Prosím o kontrolu logu Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

scetman
Level 1.5
Level 1.5
Příspěvky: 108
Registrován: únor 10
Pohlaví: Muž
Stav:
Offline

Prosím o kontrolu logu

Příspěvekod scetman » 27 úno 2014 12:08

CPU zatíženo na 100% - Příliš pomalý NTB

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:04:51, on 27.2.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16518)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Allin1Convert_8h\bar\1.bin\8hbrmon.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Genius\ioCentre\gTaskBar.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE
C:\Program Files\WebcamMax\wcmmon.exe
C:\Genius\ioCentre\gMouseTask.exe
C:\Genius\ioCentre\gKbdTask.exe
C:\Genius\ioCentre\gIoCentreFunMgm.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Users\niko\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files\IObit\Advanced SystemCare 7\RealTimeProtector.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe
C:\Program Files\Opera\19.0.1326.63\opera.exe
C:\Program Files\Opera\19.0.1326.63\opera_crashreporter.exe
C:\Program Files\Opera\19.0.1326.63\opera.exe
C:\Program Files\Opera\19.0.1326.63\opera.exe
C:\Program Files\Opera\19.0.1326.63\opera.exe
C:\Program Files\Opera\19.0.1326.63\opera.exe
C:\Program Files\Opera\19.0.1326.63\opera.exe
C:\Program Files\Opera\19.0.1326.63\opera.exe
C:\Program Files\Opera\19.0.1326.63\opera.exe
C:\Program Files\Opera\19.0.1326.63\opera.exe
C:\Windows\system32\RunDll32.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = www.bing.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE10SR
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {5bcf818d-78c8-41b8-ba89-65c5fdac4fc4} - (no file)
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: ExplorerWnd Helper - {10921475-03CE-4E04-90CE-E2E7EF20C814} - C:\Program Files\IObit\IObit Uninstaller\UninstallExplorer32.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: maucampo - {5d7d4fb9-aca5-4013-8879-c58dcd4df9f1} - (no file)
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: (no name) - {a4c2fb10-84c3-44eb-9f9e-860fa1d9a797} - (no file)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O2 - BHO: (no name) - {fbcbc43a-dca9-4192-a4c8-b57fd0f77d4d} - (no file)
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O3 - Toolbar: avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Allin1Convert EPM Support] "C:\PROGRA~1\ALLIN1~1\bar\1.bin\8hmedint.exe" T8EPMSUP.DLL,S
O4 - HKLM\..\Run: [Allin1Convert_8h Browser Plugin Loader] C:\Program Files\Allin1Convert_8h\bar\1.bin\8hbrmon.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [ioCentre] C:\Genius\ioCentre\gTaskBar.exe
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKCU\..\Run: [Facebook Update] "C:\Users\niko\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
O4 - HKCU\..\Run: [Advanced SystemCare 7] "C:\Program Files\IObit\Advanced SystemCare 7\ASCTray.exe" /Auto
O4 - HKCU\..\Run: [ShowBatteryBar] "C:\Program Files\BatteryBar\ShowBatteryBar.exe" show
O4 - HKCU\..\Run: [WebcamMaxAutoRun] "C:\Program Files\WebcamMax\wcmmon.exe" -a
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\niko\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\niko\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: HP Chytrý výběr - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Advanced SystemCare Service 7 (AdvancedSystemCareService7) - IObit - C:\Program Files\IObit\Advanced SystemCare 7\ASCService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: avast! Firewall - AVAST Software - C:\Program Files\AVAST Software\Avast\afwServ.exe
O23 - Service: Bluetooth Driver Management Service (BcmBtRSupport) - Broadcom Corporation. - C:\Windows\system32\BtwRSupportService.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: GeniusMouseService - Unknown owner - C:\Genius\ioCentre\GMouseService.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe
O23 - Service: Protect Monitor (ProtectMonitor) - Unknown owner - C:\Program Files\PCData\StartHelp.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: Update maucampo - Unknown owner - C:\Program Files\maucampo\updatemaucampo.exe
O23 - Service: Util maucampo - Unknown owner - C:\Program Files\maucampo\bin\utilmaucampo.exe

--
End of file - 9847 bytes

Reklama
Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod jaro3 » 27 úno 2014 18:46

Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected. Poté klikni na Main (hlavní stránku ) a klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.


Stáhni si TFC
Otevři soubor a zavři všechny ostatní okna, Klikni na Start k zahájení procesu. Program by neměl trvat dlouho.
Poté by se měl PC restartovat, pokud ne , proveď sám.

Stáhni AdwCleaner (by Xplode)

Ulož si ho na svojí plochu
Ukonči všechny programy , okna a prohlížeče
Spusť program poklepáním a klikni na „Prohledat-Scan“
Po skenu se objeví log ( jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.

Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Provést rychlý sken a klikni na tlačítko Skenovat
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Zobrazit výsledky
- pak zvol možnost uložit log a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.

Pokud budou problémy , spusť v nouz. režimu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

scetman
Level 1.5
Level 1.5
Příspěvky: 108
Registrován: únor 10
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod scetman » 27 úno 2014 19:50

# AdwCleaner v3.020 - Report created 27/02/2014 at 19:44:29
# Updated 27/02/2014 by Xplode
# Operating System : Windows 7 Ultimate Service Pack 1 (32 bits)
# Username : niko - NIKO-PC
# Running from : C:\Users\niko\Desktop\adwcleaner.exe
# Option : Scan

***** [ Services ] *****


***** [ Files / Folders ] *****

File Found : C:\Windows\System32\Tasks\AmiUpdXp
File Found : C:\Windows\System32\Tasks\Driver Booster Update
File Found : C:\Windows\Tasks\AmiUpdXp.job
File Found : C:\Windows\Tasks\Driver Booster Update.job
Folder Found C:\Program Files\driver-soft
Folder Found C:\ProgramData\RegClean
Folder Found C:\Users\niko\AppData\Local\SwvUpdater
Folder Found C:\Users\niko\AppData\Roaming\driver-soft

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7CAEFAFC-9A1E-4BCC-94DD-BC7D8D52717A}
Key Found : HKCU\Software\smarttweak
Key Found : HKLM\Software\caphyon
Key Found : HKLM\SOFTWARE\Classes\Allin1Convert_8h.ToolbarProtector
Key Found : HKLM\SOFTWARE\Classes\Allin1Convert_8h.ToolbarProtector.1
Key Found : HKLM\SOFTWARE\Classes\CLSID\{059EACC2-1ABE-49E8-928D-DC8BD355B7A9}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{4C836512-BB70-11D2-A5A7-00105A9C91C6}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{67BD9EEB-AA06-4329-A940-D250019300C9}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{6FDBBC21-E399-4542-B4CE-86326E1F0727}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{7B878FD4-8F19-46DB-94B1-4CABFF80679C}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{889F49D2-6CEA-40BE-BE5F-7217485F9745}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{8BA495EF-6CD5-413A-8AEF-483631B98C4F}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{8C71E394-2E6F-452A-AB7D-C17E78307083}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{BADB1512-759C-4792-A18A-DD6BDC4E1991}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{DB797690-40E0-11D2-9BD5-0060082AE372}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{E54FBC83-9028-45AC-A5B9-D5DA828E59C2}
Key Found : HKLM\SOFTWARE\Classes\Interface\{3408AC0D-510E-4808-8F7B-6B70B1F88534}
Key Found : HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{2561FD25-FE31-4E56-A120-AF7FEAAE3124}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{633AA60B-C339-46C3-951F-047F9822C473}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{9156C8F9-B397-4DEF-8AC5-5966221A134A}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{A0EE0278-2986-4E5A-884E-A3BF0357E476}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{A8E5842E-102B-4289-9D57-3B3F5B5E15D3}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{DB797681-40E0-11D2-9BD5-0060082AE372}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{DCABB943-792E-44C4-9029-ECBEE6265AF9}
Key Found : HKLM\SOFTWARE\Classes\Updater.AmiUpd
Key Found : HKLM\SOFTWARE\Classes\Updater.AmiUpd.1
Key Found : HKLM\Software\Driver-Soft
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\AmiUpdXp
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\Driver Booster Update
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6CBA55FF-2D93-4EAC-BEAE-34EBFDB2399C}
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6CFD01A3-9F3D-4093-9C0E-4ADD2E9E00BD}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96}

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.16518


-\\ Google Chrome v33.0.1750.117

[ File : C:\Users\niko\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [3752 octets] - [27/02/2014 19:44:29]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [3812 octets] ##########

scetman
Level 1.5
Level 1.5
Příspěvky: 108
Registrován: únor 10
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod scetman » 27 úno 2014 20:02

Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware.) 1.75.0.1300
www.malwarebytes.org

Verze: v2014.02.27.07

Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 11.0.9600.16518
niko :: NIKO-PC [administrátor]

Ochrana: Povolena

27.2.2014 19:52:16
MBAM-log-2014-02-27 (20-01-16).txt

Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 202174
Uplynulý čas: 8 minut, 53 sekund

Nalezené procesy v paměti: 1
C:\Program Files\PCData\minerd.exe (PUP.BitCoinMiner) -> 2816 -> Nebyla provedena žádná instrukce.

Nalezené moduly v paměti: 1
C:\Program Files\PCData\libcurl-4.dll (Trojan.Miner) -> Nebyla provedena žádná instrukce.

Nalezené klíče v registru: 8
HKCR\CLSID\{67BD9EEB-AA06-4329-A940-D250019300C9} (PUP.Optional.SoftwareUpdater) -> Nebyla provedena žádná instrukce.
HKCR\TypeLib\{A0EE0278-2986-4E5A-884E-A3BF0357E476} (PUP.Optional.SoftwareUpdater) -> Nebyla provedena žádná instrukce.
HKCR\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67} (PUP.Optional.SoftwareUpdater) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96} (PUP.Optional.SoftwareUpdater) -> Nebyla provedena žádná instrukce.
HKCR\Updater.AmiUpd.1 (PUP.Optional.SoftwareUpdater) -> Nebyla provedena žádná instrukce.
HKCR\Updater.AmiUpd (PUP.Optional.SoftwareUpdater) -> Nebyla provedena žádná instrukce.
HKCR\Typelib\{DCABB943-792E-44C4-9029-ECBEE6265AF9} (PUP.Optional.OutBrowse) -> Nebyla provedena žádná instrukce.
HKCR\Interface\{3408AC0D-510E-4808-8F7B-6B70B1F88534} (PUP.Optional.OutBrowse) -> Nebyla provedena žádná instrukce.

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 4
C:\Program Files\PCData\minerd.exe (PUP.BitCoinMiner) -> Nebyla provedena žádná instrukce.
C:\Program Files\PCData\libcurl-4.dll (Trojan.Miner) -> Nebyla provedena žádná instrukce.
C:\Users\niko\AppData\Local\SwvUpdater\Updater.exe (PUP.Optional.SoftwareUpdater) -> Nebyla provedena žádná instrukce.
C:\Windows\Tasks\AmiUpdXp.job (PUP.Software.Updater) -> Nebyla provedena žádná instrukce.

(konec)

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod jaro3 » 28 úno 2014 09:37

Spusť znovu AdwCleaner (u Windows Vista či Windows7, klikni na AdwCleaner pravým a vyber „Spustit jako správce
Klikni na „ Vymazat-Clean
Program provede opravu, po automatickém restartu neukáže log (C:\AdwCleaner [S?].txt) , jeho obsah sem celý vlož.

Stáhni si Junkware Removal Tool by Thisisu

na svojí plochu.

Deaktivuj si svůj antivirový program. Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.

. spusť znovu MbAM a dej Scan
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Ukaž výsledky
- ujisti se že máš zatrhnuté všechny vypsané nálezy a klikni na tlačítko Odstranit označené
- když skončí odstraňování tak se ti zobrazí log, tak ho sem dej.
- pak zvol v programu OK a pak program ukonči přes Exit
Můžeš sem pak vložit nový log z MbAM.

Stáhni si RogueKiller by Adlice Software
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit

-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

scetman
Level 1.5
Level 1.5
Příspěvky: 108
Registrován: únor 10
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod scetman » 28 úno 2014 12:52

# AdwCleaner v3.020 - Report created 28/02/2014 at 12:46:41
# Updated 27/02/2014 by Xplode
# Operating System : Windows 7 Ultimate Service Pack 1 (32 bits)
# Username : niko - NIKO-PC
# Running from : C:\Users\niko\Desktop\adwcleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\RegClean
Folder Deleted : C:\Program Files\driver-soft
Folder Deleted : C:\Users\niko\AppData\Local\SwvUpdater
Folder Deleted : C:\Users\niko\AppData\Roaming\driver-soft
File Deleted : C:\Windows\Tasks\AmiUpdXp.job
File Deleted : C:\Windows\System32\Tasks\AmiUpdXp
File Deleted : C:\Windows\Tasks\Driver Booster Update.job
File Deleted : C:\Windows\System32\Tasks\Driver Booster Update

***** [ Shortcuts ] *****


***** [ Registry ] *****

[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{6CBA55FF-2D93-4EAC-BEAE-34EBFDB2399C}
[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6CBA55FF-2D93-4EAC-BEAE-34EBFDB2399C}
[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{6CFD01A3-9F3D-4093-9C0E-4ADD2E9E00BD}
[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6CFD01A3-9F3D-4093-9C0E-4ADD2E9E00BD}
Key Deleted : HKLM\SOFTWARE\Classes\Allin1Convert_8h.ToolbarProtector
Key Deleted : HKLM\SOFTWARE\Classes\Allin1Convert_8h.ToolbarProtector.1
Key Deleted : HKLM\SOFTWARE\Classes\Updater.AmiUpd
Key Deleted : HKLM\SOFTWARE\Classes\Updater.AmiUpd.1
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{059EACC2-1ABE-49E8-928D-DC8BD355B7A9}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4C836512-BB70-11D2-A5A7-00105A9C91C6}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{67BD9EEB-AA06-4329-A940-D250019300C9}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6FDBBC21-E399-4542-B4CE-86326E1F0727}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7B878FD4-8F19-46DB-94B1-4CABFF80679C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{889F49D2-6CEA-40BE-BE5F-7217485F9745}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{8BA495EF-6CD5-413A-8AEF-483631B98C4F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{8C71E394-2E6F-452A-AB7D-C17E78307083}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{BADB1512-759C-4792-A18A-DD6BDC4E1991}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DB797690-40E0-11D2-9BD5-0060082AE372}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E54FBC83-9028-45AC-A5B9-D5DA828E59C2}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3408AC0D-510E-4808-8F7B-6B70B1F88534}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{2561FD25-FE31-4E56-A120-AF7FEAAE3124}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{633AA60B-C339-46C3-951F-047F9822C473}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{9156C8F9-B397-4DEF-8AC5-5966221A134A}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A0EE0278-2986-4E5A-884E-A3BF0357E476}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A8E5842E-102B-4289-9D57-3B3F5B5E15D3}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{DB797681-40E0-11D2-9BD5-0060082AE372}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{DCABB943-792E-44C4-9029-ECBEE6265AF9}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7CAEFAFC-9A1E-4BCC-94DD-BC7D8D52717A}
Key Deleted : HKCU\Software\smarttweak
Key Deleted : HKLM\Software\caphyon
Key Deleted : HKLM\Software\Driver-Soft
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96}

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.16518


-\\ Google Chrome v33.0.1750.117

[ File : C:\Users\niko\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [3892 octets] - [27/02/2014 19:44:29]
AdwCleaner[R1].txt - [3952 octets] - [28/02/2014 12:42:37]
AdwCleaner[S0].txt - [4028 octets] - [28/02/2014 12:46:41]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [4088 octets] ##########

scetman
Level 1.5
Level 1.5
Příspěvky: 108
Registrován: únor 10
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod scetman » 28 úno 2014 13:03

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.2 (02.20.2014:1)
OS: Windows 7 Ultimate x86
Ran by niko on p  28.02.2014 at 12:55:31,36
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E58CDA9-3B21-4611-A859-26EE28950E61}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{75b4241f-171e-44a3-bf44-23613b6e3e03}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{B3AA43AD-FC34-452E-8B90-0A6F9C95A8D7}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{75b4241f-171e-44a3-bf44-23613b6e3e03}



~~~ Files



~~~ Folders

Successfully deleted: [Folder] "C:\Program Files\smarttweak"
Successfully deleted: [Folder] "C:\Users\niko\AppData\Roaming\microsoft\windows\start menu\programs\smarttweak software"



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on p  28.02.2014 at 13:00:50,52
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

scetman
Level 1.5
Level 1.5
Příspěvky: 108
Registrován: únor 10
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod scetman » 28 úno 2014 13:31

Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware.) 1.75.0.1300
www.malwarebytes.org

Verze: v2014.02.28.05

Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 11.0.9600.16518
niko :: NIKO-PC [administrátor]

Ochrana: Povolena

28.2.2014 13:20:47
mbam-log-2014-02-28 (13-20-47).txt

Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 201575
Uplynulý čas: 5 minut, 46 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 0
(Žádné škodlivé položky nebyly zjištěny)

(konec)

scetman
Level 1.5
Level 1.5
Příspěvky: 108
Registrován: únor 10
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod scetman » 28 úno 2014 13:37

RogueKiller V8.8.10 [Feb 28 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com

Operační systém : Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Spuštěno v : Normální režim
Uživatel : niko [Práva správce]
Mód : Kontrola -- Datum : 02/28/2014 13:36:09
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 1 ¤¤¤
[SUSP PATH] szndesktop.exe -- C:\Users\niko\AppData\Roaming\Seznam.cz\bin\szndesktop.exe [7] -> SMAZÁNO [TermProc]

¤¤¤ ¤¤¤ Záznamy Registrů: : 12 ¤¤¤
[RUN][SUSP PATH] HKCU\[...]\Run : cz.seznam.software.autoupdate ("C:\Users\niko\AppData\Roaming\Seznam.cz\szninstall.exe" -c [7]) -> NALEZENO
[RUN][SUSP PATH] HKCU\[...]\Run : cz.seznam.software.szndesktop ("C:\Users\niko\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q [7]) -> NALEZENO
[RUN][SUSP PATH] HKUS\S-1-5-21-3105436578-794624629-3581458123-1000\[...]\Run : cz.seznam.software.autoupdate ("C:\Users\niko\AppData\Roaming\Seznam.cz\szninstall.exe" -c [7]) -> NALEZENO
[RUN][SUSP PATH] HKUS\S-1-5-21-3105436578-794624629-3581458123-1000\[...]\Run : cz.seznam.software.szndesktop ("C:\Users\niko\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q [7]) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ POL][PUM] HKLM\[...]\System : ConsentPromptBehaviorAdmin (0) -> NALEZENO
[HJ POL][PUM] HKLM\[...]\System : EnableLUA (0) -> NALEZENO
[HJ DESK][PUM] HKCU\[...]\ClassicStartMenu : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK][PUM] HKCU\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO

¤¤¤ naplánované úlohy : 0 ¤¤¤

¤¤¤ spuštění položky : 0 ¤¤¤

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Browser Addons : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts




¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) WDC WD1600BEVT-75ZCT2 ATA Device +++++
--- User ---
[MBR] c1980b02f6c417448b07db9e356b9b42
[BSP] 54d99a1477363384014a7862f0cc0584 : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 100 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 206848 | Size: 152525 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[0]_S_02282014_133609.txt >>

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod jaro3 » 28 úno 2014 19:02

Zavři všechny programy a prohlížeče. Deaktivuj antivir a firewall.
Prosím, odpoj všechny USB nebo externí disky z počítače před spuštěním tohoto programu.
Spusť RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Počkej, dokud status okno zobrazuje "Prohledat "
- Klikni na "Smazat"
- Počkej, dokud Status box zobrazuje " Mazání dokončeno "
- Klikni na "Zpráva " a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [číslo]. txt na ploše.
- Zavři RogueKiller

Stáhni si TDSSKiller
Na svojí plochu.Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller. 2.8.16.0_(datum)_log.txt , vlož sem prosím celý obsah logu.
-pokud bude mít log více než 60.000 znaků , rozděl ho a vlož do více příspěvků
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

scetman
Level 1.5
Level 1.5
Příspěvky: 108
Registrován: únor 10
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod scetman » 01 bře 2014 00:16

RogueKiller V8.8.10 [Feb 28 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com

Operační systém : Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Spuštěno v : Normální režim
Uživatel : niko [Práva správce]
Mód : Odebrat -- Datum : 03/01/2014 00:03:44
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 2 ¤¤¤
[SUSP PATH][DLL] explorer.exe -- C:\Users\niko\AppData\Roaming\Seznam.cz\bin\24863libfoxloader.dll [x] -> ODEBRÁNO
[SUSP PATH] szndesktop.exe -- C:\Users\niko\AppData\Roaming\Seznam.cz\bin\szndesktop.exe [7] -> SMAZÁNO [TermProc]

¤¤¤ ¤¤¤ Záznamy Registrů: : 12 ¤¤¤
[RUN][SUSP PATH] HKCU\[...]\Run : cz.seznam.software.autoupdate ("C:\Users\niko\AppData\Roaming\Seznam.cz\szninstall.exe" -c [7]) -> VYMAZÁNO
[RUN][SUSP PATH] HKCU\[...]\Run : cz.seznam.software.szndesktop ("C:\Users\niko\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q [7]) -> VYMAZÁNO
[RUN][SUSP PATH] HKUS\S-1-5-21-3105436578-794624629-3581458123-1000\[...]\Run : cz.seznam.software.autoupdate ("C:\Users\niko\AppData\Roaming\Seznam.cz\szninstall.exe" -c [7]) -> [0x2] Systém nemůže nalézt uvedený soubor.
[RUN][SUSP PATH] HKUS\S-1-5-21-3105436578-794624629-3581458123-1000\[...]\Run : cz.seznam.software.szndesktop ("C:\Users\niko\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q [7]) -> [0x2] Systém nemůže nalézt uvedený soubor.
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> VYMAZÁNO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> VYMAZÁNO
[HJ POL][PUM] HKLM\[...]\System : ConsentPromptBehaviorAdmin (0) -> NAHRAZENO (2)
[HJ POL][PUM] HKLM\[...]\System : EnableLUA (0) -> NAHRAZENO (1)
[HJ DESK][PUM] HKCU\[...]\ClassicStartMenu : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKCU\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)

¤¤¤ naplánované úlohy : 0 ¤¤¤

¤¤¤ spuštění položky : 0 ¤¤¤

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Browser Addons : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts




¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) WDC WD1600BEVT-75ZCT2 ATA Device +++++
--- User ---
[MBR] c1980b02f6c417448b07db9e356b9b42
[BSP] 54d99a1477363384014a7862f0cc0584 : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 100 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 206848 | Size: 152525 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[0]_D_03012014_000344.txt >>
RKreport[0]_S_02282014_133609.txt;RKreport[0]_S_03012014_000335.txt

scetman
Level 1.5
Level 1.5
Příspěvky: 108
Registrován: únor 10
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod scetman » 01 bře 2014 00:18

00:11:55.0876 5600 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
00:11:57.0920 5600 ============================================================
00:11:57.0920 5600 Current date / time: 2014/03/01 00:11:57.0920
00:11:57.0920 5600 SystemInfo:
00:11:57.0920 5600
00:11:57.0920 5600 OS Version: 6.1.7601 ServicePack: 1.0
00:11:57.0920 5600 Product type: Workstation
00:11:57.0920 5600 ComputerName: NIKO-PC
00:11:57.0920 5600 UserName: niko
00:11:57.0920 5600 Windows directory: C:\Windows
00:11:57.0920 5600 System windows directory: C:\Windows
00:11:57.0920 5600 Processor architecture: Intel x86
00:11:57.0920 5600 Number of processors: 2
00:11:57.0920 5600 Page size: 0x1000
00:11:57.0920 5600 Boot type: Normal boot
00:11:57.0920 5600 ============================================================
00:12:01.0586 5600 Drive \Device\Harddisk0\DR0 - Size: 0x25433D6000 (149.05 Gb), SectorSize: 0x200, Cylinders: 0x4C01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
00:12:01.0617 5600 ============================================================
00:12:01.0617 5600 \Device\Harddisk0\DR0:
00:12:01.0632 5600 MBR partitions:
00:12:01.0632 5600 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
00:12:01.0632 5600 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x129E6800
00:12:01.0632 5600 ============================================================
00:12:01.0710 5600 C: <-> \Device\Harddisk0\DR0\Partition2
00:12:01.0726 5600 ============================================================
00:12:01.0726 5600 Initialize success
00:12:01.0726 5600 ============================================================
00:14:08.0270 1536 ============================================================
00:14:08.0270 1536 Scan started
00:14:08.0270 1536 Mode: Manual;
00:14:08.0270 1536 ============================================================
00:14:10.0158 1536 ================ Scan system memory ========================
00:14:10.0158 1536 System memory - ok
00:14:10.0158 1536 ================ Scan services =============================
00:14:10.0423 1536 [ 1B133875B8AA8AC48969BD3458AFE9F5 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
00:14:10.0423 1536 1394ohci - ok
00:14:10.0454 1536 [ CEA80C80BED809AA0DA6FEBC04733349 ] ACPI C:\Windows\system32\drivers\ACPI.sys
00:14:10.0454 1536 ACPI - ok
00:14:10.0501 1536 [ 1EFBC664ABFF416D1D07DB115DCB264F ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
00:14:10.0501 1536 AcpiPmi - ok
00:14:10.0610 1536 [ B362181ED3771DC03B4141927C80F801 ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
00:14:10.0626 1536 AdobeARMservice - ok
00:14:10.0688 1536 [ F7AB315A4D400CA876381D1E188A2E20 ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
00:14:10.0688 1536 AdobeFlashPlayerUpdateSvc - ok
00:14:10.0751 1536 [ 21E785EBD7DC90A06391141AAC7892FB ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys
00:14:10.0766 1536 adp94xx - ok
00:14:10.0782 1536 [ 0C676BC278D5B59FF5ABD57BBE9123F2 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys
00:14:10.0782 1536 adpahci - ok
00:14:10.0813 1536 [ 7C7B5EE4B7B822EC85321FE23A27DB33 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys
00:14:10.0813 1536 adpu320 - ok
00:14:10.0938 1536 [ F5456293D2604BCE2BEC07FC6186A341 ] AdvancedSystemCareService7 C:\Program Files\IObit\Advanced SystemCare 7\ASCService.exe
00:14:10.0954 1536 AdvancedSystemCareService7 - ok
00:14:10.0985 1536 [ 8B5EEFEEC1E6D1A72A06C526628AD161 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
00:14:11.0000 1536 AeLookupSvc - ok
00:14:11.0032 1536 [ F81BB7E487EDCEAB630A7EE66CF23913 ] AFD C:\Windows\system32\drivers\afd.sys
00:14:11.0047 1536 AFD - ok
00:14:11.0063 1536 [ 507812C3054C21CEF746B6EE3D04DD6E ] agp440 C:\Windows\system32\drivers\agp440.sys
00:14:11.0063 1536 agp440 - ok
00:14:11.0125 1536 [ 8B30250D573A8F6B4BD23195160D8707 ] aic78xx C:\Windows\system32\DRIVERS\djsvs.sys
00:14:11.0125 1536 aic78xx - ok
00:14:11.0141 1536 [ 18A54E132947CD98FEA9ACCC57F98F13 ] ALG C:\Windows\System32\alg.exe
00:14:11.0141 1536 ALG - ok
00:14:11.0203 1536 [ 0D40BCF52EA90FC7DF2AEAB6503DEA44 ] aliide C:\Windows\system32\drivers\aliide.sys
00:14:11.0203 1536 aliide - ok
00:14:11.0219 1536 [ 3C6600A0696E90A463771C7422E23AB5 ] amdagp C:\Windows\system32\drivers\amdagp.sys
00:14:11.0219 1536 amdagp - ok
00:14:11.0250 1536 [ CD5914170297126B6266860198D1D4F0 ] amdide C:\Windows\system32\drivers\amdide.sys
00:14:11.0250 1536 amdide - ok
00:14:11.0281 1536 [ 00DDA200D71BAC534BF56A9DB5DFD666 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
00:14:11.0281 1536 AmdK8 - ok
00:14:11.0297 1536 [ 3CBF30F5370FDA40DD3E87DF38EA53B6 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
00:14:11.0297 1536 AmdPPM - ok
00:14:11.0328 1536 [ D320BF87125326F996D4904FE24300FC ] amdsata C:\Windows\system32\drivers\amdsata.sys
00:14:11.0344 1536 amdsata - ok
00:14:11.0359 1536 [ EA43AF0C423FF267355F74E7A53BDABA ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys
00:14:11.0359 1536 amdsbs - ok
00:14:11.0375 1536 [ 46387FB17B086D16DEA267D5BE23A2F2 ] amdxata C:\Windows\system32\drivers\amdxata.sys
00:14:11.0375 1536 amdxata - ok
00:14:11.0437 1536 [ AEA177F783E20150ACE5383EE368DA19 ] AppID C:\Windows\system32\drivers\appid.sys
00:14:11.0437 1536 AppID - ok
00:14:11.0484 1536 [ 62A9C86CB6085E20DB4823E4E97826F5 ] AppIDSvc C:\Windows\System32\appidsvc.dll
00:14:11.0484 1536 AppIDSvc - ok
00:14:11.0546 1536 [ EACFDF31921F51C097629F1F3C9129B4 ] Appinfo C:\Windows\System32\appinfo.dll
00:14:11.0546 1536 Appinfo - ok
00:14:11.0578 1536 [ A45D184DF6A8803DA13A0B329517A64A ] AppMgmt C:\Windows\System32\appmgmts.dll
00:14:11.0593 1536 AppMgmt - ok
00:14:11.0609 1536 [ 2932004F49677BD84DBC72EDB754FFB3 ] arc C:\Windows\system32\DRIVERS\arc.sys
00:14:11.0624 1536 arc - ok
00:14:11.0640 1536 [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7 ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys
00:14:11.0640 1536 arcsas - ok
00:14:11.0780 1536 [ 9D768C43FEF254DD50B1DBF8AD5C4C0B ] aspnet_state C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
00:14:11.0874 1536 aspnet_state - ok
00:14:11.0921 1536 [ 0EEFB7741B46099FE1AA124F57BEEE41 ] aswKbd C:\Windows\system32\drivers\aswKbd.sys
00:14:11.0936 1536 aswKbd - ok
00:14:11.0968 1536 [ 61953E5E1FFAEAF246A610BEE2554879 ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
00:14:11.0983 1536 aswMonFlt - ok
00:14:12.0046 1536 [ E3A9DB9A256311128382D54F40981CFD ] aswNdisFlt C:\Windows\system32\DRIVERS\aswNdisFlt.sys
00:14:12.0046 1536 aswNdisFlt - ok
00:14:12.0092 1536 [ 2206985EF126AB90F3D7F1A020589DC9 ] aswRdr C:\Windows\system32\drivers\aswRdr2.sys
00:14:12.0092 1536 aswRdr - ok
00:14:12.0108 1536 [ F385467DF95D0A73775CB3B076B8B969 ] aswRvrt C:\Windows\system32\drivers\aswRvrt.sys
00:14:12.0108 1536 aswRvrt - ok
00:14:12.0139 1536 [ 8CD8710457FCC1CDE88CBFA3AA119B92 ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
00:14:12.0186 1536 aswSnx - ok
00:14:12.0233 1536 [ C1F95C9481F46B96E23A276639C55AC9 ] aswSP C:\Windows\system32\drivers\aswSP.sys
00:14:12.0233 1536 aswSP - ok
00:14:12.0295 1536 [ BFE2A154BC197656ACA0FF917564406D ] aswStm C:\Windows\system32\drivers\aswStm.sys
00:14:12.0295 1536 aswStm - ok
00:14:12.0326 1536 [ 1B0662514A68C3A42E60D240C5ABEF28 ] aswVmm C:\Windows\system32\drivers\aswVmm.sys
00:14:12.0326 1536 aswVmm - ok
00:14:12.0358 1536 [ ADD2ADE1C2B285AB8378D2DAAF991481 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
00:14:12.0358 1536 AsyncMac - ok
00:14:12.0389 1536 [ 338C86357871C167A96AB976519BF59E ] atapi C:\Windows\system32\drivers\atapi.sys
00:14:12.0389 1536 atapi - ok
00:14:12.0436 1536 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
00:14:12.0451 1536 AudioEndpointBuilder - ok
00:14:12.0451 1536 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] Audiosrv C:\Windows\System32\Audiosrv.dll
00:14:12.0451 1536 Audiosrv - ok
00:14:12.0592 1536 [ CC42F104172B4A62793083D380867317 ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
00:14:12.0592 1536 avast! Antivirus - ok
00:14:12.0638 1536 [ 3B5DA02DEA6910A709F19180746FF0CE ] avast! Firewall C:\Program Files\AVAST Software\Avast\afwServ.exe
00:14:12.0638 1536 avast! Firewall - ok
00:14:12.0685 1536 [ 6E30D02AAC9CAC84F421622E3A2F6178 ] AxInstSV C:\Windows\System32\AxInstSV.dll
00:14:12.0701 1536 AxInstSV - ok
00:14:12.0732 1536 [ 1A231ABEC60FD316EC54C66715543CEC ] b06bdrv C:\Windows\system32\DRIVERS\bxvbdx.sys
00:14:12.0748 1536 b06bdrv - ok
00:14:12.0794 1536 [ 41C43F65F89B83D92568125845E574C8 ] b57nd60x C:\Windows\system32\DRIVERS\b57nd60x.sys
00:14:12.0810 1536 b57nd60x - ok
00:14:12.0872 1536 [ 8777206E69B0557608BDFCAEB91337BC ] bcbtums C:\Windows\system32\drivers\bcbtums.sys
00:14:12.0872 1536 bcbtums - ok
00:14:12.0935 1536 [ 2308C3B2FE30B11AF58C33B056810F5D ] BcmBtRSupport C:\Windows\system32\BtwRSupportService.exe
00:14:12.0966 1536 BcmBtRSupport - ok
00:14:13.0044 1536 [ EE1E9C3BB8228AE423DD38DB69128E71 ] BDESVC C:\Windows\System32\bdesvc.dll
00:14:13.0044 1536 BDESVC - ok
00:14:13.0075 1536 [ 505506526A9D467307B3C393DEDAF858 ] Beep C:\Windows\system32\drivers\Beep.sys
00:14:13.0075 1536 Beep - ok
00:14:13.0153 1536 [ 1E2BAC209D184BB851E1A187D8A29136 ] BFE C:\Windows\System32\bfe.dll
00:14:13.0153 1536 BFE - ok
00:14:13.0200 1536 [ E585445D5021971FAE10393F0F1C3961 ] BITS C:\Windows\System32\qmgr.dll
00:14:13.0200 1536 BITS - ok
00:14:13.0231 1536 [ 2287078ED48FCFC477B05B20CF38F36F ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
00:14:13.0231 1536 blbdrive - ok
00:14:13.0325 1536 [ 8F2DA3028D5FCBD1A060A3DE64CD6506 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
00:14:13.0325 1536 bowser - ok
00:14:13.0356 1536 [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys
00:14:13.0356 1536 BrFiltLo - ok
00:14:13.0372 1536 [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys
00:14:13.0372 1536 BrFiltUp - ok
00:14:13.0387 1536 [ 3DAA727B5B0A45039B0E1C9A211B8400 ] Browser C:\Windows\System32\browser.dll
00:14:13.0403 1536 Browser - ok
00:14:13.0418 1536 [ 845B8CE732E67F3B4133164868C666EA ] Brserid C:\Windows\System32\Drivers\Brserid.sys
00:14:13.0434 1536 Brserid - ok
00:14:13.0465 1536 [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
00:14:13.0465 1536 BrSerWdm - ok
00:14:13.0481 1536 [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
00:14:13.0481 1536 BrUsbMdm - ok
00:14:13.0496 1536 [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
00:14:13.0496 1536 BrUsbSer - ok
00:14:13.0543 1536 [ 2865A5C8E98C70C605F417908CEBB3A4 ] BthEnum C:\Windows\system32\DRIVERS\BthEnum.sys
00:14:13.0543 1536 BthEnum - ok
00:14:13.0559 1536 [ ED3DF7C56CE0084EB2034432FC56565A ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys
00:14:13.0559 1536 BTHMODEM - ok
00:14:13.0574 1536 [ AD1872E5829E8A2C3B5B4B641C3EAB0E ] BthPan C:\Windows\system32\DRIVERS\bthpan.sys
00:14:13.0574 1536 BthPan - ok
00:14:13.0606 1536 [ 1153DE2E4F5941E10C399CB5592F78A1 ] BTHPORT C:\Windows\system32\Drivers\BTHport.sys
00:14:13.0606 1536 BTHPORT - ok
00:14:13.0637 1536 [ 1DF19C96EEF6C29D1C3E1A8678E07190 ] bthserv C:\Windows\system32\bthserv.dll
00:14:13.0637 1536 bthserv - ok
00:14:13.0652 1536 [ C81E9413A25A439F436B1D4B6A0CF9E9 ] BTHUSB C:\Windows\system32\Drivers\BTHUSB.sys
00:14:13.0652 1536 BTHUSB - ok
00:14:13.0684 1536 [ 40CC43B70F7B9D386BFA13A3E231A567 ] btwampfl C:\Windows\system32\DRIVERS\btwampfl.sys
00:14:13.0684 1536 btwampfl - ok
00:14:13.0730 1536 [ D57D29132EFE13A83133D9BD449E0CF1 ] btwaudio C:\Windows\system32\drivers\btwaudio.sys
00:14:13.0746 1536 btwaudio - ok
00:14:13.0777 1536 [ D282C14A69357D0E1BAFAECC2CA98C3A ] btwavdt C:\Windows\system32\drivers\btwavdt.sys
00:14:13.0777 1536 btwavdt - ok
00:14:13.0855 1536 [ 7D2DD14E60CE4FF3308D66FDA7990546 ] btwdins C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
00:14:13.0871 1536 btwdins - ok
00:14:13.0949 1536 [ AAFD7CB76BA61FBB08E302DA208C974A ] btwl2cap C:\Windows\system32\DRIVERS\btwl2cap.sys
00:14:13.0949 1536 btwl2cap - ok
00:14:13.0980 1536 [ 02EB4D2B05967DF2D32F29C84AB1FB17 ] btwrchid C:\Windows\system32\DRIVERS\btwrchid.sys
00:14:13.0980 1536 btwrchid - ok
00:14:14.0011 1536 [ 77EA11B065E0A8AB902D78145CA51E10 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
00:14:14.0011 1536 cdfs - ok
00:14:14.0089 1536 [ BE167ED0FDB9C1FA1133953C18D5A6C9 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
00:14:14.0089 1536 cdrom - ok
00:14:14.0136 1536 [ 319C6B309773D063541D01DF8AC6F55F ] CertPropSvc C:\Windows\System32\certprop.dll
00:14:14.0152 1536 CertPropSvc - ok
00:14:14.0198 1536 [ 3FE3FE94A34DF6FB06E6418D0F6A0060 ] circlass C:\Windows\system32\DRIVERS\circlass.sys
00:14:14.0198 1536 circlass - ok
00:14:14.0245 1536 [ 635181E0E9BBF16871BF5380D71DB02D ] CLFS C:\Windows\system32\CLFS.sys
00:14:14.0245 1536 CLFS - ok
00:14:14.0292 1536 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
00:14:14.0308 1536 clr_optimization_v2.0.50727_32 - ok
00:14:14.0370 1536 [ E87213F37A13E2B54391E40934F071D0 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
00:14:14.0417 1536 clr_optimization_v4.0.30319_32 - ok
00:14:14.0432 1536 [ DEA805815E587DAD1DD2C502220B5616 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
00:14:14.0432 1536 CmBatt - ok
00:14:14.0464 1536 [ C537B1DB64D495B9B4717B4D6D9EDBF2 ] cmdide C:\Windows\system32\drivers\cmdide.sys
00:14:14.0479 1536 cmdide - ok
00:14:14.0510 1536 [ 85449EEBE8F8EBD6481EFBF0F352B4EB ] CNG C:\Windows\system32\Drivers\cng.sys
00:14:14.0526 1536 CNG - ok
00:14:14.0557 1536 [ A6023D3823C37043986713F118A89BEE ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
00:14:14.0573 1536 Compbatt - ok
00:14:14.0604 1536 [ CBE8C58A8579CFE5FCCF809E6F114E89 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys
00:14:14.0604 1536 CompositeBus - ok
00:14:14.0620 1536 COMSysApp - ok
00:14:14.0698 1536 [ D01F685F8B4598D144B0CCE9FF95D8D5 ] cpudrv C:\Program Files\SystemRequirementsLab\cpudrv.sys
00:14:14.0698 1536 cpudrv - ok
00:14:14.0713 1536 [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys
00:14:14.0713 1536 crcdisk - ok
00:14:14.0760 1536 [ 7CA1BECEA5DE2643ADDAD32670E7A4C9 ] CryptSvc C:\Windows\system32\cryptsvc.dll
00:14:14.0760 1536 CryptSvc - ok
00:14:14.0822 1536 [ 3C2177A897B4CA2788C6FB0C3FD81D4B ] CSC C:\Windows\system32\drivers\csc.sys
00:14:14.0838 1536 CSC - ok
00:14:14.0900 1536 [ 15F93B37F6801943360D9EB42485D5D3 ] CscService C:\Windows\System32\cscsvc.dll
00:14:14.0900 1536 CscService - ok
00:14:14.0947 1536 [ 7660F01D3B38ACA1747E397D21D790AF ] DcomLaunch C:\Windows\system32\rpcss.dll
00:14:14.0947 1536 DcomLaunch - ok
00:14:15.0010 1536 [ 8D6E10A2D9A5EED59562D9B82CF804E1 ] defragsvc C:\Windows\System32\defragsvc.dll
00:14:15.0010 1536 defragsvc - ok
00:14:15.0056 1536 [ F024449C97EC1E464AAFFDA18593DB88 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
00:14:15.0072 1536 DfsC - ok
00:14:15.0119 1536 [ E9E01EB683C132F7FA27CD607B8A2B63 ] Dhcp C:\Windows\system32\dhcpcore.dll
00:14:15.0119 1536 Dhcp - ok
00:14:15.0166 1536 [ 1A050B0274BFB3890703D490F330C0DA ] discache C:\Windows\system32\drivers\discache.sys
00:14:15.0166 1536 discache - ok
00:14:15.0197 1536 [ 565003F326F99802E68CA78F2A68E9FF ] Disk C:\Windows\system32\DRIVERS\disk.sys
00:14:15.0212 1536 Disk - ok
00:14:15.0244 1536 [ 33EF4861F19A0736B11314AAD9AE28D0 ] Dnscache C:\Windows\System32\dnsrslvr.dll
00:14:15.0244 1536 Dnscache - ok
00:14:15.0306 1536 [ 366BA8FB4B7BB7435E3B9EACB3843F67 ] dot3svc C:\Windows\System32\dot3svc.dll
00:14:15.0306 1536 dot3svc - ok
00:14:15.0400 1536 [ B5E479EB83707DD698F66953E922042C ] Dot4 C:\Windows\system32\DRIVERS\Dot4.sys
00:14:15.0415 1536 Dot4 - ok
00:14:15.0446 1536 [ CAEFD09B6A6249C53A67D55A9A9FCABF ] Dot4Print C:\Windows\system32\DRIVERS\Dot4Prt.sys
00:14:15.0446 1536 Dot4Print - ok
00:14:15.0462 1536 [ CF491FF38D62143203C065260567E2F7 ] dot4usb C:\Windows\system32\DRIVERS\dot4usb.sys
00:14:15.0462 1536 dot4usb - ok
00:14:15.0509 1536 [ 8EC04CA86F1D68DA9E11952EB85973D6 ] DPS C:\Windows\system32\dps.dll
00:14:15.0509 1536 DPS - ok
00:14:15.0524 1536 [ B918E7C5F9BF77202F89E1A9539F2EB4 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
00:14:15.0524 1536 drmkaud - ok
00:14:15.0602 1536 [ 71BC35067CABC02C9453AEAA42B2E43E ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
00:14:15.0618 1536 DXGKrnl - ok
00:14:15.0680 1536 [ 8600142FA91C1B96367D3300AD0F3F3A ] EapHost C:\Windows\System32\eapsvc.dll
00:14:15.0680 1536 EapHost - ok
00:14:15.0805 1536 [ 024E1B5CAC09731E4D868E64DBFB4AB0 ] ebdrv C:\Windows\system32\DRIVERS\evbdx.sys
00:14:15.0899 1536 ebdrv - ok
00:14:15.0930 1536 [ 803B370865D907EA21DC0C2B6A8936B5 ] EFS C:\Windows\System32\lsass.exe
00:14:15.0946 1536 EFS - ok
00:14:16.0008 1536 [ A8C362018EFC87BEB013EE28F29C0863 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
00:14:16.0024 1536 ehRecvr - ok
00:14:16.0055 1536 [ D389BFF34F80CAEDE417BF9D1507996A ] ehSched C:\Windows\ehome\ehsched.exe
00:14:16.0055 1536 ehSched - ok
00:14:16.0117 1536 [ 0ED67910C8C326796FAA00B2BF6D9D3C ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys
00:14:16.0133 1536 elxstor - ok
00:14:16.0180 1536 [ 8FC3208352DD3912C94367A206AB3F11 ] ErrDev C:\Windows\system32\drivers\errdev.sys
00:14:16.0180 1536 ErrDev - ok
00:14:16.0226 1536 [ F6916EFC29D9953D5D0DF06882AE8E16 ] EventSystem C:\Windows\system32\es.dll
00:14:16.0226 1536 EventSystem - ok
00:14:16.0258 1536 [ 2DC9108D74081149CC8B651D3A26207F ] exfat C:\Windows\system32\drivers\exfat.sys
00:14:16.0258 1536 exfat - ok
00:14:16.0273 1536 [ 7E0AB74553476622FB6AE36F73D97D35 ] fastfat C:\Windows\system32\drivers\fastfat.sys
00:14:16.0289 1536 fastfat - ok
00:14:16.0320 1536 [ 967EA5B213E9984CBE270205DF37755B ] Fax C:\Windows\system32\fxssvc.exe
00:14:16.0336 1536 Fax - ok
00:14:16.0336 1536 [ E817A017F82DF2A1F8CFDBDA29388B29 ] fdc C:\Windows\system32\DRIVERS\fdc.sys
00:14:16.0351 1536 fdc - ok
00:14:16.0367 1536 [ F3222C893BD2F5821A0179E5C71E88FB ] fdPHost C:\Windows\system32\fdPHost.dll
00:14:16.0367 1536 fdPHost - ok
00:14:16.0382 1536 [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B ] FDResPub C:\Windows\system32\fdrespub.dll
00:14:16.0382 1536 FDResPub - ok
00:14:16.0398 1536 [ 6CF00369C97F3CF563BE99BE983D13D8 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
00:14:16.0398 1536 FileInfo - ok
00:14:16.0414 1536 [ 42C51DC94C91DA21CB9196EB64C45DB9 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
00:14:16.0414 1536 Filetrace - ok
00:14:16.0429 1536 [ 87907AA70CB3C56600F1C2FB8841579B ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
00:14:16.0429 1536 flpydisk - ok
00:14:16.0445 1536 [ 7520EC808E0C35E0EE6F841294316653 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
00:14:16.0445 1536 FltMgr - ok
00:14:16.0492 1536 [ E12C4928B32ACE04610259647F072635 ] FontCache C:\Windows\system32\FntCache.dll
00:14:16.0538 1536 FontCache - ok
00:14:16.0601 1536 [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
00:14:16.0601 1536 FontCache3.0.0.0 - ok
00:14:16.0616 1536 [ 1A16B57943853E598CFF37FE2B8CBF1D ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
00:14:16.0616 1536 FsDepends - ok
00:14:16.0648 1536 [ 7DAE5EBCC80E45D3253F4923DC424D05 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
00:14:16.0648 1536 Fs_Rec - ok
00:14:16.0710 1536 [ E306A24D9694C724FA2491278BF50FDB ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
00:14:16.0710 1536 fvevol - ok
00:14:16.0741 1536 [ 65EE0C7A58B65E74AE05637418153938 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys
00:14:16.0741 1536 gagp30kx - ok
00:14:16.0804 1536 [ 1FC39E7BA16CB0463347265CDC6C10C2 ] GeniusMouseService C:\Genius\ioCentre\GMouseService.exe
00:14:16.0804 1536 GeniusMouseService - ok
00:14:16.0835 1536 [ D4692D4CBBDE6A622A47F63D2CCC26C5 ] gHidPnp C:\Windows\system32\Drivers\gHidPnp.Sys
00:14:16.0835 1536 gHidPnp - ok
00:14:16.0897 1536 [ 93AB8D8345D0B90EB255EC5F4E5B3852 ] gMouPS2 C:\Windows\system32\DRIVERS\gMouPS2.sys
00:14:16.0897 1536 gMouPS2 - ok
00:14:16.0960 1536 [ D7B70109E9589D5F3C3CCDD6BA76E0C1 ] gMouUsb C:\Windows\system32\DRIVERS\gMouUsb.sys
00:14:16.0960 1536 gMouUsb - ok
00:14:16.0991 1536 [ E897EAF5ED6BA41E081060C9B447A673 ] gpsvc C:\Windows\System32\gpsvc.dll
00:14:17.0006 1536 gpsvc - ok
00:14:17.0116 1536 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
00:14:17.0116 1536 gupdate - ok
00:14:17.0131 1536 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
00:14:17.0131 1536 gupdatem - ok
00:14:17.0178 1536 [ C1B577B2169900F4CF7190C39F085794 ] gusvc C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
00:14:17.0178 1536 gusvc - ok
00:14:17.0209 1536 [ C44E3C2BAB6837DB337DDEE7544736DB ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
00:14:17.0209 1536 hcw85cir - ok
00:14:17.0256 1536 [ A5EF29D5315111C80A5C1ABAD14C8972 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
00:14:17.0272 1536 HdAudAddService - ok
00:14:17.0287 1536 [ 9036377B8A6C15DC2EEC53E489D159B5 ] HDAudBus C:\Windows\system32\drivers\HDAudBus.sys
00:14:17.0287 1536 HDAudBus - ok
00:14:17.0287 1536 [ 1D58A7F3E11A9731D0EAAAA8405ACC36 ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys
00:14:17.0287 1536 HidBatt - ok
00:14:17.0303 1536 [ 89448F40E6DF260C206A193A4683BA78 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys
00:14:17.0303 1536 HidBth - ok
00:14:17.0350 1536 [ CF50B4CF4A4F229B9F3C08351F99CA5E ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
00:14:17.0350 1536 HidIr - ok
00:14:17.0381 1536 [ 2BC6F6A1992B3A77F5F41432CA6B3B6B ] hidserv C:\Windows\system32\hidserv.dll
00:14:17.0381 1536 hidserv - ok
00:14:17.0412 1536 [ 10C19F8290891AF023EAEC0832E1EB4D ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
00:14:17.0428 1536 HidUsb - ok
00:14:17.0459 1536 [ 196B4E3F4CCCC24AF836CE58FACBB699 ] hkmsvc C:\Windows\system32\kmsvc.dll
00:14:17.0459 1536 hkmsvc - ok
00:14:17.0490 1536 [ 6658F4404DE03D75FE3BA09F7ABA6A30 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
00:14:17.0490 1536 HomeGroupListener - ok
00:14:17.0537 1536 [ DBC02D918FFF1CAD628ACBE0C0EAA8E8 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
00:14:17.0537 1536 HomeGroupProvider - ok
00:14:17.0786 1536 [ F50F7984FDD151EDD8A70A8DBD9E2A44 ] hpqcxs08 C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll
00:14:17.0786 1536 hpqcxs08 - ok
00:14:17.0880 1536 [ DF446BA625CC441617843E87798CE048 ] hpqddsvc C:\Program Files\HP\Digital Imaging\bin\hpqddsvc.dll
00:14:17.0880 1536 hpqddsvc - ok
00:14:17.0927 1536 [ 295FDC419039090EB8B49FFDBB374549 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
00:14:17.0942 1536 HpSAMD - ok
00:14:17.0974 1536 [ 871917B07A141BFF43D76D8844D48106 ] HTTP C:\Windows\system32\drivers\HTTP.sys
00:14:17.0989 1536 HTTP - ok
00:14:18.0020 1536 [ 0C4E035C7F105F1299258C90886C64C5 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
00:14:18.0020 1536 hwpolicy - ok
00:14:18.0067 1536 [ F151F0BDC47F4A28B1B20A0818EA36D6 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
00:14:18.0067 1536 i8042prt - ok
00:14:18.0130 1536 [ 5CD5F9A5444E6CDCB0AC89BD62D8B76E ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
00:14:18.0130 1536 iaStorV - ok
00:14:18.0176 1536 [ C521D7EB6497BB1AF6AFA89E322FB43C ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
00:14:18.0208 1536 idsvc - ok
00:14:18.0223 1536 IEEtwCollectorService - ok
00:14:18.0473 1536 [ 1EC36A3CA56B0A31B4920399EE6D77EB ] igfx C:\Windows\system32\DRIVERS\igdkmd32.sys
00:14:18.0660 1536 igfx - ok
00:14:18.0707 1536 [ 4173FF5708F3236CF25195FECD742915 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys
00:14:18.0707 1536 iirsp - ok
00:14:18.0754 1536 [ B9C54120F46392100478F58F374E5709 ] IKEEXT C:\Windows\System32\ikeext.dll
00:14:18.0769 1536 IKEEXT - ok
00:14:18.0832 1536 [ 81486F0EB4238B65C317F97DE246C4AC ] IntcHdmiAddService C:\Windows\system32\drivers\IntcHdmi.sys
00:14:18.0832 1536 IntcHdmiAddService - ok
00:14:18.0878 1536 [ A0F12F2C9BA6C72F3987CE780E77C130 ] intelide C:\Windows\system32\drivers\intelide.sys
00:14:18.0894 1536 intelide - ok
00:14:18.0925 1536 [ 3B514D27BFC4ACCB4037BC6685F766E0 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
00:14:18.0925 1536 intelppm - ok
00:14:18.0972 1536 [ ACB364B9075A45C0736E5C47BE5CAE19 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
00:14:18.0988 1536 IPBusEnum - ok
00:14:19.0019 1536 [ 709D1761D3B19A932FF0238EA6D50200 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
00:14:19.0019 1536 IpFilterDriver - ok
00:14:19.0066 1536 [ 58F67245D041FBE7AF88F4EAF79DF0FA ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
00:14:19.0066 1536 iphlpsvc - ok
00:14:19.0112 1536 [ 4BD7134618C1D2A27466A099062547BF ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
00:14:19.0112 1536 IPMIDRV - ok
00:14:19.0112 1536 [ A5FA468D67ABCDAA36264E463A7BB0CD ] IPNAT C:\Windows\system32\drivers\ipnat.sys
00:14:19.0128 1536 IPNAT - ok
00:14:19.0159 1536 [ 42996CFF20A3084A56017B7902307E9F ] IRENUM C:\Windows\system32\drivers\irenum.sys
00:14:19.0159 1536 IRENUM - ok
00:14:19.0175 1536 [ 1F32BB6B38F62F7DF1A7AB7292638A35 ] isapnp C:\Windows\system32\drivers\isapnp.sys
00:14:19.0175 1536 isapnp - ok
00:14:19.0206 1536 [ CB7A9ABB12B8415BCE5D74994C7BA3AE ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
00:14:19.0206 1536 iScsiPrt - ok
00:14:19.0253 1536 [ ADEF52CA1AEAE82B50DF86B56413107E ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
00:14:19.0253 1536 kbdclass - ok
00:14:19.0300 1536 [ 9E3CED91863E6EE98C24794D05E27A71 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
00:14:19.0300 1536 kbdhid - ok
00:14:19.0315 1536 [ 803B370865D907EA21DC0C2B6A8936B5 ] KeyIso C:\Windows\system32\lsass.exe
00:14:19.0315 1536 KeyIso - ok
00:14:19.0378 1536 [ F286830298323272260332D6ABC905C1 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
00:14:19.0378 1536 KSecDD - ok
00:14:19.0409 1536 [ D7C760D57B1656DD748B9E4AB6CB5A51 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
00:14:19.0409 1536 KSecPkg - ok
00:14:19.0440 1536 [ 89A7B9CC98D0D80C6F31B91C0A310FCD ] KtmRm C:\Windows\system32\msdtckrm.dll
00:14:19.0456 1536 KtmRm - ok
00:14:19.0502 1536 [ D64AF876D53ECA3668BB97B51B4E70AB ] LanmanServer C:\Windows\system32\srvsvc.dll
00:14:19.0502 1536 LanmanServer - ok
00:14:19.0549 1536 [ 58405E4F68BA8E4057C6E914F326ABA2 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
00:14:19.0549 1536 LanmanWorkstation - ok
00:14:19.0643 1536 [ 935E2093CEED8198C820B7F60BB63167 ] LiveUpdateSvc C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe
00:14:19.0721 1536 LiveUpdateSvc - ok
00:14:19.0768 1536 [ F7611EC07349979DA9B0AE1F18CCC7A6 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
00:14:19.0783 1536 lltdio - ok
00:14:19.0814 1536 [ 5700673E13A2117FA3B9020C852C01E2 ] lltdsvc C:\Windows\System32\lltdsvc.dll
00:14:19.0814 1536 lltdsvc - ok
00:14:19.0861 1536 [ 55CA01BA19D0006C8F2639B6C045E08B ] lmhosts C:\Windows\System32\lmhsvc.dll
00:14:19.0861 1536 lmhosts - ok
00:14:19.0908 1536 [ EB119A53CCF2ACC000AC71B065B78FEF ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys
00:14:19.0908 1536 LSI_FC - ok
00:14:19.0924 1536 [ 8ADE1C877256A22E49B75D1CC9161F9C ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys
00:14:19.0924 1536 LSI_SAS - ok
00:14:19.0939 1536 [ DC9DC3D3DAA0E276FD2EC262E38B11E9 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys
00:14:19.0939 1536 LSI_SAS2 - ok
00:14:19.0955 1536 [ 0A036C7D7CAB643A7F07135AC47E0524 ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys
00:14:19.0970 1536 LSI_SCSI - ok
00:14:20.0017 1536 [ 6703E366CC18D3B6E534F5CF7DF39CEE ] luafv C:\Windows\system32\drivers\luafv.sys
00:14:20.0017 1536 luafv - ok
00:14:20.0080 1536 [ 4470E3C1E0C3378E4CAB137893C12C3A ] MBAMProtector C:\Windows\system32\drivers\mbam.sys
00:14:20.0095 1536 MBAMProtector - ok
00:14:20.0158 1536 [ 65085456FD9A74D7F1A999520C299ECB ] MBAMScheduler C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
00:14:20.0158 1536 MBAMScheduler - ok
00:14:20.0204 1536 [ E0D7732F2D2E24B2DB3F67B6750295B8 ] MBAMService C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
00:14:20.0236 1536 MBAMService - ok
00:14:20.0267 1536 [ BFB9EE8EE977EFE85D1A3105ABEF6DD1 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
00:14:20.0282 1536 Mcx2Svc - ok
00:14:20.0298 1536 [ 0FFF5B045293002AB38EB1FD1FC2FB74 ] megasas C:\Windows\system32\DRIVERS\megasas.sys
00:14:20.0298 1536 megasas - ok
00:14:20.0345 1536 [ DCBAB2920C75F390CAF1D29F675D03D6 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys
00:14:20.0345 1536 MegaSR - ok
00:14:20.0376 1536 [ 146B6F43A673379A3C670E86D89BE5EA ] MMCSS C:\Windows\system32\mmcss.dll
00:14:20.0392 1536 MMCSS - ok
00:14:20.0423 1536 [ F001861E5700EE84E2D4E52C712F4964 ] Modem C:\Windows\system32\drivers\modem.sys
00:14:20.0423 1536 Modem - ok
00:14:20.0470 1536 [ 79D10964DE86B292320E9DFE02282A23 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
00:14:20.0470 1536 monitor - ok
00:14:20.0516 1536 [ FB18CC1D4C2E716B6B903B0AC0CC0609 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
00:14:20.0516 1536 mouclass - ok
00:14:20.0516 1536 [ 2C388D2CD01C9042596CF3C8F3C7B24D ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
00:14:20.0516 1536 mouhid - ok
00:14:20.0563 1536 [ FC8771F45ECCCFD89684E38842539B9B ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
00:14:20.0563 1536 mountmgr - ok
00:14:20.0579 1536 [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0 ] mpio C:\Windows\system32\drivers\mpio.sys
00:14:20.0594 1536 mpio - ok
00:14:20.0594 1536 [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
00:14:20.0594 1536 mpsdrv - ok
00:14:20.0641 1536 [ 9835584E999D25004E1EE8E5F3E3B881 ] MpsSvc C:\Windows\system32\mpssvc.dll
00:14:20.0657 1536 MpsSvc - ok
00:14:20.0688 1536 [ 21F4B24ACFC79A483515BD986DD9043F ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
00:14:20.0688 1536 MRxDAV - ok
00:14:20.0735 1536 [ 5D16C921E3671636C0EBA3BBAAC5FD25 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
00:14:20.0735 1536 mrxsmb - ok
00:14:20.0750 1536 [ 6D17A4791ACA19328C685D256349FEFC ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
00:14:20.0750 1536 mrxsmb10 - ok
00:14:20.0766 1536 [ B81F204D146000BE76651A50670A5E9E ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
00:14:20.0766 1536 mrxsmb20 - ok
00:14:20.0797 1536 [ 012C5F4E9349E711E11E0F19A8589F0A ] msahci C:\Windows\system32\drivers\msahci.sys
00:14:20.0797 1536 msahci - ok
00:14:20.0813 1536 [ 55055F8AD8BE27A64C831322A780A228 ] msdsm C:\Windows\system32\drivers\msdsm.sys
00:14:20.0813 1536 msdsm - ok
00:14:20.0844 1536 [ E1BCE74A3BD9902B72599C0192A07E27 ] MSDTC C:\Windows\System32\msdtc.exe
00:14:20.0844 1536 MSDTC - ok
00:14:20.0891 1536 [ DAEFB28E3AF5A76ABCC2C3078C07327F ] Msfs C:\Windows\system32\drivers\Msfs.sys
00:14:20.0891 1536 Msfs - ok
00:14:20.0906 1536 [ 3E1E5767043C5AF9367F0056295E9F84 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
00:14:20.0906 1536 mshidkmdf - ok
00:14:20.0922 1536 [ 0A4E5757AE09FA9622E3158CC1AEF114 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
00:14:20.0922 1536 msisadrv - ok
00:14:21.0000 1536 [ 90F7D9E6B6F27E1A707D4A297F077828 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
00:14:21.0000 1536 MSiSCSI - ok
00:14:21.0000 1536 msiserver - ok
00:14:21.0031 1536 [ 8C0860D6366AAFFB6C5BB9DF9448E631 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
00:14:21.0031 1536 MSKSSRV - ok
00:14:21.0062 1536 [ 3EA8B949F963562CEDBB549EAC0C11CE ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
00:14:21.0062 1536 MSPCLOCK - ok
00:14:21.0078 1536 [ F456E973590D663B1073E9C463B40932 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
00:14:21.0078 1536 MSPQM - ok
00:14:21.0094 1536 [ 0E008FC4819D238C51D7C93E7B41E560 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
00:14:21.0109 1536 MsRPC - ok
00:14:21.0109 1536 [ FC6B9FF600CC585EA38B12589BD4E246 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys
00:14:21.0125 1536 mssmbios - ok
00:14:21.0125 1536 [ B42C6B921F61A6E55159B8BE6CD54A36 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
00:14:21.0125 1536 MSTEE - ok
00:14:21.0140 1536 [ 33599130F44E1F34631CEA241DE8AC84 ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys
00:14:21.0140 1536 MTConfig - ok
00:14:21.0156 1536 [ 159FAD02F64E6381758C990F753BCC80 ] Mup C:\Windows\system32\Drivers\mup.sys
00:14:21.0156 1536 Mup - ok
00:14:21.0250 1536 [ 61D57A5D7C6D9AFE10E77DAE6E1B445E ] napagent C:\Windows\system32\qagentRT.dll
00:14:21.0265 1536 napagent - ok
00:14:21.0296 1536 [ 26384429FCD85D83746F63E798AB1480 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
00:14:21.0312 1536 NativeWifiP - ok
00:14:21.0406 1536 [ 8C9C922D71F1CD4DEF73F186416B7896 ] NDIS C:\Windows\system32\drivers\ndis.sys
00:14:21.0421 1536 NDIS - ok
00:14:21.0437 1536 [ 0E1787AA6C9191D3D319E8BAFE86F80C ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
00:14:21.0437 1536 NdisCap - ok
00:14:21.0452 1536 [ E4A8AEC125A2E43A9E32AFEEA7C9C888 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
00:14:21.0468 1536 NdisTapi - ok
00:14:21.0499 1536 [ D8A65DAFB3EB41CBB622745676FCD072 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
00:14:21.0499 1536 Ndisuio - ok
00:14:21.0530 1536 [ 38FBE267E7E6983311179230FACB1017 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
00:14:21.0530 1536 NdisWan - ok
00:14:21.0577 1536 [ A4BDC541E69674FBFF1A8FF00BE913F2 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
00:14:21.0577 1536 NDProxy - ok
00:14:21.0608 1536 [ 51C6D8BFBD4EA5B62A1BA7F4469250D3 ] Net Driver HPZ12 C:\Windows\system32\HPZinw12.dll
00:14:21.0608 1536 Net Driver HPZ12 - ok
00:14:21.0655 1536 [ 80B275B1CE3B0E79909DB7B39AF74D51 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
00:14:21.0655 1536 NetBIOS - ok
00:14:21.0686 1536 [ 280122DDCF04B378EDD1AD54D71C1E54 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
00:14:21.0686 1536 NetBT - ok
00:14:21.0702 1536 [ 803B370865D907EA21DC0C2B6A8936B5 ] Netlogon C:\Windows\system32\lsass.exe
00:14:21.0702 1536 Netlogon - ok
00:14:21.0796 1536 [ 7CCCFCA7510684768DA22092D1FA4DB2 ] Netman C:\Windows\System32\netman.dll
00:14:21.0796 1536 Netman - ok
00:14:21.0827 1536 [ 21318671BCAD3ACF16638F98D4D00973 ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
00:14:21.0842 1536 NetMsmqActivator - ok
00:14:21.0858 1536 [ 21318671BCAD3ACF16638F98D4D00973 ] NetPipeActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
00:14:21.0858 1536 NetPipeActivator - ok
00:14:21.0905 1536 [ 8C338238C16777A802D6A9211EB2BA50 ] netprofm C:\Windows\System32\netprofm.dll
00:14:21.0920 1536 netprofm - ok
00:14:21.0920 1536 [ 21318671BCAD3ACF16638F98D4D00973 ] NetTcpActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
00:14:21.0920 1536 NetTcpActivator - ok
00:14:21.0920 1536 [ 21318671BCAD3ACF16638F98D4D00973 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
00:14:21.0936 1536 NetTcpPortSharing - ok
00:14:22.0061 1536 [ 58218EC6B61B1169CF54AAB0D00F5FE2 ] netw5v32 C:\Windows\system32\DRIVERS\netw5v32.sys
00:14:22.0170 1536 netw5v32 - ok
00:14:22.0373 1536 [ 8E7506FE20B6F27EA1955731032B86A6 ] NETwNs32 C:\Windows\system32\DRIVERS\NETwNs32.sys
00:14:22.0420 1536 NETwNs32 - ok
00:14:22.0466 1536 [ 1D85C4B390B0EE09C7A46B91EFB2C097 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys
00:14:22.0466 1536 nfrd960 - ok
00:14:22.0513 1536 [ 374071043F9E4231EE43BE2BB48DD36D ] NlaSvc C:\Windows\System32\nlasvc.dll
00:14:22.0513 1536 NlaSvc - ok
00:14:22.0529 1536 [ 1DB262A9F8C087E8153D89BEF3D2235F ] Npfs C:\Windows\system32\drivers\Npfs.sys
00:14:22.0529 1536 Npfs - ok
00:14:22.0560 1536 [ BA387E955E890C8A88306D9B8D06BF17 ] nsi C:\Windows\system32\nsisvc.dll
00:14:22.0560 1536 nsi - ok
00:14:22.0576 1536 [ E9A0A4D07E53D8FEA2BB8387A3293C58 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
00:14:22.0576 1536 nsiproxy - ok
00:14:22.0638 1536 [ 5E43D2B0EE64123D4880DFA6626DEFDE ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
00:14:22.0669 1536 Ntfs - ok
00:14:22.0700 1536 [ F9756A98D69098DCA8945D62858A812C ] Null C:\Windows\system32\drivers\Null.sys
00:14:22.0700 1536 Null - ok
00:14:22.0747 1536 [ B3E25EE28883877076E0E1FF877D02E0 ] nvraid C:\Windows\system32\drivers\nvraid.sys
00:14:22.0747 1536 nvraid - ok
00:14:22.0778 1536 [ 4380E59A170D88C4F1022EFF6719A8A4 ] nvstor C:\Windows\system32\drivers\nvstor.sys
00:14:22.0778 1536 nvstor - ok
00:14:22.0794 1536 [ 5A0983915F02BAE73267CC2A041F717D ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
00:14:22.0794 1536 nv_agp - ok
00:14:22.0841 1536 [ 08A70A1F2CDDE9BB49B885CB817A66EB ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
00:14:22.0841 1536 ohci1394 - ok
00:14:22.0888 1536 [ 82A8521DDC60710C3D3D3E7325209BEC ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
00:14:22.0903 1536 p2pimsvc - ok
00:14:22.0934 1536 [ 59C3DDD501E39E006DAC31BF55150D91 ] p2psvc C:\Windows\system32\p2psvc.dll
00:14:22.0950 1536 p2psvc - ok
00:14:22.0981 1536 [ 2EA877ED5DD9713C5AC74E8EA7348D14 ] Parport C:\Windows\system32\DRIVERS\parport.sys
00:14:22.0981 1536 Parport - ok
00:14:23.0028 1536 [ 3F34A1B4C5F6475F320C275E63AFCE9B ] partmgr C:\Windows\system32\drivers\partmgr.sys
00:14:23.0028 1536 partmgr - ok
00:14:23.0075 1536 [ EB0A59F29C19B86479D36B35983DAADC ] Parvdm C:\Windows\system32\DRIVERS\parvdm.sys
00:14:23.0075 1536 Parvdm - ok
00:14:23.0090 1536 [ 358AB7956D3160000726574083DFC8A6 ] PcaSvc C:\Windows\System32\pcasvc.dll
00:14:23.0090 1536 PcaSvc - ok
00:14:23.0122 1536 [ 673E55C3498EB970088E812EA820AA8F ] pci C:\Windows\system32\drivers\pci.sys
00:14:23.0122 1536 pci - ok
00:14:23.0153 1536 [ AFE86F419014DB4E5593F69FFE26CE0A ] pciide C:\Windows\system32\drivers\pciide.sys
00:14:23.0168 1536 pciide - ok
00:14:23.0200 1536 [ F396431B31693E71E8A80687EF523506 ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys
00:14:23.0200 1536 pcmcia - ok
00:14:23.0246 1536 [ 250F6B43D2B613172035C6747AEEB19F ] pcw C:\Windows\system32\drivers\pcw.sys
00:14:23.0246 1536 pcw - ok
00:14:23.0262 1536 [ 9E0104BA49F4E6973749A02BF41344ED ] PEAUTH C:\Windows\system32\drivers\peauth.sys
00:14:23.0278 1536 PEAUTH - ok
00:14:23.0371 1536 [ AF4D64D2A57B9772CF3801950B8058A6 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll
00:14:23.0402 1536 PeerDistSvc - ok
00:14:23.0465 1536 [ 414BBA67A3DED1D28437EB66AEB8A720 ] pla C:\Windows\system32\pla.dll
00:14:23.0512 1536 pla - ok
00:14:23.0590 1536 [ EC7BC28D207DA09E79B3E9FAF8B232CA ] PlugPlay C:\Windows\system32\umpnpmgr.dll
00:14:23.0590 1536 PlugPlay - ok
00:14:23.0621 1536 [ 79834AA2FBF9FE81EEBB229024F6F7FC ] Pml Driver HPZ12 C:\Windows\system32\HPZipm12.dll
00:14:23.0621 1536 Pml Driver HPZ12 - ok
00:14:23.0652 1536 [ 63FF8572611249931EB16BB8EED6AFC8 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
00:14:23.0652 1536 PNRPAutoReg - ok
00:14:23.0668 1536 [ 82A8521DDC60710C3D3D3E7325209BEC ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
00:14:23.0683 1536 PNRPsvc - ok
00:14:23.0714 1536 [ 53946B69BA0836BD95B03759530C81EC ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
00:14:23.0714 1536 PolicyAgent - ok
00:14:23.0777 1536 [ F87D30E72E03D579A5199CCB3831D6EA ] Power C:\Windows\system32\umpo.dll
00:14:23.0792 1536 Power - ok
00:14:23.0824 1536 [ 631E3E205AD6D86F2AED6A4A8E69F2DB ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
00:14:23.0824 1536 PptpMiniport - ok
00:14:23.0839 1536 [ 85B1E3A0C7585BC4AAE6899EC6FCF011 ] Processor C:\Windows\system32\DRIVERS\processr.sys
00:14:23.0839 1536 Processor - ok
00:14:23.0886 1536 [ CADEFAC453040E370A1BDFF3973BE00D ] ProfSvc C:\Windows\system32\profsvc.dll
00:14:23.0886 1536 ProfSvc - ok
00:14:23.0902 1536 [ 803B370865D907EA21DC0C2B6A8936B5 ] ProtectedStorage C:\Windows\system32\lsass.exe
00:14:23.0917 1536 ProtectedStorage - ok
00:14:23.0964 1536 [ C34CE0FD0ACB224B7D7CABB6BFE344D4 ] ProtectMonitor C:\Program Files\PCData\StartHelp.exe
00:14:23.0964 1536 ProtectMonitor - ok
00:14:24.0011 1536 [ 6270CCAE2A86DE6D146529FE55B3246A ] Psched C:\Windows\system32\DRIVERS\pacer.sys
00:14:24.0011 1536 Psched - ok
00:14:24.0058 1536 [ AB95ECF1F6659A60DDC166D8315B0751 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys
00:14:24.0089 1536 ql2300 - ok
00:14:24.0120 1536 [ B4DD51DD25182244B86737DC51AF2270 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys
00:14:24.0136 1536 ql40xx - ok
00:14:24.0151 1536 [ 31AC809E7707EB580B2BDB760390765A ] QWAVE C:\Windows\system32\qwave.dll
00:14:24.0167 1536 QWAVE - ok
00:14:24.0182 1536 [ 584078CA1B95CA72DF2A27C336F9719D ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
00:14:24.0182 1536 QWAVEdrv - ok
00:14:24.0198 1536 [ 30A81B53C766D0133BB86D234E5556AB ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
00:14:24.0198 1536 RasAcd - ok
00:14:24.0229 1536 [ 57EC4AEF73660166074D8F7F31C0D4FD ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
00:14:24.0229 1536 RasAgileVpn - ok
00:14:24.0245 1536 [ A60F1839849C0C00739787FD5EC03F13 ] RasAuto C:\Windows\System32\rasauto.dll
00:14:24.0245 1536 RasAuto - ok
00:14:24.0276 1536 [ D9F91EAFEC2815365CBE6D167E4E332A ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
00:14:24.0276 1536 Rasl2tp - ok
00:14:24.0323 1536 [ CB9E04DC05EACF5B9A36CA276D475006 ] RasMan C:\Windows\System32\rasmans.dll
00:14:24.0338 1536 RasMan - ok
00:14:24.0338 1536 [ 0FE8B15916307A6AC12BFB6A63E45507 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
00:14:24.0354 1536 RasPppoe - ok
00:14:24.0354 1536 [ 44101F495A83EA6401D886E7FD70096B ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
00:14:24.0354 1536 RasSstp - ok
00:14:24.0385 1536 [ D528BC58A489409BA40334EBF96A311B ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
00:14:24.0385 1536 rdbss - ok
00:14:24.0416 1536 [ 0D8F05481CB76E70E1DA06EE9F0DA9DF ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
00:14:24.0416 1536 rdpbus - ok
00:14:24.0448 1536 [ 23DAE03F29D253AE74C44F99E515F9A1 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
00:14:24.0448 1536 RDPCDD - ok
00:14:24.0463 1536 [ B973FCFC50DC1434E1970A146F7E3885 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys
00:14:24.0479 1536 RDPDR - ok
00:14:24.0510 1536 [ 5A53CA1598DD4156D44196D200C94B8A ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
00:14:24.0510 1536 RDPENCDD - ok
00:14:24.0526 1536 [ 44B0A53CD4F27D50ED461DAE0C0B4E1F ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
00:14:24.0526 1536 RDPREFMP - ok
00:14:24.0588 1536 [ 65375DF758CA1872AB7EBBBA457FD5E6 ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
00:14:24.0588 1536 RdpVideoMiniport - ok
00:14:24.0619 1536 [ F031683E6D1FEA157ABB2FF260B51E61 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
00:14:24.0619 1536 RDPWD - ok
00:14:24.0666 1536 [ 518395321DC96FE2C9F0E96AC743B656 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
00:14:24.0666 1536 rdyboost - ok
00:14:24.0697 1536 [ 7B5E1419717FAC363A31CC302895217A ] RemoteAccess C:\Windows\System32\mprdim.dll
00:14:24.0713 1536 RemoteAccess - ok
00:14:24.0728 1536 [ CB9A8683F4EF2BF99E123D79950D7935 ] RemoteRegistry C:\Windows\system32\regsvc.dll
00:14:24.0728 1536 RemoteRegistry - ok
00:14:24.0775 1536 [ CB928D9E6DAF51879DD6BA8D02F01321 ] RFCOMM C:\Windows\system32\DRIVERS\rfcomm.sys
00:14:24.0775 1536 RFCOMM - ok
00:14:24.0806 1536 [ DF672613FBBCD58C38BB0BC2694BCFB0 ] rimmptsk C:\Windows\system32\DRIVERS\rimmptsk.sys
00:14:24.0822 1536 rimmptsk - ok
00:14:24.0822 1536 [ 78D072F35BC45D9E4E1B61895C152234 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
00:14:24.0838 1536 RpcEptMapper - ok
00:14:24.0853 1536 [ 94D36C0E44677DD26981D2BFEEF2A29D ] RpcLocator C:\Windows\system32\locator.exe
00:14:24.0853 1536 RpcLocator - ok
00:14:24.0869 1536 [ 7660F01D3B38ACA1747E397D21D790AF ] RpcSs C:\Windows\system32\rpcss.dll
00:14:24.0884 1536 RpcSs - ok
00:14:24.0916 1536 [ 032B0D36AD92B582D869879F5AF5B928 ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
00:14:24.0916 1536 rspndr - ok
00:14:24.0947 1536 [ 7FA7F2E249A5DCBB7970630E15E1F482 ] s3cap C:\Windows\system32\drivers\vms3cap.sys
00:14:24.0947 1536 s3cap - ok
00:14:24.0962 1536 [ 803B370865D907EA21DC0C2B6A8936B5 ] SamSs C:\Windows\system32\lsass.exe
00:14:24.0962 1536 SamSs - ok
00:14:25.0009 1536 [ 05D860DA1040F111503AC416CCEF2BCA ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
00:14:25.0009 1536 sbp2port - ok
00:14:25.0025 1536 [ 8FC518FFE9519C2631D37515A68009C4 ] SCardSvr C:\Windows\System32\SCardSvr.dll
00:14:25.0040 1536 SCardSvr - ok
00:14:25.0056 1536 [ 0693B5EC673E34DC147E195779A4DCF6 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
00:14:25.0056 1536 scfilter - ok
00:14:25.0103 1536 [ A04BB13F8A72F8B6E8B4071723E4E336 ] Schedule C:\Windows\system32\schedsvc.dll
00:14:25.0118 1536 Schedule - ok
00:14:25.0150 1536 [ 319C6B309773D063541D01DF8AC6F55F ] SCPolicySvc C:\Windows\System32\certprop.dll
00:14:25.0150 1536 SCPolicySvc - ok
00:14:25.0181 1536 [ 0328BE1C7F1CBA23848179F8762E391C ] sdbus C:\Windows\system32\drivers\sdbus.sys
00:14:25.0181 1536 sdbus - ok
00:14:25.0228 1536 [ 08236C4BCE5EDD0A0318A438AF28E0F7 ] SDRSVC C:\Windows\System32\SDRSVC.dll
00:14:25.0368 1536 SDRSVC - ok
00:14:25.0430 1536 [ 90A3935D05B494A5A39D37E71F09A677 ] secdrv C:\Windows\system32\drivers\secdrv.sys
00:14:25.0430 1536 secdrv - ok
00:14:25.0446 1536 [ A59B3A4442C52060CC7A85293AA3546F ] seclogon C:\Windows\system32\seclogon.dll
00:14:25.0462 1536 seclogon - ok
00:14:25.0462 1536 [ DCB7FCDCC97F87360F75D77425B81737 ] SENS C:\Windows\System32\sens.dll
00:14:25.0477 1536 SENS - ok
00:14:25.0524 1536 [ 50087FE1EE447009C9CC2997B90DE53F ] SensrSvc C:\Windows\system32\sensrsvc.dll
00:14:25.0524 1536 SensrSvc - ok
00:14:25.0586 1536 [ 9AD8B8B515E3DF6ACD4212EF465DE2D1 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
00:14:25.0586 1536 Serenum - ok
00:14:25.0602 1536 [ 5FB7FCEA0490D821F26F39CC5EA3D1E2 ] Serial C:\Windows\system32\DRIVERS\serial.sys
00:14:25.0602 1536 Serial - ok
00:14:25.0618 1536 [ 79BFFB520327FF916A582DFEA17AA813 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys
00:14:25.0633 1536 sermouse - ok
00:14:25.0680 1536 [ 4AE380F39A0032EAB7DD953030B26D28 ] SessionEnv C:\Windows\system32\sessenv.dll
00:14:25.0696 1536 SessionEnv - ok
00:14:25.0758 1536 [ 9F976E1EB233DF46FCE808D9DEA3EB9C ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
00:14:25.0758 1536 sffdisk - ok
00:14:25.0758 1536 [ 932A68EE27833CFD57C1639D375F2731 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
00:14:25.0758 1536 sffp_mmc - ok
00:14:25.0774 1536 [ 6D4CCAEDC018F1CF52866BBBAA235982 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
00:14:25.0774 1536 sffp_sd - ok
00:14:25.0820 1536 [ DB96666CC8312EBC45032F30B007A547 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys
00:14:25.0820 1536 sfloppy - ok
00:14:25.0852 1536 [ D1A079A0DE2EA524513B6930C24527A2 ] SharedAccess C:\Windows\System32\ipnathlp.dll
00:14:25.0867 1536 SharedAccess - ok
00:14:25.0930 1536 [ 414DA952A35BF5D50192E28263B40577 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
00:14:25.0930 1536 ShellHWDetection - ok
00:14:25.0976 1536 [ 2565CAC0DC9FE0371BDCE60832582B2E ] sisagp C:\Windows\system32\drivers\sisagp.sys
00:14:25.0976 1536 sisagp - ok
00:14:26.0008 1536 [ A9F0486851BECB6DDA1D89D381E71055 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys
00:14:26.0008 1536 SiSRaid2 - ok
00:14:26.0039 1536 [ 3727097B55738E2F554972C3BE5BC1AA ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys
00:14:26.0039 1536 SiSRaid4 - ok
00:14:26.0101 1536 [ 50D9949020E02B847CD48F1243FCB895 ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe
00:14:26.0101 1536 SkypeUpdate - ok
00:14:26.0148 1536 [ 3E21C083B8A01CB70BA1F09303010FCE ] Smb C:\Windows\system32\DRIVERS\smb.sys
00:14:26.0148 1536 Smb - ok
00:14:26.0195 1536 [ E3CBFCF2499376A29CB1D92CBCE82696 ] SmbDrvI C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys
00:14:26.0195 1536 SmbDrvI - ok
00:14:26.0226 1536 [ 6A984831644ECA1A33FFEAE4126F4F37 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
00:14:26.0226 1536 SNMPTRAP - ok
00:14:26.0242 1536 [ 95CF1AE7527FB70F7816563CBC09D942 ] spldr C:\Windows\system32\drivers\spldr.sys
00:14:26.0242 1536 spldr - ok
00:14:26.0288 1536 [ 9AEA093B8F9C37CF45538382CABA2475 ] Spooler C:\Windows\System32\spoolsv.exe
00:14:26.0288 1536 Spooler - ok
00:14:26.0413 1536 [ CF87A1DE791347E75B98885214CED2B8 ] sppsvc C:\Windows\system32\sppsvc.exe
00:14:26.0444 1536 sppsvc - ok
00:14:26.0476 1536 [ B0180B20B065D89232A78A40FE56EAA6 ] sppuinotify C:\Windows\system32\sppuinotify.dll
00:14:26.0476 1536 sppuinotify - ok
00:14:26.0554 1536 [ E4C2764065D66EA1D2D3EBC28FE99C46 ] srv C:\Windows\system32\DRIVERS\srv.sys
00:14:26.0569 1536 srv - ok
00:14:26.0585 1536 [ 03F0545BD8D4C77FA0AE1CEEDFCC71AB ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
00:14:26.0585 1536 srv2 - ok


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 55 hostů