Zdravim,
prosim o kontrolu logu.
Mam WIN VISTA a mohu se nalogovat pouze jako GUEST.
Nefunguje obnoveni systemu ani odinstalace jakehokoliv sw.
Posilam log z HJT.
Predem dekuji za pomoc
T.
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 23:24:10, on 22.5.2014
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v9.00 (9.00.8112.16545)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Program Files\ASUSTek\ASUSDVD\PDVDServ.exe
C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe
C:\Program Files\ATKOSD2\ATKOSD2.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\ScanSoft\OmniPageSE4.0\OpWareSE4.exe
C:\Windows\Samsung\PanelMgr\SSMMgr.exe
C:\Windows\twain_32\Samsung\SCX3200\Scan2Pc.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\T-Mobile\Web'n'walk Manager\Manager.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Program Files\OpenOffice.org 3\program\soffice.exe
C:\Program Files\AVG PC TuneUp 2014\TuneUpUtilitiesApp32.exe
C:\Program Files\OpenOffice.org 3\program\soffice.bin
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
D:\vir\HiJackThis.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Opera\21.0.1432.67\opera.exe
C:\Program Files\CCleaner\CCleaner.exe
C:\Program Files\Opera\21.0.1432.67\opera_crashreporter.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\Opera\21.0.1432.67\opera.exe
C:\Program Files\Opera\21.0.1432.67\opera.exe
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://my.myplaycity.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - Default URLSearchHook is missing
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: Pomocná služba pro přihlášení ke službě Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: AVG SafeGuard toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG SafeGuard toolbar\18.1.5.512\AVG SafeGuard toolbar_toolbar.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O2 - BHO: SmileysWeLoveToolbar - {E4EF8A64-0A30-48F5-B3FE-5FDA978DA775} - C:\Program Files\Smileys We Love Toolbar for IE\adxloader.dll
O3 - Toolbar: SmileysWeLove - {CF0F43AB-9C23-4D7B-8040-201B82844854} - C:\Program Files\Smileys We Love Toolbar for IE\adxloader.dll
O3 - Toolbar: AVG SafeGuard toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG SafeGuard toolbar\18.1.5.512\AVG SafeGuard toolbar_toolbar.dll
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\ASUSTek\ASUSDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [CLMLServer] "C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe"
O4 - HKLM\..\Run: [P2Go_Menu] "C:\Program Files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
O4 - HKLM\..\Run: [ATKOSD2] "C:\Program Files\ATKOSD2\ATKOSD2.exe"
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [Skytel] Skytel.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe"
O4 - HKLM\..\Run: [Samsung PanelMgr] C:\Windows\Samsung\PanelMgr\SSMMgr.exe /autorun
O4 - HKLM\..\Run: [3200 Scan2PC] "C:\Windows\twain_32\Samsung\SCX3200\Scan2Pc.exe"
O4 - HKLM\..\Run: [vProt] "C:\Program Files\AVG SafeGuard toolbar\vprot.exe"
O4 - HKLM\..\RunOnce: [Malwarebytes Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
O4 - HKLM\..\RunOnce: [Malwarebytes Anti-Malware (cleanup)] rundll32.exe "C:\ProgramData\Malwarebytes\Malwarebytes' Anti-Malware\cleanup.dll",ProcessCleanupScript
O4 - HKLM\..\RunOnce: [AvgRemover] C:\temp\vir\avg_remover_stf_x86_2013_2706.exe /run_number=2 /avgdir="C:\Program Files\AVG\AVG2013\" /avgdatadir="C:\ProgramData\AVG2013\"
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKUS\S-1-5-21-3024212301-390719609-2198922643-501\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun (User 'Guest')
O4 - HKUS\S-1-5-21-3024212301-390719609-2198922643-501\..\Run: [T-Mobile CManager] "C:\Program Files\T-Mobile\Web'n'walk Manager\Manager.exe" -autorun (User 'Guest')
O4 - HKUS\S-1-5-21-3024212301-390719609-2198922643-501\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe (User 'Guest')
O4 - HKUS\S-1-5-18\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe (User 'Default user')
O4 - S-1-5-21-3024212301-390719609-2198922643-501 Startup: OpenOffice.org 3.0.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe (User 'Guest')
O4 - S-1-5-21-3024212301-390719609-2198922643-501 User Startup: OpenOffice.org 3.0.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe (User 'Guest')
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\18.1.5\ViProtocol.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: ADSM Service (ADSMService) - Unknown owner - C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe
O23 - Service: ASLDR Service (ASLDRService) - Unknown owner - C:\Program Files\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - Unknown owner - C:\Program Files\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Google Desktop Manager 5.9.911.3589 (GoogleDesktopManager-110309-193829) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: spmgr - Unknown owner - C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe
O23 - Service: AVG PC TuneUp Service (TuneUp.UtilitiesSvc) - AVG - C:\Program Files\AVG PC TuneUp 2014\TuneUpUtilitiesService32.exe
O23 - Service: vToolbarUpdater18.1.5 - Unknown owner - C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\18.1.5\ToolbarUpdater.exe
--
End of file - 9309 bytes
Prosim o kontrolu logu Vyřešeno
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Prosim o kontrolu logu
Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected. Poté klikni na Main (hlavní stránku ) a klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.
- Pokud používáš jen Google Chrome , tak ATF nemusíš použít.
Stáhni si TFC
Otevři soubor a zavři všechny ostatní okna, Klikni na Start k zahájení procesu. Program by neměl trvat dlouho.
Poté by se měl PC restartovat, pokud ne , proveď sám.
Stáhni AdwCleaner (by Xplode)
http://www.bleepingcomputer.com/download/adwcleaner/
Ulož si ho na svojí plochu
Ukonči všechny programy , okna a prohlížeče
Spusť program poklepáním a klikni na „Prohledat-Scan“
Po skenu se objeví log ( jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.
Stáhni si Malwarebytes' Anti-Malware
- Při instalaci odeber zatržítko u „Povolit bezplatnou zkušební verzi Malwarebytes' Anti-Malware Premium“
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a klikni na Skenovat nyní a
- po proběhnutí programu se ti objeví hláška vpravo dole tak klikni na b] Kopírovat do schránky [/b]a a vlož sem celý log.
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Pokud budou problémy , spusť v nouz. režimu.
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected. Poté klikni na Main (hlavní stránku ) a klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.
- Pokud používáš jen Google Chrome , tak ATF nemusíš použít.
Stáhni si TFC
Otevři soubor a zavři všechny ostatní okna, Klikni na Start k zahájení procesu. Program by neměl trvat dlouho.
Poté by se měl PC restartovat, pokud ne , proveď sám.
Stáhni AdwCleaner (by Xplode)
http://www.bleepingcomputer.com/download/adwcleaner/
Ulož si ho na svojí plochu
Ukonči všechny programy , okna a prohlížeče
Spusť program poklepáním a klikni na „Prohledat-Scan“
Po skenu se objeví log ( jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.
Stáhni si Malwarebytes' Anti-Malware
- Při instalaci odeber zatržítko u „Povolit bezplatnou zkušební verzi Malwarebytes' Anti-Malware Premium“
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a klikni na Skenovat nyní a
- po proběhnutí programu se ti objeví hláška vpravo dole tak klikni na b] Kopírovat do schránky [/b]a a vlož sem celý log.
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Pokud budou problémy , spusť v nouz. režimu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Prosim o kontrolu logu
# AdwCleaner v3.210 - Report created 23/05/2014 at 16:52:55
# Updated 19/05/2014 by Xplode
# Operating System : Windows Vista (TM) Home Basic Service Pack 2 (32 bits)
# Username : vercik - VERCIK-ASUS
# Running from : C:\Users\Guest\Desktop\Downloads\adwcleaner_3.210 (1).exe
# Option : Scan
***** [ Services ] *****
***** [ Files / Folders ] *****
Folder Found : C:\Program Files\AVG SafeGuard toolbar
Folder Found : C:\Program Files\BringStar
Folder Found : C:\Program Files\Common Files\AVG Secure Search
Folder Found : C:\ProgramData\AlawarWrapper
Folder Found : C:\ProgramData\AVG SafeGuard toolbar
Folder Found : C:\ProgramData\AVG Secure Search
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Found : HKCU\Software\AVG SafeGuard toolbar
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{D08D9F98-1C78-4704-87E6-368B0023D831}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\AVG SafeGuard toolbar
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Found : HKLM\Software\AVG SafeGuard toolbar
Key Found : HKLM\SOFTWARE\Classes\AppID\{1FDFF5A2-7BB1-48E1-8081-7236812B12B2}
Key Found : HKLM\SOFTWARE\Classes\AppID\ViProtocol.DLL
Key Found : HKLM\SOFTWARE\Classes\AVG SafeGuard toolbar.BrowserWndAPI
Key Found : HKLM\SOFTWARE\Classes\AVG SafeGuard toolbar.BrowserWndAPI.1
Key Found : HKLM\SOFTWARE\Classes\AVG SafeGuard toolbar.PugiObj
Key Found : HKLM\SOFTWARE\Classes\AVG SafeGuard toolbar.PugiObj.1
Key Found : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{35B8892D-C3FB-4D88-990D-31DB2EBD72BD}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{933B95E2-E7B7-4AD9-B952-7AC336682AE3}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{B658800C-F66E-4EF3-AB85-6C0C227862A9}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Found : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Found : HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Key Found : HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Key Found : HKLM\SOFTWARE\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Found : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Found : HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
Key Found : HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Key Found : HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
Key Found : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi
Key Found : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi.1
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{74FB6AFD-DD77-4CEB-83BD-AB2B63E63C93}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{93E3D79C-0786-48FF-9329-93BC9F6DC2B3}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94}
Key Found : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE
Key Found : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE.1
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\bejbohlohkkgompgecdcbbglkpjfjgdj
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\fjbbjfdilbioabojmcplalojlmdngbjl
Key Found : HKLM\Software\ICQ\ICQToolbar
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C6FDD0C3-266A-4DC3-B459-28C697C44CDC}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\789034A89BAC50E4782F0A7BDBF75632
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\A97CEC23332751B47BA4B95BAA50C9D0
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F754C503375A13344B22388E18DFE87E
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG SafeGuard toolbar
Key Found : HKLM\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin
***** [ Browsers ] *****
-\\ Internet Explorer v9.0.8112.16545
*************************
AdwCleaner[R0].txt - [5101 octets] - [23/05/2014 00:08:19]
AdwCleaner[R1].txt - [4983 octets] - [23/05/2014 16:52:55]
########## EOF - \AdwCleaner\AdwCleaner[R1].txt - [5043 octets] ##########
Pri spusteni Malwarebytes mi vybehne chyba runtime a program prestane fungovat...
# Updated 19/05/2014 by Xplode
# Operating System : Windows Vista (TM) Home Basic Service Pack 2 (32 bits)
# Username : vercik - VERCIK-ASUS
# Running from : C:\Users\Guest\Desktop\Downloads\adwcleaner_3.210 (1).exe
# Option : Scan
***** [ Services ] *****
***** [ Files / Folders ] *****
Folder Found : C:\Program Files\AVG SafeGuard toolbar
Folder Found : C:\Program Files\BringStar
Folder Found : C:\Program Files\Common Files\AVG Secure Search
Folder Found : C:\ProgramData\AlawarWrapper
Folder Found : C:\ProgramData\AVG SafeGuard toolbar
Folder Found : C:\ProgramData\AVG Secure Search
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Found : HKCU\Software\AVG SafeGuard toolbar
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{D08D9F98-1C78-4704-87E6-368B0023D831}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\AVG SafeGuard toolbar
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Found : HKLM\Software\AVG SafeGuard toolbar
Key Found : HKLM\SOFTWARE\Classes\AppID\{1FDFF5A2-7BB1-48E1-8081-7236812B12B2}
Key Found : HKLM\SOFTWARE\Classes\AppID\ViProtocol.DLL
Key Found : HKLM\SOFTWARE\Classes\AVG SafeGuard toolbar.BrowserWndAPI
Key Found : HKLM\SOFTWARE\Classes\AVG SafeGuard toolbar.BrowserWndAPI.1
Key Found : HKLM\SOFTWARE\Classes\AVG SafeGuard toolbar.PugiObj
Key Found : HKLM\SOFTWARE\Classes\AVG SafeGuard toolbar.PugiObj.1
Key Found : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{35B8892D-C3FB-4D88-990D-31DB2EBD72BD}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{933B95E2-E7B7-4AD9-B952-7AC336682AE3}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{B658800C-F66E-4EF3-AB85-6C0C227862A9}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Found : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Found : HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Key Found : HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Key Found : HKLM\SOFTWARE\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Found : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Found : HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
Key Found : HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Key Found : HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
Key Found : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi
Key Found : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi.1
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{74FB6AFD-DD77-4CEB-83BD-AB2B63E63C93}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{93E3D79C-0786-48FF-9329-93BC9F6DC2B3}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94}
Key Found : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE
Key Found : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE.1
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\bejbohlohkkgompgecdcbbglkpjfjgdj
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\fjbbjfdilbioabojmcplalojlmdngbjl
Key Found : HKLM\Software\ICQ\ICQToolbar
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C6FDD0C3-266A-4DC3-B459-28C697C44CDC}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\789034A89BAC50E4782F0A7BDBF75632
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\A97CEC23332751B47BA4B95BAA50C9D0
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F754C503375A13344B22388E18DFE87E
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG SafeGuard toolbar
Key Found : HKLM\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin
***** [ Browsers ] *****
-\\ Internet Explorer v9.0.8112.16545
*************************
AdwCleaner[R0].txt - [5101 octets] - [23/05/2014 00:08:19]
AdwCleaner[R1].txt - [4983 octets] - [23/05/2014 16:52:55]
########## EOF - \AdwCleaner\AdwCleaner[R1].txt - [5043 octets] ##########
Pri spusteni Malwarebytes mi vybehne chyba runtime a program prestane fungovat...

Re: Prosim o kontrolu logu
podarilo se....
Malwarebytes Anti-Malware
www.malwarebytes.org
Datum skenování: 23.5.2014
Čas skenování: 17:06:39
Protokol: malware01.txt
Správce: Ne
Verze: 2.00.2.1012
Databáze malwaru: v2014.03.04.09
Databáze rootkitů: v2014.02.20.01
Licence: Zkušební verze
Ochrana proti malwaru: Zapnuto
Ochrana proti škodlivým webovým stránkám: Zapnuto
Self-protection: Vypnuto
OS: Windows Vista Service Pack 2
CPU: x86
Souborový systém: NTFS
Uživatel: Guest
Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 164244
Uplynulý čas: 8 min, 3 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristics: Zapnuto
PUP: Varovat
PUM: Zapnuto
Procesy: 0
(No malicious items detected)
Moduly: 0
(No malicious items detected)
Klíče registru: 1
PUP.Optional.SweetIM.A, HKLM\SOFTWARE\SWEETIM, , [f85113ecfb7fd75f3e80b8f3798a857b],
Hodnoty registru: 1
PUP.Optional.SweetIM.A, HKLM\SOFTWARE\SWEETIM|simapp_id, {257BE10E-E398-436D-8295-C0972E353111}, , [f85113ecfb7fd75f3e80b8f3798a857b]
Data registru: 0
(No malicious items detected)
Složky: 0
(No malicious items detected)
Soubory: 2
PUP.Optional.SweetIM, C:\Windows\Installer\3f65d8.msi, , [61e88d7246346cca482f3021ab59db25],
PUP.Optional.SweetIM, C:\Windows\Installer\3f65de.msi, , [9eab9a6589f104326314024f2ada5da3],
Fyzické sektory: 0
(No malicious items detected)
(end)
Malwarebytes Anti-Malware
www.malwarebytes.org
Datum skenování: 23.5.2014
Čas skenování: 17:06:39
Protokol: malware01.txt
Správce: Ne
Verze: 2.00.2.1012
Databáze malwaru: v2014.03.04.09
Databáze rootkitů: v2014.02.20.01
Licence: Zkušební verze
Ochrana proti malwaru: Zapnuto
Ochrana proti škodlivým webovým stránkám: Zapnuto
Self-protection: Vypnuto
OS: Windows Vista Service Pack 2
CPU: x86
Souborový systém: NTFS
Uživatel: Guest
Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 164244
Uplynulý čas: 8 min, 3 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristics: Zapnuto
PUP: Varovat
PUM: Zapnuto
Procesy: 0
(No malicious items detected)
Moduly: 0
(No malicious items detected)
Klíče registru: 1
PUP.Optional.SweetIM.A, HKLM\SOFTWARE\SWEETIM, , [f85113ecfb7fd75f3e80b8f3798a857b],
Hodnoty registru: 1
PUP.Optional.SweetIM.A, HKLM\SOFTWARE\SWEETIM|simapp_id, {257BE10E-E398-436D-8295-C0972E353111}, , [f85113ecfb7fd75f3e80b8f3798a857b]
Data registru: 0
(No malicious items detected)
Složky: 0
(No malicious items detected)
Soubory: 2
PUP.Optional.SweetIM, C:\Windows\Installer\3f65d8.msi, , [61e88d7246346cca482f3021ab59db25],
PUP.Optional.SweetIM, C:\Windows\Installer\3f65de.msi, , [9eab9a6589f104326314024f2ada5da3],
Fyzické sektory: 0
(No malicious items detected)
(end)
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Prosim o kontrolu logu
Spusť znovu AdwCleaner (u Windows Vista či Windows7, klikni na AdwCleaner pravým a vyber „Spustit jako správce“
klikni na „Prohledat-Scan“, po prohledání klikni na „ Vymazat-Clean“
Program provede opravu, po automatickém restartu neukáže log (C:\AdwCleaner [S?].txt) , jeho obsah sem celý vlož.
Stáhni si Junkware Removal Tool by Thisisu
na svojí plochu.
Deaktivuj si svůj antivirový program. Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.
. spusť znovu MbAM a dej Skenovat nyní
- po proběhnutí programu se ti objeví hláška tak klikni na „Vše do karantény“ a na „Exportovat záznam“ a vyber „textový soubor“ , soubor nějak pojmenuj a někam ho ulož. Zkopíruj se celý obsah toho logu.
Stáhni si RogueKiller by Adlice Software
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit
-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
klikni na „Prohledat-Scan“, po prohledání klikni na „ Vymazat-Clean“
Program provede opravu, po automatickém restartu neukáže log (C:\AdwCleaner [S?].txt) , jeho obsah sem celý vlož.
Stáhni si Junkware Removal Tool by Thisisu
na svojí plochu.
Deaktivuj si svůj antivirový program. Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.
. spusť znovu MbAM a dej Skenovat nyní
- po proběhnutí programu se ti objeví hláška tak klikni na „Vše do karantény“ a na „Exportovat záznam“ a vyber „textový soubor“ , soubor nějak pojmenuj a někam ho ulož. Zkopíruj se celý obsah toho logu.
Stáhni si RogueKiller by Adlice Software
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit
-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Prosim o kontrolu logu
diky za pomoc, vkladam logy:
# AdwCleaner v3.210 - Report created 24/05/2014 at 11:53:31
# Updated 19/05/2014 by Xplode
# Operating System : Windows Vista (TM) Home Basic Service Pack 2 (32 bits)
# Username : vercik - VERCIK-ASUS
# Running from : C:\Users\Guest\Downloads\adwcleaner_3.210.exe
# Option : Scan
***** [ Services ] *****
***** [ Files / Folders ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
***** [ Browsers ] *****
-\\ Internet Explorer v9.0.8112.16545
*************************
AdwCleaner[R0].txt - [5101 octets] - [23/05/2014 00:08:19]
AdwCleaner[R1].txt - [5121 octets] - [23/05/2014 16:52:55]
AdwCleaner[R2].txt - [5994 octets] - [23/05/2014 23:38:18]
AdwCleaner[R3].txt - [886 octets] - [24/05/2014 11:47:07]
AdwCleaner[R4].txt - [1010 octets] - [24/05/2014 11:52:07]
AdwCleaner[R5].txt - [815 octets] - [24/05/2014 11:53:31]
AdwCleaner[S0].txt - [6163 octets] - [23/05/2014 23:39:24]
AdwCleaner[S1].txt - [946 octets] - [24/05/2014 11:47:36]
########## EOF - \AdwCleaner\AdwCleaner[R5].txt - [993 octets] ##########
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.4 (04.06.2014:1)
OS: Windows Vista (TM) Home Basic x86
Ran by SYSTEM on so 24.05.2014 at 13:29:55,43
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\curl.httpfiledownloadservice.1
~~~ Files
~~~ Folders
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on so 24.05.2014 at 13:36:15,79
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Malwarebytes Anti-Malware
www.malwarebytes.org
Datum skenování: 24.5.2014
Čas skenování: 12:59:41
Protokol: malware02.txt
Správce: Ano
Verze: 2.00.2.1012
Databáze malwaru: v2014.03.04.09
Databáze rootkitů: v2014.02.20.01
Licence: Zkušební verze
Ochrana proti malwaru: Zapnuto
Ochrana proti škodlivým webovým stránkám: Zapnuto
Self-protection: Vypnuto
OS: Windows Vista Service Pack 2
CPU: x86
Souborový systém: NTFS
Uživatel: vercik
Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 285678
Uplynulý čas: 10 min, 50 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristics: Zapnuto
PUP: Varovat
PUM: Zapnuto
Procesy: 0
(No malicious items detected)
Moduly: 0
(No malicious items detected)
Klíče registru: 6
PUP.Optional.SmileysWeLove.A, HKU\S-1-5-21-3024212301-390719609-2198922643-1000.bak-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{CF0F43AB-9C23-4D7B-8040-201B82844854}, , [1f2a02fd7dfdd75fe589462f748e768a],
PUP.Optional.SmileysWeLove.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{CF0F43AB-9C23-4D7B-8040-201B82844854}, , [1f2a02fd7dfdd75fe589462f748e768a],
PUP.Optional.SmileysWeLove.A, HKU\S-1-5-21-3024212301-390719609-2198922643-1000.bak-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{CF0F43AB-9C23-4D7B-8040-201B82844854}, , [1f2a02fd7dfdd75fe589462f748e768a],
PUP.Optional.SmileysWeLove.A, HKU\S-1-5-21-3024212301-390719609-2198922643-1000.bak-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{E4EF8A64-0A30-48F5-B3FE-5FDA978DA775}, , [1b2e1ae50c6efe38333cc3b20ff36c94],
PUP.Optional.SmileysWeLove.A, HKU\S-1-5-21-3024212301-390719609-2198922643-1000.bak-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{E4EF8A64-0A30-48F5-B3FE-5FDA978DA775}, , [1b2e1ae50c6efe38333cc3b20ff36c94],
PUP.Optional.SweetIM.A, HKU\S-1-5-21-3024212301-390719609-2198922643-1000.BAK-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SWEETIM, , [d47542bdf684072f3e7f0c9fcd36db25],
Hodnoty registru: 1
PUP.Optional.SweetIM.A, HKU\S-1-5-21-3024212301-390719609-2198922643-1000.bak-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SWEETIM|simapp_id, {257BE10E-E398-436D-8295-C0972E353111}, , [d47542bdf684072f3e7f0c9fcd36db25]
Data registru: 0
(No malicious items detected)
Složky: 3
PUP.Optional.OpenCandy, C:\Users\vercik\AppData\Roaming\OpenCandy, , [5dec48b7a5d5c472d4b7b0d634ce768a],
PUP.Optional.OpenCandy, C:\Users\vercik\AppData\Roaming\OpenCandy\18D408DD8BDB422598E7CB97D0EC2DC7, , [5dec48b7a5d5c472d4b7b0d634ce768a],
PUP.Optional.OpenCandy, C:\Users\vercik\AppData\Roaming\OpenCandy\B801BA154A384949804DE49060E6BDDA, , [5dec48b7a5d5c472d4b7b0d634ce768a],
Soubory: 2
PUP.Optional.OpenCandy, C:\Users\vercik\AppData\Roaming\OpenCandy\18D408DD8BDB422598E7CB97D0EC2DC7\SmileysWeLove_SetupS_cdn.exe, , [5dec48b7a5d5c472d4b7b0d634ce768a],
PUP.Optional.OpenCandy, C:\Users\vercik\AppData\Roaming\OpenCandy\B801BA154A384949804DE49060E6BDDA\avg_tuht_stf_cs_2014_206_CZ.exe, , [5dec48b7a5d5c472d4b7b0d634ce768a],
Fyzické sektory: 0
(No malicious items detected)
(end)
RogueKiller V8.8.15 [Mar 27 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com
Operační systém : Windows Vista (6.0.6002 Service Pack 2) 32 bits version
Spuštěno v : Normální režim
Uživatel : vercik [Práva správce]
Mód : Kontrola -- Datum : 05/24/2014 13:47:07
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 0 ¤¤¤
¤¤¤ ¤¤¤ Záznamy Registrů: : 9 ¤¤¤
[RUN][SUSP PATH] HKLM\[...]\Run : Skytel (Skytel.exe [7]) -> NALEZENO
[RUN][SUSP PATH] HKLM\[...]\RunOnce : Malwarebytes Anti-Malware (cleanup) ("C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\mbamdor.exe" "C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware" [7]) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ POL][PUM] HKLM\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ DESK][PUM] HKCU\[...]\ClassicStartMenu : {645FF040-5081-101B-9F08-00AA002F954E} (1) -> NALEZENO
[HJ DESK][PUM] HKCU\[...]\NewStartPanel : {645FF040-5081-101B-9F08-00AA002F954E} (1) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO
¤¤¤ naplánované úlohy : 0 ¤¤¤
¤¤¤ spuštění položky : 0 ¤¤¤
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Browser Addons : 0 ¤¤¤
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤
[Address] IRP[IRP_MJ_CREATE] : C:\Windows\system32\DRIVERS\iaStor.sys -> HOOKED (Unknown @ 0x8744D1F8)
[Address] IRP[IRP_MJ_CLOSE] : C:\Windows\system32\DRIVERS\iaStor.sys -> HOOKED (Unknown @ 0x8744D1F8)
[Address] IRP[IRP_MJ_DEVICE_CONTROL] : C:\Windows\system32\DRIVERS\iaStor.sys -> HOOKED (Unknown @ 0x8744D1F8)
[Address] IRP[IRP_MJ_INTERNAL_DEVICE_CONTROL] : C:\Windows\system32\DRIVERS\iaStor.sys -> HOOKED (Unknown @ 0x8744D1F8)
[Address] IRP[IRP_MJ_POWER] : C:\Windows\system32\DRIVERS\iaStor.sys -> HOOKED (Unknown @ 0x8744D1F8)
[Address] IRP[IRP_MJ_SYSTEM_CONTROL] : C:\Windows\system32\DRIVERS\iaStor.sys -> HOOKED (Unknown @ 0x8744D1F8)
[Address] IRP[IRP_MJ_PNP] : C:\Windows\system32\DRIVERS\iaStor.sys -> HOOKED (Unknown @ 0x8744D1F8)
¤¤¤ Externí včelstvo: ¤¤¤
¤¤¤ Nákaza : ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts
127.0.0.1 localhost
¤¤¤ Kontrola MBR: ¤¤¤
+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) Hitachi HTS542516K9SA00 +++++
--- User ---
[MBR] bf6ec93a07aa97909ba22c5dce4e07a6
[BSP] 68a9a69bc00139773c4fa2984750dba9 : Windows Vista/7/8 MBR Code
Partition table:
0 - [XXXXXX] FAT32-LBA (0x1c) [HIDDEN!] Offset (sectors): 63 | Size: 10001 MB
1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 20482875 | Size: 76308 MB
2 - [XXXXXX] EXTEN-LBA (0x0f) [VISIBLE] Offset (sectors): 176763195 | Size: 66315 MB
User = LL1 ... OK!
User = LL2 ... OK!
Dokončeno : << RKreport[0]_S_05242014_134707.txt >>
# AdwCleaner v3.210 - Report created 24/05/2014 at 11:53:31
# Updated 19/05/2014 by Xplode
# Operating System : Windows Vista (TM) Home Basic Service Pack 2 (32 bits)
# Username : vercik - VERCIK-ASUS
# Running from : C:\Users\Guest\Downloads\adwcleaner_3.210.exe
# Option : Scan
***** [ Services ] *****
***** [ Files / Folders ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
***** [ Browsers ] *****
-\\ Internet Explorer v9.0.8112.16545
*************************
AdwCleaner[R0].txt - [5101 octets] - [23/05/2014 00:08:19]
AdwCleaner[R1].txt - [5121 octets] - [23/05/2014 16:52:55]
AdwCleaner[R2].txt - [5994 octets] - [23/05/2014 23:38:18]
AdwCleaner[R3].txt - [886 octets] - [24/05/2014 11:47:07]
AdwCleaner[R4].txt - [1010 octets] - [24/05/2014 11:52:07]
AdwCleaner[R5].txt - [815 octets] - [24/05/2014 11:53:31]
AdwCleaner[S0].txt - [6163 octets] - [23/05/2014 23:39:24]
AdwCleaner[S1].txt - [946 octets] - [24/05/2014 11:47:36]
########## EOF - \AdwCleaner\AdwCleaner[R5].txt - [993 octets] ##########
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.4 (04.06.2014:1)
OS: Windows Vista (TM) Home Basic x86
Ran by SYSTEM on so 24.05.2014 at 13:29:55,43
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\curl.httpfiledownloadservice.1
~~~ Files
~~~ Folders
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on so 24.05.2014 at 13:36:15,79
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Malwarebytes Anti-Malware
www.malwarebytes.org
Datum skenování: 24.5.2014
Čas skenování: 12:59:41
Protokol: malware02.txt
Správce: Ano
Verze: 2.00.2.1012
Databáze malwaru: v2014.03.04.09
Databáze rootkitů: v2014.02.20.01
Licence: Zkušební verze
Ochrana proti malwaru: Zapnuto
Ochrana proti škodlivým webovým stránkám: Zapnuto
Self-protection: Vypnuto
OS: Windows Vista Service Pack 2
CPU: x86
Souborový systém: NTFS
Uživatel: vercik
Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 285678
Uplynulý čas: 10 min, 50 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristics: Zapnuto
PUP: Varovat
PUM: Zapnuto
Procesy: 0
(No malicious items detected)
Moduly: 0
(No malicious items detected)
Klíče registru: 6
PUP.Optional.SmileysWeLove.A, HKU\S-1-5-21-3024212301-390719609-2198922643-1000.bak-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{CF0F43AB-9C23-4D7B-8040-201B82844854}, , [1f2a02fd7dfdd75fe589462f748e768a],
PUP.Optional.SmileysWeLove.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{CF0F43AB-9C23-4D7B-8040-201B82844854}, , [1f2a02fd7dfdd75fe589462f748e768a],
PUP.Optional.SmileysWeLove.A, HKU\S-1-5-21-3024212301-390719609-2198922643-1000.bak-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{CF0F43AB-9C23-4D7B-8040-201B82844854}, , [1f2a02fd7dfdd75fe589462f748e768a],
PUP.Optional.SmileysWeLove.A, HKU\S-1-5-21-3024212301-390719609-2198922643-1000.bak-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{E4EF8A64-0A30-48F5-B3FE-5FDA978DA775}, , [1b2e1ae50c6efe38333cc3b20ff36c94],
PUP.Optional.SmileysWeLove.A, HKU\S-1-5-21-3024212301-390719609-2198922643-1000.bak-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{E4EF8A64-0A30-48F5-B3FE-5FDA978DA775}, , [1b2e1ae50c6efe38333cc3b20ff36c94],
PUP.Optional.SweetIM.A, HKU\S-1-5-21-3024212301-390719609-2198922643-1000.BAK-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SWEETIM, , [d47542bdf684072f3e7f0c9fcd36db25],
Hodnoty registru: 1
PUP.Optional.SweetIM.A, HKU\S-1-5-21-3024212301-390719609-2198922643-1000.bak-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SWEETIM|simapp_id, {257BE10E-E398-436D-8295-C0972E353111}, , [d47542bdf684072f3e7f0c9fcd36db25]
Data registru: 0
(No malicious items detected)
Složky: 3
PUP.Optional.OpenCandy, C:\Users\vercik\AppData\Roaming\OpenCandy, , [5dec48b7a5d5c472d4b7b0d634ce768a],
PUP.Optional.OpenCandy, C:\Users\vercik\AppData\Roaming\OpenCandy\18D408DD8BDB422598E7CB97D0EC2DC7, , [5dec48b7a5d5c472d4b7b0d634ce768a],
PUP.Optional.OpenCandy, C:\Users\vercik\AppData\Roaming\OpenCandy\B801BA154A384949804DE49060E6BDDA, , [5dec48b7a5d5c472d4b7b0d634ce768a],
Soubory: 2
PUP.Optional.OpenCandy, C:\Users\vercik\AppData\Roaming\OpenCandy\18D408DD8BDB422598E7CB97D0EC2DC7\SmileysWeLove_SetupS_cdn.exe, , [5dec48b7a5d5c472d4b7b0d634ce768a],
PUP.Optional.OpenCandy, C:\Users\vercik\AppData\Roaming\OpenCandy\B801BA154A384949804DE49060E6BDDA\avg_tuht_stf_cs_2014_206_CZ.exe, , [5dec48b7a5d5c472d4b7b0d634ce768a],
Fyzické sektory: 0
(No malicious items detected)
(end)
RogueKiller V8.8.15 [Mar 27 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com
Operační systém : Windows Vista (6.0.6002 Service Pack 2) 32 bits version
Spuštěno v : Normální režim
Uživatel : vercik [Práva správce]
Mód : Kontrola -- Datum : 05/24/2014 13:47:07
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 0 ¤¤¤
¤¤¤ ¤¤¤ Záznamy Registrů: : 9 ¤¤¤
[RUN][SUSP PATH] HKLM\[...]\Run : Skytel (Skytel.exe [7]) -> NALEZENO
[RUN][SUSP PATH] HKLM\[...]\RunOnce : Malwarebytes Anti-Malware (cleanup) ("C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\mbamdor.exe" "C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware" [7]) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ POL][PUM] HKLM\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ DESK][PUM] HKCU\[...]\ClassicStartMenu : {645FF040-5081-101B-9F08-00AA002F954E} (1) -> NALEZENO
[HJ DESK][PUM] HKCU\[...]\NewStartPanel : {645FF040-5081-101B-9F08-00AA002F954E} (1) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO
¤¤¤ naplánované úlohy : 0 ¤¤¤
¤¤¤ spuštění položky : 0 ¤¤¤
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Browser Addons : 0 ¤¤¤
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤
[Address] IRP[IRP_MJ_CREATE] : C:\Windows\system32\DRIVERS\iaStor.sys -> HOOKED (Unknown @ 0x8744D1F8)
[Address] IRP[IRP_MJ_CLOSE] : C:\Windows\system32\DRIVERS\iaStor.sys -> HOOKED (Unknown @ 0x8744D1F8)
[Address] IRP[IRP_MJ_DEVICE_CONTROL] : C:\Windows\system32\DRIVERS\iaStor.sys -> HOOKED (Unknown @ 0x8744D1F8)
[Address] IRP[IRP_MJ_INTERNAL_DEVICE_CONTROL] : C:\Windows\system32\DRIVERS\iaStor.sys -> HOOKED (Unknown @ 0x8744D1F8)
[Address] IRP[IRP_MJ_POWER] : C:\Windows\system32\DRIVERS\iaStor.sys -> HOOKED (Unknown @ 0x8744D1F8)
[Address] IRP[IRP_MJ_SYSTEM_CONTROL] : C:\Windows\system32\DRIVERS\iaStor.sys -> HOOKED (Unknown @ 0x8744D1F8)
[Address] IRP[IRP_MJ_PNP] : C:\Windows\system32\DRIVERS\iaStor.sys -> HOOKED (Unknown @ 0x8744D1F8)
¤¤¤ Externí včelstvo: ¤¤¤
¤¤¤ Nákaza : ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts
127.0.0.1 localhost
¤¤¤ Kontrola MBR: ¤¤¤
+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) Hitachi HTS542516K9SA00 +++++
--- User ---
[MBR] bf6ec93a07aa97909ba22c5dce4e07a6
[BSP] 68a9a69bc00139773c4fa2984750dba9 : Windows Vista/7/8 MBR Code
Partition table:
0 - [XXXXXX] FAT32-LBA (0x1c) [HIDDEN!] Offset (sectors): 63 | Size: 10001 MB
1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 20482875 | Size: 76308 MB
2 - [XXXXXX] EXTEN-LBA (0x0f) [VISIBLE] Offset (sectors): 176763195 | Size: 66315 MB
User = LL1 ... OK!
User = LL2 ... OK!
Dokončeno : << RKreport[0]_S_05242014_134707.txt >>
- Orcus
- člen Security týmu
-
Elite Level 10.5
- Příspěvky: 10645
- Registrován: duben 10
- Bydliště: Okolo rostou 3 růže =o)
- Pohlaví:
- Stav:
Offline
Re: Prosim o kontrolu logu
Spusť RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Počkej, dokud status okno zobrazuje "Prohledat "
- Klikni na "Smazat"
- Počkej, dokud Status box zobrazuje "Smazání- Finished "
- Klikni na "Zprávy " a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [číslo]. txt na ploše.
- Zavři RogueKiller
====================================================
Stáhni si TDSSKiller
Na svojí plochu. Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller.2.2.7.1._(datum)_log.txt , vlož sem prosím celý obsah logu.
Pokud se log nevejde do jedné zprávy, rozděl jej na více částí.
- Počkej, až Prescan dokončí práci...
- Počkej, dokud status okno zobrazuje "Prohledat "
- Klikni na "Smazat"
- Počkej, dokud Status box zobrazuje "Smazání- Finished "
- Klikni na "Zprávy " a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [číslo]. txt na ploše.
- Zavři RogueKiller
====================================================
Stáhni si TDSSKiller
Na svojí plochu. Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller.2.2.7.1._(datum)_log.txt , vlož sem prosím celý obsah logu.
Pokud se log nevejde do jedné zprávy, rozděl jej na více částí.
Láska hřeje, ale uhlí je uhlí.
Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.
Pár rad k bezpečnosti PC.
Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix
Pokud budete spokojeni , můžete podpořit naše fórum.

Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.
Pár rad k bezpečnosti PC.
Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix
Pokud budete spokojeni , můžete podpořit naše fórum.
Re: Prosim o kontrolu logu
RogueKiller V8.8.15 [Mar 27 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com
Operační systém : Windows Vista (6.0.6002 Service Pack 2) 32 bits version
Spuštěno v : Normální režim
Uživatel : vercik [Práva správce]
Mód : Odebrat -- Datum : 05/24/2014 17:11:09
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 0 ¤¤¤
¤¤¤ ¤¤¤ Záznamy Registrů: : 9 ¤¤¤
[RUN][SUSP PATH] HKLM\[...]\Run : Skytel (Skytel.exe [7]) -> VYMAZÁNO
[RUN][SUSP PATH] HKLM\[...]\RunOnce : Malwarebytes Anti-Malware (cleanup) ("C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\mbamdor.exe" "C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware" [7]) -> VYMAZÁNO
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> VYMAZÁNO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> VYMAZÁNO
[HJ POL][PUM] HKLM\[...]\System : DisableRegistryTools (0) -> VYMAZÁNO
[HJ DESK][PUM] HKCU\[...]\ClassicStartMenu : {645FF040-5081-101B-9F08-00AA002F954E} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKCU\[...]\NewStartPanel : {645FF040-5081-101B-9F08-00AA002F954E} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)
¤¤¤ naplánované úlohy : 0 ¤¤¤
¤¤¤ spuštění položky : 0 ¤¤¤
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Browser Addons : 0 ¤¤¤
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤
¤¤¤ Externí včelstvo: ¤¤¤
¤¤¤ Nákaza : ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts
127.0.0.1 localhost
¤¤¤ Kontrola MBR: ¤¤¤
+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) Hitachi HTS542516K9SA00 +++++
--- User ---
[MBR] bf6ec93a07aa97909ba22c5dce4e07a6
[BSP] 68a9a69bc00139773c4fa2984750dba9 : Windows Vista/7/8 MBR Code
Partition table:
0 - [XXXXXX] FAT32-LBA (0x1c) [HIDDEN!] Offset (sectors): 63 | Size: 10001 MB
1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 20482875 | Size: 76308 MB
2 - [XXXXXX] EXTEN-LBA (0x0f) [VISIBLE] Offset (sectors): 176763195 | Size: 66315 MB
User = LL1 ... OK!
User = LL2 ... OK!
Dokončeno : << RKreport[0]_D_05242014_171109.txt >>
RKreport[0]_S_05242014_134707.txt;RKreport[0]_S_05242014_170911.txt
mail : http://www.adlice.com/contact/
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com
Operační systém : Windows Vista (6.0.6002 Service Pack 2) 32 bits version
Spuštěno v : Normální režim
Uživatel : vercik [Práva správce]
Mód : Odebrat -- Datum : 05/24/2014 17:11:09
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 0 ¤¤¤
¤¤¤ ¤¤¤ Záznamy Registrů: : 9 ¤¤¤
[RUN][SUSP PATH] HKLM\[...]\Run : Skytel (Skytel.exe [7]) -> VYMAZÁNO
[RUN][SUSP PATH] HKLM\[...]\RunOnce : Malwarebytes Anti-Malware (cleanup) ("C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\mbamdor.exe" "C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware" [7]) -> VYMAZÁNO
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> VYMAZÁNO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> VYMAZÁNO
[HJ POL][PUM] HKLM\[...]\System : DisableRegistryTools (0) -> VYMAZÁNO
[HJ DESK][PUM] HKCU\[...]\ClassicStartMenu : {645FF040-5081-101B-9F08-00AA002F954E} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKCU\[...]\NewStartPanel : {645FF040-5081-101B-9F08-00AA002F954E} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)
¤¤¤ naplánované úlohy : 0 ¤¤¤
¤¤¤ spuštění položky : 0 ¤¤¤
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Browser Addons : 0 ¤¤¤
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤
¤¤¤ Externí včelstvo: ¤¤¤
¤¤¤ Nákaza : ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts
127.0.0.1 localhost
¤¤¤ Kontrola MBR: ¤¤¤
+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) Hitachi HTS542516K9SA00 +++++
--- User ---
[MBR] bf6ec93a07aa97909ba22c5dce4e07a6
[BSP] 68a9a69bc00139773c4fa2984750dba9 : Windows Vista/7/8 MBR Code
Partition table:
0 - [XXXXXX] FAT32-LBA (0x1c) [HIDDEN!] Offset (sectors): 63 | Size: 10001 MB
1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 20482875 | Size: 76308 MB
2 - [XXXXXX] EXTEN-LBA (0x0f) [VISIBLE] Offset (sectors): 176763195 | Size: 66315 MB
User = LL1 ... OK!
User = LL2 ... OK!
Dokončeno : << RKreport[0]_D_05242014_171109.txt >>
RKreport[0]_S_05242014_134707.txt;RKreport[0]_S_05242014_170911.txt
Re: Prosim o kontrolu logu
17:14:28.0298 0x0d6c TDSS rootkit removing tool 3.0.0.35 May 23 2014 07:32:03
17:14:34.0647 0x0d6c ============================================================
17:14:34.0647 0x0d6c Current date / time: 2014/05/24 17:14:34.0647
17:14:34.0647 0x0d6c SystemInfo:
17:14:34.0663 0x0d6c
17:14:34.0663 0x0d6c OS Version: 6.0.6002 ServicePack: 2.0
17:14:34.0663 0x0d6c Product type: Workstation
17:14:34.0663 0x0d6c ComputerName: VERCIK-ASUS
17:14:34.0663 0x0d6c UserName: vercik
17:14:34.0663 0x0d6c Windows directory: C:\Windows
17:14:34.0663 0x0d6c System windows directory: C:\Windows
17:14:34.0663 0x0d6c Processor architecture: Intel x86
17:14:34.0663 0x0d6c Number of processors: 2
17:14:34.0663 0x0d6c Page size: 0x1000
17:14:34.0663 0x0d6c Boot type: Normal boot
17:14:34.0663 0x0d6c ============================================================
17:14:34.0897 0x0d6c KLMD registered as C:\Windows\system32\drivers\35877632.sys
17:14:35.0224 0x0d6c System UUID: {5571F8E7-690F-227F-A97D-84B9845F915D}
17:14:36.0020 0x0d6c Drive \Device\Harddisk0\DR0 - Size: 0x25433D6000 (149.05 Gb), SectorSize: 0x200, Cylinders: 0x4C01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
17:14:36.0020 0x0d6c ============================================================
17:14:36.0020 0x0d6c \Device\Harddisk0\DR0:
17:14:36.0020 0x0d6c MBR partitions:
17:14:36.0020 0x0d6c \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x1388B3B, BlocksNum 0x950A600
17:14:36.0036 0x0d6c \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0xA89317A, BlocksNum 0x8185947
17:14:36.0036 0x0d6c ============================================================
17:14:36.0082 0x0d6c C: <-> \Device\Harddisk0\DR0\Partition1
17:14:36.0114 0x0d6c D: <-> \Device\Harddisk0\DR0\Partition2
17:14:36.0114 0x0d6c ============================================================
17:14:36.0114 0x0d6c Initialize success
17:14:36.0114 0x0d6c ============================================================
17:14:39.0920 0x02dc ============================================================
17:14:39.0920 0x02dc Scan started
17:14:39.0920 0x02dc Mode: Manual;
17:14:39.0920 0x02dc ============================================================
17:14:39.0920 0x02dc KSN ping started
17:14:44.0272 0x02dc KSN ping finished: true
17:14:44.0553 0x02dc ================ Scan system memory ========================
17:14:44.0553 0x02dc System memory - ok
17:14:44.0553 0x02dc ================ Scan services =============================
17:14:44.0647 0x02dc [ 51F207D5A9E7B2E76BEE59C05CCC23C4, BE78957DD197777D899FAFBBE71E2FDB5DB9AC6AC4F1595A562FD362429BED6B ] !SASCORE C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
17:14:44.0647 0x02dc !SASCORE - ok
17:14:44.0881 0x02dc [ 82B296AE1892FE3DBEE00C9CF92F8AC7, 54B22BA63E1DA616B546992141B0C3117BA057283B8F60CB9BECE203661FEBF3 ] ACPI C:\Windows\system32\drivers\acpi.sys
17:14:44.0881 0x02dc ACPI - ok
17:14:44.0974 0x02dc [ 3927397AC60D943DAF8808AFFED582B7, 2688254085C219E8CA9C5494ABDAD8FAE52533CEF7FA3C152715E0B78D591BCF ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
17:14:44.0974 0x02dc AdobeARMservice - ok
17:14:45.0052 0x02dc [ 09E7C37DF4A911C8A9AA8BF88ACD10AA, E881E0BBDCED58F28E0BA8DC27372EDFFFF2C57EE31CD13A032FDC9F7C831B5A ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
17:14:45.0052 0x02dc AdobeFlashPlayerUpdateSvc - ok
17:14:45.0130 0x02dc [ 04F0FCAC69C7C71A3AC4EB97FAFC8303, FBBDD38574A1F66A5AA12B82E34FDE60B870180C4B7100C15757539DC869ED4B ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
17:14:45.0130 0x02dc adp94xx - ok
17:14:45.0177 0x02dc [ 60505E0041F7751BDBB80F88BF45C2CE, 1DE16042B8ABD7B643189E836DE273832EE743FD66AFBB641E8049C4E0CD04D8 ] adpahci C:\Windows\system32\drivers\adpahci.sys
17:14:45.0193 0x02dc adpahci - ok
17:14:45.0224 0x02dc [ 8A42779B02AEC986EAB64ECFC98F8BD7, B89938EFF4E81FA44197D2D839EBD3340DDE01FBC79605049C088621784C1B91 ] adpu160m C:\Windows\system32\drivers\adpu160m.sys
17:14:45.0224 0x02dc adpu160m - ok
17:14:45.0255 0x02dc [ 241C9E37F8CE45EF51C3DE27515CA4E5, 1A03E93DD8C1F3640C96124A14A3D0F4E349B06CCA2118CE40B8AE201A4030A7 ] adpu320 C:\Windows\system32\drivers\adpu320.sys
17:14:45.0271 0x02dc adpu320 - ok
17:14:45.0349 0x02dc [ 609A6F49B6AF0F25837F8A0EDDDB0745, C10C6A3A99636FD4688555B9A74397C3D45165A8A30D7B37089876548F02ECDF ] ADSMService C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe
17:14:45.0349 0x02dc ADSMService - ok
17:14:45.0380 0x02dc [ 9D1FDA9E086BA64E3C93C9DE32461BCF, 200FD0BFC811EC8993AF9FC78F58823ECC717063F438B627FBCDD6BD7790CAA8 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
17:14:45.0380 0x02dc AeLookupSvc - ok
17:14:45.0427 0x02dc [ 3911B972B55FEA0478476B2E777B29FA, 62545B90C7DD3F73777E62CD8264E611A4D71B6956CABFD2D820D25F41F471FD ] AFD C:\Windows\system32\drivers\afd.sys
17:14:45.0442 0x02dc AFD - ok
17:14:45.0489 0x02dc [ 13F9E33747E6B41A3FF305C37DB0D360, 066DD6060B1CF93F85BBAAA52848C801128CD294E8B7EACD912E0EF219DBFBC2 ] agp440 C:\Windows\system32\drivers\agp440.sys
17:14:45.0489 0x02dc agp440 - ok
17:14:45.0536 0x02dc [ AE1FDF7BF7BB6C6A70F67699D880592A, B831BF156FC49287A19FC149383D437B1034EA6F42CE9D761EB90ABD0F8D96B1 ] aic78xx C:\Windows\system32\drivers\djsvs.sys
17:14:45.0536 0x02dc aic78xx - ok
17:14:45.0583 0x02dc [ A1545B731579895D8CC44FC0481C1192, 6B0EE833BA39C142D625A03586CCD8F6C9C3136C603CE5DF5BAC1AA3423E3E7F ] ALG C:\Windows\System32\alg.exe
17:14:45.0583 0x02dc ALG - ok
17:14:45.0614 0x02dc [ 9EAEF5FC9B8E351AFA7E78A6FAE91F91, 0EADB6AE21FEDAB55D41F41B638198B556CC2BE2EE57F6C8B40EB044A318319F ] aliide C:\Windows\system32\drivers\aliide.sys
17:14:45.0614 0x02dc aliide - ok
17:14:45.0645 0x02dc [ C47344BC706E5F0B9DCE369516661578, 689C9CDAF6F38227F1C34359CAEB3C7798F318EDFD4B7FE532FBE3C8E4EE3DC8 ] amdagp C:\Windows\system32\drivers\amdagp.sys
17:14:45.0645 0x02dc amdagp - ok
17:14:45.0676 0x02dc [ 9B78A39A4C173FDBC1321E0DD659B34C, 2CA66EB68AD7A317D91C13B8CFD4E8CA985926A610D19595B613F5553B145C7B ] amdide C:\Windows\system32\drivers\amdide.sys
17:14:45.0692 0x02dc amdide - ok
17:14:45.0723 0x02dc [ 18F29B49AD23ECEE3D2A826C725C8D48, 0FA08882301D218E367E63E1966B6406220EE94BAE7E7DAD6E55EB70BF6FED7F ] AmdK7 C:\Windows\system32\drivers\amdk7.sys
17:14:45.0723 0x02dc AmdK7 - ok
17:14:45.0754 0x02dc [ 93AE7F7DD54AB986A6F1A1B37BE7442D, ECE0ABA2DECEED94AC678240A4B604F04022F0740F2295CBD07D25F5917E878A ] AmdK8 C:\Windows\system32\drivers\amdk8.sys
17:14:45.0754 0x02dc AmdK8 - ok
17:14:45.0801 0x02dc [ C6D704C7F0434DC791AAC37CAC4B6E14, 35CF7D1895F97637E0C678A39F3049B871BCA9526D379C7793ED33B87D2EAC4C ] Appinfo C:\Windows\System32\appinfo.dll
17:14:45.0801 0x02dc Appinfo - ok
17:14:45.0864 0x02dc [ 5D2888182FB46632511ACEE92FDAD522, 2E53231ACAF9B2FB7993DBC1CD15C06D7B0CCE0D08DAFF7B0CC13A2040028A75 ] arc C:\Windows\system32\drivers\arc.sys
17:14:45.0879 0x02dc arc - ok
17:14:45.0926 0x02dc [ 5E2A321BD7C8B3624E41FDEC3E244945, 9D47FF6C823868F2267FEFAB5851D3CD2BC3F619A2D6EFF803EA22DB0509C450 ] arcsas C:\Windows\system32\drivers\arcsas.sys
17:14:45.0926 0x02dc arcsas - ok
17:14:45.0957 0x02dc [ 4385E371C25C94C804E9D3152BD9E1F7, 285CD1D03E73461348DDDF68755A81E23458C3150CFBE5911CC63A956FAC0EAD ] AsDsm C:\Windows\system32\drivers\AsDsm.sys
17:14:45.0957 0x02dc AsDsm - ok
17:14:46.0004 0x02dc [ 5A055A4777CBBC8845DD598CB2EEBF69, AF58FF2D58DA807869531A645ED4AD078FC411554EE18366949D27FF0C28829D ] ASLDRService C:\Program Files\ATK Hotkey\ASLDRSrv.exe
17:14:46.0004 0x02dc ASLDRService - ok
17:14:46.0020 0x02dc [ 7B4D08D2017AC06689D422E06C43F0AA, 42BACCEA0FCEB60B79F78098163147A8DD1DED24CB2F0DBB93EDC07DAB66135C ] ASMMAP C:\Program Files\ATKGFNEX\ASMMAP.sys
17:14:46.0020 0x02dc ASMMAP - ok
17:14:46.0113 0x02dc [ 9D768C43FEF254DD50B1DBF8AD5C4C0B, A50854EA5C08605133B8BB4DFDC6090357C5665314AA72E0BFA1E07D4E451F09 ] aspnet_state C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
17:14:46.0160 0x02dc aspnet_state - ok
17:14:46.0191 0x02dc [ 53B202ABEE6455406254444303E87BE1, 4C91CA8DD345FEDD74A6AF2C07580717703F979B7DE2532B1D00B9F6896DDE70 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
17:14:46.0191 0x02dc AsyncMac - ok
17:14:46.0222 0x02dc [ 1F05B78AB91C9075565A9D8A4B880BC4, 737BE9F9376DAB0CCDFED93EA6D67F0C432367EA63CD772A453485BE769AF3BD ] atapi C:\Windows\system32\drivers\atapi.sys
17:14:46.0222 0x02dc atapi - ok
17:14:46.0332 0x02dc [ 44362605F5FFF00C9B7696B47680A8C5, E972D0C046760B04CEDF2DBAC03128866691DC299FB96CA87A124278613EFBEA ] athr C:\Windows\system32\DRIVERS\athr.sys
17:14:46.0347 0x02dc athr - ok
17:14:46.0378 0x02dc [ 7C157574A181B19B9DCF5F339E25337E, 7CA78363CD420BFE4BFE9A38683CA9E31023AC573D9092666CDAEE6AF4998B60 ] ATKGFNEXSrv C:\Program Files\ATKGFNEX\GFNEXSrv.exe
17:14:46.0394 0x02dc ATKGFNEXSrv - ok
17:14:46.0425 0x02dc [ 68E2A1A0407A66CF50DA0300852424AB, 5FFDAE4E477C90A855081B5120582810471F67D3E9C343779A7AFB8D684D16F8 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
17:14:46.0441 0x02dc AudioEndpointBuilder - ok
17:14:46.0456 0x02dc [ 68E2A1A0407A66CF50DA0300852424AB, 5FFDAE4E477C90A855081B5120582810471F67D3E9C343779A7AFB8D684D16F8 ] Audiosrv C:\Windows\System32\Audiosrv.dll
17:14:46.0472 0x02dc Audiosrv - ok
17:14:46.0519 0x02dc [ 4A00A998F421769A47A858FC1C8AE87A, 9FB642CA8C7094B8BFDEB2D806909D7B62E7F1CD0B29B6CDC928A6F046E240C2 ] avgtp C:\Windows\system32\drivers\avgtpx86.sys
17:14:46.0519 0x02dc avgtp - ok
17:14:46.0566 0x02dc [ 59629EDD214C35A01E2527AC3B8A7FB3, E71716CC1FF1574A2D854FA62350C73ECDAE21D3B827E18835D37F8B5857B4E3 ] Axtmvflt C:\Windows\system32\DRIVERS\Axtmvflt.sys
17:14:46.0566 0x02dc Axtmvflt - ok
17:14:46.0597 0x02dc [ 37E23B1756ECA768656097F72C0B458D, 1E2D517C932B60869B470FD00623B8ED15B62A20DC27DF54D167B643819227ED ] Axtmvmdm C:\Windows\system32\DRIVERS\Axtmvmdm.sys
17:14:46.0597 0x02dc Axtmvmdm - ok
17:14:46.0628 0x02dc [ 2C7170BE24EACC0B432EB1832FEE0DDC, B9555982073E836FAB68626435A382F55B74C60928D57AB35B17BFC202325EE8 ] Axtmvprt C:\Windows\system32\Drivers\Axtmvprt.sys
17:14:46.0628 0x02dc Axtmvprt - ok
17:14:46.0675 0x02dc [ 67E506B75BD5326A3EC7B70BD014DFB6, 3B07243970CAB4E93A858BEA6E31F56AD0157C42D624F3FEB469E68EEEF65669 ] Beep C:\Windows\system32\drivers\Beep.sys
17:14:46.0675 0x02dc Beep - ok
17:14:46.0722 0x02dc [ C789AF0F724FDA5852FB9A7D3A432381, 4B0F7A3A8F2D45E49630D24F2630B8014BCDB793B9C6E83FD2B2863A54F62BF5 ] BFE C:\Windows\System32\bfe.dll
17:14:46.0737 0x02dc BFE - ok
17:14:46.0815 0x02dc [ 93952506C6D67330367F7E7934B6A02F, 1D9A6B10B9489C1A32F730E22CC399BFF0796E3FCB3BA52BE45ED487CAC59EBD ] BITS C:\Windows\System32\qmgr.dll
17:14:46.0909 0x02dc BITS - ok
17:14:46.0956 0x02dc [ D4DF28447741FD3D953526E33A617397, E7239BA432090F8AC7DF453DB876507CD4419ECA964D289408A1B2B353618693 ] blbdrive C:\Windows\system32\drivers\blbdrive.sys
17:14:46.0956 0x02dc blbdrive - ok
17:14:46.0987 0x02dc [ 35F376253F687BDE63976CCB3F2108CA, C5EF6301D7BC067050038DB75D961681D1CBE418285AD60167C1334B0B54DFE9 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
17:14:46.0987 0x02dc bowser - ok
17:14:47.0034 0x02dc [ 9F9ACC7F7CCDE8A15C282D3F88B43309, A9131334BD9CF8FD60BA9D54AA054E2DF2BE1219FB650DF1464F2787BDEAE98F ] BrFiltLo C:\Windows\system32\drivers\brfiltlo.sys
17:14:47.0034 0x02dc BrFiltLo - ok
17:14:47.0065 0x02dc [ 56801AD62213A41F6497F96DEE83755A, 0DEB8318FB47DF6473C171C795C735E26A73FA12232876C6856549EA16F33361 ] BrFiltUp C:\Windows\system32\drivers\brfiltup.sys
17:14:47.0065 0x02dc BrFiltUp - ok
17:14:47.0112 0x02dc [ A3629A0C4226F9E9C72FAAEEBC3AD33C, FB4D2738B64AADA52B95A6CF7ED4CDBFE4DD4BEBCAF1AE9CE64317F97DB38DDF ] Browser C:\Windows\System32\browser.dll
17:14:47.0127 0x02dc Browser - ok
17:14:47.0158 0x02dc [ B304E75CFF293029EDDF094246747113, CB6B219B186C3511A0DE3CDE7F7B8966A9E32D808A952CA8C5B42B3A3A17BFB0 ] Brserid C:\Windows\system32\drivers\brserid.sys
17:14:47.0158 0x02dc Brserid - ok
17:14:47.0190 0x02dc [ 203F0B1E73ADADBBB7B7B1FABD901F6B, 782FA7B26940FE479C49C9BAA2EB582CDAAAD607013E9BCFC85E6FBBB7D49A6D ] BrSerWdm C:\Windows\system32\drivers\brserwdm.sys
17:14:47.0205 0x02dc BrSerWdm - ok
17:14:47.0236 0x02dc [ BD456606156BA17E60A04E18016AE54B, DFBDC9DA6A3EA40BACFF204BC6C55C2C122B5885D2CBF6D45054DE43EE15EC4D ] BrUsbMdm C:\Windows\system32\drivers\brusbmdm.sys
17:14:47.0236 0x02dc BrUsbMdm - ok
17:14:47.0268 0x02dc [ AF72ED54503F717A43268B3CC5FAEC2E, 4A638669B0C30B1BDED242A8BF2015A37749570FF4D67D190BACC8D7E0C44468 ] BrUsbSer C:\Windows\system32\drivers\brusbser.sys
17:14:47.0268 0x02dc BrUsbSer - ok
17:14:47.0299 0x02dc [ AD07C1EC6665B8B35741AB91200C6B68, DCE1305A30D6713222A01C1F1D03ED0ADABE23C742CE1E82BB142531B82A3FF7 ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
17:14:47.0299 0x02dc BTHMODEM - ok
17:14:47.0330 0x02dc [ 7ADD03E75BEB9E6DD102C3081D29840A, 0CA14A77CE990B5AA32C0725C22CA190ECBC73B75064DD959CABAD79B8846F1D ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
17:14:47.0330 0x02dc cdfs - ok
17:14:47.0392 0x02dc [ 6B4BFFB9BECD728097024276430DB314, 4451EFEAD37B05C8A3CB610B6D72E73B55D3D1E1CC1B17405598C1EDAA93C2D5 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
17:14:47.0392 0x02dc cdrom - ok
17:14:47.0439 0x02dc [ 312EC3E37A0A1F2006534913E37B4423, 81B8F462336791D162DAFA8092C1F437638DA3022CA24A2458B9FE183FC18C5D ] CertPropSvc C:\Windows\System32\certprop.dll
17:14:47.0439 0x02dc CertPropSvc - ok
17:14:47.0486 0x02dc [ E5D4133F37219DBCFE102BC61072589D, 74C7F8C53D9C71CE3C8B33BC0331948571318402B0A8E1AC4552360504092A46 ] circlass C:\Windows\system32\drivers\circlass.sys
17:14:47.0486 0x02dc circlass - ok
17:14:47.0533 0x02dc [ D7659D3B5B92C31E84E53C1431F35132, 6BFE644AD9890A8CEEDCC4B97ADD564AD57202FBC5D21599469E0C4B31BB27C6 ] CLFS C:\Windows\system32\CLFS.sys
17:14:47.0548 0x02dc CLFS - ok
17:14:47.0595 0x02dc [ 8EE772032E2FE80A924F3B8DD5082194, B743DF91563A22CC15D9B44105804B5866A29D3DFC156DBE88DFAFEF903B94C0 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
17:14:48.0094 0x02dc clr_optimization_v2.0.50727_32 - ok
17:14:48.0141 0x02dc [ E87213F37A13E2B54391E40934F071D0, 7EB221127EFB5BF158FB03D18EFDA2C55FB6CE3D1A1FE69C01D70DBED02C87E5 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
17:14:48.0266 0x02dc clr_optimization_v4.0.30319_32 - ok
17:14:48.0313 0x02dc [ 99AFC3795B58CC478FBBBCDC658FCB56, 0D1B27C42A058C5D56A0157B5ECA9A054254F6B9C8015D0321021A7EFCE10CE2 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
17:14:48.0313 0x02dc CmBatt - ok
17:14:48.0328 0x02dc [ 0CA25E686A4928484E9FDABD168AB629, C2CB2333CAB40CDF93219870E66700F957188C86A1B1A004BC4652953091E5C5 ] cmdide C:\Windows\system32\drivers\cmdide.sys
17:14:48.0328 0x02dc cmdide - ok
17:14:48.0360 0x02dc [ 6AFEF0B60FA25DE07C0968983EE4F60A, E4037EF9EDE57A1039AB814EBCE9A8B12C9A084E7FAC6296212ACF2394DD37B6 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
17:14:48.0360 0x02dc Compbatt - ok
17:14:48.0360 0x02dc COMSysApp - ok
17:14:48.0375 0x02dc [ 741E9DFF4F42D2D8477D0FC1DC0DF871, 06EA43D771E3455F943AB624CC00C2259FE5E561164908630755E933EF44A522 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
17:14:48.0375 0x02dc crcdisk - ok
17:14:48.0406 0x02dc [ 1F07BECDCA750766A96CDA811BA86410, F4E36F0003184BCB36D59B23AC903421AD8C0A1FD2D6315E06375235ABC9A0AD ] Crusoe C:\Windows\system32\drivers\crusoe.sys
17:14:48.0406 0x02dc Crusoe - ok
17:14:48.0469 0x02dc [ 684C130BBC6DB681BAD4920A4C944AA5, DDE434B206984808351C98500824A33E6740B4326C455066027F8D549D4C3B92 ] CryptSvc C:\Windows\system32\cryptsvc.dll
17:14:48.0469 0x02dc CryptSvc - ok
17:14:48.0531 0x02dc [ 3B5B4D53FEC14F7476CA29A20CC31AC9, EC02A412DA5FDE2C759A4A2C5904579E1CE7C4999CE87145812F354FC8F5E183 ] DcomLaunch C:\Windows\system32\rpcss.dll
17:14:48.0625 0x02dc DcomLaunch - ok
17:14:48.0640 0x02dc [ 622C41A07CA7E6DD91770F50D532CB6C, 2A9040949CB45F9970FDE930278F30D2F08E957290CB3D4DC4F2CA94F3D444D2 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
17:14:48.0656 0x02dc DfsC - ok
17:14:48.0781 0x02dc [ 2CC3DCFB533A1035B13DCAB6160AB38B, C88C91F662ADE248EEE3B568E70C2BC2D5075B7D9B7D3C63E83D011C5F7812B0 ] DFSR C:\Windows\system32\DFSR.exe
17:14:48.0874 0x02dc DFSR - ok
17:14:48.0937 0x02dc [ 9028559C132146FB75EB7ACF384B086A, 35159D86706441ED94895B4629411B4445FCB4526AFD1F7036EE647931B7A94D ] Dhcp C:\Windows\System32\dhcpcsvc.dll
17:14:48.0952 0x02dc Dhcp - ok
17:14:48.0984 0x02dc [ 5D4AEFC3386920236A548271F8F1AF6A, 11B74D6800EC6F7AAEFB0B6A9F2E8376C7C3B8DB677F03AC3743CB004CA96B08 ] disk C:\Windows\system32\drivers\disk.sys
17:14:48.0999 0x02dc disk - ok
17:14:49.0046 0x02dc [ 57D762F6F5974AF0DA2BE88A3349BAAA, D9E7DC8F9FB7837F88BBB95B52147AA80E688FB9762EEA99B8046D9C6AD48F3C ] Dnscache C:\Windows\System32\dnsrslvr.dll
17:14:49.0062 0x02dc Dnscache - ok
17:14:49.0108 0x02dc [ 324FD74686B1EF5E7C19A8AF49E748F6, DC6EB4304555B60DD17E04D20DFE4E279718E4041A9310DE29E678834BB22C5B ] dot3svc C:\Windows\System32\dot3svc.dll
17:14:49.0140 0x02dc dot3svc - ok
17:14:49.0171 0x02dc [ A622E888F8AA2F6B49E9BC466F0E5DEF, 3DED7F22A29AD2F8C927DFA0FD87FDE5ED0BDCAC7260BD9F71D8EA34328C772A ] DPS C:\Windows\system32\dps.dll
17:14:49.0202 0x02dc DPS - ok
17:14:49.0233 0x02dc [ 97FEF831AB90BEE128C9AF390E243F80, A7F4118603E2D5DDDB117EF7C058684EA5B37690EFAB2BEBA570EEF9C36281BE ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
17:14:49.0233 0x02dc drmkaud - ok
17:14:49.0296 0x02dc [ 988670D8343EF9835FB3659DB71B2EFA, 5F5370FDD08C4BFF0828341952E98E95F722CB779EEC08C9DD6212C4DF3CD33B ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
17:14:49.0311 0x02dc DXGKrnl - ok
17:14:49.0358 0x02dc [ 5425F74AC0C1DBD96A1E04F17D63F94C, AD133CEDCDEA75420C75A91BB4CF7152475D46ED7B7703E3BAE5F9946D610292 ] E1G60 C:\Windows\system32\DRIVERS\E1G60I32.sys
17:14:49.0374 0x02dc E1G60 - ok
17:14:49.0420 0x02dc [ C0B95E40D85CD807D614E264248A45B9, 30421DAF1722A225222268CB8BA4FE60CB76C6FD0C9157B0F53FC1368F806A4E ] EapHost C:\Windows\System32\eapsvc.dll
17:14:49.0436 0x02dc EapHost - ok
17:14:49.0483 0x02dc [ 7F64EA048DCFAC7ACF8B4D7B4E6FE371, F3E9CF5D8E9124CB06F08454C5F0E510DE19A92780151FB2F8A58A0905D59B8F ] Ecache C:\Windows\system32\drivers\ecache.sys
17:14:49.0483 0x02dc Ecache - ok
17:14:49.0545 0x02dc [ 23B62471681A124889978F6295B3F4C6, A90C521F06125B86A26EA625B0E7F811AF7D328E1313165E7AD4A83596A23819 ] elxstor C:\Windows\system32\drivers\elxstor.sys
17:14:49.0545 0x02dc elxstor - ok
17:14:49.0623 0x02dc [ 4E6B23DFC917EA39306B529B773950F4, C4BA77632B4BD46C4C1797F7F57399DB506D3EB6E5A0A36C269A793DAA3445C2 ] EMDMgmt C:\Windows\system32\emdmgmt.dll
17:14:49.0654 0x02dc EMDMgmt - ok
17:14:49.0701 0x02dc [ 3DB974F3935483555D7148663F726C61, C288CFC04213B0340ABEC752C0A7B308B29122B5F51E68387BA1D9E9D7166FDD ] ErrDev C:\Windows\system32\drivers\errdev.sys
17:14:49.0701 0x02dc ErrDev - ok
17:14:49.0748 0x02dc [ 67058C46504BC12D821F38CF99B7B28F, E8D19F305F78BCA1DA8425315F2C77A377CD51E3CC54323DC2FF355120EA097D ] EventSystem C:\Windows\system32\es.dll
17:14:49.0779 0x02dc EventSystem - ok
17:14:49.0857 0x02dc [ 57C171EA22F0A7F068FCB0CAEDD1E8E7, 9AAF39AA22372FB8582C1422581C08E61444BF843E1CE2E199EB00FBEA6F9C06 ] ew_hwusbdev C:\Windows\system32\DRIVERS\ew_hwusbdev.sys
17:14:49.0873 0x02dc ew_hwusbdev - ok
17:14:49.0904 0x02dc [ 61A973F60E94A551BA7B15F3460444FB, FC2FB69978D99D75673AFE9F08176F3139DCBAEDE4D339BD09DA29CD3EC01005 ] ew_usbenumfilter C:\Windows\system32\DRIVERS\ew_usbenumfilter.sys
17:14:49.0904 0x02dc ew_usbenumfilter - ok
17:14:49.0966 0x02dc [ 22B408651F9123527BCEE54B4F6C5CAE, 31AF9649333A9496A9224001266D1B68CE2A31B9FB182A755D127FC5492AA6B2 ] exfat C:\Windows\system32\drivers\exfat.sys
17:14:49.0966 0x02dc exfat - ok
17:14:49.0998 0x02dc [ 1E9B9A70D332103C52995E957DC09EF8, 7E709D545D4025A2E9F3489CF2A231040904CB53E3E4EEAC15A22468FAB2A5B3 ] fastfat C:\Windows\system32\drivers\fastfat.sys
17:14:50.0013 0x02dc fastfat - ok
17:14:50.0044 0x02dc [ AFE1E8B9782A0DD7FB46BBD88E43F89A, B4CBE1DC3430F2F3485F49007C71293D5B86E9C405741EA00A67B00A38BE1F8D ] fdc C:\Windows\system32\DRIVERS\fdc.sys
17:14:50.0060 0x02dc fdc - ok
17:14:50.0091 0x02dc [ 6629B5F0E98151F4AFDD87567EA32BA3, 8CC02D5E0639CDF74B2F85DB56D6199E1858F1A58465ED1D8B25C968E986132C ] fdPHost C:\Windows\system32\fdPHost.dll
17:14:50.0107 0x02dc fdPHost - ok
17:14:50.0122 0x02dc [ 89ED56DCE8E47AF40892778A5BD31FD2, 924360875796C3DDDDA8097FDF53F6846B227F7413766F00AEDD981EFD691BF9 ] FDResPub C:\Windows\system32\fdrespub.dll
17:14:50.0154 0x02dc FDResPub - ok
17:14:50.0169 0x02dc [ A8C0139A884861E3AAE9CFE73B208A9F, 3B021D148A2989AAA46AE58E5FED8A2DCA25E9212C2FA7F922880EF5A077E49B ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
17:14:50.0185 0x02dc FileInfo - ok
17:14:50.0200 0x02dc [ 0AE429A696AECBC5970E3CF2C62635AE, 1ECC315C099D17835788B68F0DE00EC98DC5AEE8F329D739E0DB90A898F22244 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
17:14:50.0200 0x02dc Filetrace - ok
17:14:50.0216 0x02dc [ 85B7CF99D532820495D68D747FDA9EBD, 682D35D219D1AFBE51CF0AB03F2D3E15C940F5AF291C1A611A19F4D279143F3C ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
17:14:50.0216 0x02dc flpydisk - ok
17:14:50.0247 0x02dc [ 01334F9EA68E6877C4EF05D3EA8ABB05, 82F8AA6AD2B5077898773D4A5814819EAF0E872FFD95894E06FEDAB6EE92CF99 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
17:14:50.0263 0x02dc FltMgr - ok
17:14:50.0356 0x02dc [ 2AFA3A46986AE935DAECEBC7E66314CF, 747FAF9B7F8291B83EE44B91E5708395E749DC87BD42CC3BF2CD41209C298F4D ] FontCache C:\Windows\system32\FntCache.dll
17:14:50.0403 0x02dc FontCache - ok
17:14:50.0481 0x02dc [ C7FBDD1ED42F82BFA35167A5C9803EA3, 372FF71070D5ECE17342466A690737A0622E93C98DBED8172C49B0854F0012B7 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
17:14:50.0512 0x02dc FontCache3.0.0.0 - ok
17:14:50.0544 0x02dc [ B972A66758577E0BFD1DE0F91AAA27B5, E934034F3F740A83D4E7ABCD2C581845AC2945B0BCCAACF65CC3F99A1DBDE455 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
17:14:50.0544 0x02dc Fs_Rec - ok
17:14:50.0575 0x02dc [ 34582A6E6573D54A07ECE5FE24A126B5, 5F45DC38F8015AD90616EAD3B57820CCD284938A96B2C4E1FF5FC7BDEE8A848D ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
17:14:50.0590 0x02dc gagp30kx - ok
17:14:50.0637 0x02dc [ 31B40F40E09513ADDC460F6A297AD474, C3A2A29E32F07BA6534380DE5A1EA7EFCB39B288B9541696DA65FA20DE20AFC4 ] ghaio C:\Program Files\ASUS\NB Probe\SPM\ghaio.sys
17:14:50.0653 0x02dc ghaio - ok
17:14:50.0700 0x02dc [ F0187E45268E86AAAA932CBD9087BEA8, 4AD7D42795ECF85F1DF87C56F06982AE33DA23647CFBACBFAF194F55A81D4538 ] GoogleDesktopManager-110309-193829 C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
17:14:50.0793 0x02dc GoogleDesktopManager-110309-193829 - ok
17:14:50.0871 0x02dc [ CD5D0AEEE35DFD4E986A5AA1500A6E66, DCED5126837292593F1C1B35DF18E3B631D6C0C6D0742B77C7B7742C55A7825F ] gpsvc C:\Windows\System32\gpsvc.dll
17:14:50.0918 0x02dc gpsvc - ok
17:14:50.0996 0x02dc [ F02A533F517EB38333CB12A9E8963773, 1F72CD1CF660766FA8F912E40B7323A0192A300B376186C10F6803DC5EFE28DF ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
17:14:50.0996 0x02dc gupdate - ok
17:14:51.0012 0x02dc [ F02A533F517EB38333CB12A9E8963773, 1F72CD1CF660766FA8F912E40B7323A0192A300B376186C10F6803DC5EFE28DF ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
17:14:51.0012 0x02dc gupdatem - ok
17:14:51.0058 0x02dc [ 5D4BC124FAAE6730AC002CDB67BF1A1C, 00294F4DC7D17F6DD2A22B9C3299BED40146BA45C972367154D20DB502472551 ] gusvc C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
17:14:51.0058 0x02dc gusvc - ok
17:14:51.0105 0x02dc [ CB04C744BE0A61B1D648FAED182C3B59, 61DC0FF94325DAFCCB7B3980A48727EFBF1283FCF753EC16EF04C730525994C0 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
17:14:51.0121 0x02dc HdAudAddService - ok
17:14:51.0183 0x02dc [ 062452B7FFD68C8C042A6261FE8DFF4A, DD9873502456D3C058C6177AC223B28C71370E624FA0814C17EA3D93201F2B56 ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
17:14:51.0199 0x02dc HDAudBus - ok
17:14:51.0214 0x02dc [ 1338520E78D90154ED6BE8F84DE5FCEB, 8531F1C5856983EBDA4C2B70162645ECE72FFFBA9FE7A28BCEDDF2169B7ECF9D ] HidBth C:\Windows\system32\drivers\hidbth.sys
17:14:51.0230 0x02dc HidBth - ok
17:14:51.0246 0x02dc [ FF3160C3A2445128C5A6D9B076DA519E, DC1A70C80CD55F33B3AD5A21E86AF7C3086D8CC2DC6148C058E74A871E0BAD4A ] HidIr C:\Windows\system32\drivers\hidir.sys
17:14:51.0246 0x02dc HidIr - ok
17:14:51.0292 0x02dc [ 84067081F3318162797385E11A8F0582, 11E32E3800CFCA37354388243F88D0239D622891BAC5483518A2BE5D1CA19015 ] hidserv C:\Windows\System32\hidserv.dll
17:14:51.0308 0x02dc hidserv - ok
17:14:51.0339 0x02dc [ CCA4B519B17E23A00B826C55716809CC, 91AD0758A6185B0FBBE383BDB1B457FFB850477AFF8DE040DE9527A97D28EF62 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
17:14:51.0339 0x02dc HidUsb - ok
17:14:51.0355 0x02dc [ D8AD255B37DA92434C26E4876DB7D418, C901EADDD93FC90C8F29F4B6DE808F8E4F486C877FC0AA27DA4ACDE17E28899D ] hkmsvc C:\Windows\system32\kmsvc.dll
17:14:51.0402 0x02dc hkmsvc - ok
17:14:51.0433 0x02dc [ 16EE7B23A009E00D835CDB79574A91A6, 964AFE7D2F7E48C7DE7FDAB48F57ADC4AD44A0B2A9A03071E0E8D334007E5572 ] HpCISSs C:\Windows\system32\drivers\hpcisss.sys
17:14:51.0448 0x02dc HpCISSs - ok
17:14:51.0480 0x02dc [ 0EEECA26C8D4BDE2A4664DB058A81937, 6F88567A116B1420BE1C9C8888F34D05F51378092C805EF4E489635CF92D416B ] HTTP C:\Windows\system32\drivers\HTTP.sys
17:14:51.0495 0x02dc HTTP - ok
17:14:51.0558 0x02dc [ B73B6816BE98F6CAE539EB458626C411, B706F31DDF2052B34A187EFF5820D2AD5180DE003FC0353A39E86FC0F1904F3C ] huawei_cdcacm C:\Windows\system32\DRIVERS\ew_jucdcacm.sys
17:14:51.0558 0x02dc huawei_cdcacm - ok
17:14:51.0589 0x02dc [ BAEE880B51DF1A39D38F363523CD7E17, A97E94431C86AF99F125BA6326DBAA972031E5F5094891EF028705218084A879 ] huawei_cdcecm C:\Windows\system32\DRIVERS\ew_jucdcecm.sys
17:14:51.0604 0x02dc huawei_cdcecm - ok
17:14:51.0636 0x02dc [ 12CA899F967E6B6F14E080705DF68932, 8C524F5AA0499A3BB0749D45B59F3F03A73004A9583396CA3470DF1C0F1E3281 ] huawei_enumerator C:\Windows\system32\DRIVERS\ew_jubusenum.sys
17:14:51.0651 0x02dc huawei_enumerator - ok
17:14:51.0667 0x02dc [ AB58FF5B1A2B23C751E29975081E8015, A3A58EA423A3BFBF5BCD8D87AA6939EC02D641C259C38D6DB728BD2EF52D5567 ] huawei_ext_ctrl C:\Windows\system32\DRIVERS\ew_juextctrl.sys
17:14:51.0667 0x02dc huawei_ext_ctrl - ok
17:14:51.0714 0x02dc [ C6B032D69650985468160FC9937CF5B4, 4D5A944C70037F35A9DBA4F49F174455FA80ED7EAEDAA143F0A2C0E05AE585D8 ] i2omp C:\Windows\system32\drivers\i2omp.sys
17:14:51.0714 0x02dc i2omp - ok
17:14:51.0760 0x02dc [ 22D56C8184586B7A1F6FA60BE5F5A2BD, D96A2962848C1F59B143BFEC22EC48BD1C5A75D0EBCFD7FB965E66B85FF7D8CA ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
17:14:51.0760 0x02dc i8042prt - ok
17:14:51.0792 0x02dc [ E5A0034847537EAEE3C00349D5C34C5F, 3E0F99512CDFF0B628E2FF5B91BB371CDEF65201B03C53182C97DDE34E26E04C ] iaStor C:\Windows\system32\DRIVERS\iaStor.sys
17:14:51.0807 0x02dc iaStor - ok
17:14:51.0823 0x02dc [ 54155EA1B0DF185878E0FC9EC3AC3A14, 344A0793499261D2E4FF2FCCC70501329485F8E299EBC68953D07BA86F0D4729 ] iaStorV C:\Windows\system32\drivers\iastorv.sys
17:14:51.0838 0x02dc iaStorV - ok
17:14:51.0932 0x02dc [ 98477B08E61945F974ED9FDC4CB6BDAB, C7E8F661F6FBF6AB493E950D2E70363496E155B1838CE7B490B981BD840B04FC ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
17:14:52.0072 0x02dc idsvc - ok
17:14:52.0228 0x02dc [ 9378D57E2B96C0A185D844770AD49948, AED244DDF125C867091D0A926B275EC1C60C89844C69595B1D1FC586F60F118A ] igfx C:\Windows\system32\DRIVERS\igdkmd32.sys
17:14:52.0291 0x02dc igfx - ok
17:14:52.0322 0x02dc [ 2D077BF86E843F901D8DB709C95B49A5, 78FF558A881F307858F5C7C74A748B8B2562AF3CAC7EA8639945609001D790CE ] iirsp C:\Windows\system32\drivers\iirsp.sys
17:14:52.0322 0x02dc iirsp - ok
17:14:52.0384 0x02dc [ 4687EE0C0DD2CE5F7AAA9C2E33C1DC78, FA8EBED2778D9F7560ADC1B563954EEF98AAE651C0553F2803372B37B122AEB3 ] IKEEXT C:\Windows\System32\ikeext.dll
17:14:52.0431 0x02dc IKEEXT - ok
17:14:52.0572 0x02dc [ 4E38A2883DF3BA382A59132B3E7D709E, 5E3E83150E85D4397AAEA00D164FB5D415AC20D59B156F8EB5AFA9685985140C ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHDA.sys
17:14:52.0634 0x02dc IntcAzAudAddService - ok
17:14:52.0681 0x02dc [ 83AA759F3189E6370C30DE5DC5590718, 7406FE41EA8FB80052517318CB72E2641E92E579FAFAF5E8DDDFF0BF8DAE773A ] intelide C:\Windows\system32\drivers\intelide.sys
17:14:52.0681 0x02dc intelide - ok
17:14:52.0712 0x02dc [ 224191001E78C89DFA78924C3EA595FF, E4EC9CAAEEEAEB30E13F4A8023AF687F29514667380DDFD638BBFFF1D5FC2563 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
17:14:52.0728 0x02dc intelppm - ok
17:14:52.0759 0x02dc [ 9AC218C6E6105477484C6FDBE7D409A4, FF30D09CD2A0F5BBEC309E953370F194B6F26BF4227E627B594AAA48B0F5D3C2 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
17:14:52.0790 0x02dc IPBusEnum - ok
17:14:52.0806 0x02dc [ 62C265C38769B864CB25B4BCF62DF6C3, CAF6BCE967104233E216464E4729B0275C3BD426D812F404AB0EE83A7F2063D8 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
17:14:52.0806 0x02dc IpFilterDriver - ok
17:14:52.0837 0x02dc [ 1998BD97F950680BB55F55A7244679C2, A4E8BB4C6B2AF4800BD5E0BA8725FD0927F8FB6751AEBF6DD16B59C414CCB9D8 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
17:14:52.0884 0x02dc iphlpsvc - ok
17:14:52.0884 0x02dc IpInIp - ok
17:14:52.0930 0x02dc [ B25AAF203552B7B3491139D582B39AD1, EA9C38F512F40FF12975A6719E6FE4D7EA93A4B2497103E0FDA5A4CD6033C0A6 ] IPMIDRV C:\Windows\system32\drivers\ipmidrv.sys
17:14:52.0930 0x02dc IPMIDRV - ok
17:14:52.0962 0x02dc [ 8793643A67B42CEC66490B2A0CF92D68, 8B1ED1314E4C6623824DD6B9C15A0F7F996F4D243BF0B305421251BE40850907 ] IPNAT C:\Windows\system32\DRIVERS\ipnat.sys
17:14:52.0962 0x02dc IPNAT - ok
17:14:52.0977 0x02dc [ 109C0DFB82C3632FBD11949B73AEEAC9, 73B01426100256B7110DF0B74483AF1B62FC209612EEC29A7BF6DC31A7FBEFB6 ] IRENUM C:\Windows\system32\drivers\irenum.sys
17:14:52.0977 0x02dc IRENUM - ok
17:14:53.0008 0x02dc [ 6C70698A3E5C4376C6AB5C7C17FB0614, 10FBCBA5A74AF5D136B152FD4D3DFA2A1F2CEBC3F979D5BA6DB98B3DCB2F7A07 ] isapnp C:\Windows\system32\drivers\isapnp.sys
17:14:53.0008 0x02dc isapnp - ok
17:14:53.0040 0x02dc [ 232FA340531D940AAC623B121A595034, 90C93F04D8A0094EEBD118F10223605B8169DA5F24C466F503CED5C014BD17B1 ] iScsiPrt C:\Windows\system32\DRIVERS\msiscsi.sys
17:14:53.0055 0x02dc iScsiPrt - ok
17:14:53.0071 0x02dc [ BCED60D16156E428F8DF8CF27B0DF150, 4934E9AB8A8A548548F0C63517F2BF4DE84B05E5C9C7C2AA6C1517B8F9C340D4 ] iteatapi C:\Windows\system32\drivers\iteatapi.sys
17:14:53.0071 0x02dc iteatapi - ok
17:14:53.0118 0x02dc [ 06FA654504A498C30ADCA8BEC4E87E7E, 651BC35A0A3D504573BBAB40DE81929BB18C9FC0CD7944FEAE0E99CD7658EA88 ] iteraid C:\Windows\system32\drivers\iteraid.sys
17:14:53.0118 0x02dc iteraid - ok
17:14:53.0133 0x02dc [ 37605E0A8CF00CBBA538E753E4344C6E, B9A9FFDCE45B0830E277CF322C28ACB49372C16144B0F676B283BE5DAE9A7F30 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
17:14:53.0133 0x02dc kbdclass - ok
17:14:53.0164 0x02dc [ 18247836959BA67E3511B62846B9C2E0, 9623FF990A1C11A707C358CC9FDD4306C2992A8C766A50DAFC9534A283AA011D ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
17:14:53.0164 0x02dc kbdhid - ok
17:14:53.0227 0x02dc [ CC2A86D7BBF14977340DCA61BBCBA771, 25A7EFE04D4972FB46DD9F0D89AD7E2168B3B91DF354FC607A29719DE23CE826 ] kbfiltr C:\Windows\system32\DRIVERS\kbfiltr.sys
17:14:53.0227 0x02dc kbfiltr - ok
17:14:53.0258 0x02dc [ A3E186B4B935905B829219502557314E, 7F58EAC6C12208D792C77014AC9D37AD1A7B2E73863C914F5DA831A72E1D52BB ] KeyIso C:\Windows\system32\lsass.exe
17:14:53.0289 0x02dc KeyIso - ok
17:14:53.0352 0x02dc [ 566C5FD480FDBCE3BA5CF9FBCFFAEA9A, 573681387B27FB2C8DC6612474B9BB8631F6CD3CED29AEBF91992606875724D2 ] KMWDFILTER C:\Windows\system32\DRIVERS\KMWDFILTER.sys
17:14:53.0367 0x02dc KMWDFILTER - ok
17:14:53.0414 0x02dc [ 4A1445EFA932A3BAF5BDB02D7131EE20, 9DD262ED72DF268FE024063788F54124E320D0775D8DC0C5CAD099CD5F655DA2 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
17:14:53.0430 0x02dc KSecDD - ok
17:14:53.0461 0x02dc [ 8078F8F8F7A79E2E6B494523A828C585, BB399993166853F0C01B7508649ECD7E7473238267BA8333D0441128FE656347 ] KtmRm C:\Windows\system32\msdtckrm.dll
17:14:53.0523 0x02dc KtmRm - ok
17:14:53.0554 0x02dc [ 1BF5EEBFD518DD7298434D8C862F825D, F41C79410345C40B346EB5EDEA397ECD29ECB9B921AC3E19F9453E52A7B9288A ] LanmanServer C:\Windows\System32\srvsvc.dll
17:14:53.0632 0x02dc LanmanServer - ok
17:14:53.0664 0x02dc [ 1DB69705B695B987082C8BAEC0C6B34F, D395B272F6B69D4A9FC3CDEFD812EF0DBFECF3C1B1C787C7CC1E1A1B091B8DB3 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
17:14:53.0757 0x02dc LanmanWorkstation - ok
17:14:53.0866 0x02dc [ D1C5883087A0C3F1344D9D55A44901F6, 608D67357AFDDD538D2C12C93EB0793ECA4EB3AF2BAB779E881C41F50E4AB911 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
17:14:53.0866 0x02dc lltdio - ok
17:14:53.0913 0x02dc [ 2D5A428872F1442631D0959A34ABFF63, E532C6ECFFB936EFF744CA57BDC6394C89E797B6B0822D04F1F3F35D9BDDD4F0 ] lltdsvc C:\Windows\System32\lltdsvc.dll
17:14:53.0960 0x02dc lltdsvc - ok
17:14:53.0976 0x02dc [ 35D40113E4A5B961B6CE5C5857702518, 453097AEF46ED48107395D9A1696AAC259FD6CEA8A655D38C5E246FDDAB81664 ] lmhosts C:\Windows\System32\lmhsvc.dll
17:14:54.0022 0x02dc lmhosts - ok
17:14:54.0054 0x02dc [ C7E15E82879BF3235B559563D4185365, 98C9268ADF6BAEB0522BB84BE6C98D0D6D5EB4BD27BB61412D208232164C8435 ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
17:14:54.0054 0x02dc LSI_FC - ok
17:14:54.0069 0x02dc [ EE01EBAE8C9BF0FA072E0FF68718920A, 655924440E611278998226299645BC72B3627A8A057286DC8D65A162CFBBE484 ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
17:14:54.0085 0x02dc LSI_SAS - ok
17:14:54.0116 0x02dc [ 912A04696E9CA30146A62AFA1463DD5C, 1D336D47B9D1C8449F29CDB776C092235E3D70CE53D9440970533E376EB004D3 ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
17:14:54.0116 0x02dc LSI_SCSI - ok
17:14:54.0132 0x02dc [ 8F5C7426567798E62A3B3614965D62CC, 659810257D942C5F4168E1247868CDA990F2324AC9ACAA9A6211F64B7AC9EC6E ] luafv C:\Windows\system32\drivers\luafv.sys
17:14:54.0147 0x02dc luafv - ok
17:14:54.0163 0x02dc [ 8683C1B450F4B3872839308D836E0F92, C6CEEEA780D2191AEAC2537FD96324FF5501D92CE46313FB95ABB51765D919ED ] MBAMProtector C:\Windows\system32\drivers\mbam.sys
17:14:54.0178 0x02dc MBAMProtector - ok
17:14:54.0459 0x02dc [ D84AEA3F3329D622DFC1297DDDF6163B, 316FE56CC30ED1473A917253F46B79EAA12F4ABD5B4B1ADB03929DFEE940F577 ] MBAMScheduler C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe
17:14:54.0506 0x02dc MBAMScheduler - ok
17:14:54.0631 0x02dc [ 4F45ED469906494F9BF754E476390DBD, D8FF6AFD73D8C191F5732DF9737E6F83B2B52B06A3A6CD4CC6EAC9464CBB2772 ] MBAMService C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe
17:14:54.0646 0x02dc MBAMService - ok
17:14:54.0724 0x02dc [ 12E71DA845D76665B56753AD149E32B3, 0E403710CCBACD5AB85FD4C32AAB6CB2C27BC1F043E8008EE49EE96ECA944146 ] MBAMSwissArmy C:\Windows\system32\drivers\MBAMSwissArmy.sys
17:14:54.0724 0x02dc MBAMSwissArmy - ok
17:14:54.0756 0x02dc [ 799613BA73D25641402AA81B6403EFF8, 55FFF9248C0798346888071A60BF42C809C5D4C7BBA92C97B617F7B6681E00F3 ] MBAMWebAccessControl C:\Windows\system32\drivers\mwac.sys
17:14:54.0771 0x02dc MBAMWebAccessControl - ok
17:14:54.0880 0x02dc [ FFD6043744F9542B143726CC08F6D298, E2DCB13846AB562F1144CFCA7C12D84103E7150151343E2EDAF3F6239AF74232 ] MbnExt C:\Program Files\T-Mobile\Web'n'walk Manager\MbnExt.dll
17:14:54.0880 0x02dc MbnExt - ok
17:14:54.0927 0x02dc [ 0001CE609D66632FA17B84705F658879, D5F9758BDC2B733307B565A74B33F5581FB425A5A9F32CCFA307DA1569EBD6CD ] megasas C:\Windows\system32\drivers\megasas.sys
17:14:54.0943 0x02dc megasas - ok
17:14:54.0990 0x02dc [ C252F32CD9A49DBFC25ECF26EBD51A99, 47EC8F475AB62A00FAF989CD2C3ABDF2922588F75CC15C83CD99A62EF6400FB0 ] MegaSR C:\Windows\system32\drivers\megasr.sys
17:14:55.0005 0x02dc MegaSR - ok
17:14:55.0036 0x02dc [ 1076FFCFFAAE8385FD62DFCB25AC4708, 8C5C106FCB018E019DEBA8E1A6AA170CD7A93293F27994F724EBC486238DA0AA ] MMCSS C:\Windows\system32\mmcss.dll
17:14:55.0083 0x02dc MMCSS - ok
17:14:55.0099 0x02dc [ E13B5EA0F51BA5B1512EC671393D09BA, 5B380D1B435D809CA201FD5ED075D42F3C6BA1A4EEDBC4040F7E3329F05A334A ] Modem C:\Windows\system32\drivers\modem.sys
17:14:55.0099 0x02dc Modem - ok
17:14:55.0114 0x02dc [ 0A9BB33B56E294F686ABB7C1E4E2D8A8, 1E8031D51E074FDFB53E98E26DABF313B901C028D01196BFD402EED5D0A89595 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
17:14:55.0130 0x02dc monitor - ok
17:14:55.0130 0x02dc [ 5BF6A1326A335C5298477754A506D263, CC7F58E5955A448F6CE28D6D8EB98C7479E11F931B5C733CFE71A29B2E95923D ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
17:14:55.0146 0x02dc mouclass - ok
17:14:55.0161 0x02dc [ 93B8D4869E12CFBE663915502900876F, 7464DE60FAAD8793D855F1F86C3C865B3A3EE41C19A3E926D1BE4426E67F5EC2 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
17:14:55.0177 0x02dc mouhid - ok
17:14:55.0208 0x02dc [ BDAFC88AA6B92F7842416EA6A48E1600, 2CA8A7BB260016D6B7953980A94C45A3C5D41F7DC7E73EEFB1C18EA144749503 ] MountMgr C:\Windows\system32\drivers\mountmgr.sys
17:14:55.0224 0x02dc MountMgr - ok
17:14:55.0239 0x02dc [ 511D011289755DD9F9A7579FB0B064E6, 1FD0D0D5B6E08FE06F7A5D0821BCD859B0F98A6DEA58AAB7FB6C95B64212FFC8 ] mpio C:\Windows\system32\drivers\mpio.sys
17:14:55.0255 0x02dc mpio - ok
17:14:55.0270 0x02dc [ 22241FEBA9B2DEFA669C8CB0A8DD7D2E, 62055C0DCEB69873B8961AB17DBD002F44319A44CB05EC3A61421A0C6D4736CD ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
17:14:55.0286 0x02dc mpsdrv - ok
17:14:55.0317 0x02dc [ 5DE62C6E9108F14F6794060A9BDECAEC, 655E6645CC4A1EDBE5F51F5F80C7B504DD956851E788A6E4E4E08CDCDCE160D9 ] MpsSvc C:\Windows\system32\mpssvc.dll
17:14:55.0380 0x02dc MpsSvc - ok
17:14:55.0395 0x02dc [ 4FBBB70D30FD20EC51F80061703B001E, 72907A0CA5CFF82F40C02A65CD8EFD51D7CFC33BE67DE572D1ACF4FD3B248F0A ] Mraid35x C:\Windows\system32\drivers\mraid35x.sys
17:14:55.0411 0x02dc Mraid35x - ok
17:14:55.0426 0x02dc [ 82CEA0395524AACFEB58BA1448E8325C, 16E37990A291C848DE35F48EA7E09AE5B258AE589EB08A3FA2C60DC1278DE182 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
17:14:55.0426 0x02dc MRxDAV - ok
17:14:55.0458 0x02dc [ 1E94971C4B446AB2290DEB71D01CF0C2, 4701AA1B419AEF735CB2DA34532B0F1844433272C36D79F4EB55807E39B923D1 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
17:14:55.0473 0x02dc mrxsmb - ok
17:14:55.0489 0x02dc [ 4FCCB34D793B116423209C0F8B7A3B03, 7A483AEB691ADBE82779F12F0BB1CCCBFFD7E92902EC1ADC99AB7D129F887143 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
17:14:55.0504 0x02dc mrxsmb10 - ok
17:14:55.0504 0x02dc [ C3CB1B40AD4A0124D617A1199B0B9D7C, B975A39DE6D324C6274B6E3B883F36082A958F028335CEB3A37F44481EB284B3 ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
17:14:55.0520 0x02dc mrxsmb20 - ok
17:14:55.0536 0x02dc [ 28023E86F17001F7CD9B15A5BC9AE07D, FC7EAA592C5F796E3BCD7F7EF261709CD899B33FC8486E594A480F143D0D6320 ] msahci C:\Windows\system32\drivers\msahci.sys
17:14:55.0536 0x02dc msahci - ok
17:14:55.0567 0x02dc [ 4468B0F385A86ECDDAF8D3CA662EC0E7, EAEDC9CDD2EEC5000AF8190A4BE7729282576C3F88E64FDF57F455F5CECC81C9 ] msdsm C:\Windows\system32\drivers\msdsm.sys
17:14:55.0582 0x02dc msdsm - ok
17:14:55.0598 0x02dc [ FD7520CC3A80C5FC8C48852BB24C6DED, C3F3D7A07FAB9AF38A2A00BF0DF6EEE18CA8FE26277BEC9D8ADB793F2CD5EC1F ] MSDTC C:\Windows\System32\msdtc.exe
17:14:55.0660 0x02dc MSDTC - ok
17:14:55.0676 0x02dc [ A9927F4A46B816C92F461ACB90CF8515, 753284F726F9B4D3E7322C75532244CA43714F00717C2019391FB36DEE0738C0 ] Msfs C:\Windows\system32\drivers\Msfs.sys
17:14:55.0676 0x02dc Msfs - ok
17:14:55.0692 0x02dc [ 0F400E306F385C56317357D6DEA56F62, C48FA8193787359902D20D869F5F602CD66D3C5D061A58DDB72F51EED433C4BC ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
17:14:55.0692 0x02dc msisadrv - ok
17:14:55.0738 0x02dc [ 85466C0757A23D9A9AECDC0755203CB2, 79141B8DF9D7470466872AF03A85C3D3976512BFDBDB8B92A22225DC8EFD70A6 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
17:14:55.0770 0x02dc MSiSCSI - ok
17:14:55.0770 0x02dc msiserver - ok
17:14:55.0801 0x02dc [ D8C63D34D9C9E56C059E24EC7185CC07, D0CBFB8D57E6D908679DC0488ED659CA35B92626DEA890873E165F051A1AD2AE ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
17:14:55.0801 0x02dc MSKSSRV - ok
17:14:55.0832 0x02dc [ 1D373C90D62DDB641D50E55B9E78D65E, 1D4897A96EA54D6FAC7916D69B4E88CAE1397C38CC8FAE08554772808476357B ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
17:14:55.0832 0x02dc MSPCLOCK - ok
17:14:55.0848 0x02dc [ B572DA05BF4E098D4BBA3A4734FB505B, B7923F204CEADD0F62C2FE4B7CF8C56DAB70F88093B15C5692D0E61490CF4BAA ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
17:14:55.0848 0x02dc MSPQM - ok
17:14:55.0879 0x02dc [ B49456D70555DE905C311BCDA6EC6ADB, 8E40586B3A1FAE9996459E0261726C9DD6A8D5F575604868C45604613385C92F ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
17:14:55.0894 0x02dc MsRPC - ok
17:14:55.0926 0x02dc [ E384487CB84BE41D09711C30CA79646C, 520391DEE14D4D6C1EA99C7D31DD95D56B44D54CA3CD8E5C9855E9C0A04F026C ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
17:14:55.0926 0x02dc mssmbios - ok
17:14:55.0941 0x02dc [ 7199C1EEC1E4993CAF96B8C0A26BD58A, DD02DF8ED7AF5BB88BD2A91F38CE4C52432CB8044BDCBC41C320CD22B10B8A3B ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
17:14:55.0957 0x02dc MSTEE - ok
17:14:55.0988 0x02dc [ 97AFFA9D95FFE20EEE6229BC6BE166CF, 6E13230AF96A3A5C518EFA21B9B1833E3DE9D6DA05A6E664E305EF18B162E1B9 ] MTsensor C:\Windows\system32\DRIVERS\ATKACPI.sys
17:14:55.0988 0x02dc MTsensor - ok
17:14:56.0019 0x02dc [ 6A57B5733D4CB702C8EA4542E836B96C, 080FB0B01E949D24CDD6876125B3A72DA9F88845D8B9A1A425BCA99E7ACF6821 ] Mup C:\Windows\system32\Drivers\mup.sys
17:14:56.0035 0x02dc Mup - ok
17:14:56.0066 0x02dc [ E4EAF0C5C1B41B5C83386CF212CA9584, 5946C3DCE65A0DB164169A1775DFCA544AF4E1895ADF6916BB1653F373F8D9AF ] napagent C:\Windows\system32\qagentRT.dll
17:14:56.0144 0x02dc napagent - ok
17:14:56.0175 0x02dc [ 85C44FDFF9CF7E72A40DCB7EC06A4416, DC37C99C458CA69B33BFD3894187089E947F4F9C01EC2ED024FA8614989E0956 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
17:14:56.0191 0x02dc NativeWifiP - ok
17:14:56.0253 0x02dc [ 1357274D1883F68300AEADD15D7BBB42, EE6352CBF0D9D633816F338159CDA27F1A805C3DDC3402D8605B50D8F3CD3300 ] NDIS C:\Windows\system32\drivers\ndis.sys
17:14:56.0269 0x02dc NDIS - ok
17:14:56.0300 0x02dc [ 0E186E90404980569FB449BA7519AE61, DE41791D9D3074007D6DD1D3933E7A2A13E3789D0AD4F029105B58279622FC1B ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
17:14:56.0300 0x02dc NdisTapi - ok
17:14:56.0316 0x02dc [ D6973AA34C4D5D76C0430B181C3CD389, 7C303F3D6BFF8B82E39998135B444837091AB1F9EB8F28D013E5EF45DB237EFC ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
17:14:56.0331 0x02dc Ndisuio - ok
17:14:56.0347 0x02dc [ 818F648618AE34F729FDB47EC68345C3, 5FC8F9237BD7FCE3C62D5BDDD49DC104BE2BECDC2FA8CDC1DB8F1891CBAA9140 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
17:14:56.0347 0x02dc NdisWan - ok
17:14:56.0378 0x02dc [ 71DAB552B41936358F3B541AE5997FB3, 30A8B3E33CBF04FC047254E404C0321F9028F2640036AA8AC1EA0A5E64551684 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
17:14:56.0378 0x02dc NDProxy - ok
17:14:56.0394 0x02dc [ BCD093A5A6777CF626434568DC7DBA78, 2A283DD93230361204EA0897864EAF0224CB8C02E025AE2E4237B07A598B3EBD ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
17:14:56.0409 0x02dc NetBIOS - ok
17:14:56.0440 0x02dc [ ECD64230A59CBD93C85F1CD1CAB9F3F6, 83650D756C1F2768A2AAAFC7924F2A4316ABAEB1708F4B05803CDDD699B5AB6F ] netbt C:\Windows\system32\DRIVERS\netbt.sys
17:14:56.0456 0x02dc netbt - ok
17:14:56.0456 0x02dc [ A3E186B4B935905B829219502557314E, 7F58EAC6C12208D792C77014AC9D37AD1A7B2E73863C914F5DA831A72E1D52BB ] Netlogon C:\Windows\system32\lsass.exe
17:14:56.0503 0x02dc Netlogon - ok
17:14:56.0550 0x02dc [ C8052711DAECC48B982434C5116CA401, 417DEB86D157DD3F0B4678410FE27FDD3E8FA04AB03AF398F6C02BF207070B35 ] Netman C:\Windows\System32\netman.dll
17:14:56.0612 0x02dc Netman - ok
17:14:56.0659 0x02dc [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
17:14:56.0690 0x02dc NetMsmqActivator - ok
17:14:56.0706 0x02dc [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetPipeActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
17:14:56.0706 0x02dc NetPipeActivator - ok
17:14:56.0737 0x02dc [ 2EF3BBE22E5A5ACD1428EE387A0D0172, 55DB91EDD0339D2434C06445F8A716A48EA90925B0FF7EBF45BB79D4B54B80BF ] netprofm C:\Windows\System32\netprofm.dll
17:14:56.0799 0x02dc netprofm - ok
17:14:56.0815 0x02dc [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetTcpActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
17:14:56.0830 0x02dc NetTcpActivator - ok
17:14:56.0846 0x02dc [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
17:14:56.0846 0x02dc NetTcpPortSharing - ok
17:14:56.0877 0x02dc [ 2E7FB731D4790A1BC6270ACCEFACB36E, EE9A00B694E8A3A5842CDC56C7BA1364317AC8134E046A0059661D057094B1A3 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
17:14:56.0893 0x02dc nfrd960 - ok
17:14:56.0908 0x02dc [ 2997B15415F9BBE05B5A4C1C85E0C6A2, 5455536515FE740E18E090329FDCC40288724372AD18ACDB2CB4BB9D85CF681E ] NlaSvc C:\Windows\System32\nlasvc.dll
17:14:56.0971 0x02dc NlaSvc - ok
17:14:57.0002 0x02dc [ D36F239D7CCE1931598E8FB90A0DBC26, DF9397411D0CE5A87E3346D4E6E25BEC537A21BCE196CC55FD999CD08FC4A637 ] Npfs C:\Windows\system32\drivers\Npfs.sys
17:14:57.0002 0x02dc Npfs - ok
17:14:57.0018 0x02dc [ 8BB86F0C7EEA2BDED6FE095D0B4CA9BD, 15CA178518EB3D457AA4C109D97A8490821590842AE4E9841703B5A55870C8F6 ] nsi C:\Windows\system32\nsisvc.dll
17:14:57.0080 0x02dc nsi - ok
17:14:57.0096 0x02dc [ 609773E344A97410CE4EBF74A8914FCF, 90B9CBD2B62854DD503DE4A910CB987D402368EB99882FE20FFB6DEACD70F2BD ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
17:14:57.0096 0x02dc nsiproxy - ok
17:14:57.0174 0x02dc [ 2C1121F2B87E9A6B12485DF53CD848C7, E580428F3BA7B201C6C7CFADF1F44A6ECA4F589EDB034DA14260136236195936 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
17:14:57.0205 0x02dc Ntfs - ok
17:14:57.0236 0x02dc [ E875C093AEC0C978A90F30C9E0DFBB72, D3A480CD7EF374EFBC1BB831B33B81534774DDDBB0FB338BEE1D444949FD8DE7 ] ntrigdigi C:\Windows\system32\drivers\ntrigdigi.sys
17:14:57.0252 0x02dc ntrigdigi - ok
17:14:57.0267 0x02dc [ C5DBBCDA07D780BDA9B685DF333BB41E, 3652893DFF05469A273C3073D8D0A9D6D6BBDEC7855FEA8EAB768F95BA674108 ] Null C:\Windows\system32\drivers\Null.sys
17:14:57.0283 0x02dc Null - ok
17:14:57.0298 0x02dc [ 2EDF9E7751554B42CBB60116DE727101, 37A0AA78E83DBB5A788F7F067EB71DDF6CCC72A66BB41B209E1A5E2F68F8AF9B ] nvraid C:\Windows\system32\drivers\nvraid.sys
17:14:57.0298 0x02dc nvraid - ok
17:14:57.0314 0x02dc [ ABED0C09758D1D97DB0042DBB2688177, 84B9BF886EF9181915E8AB6D971446BC681E6DE4485DBECD62838EAFA10E7F46 ] nvstor C:\Windows\system32\drivers\nvstor.sys
17:14:57.0330 0x02dc nvstor - ok
17:14:57.0345 0x02dc [ 18BBDF913916B71BD54575BDB6EEAC0B, 5FBA165149AB09E869DCE35622E91CFC964BDD22B31A5E76CF12F1565402B207 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
17:14:57.0361 0x02dc nv_agp - ok
17:14:57.0361 0x02dc NwlnkFlt - ok
17:14:57.0376 0x02dc NwlnkFwd - ok
17:14:57.0470 0x02dc [ 785F487A64950F3CB8E9F16253BA3B7B, 02445344BD214370A6D48B1CA04921D8EFCB13E676B5648266DD0E076C0822B6 ] odserv C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
17:14:57.0704 0x02dc odserv - ok
17:14:57.0751 0x02dc [ 790E27C3DB53410B40FF9EF2FD10A1D9, FD06F2702B8F7E04ECF1B6E88602F14301E7AE7FC44AD114282E580FAD530A9C ] ohci1394 C:\Windows\system32\DRIVERS\ohci1394.sys
17:14:57.0751 0x02dc ohci1394 - ok
17:14:57.0782 0x02dc [ 5A432A042DAE460ABE7199B758E8606C, 6E5D1F477D290905BE27CEBF9572BAC6B05FFEF2FAD901D3C8E11F665F8B9A71 ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
17:14:57.0798 0x02dc ose - ok
17:14:57.0860 0x02dc [ 0C8E8E61AD1EB0B250B846712C917506, 8F23657B90BFFCD7273B93EDA2D3768F35C1C5A313F22AE33452BE3B2A550649 ] p2pimsvc C:\Windows\system32\p2psvc.dll
17:14:57.0938 0x02dc p2pimsvc - ok
17:14:57.0969 0x02dc [ 0C8E8E61AD1EB0B250B846712C917506, 8F23657B90BFFCD7273B93EDA2D3768F35C1C5A313F22AE33452BE3B2A550649 ] p2psvc C:\Windows\system32\p2psvc.dll
17:14:58.0047 0x02dc p2psvc - ok
17:14:58.0094 0x02dc [ 0FA9B5055484649D63C303FE404E5F4D, ABF357001A5E7B21621560E74FA538E2D899C5111A6AAC784B5B12D9D819C6CD ] Parport C:\Windows\system32\drivers\parport.sys
17:14:58.0094 0x02dc Parport - ok
17:14:58.0125 0x02dc [ B9C2B89F08670E159F7181891E449CD9, BD48CE95CF4B75D1FD5FD379B2A8727BC000F2B6748B77636C6BDB0B37B0344A ] partmgr C:\Windows\system32\drivers\partmgr.sys
17:14:58.0141 0x02dc partmgr - ok
17:14:58.0172 0x02dc [ 4F9A6A8A31413180D0FCB279AD5D8112, DCE48BC6E3447403521BB9FBF727E629DEE45B69B8AE8CFEE1A67FECAE3CB9D3 ] Parvdm C:\Windows\system32\drivers\parvdm.sys
17:14:58.0172 0x02dc Parvdm - ok
17:14:58.0219 0x02dc [ C6276AD11F4BB49B58AA1ED88537F14A, 409E956AF994640DF8D062E5E41F87A6EE7EEE0335C191B582722A49322357CE ] PcaSvc C:\Windows\System32\pcasvc.dll
17:14:58.0281 0x02dc PcaSvc - ok
17:14:58.0328 0x02dc [ 941DC1D19E7E8620F40BBC206981EFDB, 156142A8B587131D2D47074CBFD0A31F69B3C27A8C74C8C4F29DFE7B53BBA802 ] pci C:\Windows\system32\drivers\pci.sys
17:14:58.0328 0x02dc pci - ok
17:14:58.0359 0x02dc [ FC175F5DDAB666D7F4D17449A547626F, 7D6108213D1AD3F97A3B83E491BCCC7D6F5BC72C32A182BDDE8736851A26C8D2 ] pciide C:\Windows\system32\drivers\pciide.sys
17:14:58.0359 0x02dc pciide - ok
17:14:58.0390 0x02dc [ 3BB2244F343B610C29C98035504C9B75, DA61EC2600199DFA32020D0484E9BBF5E0742E7C8C952370BF6FAF91C914A999 ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys
17:14:58.0406 0x02dc pcmcia - ok
17:14:58.0468 0x02dc [ 6349F6ED9C623B44B52EA3C63C831A92, 9EAA3ABD396870123107D6E1B758F56FDA378BD28B28DB8415AA470D24294F92 ] PEAUTH C:\Windows\system32\drivers\peauth.sys
17:14:58.0500 0x02dc PEAUTH - ok
17:14:58.0609 0x02dc [ B1689DF169143F57053F795390C99DB3, 887B8C76B34CABC68067C0F27CC4EEF02457A53634C96FE5B0FE9B99453BDBEF ] pla C:\Windows\system32\pla.dll
17:14:58.0734 0x02dc pla - ok
17:14:58.0765 0x02dc [ C5E7F8A996EC0A82D508FD9064A5569E, 416A93816CDF12DD42DEA796D37E6E2000D3172AAAB20D3EAD3B715DACD4B61F ] PlugPlay C:\Windows\system32\umpnpmgr.dll
17:14:58.0858 0x02dc PlugPlay - ok
17:14:58.0905 0x02dc [ 0C8E8E61AD1EB0B250B846712C917506, 8F23657B90BFFCD7273B93EDA2D3768F35C1C5A313F22AE33452BE3B2A550649 ] PNRPAutoReg C:\Windows\system32\p2psvc.dll
17:14:58.0983 0x02dc PNRPAutoReg - ok
17:14:59.0014 0x02dc [ 0C8E8E61AD1EB0B250B846712C917506, 8F23657B90BFFCD7273B93EDA2D3768F35C1C5A313F22AE33452BE3B2A550649 ] PNRPsvc C:\Windows\system32\p2psvc.dll
17:14:59.0092 0x02dc PNRPsvc - ok
17:14:59.0139 0x02dc [ D0494460421A03CD5225CCA0059AA146, FC30E90522C63F2A66D89381705712D2CDF07B2E029DF40C2DEBB2353E763E90 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
17:14:59.0186 0x02dc PolicyAgent - ok
17:14:59.0217 0x02dc [ ECFFFAEC0C1ECD8DBC77F39070EA1DB1, 6E4B188A4BFDBBCA51347BCCE2873F2D0F858398851B9B5129CB9F36A02E4354 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
17:14:59.0217 0x02dc PptpMiniport - ok
17:14:59.0248 0x02dc [ 2027293619DD0F047C584CF2E7DF4FFD, B7C172CCD08D8A30483D27536355ED1E5009B33629355B426470AFBA8542B394 ] Processor C:\Windows\system32\drivers\processr.sys
17:14:59.0264 0x02dc Processor - ok
17:14:59.0295 0x02dc [ 0508FAA222D28835310B7BFCA7A77346, 3AE2340C6E365F137CC00D9560069501DD2724756EA9EBF7A6CDFFC91B43709C ] ProfSvc C:\Windows\system32\profsvc.dll
17:14:59.0358 0x02dc ProfSvc - ok
17:14:34.0647 0x0d6c ============================================================
17:14:34.0647 0x0d6c Current date / time: 2014/05/24 17:14:34.0647
17:14:34.0647 0x0d6c SystemInfo:
17:14:34.0663 0x0d6c
17:14:34.0663 0x0d6c OS Version: 6.0.6002 ServicePack: 2.0
17:14:34.0663 0x0d6c Product type: Workstation
17:14:34.0663 0x0d6c ComputerName: VERCIK-ASUS
17:14:34.0663 0x0d6c UserName: vercik
17:14:34.0663 0x0d6c Windows directory: C:\Windows
17:14:34.0663 0x0d6c System windows directory: C:\Windows
17:14:34.0663 0x0d6c Processor architecture: Intel x86
17:14:34.0663 0x0d6c Number of processors: 2
17:14:34.0663 0x0d6c Page size: 0x1000
17:14:34.0663 0x0d6c Boot type: Normal boot
17:14:34.0663 0x0d6c ============================================================
17:14:34.0897 0x0d6c KLMD registered as C:\Windows\system32\drivers\35877632.sys
17:14:35.0224 0x0d6c System UUID: {5571F8E7-690F-227F-A97D-84B9845F915D}
17:14:36.0020 0x0d6c Drive \Device\Harddisk0\DR0 - Size: 0x25433D6000 (149.05 Gb), SectorSize: 0x200, Cylinders: 0x4C01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
17:14:36.0020 0x0d6c ============================================================
17:14:36.0020 0x0d6c \Device\Harddisk0\DR0:
17:14:36.0020 0x0d6c MBR partitions:
17:14:36.0020 0x0d6c \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x1388B3B, BlocksNum 0x950A600
17:14:36.0036 0x0d6c \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0xA89317A, BlocksNum 0x8185947
17:14:36.0036 0x0d6c ============================================================
17:14:36.0082 0x0d6c C: <-> \Device\Harddisk0\DR0\Partition1
17:14:36.0114 0x0d6c D: <-> \Device\Harddisk0\DR0\Partition2
17:14:36.0114 0x0d6c ============================================================
17:14:36.0114 0x0d6c Initialize success
17:14:36.0114 0x0d6c ============================================================
17:14:39.0920 0x02dc ============================================================
17:14:39.0920 0x02dc Scan started
17:14:39.0920 0x02dc Mode: Manual;
17:14:39.0920 0x02dc ============================================================
17:14:39.0920 0x02dc KSN ping started
17:14:44.0272 0x02dc KSN ping finished: true
17:14:44.0553 0x02dc ================ Scan system memory ========================
17:14:44.0553 0x02dc System memory - ok
17:14:44.0553 0x02dc ================ Scan services =============================
17:14:44.0647 0x02dc [ 51F207D5A9E7B2E76BEE59C05CCC23C4, BE78957DD197777D899FAFBBE71E2FDB5DB9AC6AC4F1595A562FD362429BED6B ] !SASCORE C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
17:14:44.0647 0x02dc !SASCORE - ok
17:14:44.0881 0x02dc [ 82B296AE1892FE3DBEE00C9CF92F8AC7, 54B22BA63E1DA616B546992141B0C3117BA057283B8F60CB9BECE203661FEBF3 ] ACPI C:\Windows\system32\drivers\acpi.sys
17:14:44.0881 0x02dc ACPI - ok
17:14:44.0974 0x02dc [ 3927397AC60D943DAF8808AFFED582B7, 2688254085C219E8CA9C5494ABDAD8FAE52533CEF7FA3C152715E0B78D591BCF ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
17:14:44.0974 0x02dc AdobeARMservice - ok
17:14:45.0052 0x02dc [ 09E7C37DF4A911C8A9AA8BF88ACD10AA, E881E0BBDCED58F28E0BA8DC27372EDFFFF2C57EE31CD13A032FDC9F7C831B5A ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
17:14:45.0052 0x02dc AdobeFlashPlayerUpdateSvc - ok
17:14:45.0130 0x02dc [ 04F0FCAC69C7C71A3AC4EB97FAFC8303, FBBDD38574A1F66A5AA12B82E34FDE60B870180C4B7100C15757539DC869ED4B ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
17:14:45.0130 0x02dc adp94xx - ok
17:14:45.0177 0x02dc [ 60505E0041F7751BDBB80F88BF45C2CE, 1DE16042B8ABD7B643189E836DE273832EE743FD66AFBB641E8049C4E0CD04D8 ] adpahci C:\Windows\system32\drivers\adpahci.sys
17:14:45.0193 0x02dc adpahci - ok
17:14:45.0224 0x02dc [ 8A42779B02AEC986EAB64ECFC98F8BD7, B89938EFF4E81FA44197D2D839EBD3340DDE01FBC79605049C088621784C1B91 ] adpu160m C:\Windows\system32\drivers\adpu160m.sys
17:14:45.0224 0x02dc adpu160m - ok
17:14:45.0255 0x02dc [ 241C9E37F8CE45EF51C3DE27515CA4E5, 1A03E93DD8C1F3640C96124A14A3D0F4E349B06CCA2118CE40B8AE201A4030A7 ] adpu320 C:\Windows\system32\drivers\adpu320.sys
17:14:45.0271 0x02dc adpu320 - ok
17:14:45.0349 0x02dc [ 609A6F49B6AF0F25837F8A0EDDDB0745, C10C6A3A99636FD4688555B9A74397C3D45165A8A30D7B37089876548F02ECDF ] ADSMService C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe
17:14:45.0349 0x02dc ADSMService - ok
17:14:45.0380 0x02dc [ 9D1FDA9E086BA64E3C93C9DE32461BCF, 200FD0BFC811EC8993AF9FC78F58823ECC717063F438B627FBCDD6BD7790CAA8 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
17:14:45.0380 0x02dc AeLookupSvc - ok
17:14:45.0427 0x02dc [ 3911B972B55FEA0478476B2E777B29FA, 62545B90C7DD3F73777E62CD8264E611A4D71B6956CABFD2D820D25F41F471FD ] AFD C:\Windows\system32\drivers\afd.sys
17:14:45.0442 0x02dc AFD - ok
17:14:45.0489 0x02dc [ 13F9E33747E6B41A3FF305C37DB0D360, 066DD6060B1CF93F85BBAAA52848C801128CD294E8B7EACD912E0EF219DBFBC2 ] agp440 C:\Windows\system32\drivers\agp440.sys
17:14:45.0489 0x02dc agp440 - ok
17:14:45.0536 0x02dc [ AE1FDF7BF7BB6C6A70F67699D880592A, B831BF156FC49287A19FC149383D437B1034EA6F42CE9D761EB90ABD0F8D96B1 ] aic78xx C:\Windows\system32\drivers\djsvs.sys
17:14:45.0536 0x02dc aic78xx - ok
17:14:45.0583 0x02dc [ A1545B731579895D8CC44FC0481C1192, 6B0EE833BA39C142D625A03586CCD8F6C9C3136C603CE5DF5BAC1AA3423E3E7F ] ALG C:\Windows\System32\alg.exe
17:14:45.0583 0x02dc ALG - ok
17:14:45.0614 0x02dc [ 9EAEF5FC9B8E351AFA7E78A6FAE91F91, 0EADB6AE21FEDAB55D41F41B638198B556CC2BE2EE57F6C8B40EB044A318319F ] aliide C:\Windows\system32\drivers\aliide.sys
17:14:45.0614 0x02dc aliide - ok
17:14:45.0645 0x02dc [ C47344BC706E5F0B9DCE369516661578, 689C9CDAF6F38227F1C34359CAEB3C7798F318EDFD4B7FE532FBE3C8E4EE3DC8 ] amdagp C:\Windows\system32\drivers\amdagp.sys
17:14:45.0645 0x02dc amdagp - ok
17:14:45.0676 0x02dc [ 9B78A39A4C173FDBC1321E0DD659B34C, 2CA66EB68AD7A317D91C13B8CFD4E8CA985926A610D19595B613F5553B145C7B ] amdide C:\Windows\system32\drivers\amdide.sys
17:14:45.0692 0x02dc amdide - ok
17:14:45.0723 0x02dc [ 18F29B49AD23ECEE3D2A826C725C8D48, 0FA08882301D218E367E63E1966B6406220EE94BAE7E7DAD6E55EB70BF6FED7F ] AmdK7 C:\Windows\system32\drivers\amdk7.sys
17:14:45.0723 0x02dc AmdK7 - ok
17:14:45.0754 0x02dc [ 93AE7F7DD54AB986A6F1A1B37BE7442D, ECE0ABA2DECEED94AC678240A4B604F04022F0740F2295CBD07D25F5917E878A ] AmdK8 C:\Windows\system32\drivers\amdk8.sys
17:14:45.0754 0x02dc AmdK8 - ok
17:14:45.0801 0x02dc [ C6D704C7F0434DC791AAC37CAC4B6E14, 35CF7D1895F97637E0C678A39F3049B871BCA9526D379C7793ED33B87D2EAC4C ] Appinfo C:\Windows\System32\appinfo.dll
17:14:45.0801 0x02dc Appinfo - ok
17:14:45.0864 0x02dc [ 5D2888182FB46632511ACEE92FDAD522, 2E53231ACAF9B2FB7993DBC1CD15C06D7B0CCE0D08DAFF7B0CC13A2040028A75 ] arc C:\Windows\system32\drivers\arc.sys
17:14:45.0879 0x02dc arc - ok
17:14:45.0926 0x02dc [ 5E2A321BD7C8B3624E41FDEC3E244945, 9D47FF6C823868F2267FEFAB5851D3CD2BC3F619A2D6EFF803EA22DB0509C450 ] arcsas C:\Windows\system32\drivers\arcsas.sys
17:14:45.0926 0x02dc arcsas - ok
17:14:45.0957 0x02dc [ 4385E371C25C94C804E9D3152BD9E1F7, 285CD1D03E73461348DDDF68755A81E23458C3150CFBE5911CC63A956FAC0EAD ] AsDsm C:\Windows\system32\drivers\AsDsm.sys
17:14:45.0957 0x02dc AsDsm - ok
17:14:46.0004 0x02dc [ 5A055A4777CBBC8845DD598CB2EEBF69, AF58FF2D58DA807869531A645ED4AD078FC411554EE18366949D27FF0C28829D ] ASLDRService C:\Program Files\ATK Hotkey\ASLDRSrv.exe
17:14:46.0004 0x02dc ASLDRService - ok
17:14:46.0020 0x02dc [ 7B4D08D2017AC06689D422E06C43F0AA, 42BACCEA0FCEB60B79F78098163147A8DD1DED24CB2F0DBB93EDC07DAB66135C ] ASMMAP C:\Program Files\ATKGFNEX\ASMMAP.sys
17:14:46.0020 0x02dc ASMMAP - ok
17:14:46.0113 0x02dc [ 9D768C43FEF254DD50B1DBF8AD5C4C0B, A50854EA5C08605133B8BB4DFDC6090357C5665314AA72E0BFA1E07D4E451F09 ] aspnet_state C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
17:14:46.0160 0x02dc aspnet_state - ok
17:14:46.0191 0x02dc [ 53B202ABEE6455406254444303E87BE1, 4C91CA8DD345FEDD74A6AF2C07580717703F979B7DE2532B1D00B9F6896DDE70 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
17:14:46.0191 0x02dc AsyncMac - ok
17:14:46.0222 0x02dc [ 1F05B78AB91C9075565A9D8A4B880BC4, 737BE9F9376DAB0CCDFED93EA6D67F0C432367EA63CD772A453485BE769AF3BD ] atapi C:\Windows\system32\drivers\atapi.sys
17:14:46.0222 0x02dc atapi - ok
17:14:46.0332 0x02dc [ 44362605F5FFF00C9B7696B47680A8C5, E972D0C046760B04CEDF2DBAC03128866691DC299FB96CA87A124278613EFBEA ] athr C:\Windows\system32\DRIVERS\athr.sys
17:14:46.0347 0x02dc athr - ok
17:14:46.0378 0x02dc [ 7C157574A181B19B9DCF5F339E25337E, 7CA78363CD420BFE4BFE9A38683CA9E31023AC573D9092666CDAEE6AF4998B60 ] ATKGFNEXSrv C:\Program Files\ATKGFNEX\GFNEXSrv.exe
17:14:46.0394 0x02dc ATKGFNEXSrv - ok
17:14:46.0425 0x02dc [ 68E2A1A0407A66CF50DA0300852424AB, 5FFDAE4E477C90A855081B5120582810471F67D3E9C343779A7AFB8D684D16F8 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
17:14:46.0441 0x02dc AudioEndpointBuilder - ok
17:14:46.0456 0x02dc [ 68E2A1A0407A66CF50DA0300852424AB, 5FFDAE4E477C90A855081B5120582810471F67D3E9C343779A7AFB8D684D16F8 ] Audiosrv C:\Windows\System32\Audiosrv.dll
17:14:46.0472 0x02dc Audiosrv - ok
17:14:46.0519 0x02dc [ 4A00A998F421769A47A858FC1C8AE87A, 9FB642CA8C7094B8BFDEB2D806909D7B62E7F1CD0B29B6CDC928A6F046E240C2 ] avgtp C:\Windows\system32\drivers\avgtpx86.sys
17:14:46.0519 0x02dc avgtp - ok
17:14:46.0566 0x02dc [ 59629EDD214C35A01E2527AC3B8A7FB3, E71716CC1FF1574A2D854FA62350C73ECDAE21D3B827E18835D37F8B5857B4E3 ] Axtmvflt C:\Windows\system32\DRIVERS\Axtmvflt.sys
17:14:46.0566 0x02dc Axtmvflt - ok
17:14:46.0597 0x02dc [ 37E23B1756ECA768656097F72C0B458D, 1E2D517C932B60869B470FD00623B8ED15B62A20DC27DF54D167B643819227ED ] Axtmvmdm C:\Windows\system32\DRIVERS\Axtmvmdm.sys
17:14:46.0597 0x02dc Axtmvmdm - ok
17:14:46.0628 0x02dc [ 2C7170BE24EACC0B432EB1832FEE0DDC, B9555982073E836FAB68626435A382F55B74C60928D57AB35B17BFC202325EE8 ] Axtmvprt C:\Windows\system32\Drivers\Axtmvprt.sys
17:14:46.0628 0x02dc Axtmvprt - ok
17:14:46.0675 0x02dc [ 67E506B75BD5326A3EC7B70BD014DFB6, 3B07243970CAB4E93A858BEA6E31F56AD0157C42D624F3FEB469E68EEEF65669 ] Beep C:\Windows\system32\drivers\Beep.sys
17:14:46.0675 0x02dc Beep - ok
17:14:46.0722 0x02dc [ C789AF0F724FDA5852FB9A7D3A432381, 4B0F7A3A8F2D45E49630D24F2630B8014BCDB793B9C6E83FD2B2863A54F62BF5 ] BFE C:\Windows\System32\bfe.dll
17:14:46.0737 0x02dc BFE - ok
17:14:46.0815 0x02dc [ 93952506C6D67330367F7E7934B6A02F, 1D9A6B10B9489C1A32F730E22CC399BFF0796E3FCB3BA52BE45ED487CAC59EBD ] BITS C:\Windows\System32\qmgr.dll
17:14:46.0909 0x02dc BITS - ok
17:14:46.0956 0x02dc [ D4DF28447741FD3D953526E33A617397, E7239BA432090F8AC7DF453DB876507CD4419ECA964D289408A1B2B353618693 ] blbdrive C:\Windows\system32\drivers\blbdrive.sys
17:14:46.0956 0x02dc blbdrive - ok
17:14:46.0987 0x02dc [ 35F376253F687BDE63976CCB3F2108CA, C5EF6301D7BC067050038DB75D961681D1CBE418285AD60167C1334B0B54DFE9 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
17:14:46.0987 0x02dc bowser - ok
17:14:47.0034 0x02dc [ 9F9ACC7F7CCDE8A15C282D3F88B43309, A9131334BD9CF8FD60BA9D54AA054E2DF2BE1219FB650DF1464F2787BDEAE98F ] BrFiltLo C:\Windows\system32\drivers\brfiltlo.sys
17:14:47.0034 0x02dc BrFiltLo - ok
17:14:47.0065 0x02dc [ 56801AD62213A41F6497F96DEE83755A, 0DEB8318FB47DF6473C171C795C735E26A73FA12232876C6856549EA16F33361 ] BrFiltUp C:\Windows\system32\drivers\brfiltup.sys
17:14:47.0065 0x02dc BrFiltUp - ok
17:14:47.0112 0x02dc [ A3629A0C4226F9E9C72FAAEEBC3AD33C, FB4D2738B64AADA52B95A6CF7ED4CDBFE4DD4BEBCAF1AE9CE64317F97DB38DDF ] Browser C:\Windows\System32\browser.dll
17:14:47.0127 0x02dc Browser - ok
17:14:47.0158 0x02dc [ B304E75CFF293029EDDF094246747113, CB6B219B186C3511A0DE3CDE7F7B8966A9E32D808A952CA8C5B42B3A3A17BFB0 ] Brserid C:\Windows\system32\drivers\brserid.sys
17:14:47.0158 0x02dc Brserid - ok
17:14:47.0190 0x02dc [ 203F0B1E73ADADBBB7B7B1FABD901F6B, 782FA7B26940FE479C49C9BAA2EB582CDAAAD607013E9BCFC85E6FBBB7D49A6D ] BrSerWdm C:\Windows\system32\drivers\brserwdm.sys
17:14:47.0205 0x02dc BrSerWdm - ok
17:14:47.0236 0x02dc [ BD456606156BA17E60A04E18016AE54B, DFBDC9DA6A3EA40BACFF204BC6C55C2C122B5885D2CBF6D45054DE43EE15EC4D ] BrUsbMdm C:\Windows\system32\drivers\brusbmdm.sys
17:14:47.0236 0x02dc BrUsbMdm - ok
17:14:47.0268 0x02dc [ AF72ED54503F717A43268B3CC5FAEC2E, 4A638669B0C30B1BDED242A8BF2015A37749570FF4D67D190BACC8D7E0C44468 ] BrUsbSer C:\Windows\system32\drivers\brusbser.sys
17:14:47.0268 0x02dc BrUsbSer - ok
17:14:47.0299 0x02dc [ AD07C1EC6665B8B35741AB91200C6B68, DCE1305A30D6713222A01C1F1D03ED0ADABE23C742CE1E82BB142531B82A3FF7 ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
17:14:47.0299 0x02dc BTHMODEM - ok
17:14:47.0330 0x02dc [ 7ADD03E75BEB9E6DD102C3081D29840A, 0CA14A77CE990B5AA32C0725C22CA190ECBC73B75064DD959CABAD79B8846F1D ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
17:14:47.0330 0x02dc cdfs - ok
17:14:47.0392 0x02dc [ 6B4BFFB9BECD728097024276430DB314, 4451EFEAD37B05C8A3CB610B6D72E73B55D3D1E1CC1B17405598C1EDAA93C2D5 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
17:14:47.0392 0x02dc cdrom - ok
17:14:47.0439 0x02dc [ 312EC3E37A0A1F2006534913E37B4423, 81B8F462336791D162DAFA8092C1F437638DA3022CA24A2458B9FE183FC18C5D ] CertPropSvc C:\Windows\System32\certprop.dll
17:14:47.0439 0x02dc CertPropSvc - ok
17:14:47.0486 0x02dc [ E5D4133F37219DBCFE102BC61072589D, 74C7F8C53D9C71CE3C8B33BC0331948571318402B0A8E1AC4552360504092A46 ] circlass C:\Windows\system32\drivers\circlass.sys
17:14:47.0486 0x02dc circlass - ok
17:14:47.0533 0x02dc [ D7659D3B5B92C31E84E53C1431F35132, 6BFE644AD9890A8CEEDCC4B97ADD564AD57202FBC5D21599469E0C4B31BB27C6 ] CLFS C:\Windows\system32\CLFS.sys
17:14:47.0548 0x02dc CLFS - ok
17:14:47.0595 0x02dc [ 8EE772032E2FE80A924F3B8DD5082194, B743DF91563A22CC15D9B44105804B5866A29D3DFC156DBE88DFAFEF903B94C0 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
17:14:48.0094 0x02dc clr_optimization_v2.0.50727_32 - ok
17:14:48.0141 0x02dc [ E87213F37A13E2B54391E40934F071D0, 7EB221127EFB5BF158FB03D18EFDA2C55FB6CE3D1A1FE69C01D70DBED02C87E5 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
17:14:48.0266 0x02dc clr_optimization_v4.0.30319_32 - ok
17:14:48.0313 0x02dc [ 99AFC3795B58CC478FBBBCDC658FCB56, 0D1B27C42A058C5D56A0157B5ECA9A054254F6B9C8015D0321021A7EFCE10CE2 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
17:14:48.0313 0x02dc CmBatt - ok
17:14:48.0328 0x02dc [ 0CA25E686A4928484E9FDABD168AB629, C2CB2333CAB40CDF93219870E66700F957188C86A1B1A004BC4652953091E5C5 ] cmdide C:\Windows\system32\drivers\cmdide.sys
17:14:48.0328 0x02dc cmdide - ok
17:14:48.0360 0x02dc [ 6AFEF0B60FA25DE07C0968983EE4F60A, E4037EF9EDE57A1039AB814EBCE9A8B12C9A084E7FAC6296212ACF2394DD37B6 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
17:14:48.0360 0x02dc Compbatt - ok
17:14:48.0360 0x02dc COMSysApp - ok
17:14:48.0375 0x02dc [ 741E9DFF4F42D2D8477D0FC1DC0DF871, 06EA43D771E3455F943AB624CC00C2259FE5E561164908630755E933EF44A522 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
17:14:48.0375 0x02dc crcdisk - ok
17:14:48.0406 0x02dc [ 1F07BECDCA750766A96CDA811BA86410, F4E36F0003184BCB36D59B23AC903421AD8C0A1FD2D6315E06375235ABC9A0AD ] Crusoe C:\Windows\system32\drivers\crusoe.sys
17:14:48.0406 0x02dc Crusoe - ok
17:14:48.0469 0x02dc [ 684C130BBC6DB681BAD4920A4C944AA5, DDE434B206984808351C98500824A33E6740B4326C455066027F8D549D4C3B92 ] CryptSvc C:\Windows\system32\cryptsvc.dll
17:14:48.0469 0x02dc CryptSvc - ok
17:14:48.0531 0x02dc [ 3B5B4D53FEC14F7476CA29A20CC31AC9, EC02A412DA5FDE2C759A4A2C5904579E1CE7C4999CE87145812F354FC8F5E183 ] DcomLaunch C:\Windows\system32\rpcss.dll
17:14:48.0625 0x02dc DcomLaunch - ok
17:14:48.0640 0x02dc [ 622C41A07CA7E6DD91770F50D532CB6C, 2A9040949CB45F9970FDE930278F30D2F08E957290CB3D4DC4F2CA94F3D444D2 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
17:14:48.0656 0x02dc DfsC - ok
17:14:48.0781 0x02dc [ 2CC3DCFB533A1035B13DCAB6160AB38B, C88C91F662ADE248EEE3B568E70C2BC2D5075B7D9B7D3C63E83D011C5F7812B0 ] DFSR C:\Windows\system32\DFSR.exe
17:14:48.0874 0x02dc DFSR - ok
17:14:48.0937 0x02dc [ 9028559C132146FB75EB7ACF384B086A, 35159D86706441ED94895B4629411B4445FCB4526AFD1F7036EE647931B7A94D ] Dhcp C:\Windows\System32\dhcpcsvc.dll
17:14:48.0952 0x02dc Dhcp - ok
17:14:48.0984 0x02dc [ 5D4AEFC3386920236A548271F8F1AF6A, 11B74D6800EC6F7AAEFB0B6A9F2E8376C7C3B8DB677F03AC3743CB004CA96B08 ] disk C:\Windows\system32\drivers\disk.sys
17:14:48.0999 0x02dc disk - ok
17:14:49.0046 0x02dc [ 57D762F6F5974AF0DA2BE88A3349BAAA, D9E7DC8F9FB7837F88BBB95B52147AA80E688FB9762EEA99B8046D9C6AD48F3C ] Dnscache C:\Windows\System32\dnsrslvr.dll
17:14:49.0062 0x02dc Dnscache - ok
17:14:49.0108 0x02dc [ 324FD74686B1EF5E7C19A8AF49E748F6, DC6EB4304555B60DD17E04D20DFE4E279718E4041A9310DE29E678834BB22C5B ] dot3svc C:\Windows\System32\dot3svc.dll
17:14:49.0140 0x02dc dot3svc - ok
17:14:49.0171 0x02dc [ A622E888F8AA2F6B49E9BC466F0E5DEF, 3DED7F22A29AD2F8C927DFA0FD87FDE5ED0BDCAC7260BD9F71D8EA34328C772A ] DPS C:\Windows\system32\dps.dll
17:14:49.0202 0x02dc DPS - ok
17:14:49.0233 0x02dc [ 97FEF831AB90BEE128C9AF390E243F80, A7F4118603E2D5DDDB117EF7C058684EA5B37690EFAB2BEBA570EEF9C36281BE ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
17:14:49.0233 0x02dc drmkaud - ok
17:14:49.0296 0x02dc [ 988670D8343EF9835FB3659DB71B2EFA, 5F5370FDD08C4BFF0828341952E98E95F722CB779EEC08C9DD6212C4DF3CD33B ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
17:14:49.0311 0x02dc DXGKrnl - ok
17:14:49.0358 0x02dc [ 5425F74AC0C1DBD96A1E04F17D63F94C, AD133CEDCDEA75420C75A91BB4CF7152475D46ED7B7703E3BAE5F9946D610292 ] E1G60 C:\Windows\system32\DRIVERS\E1G60I32.sys
17:14:49.0374 0x02dc E1G60 - ok
17:14:49.0420 0x02dc [ C0B95E40D85CD807D614E264248A45B9, 30421DAF1722A225222268CB8BA4FE60CB76C6FD0C9157B0F53FC1368F806A4E ] EapHost C:\Windows\System32\eapsvc.dll
17:14:49.0436 0x02dc EapHost - ok
17:14:49.0483 0x02dc [ 7F64EA048DCFAC7ACF8B4D7B4E6FE371, F3E9CF5D8E9124CB06F08454C5F0E510DE19A92780151FB2F8A58A0905D59B8F ] Ecache C:\Windows\system32\drivers\ecache.sys
17:14:49.0483 0x02dc Ecache - ok
17:14:49.0545 0x02dc [ 23B62471681A124889978F6295B3F4C6, A90C521F06125B86A26EA625B0E7F811AF7D328E1313165E7AD4A83596A23819 ] elxstor C:\Windows\system32\drivers\elxstor.sys
17:14:49.0545 0x02dc elxstor - ok
17:14:49.0623 0x02dc [ 4E6B23DFC917EA39306B529B773950F4, C4BA77632B4BD46C4C1797F7F57399DB506D3EB6E5A0A36C269A793DAA3445C2 ] EMDMgmt C:\Windows\system32\emdmgmt.dll
17:14:49.0654 0x02dc EMDMgmt - ok
17:14:49.0701 0x02dc [ 3DB974F3935483555D7148663F726C61, C288CFC04213B0340ABEC752C0A7B308B29122B5F51E68387BA1D9E9D7166FDD ] ErrDev C:\Windows\system32\drivers\errdev.sys
17:14:49.0701 0x02dc ErrDev - ok
17:14:49.0748 0x02dc [ 67058C46504BC12D821F38CF99B7B28F, E8D19F305F78BCA1DA8425315F2C77A377CD51E3CC54323DC2FF355120EA097D ] EventSystem C:\Windows\system32\es.dll
17:14:49.0779 0x02dc EventSystem - ok
17:14:49.0857 0x02dc [ 57C171EA22F0A7F068FCB0CAEDD1E8E7, 9AAF39AA22372FB8582C1422581C08E61444BF843E1CE2E199EB00FBEA6F9C06 ] ew_hwusbdev C:\Windows\system32\DRIVERS\ew_hwusbdev.sys
17:14:49.0873 0x02dc ew_hwusbdev - ok
17:14:49.0904 0x02dc [ 61A973F60E94A551BA7B15F3460444FB, FC2FB69978D99D75673AFE9F08176F3139DCBAEDE4D339BD09DA29CD3EC01005 ] ew_usbenumfilter C:\Windows\system32\DRIVERS\ew_usbenumfilter.sys
17:14:49.0904 0x02dc ew_usbenumfilter - ok
17:14:49.0966 0x02dc [ 22B408651F9123527BCEE54B4F6C5CAE, 31AF9649333A9496A9224001266D1B68CE2A31B9FB182A755D127FC5492AA6B2 ] exfat C:\Windows\system32\drivers\exfat.sys
17:14:49.0966 0x02dc exfat - ok
17:14:49.0998 0x02dc [ 1E9B9A70D332103C52995E957DC09EF8, 7E709D545D4025A2E9F3489CF2A231040904CB53E3E4EEAC15A22468FAB2A5B3 ] fastfat C:\Windows\system32\drivers\fastfat.sys
17:14:50.0013 0x02dc fastfat - ok
17:14:50.0044 0x02dc [ AFE1E8B9782A0DD7FB46BBD88E43F89A, B4CBE1DC3430F2F3485F49007C71293D5B86E9C405741EA00A67B00A38BE1F8D ] fdc C:\Windows\system32\DRIVERS\fdc.sys
17:14:50.0060 0x02dc fdc - ok
17:14:50.0091 0x02dc [ 6629B5F0E98151F4AFDD87567EA32BA3, 8CC02D5E0639CDF74B2F85DB56D6199E1858F1A58465ED1D8B25C968E986132C ] fdPHost C:\Windows\system32\fdPHost.dll
17:14:50.0107 0x02dc fdPHost - ok
17:14:50.0122 0x02dc [ 89ED56DCE8E47AF40892778A5BD31FD2, 924360875796C3DDDDA8097FDF53F6846B227F7413766F00AEDD981EFD691BF9 ] FDResPub C:\Windows\system32\fdrespub.dll
17:14:50.0154 0x02dc FDResPub - ok
17:14:50.0169 0x02dc [ A8C0139A884861E3AAE9CFE73B208A9F, 3B021D148A2989AAA46AE58E5FED8A2DCA25E9212C2FA7F922880EF5A077E49B ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
17:14:50.0185 0x02dc FileInfo - ok
17:14:50.0200 0x02dc [ 0AE429A696AECBC5970E3CF2C62635AE, 1ECC315C099D17835788B68F0DE00EC98DC5AEE8F329D739E0DB90A898F22244 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
17:14:50.0200 0x02dc Filetrace - ok
17:14:50.0216 0x02dc [ 85B7CF99D532820495D68D747FDA9EBD, 682D35D219D1AFBE51CF0AB03F2D3E15C940F5AF291C1A611A19F4D279143F3C ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
17:14:50.0216 0x02dc flpydisk - ok
17:14:50.0247 0x02dc [ 01334F9EA68E6877C4EF05D3EA8ABB05, 82F8AA6AD2B5077898773D4A5814819EAF0E872FFD95894E06FEDAB6EE92CF99 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
17:14:50.0263 0x02dc FltMgr - ok
17:14:50.0356 0x02dc [ 2AFA3A46986AE935DAECEBC7E66314CF, 747FAF9B7F8291B83EE44B91E5708395E749DC87BD42CC3BF2CD41209C298F4D ] FontCache C:\Windows\system32\FntCache.dll
17:14:50.0403 0x02dc FontCache - ok
17:14:50.0481 0x02dc [ C7FBDD1ED42F82BFA35167A5C9803EA3, 372FF71070D5ECE17342466A690737A0622E93C98DBED8172C49B0854F0012B7 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
17:14:50.0512 0x02dc FontCache3.0.0.0 - ok
17:14:50.0544 0x02dc [ B972A66758577E0BFD1DE0F91AAA27B5, E934034F3F740A83D4E7ABCD2C581845AC2945B0BCCAACF65CC3F99A1DBDE455 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
17:14:50.0544 0x02dc Fs_Rec - ok
17:14:50.0575 0x02dc [ 34582A6E6573D54A07ECE5FE24A126B5, 5F45DC38F8015AD90616EAD3B57820CCD284938A96B2C4E1FF5FC7BDEE8A848D ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
17:14:50.0590 0x02dc gagp30kx - ok
17:14:50.0637 0x02dc [ 31B40F40E09513ADDC460F6A297AD474, C3A2A29E32F07BA6534380DE5A1EA7EFCB39B288B9541696DA65FA20DE20AFC4 ] ghaio C:\Program Files\ASUS\NB Probe\SPM\ghaio.sys
17:14:50.0653 0x02dc ghaio - ok
17:14:50.0700 0x02dc [ F0187E45268E86AAAA932CBD9087BEA8, 4AD7D42795ECF85F1DF87C56F06982AE33DA23647CFBACBFAF194F55A81D4538 ] GoogleDesktopManager-110309-193829 C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
17:14:50.0793 0x02dc GoogleDesktopManager-110309-193829 - ok
17:14:50.0871 0x02dc [ CD5D0AEEE35DFD4E986A5AA1500A6E66, DCED5126837292593F1C1B35DF18E3B631D6C0C6D0742B77C7B7742C55A7825F ] gpsvc C:\Windows\System32\gpsvc.dll
17:14:50.0918 0x02dc gpsvc - ok
17:14:50.0996 0x02dc [ F02A533F517EB38333CB12A9E8963773, 1F72CD1CF660766FA8F912E40B7323A0192A300B376186C10F6803DC5EFE28DF ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
17:14:50.0996 0x02dc gupdate - ok
17:14:51.0012 0x02dc [ F02A533F517EB38333CB12A9E8963773, 1F72CD1CF660766FA8F912E40B7323A0192A300B376186C10F6803DC5EFE28DF ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
17:14:51.0012 0x02dc gupdatem - ok
17:14:51.0058 0x02dc [ 5D4BC124FAAE6730AC002CDB67BF1A1C, 00294F4DC7D17F6DD2A22B9C3299BED40146BA45C972367154D20DB502472551 ] gusvc C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
17:14:51.0058 0x02dc gusvc - ok
17:14:51.0105 0x02dc [ CB04C744BE0A61B1D648FAED182C3B59, 61DC0FF94325DAFCCB7B3980A48727EFBF1283FCF753EC16EF04C730525994C0 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
17:14:51.0121 0x02dc HdAudAddService - ok
17:14:51.0183 0x02dc [ 062452B7FFD68C8C042A6261FE8DFF4A, DD9873502456D3C058C6177AC223B28C71370E624FA0814C17EA3D93201F2B56 ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
17:14:51.0199 0x02dc HDAudBus - ok
17:14:51.0214 0x02dc [ 1338520E78D90154ED6BE8F84DE5FCEB, 8531F1C5856983EBDA4C2B70162645ECE72FFFBA9FE7A28BCEDDF2169B7ECF9D ] HidBth C:\Windows\system32\drivers\hidbth.sys
17:14:51.0230 0x02dc HidBth - ok
17:14:51.0246 0x02dc [ FF3160C3A2445128C5A6D9B076DA519E, DC1A70C80CD55F33B3AD5A21E86AF7C3086D8CC2DC6148C058E74A871E0BAD4A ] HidIr C:\Windows\system32\drivers\hidir.sys
17:14:51.0246 0x02dc HidIr - ok
17:14:51.0292 0x02dc [ 84067081F3318162797385E11A8F0582, 11E32E3800CFCA37354388243F88D0239D622891BAC5483518A2BE5D1CA19015 ] hidserv C:\Windows\System32\hidserv.dll
17:14:51.0308 0x02dc hidserv - ok
17:14:51.0339 0x02dc [ CCA4B519B17E23A00B826C55716809CC, 91AD0758A6185B0FBBE383BDB1B457FFB850477AFF8DE040DE9527A97D28EF62 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
17:14:51.0339 0x02dc HidUsb - ok
17:14:51.0355 0x02dc [ D8AD255B37DA92434C26E4876DB7D418, C901EADDD93FC90C8F29F4B6DE808F8E4F486C877FC0AA27DA4ACDE17E28899D ] hkmsvc C:\Windows\system32\kmsvc.dll
17:14:51.0402 0x02dc hkmsvc - ok
17:14:51.0433 0x02dc [ 16EE7B23A009E00D835CDB79574A91A6, 964AFE7D2F7E48C7DE7FDAB48F57ADC4AD44A0B2A9A03071E0E8D334007E5572 ] HpCISSs C:\Windows\system32\drivers\hpcisss.sys
17:14:51.0448 0x02dc HpCISSs - ok
17:14:51.0480 0x02dc [ 0EEECA26C8D4BDE2A4664DB058A81937, 6F88567A116B1420BE1C9C8888F34D05F51378092C805EF4E489635CF92D416B ] HTTP C:\Windows\system32\drivers\HTTP.sys
17:14:51.0495 0x02dc HTTP - ok
17:14:51.0558 0x02dc [ B73B6816BE98F6CAE539EB458626C411, B706F31DDF2052B34A187EFF5820D2AD5180DE003FC0353A39E86FC0F1904F3C ] huawei_cdcacm C:\Windows\system32\DRIVERS\ew_jucdcacm.sys
17:14:51.0558 0x02dc huawei_cdcacm - ok
17:14:51.0589 0x02dc [ BAEE880B51DF1A39D38F363523CD7E17, A97E94431C86AF99F125BA6326DBAA972031E5F5094891EF028705218084A879 ] huawei_cdcecm C:\Windows\system32\DRIVERS\ew_jucdcecm.sys
17:14:51.0604 0x02dc huawei_cdcecm - ok
17:14:51.0636 0x02dc [ 12CA899F967E6B6F14E080705DF68932, 8C524F5AA0499A3BB0749D45B59F3F03A73004A9583396CA3470DF1C0F1E3281 ] huawei_enumerator C:\Windows\system32\DRIVERS\ew_jubusenum.sys
17:14:51.0651 0x02dc huawei_enumerator - ok
17:14:51.0667 0x02dc [ AB58FF5B1A2B23C751E29975081E8015, A3A58EA423A3BFBF5BCD8D87AA6939EC02D641C259C38D6DB728BD2EF52D5567 ] huawei_ext_ctrl C:\Windows\system32\DRIVERS\ew_juextctrl.sys
17:14:51.0667 0x02dc huawei_ext_ctrl - ok
17:14:51.0714 0x02dc [ C6B032D69650985468160FC9937CF5B4, 4D5A944C70037F35A9DBA4F49F174455FA80ED7EAEDAA143F0A2C0E05AE585D8 ] i2omp C:\Windows\system32\drivers\i2omp.sys
17:14:51.0714 0x02dc i2omp - ok
17:14:51.0760 0x02dc [ 22D56C8184586B7A1F6FA60BE5F5A2BD, D96A2962848C1F59B143BFEC22EC48BD1C5A75D0EBCFD7FB965E66B85FF7D8CA ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
17:14:51.0760 0x02dc i8042prt - ok
17:14:51.0792 0x02dc [ E5A0034847537EAEE3C00349D5C34C5F, 3E0F99512CDFF0B628E2FF5B91BB371CDEF65201B03C53182C97DDE34E26E04C ] iaStor C:\Windows\system32\DRIVERS\iaStor.sys
17:14:51.0807 0x02dc iaStor - ok
17:14:51.0823 0x02dc [ 54155EA1B0DF185878E0FC9EC3AC3A14, 344A0793499261D2E4FF2FCCC70501329485F8E299EBC68953D07BA86F0D4729 ] iaStorV C:\Windows\system32\drivers\iastorv.sys
17:14:51.0838 0x02dc iaStorV - ok
17:14:51.0932 0x02dc [ 98477B08E61945F974ED9FDC4CB6BDAB, C7E8F661F6FBF6AB493E950D2E70363496E155B1838CE7B490B981BD840B04FC ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
17:14:52.0072 0x02dc idsvc - ok
17:14:52.0228 0x02dc [ 9378D57E2B96C0A185D844770AD49948, AED244DDF125C867091D0A926B275EC1C60C89844C69595B1D1FC586F60F118A ] igfx C:\Windows\system32\DRIVERS\igdkmd32.sys
17:14:52.0291 0x02dc igfx - ok
17:14:52.0322 0x02dc [ 2D077BF86E843F901D8DB709C95B49A5, 78FF558A881F307858F5C7C74A748B8B2562AF3CAC7EA8639945609001D790CE ] iirsp C:\Windows\system32\drivers\iirsp.sys
17:14:52.0322 0x02dc iirsp - ok
17:14:52.0384 0x02dc [ 4687EE0C0DD2CE5F7AAA9C2E33C1DC78, FA8EBED2778D9F7560ADC1B563954EEF98AAE651C0553F2803372B37B122AEB3 ] IKEEXT C:\Windows\System32\ikeext.dll
17:14:52.0431 0x02dc IKEEXT - ok
17:14:52.0572 0x02dc [ 4E38A2883DF3BA382A59132B3E7D709E, 5E3E83150E85D4397AAEA00D164FB5D415AC20D59B156F8EB5AFA9685985140C ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHDA.sys
17:14:52.0634 0x02dc IntcAzAudAddService - ok
17:14:52.0681 0x02dc [ 83AA759F3189E6370C30DE5DC5590718, 7406FE41EA8FB80052517318CB72E2641E92E579FAFAF5E8DDDFF0BF8DAE773A ] intelide C:\Windows\system32\drivers\intelide.sys
17:14:52.0681 0x02dc intelide - ok
17:14:52.0712 0x02dc [ 224191001E78C89DFA78924C3EA595FF, E4EC9CAAEEEAEB30E13F4A8023AF687F29514667380DDFD638BBFFF1D5FC2563 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
17:14:52.0728 0x02dc intelppm - ok
17:14:52.0759 0x02dc [ 9AC218C6E6105477484C6FDBE7D409A4, FF30D09CD2A0F5BBEC309E953370F194B6F26BF4227E627B594AAA48B0F5D3C2 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
17:14:52.0790 0x02dc IPBusEnum - ok
17:14:52.0806 0x02dc [ 62C265C38769B864CB25B4BCF62DF6C3, CAF6BCE967104233E216464E4729B0275C3BD426D812F404AB0EE83A7F2063D8 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
17:14:52.0806 0x02dc IpFilterDriver - ok
17:14:52.0837 0x02dc [ 1998BD97F950680BB55F55A7244679C2, A4E8BB4C6B2AF4800BD5E0BA8725FD0927F8FB6751AEBF6DD16B59C414CCB9D8 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
17:14:52.0884 0x02dc iphlpsvc - ok
17:14:52.0884 0x02dc IpInIp - ok
17:14:52.0930 0x02dc [ B25AAF203552B7B3491139D582B39AD1, EA9C38F512F40FF12975A6719E6FE4D7EA93A4B2497103E0FDA5A4CD6033C0A6 ] IPMIDRV C:\Windows\system32\drivers\ipmidrv.sys
17:14:52.0930 0x02dc IPMIDRV - ok
17:14:52.0962 0x02dc [ 8793643A67B42CEC66490B2A0CF92D68, 8B1ED1314E4C6623824DD6B9C15A0F7F996F4D243BF0B305421251BE40850907 ] IPNAT C:\Windows\system32\DRIVERS\ipnat.sys
17:14:52.0962 0x02dc IPNAT - ok
17:14:52.0977 0x02dc [ 109C0DFB82C3632FBD11949B73AEEAC9, 73B01426100256B7110DF0B74483AF1B62FC209612EEC29A7BF6DC31A7FBEFB6 ] IRENUM C:\Windows\system32\drivers\irenum.sys
17:14:52.0977 0x02dc IRENUM - ok
17:14:53.0008 0x02dc [ 6C70698A3E5C4376C6AB5C7C17FB0614, 10FBCBA5A74AF5D136B152FD4D3DFA2A1F2CEBC3F979D5BA6DB98B3DCB2F7A07 ] isapnp C:\Windows\system32\drivers\isapnp.sys
17:14:53.0008 0x02dc isapnp - ok
17:14:53.0040 0x02dc [ 232FA340531D940AAC623B121A595034, 90C93F04D8A0094EEBD118F10223605B8169DA5F24C466F503CED5C014BD17B1 ] iScsiPrt C:\Windows\system32\DRIVERS\msiscsi.sys
17:14:53.0055 0x02dc iScsiPrt - ok
17:14:53.0071 0x02dc [ BCED60D16156E428F8DF8CF27B0DF150, 4934E9AB8A8A548548F0C63517F2BF4DE84B05E5C9C7C2AA6C1517B8F9C340D4 ] iteatapi C:\Windows\system32\drivers\iteatapi.sys
17:14:53.0071 0x02dc iteatapi - ok
17:14:53.0118 0x02dc [ 06FA654504A498C30ADCA8BEC4E87E7E, 651BC35A0A3D504573BBAB40DE81929BB18C9FC0CD7944FEAE0E99CD7658EA88 ] iteraid C:\Windows\system32\drivers\iteraid.sys
17:14:53.0118 0x02dc iteraid - ok
17:14:53.0133 0x02dc [ 37605E0A8CF00CBBA538E753E4344C6E, B9A9FFDCE45B0830E277CF322C28ACB49372C16144B0F676B283BE5DAE9A7F30 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
17:14:53.0133 0x02dc kbdclass - ok
17:14:53.0164 0x02dc [ 18247836959BA67E3511B62846B9C2E0, 9623FF990A1C11A707C358CC9FDD4306C2992A8C766A50DAFC9534A283AA011D ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
17:14:53.0164 0x02dc kbdhid - ok
17:14:53.0227 0x02dc [ CC2A86D7BBF14977340DCA61BBCBA771, 25A7EFE04D4972FB46DD9F0D89AD7E2168B3B91DF354FC607A29719DE23CE826 ] kbfiltr C:\Windows\system32\DRIVERS\kbfiltr.sys
17:14:53.0227 0x02dc kbfiltr - ok
17:14:53.0258 0x02dc [ A3E186B4B935905B829219502557314E, 7F58EAC6C12208D792C77014AC9D37AD1A7B2E73863C914F5DA831A72E1D52BB ] KeyIso C:\Windows\system32\lsass.exe
17:14:53.0289 0x02dc KeyIso - ok
17:14:53.0352 0x02dc [ 566C5FD480FDBCE3BA5CF9FBCFFAEA9A, 573681387B27FB2C8DC6612474B9BB8631F6CD3CED29AEBF91992606875724D2 ] KMWDFILTER C:\Windows\system32\DRIVERS\KMWDFILTER.sys
17:14:53.0367 0x02dc KMWDFILTER - ok
17:14:53.0414 0x02dc [ 4A1445EFA932A3BAF5BDB02D7131EE20, 9DD262ED72DF268FE024063788F54124E320D0775D8DC0C5CAD099CD5F655DA2 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
17:14:53.0430 0x02dc KSecDD - ok
17:14:53.0461 0x02dc [ 8078F8F8F7A79E2E6B494523A828C585, BB399993166853F0C01B7508649ECD7E7473238267BA8333D0441128FE656347 ] KtmRm C:\Windows\system32\msdtckrm.dll
17:14:53.0523 0x02dc KtmRm - ok
17:14:53.0554 0x02dc [ 1BF5EEBFD518DD7298434D8C862F825D, F41C79410345C40B346EB5EDEA397ECD29ECB9B921AC3E19F9453E52A7B9288A ] LanmanServer C:\Windows\System32\srvsvc.dll
17:14:53.0632 0x02dc LanmanServer - ok
17:14:53.0664 0x02dc [ 1DB69705B695B987082C8BAEC0C6B34F, D395B272F6B69D4A9FC3CDEFD812EF0DBFECF3C1B1C787C7CC1E1A1B091B8DB3 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
17:14:53.0757 0x02dc LanmanWorkstation - ok
17:14:53.0866 0x02dc [ D1C5883087A0C3F1344D9D55A44901F6, 608D67357AFDDD538D2C12C93EB0793ECA4EB3AF2BAB779E881C41F50E4AB911 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
17:14:53.0866 0x02dc lltdio - ok
17:14:53.0913 0x02dc [ 2D5A428872F1442631D0959A34ABFF63, E532C6ECFFB936EFF744CA57BDC6394C89E797B6B0822D04F1F3F35D9BDDD4F0 ] lltdsvc C:\Windows\System32\lltdsvc.dll
17:14:53.0960 0x02dc lltdsvc - ok
17:14:53.0976 0x02dc [ 35D40113E4A5B961B6CE5C5857702518, 453097AEF46ED48107395D9A1696AAC259FD6CEA8A655D38C5E246FDDAB81664 ] lmhosts C:\Windows\System32\lmhsvc.dll
17:14:54.0022 0x02dc lmhosts - ok
17:14:54.0054 0x02dc [ C7E15E82879BF3235B559563D4185365, 98C9268ADF6BAEB0522BB84BE6C98D0D6D5EB4BD27BB61412D208232164C8435 ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
17:14:54.0054 0x02dc LSI_FC - ok
17:14:54.0069 0x02dc [ EE01EBAE8C9BF0FA072E0FF68718920A, 655924440E611278998226299645BC72B3627A8A057286DC8D65A162CFBBE484 ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
17:14:54.0085 0x02dc LSI_SAS - ok
17:14:54.0116 0x02dc [ 912A04696E9CA30146A62AFA1463DD5C, 1D336D47B9D1C8449F29CDB776C092235E3D70CE53D9440970533E376EB004D3 ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
17:14:54.0116 0x02dc LSI_SCSI - ok
17:14:54.0132 0x02dc [ 8F5C7426567798E62A3B3614965D62CC, 659810257D942C5F4168E1247868CDA990F2324AC9ACAA9A6211F64B7AC9EC6E ] luafv C:\Windows\system32\drivers\luafv.sys
17:14:54.0147 0x02dc luafv - ok
17:14:54.0163 0x02dc [ 8683C1B450F4B3872839308D836E0F92, C6CEEEA780D2191AEAC2537FD96324FF5501D92CE46313FB95ABB51765D919ED ] MBAMProtector C:\Windows\system32\drivers\mbam.sys
17:14:54.0178 0x02dc MBAMProtector - ok
17:14:54.0459 0x02dc [ D84AEA3F3329D622DFC1297DDDF6163B, 316FE56CC30ED1473A917253F46B79EAA12F4ABD5B4B1ADB03929DFEE940F577 ] MBAMScheduler C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe
17:14:54.0506 0x02dc MBAMScheduler - ok
17:14:54.0631 0x02dc [ 4F45ED469906494F9BF754E476390DBD, D8FF6AFD73D8C191F5732DF9737E6F83B2B52B06A3A6CD4CC6EAC9464CBB2772 ] MBAMService C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe
17:14:54.0646 0x02dc MBAMService - ok
17:14:54.0724 0x02dc [ 12E71DA845D76665B56753AD149E32B3, 0E403710CCBACD5AB85FD4C32AAB6CB2C27BC1F043E8008EE49EE96ECA944146 ] MBAMSwissArmy C:\Windows\system32\drivers\MBAMSwissArmy.sys
17:14:54.0724 0x02dc MBAMSwissArmy - ok
17:14:54.0756 0x02dc [ 799613BA73D25641402AA81B6403EFF8, 55FFF9248C0798346888071A60BF42C809C5D4C7BBA92C97B617F7B6681E00F3 ] MBAMWebAccessControl C:\Windows\system32\drivers\mwac.sys
17:14:54.0771 0x02dc MBAMWebAccessControl - ok
17:14:54.0880 0x02dc [ FFD6043744F9542B143726CC08F6D298, E2DCB13846AB562F1144CFCA7C12D84103E7150151343E2EDAF3F6239AF74232 ] MbnExt C:\Program Files\T-Mobile\Web'n'walk Manager\MbnExt.dll
17:14:54.0880 0x02dc MbnExt - ok
17:14:54.0927 0x02dc [ 0001CE609D66632FA17B84705F658879, D5F9758BDC2B733307B565A74B33F5581FB425A5A9F32CCFA307DA1569EBD6CD ] megasas C:\Windows\system32\drivers\megasas.sys
17:14:54.0943 0x02dc megasas - ok
17:14:54.0990 0x02dc [ C252F32CD9A49DBFC25ECF26EBD51A99, 47EC8F475AB62A00FAF989CD2C3ABDF2922588F75CC15C83CD99A62EF6400FB0 ] MegaSR C:\Windows\system32\drivers\megasr.sys
17:14:55.0005 0x02dc MegaSR - ok
17:14:55.0036 0x02dc [ 1076FFCFFAAE8385FD62DFCB25AC4708, 8C5C106FCB018E019DEBA8E1A6AA170CD7A93293F27994F724EBC486238DA0AA ] MMCSS C:\Windows\system32\mmcss.dll
17:14:55.0083 0x02dc MMCSS - ok
17:14:55.0099 0x02dc [ E13B5EA0F51BA5B1512EC671393D09BA, 5B380D1B435D809CA201FD5ED075D42F3C6BA1A4EEDBC4040F7E3329F05A334A ] Modem C:\Windows\system32\drivers\modem.sys
17:14:55.0099 0x02dc Modem - ok
17:14:55.0114 0x02dc [ 0A9BB33B56E294F686ABB7C1E4E2D8A8, 1E8031D51E074FDFB53E98E26DABF313B901C028D01196BFD402EED5D0A89595 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
17:14:55.0130 0x02dc monitor - ok
17:14:55.0130 0x02dc [ 5BF6A1326A335C5298477754A506D263, CC7F58E5955A448F6CE28D6D8EB98C7479E11F931B5C733CFE71A29B2E95923D ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
17:14:55.0146 0x02dc mouclass - ok
17:14:55.0161 0x02dc [ 93B8D4869E12CFBE663915502900876F, 7464DE60FAAD8793D855F1F86C3C865B3A3EE41C19A3E926D1BE4426E67F5EC2 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
17:14:55.0177 0x02dc mouhid - ok
17:14:55.0208 0x02dc [ BDAFC88AA6B92F7842416EA6A48E1600, 2CA8A7BB260016D6B7953980A94C45A3C5D41F7DC7E73EEFB1C18EA144749503 ] MountMgr C:\Windows\system32\drivers\mountmgr.sys
17:14:55.0224 0x02dc MountMgr - ok
17:14:55.0239 0x02dc [ 511D011289755DD9F9A7579FB0B064E6, 1FD0D0D5B6E08FE06F7A5D0821BCD859B0F98A6DEA58AAB7FB6C95B64212FFC8 ] mpio C:\Windows\system32\drivers\mpio.sys
17:14:55.0255 0x02dc mpio - ok
17:14:55.0270 0x02dc [ 22241FEBA9B2DEFA669C8CB0A8DD7D2E, 62055C0DCEB69873B8961AB17DBD002F44319A44CB05EC3A61421A0C6D4736CD ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
17:14:55.0286 0x02dc mpsdrv - ok
17:14:55.0317 0x02dc [ 5DE62C6E9108F14F6794060A9BDECAEC, 655E6645CC4A1EDBE5F51F5F80C7B504DD956851E788A6E4E4E08CDCDCE160D9 ] MpsSvc C:\Windows\system32\mpssvc.dll
17:14:55.0380 0x02dc MpsSvc - ok
17:14:55.0395 0x02dc [ 4FBBB70D30FD20EC51F80061703B001E, 72907A0CA5CFF82F40C02A65CD8EFD51D7CFC33BE67DE572D1ACF4FD3B248F0A ] Mraid35x C:\Windows\system32\drivers\mraid35x.sys
17:14:55.0411 0x02dc Mraid35x - ok
17:14:55.0426 0x02dc [ 82CEA0395524AACFEB58BA1448E8325C, 16E37990A291C848DE35F48EA7E09AE5B258AE589EB08A3FA2C60DC1278DE182 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
17:14:55.0426 0x02dc MRxDAV - ok
17:14:55.0458 0x02dc [ 1E94971C4B446AB2290DEB71D01CF0C2, 4701AA1B419AEF735CB2DA34532B0F1844433272C36D79F4EB55807E39B923D1 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
17:14:55.0473 0x02dc mrxsmb - ok
17:14:55.0489 0x02dc [ 4FCCB34D793B116423209C0F8B7A3B03, 7A483AEB691ADBE82779F12F0BB1CCCBFFD7E92902EC1ADC99AB7D129F887143 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
17:14:55.0504 0x02dc mrxsmb10 - ok
17:14:55.0504 0x02dc [ C3CB1B40AD4A0124D617A1199B0B9D7C, B975A39DE6D324C6274B6E3B883F36082A958F028335CEB3A37F44481EB284B3 ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
17:14:55.0520 0x02dc mrxsmb20 - ok
17:14:55.0536 0x02dc [ 28023E86F17001F7CD9B15A5BC9AE07D, FC7EAA592C5F796E3BCD7F7EF261709CD899B33FC8486E594A480F143D0D6320 ] msahci C:\Windows\system32\drivers\msahci.sys
17:14:55.0536 0x02dc msahci - ok
17:14:55.0567 0x02dc [ 4468B0F385A86ECDDAF8D3CA662EC0E7, EAEDC9CDD2EEC5000AF8190A4BE7729282576C3F88E64FDF57F455F5CECC81C9 ] msdsm C:\Windows\system32\drivers\msdsm.sys
17:14:55.0582 0x02dc msdsm - ok
17:14:55.0598 0x02dc [ FD7520CC3A80C5FC8C48852BB24C6DED, C3F3D7A07FAB9AF38A2A00BF0DF6EEE18CA8FE26277BEC9D8ADB793F2CD5EC1F ] MSDTC C:\Windows\System32\msdtc.exe
17:14:55.0660 0x02dc MSDTC - ok
17:14:55.0676 0x02dc [ A9927F4A46B816C92F461ACB90CF8515, 753284F726F9B4D3E7322C75532244CA43714F00717C2019391FB36DEE0738C0 ] Msfs C:\Windows\system32\drivers\Msfs.sys
17:14:55.0676 0x02dc Msfs - ok
17:14:55.0692 0x02dc [ 0F400E306F385C56317357D6DEA56F62, C48FA8193787359902D20D869F5F602CD66D3C5D061A58DDB72F51EED433C4BC ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
17:14:55.0692 0x02dc msisadrv - ok
17:14:55.0738 0x02dc [ 85466C0757A23D9A9AECDC0755203CB2, 79141B8DF9D7470466872AF03A85C3D3976512BFDBDB8B92A22225DC8EFD70A6 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
17:14:55.0770 0x02dc MSiSCSI - ok
17:14:55.0770 0x02dc msiserver - ok
17:14:55.0801 0x02dc [ D8C63D34D9C9E56C059E24EC7185CC07, D0CBFB8D57E6D908679DC0488ED659CA35B92626DEA890873E165F051A1AD2AE ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
17:14:55.0801 0x02dc MSKSSRV - ok
17:14:55.0832 0x02dc [ 1D373C90D62DDB641D50E55B9E78D65E, 1D4897A96EA54D6FAC7916D69B4E88CAE1397C38CC8FAE08554772808476357B ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
17:14:55.0832 0x02dc MSPCLOCK - ok
17:14:55.0848 0x02dc [ B572DA05BF4E098D4BBA3A4734FB505B, B7923F204CEADD0F62C2FE4B7CF8C56DAB70F88093B15C5692D0E61490CF4BAA ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
17:14:55.0848 0x02dc MSPQM - ok
17:14:55.0879 0x02dc [ B49456D70555DE905C311BCDA6EC6ADB, 8E40586B3A1FAE9996459E0261726C9DD6A8D5F575604868C45604613385C92F ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
17:14:55.0894 0x02dc MsRPC - ok
17:14:55.0926 0x02dc [ E384487CB84BE41D09711C30CA79646C, 520391DEE14D4D6C1EA99C7D31DD95D56B44D54CA3CD8E5C9855E9C0A04F026C ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
17:14:55.0926 0x02dc mssmbios - ok
17:14:55.0941 0x02dc [ 7199C1EEC1E4993CAF96B8C0A26BD58A, DD02DF8ED7AF5BB88BD2A91F38CE4C52432CB8044BDCBC41C320CD22B10B8A3B ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
17:14:55.0957 0x02dc MSTEE - ok
17:14:55.0988 0x02dc [ 97AFFA9D95FFE20EEE6229BC6BE166CF, 6E13230AF96A3A5C518EFA21B9B1833E3DE9D6DA05A6E664E305EF18B162E1B9 ] MTsensor C:\Windows\system32\DRIVERS\ATKACPI.sys
17:14:55.0988 0x02dc MTsensor - ok
17:14:56.0019 0x02dc [ 6A57B5733D4CB702C8EA4542E836B96C, 080FB0B01E949D24CDD6876125B3A72DA9F88845D8B9A1A425BCA99E7ACF6821 ] Mup C:\Windows\system32\Drivers\mup.sys
17:14:56.0035 0x02dc Mup - ok
17:14:56.0066 0x02dc [ E4EAF0C5C1B41B5C83386CF212CA9584, 5946C3DCE65A0DB164169A1775DFCA544AF4E1895ADF6916BB1653F373F8D9AF ] napagent C:\Windows\system32\qagentRT.dll
17:14:56.0144 0x02dc napagent - ok
17:14:56.0175 0x02dc [ 85C44FDFF9CF7E72A40DCB7EC06A4416, DC37C99C458CA69B33BFD3894187089E947F4F9C01EC2ED024FA8614989E0956 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
17:14:56.0191 0x02dc NativeWifiP - ok
17:14:56.0253 0x02dc [ 1357274D1883F68300AEADD15D7BBB42, EE6352CBF0D9D633816F338159CDA27F1A805C3DDC3402D8605B50D8F3CD3300 ] NDIS C:\Windows\system32\drivers\ndis.sys
17:14:56.0269 0x02dc NDIS - ok
17:14:56.0300 0x02dc [ 0E186E90404980569FB449BA7519AE61, DE41791D9D3074007D6DD1D3933E7A2A13E3789D0AD4F029105B58279622FC1B ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
17:14:56.0300 0x02dc NdisTapi - ok
17:14:56.0316 0x02dc [ D6973AA34C4D5D76C0430B181C3CD389, 7C303F3D6BFF8B82E39998135B444837091AB1F9EB8F28D013E5EF45DB237EFC ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
17:14:56.0331 0x02dc Ndisuio - ok
17:14:56.0347 0x02dc [ 818F648618AE34F729FDB47EC68345C3, 5FC8F9237BD7FCE3C62D5BDDD49DC104BE2BECDC2FA8CDC1DB8F1891CBAA9140 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
17:14:56.0347 0x02dc NdisWan - ok
17:14:56.0378 0x02dc [ 71DAB552B41936358F3B541AE5997FB3, 30A8B3E33CBF04FC047254E404C0321F9028F2640036AA8AC1EA0A5E64551684 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
17:14:56.0378 0x02dc NDProxy - ok
17:14:56.0394 0x02dc [ BCD093A5A6777CF626434568DC7DBA78, 2A283DD93230361204EA0897864EAF0224CB8C02E025AE2E4237B07A598B3EBD ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
17:14:56.0409 0x02dc NetBIOS - ok
17:14:56.0440 0x02dc [ ECD64230A59CBD93C85F1CD1CAB9F3F6, 83650D756C1F2768A2AAAFC7924F2A4316ABAEB1708F4B05803CDDD699B5AB6F ] netbt C:\Windows\system32\DRIVERS\netbt.sys
17:14:56.0456 0x02dc netbt - ok
17:14:56.0456 0x02dc [ A3E186B4B935905B829219502557314E, 7F58EAC6C12208D792C77014AC9D37AD1A7B2E73863C914F5DA831A72E1D52BB ] Netlogon C:\Windows\system32\lsass.exe
17:14:56.0503 0x02dc Netlogon - ok
17:14:56.0550 0x02dc [ C8052711DAECC48B982434C5116CA401, 417DEB86D157DD3F0B4678410FE27FDD3E8FA04AB03AF398F6C02BF207070B35 ] Netman C:\Windows\System32\netman.dll
17:14:56.0612 0x02dc Netman - ok
17:14:56.0659 0x02dc [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
17:14:56.0690 0x02dc NetMsmqActivator - ok
17:14:56.0706 0x02dc [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetPipeActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
17:14:56.0706 0x02dc NetPipeActivator - ok
17:14:56.0737 0x02dc [ 2EF3BBE22E5A5ACD1428EE387A0D0172, 55DB91EDD0339D2434C06445F8A716A48EA90925B0FF7EBF45BB79D4B54B80BF ] netprofm C:\Windows\System32\netprofm.dll
17:14:56.0799 0x02dc netprofm - ok
17:14:56.0815 0x02dc [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetTcpActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
17:14:56.0830 0x02dc NetTcpActivator - ok
17:14:56.0846 0x02dc [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
17:14:56.0846 0x02dc NetTcpPortSharing - ok
17:14:56.0877 0x02dc [ 2E7FB731D4790A1BC6270ACCEFACB36E, EE9A00B694E8A3A5842CDC56C7BA1364317AC8134E046A0059661D057094B1A3 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
17:14:56.0893 0x02dc nfrd960 - ok
17:14:56.0908 0x02dc [ 2997B15415F9BBE05B5A4C1C85E0C6A2, 5455536515FE740E18E090329FDCC40288724372AD18ACDB2CB4BB9D85CF681E ] NlaSvc C:\Windows\System32\nlasvc.dll
17:14:56.0971 0x02dc NlaSvc - ok
17:14:57.0002 0x02dc [ D36F239D7CCE1931598E8FB90A0DBC26, DF9397411D0CE5A87E3346D4E6E25BEC537A21BCE196CC55FD999CD08FC4A637 ] Npfs C:\Windows\system32\drivers\Npfs.sys
17:14:57.0002 0x02dc Npfs - ok
17:14:57.0018 0x02dc [ 8BB86F0C7EEA2BDED6FE095D0B4CA9BD, 15CA178518EB3D457AA4C109D97A8490821590842AE4E9841703B5A55870C8F6 ] nsi C:\Windows\system32\nsisvc.dll
17:14:57.0080 0x02dc nsi - ok
17:14:57.0096 0x02dc [ 609773E344A97410CE4EBF74A8914FCF, 90B9CBD2B62854DD503DE4A910CB987D402368EB99882FE20FFB6DEACD70F2BD ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
17:14:57.0096 0x02dc nsiproxy - ok
17:14:57.0174 0x02dc [ 2C1121F2B87E9A6B12485DF53CD848C7, E580428F3BA7B201C6C7CFADF1F44A6ECA4F589EDB034DA14260136236195936 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
17:14:57.0205 0x02dc Ntfs - ok
17:14:57.0236 0x02dc [ E875C093AEC0C978A90F30C9E0DFBB72, D3A480CD7EF374EFBC1BB831B33B81534774DDDBB0FB338BEE1D444949FD8DE7 ] ntrigdigi C:\Windows\system32\drivers\ntrigdigi.sys
17:14:57.0252 0x02dc ntrigdigi - ok
17:14:57.0267 0x02dc [ C5DBBCDA07D780BDA9B685DF333BB41E, 3652893DFF05469A273C3073D8D0A9D6D6BBDEC7855FEA8EAB768F95BA674108 ] Null C:\Windows\system32\drivers\Null.sys
17:14:57.0283 0x02dc Null - ok
17:14:57.0298 0x02dc [ 2EDF9E7751554B42CBB60116DE727101, 37A0AA78E83DBB5A788F7F067EB71DDF6CCC72A66BB41B209E1A5E2F68F8AF9B ] nvraid C:\Windows\system32\drivers\nvraid.sys
17:14:57.0298 0x02dc nvraid - ok
17:14:57.0314 0x02dc [ ABED0C09758D1D97DB0042DBB2688177, 84B9BF886EF9181915E8AB6D971446BC681E6DE4485DBECD62838EAFA10E7F46 ] nvstor C:\Windows\system32\drivers\nvstor.sys
17:14:57.0330 0x02dc nvstor - ok
17:14:57.0345 0x02dc [ 18BBDF913916B71BD54575BDB6EEAC0B, 5FBA165149AB09E869DCE35622E91CFC964BDD22B31A5E76CF12F1565402B207 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
17:14:57.0361 0x02dc nv_agp - ok
17:14:57.0361 0x02dc NwlnkFlt - ok
17:14:57.0376 0x02dc NwlnkFwd - ok
17:14:57.0470 0x02dc [ 785F487A64950F3CB8E9F16253BA3B7B, 02445344BD214370A6D48B1CA04921D8EFCB13E676B5648266DD0E076C0822B6 ] odserv C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
17:14:57.0704 0x02dc odserv - ok
17:14:57.0751 0x02dc [ 790E27C3DB53410B40FF9EF2FD10A1D9, FD06F2702B8F7E04ECF1B6E88602F14301E7AE7FC44AD114282E580FAD530A9C ] ohci1394 C:\Windows\system32\DRIVERS\ohci1394.sys
17:14:57.0751 0x02dc ohci1394 - ok
17:14:57.0782 0x02dc [ 5A432A042DAE460ABE7199B758E8606C, 6E5D1F477D290905BE27CEBF9572BAC6B05FFEF2FAD901D3C8E11F665F8B9A71 ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
17:14:57.0798 0x02dc ose - ok
17:14:57.0860 0x02dc [ 0C8E8E61AD1EB0B250B846712C917506, 8F23657B90BFFCD7273B93EDA2D3768F35C1C5A313F22AE33452BE3B2A550649 ] p2pimsvc C:\Windows\system32\p2psvc.dll
17:14:57.0938 0x02dc p2pimsvc - ok
17:14:57.0969 0x02dc [ 0C8E8E61AD1EB0B250B846712C917506, 8F23657B90BFFCD7273B93EDA2D3768F35C1C5A313F22AE33452BE3B2A550649 ] p2psvc C:\Windows\system32\p2psvc.dll
17:14:58.0047 0x02dc p2psvc - ok
17:14:58.0094 0x02dc [ 0FA9B5055484649D63C303FE404E5F4D, ABF357001A5E7B21621560E74FA538E2D899C5111A6AAC784B5B12D9D819C6CD ] Parport C:\Windows\system32\drivers\parport.sys
17:14:58.0094 0x02dc Parport - ok
17:14:58.0125 0x02dc [ B9C2B89F08670E159F7181891E449CD9, BD48CE95CF4B75D1FD5FD379B2A8727BC000F2B6748B77636C6BDB0B37B0344A ] partmgr C:\Windows\system32\drivers\partmgr.sys
17:14:58.0141 0x02dc partmgr - ok
17:14:58.0172 0x02dc [ 4F9A6A8A31413180D0FCB279AD5D8112, DCE48BC6E3447403521BB9FBF727E629DEE45B69B8AE8CFEE1A67FECAE3CB9D3 ] Parvdm C:\Windows\system32\drivers\parvdm.sys
17:14:58.0172 0x02dc Parvdm - ok
17:14:58.0219 0x02dc [ C6276AD11F4BB49B58AA1ED88537F14A, 409E956AF994640DF8D062E5E41F87A6EE7EEE0335C191B582722A49322357CE ] PcaSvc C:\Windows\System32\pcasvc.dll
17:14:58.0281 0x02dc PcaSvc - ok
17:14:58.0328 0x02dc [ 941DC1D19E7E8620F40BBC206981EFDB, 156142A8B587131D2D47074CBFD0A31F69B3C27A8C74C8C4F29DFE7B53BBA802 ] pci C:\Windows\system32\drivers\pci.sys
17:14:58.0328 0x02dc pci - ok
17:14:58.0359 0x02dc [ FC175F5DDAB666D7F4D17449A547626F, 7D6108213D1AD3F97A3B83E491BCCC7D6F5BC72C32A182BDDE8736851A26C8D2 ] pciide C:\Windows\system32\drivers\pciide.sys
17:14:58.0359 0x02dc pciide - ok
17:14:58.0390 0x02dc [ 3BB2244F343B610C29C98035504C9B75, DA61EC2600199DFA32020D0484E9BBF5E0742E7C8C952370BF6FAF91C914A999 ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys
17:14:58.0406 0x02dc pcmcia - ok
17:14:58.0468 0x02dc [ 6349F6ED9C623B44B52EA3C63C831A92, 9EAA3ABD396870123107D6E1B758F56FDA378BD28B28DB8415AA470D24294F92 ] PEAUTH C:\Windows\system32\drivers\peauth.sys
17:14:58.0500 0x02dc PEAUTH - ok
17:14:58.0609 0x02dc [ B1689DF169143F57053F795390C99DB3, 887B8C76B34CABC68067C0F27CC4EEF02457A53634C96FE5B0FE9B99453BDBEF ] pla C:\Windows\system32\pla.dll
17:14:58.0734 0x02dc pla - ok
17:14:58.0765 0x02dc [ C5E7F8A996EC0A82D508FD9064A5569E, 416A93816CDF12DD42DEA796D37E6E2000D3172AAAB20D3EAD3B715DACD4B61F ] PlugPlay C:\Windows\system32\umpnpmgr.dll
17:14:58.0858 0x02dc PlugPlay - ok
17:14:58.0905 0x02dc [ 0C8E8E61AD1EB0B250B846712C917506, 8F23657B90BFFCD7273B93EDA2D3768F35C1C5A313F22AE33452BE3B2A550649 ] PNRPAutoReg C:\Windows\system32\p2psvc.dll
17:14:58.0983 0x02dc PNRPAutoReg - ok
17:14:59.0014 0x02dc [ 0C8E8E61AD1EB0B250B846712C917506, 8F23657B90BFFCD7273B93EDA2D3768F35C1C5A313F22AE33452BE3B2A550649 ] PNRPsvc C:\Windows\system32\p2psvc.dll
17:14:59.0092 0x02dc PNRPsvc - ok
17:14:59.0139 0x02dc [ D0494460421A03CD5225CCA0059AA146, FC30E90522C63F2A66D89381705712D2CDF07B2E029DF40C2DEBB2353E763E90 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
17:14:59.0186 0x02dc PolicyAgent - ok
17:14:59.0217 0x02dc [ ECFFFAEC0C1ECD8DBC77F39070EA1DB1, 6E4B188A4BFDBBCA51347BCCE2873F2D0F858398851B9B5129CB9F36A02E4354 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
17:14:59.0217 0x02dc PptpMiniport - ok
17:14:59.0248 0x02dc [ 2027293619DD0F047C584CF2E7DF4FFD, B7C172CCD08D8A30483D27536355ED1E5009B33629355B426470AFBA8542B394 ] Processor C:\Windows\system32\drivers\processr.sys
17:14:59.0264 0x02dc Processor - ok
17:14:59.0295 0x02dc [ 0508FAA222D28835310B7BFCA7A77346, 3AE2340C6E365F137CC00D9560069501DD2724756EA9EBF7A6CDFFC91B43709C ] ProfSvc C:\Windows\system32\profsvc.dll
17:14:59.0358 0x02dc ProfSvc - ok
Re: Prosim o kontrolu logu
17:14:59.0373 0x02dc [ A3E186B4B935905B829219502557314E, 7F58EAC6C12208D792C77014AC9D37AD1A7B2E73863C914F5DA831A72E1D52BB ] ProtectedStorage C:\Windows\system32\lsass.exe
17:14:59.0420 0x02dc ProtectedStorage - ok
17:14:59.0451 0x02dc [ 99514FAA8DF93D34B5589187DB3AA0BA, 4DDE5EC0C721B22E1D7D55ED3514B60EA07435C232A3A931BB49C7F486B52C18 ] PSched C:\Windows\system32\DRIVERS\pacer.sys
17:14:59.0451 0x02dc PSched - ok
17:14:59.0482 0x02dc [ 49452BFCEC22F36A7A9B9C2181BC3042, C01A2005E9897B142FF9BC6155770F70C19725C425E48D14239195E81E2E42D0 ] PxHelp20 C:\Windows\system32\Drivers\PxHelp20.sys
17:14:59.0482 0x02dc PxHelp20 - ok
17:14:59.0576 0x02dc [ 0A6DB55AFB7820C99AA1F3A1D270F4F6, 8B7D44A7698B95FE34CBBE4FAB2F01EC1F5BA86C2B19672F99767E650E99BF1C ] ql2300 C:\Windows\system32\drivers\ql2300.sys
17:14:59.0607 0x02dc ql2300 - ok
17:14:59.0623 0x02dc [ 81A7E5C076E59995D54BC1ED3A16E60B, A2988F065F93C41B3B389BFF3BB3FD69F768C2AF249C2356F315CC92E5C9E128 ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
17:14:59.0638 0x02dc ql40xx - ok
17:14:59.0685 0x02dc [ E9ECAE663F47E6CB43962D18AB18890F, F1A05320CAED9E745AA36A6DA9B64C48AAEDE888B42B249840CEB31448F7F432 ] QWAVE C:\Windows\system32\qwave.dll
17:14:59.0763 0x02dc QWAVE - ok
17:14:59.0779 0x02dc [ 9F5E0E1926014D17486901C88ECA2DB7, 67CDFB99AB546DCEEF20507EAC07DD52FFB51BFDFE9416ABEDDC1201B60D720E ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
17:14:59.0794 0x02dc QWAVEdrv - ok
17:14:59.0826 0x02dc [ 147D7F9C556D259924351FEB0DE606C3, E41EBA5F3098C6CF2BE4C0060A5F4BF161C3677D983B7A0D70ACC12FC3CFEFD7 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
17:14:59.0841 0x02dc RasAcd - ok
17:14:59.0872 0x02dc [ F6A452EB4CEADBB51C9E0EE6B3ECEF0F, 6A410ABCCD2211EFF511CDBF22E4152B57D2996336EBE711DFF71904AF232DB2 ] RasAuto C:\Windows\System32\rasauto.dll
17:14:59.0950 0x02dc RasAuto - ok
17:14:59.0982 0x02dc [ A214ADBAF4CB47DD2728859EF31F26B0, A24F37F55E2C018B1B4FA2C568A01AAAAEA1220833ED24A93378386174A70A32 ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
17:14:59.0982 0x02dc Rasl2tp - ok
17:15:00.0028 0x02dc [ 75D47445D70CA6F9F894B032FBC64FCF, 9112EA5D25F867136858524C7965ACCEDC02675D1E2985B950598D89CCF25E14 ] RasMan C:\Windows\System32\rasmans.dll
17:15:00.0106 0x02dc RasMan - ok
17:15:00.0122 0x02dc [ 509A98DD18AF4375E1FC40BC175F1DEF, CC7C278CA298CE102D871E34C176E73F903D6687D1E8B5AFAB8772C7DE1A60B1 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
17:15:00.0138 0x02dc RasPppoe - ok
17:15:00.0138 0x02dc [ 2005F4A1E05FA09389AC85840F0A9E4D, D8A664073FDE82F9AB324347024CDB7043635C84EB11C24C59AB384C52F0FD94 ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
17:15:00.0153 0x02dc RasSstp - ok
17:15:00.0184 0x02dc [ B14C9D5B9ADD2F84F70570BBBFAA7935, 3D533767A50554B86C769DF4D8841B3EA680B3807E85EA3533BDA9B649548269 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
17:15:00.0200 0x02dc rdbss - ok
17:15:00.0231 0x02dc [ 89E59BE9A564262A3FB6C4F4F1CD9899, 6F948FB0E73495CA60B7B19E758268495EC8A084C475EC59AD7940AA619570BB ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
17:15:00.0231 0x02dc RDPCDD - ok
17:15:00.0262 0x02dc [ FBC0BACD9C3D7F6956853F64A66E252D, 7672B10C7039295B152C02C96903E869FF2C0A88A2C3FA89BAE9F1D593B43569 ] rdpdr C:\Windows\system32\drivers\rdpdr.sys
17:15:00.0278 0x02dc rdpdr - ok
17:15:00.0294 0x02dc [ 9D91FE5286F748862ECFFA05F8A0710C, 33F37F1B207151A5564BF051BBF16F35D8C5A0F426CCA078A51F125BF09E487B ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
17:15:00.0294 0x02dc RDPENCDD - ok
17:15:00.0340 0x02dc [ C127EBD5AFAB31524662C48DFCEB773A, 40A6B88FEAFF02D1B5C0CA32F290CF3D9B48B85D248C7532F30CC5C09BAA4D89 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
17:15:00.0356 0x02dc RDPWD - ok
17:15:00.0403 0x02dc [ BCDD6B4804D06B1F7EBF29E53A57ECE9, 8A961CCD0A0265E03D9952C733B593B02B5CF64E308D6B420276D2D6B20F86FC ] RemoteAccess C:\Windows\System32\mprdim.dll
17:15:00.0450 0x02dc RemoteAccess - ok
17:15:00.0481 0x02dc [ 9E6894EA18DAFF37B63E1005F83AE4AB, 5D6DF994D297C875D547C7B111A571AA90D582DAECADE18A53F65AD988819E67 ] RemoteRegistry C:\Windows\system32\regsvc.dll
17:15:00.0543 0x02dc RemoteRegistry - ok
17:15:00.0606 0x02dc [ 06A49B7BDC36CFBF97DD90804F833369, 0E02B50F9F371162E18D5E4FFEF1669E9B5B75460618B10FD31E63F2ACC50A90 ] RichVideo C:\Program Files\CyberLink\Shared Files\RichVideo.exe
17:15:00.0621 0x02dc RichVideo - ok
17:15:00.0652 0x02dc [ C35CA13D3627EBD9DD12A23CE781BC3D, 2EFB90D13A0203CA7680ABC45618A0F6FD89DA49913D689C88C5EF5D7A0E2B45 ] rimmptsk C:\Windows\system32\DRIVERS\rimmptsk.sys
17:15:00.0668 0x02dc rimmptsk - ok
17:15:00.0684 0x02dc [ C398BCA91216755B098679A8DA8A2300, 1FDDC3D927509AB10C3B0B7900DCE78DEC6B1C3CAE80F78EFCFBB628673B2143 ] rimsptsk C:\Windows\system32\DRIVERS\rimsptsk.sys
17:15:00.0684 0x02dc rimsptsk - ok
17:15:00.0715 0x02dc [ 5123F83CBC4349D065534EEB6BBDC42B, 92A3F38EA924D83D601BB93E3750F9DBC2DD963FB7ACF2A0E776297E21815225 ] RpcLocator C:\Windows\system32\locator.exe
17:15:00.0762 0x02dc RpcLocator - ok
17:15:00.0808 0x02dc [ 3B5B4D53FEC14F7476CA29A20CC31AC9, EC02A412DA5FDE2C759A4A2C5904579E1CE7C4999CE87145812F354FC8F5E183 ] RpcSs C:\Windows\system32\rpcss.dll
17:15:00.0886 0x02dc RpcSs - ok
17:15:00.0902 0x02dc [ 9C508F4074A39E8B4B31D27198146FAD, 84913471E5A6C297B1EDABE45EF3FE7D2C4410EF04370F615109FD9E2690FFDB ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
17:15:00.0918 0x02dc rspndr - ok
17:15:00.0933 0x02dc [ 5C5612756B380BCEDBF566A780FF9AFE, 3889B162F96B298E5C570EC265B82D60CA4F11E87EF3594893B94578CAF927D9 ] RTL8023xp C:\Windows\system32\DRIVERS\Rtnicxp.sys
17:15:00.0949 0x02dc RTL8023xp - ok
17:15:00.0949 0x02dc [ A3E186B4B935905B829219502557314E, 7F58EAC6C12208D792C77014AC9D37AD1A7B2E73863C914F5DA831A72E1D52BB ] SamSs C:\Windows\system32\lsass.exe
17:15:00.0996 0x02dc SamSs - ok
17:15:01.0058 0x02dc [ 39763504067962108505BFF25F024345, 73C9710B61EDC7FBEDE1D7A767AA3D3A169E7AD012494D05CB5EE7E5C5752BB9 ] SASDIFSV C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS
17:15:01.0058 0x02dc SASDIFSV - ok
17:15:01.0074 0x02dc [ 77B9FC20084B48408AD3E87570EB4A85, B5BC5FEC1356DECB66A7A671DB67112BDAC8F942BF1C4B986B1805B41EF362B1 ] SASKUTIL C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS
17:15:01.0074 0x02dc SASKUTIL - ok
17:15:01.0120 0x02dc [ 3CE8F073A557E172B330109436984E30, CEC281C6076FAA1E34372CF419C6308E73811316606B8D0D9055B7D8952BDC88 ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
17:15:01.0136 0x02dc sbp2port - ok
17:15:01.0167 0x02dc [ 77B7A11A0C3D78D3386398FBBEA1B632, A3D290AB793BDC2F84C7B963300DFCE81CFE082A0FFF7489E8E5B14714892C00 ] SCardSvr C:\Windows\System32\SCardSvr.dll
17:15:01.0245 0x02dc SCardSvr - ok
17:15:01.0308 0x02dc [ 1A58069DB21D05EB2AB58EE5753EBE8D, EED8111EB613F4C93D1638C74FDB0A6DC6694E1B108DCD0D794B5B5F9B8C6EE4 ] Schedule C:\Windows\system32\schedsvc.dll
17:15:01.0386 0x02dc Schedule - ok
17:15:01.0417 0x02dc [ 312EC3E37A0A1F2006534913E37B4423, 81B8F462336791D162DAFA8092C1F437638DA3022CA24A2458B9FE183FC18C5D ] SCPolicySvc C:\Windows\System32\certprop.dll
17:15:01.0417 0x02dc SCPolicySvc - ok
17:15:01.0464 0x02dc [ 8F36B54688C31EED4580129040C6A3D3, DC150689CBAEEC94B9DE0CA6A633FAD16CDDDC452521232E0C2A44BAE61E08D9 ] sdbus C:\Windows\system32\DRIVERS\sdbus.sys
17:15:01.0479 0x02dc sdbus - ok
17:15:01.0510 0x02dc [ 716313D9F6B0529D03F726D5AAF6F191, 44FE994A11631C1D99C73026340BACE39973C65A1281D87A61B481C9B5FAB251 ] SDRSVC C:\Windows\System32\SDRSVC.dll
17:15:01.0588 0x02dc SDRSVC - ok
17:15:01.0604 0x02dc [ 90A3935D05B494A5A39D37E71F09A677, F72733A69BC6E1A2BB91D7632FF3463C12563F60FDCC00A2CDD67FF20D479952 ] secdrv C:\Windows\system32\drivers\secdrv.sys
17:15:01.0620 0x02dc secdrv - ok
17:15:01.0651 0x02dc [ FD5199D4D8A521005E4B5EE7FE00FA9B, 0FB7A1D300C72B1ADC423CC57343C17853E5F8ACFE3EA2C42FAC2FF72E502FBE ] seclogon C:\Windows\system32\seclogon.dll
17:15:01.0729 0x02dc seclogon - ok
17:15:01.0729 0x02dc [ A9BBAB5759771E523F55563D6CBE140F, 415BF6F6A1E4C5F98DABF9C2EEAF8CA49730693046E5F94C7655683717EDAD75 ] SENS C:\Windows\system32\sens.dll
17:15:01.0807 0x02dc SENS - ok
17:15:01.0838 0x02dc [ CE9EC966638EF0B10B864DDEDF62A099, 2DEC5A8C947D87C12B342F15B8A552A0D49B979A2AC32D2C97FC7A3A76C34524 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
17:15:01.0838 0x02dc Serenum - ok
17:15:01.0869 0x02dc [ 6D663022DB3E7058907784AE14B69898, 54263888C64A7F010D3B5E399369B0F3FF3AF0A0DE8ADB502B98277533E4D45F ] Serial C:\Windows\system32\DRIVERS\serial.sys
17:15:01.0885 0x02dc Serial - ok
17:15:01.0916 0x02dc [ 8AF3D28A879BF75DB53A0EE7A4289624, C870BEBB969DCD9170E64584D1CD329A193D9FC812A45EF3574891110CA68B45 ] sermouse C:\Windows\system32\drivers\sermouse.sys
17:15:01.0932 0x02dc sermouse - ok
17:15:01.0978 0x02dc [ D2193326F729B163125610DBF3E17D57, 82C894E24E2C139C884246A693AD37BBF0A4E9375B7F7A288EF1DB22F89434B9 ] SessionEnv C:\Windows\system32\sessenv.dll
17:15:02.0041 0x02dc SessionEnv - ok
17:15:02.0056 0x02dc [ 3EFA810BDCA87F6ECC24F9832243FE86, E50FEA94DB9851A46A8A71A8C061AC953A9D5B14585382B3F0FFC84931A0A68F ] sffdisk C:\Windows\system32\DRIVERS\sffdisk.sys
17:15:02.0072 0x02dc sffdisk - ok
17:15:02.0072 0x02dc [ E95D451F7EA3E583AEC75F3B3EE42DC5, B014BE4F9B0C79ECCE2537D1CF4AAD48ACB4C5AD3DACAC4444F0F465B9689921 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
17:15:02.0088 0x02dc sffp_mmc - ok
17:15:02.0103 0x02dc [ 9F66A46C55D6F1CCABC79BB7AFCCC545, 029115C69315D2298F7FC944A53EF7F120FF74919208EB5ABC190022176D9B16 ] sffp_sd C:\Windows\system32\DRIVERS\sffp_sd.sys
17:15:02.0119 0x02dc sffp_sd - ok
17:15:02.0134 0x02dc [ C33BFBD6E9E41FCD9FFEF9729E9FAED6, 490C29DC9E9FE8D5010E6DB18DE7DA808BCE84F014CFDEE0530735CBED788073 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys
17:15:02.0150 0x02dc sfloppy - ok
17:15:02.0181 0x02dc [ E1499BD0FF76B1B2FBBF1AF339D91165, 9A8F0403467E75880D3070C4D862489A75134383BAF8E7C45F8C5E7DFB0605A5 ] SharedAccess C:\Windows\System32\ipnathlp.dll
17:15:02.0228 0x02dc SharedAccess - ok
17:15:02.0259 0x02dc [ C7230FBEE14437716701C15BE02C27B8, 8221DE73D77CF71C2857D78829E807D015D9CB8BDEE4BAFD6950BF0C718CC774 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
17:15:02.0337 0x02dc ShellHWDetection - ok
17:15:02.0384 0x02dc [ 1D76624A09A054F682D746B924E2DBC3, DC903DD466AB8899883253F09477B02E4E93A31C8B279F9F02BD555F1AA083B7 ] sisagp C:\Windows\system32\drivers\sisagp.sys
17:15:02.0384 0x02dc sisagp - ok
17:15:02.0400 0x02dc [ 43CB7AA756C7DB280D01DA9B676CFDE2, 08484CAEA0518C0A4CCCD292D8C803B27FEC453537EE1E4CEE74A7208356A474 ] SiSRaid2 C:\Windows\system32\drivers\sisraid2.sys
17:15:02.0415 0x02dc SiSRaid2 - ok
17:15:02.0431 0x02dc [ A99C6C8B0BAA970D8AA59DDC50B57F94, 97AC9DD6DC4F58AC60E819B999BB157663EE7C1739521D16768AA9AC00DAD012 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
17:15:02.0446 0x02dc SiSRaid4 - ok
17:15:02.0680 0x02dc [ 9F712B26EE3B0242DE997A42FD302E2C, 12663EB108F158282A965EE70980627C2F2332BA7944D7DE03B78E18BEB87D26 ] Skype C2C Service C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
17:15:02.0774 0x02dc Skype C2C Service - ok
17:15:02.0868 0x02dc [ F5BBEDF602C310B00036EB2DBF4348A5, AC2712E639F0C54BCF00EB4E90E805335871EA27AE8A45DFC53EDF28822318C4 ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe
17:15:02.0868 0x02dc SkypeUpdate - ok
17:15:03.0055 0x02dc [ 862BB4CBC05D80C5B45BE430E5EF872F, F4961B22C93E472C8C862421AA231CDDA9E40D3958741A1D666357F22CC3143D ] slsvc C:\Windows\system32\SLsvc.exe
17:15:03.0226 0x02dc slsvc - ok
17:15:03.0273 0x02dc [ 6EDC422215CD78AA8A9CDE6B30ABBD35, D8342BC3152859F4F7512E85ABEC61147DBCAB515458644728874E42F639D6CA ] SLUINotify C:\Windows\system32\SLUINotify.dll
17:15:03.0351 0x02dc SLUINotify - ok
17:15:03.0382 0x02dc [ 7B75299A4D201D6A6533603D6914AB04, 172BE3951F06B1991EF70B71EB91786D1EFC4E381C22BCA3A5F622CD59F3227E ] Smb C:\Windows\system32\DRIVERS\smb.sys
17:15:03.0398 0x02dc Smb - ok
17:15:03.0460 0x02dc [ 34D634366FC57524F5932EAEC40E4FCB, B54B3BCF65800F23761C220CF9A9905196FB3228C611BFA90D4469DD039A3260 ] smserial C:\Windows\system32\DRIVERS\smserial.sys
17:15:03.0492 0x02dc smserial - ok
17:15:03.0538 0x02dc [ 2A146A055B4401C16EE62D18B8E2A032, D0930FFA53951C92F56E1ECB41374F4C0AA01ECBF99F474513A21EAD579CFE47 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
17:15:03.0601 0x02dc SNMPTRAP - ok
17:15:03.0632 0x02dc [ 7AEBDEEF071FE28B0EEF2CDD69102BFF, E03BEE733F4C2A5F39946D4955679A290E22758DFCE4222EE69ABF64FC54EDF7 ] spldr C:\Windows\system32\drivers\spldr.sys
17:15:03.0648 0x02dc spldr - ok
17:15:03.0663 0x02dc [ 739DB668DBD812285ECC553E64A5E212, 08E99CD042232CEB20BB5A808E914C9F2F0C154099BF921BA40E661B08472CF5 ] spmgr C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe
17:15:03.0663 0x02dc spmgr - ok
17:15:03.0694 0x02dc [ 8554097E5136C3BF9F69FE578A1B35F4, 2578545CFD647FB18F217B33C8CB4F0184A35F548659494056E455020CC15FB0 ] Spooler C:\Windows\System32\spoolsv.exe
17:15:03.0772 0x02dc Spooler - ok
17:15:03.0835 0x02dc [ CDDDEC541BC3C96F91ECB48759673505, B030FFA02832317AC5626BF1BF8A4A95A5992C9A6E81BC1C002D5F4D667C27FB ] sptd C:\Windows\system32\Drivers\sptd.sys
17:15:03.0850 0x02dc Suspicious file ( NoAccess ): C:\Windows\system32\Drivers\sptd.sys. md5: CDDDEC541BC3C96F91ECB48759673505, sha256: B030FFA02832317AC5626BF1BF8A4A95A5992C9A6E81BC1C002D5F4D667C27FB
17:15:03.0850 0x02dc sptd - detected LockedFile.Multi.Generic ( 1 )
17:15:08.0702 0x02dc Detect skipped due to KSN trusted
17:15:08.0702 0x02dc sptd - ok
17:15:08.0733 0x02dc [ 41987F9FC0E61ADF54F581E15029AD91, A46E718648C2DD3B43FC3798932C966315893A59442A0686CE46C605B9E4641E ] srv C:\Windows\system32\DRIVERS\srv.sys
17:15:08.0749 0x02dc srv - ok
17:15:08.0796 0x02dc [ FF33AFF99564B1AA534F58868CBE41EF, EFBB005DA19E5B320009CBF93E686D8BFA6A50A23B5A5001C7C84C7D85EF7D49 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
17:15:08.0811 0x02dc srv2 - ok
17:15:08.0811 0x02dc [ 7605C0E1D01A08F3ECD743F38B834A44, 83A77E31004BCF83443F30EFC290E04BB1A2F332E8DFD614AB6E25B527C92299 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
17:15:08.0827 0x02dc srvnet - ok
17:15:08.0858 0x02dc [ 03D50B37234967433A5EA5BA72BC0B62, 7B61D6A4BF5D446A9473D058BC207FB6DA7C2FEFB8083F3B66CAC8907DBD8327 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
17:15:08.0952 0x02dc SSDPSRV - ok
17:15:08.0998 0x02dc [ EF3458337D7341A05169CEFC73709264, C9D0AE966CFA02F7B72586C2A6E2AFA9818C9F4856A4E9625B79BC5A886FC193 ] SSPORT C:\Windows\system32\Drivers\SSPORT.sys
17:15:08.0998 0x02dc SSPORT - ok
17:15:09.0045 0x02dc [ 6F1A32E7B7B30F004D9A20AFADB14944, AA9D874A14CA4779E76701D2B02F4CCA92CD5917435FB4CACA149FCB2D1D4C4C ] SstpSvc C:\Windows\system32\sstpsvc.dll
17:15:09.0123 0x02dc SstpSvc - ok
17:15:09.0186 0x02dc [ 5DE7D67E49B88F5F07F3E53C4B92A352, 6930A598C35646646ED0E91633797EFE139AE6CDD0012335BD1340754A22F997 ] stisvc C:\Windows\System32\wiaservc.dll
17:15:09.0279 0x02dc stisvc - ok
17:15:09.0310 0x02dc [ 7BA58ECF0C0A9A69D44B3DCA62BECF56, 23CC47FA2D6E183D69DB0D3D3F3081A830D94A58FBC0A9A295B3A56C51E9486A ] swenum C:\Windows\system32\DRIVERS\swenum.sys
17:15:09.0326 0x02dc swenum - ok
17:15:09.0357 0x02dc [ F21FD248040681CCA1FB6C9A03AAA93D, 32FE765841A183A1F2C1ACACBBF8CDB11E7D4D4396F9C9F6CFF1B51C9B620ED3 ] swprv C:\Windows\System32\swprv.dll
17:15:09.0451 0x02dc swprv - ok
17:15:09.0466 0x02dc [ 192AA3AC01DF071B541094F251DEED10, 5C6EB56D1C39F3717EB754A1B37C8A618BA4F2107F64048E985D71FA04D1AD05 ] Symc8xx C:\Windows\system32\drivers\symc8xx.sys
17:15:09.0482 0x02dc Symc8xx - ok
17:15:09.0513 0x02dc [ 8C8EB8C76736EBAF3B13B633B2E64125, A6C4845DDED81CCF4947612A4D6E42035136025BCD80812D2FF396927CAADEC5 ] Sym_hi C:\Windows\system32\drivers\sym_hi.sys
17:15:09.0513 0x02dc Sym_hi - ok
17:15:09.0544 0x02dc [ 8072AF52B5FD103BBBA387A1E49F62CB, D336A7D008D145619E79043EBF5D0D455086BA1FEF89612BC2EA11CC363D82B0 ] Sym_u3 C:\Windows\system32\drivers\sym_u3.sys
17:15:09.0560 0x02dc Sym_u3 - ok
17:15:09.0576 0x02dc [ 55F6E55CC2430CA8713387106FA79817, 721C86B806AEFBD4D7B368AE6E7A689A0F4B3B378B701D29D3DFE459066188F3 ] SynTP C:\Windows\system32\DRIVERS\SynTP.sys
17:15:09.0591 0x02dc SynTP - ok
17:15:09.0638 0x02dc [ 9A51B04E9886AA4EE90093586B0BA88D, 1666C29FBFA34174B506678C920636519051D03456A6DDCCD6FF708CAE5D9962 ] SysMain C:\Windows\system32\sysmain.dll
17:15:09.0747 0x02dc SysMain - ok
17:15:09.0778 0x02dc [ 2DCA225EAE15F42C0933E998EE0231C3, 67C7913E41854DFA3043426B7D59AA1FBBB9DE01A6E6904E40A696A7C61A5F98 ] TabletInputService C:\Windows\System32\TabSvc.dll
17:15:09.0856 0x02dc TabletInputService - ok
17:15:09.0888 0x02dc [ D7673E4B38CE21EE54C59EEEB65E2483, 330D0AD13F5008D8569CE8E5EA0BBD69F54F59FEB54FD903FA18D2849CEC6AF0 ] TapiSrv C:\Windows\System32\tapisrv.dll
17:15:09.0981 0x02dc TapiSrv - ok
17:15:09.0997 0x02dc [ CB05822CD9CC6C688168E113C603DBE7, 9DB8945BDC702BB13E9DE477F2D3CCA4CE0E9E8CE9B54CE1A25375F2A2C93F0E ] TBS C:\Windows\System32\tbssvc.dll
17:15:10.0075 0x02dc TBS - ok
17:15:10.0153 0x02dc [ D18D53974FD715D50FC76F9FFE1C830D, 50424BD5950D8FC7724A6E48AE5A39D6E727FAF326C31657C69F1DE13C1450E3 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
17:15:10.0184 0x02dc Tcpip - ok
17:15:10.0231 0x02dc [ D18D53974FD715D50FC76F9FFE1C830D, 50424BD5950D8FC7724A6E48AE5A39D6E727FAF326C31657C69F1DE13C1450E3 ] Tcpip6 C:\Windows\system32\DRIVERS\tcpip.sys
17:15:10.0262 0x02dc Tcpip6 - ok
17:15:10.0278 0x02dc [ 608C345A255D82A6289C2D468EB41FD7, 74ECFDD45DC3EB3AFAEF9C42B546241AA1D6ACB2F6591A76DDB8BB1768545889 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
17:15:10.0293 0x02dc tcpipreg - ok
17:15:10.0309 0x02dc [ 5DCF5E267BE67A1AE926F2DF77FBCC56, E00C0A03AEE579B51B39930A72F39F4EFFE7CDA37187B0AE90F4E001AD15473B ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
17:15:10.0324 0x02dc TDPIPE - ok
17:15:10.0340 0x02dc [ 389C63E32B3CEFED425B61ED92D3F021, E4718E290678F00995E754AE66F1027D227BFAB9E1A1D2AC8E4EAD27DC50CB17 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
17:15:10.0356 0x02dc TDTCP - ok
17:15:10.0371 0x02dc [ 76B06EB8A01FC8624D699E7045303E54, EC30F244B48A35622ED3EE91792F6A1517C5A50770FAB3945E7A945EB7AF28A8 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
17:15:10.0387 0x02dc tdx - ok
17:15:10.0418 0x02dc [ 3CAD38910468EAB9A6479E2F01DB43C7, 9D18C71EDF39743A0A592BC0873909D2B75B5B177B2672A865D1EEC0BFD2F61C ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
17:15:10.0434 0x02dc TermDD - ok
17:15:10.0480 0x02dc [ BB95DA09BEF6E7A131BFF3BA5032090D, BAF6997F8D944F85F0553957677866C7F22E72AA434BA45FFFB6CC41041070DC ] TermService C:\Windows\System32\termsrv.dll
17:15:10.0558 0x02dc TermService - ok
17:15:10.0590 0x02dc [ C7230FBEE14437716701C15BE02C27B8, 8221DE73D77CF71C2857D78829E807D015D9CB8BDEE4BAFD6950BF0C718CC774 ] Themes C:\Windows\system32\shsvcs.dll
17:15:10.0683 0x02dc Themes - ok
17:15:10.0683 0x02dc [ 1076FFCFFAAE8385FD62DFCB25AC4708, 8C5C106FCB018E019DEBA8E1A6AA170CD7A93293F27994F724EBC486238DA0AA ] THREADORDER C:\Windows\system32\mmcss.dll
17:15:10.0730 0x02dc THREADORDER - ok
17:15:10.0777 0x02dc [ EC74E77D0EB004BD3A809B5F8FB8C2CE, 1E4BBC58D0E35D79C764CF1BA73602C5E29A5A2393D40332801D533E445C6667 ] TrkWks C:\Windows\System32\trkwks.dll
17:15:10.0855 0x02dc TrkWks - ok
17:15:10.0902 0x02dc [ F2AEE22231046CAD8D2F94D2C0F9BEFB, 6D4068DD104EB80BA87C142276FA25F71336000ECD2679EE985C0436C162C1B0 ] trufos C:\Windows\system32\drivers\trufos.sys
17:15:10.0917 0x02dc trufos - ok
17:15:10.0964 0x02dc [ 97D9D6A04E3AD9B6C626B9931DB78DBA, 8E42133ED5EE5EEC414A8B11C1035385C6141E445EA9677F947D20768F25A877 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
17:15:10.0995 0x02dc TrustedInstaller - ok
17:15:11.0026 0x02dc [ F4EAA7ECBCB25DE901C9B7F2CDCDA0B3, 1CBB5106A32362ABDEE73BF170E205FE64DDBF826C5F6DFFCCD229F220B9C85E ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
17:15:11.0042 0x02dc tssecsrv - ok
17:15:11.0089 0x02dc [ 0BA6CB624CE327B6DB6DCAA3FD0A8578, 5ACD5E06EAE425FC373C62E08682DDDF5BFBF2CF6D2E7335FBB1287737AB0456 ] tStLib C:\Windows\system32\drivers\tStLib.sys
17:15:11.0089 0x02dc tStLib - ok
17:15:11.0136 0x02dc [ CAECC0120AC49E3D2F758B9169872D38, 80DB15ADF5F4FF78D0C7D5081B6C0E8F1E5125872B60D23C19DA8E62C9DAC9A8 ] tunmp C:\Windows\system32\DRIVERS\tunmp.sys
17:15:11.0151 0x02dc tunmp - ok
17:15:11.0182 0x02dc [ 300DB877AC094FEAB0BE7688C3454A9C, 3B36AA191FBE25B1A61150EAA2BDF8BA286DC4C052F6E98B0ED8202135553D8C ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
17:15:11.0198 0x02dc tunnel - ok
17:15:11.0214 0x02dc [ 7D33C4DB2CE363C8518D2DFCF533941F, C6A539AD31B0BD9F895E0A537783AA75D5760C8590D83BA832D59A9B090CA0E9 ] uagp35 C:\Windows\system32\drivers\uagp35.sys
17:15:11.0229 0x02dc uagp35 - ok
17:15:11.0260 0x02dc [ D9728AF68C4C7693CB100B8441CBDEC6, A2CEE1EE4EF17106349F4E6967F504354801934179FBB3F10B9A4E3C30BC28CE ] udfs C:\Windows\system32\DRIVERS\udfs.sys
17:15:11.0276 0x02dc udfs - ok
17:15:11.0307 0x02dc [ ECEF404F62863755951E09C802C94AD5, 5D92062B3E371F196774EBFE840C78501E55A244DB2A49703C7AC0141C7DABF1 ] UI0Detect C:\Windows\system32\UI0Detect.exe
17:15:11.0385 0x02dc UI0Detect - ok
17:15:11.0416 0x02dc [ B0ACFDC9E4AF279E9116C03E014B2B27, 455D30859E381361FF6EE8B01EDC22A2E66CD5EC22CA9F314E88009DB77A8BAF ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
17:15:11.0432 0x02dc uliagpkx - ok
17:15:11.0463 0x02dc [ 9224BB254F591DE4CA8D572A5F0D635C, C5E7B24587AC5A28ECA63300307AD95B8A846833340126AE378840A40E53C056 ] uliahci C:\Windows\system32\drivers\uliahci.sys
17:15:11.0479 0x02dc uliahci - ok
17:15:11.0494 0x02dc [ 8514D0E5CD0534467C5FC61BE94A569F, A6EFB967044F88335469DB3351587E31CEC659BB6A7D8ED45C68329232C31BB9 ] UlSata C:\Windows\system32\drivers\ulsata.sys
17:15:11.0510 0x02dc UlSata - ok
17:15:11.0526 0x02dc [ 38C3C6E62B157A6BC46594FADA45C62B, 44F87DC955CB4E35E0EB4C8B4E931472B33D97FE000C22370A06AD5EDCEFD0BA ] ulsata2 C:\Windows\system32\drivers\ulsata2.sys
17:15:11.0541 0x02dc ulsata2 - ok
17:15:11.0557 0x02dc [ 32CFF9F809AE9AED85464492BF3E32D2, 91AAA47AEF17F373276B01AC8FA823592A0C854541A7A9A3B78F2350DB964EBC ] umbus C:\Windows\system32\DRIVERS\umbus.sys
17:15:11.0572 0x02dc umbus - ok
17:15:11.0588 0x02dc [ 68308183F4AE0BE7BF8ECD07CB297999, 4444233CA3C42BEE50ED47553D4AE5A7C12D8F288D2FA4B2DAE1D9B9FEC1A72D ] upnphost C:\Windows\System32\upnphost.dll
17:15:11.0682 0x02dc upnphost - ok
17:15:11.0713 0x02dc [ 153722A7C13F39F2D622A6865A9F0E5F, C1274FBC3D52BEC0D2BDB055CBBE9E607AE803699DAB7FA2F1D1B3C048DC79E3 ] usbbus C:\Windows\system32\DRIVERS\lgusbbus.sys
17:15:11.0728 0x02dc usbbus - ok
17:15:11.0760 0x02dc [ AAB0B5F72D2D726FBFDC895A2902DE1D, 7824AF6E2ADEA23F208526F3A62AD1BACDBBDB23E58EB5806890B0761529C50F ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
17:15:11.0775 0x02dc usbccgp - ok
17:15:11.0806 0x02dc [ E9476E6C486E76BC4898074768FB7131, D14B8F69A511DC1F990A9C123C18689AFE59659BA8130D248D8D03E9BD2143B6 ] usbcir C:\Windows\system32\drivers\usbcir.sys
17:15:11.0822 0x02dc usbcir - ok
17:15:11.0869 0x02dc [ 76F4A87B58CF94D0FA3A8DD8A94AE27E, E536F23FB374A8DFCA37D0E6589ACE68C762D64D19843D5367B63A84274D6175 ] UsbDiag C:\Windows\system32\DRIVERS\lgusbdiag.sys
17:15:11.0869 0x02dc UsbDiag - ok
17:15:11.0916 0x02dc [ 153E8515CB86F8BB5D1A8B478EBF4BB2, 0F1F79BA7C32ACAAE69184A56E67D6E18E2E2F07E0BE23F266401431169DAE14 ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
17:15:11.0931 0x02dc usbehci - ok
17:15:11.0947 0x02dc [ 2AE6BCEBD85D31317E433733DAF25888, 7B2C0E8703D0275A620160E479166EB7AA31B0F146507603535CEBF0BA4684A4 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
17:15:11.0962 0x02dc usbhub - ok
17:15:11.0994 0x02dc [ 8D74ED44788D93133FFE4F116331FE35, C896DC90E7B3BF08830120070E99A2ACF4CA50826F5970351AA05127F47DC5E6 ] USBModem C:\Windows\system32\DRIVERS\lgusbmodem.sys
17:15:12.0009 0x02dc USBModem - ok
17:15:12.0025 0x02dc [ 38DBC7DD6CC5A72011F187425384388B, 456CFCD190035C3033709C8DC0F6DC4352BBF751D57C0C52DD04F8C301FEBACD ] usbohci C:\Windows\system32\drivers\usbohci.sys
17:15:12.0025 0x02dc usbohci - ok
17:15:12.0040 0x02dc [ E75C4B5269091D15A2E7DC0B6D35F2F5, B0A4141B69B66276890836DE98EB8BC790D35CE59FA503060593E8CC12AA106B ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
17:15:12.0056 0x02dc usbprint - ok
17:15:12.0087 0x02dc [ 1D714B8497CD68307806D5D3F60A5169, 1914D92ECE39995168E3C8F5A7694B7A94954DB299410A2781D1321C8E60C3D9 ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys
17:15:12.0103 0x02dc usbscan - ok
17:15:12.0134 0x02dc [ BE3DA31C191BC222D9AD503C5224F2AD, 201FB0FDBF423342202686DC0D8A3221B7798AE04C04A649D3441C257C733CE8 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
17:15:12.0150 0x02dc USBSTOR - ok
17:15:12.0181 0x02dc [ 44056325428A8E4C755830426E29878F, 95F182047746D352B7DC2B22298D5E58738E1B787C110D1DE841C026FB8A67EB ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys
17:15:12.0196 0x02dc usbuhci - ok
17:15:12.0212 0x02dc [ 73FF24E21B690625A58109637DDA0DF7, 62B1F9CD82678E2110D4BB5CC86EE8A7AB0757681443916620B6AAA1EF0DECEB ] usbvideo C:\Windows\system32\Drivers\usbvideo.sys
17:15:12.0228 0x02dc usbvideo - ok
17:15:12.0259 0x02dc [ 1509E705F3AC1D474C92454A5C2DD81F, 7F525921A3513224F8B093A16E19B4235B300349A14B0B86EE11B7473BA53337 ] UxSms C:\Windows\System32\uxsms.dll
17:15:12.0337 0x02dc UxSms - ok
17:15:12.0368 0x02dc [ CD88D1B7776DC17A119049742EC07EB4, 6B68B9EDB8C6BCB2644F1F004D5743E928509D12107D996F390A24A72E0AA528 ] vds C:\Windows\System32\vds.exe
17:15:12.0477 0x02dc vds - ok
17:15:12.0508 0x02dc [ 87B06E1F30B749A114F74622D013F8D4, 06C06EF87F7DC668D23B50AA5F419F62474ACF90E325E167491BF290286D6594 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
17:15:12.0524 0x02dc vga - ok
17:15:12.0540 0x02dc [ 2E93AC0A1D8C79D019DB6C51F036636C, 8B6F3B4EE90691A22788915AD0F99D8EE617750430A34E7CEB9AB4FB4E581755 ] VgaSave C:\Windows\System32\drivers\vga.sys
17:15:12.0555 0x02dc VgaSave - ok
17:15:12.0571 0x02dc [ 5D7159DEF58A800D5781BA3A879627BC, 499A8E51FDE61AE0D7C1812D1E5B331211A36BD095A4992C629B93DE6D80F4E6 ] viaagp C:\Windows\system32\drivers\viaagp.sys
17:15:12.0586 0x02dc viaagp - ok
17:15:12.0602 0x02dc [ C4F3A691B5BAD343E6249BD8C2D45DEE, 19DE07AD6CD51036FA8A6B8EE82F34D7F5264FF3A12CBE6E52BD036D0303E319 ] ViaC7 C:\Windows\system32\drivers\viac7.sys
17:15:12.0618 0x02dc ViaC7 - ok
17:15:12.0633 0x02dc [ AADF5587A4063F52C2C3FED7887426FC, 0A74791A236FDAFCD045CFB79A159245B94F7C2033E0CD830C1B76F0F994E06D ] viaide C:\Windows\system32\drivers\viaide.sys
17:15:12.0633 0x02dc viaide - ok
17:15:12.0649 0x02dc [ 69503668AC66C77C6CD7AF86FBDF8C43, 2CE407674A58313737073F02B9A617460BBA84B36C3A16D98AE5ED45279F5006 ] volmgr C:\Windows\system32\drivers\volmgr.sys
17:15:12.0664 0x02dc volmgr - ok
17:15:12.0696 0x02dc [ 23E41B834759917BFD6B9A0D625D0C28, 9F60992805262F936E8DA33610FDF60A191ECAFC08BBF657C8F9A21833C8EFC5 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
17:15:12.0711 0x02dc volmgrx - ok
17:15:12.0727 0x02dc [ 786DB5771F05EF300390399F626BF30A, 4A07BE5AEDBA4C15C2F9A91250F0488A0B0305C67BB7A037508D5CBF86D4E1B7 ] volsnap C:\Windows\system32\drivers\volsnap.sys
17:15:12.0742 0x02dc volsnap - ok
17:15:12.0758 0x02dc [ 587253E09325E6BF226B299774B728A9, C9F46197819C2A095456393C518A9B00B59ECDC54F464D038AA7F8DCCDB93CCF ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
17:15:12.0774 0x02dc vsmraid - ok
17:15:12.0836 0x02dc [ DB3D19F850C6EB32BDCB9BC0836ACDDB, D81FF1CDA87A2FE83EFD5B3FE01EFF940952F8BAEE70BEA3B2F6EF30E2121704 ] VSS C:\Windows\system32\vssvc.exe
17:15:12.0961 0x02dc VSS - ok
17:15:13.0008 0x02dc [ 96EA68B9EB310A69C25EBB0282B2B9DE, C76D3427F8A2953CB4D96BBA1523679CBE1BBF7FA821A35D2FBEB3E67AC6A10B ] W32Time C:\Windows\system32\w32time.dll
17:15:13.0101 0x02dc W32Time - ok
17:15:13.0148 0x02dc [ 48DFEE8F1AF7C8235D4E626F0C4FE031, A41D05BC0DA3C476C32E0A4DAF015DF7BADF28A03CE236D5596885FF1772F148 ] WacomPen C:\Windows\system32\drivers\wacompen.sys
17:15:13.0148 0x02dc WacomPen - ok
17:15:13.0179 0x02dc [ 55201897378CCA7AF8B5EFD874374A26, 350ADDCEFAA33E301027CFEA8DDE703F6FBD6E53624598CB2E7B671B9E48F7CC ] Wanarp C:\Windows\system32\DRIVERS\wanarp.sys
17:15:13.0195 0x02dc Wanarp - ok
17:15:13.0195 0x02dc [ 55201897378CCA7AF8B5EFD874374A26, 350ADDCEFAA33E301027CFEA8DDE703F6FBD6E53624598CB2E7B671B9E48F7CC ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
17:15:13.0210 0x02dc Wanarpv6 - ok
17:15:13.0257 0x02dc [ A3CD60FD826381B49F03832590E069AF, 213C5DB5E5D828264286FD7548527566D6160CCA780BC6853B7B28CECF329674 ] wcncsvc C:\Windows\System32\wcncsvc.dll
17:15:13.0351 0x02dc wcncsvc - ok
17:15:13.0382 0x02dc [ 11BCB7AFCDD7AADACB5746F544D3A9C7, 0370E20FD12ED713F94E5CD76F068F7A7A5E7F42416DD2A8A41249020DA7DA31 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
17:15:13.0460 0x02dc WcsPlugInService - ok
17:15:13.0491 0x02dc [ 78FE9542363F297B18C027B2D7E7C07F, 6BC3ED2A48EF41E1EE597FD58271DB12256EC013518663331CD0FBCB3FC415EE ] Wd C:\Windows\system32\drivers\wd.sys
17:15:13.0507 0x02dc Wd - ok
17:15:13.0554 0x02dc [ 25944D2CC49E0A6C581D02A74B7D6645, AF8FFAFEC07F1A6A3D4008E609E8E1D705A8DFCC7995C766E3946887203F7BEE ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
17:15:13.0585 0x02dc Wdf01000 - ok
17:15:13.0600 0x02dc [ ABFC76B48BB6C96E3338D8943C5D93B5, B5B22D445724D58641A53276063A4AA2A98F07B93865C86E94661EB31BD63511 ] WdiServiceHost C:\Windows\system32\wdi.dll
17:15:13.0678 0x02dc WdiServiceHost - ok
17:15:13.0694 0x02dc [ ABFC76B48BB6C96E3338D8943C5D93B5, B5B22D445724D58641A53276063A4AA2A98F07B93865C86E94661EB31BD63511 ] WdiSystemHost C:\Windows\system32\wdi.dll
17:15:13.0772 0x02dc WdiSystemHost - ok
17:15:13.0803 0x02dc [ 04C37D8107320312FBAE09926103D5E2, 1C6726A9871CBACB240AFA93E57781515F01758D43693DDA395EA683D97234F0 ] WebClient C:\Windows\System32\webclnt.dll
17:15:13.0897 0x02dc WebClient - ok
17:15:13.0944 0x02dc [ AE3736E7E8892241C23E4EBBB7453B60, 0F998116CC07CD719CB237EAE53BB16B2EDD6973828B9C1055EB981AEA0453D1 ] Wecsvc C:\Windows\system32\wecsvc.dll
17:15:14.0037 0x02dc Wecsvc - ok
17:15:14.0068 0x02dc [ 670FF720071ED741206D69BD995EA453, 4B96F5E3545F69AE9EBC75DC4AB27B87306D656EE526AE39E7EC7E2B6F83F7FD ] wercplsupport C:\Windows\System32\wercplsupport.dll
17:15:14.0146 0x02dc wercplsupport - ok
17:15:14.0193 0x02dc [ 32B88481D3B326DA6DEB07B1D03481E7, 821FBAF147E525ED15EB9391B16A96C6D5464841258B11F277EFB57A3BD50E37 ] WerSvc C:\Windows\System32\WerSvc.dll
17:15:14.0271 0x02dc WerSvc - ok
17:15:14.0349 0x02dc [ 4575AA12561C5648483403541D0D7F2B, 2DBB7904285F16E879E1662C4CC4DFAA420D5EB24DDFC4BAC0B7616F5F44649A ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll
17:15:14.0349 0x02dc WinDefend - ok
17:15:14.0365 0x02dc WinHttpAutoProxySvc - ok
17:15:14.0427 0x02dc [ 6B2A1D0E80110E3D04E6863C6E62FD8A, EE8BC7C378993EFE90273764C83119EBF331768CD7B24DE949233C74A51306C2 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
17:15:14.0614 0x02dc Winmgmt - ok
17:15:14.0692 0x02dc [ 7CFE68BDC065E55AA5E8421607037511, C2CE76D52AD4E31FC4216E94457DC16ABF65A5F3E883F0BD97AD387FB7574533 ] WinRM C:\Windows\system32\WsmSvc.dll
17:15:14.0833 0x02dc WinRM - ok
17:15:14.0895 0x02dc [ C008405E4FEEB069E30DA1D823910234, C392A7B5FEACB7D11A3A231C1AD65D533984E6E7429ECD3BFBF90A27E8DEB157 ] Wlansvc C:\Windows\System32\wlansvc.dll
17:15:15.0004 0x02dc Wlansvc - ok
17:15:15.0145 0x02dc [ 5144AE67D60EC653F97DDF3FEED29E77, F6238767284B2356A9F502E2ACCFAAC283FA13CBF238E98B5115A55179526B10 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
17:15:15.0207 0x02dc wlidsvc - ok
17:15:15.0223 0x02dc [ 2E7255D172DF0B8283CDFB7B433B864E, 60C786CF0EA4A29B309B9457F0496D5A0AF1F093FC2C5D88078865814B7DBBA3 ] WmiAcpi C:\Windows\system32\DRIVERS\wmiacpi.sys
17:15:15.0238 0x02dc WmiAcpi - ok
17:15:15.0270 0x02dc [ 43BE3875207DCB62A85C8C49970B66CC, 27169F2E8A30807794407DA8F80611E4287F940AAE2A1F00F547901872FB9703 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
17:15:15.0285 0x02dc wmiApSrv - ok
17:15:15.0363 0x02dc [ 3978704576A121A9204F8CC49A301A9B, 936CC13B90A183613BDA4081556C96D48CA415B5F65D61E18CB5F2E51EEBE59F ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
17:15:15.0410 0x02dc WMPNetworkSvc - ok
17:15:15.0457 0x02dc [ CFC5A04558F5070CEE3E3A7809F3FF52, 45899E04000E21C4E009BE8B6149F199A5B2E0512C657A525770BF9DBFED7D2B ] WPCSvc C:\Windows\System32\wpcsvc.dll
17:15:15.0550 0x02dc WPCSvc - ok
17:15:15.0582 0x02dc [ 801FBDB89D472B3C467EB112A0FC9246, C24053FA12732089384D3AF06C676FF201D282FC5AD56A42B6EE8BAED4379CB2 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
17:15:15.0675 0x02dc WPDBusEnum - ok
17:15:15.0722 0x02dc [ DE9D36F91A4DF3D911626643DEBF11EA, 8029ECE76E29276BFB6ED3387AC560A9A779AAF683A4416E96334FAF7BDBADA0 ] WpdUsb C:\Windows\system32\DRIVERS\wpdusb.sys
17:15:15.0738 0x02dc WpdUsb - ok
17:15:15.0800 0x02dc [ F8D3544ACBCE9110362119F7C10D848E, 31C49201A931751A36286874AC0B929D886F490D7CE48CCC9283850A56AD9FD9 ] WPFFontCache_v0400 C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
17:15:15.0862 0x02dc WPFFontCache_v0400 - ok
17:15:15.0894 0x02dc [ E3A3CB253C0EC2494D4A61F5E43A389C, 10BA8B102E31B961819E524FCA5FA817B588EC77FB26B4E176D0A5CFF11EDF79 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
17:15:15.0894 0x02dc ws2ifsl - ok
17:15:15.0940 0x02dc [ 1CA6C40261DDC0425987980D0CD2AAAB, 727C1E3A170316641F832A8D197EDA6D6EE1206E4ED7B741E5A4017B7F2F7B88 ] wscsvc C:\Windows\system32\wscsvc.dll
17:15:16.0034 0x02dc wscsvc - ok
17:15:16.0034 0x02dc WSearch - ok
17:15:16.0159 0x02dc [ FC3EC24FCE372C89423E015A2AC1A31E, 8D028182CF83667D3E4D148979972D208FA6D9B8540EE47A0A7831B770ECD257 ] wuauserv C:\Windows\system32\wuaueng.dll
17:15:16.0315 0x02dc wuauserv - ok
17:15:16.0362 0x02dc [ 06E6F32C8D0A3F66D956F57B43A2E070, 9A6BD96A28294B0372F16E13D652FD603308F64B74A56E41E0C68C5E8011F943 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
17:15:16.0377 0x02dc WudfPf - ok
17:15:16.0393 0x02dc [ 867C301E8B790040AE9CF6486E8041DF, D867D6498C987944D99508B2FAD6D6B749FA1EDFE8124B0863D4A642352F0855 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
17:15:16.0408 0x02dc WUDFRd - ok
17:15:16.0424 0x02dc [ FE47B7BC8EA320C2D9B5E5BF6E303765, 34518DBD1E9EA6E5DA62273B18613761E1D9C6B4E074A93C6D639FBAF02222EA ] wudfsvc C:\Windows\System32\WUDFSvc.dll
17:15:16.0533 0x02dc wudfsvc - ok
17:15:16.0580 0x02dc [ 7D1F3B131D503EF43EE594B5A2B9B427, 307DEC572FBC171D68ED098D73CB6F06754F26E51F8F7DB48035A8CF97AB37D0 ] yukonwlh C:\Windows\system32\DRIVERS\yk60x86.sys
17:15:16.0596 0x02dc yukonwlh - ok
17:15:16.0658 0x02dc ================ Scan global ===============================
17:15:16.0689 0x02dc [ F31EEBC1A1C81FD04005489CC3DCDFE7, 098C35ACFCCE1686C5A6DB6057001CBF8B06A863A0802CB2E9D793F4795F8CEE ] C:\Windows\system32\basesrv.dll
17:15:16.0736 0x02dc [ A508314231C49AEE86987CEA3EAECAD1, D29BCFA967C23C7264592576D62D95FA8C687E8662D19DCCC73653A9EFB6340D ] C:\Windows\system32\winsrv.dll
17:15:16.0861 0x02dc [ A508314231C49AEE86987CEA3EAECAD1, D29BCFA967C23C7264592576D62D95FA8C687E8662D19DCCC73653A9EFB6340D ] C:\Windows\system32\winsrv.dll
17:15:16.0986 0x02dc [ D4E6D91C1349B7BFB3599A6ADA56851B, 8748091BF27F05D28D45688E04DD9229A4B2E159209A64F457703F66A8CECE4D ] C:\Windows\system32\services.exe
17:15:17.0064 0x02dc [ Global ] - ok
17:15:17.0064 0x02dc ================ Scan MBR ==================================
17:15:17.0079 0x02dc [ 64B1E91C5C6C2157642651010728F90F ] \Device\Harddisk0\DR0
17:15:17.0594 0x02dc \Device\Harddisk0\DR0 - ok
17:15:17.0594 0x02dc ================ Scan VBR ==================================
17:15:17.0610 0x02dc [ 0BD04C52FDAF22800ECC8898E9F834CE ] \Device\Harddisk0\DR0\Partition1
17:15:17.0641 0x02dc \Device\Harddisk0\DR0\Partition1 - ok
17:15:17.0656 0x02dc [ BF49A0C0529436B9C978DD931AA19C04 ] \Device\Harddisk0\DR0\Partition2
17:15:17.0656 0x02dc \Device\Harddisk0\DR0\Partition2 - ok
17:15:17.0656 0x02dc Waiting for KSN requests completion. In queue: 99
17:15:18.0670 0x02dc Waiting for KSN requests completion. In queue: 99
17:15:19.0684 0x02dc Waiting for KSN requests completion. In queue: 99
17:15:20.0698 0x02dc Waiting for KSN requests completion. In queue: 99
17:15:21.0712 0x02dc Waiting for KSN requests completion. In queue: 99
17:15:22.0836 0x02dc Win FW state via NFP2: enabled
17:15:26.0860 0x02dc ============================================================
17:15:26.0860 0x02dc Scan finished
17:15:26.0860 0x02dc ============================================================
17:15:26.0876 0x0ef0 Detected object count: 0
17:15:26.0876 0x0ef0 Actual detected object count: 0
17:15:52.0912 0x0dc0 Deinitialize success
17:14:59.0420 0x02dc ProtectedStorage - ok
17:14:59.0451 0x02dc [ 99514FAA8DF93D34B5589187DB3AA0BA, 4DDE5EC0C721B22E1D7D55ED3514B60EA07435C232A3A931BB49C7F486B52C18 ] PSched C:\Windows\system32\DRIVERS\pacer.sys
17:14:59.0451 0x02dc PSched - ok
17:14:59.0482 0x02dc [ 49452BFCEC22F36A7A9B9C2181BC3042, C01A2005E9897B142FF9BC6155770F70C19725C425E48D14239195E81E2E42D0 ] PxHelp20 C:\Windows\system32\Drivers\PxHelp20.sys
17:14:59.0482 0x02dc PxHelp20 - ok
17:14:59.0576 0x02dc [ 0A6DB55AFB7820C99AA1F3A1D270F4F6, 8B7D44A7698B95FE34CBBE4FAB2F01EC1F5BA86C2B19672F99767E650E99BF1C ] ql2300 C:\Windows\system32\drivers\ql2300.sys
17:14:59.0607 0x02dc ql2300 - ok
17:14:59.0623 0x02dc [ 81A7E5C076E59995D54BC1ED3A16E60B, A2988F065F93C41B3B389BFF3BB3FD69F768C2AF249C2356F315CC92E5C9E128 ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
17:14:59.0638 0x02dc ql40xx - ok
17:14:59.0685 0x02dc [ E9ECAE663F47E6CB43962D18AB18890F, F1A05320CAED9E745AA36A6DA9B64C48AAEDE888B42B249840CEB31448F7F432 ] QWAVE C:\Windows\system32\qwave.dll
17:14:59.0763 0x02dc QWAVE - ok
17:14:59.0779 0x02dc [ 9F5E0E1926014D17486901C88ECA2DB7, 67CDFB99AB546DCEEF20507EAC07DD52FFB51BFDFE9416ABEDDC1201B60D720E ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
17:14:59.0794 0x02dc QWAVEdrv - ok
17:14:59.0826 0x02dc [ 147D7F9C556D259924351FEB0DE606C3, E41EBA5F3098C6CF2BE4C0060A5F4BF161C3677D983B7A0D70ACC12FC3CFEFD7 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
17:14:59.0841 0x02dc RasAcd - ok
17:14:59.0872 0x02dc [ F6A452EB4CEADBB51C9E0EE6B3ECEF0F, 6A410ABCCD2211EFF511CDBF22E4152B57D2996336EBE711DFF71904AF232DB2 ] RasAuto C:\Windows\System32\rasauto.dll
17:14:59.0950 0x02dc RasAuto - ok
17:14:59.0982 0x02dc [ A214ADBAF4CB47DD2728859EF31F26B0, A24F37F55E2C018B1B4FA2C568A01AAAAEA1220833ED24A93378386174A70A32 ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
17:14:59.0982 0x02dc Rasl2tp - ok
17:15:00.0028 0x02dc [ 75D47445D70CA6F9F894B032FBC64FCF, 9112EA5D25F867136858524C7965ACCEDC02675D1E2985B950598D89CCF25E14 ] RasMan C:\Windows\System32\rasmans.dll
17:15:00.0106 0x02dc RasMan - ok
17:15:00.0122 0x02dc [ 509A98DD18AF4375E1FC40BC175F1DEF, CC7C278CA298CE102D871E34C176E73F903D6687D1E8B5AFAB8772C7DE1A60B1 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
17:15:00.0138 0x02dc RasPppoe - ok
17:15:00.0138 0x02dc [ 2005F4A1E05FA09389AC85840F0A9E4D, D8A664073FDE82F9AB324347024CDB7043635C84EB11C24C59AB384C52F0FD94 ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
17:15:00.0153 0x02dc RasSstp - ok
17:15:00.0184 0x02dc [ B14C9D5B9ADD2F84F70570BBBFAA7935, 3D533767A50554B86C769DF4D8841B3EA680B3807E85EA3533BDA9B649548269 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
17:15:00.0200 0x02dc rdbss - ok
17:15:00.0231 0x02dc [ 89E59BE9A564262A3FB6C4F4F1CD9899, 6F948FB0E73495CA60B7B19E758268495EC8A084C475EC59AD7940AA619570BB ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
17:15:00.0231 0x02dc RDPCDD - ok
17:15:00.0262 0x02dc [ FBC0BACD9C3D7F6956853F64A66E252D, 7672B10C7039295B152C02C96903E869FF2C0A88A2C3FA89BAE9F1D593B43569 ] rdpdr C:\Windows\system32\drivers\rdpdr.sys
17:15:00.0278 0x02dc rdpdr - ok
17:15:00.0294 0x02dc [ 9D91FE5286F748862ECFFA05F8A0710C, 33F37F1B207151A5564BF051BBF16F35D8C5A0F426CCA078A51F125BF09E487B ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
17:15:00.0294 0x02dc RDPENCDD - ok
17:15:00.0340 0x02dc [ C127EBD5AFAB31524662C48DFCEB773A, 40A6B88FEAFF02D1B5C0CA32F290CF3D9B48B85D248C7532F30CC5C09BAA4D89 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
17:15:00.0356 0x02dc RDPWD - ok
17:15:00.0403 0x02dc [ BCDD6B4804D06B1F7EBF29E53A57ECE9, 8A961CCD0A0265E03D9952C733B593B02B5CF64E308D6B420276D2D6B20F86FC ] RemoteAccess C:\Windows\System32\mprdim.dll
17:15:00.0450 0x02dc RemoteAccess - ok
17:15:00.0481 0x02dc [ 9E6894EA18DAFF37B63E1005F83AE4AB, 5D6DF994D297C875D547C7B111A571AA90D582DAECADE18A53F65AD988819E67 ] RemoteRegistry C:\Windows\system32\regsvc.dll
17:15:00.0543 0x02dc RemoteRegistry - ok
17:15:00.0606 0x02dc [ 06A49B7BDC36CFBF97DD90804F833369, 0E02B50F9F371162E18D5E4FFEF1669E9B5B75460618B10FD31E63F2ACC50A90 ] RichVideo C:\Program Files\CyberLink\Shared Files\RichVideo.exe
17:15:00.0621 0x02dc RichVideo - ok
17:15:00.0652 0x02dc [ C35CA13D3627EBD9DD12A23CE781BC3D, 2EFB90D13A0203CA7680ABC45618A0F6FD89DA49913D689C88C5EF5D7A0E2B45 ] rimmptsk C:\Windows\system32\DRIVERS\rimmptsk.sys
17:15:00.0668 0x02dc rimmptsk - ok
17:15:00.0684 0x02dc [ C398BCA91216755B098679A8DA8A2300, 1FDDC3D927509AB10C3B0B7900DCE78DEC6B1C3CAE80F78EFCFBB628673B2143 ] rimsptsk C:\Windows\system32\DRIVERS\rimsptsk.sys
17:15:00.0684 0x02dc rimsptsk - ok
17:15:00.0715 0x02dc [ 5123F83CBC4349D065534EEB6BBDC42B, 92A3F38EA924D83D601BB93E3750F9DBC2DD963FB7ACF2A0E776297E21815225 ] RpcLocator C:\Windows\system32\locator.exe
17:15:00.0762 0x02dc RpcLocator - ok
17:15:00.0808 0x02dc [ 3B5B4D53FEC14F7476CA29A20CC31AC9, EC02A412DA5FDE2C759A4A2C5904579E1CE7C4999CE87145812F354FC8F5E183 ] RpcSs C:\Windows\system32\rpcss.dll
17:15:00.0886 0x02dc RpcSs - ok
17:15:00.0902 0x02dc [ 9C508F4074A39E8B4B31D27198146FAD, 84913471E5A6C297B1EDABE45EF3FE7D2C4410EF04370F615109FD9E2690FFDB ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
17:15:00.0918 0x02dc rspndr - ok
17:15:00.0933 0x02dc [ 5C5612756B380BCEDBF566A780FF9AFE, 3889B162F96B298E5C570EC265B82D60CA4F11E87EF3594893B94578CAF927D9 ] RTL8023xp C:\Windows\system32\DRIVERS\Rtnicxp.sys
17:15:00.0949 0x02dc RTL8023xp - ok
17:15:00.0949 0x02dc [ A3E186B4B935905B829219502557314E, 7F58EAC6C12208D792C77014AC9D37AD1A7B2E73863C914F5DA831A72E1D52BB ] SamSs C:\Windows\system32\lsass.exe
17:15:00.0996 0x02dc SamSs - ok
17:15:01.0058 0x02dc [ 39763504067962108505BFF25F024345, 73C9710B61EDC7FBEDE1D7A767AA3D3A169E7AD012494D05CB5EE7E5C5752BB9 ] SASDIFSV C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS
17:15:01.0058 0x02dc SASDIFSV - ok
17:15:01.0074 0x02dc [ 77B9FC20084B48408AD3E87570EB4A85, B5BC5FEC1356DECB66A7A671DB67112BDAC8F942BF1C4B986B1805B41EF362B1 ] SASKUTIL C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS
17:15:01.0074 0x02dc SASKUTIL - ok
17:15:01.0120 0x02dc [ 3CE8F073A557E172B330109436984E30, CEC281C6076FAA1E34372CF419C6308E73811316606B8D0D9055B7D8952BDC88 ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
17:15:01.0136 0x02dc sbp2port - ok
17:15:01.0167 0x02dc [ 77B7A11A0C3D78D3386398FBBEA1B632, A3D290AB793BDC2F84C7B963300DFCE81CFE082A0FFF7489E8E5B14714892C00 ] SCardSvr C:\Windows\System32\SCardSvr.dll
17:15:01.0245 0x02dc SCardSvr - ok
17:15:01.0308 0x02dc [ 1A58069DB21D05EB2AB58EE5753EBE8D, EED8111EB613F4C93D1638C74FDB0A6DC6694E1B108DCD0D794B5B5F9B8C6EE4 ] Schedule C:\Windows\system32\schedsvc.dll
17:15:01.0386 0x02dc Schedule - ok
17:15:01.0417 0x02dc [ 312EC3E37A0A1F2006534913E37B4423, 81B8F462336791D162DAFA8092C1F437638DA3022CA24A2458B9FE183FC18C5D ] SCPolicySvc C:\Windows\System32\certprop.dll
17:15:01.0417 0x02dc SCPolicySvc - ok
17:15:01.0464 0x02dc [ 8F36B54688C31EED4580129040C6A3D3, DC150689CBAEEC94B9DE0CA6A633FAD16CDDDC452521232E0C2A44BAE61E08D9 ] sdbus C:\Windows\system32\DRIVERS\sdbus.sys
17:15:01.0479 0x02dc sdbus - ok
17:15:01.0510 0x02dc [ 716313D9F6B0529D03F726D5AAF6F191, 44FE994A11631C1D99C73026340BACE39973C65A1281D87A61B481C9B5FAB251 ] SDRSVC C:\Windows\System32\SDRSVC.dll
17:15:01.0588 0x02dc SDRSVC - ok
17:15:01.0604 0x02dc [ 90A3935D05B494A5A39D37E71F09A677, F72733A69BC6E1A2BB91D7632FF3463C12563F60FDCC00A2CDD67FF20D479952 ] secdrv C:\Windows\system32\drivers\secdrv.sys
17:15:01.0620 0x02dc secdrv - ok
17:15:01.0651 0x02dc [ FD5199D4D8A521005E4B5EE7FE00FA9B, 0FB7A1D300C72B1ADC423CC57343C17853E5F8ACFE3EA2C42FAC2FF72E502FBE ] seclogon C:\Windows\system32\seclogon.dll
17:15:01.0729 0x02dc seclogon - ok
17:15:01.0729 0x02dc [ A9BBAB5759771E523F55563D6CBE140F, 415BF6F6A1E4C5F98DABF9C2EEAF8CA49730693046E5F94C7655683717EDAD75 ] SENS C:\Windows\system32\sens.dll
17:15:01.0807 0x02dc SENS - ok
17:15:01.0838 0x02dc [ CE9EC966638EF0B10B864DDEDF62A099, 2DEC5A8C947D87C12B342F15B8A552A0D49B979A2AC32D2C97FC7A3A76C34524 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
17:15:01.0838 0x02dc Serenum - ok
17:15:01.0869 0x02dc [ 6D663022DB3E7058907784AE14B69898, 54263888C64A7F010D3B5E399369B0F3FF3AF0A0DE8ADB502B98277533E4D45F ] Serial C:\Windows\system32\DRIVERS\serial.sys
17:15:01.0885 0x02dc Serial - ok
17:15:01.0916 0x02dc [ 8AF3D28A879BF75DB53A0EE7A4289624, C870BEBB969DCD9170E64584D1CD329A193D9FC812A45EF3574891110CA68B45 ] sermouse C:\Windows\system32\drivers\sermouse.sys
17:15:01.0932 0x02dc sermouse - ok
17:15:01.0978 0x02dc [ D2193326F729B163125610DBF3E17D57, 82C894E24E2C139C884246A693AD37BBF0A4E9375B7F7A288EF1DB22F89434B9 ] SessionEnv C:\Windows\system32\sessenv.dll
17:15:02.0041 0x02dc SessionEnv - ok
17:15:02.0056 0x02dc [ 3EFA810BDCA87F6ECC24F9832243FE86, E50FEA94DB9851A46A8A71A8C061AC953A9D5B14585382B3F0FFC84931A0A68F ] sffdisk C:\Windows\system32\DRIVERS\sffdisk.sys
17:15:02.0072 0x02dc sffdisk - ok
17:15:02.0072 0x02dc [ E95D451F7EA3E583AEC75F3B3EE42DC5, B014BE4F9B0C79ECCE2537D1CF4AAD48ACB4C5AD3DACAC4444F0F465B9689921 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
17:15:02.0088 0x02dc sffp_mmc - ok
17:15:02.0103 0x02dc [ 9F66A46C55D6F1CCABC79BB7AFCCC545, 029115C69315D2298F7FC944A53EF7F120FF74919208EB5ABC190022176D9B16 ] sffp_sd C:\Windows\system32\DRIVERS\sffp_sd.sys
17:15:02.0119 0x02dc sffp_sd - ok
17:15:02.0134 0x02dc [ C33BFBD6E9E41FCD9FFEF9729E9FAED6, 490C29DC9E9FE8D5010E6DB18DE7DA808BCE84F014CFDEE0530735CBED788073 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys
17:15:02.0150 0x02dc sfloppy - ok
17:15:02.0181 0x02dc [ E1499BD0FF76B1B2FBBF1AF339D91165, 9A8F0403467E75880D3070C4D862489A75134383BAF8E7C45F8C5E7DFB0605A5 ] SharedAccess C:\Windows\System32\ipnathlp.dll
17:15:02.0228 0x02dc SharedAccess - ok
17:15:02.0259 0x02dc [ C7230FBEE14437716701C15BE02C27B8, 8221DE73D77CF71C2857D78829E807D015D9CB8BDEE4BAFD6950BF0C718CC774 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
17:15:02.0337 0x02dc ShellHWDetection - ok
17:15:02.0384 0x02dc [ 1D76624A09A054F682D746B924E2DBC3, DC903DD466AB8899883253F09477B02E4E93A31C8B279F9F02BD555F1AA083B7 ] sisagp C:\Windows\system32\drivers\sisagp.sys
17:15:02.0384 0x02dc sisagp - ok
17:15:02.0400 0x02dc [ 43CB7AA756C7DB280D01DA9B676CFDE2, 08484CAEA0518C0A4CCCD292D8C803B27FEC453537EE1E4CEE74A7208356A474 ] SiSRaid2 C:\Windows\system32\drivers\sisraid2.sys
17:15:02.0415 0x02dc SiSRaid2 - ok
17:15:02.0431 0x02dc [ A99C6C8B0BAA970D8AA59DDC50B57F94, 97AC9DD6DC4F58AC60E819B999BB157663EE7C1739521D16768AA9AC00DAD012 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
17:15:02.0446 0x02dc SiSRaid4 - ok
17:15:02.0680 0x02dc [ 9F712B26EE3B0242DE997A42FD302E2C, 12663EB108F158282A965EE70980627C2F2332BA7944D7DE03B78E18BEB87D26 ] Skype C2C Service C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
17:15:02.0774 0x02dc Skype C2C Service - ok
17:15:02.0868 0x02dc [ F5BBEDF602C310B00036EB2DBF4348A5, AC2712E639F0C54BCF00EB4E90E805335871EA27AE8A45DFC53EDF28822318C4 ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe
17:15:02.0868 0x02dc SkypeUpdate - ok
17:15:03.0055 0x02dc [ 862BB4CBC05D80C5B45BE430E5EF872F, F4961B22C93E472C8C862421AA231CDDA9E40D3958741A1D666357F22CC3143D ] slsvc C:\Windows\system32\SLsvc.exe
17:15:03.0226 0x02dc slsvc - ok
17:15:03.0273 0x02dc [ 6EDC422215CD78AA8A9CDE6B30ABBD35, D8342BC3152859F4F7512E85ABEC61147DBCAB515458644728874E42F639D6CA ] SLUINotify C:\Windows\system32\SLUINotify.dll
17:15:03.0351 0x02dc SLUINotify - ok
17:15:03.0382 0x02dc [ 7B75299A4D201D6A6533603D6914AB04, 172BE3951F06B1991EF70B71EB91786D1EFC4E381C22BCA3A5F622CD59F3227E ] Smb C:\Windows\system32\DRIVERS\smb.sys
17:15:03.0398 0x02dc Smb - ok
17:15:03.0460 0x02dc [ 34D634366FC57524F5932EAEC40E4FCB, B54B3BCF65800F23761C220CF9A9905196FB3228C611BFA90D4469DD039A3260 ] smserial C:\Windows\system32\DRIVERS\smserial.sys
17:15:03.0492 0x02dc smserial - ok
17:15:03.0538 0x02dc [ 2A146A055B4401C16EE62D18B8E2A032, D0930FFA53951C92F56E1ECB41374F4C0AA01ECBF99F474513A21EAD579CFE47 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
17:15:03.0601 0x02dc SNMPTRAP - ok
17:15:03.0632 0x02dc [ 7AEBDEEF071FE28B0EEF2CDD69102BFF, E03BEE733F4C2A5F39946D4955679A290E22758DFCE4222EE69ABF64FC54EDF7 ] spldr C:\Windows\system32\drivers\spldr.sys
17:15:03.0648 0x02dc spldr - ok
17:15:03.0663 0x02dc [ 739DB668DBD812285ECC553E64A5E212, 08E99CD042232CEB20BB5A808E914C9F2F0C154099BF921BA40E661B08472CF5 ] spmgr C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe
17:15:03.0663 0x02dc spmgr - ok
17:15:03.0694 0x02dc [ 8554097E5136C3BF9F69FE578A1B35F4, 2578545CFD647FB18F217B33C8CB4F0184A35F548659494056E455020CC15FB0 ] Spooler C:\Windows\System32\spoolsv.exe
17:15:03.0772 0x02dc Spooler - ok
17:15:03.0835 0x02dc [ CDDDEC541BC3C96F91ECB48759673505, B030FFA02832317AC5626BF1BF8A4A95A5992C9A6E81BC1C002D5F4D667C27FB ] sptd C:\Windows\system32\Drivers\sptd.sys
17:15:03.0850 0x02dc Suspicious file ( NoAccess ): C:\Windows\system32\Drivers\sptd.sys. md5: CDDDEC541BC3C96F91ECB48759673505, sha256: B030FFA02832317AC5626BF1BF8A4A95A5992C9A6E81BC1C002D5F4D667C27FB
17:15:03.0850 0x02dc sptd - detected LockedFile.Multi.Generic ( 1 )
17:15:08.0702 0x02dc Detect skipped due to KSN trusted
17:15:08.0702 0x02dc sptd - ok
17:15:08.0733 0x02dc [ 41987F9FC0E61ADF54F581E15029AD91, A46E718648C2DD3B43FC3798932C966315893A59442A0686CE46C605B9E4641E ] srv C:\Windows\system32\DRIVERS\srv.sys
17:15:08.0749 0x02dc srv - ok
17:15:08.0796 0x02dc [ FF33AFF99564B1AA534F58868CBE41EF, EFBB005DA19E5B320009CBF93E686D8BFA6A50A23B5A5001C7C84C7D85EF7D49 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
17:15:08.0811 0x02dc srv2 - ok
17:15:08.0811 0x02dc [ 7605C0E1D01A08F3ECD743F38B834A44, 83A77E31004BCF83443F30EFC290E04BB1A2F332E8DFD614AB6E25B527C92299 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
17:15:08.0827 0x02dc srvnet - ok
17:15:08.0858 0x02dc [ 03D50B37234967433A5EA5BA72BC0B62, 7B61D6A4BF5D446A9473D058BC207FB6DA7C2FEFB8083F3B66CAC8907DBD8327 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
17:15:08.0952 0x02dc SSDPSRV - ok
17:15:08.0998 0x02dc [ EF3458337D7341A05169CEFC73709264, C9D0AE966CFA02F7B72586C2A6E2AFA9818C9F4856A4E9625B79BC5A886FC193 ] SSPORT C:\Windows\system32\Drivers\SSPORT.sys
17:15:08.0998 0x02dc SSPORT - ok
17:15:09.0045 0x02dc [ 6F1A32E7B7B30F004D9A20AFADB14944, AA9D874A14CA4779E76701D2B02F4CCA92CD5917435FB4CACA149FCB2D1D4C4C ] SstpSvc C:\Windows\system32\sstpsvc.dll
17:15:09.0123 0x02dc SstpSvc - ok
17:15:09.0186 0x02dc [ 5DE7D67E49B88F5F07F3E53C4B92A352, 6930A598C35646646ED0E91633797EFE139AE6CDD0012335BD1340754A22F997 ] stisvc C:\Windows\System32\wiaservc.dll
17:15:09.0279 0x02dc stisvc - ok
17:15:09.0310 0x02dc [ 7BA58ECF0C0A9A69D44B3DCA62BECF56, 23CC47FA2D6E183D69DB0D3D3F3081A830D94A58FBC0A9A295B3A56C51E9486A ] swenum C:\Windows\system32\DRIVERS\swenum.sys
17:15:09.0326 0x02dc swenum - ok
17:15:09.0357 0x02dc [ F21FD248040681CCA1FB6C9A03AAA93D, 32FE765841A183A1F2C1ACACBBF8CDB11E7D4D4396F9C9F6CFF1B51C9B620ED3 ] swprv C:\Windows\System32\swprv.dll
17:15:09.0451 0x02dc swprv - ok
17:15:09.0466 0x02dc [ 192AA3AC01DF071B541094F251DEED10, 5C6EB56D1C39F3717EB754A1B37C8A618BA4F2107F64048E985D71FA04D1AD05 ] Symc8xx C:\Windows\system32\drivers\symc8xx.sys
17:15:09.0482 0x02dc Symc8xx - ok
17:15:09.0513 0x02dc [ 8C8EB8C76736EBAF3B13B633B2E64125, A6C4845DDED81CCF4947612A4D6E42035136025BCD80812D2FF396927CAADEC5 ] Sym_hi C:\Windows\system32\drivers\sym_hi.sys
17:15:09.0513 0x02dc Sym_hi - ok
17:15:09.0544 0x02dc [ 8072AF52B5FD103BBBA387A1E49F62CB, D336A7D008D145619E79043EBF5D0D455086BA1FEF89612BC2EA11CC363D82B0 ] Sym_u3 C:\Windows\system32\drivers\sym_u3.sys
17:15:09.0560 0x02dc Sym_u3 - ok
17:15:09.0576 0x02dc [ 55F6E55CC2430CA8713387106FA79817, 721C86B806AEFBD4D7B368AE6E7A689A0F4B3B378B701D29D3DFE459066188F3 ] SynTP C:\Windows\system32\DRIVERS\SynTP.sys
17:15:09.0591 0x02dc SynTP - ok
17:15:09.0638 0x02dc [ 9A51B04E9886AA4EE90093586B0BA88D, 1666C29FBFA34174B506678C920636519051D03456A6DDCCD6FF708CAE5D9962 ] SysMain C:\Windows\system32\sysmain.dll
17:15:09.0747 0x02dc SysMain - ok
17:15:09.0778 0x02dc [ 2DCA225EAE15F42C0933E998EE0231C3, 67C7913E41854DFA3043426B7D59AA1FBBB9DE01A6E6904E40A696A7C61A5F98 ] TabletInputService C:\Windows\System32\TabSvc.dll
17:15:09.0856 0x02dc TabletInputService - ok
17:15:09.0888 0x02dc [ D7673E4B38CE21EE54C59EEEB65E2483, 330D0AD13F5008D8569CE8E5EA0BBD69F54F59FEB54FD903FA18D2849CEC6AF0 ] TapiSrv C:\Windows\System32\tapisrv.dll
17:15:09.0981 0x02dc TapiSrv - ok
17:15:09.0997 0x02dc [ CB05822CD9CC6C688168E113C603DBE7, 9DB8945BDC702BB13E9DE477F2D3CCA4CE0E9E8CE9B54CE1A25375F2A2C93F0E ] TBS C:\Windows\System32\tbssvc.dll
17:15:10.0075 0x02dc TBS - ok
17:15:10.0153 0x02dc [ D18D53974FD715D50FC76F9FFE1C830D, 50424BD5950D8FC7724A6E48AE5A39D6E727FAF326C31657C69F1DE13C1450E3 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
17:15:10.0184 0x02dc Tcpip - ok
17:15:10.0231 0x02dc [ D18D53974FD715D50FC76F9FFE1C830D, 50424BD5950D8FC7724A6E48AE5A39D6E727FAF326C31657C69F1DE13C1450E3 ] Tcpip6 C:\Windows\system32\DRIVERS\tcpip.sys
17:15:10.0262 0x02dc Tcpip6 - ok
17:15:10.0278 0x02dc [ 608C345A255D82A6289C2D468EB41FD7, 74ECFDD45DC3EB3AFAEF9C42B546241AA1D6ACB2F6591A76DDB8BB1768545889 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
17:15:10.0293 0x02dc tcpipreg - ok
17:15:10.0309 0x02dc [ 5DCF5E267BE67A1AE926F2DF77FBCC56, E00C0A03AEE579B51B39930A72F39F4EFFE7CDA37187B0AE90F4E001AD15473B ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
17:15:10.0324 0x02dc TDPIPE - ok
17:15:10.0340 0x02dc [ 389C63E32B3CEFED425B61ED92D3F021, E4718E290678F00995E754AE66F1027D227BFAB9E1A1D2AC8E4EAD27DC50CB17 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
17:15:10.0356 0x02dc TDTCP - ok
17:15:10.0371 0x02dc [ 76B06EB8A01FC8624D699E7045303E54, EC30F244B48A35622ED3EE91792F6A1517C5A50770FAB3945E7A945EB7AF28A8 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
17:15:10.0387 0x02dc tdx - ok
17:15:10.0418 0x02dc [ 3CAD38910468EAB9A6479E2F01DB43C7, 9D18C71EDF39743A0A592BC0873909D2B75B5B177B2672A865D1EEC0BFD2F61C ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
17:15:10.0434 0x02dc TermDD - ok
17:15:10.0480 0x02dc [ BB95DA09BEF6E7A131BFF3BA5032090D, BAF6997F8D944F85F0553957677866C7F22E72AA434BA45FFFB6CC41041070DC ] TermService C:\Windows\System32\termsrv.dll
17:15:10.0558 0x02dc TermService - ok
17:15:10.0590 0x02dc [ C7230FBEE14437716701C15BE02C27B8, 8221DE73D77CF71C2857D78829E807D015D9CB8BDEE4BAFD6950BF0C718CC774 ] Themes C:\Windows\system32\shsvcs.dll
17:15:10.0683 0x02dc Themes - ok
17:15:10.0683 0x02dc [ 1076FFCFFAAE8385FD62DFCB25AC4708, 8C5C106FCB018E019DEBA8E1A6AA170CD7A93293F27994F724EBC486238DA0AA ] THREADORDER C:\Windows\system32\mmcss.dll
17:15:10.0730 0x02dc THREADORDER - ok
17:15:10.0777 0x02dc [ EC74E77D0EB004BD3A809B5F8FB8C2CE, 1E4BBC58D0E35D79C764CF1BA73602C5E29A5A2393D40332801D533E445C6667 ] TrkWks C:\Windows\System32\trkwks.dll
17:15:10.0855 0x02dc TrkWks - ok
17:15:10.0902 0x02dc [ F2AEE22231046CAD8D2F94D2C0F9BEFB, 6D4068DD104EB80BA87C142276FA25F71336000ECD2679EE985C0436C162C1B0 ] trufos C:\Windows\system32\drivers\trufos.sys
17:15:10.0917 0x02dc trufos - ok
17:15:10.0964 0x02dc [ 97D9D6A04E3AD9B6C626B9931DB78DBA, 8E42133ED5EE5EEC414A8B11C1035385C6141E445EA9677F947D20768F25A877 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
17:15:10.0995 0x02dc TrustedInstaller - ok
17:15:11.0026 0x02dc [ F4EAA7ECBCB25DE901C9B7F2CDCDA0B3, 1CBB5106A32362ABDEE73BF170E205FE64DDBF826C5F6DFFCCD229F220B9C85E ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
17:15:11.0042 0x02dc tssecsrv - ok
17:15:11.0089 0x02dc [ 0BA6CB624CE327B6DB6DCAA3FD0A8578, 5ACD5E06EAE425FC373C62E08682DDDF5BFBF2CF6D2E7335FBB1287737AB0456 ] tStLib C:\Windows\system32\drivers\tStLib.sys
17:15:11.0089 0x02dc tStLib - ok
17:15:11.0136 0x02dc [ CAECC0120AC49E3D2F758B9169872D38, 80DB15ADF5F4FF78D0C7D5081B6C0E8F1E5125872B60D23C19DA8E62C9DAC9A8 ] tunmp C:\Windows\system32\DRIVERS\tunmp.sys
17:15:11.0151 0x02dc tunmp - ok
17:15:11.0182 0x02dc [ 300DB877AC094FEAB0BE7688C3454A9C, 3B36AA191FBE25B1A61150EAA2BDF8BA286DC4C052F6E98B0ED8202135553D8C ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
17:15:11.0198 0x02dc tunnel - ok
17:15:11.0214 0x02dc [ 7D33C4DB2CE363C8518D2DFCF533941F, C6A539AD31B0BD9F895E0A537783AA75D5760C8590D83BA832D59A9B090CA0E9 ] uagp35 C:\Windows\system32\drivers\uagp35.sys
17:15:11.0229 0x02dc uagp35 - ok
17:15:11.0260 0x02dc [ D9728AF68C4C7693CB100B8441CBDEC6, A2CEE1EE4EF17106349F4E6967F504354801934179FBB3F10B9A4E3C30BC28CE ] udfs C:\Windows\system32\DRIVERS\udfs.sys
17:15:11.0276 0x02dc udfs - ok
17:15:11.0307 0x02dc [ ECEF404F62863755951E09C802C94AD5, 5D92062B3E371F196774EBFE840C78501E55A244DB2A49703C7AC0141C7DABF1 ] UI0Detect C:\Windows\system32\UI0Detect.exe
17:15:11.0385 0x02dc UI0Detect - ok
17:15:11.0416 0x02dc [ B0ACFDC9E4AF279E9116C03E014B2B27, 455D30859E381361FF6EE8B01EDC22A2E66CD5EC22CA9F314E88009DB77A8BAF ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
17:15:11.0432 0x02dc uliagpkx - ok
17:15:11.0463 0x02dc [ 9224BB254F591DE4CA8D572A5F0D635C, C5E7B24587AC5A28ECA63300307AD95B8A846833340126AE378840A40E53C056 ] uliahci C:\Windows\system32\drivers\uliahci.sys
17:15:11.0479 0x02dc uliahci - ok
17:15:11.0494 0x02dc [ 8514D0E5CD0534467C5FC61BE94A569F, A6EFB967044F88335469DB3351587E31CEC659BB6A7D8ED45C68329232C31BB9 ] UlSata C:\Windows\system32\drivers\ulsata.sys
17:15:11.0510 0x02dc UlSata - ok
17:15:11.0526 0x02dc [ 38C3C6E62B157A6BC46594FADA45C62B, 44F87DC955CB4E35E0EB4C8B4E931472B33D97FE000C22370A06AD5EDCEFD0BA ] ulsata2 C:\Windows\system32\drivers\ulsata2.sys
17:15:11.0541 0x02dc ulsata2 - ok
17:15:11.0557 0x02dc [ 32CFF9F809AE9AED85464492BF3E32D2, 91AAA47AEF17F373276B01AC8FA823592A0C854541A7A9A3B78F2350DB964EBC ] umbus C:\Windows\system32\DRIVERS\umbus.sys
17:15:11.0572 0x02dc umbus - ok
17:15:11.0588 0x02dc [ 68308183F4AE0BE7BF8ECD07CB297999, 4444233CA3C42BEE50ED47553D4AE5A7C12D8F288D2FA4B2DAE1D9B9FEC1A72D ] upnphost C:\Windows\System32\upnphost.dll
17:15:11.0682 0x02dc upnphost - ok
17:15:11.0713 0x02dc [ 153722A7C13F39F2D622A6865A9F0E5F, C1274FBC3D52BEC0D2BDB055CBBE9E607AE803699DAB7FA2F1D1B3C048DC79E3 ] usbbus C:\Windows\system32\DRIVERS\lgusbbus.sys
17:15:11.0728 0x02dc usbbus - ok
17:15:11.0760 0x02dc [ AAB0B5F72D2D726FBFDC895A2902DE1D, 7824AF6E2ADEA23F208526F3A62AD1BACDBBDB23E58EB5806890B0761529C50F ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
17:15:11.0775 0x02dc usbccgp - ok
17:15:11.0806 0x02dc [ E9476E6C486E76BC4898074768FB7131, D14B8F69A511DC1F990A9C123C18689AFE59659BA8130D248D8D03E9BD2143B6 ] usbcir C:\Windows\system32\drivers\usbcir.sys
17:15:11.0822 0x02dc usbcir - ok
17:15:11.0869 0x02dc [ 76F4A87B58CF94D0FA3A8DD8A94AE27E, E536F23FB374A8DFCA37D0E6589ACE68C762D64D19843D5367B63A84274D6175 ] UsbDiag C:\Windows\system32\DRIVERS\lgusbdiag.sys
17:15:11.0869 0x02dc UsbDiag - ok
17:15:11.0916 0x02dc [ 153E8515CB86F8BB5D1A8B478EBF4BB2, 0F1F79BA7C32ACAAE69184A56E67D6E18E2E2F07E0BE23F266401431169DAE14 ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
17:15:11.0931 0x02dc usbehci - ok
17:15:11.0947 0x02dc [ 2AE6BCEBD85D31317E433733DAF25888, 7B2C0E8703D0275A620160E479166EB7AA31B0F146507603535CEBF0BA4684A4 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
17:15:11.0962 0x02dc usbhub - ok
17:15:11.0994 0x02dc [ 8D74ED44788D93133FFE4F116331FE35, C896DC90E7B3BF08830120070E99A2ACF4CA50826F5970351AA05127F47DC5E6 ] USBModem C:\Windows\system32\DRIVERS\lgusbmodem.sys
17:15:12.0009 0x02dc USBModem - ok
17:15:12.0025 0x02dc [ 38DBC7DD6CC5A72011F187425384388B, 456CFCD190035C3033709C8DC0F6DC4352BBF751D57C0C52DD04F8C301FEBACD ] usbohci C:\Windows\system32\drivers\usbohci.sys
17:15:12.0025 0x02dc usbohci - ok
17:15:12.0040 0x02dc [ E75C4B5269091D15A2E7DC0B6D35F2F5, B0A4141B69B66276890836DE98EB8BC790D35CE59FA503060593E8CC12AA106B ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
17:15:12.0056 0x02dc usbprint - ok
17:15:12.0087 0x02dc [ 1D714B8497CD68307806D5D3F60A5169, 1914D92ECE39995168E3C8F5A7694B7A94954DB299410A2781D1321C8E60C3D9 ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys
17:15:12.0103 0x02dc usbscan - ok
17:15:12.0134 0x02dc [ BE3DA31C191BC222D9AD503C5224F2AD, 201FB0FDBF423342202686DC0D8A3221B7798AE04C04A649D3441C257C733CE8 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
17:15:12.0150 0x02dc USBSTOR - ok
17:15:12.0181 0x02dc [ 44056325428A8E4C755830426E29878F, 95F182047746D352B7DC2B22298D5E58738E1B787C110D1DE841C026FB8A67EB ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys
17:15:12.0196 0x02dc usbuhci - ok
17:15:12.0212 0x02dc [ 73FF24E21B690625A58109637DDA0DF7, 62B1F9CD82678E2110D4BB5CC86EE8A7AB0757681443916620B6AAA1EF0DECEB ] usbvideo C:\Windows\system32\Drivers\usbvideo.sys
17:15:12.0228 0x02dc usbvideo - ok
17:15:12.0259 0x02dc [ 1509E705F3AC1D474C92454A5C2DD81F, 7F525921A3513224F8B093A16E19B4235B300349A14B0B86EE11B7473BA53337 ] UxSms C:\Windows\System32\uxsms.dll
17:15:12.0337 0x02dc UxSms - ok
17:15:12.0368 0x02dc [ CD88D1B7776DC17A119049742EC07EB4, 6B68B9EDB8C6BCB2644F1F004D5743E928509D12107D996F390A24A72E0AA528 ] vds C:\Windows\System32\vds.exe
17:15:12.0477 0x02dc vds - ok
17:15:12.0508 0x02dc [ 87B06E1F30B749A114F74622D013F8D4, 06C06EF87F7DC668D23B50AA5F419F62474ACF90E325E167491BF290286D6594 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
17:15:12.0524 0x02dc vga - ok
17:15:12.0540 0x02dc [ 2E93AC0A1D8C79D019DB6C51F036636C, 8B6F3B4EE90691A22788915AD0F99D8EE617750430A34E7CEB9AB4FB4E581755 ] VgaSave C:\Windows\System32\drivers\vga.sys
17:15:12.0555 0x02dc VgaSave - ok
17:15:12.0571 0x02dc [ 5D7159DEF58A800D5781BA3A879627BC, 499A8E51FDE61AE0D7C1812D1E5B331211A36BD095A4992C629B93DE6D80F4E6 ] viaagp C:\Windows\system32\drivers\viaagp.sys
17:15:12.0586 0x02dc viaagp - ok
17:15:12.0602 0x02dc [ C4F3A691B5BAD343E6249BD8C2D45DEE, 19DE07AD6CD51036FA8A6B8EE82F34D7F5264FF3A12CBE6E52BD036D0303E319 ] ViaC7 C:\Windows\system32\drivers\viac7.sys
17:15:12.0618 0x02dc ViaC7 - ok
17:15:12.0633 0x02dc [ AADF5587A4063F52C2C3FED7887426FC, 0A74791A236FDAFCD045CFB79A159245B94F7C2033E0CD830C1B76F0F994E06D ] viaide C:\Windows\system32\drivers\viaide.sys
17:15:12.0633 0x02dc viaide - ok
17:15:12.0649 0x02dc [ 69503668AC66C77C6CD7AF86FBDF8C43, 2CE407674A58313737073F02B9A617460BBA84B36C3A16D98AE5ED45279F5006 ] volmgr C:\Windows\system32\drivers\volmgr.sys
17:15:12.0664 0x02dc volmgr - ok
17:15:12.0696 0x02dc [ 23E41B834759917BFD6B9A0D625D0C28, 9F60992805262F936E8DA33610FDF60A191ECAFC08BBF657C8F9A21833C8EFC5 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
17:15:12.0711 0x02dc volmgrx - ok
17:15:12.0727 0x02dc [ 786DB5771F05EF300390399F626BF30A, 4A07BE5AEDBA4C15C2F9A91250F0488A0B0305C67BB7A037508D5CBF86D4E1B7 ] volsnap C:\Windows\system32\drivers\volsnap.sys
17:15:12.0742 0x02dc volsnap - ok
17:15:12.0758 0x02dc [ 587253E09325E6BF226B299774B728A9, C9F46197819C2A095456393C518A9B00B59ECDC54F464D038AA7F8DCCDB93CCF ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
17:15:12.0774 0x02dc vsmraid - ok
17:15:12.0836 0x02dc [ DB3D19F850C6EB32BDCB9BC0836ACDDB, D81FF1CDA87A2FE83EFD5B3FE01EFF940952F8BAEE70BEA3B2F6EF30E2121704 ] VSS C:\Windows\system32\vssvc.exe
17:15:12.0961 0x02dc VSS - ok
17:15:13.0008 0x02dc [ 96EA68B9EB310A69C25EBB0282B2B9DE, C76D3427F8A2953CB4D96BBA1523679CBE1BBF7FA821A35D2FBEB3E67AC6A10B ] W32Time C:\Windows\system32\w32time.dll
17:15:13.0101 0x02dc W32Time - ok
17:15:13.0148 0x02dc [ 48DFEE8F1AF7C8235D4E626F0C4FE031, A41D05BC0DA3C476C32E0A4DAF015DF7BADF28A03CE236D5596885FF1772F148 ] WacomPen C:\Windows\system32\drivers\wacompen.sys
17:15:13.0148 0x02dc WacomPen - ok
17:15:13.0179 0x02dc [ 55201897378CCA7AF8B5EFD874374A26, 350ADDCEFAA33E301027CFEA8DDE703F6FBD6E53624598CB2E7B671B9E48F7CC ] Wanarp C:\Windows\system32\DRIVERS\wanarp.sys
17:15:13.0195 0x02dc Wanarp - ok
17:15:13.0195 0x02dc [ 55201897378CCA7AF8B5EFD874374A26, 350ADDCEFAA33E301027CFEA8DDE703F6FBD6E53624598CB2E7B671B9E48F7CC ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
17:15:13.0210 0x02dc Wanarpv6 - ok
17:15:13.0257 0x02dc [ A3CD60FD826381B49F03832590E069AF, 213C5DB5E5D828264286FD7548527566D6160CCA780BC6853B7B28CECF329674 ] wcncsvc C:\Windows\System32\wcncsvc.dll
17:15:13.0351 0x02dc wcncsvc - ok
17:15:13.0382 0x02dc [ 11BCB7AFCDD7AADACB5746F544D3A9C7, 0370E20FD12ED713F94E5CD76F068F7A7A5E7F42416DD2A8A41249020DA7DA31 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
17:15:13.0460 0x02dc WcsPlugInService - ok
17:15:13.0491 0x02dc [ 78FE9542363F297B18C027B2D7E7C07F, 6BC3ED2A48EF41E1EE597FD58271DB12256EC013518663331CD0FBCB3FC415EE ] Wd C:\Windows\system32\drivers\wd.sys
17:15:13.0507 0x02dc Wd - ok
17:15:13.0554 0x02dc [ 25944D2CC49E0A6C581D02A74B7D6645, AF8FFAFEC07F1A6A3D4008E609E8E1D705A8DFCC7995C766E3946887203F7BEE ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
17:15:13.0585 0x02dc Wdf01000 - ok
17:15:13.0600 0x02dc [ ABFC76B48BB6C96E3338D8943C5D93B5, B5B22D445724D58641A53276063A4AA2A98F07B93865C86E94661EB31BD63511 ] WdiServiceHost C:\Windows\system32\wdi.dll
17:15:13.0678 0x02dc WdiServiceHost - ok
17:15:13.0694 0x02dc [ ABFC76B48BB6C96E3338D8943C5D93B5, B5B22D445724D58641A53276063A4AA2A98F07B93865C86E94661EB31BD63511 ] WdiSystemHost C:\Windows\system32\wdi.dll
17:15:13.0772 0x02dc WdiSystemHost - ok
17:15:13.0803 0x02dc [ 04C37D8107320312FBAE09926103D5E2, 1C6726A9871CBACB240AFA93E57781515F01758D43693DDA395EA683D97234F0 ] WebClient C:\Windows\System32\webclnt.dll
17:15:13.0897 0x02dc WebClient - ok
17:15:13.0944 0x02dc [ AE3736E7E8892241C23E4EBBB7453B60, 0F998116CC07CD719CB237EAE53BB16B2EDD6973828B9C1055EB981AEA0453D1 ] Wecsvc C:\Windows\system32\wecsvc.dll
17:15:14.0037 0x02dc Wecsvc - ok
17:15:14.0068 0x02dc [ 670FF720071ED741206D69BD995EA453, 4B96F5E3545F69AE9EBC75DC4AB27B87306D656EE526AE39E7EC7E2B6F83F7FD ] wercplsupport C:\Windows\System32\wercplsupport.dll
17:15:14.0146 0x02dc wercplsupport - ok
17:15:14.0193 0x02dc [ 32B88481D3B326DA6DEB07B1D03481E7, 821FBAF147E525ED15EB9391B16A96C6D5464841258B11F277EFB57A3BD50E37 ] WerSvc C:\Windows\System32\WerSvc.dll
17:15:14.0271 0x02dc WerSvc - ok
17:15:14.0349 0x02dc [ 4575AA12561C5648483403541D0D7F2B, 2DBB7904285F16E879E1662C4CC4DFAA420D5EB24DDFC4BAC0B7616F5F44649A ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll
17:15:14.0349 0x02dc WinDefend - ok
17:15:14.0365 0x02dc WinHttpAutoProxySvc - ok
17:15:14.0427 0x02dc [ 6B2A1D0E80110E3D04E6863C6E62FD8A, EE8BC7C378993EFE90273764C83119EBF331768CD7B24DE949233C74A51306C2 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
17:15:14.0614 0x02dc Winmgmt - ok
17:15:14.0692 0x02dc [ 7CFE68BDC065E55AA5E8421607037511, C2CE76D52AD4E31FC4216E94457DC16ABF65A5F3E883F0BD97AD387FB7574533 ] WinRM C:\Windows\system32\WsmSvc.dll
17:15:14.0833 0x02dc WinRM - ok
17:15:14.0895 0x02dc [ C008405E4FEEB069E30DA1D823910234, C392A7B5FEACB7D11A3A231C1AD65D533984E6E7429ECD3BFBF90A27E8DEB157 ] Wlansvc C:\Windows\System32\wlansvc.dll
17:15:15.0004 0x02dc Wlansvc - ok
17:15:15.0145 0x02dc [ 5144AE67D60EC653F97DDF3FEED29E77, F6238767284B2356A9F502E2ACCFAAC283FA13CBF238E98B5115A55179526B10 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
17:15:15.0207 0x02dc wlidsvc - ok
17:15:15.0223 0x02dc [ 2E7255D172DF0B8283CDFB7B433B864E, 60C786CF0EA4A29B309B9457F0496D5A0AF1F093FC2C5D88078865814B7DBBA3 ] WmiAcpi C:\Windows\system32\DRIVERS\wmiacpi.sys
17:15:15.0238 0x02dc WmiAcpi - ok
17:15:15.0270 0x02dc [ 43BE3875207DCB62A85C8C49970B66CC, 27169F2E8A30807794407DA8F80611E4287F940AAE2A1F00F547901872FB9703 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
17:15:15.0285 0x02dc wmiApSrv - ok
17:15:15.0363 0x02dc [ 3978704576A121A9204F8CC49A301A9B, 936CC13B90A183613BDA4081556C96D48CA415B5F65D61E18CB5F2E51EEBE59F ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
17:15:15.0410 0x02dc WMPNetworkSvc - ok
17:15:15.0457 0x02dc [ CFC5A04558F5070CEE3E3A7809F3FF52, 45899E04000E21C4E009BE8B6149F199A5B2E0512C657A525770BF9DBFED7D2B ] WPCSvc C:\Windows\System32\wpcsvc.dll
17:15:15.0550 0x02dc WPCSvc - ok
17:15:15.0582 0x02dc [ 801FBDB89D472B3C467EB112A0FC9246, C24053FA12732089384D3AF06C676FF201D282FC5AD56A42B6EE8BAED4379CB2 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
17:15:15.0675 0x02dc WPDBusEnum - ok
17:15:15.0722 0x02dc [ DE9D36F91A4DF3D911626643DEBF11EA, 8029ECE76E29276BFB6ED3387AC560A9A779AAF683A4416E96334FAF7BDBADA0 ] WpdUsb C:\Windows\system32\DRIVERS\wpdusb.sys
17:15:15.0738 0x02dc WpdUsb - ok
17:15:15.0800 0x02dc [ F8D3544ACBCE9110362119F7C10D848E, 31C49201A931751A36286874AC0B929D886F490D7CE48CCC9283850A56AD9FD9 ] WPFFontCache_v0400 C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
17:15:15.0862 0x02dc WPFFontCache_v0400 - ok
17:15:15.0894 0x02dc [ E3A3CB253C0EC2494D4A61F5E43A389C, 10BA8B102E31B961819E524FCA5FA817B588EC77FB26B4E176D0A5CFF11EDF79 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
17:15:15.0894 0x02dc ws2ifsl - ok
17:15:15.0940 0x02dc [ 1CA6C40261DDC0425987980D0CD2AAAB, 727C1E3A170316641F832A8D197EDA6D6EE1206E4ED7B741E5A4017B7F2F7B88 ] wscsvc C:\Windows\system32\wscsvc.dll
17:15:16.0034 0x02dc wscsvc - ok
17:15:16.0034 0x02dc WSearch - ok
17:15:16.0159 0x02dc [ FC3EC24FCE372C89423E015A2AC1A31E, 8D028182CF83667D3E4D148979972D208FA6D9B8540EE47A0A7831B770ECD257 ] wuauserv C:\Windows\system32\wuaueng.dll
17:15:16.0315 0x02dc wuauserv - ok
17:15:16.0362 0x02dc [ 06E6F32C8D0A3F66D956F57B43A2E070, 9A6BD96A28294B0372F16E13D652FD603308F64B74A56E41E0C68C5E8011F943 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
17:15:16.0377 0x02dc WudfPf - ok
17:15:16.0393 0x02dc [ 867C301E8B790040AE9CF6486E8041DF, D867D6498C987944D99508B2FAD6D6B749FA1EDFE8124B0863D4A642352F0855 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
17:15:16.0408 0x02dc WUDFRd - ok
17:15:16.0424 0x02dc [ FE47B7BC8EA320C2D9B5E5BF6E303765, 34518DBD1E9EA6E5DA62273B18613761E1D9C6B4E074A93C6D639FBAF02222EA ] wudfsvc C:\Windows\System32\WUDFSvc.dll
17:15:16.0533 0x02dc wudfsvc - ok
17:15:16.0580 0x02dc [ 7D1F3B131D503EF43EE594B5A2B9B427, 307DEC572FBC171D68ED098D73CB6F06754F26E51F8F7DB48035A8CF97AB37D0 ] yukonwlh C:\Windows\system32\DRIVERS\yk60x86.sys
17:15:16.0596 0x02dc yukonwlh - ok
17:15:16.0658 0x02dc ================ Scan global ===============================
17:15:16.0689 0x02dc [ F31EEBC1A1C81FD04005489CC3DCDFE7, 098C35ACFCCE1686C5A6DB6057001CBF8B06A863A0802CB2E9D793F4795F8CEE ] C:\Windows\system32\basesrv.dll
17:15:16.0736 0x02dc [ A508314231C49AEE86987CEA3EAECAD1, D29BCFA967C23C7264592576D62D95FA8C687E8662D19DCCC73653A9EFB6340D ] C:\Windows\system32\winsrv.dll
17:15:16.0861 0x02dc [ A508314231C49AEE86987CEA3EAECAD1, D29BCFA967C23C7264592576D62D95FA8C687E8662D19DCCC73653A9EFB6340D ] C:\Windows\system32\winsrv.dll
17:15:16.0986 0x02dc [ D4E6D91C1349B7BFB3599A6ADA56851B, 8748091BF27F05D28D45688E04DD9229A4B2E159209A64F457703F66A8CECE4D ] C:\Windows\system32\services.exe
17:15:17.0064 0x02dc [ Global ] - ok
17:15:17.0064 0x02dc ================ Scan MBR ==================================
17:15:17.0079 0x02dc [ 64B1E91C5C6C2157642651010728F90F ] \Device\Harddisk0\DR0
17:15:17.0594 0x02dc \Device\Harddisk0\DR0 - ok
17:15:17.0594 0x02dc ================ Scan VBR ==================================
17:15:17.0610 0x02dc [ 0BD04C52FDAF22800ECC8898E9F834CE ] \Device\Harddisk0\DR0\Partition1
17:15:17.0641 0x02dc \Device\Harddisk0\DR0\Partition1 - ok
17:15:17.0656 0x02dc [ BF49A0C0529436B9C978DD931AA19C04 ] \Device\Harddisk0\DR0\Partition2
17:15:17.0656 0x02dc \Device\Harddisk0\DR0\Partition2 - ok
17:15:17.0656 0x02dc Waiting for KSN requests completion. In queue: 99
17:15:18.0670 0x02dc Waiting for KSN requests completion. In queue: 99
17:15:19.0684 0x02dc Waiting for KSN requests completion. In queue: 99
17:15:20.0698 0x02dc Waiting for KSN requests completion. In queue: 99
17:15:21.0712 0x02dc Waiting for KSN requests completion. In queue: 99
17:15:22.0836 0x02dc Win FW state via NFP2: enabled
17:15:26.0860 0x02dc ============================================================
17:15:26.0860 0x02dc Scan finished
17:15:26.0860 0x02dc ============================================================
17:15:26.0876 0x0ef0 Detected object count: 0
17:15:26.0876 0x0ef0 Actual detected object count: 0
17:15:52.0912 0x0dc0 Deinitialize success
- Orcus
- člen Security týmu
-
Elite Level 10.5
- Příspěvky: 10645
- Registrován: duben 10
- Bydliště: Okolo rostou 3 růže =o)
- Pohlaví:
- Stav:
Offline
Re: Prosim o kontrolu logu
Vypni rezidentní štít antiviru a antispywaru
Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud bude po kontrole problém spustit aplikace nebo bude vyskakovat hláška o pokusu použít neplatnou operaci na klíč registru, který je označen pro odstranění, stačí restartovat počítač.
Pokud budou problémy , spusť v nouz. režimu.
Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud bude po kontrole problém spustit aplikace nebo bude vyskakovat hláška o pokusu použít neplatnou operaci na klíč registru, který je označen pro odstranění, stačí restartovat počítač.
Pokud budou problémy , spusť v nouz. režimu.
Láska hřeje, ale uhlí je uhlí.
Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.
Pár rad k bezpečnosti PC.
Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix
Pokud budete spokojeni , můžete podpořit naše fórum.

Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.
Pár rad k bezpečnosti PC.
Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix
Pokud budete spokojeni , můžete podpořit naše fórum.
Re: Prosim o kontrolu logu
ComboFix 14-05-19.01 - SYSTEM 24.05.2014 20:39:52.4.2 - x86
Microsoft® Windows Vista™ Home Basic 6.0.6002.2.1250.420.1029.18.2038.919 [GMT 2:00]
Spuštěný z: c:\users\Guest\Desktop\ComboFix.exe
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Vytvořen nový Bod Obnovení
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\windows\pkunzip.pif
c:\windows\pkzip.pif
c:\windows\system32\DEBUG.log
c:\windows\system32\drivers\etc\hosts.ics
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2014-04-24 do 2014-05-24 )))))))))))))))))))))))))))))))
.
.
2014-05-24 19:05 . 2014-05-24 19:05 -------- d-----w- c:\users\vercik\AppData\Local\temp
2014-05-24 19:05 . 2014-05-24 19:05 -------- d-----w- c:\users\Guest\AppData\Local\temp
2014-05-24 19:05 . 2014-05-24 19:05 -------- d-----w- c:\users\Default\AppData\Local\temp
2014-05-24 15:03 . 2014-05-24 18:26 -------- d-----w- c:\users\Guest\AppData\Local\CrashDumps
2014-05-24 10:32 . 2014-05-24 10:32 -------- d-----w- c:\users\Default\AppData\Local\Google
2014-05-24 09:57 . 2014-05-24 09:57 -------- d-----w- c:\windows\ERUNT
2014-05-24 07:39 . 2014-04-30 23:37 8073384 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{0CBD2AA0-A46D-44F9-A265-662B8EA980F6}\mpengine.dll
2014-05-23 21:38 . 2010-08-30 06:34 536576 ----a-w- c:\windows\system32\sqlite3.dll
2014-05-23 21:32 . 2014-05-23 21:32 -------- d-----w- c:\users\Guest\AppData\Local\GHISLER
2014-05-23 20:12 . 2014-05-23 20:12 -------- d-----w- c:\users\Guest\AppData\Roaming\GHISLER
2014-05-23 20:12 . 2014-05-23 20:12 -------- d-----w- c:\users\Default\AppData\Roaming\GHISLER
2014-05-22 22:08 . 2014-05-24 09:54 -------- d-----w- C:\AdwCleaner
2014-05-22 21:34 . 2014-05-24 10:59 110296 ----a-w- c:\windows\system32\drivers\MBAMSwissArmy.sys
2014-05-22 21:33 . 2014-05-22 21:33 -------- d-----w- c:\users\Default\AppData\Roaming\AVG
2014-05-22 21:32 . 2014-05-12 05:26 51928 ----a-w- c:\windows\system32\drivers\mwac.sys
2014-05-22 21:32 . 2014-05-12 05:25 74456 ----a-w- c:\windows\system32\drivers\mbamchameleon.sys
2014-05-22 21:32 . 2014-05-23 14:57 -------- d-----w- c:\program files\Malwarebytes Anti-Malware
2014-05-22 21:20 . 2014-05-22 21:20 -------- d-----w- c:\users\Guest\AppData\Roaming\Malwarebytes
2014-05-22 20:48 . 2014-05-22 20:48 -------- d-----w- c:\users\Guest\AppData\Roaming\SUPERAntiSpyware.com
2014-05-22 20:46 . 2014-05-22 20:46 -------- d-----w- c:\users\Default\AppData\Local\Opera Software
2014-05-22 20:46 . 2014-05-22 20:46 -------- d-----w- c:\users\Default\AppData\Roaming\SUPERAntiSpyware.com
2014-05-22 20:45 . 2014-05-22 20:45 -------- d-----w- c:\users\Default\AppData\Roaming\Opera Software
2014-05-22 20:43 . 2014-05-22 21:21 -------- d-----w- c:\program files\CCleaner
2014-05-22 20:18 . 2014-05-12 05:25 23256 ----a-w- c:\windows\system32\drivers\mbam.sys
2014-05-22 18:53 . 2014-05-22 18:53 -------- d-----w- c:\programdata\SUPERAntiSpyware.com
2014-05-22 12:58 . 2014-05-22 12:58 -------- d-----w- c:\users\Guest\AppData\Local\Google
2014-05-15 05:27 . 2014-05-05 23:14 2382848 ----a-w- c:\windows\system32\mshtml.tlb
2014-05-09 07:49 . 2014-05-09 07:49 -------- d-----w- c:\users\Guest\AppData\Roaming\OpenOffice.org
2014-05-08 19:26 . 2014-05-08 19:26 -------- d-----w- c:\users\Guest\AppData\Roaming\AVG
2014-05-08 19:22 . 2014-05-08 19:22 -------- d-----w- c:\users\Guest\AppData\Local\Opera Software
2014-05-08 19:22 . 2014-05-08 19:22 -------- d-----w- c:\users\Guest\AppData\Roaming\Opera Software
2014-05-08 19:01 . 2014-05-23 14:38 -------- d-----w- c:\users\TEMP
2014-04-25 12:44 . 2014-04-25 16:44 -------- d-----w- c:\users\vercik\AppData\Local\AVG SafeGuard toolbar
2014-04-25 12:44 . 2014-05-08 19:02 42784 ----a-w- c:\windows\system32\drivers\avgtpx86.sys
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-05-24 18:23 . 2008-10-28 10:46 45056 ----a-w- c:\windows\system32\acovcnt.exe
2014-05-14 08:50 . 2012-04-08 17:52 692400 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2014-05-14 08:50 . 2012-03-10 12:26 70832 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2014-03-31 20:46 . 2014-03-31 20:46 130712 ----a-w- c:\windows\system32\MSSTDFMT.DLL
2014-03-31 20:46 . 2014-03-31 20:46 1070232 ----a-w- c:\windows\system32\MSCOMCTL.OCX
2014-03-31 07:35 . 2009-10-02 18:08 231584 ------w- c:\windows\system32\MpSigStub.exe
2014-03-22 10:15 . 2014-03-22 10:15 55224 ----a-w- c:\windows\system32\drivers\tStLib.sys
2014-03-07 23:12 . 2014-04-22 20:15 1806848 ----a-w- c:\windows\system32\jscript9.dll
2014-03-07 23:02 . 2014-04-22 20:15 1427968 ----a-w- c:\windows\system32\inetcpl.cpl
2014-03-07 23:02 . 2014-04-22 20:15 1129472 ----a-w- c:\windows\system32\wininet.dll
2014-03-07 22:57 . 2014-04-22 20:15 142848 ----a-w- c:\windows\system32\ieUnatt.exe
2014-03-07 22:56 . 2014-04-22 20:15 421376 ----a-w- c:\windows\system32\vbscript.dll
2013-09-06 19:43 . 2013-09-06 19:43 116224 ----a-w- c:\program files\icsE07E.tmp
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ADSMOverlayIcon1]
@="{A8D448F4-0431-45AC-9F5E-E1B434AB2249}"
[HKEY_CLASSES_ROOT\CLSID\{A8D448F4-0431-45AC-9F5E-E1B434AB2249}]
2007-06-02 00:08 143360 ----a-w- c:\program files\ASUS\ASUS Data Security Manager\OverlayIconShlExt1.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SUPERAntiSpyware"="c:\program files\SUPERAntiSpyware\SUPERAntiSpyware.exe" [2014-01-06 5625624]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RemoteControl"="c:\program files\ASUSTek\ASUSDVD\PDVDServ.exe" [2008-04-03 87336]
"CLMLServer"="c:\program files\CyberLink\Power2Go\CLMLSvc.exe" [2008-07-19 104936]
"P2Go_Menu"="c:\program files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" [2008-06-14 210216]
"ATKOSD2"="c:\program files\ATKOSD2\ATKOSD2.exe" [2007-10-18 7737344]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2008-02-22 141848]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2008-02-22 166424]
"Persistence"="c:\windows\system32\igfxpers.exe" [2008-02-22 133656]
"RtHDVCpl"="RtHDVCpl.exe" [2007-10-31 4702208]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2007-12-06 1029416]
"OpwareSE4"="c:\program files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe" [2006-10-11 75304]
"Samsung PanelMgr"="c:\windows\Samsung\PanelMgr\SSMMgr.exe" [2010-10-28 618496]
"3200 Scan2PC"="c:\windows\twain_32\Samsung\SCX3200\Scan2Pc.exe" [2010-05-18 1989120]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"SUPERAntiSpyware"="c:\program files\SUPERAntiSpyware\SUPERAntiSpyware.exe" [2014-01-06 5625624]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
.
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2013-05-07 115440]
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]
@="Driver"
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]
@="Driver"
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
@="Service"
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
2012-12-03 07:35 946352 ----a-w- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
2008-12-29 10:40 687560 ----a-w- c:\program files\DAEMON Tools Lite\daemon.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Desktop Search]
2009-12-13 08:43 30192 ----a-w- c:\program files\Google\Google Desktop Search\GoogleDesktop.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LanguageShortcut]
2008-02-22 18:19 62760 ----a-w- c:\program files\ASUSTek\ASUSDVD\Language\Language.exe
.
S2 !SASCORE;SAS Core Service;c:\program files\SUPERAntiSpyware\SASCORE.EXE [2013-10-10 120088]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceNoNetwork REG_MULTI_SZ PLA DPS BFE mpssvc
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
MbnExt REG_MULTI_SZ MbnExt
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2014-05-23 20:59 1091912 ----a-w- c:\program files\Google\Chrome\Application\35.0.1916.114\Installer\chrmstp.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2014-05-24 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-08 08:50]
.
2014-05-24 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-11-03 14:59]
.
2014-05-24 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-11-03 14:59]
.
2014-05-24 c:\windows\Tasks\User_Feed_Synchronization-{308C1B8A-0EFD-474F-8A6B-6F01DD370226}.job
- c:\windows\system32\msfeedssync.exe [2013-02-04 18:00]
.
.
------- Doplňkový sken -------
.
mStart Page = hxxp://www.google.com
TCP: DhcpNameServer = 192.168.1.1
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2014-05-24 21:05
Windows 6.0.6002 Service Pack 2 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
.
C:\ADSM_PData_0150
.
sken byl úspešně dokončen
skryté soubory: 1
.
**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0007\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0008\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
Celkový čas: 2014-05-24 21:08:07
ComboFix-quarantined-files.txt 2014-05-24 19:08
.
Před spuštěním: 1 984 978 944
Po spuštění: 2 854 313 984
.
- - End Of File - - 4225F82370A8FD119F7A6341B60CE26C
64B1E91C5C6C2157642651010728F90F
Microsoft® Windows Vista™ Home Basic 6.0.6002.2.1250.420.1029.18.2038.919 [GMT 2:00]
Spuštěný z: c:\users\Guest\Desktop\ComboFix.exe
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Vytvořen nový Bod Obnovení
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\windows\pkunzip.pif
c:\windows\pkzip.pif
c:\windows\system32\DEBUG.log
c:\windows\system32\drivers\etc\hosts.ics
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2014-04-24 do 2014-05-24 )))))))))))))))))))))))))))))))
.
.
2014-05-24 19:05 . 2014-05-24 19:05 -------- d-----w- c:\users\vercik\AppData\Local\temp
2014-05-24 19:05 . 2014-05-24 19:05 -------- d-----w- c:\users\Guest\AppData\Local\temp
2014-05-24 19:05 . 2014-05-24 19:05 -------- d-----w- c:\users\Default\AppData\Local\temp
2014-05-24 15:03 . 2014-05-24 18:26 -------- d-----w- c:\users\Guest\AppData\Local\CrashDumps
2014-05-24 10:32 . 2014-05-24 10:32 -------- d-----w- c:\users\Default\AppData\Local\Google
2014-05-24 09:57 . 2014-05-24 09:57 -------- d-----w- c:\windows\ERUNT
2014-05-24 07:39 . 2014-04-30 23:37 8073384 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{0CBD2AA0-A46D-44F9-A265-662B8EA980F6}\mpengine.dll
2014-05-23 21:38 . 2010-08-30 06:34 536576 ----a-w- c:\windows\system32\sqlite3.dll
2014-05-23 21:32 . 2014-05-23 21:32 -------- d-----w- c:\users\Guest\AppData\Local\GHISLER
2014-05-23 20:12 . 2014-05-23 20:12 -------- d-----w- c:\users\Guest\AppData\Roaming\GHISLER
2014-05-23 20:12 . 2014-05-23 20:12 -------- d-----w- c:\users\Default\AppData\Roaming\GHISLER
2014-05-22 22:08 . 2014-05-24 09:54 -------- d-----w- C:\AdwCleaner
2014-05-22 21:34 . 2014-05-24 10:59 110296 ----a-w- c:\windows\system32\drivers\MBAMSwissArmy.sys
2014-05-22 21:33 . 2014-05-22 21:33 -------- d-----w- c:\users\Default\AppData\Roaming\AVG
2014-05-22 21:32 . 2014-05-12 05:26 51928 ----a-w- c:\windows\system32\drivers\mwac.sys
2014-05-22 21:32 . 2014-05-12 05:25 74456 ----a-w- c:\windows\system32\drivers\mbamchameleon.sys
2014-05-22 21:32 . 2014-05-23 14:57 -------- d-----w- c:\program files\Malwarebytes Anti-Malware
2014-05-22 21:20 . 2014-05-22 21:20 -------- d-----w- c:\users\Guest\AppData\Roaming\Malwarebytes
2014-05-22 20:48 . 2014-05-22 20:48 -------- d-----w- c:\users\Guest\AppData\Roaming\SUPERAntiSpyware.com
2014-05-22 20:46 . 2014-05-22 20:46 -------- d-----w- c:\users\Default\AppData\Local\Opera Software
2014-05-22 20:46 . 2014-05-22 20:46 -------- d-----w- c:\users\Default\AppData\Roaming\SUPERAntiSpyware.com
2014-05-22 20:45 . 2014-05-22 20:45 -------- d-----w- c:\users\Default\AppData\Roaming\Opera Software
2014-05-22 20:43 . 2014-05-22 21:21 -------- d-----w- c:\program files\CCleaner
2014-05-22 20:18 . 2014-05-12 05:25 23256 ----a-w- c:\windows\system32\drivers\mbam.sys
2014-05-22 18:53 . 2014-05-22 18:53 -------- d-----w- c:\programdata\SUPERAntiSpyware.com
2014-05-22 12:58 . 2014-05-22 12:58 -------- d-----w- c:\users\Guest\AppData\Local\Google
2014-05-15 05:27 . 2014-05-05 23:14 2382848 ----a-w- c:\windows\system32\mshtml.tlb
2014-05-09 07:49 . 2014-05-09 07:49 -------- d-----w- c:\users\Guest\AppData\Roaming\OpenOffice.org
2014-05-08 19:26 . 2014-05-08 19:26 -------- d-----w- c:\users\Guest\AppData\Roaming\AVG
2014-05-08 19:22 . 2014-05-08 19:22 -------- d-----w- c:\users\Guest\AppData\Local\Opera Software
2014-05-08 19:22 . 2014-05-08 19:22 -------- d-----w- c:\users\Guest\AppData\Roaming\Opera Software
2014-05-08 19:01 . 2014-05-23 14:38 -------- d-----w- c:\users\TEMP
2014-04-25 12:44 . 2014-04-25 16:44 -------- d-----w- c:\users\vercik\AppData\Local\AVG SafeGuard toolbar
2014-04-25 12:44 . 2014-05-08 19:02 42784 ----a-w- c:\windows\system32\drivers\avgtpx86.sys
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-05-24 18:23 . 2008-10-28 10:46 45056 ----a-w- c:\windows\system32\acovcnt.exe
2014-05-14 08:50 . 2012-04-08 17:52 692400 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2014-05-14 08:50 . 2012-03-10 12:26 70832 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2014-03-31 20:46 . 2014-03-31 20:46 130712 ----a-w- c:\windows\system32\MSSTDFMT.DLL
2014-03-31 20:46 . 2014-03-31 20:46 1070232 ----a-w- c:\windows\system32\MSCOMCTL.OCX
2014-03-31 07:35 . 2009-10-02 18:08 231584 ------w- c:\windows\system32\MpSigStub.exe
2014-03-22 10:15 . 2014-03-22 10:15 55224 ----a-w- c:\windows\system32\drivers\tStLib.sys
2014-03-07 23:12 . 2014-04-22 20:15 1806848 ----a-w- c:\windows\system32\jscript9.dll
2014-03-07 23:02 . 2014-04-22 20:15 1427968 ----a-w- c:\windows\system32\inetcpl.cpl
2014-03-07 23:02 . 2014-04-22 20:15 1129472 ----a-w- c:\windows\system32\wininet.dll
2014-03-07 22:57 . 2014-04-22 20:15 142848 ----a-w- c:\windows\system32\ieUnatt.exe
2014-03-07 22:56 . 2014-04-22 20:15 421376 ----a-w- c:\windows\system32\vbscript.dll
2013-09-06 19:43 . 2013-09-06 19:43 116224 ----a-w- c:\program files\icsE07E.tmp
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ADSMOverlayIcon1]
@="{A8D448F4-0431-45AC-9F5E-E1B434AB2249}"
[HKEY_CLASSES_ROOT\CLSID\{A8D448F4-0431-45AC-9F5E-E1B434AB2249}]
2007-06-02 00:08 143360 ----a-w- c:\program files\ASUS\ASUS Data Security Manager\OverlayIconShlExt1.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SUPERAntiSpyware"="c:\program files\SUPERAntiSpyware\SUPERAntiSpyware.exe" [2014-01-06 5625624]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RemoteControl"="c:\program files\ASUSTek\ASUSDVD\PDVDServ.exe" [2008-04-03 87336]
"CLMLServer"="c:\program files\CyberLink\Power2Go\CLMLSvc.exe" [2008-07-19 104936]
"P2Go_Menu"="c:\program files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" [2008-06-14 210216]
"ATKOSD2"="c:\program files\ATKOSD2\ATKOSD2.exe" [2007-10-18 7737344]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2008-02-22 141848]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2008-02-22 166424]
"Persistence"="c:\windows\system32\igfxpers.exe" [2008-02-22 133656]
"RtHDVCpl"="RtHDVCpl.exe" [2007-10-31 4702208]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2007-12-06 1029416]
"OpwareSE4"="c:\program files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe" [2006-10-11 75304]
"Samsung PanelMgr"="c:\windows\Samsung\PanelMgr\SSMMgr.exe" [2010-10-28 618496]
"3200 Scan2PC"="c:\windows\twain_32\Samsung\SCX3200\Scan2Pc.exe" [2010-05-18 1989120]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"SUPERAntiSpyware"="c:\program files\SUPERAntiSpyware\SUPERAntiSpyware.exe" [2014-01-06 5625624]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
.
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2013-05-07 115440]
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]
@="Driver"
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]
@="Driver"
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
@="Service"
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
2012-12-03 07:35 946352 ----a-w- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
2008-12-29 10:40 687560 ----a-w- c:\program files\DAEMON Tools Lite\daemon.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Desktop Search]
2009-12-13 08:43 30192 ----a-w- c:\program files\Google\Google Desktop Search\GoogleDesktop.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LanguageShortcut]
2008-02-22 18:19 62760 ----a-w- c:\program files\ASUSTek\ASUSDVD\Language\Language.exe
.
S2 !SASCORE;SAS Core Service;c:\program files\SUPERAntiSpyware\SASCORE.EXE [2013-10-10 120088]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceNoNetwork REG_MULTI_SZ PLA DPS BFE mpssvc
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
MbnExt REG_MULTI_SZ MbnExt
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2014-05-23 20:59 1091912 ----a-w- c:\program files\Google\Chrome\Application\35.0.1916.114\Installer\chrmstp.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2014-05-24 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-08 08:50]
.
2014-05-24 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-11-03 14:59]
.
2014-05-24 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-11-03 14:59]
.
2014-05-24 c:\windows\Tasks\User_Feed_Synchronization-{308C1B8A-0EFD-474F-8A6B-6F01DD370226}.job
- c:\windows\system32\msfeedssync.exe [2013-02-04 18:00]
.
.
------- Doplňkový sken -------
.
mStart Page = hxxp://www.google.com
TCP: DhcpNameServer = 192.168.1.1
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2014-05-24 21:05
Windows 6.0.6002 Service Pack 2 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
.
C:\ADSM_PData_0150
.
sken byl úspešně dokončen
skryté soubory: 1
.
**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0007\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0008\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
Celkový čas: 2014-05-24 21:08:07
ComboFix-quarantined-files.txt 2014-05-24 19:08
.
Před spuštěním: 1 984 978 944
Po spuštění: 2 854 313 984
.
- - End Of File - - 4225F82370A8FD119F7A6341B60CE26C
64B1E91C5C6C2157642651010728F90F
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 125 hostů