Prosím o kontrolu logu Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
Mety
Level 2.5
Level 2.5
Příspěvky: 326
Registrován: duben 12
Bydliště: Markvartovice
Pohlaví: Muž
Stav:
Offline

Prosím o kontrolu logu

Příspěvekod Mety » 18 dub 2014 20:46

Prosím o kontrolu logu, PC je pomalejší. Děkuji

Log z HJT:

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:34:01, on 18.4.2014
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v9.00 (9.00.8112.16545)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Windows\Explorer.EXE
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Steam\Steam.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\OSCAR Editor X7\OscarEditor.exe
C:\Program Files\ATI Technologies\HydraVision\HydraDM.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\x86\CLIStart.exe" MSRun
O4 - HKCU\..\Run: [Steam] "C:\Program Files\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [OscarEditor] "C:\Program Files\OSCAR Editor X7\OscarEditor.exe" Minimum
O4 - HKCU\..\Run: [HydraVisionDesktopManager] "C:\Program Files\ATI Technologies\HydraVision\HydraDM.exe"
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: AppleChargerSrv - Unknown owner - C:\Windows\system32\AppleChargerSrv.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe

--
End of file - 4210 bytes


Log z MbAm:

Malwarebytes Anti-Malware
www.malwarebytes.org

Scan Date: 18.4.2014
Scan Time: 20:43:55
Logfile: log.txt
Administrator: Yes

Version: 2.00.1.1004
Malware Database: v2014.04.18.07
Rootkit Database: v2014.03.27.01
License: Trial
Malware Protection: Enabled
Malicious Website Protection: Enabled
Chameleon: Disabled

OS: Windows Vista Service Pack 2
CPU: x86
File System: NTFS
User: Maty

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 218146
Time Elapsed: 6 min, 29 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Shuriken: Enabled
PUP: Enabled
PUM: Enabled

Processes: 0
(No malicious items detected)

Modules: 0
(No malicious items detected)

Registry Keys: 0
(No malicious items detected)

Registry Values: 0
(No malicious items detected)

Registry Data: 0
(No malicious items detected)

Folders: 0
(No malicious items detected)

Files: 0
(No malicious items detected)

Physical Sectors: 0
(No malicious items detected)


(end)

Vyčištění pomocí ATF Cleaneru provedeno.

Reklama
Uživatelský avatar
Orcus
člen Security týmu
Elite Level 10.5
Elite Level 10.5
Příspěvky: 10645
Registrován: duben 10
Bydliště: Okolo rostou 3 růže =o)
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod Orcus » 18 dub 2014 20:48

Stáhni si TFC
Otevři soubor a zavři všechny ostatní okna, Klikni na Start k zahájení procesu. Program by neměl trvat dlouho.
Poté by se měl PC restartovat, pokud ne , proveď sám.

===================================================

Stáhni AdwCleaner (by Xplode)

Ulož si ho na svojí plochu
Ukonči všechny programy , okna a prohlížeče
Spusť program poklepáním a klikni na „Prohledat-Scan“
Po skenu se objeví log ( jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.
Láska hřeje, ale uhlí je uhlí. :fire:



Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.

Pár rad k bezpečnosti PC.

Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix

Pokud budete spokojeni , můžete podpořit naše fórum.

Uživatelský avatar
Mety
Level 2.5
Level 2.5
Příspěvky: 326
Registrován: duben 12
Bydliště: Markvartovice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod Mety » 18 dub 2014 23:49

TFC provedeno.

Log z AdwCleaneru:

# AdwCleaner v3.023 - Report created 18/04/2014 at 23:41:29
# Updated 01/04/2014 by Xplode
# Operating System : Windows Vista (TM) Home Basic Service Pack 2 (32 bits)
# Username : Maty - MATY-PC
# Running from : C:\Users\Maty\Desktop\adwcleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****


***** [ Browsers ] *****

-\\ Internet Explorer v9.0.8112.16545


-\\ Google Chrome v34.0.1847.116

[ File : C:\Users\Maty\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R10].txt - [765 octets] - [18/04/2014 23:11:46]
AdwCleaner[S2].txt - [686 octets] - [18/04/2014 23:41:29]

########## EOF - C:\AdwCleaner\AdwCleaner[S2].txt - [745 octets] ##########

Uživatelský avatar
Orcus
člen Security týmu
Elite Level 10.5
Elite Level 10.5
Příspěvky: 10645
Registrován: duben 10
Bydliště: Okolo rostou 3 růže =o)
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod Orcus » 19 dub 2014 07:25

Spusť znovu AdwCleaner (u Windows Vista či Windows7, klikni na AdwCleaner pravým a vyber „Spustit jako správce“
Klikni na „ Smazat“
Program provede opravu, po automatickém restartu neukáže log (C:\AdwCleaner [S?].txt) , jeho obsah sem celý vlož.

====================================================

Stáhni si Junkware Removal Tool

na svojí plochu.
Deaktivuj si svůj antivirový program.
Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.

====================================================

Stáhni si RogueKiller
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit

-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
Láska hřeje, ale uhlí je uhlí. :fire:



Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.

Pár rad k bezpečnosti PC.

Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix

Pokud budete spokojeni , můžete podpořit naše fórum.

Uživatelský avatar
Mety
Level 2.5
Level 2.5
Příspěvky: 326
Registrován: duben 12
Bydliště: Markvartovice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod Mety » 19 dub 2014 11:57

Log z AdwCleaneru po smazání:

# AdwCleaner v3.024 - Report created 19/04/2014 at 11:43:20
# Updated 18/04/2014 by Xplode
# Operating System : Windows Vista (TM) Home Basic Service Pack 2 (32 bits)
# Username : Maty - MATY-PC
# Running from : C:\Users\Maty\Downloads\adwcleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****


***** [ Browsers ] *****

-\\ Internet Explorer v9.0.8112.16545


-\\ Google Chrome v34.0.1847.116

[ File : C:\Users\Maty\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R11].txt - [767 octets] - [19/04/2014 11:39:54]
AdwCleaner[R12].txt - [827 octets] - [19/04/2014 11:42:07]
AdwCleaner[S3].txt - [748 octets] - [19/04/2014 11:43:20]

########## EOF - C:\AdwCleaner\AdwCleaner[S3].txt - [807 octets] ##########

Log z JRT:

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.4 (04.06.2014:1)
OS: Windows Vista (TM) Home Basic x86
Ran by Maty on so 19.04.2014 at 11:49:38,36
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys



~~~ Files



~~~ Folders



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on so 19.04.2014 at 11:51:42,78
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~


Log z RogueKiller:

RogueKiller V8.8.15 [Mar 27 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com

Operační systém : Windows Vista (6.0.6002 Service Pack 2) 32 bits version
Spuštěno v : Normální režim
Uživatel : Maty [Práva správce]
Mód : Kontrola -- Datum : 04/19/2014 11:55:00
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 3 ¤¤¤
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ POL][PUM] HKLM\[...]\System : DisableRegistryTools (0) -> NALEZENO

¤¤¤ naplánované úlohy : 0 ¤¤¤

¤¤¤ spuštění položky : 0 ¤¤¤

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Browser Addons : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts


127.0.0.1 localhost


¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) WDC WD1600AAJS-00PSA0 ATA Device +++++
--- User ---
[MBR] 4cda754c8708adf8874e4aed7dea9e27
[BSP] 6606dc501e44795e5045819a21530670 : Windows Vista MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 152625 MB
User = LL1 ... OK!
User = LL2 ... OK!

+++++ PhysicalDrive1: (\\.\PHYSICALDRIVE1 @ USB) Generic USB SD Reader USB Device +++++
Error reading User MBR! ([0x15] Za?ízení není p?ipraveno. )
User = LL1 ... OK!
Error reading LL2 MBR! ([0x32] Po?adavek není podporován. )

+++++ PhysicalDrive2: (\\.\PHYSICALDRIVE2 @ USB) Generic USB CF Reader USB Device +++++
Error reading User MBR! ([0x15] Za?ízení není p?ipraveno. )
User = LL1 ... OK!
Error reading LL2 MBR! ([0x32] Po?adavek není podporován. )

+++++ PhysicalDrive3: (\\.\PHYSICALDRIVE3 @ USB) Generic USB SM Reader USB Device +++++
Error reading User MBR! ([0x15] Za?ízení není p?ipraveno. )
User = LL1 ... OK!
Error reading LL2 MBR! ([0x32] Po?adavek není podporován. )

+++++ PhysicalDrive4: (\\.\PHYSICALDRIVE4 @ USB) Generic USB MS Reader USB Device +++++
Error reading User MBR! ([0x15] Za?ízení není p?ipraveno. )
User = LL1 ... OK!
Error reading LL2 MBR! ([0x32] Po?adavek není podporován. )

Dokončeno : << RKreport[0]_S_04192014_115500.txt >>

Uživatelský avatar
Orcus
člen Security týmu
Elite Level 10.5
Elite Level 10.5
Příspěvky: 10645
Registrován: duben 10
Bydliště: Okolo rostou 3 růže =o)
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod Orcus » 19 dub 2014 18:50

Stáhni si TDSSKiller

Na svojí plochu. Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller.2.2.7.1._(datum)_log.txt , vlož sem prosím celý obsah logu.

Pokud se log nevejde do jedné zprávy, rozděl jej na více částí.

====================================================

Stáhni si aswMBR
na svojí plochu. Uzavři všechna okna , programy a prohlížeče. Poklepej na aswMBR.exe. Pokud se objeví hláška o možnosti stáhnutí databáze Avastu , klikni na NE. Poté klikni na „Scan“ . Po skenu klikni na „Save Log“ a ulož si log na plochu .Zkopíruj sem celý obsah toho logu. Pak klikni na „Exit“ k zavření programu.
Láska hřeje, ale uhlí je uhlí. :fire:



Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.

Pár rad k bezpečnosti PC.

Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix

Pokud budete spokojeni , můžete podpořit naše fórum.

Uživatelský avatar
Mety
Level 2.5
Level 2.5
Příspěvky: 326
Registrován: duben 12
Bydliště: Markvartovice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod Mety » 19 dub 2014 19:13

A z toho RogueKiller nemám nic mazat?

Uživatelský avatar
Orcus
člen Security týmu
Elite Level 10.5
Elite Level 10.5
Příspěvky: 10645
Registrován: duben 10
Bydliště: Okolo rostou 3 růže =o)
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod Orcus » 20 dub 2014 09:09

Ha, překouknul jsem se! :? V Rogue nálezy smaž a dodej log po smazání.
Láska hřeje, ale uhlí je uhlí. :fire:



Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.

Pár rad k bezpečnosti PC.

Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix

Pokud budete spokojeni , můžete podpořit naše fórum.

Uživatelský avatar
Mety
Level 2.5
Level 2.5
Příspěvky: 326
Registrován: duben 12
Bydliště: Markvartovice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod Mety » 20 dub 2014 11:22

Log z RogueKiller po smazání:

RogueKiller V8.8.15 [Mar 27 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com

Operační systém : Windows Vista (6.0.6002 Service Pack 2) 32 bits version
Spuštěno v : Normální režim
Uživatel : Maty [Práva správce]
Mód : Odebrat -- Datum : 04/20/2014 11:20:32
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 3 ¤¤¤
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> VYMAZÁNO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> VYMAZÁNO
[HJ POL][PUM] HKLM\[...]\System : DisableRegistryTools (0) -> VYMAZÁNO

¤¤¤ naplánované úlohy : 0 ¤¤¤

¤¤¤ spuštění položky : 0 ¤¤¤

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Browser Addons : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts


127.0.0.1 localhost


¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) WDC WD1600AAJS-00PSA0 ATA Device +++++
--- User ---
[MBR] 4cda754c8708adf8874e4aed7dea9e27
[BSP] 6606dc501e44795e5045819a21530670 : Windows Vista MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 152625 MB
User = LL1 ... OK!
User = LL2 ... OK!

+++++ PhysicalDrive1: (\\.\PHYSICALDRIVE1 @ USB) Generic USB SD Reader USB Device +++++
Error reading User MBR! ([0x15] Za?ízení není p?ipraveno. )
User = LL1 ... OK!
Error reading LL2 MBR! ([0x32] Po?adavek není podporován. )

+++++ PhysicalDrive2: (\\.\PHYSICALDRIVE2 @ USB) Generic USB CF Reader USB Device +++++
Error reading User MBR! ([0x15] Za?ízení není p?ipraveno. )
User = LL1 ... OK!
Error reading LL2 MBR! ([0x32] Po?adavek není podporován. )

+++++ PhysicalDrive3: (\\.\PHYSICALDRIVE3 @ USB) Generic USB SM Reader USB Device +++++
Error reading User MBR! ([0x15] Za?ízení není p?ipraveno. )
User = LL1 ... OK!
Error reading LL2 MBR! ([0x32] Po?adavek není podporován. )

+++++ PhysicalDrive4: (\\.\PHYSICALDRIVE4 @ USB) Generic USB MS Reader USB Device +++++
Error reading User MBR! ([0x15] Za?ízení není p?ipraveno. )
User = LL1 ... OK!
Error reading LL2 MBR! ([0x32] Po?adavek není podporován. )

Dokončeno : << RKreport[0]_D_04202014_112032.txt >>
RKreport[0]_S_04192014_115500.txt;RKreport[0]_S_04202014_112026.txt

Uživatelský avatar
Mety
Level 2.5
Level 2.5
Příspěvky: 326
Registrován: duben 12
Bydliště: Markvartovice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod Mety » 20 dub 2014 11:32

Log z TDSSKiller:

11:23:07.0815 6116 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
11:23:11.0247 6116 ============================================================
11:23:11.0247 6116 Current date / time: 2014/04/20 11:23:11.0247
11:23:11.0247 6116 SystemInfo:
11:23:11.0247 6116
11:23:11.0247 6116 OS Version: 6.0.6002 ServicePack: 2.0
11:23:11.0247 6116 Product type: Workstation
11:23:11.0247 6116 ComputerName: MATY-PC
11:23:11.0247 6116 UserName: Maty
11:23:11.0247 6116 Windows directory: C:\Windows
11:23:11.0247 6116 System windows directory: C:\Windows
11:23:11.0247 6116 Processor architecture: Intel x86
11:23:11.0247 6116 Number of processors: 2
11:23:11.0247 6116 Page size: 0x1000
11:23:11.0247 6116 Boot type: Normal boot
11:23:11.0247 6116 ============================================================
11:23:13.0010 6116 Drive \Device\Harddisk0\DR0 - Size: 0x25433D6000 (149.05 Gb), SectorSize: 0x200, Cylinders: 0x4C01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
11:23:13.0026 6116 ============================================================
11:23:13.0026 6116 \Device\Harddisk0\DR0:
11:23:13.0026 6116 MBR partitions:
11:23:13.0026 6116 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x12A18800
11:23:13.0026 6116 ============================================================
11:23:13.0228 6116 C: <-> \Device\Harddisk0\DR0\Partition1
11:23:13.0228 6116 ============================================================
11:23:13.0228 6116 Initialize success
11:23:13.0228 6116 ============================================================
11:23:14.0664 3612 ============================================================
11:23:14.0664 3612 Scan started
11:23:14.0664 3612 Mode: Manual;
11:23:14.0664 3612 ============================================================
11:23:16.0208 3612 ================ Scan system memory ========================
11:23:16.0208 3612 System memory - ok
11:23:16.0208 3612 ================ Scan services =============================
11:23:16.0458 3612 [ 82B296AE1892FE3DBEE00C9CF92F8AC7 ] ACPI C:\Windows\system32\drivers\acpi.sys
11:23:16.0458 3612 ACPI - ok
11:23:16.0567 3612 [ B362181ED3771DC03B4141927C80F801 ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
11:23:16.0567 3612 AdobeARMservice - ok
11:23:16.0707 3612 [ 9D96B0D5855FD1B98023B3EEC9F06786 ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
11:23:16.0707 3612 AdobeFlashPlayerUpdateSvc - ok
11:23:16.0816 3612 [ 2EDC5BBAC6C651ECE337BDE8ED97C9FB ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
11:23:16.0816 3612 adp94xx - ok
11:23:16.0894 3612 [ B84088CA3CDCA97DA44A984C6CE1CCAD ] adpahci C:\Windows\system32\drivers\adpahci.sys
11:23:16.0894 3612 adpahci - ok
11:23:16.0910 3612 [ 7880C67BCCC27C86FD05AA2AFB5EA469 ] adpu160m C:\Windows\system32\drivers\adpu160m.sys
11:23:16.0910 3612 adpu160m - ok
11:23:16.0910 3612 [ 9AE713F8E30EFC2ABCCD84904333DF4D ] adpu320 C:\Windows\system32\drivers\adpu320.sys
11:23:16.0910 3612 adpu320 - ok
11:23:16.0972 3612 [ 9D1FDA9E086BA64E3C93C9DE32461BCF ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
11:23:16.0972 3612 AeLookupSvc - ok
11:23:17.0050 3612 [ 3911B972B55FEA0478476B2E777B29FA ] AFD C:\Windows\system32\drivers\afd.sys
11:23:17.0050 3612 AFD - ok
11:23:17.0082 3612 [ EF23439CDD587F64C2C1B8825CEAD7D8 ] agp440 C:\Windows\system32\drivers\agp440.sys
11:23:17.0082 3612 agp440 - ok
11:23:17.0144 3612 [ AE1FDF7BF7BB6C6A70F67699D880592A ] aic78xx C:\Windows\system32\drivers\djsvs.sys
11:23:17.0144 3612 aic78xx - ok
11:23:17.0160 3612 [ A1545B731579895D8CC44FC0481C1192 ] ALG C:\Windows\System32\alg.exe
11:23:17.0160 3612 ALG - ok
11:23:17.0191 3612 [ 90395B64600EBB4552E26E178C94B2E4 ] aliide C:\Windows\system32\drivers\aliide.sys
11:23:17.0191 3612 aliide - ok
11:23:17.0238 3612 [ DE697CA5522739901B17D60E18A48B57 ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe
11:23:17.0238 3612 AMD External Events Utility - ok
11:23:17.0300 3612 [ 2B13E304C9DFDFA5EB582F6A149FA2C7 ] amdagp C:\Windows\system32\drivers\amdagp.sys
11:23:17.0300 3612 amdagp - ok
11:23:17.0316 3612 [ 0577DF1D323FE75A739C787893D300EA ] amdide C:\Windows\system32\drivers\amdide.sys
11:23:17.0316 3612 amdide - ok
11:23:17.0362 3612 [ DC487885BCEF9F28EECE6FAC0E5DDFC5 ] AmdK7 C:\Windows\system32\drivers\amdk7.sys
11:23:17.0362 3612 AmdK7 - ok
11:23:17.0378 3612 [ 0CA0071DA4315B00FC1328CA86B425DA ] AmdK8 C:\Windows\system32\drivers\amdk8.sys
11:23:17.0378 3612 AmdK8 - ok
11:23:18.0018 3612 [ A5DE11C167222FB7F73588530F851784 ] amdkmdag C:\Windows\system32\DRIVERS\atikmdag.sys
11:23:18.0064 3612 amdkmdag - ok
11:23:18.0174 3612 [ 354D38ECA8452AB6D3489CAD80BCFF25 ] amdkmdap C:\Windows\system32\DRIVERS\atikmpag.sys
11:23:18.0189 3612 amdkmdap - ok
11:23:18.0267 3612 [ C6D704C7F0434DC791AAC37CAC4B6E14 ] Appinfo C:\Windows\System32\appinfo.dll
11:23:18.0267 3612 Appinfo - ok
11:23:18.0314 3612 [ F5F0F78286A849BC0E45E0E99065B04F ] AppleCharger C:\Windows\system32\DRIVERS\AppleCharger.sys
11:23:18.0314 3612 AppleCharger - ok
11:23:18.0330 3612 [ 95EF7247C50C7241FDAE39A9B3AFF4AE ] AppleChargerSrv C:\Windows\system32\AppleChargerSrv.exe
11:23:18.0330 3612 AppleChargerSrv - ok
11:23:18.0376 3612 [ 5F673180268BB1FDB69C99B6619FE379 ] arc C:\Windows\system32\drivers\arc.sys
11:23:18.0376 3612 arc - ok
11:23:18.0423 3612 [ 957F7540B5E7F602E44648C7DE5A1C05 ] arcsas C:\Windows\system32\drivers\arcsas.sys
11:23:18.0423 3612 arcsas - ok
11:23:18.0517 3612 [ 9D768C43FEF254DD50B1DBF8AD5C4C0B ] aspnet_state C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
11:23:18.0532 3612 aspnet_state - ok
11:23:18.0595 3612 [ B347D2FEAE2D063943F16EC98634AB89 ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
11:23:18.0595 3612 aswMonFlt - ok
11:23:18.0657 3612 [ 71A7C3DB37ED3F6118AC7FEB50574C35 ] AswRdr C:\Windows\system32\drivers\aswRdr.sys
11:23:18.0657 3612 AswRdr - ok
11:23:18.0720 3612 [ 84B4C00AE8CDFC52CF68F322D821F34C ] aswRvrt C:\Windows\system32\drivers\aswRvrt.sys
11:23:18.0720 3612 aswRvrt - ok
11:23:18.0798 3612 [ 3A50AD6AE8D8A0F78F03316F5B93FE45 ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
11:23:18.0798 3612 aswSnx - ok
11:23:18.0876 3612 [ B6381B4DC603C558419641BA969930E0 ] aswSP C:\Windows\system32\drivers\aswSP.sys
11:23:18.0876 3612 aswSP - ok
11:23:18.0891 3612 [ 4A90E597A9AF787C4CEA0DE95C1F74A7 ] aswTdi C:\Windows\system32\drivers\aswTdi.sys
11:23:18.0891 3612 aswTdi - ok
11:23:18.0907 3612 [ 680448905E27BBC6587ADB28597640D6 ] aswVmm C:\Windows\system32\drivers\aswVmm.sys
11:23:18.0907 3612 aswVmm - ok
11:23:18.0969 3612 [ 53B202ABEE6455406254444303E87BE1 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
11:23:18.0969 3612 AsyncMac - ok
11:23:19.0000 3612 [ 1F05B78AB91C9075565A9D8A4B880BC4 ] atapi C:\Windows\system32\drivers\atapi.sys
11:23:19.0000 3612 atapi - ok
11:23:19.0047 3612 [ DD228E1C70907E263B130F9DE3A1AFFE ] AtiHDAudioService C:\Windows\system32\drivers\AtihdLH3.sys
11:23:19.0063 3612 AtiHDAudioService - ok
11:23:19.0125 3612 [ 68E2A1A0407A66CF50DA0300852424AB ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
11:23:19.0125 3612 AudioEndpointBuilder - ok
11:23:19.0141 3612 [ 68E2A1A0407A66CF50DA0300852424AB ] Audiosrv C:\Windows\System32\Audiosrv.dll
11:23:19.0141 3612 Audiosrv - ok
11:23:19.0266 3612 [ BEA8D0FA8805CC2E6BB49728166699C7 ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
11:23:19.0266 3612 avast! Antivirus - ok
11:23:19.0312 3612 [ 67E506B75BD5326A3EC7B70BD014DFB6 ] Beep C:\Windows\system32\drivers\Beep.sys
11:23:19.0312 3612 Beep - ok
11:23:19.0422 3612 [ C789AF0F724FDA5852FB9A7D3A432381 ] BFE C:\Windows\System32\bfe.dll
11:23:19.0437 3612 BFE - ok
11:23:19.0500 3612 [ 93952506C6D67330367F7E7934B6A02F ] BITS C:\Windows\System32\qmgr.dll
11:23:19.0531 3612 BITS - ok
11:23:19.0531 3612 blbdrive - ok
11:23:19.0578 3612 [ 35F376253F687BDE63976CCB3F2108CA ] bowser C:\Windows\system32\DRIVERS\bowser.sys
11:23:19.0578 3612 bowser - ok
11:23:19.0671 3612 [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo C:\Windows\system32\drivers\brfiltlo.sys
11:23:19.0671 3612 BrFiltLo - ok
11:23:19.0687 3612 [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp C:\Windows\system32\drivers\brfiltup.sys
11:23:19.0687 3612 BrFiltUp - ok
11:23:19.0718 3612 [ A3629A0C4226F9E9C72FAAEEBC3AD33C ] Browser C:\Windows\System32\browser.dll
11:23:19.0749 3612 Browser - ok
11:23:19.0780 3612 [ B304E75CFF293029EDDF094246747113 ] Brserid C:\Windows\system32\drivers\brserid.sys
11:23:19.0780 3612 Brserid - ok
11:23:19.0796 3612 [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm C:\Windows\system32\drivers\brserwdm.sys
11:23:19.0796 3612 BrSerWdm - ok
11:23:19.0827 3612 [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm C:\Windows\system32\drivers\brusbmdm.sys
11:23:19.0827 3612 BrUsbMdm - ok
11:23:19.0890 3612 [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer C:\Windows\system32\drivers\brusbser.sys
11:23:19.0890 3612 BrUsbSer - ok
11:23:19.0952 3612 [ AD07C1EC6665B8B35741AB91200C6B68 ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
11:23:19.0952 3612 BTHMODEM - ok
11:23:20.0014 3612 [ 7ADD03E75BEB9E6DD102C3081D29840A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
11:23:20.0030 3612 cdfs - ok
11:23:20.0077 3612 [ 6B4BFFB9BECD728097024276430DB314 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
11:23:20.0077 3612 cdrom - ok
11:23:20.0139 3612 [ 312EC3E37A0A1F2006534913E37B4423 ] CertPropSvc C:\Windows\System32\certprop.dll
11:23:20.0139 3612 CertPropSvc - ok
11:23:20.0155 3612 [ DA8E0AFC7BAA226C538EF53AC2F90897 ] circlass C:\Windows\system32\drivers\circlass.sys
11:23:20.0155 3612 circlass - ok
11:23:20.0170 3612 [ D7659D3B5B92C31E84E53C1431F35132 ] CLFS C:\Windows\system32\CLFS.sys
11:23:20.0186 3612 CLFS - ok
11:23:20.0420 3612 [ 8EE772032E2FE80A924F3B8DD5082194 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
11:23:20.0451 3612 clr_optimization_v2.0.50727_32 - ok
11:23:20.0482 3612 [ E87213F37A13E2B54391E40934F071D0 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
11:23:20.0482 3612 clr_optimization_v4.0.30319_32 - ok
11:23:20.0482 3612 [ 45201046C776FFDAF3FC8A0029C581C8 ] cmdide C:\Windows\system32\drivers\cmdide.sys
11:23:20.0482 3612 cmdide - ok
11:23:20.0498 3612 [ 82B8C91D327CFECF76CB58716F7D4997 ] Compbatt C:\Windows\system32\drivers\compbatt.sys
11:23:20.0498 3612 Compbatt - ok
11:23:20.0514 3612 COMSysApp - ok
11:23:20.0560 3612 [ 2A213AE086BBEC5E937553C7D9A2B22C ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
11:23:20.0560 3612 crcdisk - ok
11:23:20.0623 3612 [ 22A7F883508176489F559EE745B5BF5D ] Crusoe C:\Windows\system32\drivers\crusoe.sys
11:23:20.0623 3612 Crusoe - ok
11:23:20.0716 3612 [ 684C130BBC6DB681BAD4920A4C944AA5 ] CryptSvc C:\Windows\system32\cryptsvc.dll
11:23:20.0732 3612 CryptSvc - ok
11:23:20.0810 3612 [ 3B5B4D53FEC14F7476CA29A20CC31AC9 ] DcomLaunch C:\Windows\system32\rpcss.dll
11:23:20.0810 3612 DcomLaunch - ok
11:23:20.0857 3612 [ 622C41A07CA7E6DD91770F50D532CB6C ] DfsC C:\Windows\system32\Drivers\dfsc.sys
11:23:20.0857 3612 DfsC - ok
11:23:20.0997 3612 [ 2CC3DCFB533A1035B13DCAB6160AB38B ] DFSR C:\Windows\system32\DFSR.exe
11:23:20.0997 3612 DFSR - ok
11:23:21.0075 3612 [ 9028559C132146FB75EB7ACF384B086A ] Dhcp C:\Windows\System32\dhcpcsvc.dll
11:23:21.0075 3612 Dhcp - ok
11:23:21.0106 3612 [ 5D4AEFC3386920236A548271F8F1AF6A ] disk C:\Windows\system32\drivers\disk.sys
11:23:21.0106 3612 disk - ok
11:23:21.0200 3612 [ 57D762F6F5974AF0DA2BE88A3349BAAA ] Dnscache C:\Windows\System32\dnsrslvr.dll
11:23:21.0200 3612 Dnscache - ok
11:23:21.0231 3612 [ 324FD74686B1EF5E7C19A8AF49E748F6 ] dot3svc C:\Windows\System32\dot3svc.dll
11:23:21.0247 3612 dot3svc - ok
11:23:21.0294 3612 [ A622E888F8AA2F6B49E9BC466F0E5DEF ] DPS C:\Windows\system32\dps.dll
11:23:21.0294 3612 DPS - ok
11:23:21.0356 3612 [ 97FEF831AB90BEE128C9AF390E243F80 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
11:23:21.0356 3612 drmkaud - ok
11:23:21.0528 3612 [ 988670D8343EF9835FB3659DB71B2EFA ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
11:23:21.0528 3612 DXGKrnl - ok
11:23:21.0590 3612 [ F88FB26547FD2CE6D0A5AF2985892C48 ] E1G60 C:\Windows\system32\DRIVERS\E1G60I32.sys
11:23:21.0590 3612 E1G60 - ok
11:23:21.0652 3612 [ C0B95E40D85CD807D614E264248A45B9 ] EapHost C:\Windows\System32\eapsvc.dll
11:23:21.0652 3612 EapHost - ok
11:23:21.0715 3612 [ 7F64EA048DCFAC7ACF8B4D7B4E6FE371 ] Ecache C:\Windows\system32\drivers\ecache.sys
11:23:21.0715 3612 Ecache - ok
11:23:21.0746 3612 [ E8F3F21A71720C84BCF423B80028359F ] elxstor C:\Windows\system32\drivers\elxstor.sys
11:23:21.0746 3612 elxstor - ok
11:23:21.0918 3612 [ 4E6B23DFC917EA39306B529B773950F4 ] EMDMgmt C:\Windows\system32\emdmgmt.dll
11:23:21.0933 3612 EMDMgmt - ok
11:23:22.0011 3612 [ 67058C46504BC12D821F38CF99B7B28F ] EventSystem C:\Windows\system32\es.dll
11:23:22.0011 3612 EventSystem - ok
11:23:22.0074 3612 [ 22B408651F9123527BCEE54B4F6C5CAE ] exfat C:\Windows\system32\drivers\exfat.sys
11:23:22.0074 3612 exfat - ok
11:23:22.0105 3612 [ 1E9B9A70D332103C52995E957DC09EF8 ] fastfat C:\Windows\system32\drivers\fastfat.sys
11:23:22.0105 3612 fastfat - ok
11:23:22.0152 3612 [ 63BDADA84951B9C03E641800E176898A ] fdc C:\Windows\system32\DRIVERS\fdc.sys
11:23:22.0152 3612 fdc - ok
11:23:22.0167 3612 [ 6629B5F0E98151F4AFDD87567EA32BA3 ] fdPHost C:\Windows\system32\fdPHost.dll
11:23:22.0167 3612 fdPHost - ok
11:23:22.0198 3612 [ 89ED56DCE8E47AF40892778A5BD31FD2 ] FDResPub C:\Windows\system32\fdrespub.dll
11:23:22.0198 3612 FDResPub - ok
11:23:22.0198 3612 [ A8C0139A884861E3AAE9CFE73B208A9F ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
11:23:22.0214 3612 FileInfo - ok
11:23:22.0214 3612 [ 0AE429A696AECBC5970E3CF2C62635AE ] Filetrace C:\Windows\system32\drivers\filetrace.sys
11:23:22.0214 3612 Filetrace - ok
11:23:22.0230 3612 [ 6603957EFF5EC62D25075EA8AC27DE68 ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
11:23:22.0230 3612 flpydisk - ok
11:23:22.0276 3612 [ 01334F9EA68E6877C4EF05D3EA8ABB05 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
11:23:22.0276 3612 FltMgr - ok
11:23:22.0448 3612 [ 2AFA3A46986AE935DAECEBC7E66314CF ] FontCache C:\Windows\system32\FntCache.dll
11:23:22.0464 3612 FontCache - ok
11:23:22.0588 3612 [ C7FBDD1ED42F82BFA35167A5C9803EA3 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
11:23:22.0588 3612 FontCache3.0.0.0 - ok
11:23:22.0666 3612 [ B972A66758577E0BFD1DE0F91AAA27B5 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
11:23:22.0666 3612 Fs_Rec - ok
11:23:22.0729 3612 [ 4E1CD0A45C50A8882616CAE5BF82F3C5 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
11:23:22.0729 3612 gagp30kx - ok
11:23:22.0776 3612 gdrv - ok
11:23:22.0885 3612 [ CD5D0AEEE35DFD4E986A5AA1500A6E66 ] gpsvc C:\Windows\System32\gpsvc.dll
11:23:22.0916 3612 gpsvc - ok
11:23:23.0010 3612 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
11:23:23.0025 3612 gupdate - ok
11:23:23.0025 3612 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
11:23:23.0025 3612 gupdatem - ok
11:23:23.0056 3612 [ CB04C744BE0A61B1D648FAED182C3B59 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
11:23:23.0056 3612 HdAudAddService - ok
11:23:23.0103 3612 [ 062452B7FFD68C8C042A6261FE8DFF4A ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
11:23:23.0119 3612 HDAudBus - ok
11:23:23.0134 3612 [ 1338520E78D90154ED6BE8F84DE5FCEB ] HidBth C:\Windows\system32\drivers\hidbth.sys
11:23:23.0134 3612 HidBth - ok
11:23:23.0166 3612 [ FF3160C3A2445128C5A6D9B076DA519E ] HidIr C:\Windows\system32\drivers\hidir.sys
11:23:23.0166 3612 HidIr - ok
11:23:23.0212 3612 [ 84067081F3318162797385E11A8F0582 ] hidserv C:\Windows\System32\hidserv.dll
11:23:23.0244 3612 hidserv - ok
11:23:23.0275 3612 [ CCA4B519B17E23A00B826C55716809CC ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
11:23:23.0275 3612 HidUsb - ok
11:23:23.0306 3612 [ D8AD255B37DA92434C26E4876DB7D418 ] hkmsvc C:\Windows\system32\kmsvc.dll
11:23:23.0353 3612 hkmsvc - ok
11:23:23.0353 3612 [ DF353B401001246853763C4B7AAA6F50 ] HpCISSs C:\Windows\system32\drivers\hpcisss.sys
11:23:23.0353 3612 HpCISSs - ok
11:23:23.0400 3612 [ 0EEECA26C8D4BDE2A4664DB058A81937 ] HTTP C:\Windows\system32\drivers\HTTP.sys
11:23:23.0400 3612 HTTP - ok
11:23:23.0415 3612 [ 324C2152FF2C61ABAE92D09F3CCA4D63 ] i2omp C:\Windows\system32\drivers\i2omp.sys
11:23:23.0415 3612 i2omp - ok
11:23:23.0493 3612 [ 22D56C8184586B7A1F6FA60BE5F5A2BD ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
11:23:23.0493 3612 i8042prt - ok
11:23:23.0524 3612 [ C957BF4B5D80B46C5017BF0101E6C906 ] iaStorV C:\Windows\system32\drivers\iastorv.sys
11:23:23.0524 3612 iaStorV - ok
11:23:23.0914 3612 [ 98477B08E61945F974ED9FDC4CB6BDAB ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
11:23:23.0930 3612 idsvc - ok
11:23:23.0946 3612 [ 2D077BF86E843F901D8DB709C95B49A5 ] iirsp C:\Windows\system32\drivers\iirsp.sys
11:23:23.0946 3612 iirsp - ok
11:23:24.0039 3612 [ 4687EE0C0DD2CE5F7AAA9C2E33C1DC78 ] IKEEXT C:\Windows\System32\ikeext.dll
11:23:24.0039 3612 IKEEXT - ok
11:23:24.0382 3612 [ F179FEB1B15AAD94C6BF082C0356DF16 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHDA.sys
11:23:24.0398 3612 IntcAzAudAddService - ok
11:23:24.0445 3612 [ 97469037714070E45194ED318D636401 ] intelide C:\Windows\system32\drivers\intelide.sys
11:23:24.0445 3612 intelide - ok
11:23:24.0523 3612 [ 224191001E78C89DFA78924C3EA595FF ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
11:23:24.0523 3612 intelppm - ok
11:23:24.0632 3612 [ 9AC218C6E6105477484C6FDBE7D409A4 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
11:23:24.0632 3612 IPBusEnum - ok
11:23:24.0663 3612 [ 62C265C38769B864CB25B4BCF62DF6C3 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
11:23:24.0663 3612 IpFilterDriver - ok
11:23:24.0710 3612 [ 1998BD97F950680BB55F55A7244679C2 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
11:23:24.0710 3612 iphlpsvc - ok
11:23:24.0710 3612 IpInIp - ok
11:23:24.0741 3612 [ 40F34F8ABA2A015D780E4B09138B6C17 ] IPMIDRV C:\Windows\system32\drivers\ipmidrv.sys
11:23:24.0741 3612 IPMIDRV - ok
11:23:24.0757 3612 [ 8793643A67B42CEC66490B2A0CF92D68 ] IPNAT C:\Windows\system32\DRIVERS\ipnat.sys
11:23:24.0757 3612 IPNAT - ok
11:23:24.0757 3612 [ 109C0DFB82C3632FBD11949B73AEEAC9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
11:23:24.0757 3612 IRENUM - ok
11:23:24.0772 3612 [ 350FCA7E73CF65BCEF43FAE1E4E91293 ] isapnp C:\Windows\system32\drivers\isapnp.sys
11:23:24.0772 3612 isapnp - ok
11:23:24.0850 3612 [ 232FA340531D940AAC623B121A595034 ] iScsiPrt C:\Windows\system32\DRIVERS\msiscsi.sys
11:23:24.0850 3612 iScsiPrt - ok
11:23:24.0944 3612 [ BCED60D16156E428F8DF8CF27B0DF150 ] iteatapi C:\Windows\system32\drivers\iteatapi.sys
11:23:24.0944 3612 iteatapi - ok
11:23:24.0960 3612 [ 06FA654504A498C30ADCA8BEC4E87E7E ] iteraid C:\Windows\system32\drivers\iteraid.sys
11:23:24.0960 3612 iteraid - ok
11:23:25.0022 3612 [ 37605E0A8CF00CBBA538E753E4344C6E ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
11:23:25.0022 3612 kbdclass - ok
11:23:25.0100 3612 [ EDE59EC70E25C24581ADD1FBEC7325F7 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
11:23:25.0100 3612 kbdhid - ok
11:23:25.0147 3612 [ A3E186B4B935905B829219502557314E ] KeyIso C:\Windows\system32\lsass.exe
11:23:25.0147 3612 KeyIso - ok
11:23:25.0287 3612 [ 4A1445EFA932A3BAF5BDB02D7131EE20 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
11:23:25.0287 3612 KSecDD - ok
11:23:25.0412 3612 [ 8078F8F8F7A79E2E6B494523A828C585 ] KtmRm C:\Windows\system32\msdtckrm.dll
11:23:25.0443 3612 KtmRm - ok
11:23:25.0506 3612 [ 3DB114D4729B8FF7FCF5801F9489CD2C ] L1C C:\Windows\system32\DRIVERS\L1C60x86.sys
11:23:25.0506 3612 L1C - ok
11:23:25.0521 3612 [ 1BF5EEBFD518DD7298434D8C862F825D ] LanmanServer C:\Windows\System32\srvsvc.dll
11:23:25.0537 3612 LanmanServer - ok
11:23:25.0584 3612 [ 1DB69705B695B987082C8BAEC0C6B34F ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
11:23:25.0599 3612 LanmanWorkstation - ok
11:23:25.0630 3612 [ D1C5883087A0C3F1344D9D55A44901F6 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
11:23:25.0630 3612 lltdio - ok
11:23:25.0662 3612 [ 2D5A428872F1442631D0959A34ABFF63 ] lltdsvc C:\Windows\System32\lltdsvc.dll
11:23:25.0677 3612 lltdsvc - ok
11:23:25.0693 3612 [ 35D40113E4A5B961B6CE5C5857702518 ] lmhosts C:\Windows\System32\lmhsvc.dll
11:23:25.0693 3612 lmhosts - ok
11:23:25.0786 3612 [ 0803906D607A9B83184447B75B60ECC2 ] LMS C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
11:23:25.0786 3612 LMS - ok
11:23:25.0833 3612 [ A2262FB9F28935E862B4DB46438C80D2 ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
11:23:25.0833 3612 LSI_FC - ok
11:23:25.0864 3612 [ 30D73327D390F72A62F32C103DAF1D6D ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
11:23:25.0864 3612 LSI_SAS - ok
11:23:25.0927 3612 [ E1E36FEFD45849A95F1AB81DE0159FE3 ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
11:23:25.0927 3612 LSI_SCSI - ok
11:23:25.0974 3612 [ 8F5C7426567798E62A3B3614965D62CC ] luafv C:\Windows\system32\drivers\luafv.sys
11:23:25.0974 3612 luafv - ok
11:23:26.0083 3612 [ 661B911FA04E73FB073FF9B1C9BD2E05 ] MBAMSwissArmy C:\Windows\system32\drivers\MBAMSwissArmy.sys
11:23:26.0083 3612 MBAMSwissArmy - ok
11:23:26.0098 3612 [ D153B14FC6598EAE8422A2037553ADCE ] megasas C:\Windows\system32\drivers\megasas.sys
11:23:26.0098 3612 megasas - ok
11:23:26.0114 3612 [ CFCB18986426A2D8E66F1992636221D0 ] MEI C:\Windows\system32\DRIVERS\HECI.sys
11:23:26.0114 3612 MEI - ok
11:23:26.0130 3612 [ 1076FFCFFAAE8385FD62DFCB25AC4708 ] MMCSS C:\Windows\system32\mmcss.dll
11:23:26.0145 3612 MMCSS - ok
11:23:26.0161 3612 [ E13B5EA0F51BA5B1512EC671393D09BA ] Modem C:\Windows\system32\drivers\modem.sys
11:23:26.0161 3612 Modem - ok
11:23:26.0192 3612 [ 0A9BB33B56E294F686ABB7C1E4E2D8A8 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
11:23:26.0192 3612 monitor - ok
11:23:26.0270 3612 [ 5BF6A1326A335C5298477754A506D263 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
11:23:26.0270 3612 mouclass - ok
11:23:26.0286 3612 [ 93B8D4869E12CFBE663915502900876F ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
11:23:26.0286 3612 mouhid - ok
11:23:26.0317 3612 [ BDAFC88AA6B92F7842416EA6A48E1600 ] MountMgr C:\Windows\system32\drivers\mountmgr.sys
11:23:26.0317 3612 MountMgr - ok
11:23:26.0395 3612 [ 583A41F26278D9E0EA548163D6139397 ] mpio C:\Windows\system32\drivers\mpio.sys
11:23:26.0395 3612 mpio - ok
11:23:26.0457 3612 [ 22241FEBA9B2DEFA669C8CB0A8DD7D2E ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
11:23:26.0457 3612 mpsdrv - ok
11:23:26.0582 3612 [ 5DE62C6E9108F14F6794060A9BDECAEC ] MpsSvc C:\Windows\system32\mpssvc.dll
11:23:26.0598 3612 MpsSvc - ok
11:23:26.0613 3612 [ 4FBBB70D30FD20EC51F80061703B001E ] Mraid35x C:\Windows\system32\drivers\mraid35x.sys
11:23:26.0613 3612 Mraid35x - ok
11:23:26.0629 3612 [ 82CEA0395524AACFEB58BA1448E8325C ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
11:23:26.0629 3612 MRxDAV - ok
11:23:26.0660 3612 [ 1E94971C4B446AB2290DEB71D01CF0C2 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
11:23:26.0660 3612 mrxsmb - ok
11:23:26.0769 3612 [ 4FCCB34D793B116423209C0F8B7A3B03 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
11:23:26.0769 3612 mrxsmb10 - ok
11:23:26.0816 3612 [ C3CB1B40AD4A0124D617A1199B0B9D7C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
11:23:26.0816 3612 mrxsmb20 - ok
11:23:26.0847 3612 [ 742AED7939E734C36B7E8D6228CE26B7 ] msahci C:\Windows\system32\drivers\msahci.sys
11:23:26.0847 3612 msahci - ok
11:23:26.0894 3612 [ 3FC82A2AE4CC149165A94699183D3028 ] msdsm C:\Windows\system32\drivers\msdsm.sys
11:23:26.0894 3612 msdsm - ok
11:23:26.0956 3612 [ FD7520CC3A80C5FC8C48852BB24C6DED ] MSDTC C:\Windows\System32\msdtc.exe
11:23:26.0956 3612 MSDTC - ok
11:23:27.0034 3612 [ A9927F4A46B816C92F461ACB90CF8515 ] Msfs C:\Windows\system32\drivers\Msfs.sys
11:23:27.0034 3612 Msfs - ok
11:23:27.0034 3612 MSICDSetup - ok
11:23:27.0081 3612 [ 0F400E306F385C56317357D6DEA56F62 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
11:23:27.0081 3612 msisadrv - ok
11:23:27.0112 3612 [ 85466C0757A23D9A9AECDC0755203CB2 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
11:23:27.0128 3612 MSiSCSI - ok
11:23:27.0128 3612 msiserver - ok
11:23:27.0144 3612 [ D8C63D34D9C9E56C059E24EC7185CC07 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
11:23:27.0144 3612 MSKSSRV - ok
11:23:27.0159 3612 [ 1D373C90D62DDB641D50E55B9E78D65E ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
11:23:27.0175 3612 MSPCLOCK - ok
11:23:27.0206 3612 [ B572DA05BF4E098D4BBA3A4734FB505B ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
11:23:27.0206 3612 MSPQM - ok
11:23:27.0284 3612 [ B49456D70555DE905C311BCDA6EC6ADB ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
11:23:27.0284 3612 MsRPC - ok
11:23:27.0315 3612 [ E384487CB84BE41D09711C30CA79646C ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
11:23:27.0315 3612 mssmbios - ok
11:23:27.0346 3612 [ 7199C1EEC1E4993CAF96B8C0A26BD58A ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
11:23:27.0346 3612 MSTEE - ok
11:23:27.0424 3612 [ 6A57B5733D4CB702C8EA4542E836B96C ] Mup C:\Windows\system32\Drivers\mup.sys
11:23:27.0440 3612 Mup - ok
11:23:27.0534 3612 [ E4EAF0C5C1B41B5C83386CF212CA9584 ] napagent C:\Windows\system32\qagentRT.dll
11:23:27.0565 3612 napagent - ok
11:23:27.0596 3612 [ 85C44FDFF9CF7E72A40DCB7EC06A4416 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
11:23:27.0596 3612 NativeWifiP - ok
11:23:27.0643 3612 [ 1357274D1883F68300AEADD15D7BBB42 ] NDIS C:\Windows\system32\drivers\ndis.sys
11:23:27.0643 3612 NDIS - ok
11:23:27.0674 3612 [ 0E186E90404980569FB449BA7519AE61 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
11:23:27.0674 3612 NdisTapi - ok
11:23:27.0705 3612 [ D6973AA34C4D5D76C0430B181C3CD389 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
11:23:27.0705 3612 Ndisuio - ok
11:23:27.0752 3612 [ 818F648618AE34F729FDB47EC68345C3 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
11:23:27.0752 3612 NdisWan - ok
11:23:27.0768 3612 [ 71DAB552B41936358F3B541AE5997FB3 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
11:23:27.0768 3612 NDProxy - ok
11:23:27.0783 3612 [ BCD093A5A6777CF626434568DC7DBA78 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
11:23:27.0783 3612 NetBIOS - ok
11:23:27.0830 3612 [ ECD64230A59CBD93C85F1CD1CAB9F3F6 ] netbt C:\Windows\system32\DRIVERS\netbt.sys
11:23:27.0830 3612 netbt - ok
11:23:27.0861 3612 [ A3E186B4B935905B829219502557314E ] Netlogon C:\Windows\system32\lsass.exe
11:23:27.0861 3612 Netlogon - ok
11:23:28.0002 3612 [ C8052711DAECC48B982434C5116CA401 ] Netman C:\Windows\System32\netman.dll
11:23:28.0033 3612 Netman - ok
11:23:28.0064 3612 [ 21318671BCAD3ACF16638F98D4D00973 ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
11:23:28.0064 3612 NetMsmqActivator - ok
11:23:28.0080 3612 [ 21318671BCAD3ACF16638F98D4D00973 ] NetPipeActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
11:23:28.0080 3612 NetPipeActivator - ok
11:23:28.0126 3612 [ 2EF3BBE22E5A5ACD1428EE387A0D0172 ] netprofm C:\Windows\System32\netprofm.dll
11:23:28.0126 3612 netprofm - ok
11:23:28.0142 3612 [ 21318671BCAD3ACF16638F98D4D00973 ] NetTcpActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
11:23:28.0142 3612 NetTcpActivator - ok
11:23:28.0142 3612 [ 21318671BCAD3ACF16638F98D4D00973 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
11:23:28.0142 3612 NetTcpPortSharing - ok
11:23:28.0173 3612 [ 2E7FB731D4790A1BC6270ACCEFACB36E ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
11:23:28.0173 3612 nfrd960 - ok
11:23:28.0189 3612 [ 2997B15415F9BBE05B5A4C1C85E0C6A2 ] NlaSvc C:\Windows\System32\nlasvc.dll
11:23:28.0189 3612 NlaSvc - ok
11:23:28.0220 3612 [ D36F239D7CCE1931598E8FB90A0DBC26 ] Npfs C:\Windows\system32\drivers\Npfs.sys
11:23:28.0220 3612 Npfs - ok
11:23:28.0236 3612 [ 8BB86F0C7EEA2BDED6FE095D0B4CA9BD ] nsi C:\Windows\system32\nsisvc.dll
11:23:28.0251 3612 nsi - ok
11:23:28.0251 3612 [ 609773E344A97410CE4EBF74A8914FCF ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
11:23:28.0267 3612 nsiproxy - ok
11:23:28.0314 3612 [ 2C1121F2B87E9A6B12485DF53CD848C7 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
11:23:28.0314 3612 Ntfs - ok
11:23:28.0392 3612 [ E875C093AEC0C978A90F30C9E0DFBB72 ] ntrigdigi C:\Windows\system32\drivers\ntrigdigi.sys
11:23:28.0392 3612 ntrigdigi - ok
11:23:28.0485 3612 [ C5DBBCDA07D780BDA9B685DF333BB41E ] Null C:\Windows\system32\drivers\Null.sys
11:23:28.0485 3612 Null - ok
11:23:28.0516 3612 [ E69E946F80C1C31C53003BFBF50CBB7C ] nvraid C:\Windows\system32\drivers\nvraid.sys
11:23:28.0516 3612 nvraid - ok
11:23:28.0532 3612 [ 9E0BA19A28C498A6D323D065DB76DFFC ] nvstor C:\Windows\system32\drivers\nvstor.sys
11:23:28.0532 3612 nvstor - ok
11:23:28.0548 3612 [ 07C186427EB8FCC3D8D7927187F260F7 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
11:23:28.0548 3612 nv_agp - ok
11:23:28.0563 3612 NwlnkFlt - ok
11:23:28.0563 3612 NwlnkFwd - ok
11:23:28.0579 3612 [ BE32DA025A0BE1878F0EE8D6D9386CD5 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
11:23:28.0579 3612 ohci1394 - ok
11:23:28.0657 3612 [ 7A56CF3E3F12E8AF599963B16F50FB6A ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
11:23:28.0657 3612 ose - ok
11:23:28.0860 3612 [ 0C8E8E61AD1EB0B250B846712C917506 ] p2pimsvc C:\Windows\system32\p2psvc.dll
11:23:28.0875 3612 p2pimsvc - ok
11:23:28.0875 3612 [ 0C8E8E61AD1EB0B250B846712C917506 ] p2psvc C:\Windows\system32\p2psvc.dll
11:23:28.0891 3612 p2psvc - ok
11:23:28.0969 3612 [ 8A79FDF04A73428597E2CAF9D0D67850 ] Parport C:\Windows\system32\DRIVERS\parport.sys
11:23:28.0969 3612 Parport - ok
11:23:29.0000 3612 [ B9C2B89F08670E159F7181891E449CD9 ] partmgr C:\Windows\system32\drivers\partmgr.sys
11:23:29.0000 3612 partmgr - ok
11:23:29.0125 3612 [ 6C580025C81CAF3AE9E3617C22CAD00E ] Parvdm C:\Windows\system32\DRIVERS\parvdm.sys
11:23:29.0140 3612 Parvdm - ok
11:23:29.0156 3612 [ C6276AD11F4BB49B58AA1ED88537F14A ] PcaSvc C:\Windows\System32\pcasvc.dll
11:23:29.0156 3612 PcaSvc - ok
11:23:29.0187 3612 [ 941DC1D19E7E8620F40BBC206981EFDB ] pci C:\Windows\system32\drivers\pci.sys
11:23:29.0187 3612 pci - ok
11:23:29.0218 3612 [ 1636D43F10416AEB483BC6001097B26C ] pciide C:\Windows\system32\drivers\pciide.sys
11:23:29.0218 3612 pciide - ok
11:23:29.0250 3612 [ E6F3FB1B86AA519E7698AD05E58B04E5 ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
11:23:29.0250 3612 pcmcia - ok
11:23:29.0546 3612 [ 6349F6ED9C623B44B52EA3C63C831A92 ] PEAUTH C:\Windows\system32\drivers\peauth.sys
11:23:29.0546 3612 PEAUTH - ok
11:23:30.0045 3612 [ B1689DF169143F57053F795390C99DB3 ] pla C:\Windows\system32\pla.dll
11:23:30.0092 3612 pla - ok
11:23:30.0154 3612 [ C5E7F8A996EC0A82D508FD9064A5569E ] PlugPlay C:\Windows\system32\umpnpmgr.dll
11:23:30.0154 3612 PlugPlay - ok
11:23:30.0186 3612 [ A1DD33D16F277CE34124EE52AB2C0F14 ] PnkBstrA C:\Windows\system32\PnkBstrA.exe
11:23:30.0186 3612 PnkBstrA - ok
11:23:30.0217 3612 [ 0C8E8E61AD1EB0B250B846712C917506 ] PNRPAutoReg C:\Windows\system32\p2psvc.dll
11:23:30.0217 3612 PNRPAutoReg - ok
11:23:30.0264 3612 [ 0C8E8E61AD1EB0B250B846712C917506 ] PNRPsvc C:\Windows\system32\p2psvc.dll
11:23:30.0264 3612 PNRPsvc - ok
11:23:30.0342 3612 [ D0494460421A03CD5225CCA0059AA146 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
11:23:30.0342 3612 PolicyAgent - ok
11:23:30.0373 3612 [ ECFFFAEC0C1ECD8DBC77F39070EA1DB1 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
11:23:30.0373 3612 PptpMiniport - ok
11:23:30.0388 3612 [ 0E3CEF5D28B40CF273281D620C50700A ] Processor C:\Windows\system32\drivers\processr.sys
11:23:30.0388 3612 Processor - ok
11:23:30.0451 3612 [ 0508FAA222D28835310B7BFCA7A77346 ] ProfSvc C:\Windows\system32\profsvc.dll
11:23:30.0466 3612 ProfSvc - ok
11:23:30.0482 3612 [ A3E186B4B935905B829219502557314E ] ProtectedStorage C:\Windows\system32\lsass.exe
11:23:30.0482 3612 ProtectedStorage - ok
11:23:30.0513 3612 [ 99514FAA8DF93D34B5589187DB3AA0BA ] PSched C:\Windows\system32\DRIVERS\pacer.sys
11:23:30.0513 3612 PSched - ok
11:23:30.0716 3612 [ CCDAC889326317792480C0A67156A1EC ] ql2300 C:\Windows\system32\drivers\ql2300.sys
11:23:30.0732 3612 ql2300 - ok
11:23:30.0747 3612 [ 81A7E5C076E59995D54BC1ED3A16E60B ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
11:23:30.0747 3612 ql40xx - ok
11:23:30.0825 3612 [ E9ECAE663F47E6CB43962D18AB18890F ] QWAVE C:\Windows\system32\qwave.dll
11:23:30.0841 3612 QWAVE - ok
11:23:30.0872 3612 [ 9F5E0E1926014D17486901C88ECA2DB7 ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
11:23:30.0872 3612 QWAVEdrv - ok
11:23:30.0888 3612 [ 147D7F9C556D259924351FEB0DE606C3 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
11:23:30.0888 3612 RasAcd - ok
11:23:30.0903 3612 [ F6A452EB4CEADBB51C9E0EE6B3ECEF0F ] RasAuto C:\Windows\System32\rasauto.dll
11:23:30.0934 3612 RasAuto - ok
11:23:30.0966 3612 [ A214ADBAF4CB47DD2728859EF31F26B0 ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
11:23:30.0966 3612 Rasl2tp - ok
11:23:31.0090 3612 [ 75D47445D70CA6F9F894B032FBC64FCF ] RasMan C:\Windows\System32\rasmans.dll
11:23:31.0137 3612 RasMan - ok
11:23:31.0153 3612 [ 509A98DD18AF4375E1FC40BC175F1DEF ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
11:23:31.0153 3612 RasPppoe - ok
11:23:31.0215 3612 [ 2005F4A1E05FA09389AC85840F0A9E4D ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
11:23:31.0215 3612 RasSstp - ok
11:23:31.0402 3612 [ B14C9D5B9ADD2F84F70570BBBFAA7935 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
11:23:31.0402 3612 rdbss - ok
11:23:31.0449 3612 [ 89E59BE9A564262A3FB6C4F4F1CD9899 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
11:23:31.0449 3612 RDPCDD - ok
11:23:31.0636 3612 [ E8BD98D46F2ED77132BA927FCCB47D8B ] rdpdr C:\Windows\system32\drivers\rdpdr.sys
11:23:31.0652 3612 rdpdr - ok
11:23:31.0761 3612 [ 9D91FE5286F748862ECFFA05F8A0710C ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
11:23:31.0761 3612 RDPENCDD - ok
11:23:31.0902 3612 [ C127EBD5AFAB31524662C48DFCEB773A ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
11:23:31.0902 3612 RDPWD - ok
11:23:32.0011 3612 [ BCDD6B4804D06B1F7EBF29E53A57ECE9 ] RemoteAccess C:\Windows\System32\mprdim.dll
11:23:32.0042 3612 RemoteAccess - ok
11:23:32.0089 3612 [ 9E6894EA18DAFF37B63E1005F83AE4AB ] RemoteRegistry C:\Windows\system32\regsvc.dll
11:23:32.0089 3612 RemoteRegistry - ok
11:23:32.0120 3612 [ 5123F83CBC4349D065534EEB6BBDC42B ] RpcLocator C:\Windows\system32\locator.exe
11:23:32.0120 3612 RpcLocator - ok
11:23:32.0167 3612 [ 3B5B4D53FEC14F7476CA29A20CC31AC9 ] RpcSs C:\Windows\system32\rpcss.dll
11:23:32.0182 3612 RpcSs - ok
11:23:32.0198 3612 [ 9C508F4074A39E8B4B31D27198146FAD ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
11:23:32.0198 3612 rspndr - ok
11:23:32.0214 3612 [ A3E186B4B935905B829219502557314E ] SamSs C:\Windows\system32\lsass.exe
11:23:32.0214 3612 SamSs - ok
11:23:32.0245 3612 [ 3CE8F073A557E172B330109436984E30 ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
11:23:32.0245 3612 sbp2port - ok
11:23:32.0323 3612 [ 77B7A11A0C3D78D3386398FBBEA1B632 ] SCardSvr C:\Windows\System32\SCardSvr.dll
11:23:32.0323 3612 SCardSvr - ok
11:23:32.0354 3612 [ 1A58069DB21D05EB2AB58EE5753EBE8D ] Schedule C:\Windows\system32\schedsvc.dll
11:23:32.0370 3612 Schedule - ok
11:23:32.0416 3612 [ 312EC3E37A0A1F2006534913E37B4423 ] SCPolicySvc C:\Windows\System32\certprop.dll
11:23:32.0416 3612 SCPolicySvc - ok
11:23:32.0510 3612 [ 716313D9F6B0529D03F726D5AAF6F191 ] SDRSVC C:\Windows\System32\SDRSVC.dll
11:23:32.0541 3612 SDRSVC - ok
11:23:32.0557 3612 [ 90A3935D05B494A5A39D37E71F09A677 ] secdrv C:\Windows\system32\drivers\secdrv.sys
11:23:32.0557 3612 secdrv - ok
11:23:32.0572 3612 [ FD5199D4D8A521005E4B5EE7FE00FA9B ] seclogon C:\Windows\system32\seclogon.dll
11:23:32.0588 3612 seclogon - ok
11:23:32.0619 3612 [ A9BBAB5759771E523F55563D6CBE140F ] SENS C:\Windows\system32\sens.dll
11:23:32.0619 3612 SENS - ok
11:23:32.0635 3612 [ CE9EC966638EF0B10B864DDEDF62A099 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
11:23:32.0635 3612 Serenum - ok
11:23:32.0682 3612 [ 6D663022DB3E7058907784AE14B69898 ] Serial C:\Windows\system32\DRIVERS\serial.sys
11:23:32.0682 3612 Serial - ok
11:23:32.0713 3612 [ 8AF3D28A879BF75DB53A0EE7A4289624 ] sermouse C:\Windows\system32\drivers\sermouse.sys
11:23:32.0713 3612 sermouse - ok
11:23:32.0744 3612 [ D2193326F729B163125610DBF3E17D57 ] SessionEnv C:\Windows\system32\sessenv.dll
11:23:32.0775 3612 SessionEnv - ok
11:23:32.0806 3612 [ 103B79418DA647736EE95645F305F68A ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
11:23:32.0806 3612 sffdisk - ok
11:23:32.0822 3612 [ 8FD08A310645FE872EEEC6E08C6BF3EE ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
11:23:32.0822 3612 sffp_mmc - ok
11:23:32.0822 3612 [ 9CFA05FCFCB7124E69CFC812B72F9614 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
11:23:32.0822 3612 sffp_sd - ok
11:23:32.0838 3612 [ 46ED8E91793B2E6F848015445A0AC188 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
11:23:32.0838 3612 sfloppy - ok
11:23:32.0916 3612 [ E1499BD0FF76B1B2FBBF1AF339D91165 ] SharedAccess C:\Windows\System32\ipnathlp.dll
11:23:32.0916 3612 SharedAccess - ok
11:23:32.0962 3612 [ C7230FBEE14437716701C15BE02C27B8 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
11:23:32.0978 3612 ShellHWDetection - ok
11:23:32.0994 3612 [ D2A595D6EEBEEAF4334F8E50EFBC9931 ] sisagp C:\Windows\system32\drivers\sisagp.sys
11:23:32.0994 3612 sisagp - ok
11:23:33.0009 3612 [ CEDD6F4E7D84E9F98B34B3FE988373AA ] SiSRaid2 C:\Windows\system32\drivers\sisraid2.sys
11:23:33.0009 3612 SiSRaid2 - ok
11:23:33.0009 3612 [ DF843C528C4F69D12CE41CE462E973A7 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
11:23:33.0009 3612 SiSRaid4 - ok
11:23:33.0103 3612 [ 50D9949020E02B847CD48F1243FCB895 ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe
11:23:33.0103 3612 SkypeUpdate - ok
11:23:33.0836 3612 [ 862BB4CBC05D80C5B45BE430E5EF872F ] slsvc C:\Windows\system32\SLsvc.exe
11:23:33.0867 3612 slsvc - ok
11:23:33.0930 3612 [ 6EDC422215CD78AA8A9CDE6B30ABBD35 ] SLUINotify C:\Windows\system32\SLUINotify.dll
11:23:33.0945 3612 SLUINotify - ok
11:23:33.0976 3612 [ 7B75299A4D201D6A6533603D6914AB04 ] Smb C:\Windows\system32\DRIVERS\smb.sys
11:23:33.0992 3612 Smb - ok
11:23:34.0008 3612 [ 2A146A055B4401C16EE62D18B8E2A032 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
11:23:34.0023 3612 SNMPTRAP - ok
11:23:34.0101 3612 [ 7AEBDEEF071FE28B0EEF2CDD69102BFF ] spldr C:\Windows\system32\drivers\spldr.sys
11:23:34.0101 3612 spldr - ok
11:23:34.0226 3612 [ 8554097E5136C3BF9F69FE578A1B35F4 ] Spooler C:\Windows\System32\spoolsv.exe
11:23:34.0226 3612 Spooler - ok
11:23:34.0257 3612 [ 41987F9FC0E61ADF54F581E15029AD91 ] srv C:\Windows\system32\DRIVERS\srv.sys
11:23:34.0257 3612 srv - ok
11:23:34.0320 3612 [ FF33AFF99564B1AA534F58868CBE41EF ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
11:23:34.0320 3612 srv2 - ok
11:23:34.0351 3612 [ 7605C0E1D01A08F3ECD743F38B834A44 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
11:23:34.0351 3612 srvnet - ok
11:23:34.0476 3612 [ 03D50B37234967433A5EA5BA72BC0B62 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
11:23:34.0522 3612 SSDPSRV - ok
11:23:34.0569 3612 [ 6F1A32E7B7B30F004D9A20AFADB14944 ] SstpSvc C:\Windows\system32\sstpsvc.dll
11:23:34.0569 3612 SstpSvc - ok
11:23:34.0632 3612 [ 2F3B5A3567FFB343D8867C3D34C687F1 ] Steam Client Service C:\Program Files\Common Files\Steam\SteamService.exe
11:23:34.0647 3612 Steam Client Service - ok
11:23:34.0881 3612 [ 5DE7D67E49B88F5F07F3E53C4B92A352 ] stisvc C:\Windows\System32\wiaservc.dll
11:23:34.0881 3612 stisvc - ok
11:23:34.0928 3612 [ 7BA58ECF0C0A9A69D44B3DCA62BECF56 ] swenum C:\Windows\system32\DRIVERS\swenum.sys
11:23:34.0928 3612 swenum - ok
11:23:35.0068 3612 [ F21FD248040681CCA1FB6C9A03AAA93D ] swprv C:\Windows\System32\swprv.dll
11:23:35.0084 3612 swprv - ok
11:23:35.0115 3612 [ 192AA3AC01DF071B541094F251DEED10 ] Symc8xx C:\Windows\system32\drivers\symc8xx.sys
11:23:35.0115 3612 Symc8xx - ok
11:23:35.0131 3612 [ 8C8EB8C76736EBAF3B13B633B2E64125 ] Sym_hi C:\Windows\system32\drivers\sym_hi.sys
11:23:35.0131 3612 Sym_hi - ok
11:23:35.0131 3612 [ 8072AF52B5FD103BBBA387A1E49F62CB ] Sym_u3 C:\Windows\system32\drivers\sym_u3.sys
11:23:35.0131 3612 Sym_u3 - ok
11:23:35.0349 3612 [ 9A51B04E9886AA4EE90093586B0BA88D ] SysMain C:\Windows\system32\sysmain.dll
11:23:35.0365 3612 SysMain - ok
11:23:35.0396 3612 [ 2DCA225EAE15F42C0933E998EE0231C3 ] TabletInputService C:\Windows\System32\TabSvc.dll
11:23:35.0396 3612 TabletInputService - ok
11:23:35.0427 3612 [ D7673E4B38CE21EE54C59EEEB65E2483 ] TapiSrv C:\Windows\System32\tapisrv.dll
11:23:35.0427 3612 TapiSrv - ok
11:23:35.0458 3612 [ CB05822CD9CC6C688168E113C603DBE7 ] TBS C:\Windows\System32\tbssvc.dll
11:23:35.0458 3612 TBS - ok
11:23:35.0536 3612 [ D18D53974FD715D50FC76F9FFE1C830D ] Tcpip C:\Windows\system32\drivers\tcpip.sys
11:23:35.0552 3612 Tcpip - ok
11:23:35.0568 3612 [ D18D53974FD715D50FC76F9FFE1C830D ] Tcpip6 C:\Windows\system32\DRIVERS\tcpip.sys
11:23:35.0583 3612 Tcpip6 - ok
11:23:35.0630 3612 [ 608C345A255D82A6289C2D468EB41FD7 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
11:23:35.0630 3612 tcpipreg - ok
11:23:35.0739 3612 [ 5DCF5E267BE67A1AE926F2DF77FBCC56 ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
11:23:35.0739 3612 TDPIPE - ok
11:23:35.0833 3612 [ 389C63E32B3CEFED425B61ED92D3F021 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
11:23:35.0833 3612 TDTCP - ok
11:23:35.0926 3612 [ 76B06EB8A01FC8624D699E7045303E54 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
11:23:35.0926 3612 tdx - ok
11:23:35.0973 3612 [ 3CAD38910468EAB9A6479E2F01DB43C7 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
11:23:35.0973 3612 TermDD - ok
11:23:36.0145 3612 [ BB95DA09BEF6E7A131BFF3BA5032090D ] TermService C:\Windows\System32\termsrv.dll
11:23:36.0192 3612 TermService - ok
11:23:36.0223 3612 [ C7230FBEE14437716701C15BE02C27B8 ] Themes C:\Windows\system32\shsvcs.dll
11:23:36.0223 3612 Themes - ok
11:23:36.0238 3612 [ 1076FFCFFAAE8385FD62DFCB25AC4708 ] THREADORDER C:\Windows\system32\mmcss.dll
11:23:36.0238 3612 THREADORDER - ok
11:23:36.0301 3612 [ EC74E77D0EB004BD3A809B5F8FB8C2CE ] TrkWks C:\Windows\System32\trkwks.dll
11:23:36.0332 3612 TrkWks - ok
11:23:36.0394 3612 [ 97D9D6A04E3AD9B6C626B9931DB78DBA ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
11:23:36.0394 3612 TrustedInstaller - ok
11:23:36.0472 3612 [ F4EAA7ECBCB25DE901C9B7F2CDCDA0B3 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
11:23:36.0472 3612 tssecsrv - ok
11:23:36.0535 3612 [ CAECC0120AC49E3D2F758B9169872D38 ] tunmp C:\Windows\system32\DRIVERS\tunmp.sys
11:23:36.0535 3612 tunmp - ok
11:23:36.0535 3612 [ 300DB877AC094FEAB0BE7688C3454A9C ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
11:23:36.0550 3612 tunnel - ok
11:23:36.0675 3612 [ C3ADE15414120033A36C0F293D4A4121 ] uagp35 C:\Windows\system32\drivers\uagp35.sys
11:23:36.0675 3612 uagp35 - ok
11:23:36.0831 3612 [ D9728AF68C4C7693CB100B8441CBDEC6 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
11:23:36.0831 3612 udfs - ok
11:23:36.0925 3612 [ ECEF404F62863755951E09C802C94AD5 ] UI0Detect C:\Windows\system32\UI0Detect.exe
11:23:36.0940 3612 UI0Detect - ok
11:23:37.0018 3612 [ 75E6890EBFCE0841D3291B02E7A8BDB0 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
11:23:37.0018 3612 uliagpkx - ok
11:23:37.0143 3612 [ 3CD4EA35A6221B85DCC25DAA46313F8D ] uliahci C:\Windows\system32\drivers\uliahci.sys
11:23:37.0143 3612 uliahci - ok
11:23:37.0268 3612 [ 8514D0E5CD0534467C5FC61BE94A569F ] UlSata C:\Windows\system32\drivers\ulsata.sys
11:23:37.0268 3612 UlSata - ok
11:23:37.0284 3612 [ 38C3C6E62B157A6BC46594FADA45C62B ] ulsata2 C:\Windows\system32\drivers\ulsata2.sys
11:23:37.0284 3612 ulsata2 - ok
11:23:37.0299 3612 [ 32CFF9F809AE9AED85464492BF3E32D2 ] umbus C:\Windows\system32\DRIVERS\umbus.sys
11:23:37.0299 3612 umbus - ok
11:23:38.0064 3612 [ EB79C6C91A99930015EF29AE7FA802D1 ] UNS C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
11:23:38.0079 3612 UNS - ok
11:23:38.0173 3612 [ 68308183F4AE0BE7BF8ECD07CB297999 ] upnphost C:\Windows\System32\upnphost.dll
11:23:38.0204 3612 upnphost - ok
11:23:38.0235 3612 [ AAB0B5F72D2D726FBFDC895A2902DE1D ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
11:23:38.0235 3612 usbccgp - ok
11:23:38.0251 3612 [ E9476E6C486E76BC4898074768FB7131 ] usbcir C:\Windows\system32\drivers\usbcir.sys
11:23:38.0266 3612 usbcir - ok
11:23:38.0313 3612 [ 153E8515CB86F8BB5D1A8B478EBF4BB2 ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
11:23:38.0313 3612 usbehci - ok
11:23:38.0329 3612 [ 2AE6BCEBD85D31317E433733DAF25888 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
11:23:38.0329 3612 usbhub - ok
11:23:38.0344 3612 [ 38DBC7DD6CC5A72011F187425384388B ] usbohci C:\Windows\system32\drivers\usbohci.sys
11:23:38.0344 3612 usbohci - ok
11:23:38.0407 3612 [ B51E52ACF758BE00EF3A58EA452FE360 ] usbprint C:\Windows\system32\drivers\usbprint.sys
11:23:38.0407 3612 usbprint - ok
11:23:38.0469 3612 [ BE3DA31C191BC222D9AD503C5224F2AD ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
11:23:38.0469 3612 USBSTOR - ok
11:23:38.0516 3612 [ 325DBBACB8A36AF9988CCF40EAC228CC ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys
11:23:38.0516 3612 usbuhci - ok
11:23:38.0610 3612 [ 1509E705F3AC1D474C92454A5C2DD81F ] UxSms C:\Windows\System32\uxsms.dll
11:23:38.0625 3612 UxSms - ok
11:23:38.0672 3612 [ CD88D1B7776DC17A119049742EC07EB4 ] vds C:\Windows\System32\vds.exe
11:23:38.0688 3612 vds - ok
11:23:38.0781 3612 [ 87B06E1F30B749A114F74622D013F8D4 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
11:23:38.0781 3612 vga - ok
11:23:38.0875 3612 [ 2E93AC0A1D8C79D019DB6C51F036636C ] VgaSave C:\Windows\System32\drivers\vga.sys
11:23:38.0875 3612 VgaSave - ok
11:23:38.0984 3612 [ 045D9961E591CF0674A920B6BA3BA5CB ] viaagp C:\Windows\system32\drivers\viaagp.sys
11:23:38.0984 3612 viaagp - ok
11:23:39.0031 3612 [ 56A4DE5F02F2E88182B0981119B4DD98 ] ViaC7 C:\Windows\system32\drivers\viac7.sys
11:23:39.0031 3612 ViaC7 - ok
11:23:39.0093 3612 [ FD2E3175FCADA350C7AB4521DCA187EC ] viaide C:\Windows\system32\drivers\viaide.sys
11:23:39.0093 3612 viaide - ok
11:23:39.0187 3612 [ 69503668AC66C77C6CD7AF86FBDF8C43 ] volmgr C:\Windows\system32\drivers\volmgr.sys
11:23:39.0187 3612 volmgr - ok
11:23:39.0296 3612 [ 23E41B834759917BFD6B9A0D625D0C28 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
11:23:39.0296 3612 volmgrx - ok
11:23:39.0327 3612 [ 786DB5771F05EF300390399F626BF30A ] volsnap C:\Windows\system32\drivers\volsnap.sys
11:23:39.0327 3612 volsnap - ok
11:23:39.0374 3612 [ D984439746D42B30FC65A4C3546C6829 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
11:23:39.0390 3612 vsmraid - ok
11:23:39.0858 3612 [ DB3D19F850C6EB32BDCB9BC0836ACDDB ] VSS C:\Windows\system32\vssvc.exe
11:23:39.0858 3612 VSS - ok
11:23:40.0014 3612 [ 96EA68B9EB310A69C25EBB0282B2B9DE ] W32Time C:\Windows\system32\w32time.dll
11:23:40.0029 3612 W32Time - ok
11:23:40.0060 3612 [ 48DFEE8F1AF7C8235D4E626F0C4FE031 ] WacomPen C:\Windows\system32\drivers\wacompen.sys
11:23:40.0060 3612 WacomPen - ok
11:23:40.0092 3612 [ 55201897378CCA7AF8B5EFD874374A26 ] Wanarp C:\Windows\system32\DRIVERS\wanarp.sys
11:23:40.0092 3612 Wanarp - ok
11:23:40.0092 3612 [ 55201897378CCA7AF8B5EFD874374A26 ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
11:23:40.0092 3612 Wanarpv6 - ok
11:23:40.0107 3612 [ A3CD60FD826381B49F03832590E069AF ] wcncsvc C:\Windows\System32\wcncsvc.dll
11:23:40.0123 3612 wcncsvc - ok
11:23:40.0154 3612 [ 11BCB7AFCDD7AADACB5746F544D3A9C7 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
11:23:40.0154 3612 WcsPlugInService - ok
11:23:40.0170 3612 [ AFC5AD65B991C1E205CF25CFDBF7A6F4 ] Wd C:\Windows\system32\drivers\wd.sys
11:23:40.0170 3612 Wd - ok
11:23:40.0201 3612 [ 25944D2CC49E0A6C581D02A74B7D6645 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
11:23:40.0201 3612 Wdf01000 - ok
11:23:40.0232 3612 [ ABFC76B48BB6C96E3338D8943C5D93B5 ] WdiServiceHost C:\Windows\system32\wdi.dll
11:23:40.0232 3612 WdiServiceHost - ok
11:23:40.0248 3612 [ ABFC76B48BB6C96E3338D8943C5D93B5 ] WdiSystemHost C:\Windows\system32\wdi.dll
11:23:40.0248 3612 WdiSystemHost - ok
11:23:40.0294 3612 [ 04C37D8107320312FBAE09926103D5E2 ] WebClient C:\Windows\System32\webclnt.dll
11:23:40.0294 3612 WebClient - ok
11:23:40.0341 3612 [ AE3736E7E8892241C23E4EBBB7453B60 ] Wecsvc C:\Windows\system32\wecsvc.dll
11:23:40.0341 3612 Wecsvc - ok
11:23:40.0372 3612 [ 670FF720071ED741206D69BD995EA453 ] wercplsupport C:\Windows\System32\wercplsupport.dll
11:23:40.0372 3612 wercplsupport - ok
11:23:40.0404 3612 [ 32B88481D3B326DA6DEB07B1D03481E7 ] WerSvc C:\Windows\System32\WerSvc.dll
11:23:40.0404 3612 WerSvc - ok
11:23:40.0513 3612 [ 4575AA12561C5648483403541D0D7F2B ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll
11:23:40.0560 3612 WinDefend - ok
11:23:40.0560 3612 WinHttpAutoProxySvc - ok
11:23:40.0638 3612 [ 6B2A1D0E80110E3D04E6863C6E62FD8A ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
11:23:40.0638 3612 Winmgmt - ok
11:23:41.0168 3612 [ 7CFE68BDC065E55AA5E8421607037511 ] WinRM C:\Windows\system32\WsmSvc.dll
11:23:41.0215 3612 WinRM - ok
11:23:41.0277 3612 [ C008405E4FEEB069E30DA1D823910234 ] Wlansvc C:\Windows\System32\wlansvc.dll
11:23:41.0308 3612 Wlansvc - ok
11:23:41.0355 3612 [ 701A9F884A294327E9141D73746EE279 ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
11:23:41.0355 3612 WmiAcpi - ok
11:23:41.0433 3612 [ 43BE3875207DCB62A85C8C49970B66CC ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
11:23:41.0433 3612 wmiApSrv - ok
11:23:41.0683 3612 [ 3978704576A121A9204F8CC49A301A9B ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
11:23:41.0683 3612 WMPNetworkSvc - ok
11:23:41.0730 3612 [ CFC5A04558F5070CEE3E3A7809F3FF52 ] WPCSvc C:\Windows\System32\wpcsvc.dll
11:23:41.0776 3612 WPCSvc - ok
11:23:41.0792 3612 [ 801FBDB89D472B3C467EB112A0FC9246 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
11:23:41.0808 3612 WPDBusEnum - ok
11:23:41.0854 3612 [ F8D3544ACBCE9110362119F7C10D848E ] WPFFontCache_v0400 C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
11:23:41.0870 3612 WPFFontCache_v0400 - ok
11:23:41.0932 3612 [ E3A3CB253C0EC2494D4A61F5E43A389C ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
11:23:41.0932 3612 ws2ifsl - ok
11:23:42.0026 3612 [ 1CA6C40261DDC0425987980D0CD2AAAB ] wscsvc C:\Windows\system32\wscsvc.dll
11:23:42.0042 3612 wscsvc - ok
11:23:42.0042 3612 WSearch - ok
11:23:42.0244 3612 [ FC3EC24FCE372C89423E015A2AC1A31E ] wuauserv C:\Windows\system32\wuaueng.dll
11:23:42.0276 3612 wuauserv - ok
11:23:42.0322 3612 [ 06E6F32C8D0A3F66D956F57B43A2E070 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
11:23:42.0322 3612 WudfPf - ok
11:23:42.0354 3612 [ 867C301E8B790040AE9CF6486E8041DF ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
11:23:42.0354 3612 WUDFRd - ok
11:23:42.0385 3612 [ FE47B7BC8EA320C2D9B5E5BF6E303765 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
11:23:42.0400 3612 wudfsvc - ok
11:23:42.0400 3612 ================ Scan global ===============================
11:23:42.0447 3612 [ F31EEBC1A1C81FD04005489CC3DCDFE7 ] C:\Windows\system32\basesrv.dll
11:23:42.0463 3612 [ A508314231C49AEE86987CEA3EAECAD1 ] C:\Windows\system32\winsrv.dll
11:23:42.0494 3612 [ A508314231C49AEE86987CEA3EAECAD1 ] C:\Windows\system32\winsrv.dll
11:23:42.0541 3612 [ D4E6D91C1349B7BFB3599A6ADA56851B ] C:\Windows\system32\services.exe
11:23:42.0541 3612 [Global] - ok
11:23:42.0541 3612 ================ Scan MBR ==================================
11:23:42.0588 3612 [ 5C616939100B85E558DA92B899A0FC36 ] \Device\Harddisk0\DR0
11:23:45.0380 3612 \Device\Harddisk0\DR0 - ok
11:23:45.0380 3612 ================ Scan VBR ==================================
11:23:45.0411 3612 [ 1AA4F33F9DD2FDF08DC3F286C8E4A406 ] \Device\Harddisk0\DR0\Partition1
11:23:45.0442 3612 \Device\Harddisk0\DR0\Partition1 - ok
11:23:45.0442 3612 ============================================================
11:23:45.0442 3612 Scan finished
11:23:45.0442 3612 ============================================================
11:23:45.0442 0868 Detected object count: 0
11:23:45.0442 0868 Actual detected object count: 0
11:23:49.0654 2368 Deinitialize success

Uživatelský avatar
Mety
Level 2.5
Level 2.5
Příspěvky: 326
Registrován: duben 12
Bydliště: Markvartovice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod Mety » 20 dub 2014 11:43

Ten log z aswMBr je v .DAT, nemůžu sem jeho obsah zkopírovat.

Uživatelský avatar
Mety
Level 2.5
Level 2.5
Příspěvky: 326
Registrován: duben 12
Bydliště: Markvartovice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod Mety » 20 dub 2014 11:49

Tady už je log z aswMBR:

aswMBR version 0.9.9.1771 Copyright(c) 2011 AVAST Software
Run date: 2014-04-20 11:44:01
-----------------------------
11:44:01.850 OS Version: Windows 6.0.6002 Service Pack 2
11:44:01.850 Number of processors: 2 586 0x2A07
11:44:01.850 ComputerName: MATY-PC UserName: Maty
11:44:03.426 Initialize success
11:44:06.998 AVAST engine defs: 14042000
11:44:11.241 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP2T0L0-2
11:44:11.241 Disk 0 Vendor: WDC_WD1600AAJS-00PSA0 05.06H05 Size: 152627MB BusType: 3
11:44:11.709 Disk 0 MBR read successfully
11:44:11.709 Disk 0 MBR scan
11:44:11.709 Disk 0 Windows VISTA default MBR code
11:44:11.741 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 152625 MB offset 2048
11:44:11.741 Disk 0 scanning sectors +312578048
11:44:12.521 Disk 0 scanning C:\Windows\system32\drivers
11:44:22.645 Service scanning
11:44:29.244 Service MSICDSetup D:\CDriver.sys **LOCKED** 21
11:44:36.607 Modules scanning
11:44:42.769 Disk 0 trace - called modules:
11:44:42.800 ntkrnlpa.exe CLASSPNP.SYS disk.sys acpi.sys hal.dll ataport.SYS pciide.sys PCIIDEX.SYS atapi.sys
11:44:43.299 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x873cd310]
11:44:43.299 3 CLASSPNP.SYS[83fa18b3] -> nt!IofCallDriver -> [0x85efb180]
11:44:43.299 5 acpi.sys[806a56bc] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP2T0L0-2[0x85efb2a8]
11:44:43.767 AVAST engine scan C:\Windows
11:44:45.873 AVAST engine scan C:\Windows\system32
11:47:28.769 AVAST engine scan C:\Windows\system32\drivers
11:47:37.661 AVAST engine scan C:\Users\Maty
11:47:58.580 Disk 0 MBR has been saved successfully to "C:\Users\Maty\Desktop\MBR.dat"
11:47:58.580 The log file has been saved successfully to "C:\Users\Maty\Desktop\aswMBR.txt"


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 77 hostů