B8, 5F581FEAFEA38FD7DBB4F2159C16395FBD2E02ABC53F580DAADA1D40DA216E99 ] nvstor C:\Windows\system32\drivers\nvstor.sys
17:31:06.0592 0x15ac nvstor - ok
17:31:06.0639 0x15ac [ E4284FCF99FEA13A7E1836F87AE356F6, 541C40DD3483810632320E8F23427BB52593D156E876C6023BE7F7A8589383E8 ] nvsvc C:\Windows\system32\nvvsvc.exe
17:31:06.0654 0x15ac nvsvc - ok
17:31:06.0764 0x15ac [ 03E60E0BFA53ED15DC984FA34B44BB0F, 50ABF2E303B9A2B6DDD0DB411C24C3CD6CC30AFA664B5682CF9189F96548CC10 ] nvUpdatusService C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
17:31:06.0811 0x15ac nvUpdatusService - ok
17:31:06.0811 0x15ac [ 5ED87C9C51CFE59B1DDFF8290719E0E4, 29AF0085237B8E0E972BD4909734A613216E6BC13EBBECF35142D65FF0F64293 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
17:31:06.0811 0x15ac nv_agp - ok
17:31:06.0904 0x15ac [ 84DE1DD996B48B05ACE31AD015FA108A, 4B9D1E4EF83ECED6C77F23D9879C124534F7053D7423E3A2D0F67A4A720CEA94 ] odserv C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
17:31:06.0920 0x15ac odserv - ok
17:31:06.0951 0x15ac [ 5A432A042DAE460ABE7199B758E8606C, 6E5D1F477D290905BE27CEBF9572BAC6B05FFEF2FAD901D3C8E11F665F8B9A71 ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
17:31:06.0967 0x15ac ose - ok
17:31:06.0983 0x15ac [ BB3916021D0AC8D33C02C1161B7A2621, 01452A201C2CA555706356CF1EB9890BD4857DD906DFC1CF66AAA3E29D4562A2 ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
17:31:06.0998 0x15ac p2pimsvc - ok
17:31:07.0014 0x15ac [ 433A776514D8A57DA92467991AE2FEFF, 44ABE749266FBAFE4AE72B7777572D458A2E4ED77A256CF59FDFAEBA3CBE5827 ] p2psvc C:\Windows\system32\p2psvc.dll
17:31:07.0014 0x15ac p2psvc - ok
17:31:07.0029 0x15ac [ 8BCE63AF5B52642E832630F862DE96EF, 8D5D282A3F9CADA3A08211997828E36979400A048A850D3E06E7E66C90D90F6F ] Parport C:\Windows\System32\drivers\parport.sys
17:31:07.0029 0x15ac Parport - ok
17:31:07.0061 0x15ac [ 7289BE4566F0E5126868EB6E4292CC3C, CD4FA356D20CAE3743298A3999AFC1AA2EDC13A70FFCF8B06CC195069952121D ] partmgr C:\Windows\system32\drivers\partmgr.sys
17:31:07.0061 0x15ac partmgr - ok
17:31:07.0061 0x15ac [ 49A439FEAB060F74B8EC7DBF44D4A7BA, FCA6A9809A9930902DA8C9F1643F0A77CBF81012FC43ED5B039C3A1E5F9A67C7 ] Parvdm C:\Windows\System32\drivers\parvdm.sys
17:31:07.0061 0x15ac Parvdm - ok
17:31:07.0076 0x15ac [ 1DAABA22886AB5568BF1527D35279895, 088F55A467486E021296ADF08AE4DFDAD13D2A1DD0C2191F6E91B247D120CA14 ] PcaSvc C:\Windows\System32\pcasvc.dll
17:31:07.0092 0x15ac PcaSvc - ok
17:31:07.0092 0x15ac [ EA828C84C8948D0E4994C1E0A45EB05F, 5B6BB5AA870BC2F46CA8E037B21DC0B9748C2D26E3C2C9079330302783FAC5B9 ] pci C:\Windows\system32\drivers\pci.sys
17:31:07.0108 0x15ac pci - ok
17:31:07.0108 0x15ac [ B4444133ED61F87FD49A2ADD28285115, 26DB2CF0B9832FE5677C108C833A8A416354EC91707AD54A05A01F0F6906074D ] pciide C:\Windows\system32\drivers\pciide.sys
17:31:07.0108 0x15ac pciide - ok
17:31:07.0123 0x15ac [ 6E11FDE71F2015007CDD4AE9D2D700C9, BA9D2D9433B947A0B47F879FA7689C7C5F6DB28B93CDA32C672B8A72E92C7E3C ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
17:31:07.0123 0x15ac pcmcia - ok
17:31:07.0139 0x15ac [ 8A56B080B12950D448D556FE4BA6C68C, 850DB538CE4F65E18F5402E57BE5FF458F1EF68C8BBA5A7B0B5EBF3E4C5B990F ] pcw C:\Windows\system32\drivers\pcw.sys
17:31:07.0139 0x15ac pcw - ok
17:31:07.0186 0x15ac [ 58F99F74C33B7615ABEECF70BAD5FE1E, 6FDD34677313194A12256153D60B57524446378063BD45BAA5183BC6D56C97C6 ] pdc C:\Windows\system32\drivers\pdc.sys
17:31:07.0186 0x15ac pdc - ok
17:31:07.0248 0x15ac [ 8C7EE53A9F6A5F01E77DBB81654E5B66, 61AD022CCBBF0BBFD8815EF60E7F88F7E2C8AB99C19E5EC29F1A7616A24D96EE ] PEAUTH C:\Windows\system32\drivers\peauth.sys
17:31:07.0264 0x15ac PEAUTH - ok
17:31:07.0326 0x15ac [ D90D72035BA6DB320C9700E16552D0FE, 0DD0FD650A7532ACC9C5BC5D98F41484852DBC17929A55D99632C04A04D06C97 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll
17:31:07.0389 0x15ac PeerDistSvc - ok
17:31:07.0436 0x15ac [ CCF3E6C601D71A4CBB4C08B5591E5D26, 93976471B32211328FCDBBEC10BCA0E9B4497A8A6AA21125894CE54E11A7014F ] pla C:\Windows\system32\pla.dll
17:31:07.0483 0x15ac pla - ok
17:31:07.0498 0x15ac [ 84C433F0FA896BACFAB67D0B22CFA73C, 10C3C9326A011C3E2006C0FA119BBEF9C5C622BB9D10175527D6D07837D3F07A ] PlugPlay C:\Windows\system32\umpnpmgr.dll
17:31:07.0498 0x15ac PlugPlay - ok
17:31:07.0529 0x15ac [ 205E1B699FD3F2F9B036EEA2EC30C620, 9D5C8009BC3F6F76438FC82C3DAAA3E9CC87F74CDE841A0ADD9EF00E98DB6890 ] PnkBstrA C:\Windows\system32\PnkBstrA.exe
17:31:07.0529 0x15ac PnkBstrA - ok
17:31:07.0545 0x15ac [ 7BB1FAB338641C440FDCDEB8B243648A, 8A9DAA73A674409EE7A8CEDED2769F3B365FBB183A1EC510BEE00F30A7DF8119 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
17:31:07.0545 0x15ac PNRPAutoReg - ok
17:31:07.0561 0x15ac [ BB3916021D0AC8D33C02C1161B7A2621, 01452A201C2CA555706356CF1EB9890BD4857DD906DFC1CF66AAA3E29D4562A2 ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
17:31:07.0561 0x15ac PNRPsvc - ok
17:31:07.0592 0x15ac [ 9DC57EB201F2F77E874084176EAD5BCF, 6B0E37955FAA6E1835D9280669B2AA703DE846C1B8D1EDEE32B46A5206699069 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
17:31:07.0592 0x15ac PolicyAgent - ok
17:31:07.0639 0x15ac [ 556848D77F36645260DE452513A54F5D, 9DE2522EEE25FED38F52320418D1280AE0DABDD6BFD6018034970D2D414849F2 ] Power C:\Windows\system32\umpo.dll
17:31:07.0654 0x15ac Power - ok
17:31:07.0670 0x15ac [ 03D522782A0BB5108C8A43A10EE51CB0, B1CE7693A119091B5924125B6C1CCBD7DC8519F7D649DBE9F5FD667E4F8F6861 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
17:31:07.0670 0x15ac PptpMiniport - ok
17:31:07.0795 0x15ac [ DE50965045161F015D16B52EFE3AEBD9, 1E25A17EB6238D50471668F33FD1E6768C06FEFAEFCAF683692F8C58BD09EB90 ] PrintNotify C:\Windows\system32\spool\DRIVERS\W32X86\3\PrintConfig.dll
17:31:07.0858 0x15ac PrintNotify - ok
17:31:07.0889 0x15ac [ BD23C45A654066374E3EC7F4EF8FC9B6, 7B91547F65BB4767E6D842559A3347770AFC2A5CFA628C65F91DC1BBC479B6F2 ] Processor C:\Windows\System32\drivers\processr.sys
17:31:07.0889 0x15ac Processor - ok
17:31:07.0936 0x15ac [ 286D9B118A11307C80F65E2E07F0D205, C8F18A737947DE18BA1FF62CE64E8CA8B4A248A50EF1327AF69A425F8835057E ] ProfSvc C:\Windows\system32\profsvc.dll
17:31:07.0951 0x15ac ProfSvc - ok
17:31:07.0967 0x15ac [ 42E46DC7767F5AB664E3F6B36D9764AD, E4D6D493DC0C7A3881572BB238744AF8B040D40C9A4A53F2A5067FBAE63DC21C ] Psched C:\Windows\system32\DRIVERS\pacer.sys
17:31:07.0967 0x15ac Psched - ok
17:31:07.0983 0x15ac [ 9D8D860A9CF57A47E0041C9BDA415130, FADAB842C0C8EA69E6341B192F64946FB1C2EC25DF21EF789FB94CBBEA2B3DBF ] QWAVE C:\Windows\system32\qwave.dll
17:31:07.0983 0x15ac QWAVE - ok
17:31:07.0998 0x15ac [ 29E548E1C511BFBE56FA6438488DE0E0, 9C8E314FEA828BDAF91F54D338339116AD26203D91A7043B7DB006940F20888A ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
17:31:07.0998 0x15ac QWAVEdrv - ok
17:31:07.0998 0x15ac [ C07E9331431C78D41F30E62A15E1D324, AEB4ACD4352149CC5EE88CCB73386559FDC03735E1F641271CE7D137EF923ED1 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
17:31:07.0998 0x15ac RasAcd - ok
17:31:08.0029 0x15ac [ F63755B2DCE1BE7927F5CEAB7991EFED, 6BBDC6ED8948CCF47F196E5F1109FE29137B05F796D5C0A52524F146277CB89E ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
17:31:08.0029 0x15ac RasAgileVpn - ok
17:31:08.0045 0x15ac [ 63A57B7DDF705E4D7D6B0FF86BDBBF96, DD2B68A0C0F7EBDB38DA7D9F6B211B88F498404B55F8E6ED552988272377B573 ] RasAuto C:\Windows\System32\rasauto.dll
17:31:08.0045 0x15ac RasAuto - ok
17:31:08.0061 0x15ac [ 6E0649D7325D85C47C844EB3267E4625, 56D80C2AC5D6EFE28FA7EEAD042ACA4E400A6CAF46DE639E7FA3A8370EBB8344 ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
17:31:08.0061 0x15ac Rasl2tp - ok
17:31:08.0076 0x15ac [ FA17FE26953E6B0DE7A5A966253869E9, 313D036927D7D27D839688DD047823C6EE856B2702A8CDB65D68DB956AB6A73A ] RasMan C:\Windows\System32\rasmans.dll
17:31:08.0092 0x15ac RasMan - ok
17:31:08.0092 0x15ac [ 5BA6DB7AD04A8EADE0A41E6C8427582B, 2ADCDCA17983A684CCB215F589DF40C0CC5BF7B74FB537048DFF13C18EF9C760 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
17:31:08.0092 0x15ac RasPppoe - ok
17:31:08.0092 0x15ac [ 3A421DDA09E3BF96E9D698D13FDC139E, 97069847CFCE7A15FCD918FA782D23B5F04298FB06DA1279932AD52F0F3D2662 ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
17:31:08.0108 0x15ac RasSstp - ok
17:31:08.0139 0x15ac [ ED1CBB55D5946520994FCD8CA9596D9D, 327D85863D1AB8D4B1F63963D105F493DF9339DD18ED14D1DB676B2FA986EE34 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
17:31:08.0154 0x15ac rdbss - ok
17:31:08.0154 0x15ac [ 4FB0345ADE5C2E15EA1A22F173E71D37, 9E2D9C111F0C3B52EE0AB5E914C60490929B9EA27F5D643CD1C0CAA1E7AC5FE5 ] rdpbus C:\Windows\System32\drivers\rdpbus.sys
17:31:08.0154 0x15ac rdpbus - ok
17:31:08.0170 0x15ac [ 2CAD2A13569741C67CD9C52F97E0F992, 4093D72D191972BF4111B6F9FC69AEA4669B330F2BD4463777990822316BB166 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys
17:31:08.0170 0x15ac RDPDR - ok
17:31:08.0217 0x15ac [ 40083918DB637FCB8A2C2453A2284603, C5D6874BA98762F035BE7EF0CDFACD3859DA369CA2F3470091D59CCB8A084F12 ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
17:31:08.0217 0x15ac RdpVideoMiniport - ok
17:31:08.0233 0x15ac [ EA0E833A1418C28E6085DFFA68731EA5, B9D18B4F5E32AE73EF70AF3BADA878970727A32A26E94245D567AA22B589A85C ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
17:31:08.0248 0x15ac RDPWD - ok
17:31:08.0264 0x15ac [ 38A8012D03150D6852B9CDDB24280F1A, EDFBDC31D42BE580B34726EE165A822E21B14A5CAB5FED874D9C600454CDFC45 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
17:31:08.0264 0x15ac rdyboost - ok
17:31:08.0279 0x15ac [ 9F38A0A16958C33552C92EAE5AFC9E5F, A6972B39BC5AA9F647361BC6ECAB603F49204C0FF9C0FA9BF524BC9F2AEE129E ] RemoteAccess C:\Windows\System32\mprdim.dll
17:31:08.0279 0x15ac RemoteAccess - ok
17:31:08.0279 0x15ac [ 8331C0CF128BD1A56440B2E82AAA5EB5, 91F7A7E116F509E1455F4CF955A996CBF65C769CF3A3D21079DB77E9E38D6414 ] RemoteRegistry C:\Windows\system32\regsvc.dll
17:31:08.0295 0x15ac RemoteRegistry - ok
17:31:08.0295 0x15ac [ 5AF682962162FCDB85B56CB8A0DB5E6B, 38A5EFFA4AFBD8E3AB936803198890F68FD7668E34D8BF48D59883001C4F35D9 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
17:31:08.0311 0x15ac RpcEptMapper - ok
17:31:08.0326 0x15ac [ A8DDFFFBA3F655C82AB5D4A249E4D414, A11C67BB58C7518FCEEB87F3693343CD662B6971605EE7E6CE0AE298BBB3D632 ] RpcLocator C:\Windows\system32\locator.exe
17:31:08.0326 0x15ac RpcLocator - ok
17:31:08.0342 0x15ac [ BCD3562ACB27B8137BF809F61BA44E80, 3BE2617996696AD8A2402C0767E55CE53EF48B4234660C9948E153B5ACBE98C7 ] RpcSs C:\Windows\system32\rpcss.dll
17:31:08.0358 0x15ac RpcSs - ok
17:31:08.0373 0x15ac [ C7BD738B9BF45E797A6089AF946BAC47, 1AE7B4671444AF1D597A2E69AF07809DA6B1277532EC74157BE64F914ADC684F ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
17:31:08.0373 0x15ac rspndr - ok
17:31:08.0389 0x15ac [ E21867D4A8FF3824150E56979E333610, 00FD801EAF2D7104537D33FD5044E314A13743FB9E94DA72F8D7A3AD66CFD1F2 ] s3cap C:\Windows\System32\drivers\vms3cap.sys
17:31:08.0389 0x15ac s3cap - ok
17:31:08.0389 0x15ac [ EA154EBBD85C649ED42C3BA43AD539FF, 689C9F9B89D0745FA8C3C1B4830B76D7758EFCC1DB2206C9A8D9E880F9C45E84 ] SamSs C:\Windows\system32\lsass.exe
17:31:08.0404 0x15ac SamSs - ok
17:31:08.0404 0x15ac [ 434F805B0B3840A52C19C96A7BB64AA3, B5B92E07091ECB75B1A72AF1E15F856C05492236D5F86137163DAE60B64CCA44 ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
17:31:08.0404 0x15ac sbp2port - ok
17:31:08.0420 0x15ac [ B1B737661EF9D779FEE8866CC38F7B98, DD3DC0057A280F59FF83C6F8D111B28A60AE53200FE0732CEE71C8E207584169 ] SCardSvr C:\Windows\System32\SCardSvr.dll
17:31:08.0420 0x15ac SCardSvr - ok
17:31:08.0436 0x15ac [ 3F21FBE0550B41240B6A864F6C8C15E4, ED54180631DEADDF76649E3B78D5CFC213274075E3BD11541D99C7765CC048CD ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
17:31:08.0436 0x15ac scfilter - ok
17:31:08.0498 0x15ac [ 54DEECA318F4EA694F5FA66AAA68BB0D, 1B11ED1431AC59C08E2720EE416ADF1A21EAF07C6730DD4D8F6D499597F9AE98 ] Schedule C:\Windows\system32\schedsvc.dll
17:31:08.0514 0x15ac Schedule - ok
17:31:08.0545 0x15ac [ BAEE72BFBEC7B96AA85F861A6F4FE428, 78E6C63848C5AFCD67C08F2A17BFD764524B8A9117EAF74CD5514F8239E155CB ] SCPolicySvc C:\Windows\System32\certprop.dll
17:31:08.0545 0x15ac SCPolicySvc - ok
17:31:08.0576 0x15ac [ 6F685ED83090697ED608372722D32B9E, FAE3AB971A47D6A0BA28C75B27E0CF7F09B28AD800DD76C0AF4D715C931AB338 ] sdbus C:\Windows\System32\drivers\sdbus.sys
17:31:08.0592 0x15ac sdbus - ok
17:31:08.0592 0x15ac [ B433671D5A6D36D35141A56B6E75D086, 46E8DBE722E8422ECDF5F4410F26100B55F0799A0293AFFF27AD3BD4DF0FC9E7 ] SDRSVC C:\Windows\System32\SDRSVC.dll
17:31:08.0592 0x15ac SDRSVC - ok
17:31:08.0608 0x15ac [ 29A975CB4DDA873C80B0AAA91FFA74B8, CCD1956D2AB61F6A26555034356A773B820FA34F14A2CE8567AB5BBFE136B801 ] sdstor C:\Windows\System32\drivers\sdstor.sys
17:31:08.0608 0x15ac sdstor - ok
17:31:08.0623 0x15ac [ A8CC993CED4DF9710ADAABC9DA66B660, 76D64D0D762DCF05AE494749514D91D3F0FF4EC2D0A1FFEA8A5F8708832DF17C ] secdrv C:\Windows\system32\drivers\secdrv.sys
17:31:08.0623 0x15ac secdrv - ok
17:31:08.0623 0x15ac [ B83564D1603B821CCD82CC335C87AD97, 05E75C0E0F69637462FE6F844FBF6835558E5FD0660A8C0CBA621DC3E2F39C9B ] seclogon C:\Windows\system32\seclogon.dll
17:31:08.0639 0x15ac seclogon - ok
17:31:08.0655 0x15ac [ 64355214ECE4573F553353597779EF11, EE47948A806B75EC62A02E13D4A01882DA2F68D05C4D87C98DF96A80590CC115 ] SENS C:\Windows\System32\sens.dll
17:31:08.0670 0x15ac SENS - ok
17:31:08.0670 0x15ac [ 7E4F0DCAF6739C830B8043CCBF79ABBF, 2028E9BDE0DE22D700EB1CC5488CD2FB404FDC3AB77D551A14EB1E76816C38F5 ] SensrSvc C:\Windows\system32\sensrsvc.dll
17:31:08.0686 0x15ac SensrSvc - ok
17:31:08.0686 0x15ac [ 3DE395F302C4DCD3D4792EB786A7B402, 7D6EB490079DE0E05B69B27862F4722B2CC7BAEBCB99C5BD4BF991BD76434348 ] SerCx C:\Windows\system32\drivers\SerCx.sys
17:31:08.0686 0x15ac SerCx - ok
17:31:08.0701 0x15ac [ C706C88BAEE6B23C86C791EF47D901D4, 626378C827D9877575098475B6AB7C30D19B6904AAD1ABD4F369E8880A443586 ] Serenum C:\Windows\System32\drivers\serenum.sys
17:31:08.0701 0x15ac Serenum - ok
17:31:08.0701 0x15ac [ F492965E2EDDB1BCA2E000A1085BE082, 6897D67B22483635F896C04C3FDDA320CF2716EE75D22D1C839B324668CC5A4B ] Serial C:\Windows\System32\drivers\serial.sys
17:31:08.0701 0x15ac Serial - ok
17:31:08.0701 0x15ac [ 409C91880A6A70FDD33CFEDC43D0F808, 306FC21667EC8C360E09E3B7CDEF8CCF99D08A33E4041195B968706B75DD6349 ] sermouse C:\Windows\System32\drivers\sermouse.sys
17:31:08.0717 0x15ac sermouse - ok
17:31:08.0733 0x15ac [ E19B1B639B5017BF6224744565B08E38, 80E3EF170E3DB3FCA318D3EE2DAA49FF27814AD53DB4FABB6567A8BBBD269B98 ] SessionEnv C:\Windows\system32\sessenv.dll
17:31:08.0748 0x15ac SessionEnv - ok
17:31:08.0748 0x15ac [ BDF7F7AC3700DAF0A19D19C008D408C0, E56F2E8669D1DFF7F0EFDA95F3247E685E25ABA17321A1DB51B5F7CD75512337 ] sfloppy C:\Windows\System32\drivers\sfloppy.sys
17:31:08.0748 0x15ac sfloppy - ok
17:31:08.0780 0x15ac [ 578AA5D3C4A4C1052C9B13B4FA748B00, ABFA1E1E64B1CFD7AA52D47580A77C0D1AAF935B694FAA7876C815398744D325 ] SharedAccess C:\Windows\System32\ipnathlp.dll
17:31:08.0795 0x15ac SharedAccess - ok
17:31:08.0826 0x15ac [ C416B8E2EF38D100DA19C4DA8A3E8A17, 1939FB82DEDF5BC7A9F70A0B6013E4C76D8384823400BA9DE15477A86C3C9D40 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
17:31:08.0842 0x15ac ShellHWDetection - ok
17:31:08.0842 0x15ac [ A5A3C56B5E46F77E6992A3772F8E4C8D, 87368D7F54964D699D648771F035F70FBB3FB504FA64106CFE4E3E7784C6E5AD ] sisagp C:\Windows\system32\drivers\sisagp.sys
17:31:08.0842 0x15ac sisagp - ok
17:31:08.0858 0x15ac [ 39763193254A265FDA6F08EF375549DF, 19FD327F61F4057221C180DFA3C0BF6BD35FF3F6185E677A10877B74A8DA0B02 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys
17:31:08.0858 0x15ac SiSRaid2 - ok
17:31:08.0858 0x15ac [ 2A95CC135283B3C56B783171532B62D0, 5041D60D1F89C0551C7237FCF1C3F59C5124C98CDA10B2669255E9A859FD4B93 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
17:31:08.0858 0x15ac SiSRaid4 - ok
17:31:08.0920 0x15ac [ 50D9949020E02B847CD48F1243FCB895, 5BDAD5E44DE5B412645142810C5FCE4B2D9685F928FF4A6B836A9DCE7725BD78 ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe
17:31:08.0920 0x15ac SkypeUpdate - ok
17:31:08.0936 0x15ac [ 1FA732F662375B134B510B44686BABD2, 19AABA3445994003592EFFA46476C0892028DB0BC8E9ACCC9EBBB4471CDA433A ] SNMPTRAP C:\Windows\System32\snmptrap.exe
17:31:08.0951 0x15ac SNMPTRAP - ok
17:31:08.0998 0x15ac [ D9F46CF618066EB615B26AF03B8BEF7F, 7BCE94C3A2F7E241F659E6D07CED328CEE7E74227C8CBB59B45099B051B795D4 ] spaceport C:\Windows\system32\drivers\spaceport.sys
17:31:08.0998 0x15ac spaceport - ok
17:31:09.0014 0x15ac [ C8E9372645392E23CF36B4C1686B1509, 7D894F94240172C2DD7E95BF0EBC698F1F261C53767EFCD46AB2E3A7F9B412C9 ] SpbCx C:\Windows\system32\drivers\SpbCx.sys
17:31:09.0014 0x15ac SpbCx - ok
17:31:09.0045 0x15ac [ D246A6F32CD74A0AE1F00EF7C73A1DBC, 771CFD6D6474DE9CF0ABAF2AF3E800125217CC7EAEA92D6D04F8274080961E5E ] Spooler C:\Windows\System32\spoolsv.exe
17:31:09.0076 0x15ac Spooler - ok
17:31:09.0233 0x15ac [ 34E2F63B923188EF08379BA7441BBA56, 61B38055BB1982A8BEC6270392074B5975C9CE768A77B5269C387BAFCE048A4C ] sppsvc C:\Windows\system32\sppsvc.exe
17:31:09.0358 0x15ac sppsvc - ok
17:31:09.0358 0x15ac [ 8B20E19AF56E21E9549D4CA496BB78D6, 31DE1ACAFDD97E1BA978A88C2649D50B089C0550ACCE6AD6B88E6DFC7BCA3021 ] srv C:\Windows\system32\DRIVERS\srv.sys
17:31:09.0373 0x15ac srv - ok
17:31:09.0420 0x15ac [ 946F132B243780B8903116CCCE6EF466, 33EF5333425010B06CFA74013BCBC48658D4391F8DD963BA63A9E0C9BCC40AE8 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
17:31:09.0436 0x15ac srv2 - ok
17:31:09.0483 0x15ac [ E4DE9C94F2A49BA9E8D31C7D408AEF1F, F43AA5BD689B183DF843167361E28295D807E60CF563B3BF51C9114742ABB073 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
17:31:09.0483 0x15ac srvnet - ok
17:31:09.0483 0x15ac [ 9B4B2E29751312BF65CBE301AFB746A1, 1D7A8F818A6ABCE927E393E91D365B6269BF03D15A0D5BB212A683CDF49565BB ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
17:31:09.0498 0x15ac SSDPSRV - ok
17:31:09.0498 0x15ac [ F23D18AF0C34B5167BA72F9B95EEAB06, 4565F7740650456C559BCF692CFD060556F540C42610CFC19EABE20630D60E9F ] SstpSvc C:\Windows\system32\sstpsvc.dll
17:31:09.0514 0x15ac SstpSvc - ok
17:31:09.0561 0x15ac [ B5C26A6A92C9A6CD64399D2B06D29464, 6CAF09892D4C516361125AAF5387D5BF306EC26133EE45DBBC35C8B6190BAD24 ] Steam Client Service C:\Program Files\Common Files\Steam\SteamService.exe
17:31:09.0576 0x15ac Steam Client Service - ok
17:31:09.0639 0x15ac [ 5A19667A580B1CE886EAF968B9743F45, 0A9EBE4057A0A6EF4732623794C2416A6BD8B87356DA46652BD92762505F57C7 ] Stereo Service C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
17:31:09.0655 0x15ac Stereo Service - ok
17:31:09.0670 0x15ac [ CC17B7A7C4DD72BE2B10DAF254147A2B, E208860E58D1B9E8B3481404BA67A2B6131415B329ADED5BDE8C35B40B9372C3 ] stexstor C:\Windows\system32\drivers\stexstor.sys
17:31:09.0670 0x15ac stexstor - ok
17:31:09.0701 0x15ac [ B9A28B6DA5EFEE202FAD396FEDFE73D8, EE7F313EFAAE36337B51F3A1EAB68906F9116B6A6F4365C515EAC89CCED5B4FB ] StiSvc C:\Windows\System32\wiaservc.dll
17:31:09.0717 0x15ac StiSvc - ok
17:31:09.0764 0x15ac [ EC9B71B41184284E65F496B39C572F30, 78F8874E76501D8DEBFFC86463FC4078B5C8CDA930F93A28DE168730C2EC74A8 ] storahci C:\Windows\system32\drivers\storahci.sys
17:31:09.0764 0x15ac storahci - ok
17:31:09.0780 0x15ac [ B00DA575ADF228C1D33269CDE92A68EC, 33787F3314CB28B0112E24D1E4160E76A051B102BB54B800FE44DBB2AA0B331E ] storflt C:\Windows\system32\DRIVERS\vmstorfl.sys
17:31:09.0780 0x15ac storflt - ok
17:31:09.0795 0x15ac [ 9AA77CAD9ADF035109B9E65EB3F8D61A, 9CB8A2D0DA85FED8D1B1C809C15BC25C0905B10F32B018A1E6D7DB7D224E631D ] StorSvc C:\Windows\system32\storsvc.dll
17:31:09.0795 0x15ac StorSvc - ok
17:31:09.0811 0x15ac [ 5C538C4975B53C31500BC535FF436CDC, 84FE3FA917970B00C73AF4364357204548956D23286F5CC5BFFA76996C30F358 ] storvsc C:\Windows\system32\drivers\storvsc.sys
17:31:09.0811 0x15ac storvsc - ok
17:31:09.0826 0x15ac [ 8DF8D4AEADF32F5D4C6FFA9936E16A10, BC8A7B1E63B4BDE541E51338CF20247D62944665C2A68C40145787EEC90C1847 ] svsvc C:\Windows\system32\svsvc.dll
17:31:09.0826 0x15ac svsvc - ok
17:31:09.0826 0x15ac [ 8DCA45AD5E2D83E00A1952BE2B541A27, FA80FD42EFB4F0D27CC28DC3E92C5D365D851389643D7E083B5A8AD493E10815 ] swenum C:\Windows\System32\drivers\swenum.sys
17:31:09.0842 0x15ac swenum - ok
17:31:09.0858 0x15ac [ B53421FCD315F35837A07716E9F7A1E7, C38F0E84343B0A0E253B90949B2E707C5F0C3266BDDAF728D0F9B8CDAD81592E ] swprv C:\Windows\System32\swprv.dll
17:31:09.0873 0x15ac swprv - ok
17:31:09.0889 0x15ac [ 997F0D578CDB5D25EB242B84FC24E0D4, AD567C7D43B90D608F884DCC488F5C910D7BA7E60CCE2A4BD4179EA91C33230A ] Synth3dVsc C:\Windows\System32\drivers\Synth3dVsc.sys
17:31:09.0889 0x15ac Synth3dVsc - ok
17:31:09.0967 0x15ac [ 3F2E97730BE6855F51E2512B377E346E, CDEE720055A35CFE0B0A06FE8A5A034AB705DC5771A3D2FF219754A234AA8C1E ] SysMain C:\Windows\system32\sysmain.dll
17:31:09.0998 0x15ac SysMain - ok
17:31:10.0045 0x15ac [ 20A4983586DC02E81D4CC17A3D0399DF, A515270B35AE1332B594F25A5DCA7D897CF666032868B21316528A3817DC5ACB ] SystemEventsBroker C:\Windows\System32\SystemEventsBrokerServer.dll
17:31:10.0045 0x15ac SystemEventsBroker - ok
17:31:10.0061 0x15ac [ 3705A5E2A2834EA94EF073D87AF88D8F, 739DADA36D2061104866DAC763C8963E81A4779DC9F7C57D7B892DCEAF09FF40 ] TabletInputService C:\Windows\System32\TabSvc.dll
17:31:10.0076 0x15ac TabletInputService - ok
17:31:10.0092 0x15ac [ 4A10477302BB35A17ED818CD8720478A, BA8916728A27ACE600292AC40AE2F5FB6864DC07A0AD4845644CBF5DA1C53536 ] TapiSrv C:\Windows\System32\tapisrv.dll
17:31:10.0108 0x15ac TapiSrv - ok
17:31:10.0186 0x15ac [ F117A5ACA0D160CCB65312EF6EA3DAFC, F7652EA57BD1044CCEEED7EEA2F0DFD61C25B17F92841935B16DF283299242A8 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
17:31:10.0248 0x15ac Tcpip - ok
17:31:10.0311 0x15ac [ F117A5ACA0D160CCB65312EF6EA3DAFC, F7652EA57BD1044CCEEED7EEA2F0DFD61C25B17F92841935B16DF283299242A8 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
17:31:10.0326 0x15ac TCPIP6 - ok
17:31:10.0342 0x15ac [ D40FB114D559FDDE599293E1B5107644, A716D610199DF1DB3D59EF83E2BB7251C3E3398D63747ED51626F6876ED58AE0 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
17:31:10.0342 0x15ac tcpipreg - ok
17:31:10.0342 0x15ac [ 0886D9F1B5A5334FBB143A260E4BFB5C, 97850CE2E2852913E9C190FAA7D5AC4E7223C0F0F63844E440968C8788104B20 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
17:31:10.0358 0x15ac tdx - ok
17:31:10.0514 0x15ac [ 576918B02840A360702051BC4269B13F, ADC9798F280FB0238C63C798912264E88E244257DF8ACF1854343D14FAC73E19 ] TeamViewer8 C:\Program Files\TeamViewer\Version8\TeamViewer_Service.exe
17:31:10.0670 0x15ac TeamViewer8 - ok
17:31:10.0670 0x15ac [ 0E099CC6D72DD47CAB9CC3D5DDF0A93E, 5F76385F0087A7C2823FDA92081919DD22EB90CB6C140417522AC0A00AD5E49B ] terminpt C:\Windows\System32\drivers\terminpt.sys
17:31:10.0670 0x15ac terminpt - ok
17:31:10.0717 0x15ac [ D4868697E71011CC2244D2244AED2FB5, A7883B6B4A8C6CB6B9835B949D82A663EBB9AB7F12E257D59258F512C02AACDF ] TermService C:\Windows\System32\termsrv.dll
17:31:10.0733 0x15ac TermService - ok
17:31:10.0748 0x15ac [ 14378287DC6D4CF1E3279AA9EBD70665, 50AD9D328802097DF85D10486521AEDA980CDA37FCD47DA4C77ACF607A4F633B ] Themes C:\Windows\system32\themeservice.dll
17:31:10.0748 0x15ac Themes - ok
17:31:10.0795 0x15ac [ CAAAB04E7775D8F11E166482F3596539, FE4D2043E63586521F84CEC0C12764AE97EF58E2BE2666BA21692D95A965734A ] THREADORDER C:\Windows\system32\mmcss.dll
17:31:10.0795 0x15ac THREADORDER - ok
17:31:10.0826 0x15ac [ BAD3F8C116412AF06DEE2883333BAB9E, 7BF53CA62F71ADA7FC858AEB6534BAC6BCFF0E5B722CE759F44B8476C24142C8 ] TimeBroker C:\Windows\System32\TimeBrokerServer.dll
17:31:10.0842 0x15ac TimeBroker - ok
17:31:10.0873 0x15ac [ A7A43D0865B8E5D2E46CAF6BA423D0AC, 053CC21EC2F6D57850547F932B288CB7E9D775BE80D62FE0C79CFBE4B534D93B ] TPM C:\Windows\system32\drivers\tpm.sys
17:31:10.0889 0x15ac TPM - ok
17:31:10.0889 0x15ac [ 7B19BA44B3A44494DBA300206FABA998, 3D69F17E4D25C0D72E8A575FEB3763E600835ABBE64F460A166EED27BA0878C0 ] TrkWks C:\Windows\System32\trkwks.dll
17:31:10.0905 0x15ac TrkWks - ok
17:31:10.0983 0x15ac [ 02D1FC0FDA92FB34434166C612F95E5B, 5D4F98B77C9014BBCCF8A009F6B49E7AF0F42035DD3388AFCE67FDB6E38444A6 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
17:31:10.0983 0x15ac TrustedInstaller - ok
17:31:10.0983 0x15ac [ B9E622309DE8C780E6818531586F2221, B43A6C6DC2CE521BDEB381C9E6B7D2B5951FC5290145C5131BB4B324A52D990C ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
17:31:10.0998 0x15ac TsUsbFlt - ok
17:31:11.0014 0x15ac [ 074440A1C04913F7DF81839565A47917, F5AC1F6B44B0BA924C20CEEF6824D20E000D2C9E7D2041D0AB2A70332771998D ] TsUsbGD C:\Windows\System32\drivers\TsUsbGD.sys
17:31:11.0014 0x15ac TsUsbGD - ok
17:31:11.0030 0x15ac [ 8E998D0E9AFFC3712FC86C484A17827C, 1082E3B64FA0096955AD514E32923CC415825EA35A9AA9DC612515BA1FC6B40D ] tsusbhub C:\Windows\system32\drivers\tsusbhub.sys
17:31:11.0030 0x15ac tsusbhub - ok
17:31:11.0045 0x15ac [ 62EE13D4EE7DB793C13F33F51A21170E, 7597353FF7E272A9A2ED6835F0E6C5980F19C2AB243C7AA34CDA4D11B4307007 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
17:31:11.0045 0x15ac tunnel - ok
17:31:11.0061 0x15ac [ E0750A399E378C8433165C843FD7F732, B9C12C7FA1C029988B3CAFA6D2BDBA36FE0CB3BF25793821608964750CB9A63E ] uagp35 C:\Windows\system32\drivers\uagp35.sys
17:31:11.0061 0x15ac uagp35 - ok
17:31:11.0077 0x15ac [ B3B9DDEEFC3B823B3067DCADCD80014D, CA1F7B7E79820F401112CB5568E4DF3D4FE93B24EE29BDCD97DD5539FA1405DC ] UASPStor C:\Windows\System32\drivers\uaspstor.sys
17:31:11.0077 0x15ac UASPStor - ok
17:31:11.0123 0x15ac [ 14AF2FDF422E64F5D287B94E7CDEB13E, B670F6F189E7F010F1197C9AFE0986503FCA1F71EBB3C910B337FD81959794E5 ] UCX01000 C:\Windows\System32\drivers\ucx01000.sys
17:31:11.0123 0x15ac UCX01000 - ok
17:31:11.0170 0x15ac [ F7C3F24307957862CA4E0E11DDC88B2F, 1F4A52955F72CD858C8442B63AAA8FA18612D8BF34D91CED27D52658D40C9E78 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
17:31:11.0186 0x15ac udfs - ok
17:31:11.0202 0x15ac [ 3F7B87F8E850907783AC681AF542601D, BBAB875B6DD8275B6B21633F2FA95542FBDA8DB17FAD4B77013FD38033453C18 ] UI0Detect C:\Windows\system32\UI0Detect.exe
17:31:11.0202 0x15ac UI0Detect - ok
17:31:11.0217 0x15ac [ C4FE9CC8AA769B1D140C07308574969D, BBD51A54D35B15FE72A0096A10A350911C15B07B232F933D6A80E38CFA6C8B8E ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
17:31:11.0217 0x15ac uliagpkx - ok
17:31:11.0217 0x15ac [ D54E16CE5FF8493E611CFF34F96F5A00, 65666C17E0CD6935D54C121D582D44C4C83DA7E7967CA2809CC7CD2590DC67B8 ] umbus C:\Windows\System32\drivers\umbus.sys
17:31:11.0217 0x15ac umbus - ok
17:31:11.0233 0x15ac [ 4F92FB5D2353C1B75F0C3138C1822FC3, 807A38D264E84ABD4275B696B1762BAA1BD5D143279EB305D8C9255BB697FF92 ] UmPass C:\Windows\System32\drivers\umpass.sys
17:31:11.0233 0x15ac UmPass - ok
17:31:11.0233 0x15ac [ CC0CC034C75F8D445B7E561BA018E166, 3431B446D7612F027066A878199A5600417521738F6CDB880E1AC39BA4A37FB4 ] UmRdpService C:\Windows\System32\umrdp.dll
17:31:11.0248 0x15ac UmRdpService - ok
17:31:11.0264 0x15ac [ 4359A695FB0CF5C0C78A7FD2DACABC00, CB2EC1CF683ECA588C9C7C3F4DA0FE32B6E02DC4424D96F55763FF5330E79B1F ] upnphost C:\Windows\System32\upnphost.dll
17:31:11.0280 0x15ac upnphost - ok
17:31:11.0327 0x15ac [ F433A6D23B444461CEC9A8125350916C, 4BBB37B5F73AD710F6345ED9B1FB065314584E65D98D410CEE7261C363970898 ] usbaudio C:\Windows\system32\drivers\usbaudio.sys
17:31:11.0327 0x15ac usbaudio - ok
17:31:11.0373 0x15ac [ D982889116DBD5B36DA276B3C52BC751, 50292E34838750A841ED684A986F74B35317F420556DE45B64AAB1020B02E9B1 ] usbccgp C:\Windows\System32\drivers\usbccgp.sys
17:31:11.0373 0x15ac usbccgp - ok
17:31:11.0405 0x15ac [ 157FA08A7E30735A032C08F39F6F7C55, 1A48D961D2BA8A948EBD967CA854E34260A9FB26D5BDD5C7BF3DF9A21B4CB19E ] usbcir C:\Windows\System32\drivers\usbcir.sys
17:31:11.0405 0x15ac usbcir - ok
17:31:11.0420 0x15ac [ 09C8E68669444AFE92B71480110952B1, 0F9FE4F596D1FC196F6D7A6ABD9EACB415B75D51D8E32E78109755AD9AF9D1B9 ] usbehci C:\Windows\System32\drivers\usbehci.sys
17:31:11.0420 0x15ac usbehci - ok
17:31:11.0436 0x15ac [ 03E855AD3F47B802542B0812F47FB9BD, 3D83C605E5221365ED03C8FE5C373C0E9E8A8AB5F0C850ECA5FD78AED1F74F58 ] usbhub C:\Windows\System32\drivers\usbhub.sys
17:31:11.0436 0x15ac usbhub - ok
17:31:11.0467 0x15ac [ B149D5CC6079190824918FCC12C15507, C122BA5418A17C2AA62D9D023EE6D3AACBBD62351EC3D38AB5FF60FD701616F2 ] USBHUB3 C:\Windows\System32\drivers\UsbHub3.sys
17:31:11.0467 0x15ac USBHUB3 - ok
17:31:11.0498 0x15ac [ D3641BCE4BE9858423CF0FA843A77AC1, 92AC3997CCB5FA84DD41774ED6417E095AE83E1E00E7A1E208B89AA266DEB456 ] usbohci C:\Windows\System32\drivers\usbohci.sys
17:31:11.0498 0x15ac usbohci - ok
17:31:11.0545 0x15ac [ 3B68E41FDF2B053F148E4AA0B456A435, 5CFDCBAB8BDC711EB0CDCAE82693A809CA7785A23E837E877EF32194F7282E05 ] usbprint C:\Windows\System32\drivers\usbprint.sys
17:31:11.0561 0x15ac usbprint - ok
17:31:11.0561 0x15ac [ 4A8A4A85A6C7BCF230D3523A00E69998, F6CE178AB41D5481E99AD10820D1B110C787882DB42B45022AB1EBAE784F15CC ] usbscan C:\Windows\System32\drivers\usbscan.sys
17:31:11.0577 0x15ac usbscan - ok
17:31:11.0592 0x15ac [ 6EE1CB13D89DFC95B6D7A90B38113F34, 1740EB93B379348071810E7B572C207CED38E7527E43051EB44FB2C8FB3C3E46 ] USBSTOR C:\Windows\System32\drivers\USBSTOR.SYS
17:31:11.0592 0x15ac USBSTOR - ok
17:31:11.0608 0x15ac [ 043BC3831B94A57122BE351658B61DC2, 849E7B8B6E8C9D1B4D6B1343B41117B8F012CB1606F0D8491BBD15DD506AAA2B ] usbuhci C:\Windows\System32\drivers\usbuhci.sys
17:31:11.0608 0x15ac usbuhci - ok
17:31:11.0639 0x15ac [ 6AC515E4FEA8A0FDAA3F80C4CB112AEA, A4F2C6B186FFBC8541080726D9FA259282BD91AD25C7839DC68629C44F6478AD ] usbvideo C:\Windows\System32\Drivers\usbvideo.sys
17:31:11.0655 0x15ac usbvideo - ok
17:31:11.0670 0x15ac [ BAF8495C4D3301C3C75A88454C53517F, A79EF756A55E860DA4E05FEDD232115D54D0FEF60881DE483D16404F8C4D3C7F ] USBXHCI C:\Windows\System32\drivers\USBXHCI.SYS
17:31:11.0670 0x15ac USBXHCI - ok
17:31:11.0702 0x15ac [ F16B9D140B6C144D9A2832187CEABFBB, 1C9F1DB0B0E637346EE7FC96BBD3BE35C7CFF39A73CF37203E950C94AAFA82A8 ] usb_rndisx C:\Windows\system32\DRIVERS\usb8023x.sys
17:31:11.0717 0x15ac usb_rndisx - ok
17:31:11.0717 0x15ac [ EA154EBBD85C649ED42C3BA43AD539FF, 689C9F9B89D0745FA8C3C1B4830B76D7758EFCC1DB2206C9A8D9E880F9C45E84 ] VaultSvc C:\Windows\system32\lsass.exe
17:31:11.0717 0x15ac VaultSvc - ok
17:31:11.0733 0x15ac [ 0AA85E1C967652071D283147AC4B17CD, CA643FA1B71751D286C55C36BD9A7492E899526F7851839208A46AE17E65D59D ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
17:31:11.0733 0x15ac vdrvroot - ok
17:31:11.0764 0x15ac [ 7F3DF007481BC1215EC2485E93558E65, AEDF57A019959E8B495F6DEECC5CD0635DF8A67EDAA1072966C4323E9B958DE9 ] vds C:\Windows\System32\vds.exe
17:31:11.0780 0x15ac vds - ok
17:31:11.0795 0x15ac [ F70882757673FA7D4E466D811E1AC029, 6C940022DEF2F1D174953C15B73A3197218BD5528821923580657B2BED9FA607 ] VerifierExt C:\Windows\system32\drivers\VerifierExt.sys
17:31:11.0795 0x15ac VerifierExt - ok
17:31:11.0811 0x15ac [ 01F65399F930E5F26D39F18C1F665B03, AB688CEFFA2313A32757A20788E2BDC0C32DE42592231C7C0F26DEE51E7DE1A7 ] vhdmp C:\Windows\System32\drivers\vhdmp.sys
17:31:11.0827 0x15ac vhdmp - ok
17:31:11.0842 0x15ac [ 91A67D2DDDD75D173A6590B75E305E3C, 06B05073187B93263FE1697DAC2A76EAB16265EEE16E3CE86575B5DA97673AB7 ] viaagp C:\Windows\system32\drivers\viaagp.sys
17:31:11.0842 0x15ac viaagp - ok
17:31:11.0873 0x15ac [ 05DD6EA970A2493D8BFCE2CFCF2F445C, BB4AC5ECFAFA72282DCFBCD9469FA098CEB71CE545A8FF389B1294280FDC9C17 ] ViaC7 C:\Windows\System32\drivers\viac7.sys
17:31:11.0889 0x15ac ViaC7 - ok
17:31:11.0889 0x15ac [ 11283532CE62BA51557D00E09262ED78, 150AF6DE38A1B4C286AAAD465A5284C141B174FF9196C8F96132241B83757C4F ] viaide C:\Windows\system32\drivers\viaide.sys
17:31:11.0905 0x15ac viaide - ok
17:31:11.0905 0x15ac [ 2E4777120FC246CCF76A69C7BB4AEF57, FA156E7D1B19375FB5B8AB8E2E925FDC68D709109FEE4E5CDD785E666AB653AC ] vmbus C:\Windows\system32\drivers\vmbus.sys
17:31:11.0920 0x15ac vmbus - ok
17:31:11.0920 0x15ac [ FA7B57977E55B60409FD9E36FC57395C, 380EA7ED9FDCE6CF3E134391A87685FB92DD8A468BDEEF22A4E3E7EF694A5820 ] VMBusHID C:\Windows\System32\drivers\VMBusHID.sys
17:31:11.0920 0x15ac VMBusHID - ok
17:31:11.0952 0x15ac [ 57AE02EE534B4BF0E09462C6C2665D55, 3A74EA800A69D9B6F67114287022F50FC027EDB0DB64D39DC8D8A9597DB309E8 ] vmicheartbeat C:\Windows\System32\ICSvc.dll
17:31:11.0967 0x15ac vmicheartbeat - ok
17:31:11.0967 0x15ac [ 57AE02EE534B4BF0E09462C6C2665D55, 3A74EA800A69D9B6F67114287022F50FC027EDB0DB64D39DC8D8A9597DB309E8 ] vmickvpexchange C:\Windows\System32\ICSvc.dll
17:31:11.0983 0x15ac vmickvpexchange - ok
17:31:11.0983 0x15ac [ 57AE02EE534B4BF0E09462C6C2665D55, 3A74EA800A69D9B6F67114287022F50FC027EDB0DB64D39DC8D8A9597DB309E8 ] vmicrdv C:\Windows\System32\ICSvc.dll
17:31:11.0998 0x15ac vmicrdv - ok
17:31:11.0998 0x15ac [ 57AE02EE534B4BF0E09462C6C2665D55, 3A74EA800A69D9B6F67114287022F50FC027EDB0DB64D39DC8D8A9597DB309E8 ] vmicshutdown C:\Windows\System32\ICSvc.dll
17:31:12.0014 0x15ac vmicshutdown - ok
17:31:12.0014 0x15ac [ 57AE02EE534B4BF0E09462C6C2665D55, 3A74EA800A69D9B6F67114287022F50FC027EDB0DB64D39DC8D8A9597DB309E8 ] vmictimesync C:\Windows\System32\ICSvc.dll
17:31:12.0030 0x15ac vmictimesync - ok
17:31:12.0030 0x15ac [ 57AE02EE534B4BF0E09462C6C2665D55, 3A74EA800A69D9B6F67114287022F50FC027EDB0DB64D39DC8D8A9597DB309E8 ] vmicvss C:\Windows\System32\ICSvc.dll
17:31:12.0030 0x15ac vmicvss - ok
17:31:12.0045 0x15ac [ 7E8BCEEA56197925D944CA7D230596F7, 6259BBFCF75C407650181C8260F9AB7E0A2F2DFD0BAEBEC9D56B9731268D6A25 ] volmgr C:\Windows\system32\drivers\volmgr.sys
17:31:12.0045 0x15ac volmgr - ok
17:31:12.0061 0x15ac [ 9C21037D3983D9B93190D2AA16570395, DEA24368100F610BBDD320AE86E220928B228DD66A0836FB83193ABE2F7991F7 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
17:31:12.0061 0x15ac volmgrx - ok
17:31:12.0092 0x15ac [ BF079843E272759BAE587FB980163293, 7D5CCBA8AFEC9638E0D7E487B1277BBB2C6BE13C1DA35077C28DCBE98FBF671D ] volsnap C:\Windows\system32\drivers\volsnap.sys
17:31:12.0092 0x15ac volsnap - ok
17:31:12.0108 0x15ac [ C5B79DA9C82C01EEFAABA713A858649E, 1C1F88224C537EF6FC3BC5A52C7B53492CF10A9A79EBF603CA073961462DB6FD ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
17:31:12.0123 0x15ac vsmraid - ok
17:31:12.0202 0x15ac [ 39FA161A2CD3DFA1062AD2A0F9B91F00, E2EF530C0C89FF20E36215E7F34A3A0EF7837E03C894BC064EBB1E00E9591F2D ] VSS C:\Windows\system32\vssvc.exe
17:31:12.0233 0x15ac VSS - ok
17:31:12.0264 0x15ac [ AB5F5CC034E31E496606E666657F3CC2, 0730FEB03820C1B63BB7B1C3F72E67CAC199683C770ED70F077335F7360C6BAC ] VSTXRAID C:\Windows\system32\drivers\vstxraid.sys
17:31:12.0264 0x15ac VSTXRAID - ok
17:31:12.0280 0x15ac [ 23044877230094EE20D057BC63ED19F0, 60AE16156335720B4204A8AA3ED48633A803B7B76AB2185FBF8A429DA5A6CD00 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys
17:31:12.0280 0x15ac vwifibus - ok
17:31:12.0295 0x15ac [ 56A40C6DFB12E33B88887C4F9D5917FF, 1701ACF3C2F71C2BCC211EA0F110F85383E09C5554836FC57FFAF76C1ADA7244 ] W32Time C:\Windows\system32\w32time.dll
17:31:12.0311 0x15ac W32Time - ok
17:31:12.0311 0x15ac [ B4254668F5806AAA051A320FE88146F6, 12C6C79DF6D385F7A1E827B54AF42D7005379B8C5420A62CAC64CA181BDB2CD2 ] WacomPen C:\Windows\System32\drivers\wacompen.sys
17:31:12.0327 0x15ac WacomPen - ok
17:31:12.0358 0x15ac [ 44D1EF3CDB0B286FD73A7C0144CC6B1E, 98FDCF1079D04B44CDF183C3BF2FC97E5B65E486E834265200A9B96F958F1D1B ] Wanarp C:\Windows\system32\DRIVERS\wanarp.sys
17:31:12.0373 0x15ac Wanarp - ok
17:31:12.0373 0x15ac [ 44D1EF3CDB0B286FD73A7C0144CC6B1E, 98FDCF1079D04B44CDF183C3BF2FC97E5B65E486E834265200A9B96F958F1D1B ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
17:31:12.0373 0x15ac Wanarpv6 - ok
17:31:12.0436 0x15ac [ 09EA8F80C26FEAAE7D34AC82A871A909, 92F040B3313F2C7866FFDDF9E810D4C4B74FED2124B9C13D5143F69061A0CBE2 ] wbengine C:\Windows\system32\wbengine.exe
17:31:12.0483 0x15ac wbengine - ok
17:31:12.0498 0x15ac [ D7AB5A0119A208B53784863DF403C2F2, BD94564BC57BB2762043A7312A7474480BF6E94B4B025F45FB36FF3B2C1F6F5B ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
17:31:12.0514 0x15ac WbioSrvc - ok
17:31:12.0545 0x15ac [ 53D6F27D4AEBED33594C9EE64809A2BD, FADD604C5111469CD07E8ACE5FC7747D8610C312DFC2BC88F4C9DED3C82CE0A3 ] Wcmsvc C:\Windows\System32\wcmsvc.dll
17:31:12.0545 0x15ac Wcmsvc - ok
17:31:12.0608 0x15ac [ 2569DC92526501CA292A1985F54D174B, 6D8161EB1CDB8B56E2CC093F80E02C9DADEAD1CEAA28A8273FE3DAD7EFAF5023 ] wcncsvc C:\Windows\System32\wcncsvc.dll
17:31:12.0623 0x15ac wcncsvc - ok
17:31:12.0639 0x15ac [ 1B0A5043CC13F7DEB9873CC464FB11C7, F80C52F5D41884B7583C455D3B4FE3B2AC5133D7BEB973FDC127A75209051EAB ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
17:31:12.0655 0x15ac WcsPlugInService - ok
17:31:12.0655 0x15ac [ 9BF0CE1E215789664EB563A52EC0B83B, DD593BB20B6C691964FED6E5D6021FF20044D1D41D147226B3824F417531EAC8 ] Wd C:\Windows\system32\drivers\wd.sys
17:31:12.0655 0x15ac Wd - ok
17:31:12.0702 0x15ac [ 60DA7B2BA122BCCB40E6A8FEC0E24FF5, C2A8BE8F6CA910F2BABE430E5CA16F8E829FE998F02B74BB42F10A6229500054 ] WdBoot C:\Windows\system32\drivers\WdBoot.sys
17:31:12.0702 0x15ac WdBoot - ok
17:31:12.0748 0x15ac [ 25944D2CC49E0A6C581D02A74B7D6645, AF8FFAFEC07F1A6A3D4008E609E8E1D705A8DFCC7995C766E3946887203F7BEE ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
17:31:12.0780 0x15ac Wdf01000 - ok
17:31:12.0795 0x15ac [ 36E2926441E3AD4E3F128B670D967C85, 586E1B5F7A31E7ABA8689BEB44831FE1CFA91099F1DEA22126127D31EFCCF6EA ] WdFilter C:\Windows\system32\drivers\WdFilter.sys
17:31:12.0795 0x15ac WdFilter - ok
17:31:12.0811 0x15ac [ 2FC34E39DD120AB985DF1F63B10A4B4D, 5EBF98440B36F8A2FB8537F116E8E382746DB8C08E353A200875F8C6E0343345 ] WdiServiceHost C:\Windows\system32\wdi.dll
17:31:12.0811 0x15ac WdiServiceHost - ok
17:31:12.0827 0x15ac [ 2FC34E39DD120AB985DF1F63B10A4B4D, 5EBF98440B36F8A2FB8537F116E8E382746DB8C08E353A200875F8C6E0343345 ] WdiSystemHost C:\Windows\system32\wdi.dll
17:31:12.0827 0x15ac WdiSystemHost - ok
17:31:12.0858 0x15ac [ 07577AD2DA7D82B8A077DA4C1981DB9B, C787FD83CCC364FF5E0C65532D2246A9ED2BAD4ED18CBAD192130EB6C6673D24 ] WebClient C:\Windows\System32\webclnt.dll
17:31:12.0873 0x15ac WebClient - ok
17:31:12.0889 0x15ac [ 476746404FC104242EE8F049F2A6FA4A, 85C71C0C6D234EE71788C36545A30E8AF061EDDFAA20791563FE4D4F3B327F7B ] Wecsvc C:\Windows\system32\wecsvc.dll
17:31:12.0889 0x15ac Wecsvc - ok
17:31:12.0905 0x15ac [ B8A6C4812FD65EF95EB0F723A48C2462, 81A27AEEF8FE04A438DB87FAEC0F4DEFBE6786CA0ED04CF459EFBC6A5BCC6279 ] wercplsupport C:\Windows\System32\wercplsupport.dll
17:31:12.0905 0x15ac wercplsupport - ok
17:31:12.0936 0x15ac [ B40442F17F77B11F5F1BA961BB806E2B, 9E0E37E8DECFB090E49B492FF59DB1B498D97A5487508422FD2B7E132FFA8FC4 ] WerSvc C:\Windows\System32\WerSvc.dll
17:31:12.0952 0x15ac WerSvc - ok
17:31:12.0983 0x15ac [ 5EB8464B7E9FC7C9FDE98A9534C9EE6F, 615E76B8A3B4D6470B4CFEA7A578B87BEE4AD5D7C9F6665C748261BF70555A5F ] WFPLWFS C:\Windows\system32\DRIVERS\wfplwfs.sys
17:31:12.0983 0x15ac WFPLWFS - ok
17:31:12.0998 0x15ac [ 1764AA30CDF8AF8995D4A3CEADF6AB0D, C2876EEBF059222B74D85C2F7C5BC11F1B1A69A4103BF60D02DD0DE8630979DF ] WiaRpc C:\Windows\System32\wiarpc.dll
17:31:12.0998 0x15ac WiaRpc - ok
17:31:13.0014 0x15ac [ 8B7BBA41B67E92B73BAFEBDF570B3703, 02B278E591C0FA8600D8B0A46EA63D45A8C28788B1DF7202E0B9C62C18292B52 ] WIMMount C:\Windows\system32\drivers\wimmount.sys
17:31:13.0030 0x15ac WIMMount - ok
17:31:13.0045 0x15ac [ 5C1F8B5AC4BE0D13FA6691E6888DBDFB, B70BC29DF6811723F7FC8D1396CBB95BE93D2EE28F149C92429A27ADEABDE58D ] WinDefend C:\Program Files\Windows Defender\MsMpEng.exe
17:31:13.0045 0x15ac WinDefend - ok
17:31:13.0108 0x15ac [ 7A4797475ABAD6ECF1BCB08637922ECA, EFD91794165E06139D5488F0EFA53652620AA002F814E6BA6A364B7204CB0A36 ] WinHttpAutoProxySvc C:\Windows\system32\winhttp.dll
17:31:13.0123 0x15ac WinHttpAutoProxySvc - ok
17:31:13.0170 0x15ac [ 62B866B25BA8A3FCAEC457738DDA726E, F8112C6FC2A08F0E3E79CF8AB113147DEBFEBFFD79AFB4E412452146DB5F0AE7 ] winmgmt C:\Windows\system32\wbem\WMIsvc.dll
17:31:13.0170 0x15ac winmgmt - ok
17:31:13.0233 0x15ac [ EE08CA40473062F2962F1ED25C85306C, AED6BC65C0A710274CEC9ED811543419184CF36B9351FCB6626B53A5CC73F53D ] WinRM C:\Windows\system32\WsmSvc.dll
17:31:13.0295 0x15ac WinRM - ok
17:31:13.0327 0x15ac [ 30122927052480564DB0695B0CEADE62, 46731BCEDDF89E35808F0C4070F0FB34AE382E7D4A76FA4435340C5FE3931F09 ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
17:31:13.0327 0x15ac WinUsb - ok
17:31:13.0405 0x15ac [ 70752CC656FE991392C1FD262D386863, F4ED96F0AD6E1E6A7EACDF55870B4D324CEDF9962F828D6921D675A18902E2A1 ] WlanSvc C:\Windows\System32\wlansvc.dll
17:31:13.0452 0x15ac WlanSvc - ok
17:31:13.0545 0x15ac [ 7194769CA375358E5BD89929C2C47B4C, BE1B2C7AC9B223764F12EAADD17782A38586234E251A9B6F9B5764AB06C6A650 ] wlidsvc C:\Windows\system32\wlidsvc.dll
17:31:13.0592 0x15ac wlidsvc - ok
17:31:13.0592 0x15ac [ F8A31500A1B7EFDB95E5103A7C7275C1, 5D265CCD4F30603FBCF53BA60BCFF2A8B0801215B63FA6837AE6D401BFD1D416 ] WmiAcpi C:\Windows\System32\drivers\wmiacpi.sys
17:31:13.0592 0x15ac WmiAcpi - ok
17:31:13.0608 0x15ac [ 8899BED47FE375EE665AD1821598E471, 5E30CF5B49B675A5158300CACFCFA496D8D0060F8633BC22B40BE7D9D248C05A ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
17:31:13.0608 0x15ac wmiApSrv - ok
17:31:13.0686 0x15ac [ 207CB1C1770997621C1798E78EADCBBD, 4F8A1B3DCB1DEBD36D14758F80FF80363A3761D0938FB5932646EE2D56234551 ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
17:31:13.0717 0x15ac WMPNetworkSvc - ok
17:31:13.0717 0x15ac [ 9C3F5C7B716247756575235A3218FD38, 45F7814D706844E241FFEC5B45D4AD1A7B897992862FEEB12F944D733DE90B21 ] wpcfltr C:\Windows\system32\DRIVERS\wpcfltr.sys
17:31:13.0717 0x15ac wpcfltr - ok
17:31:13.0733 0x15ac [ 32B4145D0513E913C13A73C3E640C931, 63381DDC0DB272C661F57085C0911173BB3D76F788F7038767102D2A259E7AC0 ] WPCSvc C:\Windows\System32\wpcsvc.dll
17:31:13.0733 0x15ac WPCSvc - ok
17:31:13.0780 0x15ac [ 27AD1D070DFF4F508F063779CC8882C4, A8E0CDDF57F2DBFE38D0BE7C08360F37B63DE693B7BC11E3D45A362B7408C017 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
17:31:13.0780 0x15ac WPDBusEnum - ok
17:31:13.0795 0x15ac [ E5DCECD5A6A21AE48E94F6C9DC0E093C, C478397D77AA457A7A94724A653273BF95F84D6CA89F6C8BF34FBD987E3B8326 ] WpdUpFltr C:\Windows\system32\drivers\WpdUpFltr.sys
17:31:13.0795 0x15ac WpdUpFltr - ok
17:31:13.0842 0x15ac [ 7CB94AFFC7F56C8E645381DB9C23F845, DEDAA1BF36D419A9F48854F838935B3223E4F8FB8224E922739F03C8BDB051C7 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
17:31:13.0842 0x15ac ws2ifsl - ok
17:31:13.0874 0x15ac [ 463628A91197979E29B3794D8CCB7600, DC6848DAD0DA90F9C60048E419D0987C5D2FBAA0BEB7869CEB42927772BBE524 ] wscsvc C:\Windows\System32\wscsvc.dll
17:31:13.0889 0x15ac wscsvc - ok
17:31:13.0889 0x15ac WSearch - ok
17:31:13.0999 0x15ac [ 9E172AED2556DF2048DD9020B302F09C, 4E023DF0D3439E50FD8E9F24E52A9DACF0E2D6BD616C849DF5B07EB081C1F5DF ] WSService C:\Windows\System32\WSService.dll
17:31:14.0077 0x15ac WSService - ok
17:31:14.0202 0x15ac [ E7A853E47948FBE0F79B1C2AE718E72D, 72206DC038F10E457F8EC8411B0BD0B91B1B5F5CE42C01EEE69D11D07F584696 ] wuauserv C:\Windows\system32\wuaueng.dll
17:31:14.0295 0x15ac wuauserv - ok
17:31:14.0311 0x15ac [ 06E6F32C8D0A3F66D956F57B43A2E070, 9A6BD96A28294B0372F16E13D652FD603308F64B74A56E41E0C68C5E8011F943 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
17:31:14.0311 0x15ac WudfPf - ok
17:31:14.0327 0x15ac [ 867C301E8B790040AE9CF6486E8041DF, D867D6498C987944D99508B2FAD6D6B749FA1EDFE8124B0863D4A642352F0855 ] WUDFRd C:\Windows\System32\drivers\WUDFRd.sys
17:31:14.0327 0x15ac WUDFRd - ok
17:31:14.0342 0x15ac [ FE47B7BC8EA320C2D9B5E5BF6E303765, 34518DBD1E9EA6E5DA62273B18613761E1D9C6B4E074A93C6D639FBAF02222EA ] wudfsvc C:\Windows\System32\WUDFSvc.dll
17:31:14.0342 0x15ac wudfsvc - ok
17:31:14.0358 0x15ac [ 867C301E8B790040AE9CF6486E8041DF, D867D6498C987944D99508B2FAD6D6B749FA1EDFE8124B0863D4A642352F0855 ] WUDFWpdFs C:\Windows\system32\DRIVERS\WUDFRd.sys
17:31:14.0358 0x15ac WUDFWpdFs - ok
17:31:14.0358 0x15ac [ 867C301E8B790040AE9CF6486E8041DF, D867D6498C987944D99508B2FAD6D6B749FA1EDFE8124B0863D4A642352F0855 ] WUDFWpdMtp C:\Windows\system32\DRIVERS\WUDFRd.sys
17:31:14.0358 0x15ac WUDFWpdMtp - ok
17:31:14.0405 0x15ac [ 9450B8D5C88ADD67EA982E071C48D681, 0BBA2A5A21E3112929A56D89B2A1DF77634591D37A93F25BD3A92E4C1F5A6244 ] WwanSvc C:\Windows\System32\wwansvc.dll
17:31:14.0420 0x15ac WwanSvc - ok
17:31:14.0420 0x15ac ================ Scan global ===============================
17:31:14.0467 0x15ac [ 8D41654D0A9E15635ACF5E18FF470AB1, A85D1F6C3D63D7991E9B29B8A21C68776B7AEB617EFA45836E0686649A03CD55 ] C:\Windows\system32\basesrv.dll
17:31:14.0499 0x15ac [ 1EEFCA33A6329CE675FEFFBC563140A9, 13223ED01330BA68292E4687AA25F2C277ECFF37C01EE419F90937A0C2E15500 ] C:\Windows\system32\winsrv.dll
17:31:14.0530 0x15ac [ 78A87B9D36AAD6AFD6A24915389E1221, 06CE868DABC517646EB6A8D1DBD27BD4DEF4F047D2517516FECFF460D88DD860 ] C:\Windows\system32\sxssrv.dll
17:31:14.0577 0x15ac [ 6528BAACA25356FE226904DD36C82BA7, C88BB8C5434E5F7F71732EA30F799B038904647B31600CF6FEEBABAA064C5EAF ] C:\Windows\system32\services.exe
17:31:14.0592 0x15ac [ Global ] - ok
17:31:14.0592 0x15ac ================ Scan MBR ==================================
17:31:14.0592 0x15ac [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
17:31:14.0843 0x15ac \Device\Harddisk0\DR0 - ok
17:31:14.0843 0x15ac ================ Scan VBR ==================================
17:31:14.0843 0x15ac [ 5093946AC5915A710EA8C6D7F059C866 ] \Device\Harddisk0\DR0\Partition1
17:31:14.0859 0x15ac \Device\Harddisk0\DR0\Partition1 - ok
17:31:14.0859 0x15ac [ 099AFDEEC4C8700582C339B7A20725A9 ] \Device\Harddisk0\DR0\Partition2
17:31:14.0875 0x15ac \Device\Harddisk0\DR0\Partition2 - ok
17:31:14.0875 0x15ac ================ Scan generic autorun ======================
17:31:14.0890 0x15ac [ B4EB28DEDAEC5154AD3ACBD179EDDFD5, C25C5FB016027EA1C46106673702174325E6AD88DFC7C05E3CD1AA5CFE17E3F9 ] C:\Windows\system32\igfxtray.exe
17:31:14.0890 0x15ac IgfxTray - ok
17:31:14.0906 0x15ac [ 4811D9DC52AEE953F4FA08DC2951221F, B6401CCDEBE46A08A7ADE1BA6DCF0FE53DCDEA48E74DFDF4ED0B6469C922A621 ] C:\Windows\system32\hkcmd.exe
17:31:14.0906 0x15ac HotKeysCmds - ok
17:31:14.0921 0x15ac [ 00E4F2C80565767C8C74A02F98DEEBF2, 4E75FA153BB1D849111BCF814A2F26C0B9F754BC53787F41C2B77A580405EE45 ] C:\Windows\system32\igfxpers.exe
17:31:14.0921 0x15ac Persistence - ok
17:31:14.0953 0x15ac [ 5B6E8E09BE6401A7E022F52FDFCB2FF8, 471C556CF9405BBB380A8CEFE945C126B954B7C94F79CC72441B51F80141FC5E ] C:\Program Files\Common Files\Java\Java Update\jusched.exe
17:31:14.0953 0x15ac SunJavaUpdateSched - ok
17:31:15.0046 0x15ac [ 919F88F5158350947FB255358CEA4907, E67E46DD7185A2B7928BDFFA7893CBF7D4BB92E4881F38E9DDB5E582D2D2D48E ] C:\Program Files\Seznam.cz\distribution\szninstall.exe
17:31:15.0078 0x15ac seznam-listicka-distribuce - ok
17:31:15.0234 0x15ac [ 26B558B2D31C7425B455B00E562EAD93, B64D128A2F1FC42BA4376F8EB08D70F4B705745CB983D0631DB45851BF34BBDF ] C:\Program Files\AVAST Software\Avast\AvastUI.exe
17:31:15.0375 0x15ac AvastUI.exe - ok
17:31:15.0468 0x15ac [ 8112D0DACAE746290FC87B3A980FA719, 43CA8CED6AB58EDD97AD476C791D49C7ECD40EB8DA627E8412C0A27699A58F01 ] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
17:31:15.0484 0x15ac NeroFilterCheck - ok
17:31:15.0484 0x15ac Overwolf - ok
17:31:15.0546 0x15ac EA Core - ok
17:31:15.0687 0x15ac [ 4084E12C0EB927FB788EB9A42BAA1B6C, A033BF6081771DF6B946D85621BFD1D0096879BFD57FD5B987C6E6397FAC78A1 ] C:\Program Files\Origin\Origin.exe
17:31:15.0796 0x15ac EADM - ok
17:31:15.0890 0x15ac [ 87644A0DA4A15F5F3FEEB1D6056E83E7, A559AFA3DE89F88E7FF8B37A0BDA1CC465101930EB9D3E25D1A683CC488F49B8 ] C:\Program Files\MyDrive Connect\MyDriveConnect.exe
17:31:15.0937 0x15ac MyDriveConnect.exe - ok
17:31:15.0984 0x15ac [ 59D9856CD1420E2AF778821B7E1B81D0, 30D4A098F89F14A63593C6B9E1981905FE93A8577815DE9027744D7CFAE551F7 ] C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
17:31:15.0984 0x15ac BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA} - ok
17:31:16.0265 0x15ac [ 2E8A5736739C6D23F5CBAE22973A1E3A, DC69CF7132FF7CACCEF4E6A8A4C71D9E5CDB6F8A7521D72999E1A6A532C384D6 ] C:\Users\František\AppData\Roaming\Spotify\Spotify.exe
17:31:16.0437 0x15ac Spotify - ok
17:31:16.0515 0x15ac [ B66E0842FCF485F3E2D41BF0BA10966F, 966B8386B2D060167E8EAAE478509013A8729FE2CF11F890D3F9DCDA90768F34 ] C:\Users\František\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
17:31:16.0562 0x15ac Spotify Web Helper - ok
17:31:17.0125 0x15ac [ 9D4A0ECBF734E2EECDD5B473A2D705FE, F663B8EDA4C75DB6D3E3B68EE938FE43B0C05EF9B09598BFEB147D041D3F6A17 ] C:\Program Files\Skype\Phone\Skype.exe
17:31:17.0640 0x15ac Skype - ok
17:31:17.0734 0x15ac [ 2A3FB4C98F139038E23330D2439DB8A4, DE9253AD362B03FA5D3D4912662398E5C4AC76F7274B83E51C251A6921A5B838 ] C:\Users\František\AppData\Local\Facebook\Update\FacebookUpdate.exe
17:31:17.0734 0x15ac Facebook Update - ok
17:31:17.0734 0x15ac Waiting for KSN requests completion. In queue: 38
17:31:18.0750 0x15ac Waiting for KSN requests completion. In queue: 38
17:31:19.0764 0x15ac Waiting for KSN requests completion. In queue: 38
17:31:20.0820 0x15ac AV detected via SS2: avast! Antivirus, C:\Program Files\AVAST Software\Avast\VisthAux.exe ( 9.0.2021.515 ), 0x41000 ( enabled : updated )
17:31:20.0836 0x15ac AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.5.218.0 ), 0x60100 ( disabled : updated )
17:31:20.0867 0x15ac Win FW state via NFP2: disabled
17:31:23.0336 0x15ac ============================================================
17:31:23.0336 0x15ac Scan finished
17:31:23.0336 0x15ac ============================================================
17:31:23.0336 0x0530 Detected object count: 0
17:31:23.0336 0x0530 Actual detected object count: 0
17:31:35.0916 0x0024 Deinitialize success
17:31:05.0811 0x15ac nsi - ok
17:31:05.0826 0x15ac [ 9588CCD14571FA22F8F2ECCF198AB448, 7F194114CD81E2DEE36D1000B8A89402399216815837C34239B35EA1CCD7A59D ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
17:31:05.0826 0x15ac nsiproxy - ok
17:31:05.0982 0x15ac [ 6C816842AC5E2B0E033ED0BD1058E077, 20EFDE034776C1DB9A796EC55BEF3DD938CB704824B1DDBD2DA2D4645EB4CDA8 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
17:31:06.0029 0x15ac Ntfs - ok
17:31:06.0045 0x15ac [ 0F965AF67042AF539274738FFD0C8C71, 69CE25330134F30B6FE9205D7AAAEC1B6EE2D9784300DD7816295B766B2BA027 ] Null C:\Windows\system32\drivers\Null.sys
17:31:06.0045 0x15ac Null - ok
17:31:06.0311 0x15ac [ B69E6F70CE1151C8D62ABC9DEF64DFBE, B7BD731D1CCF4E71EF1CF4AFA9189C1831306483B4BF57B12B89113A5230871B ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
17:31:06.0545 0x15ac nvlddmkm - ok
17:31:06.0576 0x15ac [ BD23FF50A9A59AAF48052F5E7D0682B0, 36177EA9B24B5F6E9A5F4431056AC0B682B3495A0373468E8B37662DB434A31F ] nvraid C:\Windows\system32\drivers\nvraid.sys
17:31:06.0576 0x15ac nvraid - ok
17:31:06.0592 0x15ac [ 108DD54A5B1E73F583AF7DC94CCE52B8, 5F581FEAFEA38FD7DBB4F2159C16395FBD2E02ABC53F580DAADA1D40DA216E99 ] nvstor C:\Windows\system32\drivers\nvstor.sys
17:31:06.0592 0x15ac nvstor - ok
17:31:06.0639 0x15ac [ E4284FCF99FEA13A7E1836F87AE356F6, 541C40DD3483810632320E8F23427BB52593D156E876C6023BE7F7A8589383E8 ] nvsvc C:\Windows\system32\nvvsvc.exe
17:31:06.0654 0x15ac nvsvc - ok
17:31:06.0764 0x15ac [ 03E60E0BFA53ED15DC984FA34B44BB0F, 50ABF2E303B9A2B6DDD0DB411C24C3CD6CC30AFA664B5682CF9189F96548CC10 ] nvUpdatusService C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
17:31:06.0811 0x15ac nvUpdatusService - ok
17:31:06.0811 0x15ac [ 5ED87C9C51CFE59B1DDFF8290719E0E4, 29AF0085237B8E0E972BD4909734A613216E6BC13EBBECF35142D65FF0F64293 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
17:31:06.0811 0x15ac nv_agp - ok
17:31:06.0904 0x15ac [ 84DE1DD996B48B05ACE31AD015FA108A, 4B9D1E4EF83ECED6C77F23D9879C124534F7053D7423E3A2D0F67A4A720CEA94 ] odserv C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
17:31:06.0920 0x15ac odserv - ok
17:31:06.0951 0x15ac [ 5A432A042DAE460ABE7199B758E8606C, 6E5D1F477D290905BE27CEBF9572BAC6B05FFEF2FAD901D3C8E11F665F8B9A71 ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
17:31:06.0967 0x15ac ose - ok
17:31:06.0983 0x15ac [ BB3916021D0AC8D33C02C1161B7A2621, 01452A201C2CA555706356CF1EB9890BD4857DD906DFC1CF66AAA3E29D4562A2 ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
17:31:06.0998 0x15ac p2pimsvc - ok
17:31:07.0014 0x15ac [ 433A776514D8A57DA92467991AE2FEFF, 44ABE749266FBAFE4AE72B7777572D458A2E4ED77A256CF59FDFAEBA3CBE5827 ] p2psvc C:\Windows\system32\p2psvc.dll
17:31:07.0014 0x15ac p2psvc - ok
17:31:07.0029 0x15ac [ 8BCE63AF5B52642E832630F862DE96EF, 8D5D282A3F9CADA3A08211997828E36979400A048A850D3E06E7E66C90D90F6F ] Parport C:\Windows\System32\drivers\parport.sys
17:31:07.0029 0x15ac Parport - ok
17:31:07.0061 0x15ac [ 7289BE4566F0E5126868EB6E4292CC3C, CD4FA356D20CAE3743298A3999AFC1AA2EDC13A70FFCF8B06CC195069952121D ] partmgr C:\Windows\system32\drivers\partmgr.sys
17:31:07.0061 0x15ac partmgr - ok
17:31:07.0061 0x15ac [ 49A439FEAB060F74B8EC7DBF44D4A7BA, FCA6A9809A9930902DA8C9F1643F0A77CBF81012FC43ED5B039C3A1E5F9A67C7 ] Parvdm C:\Windows\System32\drivers\parvdm.sys
17:31:07.0061 0x15ac Parvdm - ok
17:31:07.0076 0x15ac [ 1DAABA22886AB5568BF1527D35279895, 088F55A467486E021296ADF08AE4DFDAD13D2A1DD0C2191F6E91B247D120CA14 ] PcaSvc C:\Windows\System32\pcasvc.dll
17:31:07.0092 0x15ac PcaSvc - ok
17:31:07.0092 0x15ac [ EA828C84C8948D0E4994C1E0A45EB05F, 5B6BB5AA870BC2F46CA8E037B21DC0B9748C2D26E3C2C9079330302783FAC5B9 ] pci C:\Windows\system32\drivers\pci.sys
17:31:07.0108 0x15ac pci - ok
17:31:07.0108 0x15ac [ B4444133ED61F87FD49A2ADD28285115, 26DB2CF0B9832FE5677C108C833A8A416354EC91707AD54A05A01F0F6906074D ] pciide C:\Windows\system32\drivers\pciide.sys
17:31:07.0108 0x15ac pciide - ok
17:31:07.0123 0x15ac [ 6E11FDE71F2015007CDD4AE9D2D700C9, BA9D2D9433B947A0B47F879FA7689C7C5F6DB28B93CDA32C672B8A72E92C7E3C ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
17:31:07.0123 0x15ac pcmcia - ok
17:31:07.0139 0x15ac [ 8A56B080B12950D448D556FE4BA6C68C, 850DB538CE4F65E18F5402E57BE5FF458F1EF68C8BBA5A7B0B5EBF3E4C5B990F ] pcw C:\Windows\system32\drivers\pcw.sys
17:31:07.0139 0x15ac pcw - ok
17:31:07.0186 0x15ac [ 58F99F74C33B7615ABEECF70BAD5FE1E, 6FDD34677313194A12256153D60B57524446378063BD45BAA5183BC6D56C97C6 ] pdc C:\Windows\system32\drivers\pdc.sys
17:31:07.0186 0x15ac pdc - ok
17:31:07.0248 0x15ac [ 8C7EE53A9F6A5F01E77DBB81654E5B66, 61AD022CCBBF0BBFD8815EF60E7F88F7E2C8AB99C19E5EC29F1A7616A24D96EE ] PEAUTH C:\Windows\system32\drivers\peauth.sys
17:31:07.0264 0x15ac PEAUTH - ok
17:31:07.0326 0x15ac [ D90D72035BA6DB320C9700E16552D0FE, 0DD0FD650A7532ACC9C5BC5D98F41484852DBC17929A55D99632C04A04D06C97 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll
17:31:07.0389 0x15ac PeerDistSvc - ok
17:31:07.0436 0x15ac [ CCF3E6C601D71A4CBB4C08B5591E5D26, 93976471B32211328FCDBBEC10BCA0E9B4497A8A6AA21125894CE54E11A7014F ] pla C:\Windows\system32\pla.dll
17:31:07.0483 0x15ac pla - ok
17:31:07.0498 0x15ac [ 84C433F0FA896BACFAB67D0B22CFA73C, 10C3C9326A011C3E2006C0FA119BBEF9C5C622BB9D10175527D6D07837D3F07A ] PlugPlay C:\Windows\system32\umpnpmgr.dll
17:31:07.0498 0x15ac PlugPlay - ok
17:31:07.0529 0x15ac [ 205E1B699FD3F2F9B036EEA2EC30C620, 9D5C8009BC3F6F76438FC82C3DAAA3E9CC87F74CDE841A0ADD9EF00E98DB6890 ] PnkBstrA C:\Windows\system32\PnkBstrA.exe
17:31:07.0529 0x15ac PnkBstrA - ok
17:31:07.0545 0x15ac [ 7BB1FAB338641C440FDCDEB8B243648A, 8A9DAA73A674409EE7A8CEDED2769F3B365FBB183A1EC510BEE00F30A7DF8119 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
17:31:07.0545 0x15ac PNRPAutoReg - ok
17:31:07.0561 0x15ac [ BB3916021D0AC8D33C02C1161B7A2621, 01452A201C2CA555706356CF1EB9890BD4857DD906DFC1CF66AAA3E29D4562A2 ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
17:31:07.0561 0x15ac PNRPsvc - ok
17:31:07.0592 0x15ac [ 9DC57EB201F2F77E874084176EAD5BCF, 6B0E37955FAA6E1835D9280669B2AA703DE846C1B8D1EDEE32B46A5206699069 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
17:31:07.0592 0x15ac PolicyAgent - ok
17:31:07.0639 0x15ac [ 556848D77F36645260DE452513A54F5D, 9DE2522EEE25FED38F52320418D1280AE0DABDD6BFD6018034970D2D414849F2 ] Power C:\Windows\system32\umpo.dll
17:31:07.0654 0x15ac Power - ok
17:31:07.0670 0x15ac [ 03D522782A0BB5108C8A43A10EE51CB0, B1CE7693A119091B5924125B6C1CCBD7DC8519F7D649DBE9F5FD667E4F8F6861 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
17:31:07.0670 0x15ac PptpMiniport - ok
17:31:07.0795 0x15ac [ DE50965045161F015D16B52EFE3AEBD9, 1E25A17EB6238D50471668F33FD1E6768C06FEFAEFCAF683692F8C58BD09EB90 ] PrintNotify C:\Windows\system32\spool\DRIVERS\W32X86\3\PrintConfig.dll
17:31:07.0858 0x15ac PrintNotify - ok
17:31:07.0889 0x15ac [ BD23C45A654066374E3EC7F4EF8FC9B6, 7B91547F65BB4767E6D842559A3347770AFC2A5CFA628C65F91DC1BBC479B6F2 ] Processor C:\Windows\System32\drivers\processr.sys
17:31:07.0889 0x15ac Processor - ok
17:31:07.0936 0x15ac [ 286D9B118A11307C80F65E2E07F0D205, C8F18A737947DE18BA1FF62CE64E8CA8B4A248A50EF1327AF69A425F8835057E ] ProfSvc C:\Windows\system32\profsvc.dll
17:31:07.0951 0x15ac ProfSvc - ok
17:31:07.0967 0x15ac [ 42E46DC7767F5AB664E3F6B36D9764AD, E4D6D493DC0C7A3881572BB238744AF8B040D40C9A4A53F2A5067FBAE63DC21C ] Psched C:\Windows\system32\DRIVERS\pacer.sys
17:31:07.0967 0x15ac Psched - ok
17:31:07.0983 0x15ac [ 9D8D860A9CF57A47E0041C9BDA415130, FADAB842C0C8EA69E6341B192F64946FB1C2EC25DF21EF789FB94CBBEA2B3DBF ] QWAVE C:\Windows\system32\qwave.dll
17:31:07.0983 0x15ac QWAVE - ok
17:31:07.0998 0x15ac [ 29E548E1C511BFBE56FA6438488DE0E0, 9C8E314FEA828BDAF91F54D338339116AD26203D91A7043B7DB006940F20888A ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
17:31:07.0998 0x15ac QWAVEdrv - ok
17:31:07.0998 0x15ac [ C07E9331431C78D41F30E62A15E1D324, AEB4ACD4352149CC5EE88CCB73386559FDC03735E1F641271CE7D137EF923ED1 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
17:31:07.0998 0x15ac RasAcd - ok
17:31:08.0029 0x15ac [ F63755B2DCE1BE7927F5CEAB7991EFED, 6BBDC6ED8948CCF47F196E5F1109FE29137B05F796D5C0A52524F146277CB89E ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
17:31:08.0029 0x15ac RasAgileVpn - ok
17:31:08.0045 0x15ac [ 63A57B7DDF705E4D7D6B0FF86BDBBF96, DD2B68A0C0F7EBDB38DA7D9F6B211B88F498404B55F8E6ED552988272377B573 ] RasAuto C:\Windows\System32\rasauto.dll
17:31:08.0045 0x15ac RasAuto - ok
17:31:08.0061 0x15ac [ 6E0649D7325D85C47C844EB3267E4625, 56D80C2AC5D6EFE28FA7EEAD042ACA4E400A6CAF46DE639E7FA3A8370EBB8344 ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
17:31:08.0061 0x15ac Rasl2tp - ok
17:31:08.0076 0x15ac [ FA17FE26953E6B0DE7A5A966253869E9, 313D036927D7D27D839688DD047823C6EE856B2702A8CDB65D68DB956AB6A73A ] RasMan C:\Windows\System32\rasmans.dll
17:31:08.0092 0x15ac RasMan - ok
17:31:08.0092 0x15ac [ 5BA6DB7AD04A8EADE0A41E6C8427582B, 2ADCDCA17983A684CCB215F589DF40C0CC5BF7B74FB537048DFF13C18EF9C760 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
17:31:08.0092 0x15ac RasPppoe - ok
17:31:08.0092 0x15ac [ 3A421DDA09E3BF96E9D698D13FDC139E, 97069847CFCE7A15FCD918FA782D23B5F04298FB06DA1279932AD52F0F3D2662 ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
17:31:08.0108 0x15ac RasSstp - ok
17:31:08.0139 0x15ac [ ED1CBB55D5946520994FCD8CA9596D9D, 327D85863D1AB8D4B1F63963D105F493DF9339DD18ED14D1DB676B2FA986EE34 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
17:31:08.0154 0x15ac rdbss - ok
17:31:08.0154 0x15ac [ 4FB0345ADE5C2E15EA1A22F173E71D37, 9E2D9C111F0C3B52EE0AB5E914C60490929B9EA27F5D643CD1C0CAA1E7AC5FE5 ] rdpbus C:\Windows\System32\drivers\rdpbus.sys
17:31:08.0154 0x15ac rdpbus - ok
17:31:08.0170 0x15ac [ 2CAD2A13569741C67CD9C52F97E0F992, 4093D72D191972BF4111B6F9FC69AEA4669B330F2BD4463777990822316BB166 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys
17:31:08.0170 0x15ac RDPDR - ok
17:31:08.0217 0x15ac [ 40083918DB637FCB8A2C2453A2284603, C5D6874BA98762F035BE7EF0CDFACD3859DA369CA2F3470091D59CCB8A084F12 ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
17:31:08.0217 0x15ac RdpVideoMiniport - ok
17:31:08.0233 0x15ac [ EA0E833A1418C28E6085DFFA68731EA5, B9D18B4F5E32AE73EF70AF3BADA878970727A32A26E94245D567AA22B589A85C ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
17:31:08.0248 0x15ac RDPWD - ok
17:31:08.0264 0x15ac [ 38A8012D03150D6852B9CDDB24280F1A, EDFBDC31D42BE580B34726EE165A822E21B14A5CAB5FED874D9C600454CDFC45 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
17:31:08.0264 0x15ac rdyboost - ok
17:31:08.0279 0x15ac [ 9F38A0A16958C33552C92EAE5AFC9E5F, A6972B39BC5AA9F647361BC6ECAB603F49204C0FF9C0FA9BF524BC9F2AEE129E ] RemoteAccess C:\Windows\System32\mprdim.dll
17:31:08.0279 0x15ac RemoteAccess - ok
17:31:08.0279 0x15ac [ 8331C0CF128BD1A56440B2E82AAA5EB5, 91F7A7E116F509E1455F4CF955A996CBF65C769CF3A3D21079DB77E9E38D6414 ] RemoteRegistry C:\Windows\system32\regsvc.dll
17:31:08.0295 0x15ac RemoteRegistry - ok
17:31:08.0295 0x15ac [ 5AF682962162FCDB85B56CB8A0DB5E6B, 38A5EFFA4AFBD8E3AB936803198890F68FD7668E34D8BF48D59883001C4F35D9 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
17:31:08.0311 0x15ac RpcEptMapper - ok
17:31:08.0326 0x15ac [ A8DDFFFBA3F655C82AB5D4A249E4D414, A11C67BB58C7518FCEEB87F3693343CD662B6971605EE7E6CE0AE298BBB3D632 ] RpcLocator C:\Windows\system32\locator.exe
17:31:08.0326 0x15ac RpcLocator - ok
17:31:08.0342 0x15ac [ BCD3562ACB27B8137BF809F61BA44E80, 3BE2617996696AD8A2402C0767E55CE53EF48B4234660C9948E153B5ACBE98C7 ] RpcSs C:\Windows\system32\rpcss.dll
17:31:08.0358 0x15ac RpcSs - ok
17:31:08.0373 0x15ac [ C7BD738B9BF45E797A6089AF946BAC47, 1AE7B4671444AF1D597A2E69AF07809DA6B1277532EC74157BE64F914ADC684F ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
17:31:08.0373 0x15ac rspndr - ok
17:31:08.0389 0x15ac [ E21867D4A8FF3824150E56979E333610, 00FD801EAF2D7104537D33FD5044E314A13743FB9E94DA72F8D7A3AD66CFD1F2 ] s3cap C:\Windows\System32\drivers\vms3cap.sys
17:31:08.0389 0x15ac s3cap - ok
17:31:08.0389 0x15ac [ EA154EBBD85C649ED42C3BA43AD539FF, 689C9F9B89D0745FA8C3C1B4830B76D7758EFCC1DB2206C9A8D9E880F9C45E84 ] SamSs C:\Windows\system32\lsass.exe
17:31:08.0404 0x15ac SamSs - ok
17:31:08.0404 0x15ac [ 434F805B0B3840A52C19C96A7BB64AA3, B5B92E07091ECB75B1A72AF1E15F856C05492236D5F86137163DAE60B64CCA44 ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
17:31:08.0404 0x15ac sbp2port - ok
17:31:08.0420 0x15ac [ B1B737661EF9D779FEE8866CC38F7B98, DD3DC0057A280F59FF83C6F8D111B28A60AE53200FE0732CEE71C8E207584169 ] SCardSvr C:\Windows\System32\SCardSvr.dll
17:31:08.0420 0x15ac SCardSvr - ok
17:31:08.0436 0x15ac [ 3F21FBE0550B41240B6A864F6C8C15E4, ED54180631DEADDF76649E3B78D5CFC213274075E3BD11541D99C7765CC048CD ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
17:31:08.0436 0x15ac scfilter - ok
17:31:08.0498 0x15ac [ 54DEECA318F4EA694F5FA66AAA68BB0D, 1B11ED1431AC59C08E2720EE416ADF1A21EAF07C6730DD4D8F6D499597F9AE98 ] Schedule C:\Windows\system32\schedsvc.dll
17:31:08.0514 0x15ac Schedule - ok
17:31:08.0545 0x15ac [ BAEE72BFBEC7B96AA85F861A6F4FE428, 78E6C63848C5AFCD67C08F2A17BFD764524B8A9117EAF74CD5514F8239E155CB ] SCPolicySvc C:\Windows\System32\certprop.dll
17:31:08.0545 0x15ac SCPolicySvc - ok
17:31:08.0576 0x15ac [ 6F685ED83090697ED608372722D32B9E, FAE3AB971A47D6A0BA28C75B27E0CF7F09B28AD800DD76C0AF4D715C931AB338 ] sdbus C:\Windows\System32\drivers\sdbus.sys
17:31:08.0592 0x15ac sdbus - ok
17:31:08.0592 0x15ac [ B433671D5A6D36D35141A56B6E75D086, 46E8DBE722E8422ECDF5F4410F26100B55F0799A0293AFFF27AD3BD4DF0FC9E7 ] SDRSVC C:\Windows\System32\SDRSVC.dll
17:31:08.0592 0x15ac SDRSVC - ok
17:31:08.0608 0x15ac [ 29A975CB4DDA873C80B0AAA91FFA74B8, CCD1956D2AB61F6A26555034356A773B820FA34F14A2CE8567AB5BBFE136B801 ] sdstor C:\Windows\System32\drivers\sdstor.sys
17:31:08.0608 0x15ac sdstor - ok
17:31:08.0623 0x15ac [ A8CC993CED4DF9710ADAABC9DA66B660, 76D64D0D762DCF05AE494749514D91D3F0FF4EC2D0A1FFEA8A5F8708832DF17C ] secdrv C:\Windows\system32\drivers\secdrv.sys
17:31:08.0623 0x15ac secdrv - ok
17:31:08.0623 0x15ac [ B83564D1603B821CCD82CC335C87AD97, 05E75C0E0F69637462FE6F844FBF6835558E5FD0660A8C0CBA621DC3E2F39C9B ] seclogon C:\Windows\system32\seclogon.dll
17:31:08.0639 0x15ac seclogon - ok
17:31:08.0655 0x15ac [ 64355214ECE4573F553353597779EF11, EE47948A806B75EC62A02E13D4A01882DA2F68D05C4D87C98DF96A80590CC115 ] SENS C:\Windows\System32\sens.dll
17:31:08.0670 0x15ac SENS - ok
17:31:08.0670 0x15ac [ 7E4F0DCAF6739C830B8043CCBF79ABBF, 2028E9BDE0DE22D700EB1CC5488CD2FB404FDC3AB77D551A14EB1E76816C38F5 ] SensrSvc C:\Windows\system32\sensrsvc.dll
17:31:08.0686 0x15ac SensrSvc - ok
17:31:08.0686 0x15ac [ 3DE395F302C4DCD3D4792EB786A7B402, 7D6EB490079DE0E05B69B27862F4722B2CC7BAEBCB99C5BD4BF991BD76434348 ] SerCx C:\Windows\system32\drivers\SerCx.sys
17:31:08.0686 0x15ac SerCx - ok
17:31:08.0701 0x15ac [ C706C88BAEE6B23C86C791EF47D901D4, 626378C827D9877575098475B6AB7C30D19B6904AAD1ABD4F369E8880A443586 ] Serenum C:\Windows\System32\drivers\serenum.sys
17:31:08.0701 0x15ac Serenum - ok
17:31:08.0701 0x15ac [ F492965E2EDDB1BCA2E000A1085BE082, 6897D67B22483635F896C04C3FDDA320CF2716EE75D22D1C839B324668CC5A4B ] Serial C:\Windows\System32\drivers\serial.sys
17:31:08.0701 0x15ac Serial - ok
17:31:08.0701 0x15ac [ 409C91880A6A70FDD33CFEDC43D0F808, 306FC21667EC8C360E09E3B7CDEF8CCF99D08A33E4041195B968706B75DD6349 ] sermouse C:\Windows\System32\drivers\sermouse.sys
17:31:08.0717 0x15ac sermouse - ok
17:31:08.0733 0x15ac [ E19B1B639B5017BF6224744565B08E38, 80E3EF170E3DB3FCA318D3EE2DAA49FF27814AD53DB4FABB6567A8BBBD269B98 ] SessionEnv C:\Windows\system32\sessenv.dll
17:31:08.0748 0x15ac SessionEnv - ok
17:31:08.0748 0x15ac [ BDF7F7AC3700DAF0A19D19C008D408C0, E56F2E8669D1DFF7F0EFDA95F3247E685E25ABA17321A1DB51B5F7CD75512337 ] sfloppy C:\Windows\System32\drivers\sfloppy.sys
17:31:08.0748 0x15ac sfloppy - ok
17:31:08.0780 0x15ac [ 578AA5D3C4A4C1052C9B13B4FA748B00, ABFA1E1E64B1CFD7AA52D47580A77C0D1AAF935B694FAA7876C815398744D325 ] SharedAccess C:\Windows\System32\ipnathlp.dll
17:31:08.0795 0x15ac SharedAccess - ok
17:31:08.0826 0x15ac [ C416B8E2EF38D100DA19C4DA8A3E8A17, 1939FB82DEDF5BC7A9F70A0B6013E4C76D8384823400BA9DE15477A86C3C9D40 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
17:31:08.0842 0x15ac ShellHWDetection - ok
17:31:08.0842 0x15ac [ A5A3C56B5E46F77E6992A3772F8E4C8D, 87368D7F54964D699D648771F035F70FBB3FB504FA64106CFE4E3E7784C6E5AD ] sisagp C:\Windows\system32\drivers\sisagp.sys
17:31:08.0842 0x15ac sisagp - ok
17:31:08.0858 0x15ac [ 39763193254A265FDA6F08EF375549DF, 19FD327F61F4057221C180DFA3C0BF6BD35FF3F6185E677A10877B74A8DA0B02 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys
17:31:08.0858 0x15ac SiSRaid2 - ok
17:31:08.0858 0x15ac [ 2A95CC135283B3C56B783171532B62D0, 5041D60D1F89C0551C7237FCF1C3F59C5124C98CDA10B2669255E9A859FD4B93 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
17:31:08.0858 0x15ac SiSRaid4 - ok
17:31:08.0920 0x15ac [ 50D9949020E02B847CD48F1243FCB895, 5BDAD5E44DE5B412645142810C5FCE4B2D9685F928FF4A6B836A9DCE7725BD78 ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe
17:31:08.0920 0x15ac SkypeUpdate - ok
17:31:08.0936 0x15ac [ 1FA732F662375B134B510B44686BABD2, 19AABA3445994003592EFFA46476C0892028DB0BC8E9ACCC9EBBB4471CDA433A ] SNMPTRAP C:\Windows\System32\snmptrap.exe
17:31:08.0951 0x15ac SNMPTRAP - ok
17:31:08.0998 0x15ac [ D9F46CF618066EB615B26AF03B8BEF7F, 7BCE94C3A2F7E241F659E6D07CED328CEE7E74227C8CBB59B45099B051B795D4 ] spaceport C:\Windows\system32\drivers\spaceport.sys
17:31:08.0998 0x15ac spaceport - ok
17:31:09.0014 0x15ac [ C8E9372645392E23CF36B4C1686B1509, 7D894F94240172C2DD7E95BF0EBC698F1F261C53767EFCD46AB2E3A7F9B412C9 ] SpbCx C:\Windows\system32\drivers\SpbCx.sys
17:31:09.0014 0x15ac SpbCx - ok
17:31:09.0045 0x15ac [ D246A6F32CD74A0AE1F00EF7C73A1DBC, 771CFD6D6474DE9CF0ABAF2AF3E800125217CC7EAEA92D6D04F8274080961E5E ] Spooler C:\Windows\System32\spoolsv.exe
17:31:09.0076 0x15ac Spooler - ok
17:31:09.0233 0x15ac [ 34E2F63B923188EF08379BA7441BBA56, 61B38055BB1982A8BEC6270392074B5975C9CE768A77B5269C387BAFCE048A4C ] sppsvc C:\Windows\system32\sppsvc.exe
17:31:09.0358 0x15ac sppsvc - ok
17:31:09.0358 0x15ac [ 8B20E19AF56E21E9549D4CA496BB78D6, 31DE1ACAFDD97E1BA978A88C2649D50B089C0550ACCE6AD6B88E6DFC7BCA3021 ] srv C:\Windows\system32\DRIVERS\srv.sys
17:31:09.0373 0x15ac srv - ok
17:31:09.0420 0x15ac [ 946F132B243780B8903116CCCE6EF466, 33EF5333425010B06CFA74013BCBC48658D4391F8DD963BA63A9E0C9BCC40AE8 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
17:31:09.0436 0x15ac srv2 - ok
17:31:09.0483 0x15ac [ E4DE9C94F2A49BA9E8D31C7D408AEF1F, F43AA5BD689B183DF843167361E28295D807E60CF563B3BF51C9114742ABB073 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
17:31:09.0483 0x15ac srvnet - ok
17:31:09.0483 0x15ac [ 9B4B2E29751312BF65CBE301AFB746A1, 1D7A8F818A6ABCE927E393E91D365B6269BF03D15A0D5BB212A683CDF49565BB ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
17:31:09.0498 0x15ac SSDPSRV - ok
17:31:09.0498 0x15ac [ F23D18AF0C34B5167BA72F9B95EEAB06, 4565F7740650456C559BCF692CFD060556F540C42610CFC19EABE20630D60E9F ] SstpSvc C:\Windows\system32\sstpsvc.dll
17:31:09.0514 0x15ac SstpSvc - ok
17:31:09.0561 0x15ac [ B5C26A6A92C9A6CD64399D2B06D29464, 6CAF09892D4C516361125AAF5387D5BF306EC26133EE45DBBC35C8B6190BAD24 ] Steam Client Service C:\Program Files\Common Files\Steam\SteamService.exe
17:31:09.0576 0x15ac Steam Client Service - ok
17:31:09.0639 0x15ac [ 5A19667A580B1CE886EAF968B9743F45, 0A9EBE4057A0A6EF4732623794C2416A6BD8B87356DA46652BD92762505F57C7 ] Stereo Service C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
17:31:09.0655 0x15ac Stereo Service - ok
17:31:09.0670 0x15ac [ CC17B7A7C4DD72BE2B10DAF254147A2B, E208860E58D1B9E8B3481404BA67A2B6131415B329ADED5BDE8C35B40B9372C3 ] stexstor C:\Windows\system32\drivers\stexstor.sys
17:31:09.0670 0x15ac stexstor - ok
17:31:09.0701 0x15ac [ B9A28B6DA5EFEE202FAD396FEDFE73D8, EE7F313EFAAE36337B51F3A1EAB68906F9116B6A6F4365C515EAC89CCED5B4FB ] StiSvc C:\Windows\System32\wiaservc.dll
17:31:09.0717 0x15ac StiSvc - ok
17:31:09.0764 0x15ac [ EC9B71B41184284E65F496B39C572F30, 78F8874E76501D8DEBFFC86463FC4078B5C8CDA930F93A28DE168730C2EC74A8 ] storahci C:\Windows\system32\drivers\storahci.sys
17:31:09.0764 0x15ac storahci - ok
17:31:09.0780 0x15ac [ B00DA575ADF228C1D33269CDE92A68EC, 33787F3314CB28B0112E24D1E4160E76A051B102BB54B800FE44DBB2AA0B331E ] storflt C:\Windows\system32\DRIVERS\vmstorfl.sys
17:31:09.0780 0x15ac storflt - ok
17:31:09.0795 0x15ac [ 9AA77CAD9ADF035109B9E65EB3F8D61A, 9CB8A2D0DA85FED8D1B1C809C15BC25C0905B10F32B018A1E6D7DB7D224E631D ] StorSvc C:\Windows\system32\storsvc.dll
17:31:09.0795 0x15ac StorSvc - ok
17:31:09.0811 0x15ac [ 5C538C4975B53C31500BC535FF436CDC, 84FE3FA917970B00C73AF4364357204548956D23286F5CC5BFFA76996C30F358 ] storvsc C:\Windows\system32\drivers\storvsc.sys
17:31:09.0811 0x15ac storvsc - ok
17:31:09.0826 0x15ac [ 8DF8D4AEADF32F5D4C6FFA9936E16A10, BC8A7B1E63B4BDE541E51338CF20247D62944665C2A68C40145787EEC90C1847 ] svsvc C:\Windows\system32\svsvc.dll
17:31:09.0826 0x15ac svsvc - ok
17:31:09.0826 0x15ac [ 8DCA45AD5E2D83E00A1952BE2B541A27, FA80FD42EFB4F0D27CC28DC3E92C5D365D851389643D7E083B5A8AD493E10815 ] swenum C:\Windows\System32\drivers\swenum.sys
17:31:09.0842 0x15ac swenum - ok
17:31:09.0858 0x15ac [ B53421FCD315F35837A07716E9F7A1E7, C38F0E84343B0A0E253B90949B2E707C5F0C3266BDDAF728D0F9B8CDAD81592E ] swprv C:\Windows\System32\swprv.dll
17:31:09.0873 0x15ac swprv - ok
17:31:09.0889 0x15ac [ 997F0D578CDB5D25EB242B84FC24E0D4, AD567C7D43B90D608F884DCC488F5C910D7BA7E60CCE2A4BD4179EA91C33230A ] Synth3dVsc C:\Windows\System32\drivers\Synth3dVsc.sys
17:31:09.0889 0x15ac Synth3dVsc - ok
17:31:09.0967 0x15ac [ 3F2E97730BE6855F51E2512B377E346E, CDEE720055A35CFE0B0A06FE8A5A034AB705DC5771A3D2FF219754A234AA8C1E ] SysMain C:\Windows\system32\sysmain.dll
17:31:09.0998 0x15ac SysMain - ok
17:31:10.0045 0x15ac [ 20A4983586DC02E81D4CC17A3D0399DF, A515270B35AE1332B594F25A5DCA7D897CF666032868B21316528A3817DC5ACB ] SystemEventsBroker C:\Windows\System32\SystemEventsBrokerServer.dll
17:31:10.0045 0x15ac SystemEventsBroker - ok
17:31:10.0061 0x15ac [ 3705A5E2A2834EA94EF073D87AF88D8F, 739DADA36D2061104866DAC763C8963E81A4779DC9F7C57D7B892DCEAF09FF40 ] TabletInputService C:\Windows\System32\TabSvc.dll
17:31:10.0076 0x15ac TabletInputService - ok
17:31:10.0092 0x15ac [ 4A10477302BB35A17ED818CD8720478A, BA8916728A27ACE600292AC40AE2F5FB6864DC07A0AD4845644CBF5DA1C53536 ] TapiSrv C:\Windows\System32\tapisrv.dll
17:31:10.0108 0x15ac TapiSrv - ok
17:31:10.0186 0x15ac [ F117A5ACA0D160CCB65312EF6EA3DAFC, F7652EA57BD1044CCEEED7EEA2F0DFD61C25B17F92841935B16DF283299242A8 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
17:31:10.0248 0x15ac Tcpip - ok
17:31:10.0311 0x15ac [ F117A5ACA0D160CCB65312EF6EA3DAFC, F7652EA57BD1044CCEEED7EEA2F0DFD61C25B17F92841935B16DF283299242A8 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
17:31:10.0326 0x15ac TCPIP6 - ok
17:31:10.0342 0x15ac [ D40FB114D559FDDE599293E1B5107644, A716D610199DF1DB3D59EF83E2BB7251C3E3398D63747ED51626F6876ED58AE0 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
17:31:10.0342 0x15ac tcpipreg - ok
17:31:10.0342 0x15ac [ 0886D9F1B5A5334FBB143A260E4BFB5C, 97850CE2E2852913E9C190FAA7D5AC4E7223C0F0F63844E440968C8788104B20 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
17:31:10.0358 0x15ac tdx - ok
17:31:10.0514 0x15ac [ 576918B02840A360702051BC4269B13F, ADC9798F280FB0238C63C798912264E88E244257DF8ACF1854343D14FAC73E19 ] TeamViewer8 C:\Program Files\TeamViewer\Version8\TeamViewer_Service.exe
17:31:10.0670 0x15ac TeamViewer8 - ok
17:31:10.0670 0x15ac [ 0E099CC6D72DD47CAB9CC3D5DDF0A93E, 5F76385F0087A7C2823FDA92081919DD22EB90CB6C140417522AC0A00AD5E49B ] terminpt C:\Windows\System32\drivers\terminpt.sys
17:31:10.0670 0x15ac terminpt - ok
17:31:10.0717 0x15ac [ D4868697E71011CC2244D2244AED2FB5, A7883B6B4A8C6CB6B9835B949D82A663EBB9AB7F12E257D59258F512C02AACDF ] TermService C:\Windows\System32\termsrv.dll
17:31:10.0733 0x15ac TermService - ok
17:31:10.0748 0x15ac [ 14378287DC6D4CF1E3279AA9EBD70665, 50AD9D328802097DF85D10486521AEDA980CDA37FCD47DA4C77ACF607A4F633B ] Themes C:\Windows\system32\themeservice.dll
17:31:10.0748 0x15ac Themes - ok
17:31:10.0795 0x15ac [ CAAAB04E7775D8F11E166482F3596539, FE4D2043E63586521F84CEC0C12764AE97EF58E2BE2666BA21692D95A965734A ] THREADORDER C:\Windows\system32\mmcss.dll
17:31:10.0795 0x15ac THREADORDER - ok
17:31:10.0826 0x15ac [ BAD3F8C116412AF06DEE2883333BAB9E, 7BF53CA62F71ADA7FC858AEB6534BAC6BCFF0E5B722CE759F44B8476C24142C8 ] TimeBroker C:\Windows\System32\TimeBrokerServer.dll
17:31:10.0842 0x15ac TimeBroker - ok
17:31:10.0873 0x15ac [ A7A43D0865B8E5D2E46CAF6BA423D0AC, 053CC21EC2F6D57850547F932B288CB7E9D775BE80D62FE0C79CFBE4B534D93B ] TPM C:\Windows\system32\drivers\tpm.sys
17:31:10.0889 0x15ac TPM - ok
17:31:10.0889 0x15ac [ 7B19BA44B3A44494DBA300206FABA998, 3D69F17E4D25C0D72E8A575FEB3763E600835ABBE64F460A166EED27BA0878C0 ] TrkWks C:\Windows\System32\trkwks.dll
17:31:10.0905 0x15ac TrkWks - ok
17:31:10.0983 0x15ac [ 02D1FC0FDA92FB34434166C612F95E5B, 5D4F98B77C9014BBCCF8A009F6B49E7AF0F42035DD3388AFCE67FDB6E38444A6 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
17:31:10.0983 0x15ac TrustedInstaller - ok
17:31:10.0983 0x15ac [ B9E622309DE8C780E6818531586F2221, B43A6C6DC2CE521BDEB381C9E6B7D2B5951FC5290145C5131BB4B324A52D990C ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
17:31:10.0998 0x15ac TsUsbFlt - ok
17:31:11.0014 0x15ac [ 074440A1C04913F7DF81839565A47917, F5AC1F6B44B0BA924C20CEEF6824D20E000D2C9E7D2041D0AB2A70332771998D ] TsUsbGD C:\Windows\System32\drivers\TsUsbGD.sys
17:31:11.0014 0x15ac TsUsbGD - ok
17:31:11.0030 0x15ac [ 8E998D0E9AFFC3712FC86C484A17827C, 1082E3B64FA0096955AD514E32923CC415825EA35A9AA9DC612515BA1FC6B40D ] tsusbhub C:\Windows\system32\drivers\tsusbhub.sys
17:31:11.0030 0x15ac tsusbhub - ok
17:31:11.0045 0x15ac [ 62EE13D4EE7DB793C13F33F51A21170E, 7597353FF7E272A9A2ED6835F0E6C5980F19C2AB243C7AA34CDA4D11B4307007 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
17:31:11.0045 0x15ac tunnel - ok
17:31:11.0061 0x15ac [ E0750A399E378C8433165C843FD7F732, B9C12C7FA1C029988B3CAFA6D2BDBA36FE0CB3BF25793821608964750CB9A63E ] uagp35 C:\Windows\system32\drivers\uagp35.sys
17:31:11.0061 0x15ac uagp35 - ok
17:31:11.0077 0x15ac [ B3B9DDEEFC3B823B3067DCADCD80014D, CA1F7B7E79820F401112CB5568E4DF3D4FE93B24EE29BDCD97DD5539FA1405DC ] UASPStor C:\Windows\System32\drivers\uaspstor.sys
17:31:11.0077 0x15ac UASPStor - ok
17:31:11.0123 0x15ac [ 14AF2FDF422E64F5D287B94E7CDEB13E, B670F6F189E7F010F1197C9AFE0986503FCA1F71EBB3C910B337FD81959794E5 ] UCX01000 C:\Windows\System32\drivers\ucx01000.sys
17:31:11.0123 0x15ac UCX01000 - ok
17:31:11.0170 0x15ac [ F7C3F24307957862CA4E0E11DDC88B2F, 1F4A52955F72CD858C8442B63AAA8FA18612D8BF34D91CED27D52658D40C9E78 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
17:31:11.0186 0x15ac udfs - ok
17:31:11.0202 0x15ac [ 3F7B87F8E850907783AC681AF542601D, BBAB875B6DD8275B6B21633F2FA95542FBDA8DB17FAD4B77013FD38033453C18 ] UI0Detect C:\Windows\system32\UI0Detect.exe
17:31:11.0202 0x15ac UI0Detect - ok
17:31:11.0217 0x15ac [ C4FE9CC8AA769B1D140C07308574969D, BBD51A54D35B15FE72A0096A10A350911C15B07B232F933D6A80E38CFA6C8B8E ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
17:31:11.0217 0x15ac uliagpkx - ok
17:31:11.0217 0x15ac [ D54E16CE5FF8493E611CFF34F96F5A00, 65666C17E0CD6935D54C121D582D44C4C83DA7E7967CA2809CC7CD2590DC67B8 ] umbus C:\Windows\System32\drivers\umbus.sys
17:31:11.0217 0x15ac umbus - ok
17:31:11.0233 0x15ac [ 4F92FB5D2353C1B75F0C3138C1822FC3, 807A38D264E84ABD4275B696B1762BAA1BD5D143279EB305D8C9255BB697FF92 ] UmPass C:\Windows\System32\drivers\umpass.sys
17:31:11.0233 0x15ac UmPass - ok
17:31:11.0233 0x15ac [ CC0CC034C75F8D445B7E561BA018E166, 3431B446D7612F027066A878199A5600417521738F6CDB880E1AC39BA4A37FB4 ] UmRdpService C:\Windows\System32\umrdp.dll
17:31:11.0248 0x15ac UmRdpService - ok
17:31:11.0264 0x15ac [ 4359A695FB0CF5C0C78A7FD2DACABC00, CB2EC1CF683ECA588C9C7C3F4DA0FE32B6E02DC4424D96F55763FF5330E79B1F ] upnphost C:\Windows\System32\upnphost.dll
17:31:11.0280 0x15ac upnphost - ok
17:31:11.0327 0x15ac [ F433A6D23B444461CEC9A8125350916C, 4BBB37B5F73AD710F6345ED9B1FB065314584E65D98D410CEE7261C363970898 ] usbaudio C:\Windows\system32\drivers\usbaudio.sys
17:31:11.0327 0x15ac usbaudio - ok
17:31:11.0373 0x15ac [ D982889116DBD5B36DA276B3C52BC751, 50292E34838750A841ED684A986F74B35317F420556DE45B64AAB1020B02E9B1 ] usbccgp C:\Windows\System32\drivers\usbccgp.sys
17:31:11.0373 0x15ac usbccgp - ok
17:31:11.0405 0x15ac [ 157FA08A7E30735A032C08F39F6F7C55, 1A48D961D2BA8A948EBD967CA854E34260A9FB26D5BDD5C7BF3DF9A21B4CB19E ] usbcir C:\Windows\System32\drivers\usbcir.sys
17:31:11.0405 0x15ac usbcir - ok
17:31:11.0420 0x15ac [ 09C8E68669444AFE92B71480110952B1, 0F9FE4F596D1FC196F6D7A6ABD9EACB415B75D51D8E32E78109755AD9AF9D1B9 ] usbehci C:\Windows\System32\drivers\usbehci.sys
17:31:11.0420 0x15ac usbehci - ok
17:31:11.0436 0x15ac [ 03E855AD3F47B802542B0812F47FB9BD, 3D83C605E5221365ED03C8FE5C373C0E9E8A8AB5F0C850ECA5FD78AED1F74F58 ] usbhub C:\Windows\System32\drivers\usbhub.sys
17:31:11.0436 0x15ac usbhub - ok
17:31:11.0467 0x15ac [ B149D5CC6079190824918FCC12C15507, C122BA5418A17C2AA62D9D023EE6D3AACBBD62351EC3D38AB5FF60FD701616F2 ] USBHUB3 C:\Windows\System32\drivers\UsbHub3.sys
17:31:11.0467 0x15ac USBHUB3 - ok
17:31:11.0498 0x15ac [ D3641BCE4BE9858423CF0FA843A77AC1, 92AC3997CCB5FA84DD41774ED6417E095AE83E1E00E7A1E208B89AA266DEB456 ] usbohci C:\Windows\System32\drivers\usbohci.sys
17:31:11.0498 0x15ac usbohci - ok
17:31:11.0545 0x15ac [ 3B68E41FDF2B053F148E4AA0B456A435, 5CFDCBAB8BDC711EB0CDCAE82693A809CA7785A23E837E877EF32194F7282E05 ] usbprint C:\Windows\System32\drivers\usbprint.sys
17:31:11.0561 0x15ac usbprint - ok
17:31:11.0561 0x15ac [ 4A8A4A85A6C7BCF230D3523A00E69998, F6CE178AB41D5481E99AD10820D1B110C787882DB42B45022AB1EBAE784F15CC ] usbscan C:\Windows\System32\drivers\usbscan.sys
17:31:11.0577 0x15ac usbscan - ok
17:31:11.0592 0x15ac [ 6EE1CB13D89DFC95B6D7A90B38113F34, 1740EB93B379348071810E7B572C207CED38E7527E43051EB44FB2C8FB3C3E46 ] USBSTOR C:\Windows\System32\drivers\USBSTOR.SYS
17:31:11.0592 0x15ac USBSTOR - ok
17:31:11.0608 0x15ac [ 043BC3831B94A57122BE351658B61DC2, 849E7B8B6E8C9D1B4D6B1343B41117B8F012CB1606F0D8491BBD15DD506AAA2B ] usbuhci C:\Windows\System32\drivers\usbuhci.sys
17:31:11.0608 0x15ac usbuhci - ok
17:31:11.0639 0x15ac [ 6AC515E4FEA8A0FDAA3F80C4CB112AEA, A4F2C6B186FFBC8541080726D9FA259282BD91AD25C7839DC68629C44F6478AD ] usbvideo C:\Windows\System32\Drivers\usbvideo.sys
17:31:11.0655 0x15ac usbvideo - ok
17:31:11.0670 0x15ac [ BAF8495C4D3301C3C75A88454C53517F, A79EF756A55E860DA4E05FEDD232115D54D0FEF60881DE483D16404F8C4D3C7F ] USBXHCI C:\Windows\System32\drivers\USBXHCI.SYS
17:31:11.0670 0x15ac USBXHCI - ok
17:31:11.0702 0x15ac [ F16B9D140B6C144D9A2832187CEABFBB, 1C9F1DB0B0E637346EE7FC96BBD3BE35C7CFF39A73CF37203E950C94AAFA82A8 ] usb_rndisx C:\Windows\system32\DRIVERS\usb8023x.sys
17:31:11.0717 0x15ac usb_rndisx - ok
17:31:11.0717 0x15ac [ EA154EBBD85C649ED42C3BA43AD539FF, 689C9F9B89D0745FA8C3C1B4830B76D7758EFCC1DB2206C9A8D9E880F9C45E84 ] VaultSvc C:\Windows\system32\lsass.exe
17:31:11.0717 0x15ac VaultSvc - ok
17:31:11.0733 0x15ac [ 0AA85E1C967652071D283147AC4B17CD, CA643FA1B71751D286C55C36BD9A7492E899526F7851839208A46AE17E65D59D ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
17:31:11.0733 0x15ac vdrvroot - ok
17:31:11.0764 0x15ac [ 7F3DF007481BC1215EC2485E93558E65, AEDF57A019959E8B495F6DEECC5CD0635DF8A67EDAA1072966C4323E9B958DE9 ] vds C:\Windows\System32\vds.exe
17:31:11.0780 0x15ac vds - ok
17:31:11.0795 0x15ac [ F70882757673FA7D4E466D811E1AC029, 6C940022DEF2F1D174953C15B73A3197218BD5528821923580657B2BED9FA607 ] VerifierExt C:\Windows\system32\drivers\VerifierExt.sys
17:31:11.0795 0x15ac VerifierExt - ok
17:31:11.0811 0x15ac [ 01F65399F930E5F26D39F18C1F665B03, AB688CEFFA2313A32757A20788E2BDC0C32DE42592231C7C0F26DEE51E7DE1A7 ] vhdmp C:\Windows\System32\drivers\vhdmp.sys
17:31:11.0827 0x15ac vhdmp - ok
17:31:11.0842 0x15ac [ 91A67D2DDDD75D173A6590B75E305E3C, 06B05073187B93263FE1697DAC2A76EAB16265EEE16E3CE86575B5DA97673AB7 ] viaagp C:\Windows\system32\drivers\viaagp.sys
17:31:11.0842 0x15ac viaagp - ok
17:31:11.0873 0x15ac [ 05DD6EA970A2493D8BFCE2CFCF2F445C, BB4AC5ECFAFA72282DCFBCD9469FA098CEB71CE545A8FF389B1294280FDC9C17 ] ViaC7 C:\Windows\System32\drivers\viac7.sys
17:31:11.0889 0x15ac ViaC7 - ok
17:31:11.0889 0x15ac [ 11283532CE62BA51557D00E09262ED78, 150AF6DE38A1B4C286AAAD465A5284C141B174FF9196C8F96132241B83757C4F ] viaide C:\Windows\system32\drivers\viaide.sys
17:31:11.0905 0x15ac viaide - ok
17:31:11.0905 0x15ac [ 2E4777120FC246CCF76A69C7BB4AEF57, FA156E7D1B19375FB5B8AB8E2E925FDC68D709109FEE4E5CDD785E666AB653AC ] vmbus C:\Windows\system32\drivers\vmbus.sys
17:31:11.0920 0x15ac vmbus - ok
17:31:11.0920 0x15ac [ FA7B57977E55B60409FD9E36FC57395C, 380EA7ED9FDCE6CF3E134391A87685FB92DD8A468BDEEF22A4E3E7EF694A5820 ] VMBusHID C:\Windows\System32\drivers\VMBusHID.sys
17:31:11.0920 0x15ac VMBusHID - ok
17:31:11.0952 0x15ac [ 57AE02EE534B4BF0E09462C6C2665D55, 3A74EA800A69D9B6F67114287022F50FC027EDB0DB64D39DC8D8A9597DB309E8 ] vmicheartbeat C:\Windows\System32\ICSvc.dll
17:31:11.0967 0x15ac vmicheartbeat - ok
17:31:11.0967 0x15ac [ 57AE02EE534B4BF0E09462C6C2665D55, 3A74EA800A69D9B6F67114287022F50FC027EDB0DB64D39DC8D8A9597DB309E8 ] vmickvpexchange C:\Windows\System32\ICSvc.dll
17:31:11.0983 0x15ac vmickvpexchange - ok
17:31:11.0983 0x15ac [ 57AE02EE534B4BF0E09462C6C2665D55, 3A74EA800A69D9B6F67114287022F50FC027EDB0DB64D39DC8D8A9597DB309E8 ] vmicrdv C:\Windows\System32\ICSvc.dll
17:31:11.0998 0x15ac vmicrdv - ok
17:31:11.0998 0x15ac [ 57AE02EE534B4BF0E09462C6C2665D55, 3A74EA800A69D9B6F67114287022F50FC027EDB0DB64D39DC8D8A9597DB309E8 ] vmicshutdown C:\Windows\System32\ICSvc.dll
17:31:12.0014 0x15ac vmicshutdown - ok
17:31:12.0014 0x15ac [ 57AE02EE534B4BF0E09462C6C2665D55, 3A74EA800A69D9B6F67114287022F50FC027EDB0DB64D39DC8D8A9597DB309E8 ] vmictimesync C:\Windows\System32\ICSvc.dll
17:31:12.0030 0x15ac vmictimesync - ok
17:31:12.0030 0x15ac [ 57AE02EE534B4BF0E09462C6C2665D55, 3A74EA800A69D9B6F67114287022F50FC027EDB0DB64D39DC8D8A9597DB309E8 ] vmicvss C:\Windows\System32\ICSvc.dll
17:31:12.0030 0x15ac vmicvss - ok
17:31:12.0045 0x15ac [ 7E8BCEEA56197925D944CA7D230596F7, 6259BBFCF75C407650181C8260F9AB7E0A2F2DFD0BAEBEC9D56B9731268D6A25 ] volmgr C:\Windows\system32\drivers\volmgr.sys
17:31:12.0045 0x15ac volmgr - ok
17:31:12.0061 0x15ac [ 9C21037D3983D9B93190D2AA16570395, DEA24368100F610BBDD320AE86E220928B228DD66A0836FB83193ABE2F7991F7 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
17:31:12.0061 0x15ac volmgrx - ok
17:31:12.0092 0x15ac [ BF079843E272759BAE587FB980163293, 7D5CCBA8AFEC9638E0D7E487B1277BBB2C6BE13C1DA35077C28DCBE98FBF671D ] volsnap C:\Windows\system32\drivers\volsnap.sys
17:31:12.0092 0x15ac volsnap - ok
17:31:12.0108 0x15ac [ C5B79DA9C82C01EEFAABA713A858649E, 1C1F88224C537EF6FC3BC5A52C7B53492CF10A9A79EBF603CA073961462DB6FD ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
17:31:12.0123 0x15ac vsmraid - ok
17:31:12.0202 0x15ac [ 39FA161A2CD3DFA1062AD2A0F9B91F00, E2EF530C0C89FF20E36215E7F34A3A0EF7837E03C894BC064EBB1E00E9591F2D ] VSS C:\Windows\system32\vssvc.exe
17:31:12.0233 0x15ac VSS - ok
17:31:12.0264 0x15ac [ AB5F5CC034E31E496606E666657F3CC2, 0730FEB03820C1B63BB7B1C3F72E67CAC199683C770ED70F077335F7360C6BAC ] VSTXRAID C:\Windows\system32\drivers\vstxraid.sys
17:31:12.0264 0x15ac VSTXRAID - ok
17:31:12.0280 0x15ac [ 23044877230094EE20D057BC63ED19F0, 60AE16156335720B4204A8AA3ED48633A803B7B76AB2185FBF8A429DA5A6CD00 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys
17:31:12.0280 0x15ac vwifibus - ok
17:31:12.0295 0x15ac [ 56A40C6DFB12E33B88887C4F9D5917FF, 1701ACF3C2F71C2BCC211EA0F110F85383E09C5554836FC57FFAF76C1ADA7244 ] W32Time C:\Windows\system32\w32time.dll
17:31:12.0311 0x15ac W32Time - ok
17:31:12.0311 0x15ac [ B4254668F5806AAA051A320FE88146F6, 12C6C79DF6D385F7A1E827B54AF42D7005379B8C5420A62CAC64CA181BDB2CD2 ] WacomPen C:\Windows\System32\drivers\wacompen.sys
17:31:12.0327 0x15ac WacomPen - ok
17:31:12.0358 0x15ac [ 44D1EF3CDB0B286FD73A7C0144CC6B1E, 98FDCF1079D04B44CDF183C3BF2FC97E5B65E486E834265200A9B96F958F1D1B ] Wanarp C:\Windows\system32\DRIVERS\wanarp.sys
17:31:12.0373 0x15ac Wanarp - ok
17:31:12.0373 0x15ac [ 44D1EF3CDB0B286FD73A7C0144CC6B1E, 98FDCF1079D04B44CDF183C3BF2FC97E5B65E486E834265200A9B96F958F1D1B ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
17:31:12.0373 0x15ac Wanarpv6 - ok
17:31:12.0436 0x15ac [ 09EA8F80C26FEAAE7D34AC82A871A909, 92F040B3313F2C7866FFDDF9E810D4C4B74FED2124B9C13D5143F69061A0CBE2 ] wbengine C:\Windows\system32\wbengine.exe
17:31:12.0483 0x15ac wbengine - ok
17:31:12.0498 0x15ac [ D7AB5A0119A208B53784863DF403C2F2, BD94564BC57BB2762043A7312A7474480BF6E94B4B025F45FB36FF3B2C1F6F5B ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
17:31:12.0514 0x15ac WbioSrvc - ok
17:31:12.0545 0x15ac [ 53D6F27D4AEBED33594C9EE64809A2BD, FADD604C5111469CD07E8ACE5FC7747D8610C312DFC2BC88F4C9DED3C82CE0A3 ] Wcmsvc C:\Windows\System32\wcmsvc.dll
17:31:12.0545 0x15ac Wcmsvc - ok
17:31:12.0608 0x15ac [ 2569DC92526501CA292A1985F54D174B, 6D8161EB1CDB8B56E2CC093F80E02C9DADEAD1CEAA28A8273FE3DAD7EFAF5023 ] wcncsvc C:\Windows\System32\wcncsvc.dll
17:31:12.0623 0x15ac wcncsvc - ok
17:31:12.0639 0x15ac [ 1B0A5043CC13F7DEB9873CC464FB11C7, F80C52F5D41884B7583C455D3B4FE3B2AC5133D7BEB973FDC127A75209051EAB ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
17:31:12.0655 0x15ac WcsPlugInService - ok
17:31:12.0655 0x15ac [ 9BF0CE1E215789664EB563A52EC0B83B, DD593BB20B6C691964FED6E5D6021FF20044D1D41D147226B3824F417531EAC8 ] Wd C:\Windows\system32\drivers\wd.sys
17:31:12.0655 0x15ac Wd - ok
17:31:12.0702 0x15ac [ 60DA7B2BA122BCCB40E6A8FEC0E24FF5, C2A8BE8F6CA910F2BABE430E5CA16F8E829FE998F02B74BB42F10A6229500054 ] WdBoot C:\Windows\system32\drivers\WdBoot.sys
17:31:12.0702 0x15ac WdBoot - ok
17:31:12.0748 0x15ac [ 25944D2CC49E0A6C581D02A74B7D6645, AF8FFAFEC07F1A6A3D4008E609E8E1D705A8DFCC7995C766E3946887203F7BEE ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
17:31:12.0780 0x15ac Wdf01000 - ok
17:31:12.0795 0x15ac [ 36E2926441E3AD4E3F128B670D967C85, 586E1B5F7A31E7ABA8689BEB44831FE1CFA91099F1DEA22126127D31EFCCF6EA ] WdFilter C:\Windows\system32\drivers\WdFilter.sys
17:31:12.0795 0x15ac WdFilter - ok
17:31:12.0811 0x15ac [ 2FC34E39DD120AB985DF1F63B10A4B4D, 5EBF98440B36F8A2FB8537F116E8E382746DB8C08E353A200875F8C6E0343345 ] WdiServiceHost C:\Windows\system32\wdi.dll
17:31:12.0811 0x15ac WdiServiceHost - ok
17:31:12.0827 0x15ac [ 2FC34E39DD120AB985DF1F63B10A4B4D, 5EBF98440B36F8A2FB8537F116E8E382746DB8C08E353A200875F8C6E0343345 ] WdiSystemHost C:\Windows\system32\wdi.dll
17:31:12.0827 0x15ac WdiSystemHost - ok
17:31:12.0858 0x15ac [ 07577AD2DA7D82B8A077DA4C1981DB9B, C787FD83CCC364FF5E0C65532D2246A9ED2BAD4ED18CBAD192130EB6C6673D24 ] WebClient C:\Windows\System32\webclnt.dll
17:31:12.0873 0x15ac WebClient - ok
17:31:12.0889 0x15ac [ 476746404FC104242EE8F049F2A6FA4A, 85C71C0C6D234EE71788C36545A30E8AF061EDDFAA20791563FE4D4F3B327F7B ] Wecsvc C:\Windows\system32\wecsvc.dll
17:31:12.0889 0x15ac Wecsvc - ok
17:31:12.0905 0x15ac [ B8A6C4812FD65EF95EB0F723A48C2462, 81A27AEEF8FE04A438DB87FAEC0F4DEFBE6786CA0ED04CF459EFBC6A5BCC6279 ] wercplsupport C:\Windows\System32\wercplsupport.dll
17:31:12.0905 0x15ac wercplsupport - ok
17:31:12.0936 0x15ac [ B40442F17F77B11F5F1BA961BB806E2B, 9E0E37E8DECFB090E49B492FF59DB1B498D97A5487508422FD2B7E132FFA8FC4 ] WerSvc C:\Windows\System32\WerSvc.dll
17:31:12.0952 0x15ac WerSvc - ok
17:31:12.0983 0x15ac [ 5EB8464B7E9FC7C9FDE98A9534C9EE6F, 615E76B8A3B4D6470B4CFEA7A578B87BEE4AD5D7C9F6665C748261BF70555A5F ] WFPLWFS C:\Windows\system32\DRIVERS\wfplwfs.sys
17:31:12.0983 0x15ac WFPLWFS - ok
17:31:12.0998 0x15ac [ 1764AA30CDF8AF8995D4A3CEADF6AB0D, C2876EEBF059222B74D85C2F7C5BC11F1B1A69A4103BF60D02DD0DE8630979DF ] WiaRpc C:\Windows\System32\wiarpc.dll
17:31:12.0998 0x15ac WiaRpc - ok
17:31:13.0014 0x15ac [ 8B7BBA41B67E92B73BAFEBDF570B3703, 02B278E591C0FA8600D8B0A46EA63D45A8C28788B1DF7202E0B9C62C18292B52 ] WIMMount C:\Windows\system32\drivers\wimmount.sys
17:31:13.0030 0x15ac WIMMount - ok
17:31:13.0045 0x15ac [ 5C1F8B5AC4BE0D13FA6691E6888DBDFB, B70BC29DF6811723F7FC8D1396CBB95BE93D2EE28F149C92429A27ADEABDE58D ] WinDefend C:\Program Files\Windows Defender\MsMpEng.exe
17:31:13.0045 0x15ac WinDefend - ok
17:31:13.0108 0x15ac [ 7A4797475ABAD6ECF1BCB08637922ECA, EFD91794165E06139D5488F0EFA53652620AA002F814E6BA6A364B7204CB0A36 ] WinHttpAutoProxySvc C:\Windows\system32\winhttp.dll
17:31:13.0123 0x15ac WinHttpAutoProxySvc - ok
17:31:13.0170 0x15ac [ 62B866B25BA8A3FCAEC457738DDA726E, F8112C6FC2A08F0E3E79CF8AB113147DEBFEBFFD79AFB4E412452146DB5F0AE7 ] winmgmt C:\Windows\system32\wbem\WMIsvc.dll
17:31:13.0170 0x15ac winmgmt - ok
17:31:13.0233 0x15ac [ EE08CA40473062F2962F1ED25C85306C, AED6BC65C0A710274CEC9ED811543419184CF36B9351FCB6626B53A5CC73F53D ] WinRM C:\Windows\system32\WsmSvc.dll
17:31:13.0295 0x15ac WinRM - ok
17:31:13.0327 0x15ac [ 30122927052480564DB0695B0CEADE62, 46731BCEDDF89E35808F0C4070F0FB34AE382E7D4A76FA4435340C5FE3931F09 ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
17:31:13.0327 0x15ac WinUsb - ok
17:31:13.0405 0x15ac [ 70752CC656FE991392C1FD262D386863, F4ED96F0AD6E1E6A7EACDF55870B4D324CEDF9962F828D6921D675A18902E2A1 ] WlanSvc C:\Windows\System32\wlansvc.dll
17:31:13.0452 0x15ac WlanSvc - ok
17:31:13.0545 0x15ac [ 7194769CA375358E5BD89929C2C47B4C, BE1B2C7AC9B223764F12EAADD17782A38586234E251A9B6F9B5764AB06C6A650 ] wlidsvc C:\Windows\system32\wlidsvc.dll
17:31:13.0592 0x15ac wlidsvc - ok
17:31:13.0592 0x15ac [ F8A31500A1B7EFDB95E5103A7C7275C1, 5D265CCD4F30603FBCF53BA60BCFF2A8B0801215B63FA6837AE6D401BFD1D416 ] WmiAcpi C:\Windows\System32\drivers\wmiacpi.sys
17:31:13.0592 0x15ac WmiAcpi - ok
17:31:13.0608 0x15ac [ 8899BED47FE375EE665AD1821598E471, 5E30CF5B49B675A5158300CACFCFA496D8D0060F8633BC22B40BE7D9D248C05A ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
17:31:13.0608 0x15ac wmiApSrv - ok
17:31:13.0686 0x15ac [ 207CB1C1770997621C1798E78EADCBBD, 4F8A1B3DCB1DEBD36D14758F80FF80363A3761D0938FB5932646EE2D56234551 ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
17:31:13.0717 0x15ac WMPNetworkSvc - ok
17:31:13.0717 0x15ac [ 9C3F5C7B716247756575235A3218FD38, 45F7814D706844E241FFEC5B45D4AD1A7B897992862FEEB12F944D733DE90B21 ] wpcfltr C:\Windows\system32\DRIVERS\wpcfltr.sys
17:31:13.0717 0x15ac wpcfltr - ok
17:31:13.0733 0x15ac [ 32B4145D0513E913C13A73C3E640C931, 63381DDC0DB272C661F57085C0911173BB3D76F788F7038767102D2A259E7AC0 ] WPCSvc C:\Windows\System32\wpcsvc.dll
17:31:13.0733 0x15ac WPCSvc - ok
17:31:13.0780 0x15ac [ 27AD1D070DFF4F508F063779CC8882C4, A8E0CDDF57F2DBFE38D0BE7C08360F37B63DE693B7BC11E3D45A362B7408C017 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
17:31:13.0780 0x15ac WPDBusEnum - ok
17:31:13.0795 0x15ac [ E5DCECD5A6A21AE48E94F6C9DC0E093C, C478397D77AA457A7A94724A653273BF95F84D6CA89F6C8BF34FBD987E3B8326 ] WpdUpFltr C:\Windows\system32\drivers\WpdUpFltr.sys
17:31:13.0795 0x15ac WpdUpFltr - ok
17:31:13.0842 0x15ac [ 7CB94AFFC7F56C8E645381DB9C23F845, DEDAA1BF36D419A9F48854F838935B3223E4F8FB8224E922739F03C8BDB051C7 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
17:31:13.0842 0x15ac ws2ifsl - ok
17:31:13.0874 0x15ac [ 463628A91197979E29B3794D8CCB7600, DC6848DAD0DA90F9C60048E419D0987C5D2FBAA0BEB7869CEB42927772BBE524 ] wscsvc C:\Windows\System32\wscsvc.dll
17:31:13.0889 0x15ac wscsvc - ok
17:31:13.0889 0x15ac WSearch - ok
17:31:13.0999 0x15ac [ 9E172AED2556DF2048DD9020B302F09C, 4E023DF0D3439E50FD8E9F24E52A9DACF0E2D6BD616C849DF5B07EB081C1F5DF ] WSService C:\Windows\System32\WSService.dll
17:31:14.0077 0x15ac WSService - ok
17:31:14.0202 0x15ac [ E7A853E47948FBE0F79B1C2AE718E72D, 72206DC038F10E457F8EC8411B0BD0B91B1B5F5CE42C01EEE69D11D07F584696 ] wuauserv C:\Windows\system32\wuaueng.dll
17:31:14.0295 0x15ac wuauserv - ok
17:31:14.0311 0x15ac [ 06E6F32C8D0A3F66D956F57B43A2E070, 9A6BD96A28294B0372F16E13D652FD603308F64B74A56E41E0C68C5E8011F943 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
17:31:14.0311 0x15ac WudfPf - ok
17:31:14.0327 0x15ac [ 867C301E8B790040AE9CF6486E8041DF, D867D6498C987944D99508B2FAD6D6B749FA1EDFE8124B0863D4A642352F0855 ] WUDFRd C:\Windows\System32\drivers\WUDFRd.sys
17:31:14.0327 0x15ac WUDFRd - ok
17:31:14.0342 0x15ac [ FE47B7BC8EA320C2D9B5E5BF6E303765, 34518DBD1E9EA6E5DA62273B18613761E1D9C6B4E074A93C6D639FBAF02222EA ] wudfsvc C:\Windows\System32\WUDFSvc.dll
17:31:14.0342 0x15ac wudfsvc - ok
17:31:14.0358 0x15ac [ 867C301E8B790040AE9CF6486E8041DF, D867D6498C987944D99508B2FAD6D6B749FA1EDFE8124B0863D4A642352F0855 ] WUDFWpdFs C:\Windows\system32\DRIVERS\WUDFRd.sys
17:31:14.0358 0x15ac WUDFWpdFs - ok
17:31:14.0358 0x15ac [ 867C301E8B790040AE9CF6486E8041DF, D867D6498C987944D99508B2FAD6D6B749FA1EDFE8124B0863D4A642352F0855 ] WUDFWpdMtp C:\Windows\system32\DRIVERS\WUDFRd.sys
17:31:14.0358 0x15ac WUDFWpdMtp - ok
17:31:14.0405 0x15ac [ 9450B8D5C88ADD67EA982E071C48D681, 0BBA2A5A21E3112929A56D89B2A1DF77634591D37A93F25BD3A92E4C1F5A6244 ] WwanSvc C:\Windows\System32\wwansvc.dll
17:31:14.0420 0x15ac WwanSvc - ok
17:31:14.0420 0x15ac ================ Scan global ===============================
17:31:14.0467 0x15ac [ 8D41654D0A9E15635ACF5E18FF470AB1, A85D1F6C3D63D7991E9B29B8A21C68776B7AEB617EFA45836E0686649A03CD55 ] C:\Windows\system32\basesrv.dll
17:31:14.0499 0x15ac [ 1EEFCA33A6329CE675FEFFBC563140A9, 13223ED01330BA68292E4687AA25F2C277ECFF37C01EE419F90937A0C2E15500 ] C:\Windows\system32\winsrv.dll
17:31:14.0530 0x15ac [ 78A87B9D36AAD6AFD6A24915389E1221, 06CE868DABC517646EB6A8D1DBD27BD4DEF4F047D2517516FECFF460D88DD860 ] C:\Windows\system32\sxssrv.dll
17:31:14.0577 0x15ac [ 6528BAACA25356FE226904DD36C82BA7, C88BB8C5434E5F7F71732EA30F799B038904647B31600CF6FEEBABAA064C5EAF ] C:\Windows\system32\services.exe
17:31:14.0592 0x15ac [ Global ] - ok
17:31:14.0592 0x15ac ================ Scan MBR ==================================
17:31:14.0592 0x15ac [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
17:31:14.0843 0x15ac \Device\Harddisk0\DR0 - ok
17:31:14.0843 0x15ac ================ Scan VBR ==================================
17:31:14.0843 0x15ac [ 5093946AC5915A710EA8C6D7F059C866 ] \Device\Harddisk0\DR0\Partition1
17:31:14.0859 0x15ac \Device\Harddisk0\DR0\Partition1 - ok
17:31:14.0859 0x15ac [ 099AFDEEC4C8700582C339B7A20725A9 ] \Device\Harddisk0\DR0\Partition2
17:31:14.0875 0x15ac \Device\Harddisk0\DR0\Partition2 - ok
17:31:14.0875 0x15ac ================ Scan generic autorun ======================
17:31:14.0890 0x15ac [ B4EB28DEDAEC5154AD3ACBD179EDDFD5, C25C5FB016027EA1C46106673702174325E6AD88DFC7C05E3CD1AA5CFE17E3F9 ] C:\Windows\system32\igfxtray.exe
17:31:14.0890 0x15ac IgfxTray - ok
17:31:14.0906 0x15ac [ 4811D9DC52AEE953F4FA08DC2951221F, B6401CCDEBE46A08A7ADE1BA6DCF0FE53DCDEA48E74DFDF4ED0B6469C922A621 ] C:\Windows\system32\hkcmd.exe
17:31:14.0906 0x15ac HotKeysCmds - ok
17:31:14.0921 0x15ac [ 00E4F2C80565767C8C74A02F98DEEBF2, 4E75FA153BB1D849111BCF814A2F26C0B9F754BC53787F41C2B77A580405EE45 ] C:\Windows\system32\igfxpers.exe
17:31:14.0921 0x15ac Persistence - ok
17:31:14.0953 0x15ac [ 5B6E8E09BE6401A7E022F52FDFCB2FF8, 471C556CF9405BBB380A8CEFE945C126B954B7C94F79CC72441B51F80141FC5E ] C:\Program Files\Common Files\Java\Java Update\jusched.exe
17:31:14.0953 0x15ac SunJavaUpdateSched - ok
17:31:15.0046 0x15ac [ 919F88F5158350947FB255358CEA4907, E67E46DD7185A2B7928BDFFA7893CBF7D4BB92E4881F38E9DDB5E582D2D2D48E ] C:\Program Files\Seznam.cz\distribution\szninstall.exe
17:31:15.0078 0x15ac seznam-listicka-distribuce - ok
17:31:15.0234 0x15ac [ 26B558B2D31C7425B455B00E562EAD93, B64D128A2F1FC42BA4376F8EB08D70F4B705745CB983D0631DB45851BF34BBDF ] C:\Program Files\AVAST Software\Avast\AvastUI.exe
17:31:15.0375 0x15ac AvastUI.exe - ok
17:31:15.0468 0x15ac [ 8112D0DACAE746290FC87B3A980FA719, 43CA8CED6AB58EDD97AD476C791D49C7ECD40EB8DA627E8412C0A27699A58F01 ] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
17:31:15.0484 0x15ac NeroFilterCheck - ok
17:31:15.0484 0x15ac Overwolf - ok
17:31:15.0546 0x15ac EA Core - ok
17:31:15.0687 0x15ac [ 4084E12C0EB927FB788EB9A42BAA1B6C, A033BF6081771DF6B946D85621BFD1D0096879BFD57FD5B987C6E6397FAC78A1 ] C:\Program Files\Origin\Origin.exe
17:31:15.0796 0x15ac EADM - ok
17:31:15.0890 0x15ac [ 87644A0DA4A15F5F3FEEB1D6056E83E7, A559AFA3DE89F88E7FF8B37A0BDA1CC465101930EB9D3E25D1A683CC488F49B8 ] C:\Program Files\MyDrive Connect\MyDriveConnect.exe
17:31:15.0937 0x15ac MyDriveConnect.exe - ok
17:31:15.0984 0x15ac [ 59D9856CD1420E2AF778821B7E1B81D0, 30D4A098F89F14A63593C6B9E1981905FE93A8577815DE9027744D7CFAE551F7 ] C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
17:31:15.0984 0x15ac BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA} - ok
17:31:16.0265 0x15ac [ 2E8A5736739C6D23F5CBAE22973A1E3A, DC69CF7132FF7CACCEF4E6A8A4C71D9E5CDB6F8A7521D72999E1A6A532C384D6 ] C:\Users\František\AppData\Roaming\Spotify\Spotify.exe
17:31:16.0437 0x15ac Spotify - ok
17:31:16.0515 0x15ac [ B66E0842FCF485F3E2D41BF0BA10966F, 966B8386B2D060167E8EAAE478509013A8729FE2CF11F890D3F9DCDA90768F34 ] C:\Users\František\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
17:31:16.0562 0x15ac Spotify Web Helper - ok
17:31:17.0125 0x15ac [ 9D4A0ECBF734E2EECDD5B473A2D705FE, F663B8EDA4C75DB6D3E3B68EE938FE43B0C05EF9B09598BFEB147D041D3F6A17 ] C:\Program Files\Skype\Phone\Skype.exe
17:31:17.0640 0x15ac Skype - ok
17:31:17.0734 0x15ac [ 2A3FB4C98F139038E23330D2439DB8A4, DE9253AD362B03FA5D3D4912662398E5C4AC76F7274B83E51C251A6921A5B838 ] C:\Users\František\AppData\Local\Facebook\Update\FacebookUpdate.exe
17:31:17.0734 0x15ac Facebook Update - ok
17:31:17.0734 0x15ac Waiting for KSN requests completion. In queue: 38
17:31:18.0750 0x15ac Waiting for KSN requests completion. In queue: 38
17:31:19.0764 0x15ac Waiting for KSN requests completion. In queue: 38
17:31:20.0820 0x15ac AV detected via SS2: avast! Antivirus, C:\Program Files\AVAST Software\Avast\VisthAux.exe ( 9.0.2021.515 ), 0x41000 ( enabled : updated )
17:31:20.0836 0x15ac AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.5.218.0 ), 0x60100 ( disabled : updated )
17:31:20.0867 0x15ac Win FW state via NFP2: disabled
17:31:23.0336 0x15ac ============================================================
17:31:23.0336 0x15ac Scan finished
17:31:23.0336 0x15ac ============================================================
17:31:23.0336 0x0530 Detected object count: 0
17:31:23.0336 0x0530 Actual detected object count: 0
17:31:35.0916 0x0024 Deinitialize success
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 105 hostů