Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:22:00, on 7.7.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16798)
Boot mode: Normal
Running processes:
C:\windows\system32\taskhost.exe
C:\windows\system32\Dwm.exe
C:\windows\Explorer.EXE
C:\windows\System32\rundll32.exe
C:\Program Files\Hewlett-Packard\HP HotKey Support\QLBController.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Windows\System32\igfxtray.exe
C:\windows\system32\igfxsrvc.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\IDT\WDM\sttray.exe
C:\Program Files\Nuance\PDF Professional 6\PdfPro6Hook.exe
C:\Program Files\Samsung\Kies\KiesTrayAgent.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Program Files\Samsung\Kies\Kies.exe
C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
C:\Users\Budkyns\AppData\Roaming\Yontoo\YontooDesktop.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe
C:\Program Files\Hewlett-Packard\Shared\hpqToaster.exe
C:\Program Files\Hewlett-Packard\Shared\hpCaslNotification.exe
C:\windows\system32\wuauclt.exe
C:\Program Files\uTorrent\uTorrent.exe
C:\windows\system32\SearchFilterHost.exe
C:\Users\Budkyns\Desktop\HiJackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com?SearchSource= ... =CT2475029
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
R3 - URLSearchHook: MyAshampoo Toolbar - {a1e75a0e-4397-4ba8-bb50-e19fb66890f4} - C:\Program Files\MyAshampoo\tbMyAs.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll
O2 - BHO: PlusIEEventHelper Class - {551A852F-39A6-44A7-9C13-AFBEC9185A9D} - C:\Program Files\Nuance\PDF Professional 6\Bin\PlusIEContextMenu.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll
O2 - BHO: MyAshampoo Toolbar - {a1e75a0e-4397-4ba8-bb50-e19fb66890f4} - C:\Program Files\MyAshampoo\tbMyAs.dll
O2 - BHO: (no name) - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - (no file)
O2 - BHO: ZeonIEEventHelper Class - {DA986D7D-CCAF-47B2-84FE-BFA1549BEBF9} - C:\Program Files\Nuance\PDF Professional 6\Bin\ZeonIEFavClient.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: Nuance PDF - {E3286BF1-E654-42FF-B4A6-5E111731DF6B} - C:\Program Files\Nuance\PDF Professional 6\Bin\ZeonIEFavClient.dll
O3 - Toolbar: MyAshampoo Toolbar - {a1e75a0e-4397-4ba8-bb50-e19fb66890f4} - C:\Program Files\MyAshampoo\tbMyAs.dll
O3 - Toolbar: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll
O4 - HKLM\..\Run: [QLBController] C:\Program Files\Hewlett-Packard\HP HotKey Support\QLBController.exe /start
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
O4 - HKLM\..\Run: [PDF Complete] C:\Program Files\PDF Complete\pdfsty.exe
O4 - HKLM\..\Run: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [WirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [IgfxTray] C:\windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray.exe
O4 - HKLM\..\Run: [PDFHook] C:\Program Files\Nuance\PDF Professional 6\pdfpro6hook.exe
O4 - HKLM\..\Run: [PDF6 Registry Controller] C:\Program Files\Nuance\PDF Professional 6\RegistryController.exe
O4 - HKLM\..\Run: [Nuance PDF Reader-reminder] "C:\Program Files\Nuance\PDF Reader\Ereg\Ereg.exe" -r "C:\ProgramData\Nuance\PDF Reader\Ereg\Ereg.ini"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [KiesTrayAgent] C:\Program Files\Samsung\Kies\KiesTrayAgent.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [HPAdvisorDock] C:\Program Files\Hewlett-Packard\HP Advisor\Dock\HPAdvisorDock.exe
O4 - HKCU\..\Run: [ISUSPM] C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe -scheduler
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [KiesPreload] C:\Program Files\Samsung\Kies\Kies.exe /preload
O4 - HKCU\..\Run: [KiesPDLR] C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
O4 - HKCU\..\Run: [KiesAirMessage] C:\Program Files\Samsung\Kies\KiesAirMessage.exe -startup
O4 - HKCU\..\Run: [] C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
O4 - HKCU\..\Run: [Yontoo Desktop] "C:\Users\Budkyns\AppData\Roaming\Yontoo\YontooDesktop.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: GamePark klient 2.lnk = C:\Program Files\GamePark2\gpcl.exe
O8 - Extra context menu item: Append the content of the link to existing PDF file - res://C:\Program Files\Nuance\PDF Professional 6\Bin\ZeonIEFavClient.dll/ZeonIEAppend.HTML
O8 - Extra context menu item: Append the content of the selected links to existing PDF file - res://C:\Program Files\Nuance\PDF Professional 6\Bin\ZeonIEFavClient.dll/ZeonIEAppendSelLinks.HTML
O8 - Extra context menu item: Append to existing PDF file - res://C:\Program Files\Nuance\PDF Professional 6\Bin\ZeonIEFavClient.dll/ZeonIEAppend.HTML
O8 - Extra context menu item: Create PDF file - res://C:\Program Files\Nuance\PDF Professional 6\Bin\ZeonIEFavClient.dll/ZeonIECapture.HTML
O8 - Extra context menu item: Create PDF file from the content of the link - res://C:\Program Files\Nuance\PDF Professional 6\Bin\ZeonIEFavClient.dll/ZeonIECapture.HTML
O8 - Extra context menu item: Create PDF files from the selected links - res://C:\Program Files\Nuance\PDF Professional 6\Bin\ZeonIEFavClient.dll/ZeonIECaptureSelLinks.HTML
O8 - Extra context menu item: E&xport to Microsoft Excel - res://c:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Users\Budkyns\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm
O8 - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O8 - Extra context menu item: Open with Nuance PDF Converter 6.0 - res://C:\Program Files\Nuance\PDF Professional 6\cnvres_eng.dll /100
O8 - Extra context menu item: Open with PDF Professional 6 - res://C:\Program Files\Nuance\PDF Professional 6\Bin\PlusIEContextMenu.dll/PlusIEContextMenu.htm
O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files\Windows Live\Companion\companioncore.dll
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://*.mcafee.com (HKLM)
O15 - Trusted Zone: http://betavscan.mcafeeasap.com (HKLM)
O15 - Trusted Zone: http://vs.mcafeeasap.com (HKLM)
O15 - Trusted Zone: http://www.mcafeeasap.com (HKLM)
O15 - Trusted Zone: http://www.siteadvisor.com (HKLM)
O15 - ESC Trusted Zone: http://*.mcafee.com (HKLM)
O15 - ESC Trusted Zone: http://betavscan.mcafeeasap.com (HKLM)
O15 - ESC Trusted Zone: http://vs.mcafeeasap.com (HKLM)
O15 - ESC Trusted Zone: http://www.mcafeeasap.com (HKLM)
O15 - ESC Trusted Zone: http://www.siteadvisor.com (HKLM)
O16 - DPF: {C345E174-3E87-4F41-A01C-B066A90A49B4} (WRC Class) - http://trial.trymicrosoftoffice.com/tri ... /wrc32.ocx
O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - (no file)
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - (no file)
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_9b219d80a8843bf8\aestsrv.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Quick Synchronization Service (HPDrvMntSvc.exe) - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\Shared\HPDrvMntSvc.exe
O23 - Service: HP Hotkey Monitor (hpHotkeyMonitor) - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: PDF Document Manager (pdfcDispatcher) - PDF Complete Inc - C:\Program Files\PDF Complete\pdfsvc.exe
O23 - Service: PDFProFiltSrv - Nuance Communications, Inc. - C:\Program Files\Nuance\PDF Professional 6\PDFProFiltSrv.exe
O23 - Service: PnkBstrA - Unknown owner - C:\windows\system32\PnkBstrA.exe
O23 - Service: PnkBstrB - Unknown owner - C:\windows\system32\PnkBstrB.exe
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: RoxMediaDB10 - Sonic Solutions - c:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe
O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_9b219d80a8843bf8\STacSV.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - c:\Program Files\Common Files\SureThing Shared\stllssvr.exe
--
End of file - 14286 bytes
preventivní kontrola logu Vyřešeno
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: preventivní kontrola logu
Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected. Poté klikni na Main (hlavní stránku ) a klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.
- Pokud používáš jen Google Chrome , tak ATF nemusíš použít.
Stáhni si TFC
Otevři soubor a zavři všechny ostatní okna, Klikni na Start k zahájení procesu. Program by neměl trvat dlouho.
Poté by se měl PC restartovat, pokud ne , proveď sám.
Stáhni AdwCleaner (by Xplode)
http://www.bleepingcomputer.com/download/adwcleaner/
Ulož si ho na svojí plochu
Ukonči všechny programy , okna a prohlížeče
Spusť program poklepáním a klikni na „Prohledat-Scan“
Po skenu se objeví log ( jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.
Stáhni si Malwarebytes' Anti-Malware
- Při instalaci odeber zatržítko u „Povolit bezplatnou zkušební verzi Malwarebytes' Anti-Malware Premium“
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a klikni na Skenovat nyní a
- po proběhnutí programu se ti objeví hláška vpravo dole tak klikni na b] Kopírovat do schránky [/b]a a vlož sem celý log.
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Pokud budou problémy , spusť v nouz. režimu.
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected. Poté klikni na Main (hlavní stránku ) a klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.
- Pokud používáš jen Google Chrome , tak ATF nemusíš použít.
Stáhni si TFC
Otevři soubor a zavři všechny ostatní okna, Klikni na Start k zahájení procesu. Program by neměl trvat dlouho.
Poté by se měl PC restartovat, pokud ne , proveď sám.
Stáhni AdwCleaner (by Xplode)
http://www.bleepingcomputer.com/download/adwcleaner/
Ulož si ho na svojí plochu
Ukonči všechny programy , okna a prohlížeče
Spusť program poklepáním a klikni na „Prohledat-Scan“
Po skenu se objeví log ( jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.
Stáhni si Malwarebytes' Anti-Malware
- Při instalaci odeber zatržítko u „Povolit bezplatnou zkušební verzi Malwarebytes' Anti-Malware Premium“
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a klikni na Skenovat nyní a
- po proběhnutí programu se ti objeví hláška vpravo dole tak klikni na b] Kopírovat do schránky [/b]a a vlož sem celý log.
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Pokud budou problémy , spusť v nouz. režimu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: preventivní kontrola logu
# AdwCleaner v3.214 - Report created 08/07/2014 at 21:48:53
# Updated 29/06/2014 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (32 bits)
# Username : Budkyns - BUDKYNS-HP
# Running from : C:\Users\Budkyns\Desktop\adwcleaner_3.214.exe
# Option : Scan
***** [ Services ] *****
***** [ Files / Folders ] *****
File Found : C:\Users\Budkyns\AppData\Roaming\Mozilla\Firefox\Profiles\0ofy9f9q.default\Extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}.xpi
File Found : C:\Users\Budkyns\AppData\Roaming\Mozilla\Firefox\Profiles\0ofy9f9q.default\Extensions\speedanalysis02@SpeedAnalysis.com.xpi
File Found : C:\Users\Budkyns\AppData\Roaming\Mozilla\Firefox\Profiles\0ofy9f9q.default\user.js
File Found : C:\Users\Budkyns\AppData\Roaming\speedanalysis.ico
File Found : C:\windows\system32\roboot.exe
Folder Found : C:\Program Files\Common Files\DVDVideoSoft\TB
Folder Found : C:\Program Files\Conduit
Folder Found : C:\Program Files\ConduitEngine
Folder Found : C:\Program Files\MyAshampoo
Folder Found : C:\Program Files\Yontoo
Folder Found : C:\ProgramData\ICQ\ICQToolbar
Folder Found : C:\ProgramData\Tarma Installer
Folder Found : C:\Users\Budkyns\AppData\LocalLow\Conduit
Folder Found : C:\Users\Budkyns\AppData\LocalLow\ConduitEngine
Folder Found : C:\Users\Budkyns\AppData\LocalLow\MyAshampoo
Folder Found : C:\Users\Budkyns\AppData\LocalLow\PriceGong
Folder Found : C:\Users\Budkyns\AppData\Roaming\dvdvideosoftiehelpers
Folder Found : C:\Users\Budkyns\AppData\Roaming\file scout
Folder Found : C:\Users\Budkyns\AppData\Roaming\Mozilla\Firefox\Profiles\0ofy9f9q.default\Extensions\plugin@yontoo.com
Folder Found : C:\Users\Budkyns\AppData\Roaming\Mozilla\Firefox\Profiles\0ofy9f9q.default\ICQToolbarData
Folder Found : C:\Users\Budkyns\AppData\Roaming\OpenCandy
Folder Found : C:\Users\Budkyns\AppData\Roaming\PerformerSoft
Folder Found : C:\Users\Budkyns\AppData\Roaming\SpeedAnalysis2
Folder Found : C:\Users\Budkyns\AppData\Roaming\Yontoo
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Found : HKCU\Software\AppDataLow\Software\Conduit
Key Found : HKCU\Software\AppDataLow\Software\conduitEngine
Key Found : HKCU\Software\AppDataLow\Software\conduitEngine
Key Found : HKCU\Software\AppDataLow\Software\MyAshampoo
Key Found : HKCU\Software\AppDataLow\Software\MyAshampoo\toolbar
Key Found : HKCU\Software\AppDataLow\Software\PriceGong
Key Found : HKCU\Software\AppDataLow\Toolbar
Key Found : HKCU\Software\Conduit
Key Found : HKCU\Software\filescout
Key Found : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\ICQ\ICQToolBar
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6552C7DD-90A4-4387-B795-F8F96747DE19}
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{30F9B915-B755-4826-820B-08FBA6BD249D}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{30F9B915-B755-4826-820B-08FBA6BD249D}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{30F9B915-B755-4826-820B-08FBA6BD249D}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{30F9B915-B755-4826-820B-08FBA6BD249D}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}
Key Found : HKCU\Software\Myfree Codec
Key Found : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Key Found : HKLM\SOFTWARE\Classes\AppID\{CFDAFE39-20CE-451D-BD45-A37452F39CF0}
Key Found : HKLM\SOFTWARE\Classes\AppID\secman.DLL
Key Found : HKLM\SOFTWARE\Classes\AppID\YontooIEClient.DLL
Key Found : HKLM\SOFTWARE\Classes\CLSID\{0B79C149-3B19-40DE-92BF-1A3AD9C1DA9D}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{229C56BB-A36A-4323-8C82-B136DF45697D}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{30F9B915-B755-4826-820B-08FBA6BD249D}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{30F9B915-B755-4826-820B-08FBA6BD249D}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{33E2B3CB-322E-4CBE-89F2-C06F5A35DB46}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{486A4D28-2A45-44D4-90D1-36675B5EE595}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{51080E66-F357-4F2A-9BFC-2456695883B5}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{537AD3CF-DE2B-4A1C-8279-C946B7E490D4}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{5BF7365D-25FF-40F3-8DEE-06ABEDF177CC}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{6DDA37BA-0553-499A-AE0D-BEBA67204548}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{7E84186E-B5DE-4226-8A66-6E49C6B511B4}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{A10A1344-B533-4C9E-BE4E-4C5BC4953047}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{AF175732-0D59-716D-F757-9F1492D808D9}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{BA94BCE1-7E60-422D-9E7D-B853BC03FE78}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{BDCE611F-FDAA-4B10-A8E8-220A7897A69F}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{D0F1E414-1FAE-466C-B122-DE735B7BFF9D}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{E458510C-1DD5-4A05-8C4C-53BEF69C05E7}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{FE9271F2-6EFD-44B0-A826-84C829536E93}
Key Found : HKLM\SOFTWARE\Classes\Conduit.Engine
Key Found : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Found : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Key Found : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager
Key Found : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager.1
Key Found : HKLM\SOFTWARE\Classes\Toolbar.CT2475029
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}
Key Found : HKLM\Software\Conduit
Key Found : HKLM\Software\conduitEngine
Key Found : HKLM\Software\conduitEngine
Key Found : HKLM\Software\dt soft\daemon tools toolbar
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\bpegkgagfojjbcpkihigfmkojdmmimdf
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\dgjkhjdcljddbedokogakmmdjgnbeanf
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\ehgldbbpchgpcfagfpfjgoomddhccfgh
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\niapdbllcanepiiimjjndipklodoedlc
Key Found : HKLM\Software\ICQ\ICQToolbar
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2C2608D7-BB4C-4F1F-84C6-100D29232416}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E2DE7E98-2F61-4AB5-8B70-964D45E4501A}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasapi32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasmancs
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\AskSLib_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\AskSLib_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\YontooDesktop_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\YontooDesktop_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1EC9510D-A439-4950-9399-B6399EDF9EA7}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{486A4D28-2A45-44D4-90D1-36675B5EE595}
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08121C32A9C319F4CB0C11FF059552A4
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\conduitEngine
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\conduitEngine
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyAshampoo Toolbar
Key Found : HKLM\Software\MyAshampoo
Key Found : HKLM\Software\MyAshampoo\toolbar
Key Found : HKLM\Software\Myfree Codec
Key Found : HKLM\Software\Tarma Installer
Value Found : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search]
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}]
Value Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Yontoo Desktop]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{30F9B915-B755-4826-820B-08FBA6BD249D}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{30F9B915-B755-4826-820B-08FBA6BD249D}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}]
***** [ Browsers ] *****
-\\ Internet Explorer v10.0.9200.16798
Setting Found : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] - hxxp://search.conduit.com?SearchSource= ... =CT2475029
Setting Found : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search] - hxxp://search.icq.com/search/results.php?q={searchTerms}&ch_id=osd
-\\ Mozilla Firefox v30.0 (cs)
[ File : C:\Users\Budkyns\AppData\Roaming\Mozilla\Firefox\Profiles\0ofy9f9q.default\prefs.js ]
Line Found : user_pref("browser.search.defaultengine", "Ask.com");
Line Found : user_pref("browser.search.defaultenginename", "Ask.com");
Line Found : user_pref("browser.search.defaultthis.engineName", "MyAshampoo Customized Web Search");
Line Found : user_pref("browser.search.defaulturl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2475029&SearchSource=3&q={searchTerms}");
Line Found : user_pref("browser.search.order.1", "Ask.com");
Line Found : user_pref("extentions.y2layers.defaultEnableAppsList", "twittube,buzzdock,YontooNewOffers");
Line Found : user_pref("extentions.y2layers.installId", "f51bbe23-c8a6-4128-ae15-32e672c38458");
Line Found : user_pref("icqtoolbar.allowSendURL", false);
Line Found : user_pref("icqtoolbar.engineVerified", false);
Line Found : user_pref("icqtoolbar.geolastmodified", 1307477967);
Line Found : user_pref("icqtoolbar.hiddenElements", "itb_options");
Line Found : user_pref("icqtoolbar.history", "Close%20%203%2F3%3Ayour%20eyes%20and%20I%20kiss%20you||attack%20magic%20in%20the%20air||rozume%20receno||manfred%20mann||manfred%20man||pac%20a%20pusu");
Line Found : user_pref("icqtoolbar.icqgeo", 42);
Line Found : user_pref("icqtoolbar.installTime", "1307477967");
Line Found : user_pref("icqtoolbar.newtab_state", "1");
Line Found : user_pref("icqtoolbar.numberOfSearches", 0);
Line Found : user_pref("icqtoolbar.previousFFVersion", "3.6.17");
Line Found : user_pref("icqtoolbar.skip_default_search", "no");
Line Found : user_pref("icqtoolbar.suggestions", false);
Line Found : user_pref("icqtoolbar.uninstStatSent", true);
Line Found : user_pref("icqtoolbar.uniqueID", "130736030913073600811307477967112");
Line Found : user_pref("icqtoolbar.usageStatstTimestamp", 1307477969);
Line Found : user_pref("icqtoolbar.xmlEnableSuggestions", false);
Line Found : user_pref("icqtoolbar.xmlLanguage", "cs");
Line Found : user_pref("keyword.URL", "hxxp://search.icq.com/search/afe_results.php?ch_id=afex&tb_ver=1.1.9&q=");
*************************
AdwCleaner[R0].txt - [13233 octets] - [08/07/2014 21:48:53]
########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [13294 octets] ##########
# Updated 29/06/2014 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (32 bits)
# Username : Budkyns - BUDKYNS-HP
# Running from : C:\Users\Budkyns\Desktop\adwcleaner_3.214.exe
# Option : Scan
***** [ Services ] *****
***** [ Files / Folders ] *****
File Found : C:\Users\Budkyns\AppData\Roaming\Mozilla\Firefox\Profiles\0ofy9f9q.default\Extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}.xpi
File Found : C:\Users\Budkyns\AppData\Roaming\Mozilla\Firefox\Profiles\0ofy9f9q.default\Extensions\speedanalysis02@SpeedAnalysis.com.xpi
File Found : C:\Users\Budkyns\AppData\Roaming\Mozilla\Firefox\Profiles\0ofy9f9q.default\user.js
File Found : C:\Users\Budkyns\AppData\Roaming\speedanalysis.ico
File Found : C:\windows\system32\roboot.exe
Folder Found : C:\Program Files\Common Files\DVDVideoSoft\TB
Folder Found : C:\Program Files\Conduit
Folder Found : C:\Program Files\ConduitEngine
Folder Found : C:\Program Files\MyAshampoo
Folder Found : C:\Program Files\Yontoo
Folder Found : C:\ProgramData\ICQ\ICQToolbar
Folder Found : C:\ProgramData\Tarma Installer
Folder Found : C:\Users\Budkyns\AppData\LocalLow\Conduit
Folder Found : C:\Users\Budkyns\AppData\LocalLow\ConduitEngine
Folder Found : C:\Users\Budkyns\AppData\LocalLow\MyAshampoo
Folder Found : C:\Users\Budkyns\AppData\LocalLow\PriceGong
Folder Found : C:\Users\Budkyns\AppData\Roaming\dvdvideosoftiehelpers
Folder Found : C:\Users\Budkyns\AppData\Roaming\file scout
Folder Found : C:\Users\Budkyns\AppData\Roaming\Mozilla\Firefox\Profiles\0ofy9f9q.default\Extensions\plugin@yontoo.com
Folder Found : C:\Users\Budkyns\AppData\Roaming\Mozilla\Firefox\Profiles\0ofy9f9q.default\ICQToolbarData
Folder Found : C:\Users\Budkyns\AppData\Roaming\OpenCandy
Folder Found : C:\Users\Budkyns\AppData\Roaming\PerformerSoft
Folder Found : C:\Users\Budkyns\AppData\Roaming\SpeedAnalysis2
Folder Found : C:\Users\Budkyns\AppData\Roaming\Yontoo
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Found : HKCU\Software\AppDataLow\Software\Conduit
Key Found : HKCU\Software\AppDataLow\Software\conduitEngine
Key Found : HKCU\Software\AppDataLow\Software\conduitEngine
Key Found : HKCU\Software\AppDataLow\Software\MyAshampoo
Key Found : HKCU\Software\AppDataLow\Software\MyAshampoo\toolbar
Key Found : HKCU\Software\AppDataLow\Software\PriceGong
Key Found : HKCU\Software\AppDataLow\Toolbar
Key Found : HKCU\Software\Conduit
Key Found : HKCU\Software\filescout
Key Found : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\ICQ\ICQToolBar
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6552C7DD-90A4-4387-B795-F8F96747DE19}
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{30F9B915-B755-4826-820B-08FBA6BD249D}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{30F9B915-B755-4826-820B-08FBA6BD249D}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{30F9B915-B755-4826-820B-08FBA6BD249D}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{30F9B915-B755-4826-820B-08FBA6BD249D}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}
Key Found : HKCU\Software\Myfree Codec
Key Found : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Key Found : HKLM\SOFTWARE\Classes\AppID\{CFDAFE39-20CE-451D-BD45-A37452F39CF0}
Key Found : HKLM\SOFTWARE\Classes\AppID\secman.DLL
Key Found : HKLM\SOFTWARE\Classes\AppID\YontooIEClient.DLL
Key Found : HKLM\SOFTWARE\Classes\CLSID\{0B79C149-3B19-40DE-92BF-1A3AD9C1DA9D}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{229C56BB-A36A-4323-8C82-B136DF45697D}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{30F9B915-B755-4826-820B-08FBA6BD249D}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{30F9B915-B755-4826-820B-08FBA6BD249D}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{33E2B3CB-322E-4CBE-89F2-C06F5A35DB46}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{486A4D28-2A45-44D4-90D1-36675B5EE595}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{51080E66-F357-4F2A-9BFC-2456695883B5}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{537AD3CF-DE2B-4A1C-8279-C946B7E490D4}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{5BF7365D-25FF-40F3-8DEE-06ABEDF177CC}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{6DDA37BA-0553-499A-AE0D-BEBA67204548}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{7E84186E-B5DE-4226-8A66-6E49C6B511B4}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{A10A1344-B533-4C9E-BE4E-4C5BC4953047}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{AF175732-0D59-716D-F757-9F1492D808D9}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{BA94BCE1-7E60-422D-9E7D-B853BC03FE78}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{BDCE611F-FDAA-4B10-A8E8-220A7897A69F}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{D0F1E414-1FAE-466C-B122-DE735B7BFF9D}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{E458510C-1DD5-4A05-8C4C-53BEF69C05E7}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{FE9271F2-6EFD-44B0-A826-84C829536E93}
Key Found : HKLM\SOFTWARE\Classes\Conduit.Engine
Key Found : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Found : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Key Found : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager
Key Found : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager.1
Key Found : HKLM\SOFTWARE\Classes\Toolbar.CT2475029
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}
Key Found : HKLM\Software\Conduit
Key Found : HKLM\Software\conduitEngine
Key Found : HKLM\Software\conduitEngine
Key Found : HKLM\Software\dt soft\daemon tools toolbar
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\bpegkgagfojjbcpkihigfmkojdmmimdf
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\dgjkhjdcljddbedokogakmmdjgnbeanf
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\ehgldbbpchgpcfagfpfjgoomddhccfgh
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\niapdbllcanepiiimjjndipklodoedlc
Key Found : HKLM\Software\ICQ\ICQToolbar
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2C2608D7-BB4C-4F1F-84C6-100D29232416}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E2DE7E98-2F61-4AB5-8B70-964D45E4501A}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasapi32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasmancs
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\AskSLib_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\AskSLib_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\YontooDesktop_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\YontooDesktop_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1EC9510D-A439-4950-9399-B6399EDF9EA7}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{486A4D28-2A45-44D4-90D1-36675B5EE595}
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08121C32A9C319F4CB0C11FF059552A4
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\conduitEngine
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\conduitEngine
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyAshampoo Toolbar
Key Found : HKLM\Software\MyAshampoo
Key Found : HKLM\Software\MyAshampoo\toolbar
Key Found : HKLM\Software\Myfree Codec
Key Found : HKLM\Software\Tarma Installer
Value Found : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search]
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}]
Value Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Yontoo Desktop]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{30F9B915-B755-4826-820B-08FBA6BD249D}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{30F9B915-B755-4826-820B-08FBA6BD249D}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}]
***** [ Browsers ] *****
-\\ Internet Explorer v10.0.9200.16798
Setting Found : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] - hxxp://search.conduit.com?SearchSource= ... =CT2475029
Setting Found : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search] - hxxp://search.icq.com/search/results.php?q={searchTerms}&ch_id=osd
-\\ Mozilla Firefox v30.0 (cs)
[ File : C:\Users\Budkyns\AppData\Roaming\Mozilla\Firefox\Profiles\0ofy9f9q.default\prefs.js ]
Line Found : user_pref("browser.search.defaultengine", "Ask.com");
Line Found : user_pref("browser.search.defaultenginename", "Ask.com");
Line Found : user_pref("browser.search.defaultthis.engineName", "MyAshampoo Customized Web Search");
Line Found : user_pref("browser.search.defaulturl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2475029&SearchSource=3&q={searchTerms}");
Line Found : user_pref("browser.search.order.1", "Ask.com");
Line Found : user_pref("extentions.y2layers.defaultEnableAppsList", "twittube,buzzdock,YontooNewOffers");
Line Found : user_pref("extentions.y2layers.installId", "f51bbe23-c8a6-4128-ae15-32e672c38458");
Line Found : user_pref("icqtoolbar.allowSendURL", false);
Line Found : user_pref("icqtoolbar.engineVerified", false);
Line Found : user_pref("icqtoolbar.geolastmodified", 1307477967);
Line Found : user_pref("icqtoolbar.hiddenElements", "itb_options");
Line Found : user_pref("icqtoolbar.history", "Close%20%203%2F3%3Ayour%20eyes%20and%20I%20kiss%20you||attack%20magic%20in%20the%20air||rozume%20receno||manfred%20mann||manfred%20man||pac%20a%20pusu");
Line Found : user_pref("icqtoolbar.icqgeo", 42);
Line Found : user_pref("icqtoolbar.installTime", "1307477967");
Line Found : user_pref("icqtoolbar.newtab_state", "1");
Line Found : user_pref("icqtoolbar.numberOfSearches", 0);
Line Found : user_pref("icqtoolbar.previousFFVersion", "3.6.17");
Line Found : user_pref("icqtoolbar.skip_default_search", "no");
Line Found : user_pref("icqtoolbar.suggestions", false);
Line Found : user_pref("icqtoolbar.uninstStatSent", true);
Line Found : user_pref("icqtoolbar.uniqueID", "130736030913073600811307477967112");
Line Found : user_pref("icqtoolbar.usageStatstTimestamp", 1307477969);
Line Found : user_pref("icqtoolbar.xmlEnableSuggestions", false);
Line Found : user_pref("icqtoolbar.xmlLanguage", "cs");
Line Found : user_pref("keyword.URL", "hxxp://search.icq.com/search/afe_results.php?ch_id=afex&tb_ver=1.1.9&q=");
*************************
AdwCleaner[R0].txt - [13233 octets] - [08/07/2014 21:48:53]
########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [13294 octets] ##########
Re: preventivní kontrola logu
u mbam mi nejde zkopirovat do schranky, už nevím jak se mi to povedlo nedávno, vycházím z toho že jsem klikl na "copy to clipboard" a nasledne vložil sem pres ctrl-v, ale ted se nic nestane, mno a při pokusu vytvorit log program vzdy prestane pracovat
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: preventivní kontrola logu
Spusť znovu AdwCleaner (u Windows Vista či Windows7, klikni na AdwCleaner pravým a vyber „Spustit jako správce“
klikni na „Prohledat-Scan“, po prohledání klikni na „ Vymazat-Clean“
Program provede opravu, po automatickém restartu neukáže log (C:\AdwCleaner [S?].txt) , jeho obsah sem celý vlož.
Stáhni si Junkware Removal Tool by Thisisu
na svojí plochu.
Deaktivuj si svůj antivirový program. Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.
MbAM ---- máš ho už v paměti , stačí klik do příspěvku , klik pravým a vybrat "vložit". To nejde?
Stáhni si RogueKiller by Adlice Software
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit
-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
klikni na „Prohledat-Scan“, po prohledání klikni na „ Vymazat-Clean“
Program provede opravu, po automatickém restartu neukáže log (C:\AdwCleaner [S?].txt) , jeho obsah sem celý vlož.
Stáhni si Junkware Removal Tool by Thisisu
na svojí plochu.
Deaktivuj si svůj antivirový program. Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.
MbAM ---- máš ho už v paměti , stačí klik do příspěvku , klik pravým a vybrat "vložit". To nejde?
Stáhni si RogueKiller by Adlice Software
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit
-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: preventivní kontrola logu
# AdwCleaner v3.214 - Report created 09/07/2014 at 11:06:36
# Updated 29/06/2014 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (32 bits)
# Username : Budkyns - BUDKYNS-HP
# Running from : C:\Users\Budkyns\Desktop\adwcleaner_3.214.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
Folder Deleted : C:\ProgramData\ICQ\ICQToolbar
Folder Deleted : C:\ProgramData\Tarma Installer
Folder Deleted : C:\Program Files\Conduit
Folder Deleted : C:\Program Files\ConduitEngine
Folder Deleted : C:\Program Files\Yontoo
Folder Deleted : C:\Program Files\MyAshampoo
Folder Deleted : C:\Program Files\Common Files\DVDVideoSoft\TB
Folder Deleted : C:\Users\Budkyns\AppData\LocalLow\Conduit
Folder Deleted : C:\Users\Budkyns\AppData\LocalLow\ConduitEngine
Folder Deleted : C:\Users\Budkyns\AppData\LocalLow\PriceGong
Folder Deleted : C:\Users\Budkyns\AppData\LocalLow\MyAshampoo
Folder Deleted : C:\Users\Budkyns\AppData\Roaming\dvdvideosoftiehelpers
Folder Deleted : C:\Users\Budkyns\AppData\Roaming\file scout
Folder Deleted : C:\Users\Budkyns\AppData\Roaming\OpenCandy
Folder Deleted : C:\Users\Budkyns\AppData\Roaming\PerformerSoft
Folder Deleted : C:\Users\Budkyns\AppData\Roaming\SpeedAnalysis2
Folder Deleted : C:\Users\Budkyns\AppData\Roaming\Yontoo
Folder Deleted : C:\Users\Budkyns\AppData\Roaming\Mozilla\Firefox\Profiles\0ofy9f9q.default\ICQToolbarData
Folder Deleted : C:\Users\Budkyns\AppData\Roaming\Mozilla\Firefox\Profiles\0ofy9f9q.default\Extensions\plugin@yontoo.com
File Deleted : C:\Users\Budkyns\AppData\Roaming\Mozilla\Firefox\Profiles\0ofy9f9q.default\Extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}.xpi
File Deleted : C:\Users\Budkyns\AppData\Roaming\Mozilla\Firefox\Profiles\0ofy9f9q.default\Extensions\speedanalysis02@SpeedAnalysis.com.xpi
File Deleted : C:\windows\system32\roboot.exe
File Deleted : C:\Users\Budkyns\AppData\Roaming\speedanalysis.ico
File Deleted : C:\Users\Budkyns\AppData\Roaming\Mozilla\Firefox\Profiles\0ofy9f9q.default\user.js
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\bpegkgagfojjbcpkihigfmkojdmmimdf
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\dgjkhjdcljddbedokogakmmdjgnbeanf
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\ehgldbbpchgpcfagfpfjgoomddhccfgh
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\niapdbllcanepiiimjjndipklodoedlc
[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1EC9510D-A439-4950-9399-B6399EDF9EA7}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\ICQ\ICQToolBar
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search]
Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Yontoo Desktop]
Key Deleted : HKLM\SOFTWARE\Classes\AppID\secman.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\YontooIEClient.DLL
Key Deleted : HKLM\SOFTWARE\Classes\Conduit.Engine
Key Deleted : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager
Key Deleted : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager.1
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\AskSLib_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\AskSLib_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\YontooDesktop_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\YontooDesktop_RASMANCS
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT2475029
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{CFDAFE39-20CE-451D-BD45-A37452F39CF0}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{30F9B915-B755-4826-820B-08FBA6BD249D}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7E84186E-B5DE-4226-8A66-6E49C6B511B4}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AF175732-0D59-716D-F757-9F1492D808D9}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FE9271F2-6EFD-44B0-A826-84C829536E93}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{0B79C149-3B19-40DE-92BF-1A3AD9C1DA9D}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{229C56BB-A36A-4323-8C82-B136DF45697D}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{33E2B3CB-322E-4CBE-89F2-C06F5A35DB46}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{51080E66-F357-4F2A-9BFC-2456695883B5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{537AD3CF-DE2B-4A1C-8279-C946B7E490D4}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5BF7365D-25FF-40F3-8DEE-06ABEDF177CC}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6DDA37BA-0553-499A-AE0D-BEBA67204548}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A10A1344-B533-4C9E-BE4E-4C5BC4953047}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{BA94BCE1-7E60-422D-9E7D-B853BC03FE78}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{BDCE611F-FDAA-4B10-A8E8-220A7897A69F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{D0F1E414-1FAE-466C-B122-DE735B7BFF9D}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E458510C-1DD5-4A05-8C4C-53BEF69C05E7}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{486A4D28-2A45-44D4-90D1-36675B5EE595}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{30F9B915-B755-4826-820B-08FBA6BD249D}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{30F9B915-B755-4826-820B-08FBA6BD249D}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{486A4D28-2A45-44D4-90D1-36675B5EE595}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2C2608D7-BB4C-4F1F-84C6-100D29232416}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E2DE7E98-2F61-4AB5-8B70-964D45E4501A}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6552C7DD-90A4-4387-B795-F8F96747DE19}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{30F9B915-B755-4826-820B-08FBA6BD249D}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}]
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\filescout
Key Deleted : HKCU\Software\Myfree Codec
Key Deleted : HKCU\Software\AppDataLow\Toolbar
Key Deleted : HKCU\Software\AppDataLow\Software\Conduit
Key Deleted : HKCU\Software\AppDataLow\Software\conduitEngine
Key Deleted : HKCU\Software\AppDataLow\Software\MyAshampoo\toolbar
Key Deleted : HKCU\Software\AppDataLow\Software\PriceGong
Key Deleted : HKCU\Software\AppDataLow\Software\MyAshampoo
Key Deleted : HKLM\Software\Conduit
Key Deleted : HKLM\Software\conduitEngine
Key Deleted : HKLM\Software\dt soft\daemon tools toolbar
Key Deleted : HKLM\Software\ICQ\ICQToolbar
Key Deleted : HKLM\Software\MyAshampoo\toolbar
Key Deleted : HKLM\Software\Myfree Codec
Key Deleted : HKLM\Software\Tarma Installer
Key Deleted : HKLM\Software\MyAshampoo
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\conduitEngine
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyAshampoo Toolbar
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08121C32A9C319F4CB0C11FF059552A4
***** [ Browsers ] *****
-\\ Internet Explorer v10.0.9200.16798
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search]
-\\ Mozilla Firefox v30.0 (cs)
[ File : C:\Users\Budkyns\AppData\Roaming\Mozilla\Firefox\Profiles\0ofy9f9q.default\prefs.js ]
Line Deleted : user_pref("browser.search.defaultengine", "Ask.com");
Line Deleted : user_pref("browser.search.defaultenginename", "Ask.com");
Line Deleted : user_pref("browser.search.defaultthis.engineName", "MyAshampoo Customized Web Search");
Line Deleted : user_pref("browser.search.defaulturl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2475029&SearchSource=3&q={searchTerms}");
Line Deleted : user_pref("browser.search.order.1", "Ask.com");
Line Deleted : user_pref("extentions.y2layers.defaultEnableAppsList", "twittube,buzzdock,YontooNewOffers");
Line Deleted : user_pref("extentions.y2layers.installId", "f51bbe23-c8a6-4128-ae15-32e672c38458");
Line Deleted : user_pref("icqtoolbar.allowSendURL", false);
Line Deleted : user_pref("icqtoolbar.engineVerified", false);
Line Deleted : user_pref("icqtoolbar.geolastmodified", 1307477967);
Line Deleted : user_pref("icqtoolbar.hiddenElements", "itb_options");
Line Deleted : user_pref("icqtoolbar.history", "Close%20%203%2F3%3Ayour%20eyes%20and%20I%20kiss%20you||attack%20magic%20in%20the%20air||rozume%20receno||manfred%20mann||manfred%20man||pac%20a%20pusu");
Line Deleted : user_pref("icqtoolbar.icqgeo", 42);
Line Deleted : user_pref("icqtoolbar.installTime", "1307477967");
Line Deleted : user_pref("icqtoolbar.newtab_state", "1");
Line Deleted : user_pref("icqtoolbar.numberOfSearches", 0);
Line Deleted : user_pref("icqtoolbar.previousFFVersion", "3.6.17");
Line Deleted : user_pref("icqtoolbar.skip_default_search", "no");
Line Deleted : user_pref("icqtoolbar.suggestions", false);
Line Deleted : user_pref("icqtoolbar.uninstStatSent", true);
Line Deleted : user_pref("icqtoolbar.uniqueID", "130736030913073600811307477967112");
Line Deleted : user_pref("icqtoolbar.usageStatstTimestamp", 1307477969);
Line Deleted : user_pref("icqtoolbar.xmlEnableSuggestions", false);
Line Deleted : user_pref("icqtoolbar.xmlLanguage", "cs");
Line Deleted : user_pref("keyword.URL", "hxxp://search.icq.com/search/afe_results.php?ch_id=afex&tb_ver=1.1.9&q=");
*************************
AdwCleaner[R0].txt - [13375 octets] - [08/07/2014 21:48:53]
AdwCleaner[R1].txt - [13436 octets] - [09/07/2014 11:05:12]
AdwCleaner[S0].txt - [11909 octets] - [09/07/2014 11:06:36]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [11970 octets] ##########
# Updated 29/06/2014 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (32 bits)
# Username : Budkyns - BUDKYNS-HP
# Running from : C:\Users\Budkyns\Desktop\adwcleaner_3.214.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
Folder Deleted : C:\ProgramData\ICQ\ICQToolbar
Folder Deleted : C:\ProgramData\Tarma Installer
Folder Deleted : C:\Program Files\Conduit
Folder Deleted : C:\Program Files\ConduitEngine
Folder Deleted : C:\Program Files\Yontoo
Folder Deleted : C:\Program Files\MyAshampoo
Folder Deleted : C:\Program Files\Common Files\DVDVideoSoft\TB
Folder Deleted : C:\Users\Budkyns\AppData\LocalLow\Conduit
Folder Deleted : C:\Users\Budkyns\AppData\LocalLow\ConduitEngine
Folder Deleted : C:\Users\Budkyns\AppData\LocalLow\PriceGong
Folder Deleted : C:\Users\Budkyns\AppData\LocalLow\MyAshampoo
Folder Deleted : C:\Users\Budkyns\AppData\Roaming\dvdvideosoftiehelpers
Folder Deleted : C:\Users\Budkyns\AppData\Roaming\file scout
Folder Deleted : C:\Users\Budkyns\AppData\Roaming\OpenCandy
Folder Deleted : C:\Users\Budkyns\AppData\Roaming\PerformerSoft
Folder Deleted : C:\Users\Budkyns\AppData\Roaming\SpeedAnalysis2
Folder Deleted : C:\Users\Budkyns\AppData\Roaming\Yontoo
Folder Deleted : C:\Users\Budkyns\AppData\Roaming\Mozilla\Firefox\Profiles\0ofy9f9q.default\ICQToolbarData
Folder Deleted : C:\Users\Budkyns\AppData\Roaming\Mozilla\Firefox\Profiles\0ofy9f9q.default\Extensions\plugin@yontoo.com
File Deleted : C:\Users\Budkyns\AppData\Roaming\Mozilla\Firefox\Profiles\0ofy9f9q.default\Extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}.xpi
File Deleted : C:\Users\Budkyns\AppData\Roaming\Mozilla\Firefox\Profiles\0ofy9f9q.default\Extensions\speedanalysis02@SpeedAnalysis.com.xpi
File Deleted : C:\windows\system32\roboot.exe
File Deleted : C:\Users\Budkyns\AppData\Roaming\speedanalysis.ico
File Deleted : C:\Users\Budkyns\AppData\Roaming\Mozilla\Firefox\Profiles\0ofy9f9q.default\user.js
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\bpegkgagfojjbcpkihigfmkojdmmimdf
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\dgjkhjdcljddbedokogakmmdjgnbeanf
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\ehgldbbpchgpcfagfpfjgoomddhccfgh
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\niapdbllcanepiiimjjndipklodoedlc
[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1EC9510D-A439-4950-9399-B6399EDF9EA7}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\ICQ\ICQToolBar
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search]
Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Yontoo Desktop]
Key Deleted : HKLM\SOFTWARE\Classes\AppID\secman.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\YontooIEClient.DLL
Key Deleted : HKLM\SOFTWARE\Classes\Conduit.Engine
Key Deleted : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager
Key Deleted : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager.1
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\AskSLib_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\AskSLib_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\YontooDesktop_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\YontooDesktop_RASMANCS
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT2475029
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{CFDAFE39-20CE-451D-BD45-A37452F39CF0}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{30F9B915-B755-4826-820B-08FBA6BD249D}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7E84186E-B5DE-4226-8A66-6E49C6B511B4}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AF175732-0D59-716D-F757-9F1492D808D9}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FE9271F2-6EFD-44B0-A826-84C829536E93}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{0B79C149-3B19-40DE-92BF-1A3AD9C1DA9D}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{229C56BB-A36A-4323-8C82-B136DF45697D}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{33E2B3CB-322E-4CBE-89F2-C06F5A35DB46}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{51080E66-F357-4F2A-9BFC-2456695883B5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{537AD3CF-DE2B-4A1C-8279-C946B7E490D4}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5BF7365D-25FF-40F3-8DEE-06ABEDF177CC}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6DDA37BA-0553-499A-AE0D-BEBA67204548}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A10A1344-B533-4C9E-BE4E-4C5BC4953047}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{BA94BCE1-7E60-422D-9E7D-B853BC03FE78}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{BDCE611F-FDAA-4B10-A8E8-220A7897A69F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{D0F1E414-1FAE-466C-B122-DE735B7BFF9D}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E458510C-1DD5-4A05-8C4C-53BEF69C05E7}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{486A4D28-2A45-44D4-90D1-36675B5EE595}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{30F9B915-B755-4826-820B-08FBA6BD249D}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{30F9B915-B755-4826-820B-08FBA6BD249D}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{486A4D28-2A45-44D4-90D1-36675B5EE595}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2C2608D7-BB4C-4F1F-84C6-100D29232416}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E2DE7E98-2F61-4AB5-8B70-964D45E4501A}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6552C7DD-90A4-4387-B795-F8F96747DE19}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{30F9B915-B755-4826-820B-08FBA6BD249D}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}]
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\filescout
Key Deleted : HKCU\Software\Myfree Codec
Key Deleted : HKCU\Software\AppDataLow\Toolbar
Key Deleted : HKCU\Software\AppDataLow\Software\Conduit
Key Deleted : HKCU\Software\AppDataLow\Software\conduitEngine
Key Deleted : HKCU\Software\AppDataLow\Software\MyAshampoo\toolbar
Key Deleted : HKCU\Software\AppDataLow\Software\PriceGong
Key Deleted : HKCU\Software\AppDataLow\Software\MyAshampoo
Key Deleted : HKLM\Software\Conduit
Key Deleted : HKLM\Software\conduitEngine
Key Deleted : HKLM\Software\dt soft\daemon tools toolbar
Key Deleted : HKLM\Software\ICQ\ICQToolbar
Key Deleted : HKLM\Software\MyAshampoo\toolbar
Key Deleted : HKLM\Software\Myfree Codec
Key Deleted : HKLM\Software\Tarma Installer
Key Deleted : HKLM\Software\MyAshampoo
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\conduitEngine
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyAshampoo Toolbar
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08121C32A9C319F4CB0C11FF059552A4
***** [ Browsers ] *****
-\\ Internet Explorer v10.0.9200.16798
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search]
-\\ Mozilla Firefox v30.0 (cs)
[ File : C:\Users\Budkyns\AppData\Roaming\Mozilla\Firefox\Profiles\0ofy9f9q.default\prefs.js ]
Line Deleted : user_pref("browser.search.defaultengine", "Ask.com");
Line Deleted : user_pref("browser.search.defaultenginename", "Ask.com");
Line Deleted : user_pref("browser.search.defaultthis.engineName", "MyAshampoo Customized Web Search");
Line Deleted : user_pref("browser.search.defaulturl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2475029&SearchSource=3&q={searchTerms}");
Line Deleted : user_pref("browser.search.order.1", "Ask.com");
Line Deleted : user_pref("extentions.y2layers.defaultEnableAppsList", "twittube,buzzdock,YontooNewOffers");
Line Deleted : user_pref("extentions.y2layers.installId", "f51bbe23-c8a6-4128-ae15-32e672c38458");
Line Deleted : user_pref("icqtoolbar.allowSendURL", false);
Line Deleted : user_pref("icqtoolbar.engineVerified", false);
Line Deleted : user_pref("icqtoolbar.geolastmodified", 1307477967);
Line Deleted : user_pref("icqtoolbar.hiddenElements", "itb_options");
Line Deleted : user_pref("icqtoolbar.history", "Close%20%203%2F3%3Ayour%20eyes%20and%20I%20kiss%20you||attack%20magic%20in%20the%20air||rozume%20receno||manfred%20mann||manfred%20man||pac%20a%20pusu");
Line Deleted : user_pref("icqtoolbar.icqgeo", 42);
Line Deleted : user_pref("icqtoolbar.installTime", "1307477967");
Line Deleted : user_pref("icqtoolbar.newtab_state", "1");
Line Deleted : user_pref("icqtoolbar.numberOfSearches", 0);
Line Deleted : user_pref("icqtoolbar.previousFFVersion", "3.6.17");
Line Deleted : user_pref("icqtoolbar.skip_default_search", "no");
Line Deleted : user_pref("icqtoolbar.suggestions", false);
Line Deleted : user_pref("icqtoolbar.uninstStatSent", true);
Line Deleted : user_pref("icqtoolbar.uniqueID", "130736030913073600811307477967112");
Line Deleted : user_pref("icqtoolbar.usageStatstTimestamp", 1307477969);
Line Deleted : user_pref("icqtoolbar.xmlEnableSuggestions", false);
Line Deleted : user_pref("icqtoolbar.xmlLanguage", "cs");
Line Deleted : user_pref("keyword.URL", "hxxp://search.icq.com/search/afe_results.php?ch_id=afex&tb_ver=1.1.9&q=");
*************************
AdwCleaner[R0].txt - [13375 octets] - [08/07/2014 21:48:53]
AdwCleaner[R1].txt - [13436 octets] - [09/07/2014 11:05:12]
AdwCleaner[S0].txt - [11909 octets] - [09/07/2014 11:06:36]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [11970 octets] ##########
Re: preventivní kontrola logu
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.4 (04.06.2014:1)
OS: Windows 7 Home Premium x86
Ran by Budkyns on st 09.07.2014 at 11:11:49,35
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0B4B2FC4-60F5-473E-BE3E-0661B1BE9268}
~~~ Files
~~~ Folders
Successfully deleted: [Folder] "C:\Program Files\myfree codec"
Successfully deleted: [Empty Folder] C:\Users\Budkyns\appdata\local\{09D9286A-629A-41E8-B4DD-7DF876EE4241}
Successfully deleted: [Empty Folder] C:\Users\Budkyns\appdata\local\{1D672B49-E3C6-4C81-882A-8B70E075F66F}
Successfully deleted: [Empty Folder] C:\Users\Budkyns\appdata\local\{23D0EFC6-5FE3-49D6-B9AD-70A0E59D2018}
Successfully deleted: [Empty Folder] C:\Users\Budkyns\appdata\local\{2FE37594-78C7-488B-9724-0D952E2E60DE}
Successfully deleted: [Empty Folder] C:\Users\Budkyns\appdata\local\{5C1362EB-C9E1-4BBD-9B33-006042FEE4BD}
Successfully deleted: [Empty Folder] C:\Users\Budkyns\appdata\local\{6A118257-1AFF-4363-8F06-A64EF430F3B0}
Successfully deleted: [Empty Folder] C:\Users\Budkyns\appdata\local\{6A8A3E01-FD98-491C-AD7C-2697E85BFA30}
Successfully deleted: [Empty Folder] C:\Users\Budkyns\appdata\local\{A041F90E-2EC8-4928-8639-D825F3E76584}
Successfully deleted: [Empty Folder] C:\Users\Budkyns\appdata\local\{A242B1CC-DC6E-462A-86ED-8560C63FBA23}
Successfully deleted: [Empty Folder] C:\Users\Budkyns\appdata\local\{D29997F9-1883-4DA7-AB08-A255D816A67C}
Successfully deleted: [Empty Folder] C:\Users\Budkyns\appdata\local\{E50FA3AE-C741-49B0-A30C-C7FA12408A0D}
Successfully deleted: [Empty Folder] C:\Users\Budkyns\appdata\local\{EC036074-305F-4FB0-B39E-1C2141377C0C}
Successfully deleted: [Empty Folder] C:\Users\Budkyns\appdata\local\{F1DCD50C-C240-40D8-B2DB-799BB86BAFE1}
~~~ FireFox
Emptied folder: C:\Users\Budkyns\AppData\Roaming\mozilla\firefox\profiles\0ofy9f9q.default\minidumps [1012 files]
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on st 09.07.2014 at 11:17:09,36
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.4 (04.06.2014:1)
OS: Windows 7 Home Premium x86
Ran by Budkyns on st 09.07.2014 at 11:11:49,35
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0B4B2FC4-60F5-473E-BE3E-0661B1BE9268}
~~~ Files
~~~ Folders
Successfully deleted: [Folder] "C:\Program Files\myfree codec"
Successfully deleted: [Empty Folder] C:\Users\Budkyns\appdata\local\{09D9286A-629A-41E8-B4DD-7DF876EE4241}
Successfully deleted: [Empty Folder] C:\Users\Budkyns\appdata\local\{1D672B49-E3C6-4C81-882A-8B70E075F66F}
Successfully deleted: [Empty Folder] C:\Users\Budkyns\appdata\local\{23D0EFC6-5FE3-49D6-B9AD-70A0E59D2018}
Successfully deleted: [Empty Folder] C:\Users\Budkyns\appdata\local\{2FE37594-78C7-488B-9724-0D952E2E60DE}
Successfully deleted: [Empty Folder] C:\Users\Budkyns\appdata\local\{5C1362EB-C9E1-4BBD-9B33-006042FEE4BD}
Successfully deleted: [Empty Folder] C:\Users\Budkyns\appdata\local\{6A118257-1AFF-4363-8F06-A64EF430F3B0}
Successfully deleted: [Empty Folder] C:\Users\Budkyns\appdata\local\{6A8A3E01-FD98-491C-AD7C-2697E85BFA30}
Successfully deleted: [Empty Folder] C:\Users\Budkyns\appdata\local\{A041F90E-2EC8-4928-8639-D825F3E76584}
Successfully deleted: [Empty Folder] C:\Users\Budkyns\appdata\local\{A242B1CC-DC6E-462A-86ED-8560C63FBA23}
Successfully deleted: [Empty Folder] C:\Users\Budkyns\appdata\local\{D29997F9-1883-4DA7-AB08-A255D816A67C}
Successfully deleted: [Empty Folder] C:\Users\Budkyns\appdata\local\{E50FA3AE-C741-49B0-A30C-C7FA12408A0D}
Successfully deleted: [Empty Folder] C:\Users\Budkyns\appdata\local\{EC036074-305F-4FB0-B39E-1C2141377C0C}
Successfully deleted: [Empty Folder] C:\Users\Budkyns\appdata\local\{F1DCD50C-C240-40D8-B2DB-799BB86BAFE1}
~~~ FireFox
Emptied folder: C:\Users\Budkyns\AppData\Roaming\mozilla\firefox\profiles\0ofy9f9q.default\minidumps [1012 files]
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on st 09.07.2014 at 11:17:09,36
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Re: preventivní kontrola logu
co se týče mbam, zkopirovani do schranky nereaguje, do pameti se nic neulozí a není co sem do prispevku vložit, a jak jsem jiz rekl, rucni pokus vytvoreni logu zpusobi pad programu
zde log z rogue killer, opet jiste problemy, nejsem si jist zda kontrola byla kompletne dokoncena a log je tedy kompletní, kontrola se totiž vždy na něčem zasekna a po jakekoliv akci s počítačem se zobrazí "dokončeno" přestože ukazatel (zelená lišta) stavu průběhu kontroly se jeví jako nedokončený
RogueKiller V9.2.0.0 [Jun 23 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com
Operační systém : Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Spuštěno v : Normální režim
Uživatel : Budkyns [Práva správce]
Mód : Kontrola -- Datum : 07/09/2014 11:57:00
¤¤¤ Škodlivé procesy: : 0 ¤¤¤
¤¤¤ ¤¤¤ Záznamy Registrů: : 4 ¤¤¤
[PUM.Policies] HKEY_USERS\S-1-5-21-1256565636-1676168881-298877341-1001\Software\Microsoft\Windows\CurrentVersion\Policies\System | DisableRegistryTools : 0 -> NALEZENO
[PUM.Policies] HKEY_USERS\S-1-5-21-1256565636-1676168881-298877341-1001\Software\Microsoft\Windows\CurrentVersion\Policies\System | DisableTaskMgr : 0 -> NALEZENO
[PUM.DesktopIcons] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {20D04FE0-3AEA-1069-A2D8-08002B30309D} : 1 -> NALEZENO
[PUM.DesktopIcons] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {59031a47-3f72-44a7-89c5-5595fe6b30ee} : 1 -> NALEZENO
¤¤¤ naplánované úlohy : 18 ¤¤¤
[Suspicious.Path] \\{03A71E51-4199-40EE-83A1-DC9B3AF3B8DD} -- C:\windows\system32\pcalua.exe (-a "C:\Users\Budkyns\Downloads\RegMod Kings 3.80.0 Full.exe" -d C:\Users\Budkyns\Downloads) -> NALEZENO
[Suspicious.Path] \\{0B3AC9FA-FF1E-4C9D-AE7E-5BBEB565C1CE} -- C:\windows\system32\pcalua.exe (-a "C:\Program Files\WinRAR\WinRAR.exe" -d C:\Users\Budkyns\Downloads -c "C:\Users\Budkyns\Downloads\RCT2US_SK.zip") -> NALEZENO
[Suspicious.Path] \\{24C71544-1689-4A69-92D6-A99F5634C9EA} -- C:\windows\system32\pcalua.exe (-a C:\Users\Budkyns\Downloads\ROPv22_final_b.exe -d C:\Users\Budkyns\Downloads) -> NALEZENO
[Suspicious.Path] \\{45369CC7-E477-4024-91C4-C915F216356E} -- C:\windows\system32\pcalua.exe (-a C:\Users\Budkyns\Downloads\Lands_To_Conquer_Gold.exe -d C:\Users\Budkyns\Downloads) -> NALEZENO
[Suspicious.Path] \\{54866054-23EF-4588-8E2F-0BEE8AC4A145} -- C:\windows\system32\pcalua.exe (-a C:\Windows\UbiSoft\SetupUbi.exe -d C:\windows\UbiSoft -c -uninstall) -> NALEZENO
[Suspicious.Path] \\{5B6436C0-47A5-4882-BE5F-3B0739F0F927} -- C:\windows\system32\pcalua.exe (-a C:\Users\Budkyns\Downloads\burrrn_package.exe -d C:\Users\Budkyns\Downloads) -> NALEZENO
[Suspicious.Path] \\{640E8802-E089-4BB0-BCC0-C017ABC35BB8} -- C:\windows\system32\pcalua.exe (-a "C:\Users\Budkyns\Desktop\PDer\PDeR 1.0a.exe" -d C:\Users\Budkyns\Desktop\PDer) -> NALEZENO
[Suspicious.Path] \\{652BDAD7-5255-4A8F-ABCF-1E8302562DF2} -- C:\windows\system32\pcalua.exe (-a "C:\Users\Budkyns\Downloads\Westeros 0.53.exe" -d C:\Users\Budkyns\Downloads) -> NALEZENO
[Suspicious.Path] \\{6A19942F-4651-42CC-813F-A2D8A66F2262} -- C:\windows\system32\pcalua.exe (-a "C:\Users\Budkyns\Desktop\Roma Surrectum\RS 2.5\RS2.5_Beta_setup.exe" -d "C:\Users\Budkyns\Desktop\Roma Surrectum\RS 2.5") -> NALEZENO
[Suspicious.Path] \\{70CC5097-9376-4182-A8C4-27B5D8AEE70C} -- C:\windows\system32\pcalua.exe (-a C:\Users\Budkyns\Downloads\RS2.5_Beta_setup.exe -d C:\Users\Budkyns\Downloads) -> NALEZENO
[Suspicious.Path] \\{73149A2B-9E2F-4426-8493-E44BE3889D02} -- C:\windows\system32\pcalua.exe (-a "C:\Users\Budkyns\Downloads\Westeros 0.53.exe" -d C:\Users\Budkyns\Downloads) -> NALEZENO
[Suspicious.Path] \\{902AEE89-7846-4D3F-9701-42765F3490EB} -- C:\windows\system32\pcalua.exe (-a C:\Windows\UbiSoft\SetupUbi.exe -d C:\windows\UbiSoft -c -play IL-2 Sturmovik) -> NALEZENO
[Suspicious.Path] \\{C0347A50-6A5E-4B2D-8E1A-BB0191355177} -- C:\windows\system32\pcalua.exe (-a C:\Users\Budkyns\Downloads\stereo-19.exe -d C:\Users\Budkyns\Downloads) -> NALEZENO
[Suspicious.Path] \\{C98674FC-0BB9-4C24-8169-F05AAF20BAB7} -- C:\windows\system32\pcalua.exe (-a "C:\Users\Budkyns\Downloads\RTR Platinum Edition 1.9.exe" -d C:\Users\Budkyns\Downloads) -> NALEZENO
[Suspicious.Path] \\{CF07E7E9-C037-4C2F-AAE9-603725FEBFF7} -- C:\windows\system32\pcalua.exe (-a C:\Users\Budkyns\Downloads\ROP2_22b.exe -d C:\Users\Budkyns\Downloads) -> NALEZENO
[Suspicious.Path] \\{DE767A8B-52BB-4201-8285-F412DA805511} -- C:\windows\system32\pcalua.exe (-a "C:\World of Warcraft\Launcher.exe" -d C:\Users\Budkyns\Desktop) -> NALEZENO
[Suspicious.Path] \\{F664D3FD-497C-4406-BB8C-55F1640ED3AB} -- C:\windows\system32\pcalua.exe (-a C:\Users\Budkyns\Downloads\Stainless_Steel_6.0_Pt1of2.exe -d C:\Users\Budkyns\Downloads) -> NALEZENO
[Suspicious.Path] \Hewlett-Packard\HP Support Assistant\Update Check -- C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater\HPSFUpdater.exe (/s /p 1) -> NALEZENO
¤¤¤ Soubory : 0 ¤¤¤
¤¤¤ Soubor HOSTS : 0 ¤¤¤
¤¤¤ Antirootkit : 0 (Driver: NAHRÁNO) ¤¤¤
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Kontrola MBR : ¤¤¤
+++++ PhysicalDrive0: WDC WD3200BEKT-60V5T1 +++++
--- User ---
[MBR] e7f1659d957fd73fed678efb299807d6
[BSP] 14f54d4019d670c9d0444b40265b046d : HP MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 2048 | Size: 300 MB
1 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 616448 | Size: 287534 MB
2 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 589486080 | Size: 15360 MB
3 - [XXXXXX] FAT32-LBA (0xc) [VISIBLE] Offset (sectors): 620943360 | Size: 2043 MB
User = LL1 ... OK
User = LL2 ... OK
============================================
RKreport_SCN_07092014_113043.log - RKreport_SCN_07092014_114223.log - RKreport_SCN_07092014_114808.log - RKreport_SCN_07092014_114810.log
zde log z rogue killer, opet jiste problemy, nejsem si jist zda kontrola byla kompletne dokoncena a log je tedy kompletní, kontrola se totiž vždy na něčem zasekna a po jakekoliv akci s počítačem se zobrazí "dokončeno" přestože ukazatel (zelená lišta) stavu průběhu kontroly se jeví jako nedokončený
RogueKiller V9.2.0.0 [Jun 23 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com
Operační systém : Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Spuštěno v : Normální režim
Uživatel : Budkyns [Práva správce]
Mód : Kontrola -- Datum : 07/09/2014 11:57:00
¤¤¤ Škodlivé procesy: : 0 ¤¤¤
¤¤¤ ¤¤¤ Záznamy Registrů: : 4 ¤¤¤
[PUM.Policies] HKEY_USERS\S-1-5-21-1256565636-1676168881-298877341-1001\Software\Microsoft\Windows\CurrentVersion\Policies\System | DisableRegistryTools : 0 -> NALEZENO
[PUM.Policies] HKEY_USERS\S-1-5-21-1256565636-1676168881-298877341-1001\Software\Microsoft\Windows\CurrentVersion\Policies\System | DisableTaskMgr : 0 -> NALEZENO
[PUM.DesktopIcons] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {20D04FE0-3AEA-1069-A2D8-08002B30309D} : 1 -> NALEZENO
[PUM.DesktopIcons] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {59031a47-3f72-44a7-89c5-5595fe6b30ee} : 1 -> NALEZENO
¤¤¤ naplánované úlohy : 18 ¤¤¤
[Suspicious.Path] \\{03A71E51-4199-40EE-83A1-DC9B3AF3B8DD} -- C:\windows\system32\pcalua.exe (-a "C:\Users\Budkyns\Downloads\RegMod Kings 3.80.0 Full.exe" -d C:\Users\Budkyns\Downloads) -> NALEZENO
[Suspicious.Path] \\{0B3AC9FA-FF1E-4C9D-AE7E-5BBEB565C1CE} -- C:\windows\system32\pcalua.exe (-a "C:\Program Files\WinRAR\WinRAR.exe" -d C:\Users\Budkyns\Downloads -c "C:\Users\Budkyns\Downloads\RCT2US_SK.zip") -> NALEZENO
[Suspicious.Path] \\{24C71544-1689-4A69-92D6-A99F5634C9EA} -- C:\windows\system32\pcalua.exe (-a C:\Users\Budkyns\Downloads\ROPv22_final_b.exe -d C:\Users\Budkyns\Downloads) -> NALEZENO
[Suspicious.Path] \\{45369CC7-E477-4024-91C4-C915F216356E} -- C:\windows\system32\pcalua.exe (-a C:\Users\Budkyns\Downloads\Lands_To_Conquer_Gold.exe -d C:\Users\Budkyns\Downloads) -> NALEZENO
[Suspicious.Path] \\{54866054-23EF-4588-8E2F-0BEE8AC4A145} -- C:\windows\system32\pcalua.exe (-a C:\Windows\UbiSoft\SetupUbi.exe -d C:\windows\UbiSoft -c -uninstall) -> NALEZENO
[Suspicious.Path] \\{5B6436C0-47A5-4882-BE5F-3B0739F0F927} -- C:\windows\system32\pcalua.exe (-a C:\Users\Budkyns\Downloads\burrrn_package.exe -d C:\Users\Budkyns\Downloads) -> NALEZENO
[Suspicious.Path] \\{640E8802-E089-4BB0-BCC0-C017ABC35BB8} -- C:\windows\system32\pcalua.exe (-a "C:\Users\Budkyns\Desktop\PDer\PDeR 1.0a.exe" -d C:\Users\Budkyns\Desktop\PDer) -> NALEZENO
[Suspicious.Path] \\{652BDAD7-5255-4A8F-ABCF-1E8302562DF2} -- C:\windows\system32\pcalua.exe (-a "C:\Users\Budkyns\Downloads\Westeros 0.53.exe" -d C:\Users\Budkyns\Downloads) -> NALEZENO
[Suspicious.Path] \\{6A19942F-4651-42CC-813F-A2D8A66F2262} -- C:\windows\system32\pcalua.exe (-a "C:\Users\Budkyns\Desktop\Roma Surrectum\RS 2.5\RS2.5_Beta_setup.exe" -d "C:\Users\Budkyns\Desktop\Roma Surrectum\RS 2.5") -> NALEZENO
[Suspicious.Path] \\{70CC5097-9376-4182-A8C4-27B5D8AEE70C} -- C:\windows\system32\pcalua.exe (-a C:\Users\Budkyns\Downloads\RS2.5_Beta_setup.exe -d C:\Users\Budkyns\Downloads) -> NALEZENO
[Suspicious.Path] \\{73149A2B-9E2F-4426-8493-E44BE3889D02} -- C:\windows\system32\pcalua.exe (-a "C:\Users\Budkyns\Downloads\Westeros 0.53.exe" -d C:\Users\Budkyns\Downloads) -> NALEZENO
[Suspicious.Path] \\{902AEE89-7846-4D3F-9701-42765F3490EB} -- C:\windows\system32\pcalua.exe (-a C:\Windows\UbiSoft\SetupUbi.exe -d C:\windows\UbiSoft -c -play IL-2 Sturmovik) -> NALEZENO
[Suspicious.Path] \\{C0347A50-6A5E-4B2D-8E1A-BB0191355177} -- C:\windows\system32\pcalua.exe (-a C:\Users\Budkyns\Downloads\stereo-19.exe -d C:\Users\Budkyns\Downloads) -> NALEZENO
[Suspicious.Path] \\{C98674FC-0BB9-4C24-8169-F05AAF20BAB7} -- C:\windows\system32\pcalua.exe (-a "C:\Users\Budkyns\Downloads\RTR Platinum Edition 1.9.exe" -d C:\Users\Budkyns\Downloads) -> NALEZENO
[Suspicious.Path] \\{CF07E7E9-C037-4C2F-AAE9-603725FEBFF7} -- C:\windows\system32\pcalua.exe (-a C:\Users\Budkyns\Downloads\ROP2_22b.exe -d C:\Users\Budkyns\Downloads) -> NALEZENO
[Suspicious.Path] \\{DE767A8B-52BB-4201-8285-F412DA805511} -- C:\windows\system32\pcalua.exe (-a "C:\World of Warcraft\Launcher.exe" -d C:\Users\Budkyns\Desktop) -> NALEZENO
[Suspicious.Path] \\{F664D3FD-497C-4406-BB8C-55F1640ED3AB} -- C:\windows\system32\pcalua.exe (-a C:\Users\Budkyns\Downloads\Stainless_Steel_6.0_Pt1of2.exe -d C:\Users\Budkyns\Downloads) -> NALEZENO
[Suspicious.Path] \Hewlett-Packard\HP Support Assistant\Update Check -- C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater\HPSFUpdater.exe (/s /p 1) -> NALEZENO
¤¤¤ Soubory : 0 ¤¤¤
¤¤¤ Soubor HOSTS : 0 ¤¤¤
¤¤¤ Antirootkit : 0 (Driver: NAHRÁNO) ¤¤¤
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Kontrola MBR : ¤¤¤
+++++ PhysicalDrive0: WDC WD3200BEKT-60V5T1 +++++
--- User ---
[MBR] e7f1659d957fd73fed678efb299807d6
[BSP] 14f54d4019d670c9d0444b40265b046d : HP MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 2048 | Size: 300 MB
1 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 616448 | Size: 287534 MB
2 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 589486080 | Size: 15360 MB
3 - [XXXXXX] FAT32-LBA (0xc) [VISIBLE] Offset (sectors): 620943360 | Size: 2043 MB
User = LL1 ... OK
User = LL2 ... OK
============================================
RKreport_SCN_07092014_113043.log - RKreport_SCN_07092014_114223.log - RKreport_SCN_07092014_114808.log - RKreport_SCN_07092014_114810.log
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: preventivní kontrola logu
Zavři všechny programy a prohlížeče. Deaktivuj antivir a firewall.
Prosím, odpoj všechny USB nebo externí disky z počítače před spuštěním tohoto programu.
Spusť znovu RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Pak klikni na "Prohledat " ,po jeho skončení:
- V záložkách (Registry , Tasks , Web Browser apod.) vše zatrhni (dej zatržítka)
- Klikni na "Smazat"
- Počkej, dokud Status box nezobrazí " Mazání dokončeno "
- Klikni na "Zpráva " a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [číslo]. txt na ploše.
- Zavři RogueKiller
Stáhni si TDSSKiller
Na svojí plochu.Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller. 2.8.16.0_(datum)_log.txt , vlož sem prosím celý obsah logu.
-pokud bude mít log více než 60.000 znaků , rozděl ho a vlož do více příspěvků
Prosím, odpoj všechny USB nebo externí disky z počítače před spuštěním tohoto programu.
Spusť znovu RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Pak klikni na "Prohledat " ,po jeho skončení:
- V záložkách (Registry , Tasks , Web Browser apod.) vše zatrhni (dej zatržítka)
- Klikni na "Smazat"
- Počkej, dokud Status box nezobrazí " Mazání dokončeno "
- Klikni na "Zpráva " a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [číslo]. txt na ploše.
- Zavři RogueKiller
Stáhni si TDSSKiller
Na svojí plochu.Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller. 2.8.16.0_(datum)_log.txt , vlož sem prosím celý obsah logu.
-pokud bude mít log více než 60.000 znaků , rozděl ho a vlož do více příspěvků
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: preventivní kontrola logu
RogueKiller V9.2.0.0 [Jun 23 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com
Operační systém : Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Spuštěno v : Normální režim
Uživatel : Budkyns [Práva správce]
Mód : Odebrat -- Datum : 07/09/2014 21:59:55
¤¤¤ Škodlivé procesy: : 0 ¤¤¤
¤¤¤ ¤¤¤ Záznamy Registrů: : 4 ¤¤¤
[PUM.Policies] HKEY_USERS\S-1-5-21-1256565636-1676168881-298877341-1001\Software\Microsoft\Windows\CurrentVersion\Policies\System | DisableRegistryTools : 0 -> VYMAZÁNO
[PUM.Policies] HKEY_USERS\S-1-5-21-1256565636-1676168881-298877341-1001\Software\Microsoft\Windows\CurrentVersion\Policies\System | DisableTaskMgr : 0 -> VYMAZÁNO
[PUM.DesktopIcons] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {20D04FE0-3AEA-1069-A2D8-08002B30309D} : 1 -> NAHRAZENO (0)
[PUM.DesktopIcons] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {59031a47-3f72-44a7-89c5-5595fe6b30ee} : 1 -> NAHRAZENO (0)
¤¤¤ naplánované úlohy : 0 ¤¤¤
¤¤¤ Soubory : 0 ¤¤¤
¤¤¤ Soubor HOSTS : 0 ¤¤¤
¤¤¤ Antirootkit : 0 (Driver: NAHRÁNO) ¤¤¤
¤¤¤ Webové prohlížeče : 4 ¤¤¤
[IE:Addon] System : Nuance PDF [{E3286BF1-E654-42FF-B4A6-5E111731DF6B}] -> VYMAZÁNO
[FIREFX:Addon] 0ofy9f9q.default : Adblock Plus [{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}] -> VYMAZÁNO
[FIREFX:Addon] 0ofy9f9q.default : PDF Converter 6.0 [nuance@pdf6] -> VYMAZÁNO
[FIREFX:Addon] 0ofy9f9q.default : avast! Online Security [wrc@avast.com] -> VYMAZÁNO
¤¤¤ Kontrola MBR : ¤¤¤
+++++ PhysicalDrive0: WDC WD3200BEKT-60V5T1 +++++
--- User ---
[MBR] e7f1659d957fd73fed678efb299807d6
[BSP] 14f54d4019d670c9d0444b40265b046d : HP MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 2048 | Size: 300 MB
1 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 616448 | Size: 287534 MB
2 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 589486080 | Size: 15360 MB
3 - [XXXXXX] FAT32-LBA (0xc) [VISIBLE] Offset (sectors): 620943360 | Size: 2043 MB
User = LL1 ... OK
User = LL2 ... OK
============================================
RKreport_SCN_07092014_113043.log - RKreport_SCN_07092014_114223.log - RKreport_SCN_07092014_114808.log - RKreport_SCN_07092014_114810.log
RKreport_SCN_07092014_115700.log - RKreport_SCN_07092014_215526.log
mail : http://www.adlice.com/contact/
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com
Operační systém : Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Spuštěno v : Normální režim
Uživatel : Budkyns [Práva správce]
Mód : Odebrat -- Datum : 07/09/2014 21:59:55
¤¤¤ Škodlivé procesy: : 0 ¤¤¤
¤¤¤ ¤¤¤ Záznamy Registrů: : 4 ¤¤¤
[PUM.Policies] HKEY_USERS\S-1-5-21-1256565636-1676168881-298877341-1001\Software\Microsoft\Windows\CurrentVersion\Policies\System | DisableRegistryTools : 0 -> VYMAZÁNO
[PUM.Policies] HKEY_USERS\S-1-5-21-1256565636-1676168881-298877341-1001\Software\Microsoft\Windows\CurrentVersion\Policies\System | DisableTaskMgr : 0 -> VYMAZÁNO
[PUM.DesktopIcons] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {20D04FE0-3AEA-1069-A2D8-08002B30309D} : 1 -> NAHRAZENO (0)
[PUM.DesktopIcons] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {59031a47-3f72-44a7-89c5-5595fe6b30ee} : 1 -> NAHRAZENO (0)
¤¤¤ naplánované úlohy : 0 ¤¤¤
¤¤¤ Soubory : 0 ¤¤¤
¤¤¤ Soubor HOSTS : 0 ¤¤¤
¤¤¤ Antirootkit : 0 (Driver: NAHRÁNO) ¤¤¤
¤¤¤ Webové prohlížeče : 4 ¤¤¤
[IE:Addon] System : Nuance PDF [{E3286BF1-E654-42FF-B4A6-5E111731DF6B}] -> VYMAZÁNO
[FIREFX:Addon] 0ofy9f9q.default : Adblock Plus [{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}] -> VYMAZÁNO
[FIREFX:Addon] 0ofy9f9q.default : PDF Converter 6.0 [nuance@pdf6] -> VYMAZÁNO
[FIREFX:Addon] 0ofy9f9q.default : avast! Online Security [wrc@avast.com] -> VYMAZÁNO
¤¤¤ Kontrola MBR : ¤¤¤
+++++ PhysicalDrive0: WDC WD3200BEKT-60V5T1 +++++
--- User ---
[MBR] e7f1659d957fd73fed678efb299807d6
[BSP] 14f54d4019d670c9d0444b40265b046d : HP MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 2048 | Size: 300 MB
1 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 616448 | Size: 287534 MB
2 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 589486080 | Size: 15360 MB
3 - [XXXXXX] FAT32-LBA (0xc) [VISIBLE] Offset (sectors): 620943360 | Size: 2043 MB
User = LL1 ... OK
User = LL2 ... OK
============================================
RKreport_SCN_07092014_113043.log - RKreport_SCN_07092014_114223.log - RKreport_SCN_07092014_114808.log - RKreport_SCN_07092014_114810.log
RKreport_SCN_07092014_115700.log - RKreport_SCN_07092014_215526.log
Re: preventivní kontrola logu
22:02:57.0214 0x16f4 TDSS rootkit removing tool 3.0.0.39 Jun 5 2014 20:35:54
22:03:00.0552 0x16f4 ============================================================
22:03:00.0552 0x16f4 Current date / time: 2014/07/09 22:03:00.0552
22:03:00.0552 0x16f4 SystemInfo:
22:03:00.0552 0x16f4
22:03:00.0552 0x16f4 OS Version: 6.1.7601 ServicePack: 1.0
22:03:00.0552 0x16f4 Product type: Workstation
22:03:00.0552 0x16f4 ComputerName: BUDKYNS-HP
22:03:00.0552 0x16f4 UserName: Budkyns
22:03:00.0552 0x16f4 Windows directory: C:\windows
22:03:00.0552 0x16f4 System windows directory: C:\windows
22:03:00.0552 0x16f4 Processor architecture: Intel x86
22:03:00.0552 0x16f4 Number of processors: 2
22:03:00.0552 0x16f4 Page size: 0x1000
22:03:00.0552 0x16f4 Boot type: Normal boot
22:03:00.0552 0x16f4 ============================================================
22:03:02.0222 0x16f4 KLMD registered as C:\windows\system32\drivers\18972532.sys
22:03:03.0080 0x16f4 System UUID: {B9D66CA4-B59F-EEF7-7DBA-2FD682F9EF41}
22:03:04.0811 0x16f4 Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 ( 298.09 Gb ), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
22:03:04.0858 0x16f4 ============================================================
22:03:04.0858 0x16f4 \Device\Harddisk0\DR0:
22:03:04.0874 0x16f4 MBR partitions:
22:03:04.0874 0x16f4 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x96000
22:03:04.0874 0x16f4 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x96800, BlocksNum 0x23197000
22:03:04.0874 0x16f4 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x2322D800, BlocksNum 0x1E00000
22:03:04.0874 0x16f4 \Device\Harddisk0\DR0\Partition4: MBR, Type 0xC, StartLBA 0x2502D800, BlocksNum 0x3FD800
22:03:04.0874 0x16f4 ============================================================
22:03:04.0905 0x16f4 C: <-> \Device\Harddisk0\DR0\Partition2
22:03:05.0030 0x16f4 F: <-> \Device\Harddisk0\DR0\Partition4
22:03:05.0295 0x16f4 ============================================================
22:03:05.0295 0x16f4 Initialize success
22:03:05.0295 0x16f4 ============================================================
22:03:07.0838 0x11b8 ============================================================
22:03:07.0838 0x11b8 Scan started
22:03:07.0838 0x11b8 Mode: Manual;
22:03:07.0838 0x11b8 ============================================================
22:03:07.0838 0x11b8 KSN ping started
22:03:10.0614 0x11b8 KSN ping finished: true
22:03:11.0628 0x11b8 ================ Scan system memory ========================
22:03:11.0628 0x11b8 System memory - ok
22:03:11.0628 0x11b8 ================ Scan services =============================
22:03:11.0972 0x11b8 [ 1B133875B8AA8AC48969BD3458AFE9F5, 01753BDD47F3F9BC0E0D23A069B9C56D4AE6A6B6295BC19B95AE245D25B12744 ] 1394ohci C:\windows\system32\drivers\1394ohci.sys
22:03:11.0972 0x11b8 1394ohci - ok
22:03:12.0050 0x11b8 [ CEA80C80BED809AA0DA6FEBC04733349, AE69C142DC2210A4AE657C23CEA4A6E7CB32C4F4EBA039414123CAC52157509B ] ACPI C:\windows\system32\drivers\ACPI.sys
22:03:12.0065 0x11b8 ACPI - ok
22:03:12.0112 0x11b8 [ 1EFBC664ABFF416D1D07DB115DCB264F, BF94D069D692140B792DBF4FD3CB0127D27C26CC5BFB6B0C28A8B6346767EE58 ] AcpiPmi C:\windows\system32\drivers\acpipmi.sys
22:03:12.0112 0x11b8 AcpiPmi - ok
22:03:12.0268 0x11b8 [ A6B6AB9502B63F43A9A56AE6AFB22078, DD1F0BA3D8F3333F52A71EAE3719A001F6EF844D647FFABF0E4C56C6C764ACA7 ] AdobeFlashPlayerUpdateSvc C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
22:03:12.0284 0x11b8 AdobeFlashPlayerUpdateSvc - ok
22:03:12.0362 0x11b8 [ 21E785EBD7DC90A06391141AAC7892FB, A2D3D764C5E6DC0AD5AAF48485FFB8B121D2A40DC08ECF2D2CB92278A1002B25 ] adp94xx C:\windows\system32\DRIVERS\adp94xx.sys
22:03:12.0393 0x11b8 adp94xx - ok
22:03:12.0471 0x11b8 [ 0C676BC278D5B59FF5ABD57BBE9123F2, 339E8A433D186BAAB6FCB44C82CC9FB6FCD63C87981449494CBEB2072CB6B7BB ] adpahci C:\windows\system32\DRIVERS\adpahci.sys
22:03:12.0486 0x11b8 adpahci - ok
22:03:12.0549 0x11b8 [ 7C7B5EE4B7B822EC85321FE23A27DB33, A934AFB71D439555E6376DA9B34F82E8D39A300A4547BE9AC9311F6A3C36270C ] adpu320 C:\windows\system32\DRIVERS\adpu320.sys
22:03:12.0549 0x11b8 adpu320 - ok
22:03:12.0674 0x11b8 [ 8B5EEFEEC1E6D1A72A06C526628AD161, 026CDF4C96F4D493E7BABF79A14C4B0B5ADCCEF0B081FFFA2E3B243B2414167F ] AeLookupSvc C:\windows\System32\aelupsvc.dll
22:03:12.0674 0x11b8 AeLookupSvc - ok
22:03:12.0830 0x11b8 [ 827DBC22C96EECF6D36A13162FABAFD3, EBBC04A6AD3BC83E3791569C1120BBBB59AF70512FA2CEB6A8BA2A257F3F6C32 ] AESTFilters C:\windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_9b219d80a8843bf8\aestsrv.exe
22:03:12.0830 0x11b8 AESTFilters - ok
22:03:12.0908 0x11b8 [ 9EBBBA55060F786F0FCAA3893BFA2806, 2E5A0FA2995989E9391771024839F5AD040A041CEE56787286D8FC421E26FE90 ] AFD C:\windows\system32\drivers\afd.sys
22:03:12.0939 0x11b8 AFD - ok
22:03:13.0017 0x11b8 [ 7E10E3BB9B258AD8A9300F91214D67B9, CE5FAD7BF78234B64EAADF64DB23F3C342AADB9C5E3B0168E57863F494F30318 ] AgereSoftModem C:\windows\system32\DRIVERS\AGRSM.sys
22:03:13.0064 0x11b8 AgereSoftModem - ok
22:03:13.0110 0x11b8 [ 507812C3054C21CEF746B6EE3D04DD6E, D7E59350AC338AD229E3D10C76E32AE16D120311B263714A9CD94AB538633B0E ] agp440 C:\windows\system32\drivers\agp440.sys
22:03:13.0110 0x11b8 agp440 - ok
22:03:13.0204 0x11b8 [ 8B30250D573A8F6B4BD23195160D8707, 64EC289AFCD63D84EAFD9D81C50D0A77BCC79A1EFF32C50B2776BB0C0151757D ] aic78xx C:\windows\system32\DRIVERS\djsvs.sys
22:03:13.0204 0x11b8 aic78xx - ok
22:03:13.0251 0x11b8 [ 18A54E132947CD98FEA9ACCC57F98F13, 9D39AF972785E49F0DD12C4BAEF39A79CD69F098886BF152AF1B7CCE2E902115 ] ALG C:\windows\System32\alg.exe
22:03:13.0251 0x11b8 ALG - ok
22:03:13.0282 0x11b8 [ 0D40BCF52EA90FC7DF2AEAB6503DEA44, 1D1AA8F50935D976C29DE7A84708CADBBBDD936F0DD2C059E820F0D21367B3B6 ] aliide C:\windows\system32\drivers\aliide.sys
22:03:13.0282 0x11b8 aliide - ok
22:03:13.0313 0x11b8 [ 3C6600A0696E90A463771C7422E23AB5, 370B33DC1C25B981628A318BAE434A78A5F0A0DA93C2896DC7A3D7B87AE1A5E7 ] amdagp C:\windows\system32\drivers\amdagp.sys
22:03:13.0313 0x11b8 amdagp - ok
22:03:13.0344 0x11b8 [ CD5914170297126B6266860198D1D4F0, 2239FCBD1A7EC27CE4F10DA36AE6BD6CCB87E5128C82CA71B84BFE5AF5602A60 ] amdide C:\windows\system32\drivers\amdide.sys
22:03:13.0344 0x11b8 amdide - ok
22:03:13.0422 0x11b8 [ 00DDA200D71BAC534BF56A9DB5DFD666, CA316B1FFD85BA1CF8664B3229DA1F238A5341E016059F7ED89702324CFD124B ] AmdK8 C:\windows\system32\DRIVERS\amdk8.sys
22:03:13.0438 0x11b8 AmdK8 - ok
22:03:13.0485 0x11b8 [ 3CBF30F5370FDA40DD3E87DF38EA53B6, 7EACF1743367BE805357B6FD10F8F99E9B1C301FE3782D77719347B13DFA65EC ] AmdPPM C:\windows\system32\DRIVERS\amdppm.sys
22:03:13.0485 0x11b8 AmdPPM - ok
22:03:13.0532 0x11b8 [ D320BF87125326F996D4904FE24300FC, F767D8C5C58D57202905D829F7AE1B1FF33937F407FDCE4C90E32A6638F27416 ] amdsata C:\windows\system32\drivers\amdsata.sys
22:03:13.0547 0x11b8 amdsata - ok
22:03:13.0625 0x11b8 [ EA43AF0C423FF267355F74E7A53BDABA, 3F1335909AB0281A2FBDD7AD90E18309E091656CD32B48894B992789D8C61DB4 ] amdsbs C:\windows\system32\DRIVERS\amdsbs.sys
22:03:13.0625 0x11b8 amdsbs - ok
22:03:13.0656 0x11b8 [ 46387FB17B086D16DEA267D5BE23A2F2, 8B8AC61B91F154B4EB5CC6DECB5FCCEBA8B42EFE94859947136AD06681EA8ED0 ] amdxata C:\windows\system32\drivers\amdxata.sys
22:03:13.0656 0x11b8 amdxata - ok
22:03:13.0766 0x11b8 [ AEA177F783E20150ACE5383EE368DA19, 8FA9EE27AA1F22E8B8FE33A21028CA1E0062BAA95CB132C20D55B98C03B4254F ] AppID C:\windows\system32\drivers\appid.sys
22:03:13.0766 0x11b8 AppID - ok
22:03:13.0844 0x11b8 [ 62A9C86CB6085E20DB4823E4E97826F5, E0F840B49710022C4FB437002AD06F64B0F6B5D628B32D00F2B66765E6B97E4B ] AppIDSvc C:\windows\System32\appidsvc.dll
22:03:13.0844 0x11b8 AppIDSvc - ok
22:03:13.0906 0x11b8 [ EACFDF31921F51C097629F1F3C9129B4, 24138755D823E69760579ECBD672421192457CDC9941B2BC499C2D34D83E86C3 ] Appinfo C:\windows\System32\appinfo.dll
22:03:13.0906 0x11b8 Appinfo - ok
22:03:13.0953 0x11b8 [ 2932004F49677BD84DBC72EDB754FFB3, 73F84582244AC53994A2F4499A119B4A84A6BF7FD3046C29A8080C763DE540B8 ] arc C:\windows\system32\DRIVERS\arc.sys
22:03:13.0953 0x11b8 arc - ok
22:03:14.0000 0x11b8 [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7, F7C9C3B4F2C816F57A43B2921672858C291054220BADE291044343778216F6BA ] arcsas C:\windows\system32\DRIVERS\arcsas.sys
22:03:14.0000 0x11b8 arcsas - ok
22:03:14.0218 0x11b8 [ 5B01AF89D16D562825C4DB4530F20CBB, 9D8015E6E8333E61152CC260ECCE9F6395320AE15D5391522F0D40EB83DFC64C ] Aspi32 C:\windows\system32\drivers\aspi32.sys
22:03:14.0218 0x11b8 Aspi32 - ok
22:03:14.0530 0x11b8 [ 776ACEFA0CA9DF0FAA51A5FB2F435705, 72DF7ED6B085BC468994F5B3189506FD726A9A17A9C42ACA1E420D787691361D ] aspnet_state C:\windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
22:03:14.0982 0x11b8 aspnet_state - ok
22:03:15.0279 0x11b8 [ B347D2FEAE2D063943F16EC98634AB89, 2CA74745232607571ED088270B3B3FA555628455A257A6E52F133D650D861FD4 ] aswMonFlt C:\windows\system32\drivers\aswMonFlt.sys
22:03:15.0294 0x11b8 aswMonFlt - ok
22:03:15.0435 0x11b8 [ 769C65057212FB5004679E02EF8145C0, D6876E6ECA13DECB8AD13B3A46D7DA1B1CA4DB01A7A70371D112B491B36EC55E ] aswRdr C:\windows\system32\drivers\aswRdr2.sys
22:03:15.0435 0x11b8 aswRdr - ok
22:03:15.0591 0x11b8 [ 84B4C00AE8CDFC52CF68F322D821F34C, 9971A8ECDF2B81F4AA59E7680639A8B798430E1FDF5A39C6E05E522BF2DEF3F8 ] aswRvrt C:\windows\system32\drivers\aswRvrt.sys
22:03:15.0591 0x11b8 aswRvrt - ok
22:03:15.0809 0x11b8 [ 3A50AD6AE8D8A0F78F03316F5B93FE45, 6F3952EDA23E5FD7CACE152D3DA3B1F1238E9B9976CDD5193D21424463BAA0E9 ] aswSnx C:\windows\system32\drivers\aswSnx.sys
22:03:15.0887 0x11b8 aswSnx - ok
22:03:15.0981 0x11b8 [ B6381B4DC603C558419641BA969930E0, F6586B6D055C62942CD0E5702FFCC6F4DB7424DC551EB0041876C3544994EB59 ] aswSP C:\windows\system32\drivers\aswSP.sys
22:03:16.0043 0x11b8 aswSP - ok
22:03:16.0199 0x11b8 [ 9529E946B8496C1605A9188FFD49DED8, C8AB36A212E4C896D39F6120B72829585E6AFDEACA7DF7FD6D4A6EB8F9C6FF98 ] aswStm C:\windows\system32\drivers\aswStm.sys
22:03:16.0199 0x11b8 aswStm - ok
22:03:16.0293 0x11b8 [ 680448905E27BBC6587ADB28597640D6, A55297D872162178FDCF2C64C2357DCE1D98418AB84CF5E8621DED73C7484629 ] aswVmm C:\windows\system32\drivers\aswVmm.sys
22:03:16.0308 0x11b8 aswVmm - ok
22:03:16.0371 0x11b8 [ ADD2ADE1C2B285AB8378D2DAAF991481, 7965A705F37924C0EC7A934E64E89C5DF4069816E2EEA3509E0AC90F78910519 ] AsyncMac C:\windows\system32\DRIVERS\asyncmac.sys
22:03:16.0371 0x11b8 AsyncMac - ok
22:03:16.0402 0x11b8 [ 338C86357871C167A96AB976519BF59E, F28CC534523D1701B0552F5D7E18E88369C4218BDB1F69110C3E31D395884AD6 ] atapi C:\windows\system32\drivers\atapi.sys
22:03:16.0418 0x11b8 atapi - ok
22:03:16.0496 0x11b8 [ 6E996CF8459A2594E0E9609D0E34D41F, 9B5512A0C9AEFF90BF7837FCFE79C6D25ECE2660BD24828D8C876C73CECDD7B7 ] atksgt C:\windows\system32\DRIVERS\atksgt.sys
22:03:16.0511 0x11b8 atksgt - ok
22:03:16.0589 0x11b8 [ CE3B4E731638D2EF62FCB419BE0D39F0, 3B98179CB0101778D9E7810D2CD46D9C0D7120E141BA11471666E7D9EB3C93CC ] AudioEndpointBuilder C:\windows\System32\Audiosrv.dll
22:03:16.0667 0x11b8 AudioEndpointBuilder - ok
22:03:16.0683 0x11b8 [ CE3B4E731638D2EF62FCB419BE0D39F0, 3B98179CB0101778D9E7810D2CD46D9C0D7120E141BA11471666E7D9EB3C93CC ] Audiosrv C:\windows\System32\Audiosrv.dll
22:03:16.0698 0x11b8 Audiosrv - ok
22:03:16.0854 0x11b8 [ BEA8D0FA8805CC2E6BB49728166699C7, 9A574A1E79DC2D472877443A92ACDA57A1206A2DAB3AF9110C844944EDC9D797 ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
22:03:16.0886 0x11b8 avast! Antivirus - ok
22:03:16.0979 0x11b8 [ 6E30D02AAC9CAC84F421622E3A2F6178, 229DC527C1D6C778BCA2C855A2A6F6D2C4B0F4F6DE56C886B3AAD26E3347952C ] AxInstSV C:\windows\System32\AxInstSV.dll
22:03:16.0979 0x11b8 AxInstSV - ok
22:03:17.0042 0x11b8 [ 1A231ABEC60FD316EC54C66715543CEC, 09E2897BA80737997A286EA5408C03DD3CC0EBACD24CB391C2455B6D4BE7D67E ] b06bdrv C:\windows\system32\DRIVERS\bxvbdx.sys
22:03:17.0088 0x11b8 b06bdrv - ok
22:03:17.0135 0x11b8 [ BD8869EB9CDE6BBE4508D869929869EE, F4363A12EBFDBB89C69FD59B22F9EE05BADA07D477A1DF2DE01F59D6EE496543 ] b57nd60x C:\windows\system32\DRIVERS\b57nd60x.sys
22:03:17.0151 0x11b8 b57nd60x - ok
22:03:17.0213 0x11b8 [ EE1E9C3BB8228AE423DD38DB69128E71, ED54FD9795F3A4D32F02BED6052AD9404409A05644CDBEBFF19C662D104DA95A ] BDESVC C:\windows\System32\bdesvc.dll
22:03:17.0213 0x11b8 BDESVC - ok
22:03:17.0260 0x11b8 [ 505506526A9D467307B3C393DEDAF858, 8AD6F1492E357F57CF42261497BA29122045D4FC0DCC9669AA5AC9B2A4BABFA4 ] Beep C:\windows\system32\drivers\Beep.sys
22:03:17.0260 0x11b8 Beep - ok
22:03:17.0338 0x11b8 [ 1E2BAC209D184BB851E1A187D8A29136, 53933C938DA5126986FFF2918C1F522ABE93ABAB460AE32E4453161C2F7B68DF ] BFE C:\windows\System32\bfe.dll
22:03:17.0416 0x11b8 BFE - ok
22:03:17.0556 0x11b8 [ E585445D5021971FAE10393F0F1C3961, 178C008A9A0A6BFDA65EB0B98C510271360AD4474F22F13594F5EB60AA4E1CF5 ] BITS C:\windows\System32\qmgr.dll
22:03:17.0634 0x11b8 BITS - ok
22:03:17.0666 0x11b8 [ 2287078ED48FCFC477B05B20CF38F36F, 55BCA6174E6034A8D61CBE4126B2F1989F6052BFA624BEA9C0A0A664AEC74521 ] blbdrive C:\windows\system32\DRIVERS\blbdrive.sys
22:03:17.0666 0x11b8 blbdrive - ok
22:03:17.0806 0x11b8 [ 8F2DA3028D5FCBD1A060A3DE64CD6506, E234672E9CFE1A95AD2E78E306E41E010B870221E6EBBC0E2B0BE2FA5CE0CD76 ] bowser C:\windows\system32\DRIVERS\bowser.sys
22:03:17.0806 0x11b8 bowser - ok
22:03:17.0837 0x11b8 [ 9F9ACC7F7CCDE8A15C282D3F88B43309, A9131334BD9CF8FD60BA9D54AA054E2DF2BE1219FB650DF1464F2787BDEAE98F ] BrFiltLo C:\windows\system32\DRIVERS\BrFiltLo.sys
22:03:17.0837 0x11b8 BrFiltLo - ok
22:03:17.0853 0x11b8 [ 56801AD62213A41F6497F96DEE83755A, 0DEB8318FB47DF6473C171C795C735E26A73FA12232876C6856549EA16F33361 ] BrFiltUp C:\windows\system32\DRIVERS\BrFiltUp.sys
22:03:17.0884 0x11b8 BrFiltUp - ok
22:03:17.0978 0x11b8 [ 3DAA727B5B0A45039B0E1C9A211B8400, 903B51E75F0C503A0E255120F53BF51B047B219FEC1E15F2F1D02DDD562FC73B ] Browser C:\windows\System32\browser.dll
22:03:17.0993 0x11b8 Browser - ok
22:03:18.0040 0x11b8 [ 845B8CE732E67F3B4133164868C666EA, 9309B094CD9B5EBC46295A5EB806BED472C3CEDE3B5F6F497EBDABA496A2A27F ] Brserid C:\windows\System32\Drivers\Brserid.sys
22:03:18.0087 0x11b8 Brserid - ok
22:03:18.0118 0x11b8 [ 203F0B1E73ADADBBB7B7B1FABD901F6B, 782FA7B26940FE479C49C9BAA2EB582CDAAAD607013E9BCFC85E6FBBB7D49A6D ] BrSerWdm C:\windows\System32\Drivers\BrSerWdm.sys
22:03:18.0118 0x11b8 BrSerWdm - ok
22:03:18.0149 0x11b8 [ BD456606156BA17E60A04E18016AE54B, DFBDC9DA6A3EA40BACFF204BC6C55C2C122B5885D2CBF6D45054DE43EE15EC4D ] BrUsbMdm C:\windows\System32\Drivers\BrUsbMdm.sys
22:03:18.0149 0x11b8 BrUsbMdm - ok
22:03:18.0180 0x11b8 [ AF72ED54503F717A43268B3CC5FAEC2E, 4A638669B0C30B1BDED242A8BF2015A37749570FF4D67D190BACC8D7E0C44468 ] BrUsbSer C:\windows\System32\Drivers\BrUsbSer.sys
22:03:18.0180 0x11b8 BrUsbSer - ok
22:03:18.0258 0x11b8 [ 2865A5C8E98C70C605F417908CEBB3A4, B1C5AC228BD7072AF8668C009C6CDC13EE9FCB9481F57524300F37C40BF1E935 ] BthEnum C:\windows\system32\drivers\BthEnum.sys
22:03:18.0274 0x11b8 BthEnum - ok
22:03:18.0321 0x11b8 [ ED3DF7C56CE0084EB2034432FC56565A, B5B75E002E7BC0209582C635CCCA26DB569BDB23C33A126634E00C6434BF941B ] BTHMODEM C:\windows\system32\DRIVERS\bthmodem.sys
22:03:18.0336 0x11b8 BTHMODEM - ok
22:03:18.0383 0x11b8 [ AD1872E5829E8A2C3B5B4B641C3EAB0E, 8C2DBCAC08DDB41E2B44E257C55FA2D0272959B308EFF9EAF5FF9AE1E4A0AA39 ] BthPan C:\windows\system32\DRIVERS\bthpan.sys
22:03:18.0383 0x11b8 BthPan - ok
22:03:18.0633 0x11b8 [ 1153DE2E4F5941E10C399CB5592F78A1, 2B88AF246D62F72FA9F5B921B0375AE59A0F263672472D5EC9FDB5CA5EF51C31 ] BTHPORT C:\windows\System32\Drivers\BTHport.sys
22:03:18.0664 0x11b8 BTHPORT - ok
22:03:18.0726 0x11b8 [ 1DF19C96EEF6C29D1C3E1A8678E07190, 1F4BB161FF3A1C5B1465BB52F3520FEDB7ACB1FAA132466F07D16DB8E394AEA5 ] bthserv C:\windows\system32\bthserv.dll
22:03:18.0726 0x11b8 bthserv - ok
22:03:18.0758 0x11b8 [ C81E9413A25A439F436B1D4B6A0CF9E9, A4C290163207AED22C70C7F90B28F6FC24892889643D60D915059405AC5A4A72 ] BTHUSB C:\windows\System32\Drivers\BTHUSB.sys
22:03:18.0773 0x11b8 BTHUSB - ok
22:03:18.0820 0x11b8 [ 7E826BE3B3558208D5C9B00034E51BE5, 238E56AB8EA9E8F60B0BF6072AD1F82F1252C629B4D3CB5DAC001B2956EACFE7 ] btwaudio C:\windows\system32\drivers\btwaudio.sys
22:03:18.0820 0x11b8 btwaudio - ok
22:03:18.0960 0x11b8 [ AF9148C3E844131AC954CB53FF43D971, 64046A600B7F80045B1088CE87BDEEF54F19D871EFD1445E3E3988A900E4A7C8 ] btwavdt C:\windows\system32\drivers\btwavdt.sys
22:03:18.0976 0x11b8 btwavdt - ok
22:03:19.0116 0x11b8 [ E2ACED92A998E339DC5964C94E3DDB55, 452E5839AD09144B62CB22EFAC2D311EE29D83475C091E532010EFC464AFD89C ] btwdins C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
22:03:19.0148 0x11b8 btwdins - ok
22:03:19.0194 0x11b8 [ AAFD7CB76BA61FBB08E302DA208C974A, 1B342095E373ECCA1775B30E92CD337BECEB4BA9F821132C33507A646E6A341C ] btwl2cap C:\windows\system32\DRIVERS\btwl2cap.sys
22:03:19.0210 0x11b8 btwl2cap - ok
22:03:19.0241 0x11b8 [ 480B3D195854B2E55299CDDDDC50BCF9, ABF040002B975D7346F4EE50792BC4E3895B7F603B90C670075FD827583A5512 ] btwrchid C:\windows\system32\DRIVERS\btwrchid.sys
22:03:19.0241 0x11b8 btwrchid - ok
22:03:19.0304 0x11b8 [ 77EA11B065E0A8AB902D78145CA51E10, 160EB3BBE9E5F3CC4A02584E6F2576A812C7565B940D74838B983F1EE51FA73A ] cdfs C:\windows\system32\DRIVERS\cdfs.sys
22:03:19.0304 0x11b8 cdfs - ok
22:03:19.0350 0x11b8 [ BE167ED0FDB9C1FA1133953C18D5A6C9, E26A851CA13E7300F977E5B20FA5D25FD0E1442AB6AD5DB58BBDB2DAAD87027C ] cdrom C:\windows\system32\DRIVERS\cdrom.sys
22:03:19.0366 0x11b8 cdrom - ok
22:03:19.0491 0x11b8 [ 319C6B309773D063541D01DF8AC6F55F, 182F392FE839499D159A30A3CD04B5D0C87219930BFB1A7456880B7DA75B9820 ] CertPropSvc C:\windows\System32\certprop.dll
22:03:19.0491 0x11b8 CertPropSvc - ok
22:03:19.0553 0x11b8 [ 3FE3FE94A34DF6FB06E6418D0F6A0060, 6B3A2A26609A75B690D4C0B3059E40822F3B3DB08943F58EC496BABDA7D0A735 ] circlass C:\windows\system32\DRIVERS\circlass.sys
22:03:19.0553 0x11b8 circlass - ok
22:03:19.0616 0x11b8 [ 635181E0E9BBF16871BF5380D71DB02D, 58D5150C6F3B9F1730FFDF3A8A2ABF5FF207F9785BD66C0C1E03A0F1C223A26A ] CLFS C:\windows\system32\CLFS.sys
22:03:19.0662 0x11b8 CLFS - ok
22:03:19.0772 0x11b8 [ D88040F816FDA31C3B466F0FA0918F29, 39D3630E623DA25B8444B6D3AAAB16B98E7E289C5619E19A85D47B74C71449F3 ] clr_optimization_v2.0.50727_32 C:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
22:03:19.0787 0x11b8 clr_optimization_v2.0.50727_32 - ok
22:03:19.0928 0x11b8 [ C5A75EB48E2344ABDC162BDA79E16841, 6070A8AAFD38FBC6A68A2B10C20117612354DF21B4492D90CA522BFB6870D726 ] clr_optimization_v4.0.30319_32 C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
22:03:20.0505 0x11b8 clr_optimization_v4.0.30319_32 - ok
22:03:20.0552 0x11b8 [ DEA805815E587DAD1DD2C502220B5616, 2D6A7668C95352B818F5EC59FF462894935833D34190257DA9CAC7E67FD3631C ] CmBatt C:\windows\system32\DRIVERS\CmBatt.sys
22:03:20.0552 0x11b8 CmBatt - ok
22:03:20.0598 0x11b8 [ C537B1DB64D495B9B4717B4D6D9EDBF2, 400EEFE662DE117C9CC956E4CBD5E98F28F962E7447CD93E8A78FDD8CA39EB4B ] cmdide C:\windows\system32\drivers\cmdide.sys
22:03:20.0598 0x11b8 cmdide - ok
22:03:20.0692 0x11b8 [ 85449EEBE8F8EBD6481EFBF0F352B4EB, E6FF04970C5A5BFDE7297A86C1C7B9BFE2E0F976A1A1AFB874CEB488DC6151CC ] CNG C:\windows\system32\Drivers\cng.sys
22:03:20.0786 0x11b8 CNG - ok
22:03:20.0801 0x11b8 [ A6023D3823C37043986713F118A89BEE, FAC239A7FA6251C7EDFFA34B4BAE3910B8BC0BD4A3574B6DB6931A8D691E207B ] Compbatt C:\windows\system32\DRIVERS\compbatt.sys
22:03:20.0817 0x11b8 Compbatt - ok
22:03:20.0879 0x11b8 [ CBE8C58A8579CFE5FCCF809E6F114E89, AC083A1C649EBA18C59FCC1772D0784B10E2B8C63094E3C14388E147DBC3F6DF ] CompositeBus C:\windows\system32\drivers\CompositeBus.sys
22:03:20.0895 0x11b8 CompositeBus - ok
22:03:20.0910 0x11b8 COMSysApp - ok
22:03:20.0926 0x11b8 [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1, 6FC323217D82EF661BA0E3F949B61B05BB5235D1A69C81D24876C2153FAECEF6 ] crcdisk C:\windows\system32\DRIVERS\crcdisk.sys
22:03:20.0926 0x11b8 crcdisk - ok
22:03:21.0207 0x11b8 [ 7CA1BECEA5DE2643ADDAD32670E7A4C9, E3AB4CC52A97E3855D7EAB87363F807FDD2162ED8C76A036CD71549ED64E7797 ] CryptSvc C:\windows\system32\cryptsvc.dll
22:03:21.0207 0x11b8 CryptSvc - ok
22:03:21.0316 0x11b8 [ 7660F01D3B38ACA1747E397D21D790AF, 04611B43705C064C2A8331F6D3F8E4530295694AE2C3E3EC3F62CFF4A5EFA88D ] DcomLaunch C:\windows\system32\rpcss.dll
22:03:21.0347 0x11b8 DcomLaunch - ok
22:03:21.0410 0x11b8 [ 8D6E10A2D9A5EED59562D9B82CF804E1, 888F9650F4E872BA8F4E0C27E38A6672A561042B17EBA40E306A22357965B0AD ] defragsvc C:\windows\System32\defragsvc.dll
22:03:21.0425 0x11b8 defragsvc - ok
22:03:21.0534 0x11b8 [ F024449C97EC1E464AAFFDA18593DB88, 7EF1E241892E098A472BCA14C724DFF1AACCF190954AF1C4A38B6D542CC74BD2 ] DfsC C:\windows\system32\Drivers\dfsc.sys
22:03:21.0550 0x11b8 DfsC - ok
22:03:21.0612 0x11b8 [ 560B0DCE52DFED6623B27C9BAFA6F236, BB4156BB1CCA64CCDE065870DAE56CD58BF05CEBF7C3B17C7A821FDF02A8B157 ] dg_ssudbus C:\windows\system32\DRIVERS\ssudbus.sys
22:03:21.0612 0x11b8 dg_ssudbus - ok
22:03:21.0737 0x11b8 [ E9E01EB683C132F7FA27CD607B8A2B63, 4D9037B458C522874619143A4176BCED42472C68933E6E83D37B67242706F3C4 ] Dhcp C:\windows\system32\dhcpcore.dll
22:03:21.0753 0x11b8 Dhcp - ok
22:03:21.0800 0x11b8 [ 1A050B0274BFB3890703D490F330C0DA, 79D74F4679A2EE040FAAF4D0392A9311239A10A5F8A5CCB48656C6F89B6D62FB ] discache C:\windows\system32\drivers\discache.sys
22:03:21.0800 0x11b8 discache - ok
22:03:21.0878 0x11b8 [ 565003F326F99802E68CA78F2A68E9FF, ABC42B24DBA4FFC411120E09278EF26AF56CCAB463B69B4BD6C530B4A07063D2 ] Disk C:\windows\system32\DRIVERS\disk.sys
22:03:21.0893 0x11b8 Disk - ok
22:03:21.0940 0x11b8 [ 33EF4861F19A0736B11314AAD9AE28D0, 4C4B84365D85758E3263B88F157D8B086B392C6F1EA5F0F3DB6BF87EF90248EC ] Dnscache C:\windows\System32\dnsrslvr.dll
22:03:21.0956 0x11b8 Dnscache - ok
22:03:22.0049 0x11b8 [ 366BA8FB4B7BB7435E3B9EACB3843F67, 65B7C61ACF34F1F0149045AA9E09A3F917A927963237A385A914D0B80551DC31 ] dot3svc C:\windows\System32\dot3svc.dll
22:03:22.0065 0x11b8 dot3svc - ok
22:03:22.0174 0x11b8 [ 8EC04CA86F1D68DA9E11952EB85973D6, 2E3FBC2D683D1274E8BC45EEEA87D43B77EDDCAAF0D453296D9FDA6B9D717071 ] DPS C:\windows\system32\dps.dll
22:03:22.0190 0x11b8 DPS - ok
22:03:22.0314 0x11b8 [ B918E7C5F9BF77202F89E1A9539F2EB4, C589A37DE50BBEF22E2DAA9682EA43147F614AA1AF7DAAA942BA5FC192313A0B ] drmkaud C:\windows\system32\drivers\drmkaud.sys
22:03:22.0314 0x11b8 drmkaud - ok
22:03:22.0377 0x11b8 [ 555E54AC2F601A8821CEF58961653991, C094E4BE6903D73C45BEEA21B8E0B65FB94178FF99927640C2C2792F46D543A0 ] dtsoftbus01 C:\windows\system32\DRIVERS\dtsoftbus01.sys
22:03:22.0392 0x11b8 dtsoftbus01 - ok
22:03:22.0439 0x11b8 [ 16498EBC04AE9DD07049A8884B205C05, 134EA1C7A2DB984B8EBADF6C25B28DBADF02215AA2ED298FA124556FC4992084 ] DXGKrnl C:\windows\System32\drivers\dxgkrnl.sys
22:03:22.0486 0x11b8 DXGKrnl - ok
22:03:22.0564 0x11b8 [ 8600142FA91C1B96367D3300AD0F3F3A, 5713625E27DF11FAAFDA7AC79899A6AD813166E167088FA990EC5DE87DBE83DF ] EapHost C:\windows\System32\eapsvc.dll
22:03:22.0564 0x11b8 EapHost - ok
22:03:22.0814 0x11b8 [ 024E1B5CAC09731E4D868E64DBFB4AB0, AB0826A74BBEE5B7A1B035861B665C79BC98305CFC7D82BEF420558FBD3EE994 ] ebdrv C:\windows\system32\DRIVERS\evbdx.sys
22:03:22.0970 0x11b8 ebdrv - ok
22:03:23.0032 0x11b8 [ 803B370865D907EA21DC0C2B6A8936B5, E98F0BA1D94786E061A3EA2CC76041FF6BE0ADF47C6205D5572C03BF0E29CA78 ] EFS C:\windows\System32\lsass.exe
22:03:23.0032 0x11b8 EFS - ok
22:03:23.0204 0x11b8 [ A8C362018EFC87BEB013EE28F29C0863, 07971C681FBD391C0BA0172618AF8AD77520182207F1C57F134B34D6A113857F ] ehRecvr C:\windows\ehome\ehRecvr.exe
22:03:23.0250 0x11b8 ehRecvr - ok
22:03:23.0313 0x11b8 [ D389BFF34F80CAEDE417BF9D1507996A, 12859B9925D7A4631DE61A820922F43F56ED23C2AF014CBF36322685E5CF641E ] ehSched C:\windows\ehome\ehsched.exe
22:03:23.0313 0x11b8 ehSched - ok
22:03:23.0422 0x11b8 [ 0ED67910C8C326796FAA00B2BF6D9D3C, 97FAA7627A162B0AEC15545E0165D13355D535B4157604BB87F8EEB72ECD24A8 ] elxstor C:\windows\system32\DRIVERS\elxstor.sys
22:03:23.0469 0x11b8 elxstor - ok
22:03:23.0500 0x11b8 [ 8FC3208352DD3912C94367A206AB3F11, 69B65C12BDADD4B730508674B1B77C5496612B4ACCC447DB9AFE49ADEA8CBF02 ] ErrDev C:\windows\system32\drivers\errdev.sys
22:03:23.0500 0x11b8 ErrDev - ok
22:03:23.0562 0x11b8 [ F6916EFC29D9953D5D0DF06882AE8E16, ED41893960018D5EC2F7829B1DE4B6967D9FD074D60B11B9EB854E3E0948EC24 ] EventSystem C:\windows\system32\es.dll
22:03:23.0625 0x11b8 EventSystem - ok
22:03:23.0672 0x11b8 [ 2DC9108D74081149CC8B651D3A26207F, 75CB47923A867DDAC512701CE71DFCFC340FC3A2E27F4255D0836A1FBC463176 ] exfat C:\windows\system32\drivers\exfat.sys
22:03:23.0672 0x11b8 exfat - ok
22:03:23.0734 0x11b8 [ 7E0AB74553476622FB6AE36F73D97D35, 41463A255FDA1D550B3385EC7C73ABC343B1BBBE9CEE4DF9F2A8B3E7338C4947 ] fastfat C:\windows\system32\drivers\fastfat.sys
22:03:23.0734 0x11b8 fastfat - ok
22:03:23.0843 0x11b8 [ 967EA5B213E9984CBE270205DF37755B, 43153E23210B03FAE16897D62D55B8742F834EDC695F8401EAB5DE307F62602D ] Fax C:\windows\system32\fxssvc.exe
22:03:23.0890 0x11b8 Fax - ok
22:03:23.0921 0x11b8 [ E817A017F82DF2A1F8CFDBDA29388B29, 4CC9320A21E6FEA2D16C48D6BEA14391B695BD541A3C5FDDAEEE086A414FC837 ] fdc C:\windows\system32\DRIVERS\fdc.sys
22:03:23.0921 0x11b8 fdc - ok
22:03:23.0952 0x11b8 [ F3222C893BD2F5821A0179E5C71E88FB, A85B947249DBB986358CCD4B158DD58A9301F074F3C6CCCDEF2D01F432E59D1B ] fdPHost C:\windows\system32\fdPHost.dll
22:03:23.0952 0x11b8 fdPHost - ok
22:03:23.0984 0x11b8 [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B, 0E76C29D2A974A3F2FBFCB63D066D4136B78E02F6B1F579B1865CA7A76193987 ] FDResPub C:\windows\system32\fdrespub.dll
22:03:23.0984 0x11b8 FDResPub - ok
22:03:24.0046 0x11b8 [ 6CF00369C97F3CF563BE99BE983D13D8, F65F35324A2FB9DFB533B1C4D089D990CC242218FE83414329D07B786D8EFF33 ] FileInfo C:\windows\system32\drivers\fileinfo.sys
22:03:24.0046 0x11b8 FileInfo - ok
22:03:24.0077 0x11b8 [ 42C51DC94C91DA21CB9196EB64C45DB9, 388C68D12ECC8FFE3116FEAAF4DB7B80CF4A3F97E935788DD21C6ADE2369F635 ] Filetrace C:\windows\system32\drivers\filetrace.sys
22:03:24.0077 0x11b8 Filetrace - ok
22:03:24.0124 0x11b8 [ 87907AA70CB3C56600F1C2FB8841579B, CA1CD82A1CD453617CE5EA431A1836997F14E3580554E8A516D9FE1E9926D979 ] flpydisk C:\windows\system32\DRIVERS\flpydisk.sys
22:03:24.0124 0x11b8 flpydisk - ok
22:03:24.0186 0x11b8 [ 7520EC808E0C35E0EE6F841294316653, 6EC65511B4838A7172A8F89E35C2F9DF4F0BFCE3BE12EDA790F3EB567102FF67 ] FltMgr C:\windows\system32\drivers\fltmgr.sys
22:03:24.0202 0x11b8 FltMgr - ok
22:03:24.0436 0x11b8 [ E12C4928B32ACE04610259647F072635, B71B9C2DF45F33C4DAC88435129B08B0BCDBBE82E8C3AD0A95F00137CC8B619F ] FontCache C:\windows\system32\FntCache.dll
22:03:24.0483 0x11b8 FontCache - ok
22:03:24.0592 0x11b8 [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F, DBED26852B99B362152DA9CD4F31A1883EF6F9B496F3CF3772A197BA72DB61DA ] FontCache3.0.0.0 C:\windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
22:03:24.0592 0x11b8 FontCache3.0.0.0 - ok
22:03:24.0608 0x11b8 [ 1A16B57943853E598CFF37FE2B8CBF1D, 87609F46F3B8123552141FD70866E895220B1BBD92BC2B580CAF49201AA0197E ] FsDepends C:\windows\system32\drivers\FsDepends.sys
22:03:24.0608 0x11b8 FsDepends - ok
22:03:24.0670 0x11b8 [ D909075FA72C090F27AA926C32CB4612, F8610C20C4DD499D5B4ACEBD7107E52E25B6449AEED58D1A203F7D654B55C4DF ] fssfltr C:\windows\system32\DRIVERS\fssfltr.sys
22:03:24.0670 0x11b8 fssfltr - ok
22:03:24.0857 0x11b8 [ 4CE9DAC1518FF7E77BD213E6394B9D77, D7D0D29DF93AC7DC5F85E385EEB45306C7BD87ACA7AAC5A8D47893D120C32C03 ] fsssvc C:\Program Files\Windows Live\Family Safety\fsssvc.exe
22:03:24.0935 0x11b8 fsssvc - ok
22:03:24.0966 0x11b8 [ 7DAE5EBCC80E45D3253F4923DC424D05, 8A2C4D5591509B0B0A44583520617A9AE34F32BB6E68A012A7D7870ED24F703A ] Fs_Rec C:\windows\system32\drivers\Fs_Rec.sys
22:03:24.0966 0x11b8 Fs_Rec - ok
22:03:25.0044 0x11b8 [ E306A24D9694C724FA2491278BF50FDB, 1D246B9C28550640EACBF8CF9DC980FD75106B92832D392FEBEF0C7012353091 ] fvevol C:\windows\system32\DRIVERS\fvevol.sys
22:03:25.0044 0x11b8 fvevol - ok
22:03:25.0122 0x11b8 [ 65EE0C7A58B65E74AE05637418153938, 0E1A398ADD8411AF4CCC3344D67BE1B261320C58328BD5C5855A357476FAEBEF ] gagp30kx C:\windows\system32\DRIVERS\gagp30kx.sys
22:03:25.0122 0x11b8 gagp30kx - ok
22:03:25.0232 0x11b8 [ E897EAF5ED6BA41E081060C9B447A673, A428DC68516F19C6C53A8B62E4BDB2587E70FB751B9D77700B6B147D347DA157 ] gpsvc C:\windows\System32\gpsvc.dll
22:03:25.0294 0x11b8 gpsvc - ok
22:03:25.0341 0x11b8 [ C44E3C2BAB6837DB337DDEE7544736DB, 88A24FF7D2FECCEAFFD421B2039A0FB623DA47A6B220B80EF1E52DD26D9E222D ] hcw85cir C:\windows\system32\drivers\hcw85cir.sys
22:03:25.0341 0x11b8 hcw85cir - ok
22:03:25.0403 0x11b8 [ A5EF29D5315111C80A5C1ABAD14C8972, A181DA72E946F121C3F4A19438C547B0BFD15138AB1DB5465945EC89DF1F6B0A ] HdAudAddService C:\windows\system32\drivers\HdAudio.sys
22:03:25.0419 0x11b8 HdAudAddService - ok
22:03:25.0481 0x11b8 [ 9036377B8A6C15DC2EEC53E489D159B5, 1E56D2ACFE92E6DF96D755B05C63D580EED82C210F075C8623E138BEE6BCD41B ] HDAudBus C:\windows\system32\drivers\HDAudBus.sys
22:03:25.0481 0x11b8 HDAudBus - ok
22:03:25.0497 0x11b8 [ 1D58A7F3E11A9731D0EAAAA8405ACC36, 7056FA18B86FBD52C4A6092D80476C02553EA053D6A0BEDB01A2FA5E152D5215 ] HidBatt C:\windows\system32\DRIVERS\HidBatt.sys
22:03:25.0497 0x11b8 HidBatt - ok
22:03:25.0544 0x11b8 [ 89448F40E6DF260C206A193A4683BA78, 71E0FCC32AE6FF8DFF420DB0383D6A200E1EAE14BD2E32453F92CE18B31C1F3C ] HidBth C:\windows\system32\DRIVERS\hidbth.sys
22:03:25.0544 0x11b8 HidBth - ok
22:03:25.0590 0x11b8 [ CF50B4CF4A4F229B9F3C08351F99CA5E, B97843620AF80FF0EC8F2C438255C0A42A756C6314FAF3DEF415DE16E14C108F ] HidIr C:\windows\system32\DRIVERS\hidir.sys
22:03:25.0590 0x11b8 HidIr - ok
22:03:25.0622 0x11b8 [ 2BC6F6A1992B3A77F5F41432CA6B3B6B, 2AF3312F1C8C8923C0A29AA5DAE57CE269417E53DEA2F0CCCC8DB57029698FE1 ] hidserv C:\windows\system32\hidserv.dll
22:03:25.0622 0x11b8 hidserv - ok
22:03:25.0700 0x11b8 [ 10C19F8290891AF023EAEC0832E1EB4D, E208553029488A6EE2F5216CC9FE5F93E9931A94C0D0625253BB159E30642853 ] HidUsb C:\windows\system32\DRIVERS\hidusb.sys
22:03:25.0700 0x11b8 HidUsb - ok
22:03:25.0746 0x11b8 [ 196B4E3F4CCCC24AF836CE58FACBB699, 7A2E1F603A073421FA0987EFB96647F1F0F2D4E0C82AA62EBC041585DA811DAF ] hkmsvc C:\windows\system32\kmsvc.dll
22:03:25.0746 0x11b8 hkmsvc - ok
22:03:25.0793 0x11b8 [ 6658F4404DE03D75FE3BA09F7ABA6A30, E51D9C1580A283EB862F09B73AAE1B647DD683A53F3DD99834222F12DD15E40F ] HomeGroupListener C:\windows\system32\ListSvc.dll
22:03:25.0809 0x11b8 HomeGroupListener - ok
22:03:25.0871 0x11b8 [ DBC02D918FFF1CAD628ACBE0C0EAA8E8, 02121800D9062692C102475876AE8143EBE46D855E8328B8CDCFE6A2F0D19696 ] HomeGroupProvider C:\windows\system32\provsvc.dll
22:03:25.0980 0x11b8 HomeGroupProvider - ok
22:03:26.0183 0x11b8 [ 13BB1114451C63BFB41BA7DAA4D70A29, A07D27DCD1D5F333973DDF7E91BF902307088C48696EE1D1970A0152A507231B ] HP Support Assistant Service C:\Program Files\Hewlett-Packard\HP Support Framework\hpsa_service.exe
22:03:26.0183 0x11b8 HP Support Assistant Service - ok
22:03:26.0402 0x11b8 [ BCC4A8B2E2E902F52E7F2E7D8E125765, 4253DEABF5E4613E42BFC921BF4E2DD5BDF80A640250F41BDA7DD2711A6BA8A1 ] HPDrvMntSvc.exe C:\Program Files\Hewlett-Packard\Shared\HPDrvMntSvc.exe
22:03:26.0402 0x11b8 HPDrvMntSvc.exe - ok
22:03:26.0542 0x11b8 [ 6FA8388F9154CB631FC675DEA85249A3, 79CD15DC0FEF5ABAB18D59AA4DFA0DCFCD5FFA5539096B743EE366078AEC1D32 ] hpHotkeyMonitor C:\Program Files\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe
22:03:26.0573 0x11b8 hpHotkeyMonitor - ok
22:03:26.0682 0x11b8 [ 1210960FF8928950D2A786895B0C424A, 22C8785E024CFDD3A43FAEAAA96B8332C37E9B6C765AB7AFBCD3DAA2DC9EFFC7 ] HpqKbFiltr C:\windows\system32\DRIVERS\HpqKbFiltr.sys
22:03:26.0682 0x11b8 HpqKbFiltr - ok
22:03:26.0792 0x11b8 [ EC9739A46F1F83C6E52A7A4697F44A65, CF4E93D3E8CA607DDEF87C6996F6C7326316144A61C1B4F83EA1B4B2F9BDC69B ] hpqwmiex C:\Program Files\Hewlett-Packard\Shared\hpqWmiEx.exe
22:03:26.0854 0x11b8 hpqwmiex - ok
22:03:26.0916 0x11b8 [ 295FDC419039090EB8B49FFDBB374549, 670E8015FD374640C6570F56F7FE8DE4D8F92E7A8072F5D1B2B95D0BD699CEF7 ] HpSAMD C:\windows\system32\drivers\HpSAMD.sys
22:03:26.0932 0x11b8 HpSAMD - ok
22:03:27.0057 0x11b8 [ 871917B07A141BFF43D76D8844D48106, 30C702008D0EE57D63F74864967DD19A55A268E77E42B5B3CC73037AD51D2987 ] HTTP C:\windows\system32\drivers\HTTP.sys
22:03:27.0088 0x11b8 HTTP - ok
22:03:27.0135 0x11b8 [ 0C4E035C7F105F1299258C90886C64C5, CFB4FBE7B28058E6D3E6E508CF3C1645F6AAE0AFEB4C5364835B9C42311DF0D4 ] hwpolicy C:\windows\system32\drivers\hwpolicy.sys
22:03:27.0135 0x11b8 hwpolicy - ok
22:03:27.0182 0x11b8 [ F151F0BDC47F4A28B1B20A0818EA36D6, 84B24B5796D9F70A8C37773F5484A4606CC7908370CCD942627ACBEDC4952D79 ] i8042prt C:\windows\system32\drivers\i8042prt.sys
22:03:27.0182 0x11b8 i8042prt - ok
22:03:27.0260 0x11b8 [ D782F0C741EE2D50AC8D38774597FB2B, 298CC6D317F87DF6F1D1E779FABA28C3471BE4DCCC93304AE9B673AD4760EF32 ] IAANTMON C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
22:03:27.0291 0x11b8 IAANTMON - ok
22:03:27.0353 0x11b8 [ D9D3F168A2FD4C2380D98821A3FF3357, 9473479B62CE90CEA91DB3FB6E056280EAB04A6A1AF4D561CCC3E0BC76B413E8 ] iaStor C:\windows\system32\DRIVERS\iaStor.sys
22:03:27.0353 0x11b8 iaStor - ok
22:03:27.0431 0x11b8 [ 5CD5F9A5444E6CDCB0AC89BD62D8B76E, 72870092A80C6DAE0105025B0ED8B607E98BA81E59298364A7FE4C9C56C68FF0 ] iaStorV C:\windows\system32\drivers\iaStorV.sys
22:03:27.0447 0x11b8 iaStorV - ok
22:03:27.0650 0x11b8 [ C521D7EB6497BB1AF6AFA89E322FB43C, BDDCFCBB5B76A9295669B5AC9F732D6127199ED5C300770B554C4E4794F66BB7 ] idsvc C:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
22:03:27.0759 0x11b8 idsvc - ok
22:03:28.0055 0x11b8 [ 4EE7874572A515D112D2F35112F5AD41, 7CD9CDC0D1EAC7518883C555ABCBEFFC88F37FB051B82E52D7F2AFCB69FF7B6F ] igfx C:\windows\system32\DRIVERS\igdkmd32.sys
22:03:28.0320 0x11b8 igfx - ok
22:03:28.0430 0x11b8 [ 4173FF5708F3236CF25195FECD742915, 0A9C0701DF6EAC6602BE342FC13C7950EF04BB5BDF7D96C2C5DABBD2A29AA55D ] iirsp C:\windows\system32\DRIVERS\iirsp.sys
22:03:28.0430 0x11b8 iirsp - ok
22:03:28.0679 0x11b8 [ B9C54120F46392100478F58F374E5709, A28EE8B0988F580D5984E815FC78DF41B169260814234AA0E453375542D0957B ] IKEEXT C:\windows\System32\ikeext.dll
22:03:28.0726 0x11b8 IKEEXT - ok
22:03:28.0851 0x11b8 [ 264632ADE8127B7BAA2190CF6FAD435B, 5D558FEB9D25B271E0A29C7C20BCEE343E8370F8BE194E1AA505B692E799C2FF ] IntcHdmiAddService C:\windows\system32\drivers\IntcHdmi.sys
22:03:28.0866 0x11b8 IntcHdmiAddService - ok
22:03:28.0882 0x11b8 [ A0F12F2C9BA6C72F3987CE780E77C130, 5F53DF8BE1621AA7DFB655CFD9C95E0AFA1AD3CE2E290E19D7B7FB3C6E380034 ] intelide C:\windows\system32\drivers\intelide.sys
22:03:28.0882 0x11b8 intelide - ok
22:03:28.0913 0x11b8 [ 3B514D27BFC4ACCB4037BC6685F766E0, F12D7AC62F8550E6F33B28AD751D8413AB7FFEF963242D99FFA76CE8A48B027A ] intelppm C:\windows\system32\DRIVERS\intelppm.sys
22:03:28.0913 0x11b8 intelppm - ok
22:03:28.0976 0x11b8 [ ACB364B9075A45C0736E5C47BE5CAE19, 202F77C659103D2D0E787B8CB0A23BE32EA5AA2E6B3B0A0F0A8DFA906AB3C0C0 ] IPBusEnum C:\windows\system32\ipbusenum.dll
22:03:28.0976 0x11b8 IPBusEnum - ok
22:03:29.0007 0x11b8 [ 709D1761D3B19A932FF0238EA6D50200, 0A9D2C3A6E91CA45540555B40CB4E2DF3EBE98C1D164C4EECEE20C86782F5823 ] IpFilterDriver C:\windows\system32\DRIVERS\ipfltdrv.sys
22:03:29.0007 0x11b8 IpFilterDriver - ok
22:03:29.0163 0x11b8 [ 58F67245D041FBE7AF88F4EAF79DF0FA, 67468D6A46FF4D87AD321BFEA42F2FC843D09AA292A119C76D4D795D06028F96 ] iphlpsvc C:\windows\System32\iphlpsvc.dll
22:03:29.0241 0x11b8 iphlpsvc - ok
22:03:29.0319 0x11b8 [ 4BD7134618C1D2A27466A099062547BF, 20284ABEF4433A59E2981F4143CAEC67DC990864FE0B9E3DC70EE0B88539E964 ] IPMIDRV C:\windows\system32\drivers\IPMIDrv.sys
22:03:29.0319 0x11b8 IPMIDRV - ok
22:03:29.0350 0x11b8 [ A5FA468D67ABCDAA36264E463A7BB0CD, EDB828D596E43372F97DAE1AADA46428C4C45FB80646DDC64FAD5F25C826CF63 ] IPNAT C:\windows\system32\drivers\ipnat.sys
22:03:29.0350 0x11b8 IPNAT - ok
22:03:29.0412 0x11b8 [ 42996CFF20A3084A56017B7902307E9F, 688176DAB91BE569280E4822E4C5BDE755794D293591C53F8047AD59C441751D ] IRENUM C:\windows\system32\drivers\irenum.sys
22:03:29.0412 0x11b8 IRENUM - ok
22:03:29.0444 0x11b8 [ 1F32BB6B38F62F7DF1A7AB7292638A35, 86522358680FBB1CEBC56B4D139290689BB0F71A3EC78CE883E4D75D0B37586F ] isapnp C:\windows\system32\drivers\isapnp.sys
22:03:29.0459 0x11b8 isapnp - ok
22:03:29.0490 0x11b8 [ CB7A9ABB12B8415BCE5D74994C7BA3AE, 464BFF3F5EEE985BE075E23E1813F5CB82A9A0771A92C6D889B13B867BCDF647 ] iScsiPrt C:\windows\system32\drivers\msiscsi.sys
22:03:29.0522 0x11b8 iScsiPrt - ok
22:03:29.0568 0x11b8 [ FE8300320281D658A7854D5CFC02A63F, E57978A0F3DE8D142291C659483C62A02CADAACF4A5C834292C9216C2255AE97 ] k750bus C:\windows\system32\DRIVERS\k750bus.sys
22:03:29.0568 0x11b8 k750bus - ok
22:03:29.0600 0x11b8 [ ADEF52CA1AEAE82B50DF86B56413107E, A3AE1E96B04AC81665ABBD3CB267DFB3F78376DAE18FB0DBD447908DDAAA22D2 ] kbdclass C:\windows\system32\DRIVERS\kbdclass.sys
22:03:29.0600 0x11b8 kbdclass - ok
22:03:29.0646 0x11b8 [ 9E3CED91863E6EE98C24794D05E27A71, 90CF59F20E14E4A5A793266805E82BF7AE1F0CF4C7BAB1FD2EEF3B53C5DF770F ] kbdhid C:\windows\system32\DRIVERS\kbdhid.sys
22:03:29.0646 0x11b8 kbdhid - ok
22:03:29.0678 0x11b8 [ 803B370865D907EA21DC0C2B6A8936B5, E98F0BA1D94786E061A3EA2CC76041FF6BE0ADF47C6205D5572C03BF0E29CA78 ] KeyIso C:\windows\system32\lsass.exe
22:03:29.0678 0x11b8 KeyIso - ok
22:03:29.0771 0x11b8 [ F286830298323272260332D6ABC905C1, FF4CD182A95CA53119B228690D682EE9214BE131A0DBCB09B6189FBEBBFF902C ] KSecDD C:\windows\system32\Drivers\ksecdd.sys
22:03:29.0771 0x11b8 KSecDD - ok
22:03:29.0802 0x11b8 [ D7C760D57B1656DD748B9E4AB6CB5A51, F8AE4185A6A9F7005DEFF1FDC03F395C6189825B482B8C650637FD29DE93AB68 ] KSecPkg C:\windows\system32\Drivers\ksecpkg.sys
22:03:29.0818 0x11b8 KSecPkg - ok
22:03:29.0849 0x11b8 [ 89A7B9CC98D0D80C6F31B91C0A310FCD, 4583CAEEE0D50C0C7CE955E533FDA063CDC37B69033D41EF22EF1BA242E4C747 ] KtmRm C:\windows\system32\msdtckrm.dll
22:03:29.0896 0x11b8 KtmRm - ok
22:03:29.0927 0x11b8 [ D64AF876D53ECA3668BB97B51B4E70AB, D5C07C019BFEAFBEDC29AB5060356A3B07449712B21B50E03378BEF04AF180F9 ] LanmanServer C:\windows\system32\srvsvc.dll
22:03:29.0974 0x11b8 LanmanServer - ok
22:03:29.0990 0x11b8 [ 58405E4F68BA8E4057C6E914F326ABA2, C3E6519A1A38F1B3597D4391E42ABFE8F1F5E86256C4B3BD876CDAD9BB68B0A6 ] LanmanWorkstation C:\windows\System32\wkssvc.dll
22:03:30.0005 0x11b8 LanmanWorkstation - ok
22:03:30.0099 0x11b8 [ 975B6CF65F44E95883F3855BAE8CECAF, 5878F5B2258A17DD3AFBE18CAFAFCE0310CDB61C36891B9299D738FDEEF44A91 ] lirsgt C:\windows\system32\DRIVERS\lirsgt.sys
22:03:30.0099 0x11b8 lirsgt - ok
22:03:30.0146 0x11b8 [ F7611EC07349979DA9B0AE1F18CCC7A6, 879AA7A391966F00761CA039C25EBC62F6712DD5461694911EEC673E12DE103E ] lltdio C:\windows\system32\DRIVERS\lltdio.sys
22:03:30.0146 0x11b8 lltdio - ok
22:03:30.0192 0x11b8 [ 5700673E13A2117FA3B9020C852C01E2, 6684A2905EE8C438F2A64BE47E51A54D287B08DEFB8E0AE7FC2809D845EE3C5F ] lltdsvc C:\windows\System32\lltdsvc.dll
22:03:30.0208 0x11b8 lltdsvc - ok
22:03:30.0255 0x11b8 [ 55CA01BA19D0006C8F2639B6C045E08B, 4DBBDC820C514DB18CC13F8EE178F8C4E39C295C6E3C255416C235553CE7BDC1 ] lmhosts C:\windows\System32\lmhsvc.dll
22:03:30.0270 0x11b8 lmhosts - ok
22:03:30.0333 0x11b8 [ EB119A53CCF2ACC000AC71B065B78FEF, 1FD60735C4945AE565C223F0B47EAF9602D8777E3D15600914C1A9D761215AF9 ] LSI_FC C:\windows\system32\DRIVERS\lsi_fc.sys
22:03:30.0333 0x11b8 LSI_FC - ok
22:03:30.0364 0x11b8 [ 8ADE1C877256A22E49B75D1CC9161F9C, 3D64F233DC866537E50549A7C1A2B40A954055B22F0BDA39825B04C38C607CB7 ] LSI_SAS C:\windows\system32\DRIVERS\lsi_sas.sys
22:03:30.0364 0x11b8 LSI_SAS - ok
22:03:30.0395 0x11b8 [ DC9DC3D3DAA0E276FD2EC262E38B11E9, A264990857CBC74036799E17A087130626C0A09BE19879019BAF2D761C62AECC ] LSI_SAS2 C:\windows\system32\DRIVERS\lsi_sas2.sys
22:03:30.0411 0x11b8 LSI_SAS2 - ok
22:03:30.0442 0x11b8 [ 0A036C7D7CAB643A7F07135AC47E0524, 2F662D07FCB74B8D493156DB555EAA90A47E93CF14C7B30039D2FE47EB8682B8 ] LSI_SCSI C:\windows\system32\DRIVERS\lsi_scsi.sys
22:03:30.0442 0x11b8 LSI_SCSI - ok
22:03:30.0489 0x11b8 [ 6703E366CC18D3B6E534F5CF7DF39CEE, 7396B9AF938284D99EC51206A7B2FA4A0DC10A493DCE6707818B03A7473782C4 ] luafv C:\windows\system32\drivers\luafv.sys
22:03:30.0489 0x11b8 luafv - ok
22:03:30.0660 0x11b8 [ 0B058116D3D4ECCA7DED38F16E0581B2, E2861CBB64A7DE2A389BEE893DAE6D9E4E20657C163FB03F7A6755264E33BB3F ] massfilter C:\windows\system32\drivers\massfilter.sys
22:03:30.0660 0x11b8 massfilter - ok
22:03:30.0738 0x11b8 [ 12E71DA845D76665B56753AD149E32B3, 0E403710CCBACD5AB85FD4C32AAB6CB2C27BC1F043E8008EE49EE96ECA944146 ] MBAMSwissArmy C:\windows\system32\drivers\MBAMSwissArmy.sys
22:03:30.0738 0x11b8 MBAMSwissArmy - ok
22:03:30.0926 0x11b8 [ BFB9EE8EE977EFE85D1A3105ABEF6DD1, D2A84EBF0C0B7A14AD432FD2EF43CC12300027AEA3FA4075659FB088AB62B588 ] Mcx2Svc C:\windows\system32\Mcx2Svc.dll
22:03:30.0941 0x11b8 Mcx2Svc - ok
22:03:30.0972 0x11b8 [ 0FFF5B045293002AB38EB1FD1FC2FB74, 49071B565FD5B2DE43EC00D8518C3BE70843F38919E82F13104B8C1FAFB20374 ] megasas C:\windows\system32\DRIVERS\megasas.sys
22:03:30.0972 0x11b8 megasas - ok
22:03:31.0004 0x11b8 [ DCBAB2920C75F390CAF1D29F675D03D6, 85C3A7A010BEA5E3C6179161B295F2CB900A6A214833A5F87A4327392880E2BB ] MegaSR C:\windows\system32\DRIVERS\MegaSR.sys
22:03:31.0019 0x11b8 MegaSR - ok
22:03:31.0050 0x11b8 [ 146B6F43A673379A3C670E86D89BE5EA, C4412DCF80DE6B55466F399413271364F14BC0819C224AA161EDDC31A9775440 ] MMCSS C:\windows\system32\mmcss.dll
22:03:31.0066 0x11b8 MMCSS - ok
22:03:31.0082 0x11b8 [ F001861E5700EE84E2D4E52C712F4964, F4DC5AEED6F34D76CCEF360862CC47EF71097BE0813C8CE04EE5F0DB387DFFAE ] Modem C:\windows\system32\drivers\modem.sys
22:03:31.0082 0x11b8 Modem - ok
22:03:31.0113 0x11b8 [ 79D10964DE86B292320E9DFE02282A23, 52714827B7EEDACA55326A4E4F6158D4942DFAA3BACDE303A2F569BF3F4FAA72 ] monitor C:\windows\system32\DRIVERS\monitor.sys
22:03:31.0113 0x11b8 monitor - ok
22:03:31.0175 0x11b8 [ FB18CC1D4C2E716B6B903B0AC0CC0609, F10CCA63493782B16DE6B96B94A27078DBE68AECEF34FDF840CFF86D2C6E3C5E ] mouclass C:\windows\system32\DRIVERS\mouclass.sys
22:03:31.0175 0x11b8 mouclass - ok
22:03:31.0222 0x11b8 [ 2C388D2CD01C9042596CF3C8F3C7B24D, B2FB72272BB01AEDA4047B57C943B7E9BD8A6497854F8CC34672AAA592D0A703 ] mouhid C:\windows\system32\DRIVERS\mouhid.sys
22:03:31.0222 0x11b8 mouhid - ok
22:03:31.0269 0x11b8 [ FC8771F45ECCCFD89684E38842539B9B, 806DDF2B4830CA866582FE74A521BB7DF26CA0E19013DAF584D3677FB48CC77A ] mountmgr C:\windows\system32\drivers\mountmgr.sys
22:03:31.0284 0x11b8 mountmgr - ok
22:03:31.0550 0x11b8 [ 26EA1DAD601EE3ACAC301D66F07BA219, C9594BB15D53D4AC2156CCCD2DB65B2C20620F1F60DA85F48D1586FC10028096 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
22:03:31.0581 0x11b8 MozillaMaintenance - ok
22:03:31.0612 0x11b8 [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0, D3D903EEA465D77345AAC9B9F02CDEADF4831212EA2DE4FCA33BEE26EBB47420 ] mpio C:\windows\system32\drivers\mpio.sys
22:03:31.0612 0x11b8 mpio - ok
22:03:31.0830 0x11b8 MpKsl063d3325 - ok
22:03:31.0924 0x11b8 MpKsl0b07dada - ok
22:03:31.0971 0x11b8 MpKsl0c488db8 - ok
22:03:32.0033 0x11b8 MpKsl11b845b5 - ok
22:03:32.0096 0x11b8 MpKsl11fbe9de - ok
22:03:32.0252 0x11b8 MpKsl283a4546 - ok
22:03:32.0330 0x11b8 MpKsl34b6c955 - ok
22:03:32.0361 0x11b8 MpKsl3f857992 - ok
22:03:32.0454 0x11b8 MpKsl4122098c - ok
22:03:32.0532 0x11b8 MpKsl46ac45fd - ok
22:03:32.0564 0x11b8 MpKsl5150bef2 - ok
22:03:32.0610 0x11b8 MpKsl6aa8a5d7 - ok
22:03:32.0642 0x11b8 MpKsl73eda0a3 - ok
22:03:32.0704 0x11b8 MpKsl76fbe8b4 - ok
22:03:32.0751 0x11b8 MpKsl77fef83b - ok
22:03:32.0860 0x11b8 MpKsl7dd914f7 - ok
22:03:32.0876 0x11b8 MpKsl84a81fd5 - ok
22:03:32.0891 0x11b8 MpKsl882911ec - ok
22:03:32.0938 0x11b8 MpKsl8b5b5715 - ok
22:03:32.0938 0x11b8 MpKsl91e7ee0f - ok
22:03:33.0110 0x11b8 MpKsl9891e768 - ok
22:03:33.0172 0x11b8 MpKsl9cbfd317 - ok
22:03:33.0219 0x11b8 MpKsla48a29f5 - ok
22:03:33.0250 0x11b8 MpKsla5f212df - ok
22:03:33.0312 0x11b8 MpKslaac0e6df - ok
22:03:33.0484 0x11b8 MpKslaedba62a - ok
22:03:33.0484 0x11b8 MpKslb65e6cc2 - ok
22:03:33.0515 0x11b8 MpKslb993a1ae - ok
22:03:33.0593 0x11b8 MpKslc18c2065 - ok
22:03:33.0609 0x11b8 MpKslc4d4c6f5 - ok
22:03:33.0656 0x11b8 MpKsle34db3ef - ok
22:03:33.0734 0x11b8 MpKslf3fc0bf7 - ok
22:03:33.0765 0x11b8 MpKslfb8a4652 - ok
22:03:33.0780 0x11b8 MpKslff15b3b6 - ok
22:03:33.0843 0x11b8 [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0, 1D6DCFA0E56C3E55B6AED819176E751502F863BA0FCF4F0B3253A81D208141A2 ] mpsdrv C:\windows\system32\drivers\mpsdrv.sys
22:03:33.0843 0x11b8 mpsdrv - ok
22:03:33.0968 0x11b8 [ 9835584E999D25004E1EE8E5F3E3B881, 71798B0CBE9AE69F1F29B845319019C69EC7F415CBABB3B87DDE92C360675021 ] MpsSvc C:\windows\system32\mpssvc.dll
22:03:34.0014 0x11b8 MpsSvc - ok
22:03:34.0139 0x11b8 [ CEB46AB7C01C9F825F8CC6BABC18166A, AA98898204FC58878502C170FE6ED8BA681396DDD8BF3689D0C3642DEA87BEF8 ] MRxDAV C:\windows\system32\drivers\mrxdav.sys
22:03:34.0155 0x11b8 MRxDAV - ok
22:03:34.0202 0x11b8 [ 5D16C921E3671636C0EBA3BBAAC5FD25, 5BC107B95CAFC88F51FBB9F657B99944B20627A2B618F263093D7045E4FFD65C ] mrxsmb C:\windows\system32\DRIVERS\mrxsmb.sys
22:03:34.0217 0x11b8 mrxsmb - ok
22:03:34.0248 0x11b8 [ 6D17A4791ACA19328C685D256349FEFC, 012AA3D84EEAAF53780D06D2D11B9727DFC3441F3FAD75BC9E751FB814403668 ] mrxsmb10 C:\windows\system32\DRIVERS\mrxsmb10.sys
22:03:34.0311 0x11b8 mrxsmb10 - ok
22:03:34.0342 0x11b8 [ B81F204D146000BE76651A50670A5E9E, 78193D0F967BE9829E53F9B500342934B4B1E1F4CEFC444382959E2061BC3B17 ] mrxsmb20 C:\windows\system32\DRIVERS\mrxsmb20.sys
22:03:34.0342 0x11b8 mrxsmb20 - ok
22:03:34.0420 0x11b8 [ 012C5F4E9349E711E11E0F19A8589F0A, 208B92DFCF7AD43202660FBBC9FF5E03AEDBEE38178FF3628EB74CB6CD37C584 ] msahci C:\windows\system32\drivers\msahci.sys
22:03:34.0420 0x11b8 msahci - ok
22:03:34.0482 0x11b8 [ 55055F8AD8BE27A64C831322A780A228, C2C9FD1F61302997117B1CD0835E8234405BB80084065ED05363B77868397304 ] msdsm C:\windows\system32\drivers\msdsm.sys
22:03:34.0482 0x11b8 msdsm - ok
22:03:34.0514 0x11b8 [ E1BCE74A3BD9902B72599C0192A07E27, 5162EB623FE64E9DFEAC6CA2410EFA1314E62EC13207FFBFED2D61AA887603C4 ] MSDTC C:\windows\System32\msdtc.exe
22:03:34.0514 0x11b8 MSDTC - ok
22:03:34.0638 0x11b8 [ DAEFB28E3AF5A76ABCC2C3078C07327F, 6EB558532400B489763BAE7203538DE5F196282A8CB46A1B31D59120FC5AFCEF ] Msfs C:\windows\system32\drivers\Msfs.sys
22:03:34.0638 0x11b8 Msfs - ok
22:03:34.0670 0x11b8 [ 3E1E5767043C5AF9367F0056295E9F84, B2EDFECD3C14E4FE1BA87D9A86334043A9BD696A554EBD186DA7EAEB2EBD4F70 ] mshidkmdf C:\windows\System32\drivers\mshidkmdf.sys
22:03:34.0670 0x11b8 mshidkmdf - ok
22:03:34.0732 0x11b8 [ 0A4E5757AE09FA9622E3158CC1AEF114, ED574E420E57374E328C7C526504ECA569C164287966F06019EC207CB17F2C54 ] msisadrv C:\windows\system32\drivers\msisadrv.sys
22:03:34.0732 0x11b8 msisadrv - ok
22:03:34.0779 0x11b8 [ 90F7D9E6B6F27E1A707D4A297F077828, BEFC220EAA7307849600748842ACB9254A6A91158812D9B23EFAF912C498BA7F ] MSiSCSI C:\windows\system32\iscsiexe.dll
22:03:34.0779 0x11b8 MSiSCSI - ok
22:03:34.0794 0x11b8 msiserver - ok
22:03:34.0841 0x11b8 [ 8C0860D6366AAFFB6C5BB9DF9448E631, 949C5A14E57F2D7385543C17C3485E7ADE36EA2016F6E0A1866571D2EDE90A77 ] MSKSSRV C:\windows\system32\drivers\MSKSSRV.sys
22:03:34.0841 0x11b8 MSKSSRV - ok
22:03:34.0904 0x11b8 [ 3EA8B949F963562CEDBB549EAC0C11CE, 1B0B2F16A1790282504F3C548D47C3281EFB440D5D9711A1EF76D6371B768D2D ] MSPCLOCK C:\windows\system32\drivers\MSPCLOCK.sys
22:03:34.0904 0x11b8 MSPCLOCK - ok
22:03:34.0919 0x11b8 [ F456E973590D663B1073E9C463B40932, 48BA6D5580EE7B6A4C06E04772FD35B51779553FC0DD6C5C30DD8B5DEEB25B11 ] MSPQM C:\windows\system32\drivers\MSPQM.sys
22:03:34.0919 0x11b8 MSPQM - ok
22:03:34.0950 0x11b8 [ 0E008FC4819D238C51D7C93E7B41E560, 141FCEBDD05874407EAEC35A9DCD3BB16F2A428F23E55487D6A5DBFCADBF10D2 ] MsRPC C:\windows\system32\drivers\MsRPC.sys
22:03:34.0966 0x11b8 MsRPC - ok
22:03:34.0997 0x11b8 [ FC6B9FF600CC585EA38B12589BD4E246, F05DB01AE1955D2468CE6B51E51998B111CA3B0BDEED090EE6B99B625CBA564A ] mssmbios C:\windows\system32\drivers\mssmbios.sys
22:03:34.0997 0x11b8 mssmbios - ok
22:03:35.0075 0x11b8 [ B42C6B921F61A6E55159B8BE6CD54A36, 6BB0A7BE005B8F281E551D1B8046CE4202372BC7AE0161881C858BFAC675FE1C ] MSTEE C:\windows\system32\drivers\MSTEE.sys
22:03:35.0091 0x11b8 MSTEE - ok
22:03:35.0106 0x11b8 [ 33599130F44E1F34631CEA241DE8AC84, E15B31D1AFDC8DC6D2B21D4215796A99ECC69EEDBB06CEED01AECC3C99A44C8B ] MTConfig C:\windows\system32\DRIVERS\MTConfig.sys
22:03:35.0106 0x11b8 MTConfig - ok
22:03:35.0138 0x11b8 [ 159FAD02F64E6381758C990F753BCC80, E55AB01DCFA95ECAB24A2A9656E28FF9D064BA08B3D82DC8AA42F5991BA09598 ] Mup C:\windows\system32\Drivers\mup.sys
22:03:35.0138 0x11b8 Mup - ok
22:03:35.0231 0x11b8 [ 61D57A5D7C6D9AFE10E77DAE6E1B445E, D252248532142E9E2332DA693BC51B795102CA938B568FF04981E98B19BFBC5C ] napagent C:\windows\system32\qagentRT.dll
22:03:35.0262 0x11b8 napagent - ok
22:03:35.0325 0x11b8 [ 26384429FCD85D83746F63E798AB1480, 957C115C263A4B4DC854558B43ECE632D8E2BCCB744E23A01EBA7476BA2E7FFB ] NativeWifiP C:\windows\system32\DRIVERS\nwifi.sys
22:03:35.0340 0x11b8 NativeWifiP - ok
22:03:35.0403 0x11b8 [ 8C9C922D71F1CD4DEF73F186416B7896, 15FF43CD90C7913F83B35F2E7986561584588E8A45196EBD965C3A355836A9C7 ] NDIS C:\windows\system32\drivers\ndis.sys
22:03:35.0434 0x11b8 NDIS - ok
22:03:35.0512 0x11b8 [ 0E1787AA6C9191D3D319E8BAFE86F80C, F535022747355B2C66424BDA892D7DCB820C2EB8EE05BAE5BC6D1B1D65186278 ] NdisCap C:\windows\system32\DRIVERS\ndiscap.sys
22:03:35.0543 0x11b8 NdisCap - ok
22:03:35.0637 0x11b8 [ E4A8AEC125A2E43A9E32AFEEA7C9C888, 6EA181117126FC70B3C1DD1AC73CC26D1603A2CF49E47F66623E2C9489C49B55 ] NdisTapi C:\windows\system32\DRIVERS\ndistapi.sys
22:03:35.0637 0x11b8 NdisTapi - ok
22:03:35.0808 0x11b8 [ D8A65DAFB3EB41CBB622745676FCD072, 874D3C3D247C4A309DA813DB1D2EDB0037D3C489824BD5FE95B0C20699764EF7 ] Ndisuio C:\windows\system32\DRIVERS\ndisuio.sys
22:03:35.0808 0x11b8 Ndisuio - ok
22:03:36.0058 0x11b8 [ 38FBE267E7E6983311179230FACB1017, CFD1CBCA59650795C030DB30E5795B37C11C736E14003AE1DAB081BA5C0C9B14 ] NdisWan C:\windows\system32\DRIVERS\ndiswan.sys
22:03:36.0058 0x11b8 NdisWan - ok
22:03:36.0105 0x11b8 [ A4BDC541E69674FBFF1A8FF00BE913F2, 18CCFD063E9870B8B6958715BC0414C4D920AE63528EA1E9D7E30F7138918FFA ] NDProxy C:\windows\system32\drivers\NDProxy.sys
22:03:36.0105 0x11b8 NDProxy - ok
22:03:36.0167 0x11b8 [ 80B275B1CE3B0E79909DB7B39AF74D51, 75B406B0D9D28239D4EB2A298419A5F78A58237D88C5FD688EF1DFFAFACCF796 ] NetBIOS C:\windows\system32\DRIVERS\netbios.sys
22:03:36.0167 0x11b8 NetBIOS - ok
22:03:36.0339 0x11b8 [ 280122DDCF04B378EDD1AD54D71C1E54, F98B2ADE34F7E67C7C06C1D0FFB80ECBC353D044D4B4784CD952910345DC2ED0 ] NetBT C:\windows\system32\DRIVERS\netbt.sys
22:03:36.0354 0x11b8 NetBT - ok
22:03:36.0370 0x11b8 [ 803B370865D907EA21DC0C2B6A8936B5, E98F0BA1D94786E061A3EA2CC76041FF6BE0ADF47C6205D5572C03BF0E29CA78 ] Netlogon C:\windows\system32\lsass.exe
22:03:36.0370 0x11b8 Netlogon - ok
22:03:36.0432 0x11b8 [ 7CCCFCA7510684768DA22092D1FA4DB2, BB9E4F8FABBF596D888E6D303CB54A336D9DFF95B36AEA9369D2ED787DDC4B5D ] Netman C:\windows\System32\netman.dll
22:03:36.0479 0x11b8 Netman - ok
22:03:36.0635 0x11b8 [ D22CD77D4F0D63D1169BB35911BFF12D, 85B1FDFA02E1B8EA4FCB9B7EEB687C5C448697FC7EC9D178C5A2F64D2C9CFEE8 ] NetMsmqActivator C:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
22:03:36.0682 0x11b8 NetMsmqActivator - ok
22:03:36.0744 0x11b8 [ D22CD77D4F0D63D1169BB35911BFF12D, 85B1FDFA02E1B8EA4FCB9B7EEB687C5C448697FC7EC9D178C5A2F64D2C9CFEE8 ] NetPipeActivator C:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
22:03:36.0744 0x11b8 NetPipeActivator - ok
22:03:36.0791 0x11b8 [ 8C338238C16777A802D6A9211EB2BA50, 0D08A47CD403EDA5E8CAD7409BBBBCDC29A9861D2DC41D42B68B22B1AA1EBDD6 ] netprofm C:\windows\System32\netprofm.dll
22:03:36.0885 0x11b8 netprofm - ok
22:03:36.0916 0x11b8 [ D22CD77D4F0D63D1169BB35911BFF12D, 85B1FDFA02E1B8EA4FCB9B7EEB687C5C448697FC7EC9D178C5A2F64D2C9CFEE8 ] NetTcpActivator C:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
22:03:36.0916 0x11b8 NetTcpActivator - ok
22:03:36.0932 0x11b8 [ D22CD77D4F0D63D1169BB35911BFF12D, 85B1FDFA02E1B8EA4FCB9B7EEB687C5C448697FC7EC9D178C5A2F64D2C9CFEE8 ] NetTcpPortSharing C:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
22:03:36.0932 0x11b8 NetTcpPortSharing - ok
22:03:36.0963 0x11b8 [ 1D85C4B390B0EE09C7A46B91EFB2C097, 6A8850B151E88EE371F3CC543A946302DDF9494908D684B8B0C706A42CC54348 ] nfrd960 C:\windows\system32\DRIVERS\nfrd960.sys
22:03:36.0963 0x11b8 nfrd960 - ok
22:03:37.0010 0x11b8 [ 374071043F9E4231EE43BE2BB48DD36D, C4FA3FC40CC49DBBB91901D14210A55D3831FAC9F9B3FF45FCA7F5CF242C9E92 ] NlaSvc C:\windows\System32\nlasvc.dll
22:03:37.0041 0x11b8 NlaSvc - ok
22:03:37.0134 0x11b8 [ B48DC6ABCD3AEFF8618350CCBDC6B09A, 824D8B03E061DDD0D33EF9F03C669B13E7B6E339684009BD44D69178C45E2DE1 ] npf C:\windows\system32\drivers\npf.sys
22:03:37.0134 0x11b8 npf - ok
22:03:37.0212 0x11b8 [ 1DB262A9F8C087E8153D89BEF3D2235F, A51EE5D5AD3CD76B74BEA9C66C462608BF3B50C53DAA4110A75DB10495A8C101 ] Npfs C:\windows\system32\drivers\Npfs.sys
22:03:37.0212 0x11b8 Npfs - ok
22:03:37.0259 0x11b8 [ BA387E955E890C8A88306D9B8D06BF17, 3477BD9686C5777A93251C154512671AAA7533B18C536DF51F7B1D6D28E7F8A5 ] nsi C:\windows\system32\nsisvc.dll
22:03:37.0275 0x11b8 nsi - ok
22:03:00.0552 0x16f4 ============================================================
22:03:00.0552 0x16f4 Current date / time: 2014/07/09 22:03:00.0552
22:03:00.0552 0x16f4 SystemInfo:
22:03:00.0552 0x16f4
22:03:00.0552 0x16f4 OS Version: 6.1.7601 ServicePack: 1.0
22:03:00.0552 0x16f4 Product type: Workstation
22:03:00.0552 0x16f4 ComputerName: BUDKYNS-HP
22:03:00.0552 0x16f4 UserName: Budkyns
22:03:00.0552 0x16f4 Windows directory: C:\windows
22:03:00.0552 0x16f4 System windows directory: C:\windows
22:03:00.0552 0x16f4 Processor architecture: Intel x86
22:03:00.0552 0x16f4 Number of processors: 2
22:03:00.0552 0x16f4 Page size: 0x1000
22:03:00.0552 0x16f4 Boot type: Normal boot
22:03:00.0552 0x16f4 ============================================================
22:03:02.0222 0x16f4 KLMD registered as C:\windows\system32\drivers\18972532.sys
22:03:03.0080 0x16f4 System UUID: {B9D66CA4-B59F-EEF7-7DBA-2FD682F9EF41}
22:03:04.0811 0x16f4 Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 ( 298.09 Gb ), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
22:03:04.0858 0x16f4 ============================================================
22:03:04.0858 0x16f4 \Device\Harddisk0\DR0:
22:03:04.0874 0x16f4 MBR partitions:
22:03:04.0874 0x16f4 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x96000
22:03:04.0874 0x16f4 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x96800, BlocksNum 0x23197000
22:03:04.0874 0x16f4 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x2322D800, BlocksNum 0x1E00000
22:03:04.0874 0x16f4 \Device\Harddisk0\DR0\Partition4: MBR, Type 0xC, StartLBA 0x2502D800, BlocksNum 0x3FD800
22:03:04.0874 0x16f4 ============================================================
22:03:04.0905 0x16f4 C: <-> \Device\Harddisk0\DR0\Partition2
22:03:05.0030 0x16f4 F: <-> \Device\Harddisk0\DR0\Partition4
22:03:05.0295 0x16f4 ============================================================
22:03:05.0295 0x16f4 Initialize success
22:03:05.0295 0x16f4 ============================================================
22:03:07.0838 0x11b8 ============================================================
22:03:07.0838 0x11b8 Scan started
22:03:07.0838 0x11b8 Mode: Manual;
22:03:07.0838 0x11b8 ============================================================
22:03:07.0838 0x11b8 KSN ping started
22:03:10.0614 0x11b8 KSN ping finished: true
22:03:11.0628 0x11b8 ================ Scan system memory ========================
22:03:11.0628 0x11b8 System memory - ok
22:03:11.0628 0x11b8 ================ Scan services =============================
22:03:11.0972 0x11b8 [ 1B133875B8AA8AC48969BD3458AFE9F5, 01753BDD47F3F9BC0E0D23A069B9C56D4AE6A6B6295BC19B95AE245D25B12744 ] 1394ohci C:\windows\system32\drivers\1394ohci.sys
22:03:11.0972 0x11b8 1394ohci - ok
22:03:12.0050 0x11b8 [ CEA80C80BED809AA0DA6FEBC04733349, AE69C142DC2210A4AE657C23CEA4A6E7CB32C4F4EBA039414123CAC52157509B ] ACPI C:\windows\system32\drivers\ACPI.sys
22:03:12.0065 0x11b8 ACPI - ok
22:03:12.0112 0x11b8 [ 1EFBC664ABFF416D1D07DB115DCB264F, BF94D069D692140B792DBF4FD3CB0127D27C26CC5BFB6B0C28A8B6346767EE58 ] AcpiPmi C:\windows\system32\drivers\acpipmi.sys
22:03:12.0112 0x11b8 AcpiPmi - ok
22:03:12.0268 0x11b8 [ A6B6AB9502B63F43A9A56AE6AFB22078, DD1F0BA3D8F3333F52A71EAE3719A001F6EF844D647FFABF0E4C56C6C764ACA7 ] AdobeFlashPlayerUpdateSvc C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
22:03:12.0284 0x11b8 AdobeFlashPlayerUpdateSvc - ok
22:03:12.0362 0x11b8 [ 21E785EBD7DC90A06391141AAC7892FB, A2D3D764C5E6DC0AD5AAF48485FFB8B121D2A40DC08ECF2D2CB92278A1002B25 ] adp94xx C:\windows\system32\DRIVERS\adp94xx.sys
22:03:12.0393 0x11b8 adp94xx - ok
22:03:12.0471 0x11b8 [ 0C676BC278D5B59FF5ABD57BBE9123F2, 339E8A433D186BAAB6FCB44C82CC9FB6FCD63C87981449494CBEB2072CB6B7BB ] adpahci C:\windows\system32\DRIVERS\adpahci.sys
22:03:12.0486 0x11b8 adpahci - ok
22:03:12.0549 0x11b8 [ 7C7B5EE4B7B822EC85321FE23A27DB33, A934AFB71D439555E6376DA9B34F82E8D39A300A4547BE9AC9311F6A3C36270C ] adpu320 C:\windows\system32\DRIVERS\adpu320.sys
22:03:12.0549 0x11b8 adpu320 - ok
22:03:12.0674 0x11b8 [ 8B5EEFEEC1E6D1A72A06C526628AD161, 026CDF4C96F4D493E7BABF79A14C4B0B5ADCCEF0B081FFFA2E3B243B2414167F ] AeLookupSvc C:\windows\System32\aelupsvc.dll
22:03:12.0674 0x11b8 AeLookupSvc - ok
22:03:12.0830 0x11b8 [ 827DBC22C96EECF6D36A13162FABAFD3, EBBC04A6AD3BC83E3791569C1120BBBB59AF70512FA2CEB6A8BA2A257F3F6C32 ] AESTFilters C:\windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_9b219d80a8843bf8\aestsrv.exe
22:03:12.0830 0x11b8 AESTFilters - ok
22:03:12.0908 0x11b8 [ 9EBBBA55060F786F0FCAA3893BFA2806, 2E5A0FA2995989E9391771024839F5AD040A041CEE56787286D8FC421E26FE90 ] AFD C:\windows\system32\drivers\afd.sys
22:03:12.0939 0x11b8 AFD - ok
22:03:13.0017 0x11b8 [ 7E10E3BB9B258AD8A9300F91214D67B9, CE5FAD7BF78234B64EAADF64DB23F3C342AADB9C5E3B0168E57863F494F30318 ] AgereSoftModem C:\windows\system32\DRIVERS\AGRSM.sys
22:03:13.0064 0x11b8 AgereSoftModem - ok
22:03:13.0110 0x11b8 [ 507812C3054C21CEF746B6EE3D04DD6E, D7E59350AC338AD229E3D10C76E32AE16D120311B263714A9CD94AB538633B0E ] agp440 C:\windows\system32\drivers\agp440.sys
22:03:13.0110 0x11b8 agp440 - ok
22:03:13.0204 0x11b8 [ 8B30250D573A8F6B4BD23195160D8707, 64EC289AFCD63D84EAFD9D81C50D0A77BCC79A1EFF32C50B2776BB0C0151757D ] aic78xx C:\windows\system32\DRIVERS\djsvs.sys
22:03:13.0204 0x11b8 aic78xx - ok
22:03:13.0251 0x11b8 [ 18A54E132947CD98FEA9ACCC57F98F13, 9D39AF972785E49F0DD12C4BAEF39A79CD69F098886BF152AF1B7CCE2E902115 ] ALG C:\windows\System32\alg.exe
22:03:13.0251 0x11b8 ALG - ok
22:03:13.0282 0x11b8 [ 0D40BCF52EA90FC7DF2AEAB6503DEA44, 1D1AA8F50935D976C29DE7A84708CADBBBDD936F0DD2C059E820F0D21367B3B6 ] aliide C:\windows\system32\drivers\aliide.sys
22:03:13.0282 0x11b8 aliide - ok
22:03:13.0313 0x11b8 [ 3C6600A0696E90A463771C7422E23AB5, 370B33DC1C25B981628A318BAE434A78A5F0A0DA93C2896DC7A3D7B87AE1A5E7 ] amdagp C:\windows\system32\drivers\amdagp.sys
22:03:13.0313 0x11b8 amdagp - ok
22:03:13.0344 0x11b8 [ CD5914170297126B6266860198D1D4F0, 2239FCBD1A7EC27CE4F10DA36AE6BD6CCB87E5128C82CA71B84BFE5AF5602A60 ] amdide C:\windows\system32\drivers\amdide.sys
22:03:13.0344 0x11b8 amdide - ok
22:03:13.0422 0x11b8 [ 00DDA200D71BAC534BF56A9DB5DFD666, CA316B1FFD85BA1CF8664B3229DA1F238A5341E016059F7ED89702324CFD124B ] AmdK8 C:\windows\system32\DRIVERS\amdk8.sys
22:03:13.0438 0x11b8 AmdK8 - ok
22:03:13.0485 0x11b8 [ 3CBF30F5370FDA40DD3E87DF38EA53B6, 7EACF1743367BE805357B6FD10F8F99E9B1C301FE3782D77719347B13DFA65EC ] AmdPPM C:\windows\system32\DRIVERS\amdppm.sys
22:03:13.0485 0x11b8 AmdPPM - ok
22:03:13.0532 0x11b8 [ D320BF87125326F996D4904FE24300FC, F767D8C5C58D57202905D829F7AE1B1FF33937F407FDCE4C90E32A6638F27416 ] amdsata C:\windows\system32\drivers\amdsata.sys
22:03:13.0547 0x11b8 amdsata - ok
22:03:13.0625 0x11b8 [ EA43AF0C423FF267355F74E7A53BDABA, 3F1335909AB0281A2FBDD7AD90E18309E091656CD32B48894B992789D8C61DB4 ] amdsbs C:\windows\system32\DRIVERS\amdsbs.sys
22:03:13.0625 0x11b8 amdsbs - ok
22:03:13.0656 0x11b8 [ 46387FB17B086D16DEA267D5BE23A2F2, 8B8AC61B91F154B4EB5CC6DECB5FCCEBA8B42EFE94859947136AD06681EA8ED0 ] amdxata C:\windows\system32\drivers\amdxata.sys
22:03:13.0656 0x11b8 amdxata - ok
22:03:13.0766 0x11b8 [ AEA177F783E20150ACE5383EE368DA19, 8FA9EE27AA1F22E8B8FE33A21028CA1E0062BAA95CB132C20D55B98C03B4254F ] AppID C:\windows\system32\drivers\appid.sys
22:03:13.0766 0x11b8 AppID - ok
22:03:13.0844 0x11b8 [ 62A9C86CB6085E20DB4823E4E97826F5, E0F840B49710022C4FB437002AD06F64B0F6B5D628B32D00F2B66765E6B97E4B ] AppIDSvc C:\windows\System32\appidsvc.dll
22:03:13.0844 0x11b8 AppIDSvc - ok
22:03:13.0906 0x11b8 [ EACFDF31921F51C097629F1F3C9129B4, 24138755D823E69760579ECBD672421192457CDC9941B2BC499C2D34D83E86C3 ] Appinfo C:\windows\System32\appinfo.dll
22:03:13.0906 0x11b8 Appinfo - ok
22:03:13.0953 0x11b8 [ 2932004F49677BD84DBC72EDB754FFB3, 73F84582244AC53994A2F4499A119B4A84A6BF7FD3046C29A8080C763DE540B8 ] arc C:\windows\system32\DRIVERS\arc.sys
22:03:13.0953 0x11b8 arc - ok
22:03:14.0000 0x11b8 [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7, F7C9C3B4F2C816F57A43B2921672858C291054220BADE291044343778216F6BA ] arcsas C:\windows\system32\DRIVERS\arcsas.sys
22:03:14.0000 0x11b8 arcsas - ok
22:03:14.0218 0x11b8 [ 5B01AF89D16D562825C4DB4530F20CBB, 9D8015E6E8333E61152CC260ECCE9F6395320AE15D5391522F0D40EB83DFC64C ] Aspi32 C:\windows\system32\drivers\aspi32.sys
22:03:14.0218 0x11b8 Aspi32 - ok
22:03:14.0530 0x11b8 [ 776ACEFA0CA9DF0FAA51A5FB2F435705, 72DF7ED6B085BC468994F5B3189506FD726A9A17A9C42ACA1E420D787691361D ] aspnet_state C:\windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
22:03:14.0982 0x11b8 aspnet_state - ok
22:03:15.0279 0x11b8 [ B347D2FEAE2D063943F16EC98634AB89, 2CA74745232607571ED088270B3B3FA555628455A257A6E52F133D650D861FD4 ] aswMonFlt C:\windows\system32\drivers\aswMonFlt.sys
22:03:15.0294 0x11b8 aswMonFlt - ok
22:03:15.0435 0x11b8 [ 769C65057212FB5004679E02EF8145C0, D6876E6ECA13DECB8AD13B3A46D7DA1B1CA4DB01A7A70371D112B491B36EC55E ] aswRdr C:\windows\system32\drivers\aswRdr2.sys
22:03:15.0435 0x11b8 aswRdr - ok
22:03:15.0591 0x11b8 [ 84B4C00AE8CDFC52CF68F322D821F34C, 9971A8ECDF2B81F4AA59E7680639A8B798430E1FDF5A39C6E05E522BF2DEF3F8 ] aswRvrt C:\windows\system32\drivers\aswRvrt.sys
22:03:15.0591 0x11b8 aswRvrt - ok
22:03:15.0809 0x11b8 [ 3A50AD6AE8D8A0F78F03316F5B93FE45, 6F3952EDA23E5FD7CACE152D3DA3B1F1238E9B9976CDD5193D21424463BAA0E9 ] aswSnx C:\windows\system32\drivers\aswSnx.sys
22:03:15.0887 0x11b8 aswSnx - ok
22:03:15.0981 0x11b8 [ B6381B4DC603C558419641BA969930E0, F6586B6D055C62942CD0E5702FFCC6F4DB7424DC551EB0041876C3544994EB59 ] aswSP C:\windows\system32\drivers\aswSP.sys
22:03:16.0043 0x11b8 aswSP - ok
22:03:16.0199 0x11b8 [ 9529E946B8496C1605A9188FFD49DED8, C8AB36A212E4C896D39F6120B72829585E6AFDEACA7DF7FD6D4A6EB8F9C6FF98 ] aswStm C:\windows\system32\drivers\aswStm.sys
22:03:16.0199 0x11b8 aswStm - ok
22:03:16.0293 0x11b8 [ 680448905E27BBC6587ADB28597640D6, A55297D872162178FDCF2C64C2357DCE1D98418AB84CF5E8621DED73C7484629 ] aswVmm C:\windows\system32\drivers\aswVmm.sys
22:03:16.0308 0x11b8 aswVmm - ok
22:03:16.0371 0x11b8 [ ADD2ADE1C2B285AB8378D2DAAF991481, 7965A705F37924C0EC7A934E64E89C5DF4069816E2EEA3509E0AC90F78910519 ] AsyncMac C:\windows\system32\DRIVERS\asyncmac.sys
22:03:16.0371 0x11b8 AsyncMac - ok
22:03:16.0402 0x11b8 [ 338C86357871C167A96AB976519BF59E, F28CC534523D1701B0552F5D7E18E88369C4218BDB1F69110C3E31D395884AD6 ] atapi C:\windows\system32\drivers\atapi.sys
22:03:16.0418 0x11b8 atapi - ok
22:03:16.0496 0x11b8 [ 6E996CF8459A2594E0E9609D0E34D41F, 9B5512A0C9AEFF90BF7837FCFE79C6D25ECE2660BD24828D8C876C73CECDD7B7 ] atksgt C:\windows\system32\DRIVERS\atksgt.sys
22:03:16.0511 0x11b8 atksgt - ok
22:03:16.0589 0x11b8 [ CE3B4E731638D2EF62FCB419BE0D39F0, 3B98179CB0101778D9E7810D2CD46D9C0D7120E141BA11471666E7D9EB3C93CC ] AudioEndpointBuilder C:\windows\System32\Audiosrv.dll
22:03:16.0667 0x11b8 AudioEndpointBuilder - ok
22:03:16.0683 0x11b8 [ CE3B4E731638D2EF62FCB419BE0D39F0, 3B98179CB0101778D9E7810D2CD46D9C0D7120E141BA11471666E7D9EB3C93CC ] Audiosrv C:\windows\System32\Audiosrv.dll
22:03:16.0698 0x11b8 Audiosrv - ok
22:03:16.0854 0x11b8 [ BEA8D0FA8805CC2E6BB49728166699C7, 9A574A1E79DC2D472877443A92ACDA57A1206A2DAB3AF9110C844944EDC9D797 ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
22:03:16.0886 0x11b8 avast! Antivirus - ok
22:03:16.0979 0x11b8 [ 6E30D02AAC9CAC84F421622E3A2F6178, 229DC527C1D6C778BCA2C855A2A6F6D2C4B0F4F6DE56C886B3AAD26E3347952C ] AxInstSV C:\windows\System32\AxInstSV.dll
22:03:16.0979 0x11b8 AxInstSV - ok
22:03:17.0042 0x11b8 [ 1A231ABEC60FD316EC54C66715543CEC, 09E2897BA80737997A286EA5408C03DD3CC0EBACD24CB391C2455B6D4BE7D67E ] b06bdrv C:\windows\system32\DRIVERS\bxvbdx.sys
22:03:17.0088 0x11b8 b06bdrv - ok
22:03:17.0135 0x11b8 [ BD8869EB9CDE6BBE4508D869929869EE, F4363A12EBFDBB89C69FD59B22F9EE05BADA07D477A1DF2DE01F59D6EE496543 ] b57nd60x C:\windows\system32\DRIVERS\b57nd60x.sys
22:03:17.0151 0x11b8 b57nd60x - ok
22:03:17.0213 0x11b8 [ EE1E9C3BB8228AE423DD38DB69128E71, ED54FD9795F3A4D32F02BED6052AD9404409A05644CDBEBFF19C662D104DA95A ] BDESVC C:\windows\System32\bdesvc.dll
22:03:17.0213 0x11b8 BDESVC - ok
22:03:17.0260 0x11b8 [ 505506526A9D467307B3C393DEDAF858, 8AD6F1492E357F57CF42261497BA29122045D4FC0DCC9669AA5AC9B2A4BABFA4 ] Beep C:\windows\system32\drivers\Beep.sys
22:03:17.0260 0x11b8 Beep - ok
22:03:17.0338 0x11b8 [ 1E2BAC209D184BB851E1A187D8A29136, 53933C938DA5126986FFF2918C1F522ABE93ABAB460AE32E4453161C2F7B68DF ] BFE C:\windows\System32\bfe.dll
22:03:17.0416 0x11b8 BFE - ok
22:03:17.0556 0x11b8 [ E585445D5021971FAE10393F0F1C3961, 178C008A9A0A6BFDA65EB0B98C510271360AD4474F22F13594F5EB60AA4E1CF5 ] BITS C:\windows\System32\qmgr.dll
22:03:17.0634 0x11b8 BITS - ok
22:03:17.0666 0x11b8 [ 2287078ED48FCFC477B05B20CF38F36F, 55BCA6174E6034A8D61CBE4126B2F1989F6052BFA624BEA9C0A0A664AEC74521 ] blbdrive C:\windows\system32\DRIVERS\blbdrive.sys
22:03:17.0666 0x11b8 blbdrive - ok
22:03:17.0806 0x11b8 [ 8F2DA3028D5FCBD1A060A3DE64CD6506, E234672E9CFE1A95AD2E78E306E41E010B870221E6EBBC0E2B0BE2FA5CE0CD76 ] bowser C:\windows\system32\DRIVERS\bowser.sys
22:03:17.0806 0x11b8 bowser - ok
22:03:17.0837 0x11b8 [ 9F9ACC7F7CCDE8A15C282D3F88B43309, A9131334BD9CF8FD60BA9D54AA054E2DF2BE1219FB650DF1464F2787BDEAE98F ] BrFiltLo C:\windows\system32\DRIVERS\BrFiltLo.sys
22:03:17.0837 0x11b8 BrFiltLo - ok
22:03:17.0853 0x11b8 [ 56801AD62213A41F6497F96DEE83755A, 0DEB8318FB47DF6473C171C795C735E26A73FA12232876C6856549EA16F33361 ] BrFiltUp C:\windows\system32\DRIVERS\BrFiltUp.sys
22:03:17.0884 0x11b8 BrFiltUp - ok
22:03:17.0978 0x11b8 [ 3DAA727B5B0A45039B0E1C9A211B8400, 903B51E75F0C503A0E255120F53BF51B047B219FEC1E15F2F1D02DDD562FC73B ] Browser C:\windows\System32\browser.dll
22:03:17.0993 0x11b8 Browser - ok
22:03:18.0040 0x11b8 [ 845B8CE732E67F3B4133164868C666EA, 9309B094CD9B5EBC46295A5EB806BED472C3CEDE3B5F6F497EBDABA496A2A27F ] Brserid C:\windows\System32\Drivers\Brserid.sys
22:03:18.0087 0x11b8 Brserid - ok
22:03:18.0118 0x11b8 [ 203F0B1E73ADADBBB7B7B1FABD901F6B, 782FA7B26940FE479C49C9BAA2EB582CDAAAD607013E9BCFC85E6FBBB7D49A6D ] BrSerWdm C:\windows\System32\Drivers\BrSerWdm.sys
22:03:18.0118 0x11b8 BrSerWdm - ok
22:03:18.0149 0x11b8 [ BD456606156BA17E60A04E18016AE54B, DFBDC9DA6A3EA40BACFF204BC6C55C2C122B5885D2CBF6D45054DE43EE15EC4D ] BrUsbMdm C:\windows\System32\Drivers\BrUsbMdm.sys
22:03:18.0149 0x11b8 BrUsbMdm - ok
22:03:18.0180 0x11b8 [ AF72ED54503F717A43268B3CC5FAEC2E, 4A638669B0C30B1BDED242A8BF2015A37749570FF4D67D190BACC8D7E0C44468 ] BrUsbSer C:\windows\System32\Drivers\BrUsbSer.sys
22:03:18.0180 0x11b8 BrUsbSer - ok
22:03:18.0258 0x11b8 [ 2865A5C8E98C70C605F417908CEBB3A4, B1C5AC228BD7072AF8668C009C6CDC13EE9FCB9481F57524300F37C40BF1E935 ] BthEnum C:\windows\system32\drivers\BthEnum.sys
22:03:18.0274 0x11b8 BthEnum - ok
22:03:18.0321 0x11b8 [ ED3DF7C56CE0084EB2034432FC56565A, B5B75E002E7BC0209582C635CCCA26DB569BDB23C33A126634E00C6434BF941B ] BTHMODEM C:\windows\system32\DRIVERS\bthmodem.sys
22:03:18.0336 0x11b8 BTHMODEM - ok
22:03:18.0383 0x11b8 [ AD1872E5829E8A2C3B5B4B641C3EAB0E, 8C2DBCAC08DDB41E2B44E257C55FA2D0272959B308EFF9EAF5FF9AE1E4A0AA39 ] BthPan C:\windows\system32\DRIVERS\bthpan.sys
22:03:18.0383 0x11b8 BthPan - ok
22:03:18.0633 0x11b8 [ 1153DE2E4F5941E10C399CB5592F78A1, 2B88AF246D62F72FA9F5B921B0375AE59A0F263672472D5EC9FDB5CA5EF51C31 ] BTHPORT C:\windows\System32\Drivers\BTHport.sys
22:03:18.0664 0x11b8 BTHPORT - ok
22:03:18.0726 0x11b8 [ 1DF19C96EEF6C29D1C3E1A8678E07190, 1F4BB161FF3A1C5B1465BB52F3520FEDB7ACB1FAA132466F07D16DB8E394AEA5 ] bthserv C:\windows\system32\bthserv.dll
22:03:18.0726 0x11b8 bthserv - ok
22:03:18.0758 0x11b8 [ C81E9413A25A439F436B1D4B6A0CF9E9, A4C290163207AED22C70C7F90B28F6FC24892889643D60D915059405AC5A4A72 ] BTHUSB C:\windows\System32\Drivers\BTHUSB.sys
22:03:18.0773 0x11b8 BTHUSB - ok
22:03:18.0820 0x11b8 [ 7E826BE3B3558208D5C9B00034E51BE5, 238E56AB8EA9E8F60B0BF6072AD1F82F1252C629B4D3CB5DAC001B2956EACFE7 ] btwaudio C:\windows\system32\drivers\btwaudio.sys
22:03:18.0820 0x11b8 btwaudio - ok
22:03:18.0960 0x11b8 [ AF9148C3E844131AC954CB53FF43D971, 64046A600B7F80045B1088CE87BDEEF54F19D871EFD1445E3E3988A900E4A7C8 ] btwavdt C:\windows\system32\drivers\btwavdt.sys
22:03:18.0976 0x11b8 btwavdt - ok
22:03:19.0116 0x11b8 [ E2ACED92A998E339DC5964C94E3DDB55, 452E5839AD09144B62CB22EFAC2D311EE29D83475C091E532010EFC464AFD89C ] btwdins C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
22:03:19.0148 0x11b8 btwdins - ok
22:03:19.0194 0x11b8 [ AAFD7CB76BA61FBB08E302DA208C974A, 1B342095E373ECCA1775B30E92CD337BECEB4BA9F821132C33507A646E6A341C ] btwl2cap C:\windows\system32\DRIVERS\btwl2cap.sys
22:03:19.0210 0x11b8 btwl2cap - ok
22:03:19.0241 0x11b8 [ 480B3D195854B2E55299CDDDDC50BCF9, ABF040002B975D7346F4EE50792BC4E3895B7F603B90C670075FD827583A5512 ] btwrchid C:\windows\system32\DRIVERS\btwrchid.sys
22:03:19.0241 0x11b8 btwrchid - ok
22:03:19.0304 0x11b8 [ 77EA11B065E0A8AB902D78145CA51E10, 160EB3BBE9E5F3CC4A02584E6F2576A812C7565B940D74838B983F1EE51FA73A ] cdfs C:\windows\system32\DRIVERS\cdfs.sys
22:03:19.0304 0x11b8 cdfs - ok
22:03:19.0350 0x11b8 [ BE167ED0FDB9C1FA1133953C18D5A6C9, E26A851CA13E7300F977E5B20FA5D25FD0E1442AB6AD5DB58BBDB2DAAD87027C ] cdrom C:\windows\system32\DRIVERS\cdrom.sys
22:03:19.0366 0x11b8 cdrom - ok
22:03:19.0491 0x11b8 [ 319C6B309773D063541D01DF8AC6F55F, 182F392FE839499D159A30A3CD04B5D0C87219930BFB1A7456880B7DA75B9820 ] CertPropSvc C:\windows\System32\certprop.dll
22:03:19.0491 0x11b8 CertPropSvc - ok
22:03:19.0553 0x11b8 [ 3FE3FE94A34DF6FB06E6418D0F6A0060, 6B3A2A26609A75B690D4C0B3059E40822F3B3DB08943F58EC496BABDA7D0A735 ] circlass C:\windows\system32\DRIVERS\circlass.sys
22:03:19.0553 0x11b8 circlass - ok
22:03:19.0616 0x11b8 [ 635181E0E9BBF16871BF5380D71DB02D, 58D5150C6F3B9F1730FFDF3A8A2ABF5FF207F9785BD66C0C1E03A0F1C223A26A ] CLFS C:\windows\system32\CLFS.sys
22:03:19.0662 0x11b8 CLFS - ok
22:03:19.0772 0x11b8 [ D88040F816FDA31C3B466F0FA0918F29, 39D3630E623DA25B8444B6D3AAAB16B98E7E289C5619E19A85D47B74C71449F3 ] clr_optimization_v2.0.50727_32 C:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
22:03:19.0787 0x11b8 clr_optimization_v2.0.50727_32 - ok
22:03:19.0928 0x11b8 [ C5A75EB48E2344ABDC162BDA79E16841, 6070A8AAFD38FBC6A68A2B10C20117612354DF21B4492D90CA522BFB6870D726 ] clr_optimization_v4.0.30319_32 C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
22:03:20.0505 0x11b8 clr_optimization_v4.0.30319_32 - ok
22:03:20.0552 0x11b8 [ DEA805815E587DAD1DD2C502220B5616, 2D6A7668C95352B818F5EC59FF462894935833D34190257DA9CAC7E67FD3631C ] CmBatt C:\windows\system32\DRIVERS\CmBatt.sys
22:03:20.0552 0x11b8 CmBatt - ok
22:03:20.0598 0x11b8 [ C537B1DB64D495B9B4717B4D6D9EDBF2, 400EEFE662DE117C9CC956E4CBD5E98F28F962E7447CD93E8A78FDD8CA39EB4B ] cmdide C:\windows\system32\drivers\cmdide.sys
22:03:20.0598 0x11b8 cmdide - ok
22:03:20.0692 0x11b8 [ 85449EEBE8F8EBD6481EFBF0F352B4EB, E6FF04970C5A5BFDE7297A86C1C7B9BFE2E0F976A1A1AFB874CEB488DC6151CC ] CNG C:\windows\system32\Drivers\cng.sys
22:03:20.0786 0x11b8 CNG - ok
22:03:20.0801 0x11b8 [ A6023D3823C37043986713F118A89BEE, FAC239A7FA6251C7EDFFA34B4BAE3910B8BC0BD4A3574B6DB6931A8D691E207B ] Compbatt C:\windows\system32\DRIVERS\compbatt.sys
22:03:20.0817 0x11b8 Compbatt - ok
22:03:20.0879 0x11b8 [ CBE8C58A8579CFE5FCCF809E6F114E89, AC083A1C649EBA18C59FCC1772D0784B10E2B8C63094E3C14388E147DBC3F6DF ] CompositeBus C:\windows\system32\drivers\CompositeBus.sys
22:03:20.0895 0x11b8 CompositeBus - ok
22:03:20.0910 0x11b8 COMSysApp - ok
22:03:20.0926 0x11b8 [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1, 6FC323217D82EF661BA0E3F949B61B05BB5235D1A69C81D24876C2153FAECEF6 ] crcdisk C:\windows\system32\DRIVERS\crcdisk.sys
22:03:20.0926 0x11b8 crcdisk - ok
22:03:21.0207 0x11b8 [ 7CA1BECEA5DE2643ADDAD32670E7A4C9, E3AB4CC52A97E3855D7EAB87363F807FDD2162ED8C76A036CD71549ED64E7797 ] CryptSvc C:\windows\system32\cryptsvc.dll
22:03:21.0207 0x11b8 CryptSvc - ok
22:03:21.0316 0x11b8 [ 7660F01D3B38ACA1747E397D21D790AF, 04611B43705C064C2A8331F6D3F8E4530295694AE2C3E3EC3F62CFF4A5EFA88D ] DcomLaunch C:\windows\system32\rpcss.dll
22:03:21.0347 0x11b8 DcomLaunch - ok
22:03:21.0410 0x11b8 [ 8D6E10A2D9A5EED59562D9B82CF804E1, 888F9650F4E872BA8F4E0C27E38A6672A561042B17EBA40E306A22357965B0AD ] defragsvc C:\windows\System32\defragsvc.dll
22:03:21.0425 0x11b8 defragsvc - ok
22:03:21.0534 0x11b8 [ F024449C97EC1E464AAFFDA18593DB88, 7EF1E241892E098A472BCA14C724DFF1AACCF190954AF1C4A38B6D542CC74BD2 ] DfsC C:\windows\system32\Drivers\dfsc.sys
22:03:21.0550 0x11b8 DfsC - ok
22:03:21.0612 0x11b8 [ 560B0DCE52DFED6623B27C9BAFA6F236, BB4156BB1CCA64CCDE065870DAE56CD58BF05CEBF7C3B17C7A821FDF02A8B157 ] dg_ssudbus C:\windows\system32\DRIVERS\ssudbus.sys
22:03:21.0612 0x11b8 dg_ssudbus - ok
22:03:21.0737 0x11b8 [ E9E01EB683C132F7FA27CD607B8A2B63, 4D9037B458C522874619143A4176BCED42472C68933E6E83D37B67242706F3C4 ] Dhcp C:\windows\system32\dhcpcore.dll
22:03:21.0753 0x11b8 Dhcp - ok
22:03:21.0800 0x11b8 [ 1A050B0274BFB3890703D490F330C0DA, 79D74F4679A2EE040FAAF4D0392A9311239A10A5F8A5CCB48656C6F89B6D62FB ] discache C:\windows\system32\drivers\discache.sys
22:03:21.0800 0x11b8 discache - ok
22:03:21.0878 0x11b8 [ 565003F326F99802E68CA78F2A68E9FF, ABC42B24DBA4FFC411120E09278EF26AF56CCAB463B69B4BD6C530B4A07063D2 ] Disk C:\windows\system32\DRIVERS\disk.sys
22:03:21.0893 0x11b8 Disk - ok
22:03:21.0940 0x11b8 [ 33EF4861F19A0736B11314AAD9AE28D0, 4C4B84365D85758E3263B88F157D8B086B392C6F1EA5F0F3DB6BF87EF90248EC ] Dnscache C:\windows\System32\dnsrslvr.dll
22:03:21.0956 0x11b8 Dnscache - ok
22:03:22.0049 0x11b8 [ 366BA8FB4B7BB7435E3B9EACB3843F67, 65B7C61ACF34F1F0149045AA9E09A3F917A927963237A385A914D0B80551DC31 ] dot3svc C:\windows\System32\dot3svc.dll
22:03:22.0065 0x11b8 dot3svc - ok
22:03:22.0174 0x11b8 [ 8EC04CA86F1D68DA9E11952EB85973D6, 2E3FBC2D683D1274E8BC45EEEA87D43B77EDDCAAF0D453296D9FDA6B9D717071 ] DPS C:\windows\system32\dps.dll
22:03:22.0190 0x11b8 DPS - ok
22:03:22.0314 0x11b8 [ B918E7C5F9BF77202F89E1A9539F2EB4, C589A37DE50BBEF22E2DAA9682EA43147F614AA1AF7DAAA942BA5FC192313A0B ] drmkaud C:\windows\system32\drivers\drmkaud.sys
22:03:22.0314 0x11b8 drmkaud - ok
22:03:22.0377 0x11b8 [ 555E54AC2F601A8821CEF58961653991, C094E4BE6903D73C45BEEA21B8E0B65FB94178FF99927640C2C2792F46D543A0 ] dtsoftbus01 C:\windows\system32\DRIVERS\dtsoftbus01.sys
22:03:22.0392 0x11b8 dtsoftbus01 - ok
22:03:22.0439 0x11b8 [ 16498EBC04AE9DD07049A8884B205C05, 134EA1C7A2DB984B8EBADF6C25B28DBADF02215AA2ED298FA124556FC4992084 ] DXGKrnl C:\windows\System32\drivers\dxgkrnl.sys
22:03:22.0486 0x11b8 DXGKrnl - ok
22:03:22.0564 0x11b8 [ 8600142FA91C1B96367D3300AD0F3F3A, 5713625E27DF11FAAFDA7AC79899A6AD813166E167088FA990EC5DE87DBE83DF ] EapHost C:\windows\System32\eapsvc.dll
22:03:22.0564 0x11b8 EapHost - ok
22:03:22.0814 0x11b8 [ 024E1B5CAC09731E4D868E64DBFB4AB0, AB0826A74BBEE5B7A1B035861B665C79BC98305CFC7D82BEF420558FBD3EE994 ] ebdrv C:\windows\system32\DRIVERS\evbdx.sys
22:03:22.0970 0x11b8 ebdrv - ok
22:03:23.0032 0x11b8 [ 803B370865D907EA21DC0C2B6A8936B5, E98F0BA1D94786E061A3EA2CC76041FF6BE0ADF47C6205D5572C03BF0E29CA78 ] EFS C:\windows\System32\lsass.exe
22:03:23.0032 0x11b8 EFS - ok
22:03:23.0204 0x11b8 [ A8C362018EFC87BEB013EE28F29C0863, 07971C681FBD391C0BA0172618AF8AD77520182207F1C57F134B34D6A113857F ] ehRecvr C:\windows\ehome\ehRecvr.exe
22:03:23.0250 0x11b8 ehRecvr - ok
22:03:23.0313 0x11b8 [ D389BFF34F80CAEDE417BF9D1507996A, 12859B9925D7A4631DE61A820922F43F56ED23C2AF014CBF36322685E5CF641E ] ehSched C:\windows\ehome\ehsched.exe
22:03:23.0313 0x11b8 ehSched - ok
22:03:23.0422 0x11b8 [ 0ED67910C8C326796FAA00B2BF6D9D3C, 97FAA7627A162B0AEC15545E0165D13355D535B4157604BB87F8EEB72ECD24A8 ] elxstor C:\windows\system32\DRIVERS\elxstor.sys
22:03:23.0469 0x11b8 elxstor - ok
22:03:23.0500 0x11b8 [ 8FC3208352DD3912C94367A206AB3F11, 69B65C12BDADD4B730508674B1B77C5496612B4ACCC447DB9AFE49ADEA8CBF02 ] ErrDev C:\windows\system32\drivers\errdev.sys
22:03:23.0500 0x11b8 ErrDev - ok
22:03:23.0562 0x11b8 [ F6916EFC29D9953D5D0DF06882AE8E16, ED41893960018D5EC2F7829B1DE4B6967D9FD074D60B11B9EB854E3E0948EC24 ] EventSystem C:\windows\system32\es.dll
22:03:23.0625 0x11b8 EventSystem - ok
22:03:23.0672 0x11b8 [ 2DC9108D74081149CC8B651D3A26207F, 75CB47923A867DDAC512701CE71DFCFC340FC3A2E27F4255D0836A1FBC463176 ] exfat C:\windows\system32\drivers\exfat.sys
22:03:23.0672 0x11b8 exfat - ok
22:03:23.0734 0x11b8 [ 7E0AB74553476622FB6AE36F73D97D35, 41463A255FDA1D550B3385EC7C73ABC343B1BBBE9CEE4DF9F2A8B3E7338C4947 ] fastfat C:\windows\system32\drivers\fastfat.sys
22:03:23.0734 0x11b8 fastfat - ok
22:03:23.0843 0x11b8 [ 967EA5B213E9984CBE270205DF37755B, 43153E23210B03FAE16897D62D55B8742F834EDC695F8401EAB5DE307F62602D ] Fax C:\windows\system32\fxssvc.exe
22:03:23.0890 0x11b8 Fax - ok
22:03:23.0921 0x11b8 [ E817A017F82DF2A1F8CFDBDA29388B29, 4CC9320A21E6FEA2D16C48D6BEA14391B695BD541A3C5FDDAEEE086A414FC837 ] fdc C:\windows\system32\DRIVERS\fdc.sys
22:03:23.0921 0x11b8 fdc - ok
22:03:23.0952 0x11b8 [ F3222C893BD2F5821A0179E5C71E88FB, A85B947249DBB986358CCD4B158DD58A9301F074F3C6CCCDEF2D01F432E59D1B ] fdPHost C:\windows\system32\fdPHost.dll
22:03:23.0952 0x11b8 fdPHost - ok
22:03:23.0984 0x11b8 [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B, 0E76C29D2A974A3F2FBFCB63D066D4136B78E02F6B1F579B1865CA7A76193987 ] FDResPub C:\windows\system32\fdrespub.dll
22:03:23.0984 0x11b8 FDResPub - ok
22:03:24.0046 0x11b8 [ 6CF00369C97F3CF563BE99BE983D13D8, F65F35324A2FB9DFB533B1C4D089D990CC242218FE83414329D07B786D8EFF33 ] FileInfo C:\windows\system32\drivers\fileinfo.sys
22:03:24.0046 0x11b8 FileInfo - ok
22:03:24.0077 0x11b8 [ 42C51DC94C91DA21CB9196EB64C45DB9, 388C68D12ECC8FFE3116FEAAF4DB7B80CF4A3F97E935788DD21C6ADE2369F635 ] Filetrace C:\windows\system32\drivers\filetrace.sys
22:03:24.0077 0x11b8 Filetrace - ok
22:03:24.0124 0x11b8 [ 87907AA70CB3C56600F1C2FB8841579B, CA1CD82A1CD453617CE5EA431A1836997F14E3580554E8A516D9FE1E9926D979 ] flpydisk C:\windows\system32\DRIVERS\flpydisk.sys
22:03:24.0124 0x11b8 flpydisk - ok
22:03:24.0186 0x11b8 [ 7520EC808E0C35E0EE6F841294316653, 6EC65511B4838A7172A8F89E35C2F9DF4F0BFCE3BE12EDA790F3EB567102FF67 ] FltMgr C:\windows\system32\drivers\fltmgr.sys
22:03:24.0202 0x11b8 FltMgr - ok
22:03:24.0436 0x11b8 [ E12C4928B32ACE04610259647F072635, B71B9C2DF45F33C4DAC88435129B08B0BCDBBE82E8C3AD0A95F00137CC8B619F ] FontCache C:\windows\system32\FntCache.dll
22:03:24.0483 0x11b8 FontCache - ok
22:03:24.0592 0x11b8 [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F, DBED26852B99B362152DA9CD4F31A1883EF6F9B496F3CF3772A197BA72DB61DA ] FontCache3.0.0.0 C:\windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
22:03:24.0592 0x11b8 FontCache3.0.0.0 - ok
22:03:24.0608 0x11b8 [ 1A16B57943853E598CFF37FE2B8CBF1D, 87609F46F3B8123552141FD70866E895220B1BBD92BC2B580CAF49201AA0197E ] FsDepends C:\windows\system32\drivers\FsDepends.sys
22:03:24.0608 0x11b8 FsDepends - ok
22:03:24.0670 0x11b8 [ D909075FA72C090F27AA926C32CB4612, F8610C20C4DD499D5B4ACEBD7107E52E25B6449AEED58D1A203F7D654B55C4DF ] fssfltr C:\windows\system32\DRIVERS\fssfltr.sys
22:03:24.0670 0x11b8 fssfltr - ok
22:03:24.0857 0x11b8 [ 4CE9DAC1518FF7E77BD213E6394B9D77, D7D0D29DF93AC7DC5F85E385EEB45306C7BD87ACA7AAC5A8D47893D120C32C03 ] fsssvc C:\Program Files\Windows Live\Family Safety\fsssvc.exe
22:03:24.0935 0x11b8 fsssvc - ok
22:03:24.0966 0x11b8 [ 7DAE5EBCC80E45D3253F4923DC424D05, 8A2C4D5591509B0B0A44583520617A9AE34F32BB6E68A012A7D7870ED24F703A ] Fs_Rec C:\windows\system32\drivers\Fs_Rec.sys
22:03:24.0966 0x11b8 Fs_Rec - ok
22:03:25.0044 0x11b8 [ E306A24D9694C724FA2491278BF50FDB, 1D246B9C28550640EACBF8CF9DC980FD75106B92832D392FEBEF0C7012353091 ] fvevol C:\windows\system32\DRIVERS\fvevol.sys
22:03:25.0044 0x11b8 fvevol - ok
22:03:25.0122 0x11b8 [ 65EE0C7A58B65E74AE05637418153938, 0E1A398ADD8411AF4CCC3344D67BE1B261320C58328BD5C5855A357476FAEBEF ] gagp30kx C:\windows\system32\DRIVERS\gagp30kx.sys
22:03:25.0122 0x11b8 gagp30kx - ok
22:03:25.0232 0x11b8 [ E897EAF5ED6BA41E081060C9B447A673, A428DC68516F19C6C53A8B62E4BDB2587E70FB751B9D77700B6B147D347DA157 ] gpsvc C:\windows\System32\gpsvc.dll
22:03:25.0294 0x11b8 gpsvc - ok
22:03:25.0341 0x11b8 [ C44E3C2BAB6837DB337DDEE7544736DB, 88A24FF7D2FECCEAFFD421B2039A0FB623DA47A6B220B80EF1E52DD26D9E222D ] hcw85cir C:\windows\system32\drivers\hcw85cir.sys
22:03:25.0341 0x11b8 hcw85cir - ok
22:03:25.0403 0x11b8 [ A5EF29D5315111C80A5C1ABAD14C8972, A181DA72E946F121C3F4A19438C547B0BFD15138AB1DB5465945EC89DF1F6B0A ] HdAudAddService C:\windows\system32\drivers\HdAudio.sys
22:03:25.0419 0x11b8 HdAudAddService - ok
22:03:25.0481 0x11b8 [ 9036377B8A6C15DC2EEC53E489D159B5, 1E56D2ACFE92E6DF96D755B05C63D580EED82C210F075C8623E138BEE6BCD41B ] HDAudBus C:\windows\system32\drivers\HDAudBus.sys
22:03:25.0481 0x11b8 HDAudBus - ok
22:03:25.0497 0x11b8 [ 1D58A7F3E11A9731D0EAAAA8405ACC36, 7056FA18B86FBD52C4A6092D80476C02553EA053D6A0BEDB01A2FA5E152D5215 ] HidBatt C:\windows\system32\DRIVERS\HidBatt.sys
22:03:25.0497 0x11b8 HidBatt - ok
22:03:25.0544 0x11b8 [ 89448F40E6DF260C206A193A4683BA78, 71E0FCC32AE6FF8DFF420DB0383D6A200E1EAE14BD2E32453F92CE18B31C1F3C ] HidBth C:\windows\system32\DRIVERS\hidbth.sys
22:03:25.0544 0x11b8 HidBth - ok
22:03:25.0590 0x11b8 [ CF50B4CF4A4F229B9F3C08351F99CA5E, B97843620AF80FF0EC8F2C438255C0A42A756C6314FAF3DEF415DE16E14C108F ] HidIr C:\windows\system32\DRIVERS\hidir.sys
22:03:25.0590 0x11b8 HidIr - ok
22:03:25.0622 0x11b8 [ 2BC6F6A1992B3A77F5F41432CA6B3B6B, 2AF3312F1C8C8923C0A29AA5DAE57CE269417E53DEA2F0CCCC8DB57029698FE1 ] hidserv C:\windows\system32\hidserv.dll
22:03:25.0622 0x11b8 hidserv - ok
22:03:25.0700 0x11b8 [ 10C19F8290891AF023EAEC0832E1EB4D, E208553029488A6EE2F5216CC9FE5F93E9931A94C0D0625253BB159E30642853 ] HidUsb C:\windows\system32\DRIVERS\hidusb.sys
22:03:25.0700 0x11b8 HidUsb - ok
22:03:25.0746 0x11b8 [ 196B4E3F4CCCC24AF836CE58FACBB699, 7A2E1F603A073421FA0987EFB96647F1F0F2D4E0C82AA62EBC041585DA811DAF ] hkmsvc C:\windows\system32\kmsvc.dll
22:03:25.0746 0x11b8 hkmsvc - ok
22:03:25.0793 0x11b8 [ 6658F4404DE03D75FE3BA09F7ABA6A30, E51D9C1580A283EB862F09B73AAE1B647DD683A53F3DD99834222F12DD15E40F ] HomeGroupListener C:\windows\system32\ListSvc.dll
22:03:25.0809 0x11b8 HomeGroupListener - ok
22:03:25.0871 0x11b8 [ DBC02D918FFF1CAD628ACBE0C0EAA8E8, 02121800D9062692C102475876AE8143EBE46D855E8328B8CDCFE6A2F0D19696 ] HomeGroupProvider C:\windows\system32\provsvc.dll
22:03:25.0980 0x11b8 HomeGroupProvider - ok
22:03:26.0183 0x11b8 [ 13BB1114451C63BFB41BA7DAA4D70A29, A07D27DCD1D5F333973DDF7E91BF902307088C48696EE1D1970A0152A507231B ] HP Support Assistant Service C:\Program Files\Hewlett-Packard\HP Support Framework\hpsa_service.exe
22:03:26.0183 0x11b8 HP Support Assistant Service - ok
22:03:26.0402 0x11b8 [ BCC4A8B2E2E902F52E7F2E7D8E125765, 4253DEABF5E4613E42BFC921BF4E2DD5BDF80A640250F41BDA7DD2711A6BA8A1 ] HPDrvMntSvc.exe C:\Program Files\Hewlett-Packard\Shared\HPDrvMntSvc.exe
22:03:26.0402 0x11b8 HPDrvMntSvc.exe - ok
22:03:26.0542 0x11b8 [ 6FA8388F9154CB631FC675DEA85249A3, 79CD15DC0FEF5ABAB18D59AA4DFA0DCFCD5FFA5539096B743EE366078AEC1D32 ] hpHotkeyMonitor C:\Program Files\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe
22:03:26.0573 0x11b8 hpHotkeyMonitor - ok
22:03:26.0682 0x11b8 [ 1210960FF8928950D2A786895B0C424A, 22C8785E024CFDD3A43FAEAAA96B8332C37E9B6C765AB7AFBCD3DAA2DC9EFFC7 ] HpqKbFiltr C:\windows\system32\DRIVERS\HpqKbFiltr.sys
22:03:26.0682 0x11b8 HpqKbFiltr - ok
22:03:26.0792 0x11b8 [ EC9739A46F1F83C6E52A7A4697F44A65, CF4E93D3E8CA607DDEF87C6996F6C7326316144A61C1B4F83EA1B4B2F9BDC69B ] hpqwmiex C:\Program Files\Hewlett-Packard\Shared\hpqWmiEx.exe
22:03:26.0854 0x11b8 hpqwmiex - ok
22:03:26.0916 0x11b8 [ 295FDC419039090EB8B49FFDBB374549, 670E8015FD374640C6570F56F7FE8DE4D8F92E7A8072F5D1B2B95D0BD699CEF7 ] HpSAMD C:\windows\system32\drivers\HpSAMD.sys
22:03:26.0932 0x11b8 HpSAMD - ok
22:03:27.0057 0x11b8 [ 871917B07A141BFF43D76D8844D48106, 30C702008D0EE57D63F74864967DD19A55A268E77E42B5B3CC73037AD51D2987 ] HTTP C:\windows\system32\drivers\HTTP.sys
22:03:27.0088 0x11b8 HTTP - ok
22:03:27.0135 0x11b8 [ 0C4E035C7F105F1299258C90886C64C5, CFB4FBE7B28058E6D3E6E508CF3C1645F6AAE0AFEB4C5364835B9C42311DF0D4 ] hwpolicy C:\windows\system32\drivers\hwpolicy.sys
22:03:27.0135 0x11b8 hwpolicy - ok
22:03:27.0182 0x11b8 [ F151F0BDC47F4A28B1B20A0818EA36D6, 84B24B5796D9F70A8C37773F5484A4606CC7908370CCD942627ACBEDC4952D79 ] i8042prt C:\windows\system32\drivers\i8042prt.sys
22:03:27.0182 0x11b8 i8042prt - ok
22:03:27.0260 0x11b8 [ D782F0C741EE2D50AC8D38774597FB2B, 298CC6D317F87DF6F1D1E779FABA28C3471BE4DCCC93304AE9B673AD4760EF32 ] IAANTMON C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
22:03:27.0291 0x11b8 IAANTMON - ok
22:03:27.0353 0x11b8 [ D9D3F168A2FD4C2380D98821A3FF3357, 9473479B62CE90CEA91DB3FB6E056280EAB04A6A1AF4D561CCC3E0BC76B413E8 ] iaStor C:\windows\system32\DRIVERS\iaStor.sys
22:03:27.0353 0x11b8 iaStor - ok
22:03:27.0431 0x11b8 [ 5CD5F9A5444E6CDCB0AC89BD62D8B76E, 72870092A80C6DAE0105025B0ED8B607E98BA81E59298364A7FE4C9C56C68FF0 ] iaStorV C:\windows\system32\drivers\iaStorV.sys
22:03:27.0447 0x11b8 iaStorV - ok
22:03:27.0650 0x11b8 [ C521D7EB6497BB1AF6AFA89E322FB43C, BDDCFCBB5B76A9295669B5AC9F732D6127199ED5C300770B554C4E4794F66BB7 ] idsvc C:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
22:03:27.0759 0x11b8 idsvc - ok
22:03:28.0055 0x11b8 [ 4EE7874572A515D112D2F35112F5AD41, 7CD9CDC0D1EAC7518883C555ABCBEFFC88F37FB051B82E52D7F2AFCB69FF7B6F ] igfx C:\windows\system32\DRIVERS\igdkmd32.sys
22:03:28.0320 0x11b8 igfx - ok
22:03:28.0430 0x11b8 [ 4173FF5708F3236CF25195FECD742915, 0A9C0701DF6EAC6602BE342FC13C7950EF04BB5BDF7D96C2C5DABBD2A29AA55D ] iirsp C:\windows\system32\DRIVERS\iirsp.sys
22:03:28.0430 0x11b8 iirsp - ok
22:03:28.0679 0x11b8 [ B9C54120F46392100478F58F374E5709, A28EE8B0988F580D5984E815FC78DF41B169260814234AA0E453375542D0957B ] IKEEXT C:\windows\System32\ikeext.dll
22:03:28.0726 0x11b8 IKEEXT - ok
22:03:28.0851 0x11b8 [ 264632ADE8127B7BAA2190CF6FAD435B, 5D558FEB9D25B271E0A29C7C20BCEE343E8370F8BE194E1AA505B692E799C2FF ] IntcHdmiAddService C:\windows\system32\drivers\IntcHdmi.sys
22:03:28.0866 0x11b8 IntcHdmiAddService - ok
22:03:28.0882 0x11b8 [ A0F12F2C9BA6C72F3987CE780E77C130, 5F53DF8BE1621AA7DFB655CFD9C95E0AFA1AD3CE2E290E19D7B7FB3C6E380034 ] intelide C:\windows\system32\drivers\intelide.sys
22:03:28.0882 0x11b8 intelide - ok
22:03:28.0913 0x11b8 [ 3B514D27BFC4ACCB4037BC6685F766E0, F12D7AC62F8550E6F33B28AD751D8413AB7FFEF963242D99FFA76CE8A48B027A ] intelppm C:\windows\system32\DRIVERS\intelppm.sys
22:03:28.0913 0x11b8 intelppm - ok
22:03:28.0976 0x11b8 [ ACB364B9075A45C0736E5C47BE5CAE19, 202F77C659103D2D0E787B8CB0A23BE32EA5AA2E6B3B0A0F0A8DFA906AB3C0C0 ] IPBusEnum C:\windows\system32\ipbusenum.dll
22:03:28.0976 0x11b8 IPBusEnum - ok
22:03:29.0007 0x11b8 [ 709D1761D3B19A932FF0238EA6D50200, 0A9D2C3A6E91CA45540555B40CB4E2DF3EBE98C1D164C4EECEE20C86782F5823 ] IpFilterDriver C:\windows\system32\DRIVERS\ipfltdrv.sys
22:03:29.0007 0x11b8 IpFilterDriver - ok
22:03:29.0163 0x11b8 [ 58F67245D041FBE7AF88F4EAF79DF0FA, 67468D6A46FF4D87AD321BFEA42F2FC843D09AA292A119C76D4D795D06028F96 ] iphlpsvc C:\windows\System32\iphlpsvc.dll
22:03:29.0241 0x11b8 iphlpsvc - ok
22:03:29.0319 0x11b8 [ 4BD7134618C1D2A27466A099062547BF, 20284ABEF4433A59E2981F4143CAEC67DC990864FE0B9E3DC70EE0B88539E964 ] IPMIDRV C:\windows\system32\drivers\IPMIDrv.sys
22:03:29.0319 0x11b8 IPMIDRV - ok
22:03:29.0350 0x11b8 [ A5FA468D67ABCDAA36264E463A7BB0CD, EDB828D596E43372F97DAE1AADA46428C4C45FB80646DDC64FAD5F25C826CF63 ] IPNAT C:\windows\system32\drivers\ipnat.sys
22:03:29.0350 0x11b8 IPNAT - ok
22:03:29.0412 0x11b8 [ 42996CFF20A3084A56017B7902307E9F, 688176DAB91BE569280E4822E4C5BDE755794D293591C53F8047AD59C441751D ] IRENUM C:\windows\system32\drivers\irenum.sys
22:03:29.0412 0x11b8 IRENUM - ok
22:03:29.0444 0x11b8 [ 1F32BB6B38F62F7DF1A7AB7292638A35, 86522358680FBB1CEBC56B4D139290689BB0F71A3EC78CE883E4D75D0B37586F ] isapnp C:\windows\system32\drivers\isapnp.sys
22:03:29.0459 0x11b8 isapnp - ok
22:03:29.0490 0x11b8 [ CB7A9ABB12B8415BCE5D74994C7BA3AE, 464BFF3F5EEE985BE075E23E1813F5CB82A9A0771A92C6D889B13B867BCDF647 ] iScsiPrt C:\windows\system32\drivers\msiscsi.sys
22:03:29.0522 0x11b8 iScsiPrt - ok
22:03:29.0568 0x11b8 [ FE8300320281D658A7854D5CFC02A63F, E57978A0F3DE8D142291C659483C62A02CADAACF4A5C834292C9216C2255AE97 ] k750bus C:\windows\system32\DRIVERS\k750bus.sys
22:03:29.0568 0x11b8 k750bus - ok
22:03:29.0600 0x11b8 [ ADEF52CA1AEAE82B50DF86B56413107E, A3AE1E96B04AC81665ABBD3CB267DFB3F78376DAE18FB0DBD447908DDAAA22D2 ] kbdclass C:\windows\system32\DRIVERS\kbdclass.sys
22:03:29.0600 0x11b8 kbdclass - ok
22:03:29.0646 0x11b8 [ 9E3CED91863E6EE98C24794D05E27A71, 90CF59F20E14E4A5A793266805E82BF7AE1F0CF4C7BAB1FD2EEF3B53C5DF770F ] kbdhid C:\windows\system32\DRIVERS\kbdhid.sys
22:03:29.0646 0x11b8 kbdhid - ok
22:03:29.0678 0x11b8 [ 803B370865D907EA21DC0C2B6A8936B5, E98F0BA1D94786E061A3EA2CC76041FF6BE0ADF47C6205D5572C03BF0E29CA78 ] KeyIso C:\windows\system32\lsass.exe
22:03:29.0678 0x11b8 KeyIso - ok
22:03:29.0771 0x11b8 [ F286830298323272260332D6ABC905C1, FF4CD182A95CA53119B228690D682EE9214BE131A0DBCB09B6189FBEBBFF902C ] KSecDD C:\windows\system32\Drivers\ksecdd.sys
22:03:29.0771 0x11b8 KSecDD - ok
22:03:29.0802 0x11b8 [ D7C760D57B1656DD748B9E4AB6CB5A51, F8AE4185A6A9F7005DEFF1FDC03F395C6189825B482B8C650637FD29DE93AB68 ] KSecPkg C:\windows\system32\Drivers\ksecpkg.sys
22:03:29.0818 0x11b8 KSecPkg - ok
22:03:29.0849 0x11b8 [ 89A7B9CC98D0D80C6F31B91C0A310FCD, 4583CAEEE0D50C0C7CE955E533FDA063CDC37B69033D41EF22EF1BA242E4C747 ] KtmRm C:\windows\system32\msdtckrm.dll
22:03:29.0896 0x11b8 KtmRm - ok
22:03:29.0927 0x11b8 [ D64AF876D53ECA3668BB97B51B4E70AB, D5C07C019BFEAFBEDC29AB5060356A3B07449712B21B50E03378BEF04AF180F9 ] LanmanServer C:\windows\system32\srvsvc.dll
22:03:29.0974 0x11b8 LanmanServer - ok
22:03:29.0990 0x11b8 [ 58405E4F68BA8E4057C6E914F326ABA2, C3E6519A1A38F1B3597D4391E42ABFE8F1F5E86256C4B3BD876CDAD9BB68B0A6 ] LanmanWorkstation C:\windows\System32\wkssvc.dll
22:03:30.0005 0x11b8 LanmanWorkstation - ok
22:03:30.0099 0x11b8 [ 975B6CF65F44E95883F3855BAE8CECAF, 5878F5B2258A17DD3AFBE18CAFAFCE0310CDB61C36891B9299D738FDEEF44A91 ] lirsgt C:\windows\system32\DRIVERS\lirsgt.sys
22:03:30.0099 0x11b8 lirsgt - ok
22:03:30.0146 0x11b8 [ F7611EC07349979DA9B0AE1F18CCC7A6, 879AA7A391966F00761CA039C25EBC62F6712DD5461694911EEC673E12DE103E ] lltdio C:\windows\system32\DRIVERS\lltdio.sys
22:03:30.0146 0x11b8 lltdio - ok
22:03:30.0192 0x11b8 [ 5700673E13A2117FA3B9020C852C01E2, 6684A2905EE8C438F2A64BE47E51A54D287B08DEFB8E0AE7FC2809D845EE3C5F ] lltdsvc C:\windows\System32\lltdsvc.dll
22:03:30.0208 0x11b8 lltdsvc - ok
22:03:30.0255 0x11b8 [ 55CA01BA19D0006C8F2639B6C045E08B, 4DBBDC820C514DB18CC13F8EE178F8C4E39C295C6E3C255416C235553CE7BDC1 ] lmhosts C:\windows\System32\lmhsvc.dll
22:03:30.0270 0x11b8 lmhosts - ok
22:03:30.0333 0x11b8 [ EB119A53CCF2ACC000AC71B065B78FEF, 1FD60735C4945AE565C223F0B47EAF9602D8777E3D15600914C1A9D761215AF9 ] LSI_FC C:\windows\system32\DRIVERS\lsi_fc.sys
22:03:30.0333 0x11b8 LSI_FC - ok
22:03:30.0364 0x11b8 [ 8ADE1C877256A22E49B75D1CC9161F9C, 3D64F233DC866537E50549A7C1A2B40A954055B22F0BDA39825B04C38C607CB7 ] LSI_SAS C:\windows\system32\DRIVERS\lsi_sas.sys
22:03:30.0364 0x11b8 LSI_SAS - ok
22:03:30.0395 0x11b8 [ DC9DC3D3DAA0E276FD2EC262E38B11E9, A264990857CBC74036799E17A087130626C0A09BE19879019BAF2D761C62AECC ] LSI_SAS2 C:\windows\system32\DRIVERS\lsi_sas2.sys
22:03:30.0411 0x11b8 LSI_SAS2 - ok
22:03:30.0442 0x11b8 [ 0A036C7D7CAB643A7F07135AC47E0524, 2F662D07FCB74B8D493156DB555EAA90A47E93CF14C7B30039D2FE47EB8682B8 ] LSI_SCSI C:\windows\system32\DRIVERS\lsi_scsi.sys
22:03:30.0442 0x11b8 LSI_SCSI - ok
22:03:30.0489 0x11b8 [ 6703E366CC18D3B6E534F5CF7DF39CEE, 7396B9AF938284D99EC51206A7B2FA4A0DC10A493DCE6707818B03A7473782C4 ] luafv C:\windows\system32\drivers\luafv.sys
22:03:30.0489 0x11b8 luafv - ok
22:03:30.0660 0x11b8 [ 0B058116D3D4ECCA7DED38F16E0581B2, E2861CBB64A7DE2A389BEE893DAE6D9E4E20657C163FB03F7A6755264E33BB3F ] massfilter C:\windows\system32\drivers\massfilter.sys
22:03:30.0660 0x11b8 massfilter - ok
22:03:30.0738 0x11b8 [ 12E71DA845D76665B56753AD149E32B3, 0E403710CCBACD5AB85FD4C32AAB6CB2C27BC1F043E8008EE49EE96ECA944146 ] MBAMSwissArmy C:\windows\system32\drivers\MBAMSwissArmy.sys
22:03:30.0738 0x11b8 MBAMSwissArmy - ok
22:03:30.0926 0x11b8 [ BFB9EE8EE977EFE85D1A3105ABEF6DD1, D2A84EBF0C0B7A14AD432FD2EF43CC12300027AEA3FA4075659FB088AB62B588 ] Mcx2Svc C:\windows\system32\Mcx2Svc.dll
22:03:30.0941 0x11b8 Mcx2Svc - ok
22:03:30.0972 0x11b8 [ 0FFF5B045293002AB38EB1FD1FC2FB74, 49071B565FD5B2DE43EC00D8518C3BE70843F38919E82F13104B8C1FAFB20374 ] megasas C:\windows\system32\DRIVERS\megasas.sys
22:03:30.0972 0x11b8 megasas - ok
22:03:31.0004 0x11b8 [ DCBAB2920C75F390CAF1D29F675D03D6, 85C3A7A010BEA5E3C6179161B295F2CB900A6A214833A5F87A4327392880E2BB ] MegaSR C:\windows\system32\DRIVERS\MegaSR.sys
22:03:31.0019 0x11b8 MegaSR - ok
22:03:31.0050 0x11b8 [ 146B6F43A673379A3C670E86D89BE5EA, C4412DCF80DE6B55466F399413271364F14BC0819C224AA161EDDC31A9775440 ] MMCSS C:\windows\system32\mmcss.dll
22:03:31.0066 0x11b8 MMCSS - ok
22:03:31.0082 0x11b8 [ F001861E5700EE84E2D4E52C712F4964, F4DC5AEED6F34D76CCEF360862CC47EF71097BE0813C8CE04EE5F0DB387DFFAE ] Modem C:\windows\system32\drivers\modem.sys
22:03:31.0082 0x11b8 Modem - ok
22:03:31.0113 0x11b8 [ 79D10964DE86B292320E9DFE02282A23, 52714827B7EEDACA55326A4E4F6158D4942DFAA3BACDE303A2F569BF3F4FAA72 ] monitor C:\windows\system32\DRIVERS\monitor.sys
22:03:31.0113 0x11b8 monitor - ok
22:03:31.0175 0x11b8 [ FB18CC1D4C2E716B6B903B0AC0CC0609, F10CCA63493782B16DE6B96B94A27078DBE68AECEF34FDF840CFF86D2C6E3C5E ] mouclass C:\windows\system32\DRIVERS\mouclass.sys
22:03:31.0175 0x11b8 mouclass - ok
22:03:31.0222 0x11b8 [ 2C388D2CD01C9042596CF3C8F3C7B24D, B2FB72272BB01AEDA4047B57C943B7E9BD8A6497854F8CC34672AAA592D0A703 ] mouhid C:\windows\system32\DRIVERS\mouhid.sys
22:03:31.0222 0x11b8 mouhid - ok
22:03:31.0269 0x11b8 [ FC8771F45ECCCFD89684E38842539B9B, 806DDF2B4830CA866582FE74A521BB7DF26CA0E19013DAF584D3677FB48CC77A ] mountmgr C:\windows\system32\drivers\mountmgr.sys
22:03:31.0284 0x11b8 mountmgr - ok
22:03:31.0550 0x11b8 [ 26EA1DAD601EE3ACAC301D66F07BA219, C9594BB15D53D4AC2156CCCD2DB65B2C20620F1F60DA85F48D1586FC10028096 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
22:03:31.0581 0x11b8 MozillaMaintenance - ok
22:03:31.0612 0x11b8 [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0, D3D903EEA465D77345AAC9B9F02CDEADF4831212EA2DE4FCA33BEE26EBB47420 ] mpio C:\windows\system32\drivers\mpio.sys
22:03:31.0612 0x11b8 mpio - ok
22:03:31.0830 0x11b8 MpKsl063d3325 - ok
22:03:31.0924 0x11b8 MpKsl0b07dada - ok
22:03:31.0971 0x11b8 MpKsl0c488db8 - ok
22:03:32.0033 0x11b8 MpKsl11b845b5 - ok
22:03:32.0096 0x11b8 MpKsl11fbe9de - ok
22:03:32.0252 0x11b8 MpKsl283a4546 - ok
22:03:32.0330 0x11b8 MpKsl34b6c955 - ok
22:03:32.0361 0x11b8 MpKsl3f857992 - ok
22:03:32.0454 0x11b8 MpKsl4122098c - ok
22:03:32.0532 0x11b8 MpKsl46ac45fd - ok
22:03:32.0564 0x11b8 MpKsl5150bef2 - ok
22:03:32.0610 0x11b8 MpKsl6aa8a5d7 - ok
22:03:32.0642 0x11b8 MpKsl73eda0a3 - ok
22:03:32.0704 0x11b8 MpKsl76fbe8b4 - ok
22:03:32.0751 0x11b8 MpKsl77fef83b - ok
22:03:32.0860 0x11b8 MpKsl7dd914f7 - ok
22:03:32.0876 0x11b8 MpKsl84a81fd5 - ok
22:03:32.0891 0x11b8 MpKsl882911ec - ok
22:03:32.0938 0x11b8 MpKsl8b5b5715 - ok
22:03:32.0938 0x11b8 MpKsl91e7ee0f - ok
22:03:33.0110 0x11b8 MpKsl9891e768 - ok
22:03:33.0172 0x11b8 MpKsl9cbfd317 - ok
22:03:33.0219 0x11b8 MpKsla48a29f5 - ok
22:03:33.0250 0x11b8 MpKsla5f212df - ok
22:03:33.0312 0x11b8 MpKslaac0e6df - ok
22:03:33.0484 0x11b8 MpKslaedba62a - ok
22:03:33.0484 0x11b8 MpKslb65e6cc2 - ok
22:03:33.0515 0x11b8 MpKslb993a1ae - ok
22:03:33.0593 0x11b8 MpKslc18c2065 - ok
22:03:33.0609 0x11b8 MpKslc4d4c6f5 - ok
22:03:33.0656 0x11b8 MpKsle34db3ef - ok
22:03:33.0734 0x11b8 MpKslf3fc0bf7 - ok
22:03:33.0765 0x11b8 MpKslfb8a4652 - ok
22:03:33.0780 0x11b8 MpKslff15b3b6 - ok
22:03:33.0843 0x11b8 [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0, 1D6DCFA0E56C3E55B6AED819176E751502F863BA0FCF4F0B3253A81D208141A2 ] mpsdrv C:\windows\system32\drivers\mpsdrv.sys
22:03:33.0843 0x11b8 mpsdrv - ok
22:03:33.0968 0x11b8 [ 9835584E999D25004E1EE8E5F3E3B881, 71798B0CBE9AE69F1F29B845319019C69EC7F415CBABB3B87DDE92C360675021 ] MpsSvc C:\windows\system32\mpssvc.dll
22:03:34.0014 0x11b8 MpsSvc - ok
22:03:34.0139 0x11b8 [ CEB46AB7C01C9F825F8CC6BABC18166A, AA98898204FC58878502C170FE6ED8BA681396DDD8BF3689D0C3642DEA87BEF8 ] MRxDAV C:\windows\system32\drivers\mrxdav.sys
22:03:34.0155 0x11b8 MRxDAV - ok
22:03:34.0202 0x11b8 [ 5D16C921E3671636C0EBA3BBAAC5FD25, 5BC107B95CAFC88F51FBB9F657B99944B20627A2B618F263093D7045E4FFD65C ] mrxsmb C:\windows\system32\DRIVERS\mrxsmb.sys
22:03:34.0217 0x11b8 mrxsmb - ok
22:03:34.0248 0x11b8 [ 6D17A4791ACA19328C685D256349FEFC, 012AA3D84EEAAF53780D06D2D11B9727DFC3441F3FAD75BC9E751FB814403668 ] mrxsmb10 C:\windows\system32\DRIVERS\mrxsmb10.sys
22:03:34.0311 0x11b8 mrxsmb10 - ok
22:03:34.0342 0x11b8 [ B81F204D146000BE76651A50670A5E9E, 78193D0F967BE9829E53F9B500342934B4B1E1F4CEFC444382959E2061BC3B17 ] mrxsmb20 C:\windows\system32\DRIVERS\mrxsmb20.sys
22:03:34.0342 0x11b8 mrxsmb20 - ok
22:03:34.0420 0x11b8 [ 012C5F4E9349E711E11E0F19A8589F0A, 208B92DFCF7AD43202660FBBC9FF5E03AEDBEE38178FF3628EB74CB6CD37C584 ] msahci C:\windows\system32\drivers\msahci.sys
22:03:34.0420 0x11b8 msahci - ok
22:03:34.0482 0x11b8 [ 55055F8AD8BE27A64C831322A780A228, C2C9FD1F61302997117B1CD0835E8234405BB80084065ED05363B77868397304 ] msdsm C:\windows\system32\drivers\msdsm.sys
22:03:34.0482 0x11b8 msdsm - ok
22:03:34.0514 0x11b8 [ E1BCE74A3BD9902B72599C0192A07E27, 5162EB623FE64E9DFEAC6CA2410EFA1314E62EC13207FFBFED2D61AA887603C4 ] MSDTC C:\windows\System32\msdtc.exe
22:03:34.0514 0x11b8 MSDTC - ok
22:03:34.0638 0x11b8 [ DAEFB28E3AF5A76ABCC2C3078C07327F, 6EB558532400B489763BAE7203538DE5F196282A8CB46A1B31D59120FC5AFCEF ] Msfs C:\windows\system32\drivers\Msfs.sys
22:03:34.0638 0x11b8 Msfs - ok
22:03:34.0670 0x11b8 [ 3E1E5767043C5AF9367F0056295E9F84, B2EDFECD3C14E4FE1BA87D9A86334043A9BD696A554EBD186DA7EAEB2EBD4F70 ] mshidkmdf C:\windows\System32\drivers\mshidkmdf.sys
22:03:34.0670 0x11b8 mshidkmdf - ok
22:03:34.0732 0x11b8 [ 0A4E5757AE09FA9622E3158CC1AEF114, ED574E420E57374E328C7C526504ECA569C164287966F06019EC207CB17F2C54 ] msisadrv C:\windows\system32\drivers\msisadrv.sys
22:03:34.0732 0x11b8 msisadrv - ok
22:03:34.0779 0x11b8 [ 90F7D9E6B6F27E1A707D4A297F077828, BEFC220EAA7307849600748842ACB9254A6A91158812D9B23EFAF912C498BA7F ] MSiSCSI C:\windows\system32\iscsiexe.dll
22:03:34.0779 0x11b8 MSiSCSI - ok
22:03:34.0794 0x11b8 msiserver - ok
22:03:34.0841 0x11b8 [ 8C0860D6366AAFFB6C5BB9DF9448E631, 949C5A14E57F2D7385543C17C3485E7ADE36EA2016F6E0A1866571D2EDE90A77 ] MSKSSRV C:\windows\system32\drivers\MSKSSRV.sys
22:03:34.0841 0x11b8 MSKSSRV - ok
22:03:34.0904 0x11b8 [ 3EA8B949F963562CEDBB549EAC0C11CE, 1B0B2F16A1790282504F3C548D47C3281EFB440D5D9711A1EF76D6371B768D2D ] MSPCLOCK C:\windows\system32\drivers\MSPCLOCK.sys
22:03:34.0904 0x11b8 MSPCLOCK - ok
22:03:34.0919 0x11b8 [ F456E973590D663B1073E9C463B40932, 48BA6D5580EE7B6A4C06E04772FD35B51779553FC0DD6C5C30DD8B5DEEB25B11 ] MSPQM C:\windows\system32\drivers\MSPQM.sys
22:03:34.0919 0x11b8 MSPQM - ok
22:03:34.0950 0x11b8 [ 0E008FC4819D238C51D7C93E7B41E560, 141FCEBDD05874407EAEC35A9DCD3BB16F2A428F23E55487D6A5DBFCADBF10D2 ] MsRPC C:\windows\system32\drivers\MsRPC.sys
22:03:34.0966 0x11b8 MsRPC - ok
22:03:34.0997 0x11b8 [ FC6B9FF600CC585EA38B12589BD4E246, F05DB01AE1955D2468CE6B51E51998B111CA3B0BDEED090EE6B99B625CBA564A ] mssmbios C:\windows\system32\drivers\mssmbios.sys
22:03:34.0997 0x11b8 mssmbios - ok
22:03:35.0075 0x11b8 [ B42C6B921F61A6E55159B8BE6CD54A36, 6BB0A7BE005B8F281E551D1B8046CE4202372BC7AE0161881C858BFAC675FE1C ] MSTEE C:\windows\system32\drivers\MSTEE.sys
22:03:35.0091 0x11b8 MSTEE - ok
22:03:35.0106 0x11b8 [ 33599130F44E1F34631CEA241DE8AC84, E15B31D1AFDC8DC6D2B21D4215796A99ECC69EEDBB06CEED01AECC3C99A44C8B ] MTConfig C:\windows\system32\DRIVERS\MTConfig.sys
22:03:35.0106 0x11b8 MTConfig - ok
22:03:35.0138 0x11b8 [ 159FAD02F64E6381758C990F753BCC80, E55AB01DCFA95ECAB24A2A9656E28FF9D064BA08B3D82DC8AA42F5991BA09598 ] Mup C:\windows\system32\Drivers\mup.sys
22:03:35.0138 0x11b8 Mup - ok
22:03:35.0231 0x11b8 [ 61D57A5D7C6D9AFE10E77DAE6E1B445E, D252248532142E9E2332DA693BC51B795102CA938B568FF04981E98B19BFBC5C ] napagent C:\windows\system32\qagentRT.dll
22:03:35.0262 0x11b8 napagent - ok
22:03:35.0325 0x11b8 [ 26384429FCD85D83746F63E798AB1480, 957C115C263A4B4DC854558B43ECE632D8E2BCCB744E23A01EBA7476BA2E7FFB ] NativeWifiP C:\windows\system32\DRIVERS\nwifi.sys
22:03:35.0340 0x11b8 NativeWifiP - ok
22:03:35.0403 0x11b8 [ 8C9C922D71F1CD4DEF73F186416B7896, 15FF43CD90C7913F83B35F2E7986561584588E8A45196EBD965C3A355836A9C7 ] NDIS C:\windows\system32\drivers\ndis.sys
22:03:35.0434 0x11b8 NDIS - ok
22:03:35.0512 0x11b8 [ 0E1787AA6C9191D3D319E8BAFE86F80C, F535022747355B2C66424BDA892D7DCB820C2EB8EE05BAE5BC6D1B1D65186278 ] NdisCap C:\windows\system32\DRIVERS\ndiscap.sys
22:03:35.0543 0x11b8 NdisCap - ok
22:03:35.0637 0x11b8 [ E4A8AEC125A2E43A9E32AFEEA7C9C888, 6EA181117126FC70B3C1DD1AC73CC26D1603A2CF49E47F66623E2C9489C49B55 ] NdisTapi C:\windows\system32\DRIVERS\ndistapi.sys
22:03:35.0637 0x11b8 NdisTapi - ok
22:03:35.0808 0x11b8 [ D8A65DAFB3EB41CBB622745676FCD072, 874D3C3D247C4A309DA813DB1D2EDB0037D3C489824BD5FE95B0C20699764EF7 ] Ndisuio C:\windows\system32\DRIVERS\ndisuio.sys
22:03:35.0808 0x11b8 Ndisuio - ok
22:03:36.0058 0x11b8 [ 38FBE267E7E6983311179230FACB1017, CFD1CBCA59650795C030DB30E5795B37C11C736E14003AE1DAB081BA5C0C9B14 ] NdisWan C:\windows\system32\DRIVERS\ndiswan.sys
22:03:36.0058 0x11b8 NdisWan - ok
22:03:36.0105 0x11b8 [ A4BDC541E69674FBFF1A8FF00BE913F2, 18CCFD063E9870B8B6958715BC0414C4D920AE63528EA1E9D7E30F7138918FFA ] NDProxy C:\windows\system32\drivers\NDProxy.sys
22:03:36.0105 0x11b8 NDProxy - ok
22:03:36.0167 0x11b8 [ 80B275B1CE3B0E79909DB7B39AF74D51, 75B406B0D9D28239D4EB2A298419A5F78A58237D88C5FD688EF1DFFAFACCF796 ] NetBIOS C:\windows\system32\DRIVERS\netbios.sys
22:03:36.0167 0x11b8 NetBIOS - ok
22:03:36.0339 0x11b8 [ 280122DDCF04B378EDD1AD54D71C1E54, F98B2ADE34F7E67C7C06C1D0FFB80ECBC353D044D4B4784CD952910345DC2ED0 ] NetBT C:\windows\system32\DRIVERS\netbt.sys
22:03:36.0354 0x11b8 NetBT - ok
22:03:36.0370 0x11b8 [ 803B370865D907EA21DC0C2B6A8936B5, E98F0BA1D94786E061A3EA2CC76041FF6BE0ADF47C6205D5572C03BF0E29CA78 ] Netlogon C:\windows\system32\lsass.exe
22:03:36.0370 0x11b8 Netlogon - ok
22:03:36.0432 0x11b8 [ 7CCCFCA7510684768DA22092D1FA4DB2, BB9E4F8FABBF596D888E6D303CB54A336D9DFF95B36AEA9369D2ED787DDC4B5D ] Netman C:\windows\System32\netman.dll
22:03:36.0479 0x11b8 Netman - ok
22:03:36.0635 0x11b8 [ D22CD77D4F0D63D1169BB35911BFF12D, 85B1FDFA02E1B8EA4FCB9B7EEB687C5C448697FC7EC9D178C5A2F64D2C9CFEE8 ] NetMsmqActivator C:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
22:03:36.0682 0x11b8 NetMsmqActivator - ok
22:03:36.0744 0x11b8 [ D22CD77D4F0D63D1169BB35911BFF12D, 85B1FDFA02E1B8EA4FCB9B7EEB687C5C448697FC7EC9D178C5A2F64D2C9CFEE8 ] NetPipeActivator C:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
22:03:36.0744 0x11b8 NetPipeActivator - ok
22:03:36.0791 0x11b8 [ 8C338238C16777A802D6A9211EB2BA50, 0D08A47CD403EDA5E8CAD7409BBBBCDC29A9861D2DC41D42B68B22B1AA1EBDD6 ] netprofm C:\windows\System32\netprofm.dll
22:03:36.0885 0x11b8 netprofm - ok
22:03:36.0916 0x11b8 [ D22CD77D4F0D63D1169BB35911BFF12D, 85B1FDFA02E1B8EA4FCB9B7EEB687C5C448697FC7EC9D178C5A2F64D2C9CFEE8 ] NetTcpActivator C:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
22:03:36.0916 0x11b8 NetTcpActivator - ok
22:03:36.0932 0x11b8 [ D22CD77D4F0D63D1169BB35911BFF12D, 85B1FDFA02E1B8EA4FCB9B7EEB687C5C448697FC7EC9D178C5A2F64D2C9CFEE8 ] NetTcpPortSharing C:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
22:03:36.0932 0x11b8 NetTcpPortSharing - ok
22:03:36.0963 0x11b8 [ 1D85C4B390B0EE09C7A46B91EFB2C097, 6A8850B151E88EE371F3CC543A946302DDF9494908D684B8B0C706A42CC54348 ] nfrd960 C:\windows\system32\DRIVERS\nfrd960.sys
22:03:36.0963 0x11b8 nfrd960 - ok
22:03:37.0010 0x11b8 [ 374071043F9E4231EE43BE2BB48DD36D, C4FA3FC40CC49DBBB91901D14210A55D3831FAC9F9B3FF45FCA7F5CF242C9E92 ] NlaSvc C:\windows\System32\nlasvc.dll
22:03:37.0041 0x11b8 NlaSvc - ok
22:03:37.0134 0x11b8 [ B48DC6ABCD3AEFF8618350CCBDC6B09A, 824D8B03E061DDD0D33EF9F03C669B13E7B6E339684009BD44D69178C45E2DE1 ] npf C:\windows\system32\drivers\npf.sys
22:03:37.0134 0x11b8 npf - ok
22:03:37.0212 0x11b8 [ 1DB262A9F8C087E8153D89BEF3D2235F, A51EE5D5AD3CD76B74BEA9C66C462608BF3B50C53DAA4110A75DB10495A8C101 ] Npfs C:\windows\system32\drivers\Npfs.sys
22:03:37.0212 0x11b8 Npfs - ok
22:03:37.0259 0x11b8 [ BA387E955E890C8A88306D9B8D06BF17, 3477BD9686C5777A93251C154512671AAA7533B18C536DF51F7B1D6D28E7F8A5 ] nsi C:\windows\system32\nsisvc.dll
22:03:37.0275 0x11b8 nsi - ok
Re: preventivní kontrola logu
22:03:37.0290 0x11b8 [ E9A0A4D07E53D8FEA2BB8387A3293C58, 690CAD6C4E35ECC1172A2E1FD3933DF73158B3BF42CB21244269612A53DE4D7A ] nsiproxy C:\windows\system32\drivers\nsiproxy.sys
22:03:37.0290 0x11b8 nsiproxy - ok
22:03:37.0493 0x11b8 [ 5E43D2B0EE64123D4880DFA6626DEFDE, 164413A22DE58B19EA2B4120034B46D6BE1F424B80C3421E10BE5C81153D049F ] Ntfs C:\windows\system32\drivers\Ntfs.sys
22:03:37.0556 0x11b8 Ntfs - ok
22:03:37.0634 0x11b8 [ F9756A98D69098DCA8945D62858A812C, 572ADBFCFDE2030B34A013AADC14DBC144EB3F34D06991E2464A3EA9605BC045 ] Null C:\windows\system32\drivers\Null.sys
22:03:37.0634 0x11b8 Null - ok
22:03:37.0727 0x11b8 [ B3E25EE28883877076E0E1FF877D02E0, 402B6FED6FBBF645190396DC141141EF52DD059DABD01F8AC9CF01D23664070C ] nvraid C:\windows\system32\drivers\nvraid.sys
22:03:37.0727 0x11b8 nvraid - ok
22:03:37.0758 0x11b8 [ 4380E59A170D88C4F1022EFF6719A8A4, 93EDB3F4CDBF53C9C1970DD29AB146E390695C568180847BA8903F5FBEABCFF2 ] nvstor C:\windows\system32\drivers\nvstor.sys
22:03:37.0758 0x11b8 nvstor - ok
22:03:37.0821 0x11b8 [ 5A0983915F02BAE73267CC2A041F717D, D83461D74597BF2BE042FEFCC27FCD18BF63CB8135B0666D731D50951C3468A8 ] nv_agp C:\windows\system32\drivers\nv_agp.sys
22:03:37.0821 0x11b8 nv_agp - ok
22:03:38.0008 0x11b8 [ 785F487A64950F3CB8E9F16253BA3B7B, 02445344BD214370A6D48B1CA04921D8EFCB13E676B5648266DD0E076C0822B6 ] odserv C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
22:03:38.0070 0x11b8 odserv - ok
22:03:38.0148 0x11b8 [ 08A70A1F2CDDE9BB49B885CB817A66EB, 0BB98123B544124B144F3E95D77E01E973D060B8B2302503FF24ABBBE803EB63 ] ohci1394 C:\windows\system32\drivers\ohci1394.sys
22:03:38.0164 0x11b8 ohci1394 - ok
22:03:38.0211 0x11b8 [ 5A432A042DAE460ABE7199B758E8606C, 6E5D1F477D290905BE27CEBF9572BAC6B05FFEF2FAD901D3C8E11F665F8B9A71 ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
22:03:38.0211 0x11b8 ose - ok
22:03:38.0336 0x11b8 [ 82A8521DDC60710C3D3D3E7325209BEC, C4E34571EDD57C7FBB3D736B5FE8BD154624705B5C8EA2EC898F19F75B9A5942 ] p2pimsvc C:\windows\system32\pnrpsvc.dll
22:03:38.0398 0x11b8 p2pimsvc - ok
22:03:38.0460 0x11b8 [ 59C3DDD501E39E006DAC31BF55150D91, E02B63AB7F34CF6FF3F644AF354D10004E6F50014E03172D80BD78934EF71EF1 ] p2psvc C:\windows\system32\p2psvc.dll
22:03:38.0507 0x11b8 p2psvc - ok
22:03:38.0554 0x11b8 [ 2EA877ED5DD9713C5AC74E8EA7348D14, 14BA3722CE5F8FF07F2D97DCDD6558EB49C9B02E5E6FAD6D9F18D354733EFECE ] Parport C:\windows\system32\DRIVERS\parport.sys
22:03:38.0554 0x11b8 Parport - ok
22:03:38.0585 0x11b8 [ 3F34A1B4C5F6475F320C275E63AFCE9B, 31295D5121C0C3F2085E0EEBA260EEE4CA003993C026E2F81986D19158036E6B ] partmgr C:\windows\system32\drivers\partmgr.sys
22:03:38.0585 0x11b8 partmgr - ok
22:03:38.0616 0x11b8 [ EB0A59F29C19B86479D36B35983DAADC, AC09AFE7F13BE4079D01383BAC44091997E1AAF6512C9673A42B9E3780EB08A8 ] Parvdm C:\windows\system32\DRIVERS\parvdm.sys
22:03:38.0616 0x11b8 Parvdm - ok
22:03:38.0663 0x11b8 [ 358AB7956D3160000726574083DFC8A6, 6CAFD4D1B8AB8C1D167ADC018985DDAB5AC2CBFFB3434FE6390F14AF50C19025 ] PcaSvc C:\windows\System32\pcasvc.dll
22:03:38.0694 0x11b8 PcaSvc - ok
22:03:38.0804 0x11b8 [ 673E55C3498EB970088E812EA820AA8F, 1F81315664B8CBFDD569416C0ECCE4C6251F34577313A0858AB46609781303B5 ] pci C:\windows\system32\drivers\pci.sys
22:03:38.0804 0x11b8 pci - ok
22:03:38.0835 0x11b8 [ AFE86F419014DB4E5593F69FFE26CE0A, CAF36E61BE7B511D3A03A65FF5A3017CEE4D2F53005B410F2D4A2AAE9FED4C00 ] pciide C:\windows\system32\drivers\pciide.sys
22:03:38.0835 0x11b8 pciide - ok
22:03:38.0866 0x11b8 [ F396431B31693E71E8A80687EF523506, BC614FC21E029E2497F1CCE3131BBD295B827F2310762B47D5BBC7703D80554B ] pcmcia C:\windows\system32\DRIVERS\pcmcia.sys
22:03:38.0882 0x11b8 pcmcia - ok
22:03:38.0960 0x11b8 [ 250F6B43D2B613172035C6747AEEB19F, A91F15B133F2619912CF750E6F3662E011CD0FA4B9477CE532CE3196D23307D9 ] pcw C:\windows\system32\drivers\pcw.sys
22:03:38.0960 0x11b8 pcw - ok
22:03:38.0991 0x11b8 pdfcDispatcher - ok
22:03:39.0131 0x11b8 [ D7B078B2447DE0295D42845619A99DF0, DA25CFEE07B840D3C56EFCD136C112CB2EB1932B81FD3B66A74209E694C604DF ] PDFProFiltSrv C:\Program Files\Nuance\PDF Professional 6\PDFProFiltSrv.exe
22:03:39.0131 0x11b8 PDFProFiltSrv - ok
22:03:39.0209 0x11b8 [ 9E0104BA49F4E6973749A02BF41344ED, B32F39F38DB48D77FBA884DEE34112BAB81CCEF5DD2EAAA12D9589D73D2BB116 ] PEAUTH C:\windows\system32\drivers\peauth.sys
22:03:39.0240 0x11b8 PEAUTH - ok
22:03:39.0412 0x11b8 [ 414BBA67A3DED1D28437EB66AEB8A720, D6DF254E2615FA402044824DCD9004F579FC0DF74B90E44C99D5F0253CF8AD88 ] pla C:\windows\system32\pla.dll
22:03:39.0474 0x11b8 pla - ok
22:03:39.0537 0x11b8 [ EC7BC28D207DA09E79B3E9FAF8B232CA, A42F8F69C3CD753D787A5D558659DEA2CC306C896D75B8C82549219CF654504F ] PlugPlay C:\windows\system32\umpnpmgr.dll
22:03:39.0568 0x11b8 PlugPlay - ok
22:03:39.0724 0x11b8 [ 3A2E85F7D90D15460C337CE80C2E3B29, EECAA20359FD2D75D6A564A3BAADACAA2CB69D061E455AA3F75055A3EAB54168 ] PnkBstrA C:\windows\system32\PnkBstrA.exe
22:03:39.0724 0x11b8 PnkBstrA - ok
22:03:39.0849 0x11b8 [ 7C01817ADF3207FB65A4B56E6D5AD833, 6FA500C4452188875E464BBA7B9428D71BD32C1A5D4678AE9313CA7E8516C3A8 ] PnkBstrB C:\windows\system32\PnkBstrB.exe
22:03:39.0880 0x11b8 PnkBstrB - ok
22:03:39.0958 0x11b8 [ 63FF8572611249931EB16BB8EED6AFC8, 9732CCBCB93A7A4BEC88812B952C20244479E9BD781240C195E57F09E619EA33 ] PNRPAutoReg C:\windows\system32\pnrpauto.dll
22:03:39.0974 0x11b8 PNRPAutoReg - ok
22:03:40.0005 0x11b8 [ 82A8521DDC60710C3D3D3E7325209BEC, C4E34571EDD57C7FBB3D736B5FE8BD154624705B5C8EA2EC898F19F75B9A5942 ] PNRPsvc C:\windows\system32\pnrpsvc.dll
22:03:40.0005 0x11b8 PNRPsvc - ok
22:03:40.0176 0x11b8 [ 53946B69BA0836BD95B03759530C81EC, 7F14A34635354CCA0F5342C8D9DF5A6AA1B94F6A508BD8834029E9BACF252920 ] PolicyAgent C:\windows\System32\ipsecsvc.dll
22:03:40.0223 0x11b8 PolicyAgent - ok
22:03:40.0270 0x11b8 [ F87D30E72E03D579A5199CCB3831D6EA, B09328E89954584F97908FA5946376BA990B8C650DABCBF3CA3B08719937C694 ] Power C:\windows\system32\umpo.dll
22:03:40.0270 0x11b8 Power - ok
22:03:40.0332 0x11b8 [ 631E3E205AD6D86F2AED6A4A8E69F2DB, 1D3BF0CFC37D91A3A56246920B9CF1084E78A055D56E85A773417809C58C8065 ] PptpMiniport C:\windows\system32\DRIVERS\raspptp.sys
22:03:40.0332 0x11b8 PptpMiniport - ok
22:03:40.0364 0x11b8 [ 85B1E3A0C7585BC4AAE6899EC6FCF011, 1E067113C146D6842D7FB04007F363D6FB7783C6BC7C9AB6614E44075C4F86C3 ] Processor C:\windows\system32\DRIVERS\processr.sys
22:03:40.0364 0x11b8 Processor - ok
22:03:40.0395 0x11b8 [ CADEFAC453040E370A1BDFF3973BE00D, 2E3DD8DA702468D8AB0F3CE27188B1991D4CB015FB36BAE4C6E7996B61CF49B8 ] ProfSvc C:\windows\system32\profsvc.dll
22:03:40.0426 0x11b8 ProfSvc - ok
22:03:40.0442 0x11b8 [ 803B370865D907EA21DC0C2B6A8936B5, E98F0BA1D94786E061A3EA2CC76041FF6BE0ADF47C6205D5572C03BF0E29CA78 ] ProtectedStorage C:\windows\system32\lsass.exe
22:03:40.0457 0x11b8 ProtectedStorage - ok
22:03:40.0520 0x11b8 [ 6270CCAE2A86DE6D146529FE55B3246A, 463209CBAF1B0E269DC8FC6FBDEE5BB7E5ADB5D3F024930BFD0B97E0A9678883 ] Psched C:\windows\system32\DRIVERS\pacer.sys
22:03:40.0520 0x11b8 Psched - ok
22:03:40.0582 0x11b8 [ A6A7AD767BF5141665F5C675F671B3E1, 11D43F732C3B82679E53516F83E675B60B0EFEDE3F4EE3C42AC752AD8D5155AF ] PSI_SVC_2 c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
22:03:40.0598 0x11b8 PSI_SVC_2 - ok
22:03:40.0644 0x11b8 [ 40FEDD328F98245AD201CF5F9F311724, CE1582652B6A7CACE46D8B492CAA8E51EA46C3890EF640E8C5E1E053731A4D74 ] PxHelp20 C:\windows\system32\Drivers\PxHelp20.sys
22:03:40.0644 0x11b8 PxHelp20 - ok
22:03:40.0785 0x11b8 [ AB95ECF1F6659A60DDC166D8315B0751, 0ED6D3460D28978BADF31B930DBB3298A6A10EFF8883763EABA0E36A21A0E83D ] ql2300 C:\windows\system32\DRIVERS\ql2300.sys
22:03:40.0847 0x11b8 ql2300 - ok
22:03:40.0878 0x11b8 [ B4DD51DD25182244B86737DC51AF2270, 7E62B04F054A6330B7F9968222523BDE8F3EE47A11D17E6C0E2D5ACDC07B9E6B ] ql40xx C:\windows\system32\DRIVERS\ql40xx.sys
22:03:40.0878 0x11b8 ql40xx - ok
22:03:40.0925 0x11b8 [ 31AC809E7707EB580B2BDB760390765A, A8481FD19A0F778F5591B7676F591F664ADC68B6867E663C0F9564173F4AC909 ] QWAVE C:\windows\system32\qwave.dll
22:03:40.0956 0x11b8 QWAVE - ok
22:03:40.0988 0x11b8 [ 584078CA1B95CA72DF2A27C336F9719D, 836F115C92D343463C14A9DE39648C1EFA7C7EE4720F5C692EE0F68B84830121 ] QWAVEdrv C:\windows\system32\drivers\qwavedrv.sys
22:03:40.0988 0x11b8 QWAVEdrv - ok
22:03:41.0003 0x11b8 [ 30A81B53C766D0133BB86D234E5556AB, 726C6B83B5ACAA84CAB1689B6DD6DDAE3199D61A57B5D7B5B5A0F62FCF838090 ] RasAcd C:\windows\system32\DRIVERS\rasacd.sys
22:03:41.0019 0x11b8 RasAcd - ok
22:03:41.0050 0x11b8 [ 57EC4AEF73660166074D8F7F31C0D4FD, C66B425EC4DB5E7FD289AE631C9B019EB16717C55E80FAE964BB22203E4AACEF ] RasAgileVpn C:\windows\system32\DRIVERS\AgileVpn.sys
22:03:41.0050 0x11b8 RasAgileVpn - ok
22:03:41.0097 0x11b8 [ A60F1839849C0C00739787FD5EC03F13, B210DFA5A843CF1DA73635F168E2EA5052CBED15C664F8523CDFB34CA165D0E0 ] RasAuto C:\windows\System32\rasauto.dll
22:03:41.0112 0x11b8 RasAuto - ok
22:03:41.0159 0x11b8 [ D9F91EAFEC2815365CBE6D167E4E332A, 8350457A39D141C13807E7DB5A8D4113197C4016F7744B9993391F4AEA0C4A5C ] Rasl2tp C:\windows\system32\DRIVERS\rasl2tp.sys
22:03:41.0159 0x11b8 Rasl2tp - ok
22:03:41.0393 0x11b8 [ CB9E04DC05EACF5B9A36CA276D475006, 4D8C0AEF1D4F84F375AD2BAF786C9F6C52316A3E655B913449E71AD7C0FCA56E ] RasMan C:\windows\System32\rasmans.dll
22:03:41.0440 0x11b8 RasMan - ok
22:03:41.0518 0x11b8 [ 0FE8B15916307A6AC12BFB6A63E45507, 64119474DE7499E6E8B82E78BBD50074B3AA70B3E8329089FAE9B7F29919004E ] RasPppoe C:\windows\system32\DRIVERS\raspppoe.sys
22:03:41.0518 0x11b8 RasPppoe - ok
22:03:41.0565 0x11b8 [ 44101F495A83EA6401D886E7FD70096B, 56A0CE5C89870752B9B2AB795C1A248CA28209E049B2F20CCA0308CBE2488A0A ] RasSstp C:\windows\system32\DRIVERS\rassstp.sys
22:03:41.0580 0x11b8 RasSstp - ok
22:03:41.0627 0x11b8 [ D528BC58A489409BA40334EBF96A311B, C71E9A4B101DB6C3183B9F97B9098D73D6FE1B12C05C2EB3CE8A8041BEE6BA61 ] rdbss C:\windows\system32\DRIVERS\rdbss.sys
22:03:41.0643 0x11b8 rdbss - ok
22:03:41.0690 0x11b8 [ 0D8F05481CB76E70E1DA06EE9F0DA9DF, 2AFCBE3237D27AFBF095F91F1FCCA63E6890F34A9E4F00E5C34C92394CDA89FB ] rdpbus C:\windows\system32\DRIVERS\rdpbus.sys
22:03:41.0690 0x11b8 rdpbus - ok
22:03:41.0752 0x11b8 [ 23DAE03F29D253AE74C44F99E515F9A1, 8FED93D10B2062F0526FE3508101F8FCF8F72DEB90AFB472EB7CBAE83A0EC430 ] RDPCDD C:\windows\system32\DRIVERS\RDPCDD.sys
22:03:41.0752 0x11b8 RDPCDD - ok
22:03:41.0814 0x11b8 [ 5A53CA1598DD4156D44196D200C94B8A, 8112FE14FEC94C67B1C5BDE4171E37584F1D0098D2C557C9E4BDD3E0291E25E4 ] RDPENCDD C:\windows\system32\drivers\rdpencdd.sys
22:03:41.0814 0x11b8 RDPENCDD - ok
22:03:41.0830 0x11b8 [ 44B0A53CD4F27D50ED461DAE0C0B4E1F, CDA80B08E67AD034081C0C920CD66147689F1844403CBC552F65005E7C011A91 ] RDPREFMP C:\windows\system32\drivers\rdprefmp.sys
22:03:41.0830 0x11b8 RDPREFMP - ok
22:03:42.0033 0x11b8 [ 65375DF758CA1872AB7EBBBA457FD5E6, 8AC7681F51277E799C22FF95FA0B833E9E260D37C0416319FF05B66FB3948005 ] RdpVideoMiniport C:\windows\system32\drivers\rdpvideominiport.sys
22:03:42.0033 0x11b8 RdpVideoMiniport - ok
22:03:42.0095 0x11b8 [ F031683E6D1FEA157ABB2FF260B51E61, 83B552819A5964152882C527E1421DBCEAACC74DEB897E3C4B53F52F1467FED3 ] RDPWD C:\windows\system32\drivers\RDPWD.sys
22:03:42.0095 0x11b8 RDPWD - ok
22:03:42.0236 0x11b8 [ 518395321DC96FE2C9F0E96AC743B656, 5F6A0880B4F3EE7196259EA362DA9554B0687B0236F9A8E5CF7A4A77F01F1776 ] rdyboost C:\windows\system32\drivers\rdyboost.sys
22:03:42.0251 0x11b8 rdyboost - ok
22:03:42.0345 0x11b8 [ 7B5E1419717FAC363A31CC302895217A, 048B96B127CC20833948DAE53C59886D5C725ECA7A744424A01339447D2DDC32 ] RemoteAccess C:\windows\System32\mprdim.dll
22:03:42.0360 0x11b8 RemoteAccess - ok
22:03:42.0454 0x11b8 [ CB9A8683F4EF2BF99E123D79950D7935, B9FA3E7E91E76D975CF40BFA37909E50F29CC13AB1399007884710651827E9AA ] RemoteRegistry C:\windows\system32\regsvc.dll
22:03:42.0454 0x11b8 RemoteRegistry - ok
22:03:42.0516 0x11b8 [ CB928D9E6DAF51879DD6BA8D02F01321, DFD263B67DDF98AE09AF6D6986CBC7BE3206BCE8403AAC51BCF9459E78233D12 ] RFCOMM C:\windows\system32\DRIVERS\rfcomm.sys
22:03:42.0516 0x11b8 RFCOMM - ok
22:03:42.0844 0x11b8 [ C48AE8B3067261A48FCC31979A3A1EB9, 90C1AE8D76905BA49D9973DE16E1D9C5EC27E44DFCBA955499CC6E9270DF884D ] RoxMediaDB10 c:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe
22:03:42.0953 0x11b8 RoxMediaDB10 - ok
22:03:43.0000 0x11b8 [ 78D072F35BC45D9E4E1B61895C152234, 80C924EE1156B4E3172E83DCB9C60817E87885FB9377647E0BF90153E415B1CA ] RpcEptMapper C:\windows\System32\RpcEpMap.dll
22:03:43.0016 0x11b8 RpcEptMapper - ok
22:03:43.0031 0x11b8 [ 94D36C0E44677DD26981D2BFEEF2A29D, D77A93AC60536F3706E8A0154C0C2199E888B7748C84DB7437254FF175F4DF55 ] RpcLocator C:\windows\system32\locator.exe
22:03:43.0047 0x11b8 RpcLocator - ok
22:03:43.0172 0x11b8 [ 7660F01D3B38ACA1747E397D21D790AF, 04611B43705C064C2A8331F6D3F8E4530295694AE2C3E3EC3F62CFF4A5EFA88D ] RpcSs C:\windows\system32\rpcss.dll
22:03:43.0187 0x11b8 RpcSs - ok
22:03:43.0265 0x11b8 [ 032B0D36AD92B582D869879F5AF5B928, 0F8F18A6A0A689957B886D9368015889091094EDA18BE532093F06A70A7CE184 ] rspndr C:\windows\system32\DRIVERS\rspndr.sys
22:03:43.0281 0x11b8 rspndr - ok
22:03:43.0437 0x11b8 [ 5283B9A27FF230F2FF70D92451FF409A, B8BAC70E1DE4485C79CA7B47D4DCFE0223CECEA8ED75CE4F128D47051F95FE5D ] RTL8167 C:\windows\system32\DRIVERS\Rt86win7.sys
22:03:43.0452 0x11b8 RTL8167 - ok
22:03:43.0764 0x11b8 [ FDE8E47D14CC879305A899373CE25B61, 47B56A0BF44FC1F9F88DBF58609C44CE10832084B9BF85607E039E0393E13107 ] rtl8192se C:\windows\system32\DRIVERS\rtl8192se.sys
22:03:43.0827 0x11b8 rtl8192se - ok
22:03:43.0952 0x11b8 [ 40AE35F1FDBAC1F4B0C53D2ED77A0E3F, 3A7F7E0D65C42DFE7652D89183DCB3ACFCD5B32A1C4E1202C32B6749836045D3 ] rtsuvc C:\windows\system32\DRIVERS\rtsuvc.sys
22:03:43.0967 0x11b8 rtsuvc - ok
22:03:43.0983 0x11b8 [ 803B370865D907EA21DC0C2B6A8936B5, E98F0BA1D94786E061A3EA2CC76041FF6BE0ADF47C6205D5572C03BF0E29CA78 ] SamSs C:\windows\system32\lsass.exe
22:03:43.0983 0x11b8 SamSs - ok
22:03:44.0061 0x11b8 [ 05D860DA1040F111503AC416CCEF2BCA, DAE2F37D09A5A42F945BC8E27E4EA2303521081783A80CEE7FEE7C5A1C2CFC5E ] sbp2port C:\windows\system32\drivers\sbp2port.sys
22:03:44.0076 0x11b8 sbp2port - ok
22:03:44.0123 0x11b8 [ 8FC518FFE9519C2631D37515A68009C4, 21E10585470CF9FC3BD1977F8A426686CD2FA6BD2094B9E3594B21C7C4541D25 ] SCardSvr C:\windows\System32\SCardSvr.dll
22:03:44.0139 0x11b8 SCardSvr - ok
22:03:44.0170 0x11b8 [ 0693B5EC673E34DC147E195779A4DCF6, AF1B56FBF3ADABF94CD9DBA67586B8746DE135151F6B3D1B0EE315BC1E2DB670 ] scfilter C:\windows\system32\DRIVERS\scfilter.sys
22:03:44.0170 0x11b8 scfilter - ok
22:03:44.0404 0x11b8 [ A04BB13F8A72F8B6E8B4071723E4E336, E63287FF71C39CBF64C3347C455324C8437F9CF398153E269543588B65389502 ] Schedule C:\windows\system32\schedsvc.dll
22:03:44.0466 0x11b8 Schedule - ok
22:03:44.0622 0x11b8 [ 319C6B309773D063541D01DF8AC6F55F, 182F392FE839499D159A30A3CD04B5D0C87219930BFB1A7456880B7DA75B9820 ] SCPolicySvc C:\windows\System32\certprop.dll
22:03:44.0622 0x11b8 SCPolicySvc - ok
22:03:44.0732 0x11b8 [ 08236C4BCE5EDD0A0318A438AF28E0F7, 77727F963F63C4CEC11E7AAD5FB3836179701D512CA9436C3170B9E6A4E5F888 ] SDRSVC C:\windows\System32\SDRSVC.dll
22:03:44.0747 0x11b8 SDRSVC - ok
22:03:44.0794 0x11b8 [ 90A3935D05B494A5A39D37E71F09A677, F72733A69BC6E1A2BB91D7632FF3463C12563F60FDCC00A2CDD67FF20D479952 ] secdrv C:\windows\system32\drivers\secdrv.sys
22:03:44.0825 0x11b8 secdrv - ok
22:03:44.0888 0x11b8 [ A59B3A4442C52060CC7A85293AA3546F, 1776D6DEE51991149265AAF39E17065E301C5FA1FF4068653DC0010B9B27185D ] seclogon C:\windows\system32\seclogon.dll
22:03:44.0903 0x11b8 seclogon - ok
22:03:45.0075 0x11b8 [ DCB7FCDCC97F87360F75D77425B81737, F8289AF2C458C167038EEFE613EE5E3D6D5B3308B8784168374BC81C47891CE5 ] SENS C:\windows\System32\sens.dll
22:03:45.0075 0x11b8 SENS - ok
22:03:45.0106 0x11b8 [ 50087FE1EE447009C9CC2997B90DE53F, B5E6CF1D991F87C29C5E28198E0962E31FFB499A46C3BD43FC20391693389959 ] SensrSvc C:\windows\system32\sensrsvc.dll
22:03:45.0122 0x11b8 SensrSvc - ok
22:03:45.0137 0x11b8 [ 9AD8B8B515E3DF6ACD4212EF465DE2D1, E2F019BCD1446236D078D46065DD151DD068778F33BE2F1E8A0CC1EA2F954E86 ] Serenum C:\windows\system32\DRIVERS\serenum.sys
22:03:45.0137 0x11b8 Serenum - ok
22:03:45.0184 0x11b8 [ 5FB7FCEA0490D821F26F39CC5EA3D1E2, A26DB2EB9F3E2509B4EBA949DB97595CC32332D9321DF68283BFC102E66D766F ] Serial C:\windows\system32\DRIVERS\serial.sys
22:03:45.0184 0x11b8 Serial - ok
22:03:45.0200 0x11b8 [ 79BFFB520327FF916A582DFEA17AA813, 7A2A9D69BE02228591186A9F4453D4B5FD98837CA422C873C48040170E8BD18C ] sermouse C:\windows\system32\DRIVERS\sermouse.sys
22:03:45.0200 0x11b8 sermouse - ok
22:03:45.0246 0x11b8 [ 4AE380F39A0032EAB7DD953030B26D28, C8F5F2DD59574E966FDF3057867BB959A554BAB6FD5DC6F1427094A6BC2B2809 ] SessionEnv C:\windows\system32\sessenv.dll
22:03:45.0262 0x11b8 SessionEnv - ok
22:03:45.0293 0x11b8 [ 9F976E1EB233DF46FCE808D9DEA3EB9C, 6A5C53F27F8BCA85CE206EE7D196176F67EC6FFA5D4830373A20792C149B5E75 ] sffdisk C:\windows\system32\drivers\sffdisk.sys
22:03:45.0293 0x11b8 sffdisk - ok
22:03:45.0309 0x11b8 [ 932A68EE27833CFD57C1639D375F2731, 11D6B98FBEEE2B9C7B06EF7091857BBD3B349077997D6261D66280668FD1B5C3 ] sffp_mmc C:\windows\system32\drivers\sffp_mmc.sys
22:03:45.0324 0x11b8 sffp_mmc - ok
22:03:45.0356 0x11b8 [ 6D4CCAEDC018F1CF52866BBBAA235982, AAC41F5C97B3FE5A3DC0838457EB8CC9BB71FCA16D3EDBB67D603F0A9D46C131 ] sffp_sd C:\windows\system32\drivers\sffp_sd.sys
22:03:45.0356 0x11b8 sffp_sd - ok
22:03:45.0356 0x11b8 [ DB96666CC8312EBC45032F30B007A547, C3AE60FC65A36E96E0D2CC6E184481D70F91A19DC3E2E17E2873DD670A592DD7 ] sfloppy C:\windows\system32\DRIVERS\sfloppy.sys
22:03:45.0356 0x11b8 sfloppy - ok
22:03:45.0418 0x11b8 [ D1A079A0DE2EA524513B6930C24527A2, E2BC16DBCF38841EECD49C6FA1A9AC89C17F332F12606CA826F058E995E1B83D ] SharedAccess C:\windows\System32\ipnathlp.dll
22:03:45.0496 0x11b8 SharedAccess - ok
22:03:45.0543 0x11b8 [ 414DA952A35BF5D50192E28263B40577, 9C9BAFB9880DA6CC728506A142BE124E186219610DCC3460657A3CA93C865DF1 ] ShellHWDetection C:\windows\System32\shsvcs.dll
22:03:45.0574 0x11b8 ShellHWDetection - ok
22:03:45.0590 0x11b8 [ 2565CAC0DC9FE0371BDCE60832582B2E, 1A775214E86B83C2F1799F12D71077D81C89AD32734A248BA88787B7F104B79D ] sisagp C:\windows\system32\drivers\sisagp.sys
22:03:45.0605 0x11b8 sisagp - ok
22:03:45.0668 0x11b8 [ A9F0486851BECB6DDA1D89D381E71055, 7E909538AB758C18AC2CCBFFEE17BA36FA6ED2E674AA70924AA87AC61375FF35 ] SiSRaid2 C:\windows\system32\DRIVERS\SiSRaid2.sys
22:03:45.0668 0x11b8 SiSRaid2 - ok
22:03:45.0699 0x11b8 [ 3727097B55738E2F554972C3BE5BC1AA, 75D52A596A298C33EC79A3B0B80F25492C08A182ABC679401502DA9597687566 ] SiSRaid4 C:\windows\system32\DRIVERS\sisraid4.sys
22:03:45.0714 0x11b8 SiSRaid4 - ok
22:03:45.0777 0x11b8 [ 3E21C083B8A01CB70BA1F09303010FCE, 803F8F91299C387110F34A49340E7136AAE91B418E2977A36285EA8F432FF197 ] Smb C:\windows\system32\DRIVERS\smb.sys
22:03:45.0777 0x11b8 Smb - ok
22:03:45.0855 0x11b8 [ 6A984831644ECA1A33FFEAE4126F4F37, 753E23D2B33D47C52C05D892B052CFD96D93B97FB6E9FCB58EF1E4C4A125BF78 ] SNMPTRAP C:\windows\System32\snmptrap.exe
22:03:45.0855 0x11b8 SNMPTRAP - ok
22:03:45.0886 0x11b8 [ 95CF1AE7527FB70F7816563CBC09D942, CE8BACB91A5A86CBCE82619C6C1873B4D7593B00CED3B522E41B8F7F6258CC65 ] spldr C:\windows\system32\drivers\spldr.sys
22:03:45.0886 0x11b8 spldr - ok
22:03:45.0933 0x11b8 [ 9AEA093B8F9C37CF45538382CABA2475, CC63239C412067AA72318ADB8BB80BCDF2CA60DA05D814D32753C92508BC16A8 ] Spooler C:\windows\System32\spoolsv.exe
22:03:45.0980 0x11b8 Spooler - ok
22:03:46.0182 0x11b8 [ CF87A1DE791347E75B98885214CED2B8, 7AF4E03D751C951A4E5FBA28200DABFE6B3BF055490163EEEEA84EBA4D0F368A ] sppsvc C:\windows\system32\sppsvc.exe
22:03:46.0323 0x11b8 sppsvc - ok
22:03:46.0463 0x11b8 [ B0180B20B065D89232A78A40FE56EAA6, 4D045B23AD58A8822BE9F20119744A8D47455469D54494745CEB099951DA60FF ] sppuinotify C:\windows\system32\sppuinotify.dll
22:03:46.0463 0x11b8 sppuinotify - ok
22:03:46.0572 0x11b8 [ CDDDEC541BC3C96F91ECB48759673505, B030FFA02832317AC5626BF1BF8A4A95A5992C9A6E81BC1C002D5F4D667C27FB ] sptd C:\windows\system32\Drivers\sptd.sys
22:03:46.0572 0x11b8 Suspicious file ( NoAccess ): C:\windows\system32\Drivers\sptd.sys. md5: CDDDEC541BC3C96F91ECB48759673505, sha256: B030FFA02832317AC5626BF1BF8A4A95A5992C9A6E81BC1C002D5F4D667C27FB
22:03:46.0572 0x11b8 sptd - detected LockedFile.Multi.Generic ( 1 )
22:03:49.0349 0x11b8 Detect skipped due to KSN trusted
22:03:49.0349 0x11b8 sptd - ok
22:03:49.0380 0x11b8 [ E4C2764065D66EA1D2D3EBC28FE99C46, 043AEF06A23069DD17675955C834690A5FD8F1948A05B3969F977E823C4E25F5 ] srv C:\windows\system32\DRIVERS\srv.sys
22:03:49.0396 0x11b8 srv - ok
22:03:49.0443 0x11b8 [ 03F0545BD8D4C77FA0AE1CEEDFCC71AB, 4DF31206DF8F33C2975E23C7257ED930C4EDA8BC4E246D8FDA130BB583083ED0 ] srv2 C:\windows\system32\DRIVERS\srv2.sys
22:03:49.0458 0x11b8 srv2 - ok
22:03:49.0490 0x11b8 [ BE6BD660CAA6F291AE06A718A4FA8ABC, CD38939CFBA80B882D38099194FC1EBAE15A9D27A4D941DD03C55EC745E52E59 ] srvnet C:\windows\system32\DRIVERS\srvnet.sys
22:03:49.0490 0x11b8 srvnet - ok
22:03:49.0536 0x11b8 [ D887C9FD02AC9FA880F6E5027A43E118, F38BAD90EC791368C37C21090302708D2DFB83ECE9096609AD9AA667B2E5592E ] SSDPSRV C:\windows\System32\ssdpsrv.dll
22:03:49.0568 0x11b8 SSDPSRV - ok
22:03:49.0599 0x11b8 [ D318F23BE45D5E3A107469EB64815B50, D74355E6FF215AA8CE53BC9DF16AF2740F2FC2FD754939478A3608BDA8C6DDA0 ] SstpSvc C:\windows\system32\sstpsvc.dll
22:03:49.0599 0x11b8 SstpSvc - ok
22:03:49.0677 0x11b8 [ 359FEE084F1173FFFFD7F9CCBD43D47F, 197EE7267D0565E426368868233C35F6FD29A0432D75630F8365336E061318D7 ] ssudmdm C:\windows\system32\DRIVERS\ssudmdm.sys
22:03:49.0677 0x11b8 ssudmdm - ok
22:03:49.0724 0x11b8 [ 84F8C797F357D1A53794A12B7CD36AC4, 8D4121AD2B8311A08BD48C48F8A3C37573111611A6D375EF68F8F225B2F2179D ] ssudobex C:\windows\system32\DRIVERS\ssudobex.sys
22:03:49.0724 0x11b8 ssudobex - ok
22:03:50.0067 0x11b8 [ 9C1EA4217DC30E085F8418474DCC3616, E0EE15A79B50894D407B6EFEF3E14A4552AF0C95F2F61F51F2DBA790D1F8B66C ] STacSV C:\windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_9b219d80a8843bf8\STacSV.exe
22:03:50.0082 0x11b8 STacSV - ok
22:03:50.0114 0x11b8 [ DB32D325C192B801DF274BFD12A7E72B, F089DBA719E22BC269720A6B840B873A4AF5639745DB0C3DBC8BD2F2839A1ABA ] stexstor C:\windows\system32\DRIVERS\stexstor.sys
22:03:50.0114 0x11b8 stexstor - ok
22:03:50.0192 0x11b8 [ C502802475B7A2CB843F9F815D7DDC36, 198E33D19D8B90646D134644DAF0567597CC83C3172E9C16097C98EE3588DA52 ] STHDA C:\windows\system32\DRIVERS\stwrt.sys
22:03:50.0223 0x11b8 STHDA - ok
22:03:50.0316 0x11b8 [ E1FB3706030FB4578A0D72C2FC3689E4, A62EC9AA4514CAF2A10C0A3AEF7A36F593A7E7DA370A3F130C24E1B612E19427 ] StiSvc C:\windows\System32\wiaservc.dll
22:03:50.0332 0x11b8 StiSvc - ok
22:03:50.0394 0x11b8 [ AD989072596AB313D7FA13BCF69573F7, 99EC6744DF8571F52C931C743A48E0275EF155AA825CA083A84BE369CBF00622 ] stllssvr c:\Program Files\Common Files\SureThing Shared\stllssvr.exe
22:03:50.0394 0x11b8 stllssvr - ok
22:03:50.0457 0x11b8 [ E58C78A848ADD9610A4DB6D214AF5224, 1575A90EB22A4FB066459BDA00C6CAC10198C3C8C74493721EC6D34B51F50426 ] swenum C:\windows\system32\drivers\swenum.sys
22:03:50.0457 0x11b8 swenum - ok
22:03:50.0488 0x11b8 [ A28BD92DF340E57B024BA433165D34D7, 889CC7FF143C3549982128473FF927CD80CF36485A347EF399C1271C8CE12CE4 ] swprv C:\windows\System32\swprv.dll
22:03:50.0550 0x11b8 swprv - ok
22:03:50.0660 0x11b8 [ 0E8676FB3BB95AA40FDF7A4A31018C8B, C14931CB26830E2A720C4DA5C16E2CBF1BDDDBD253257491F0D84EF5C94437E4 ] SynTP C:\windows\system32\DRIVERS\SynTP.sys
22:03:50.0738 0x11b8 SynTP - ok
22:03:50.0862 0x11b8 [ 36650D618CA34C9D357DFD3D89B2C56F, 7C3774E53DCF32CB3A4B3504E32D2A651E18467FA0A6AC4C7993C696741B704B ] SysMain C:\windows\system32\sysmain.dll
22:03:50.0940 0x11b8 SysMain - ok
22:03:50.0987 0x11b8 [ 763FECDC3D30C815FE72DD57936C6CD1, 1A62C7E63E426D56894F4121C75D9C60FC9A14469ADBD0D6F0B94B8DE48CDA3E ] TabletInputService C:\windows\System32\TabSvc.dll
22:03:51.0003 0x11b8 TabletInputService - ok
22:03:51.0050 0x11b8 [ 613BF4820361543956909043A265C6AC, FCFF02E466D2501630B452627FB218C01E5245A0921EE3D2117E7FD63AC7E98E ] TapiSrv C:\windows\System32\tapisrv.dll
22:03:51.0065 0x11b8 TapiSrv - ok
22:03:51.0112 0x11b8 [ B799D9FDB26111737F58288D8DC172D9, 409A60819A4305699E2E492A6190637FAAEBD19E745A5DB2A5D6977106C86591 ] TBS C:\windows\System32\tbssvc.dll
22:03:51.0128 0x11b8 TBS - ok
22:03:51.0221 0x11b8 [ D32FDAC73FCD76B85389C39BC1087F2A, E216F446B5F963298CBD2FF7AEF1035F6C53181517E9FABDCDAA07E1841786BF ] Tcpip C:\windows\system32\drivers\tcpip.sys
22:03:51.0315 0x11b8 Tcpip - ok
22:03:51.0408 0x11b8 [ D32FDAC73FCD76B85389C39BC1087F2A, E216F446B5F963298CBD2FF7AEF1035F6C53181517E9FABDCDAA07E1841786BF ] TCPIP6 C:\windows\system32\DRIVERS\tcpip.sys
22:03:51.0440 0x11b8 TCPIP6 - ok
22:03:51.0502 0x11b8 [ 3EEBD3BD93DA46A26E89893C7AB2FF3B, 2C7204DCD2BCBC6A250FF0F6477616F327AF41FDB7CABE69E5C357361009FB4E ] tcpipreg C:\windows\system32\drivers\tcpipreg.sys
22:03:51.0502 0x11b8 tcpipreg - ok
22:03:51.0564 0x11b8 [ 1CB91B2BD8F6DD367DFC2EF26FD751B2, 879E2827354BB21573AC6A7CCEB746D44214540687E6882FFCB4089546FBD954 ] TDPIPE C:\windows\system32\drivers\tdpipe.sys
22:03:51.0564 0x11b8 TDPIPE - ok
22:03:51.0611 0x11b8 [ 2C2C5AFE7EE4F620D69C23C0617651A8, E828D974C3F9D7004A030C3AD448096C736FDB4C4C1707D043E567D08C845103 ] TDTCP C:\windows\system32\drivers\tdtcp.sys
22:03:51.0611 0x11b8 TDTCP - ok
22:03:51.0674 0x11b8 [ B459575348C20E8121D6039DA063C704, 1B4328A9EA39FF5A57F258E02254D04B73455F1DF7C997C13702A8B2F12D0347 ] tdx C:\windows\system32\DRIVERS\tdx.sys
22:03:51.0674 0x11b8 tdx - ok
22:03:51.0720 0x11b8 [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20, 0D81B427720637882077C5024D738191F858FC734ED040697872D906351EF663 ] TermDD C:\windows\system32\drivers\termdd.sys
22:03:51.0720 0x11b8 TermDD - ok
22:03:51.0783 0x11b8 [ 382C804C92811BE57829D8E550A900E2, 5F52C2E7902024CF1C9CC0069F411C3F19CCA3DB209F437FA0F3932D4898EB50 ] TermService C:\windows\System32\termsrv.dll
22:03:51.0830 0x11b8 TermService - ok
22:03:51.0892 0x11b8 [ 42FB6AFD6B79D9FE07381609172E7CA4, B57C85091209A2FAD19ED490B8FA7FC98F12911F9C9CACE9AF1E540780CE6700 ] Themes C:\windows\system32\themeservice.dll
22:03:51.0908 0x11b8 Themes - ok
22:03:51.0939 0x11b8 [ 146B6F43A673379A3C670E86D89BE5EA, C4412DCF80DE6B55466F399413271364F14BC0819C224AA161EDDC31A9775440 ] THREADORDER C:\windows\system32\mmcss.dll
22:03:51.0939 0x11b8 THREADORDER - ok
22:03:52.0017 0x11b8 [ 5AD05191DC8B444A7BA4D79B76C42A30, 6166E939A5A240388EBA5AF7FF335DC413F2BBCF74C2E1D310F4BE2A5454A610 ] TPM C:\windows\system32\drivers\tpm.sys
22:03:52.0017 0x11b8 TPM - ok
22:03:52.0048 0x11b8 [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A, 532A3A812578B2DFD83001DE66FC73689D79EC729409EB572E07E6D65B281712 ] TrkWks C:\windows\System32\trkwks.dll
22:03:52.0064 0x11b8 TrkWks - ok
22:03:52.0142 0x11b8 [ 2C49B175AEE1D4364B91B531417FE583, 6C7995E18F84E465C376D1D5F153C15ACB66CDEA86EE5BF186677F572E7E129B ] TrustedInstaller C:\windows\servicing\TrustedInstaller.exe
22:03:52.0157 0x11b8 TrustedInstaller - ok
22:03:52.0188 0x11b8 [ 254BB140EEE3C59D6114C1A86B636877, EE09D62E90407A40278F2136F640DAB16A4E2BF57D4FB6E05F92CA9CC9CF57C0 ] tssecsrv C:\windows\system32\DRIVERS\tssecsrv.sys
22:03:52.0188 0x11b8 tssecsrv - ok
22:03:52.0235 0x11b8 [ 9CE253214ACAA5A7D323327D2055EFAA, 15E7DB578EDF36DD2FD5BA960C3941B2353037323B6B96702CDCDC07588EA724 ] TsUsbFlt C:\windows\system32\drivers\tsusbflt.sys
22:03:52.0235 0x11b8 TsUsbFlt - ok
22:03:52.0329 0x11b8 [ B2FA25D9B17A68BB93D58B0556E8C90D, 0146931B733CAB1CD87F94C35F97E110D6ED6C55EAFF03345400A29AEDE99BDE ] tunnel C:\windows\system32\DRIVERS\tunnel.sys
22:03:52.0329 0x11b8 tunnel - ok
22:03:52.0376 0x11b8 [ 750FBCB269F4D7DD2E420C56B795DB6D, E1A95C59148FE463539C34336FD0E74B31A33B8AB2B8E34AA10349C3347471D7 ] uagp35 C:\windows\system32\DRIVERS\uagp35.sys
22:03:52.0376 0x11b8 uagp35 - ok
22:03:52.0422 0x11b8 [ EE43346C7E4B5E63E54F927BABBB32FF, BAD6FC3BEE45E644D5A6A0A31428F5B2AEC72A0AA0C74EF8177B1FE23EEF3AA9 ] udfs C:\windows\system32\DRIVERS\udfs.sys
22:03:52.0438 0x11b8 udfs - ok
22:03:52.0485 0x11b8 [ 8344FD4FCE927880AA1AA7681D4927E5, 1B54EFA60A221E2B9FFE59BB41C7E7D8B5AC6826F1C5577456D81371D464255A ] UI0Detect C:\windows\system32\UI0Detect.exe
22:03:52.0500 0x11b8 UI0Detect - ok
22:03:52.0532 0x11b8 [ 44E8048ACE47BEFBFDC2E9BE4CBC8880, 5D96D90FDF68AE470CC92CA9DF9DA2C05A53EF455A5A109DBBF7C96F3238257C ] uliagpkx C:\windows\system32\drivers\uliagpkx.sys
22:03:52.0547 0x11b8 uliagpkx - ok
22:03:52.0578 0x11b8 [ D295BED4B898F0FD999FCFA9B32B071B, D4130DB4AE76EE6DC0B8E7A4FEF5CB8B26EBD822C21021F6FA78FD29C1E211C2 ] umbus C:\windows\system32\drivers\umbus.sys
22:03:52.0578 0x11b8 umbus - ok
22:03:52.0610 0x11b8 [ 7550AD0C6998BA1CB4843E920EE0FEAC, 24C001E422C3B3B920CDCF6003A3179CE464DE4284775403DD5122EF9780460D ] UmPass C:\windows\system32\DRIVERS\umpass.sys
22:03:52.0610 0x11b8 UmPass - ok
22:03:52.0641 0x11b8 [ 833FBB672460EFCE8011D262175FAD33, C0C3067A305993CBF056C229771CB0593DD60C9C7AC5130FF1CA610BCA812AB5 ] upnphost C:\windows\System32\upnphost.dll
22:03:52.0656 0x11b8 upnphost - ok
22:03:52.0703 0x11b8 [ BD9C55D7023C5DE374507ACC7A14E2AC, 1DBAFF733DE5C1A6A2374B15BD94512A22D9C0F4DF91F997801340828333AF3C ] usbccgp C:\windows\system32\DRIVERS\usbccgp.sys
22:03:52.0703 0x11b8 usbccgp - ok
22:03:52.0750 0x11b8 [ 04EC7CEC62EC3B6D9354EEE93327FC82, 6CB41D8644618A5F701F6CA91FB65BB94AA83EA48992133B5262DC539B334B2E ] usbcir C:\windows\system32\drivers\usbcir.sys
22:03:52.0750 0x11b8 usbcir - ok
22:03:52.0781 0x11b8 [ F92DE757E4B7CE9C07C5E65423F3AE3B, B3FDEE4A8F1C7EC12405D99ACABC3E633FA4ED08D2A2AA871526ED7927A35A91 ] usbehci C:\windows\system32\DRIVERS\usbehci.sys
22:03:52.0797 0x11b8 usbehci - ok
22:03:52.0844 0x11b8 [ 8DC94AEC6A7E644A06135AE7506DC2E9, 3ACB621D57BC8691DBBCDEF27563AA6390370362F21AFA6E7BA35BC429E14590 ] usbhub C:\windows\system32\DRIVERS\usbhub.sys
22:03:52.0859 0x11b8 usbhub - ok
22:03:52.0906 0x11b8 [ E185D44FAC515A18D9DEDDC23C2CDF44, EF69D0253CC8F1D29929FD5E74F18737ECF5D238874B6E1505E2EAEE66D9D987 ] usbohci C:\windows\system32\drivers\usbohci.sys
22:03:52.0906 0x11b8 usbohci - ok
22:03:52.0968 0x11b8 [ 797D862FE0875E75C7CC4C1AD7B30252, 1BBE745E4C85F8911076F6032ACD7A35FAC048D3CB1500C64E08D8B2C70A1069 ] usbprint C:\windows\system32\DRIVERS\usbprint.sys
22:03:52.0968 0x11b8 usbprint - ok
22:03:53.0000 0x11b8 [ 576096CCBC07E7C4EA4F5E6686D6888F, 8C643F43BD0017979548389C4DB36A1EE872CCF19C86FAE3752A4989173E28ED ] usbscan C:\windows\system32\DRIVERS\usbscan.sys
22:03:53.0000 0x11b8 usbscan - ok
22:03:53.0031 0x11b8 [ F991AB9CC6B908DB552166768176896A, AD8E7A16B23B244B7F834622D4E38B5844193C6E31EF96F61E0E2EA16C945026 ] USBSTOR C:\windows\system32\DRIVERS\USBSTOR.SYS
22:03:53.0031 0x11b8 USBSTOR - ok
22:03:53.0078 0x11b8 [ 68DF884CF41CDADA664BEB01DAF67E3D, 142781FE2FF93B269D8FA11D4C3F60967552A867E94533D94EF1C2D777A67872 ] usbuhci C:\windows\system32\DRIVERS\usbuhci.sys
22:03:53.0078 0x11b8 usbuhci - ok
22:03:53.0124 0x11b8 [ 45F4E7BF43DB40A6C6B4D92C76CBC3F2, F9B72DE82078FDB5551D48988190F46EECA9B99655C591B7865FEA1AFB31F637 ] usbvideo C:\windows\System32\Drivers\usbvideo.sys
22:03:53.0124 0x11b8 usbvideo - ok
22:03:53.0171 0x11b8 [ 081E6E1C91AEC36758902A9F727CD23C, 9FDAA17A3B99067E035E5D76305427F15FFDBC5D304B2BB78AFC6463EDDE1A75 ] UxSms C:\windows\System32\uxsms.dll
22:03:53.0187 0x11b8 UxSms - ok
22:03:53.0218 0x11b8 [ 803B370865D907EA21DC0C2B6A8936B5, E98F0BA1D94786E061A3EA2CC76041FF6BE0ADF47C6205D5572C03BF0E29CA78 ] VaultSvc C:\windows\system32\lsass.exe
22:03:53.0218 0x11b8 VaultSvc - ok
22:03:53.0265 0x11b8 [ A059C4C3EDB09E07D21A8E5C0AABD3CB, BDD3729B49DF2E2FC72FFEF9D10235B481A671DE5A721B6B9A80873B7A343F07 ] vdrvroot C:\windows\system32\drivers\vdrvroot.sys
22:03:53.0265 0x11b8 vdrvroot - ok
22:03:53.0327 0x11b8 [ C3CD30495687C2A2F66A65CA6FD89BE9, 582E4706C1D6A151020D14B26C7BF166F4E42BDD6E410F30EC452469270C5E9B ] vds C:\windows\System32\vds.exe
22:03:53.0405 0x11b8 vds - ok
22:03:53.0421 0x11b8 [ 17C408214EA61696CEC9C66E388B14F3, 829C0416672E2B2DFABCFE641E7F281F41E8DBB3C0EF11C7784CB9BB94F87E97 ] vga C:\windows\system32\DRIVERS\vgapnp.sys
22:03:53.0436 0x11b8 vga - ok
22:03:53.0468 0x11b8 [ 8E38096AD5C8570A6F1570A61E251561, 4DBA3C1397A2203548F45F006E66D99F837903F601ABBCE2304754F783CA8A39 ] VgaSave C:\windows\System32\drivers\vga.sys
22:03:53.0468 0x11b8 VgaSave - ok
22:03:53.0499 0x11b8 [ 5461686CCA2FDA57B024547733AB42E3, 2721D0659AA890172FCAD4EC4D926B58ACD0EE4887DA51545DC7237420D5BF84 ] vhdmp C:\windows\system32\drivers\vhdmp.sys
22:03:53.0514 0x11b8 vhdmp - ok
22:03:53.0546 0x11b8 [ C829317A37B4BEA8F39735D4B076E923, 55D1796AE750071E1E05BD7702B6C355CCFFE27B4C00E93E7044C3184732B497 ] viaagp C:\windows\system32\drivers\viaagp.sys
22:03:53.0546 0x11b8 viaagp - ok
22:03:53.0577 0x11b8 [ E02F079A6AA107F06B16549C6E5C7B74, B530DCE3EE4F285B3D5F69F7148D17E016D54F04E6F93706B829A34567748788 ] ViaC7 C:\windows\system32\DRIVERS\viac7.sys
22:03:53.0577 0x11b8 ViaC7 - ok
22:03:53.0592 0x11b8 [ E43574F6A56A0EE11809B48C09E4FD3C, 3687BF638E21C00E62ABFED70D728B91ADA08F7164CA898E654F31DA196589E9 ] viaide C:\windows\system32\drivers\viaide.sys
22:03:53.0592 0x11b8 viaide - ok
22:03:53.0608 0x11b8 [ 4C63E00F2F4B5F86AB48A58CD990F212, 9796BD4B9CFEEEAF57C5E332A732EFC2770B21F9B35301A5D202F5FC52C1E035 ] volmgr C:\windows\system32\drivers\volmgr.sys
22:03:53.0608 0x11b8 volmgr - ok
22:03:53.0639 0x11b8 [ B5BB72067DDDDBBFB04B2F89FF8C3C87, 65B9AD55F43940A5FDD88B6EC5034A7E375DF8E6F5F1AE6519A4BD6B7E992EBC ] volmgrx C:\windows\system32\drivers\volmgrx.sys
22:03:53.0655 0x11b8 volmgrx - ok
22:03:53.0686 0x11b8 [ F497F67932C6FA693D7DE2780631CFE7, DAE544ED99D2CF570DA31343BD87D2F856D0D13529656D38E1BF854C77F017F6 ] volsnap C:\windows\system32\drivers\volsnap.sys
22:03:53.0717 0x11b8 volsnap - ok
22:03:53.0780 0x11b8 [ 9DFA0CC2F8855A04816729651175B631, 37FD9E43A2A3F125E94A315FB4CD8A1B5499A5FD74806EB2D1E5DA88C070D3A3 ] vsmraid C:\windows\system32\DRIVERS\vsmraid.sys
22:03:53.0780 0x11b8 vsmraid - ok
22:03:53.0842 0x11b8 [ 209A3B1901B83AEB8527ED211CCE9E4C, 1A431F6409F8E0531F600F8F988ECECECB902DA26BBAAF1DE74A5CAC29A7CB44 ] VSS C:\windows\system32\vssvc.exe
22:03:53.0904 0x11b8 VSS - ok
22:03:53.0951 0x11b8 [ 90567B1E658001E79D7C8BBD3DDE5AA6, EFC23BEEA7F54A2DC56CB523DAD1AF0358D904C5278BF08873910E2DB3F13557 ] vwifibus C:\windows\system32\DRIVERS\vwifibus.sys
22:03:53.0951 0x11b8 vwifibus - ok
22:03:53.0982 0x11b8 [ 7090D3436EEB4E7DA3373090A23448F7, 3A130B28F2BFA7DCEC8596C4CE4E187B019F5ECF1AAC8DD1BBDE9CBD2428FEC2 ] vwififlt C:\windows\system32\DRIVERS\vwififlt.sys
22:03:53.0982 0x11b8 vwififlt - ok
22:03:54.0014 0x11b8 [ A3F04CBEA6C2A10E6CB01F8B47611882, 32AFE18B07FECA30BC95831A5DC94C784E543784DF16165334A777DC84E91EF3 ] vwifimp C:\windows\system32\DRIVERS\vwifimp.sys
22:03:54.0014 0x11b8 vwifimp - ok
22:03:54.0045 0x11b8 [ 55187FD710E27D5095D10A472C8BAF1C, AE298E2D3BA366BCBDC092C717214C181E8843FA564A6DFB07FC3238A5A68DC3 ] W32Time C:\windows\system32\w32time.dll
22:03:54.0092 0x11b8 W32Time - ok
22:03:54.0123 0x11b8 [ DE3721E89C653AA281428C8A69745D90, 501C78056ED4295625D8A5412025FD2F0CA24077044D3A5800BA79DF3D946516 ] WacomPen C:\windows\system32\DRIVERS\wacompen.sys
22:03:54.0123 0x11b8 WacomPen - ok
22:03:54.0185 0x11b8 [ 3C3C78515F5AB448B022BDF5B8FFDD2E, 35284174A42039C3C1FF8A3C8BC187A5E067C7782FC62D19749C2CB28C4E36C7 ] WANARP C:\windows\system32\DRIVERS\wanarp.sys
22:03:54.0185 0x11b8 WANARP - ok
22:03:54.0185 0x11b8 [ 3C3C78515F5AB448B022BDF5B8FFDD2E, 35284174A42039C3C1FF8A3C8BC187A5E067C7782FC62D19749C2CB28C4E36C7 ] Wanarpv6 C:\windows\system32\DRIVERS\wanarp.sys
22:03:54.0185 0x11b8 Wanarpv6 - ok
22:03:54.0294 0x11b8 [ 353A04C273EC58475D8633E75CCD5604, FFAE53B6B53AEFC9E8A10BF27480E072D74430276BEB532FE1D473E9616D8CE0 ] WatAdminSvc C:\windows\system32\Wat\WatAdminSvc.exe
22:03:54.0357 0x11b8 WatAdminSvc - ok
22:03:54.0435 0x11b8 [ 691E3285E53DCA558E1A84667F13E15A, 12EDB66EF8FC100402BEA221F354D3BD5542F6DDF715B6E7D873D6BAE7E3D329 ] wbengine C:\windows\system32\wbengine.exe
22:03:54.0528 0x11b8 wbengine - ok
22:03:54.0544 0x11b8 [ 9614B5D29DC76AC3C29F6D2D3AA70E67, A2FFB92F0030B4CD771E862DA575ECCF2F3A5B4B85858C1241A0C59262C0EC88 ] WbioSrvc C:\windows\System32\wbiosrvc.dll
22:03:54.0575 0x11b8 WbioSrvc - ok
22:03:54.0606 0x11b8 [ 34EEE0DFAADB4F691D6D5308A51315DC, A040A03E25A0C78B9E26F86C2DF95BCAF8E7EC90183CEB295615D3265350EBEE ] wcncsvc C:\windows\System32\wcncsvc.dll
22:03:54.0684 0x11b8 wcncsvc - ok
22:03:54.0716 0x11b8 [ 5D930B6357A6D2AF4D7653BDABBF352F, 677FF2ED14EE0B0CAA710DA81556CC16D5971DAB10E7C7432D167A87CA6F0EAA ] WcsPlugInService C:\windows\System32\WcsPlugInService.dll
22:03:54.0716 0x11b8 WcsPlugInService - ok
22:03:54.0747 0x11b8 [ 1112A9BADACB47B7C0BB0392E3158DFF, 1AE2AFA125973571F91E6945FE8A735F63D76EBB250A0075D98C580167FD9ED4 ] Wd C:\windows\system32\DRIVERS\wd.sys
22:03:54.0747 0x11b8 Wd - ok
22:03:54.0794 0x11b8 [ A840213F1ACDCC175B4D1D5AAEAC0D7A, B20F7CAEEA790290072BC170EBEEADB4C19E1C40DB0B3FE0D4A640D0D82300D6 ] Wdf01000 C:\windows\system32\drivers\Wdf01000.sys
22:03:54.0840 0x11b8 Wdf01000 - ok
22:03:54.0856 0x11b8 [ 46EF9DC96265FD0B423DB72E7C38C2A5, 43801A51FB0E45CFFC73DF6441B54A75FC2FEAF5E0424DFE7AB04FC26CF6CD16 ] WdiServiceHost C:\windows\system32\wdi.dll
22:03:54.0872 0x11b8 WdiServiceHost - ok
22:03:54.0872 0x11b8 [ 46EF9DC96265FD0B423DB72E7C38C2A5, 43801A51FB0E45CFFC73DF6441B54A75FC2FEAF5E0424DFE7AB04FC26CF6CD16 ] WdiSystemHost C:\windows\system32\wdi.dll
22:03:54.0887 0x11b8 WdiSystemHost - ok
22:03:54.0965 0x11b8 [ A9D880F97530D5B8FEE278923349929D, 6A293E2DB9B7C434EA8B4CD4861E11905D46BD60E014AE27B74DC8C4B2DDF834 ] WebClient C:\windows\System32\webclnt.dll
22:03:54.0981 0x11b8 WebClient - ok
22:03:55.0012 0x11b8 [ 760F0AFE937A77CFF27153206534F275, A53940BA28854486FF18F16B98A3314B36322B0B6EFB54D08B921315BEB0ADD5 ] Wecsvc C:\windows\system32\wecsvc.dll
22:03:55.0028 0x11b8 Wecsvc - ok
22:03:55.0043 0x11b8 [ AC804569BB2364FB6017370258A4091B, 1856F354146A5946F3E7D0DD09726FC8A3502B0F0776FEADDF10669C81CC28E2 ] wercplsupport C:\windows\System32\wercplsupport.dll
22:03:55.0059 0x11b8 wercplsupport - ok
22:03:55.0090 0x11b8 [ 08E420D873E4FD85241EE2421B02C4A4, E1E9436EB096FF7DE9A76DA6217035257EF9FC7565DDB9016DCA3859E7F1EF0F ] WerSvc C:\windows\System32\WerSvc.dll
22:03:55.0090 0x11b8 WerSvc - ok
22:03:55.0137 0x11b8 [ 8B9A943F3B53861F2BFAF6C186168F79, 88E2F79F32AFBA17CB8377A508B83A1EC2315E9F3A365F591C87FE4525AA6713 ] WfpLwf C:\windows\system32\DRIVERS\wfplwf.sys
22:03:55.0137 0x11b8 WfpLwf - ok
22:03:55.0152 0x11b8 [ 5CF95B35E59E2A38023836FFF31BE64C, CEA21302B3E855EE592810D4E0DE10E47A47A393064C435463CD54598735CD8D ] WIMMount C:\windows\system32\drivers\wimmount.sys
22:03:55.0152 0x11b8 WIMMount - ok
22:03:55.0246 0x11b8 [ 082CF481F659FAE0DE51AD060881EB47, BB67D2AF0BB9192D4CCF66C23D80CE5A1B38715556D94E2561DBF8F805FA30A5 ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll
22:03:55.0293 0x11b8 WinDefend - ok
22:03:55.0308 0x11b8 WinHttpAutoProxySvc - ok
22:03:55.0433 0x11b8 [ F62E510B6AD4C21EB9FE8668ED251826, FA3E5CAC3E67E49377320CFBE4646585E6B62168292768FEA81E4623F9166890 ] Winmgmt C:\windows\system32\wbem\WMIsvc.dll
22:03:55.0449 0x11b8 Winmgmt - ok
22:03:55.0527 0x11b8 [ 1B91CD34EA3A90AB6A4EF0550174F4CC, 5B6618615EBFBA594C945AD35F5C68DA8C6053892B6D12D626BB6120910D80DC ] WinRM C:\windows\system32\WsmSvc.dll
22:03:55.0605 0x11b8 WinRM - ok
22:03:55.0636 0x11b8 [ A67E5F9A400F3BD1BE3D80613B45F708, E170A8BD31A779403DC9C43ED6483DA8E186512D3EE700B87F6BA292E284E367 ] WinUSB C:\windows\system32\DRIVERS\WinUSB.sys
22:03:55.0636 0x11b8 WinUSB - ok
22:03:55.0698 0x11b8 [ 16935C98FF639D185086A3529B1F2067, E9C6B73A572A04FCE9B1B0E6815F941B10332D9A6D55B92927C2B1275F119091 ] Wlansvc C:\windows\System32\wlansvc.dll
22:03:55.0761 0x11b8 Wlansvc - ok
22:03:55.0823 0x11b8 [ 6067ACEF367E79914AF628FA1E9B5330, 491A705267B48C103E00B26BBD21FA8829DB03A88343CBC27264CEE5DE8C8DEF ] wlcrasvc C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
22:03:55.0823 0x11b8 wlcrasvc - ok
22:03:55.0917 0x11b8 [ 0A70F4022EC2E14C159EFC4F69AA2477, FF248136576F9803762C54DE5439D3411B52DCBC95B93176A5DAB857967D9AC4 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
22:03:56.0010 0x11b8 wlidsvc - ok
22:03:56.0042 0x11b8 [ 0217679B8FCA58714C3BF2726D2CA84E, 4494984B922DCF24D37BCD0E6831CEBD07D1CA49235D04E821D17ED3DF84ED2A ] WmiAcpi C:\windows\system32\drivers\wmiacpi.sys
22:03:56.0057 0x11b8 WmiAcpi - ok
22:03:56.0088 0x11b8 [ 6EB6B66517B048D87DC1856DDF1F4C3F, EBB534C4829477C70062ADBB5626236B02FE563A544C53FA255E79F3CA170FE8 ] wmiApSrv C:\windows\system32\wbem\WmiApSrv.exe
22:03:56.0088 0x11b8 wmiApSrv - ok
22:03:56.0213 0x11b8 [ 3B40D3A61AA8C21B88AE57C58AB3122E, 6C67DCB007C3CDF2EB0BBF5FD89C32CD7800C20F7166872F8C387BE262C5CD21 ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
22:03:56.0260 0x11b8 WMPNetworkSvc - ok
22:03:56.0291 0x11b8 [ A2F0EC770A92F2B3F9DE6D518E11409C, 6838F2148B11285E00DC449D51F8AD85AAE57694E89BA2C607B87AC1C650D845 ] WPCSvc C:\windows\System32\wpcsvc.dll
22:03:56.0307 0x11b8 WPCSvc - ok
22:03:56.0354 0x11b8 [ AA53356D60AF47EACC85BC617A4F3F66, 155CB8112AA382D841C1891750FF29EF4F1BF716CD9CDF0F2243209E2CCCAC98 ] WPDBusEnum C:\windows\system32\wpdbusenum.dll
22:03:56.0354 0x11b8 WPDBusEnum - ok
22:03:56.0385 0x11b8 [ 6DB3276587B853BF886B69528FDB048C, 9972FF6DF0DF6F86D1E9BCEF4C29064748B217DA196B0633C30D3D580144951C ] ws2ifsl C:\windows\system32\drivers\ws2ifsl.sys
22:03:56.0385 0x11b8 ws2ifsl - ok
22:03:56.0432 0x11b8 [ 6F5D49EFE0E7164E03AE773A3FE25340, 15B6AFF7455538189A96F8863CC995A271E02C6FBDAC15B037D44DDA65E61339 ] wscsvc C:\windows\System32\wscsvc.dll
22:03:56.0432 0x11b8 wscsvc - ok
22:03:56.0447 0x11b8 WSearch - ok
22:03:56.0541 0x11b8 [ FC3EC24FCE372C89423E015A2AC1A31E, 8D028182CF83667D3E4D148979972D208FA6D9B8540EE47A0A7831B770ECD257 ] wuauserv C:\windows\system32\wuaueng.dll
22:03:56.0650 0x11b8 wuauserv - ok
22:03:56.0681 0x11b8 [ 06E6F32C8D0A3F66D956F57B43A2E070, 9A6BD96A28294B0372F16E13D652FD603308F64B74A56E41E0C68C5E8011F943 ] WudfPf C:\windows\system32\drivers\WudfPf.sys
22:03:56.0697 0x11b8 WudfPf - ok
22:03:56.0759 0x11b8 [ 867C301E8B790040AE9CF6486E8041DF, D867D6498C987944D99508B2FAD6D6B749FA1EDFE8124B0863D4A642352F0855 ] WUDFRd C:\windows\system32\DRIVERS\WUDFRd.sys
22:03:56.0759 0x11b8 WUDFRd - ok
22:03:56.0790 0x11b8 [ FE47B7BC8EA320C2D9B5E5BF6E303765, 34518DBD1E9EA6E5DA62273B18613761E1D9C6B4E074A93C6D639FBAF02222EA ] wudfsvc C:\windows\System32\WUDFSvc.dll
22:03:56.0806 0x11b8 wudfsvc - ok
22:03:56.0837 0x11b8 [ 7CC38741B8F68F1E0D5D79DA6123666A, F90D2DA1C9AFB506C381CD386E1430931B5F81813FEDFD720F87FBC54E7A00DA ] WwanSvc C:\windows\System32\wwansvc.dll
22:03:56.0868 0x11b8 WwanSvc - ok
22:03:56.0900 0x11b8 [ 46686FE8915BD8B2FEB3A876E367010C, 3983AE34B3505DC176AA98EA3B5BD76BC0FEBAB2AD39AC973807836C1A4D5163 ] ZTEusbmdm6k C:\windows\system32\DRIVERS\ZTEusbmdm6k.sys
22:03:56.0900 0x11b8 ZTEusbmdm6k - ok
22:03:56.0931 0x11b8 [ 46686FE8915BD8B2FEB3A876E367010C, 3983AE34B3505DC176AA98EA3B5BD76BC0FEBAB2AD39AC973807836C1A4D5163 ] ZTEusbnmea C:\windows\system32\DRIVERS\ZTEusbnmea.sys
22:03:56.0946 0x11b8 ZTEusbnmea - ok
22:03:56.0978 0x11b8 [ 46686FE8915BD8B2FEB3A876E367010C, 3983AE34B3505DC176AA98EA3B5BD76BC0FEBAB2AD39AC973807836C1A4D5163 ] ZTEusbser6k C:\windows\system32\DRIVERS\ZTEusbser6k.sys
22:03:56.0978 0x11b8 ZTEusbser6k - ok
22:03:57.0009 0x11b8 ================ Scan global ===============================
22:03:57.0056 0x11b8 [ DAB748AE0439955ED2FA22357533DDDB, 73EDD402C7479DDCE1998D0C7E99E1EC2974F64EFC33A851439CC85D09EDCDF9 ] C:\windows\system32\basesrv.dll
22:03:57.0102 0x11b8 [ 1F5F07091D50244F17DD8D5147A628CC, 2F2B84BD1C052F44662960953C0EC91F9233D4D8DD06512E3E3BE43CE216BCB6 ] C:\windows\system32\winsrv.dll
22:03:57.0134 0x11b8 [ 1F5F07091D50244F17DD8D5147A628CC, 2F2B84BD1C052F44662960953C0EC91F9233D4D8DD06512E3E3BE43CE216BCB6 ] C:\windows\system32\winsrv.dll
22:03:57.0165 0x11b8 [ 364455805E64882844EE9ACB72522830, 906561DBBB33F744844CF27E456226044C85DF0FCFD26DE1FD11E09E2CFA6F8F ] C:\windows\system32\sxssrv.dll
22:03:57.0196 0x11b8 [ 5F1B6A9C35D3D5CA72D6D6FDEF9747D6, D7BC4ED605B32274B45328FD9914FB0E7B90D869A38F0E6F94FB1BF4E9E2B407 ] C:\windows\system32\services.exe
22:03:57.0258 0x11b8 [ Global ] - ok
22:03:57.0258 0x11b8 ================ Scan MBR ==================================
22:03:57.0274 0x11b8 [ 5C616939100B85E558DA92B899A0FC36 ] \Device\Harddisk0\DR0
22:03:57.0664 0x11b8 \Device\Harddisk0\DR0 - ok
22:03:57.0664 0x11b8 ================ Scan VBR ==================================
22:03:57.0664 0x11b8 [ 66D7D45DA4961A54C43189C175127D53 ] \Device\Harddisk0\DR0\Partition1
22:03:57.0664 0x11b8 \Device\Harddisk0\DR0\Partition1 - ok
22:03:57.0664 0x11b8 [ C064C5927791ED0BF4A748F65EE800DD ] \Device\Harddisk0\DR0\Partition2
22:03:57.0711 0x11b8 \Device\Harddisk0\DR0\Partition2 - ok
22:03:57.0711 0x11b8 [ 294ED0AEE283BCACBEAD8075278BBD5E ] \Device\Harddisk0\DR0\Partition3
22:03:57.0711 0x11b8 \Device\Harddisk0\DR0\Partition3 - ok
22:03:57.0711 0x11b8 [ 30556522DA7CE247B31BFC05507091C5 ] \Device\Harddisk0\DR0\Partition4
22:03:57.0726 0x11b8 \Device\Harddisk0\DR0\Partition4 - ok
22:03:57.0726 0x11b8 ================ Scan generic autorun ======================
22:03:57.0773 0x11b8 [ 9195717C34DAC6C598EC9096A7D5B993, 3B5DEF1BA1DB762D4BF34E13222BE97D524B018182CB85FF037483D10FBCFFA6 ] C:\Program Files\Hewlett-Packard\HP HotKey Support\QLBController.exe
22:03:57.0789 0x11b8 QLBController - ok
22:03:57.0836 0x11b8 [ 75B2B53A5A75087D48ADE7C1CEBC3687, 1BA5B45E76EFA059D0CB3DC2670F63CCAD7557093087B3F01EF2409215C9068D ] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
22:03:57.0836 0x11b8 IAAnotif - ok
22:03:57.0882 0x11b8 [ C3840B7ABDE3F94F80FD918CBABBF83D, F0B2F39A8F3DBDF5901A0F5F2EB83BBD14DB4C8C872FB6DDABA5360DA7F2B1A3 ] C:\Program Files\PDF Complete\pdfsty.exe
22:03:57.0914 0x11b8 PDF Complete - ok
22:03:58.0070 0x11b8 [ 20CB286C4591EEA68778CA6626D70D47, 3F8FC588B23128754CCACC2C83BF3265FB81605AED3A613DA34261806CFAEA03 ] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
22:03:58.0132 0x11b8 SynTPEnh - ok
22:03:58.0179 0x11b8 [ D018F156D00D4C2DDCD0D11118E4AE81, 330ECE67B48F7943C6AC31C8E8ADCA971FCBABB585FB2AF1F8252A77A75FAA99 ] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
22:03:58.0194 0x11b8 WirelessAssistant - ok
22:03:58.0226 0x11b8 [ 16BE8913B2C1743A74E96D3BF136A88D, A7DB333352F170D3E6C7160FFDC7DDCA8C4BE9D1ED92041974BA544071D50B34 ] C:\windows\system32\igfxtray.exe
22:03:58.0241 0x11b8 IgfxTray - ok
22:03:58.0257 0x11b8 [ 5D26401C9E4788F8C4DC9E7B0765415E, DF7F199F303A019316EAF0957F2C4EA81177526E6381A0585CCB8E33A333C71B ] C:\windows\system32\hkcmd.exe
22:03:58.0272 0x11b8 HotKeysCmds - ok
22:03:58.0304 0x11b8 [ CC6891630C264442508C9A5B2F74A6EB, 77FB48952C84CB99CE89811FE65CD62EEE0F7833CC64CE13AE46E066FE04978E ] C:\windows\system32\igfxpers.exe
22:03:58.0304 0x11b8 Persistence - ok
22:03:58.0366 0x11b8 [ E58C19CA85F647B7D76B90265DB90C79, 8B6E9D233007208D6ACEDE5A31342CE37667300224F3E7198F7B9A6C9CB2BBC6 ] C:\Program Files\IDT\WDM\sttray.exe
22:03:58.0397 0x11b8 SysTrayApp - ok
22:03:58.0491 0x11b8 [ C2136296CD0BE37EB068EB6F7B57FF9A, CAA0F5D8949EDEFB6A7FC6E4543D1CA1605955F14F0ADBE180B7ACEAAD684DCE ] C:\Program Files\Nuance\PDF Professional 6\pdfpro6hook.exe
22:03:58.0538 0x11b8 PDFHook - ok
22:03:58.0569 0x11b8 [ 2D8F4EC37C9EE630DD801B9DD2DBDBC2, F81BC6CA3C6D615C0B12AC9AF4772A1FB4F4A58CBCDDE9D1E0644B923ECD1063 ] C:\Program Files\Nuance\PDF Professional 6\RegistryController.exe
22:03:58.0569 0x11b8 PDF6 Registry Controller - ok
22:03:58.0600 0x11b8 [ 757A595F75E7840A7132EC11E6E6188A, 95085E8B5432F76E0C50D79F74DECAD54662BB32FFDD575BC8CBAC2C79B1C069 ] C:\Program Files\Nuance\PDF Reader\Ereg\Ereg.exe
22:03:58.0616 0x11b8 Nuance PDF Reader-reminder - ok
22:03:58.0662 0x11b8 [ C98FF6C440E8967251F59C7919B505A1, 3486C9C855E52FD084FBA3276E296ED8647B445A52FC459B794367AAED48D817 ] C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
22:03:58.0678 0x11b8 Adobe Reader Speed Launcher - ok
22:03:58.0756 0x11b8 [ B8E421C0890356CD4A793D8A346D9096, 1FDA1E3C530DF98A258D95F6ED129D8AB11FBC90167E9455C0A85C24A6249F13 ] C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
22:03:58.0756 0x11b8 Suspicious file ( NoAccess ): C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe. md5: B8E421C0890356CD4A793D8A346D9096, sha256: 1FDA1E3C530DF98A258D95F6ED129D8AB11FBC90167E9455C0A85C24A6249F13
22:03:58.0756 0x11b8 Adobe ARM - detected LockedFile.Multi.Generic ( 1 )
22:04:01.0439 0x11b8 Detect skipped due to KSN trusted
22:04:01.0439 0x11b8 Adobe ARM - ok
22:04:01.0502 0x11b8 [ 207C637BD5C8E56EE5A83340DF5387A7, 98E4A326568022D5F6C0B66871D252C3F82F47DCC7C0F8D3D850540FC6312F96 ] C:\Program Files\Samsung\Kies\KiesTrayAgent.exe
22:04:01.0517 0x11b8 KiesTrayAgent - ok
22:04:01.0564 0x11b8 [ 5B6E8E09BE6401A7E022F52FDFCB2FF8, 471C556CF9405BBB380A8CEFE945C126B954B7C94F79CC72441B51F80141FC5E ] C:\Program Files\Common Files\Java\Java Update\jusched.exe
22:04:01.0580 0x11b8 SunJavaUpdateSched - ok
22:04:01.0798 0x11b8 [ 4BFA1849DC7AA3CB99C160D9EB96C67B, D2B411ED4478FA683F8A51F5AB42F3EC33741421C480F848E04E5DD2A8032525 ] C:\Program Files\AVAST Software\Avast\AvastUI.exe
22:04:01.0954 0x11b8 AvastUI.exe - ok
22:04:02.0048 0x11b8 [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files\Windows Sidebar\Sidebar.exe
22:04:02.0126 0x11b8 Sidebar - ok
22:04:02.0157 0x11b8 [ BBA1A5B86134F496B926DDAF247DB871, 636990AE49C55189B7EF69C419787440B57EC0BAD98A9C280E1028F741BB222E ] C:\Windows\System32\mctadmin.exe
22:04:02.0157 0x11b8 mctadmin - ok
22:04:02.0204 0x11b8 [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files\Windows Sidebar\Sidebar.exe
22:04:02.0235 0x11b8 Sidebar - ok
22:04:02.0235 0x11b8 [ BBA1A5B86134F496B926DDAF247DB871, 636990AE49C55189B7EF69C419787440B57EC0BAD98A9C280E1028F741BB222E ] C:\Windows\System32\mctadmin.exe
22:04:02.0250 0x11b8 mctadmin - ok
22:04:02.0328 0x11b8 [ 726F239323E028818AB79D988CA3B01B, 1FED61A7872797A08F9DE4D2178CF438C9ADD1EAAD66571EAE790B0BB8FCF3A0 ] C:\Program Files\Hewlett-Packard\HP Advisor\Dock\HPAdvisorDock.exe
22:04:02.0391 0x11b8 HPAdvisorDock - ok
22:04:02.0438 0x11b8 [ 6BF7676296D5359AFC135A5397000053, D31B9BCB856D6EFDEA27E4D4D341FF939BCBF0E8C97786B447C2074B3C68298E ] C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe
22:04:02.0438 0x11b8 ISUSPM - ok
22:04:02.0516 0x11b8 [ A07E8935CC8DCE6DB787DC99129CA17C, D432E0414E2B59B90A8826984F4649AF810E8385C7CCEDF646B99C027113301A ] C:\Program Files\DAEMON Tools Lite\DTLite.exe
22:04:02.0562 0x11b8 DAEMON Tools Lite - ok
22:04:02.0625 0x11b8 [ 4835856484D87434BD15EAED93C77EB2, 6723538FED51A9AE476A4E0F0A56E870BB10039CC52149AFFBDBBA01F0BDA5AB ] C:\Program Files\Samsung\Kies\Kies.exe
22:04:02.0672 0x11b8 KiesPreload - ok
22:04:02.0750 0x11b8 [ 60D255D3DE6D4BBA814418ED85C721A5, AE424DEDE248868A04E789DD052586572623E0410102829E5BD8AFA3DBF19D2A ] C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
22:04:02.0781 0x11b8 KiesPDLR - ok
22:04:02.0812 0x11b8 [ 9CD0A8C7D94234A9F5CE10C44D393D4C, D82C147AC21795EC14337B4E075BE1D450CE5E34DE751BC09F5FDC0057BAD65E ] C:\Program Files\Samsung\Kies\KiesAirMessage.exe
22:04:02.0843 0x11b8 KiesAirMessage - ok
22:04:02.0843 0x11b8 Waiting for KSN requests completion. In queue: 130
22:04:03.0857 0x11b8 Waiting for KSN requests completion. In queue: 130
22:04:04.0871 0x11b8 Waiting for KSN requests completion. In queue: 130
22:04:05.0932 0x11b8 AV detected via SS2: avast! Antivirus, C:\Program Files\AVAST Software\Avast\VisthAux.exe ( 9.0.2016.330 ), 0x41000 ( enabled : updated )
22:04:05.0932 0x11b8 Win FW state via NFP2: enabled
22:04:08.0678 0x11b8 ============================================================
22:04:08.0678 0x11b8 Scan finished
22:04:08.0678 0x11b8 ============================================================
22:04:08.0678 0x0f90 Detected object count: 0
22:04:08.0693 0x0f90 Actual detected object count: 0
22:04:25.0261 0x1738 Deinitialize success
22:03:37.0290 0x11b8 nsiproxy - ok
22:03:37.0493 0x11b8 [ 5E43D2B0EE64123D4880DFA6626DEFDE, 164413A22DE58B19EA2B4120034B46D6BE1F424B80C3421E10BE5C81153D049F ] Ntfs C:\windows\system32\drivers\Ntfs.sys
22:03:37.0556 0x11b8 Ntfs - ok
22:03:37.0634 0x11b8 [ F9756A98D69098DCA8945D62858A812C, 572ADBFCFDE2030B34A013AADC14DBC144EB3F34D06991E2464A3EA9605BC045 ] Null C:\windows\system32\drivers\Null.sys
22:03:37.0634 0x11b8 Null - ok
22:03:37.0727 0x11b8 [ B3E25EE28883877076E0E1FF877D02E0, 402B6FED6FBBF645190396DC141141EF52DD059DABD01F8AC9CF01D23664070C ] nvraid C:\windows\system32\drivers\nvraid.sys
22:03:37.0727 0x11b8 nvraid - ok
22:03:37.0758 0x11b8 [ 4380E59A170D88C4F1022EFF6719A8A4, 93EDB3F4CDBF53C9C1970DD29AB146E390695C568180847BA8903F5FBEABCFF2 ] nvstor C:\windows\system32\drivers\nvstor.sys
22:03:37.0758 0x11b8 nvstor - ok
22:03:37.0821 0x11b8 [ 5A0983915F02BAE73267CC2A041F717D, D83461D74597BF2BE042FEFCC27FCD18BF63CB8135B0666D731D50951C3468A8 ] nv_agp C:\windows\system32\drivers\nv_agp.sys
22:03:37.0821 0x11b8 nv_agp - ok
22:03:38.0008 0x11b8 [ 785F487A64950F3CB8E9F16253BA3B7B, 02445344BD214370A6D48B1CA04921D8EFCB13E676B5648266DD0E076C0822B6 ] odserv C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
22:03:38.0070 0x11b8 odserv - ok
22:03:38.0148 0x11b8 [ 08A70A1F2CDDE9BB49B885CB817A66EB, 0BB98123B544124B144F3E95D77E01E973D060B8B2302503FF24ABBBE803EB63 ] ohci1394 C:\windows\system32\drivers\ohci1394.sys
22:03:38.0164 0x11b8 ohci1394 - ok
22:03:38.0211 0x11b8 [ 5A432A042DAE460ABE7199B758E8606C, 6E5D1F477D290905BE27CEBF9572BAC6B05FFEF2FAD901D3C8E11F665F8B9A71 ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
22:03:38.0211 0x11b8 ose - ok
22:03:38.0336 0x11b8 [ 82A8521DDC60710C3D3D3E7325209BEC, C4E34571EDD57C7FBB3D736B5FE8BD154624705B5C8EA2EC898F19F75B9A5942 ] p2pimsvc C:\windows\system32\pnrpsvc.dll
22:03:38.0398 0x11b8 p2pimsvc - ok
22:03:38.0460 0x11b8 [ 59C3DDD501E39E006DAC31BF55150D91, E02B63AB7F34CF6FF3F644AF354D10004E6F50014E03172D80BD78934EF71EF1 ] p2psvc C:\windows\system32\p2psvc.dll
22:03:38.0507 0x11b8 p2psvc - ok
22:03:38.0554 0x11b8 [ 2EA877ED5DD9713C5AC74E8EA7348D14, 14BA3722CE5F8FF07F2D97DCDD6558EB49C9B02E5E6FAD6D9F18D354733EFECE ] Parport C:\windows\system32\DRIVERS\parport.sys
22:03:38.0554 0x11b8 Parport - ok
22:03:38.0585 0x11b8 [ 3F34A1B4C5F6475F320C275E63AFCE9B, 31295D5121C0C3F2085E0EEBA260EEE4CA003993C026E2F81986D19158036E6B ] partmgr C:\windows\system32\drivers\partmgr.sys
22:03:38.0585 0x11b8 partmgr - ok
22:03:38.0616 0x11b8 [ EB0A59F29C19B86479D36B35983DAADC, AC09AFE7F13BE4079D01383BAC44091997E1AAF6512C9673A42B9E3780EB08A8 ] Parvdm C:\windows\system32\DRIVERS\parvdm.sys
22:03:38.0616 0x11b8 Parvdm - ok
22:03:38.0663 0x11b8 [ 358AB7956D3160000726574083DFC8A6, 6CAFD4D1B8AB8C1D167ADC018985DDAB5AC2CBFFB3434FE6390F14AF50C19025 ] PcaSvc C:\windows\System32\pcasvc.dll
22:03:38.0694 0x11b8 PcaSvc - ok
22:03:38.0804 0x11b8 [ 673E55C3498EB970088E812EA820AA8F, 1F81315664B8CBFDD569416C0ECCE4C6251F34577313A0858AB46609781303B5 ] pci C:\windows\system32\drivers\pci.sys
22:03:38.0804 0x11b8 pci - ok
22:03:38.0835 0x11b8 [ AFE86F419014DB4E5593F69FFE26CE0A, CAF36E61BE7B511D3A03A65FF5A3017CEE4D2F53005B410F2D4A2AAE9FED4C00 ] pciide C:\windows\system32\drivers\pciide.sys
22:03:38.0835 0x11b8 pciide - ok
22:03:38.0866 0x11b8 [ F396431B31693E71E8A80687EF523506, BC614FC21E029E2497F1CCE3131BBD295B827F2310762B47D5BBC7703D80554B ] pcmcia C:\windows\system32\DRIVERS\pcmcia.sys
22:03:38.0882 0x11b8 pcmcia - ok
22:03:38.0960 0x11b8 [ 250F6B43D2B613172035C6747AEEB19F, A91F15B133F2619912CF750E6F3662E011CD0FA4B9477CE532CE3196D23307D9 ] pcw C:\windows\system32\drivers\pcw.sys
22:03:38.0960 0x11b8 pcw - ok
22:03:38.0991 0x11b8 pdfcDispatcher - ok
22:03:39.0131 0x11b8 [ D7B078B2447DE0295D42845619A99DF0, DA25CFEE07B840D3C56EFCD136C112CB2EB1932B81FD3B66A74209E694C604DF ] PDFProFiltSrv C:\Program Files\Nuance\PDF Professional 6\PDFProFiltSrv.exe
22:03:39.0131 0x11b8 PDFProFiltSrv - ok
22:03:39.0209 0x11b8 [ 9E0104BA49F4E6973749A02BF41344ED, B32F39F38DB48D77FBA884DEE34112BAB81CCEF5DD2EAAA12D9589D73D2BB116 ] PEAUTH C:\windows\system32\drivers\peauth.sys
22:03:39.0240 0x11b8 PEAUTH - ok
22:03:39.0412 0x11b8 [ 414BBA67A3DED1D28437EB66AEB8A720, D6DF254E2615FA402044824DCD9004F579FC0DF74B90E44C99D5F0253CF8AD88 ] pla C:\windows\system32\pla.dll
22:03:39.0474 0x11b8 pla - ok
22:03:39.0537 0x11b8 [ EC7BC28D207DA09E79B3E9FAF8B232CA, A42F8F69C3CD753D787A5D558659DEA2CC306C896D75B8C82549219CF654504F ] PlugPlay C:\windows\system32\umpnpmgr.dll
22:03:39.0568 0x11b8 PlugPlay - ok
22:03:39.0724 0x11b8 [ 3A2E85F7D90D15460C337CE80C2E3B29, EECAA20359FD2D75D6A564A3BAADACAA2CB69D061E455AA3F75055A3EAB54168 ] PnkBstrA C:\windows\system32\PnkBstrA.exe
22:03:39.0724 0x11b8 PnkBstrA - ok
22:03:39.0849 0x11b8 [ 7C01817ADF3207FB65A4B56E6D5AD833, 6FA500C4452188875E464BBA7B9428D71BD32C1A5D4678AE9313CA7E8516C3A8 ] PnkBstrB C:\windows\system32\PnkBstrB.exe
22:03:39.0880 0x11b8 PnkBstrB - ok
22:03:39.0958 0x11b8 [ 63FF8572611249931EB16BB8EED6AFC8, 9732CCBCB93A7A4BEC88812B952C20244479E9BD781240C195E57F09E619EA33 ] PNRPAutoReg C:\windows\system32\pnrpauto.dll
22:03:39.0974 0x11b8 PNRPAutoReg - ok
22:03:40.0005 0x11b8 [ 82A8521DDC60710C3D3D3E7325209BEC, C4E34571EDD57C7FBB3D736B5FE8BD154624705B5C8EA2EC898F19F75B9A5942 ] PNRPsvc C:\windows\system32\pnrpsvc.dll
22:03:40.0005 0x11b8 PNRPsvc - ok
22:03:40.0176 0x11b8 [ 53946B69BA0836BD95B03759530C81EC, 7F14A34635354CCA0F5342C8D9DF5A6AA1B94F6A508BD8834029E9BACF252920 ] PolicyAgent C:\windows\System32\ipsecsvc.dll
22:03:40.0223 0x11b8 PolicyAgent - ok
22:03:40.0270 0x11b8 [ F87D30E72E03D579A5199CCB3831D6EA, B09328E89954584F97908FA5946376BA990B8C650DABCBF3CA3B08719937C694 ] Power C:\windows\system32\umpo.dll
22:03:40.0270 0x11b8 Power - ok
22:03:40.0332 0x11b8 [ 631E3E205AD6D86F2AED6A4A8E69F2DB, 1D3BF0CFC37D91A3A56246920B9CF1084E78A055D56E85A773417809C58C8065 ] PptpMiniport C:\windows\system32\DRIVERS\raspptp.sys
22:03:40.0332 0x11b8 PptpMiniport - ok
22:03:40.0364 0x11b8 [ 85B1E3A0C7585BC4AAE6899EC6FCF011, 1E067113C146D6842D7FB04007F363D6FB7783C6BC7C9AB6614E44075C4F86C3 ] Processor C:\windows\system32\DRIVERS\processr.sys
22:03:40.0364 0x11b8 Processor - ok
22:03:40.0395 0x11b8 [ CADEFAC453040E370A1BDFF3973BE00D, 2E3DD8DA702468D8AB0F3CE27188B1991D4CB015FB36BAE4C6E7996B61CF49B8 ] ProfSvc C:\windows\system32\profsvc.dll
22:03:40.0426 0x11b8 ProfSvc - ok
22:03:40.0442 0x11b8 [ 803B370865D907EA21DC0C2B6A8936B5, E98F0BA1D94786E061A3EA2CC76041FF6BE0ADF47C6205D5572C03BF0E29CA78 ] ProtectedStorage C:\windows\system32\lsass.exe
22:03:40.0457 0x11b8 ProtectedStorage - ok
22:03:40.0520 0x11b8 [ 6270CCAE2A86DE6D146529FE55B3246A, 463209CBAF1B0E269DC8FC6FBDEE5BB7E5ADB5D3F024930BFD0B97E0A9678883 ] Psched C:\windows\system32\DRIVERS\pacer.sys
22:03:40.0520 0x11b8 Psched - ok
22:03:40.0582 0x11b8 [ A6A7AD767BF5141665F5C675F671B3E1, 11D43F732C3B82679E53516F83E675B60B0EFEDE3F4EE3C42AC752AD8D5155AF ] PSI_SVC_2 c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
22:03:40.0598 0x11b8 PSI_SVC_2 - ok
22:03:40.0644 0x11b8 [ 40FEDD328F98245AD201CF5F9F311724, CE1582652B6A7CACE46D8B492CAA8E51EA46C3890EF640E8C5E1E053731A4D74 ] PxHelp20 C:\windows\system32\Drivers\PxHelp20.sys
22:03:40.0644 0x11b8 PxHelp20 - ok
22:03:40.0785 0x11b8 [ AB95ECF1F6659A60DDC166D8315B0751, 0ED6D3460D28978BADF31B930DBB3298A6A10EFF8883763EABA0E36A21A0E83D ] ql2300 C:\windows\system32\DRIVERS\ql2300.sys
22:03:40.0847 0x11b8 ql2300 - ok
22:03:40.0878 0x11b8 [ B4DD51DD25182244B86737DC51AF2270, 7E62B04F054A6330B7F9968222523BDE8F3EE47A11D17E6C0E2D5ACDC07B9E6B ] ql40xx C:\windows\system32\DRIVERS\ql40xx.sys
22:03:40.0878 0x11b8 ql40xx - ok
22:03:40.0925 0x11b8 [ 31AC809E7707EB580B2BDB760390765A, A8481FD19A0F778F5591B7676F591F664ADC68B6867E663C0F9564173F4AC909 ] QWAVE C:\windows\system32\qwave.dll
22:03:40.0956 0x11b8 QWAVE - ok
22:03:40.0988 0x11b8 [ 584078CA1B95CA72DF2A27C336F9719D, 836F115C92D343463C14A9DE39648C1EFA7C7EE4720F5C692EE0F68B84830121 ] QWAVEdrv C:\windows\system32\drivers\qwavedrv.sys
22:03:40.0988 0x11b8 QWAVEdrv - ok
22:03:41.0003 0x11b8 [ 30A81B53C766D0133BB86D234E5556AB, 726C6B83B5ACAA84CAB1689B6DD6DDAE3199D61A57B5D7B5B5A0F62FCF838090 ] RasAcd C:\windows\system32\DRIVERS\rasacd.sys
22:03:41.0019 0x11b8 RasAcd - ok
22:03:41.0050 0x11b8 [ 57EC4AEF73660166074D8F7F31C0D4FD, C66B425EC4DB5E7FD289AE631C9B019EB16717C55E80FAE964BB22203E4AACEF ] RasAgileVpn C:\windows\system32\DRIVERS\AgileVpn.sys
22:03:41.0050 0x11b8 RasAgileVpn - ok
22:03:41.0097 0x11b8 [ A60F1839849C0C00739787FD5EC03F13, B210DFA5A843CF1DA73635F168E2EA5052CBED15C664F8523CDFB34CA165D0E0 ] RasAuto C:\windows\System32\rasauto.dll
22:03:41.0112 0x11b8 RasAuto - ok
22:03:41.0159 0x11b8 [ D9F91EAFEC2815365CBE6D167E4E332A, 8350457A39D141C13807E7DB5A8D4113197C4016F7744B9993391F4AEA0C4A5C ] Rasl2tp C:\windows\system32\DRIVERS\rasl2tp.sys
22:03:41.0159 0x11b8 Rasl2tp - ok
22:03:41.0393 0x11b8 [ CB9E04DC05EACF5B9A36CA276D475006, 4D8C0AEF1D4F84F375AD2BAF786C9F6C52316A3E655B913449E71AD7C0FCA56E ] RasMan C:\windows\System32\rasmans.dll
22:03:41.0440 0x11b8 RasMan - ok
22:03:41.0518 0x11b8 [ 0FE8B15916307A6AC12BFB6A63E45507, 64119474DE7499E6E8B82E78BBD50074B3AA70B3E8329089FAE9B7F29919004E ] RasPppoe C:\windows\system32\DRIVERS\raspppoe.sys
22:03:41.0518 0x11b8 RasPppoe - ok
22:03:41.0565 0x11b8 [ 44101F495A83EA6401D886E7FD70096B, 56A0CE5C89870752B9B2AB795C1A248CA28209E049B2F20CCA0308CBE2488A0A ] RasSstp C:\windows\system32\DRIVERS\rassstp.sys
22:03:41.0580 0x11b8 RasSstp - ok
22:03:41.0627 0x11b8 [ D528BC58A489409BA40334EBF96A311B, C71E9A4B101DB6C3183B9F97B9098D73D6FE1B12C05C2EB3CE8A8041BEE6BA61 ] rdbss C:\windows\system32\DRIVERS\rdbss.sys
22:03:41.0643 0x11b8 rdbss - ok
22:03:41.0690 0x11b8 [ 0D8F05481CB76E70E1DA06EE9F0DA9DF, 2AFCBE3237D27AFBF095F91F1FCCA63E6890F34A9E4F00E5C34C92394CDA89FB ] rdpbus C:\windows\system32\DRIVERS\rdpbus.sys
22:03:41.0690 0x11b8 rdpbus - ok
22:03:41.0752 0x11b8 [ 23DAE03F29D253AE74C44F99E515F9A1, 8FED93D10B2062F0526FE3508101F8FCF8F72DEB90AFB472EB7CBAE83A0EC430 ] RDPCDD C:\windows\system32\DRIVERS\RDPCDD.sys
22:03:41.0752 0x11b8 RDPCDD - ok
22:03:41.0814 0x11b8 [ 5A53CA1598DD4156D44196D200C94B8A, 8112FE14FEC94C67B1C5BDE4171E37584F1D0098D2C557C9E4BDD3E0291E25E4 ] RDPENCDD C:\windows\system32\drivers\rdpencdd.sys
22:03:41.0814 0x11b8 RDPENCDD - ok
22:03:41.0830 0x11b8 [ 44B0A53CD4F27D50ED461DAE0C0B4E1F, CDA80B08E67AD034081C0C920CD66147689F1844403CBC552F65005E7C011A91 ] RDPREFMP C:\windows\system32\drivers\rdprefmp.sys
22:03:41.0830 0x11b8 RDPREFMP - ok
22:03:42.0033 0x11b8 [ 65375DF758CA1872AB7EBBBA457FD5E6, 8AC7681F51277E799C22FF95FA0B833E9E260D37C0416319FF05B66FB3948005 ] RdpVideoMiniport C:\windows\system32\drivers\rdpvideominiport.sys
22:03:42.0033 0x11b8 RdpVideoMiniport - ok
22:03:42.0095 0x11b8 [ F031683E6D1FEA157ABB2FF260B51E61, 83B552819A5964152882C527E1421DBCEAACC74DEB897E3C4B53F52F1467FED3 ] RDPWD C:\windows\system32\drivers\RDPWD.sys
22:03:42.0095 0x11b8 RDPWD - ok
22:03:42.0236 0x11b8 [ 518395321DC96FE2C9F0E96AC743B656, 5F6A0880B4F3EE7196259EA362DA9554B0687B0236F9A8E5CF7A4A77F01F1776 ] rdyboost C:\windows\system32\drivers\rdyboost.sys
22:03:42.0251 0x11b8 rdyboost - ok
22:03:42.0345 0x11b8 [ 7B5E1419717FAC363A31CC302895217A, 048B96B127CC20833948DAE53C59886D5C725ECA7A744424A01339447D2DDC32 ] RemoteAccess C:\windows\System32\mprdim.dll
22:03:42.0360 0x11b8 RemoteAccess - ok
22:03:42.0454 0x11b8 [ CB9A8683F4EF2BF99E123D79950D7935, B9FA3E7E91E76D975CF40BFA37909E50F29CC13AB1399007884710651827E9AA ] RemoteRegistry C:\windows\system32\regsvc.dll
22:03:42.0454 0x11b8 RemoteRegistry - ok
22:03:42.0516 0x11b8 [ CB928D9E6DAF51879DD6BA8D02F01321, DFD263B67DDF98AE09AF6D6986CBC7BE3206BCE8403AAC51BCF9459E78233D12 ] RFCOMM C:\windows\system32\DRIVERS\rfcomm.sys
22:03:42.0516 0x11b8 RFCOMM - ok
22:03:42.0844 0x11b8 [ C48AE8B3067261A48FCC31979A3A1EB9, 90C1AE8D76905BA49D9973DE16E1D9C5EC27E44DFCBA955499CC6E9270DF884D ] RoxMediaDB10 c:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe
22:03:42.0953 0x11b8 RoxMediaDB10 - ok
22:03:43.0000 0x11b8 [ 78D072F35BC45D9E4E1B61895C152234, 80C924EE1156B4E3172E83DCB9C60817E87885FB9377647E0BF90153E415B1CA ] RpcEptMapper C:\windows\System32\RpcEpMap.dll
22:03:43.0016 0x11b8 RpcEptMapper - ok
22:03:43.0031 0x11b8 [ 94D36C0E44677DD26981D2BFEEF2A29D, D77A93AC60536F3706E8A0154C0C2199E888B7748C84DB7437254FF175F4DF55 ] RpcLocator C:\windows\system32\locator.exe
22:03:43.0047 0x11b8 RpcLocator - ok
22:03:43.0172 0x11b8 [ 7660F01D3B38ACA1747E397D21D790AF, 04611B43705C064C2A8331F6D3F8E4530295694AE2C3E3EC3F62CFF4A5EFA88D ] RpcSs C:\windows\system32\rpcss.dll
22:03:43.0187 0x11b8 RpcSs - ok
22:03:43.0265 0x11b8 [ 032B0D36AD92B582D869879F5AF5B928, 0F8F18A6A0A689957B886D9368015889091094EDA18BE532093F06A70A7CE184 ] rspndr C:\windows\system32\DRIVERS\rspndr.sys
22:03:43.0281 0x11b8 rspndr - ok
22:03:43.0437 0x11b8 [ 5283B9A27FF230F2FF70D92451FF409A, B8BAC70E1DE4485C79CA7B47D4DCFE0223CECEA8ED75CE4F128D47051F95FE5D ] RTL8167 C:\windows\system32\DRIVERS\Rt86win7.sys
22:03:43.0452 0x11b8 RTL8167 - ok
22:03:43.0764 0x11b8 [ FDE8E47D14CC879305A899373CE25B61, 47B56A0BF44FC1F9F88DBF58609C44CE10832084B9BF85607E039E0393E13107 ] rtl8192se C:\windows\system32\DRIVERS\rtl8192se.sys
22:03:43.0827 0x11b8 rtl8192se - ok
22:03:43.0952 0x11b8 [ 40AE35F1FDBAC1F4B0C53D2ED77A0E3F, 3A7F7E0D65C42DFE7652D89183DCB3ACFCD5B32A1C4E1202C32B6749836045D3 ] rtsuvc C:\windows\system32\DRIVERS\rtsuvc.sys
22:03:43.0967 0x11b8 rtsuvc - ok
22:03:43.0983 0x11b8 [ 803B370865D907EA21DC0C2B6A8936B5, E98F0BA1D94786E061A3EA2CC76041FF6BE0ADF47C6205D5572C03BF0E29CA78 ] SamSs C:\windows\system32\lsass.exe
22:03:43.0983 0x11b8 SamSs - ok
22:03:44.0061 0x11b8 [ 05D860DA1040F111503AC416CCEF2BCA, DAE2F37D09A5A42F945BC8E27E4EA2303521081783A80CEE7FEE7C5A1C2CFC5E ] sbp2port C:\windows\system32\drivers\sbp2port.sys
22:03:44.0076 0x11b8 sbp2port - ok
22:03:44.0123 0x11b8 [ 8FC518FFE9519C2631D37515A68009C4, 21E10585470CF9FC3BD1977F8A426686CD2FA6BD2094B9E3594B21C7C4541D25 ] SCardSvr C:\windows\System32\SCardSvr.dll
22:03:44.0139 0x11b8 SCardSvr - ok
22:03:44.0170 0x11b8 [ 0693B5EC673E34DC147E195779A4DCF6, AF1B56FBF3ADABF94CD9DBA67586B8746DE135151F6B3D1B0EE315BC1E2DB670 ] scfilter C:\windows\system32\DRIVERS\scfilter.sys
22:03:44.0170 0x11b8 scfilter - ok
22:03:44.0404 0x11b8 [ A04BB13F8A72F8B6E8B4071723E4E336, E63287FF71C39CBF64C3347C455324C8437F9CF398153E269543588B65389502 ] Schedule C:\windows\system32\schedsvc.dll
22:03:44.0466 0x11b8 Schedule - ok
22:03:44.0622 0x11b8 [ 319C6B309773D063541D01DF8AC6F55F, 182F392FE839499D159A30A3CD04B5D0C87219930BFB1A7456880B7DA75B9820 ] SCPolicySvc C:\windows\System32\certprop.dll
22:03:44.0622 0x11b8 SCPolicySvc - ok
22:03:44.0732 0x11b8 [ 08236C4BCE5EDD0A0318A438AF28E0F7, 77727F963F63C4CEC11E7AAD5FB3836179701D512CA9436C3170B9E6A4E5F888 ] SDRSVC C:\windows\System32\SDRSVC.dll
22:03:44.0747 0x11b8 SDRSVC - ok
22:03:44.0794 0x11b8 [ 90A3935D05B494A5A39D37E71F09A677, F72733A69BC6E1A2BB91D7632FF3463C12563F60FDCC00A2CDD67FF20D479952 ] secdrv C:\windows\system32\drivers\secdrv.sys
22:03:44.0825 0x11b8 secdrv - ok
22:03:44.0888 0x11b8 [ A59B3A4442C52060CC7A85293AA3546F, 1776D6DEE51991149265AAF39E17065E301C5FA1FF4068653DC0010B9B27185D ] seclogon C:\windows\system32\seclogon.dll
22:03:44.0903 0x11b8 seclogon - ok
22:03:45.0075 0x11b8 [ DCB7FCDCC97F87360F75D77425B81737, F8289AF2C458C167038EEFE613EE5E3D6D5B3308B8784168374BC81C47891CE5 ] SENS C:\windows\System32\sens.dll
22:03:45.0075 0x11b8 SENS - ok
22:03:45.0106 0x11b8 [ 50087FE1EE447009C9CC2997B90DE53F, B5E6CF1D991F87C29C5E28198E0962E31FFB499A46C3BD43FC20391693389959 ] SensrSvc C:\windows\system32\sensrsvc.dll
22:03:45.0122 0x11b8 SensrSvc - ok
22:03:45.0137 0x11b8 [ 9AD8B8B515E3DF6ACD4212EF465DE2D1, E2F019BCD1446236D078D46065DD151DD068778F33BE2F1E8A0CC1EA2F954E86 ] Serenum C:\windows\system32\DRIVERS\serenum.sys
22:03:45.0137 0x11b8 Serenum - ok
22:03:45.0184 0x11b8 [ 5FB7FCEA0490D821F26F39CC5EA3D1E2, A26DB2EB9F3E2509B4EBA949DB97595CC32332D9321DF68283BFC102E66D766F ] Serial C:\windows\system32\DRIVERS\serial.sys
22:03:45.0184 0x11b8 Serial - ok
22:03:45.0200 0x11b8 [ 79BFFB520327FF916A582DFEA17AA813, 7A2A9D69BE02228591186A9F4453D4B5FD98837CA422C873C48040170E8BD18C ] sermouse C:\windows\system32\DRIVERS\sermouse.sys
22:03:45.0200 0x11b8 sermouse - ok
22:03:45.0246 0x11b8 [ 4AE380F39A0032EAB7DD953030B26D28, C8F5F2DD59574E966FDF3057867BB959A554BAB6FD5DC6F1427094A6BC2B2809 ] SessionEnv C:\windows\system32\sessenv.dll
22:03:45.0262 0x11b8 SessionEnv - ok
22:03:45.0293 0x11b8 [ 9F976E1EB233DF46FCE808D9DEA3EB9C, 6A5C53F27F8BCA85CE206EE7D196176F67EC6FFA5D4830373A20792C149B5E75 ] sffdisk C:\windows\system32\drivers\sffdisk.sys
22:03:45.0293 0x11b8 sffdisk - ok
22:03:45.0309 0x11b8 [ 932A68EE27833CFD57C1639D375F2731, 11D6B98FBEEE2B9C7B06EF7091857BBD3B349077997D6261D66280668FD1B5C3 ] sffp_mmc C:\windows\system32\drivers\sffp_mmc.sys
22:03:45.0324 0x11b8 sffp_mmc - ok
22:03:45.0356 0x11b8 [ 6D4CCAEDC018F1CF52866BBBAA235982, AAC41F5C97B3FE5A3DC0838457EB8CC9BB71FCA16D3EDBB67D603F0A9D46C131 ] sffp_sd C:\windows\system32\drivers\sffp_sd.sys
22:03:45.0356 0x11b8 sffp_sd - ok
22:03:45.0356 0x11b8 [ DB96666CC8312EBC45032F30B007A547, C3AE60FC65A36E96E0D2CC6E184481D70F91A19DC3E2E17E2873DD670A592DD7 ] sfloppy C:\windows\system32\DRIVERS\sfloppy.sys
22:03:45.0356 0x11b8 sfloppy - ok
22:03:45.0418 0x11b8 [ D1A079A0DE2EA524513B6930C24527A2, E2BC16DBCF38841EECD49C6FA1A9AC89C17F332F12606CA826F058E995E1B83D ] SharedAccess C:\windows\System32\ipnathlp.dll
22:03:45.0496 0x11b8 SharedAccess - ok
22:03:45.0543 0x11b8 [ 414DA952A35BF5D50192E28263B40577, 9C9BAFB9880DA6CC728506A142BE124E186219610DCC3460657A3CA93C865DF1 ] ShellHWDetection C:\windows\System32\shsvcs.dll
22:03:45.0574 0x11b8 ShellHWDetection - ok
22:03:45.0590 0x11b8 [ 2565CAC0DC9FE0371BDCE60832582B2E, 1A775214E86B83C2F1799F12D71077D81C89AD32734A248BA88787B7F104B79D ] sisagp C:\windows\system32\drivers\sisagp.sys
22:03:45.0605 0x11b8 sisagp - ok
22:03:45.0668 0x11b8 [ A9F0486851BECB6DDA1D89D381E71055, 7E909538AB758C18AC2CCBFFEE17BA36FA6ED2E674AA70924AA87AC61375FF35 ] SiSRaid2 C:\windows\system32\DRIVERS\SiSRaid2.sys
22:03:45.0668 0x11b8 SiSRaid2 - ok
22:03:45.0699 0x11b8 [ 3727097B55738E2F554972C3BE5BC1AA, 75D52A596A298C33EC79A3B0B80F25492C08A182ABC679401502DA9597687566 ] SiSRaid4 C:\windows\system32\DRIVERS\sisraid4.sys
22:03:45.0714 0x11b8 SiSRaid4 - ok
22:03:45.0777 0x11b8 [ 3E21C083B8A01CB70BA1F09303010FCE, 803F8F91299C387110F34A49340E7136AAE91B418E2977A36285EA8F432FF197 ] Smb C:\windows\system32\DRIVERS\smb.sys
22:03:45.0777 0x11b8 Smb - ok
22:03:45.0855 0x11b8 [ 6A984831644ECA1A33FFEAE4126F4F37, 753E23D2B33D47C52C05D892B052CFD96D93B97FB6E9FCB58EF1E4C4A125BF78 ] SNMPTRAP C:\windows\System32\snmptrap.exe
22:03:45.0855 0x11b8 SNMPTRAP - ok
22:03:45.0886 0x11b8 [ 95CF1AE7527FB70F7816563CBC09D942, CE8BACB91A5A86CBCE82619C6C1873B4D7593B00CED3B522E41B8F7F6258CC65 ] spldr C:\windows\system32\drivers\spldr.sys
22:03:45.0886 0x11b8 spldr - ok
22:03:45.0933 0x11b8 [ 9AEA093B8F9C37CF45538382CABA2475, CC63239C412067AA72318ADB8BB80BCDF2CA60DA05D814D32753C92508BC16A8 ] Spooler C:\windows\System32\spoolsv.exe
22:03:45.0980 0x11b8 Spooler - ok
22:03:46.0182 0x11b8 [ CF87A1DE791347E75B98885214CED2B8, 7AF4E03D751C951A4E5FBA28200DABFE6B3BF055490163EEEEA84EBA4D0F368A ] sppsvc C:\windows\system32\sppsvc.exe
22:03:46.0323 0x11b8 sppsvc - ok
22:03:46.0463 0x11b8 [ B0180B20B065D89232A78A40FE56EAA6, 4D045B23AD58A8822BE9F20119744A8D47455469D54494745CEB099951DA60FF ] sppuinotify C:\windows\system32\sppuinotify.dll
22:03:46.0463 0x11b8 sppuinotify - ok
22:03:46.0572 0x11b8 [ CDDDEC541BC3C96F91ECB48759673505, B030FFA02832317AC5626BF1BF8A4A95A5992C9A6E81BC1C002D5F4D667C27FB ] sptd C:\windows\system32\Drivers\sptd.sys
22:03:46.0572 0x11b8 Suspicious file ( NoAccess ): C:\windows\system32\Drivers\sptd.sys. md5: CDDDEC541BC3C96F91ECB48759673505, sha256: B030FFA02832317AC5626BF1BF8A4A95A5992C9A6E81BC1C002D5F4D667C27FB
22:03:46.0572 0x11b8 sptd - detected LockedFile.Multi.Generic ( 1 )
22:03:49.0349 0x11b8 Detect skipped due to KSN trusted
22:03:49.0349 0x11b8 sptd - ok
22:03:49.0380 0x11b8 [ E4C2764065D66EA1D2D3EBC28FE99C46, 043AEF06A23069DD17675955C834690A5FD8F1948A05B3969F977E823C4E25F5 ] srv C:\windows\system32\DRIVERS\srv.sys
22:03:49.0396 0x11b8 srv - ok
22:03:49.0443 0x11b8 [ 03F0545BD8D4C77FA0AE1CEEDFCC71AB, 4DF31206DF8F33C2975E23C7257ED930C4EDA8BC4E246D8FDA130BB583083ED0 ] srv2 C:\windows\system32\DRIVERS\srv2.sys
22:03:49.0458 0x11b8 srv2 - ok
22:03:49.0490 0x11b8 [ BE6BD660CAA6F291AE06A718A4FA8ABC, CD38939CFBA80B882D38099194FC1EBAE15A9D27A4D941DD03C55EC745E52E59 ] srvnet C:\windows\system32\DRIVERS\srvnet.sys
22:03:49.0490 0x11b8 srvnet - ok
22:03:49.0536 0x11b8 [ D887C9FD02AC9FA880F6E5027A43E118, F38BAD90EC791368C37C21090302708D2DFB83ECE9096609AD9AA667B2E5592E ] SSDPSRV C:\windows\System32\ssdpsrv.dll
22:03:49.0568 0x11b8 SSDPSRV - ok
22:03:49.0599 0x11b8 [ D318F23BE45D5E3A107469EB64815B50, D74355E6FF215AA8CE53BC9DF16AF2740F2FC2FD754939478A3608BDA8C6DDA0 ] SstpSvc C:\windows\system32\sstpsvc.dll
22:03:49.0599 0x11b8 SstpSvc - ok
22:03:49.0677 0x11b8 [ 359FEE084F1173FFFFD7F9CCBD43D47F, 197EE7267D0565E426368868233C35F6FD29A0432D75630F8365336E061318D7 ] ssudmdm C:\windows\system32\DRIVERS\ssudmdm.sys
22:03:49.0677 0x11b8 ssudmdm - ok
22:03:49.0724 0x11b8 [ 84F8C797F357D1A53794A12B7CD36AC4, 8D4121AD2B8311A08BD48C48F8A3C37573111611A6D375EF68F8F225B2F2179D ] ssudobex C:\windows\system32\DRIVERS\ssudobex.sys
22:03:49.0724 0x11b8 ssudobex - ok
22:03:50.0067 0x11b8 [ 9C1EA4217DC30E085F8418474DCC3616, E0EE15A79B50894D407B6EFEF3E14A4552AF0C95F2F61F51F2DBA790D1F8B66C ] STacSV C:\windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_9b219d80a8843bf8\STacSV.exe
22:03:50.0082 0x11b8 STacSV - ok
22:03:50.0114 0x11b8 [ DB32D325C192B801DF274BFD12A7E72B, F089DBA719E22BC269720A6B840B873A4AF5639745DB0C3DBC8BD2F2839A1ABA ] stexstor C:\windows\system32\DRIVERS\stexstor.sys
22:03:50.0114 0x11b8 stexstor - ok
22:03:50.0192 0x11b8 [ C502802475B7A2CB843F9F815D7DDC36, 198E33D19D8B90646D134644DAF0567597CC83C3172E9C16097C98EE3588DA52 ] STHDA C:\windows\system32\DRIVERS\stwrt.sys
22:03:50.0223 0x11b8 STHDA - ok
22:03:50.0316 0x11b8 [ E1FB3706030FB4578A0D72C2FC3689E4, A62EC9AA4514CAF2A10C0A3AEF7A36F593A7E7DA370A3F130C24E1B612E19427 ] StiSvc C:\windows\System32\wiaservc.dll
22:03:50.0332 0x11b8 StiSvc - ok
22:03:50.0394 0x11b8 [ AD989072596AB313D7FA13BCF69573F7, 99EC6744DF8571F52C931C743A48E0275EF155AA825CA083A84BE369CBF00622 ] stllssvr c:\Program Files\Common Files\SureThing Shared\stllssvr.exe
22:03:50.0394 0x11b8 stllssvr - ok
22:03:50.0457 0x11b8 [ E58C78A848ADD9610A4DB6D214AF5224, 1575A90EB22A4FB066459BDA00C6CAC10198C3C8C74493721EC6D34B51F50426 ] swenum C:\windows\system32\drivers\swenum.sys
22:03:50.0457 0x11b8 swenum - ok
22:03:50.0488 0x11b8 [ A28BD92DF340E57B024BA433165D34D7, 889CC7FF143C3549982128473FF927CD80CF36485A347EF399C1271C8CE12CE4 ] swprv C:\windows\System32\swprv.dll
22:03:50.0550 0x11b8 swprv - ok
22:03:50.0660 0x11b8 [ 0E8676FB3BB95AA40FDF7A4A31018C8B, C14931CB26830E2A720C4DA5C16E2CBF1BDDDBD253257491F0D84EF5C94437E4 ] SynTP C:\windows\system32\DRIVERS\SynTP.sys
22:03:50.0738 0x11b8 SynTP - ok
22:03:50.0862 0x11b8 [ 36650D618CA34C9D357DFD3D89B2C56F, 7C3774E53DCF32CB3A4B3504E32D2A651E18467FA0A6AC4C7993C696741B704B ] SysMain C:\windows\system32\sysmain.dll
22:03:50.0940 0x11b8 SysMain - ok
22:03:50.0987 0x11b8 [ 763FECDC3D30C815FE72DD57936C6CD1, 1A62C7E63E426D56894F4121C75D9C60FC9A14469ADBD0D6F0B94B8DE48CDA3E ] TabletInputService C:\windows\System32\TabSvc.dll
22:03:51.0003 0x11b8 TabletInputService - ok
22:03:51.0050 0x11b8 [ 613BF4820361543956909043A265C6AC, FCFF02E466D2501630B452627FB218C01E5245A0921EE3D2117E7FD63AC7E98E ] TapiSrv C:\windows\System32\tapisrv.dll
22:03:51.0065 0x11b8 TapiSrv - ok
22:03:51.0112 0x11b8 [ B799D9FDB26111737F58288D8DC172D9, 409A60819A4305699E2E492A6190637FAAEBD19E745A5DB2A5D6977106C86591 ] TBS C:\windows\System32\tbssvc.dll
22:03:51.0128 0x11b8 TBS - ok
22:03:51.0221 0x11b8 [ D32FDAC73FCD76B85389C39BC1087F2A, E216F446B5F963298CBD2FF7AEF1035F6C53181517E9FABDCDAA07E1841786BF ] Tcpip C:\windows\system32\drivers\tcpip.sys
22:03:51.0315 0x11b8 Tcpip - ok
22:03:51.0408 0x11b8 [ D32FDAC73FCD76B85389C39BC1087F2A, E216F446B5F963298CBD2FF7AEF1035F6C53181517E9FABDCDAA07E1841786BF ] TCPIP6 C:\windows\system32\DRIVERS\tcpip.sys
22:03:51.0440 0x11b8 TCPIP6 - ok
22:03:51.0502 0x11b8 [ 3EEBD3BD93DA46A26E89893C7AB2FF3B, 2C7204DCD2BCBC6A250FF0F6477616F327AF41FDB7CABE69E5C357361009FB4E ] tcpipreg C:\windows\system32\drivers\tcpipreg.sys
22:03:51.0502 0x11b8 tcpipreg - ok
22:03:51.0564 0x11b8 [ 1CB91B2BD8F6DD367DFC2EF26FD751B2, 879E2827354BB21573AC6A7CCEB746D44214540687E6882FFCB4089546FBD954 ] TDPIPE C:\windows\system32\drivers\tdpipe.sys
22:03:51.0564 0x11b8 TDPIPE - ok
22:03:51.0611 0x11b8 [ 2C2C5AFE7EE4F620D69C23C0617651A8, E828D974C3F9D7004A030C3AD448096C736FDB4C4C1707D043E567D08C845103 ] TDTCP C:\windows\system32\drivers\tdtcp.sys
22:03:51.0611 0x11b8 TDTCP - ok
22:03:51.0674 0x11b8 [ B459575348C20E8121D6039DA063C704, 1B4328A9EA39FF5A57F258E02254D04B73455F1DF7C997C13702A8B2F12D0347 ] tdx C:\windows\system32\DRIVERS\tdx.sys
22:03:51.0674 0x11b8 tdx - ok
22:03:51.0720 0x11b8 [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20, 0D81B427720637882077C5024D738191F858FC734ED040697872D906351EF663 ] TermDD C:\windows\system32\drivers\termdd.sys
22:03:51.0720 0x11b8 TermDD - ok
22:03:51.0783 0x11b8 [ 382C804C92811BE57829D8E550A900E2, 5F52C2E7902024CF1C9CC0069F411C3F19CCA3DB209F437FA0F3932D4898EB50 ] TermService C:\windows\System32\termsrv.dll
22:03:51.0830 0x11b8 TermService - ok
22:03:51.0892 0x11b8 [ 42FB6AFD6B79D9FE07381609172E7CA4, B57C85091209A2FAD19ED490B8FA7FC98F12911F9C9CACE9AF1E540780CE6700 ] Themes C:\windows\system32\themeservice.dll
22:03:51.0908 0x11b8 Themes - ok
22:03:51.0939 0x11b8 [ 146B6F43A673379A3C670E86D89BE5EA, C4412DCF80DE6B55466F399413271364F14BC0819C224AA161EDDC31A9775440 ] THREADORDER C:\windows\system32\mmcss.dll
22:03:51.0939 0x11b8 THREADORDER - ok
22:03:52.0017 0x11b8 [ 5AD05191DC8B444A7BA4D79B76C42A30, 6166E939A5A240388EBA5AF7FF335DC413F2BBCF74C2E1D310F4BE2A5454A610 ] TPM C:\windows\system32\drivers\tpm.sys
22:03:52.0017 0x11b8 TPM - ok
22:03:52.0048 0x11b8 [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A, 532A3A812578B2DFD83001DE66FC73689D79EC729409EB572E07E6D65B281712 ] TrkWks C:\windows\System32\trkwks.dll
22:03:52.0064 0x11b8 TrkWks - ok
22:03:52.0142 0x11b8 [ 2C49B175AEE1D4364B91B531417FE583, 6C7995E18F84E465C376D1D5F153C15ACB66CDEA86EE5BF186677F572E7E129B ] TrustedInstaller C:\windows\servicing\TrustedInstaller.exe
22:03:52.0157 0x11b8 TrustedInstaller - ok
22:03:52.0188 0x11b8 [ 254BB140EEE3C59D6114C1A86B636877, EE09D62E90407A40278F2136F640DAB16A4E2BF57D4FB6E05F92CA9CC9CF57C0 ] tssecsrv C:\windows\system32\DRIVERS\tssecsrv.sys
22:03:52.0188 0x11b8 tssecsrv - ok
22:03:52.0235 0x11b8 [ 9CE253214ACAA5A7D323327D2055EFAA, 15E7DB578EDF36DD2FD5BA960C3941B2353037323B6B96702CDCDC07588EA724 ] TsUsbFlt C:\windows\system32\drivers\tsusbflt.sys
22:03:52.0235 0x11b8 TsUsbFlt - ok
22:03:52.0329 0x11b8 [ B2FA25D9B17A68BB93D58B0556E8C90D, 0146931B733CAB1CD87F94C35F97E110D6ED6C55EAFF03345400A29AEDE99BDE ] tunnel C:\windows\system32\DRIVERS\tunnel.sys
22:03:52.0329 0x11b8 tunnel - ok
22:03:52.0376 0x11b8 [ 750FBCB269F4D7DD2E420C56B795DB6D, E1A95C59148FE463539C34336FD0E74B31A33B8AB2B8E34AA10349C3347471D7 ] uagp35 C:\windows\system32\DRIVERS\uagp35.sys
22:03:52.0376 0x11b8 uagp35 - ok
22:03:52.0422 0x11b8 [ EE43346C7E4B5E63E54F927BABBB32FF, BAD6FC3BEE45E644D5A6A0A31428F5B2AEC72A0AA0C74EF8177B1FE23EEF3AA9 ] udfs C:\windows\system32\DRIVERS\udfs.sys
22:03:52.0438 0x11b8 udfs - ok
22:03:52.0485 0x11b8 [ 8344FD4FCE927880AA1AA7681D4927E5, 1B54EFA60A221E2B9FFE59BB41C7E7D8B5AC6826F1C5577456D81371D464255A ] UI0Detect C:\windows\system32\UI0Detect.exe
22:03:52.0500 0x11b8 UI0Detect - ok
22:03:52.0532 0x11b8 [ 44E8048ACE47BEFBFDC2E9BE4CBC8880, 5D96D90FDF68AE470CC92CA9DF9DA2C05A53EF455A5A109DBBF7C96F3238257C ] uliagpkx C:\windows\system32\drivers\uliagpkx.sys
22:03:52.0547 0x11b8 uliagpkx - ok
22:03:52.0578 0x11b8 [ D295BED4B898F0FD999FCFA9B32B071B, D4130DB4AE76EE6DC0B8E7A4FEF5CB8B26EBD822C21021F6FA78FD29C1E211C2 ] umbus C:\windows\system32\drivers\umbus.sys
22:03:52.0578 0x11b8 umbus - ok
22:03:52.0610 0x11b8 [ 7550AD0C6998BA1CB4843E920EE0FEAC, 24C001E422C3B3B920CDCF6003A3179CE464DE4284775403DD5122EF9780460D ] UmPass C:\windows\system32\DRIVERS\umpass.sys
22:03:52.0610 0x11b8 UmPass - ok
22:03:52.0641 0x11b8 [ 833FBB672460EFCE8011D262175FAD33, C0C3067A305993CBF056C229771CB0593DD60C9C7AC5130FF1CA610BCA812AB5 ] upnphost C:\windows\System32\upnphost.dll
22:03:52.0656 0x11b8 upnphost - ok
22:03:52.0703 0x11b8 [ BD9C55D7023C5DE374507ACC7A14E2AC, 1DBAFF733DE5C1A6A2374B15BD94512A22D9C0F4DF91F997801340828333AF3C ] usbccgp C:\windows\system32\DRIVERS\usbccgp.sys
22:03:52.0703 0x11b8 usbccgp - ok
22:03:52.0750 0x11b8 [ 04EC7CEC62EC3B6D9354EEE93327FC82, 6CB41D8644618A5F701F6CA91FB65BB94AA83EA48992133B5262DC539B334B2E ] usbcir C:\windows\system32\drivers\usbcir.sys
22:03:52.0750 0x11b8 usbcir - ok
22:03:52.0781 0x11b8 [ F92DE757E4B7CE9C07C5E65423F3AE3B, B3FDEE4A8F1C7EC12405D99ACABC3E633FA4ED08D2A2AA871526ED7927A35A91 ] usbehci C:\windows\system32\DRIVERS\usbehci.sys
22:03:52.0797 0x11b8 usbehci - ok
22:03:52.0844 0x11b8 [ 8DC94AEC6A7E644A06135AE7506DC2E9, 3ACB621D57BC8691DBBCDEF27563AA6390370362F21AFA6E7BA35BC429E14590 ] usbhub C:\windows\system32\DRIVERS\usbhub.sys
22:03:52.0859 0x11b8 usbhub - ok
22:03:52.0906 0x11b8 [ E185D44FAC515A18D9DEDDC23C2CDF44, EF69D0253CC8F1D29929FD5E74F18737ECF5D238874B6E1505E2EAEE66D9D987 ] usbohci C:\windows\system32\drivers\usbohci.sys
22:03:52.0906 0x11b8 usbohci - ok
22:03:52.0968 0x11b8 [ 797D862FE0875E75C7CC4C1AD7B30252, 1BBE745E4C85F8911076F6032ACD7A35FAC048D3CB1500C64E08D8B2C70A1069 ] usbprint C:\windows\system32\DRIVERS\usbprint.sys
22:03:52.0968 0x11b8 usbprint - ok
22:03:53.0000 0x11b8 [ 576096CCBC07E7C4EA4F5E6686D6888F, 8C643F43BD0017979548389C4DB36A1EE872CCF19C86FAE3752A4989173E28ED ] usbscan C:\windows\system32\DRIVERS\usbscan.sys
22:03:53.0000 0x11b8 usbscan - ok
22:03:53.0031 0x11b8 [ F991AB9CC6B908DB552166768176896A, AD8E7A16B23B244B7F834622D4E38B5844193C6E31EF96F61E0E2EA16C945026 ] USBSTOR C:\windows\system32\DRIVERS\USBSTOR.SYS
22:03:53.0031 0x11b8 USBSTOR - ok
22:03:53.0078 0x11b8 [ 68DF884CF41CDADA664BEB01DAF67E3D, 142781FE2FF93B269D8FA11D4C3F60967552A867E94533D94EF1C2D777A67872 ] usbuhci C:\windows\system32\DRIVERS\usbuhci.sys
22:03:53.0078 0x11b8 usbuhci - ok
22:03:53.0124 0x11b8 [ 45F4E7BF43DB40A6C6B4D92C76CBC3F2, F9B72DE82078FDB5551D48988190F46EECA9B99655C591B7865FEA1AFB31F637 ] usbvideo C:\windows\System32\Drivers\usbvideo.sys
22:03:53.0124 0x11b8 usbvideo - ok
22:03:53.0171 0x11b8 [ 081E6E1C91AEC36758902A9F727CD23C, 9FDAA17A3B99067E035E5D76305427F15FFDBC5D304B2BB78AFC6463EDDE1A75 ] UxSms C:\windows\System32\uxsms.dll
22:03:53.0187 0x11b8 UxSms - ok
22:03:53.0218 0x11b8 [ 803B370865D907EA21DC0C2B6A8936B5, E98F0BA1D94786E061A3EA2CC76041FF6BE0ADF47C6205D5572C03BF0E29CA78 ] VaultSvc C:\windows\system32\lsass.exe
22:03:53.0218 0x11b8 VaultSvc - ok
22:03:53.0265 0x11b8 [ A059C4C3EDB09E07D21A8E5C0AABD3CB, BDD3729B49DF2E2FC72FFEF9D10235B481A671DE5A721B6B9A80873B7A343F07 ] vdrvroot C:\windows\system32\drivers\vdrvroot.sys
22:03:53.0265 0x11b8 vdrvroot - ok
22:03:53.0327 0x11b8 [ C3CD30495687C2A2F66A65CA6FD89BE9, 582E4706C1D6A151020D14B26C7BF166F4E42BDD6E410F30EC452469270C5E9B ] vds C:\windows\System32\vds.exe
22:03:53.0405 0x11b8 vds - ok
22:03:53.0421 0x11b8 [ 17C408214EA61696CEC9C66E388B14F3, 829C0416672E2B2DFABCFE641E7F281F41E8DBB3C0EF11C7784CB9BB94F87E97 ] vga C:\windows\system32\DRIVERS\vgapnp.sys
22:03:53.0436 0x11b8 vga - ok
22:03:53.0468 0x11b8 [ 8E38096AD5C8570A6F1570A61E251561, 4DBA3C1397A2203548F45F006E66D99F837903F601ABBCE2304754F783CA8A39 ] VgaSave C:\windows\System32\drivers\vga.sys
22:03:53.0468 0x11b8 VgaSave - ok
22:03:53.0499 0x11b8 [ 5461686CCA2FDA57B024547733AB42E3, 2721D0659AA890172FCAD4EC4D926B58ACD0EE4887DA51545DC7237420D5BF84 ] vhdmp C:\windows\system32\drivers\vhdmp.sys
22:03:53.0514 0x11b8 vhdmp - ok
22:03:53.0546 0x11b8 [ C829317A37B4BEA8F39735D4B076E923, 55D1796AE750071E1E05BD7702B6C355CCFFE27B4C00E93E7044C3184732B497 ] viaagp C:\windows\system32\drivers\viaagp.sys
22:03:53.0546 0x11b8 viaagp - ok
22:03:53.0577 0x11b8 [ E02F079A6AA107F06B16549C6E5C7B74, B530DCE3EE4F285B3D5F69F7148D17E016D54F04E6F93706B829A34567748788 ] ViaC7 C:\windows\system32\DRIVERS\viac7.sys
22:03:53.0577 0x11b8 ViaC7 - ok
22:03:53.0592 0x11b8 [ E43574F6A56A0EE11809B48C09E4FD3C, 3687BF638E21C00E62ABFED70D728B91ADA08F7164CA898E654F31DA196589E9 ] viaide C:\windows\system32\drivers\viaide.sys
22:03:53.0592 0x11b8 viaide - ok
22:03:53.0608 0x11b8 [ 4C63E00F2F4B5F86AB48A58CD990F212, 9796BD4B9CFEEEAF57C5E332A732EFC2770B21F9B35301A5D202F5FC52C1E035 ] volmgr C:\windows\system32\drivers\volmgr.sys
22:03:53.0608 0x11b8 volmgr - ok
22:03:53.0639 0x11b8 [ B5BB72067DDDDBBFB04B2F89FF8C3C87, 65B9AD55F43940A5FDD88B6EC5034A7E375DF8E6F5F1AE6519A4BD6B7E992EBC ] volmgrx C:\windows\system32\drivers\volmgrx.sys
22:03:53.0655 0x11b8 volmgrx - ok
22:03:53.0686 0x11b8 [ F497F67932C6FA693D7DE2780631CFE7, DAE544ED99D2CF570DA31343BD87D2F856D0D13529656D38E1BF854C77F017F6 ] volsnap C:\windows\system32\drivers\volsnap.sys
22:03:53.0717 0x11b8 volsnap - ok
22:03:53.0780 0x11b8 [ 9DFA0CC2F8855A04816729651175B631, 37FD9E43A2A3F125E94A315FB4CD8A1B5499A5FD74806EB2D1E5DA88C070D3A3 ] vsmraid C:\windows\system32\DRIVERS\vsmraid.sys
22:03:53.0780 0x11b8 vsmraid - ok
22:03:53.0842 0x11b8 [ 209A3B1901B83AEB8527ED211CCE9E4C, 1A431F6409F8E0531F600F8F988ECECECB902DA26BBAAF1DE74A5CAC29A7CB44 ] VSS C:\windows\system32\vssvc.exe
22:03:53.0904 0x11b8 VSS - ok
22:03:53.0951 0x11b8 [ 90567B1E658001E79D7C8BBD3DDE5AA6, EFC23BEEA7F54A2DC56CB523DAD1AF0358D904C5278BF08873910E2DB3F13557 ] vwifibus C:\windows\system32\DRIVERS\vwifibus.sys
22:03:53.0951 0x11b8 vwifibus - ok
22:03:53.0982 0x11b8 [ 7090D3436EEB4E7DA3373090A23448F7, 3A130B28F2BFA7DCEC8596C4CE4E187B019F5ECF1AAC8DD1BBDE9CBD2428FEC2 ] vwififlt C:\windows\system32\DRIVERS\vwififlt.sys
22:03:53.0982 0x11b8 vwififlt - ok
22:03:54.0014 0x11b8 [ A3F04CBEA6C2A10E6CB01F8B47611882, 32AFE18B07FECA30BC95831A5DC94C784E543784DF16165334A777DC84E91EF3 ] vwifimp C:\windows\system32\DRIVERS\vwifimp.sys
22:03:54.0014 0x11b8 vwifimp - ok
22:03:54.0045 0x11b8 [ 55187FD710E27D5095D10A472C8BAF1C, AE298E2D3BA366BCBDC092C717214C181E8843FA564A6DFB07FC3238A5A68DC3 ] W32Time C:\windows\system32\w32time.dll
22:03:54.0092 0x11b8 W32Time - ok
22:03:54.0123 0x11b8 [ DE3721E89C653AA281428C8A69745D90, 501C78056ED4295625D8A5412025FD2F0CA24077044D3A5800BA79DF3D946516 ] WacomPen C:\windows\system32\DRIVERS\wacompen.sys
22:03:54.0123 0x11b8 WacomPen - ok
22:03:54.0185 0x11b8 [ 3C3C78515F5AB448B022BDF5B8FFDD2E, 35284174A42039C3C1FF8A3C8BC187A5E067C7782FC62D19749C2CB28C4E36C7 ] WANARP C:\windows\system32\DRIVERS\wanarp.sys
22:03:54.0185 0x11b8 WANARP - ok
22:03:54.0185 0x11b8 [ 3C3C78515F5AB448B022BDF5B8FFDD2E, 35284174A42039C3C1FF8A3C8BC187A5E067C7782FC62D19749C2CB28C4E36C7 ] Wanarpv6 C:\windows\system32\DRIVERS\wanarp.sys
22:03:54.0185 0x11b8 Wanarpv6 - ok
22:03:54.0294 0x11b8 [ 353A04C273EC58475D8633E75CCD5604, FFAE53B6B53AEFC9E8A10BF27480E072D74430276BEB532FE1D473E9616D8CE0 ] WatAdminSvc C:\windows\system32\Wat\WatAdminSvc.exe
22:03:54.0357 0x11b8 WatAdminSvc - ok
22:03:54.0435 0x11b8 [ 691E3285E53DCA558E1A84667F13E15A, 12EDB66EF8FC100402BEA221F354D3BD5542F6DDF715B6E7D873D6BAE7E3D329 ] wbengine C:\windows\system32\wbengine.exe
22:03:54.0528 0x11b8 wbengine - ok
22:03:54.0544 0x11b8 [ 9614B5D29DC76AC3C29F6D2D3AA70E67, A2FFB92F0030B4CD771E862DA575ECCF2F3A5B4B85858C1241A0C59262C0EC88 ] WbioSrvc C:\windows\System32\wbiosrvc.dll
22:03:54.0575 0x11b8 WbioSrvc - ok
22:03:54.0606 0x11b8 [ 34EEE0DFAADB4F691D6D5308A51315DC, A040A03E25A0C78B9E26F86C2DF95BCAF8E7EC90183CEB295615D3265350EBEE ] wcncsvc C:\windows\System32\wcncsvc.dll
22:03:54.0684 0x11b8 wcncsvc - ok
22:03:54.0716 0x11b8 [ 5D930B6357A6D2AF4D7653BDABBF352F, 677FF2ED14EE0B0CAA710DA81556CC16D5971DAB10E7C7432D167A87CA6F0EAA ] WcsPlugInService C:\windows\System32\WcsPlugInService.dll
22:03:54.0716 0x11b8 WcsPlugInService - ok
22:03:54.0747 0x11b8 [ 1112A9BADACB47B7C0BB0392E3158DFF, 1AE2AFA125973571F91E6945FE8A735F63D76EBB250A0075D98C580167FD9ED4 ] Wd C:\windows\system32\DRIVERS\wd.sys
22:03:54.0747 0x11b8 Wd - ok
22:03:54.0794 0x11b8 [ A840213F1ACDCC175B4D1D5AAEAC0D7A, B20F7CAEEA790290072BC170EBEEADB4C19E1C40DB0B3FE0D4A640D0D82300D6 ] Wdf01000 C:\windows\system32\drivers\Wdf01000.sys
22:03:54.0840 0x11b8 Wdf01000 - ok
22:03:54.0856 0x11b8 [ 46EF9DC96265FD0B423DB72E7C38C2A5, 43801A51FB0E45CFFC73DF6441B54A75FC2FEAF5E0424DFE7AB04FC26CF6CD16 ] WdiServiceHost C:\windows\system32\wdi.dll
22:03:54.0872 0x11b8 WdiServiceHost - ok
22:03:54.0872 0x11b8 [ 46EF9DC96265FD0B423DB72E7C38C2A5, 43801A51FB0E45CFFC73DF6441B54A75FC2FEAF5E0424DFE7AB04FC26CF6CD16 ] WdiSystemHost C:\windows\system32\wdi.dll
22:03:54.0887 0x11b8 WdiSystemHost - ok
22:03:54.0965 0x11b8 [ A9D880F97530D5B8FEE278923349929D, 6A293E2DB9B7C434EA8B4CD4861E11905D46BD60E014AE27B74DC8C4B2DDF834 ] WebClient C:\windows\System32\webclnt.dll
22:03:54.0981 0x11b8 WebClient - ok
22:03:55.0012 0x11b8 [ 760F0AFE937A77CFF27153206534F275, A53940BA28854486FF18F16B98A3314B36322B0B6EFB54D08B921315BEB0ADD5 ] Wecsvc C:\windows\system32\wecsvc.dll
22:03:55.0028 0x11b8 Wecsvc - ok
22:03:55.0043 0x11b8 [ AC804569BB2364FB6017370258A4091B, 1856F354146A5946F3E7D0DD09726FC8A3502B0F0776FEADDF10669C81CC28E2 ] wercplsupport C:\windows\System32\wercplsupport.dll
22:03:55.0059 0x11b8 wercplsupport - ok
22:03:55.0090 0x11b8 [ 08E420D873E4FD85241EE2421B02C4A4, E1E9436EB096FF7DE9A76DA6217035257EF9FC7565DDB9016DCA3859E7F1EF0F ] WerSvc C:\windows\System32\WerSvc.dll
22:03:55.0090 0x11b8 WerSvc - ok
22:03:55.0137 0x11b8 [ 8B9A943F3B53861F2BFAF6C186168F79, 88E2F79F32AFBA17CB8377A508B83A1EC2315E9F3A365F591C87FE4525AA6713 ] WfpLwf C:\windows\system32\DRIVERS\wfplwf.sys
22:03:55.0137 0x11b8 WfpLwf - ok
22:03:55.0152 0x11b8 [ 5CF95B35E59E2A38023836FFF31BE64C, CEA21302B3E855EE592810D4E0DE10E47A47A393064C435463CD54598735CD8D ] WIMMount C:\windows\system32\drivers\wimmount.sys
22:03:55.0152 0x11b8 WIMMount - ok
22:03:55.0246 0x11b8 [ 082CF481F659FAE0DE51AD060881EB47, BB67D2AF0BB9192D4CCF66C23D80CE5A1B38715556D94E2561DBF8F805FA30A5 ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll
22:03:55.0293 0x11b8 WinDefend - ok
22:03:55.0308 0x11b8 WinHttpAutoProxySvc - ok
22:03:55.0433 0x11b8 [ F62E510B6AD4C21EB9FE8668ED251826, FA3E5CAC3E67E49377320CFBE4646585E6B62168292768FEA81E4623F9166890 ] Winmgmt C:\windows\system32\wbem\WMIsvc.dll
22:03:55.0449 0x11b8 Winmgmt - ok
22:03:55.0527 0x11b8 [ 1B91CD34EA3A90AB6A4EF0550174F4CC, 5B6618615EBFBA594C945AD35F5C68DA8C6053892B6D12D626BB6120910D80DC ] WinRM C:\windows\system32\WsmSvc.dll
22:03:55.0605 0x11b8 WinRM - ok
22:03:55.0636 0x11b8 [ A67E5F9A400F3BD1BE3D80613B45F708, E170A8BD31A779403DC9C43ED6483DA8E186512D3EE700B87F6BA292E284E367 ] WinUSB C:\windows\system32\DRIVERS\WinUSB.sys
22:03:55.0636 0x11b8 WinUSB - ok
22:03:55.0698 0x11b8 [ 16935C98FF639D185086A3529B1F2067, E9C6B73A572A04FCE9B1B0E6815F941B10332D9A6D55B92927C2B1275F119091 ] Wlansvc C:\windows\System32\wlansvc.dll
22:03:55.0761 0x11b8 Wlansvc - ok
22:03:55.0823 0x11b8 [ 6067ACEF367E79914AF628FA1E9B5330, 491A705267B48C103E00B26BBD21FA8829DB03A88343CBC27264CEE5DE8C8DEF ] wlcrasvc C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
22:03:55.0823 0x11b8 wlcrasvc - ok
22:03:55.0917 0x11b8 [ 0A70F4022EC2E14C159EFC4F69AA2477, FF248136576F9803762C54DE5439D3411B52DCBC95B93176A5DAB857967D9AC4 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
22:03:56.0010 0x11b8 wlidsvc - ok
22:03:56.0042 0x11b8 [ 0217679B8FCA58714C3BF2726D2CA84E, 4494984B922DCF24D37BCD0E6831CEBD07D1CA49235D04E821D17ED3DF84ED2A ] WmiAcpi C:\windows\system32\drivers\wmiacpi.sys
22:03:56.0057 0x11b8 WmiAcpi - ok
22:03:56.0088 0x11b8 [ 6EB6B66517B048D87DC1856DDF1F4C3F, EBB534C4829477C70062ADBB5626236B02FE563A544C53FA255E79F3CA170FE8 ] wmiApSrv C:\windows\system32\wbem\WmiApSrv.exe
22:03:56.0088 0x11b8 wmiApSrv - ok
22:03:56.0213 0x11b8 [ 3B40D3A61AA8C21B88AE57C58AB3122E, 6C67DCB007C3CDF2EB0BBF5FD89C32CD7800C20F7166872F8C387BE262C5CD21 ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
22:03:56.0260 0x11b8 WMPNetworkSvc - ok
22:03:56.0291 0x11b8 [ A2F0EC770A92F2B3F9DE6D518E11409C, 6838F2148B11285E00DC449D51F8AD85AAE57694E89BA2C607B87AC1C650D845 ] WPCSvc C:\windows\System32\wpcsvc.dll
22:03:56.0307 0x11b8 WPCSvc - ok
22:03:56.0354 0x11b8 [ AA53356D60AF47EACC85BC617A4F3F66, 155CB8112AA382D841C1891750FF29EF4F1BF716CD9CDF0F2243209E2CCCAC98 ] WPDBusEnum C:\windows\system32\wpdbusenum.dll
22:03:56.0354 0x11b8 WPDBusEnum - ok
22:03:56.0385 0x11b8 [ 6DB3276587B853BF886B69528FDB048C, 9972FF6DF0DF6F86D1E9BCEF4C29064748B217DA196B0633C30D3D580144951C ] ws2ifsl C:\windows\system32\drivers\ws2ifsl.sys
22:03:56.0385 0x11b8 ws2ifsl - ok
22:03:56.0432 0x11b8 [ 6F5D49EFE0E7164E03AE773A3FE25340, 15B6AFF7455538189A96F8863CC995A271E02C6FBDAC15B037D44DDA65E61339 ] wscsvc C:\windows\System32\wscsvc.dll
22:03:56.0432 0x11b8 wscsvc - ok
22:03:56.0447 0x11b8 WSearch - ok
22:03:56.0541 0x11b8 [ FC3EC24FCE372C89423E015A2AC1A31E, 8D028182CF83667D3E4D148979972D208FA6D9B8540EE47A0A7831B770ECD257 ] wuauserv C:\windows\system32\wuaueng.dll
22:03:56.0650 0x11b8 wuauserv - ok
22:03:56.0681 0x11b8 [ 06E6F32C8D0A3F66D956F57B43A2E070, 9A6BD96A28294B0372F16E13D652FD603308F64B74A56E41E0C68C5E8011F943 ] WudfPf C:\windows\system32\drivers\WudfPf.sys
22:03:56.0697 0x11b8 WudfPf - ok
22:03:56.0759 0x11b8 [ 867C301E8B790040AE9CF6486E8041DF, D867D6498C987944D99508B2FAD6D6B749FA1EDFE8124B0863D4A642352F0855 ] WUDFRd C:\windows\system32\DRIVERS\WUDFRd.sys
22:03:56.0759 0x11b8 WUDFRd - ok
22:03:56.0790 0x11b8 [ FE47B7BC8EA320C2D9B5E5BF6E303765, 34518DBD1E9EA6E5DA62273B18613761E1D9C6B4E074A93C6D639FBAF02222EA ] wudfsvc C:\windows\System32\WUDFSvc.dll
22:03:56.0806 0x11b8 wudfsvc - ok
22:03:56.0837 0x11b8 [ 7CC38741B8F68F1E0D5D79DA6123666A, F90D2DA1C9AFB506C381CD386E1430931B5F81813FEDFD720F87FBC54E7A00DA ] WwanSvc C:\windows\System32\wwansvc.dll
22:03:56.0868 0x11b8 WwanSvc - ok
22:03:56.0900 0x11b8 [ 46686FE8915BD8B2FEB3A876E367010C, 3983AE34B3505DC176AA98EA3B5BD76BC0FEBAB2AD39AC973807836C1A4D5163 ] ZTEusbmdm6k C:\windows\system32\DRIVERS\ZTEusbmdm6k.sys
22:03:56.0900 0x11b8 ZTEusbmdm6k - ok
22:03:56.0931 0x11b8 [ 46686FE8915BD8B2FEB3A876E367010C, 3983AE34B3505DC176AA98EA3B5BD76BC0FEBAB2AD39AC973807836C1A4D5163 ] ZTEusbnmea C:\windows\system32\DRIVERS\ZTEusbnmea.sys
22:03:56.0946 0x11b8 ZTEusbnmea - ok
22:03:56.0978 0x11b8 [ 46686FE8915BD8B2FEB3A876E367010C, 3983AE34B3505DC176AA98EA3B5BD76BC0FEBAB2AD39AC973807836C1A4D5163 ] ZTEusbser6k C:\windows\system32\DRIVERS\ZTEusbser6k.sys
22:03:56.0978 0x11b8 ZTEusbser6k - ok
22:03:57.0009 0x11b8 ================ Scan global ===============================
22:03:57.0056 0x11b8 [ DAB748AE0439955ED2FA22357533DDDB, 73EDD402C7479DDCE1998D0C7E99E1EC2974F64EFC33A851439CC85D09EDCDF9 ] C:\windows\system32\basesrv.dll
22:03:57.0102 0x11b8 [ 1F5F07091D50244F17DD8D5147A628CC, 2F2B84BD1C052F44662960953C0EC91F9233D4D8DD06512E3E3BE43CE216BCB6 ] C:\windows\system32\winsrv.dll
22:03:57.0134 0x11b8 [ 1F5F07091D50244F17DD8D5147A628CC, 2F2B84BD1C052F44662960953C0EC91F9233D4D8DD06512E3E3BE43CE216BCB6 ] C:\windows\system32\winsrv.dll
22:03:57.0165 0x11b8 [ 364455805E64882844EE9ACB72522830, 906561DBBB33F744844CF27E456226044C85DF0FCFD26DE1FD11E09E2CFA6F8F ] C:\windows\system32\sxssrv.dll
22:03:57.0196 0x11b8 [ 5F1B6A9C35D3D5CA72D6D6FDEF9747D6, D7BC4ED605B32274B45328FD9914FB0E7B90D869A38F0E6F94FB1BF4E9E2B407 ] C:\windows\system32\services.exe
22:03:57.0258 0x11b8 [ Global ] - ok
22:03:57.0258 0x11b8 ================ Scan MBR ==================================
22:03:57.0274 0x11b8 [ 5C616939100B85E558DA92B899A0FC36 ] \Device\Harddisk0\DR0
22:03:57.0664 0x11b8 \Device\Harddisk0\DR0 - ok
22:03:57.0664 0x11b8 ================ Scan VBR ==================================
22:03:57.0664 0x11b8 [ 66D7D45DA4961A54C43189C175127D53 ] \Device\Harddisk0\DR0\Partition1
22:03:57.0664 0x11b8 \Device\Harddisk0\DR0\Partition1 - ok
22:03:57.0664 0x11b8 [ C064C5927791ED0BF4A748F65EE800DD ] \Device\Harddisk0\DR0\Partition2
22:03:57.0711 0x11b8 \Device\Harddisk0\DR0\Partition2 - ok
22:03:57.0711 0x11b8 [ 294ED0AEE283BCACBEAD8075278BBD5E ] \Device\Harddisk0\DR0\Partition3
22:03:57.0711 0x11b8 \Device\Harddisk0\DR0\Partition3 - ok
22:03:57.0711 0x11b8 [ 30556522DA7CE247B31BFC05507091C5 ] \Device\Harddisk0\DR0\Partition4
22:03:57.0726 0x11b8 \Device\Harddisk0\DR0\Partition4 - ok
22:03:57.0726 0x11b8 ================ Scan generic autorun ======================
22:03:57.0773 0x11b8 [ 9195717C34DAC6C598EC9096A7D5B993, 3B5DEF1BA1DB762D4BF34E13222BE97D524B018182CB85FF037483D10FBCFFA6 ] C:\Program Files\Hewlett-Packard\HP HotKey Support\QLBController.exe
22:03:57.0789 0x11b8 QLBController - ok
22:03:57.0836 0x11b8 [ 75B2B53A5A75087D48ADE7C1CEBC3687, 1BA5B45E76EFA059D0CB3DC2670F63CCAD7557093087B3F01EF2409215C9068D ] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
22:03:57.0836 0x11b8 IAAnotif - ok
22:03:57.0882 0x11b8 [ C3840B7ABDE3F94F80FD918CBABBF83D, F0B2F39A8F3DBDF5901A0F5F2EB83BBD14DB4C8C872FB6DDABA5360DA7F2B1A3 ] C:\Program Files\PDF Complete\pdfsty.exe
22:03:57.0914 0x11b8 PDF Complete - ok
22:03:58.0070 0x11b8 [ 20CB286C4591EEA68778CA6626D70D47, 3F8FC588B23128754CCACC2C83BF3265FB81605AED3A613DA34261806CFAEA03 ] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
22:03:58.0132 0x11b8 SynTPEnh - ok
22:03:58.0179 0x11b8 [ D018F156D00D4C2DDCD0D11118E4AE81, 330ECE67B48F7943C6AC31C8E8ADCA971FCBABB585FB2AF1F8252A77A75FAA99 ] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
22:03:58.0194 0x11b8 WirelessAssistant - ok
22:03:58.0226 0x11b8 [ 16BE8913B2C1743A74E96D3BF136A88D, A7DB333352F170D3E6C7160FFDC7DDCA8C4BE9D1ED92041974BA544071D50B34 ] C:\windows\system32\igfxtray.exe
22:03:58.0241 0x11b8 IgfxTray - ok
22:03:58.0257 0x11b8 [ 5D26401C9E4788F8C4DC9E7B0765415E, DF7F199F303A019316EAF0957F2C4EA81177526E6381A0585CCB8E33A333C71B ] C:\windows\system32\hkcmd.exe
22:03:58.0272 0x11b8 HotKeysCmds - ok
22:03:58.0304 0x11b8 [ CC6891630C264442508C9A5B2F74A6EB, 77FB48952C84CB99CE89811FE65CD62EEE0F7833CC64CE13AE46E066FE04978E ] C:\windows\system32\igfxpers.exe
22:03:58.0304 0x11b8 Persistence - ok
22:03:58.0366 0x11b8 [ E58C19CA85F647B7D76B90265DB90C79, 8B6E9D233007208D6ACEDE5A31342CE37667300224F3E7198F7B9A6C9CB2BBC6 ] C:\Program Files\IDT\WDM\sttray.exe
22:03:58.0397 0x11b8 SysTrayApp - ok
22:03:58.0491 0x11b8 [ C2136296CD0BE37EB068EB6F7B57FF9A, CAA0F5D8949EDEFB6A7FC6E4543D1CA1605955F14F0ADBE180B7ACEAAD684DCE ] C:\Program Files\Nuance\PDF Professional 6\pdfpro6hook.exe
22:03:58.0538 0x11b8 PDFHook - ok
22:03:58.0569 0x11b8 [ 2D8F4EC37C9EE630DD801B9DD2DBDBC2, F81BC6CA3C6D615C0B12AC9AF4772A1FB4F4A58CBCDDE9D1E0644B923ECD1063 ] C:\Program Files\Nuance\PDF Professional 6\RegistryController.exe
22:03:58.0569 0x11b8 PDF6 Registry Controller - ok
22:03:58.0600 0x11b8 [ 757A595F75E7840A7132EC11E6E6188A, 95085E8B5432F76E0C50D79F74DECAD54662BB32FFDD575BC8CBAC2C79B1C069 ] C:\Program Files\Nuance\PDF Reader\Ereg\Ereg.exe
22:03:58.0616 0x11b8 Nuance PDF Reader-reminder - ok
22:03:58.0662 0x11b8 [ C98FF6C440E8967251F59C7919B505A1, 3486C9C855E52FD084FBA3276E296ED8647B445A52FC459B794367AAED48D817 ] C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
22:03:58.0678 0x11b8 Adobe Reader Speed Launcher - ok
22:03:58.0756 0x11b8 [ B8E421C0890356CD4A793D8A346D9096, 1FDA1E3C530DF98A258D95F6ED129D8AB11FBC90167E9455C0A85C24A6249F13 ] C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
22:03:58.0756 0x11b8 Suspicious file ( NoAccess ): C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe. md5: B8E421C0890356CD4A793D8A346D9096, sha256: 1FDA1E3C530DF98A258D95F6ED129D8AB11FBC90167E9455C0A85C24A6249F13
22:03:58.0756 0x11b8 Adobe ARM - detected LockedFile.Multi.Generic ( 1 )
22:04:01.0439 0x11b8 Detect skipped due to KSN trusted
22:04:01.0439 0x11b8 Adobe ARM - ok
22:04:01.0502 0x11b8 [ 207C637BD5C8E56EE5A83340DF5387A7, 98E4A326568022D5F6C0B66871D252C3F82F47DCC7C0F8D3D850540FC6312F96 ] C:\Program Files\Samsung\Kies\KiesTrayAgent.exe
22:04:01.0517 0x11b8 KiesTrayAgent - ok
22:04:01.0564 0x11b8 [ 5B6E8E09BE6401A7E022F52FDFCB2FF8, 471C556CF9405BBB380A8CEFE945C126B954B7C94F79CC72441B51F80141FC5E ] C:\Program Files\Common Files\Java\Java Update\jusched.exe
22:04:01.0580 0x11b8 SunJavaUpdateSched - ok
22:04:01.0798 0x11b8 [ 4BFA1849DC7AA3CB99C160D9EB96C67B, D2B411ED4478FA683F8A51F5AB42F3EC33741421C480F848E04E5DD2A8032525 ] C:\Program Files\AVAST Software\Avast\AvastUI.exe
22:04:01.0954 0x11b8 AvastUI.exe - ok
22:04:02.0048 0x11b8 [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files\Windows Sidebar\Sidebar.exe
22:04:02.0126 0x11b8 Sidebar - ok
22:04:02.0157 0x11b8 [ BBA1A5B86134F496B926DDAF247DB871, 636990AE49C55189B7EF69C419787440B57EC0BAD98A9C280E1028F741BB222E ] C:\Windows\System32\mctadmin.exe
22:04:02.0157 0x11b8 mctadmin - ok
22:04:02.0204 0x11b8 [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files\Windows Sidebar\Sidebar.exe
22:04:02.0235 0x11b8 Sidebar - ok
22:04:02.0235 0x11b8 [ BBA1A5B86134F496B926DDAF247DB871, 636990AE49C55189B7EF69C419787440B57EC0BAD98A9C280E1028F741BB222E ] C:\Windows\System32\mctadmin.exe
22:04:02.0250 0x11b8 mctadmin - ok
22:04:02.0328 0x11b8 [ 726F239323E028818AB79D988CA3B01B, 1FED61A7872797A08F9DE4D2178CF438C9ADD1EAAD66571EAE790B0BB8FCF3A0 ] C:\Program Files\Hewlett-Packard\HP Advisor\Dock\HPAdvisorDock.exe
22:04:02.0391 0x11b8 HPAdvisorDock - ok
22:04:02.0438 0x11b8 [ 6BF7676296D5359AFC135A5397000053, D31B9BCB856D6EFDEA27E4D4D341FF939BCBF0E8C97786B447C2074B3C68298E ] C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe
22:04:02.0438 0x11b8 ISUSPM - ok
22:04:02.0516 0x11b8 [ A07E8935CC8DCE6DB787DC99129CA17C, D432E0414E2B59B90A8826984F4649AF810E8385C7CCEDF646B99C027113301A ] C:\Program Files\DAEMON Tools Lite\DTLite.exe
22:04:02.0562 0x11b8 DAEMON Tools Lite - ok
22:04:02.0625 0x11b8 [ 4835856484D87434BD15EAED93C77EB2, 6723538FED51A9AE476A4E0F0A56E870BB10039CC52149AFFBDBBA01F0BDA5AB ] C:\Program Files\Samsung\Kies\Kies.exe
22:04:02.0672 0x11b8 KiesPreload - ok
22:04:02.0750 0x11b8 [ 60D255D3DE6D4BBA814418ED85C721A5, AE424DEDE248868A04E789DD052586572623E0410102829E5BD8AFA3DBF19D2A ] C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
22:04:02.0781 0x11b8 KiesPDLR - ok
22:04:02.0812 0x11b8 [ 9CD0A8C7D94234A9F5CE10C44D393D4C, D82C147AC21795EC14337B4E075BE1D450CE5E34DE751BC09F5FDC0057BAD65E ] C:\Program Files\Samsung\Kies\KiesAirMessage.exe
22:04:02.0843 0x11b8 KiesAirMessage - ok
22:04:02.0843 0x11b8 Waiting for KSN requests completion. In queue: 130
22:04:03.0857 0x11b8 Waiting for KSN requests completion. In queue: 130
22:04:04.0871 0x11b8 Waiting for KSN requests completion. In queue: 130
22:04:05.0932 0x11b8 AV detected via SS2: avast! Antivirus, C:\Program Files\AVAST Software\Avast\VisthAux.exe ( 9.0.2016.330 ), 0x41000 ( enabled : updated )
22:04:05.0932 0x11b8 Win FW state via NFP2: enabled
22:04:08.0678 0x11b8 ============================================================
22:04:08.0678 0x11b8 Scan finished
22:04:08.0678 0x11b8 ============================================================
22:04:08.0678 0x0f90 Detected object count: 0
22:04:08.0693 0x0f90 Actual detected object count: 0
22:04:25.0261 0x1738 Deinitialize success
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 98 hostů