Prosím o kontrolu logu. Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
Domin77
Level 2
Level 2
Příspěvky: 249
Registrován: duben 10
Pohlaví: Muž
Stav:
Offline

Prosím o kontrolu logu.  Vyřešeno

Příspěvekod Domin77 » 26 črc 2012 13:43

Dobrý deň. Prosím o kontrolu logu. Počítač je celkovo veľmi spomalený, dlho sa zapína, pomaly otvára programy atp.
Ďakujem za každú pomoc :)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:37:24, on 26. 7. 2012
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Ovislink\Common\AirLiveUI.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Domin77\Desktop\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://eu.ask.com/?l=dis&o=15788
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: CrossriderApp0011825 - {11111111-1111-1111-1111-110111181125} - C:\Program Files (x86)\BcoolApp\BcoolApp.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: (no name) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - (no file)
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: (no name) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - (no file)
O2 - BHO: SWEETIE - {EEE6C35C-6118-11DC-9C72-001320C79847} - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: SweetPacks Toolbar for Internet Explorer - {EEE6C35B-6118-11DC-9C72-001320C79847} - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKCU\..\Run: [uTorrent] "C:\Program Files (x86)\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-686497884-313105929-2552694682-1004\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-686497884-313105929-2552694682-1004\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O4 - Global Startup: AirLive 802.11G Wireless Utility.lnk = C:\Program Files (x86)\Ovislink\Common\AirLiveUI.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: ICQ7.7 - {77F665FD-3F60-4B0A-AE14-EC124B7A7FCE} - C:\Program Files (x86)\ICQ7.7\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.7 - {77F665FD-3F60-4B0A-AE14-EC124B7A7FCE} - C:\Program Files (x86)\ICQ7.7\ICQ.exe
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: AMD FusionUtility Service - Advanced Micro Devices, Inc. - C:\Program Files (x86)\AMD\Fusion Utility for Desktop\FusionUtility2Service.exe
O23 - Service: AMD Reservation Manager - Advanced Micro Devices - C:\Program Files (x86)\AMD\Reservation Manager\AMD Reservation Manager.exe
O23 - Service: Autodesk Content Service - Unknown owner - C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service 64 - Flexera Software, Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files (x86)\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NMIndexingService - Nero AG - C:\Program Files (x86)\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: O&O Defrag (OODefragAgent) - O&O Software GmbH - C:\Program Files\OO Software\Defrag\oodag.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\SysWOW64\IoctlSvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Ralink Registry Writer (RalinkRegistryWriter) - Ralink Technology, Corp. - C:\Program Files (x86)\Ovislink\Common\RaRegistry.exe
O23 - Service: Ralink Registry Writer 64 (RalinkRegistryWriter64) - Ralink Technology, Corp. - C:\Program Files (x86)\Ovislink\Common\RaRegistry64.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: TeamViewer 7 (TeamViewer7) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 11772 bytes
Zostava: Chladič: - GELID Soluti​on Tranqu​illo ​- revize 2, Zdroj - Fortron 550W, OEM, Case - CoolerMa​ster Elite 330 RC​-330K​-KKN1​-G, GK - GIGABYTE GTX 560 Ultra Durable OC 1GB, Zakladná Deska - MSI 870A-G54, Processor - AMD Phenom II X4 960T BE, RAM - Kingsto​n HyperX 4GB ​(2x2GB​) DDR3 1333

Reklama
Uživatelský avatar
Žbeky
Moderátor
Guru Level 13
Guru Level 13
Příspěvky: 22288
Registrován: květen 08
Bydliště: Vsetín - Pardubice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu.

Příspěvekod Žbeky » 26 črc 2012 14:29

Odinstaluj SweetIM toolbar

Fixni:

Kód: Vybrat vše

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://eu.ask.com/?l=dis&o=15788
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: CrossriderApp0011825 - {11111111-1111-1111-1111-110111181125} - C:\Program Files (x86)\BcoolApp\BcoolApp.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: (no name) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - (no file)
O2 - BHO: (no name) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - (no file)
O2 - BHO: SWEETIE - {EEE6C35C-6118-11DC-9C72-001320C79847} - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
O3 - Toolbar: SweetPacks Toolbar for Internet Explorer - {EEE6C35B-6118-11DC-9C72-001320C79847} - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-686497884-313105929-2552694682-1004\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab

Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
- Pokud používáš Firefox, klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
- Pokud používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected.
- Pokud používáš Chrome, nic dalšího nevybírej a dej Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.

Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Update Malwarebytes' Anti-Malware (Aktualizace Malwarebytes' Anti-Malware) a Launch Malwarebytes' Anti-Malware (Spustit aplikaci Malwarebytes' Anti-Malware), pokud jo tak klikni na tlačítko Finish
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Perform Quick Scan (Provést rychlý sken) a klikni na tlačítko Scan (Skenovat)
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Show Results
- pak zvol možnost Save Logfile a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(ZATÍM SÁM NIC NEMAŽ!).
Vlož sem pak obsah toho logu.
V SZ řeším jen záležitosti týkající se fóra. Na prosby a žádosti o technickou podporu nereaguji. Díky za pochopení.

HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra

Uživatelský avatar
Domin77
Level 2
Level 2
Příspěvky: 249
Registrován: duben 10
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu.

Příspěvekod Domin77 » 26 črc 2012 22:56

Všetko hotové len SweetIM toolbar som nenašiel.

Tu je log:


Malwarebytes Anti-Malware (Skúšobná verzia) 1.62.0.1300
www.malwarebytes.org

Verzia databázy: v2012.07.26.11

Windows 7 x64 NTFS
Internet Explorer 8.0.7600.16385
Domin77 :: DOMIN77-PC [administrátor]

Ochrana: Zapnuté

26. 7. 2012 22:44:22
mbam-log-2012-07-26 (22-47-23).txt

Typ kontroly: Rýchla kontrola
Možnosti kontroly zapnuté: Pamäť | Po spustení | Registre | Systémové súbory | Heuristika/Extra | Heuristika/Shuriken | PUP | PUM
Možnosti kontroly vypnuté: P2P
Objektov kontrolovaných: 232805
Uplynutý čas: 2 min, 42 sek

Detegované služby pamäte: 0
(Škodlivé položky neboli zistené)

Detegované moduly pamäte: 0
(Škodlivé položky neboli zistené)

Detegované registračné kľúče: 10
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\OptimizerProUpdater (Trojan.Dropper.H) -> Žiadna úloha nevykonaná.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110111181125} (PUP.GamePlayLab) -> Žiadna úloha nevykonaná.
HKCR\CLSID\{11111111-1111-1111-1111-110111181125} (PUP.GamePlayLab) -> Žiadna úloha nevykonaná.
HKCR\TypeLib\{44444444-4444-4444-4444-440144184425} (PUP.GamePlayLab) -> Žiadna úloha nevykonaná.
HKCR\Interface\{55555555-5555-5555-5555-550155185525} (PUP.GamePlayLab) -> Žiadna úloha nevykonaná.
HKCR\CrossriderApp0011825.BHO.1 (PUP.GamePlayLab) -> Žiadna úloha nevykonaná.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110111181125} (PUP.GamePlayLab) -> Žiadna úloha nevykonaná.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110111181125} (PUP.GamePlayLab) -> Žiadna úloha nevykonaná.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{11111111-1111-1111-1111-110111181125} (PUP.GamePlayLab) -> Žiadna úloha nevykonaná.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110111181125} (PUP.GamePlayLab) -> Žiadna úloha nevykonaná.

Detegované registračné hodnoty: 0
(Škodlivé položky neboli zistené)

Detegované položky registračných dát: 0
(Škodlivé položky neboli zistené)

Detegované priečinky: 2
C:\ProgramData\TheBflix (PUP.BFlix) -> Žiadna úloha nevykonaná.
C:\ProgramData\TheBflix\data (PUP.BFlix) -> Žiadna úloha nevykonaná.

Detegované súbory: 13
C:\ProgramData\OptimizerPro\ix_updater.exe (Trojan.Dropper.H) -> Žiadna úloha nevykonaná.
C:\Users\Domin77\Downloads\DownloadSetup (1).exe (Affiliate.Downloader) -> Žiadna úloha nevykonaná.
C:\Users\Domin77\Downloads\DownloadSetup.exe (Affiliate.Downloader) -> Žiadna úloha nevykonaná.
C:\Users\Domin77\Downloads\etype_setuppib.exe (PUP.BundleInstaller.IB) -> Žiadna úloha nevykonaná.
C:\Users\Domin77\Downloads\SoftonicDownloader_for_gameranger.exe (PUP.ToolbarDownloader) -> Žiadna úloha nevykonaná.
C:\ProgramData\TheBflix\background.html (PUP.BFlix) -> Žiadna úloha nevykonaná.
C:\ProgramData\TheBflix\bhoclass.dll (PUP.BFlix) -> Žiadna úloha nevykonaná.
C:\ProgramData\TheBflix\content.js (PUP.BFlix) -> Žiadna úloha nevykonaná.
C:\ProgramData\TheBflix\ekdjfcdinekpfcedakhpngcnaamhiihn.crx (PUP.BFlix) -> Žiadna úloha nevykonaná.
C:\ProgramData\TheBflix\settings.ini (PUP.BFlix) -> Žiadna úloha nevykonaná.
C:\ProgramData\TheBflix\data\content.js (PUP.BFlix) -> Žiadna úloha nevykonaná.
C:\ProgramData\TheBflix\data\jsondb.js (PUP.BFlix) -> Žiadna úloha nevykonaná.
C:\Program Files (x86)\BcoolApp\BcoolApp.dll (PUP.GamePlayLab) -> Žiadna úloha nevykonaná.

(koniec)
Zostava: Chladič: - GELID Soluti​on Tranqu​illo ​- revize 2, Zdroj - Fortron 550W, OEM, Case - CoolerMa​ster Elite 330 RC​-330K​-KKN1​-G, GK - GIGABYTE GTX 560 Ultra Durable OC 1GB, Zakladná Deska - MSI 870A-G54, Processor - AMD Phenom II X4 960T BE, RAM - Kingsto​n HyperX 4GB ​(2x2GB​) DDR3 1333

Uživatelský avatar
Žbeky
Moderátor
Guru Level 13
Guru Level 13
Příspěvky: 22288
Registrován: květen 08
Bydliště: Vsetín - Pardubice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu.

Příspěvekod Žbeky » 27 črc 2012 06:20

Znovu spusť MbAM a dej Scan
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Show Results
- ujistit se že máš zatrhnuté všechny vypsané nálezy a klikni na tlačítko Remove Selected
- když skončí odstraňování tak se ti zobrazí log, tak ho sem dej.
- pak zvol v programu OK a pak program ukonči přes Exit

Stáhni si TDSSKiller

Na svojí plochu. Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller.2.2.7.1._(datum)_log.txt , vlož sem prosím celý obsah logu.

Vypni rezidentní štít antiviru a antispywaru
Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud bude po kontrole problém spustit aplikace nebo bude vyskakovat hláška o pokusu použít neplatnou operaci na klíč registru, který je označen pro odstranění, stačí restartovat počítač.
V SZ řeším jen záležitosti týkající se fóra. Na prosby a žádosti o technickou podporu nereaguji. Díky za pochopení.

HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra

Uživatelský avatar
Domin77
Level 2
Level 2
Příspěvky: 249
Registrován: duben 10
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu.

Příspěvekod Domin77 » 27 črc 2012 11:24

MbAM

Malwarebytes Anti-Malware (Skúšobná verzia) 1.62.0.1300
http://www.malwarebytes.org

Verzia databázy: v2012.07.26.15

Windows 7 x64 NTFS
Internet Explorer 8.0.7600.16385
Domin77 :: DOMIN77-PC [administrátor]

Ochrana: Zapnuté

27. 7. 2012 10:49:00
mbam-log-2012-07-27 (10-49-00).txt

Typ kontroly: Rýchla kontrola
Možnosti kontroly zapnuté: Pamäť | Po spustení | Registre | Systémové súbory | Heuristika/Extra | Heuristika/Shuriken | PUP | PUM
Možnosti kontroly vypnuté: P2P
Objektov kontrolovaných: 232427
Uplynutý čas: 4 min, 39 sek

Detegované služby pamäte: 0
(Škodlivé položky neboli zistené)

Detegované moduly pamäte: 0
(Škodlivé položky neboli zistené)

Detegované registračné kľúče: 0
(Škodlivé položky neboli zistené)

Detegované registračné hodnoty: 0
(Škodlivé položky neboli zistené)

Detegované položky registračných dát: 0
(Škodlivé položky neboli zistené)

Detegované priečinky: 0
(Škodlivé položky neboli zistené)

Detegované súbory: 0
(Škodlivé položky neboli zistené)

(koniec)

Combofix


ComboFix 12-07-27.02 - Domin77 . 07. 2012 11:06:29.1.4 - x64
Microsoft Windows 7 Professional 6.1.7600.0.1250.421.1051.18.4095.2606 [GMT 2:00]
Running from: c:\users\Domin77\Desktop\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Created a new restore point
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\Domin77\AppData\Roaming\Mozilla\Firefox\Profiles\e2xz1eud.default\extensions\crossriderapp11825@crossrider.com
c:\users\Domin77\AppData\Roaming\Mozilla\Firefox\Profiles\e2xz1eud.default\extensions\crossriderapp11825@crossrider.com\defaults\preferences\prefs.js
c:\users\Domin77\AppData\Roaming\Mozilla\Firefox\Profiles\e2xz1eud.default\extensions\crossriderapp11825@crossrider.com\chrome.manifest
c:\users\Domin77\AppData\Roaming\Mozilla\Firefox\Profiles\e2xz1eud.default\extensions\crossriderapp11825@crossrider.com\chrome\content\background.html
c:\users\Domin77\AppData\Roaming\Mozilla\Firefox\Profiles\e2xz1eud.default\extensions\crossriderapp11825@crossrider.com\chrome\content\browser.xul
c:\users\Domin77\AppData\Roaming\Mozilla\Firefox\Profiles\e2xz1eud.default\extensions\crossriderapp11825@crossrider.com\chrome\content\crossrider.js
c:\users\Domin77\AppData\Roaming\Mozilla\Firefox\Profiles\e2xz1eud.default\extensions\crossriderapp11825@crossrider.com\chrome\content\crossriderapi.js
c:\users\Domin77\AppData\Roaming\Mozilla\Firefox\Profiles\e2xz1eud.default\extensions\crossriderapp11825@crossrider.com\chrome\content\dialog.js
c:\users\Domin77\AppData\Roaming\Mozilla\Firefox\Profiles\e2xz1eud.default\extensions\crossriderapp11825@crossrider.com\chrome\content\options.js
c:\users\Domin77\AppData\Roaming\Mozilla\Firefox\Profiles\e2xz1eud.default\extensions\crossriderapp11825@crossrider.com\chrome\content\options.xul
c:\users\Domin77\AppData\Roaming\Mozilla\Firefox\Profiles\e2xz1eud.default\extensions\crossriderapp11825@crossrider.com\chrome\content\search_dialog.xul
c:\users\Domin77\AppData\Roaming\Mozilla\Firefox\Profiles\e2xz1eud.default\extensions\crossriderapp11825@crossrider.com\chrome\content\update.html
c:\users\Domin77\AppData\Roaming\Mozilla\Firefox\Profiles\e2xz1eud.default\extensions\crossriderapp11825@crossrider.com\install.rdf
c:\users\Domin77\AppData\Roaming\Mozilla\Firefox\Profiles\e2xz1eud.default\extensions\crossriderapp11825@crossrider.com\locale\en-US\translations.dtd
c:\users\Domin77\AppData\Roaming\Mozilla\Firefox\Profiles\e2xz1eud.default\extensions\crossriderapp11825@crossrider.com\skin\button1.png
c:\users\Domin77\AppData\Roaming\Mozilla\Firefox\Profiles\e2xz1eud.default\extensions\crossriderapp11825@crossrider.com\skin\button2.png
c:\users\Domin77\AppData\Roaming\Mozilla\Firefox\Profiles\e2xz1eud.default\extensions\crossriderapp11825@crossrider.com\skin\button3.png
c:\users\Domin77\AppData\Roaming\Mozilla\Firefox\Profiles\e2xz1eud.default\extensions\crossriderapp11825@crossrider.com\skin\button4.png
c:\users\Domin77\AppData\Roaming\Mozilla\Firefox\Profiles\e2xz1eud.default\extensions\crossriderapp11825@crossrider.com\skin\button5.png
c:\users\Domin77\AppData\Roaming\Mozilla\Firefox\Profiles\e2xz1eud.default\extensions\crossriderapp11825@crossrider.com\skin\crossrider_statusbar.png
c:\users\Domin77\AppData\Roaming\Mozilla\Firefox\Profiles\e2xz1eud.default\extensions\crossriderapp11825@crossrider.com\skin\icon128.png
c:\users\Domin77\AppData\Roaming\Mozilla\Firefox\Profiles\e2xz1eud.default\extensions\crossriderapp11825@crossrider.com\skin\icon16.png
c:\users\Domin77\AppData\Roaming\Mozilla\Firefox\Profiles\e2xz1eud.default\extensions\crossriderapp11825@crossrider.com\skin\icon24.png
c:\users\Domin77\AppData\Roaming\Mozilla\Firefox\Profiles\e2xz1eud.default\extensions\crossriderapp11825@crossrider.com\skin\icon48.png
c:\users\Domin77\AppData\Roaming\Mozilla\Firefox\Profiles\e2xz1eud.default\extensions\crossriderapp11825@crossrider.com\skin\panelarrow-up.png
c:\users\Domin77\AppData\Roaming\Mozilla\Firefox\Profiles\e2xz1eud.default\extensions\crossriderapp11825@crossrider.com\skin\popup.css
c:\users\Domin77\AppData\Roaming\Mozilla\Firefox\Profiles\e2xz1eud.default\extensions\crossriderapp11825@crossrider.com\skin\popup.html
c:\users\Domin77\AppData\Roaming\Mozilla\Firefox\Profiles\e2xz1eud.default\extensions\crossriderapp11825@crossrider.com\skin\popup_binding.xml
c:\users\Domin77\AppData\Roaming\Mozilla\Firefox\Profiles\e2xz1eud.default\extensions\crossriderapp11825@crossrider.com\skin\skin.css
c:\users\Domin77\AppData\Roaming\Mozilla\Firefox\Profiles\e2xz1eud.default\extensions\crossriderapp11825@crossrider.com\skin\update.css
c:\windows\pkunzip.pif
c:\windows\pkzip.pif
c:\windows\SysWow64\muzapp.exe
.
.
((((((((((((((((((((((((( Files Created from 2012-06-27 to 2012-07-27 )))))))))))))))))))))))))))))))
.
.
2012-07-27 09:11 . 2012-07-27 09:11 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
2012-07-26 13:11 . 2012-07-26 13:11 -------- d-----w- c:\users\Domin77\AppData\Roaming\Malwarebytes
2012-07-26 13:11 . 2012-07-26 13:11 -------- d-----w- c:\programdata\Malwarebytes
2012-07-26 13:11 . 2012-07-26 13:11 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware
2012-07-26 13:11 . 2012-07-03 11:46 24904 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-07-25 22:30 . 2012-03-10 07:58 15168 ----a-w- c:\windows\system32\drivers\nvflash.sys
2012-07-25 22:30 . 2012-07-25 22:30 40960 ----a-r- c:\users\Domin77\AppData\Roaming\Microsoft\Installer\{AA12545D-5EB8-4078-AFD9-8E8DC0AE3A76}\ARPPRODUCTICON.exe
2012-07-25 22:30 . 2012-07-25 22:30 40960 ----a-r- c:\users\Domin77\AppData\Roaming\Microsoft\Installer\{AA12545D-5EB8-4078-AFD9-8E8DC0AE3A76}\_BIOS.exe_AA12545D5EB84078AFD98E8DC0AE3A76.exe
2012-07-22 12:36 . 2012-07-26 21:45 -------- d-----w- c:\users\Domin77\AppData\Roaming\.minecraft
2012-07-20 22:40 . 2012-07-20 22:40 -------- d-----w- c:\users\Domin77\VirtualBox VMs
2012-07-20 22:39 . 2012-07-21 22:55 -------- d-----w- c:\users\Domin77\.VirtualBox
2012-07-20 22:25 . 2012-06-05 14:03 224088 ----a-w- c:\windows\system32\drivers\VBoxDrv.sys
2012-07-20 22:25 . 2012-06-05 14:03 130904 ----a-w- c:\windows\system32\drivers\VBoxUSBMon.sys
2012-07-18 23:29 . 2012-07-18 23:29 -------- d-----w- c:\program files\SAMSUNG
2012-07-11 06:59 . 2012-07-11 06:59 -------- d-----w- c:\users\Rodina\AppData\Local\Adobe
2012-07-10 22:40 . 2012-07-10 22:41 -------- d-----w- C:\GvTemp
2012-07-10 22:38 . 2012-07-25 22:30 -------- d-----w- c:\program files (x86)\GIGABYTE
2012-07-10 22:37 . 2012-07-10 22:37 -------- d-----w- c:\windows\Downloaded Installations
2012-07-08 17:41 . 2012-07-26 13:01 -------- d-----w- c:\programdata\SweetIM
2012-07-08 17:41 . 2012-07-26 13:01 -------- d-----w- c:\program files (x86)\SweetIM
2012-07-08 17:41 . 2012-07-27 08:46 -------- d-----w- c:\programdata\OptimizerPro
2012-07-08 17:40 . 2012-07-26 20:51 -------- d-----w- c:\program files (x86)\BcoolApp
2012-07-08 17:40 . 2012-07-08 17:40 -------- d-----w- c:\users\Domin77\AppData\Local\BcoolApp
2012-07-08 16:28 . 2012-07-08 16:28 -------- d-----w- c:\users\Rodina\AppData\Local\Daňové_riaditeľstvo_SR
2012-07-08 16:27 . 2012-07-11 07:17 -------- d-----w- c:\users\Rodina\AppData\Local\Deployment
2012-07-08 16:27 . 2012-07-08 16:27 -------- d-----w- c:\users\Rodina\AppData\Local\Apps
2012-07-07 19:54 . 2012-07-22 06:58 282696 ----a-w- c:\windows\SysWow64\PnkBstrB.xtr
2012-07-07 19:54 . 2012-07-07 19:54 -------- d-----w- c:\users\Domin77\AppData\Local\PunkBuster
2012-07-07 16:24 . 2012-07-07 16:24 -------- d-----w- c:\users\Domin77\AppData\Roaming\Resource Tuner
2012-07-07 16:23 . 2012-07-07 16:24 -------- d-----w- c:\program files (x86)\Resource Tuner
2012-07-07 10:50 . 2012-07-07 10:50 -------- d-----w- c:\program files (x86)\Universal Extractor
2012-07-07 10:42 . 2012-07-07 10:42 -------- d-----w- c:\program files (x86)\Restorator 2007
2012-07-07 10:42 . 2007-07-29 13:53 117248 ----a-w- c:\windows\SysWow64\RestoratorContextMenu.dll
2012-07-05 16:45 . 2012-07-05 16:45 5030088 ----a-w- c:\program files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}\components\SkypeFfComponent.dll
2012-07-03 14:15 . 2012-07-03 14:20 -------- d-----w- c:\windows\rescache
2012-07-03 12:39 . 2012-07-07 19:42 -------- d-----w- c:\users\Domin77\AppData\Local\Microsoft Games
2012-07-03 11:23 . 2012-06-18 01:12 9013136 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{EC181405-D923-43E0-9F6E-D00DE97EABF1}\mpengine.dll
2012-07-03 11:09 . 2012-06-02 22:19 57880 ----a-w- c:\windows\system32\wuauclt.exe
2012-07-03 11:09 . 2012-06-02 22:19 44056 ----a-w- c:\windows\system32\wups2.dll
2012-07-03 11:09 . 2012-06-02 22:19 2428952 ----a-w- c:\windows\system32\wuaueng.dll
2012-07-03 11:09 . 2012-06-02 22:15 2622464 ----a-w- c:\windows\system32\wucltux.dll
2012-07-03 11:09 . 2012-06-02 22:19 38424 ----a-w- c:\windows\system32\wups.dll
2012-07-03 11:09 . 2012-06-02 22:19 701976 ----a-w- c:\windows\system32\wuapi.dll
2012-07-03 11:09 . 2012-06-02 22:15 99840 ----a-w- c:\windows\system32\wudriver.dll
2012-07-03 11:09 . 2012-06-02 13:19 186752 ----a-w- c:\windows\system32\wuwebv.dll
2012-07-03 11:09 . 2012-06-02 13:15 36864 ----a-w- c:\windows\system32\wuapp.exe
2012-07-03 10:59 . 2009-12-05 17:42 85504 ----a-w- c:\windows\SysWow64\ff_vfw.dll
2012-07-03 10:59 . 2012-07-03 10:59 -------- d-----w- c:\program files (x86)\ffdshow
2012-07-03 10:59 . 2012-07-03 10:59 -------- d-----w- c:\programdata\IObit
2012-07-03 10:59 . 2012-07-03 10:59 -------- d-----w- c:\program files (x86)\IObit
2012-07-03 00:15 . 2012-07-03 00:15 -------- d-----w- c:\program files\Microsoft Games
2012-07-02 21:38 . 2012-07-02 21:38 -------- d-----w- c:\program files\Yamicsoft
2012-07-01 00:52 . 2012-05-04 16:33 268680 ----a-w- c:\windows\system32\javaws.exe
2012-07-01 00:52 . 2012-07-01 00:52 189360 ----a-w- c:\windows\system32\javaw.exe
2012-07-01 00:52 . 2012-07-01 00:52 188840 ----a-w- c:\windows\system32\java.exe
2012-07-01 00:52 . 2012-07-18 23:44 -------- d-----w- c:\program files\Java
2012-06-27 19:58 . 2012-06-27 19:58 -------- d-----w- c:\program files (x86)\LogMeIn Hamachi
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-07-22 06:58 . 2012-02-05 13:51 282696 ----a-w- c:\windows\SysWow64\PnkBstrB.exe
2012-07-10 15:10 . 2012-02-05 13:51 282696 ----a-w- c:\windows\SysWow64\PnkBstrB.ex0
2012-07-07 19:54 . 2012-02-05 13:51 76888 ----a-w- c:\windows\SysWow64\PnkBstrA.exe
2012-06-28 12:52 . 2012-06-26 19:32 54072 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2012-06-28 12:52 . 2012-06-26 19:32 355856 ----a-w- c:\windows\system32\drivers\aswSP.sys
2012-06-28 12:52 . 2012-06-26 19:32 958912 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2012-06-28 12:52 . 2012-06-26 19:32 59728 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2012-06-28 12:52 . 2012-06-26 19:32 71064 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2012-06-28 12:52 . 2012-06-26 19:32 25232 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2012-06-28 12:52 . 2012-06-26 19:31 41224 ----a-w- c:\windows\avastSS.scr
2012-06-28 12:51 . 2012-06-26 19:31 227648 ----a-w- c:\windows\SysWow64\aswBoot.exe
2012-06-28 12:51 . 2012-06-26 19:32 285328 ----a-w- c:\windows\system32\aswBoot.exe
2012-06-05 14:03 . 2012-06-05 14:03 166232 ----a-w- c:\windows\system32\drivers\VBoxNetFlt.sys
2012-06-05 14:03 . 2012-06-05 14:03 147288 ----a-w- c:\windows\system32\drivers\VBoxNetAdp.sys
2012-06-05 14:02 . 2012-06-05 14:02 320856 ----a-w- c:\windows\system32\VBoxNetFltNobj.dll
2012-05-27 15:03 . 2012-05-27 15:03 283200 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys
2012-05-04 16:33 . 2012-01-24 17:13 955800 ----a-w- c:\windows\system32\npdeployJava1.dll
2012-05-04 16:32 . 2012-01-24 17:13 839056 ----a-w- c:\windows\system32\deployJava1.dll
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{EEE6C35D-6118-11DC-9C72-001320C79847}"= "c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\mgHelper.dll" [2012-06-04 130904]
.
[HKEY_CLASSES_ROOT\clsid\{eee6c35d-6118-11dc-9c72-001320c79847}]
[HKEY_CLASSES_ROOT\SweetIM_URLSearchHook.ToolbarURLSearchHook.1]
[HKEY_CLASSES_ROOT\TypeLib\{EEE6C35F-6118-11DC-9C72-001320C79847}]
[HKEY_CLASSES_ROOT\SweetIM_URLSearchHook.ToolbarURLSearchHook]
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"uTorrent"="c:\program files (x86)\uTorrent\uTorrent.exe" [2012-01-09 735608]
"Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2012-02-29 17148552]
"DAEMON Tools Lite"="c:\program files (x86)\DAEMON Tools Lite\DTLite.exe" [2012-04-17 3671872]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2012-06-28 4273976]
"Malwarebytes' Anti-Malware"="c:\program files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" [2012-07-03 462920]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
AirLive 802.11G Wireless Utility.lnk - c:\program files (x86)\Ovislink\Common\AirLiveUI.exe [2012-5-15 1810432]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0OODBS
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R2 gupdate;Služba Google Update (gupdate);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2012-06-26 136176]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe [2012-02-29 158856]
R3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudbus.sys [2012-02-24 99384]
R3 EagleX64;EagleX64;c:\windows\system32\drivers\EagleX64.sys [x]
R3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64;c:\program files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2012-05-27 1431888]
R3 GPCIDrv;GPCIDrv;c:\program files (x86)\GIGABYTE\atBIOS\GPCIDrv64.sys [2010-02-04 14376]
R3 gupdatem;Služba Google Update (gupdatem);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2012-06-26 136176]
R3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-07-01 113120]
R3 NTIOLib_1_0_2;NTIOLib_1_0_2;c:\program files (x86)\MSI\BIOS Code Unlocked Technology\NTIOLib_X64.sys [2010-04-21 14136]
R3 RivaTuner64;RivaTuner64;c:\program files (x86)\RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition\RivaTuner64.sys [2012-03-17 19952]
R3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudmdm.sys [2012-02-24 203320]
R3 ssudserd;SAMSUNG Mobile USB Diagnostic Serial Port(DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudserd.sys [2012-02-24 203320]
R3 VBoxUSB;VirtualBox USB;c:\windows\system32\Drivers\VBoxUSB.sys [2011-12-19 117040]
R3 WinRing0_1_2_0;WinRing0_1_2_0;c:\program files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys [2010-11-01 14544]
S0 amd_sata;amd_sata;c:\windows\system32\DRIVERS\amd_sata.sys [2011-12-12 82048]
S0 amd_xata;amd_xata;c:\windows\system32\DRIVERS\amd_xata.sys [2011-12-12 42624]
S1 aswSnx;aswSnx; [x]
S1 aswSP;aswSP; [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [2012-05-27 283200]
S1 VBoxDrv;VirtualBox Service;c:\windows\system32\DRIVERS\VBoxDrv.sys [2012-06-05 224088]
S1 VBoxUSBMon;VirtualBox USB Monitor Driver;c:\windows\system32\DRIVERS\VBoxUSBMon.sys [2012-06-05 130904]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-06-06 64952]
S2 AMD FUEL Service;AMD FUEL Service;c:\program files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2011-07-28 361984]
S2 AMD FusionUtility Service;AMD FusionUtility Service;c:\program files (x86)\AMD\Fusion Utility for Desktop\FusionUtility2Service.exe [2010-04-14 275832]
S2 AMD Reservation Manager;AMD Reservation Manager;c:\program files (x86)\AMD\Reservation Manager\AMD Reservation Manager.exe [2010-04-14 140160]
S2 AODDriver4.01;AODDriver4.01;c:\program files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2011-06-24 55424]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2012-06-28 71064]
S2 Autodesk Content Service;Autodesk Content Service;c:\program files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [2011-02-02 18656]
S2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine;c:\program files (x86)\LogMeIn Hamachi\hamachi-2.exe [2012-06-27 2369960]
S2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2012-07-03 655944]
S2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2012-03-01 2348352]
S2 OODefragAgent;O&O Defrag;c:\program files\OO Software\Defrag\oodag.exe [2011-11-17 3273552]
S2 RalinkRegistryWriter64;Ralink Registry Writer 64;c:\program files (x86)\Ovislink\Common\RaRegistry64.exe [2009-12-15 212256]
S2 Skype C2C Service;Skype C2C Service;c:\programdata\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2012-07-05 3048136]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2012-02-29 382272]
S2 TeamViewer7;TeamViewer 7;c:\program files (x86)\TeamViewer\Version7\TeamViewer_Service.exe [2012-01-19 3027840]
S3 amdiox64;AMD IO Driver;c:\windows\system32\DRIVERS\amdiox64.sys [2010-02-18 46136]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2012-07-03 24904]
S3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver;c:\windows\system32\DRIVERS\nusb3hub.sys [2011-02-10 82432]
S3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver;c:\windows\system32\DRIVERS\nusb3xhc.sys [2011-02-10 181760]
S3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda64v.sys [2012-01-17 188224]
S3 rt61x64;RT61 Extensible Wireless Driver;c:\windows\system32\DRIVERS\netr6164.sys [2010-04-08 446304]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [2009-06-10 187392]
S3 usbfilter;AMD USB Filter Driver;c:\windows\system32\DRIVERS\usbfilter.sys [2011-12-13 56448]
S3 VBoxNetAdp;VirtualBox Host-Only Ethernet Adapter;c:\windows\system32\DRIVERS\VBoxNetAdp.sys [2012-06-05 147288]
S3 VBoxNetFlt;VirtualBox Bridged Networking Service;c:\windows\system32\DRIVERS\VBoxNetFlt.sys [2012-06-05 166232]
.
.
--- Other Services/Drivers In Memory ---
.
*NewlyCreated* - WS2IFSL
.
Contents of the 'Scheduled Tasks' folder
.
2012-07-27 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2012-06-26 19:32]
.
2012-07-27 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2012-06-26 19:32]
.
2012-03-29 c:\windows\Tasks\MSIAfterburner.job
- c:\program files (x86)\MSI Afterburner\MSIAfterburner.exe [2011-02-15 11:20]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2012-06-28 12:51 133400 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2011-08-16 12673128]
"OODefragTray"="c:\program files\OO Software\Defrag\oodtray.exe" [2011-11-17 3994960]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"LoadAppInit_DLLs"=0x0
.
------- Supplementary Scan -------
.
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SYSTEM32\blank.htm
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~2\MICROS~2\Office10\EXCEL.EXE/3000
IE: {{77F665FD-3F60-4B0A-AE14-EC124B7A7FCE} - c:\program files (x86)\ICQ7.7\ICQ.exe
Trusted Zone: drsr.sk\www
TCP: DhcpNameServer = 192.168.1.1
FF - ProfilePath - c:\users\Domin77\AppData\Roaming\Mozilla\Firefox\Profiles\e2xz1eud.default\
FF - prefs.js: browser.search.selectedEngine - Ask.com
FF - prefs.js: browser.startup.homepage - google.sk
FF - prefs.js: keyword.URL - hxxp://search.sweetim.com/search.asp?sr ... 0.10004&q=
FF - user.js: extensions.BabylonToolbar_i.babTrack - affID=111365
FF - user.js: extensions.BabylonToolbar_i.babExt -
FF - user.js: extensions.BabylonToolbar_i.srcExt - ss
FF - user.js: extensions.BabylonToolbar_i.id - faf7bca7000000000000004f6a0542a4
FF - user.js: extensions.BabylonToolbar_i.hardId - faf7bca7000000000000004f6a0542a4
FF - user.js: extensions.BabylonToolbar_i.instlDay - 15420
FF - user.js: extensions.BabylonToolbar_i.vrsn - 1.5.3.17
FF - user.js: extensions.BabylonToolbar_i.vrsni - 1.5.3.17
FF - user.js: extensions.BabylonToolbar_i.vrsnTs - 1.5.3.1719:46
FF - user.js: extensions.BabylonToolbar_i.prtnrId - babylon
FF - user.js: extensions.BabylonToolbar_i.prdct - BabylonToolbar
FF - user.js: extensions.BabylonToolbar_i.aflt - babsst
FF - user.js: extensions.BabylonToolbar_i.smplGrp - none
FF - user.js: extensions.BabylonToolbar_i.tlbrId - base
FF - user.js: extensions.BabylonToolbar_i.instlRef - sst
.
- - - - ORPHANS REMOVED - - - -
.
WebBrowser-{EEE6C35B-6118-11DC-9C72-001320C79847} - (no file)
AddRemove-PunkBusterSvc - c:\windows\system32\pbsvc.exe
AddRemove-{6D87CAD9-9B94-4421-A439-B25F8DE14575} - c:\program files (x86)\InstallShield Installation Information\{6D87CAD9-9B94-4421-A439-B25F8DE14575}\setup.exe
.
.
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_USERS\S-1-5-21-686497884-313105929-2552694682-1000\Software\SecuROM\License information*]
"datasecu"=hex:c6,2a,88,f3,b3,74,91,3c,cd,ea,68,82,3e,c9,f3,45,10,8a,8f,86,d3,
bb,1b,9d,92,ce,6f,9e,65,62,d9,9e,fe,4b,84,dd,e3,54,04,75,c2,d9,b0,dd,4a,eb,\
"rkeysecu"=hex:21,f4,d9,7d,48,b0,4f,5a,30,ba,28,29,f8,06,9b,12
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil11g_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil11g_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11g.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.10"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11g.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11g.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11g.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\System*]
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
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0006\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0007\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0008\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0009\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0010\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0014\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0015\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Other Running Processes ------------------------
.
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\program files (x86)\Common Files\Microsoft Shared\VS7Debug\mdm.exe
c:\program files (x86)\Nero\Nero8\Nero BackItUp\NBService.exe
c:\program files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
c:\windows\SysWOW64\IoctlSvc.exe
c:\windows\SysWOW64\PnkBstrA.exe
c:\program files (x86)\Ovislink\Common\RaRegistry.exe
.
**************************************************************************
.
Completion time: 2012-07-27 11:20:45 - machine was rebooted
ComboFix-quarantined-files.txt 2012-07-27 09:20
.
Pre-Run: 3 461 431 296 bytes free
Post-Run: 3 379 621 888 bytes free
.
- - End Of File - - 7848F17F7607CAE171F0C33FCAEF7CC0
Zostava: Chladič: - GELID Soluti​on Tranqu​illo ​- revize 2, Zdroj - Fortron 550W, OEM, Case - CoolerMa​ster Elite 330 RC​-330K​-KKN1​-G, GK - GIGABYTE GTX 560 Ultra Durable OC 1GB, Zakladná Deska - MSI 870A-G54, Processor - AMD Phenom II X4 960T BE, RAM - Kingsto​n HyperX 4GB ​(2x2GB​) DDR3 1333

Uživatelský avatar
Domin77
Level 2
Level 2
Příspěvky: 249
Registrován: duben 10
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu.

Příspěvekod Domin77 » 27 črc 2012 16:33

TDSSKiller

16:21:12.0995 5112 TDSS rootkit removing tool 2.7.48.0 Jul 24 2012 13:16:32
16:21:15.0023 5112 ============================================================
16:21:15.0023 5112 Current date / time: 2012/07/27 16:21:15.0023
16:21:15.0023 5112 SystemInfo:
16:21:15.0023 5112
16:21:15.0023 5112 OS Version: 6.1.7600 ServicePack: 0.0
16:21:15.0023 5112 Product type: Workstation
16:21:15.0023 5112 ComputerName: DOMIN77-PC
16:21:15.0023 5112 UserName: Domin77
16:21:15.0023 5112 Windows directory: C:\Windows
16:21:15.0023 5112 System windows directory: C:\Windows
16:21:15.0023 5112 Running under WOW64
16:21:15.0023 5112 Processor architecture: Intel x64
16:21:15.0023 5112 Number of processors: 4
16:21:15.0023 5112 Page size: 0x1000
16:21:15.0023 5112 Boot type: Normal boot
16:21:15.0023 5112 ============================================================
16:21:15.0803 5112 Drive \Device\Harddisk0\DR0 - Size: 0x253B1D5400 (148.92 Gb), SectorSize: 0x200, Cylinders: 0x4BF0, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
16:21:15.0818 5112 ============================================================
16:21:15.0818 5112 \Device\Harddisk0\DR0:
16:21:15.0818 5112 MBR partitions:
16:21:15.0818 5112 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0xE1DA800, BlocksNum 0x31F7000
16:21:15.0818 5112 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x1007, BlocksNum 0xE1D97F9
16:21:15.0818 5112 ============================================================
16:21:15.0865 5112 C: <-> \Device\Harddisk0\DR0\Partition0
16:21:15.0912 5112 D: <-> \Device\Harddisk0\DR0\Partition1
16:21:15.0912 5112 ============================================================
16:21:15.0912 5112 Initialize success
16:21:15.0912 5112 ============================================================
16:21:19.0469 0208 ============================================================
16:21:19.0469 0208 Scan started
16:21:19.0469 0208 Mode: Manual;
16:21:19.0469 0208 ============================================================
16:21:20.0623 0208 1394ohci (1b00662092f9f9568b995902f0cc40d5) C:\Windows\system32\DRIVERS\1394ohci.sys
16:21:20.0639 0208 1394ohci - ok
16:21:20.0670 0208 ACPI (6f11e88748cdefd2f76aa215f97ddfe5) C:\Windows\system32\DRIVERS\ACPI.sys
16:21:20.0685 0208 ACPI - ok
16:21:20.0701 0208 AcpiPmi (63b05a0420ce4bf0e4af6dcc7cada254) C:\Windows\system32\DRIVERS\acpipmi.sys
16:21:20.0701 0208 AcpiPmi - ok
16:21:20.0826 0208 AdobeARMservice (11a52cf7b265631deeb24c6149309eff) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
16:21:20.0826 0208 AdobeARMservice - ok
16:21:20.0873 0208 adp94xx (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\DRIVERS\adp94xx.sys
16:21:20.0888 0208 adp94xx - ok
16:21:20.0935 0208 adpahci (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\DRIVERS\adpahci.sys
16:21:20.0951 0208 adpahci - ok
16:21:20.0966 0208 adpu320 (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\DRIVERS\adpu320.sys
16:21:20.0982 0208 adpu320 - ok
16:21:20.0997 0208 AeLookupSvc (4b78b431f225fd8624c5655cb1de7b61) C:\Windows\System32\aelupsvc.dll
16:21:21.0013 0208 AeLookupSvc - ok
16:21:21.0060 0208 AFD (b9384e03479d2506bc924c16a3db87bc) C:\Windows\system32\drivers\afd.sys
16:21:21.0075 0208 AFD - ok
16:21:21.0091 0208 agp440 (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\DRIVERS\agp440.sys
16:21:21.0091 0208 agp440 - ok
16:21:21.0122 0208 ALG (3290d6946b5e30e70414990574883ddb) C:\Windows\System32\alg.exe
16:21:21.0122 0208 ALG - ok
16:21:21.0138 0208 aliide (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\DRIVERS\aliide.sys
16:21:21.0138 0208 aliide - ok
16:21:21.0185 0208 AMD FUEL Service - ok
16:21:21.0325 0208 AMD FusionUtility Service (72893d5e805cc0a721dac0102329f94e) C:\Program Files (x86)\AMD\Fusion Utility for Desktop\FusionUtility2Service.exe
16:21:21.0341 0208 AMD FusionUtility Service - ok
16:21:21.0372 0208 AMD Reservation Manager (ed5188382e64f860e0dfd32b2f1f259c) C:\Program Files (x86)\AMD\Reservation Manager\AMD Reservation Manager.exe
16:21:21.0387 0208 AMD Reservation Manager - ok
16:21:21.0403 0208 amdide (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\DRIVERS\amdide.sys
16:21:21.0403 0208 amdide - ok
16:21:21.0419 0208 amdiox64 (6a2eeb0c4133b20773bb3dd0b7b377b4) C:\Windows\system32\DRIVERS\amdiox64.sys
16:21:21.0434 0208 amdiox64 - ok
16:21:21.0450 0208 AmdK8 (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\DRIVERS\amdk8.sys
16:21:21.0450 0208 AmdK8 - ok
16:21:21.0481 0208 AmdPPM (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\DRIVERS\amdppm.sys
16:21:21.0481 0208 AmdPPM - ok
16:21:21.0512 0208 amdsata (7a4b413614c055935567cf88a9734d38) C:\Windows\system32\DRIVERS\amdsata.sys
16:21:21.0512 0208 amdsata - ok
16:21:21.0528 0208 amdsbs (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\DRIVERS\amdsbs.sys
16:21:21.0543 0208 amdsbs - ok
16:21:21.0559 0208 amdxata (b4ad0cacbab298671dd6f6ef7e20679d) C:\Windows\system32\DRIVERS\amdxata.sys
16:21:21.0559 0208 amdxata - ok
16:21:21.0621 0208 amd_sata (a1434f35b7b171cb697d74d33f7d029f) C:\Windows\system32\DRIVERS\amd_sata.sys
16:21:21.0637 0208 amd_sata - ok
16:21:21.0653 0208 amd_xata (e9b5a82fa268bb2d1b012030d5f4e096) C:\Windows\system32\DRIVERS\amd_xata.sys
16:21:21.0653 0208 amd_xata - ok
16:21:21.0684 0208 AODDriver4.01 (f312fad7dbd49ed21a194ac71b497832) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys
16:21:21.0684 0208 AODDriver4.01 - ok
16:21:21.0715 0208 AppID (42fd751b27fa0e9c69bb39f39e409594) C:\Windows\system32\drivers\appid.sys
16:21:21.0731 0208 AppID - ok
16:21:21.0746 0208 AppIDSvc (0bc381a15355a3982216f7172f545de1) C:\Windows\System32\appidsvc.dll
16:21:21.0746 0208 AppIDSvc - ok
16:21:21.0762 0208 Appinfo (d065be66822847b7f127d1f90158376e) C:\Windows\System32\appinfo.dll
16:21:21.0777 0208 Appinfo - ok
16:21:21.0809 0208 AppMgmt (4aba3e75a76195a3e38ed2766c962899) C:\Windows\System32\appmgmts.dll
16:21:21.0809 0208 AppMgmt - ok
16:21:21.0840 0208 arc (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\DRIVERS\arc.sys
16:21:21.0840 0208 arc - ok
16:21:21.0855 0208 arcsas (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\DRIVERS\arcsas.sys
16:21:21.0855 0208 arcsas - ok
16:21:21.0949 0208 aspnet_state (9217d874131ae6ff8f642f124f00a555) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
16:21:21.0949 0208 aspnet_state - ok
16:21:21.0996 0208 aswFsBlk (5d0fcd12a43e92409eb2ac88c6cf7d48) C:\Windows\system32\drivers\aswFsBlk.sys
16:21:21.0996 0208 aswFsBlk - ok
16:21:22.0058 0208 aswMonFlt (d51d963c2357b02a862f99bc0802aabb) C:\Windows\system32\drivers\aswMonFlt.sys
16:21:22.0058 0208 aswMonFlt - ok
16:21:22.0105 0208 aswRdr (f2a846c15ea4e35d0a8e53891abdf528) C:\Windows\System32\Drivers\aswrdr2.sys
16:21:22.0105 0208 aswRdr - ok
16:21:22.0214 0208 aswSnx (87542057e699eed8d1a545c75cef4547) C:\Windows\system32\drivers\aswSnx.sys
16:21:22.0261 0208 aswSnx - ok
16:21:22.0308 0208 aswSP (58143f82d886e10bafe33dc57eee53f9) C:\Windows\system32\drivers\aswSP.sys
16:21:22.0323 0208 aswSP - ok
16:21:22.0355 0208 aswTdi (c944767bd5e69bf3f49a6562abd4eaea) C:\Windows\system32\drivers\aswTdi.sys
16:21:22.0355 0208 aswTdi - ok
16:21:22.0386 0208 AsyncMac (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys
16:21:22.0386 0208 AsyncMac - ok
16:21:22.0401 0208 atapi (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\DRIVERS\atapi.sys
16:21:22.0401 0208 atapi - ok
16:21:22.0417 0208 AtiPcie (e82e61f46d1336447f4deff8c074f13e) C:\Windows\system32\DRIVERS\AtiPcie64.sys
16:21:22.0417 0208 AtiPcie - ok
16:21:22.0495 0208 AudioEndpointBuilder (07721a77180edd4d39ccb865bf63c7fd) C:\Windows\System32\Audiosrv.dll
16:21:22.0511 0208 AudioEndpointBuilder - ok
16:21:22.0526 0208 AudioSrv (07721a77180edd4d39ccb865bf63c7fd) C:\Windows\System32\Audiosrv.dll
16:21:22.0526 0208 AudioSrv - ok
16:21:22.0698 0208 Autodesk Content Service (1992c2a1867d95aa3a0802539358d162) C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe
16:21:22.0698 0208 Autodesk Content Service - ok
16:21:22.0838 0208 avast! Antivirus (b31f785751157aa8e2a33ea1cb4dc5be) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
16:21:22.0838 0208 avast! Antivirus - ok
16:21:22.0885 0208 AxInstSV (b20b5fa5ca050e9926e4d1db81501b32) C:\Windows\System32\AxInstSV.dll
16:21:22.0901 0208 AxInstSV - ok
16:21:22.0963 0208 b06bdrv (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\DRIVERS\bxvbda.sys
16:21:22.0994 0208 b06bdrv - ok
16:21:23.0072 0208 b57nd60a (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys
16:21:23.0103 0208 b57nd60a - ok
16:21:23.0306 0208 BDESVC (fde360167101b4e45a96f939f388aeb0) C:\Windows\System32\bdesvc.dll
16:21:23.0306 0208 BDESVC - ok
16:21:23.0337 0208 Beep (16a47ce2decc9b099349a5f840654746) C:\Windows\system32\drivers\Beep.sys
16:21:23.0337 0208 Beep - ok
16:21:23.0400 0208 BFE (4992c609a6315671463e30f6512bc022) C:\Windows\System32\bfe.dll
16:21:23.0447 0208 BFE - ok
16:21:23.0525 0208 BITS (7f0c323fe3da28aa4aa1bda3f575707f) C:\Windows\system32\qmgr.dll
16:21:23.0556 0208 BITS - ok
16:21:23.0603 0208 blbdrive (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\DRIVERS\blbdrive.sys
16:21:23.0603 0208 blbdrive - ok
16:21:23.0618 0208 bowser (91ce0d3dc57dd377e690a2d324022b08) C:\Windows\system32\DRIVERS\bowser.sys
16:21:23.0634 0208 bowser - ok
16:21:23.0649 0208 BrFiltLo (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\DRIVERS\BrFiltLo.sys
16:21:23.0649 0208 BrFiltLo - ok
16:21:23.0649 0208 BrFiltUp (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\DRIVERS\BrFiltUp.sys
16:21:23.0649 0208 BrFiltUp - ok
16:21:23.0727 0208 BridgeMP (5c2f352a4e961d72518261257aae204b) C:\Windows\system32\DRIVERS\bridge.sys
16:21:23.0727 0208 BridgeMP - ok
16:21:23.0759 0208 Browser (94fbc06f294d58d02361918418f996e3) C:\Windows\System32\browser.dll
16:21:23.0759 0208 Browser - ok
16:21:23.0790 0208 Brserid (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys
16:21:23.0805 0208 Brserid - ok
16:21:23.0821 0208 BrSerWdm (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys
16:21:23.0821 0208 BrSerWdm - ok
16:21:23.0821 0208 BrUsbMdm (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys
16:21:23.0837 0208 BrUsbMdm - ok
16:21:23.0837 0208 BrUsbSer (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys
16:21:23.0837 0208 BrUsbSer - ok
16:21:23.0852 0208 BTHMODEM (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\DRIVERS\bthmodem.sys
16:21:23.0868 0208 BTHMODEM - ok
16:21:23.0899 0208 bthserv (95f9c2976059462cbbf227f7aab10de9) C:\Windows\system32\bthserv.dll
16:21:23.0915 0208 bthserv - ok
16:21:23.0930 0208 catchme - ok
16:21:23.0961 0208 cdfs (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys
16:21:23.0961 0208 cdfs - ok
16:21:23.0993 0208 cdrom (83d2d75e1efb81b3450c18131443f7db) C:\Windows\system32\DRIVERS\cdrom.sys
16:21:23.0993 0208 cdrom - ok
16:21:24.0008 0208 CertPropSvc (312e2f82af11e79906898ac3e3d58a1f) C:\Windows\System32\certprop.dll
16:21:24.0008 0208 CertPropSvc - ok
16:21:24.0024 0208 circlass (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\DRIVERS\circlass.sys
16:21:24.0024 0208 circlass - ok
16:21:24.0055 0208 CLFS (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys
16:21:24.0071 0208 CLFS - ok
16:21:24.0117 0208 clr_optimization_v2.0.50727_32 (d88040f816fda31c3b466f0fa0918f29) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
16:21:24.0117 0208 clr_optimization_v2.0.50727_32 - ok
16:21:24.0164 0208 clr_optimization_v2.0.50727_64 (d1ceea2b47cb998321c579651ce3e4f8) C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
16:21:24.0164 0208 clr_optimization_v2.0.50727_64 - ok
16:21:24.0273 0208 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
16:21:24.0289 0208 clr_optimization_v4.0.30319_32 - ok
16:21:24.0305 0208 clr_optimization_v4.0.30319_64 (c6f9af94dcd58122a4d7e89db6bed29d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
16:21:24.0305 0208 clr_optimization_v4.0.30319_64 - ok
16:21:24.0351 0208 CmBatt (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\DRIVERS\CmBatt.sys
16:21:24.0351 0208 CmBatt - ok
16:21:24.0367 0208 cmdide (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\DRIVERS\cmdide.sys
16:21:24.0367 0208 cmdide - ok
16:21:24.0398 0208 CNG (f95fd4cb7da00ba2a63ce9f6b5c053e1) C:\Windows\system32\Drivers\cng.sys
16:21:24.0414 0208 CNG - ok
16:21:24.0429 0208 Compbatt (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\DRIVERS\compbatt.sys
16:21:24.0429 0208 Compbatt - ok
16:21:24.0445 0208 CompositeBus (f26b3a86f6fa87ca360b879581ab4123) C:\Windows\system32\DRIVERS\CompositeBus.sys
16:21:24.0445 0208 CompositeBus - ok
16:21:24.0461 0208 COMSysApp - ok
16:21:24.0476 0208 crcdisk (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\DRIVERS\crcdisk.sys
16:21:24.0476 0208 crcdisk - ok
16:21:24.0507 0208 CryptSvc (8c57411b66282c01533cb776f98ad384) C:\Windows\system32\cryptsvc.dll
16:21:24.0507 0208 CryptSvc - ok
16:21:24.0554 0208 CSC (4a6173c2279b498cd8f57cae504564cb) C:\Windows\system32\drivers\csc.sys
16:21:24.0601 0208 CSC - ok
16:21:24.0663 0208 CscService (873fbf927c06e5cee04dec617502f8fd) C:\Windows\System32\cscsvc.dll
16:21:24.0695 0208 CscService - ok
16:21:24.0726 0208 DcomLaunch (7266972e86890e2b30c0c322e906b027) C:\Windows\system32\rpcss.dll
16:21:24.0741 0208 DcomLaunch - ok
16:21:24.0788 0208 defragsvc (3cec7631a84943677aa8fa8ee5b6b43d) C:\Windows\System32\defragsvc.dll
16:21:24.0804 0208 defragsvc - ok
16:21:24.0851 0208 DfsC (3f1dc527070acb87e40afe46ef6da749) C:\Windows\system32\Drivers\dfsc.sys
16:21:24.0851 0208 DfsC - ok
16:21:24.0882 0208 dg_ssudbus (113212d25d0c9bb8901a9833774da97f) C:\Windows\system32\DRIVERS\ssudbus.sys
16:21:24.0882 0208 dg_ssudbus - ok
16:21:24.0929 0208 Dhcp (ce3b9562d997f69b330d181a8875960f) C:\Windows\system32\dhcpcore.dll
16:21:24.0944 0208 Dhcp - ok
16:21:24.0960 0208 discache (13096b05847ec78f0977f2c0f79e9ab3) C:\Windows\system32\drivers\discache.sys
16:21:24.0960 0208 discache - ok
16:21:25.0007 0208 Disk (9819eee8b5ea3784ec4af3b137a5244c) C:\Windows\system32\DRIVERS\disk.sys
16:21:25.0007 0208 Disk - ok
16:21:25.0038 0208 Dnscache (676108c4e3aa6f6b34633748bd0bebd9) C:\Windows\System32\dnsrslvr.dll
16:21:25.0038 0208 Dnscache - ok
16:21:25.0069 0208 dot3svc (14452acdb09b70964c8c21bf80a13acb) C:\Windows\System32\dot3svc.dll
16:21:25.0085 0208 dot3svc - ok
16:21:25.0116 0208 DPS (8c2ba6bea949ee6e68385f5692bafb94) C:\Windows\system32\dps.dll
16:21:25.0116 0208 DPS - ok
16:21:25.0147 0208 drmkaud (9b19f34400d24df84c858a421c205754) C:\Windows\system32\drivers\drmkaud.sys
16:21:25.0147 0208 drmkaud - ok
16:21:25.0209 0208 dtsoftbus01 (46571ed73ae84469dca53081d33cf3c8) C:\Windows\system32\DRIVERS\dtsoftbus01.sys
16:21:25.0225 0208 dtsoftbus01 - ok
16:21:25.0303 0208 DXGKrnl (7cb7d2b73813ce05c7bc0f5f95d27cec) C:\Windows\System32\drivers\dxgkrnl.sys
16:21:25.0334 0208 DXGKrnl - ok
16:21:25.0365 0208 EagleX64 - ok
16:21:25.0381 0208 EapHost (e2dda8726da9cb5b2c4000c9018a9633) C:\Windows\System32\eapsvc.dll
16:21:25.0397 0208 EapHost - ok
16:21:25.0599 0208 ebdrv (dc5d737f51be844d8c82c695eb17372f) C:\Windows\system32\DRIVERS\evbda.sys
16:21:25.0709 0208 ebdrv - ok
16:21:25.0787 0208 EFS (0793f40b9b8a1bdd266296409dbd91ea) C:\Windows\System32\lsass.exe
16:21:25.0787 0208 EFS - ok
16:21:25.0865 0208 ehRecvr (b91d81b3b54a54ccafc03733dbc2e29e) C:\Windows\ehome\ehRecvr.exe
16:21:25.0865 0208 ehRecvr - ok
16:21:25.0880 0208 ehSched (4705e8ef9934482c5bb488ce28afc681) C:\Windows\ehome\ehsched.exe
16:21:25.0880 0208 ehSched - ok
16:21:25.0943 0208 elxstor (0e5da5369a0fcaea12456dd852545184) C:\Windows\system32\DRIVERS\elxstor.sys
16:21:25.0958 0208 elxstor - ok
16:21:25.0974 0208 ErrDev (34a3c54752046e79a126e15c51db409b) C:\Windows\system32\DRIVERS\errdev.sys
16:21:25.0974 0208 ErrDev - ok
16:21:26.0021 0208 EventSystem (4166f82be4d24938977dd1746be9b8a0) C:\Windows\system32\es.dll
16:21:26.0036 0208 EventSystem - ok
16:21:26.0052 0208 exfat (a510c654ec00c1e9bdd91eeb3a59823b) C:\Windows\system32\drivers\exfat.sys
16:21:26.0067 0208 exfat - ok
16:21:26.0083 0208 fastfat (0adc83218b66a6db380c330836f3e36d) C:\Windows\system32\drivers\fastfat.sys
16:21:26.0083 0208 fastfat - ok
16:21:26.0145 0208 Fax (d607b2f1bee3992aa6c2c92c0a2f0855) C:\Windows\system32\fxssvc.exe
16:21:26.0177 0208 Fax - ok
16:21:26.0177 0208 fdc (d765d19cd8ef61f650c384f62fac00ab) C:\Windows\system32\DRIVERS\fdc.sys
16:21:26.0177 0208 fdc - ok
16:21:26.0192 0208 fdPHost (0438cab2e03f4fb61455a7956026fe86) C:\Windows\system32\fdPHost.dll
16:21:26.0192 0208 fdPHost - ok
16:21:26.0208 0208 FDResPub (802496cb59a30349f9a6dd22d6947644) C:\Windows\system32\fdrespub.dll
16:21:26.0208 0208 FDResPub - ok
16:21:26.0223 0208 FileInfo (655661be46b5f5f3fd454e2c3095b930) C:\Windows\system32\drivers\fileinfo.sys
16:21:26.0223 0208 FileInfo - ok
16:21:26.0239 0208 Filetrace (5f671ab5bc87eea04ec38a6cd5962a47) C:\Windows\system32\drivers\filetrace.sys
16:21:26.0239 0208 Filetrace - ok
16:21:26.0379 0208 FLEXnet Licensing Service 64 (5cee6cd43ae5844c49300ea0b1e557ee) C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
16:21:26.0411 0208 FLEXnet Licensing Service 64 - ok
16:21:26.0489 0208 flpydisk (c172a0f53008eaeb8ea33fe10e177af5) C:\Windows\system32\DRIVERS\flpydisk.sys
16:21:26.0489 0208 flpydisk - ok
16:21:26.0504 0208 FltMgr (f7866af72abbaf84b1fa5aa195378c59) C:\Windows\system32\drivers\fltmgr.sys
16:21:26.0504 0208 FltMgr - ok
16:21:26.0582 0208 FontCache (8ac4cb4ea61e41009fae9ae7b2b5da3a) C:\Windows\system32\FntCache.dll
16:21:26.0629 0208 FontCache - ok
16:21:26.0691 0208 FontCache3.0.0.0 (8d89e3131c27fdd6932189cb785e1b7a) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
16:21:26.0691 0208 FontCache3.0.0.0 - ok
16:21:26.0723 0208 FsDepends (d43703496149971890703b4b1b723eac) C:\Windows\system32\drivers\FsDepends.sys
16:21:26.0723 0208 FsDepends - ok
16:21:26.0723 0208 Fs_Rec (e95ef8547de20cf0603557c0cf7a9462) C:\Windows\system32\drivers\Fs_Rec.sys
16:21:26.0723 0208 Fs_Rec - ok
16:21:26.0754 0208 fvevol (b8b2a6e1558f8f5de5ce431c5b2c7b09) C:\Windows\system32\DRIVERS\fvevol.sys
16:21:26.0754 0208 fvevol - ok
16:21:26.0785 0208 gagp30kx (8c778d335c9d272cfd3298ab02abe3b6) C:\Windows\system32\DRIVERS\gagp30kx.sys
16:21:26.0785 0208 gagp30kx - ok
16:21:26.0925 0208 GPCIDrv (5d4df0bac74e9ac62af6bc99440b050b) C:\Program Files (x86)\GIGABYTE\atBIOS\GPCIDrv64.sys
16:21:26.0925 0208 GPCIDrv - ok
16:21:27.0003 0208 gpsvc (fe5ab4525bc2ec68b9119a6e5d40128b) C:\Windows\System32\gpsvc.dll
16:21:27.0035 0208 gpsvc - ok
16:21:27.0097 0208 gupdate (f02a533f517eb38333cb12a9e8963773) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
16:21:27.0097 0208 gupdate - ok
16:21:27.0113 0208 gupdatem (f02a533f517eb38333cb12a9e8963773) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
16:21:27.0113 0208 gupdatem - ok
16:21:27.0159 0208 hamachi (1e6438d4ea6e1174a3b3b1edc4de660b) C:\Windows\system32\DRIVERS\hamachi.sys
16:21:27.0159 0208 hamachi - ok
16:21:27.0409 0208 Hamachi2Svc (21d24138b736983f6e23823e092e9428) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
16:21:27.0471 0208 Hamachi2Svc - ok
16:21:27.0549 0208 hcw85cir (f2523ef6460fc42405b12248338ab2f0) C:\Windows\system32\drivers\hcw85cir.sys
16:21:27.0549 0208 hcw85cir - ok
16:21:27.0596 0208 HdAudAddService (6410f6f415b2a5a9037224c41da8bf12) C:\Windows\system32\drivers\HdAudio.sys
16:21:27.0612 0208 HdAudAddService - ok
16:21:27.0627 0208 HDAudBus (0a49913402747a0b67de940fb42cbdbb) C:\Windows\system32\DRIVERS\HDAudBus.sys
16:21:27.0627 0208 HDAudBus - ok
16:21:27.0659 0208 HidBatt (78e86380454a7b10a5eb255dc44a355f) C:\Windows\system32\DRIVERS\HidBatt.sys
16:21:27.0659 0208 HidBatt - ok
16:21:27.0659 0208 HidBth (7fd2a313f7afe5c4dab14798c48dd104) C:\Windows\system32\DRIVERS\hidbth.sys
16:21:27.0659 0208 HidBth - ok
16:21:27.0674 0208 HidIr (0a77d29f311b88cfae3b13f9c1a73825) C:\Windows\system32\DRIVERS\hidir.sys
16:21:27.0674 0208 HidIr - ok
16:21:27.0690 0208 hidserv (bd9eb3958f213f96b97b1d897dee006d) C:\Windows\System32\hidserv.dll
16:21:27.0690 0208 hidserv - ok
16:21:27.0705 0208 HidUsb (b3bf6b5b50006def50b66306d99fcf6f) C:\Windows\system32\DRIVERS\hidusb.sys
16:21:27.0721 0208 HidUsb - ok
16:21:27.0737 0208 hkmsvc (efa58ede58dd74388ffd04cb32681518) C:\Windows\system32\kmsvc.dll
16:21:27.0737 0208 hkmsvc - ok
16:21:27.0768 0208 HomeGroupListener (046b2673767ca626e2cfb7fdf735e9e8) C:\Windows\system32\ListSvc.dll
16:21:27.0768 0208 HomeGroupListener - ok
16:21:27.0799 0208 HomeGroupProvider (06a7422224d9865a5613710a089987df) C:\Windows\system32\provsvc.dll
16:21:27.0830 0208 HomeGroupProvider - ok
16:21:27.0830 0208 HpSAMD (0886d440058f203eba0e1825e4355914) C:\Windows\system32\DRIVERS\HpSAMD.sys
16:21:27.0830 0208 HpSAMD - ok
16:21:27.0893 0208 HTTP (cee049cac4efa7f4e1e4ad014414a5d4) C:\Windows\system32\drivers\HTTP.sys
16:21:27.0908 0208 HTTP - ok
16:21:27.0924 0208 hwpolicy (f17766a19145f111856378df337a5d79) C:\Windows\system32\drivers\hwpolicy.sys
16:21:27.0924 0208 hwpolicy - ok
16:21:27.0939 0208 i8042prt (fa55c73d4affa7ee23ac4be53b4592d3) C:\Windows\system32\DRIVERS\i8042prt.sys
16:21:27.0955 0208 i8042prt - ok
16:21:27.0986 0208 iaStorV (d83efb6fd45df9d55e9a1afc63640d50) C:\Windows\system32\DRIVERS\iaStorV.sys
16:21:27.0986 0208 iaStorV - ok
16:21:28.0142 0208 IDriverT (daf66902f08796f9c694901660e5a64a) C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
16:21:28.0142 0208 IDriverT - ok
16:21:28.0267 0208 idsvc (2f2be70d3e02b6fa877921ab9516d43c) C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
16:21:28.0298 0208 idsvc - ok
16:21:28.0501 0208 iirsp (5c18831c61933628f5bb0ea2675b9d21) C:\Windows\system32\DRIVERS\iirsp.sys
16:21:28.0501 0208 iirsp - ok
16:21:28.0579 0208 IKEEXT (c5b4683680df085b57bc53e5ef34861f) C:\Windows\System32\ikeext.dll
16:21:28.0626 0208 IKEEXT - ok
16:21:28.0860 0208 IntcAzAudAddService (cb7dadef3d83fe2c12655a0bdcba99f2) C:\Windows\system32\drivers\RTKVHD64.sys
16:21:28.0953 0208 IntcAzAudAddService - ok
16:21:29.0031 0208 intelide (f00f20e70c6ec3aa366910083a0518aa) C:\Windows\system32\DRIVERS\intelide.sys
16:21:29.0047 0208 intelide - ok
16:21:29.0063 0208 intelppm (ada036632c664caa754079041cf1f8c1) C:\Windows\system32\DRIVERS\intelppm.sys
16:21:29.0078 0208 intelppm - ok
16:21:29.0094 0208 IPBusEnum (098a91c54546a3b878dad6a7e90a455b) C:\Windows\system32\ipbusenum.dll
16:21:29.0109 0208 IPBusEnum - ok
16:21:29.0125 0208 IpFilterDriver (722dd294df62483cecaae6e094b4d695) C:\Windows\system32\DRIVERS\ipfltdrv.sys
16:21:29.0125 0208 IpFilterDriver - ok
16:21:29.0172 0208 iphlpsvc (f8e058d17363ec580e4b7232778b6cb5) C:\Windows\System32\iphlpsvc.dll
16:21:29.0187 0208 iphlpsvc - ok
16:21:29.0187 0208 IPMIDRV (e2b4a4494db7cb9b89b55ca268c337c5) C:\Windows\system32\DRIVERS\IPMIDrv.sys
16:21:29.0187 0208 IPMIDRV - ok
16:21:29.0203 0208 IPNAT (af9b39a7e7b6caa203b3862582e9f2d0) C:\Windows\system32\drivers\ipnat.sys
16:21:29.0203 0208 IPNAT - ok
16:21:29.0219 0208 IRENUM (3abf5e7213eb28966d55d58b515d5ce9) C:\Windows\system32\drivers\irenum.sys
16:21:29.0219 0208 IRENUM - ok
16:21:29.0234 0208 isapnp (2f7b28dc3e1183e5eb418df55c204f38) C:\Windows\system32\DRIVERS\isapnp.sys
16:21:29.0234 0208 isapnp - ok
16:21:29.0265 0208 iScsiPrt (fa4d2557de56d45b0a346f93564be6e1) C:\Windows\system32\DRIVERS\msiscsi.sys
16:21:29.0281 0208 iScsiPrt - ok
16:21:29.0297 0208 kbdclass (bc02336f1cba7dcc7d1213bb588a68a5) C:\Windows\system32\DRIVERS\kbdclass.sys
16:21:29.0297 0208 kbdclass - ok
16:21:29.0312 0208 kbdhid (6def98f8541e1b5dceb2c822a11f7323) C:\Windows\system32\DRIVERS\kbdhid.sys
16:21:29.0312 0208 kbdhid - ok
16:21:29.0343 0208 KeyIso (0793f40b9b8a1bdd266296409dbd91ea) C:\Windows\system32\lsass.exe
16:21:29.0343 0208 KeyIso - ok
16:21:29.0359 0208 KSecDD (e8b6fcc9c83535c67f835d407620bd27) C:\Windows\system32\Drivers\ksecdd.sys
16:21:29.0359 0208 KSecDD - ok
16:21:29.0375 0208 KSecPkg (bbe1bf6d9b661c354d4857d5fadb943b) C:\Windows\system32\Drivers\ksecpkg.sys
16:21:29.0390 0208 KSecPkg - ok
16:21:29.0390 0208 ksthunk (6869281e78cb31a43e969f06b57347c4) C:\Windows\system32\drivers\ksthunk.sys
16:21:29.0390 0208 ksthunk - ok
16:21:29.0437 0208 KtmRm (6ab66e16aa859232f64deb66887a8c9c) C:\Windows\system32\msdtckrm.dll
16:21:29.0453 0208 KtmRm - ok
16:21:29.0499 0208 LanmanServer (c926920b8978de6acfe9e15c709e9b57) C:\Windows\System32\srvsvc.dll
16:21:29.0515 0208 LanmanServer - ok
16:21:29.0546 0208 LanmanWorkstation (27026eac8818e8a6c00a1cad2f11d29a) C:\Windows\System32\wkssvc.dll
16:21:29.0546 0208 LanmanWorkstation - ok
16:21:29.0577 0208 lltdio (1538831cf8ad2979a04c423779465827) C:\Windows\system32\DRIVERS\lltdio.sys
16:21:29.0577 0208 lltdio - ok
16:21:29.0624 0208 lltdsvc (c1185803384ab3feed115f79f109427f) C:\Windows\System32\lltdsvc.dll
16:21:29.0640 0208 lltdsvc - ok
16:21:29.0655 0208 lmhosts (f993a32249b66c9d622ea5592a8b76b8) C:\Windows\System32\lmhsvc.dll
16:21:29.0655 0208 lmhosts - ok
16:21:29.0702 0208 LSI_FC (1a93e54eb0ece102495a51266dcdb6a6) C:\Windows\system32\DRIVERS\lsi_fc.sys
16:21:29.0702 0208 LSI_FC - ok
16:21:29.0733 0208 LSI_SAS (1047184a9fdc8bdbff857175875ee810) C:\Windows\system32\DRIVERS\lsi_sas.sys
16:21:29.0733 0208 LSI_SAS - ok
16:21:29.0749 0208 LSI_SAS2 (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\Windows\system32\DRIVERS\lsi_sas2.sys
16:21:29.0749 0208 LSI_SAS2 - ok
16:21:29.0780 0208 LSI_SCSI (0504eacaff0d3c8aed161c4b0d369d4a) C:\Windows\system32\DRIVERS\lsi_scsi.sys
16:21:29.0780 0208 LSI_SCSI - ok
16:21:29.0811 0208 luafv (43d0f98e1d56ccddb0d5254cff7b356e) C:\Windows\system32\drivers\luafv.sys
16:21:29.0811 0208 luafv - ok
16:21:29.0858 0208 MBAMProtector (dc8490812a3b72811ae534f423b4c206) C:\Windows\system32\drivers\mbam.sys
16:21:29.0874 0208 MBAMProtector - ok
16:21:30.0014 0208 MBAMService (43683e970f008c93c9429ef428147a54) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
16:21:30.0014 0208 MBAMService - ok
16:21:30.0045 0208 Mcx2Svc (f84c8f1000bc11e3b7b23cbd3baff111) C:\Windows\system32\Mcx2Svc.dll
16:21:30.0045 0208 Mcx2Svc - ok
16:21:30.0108 0208 MDM (e416e967e3fb6fb1e9ae12b9c7dab526) C:\Program Files (x86)\Common Files\Microsoft Shared\VS7Debug\mdm.exe
16:21:30.0108 0208 MDM - ok
16:21:30.0123 0208 megasas (a55805f747c6edb6a9080d7c633bd0f4) C:\Windows\system32\DRIVERS\megasas.sys
16:21:30.0139 0208 megasas - ok
16:21:30.0186 0208 MegaSR (baf74ce0072480c3b6b7c13b2a94d6b3) C:\Windows\system32\DRIVERS\MegaSR.sys
16:21:30.0201 0208 MegaSR - ok
16:21:30.0217 0208 MMCSS (e40e80d0304a73e8d269f7141d77250b) C:\Windows\system32\mmcss.dll
16:21:30.0233 0208 MMCSS - ok
16:21:30.0248 0208 Modem (800ba92f7010378b09f9ed9270f07137) C:\Windows\system32\drivers\modem.sys
16:21:30.0248 0208 Modem - ok
16:21:30.0264 0208 monitor (b03d591dc7da45ece20b3b467e6aadaa) C:\Windows\system32\DRIVERS\monitor.sys
16:21:30.0264 0208 monitor - ok
16:21:30.0295 0208 mouclass (7d27ea49f3c1f687d357e77a470aea99) C:\Windows\system32\DRIVERS\mouclass.sys
16:21:30.0295 0208 mouclass - ok
16:21:30.0326 0208 mouhid (d3bf052c40b0c4166d9fd86a4288c1e6) C:\Windows\system32\DRIVERS\mouhid.sys
16:21:30.0326 0208 mouhid - ok
16:21:30.0342 0208 mountmgr (791af66c4d0e7c90a3646066386fb571) C:\Windows\system32\drivers\mountmgr.sys
16:21:30.0357 0208 mountmgr - ok
16:21:30.0420 0208 MozillaMaintenance (15d5398eed42c2504bb3d4fc875c15d1) C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
16:21:30.0420 0208 MozillaMaintenance - ok
16:21:30.0451 0208 mpio (609d1d87649ecc19796f4d76d4c15cea) C:\Windows\system32\DRIVERS\mpio.sys
16:21:30.0467 0208 mpio - ok
16:21:30.0482 0208 mpsdrv (6c38c9e45ae0ea2fa5e551f2ed5e978f) C:\Windows\system32\drivers\mpsdrv.sys
16:21:30.0482 0208 mpsdrv - ok
16:21:30.0560 0208 MpsSvc (aecab449567d1846dad63ece49e893e3) C:\Windows\system32\mpssvc.dll
16:21:30.0591 0208 MpsSvc - ok
16:21:30.0623 0208 MRxDAV (30524261bb51d96d6fcbac20c810183c) C:\Windows\system32\drivers\mrxdav.sys
16:21:30.0623 0208 MRxDAV - ok
16:21:30.0638 0208 mrxsmb (cfdcd8ca87c2a657debc150ac35b5e08) C:\Windows\system32\DRIVERS\mrxsmb.sys
16:21:30.0638 0208 mrxsmb - ok
16:21:30.0669 0208 mrxsmb10 (1bee517b220b7f024f411aec1571dd5a) C:\Windows\system32\DRIVERS\mrxsmb10.sys
16:21:30.0669 0208 mrxsmb10 - ok
16:21:30.0685 0208 mrxsmb20 (6b2d5fef385828b6e485c1c90afb8195) C:\Windows\system32\DRIVERS\mrxsmb20.sys
16:21:30.0685 0208 mrxsmb20 - ok
16:21:30.0701 0208 msahci (5c37497276e3b3a5488b23a326a754b7) C:\Windows\system32\DRIVERS\msahci.sys
16:21:30.0701 0208 msahci - ok
16:21:30.0716 0208 msdsm (8d27b597229aed79430fb9db3bcbfbd0) C:\Windows\system32\DRIVERS\msdsm.sys
16:21:30.0732 0208 msdsm - ok
16:21:30.0747 0208 MSDTC (de0ece52236cfa3ed2dbfc03f28253a8) C:\Windows\System32\msdtc.exe
16:21:30.0747 0208 MSDTC - ok
16:21:30.0763 0208 Msfs (aa3fb40e17ce1388fa1bedab50ea8f96) C:\Windows\system32\drivers\Msfs.sys
16:21:30.0763 0208 Msfs - ok
16:21:30.0779 0208 mshidkmdf (f9d215a46a8b9753f61767fa72a20326) C:\Windows\System32\drivers\mshidkmdf.sys
16:21:30.0779 0208 mshidkmdf - ok
16:21:30.0794 0208 msisadrv (d916874bbd4f8b07bfb7fa9b3ccae29d) C:\Windows\system32\DRIVERS\msisadrv.sys
16:21:30.0794 0208 msisadrv - ok
16:21:30.0825 0208 MSiSCSI (808e98ff49b155c522e6400953177b08) C:\Windows\system32\iscsiexe.dll
16:21:30.0825 0208 MSiSCSI - ok
16:21:30.0825 0208 msiserver - ok
16:21:30.0857 0208 MSKSSRV (49ccf2c4fea34ffad8b1b59d49439366) C:\Windows\system32\drivers\MSKSSRV.sys
16:21:30.0857 0208 MSKSSRV - ok
16:21:30.0872 0208 MSPCLOCK (bdd71ace35a232104ddd349ee70e1ab3) C:\Windows\system32\drivers\MSPCLOCK.sys
16:21:30.0872 0208 MSPCLOCK - ok
16:21:30.0872 0208 MSPQM (4ed981241db27c3383d72092b618a1d0) C:\Windows\system32\drivers\MSPQM.sys
16:21:30.0872 0208 MSPQM - ok
16:21:30.0903 0208 MsRPC (89cb141aa8616d8c6a4610fa26c60964) C:\Windows\system32\drivers\MsRPC.sys
16:21:30.0919 0208 MsRPC - ok
16:21:30.0935 0208 mssmbios (0eed230e37515a0eaee3c2e1bc97b288) C:\Windows\system32\DRIVERS\mssmbios.sys
16:21:30.0935 0208 mssmbios - ok
16:21:30.0935 0208 MSTEE (2e66f9ecb30b4221a318c92ac2250779) C:\Windows\system32\drivers\MSTEE.sys
16:21:30.0935 0208 MSTEE - ok
16:21:30.0950 0208 MTConfig (7ea404308934e675bffde8edf0757bcd) C:\Windows\system32\DRIVERS\MTConfig.sys
16:21:30.0950 0208 MTConfig - ok
16:21:30.0966 0208 Mup (f9a18612fd3526fe473c1bda678d61c8) C:\Windows\system32\Drivers\mup.sys
16:21:30.0966 0208 Mup - ok
16:21:31.0028 0208 napagent (4987e079a4530fa737a128be54b63b12) C:\Windows\system32\qagentRT.dll
16:21:31.0044 0208 napagent - ok
16:21:31.0075 0208 NativeWifiP (1ea3749c4114db3e3161156ffffa6b33) C:\Windows\system32\DRIVERS\nwifi.sys
16:21:31.0091 0208 NativeWifiP - ok
16:21:31.0169 0208 NDIS (cad515dbd07d082bb317d9928ce8962c) C:\Windows\system32\drivers\ndis.sys
16:21:31.0184 0208 NDIS - ok
16:21:31.0200 0208 NdisCap (9f9a1f53aad7da4d6fef5bb73ab811ac) C:\Windows\system32\DRIVERS\ndiscap.sys
16:21:31.0200 0208 NdisCap - ok
16:21:31.0231 0208 NdisTapi (30639c932d9fef22b31268fe25a1b6e5) C:\Windows\system32\DRIVERS\ndistapi.sys
16:21:31.0231 0208 NdisTapi - ok
16:21:31.0231 0208 Ndisuio (f105ba1e22bf1f2ee8f005d4305e4bec) C:\Windows\system32\DRIVERS\ndisuio.sys
16:21:31.0231 0208 Ndisuio - ok
16:21:31.0262 0208 NdisWan (557dfab9ca1fcb036ac77564c010dad3) C:\Windows\system32\DRIVERS\ndiswan.sys
16:21:31.0262 0208 NdisWan - ok
16:21:31.0278 0208 NDProxy (659b74fb74b86228d6338d643cd3e3cf) C:\Windows\system32\drivers\NDProxy.sys
16:21:31.0278 0208 NDProxy - ok
16:21:31.0543 0208 Nero BackItUp Scheduler 3 (2aae889742376edc5c3203dfb74f28fd) C:\Program Files (x86)\Nero\Nero8\Nero BackItUp\NBService.exe
16:21:31.0574 0208 Nero BackItUp Scheduler 3 - ok
16:21:31.0590 0208 NetBIOS (86743d9f5d2b1048062b14b1d84501c4) C:\Windows\system32\DRIVERS\netbios.sys
16:21:31.0590 0208 NetBIOS - ok
16:21:31.0637 0208 NetBT (9162b273a44ab9dce5b44362731d062a) C:\Windows\system32\DRIVERS\netbt.sys
16:21:31.0637 0208 NetBT - ok
16:21:31.0668 0208 Netlogon (0793f40b9b8a1bdd266296409dbd91ea) C:\Windows\system32\lsass.exe
16:21:31.0668 0208 Netlogon - ok
16:21:31.0730 0208 Netman (847d3ae376c0817161a14a82c8922a9e) C:\Windows\System32\netman.dll
16:21:31.0730 0208 Netman - ok
16:21:31.0839 0208 NetMsmqActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
16:21:31.0839 0208 NetMsmqActivator - ok
16:21:31.0855 0208 NetPipeActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
16:21:31.0855 0208 NetPipeActivator - ok
16:21:31.0886 0208 netprofm (5f28111c648f1e24f7dbc87cdeb091b8) C:\Windows\System32\netprofm.dll
16:21:31.0917 0208 netprofm - ok
16:21:31.0917 0208 NetTcpActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
16:21:31.0917 0208 NetTcpActivator - ok
16:21:31.0917 0208 NetTcpPortSharing (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
16:21:31.0917 0208 NetTcpPortSharing - ok
16:21:31.0964 0208 nfrd960 (77889813be4d166cdab78ddba990da92) C:\Windows\system32\DRIVERS\nfrd960.sys
16:21:31.0964 0208 nfrd960 - ok
16:21:31.0995 0208 NlaSvc (d9a0ce66046d6efa0c61baa885cba0a8) C:\Windows\System32\nlasvc.dll
16:21:32.0027 0208 NlaSvc - ok
16:21:32.0214 0208 NMIndexingService (cb992ae1506985d9167e85883b4c3240) C:\Program Files (x86)\Common Files\Nero\Lib\NMIndexingService.exe
16:21:32.0229 0208 NMIndexingService - ok
16:21:32.0245 0208 Npfs (1e4c4ab5c9b8dd13179bbdc75a2a01f7) C:\Windows\system32\drivers\Npfs.sys
16:21:32.0245 0208 Npfs - ok
16:21:32.0261 0208 nsi (d54bfdf3e0c953f823b3d0bfe4732528) C:\Windows\system32\nsisvc.dll
16:21:32.0261 0208 nsi - ok
16:21:32.0276 0208 nsiproxy (e7f5ae18af4168178a642a9247c63001) C:\Windows\system32\drivers\nsiproxy.sys
16:21:32.0276 0208 nsiproxy - ok
16:21:32.0354 0208 Ntfs (356698a13c4630d5b31c37378d469196) C:\Windows\system32\drivers\Ntfs.sys
16:21:32.0385 0208 Ntfs - ok
16:21:32.0432 0208 NTIOLib_1_0_2 (f66b96aa7ae430b56289409241645099) C:\Program Files (x86)\MSI\BIOS Code Unlocked Technology\NTIOLib_X64.sys
16:21:32.0432 0208 NTIOLib_1_0_2 - ok
16:21:32.0510 0208 Null (9899284589f75fa8724ff3d16aed75c1) C:\Windows\system32\drivers\Null.sys
16:21:32.0510 0208 Null - ok
16:21:32.0541 0208 nusb3hub (0ebc9d13cd96c15b1b18d8678a609e4b) C:\Windows\system32\DRIVERS\nusb3hub.sys
16:21:32.0541 0208 nusb3hub - ok
16:21:32.0557 0208 nusb3xhc (7bdec000d56d485021d9c1e63c2f81ca) C:\Windows\system32\DRIVERS\nusb3xhc.sys
16:21:32.0573 0208 nusb3xhc - ok
16:21:32.0619 0208 NVHDA (8d4aac74b571fc356560e5b308955e93) C:\Windows\system32\drivers\nvhda64v.sys
16:21:32.0635 0208 NVHDA - ok
16:21:33.0462 0208 nvlddmkm (0eb204639119370f5f8f2871fbf4e14b) C:\Windows\system32\DRIVERS\nvlddmkm.sys
16:21:33.0774 0208 nvlddmkm - ok
16:21:33.0867 0208 nvraid (3e38712941e9bb4ddbee00affe3fed3d) C:\Windows\system32\DRIVERS\nvraid.sys
16:21:33.0883 0208 nvraid - ok
16:21:33.0899 0208 nvstor (477dc4d6deb99be37084c9ac6d013da1) C:\Windows\system32\DRIVERS\nvstor.sys
16:21:33.0914 0208 nvstor - ok
16:21:33.0992 0208 nvsvc (32ff8ee6dcee5c0cb91ff892fb1ca364) C:\Windows\system32\nvvsvc.exe
16:21:34.0023 0208 nvsvc - ok
16:21:34.0304 0208 nvUpdatusService (bd012dc22c78be1071bc21eb125d782f) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
16:21:34.0320 0208 nvUpdatusService - ok
16:21:34.0413 0208 nv_agp (270d7cd42d6e3979f6dd0146650f0e05) C:\Windows\system32\DRIVERS\nv_agp.sys
16:21:34.0413 0208 nv_agp - ok
16:21:34.0429 0208 ohci1394 (3589478e4b22ce21b41fa1bfc0b8b8a0) C:\Windows\system32\DRIVERS\ohci1394.sys
16:21:34.0429 0208 ohci1394 - ok
16:21:34.0663 0208 OODefragAgent (2e71117ce9f783a7f3eb763e23dade61) C:\Program Files\OO Software\Defrag\oodag.exe
16:21:34.0772 0208 OODefragAgent - ok
16:21:34.0850 0208 p2pimsvc (3eac4455472cc2c97107b5291e0dcafe) C:\Windows\system32\pnrpsvc.dll
16:21:34.0866 0208 p2pimsvc - ok
16:21:34.0913 0208 p2psvc (927463ecb02179f88e4b9a17568c63c3) C:\Windows\system32\p2psvc.dll
16:21:34.0928 0208 p2psvc - ok
16:21:34.0944 0208 Parport (0086431c29c35be1dbc43f52cc273887) C:\Windows\system32\DRIVERS\parport.sys
16:21:34.0944 0208 Parport - ok
16:21:34.0959 0208 partmgr (7daa117143316c4a1537e074a5a9eaf0) C:\Windows\system32\drivers\partmgr.sys
16:21:34.0959 0208 partmgr - ok
16:21:34.0991 0208 PcaSvc (3aeaa8b561e63452c655dc0584922257) C:\Windows\System32\pcasvc.dll
16:21:34.0991 0208 PcaSvc - ok
16:21:35.0006 0208 pci (f36f6504009f2fb0dfd1b17a116ad74b) C:\Windows\system32\DRIVERS\pci.sys
16:21:35.0006 0208 pci - ok
16:21:35.0006 0208 pciide (b5b8b5ef2e5cb34df8dcf8831e3534fa) C:\Windows\system32\DRIVERS\pciide.sys
16:21:35.0006 0208 pciide - ok
16:21:35.0037 0208 pcmcia (b2e81d4e87ce48589f98cb8c05b01f2f) C:\Windows\system32\DRIVERS\pcmcia.sys
16:21:35.0053 0208 pcmcia - ok
16:21:35.0053 0208 pcw (d6b9c2e1a11a3a4b26a182ffef18f603) C:\Windows\system32\drivers\pcw.sys
16:21:35.0053 0208 pcw - ok
16:21:35.0084 0208 PEAUTH (68769c3356b3be5d1c732c97b9a80d6e) C:\Windows\system32\drivers\peauth.sys
16:21:35.0100 0208 PEAUTH - ok
16:21:35.0178 0208 PeerDistSvc (b9b0a4299dd2d76a4243f75fd54dc680) C:\Windows\system32\peerdistsvc.dll
16:21:35.0209 0208 PeerDistSvc - ok
16:21:35.0271 0208 PerfHost (e495e408c93141e8fc72dc0c6046ddfa) C:\Windows\SysWow64\perfhost.exe
16:21:35.0271 0208 PerfHost - ok
16:21:35.0459 0208 pla (557e9a86f65f0de18c9b6751dfe9d3f1) C:\Windows\system32\pla.dll
16:21:35.0521 0208 pla - ok
16:21:35.0583 0208 PLFlash DeviceIoControl Service (875e4e0661f3a5994df9e5e3a0a4f96b) C:\Windows\SysWOW64\IoctlSvc.exe
16:21:35.0583 0208 PLFlash DeviceIoControl Service - ok
16:21:35.0646 0208 PlugPlay (23157d583244400e1d7fbaee2e4b31b7) C:\Windows\system32\umpnpmgr.dll
16:21:35.0661 0208 PlugPlay - ok
16:21:35.0708 0208 PnkBstrA - ok
16:21:35.0739 0208 PNRPAutoReg (7195581cec9bb7d12abe54036acc2e38) C:\Windows\system32\pnrpauto.dll
16:21:35.0755 0208 PNRPAutoReg - ok
16:21:35.0786 0208 PNRPsvc (3eac4455472cc2c97107b5291e0dcafe) C:\Windows\system32\pnrpsvc.dll
16:21:35.0802 0208 PNRPsvc - ok
16:21:35.0849 0208 PolicyAgent (166eb40d1f5b47e615de3d0fffe5f243) C:\Windows\System32\ipsecsvc.dll
16:21:35.0864 0208 PolicyAgent - ok
16:21:35.0895 0208 Power (6ba9d927dded70bd1a9caded45f8b184) C:\Windows\system32\umpo.dll
16:21:35.0911 0208 Power - ok
16:21:35.0958 0208 PptpMiniport (27cc19e81ba5e3403c48302127bda717) C:\Windows\system32\DRIVERS\raspptp.sys
16:21:35.0958 0208 PptpMiniport - ok
16:21:35.0989 0208 Processor (0d922e23c041efb1c3fac2a6f943c9bf) C:\Windows\system32\DRIVERS\processr.sys
16:21:35.0989 0208 Processor - ok
16:21:36.0005 0208 ProfSvc (f381975e1f4346de875cb07339ce8d3a) C:\Windows\system32\profsvc.dll
16:21:36.0020 0208 ProfSvc - ok
16:21:36.0036 0208 ProtectedStorage (0793f40b9b8a1bdd266296409dbd91ea) C:\Windows\system32\lsass.exe
16:21:36.0036 0208 ProtectedStorage - ok
16:21:36.0067 0208 Psched (ee992183bd8eaefd9973f352e587a299) C:\Windows\system32\DRIVERS\pacer.sys
16:21:36.0067 0208 Psched - ok
16:21:36.0161 0208 ql2300 (a53a15a11ebfd21077463ee2c7afeef0) C:\Windows\system32\DRIVERS\ql2300.sys
16:21:36.0207 0208 ql2300 - ok
16:21:36.0301 0208 ql40xx (4f6d12b51de1aaeff7dc58c4d75423c8) C:\Windows\system32\DRIVERS\ql40xx.sys
16:21:36.0301 0208 ql40xx - ok
16:21:36.0332 0208 QWAVE (906191634e99aea92c4816150bda3732) C:\Windows\system32\qwave.dll
16:21:36.0348 0208 QWAVE - ok
16:21:36.0363 0208 QWAVEdrv (76707bb36430888d9ce9d705398adb6c) C:\Windows\system32\drivers\qwavedrv.sys
16:21:36.0363 0208 QWAVEdrv - ok
16:21:36.0488 0208 RalinkRegistryWriter (720fea3aaa15fe7e0beab10ac2e6d2b0) C:\Program Files (x86)\Ovislink\Common\RaRegistry.exe
16:21:36.0504 0208 RalinkRegistryWriter - ok
16:21:36.0566 0208 RalinkRegistryWriter64 (178cef55e09dc320ff6561d4eeb4f632) C:\Program Files (x86)\Ovislink\Common\RaRegistry64.exe
16:21:36.0566 0208 RalinkRegistryWriter64 - ok
16:21:36.0597 0208 RasAcd (5a0da8ad5762fa2d91678a8a01311704) C:\Windows\system32\DRIVERS\rasacd.sys
16:21:36.0613 0208 RasAcd - ok
16:21:36.0644 0208 RasAgileVpn (7ecff9b22276b73f43a99a15a6094e90) C:\Windows\system32\DRIVERS\AgileVpn.sys
16:21:36.0644 0208 RasAgileVpn - ok
16:21:36.0675 0208 RasAuto (8f26510c5383b8dbe976de1cd00fc8c7) C:\Windows\System32\rasauto.dll
16:21:36.0691 0208 RasAuto - ok
16:21:36.0707 0208 Rasl2tp (87a6e852a22991580d6d39adc4790463) C:\Windows\system32\DRIVERS\rasl2tp.sys
16:21:36.0707 0208 Rasl2tp - ok
16:21:36.0738 0208 RasMan (47394ed3d16d053f5906efe5ab51cc83) C:\Windows\System32\rasmans.dll
16:21:36.0753 0208 RasMan - ok
16:21:36.0753 0208 RasPppoe (855c9b1cd4756c5e9a2aa58a15f58c25) C:\Windows\system32\DRIVERS\raspppoe.sys
16:21:36.0769 0208 RasPppoe - ok
16:21:36.0785 0208 RasSstp (e8b1e447b008d07ff47d016c2b0eeecb) C:\Windows\system32\DRIVERS\rassstp.sys
16:21:36.0785 0208 RasSstp - ok
16:21:36.0816 0208 rdbss (3bac8142102c15d59a87757c1d41dce5) C:\Windows\system32\DRIVERS\rdbss.sys
16:21:36.0831 0208 rdbss - ok
16:21:36.0831 0208 rdpbus (302da2a0539f2cf54d7c6cc30c1f2d8d) C:\Windows\system32\DRIVERS\rdpbus.sys
16:21:36.0847 0208 rdpbus - ok
16:21:36.0847 0208 RDPCDD (cea6cc257fc9b7715f1c2b4849286d24) C:\Windows\system32\DRIVERS\RDPCDD.sys
16:21:36.0863 0208 RDPCDD - ok
16:21:36.0894 0208 RDPDR (9706b84dbabfc4b4ca46c5a82b14dfa3) C:\Windows\system32\drivers\rdpdr.sys
16:21:36.0894 0208 RDPDR - ok
16:21:36.0909 0208 RDPENCDD (bb5971a4f00659529a5c44831af22365) C:\Windows\system32\drivers\rdpencdd.sys
16:21:36.0909 0208 RDPENCDD - ok
16:21:36.0909 0208 RDPREFMP (216f3fa57533d98e1f74ded70113177a) C:\Windows\system32\drivers\rdprefmp.sys
16:21:36.0909 0208 RDPREFMP - ok
16:21:36.0941 0208 RDPWD (8a3e6bea1c53ea6177fe2b6eba2c80d7) C:\Windows\system32\drivers\RDPWD.sys
16:21:36.0956 0208 RDPWD - ok
16:21:36.0972 0208 rdyboost (634b9a2181d98f15941236886164ec8b) C:\Windows\system32\drivers\rdyboost.sys
16:21:36.0987 0208 rdyboost - ok
16:21:37.0019 0208 RemoteAccess (254fb7a22d74e5511c73a3f6d802f192) C:\Windows\System32\mprdim.dll
16:21:37.0019 0208 RemoteAccess - ok
16:21:37.0050 0208 RemoteRegistry (e4d94f24081440b5fc5aa556c7c62702) C:\Windows\system32\regsvc.dll
16:21:37.0065 0208 RemoteRegistry - ok
16:21:37.0175 0208 RivaTuner64 (a10b40cf9eb57d24e44717a2d38a00f4) C:\Program Files (x86)\RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition\RivaTuner64.sys
16:21:37.0175 0208 RivaTuner64 - ok
16:21:37.0190 0208 RpcEptMapper (e4dc58cf7b3ea515ae917ff0d402a7bb) C:\Windows\System32\RpcEpMap.dll
16:21:37.0206 0208 RpcEptMapper - ok
16:21:37.0237 0208 RpcLocator (d5ba242d4cf8e384db90e6a8ed850b8c) C:\Windows\system32\locator.exe
16:21:37.0237 0208 RpcLocator - ok
16:21:37.0284 0208 RpcSs (7266972e86890e2b30c0c322e906b027) C:\Windows\system32\rpcss.dll
16:21:37.0284 0208 RpcSs - ok
16:21:37.0331 0208 rspndr (ddc86e4f8e7456261e637e3552e804ff) C:\Windows\system32\DRIVERS\rspndr.sys
16:21:37.0331 0208 rspndr - ok
16:21:37.0377 0208 rt61x64 (60eb8a87357ca5b088b422d1e55a2405) C:\Windows\system32\DRIVERS\netr6164.sys
16:21:37.0393 0208 rt61x64 - ok
16:21:37.0440 0208 RTL8167 (baefee35d27a5440d35092ce10267bec) C:\Windows\system32\DRIVERS\Rt64win7.sys
16:21:37.0455 0208 RTL8167 - ok
16:21:37.0471 0208 s3cap (88af6e02ab19df7fd07ecdf9c91e9af6) C:\Windows\system32\DRIVERS\vms3cap.sys
16:21:37.0487 0208 s3cap - ok
16:21:37.0502 0208 SamSs (0793f40b9b8a1bdd266296409dbd91ea) C:\Windows\system32\lsass.exe
16:21:37.0502 0208 SamSs - ok
16:21:37.0518 0208 sbp2port (e3bbb89983daf5622c1d50cf49f28227) C:\Windows\system32\DRIVERS\sbp2port.sys
16:21:37.0518 0208 sbp2port - ok
16:21:37.0549 0208 SCardSvr (9b7395789e3791a3b6d000fe6f8b131e) C:\Windows\System32\SCardSvr.dll
16:21:37.0549 0208 SCardSvr - ok
16:21:37.0565 0208 scfilter (c94da20c7e3ba1dca269bc8460d98387) C:\Windows\system32\DRIVERS\scfilter.sys
16:21:37.0565 0208 scfilter - ok
16:21:37.0643 0208 Schedule (ec56b171f85c7e855e7b0588ac503eea) C:\Windows\system32\schedsvc.dll
16:21:37.0674 0208 Schedule - ok
16:21:37.0705 0208 SCPolicySvc (312e2f82af11e79906898ac3e3d58a1f) C:\Windows\System32\certprop.dll
16:21:37.0705 0208 SCPolicySvc - ok
16:21:37.0721 0208 SDRSVC (765a27c3279ce11d14cb9e4f5869fca5) C:\Windows\System32\SDRSVC.dll
16:21:37.0736 0208 SDRSVC - ok
16:21:37.0767 0208 secdrv (3ea8a16169c26afbeb544e0e48421186) C:\Windows\system32\drivers\secdrv.sys
16:21:37.0767 0208 secdrv - ok
16:21:37.0799 0208 seclogon (463b386ebc70f98da5dff85f7e654346) C:\Windows\system32\seclogon.dll
16:21:37.0814 0208 seclogon - ok
16:21:37.0814 0208 SENS (c32ab8fa018ef34c0f113bd501436d21) C:\Windows\system32\sens.dll
16:21:37.0830 0208 SENS - ok
16:21:37.0845 0208 SensrSvc (0336cffafaab87a11541f1cf1594b2b2) C:\Windows\system32\sensrsvc.dll
16:21:37.0845 0208 SensrSvc - ok
16:21:37.0877 0208 Serenum (cb624c0035412af0debec78c41f5ca1b) C:\Windows\system32\DRIVERS\serenum.sys
16:21:37.0877 0208 Serenum - ok
16:21:37.0892 0208 Serial (c1d8e28b2c2adfaec4ba89e9fda69bd6) C:\Windows\system32\DRIVERS\serial.sys
16:21:37.0892 0208 Serial - ok
16:21:37.0908 0208 sermouse (1c545a7d0691cc4a027396535691c3e3) C:\Windows\system32\DRIVERS\sermouse.sys
16:21:37.0908 0208 sermouse - ok
16:21:37.0939 0208 SessionEnv (c3bc61ce47ff6f4e88ab8a3b429a36af) C:\Windows\system32\sessenv.dll
16:21:37.0939 0208 SessionEnv - ok
16:21:37.0939 0208 sffdisk (a554811bcd09279536440c964ae35bbf) C:\Windows\system32\DRIVERS\sffdisk.sys
16:21:37.0939 0208 sffdisk - ok
16:21:37.0939 0208 sffp_mmc (ff414f0baefeba59bc6c04b3db0b87bf) C:\Windows\system32\DRIVERS\sffp_mmc.sys
16:21:37.0939 0208 sffp_mmc - ok
16:21:37.0955 0208 sffp_sd (5588b8c6193eb1522490c122eb94dffa) C:\Windows\system32\DRIVERS\sffp_sd.sys
16:21:37.0955 0208 sffp_sd - ok
16:21:37.0955 0208 sfloppy (a9d601643a1647211a1ee2ec4e433ff4) C:\Windows\system32\DRIVERS\sfloppy.sys
16:21:37.0955 0208 sfloppy - ok
16:21:38.0033 0208 SharedAccess (b95f6501a2f8b2e78c697fec401970ce) C:\Windows\System32\ipnathlp.dll
16:21:38.0048 0208 SharedAccess - ok
16:21:38.0095 0208 ShellHWDetection (0298ac45d0efffb2db4baa7dd186e7bf) C:\Windows\System32\shsvcs.dll
16:21:38.0095 0208 ShellHWDetection - ok
16:21:38.0111 0208 SiSRaid2 (843caf1e5fde1ffd5ff768f23a51e2e1) C:\Windows\system32\DRIVERS\SiSRaid2.sys
16:21:38.0126 0208 SiSRaid2 - ok
16:21:38.0142 0208 SiSRaid4 (6a6c106d42e9ffff8b9fcb4f754f6da4) C:\Windows\system32\DRIVERS\sisraid4.sys
16:21:38.0142 0208 SiSRaid4 - ok
16:21:38.0360 0208 Skype C2C Service (0f97e7a47a52f4a36969f0fc319654c2) C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
16:21:38.0469 0208 Skype C2C Service - ok
16:21:38.0610 0208 SkypeUpdate (6128e98eaaed364ed1a32708d2fd22cb) C:\Program Files (x86)\Skype\Updater\Updater.exe
16:21:38.0610 0208 SkypeUpdate - ok
16:21:38.0703 0208 Smb (548260a7b8654e024dc30bf8a7c5baa4) C:\Windows\system32\DRIVERS\smb.sys
16:21:38.0719 0208 Smb - ok
16:21:38.0766 0208 SNMPTRAP (6313f223e817cc09aa41811daa7f541d) C:\Windows\System32\snmptrap.exe
16:21:38.0766 0208 SNMPTRAP - ok
16:21:38.0781 0208 spldr (b9e31e5cacdfe584f34f730a677803f9) C:\Windows\system32\drivers\spldr.sys
16:21:38.0797 0208 spldr - ok
16:21:38.0828 0208 Spooler (89e8550c5862999fcf482ea562b0e98e) C:\Windows\System32\spoolsv.exe
16:21:38.0859 0208 Spooler - ok
16:21:39.0093 0208 sppsvc (913d843498553a1bc8f8dbad6358e49f) C:\Windows\system32\sppsvc.exe
16:21:39.0203 0208 sppsvc - ok
16:21:39.0281 0208 sppuinotify (93d7d61317f3d4bc4f4e9f8a96a7de45) C:\Windows\system32\sppuinotify.dll
16:21:39.0296 0208 sppuinotify - ok
16:21:39.0343 0208 srv (ec8f67289105bf270498095f14963464) C:\Windows\system32\DRIVERS\srv.sys
16:21:39.0359 0208 srv - ok
16:21:39.0405 0208 srv2 (f773d2ed090b7baa1c1a034f3ca476c8) C:\Windows\system32\DRIVERS\srv2.sys
16:21:39.0421 0208 srv2 - ok
16:21:39.0437 0208 srvnet (26e84d3649019c3244622e654dfcd75b) C:\Windows\system32\DRIVERS\srvnet.sys
16:21:39.0452 0208 srvnet - ok
16:21:39.0483 0208 SSDPSRV (51b52fbd583cde8aa9ba62b8b4298f33) C:\Windows\System32\ssdpsrv.dll
16:21:39.0499 0208 SSDPSRV - ok
16:21:39.0515 0208 SstpSvc (ab7aebf58dad8daab7a6c45e6a8885cb) C:\Windows\system32\sstpsvc.dll
Zostava: Chladič: - GELID Soluti​on Tranqu​illo ​- revize 2, Zdroj - Fortron 550W, OEM, Case - CoolerMa​ster Elite 330 RC​-330K​-KKN1​-G, GK - GIGABYTE GTX 560 Ultra Durable OC 1GB, Zakladná Deska - MSI 870A-G54, Processor - AMD Phenom II X4 960T BE, RAM - Kingsto​n HyperX 4GB ​(2x2GB​) DDR3 1333

Uživatelský avatar
Domin77
Level 2
Level 2
Příspěvky: 249
Registrován: duben 10
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu.

Příspěvekod Domin77 » 27 črc 2012 16:34

16:21:39.0515 0208 SstpSvc - ok
16:21:39.0561 0208 ssudmdm (78cd64791f8634cf7b582fd085e57c4b) C:\Windows\system32\DRIVERS\ssudmdm.sys
16:21:39.0561 0208 ssudmdm - ok
16:21:39.0608 0208 ssudserd (dfb8e60fcad331662a25c1133e6902bb) C:\Windows\system32\DRIVERS\ssudserd.sys
16:21:39.0608 0208 ssudserd - ok
16:21:39.0780 0208 Stereo Service (fc0a58529a02b1eed55ddc58696b7908) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
16:21:39.0795 0208 Stereo Service - ok
16:21:39.0811 0208 stexstor (f3817967ed533d08327dc73bc4d5542a) C:\Windows\system32\DRIVERS\stexstor.sys
16:21:39.0811 0208 stexstor - ok
16:21:39.0889 0208 stisvc (52d0e33b681bd0f33fdc08812fee4f7d) C:\Windows\System32\wiaservc.dll
16:21:39.0905 0208 stisvc - ok
16:21:39.0920 0208 storflt (ffd7a6f15b14234b5b0e5d49e7961895) C:\Windows\system32\DRIVERS\vmstorfl.sys
16:21:39.0920 0208 storflt - ok
16:21:39.0936 0208 StorSvc (c40841817ef57d491f22eb103da587cc) C:\Windows\system32\storsvc.dll
16:21:39.0951 0208 StorSvc - ok
16:21:39.0967 0208 storvsc (8fccbefc5c440b3c23454656e551b09a) C:\Windows\system32\DRIVERS\storvsc.sys
16:21:39.0967 0208 storvsc - ok
16:21:39.0983 0208 swenum (d01ec09b6711a5f8e7e6564a4d0fbc90) C:\Windows\system32\DRIVERS\swenum.sys
16:21:39.0983 0208 swenum - ok
16:21:40.0029 0208 swprv (e08e46fdd841b7184194011ca1955a0b) C:\Windows\System32\swprv.dll
16:21:40.0045 0208 swprv - ok
16:21:40.0170 0208 SysMain (3c1284516a62078fb68f768de4f1a7be) C:\Windows\system32\sysmain.dll
16:21:40.0217 0208 SysMain - ok
16:21:40.0279 0208 TabletInputService (238935c3cf2854886dc7cbb2a0e2cc66) C:\Windows\System32\TabSvc.dll
16:21:40.0295 0208 TabletInputService - ok
16:21:40.0326 0208 TapiSrv (884264ac597b690c5707c89723bb8e7b) C:\Windows\System32\tapisrv.dll
16:21:40.0341 0208 TapiSrv - ok
16:21:40.0388 0208 TBPanel - ok
16:21:40.0419 0208 TBS (1be03ac720f4d302ea01d40f588162f6) C:\Windows\System32\tbssvc.dll
16:21:40.0419 0208 TBS - ok
16:21:40.0575 0208 Tcpip (912107716bab424c7870e8e6af5e07e1) C:\Windows\system32\drivers\tcpip.sys
16:21:40.0638 0208 Tcpip - ok
16:21:40.0794 0208 TCPIP6 (912107716bab424c7870e8e6af5e07e1) C:\Windows\system32\DRIVERS\tcpip.sys
16:21:40.0809 0208 TCPIP6 - ok
16:21:40.0856 0208 tcpipreg (76d078af6f587b162d50210f761eb9ed) C:\Windows\system32\drivers\tcpipreg.sys
16:21:40.0856 0208 tcpipreg - ok
16:21:40.0872 0208 TDPIPE (3371d21011695b16333a3934340c4e7c) C:\Windows\system32\drivers\tdpipe.sys
16:21:40.0872 0208 TDPIPE - ok
16:21:40.0872 0208 TDTCP (e4245bda3190a582d55ed09e137401a9) C:\Windows\system32\drivers\tdtcp.sys
16:21:40.0872 0208 TDTCP - ok
16:21:40.0887 0208 tdx (079125c4b17b01fcaeebce0bcb290c0f) C:\Windows\system32\DRIVERS\tdx.sys
16:21:40.0887 0208 tdx - ok
16:21:41.0184 0208 TeamViewer7 (3e85bdd019e3db66d9471dad7fd6a887) C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe
16:21:41.0277 0208 TeamViewer7 - ok
16:21:41.0355 0208 TermDD (c448651339196c0e869a355171875522) C:\Windows\system32\DRIVERS\termdd.sys
16:21:41.0355 0208 TermDD - ok
16:21:41.0418 0208 TermService (0f05ec2887bfe197ad82a13287d2f404) C:\Windows\System32\termsrv.dll
16:21:41.0433 0208 TermService - ok
16:21:41.0449 0208 Themes (f0344071948d1a1fa732231785a0664c) C:\Windows\system32\themeservice.dll
16:21:41.0465 0208 Themes - ok
16:21:41.0480 0208 THREADORDER (e40e80d0304a73e8d269f7141d77250b) C:\Windows\system32\mmcss.dll
16:21:41.0496 0208 THREADORDER - ok
16:21:41.0511 0208 TrkWks (7e7afd841694f6ac397e99d75cead49d) C:\Windows\System32\trkwks.dll
16:21:41.0511 0208 TrkWks - ok
16:21:41.0558 0208 TrustedInstaller (840f7fb849f5887a49ba18c13b2da920) C:\Windows\servicing\TrustedInstaller.exe
16:21:41.0558 0208 TrustedInstaller - ok
16:21:41.0574 0208 tssecsrv (61b96c26131e37b24e93327a0bd1fb95) C:\Windows\system32\DRIVERS\tssecsrv.sys
16:21:41.0574 0208 tssecsrv - ok
16:21:41.0621 0208 tunnel (3836171a2cdf3af8ef10856db9835a70) C:\Windows\system32\DRIVERS\tunnel.sys
16:21:41.0621 0208 tunnel - ok
16:21:41.0652 0208 uagp35 (b4dd609bd7e282bfc683cec7eaaaad67) C:\Windows\system32\DRIVERS\uagp35.sys
16:21:41.0652 0208 uagp35 - ok
16:21:41.0667 0208 udfs (d47baead86c65d4f4069d7ce0a4edceb) C:\Windows\system32\DRIVERS\udfs.sys
16:21:41.0683 0208 udfs - ok
16:21:41.0714 0208 UI0Detect (3cbdec8d06b9968aba702eba076364a1) C:\Windows\system32\UI0Detect.exe
16:21:41.0714 0208 UI0Detect - ok
16:21:41.0745 0208 uliagpkx (4bfe1bc28391222894cbf1e7d0e42320) C:\Windows\system32\DRIVERS\uliagpkx.sys
16:21:41.0745 0208 uliagpkx - ok
16:21:41.0761 0208 umbus (eab6c35e62b1b0db0d1b48b671d3a117) C:\Windows\system32\DRIVERS\umbus.sys
16:21:41.0761 0208 umbus - ok
16:21:41.0777 0208 UmPass (b2e8e8cb557b156da5493bbddcc1474d) C:\Windows\system32\DRIVERS\umpass.sys
16:21:41.0777 0208 UmPass - ok
16:21:41.0808 0208 UmRdpService (af0ac98ee5077eb844413eb54287fde3) C:\Windows\System32\umrdp.dll
16:21:41.0823 0208 UmRdpService - ok
16:21:41.0855 0208 upnphost (d47ec6a8e81633dd18d2436b19baf6de) C:\Windows\System32\upnphost.dll
16:21:41.0870 0208 upnphost - ok
16:21:41.0886 0208 usbccgp (b26afb54a534d634523c4fb66765b026) C:\Windows\system32\DRIVERS\usbccgp.sys
16:21:41.0886 0208 usbccgp - ok
16:21:41.0917 0208 usbcir (af0892a803fdda7492f595368e3b68e7) C:\Windows\system32\DRIVERS\usbcir.sys
16:21:41.0917 0208 usbcir - ok
16:21:41.0933 0208 usbehci (2ea4aff7be7eb4632e3aa8595b0803b5) C:\Windows\system32\DRIVERS\usbehci.sys
16:21:41.0948 0208 usbehci - ok
16:21:41.0979 0208 usbfilter (33a58c5630200e17b51c8d73dd64181b) C:\Windows\system32\DRIVERS\usbfilter.sys
16:21:41.0979 0208 usbfilter - ok
16:21:42.0011 0208 usbhub (4c9042b8df86c1e8e6240c218b99b39b) C:\Windows\system32\DRIVERS\usbhub.sys
16:21:42.0011 0208 usbhub - ok
16:21:42.0026 0208 usbohci (58e546bbaf87664fc57e0f6081e4f609) C:\Windows\system32\DRIVERS\usbohci.sys
16:21:42.0026 0208 usbohci - ok
16:21:42.0042 0208 usbprint (73188f58fb384e75c4063d29413cee3d) C:\Windows\system32\DRIVERS\usbprint.sys
16:21:42.0042 0208 usbprint - ok
16:21:42.0073 0208 usbscan (aaa2513c8aed8b54b189fd0c6b1634c0) C:\Windows\system32\DRIVERS\usbscan.sys
16:21:42.0073 0208 usbscan - ok
16:21:42.0104 0208 USBSTOR (080d3820da6c046be82fc8b45a893e83) C:\Windows\system32\DRIVERS\USBSTOR.SYS
16:21:42.0104 0208 USBSTOR - ok
16:21:42.0104 0208 usbuhci (81fb2216d3a60d1284455d511797db3d) C:\Windows\system32\DRIVERS\usbuhci.sys
16:21:42.0104 0208 usbuhci - ok
16:21:42.0135 0208 usb_rndisx (70d05ee263568a742d14e1876df80532) C:\Windows\system32\DRIVERS\usb8023x.sys
16:21:42.0135 0208 usb_rndisx - ok
16:21:42.0167 0208 UxSms (edbb23cbcf2cdf727d64ff9b51a6070e) C:\Windows\System32\uxsms.dll
16:21:42.0167 0208 UxSms - ok
16:21:42.0198 0208 VaultSvc (0793f40b9b8a1bdd266296409dbd91ea) C:\Windows\system32\lsass.exe
16:21:42.0198 0208 VaultSvc - ok
16:21:42.0245 0208 VBoxDrv (ed492636ee26ec43daa4baa7ef0da7ad) C:\Windows\system32\DRIVERS\VBoxDrv.sys
16:21:42.0260 0208 VBoxDrv - ok
16:21:42.0291 0208 VBoxNetAdp (58e2365e7fd880624f648c63c5d22009) C:\Windows\system32\DRIVERS\VBoxNetAdp.sys
16:21:42.0307 0208 VBoxNetAdp - ok
16:21:42.0338 0208 VBoxNetFlt (5160910ce602710d7e87f1b35487e7db) C:\Windows\system32\DRIVERS\VBoxNetFlt.sys
16:21:42.0338 0208 VBoxNetFlt - ok
16:21:42.0369 0208 VBoxUSB (bcfe50247fbe5c8cb2e22fa5938ea6f7) C:\Windows\system32\Drivers\VBoxUSB.sys
16:21:42.0385 0208 VBoxUSB - ok
16:21:42.0432 0208 VBoxUSBMon (99906a079a6c24d4b8b0dbed02b7869b) C:\Windows\system32\DRIVERS\VBoxUSBMon.sys
16:21:42.0432 0208 VBoxUSBMon - ok
16:21:42.0463 0208 vdrvroot (c5c876ccfc083ff3b128f933823e87bd) C:\Windows\system32\DRIVERS\vdrvroot.sys
16:21:42.0463 0208 vdrvroot - ok
16:21:42.0525 0208 vds (44d73e0bbc1d3c8981304ba15135c2f2) C:\Windows\System32\vds.exe
16:21:42.0541 0208 vds - ok
16:21:42.0557 0208 vga (da4da3f5e02943c2dc8c6ed875de68dd) C:\Windows\system32\DRIVERS\vgapnp.sys
16:21:42.0557 0208 vga - ok
16:21:42.0572 0208 VgaSave (53e92a310193cb3c03bea963de7d9cfc) C:\Windows\System32\drivers\vga.sys
16:21:42.0572 0208 VgaSave - ok
16:21:42.0603 0208 vhdmp (c82e748660f62a242b2dfac1442f22a4) C:\Windows\system32\DRIVERS\vhdmp.sys
16:21:42.0603 0208 vhdmp - ok
16:21:42.0635 0208 viaide (e5689d93ffe4e5d66c0178761240dd54) C:\Windows\system32\DRIVERS\viaide.sys
16:21:42.0635 0208 viaide - ok
16:21:42.0666 0208 vmbus (1501699d7eda984abc4155a7da5738d1) C:\Windows\system32\DRIVERS\vmbus.sys
16:21:42.0666 0208 vmbus - ok
16:21:42.0697 0208 VMBusHID (ae10c35761889e65a6f7176937c5592c) C:\Windows\system32\DRIVERS\VMBusHID.sys
16:21:42.0697 0208 VMBusHID - ok
16:21:42.0697 0208 volmgr (2b1a3dae2b4e70dbba822b7a03fbd4a3) C:\Windows\system32\DRIVERS\volmgr.sys
16:21:42.0697 0208 volmgr - ok
16:21:42.0728 0208 volmgrx (99b0cbb569ca79acaed8c91461d765fb) C:\Windows\system32\drivers\volmgrx.sys
16:21:42.0728 0208 volmgrx - ok
16:21:42.0744 0208 volsnap (58f82eed8ca24b461441f9c3e4f0bf5c) C:\Windows\system32\DRIVERS\volsnap.sys
16:21:42.0759 0208 volsnap - ok
16:21:42.0791 0208 vsmraid (5e2016ea6ebaca03c04feac5f330d997) C:\Windows\system32\DRIVERS\vsmraid.sys
16:21:42.0791 0208 vsmraid - ok
16:21:42.0900 0208 VSS (787898bf9fb6d7bd87a36e2d95c899ba) C:\Windows\system32\vssvc.exe
16:21:42.0947 0208 VSS - ok
16:21:43.0025 0208 vwifibus (36d4720b72b5c5d9cb2b9c29e9df67a1) C:\Windows\system32\DRIVERS\vwifibus.sys
16:21:43.0025 0208 vwifibus - ok
16:21:43.0040 0208 vwififlt (6a3d66263414ff0d6fa754c646612f3f) C:\Windows\system32\DRIVERS\vwififlt.sys
16:21:43.0056 0208 vwififlt - ok
16:21:43.0087 0208 W32Time (1c9d80cc3849b3788048078c26486e1a) C:\Windows\system32\w32time.dll
16:21:43.0118 0208 W32Time - ok
16:21:43.0118 0208 WacomPen (4e9440f4f152a7b944cb1663d3935a3e) C:\Windows\system32\DRIVERS\wacompen.sys
16:21:43.0118 0208 WacomPen - ok
16:21:43.0149 0208 WANARP (47ca49400643effd3f1c9a27e1d69324) C:\Windows\system32\DRIVERS\wanarp.sys
16:21:43.0165 0208 WANARP - ok
16:21:43.0165 0208 Wanarpv6 (47ca49400643effd3f1c9a27e1d69324) C:\Windows\system32\DRIVERS\wanarp.sys
16:21:43.0165 0208 Wanarpv6 - ok
16:21:43.0259 0208 wbengine (5ab1bb85bd8b5089cc5d64200dedae68) C:\Windows\system32\wbengine.exe
16:21:43.0305 0208 wbengine - ok
16:21:43.0368 0208 WbioSrvc (3aa101e8edab2db4131333f4325c76a3) C:\Windows\System32\wbiosrvc.dll
16:21:43.0383 0208 WbioSrvc - ok
16:21:43.0399 0208 wcncsvc (8321c2ca3b62b61b293cda3451984468) C:\Windows\System32\wcncsvc.dll
16:21:43.0415 0208 wcncsvc - ok
16:21:43.0430 0208 WcsPlugInService (20f7441334b18cee52027661df4a6129) C:\Windows\System32\WcsPlugInService.dll
16:21:43.0430 0208 WcsPlugInService - ok
16:21:43.0446 0208 Wd (72889e16ff12ba0f235467d6091b17dc) C:\Windows\system32\DRIVERS\wd.sys
16:21:43.0446 0208 Wd - ok
16:21:43.0493 0208 Wdf01000 (441bd2d7b4f98134c3a4f9fa570fd250) C:\Windows\system32\drivers\Wdf01000.sys
16:21:43.0508 0208 Wdf01000 - ok
16:21:43.0524 0208 WdiServiceHost (bf1fc3f79b863c914687a737c2f3d681) C:\Windows\system32\wdi.dll
16:21:43.0524 0208 WdiServiceHost - ok
16:21:43.0524 0208 WdiSystemHost (bf1fc3f79b863c914687a737c2f3d681) C:\Windows\system32\wdi.dll
16:21:43.0539 0208 WdiSystemHost - ok
16:21:43.0555 0208 WebClient (8a438cbb8c032a0c798b0c642ffbe572) C:\Windows\System32\webclnt.dll
16:21:43.0571 0208 WebClient - ok
16:21:43.0602 0208 Wecsvc (c749025a679c5103e575e3b48e092c43) C:\Windows\system32\wecsvc.dll
16:21:43.0617 0208 Wecsvc - ok
16:21:43.0633 0208 wercplsupport (7e591867422dc788b9e5bd337a669a08) C:\Windows\System32\wercplsupport.dll
16:21:43.0649 0208 wercplsupport - ok
16:21:43.0664 0208 WerSvc (6d137963730144698cbd10f202e9f251) C:\Windows\System32\WerSvc.dll
16:21:43.0664 0208 WerSvc - ok
16:21:43.0695 0208 WfpLwf (611b23304bf067451a9fdee01fbdd725) C:\Windows\system32\DRIVERS\wfplwf.sys
16:21:43.0695 0208 WfpLwf - ok
16:21:43.0711 0208 WIMMount (05ecaec3e4529a7153b3136ceb49f0ec) C:\Windows\system32\drivers\wimmount.sys
16:21:43.0711 0208 WIMMount - ok
16:21:43.0805 0208 WinDefend - ok
16:21:43.0820 0208 WinHttpAutoProxySvc - ok
16:21:43.0883 0208 Winmgmt (19b07e7e8915d701225da41cb3877306) C:\Windows\system32\wbem\WMIsvc.dll
16:21:43.0898 0208 Winmgmt - ok
16:21:43.0976 0208 WinRing0_1_2_0 (0c0195c48b6b8582fa6f6373032118da) C:\Program Files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys
16:21:43.0992 0208 WinRing0_1_2_0 - ok
16:21:44.0117 0208 WinRM (41fbb751936b387f9179e7f03a74fe29) C:\Windows\system32\WsmSvc.dll
16:21:44.0179 0208 WinRM - ok
16:21:44.0304 0208 WinUsb (817eaff5d38674edd7713b9dfb8e9791) C:\Windows\system32\DRIVERS\WinUsb.sys
16:21:44.0304 0208 WinUsb - ok
16:21:44.0382 0208 Wlansvc (4fada86e62f18a1b2f42ba18ae24e6aa) C:\Windows\System32\wlansvc.dll
16:21:44.0429 0208 Wlansvc - ok
16:21:44.0663 0208 wlidsvc (98f138897ef4246381d197cb81846d62) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
16:21:44.0725 0208 wlidsvc - ok
16:21:44.0803 0208 WmiAcpi (f6ff8944478594d0e414d3f048f0d778) C:\Windows\system32\DRIVERS\wmiacpi.sys
16:21:44.0803 0208 WmiAcpi - ok
16:21:44.0865 0208 wmiApSrv (38b84c94c5a8af291adfea478ae54f93) C:\Windows\system32\wbem\WmiApSrv.exe
16:21:44.0865 0208 wmiApSrv - ok
16:21:44.0959 0208 WMPNetworkSvc - ok
16:21:44.0990 0208 WPCSvc (96c6e7100d724c69fcf9e7bf590d1dca) C:\Windows\System32\wpcsvc.dll
16:21:45.0006 0208 WPCSvc - ok
16:21:45.0037 0208 WPDBusEnum (2e57ddf2880a7e52e76f41c7e96d327b) C:\Windows\system32\wpdbusenum.dll
16:21:45.0053 0208 WPDBusEnum - ok
16:21:45.0068 0208 ws2ifsl (6bcc1d7d2fd2453957c5479a32364e52) C:\Windows\system32\drivers\ws2ifsl.sys
16:21:45.0068 0208 ws2ifsl - ok
16:21:45.0099 0208 wscsvc (e8b1fe6669397d1772d8196df0e57a9e) C:\Windows\system32\wscsvc.dll
16:21:45.0115 0208 wscsvc - ok
16:21:45.0115 0208 WSearch - ok
16:21:45.0287 0208 wuauserv (d9ef901dca379cfe914e9fa13b73b4c4) C:\Windows\system32\wuaueng.dll
16:21:45.0380 0208 wuauserv - ok
16:21:45.0458 0208 WudfPf (7cadc74271dd6461c452c271b30bd378) C:\Windows\system32\drivers\WudfPf.sys
16:21:45.0458 0208 WudfPf - ok
16:21:45.0489 0208 WUDFRd (3b197af0fff08aa66b6b2241ca538d64) C:\Windows\system32\DRIVERS\WUDFRd.sys
16:21:45.0489 0208 WUDFRd - ok
16:21:45.0505 0208 wudfsvc (b551d6637aa0e132c18ac6e504f7b79b) C:\Windows\System32\WUDFSvc.dll
16:21:45.0505 0208 wudfsvc - ok
16:21:45.0536 0208 WwanSvc (9a3452b3c2a46c073166c5cf49fad1ae) C:\Windows\System32\wwansvc.dll
16:21:45.0552 0208 WwanSvc - ok
16:21:45.0645 0208 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk0\DR0
16:21:45.0942 0208 \Device\Harddisk0\DR0 - ok
16:21:45.0942 0208 Boot (0x1200) (091ab553ebd3e46dd076d962e0da4e71) \Device\Harddisk0\DR0\Partition0
16:21:45.0942 0208 \Device\Harddisk0\DR0\Partition0 - ok
16:21:45.0957 0208 Boot (0x1200) (cc89768405fb9515bfac6705cf92f054) \Device\Harddisk0\DR0\Partition1
16:21:45.0957 0208 \Device\Harddisk0\DR0\Partition1 - ok
16:21:45.0957 0208 ============================================================
16:21:45.0957 0208 Scan finished
16:21:45.0957 0208 ============================================================
16:21:45.0973 2212 Detected object count: 0
16:21:45.0973 2212 Actual detected object count: 0
16:22:05.0922 2592 Deinitialize success
Zostava: Chladič: - GELID Soluti​on Tranqu​illo ​- revize 2, Zdroj - Fortron 550W, OEM, Case - CoolerMa​ster Elite 330 RC​-330K​-KKN1​-G, GK - GIGABYTE GTX 560 Ultra Durable OC 1GB, Zakladná Deska - MSI 870A-G54, Processor - AMD Phenom II X4 960T BE, RAM - Kingsto​n HyperX 4GB ​(2x2GB​) DDR3 1333

Uživatelský avatar
Žbeky
Moderátor
Guru Level 13
Guru Level 13
Příspěvky: 22288
Registrován: květen 08
Bydliště: Vsetín - Pardubice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu.

Příspěvekod Žbeky » 27 črc 2012 21:17

Otevři si Poznámkový blok (Start -> Spustit... a napiš do okna Notepad a dej Ok.
Zkopíruj do něj následující celý text označený zeleně:
Poznámka: Nepoužij k označení skriptu funkci VYBRAT VŠE

Kód: Vybrat vše

KillAll::

Folder::
c:\program files (x86)\SweetIM\Toolbars
c:\program files (x86)\Google\Update
c:\program files (x86)\Skype\Updater

File::
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job

Registry::
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{EEE6C35D-6118-11DC-9C72-001320C79847}"=-
[-HKEY_CLASSES_ROOT\clsid\{eee6c35d-6118-11dc-9c72-001320c79847}]
[-HKEY_CLASSES_ROOT\SweetIM_URLSearchHook.ToolbarURLSearchHook.1]
[-HKEY_CLASSES_ROOT\TypeLib\{EEE6C35F-6118-11DC-9C72-001320C79847}]
[-HKEY_CLASSES_ROOT\SweetIM_URLSearchHook.ToolbarURLSearchHook]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"LoadAppInit_DLLs"=-

Driver::
gupdate
gupdatem
SkypeUpdate
EagleX64

Firefox::
FF - ProfilePath - c:\users\Domin77\AppData\Roaming\Mozilla\Firefox\Profiles\e2xz1eud.default\
FF - prefs.js: browser.search.selectedEngine - Ask.com
FF - prefs.js: keyword.URL - hxxp://search.sweetim.com/search.asp?sr ... 0.10004&q=
FF - user.js: extensions.BabylonToolbar_i.babTrack - affID=111365
FF - user.js: extensions.BabylonToolbar_i.babExt -
FF - user.js: extensions.BabylonToolbar_i.srcExt - ss
FF - user.js: extensions.BabylonToolbar_i.id - faf7bca7000000000000004f6a0542a4
FF - user.js: extensions.BabylonToolbar_i.hardId - faf7bca7000000000000004f6a0542a4
FF - user.js: extensions.BabylonToolbar_i.instlDay - 15420
FF - user.js: extensions.BabylonToolbar_i.vrsn - 1.5.3.17
FF - user.js: extensions.BabylonToolbar_i.vrsni - 1.5.3.17
FF - user.js: extensions.BabylonToolbar_i.vrsnTs - 1.5.3.1719:46
FF - user.js: extensions.BabylonToolbar_i.prtnrId - babylon
FF - user.js: extensions.BabylonToolbar_i.prdct - BabylonToolbar
FF - user.js: extensions.BabylonToolbar_i.aflt - babsst
FF - user.js: extensions.BabylonToolbar_i.smplGrp - none
FF - user.js: extensions.BabylonToolbar_i.tlbrId - base
FF - user.js: extensions.BabylonToolbar_i.instlRef - sst

RegLock::
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0006\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0007\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0008\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0009\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0010\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0014\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0015\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]

RegNull::
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0006\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0007\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0008\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0009\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0010\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0014\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0015\AllUserSettings]

Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.

Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe a když se oba soubory překryjí, skript upusť.
- Automaticky se spustí ComboFix
- Vlož sem log, který vyběhne v závěru čistícího procesu
V SZ řeším jen záležitosti týkající se fóra. Na prosby a žádosti o technickou podporu nereaguji. Díky za pochopení.

HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra

Uživatelský avatar
Domin77
Level 2
Level 2
Příspěvky: 249
Registrován: duben 10
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu.

Příspěvekod Domin77 » 28 črc 2012 00:16

ComboFix 12-07-27.02 - Domin77 . 07. 2012 0:00.2.4 - x64
Microsoft Windows 7 Professional 6.1.7600.0.1250.421.1051.18.4095.2853 [GMT 2:00]
Running from: c:\users\Domin77\Desktop\ComboFix.exe
Command switches used :: c:\users\Domin77\Desktop\CFScript.txt
AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
FILE ::
"c:\windows\Tasks\GoogleUpdateTaskMachineCore.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineUA.job"
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files (x86)\Google\Update
c:\program files (x86)\Google\Update\1.3.21.115\GoogleCrashHandler.exe
c:\program files (x86)\Google\Update\1.3.21.115\GoogleCrashHandler64.exe
c:\program files (x86)\Google\Update\1.3.21.115\GoogleUpdate.exe
c:\program files (x86)\Google\Update\1.3.21.115\GoogleUpdateBroker.exe
c:\program files (x86)\Google\Update\1.3.21.115\GoogleUpdateHelper.msi
c:\program files (x86)\Google\Update\1.3.21.115\GoogleUpdateOnDemand.exe
c:\program files (x86)\Google\Update\1.3.21.115\GoogleUpdateSetup.exe
c:\program files (x86)\Google\Update\1.3.21.115\goopdate.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_am.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_ar.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_bg.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_bn.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_ca.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_cs.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_da.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_de.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_el.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_en-GB.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_en.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_es-419.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_es.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_et.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_fa.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_fi.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_fil.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_fr.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_gu.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_hi.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_hr.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_hu.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_id.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_is.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_it.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_iw.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_ja.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_kn.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_ko.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_lt.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_lv.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_ml.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_mr.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_ms.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_nl.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_no.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_pl.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_pt-BR.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_pt-PT.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_ro.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_ru.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_sk.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_sl.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_sr.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_sv.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_sw.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_ta.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_te.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_th.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_tr.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_uk.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_ur.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_vi.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_zh-CN.dll
c:\program files (x86)\Google\Update\1.3.21.115\goopdateres_zh-TW.dll
c:\program files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll
c:\program files (x86)\Google\Update\1.3.21.115\psmachine.dll
c:\program files (x86)\Google\Update\1.3.21.115\psuser.dll
c:\program files (x86)\Google\Update\Download\{430FD4D0-B729-4F61-AA34-91526481799D}\1.3.21.115\GoogleUpdateSetup.exe
c:\program files (x86)\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\20.0.1132.57\20.0.1132.57_20.0.1132.47_chrome_updater.exe
c:\program files (x86)\Google\Update\GoogleUpdate.exe
c:\program files (x86)\Skype\Updater
c:\program files (x86)\Skype\Updater\Updater.exe
c:\program files (x86)\SweetIM\Toolbars
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\ClearHist.exe
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\conf\logger.xml
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\default.xml
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\mgcommon.dll
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\mgconfig.dll
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\mgHelper.dll
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\mgHelperApp.exe
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\mghooking.dll
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\mglogger.dll
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\mgsimcommon.dll
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarProxy.dll
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\mgxml_wrapper.dll
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\Microsoft.VC90.CRT\Microsoft.VC90.CRT.manifest
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\Microsoft.VC90.CRT\msvcm90.dll
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\Microsoft.VC90.CRT\msvcp90.dll
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\Microsoft.VC90.CRT\msvcr90.dll
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\about.html
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\affid.dat
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\basis.xml
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\bing.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\blue\search_button.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\blue\search_button_bing.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\blue\search_button_current.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\blue\search_button_dictionary.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\blue\search_button_google.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\blue\search_button_hover.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\blue\search_button_left.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\blue\search_button_photo.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\blue\search_button_video.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\blue\search_button_web.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\blue\search_button_yahoo.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\clear-history.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\content-notifier-anim-over.gif
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\content-notifier-anim.gif
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\content-notifier.js
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\dating.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\dictionary.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\e_cards.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\eye_icon.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\eye_icon_over.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\find.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\free_stuff.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\games.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\glitter.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\google.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\green\search_button.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\green\search_button_bing.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\green\search_button_current.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\green\search_button_dictionary.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\green\search_button_google.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\green\search_button_hover.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\green\search_button_left.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\green\search_button_photo.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\green\search_button_video.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\green\search_button_web.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\green\search_button_yahoo.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\help.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\highlight.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\locales.xml
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\logo_16x16.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\logo_21x18.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\logo_32x32.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\logo_about.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\MenuExt.html
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\more-search-providers.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\music.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\news.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\options.html
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\orange\search_button.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\orange\search_button_bing.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\orange\search_button_current.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\orange\search_button_dictionary.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\orange\search_button_google.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\orange\search_button_hover.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\orange\search_button_left.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\orange\search_button_photo.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\orange\search_button_video.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\orange\search_button_web.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\orange\search_button_yahoo.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\photos.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\search-current-site.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\shopping.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\SmileySmile.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\SmileyWink.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\sweetim_text.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\toolbar.xml
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\video.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\web-search.png
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\web-toolbar.js
c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\yahoo.png
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
.
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_EAGLEX64
-------\Service_EagleX64
-------\Service_gupdate
-------\Service_gupdatem
-------\Service_SkypeUpdate
.
.
((((((((((((((((((((((((( Files Created from 2012-06-27 to 2012-07-27 )))))))))))))))))))))))))))))))
.
.
2012-07-27 22:06 . 2012-07-27 22:06 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
2012-07-27 22:06 . 2012-07-27 22:06 -------- d-----w- c:\users\Rodina\AppData\Local\temp
2012-07-26 13:11 . 2012-07-26 13:11 -------- d-----w- c:\users\Domin77\AppData\Roaming\Malwarebytes
2012-07-26 13:11 . 2012-07-26 13:11 -------- d-----w- c:\programdata\Malwarebytes
2012-07-26 13:11 . 2012-07-26 13:11 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware
2012-07-26 13:11 . 2012-07-03 11:46 24904 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-07-25 22:30 . 2012-03-10 07:58 15168 ----a-w- c:\windows\system32\drivers\nvflash.sys
2012-07-25 22:30 . 2012-07-25 22:30 40960 ----a-r- c:\users\Domin77\AppData\Roaming\Microsoft\Installer\{AA12545D-5EB8-4078-AFD9-8E8DC0AE3A76}\ARPPRODUCTICON.exe
2012-07-25 22:30 . 2012-07-25 22:30 40960 ----a-r- c:\users\Domin77\AppData\Roaming\Microsoft\Installer\{AA12545D-5EB8-4078-AFD9-8E8DC0AE3A76}\_BIOS.exe_AA12545D5EB84078AFD98E8DC0AE3A76.exe
2012-07-22 12:36 . 2012-07-27 14:21 -------- d-----w- c:\users\Domin77\AppData\Roaming\.minecraft
2012-07-20 22:40 . 2012-07-20 22:40 -------- d-----w- c:\users\Domin77\VirtualBox VMs
2012-07-20 22:39 . 2012-07-21 22:55 -------- d-----w- c:\users\Domin77\.VirtualBox
2012-07-20 22:25 . 2012-06-05 14:03 224088 ----a-w- c:\windows\system32\drivers\VBoxDrv.sys
2012-07-20 22:25 . 2012-06-05 14:03 130904 ----a-w- c:\windows\system32\drivers\VBoxUSBMon.sys
2012-07-18 23:29 . 2012-07-18 23:29 -------- d-----w- c:\program files\SAMSUNG
2012-07-11 06:59 . 2012-07-11 06:59 -------- d-----w- c:\users\Rodina\AppData\Local\Adobe
2012-07-10 22:40 . 2012-07-10 22:41 -------- d-----w- C:\GvTemp
2012-07-10 22:38 . 2012-07-25 22:30 -------- d-----w- c:\program files (x86)\GIGABYTE
2012-07-10 22:37 . 2012-07-10 22:37 -------- d-----w- c:\windows\Downloaded Installations
2012-07-08 17:41 . 2012-07-26 13:01 -------- d-----w- c:\programdata\SweetIM
2012-07-08 17:41 . 2012-07-26 13:01 -------- d-----w- c:\program files (x86)\SweetIM
2012-07-08 17:41 . 2012-07-27 08:46 -------- d-----w- c:\programdata\OptimizerPro
2012-07-08 17:40 . 2012-07-26 20:51 -------- d-----w- c:\program files (x86)\BcoolApp
2012-07-08 17:40 . 2012-07-08 17:40 -------- d-----w- c:\users\Domin77\AppData\Local\BcoolApp
2012-07-08 16:28 . 2012-07-08 16:28 -------- d-----w- c:\users\Rodina\AppData\Local\Daňové_riaditeľstvo_SR
2012-07-08 16:27 . 2012-07-11 07:17 -------- d-----w- c:\users\Rodina\AppData\Local\Deployment
2012-07-08 16:27 . 2012-07-08 16:27 -------- d-----w- c:\users\Rodina\AppData\Local\Apps
2012-07-07 19:54 . 2012-07-22 06:58 282696 ----a-w- c:\windows\SysWow64\PnkBstrB.xtr
2012-07-07 19:54 . 2012-07-07 19:54 -------- d-----w- c:\users\Domin77\AppData\Local\PunkBuster
2012-07-07 16:24 . 2012-07-07 16:24 -------- d-----w- c:\users\Domin77\AppData\Roaming\Resource Tuner
2012-07-07 16:23 . 2012-07-07 16:24 -------- d-----w- c:\program files (x86)\Resource Tuner
2012-07-07 10:50 . 2012-07-07 10:50 -------- d-----w- c:\program files (x86)\Universal Extractor
2012-07-07 10:42 . 2012-07-07 10:42 -------- d-----w- c:\program files (x86)\Restorator 2007
2012-07-07 10:42 . 2007-07-29 13:53 117248 ----a-w- c:\windows\SysWow64\RestoratorContextMenu.dll
2012-07-05 16:45 . 2012-07-05 16:45 5030088 ----a-w- c:\program files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}\components\SkypeFfComponent.dll
2012-07-03 14:15 . 2012-07-03 14:20 -------- d-----w- c:\windows\rescache
2012-07-03 12:39 . 2012-07-07 19:42 -------- d-----w- c:\users\Domin77\AppData\Local\Microsoft Games
2012-07-03 11:09 . 2012-06-02 22:19 57880 ----a-w- c:\windows\system32\wuauclt.exe
2012-07-03 11:09 . 2012-06-02 22:19 44056 ----a-w- c:\windows\system32\wups2.dll
2012-07-03 11:09 . 2012-06-02 22:19 2428952 ----a-w- c:\windows\system32\wuaueng.dll
2012-07-03 11:09 . 2012-06-02 22:15 2622464 ----a-w- c:\windows\system32\wucltux.dll
2012-07-03 11:09 . 2012-06-02 22:19 38424 ----a-w- c:\windows\system32\wups.dll
2012-07-03 11:09 . 2012-06-02 22:19 701976 ----a-w- c:\windows\system32\wuapi.dll
2012-07-03 11:09 . 2012-06-02 22:15 99840 ----a-w- c:\windows\system32\wudriver.dll
2012-07-03 11:09 . 2012-06-02 13:19 186752 ----a-w- c:\windows\system32\wuwebv.dll
2012-07-03 11:09 . 2012-06-02 13:15 36864 ----a-w- c:\windows\system32\wuapp.exe
2012-07-03 10:59 . 2009-12-05 17:42 85504 ----a-w- c:\windows\SysWow64\ff_vfw.dll
2012-07-03 10:59 . 2012-07-03 10:59 -------- d-----w- c:\program files (x86)\ffdshow
2012-07-03 10:59 . 2012-07-03 10:59 -------- d-----w- c:\programdata\IObit
2012-07-03 10:59 . 2012-07-03 10:59 -------- d-----w- c:\program files (x86)\IObit
2012-07-03 00:15 . 2012-07-03 00:15 -------- d-----w- c:\program files\Microsoft Games
2012-07-02 21:38 . 2012-07-02 21:38 -------- d-----w- c:\program files\Yamicsoft
2012-07-01 00:52 . 2012-05-04 16:33 268680 ----a-w- c:\windows\system32\javaws.exe
2012-07-01 00:52 . 2012-07-01 00:52 189360 ----a-w- c:\windows\system32\javaw.exe
2012-07-01 00:52 . 2012-07-01 00:52 188840 ----a-w- c:\windows\system32\java.exe
2012-07-01 00:52 . 2012-07-18 23:44 -------- d-----w- c:\program files\Java
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-07-22 06:58 . 2012-02-05 13:51 282696 ----a-w- c:\windows\SysWow64\PnkBstrB.exe
2012-07-10 15:10 . 2012-02-05 13:51 282696 ----a-w- c:\windows\SysWow64\PnkBstrB.ex0
2012-07-07 19:54 . 2012-02-05 13:51 76888 ----a-w- c:\windows\SysWow64\PnkBstrA.exe
2012-06-28 12:52 . 2012-06-26 19:32 54072 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2012-06-28 12:52 . 2012-06-26 19:32 355856 ----a-w- c:\windows\system32\drivers\aswSP.sys
2012-06-28 12:52 . 2012-06-26 19:32 958912 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2012-06-28 12:52 . 2012-06-26 19:32 59728 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2012-06-28 12:52 . 2012-06-26 19:32 71064 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2012-06-28 12:52 . 2012-06-26 19:32 25232 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2012-06-28 12:52 . 2012-06-26 19:31 41224 ----a-w- c:\windows\avastSS.scr
2012-06-28 12:51 . 2012-06-26 19:31 227648 ----a-w- c:\windows\SysWow64\aswBoot.exe
2012-06-28 12:51 . 2012-06-26 19:32 285328 ----a-w- c:\windows\system32\aswBoot.exe
2012-06-18 01:12 . 2012-07-03 11:23 9013136 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{EC181405-D923-43E0-9F6E-D00DE97EABF1}\mpengine.dll
2012-06-05 14:03 . 2012-06-05 14:03 166232 ----a-w- c:\windows\system32\drivers\VBoxNetFlt.sys
2012-06-05 14:03 . 2012-06-05 14:03 147288 ----a-w- c:\windows\system32\drivers\VBoxNetAdp.sys
2012-06-05 14:02 . 2012-06-05 14:02 320856 ----a-w- c:\windows\system32\VBoxNetFltNobj.dll
2012-05-27 15:03 . 2012-05-27 15:03 283200 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys
2012-05-04 16:33 . 2012-01-24 17:13 955800 ----a-w- c:\windows\system32\npdeployJava1.dll
2012-05-04 16:32 . 2012-01-24 17:13 839056 ----a-w- c:\windows\system32\deployJava1.dll
.
.
((((((((((((((((((((((((((((( SnapShot@2012-07-27_09.13.50 )))))))))))))))))))))))))))))))))))))))))
.
- 2009-07-14 04:54 . 2012-07-27 09:13 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2009-07-14 04:54 . 2012-07-27 22:07 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2009-07-14 04:54 . 2012-07-27 22:07 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2009-07-14 04:54 . 2012-07-27 09:13 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2009-07-14 04:54 . 2012-07-27 09:13 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2009-07-14 04:54 . 2012-07-27 22:07 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2012-01-06 13:31 . 2012-07-27 21:53 50544 c:\windows\system32\wdi\ShutdownPerformanceDiagnostics_SystemData.bin
+ 2009-07-14 05:10 . 2012-07-27 21:53 32394 c:\windows\system32\wdi\BootPerformanceDiagnostics_SystemData.bin
+ 2012-01-06 13:31 . 2012-07-27 21:53 15472 c:\windows\system32\wdi\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-686497884-313105929-2552694682-1000_UserData.bin
+ 2012-01-06 13:28 . 2012-07-27 21:50 16384 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2012-01-06 13:28 . 2012-07-27 09:13 16384 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2012-01-06 13:28 . 2012-07-27 21:50 32768 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2012-01-06 13:28 . 2012-07-27 09:13 32768 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-07-14 04:54 . 2012-07-27 21:50 16384 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2009-07-14 04:54 . 2012-07-27 09:13 16384 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2012-01-08 23:52 . 2012-07-27 21:53 16384 c:\windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2012-01-08 23:52 . 2012-07-27 09:13 16384 c:\windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2012-01-08 23:52 . 2012-07-27 21:53 16384 c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2012-01-08 23:52 . 2012-07-27 09:13 16384 c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2012-07-27 09:12 . 2012-07-27 09:12 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
+ 2012-07-27 22:07 . 2012-07-27 22:07 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
- 2012-07-27 09:12 . 2012-07-27 09:12 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
+ 2012-07-27 22:07 . 2012-07-27 22:07 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
+ 2009-07-14 05:01 . 2012-07-27 15:17 332244 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat
- 2009-07-14 05:01 . 2012-07-17 13:42 332244 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat
+ 2012-02-26 00:41 . 2012-07-27 15:17 31880756 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-686497884-313105929-2552694682-1000-12288.dat
- 2012-02-26 00:41 . 2012-07-17 13:42 31880756 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-686497884-313105929-2552694682-1000-12288.dat
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"uTorrent"="c:\program files (x86)\uTorrent\uTorrent.exe" [2012-01-09 735608]
"Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2012-02-29 17148552]
"DAEMON Tools Lite"="c:\program files (x86)\DAEMON Tools Lite\DTLite.exe" [2012-04-17 3671872]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2012-06-28 4273976]
"Malwarebytes' Anti-Malware"="c:\program files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" [2012-07-03 462920]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
AirLive 802.11G Wireless Utility.lnk - c:\program files (x86)\Ovislink\Common\AirLiveUI.exe [2012-5-15 1810432]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0OODBS
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudbus.sys [2012-02-24 99384]
R3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64;c:\program files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2012-05-27 1431888]
R3 GPCIDrv;GPCIDrv;c:\program files (x86)\GIGABYTE\atBIOS\GPCIDrv64.sys [2010-02-04 14376]
R3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-07-01 113120]
R3 NTIOLib_1_0_2;NTIOLib_1_0_2;c:\program files (x86)\MSI\BIOS Code Unlocked Technology\NTIOLib_X64.sys [2010-04-21 14136]
R3 RivaTuner64;RivaTuner64;c:\program files (x86)\RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition\RivaTuner64.sys [2012-03-17 19952]
R3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [2009-06-10 187392]
R3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudmdm.sys [2012-02-24 203320]
R3 ssudserd;SAMSUNG Mobile USB Diagnostic Serial Port(DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudserd.sys [2012-02-24 203320]
R3 VBoxUSB;VirtualBox USB;c:\windows\system32\Drivers\VBoxUSB.sys [2011-12-19 117040]
R3 WinRing0_1_2_0;WinRing0_1_2_0;c:\program files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys [2010-11-01 14544]
S0 amd_sata;amd_sata;c:\windows\system32\DRIVERS\amd_sata.sys [2011-12-12 82048]
S0 amd_xata;amd_xata;c:\windows\system32\DRIVERS\amd_xata.sys [2011-12-12 42624]
S1 aswSnx;aswSnx; [x]
S1 aswSP;aswSP; [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [2012-05-27 283200]
S1 VBoxDrv;VirtualBox Service;c:\windows\system32\DRIVERS\VBoxDrv.sys [2012-06-05 224088]
S1 VBoxUSBMon;VirtualBox USB Monitor Driver;c:\windows\system32\DRIVERS\VBoxUSBMon.sys [2012-06-05 130904]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-06-06 64952]
S2 AMD FUEL Service;AMD FUEL Service;c:\program files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2011-07-28 361984]
S2 AMD FusionUtility Service;AMD FusionUtility Service;c:\program files (x86)\AMD\Fusion Utility for Desktop\FusionUtility2Service.exe [2010-04-14 275832]
S2 AMD Reservation Manager;AMD Reservation Manager;c:\program files (x86)\AMD\Reservation Manager\AMD Reservation Manager.exe [2010-04-14 140160]
S2 AODDriver4.01;AODDriver4.01;c:\program files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2011-06-24 55424]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2012-06-28 71064]
S2 Autodesk Content Service;Autodesk Content Service;c:\program files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [2011-02-02 18656]
S2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine;c:\program files (x86)\LogMeIn Hamachi\hamachi-2.exe [2012-06-27 2369960]
S2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2012-07-03 655944]
S2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2012-03-01 2348352]
S2 OODefragAgent;O&O Defrag;c:\program files\OO Software\Defrag\oodag.exe [2011-11-17 3273552]
S2 RalinkRegistryWriter64;Ralink Registry Writer 64;c:\program files (x86)\Ovislink\Common\RaRegistry64.exe [2009-12-15 212256]
S2 Skype C2C Service;Skype C2C Service;c:\programdata\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2012-07-05 3048136]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2012-02-29 382272]
S2 TeamViewer7;TeamViewer 7;c:\program files (x86)\TeamViewer\Version7\TeamViewer_Service.exe [2012-01-19 3027840]
S3 amdiox64;AMD IO Driver;c:\windows\system32\DRIVERS\amdiox64.sys [2010-02-18 46136]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2012-07-03 24904]
S3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver;c:\windows\system32\DRIVERS\nusb3hub.sys [2011-02-10 82432]
S3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver;c:\windows\system32\DRIVERS\nusb3xhc.sys [2011-02-10 181760]
S3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda64v.sys [2012-01-17 188224]
S3 rt61x64;RT61 Extensible Wireless Driver;c:\windows\system32\DRIVERS\netr6164.sys [2010-04-08 446304]
S3 usbfilter;AMD USB Filter Driver;c:\windows\system32\DRIVERS\usbfilter.sys [2011-12-13 56448]
S3 VBoxNetAdp;VirtualBox Host-Only Ethernet Adapter;c:\windows\system32\DRIVERS\VBoxNetAdp.sys [2012-06-05 147288]
S3 VBoxNetFlt;VirtualBox Bridged Networking Service;c:\windows\system32\DRIVERS\VBoxNetFlt.sys [2012-06-05 166232]
.
.
Contents of the 'Scheduled Tasks' folder
.
2012-03-29 c:\windows\Tasks\MSIAfterburner.job
- c:\program files (x86)\MSI Afterburner\MSIAfterburner.exe [2011-02-15 11:20]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2012-06-28 12:51 133400 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2011-08-16 12673128]
"OODefragTray"="c:\program files\OO Software\Defrag\oodtray.exe" [2011-11-17 3994960]
"combofix"="c:\combofix\CF19891.3XE" [2009-07-14 344576]
.
------- Supplementary Scan -------
.
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SYSTEM32\blank.htm
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~2\MICROS~2\Office10\EXCEL.EXE/3000
IE: {{77F665FD-3F60-4B0A-AE14-EC124B7A7FCE} - c:\program files (x86)\ICQ7.7\ICQ.exe
Trusted Zone: drsr.sk\www
FF - ProfilePath - c:\users\Domin77\AppData\Roaming\Mozilla\Firefox\Profiles\e2xz1eud.default\
FF - prefs.js: browser.startup.homepage - google.sk
.
- - - - ORPHANS REMOVED - - - -
.
WebBrowser-{EEE6C35B-6118-11DC-9C72-001320C79847} - (no file)
.
.
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_USERS\S-1-5-21-686497884-313105929-2552694682-1000\Software\SecuROM\License information*]
"datasecu"=hex:c6,2a,88,f3,b3,74,91,3c,cd,ea,68,82,3e,c9,f3,45,10,8a,8f,86,d3,
bb,1b,9d,92,ce,6f,9e,65,62,d9,9e,fe,4b,84,dd,e3,54,04,75,c2,d9,b0,dd,4a,eb,\
"rkeysecu"=hex:21,f4,d9,7d,48,b0,4f,5a,30,ba,28,29,f8,06,9b,12
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\System*]
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
.
------------------------ Other Running Processes ------------------------
.
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\program files (x86)\Common Files\Microsoft Shared\VS7Debug\mdm.exe
c:\program files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
c:\program files (x86)\Nero\Nero8\Nero BackItUp\NBService.exe
c:\windows\SysWOW64\IoctlSvc.exe
c:\windows\SysWOW64\PnkBstrA.exe
c:\program files (x86)\Ovislink\Common\RaRegistry.exe
.
**************************************************************************
.
Completion time: 2012-07-28 00:14:40 - machine was rebooted
ComboFix-quarantined-files.txt 2012-07-27 22:14
ComboFix2.txt 2012-07-27 09:20
.
Pre-Run: 3 447 631 872 bytes free
Post-Run: 3 541 716 992 bytes free
.
- - End Of File - - 9E3C87BB928B5F7313882E486DE980DF
Zostava: Chladič: - GELID Soluti​on Tranqu​illo ​- revize 2, Zdroj - Fortron 550W, OEM, Case - CoolerMa​ster Elite 330 RC​-330K​-KKN1​-G, GK - GIGABYTE GTX 560 Ultra Durable OC 1GB, Zakladná Deska - MSI 870A-G54, Processor - AMD Phenom II X4 960T BE, RAM - Kingsto​n HyperX 4GB ​(2x2GB​) DDR3 1333

Uživatelský avatar
memphisto
Guru Level 13
Guru Level 13
Příspěvky: 21113
Registrován: září 06
Bydliště: Zlín - České Budějovice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu.

Příspěvekod memphisto » 28 črc 2012 14:59

ComboFix se odinstaluje takto:
Start-Spustit a zadej ComboFix /Uninstall

vyčisti systém CCleanerem

a použij i T-Cleaner
smaže vše po Combu,MWAVu atd.-stáhneš>spustíš

pozn. před stažením T-Cleaneru a po dobu čištění deaktivuj AVG , Avast,Avira či Microsoft Security Essentials následně T-Cleaner smaž a zapni si AVG , Avast, Avira či Microsoft Security Essentials

Jak se chová PC?
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji

Uživatelský avatar
Domin77
Level 2
Level 2
Příspěvky: 249
Registrován: duben 10
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu.

Příspěvekod Domin77 » 29 črc 2012 00:17

Okej všetko hotové. Počítač už ide o mnoho rýchlejšie,konečne nemusím čakať tak dlho než sa mi spustí nejaký program alebo hra.
Ďakujem Vám za veškerú pomoc a Váš čas :)

Pridávam ešte log z HJT len na kontrolu.


Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 0:16:33, on 29. 7. 2012
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Domin77\Desktop\HijackThis.exe
C:\Windows\SysWOW64\DllHost.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
O2 - BHO: (no name) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - (no file)
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKCU\..\Run: [uTorrent] "C:\Program Files (x86)\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-21-686497884-313105929-2552694682-1004\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - Global Startup: AirLive 802.11G Wireless Utility.lnk = C:\Program Files (x86)\Ovislink\Common\AirLiveUI.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: ICQ7.7 - {77F665FD-3F60-4B0A-AE14-EC124B7A7FCE} - C:\Program Files (x86)\ICQ7.7\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.7 - {77F665FD-3F60-4B0A-AE14-EC124B7A7FCE} - C:\Program Files (x86)\ICQ7.7\ICQ.exe
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: AMD FusionUtility Service - Advanced Micro Devices, Inc. - C:\Program Files (x86)\AMD\Fusion Utility for Desktop\FusionUtility2Service.exe
O23 - Service: AMD Reservation Manager - Advanced Micro Devices - C:\Program Files (x86)\AMD\Reservation Manager\AMD Reservation Manager.exe
O23 - Service: Autodesk Content Service - Unknown owner - C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service 64 - Flexera Software, Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files (x86)\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NMIndexingService - Nero AG - C:\Program Files (x86)\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: O&O Defrag (OODefragAgent) - O&O Software GmbH - C:\Program Files\OO Software\Defrag\oodag.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\SysWOW64\IoctlSvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Ralink Registry Writer (RalinkRegistryWriter) - Ralink Technology, Corp. - C:\Program Files (x86)\Ovislink\Common\RaRegistry.exe
O23 - Service: Ralink Registry Writer 64 (RalinkRegistryWriter64) - Ralink Technology, Corp. - C:\Program Files (x86)\Ovislink\Common\RaRegistry64.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: TeamViewer 7 (TeamViewer7) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 9034 bytes
Zostava: Chladič: - GELID Soluti​on Tranqu​illo ​- revize 2, Zdroj - Fortron 550W, OEM, Case - CoolerMa​ster Elite 330 RC​-330K​-KKN1​-G, GK - GIGABYTE GTX 560 Ultra Durable OC 1GB, Zakladná Deska - MSI 870A-G54, Processor - AMD Phenom II X4 960T BE, RAM - Kingsto​n HyperX 4GB ​(2x2GB​) DDR3 1333

Uživatelský avatar
memphisto
Guru Level 13
Guru Level 13
Příspěvky: 21113
Registrován: září 06
Bydliště: Zlín - České Budějovice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu.

Příspěvekod memphisto » 29 črc 2012 08:36

fix:
O2 - BHO: (no name) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - (no file)

Jinak OK. POkud nejsou problémy, dej vyřešeno.
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Majestic-12 [Bot] a 84 hostů