Prosím o kontrolu logu, mám problém viz topic viewtopic.php?f=39&t=130799&p=1027447#p1027447
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:23:22, on 18.4.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v8.00 (8.00.7601.17514)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskhost.exe
C:\PROGRA~1\Lenovo\HOTKEY\MKRMSG.EXE
C:\PROGRA~1\Lenovo\HOTKEY\TPONSCR.EXE
C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Dolby Advanced Audio v2\pcee4.exe
C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent.exe
C:\Program Files\CONEXANT\ForteConfig\fmapp.exe
C:\Program Files\Integrated Camera Driver\RCIMGDIR.exe
C:\Program Files\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Lenovo\Communications Utility\TpKnrres.exe
C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE
C:\Program Files\ThinkPad\Utilities\SCHTASK.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Google\Drive\googledrivesync.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Windows\System32\StikyNot.exe
C:\Program Files\TechSmith\Snagit 11\Snagit32.exe
C:\Program Files\Google\Drive\googledrivesync.exe
C:\Program Files\TechSmith\Snagit 11\TSCHelp.exe
C:\Program Files\TechSmith\Snagit 11\SnagPriv.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\TechSmith\Snagit 11\snagiteditor.exe
C:\Program Files\Microsoft Office\Office14\OUTLOOK.EXE
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\Windows Media Player\wmplayer.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [VirtualCloneDrive] "C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [PWMTRV] rundll32 "C:\Program Files\ThinkPad\Utilities\PWMTR32V.DLL",PwrMgrBkGndMonitor
O4 - HKLM\..\Run: [SmartAudio] C:\Program Files\CONEXANT\SAII\SACpl.exe /t
O4 - HKLM\..\Run: [Dolby Advanced Audio v2] "C:\Program Files\Dolby Advanced Audio v2\pcee4.exe" -autostart
O4 - HKLM\..\Run: [cAudioFilterAgent] C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent.exe
O4 - HKLM\..\Run: [ForteConfig] C:\Program Files\Conexant\ForteConfig\fmapp.exe
O4 - HKLM\..\Run: [RotateImage] C:\Program Files\Integrated Camera Driver\RCIMGDIR.exe
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [HotKeysCmds] "C:\Windows\system32\hkcmd.exe"
O4 - HKLM\..\Run: [Persistence] "C:\Windows\system32\igfxpers.exe"
O4 - HKLM\..\Run: [LENOVO.TPKNRRES] C:\Program Files\Lenovo\Communications Utility\TPKNRRES.exe
O4 - HKLM\..\Run: [IntelPROSet] "C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] "C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS6ServiceManager] "C:\Program Files\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [GoogleDriveSync] "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [RESTART_STICKY_NOTES] C:\Windows\System32\StikyNot.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Global Startup: Snagit 11.lnk = C:\Program Files\TechSmith\Snagit 11\Snagit32.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Intel® Centrino® Wireless Bluetooth® + High Speed Service (AMPPALR3) - Intel Corporation - C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Security Service (BTHSSecurityMgr) - Intel(R) Corporation - C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\system32\IntelCpHeciSvc.exe
O23 - Service: @C:\Windows\system32\CxAudMsg32.exe,-100 (CxAudMsg) - Conexant Systems Inc. - C:\Windows\system32\CxAudMsg32.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Lenovo PM Service (IBMPMSVC) - Lenovo. - C:\Windows\system32\ibmpmsvc.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: Lenovo Camera Mute (LENOVO.CAMMUTE) - Lenovo Group Limited - C:\Program Files\Lenovo\Communications Utility\CAMMUTE.exe
O23 - Service: Lenovo Microphone Mute (LENOVO.MICMUTE) - Lenovo Group Limited - C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe
O23 - Service: Lenovo Keyboard Noise Reduction (LENOVO.TPKNRSVC) - Lenovo Group Limited - C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe
O23 - Service: Lenovo Virtual Camera Controller (LENOVO.TVTVCAM) - Lenovo Group Limited - C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe
O23 - Service: Lenovo Auto Scroll (Lenovo.VIRTSCRLSVC) - Lenovo Group Limited - C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: Power Manager Service (Power Manager DBC Service) - Lenovo - C:\Program Files\ThinkPad\Utilities\PWMDBSVC.EXE
O23 - Service: Cisco EnergyWise Enabler (PwmEWSvc) - Lenovo Group Limited - C:\Program Files\ThinkPad\Utilities\PWMEWSVC.EXE
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: Conexant SmartAudio service (SAService) - Conexant Systems, Inc. - C:\Windows\system32\SAsrv.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: TeamViewer 9 (TeamViewer9) - TeamViewer GmbH - C:\Program Files\TeamViewer\Version9\TeamViewer_Service.exe
O23 - Service: Lenovo Hotkey Client Loader (TPHKLOAD) - Lenovo Group Limited - C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe
O23 - Service: On Screen Display (TPHKSVC) - Lenovo Group Limited - C:\Program Files\LENOVO\HOTKEY\TPHKSVC.exe
O23 - Service: Mobile Broadband Service (WMCoreService) - Ericsson AB - C:\Program Files\Mobile Broadband drivers\WMCore\mini_WMCore.exe
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
--
End of file - 12899 bytes
Kontrola logu
- Orcus
- člen Security týmu
-
Elite Level 10.5
- Příspěvky: 10645
- Registrován: duben 10
- Bydliště: Okolo rostou 3 růže =o)
- Pohlaví:
- Stav:
Offline
Re: Kontrola logu
Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected. Poté klikni na Main (hlavní stránku ) a klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.
- Pokud používáš jen Google Chrome , tak ATF nemusíš použít.
===================================================
Stáhni si TFC
Otevři soubor a zavři všechny ostatní okna, Klikni na Start k zahájení procesu. Program by neměl trvat dlouho.
Poté by se měl PC restartovat, pokud ne , proveď sám.
===================================================
Stáhni AdwCleaner (by Xplode)
Ulož si ho na svojí plochu
Ukonči všechny programy , okna a prohlížeče
Spusť program poklepáním a klikni na „Prohledat-Scan“
Po skenu se objeví log ( jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.
===================================================
Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Provést rychlý sken a klikni na tlačítko Skenovat
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Zobrazit výsledky
- pak zvol možnost uložit log a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected. Poté klikni na Main (hlavní stránku ) a klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.
- Pokud používáš jen Google Chrome , tak ATF nemusíš použít.
===================================================
Stáhni si TFC
Otevři soubor a zavři všechny ostatní okna, Klikni na Start k zahájení procesu. Program by neměl trvat dlouho.
Poté by se měl PC restartovat, pokud ne , proveď sám.
===================================================
Stáhni AdwCleaner (by Xplode)
Ulož si ho na svojí plochu
Ukonči všechny programy , okna a prohlížeče
Spusť program poklepáním a klikni na „Prohledat-Scan“
Po skenu se objeví log ( jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.
===================================================
Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Provést rychlý sken a klikni na tlačítko Skenovat
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Zobrazit výsledky
- pak zvol možnost uložit log a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.
Láska hřeje, ale uhlí je uhlí.
Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.
Pár rad k bezpečnosti PC.
Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix
Pokud budete spokojeni , můžete podpořit naše fórum.

Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.
Pár rad k bezpečnosti PC.
Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix
Pokud budete spokojeni , můžete podpořit naše fórum.
Re: Kontrola logu
ADW log
# AdwCleaner v3.024 - Report created 19/04/2014 at 10:32:38
# Updated 18/04/2014 by Xplode
# Operating System : Windows 7 Professional Service Pack 1 (32 bits)
# Username : Turtle - TURTLE-PC
# Running from : C:\Users\Turtle\Desktop\adwcleaner.exe
# Option : Scan
***** [ Services ] *****
***** [ Files / Folders ] *****
File Found : C:\END
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Found : HKCU\Software\AppDataLow\Software\SmartBar
Key Found : HKCU\Software\Conduit
Key Found : HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Key Found : HKLM\Software\Conduit
***** [ Browsers ] *****
-\\ Internet Explorer v8.0.7601.17514
-\\ Mozilla Firefox v28.0 (cs)
[ File : C:\Users\Turtle\AppData\Roaming\Mozilla\Firefox\Profiles\861vid03.default\prefs.js ]
-\\ Google Chrome v34.0.1847.116
[ File : C:\Users\Turtle\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [990 octets] - [19/04/2014 10:32:38]
########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [1049 octets] ##########
MBAM log
Malwarebytes Anti-Malware
www.malwarebytes.org
Scan Date: 19.4.2014
Scan Time: 10:45:28
Logfile: mbam log.txt
Administrator: Yes
Version: 2.00.1.1004
Malware Database: v2014.04.19.05
Rootkit Database: v2014.03.27.01
License: Trial
Malware Protection: Enabled
Malicious Website Protection: Enabled
Chameleon: Disabled
OS: Windows 7 Service Pack 1
CPU: x86
File System: NTFS
User: Turtle
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 225451
Time Elapsed: 9 min, 24 sec
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Shuriken: Enabled
PUP: Enabled
PUM: Enabled
Processes: 0
(No malicious items detected)
Modules: 0
(No malicious items detected)
Registry Keys: 0
(No malicious items detected)
Registry Values: 0
(No malicious items detected)
Registry Data: 0
(No malicious items detected)
Folders: 0
(No malicious items detected)
Files: 1
PUP.Optional.Conduit, C:\Users\Turtle\Downloads\bsplayer266.1075.exe, , [d35e111b28530a2c642d391845bf24dc],
Physical Sectors: 0
(No malicious items detected)
(end)
# AdwCleaner v3.024 - Report created 19/04/2014 at 10:32:38
# Updated 18/04/2014 by Xplode
# Operating System : Windows 7 Professional Service Pack 1 (32 bits)
# Username : Turtle - TURTLE-PC
# Running from : C:\Users\Turtle\Desktop\adwcleaner.exe
# Option : Scan
***** [ Services ] *****
***** [ Files / Folders ] *****
File Found : C:\END
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Found : HKCU\Software\AppDataLow\Software\SmartBar
Key Found : HKCU\Software\Conduit
Key Found : HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Key Found : HKLM\Software\Conduit
***** [ Browsers ] *****
-\\ Internet Explorer v8.0.7601.17514
-\\ Mozilla Firefox v28.0 (cs)
[ File : C:\Users\Turtle\AppData\Roaming\Mozilla\Firefox\Profiles\861vid03.default\prefs.js ]
-\\ Google Chrome v34.0.1847.116
[ File : C:\Users\Turtle\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [990 octets] - [19/04/2014 10:32:38]
########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [1049 octets] ##########
MBAM log
Malwarebytes Anti-Malware
www.malwarebytes.org
Scan Date: 19.4.2014
Scan Time: 10:45:28
Logfile: mbam log.txt
Administrator: Yes
Version: 2.00.1.1004
Malware Database: v2014.04.19.05
Rootkit Database: v2014.03.27.01
License: Trial
Malware Protection: Enabled
Malicious Website Protection: Enabled
Chameleon: Disabled
OS: Windows 7 Service Pack 1
CPU: x86
File System: NTFS
User: Turtle
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 225451
Time Elapsed: 9 min, 24 sec
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Shuriken: Enabled
PUP: Enabled
PUM: Enabled
Processes: 0
(No malicious items detected)
Modules: 0
(No malicious items detected)
Registry Keys: 0
(No malicious items detected)
Registry Values: 0
(No malicious items detected)
Registry Data: 0
(No malicious items detected)
Folders: 0
(No malicious items detected)
Files: 1
PUP.Optional.Conduit, C:\Users\Turtle\Downloads\bsplayer266.1075.exe, , [d35e111b28530a2c642d391845bf24dc],
Physical Sectors: 0
(No malicious items detected)
(end)
- Orcus
- člen Security týmu
-
Elite Level 10.5
- Příspěvky: 10645
- Registrován: duben 10
- Bydliště: Okolo rostou 3 růže =o)
- Pohlaví:
- Stav:
Offline
Re: Kontrola logu
Znovu spusť MbAM a dej Scan
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Show Results
- ujistit se že máš zatrhnuté všechny vypsané nálezy a klikni na tlačítko Remove Selected
- když skončí odstraňování tak se ti zobrazí log, tak ho sem dej.
- pak zvol v programu OK a pak program ukonči přes Exit
====================================================
Spusť znovu AdwCleaner (u Windows Vista či Windows7, klikni na AdwCleaner pravým a vyber „Spustit jako správce“
Klikni na „ Smazat“
Program provede opravu, po automatickém restartu neukáže log (C:\AdwCleaner [S?].txt) , jeho obsah sem celý vlož.
====================================================
Stáhni si Junkware Removal Tool
na svojí plochu.
Deaktivuj si svůj antivirový program.
Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.
====================================================
Stáhni si RogueKiller
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit
-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Show Results
- ujistit se že máš zatrhnuté všechny vypsané nálezy a klikni na tlačítko Remove Selected
- když skončí odstraňování tak se ti zobrazí log, tak ho sem dej.
- pak zvol v programu OK a pak program ukonči přes Exit
====================================================
Spusť znovu AdwCleaner (u Windows Vista či Windows7, klikni na AdwCleaner pravým a vyber „Spustit jako správce“
Klikni na „ Smazat“
Program provede opravu, po automatickém restartu neukáže log (C:\AdwCleaner [S?].txt) , jeho obsah sem celý vlož.
====================================================
Stáhni si Junkware Removal Tool
na svojí plochu.
Deaktivuj si svůj antivirový program.
Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.
====================================================
Stáhni si RogueKiller
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit
-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
Láska hřeje, ale uhlí je uhlí.
Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.
Pár rad k bezpečnosti PC.
Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix
Pokud budete spokojeni , můžete podpořit naše fórum.

Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.
Pár rad k bezpečnosti PC.
Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix
Pokud budete spokojeni , můžete podpořit naše fórum.
Re: Kontrola logu
MbAM: nebylo ani co smazat
Malwarebytes Anti-Malware
www.malwarebytes.org
Scan Date: 20.4.2014
Scan Time: 9:35:14
Logfile: mbam.txt
Administrator: Yes
Version: 2.00.1.1004
Malware Database: v2014.04.20.03
Rootkit Database: v2014.03.27.01
License: Trial
Malware Protection: Enabled
Malicious Website Protection: Enabled
Chameleon: Disabled
OS: Windows 7 Service Pack 1
CPU: x86
File System: NTFS
User: Turtle
Scan Type: Hyper Scan
Result: Completed
Objects Scanned: 191630
Time Elapsed: 8 min, 14 sec
Memory: Enabled
Startup: Enabled
Filesystem: Disabled
Archives: Enabled
Rootkits: Disabled
Shuriken: Enabled
PUP: Enabled
PUM: Enabled
Processes: 0
(No malicious items detected)
Modules: 0
(No malicious items detected)
Registry Keys: 0
(No malicious items detected)
Registry Values: 0
(No malicious items detected)
Registry Data: 0
(No malicious items detected)
Folders: 0
(No malicious items detected)
Files: 0
(No malicious items detected)
Physical Sectors: 0
(No malicious items detected)
(end)
Adw:
# AdwCleaner v3.024 - Report created 20/04/2014 at 09:42:53
# Updated 18/04/2014 by Xplode
# Operating System : Windows 7 Professional Service Pack 1 (32 bits)
# Username : Turtle - TURTLE-PC
# Running from : C:\Users\Turtle\Desktop\adwcleaner.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
File Deleted : C:\END
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\AppDataLow\Software\SmartBar
Key Deleted : HKLM\Software\Conduit
***** [ Browsers ] *****
-\\ Internet Explorer v8.0.7601.17514
-\\ Mozilla Firefox v28.0 (cs)
[ File : C:\Users\Turtle\AppData\Roaming\Mozilla\Firefox\Profiles\861vid03.default\prefs.js ]
-\\ Google Chrome v34.0.1847.116
[ File : C:\Users\Turtle\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [1129 octets] - [19/04/2014 10:32:38]
AdwCleaner[R1].txt - [1190 octets] - [20/04/2014 09:40:41]
AdwCleaner[S0].txt - [1121 octets] - [20/04/2014 09:42:53]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1181 octets] ##########
JRT:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.3 (03.23.2014:1)
OS: Windows 7 Professional x86
Ran by Turtle on ne 20.04.2014 at 9:50:17,43
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
~~~ Files
~~~ Folders
~~~ FireFox
Emptied folder: C:\Users\Turtle\AppData\Roaming\mozilla\firefox\profiles\861vid03.default\minidumps [11 files]
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on ne 20.04.2014 at 9:53:59,03
Computer was rebooted
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
RK:
RogueKiller V8.8.15 [Mar 27 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com
Operační systém : Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Spuštěno v : Normální režim
Uživatel : Turtle [Práva správce]
Mód : Kontrola -- Datum : 04/20/2014 10:07:29
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 0 ¤¤¤
¤¤¤ ¤¤¤ Záznamy Registrů: : 5 ¤¤¤
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ SMENU][PUM] HKCU\[...]\Advanced : Start_ShowMyGames (0) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO
¤¤¤ naplánované úlohy : 0 ¤¤¤
¤¤¤ spuštění položky : 0 ¤¤¤
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Browser Addons : 0 ¤¤¤
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤
[Address] EAT @explorer.exe (BeginBufferedAnimation) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x749009AE)
[Address] EAT @explorer.exe (BeginBufferedPaint) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F49A1)
[Address] EAT @explorer.exe (BeginPanningFeedback) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74920731)
[Address] EAT @explorer.exe (BufferedPaintClear) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F6395)
[Address] EAT @explorer.exe (BufferedPaintInit) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F940E)
[Address] EAT @explorer.exe (BufferedPaintRenderAnimation) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x749008ED)
[Address] EAT @explorer.exe (BufferedPaintSetAlpha) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7490E6B3)
[Address] EAT @explorer.exe (BufferedPaintStopAllAnimations) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7490D395)
[Address] EAT @explorer.exe (BufferedPaintUnInit) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F94AB)
[Address] EAT @explorer.exe (CloseThemeData) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F6A18)
[Address] EAT @explorer.exe (DrawThemeBackground) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F3982)
[Address] EAT @explorer.exe (DrawThemeBackgroundEx) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7490D9DA)
[Address] EAT @explorer.exe (DrawThemeEdge) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74913B52)
[Address] EAT @explorer.exe (DrawThemeIcon) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x749235E7)
[Address] EAT @explorer.exe (DrawThemeParentBackground) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F53E5)
[Address] EAT @explorer.exe (DrawThemeParentBackgroundEx) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F51BF)
[Address] EAT @explorer.exe (DrawThemeText) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F4EA1)
[Address] EAT @explorer.exe (DrawThemeTextEx) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F63E6)
[Address] EAT @explorer.exe (EnableThemeDialogTexture) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748FFCAF)
[Address] EAT @explorer.exe (EnableTheming) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74922FEB)
[Address] EAT @explorer.exe (EndBufferedAnimation) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F3F9A)
[Address] EAT @explorer.exe (EndBufferedPaint) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F3F9A)
[Address] EAT @explorer.exe (EndPanningFeedback) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x749206CC)
[Address] EAT @explorer.exe (GetBufferedPaintBits) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F4BAF)
[Address] EAT @explorer.exe (GetBufferedPaintDC) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x749004BC)
[Address] EAT @explorer.exe (GetBufferedPaintTargetDC) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74900473)
[Address] EAT @explorer.exe (GetBufferedPaintTargetRect) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74922E7F)
[Address] EAT @explorer.exe (GetCurrentThemeName) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x749005DD)
[Address] EAT @explorer.exe (GetThemeAppProperties) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74900FB1)
[Address] EAT @explorer.exe (GetThemeBackgroundContentRect) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748FCD2E)
[Address] EAT @explorer.exe (GetThemeBackgroundExtent) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748FF8BF)
[Address] EAT @explorer.exe (GetThemeBackgroundRegion) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7490165D)
[Address] EAT @explorer.exe (GetThemeBitmap) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748FBF93)
[Address] EAT @explorer.exe (GetThemeBool) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F7C1F)
[Address] EAT @explorer.exe (GetThemeColor) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F616C)
[Address] EAT @explorer.exe (GetThemeDocumentationProperty) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74922932)
[Address] EAT @explorer.exe (GetThemeEnumValue) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F616C)
[Address] EAT @explorer.exe (GetThemeFilename) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74922412)
[Address] EAT @explorer.exe (GetThemeFont) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748FFF21)
[Address] EAT @explorer.exe (GetThemeInt) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F616C)
[Address] EAT @explorer.exe (GetThemeIntList) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x749223B1)
[Address] EAT @explorer.exe (GetThemeMargins) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F86E9)
[Address] EAT @explorer.exe (GetThemeMetric) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x749006E2)
[Address] EAT @explorer.exe (GetThemePartSize) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748FCDB1)
[Address] EAT @explorer.exe (GetThemePosition) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74922350)
[Address] EAT @explorer.exe (GetThemePropertyOrigin) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74913FBB)
[Address] EAT @explorer.exe (GetThemeRect) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74903611)
[Address] EAT @explorer.exe (GetThemeStream) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x749039D9)
[Address] EAT @explorer.exe (GetThemeString) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x749222E4)
[Address] EAT @explorer.exe (GetThemeSysBool) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74923172)
[Address] EAT @explorer.exe (GetThemeSysColor) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74913274)
[Address] EAT @explorer.exe (GetThemeSysColorBrush) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7492301E)
[Address] EAT @explorer.exe (GetThemeSysFont) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x749229C4)
[Address] EAT @explorer.exe (GetThemeSysInt) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74922BD3)
[Address] EAT @explorer.exe (GetThemeSysSize) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7492320B)
[Address] EAT @explorer.exe (GetThemeSysString) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74922B3F)
[Address] EAT @explorer.exe (GetThemeTextExtent) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F2D57)
[Address] EAT @explorer.exe (GetThemeTextMetrics) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748FF992)
[Address] EAT @explorer.exe (GetThemeTransitionDuration) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74901081)
[Address] EAT @explorer.exe (GetWindowTheme) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748FDF46)
[Address] EAT @explorer.exe (HitTestThemeBackground) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74903CE3)
[Address] EAT @explorer.exe (IsAppThemed) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748FF869)
[Address] EAT @explorer.exe (IsCompositionActive) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F2E9A)
[Address] EAT @explorer.exe (IsThemeActive) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748FF785)
[Address] EAT @explorer.exe (IsThemeBackgroundPartiallyTransparent) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F60AB)
[Address] EAT @explorer.exe (IsThemeDialogTextureEnabled) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7492312B)
[Address] EAT @explorer.exe (IsThemePartDefined) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F85B4)
[Address] EAT @explorer.exe (OpenThemeData) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F73D2)
[Address] EAT @explorer.exe (OpenThemeDataEx) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74913D43)
[Address] EAT @explorer.exe (SetThemeAppProperties) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74923296)
[Address] EAT @explorer.exe (SetWindowTheme) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74900134)
[Address] EAT @explorer.exe (SetWindowThemeAttribute) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7490CFE6)
[Address] EAT @explorer.exe (ThemeInitApiHook) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748FB176)
[Address] EAT @explorer.exe (UpdatePanningFeedback) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7492068D)
¤¤¤ Externí včelstvo: ¤¤¤
¤¤¤ Nákaza : ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts
¤¤¤ Kontrola MBR: ¤¤¤
+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) WDC WD5000BPVT-08HXZT3 ATA Device +++++
--- User ---
[MBR] 959791ffd7ee8f535edba641577dcc9f
[BSP] 958f3e2f838f0f699091dae605fe791f : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 100 MB
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 206848 | Size: 476838 MB
User = LL1 ... OK!
User = LL2 ... OK!
Dokončeno : << RKreport[0]_S_04202014_100729.txt >>
Malwarebytes Anti-Malware
www.malwarebytes.org
Scan Date: 20.4.2014
Scan Time: 9:35:14
Logfile: mbam.txt
Administrator: Yes
Version: 2.00.1.1004
Malware Database: v2014.04.20.03
Rootkit Database: v2014.03.27.01
License: Trial
Malware Protection: Enabled
Malicious Website Protection: Enabled
Chameleon: Disabled
OS: Windows 7 Service Pack 1
CPU: x86
File System: NTFS
User: Turtle
Scan Type: Hyper Scan
Result: Completed
Objects Scanned: 191630
Time Elapsed: 8 min, 14 sec
Memory: Enabled
Startup: Enabled
Filesystem: Disabled
Archives: Enabled
Rootkits: Disabled
Shuriken: Enabled
PUP: Enabled
PUM: Enabled
Processes: 0
(No malicious items detected)
Modules: 0
(No malicious items detected)
Registry Keys: 0
(No malicious items detected)
Registry Values: 0
(No malicious items detected)
Registry Data: 0
(No malicious items detected)
Folders: 0
(No malicious items detected)
Files: 0
(No malicious items detected)
Physical Sectors: 0
(No malicious items detected)
(end)
Adw:
# AdwCleaner v3.024 - Report created 20/04/2014 at 09:42:53
# Updated 18/04/2014 by Xplode
# Operating System : Windows 7 Professional Service Pack 1 (32 bits)
# Username : Turtle - TURTLE-PC
# Running from : C:\Users\Turtle\Desktop\adwcleaner.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
File Deleted : C:\END
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\AppDataLow\Software\SmartBar
Key Deleted : HKLM\Software\Conduit
***** [ Browsers ] *****
-\\ Internet Explorer v8.0.7601.17514
-\\ Mozilla Firefox v28.0 (cs)
[ File : C:\Users\Turtle\AppData\Roaming\Mozilla\Firefox\Profiles\861vid03.default\prefs.js ]
-\\ Google Chrome v34.0.1847.116
[ File : C:\Users\Turtle\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [1129 octets] - [19/04/2014 10:32:38]
AdwCleaner[R1].txt - [1190 octets] - [20/04/2014 09:40:41]
AdwCleaner[S0].txt - [1121 octets] - [20/04/2014 09:42:53]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1181 octets] ##########
JRT:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.3 (03.23.2014:1)
OS: Windows 7 Professional x86
Ran by Turtle on ne 20.04.2014 at 9:50:17,43
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
~~~ Files
~~~ Folders
~~~ FireFox
Emptied folder: C:\Users\Turtle\AppData\Roaming\mozilla\firefox\profiles\861vid03.default\minidumps [11 files]
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on ne 20.04.2014 at 9:53:59,03
Computer was rebooted
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
RK:
RogueKiller V8.8.15 [Mar 27 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com
Operační systém : Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Spuštěno v : Normální režim
Uživatel : Turtle [Práva správce]
Mód : Kontrola -- Datum : 04/20/2014 10:07:29
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 0 ¤¤¤
¤¤¤ ¤¤¤ Záznamy Registrů: : 5 ¤¤¤
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ SMENU][PUM] HKCU\[...]\Advanced : Start_ShowMyGames (0) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO
¤¤¤ naplánované úlohy : 0 ¤¤¤
¤¤¤ spuštění položky : 0 ¤¤¤
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Browser Addons : 0 ¤¤¤
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤
[Address] EAT @explorer.exe (BeginBufferedAnimation) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x749009AE)
[Address] EAT @explorer.exe (BeginBufferedPaint) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F49A1)
[Address] EAT @explorer.exe (BeginPanningFeedback) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74920731)
[Address] EAT @explorer.exe (BufferedPaintClear) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F6395)
[Address] EAT @explorer.exe (BufferedPaintInit) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F940E)
[Address] EAT @explorer.exe (BufferedPaintRenderAnimation) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x749008ED)
[Address] EAT @explorer.exe (BufferedPaintSetAlpha) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7490E6B3)
[Address] EAT @explorer.exe (BufferedPaintStopAllAnimations) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7490D395)
[Address] EAT @explorer.exe (BufferedPaintUnInit) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F94AB)
[Address] EAT @explorer.exe (CloseThemeData) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F6A18)
[Address] EAT @explorer.exe (DrawThemeBackground) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F3982)
[Address] EAT @explorer.exe (DrawThemeBackgroundEx) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7490D9DA)
[Address] EAT @explorer.exe (DrawThemeEdge) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74913B52)
[Address] EAT @explorer.exe (DrawThemeIcon) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x749235E7)
[Address] EAT @explorer.exe (DrawThemeParentBackground) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F53E5)
[Address] EAT @explorer.exe (DrawThemeParentBackgroundEx) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F51BF)
[Address] EAT @explorer.exe (DrawThemeText) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F4EA1)
[Address] EAT @explorer.exe (DrawThemeTextEx) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F63E6)
[Address] EAT @explorer.exe (EnableThemeDialogTexture) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748FFCAF)
[Address] EAT @explorer.exe (EnableTheming) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74922FEB)
[Address] EAT @explorer.exe (EndBufferedAnimation) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F3F9A)
[Address] EAT @explorer.exe (EndBufferedPaint) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F3F9A)
[Address] EAT @explorer.exe (EndPanningFeedback) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x749206CC)
[Address] EAT @explorer.exe (GetBufferedPaintBits) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F4BAF)
[Address] EAT @explorer.exe (GetBufferedPaintDC) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x749004BC)
[Address] EAT @explorer.exe (GetBufferedPaintTargetDC) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74900473)
[Address] EAT @explorer.exe (GetBufferedPaintTargetRect) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74922E7F)
[Address] EAT @explorer.exe (GetCurrentThemeName) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x749005DD)
[Address] EAT @explorer.exe (GetThemeAppProperties) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74900FB1)
[Address] EAT @explorer.exe (GetThemeBackgroundContentRect) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748FCD2E)
[Address] EAT @explorer.exe (GetThemeBackgroundExtent) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748FF8BF)
[Address] EAT @explorer.exe (GetThemeBackgroundRegion) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7490165D)
[Address] EAT @explorer.exe (GetThemeBitmap) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748FBF93)
[Address] EAT @explorer.exe (GetThemeBool) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F7C1F)
[Address] EAT @explorer.exe (GetThemeColor) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F616C)
[Address] EAT @explorer.exe (GetThemeDocumentationProperty) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74922932)
[Address] EAT @explorer.exe (GetThemeEnumValue) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F616C)
[Address] EAT @explorer.exe (GetThemeFilename) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74922412)
[Address] EAT @explorer.exe (GetThemeFont) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748FFF21)
[Address] EAT @explorer.exe (GetThemeInt) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F616C)
[Address] EAT @explorer.exe (GetThemeIntList) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x749223B1)
[Address] EAT @explorer.exe (GetThemeMargins) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F86E9)
[Address] EAT @explorer.exe (GetThemeMetric) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x749006E2)
[Address] EAT @explorer.exe (GetThemePartSize) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748FCDB1)
[Address] EAT @explorer.exe (GetThemePosition) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74922350)
[Address] EAT @explorer.exe (GetThemePropertyOrigin) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74913FBB)
[Address] EAT @explorer.exe (GetThemeRect) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74903611)
[Address] EAT @explorer.exe (GetThemeStream) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x749039D9)
[Address] EAT @explorer.exe (GetThemeString) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x749222E4)
[Address] EAT @explorer.exe (GetThemeSysBool) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74923172)
[Address] EAT @explorer.exe (GetThemeSysColor) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74913274)
[Address] EAT @explorer.exe (GetThemeSysColorBrush) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7492301E)
[Address] EAT @explorer.exe (GetThemeSysFont) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x749229C4)
[Address] EAT @explorer.exe (GetThemeSysInt) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74922BD3)
[Address] EAT @explorer.exe (GetThemeSysSize) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7492320B)
[Address] EAT @explorer.exe (GetThemeSysString) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74922B3F)
[Address] EAT @explorer.exe (GetThemeTextExtent) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F2D57)
[Address] EAT @explorer.exe (GetThemeTextMetrics) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748FF992)
[Address] EAT @explorer.exe (GetThemeTransitionDuration) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74901081)
[Address] EAT @explorer.exe (GetWindowTheme) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748FDF46)
[Address] EAT @explorer.exe (HitTestThemeBackground) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74903CE3)
[Address] EAT @explorer.exe (IsAppThemed) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748FF869)
[Address] EAT @explorer.exe (IsCompositionActive) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F2E9A)
[Address] EAT @explorer.exe (IsThemeActive) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748FF785)
[Address] EAT @explorer.exe (IsThemeBackgroundPartiallyTransparent) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F60AB)
[Address] EAT @explorer.exe (IsThemeDialogTextureEnabled) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7492312B)
[Address] EAT @explorer.exe (IsThemePartDefined) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F85B4)
[Address] EAT @explorer.exe (OpenThemeData) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F73D2)
[Address] EAT @explorer.exe (OpenThemeDataEx) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74913D43)
[Address] EAT @explorer.exe (SetThemeAppProperties) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74923296)
[Address] EAT @explorer.exe (SetWindowTheme) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74900134)
[Address] EAT @explorer.exe (SetWindowThemeAttribute) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7490CFE6)
[Address] EAT @explorer.exe (ThemeInitApiHook) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748FB176)
[Address] EAT @explorer.exe (UpdatePanningFeedback) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7492068D)
¤¤¤ Externí včelstvo: ¤¤¤
¤¤¤ Nákaza : ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts
¤¤¤ Kontrola MBR: ¤¤¤
+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) WDC WD5000BPVT-08HXZT3 ATA Device +++++
--- User ---
[MBR] 959791ffd7ee8f535edba641577dcc9f
[BSP] 958f3e2f838f0f699091dae605fe791f : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 100 MB
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 206848 | Size: 476838 MB
User = LL1 ... OK!
User = LL2 ... OK!
Dokončeno : << RKreport[0]_S_04202014_100729.txt >>
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Kontrola logu
Zavři všechny programy a prohlížeče. Deaktivuj antivir a firewall.
Prosím, odpoj všechny USB nebo externí disky z počítače před spuštěním tohoto programu.
Spusť RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Počkej, dokud status okno zobrazuje "Prohledat "
- Klikni na "Smazat"
- Počkej, dokud Status box zobrazuje " Mazání dokončeno "
- Klikni na "Zpráva " a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [číslo]. txt na ploše.
- Zavři RogueKiller
Stáhni si TDSSKiller
Na svojí plochu.Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller. 2.8.16.0_(datum)_log.txt , vlož sem prosím celý obsah logu.
-pokud bude mít log více než 60.000 znaků , rozděl ho a vlož do více příspěvků
Prosím, odpoj všechny USB nebo externí disky z počítače před spuštěním tohoto programu.
Spusť RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Počkej, dokud status okno zobrazuje "Prohledat "
- Klikni na "Smazat"
- Počkej, dokud Status box zobrazuje " Mazání dokončeno "
- Klikni na "Zpráva " a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [číslo]. txt na ploše.
- Zavři RogueKiller
Stáhni si TDSSKiller
Na svojí plochu.Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller. 2.8.16.0_(datum)_log.txt , vlož sem prosím celý obsah logu.
-pokud bude mít log více než 60.000 znaků , rozděl ho a vlož do více příspěvků
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Kontrola logu
RK:
RogueKiller V8.8.15 [Mar 27 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com
Operační systém : Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Spuštěno v : Normální režim
Uživatel : Turtle [Práva správce]
Mód : Odebrat -- Datum : 04/20/2014 12:11:18
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 0 ¤¤¤
¤¤¤ ¤¤¤ Záznamy Registrů: : 5 ¤¤¤
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> VYMAZÁNO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> VYMAZÁNO
[HJ SMENU][PUM] HKCU\[...]\Advanced : Start_ShowMyGames (0) -> NAHRAZENO (1)
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)
¤¤¤ naplánované úlohy : 0 ¤¤¤
¤¤¤ spuštění položky : 0 ¤¤¤
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Browser Addons : 0 ¤¤¤
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤
[Address] EAT @explorer.exe (BeginBufferedAnimation) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x749009AE)
[Address] EAT @explorer.exe (BeginBufferedPaint) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F49A1)
[Address] EAT @explorer.exe (BeginPanningFeedback) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74920731)
[Address] EAT @explorer.exe (BufferedPaintClear) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F6395)
[Address] EAT @explorer.exe (BufferedPaintInit) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F940E)
[Address] EAT @explorer.exe (BufferedPaintRenderAnimation) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x749008ED)
[Address] EAT @explorer.exe (BufferedPaintSetAlpha) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7490E6B3)
[Address] EAT @explorer.exe (BufferedPaintStopAllAnimations) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7490D395)
[Address] EAT @explorer.exe (BufferedPaintUnInit) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F94AB)
[Address] EAT @explorer.exe (CloseThemeData) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F6A18)
[Address] EAT @explorer.exe (DrawThemeBackground) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F3982)
[Address] EAT @explorer.exe (DrawThemeBackgroundEx) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7490D9DA)
[Address] EAT @explorer.exe (DrawThemeEdge) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74913B52)
[Address] EAT @explorer.exe (DrawThemeIcon) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x749235E7)
[Address] EAT @explorer.exe (DrawThemeParentBackground) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F53E5)
[Address] EAT @explorer.exe (DrawThemeParentBackgroundEx) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F51BF)
[Address] EAT @explorer.exe (DrawThemeText) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F4EA1)
[Address] EAT @explorer.exe (DrawThemeTextEx) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F63E6)
[Address] EAT @explorer.exe (EnableThemeDialogTexture) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748FFCAF)
[Address] EAT @explorer.exe (EnableTheming) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74922FEB)
[Address] EAT @explorer.exe (EndBufferedAnimation) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F3F9A)
[Address] EAT @explorer.exe (EndBufferedPaint) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F3F9A)
[Address] EAT @explorer.exe (EndPanningFeedback) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x749206CC)
[Address] EAT @explorer.exe (GetBufferedPaintBits) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F4BAF)
[Address] EAT @explorer.exe (GetBufferedPaintDC) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x749004BC)
[Address] EAT @explorer.exe (GetBufferedPaintTargetDC) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74900473)
[Address] EAT @explorer.exe (GetBufferedPaintTargetRect) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74922E7F)
[Address] EAT @explorer.exe (GetCurrentThemeName) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x749005DD)
[Address] EAT @explorer.exe (GetThemeAppProperties) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74900FB1)
[Address] EAT @explorer.exe (GetThemeBackgroundContentRect) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748FCD2E)
[Address] EAT @explorer.exe (GetThemeBackgroundExtent) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748FF8BF)
[Address] EAT @explorer.exe (GetThemeBackgroundRegion) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7490165D)
[Address] EAT @explorer.exe (GetThemeBitmap) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748FBF93)
[Address] EAT @explorer.exe (GetThemeBool) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F7C1F)
[Address] EAT @explorer.exe (GetThemeColor) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F616C)
[Address] EAT @explorer.exe (GetThemeDocumentationProperty) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74922932)
[Address] EAT @explorer.exe (GetThemeEnumValue) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F616C)
[Address] EAT @explorer.exe (GetThemeFilename) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74922412)
[Address] EAT @explorer.exe (GetThemeFont) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748FFF21)
[Address] EAT @explorer.exe (GetThemeInt) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F616C)
[Address] EAT @explorer.exe (GetThemeIntList) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x749223B1)
[Address] EAT @explorer.exe (GetThemeMargins) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F86E9)
[Address] EAT @explorer.exe (GetThemeMetric) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x749006E2)
[Address] EAT @explorer.exe (GetThemePartSize) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748FCDB1)
[Address] EAT @explorer.exe (GetThemePosition) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74922350)
[Address] EAT @explorer.exe (GetThemePropertyOrigin) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74913FBB)
[Address] EAT @explorer.exe (GetThemeRect) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74903611)
[Address] EAT @explorer.exe (GetThemeStream) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x749039D9)
[Address] EAT @explorer.exe (GetThemeString) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x749222E4)
[Address] EAT @explorer.exe (GetThemeSysBool) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74923172)
[Address] EAT @explorer.exe (GetThemeSysColor) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74913274)
[Address] EAT @explorer.exe (GetThemeSysColorBrush) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7492301E)
[Address] EAT @explorer.exe (GetThemeSysFont) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x749229C4)
[Address] EAT @explorer.exe (GetThemeSysInt) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74922BD3)
[Address] EAT @explorer.exe (GetThemeSysSize) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7492320B)
[Address] EAT @explorer.exe (GetThemeSysString) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74922B3F)
[Address] EAT @explorer.exe (GetThemeTextExtent) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F2D57)
[Address] EAT @explorer.exe (GetThemeTextMetrics) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748FF992)
[Address] EAT @explorer.exe (GetThemeTransitionDuration) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74901081)
[Address] EAT @explorer.exe (GetWindowTheme) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748FDF46)
[Address] EAT @explorer.exe (HitTestThemeBackground) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74903CE3)
[Address] EAT @explorer.exe (IsAppThemed) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748FF869)
[Address] EAT @explorer.exe (IsCompositionActive) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F2E9A)
[Address] EAT @explorer.exe (IsThemeActive) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748FF785)
[Address] EAT @explorer.exe (IsThemeBackgroundPartiallyTransparent) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F60AB)
[Address] EAT @explorer.exe (IsThemeDialogTextureEnabled) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7492312B)
[Address] EAT @explorer.exe (IsThemePartDefined) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F85B4)
[Address] EAT @explorer.exe (OpenThemeData) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F73D2)
[Address] EAT @explorer.exe (OpenThemeDataEx) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74913D43)
[Address] EAT @explorer.exe (SetThemeAppProperties) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74923296)
[Address] EAT @explorer.exe (SetWindowTheme) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74900134)
[Address] EAT @explorer.exe (SetWindowThemeAttribute) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7490CFE6)
[Address] EAT @explorer.exe (ThemeInitApiHook) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748FB176)
[Address] EAT @explorer.exe (UpdatePanningFeedback) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7492068D)
¤¤¤ Externí včelstvo: ¤¤¤
¤¤¤ Nákaza : ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts
¤¤¤ Kontrola MBR: ¤¤¤
+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) WDC WD5000BPVT-08HXZT3 ATA Device +++++
--- User ---
[MBR] 959791ffd7ee8f535edba641577dcc9f
[BSP] 958f3e2f838f0f699091dae605fe791f : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 100 MB
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 206848 | Size: 476838 MB
User = LL1 ... OK!
User = LL2 ... OK!
Dokončeno : << RKreport[0]_D_04202014_121118.txt >>
RKreport[0]_S_04202014_121032.txt
RogueKiller V8.8.15 [Mar 27 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com
Operační systém : Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Spuštěno v : Normální režim
Uživatel : Turtle [Práva správce]
Mód : Odebrat -- Datum : 04/20/2014 12:11:18
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 0 ¤¤¤
¤¤¤ ¤¤¤ Záznamy Registrů: : 5 ¤¤¤
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> VYMAZÁNO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> VYMAZÁNO
[HJ SMENU][PUM] HKCU\[...]\Advanced : Start_ShowMyGames (0) -> NAHRAZENO (1)
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)
¤¤¤ naplánované úlohy : 0 ¤¤¤
¤¤¤ spuštění položky : 0 ¤¤¤
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Browser Addons : 0 ¤¤¤
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤
[Address] EAT @explorer.exe (BeginBufferedAnimation) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x749009AE)
[Address] EAT @explorer.exe (BeginBufferedPaint) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F49A1)
[Address] EAT @explorer.exe (BeginPanningFeedback) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74920731)
[Address] EAT @explorer.exe (BufferedPaintClear) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F6395)
[Address] EAT @explorer.exe (BufferedPaintInit) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F940E)
[Address] EAT @explorer.exe (BufferedPaintRenderAnimation) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x749008ED)
[Address] EAT @explorer.exe (BufferedPaintSetAlpha) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7490E6B3)
[Address] EAT @explorer.exe (BufferedPaintStopAllAnimations) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7490D395)
[Address] EAT @explorer.exe (BufferedPaintUnInit) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F94AB)
[Address] EAT @explorer.exe (CloseThemeData) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F6A18)
[Address] EAT @explorer.exe (DrawThemeBackground) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F3982)
[Address] EAT @explorer.exe (DrawThemeBackgroundEx) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7490D9DA)
[Address] EAT @explorer.exe (DrawThemeEdge) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74913B52)
[Address] EAT @explorer.exe (DrawThemeIcon) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x749235E7)
[Address] EAT @explorer.exe (DrawThemeParentBackground) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F53E5)
[Address] EAT @explorer.exe (DrawThemeParentBackgroundEx) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F51BF)
[Address] EAT @explorer.exe (DrawThemeText) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F4EA1)
[Address] EAT @explorer.exe (DrawThemeTextEx) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F63E6)
[Address] EAT @explorer.exe (EnableThemeDialogTexture) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748FFCAF)
[Address] EAT @explorer.exe (EnableTheming) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74922FEB)
[Address] EAT @explorer.exe (EndBufferedAnimation) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F3F9A)
[Address] EAT @explorer.exe (EndBufferedPaint) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F3F9A)
[Address] EAT @explorer.exe (EndPanningFeedback) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x749206CC)
[Address] EAT @explorer.exe (GetBufferedPaintBits) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F4BAF)
[Address] EAT @explorer.exe (GetBufferedPaintDC) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x749004BC)
[Address] EAT @explorer.exe (GetBufferedPaintTargetDC) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74900473)
[Address] EAT @explorer.exe (GetBufferedPaintTargetRect) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74922E7F)
[Address] EAT @explorer.exe (GetCurrentThemeName) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x749005DD)
[Address] EAT @explorer.exe (GetThemeAppProperties) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74900FB1)
[Address] EAT @explorer.exe (GetThemeBackgroundContentRect) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748FCD2E)
[Address] EAT @explorer.exe (GetThemeBackgroundExtent) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748FF8BF)
[Address] EAT @explorer.exe (GetThemeBackgroundRegion) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7490165D)
[Address] EAT @explorer.exe (GetThemeBitmap) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748FBF93)
[Address] EAT @explorer.exe (GetThemeBool) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F7C1F)
[Address] EAT @explorer.exe (GetThemeColor) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F616C)
[Address] EAT @explorer.exe (GetThemeDocumentationProperty) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74922932)
[Address] EAT @explorer.exe (GetThemeEnumValue) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F616C)
[Address] EAT @explorer.exe (GetThemeFilename) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74922412)
[Address] EAT @explorer.exe (GetThemeFont) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748FFF21)
[Address] EAT @explorer.exe (GetThemeInt) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F616C)
[Address] EAT @explorer.exe (GetThemeIntList) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x749223B1)
[Address] EAT @explorer.exe (GetThemeMargins) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F86E9)
[Address] EAT @explorer.exe (GetThemeMetric) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x749006E2)
[Address] EAT @explorer.exe (GetThemePartSize) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748FCDB1)
[Address] EAT @explorer.exe (GetThemePosition) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74922350)
[Address] EAT @explorer.exe (GetThemePropertyOrigin) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74913FBB)
[Address] EAT @explorer.exe (GetThemeRect) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74903611)
[Address] EAT @explorer.exe (GetThemeStream) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x749039D9)
[Address] EAT @explorer.exe (GetThemeString) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x749222E4)
[Address] EAT @explorer.exe (GetThemeSysBool) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74923172)
[Address] EAT @explorer.exe (GetThemeSysColor) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74913274)
[Address] EAT @explorer.exe (GetThemeSysColorBrush) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7492301E)
[Address] EAT @explorer.exe (GetThemeSysFont) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x749229C4)
[Address] EAT @explorer.exe (GetThemeSysInt) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74922BD3)
[Address] EAT @explorer.exe (GetThemeSysSize) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7492320B)
[Address] EAT @explorer.exe (GetThemeSysString) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74922B3F)
[Address] EAT @explorer.exe (GetThemeTextExtent) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F2D57)
[Address] EAT @explorer.exe (GetThemeTextMetrics) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748FF992)
[Address] EAT @explorer.exe (GetThemeTransitionDuration) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74901081)
[Address] EAT @explorer.exe (GetWindowTheme) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748FDF46)
[Address] EAT @explorer.exe (HitTestThemeBackground) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74903CE3)
[Address] EAT @explorer.exe (IsAppThemed) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748FF869)
[Address] EAT @explorer.exe (IsCompositionActive) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F2E9A)
[Address] EAT @explorer.exe (IsThemeActive) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748FF785)
[Address] EAT @explorer.exe (IsThemeBackgroundPartiallyTransparent) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F60AB)
[Address] EAT @explorer.exe (IsThemeDialogTextureEnabled) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7492312B)
[Address] EAT @explorer.exe (IsThemePartDefined) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F85B4)
[Address] EAT @explorer.exe (OpenThemeData) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748F73D2)
[Address] EAT @explorer.exe (OpenThemeDataEx) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74913D43)
[Address] EAT @explorer.exe (SetThemeAppProperties) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74923296)
[Address] EAT @explorer.exe (SetWindowTheme) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74900134)
[Address] EAT @explorer.exe (SetWindowThemeAttribute) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7490CFE6)
[Address] EAT @explorer.exe (ThemeInitApiHook) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x748FB176)
[Address] EAT @explorer.exe (UpdatePanningFeedback) : SAMLIB.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7492068D)
¤¤¤ Externí včelstvo: ¤¤¤
¤¤¤ Nákaza : ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts
¤¤¤ Kontrola MBR: ¤¤¤
+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) WDC WD5000BPVT-08HXZT3 ATA Device +++++
--- User ---
[MBR] 959791ffd7ee8f535edba641577dcc9f
[BSP] 958f3e2f838f0f699091dae605fe791f : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 100 MB
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 206848 | Size: 476838 MB
User = LL1 ... OK!
User = LL2 ... OK!
Dokončeno : << RKreport[0]_D_04202014_121118.txt >>
RKreport[0]_S_04202014_121032.txt
Re: Kontrola logu
TDSS: nerestartoval se, nenašel žádné hrozby
12:17:10.0579 2852 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
12:17:33.0475 2852 ============================================================
12:17:33.0475 2852 Current date / time: 2014/04/20 12:17:33.0475
12:17:33.0475 2852 SystemInfo:
12:17:33.0475 2852
12:17:33.0475 2852 OS Version: 6.1.7601 ServicePack: 1.0
12:17:33.0475 2852 Product type: Workstation
12:17:33.0475 2852 ComputerName: TURTLE-PC
12:17:33.0475 2852 UserName: Turtle
12:17:33.0475 2852 Windows directory: C:\Windows
12:17:33.0475 2852 System windows directory: C:\Windows
12:17:33.0475 2852 Processor architecture: Intel x86
12:17:33.0475 2852 Number of processors: 2
12:17:33.0475 2852 Page size: 0x1000
12:17:33.0475 2852 Boot type: Normal boot
12:17:33.0475 2852 ============================================================
12:17:35.0154 2852 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
12:17:35.0222 2852 ============================================================
12:17:35.0222 2852 \Device\Harddisk0\DR0:
12:17:35.0223 2852 MBR partitions:
12:17:35.0223 2852 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
12:17:35.0223 2852 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x3A353000
12:17:35.0223 2852 ============================================================
12:17:35.0277 2852 C: <-> \Device\Harddisk0\DR0\Partition2
12:17:35.0278 2852 ============================================================
12:17:35.0278 2852 Initialize success
12:17:35.0278 2852 ============================================================
12:17:55.0711 3808 ============================================================
12:17:55.0711 3808 Scan started
12:17:55.0711 3808 Mode: Manual;
12:17:55.0711 3808 ============================================================
12:17:56.0147 3808 ================ Scan system memory ========================
12:17:56.0147 3808 System memory - ok
12:17:56.0148 3808 ================ Scan services =============================
12:17:56.0604 3808 [ 1B133875B8AA8AC48969BD3458AFE9F5 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
12:17:56.0605 3808 1394ohci - ok
12:17:56.0644 3808 [ CEA80C80BED809AA0DA6FEBC04733349 ] ACPI C:\Windows\system32\drivers\ACPI.sys
12:17:56.0646 3808 ACPI - ok
12:17:56.0657 3808 [ 1EFBC664ABFF416D1D07DB115DCB264F ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
12:17:56.0658 3808 AcpiPmi - ok
12:17:56.0808 3808 [ B362181ED3771DC03B4141927C80F801 ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
12:17:56.0809 3808 AdobeARMservice - ok
12:17:56.0976 3808 [ C2CE3311D2477B1B24CFB67020AD49B6 ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
12:17:56.0978 3808 AdobeFlashPlayerUpdateSvc - ok
12:17:57.0019 3808 [ 21E785EBD7DC90A06391141AAC7892FB ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
12:17:57.0022 3808 adp94xx - ok
12:17:57.0030 3808 [ 0C676BC278D5B59FF5ABD57BBE9123F2 ] adpahci C:\Windows\system32\drivers\adpahci.sys
12:17:57.0032 3808 adpahci - ok
12:17:57.0038 3808 [ 7C7B5EE4B7B822EC85321FE23A27DB33 ] adpu320 C:\Windows\system32\drivers\adpu320.sys
12:17:57.0039 3808 adpu320 - ok
12:17:57.0070 3808 [ 8B5EEFEEC1E6D1A72A06C526628AD161 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
12:17:57.0071 3808 AeLookupSvc - ok
12:17:57.0086 3808 [ 1151FD4FB0216CFED887BFDE29EBD516 ] AFD C:\Windows\system32\drivers\afd.sys
12:17:57.0089 3808 AFD - ok
12:17:57.0093 3808 [ 507812C3054C21CEF746B6EE3D04DD6E ] agp440 C:\Windows\system32\drivers\agp440.sys
12:17:57.0094 3808 agp440 - ok
12:17:57.0125 3808 [ 8B30250D573A8F6B4BD23195160D8707 ] aic78xx C:\Windows\system32\drivers\djsvs.sys
12:17:57.0126 3808 aic78xx - ok
12:17:57.0154 3808 [ 18A54E132947CD98FEA9ACCC57F98F13 ] ALG C:\Windows\System32\alg.exe
12:17:57.0155 3808 ALG - ok
12:17:57.0158 3808 [ 0D40BCF52EA90FC7DF2AEAB6503DEA44 ] aliide C:\Windows\system32\drivers\aliide.sys
12:17:57.0159 3808 aliide - ok
12:17:57.0164 3808 [ 3C6600A0696E90A463771C7422E23AB5 ] amdagp C:\Windows\system32\drivers\amdagp.sys
12:17:57.0165 3808 amdagp - ok
12:17:57.0169 3808 [ CD5914170297126B6266860198D1D4F0 ] amdide C:\Windows\system32\drivers\amdide.sys
12:17:57.0170 3808 amdide - ok
12:17:57.0174 3808 [ 00DDA200D71BAC534BF56A9DB5DFD666 ] AmdK8 C:\Windows\system32\drivers\amdk8.sys
12:17:57.0175 3808 AmdK8 - ok
12:17:57.0180 3808 [ 3CBF30F5370FDA40DD3E87DF38EA53B6 ] AmdPPM C:\Windows\system32\drivers\amdppm.sys
12:17:57.0181 3808 AmdPPM - ok
12:17:57.0200 3808 [ E7F4D42D8076EC60E21715CD11743A0D ] amdsata C:\Windows\system32\drivers\amdsata.sys
12:17:57.0201 3808 amdsata - ok
12:17:57.0222 3808 [ EA43AF0C423FF267355F74E7A53BDABA ] amdsbs C:\Windows\system32\drivers\amdsbs.sys
12:17:57.0223 3808 amdsbs - ok
12:17:57.0228 3808 [ 146459D2B08BFDCBFA856D9947043C81 ] amdxata C:\Windows\system32\drivers\amdxata.sys
12:17:57.0229 3808 amdxata - ok
12:17:57.0298 3808 [ 07E2B41540666199AF5FC03AF43C1758 ] AMPPAL C:\Windows\system32\DRIVERS\AMPPAL.sys
12:17:57.0299 3808 AMPPAL - ok
12:17:57.0317 3808 [ 07E2B41540666199AF5FC03AF43C1758 ] AMPPALP C:\Windows\system32\DRIVERS\amppal.sys
12:17:57.0318 3808 AMPPALP - ok
12:17:57.0439 3808 [ 0C3F9F8BC58CCBFBBC07B59A5F46BB12 ] AMPPALR3 C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
12:17:57.0443 3808 AMPPALR3 - ok
12:17:57.0467 3808 [ AEA177F783E20150ACE5383EE368DA19 ] AppID C:\Windows\system32\drivers\appid.sys
12:17:57.0468 3808 AppID - ok
12:17:57.0502 3808 [ 62A9C86CB6085E20DB4823E4E97826F5 ] AppIDSvc C:\Windows\System32\appidsvc.dll
12:17:57.0503 3808 AppIDSvc - ok
12:17:57.0507 3808 [ FB1959012294D6AD43E5304DF65E3C26 ] Appinfo C:\Windows\System32\appinfo.dll
12:17:57.0508 3808 Appinfo - ok
12:17:57.0542 3808 [ A45D184DF6A8803DA13A0B329517A64A ] AppMgmt C:\Windows\System32\appmgmts.dll
12:17:57.0543 3808 AppMgmt - ok
12:17:57.0566 3808 [ 2932004F49677BD84DBC72EDB754FFB3 ] arc C:\Windows\system32\drivers\arc.sys
12:17:57.0566 3808 arc - ok
12:17:57.0572 3808 [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7 ] arcsas C:\Windows\system32\drivers\arcsas.sys
12:17:57.0573 3808 arcsas - ok
12:17:57.0634 3808 [ B347D2FEAE2D063943F16EC98634AB89 ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
12:17:57.0635 3808 aswMonFlt - ok
12:17:57.0701 3808 [ 769C65057212FB5004679E02EF8145C0 ] aswRdr C:\Windows\system32\drivers\aswRdr2.sys
12:17:57.0702 3808 aswRdr - ok
12:17:57.0750 3808 [ 84B4C00AE8CDFC52CF68F322D821F34C ] aswRvrt C:\Windows\system32\drivers\aswRvrt.sys
12:17:57.0751 3808 aswRvrt - ok
12:17:57.0799 3808 [ 3A50AD6AE8D8A0F78F03316F5B93FE45 ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
12:17:57.0804 3808 aswSnx - ok
12:17:57.0828 3808 [ B6381B4DC603C558419641BA969930E0 ] aswSP C:\Windows\system32\drivers\aswSP.sys
12:17:57.0831 3808 aswSP - ok
12:17:57.0894 3808 [ 9529E946B8496C1605A9188FFD49DED8 ] aswStm C:\Windows\system32\drivers\aswStm.sys
12:17:57.0895 3808 aswStm - ok
12:17:57.0936 3808 [ 680448905E27BBC6587ADB28597640D6 ] aswVmm C:\Windows\system32\drivers\aswVmm.sys
12:17:57.0937 3808 aswVmm - ok
12:17:57.0971 3808 [ ADD2ADE1C2B285AB8378D2DAAF991481 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
12:17:57.0972 3808 AsyncMac - ok
12:17:57.0976 3808 [ 338C86357871C167A96AB976519BF59E ] atapi C:\Windows\system32\drivers\atapi.sys
12:17:57.0977 3808 atapi - ok
12:17:58.0023 3808 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
12:17:58.0027 3808 AudioEndpointBuilder - ok
12:17:58.0036 3808 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] Audiosrv C:\Windows\System32\Audiosrv.dll
12:17:58.0039 3808 Audiosrv - ok
12:17:58.0208 3808 [ BEA8D0FA8805CC2E6BB49728166699C7 ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
12:17:58.0209 3808 avast! Antivirus - ok
12:17:58.0243 3808 [ 6E30D02AAC9CAC84F421622E3A2F6178 ] AxInstSV C:\Windows\System32\AxInstSV.dll
12:17:58.0244 3808 AxInstSV - ok
12:17:58.0281 3808 [ 1A231ABEC60FD316EC54C66715543CEC ] b06bdrv C:\Windows\system32\drivers\bxvbdx.sys
12:17:58.0284 3808 b06bdrv - ok
12:17:58.0312 3808 [ BD8869EB9CDE6BBE4508D869929869EE ] b57nd60x C:\Windows\system32\DRIVERS\b57nd60x.sys
12:17:58.0314 3808 b57nd60x - ok
12:17:58.0351 3808 [ EE1E9C3BB8228AE423DD38DB69128E71 ] BDESVC C:\Windows\System32\bdesvc.dll
12:17:58.0353 3808 BDESVC - ok
12:17:58.0357 3808 [ 505506526A9D467307B3C393DEDAF858 ] Beep C:\Windows\system32\drivers\Beep.sys
12:17:58.0358 3808 Beep - ok
12:17:58.0374 3808 [ 1E2BAC209D184BB851E1A187D8A29136 ] BFE C:\Windows\System32\bfe.dll
12:17:58.0378 3808 BFE - ok
12:17:58.0420 3808 [ E585445D5021971FAE10393F0F1C3961 ] BITS C:\Windows\System32\qmgr.dll
12:17:58.0427 3808 BITS - ok
12:17:58.0431 3808 [ 2287078ED48FCFC477B05B20CF38F36F ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
12:17:58.0432 3808 blbdrive - ok
12:17:58.0436 3808 [ FCAFAEF6798D7B51FF029F99A9898961 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
12:17:58.0437 3808 bowser - ok
12:17:58.0443 3808 [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo C:\Windows\system32\drivers\BrFiltLo.sys
12:17:58.0444 3808 BrFiltLo - ok
12:17:58.0448 3808 [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp C:\Windows\system32\drivers\BrFiltUp.sys
12:17:58.0449 3808 BrFiltUp - ok
12:17:58.0490 3808 [ 6E11F33D14D020F58D5E02E4D67DFA19 ] Browser C:\Windows\System32\browser.dll
12:17:58.0491 3808 Browser - ok
12:17:58.0513 3808 [ 845B8CE732E67F3B4133164868C666EA ] Brserid C:\Windows\System32\Drivers\Brserid.sys
12:17:58.0515 3808 Brserid - ok
12:17:58.0519 3808 [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
12:17:58.0520 3808 BrSerWdm - ok
12:17:58.0525 3808 [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
12:17:58.0526 3808 BrUsbMdm - ok
12:17:58.0529 3808 [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
12:17:58.0530 3808 BrUsbSer - ok
12:17:58.0560 3808 [ 2865A5C8E98C70C605F417908CEBB3A4 ] BthEnum C:\Windows\system32\DRIVERS\BthEnum.sys
12:17:58.0560 3808 BthEnum - ok
12:17:58.0565 3808 [ ED3DF7C56CE0084EB2034432FC56565A ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
12:17:58.0566 3808 BTHMODEM - ok
12:17:58.0578 3808 [ AD1872E5829E8A2C3B5B4B641C3EAB0E ] BthPan C:\Windows\system32\DRIVERS\bthpan.sys
12:17:58.0579 3808 BthPan - ok
12:17:58.0610 3808 [ 195C41CC67E9E1CEDD960CCB74925920 ] BTHPORT C:\Windows\system32\Drivers\BTHport.sys
12:17:58.0613 3808 BTHPORT - ok
12:17:58.0645 3808 [ 1DF19C96EEF6C29D1C3E1A8678E07190 ] bthserv C:\Windows\system32\bthserv.dll
12:17:58.0646 3808 bthserv - ok
12:17:58.0704 3808 [ B445F65A329A78CE59DA4081C698094E ] BTHSSecurityMgr C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
12:17:58.0705 3808 BTHSSecurityMgr - ok
12:17:58.0725 3808 [ 43B3206DD654E783AA7E4EAD340A43B8 ] BTHUSB C:\Windows\system32\Drivers\BTHUSB.sys
12:17:58.0725 3808 BTHUSB - ok
12:17:58.0769 3808 [ 77EA11B065E0A8AB902D78145CA51E10 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
12:17:58.0770 3808 cdfs - ok
12:17:58.0783 3808 [ BE167ED0FDB9C1FA1133953C18D5A6C9 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
12:17:58.0784 3808 cdrom - ok
12:17:58.0816 3808 [ 319C6B309773D063541D01DF8AC6F55F ] CertPropSvc C:\Windows\System32\certprop.dll
12:17:58.0817 3808 CertPropSvc - ok
12:17:58.0829 3808 [ 3FE3FE94A34DF6FB06E6418D0F6A0060 ] circlass C:\Windows\system32\drivers\circlass.sys
12:17:58.0830 3808 circlass - ok
12:17:58.0849 3808 [ 635181E0E9BBF16871BF5380D71DB02D ] CLFS C:\Windows\system32\CLFS.sys
12:17:58.0851 3808 CLFS - ok
12:17:58.0999 3808 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
12:17:59.0000 3808 clr_optimization_v2.0.50727_32 - ok
12:17:59.0189 3808 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
12:17:59.0190 3808 clr_optimization_v4.0.30319_32 - ok
12:17:59.0220 3808 [ DEA805815E587DAD1DD2C502220B5616 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
12:17:59.0221 3808 CmBatt - ok
12:17:59.0224 3808 [ C537B1DB64D495B9B4717B4D6D9EDBF2 ] cmdide C:\Windows\system32\drivers\cmdide.sys
12:17:59.0225 3808 cmdide - ok
12:17:59.0240 3808 [ 1B675691ED940766149C93E8F4488D68 ] CNG C:\Windows\system32\Drivers\cng.sys
12:17:59.0243 3808 CNG - ok
12:17:59.0339 3808 [ 223EDBBA45252DBF0A5CDE5D71C8629B ] CnxtHdAudService C:\Windows\system32\drivers\CHDRT32.sys
12:17:59.0347 3808 CnxtHdAudService - ok
12:17:59.0383 3808 [ A6023D3823C37043986713F118A89BEE ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
12:17:59.0384 3808 Compbatt - ok
12:17:59.0401 3808 [ CBE8C58A8579CFE5FCCF809E6F114E89 ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys
12:17:59.0402 3808 CompositeBus - ok
12:17:59.0412 3808 COMSysApp - ok
12:17:59.0513 3808 [ 88F2504C97B0AD50B2C4EEE2BFD70A94 ] cphs C:\Windows\system32\IntelCpHeciSvc.exe
12:17:59.0517 3808 cphs - ok
12:17:59.0521 3808 [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
12:17:59.0522 3808 crcdisk - ok
12:17:59.0561 3808 [ A585BEBF7D054BD9618EDA0922D5484A ] CryptSvc C:\Windows\system32\cryptsvc.dll
12:17:59.0563 3808 CryptSvc - ok
12:17:59.0589 3808 [ 3C2177A897B4CA2788C6FB0C3FD81D4B ] CSC C:\Windows\system32\drivers\csc.sys
12:17:59.0592 3808 CSC - ok
12:17:59.0603 3808 [ 15F93B37F6801943360D9EB42485D5D3 ] CscService C:\Windows\System32\cscsvc.dll
12:17:59.0608 3808 CscService - ok
12:17:59.0670 3808 [ 801D08CD4568D72957346663655F866A ] CxAudMsg C:\Windows\system32\CxAudMsg32.exe
12:17:59.0672 3808 CxAudMsg - ok
12:17:59.0702 3808 [ 7660F01D3B38ACA1747E397D21D790AF ] DcomLaunch C:\Windows\system32\rpcss.dll
12:17:59.0708 3808 DcomLaunch - ok
12:17:59.0729 3808 [ 8D6E10A2D9A5EED59562D9B82CF804E1 ] defragsvc C:\Windows\System32\defragsvc.dll
12:17:59.0732 3808 defragsvc - ok
12:17:59.0754 3808 [ F024449C97EC1E464AAFFDA18593DB88 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
12:17:59.0755 3808 DfsC - ok
12:17:59.0813 3808 DgiVecp - ok
12:17:59.0848 3808 [ E9E01EB683C132F7FA27CD607B8A2B63 ] Dhcp C:\Windows\system32\dhcpcore.dll
12:17:59.0850 3808 Dhcp - ok
12:17:59.0854 3808 [ 1A050B0274BFB3890703D490F330C0DA ] discache C:\Windows\system32\drivers\discache.sys
12:17:59.0855 3808 discache - ok
12:17:59.0873 3808 [ 565003F326F99802E68CA78F2A68E9FF ] Disk C:\Windows\system32\drivers\disk.sys
12:17:59.0874 3808 Disk - ok
12:17:59.0893 3808 [ 2A958EF85DB1B61FFCA65044FA4BCE9E ] dmvsc C:\Windows\system32\drivers\dmvsc.sys
12:17:59.0894 3808 dmvsc - ok
12:17:59.0928 3808 [ 2FE30D71919C51131405797620E0A714 ] Dnscache C:\Windows\System32\dnsrslvr.dll
12:17:59.0930 3808 Dnscache - ok
12:17:59.0942 3808 [ 366BA8FB4B7BB7435E3B9EACB3843F67 ] dot3svc C:\Windows\System32\dot3svc.dll
12:17:59.0945 3808 dot3svc - ok
12:17:59.0958 3808 [ 8EC04CA86F1D68DA9E11952EB85973D6 ] DPS C:\Windows\system32\dps.dll
12:17:59.0961 3808 DPS - ok
12:17:59.0987 3808 [ B918E7C5F9BF77202F89E1A9539F2EB4 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
12:17:59.0988 3808 drmkaud - ok
12:18:00.0016 3808 [ 23F5D28378A160352BA8F817BD8C71CB ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
12:18:00.0021 3808 DXGKrnl - ok
12:18:00.0033 3808 [ 8600142FA91C1B96367D3300AD0F3F3A ] EapHost C:\Windows\System32\eapsvc.dll
12:18:00.0035 3808 EapHost - ok
12:18:00.0104 3808 [ 024E1B5CAC09731E4D868E64DBFB4AB0 ] ebdrv C:\Windows\system32\drivers\evbdx.sys
12:18:00.0122 3808 ebdrv - ok
12:18:00.0169 3808 [ F42309C4191C506B71DB5D1126D26318 ] EFS C:\Windows\System32\lsass.exe
12:18:00.0172 3808 EFS - ok
12:18:00.0243 3808 [ A8C362018EFC87BEB013EE28F29C0863 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
12:18:00.0247 3808 ehRecvr - ok
12:18:00.0251 3808 [ D389BFF34F80CAEDE417BF9D1507996A ] ehSched C:\Windows\ehome\ehsched.exe
12:18:00.0252 3808 ehSched - ok
12:18:00.0305 3808 [ B83BDCCBACB65BAA9E20888DD0083A16 ] ElbyCDIO C:\Windows\system32\Drivers\ElbyCDIO.sys
12:18:00.0306 3808 ElbyCDIO - ok
12:18:00.0347 3808 [ 0ED67910C8C326796FAA00B2BF6D9D3C ] elxstor C:\Windows\system32\drivers\elxstor.sys
12:18:00.0350 3808 elxstor - ok
12:18:00.0354 3808 [ 8FC3208352DD3912C94367A206AB3F11 ] ErrDev C:\Windows\system32\drivers\errdev.sys
12:18:00.0355 3808 ErrDev - ok
12:18:00.0399 3808 [ F6916EFC29D9953D5D0DF06882AE8E16 ] EventSystem C:\Windows\system32\es.dll
12:18:00.0402 3808 EventSystem - ok
12:18:00.0573 3808 [ 9A2144216047B662C1238C846AABE3F1 ] EvtEng C:\Program Files\Intel\WiFi\bin\EvtEng.exe
12:18:00.0577 3808 EvtEng - ok
12:18:00.0614 3808 [ 2DC9108D74081149CC8B651D3A26207F ] exfat C:\Windows\system32\drivers\exfat.sys
12:18:00.0615 3808 exfat - ok
12:18:00.0626 3808 [ 7E0AB74553476622FB6AE36F73D97D35 ] fastfat C:\Windows\system32\drivers\fastfat.sys
12:18:00.0628 3808 fastfat - ok
12:18:00.0655 3808 [ 967EA5B213E9984CBE270205DF37755B ] Fax C:\Windows\system32\fxssvc.exe
12:18:00.0660 3808 Fax - ok
12:18:00.0664 3808 [ E817A017F82DF2A1F8CFDBDA29388B29 ] fdc C:\Windows\system32\drivers\fdc.sys
12:18:00.0665 3808 fdc - ok
12:18:00.0676 3808 [ F3222C893BD2F5821A0179E5C71E88FB ] fdPHost C:\Windows\system32\fdPHost.dll
12:18:00.0678 3808 fdPHost - ok
12:18:00.0682 3808 [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B ] FDResPub C:\Windows\system32\fdrespub.dll
12:18:00.0684 3808 FDResPub - ok
12:18:00.0688 3808 [ 6CF00369C97F3CF563BE99BE983D13D8 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
12:18:00.0689 3808 FileInfo - ok
12:18:00.0693 3808 [ 42C51DC94C91DA21CB9196EB64C45DB9 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
12:18:00.0694 3808 Filetrace - ok
12:18:00.0698 3808 [ 87907AA70CB3C56600F1C2FB8841579B ] flpydisk C:\Windows\system32\drivers\flpydisk.sys
12:18:00.0699 3808 flpydisk - ok
12:18:00.0710 3808 [ 7520EC808E0C35E0EE6F841294316653 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
12:18:00.0711 3808 FltMgr - ok
12:18:00.0743 3808 [ FA6C66E4364D7DA57AADE5DCC03BB999 ] FontCache C:\Windows\system32\FntCache.dll
12:18:00.0749 3808 FontCache - ok
12:18:00.0799 3808 [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
12:18:00.0800 3808 FontCache3.0.0.0 - ok
12:18:00.0805 3808 [ 1A16B57943853E598CFF37FE2B8CBF1D ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
12:18:00.0806 3808 FsDepends - ok
12:18:00.0810 3808 [ A574B4360E438977038AAE4BF60D79A2 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
12:18:00.0811 3808 Fs_Rec - ok
12:18:00.0831 3808 [ 8A73E79089B282100B9393B644CB853B ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
12:18:00.0832 3808 fvevol - ok
12:18:00.0846 3808 [ 65EE0C7A58B65E74AE05637418153938 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
12:18:00.0847 3808 gagp30kx - ok
12:18:00.0867 3808 [ E897EAF5ED6BA41E081060C9B447A673 ] gpsvc C:\Windows\System32\gpsvc.dll
12:18:00.0872 3808 gpsvc - ok
12:18:00.0951 3808 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
12:18:00.0953 3808 gupdate - ok
12:18:00.0985 3808 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
12:18:00.0986 3808 gupdatem - ok
12:18:01.0002 3808 [ C44E3C2BAB6837DB337DDEE7544736DB ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
12:18:01.0003 3808 hcw85cir - ok
12:18:01.0031 3808 [ A5EF29D5315111C80A5C1ABAD14C8972 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
12:18:01.0033 3808 HdAudAddService - ok
12:18:01.0038 3808 [ 9036377B8A6C15DC2EEC53E489D159B5 ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
12:18:01.0039 3808 HDAudBus - ok
12:18:01.0043 3808 [ 1D58A7F3E11A9731D0EAAAA8405ACC36 ] HidBatt C:\Windows\system32\drivers\HidBatt.sys
12:18:01.0044 3808 HidBatt - ok
12:18:01.0048 3808 [ 89448F40E6DF260C206A193A4683BA78 ] HidBth C:\Windows\system32\drivers\hidbth.sys
12:18:01.0050 3808 HidBth - ok
12:18:01.0057 3808 [ CF50B4CF4A4F229B9F3C08351F99CA5E ] HidIr C:\Windows\system32\drivers\hidir.sys
12:18:01.0058 3808 HidIr - ok
12:18:01.0077 3808 [ 2BC6F6A1992B3A77F5F41432CA6B3B6B ] hidserv C:\Windows\system32\hidserv.dll
12:18:01.0079 3808 hidserv - ok
12:18:01.0094 3808 [ 10C19F8290891AF023EAEC0832E1EB4D ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
12:18:01.0095 3808 HidUsb - ok
12:18:01.0116 3808 [ 196B4E3F4CCCC24AF836CE58FACBB699 ] hkmsvc C:\Windows\system32\kmsvc.dll
12:18:01.0118 3808 hkmsvc - ok
12:18:01.0146 3808 [ 6658F4404DE03D75FE3BA09F7ABA6A30 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
12:18:01.0149 3808 HomeGroupListener - ok
12:18:01.0178 3808 [ DBC02D918FFF1CAD628ACBE0C0EAA8E8 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
12:18:01.0182 3808 HomeGroupProvider - ok
12:18:01.0200 3808 [ 295FDC419039090EB8B49FFDBB374549 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
12:18:01.0201 3808 HpSAMD - ok
12:18:01.0221 3808 [ 871917B07A141BFF43D76D8844D48106 ] HTTP C:\Windows\system32\drivers\HTTP.sys
12:18:01.0224 3808 HTTP - ok
12:18:01.0228 3808 [ 0C4E035C7F105F1299258C90886C64C5 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
12:18:01.0229 3808 hwpolicy - ok
12:18:01.0238 3808 [ F151F0BDC47F4A28B1B20A0818EA36D6 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
12:18:01.0239 3808 i8042prt - ok
12:18:01.0248 3808 [ A3CAE5D281DB4CFF7CFF8233507EE5AD ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
12:18:01.0251 3808 iaStorV - ok
12:18:01.0291 3808 [ E34EF65898A3529BE7C2AC9CB77B09D3 ] IBMPMDRV C:\Windows\system32\DRIVERS\ibmpmdrv.sys
12:18:01.0292 3808 IBMPMDRV - ok
12:18:01.0305 3808 [ C9D46BEA56C89778AFF1494F9CCF66AC ] IBMPMSVC C:\Windows\system32\ibmpmsvc.exe
12:18:01.0307 3808 IBMPMSVC - ok
12:18:01.0368 3808 [ 83FF82FE209E7997067B375DAD6CF23D ] ICCS C:\Program Files\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
12:18:01.0369 3808 ICCS - ok
12:18:01.0433 3808 [ C521D7EB6497BB1AF6AFA89E322FB43C ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
12:18:01.0438 3808 idsvc - ok
12:18:01.0591 3808 [ D20B64A317906B94D71069BFED0EC2A7 ] igfx C:\Windows\system32\DRIVERS\igdkmd32.sys
12:18:01.0612 3808 igfx - ok
12:18:01.0649 3808 [ 4173FF5708F3236CF25195FECD742915 ] iirsp C:\Windows\system32\drivers\iirsp.sys
12:18:01.0650 3808 iirsp - ok
12:18:01.0686 3808 [ F95622F161474511B8D80D6B093AA610 ] IKEEXT C:\Windows\System32\ikeext.dll
12:18:01.0692 3808 IKEEXT - ok
12:18:01.0765 3808 [ 6A6E1B319A47FA7AF2AE6B6815AE9854 ] IntcDAud C:\Windows\system32\DRIVERS\IntcDAud.sys
12:18:01.0767 3808 IntcDAud - ok
12:18:01.0833 3808 [ B6B591AF0D28E0BF347D7064044D9140 ] Intel(R) Capability Licensing Service Interface C:\Program Files\Intel\iCLS Client\HeciServer.exe
12:18:01.0837 3808 Intel(R) Capability Licensing Service Interface - ok
12:18:01.0857 3808 [ 6ABAB9938AF5F9D59E388B80D7A22A75 ] Intel(R) Capability Licensing Service TCP IP Interface C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
12:18:01.0861 3808 Intel(R) Capability Licensing Service TCP IP Interface - ok
12:18:01.0916 3808 [ C4C5DEB8AC4D8E623CA1CC8981A2AE1B ] Intel(R) ME Service C:\Program Files\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
12:18:01.0917 3808 Intel(R) ME Service - ok
12:18:01.0938 3808 [ A0F12F2C9BA6C72F3987CE780E77C130 ] intelide C:\Windows\system32\drivers\intelide.sys
12:18:01.0939 3808 intelide - ok
12:18:01.0978 3808 [ 3B514D27BFC4ACCB4037BC6685F766E0 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
12:18:01.0978 3808 intelppm - ok
12:18:02.0002 3808 [ ACB364B9075A45C0736E5C47BE5CAE19 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
12:18:02.0004 3808 IPBusEnum - ok
12:18:02.0022 3808 [ 709D1761D3B19A932FF0238EA6D50200 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
12:18:02.0023 3808 IpFilterDriver - ok
12:18:02.0034 3808 [ 4D65A07B795D6674312F879D09AA7663 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
12:18:02.0039 3808 iphlpsvc - ok
12:18:02.0043 3808 [ 4BD7134618C1D2A27466A099062547BF ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
12:18:02.0044 3808 IPMIDRV - ok
12:18:02.0049 3808 [ A5FA468D67ABCDAA36264E463A7BB0CD ] IPNAT C:\Windows\system32\drivers\ipnat.sys
12:18:02.0050 3808 IPNAT - ok
12:18:02.0054 3808 [ 42996CFF20A3084A56017B7902307E9F ] IRENUM C:\Windows\system32\drivers\irenum.sys
12:18:02.0055 3808 IRENUM - ok
12:18:02.0059 3808 [ 1F32BB6B38F62F7DF1A7AB7292638A35 ] isapnp C:\Windows\system32\drivers\isapnp.sys
12:18:02.0060 3808 isapnp - ok
12:18:02.0089 3808 [ CB7A9ABB12B8415BCE5D74994C7BA3AE ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
12:18:02.0091 3808 iScsiPrt - ok
12:18:02.0156 3808 [ 1E6403EC6B1143F66DB08C7C811AF718 ] iusb3hcs C:\Windows\system32\DRIVERS\iusb3hcs.sys
12:18:02.0157 3808 iusb3hcs - ok
12:18:02.0179 3808 [ 762D729942D3DF15364FD858827DC53B ] iusb3hub C:\Windows\system32\DRIVERS\iusb3hub.sys
12:18:02.0182 3808 iusb3hub - ok
12:18:02.0224 3808 [ 531967D3CB82747B6980EA7A8E2A2671 ] iusb3xhc C:\Windows\system32\DRIVERS\iusb3xhc.sys
12:18:02.0229 3808 iusb3xhc - ok
12:18:02.0275 3808 [ A3B59E5887B294F2ED06A522F0FDC9D3 ] jhi_service C:\Program Files\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
12:18:02.0276 3808 jhi_service - ok
12:18:02.0325 3808 [ ADEF52CA1AEAE82B50DF86B56413107E ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
12:18:02.0326 3808 kbdclass - ok
12:18:02.0338 3808 [ 9E3CED91863E6EE98C24794D05E27A71 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
12:18:02.0339 3808 kbdhid - ok
12:18:02.0358 3808 [ F42309C4191C506B71DB5D1126D26318 ] KeyIso C:\Windows\system32\lsass.exe
12:18:02.0360 3808 KeyIso - ok
12:18:02.0365 3808 [ 412CEA1AA78CC02A447F5C9E62B32FF1 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
12:18:02.0366 3808 KSecDD - ok
12:18:02.0378 3808 [ 26C046977E85B95036453D7B88BA1820 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
12:18:02.0380 3808 KSecPkg - ok
12:18:02.0406 3808 [ 89A7B9CC98D0D80C6F31B91C0A310FCD ] KtmRm C:\Windows\system32\msdtckrm.dll
12:18:02.0411 3808 KtmRm - ok
12:18:02.0445 3808 [ D64AF876D53ECA3668BB97B51B4E70AB ] LanmanServer C:\Windows\system32\srvsvc.dll
12:18:02.0450 3808 LanmanServer - ok
12:18:02.0472 3808 [ 58405E4F68BA8E4057C6E914F326ABA2 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
12:18:02.0477 3808 LanmanWorkstation - ok
12:18:02.0606 3808 [ C57D9A5DC8075D6BDC5C0360191CC366 ] LENOVO.CAMMUTE C:\Program Files\Lenovo\Communications Utility\CAMMUTE.exe
12:18:02.0607 3808 LENOVO.CAMMUTE - ok
12:18:02.0644 3808 [ F43BD5D437A3F8EA438A23FB04ABBB73 ] LENOVO.MICMUTE C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe
12:18:02.0645 3808 LENOVO.MICMUTE - ok
12:18:02.0722 3808 [ E4AEC51E55A8351BFBF8567663862BAA ] LENOVO.TPKNRSVC C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe
12:18:02.0723 3808 LENOVO.TPKNRSVC - ok
12:18:02.0739 3808 [ DCB08CA5FF82E764E29516B0C4DA4674 ] LENOVO.TVTVCAM C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe
12:18:02.0741 3808 LENOVO.TVTVCAM - ok
12:18:02.0775 3808 [ 1480D14F8B2E8F7C134AD305BE85DF05 ] Lenovo.VIRTSCRLSVC C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe
12:18:02.0777 3808 Lenovo.VIRTSCRLSVC - ok
12:18:02.0837 3808 [ F7611EC07349979DA9B0AE1F18CCC7A6 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
12:18:02.0838 3808 lltdio - ok
12:18:02.0861 3808 [ 5700673E13A2117FA3B9020C852C01E2 ] lltdsvc C:\Windows\System32\lltdsvc.dll
12:18:02.0864 3808 lltdsvc - ok
12:18:02.0868 3808 [ 55CA01BA19D0006C8F2639B6C045E08B ] lmhosts C:\Windows\System32\lmhsvc.dll
12:18:02.0871 3808 lmhosts - ok
12:18:02.0921 3808 [ 3142FC089FE8FCF79B442B91BC4F0C16 ] LMS C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
12:18:02.0923 3808 LMS - ok
12:18:02.0941 3808 [ EB119A53CCF2ACC000AC71B065B78FEF ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
12:18:02.0943 3808 LSI_FC - ok
12:18:02.0947 3808 [ 8ADE1C877256A22E49B75D1CC9161F9C ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
12:18:02.0949 3808 LSI_SAS - ok
12:18:02.0953 3808 [ DC9DC3D3DAA0E276FD2EC262E38B11E9 ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys
12:18:02.0954 3808 LSI_SAS2 - ok
12:18:02.0967 3808 [ 0A036C7D7CAB643A7F07135AC47E0524 ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
12:18:02.0969 3808 LSI_SCSI - ok
12:18:02.0983 3808 [ 6703E366CC18D3B6E534F5CF7DF39CEE ] luafv C:\Windows\system32\drivers\luafv.sys
12:18:02.0984 3808 luafv - ok
12:18:03.0027 3808 [ 0C6EA0109CFEDF441F06D031E9A8D1A9 ] MBAMProtector C:\Windows\system32\drivers\mbam.sys
12:18:03.0027 3808 MBAMProtector - ok
12:18:03.0097 3808 [ 0E08BDD7326E657D59DB40BAD23D8169 ] MBAMScheduler C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe
12:18:03.0108 3808 MBAMScheduler - ok
12:18:03.0178 3808 [ A8E7F3DB083EB0839DFC1C763CDD2594 ] MBAMService C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe
12:18:03.0183 3808 MBAMService - ok
12:18:03.0255 3808 [ 661B911FA04E73FB073FF9B1C9BD2E05 ] MBAMSwissArmy C:\Windows\system32\drivers\MBAMSwissArmy.sys
12:18:03.0257 3808 MBAMSwissArmy - ok
12:18:03.0340 3808 [ 18898A87CBA96DEA2074C19E140938A8 ] MBAMWebAccessControl C:\Windows\system32\drivers\mwac.sys
12:18:03.0341 3808 MBAMWebAccessControl - ok
12:18:03.0372 3808 [ BFB9EE8EE977EFE85D1A3105ABEF6DD1 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
12:18:03.0375 3808 Mcx2Svc - ok
12:18:03.0403 3808 [ 0FFF5B045293002AB38EB1FD1FC2FB74 ] megasas C:\Windows\system32\drivers\megasas.sys
12:18:03.0404 3808 megasas - ok
12:18:03.0431 3808 [ DCBAB2920C75F390CAF1D29F675D03D6 ] MegaSR C:\Windows\system32\drivers\MegaSR.sys
12:18:03.0432 3808 MegaSR - ok
12:18:03.0484 3808 [ F053F1D48C8A92BDFA72654D0DCDF5AB ] MEI C:\Windows\system32\DRIVERS\HECI.sys
12:18:03.0485 3808 MEI - ok
12:18:03.0652 3808 Microsoft SharePoint Workspace Audit Service - ok
12:18:03.0669 3808 [ 146B6F43A673379A3C670E86D89BE5EA ] MMCSS C:\Windows\system32\mmcss.dll
12:18:03.0673 3808 MMCSS - ok
12:18:03.0676 3808 [ F001861E5700EE84E2D4E52C712F4964 ] Modem C:\Windows\system32\drivers\modem.sys
12:18:03.0677 3808 Modem - ok
12:18:03.0694 3808 [ 79D10964DE86B292320E9DFE02282A23 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
12:18:03.0695 3808 monitor - ok
12:18:03.0712 3808 [ FB18CC1D4C2E716B6B903B0AC0CC0609 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
12:18:03.0713 3808 mouclass - ok
12:18:03.0728 3808 [ 2C388D2CD01C9042596CF3C8F3C7B24D ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
12:18:03.0729 3808 mouhid - ok
12:18:03.0748 3808 [ FC8771F45ECCCFD89684E38842539B9B ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
12:18:03.0749 3808 mountmgr - ok
12:18:03.0793 3808 [ AEE4E9CC59CDEB55B1ECB0E596E796BE ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
12:18:03.0794 3808 MozillaMaintenance - ok
12:18:03.0816 3808 [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0 ] mpio C:\Windows\system32\drivers\mpio.sys
12:18:03.0817 3808 mpio - ok
12:18:03.0822 3808 [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
12:18:03.0823 3808 mpsdrv - ok
12:18:03.0843 3808 [ 9835584E999D25004E1EE8E5F3E3B881 ] MpsSvc C:\Windows\system32\mpssvc.dll
12:18:03.0849 3808 MpsSvc - ok
12:18:03.0854 3808 [ CEB46AB7C01C9F825F8CC6BABC18166A ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
12:18:03.0855 3808 MRxDAV - ok
12:18:03.0860 3808 [ B272B4C3E085EA860C12F2E4FAF2FFA2 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
12:18:03.0861 3808 mrxsmb - ok
12:18:03.0867 3808 [ 9AC33EF26C8A3AD0F117D00EB7301D03 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
12:18:03.0869 3808 mrxsmb10 - ok
12:18:03.0874 3808 [ E0ABDB5ED7E199E242A7D028E76C1D3A ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
12:18:03.0875 3808 mrxsmb20 - ok
12:18:03.0879 3808 [ 012C5F4E9349E711E11E0F19A8589F0A ] msahci C:\Windows\system32\drivers\msahci.sys
12:18:03.0880 3808 msahci - ok
12:18:03.0885 3808 [ 55055F8AD8BE27A64C831322A780A228 ] msdsm C:\Windows\system32\drivers\msdsm.sys
12:18:03.0886 3808 msdsm - ok
12:18:03.0923 3808 [ E1BCE74A3BD9902B72599C0192A07E27 ] MSDTC C:\Windows\System32\msdtc.exe
12:18:03.0927 3808 MSDTC - ok
12:18:03.0957 3808 [ DAEFB28E3AF5A76ABCC2C3078C07327F ] Msfs C:\Windows\system32\drivers\Msfs.sys
12:18:03.0958 3808 Msfs - ok
12:18:03.0962 3808 [ 3E1E5767043C5AF9367F0056295E9F84 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
12:18:03.0963 3808 mshidkmdf - ok
12:18:03.0984 3808 [ 0A4E5757AE09FA9622E3158CC1AEF114 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
12:18:03.0985 3808 msisadrv - ok
12:18:04.0011 3808 [ 90F7D9E6B6F27E1A707D4A297F077828 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
12:18:04.0013 3808 MSiSCSI - ok
12:18:04.0017 3808 msiserver - ok
12:18:04.0037 3808 [ 8C0860D6366AAFFB6C5BB9DF9448E631 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
12:18:04.0038 3808 MSKSSRV - ok
12:18:04.0042 3808 [ 3EA8B949F963562CEDBB549EAC0C11CE ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
12:18:04.0043 3808 MSPCLOCK - ok
12:18:04.0047 3808 [ F456E973590D663B1073E9C463B40932 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
12:18:04.0048 3808 MSPQM - ok
12:18:04.0055 3808 [ 0E008FC4819D238C51D7C93E7B41E560 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
12:18:04.0057 3808 MsRPC - ok
12:18:04.0063 3808 [ FC6B9FF600CC585EA38B12589BD4E246 ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
12:18:04.0064 3808 mssmbios - ok
12:18:04.0068 3808 [ B42C6B921F61A6E55159B8BE6CD54A36 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
12:18:04.0069 3808 MSTEE - ok
12:18:04.0116 3808 [ 33599130F44E1F34631CEA241DE8AC84 ] MTConfig C:\Windows\system32\drivers\MTConfig.sys
12:18:04.0117 3808 MTConfig - ok
12:18:04.0121 3808 [ 159FAD02F64E6381758C990F753BCC80 ] Mup C:\Windows\system32\Drivers\mup.sys
12:18:04.0122 3808 Mup - ok
12:18:04.0218 3808 [ 9300C4143511FFC769E2AA49F28CA073 ] MyWiFiDHCPDNS C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
12:18:04.0220 3808 MyWiFiDHCPDNS - ok
12:18:04.0261 3808 [ 61D57A5D7C6D9AFE10E77DAE6E1B445E ] napagent C:\Windows\system32\qagentRT.dll
12:18:04.0266 3808 napagent - ok
12:18:04.0298 3808 [ 26384429FCD85D83746F63E798AB1480 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
12:18:04.0300 3808 NativeWifiP - ok
12:18:04.0328 3808 [ E7C54812A2AAF43316EB6930C1FFA108 ] NDIS C:\Windows\system32\drivers\ndis.sys
12:18:04.0332 3808 NDIS - ok
12:18:04.0338 3808 [ 0E1787AA6C9191D3D319E8BAFE86F80C ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
12:18:04.0339 3808 NdisCap - ok
12:18:04.0355 3808 [ E4A8AEC125A2E43A9E32AFEEA7C9C888 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
12:18:04.0356 3808 NdisTapi - ok
12:18:04.0360 3808 [ D8A65DAFB3EB41CBB622745676FCD072 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
12:18:04.0361 3808 Ndisuio - ok
12:18:04.0379 3808 [ 38FBE267E7E6983311179230FACB1017 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
12:18:04.0381 3808 NdisWan - ok
12:18:04.0400 3808 [ A4BDC541E69674FBFF1A8FF00BE913F2 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
12:18:04.0401 3808 NDProxy - ok
12:18:04.0405 3808 [ 80B275B1CE3B0E79909DB7B39AF74D51 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
12:18:04.0406 3808 NetBIOS - ok
12:18:04.0412 3808 [ 280122DDCF04B378EDD1AD54D71C1E54 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
12:18:04.0414 3808 NetBT - ok
12:18:04.0424 3808 [ F42309C4191C506B71DB5D1126D26318 ] Netlogon C:\Windows\system32\lsass.exe
12:18:04.0427 3808 Netlogon - ok
12:18:04.0468 3808 [ 7CCCFCA7510684768DA22092D1FA4DB2 ] Netman C:\Windows\System32\netman.dll
12:18:04.0473 3808 Netman - ok
12:18:04.0481 3808 [ 8C338238C16777A802D6A9211EB2BA50 ] netprofm C:\Windows\System32\netprofm.dll
12:18:04.0486 3808 netprofm - ok
12:18:04.0515 3808 [ F476EC40033CDB91EFBE73EB99B8362D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
12:18:04.0516 3808 NetTcpPortSharing - ok
12:18:04.0744 3808 [ F20AB30ACF90FDBEE7515358BB1A49D3 ] NETwNs32 C:\Windows\system32\DRIVERS\Netwsn00.sys
12:18:04.0802 3808 NETwNs32 - ok
12:18:04.0837 3808 [ 1D85C4B390B0EE09C7A46B91EFB2C097 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
12:18:04.0838 3808 nfrd960 - ok
12:18:04.0854 3808 [ 912084381D30D8B89EC4E293053F4710 ] NlaSvc C:\Windows\System32\nlasvc.dll
12:18:04.0858 3808 NlaSvc - ok
12:18:04.0862 3808 [ 1DB262A9F8C087E8153D89BEF3D2235F ] Npfs C:\Windows\system32\drivers\Npfs.sys
12:18:04.0863 3808 Npfs - ok
12:18:04.0879 3808 [ BA387E955E890C8A88306D9B8D06BF17 ] nsi C:\Windows\system32\nsisvc.dll
12:18:04.0882 3808 nsi - ok
12:18:04.0886 3808 [ E9A0A4D07E53D8FEA2BB8387A3293C58 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
12:18:04.0887 3808 nsiproxy - ok
12:18:04.0934 3808 [ 33C3093D09017CFE2E219F2472BFF6EB ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
12:18:04.0942 3808 Ntfs - ok
12:18:04.0946 3808 [ F9756A98D69098DCA8945D62858A812C ] Null C:\Windows\system32\drivers\Null.sys
12:18:04.0947 3808 Null - ok
12:18:04.0964 3808 [ AF2EEC9580C1D32FB7EAF105D9784061 ] nvraid C:\Windows\system32\drivers\nvraid.sys
12:18:04.0965 3808 nvraid - ok
12:18:04.0982 3808 [ 9283C58EBAA2618F93482EB5DABCEC82 ] nvstor C:\Windows\system32\drivers\nvstor.sys
12:18:04.0984 3808 nvstor - ok
12:18:04.0989 3808 [ 5A0983915F02BAE73267CC2A041F717D ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
12:18:04.0990 3808 nv_agp - ok
12:18:04.0995 3808 [ 08A70A1F2CDDE9BB49B885CB817A66EB ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
12:18:04.0996 3808 ohci1394 - ok
12:18:05.0050 3808 [ 9D10F99A6712E28F8ACD5641E3A7EA6B ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
12:18:05.0051 3808 ose - ok
12:18:05.0208 3808 [ 358A9CCA612C68EB2F07DDAD4CE1D8D7 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
12:18:05.0234 3808 osppsvc - ok
12:18:05.0270 3808 [ 82A8521DDC60710C3D3D3E7325209BEC ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
12:18:05.0275 3808 p2pimsvc - ok
12:18:05.0302 3808 [ 59C3DDD501E39E006DAC31BF55150D91 ] p2psvc C:\Windows\system32\p2psvc.dll
12:18:05.0307 3808 p2psvc - ok
12:18:05.0311 3808 [ 2EA877ED5DD9713C5AC74E8EA7348D14 ] Parport C:\Windows\system32\drivers\parport.sys
12:18:05.0313 3808 Parport - ok
12:18:05.0317 3808 [ BF8F6AF06DA75B336F07E23AEF97D93B ] partmgr C:\Windows\system32\drivers\partmgr.sys
12:18:05.0318 3808 partmgr - ok
12:18:05.0322 3808 [ EB0A59F29C19B86479D36B35983DAADC ] Parvdm C:\Windows\system32\drivers\parvdm.sys
12:18:05.0323 3808 Parvdm - ok
12:18:05.0329 3808 [ 358AB7956D3160000726574083DFC8A6 ] PcaSvc C:\Windows\System32\pcasvc.dll
12:18:05.0333 3808 PcaSvc - ok
12:18:05.0338 3808 [ 673E55C3498EB970088E812EA820AA8F ] pci C:\Windows\system32\drivers\pci.sys
12:18:05.0340 3808 pci - ok
12:18:05.0357 3808 [ AFE86F419014DB4E5593F69FFE26CE0A ] pciide C:\Windows\system32\drivers\pciide.sys
12:18:05.0358 3808 pciide - ok
12:18:05.0379 3808 [ F396431B31693E71E8A80687EF523506 ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
12:18:05.0381 3808 pcmcia - ok
12:18:05.0385 3808 [ 250F6B43D2B613172035C6747AEEB19F ] pcw C:\Windows\system32\drivers\pcw.sys
12:18:05.0386 3808 pcw - ok
12:18:05.0411 3808 [ 9E0104BA49F4E6973749A02BF41344ED ] PEAUTH C:\Windows\system32\drivers\peauth.sys
12:18:05.0415 3808 PEAUTH - ok
12:18:05.0460 3808 [ AF4D64D2A57B9772CF3801950B8058A6 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll
12:18:05.0469 3808 PeerDistSvc - ok
12:18:05.0522 3808 [ 414BBA67A3DED1D28437EB66AEB8A720 ] pla C:\Windows\system32\pla.dll
12:18:05.0534 3808 pla - ok
12:18:05.0573 3808 [ 92DC6E68D2C856C5C2F21AE9E22112B8 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
12:18:05.0578 3808 PlugPlay - ok
12:18:05.0609 3808 [ 63FF8572611249931EB16BB8EED6AFC8 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
12:18:05.0613 3808 PNRPAutoReg - ok
12:18:05.0620 3808 [ 82A8521DDC60710C3D3D3E7325209BEC ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
12:18:05.0625 3808 PNRPsvc - ok
12:18:05.0647 3808 [ 53946B69BA0836BD95B03759530C81EC ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
12:18:05.0651 3808 PolicyAgent - ok
12:18:05.0657 3808 [ F87D30E72E03D579A5199CCB3831D6EA ] Power C:\Windows\system32\umpo.dll
12:18:05.0662 3808 Power - ok
12:18:05.0767 3808 [ 1E97E8D17D98ED34B2D40BF3F0A56F99 ] Power Manager DBC Service C:\Program Files\ThinkPad\Utilities\PWMDBSVC.EXE
12:18:05.0777 3808 Power Manager DBC Service - ok
12:18:05.0813 3808 [ 631E3E205AD6D86F2AED6A4A8E69F2DB ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
12:18:05.0814 3808 PptpMiniport - ok
12:18:05.0832 3808 [ 85B1E3A0C7585BC4AAE6899EC6FCF011 ] Processor C:\Windows\system32\drivers\processr.sys
12:18:05.0833 3808 Processor - ok
12:18:05.0874 3808 [ 43CA4CCC22D52FB58E8988F0198851D0 ] ProfSvc C:\Windows\system32\profsvc.dll
12:18:05.0879 3808 ProfSvc - ok
12:18:05.0891 3808 [ F42309C4191C506B71DB5D1126D26318 ] ProtectedStorage C:\Windows\system32\lsass.exe
12:18:05.0893 3808 ProtectedStorage - ok
12:18:05.0922 3808 [ 6270CCAE2A86DE6D146529FE55B3246A ] Psched C:\Windows\system32\DRIVERS\pacer.sys
12:18:05.0923 3808 Psched - ok
12:18:05.0989 3808 [ 02354FC1196DA1EF86C3AFFAD9BAFFCD ] PwmEWSvc C:\Program Files\ThinkPad\Utilities\PWMEWSVC.EXE
12:18:05.0999 3808 PwmEWSvc - ok
12:18:06.0068 3808 [ AB95ECF1F6659A60DDC166D8315B0751 ] ql2300 C:\Windows\system32\drivers\ql2300.sys
12:18:06.0076 3808 ql2300 - ok
12:18:06.0081 3808 [ B4DD51DD25182244B86737DC51AF2270 ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
12:18:06.0082 3808 ql40xx - ok
12:18:06.0121 3808 [ 31AC809E7707EB580B2BDB760390765A ] QWAVE C:\Windows\system32\qwave.dll
12:18:06.0125 3808 QWAVE - ok
12:18:06.0130 3808 [ 584078CA1B95CA72DF2A27C336F9719D ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
12:18:06.0131 3808 QWAVEdrv - ok
12:18:06.0135 3808 [ 30A81B53C766D0133BB86D234E5556AB ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
12:18:06.0136 3808 RasAcd - ok
12:18:06.0167 3808 [ 57EC4AEF73660166074D8F7F31C0D4FD ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
12:18:06.0168 3808 RasAgileVpn - ok
12:18:06.0184 3808 [ A60F1839849C0C00739787FD5EC03F13 ] RasAuto C:\Windows\System32\rasauto.dll
12:18:06.0188 3808 RasAuto - ok
12:18:06.0192 3808 [ D9F91EAFEC2815365CBE6D167E4E332A ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
12:18:06.0194 3808 Rasl2tp - ok
12:18:06.0205 3808 [ CB9E04DC05EACF5B9A36CA276D475006 ] RasMan C:\Windows\System32\rasmans.dll
12:18:06.0210 3808 RasMan - ok
12:18:06.0223 3808 [ 0FE8B15916307A6AC12BFB6A63E45507 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
12:18:06.0224 3808 RasPppoe - ok
12:18:06.0257 3808 [ 44101F495A83EA6401D886E7FD70096B ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
12:18:06.0258 3808 RasSstp - ok
12:18:06.0334 3808 [ FA25997E1DDC4F7BFE1997FD3AE0459A ] RCUVCAVS C:\Windows\system32\DRIVERS\RCUVCAVS.sys
12:18:06.0336 3808 RCUVCAVS - ok
12:18:06.0342 3808 [ D528BC58A489409BA40334EBF96A311B ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
12:18:06.0344 3808 rdbss - ok
12:18:06.0365 3808 [ 0D8F05481CB76E70E1DA06EE9F0DA9DF ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
12:18:06.0366 3808 rdpbus - ok
12:18:06.0370 3808 [ 23DAE03F29D253AE74C44F99E515F9A1 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
12:18:06.0371 3808 RDPCDD - ok
12:18:06.0410 3808 [ B973FCFC50DC1434E1970A146F7E3885 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys
12:18:06.0412 3808 RDPDR - ok
12:18:06.0430 3808 [ 5A53CA1598DD4156D44196D200C94B8A ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
12:18:06.0431 3808 RDPENCDD - ok
12:18:06.0437 3808 [ 44B0A53CD4F27D50ED461DAE0C0B4E1F ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
12:18:06.0438 3808 RDPREFMP - ok
12:18:06.0467 3808 [ 244C83332F44589AE98FC347F11B2693 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
12:18:06.0469 3808 RDPWD - ok
12:18:06.0492 3808 [ 518395321DC96FE2C9F0E96AC743B656 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
12:18:06.0493 3808 rdyboost - ok
12:18:06.0573 3808 [ BDB1B3CFBBA844203FE49F02A629A58C ] RegSrvc C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
12:18:06.0575 3808 RegSrvc - ok
12:18:06.0608 3808 [ 7B5E1419717FAC363A31CC302895217A ] RemoteAccess C:\Windows\System32\mprdim.dll
12:18:06.0612 3808 RemoteAccess - ok
12:18:06.0638 3808 [ CB9A8683F4EF2BF99E123D79950D7935 ] RemoteRegistry C:\Windows\system32\regsvc.dll
12:18:06.0642 3808 RemoteRegistry - ok
12:18:06.0672 3808 [ CB928D9E6DAF51879DD6BA8D02F01321 ] RFCOMM C:\Windows\system32\DRIVERS\rfcomm.sys
12:18:06.0673 3808 RFCOMM - ok
12:18:06.0691 3808 [ 78D072F35BC45D9E4E1B61895C152234 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
12:18:06.0695 3808 RpcEptMapper - ok
12:18:06.0715 3808 [ 94D36C0E44677DD26981D2BFEEF2A29D ] RpcLocator C:\Windows\system32\locator.exe
12:18:06.0718 3808 RpcLocator - ok
12:18:06.0735 3808 [ 7660F01D3B38ACA1747E397D21D790AF ] RpcSs C:\Windows\system32\rpcss.dll
12:18:06.0741 3808 RpcSs - ok
12:18:06.0839 3808 [ 26951FBEB3EAB7943CA689E20A2189B4 ] RSP2STOR C:\Windows\system32\DRIVERS\RtsP2Stor.sys
12:18:06.0841 3808 RSP2STOR - ok
12:18:06.0895 3808 [ 032B0D36AD92B582D869879F5AF5B928 ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
12:18:06.0896 3808 rspndr - ok
12:18:06.0935 3808 [ BCB84B430A92AE31940870DF304AE659 ] RTL8167 C:\Windows\system32\DRIVERS\Rt86win7.sys
12:18:06.0940 3808 RTL8167 - ok
12:18:06.0958 3808 [ 7FA7F2E249A5DCBB7970630E15E1F482 ] s3cap C:\Windows\system32\drivers\vms3cap.sys
12:18:06.0959 3808 s3cap - ok
12:18:06.0969 3808 [ F42309C4191C506B71DB5D1126D26318 ] SamSs C:\Windows\system32\lsass.exe
12:18:06.0972 3808 SamSs - ok
12:18:07.0014 3808 [ 0540796C11792D4368C2210992ED714A ] SAService C:\Windows\system32\SAsrv.exe
12:18:07.0020 3808 SAService - ok
12:18:07.0046 3808 [ 05D860DA1040F111503AC416CCEF2BCA ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
12:18:07.0047 3808 sbp2port - ok
12:18:07.0067 3808 [ 8FC518FFE9519C2631D37515A68009C4 ] SCardSvr C:\Windows\System32\SCardSvr.dll
12:18:07.0071 3808 SCardSvr - ok
12:18:07.0075 3808 [ 0693B5EC673E34DC147E195779A4DCF6 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
12:18:07.0076 3808 scfilter - ok
12:18:07.0098 3808 [ A04BB13F8A72F8B6E8B4071723E4E336 ] Schedule C:\Windows\system32\schedsvc.dll
12:18:07.0106 3808 Schedule - ok
12:18:07.0115 3808 [ 319C6B309773D063541D01DF8AC6F55F ] SCPolicySvc C:\Windows\System32\certprop.dll
12:18:07.0116 3808 SCPolicySvc - ok
12:18:07.0134 3808 [ 08236C4BCE5EDD0A0318A438AF28E0F7 ] SDRSVC C:\Windows\System32\SDRSVC.dll
12:18:07.0139 3808 SDRSVC - ok
12:18:07.0179 3808 [ 90A3935D05B494A5A39D37E71F09A677 ] secdrv C:\Windows\system32\drivers\secdrv.sys
12:18:07.0180 3808 secdrv - ok
12:18:07.0195 3808 [ A59B3A4442C52060CC7A85293AA3546F ] seclogon C:\Windows\system32\seclogon.dll
12:18:07.0199 3808 seclogon - ok
12:18:07.0209 3808 [ DCB7FCDCC97F87360F75D77425B81737 ] SENS C:\Windows\System32\sens.dll
12:18:07.0213 3808 SENS - ok
12:18:07.0235 3808 [ 50087FE1EE447009C9CC2997B90DE53F ] SensrSvc C:\Windows\system32\sensrsvc.dll
12:18:07.0240 3808 SensrSvc - ok
12:18:07.0243 3808 [ 9AD8B8B515E3DF6ACD4212EF465DE2D1 ] Serenum C:\Windows\system32\drivers\serenum.sys
12:18:07.0244 3808 Serenum - ok
12:18:07.0258 3808 [ 5FB7FCEA0490D821F26F39CC5EA3D1E2 ] Serial C:\Windows\system32\drivers\serial.sys
12:18:07.0259 3808 Serial - ok
12:18:07.0272 3808 [ 79BFFB520327FF916A582DFEA17AA813 ] sermouse C:\Windows\system32\drivers\sermouse.sys
12:18:07.0273 3808 sermouse - ok
12:18:07.0284 3808 [ 4AE380F39A0032EAB7DD953030B26D28 ] SessionEnv C:\Windows\system32\sessenv.dll
12:18:07.0288 3808 SessionEnv - ok
12:18:07.0292 3808 [ 9F976E1EB233DF46FCE808D9DEA3EB9C ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
12:18:07.0293 3808 sffdisk - ok
12:18:07.0297 3808 [ 932A68EE27833CFD57C1639D375F2731 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
12:18:07.0298 3808 sffp_mmc - ok
12:18:07.0302 3808 [ 6D4CCAEDC018F1CF52866BBBAA235982 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
12:18:07.0304 3808 sffp_sd - ok
12:18:07.0307 3808 [ DB96666CC8312EBC45032F30B007A547 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
12:18:07.0308 3808 sfloppy - ok
12:18:07.0340 3808 [ D1A079A0DE2EA524513B6930C24527A2 ] SharedAccess C:\Windows\System32\ipnathlp.dll
12:18:07.0344 3808 SharedAccess - ok
12:18:07.0362 3808 [ 414DA952A35BF5D50192E28263B40577 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
12:18:07.0368 3808 ShellHWDetection - ok
12:18:07.0382 3808 [ 2565CAC0DC9FE0371BDCE60832582B2E ] sisagp C:\Windows\system32\drivers\sisagp.sys
12:18:07.0383 3808 sisagp - ok
12:18:07.0388 3808 [ A9F0486851BECB6DDA1D89D381E71055 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys
12:18:07.0389 3808 SiSRaid2 - ok
12:18:07.0408 3808 [ 3727097B55738E2F554972C3BE5BC1AA ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
12:18:07.0410 3808 SiSRaid4 - ok
12:18:07.0504 3808 [ 50D9949020E02B847CD48F1243FCB895 ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe
12:18:07.0506 3808 SkypeUpdate - ok
12:18:07.0529 3808 [ 3E21C083B8A01CB70BA1F09303010FCE ] Smb C:\Windows\system32\DRIVERS\smb.sys
12:18:07.0530 3808 Smb - ok
12:18:07.0586 3808 [ 01489B818DBDA9C546A355EF4731E749 ] SmbDrvI C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys
12:18:07.0587 3808 SmbDrvI - ok
12:18:07.0634 3808 [ 6A984831644ECA1A33FFEAE4126F4F37 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
12:18:07.0638 3808 SNMPTRAP - ok
12:18:07.0642 3808 [ 95CF1AE7527FB70F7816563CBC09D942 ] spldr C:\Windows\system32\drivers\spldr.sys
12:18:07.0643 3808 spldr - ok
12:18:07.0666 3808 [ 866A43013535DC8587C258E43579C764 ] Spooler C:\Windows\System32\spoolsv.exe
12:18:07.0671 3808 Spooler - ok
12:18:07.0731 3808 [ CF87A1DE791347E75B98885214CED2B8 ] sppsvc C:\Windows\system32\sppsvc.exe
12:18:07.0753 3808 sppsvc - ok
12:18:07.0771 3808 [ B0180B20B065D89232A78A40FE56EAA6 ] sppuinotify C:\Windows\system32\sppuinotify.dll
12:18:07.0775 3808 sppuinotify - ok
12:18:07.0790 3808 [ 112127C3B2E64D7680CC39CD0A39DD7E ] srv C:\Windows\system32\DRIVERS\srv.sys
12:18:07.0793 3808 srv - ok
12:18:07.0800 3808 [ E5DD784A4EE5EBC72A86C677C988FCDB ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
12:18:07.0803 3808 srv2 - ok
12:18:07.0808 3808 [ CDBE627E16CC9E98F343D73F8E81D258 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
12:18:07.0809 3808 srvnet - ok
12:18:07.0825 3808 [ D887C9FD02AC9FA880F6E5027A43E118 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
12:18:07.0830 3808 SSDPSRV - ok
12:18:07.0907 3808 [ EF3458337D7341A05169CEFC73709264 ] SSPORT C:\Windows\system32\Drivers\SSPORT.sys
12:18:07.0908 3808 SSPORT - ok
12:18:07.0912 3808 [ D318F23BE45D5E3A107469EB64815B50 ] SstpSvc C:\Windows\system32\sstpsvc.dll
12:18:07.0916 3808 SstpSvc - ok
12:18:07.0921 3808 [ DB32D325C192B801DF274BFD12A7E72B ] stexstor C:\Windows\system32\drivers\stexstor.sys
12:18:07.0922 3808 stexstor - ok
12:18:07.0975 3808 [ E1FB3706030FB4578A0D72C2FC3689E4 ] StiSvc C:\Windows\System32\wiaservc.dll
12:18:07.0982 3808 StiSvc - ok
12:18:08.0007 3808 [ 472AF0311073DCECEAA8FA18BA2BDF89 ] storflt C:\Windows\system32\drivers\vmstorfl.sys
12:18:08.0008 3808 storflt - ok
12:18:08.0034 3808 [ 0BF669F0A910BEDA4A32258D363AF2A5 ] StorSvc C:\Windows\system32\storsvc.dll
12:18:08.0038 3808 StorSvc - ok
12:18:08.0046 3808 [ DCAFFD62259E0BDB433DD67B5BB37619 ] storvsc C:\Windows\system32\drivers\storvsc.sys
12:18:08.0047 3808 storvsc - ok
12:18:08.0064 3808 [ E58C78A848ADD9610A4DB6D214AF5224 ] swenum C:\Windows\system32\DRIVERS\swenum.sys
12:17:10.0579 2852 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
12:17:33.0475 2852 ============================================================
12:17:33.0475 2852 Current date / time: 2014/04/20 12:17:33.0475
12:17:33.0475 2852 SystemInfo:
12:17:33.0475 2852
12:17:33.0475 2852 OS Version: 6.1.7601 ServicePack: 1.0
12:17:33.0475 2852 Product type: Workstation
12:17:33.0475 2852 ComputerName: TURTLE-PC
12:17:33.0475 2852 UserName: Turtle
12:17:33.0475 2852 Windows directory: C:\Windows
12:17:33.0475 2852 System windows directory: C:\Windows
12:17:33.0475 2852 Processor architecture: Intel x86
12:17:33.0475 2852 Number of processors: 2
12:17:33.0475 2852 Page size: 0x1000
12:17:33.0475 2852 Boot type: Normal boot
12:17:33.0475 2852 ============================================================
12:17:35.0154 2852 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
12:17:35.0222 2852 ============================================================
12:17:35.0222 2852 \Device\Harddisk0\DR0:
12:17:35.0223 2852 MBR partitions:
12:17:35.0223 2852 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
12:17:35.0223 2852 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x3A353000
12:17:35.0223 2852 ============================================================
12:17:35.0277 2852 C: <-> \Device\Harddisk0\DR0\Partition2
12:17:35.0278 2852 ============================================================
12:17:35.0278 2852 Initialize success
12:17:35.0278 2852 ============================================================
12:17:55.0711 3808 ============================================================
12:17:55.0711 3808 Scan started
12:17:55.0711 3808 Mode: Manual;
12:17:55.0711 3808 ============================================================
12:17:56.0147 3808 ================ Scan system memory ========================
12:17:56.0147 3808 System memory - ok
12:17:56.0148 3808 ================ Scan services =============================
12:17:56.0604 3808 [ 1B133875B8AA8AC48969BD3458AFE9F5 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
12:17:56.0605 3808 1394ohci - ok
12:17:56.0644 3808 [ CEA80C80BED809AA0DA6FEBC04733349 ] ACPI C:\Windows\system32\drivers\ACPI.sys
12:17:56.0646 3808 ACPI - ok
12:17:56.0657 3808 [ 1EFBC664ABFF416D1D07DB115DCB264F ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
12:17:56.0658 3808 AcpiPmi - ok
12:17:56.0808 3808 [ B362181ED3771DC03B4141927C80F801 ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
12:17:56.0809 3808 AdobeARMservice - ok
12:17:56.0976 3808 [ C2CE3311D2477B1B24CFB67020AD49B6 ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
12:17:56.0978 3808 AdobeFlashPlayerUpdateSvc - ok
12:17:57.0019 3808 [ 21E785EBD7DC90A06391141AAC7892FB ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
12:17:57.0022 3808 adp94xx - ok
12:17:57.0030 3808 [ 0C676BC278D5B59FF5ABD57BBE9123F2 ] adpahci C:\Windows\system32\drivers\adpahci.sys
12:17:57.0032 3808 adpahci - ok
12:17:57.0038 3808 [ 7C7B5EE4B7B822EC85321FE23A27DB33 ] adpu320 C:\Windows\system32\drivers\adpu320.sys
12:17:57.0039 3808 adpu320 - ok
12:17:57.0070 3808 [ 8B5EEFEEC1E6D1A72A06C526628AD161 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
12:17:57.0071 3808 AeLookupSvc - ok
12:17:57.0086 3808 [ 1151FD4FB0216CFED887BFDE29EBD516 ] AFD C:\Windows\system32\drivers\afd.sys
12:17:57.0089 3808 AFD - ok
12:17:57.0093 3808 [ 507812C3054C21CEF746B6EE3D04DD6E ] agp440 C:\Windows\system32\drivers\agp440.sys
12:17:57.0094 3808 agp440 - ok
12:17:57.0125 3808 [ 8B30250D573A8F6B4BD23195160D8707 ] aic78xx C:\Windows\system32\drivers\djsvs.sys
12:17:57.0126 3808 aic78xx - ok
12:17:57.0154 3808 [ 18A54E132947CD98FEA9ACCC57F98F13 ] ALG C:\Windows\System32\alg.exe
12:17:57.0155 3808 ALG - ok
12:17:57.0158 3808 [ 0D40BCF52EA90FC7DF2AEAB6503DEA44 ] aliide C:\Windows\system32\drivers\aliide.sys
12:17:57.0159 3808 aliide - ok
12:17:57.0164 3808 [ 3C6600A0696E90A463771C7422E23AB5 ] amdagp C:\Windows\system32\drivers\amdagp.sys
12:17:57.0165 3808 amdagp - ok
12:17:57.0169 3808 [ CD5914170297126B6266860198D1D4F0 ] amdide C:\Windows\system32\drivers\amdide.sys
12:17:57.0170 3808 amdide - ok
12:17:57.0174 3808 [ 00DDA200D71BAC534BF56A9DB5DFD666 ] AmdK8 C:\Windows\system32\drivers\amdk8.sys
12:17:57.0175 3808 AmdK8 - ok
12:17:57.0180 3808 [ 3CBF30F5370FDA40DD3E87DF38EA53B6 ] AmdPPM C:\Windows\system32\drivers\amdppm.sys
12:17:57.0181 3808 AmdPPM - ok
12:17:57.0200 3808 [ E7F4D42D8076EC60E21715CD11743A0D ] amdsata C:\Windows\system32\drivers\amdsata.sys
12:17:57.0201 3808 amdsata - ok
12:17:57.0222 3808 [ EA43AF0C423FF267355F74E7A53BDABA ] amdsbs C:\Windows\system32\drivers\amdsbs.sys
12:17:57.0223 3808 amdsbs - ok
12:17:57.0228 3808 [ 146459D2B08BFDCBFA856D9947043C81 ] amdxata C:\Windows\system32\drivers\amdxata.sys
12:17:57.0229 3808 amdxata - ok
12:17:57.0298 3808 [ 07E2B41540666199AF5FC03AF43C1758 ] AMPPAL C:\Windows\system32\DRIVERS\AMPPAL.sys
12:17:57.0299 3808 AMPPAL - ok
12:17:57.0317 3808 [ 07E2B41540666199AF5FC03AF43C1758 ] AMPPALP C:\Windows\system32\DRIVERS\amppal.sys
12:17:57.0318 3808 AMPPALP - ok
12:17:57.0439 3808 [ 0C3F9F8BC58CCBFBBC07B59A5F46BB12 ] AMPPALR3 C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
12:17:57.0443 3808 AMPPALR3 - ok
12:17:57.0467 3808 [ AEA177F783E20150ACE5383EE368DA19 ] AppID C:\Windows\system32\drivers\appid.sys
12:17:57.0468 3808 AppID - ok
12:17:57.0502 3808 [ 62A9C86CB6085E20DB4823E4E97826F5 ] AppIDSvc C:\Windows\System32\appidsvc.dll
12:17:57.0503 3808 AppIDSvc - ok
12:17:57.0507 3808 [ FB1959012294D6AD43E5304DF65E3C26 ] Appinfo C:\Windows\System32\appinfo.dll
12:17:57.0508 3808 Appinfo - ok
12:17:57.0542 3808 [ A45D184DF6A8803DA13A0B329517A64A ] AppMgmt C:\Windows\System32\appmgmts.dll
12:17:57.0543 3808 AppMgmt - ok
12:17:57.0566 3808 [ 2932004F49677BD84DBC72EDB754FFB3 ] arc C:\Windows\system32\drivers\arc.sys
12:17:57.0566 3808 arc - ok
12:17:57.0572 3808 [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7 ] arcsas C:\Windows\system32\drivers\arcsas.sys
12:17:57.0573 3808 arcsas - ok
12:17:57.0634 3808 [ B347D2FEAE2D063943F16EC98634AB89 ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
12:17:57.0635 3808 aswMonFlt - ok
12:17:57.0701 3808 [ 769C65057212FB5004679E02EF8145C0 ] aswRdr C:\Windows\system32\drivers\aswRdr2.sys
12:17:57.0702 3808 aswRdr - ok
12:17:57.0750 3808 [ 84B4C00AE8CDFC52CF68F322D821F34C ] aswRvrt C:\Windows\system32\drivers\aswRvrt.sys
12:17:57.0751 3808 aswRvrt - ok
12:17:57.0799 3808 [ 3A50AD6AE8D8A0F78F03316F5B93FE45 ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
12:17:57.0804 3808 aswSnx - ok
12:17:57.0828 3808 [ B6381B4DC603C558419641BA969930E0 ] aswSP C:\Windows\system32\drivers\aswSP.sys
12:17:57.0831 3808 aswSP - ok
12:17:57.0894 3808 [ 9529E946B8496C1605A9188FFD49DED8 ] aswStm C:\Windows\system32\drivers\aswStm.sys
12:17:57.0895 3808 aswStm - ok
12:17:57.0936 3808 [ 680448905E27BBC6587ADB28597640D6 ] aswVmm C:\Windows\system32\drivers\aswVmm.sys
12:17:57.0937 3808 aswVmm - ok
12:17:57.0971 3808 [ ADD2ADE1C2B285AB8378D2DAAF991481 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
12:17:57.0972 3808 AsyncMac - ok
12:17:57.0976 3808 [ 338C86357871C167A96AB976519BF59E ] atapi C:\Windows\system32\drivers\atapi.sys
12:17:57.0977 3808 atapi - ok
12:17:58.0023 3808 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
12:17:58.0027 3808 AudioEndpointBuilder - ok
12:17:58.0036 3808 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] Audiosrv C:\Windows\System32\Audiosrv.dll
12:17:58.0039 3808 Audiosrv - ok
12:17:58.0208 3808 [ BEA8D0FA8805CC2E6BB49728166699C7 ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
12:17:58.0209 3808 avast! Antivirus - ok
12:17:58.0243 3808 [ 6E30D02AAC9CAC84F421622E3A2F6178 ] AxInstSV C:\Windows\System32\AxInstSV.dll
12:17:58.0244 3808 AxInstSV - ok
12:17:58.0281 3808 [ 1A231ABEC60FD316EC54C66715543CEC ] b06bdrv C:\Windows\system32\drivers\bxvbdx.sys
12:17:58.0284 3808 b06bdrv - ok
12:17:58.0312 3808 [ BD8869EB9CDE6BBE4508D869929869EE ] b57nd60x C:\Windows\system32\DRIVERS\b57nd60x.sys
12:17:58.0314 3808 b57nd60x - ok
12:17:58.0351 3808 [ EE1E9C3BB8228AE423DD38DB69128E71 ] BDESVC C:\Windows\System32\bdesvc.dll
12:17:58.0353 3808 BDESVC - ok
12:17:58.0357 3808 [ 505506526A9D467307B3C393DEDAF858 ] Beep C:\Windows\system32\drivers\Beep.sys
12:17:58.0358 3808 Beep - ok
12:17:58.0374 3808 [ 1E2BAC209D184BB851E1A187D8A29136 ] BFE C:\Windows\System32\bfe.dll
12:17:58.0378 3808 BFE - ok
12:17:58.0420 3808 [ E585445D5021971FAE10393F0F1C3961 ] BITS C:\Windows\System32\qmgr.dll
12:17:58.0427 3808 BITS - ok
12:17:58.0431 3808 [ 2287078ED48FCFC477B05B20CF38F36F ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
12:17:58.0432 3808 blbdrive - ok
12:17:58.0436 3808 [ FCAFAEF6798D7B51FF029F99A9898961 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
12:17:58.0437 3808 bowser - ok
12:17:58.0443 3808 [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo C:\Windows\system32\drivers\BrFiltLo.sys
12:17:58.0444 3808 BrFiltLo - ok
12:17:58.0448 3808 [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp C:\Windows\system32\drivers\BrFiltUp.sys
12:17:58.0449 3808 BrFiltUp - ok
12:17:58.0490 3808 [ 6E11F33D14D020F58D5E02E4D67DFA19 ] Browser C:\Windows\System32\browser.dll
12:17:58.0491 3808 Browser - ok
12:17:58.0513 3808 [ 845B8CE732E67F3B4133164868C666EA ] Brserid C:\Windows\System32\Drivers\Brserid.sys
12:17:58.0515 3808 Brserid - ok
12:17:58.0519 3808 [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
12:17:58.0520 3808 BrSerWdm - ok
12:17:58.0525 3808 [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
12:17:58.0526 3808 BrUsbMdm - ok
12:17:58.0529 3808 [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
12:17:58.0530 3808 BrUsbSer - ok
12:17:58.0560 3808 [ 2865A5C8E98C70C605F417908CEBB3A4 ] BthEnum C:\Windows\system32\DRIVERS\BthEnum.sys
12:17:58.0560 3808 BthEnum - ok
12:17:58.0565 3808 [ ED3DF7C56CE0084EB2034432FC56565A ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
12:17:58.0566 3808 BTHMODEM - ok
12:17:58.0578 3808 [ AD1872E5829E8A2C3B5B4B641C3EAB0E ] BthPan C:\Windows\system32\DRIVERS\bthpan.sys
12:17:58.0579 3808 BthPan - ok
12:17:58.0610 3808 [ 195C41CC67E9E1CEDD960CCB74925920 ] BTHPORT C:\Windows\system32\Drivers\BTHport.sys
12:17:58.0613 3808 BTHPORT - ok
12:17:58.0645 3808 [ 1DF19C96EEF6C29D1C3E1A8678E07190 ] bthserv C:\Windows\system32\bthserv.dll
12:17:58.0646 3808 bthserv - ok
12:17:58.0704 3808 [ B445F65A329A78CE59DA4081C698094E ] BTHSSecurityMgr C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
12:17:58.0705 3808 BTHSSecurityMgr - ok
12:17:58.0725 3808 [ 43B3206DD654E783AA7E4EAD340A43B8 ] BTHUSB C:\Windows\system32\Drivers\BTHUSB.sys
12:17:58.0725 3808 BTHUSB - ok
12:17:58.0769 3808 [ 77EA11B065E0A8AB902D78145CA51E10 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
12:17:58.0770 3808 cdfs - ok
12:17:58.0783 3808 [ BE167ED0FDB9C1FA1133953C18D5A6C9 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
12:17:58.0784 3808 cdrom - ok
12:17:58.0816 3808 [ 319C6B309773D063541D01DF8AC6F55F ] CertPropSvc C:\Windows\System32\certprop.dll
12:17:58.0817 3808 CertPropSvc - ok
12:17:58.0829 3808 [ 3FE3FE94A34DF6FB06E6418D0F6A0060 ] circlass C:\Windows\system32\drivers\circlass.sys
12:17:58.0830 3808 circlass - ok
12:17:58.0849 3808 [ 635181E0E9BBF16871BF5380D71DB02D ] CLFS C:\Windows\system32\CLFS.sys
12:17:58.0851 3808 CLFS - ok
12:17:58.0999 3808 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
12:17:59.0000 3808 clr_optimization_v2.0.50727_32 - ok
12:17:59.0189 3808 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
12:17:59.0190 3808 clr_optimization_v4.0.30319_32 - ok
12:17:59.0220 3808 [ DEA805815E587DAD1DD2C502220B5616 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
12:17:59.0221 3808 CmBatt - ok
12:17:59.0224 3808 [ C537B1DB64D495B9B4717B4D6D9EDBF2 ] cmdide C:\Windows\system32\drivers\cmdide.sys
12:17:59.0225 3808 cmdide - ok
12:17:59.0240 3808 [ 1B675691ED940766149C93E8F4488D68 ] CNG C:\Windows\system32\Drivers\cng.sys
12:17:59.0243 3808 CNG - ok
12:17:59.0339 3808 [ 223EDBBA45252DBF0A5CDE5D71C8629B ] CnxtHdAudService C:\Windows\system32\drivers\CHDRT32.sys
12:17:59.0347 3808 CnxtHdAudService - ok
12:17:59.0383 3808 [ A6023D3823C37043986713F118A89BEE ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
12:17:59.0384 3808 Compbatt - ok
12:17:59.0401 3808 [ CBE8C58A8579CFE5FCCF809E6F114E89 ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys
12:17:59.0402 3808 CompositeBus - ok
12:17:59.0412 3808 COMSysApp - ok
12:17:59.0513 3808 [ 88F2504C97B0AD50B2C4EEE2BFD70A94 ] cphs C:\Windows\system32\IntelCpHeciSvc.exe
12:17:59.0517 3808 cphs - ok
12:17:59.0521 3808 [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
12:17:59.0522 3808 crcdisk - ok
12:17:59.0561 3808 [ A585BEBF7D054BD9618EDA0922D5484A ] CryptSvc C:\Windows\system32\cryptsvc.dll
12:17:59.0563 3808 CryptSvc - ok
12:17:59.0589 3808 [ 3C2177A897B4CA2788C6FB0C3FD81D4B ] CSC C:\Windows\system32\drivers\csc.sys
12:17:59.0592 3808 CSC - ok
12:17:59.0603 3808 [ 15F93B37F6801943360D9EB42485D5D3 ] CscService C:\Windows\System32\cscsvc.dll
12:17:59.0608 3808 CscService - ok
12:17:59.0670 3808 [ 801D08CD4568D72957346663655F866A ] CxAudMsg C:\Windows\system32\CxAudMsg32.exe
12:17:59.0672 3808 CxAudMsg - ok
12:17:59.0702 3808 [ 7660F01D3B38ACA1747E397D21D790AF ] DcomLaunch C:\Windows\system32\rpcss.dll
12:17:59.0708 3808 DcomLaunch - ok
12:17:59.0729 3808 [ 8D6E10A2D9A5EED59562D9B82CF804E1 ] defragsvc C:\Windows\System32\defragsvc.dll
12:17:59.0732 3808 defragsvc - ok
12:17:59.0754 3808 [ F024449C97EC1E464AAFFDA18593DB88 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
12:17:59.0755 3808 DfsC - ok
12:17:59.0813 3808 DgiVecp - ok
12:17:59.0848 3808 [ E9E01EB683C132F7FA27CD607B8A2B63 ] Dhcp C:\Windows\system32\dhcpcore.dll
12:17:59.0850 3808 Dhcp - ok
12:17:59.0854 3808 [ 1A050B0274BFB3890703D490F330C0DA ] discache C:\Windows\system32\drivers\discache.sys
12:17:59.0855 3808 discache - ok
12:17:59.0873 3808 [ 565003F326F99802E68CA78F2A68E9FF ] Disk C:\Windows\system32\drivers\disk.sys
12:17:59.0874 3808 Disk - ok
12:17:59.0893 3808 [ 2A958EF85DB1B61FFCA65044FA4BCE9E ] dmvsc C:\Windows\system32\drivers\dmvsc.sys
12:17:59.0894 3808 dmvsc - ok
12:17:59.0928 3808 [ 2FE30D71919C51131405797620E0A714 ] Dnscache C:\Windows\System32\dnsrslvr.dll
12:17:59.0930 3808 Dnscache - ok
12:17:59.0942 3808 [ 366BA8FB4B7BB7435E3B9EACB3843F67 ] dot3svc C:\Windows\System32\dot3svc.dll
12:17:59.0945 3808 dot3svc - ok
12:17:59.0958 3808 [ 8EC04CA86F1D68DA9E11952EB85973D6 ] DPS C:\Windows\system32\dps.dll
12:17:59.0961 3808 DPS - ok
12:17:59.0987 3808 [ B918E7C5F9BF77202F89E1A9539F2EB4 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
12:17:59.0988 3808 drmkaud - ok
12:18:00.0016 3808 [ 23F5D28378A160352BA8F817BD8C71CB ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
12:18:00.0021 3808 DXGKrnl - ok
12:18:00.0033 3808 [ 8600142FA91C1B96367D3300AD0F3F3A ] EapHost C:\Windows\System32\eapsvc.dll
12:18:00.0035 3808 EapHost - ok
12:18:00.0104 3808 [ 024E1B5CAC09731E4D868E64DBFB4AB0 ] ebdrv C:\Windows\system32\drivers\evbdx.sys
12:18:00.0122 3808 ebdrv - ok
12:18:00.0169 3808 [ F42309C4191C506B71DB5D1126D26318 ] EFS C:\Windows\System32\lsass.exe
12:18:00.0172 3808 EFS - ok
12:18:00.0243 3808 [ A8C362018EFC87BEB013EE28F29C0863 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
12:18:00.0247 3808 ehRecvr - ok
12:18:00.0251 3808 [ D389BFF34F80CAEDE417BF9D1507996A ] ehSched C:\Windows\ehome\ehsched.exe
12:18:00.0252 3808 ehSched - ok
12:18:00.0305 3808 [ B83BDCCBACB65BAA9E20888DD0083A16 ] ElbyCDIO C:\Windows\system32\Drivers\ElbyCDIO.sys
12:18:00.0306 3808 ElbyCDIO - ok
12:18:00.0347 3808 [ 0ED67910C8C326796FAA00B2BF6D9D3C ] elxstor C:\Windows\system32\drivers\elxstor.sys
12:18:00.0350 3808 elxstor - ok
12:18:00.0354 3808 [ 8FC3208352DD3912C94367A206AB3F11 ] ErrDev C:\Windows\system32\drivers\errdev.sys
12:18:00.0355 3808 ErrDev - ok
12:18:00.0399 3808 [ F6916EFC29D9953D5D0DF06882AE8E16 ] EventSystem C:\Windows\system32\es.dll
12:18:00.0402 3808 EventSystem - ok
12:18:00.0573 3808 [ 9A2144216047B662C1238C846AABE3F1 ] EvtEng C:\Program Files\Intel\WiFi\bin\EvtEng.exe
12:18:00.0577 3808 EvtEng - ok
12:18:00.0614 3808 [ 2DC9108D74081149CC8B651D3A26207F ] exfat C:\Windows\system32\drivers\exfat.sys
12:18:00.0615 3808 exfat - ok
12:18:00.0626 3808 [ 7E0AB74553476622FB6AE36F73D97D35 ] fastfat C:\Windows\system32\drivers\fastfat.sys
12:18:00.0628 3808 fastfat - ok
12:18:00.0655 3808 [ 967EA5B213E9984CBE270205DF37755B ] Fax C:\Windows\system32\fxssvc.exe
12:18:00.0660 3808 Fax - ok
12:18:00.0664 3808 [ E817A017F82DF2A1F8CFDBDA29388B29 ] fdc C:\Windows\system32\drivers\fdc.sys
12:18:00.0665 3808 fdc - ok
12:18:00.0676 3808 [ F3222C893BD2F5821A0179E5C71E88FB ] fdPHost C:\Windows\system32\fdPHost.dll
12:18:00.0678 3808 fdPHost - ok
12:18:00.0682 3808 [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B ] FDResPub C:\Windows\system32\fdrespub.dll
12:18:00.0684 3808 FDResPub - ok
12:18:00.0688 3808 [ 6CF00369C97F3CF563BE99BE983D13D8 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
12:18:00.0689 3808 FileInfo - ok
12:18:00.0693 3808 [ 42C51DC94C91DA21CB9196EB64C45DB9 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
12:18:00.0694 3808 Filetrace - ok
12:18:00.0698 3808 [ 87907AA70CB3C56600F1C2FB8841579B ] flpydisk C:\Windows\system32\drivers\flpydisk.sys
12:18:00.0699 3808 flpydisk - ok
12:18:00.0710 3808 [ 7520EC808E0C35E0EE6F841294316653 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
12:18:00.0711 3808 FltMgr - ok
12:18:00.0743 3808 [ FA6C66E4364D7DA57AADE5DCC03BB999 ] FontCache C:\Windows\system32\FntCache.dll
12:18:00.0749 3808 FontCache - ok
12:18:00.0799 3808 [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
12:18:00.0800 3808 FontCache3.0.0.0 - ok
12:18:00.0805 3808 [ 1A16B57943853E598CFF37FE2B8CBF1D ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
12:18:00.0806 3808 FsDepends - ok
12:18:00.0810 3808 [ A574B4360E438977038AAE4BF60D79A2 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
12:18:00.0811 3808 Fs_Rec - ok
12:18:00.0831 3808 [ 8A73E79089B282100B9393B644CB853B ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
12:18:00.0832 3808 fvevol - ok
12:18:00.0846 3808 [ 65EE0C7A58B65E74AE05637418153938 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
12:18:00.0847 3808 gagp30kx - ok
12:18:00.0867 3808 [ E897EAF5ED6BA41E081060C9B447A673 ] gpsvc C:\Windows\System32\gpsvc.dll
12:18:00.0872 3808 gpsvc - ok
12:18:00.0951 3808 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
12:18:00.0953 3808 gupdate - ok
12:18:00.0985 3808 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
12:18:00.0986 3808 gupdatem - ok
12:18:01.0002 3808 [ C44E3C2BAB6837DB337DDEE7544736DB ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
12:18:01.0003 3808 hcw85cir - ok
12:18:01.0031 3808 [ A5EF29D5315111C80A5C1ABAD14C8972 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
12:18:01.0033 3808 HdAudAddService - ok
12:18:01.0038 3808 [ 9036377B8A6C15DC2EEC53E489D159B5 ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
12:18:01.0039 3808 HDAudBus - ok
12:18:01.0043 3808 [ 1D58A7F3E11A9731D0EAAAA8405ACC36 ] HidBatt C:\Windows\system32\drivers\HidBatt.sys
12:18:01.0044 3808 HidBatt - ok
12:18:01.0048 3808 [ 89448F40E6DF260C206A193A4683BA78 ] HidBth C:\Windows\system32\drivers\hidbth.sys
12:18:01.0050 3808 HidBth - ok
12:18:01.0057 3808 [ CF50B4CF4A4F229B9F3C08351F99CA5E ] HidIr C:\Windows\system32\drivers\hidir.sys
12:18:01.0058 3808 HidIr - ok
12:18:01.0077 3808 [ 2BC6F6A1992B3A77F5F41432CA6B3B6B ] hidserv C:\Windows\system32\hidserv.dll
12:18:01.0079 3808 hidserv - ok
12:18:01.0094 3808 [ 10C19F8290891AF023EAEC0832E1EB4D ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
12:18:01.0095 3808 HidUsb - ok
12:18:01.0116 3808 [ 196B4E3F4CCCC24AF836CE58FACBB699 ] hkmsvc C:\Windows\system32\kmsvc.dll
12:18:01.0118 3808 hkmsvc - ok
12:18:01.0146 3808 [ 6658F4404DE03D75FE3BA09F7ABA6A30 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
12:18:01.0149 3808 HomeGroupListener - ok
12:18:01.0178 3808 [ DBC02D918FFF1CAD628ACBE0C0EAA8E8 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
12:18:01.0182 3808 HomeGroupProvider - ok
12:18:01.0200 3808 [ 295FDC419039090EB8B49FFDBB374549 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
12:18:01.0201 3808 HpSAMD - ok
12:18:01.0221 3808 [ 871917B07A141BFF43D76D8844D48106 ] HTTP C:\Windows\system32\drivers\HTTP.sys
12:18:01.0224 3808 HTTP - ok
12:18:01.0228 3808 [ 0C4E035C7F105F1299258C90886C64C5 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
12:18:01.0229 3808 hwpolicy - ok
12:18:01.0238 3808 [ F151F0BDC47F4A28B1B20A0818EA36D6 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
12:18:01.0239 3808 i8042prt - ok
12:18:01.0248 3808 [ A3CAE5D281DB4CFF7CFF8233507EE5AD ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
12:18:01.0251 3808 iaStorV - ok
12:18:01.0291 3808 [ E34EF65898A3529BE7C2AC9CB77B09D3 ] IBMPMDRV C:\Windows\system32\DRIVERS\ibmpmdrv.sys
12:18:01.0292 3808 IBMPMDRV - ok
12:18:01.0305 3808 [ C9D46BEA56C89778AFF1494F9CCF66AC ] IBMPMSVC C:\Windows\system32\ibmpmsvc.exe
12:18:01.0307 3808 IBMPMSVC - ok
12:18:01.0368 3808 [ 83FF82FE209E7997067B375DAD6CF23D ] ICCS C:\Program Files\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
12:18:01.0369 3808 ICCS - ok
12:18:01.0433 3808 [ C521D7EB6497BB1AF6AFA89E322FB43C ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
12:18:01.0438 3808 idsvc - ok
12:18:01.0591 3808 [ D20B64A317906B94D71069BFED0EC2A7 ] igfx C:\Windows\system32\DRIVERS\igdkmd32.sys
12:18:01.0612 3808 igfx - ok
12:18:01.0649 3808 [ 4173FF5708F3236CF25195FECD742915 ] iirsp C:\Windows\system32\drivers\iirsp.sys
12:18:01.0650 3808 iirsp - ok
12:18:01.0686 3808 [ F95622F161474511B8D80D6B093AA610 ] IKEEXT C:\Windows\System32\ikeext.dll
12:18:01.0692 3808 IKEEXT - ok
12:18:01.0765 3808 [ 6A6E1B319A47FA7AF2AE6B6815AE9854 ] IntcDAud C:\Windows\system32\DRIVERS\IntcDAud.sys
12:18:01.0767 3808 IntcDAud - ok
12:18:01.0833 3808 [ B6B591AF0D28E0BF347D7064044D9140 ] Intel(R) Capability Licensing Service Interface C:\Program Files\Intel\iCLS Client\HeciServer.exe
12:18:01.0837 3808 Intel(R) Capability Licensing Service Interface - ok
12:18:01.0857 3808 [ 6ABAB9938AF5F9D59E388B80D7A22A75 ] Intel(R) Capability Licensing Service TCP IP Interface C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
12:18:01.0861 3808 Intel(R) Capability Licensing Service TCP IP Interface - ok
12:18:01.0916 3808 [ C4C5DEB8AC4D8E623CA1CC8981A2AE1B ] Intel(R) ME Service C:\Program Files\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
12:18:01.0917 3808 Intel(R) ME Service - ok
12:18:01.0938 3808 [ A0F12F2C9BA6C72F3987CE780E77C130 ] intelide C:\Windows\system32\drivers\intelide.sys
12:18:01.0939 3808 intelide - ok
12:18:01.0978 3808 [ 3B514D27BFC4ACCB4037BC6685F766E0 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
12:18:01.0978 3808 intelppm - ok
12:18:02.0002 3808 [ ACB364B9075A45C0736E5C47BE5CAE19 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
12:18:02.0004 3808 IPBusEnum - ok
12:18:02.0022 3808 [ 709D1761D3B19A932FF0238EA6D50200 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
12:18:02.0023 3808 IpFilterDriver - ok
12:18:02.0034 3808 [ 4D65A07B795D6674312F879D09AA7663 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
12:18:02.0039 3808 iphlpsvc - ok
12:18:02.0043 3808 [ 4BD7134618C1D2A27466A099062547BF ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
12:18:02.0044 3808 IPMIDRV - ok
12:18:02.0049 3808 [ A5FA468D67ABCDAA36264E463A7BB0CD ] IPNAT C:\Windows\system32\drivers\ipnat.sys
12:18:02.0050 3808 IPNAT - ok
12:18:02.0054 3808 [ 42996CFF20A3084A56017B7902307E9F ] IRENUM C:\Windows\system32\drivers\irenum.sys
12:18:02.0055 3808 IRENUM - ok
12:18:02.0059 3808 [ 1F32BB6B38F62F7DF1A7AB7292638A35 ] isapnp C:\Windows\system32\drivers\isapnp.sys
12:18:02.0060 3808 isapnp - ok
12:18:02.0089 3808 [ CB7A9ABB12B8415BCE5D74994C7BA3AE ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
12:18:02.0091 3808 iScsiPrt - ok
12:18:02.0156 3808 [ 1E6403EC6B1143F66DB08C7C811AF718 ] iusb3hcs C:\Windows\system32\DRIVERS\iusb3hcs.sys
12:18:02.0157 3808 iusb3hcs - ok
12:18:02.0179 3808 [ 762D729942D3DF15364FD858827DC53B ] iusb3hub C:\Windows\system32\DRIVERS\iusb3hub.sys
12:18:02.0182 3808 iusb3hub - ok
12:18:02.0224 3808 [ 531967D3CB82747B6980EA7A8E2A2671 ] iusb3xhc C:\Windows\system32\DRIVERS\iusb3xhc.sys
12:18:02.0229 3808 iusb3xhc - ok
12:18:02.0275 3808 [ A3B59E5887B294F2ED06A522F0FDC9D3 ] jhi_service C:\Program Files\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
12:18:02.0276 3808 jhi_service - ok
12:18:02.0325 3808 [ ADEF52CA1AEAE82B50DF86B56413107E ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
12:18:02.0326 3808 kbdclass - ok
12:18:02.0338 3808 [ 9E3CED91863E6EE98C24794D05E27A71 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
12:18:02.0339 3808 kbdhid - ok
12:18:02.0358 3808 [ F42309C4191C506B71DB5D1126D26318 ] KeyIso C:\Windows\system32\lsass.exe
12:18:02.0360 3808 KeyIso - ok
12:18:02.0365 3808 [ 412CEA1AA78CC02A447F5C9E62B32FF1 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
12:18:02.0366 3808 KSecDD - ok
12:18:02.0378 3808 [ 26C046977E85B95036453D7B88BA1820 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
12:18:02.0380 3808 KSecPkg - ok
12:18:02.0406 3808 [ 89A7B9CC98D0D80C6F31B91C0A310FCD ] KtmRm C:\Windows\system32\msdtckrm.dll
12:18:02.0411 3808 KtmRm - ok
12:18:02.0445 3808 [ D64AF876D53ECA3668BB97B51B4E70AB ] LanmanServer C:\Windows\system32\srvsvc.dll
12:18:02.0450 3808 LanmanServer - ok
12:18:02.0472 3808 [ 58405E4F68BA8E4057C6E914F326ABA2 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
12:18:02.0477 3808 LanmanWorkstation - ok
12:18:02.0606 3808 [ C57D9A5DC8075D6BDC5C0360191CC366 ] LENOVO.CAMMUTE C:\Program Files\Lenovo\Communications Utility\CAMMUTE.exe
12:18:02.0607 3808 LENOVO.CAMMUTE - ok
12:18:02.0644 3808 [ F43BD5D437A3F8EA438A23FB04ABBB73 ] LENOVO.MICMUTE C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe
12:18:02.0645 3808 LENOVO.MICMUTE - ok
12:18:02.0722 3808 [ E4AEC51E55A8351BFBF8567663862BAA ] LENOVO.TPKNRSVC C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe
12:18:02.0723 3808 LENOVO.TPKNRSVC - ok
12:18:02.0739 3808 [ DCB08CA5FF82E764E29516B0C4DA4674 ] LENOVO.TVTVCAM C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe
12:18:02.0741 3808 LENOVO.TVTVCAM - ok
12:18:02.0775 3808 [ 1480D14F8B2E8F7C134AD305BE85DF05 ] Lenovo.VIRTSCRLSVC C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe
12:18:02.0777 3808 Lenovo.VIRTSCRLSVC - ok
12:18:02.0837 3808 [ F7611EC07349979DA9B0AE1F18CCC7A6 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
12:18:02.0838 3808 lltdio - ok
12:18:02.0861 3808 [ 5700673E13A2117FA3B9020C852C01E2 ] lltdsvc C:\Windows\System32\lltdsvc.dll
12:18:02.0864 3808 lltdsvc - ok
12:18:02.0868 3808 [ 55CA01BA19D0006C8F2639B6C045E08B ] lmhosts C:\Windows\System32\lmhsvc.dll
12:18:02.0871 3808 lmhosts - ok
12:18:02.0921 3808 [ 3142FC089FE8FCF79B442B91BC4F0C16 ] LMS C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
12:18:02.0923 3808 LMS - ok
12:18:02.0941 3808 [ EB119A53CCF2ACC000AC71B065B78FEF ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
12:18:02.0943 3808 LSI_FC - ok
12:18:02.0947 3808 [ 8ADE1C877256A22E49B75D1CC9161F9C ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
12:18:02.0949 3808 LSI_SAS - ok
12:18:02.0953 3808 [ DC9DC3D3DAA0E276FD2EC262E38B11E9 ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys
12:18:02.0954 3808 LSI_SAS2 - ok
12:18:02.0967 3808 [ 0A036C7D7CAB643A7F07135AC47E0524 ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
12:18:02.0969 3808 LSI_SCSI - ok
12:18:02.0983 3808 [ 6703E366CC18D3B6E534F5CF7DF39CEE ] luafv C:\Windows\system32\drivers\luafv.sys
12:18:02.0984 3808 luafv - ok
12:18:03.0027 3808 [ 0C6EA0109CFEDF441F06D031E9A8D1A9 ] MBAMProtector C:\Windows\system32\drivers\mbam.sys
12:18:03.0027 3808 MBAMProtector - ok
12:18:03.0097 3808 [ 0E08BDD7326E657D59DB40BAD23D8169 ] MBAMScheduler C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe
12:18:03.0108 3808 MBAMScheduler - ok
12:18:03.0178 3808 [ A8E7F3DB083EB0839DFC1C763CDD2594 ] MBAMService C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe
12:18:03.0183 3808 MBAMService - ok
12:18:03.0255 3808 [ 661B911FA04E73FB073FF9B1C9BD2E05 ] MBAMSwissArmy C:\Windows\system32\drivers\MBAMSwissArmy.sys
12:18:03.0257 3808 MBAMSwissArmy - ok
12:18:03.0340 3808 [ 18898A87CBA96DEA2074C19E140938A8 ] MBAMWebAccessControl C:\Windows\system32\drivers\mwac.sys
12:18:03.0341 3808 MBAMWebAccessControl - ok
12:18:03.0372 3808 [ BFB9EE8EE977EFE85D1A3105ABEF6DD1 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
12:18:03.0375 3808 Mcx2Svc - ok
12:18:03.0403 3808 [ 0FFF5B045293002AB38EB1FD1FC2FB74 ] megasas C:\Windows\system32\drivers\megasas.sys
12:18:03.0404 3808 megasas - ok
12:18:03.0431 3808 [ DCBAB2920C75F390CAF1D29F675D03D6 ] MegaSR C:\Windows\system32\drivers\MegaSR.sys
12:18:03.0432 3808 MegaSR - ok
12:18:03.0484 3808 [ F053F1D48C8A92BDFA72654D0DCDF5AB ] MEI C:\Windows\system32\DRIVERS\HECI.sys
12:18:03.0485 3808 MEI - ok
12:18:03.0652 3808 Microsoft SharePoint Workspace Audit Service - ok
12:18:03.0669 3808 [ 146B6F43A673379A3C670E86D89BE5EA ] MMCSS C:\Windows\system32\mmcss.dll
12:18:03.0673 3808 MMCSS - ok
12:18:03.0676 3808 [ F001861E5700EE84E2D4E52C712F4964 ] Modem C:\Windows\system32\drivers\modem.sys
12:18:03.0677 3808 Modem - ok
12:18:03.0694 3808 [ 79D10964DE86B292320E9DFE02282A23 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
12:18:03.0695 3808 monitor - ok
12:18:03.0712 3808 [ FB18CC1D4C2E716B6B903B0AC0CC0609 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
12:18:03.0713 3808 mouclass - ok
12:18:03.0728 3808 [ 2C388D2CD01C9042596CF3C8F3C7B24D ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
12:18:03.0729 3808 mouhid - ok
12:18:03.0748 3808 [ FC8771F45ECCCFD89684E38842539B9B ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
12:18:03.0749 3808 mountmgr - ok
12:18:03.0793 3808 [ AEE4E9CC59CDEB55B1ECB0E596E796BE ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
12:18:03.0794 3808 MozillaMaintenance - ok
12:18:03.0816 3808 [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0 ] mpio C:\Windows\system32\drivers\mpio.sys
12:18:03.0817 3808 mpio - ok
12:18:03.0822 3808 [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
12:18:03.0823 3808 mpsdrv - ok
12:18:03.0843 3808 [ 9835584E999D25004E1EE8E5F3E3B881 ] MpsSvc C:\Windows\system32\mpssvc.dll
12:18:03.0849 3808 MpsSvc - ok
12:18:03.0854 3808 [ CEB46AB7C01C9F825F8CC6BABC18166A ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
12:18:03.0855 3808 MRxDAV - ok
12:18:03.0860 3808 [ B272B4C3E085EA860C12F2E4FAF2FFA2 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
12:18:03.0861 3808 mrxsmb - ok
12:18:03.0867 3808 [ 9AC33EF26C8A3AD0F117D00EB7301D03 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
12:18:03.0869 3808 mrxsmb10 - ok
12:18:03.0874 3808 [ E0ABDB5ED7E199E242A7D028E76C1D3A ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
12:18:03.0875 3808 mrxsmb20 - ok
12:18:03.0879 3808 [ 012C5F4E9349E711E11E0F19A8589F0A ] msahci C:\Windows\system32\drivers\msahci.sys
12:18:03.0880 3808 msahci - ok
12:18:03.0885 3808 [ 55055F8AD8BE27A64C831322A780A228 ] msdsm C:\Windows\system32\drivers\msdsm.sys
12:18:03.0886 3808 msdsm - ok
12:18:03.0923 3808 [ E1BCE74A3BD9902B72599C0192A07E27 ] MSDTC C:\Windows\System32\msdtc.exe
12:18:03.0927 3808 MSDTC - ok
12:18:03.0957 3808 [ DAEFB28E3AF5A76ABCC2C3078C07327F ] Msfs C:\Windows\system32\drivers\Msfs.sys
12:18:03.0958 3808 Msfs - ok
12:18:03.0962 3808 [ 3E1E5767043C5AF9367F0056295E9F84 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
12:18:03.0963 3808 mshidkmdf - ok
12:18:03.0984 3808 [ 0A4E5757AE09FA9622E3158CC1AEF114 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
12:18:03.0985 3808 msisadrv - ok
12:18:04.0011 3808 [ 90F7D9E6B6F27E1A707D4A297F077828 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
12:18:04.0013 3808 MSiSCSI - ok
12:18:04.0017 3808 msiserver - ok
12:18:04.0037 3808 [ 8C0860D6366AAFFB6C5BB9DF9448E631 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
12:18:04.0038 3808 MSKSSRV - ok
12:18:04.0042 3808 [ 3EA8B949F963562CEDBB549EAC0C11CE ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
12:18:04.0043 3808 MSPCLOCK - ok
12:18:04.0047 3808 [ F456E973590D663B1073E9C463B40932 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
12:18:04.0048 3808 MSPQM - ok
12:18:04.0055 3808 [ 0E008FC4819D238C51D7C93E7B41E560 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
12:18:04.0057 3808 MsRPC - ok
12:18:04.0063 3808 [ FC6B9FF600CC585EA38B12589BD4E246 ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
12:18:04.0064 3808 mssmbios - ok
12:18:04.0068 3808 [ B42C6B921F61A6E55159B8BE6CD54A36 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
12:18:04.0069 3808 MSTEE - ok
12:18:04.0116 3808 [ 33599130F44E1F34631CEA241DE8AC84 ] MTConfig C:\Windows\system32\drivers\MTConfig.sys
12:18:04.0117 3808 MTConfig - ok
12:18:04.0121 3808 [ 159FAD02F64E6381758C990F753BCC80 ] Mup C:\Windows\system32\Drivers\mup.sys
12:18:04.0122 3808 Mup - ok
12:18:04.0218 3808 [ 9300C4143511FFC769E2AA49F28CA073 ] MyWiFiDHCPDNS C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
12:18:04.0220 3808 MyWiFiDHCPDNS - ok
12:18:04.0261 3808 [ 61D57A5D7C6D9AFE10E77DAE6E1B445E ] napagent C:\Windows\system32\qagentRT.dll
12:18:04.0266 3808 napagent - ok
12:18:04.0298 3808 [ 26384429FCD85D83746F63E798AB1480 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
12:18:04.0300 3808 NativeWifiP - ok
12:18:04.0328 3808 [ E7C54812A2AAF43316EB6930C1FFA108 ] NDIS C:\Windows\system32\drivers\ndis.sys
12:18:04.0332 3808 NDIS - ok
12:18:04.0338 3808 [ 0E1787AA6C9191D3D319E8BAFE86F80C ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
12:18:04.0339 3808 NdisCap - ok
12:18:04.0355 3808 [ E4A8AEC125A2E43A9E32AFEEA7C9C888 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
12:18:04.0356 3808 NdisTapi - ok
12:18:04.0360 3808 [ D8A65DAFB3EB41CBB622745676FCD072 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
12:18:04.0361 3808 Ndisuio - ok
12:18:04.0379 3808 [ 38FBE267E7E6983311179230FACB1017 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
12:18:04.0381 3808 NdisWan - ok
12:18:04.0400 3808 [ A4BDC541E69674FBFF1A8FF00BE913F2 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
12:18:04.0401 3808 NDProxy - ok
12:18:04.0405 3808 [ 80B275B1CE3B0E79909DB7B39AF74D51 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
12:18:04.0406 3808 NetBIOS - ok
12:18:04.0412 3808 [ 280122DDCF04B378EDD1AD54D71C1E54 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
12:18:04.0414 3808 NetBT - ok
12:18:04.0424 3808 [ F42309C4191C506B71DB5D1126D26318 ] Netlogon C:\Windows\system32\lsass.exe
12:18:04.0427 3808 Netlogon - ok
12:18:04.0468 3808 [ 7CCCFCA7510684768DA22092D1FA4DB2 ] Netman C:\Windows\System32\netman.dll
12:18:04.0473 3808 Netman - ok
12:18:04.0481 3808 [ 8C338238C16777A802D6A9211EB2BA50 ] netprofm C:\Windows\System32\netprofm.dll
12:18:04.0486 3808 netprofm - ok
12:18:04.0515 3808 [ F476EC40033CDB91EFBE73EB99B8362D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
12:18:04.0516 3808 NetTcpPortSharing - ok
12:18:04.0744 3808 [ F20AB30ACF90FDBEE7515358BB1A49D3 ] NETwNs32 C:\Windows\system32\DRIVERS\Netwsn00.sys
12:18:04.0802 3808 NETwNs32 - ok
12:18:04.0837 3808 [ 1D85C4B390B0EE09C7A46B91EFB2C097 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
12:18:04.0838 3808 nfrd960 - ok
12:18:04.0854 3808 [ 912084381D30D8B89EC4E293053F4710 ] NlaSvc C:\Windows\System32\nlasvc.dll
12:18:04.0858 3808 NlaSvc - ok
12:18:04.0862 3808 [ 1DB262A9F8C087E8153D89BEF3D2235F ] Npfs C:\Windows\system32\drivers\Npfs.sys
12:18:04.0863 3808 Npfs - ok
12:18:04.0879 3808 [ BA387E955E890C8A88306D9B8D06BF17 ] nsi C:\Windows\system32\nsisvc.dll
12:18:04.0882 3808 nsi - ok
12:18:04.0886 3808 [ E9A0A4D07E53D8FEA2BB8387A3293C58 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
12:18:04.0887 3808 nsiproxy - ok
12:18:04.0934 3808 [ 33C3093D09017CFE2E219F2472BFF6EB ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
12:18:04.0942 3808 Ntfs - ok
12:18:04.0946 3808 [ F9756A98D69098DCA8945D62858A812C ] Null C:\Windows\system32\drivers\Null.sys
12:18:04.0947 3808 Null - ok
12:18:04.0964 3808 [ AF2EEC9580C1D32FB7EAF105D9784061 ] nvraid C:\Windows\system32\drivers\nvraid.sys
12:18:04.0965 3808 nvraid - ok
12:18:04.0982 3808 [ 9283C58EBAA2618F93482EB5DABCEC82 ] nvstor C:\Windows\system32\drivers\nvstor.sys
12:18:04.0984 3808 nvstor - ok
12:18:04.0989 3808 [ 5A0983915F02BAE73267CC2A041F717D ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
12:18:04.0990 3808 nv_agp - ok
12:18:04.0995 3808 [ 08A70A1F2CDDE9BB49B885CB817A66EB ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
12:18:04.0996 3808 ohci1394 - ok
12:18:05.0050 3808 [ 9D10F99A6712E28F8ACD5641E3A7EA6B ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
12:18:05.0051 3808 ose - ok
12:18:05.0208 3808 [ 358A9CCA612C68EB2F07DDAD4CE1D8D7 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
12:18:05.0234 3808 osppsvc - ok
12:18:05.0270 3808 [ 82A8521DDC60710C3D3D3E7325209BEC ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
12:18:05.0275 3808 p2pimsvc - ok
12:18:05.0302 3808 [ 59C3DDD501E39E006DAC31BF55150D91 ] p2psvc C:\Windows\system32\p2psvc.dll
12:18:05.0307 3808 p2psvc - ok
12:18:05.0311 3808 [ 2EA877ED5DD9713C5AC74E8EA7348D14 ] Parport C:\Windows\system32\drivers\parport.sys
12:18:05.0313 3808 Parport - ok
12:18:05.0317 3808 [ BF8F6AF06DA75B336F07E23AEF97D93B ] partmgr C:\Windows\system32\drivers\partmgr.sys
12:18:05.0318 3808 partmgr - ok
12:18:05.0322 3808 [ EB0A59F29C19B86479D36B35983DAADC ] Parvdm C:\Windows\system32\drivers\parvdm.sys
12:18:05.0323 3808 Parvdm - ok
12:18:05.0329 3808 [ 358AB7956D3160000726574083DFC8A6 ] PcaSvc C:\Windows\System32\pcasvc.dll
12:18:05.0333 3808 PcaSvc - ok
12:18:05.0338 3808 [ 673E55C3498EB970088E812EA820AA8F ] pci C:\Windows\system32\drivers\pci.sys
12:18:05.0340 3808 pci - ok
12:18:05.0357 3808 [ AFE86F419014DB4E5593F69FFE26CE0A ] pciide C:\Windows\system32\drivers\pciide.sys
12:18:05.0358 3808 pciide - ok
12:18:05.0379 3808 [ F396431B31693E71E8A80687EF523506 ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
12:18:05.0381 3808 pcmcia - ok
12:18:05.0385 3808 [ 250F6B43D2B613172035C6747AEEB19F ] pcw C:\Windows\system32\drivers\pcw.sys
12:18:05.0386 3808 pcw - ok
12:18:05.0411 3808 [ 9E0104BA49F4E6973749A02BF41344ED ] PEAUTH C:\Windows\system32\drivers\peauth.sys
12:18:05.0415 3808 PEAUTH - ok
12:18:05.0460 3808 [ AF4D64D2A57B9772CF3801950B8058A6 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll
12:18:05.0469 3808 PeerDistSvc - ok
12:18:05.0522 3808 [ 414BBA67A3DED1D28437EB66AEB8A720 ] pla C:\Windows\system32\pla.dll
12:18:05.0534 3808 pla - ok
12:18:05.0573 3808 [ 92DC6E68D2C856C5C2F21AE9E22112B8 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
12:18:05.0578 3808 PlugPlay - ok
12:18:05.0609 3808 [ 63FF8572611249931EB16BB8EED6AFC8 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
12:18:05.0613 3808 PNRPAutoReg - ok
12:18:05.0620 3808 [ 82A8521DDC60710C3D3D3E7325209BEC ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
12:18:05.0625 3808 PNRPsvc - ok
12:18:05.0647 3808 [ 53946B69BA0836BD95B03759530C81EC ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
12:18:05.0651 3808 PolicyAgent - ok
12:18:05.0657 3808 [ F87D30E72E03D579A5199CCB3831D6EA ] Power C:\Windows\system32\umpo.dll
12:18:05.0662 3808 Power - ok
12:18:05.0767 3808 [ 1E97E8D17D98ED34B2D40BF3F0A56F99 ] Power Manager DBC Service C:\Program Files\ThinkPad\Utilities\PWMDBSVC.EXE
12:18:05.0777 3808 Power Manager DBC Service - ok
12:18:05.0813 3808 [ 631E3E205AD6D86F2AED6A4A8E69F2DB ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
12:18:05.0814 3808 PptpMiniport - ok
12:18:05.0832 3808 [ 85B1E3A0C7585BC4AAE6899EC6FCF011 ] Processor C:\Windows\system32\drivers\processr.sys
12:18:05.0833 3808 Processor - ok
12:18:05.0874 3808 [ 43CA4CCC22D52FB58E8988F0198851D0 ] ProfSvc C:\Windows\system32\profsvc.dll
12:18:05.0879 3808 ProfSvc - ok
12:18:05.0891 3808 [ F42309C4191C506B71DB5D1126D26318 ] ProtectedStorage C:\Windows\system32\lsass.exe
12:18:05.0893 3808 ProtectedStorage - ok
12:18:05.0922 3808 [ 6270CCAE2A86DE6D146529FE55B3246A ] Psched C:\Windows\system32\DRIVERS\pacer.sys
12:18:05.0923 3808 Psched - ok
12:18:05.0989 3808 [ 02354FC1196DA1EF86C3AFFAD9BAFFCD ] PwmEWSvc C:\Program Files\ThinkPad\Utilities\PWMEWSVC.EXE
12:18:05.0999 3808 PwmEWSvc - ok
12:18:06.0068 3808 [ AB95ECF1F6659A60DDC166D8315B0751 ] ql2300 C:\Windows\system32\drivers\ql2300.sys
12:18:06.0076 3808 ql2300 - ok
12:18:06.0081 3808 [ B4DD51DD25182244B86737DC51AF2270 ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
12:18:06.0082 3808 ql40xx - ok
12:18:06.0121 3808 [ 31AC809E7707EB580B2BDB760390765A ] QWAVE C:\Windows\system32\qwave.dll
12:18:06.0125 3808 QWAVE - ok
12:18:06.0130 3808 [ 584078CA1B95CA72DF2A27C336F9719D ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
12:18:06.0131 3808 QWAVEdrv - ok
12:18:06.0135 3808 [ 30A81B53C766D0133BB86D234E5556AB ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
12:18:06.0136 3808 RasAcd - ok
12:18:06.0167 3808 [ 57EC4AEF73660166074D8F7F31C0D4FD ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
12:18:06.0168 3808 RasAgileVpn - ok
12:18:06.0184 3808 [ A60F1839849C0C00739787FD5EC03F13 ] RasAuto C:\Windows\System32\rasauto.dll
12:18:06.0188 3808 RasAuto - ok
12:18:06.0192 3808 [ D9F91EAFEC2815365CBE6D167E4E332A ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
12:18:06.0194 3808 Rasl2tp - ok
12:18:06.0205 3808 [ CB9E04DC05EACF5B9A36CA276D475006 ] RasMan C:\Windows\System32\rasmans.dll
12:18:06.0210 3808 RasMan - ok
12:18:06.0223 3808 [ 0FE8B15916307A6AC12BFB6A63E45507 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
12:18:06.0224 3808 RasPppoe - ok
12:18:06.0257 3808 [ 44101F495A83EA6401D886E7FD70096B ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
12:18:06.0258 3808 RasSstp - ok
12:18:06.0334 3808 [ FA25997E1DDC4F7BFE1997FD3AE0459A ] RCUVCAVS C:\Windows\system32\DRIVERS\RCUVCAVS.sys
12:18:06.0336 3808 RCUVCAVS - ok
12:18:06.0342 3808 [ D528BC58A489409BA40334EBF96A311B ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
12:18:06.0344 3808 rdbss - ok
12:18:06.0365 3808 [ 0D8F05481CB76E70E1DA06EE9F0DA9DF ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
12:18:06.0366 3808 rdpbus - ok
12:18:06.0370 3808 [ 23DAE03F29D253AE74C44F99E515F9A1 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
12:18:06.0371 3808 RDPCDD - ok
12:18:06.0410 3808 [ B973FCFC50DC1434E1970A146F7E3885 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys
12:18:06.0412 3808 RDPDR - ok
12:18:06.0430 3808 [ 5A53CA1598DD4156D44196D200C94B8A ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
12:18:06.0431 3808 RDPENCDD - ok
12:18:06.0437 3808 [ 44B0A53CD4F27D50ED461DAE0C0B4E1F ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
12:18:06.0438 3808 RDPREFMP - ok
12:18:06.0467 3808 [ 244C83332F44589AE98FC347F11B2693 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
12:18:06.0469 3808 RDPWD - ok
12:18:06.0492 3808 [ 518395321DC96FE2C9F0E96AC743B656 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
12:18:06.0493 3808 rdyboost - ok
12:18:06.0573 3808 [ BDB1B3CFBBA844203FE49F02A629A58C ] RegSrvc C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
12:18:06.0575 3808 RegSrvc - ok
12:18:06.0608 3808 [ 7B5E1419717FAC363A31CC302895217A ] RemoteAccess C:\Windows\System32\mprdim.dll
12:18:06.0612 3808 RemoteAccess - ok
12:18:06.0638 3808 [ CB9A8683F4EF2BF99E123D79950D7935 ] RemoteRegistry C:\Windows\system32\regsvc.dll
12:18:06.0642 3808 RemoteRegistry - ok
12:18:06.0672 3808 [ CB928D9E6DAF51879DD6BA8D02F01321 ] RFCOMM C:\Windows\system32\DRIVERS\rfcomm.sys
12:18:06.0673 3808 RFCOMM - ok
12:18:06.0691 3808 [ 78D072F35BC45D9E4E1B61895C152234 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
12:18:06.0695 3808 RpcEptMapper - ok
12:18:06.0715 3808 [ 94D36C0E44677DD26981D2BFEEF2A29D ] RpcLocator C:\Windows\system32\locator.exe
12:18:06.0718 3808 RpcLocator - ok
12:18:06.0735 3808 [ 7660F01D3B38ACA1747E397D21D790AF ] RpcSs C:\Windows\system32\rpcss.dll
12:18:06.0741 3808 RpcSs - ok
12:18:06.0839 3808 [ 26951FBEB3EAB7943CA689E20A2189B4 ] RSP2STOR C:\Windows\system32\DRIVERS\RtsP2Stor.sys
12:18:06.0841 3808 RSP2STOR - ok
12:18:06.0895 3808 [ 032B0D36AD92B582D869879F5AF5B928 ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
12:18:06.0896 3808 rspndr - ok
12:18:06.0935 3808 [ BCB84B430A92AE31940870DF304AE659 ] RTL8167 C:\Windows\system32\DRIVERS\Rt86win7.sys
12:18:06.0940 3808 RTL8167 - ok
12:18:06.0958 3808 [ 7FA7F2E249A5DCBB7970630E15E1F482 ] s3cap C:\Windows\system32\drivers\vms3cap.sys
12:18:06.0959 3808 s3cap - ok
12:18:06.0969 3808 [ F42309C4191C506B71DB5D1126D26318 ] SamSs C:\Windows\system32\lsass.exe
12:18:06.0972 3808 SamSs - ok
12:18:07.0014 3808 [ 0540796C11792D4368C2210992ED714A ] SAService C:\Windows\system32\SAsrv.exe
12:18:07.0020 3808 SAService - ok
12:18:07.0046 3808 [ 05D860DA1040F111503AC416CCEF2BCA ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
12:18:07.0047 3808 sbp2port - ok
12:18:07.0067 3808 [ 8FC518FFE9519C2631D37515A68009C4 ] SCardSvr C:\Windows\System32\SCardSvr.dll
12:18:07.0071 3808 SCardSvr - ok
12:18:07.0075 3808 [ 0693B5EC673E34DC147E195779A4DCF6 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
12:18:07.0076 3808 scfilter - ok
12:18:07.0098 3808 [ A04BB13F8A72F8B6E8B4071723E4E336 ] Schedule C:\Windows\system32\schedsvc.dll
12:18:07.0106 3808 Schedule - ok
12:18:07.0115 3808 [ 319C6B309773D063541D01DF8AC6F55F ] SCPolicySvc C:\Windows\System32\certprop.dll
12:18:07.0116 3808 SCPolicySvc - ok
12:18:07.0134 3808 [ 08236C4BCE5EDD0A0318A438AF28E0F7 ] SDRSVC C:\Windows\System32\SDRSVC.dll
12:18:07.0139 3808 SDRSVC - ok
12:18:07.0179 3808 [ 90A3935D05B494A5A39D37E71F09A677 ] secdrv C:\Windows\system32\drivers\secdrv.sys
12:18:07.0180 3808 secdrv - ok
12:18:07.0195 3808 [ A59B3A4442C52060CC7A85293AA3546F ] seclogon C:\Windows\system32\seclogon.dll
12:18:07.0199 3808 seclogon - ok
12:18:07.0209 3808 [ DCB7FCDCC97F87360F75D77425B81737 ] SENS C:\Windows\System32\sens.dll
12:18:07.0213 3808 SENS - ok
12:18:07.0235 3808 [ 50087FE1EE447009C9CC2997B90DE53F ] SensrSvc C:\Windows\system32\sensrsvc.dll
12:18:07.0240 3808 SensrSvc - ok
12:18:07.0243 3808 [ 9AD8B8B515E3DF6ACD4212EF465DE2D1 ] Serenum C:\Windows\system32\drivers\serenum.sys
12:18:07.0244 3808 Serenum - ok
12:18:07.0258 3808 [ 5FB7FCEA0490D821F26F39CC5EA3D1E2 ] Serial C:\Windows\system32\drivers\serial.sys
12:18:07.0259 3808 Serial - ok
12:18:07.0272 3808 [ 79BFFB520327FF916A582DFEA17AA813 ] sermouse C:\Windows\system32\drivers\sermouse.sys
12:18:07.0273 3808 sermouse - ok
12:18:07.0284 3808 [ 4AE380F39A0032EAB7DD953030B26D28 ] SessionEnv C:\Windows\system32\sessenv.dll
12:18:07.0288 3808 SessionEnv - ok
12:18:07.0292 3808 [ 9F976E1EB233DF46FCE808D9DEA3EB9C ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
12:18:07.0293 3808 sffdisk - ok
12:18:07.0297 3808 [ 932A68EE27833CFD57C1639D375F2731 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
12:18:07.0298 3808 sffp_mmc - ok
12:18:07.0302 3808 [ 6D4CCAEDC018F1CF52866BBBAA235982 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
12:18:07.0304 3808 sffp_sd - ok
12:18:07.0307 3808 [ DB96666CC8312EBC45032F30B007A547 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
12:18:07.0308 3808 sfloppy - ok
12:18:07.0340 3808 [ D1A079A0DE2EA524513B6930C24527A2 ] SharedAccess C:\Windows\System32\ipnathlp.dll
12:18:07.0344 3808 SharedAccess - ok
12:18:07.0362 3808 [ 414DA952A35BF5D50192E28263B40577 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
12:18:07.0368 3808 ShellHWDetection - ok
12:18:07.0382 3808 [ 2565CAC0DC9FE0371BDCE60832582B2E ] sisagp C:\Windows\system32\drivers\sisagp.sys
12:18:07.0383 3808 sisagp - ok
12:18:07.0388 3808 [ A9F0486851BECB6DDA1D89D381E71055 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys
12:18:07.0389 3808 SiSRaid2 - ok
12:18:07.0408 3808 [ 3727097B55738E2F554972C3BE5BC1AA ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
12:18:07.0410 3808 SiSRaid4 - ok
12:18:07.0504 3808 [ 50D9949020E02B847CD48F1243FCB895 ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe
12:18:07.0506 3808 SkypeUpdate - ok
12:18:07.0529 3808 [ 3E21C083B8A01CB70BA1F09303010FCE ] Smb C:\Windows\system32\DRIVERS\smb.sys
12:18:07.0530 3808 Smb - ok
12:18:07.0586 3808 [ 01489B818DBDA9C546A355EF4731E749 ] SmbDrvI C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys
12:18:07.0587 3808 SmbDrvI - ok
12:18:07.0634 3808 [ 6A984831644ECA1A33FFEAE4126F4F37 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
12:18:07.0638 3808 SNMPTRAP - ok
12:18:07.0642 3808 [ 95CF1AE7527FB70F7816563CBC09D942 ] spldr C:\Windows\system32\drivers\spldr.sys
12:18:07.0643 3808 spldr - ok
12:18:07.0666 3808 [ 866A43013535DC8587C258E43579C764 ] Spooler C:\Windows\System32\spoolsv.exe
12:18:07.0671 3808 Spooler - ok
12:18:07.0731 3808 [ CF87A1DE791347E75B98885214CED2B8 ] sppsvc C:\Windows\system32\sppsvc.exe
12:18:07.0753 3808 sppsvc - ok
12:18:07.0771 3808 [ B0180B20B065D89232A78A40FE56EAA6 ] sppuinotify C:\Windows\system32\sppuinotify.dll
12:18:07.0775 3808 sppuinotify - ok
12:18:07.0790 3808 [ 112127C3B2E64D7680CC39CD0A39DD7E ] srv C:\Windows\system32\DRIVERS\srv.sys
12:18:07.0793 3808 srv - ok
12:18:07.0800 3808 [ E5DD784A4EE5EBC72A86C677C988FCDB ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
12:18:07.0803 3808 srv2 - ok
12:18:07.0808 3808 [ CDBE627E16CC9E98F343D73F8E81D258 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
12:18:07.0809 3808 srvnet - ok
12:18:07.0825 3808 [ D887C9FD02AC9FA880F6E5027A43E118 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
12:18:07.0830 3808 SSDPSRV - ok
12:18:07.0907 3808 [ EF3458337D7341A05169CEFC73709264 ] SSPORT C:\Windows\system32\Drivers\SSPORT.sys
12:18:07.0908 3808 SSPORT - ok
12:18:07.0912 3808 [ D318F23BE45D5E3A107469EB64815B50 ] SstpSvc C:\Windows\system32\sstpsvc.dll
12:18:07.0916 3808 SstpSvc - ok
12:18:07.0921 3808 [ DB32D325C192B801DF274BFD12A7E72B ] stexstor C:\Windows\system32\drivers\stexstor.sys
12:18:07.0922 3808 stexstor - ok
12:18:07.0975 3808 [ E1FB3706030FB4578A0D72C2FC3689E4 ] StiSvc C:\Windows\System32\wiaservc.dll
12:18:07.0982 3808 StiSvc - ok
12:18:08.0007 3808 [ 472AF0311073DCECEAA8FA18BA2BDF89 ] storflt C:\Windows\system32\drivers\vmstorfl.sys
12:18:08.0008 3808 storflt - ok
12:18:08.0034 3808 [ 0BF669F0A910BEDA4A32258D363AF2A5 ] StorSvc C:\Windows\system32\storsvc.dll
12:18:08.0038 3808 StorSvc - ok
12:18:08.0046 3808 [ DCAFFD62259E0BDB433DD67B5BB37619 ] storvsc C:\Windows\system32\drivers\storvsc.sys
12:18:08.0047 3808 storvsc - ok
12:18:08.0064 3808 [ E58C78A848ADD9610A4DB6D214AF5224 ] swenum C:\Windows\system32\DRIVERS\swenum.sys
Re: Kontrola logu
12:18:08.0064 3808 swenum - ok
12:18:08.0246 3808 [ F577910A133A592234EBAAD3F3AFA258 ] SwitchBoard C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
12:18:08.0250 3808 SwitchBoard - ok
12:18:08.0284 3808 [ A28BD92DF340E57B024BA433165D34D7 ] swprv C:\Windows\System32\swprv.dll
12:18:08.0289 3808 swprv - ok
12:18:08.0343 3808 [ 2C3A3AA56987A8EE05B3A133D127B814 ] SynTP C:\Windows\system32\DRIVERS\SynTP.sys
12:18:08.0346 3808 SynTP - ok
12:18:08.0386 3808 [ 36650D618CA34C9D357DFD3D89B2C56F ] SysMain C:\Windows\system32\sysmain.dll
12:18:08.0396 3808 SysMain - ok
12:18:08.0412 3808 [ 763FECDC3D30C815FE72DD57936C6CD1 ] TabletInputService C:\Windows\System32\TabSvc.dll
12:18:08.0416 3808 TabletInputService - ok
12:18:08.0440 3808 [ 613BF4820361543956909043A265C6AC ] TapiSrv C:\Windows\System32\tapisrv.dll
12:18:08.0445 3808 TapiSrv - ok
12:18:08.0461 3808 [ B799D9FDB26111737F58288D8DC172D9 ] TBS C:\Windows\System32\tbssvc.dll
12:18:08.0466 3808 TBS - ok
12:18:08.0495 3808 [ 37E8FA3779668837CA9E2C36D2415949 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
12:18:08.0503 3808 Tcpip - ok
12:18:08.0551 3808 [ 37E8FA3779668837CA9E2C36D2415949 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
12:18:08.0559 3808 TCPIP6 - ok
12:18:08.0590 3808 [ CCA24162E055C3714CE5A88B100C64ED ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
12:18:08.0591 3808 tcpipreg - ok
12:18:08.0597 3808 [ 1CB91B2BD8F6DD367DFC2EF26FD751B2 ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
12:18:08.0598 3808 TDPIPE - ok
12:18:08.0633 3808 [ 2C2C5AFE7EE4F620D69C23C0617651A8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
12:18:08.0634 3808 TDTCP - ok
12:18:08.0660 3808 [ B459575348C20E8121D6039DA063C704 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
12:18:08.0661 3808 tdx - ok
12:18:09.0108 3808 [ CC907C2FB839D3F92690A25FF8E463BE ] TeamViewer9 C:\Program Files\TeamViewer\Version9\TeamViewer_Service.exe
12:18:09.0137 3808 TeamViewer9 - ok
12:18:09.0174 3808 [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
12:18:09.0175 3808 TermDD - ok
12:18:09.0200 3808 [ 382C804C92811BE57829D8E550A900E2 ] TermService C:\Windows\System32\termsrv.dll
12:18:09.0207 3808 TermService - ok
12:18:09.0224 3808 [ 42FB6AFD6B79D9FE07381609172E7CA4 ] Themes C:\Windows\system32\themeservice.dll
12:18:09.0228 3808 Themes - ok
12:18:09.0247 3808 [ 146B6F43A673379A3C670E86D89BE5EA ] THREADORDER C:\Windows\system32\mmcss.dll
12:18:09.0250 3808 THREADORDER - ok
12:18:09.0277 3808 [ 5E07D87201CDF23F877AD4F16EADB9F5 ] TPHKLOAD C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe
12:18:09.0278 3808 TPHKLOAD - ok
12:18:09.0290 3808 [ 5B62F45C87CC0FB176C5358EEA6CFB4C ] TPHKSVC C:\Program Files\LENOVO\HOTKEY\TPHKSVC.exe
12:18:09.0291 3808 TPHKSVC - ok
12:18:09.0328 3808 [ 8177EA8E81E397E8A2D7E213EB9FEE8F ] TPPWRIF C:\Windows\system32\drivers\Tppwr32v.sys
12:18:09.0329 3808 TPPWRIF - ok
12:18:09.0366 3808 [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A ] TrkWks C:\Windows\System32\trkwks.dll
12:18:09.0371 3808 TrkWks - ok
12:18:09.0417 3808 [ 2C49B175AEE1D4364B91B531417FE583 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
12:18:09.0418 3808 TrustedInstaller - ok
12:18:09.0430 3808 [ 254BB140EEE3C59D6114C1A86B636877 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
12:18:09.0431 3808 tssecsrv - ok
12:18:09.0435 3808 [ FD1D6C73E6333BE727CBCC6054247654 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
12:18:09.0437 3808 TsUsbFlt - ok
12:18:09.0457 3808 [ 01246F0BAAD7B68EC0F472AA41E33282 ] TsUsbGD C:\Windows\system32\drivers\TsUsbGD.sys
12:18:09.0458 3808 TsUsbGD - ok
12:18:09.0473 3808 [ B2FA25D9B17A68BB93D58B0556E8C90D ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
12:18:09.0474 3808 tunnel - ok
12:18:09.0521 3808 [ 24B8EBF85A4C22BA1B9459C6203F0A50 ] tvtvcamd C:\Windows\system32\DRIVERS\tvtvcamd.sys
12:18:09.0522 3808 tvtvcamd - ok
12:18:09.0526 3808 [ 750FBCB269F4D7DD2E420C56B795DB6D ] uagp35 C:\Windows\system32\drivers\uagp35.sys
12:18:09.0528 3808 uagp35 - ok
12:18:09.0534 3808 [ EE43346C7E4B5E63E54F927BABBB32FF ] udfs C:\Windows\system32\DRIVERS\udfs.sys
12:18:09.0536 3808 udfs - ok
12:18:09.0557 3808 [ 8344FD4FCE927880AA1AA7681D4927E5 ] UI0Detect C:\Windows\system32\UI0Detect.exe
12:18:09.0561 3808 UI0Detect - ok
12:18:09.0572 3808 [ 44E8048ACE47BEFBFDC2E9BE4CBC8880 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
12:18:09.0573 3808 uliagpkx - ok
12:18:09.0598 3808 [ D295BED4B898F0FD999FCFA9B32B071B ] umbus C:\Windows\system32\DRIVERS\umbus.sys
12:18:09.0599 3808 umbus - ok
12:18:09.0604 3808 [ 7550AD0C6998BA1CB4843E920EE0FEAC ] UmPass C:\Windows\system32\drivers\umpass.sys
12:18:09.0605 3808 UmPass - ok
12:18:09.0636 3808 [ 409994A8EACEEE4E328749C0353527A0 ] UmRdpService C:\Windows\System32\umrdp.dll
12:18:09.0642 3808 UmRdpService - ok
12:18:09.0665 3808 [ 833FBB672460EFCE8011D262175FAD33 ] upnphost C:\Windows\System32\upnphost.dll
12:18:09.0670 3808 upnphost - ok
12:18:09.0675 3808 [ 7E72E7D7E0757D59481D530FD2B0BFAE ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
12:18:09.0676 3808 usbccgp - ok
12:18:09.0681 3808 [ 04EC7CEC62EC3B6D9354EEE93327FC82 ] usbcir C:\Windows\system32\drivers\usbcir.sys
12:18:09.0682 3808 usbcir - ok
12:18:09.0687 3808 [ CFBCE999C057D78979A181C9C60F208E ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
12:18:09.0688 3808 usbehci - ok
12:18:09.0702 3808 [ 9D22AAD9AC6A07C691A1113E5F860868 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
12:18:09.0704 3808 usbhub - ok
12:18:09.0709 3808 [ A6FB7957EA7AFB1165991E54CE934B74 ] usbohci C:\Windows\system32\drivers\usbohci.sys
12:18:09.0710 3808 usbohci - ok
12:18:09.0728 3808 [ 797D862FE0875E75C7CC4C1AD7B30252 ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
12:18:09.0730 3808 usbprint - ok
12:18:09.0771 3808 [ 576096CCBC07E7C4EA4F5E6686D6888F ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys
12:18:09.0772 3808 usbscan - ok
12:18:09.0777 3808 [ BF63EBFC6979FEFB2BC03DF7989A0C1A ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
12:18:09.0778 3808 USBSTOR - ok
12:18:09.0782 3808 [ 78780C3EBCE17405B1CCD07A3A8A7D72 ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
12:18:09.0783 3808 usbuhci - ok
12:18:09.0808 3808 [ 45F4E7BF43DB40A6C6B4D92C76CBC3F2 ] usbvideo C:\Windows\system32\Drivers\usbvideo.sys
12:18:09.0810 3808 usbvideo - ok
12:18:09.0841 3808 [ 081E6E1C91AEC36758902A9F727CD23C ] UxSms C:\Windows\System32\uxsms.dll
12:18:09.0846 3808 UxSms - ok
12:18:09.0868 3808 [ F42309C4191C506B71DB5D1126D26318 ] VaultSvc C:\Windows\system32\lsass.exe
12:18:09.0871 3808 VaultSvc - ok
12:18:09.0904 3808 [ DAEF3AC067094497402C77476BBC3540 ] VClone C:\Windows\system32\DRIVERS\VClone.sys
12:18:09.0905 3808 VClone - ok
12:18:09.0923 3808 [ A059C4C3EDB09E07D21A8E5C0AABD3CB ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
12:18:09.0924 3808 vdrvroot - ok
12:18:09.0945 3808 [ C3CD30495687C2A2F66A65CA6FD89BE9 ] vds C:\Windows\System32\vds.exe
12:18:09.0952 3808 vds - ok
12:18:09.0956 3808 [ 17C408214EA61696CEC9C66E388B14F3 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
12:18:09.0958 3808 vga - ok
12:18:09.0967 3808 [ 8E38096AD5C8570A6F1570A61E251561 ] VgaSave C:\Windows\System32\drivers\vga.sys
12:18:09.0968 3808 VgaSave - ok
12:18:09.0983 3808 [ 5461686CCA2FDA57B024547733AB42E3 ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
12:18:09.0985 3808 vhdmp - ok
12:18:10.0005 3808 [ C829317A37B4BEA8F39735D4B076E923 ] viaagp C:\Windows\system32\drivers\viaagp.sys
12:18:10.0006 3808 viaagp - ok
12:18:10.0010 3808 [ E02F079A6AA107F06B16549C6E5C7B74 ] ViaC7 C:\Windows\system32\drivers\viac7.sys
12:18:10.0011 3808 ViaC7 - ok
12:18:10.0015 3808 [ E43574F6A56A0EE11809B48C09E4FD3C ] viaide C:\Windows\system32\drivers\viaide.sys
12:18:10.0017 3808 viaide - ok
12:18:10.0053 3808 [ C2F2911156FDC7817C52829C86DA494E ] vmbus C:\Windows\system32\drivers\vmbus.sys
12:18:10.0055 3808 vmbus - ok
12:18:10.0061 3808 [ D4D77455211E204F370D08F4963063CE ] VMBusHID C:\Windows\system32\drivers\VMBusHID.sys
12:18:10.0062 3808 VMBusHID - ok
12:18:10.0066 3808 [ 4C63E00F2F4B5F86AB48A58CD990F212 ] volmgr C:\Windows\system32\drivers\volmgr.sys
12:18:10.0068 3808 volmgr - ok
12:18:10.0083 3808 [ B5BB72067DDDDBBFB04B2F89FF8C3C87 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
12:18:10.0085 3808 volmgrx - ok
12:18:10.0093 3808 [ F497F67932C6FA693D7DE2780631CFE7 ] volsnap C:\Windows\system32\drivers\volsnap.sys
12:18:10.0095 3808 volsnap - ok
12:18:10.0101 3808 [ 9DFA0CC2F8855A04816729651175B631 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
12:18:10.0103 3808 vsmraid - ok
12:18:10.0136 3808 [ 209A3B1901B83AEB8527ED211CCE9E4C ] VSS C:\Windows\system32\vssvc.exe
12:18:10.0145 3808 VSS - ok
12:18:10.0149 3808 [ 90567B1E658001E79D7C8BBD3DDE5AA6 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys
12:18:10.0150 3808 vwifibus - ok
12:18:10.0165 3808 [ 7090D3436EEB4E7DA3373090A23448F7 ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys
12:18:10.0166 3808 vwififlt - ok
12:18:10.0175 3808 [ A3F04CBEA6C2A10E6CB01F8B47611882 ] vwifimp C:\Windows\system32\DRIVERS\vwifimp.sys
12:18:10.0176 3808 vwifimp - ok
12:18:10.0197 3808 [ 55187FD710E27D5095D10A472C8BAF1C ] W32Time C:\Windows\system32\w32time.dll
12:18:10.0203 3808 W32Time - ok
12:18:10.0209 3808 [ DE3721E89C653AA281428C8A69745D90 ] WacomPen C:\Windows\system32\drivers\wacompen.sys
12:18:10.0210 3808 WacomPen - ok
12:18:10.0229 3808 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
12:18:10.0230 3808 WANARP - ok
12:18:10.0234 3808 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
12:18:10.0235 3808 Wanarpv6 - ok
12:18:10.0288 3808 [ 691E3285E53DCA558E1A84667F13E15A ] wbengine C:\Windows\system32\wbengine.exe
12:18:10.0299 3808 wbengine - ok
12:18:10.0305 3808 [ 9614B5D29DC76AC3C29F6D2D3AA70E67 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
12:18:10.0310 3808 WbioSrvc - ok
12:18:10.0317 3808 [ 34EEE0DFAADB4F691D6D5308A51315DC ] wcncsvc C:\Windows\System32\wcncsvc.dll
12:18:10.0323 3808 wcncsvc - ok
12:18:10.0336 3808 [ 5D930B6357A6D2AF4D7653BDABBF352F ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
12:18:10.0341 3808 WcsPlugInService - ok
12:18:10.0345 3808 [ 1112A9BADACB47B7C0BB0392E3158DFF ] Wd C:\Windows\system32\drivers\wd.sys
12:18:10.0346 3808 Wd - ok
12:18:10.0399 3808 [ A840213F1ACDCC175B4D1D5AAEAC0D7A ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
12:18:10.0403 3808 Wdf01000 - ok
12:18:10.0429 3808 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiServiceHost C:\Windows\system32\wdi.dll
12:18:10.0433 3808 WdiServiceHost - ok
12:18:10.0437 3808 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiSystemHost C:\Windows\system32\wdi.dll
12:18:10.0442 3808 WdiSystemHost - ok
12:18:10.0454 3808 [ A9D880F97530D5B8FEE278923349929D ] WebClient C:\Windows\System32\webclnt.dll
12:18:10.0460 3808 WebClient - ok
12:18:10.0478 3808 [ 760F0AFE937A77CFF27153206534F275 ] Wecsvc C:\Windows\system32\wecsvc.dll
12:18:10.0483 3808 Wecsvc - ok
12:18:10.0499 3808 [ AC804569BB2364FB6017370258A4091B ] wercplsupport C:\Windows\System32\wercplsupport.dll
12:18:10.0504 3808 wercplsupport - ok
12:18:10.0520 3808 [ 08E420D873E4FD85241EE2421B02C4A4 ] WerSvc C:\Windows\System32\WerSvc.dll
12:18:10.0525 3808 WerSvc - ok
12:18:10.0569 3808 [ 8B9A943F3B53861F2BFAF6C186168F79 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
12:18:10.0570 3808 WfpLwf - ok
12:18:10.0574 3808 [ 5CF95B35E59E2A38023836FFF31BE64C ] WIMMount C:\Windows\system32\drivers\wimmount.sys
12:18:10.0575 3808 WIMMount - ok
12:18:10.0627 3808 [ 3FAE8F94296001C32EAB62CD7D82E0FD ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll
12:18:10.0631 3808 WinDefend - ok
12:18:10.0636 3808 WinHttpAutoProxySvc - ok
12:18:10.0736 3808 [ F62E510B6AD4C21EB9FE8668ED251826 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
12:18:10.0738 3808 Winmgmt - ok
12:18:10.0783 3808 [ 1B91CD34EA3A90AB6A4EF0550174F4CC ] WinRM C:\Windows\system32\WsmSvc.dll
12:18:10.0794 3808 WinRM - ok
12:18:10.0843 3808 [ A67E5F9A400F3BD1BE3D80613B45F708 ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
12:18:10.0844 3808 WinUsb - ok
12:18:10.0887 3808 [ 16935C98FF639D185086A3529B1F2067 ] Wlansvc C:\Windows\System32\wlansvc.dll
12:18:10.0896 3808 Wlansvc - ok
12:18:10.0984 3808 [ 45AA83A1FA24D5A630254D3FCF9EFDE9 ] WMCoreService C:\Program Files\Mobile Broadband drivers\WMCore\mini_WMCore.exe
12:18:10.0988 3808 WMCoreService - ok
12:18:11.0013 3808 [ 0217679B8FCA58714C3BF2726D2CA84E ] WmiAcpi C:\Windows\system32\DRIVERS\wmiacpi.sys
12:18:11.0014 3808 WmiAcpi - ok
12:18:11.0051 3808 [ 6EB6B66517B048D87DC1856DDF1F4C3F ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
12:18:11.0053 3808 wmiApSrv - ok
12:18:11.0127 3808 [ 3B40D3A61AA8C21B88AE57C58AB3122E ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
12:18:11.0134 3808 WMPNetworkSvc - ok
12:18:11.0160 3808 [ A2F0EC770A92F2B3F9DE6D518E11409C ] WPCSvc C:\Windows\System32\wpcsvc.dll
12:18:11.0164 3808 WPCSvc - ok
12:18:11.0169 3808 [ AA53356D60AF47EACC85BC617A4F3F66 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
12:18:11.0174 3808 WPDBusEnum - ok
12:18:11.0202 3808 [ 6DB3276587B853BF886B69528FDB048C ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
12:18:11.0203 3808 ws2ifsl - ok
12:18:11.0214 3808 [ 6F5D49EFE0E7164E03AE773A3FE25340 ] wscsvc C:\Windows\System32\wscsvc.dll
12:18:11.0219 3808 wscsvc - ok
12:18:11.0223 3808 WSearch - ok
12:18:11.0290 3808 [ FC3EC24FCE372C89423E015A2AC1A31E ] wuauserv C:\Windows\system32\wuaueng.dll
12:18:11.0305 3808 wuauserv - ok
12:18:11.0310 3808 [ E714A1C0354636837E20CCBF00888EE7 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
12:18:11.0311 3808 WudfPf - ok
12:18:11.0336 3808 [ 1023EE888C9B47178C5293ED5336AB69 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
12:18:11.0338 3808 WUDFRd - ok
12:18:11.0352 3808 [ 8D1E1E529A2C9E9B6A85B55A345F7629 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
12:18:11.0357 3808 wudfsvc - ok
12:18:11.0376 3808 [ FF2D745B560F7C71B31F30F4D49F73D2 ] WwanSvc C:\Windows\System32\wwansvc.dll
12:18:11.0381 3808 WwanSvc - ok
12:18:11.0495 3808 [ 79F08CE5B06F333AEFCB1C92D5A2D144 ] ZeroConfigService C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
12:18:11.0510 3808 ZeroConfigService - ok
12:18:11.0521 3808 ================ Scan global ===============================
12:18:11.0570 3808 [ DAB748AE0439955ED2FA22357533DDDB ] C:\Windows\system32\basesrv.dll
12:18:11.0583 3808 [ A9F564F254E9DDDE120A7135767EC24B ] C:\Windows\system32\winsrv.dll
12:18:11.0592 3808 [ A9F564F254E9DDDE120A7135767EC24B ] C:\Windows\system32\winsrv.dll
12:18:11.0621 3808 [ 364455805E64882844EE9ACB72522830 ] C:\Windows\system32\sxssrv.dll
12:18:11.0649 3808 [ 5F1B6A9C35D3D5CA72D6D6FDEF9747D6 ] C:\Windows\system32\services.exe
12:18:11.0654 3808 [Global] - ok
12:18:11.0655 3808 ================ Scan MBR ==================================
12:18:11.0666 3808 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
12:18:12.0216 3808 \Device\Harddisk0\DR0 - ok
12:18:12.0216 3808 ================ Scan VBR ==================================
12:18:12.0219 3808 [ D6C08640DEC61AB3C4617AFDF212ADB4 ] \Device\Harddisk0\DR0\Partition1
12:18:12.0221 3808 \Device\Harddisk0\DR0\Partition1 - ok
12:18:12.0236 3808 [ 17C7E3022246E7DA4C26D8787D6E4F71 ] \Device\Harddisk0\DR0\Partition2
12:18:12.0238 3808 \Device\Harddisk0\DR0\Partition2 - ok
12:18:12.0239 3808 ============================================================
12:18:12.0239 3808 Scan finished
12:18:12.0239 3808 ============================================================
12:18:12.0247 6528 Detected object count: 0
12:18:12.0247 6528 Actual detected object count: 0
12:18:08.0246 3808 [ F577910A133A592234EBAAD3F3AFA258 ] SwitchBoard C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
12:18:08.0250 3808 SwitchBoard - ok
12:18:08.0284 3808 [ A28BD92DF340E57B024BA433165D34D7 ] swprv C:\Windows\System32\swprv.dll
12:18:08.0289 3808 swprv - ok
12:18:08.0343 3808 [ 2C3A3AA56987A8EE05B3A133D127B814 ] SynTP C:\Windows\system32\DRIVERS\SynTP.sys
12:18:08.0346 3808 SynTP - ok
12:18:08.0386 3808 [ 36650D618CA34C9D357DFD3D89B2C56F ] SysMain C:\Windows\system32\sysmain.dll
12:18:08.0396 3808 SysMain - ok
12:18:08.0412 3808 [ 763FECDC3D30C815FE72DD57936C6CD1 ] TabletInputService C:\Windows\System32\TabSvc.dll
12:18:08.0416 3808 TabletInputService - ok
12:18:08.0440 3808 [ 613BF4820361543956909043A265C6AC ] TapiSrv C:\Windows\System32\tapisrv.dll
12:18:08.0445 3808 TapiSrv - ok
12:18:08.0461 3808 [ B799D9FDB26111737F58288D8DC172D9 ] TBS C:\Windows\System32\tbssvc.dll
12:18:08.0466 3808 TBS - ok
12:18:08.0495 3808 [ 37E8FA3779668837CA9E2C36D2415949 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
12:18:08.0503 3808 Tcpip - ok
12:18:08.0551 3808 [ 37E8FA3779668837CA9E2C36D2415949 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
12:18:08.0559 3808 TCPIP6 - ok
12:18:08.0590 3808 [ CCA24162E055C3714CE5A88B100C64ED ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
12:18:08.0591 3808 tcpipreg - ok
12:18:08.0597 3808 [ 1CB91B2BD8F6DD367DFC2EF26FD751B2 ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
12:18:08.0598 3808 TDPIPE - ok
12:18:08.0633 3808 [ 2C2C5AFE7EE4F620D69C23C0617651A8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
12:18:08.0634 3808 TDTCP - ok
12:18:08.0660 3808 [ B459575348C20E8121D6039DA063C704 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
12:18:08.0661 3808 tdx - ok
12:18:09.0108 3808 [ CC907C2FB839D3F92690A25FF8E463BE ] TeamViewer9 C:\Program Files\TeamViewer\Version9\TeamViewer_Service.exe
12:18:09.0137 3808 TeamViewer9 - ok
12:18:09.0174 3808 [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
12:18:09.0175 3808 TermDD - ok
12:18:09.0200 3808 [ 382C804C92811BE57829D8E550A900E2 ] TermService C:\Windows\System32\termsrv.dll
12:18:09.0207 3808 TermService - ok
12:18:09.0224 3808 [ 42FB6AFD6B79D9FE07381609172E7CA4 ] Themes C:\Windows\system32\themeservice.dll
12:18:09.0228 3808 Themes - ok
12:18:09.0247 3808 [ 146B6F43A673379A3C670E86D89BE5EA ] THREADORDER C:\Windows\system32\mmcss.dll
12:18:09.0250 3808 THREADORDER - ok
12:18:09.0277 3808 [ 5E07D87201CDF23F877AD4F16EADB9F5 ] TPHKLOAD C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe
12:18:09.0278 3808 TPHKLOAD - ok
12:18:09.0290 3808 [ 5B62F45C87CC0FB176C5358EEA6CFB4C ] TPHKSVC C:\Program Files\LENOVO\HOTKEY\TPHKSVC.exe
12:18:09.0291 3808 TPHKSVC - ok
12:18:09.0328 3808 [ 8177EA8E81E397E8A2D7E213EB9FEE8F ] TPPWRIF C:\Windows\system32\drivers\Tppwr32v.sys
12:18:09.0329 3808 TPPWRIF - ok
12:18:09.0366 3808 [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A ] TrkWks C:\Windows\System32\trkwks.dll
12:18:09.0371 3808 TrkWks - ok
12:18:09.0417 3808 [ 2C49B175AEE1D4364B91B531417FE583 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
12:18:09.0418 3808 TrustedInstaller - ok
12:18:09.0430 3808 [ 254BB140EEE3C59D6114C1A86B636877 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
12:18:09.0431 3808 tssecsrv - ok
12:18:09.0435 3808 [ FD1D6C73E6333BE727CBCC6054247654 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
12:18:09.0437 3808 TsUsbFlt - ok
12:18:09.0457 3808 [ 01246F0BAAD7B68EC0F472AA41E33282 ] TsUsbGD C:\Windows\system32\drivers\TsUsbGD.sys
12:18:09.0458 3808 TsUsbGD - ok
12:18:09.0473 3808 [ B2FA25D9B17A68BB93D58B0556E8C90D ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
12:18:09.0474 3808 tunnel - ok
12:18:09.0521 3808 [ 24B8EBF85A4C22BA1B9459C6203F0A50 ] tvtvcamd C:\Windows\system32\DRIVERS\tvtvcamd.sys
12:18:09.0522 3808 tvtvcamd - ok
12:18:09.0526 3808 [ 750FBCB269F4D7DD2E420C56B795DB6D ] uagp35 C:\Windows\system32\drivers\uagp35.sys
12:18:09.0528 3808 uagp35 - ok
12:18:09.0534 3808 [ EE43346C7E4B5E63E54F927BABBB32FF ] udfs C:\Windows\system32\DRIVERS\udfs.sys
12:18:09.0536 3808 udfs - ok
12:18:09.0557 3808 [ 8344FD4FCE927880AA1AA7681D4927E5 ] UI0Detect C:\Windows\system32\UI0Detect.exe
12:18:09.0561 3808 UI0Detect - ok
12:18:09.0572 3808 [ 44E8048ACE47BEFBFDC2E9BE4CBC8880 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
12:18:09.0573 3808 uliagpkx - ok
12:18:09.0598 3808 [ D295BED4B898F0FD999FCFA9B32B071B ] umbus C:\Windows\system32\DRIVERS\umbus.sys
12:18:09.0599 3808 umbus - ok
12:18:09.0604 3808 [ 7550AD0C6998BA1CB4843E920EE0FEAC ] UmPass C:\Windows\system32\drivers\umpass.sys
12:18:09.0605 3808 UmPass - ok
12:18:09.0636 3808 [ 409994A8EACEEE4E328749C0353527A0 ] UmRdpService C:\Windows\System32\umrdp.dll
12:18:09.0642 3808 UmRdpService - ok
12:18:09.0665 3808 [ 833FBB672460EFCE8011D262175FAD33 ] upnphost C:\Windows\System32\upnphost.dll
12:18:09.0670 3808 upnphost - ok
12:18:09.0675 3808 [ 7E72E7D7E0757D59481D530FD2B0BFAE ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
12:18:09.0676 3808 usbccgp - ok
12:18:09.0681 3808 [ 04EC7CEC62EC3B6D9354EEE93327FC82 ] usbcir C:\Windows\system32\drivers\usbcir.sys
12:18:09.0682 3808 usbcir - ok
12:18:09.0687 3808 [ CFBCE999C057D78979A181C9C60F208E ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
12:18:09.0688 3808 usbehci - ok
12:18:09.0702 3808 [ 9D22AAD9AC6A07C691A1113E5F860868 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
12:18:09.0704 3808 usbhub - ok
12:18:09.0709 3808 [ A6FB7957EA7AFB1165991E54CE934B74 ] usbohci C:\Windows\system32\drivers\usbohci.sys
12:18:09.0710 3808 usbohci - ok
12:18:09.0728 3808 [ 797D862FE0875E75C7CC4C1AD7B30252 ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
12:18:09.0730 3808 usbprint - ok
12:18:09.0771 3808 [ 576096CCBC07E7C4EA4F5E6686D6888F ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys
12:18:09.0772 3808 usbscan - ok
12:18:09.0777 3808 [ BF63EBFC6979FEFB2BC03DF7989A0C1A ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
12:18:09.0778 3808 USBSTOR - ok
12:18:09.0782 3808 [ 78780C3EBCE17405B1CCD07A3A8A7D72 ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
12:18:09.0783 3808 usbuhci - ok
12:18:09.0808 3808 [ 45F4E7BF43DB40A6C6B4D92C76CBC3F2 ] usbvideo C:\Windows\system32\Drivers\usbvideo.sys
12:18:09.0810 3808 usbvideo - ok
12:18:09.0841 3808 [ 081E6E1C91AEC36758902A9F727CD23C ] UxSms C:\Windows\System32\uxsms.dll
12:18:09.0846 3808 UxSms - ok
12:18:09.0868 3808 [ F42309C4191C506B71DB5D1126D26318 ] VaultSvc C:\Windows\system32\lsass.exe
12:18:09.0871 3808 VaultSvc - ok
12:18:09.0904 3808 [ DAEF3AC067094497402C77476BBC3540 ] VClone C:\Windows\system32\DRIVERS\VClone.sys
12:18:09.0905 3808 VClone - ok
12:18:09.0923 3808 [ A059C4C3EDB09E07D21A8E5C0AABD3CB ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
12:18:09.0924 3808 vdrvroot - ok
12:18:09.0945 3808 [ C3CD30495687C2A2F66A65CA6FD89BE9 ] vds C:\Windows\System32\vds.exe
12:18:09.0952 3808 vds - ok
12:18:09.0956 3808 [ 17C408214EA61696CEC9C66E388B14F3 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
12:18:09.0958 3808 vga - ok
12:18:09.0967 3808 [ 8E38096AD5C8570A6F1570A61E251561 ] VgaSave C:\Windows\System32\drivers\vga.sys
12:18:09.0968 3808 VgaSave - ok
12:18:09.0983 3808 [ 5461686CCA2FDA57B024547733AB42E3 ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
12:18:09.0985 3808 vhdmp - ok
12:18:10.0005 3808 [ C829317A37B4BEA8F39735D4B076E923 ] viaagp C:\Windows\system32\drivers\viaagp.sys
12:18:10.0006 3808 viaagp - ok
12:18:10.0010 3808 [ E02F079A6AA107F06B16549C6E5C7B74 ] ViaC7 C:\Windows\system32\drivers\viac7.sys
12:18:10.0011 3808 ViaC7 - ok
12:18:10.0015 3808 [ E43574F6A56A0EE11809B48C09E4FD3C ] viaide C:\Windows\system32\drivers\viaide.sys
12:18:10.0017 3808 viaide - ok
12:18:10.0053 3808 [ C2F2911156FDC7817C52829C86DA494E ] vmbus C:\Windows\system32\drivers\vmbus.sys
12:18:10.0055 3808 vmbus - ok
12:18:10.0061 3808 [ D4D77455211E204F370D08F4963063CE ] VMBusHID C:\Windows\system32\drivers\VMBusHID.sys
12:18:10.0062 3808 VMBusHID - ok
12:18:10.0066 3808 [ 4C63E00F2F4B5F86AB48A58CD990F212 ] volmgr C:\Windows\system32\drivers\volmgr.sys
12:18:10.0068 3808 volmgr - ok
12:18:10.0083 3808 [ B5BB72067DDDDBBFB04B2F89FF8C3C87 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
12:18:10.0085 3808 volmgrx - ok
12:18:10.0093 3808 [ F497F67932C6FA693D7DE2780631CFE7 ] volsnap C:\Windows\system32\drivers\volsnap.sys
12:18:10.0095 3808 volsnap - ok
12:18:10.0101 3808 [ 9DFA0CC2F8855A04816729651175B631 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
12:18:10.0103 3808 vsmraid - ok
12:18:10.0136 3808 [ 209A3B1901B83AEB8527ED211CCE9E4C ] VSS C:\Windows\system32\vssvc.exe
12:18:10.0145 3808 VSS - ok
12:18:10.0149 3808 [ 90567B1E658001E79D7C8BBD3DDE5AA6 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys
12:18:10.0150 3808 vwifibus - ok
12:18:10.0165 3808 [ 7090D3436EEB4E7DA3373090A23448F7 ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys
12:18:10.0166 3808 vwififlt - ok
12:18:10.0175 3808 [ A3F04CBEA6C2A10E6CB01F8B47611882 ] vwifimp C:\Windows\system32\DRIVERS\vwifimp.sys
12:18:10.0176 3808 vwifimp - ok
12:18:10.0197 3808 [ 55187FD710E27D5095D10A472C8BAF1C ] W32Time C:\Windows\system32\w32time.dll
12:18:10.0203 3808 W32Time - ok
12:18:10.0209 3808 [ DE3721E89C653AA281428C8A69745D90 ] WacomPen C:\Windows\system32\drivers\wacompen.sys
12:18:10.0210 3808 WacomPen - ok
12:18:10.0229 3808 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
12:18:10.0230 3808 WANARP - ok
12:18:10.0234 3808 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
12:18:10.0235 3808 Wanarpv6 - ok
12:18:10.0288 3808 [ 691E3285E53DCA558E1A84667F13E15A ] wbengine C:\Windows\system32\wbengine.exe
12:18:10.0299 3808 wbengine - ok
12:18:10.0305 3808 [ 9614B5D29DC76AC3C29F6D2D3AA70E67 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
12:18:10.0310 3808 WbioSrvc - ok
12:18:10.0317 3808 [ 34EEE0DFAADB4F691D6D5308A51315DC ] wcncsvc C:\Windows\System32\wcncsvc.dll
12:18:10.0323 3808 wcncsvc - ok
12:18:10.0336 3808 [ 5D930B6357A6D2AF4D7653BDABBF352F ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
12:18:10.0341 3808 WcsPlugInService - ok
12:18:10.0345 3808 [ 1112A9BADACB47B7C0BB0392E3158DFF ] Wd C:\Windows\system32\drivers\wd.sys
12:18:10.0346 3808 Wd - ok
12:18:10.0399 3808 [ A840213F1ACDCC175B4D1D5AAEAC0D7A ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
12:18:10.0403 3808 Wdf01000 - ok
12:18:10.0429 3808 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiServiceHost C:\Windows\system32\wdi.dll
12:18:10.0433 3808 WdiServiceHost - ok
12:18:10.0437 3808 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiSystemHost C:\Windows\system32\wdi.dll
12:18:10.0442 3808 WdiSystemHost - ok
12:18:10.0454 3808 [ A9D880F97530D5B8FEE278923349929D ] WebClient C:\Windows\System32\webclnt.dll
12:18:10.0460 3808 WebClient - ok
12:18:10.0478 3808 [ 760F0AFE937A77CFF27153206534F275 ] Wecsvc C:\Windows\system32\wecsvc.dll
12:18:10.0483 3808 Wecsvc - ok
12:18:10.0499 3808 [ AC804569BB2364FB6017370258A4091B ] wercplsupport C:\Windows\System32\wercplsupport.dll
12:18:10.0504 3808 wercplsupport - ok
12:18:10.0520 3808 [ 08E420D873E4FD85241EE2421B02C4A4 ] WerSvc C:\Windows\System32\WerSvc.dll
12:18:10.0525 3808 WerSvc - ok
12:18:10.0569 3808 [ 8B9A943F3B53861F2BFAF6C186168F79 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
12:18:10.0570 3808 WfpLwf - ok
12:18:10.0574 3808 [ 5CF95B35E59E2A38023836FFF31BE64C ] WIMMount C:\Windows\system32\drivers\wimmount.sys
12:18:10.0575 3808 WIMMount - ok
12:18:10.0627 3808 [ 3FAE8F94296001C32EAB62CD7D82E0FD ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll
12:18:10.0631 3808 WinDefend - ok
12:18:10.0636 3808 WinHttpAutoProxySvc - ok
12:18:10.0736 3808 [ F62E510B6AD4C21EB9FE8668ED251826 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
12:18:10.0738 3808 Winmgmt - ok
12:18:10.0783 3808 [ 1B91CD34EA3A90AB6A4EF0550174F4CC ] WinRM C:\Windows\system32\WsmSvc.dll
12:18:10.0794 3808 WinRM - ok
12:18:10.0843 3808 [ A67E5F9A400F3BD1BE3D80613B45F708 ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
12:18:10.0844 3808 WinUsb - ok
12:18:10.0887 3808 [ 16935C98FF639D185086A3529B1F2067 ] Wlansvc C:\Windows\System32\wlansvc.dll
12:18:10.0896 3808 Wlansvc - ok
12:18:10.0984 3808 [ 45AA83A1FA24D5A630254D3FCF9EFDE9 ] WMCoreService C:\Program Files\Mobile Broadband drivers\WMCore\mini_WMCore.exe
12:18:10.0988 3808 WMCoreService - ok
12:18:11.0013 3808 [ 0217679B8FCA58714C3BF2726D2CA84E ] WmiAcpi C:\Windows\system32\DRIVERS\wmiacpi.sys
12:18:11.0014 3808 WmiAcpi - ok
12:18:11.0051 3808 [ 6EB6B66517B048D87DC1856DDF1F4C3F ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
12:18:11.0053 3808 wmiApSrv - ok
12:18:11.0127 3808 [ 3B40D3A61AA8C21B88AE57C58AB3122E ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
12:18:11.0134 3808 WMPNetworkSvc - ok
12:18:11.0160 3808 [ A2F0EC770A92F2B3F9DE6D518E11409C ] WPCSvc C:\Windows\System32\wpcsvc.dll
12:18:11.0164 3808 WPCSvc - ok
12:18:11.0169 3808 [ AA53356D60AF47EACC85BC617A4F3F66 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
12:18:11.0174 3808 WPDBusEnum - ok
12:18:11.0202 3808 [ 6DB3276587B853BF886B69528FDB048C ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
12:18:11.0203 3808 ws2ifsl - ok
12:18:11.0214 3808 [ 6F5D49EFE0E7164E03AE773A3FE25340 ] wscsvc C:\Windows\System32\wscsvc.dll
12:18:11.0219 3808 wscsvc - ok
12:18:11.0223 3808 WSearch - ok
12:18:11.0290 3808 [ FC3EC24FCE372C89423E015A2AC1A31E ] wuauserv C:\Windows\system32\wuaueng.dll
12:18:11.0305 3808 wuauserv - ok
12:18:11.0310 3808 [ E714A1C0354636837E20CCBF00888EE7 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
12:18:11.0311 3808 WudfPf - ok
12:18:11.0336 3808 [ 1023EE888C9B47178C5293ED5336AB69 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
12:18:11.0338 3808 WUDFRd - ok
12:18:11.0352 3808 [ 8D1E1E529A2C9E9B6A85B55A345F7629 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
12:18:11.0357 3808 wudfsvc - ok
12:18:11.0376 3808 [ FF2D745B560F7C71B31F30F4D49F73D2 ] WwanSvc C:\Windows\System32\wwansvc.dll
12:18:11.0381 3808 WwanSvc - ok
12:18:11.0495 3808 [ 79F08CE5B06F333AEFCB1C92D5A2D144 ] ZeroConfigService C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
12:18:11.0510 3808 ZeroConfigService - ok
12:18:11.0521 3808 ================ Scan global ===============================
12:18:11.0570 3808 [ DAB748AE0439955ED2FA22357533DDDB ] C:\Windows\system32\basesrv.dll
12:18:11.0583 3808 [ A9F564F254E9DDDE120A7135767EC24B ] C:\Windows\system32\winsrv.dll
12:18:11.0592 3808 [ A9F564F254E9DDDE120A7135767EC24B ] C:\Windows\system32\winsrv.dll
12:18:11.0621 3808 [ 364455805E64882844EE9ACB72522830 ] C:\Windows\system32\sxssrv.dll
12:18:11.0649 3808 [ 5F1B6A9C35D3D5CA72D6D6FDEF9747D6 ] C:\Windows\system32\services.exe
12:18:11.0654 3808 [Global] - ok
12:18:11.0655 3808 ================ Scan MBR ==================================
12:18:11.0666 3808 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
12:18:12.0216 3808 \Device\Harddisk0\DR0 - ok
12:18:12.0216 3808 ================ Scan VBR ==================================
12:18:12.0219 3808 [ D6C08640DEC61AB3C4617AFDF212ADB4 ] \Device\Harddisk0\DR0\Partition1
12:18:12.0221 3808 \Device\Harddisk0\DR0\Partition1 - ok
12:18:12.0236 3808 [ 17C7E3022246E7DA4C26D8787D6E4F71 ] \Device\Harddisk0\DR0\Partition2
12:18:12.0238 3808 \Device\Harddisk0\DR0\Partition2 - ok
12:18:12.0239 3808 ============================================================
12:18:12.0239 3808 Scan finished
12:18:12.0239 3808 ============================================================
12:18:12.0247 6528 Detected object count: 0
12:18:12.0247 6528 Actual detected object count: 0
- Orcus
- člen Security týmu
-
Elite Level 10.5
- Příspěvky: 10645
- Registrován: duben 10
- Bydliště: Okolo rostou 3 růže =o)
- Pohlaví:
- Stav:
Offline
Re: Kontrola logu
Co problémy? Jak to vypadáa?
Láska hřeje, ale uhlí je uhlí.
Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.
Pár rad k bezpečnosti PC.
Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix
Pokud budete spokojeni , můžete podpořit naše fórum.

Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.
Pár rad k bezpečnosti PC.
Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix
Pokud budete spokojeni , můžete podpořit naše fórum.
Re: Kontrola logu
Projevuje se to zatím pouze ve flash playeru a občas přehrávání zvuku, který se zasekne a vydává stejný zaseknutý tón, některé přehrávače nefungují vůbec nebo špatně, např. flash aplikace u fortuny funguje špatně. Dneska to znovu přeinstaluju, mám podezření, jestli to nezpůsobily ovladače Lenova, při první instalaci jsem totiž nainstaloval ovladač lenova na GK a NTB mi začal pořád padat do BSOD při načítání windowsů. Poté jsem to musel přeinstalovat znovu, protože mi nenajel ani nouzák.
Bude to tedy něco při instalaci ovladačů, protože tu defacto ani nic nainstalovaného nemám, krom základních programů.
Každopádně díky za pomoc a věnovaný čas.
Bude to tedy něco při instalaci ovladačů, protože tu defacto ani nic nainstalovaného nemám, krom základních programů.
Každopádně díky za pomoc a věnovaný čas.

- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Kontrola logu
Pokud nejsou jiné problémy , je to vše a můžeš dát vyřešeno , zelenou fajfku.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 64 hostů