Ahoj prosím o kontrolu logu.
Druhý den mi avast neustále hlásí zablokované hrozby getusaaall.
Ani úplný test systému nic neobjevil.
Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 18:30:53, on 10. 7. 2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17126)
FIREFOX: 30.0 (cs)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Opera\22.0.1471.70\opera.exe
C:\Program Files (x86)\Opera\22.0.1471.70\opera_crashreporter.exe
C:\Program Files (x86)\Opera\22.0.1471.70\opera.exe
C:\Program Files (x86)\Opera\22.0.1471.70\opera.exe
C:\Program Files (x86)\Opera\22.0.1471.70\opera.exe
C:\Program Files (x86)\Opera\22.0.1471.70\opera.exe
C:\Program Files (x86)\Opera\22.0.1471.70\opera.exe
C:\Downloads\Software\HijackThis.exe
C:\WINDOWS\SysWOW64\DllHost.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Free Download Manager - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files (x86)\Free Download Manager\iefdm2.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe -r
O4 - HKLM\..\Run: [VirtualCloneDrive] "C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: VIA Karaoke digital mixer Service (VIAKaraokeService) - Unknown owner - C:\Windows\system32\viakaraokesrv.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 6753 bytes
prosím kontrolu logu Vyřešeno
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: prosím kontrolu logu
Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected. Poté klikni na Main (hlavní stránku ) a klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.
- Pokud používáš jen Google Chrome , tak ATF nemusíš použít.
Stáhni si TFC
Otevři soubor a zavři všechny ostatní okna, Klikni na Start k zahájení procesu. Program by neměl trvat dlouho.
Poté by se měl PC restartovat, pokud ne , proveď sám.
Stáhni AdwCleaner (by Xplode)
http://www.bleepingcomputer.com/download/adwcleaner/
Ulož si ho na svojí plochu
Ukonči všechny programy , okna a prohlížeče
Spusť program poklepáním a klikni na „Prohledat-Scan“
Po skenu se objeví log ( jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.
Stáhni si Malwarebytes' Anti-Malware
- Při instalaci odeber zatržítko u „Povolit bezplatnou zkušební verzi Malwarebytes' Anti-Malware Premium“
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a klikni na Skenovat nyní a
- po proběhnutí programu se ti objeví hláška vpravo dole tak klikni na b] Kopírovat do schránky [/b]a a vlož sem celý log.
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Pokud budou problémy , spusť v nouz. režimu.
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected. Poté klikni na Main (hlavní stránku ) a klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.
- Pokud používáš jen Google Chrome , tak ATF nemusíš použít.
Stáhni si TFC
Otevři soubor a zavři všechny ostatní okna, Klikni na Start k zahájení procesu. Program by neměl trvat dlouho.
Poté by se měl PC restartovat, pokud ne , proveď sám.
Stáhni AdwCleaner (by Xplode)
http://www.bleepingcomputer.com/download/adwcleaner/
Ulož si ho na svojí plochu
Ukonči všechny programy , okna a prohlížeče
Spusť program poklepáním a klikni na „Prohledat-Scan“
Po skenu se objeví log ( jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.
Stáhni si Malwarebytes' Anti-Malware
- Při instalaci odeber zatržítko u „Povolit bezplatnou zkušební verzi Malwarebytes' Anti-Malware Premium“
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a klikni na Skenovat nyní a
- po proběhnutí programu se ti objeví hláška vpravo dole tak klikni na b] Kopírovat do schránky [/b]a a vlož sem celý log.
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Pokud budou problémy , spusť v nouz. režimu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: prosím kontrolu logu
AdwCleaner v3.215 - Report created 10/07/2014 at 19:45:04
# Updated 09/07/2014 by Xplode
# Operating System : Windows 8.1 (64 bits)
# Username : Petr - PETRMALENKA
# Running from : C:\Users\Petr\Desktop\AdwCleaner.exe
# Option : Scan
***** [ Services ] *****
***** [ Files / Folders ] *****
Folder Found : C:\Users\Petr\AppData\Local\torch
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}
Key Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{2318C2B1-4965-11D4-9B18-009027A5CD4F}]
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.17126
-\\ Mozilla Firefox v30.0 (cs)
[ File : C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\iq10j0za.default\prefs.js ]
Line Found : user_pref("extensions.5yw7Se.scode", "(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1||url.indexOf(\"warnalert11.com\")>-1||url.indexOf(\"sumorobo.[...]
-\\ Google Chrome v35.0.1916.153
[ File : C:\Users\oem\AppData\Local\Google\Chrome\User Data\Default\preferences ]
Found [Extension] : dhdepfaagokllfmhfbcfmocaeigmoebo
Found [Extension] : fbmimoidopbghbcmdmpkjaffffmcbmbg
Found [Extension] : hphibigbodkkohoglgfkddblldpfohjl
Found [Extension] : kdcnnmifdmlmjffdgeieikcokcogpbej
Found [Extension] : kincjchfokkeneeofpeefomkikfkiedl
Found [Extension] : kkkeikdkpjenmoiicggnnodbkebafgpc
Found [Extension] : pgmfkblbflahhponhjmkcnpjinenhlnc
[ File : C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\preferences ]
Found [Extension] : aaaaimdcedbpbcjjbbnfcbbjcngmomic
*************************
AdwCleaner[R5].txt - [1642 octets] - [22/03/2014 10:17:52]
AdwCleaner[R6].txt - [2127 octets] - [10/07/2014 19:45:04]
AdwCleaner[S1].txt - [1692 octets] - [22/03/2014 10:18:24]
########## EOF - C:\AdwCleaner\AdwCleaner[R6].txt - [2247 octets] ##########
Malwarebytes Anti-Malware
www.malwarebytes.org
Scan Date: 10. 7. 2014
Scan Time: 19:50:56
Logfile: log.txt
Administrator: Yes
Version: 2.00.2.1012
Malware Database: v2014.07.10.05
Rootkit Database: v2014.07.09.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled
OS: Windows 8.1
CPU: x64
File System: NTFS
User: Petr
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 357129
Time Elapsed: 9 min, 34 sec
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled
Processes: 0
(No malicious items detected)
Modules: 0
(No malicious items detected)
Registry Keys: 0
(No malicious items detected)
Registry Values: 0
(No malicious items detected)
Registry Data: 0
(No malicious items detected)
Folders: 0
(No malicious items detected)
Files: 0
(No malicious items detected)
Physical Sectors: 0
(No malicious items detected)
(end)
# Updated 09/07/2014 by Xplode
# Operating System : Windows 8.1 (64 bits)
# Username : Petr - PETRMALENKA
# Running from : C:\Users\Petr\Desktop\AdwCleaner.exe
# Option : Scan
***** [ Services ] *****
***** [ Files / Folders ] *****
Folder Found : C:\Users\Petr\AppData\Local\torch
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}
Key Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{2318C2B1-4965-11D4-9B18-009027A5CD4F}]
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.17126
-\\ Mozilla Firefox v30.0 (cs)
[ File : C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\iq10j0za.default\prefs.js ]
Line Found : user_pref("extensions.5yw7Se.scode", "(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1||url.indexOf(\"warnalert11.com\")>-1||url.indexOf(\"sumorobo.[...]
-\\ Google Chrome v35.0.1916.153
[ File : C:\Users\oem\AppData\Local\Google\Chrome\User Data\Default\preferences ]
Found [Extension] : dhdepfaagokllfmhfbcfmocaeigmoebo
Found [Extension] : fbmimoidopbghbcmdmpkjaffffmcbmbg
Found [Extension] : hphibigbodkkohoglgfkddblldpfohjl
Found [Extension] : kdcnnmifdmlmjffdgeieikcokcogpbej
Found [Extension] : kincjchfokkeneeofpeefomkikfkiedl
Found [Extension] : kkkeikdkpjenmoiicggnnodbkebafgpc
Found [Extension] : pgmfkblbflahhponhjmkcnpjinenhlnc
[ File : C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\preferences ]
Found [Extension] : aaaaimdcedbpbcjjbbnfcbbjcngmomic
*************************
AdwCleaner[R5].txt - [1642 octets] - [22/03/2014 10:17:52]
AdwCleaner[R6].txt - [2127 octets] - [10/07/2014 19:45:04]
AdwCleaner[S1].txt - [1692 octets] - [22/03/2014 10:18:24]
########## EOF - C:\AdwCleaner\AdwCleaner[R6].txt - [2247 octets] ##########
Malwarebytes Anti-Malware
www.malwarebytes.org
Scan Date: 10. 7. 2014
Scan Time: 19:50:56
Logfile: log.txt
Administrator: Yes
Version: 2.00.2.1012
Malware Database: v2014.07.10.05
Rootkit Database: v2014.07.09.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled
OS: Windows 8.1
CPU: x64
File System: NTFS
User: Petr
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 357129
Time Elapsed: 9 min, 34 sec
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled
Processes: 0
(No malicious items detected)
Modules: 0
(No malicious items detected)
Registry Keys: 0
(No malicious items detected)
Registry Values: 0
(No malicious items detected)
Registry Data: 0
(No malicious items detected)
Folders: 0
(No malicious items detected)
Files: 0
(No malicious items detected)
Physical Sectors: 0
(No malicious items detected)
(end)
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: prosím kontrolu logu
Spusť znovu AdwCleaner (u Windows Vista či Windows7, klikni na AdwCleaner pravým a vyber „Spustit jako správce“
klikni na „Prohledat-Scan“, po prohledání klikni na „ Vymazat-Clean“
Program provede opravu, po automatickém restartu neukáže log (C:\AdwCleaner [S?].txt) , jeho obsah sem celý vlož.
Stáhni si Junkware Removal Tool by Thisisu
na svojí plochu.
Deaktivuj si svůj antivirový program. Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.
Stáhni si RogueKiller by Adlice Software
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit
-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
klikni na „Prohledat-Scan“, po prohledání klikni na „ Vymazat-Clean“
Program provede opravu, po automatickém restartu neukáže log (C:\AdwCleaner [S?].txt) , jeho obsah sem celý vlož.
Stáhni si Junkware Removal Tool by Thisisu
na svojí plochu.
Deaktivuj si svůj antivirový program. Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.
Stáhni si RogueKiller by Adlice Software
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit
-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: prosím kontrolu logu
# AdwCleaner v3.215 - Report created 11/07/2014 at 13:31:53
# Updated 09/07/2014 by Xplode
# Operating System : Windows 8.1 (64 bits)
# Username : Petr - PETRMALENKA
# Running from : C:\Users\Petr\Desktop\AdwCleaner.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
Folder Deleted : C:\Users\Petr\AppData\Local\torch
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{2318C2B1-4965-11D4-9B18-009027A5CD4F}]
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.17126
-\\ Mozilla Firefox v30.0 (cs)
[ File : C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\iq10j0za.default\prefs.js ]
Line Deleted : user_pref("extensions.5yw7Se.scode", "(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1||url.indexOf(\"warnalert11.com\")>-1||url.indexOf(\"sumorobo.[...]
-\\ Google Chrome v35.0.1916.153
[ File : C:\Users\oem\AppData\Local\Google\Chrome\User Data\Default\preferences ]
Deleted [Extension] : dhdepfaagokllfmhfbcfmocaeigmoebo
Deleted [Extension] : fbmimoidopbghbcmdmpkjaffffmcbmbg
Deleted [Extension] : hphibigbodkkohoglgfkddblldpfohjl
Deleted [Extension] : kdcnnmifdmlmjffdgeieikcokcogpbej
Deleted [Extension] : kincjchfokkeneeofpeefomkikfkiedl
Deleted [Extension] : kkkeikdkpjenmoiicggnnodbkebafgpc
Deleted [Extension] : pgmfkblbflahhponhjmkcnpjinenhlnc
[ File : C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\preferences ]
Deleted [Extension] : aaaaimdcedbpbcjjbbnfcbbjcngmomic
*************************
AdwCleaner[R5].txt - [1642 octets] - [22/03/2014 10:17:52]
AdwCleaner[R6].txt - [2335 octets] - [10/07/2014 19:46:33]
AdwCleaner[R7].txt - [2395 octets] - [11/07/2014 13:30:56]
AdwCleaner[S1].txt - [1692 octets] - [22/03/2014 10:18:24]
AdwCleaner[S2].txt - [2227 octets] - [11/07/2014 13:31:53]
########## EOF - C:\AdwCleaner\AdwCleaner[S2].txt - [2287 octets] ##########
# Updated 09/07/2014 by Xplode
# Operating System : Windows 8.1 (64 bits)
# Username : Petr - PETRMALENKA
# Running from : C:\Users\Petr\Desktop\AdwCleaner.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
Folder Deleted : C:\Users\Petr\AppData\Local\torch
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{2318C2B1-4965-11D4-9B18-009027A5CD4F}]
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.17126
-\\ Mozilla Firefox v30.0 (cs)
[ File : C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\iq10j0za.default\prefs.js ]
Line Deleted : user_pref("extensions.5yw7Se.scode", "(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1||url.indexOf(\"warnalert11.com\")>-1||url.indexOf(\"sumorobo.[...]
-\\ Google Chrome v35.0.1916.153
[ File : C:\Users\oem\AppData\Local\Google\Chrome\User Data\Default\preferences ]
Deleted [Extension] : dhdepfaagokllfmhfbcfmocaeigmoebo
Deleted [Extension] : fbmimoidopbghbcmdmpkjaffffmcbmbg
Deleted [Extension] : hphibigbodkkohoglgfkddblldpfohjl
Deleted [Extension] : kdcnnmifdmlmjffdgeieikcokcogpbej
Deleted [Extension] : kincjchfokkeneeofpeefomkikfkiedl
Deleted [Extension] : kkkeikdkpjenmoiicggnnodbkebafgpc
Deleted [Extension] : pgmfkblbflahhponhjmkcnpjinenhlnc
[ File : C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\preferences ]
Deleted [Extension] : aaaaimdcedbpbcjjbbnfcbbjcngmomic
*************************
AdwCleaner[R5].txt - [1642 octets] - [22/03/2014 10:17:52]
AdwCleaner[R6].txt - [2335 octets] - [10/07/2014 19:46:33]
AdwCleaner[R7].txt - [2395 octets] - [11/07/2014 13:30:56]
AdwCleaner[S1].txt - [1692 octets] - [22/03/2014 10:18:24]
AdwCleaner[S2].txt - [2227 octets] - [11/07/2014 13:31:53]
########## EOF - C:\AdwCleaner\AdwCleaner[S2].txt - [2287 octets] ##########
Re: prosím kontrolu logu
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.4 (04.06.2014:1)
OS: Windows 8.1 x64
Ran by Petr on p 11. 07. 2014 at 13:39:55,20
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL
~~~ Registry Keys
~~~ Files
~~~ Folders
~~~ FireFox
Emptied folder: C:\Users\Petr\AppData\Roaming\mozilla\firefox\profiles\iq10j0za.default\minidumps [5 files]
~~~ Chrome
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Policies\Google [Blacklisted Policy]
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on p 11. 07. 2014 at 13:47:33,89
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
RogueKiller V9.2.2.0 (x64) [Jul 11 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com
Operační systém : Windows 8.1 (6.3.9200 ) 64 bits version
Spuštěno v : Normální režim
Uživatel : Petr [Práva správce]
Mód : Kontrola -- Datum : 07/11/2014 14:02:09
¤¤¤ Škodlivé procesy: : 0 ¤¤¤
¤¤¤ ¤¤¤ Záznamy Registrů: : 10 ¤¤¤
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters | DhcpNameServer : 83.240.0.135 192.168.0.1 -> NALEZENO
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters | DhcpNameServer : 83.240.0.135 192.168.0.1 -> NALEZENO
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{EE0C896D-1F39-4A43-969B-4FF4C7F00D2C} | DhcpNameServer : 83.240.0.135 192.168.0.1 -> NALEZENO
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters\Interfaces\{EE0C896D-1F39-4A43-969B-4FF4C7F00D2C} | DhcpNameServer : 83.240.0.135 192.168.0.1 -> NALEZENO
[PUM.Policies] (X64) HKEY_USERS\S-1-5-21-3832753693-3646972138-179110667-1004\Software\Microsoft\Windows\CurrentVersion\Policies\System | DisableRegistryTools : 0 -> NALEZENO
[PUM.Policies] (X64) HKEY_USERS\S-1-5-21-3832753693-3646972138-179110667-1004\Software\Microsoft\Windows\CurrentVersion\Policies\System | DisableTaskMgr : 0 -> NALEZENO
[PUM.Policies] (X86) HKEY_USERS\S-1-5-21-3832753693-3646972138-179110667-1004\Software\Microsoft\Windows\CurrentVersion\Policies\System | DisableRegistryTools : 0 -> NALEZENO
[PUM.Policies] (X86) HKEY_USERS\S-1-5-21-3832753693-3646972138-179110667-1004\Software\Microsoft\Windows\CurrentVersion\Policies\System | DisableTaskMgr : 0 -> NALEZENO
[PUM.DesktopIcons] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {20D04FE0-3AEA-1069-A2D8-08002B30309D} : 1 -> NALEZENO
[PUM.DesktopIcons] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {59031a47-3f72-44a7-89c5-5595fe6b30ee} : 1 -> NALEZENO
¤¤¤ naplánované úlohy : 0 ¤¤¤
¤¤¤ Soubory : 0 ¤¤¤
¤¤¤ Soubor HOSTS : 0 ¤¤¤
¤¤¤ Antirootkit : 2 (Driver: NAHRÁNO) ¤¤¤
[Filter(Kernel.Filter)] \Driver\atapi @ \Device\Ide\IdeDeviceP1T0L0-1 : \Driver\ACPI @ Unknown (\SystemRoot\System32\Drivers\WppRecorder.sys)
[Filter(Kernel.Filter)] \Driver\atapi @ \Device\Ide\IdeDeviceP0T0L0-0 : \Driver\ACPI @ Unknown (\SystemRoot\System32\Drivers\WppRecorder.sys)
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Kontrola MBR : ¤¤¤
+++++ PhysicalDrive0: WDC WD10EZEX-75ZF5A0 ATA Device +++++
--- User ---
[MBR] 1ee8e506c5a0ee54fb586d72bcf54186
[BSP] 735150633449e4334c1e164ecd6d824a : Windows Vista/7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 2048 | Size: 351 MB
1 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 722925 | Size: 953515 MB
User = LL1 ... OK
User = LL2 ... OK
+++++ PhysicalDrive1: StoreJet Transcend USB Device +++++
--- User ---
[MBR] db5932378a13f66fbe3016928a256af9
[BSP] 3a1bbe8e77e23301029d9301b879d225 : Windows XP MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 64 | Size: 953867 MB
User = LL1 ... OK
Error reading LL2 MBR! ([32] Po?adavek není podporován. )
+++++ PhysicalDrive2: Generic- SD/MMC USB Device +++++
Error reading User MBR! ([15] Za?ízení není p?ipraveno. )
Error reading LL1 MBR! NOT VALID!
Error reading LL2 MBR! ([32] Po?adavek není podporován. )
+++++ PhysicalDrive3: Generic- Compact Flash USB Device +++++
Error reading User MBR! ([15] Za?ízení není p?ipraveno. )
Error reading LL1 MBR! NOT VALID!
Error reading LL2 MBR! ([32] Po?adavek není podporován. )
+++++ PhysicalDrive4: Generic- SM/xD-Picture USB Device +++++
Error reading User MBR! ([15] Za?ízení není p?ipraveno. )
Error reading LL1 MBR! NOT VALID!
Error reading LL2 MBR! ([32] Po?adavek není podporován. )
+++++ PhysicalDrive5: Generic- MS/MS-Pro USB Device +++++
Error reading User MBR! ([15] Za?ízení není p?ipraveno. )
Error reading LL1 MBR! NOT VALID!
Error reading LL2 MBR! ([32] Po?adavek není podporován. )
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.4 (04.06.2014:1)
OS: Windows 8.1 x64
Ran by Petr on p 11. 07. 2014 at 13:39:55,20
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL
~~~ Registry Keys
~~~ Files
~~~ Folders
~~~ FireFox
Emptied folder: C:\Users\Petr\AppData\Roaming\mozilla\firefox\profiles\iq10j0za.default\minidumps [5 files]
~~~ Chrome
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Policies\Google [Blacklisted Policy]
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on p 11. 07. 2014 at 13:47:33,89
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
RogueKiller V9.2.2.0 (x64) [Jul 11 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com
Operační systém : Windows 8.1 (6.3.9200 ) 64 bits version
Spuštěno v : Normální režim
Uživatel : Petr [Práva správce]
Mód : Kontrola -- Datum : 07/11/2014 14:02:09
¤¤¤ Škodlivé procesy: : 0 ¤¤¤
¤¤¤ ¤¤¤ Záznamy Registrů: : 10 ¤¤¤
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters | DhcpNameServer : 83.240.0.135 192.168.0.1 -> NALEZENO
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters | DhcpNameServer : 83.240.0.135 192.168.0.1 -> NALEZENO
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{EE0C896D-1F39-4A43-969B-4FF4C7F00D2C} | DhcpNameServer : 83.240.0.135 192.168.0.1 -> NALEZENO
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters\Interfaces\{EE0C896D-1F39-4A43-969B-4FF4C7F00D2C} | DhcpNameServer : 83.240.0.135 192.168.0.1 -> NALEZENO
[PUM.Policies] (X64) HKEY_USERS\S-1-5-21-3832753693-3646972138-179110667-1004\Software\Microsoft\Windows\CurrentVersion\Policies\System | DisableRegistryTools : 0 -> NALEZENO
[PUM.Policies] (X64) HKEY_USERS\S-1-5-21-3832753693-3646972138-179110667-1004\Software\Microsoft\Windows\CurrentVersion\Policies\System | DisableTaskMgr : 0 -> NALEZENO
[PUM.Policies] (X86) HKEY_USERS\S-1-5-21-3832753693-3646972138-179110667-1004\Software\Microsoft\Windows\CurrentVersion\Policies\System | DisableRegistryTools : 0 -> NALEZENO
[PUM.Policies] (X86) HKEY_USERS\S-1-5-21-3832753693-3646972138-179110667-1004\Software\Microsoft\Windows\CurrentVersion\Policies\System | DisableTaskMgr : 0 -> NALEZENO
[PUM.DesktopIcons] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {20D04FE0-3AEA-1069-A2D8-08002B30309D} : 1 -> NALEZENO
[PUM.DesktopIcons] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {59031a47-3f72-44a7-89c5-5595fe6b30ee} : 1 -> NALEZENO
¤¤¤ naplánované úlohy : 0 ¤¤¤
¤¤¤ Soubory : 0 ¤¤¤
¤¤¤ Soubor HOSTS : 0 ¤¤¤
¤¤¤ Antirootkit : 2 (Driver: NAHRÁNO) ¤¤¤
[Filter(Kernel.Filter)] \Driver\atapi @ \Device\Ide\IdeDeviceP1T0L0-1 : \Driver\ACPI @ Unknown (\SystemRoot\System32\Drivers\WppRecorder.sys)
[Filter(Kernel.Filter)] \Driver\atapi @ \Device\Ide\IdeDeviceP0T0L0-0 : \Driver\ACPI @ Unknown (\SystemRoot\System32\Drivers\WppRecorder.sys)
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Kontrola MBR : ¤¤¤
+++++ PhysicalDrive0: WDC WD10EZEX-75ZF5A0 ATA Device +++++
--- User ---
[MBR] 1ee8e506c5a0ee54fb586d72bcf54186
[BSP] 735150633449e4334c1e164ecd6d824a : Windows Vista/7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 2048 | Size: 351 MB
1 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 722925 | Size: 953515 MB
User = LL1 ... OK
User = LL2 ... OK
+++++ PhysicalDrive1: StoreJet Transcend USB Device +++++
--- User ---
[MBR] db5932378a13f66fbe3016928a256af9
[BSP] 3a1bbe8e77e23301029d9301b879d225 : Windows XP MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 64 | Size: 953867 MB
User = LL1 ... OK
Error reading LL2 MBR! ([32] Po?adavek není podporován. )
+++++ PhysicalDrive2: Generic- SD/MMC USB Device +++++
Error reading User MBR! ([15] Za?ízení není p?ipraveno. )
Error reading LL1 MBR! NOT VALID!
Error reading LL2 MBR! ([32] Po?adavek není podporován. )
+++++ PhysicalDrive3: Generic- Compact Flash USB Device +++++
Error reading User MBR! ([15] Za?ízení není p?ipraveno. )
Error reading LL1 MBR! NOT VALID!
Error reading LL2 MBR! ([32] Po?adavek není podporován. )
+++++ PhysicalDrive4: Generic- SM/xD-Picture USB Device +++++
Error reading User MBR! ([15] Za?ízení není p?ipraveno. )
Error reading LL1 MBR! NOT VALID!
Error reading LL2 MBR! ([32] Po?adavek není podporován. )
+++++ PhysicalDrive5: Generic- MS/MS-Pro USB Device +++++
Error reading User MBR! ([15] Za?ízení není p?ipraveno. )
Error reading LL1 MBR! NOT VALID!
Error reading LL2 MBR! ([32] Po?adavek není podporován. )
- Orcus
- člen Security týmu
-
Elite Level 10.5
- Příspěvky: 10645
- Registrován: duben 10
- Bydliště: Okolo rostou 3 růže =o)
- Pohlaví:
- Stav:
Offline
Re: prosím kontrolu logu
Zavři všechny programy a prohlížeče. Deaktivuj antivir a firewall.
Prosím, odpoj všechny USB nebo externí disky z počítače před spuštěním tohoto programu.
Spusť RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Počkej, dokud status okno zobrazuje "Prohledat "
- V záložkách (Registry , Tasks , Web Browser apod.) vše zatrhni (dej zatržítka)
- Klikni na "Smazat"
- Počkej, dokud Status box zobrazuje " Mazání dokončeno "
- Klikni na "Zpráva" a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [číslo]. txt na ploše.
- Zavři RogueKiller
====================================================
Stáhni si TDSSKiller
Na svojí plochu. Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller.2.2.7.1._(datum)_log.txt , vlož sem prosím celý obsah logu.
Pokud se log nevejde do jedné zprávy, rozděl jej na více částí.
Prosím, odpoj všechny USB nebo externí disky z počítače před spuštěním tohoto programu.
Spusť RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Počkej, dokud status okno zobrazuje "Prohledat "
- V záložkách (Registry , Tasks , Web Browser apod.) vše zatrhni (dej zatržítka)
- Klikni na "Smazat"
- Počkej, dokud Status box zobrazuje " Mazání dokončeno "
- Klikni na "Zpráva" a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [číslo]. txt na ploše.
- Zavři RogueKiller
====================================================
Stáhni si TDSSKiller
Na svojí plochu. Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller.2.2.7.1._(datum)_log.txt , vlož sem prosím celý obsah logu.
Pokud se log nevejde do jedné zprávy, rozděl jej na více částí.
Láska hřeje, ale uhlí je uhlí.
Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.
Pár rad k bezpečnosti PC.
Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix
Pokud budete spokojeni , můžete podpořit naše fórum.

Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.
Pár rad k bezpečnosti PC.
Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix
Pokud budete spokojeni , můžete podpořit naše fórum.
Re: prosím kontrolu logu
RogueKiller V9.2.2.0 (x64) [Jul 11 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com
Operační systém : Windows 8.1 (6.3.9200 ) 64 bits version
Spuštěno v : Normální režim
Uživatel : Petr [Práva správce]
Mód : Odebrat -- Datum : 07/11/2014 20:13:21
¤¤¤ Škodlivé procesy: : 0 ¤¤¤
¤¤¤ ¤¤¤ Záznamy Registrů: : 10 ¤¤¤
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters | DhcpNameServer : 83.240.0.135 192.168.0.1 -> NAHRAZENO ()
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters | DhcpNameServer : 83.240.0.135 192.168.0.1 -> NAHRAZENO ()
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{EE0C896D-1F39-4A43-969B-4FF4C7F00D2C} | DhcpNameServer : 83.240.0.135 192.168.0.1 -> NAHRAZENO ()
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters\Interfaces\{EE0C896D-1F39-4A43-969B-4FF4C7F00D2C} | DhcpNameServer : 83.240.0.135 192.168.0.1 -> NAHRAZENO ()
[PUM.Policies] (X64) HKEY_USERS\S-1-5-21-3832753693-3646972138-179110667-1004\Software\Microsoft\Windows\CurrentVersion\Policies\System | DisableRegistryTools : 0 -> VYMAZÁNO
[PUM.Policies] (X64) HKEY_USERS\S-1-5-21-3832753693-3646972138-179110667-1004\Software\Microsoft\Windows\CurrentVersion\Policies\System | DisableTaskMgr : 0 -> VYMAZÁNO
[PUM.Policies] (X86) HKEY_USERS\S-1-5-21-3832753693-3646972138-179110667-1004\Software\Microsoft\Windows\CurrentVersion\Policies\System | DisableRegistryTools : 0 -> ERROR [2]
[PUM.Policies] (X86) HKEY_USERS\S-1-5-21-3832753693-3646972138-179110667-1004\Software\Microsoft\Windows\CurrentVersion\Policies\System | DisableTaskMgr : 0 -> ERROR [2]
[PUM.DesktopIcons] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {20D04FE0-3AEA-1069-A2D8-08002B30309D} : 1 -> NAHRAZENO (0)
[PUM.DesktopIcons] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {59031a47-3f72-44a7-89c5-5595fe6b30ee} : 1 -> NAHRAZENO (0)
¤¤¤ naplánované úlohy : 0 ¤¤¤
¤¤¤ Soubory : 0 ¤¤¤
¤¤¤ Soubor HOSTS : 0 ¤¤¤
¤¤¤ Antirootkit : 2 (Driver: NAHRÁNO) ¤¤¤
[Filter(Kernel.Filter)] \Driver\atapi @ \Device\Ide\IdeDeviceP1T0L0-1 : \Driver\ACPI @ Unknown (\SystemRoot\System32\Drivers\WppRecorder.sys)
[Filter(Kernel.Filter)] \Driver\atapi @ \Device\Ide\IdeDeviceP0T0L0-0 : \Driver\ACPI @ Unknown (\SystemRoot\System32\Drivers\WppRecorder.sys)
¤¤¤ Webové prohlížeče : 14 ¤¤¤
[FIREFX:Addon] iq10j0za.default : Free Download Manager plugin [fdm_ffext@freedownloadmanager.org] -> VYMAZÁNO
[FIREFX:Addon] iq10j0za.default : ppriCecchoop [ia3-gobd@enarppaghg-.net] -> VYMAZÁNO
[FIREFX:Addon] iq10j0za.default : avast! Online Security [wrc@avast.com] -> VYMAZÁNO
[CHROME:Addon] Default : Google Docs [aohghmighlieiainnegkcijnfilokake] -> VYMAZÁNO
[CHROME:Addon] Default : Google Drive [apdfllckaahabafndbhieahigkjlhalf] -> ERROR [2]
[CHROME:Addon] Default : YouTube [blpcfgokakmgnkcojhhkbfbldkacnbeo] -> ERROR [2]
[CHROME:Addon] Default : Google Search [coobgpohoikkiipiblmjeljniedjpjpf] -> ERROR [2]
[CHROME:Addon] Default : ppriCecchoop [eliecgfjeghlglikoodaobochbhionip] -> ERROR [2]
[CHROME:Addon] Default : avast! Online Security [gomekmidlodglbbmalcneegieacbdmki] -> ERROR [2]
[CHROME:Addon] Default : SparkChess 7 [khgabmflimjjbclkmljlpmgaleanedem] -> ERROR [2]
[CHROME:Addon] Default : Google Mail Checker [mihcahmgecmbnbcchbopgniflfhgnkff] -> ERROR [2]
[CHROME:Addon] Default : Google Wallet [nmmhkkegccagdldgiimedpiccmgmieda] -> ERROR [2]
[CHROME:Addon] Default : Bungalow [ogkdmggpdfpodahejeckklcncacambmo] -> ERROR [2]
[CHROME:Addon] Default : Gmail [pjkljhegncpnkpknbcohdijeoejaedia] -> ERROR [2]
¤¤¤ Kontrola MBR : ¤¤¤
+++++ PhysicalDrive0: WDC WD10EZEX-75ZF5A0 ATA Device +++++
--- User ---
[MBR] 1ee8e506c5a0ee54fb586d72bcf54186
[BSP] 735150633449e4334c1e164ecd6d824a : Windows Vista/7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 2048 | Size: 351 MB
1 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 722925 | Size: 953515 MB
User = LL1 ... OK
User = LL2 ... OK
+++++ PhysicalDrive2: Generic- SD/MMC USB Device +++++
Error reading User MBR! ([15] Za?ízení není p?ipraveno. )
Error reading LL1 MBR! NOT VALID!
Error reading LL2 MBR! ([32] Po?adavek není podporován. )
+++++ PhysicalDrive3: Generic- Compact Flash USB Device +++++
Error reading User MBR! ([15] Za?ízení není p?ipraveno. )
Error reading LL1 MBR! NOT VALID!
Error reading LL2 MBR! ([32] Po?adavek není podporován. )
+++++ PhysicalDrive4: Generic- SM/xD-Picture USB Device +++++
Error reading User MBR! ([15] Za?ízení není p?ipraveno. )
Error reading LL1 MBR! NOT VALID!
Error reading LL2 MBR! ([32] Po?adavek není podporován. )
+++++ PhysicalDrive5: Generic- MS/MS-Pro USB Device +++++
Error reading User MBR! ([15] Za?ízení není p?ipraveno. )
Error reading LL1 MBR! NOT VALID!
Error reading LL2 MBR! ([32] Po?adavek není podporován. )
============================================
RKreport_SCN_07112014_140209.log - RKreport_SCN_07112014_200711.log
mail : http://www.adlice.com/contact/
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com
Operační systém : Windows 8.1 (6.3.9200 ) 64 bits version
Spuštěno v : Normální režim
Uživatel : Petr [Práva správce]
Mód : Odebrat -- Datum : 07/11/2014 20:13:21
¤¤¤ Škodlivé procesy: : 0 ¤¤¤
¤¤¤ ¤¤¤ Záznamy Registrů: : 10 ¤¤¤
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters | DhcpNameServer : 83.240.0.135 192.168.0.1 -> NAHRAZENO ()
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters | DhcpNameServer : 83.240.0.135 192.168.0.1 -> NAHRAZENO ()
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{EE0C896D-1F39-4A43-969B-4FF4C7F00D2C} | DhcpNameServer : 83.240.0.135 192.168.0.1 -> NAHRAZENO ()
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters\Interfaces\{EE0C896D-1F39-4A43-969B-4FF4C7F00D2C} | DhcpNameServer : 83.240.0.135 192.168.0.1 -> NAHRAZENO ()
[PUM.Policies] (X64) HKEY_USERS\S-1-5-21-3832753693-3646972138-179110667-1004\Software\Microsoft\Windows\CurrentVersion\Policies\System | DisableRegistryTools : 0 -> VYMAZÁNO
[PUM.Policies] (X64) HKEY_USERS\S-1-5-21-3832753693-3646972138-179110667-1004\Software\Microsoft\Windows\CurrentVersion\Policies\System | DisableTaskMgr : 0 -> VYMAZÁNO
[PUM.Policies] (X86) HKEY_USERS\S-1-5-21-3832753693-3646972138-179110667-1004\Software\Microsoft\Windows\CurrentVersion\Policies\System | DisableRegistryTools : 0 -> ERROR [2]
[PUM.Policies] (X86) HKEY_USERS\S-1-5-21-3832753693-3646972138-179110667-1004\Software\Microsoft\Windows\CurrentVersion\Policies\System | DisableTaskMgr : 0 -> ERROR [2]
[PUM.DesktopIcons] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {20D04FE0-3AEA-1069-A2D8-08002B30309D} : 1 -> NAHRAZENO (0)
[PUM.DesktopIcons] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {59031a47-3f72-44a7-89c5-5595fe6b30ee} : 1 -> NAHRAZENO (0)
¤¤¤ naplánované úlohy : 0 ¤¤¤
¤¤¤ Soubory : 0 ¤¤¤
¤¤¤ Soubor HOSTS : 0 ¤¤¤
¤¤¤ Antirootkit : 2 (Driver: NAHRÁNO) ¤¤¤
[Filter(Kernel.Filter)] \Driver\atapi @ \Device\Ide\IdeDeviceP1T0L0-1 : \Driver\ACPI @ Unknown (\SystemRoot\System32\Drivers\WppRecorder.sys)
[Filter(Kernel.Filter)] \Driver\atapi @ \Device\Ide\IdeDeviceP0T0L0-0 : \Driver\ACPI @ Unknown (\SystemRoot\System32\Drivers\WppRecorder.sys)
¤¤¤ Webové prohlížeče : 14 ¤¤¤
[FIREFX:Addon] iq10j0za.default : Free Download Manager plugin [fdm_ffext@freedownloadmanager.org] -> VYMAZÁNO
[FIREFX:Addon] iq10j0za.default : ppriCecchoop [ia3-gobd@enarppaghg-.net] -> VYMAZÁNO
[FIREFX:Addon] iq10j0za.default : avast! Online Security [wrc@avast.com] -> VYMAZÁNO
[CHROME:Addon] Default : Google Docs [aohghmighlieiainnegkcijnfilokake] -> VYMAZÁNO
[CHROME:Addon] Default : Google Drive [apdfllckaahabafndbhieahigkjlhalf] -> ERROR [2]
[CHROME:Addon] Default : YouTube [blpcfgokakmgnkcojhhkbfbldkacnbeo] -> ERROR [2]
[CHROME:Addon] Default : Google Search [coobgpohoikkiipiblmjeljniedjpjpf] -> ERROR [2]
[CHROME:Addon] Default : ppriCecchoop [eliecgfjeghlglikoodaobochbhionip] -> ERROR [2]
[CHROME:Addon] Default : avast! Online Security [gomekmidlodglbbmalcneegieacbdmki] -> ERROR [2]
[CHROME:Addon] Default : SparkChess 7 [khgabmflimjjbclkmljlpmgaleanedem] -> ERROR [2]
[CHROME:Addon] Default : Google Mail Checker [mihcahmgecmbnbcchbopgniflfhgnkff] -> ERROR [2]
[CHROME:Addon] Default : Google Wallet [nmmhkkegccagdldgiimedpiccmgmieda] -> ERROR [2]
[CHROME:Addon] Default : Bungalow [ogkdmggpdfpodahejeckklcncacambmo] -> ERROR [2]
[CHROME:Addon] Default : Gmail [pjkljhegncpnkpknbcohdijeoejaedia] -> ERROR [2]
¤¤¤ Kontrola MBR : ¤¤¤
+++++ PhysicalDrive0: WDC WD10EZEX-75ZF5A0 ATA Device +++++
--- User ---
[MBR] 1ee8e506c5a0ee54fb586d72bcf54186
[BSP] 735150633449e4334c1e164ecd6d824a : Windows Vista/7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 2048 | Size: 351 MB
1 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 722925 | Size: 953515 MB
User = LL1 ... OK
User = LL2 ... OK
+++++ PhysicalDrive2: Generic- SD/MMC USB Device +++++
Error reading User MBR! ([15] Za?ízení není p?ipraveno. )
Error reading LL1 MBR! NOT VALID!
Error reading LL2 MBR! ([32] Po?adavek není podporován. )
+++++ PhysicalDrive3: Generic- Compact Flash USB Device +++++
Error reading User MBR! ([15] Za?ízení není p?ipraveno. )
Error reading LL1 MBR! NOT VALID!
Error reading LL2 MBR! ([32] Po?adavek není podporován. )
+++++ PhysicalDrive4: Generic- SM/xD-Picture USB Device +++++
Error reading User MBR! ([15] Za?ízení není p?ipraveno. )
Error reading LL1 MBR! NOT VALID!
Error reading LL2 MBR! ([32] Po?adavek není podporován. )
+++++ PhysicalDrive5: Generic- MS/MS-Pro USB Device +++++
Error reading User MBR! ([15] Za?ízení není p?ipraveno. )
Error reading LL1 MBR! NOT VALID!
Error reading LL2 MBR! ([32] Po?adavek není podporován. )
============================================
RKreport_SCN_07112014_140209.log - RKreport_SCN_07112014_200711.log
Re: prosím kontrolu logu
20:16:39.0761 0x073c TDSS rootkit removing tool 3.0.0.40 Jul 10 2014 12:37:58
20:16:43.0105 0x073c ============================================================
20:16:43.0105 0x073c Current date / time: 2014/07/11 20:16:43.0105
20:16:43.0105 0x073c SystemInfo:
20:16:43.0105 0x073c
20:16:43.0105 0x073c OS Version: 6.3.9600 ServicePack: 0.0
20:16:43.0105 0x073c Product type: Workstation
20:16:43.0105 0x073c ComputerName: PETRMALENKA
20:16:43.0105 0x073c UserName: Petr
20:16:43.0105 0x073c Windows directory: C:\WINDOWS
20:16:43.0105 0x073c System windows directory: C:\WINDOWS
20:16:43.0105 0x073c Running under WOW64
20:16:43.0105 0x073c Processor architecture: Intel x64
20:16:43.0105 0x073c Number of processors: 4
20:16:43.0105 0x073c Page size: 0x1000
20:16:43.0105 0x073c Boot type: Normal boot
20:16:43.0105 0x073c ============================================================
20:16:43.0433 0x073c KLMD registered as C:\WINDOWS\system32\drivers\78258047.sys
20:16:43.0901 0x073c System UUID: {CA6E7026-0AB5-4E6D-C908-5CBBE34E8573}
20:16:44.0495 0x073c Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
20:16:44.0511 0x073c ============================================================
20:16:44.0511 0x073c \Device\Harddisk0\DR0:
20:16:44.0511 0x073c MBR partitions:
20:16:44.0511 0x073c \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0xAFFED
20:16:44.0511 0x073c \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0xB07ED, BlocksNum 0x74655800
20:16:44.0511 0x073c ============================================================
20:16:44.0527 0x073c C: <-> \Device\Harddisk0\DR0\Partition2
20:16:44.0527 0x073c ============================================================
20:16:44.0527 0x073c Initialize success
20:16:44.0527 0x073c ============================================================
20:16:47.0730 0x0da4 ============================================================
20:16:47.0730 0x0da4 Scan started
20:16:47.0730 0x0da4 Mode: Manual;
20:16:47.0730 0x0da4 ============================================================
20:16:47.0730 0x0da4 KSN ping started
20:16:50.0120 0x0da4 KSN ping finished: true
20:16:51.0792 0x0da4 ================ Scan system memory ========================
20:16:51.0792 0x0da4 System memory - ok
20:16:51.0792 0x0da4 ================ Scan services =============================
20:16:51.0995 0x0da4 [ E1832BD9FD7E0FC2DC9FA5935DE3E8C1, 41FF7418887AFC8B9C96EF21C5950DD342CC9E3C0D87AFD60A05B988C1D6CC23 ] 1394ohci C:\WINDOWS\System32\drivers\1394ohci.sys
20:16:52.0011 0x0da4 1394ohci - ok
20:16:52.0058 0x0da4 [ AD508A1A46EC21B740AB31C28EFDFDB1, 9B1046CF0B80723149BD359B55CC0B8B3ABBEAA9038469F542A4C345C503FB02 ] 3ware C:\WINDOWS\system32\drivers\3ware.sys
20:16:52.0058 0x0da4 3ware - ok
20:16:52.0089 0x0da4 [ 9539F7917B4B6D92C90F0FAA6B86C605, B4C284E8EECC2E7025053A3320EFDC9F47BCA9828853AD2A805DB826CA4AC27E ] ACPI C:\WINDOWS\system32\drivers\ACPI.sys
20:16:52.0105 0x0da4 ACPI - ok
20:16:52.0120 0x0da4 [ AC8279D229398BCF05C3154ADCA86813, 083E86CBE53244D24C334DB1511C77025133AE7875191845764B890A8CA5AFA9 ] acpiex C:\WINDOWS\system32\Drivers\acpiex.sys
20:16:52.0120 0x0da4 acpiex - ok
20:16:52.0136 0x0da4 [ A8970D9BF23CD309E0403978A1B58F3F, 9946C8477104EEC7DB197E2222F9905307F101C398CCED4B5FD0F86A5622C791 ] acpipagr C:\WINDOWS\System32\drivers\acpipagr.sys
20:16:52.0136 0x0da4 acpipagr - ok
20:16:52.0167 0x0da4 [ 111A89C99C5B4F1A7BCE5F643DD86F65, 41A2E49FF443927D05F7EF638518108227852984E68D4663C8761178C0B84A45 ] AcpiPmi C:\WINDOWS\System32\drivers\acpipmi.sys
20:16:52.0167 0x0da4 AcpiPmi - ok
20:16:52.0167 0x0da4 [ 5758387D68A20AE7D3245011B07E36E7, 77832E200E8B0D259552F6F60FE454A887E3EBBB9EA2F3590E6645289A04E293 ] acpitime C:\WINDOWS\System32\drivers\acpitime.sys
20:16:52.0167 0x0da4 acpitime - ok
20:16:52.0230 0x0da4 [ B362181ED3771DC03B4141927C80F801, 69514E5177A0AEA89C27C2234712F9F82E8D8F99E1FD4273898C9324C6FF7472 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
20:16:52.0230 0x0da4 AdobeARMservice - ok
20:16:52.0339 0x0da4 [ A6B6AB9502B63F43A9A56AE6AFB22078, DD1F0BA3D8F3333F52A71EAE3719A001F6EF844D647FFABF0E4C56C6C764ACA7 ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
20:16:52.0355 0x0da4 AdobeFlashPlayerUpdateSvc - ok
20:16:52.0386 0x0da4 [ 7C1FDF1B48298CBA7CE4BDD4978951AD, 80F4D536E1231B30E836F72ADC8814AE6AA9FEC573FB5F3F965FAC8ABCCAF0F8 ] ADP80XX C:\WINDOWS\system32\drivers\ADP80XX.SYS
20:16:52.0401 0x0da4 ADP80XX - ok
20:16:52.0433 0x0da4 [ 0F17D49BE041B7EFF1D33BF1414E7AC6, F8B536B60903814DF88DAF535753288537EF0993E42AA4E734EDA8D68B24C7AB ] AeLookupSvc C:\WINDOWS\System32\aelupsvc.dll
20:16:52.0433 0x0da4 AeLookupSvc - ok
20:16:52.0480 0x0da4 [ 374E27295F0A9DCAA8FC96370F9BEEA5, 51C394E0C2322D7D093941A1B8766171B5D1F47DF2FE0834209492891EA7D999 ] AFD C:\WINDOWS\system32\drivers\afd.sys
20:16:52.0480 0x0da4 AFD - ok
20:16:52.0511 0x0da4 [ 7DFAEBA9AD62D20102B576D5CAC45EC8, 9FA5207335303D1E8E9A3C9E1FB82C09AD21B04382F69D777A67E48EE91D2093 ] agp440 C:\WINDOWS\system32\drivers\agp440.sys
20:16:52.0511 0x0da4 agp440 - ok
20:16:52.0527 0x0da4 [ 8E8E34B7BA059050EED827410D0697A2, 85B6684709F24729A6497563812A90A54068AC2DD9EEA03037CB1EEF5C85AAA9 ] ahcache C:\WINDOWS\system32\DRIVERS\ahcache.sys
20:16:52.0527 0x0da4 ahcache - ok
20:16:52.0558 0x0da4 [ A91D8E1E433EFB32551BCE69037E1CE7, 41DFDD5B56918D19D09DFB3E4B07460AA85647A8647ABBBB906158D8D6653290 ] ALG C:\WINDOWS\System32\alg.exe
20:16:52.0558 0x0da4 ALG - ok
20:16:52.0573 0x0da4 [ 7589DE749DB6F71A68489DCE04158729, 5F35EDD50737985595C9D6703237CA2ADE49AA5443331020899698EB5114A0FB ] AmdK8 C:\WINDOWS\System32\drivers\amdk8.sys
20:16:52.0573 0x0da4 AmdK8 - ok
20:16:52.0589 0x0da4 [ B46D2D89AFF8A9490FA8C98C7A5616E3, BE0765B5423B690E0F097FECD9717FAA95BFDFFDC6CF1B93DE5A19A1B7797879 ] AmdPPM C:\WINDOWS\System32\drivers\amdppm.sys
20:16:52.0589 0x0da4 AmdPPM - ok
20:16:52.0605 0x0da4 [ D2BF2F94A47D332814910FD47C6BBCD2, FE273D77D119D958676E1197D9EA7B008E3B05C6192B1962A81D4223ED204C35 ] amdsata C:\WINDOWS\system32\drivers\amdsata.sys
20:16:52.0605 0x0da4 amdsata - ok
20:16:52.0636 0x0da4 [ A8E04943C7BBA7219AA50400272C3C6E, 794C0BD12DF0392654E9A37AE4A24B5BE2D83F1F24F74DD48A1A0BF3AB8B1FF8 ] amdsbs C:\WINDOWS\system32\drivers\amdsbs.sys
20:16:52.0636 0x0da4 amdsbs - ok
20:16:52.0652 0x0da4 [ CEA5F4F27CFC08E3A44D576811B35F50, 89DF64B81BD109BAABAE93A4603C1617241219F38DDAF325EFE6BD35FF6FD717 ] amdxata C:\WINDOWS\system32\drivers\amdxata.sys
20:16:52.0652 0x0da4 amdxata - ok
20:16:52.0667 0x0da4 [ 04951A9A937CBE28A2D3FEEA360B6D1F, D8AAF000BE4FE4B203DC2EB2A64F780A542E5238CE3F9952FD03277379B11529 ] AppID C:\WINDOWS\system32\drivers\appid.sys
20:16:52.0667 0x0da4 AppID - ok
20:16:52.0698 0x0da4 [ C0DC3F58214A227980AEB091CFD2F973, 0C3E8453C9F65ADA3E74C38C0E3AC3E0CBFD807B827097046265B38839E151E3 ] AppIDSvc C:\WINDOWS\System32\appidsvc.dll
20:16:52.0698 0x0da4 AppIDSvc - ok
20:16:52.0730 0x0da4 [ 8D6F535461F6CFF75A8ADDF83024C904, F2A97EC4A6284F28B685A3CE2D450F61E75EE8692D718A6AA352D5734BBBAD7B ] Appinfo C:\WINDOWS\System32\appinfo.dll
20:16:52.0730 0x0da4 Appinfo - ok
20:16:52.0776 0x0da4 [ CB12C47647D8BDAFAA94C0856B14128B, 5590C98095357C92563EF94800107D3611AA6ECA1A70BE463C03B279E618A6C4 ] AppReadiness C:\WINDOWS\system32\AppReadiness.dll
20:16:52.0792 0x0da4 AppReadiness - ok
20:16:52.0839 0x0da4 [ F7529BD3FFAC9C33D15F6DE3B7353B03, 8EF0A84C9687A246B60939A326E498121039E9CC617A7ABBA933EDD327F3467E ] AppXSvc C:\WINDOWS\system32\appxdeploymentserver.dll
20:16:52.0886 0x0da4 AppXSvc - ok
20:16:52.0902 0x0da4 [ 65045784366F7EC5FB4E71BCF923187B, 53C215C64FF12E44B097F7CB88E8482438CE0ACBD3C68D8FD38BA0D0D8747FAA ] arcsas C:\WINDOWS\system32\drivers\arcsas.sys
20:16:52.0902 0x0da4 arcsas - ok
20:16:52.0917 0x0da4 [ D95E64416A4A3ED6986E0F474DA934BD, DBB4A0DED0DABE1F8FF0DB8C0E9EC4EC906A85A45DC0AEC013A8744F9BF5D40E ] aswHwid C:\WINDOWS\system32\drivers\aswHwid.sys
20:16:52.0917 0x0da4 aswHwid - ok
20:16:52.0948 0x0da4 [ FF1E537A3632CBB9A0BF72B9FD0878D5, B26E6A1F6E6FA5280A12861EFAD44D8F49353F47B21843EBA73E149CF613DCBC ] aswMonFlt C:\WINDOWS\system32\drivers\aswMonFlt.sys
20:16:52.0948 0x0da4 aswMonFlt - ok
20:16:52.0964 0x0da4 [ A5757DE5F9C83AB40667A53D5126EA40, 58B72B1B126CF641188703CE82E26BEB0C41AD7587CFFCCCE9E3C64CC7AACC90 ] aswRdr C:\WINDOWS\system32\drivers\aswRdr2.sys
20:16:52.0964 0x0da4 aswRdr - ok
20:16:52.0980 0x0da4 [ 645D97385F3F284FB5604F9B970F4D24, 15A9D7F0F4C1062210E4E744A9069B8645177D19F35B8740D74022639DC05F2E ] aswRvrt C:\WINDOWS\system32\drivers\aswRvrt.sys
20:16:52.0980 0x0da4 aswRvrt - ok
20:16:53.0027 0x0da4 [ B8FDEDE963B82CFD23B3A53A3084666D, 3537E5B684FB6F0AA589A5FA7CD111E1744DF384AB1A266D4114100F104ED11B ] aswSnx C:\WINDOWS\system32\drivers\aswSnx.sys
20:16:53.0042 0x0da4 aswSnx - ok
20:16:53.0073 0x0da4 [ 0DEDC041DF594AEC2C3BD00417CFAF60, 0D3A8924503986546EE256D185225C0B080FDB6B0C8B0BED7516B07A7334371B ] aswSP C:\WINDOWS\system32\drivers\aswSP.sys
20:16:53.0089 0x0da4 aswSP - ok
20:16:53.0105 0x0da4 [ 48DED912CDE54FC0923B9858512366E1, 9B216B934408A7CB3CE2B41240B7EF01EAA3BC066211B784064FF8AC97A29B4E ] aswStm C:\WINDOWS\system32\drivers\aswStm.sys
20:16:53.0105 0x0da4 aswStm - ok
20:16:53.0120 0x0da4 [ 471A311745848B80339436688A8286E6, E51C57236CEC19AC38E85D115DB97875517D837811188AD2E53FA49055B53890 ] aswVmm C:\WINDOWS\system32\drivers\aswVmm.sys
20:16:53.0136 0x0da4 aswVmm - ok
20:16:53.0136 0x0da4 [ 74B14192CF79A72F7536B27CB8814FBD, 0CF6BBB63FFE0C12777664D80B2797923844C8392D0FD81D7962EE5EE2C3C3D9 ] atapi C:\WINDOWS\system32\drivers\atapi.sys
20:16:53.0136 0x0da4 atapi - ok
20:16:53.0167 0x0da4 [ 886767FD022213F7885416134E9082E5, E248D82210FBEBF62C23EBEC74A976B2D1A4E62D3B7638D95B2574B77BA05DD0 ] AudioEndpointBuilder C:\WINDOWS\System32\AudioEndpointBuilder.dll
20:16:53.0167 0x0da4 AudioEndpointBuilder - ok
20:16:53.0198 0x0da4 [ 79B134ECE836B406B212E28C24011538, 1B875DD23CCAD8A2759DCDBCDCF3DE14231B9DB5EEC8E84FE081E41A52A047A1 ] Audiosrv C:\WINDOWS\System32\Audiosrv.dll
20:16:53.0230 0x0da4 Audiosrv - ok
20:16:53.0292 0x0da4 [ 73F5C13B431915BAE35254B4E95DFB71, 393A045859382C44133C004598B1512048046BCC129FED2247A77FDBFCDB6DFF ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
20:16:53.0292 0x0da4 avast! Antivirus - ok
20:16:53.0323 0x0da4 [ 96E8CAF20FC4B6C31CAD7816A801EB78, E4870DB8FFBDCFEE98449338D0BDBF2DD0B5FEC75514E41C11A882BE6EB16833 ] AxInstSV C:\WINDOWS\System32\AxInstSV.dll
20:16:53.0323 0x0da4 AxInstSV - ok
20:16:53.0355 0x0da4 [ A4A73F631FE2AA2826FBE4A399B04DEF, 973AACE8DC8DA669D0DF20F17EFDEEABB90AA046AC980948D16A62D39A606A79 ] b06bdrv C:\WINDOWS\system32\drivers\bxvbda.sys
20:16:53.0370 0x0da4 b06bdrv - ok
20:16:53.0386 0x0da4 [ 8CC7F7E4AFCBA605921B137ED7992C68, 71406E6D6E9964740A6D90B05329D5492BB90AF40E0630CF2FBF4BA4BA14F2DD ] BasicDisplay C:\WINDOWS\System32\drivers\BasicDisplay.sys
20:16:53.0386 0x0da4 BasicDisplay - ok
20:16:53.0401 0x0da4 [ 38A82F4EE8C416A6744B6D30381ED768, 9EAAE5F43BA09359130AC04B1DCA0F5D4DF32ED89C02DC5CEB640918948847F7 ] BasicRender C:\WINDOWS\System32\drivers\BasicRender.sys
20:16:53.0401 0x0da4 BasicRender - ok
20:16:53.0417 0x0da4 [ C1ABB0F7E3BEA48A0417BDF6FF14AB21, 1CAC63A1A0FB9855A27EE977794576A860F6650C9EF7667FFB27F2A2FF721857 ] bcmfn2 C:\WINDOWS\System32\drivers\bcmfn2.sys
20:16:53.0417 0x0da4 bcmfn2 - ok
20:16:53.0448 0x0da4 [ 5BD3A2351BEFCAC8757626271F8EFA89, 6508673210129CF7EFCA93EC7874208FAD361E37814EB4FE9E0EC034E73D5F16 ] BDESVC C:\WINDOWS\System32\bdesvc.dll
20:16:53.0464 0x0da4 BDESVC - ok
20:16:53.0495 0x0da4 [ EC19013E4CF87609534165DF897274D6, 8ED45537CF2D58D759A587CCBFDADD5580C7447B0C3B172CF19ECC7585E073FC ] Beep C:\WINDOWS\system32\drivers\Beep.sys
20:16:53.0495 0x0da4 Beep - ok
20:16:53.0526 0x0da4 [ BBE15881FE11BE37112F8320C41DAFB9, 5CE92563628812FF6E00556D8E2DAD6ADCAAF0F4C3B90123F1D98ED6E3BB6DAD ] BFE C:\WINDOWS\System32\bfe.dll
20:16:53.0558 0x0da4 BFE - ok
20:16:53.0636 0x0da4 [ 15225081966C785A9192782401643FD4, E2BA0C8D044556FDD9DD7A25F7F71553DE7A2924E78F9284413C2AC46F0BF4EB ] BITS C:\WINDOWS\System32\qmgr.dll
20:16:53.0667 0x0da4 BITS - ok
20:16:53.0683 0x0da4 [ 6B4FFFDDC618FCF64473CAA86E305697, 29EA66071D5822920F5C50533673ADAB5204F8B25C11027AD27450D881F1142D ] bowser C:\WINDOWS\system32\DRIVERS\bowser.sys
20:16:53.0683 0x0da4 bowser - ok
20:16:53.0730 0x0da4 [ F2559A492AF8D653D1F47ADABA4C3E97, 77347915FB433023769699DFC9511F54E69C7FC7AB75F57FDC1A58E64A7126DE ] BrokerInfrastructure C:\WINDOWS\System32\bisrv.dll
20:16:53.0730 0x0da4 BrokerInfrastructure - ok
20:16:53.0761 0x0da4 [ D528D6A92D187777691993DD757AF19A, 2C79978310193431E5FC462368424A172858D5351C92D4815C2A7E35B5DDE50C ] Browser C:\WINDOWS\System32\browser.dll
20:16:53.0761 0x0da4 Browser - ok
20:16:53.0776 0x0da4 [ A8F23D453A424FF4DE04989C4727ECC7, AE4A9081395C7379F1C947EF8243F7609F90C843E086B8E77E1A2C06E36D4381 ] BthAvrcpTg C:\WINDOWS\System32\drivers\BthAvrcpTg.sys
20:16:53.0776 0x0da4 BthAvrcpTg - ok
20:16:53.0792 0x0da4 [ 746B9F94214915AECDE4B7FEA5FF9664, EA2877D49DB4B7B9CE61653D63E8776DFF1CBCCAB12C14DB1D20DA44B8F06357 ] BthHFEnum C:\WINDOWS\System32\drivers\bthhfenum.sys
20:16:53.0792 0x0da4 BthHFEnum - ok
20:16:53.0808 0x0da4 [ 71FE2A48E4C93DDB9798C024880B6C07, 8E93DE29C61A5FA64216231228CB3C4A1A693FE87CAA2C070BCAD7BE2D8ED000 ] bthhfhid C:\WINDOWS\System32\drivers\BthHFHid.sys
20:16:53.0808 0x0da4 bthhfhid - ok
20:16:53.0823 0x0da4 [ 07E33226AD218A2A162662A05CAFB52F, 0AC3D8B79EDA6DA232FA4E1CAF6592420A9EDE96350D1F0504C2434261684F0B ] BTHMODEM C:\WINDOWS\System32\drivers\bthmodem.sys
20:16:53.0823 0x0da4 BTHMODEM - ok
20:16:53.0839 0x0da4 [ E5E48FEED73D463175EAB1542495191C, 0A8182F5BA7B694AB1DD3680F1194E4A568FE40DBA4BFDFF2EA09BAD045FFB29 ] bthserv C:\WINDOWS\system32\bthserv.dll
20:16:53.0839 0x0da4 bthserv - ok
20:16:53.0855 0x0da4 [ 2FA6510E33F7DEFEC03658B74101A9B9, 61C8C8E3F09B427711464C974EE22E1E01C48E10DB54A4EC9901F482FC36C978 ] cdfs C:\WINDOWS\system32\DRIVERS\cdfs.sys
20:16:53.0855 0x0da4 cdfs - ok
20:16:53.0855 0x0da4 [ C6796EA22B513E3457514D92DCDB1A3D, 2B893F3950C6B913B934C2089B69F3B0B77F229AE1820907E598455CBB78139C ] cdrom C:\WINDOWS\System32\drivers\cdrom.sys
20:16:53.0870 0x0da4 cdrom - ok
20:16:53.0886 0x0da4 [ AB285CE3431FF3D2ACE669245874C1C7, 6AF4C3E86EFA51F7FB6F8492CB2CCB807C7775EAE0508B87F07134FDAC679BD7 ] CertPropSvc C:\WINDOWS\System32\certprop.dll
20:16:53.0886 0x0da4 CertPropSvc - ok
20:16:53.0902 0x0da4 [ BE9936EDD3267FAAFF94A7835867F00B, 3CEEF2377D45ED38C7CD3CE4C746EC5EA7277EFEC728A5438F0EF5F62FC7C859 ] circlass C:\WINDOWS\System32\drivers\circlass.sys
20:16:53.0902 0x0da4 circlass - ok
20:16:53.0933 0x0da4 [ 179A41249055D5F039F1B6703F3B6D2B, 886CF715D9E85DB5C9B991EBCB9B12E27AA0EEE52528E222C80CA5B5B0A7AF52 ] CLFS C:\WINDOWS\system32\drivers\CLFS.sys
20:16:53.0948 0x0da4 CLFS - ok
20:16:53.0964 0x0da4 [ EF6EF85DADC3184A10D8F2F7159973CB, 42FCB286CED95A5DEBC5C0C894FCBC4818A2C818BB71087142FB51A08A0BE96B ] CmBatt C:\WINDOWS\System32\drivers\CmBatt.sys
20:16:53.0964 0x0da4 CmBatt - ok
20:16:53.0995 0x0da4 [ 1CD3A907D64D08F49208DA00B69BF35E, ABBD70FFCA0DE2274D855AFC08BF7BC0AA6D44EFC9FDBF7DF44B73CD5C210E28 ] CNG C:\WINDOWS\system32\Drivers\cng.sys
20:16:54.0011 0x0da4 CNG - ok
20:16:54.0026 0x0da4 [ 03AAED827C36F35D70900558B8274905, 8E44A23C6013FFAE7769F99CAA3B1D6288DE00A38937F9056903AC265B503AFA ] CompositeBus C:\WINDOWS\System32\drivers\CompositeBus.sys
20:16:54.0026 0x0da4 CompositeBus - ok
20:16:54.0026 0x0da4 COMSysApp - ok
20:16:54.0042 0x0da4 [ A1FF7DFBFBE164CF92603C651D304DD2, 470ACE5A75E64FC62C950037201199857E974803625DC73BEDBCF6FA4DDD496C ] condrv C:\WINDOWS\system32\drivers\condrv.sys
20:16:54.0042 0x0da4 condrv - ok
20:16:54.0073 0x0da4 [ 0EFE4B5884A8032617826A4D76F80969, 083D296CC623C83D36A97AEE343ADF819B17E490F931DBE4D161BD1E8C289E02 ] CryptSvc C:\WINDOWS\system32\cryptsvc.dll
20:16:54.0073 0x0da4 CryptSvc - ok
20:16:54.0089 0x0da4 [ 315BA4BC19316D72B2E037534E048B93, 69613635DB23E6A935673B1025C2010ED3E195473D25368CF74234C4C36910BE ] dam C:\WINDOWS\system32\drivers\dam.sys
20:16:54.0089 0x0da4 dam - ok
20:16:54.0136 0x0da4 [ 81979817943D830BF24571B7C1B28A1A, 9584D8F1FB3E6CF17BD465670B208C723A8E8B06775A3DA44F75D7710404EEA6 ] DcomLaunch C:\WINDOWS\system32\rpcss.dll
20:16:54.0151 0x0da4 DcomLaunch - ok
20:16:54.0167 0x0da4 [ AF3FF97AC2A73E70F8A8D11FB694175B, 3AA25BF9DED08056F52ACF246118C13C8816B5E8AA4D8606DB7DAB4E4E6A9169 ] defragsvc C:\WINDOWS\System32\defragsvc.dll
20:16:54.0183 0x0da4 defragsvc - ok
20:16:54.0245 0x0da4 [ 8F387C2C99EE09C6E2AC316205F86A17, EC9E8AE72A21992AA118964E17090BA4503EB051273AD18185C95172F57328CE ] DeviceAssociationService C:\WINDOWS\system32\das.dll
20:16:54.0261 0x0da4 DeviceAssociationService - ok
20:16:54.0292 0x0da4 [ BC6849C62DB407573C6AD8CB1A4D2628, 5BDE0D60F85E4C27CEAD1B301155B54D841FB773BD5BB8AC5DDAEE31F8E94627 ] DeviceInstall C:\WINDOWS\system32\umpnpmgr.dll
20:16:54.0308 0x0da4 DeviceInstall - ok
20:16:54.0323 0x0da4 [ A03F362C5557E238CBFA914689C77248, BAD0A1124E6A384C15028FBE121ADF650F7716442555AD3737B9EA1F58A69246 ] Dfsc C:\WINDOWS\system32\Drivers\dfsc.sys
20:16:54.0323 0x0da4 Dfsc - ok
20:16:54.0355 0x0da4 [ 8B107F55FD61654A6C9F1B819AEC5FC4, 773B1B9D3583F17B7C89BDE1EC4487ABB0AE039DF4583F8746460425443DA291 ] Dhcp C:\WINDOWS\system32\dhcpcore.dll
20:16:54.0370 0x0da4 Dhcp - ok
20:16:54.0401 0x0da4 [ 4D40C9B33F738797CF50E77CB7C53E85, 7BA341342A47DEB15B51971C97A5237ACD8BDAD9033F63DF0000892BE43F8E13 ] disk C:\WINDOWS\system32\drivers\disk.sys
20:16:54.0401 0x0da4 disk - ok
20:16:54.0433 0x0da4 [ EB70A894708D1BC176AFD690FF06085F, 0DD2A97F5E1B38D1F7C0D44E50F09EA222B18B3B074CC9C8CD25A7526CB1A112 ] dmvsc C:\WINDOWS\System32\drivers\dmvsc.sys
20:16:54.0433 0x0da4 dmvsc - ok
20:16:54.0448 0x0da4 [ FE7656474448BE6A6C68E5C9BEB7CA94, 8B9F04CAA29A6EEFCA3D1E7BAFE340D5CCA8AF665474E69B1DF7E2A518B83A89 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll
20:16:54.0464 0x0da4 Dnscache - ok
20:16:54.0480 0x0da4 [ 50288EA079BB520C2B8C8A154202D518, 8916A9180CA009D124FFDFB4CCF5FDFEF7FA2FD37CBCD49FAD4C68E051B4734D ] dot3svc C:\WINDOWS\System32\dot3svc.dll
20:16:54.0495 0x0da4 dot3svc - ok
20:16:54.0511 0x0da4 [ 281BEE07BA97E3E98D12A822D923D0D8, 6EB482B2D4D6048D145C3738B2B6FA27A90B5EA53E9167447820F9981B004E63 ] DPS C:\WINDOWS\system32\dps.dll
20:16:54.0511 0x0da4 DPS - ok
20:16:54.0542 0x0da4 [ DDC11A202207C0400CBE07315B8FDE5E, 3ED0CA3A714582D92001BA3BFF78BE082F4DC8021298D5A2632F3B2B0A1C09DC ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys
20:16:54.0542 0x0da4 drmkaud - ok
20:16:54.0573 0x0da4 [ 5B074F14F5DD6418F46EE4CA2DEB7EA8, B8223D73C3DE123759101F7D5D45C60BD12B221F09D349575A1044CE3F43CBC5 ] DsmSvc C:\WINDOWS\System32\DeviceSetupManager.dll
20:16:54.0589 0x0da4 DsmSvc - ok
20:16:54.0636 0x0da4 [ C7D252742946DD395670649742FBD73D, 333CC984CF318D36EA8C5867077A1732A214445EB6B7CF7AC2E8F1C8259CD9C7 ] DXGKrnl C:\WINDOWS\System32\drivers\dxgkrnl.sys
20:16:54.0667 0x0da4 DXGKrnl - ok
20:16:54.0683 0x0da4 [ 6073537F250B45E1CB2A02E97F0FE1B2, 653F3F2F2019168EDF225944A88AFDBF8393B62AA076BD19980691778F3DB67D ] Eaphost C:\WINDOWS\System32\eapsvc.dll
20:16:54.0683 0x0da4 Eaphost - ok
20:16:54.0777 0x0da4 [ 114BCFDF367FF37C3F1B0A96AF542E4D, D385BC1D91BC1406091C8C3691C07A90BD60EDE05B1384E5AA3506FCB909C857 ] ebdrv C:\WINDOWS\system32\drivers\evbda.sys
20:16:54.0839 0x0da4 ebdrv - ok
20:16:54.0870 0x0da4 [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] EFS C:\WINDOWS\System32\lsass.exe
20:16:54.0870 0x0da4 EFS - ok
20:16:54.0886 0x0da4 [ 43531A5993380CC5113242C29D265FD9, EE0076D96F7F3CF29884AC7A67C08A429115A7201354A1FB5DE45FD63ABB4960 ] EhStorClass C:\WINDOWS\system32\drivers\EhStorClass.sys
20:16:54.0886 0x0da4 EhStorClass - ok
20:16:54.0902 0x0da4 [ 6F8E738A9505A388B1157FDDE7B3101B, 3696CA634102B41EEA11EB9DCA0B24439D8636AED4A7190C138C5E64A2EFB514 ] EhStorTcgDrv C:\WINDOWS\system32\drivers\EhStorTcgDrv.sys
20:16:54.0902 0x0da4 EhStorTcgDrv - ok
20:16:54.0933 0x0da4 [ BE2902E13CA69383F449B6BF927844FB, F092785E305D8E1FE795AF98A7A7B7B4548A0D6687060568C9E078FFA8D65C1C ] ElbyCDIO C:\WINDOWS\system32\Drivers\ElbyCDIO.sys
20:16:54.0933 0x0da4 ElbyCDIO - ok
20:16:54.0949 0x0da4 [ DFFFAE1442BA4076E18EED5E406FA0D3, 329FC6FB8D14BEACDBE2A5D4C496EDEA485E838B1DF27566E278F8F8E0D8E82E ] ErrDev C:\WINDOWS\System32\drivers\errdev.sys
20:16:54.0949 0x0da4 ErrDev - ok
20:16:54.0980 0x0da4 [ 030CE75B7D8F75FAA7BA1EC6FD0EB5A3, 5264734F0572FAEDCCB008221C9982CCB7922C4FFC358605424EA413CDCDAE99 ] EventSystem C:\WINDOWS\system32\es.dll
20:16:54.0995 0x0da4 EventSystem - ok
20:16:55.0011 0x0da4 [ 7729D294A555C7AEB281ED8E4D0E01E4, 7269E79D72CCE477AC108294D0DDFB59CF533B03C587599C5AB0507C43A0B6D4 ] exfat C:\WINDOWS\system32\drivers\exfat.sys
20:16:55.0011 0x0da4 exfat - ok
20:16:55.0027 0x0da4 [ 7C4E0D5900B2A1D11EDD626D6DDB937B, 732F310F8F6016C56F432A81636B13CE0124A802FE8DD91287B618EED22C9A1D ] fastfat C:\WINDOWS\system32\drivers\fastfat.sys
20:16:55.0042 0x0da4 fastfat - ok
20:16:55.0074 0x0da4 [ 2BC8532ABF2B3756B78FA1DA54147DDE, DF65EE2AB0255A2CF3221085A6BE7C37E3DB6BFEED3BCADCDD69BB1049F6DCB1 ] Fax C:\WINDOWS\system32\fxssvc.exe
20:16:55.0089 0x0da4 Fax - ok
20:16:55.0105 0x0da4 [ 5D8402613E778B3BD45E687A8372710B, EE9EA10805168D309A609B9019AEC5961EE46D18207B5E0EA2DE4064A5770AF8 ] fdc C:\WINDOWS\System32\drivers\fdc.sys
20:16:55.0105 0x0da4 fdc - ok
20:16:55.0120 0x0da4 [ DC1A78BCCCB7EE53D6FD3BD615A8E222, EE16B6853185AAE779D7135035983938009901658F76A8856AAC12EBA15BB34E ] fdPHost C:\WINDOWS\system32\fdPHost.dll
20:16:55.0120 0x0da4 fdPHost - ok
20:16:55.0136 0x0da4 [ E5AD448F2DC84B1CF387FA7F2A3D1936, BBB29C79A085C503F5EFFB5144596D5DEC48A4EB34A049A4E7B38B27F6D92E0A ] FDResPub C:\WINDOWS\system32\fdrespub.dll
20:16:55.0136 0x0da4 FDResPub - ok
20:16:55.0152 0x0da4 [ 0046E0BD031213D37123876B0D0FA61C, A4FE17D56F0BAFB70D0D421ED9D1B6E50AF8ADAA4B59328A41AEC5B4C068A3CB ] fhsvc C:\WINDOWS\system32\fhsvc.dll
20:16:55.0152 0x0da4 fhsvc - ok
20:16:55.0183 0x0da4 [ BCFD8B149B3ADF92D0DB1E909CAF0265, 002B085C131473642450176B4B8359F3E5B04350AFB659B9C0F9EB587D1181E7 ] FileInfo C:\WINDOWS\system32\drivers\fileinfo.sys
20:16:55.0183 0x0da4 FileInfo - ok
20:16:55.0199 0x0da4 [ A1A66C4FDAFD6B0289523232AFB7D8AF, 0F5832F626BB62190D5F3A088CE6E048D8A400CCF9EA527F06973CAD96D3A81C ] Filetrace C:\WINDOWS\system32\drivers\filetrace.sys
20:16:55.0199 0x0da4 Filetrace - ok
20:16:55.0214 0x0da4 [ BE743083CF7063C486A4398E3AEFE59A, 85796D89943DD6FE3932C1ED6CF01470C1B4DFD243C390B07055FFDA3C231551 ] flpydisk C:\WINDOWS\System32\drivers\flpydisk.sys
20:16:55.0214 0x0da4 flpydisk - ok
20:16:55.0245 0x0da4 [ 6592D192E2823C043EDBC010E7774053, C025A0EC5517DC3BD5D6656DC0F0F19021FB3D2EE90EC6194E1BD74E638EBBDC ] FltMgr C:\WINDOWS\system32\drivers\fltmgr.sys
20:16:55.0245 0x0da4 FltMgr - ok
20:16:55.0292 0x0da4 [ 3FA6DC6B29717E32E211C1FD821F2C75, E467F3775427C93CC2B87327B0A45669631A5FC460C558F6796BA26002A8BBFC ] FontCache C:\WINDOWS\system32\FntCache.dll
20:16:55.0339 0x0da4 FontCache - ok
20:16:55.0433 0x0da4 [ 1C52387BF5A127F5F3BFB31288F30D93, 90D13F60170CD74304F3036A90D596AA3E1E134455A780310BDF67AC7815F2E7 ] FontCache3.0.0.0 C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
20:16:55.0433 0x0da4 FontCache3.0.0.0 - ok
20:16:55.0449 0x0da4 [ 35005534E600E993A90B036E4E599F2B, DA56FA3776FBD3D50276CB7410E0CB6F137DD8FCA84C0F3FEF8B1FEA5F6CA592 ] FsDepends C:\WINDOWS\system32\drivers\FsDepends.sys
20:16:55.0449 0x0da4 FsDepends - ok
20:16:55.0464 0x0da4 [ 09F460AFEDCA03F3BF6E07D1CCC9AC42, B832091BC9B2C2FE38A4BCA132ABB58251E851F21EC6F39636E73777AB9A5791 ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys
20:16:55.0464 0x0da4 Fs_Rec - ok
20:16:55.0495 0x0da4 [ F152D55E497E12256290C43B31C7D0CE, FFC54B14CCFBC1548948C07FB3866E40A11D0C05AC352BD000E71CEF053F6A6E ] fvevol C:\WINDOWS\system32\DRIVERS\fvevol.sys
20:16:55.0527 0x0da4 fvevol - ok
20:16:55.0542 0x0da4 [ 9591D0B9351ED489EAFD9D1CE52A8015, AC64C236C3AE545FCE8ED44A4A87FB86265A453BA60026EC9A4DE2B631E99996 ] FxPPM C:\WINDOWS\System32\drivers\fxppm.sys
20:16:55.0542 0x0da4 FxPPM - ok
20:16:55.0542 0x0da4 [ FC3EF65EE20D39F8749C2218DBA681CA, 12980F1DE99B25E6920A33556F3ABDA5EC9BFE4757BE602130B5E939D8D25CE3 ] gagp30kx C:\WINDOWS\system32\drivers\gagp30kx.sys
20:16:55.0558 0x0da4 gagp30kx - ok
20:16:55.0589 0x0da4 [ 0BF5CAD281E25F1418E5B8875DC5ADD1, 0929AD8437DD78234553D8B2CDF0D6838FD54ACDE1918AFEBE48684EB32A07A3 ] gencounter C:\WINDOWS\System32\drivers\vmgencounter.sys
20:16:55.0589 0x0da4 gencounter - ok
20:16:55.0605 0x0da4 [ EF3AE7773394DF49CE74AF78A1C8D23D, CB12FF004C460A89F12AFF2467512B479A07CA10D4280CD4E624A5A9CDAB9C1B ] GPIOClx0101 C:\WINDOWS\system32\Drivers\msgpioclx.sys
20:16:55.0605 0x0da4 GPIOClx0101 - ok
20:16:55.0652 0x0da4 [ 383DA813409316D69603C1D849834D24, E1AAD3AB567457B00B8A378D5BA37ED653EE451FF79D071A8815FB8B1EB90DAF ] gpsvc C:\WINDOWS\System32\gpsvc.dll
20:16:55.0683 0x0da4 gpsvc - ok
20:16:55.0699 0x0da4 [ 498288DD5CA42C2D36D125893E968C53, 03B62FA51F9195D77170DCEFF3A93A6898AA96FB610044DDAE83767DA12745C5 ] HDAudBus C:\WINDOWS\System32\drivers\HDAudBus.sys
20:16:55.0699 0x0da4 HDAudBus - ok
20:16:55.0714 0x0da4 [ 10A70BC1871CD955D85CD88372724906, 2480A74854D0A89FF028EE9BA41224D4B2F9B0863066BFC43097920794FEE08D ] HidBatt C:\WINDOWS\System32\drivers\HidBatt.sys
20:16:55.0714 0x0da4 HidBatt - ok
20:16:55.0745 0x0da4 [ 1EA1B4FABB8CC348E73CA90DBA22E104, 5C18C6BD499272F216DD4626B5E8D38181AEAC9AD917FBEB614A75B70467B258 ] HidBth C:\WINDOWS\System32\drivers\hidbth.sys
20:16:55.0761 0x0da4 HidBth - ok
20:16:55.0777 0x0da4 [ C241A8BAFBBFC90176EA0F5240EACC17, 571E20B87818618BE9179986177D55739A240F04D1F740B3C1B7809B9427B767 ] hidi2c C:\WINDOWS\System32\drivers\hidi2c.sys
20:16:55.0777 0x0da4 hidi2c - ok
20:16:55.0792 0x0da4 [ 9BDDEE26255421017E161CCB9D5EDA95, B766FD5E31708F29384F69418FC33C4BCC6E3064AA553D5B1D30EE0B8B1BFB40 ] HidIr C:\WINDOWS\System32\drivers\hidir.sys
20:16:55.0792 0x0da4 HidIr - ok
20:16:55.0824 0x0da4 [ 449A20A674AA3FAA7F0DD4E33EE2DC20, 28B9BDA306456E8640C355718DE3477537B0FAF8C37F633C709129AAB64D9873 ] hidserv C:\WINDOWS\system32\hidserv.dll
20:16:55.0839 0x0da4 hidserv - ok
20:16:55.0839 0x0da4 [ 8DB8EAB9D0C6A5DF0BDCADEA239220B4, EDA23E6909EB83E5E148816DFB16CC29EA01BD6BD2F73AA46B3D820B85FB9C83 ] HidUsb C:\WINDOWS\System32\drivers\hidusb.sys
20:16:55.0855 0x0da4 HidUsb - ok
20:16:55.0870 0x0da4 [ 7BF3ADCBD021D4F4A84CF40EB49C71B5, 5758A51FD2EBE67E6DBE3A298D714D351910F9E01C428D0C1359457C9242B298 ] hkmsvc C:\WINDOWS\system32\kmsvc.dll
20:16:55.0870 0x0da4 hkmsvc - ok
20:16:55.0886 0x0da4 [ 6CD9C3819BE8C0A3DACC82AE5D3C4F18, 46BF4A968E506DE17CA401401D716B444CDC10A5C60EB081890DD4B886AEDF5F ] HomeGroupListener C:\WINDOWS\system32\ListSvc.dll
20:16:55.0902 0x0da4 HomeGroupListener - ok
20:16:55.0949 0x0da4 [ 1A4DA1D6287B99033D144B436C23B656, D4D1EEB372E61512EA36A33F095E68C225B8E6C72CC57ED8BD00533F88012F40 ] HomeGroupProvider C:\WINDOWS\system32\provsvc.dll
20:16:55.0995 0x0da4 HomeGroupProvider - ok
20:16:56.0011 0x0da4 [ A6AACEA4C785789BDA5912AD1FEDA80D, D197012A5DA6AB3F76FF298336DF0CF027C07ECC71267BAEF5912DE12893E096 ] HpSAMD C:\WINDOWS\system32\drivers\HpSAMD.sys
20:16:56.0011 0x0da4 HpSAMD - ok
20:16:56.0074 0x0da4 [ 9DDCA7F18983C5410DEFF79F819DF93C, CE97B4440377BFC5CA81BB600C3BD1DD9FB3951CA1EB70735F5E2050EBB74223 ] HTTP C:\WINDOWS\system32\drivers\HTTP.sys
20:16:56.0089 0x0da4 HTTP - ok
20:16:56.0105 0x0da4 [ 90656C0B3864804B090434EFC582404F, BDB60050B729AACB9E009AC7129BEBD6298BBD8A9DB14B817D02E8E13669BD6E ] hwpolicy C:\WINDOWS\system32\drivers\hwpolicy.sys
20:16:56.0105 0x0da4 hwpolicy - ok
20:16:56.0120 0x0da4 [ 6D6F9E3BF0484967E52F7E846BFF1CA1, C982966BDE6A3E6773D9441ADA7A3B08D13511DFC68D04DF303248B942423F38 ] hyperkbd C:\WINDOWS\System32\drivers\hyperkbd.sys
20:16:56.0120 0x0da4 hyperkbd - ok
20:16:56.0120 0x0da4 [ 907C870F8C31F8DDD6F090857B46AB25, 308664A31717383D06185875E76C6612407A9F04E7DB28404F574A5706C6715D ] HyperVideo C:\WINDOWS\system32\DRIVERS\HyperVideo.sys
20:16:56.0136 0x0da4 HyperVideo - ok
20:16:56.0152 0x0da4 [ 84CFC5EFA97D0C965EDE1D56F116A541, 0155EA62BF07D99D98D1C9B6559C8E3301B016A20D03DF1EF64B2FAB8C37403B ] i8042prt C:\WINDOWS\System32\drivers\i8042prt.sys
20:16:56.0152 0x0da4 i8042prt - ok
20:16:56.0152 0x0da4 [ 5D90E32E36CE5D4C535D17CE08AEAF05, 976A463343E8C8308AFBE9E64DF56C430D2241DE002430D00318AB065EB72E4A ] iaLPSSi_GPIO C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys
20:16:56.0152 0x0da4 iaLPSSi_GPIO - ok
20:16:56.0167 0x0da4 [ DD05E7E80F52ADE9AEB292819920F32C, E71AB6A50B0F90C8F94569CE89F66F915A0A4A00D4AC091B2E5E750D88CFC334 ] iaLPSSi_I2C C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys
20:16:56.0167 0x0da4 iaLPSSi_I2C - ok
20:16:56.0199 0x0da4 [ 08BFE413B0B4AA8DFA4B5684CE06D3DC, 95DEEBB203E12EE6E191F5247A74C04AEC0E16DE981FADDC4D6C42EE41D8D079 ] iaStorAV C:\WINDOWS\system32\drivers\iaStorAV.sys
20:16:56.0199 0x0da4 iaStorAV - ok
20:16:56.0230 0x0da4 [ A2200C3033FA4EF249FC096A7A7D02A2, 5819F5C2020DE2EEE339B0C08CD4B1E3490EAFBBEA1277CE649DB5A5150986B0 ] iaStorV C:\WINDOWS\system32\drivers\iaStorV.sys
20:16:56.0245 0x0da4 iaStorV - ok
20:16:56.0245 0x0da4 IEEtwCollectorService - ok
20:16:56.0292 0x0da4 [ CFE7F0267B0C3077042FF291949B5546, 7B8C432632D0210119BFF57D4994F2B8F75307A9D6867353AF93BBA3F561595B ] IKEEXT C:\WINDOWS\System32\ikeext.dll
20:16:56.0324 0x0da4 IKEEXT - ok
20:16:56.0449 0x0da4 [ C2F868881D48A568B525255F084EF063, EFB1704AE223CF886EDA5F1411C8178EDE4B5E1F7EE373E3DA89A6EA1A57D91D ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys
20:16:56.0527 0x0da4 IntcAzAudAddService - ok
20:16:56.0558 0x0da4 [ 4E448FCFFD00E8D657CD9E48D3E47157, 4A958CF0BF8DAEAE5E008500BA67CE89B21388592811274331EE39CAC1043A00 ] intelide C:\WINDOWS\system32\drivers\intelide.sys
20:16:56.0558 0x0da4 intelide - ok
20:16:56.0574 0x0da4 [ 139CFCDCD36B1B1782FD8C0014AC9B0E, E0D7E0E9B46A8CECE138D689820023BFA650FB689E4FD62855BED37E04F2D9FF ] intelpep C:\WINDOWS\system32\drivers\intelpep.sys
20:16:56.0574 0x0da4 intelpep - ok
20:16:56.0589 0x0da4 [ 47E74A8E53C7C24DCE38311E1451C1D9, 79B06E37A552C8A847404D4C572CDB8CF525354D8AE3BEBC06892B7C3B330761 ] intelppm C:\WINDOWS\System32\drivers\intelppm.sys
20:16:56.0589 0x0da4 intelppm - ok
20:16:56.0605 0x0da4 [ 9DB76D7F9E4E53EFE5DD8C53DE837514, 07BA4EDA9BE9139A689A2C3EFC1D1A4F3D1216625ED145F313398292A2CD5703 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
20:16:56.0605 0x0da4 IpFilterDriver - ok
20:16:56.0652 0x0da4 [ DFC4050D58565ADBEE793A8D4AEBDAE6, 89B900408F030CD45753A11D6AE6CBAB87E8B0E3F8401402D2D8713C045BF488 ] iphlpsvc C:\WINDOWS\System32\iphlpsvc.dll
20:16:56.0683 0x0da4 iphlpsvc - ok
20:16:56.0699 0x0da4 [ FD9C9E9E3F0ED51502C7E8C066BE26B9, 290E74380F1543DD22C9F3821513B3E2FB42E995724238D8779CBBCB4FC386C8 ] IPMIDRV C:\WINDOWS\System32\drivers\IPMIDrv.sys
20:16:56.0699 0x0da4 IPMIDRV - ok
20:16:56.0714 0x0da4 [ B7342B3C58E91107F6E946A93D9D4EFD, D5DA3C02C5C5A343785745EF6983CC9B5FBD3FB8D49FE9B450523E50212D1A32 ] IPNAT C:\WINDOWS\system32\drivers\ipnat.sys
20:16:56.0714 0x0da4 IPNAT - ok
20:16:56.0730 0x0da4 [ AE44C526AB5F8A487D941CEB57B10C97, A783A2EAF7A6FF450FB3F189A5930036FA60D125C42171AC44B6FE2E3DBD6F7A ] IRENUM C:\WINDOWS\system32\drivers\irenum.sys
20:16:56.0730 0x0da4 IRENUM - ok
20:16:56.0745 0x0da4 [ 8AFEEA3955AA43616A60F133B1D25F21, E99359A4F1D653790133F145CF7C9F97399FD75C5E135AA7E5F989BB660789AF ] isapnp C:\WINDOWS\system32\drivers\isapnp.sys
20:16:56.0745 0x0da4 isapnp - ok
20:16:56.0777 0x0da4 [ D90AB68D0FAC9F357F663670FDBB511E, A82AAA5DF1B38EFBDCF834535A0C520D1BB2D7A4A906C18CFDD22BCF16BDB97D ] iScsiPrt C:\WINDOWS\System32\drivers\msiscsi.sys
20:16:56.0792 0x0da4 iScsiPrt - ok
20:16:56.0792 0x0da4 [ 8BE92376799B6B44D543E8D07CDCF885, 425B8BB1BAF62F735B3CB5A002E6055879F02E7207E55942BFD37F1784F5F368 ] kbdclass C:\WINDOWS\System32\drivers\kbdclass.sys
20:16:56.0792 0x0da4 kbdclass - ok
20:16:56.0808 0x0da4 [ FB6E47E569D4872ABEB506BE03A45FBA, 5C4056CADA8F67587A119D9AE2A0EFAB30387CF6298F4019FF68AC92E2F6F54B ] kbdhid C:\WINDOWS\System32\drivers\kbdhid.sys
20:16:56.0808 0x0da4 kbdhid - ok
20:16:56.0824 0x0da4 [ 813871C7D402A05F2E3A7075F9584A05, FF0C2F87EB083F8CE74C679D80C845CDFBFBBC70BE818F899F3336BBB54A3FFB ] kdnic C:\WINDOWS\system32\DRIVERS\kdnic.sys
20:16:56.0824 0x0da4 kdnic - ok
20:16:56.0839 0x0da4 [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] KeyIso C:\WINDOWS\system32\lsass.exe
20:16:56.0839 0x0da4 KeyIso - ok
20:16:56.0839 0x0da4 [ ADDECBCC777665BD113BED437E602AB0, B6283475A1219CE44E9F683DD3BEB8C42DA0943297E5C4699B22176AD8A6A7ED ] KSecDD C:\WINDOWS\system32\Drivers\ksecdd.sys
20:16:56.0855 0x0da4 KSecDD - ok
20:16:56.0870 0x0da4 [ F88CC88F4A6D8476F1664E805CA18CC2, 2C61EE5EEA4FD45AA3FA927CC16E34EF90BD44324EAB14198AF65C3A27617991 ] KSecPkg C:\WINDOWS\system32\Drivers\ksecpkg.sys
20:16:56.0870 0x0da4 KSecPkg - ok
20:16:56.0870 0x0da4 [ 11AFB527AA370B1DAFD5C36F35F6D45F, 757AD234284467ADB826F7CA0251F58D48866B91995BC867DEA4BAF676947163 ] ksthunk C:\WINDOWS\system32\drivers\ksthunk.sys
20:16:56.0870 0x0da4 ksthunk - ok
20:16:56.0917 0x0da4 [ 32B1A8351160F307A8C66BCB0F94A9C2, 52F1DEC2BBD4D5DDBB85ED20B99D96BBA7EB83304D76F183A11FDAFDA364E873 ] KtmRm C:\WINDOWS\system32\msdtckrm.dll
20:16:56.0933 0x0da4 KtmRm - ok
20:16:56.0964 0x0da4 [ 46378ECCB4A29AA81BF296641C2501EF, 5AB79BD824C00EF1338FDB8450692318AB14E0AE4145C30B37136767DFC1E4F9 ] LanmanServer C:\WINDOWS\system32\srvsvc.dll
20:16:56.0964 0x0da4 LanmanServer - ok
20:16:57.0042 0x0da4 [ D0D9C2ECA4D03A8F06DCD91236B90C98, E2D1144DC8040EA5FEB0602A20BA4CB920B4BC86AD5AD05FC0DF7D74DC95DC66 ] LanmanWorkstation C:\WINDOWS\System32\wkssvc.dll
20:16:57.0074 0x0da4 LanmanWorkstation - ok
20:16:57.0120 0x0da4 [ 626D19F1771E1AE72208AE9A8F3082F7, 78FDB64545ED2EAE9F51C08120E21D2C3285208F6846BD8BBA08CAA839E7A0C4 ] lfsvc C:\WINDOWS\System32\GeofenceMonitorService.dll
20:16:57.0152 0x0da4 lfsvc - ok
20:16:57.0167 0x0da4 [ C09010B3680860131631F53E8FE7BAD8, 35F2A06D5F29478D22ABDCC20DA893EF9D96504C65594A0CEA674D1C21B04FF8 ] lltdio C:\WINDOWS\system32\DRIVERS\lltdio.sys
20:16:57.0167 0x0da4 lltdio - ok
20:16:57.0214 0x0da4 [ 00E070FC0C673311AFD4B068D1242780, 50B0E0E625361145332C849709498FF444E46578DCAD2536E6D0289E0125580F ] lltdsvc C:\WINDOWS\System32\lltdsvc.dll
20:16:57.0214 0x0da4 lltdsvc - ok
20:16:57.0261 0x0da4 [ D113FAD71A5E67AA94B32A0F8828D265, 08DDB4BBDB570C59926DBF5E27FCF46DCDF8B8212BB9251E97837E0504516FB3 ] lmhosts C:\WINDOWS\System32\lmhsvc.dll
20:16:57.0261 0x0da4 lmhosts - ok
20:16:57.0277 0x0da4 [ C755AE4635457AA2A11F79C0DF857ABC, E03D1ACAC155287291FE1BD0B653953ADC94279A74D0152088D698FAA796460F ] LSI_SAS C:\WINDOWS\system32\drivers\lsi_sas.sys
20:16:57.0277 0x0da4 LSI_SAS - ok
20:16:57.0292 0x0da4 [ ADAC09CBE7A2040B7F68B5E5C9A75141, 7865DA7E91404F3642BC444B97F6B7AA42B9523D5EDD7F6365DA236B8EC3410F ] LSI_SAS2 C:\WINDOWS\system32\drivers\lsi_sas2.sys
20:16:57.0292 0x0da4 LSI_SAS2 - ok
20:16:57.0292 0x0da4 [ 04D1274BB9BBCCF12BD12374002AA191, 4B9618F8D25F2278DE1610A70ACAADB074D171D162C3AF27D464F5DC800A8E60 ] LSI_SAS3 C:\WINDOWS\system32\drivers\lsi_sas3.sys
20:16:57.0292 0x0da4 LSI_SAS3 - ok
20:16:57.0308 0x0da4 [ 327469EEF3833D0C584B7E88A76AEC0C, 3D88B5A2D68F93F01B39C6E3D8D5C7A2A20686EFC756086E66AFFF1BC3019B85 ] LSI_SSS C:\WINDOWS\system32\drivers\lsi_sss.sys
20:16:57.0324 0x0da4 LSI_SSS - ok
20:16:57.0370 0x0da4 [ 8EBB271E4588D835784A3FF7E80076A8, A508BE95F6F5063A76F4C8726D9425BB1F00DE803EFE73A0BE145DD9AB82FF0A ] LSM C:\WINDOWS\System32\lsm.dll
20:16:57.0386 0x0da4 LSM - ok
20:16:57.0449 0x0da4 [ DDEE191AB32DFC22C6465002ECDF5EE4, 190C3930A8449118F9FEDF43C482837EF1C255E6D67F9651156E66A1E2BC6553 ] luafv C:\WINDOWS\system32\drivers\luafv.sys
20:16:57.0449 0x0da4 luafv - ok
20:16:57.0683 0x0da4 [ 415E344294D1C0D04627B29146F68481, B4A1A05BDF07E8F226A98E51F62BE18BE2C046A084C495BD8A95CABC79FD0614 ] LVUVC64 C:\WINDOWS\system32\DRIVERS\lvuvc64.sys
20:16:57.0761 0x0da4 LVUVC64 - ok
20:16:57.0792 0x0da4 [ EB5C03A070F30D64A6DF80E53B22F53F, 12051B6AEBDEE1E28F24364F25A52BA3A6E282ECF86D6290E34BD38E6D4E066D ] megasas C:\WINDOWS\system32\drivers\megasas.sys
20:16:57.0792 0x0da4 megasas - ok
20:16:57.0824 0x0da4 [ F6F13533196DE7A582D422B0241E4363, B3CD9B08937AFFF12141B38634AF3A56F5AC5FF3EF03941802B9841DEC559469 ] megasr C:\WINDOWS\system32\drivers\megasr.sys
20:16:57.0824 0x0da4 megasr - ok
20:16:57.0855 0x0da4 [ 6B01B7414A105B9E51652089A03027CF, 9B113DC22F7D0D0B376E577C6D7083F9EDC09BBFE47726393E16D4FDAAAE21FE ] MEIx64 C:\WINDOWS\System32\drivers\HECIx64.sys
20:16:57.0855 0x0da4 MEIx64 - ok
20:16:57.0886 0x0da4 [ FD788C2D96EA91469A3C1D13E80D7473, 7B14D4BFDE18CECC19FBFFAA5AFF5FD78BFB7FCDA6613990740A8A7DD9873D26 ] MMCSS C:\WINDOWS\system32\mmcss.dll
20:16:57.0902 0x0da4 MMCSS - ok
20:16:57.0902 0x0da4 [ 8B38C44F69259987C95135C9627E2378, E698B82D4EFFF56D66C7FC9866369BA5736FDBDBE2028CC421C51E70DEA74727 ] Modem C:\WINDOWS\system32\drivers\modem.sys
20:16:57.0902 0x0da4 Modem - ok
20:16:57.0933 0x0da4 [ 601589000CC90F0DF8DA2CC254A3CCC9, D1238A386C41B6C368D9A44B7C112C943995B5403E2A5B4B7346B266DDB0C5A0 ] monitor C:\WINDOWS\System32\drivers\monitor.sys
20:16:57.0933 0x0da4 monitor - ok
20:16:57.0949 0x0da4 [ CEAC6D40FE887CE8406C2393CF97DE06, 34E76908B802764FF0D7AB3AF89BE77BD35B44787983343FAD89891891C0A045 ] mouclass C:\WINDOWS\System32\drivers\mouclass.sys
20:16:57.0949 0x0da4 mouclass - ok
20:16:57.0949 0x0da4 [ 02D98BF804084E9A0D69D1C69B02CCA9, EC5BC5D87043DFFD035FD4DD27B3D94E03119063519E4151BCC3522B613E2D7F ] mouhid C:\WINDOWS\System32\drivers\mouhid.sys
20:16:57.0949 0x0da4 mouhid - ok
20:16:57.0964 0x0da4 [ 515549560D481138E6E21AF7C6998E56, C7E4B38D8CCAF15B9BDA63C8C8209F6193AD220DA02E1264F1B687AACD8F409F ] mountmgr C:\WINDOWS\system32\drivers\mountmgr.sys
20:16:57.0980 0x0da4 mountmgr - ok
20:16:58.0027 0x0da4 [ E1B6FCAE82474FC071155263E2841D54, 341E2CEB1A86586730130311C4FAF86851151D5F08EF915A5F89B6C4094AE1F4 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
20:16:58.0027 0x0da4 MozillaMaintenance - ok
20:16:58.0042 0x0da4 [ F170510BE94CF45E3C6274578F6204B2, 344C3DDE1D622607CA2ABECB2C47CB0166D2D258BD94A7960C45A5ADBB640566 ] mpsdrv C:\WINDOWS\system32\drivers\mpsdrv.sys
20:16:58.0042 0x0da4 mpsdrv - ok
20:16:58.0074 0x0da4 [ D186C5844393252147BE934F3871DB7A, 30160F8268B9F46E82C5CB536867E0CF280DC98074A481595072E3320200E343 ] MpsSvc C:\WINDOWS\system32\mpssvc.dll
20:16:58.0105 0x0da4 MpsSvc - ok
20:16:58.0136 0x0da4 [ 1D55DADC22D21883A2F80297F5A5AE48, B79DF4AFC2A9CBC54E74233596544D6E41C8CAA0516BD57CA695D051EC780265 ] MRxDAV C:\WINDOWS\system32\drivers\mrxdav.sys
20:16:58.0136 0x0da4 MRxDAV - ok
20:16:58.0152 0x0da4 [ 0696F66E4D423793951A60562F794D14, E808E4E160C019F2F10762758F48C4565037974775CD267DF06B8B4A2CE26705 ] mrxsmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
20:16:58.0167 0x0da4 mrxsmb - ok
20:16:58.0199 0x0da4 [ 3E28B99198B514DFEB152EACF913025E, 6C1D8353DCD5F811F39C0C3CB5DF3D2457F0D17EE80FB06196AA169E3D19E9B2 ] mrxsmb10 C:\WINDOWS\system32\DRIVERS\mrxsmb10.sys
20:16:58.0199 0x0da4 mrxsmb10 - ok
20:16:58.0199 0x0da4 [ DBA635C6398782C549E3BE45CF1D0411, E9806E075F401D3E7357E876C7F941F7DAFFBBEE065DC3FE556014F5D92EDAC0 ] mrxsmb20 C:\WINDOWS\system32\DRIVERS\mrxsmb20.sys
20:16:58.0214 0x0da4 mrxsmb20 - ok
20:16:58.0230 0x0da4 [ 4E888019078AC363076A5433E89AA4F8, 3DEBDA290230B3E83F956C902C960E39463B7EFE86439199521356762769FD91 ] MsBridge C:\WINDOWS\system32\DRIVERS\bridge.sys
20:16:58.0230 0x0da4 MsBridge - ok
20:16:58.0261 0x0da4 [ A082C17D14D0790E27D064EA4B138AE1, 9A565ED885782D9D5135C8399C11C356DBF9EBF3B8EB4B4504BD2604AD0B45E6 ] MSDTC C:\WINDOWS\System32\msdtc.exe
20:16:58.0261 0x0da4 MSDTC - ok
20:16:58.0277 0x0da4 [ D13329FBF8345B28AB30F44CC247DC08, 9C7EC2D4D65E6510EB5B9E61BB0D14F725D7E8FE98D65161C3971E43EF1AB6EB ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys
20:16:58.0277 0x0da4 Msfs - ok
20:16:58.0292 0x0da4 [ C6B474E46F9E543B875981ED3FFE6ADD, E16687E52FB649C23D92159A1F036CB662202C1E58D961EECDAA528AA4FA669A ] msgpiowin32 C:\WINDOWS\System32\drivers\msgpiowin32.sys
20:16:58.0292 0x0da4 msgpiowin32 - ok
20:16:58.0308 0x0da4 [ 65C92EB9D08DB5C69F28C7FFD4E84E31, D709BA4723225321F665B1157A33A4AE230420752308EF535DA9A41CAC164628 ] mshidkmdf C:\WINDOWS\System32\drivers\mshidkmdf.sys
20:16:58.0308 0x0da4 mshidkmdf - ok
20:16:58.0324 0x0da4 [ 52299F086AC2DAFD100DD5DC4A8614BA, B36BE0FC96798E5EB8C193C318970E3906961E3ABC3BFAAD73138C76D9A95B0B ] mshidumdf C:\WINDOWS\System32\drivers\mshidumdf.sys
20:16:58.0324 0x0da4 mshidumdf - ok
20:16:58.0339 0x0da4 [ 36D92AF3343C3A3E57FEF11C449AEA4C, ECC85AA1E530DF55B4A4545798219F87F0FCA66DDD2E37BCEF0850D3C9129DD2 ] msisadrv C:\WINDOWS\system32\drivers\msisadrv.sys
20:16:58.0339 0x0da4 msisadrv - ok
20:16:58.0386 0x0da4 [ 810F8A0A0680662BB0CE44D0E2CEF90C, 5631B07911B7EF378CB1583A480A3C5715E59A5488B33A528F4D7A2F849B9113 ] MSiSCSI C:\WINDOWS\system32\iscsiexe.dll
20:16:58.0386 0x0da4 MSiSCSI - ok
20:16:58.0386 0x0da4 msiserver - ok
20:16:58.0402 0x0da4 [ A9BBBD2BAE6142253B9195E949AC2E8D, 599D2952D4E0B0B3E02D91E38A30F4900B1ADA330716B887B156A1CB9A3E6EE9 ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys
20:16:58.0402 0x0da4 MSKSSRV - ok
20:16:58.0417 0x0da4 [ 375E44168F2DFB91A68B8A3F619C5A7C, AC243E02E9A39D0B4DE9571F196941700EE6EB5E94F5B0BA8994FB551E73A7A8 ] MsLldp C:\WINDOWS\system32\DRIVERS\mslldp.sys
20:16:58.0417 0x0da4 MsLldp - ok
20:16:58.0433 0x0da4 [ 7B2128EB875DCBC006E6A913211006D6, 97BBD7FF770741FBFC0F181A609AD0954EA926DA203B742E8F08C89AD8FE476E ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys
20:16:58.0433 0x0da4 MSPCLOCK - ok
20:16:58.0449 0x0da4 [ 1E88171579B218115C7A772F8DE04BD8, B9EAA835D0BF8F9C4DF8403D95EF1400E8AE38F28F9DBA87657DE2129FEF02D2 ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys
20:16:58.0449 0x0da4 MSPQM - ok
20:16:58.0464 0x0da4 [ BBE2A455053E63BECBF42C2F9B21FAE0, 7C5DF563499DF59DF9895A1581E47ADF5FD54C94ECEF6C886CDB60E5E95A6DAE ] MsRPC C:\WINDOWS\system32\drivers\MsRPC.sys
20:16:58.0464 0x0da4 MsRPC - ok
20:16:58.0480 0x0da4 [ 8D6B7D515C5CBCDB75B928A0B73C3C5E, 1EB4DC3DD21D2627C78EC3F9931D9E5D033169087E43B5D7C17BF1FF2A0028CD ] mssmbios C:\WINDOWS\System32\drivers\mssmbios.sys
20:16:58.0480 0x0da4 mssmbios - ok
20:16:58.0495 0x0da4 [ 115019AE01E0EB9C048530D2928AB4A2, 6E2275E85EACF2D0FC784792E0D72A165589D33CBAB3BCFA8E271CA09566C925 ] MSTEE C:\WINDOWS\system32\drivers\MSTEE.sys
20:16:58.0495 0x0da4 MSTEE - ok
20:16:58.0511 0x0da4 [ 96D604A35070360F0DD4A7A8AF410B5E, F94DD1A3566C7C8D0A76D6E1E2530552A9B7F99C5DA0DE11829325EAB9F8B7ED ] MTConfig C:\WINDOWS\System32\drivers\MTConfig.sys
20:16:58.0511 0x0da4 MTConfig - ok
20:16:58.0511 0x0da4 [ 619CA29326B82372621DB2C0964D8365, 4091F08E266DB45A6E33A4A8B1CE9FA78BB294B3111526AA9E3868620F30AFDF ] Mup C:\WINDOWS\system32\Drivers\mup.sys
20:16:58.0527 0x0da4 Mup - ok
20:16:58.0542 0x0da4 [ B8C35C94DCB2DFEAF03BB42131F2F77F, F0FCF367CA8F722D6ABCF7F363CD406D890D71452E91C3FC6677B47AD74D6324 ] mvumis C:\WINDOWS\system32\drivers\mvumis.sys
20:16:58.0542 0x0da4 mvumis - ok
20:16:58.0574 0x0da4 [ 41A45D2A75494EABF2806EA051E00376, EB2497561C8E33A4297C044604C717FF854C7F046882A9E4A400AE7679BF5467 ] napagent C:\WINDOWS\system32\qagentRT.dll
20:16:58.0589 0x0da4 napagent - ok
20:16:58.0605 0x0da4 [ 78514B073CC5775800A65BFB82A0D66B, DCD18E277569F23921E899F508860F89ABD417C74A7776152A4463284A989488 ] NativeWifiP C:\WINDOWS\system32\DRIVERS\nwifi.sys
20:16:58.0620 0x0da4 NativeWifiP - ok
20:16:58.0652 0x0da4 [ 71E3C0100AA19D11373CCEB2F51A6008, 58FBF35F5FE19BEABE483C11E9996BE93D76721C8C34465350FA98B465CA3672 ] NcaSvc C:\WINDOWS\System32\ncasvc.dll
20:16:58.0652 0x0da4 NcaSvc - ok
20:16:58.0667 0x0da4 [ 51DF09CAB2CAC64FEE3E371D9028ED01, 9B81604D0D0359AF8F54FED6DA7116FFD2F40407895028EAD99FF1D7CFDC2D14 ] NcbService C:\WINDOWS\System32\ncbservice.dll
20:16:58.0683 0x0da4 NcbService - ok
20:16:58.0699 0x0da4 [ 2586C4C167499210DCBF3ECFD8CCE210, D8129FEDE9918BF4FB0057CC58700D4E08457060E810B9CC25CA0F598506ADB8 ] NcdAutoSetup C:\WINDOWS\System32\NcdAutoSetup.dll
20:16:58.0699 0x0da4 NcdAutoSetup - ok
20:16:58.0761 0x0da4 [ F21B77B4D74092A543807D3CEB711A88, 5C3C17A10E990070FAB317C0C5333DE768E408CAF43EC4FA9D18116C6EE3B3DC ] NDIS C:\WINDOWS\system32\drivers\ndis.sys
20:16:58.0792 0x0da4 NDIS - ok
20:16:58.0792 0x0da4 [ C6BB12BC35D1637CA17AE16D3A4725EB, 01C1D9FA738886A195166F88207EEB6715A1DE0608978ED6C5DC738AF5C02513 ] NdisCap C:\WINDOWS\system32\DRIVERS\ndiscap.sys
20:16:58.0808 0x0da4 NdisCap - ok
20:16:43.0105 0x073c ============================================================
20:16:43.0105 0x073c Current date / time: 2014/07/11 20:16:43.0105
20:16:43.0105 0x073c SystemInfo:
20:16:43.0105 0x073c
20:16:43.0105 0x073c OS Version: 6.3.9600 ServicePack: 0.0
20:16:43.0105 0x073c Product type: Workstation
20:16:43.0105 0x073c ComputerName: PETRMALENKA
20:16:43.0105 0x073c UserName: Petr
20:16:43.0105 0x073c Windows directory: C:\WINDOWS
20:16:43.0105 0x073c System windows directory: C:\WINDOWS
20:16:43.0105 0x073c Running under WOW64
20:16:43.0105 0x073c Processor architecture: Intel x64
20:16:43.0105 0x073c Number of processors: 4
20:16:43.0105 0x073c Page size: 0x1000
20:16:43.0105 0x073c Boot type: Normal boot
20:16:43.0105 0x073c ============================================================
20:16:43.0433 0x073c KLMD registered as C:\WINDOWS\system32\drivers\78258047.sys
20:16:43.0901 0x073c System UUID: {CA6E7026-0AB5-4E6D-C908-5CBBE34E8573}
20:16:44.0495 0x073c Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
20:16:44.0511 0x073c ============================================================
20:16:44.0511 0x073c \Device\Harddisk0\DR0:
20:16:44.0511 0x073c MBR partitions:
20:16:44.0511 0x073c \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0xAFFED
20:16:44.0511 0x073c \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0xB07ED, BlocksNum 0x74655800
20:16:44.0511 0x073c ============================================================
20:16:44.0527 0x073c C: <-> \Device\Harddisk0\DR0\Partition2
20:16:44.0527 0x073c ============================================================
20:16:44.0527 0x073c Initialize success
20:16:44.0527 0x073c ============================================================
20:16:47.0730 0x0da4 ============================================================
20:16:47.0730 0x0da4 Scan started
20:16:47.0730 0x0da4 Mode: Manual;
20:16:47.0730 0x0da4 ============================================================
20:16:47.0730 0x0da4 KSN ping started
20:16:50.0120 0x0da4 KSN ping finished: true
20:16:51.0792 0x0da4 ================ Scan system memory ========================
20:16:51.0792 0x0da4 System memory - ok
20:16:51.0792 0x0da4 ================ Scan services =============================
20:16:51.0995 0x0da4 [ E1832BD9FD7E0FC2DC9FA5935DE3E8C1, 41FF7418887AFC8B9C96EF21C5950DD342CC9E3C0D87AFD60A05B988C1D6CC23 ] 1394ohci C:\WINDOWS\System32\drivers\1394ohci.sys
20:16:52.0011 0x0da4 1394ohci - ok
20:16:52.0058 0x0da4 [ AD508A1A46EC21B740AB31C28EFDFDB1, 9B1046CF0B80723149BD359B55CC0B8B3ABBEAA9038469F542A4C345C503FB02 ] 3ware C:\WINDOWS\system32\drivers\3ware.sys
20:16:52.0058 0x0da4 3ware - ok
20:16:52.0089 0x0da4 [ 9539F7917B4B6D92C90F0FAA6B86C605, B4C284E8EECC2E7025053A3320EFDC9F47BCA9828853AD2A805DB826CA4AC27E ] ACPI C:\WINDOWS\system32\drivers\ACPI.sys
20:16:52.0105 0x0da4 ACPI - ok
20:16:52.0120 0x0da4 [ AC8279D229398BCF05C3154ADCA86813, 083E86CBE53244D24C334DB1511C77025133AE7875191845764B890A8CA5AFA9 ] acpiex C:\WINDOWS\system32\Drivers\acpiex.sys
20:16:52.0120 0x0da4 acpiex - ok
20:16:52.0136 0x0da4 [ A8970D9BF23CD309E0403978A1B58F3F, 9946C8477104EEC7DB197E2222F9905307F101C398CCED4B5FD0F86A5622C791 ] acpipagr C:\WINDOWS\System32\drivers\acpipagr.sys
20:16:52.0136 0x0da4 acpipagr - ok
20:16:52.0167 0x0da4 [ 111A89C99C5B4F1A7BCE5F643DD86F65, 41A2E49FF443927D05F7EF638518108227852984E68D4663C8761178C0B84A45 ] AcpiPmi C:\WINDOWS\System32\drivers\acpipmi.sys
20:16:52.0167 0x0da4 AcpiPmi - ok
20:16:52.0167 0x0da4 [ 5758387D68A20AE7D3245011B07E36E7, 77832E200E8B0D259552F6F60FE454A887E3EBBB9EA2F3590E6645289A04E293 ] acpitime C:\WINDOWS\System32\drivers\acpitime.sys
20:16:52.0167 0x0da4 acpitime - ok
20:16:52.0230 0x0da4 [ B362181ED3771DC03B4141927C80F801, 69514E5177A0AEA89C27C2234712F9F82E8D8F99E1FD4273898C9324C6FF7472 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
20:16:52.0230 0x0da4 AdobeARMservice - ok
20:16:52.0339 0x0da4 [ A6B6AB9502B63F43A9A56AE6AFB22078, DD1F0BA3D8F3333F52A71EAE3719A001F6EF844D647FFABF0E4C56C6C764ACA7 ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
20:16:52.0355 0x0da4 AdobeFlashPlayerUpdateSvc - ok
20:16:52.0386 0x0da4 [ 7C1FDF1B48298CBA7CE4BDD4978951AD, 80F4D536E1231B30E836F72ADC8814AE6AA9FEC573FB5F3F965FAC8ABCCAF0F8 ] ADP80XX C:\WINDOWS\system32\drivers\ADP80XX.SYS
20:16:52.0401 0x0da4 ADP80XX - ok
20:16:52.0433 0x0da4 [ 0F17D49BE041B7EFF1D33BF1414E7AC6, F8B536B60903814DF88DAF535753288537EF0993E42AA4E734EDA8D68B24C7AB ] AeLookupSvc C:\WINDOWS\System32\aelupsvc.dll
20:16:52.0433 0x0da4 AeLookupSvc - ok
20:16:52.0480 0x0da4 [ 374E27295F0A9DCAA8FC96370F9BEEA5, 51C394E0C2322D7D093941A1B8766171B5D1F47DF2FE0834209492891EA7D999 ] AFD C:\WINDOWS\system32\drivers\afd.sys
20:16:52.0480 0x0da4 AFD - ok
20:16:52.0511 0x0da4 [ 7DFAEBA9AD62D20102B576D5CAC45EC8, 9FA5207335303D1E8E9A3C9E1FB82C09AD21B04382F69D777A67E48EE91D2093 ] agp440 C:\WINDOWS\system32\drivers\agp440.sys
20:16:52.0511 0x0da4 agp440 - ok
20:16:52.0527 0x0da4 [ 8E8E34B7BA059050EED827410D0697A2, 85B6684709F24729A6497563812A90A54068AC2DD9EEA03037CB1EEF5C85AAA9 ] ahcache C:\WINDOWS\system32\DRIVERS\ahcache.sys
20:16:52.0527 0x0da4 ahcache - ok
20:16:52.0558 0x0da4 [ A91D8E1E433EFB32551BCE69037E1CE7, 41DFDD5B56918D19D09DFB3E4B07460AA85647A8647ABBBB906158D8D6653290 ] ALG C:\WINDOWS\System32\alg.exe
20:16:52.0558 0x0da4 ALG - ok
20:16:52.0573 0x0da4 [ 7589DE749DB6F71A68489DCE04158729, 5F35EDD50737985595C9D6703237CA2ADE49AA5443331020899698EB5114A0FB ] AmdK8 C:\WINDOWS\System32\drivers\amdk8.sys
20:16:52.0573 0x0da4 AmdK8 - ok
20:16:52.0589 0x0da4 [ B46D2D89AFF8A9490FA8C98C7A5616E3, BE0765B5423B690E0F097FECD9717FAA95BFDFFDC6CF1B93DE5A19A1B7797879 ] AmdPPM C:\WINDOWS\System32\drivers\amdppm.sys
20:16:52.0589 0x0da4 AmdPPM - ok
20:16:52.0605 0x0da4 [ D2BF2F94A47D332814910FD47C6BBCD2, FE273D77D119D958676E1197D9EA7B008E3B05C6192B1962A81D4223ED204C35 ] amdsata C:\WINDOWS\system32\drivers\amdsata.sys
20:16:52.0605 0x0da4 amdsata - ok
20:16:52.0636 0x0da4 [ A8E04943C7BBA7219AA50400272C3C6E, 794C0BD12DF0392654E9A37AE4A24B5BE2D83F1F24F74DD48A1A0BF3AB8B1FF8 ] amdsbs C:\WINDOWS\system32\drivers\amdsbs.sys
20:16:52.0636 0x0da4 amdsbs - ok
20:16:52.0652 0x0da4 [ CEA5F4F27CFC08E3A44D576811B35F50, 89DF64B81BD109BAABAE93A4603C1617241219F38DDAF325EFE6BD35FF6FD717 ] amdxata C:\WINDOWS\system32\drivers\amdxata.sys
20:16:52.0652 0x0da4 amdxata - ok
20:16:52.0667 0x0da4 [ 04951A9A937CBE28A2D3FEEA360B6D1F, D8AAF000BE4FE4B203DC2EB2A64F780A542E5238CE3F9952FD03277379B11529 ] AppID C:\WINDOWS\system32\drivers\appid.sys
20:16:52.0667 0x0da4 AppID - ok
20:16:52.0698 0x0da4 [ C0DC3F58214A227980AEB091CFD2F973, 0C3E8453C9F65ADA3E74C38C0E3AC3E0CBFD807B827097046265B38839E151E3 ] AppIDSvc C:\WINDOWS\System32\appidsvc.dll
20:16:52.0698 0x0da4 AppIDSvc - ok
20:16:52.0730 0x0da4 [ 8D6F535461F6CFF75A8ADDF83024C904, F2A97EC4A6284F28B685A3CE2D450F61E75EE8692D718A6AA352D5734BBBAD7B ] Appinfo C:\WINDOWS\System32\appinfo.dll
20:16:52.0730 0x0da4 Appinfo - ok
20:16:52.0776 0x0da4 [ CB12C47647D8BDAFAA94C0856B14128B, 5590C98095357C92563EF94800107D3611AA6ECA1A70BE463C03B279E618A6C4 ] AppReadiness C:\WINDOWS\system32\AppReadiness.dll
20:16:52.0792 0x0da4 AppReadiness - ok
20:16:52.0839 0x0da4 [ F7529BD3FFAC9C33D15F6DE3B7353B03, 8EF0A84C9687A246B60939A326E498121039E9CC617A7ABBA933EDD327F3467E ] AppXSvc C:\WINDOWS\system32\appxdeploymentserver.dll
20:16:52.0886 0x0da4 AppXSvc - ok
20:16:52.0902 0x0da4 [ 65045784366F7EC5FB4E71BCF923187B, 53C215C64FF12E44B097F7CB88E8482438CE0ACBD3C68D8FD38BA0D0D8747FAA ] arcsas C:\WINDOWS\system32\drivers\arcsas.sys
20:16:52.0902 0x0da4 arcsas - ok
20:16:52.0917 0x0da4 [ D95E64416A4A3ED6986E0F474DA934BD, DBB4A0DED0DABE1F8FF0DB8C0E9EC4EC906A85A45DC0AEC013A8744F9BF5D40E ] aswHwid C:\WINDOWS\system32\drivers\aswHwid.sys
20:16:52.0917 0x0da4 aswHwid - ok
20:16:52.0948 0x0da4 [ FF1E537A3632CBB9A0BF72B9FD0878D5, B26E6A1F6E6FA5280A12861EFAD44D8F49353F47B21843EBA73E149CF613DCBC ] aswMonFlt C:\WINDOWS\system32\drivers\aswMonFlt.sys
20:16:52.0948 0x0da4 aswMonFlt - ok
20:16:52.0964 0x0da4 [ A5757DE5F9C83AB40667A53D5126EA40, 58B72B1B126CF641188703CE82E26BEB0C41AD7587CFFCCCE9E3C64CC7AACC90 ] aswRdr C:\WINDOWS\system32\drivers\aswRdr2.sys
20:16:52.0964 0x0da4 aswRdr - ok
20:16:52.0980 0x0da4 [ 645D97385F3F284FB5604F9B970F4D24, 15A9D7F0F4C1062210E4E744A9069B8645177D19F35B8740D74022639DC05F2E ] aswRvrt C:\WINDOWS\system32\drivers\aswRvrt.sys
20:16:52.0980 0x0da4 aswRvrt - ok
20:16:53.0027 0x0da4 [ B8FDEDE963B82CFD23B3A53A3084666D, 3537E5B684FB6F0AA589A5FA7CD111E1744DF384AB1A266D4114100F104ED11B ] aswSnx C:\WINDOWS\system32\drivers\aswSnx.sys
20:16:53.0042 0x0da4 aswSnx - ok
20:16:53.0073 0x0da4 [ 0DEDC041DF594AEC2C3BD00417CFAF60, 0D3A8924503986546EE256D185225C0B080FDB6B0C8B0BED7516B07A7334371B ] aswSP C:\WINDOWS\system32\drivers\aswSP.sys
20:16:53.0089 0x0da4 aswSP - ok
20:16:53.0105 0x0da4 [ 48DED912CDE54FC0923B9858512366E1, 9B216B934408A7CB3CE2B41240B7EF01EAA3BC066211B784064FF8AC97A29B4E ] aswStm C:\WINDOWS\system32\drivers\aswStm.sys
20:16:53.0105 0x0da4 aswStm - ok
20:16:53.0120 0x0da4 [ 471A311745848B80339436688A8286E6, E51C57236CEC19AC38E85D115DB97875517D837811188AD2E53FA49055B53890 ] aswVmm C:\WINDOWS\system32\drivers\aswVmm.sys
20:16:53.0136 0x0da4 aswVmm - ok
20:16:53.0136 0x0da4 [ 74B14192CF79A72F7536B27CB8814FBD, 0CF6BBB63FFE0C12777664D80B2797923844C8392D0FD81D7962EE5EE2C3C3D9 ] atapi C:\WINDOWS\system32\drivers\atapi.sys
20:16:53.0136 0x0da4 atapi - ok
20:16:53.0167 0x0da4 [ 886767FD022213F7885416134E9082E5, E248D82210FBEBF62C23EBEC74A976B2D1A4E62D3B7638D95B2574B77BA05DD0 ] AudioEndpointBuilder C:\WINDOWS\System32\AudioEndpointBuilder.dll
20:16:53.0167 0x0da4 AudioEndpointBuilder - ok
20:16:53.0198 0x0da4 [ 79B134ECE836B406B212E28C24011538, 1B875DD23CCAD8A2759DCDBCDCF3DE14231B9DB5EEC8E84FE081E41A52A047A1 ] Audiosrv C:\WINDOWS\System32\Audiosrv.dll
20:16:53.0230 0x0da4 Audiosrv - ok
20:16:53.0292 0x0da4 [ 73F5C13B431915BAE35254B4E95DFB71, 393A045859382C44133C004598B1512048046BCC129FED2247A77FDBFCDB6DFF ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
20:16:53.0292 0x0da4 avast! Antivirus - ok
20:16:53.0323 0x0da4 [ 96E8CAF20FC4B6C31CAD7816A801EB78, E4870DB8FFBDCFEE98449338D0BDBF2DD0B5FEC75514E41C11A882BE6EB16833 ] AxInstSV C:\WINDOWS\System32\AxInstSV.dll
20:16:53.0323 0x0da4 AxInstSV - ok
20:16:53.0355 0x0da4 [ A4A73F631FE2AA2826FBE4A399B04DEF, 973AACE8DC8DA669D0DF20F17EFDEEABB90AA046AC980948D16A62D39A606A79 ] b06bdrv C:\WINDOWS\system32\drivers\bxvbda.sys
20:16:53.0370 0x0da4 b06bdrv - ok
20:16:53.0386 0x0da4 [ 8CC7F7E4AFCBA605921B137ED7992C68, 71406E6D6E9964740A6D90B05329D5492BB90AF40E0630CF2FBF4BA4BA14F2DD ] BasicDisplay C:\WINDOWS\System32\drivers\BasicDisplay.sys
20:16:53.0386 0x0da4 BasicDisplay - ok
20:16:53.0401 0x0da4 [ 38A82F4EE8C416A6744B6D30381ED768, 9EAAE5F43BA09359130AC04B1DCA0F5D4DF32ED89C02DC5CEB640918948847F7 ] BasicRender C:\WINDOWS\System32\drivers\BasicRender.sys
20:16:53.0401 0x0da4 BasicRender - ok
20:16:53.0417 0x0da4 [ C1ABB0F7E3BEA48A0417BDF6FF14AB21, 1CAC63A1A0FB9855A27EE977794576A860F6650C9EF7667FFB27F2A2FF721857 ] bcmfn2 C:\WINDOWS\System32\drivers\bcmfn2.sys
20:16:53.0417 0x0da4 bcmfn2 - ok
20:16:53.0448 0x0da4 [ 5BD3A2351BEFCAC8757626271F8EFA89, 6508673210129CF7EFCA93EC7874208FAD361E37814EB4FE9E0EC034E73D5F16 ] BDESVC C:\WINDOWS\System32\bdesvc.dll
20:16:53.0464 0x0da4 BDESVC - ok
20:16:53.0495 0x0da4 [ EC19013E4CF87609534165DF897274D6, 8ED45537CF2D58D759A587CCBFDADD5580C7447B0C3B172CF19ECC7585E073FC ] Beep C:\WINDOWS\system32\drivers\Beep.sys
20:16:53.0495 0x0da4 Beep - ok
20:16:53.0526 0x0da4 [ BBE15881FE11BE37112F8320C41DAFB9, 5CE92563628812FF6E00556D8E2DAD6ADCAAF0F4C3B90123F1D98ED6E3BB6DAD ] BFE C:\WINDOWS\System32\bfe.dll
20:16:53.0558 0x0da4 BFE - ok
20:16:53.0636 0x0da4 [ 15225081966C785A9192782401643FD4, E2BA0C8D044556FDD9DD7A25F7F71553DE7A2924E78F9284413C2AC46F0BF4EB ] BITS C:\WINDOWS\System32\qmgr.dll
20:16:53.0667 0x0da4 BITS - ok
20:16:53.0683 0x0da4 [ 6B4FFFDDC618FCF64473CAA86E305697, 29EA66071D5822920F5C50533673ADAB5204F8B25C11027AD27450D881F1142D ] bowser C:\WINDOWS\system32\DRIVERS\bowser.sys
20:16:53.0683 0x0da4 bowser - ok
20:16:53.0730 0x0da4 [ F2559A492AF8D653D1F47ADABA4C3E97, 77347915FB433023769699DFC9511F54E69C7FC7AB75F57FDC1A58E64A7126DE ] BrokerInfrastructure C:\WINDOWS\System32\bisrv.dll
20:16:53.0730 0x0da4 BrokerInfrastructure - ok
20:16:53.0761 0x0da4 [ D528D6A92D187777691993DD757AF19A, 2C79978310193431E5FC462368424A172858D5351C92D4815C2A7E35B5DDE50C ] Browser C:\WINDOWS\System32\browser.dll
20:16:53.0761 0x0da4 Browser - ok
20:16:53.0776 0x0da4 [ A8F23D453A424FF4DE04989C4727ECC7, AE4A9081395C7379F1C947EF8243F7609F90C843E086B8E77E1A2C06E36D4381 ] BthAvrcpTg C:\WINDOWS\System32\drivers\BthAvrcpTg.sys
20:16:53.0776 0x0da4 BthAvrcpTg - ok
20:16:53.0792 0x0da4 [ 746B9F94214915AECDE4B7FEA5FF9664, EA2877D49DB4B7B9CE61653D63E8776DFF1CBCCAB12C14DB1D20DA44B8F06357 ] BthHFEnum C:\WINDOWS\System32\drivers\bthhfenum.sys
20:16:53.0792 0x0da4 BthHFEnum - ok
20:16:53.0808 0x0da4 [ 71FE2A48E4C93DDB9798C024880B6C07, 8E93DE29C61A5FA64216231228CB3C4A1A693FE87CAA2C070BCAD7BE2D8ED000 ] bthhfhid C:\WINDOWS\System32\drivers\BthHFHid.sys
20:16:53.0808 0x0da4 bthhfhid - ok
20:16:53.0823 0x0da4 [ 07E33226AD218A2A162662A05CAFB52F, 0AC3D8B79EDA6DA232FA4E1CAF6592420A9EDE96350D1F0504C2434261684F0B ] BTHMODEM C:\WINDOWS\System32\drivers\bthmodem.sys
20:16:53.0823 0x0da4 BTHMODEM - ok
20:16:53.0839 0x0da4 [ E5E48FEED73D463175EAB1542495191C, 0A8182F5BA7B694AB1DD3680F1194E4A568FE40DBA4BFDFF2EA09BAD045FFB29 ] bthserv C:\WINDOWS\system32\bthserv.dll
20:16:53.0839 0x0da4 bthserv - ok
20:16:53.0855 0x0da4 [ 2FA6510E33F7DEFEC03658B74101A9B9, 61C8C8E3F09B427711464C974EE22E1E01C48E10DB54A4EC9901F482FC36C978 ] cdfs C:\WINDOWS\system32\DRIVERS\cdfs.sys
20:16:53.0855 0x0da4 cdfs - ok
20:16:53.0855 0x0da4 [ C6796EA22B513E3457514D92DCDB1A3D, 2B893F3950C6B913B934C2089B69F3B0B77F229AE1820907E598455CBB78139C ] cdrom C:\WINDOWS\System32\drivers\cdrom.sys
20:16:53.0870 0x0da4 cdrom - ok
20:16:53.0886 0x0da4 [ AB285CE3431FF3D2ACE669245874C1C7, 6AF4C3E86EFA51F7FB6F8492CB2CCB807C7775EAE0508B87F07134FDAC679BD7 ] CertPropSvc C:\WINDOWS\System32\certprop.dll
20:16:53.0886 0x0da4 CertPropSvc - ok
20:16:53.0902 0x0da4 [ BE9936EDD3267FAAFF94A7835867F00B, 3CEEF2377D45ED38C7CD3CE4C746EC5EA7277EFEC728A5438F0EF5F62FC7C859 ] circlass C:\WINDOWS\System32\drivers\circlass.sys
20:16:53.0902 0x0da4 circlass - ok
20:16:53.0933 0x0da4 [ 179A41249055D5F039F1B6703F3B6D2B, 886CF715D9E85DB5C9B991EBCB9B12E27AA0EEE52528E222C80CA5B5B0A7AF52 ] CLFS C:\WINDOWS\system32\drivers\CLFS.sys
20:16:53.0948 0x0da4 CLFS - ok
20:16:53.0964 0x0da4 [ EF6EF85DADC3184A10D8F2F7159973CB, 42FCB286CED95A5DEBC5C0C894FCBC4818A2C818BB71087142FB51A08A0BE96B ] CmBatt C:\WINDOWS\System32\drivers\CmBatt.sys
20:16:53.0964 0x0da4 CmBatt - ok
20:16:53.0995 0x0da4 [ 1CD3A907D64D08F49208DA00B69BF35E, ABBD70FFCA0DE2274D855AFC08BF7BC0AA6D44EFC9FDBF7DF44B73CD5C210E28 ] CNG C:\WINDOWS\system32\Drivers\cng.sys
20:16:54.0011 0x0da4 CNG - ok
20:16:54.0026 0x0da4 [ 03AAED827C36F35D70900558B8274905, 8E44A23C6013FFAE7769F99CAA3B1D6288DE00A38937F9056903AC265B503AFA ] CompositeBus C:\WINDOWS\System32\drivers\CompositeBus.sys
20:16:54.0026 0x0da4 CompositeBus - ok
20:16:54.0026 0x0da4 COMSysApp - ok
20:16:54.0042 0x0da4 [ A1FF7DFBFBE164CF92603C651D304DD2, 470ACE5A75E64FC62C950037201199857E974803625DC73BEDBCF6FA4DDD496C ] condrv C:\WINDOWS\system32\drivers\condrv.sys
20:16:54.0042 0x0da4 condrv - ok
20:16:54.0073 0x0da4 [ 0EFE4B5884A8032617826A4D76F80969, 083D296CC623C83D36A97AEE343ADF819B17E490F931DBE4D161BD1E8C289E02 ] CryptSvc C:\WINDOWS\system32\cryptsvc.dll
20:16:54.0073 0x0da4 CryptSvc - ok
20:16:54.0089 0x0da4 [ 315BA4BC19316D72B2E037534E048B93, 69613635DB23E6A935673B1025C2010ED3E195473D25368CF74234C4C36910BE ] dam C:\WINDOWS\system32\drivers\dam.sys
20:16:54.0089 0x0da4 dam - ok
20:16:54.0136 0x0da4 [ 81979817943D830BF24571B7C1B28A1A, 9584D8F1FB3E6CF17BD465670B208C723A8E8B06775A3DA44F75D7710404EEA6 ] DcomLaunch C:\WINDOWS\system32\rpcss.dll
20:16:54.0151 0x0da4 DcomLaunch - ok
20:16:54.0167 0x0da4 [ AF3FF97AC2A73E70F8A8D11FB694175B, 3AA25BF9DED08056F52ACF246118C13C8816B5E8AA4D8606DB7DAB4E4E6A9169 ] defragsvc C:\WINDOWS\System32\defragsvc.dll
20:16:54.0183 0x0da4 defragsvc - ok
20:16:54.0245 0x0da4 [ 8F387C2C99EE09C6E2AC316205F86A17, EC9E8AE72A21992AA118964E17090BA4503EB051273AD18185C95172F57328CE ] DeviceAssociationService C:\WINDOWS\system32\das.dll
20:16:54.0261 0x0da4 DeviceAssociationService - ok
20:16:54.0292 0x0da4 [ BC6849C62DB407573C6AD8CB1A4D2628, 5BDE0D60F85E4C27CEAD1B301155B54D841FB773BD5BB8AC5DDAEE31F8E94627 ] DeviceInstall C:\WINDOWS\system32\umpnpmgr.dll
20:16:54.0308 0x0da4 DeviceInstall - ok
20:16:54.0323 0x0da4 [ A03F362C5557E238CBFA914689C77248, BAD0A1124E6A384C15028FBE121ADF650F7716442555AD3737B9EA1F58A69246 ] Dfsc C:\WINDOWS\system32\Drivers\dfsc.sys
20:16:54.0323 0x0da4 Dfsc - ok
20:16:54.0355 0x0da4 [ 8B107F55FD61654A6C9F1B819AEC5FC4, 773B1B9D3583F17B7C89BDE1EC4487ABB0AE039DF4583F8746460425443DA291 ] Dhcp C:\WINDOWS\system32\dhcpcore.dll
20:16:54.0370 0x0da4 Dhcp - ok
20:16:54.0401 0x0da4 [ 4D40C9B33F738797CF50E77CB7C53E85, 7BA341342A47DEB15B51971C97A5237ACD8BDAD9033F63DF0000892BE43F8E13 ] disk C:\WINDOWS\system32\drivers\disk.sys
20:16:54.0401 0x0da4 disk - ok
20:16:54.0433 0x0da4 [ EB70A894708D1BC176AFD690FF06085F, 0DD2A97F5E1B38D1F7C0D44E50F09EA222B18B3B074CC9C8CD25A7526CB1A112 ] dmvsc C:\WINDOWS\System32\drivers\dmvsc.sys
20:16:54.0433 0x0da4 dmvsc - ok
20:16:54.0448 0x0da4 [ FE7656474448BE6A6C68E5C9BEB7CA94, 8B9F04CAA29A6EEFCA3D1E7BAFE340D5CCA8AF665474E69B1DF7E2A518B83A89 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll
20:16:54.0464 0x0da4 Dnscache - ok
20:16:54.0480 0x0da4 [ 50288EA079BB520C2B8C8A154202D518, 8916A9180CA009D124FFDFB4CCF5FDFEF7FA2FD37CBCD49FAD4C68E051B4734D ] dot3svc C:\WINDOWS\System32\dot3svc.dll
20:16:54.0495 0x0da4 dot3svc - ok
20:16:54.0511 0x0da4 [ 281BEE07BA97E3E98D12A822D923D0D8, 6EB482B2D4D6048D145C3738B2B6FA27A90B5EA53E9167447820F9981B004E63 ] DPS C:\WINDOWS\system32\dps.dll
20:16:54.0511 0x0da4 DPS - ok
20:16:54.0542 0x0da4 [ DDC11A202207C0400CBE07315B8FDE5E, 3ED0CA3A714582D92001BA3BFF78BE082F4DC8021298D5A2632F3B2B0A1C09DC ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys
20:16:54.0542 0x0da4 drmkaud - ok
20:16:54.0573 0x0da4 [ 5B074F14F5DD6418F46EE4CA2DEB7EA8, B8223D73C3DE123759101F7D5D45C60BD12B221F09D349575A1044CE3F43CBC5 ] DsmSvc C:\WINDOWS\System32\DeviceSetupManager.dll
20:16:54.0589 0x0da4 DsmSvc - ok
20:16:54.0636 0x0da4 [ C7D252742946DD395670649742FBD73D, 333CC984CF318D36EA8C5867077A1732A214445EB6B7CF7AC2E8F1C8259CD9C7 ] DXGKrnl C:\WINDOWS\System32\drivers\dxgkrnl.sys
20:16:54.0667 0x0da4 DXGKrnl - ok
20:16:54.0683 0x0da4 [ 6073537F250B45E1CB2A02E97F0FE1B2, 653F3F2F2019168EDF225944A88AFDBF8393B62AA076BD19980691778F3DB67D ] Eaphost C:\WINDOWS\System32\eapsvc.dll
20:16:54.0683 0x0da4 Eaphost - ok
20:16:54.0777 0x0da4 [ 114BCFDF367FF37C3F1B0A96AF542E4D, D385BC1D91BC1406091C8C3691C07A90BD60EDE05B1384E5AA3506FCB909C857 ] ebdrv C:\WINDOWS\system32\drivers\evbda.sys
20:16:54.0839 0x0da4 ebdrv - ok
20:16:54.0870 0x0da4 [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] EFS C:\WINDOWS\System32\lsass.exe
20:16:54.0870 0x0da4 EFS - ok
20:16:54.0886 0x0da4 [ 43531A5993380CC5113242C29D265FD9, EE0076D96F7F3CF29884AC7A67C08A429115A7201354A1FB5DE45FD63ABB4960 ] EhStorClass C:\WINDOWS\system32\drivers\EhStorClass.sys
20:16:54.0886 0x0da4 EhStorClass - ok
20:16:54.0902 0x0da4 [ 6F8E738A9505A388B1157FDDE7B3101B, 3696CA634102B41EEA11EB9DCA0B24439D8636AED4A7190C138C5E64A2EFB514 ] EhStorTcgDrv C:\WINDOWS\system32\drivers\EhStorTcgDrv.sys
20:16:54.0902 0x0da4 EhStorTcgDrv - ok
20:16:54.0933 0x0da4 [ BE2902E13CA69383F449B6BF927844FB, F092785E305D8E1FE795AF98A7A7B7B4548A0D6687060568C9E078FFA8D65C1C ] ElbyCDIO C:\WINDOWS\system32\Drivers\ElbyCDIO.sys
20:16:54.0933 0x0da4 ElbyCDIO - ok
20:16:54.0949 0x0da4 [ DFFFAE1442BA4076E18EED5E406FA0D3, 329FC6FB8D14BEACDBE2A5D4C496EDEA485E838B1DF27566E278F8F8E0D8E82E ] ErrDev C:\WINDOWS\System32\drivers\errdev.sys
20:16:54.0949 0x0da4 ErrDev - ok
20:16:54.0980 0x0da4 [ 030CE75B7D8F75FAA7BA1EC6FD0EB5A3, 5264734F0572FAEDCCB008221C9982CCB7922C4FFC358605424EA413CDCDAE99 ] EventSystem C:\WINDOWS\system32\es.dll
20:16:54.0995 0x0da4 EventSystem - ok
20:16:55.0011 0x0da4 [ 7729D294A555C7AEB281ED8E4D0E01E4, 7269E79D72CCE477AC108294D0DDFB59CF533B03C587599C5AB0507C43A0B6D4 ] exfat C:\WINDOWS\system32\drivers\exfat.sys
20:16:55.0011 0x0da4 exfat - ok
20:16:55.0027 0x0da4 [ 7C4E0D5900B2A1D11EDD626D6DDB937B, 732F310F8F6016C56F432A81636B13CE0124A802FE8DD91287B618EED22C9A1D ] fastfat C:\WINDOWS\system32\drivers\fastfat.sys
20:16:55.0042 0x0da4 fastfat - ok
20:16:55.0074 0x0da4 [ 2BC8532ABF2B3756B78FA1DA54147DDE, DF65EE2AB0255A2CF3221085A6BE7C37E3DB6BFEED3BCADCDD69BB1049F6DCB1 ] Fax C:\WINDOWS\system32\fxssvc.exe
20:16:55.0089 0x0da4 Fax - ok
20:16:55.0105 0x0da4 [ 5D8402613E778B3BD45E687A8372710B, EE9EA10805168D309A609B9019AEC5961EE46D18207B5E0EA2DE4064A5770AF8 ] fdc C:\WINDOWS\System32\drivers\fdc.sys
20:16:55.0105 0x0da4 fdc - ok
20:16:55.0120 0x0da4 [ DC1A78BCCCB7EE53D6FD3BD615A8E222, EE16B6853185AAE779D7135035983938009901658F76A8856AAC12EBA15BB34E ] fdPHost C:\WINDOWS\system32\fdPHost.dll
20:16:55.0120 0x0da4 fdPHost - ok
20:16:55.0136 0x0da4 [ E5AD448F2DC84B1CF387FA7F2A3D1936, BBB29C79A085C503F5EFFB5144596D5DEC48A4EB34A049A4E7B38B27F6D92E0A ] FDResPub C:\WINDOWS\system32\fdrespub.dll
20:16:55.0136 0x0da4 FDResPub - ok
20:16:55.0152 0x0da4 [ 0046E0BD031213D37123876B0D0FA61C, A4FE17D56F0BAFB70D0D421ED9D1B6E50AF8ADAA4B59328A41AEC5B4C068A3CB ] fhsvc C:\WINDOWS\system32\fhsvc.dll
20:16:55.0152 0x0da4 fhsvc - ok
20:16:55.0183 0x0da4 [ BCFD8B149B3ADF92D0DB1E909CAF0265, 002B085C131473642450176B4B8359F3E5B04350AFB659B9C0F9EB587D1181E7 ] FileInfo C:\WINDOWS\system32\drivers\fileinfo.sys
20:16:55.0183 0x0da4 FileInfo - ok
20:16:55.0199 0x0da4 [ A1A66C4FDAFD6B0289523232AFB7D8AF, 0F5832F626BB62190D5F3A088CE6E048D8A400CCF9EA527F06973CAD96D3A81C ] Filetrace C:\WINDOWS\system32\drivers\filetrace.sys
20:16:55.0199 0x0da4 Filetrace - ok
20:16:55.0214 0x0da4 [ BE743083CF7063C486A4398E3AEFE59A, 85796D89943DD6FE3932C1ED6CF01470C1B4DFD243C390B07055FFDA3C231551 ] flpydisk C:\WINDOWS\System32\drivers\flpydisk.sys
20:16:55.0214 0x0da4 flpydisk - ok
20:16:55.0245 0x0da4 [ 6592D192E2823C043EDBC010E7774053, C025A0EC5517DC3BD5D6656DC0F0F19021FB3D2EE90EC6194E1BD74E638EBBDC ] FltMgr C:\WINDOWS\system32\drivers\fltmgr.sys
20:16:55.0245 0x0da4 FltMgr - ok
20:16:55.0292 0x0da4 [ 3FA6DC6B29717E32E211C1FD821F2C75, E467F3775427C93CC2B87327B0A45669631A5FC460C558F6796BA26002A8BBFC ] FontCache C:\WINDOWS\system32\FntCache.dll
20:16:55.0339 0x0da4 FontCache - ok
20:16:55.0433 0x0da4 [ 1C52387BF5A127F5F3BFB31288F30D93, 90D13F60170CD74304F3036A90D596AA3E1E134455A780310BDF67AC7815F2E7 ] FontCache3.0.0.0 C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
20:16:55.0433 0x0da4 FontCache3.0.0.0 - ok
20:16:55.0449 0x0da4 [ 35005534E600E993A90B036E4E599F2B, DA56FA3776FBD3D50276CB7410E0CB6F137DD8FCA84C0F3FEF8B1FEA5F6CA592 ] FsDepends C:\WINDOWS\system32\drivers\FsDepends.sys
20:16:55.0449 0x0da4 FsDepends - ok
20:16:55.0464 0x0da4 [ 09F460AFEDCA03F3BF6E07D1CCC9AC42, B832091BC9B2C2FE38A4BCA132ABB58251E851F21EC6F39636E73777AB9A5791 ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys
20:16:55.0464 0x0da4 Fs_Rec - ok
20:16:55.0495 0x0da4 [ F152D55E497E12256290C43B31C7D0CE, FFC54B14CCFBC1548948C07FB3866E40A11D0C05AC352BD000E71CEF053F6A6E ] fvevol C:\WINDOWS\system32\DRIVERS\fvevol.sys
20:16:55.0527 0x0da4 fvevol - ok
20:16:55.0542 0x0da4 [ 9591D0B9351ED489EAFD9D1CE52A8015, AC64C236C3AE545FCE8ED44A4A87FB86265A453BA60026EC9A4DE2B631E99996 ] FxPPM C:\WINDOWS\System32\drivers\fxppm.sys
20:16:55.0542 0x0da4 FxPPM - ok
20:16:55.0542 0x0da4 [ FC3EF65EE20D39F8749C2218DBA681CA, 12980F1DE99B25E6920A33556F3ABDA5EC9BFE4757BE602130B5E939D8D25CE3 ] gagp30kx C:\WINDOWS\system32\drivers\gagp30kx.sys
20:16:55.0558 0x0da4 gagp30kx - ok
20:16:55.0589 0x0da4 [ 0BF5CAD281E25F1418E5B8875DC5ADD1, 0929AD8437DD78234553D8B2CDF0D6838FD54ACDE1918AFEBE48684EB32A07A3 ] gencounter C:\WINDOWS\System32\drivers\vmgencounter.sys
20:16:55.0589 0x0da4 gencounter - ok
20:16:55.0605 0x0da4 [ EF3AE7773394DF49CE74AF78A1C8D23D, CB12FF004C460A89F12AFF2467512B479A07CA10D4280CD4E624A5A9CDAB9C1B ] GPIOClx0101 C:\WINDOWS\system32\Drivers\msgpioclx.sys
20:16:55.0605 0x0da4 GPIOClx0101 - ok
20:16:55.0652 0x0da4 [ 383DA813409316D69603C1D849834D24, E1AAD3AB567457B00B8A378D5BA37ED653EE451FF79D071A8815FB8B1EB90DAF ] gpsvc C:\WINDOWS\System32\gpsvc.dll
20:16:55.0683 0x0da4 gpsvc - ok
20:16:55.0699 0x0da4 [ 498288DD5CA42C2D36D125893E968C53, 03B62FA51F9195D77170DCEFF3A93A6898AA96FB610044DDAE83767DA12745C5 ] HDAudBus C:\WINDOWS\System32\drivers\HDAudBus.sys
20:16:55.0699 0x0da4 HDAudBus - ok
20:16:55.0714 0x0da4 [ 10A70BC1871CD955D85CD88372724906, 2480A74854D0A89FF028EE9BA41224D4B2F9B0863066BFC43097920794FEE08D ] HidBatt C:\WINDOWS\System32\drivers\HidBatt.sys
20:16:55.0714 0x0da4 HidBatt - ok
20:16:55.0745 0x0da4 [ 1EA1B4FABB8CC348E73CA90DBA22E104, 5C18C6BD499272F216DD4626B5E8D38181AEAC9AD917FBEB614A75B70467B258 ] HidBth C:\WINDOWS\System32\drivers\hidbth.sys
20:16:55.0761 0x0da4 HidBth - ok
20:16:55.0777 0x0da4 [ C241A8BAFBBFC90176EA0F5240EACC17, 571E20B87818618BE9179986177D55739A240F04D1F740B3C1B7809B9427B767 ] hidi2c C:\WINDOWS\System32\drivers\hidi2c.sys
20:16:55.0777 0x0da4 hidi2c - ok
20:16:55.0792 0x0da4 [ 9BDDEE26255421017E161CCB9D5EDA95, B766FD5E31708F29384F69418FC33C4BCC6E3064AA553D5B1D30EE0B8B1BFB40 ] HidIr C:\WINDOWS\System32\drivers\hidir.sys
20:16:55.0792 0x0da4 HidIr - ok
20:16:55.0824 0x0da4 [ 449A20A674AA3FAA7F0DD4E33EE2DC20, 28B9BDA306456E8640C355718DE3477537B0FAF8C37F633C709129AAB64D9873 ] hidserv C:\WINDOWS\system32\hidserv.dll
20:16:55.0839 0x0da4 hidserv - ok
20:16:55.0839 0x0da4 [ 8DB8EAB9D0C6A5DF0BDCADEA239220B4, EDA23E6909EB83E5E148816DFB16CC29EA01BD6BD2F73AA46B3D820B85FB9C83 ] HidUsb C:\WINDOWS\System32\drivers\hidusb.sys
20:16:55.0855 0x0da4 HidUsb - ok
20:16:55.0870 0x0da4 [ 7BF3ADCBD021D4F4A84CF40EB49C71B5, 5758A51FD2EBE67E6DBE3A298D714D351910F9E01C428D0C1359457C9242B298 ] hkmsvc C:\WINDOWS\system32\kmsvc.dll
20:16:55.0870 0x0da4 hkmsvc - ok
20:16:55.0886 0x0da4 [ 6CD9C3819BE8C0A3DACC82AE5D3C4F18, 46BF4A968E506DE17CA401401D716B444CDC10A5C60EB081890DD4B886AEDF5F ] HomeGroupListener C:\WINDOWS\system32\ListSvc.dll
20:16:55.0902 0x0da4 HomeGroupListener - ok
20:16:55.0949 0x0da4 [ 1A4DA1D6287B99033D144B436C23B656, D4D1EEB372E61512EA36A33F095E68C225B8E6C72CC57ED8BD00533F88012F40 ] HomeGroupProvider C:\WINDOWS\system32\provsvc.dll
20:16:55.0995 0x0da4 HomeGroupProvider - ok
20:16:56.0011 0x0da4 [ A6AACEA4C785789BDA5912AD1FEDA80D, D197012A5DA6AB3F76FF298336DF0CF027C07ECC71267BAEF5912DE12893E096 ] HpSAMD C:\WINDOWS\system32\drivers\HpSAMD.sys
20:16:56.0011 0x0da4 HpSAMD - ok
20:16:56.0074 0x0da4 [ 9DDCA7F18983C5410DEFF79F819DF93C, CE97B4440377BFC5CA81BB600C3BD1DD9FB3951CA1EB70735F5E2050EBB74223 ] HTTP C:\WINDOWS\system32\drivers\HTTP.sys
20:16:56.0089 0x0da4 HTTP - ok
20:16:56.0105 0x0da4 [ 90656C0B3864804B090434EFC582404F, BDB60050B729AACB9E009AC7129BEBD6298BBD8A9DB14B817D02E8E13669BD6E ] hwpolicy C:\WINDOWS\system32\drivers\hwpolicy.sys
20:16:56.0105 0x0da4 hwpolicy - ok
20:16:56.0120 0x0da4 [ 6D6F9E3BF0484967E52F7E846BFF1CA1, C982966BDE6A3E6773D9441ADA7A3B08D13511DFC68D04DF303248B942423F38 ] hyperkbd C:\WINDOWS\System32\drivers\hyperkbd.sys
20:16:56.0120 0x0da4 hyperkbd - ok
20:16:56.0120 0x0da4 [ 907C870F8C31F8DDD6F090857B46AB25, 308664A31717383D06185875E76C6612407A9F04E7DB28404F574A5706C6715D ] HyperVideo C:\WINDOWS\system32\DRIVERS\HyperVideo.sys
20:16:56.0136 0x0da4 HyperVideo - ok
20:16:56.0152 0x0da4 [ 84CFC5EFA97D0C965EDE1D56F116A541, 0155EA62BF07D99D98D1C9B6559C8E3301B016A20D03DF1EF64B2FAB8C37403B ] i8042prt C:\WINDOWS\System32\drivers\i8042prt.sys
20:16:56.0152 0x0da4 i8042prt - ok
20:16:56.0152 0x0da4 [ 5D90E32E36CE5D4C535D17CE08AEAF05, 976A463343E8C8308AFBE9E64DF56C430D2241DE002430D00318AB065EB72E4A ] iaLPSSi_GPIO C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys
20:16:56.0152 0x0da4 iaLPSSi_GPIO - ok
20:16:56.0167 0x0da4 [ DD05E7E80F52ADE9AEB292819920F32C, E71AB6A50B0F90C8F94569CE89F66F915A0A4A00D4AC091B2E5E750D88CFC334 ] iaLPSSi_I2C C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys
20:16:56.0167 0x0da4 iaLPSSi_I2C - ok
20:16:56.0199 0x0da4 [ 08BFE413B0B4AA8DFA4B5684CE06D3DC, 95DEEBB203E12EE6E191F5247A74C04AEC0E16DE981FADDC4D6C42EE41D8D079 ] iaStorAV C:\WINDOWS\system32\drivers\iaStorAV.sys
20:16:56.0199 0x0da4 iaStorAV - ok
20:16:56.0230 0x0da4 [ A2200C3033FA4EF249FC096A7A7D02A2, 5819F5C2020DE2EEE339B0C08CD4B1E3490EAFBBEA1277CE649DB5A5150986B0 ] iaStorV C:\WINDOWS\system32\drivers\iaStorV.sys
20:16:56.0245 0x0da4 iaStorV - ok
20:16:56.0245 0x0da4 IEEtwCollectorService - ok
20:16:56.0292 0x0da4 [ CFE7F0267B0C3077042FF291949B5546, 7B8C432632D0210119BFF57D4994F2B8F75307A9D6867353AF93BBA3F561595B ] IKEEXT C:\WINDOWS\System32\ikeext.dll
20:16:56.0324 0x0da4 IKEEXT - ok
20:16:56.0449 0x0da4 [ C2F868881D48A568B525255F084EF063, EFB1704AE223CF886EDA5F1411C8178EDE4B5E1F7EE373E3DA89A6EA1A57D91D ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys
20:16:56.0527 0x0da4 IntcAzAudAddService - ok
20:16:56.0558 0x0da4 [ 4E448FCFFD00E8D657CD9E48D3E47157, 4A958CF0BF8DAEAE5E008500BA67CE89B21388592811274331EE39CAC1043A00 ] intelide C:\WINDOWS\system32\drivers\intelide.sys
20:16:56.0558 0x0da4 intelide - ok
20:16:56.0574 0x0da4 [ 139CFCDCD36B1B1782FD8C0014AC9B0E, E0D7E0E9B46A8CECE138D689820023BFA650FB689E4FD62855BED37E04F2D9FF ] intelpep C:\WINDOWS\system32\drivers\intelpep.sys
20:16:56.0574 0x0da4 intelpep - ok
20:16:56.0589 0x0da4 [ 47E74A8E53C7C24DCE38311E1451C1D9, 79B06E37A552C8A847404D4C572CDB8CF525354D8AE3BEBC06892B7C3B330761 ] intelppm C:\WINDOWS\System32\drivers\intelppm.sys
20:16:56.0589 0x0da4 intelppm - ok
20:16:56.0605 0x0da4 [ 9DB76D7F9E4E53EFE5DD8C53DE837514, 07BA4EDA9BE9139A689A2C3EFC1D1A4F3D1216625ED145F313398292A2CD5703 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
20:16:56.0605 0x0da4 IpFilterDriver - ok
20:16:56.0652 0x0da4 [ DFC4050D58565ADBEE793A8D4AEBDAE6, 89B900408F030CD45753A11D6AE6CBAB87E8B0E3F8401402D2D8713C045BF488 ] iphlpsvc C:\WINDOWS\System32\iphlpsvc.dll
20:16:56.0683 0x0da4 iphlpsvc - ok
20:16:56.0699 0x0da4 [ FD9C9E9E3F0ED51502C7E8C066BE26B9, 290E74380F1543DD22C9F3821513B3E2FB42E995724238D8779CBBCB4FC386C8 ] IPMIDRV C:\WINDOWS\System32\drivers\IPMIDrv.sys
20:16:56.0699 0x0da4 IPMIDRV - ok
20:16:56.0714 0x0da4 [ B7342B3C58E91107F6E946A93D9D4EFD, D5DA3C02C5C5A343785745EF6983CC9B5FBD3FB8D49FE9B450523E50212D1A32 ] IPNAT C:\WINDOWS\system32\drivers\ipnat.sys
20:16:56.0714 0x0da4 IPNAT - ok
20:16:56.0730 0x0da4 [ AE44C526AB5F8A487D941CEB57B10C97, A783A2EAF7A6FF450FB3F189A5930036FA60D125C42171AC44B6FE2E3DBD6F7A ] IRENUM C:\WINDOWS\system32\drivers\irenum.sys
20:16:56.0730 0x0da4 IRENUM - ok
20:16:56.0745 0x0da4 [ 8AFEEA3955AA43616A60F133B1D25F21, E99359A4F1D653790133F145CF7C9F97399FD75C5E135AA7E5F989BB660789AF ] isapnp C:\WINDOWS\system32\drivers\isapnp.sys
20:16:56.0745 0x0da4 isapnp - ok
20:16:56.0777 0x0da4 [ D90AB68D0FAC9F357F663670FDBB511E, A82AAA5DF1B38EFBDCF834535A0C520D1BB2D7A4A906C18CFDD22BCF16BDB97D ] iScsiPrt C:\WINDOWS\System32\drivers\msiscsi.sys
20:16:56.0792 0x0da4 iScsiPrt - ok
20:16:56.0792 0x0da4 [ 8BE92376799B6B44D543E8D07CDCF885, 425B8BB1BAF62F735B3CB5A002E6055879F02E7207E55942BFD37F1784F5F368 ] kbdclass C:\WINDOWS\System32\drivers\kbdclass.sys
20:16:56.0792 0x0da4 kbdclass - ok
20:16:56.0808 0x0da4 [ FB6E47E569D4872ABEB506BE03A45FBA, 5C4056CADA8F67587A119D9AE2A0EFAB30387CF6298F4019FF68AC92E2F6F54B ] kbdhid C:\WINDOWS\System32\drivers\kbdhid.sys
20:16:56.0808 0x0da4 kbdhid - ok
20:16:56.0824 0x0da4 [ 813871C7D402A05F2E3A7075F9584A05, FF0C2F87EB083F8CE74C679D80C845CDFBFBBC70BE818F899F3336BBB54A3FFB ] kdnic C:\WINDOWS\system32\DRIVERS\kdnic.sys
20:16:56.0824 0x0da4 kdnic - ok
20:16:56.0839 0x0da4 [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] KeyIso C:\WINDOWS\system32\lsass.exe
20:16:56.0839 0x0da4 KeyIso - ok
20:16:56.0839 0x0da4 [ ADDECBCC777665BD113BED437E602AB0, B6283475A1219CE44E9F683DD3BEB8C42DA0943297E5C4699B22176AD8A6A7ED ] KSecDD C:\WINDOWS\system32\Drivers\ksecdd.sys
20:16:56.0855 0x0da4 KSecDD - ok
20:16:56.0870 0x0da4 [ F88CC88F4A6D8476F1664E805CA18CC2, 2C61EE5EEA4FD45AA3FA927CC16E34EF90BD44324EAB14198AF65C3A27617991 ] KSecPkg C:\WINDOWS\system32\Drivers\ksecpkg.sys
20:16:56.0870 0x0da4 KSecPkg - ok
20:16:56.0870 0x0da4 [ 11AFB527AA370B1DAFD5C36F35F6D45F, 757AD234284467ADB826F7CA0251F58D48866B91995BC867DEA4BAF676947163 ] ksthunk C:\WINDOWS\system32\drivers\ksthunk.sys
20:16:56.0870 0x0da4 ksthunk - ok
20:16:56.0917 0x0da4 [ 32B1A8351160F307A8C66BCB0F94A9C2, 52F1DEC2BBD4D5DDBB85ED20B99D96BBA7EB83304D76F183A11FDAFDA364E873 ] KtmRm C:\WINDOWS\system32\msdtckrm.dll
20:16:56.0933 0x0da4 KtmRm - ok
20:16:56.0964 0x0da4 [ 46378ECCB4A29AA81BF296641C2501EF, 5AB79BD824C00EF1338FDB8450692318AB14E0AE4145C30B37136767DFC1E4F9 ] LanmanServer C:\WINDOWS\system32\srvsvc.dll
20:16:56.0964 0x0da4 LanmanServer - ok
20:16:57.0042 0x0da4 [ D0D9C2ECA4D03A8F06DCD91236B90C98, E2D1144DC8040EA5FEB0602A20BA4CB920B4BC86AD5AD05FC0DF7D74DC95DC66 ] LanmanWorkstation C:\WINDOWS\System32\wkssvc.dll
20:16:57.0074 0x0da4 LanmanWorkstation - ok
20:16:57.0120 0x0da4 [ 626D19F1771E1AE72208AE9A8F3082F7, 78FDB64545ED2EAE9F51C08120E21D2C3285208F6846BD8BBA08CAA839E7A0C4 ] lfsvc C:\WINDOWS\System32\GeofenceMonitorService.dll
20:16:57.0152 0x0da4 lfsvc - ok
20:16:57.0167 0x0da4 [ C09010B3680860131631F53E8FE7BAD8, 35F2A06D5F29478D22ABDCC20DA893EF9D96504C65594A0CEA674D1C21B04FF8 ] lltdio C:\WINDOWS\system32\DRIVERS\lltdio.sys
20:16:57.0167 0x0da4 lltdio - ok
20:16:57.0214 0x0da4 [ 00E070FC0C673311AFD4B068D1242780, 50B0E0E625361145332C849709498FF444E46578DCAD2536E6D0289E0125580F ] lltdsvc C:\WINDOWS\System32\lltdsvc.dll
20:16:57.0214 0x0da4 lltdsvc - ok
20:16:57.0261 0x0da4 [ D113FAD71A5E67AA94B32A0F8828D265, 08DDB4BBDB570C59926DBF5E27FCF46DCDF8B8212BB9251E97837E0504516FB3 ] lmhosts C:\WINDOWS\System32\lmhsvc.dll
20:16:57.0261 0x0da4 lmhosts - ok
20:16:57.0277 0x0da4 [ C755AE4635457AA2A11F79C0DF857ABC, E03D1ACAC155287291FE1BD0B653953ADC94279A74D0152088D698FAA796460F ] LSI_SAS C:\WINDOWS\system32\drivers\lsi_sas.sys
20:16:57.0277 0x0da4 LSI_SAS - ok
20:16:57.0292 0x0da4 [ ADAC09CBE7A2040B7F68B5E5C9A75141, 7865DA7E91404F3642BC444B97F6B7AA42B9523D5EDD7F6365DA236B8EC3410F ] LSI_SAS2 C:\WINDOWS\system32\drivers\lsi_sas2.sys
20:16:57.0292 0x0da4 LSI_SAS2 - ok
20:16:57.0292 0x0da4 [ 04D1274BB9BBCCF12BD12374002AA191, 4B9618F8D25F2278DE1610A70ACAADB074D171D162C3AF27D464F5DC800A8E60 ] LSI_SAS3 C:\WINDOWS\system32\drivers\lsi_sas3.sys
20:16:57.0292 0x0da4 LSI_SAS3 - ok
20:16:57.0308 0x0da4 [ 327469EEF3833D0C584B7E88A76AEC0C, 3D88B5A2D68F93F01B39C6E3D8D5C7A2A20686EFC756086E66AFFF1BC3019B85 ] LSI_SSS C:\WINDOWS\system32\drivers\lsi_sss.sys
20:16:57.0324 0x0da4 LSI_SSS - ok
20:16:57.0370 0x0da4 [ 8EBB271E4588D835784A3FF7E80076A8, A508BE95F6F5063A76F4C8726D9425BB1F00DE803EFE73A0BE145DD9AB82FF0A ] LSM C:\WINDOWS\System32\lsm.dll
20:16:57.0386 0x0da4 LSM - ok
20:16:57.0449 0x0da4 [ DDEE191AB32DFC22C6465002ECDF5EE4, 190C3930A8449118F9FEDF43C482837EF1C255E6D67F9651156E66A1E2BC6553 ] luafv C:\WINDOWS\system32\drivers\luafv.sys
20:16:57.0449 0x0da4 luafv - ok
20:16:57.0683 0x0da4 [ 415E344294D1C0D04627B29146F68481, B4A1A05BDF07E8F226A98E51F62BE18BE2C046A084C495BD8A95CABC79FD0614 ] LVUVC64 C:\WINDOWS\system32\DRIVERS\lvuvc64.sys
20:16:57.0761 0x0da4 LVUVC64 - ok
20:16:57.0792 0x0da4 [ EB5C03A070F30D64A6DF80E53B22F53F, 12051B6AEBDEE1E28F24364F25A52BA3A6E282ECF86D6290E34BD38E6D4E066D ] megasas C:\WINDOWS\system32\drivers\megasas.sys
20:16:57.0792 0x0da4 megasas - ok
20:16:57.0824 0x0da4 [ F6F13533196DE7A582D422B0241E4363, B3CD9B08937AFFF12141B38634AF3A56F5AC5FF3EF03941802B9841DEC559469 ] megasr C:\WINDOWS\system32\drivers\megasr.sys
20:16:57.0824 0x0da4 megasr - ok
20:16:57.0855 0x0da4 [ 6B01B7414A105B9E51652089A03027CF, 9B113DC22F7D0D0B376E577C6D7083F9EDC09BBFE47726393E16D4FDAAAE21FE ] MEIx64 C:\WINDOWS\System32\drivers\HECIx64.sys
20:16:57.0855 0x0da4 MEIx64 - ok
20:16:57.0886 0x0da4 [ FD788C2D96EA91469A3C1D13E80D7473, 7B14D4BFDE18CECC19FBFFAA5AFF5FD78BFB7FCDA6613990740A8A7DD9873D26 ] MMCSS C:\WINDOWS\system32\mmcss.dll
20:16:57.0902 0x0da4 MMCSS - ok
20:16:57.0902 0x0da4 [ 8B38C44F69259987C95135C9627E2378, E698B82D4EFFF56D66C7FC9866369BA5736FDBDBE2028CC421C51E70DEA74727 ] Modem C:\WINDOWS\system32\drivers\modem.sys
20:16:57.0902 0x0da4 Modem - ok
20:16:57.0933 0x0da4 [ 601589000CC90F0DF8DA2CC254A3CCC9, D1238A386C41B6C368D9A44B7C112C943995B5403E2A5B4B7346B266DDB0C5A0 ] monitor C:\WINDOWS\System32\drivers\monitor.sys
20:16:57.0933 0x0da4 monitor - ok
20:16:57.0949 0x0da4 [ CEAC6D40FE887CE8406C2393CF97DE06, 34E76908B802764FF0D7AB3AF89BE77BD35B44787983343FAD89891891C0A045 ] mouclass C:\WINDOWS\System32\drivers\mouclass.sys
20:16:57.0949 0x0da4 mouclass - ok
20:16:57.0949 0x0da4 [ 02D98BF804084E9A0D69D1C69B02CCA9, EC5BC5D87043DFFD035FD4DD27B3D94E03119063519E4151BCC3522B613E2D7F ] mouhid C:\WINDOWS\System32\drivers\mouhid.sys
20:16:57.0949 0x0da4 mouhid - ok
20:16:57.0964 0x0da4 [ 515549560D481138E6E21AF7C6998E56, C7E4B38D8CCAF15B9BDA63C8C8209F6193AD220DA02E1264F1B687AACD8F409F ] mountmgr C:\WINDOWS\system32\drivers\mountmgr.sys
20:16:57.0980 0x0da4 mountmgr - ok
20:16:58.0027 0x0da4 [ E1B6FCAE82474FC071155263E2841D54, 341E2CEB1A86586730130311C4FAF86851151D5F08EF915A5F89B6C4094AE1F4 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
20:16:58.0027 0x0da4 MozillaMaintenance - ok
20:16:58.0042 0x0da4 [ F170510BE94CF45E3C6274578F6204B2, 344C3DDE1D622607CA2ABECB2C47CB0166D2D258BD94A7960C45A5ADBB640566 ] mpsdrv C:\WINDOWS\system32\drivers\mpsdrv.sys
20:16:58.0042 0x0da4 mpsdrv - ok
20:16:58.0074 0x0da4 [ D186C5844393252147BE934F3871DB7A, 30160F8268B9F46E82C5CB536867E0CF280DC98074A481595072E3320200E343 ] MpsSvc C:\WINDOWS\system32\mpssvc.dll
20:16:58.0105 0x0da4 MpsSvc - ok
20:16:58.0136 0x0da4 [ 1D55DADC22D21883A2F80297F5A5AE48, B79DF4AFC2A9CBC54E74233596544D6E41C8CAA0516BD57CA695D051EC780265 ] MRxDAV C:\WINDOWS\system32\drivers\mrxdav.sys
20:16:58.0136 0x0da4 MRxDAV - ok
20:16:58.0152 0x0da4 [ 0696F66E4D423793951A60562F794D14, E808E4E160C019F2F10762758F48C4565037974775CD267DF06B8B4A2CE26705 ] mrxsmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
20:16:58.0167 0x0da4 mrxsmb - ok
20:16:58.0199 0x0da4 [ 3E28B99198B514DFEB152EACF913025E, 6C1D8353DCD5F811F39C0C3CB5DF3D2457F0D17EE80FB06196AA169E3D19E9B2 ] mrxsmb10 C:\WINDOWS\system32\DRIVERS\mrxsmb10.sys
20:16:58.0199 0x0da4 mrxsmb10 - ok
20:16:58.0199 0x0da4 [ DBA635C6398782C549E3BE45CF1D0411, E9806E075F401D3E7357E876C7F941F7DAFFBBEE065DC3FE556014F5D92EDAC0 ] mrxsmb20 C:\WINDOWS\system32\DRIVERS\mrxsmb20.sys
20:16:58.0214 0x0da4 mrxsmb20 - ok
20:16:58.0230 0x0da4 [ 4E888019078AC363076A5433E89AA4F8, 3DEBDA290230B3E83F956C902C960E39463B7EFE86439199521356762769FD91 ] MsBridge C:\WINDOWS\system32\DRIVERS\bridge.sys
20:16:58.0230 0x0da4 MsBridge - ok
20:16:58.0261 0x0da4 [ A082C17D14D0790E27D064EA4B138AE1, 9A565ED885782D9D5135C8399C11C356DBF9EBF3B8EB4B4504BD2604AD0B45E6 ] MSDTC C:\WINDOWS\System32\msdtc.exe
20:16:58.0261 0x0da4 MSDTC - ok
20:16:58.0277 0x0da4 [ D13329FBF8345B28AB30F44CC247DC08, 9C7EC2D4D65E6510EB5B9E61BB0D14F725D7E8FE98D65161C3971E43EF1AB6EB ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys
20:16:58.0277 0x0da4 Msfs - ok
20:16:58.0292 0x0da4 [ C6B474E46F9E543B875981ED3FFE6ADD, E16687E52FB649C23D92159A1F036CB662202C1E58D961EECDAA528AA4FA669A ] msgpiowin32 C:\WINDOWS\System32\drivers\msgpiowin32.sys
20:16:58.0292 0x0da4 msgpiowin32 - ok
20:16:58.0308 0x0da4 [ 65C92EB9D08DB5C69F28C7FFD4E84E31, D709BA4723225321F665B1157A33A4AE230420752308EF535DA9A41CAC164628 ] mshidkmdf C:\WINDOWS\System32\drivers\mshidkmdf.sys
20:16:58.0308 0x0da4 mshidkmdf - ok
20:16:58.0324 0x0da4 [ 52299F086AC2DAFD100DD5DC4A8614BA, B36BE0FC96798E5EB8C193C318970E3906961E3ABC3BFAAD73138C76D9A95B0B ] mshidumdf C:\WINDOWS\System32\drivers\mshidumdf.sys
20:16:58.0324 0x0da4 mshidumdf - ok
20:16:58.0339 0x0da4 [ 36D92AF3343C3A3E57FEF11C449AEA4C, ECC85AA1E530DF55B4A4545798219F87F0FCA66DDD2E37BCEF0850D3C9129DD2 ] msisadrv C:\WINDOWS\system32\drivers\msisadrv.sys
20:16:58.0339 0x0da4 msisadrv - ok
20:16:58.0386 0x0da4 [ 810F8A0A0680662BB0CE44D0E2CEF90C, 5631B07911B7EF378CB1583A480A3C5715E59A5488B33A528F4D7A2F849B9113 ] MSiSCSI C:\WINDOWS\system32\iscsiexe.dll
20:16:58.0386 0x0da4 MSiSCSI - ok
20:16:58.0386 0x0da4 msiserver - ok
20:16:58.0402 0x0da4 [ A9BBBD2BAE6142253B9195E949AC2E8D, 599D2952D4E0B0B3E02D91E38A30F4900B1ADA330716B887B156A1CB9A3E6EE9 ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys
20:16:58.0402 0x0da4 MSKSSRV - ok
20:16:58.0417 0x0da4 [ 375E44168F2DFB91A68B8A3F619C5A7C, AC243E02E9A39D0B4DE9571F196941700EE6EB5E94F5B0BA8994FB551E73A7A8 ] MsLldp C:\WINDOWS\system32\DRIVERS\mslldp.sys
20:16:58.0417 0x0da4 MsLldp - ok
20:16:58.0433 0x0da4 [ 7B2128EB875DCBC006E6A913211006D6, 97BBD7FF770741FBFC0F181A609AD0954EA926DA203B742E8F08C89AD8FE476E ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys
20:16:58.0433 0x0da4 MSPCLOCK - ok
20:16:58.0449 0x0da4 [ 1E88171579B218115C7A772F8DE04BD8, B9EAA835D0BF8F9C4DF8403D95EF1400E8AE38F28F9DBA87657DE2129FEF02D2 ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys
20:16:58.0449 0x0da4 MSPQM - ok
20:16:58.0464 0x0da4 [ BBE2A455053E63BECBF42C2F9B21FAE0, 7C5DF563499DF59DF9895A1581E47ADF5FD54C94ECEF6C886CDB60E5E95A6DAE ] MsRPC C:\WINDOWS\system32\drivers\MsRPC.sys
20:16:58.0464 0x0da4 MsRPC - ok
20:16:58.0480 0x0da4 [ 8D6B7D515C5CBCDB75B928A0B73C3C5E, 1EB4DC3DD21D2627C78EC3F9931D9E5D033169087E43B5D7C17BF1FF2A0028CD ] mssmbios C:\WINDOWS\System32\drivers\mssmbios.sys
20:16:58.0480 0x0da4 mssmbios - ok
20:16:58.0495 0x0da4 [ 115019AE01E0EB9C048530D2928AB4A2, 6E2275E85EACF2D0FC784792E0D72A165589D33CBAB3BCFA8E271CA09566C925 ] MSTEE C:\WINDOWS\system32\drivers\MSTEE.sys
20:16:58.0495 0x0da4 MSTEE - ok
20:16:58.0511 0x0da4 [ 96D604A35070360F0DD4A7A8AF410B5E, F94DD1A3566C7C8D0A76D6E1E2530552A9B7F99C5DA0DE11829325EAB9F8B7ED ] MTConfig C:\WINDOWS\System32\drivers\MTConfig.sys
20:16:58.0511 0x0da4 MTConfig - ok
20:16:58.0511 0x0da4 [ 619CA29326B82372621DB2C0964D8365, 4091F08E266DB45A6E33A4A8B1CE9FA78BB294B3111526AA9E3868620F30AFDF ] Mup C:\WINDOWS\system32\Drivers\mup.sys
20:16:58.0527 0x0da4 Mup - ok
20:16:58.0542 0x0da4 [ B8C35C94DCB2DFEAF03BB42131F2F77F, F0FCF367CA8F722D6ABCF7F363CD406D890D71452E91C3FC6677B47AD74D6324 ] mvumis C:\WINDOWS\system32\drivers\mvumis.sys
20:16:58.0542 0x0da4 mvumis - ok
20:16:58.0574 0x0da4 [ 41A45D2A75494EABF2806EA051E00376, EB2497561C8E33A4297C044604C717FF854C7F046882A9E4A400AE7679BF5467 ] napagent C:\WINDOWS\system32\qagentRT.dll
20:16:58.0589 0x0da4 napagent - ok
20:16:58.0605 0x0da4 [ 78514B073CC5775800A65BFB82A0D66B, DCD18E277569F23921E899F508860F89ABD417C74A7776152A4463284A989488 ] NativeWifiP C:\WINDOWS\system32\DRIVERS\nwifi.sys
20:16:58.0620 0x0da4 NativeWifiP - ok
20:16:58.0652 0x0da4 [ 71E3C0100AA19D11373CCEB2F51A6008, 58FBF35F5FE19BEABE483C11E9996BE93D76721C8C34465350FA98B465CA3672 ] NcaSvc C:\WINDOWS\System32\ncasvc.dll
20:16:58.0652 0x0da4 NcaSvc - ok
20:16:58.0667 0x0da4 [ 51DF09CAB2CAC64FEE3E371D9028ED01, 9B81604D0D0359AF8F54FED6DA7116FFD2F40407895028EAD99FF1D7CFDC2D14 ] NcbService C:\WINDOWS\System32\ncbservice.dll
20:16:58.0683 0x0da4 NcbService - ok
20:16:58.0699 0x0da4 [ 2586C4C167499210DCBF3ECFD8CCE210, D8129FEDE9918BF4FB0057CC58700D4E08457060E810B9CC25CA0F598506ADB8 ] NcdAutoSetup C:\WINDOWS\System32\NcdAutoSetup.dll
20:16:58.0699 0x0da4 NcdAutoSetup - ok
20:16:58.0761 0x0da4 [ F21B77B4D74092A543807D3CEB711A88, 5C3C17A10E990070FAB317C0C5333DE768E408CAF43EC4FA9D18116C6EE3B3DC ] NDIS C:\WINDOWS\system32\drivers\ndis.sys
20:16:58.0792 0x0da4 NDIS - ok
20:16:58.0792 0x0da4 [ C6BB12BC35D1637CA17AE16D3A4725EB, 01C1D9FA738886A195166F88207EEB6715A1DE0608978ED6C5DC738AF5C02513 ] NdisCap C:\WINDOWS\system32\DRIVERS\ndiscap.sys
20:16:58.0808 0x0da4 NdisCap - ok
Re: prosím kontrolu logu
20:16:58.0808 0x0da4 [ 9F1DA20E943BE7AA4ED5F3E1EBA78B37, CCD99962917BBE256F64AE14CCC9FD12433C72B5DB98E0E57CA8F212A11B3C8F ] NdisImPlatform C:\WINDOWS\system32\DRIVERS\NdisImPlatform.sys
20:16:58.0824 0x0da4 NdisImPlatform - ok
20:16:58.0824 0x0da4 [ 9423421E735BD5394351E0C47C76BB92, 763E5D06F896C0EF8AD52515464F28BA85DB7A1560E451857AC9AA68FAFCBC66 ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys
20:16:58.0839 0x0da4 NdisTapi - ok
20:16:58.0839 0x0da4 [ B832B35055BA2B7B4181861FF94D8E59, 2E60E5D503E88D27E35ECFEE265D51328E93A9C7B9B931F86D9CBC947636BB00 ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys
20:16:58.0839 0x0da4 Ndisuio - ok
20:16:58.0855 0x0da4 [ 1F58E48EF75F34C35D8E93A0DC535CFE, D65619A6C4B1747F8B05DA08A44EF0E46B5CC384880E04E4755A2BA6CDB3C4EA ] NdisVirtualBus C:\WINDOWS\System32\drivers\NdisVirtualBus.sys
20:16:58.0855 0x0da4 NdisVirtualBus - ok
20:16:58.0870 0x0da4 [ DEC29080202D4F9F17F55E18BCFCC41A, F7E543741B1F4F637A99C40543D6AEC6EBF893F74359BBA769D1F882E0AFB571 ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys
20:16:58.0886 0x0da4 NdisWan - ok
20:16:58.0886 0x0da4 [ DEC29080202D4F9F17F55E18BCFCC41A, F7E543741B1F4F637A99C40543D6AEC6EBF893F74359BBA769D1F882E0AFB571 ] NdisWanLegacy C:\WINDOWS\system32\DRIVERS\ndiswan.sys
20:16:58.0902 0x0da4 NdisWanLegacy - ok
20:16:58.0902 0x0da4 [ A5BD69A8812FA79D1A487691DD3FB244, 67B5EDE101943E0E8B8041DB2353D20C8B9F2D253E77964761CFE8F136C0BBC7 ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys
20:16:58.0902 0x0da4 NDProxy - ok
20:16:58.0917 0x0da4 [ 5A072F0B90C29C5233D78BE33EF5ED78, B32ED76A674B1FC743361FB7BBD4C915A78B14132AB056AADD445D5995AD4F32 ] Ndu C:\WINDOWS\system32\drivers\Ndu.sys
20:16:58.0933 0x0da4 Ndu - ok
20:16:58.0933 0x0da4 [ A83D67D347A684F10B7D3019C8A6380C, 2B86832967981C8C786BF24C1CF8E13E01745ACE3333CF5C821DD93D623B96E4 ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys
20:16:58.0949 0x0da4 NetBIOS - ok
20:16:58.0949 0x0da4 [ 0217532E19A748F0E5D569307363D5FD, C40C2E7AFA276057E7327A7BB173122689D6CEC9AE443C3850C3F94AF03DFBF5 ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys
20:16:58.0964 0x0da4 NetBT - ok
20:16:58.0980 0x0da4 [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] Netlogon C:\WINDOWS\system32\lsass.exe
20:16:58.0980 0x0da4 Netlogon - ok
20:16:59.0027 0x0da4 [ B7AD851A21FEBA3BA214972627614207, 29605320CCC3DAAD062CAECF0009DACBC2F6D28ED4E8AF7CE76132129F5572A0 ] Netman C:\WINDOWS\System32\netman.dll
20:16:59.0058 0x0da4 Netman - ok
20:16:59.0089 0x0da4 [ F0F0A372C2EF6358399C4936F91B6131, CE596C71EB4D1A5E104D3148F2D0D8789882C59FD198DCF33CCAC7A08B50E4EE ] netprofm C:\WINDOWS\System32\netprofmsvc.dll
20:16:59.0105 0x0da4 netprofm - ok
20:16:59.0152 0x0da4 [ 1092B3190E69E0C5ECBCE90F171DE047, C16106EEFC324EE80E5F659CB71A5DD69FA800D36D829F5B0E6AD3393BD1BAF7 ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
20:16:59.0167 0x0da4 NetTcpPortSharing - ok
20:16:59.0183 0x0da4 [ 70414DB660BFBB7BD58FCE8EA4364E1B, 6DFB3897CD55E22BA1EDF0AE672F4D7A6A1F512F8A0A26AF106765E6B1CF65AC ] netvsc C:\WINDOWS\system32\DRIVERS\netvsc63.sys
20:16:59.0199 0x0da4 netvsc - ok
20:16:59.0214 0x0da4 [ 3A280F3B3C7A46E29C404ACD46ECBF5E, 81C3367A2A212DBCC65B8A0166FD092E3205AB31A146B4B737061335CEC51F9D ] NlaSvc C:\WINDOWS\System32\nlasvc.dll
20:16:59.0230 0x0da4 NlaSvc - ok
20:16:59.0245 0x0da4 [ 8F44A2F57C9F1A19AC9C6288C10FB351, 310274DDBAC0FE4BE54ECD3B90C97D82A0F9F5CFCA7A35711A36164DE4B94074 ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys
20:16:59.0245 0x0da4 Npfs - ok
20:16:59.0261 0x0da4 [ CBDB4F0871C88DF930FC0E8588CA67FC, 7E4AA3EA81A9D532F236FD7896744F07ED07CA9B37A9F18A9778BCCCC67490F2 ] npsvctrig C:\WINDOWS\System32\drivers\npsvctrig.sys
20:16:59.0261 0x0da4 npsvctrig - ok
20:16:59.0261 0x0da4 [ 6E2271ED0C3E95B8E29F3752B91B9E84, 44026AD9757EA82967D7F7578455802FAD7FE0057EAC088E0AE207C15F594B86 ] nsi C:\WINDOWS\system32\nsisvc.dll
20:16:59.0277 0x0da4 nsi - ok
20:16:59.0277 0x0da4 [ E490B459978CB87779E84C761D22B827, 1E5CA38626E41618E4CA16DD0C70EB2FA86E986F0CF21A749BDE2A17015DEEC6 ] nsiproxy C:\WINDOWS\system32\drivers\nsiproxy.sys
20:16:59.0277 0x0da4 nsiproxy - ok
20:16:59.0324 0x0da4 [ 1C80517BE6836A812F6A9B99B8321351, 7DBED4633820E201C9C242D961EF6F25BA2B1D5593BA60F707CC71A4014C2D4B ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys
20:16:59.0370 0x0da4 Ntfs - ok
20:16:59.0386 0x0da4 [ EF1B290FC9F0E47CC0B537292BEE5904, DBC07BBC54EBC2D2E576B23A4CE116B3DA988577AD0D96CB7289A6748A60F9EA ] Null C:\WINDOWS\system32\drivers\Null.sys
20:16:59.0386 0x0da4 Null - ok
20:16:59.0402 0x0da4 [ E366A5681C50785D4ED04FCFD65C3415, 7FF7B4B8F09E773401AE879897E60BF494B57B9ACEE990204A4C98A3FB183A33 ] NVHDA C:\WINDOWS\system32\drivers\nvhda64v.sys
20:16:59.0402 0x0da4 NVHDA - ok
20:16:59.0730 0x0da4 [ 0AC797F70F2F3E5B69A34FF2F63496F3, 80A811F8234BA00779BA76AAF41E830FB6CED03667E6E8F430C14DEBF2E45DD9 ] nvlddmkm C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys
20:16:59.0949 0x0da4 nvlddmkm - ok
20:17:00.0074 0x0da4 [ C50CD479FD1BB886244E2663DFFBCF6A, CCFB60425E56A12C097EC05A9E5549B4F4A10379818ABC64945487C16F882E3D ] NvNetworkService C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
20:17:00.0089 0x0da4 NvNetworkService - ok
20:17:00.0105 0x0da4 [ BC6B5942AFF25EBAF62DE43C3807EDF8, CB0FA194084B8C309039D571B5760FDA800E9531B8660C499B4F9977BA5C36D5 ] nvraid C:\WINDOWS\system32\drivers\nvraid.sys
20:17:00.0120 0x0da4 nvraid - ok
20:17:00.0120 0x0da4 [ 1F43ABFFAC3D6CA356851D517392966E, 6FD7621F67BA94B0E1D8F43BEC2951DBCDEEA1E848BB265AC169E27C01DA68F2 ] nvstor C:\WINDOWS\system32\drivers\nvstor.sys
20:17:00.0136 0x0da4 nvstor - ok
20:17:00.0214 0x0da4 [ AD7A2F3AF147B2CF302EBF7C1E01E027, B8DAAE7FE4B13C9CA3F1DEE7C98F5CA49D4D1678C82C51D6801210838319BAE5 ] NvStreamKms C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys
20:17:00.0214 0x0da4 NvStreamKms - ok
20:17:00.0214 0x0da4 NvStreamSvc - ok
20:17:00.0261 0x0da4 [ 4E769C9006553699E874518BAFBEA2C3, 4D1C12E0EDD1CC722394292E7EBA52CA8C9990D9599473729C6C1D54281018BF ] NvStUSB C:\WINDOWS\System32\drivers\nvstusb.sys
20:17:00.0292 0x0da4 NvStUSB - ok
20:17:00.0355 0x0da4 [ C135A25E8CF21EB631AB041ABB1F73EA, D0A3DC0411E888D0934B7579EEB980FA7824E3F22F70819A33411D8B8BC9EE42 ] nvsvc C:\WINDOWS\system32\nvvsvc.exe
20:17:00.0370 0x0da4 nvsvc - ok
20:17:00.0386 0x0da4 [ 75034A4D7C02327D150B617571D4196A, 8E7DAFEC4307E883D52BD0B5F0732E26E019C953770B52ACBBAD3074A66393CB ] nvvad_WaveExtensible C:\WINDOWS\system32\drivers\nvvad64v.sys
20:17:00.0386 0x0da4 nvvad_WaveExtensible - ok
20:17:00.0402 0x0da4 [ 6934A936A7369DFE37B7DBA93F5E5E49, 0900FEEB0CE8D09F0FC60630B5B986034A8BCD3882ED66E47170810C32492892 ] nv_agp C:\WINDOWS\system32\drivers\nv_agp.sys
20:17:00.0402 0x0da4 nv_agp - ok
20:17:00.0433 0x0da4 [ E287F157F7A0011D93179C64EF8ADCF2, C16FB92C7B18D634BB1344238D35B3111494C243FBD5853F05376F5051480D83 ] p2pimsvc C:\WINDOWS\system32\pnrpsvc.dll
20:17:00.0449 0x0da4 p2pimsvc - ok
20:17:00.0480 0x0da4 [ 2A57A937BC5B1B2D6AFE6A8C5925F50B, 00D84EFED5A7129AAD86945940030474795905C32D65CBD5B1A3EBADCED8F873 ] p2psvc C:\WINDOWS\system32\p2psvc.dll
20:17:00.0511 0x0da4 p2psvc - ok
20:17:00.0511 0x0da4 [ 764B1121867B2D9B31C491668AC72B2B, 32C04B6FCE1DDD09697B81473A23BDCED8BEEFBCD0D2D58DDC9A11A33C756967 ] Parport C:\WINDOWS\System32\drivers\parport.sys
20:17:00.0511 0x0da4 Parport - ok
20:17:00.0527 0x0da4 [ EF0C1749C9A8CEE9A457473D433CC00F, A5FDAB5AD47471640D697C6CFBA6C67730878ABBA47D394EAA47C9733EDCE1F3 ] partmgr C:\WINDOWS\system32\drivers\partmgr.sys
20:17:00.0542 0x0da4 partmgr - ok
20:17:00.0558 0x0da4 [ 9A5309EF92F39346CFD5A4C2C3D1BFAD, 5908E0C9562F9CB24784491BD9AE7983A33A6BDF81AFA0A08045518A0C9BB2B1 ] PcaSvc C:\WINDOWS\System32\pcasvc.dll
20:17:00.0574 0x0da4 PcaSvc - ok
20:17:00.0620 0x0da4 [ 275AFE3FA35E8D78BE97695DF49817C6, 447CEBB16285AE073B4251D2DA71399306EF2DCB7F56286ABE2F0BD6C83EB489 ] pci C:\WINDOWS\system32\drivers\pci.sys
20:17:00.0620 0x0da4 pci - ok
20:17:00.0636 0x0da4 [ 346E38FCC6859A727DD28AFAD1F0AFF4, FF3DA26F79B3BC3A5B8A8AA0B9139B9EF70297F4EA1203B1E68FB5A212C3AA58 ] pciide C:\WINDOWS\system32\drivers\pciide.sys
20:17:00.0636 0x0da4 pciide - ok
20:17:00.0652 0x0da4 [ 4D3BDCC1C7B40C9D7B6AD990E6DEC397, 27A7AF2127B699F4579CB77936F38DC102211E26E5E2947DB808756FE06FC98E ] pcmcia C:\WINDOWS\system32\drivers\pcmcia.sys
20:17:00.0652 0x0da4 pcmcia - ok
20:17:00.0683 0x0da4 [ AF7CE12C4F3DC8CB2B07685C916BBCFE, 1AF47113778D411BF3CF82ACF428676908121B1F3252133A5F98E188ED1E9C6C ] pcouffin C:\WINDOWS\System32\Drivers\pcouffin.sys
20:17:00.0699 0x0da4 pcouffin - ok
20:17:00.0699 0x0da4 [ BF28771D1436C88BE1D297D3098B0F7D, 5F7630916A76A8CF31289E9C577F522B999C74C39E541CD40E62BD53004BEF74 ] pcw C:\WINDOWS\system32\drivers\pcw.sys
20:17:00.0699 0x0da4 pcw - ok
20:17:00.0714 0x0da4 [ B9D968D8E2B0F9C6301CEB39CFC9B9E4, 83F32831B0727F18B56DC3CAF37E45A3523D2BBCD54D1421F0DE5A0179D8A404 ] pdc C:\WINDOWS\system32\drivers\pdc.sys
20:17:00.0730 0x0da4 pdc - ok
20:17:00.0777 0x0da4 [ 0ECEE590F2E2EF969FB74A6FC583A1E6, 1C611D9225C863CF32125F684B324C58BDE1942F4F283F5674133200AC505D44 ] PEAUTH C:\WINDOWS\system32\drivers\peauth.sys
20:17:00.0777 0x0da4 PEAUTH - ok
20:17:00.0855 0x0da4 [ 8E3C640FFF5A963F570233AE99C0FFF3, 3DE978B005BF2E88BA858CE37D9E27BD3584642B8412E22C300A1E739743838A ] PerfHost C:\WINDOWS\SysWow64\perfhost.exe
20:17:00.0870 0x0da4 PerfHost - ok
20:17:00.0917 0x0da4 [ 928061178CD9856CA6B67FFFCE6BA766, 71DE3C7CA7F83EAAA550CD8A68FB67DE042B0AE51BFACB1ECB8852D502E11F50 ] pla C:\WINDOWS\system32\pla.dll
20:17:00.0964 0x0da4 pla - ok
20:17:00.0980 0x0da4 [ BC6849C62DB407573C6AD8CB1A4D2628, 5BDE0D60F85E4C27CEAD1B301155B54D841FB773BD5BB8AC5DDAEE31F8E94627 ] PlugPlay C:\WINDOWS\system32\umpnpmgr.dll
20:17:00.0995 0x0da4 PlugPlay - ok
20:17:01.0011 0x0da4 [ 045EB4F260606A03BE340D09DEAF3BA4, 6F34B8D414F7F69F4388F2F8A86E0F3AD179E423126990AF3E1EC4DCCB8E7693 ] PNRPAutoReg C:\WINDOWS\system32\pnrpauto.dll
20:17:01.0011 0x0da4 PNRPAutoReg - ok
20:17:01.0042 0x0da4 [ E287F157F7A0011D93179C64EF8ADCF2, C16FB92C7B18D634BB1344238D35B3111494C243FBD5853F05376F5051480D83 ] PNRPsvc C:\WINDOWS\system32\pnrpsvc.dll
20:17:01.0042 0x0da4 PNRPsvc - ok
20:17:01.0089 0x0da4 [ C16097D77A232A288D65F299E2E01105, 5CE4B44B06FD26569C0F92FF1D3991D0128D8444AE7BC9EBEF5A33811D721BE8 ] PolicyAgent C:\WINDOWS\System32\ipsecsvc.dll
20:17:01.0105 0x0da4 PolicyAgent - ok
20:17:01.0136 0x0da4 [ 00E08B30E7F7C13ECE2CDF4F46A77311, 1807C0A64C1794E572C86730816C01DCF4D8F773ADE9CAEA3AC0658F7BD71A4E ] Power C:\WINDOWS\system32\umpo.dll
20:17:01.0152 0x0da4 Power - ok
20:17:01.0261 0x0da4 [ B7DB57A000D46D4DE75BC0C563E58072, 8183EB09DC4D44DFF027CA0AAA8C09921A14F088C1BC427B6ACA42340AAF69E6 ] PrintNotify C:\Windows\system32\spool\drivers\x64\3\PrintConfig.dll
20:17:01.0339 0x0da4 PrintNotify - ok
20:17:01.0370 0x0da4 [ ECD373F9571C745894367CC2635EA44F, E08B2A1017DAE1BF10B986DAFAD14BDE20D79703E0EF3A8C700A3753908C1392 ] Processor C:\WINDOWS\System32\drivers\processr.sys
20:17:01.0370 0x0da4 Processor - ok
20:17:01.0402 0x0da4 [ B2A890D96C05E33FDD2BF3F3D4D0DF92, 3A29E17424429A5654D906E420D938148F09F57457356EFA72DA003B73F2D81E ] ProfSvc C:\WINDOWS\system32\profsvc.dll
20:17:01.0402 0x0da4 ProfSvc - ok
20:17:01.0449 0x0da4 [ 8528BB05E4D4E25945F78B00B2555FB7, FF8E0D4580F93CD348080967F52FE6C2C68B56DAEACAE2EAEF04E19412A953AE ] Psched C:\WINDOWS\system32\DRIVERS\pacer.sys
20:17:01.0449 0x0da4 Psched - ok
20:17:01.0480 0x0da4 [ AF90BB44C99D6820BE52C9BBAA523283, 9772D9CC1666959EC8EE4ED740A5179473CE4F38762109F1123DD68010D20EA1 ] QWAVE C:\WINDOWS\system32\qwave.dll
20:17:01.0495 0x0da4 QWAVE - ok
20:17:01.0495 0x0da4 [ 3FB466684609A4329858CF2EBD62E0FD, CFC8FBAB1436948F9D34CE6A2D6DE2F86F3E93E50B86851CED979C8CCE609798 ] QWAVEdrv C:\WINDOWS\system32\drivers\qwavedrv.sys
20:17:01.0511 0x0da4 QWAVEdrv - ok
20:17:01.0527 0x0da4 [ 2C56F0EE27E4EF70CA4B4983D3638905, AFFDD686886CE982424B644D9168D61C6F86A5244FF97BC644DF75B321E415E5 ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys
20:17:01.0527 0x0da4 RasAcd - ok
20:17:01.0542 0x0da4 [ 5F061AC45266841A2860C1858ED863B8, 9E0D52BAC8A50225C32D0397C35350601B996443E2481C808CC59D3B0763FEF0 ] RasAuto C:\WINDOWS\System32\rasauto.dll
20:17:01.0542 0x0da4 RasAuto - ok
20:17:01.0589 0x0da4 [ 5C7B86EE33505E36026AFAAB62DA6364, 903BB1A355AC746BF09C2A7C87B068168648DB79DEF39AB1DC710B6A7A5F6556 ] RasMan C:\WINDOWS\System32\rasmans.dll
20:17:01.0605 0x0da4 RasMan - ok
20:17:01.0620 0x0da4 [ 5247F308C4103CDC4FE12AE1D235800A, E567CD33CA1897D53795E071B7AFBAF98B2C8F725F8BED0BA90F5EF611520E48 ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys
20:17:01.0620 0x0da4 RasPppoe - ok
20:17:01.0652 0x0da4 [ A1A5E79C0D1352AFDC08328A623DA051, 01546DDE6F1FF159A7EB7F2BF104910445D3D863F1F37DEA695579BA60D84280 ] rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys
20:17:01.0652 0x0da4 rdbss - ok
20:17:01.0683 0x0da4 [ 6B21EBF892CD8CACB71669B35AB5DE32, 0AD8E14FEF16FB2559F5FC8AFBC9D49E4E24F43CF65F480DBF9FAB593269B419 ] rdpbus C:\WINDOWS\System32\drivers\rdpbus.sys
20:17:01.0683 0x0da4 rdpbus - ok
20:17:01.0699 0x0da4 [ 680C1DAE268B6FB67FA21B389A8B79EF, 856911F77BDD8830C3D683EBE8AF399FB3A54C7D8D0B34EA37D903377F0A39BD ] RDPDR C:\WINDOWS\system32\drivers\rdpdr.sys
20:17:01.0699 0x0da4 RDPDR - ok
20:17:01.0714 0x0da4 [ 858776908AF838E3790F3261B799CDA6, 5BE4658540382D1B2F46E503CE175D74E3870FE492B8B8F37C3CFB34FF8E2DA8 ] RdpVideoMiniport C:\WINDOWS\system32\drivers\rdpvideominiport.sys
20:17:01.0714 0x0da4 RdpVideoMiniport - ok
20:17:01.0761 0x0da4 [ A26AEC49F318FEE141DDDB2C5F99B3E6, 246AD79FF27E79DEDCB0AAA7C22A8EA6349DEDAC863413A1E378E68FD94C9C4F ] rdyboost C:\WINDOWS\system32\drivers\rdyboost.sys
20:17:01.0761 0x0da4 rdyboost - ok
20:17:01.0839 0x0da4 [ E515A287C8FAE901EB8FB42F168E14F2, 9AE8D608587713FD18BB728BADD402C86FFF06A67359B22ED9431705522BC310 ] ReFS C:\WINDOWS\system32\drivers\ReFS.sys
20:17:01.0855 0x0da4 ReFS - ok
20:17:01.0917 0x0da4 [ BFFB40FBE6D2C3469F8D06EE5E4934AB, 5B6763F973A740DCD53CEA75156926457BED8B075965033C484877DDA8B97F39 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll
20:17:01.0933 0x0da4 RemoteAccess - ok
20:17:01.0949 0x0da4 [ 4DCCABE03D06955ED61BABBD8EF9F30F, 531CD60315AAF283B73E0F6CF77D4DE093B809E73C44D2AC43B7247500B3485E ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll
20:17:01.0949 0x0da4 RemoteRegistry - ok
20:17:01.0980 0x0da4 [ D894CBD7DA753C881EE8D5E33B583225, DA4472A85F10A3DF8CE969F731E67FE7C75EE6095908AB8AC2C44851DC5A3F8B ] RpcEptMapper C:\WINDOWS\System32\RpcEpMap.dll
20:17:01.0980 0x0da4 RpcEptMapper - ok
20:17:02.0011 0x0da4 [ 5CAE8F47B31D5CFC322B5B898C19E0FE, FDB5F0B6EA36403E031D9147AB0519011FAAD3AC8190DE5B1F17FB5472D79D47 ] RpcLocator C:\WINDOWS\system32\locator.exe
20:17:02.0011 0x0da4 RpcLocator - ok
20:17:02.0074 0x0da4 [ 81979817943D830BF24571B7C1B28A1A, 9584D8F1FB3E6CF17BD465670B208C723A8E8B06775A3DA44F75D7710404EEA6 ] RpcSs C:\WINDOWS\system32\rpcss.dll
20:17:02.0089 0x0da4 RpcSs - ok
20:17:02.0105 0x0da4 [ 2D05A5508F4685412F2B89E8C2189ABC, 82F12B4E0E73411A121EFD35FBD3B44CBBC0AE96ACFBB45D8C3C3777E2EA320D ] rspndr C:\WINDOWS\system32\DRIVERS\rspndr.sys
20:17:02.0105 0x0da4 rspndr - ok
20:17:02.0152 0x0da4 [ 19764658C1468C2C0CEF133D28414A6B, 87AD4056F6C67052433A366B200B75613148B69B9B9D502AD926A7F7F037B8DE ] RTL8168 C:\WINDOWS\system32\DRIVERS\Rt630x64.sys
20:17:02.0152 0x0da4 RTL8168 - ok
20:17:02.0167 0x0da4 [ 1A063730F221B2746FF00457AE17E4F0, 39A3C258CBFE3BC566C63528C9020A3BC9409736AE5289C08A7BA471D8409263 ] s3cap C:\WINDOWS\System32\drivers\vms3cap.sys
20:17:02.0183 0x0da4 s3cap - ok
20:17:02.0214 0x0da4 [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] SamSs C:\WINDOWS\system32\lsass.exe
20:17:02.0214 0x0da4 SamSs - ok
20:17:02.0245 0x0da4 [ C624A1B32211C3166EDB3F4AB02A30B7, 6B2A4607DB52D74242787ED9DF9067058983D310431D8612D2B0236E6201E681 ] sbp2port C:\WINDOWS\system32\drivers\sbp2port.sys
20:17:02.0245 0x0da4 sbp2port - ok
20:17:02.0261 0x0da4 [ 47C497FA4DDEA908633CAA60CEBE6805, 4DF5742D4C99D3F7B6A5671AEDB1E5E47D3399D36B28BA19C105FA604D8D5A1C ] SCardSvr C:\WINDOWS\System32\SCardSvr.dll
20:17:02.0261 0x0da4 SCardSvr - ok
20:17:02.0277 0x0da4 [ E76C4E98302AE39CC6FA5D20FC8B5438, B6B6B59CF427515087689285797F4A5763103440EBE5D87A61FA74F80F895BD0 ] ScDeviceEnum C:\WINDOWS\System32\ScDeviceEnum.dll
20:17:02.0277 0x0da4 ScDeviceEnum - ok
20:17:02.0292 0x0da4 [ ABD0237B15DBD2B4695F4B7D734A58F7, D6831921F0CD3E03CBF1CA3ED5824EE0C75127842D12D4E897E74EC72B0792EB ] scfilter C:\WINDOWS\system32\DRIVERS\scfilter.sys
20:17:02.0292 0x0da4 scfilter - ok
20:17:02.0339 0x0da4 [ A95838FFFAEAA7500263D491575F7E0C, FEB79ECAE6D9AB0C29D9AFE12F60502A8357B3A382C0FACF4C6DA4852B6ECFA4 ] Schedule C:\WINDOWS\system32\schedsvc.dll
20:17:02.0370 0x0da4 Schedule - ok
20:17:02.0402 0x0da4 [ AB285CE3431FF3D2ACE669245874C1C7, 6AF4C3E86EFA51F7FB6F8492CB2CCB807C7775EAE0508B87F07134FDAC679BD7 ] SCPolicySvc C:\WINDOWS\System32\certprop.dll
20:17:02.0417 0x0da4 SCPolicySvc - ok
20:17:02.0433 0x0da4 [ FDEC5799BA499D18AFA3A540538866E7, 551EE0945FE4EC213FFF623E524500B57531EFEA2D76FA7ED1D2D605E7E2168F ] sdbus C:\WINDOWS\System32\drivers\sdbus.sys
20:17:02.0433 0x0da4 sdbus - ok
20:17:02.0449 0x0da4 [ 0B1E929D11A8E358106955603FAC65E8, A5EC91BFC0873EC6AB1D0DB4E91654BD35339BD680E7E82DA2DC64996B4AE515 ] sdstor C:\WINDOWS\System32\drivers\sdstor.sys
20:17:02.0449 0x0da4 sdstor - ok
20:17:02.0464 0x0da4 [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv C:\WINDOWS\system32\drivers\secdrv.sys
20:17:02.0464 0x0da4 secdrv - ok
20:17:02.0464 0x0da4 [ C49009F897BA4F2F4F31043663AA1485, 48C8BE1E3A4F150662AD012AF4E0357ABA792AD1147AB90EFF6CB2630E2501B6 ] seclogon C:\WINDOWS\system32\seclogon.dll
20:17:02.0464 0x0da4 seclogon - ok
20:17:02.0511 0x0da4 [ A88882E64BDC1D8E8D6E727B71CCCC53, 12D2235F54D0CEEED8AA268C17CDE44020269F4FEFC70CE957DBBF99AF7F553D ] SENS C:\WINDOWS\System32\sens.dll
20:17:02.0527 0x0da4 SENS - ok
20:17:02.0542 0x0da4 [ E66A7C8CE7ED22DED6DF1CA479FB4790, ADEB076F131E7A8C3AD96022B09BB33EB9AB26C9C831503B8C6960AA763B8975 ] SensrSvc C:\WINDOWS\system32\sensrsvc.dll
20:17:02.0542 0x0da4 SensrSvc - ok
20:17:02.0574 0x0da4 [ DB2FF24CE0BDD15FE75870AFE312BA89, 7DB0D978C92CD0A0A81F7AB46FE323B4929CEA01585B0F330921E6DFA7DE1B85 ] SerCx C:\WINDOWS\system32\drivers\SerCx.sys
20:17:02.0574 0x0da4 SerCx - ok
20:17:02.0605 0x0da4 [ 0044B31F93946D5D41982314381FE431, 95B8A94BA9EF770F29ACD5B23D447EC2B6CF1CB3D0030343BA1550AC31F6E2A5 ] SerCx2 C:\WINDOWS\system32\drivers\SerCx2.sys
20:17:02.0605 0x0da4 SerCx2 - ok
20:17:02.0620 0x0da4 [ 3CD600C089C1251BEEB4CD4CD5164F9E, D9F81951B4454B24E821E33ACA53A851A61F3135E8EC6FBE6761A1A3E1CDCBE2 ] Serenum C:\WINDOWS\System32\drivers\serenum.sys
20:17:02.0620 0x0da4 Serenum - ok
20:17:02.0636 0x0da4 [ D864381BC9C725FAB01D94C060660166, 132FED95222BBE3B0B25B3F1F0EFC5903D04564BD047BA4D2042AD51E3FDA724 ] Serial C:\WINDOWS\System32\drivers\serial.sys
20:17:02.0636 0x0da4 Serial - ok
20:17:02.0636 0x0da4 [ 0BD2B65DCE756FDE95A2E5CCCBF7705D, F13FAFEC8FCF3E796196562717C433CE359A74A3E5876AB070647C717AF74028 ] sermouse C:\WINDOWS\System32\drivers\sermouse.sys
20:17:02.0636 0x0da4 sermouse - ok
20:17:02.0667 0x0da4 [ D5C3776CBD8BC307DCCA3FD4CE667A37, 98E4253B770C25914C91A6148E2EA15ED0EF37ADCB042A47252DBA135972BF74 ] SessionEnv C:\WINDOWS\system32\sessenv.dll
20:17:02.0683 0x0da4 SessionEnv - ok
20:17:02.0699 0x0da4 [ 472B7A5AC181C050888DB454663DD764, C950A8615D57BFD455E18880398350642B2E1D6B951EC9754FD8D429F3418835 ] sfloppy C:\WINDOWS\System32\drivers\sfloppy.sys
20:17:02.0699 0x0da4 sfloppy - ok
20:17:02.0745 0x0da4 [ F4414F57DF2CECB8FC969AA43A6B0D50, AD09A6E1294721507DD6BE82B91F2EEB0FF0151B9BC14A75840CD657DBFDECEC ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll
20:17:02.0745 0x0da4 SharedAccess - ok
20:17:02.0777 0x0da4 [ 0D190D8B4B20446BE6299AC734DFADF1, 6551095971F99820BBFC5FED8FAB9591A3F8ABFA0F027887F3B71B79325FF6D9 ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
20:17:02.0808 0x0da4 ShellHWDetection - ok
20:17:02.0824 0x0da4 [ 2F518D13DD6F3053837FE606F1A2EA1F, 64109296CE95BD233525688A350D575CF97B9464659AA07CF78B307B6ADBC835 ] SiSRaid2 C:\WINDOWS\system32\drivers\SiSRaid2.sys
20:17:02.0824 0x0da4 SiSRaid2 - ok
20:17:02.0839 0x0da4 [ 1AC9A200A9C49C4508F04AAFFCA34A3F, 972BCB2A39169155F74111FAC74ACCD8F50E34EADCF087833B0980827627BBF4 ] SiSRaid4 C:\WINDOWS\system32\drivers\sisraid4.sys
20:17:02.0839 0x0da4 SiSRaid4 - ok
20:17:02.0870 0x0da4 [ 587ACA15210D1B01FBF272E07A08F91A, 1F3C13C218C5EA329C6E33E4AE7CFE88DAD59DA40F59FDE09D733AFD2E489000 ] smphost C:\WINDOWS\System32\smphost.dll
20:17:02.0870 0x0da4 smphost - ok
20:17:02.0902 0x0da4 [ 49EEB92DE930B8566EF615D600781DB4, 0B7C929D24FAFC34F95BB4AA77DCBA29DDD8F1977EB42713B64228677D1FBFD3 ] SNMPTRAP C:\WINDOWS\System32\snmptrap.exe
20:17:02.0917 0x0da4 SNMPTRAP - ok
20:17:02.0933 0x0da4 [ 33977549C2CED09936E05BEE7659EAFF, EB95C72ED0EAC59A50E6882B2501049191A796542C42414FAF0028907C669B21 ] spaceport C:\WINDOWS\system32\drivers\spaceport.sys
20:17:02.0949 0x0da4 spaceport - ok
20:17:02.0964 0x0da4 [ F337BE11071818FC3F5DC2940B6BDE34, D5CFF00E5DF37045F71AEE101AC9B270EBB29F372F404757B58600E9966C7E4D ] SpbCx C:\WINDOWS\system32\drivers\SpbCx.sys
20:17:02.0964 0x0da4 SpbCx - ok
20:17:02.0995 0x0da4 [ FE0CB40F36D3FCDD3A1B312EF72C38D5, 42EA50869752164764DFE8CE7E1C247BE8342A0C15F39158DC808E8A692C460F ] Spooler C:\WINDOWS\System32\spoolsv.exe
20:17:03.0011 0x0da4 Spooler - ok
20:17:03.0199 0x0da4 [ C993A0B97BECD3AAF5158E3869878465, 8B86F37DEFCBE55DE507D830EC4980EBB39B3CCA30C2B3E76B588AAB282A50FC ] sppsvc C:\WINDOWS\system32\sppsvc.exe
20:17:03.0339 0x0da4 sppsvc - ok
20:17:03.0370 0x0da4 [ 2B78788A1485F9B99A578A299DF42C02, A87183A9B13585C9E850437A45237105D39D7F3212ADB079D6AB430B67A59643 ] srv C:\WINDOWS\system32\DRIVERS\srv.sys
20:17:03.0386 0x0da4 srv - ok
20:17:03.0417 0x0da4 [ FD163F487CBA9C98AFFEB546C80F49A2, 18DAAD173C0517F7BBF5D0C914302D98931E3BA6DAA36DC91D8DB0743EC40563 ] srv2 C:\WINDOWS\system32\DRIVERS\srv2.sys
20:17:03.0449 0x0da4 srv2 - ok
20:17:03.0464 0x0da4 [ 716059F37BCCB1ABEDE99EBE82E8E362, 05F27B0FABBBC0E324F06D20ABEF51EDA3316C9F7F85C1AD24639CD6DE1BC8AC ] srvnet C:\WINDOWS\system32\DRIVERS\srvnet.sys
20:17:03.0464 0x0da4 srvnet - ok
20:17:03.0511 0x0da4 [ BB9ED3EDD8E85008215A7250D325A72E, D3404E31B7706B25CDEA7CB4260C343B5F090E8CCB9A5FA203B0F94A9112F1B3 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll
20:17:03.0527 0x0da4 SSDPSRV - ok
20:17:03.0527 0x0da4 [ 3911418AFDE10EA6823B7799E4815524, A73517C4C1271E666B2B3A747756070098E923742B41572AA16573170440AA07 ] SstpSvc C:\WINDOWS\system32\sstpsvc.dll
20:17:03.0542 0x0da4 SstpSvc - ok
20:17:03.0652 0x0da4 [ 718D79F2E7EC3AFFD3661DA81F93BBEA, BA2A4E58E5EE06392EE6F4C2E738DC807EC5A8B9F6DD4B7935FE27CBC648E390 ] Stereo Service C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
20:17:03.0667 0x0da4 Stereo Service - ok
20:17:03.0683 0x0da4 [ 366DEA74BBA65B362BCCFC6FC2ADFD8B, 4D28122AB9D8DAB724021E6513B4474BD34FCEDF47769B1D27AC7551FCA002F8 ] stexstor C:\WINDOWS\system32\drivers\stexstor.sys
20:17:03.0683 0x0da4 stexstor - ok
20:17:03.0745 0x0da4 [ D638904FE86A5FE542A1BA13A9D68E5C, 89A956F932316BC50DD99B54BAF4E2809DCAA084DBB04CB84D11E5470BEAF251 ] stisvc C:\WINDOWS\System32\wiaservc.dll
20:17:03.0761 0x0da4 stisvc - ok
20:17:03.0777 0x0da4 [ 0ED2E318ABB68C1A35A8B8038BDB4C90, 5C3ABC245F4BCFE64E646D9C0E2F5E211244956C84D03084C71FF6A7E0CDED30 ] storahci C:\WINDOWS\system32\drivers\storahci.sys
20:17:03.0777 0x0da4 storahci - ok
20:17:03.0792 0x0da4 [ 7A08CEE1535F5A448215634C5EA74E50, 41529CDC08A3956F8FE9D5759B147E2E56E3305149EA415EB200249F7CD32094 ] storflt C:\WINDOWS\system32\DRIVERS\vmstorfl.sys
20:17:03.0808 0x0da4 storflt - ok
20:17:03.0824 0x0da4 [ 6B06E2D11E604BE2B1A406C4CB3B90DE, 2DDEA1568A85AD64FCE5D10D348304FCD9BE6E96C2313353EF70A2933306D188 ] stornvme C:\WINDOWS\system32\drivers\stornvme.sys
20:17:03.0824 0x0da4 stornvme - ok
20:17:03.0870 0x0da4 [ 3118058E3D07021A55324A943C6D722B, 0B255DF1977DADD2B9766EEEA814B464F0ABFA34D6439F3C453083850C121F16 ] StorSvc C:\WINDOWS\system32\storsvc.dll
20:17:03.0870 0x0da4 StorSvc - ok
20:17:03.0886 0x0da4 [ 548759755BC73DAD663250239D7E0B9F, D31A05A8CE800B539420B6E545F1F4BF6E4B02EAF8366DE89CAF13A83C6CA48D ] storvsc C:\WINDOWS\system32\drivers\storvsc.sys
20:17:03.0886 0x0da4 storvsc - ok
20:17:03.0886 0x0da4 [ D8E1AE075AB3E8AD56F69C44AA978596, CAFF5116DE7F0EEFFEBE38724BCEE7D11B44153AD35EE43E314C56D5E210758A ] svsvc C:\WINDOWS\system32\svsvc.dll
20:17:03.0886 0x0da4 svsvc - ok
20:17:03.0917 0x0da4 [ 84E0F5D41C138C5CC975137A2A98F6D3, 1E36CED05E4F4365C2AB020CAF920E3959995D7F89F3FABD7B2FB05985F85F38 ] swenum C:\WINDOWS\System32\drivers\swenum.sys
20:17:03.0917 0x0da4 swenum - ok
20:17:03.0949 0x0da4 [ 850EBB87584484DC16F917E7B6F4A304, C253D1DFFCDFB018432063602FB01DBCBDDD6E03458E5C366AABD4670F114B0C ] swprv C:\WINDOWS\System32\swprv.dll
20:17:03.0964 0x0da4 swprv - ok
20:17:04.0011 0x0da4 [ 3DA26652B12E9AB43FD04976AC6DFD33, DEFE220D86197949E97342FE3487CD6A07DD2FFAF6D17A7C65419C2C1B9D1AB5 ] SysMain C:\WINDOWS\system32\sysmain.dll
20:17:04.0058 0x0da4 SysMain - ok
20:17:04.0089 0x0da4 [ D65B1C952AEB864C2BAC7A770B17ECCE, 3EFAAFFF73390D9CB660E0F42B305512396CF66ED06E4A20ED67E8722FB4355B ] SystemEventsBroker C:\WINDOWS\System32\SystemEventsBrokerServer.dll
20:17:04.0105 0x0da4 SystemEventsBroker - ok
20:17:04.0136 0x0da4 [ BA6DD39266A5E15515C8C14DA2DA3E5C, 5BC917BA4E7281A67CC6CEF2F4D1972DF04DECBEFB6DED0B08FFBD06E15D4B4F ] TabletInputService C:\WINDOWS\System32\TabSvc.dll
20:17:04.0136 0x0da4 TabletInputService - ok
20:17:04.0167 0x0da4 [ 3C23BE0DAD748BAE77E87F18F34EBA0E, B9F97E2167C7FFBEC1967B415BF1620876CC6D5EC1517CCB8EE6D073656C34A4 ] tap0901 C:\WINDOWS\system32\DRIVERS\tap0901.sys
20:17:04.0167 0x0da4 tap0901 - ok
20:17:04.0183 0x0da4 [ B517410F157693043DACA21B19B258A6, 2224EECEB575CEA811036C43BB5B0A408DE5F59BC97235AB948968E4C3E438F2 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll
20:17:04.0199 0x0da4 TapiSrv - ok
20:17:04.0308 0x0da4 [ 4B666AE119D2ADBAC816BEA7DB4D6881, FCF90241548B893B01CE016D1F0B3D1564B6A4B39ADFBAE077A52F5D8240C8C4 ] Tcpip C:\WINDOWS\system32\drivers\tcpip.sys
20:17:04.0355 0x0da4 Tcpip - ok
20:17:04.0417 0x0da4 [ 4B666AE119D2ADBAC816BEA7DB4D6881, FCF90241548B893B01CE016D1F0B3D1564B6A4B39ADFBAE077A52F5D8240C8C4 ] TCPIP6 C:\WINDOWS\system32\DRIVERS\tcpip.sys
20:17:04.0464 0x0da4 TCPIP6 - ok
20:17:04.0496 0x0da4 [ 41CF802064F72E55F50CA0A221FD36D4, 70ABCDF9E96611E8C83042C581575E26649FE479475E8E118CD3FF6CB1C84C3F ] tcpipreg C:\WINDOWS\system32\drivers\tcpipreg.sys
20:17:04.0496 0x0da4 tcpipreg - ok
20:17:04.0511 0x0da4 [ FFF28F9F6823EB1756C60F1649560BBF, 208DFF8BF0329D0D4761C7E31527AEED7FF5F3C36C5005953D01477F35408D5C ] tdx C:\WINDOWS\system32\DRIVERS\tdx.sys
20:17:04.0511 0x0da4 tdx - ok
20:17:04.0542 0x0da4 [ 232D185D2337F141311D0CF1983E1431, 02EB56D3F26174AF1741C1A444CE30DE84D5BAF583C1A52C7A953BCC52445547 ] terminpt C:\WINDOWS\System32\drivers\terminpt.sys
20:17:04.0542 0x0da4 terminpt - ok
20:17:04.0605 0x0da4 [ 3D748E5558FD9A9F03182CB2330698DC, 70B2069AB7912EB49AB3ABD18D4B42CB94AC99CA6DE3F63F4888B8EAAC78AAA2 ] TermService C:\WINDOWS\System32\termsrv.dll
20:17:04.0636 0x0da4 TermService - ok
20:17:04.0652 0x0da4 [ 05FBE1F7C13E87AF7A414CDF288B1F62, 24079E1A6B2E33A1A8E76A77F73473B93DD6B379E44C982CE50D6CEED9747838 ] Themes C:\WINDOWS\system32\themeservice.dll
20:17:04.0667 0x0da4 Themes - ok
20:17:04.0699 0x0da4 [ FD788C2D96EA91469A3C1D13E80D7473, 7B14D4BFDE18CECC19FBFFAA5AFF5FD78BFB7FCDA6613990740A8A7DD9873D26 ] THREADORDER C:\WINDOWS\system32\mmcss.dll
20:17:04.0699 0x0da4 THREADORDER - ok
20:17:04.0714 0x0da4 [ 347A3E49CE18402305B8119A6EC7CFEB, 6768B20EE577880B0353FE84B980D4A18D323929A63FAE41F7A55123BBFC8DBA ] TimeBroker C:\WINDOWS\System32\TimeBrokerServer.dll
20:17:04.0714 0x0da4 TimeBroker - ok
20:17:04.0730 0x0da4 [ 82F909359600D3603FE852DB7F135626, 2EB2BB9D81AC9A2E432B2628E296B7B21F1C82EAE8009300EEF1B8596A9F418D ] TPM C:\WINDOWS\system32\drivers\tpm.sys
20:17:04.0730 0x0da4 TPM - ok
20:17:04.0761 0x0da4 [ C97E14BB6A196B0554D6EB67D8818175, C00588C94988F10507F84584DFA4C0A43B8648AD1AD35E9BAE14CDD21FCF7B90 ] TrkWks C:\WINDOWS\System32\trkwks.dll
20:17:04.0761 0x0da4 TrkWks - ok
20:17:04.0777 0x0da4 [ B66EE1D68197DFB9AA24F961E68ACDCC, EB7536089BAF2384437EDE964F7A20AE00C988B8CCB61A8F12CB2BBD84C4FB6E ] trufos C:\WINDOWS\system32\drivers\trufos.sys
20:17:04.0777 0x0da4 trufos - ok
20:17:04.0824 0x0da4 [ 887CC44830D3F367CAD17A0CA7CCA5C8, D4022A76433A11FD66D0F41A1EB4D6893BC5B22317E7E9E021739109EB493B44 ] TrustedInstaller C:\WINDOWS\servicing\TrustedInstaller.exe
20:17:04.0824 0x0da4 TrustedInstaller - ok
20:17:04.0855 0x0da4 [ BF8F54CA37E9C9D6582C31C5761F8C93, 337C566792F6FB9B7FD5D1D4384B767CFE4CF5DBB2E4688CCC36CBB018A0DD0F ] TsUsbFlt C:\WINDOWS\system32\drivers\tsusbflt.sys
20:17:04.0855 0x0da4 TsUsbFlt - ok
20:17:04.0870 0x0da4 [ E0088068DCE2EE82897027DDB8E05254, FA9C201D3C885DAD2ABE6A23343EDCC83CFB342EFF9E3005FA50B1D88B21D203 ] TsUsbGD C:\WINDOWS\System32\drivers\TsUsbGD.sys
20:17:04.0870 0x0da4 TsUsbGD - ok
20:17:04.0886 0x0da4 [ C8E0E78B5D284C2FF59BDFFDAF997242, BA1576C491A1246EF9866762426D110F4570F9DB42A68C174943C7D5020FE3E2 ] tunnel C:\WINDOWS\system32\DRIVERS\tunnel.sys
20:17:04.0886 0x0da4 tunnel - ok
20:17:04.0902 0x0da4 [ F6EEAD052943B5A3104C1405BB856C54, FE422813E6C1012E9F392EFF2AE4C6D3A4DBD9CB2BD5E6A5CAB57D4E89A29468 ] uagp35 C:\WINDOWS\system32\drivers\uagp35.sys
20:17:04.0902 0x0da4 uagp35 - ok
20:17:04.0917 0x0da4 [ FE6067B1FD4E63650C667B33D080565B, 2C330ED00E49BA55E25564230E0DFB8A35F2B5320EB18D4AF7CAACFA9A449044 ] UASPStor C:\WINDOWS\System32\drivers\uaspstor.sys
20:17:04.0917 0x0da4 UASPStor - ok
20:17:04.0949 0x0da4 [ B034A41891A36457B994307DFA772293, CA5E6500764A9777AE0E15B2AFB6F05982C90F01374E3F6DDC6DF3852282C66B ] UCX01000 C:\WINDOWS\System32\drivers\ucx01000.sys
20:17:04.0949 0x0da4 UCX01000 - ok
20:17:04.0964 0x0da4 [ 1EC649F112896FAE33250F0B97AC5D0B, 0C0A1C2C7615DEB298AD3073340FD1BF91FEBE611F133E3B48D994A6EAA8369F ] udfs C:\WINDOWS\system32\DRIVERS\udfs.sys
20:17:04.0980 0x0da4 udfs - ok
20:17:04.0995 0x0da4 [ 9578691F297E1B1F519970FE6D47CB21, 080C352AAF22A16A4F3C4AB4DCEA5BFA656457C73F735CEBA30516FDACCF6301 ] UEFI C:\WINDOWS\System32\drivers\UEFI.sys
20:17:04.0995 0x0da4 UEFI - ok
20:17:05.0027 0x0da4 [ 320878AFECDBBD61BBE98624A6CAAC08, 15C090EA32A24D976B5FCB1373B1281DCC2295C075299C814345D694AEB47CB9 ] UI0Detect C:\WINDOWS\system32\UI0Detect.exe
20:17:05.0027 0x0da4 UI0Detect - ok
20:17:05.0042 0x0da4 [ 5EAB5117DDB24FC4D39E6FFFCF1837B9, 2BC709240867F161E94BE6625A04F478EAAA3EEE7BC7C37ED0DFA9EEA5928E98 ] uliagpkx C:\WINDOWS\system32\drivers\uliagpkx.sys
20:17:05.0058 0x0da4 uliagpkx - ok
20:17:05.0074 0x0da4 [ DA34C39A18E60E7C3FA0630566408034, 2F162504214053894C72760D9933D01DBF3578609FE5E2376C3272818599FE32 ] umbus C:\WINDOWS\System32\drivers\umbus.sys
20:17:05.0074 0x0da4 umbus - ok
20:17:05.0074 0x0da4 [ AE8294875E5446E359B1E8035D40C05E, AE0357BAB47C07C3576BC76951CD258C009BC5A1B93259D2122A841BD9CDA8FA ] UmPass C:\WINDOWS\System32\drivers\umpass.sys
20:17:05.0074 0x0da4 UmPass - ok
20:17:05.0120 0x0da4 [ E3DDF7D43E05784FAA5E042605EEE528, 8E20E880FAB09AF4FF5C438BF9EAE9970D46C05167870110869B744E498FD761 ] UmRdpService C:\WINDOWS\System32\umrdp.dll
20:17:05.0120 0x0da4 UmRdpService - ok
20:17:05.0152 0x0da4 [ 4A2FFDAC45F317E17DF642C7160EB633, F1AB762912FAA5F469F322407DA37C91556086C42D1643AD27516C12A84F74D0 ] upnphost C:\WINDOWS\System32\upnphost.dll
20:17:05.0167 0x0da4 upnphost - ok
20:17:05.0214 0x0da4 [ 433ECDE01A52691FA7ACA51C10C09B70, B896296A3F8EF2AF3AC5F0091B9848156608586F1E10A95D70700BAB51E8062A ] usbccgp C:\WINDOWS\System32\drivers\usbccgp.sys
20:17:05.0214 0x0da4 usbccgp - ok
20:17:05.0230 0x0da4 [ B3D6457D841A0CAEF4C52D88621715F2, CBDD76A8A28379B107B1FB530757B477B8AB74CD01F9F3CEDC7B1BA0C6E5A990 ] usbcir C:\WINDOWS\System32\drivers\usbcir.sys
20:17:05.0230 0x0da4 usbcir - ok
20:17:05.0245 0x0da4 [ 5477D6E27C7D266EF8C152B9A25ADE5E, FEE81677D284A78A0C0FB60F887A952CFC759AE78B01206D73F59FE33612C519 ] usbehci C:\WINDOWS\System32\drivers\usbehci.sys
20:17:05.0245 0x0da4 usbehci - ok
20:17:05.0277 0x0da4 [ DF56C2C04EFA328D7A66B69007130266, 719316EB25A8C7B82C7941D1C5B964CC4EDA4A997732F481526DE7356F6FC0D8 ] usbhub C:\WINDOWS\System32\drivers\usbhub.sys
20:17:05.0277 0x0da4 usbhub - ok
20:17:05.0324 0x0da4 [ CFC52C49BEFE4D70D87FFA900EAB9777, 09A2F5D8AB07C3AE3F2B092F4DD7AE5838736CDC263016F188B442B32EC928F8 ] USBHUB3 C:\WINDOWS\System32\drivers\UsbHub3.sys
20:17:05.0324 0x0da4 USBHUB3 - ok
20:17:05.0339 0x0da4 [ 3019097FB6C985EF24C058090FF3BDBD, 24AC518D34E338D94BF3D5B3F72E53F8A1369BAA7F32FEA3EDBCF928C4FF1D17 ] usbohci C:\WINDOWS\System32\drivers\usbohci.sys
20:17:05.0339 0x0da4 usbohci - ok
20:17:05.0355 0x0da4 [ 4D655E3B684BE9B0F7FFD8A2935C348C, 3A7FC1748C5AEA8CFE0E7C22ADC77E3DCA475455FC16D9C6A5C16EB5E949A516 ] usbprint C:\WINDOWS\System32\drivers\usbprint.sys
20:17:05.0355 0x0da4 usbprint - ok
20:17:05.0402 0x0da4 [ EA23453240137F6773174E0D93F61A69, 579AD09FB428C2BB8B4055128620A7AADD1B606C1EA44B87A01D69A84232A5D9 ] USBSTOR C:\WINDOWS\System32\drivers\USBSTOR.SYS
20:17:05.0402 0x0da4 USBSTOR - ok
20:17:05.0417 0x0da4 [ BA4FA655E0FC577DB7436FC963932CE4, 3336FDECD4AEC6B316D4C0803E22A12719EBEDD1A9427C0DF5D3B263BE600EE6 ] usbuhci C:\WINDOWS\System32\drivers\usbuhci.sys
20:17:05.0417 0x0da4 usbuhci - ok
20:17:05.0433 0x0da4 [ 18F744E8CCEB2670040EBAF7AD77B8C6, C5E2DF4EA0D946B4DA67DE29FA9D0F079DED35EC59B98E532C4C2D5F8E86DA0A ] usbvideo C:\WINDOWS\System32\Drivers\usbvideo.sys
20:17:05.0433 0x0da4 usbvideo - ok
20:17:05.0480 0x0da4 [ 48430B0313FC1CFE3D2400553F1A93CD, 92994DE6B131E904AFF2C9C4FBB4E6B0D58525A1539763327373DA18C9F08193 ] USBXHCI C:\WINDOWS\System32\drivers\USBXHCI.SYS
20:17:05.0480 0x0da4 USBXHCI - ok
20:17:05.0495 0x0da4 [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] VaultSvc C:\WINDOWS\system32\lsass.exe
20:17:05.0495 0x0da4 VaultSvc - ok
20:17:05.0527 0x0da4 [ 3C8E2C591345F38149C69FE8E5DF8C90, 9F4BB9BDA09CB2E99A6A888B288F322AE5C460B5D124CD714C6F00FF5029144B ] VClone C:\WINDOWS\System32\drivers\VClone.sys
20:17:05.0527 0x0da4 VClone - ok
20:17:05.0527 0x0da4 [ FEB26E3B8345A7E8D62F945C4AE86562, 3AAFE87C402FC8E92542DFE60EC9540559863065F88D429A16D7B1BF829223FF ] vdrvroot C:\WINDOWS\system32\drivers\vdrvroot.sys
20:17:05.0542 0x0da4 vdrvroot - ok
20:17:05.0605 0x0da4 [ E3EF58D4123B5AA29C8E19825AF84A5E, FB1046722BC643E955DBC3B1459DBF2A6D575EBA2BCF7B20A0FA51E3993835E2 ] vds C:\WINDOWS\System32\vds.exe
20:17:05.0620 0x0da4 vds - ok
20:17:05.0636 0x0da4 [ A026EDEAA5EECAE0B08E2748B616D4BD, 2525A54DC7F49DDFBB999C22BF3FAB6D9E9F70C0806E58D81E90AC59F9F46089 ] VerifierExt C:\WINDOWS\system32\drivers\VerifierExt.sys
20:17:05.0652 0x0da4 VerifierExt - ok
20:17:05.0699 0x0da4 [ 52E483A3701A5A61A75A06993720347D, 689E812755E485DF6960D1E049740FBAFB812467D23B673DCAA40C03FEBB544F ] vhdmp C:\WINDOWS\System32\drivers\vhdmp.sys
20:17:05.0699 0x0da4 vhdmp - ok
20:17:05.0777 0x0da4 [ E066AA9C9866C2001372486A6841108C, 648E39962EDB3D77FBB5E2D5B603E16240AADE181A20E8778EE3D8847E4C0984 ] VIAHdAudAddService C:\WINDOWS\system32\drivers\viahduaa.sys
20:17:05.0824 0x0da4 VIAHdAudAddService - ok
20:17:05.0839 0x0da4 [ 06D38968028E9AB19DE9B618C7B6D199, 62022297A47F440D1C82CA0B0E57C0C8E9D5033D83DD3B40492B218DF65EBF68 ] viaide C:\WINDOWS\system32\drivers\viaide.sys
20:17:05.0839 0x0da4 viaide - ok
20:17:05.0855 0x0da4 [ 1236737C7993FB462610E1A0AA92C40B, 85385740AE7F885ACD605860AB2642DAC7456BB26C6615DAA9EE02AF54FEF77C ] VIAKaraokeService C:\Windows\system32\viakaraokesrv.exe
20:17:05.0855 0x0da4 VIAKaraokeService - ok
20:17:05.0870 0x0da4 [ C6305BDFC4F7CE51F72BB072C03D4ACE, 73E62869CA3104F48CC3B0C45E69CE9BF4F8D7D06E29C2F049B9347ABB50554D ] vmbus C:\WINDOWS\system32\drivers\vmbus.sys
20:17:05.0870 0x0da4 vmbus - ok
20:17:05.0886 0x0da4 [ DA40BEA0A863CE768C940CA9723BF81F, 567C0C3F422325635808B0CF76E05D3B6187F96845C33F85F92F98C9FE53A5B8 ] VMBusHID C:\WINDOWS\System32\drivers\VMBusHID.sys
20:17:05.0886 0x0da4 VMBusHID - ok
20:17:05.0933 0x0da4 [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicguestinterface C:\WINDOWS\System32\ICSvc.dll
20:17:05.0949 0x0da4 vmicguestinterface - ok
20:17:05.0964 0x0da4 [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicheartbeat C:\WINDOWS\System32\ICSvc.dll
20:17:05.0964 0x0da4 vmicheartbeat - ok
20:17:05.0980 0x0da4 [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmickvpexchange C:\WINDOWS\System32\ICSvc.dll
20:17:05.0995 0x0da4 vmickvpexchange - ok
20:17:06.0011 0x0da4 [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicrdv C:\WINDOWS\System32\ICSvc.dll
20:17:06.0027 0x0da4 vmicrdv - ok
20:17:06.0042 0x0da4 [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicshutdown C:\WINDOWS\System32\ICSvc.dll
20:17:06.0042 0x0da4 vmicshutdown - ok
20:17:06.0058 0x0da4 [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmictimesync C:\WINDOWS\System32\ICSvc.dll
20:17:06.0074 0x0da4 vmictimesync - ok
20:17:06.0089 0x0da4 [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicvss C:\WINDOWS\System32\ICSvc.dll
20:17:06.0105 0x0da4 vmicvss - ok
20:17:06.0120 0x0da4 [ 55D7D963DE85162F1C49721E502F9744, 5AD34D6DB707EF3E5242BD8CA67B21D6258EE7E7FC477D5227BD15500AE7F45F ] volmgr C:\WINDOWS\system32\drivers\volmgr.sys
20:17:06.0120 0x0da4 volmgr - ok
20:17:06.0136 0x0da4 [ CCB9E901F7254BF96D28EB1B0E5329B7, F0E3CA4EFA544CDAEF4092284CF3EC7DF07F806A770285E281816457AD8813F5 ] volmgrx C:\WINDOWS\system32\drivers\volmgrx.sys
20:17:06.0136 0x0da4 volmgrx - ok
20:17:06.0183 0x0da4 [ 4BB9BC49DEE1A319EC58274A7BBED663, 624491089623A5B68C01A6A000E60D450E8E467619ACEBB90C6FDED0CF670F95 ] volsnap C:\WINDOWS\system32\drivers\volsnap.sys
20:17:06.0183 0x0da4 volsnap - ok
20:17:06.0199 0x0da4 [ 01355C98B5C3ED1EC446743CDA848FCE, B9FCF558C20E05DD0F53FFB70BBEF873EA57801E13A16701E636128D625C4B67 ] vpci C:\WINDOWS\System32\drivers\vpci.sys
20:17:06.0199 0x0da4 vpci - ok
20:17:06.0214 0x0da4 [ 4539F45F9F4C9757A86A56C949421E07, DEC362314B2C66414F39354AFE79C02B18BF4EEF90787FB58307F6EB62237E2C ] vsmraid C:\WINDOWS\system32\drivers\vsmraid.sys
20:17:06.0230 0x0da4 vsmraid - ok
20:17:06.0277 0x0da4 [ E369C59F2C0852DDD090C07E0DDE0051, 4FAC94458EAAEED4F84A86FBAB8FBB332D0AF85BD528E63C0C058A2DA8E3011D ] VSS C:\WINDOWS\system32\vssvc.exe
20:17:06.0308 0x0da4 VSS - ok
20:17:06.0339 0x0da4 [ 0849B7260F26FE05EA56DED0672E2F4B, 7EAC0E7988F45CB4133A15932955B7B03CE715C967A3BAC9999D81543EBCAEC5 ] VSTXRAID C:\WINDOWS\system32\drivers\vstxraid.sys
20:17:06.0339 0x0da4 VSTXRAID - ok
20:17:06.0355 0x0da4 [ BE970C369E43B509C1EDA2B8FA7CECB0, 18951F2AA842A0795AA79A4E164EE925A35E6270EBE4C4CDB19D0A891830E383 ] vwifibus C:\WINDOWS\System32\drivers\vwifibus.sys
20:17:06.0355 0x0da4 vwifibus - ok
20:17:06.0386 0x0da4 [ 7599E582CA3A6AAA95A18FFE1172D339, A0410778FBBC4302EA91CF24B944427410B4706535F1192504D4F34C3ED4503E ] W32Time C:\WINDOWS\system32\w32time.dll
20:17:06.0402 0x0da4 W32Time - ok
20:17:06.0417 0x0da4 [ 0910AB9ED404C1434E2D0376C2AD5D8B, 62585CA5F1375BDA440D28D5DF1ADDC9DE3DDFA196D49BBFF3456A5A09EE1C6B ] WacomPen C:\WINDOWS\System32\drivers\wacompen.sys
20:17:06.0417 0x0da4 WacomPen - ok
20:17:06.0480 0x0da4 [ 61692DB39AD3DF2F29392D68EAA7BB93, 854D4B9C7DD1676968598ED973500650ECEC02C420E44C0B3957C24F073AA5FB ] wbengine C:\WINDOWS\system32\wbengine.exe
20:17:06.0511 0x0da4 wbengine - ok
20:17:06.0558 0x0da4 [ 3BC1D1D56637A32CD91C8AE08E2484AA, 9EE1BD3FB0D289E25F3DDD0D8F67DC1C701A6B1D5418FADF348D0E642B1DEBEB ] WbioSrvc C:\WINDOWS\System32\wbiosrvc.dll
20:17:06.0574 0x0da4 WbioSrvc - ok
20:17:06.0620 0x0da4 [ A07CFC4B593D15B6BF06813C3B5B33BF, B57BD918E2AFF9943B51A24B95E0C4D3482B4DF73C0E2421E8CC67C2BC7A4C70 ] Wcmsvc C:\WINDOWS\System32\wcmsvc.dll
20:17:06.0636 0x0da4 Wcmsvc - ok
20:17:06.0699 0x0da4 [ D2726823DF7E19F213F4805A9D6D145F, A7F582C99918D204264D3B374F70D75984BDA5805203041E3DECB8153D16E102 ] wcncsvc C:\WINDOWS\System32\wcncsvc.dll
20:17:06.0730 0x0da4 wcncsvc - ok
20:17:06.0745 0x0da4 [ 846C02A8B48CBD921A3D6AB521AA0DC4, B07573A774A6C65D24E5718DC25DF378270EB5B40221CA5A53B21D47838381D3 ] WcsPlugInService C:\WINDOWS\System32\WcsPlugInService.dll
20:17:06.0745 0x0da4 WcsPlugInService - ok
20:17:06.0777 0x0da4 [ F5D4FA3E1F4879C361FFF3855259D2C2, 48C60FE4AAB011E2250157506FF0624031BFA346F8F2F8C6DFDF6F3CAA4F3F42 ] WdBoot C:\WINDOWS\system32\drivers\WdBoot.sys
20:17:06.0777 0x0da4 WdBoot - ok
20:17:06.0808 0x0da4 [ CB6C63FF8342B467E2EF76E98D5B934D, BE017CE91E3BAB293DE6ECF143797CCE3F33CC63024437472B4E38C6961AD884 ] Wdf01000 C:\WINDOWS\system32\drivers\Wdf01000.sys
20:17:06.0839 0x0da4 Wdf01000 - ok
20:17:06.0855 0x0da4 [ 019CC610AD95FF47EAD7C08B7A683B96, BB9D42F8ED90ECA2E7B8C906E06A1EA859FAD9BD1B3492BB1E28C0D00004812A ] WdFilter C:\WINDOWS\system32\drivers\WdFilter.sys
20:17:06.0855 0x0da4 WdFilter - ok
20:17:06.0870 0x0da4 [ 40C67D1A4891120874767F6E6604D6C5, 4D9DD658566DE711ADF4D6C33FCB31DA351EE050E3ED188664D04526CCAAEEF5 ] WdiServiceHost C:\WINDOWS\system32\wdi.dll
20:17:06.0870 0x0da4 WdiServiceHost - ok
20:17:06.0886 0x0da4 [ 40C67D1A4891120874767F6E6604D6C5, 4D9DD658566DE711ADF4D6C33FCB31DA351EE050E3ED188664D04526CCAAEEF5 ] WdiSystemHost C:\WINDOWS\system32\wdi.dll
20:17:06.0886 0x0da4 WdiSystemHost - ok
20:17:06.0902 0x0da4 [ 6CC1BB8F6851A262E2E824F0E92D5EEF, 45A88A984179BBA38C1F4434C4D6C2823C1FE6AFBE8CB0F656DAE0092D1D5611 ] WdNisDrv C:\WINDOWS\system32\Drivers\WdNisDrv.sys
20:17:06.0902 0x0da4 WdNisDrv - ok
20:17:06.0933 0x0da4 WdNisSvc - ok
20:17:06.0980 0x0da4 [ 6588A957873326361AB1CAC4E76F8394, BE17880CEDCAE5ED3B983443E3777842646A3E48B661422A717656E11F6DBA94 ] WebClient C:\WINDOWS\System32\webclnt.dll
20:17:07.0011 0x0da4 WebClient - ok
20:17:07.0027 0x0da4 [ 3274312F263882B51B964329FAF49734, 99A020377ACF0762BE5ECD2D68EB5E1497B9D59963247E725F7F96FB5DF41FAD ] Wecsvc C:\WINDOWS\system32\wecsvc.dll
20:17:07.0058 0x0da4 Wecsvc - ok
20:17:07.0074 0x0da4 [ 7CDD84E0023A0C5C230B06A7965EC65E, 6EC7DC18C76D66CF9A893C3DD20F9BE3ADD76546F9A9BA42CE4F24854709F9D9 ] WEPHOSTSVC C:\WINDOWS\system32\wephostsvc.dll
20:17:07.0089 0x0da4 WEPHOSTSVC - ok
20:17:07.0120 0x0da4 [ 959534ACF085C137D2D094384EF89C45, D029F440789FE170A1C46217C6DE6D78DC0188A5CF33FCCC17FA65D3BC80C2B7 ] wercplsupport C:\WINDOWS\System32\wercplsupport.dll
20:17:07.0136 0x0da4 wercplsupport - ok
20:17:07.0167 0x0da4 [ 82BCCF5FBE47AC9E8CBA2020994DFB3F, EA96C6BD98A701B465D0780EC10BDA92E45FE636D60C1385813AA3B456D8B931 ] WerSvc C:\WINDOWS\System32\WerSvc.dll
20:17:07.0167 0x0da4 WerSvc - ok
20:17:07.0199 0x0da4 [ BFBE1C5F57FE7A885673A1962D5532B7, F0BD05B257108699FE6AB32EF11F927C31932F27062A705B3FEFA4F5B4C0D8C3 ] WFPLWFS C:\WINDOWS\system32\DRIVERS\wfplwfs.sys
20:17:07.0199 0x0da4 WFPLWFS - ok
20:17:07.0214 0x0da4 [ E06AFE2F94BA7CFA2FE4FD2A449E60E2, 99A81E16366E9E77905D873B0246E4C11B383FE1E99E0E1D9A07FAD4E52EA9E4 ] WiaRpc C:\WINDOWS\System32\wiarpc.dll
20:17:07.0230 0x0da4 WiaRpc - ok
20:17:07.0245 0x0da4 [ 867BCC69ED9C31C501465EB0E8BA9DFA, 678B7FF4D4E8624514301956CDA7FB451159BBFC83FF2E4E5E7DADAE3C7AB2EC ] WIMMount C:\WINDOWS\system32\drivers\wimmount.sys
20:17:07.0245 0x0da4 WIMMount - ok
20:17:07.0245 0x0da4 WinDefend - ok
20:17:07.0277 0x0da4 [ DD079EC8F44DCA3A176B345C6ADEFB66, 6CD9371B83EA23D2181891FAE1DB285BC111A78C35F374E57666ED09860C91A9 ] WinHttpAutoProxySvc C:\WINDOWS\system32\winhttp.dll
20:17:07.0324 0x0da4 WinHttpAutoProxySvc - ok
20:17:07.0355 0x0da4 [ 9DB490F3E823C5C3C070644B96CB9D59, 81937D0B331E43C7C61514E60B3AD51370C5201F7B4D12F8534840D91EDC32DD ] Winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll
20:17:07.0370 0x0da4 Winmgmt - ok
20:17:07.0449 0x0da4 [ C8D6344BDE2691A196E61C0D3372EAB7, FF8EB79D8A7E298343C22B83276FF68293D08A9DA438BB22600BEFC4CA93A91D ] WinRM C:\WINDOWS\system32\WsmSvc.dll
20:17:07.0511 0x0da4 WinRM - ok
20:17:07.0574 0x0da4 [ EF252510DB6C3511E30418BD2AC95A2D, 75B496F5C611129D9D19B382503830FDB0E2E61D4880D2821AE381DF578C5E56 ] WlanSvc C:\WINDOWS\System32\wlansvc.dll
20:17:07.0620 0x0da4 WlanSvc - ok
20:17:07.0699 0x0da4 [ 5F56C0DE776C7AE43AF749845BFAA1EF, 837993C5853B7E682C7FB8401B7F5D951FFD15E5659EBB1B01DC3F5719ACEE19 ] wlidsvc C:\WINDOWS\system32\wlidsvc.dll
20:17:07.0730 0x0da4 wlidsvc - ok
20:17:07.0761 0x0da4 [ 2834D9D3B4F554A39C72F00EA3F0E128, D10124343C67FE9A0B711AD569BB8080495FCEA0ECEF9AC3F3FBD6865F436A44 ] WmiAcpi C:\WINDOWS\System32\drivers\wmiacpi.sys
20:17:07.0761 0x0da4 WmiAcpi - ok
20:17:07.0777 0x0da4 [ 7AFAC828F52D62F304A911EC32F42EEE, 4EDCF4149069413A166169F2E23F7505F47B39B7EC319E1EF6D2C46CD140AA24 ] wmiApSrv C:\WINDOWS\system32\wbem\WmiApSrv.exe
20:17:07.0777 0x0da4 wmiApSrv - ok
20:17:07.0792 0x0da4 WMPNetworkSvc - ok
20:17:07.0808 0x0da4 [ 7FC5667DF73D4B04AA457CC3A4180E09, CB7B014945DCA16B6D120DBE0E5876C4C867A4ACD3C3536AEADC14B908613D4E ] Wof C:\WINDOWS\system32\drivers\Wof.sys
20:17:07.0808 0x0da4 Wof - ok
20:17:07.0870 0x0da4 [ 5071E71CC05346D88C5A08EB8B5A05E3, EA2B14130EDD1846B2E25D310B0D49253CFB43C22D3DC7B3179DF7349CC4AEFB ] workfolderssvc C:\WINDOWS\system32\workfolderssvc.dll
20:17:07.0902 0x0da4 workfolderssvc - ok
20:17:07.0933 0x0da4 [ 182561A14F2E93E81E66FE3700D17A5A, FB9A06058A8BCCEDCDC5BF8899D9B2FBA5752C262C5FC6D2B8338884F3303D12 ] wpcfltr C:\WINDOWS\system32\DRIVERS\wpcfltr.sys
20:17:07.0933 0x0da4 wpcfltr - ok
20:17:07.0964 0x0da4 [ 4E6A0F60DA7EF050D3D26417CD4D24E9, E6B3BFB007B641D41F8532ED086F92CB3D86E210023DBFAA9AD8152A9FD33CCA ] WPCSvc C:\WINDOWS\System32\wpcsvc.dll
20:17:07.0980 0x0da4 WPCSvc - ok
20:17:07.0995 0x0da4 [ D27491CFCE452C154CECFA155AD0EBC8, 1F3F74C253E3B07DE7EFE27C34DD9AF08617C7B03BB44C2902F69BA9DA3F21F2 ] WPDBusEnum C:\WINDOWS\system32\wpdbusenum.dll
20:17:07.0995 0x0da4 WPDBusEnum - ok
20:17:08.0042 0x0da4 [ 9F2904B55F6CECCD1A8D986B5CE2609A, E19ED4DD3CEF3A22C058FC324824604FB3FC98A029C94E6C2A3389F938D680B6 ] WpdUpFltr C:\WINDOWS\system32\drivers\WpdUpFltr.sys
20:17:08.0042 0x0da4 WpdUpFltr - ok
20:17:08.0058 0x0da4 [ AE072B0339D0A18E455DC21666CAD572, AB1DAEA25E2C7AD610818D4B4783F6D4190D85EBB3963BBAD410E8CEA7899EDB ] ws2ifsl C:\WINDOWS\system32\drivers\ws2ifsl.sys
20:17:08.0058 0x0da4 ws2ifsl - ok
20:17:08.0074 0x0da4 [ 9654DE19551093CD73874281E1573C94, 5E3513EC0CB180D90904BE8970AB64A4434279E8C467AE2CF693254E47B1D11E ] wscsvc C:\WINDOWS\System32\wscsvc.dll
20:17:08.0089 0x0da4 wscsvc - ok
20:17:08.0089 0x0da4 WSearch - ok
20:17:08.0183 0x0da4 [ 95B6670E6933E1DEE19686C55BE709A0, 4B9EB8F1712B7959A71F6DA445D29BD09B25EEFC6B30D736EFE30163D79B233E ] WSService C:\WINDOWS\System32\WSService.dll
20:17:08.0308 0x0da4 WSService - ok
20:17:08.0449 0x0da4 [ E66AC3CA92FC471BFE69F61549193A64, E2DD7EA4ED164EE8FB07546896BE743734B04DE4C9480E84231901CB2C63F31C ] wuauserv C:\WINDOWS\system32\wuaueng.dll
20:17:08.0558 0x0da4 wuauserv - ok
20:17:08.0589 0x0da4 [ 2FEAE33E9B2B56104596E1BA444405A9, 0A142F50E06F6224B9CB36B3CE62BE0B36DE8B8DB9F9E05D287DFB884CC7826E ] WudfPf C:\WINDOWS\system32\drivers\WudfPf.sys
20:17:08.0589 0x0da4 WudfPf - ok
20:17:08.0605 0x0da4 [ 19240C13F526125554B5370566F21A0A, 1DD88B092451CEC309A390319342BB4D36CE938BBE6D09127BBAA53960DD8E94 ] WUDFRd C:\WINDOWS\System32\drivers\WUDFRd.sys
20:17:08.0605 0x0da4 WUDFRd - ok
20:17:08.0620 0x0da4 [ 19240C13F526125554B5370566F21A0A, 1DD88B092451CEC309A390319342BB4D36CE938BBE6D09127BBAA53960DD8E94 ] WUDFSensorLP C:\WINDOWS\System32\drivers\WUDFRd.sys
20:17:08.0620 0x0da4 WUDFSensorLP - ok
20:17:08.0636 0x0da4 [ BB73CBC65AABC4EA0A5C6A1474A0A743, D644B3C6A7202CADDADB3B68FE1B2A7C76B023FE58F667EED4D538C1F4A65D64 ] wudfsvc C:\WINDOWS\System32\WUDFSvc.dll
20:17:08.0636 0x0da4 wudfsvc - ok
20:17:08.0652 0x0da4 [ 19240C13F526125554B5370566F21A0A, 1DD88B092451CEC309A390319342BB4D36CE938BBE6D09127BBAA53960DD8E94 ] WUDFWpdFs C:\WINDOWS\system32\DRIVERS\WUDFRd.sys
20:17:08.0667 0x0da4 WUDFWpdFs - ok
20:17:08.0714 0x0da4 [ 2FA9794CA36147756F3FDFD6CA29B46F, 4B86DC38C2411C281686E9A4E64DA6FB2992E39391371F78E012D6D8BB85123F ] WwanSvc C:\WINDOWS\System32\wwansvc.dll
20:17:08.0730 0x0da4 WwanSvc - ok
20:17:08.0730 0x0da4 ================ Scan global ===============================
20:17:08.0777 0x0da4 [ C89780A6F58D113C28A96D85D1261DC5, 185114F33A60916C7904E4A0F278CA43258454343E614F01F0DAFA98BAC981B1 ] C:\WINDOWS\system32\basesrv.dll
20:17:08.0824 0x0da4 [ 00DD4D2ACC2E72155A8AAA82018BEC0D, 9D7CA68B4A81240477FCC85A3CC11EF986093F9D6228A6C5AC608EDAD664068C ] C:\WINDOWS\system32\winsrv.dll
20:17:08.0870 0x0da4 [ 9C1833ABD62876856836C5AE55C7CE86, 0A21E2C8B2FF3B0438C86DA7151A548F9C6F5C62CD402CBBEDB435994C8508F1 ] C:\WINDOWS\system32\sxssrv.dll
20:17:08.0902 0x0da4 [ 067CB90C277DB4A737D5DEABA3055972, C681BF013170F2D92A3FC4D783FC3F200CDC0C8173373B7ECC27FCF32A03CCBD ] C:\WINDOWS\system32\services.exe
20:17:08.0917 0x0da4 [ Global ] - ok
20:17:08.0917 0x0da4 ================ Scan MBR ==================================
20:17:08.0949 0x0da4 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
20:17:09.0120 0x0da4 \Device\Harddisk0\DR0 - ok
20:17:09.0120 0x0da4 ================ Scan VBR ==================================
20:17:09.0136 0x0da4 [ 0BCE8CA2DADD616FB7076B486B19933A ] \Device\Harddisk0\DR0\Partition1
20:17:09.0199 0x0da4 \Device\Harddisk0\DR0\Partition1 - ok
20:17:09.0199 0x0da4 [ B79AF30A5EDFFF543E2E467877E50115 ] \Device\Harddisk0\DR0\Partition2
20:17:09.0261 0x0da4 \Device\Harddisk0\DR0\Partition2 - ok
20:17:09.0261 0x0da4 ================ Scan generic autorun ======================
20:17:09.0714 0x0da4 [ 834A309C2FDF52FC09353F348CFE1235, FF8D5B0C4D8DEF3B313E11B01D6A2A29758E8721EF2EC0AAC2DB3C9AAF399276 ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
20:17:09.0933 0x0da4 RTHDVCPL - ok
20:17:09.0964 0x0da4 [ 6E0BDFBEEED65B017F2E4C2C910B0520, 54D798C2E2804DCDB84E9650EA4A032C669B10C586B396D5505F16235D83882C ] C:\WINDOWS\system32\rundll32.exe
20:17:09.0980 0x0da4 ShadowPlay - ok
20:17:10.0042 0x0da4 [ 5EA707336336DDFADE5FD3726CEA1523, 6136D88012140B3A43C7DC6CD0CBDB867BC6BA62D718269B73ED9F1B340F6768 ] C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
20:17:10.0074 0x0da4 NvBackend - ok
20:17:10.0245 0x0da4 [ 45435DC5102CC9F563F52FE7398E448D, A99CBB644FBC3B6EE9EBE86A6D31CC3B53CA846C61720F6836496B57669A6FBF ] C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe
20:17:10.0339 0x0da4 HDAudDeck - ok
20:17:10.0402 0x0da4 [ 3BD79A1F6D2EA0FDDEA3F8914B2A6A0C, 332E6806EFF846A2E6D0DC04A70D3503855DABFA83E6EC27F37E2D9103E80E51 ] C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
20:17:10.0402 0x0da4 VirtualCloneDrive - ok
20:17:10.0558 0x0da4 [ 26AFC1F16494FFE66F2197153B342A27, 817436E38F832500E120F196941F2F8392B192262E16D5E52CD5DFAC34749C15 ] C:\Program Files\AVAST Software\Avast\AvastUI.exe
20:17:10.0636 0x0da4 AvastUI.exe - ok
20:17:10.0683 0x0da4 [ 61E4289E91E88C90478D7F4BEB10DCF7, 1D0F4034E0111CF5758F470C15A22A0A28EB8269CB5BF07222C9C0FB07A15C55 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
20:17:10.0683 0x0da4 APSDaemon - ok
20:17:10.0777 0x0da4 [ 048EA4B978851788E9F5E8E4F081DF7A, EB62719AC0DCC18FF056F2CD84438BF14B61E38F0619617C81961C6257BDFCEC ] C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
20:17:10.0792 0x0da4 Adobe ARM - ok
20:17:10.0839 0x0da4 [ EDAD4A8A1D46AFCF9E76B996D55116EB, 937549E6FBF5D7282E56866C705539646F2CB6839FD74BF7AA8FB2BA5CCEE940 ] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
20:17:10.0839 0x0da4 SunJavaUpdateSched - ok
20:17:10.0839 0x0da4 Waiting for KSN requests completion. In queue: 50
20:17:11.0855 0x0da4 Waiting for KSN requests completion. In queue: 50
20:17:12.0870 0x0da4 Waiting for KSN requests completion. In queue: 50
20:17:13.0933 0x0da4 AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.5.218.0 ), 0x60100 ( disabled : updated )
20:17:13.0933 0x0da4 AV detected via SS2: avast! Antivirus, C:\Program Files\AVAST Software\Avast\VisthAux.exe ( 9.0.2021.515 ), 0x41000 ( enabled : updated )
20:17:13.0964 0x0da4 Win FW state via NFP2: enabled
20:17:16.0324 0x0da4 ============================================================
20:17:16.0324 0x0da4 Scan finished
20:17:16.0324 0x0da4 ============================================================
20:17:16.0339 0x09a8 Detected object count: 0
20:17:16.0339 0x09a8 Actual detected object count: 0
20:36:54.0538 0x0a70 Deinitialize success
20:16:58.0824 0x0da4 NdisImPlatform - ok
20:16:58.0824 0x0da4 [ 9423421E735BD5394351E0C47C76BB92, 763E5D06F896C0EF8AD52515464F28BA85DB7A1560E451857AC9AA68FAFCBC66 ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys
20:16:58.0839 0x0da4 NdisTapi - ok
20:16:58.0839 0x0da4 [ B832B35055BA2B7B4181861FF94D8E59, 2E60E5D503E88D27E35ECFEE265D51328E93A9C7B9B931F86D9CBC947636BB00 ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys
20:16:58.0839 0x0da4 Ndisuio - ok
20:16:58.0855 0x0da4 [ 1F58E48EF75F34C35D8E93A0DC535CFE, D65619A6C4B1747F8B05DA08A44EF0E46B5CC384880E04E4755A2BA6CDB3C4EA ] NdisVirtualBus C:\WINDOWS\System32\drivers\NdisVirtualBus.sys
20:16:58.0855 0x0da4 NdisVirtualBus - ok
20:16:58.0870 0x0da4 [ DEC29080202D4F9F17F55E18BCFCC41A, F7E543741B1F4F637A99C40543D6AEC6EBF893F74359BBA769D1F882E0AFB571 ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys
20:16:58.0886 0x0da4 NdisWan - ok
20:16:58.0886 0x0da4 [ DEC29080202D4F9F17F55E18BCFCC41A, F7E543741B1F4F637A99C40543D6AEC6EBF893F74359BBA769D1F882E0AFB571 ] NdisWanLegacy C:\WINDOWS\system32\DRIVERS\ndiswan.sys
20:16:58.0902 0x0da4 NdisWanLegacy - ok
20:16:58.0902 0x0da4 [ A5BD69A8812FA79D1A487691DD3FB244, 67B5EDE101943E0E8B8041DB2353D20C8B9F2D253E77964761CFE8F136C0BBC7 ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys
20:16:58.0902 0x0da4 NDProxy - ok
20:16:58.0917 0x0da4 [ 5A072F0B90C29C5233D78BE33EF5ED78, B32ED76A674B1FC743361FB7BBD4C915A78B14132AB056AADD445D5995AD4F32 ] Ndu C:\WINDOWS\system32\drivers\Ndu.sys
20:16:58.0933 0x0da4 Ndu - ok
20:16:58.0933 0x0da4 [ A83D67D347A684F10B7D3019C8A6380C, 2B86832967981C8C786BF24C1CF8E13E01745ACE3333CF5C821DD93D623B96E4 ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys
20:16:58.0949 0x0da4 NetBIOS - ok
20:16:58.0949 0x0da4 [ 0217532E19A748F0E5D569307363D5FD, C40C2E7AFA276057E7327A7BB173122689D6CEC9AE443C3850C3F94AF03DFBF5 ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys
20:16:58.0964 0x0da4 NetBT - ok
20:16:58.0980 0x0da4 [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] Netlogon C:\WINDOWS\system32\lsass.exe
20:16:58.0980 0x0da4 Netlogon - ok
20:16:59.0027 0x0da4 [ B7AD851A21FEBA3BA214972627614207, 29605320CCC3DAAD062CAECF0009DACBC2F6D28ED4E8AF7CE76132129F5572A0 ] Netman C:\WINDOWS\System32\netman.dll
20:16:59.0058 0x0da4 Netman - ok
20:16:59.0089 0x0da4 [ F0F0A372C2EF6358399C4936F91B6131, CE596C71EB4D1A5E104D3148F2D0D8789882C59FD198DCF33CCAC7A08B50E4EE ] netprofm C:\WINDOWS\System32\netprofmsvc.dll
20:16:59.0105 0x0da4 netprofm - ok
20:16:59.0152 0x0da4 [ 1092B3190E69E0C5ECBCE90F171DE047, C16106EEFC324EE80E5F659CB71A5DD69FA800D36D829F5B0E6AD3393BD1BAF7 ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
20:16:59.0167 0x0da4 NetTcpPortSharing - ok
20:16:59.0183 0x0da4 [ 70414DB660BFBB7BD58FCE8EA4364E1B, 6DFB3897CD55E22BA1EDF0AE672F4D7A6A1F512F8A0A26AF106765E6B1CF65AC ] netvsc C:\WINDOWS\system32\DRIVERS\netvsc63.sys
20:16:59.0199 0x0da4 netvsc - ok
20:16:59.0214 0x0da4 [ 3A280F3B3C7A46E29C404ACD46ECBF5E, 81C3367A2A212DBCC65B8A0166FD092E3205AB31A146B4B737061335CEC51F9D ] NlaSvc C:\WINDOWS\System32\nlasvc.dll
20:16:59.0230 0x0da4 NlaSvc - ok
20:16:59.0245 0x0da4 [ 8F44A2F57C9F1A19AC9C6288C10FB351, 310274DDBAC0FE4BE54ECD3B90C97D82A0F9F5CFCA7A35711A36164DE4B94074 ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys
20:16:59.0245 0x0da4 Npfs - ok
20:16:59.0261 0x0da4 [ CBDB4F0871C88DF930FC0E8588CA67FC, 7E4AA3EA81A9D532F236FD7896744F07ED07CA9B37A9F18A9778BCCCC67490F2 ] npsvctrig C:\WINDOWS\System32\drivers\npsvctrig.sys
20:16:59.0261 0x0da4 npsvctrig - ok
20:16:59.0261 0x0da4 [ 6E2271ED0C3E95B8E29F3752B91B9E84, 44026AD9757EA82967D7F7578455802FAD7FE0057EAC088E0AE207C15F594B86 ] nsi C:\WINDOWS\system32\nsisvc.dll
20:16:59.0277 0x0da4 nsi - ok
20:16:59.0277 0x0da4 [ E490B459978CB87779E84C761D22B827, 1E5CA38626E41618E4CA16DD0C70EB2FA86E986F0CF21A749BDE2A17015DEEC6 ] nsiproxy C:\WINDOWS\system32\drivers\nsiproxy.sys
20:16:59.0277 0x0da4 nsiproxy - ok
20:16:59.0324 0x0da4 [ 1C80517BE6836A812F6A9B99B8321351, 7DBED4633820E201C9C242D961EF6F25BA2B1D5593BA60F707CC71A4014C2D4B ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys
20:16:59.0370 0x0da4 Ntfs - ok
20:16:59.0386 0x0da4 [ EF1B290FC9F0E47CC0B537292BEE5904, DBC07BBC54EBC2D2E576B23A4CE116B3DA988577AD0D96CB7289A6748A60F9EA ] Null C:\WINDOWS\system32\drivers\Null.sys
20:16:59.0386 0x0da4 Null - ok
20:16:59.0402 0x0da4 [ E366A5681C50785D4ED04FCFD65C3415, 7FF7B4B8F09E773401AE879897E60BF494B57B9ACEE990204A4C98A3FB183A33 ] NVHDA C:\WINDOWS\system32\drivers\nvhda64v.sys
20:16:59.0402 0x0da4 NVHDA - ok
20:16:59.0730 0x0da4 [ 0AC797F70F2F3E5B69A34FF2F63496F3, 80A811F8234BA00779BA76AAF41E830FB6CED03667E6E8F430C14DEBF2E45DD9 ] nvlddmkm C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys
20:16:59.0949 0x0da4 nvlddmkm - ok
20:17:00.0074 0x0da4 [ C50CD479FD1BB886244E2663DFFBCF6A, CCFB60425E56A12C097EC05A9E5549B4F4A10379818ABC64945487C16F882E3D ] NvNetworkService C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
20:17:00.0089 0x0da4 NvNetworkService - ok
20:17:00.0105 0x0da4 [ BC6B5942AFF25EBAF62DE43C3807EDF8, CB0FA194084B8C309039D571B5760FDA800E9531B8660C499B4F9977BA5C36D5 ] nvraid C:\WINDOWS\system32\drivers\nvraid.sys
20:17:00.0120 0x0da4 nvraid - ok
20:17:00.0120 0x0da4 [ 1F43ABFFAC3D6CA356851D517392966E, 6FD7621F67BA94B0E1D8F43BEC2951DBCDEEA1E848BB265AC169E27C01DA68F2 ] nvstor C:\WINDOWS\system32\drivers\nvstor.sys
20:17:00.0136 0x0da4 nvstor - ok
20:17:00.0214 0x0da4 [ AD7A2F3AF147B2CF302EBF7C1E01E027, B8DAAE7FE4B13C9CA3F1DEE7C98F5CA49D4D1678C82C51D6801210838319BAE5 ] NvStreamKms C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys
20:17:00.0214 0x0da4 NvStreamKms - ok
20:17:00.0214 0x0da4 NvStreamSvc - ok
20:17:00.0261 0x0da4 [ 4E769C9006553699E874518BAFBEA2C3, 4D1C12E0EDD1CC722394292E7EBA52CA8C9990D9599473729C6C1D54281018BF ] NvStUSB C:\WINDOWS\System32\drivers\nvstusb.sys
20:17:00.0292 0x0da4 NvStUSB - ok
20:17:00.0355 0x0da4 [ C135A25E8CF21EB631AB041ABB1F73EA, D0A3DC0411E888D0934B7579EEB980FA7824E3F22F70819A33411D8B8BC9EE42 ] nvsvc C:\WINDOWS\system32\nvvsvc.exe
20:17:00.0370 0x0da4 nvsvc - ok
20:17:00.0386 0x0da4 [ 75034A4D7C02327D150B617571D4196A, 8E7DAFEC4307E883D52BD0B5F0732E26E019C953770B52ACBBAD3074A66393CB ] nvvad_WaveExtensible C:\WINDOWS\system32\drivers\nvvad64v.sys
20:17:00.0386 0x0da4 nvvad_WaveExtensible - ok
20:17:00.0402 0x0da4 [ 6934A936A7369DFE37B7DBA93F5E5E49, 0900FEEB0CE8D09F0FC60630B5B986034A8BCD3882ED66E47170810C32492892 ] nv_agp C:\WINDOWS\system32\drivers\nv_agp.sys
20:17:00.0402 0x0da4 nv_agp - ok
20:17:00.0433 0x0da4 [ E287F157F7A0011D93179C64EF8ADCF2, C16FB92C7B18D634BB1344238D35B3111494C243FBD5853F05376F5051480D83 ] p2pimsvc C:\WINDOWS\system32\pnrpsvc.dll
20:17:00.0449 0x0da4 p2pimsvc - ok
20:17:00.0480 0x0da4 [ 2A57A937BC5B1B2D6AFE6A8C5925F50B, 00D84EFED5A7129AAD86945940030474795905C32D65CBD5B1A3EBADCED8F873 ] p2psvc C:\WINDOWS\system32\p2psvc.dll
20:17:00.0511 0x0da4 p2psvc - ok
20:17:00.0511 0x0da4 [ 764B1121867B2D9B31C491668AC72B2B, 32C04B6FCE1DDD09697B81473A23BDCED8BEEFBCD0D2D58DDC9A11A33C756967 ] Parport C:\WINDOWS\System32\drivers\parport.sys
20:17:00.0511 0x0da4 Parport - ok
20:17:00.0527 0x0da4 [ EF0C1749C9A8CEE9A457473D433CC00F, A5FDAB5AD47471640D697C6CFBA6C67730878ABBA47D394EAA47C9733EDCE1F3 ] partmgr C:\WINDOWS\system32\drivers\partmgr.sys
20:17:00.0542 0x0da4 partmgr - ok
20:17:00.0558 0x0da4 [ 9A5309EF92F39346CFD5A4C2C3D1BFAD, 5908E0C9562F9CB24784491BD9AE7983A33A6BDF81AFA0A08045518A0C9BB2B1 ] PcaSvc C:\WINDOWS\System32\pcasvc.dll
20:17:00.0574 0x0da4 PcaSvc - ok
20:17:00.0620 0x0da4 [ 275AFE3FA35E8D78BE97695DF49817C6, 447CEBB16285AE073B4251D2DA71399306EF2DCB7F56286ABE2F0BD6C83EB489 ] pci C:\WINDOWS\system32\drivers\pci.sys
20:17:00.0620 0x0da4 pci - ok
20:17:00.0636 0x0da4 [ 346E38FCC6859A727DD28AFAD1F0AFF4, FF3DA26F79B3BC3A5B8A8AA0B9139B9EF70297F4EA1203B1E68FB5A212C3AA58 ] pciide C:\WINDOWS\system32\drivers\pciide.sys
20:17:00.0636 0x0da4 pciide - ok
20:17:00.0652 0x0da4 [ 4D3BDCC1C7B40C9D7B6AD990E6DEC397, 27A7AF2127B699F4579CB77936F38DC102211E26E5E2947DB808756FE06FC98E ] pcmcia C:\WINDOWS\system32\drivers\pcmcia.sys
20:17:00.0652 0x0da4 pcmcia - ok
20:17:00.0683 0x0da4 [ AF7CE12C4F3DC8CB2B07685C916BBCFE, 1AF47113778D411BF3CF82ACF428676908121B1F3252133A5F98E188ED1E9C6C ] pcouffin C:\WINDOWS\System32\Drivers\pcouffin.sys
20:17:00.0699 0x0da4 pcouffin - ok
20:17:00.0699 0x0da4 [ BF28771D1436C88BE1D297D3098B0F7D, 5F7630916A76A8CF31289E9C577F522B999C74C39E541CD40E62BD53004BEF74 ] pcw C:\WINDOWS\system32\drivers\pcw.sys
20:17:00.0699 0x0da4 pcw - ok
20:17:00.0714 0x0da4 [ B9D968D8E2B0F9C6301CEB39CFC9B9E4, 83F32831B0727F18B56DC3CAF37E45A3523D2BBCD54D1421F0DE5A0179D8A404 ] pdc C:\WINDOWS\system32\drivers\pdc.sys
20:17:00.0730 0x0da4 pdc - ok
20:17:00.0777 0x0da4 [ 0ECEE590F2E2EF969FB74A6FC583A1E6, 1C611D9225C863CF32125F684B324C58BDE1942F4F283F5674133200AC505D44 ] PEAUTH C:\WINDOWS\system32\drivers\peauth.sys
20:17:00.0777 0x0da4 PEAUTH - ok
20:17:00.0855 0x0da4 [ 8E3C640FFF5A963F570233AE99C0FFF3, 3DE978B005BF2E88BA858CE37D9E27BD3584642B8412E22C300A1E739743838A ] PerfHost C:\WINDOWS\SysWow64\perfhost.exe
20:17:00.0870 0x0da4 PerfHost - ok
20:17:00.0917 0x0da4 [ 928061178CD9856CA6B67FFFCE6BA766, 71DE3C7CA7F83EAAA550CD8A68FB67DE042B0AE51BFACB1ECB8852D502E11F50 ] pla C:\WINDOWS\system32\pla.dll
20:17:00.0964 0x0da4 pla - ok
20:17:00.0980 0x0da4 [ BC6849C62DB407573C6AD8CB1A4D2628, 5BDE0D60F85E4C27CEAD1B301155B54D841FB773BD5BB8AC5DDAEE31F8E94627 ] PlugPlay C:\WINDOWS\system32\umpnpmgr.dll
20:17:00.0995 0x0da4 PlugPlay - ok
20:17:01.0011 0x0da4 [ 045EB4F260606A03BE340D09DEAF3BA4, 6F34B8D414F7F69F4388F2F8A86E0F3AD179E423126990AF3E1EC4DCCB8E7693 ] PNRPAutoReg C:\WINDOWS\system32\pnrpauto.dll
20:17:01.0011 0x0da4 PNRPAutoReg - ok
20:17:01.0042 0x0da4 [ E287F157F7A0011D93179C64EF8ADCF2, C16FB92C7B18D634BB1344238D35B3111494C243FBD5853F05376F5051480D83 ] PNRPsvc C:\WINDOWS\system32\pnrpsvc.dll
20:17:01.0042 0x0da4 PNRPsvc - ok
20:17:01.0089 0x0da4 [ C16097D77A232A288D65F299E2E01105, 5CE4B44B06FD26569C0F92FF1D3991D0128D8444AE7BC9EBEF5A33811D721BE8 ] PolicyAgent C:\WINDOWS\System32\ipsecsvc.dll
20:17:01.0105 0x0da4 PolicyAgent - ok
20:17:01.0136 0x0da4 [ 00E08B30E7F7C13ECE2CDF4F46A77311, 1807C0A64C1794E572C86730816C01DCF4D8F773ADE9CAEA3AC0658F7BD71A4E ] Power C:\WINDOWS\system32\umpo.dll
20:17:01.0152 0x0da4 Power - ok
20:17:01.0261 0x0da4 [ B7DB57A000D46D4DE75BC0C563E58072, 8183EB09DC4D44DFF027CA0AAA8C09921A14F088C1BC427B6ACA42340AAF69E6 ] PrintNotify C:\Windows\system32\spool\drivers\x64\3\PrintConfig.dll
20:17:01.0339 0x0da4 PrintNotify - ok
20:17:01.0370 0x0da4 [ ECD373F9571C745894367CC2635EA44F, E08B2A1017DAE1BF10B986DAFAD14BDE20D79703E0EF3A8C700A3753908C1392 ] Processor C:\WINDOWS\System32\drivers\processr.sys
20:17:01.0370 0x0da4 Processor - ok
20:17:01.0402 0x0da4 [ B2A890D96C05E33FDD2BF3F3D4D0DF92, 3A29E17424429A5654D906E420D938148F09F57457356EFA72DA003B73F2D81E ] ProfSvc C:\WINDOWS\system32\profsvc.dll
20:17:01.0402 0x0da4 ProfSvc - ok
20:17:01.0449 0x0da4 [ 8528BB05E4D4E25945F78B00B2555FB7, FF8E0D4580F93CD348080967F52FE6C2C68B56DAEACAE2EAEF04E19412A953AE ] Psched C:\WINDOWS\system32\DRIVERS\pacer.sys
20:17:01.0449 0x0da4 Psched - ok
20:17:01.0480 0x0da4 [ AF90BB44C99D6820BE52C9BBAA523283, 9772D9CC1666959EC8EE4ED740A5179473CE4F38762109F1123DD68010D20EA1 ] QWAVE C:\WINDOWS\system32\qwave.dll
20:17:01.0495 0x0da4 QWAVE - ok
20:17:01.0495 0x0da4 [ 3FB466684609A4329858CF2EBD62E0FD, CFC8FBAB1436948F9D34CE6A2D6DE2F86F3E93E50B86851CED979C8CCE609798 ] QWAVEdrv C:\WINDOWS\system32\drivers\qwavedrv.sys
20:17:01.0511 0x0da4 QWAVEdrv - ok
20:17:01.0527 0x0da4 [ 2C56F0EE27E4EF70CA4B4983D3638905, AFFDD686886CE982424B644D9168D61C6F86A5244FF97BC644DF75B321E415E5 ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys
20:17:01.0527 0x0da4 RasAcd - ok
20:17:01.0542 0x0da4 [ 5F061AC45266841A2860C1858ED863B8, 9E0D52BAC8A50225C32D0397C35350601B996443E2481C808CC59D3B0763FEF0 ] RasAuto C:\WINDOWS\System32\rasauto.dll
20:17:01.0542 0x0da4 RasAuto - ok
20:17:01.0589 0x0da4 [ 5C7B86EE33505E36026AFAAB62DA6364, 903BB1A355AC746BF09C2A7C87B068168648DB79DEF39AB1DC710B6A7A5F6556 ] RasMan C:\WINDOWS\System32\rasmans.dll
20:17:01.0605 0x0da4 RasMan - ok
20:17:01.0620 0x0da4 [ 5247F308C4103CDC4FE12AE1D235800A, E567CD33CA1897D53795E071B7AFBAF98B2C8F725F8BED0BA90F5EF611520E48 ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys
20:17:01.0620 0x0da4 RasPppoe - ok
20:17:01.0652 0x0da4 [ A1A5E79C0D1352AFDC08328A623DA051, 01546DDE6F1FF159A7EB7F2BF104910445D3D863F1F37DEA695579BA60D84280 ] rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys
20:17:01.0652 0x0da4 rdbss - ok
20:17:01.0683 0x0da4 [ 6B21EBF892CD8CACB71669B35AB5DE32, 0AD8E14FEF16FB2559F5FC8AFBC9D49E4E24F43CF65F480DBF9FAB593269B419 ] rdpbus C:\WINDOWS\System32\drivers\rdpbus.sys
20:17:01.0683 0x0da4 rdpbus - ok
20:17:01.0699 0x0da4 [ 680C1DAE268B6FB67FA21B389A8B79EF, 856911F77BDD8830C3D683EBE8AF399FB3A54C7D8D0B34EA37D903377F0A39BD ] RDPDR C:\WINDOWS\system32\drivers\rdpdr.sys
20:17:01.0699 0x0da4 RDPDR - ok
20:17:01.0714 0x0da4 [ 858776908AF838E3790F3261B799CDA6, 5BE4658540382D1B2F46E503CE175D74E3870FE492B8B8F37C3CFB34FF8E2DA8 ] RdpVideoMiniport C:\WINDOWS\system32\drivers\rdpvideominiport.sys
20:17:01.0714 0x0da4 RdpVideoMiniport - ok
20:17:01.0761 0x0da4 [ A26AEC49F318FEE141DDDB2C5F99B3E6, 246AD79FF27E79DEDCB0AAA7C22A8EA6349DEDAC863413A1E378E68FD94C9C4F ] rdyboost C:\WINDOWS\system32\drivers\rdyboost.sys
20:17:01.0761 0x0da4 rdyboost - ok
20:17:01.0839 0x0da4 [ E515A287C8FAE901EB8FB42F168E14F2, 9AE8D608587713FD18BB728BADD402C86FFF06A67359B22ED9431705522BC310 ] ReFS C:\WINDOWS\system32\drivers\ReFS.sys
20:17:01.0855 0x0da4 ReFS - ok
20:17:01.0917 0x0da4 [ BFFB40FBE6D2C3469F8D06EE5E4934AB, 5B6763F973A740DCD53CEA75156926457BED8B075965033C484877DDA8B97F39 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll
20:17:01.0933 0x0da4 RemoteAccess - ok
20:17:01.0949 0x0da4 [ 4DCCABE03D06955ED61BABBD8EF9F30F, 531CD60315AAF283B73E0F6CF77D4DE093B809E73C44D2AC43B7247500B3485E ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll
20:17:01.0949 0x0da4 RemoteRegistry - ok
20:17:01.0980 0x0da4 [ D894CBD7DA753C881EE8D5E33B583225, DA4472A85F10A3DF8CE969F731E67FE7C75EE6095908AB8AC2C44851DC5A3F8B ] RpcEptMapper C:\WINDOWS\System32\RpcEpMap.dll
20:17:01.0980 0x0da4 RpcEptMapper - ok
20:17:02.0011 0x0da4 [ 5CAE8F47B31D5CFC322B5B898C19E0FE, FDB5F0B6EA36403E031D9147AB0519011FAAD3AC8190DE5B1F17FB5472D79D47 ] RpcLocator C:\WINDOWS\system32\locator.exe
20:17:02.0011 0x0da4 RpcLocator - ok
20:17:02.0074 0x0da4 [ 81979817943D830BF24571B7C1B28A1A, 9584D8F1FB3E6CF17BD465670B208C723A8E8B06775A3DA44F75D7710404EEA6 ] RpcSs C:\WINDOWS\system32\rpcss.dll
20:17:02.0089 0x0da4 RpcSs - ok
20:17:02.0105 0x0da4 [ 2D05A5508F4685412F2B89E8C2189ABC, 82F12B4E0E73411A121EFD35FBD3B44CBBC0AE96ACFBB45D8C3C3777E2EA320D ] rspndr C:\WINDOWS\system32\DRIVERS\rspndr.sys
20:17:02.0105 0x0da4 rspndr - ok
20:17:02.0152 0x0da4 [ 19764658C1468C2C0CEF133D28414A6B, 87AD4056F6C67052433A366B200B75613148B69B9B9D502AD926A7F7F037B8DE ] RTL8168 C:\WINDOWS\system32\DRIVERS\Rt630x64.sys
20:17:02.0152 0x0da4 RTL8168 - ok
20:17:02.0167 0x0da4 [ 1A063730F221B2746FF00457AE17E4F0, 39A3C258CBFE3BC566C63528C9020A3BC9409736AE5289C08A7BA471D8409263 ] s3cap C:\WINDOWS\System32\drivers\vms3cap.sys
20:17:02.0183 0x0da4 s3cap - ok
20:17:02.0214 0x0da4 [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] SamSs C:\WINDOWS\system32\lsass.exe
20:17:02.0214 0x0da4 SamSs - ok
20:17:02.0245 0x0da4 [ C624A1B32211C3166EDB3F4AB02A30B7, 6B2A4607DB52D74242787ED9DF9067058983D310431D8612D2B0236E6201E681 ] sbp2port C:\WINDOWS\system32\drivers\sbp2port.sys
20:17:02.0245 0x0da4 sbp2port - ok
20:17:02.0261 0x0da4 [ 47C497FA4DDEA908633CAA60CEBE6805, 4DF5742D4C99D3F7B6A5671AEDB1E5E47D3399D36B28BA19C105FA604D8D5A1C ] SCardSvr C:\WINDOWS\System32\SCardSvr.dll
20:17:02.0261 0x0da4 SCardSvr - ok
20:17:02.0277 0x0da4 [ E76C4E98302AE39CC6FA5D20FC8B5438, B6B6B59CF427515087689285797F4A5763103440EBE5D87A61FA74F80F895BD0 ] ScDeviceEnum C:\WINDOWS\System32\ScDeviceEnum.dll
20:17:02.0277 0x0da4 ScDeviceEnum - ok
20:17:02.0292 0x0da4 [ ABD0237B15DBD2B4695F4B7D734A58F7, D6831921F0CD3E03CBF1CA3ED5824EE0C75127842D12D4E897E74EC72B0792EB ] scfilter C:\WINDOWS\system32\DRIVERS\scfilter.sys
20:17:02.0292 0x0da4 scfilter - ok
20:17:02.0339 0x0da4 [ A95838FFFAEAA7500263D491575F7E0C, FEB79ECAE6D9AB0C29D9AFE12F60502A8357B3A382C0FACF4C6DA4852B6ECFA4 ] Schedule C:\WINDOWS\system32\schedsvc.dll
20:17:02.0370 0x0da4 Schedule - ok
20:17:02.0402 0x0da4 [ AB285CE3431FF3D2ACE669245874C1C7, 6AF4C3E86EFA51F7FB6F8492CB2CCB807C7775EAE0508B87F07134FDAC679BD7 ] SCPolicySvc C:\WINDOWS\System32\certprop.dll
20:17:02.0417 0x0da4 SCPolicySvc - ok
20:17:02.0433 0x0da4 [ FDEC5799BA499D18AFA3A540538866E7, 551EE0945FE4EC213FFF623E524500B57531EFEA2D76FA7ED1D2D605E7E2168F ] sdbus C:\WINDOWS\System32\drivers\sdbus.sys
20:17:02.0433 0x0da4 sdbus - ok
20:17:02.0449 0x0da4 [ 0B1E929D11A8E358106955603FAC65E8, A5EC91BFC0873EC6AB1D0DB4E91654BD35339BD680E7E82DA2DC64996B4AE515 ] sdstor C:\WINDOWS\System32\drivers\sdstor.sys
20:17:02.0449 0x0da4 sdstor - ok
20:17:02.0464 0x0da4 [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv C:\WINDOWS\system32\drivers\secdrv.sys
20:17:02.0464 0x0da4 secdrv - ok
20:17:02.0464 0x0da4 [ C49009F897BA4F2F4F31043663AA1485, 48C8BE1E3A4F150662AD012AF4E0357ABA792AD1147AB90EFF6CB2630E2501B6 ] seclogon C:\WINDOWS\system32\seclogon.dll
20:17:02.0464 0x0da4 seclogon - ok
20:17:02.0511 0x0da4 [ A88882E64BDC1D8E8D6E727B71CCCC53, 12D2235F54D0CEEED8AA268C17CDE44020269F4FEFC70CE957DBBF99AF7F553D ] SENS C:\WINDOWS\System32\sens.dll
20:17:02.0527 0x0da4 SENS - ok
20:17:02.0542 0x0da4 [ E66A7C8CE7ED22DED6DF1CA479FB4790, ADEB076F131E7A8C3AD96022B09BB33EB9AB26C9C831503B8C6960AA763B8975 ] SensrSvc C:\WINDOWS\system32\sensrsvc.dll
20:17:02.0542 0x0da4 SensrSvc - ok
20:17:02.0574 0x0da4 [ DB2FF24CE0BDD15FE75870AFE312BA89, 7DB0D978C92CD0A0A81F7AB46FE323B4929CEA01585B0F330921E6DFA7DE1B85 ] SerCx C:\WINDOWS\system32\drivers\SerCx.sys
20:17:02.0574 0x0da4 SerCx - ok
20:17:02.0605 0x0da4 [ 0044B31F93946D5D41982314381FE431, 95B8A94BA9EF770F29ACD5B23D447EC2B6CF1CB3D0030343BA1550AC31F6E2A5 ] SerCx2 C:\WINDOWS\system32\drivers\SerCx2.sys
20:17:02.0605 0x0da4 SerCx2 - ok
20:17:02.0620 0x0da4 [ 3CD600C089C1251BEEB4CD4CD5164F9E, D9F81951B4454B24E821E33ACA53A851A61F3135E8EC6FBE6761A1A3E1CDCBE2 ] Serenum C:\WINDOWS\System32\drivers\serenum.sys
20:17:02.0620 0x0da4 Serenum - ok
20:17:02.0636 0x0da4 [ D864381BC9C725FAB01D94C060660166, 132FED95222BBE3B0B25B3F1F0EFC5903D04564BD047BA4D2042AD51E3FDA724 ] Serial C:\WINDOWS\System32\drivers\serial.sys
20:17:02.0636 0x0da4 Serial - ok
20:17:02.0636 0x0da4 [ 0BD2B65DCE756FDE95A2E5CCCBF7705D, F13FAFEC8FCF3E796196562717C433CE359A74A3E5876AB070647C717AF74028 ] sermouse C:\WINDOWS\System32\drivers\sermouse.sys
20:17:02.0636 0x0da4 sermouse - ok
20:17:02.0667 0x0da4 [ D5C3776CBD8BC307DCCA3FD4CE667A37, 98E4253B770C25914C91A6148E2EA15ED0EF37ADCB042A47252DBA135972BF74 ] SessionEnv C:\WINDOWS\system32\sessenv.dll
20:17:02.0683 0x0da4 SessionEnv - ok
20:17:02.0699 0x0da4 [ 472B7A5AC181C050888DB454663DD764, C950A8615D57BFD455E18880398350642B2E1D6B951EC9754FD8D429F3418835 ] sfloppy C:\WINDOWS\System32\drivers\sfloppy.sys
20:17:02.0699 0x0da4 sfloppy - ok
20:17:02.0745 0x0da4 [ F4414F57DF2CECB8FC969AA43A6B0D50, AD09A6E1294721507DD6BE82B91F2EEB0FF0151B9BC14A75840CD657DBFDECEC ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll
20:17:02.0745 0x0da4 SharedAccess - ok
20:17:02.0777 0x0da4 [ 0D190D8B4B20446BE6299AC734DFADF1, 6551095971F99820BBFC5FED8FAB9591A3F8ABFA0F027887F3B71B79325FF6D9 ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
20:17:02.0808 0x0da4 ShellHWDetection - ok
20:17:02.0824 0x0da4 [ 2F518D13DD6F3053837FE606F1A2EA1F, 64109296CE95BD233525688A350D575CF97B9464659AA07CF78B307B6ADBC835 ] SiSRaid2 C:\WINDOWS\system32\drivers\SiSRaid2.sys
20:17:02.0824 0x0da4 SiSRaid2 - ok
20:17:02.0839 0x0da4 [ 1AC9A200A9C49C4508F04AAFFCA34A3F, 972BCB2A39169155F74111FAC74ACCD8F50E34EADCF087833B0980827627BBF4 ] SiSRaid4 C:\WINDOWS\system32\drivers\sisraid4.sys
20:17:02.0839 0x0da4 SiSRaid4 - ok
20:17:02.0870 0x0da4 [ 587ACA15210D1B01FBF272E07A08F91A, 1F3C13C218C5EA329C6E33E4AE7CFE88DAD59DA40F59FDE09D733AFD2E489000 ] smphost C:\WINDOWS\System32\smphost.dll
20:17:02.0870 0x0da4 smphost - ok
20:17:02.0902 0x0da4 [ 49EEB92DE930B8566EF615D600781DB4, 0B7C929D24FAFC34F95BB4AA77DCBA29DDD8F1977EB42713B64228677D1FBFD3 ] SNMPTRAP C:\WINDOWS\System32\snmptrap.exe
20:17:02.0917 0x0da4 SNMPTRAP - ok
20:17:02.0933 0x0da4 [ 33977549C2CED09936E05BEE7659EAFF, EB95C72ED0EAC59A50E6882B2501049191A796542C42414FAF0028907C669B21 ] spaceport C:\WINDOWS\system32\drivers\spaceport.sys
20:17:02.0949 0x0da4 spaceport - ok
20:17:02.0964 0x0da4 [ F337BE11071818FC3F5DC2940B6BDE34, D5CFF00E5DF37045F71AEE101AC9B270EBB29F372F404757B58600E9966C7E4D ] SpbCx C:\WINDOWS\system32\drivers\SpbCx.sys
20:17:02.0964 0x0da4 SpbCx - ok
20:17:02.0995 0x0da4 [ FE0CB40F36D3FCDD3A1B312EF72C38D5, 42EA50869752164764DFE8CE7E1C247BE8342A0C15F39158DC808E8A692C460F ] Spooler C:\WINDOWS\System32\spoolsv.exe
20:17:03.0011 0x0da4 Spooler - ok
20:17:03.0199 0x0da4 [ C993A0B97BECD3AAF5158E3869878465, 8B86F37DEFCBE55DE507D830EC4980EBB39B3CCA30C2B3E76B588AAB282A50FC ] sppsvc C:\WINDOWS\system32\sppsvc.exe
20:17:03.0339 0x0da4 sppsvc - ok
20:17:03.0370 0x0da4 [ 2B78788A1485F9B99A578A299DF42C02, A87183A9B13585C9E850437A45237105D39D7F3212ADB079D6AB430B67A59643 ] srv C:\WINDOWS\system32\DRIVERS\srv.sys
20:17:03.0386 0x0da4 srv - ok
20:17:03.0417 0x0da4 [ FD163F487CBA9C98AFFEB546C80F49A2, 18DAAD173C0517F7BBF5D0C914302D98931E3BA6DAA36DC91D8DB0743EC40563 ] srv2 C:\WINDOWS\system32\DRIVERS\srv2.sys
20:17:03.0449 0x0da4 srv2 - ok
20:17:03.0464 0x0da4 [ 716059F37BCCB1ABEDE99EBE82E8E362, 05F27B0FABBBC0E324F06D20ABEF51EDA3316C9F7F85C1AD24639CD6DE1BC8AC ] srvnet C:\WINDOWS\system32\DRIVERS\srvnet.sys
20:17:03.0464 0x0da4 srvnet - ok
20:17:03.0511 0x0da4 [ BB9ED3EDD8E85008215A7250D325A72E, D3404E31B7706B25CDEA7CB4260C343B5F090E8CCB9A5FA203B0F94A9112F1B3 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll
20:17:03.0527 0x0da4 SSDPSRV - ok
20:17:03.0527 0x0da4 [ 3911418AFDE10EA6823B7799E4815524, A73517C4C1271E666B2B3A747756070098E923742B41572AA16573170440AA07 ] SstpSvc C:\WINDOWS\system32\sstpsvc.dll
20:17:03.0542 0x0da4 SstpSvc - ok
20:17:03.0652 0x0da4 [ 718D79F2E7EC3AFFD3661DA81F93BBEA, BA2A4E58E5EE06392EE6F4C2E738DC807EC5A8B9F6DD4B7935FE27CBC648E390 ] Stereo Service C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
20:17:03.0667 0x0da4 Stereo Service - ok
20:17:03.0683 0x0da4 [ 366DEA74BBA65B362BCCFC6FC2ADFD8B, 4D28122AB9D8DAB724021E6513B4474BD34FCEDF47769B1D27AC7551FCA002F8 ] stexstor C:\WINDOWS\system32\drivers\stexstor.sys
20:17:03.0683 0x0da4 stexstor - ok
20:17:03.0745 0x0da4 [ D638904FE86A5FE542A1BA13A9D68E5C, 89A956F932316BC50DD99B54BAF4E2809DCAA084DBB04CB84D11E5470BEAF251 ] stisvc C:\WINDOWS\System32\wiaservc.dll
20:17:03.0761 0x0da4 stisvc - ok
20:17:03.0777 0x0da4 [ 0ED2E318ABB68C1A35A8B8038BDB4C90, 5C3ABC245F4BCFE64E646D9C0E2F5E211244956C84D03084C71FF6A7E0CDED30 ] storahci C:\WINDOWS\system32\drivers\storahci.sys
20:17:03.0777 0x0da4 storahci - ok
20:17:03.0792 0x0da4 [ 7A08CEE1535F5A448215634C5EA74E50, 41529CDC08A3956F8FE9D5759B147E2E56E3305149EA415EB200249F7CD32094 ] storflt C:\WINDOWS\system32\DRIVERS\vmstorfl.sys
20:17:03.0808 0x0da4 storflt - ok
20:17:03.0824 0x0da4 [ 6B06E2D11E604BE2B1A406C4CB3B90DE, 2DDEA1568A85AD64FCE5D10D348304FCD9BE6E96C2313353EF70A2933306D188 ] stornvme C:\WINDOWS\system32\drivers\stornvme.sys
20:17:03.0824 0x0da4 stornvme - ok
20:17:03.0870 0x0da4 [ 3118058E3D07021A55324A943C6D722B, 0B255DF1977DADD2B9766EEEA814B464F0ABFA34D6439F3C453083850C121F16 ] StorSvc C:\WINDOWS\system32\storsvc.dll
20:17:03.0870 0x0da4 StorSvc - ok
20:17:03.0886 0x0da4 [ 548759755BC73DAD663250239D7E0B9F, D31A05A8CE800B539420B6E545F1F4BF6E4B02EAF8366DE89CAF13A83C6CA48D ] storvsc C:\WINDOWS\system32\drivers\storvsc.sys
20:17:03.0886 0x0da4 storvsc - ok
20:17:03.0886 0x0da4 [ D8E1AE075AB3E8AD56F69C44AA978596, CAFF5116DE7F0EEFFEBE38724BCEE7D11B44153AD35EE43E314C56D5E210758A ] svsvc C:\WINDOWS\system32\svsvc.dll
20:17:03.0886 0x0da4 svsvc - ok
20:17:03.0917 0x0da4 [ 84E0F5D41C138C5CC975137A2A98F6D3, 1E36CED05E4F4365C2AB020CAF920E3959995D7F89F3FABD7B2FB05985F85F38 ] swenum C:\WINDOWS\System32\drivers\swenum.sys
20:17:03.0917 0x0da4 swenum - ok
20:17:03.0949 0x0da4 [ 850EBB87584484DC16F917E7B6F4A304, C253D1DFFCDFB018432063602FB01DBCBDDD6E03458E5C366AABD4670F114B0C ] swprv C:\WINDOWS\System32\swprv.dll
20:17:03.0964 0x0da4 swprv - ok
20:17:04.0011 0x0da4 [ 3DA26652B12E9AB43FD04976AC6DFD33, DEFE220D86197949E97342FE3487CD6A07DD2FFAF6D17A7C65419C2C1B9D1AB5 ] SysMain C:\WINDOWS\system32\sysmain.dll
20:17:04.0058 0x0da4 SysMain - ok
20:17:04.0089 0x0da4 [ D65B1C952AEB864C2BAC7A770B17ECCE, 3EFAAFFF73390D9CB660E0F42B305512396CF66ED06E4A20ED67E8722FB4355B ] SystemEventsBroker C:\WINDOWS\System32\SystemEventsBrokerServer.dll
20:17:04.0105 0x0da4 SystemEventsBroker - ok
20:17:04.0136 0x0da4 [ BA6DD39266A5E15515C8C14DA2DA3E5C, 5BC917BA4E7281A67CC6CEF2F4D1972DF04DECBEFB6DED0B08FFBD06E15D4B4F ] TabletInputService C:\WINDOWS\System32\TabSvc.dll
20:17:04.0136 0x0da4 TabletInputService - ok
20:17:04.0167 0x0da4 [ 3C23BE0DAD748BAE77E87F18F34EBA0E, B9F97E2167C7FFBEC1967B415BF1620876CC6D5EC1517CCB8EE6D073656C34A4 ] tap0901 C:\WINDOWS\system32\DRIVERS\tap0901.sys
20:17:04.0167 0x0da4 tap0901 - ok
20:17:04.0183 0x0da4 [ B517410F157693043DACA21B19B258A6, 2224EECEB575CEA811036C43BB5B0A408DE5F59BC97235AB948968E4C3E438F2 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll
20:17:04.0199 0x0da4 TapiSrv - ok
20:17:04.0308 0x0da4 [ 4B666AE119D2ADBAC816BEA7DB4D6881, FCF90241548B893B01CE016D1F0B3D1564B6A4B39ADFBAE077A52F5D8240C8C4 ] Tcpip C:\WINDOWS\system32\drivers\tcpip.sys
20:17:04.0355 0x0da4 Tcpip - ok
20:17:04.0417 0x0da4 [ 4B666AE119D2ADBAC816BEA7DB4D6881, FCF90241548B893B01CE016D1F0B3D1564B6A4B39ADFBAE077A52F5D8240C8C4 ] TCPIP6 C:\WINDOWS\system32\DRIVERS\tcpip.sys
20:17:04.0464 0x0da4 TCPIP6 - ok
20:17:04.0496 0x0da4 [ 41CF802064F72E55F50CA0A221FD36D4, 70ABCDF9E96611E8C83042C581575E26649FE479475E8E118CD3FF6CB1C84C3F ] tcpipreg C:\WINDOWS\system32\drivers\tcpipreg.sys
20:17:04.0496 0x0da4 tcpipreg - ok
20:17:04.0511 0x0da4 [ FFF28F9F6823EB1756C60F1649560BBF, 208DFF8BF0329D0D4761C7E31527AEED7FF5F3C36C5005953D01477F35408D5C ] tdx C:\WINDOWS\system32\DRIVERS\tdx.sys
20:17:04.0511 0x0da4 tdx - ok
20:17:04.0542 0x0da4 [ 232D185D2337F141311D0CF1983E1431, 02EB56D3F26174AF1741C1A444CE30DE84D5BAF583C1A52C7A953BCC52445547 ] terminpt C:\WINDOWS\System32\drivers\terminpt.sys
20:17:04.0542 0x0da4 terminpt - ok
20:17:04.0605 0x0da4 [ 3D748E5558FD9A9F03182CB2330698DC, 70B2069AB7912EB49AB3ABD18D4B42CB94AC99CA6DE3F63F4888B8EAAC78AAA2 ] TermService C:\WINDOWS\System32\termsrv.dll
20:17:04.0636 0x0da4 TermService - ok
20:17:04.0652 0x0da4 [ 05FBE1F7C13E87AF7A414CDF288B1F62, 24079E1A6B2E33A1A8E76A77F73473B93DD6B379E44C982CE50D6CEED9747838 ] Themes C:\WINDOWS\system32\themeservice.dll
20:17:04.0667 0x0da4 Themes - ok
20:17:04.0699 0x0da4 [ FD788C2D96EA91469A3C1D13E80D7473, 7B14D4BFDE18CECC19FBFFAA5AFF5FD78BFB7FCDA6613990740A8A7DD9873D26 ] THREADORDER C:\WINDOWS\system32\mmcss.dll
20:17:04.0699 0x0da4 THREADORDER - ok
20:17:04.0714 0x0da4 [ 347A3E49CE18402305B8119A6EC7CFEB, 6768B20EE577880B0353FE84B980D4A18D323929A63FAE41F7A55123BBFC8DBA ] TimeBroker C:\WINDOWS\System32\TimeBrokerServer.dll
20:17:04.0714 0x0da4 TimeBroker - ok
20:17:04.0730 0x0da4 [ 82F909359600D3603FE852DB7F135626, 2EB2BB9D81AC9A2E432B2628E296B7B21F1C82EAE8009300EEF1B8596A9F418D ] TPM C:\WINDOWS\system32\drivers\tpm.sys
20:17:04.0730 0x0da4 TPM - ok
20:17:04.0761 0x0da4 [ C97E14BB6A196B0554D6EB67D8818175, C00588C94988F10507F84584DFA4C0A43B8648AD1AD35E9BAE14CDD21FCF7B90 ] TrkWks C:\WINDOWS\System32\trkwks.dll
20:17:04.0761 0x0da4 TrkWks - ok
20:17:04.0777 0x0da4 [ B66EE1D68197DFB9AA24F961E68ACDCC, EB7536089BAF2384437EDE964F7A20AE00C988B8CCB61A8F12CB2BBD84C4FB6E ] trufos C:\WINDOWS\system32\drivers\trufos.sys
20:17:04.0777 0x0da4 trufos - ok
20:17:04.0824 0x0da4 [ 887CC44830D3F367CAD17A0CA7CCA5C8, D4022A76433A11FD66D0F41A1EB4D6893BC5B22317E7E9E021739109EB493B44 ] TrustedInstaller C:\WINDOWS\servicing\TrustedInstaller.exe
20:17:04.0824 0x0da4 TrustedInstaller - ok
20:17:04.0855 0x0da4 [ BF8F54CA37E9C9D6582C31C5761F8C93, 337C566792F6FB9B7FD5D1D4384B767CFE4CF5DBB2E4688CCC36CBB018A0DD0F ] TsUsbFlt C:\WINDOWS\system32\drivers\tsusbflt.sys
20:17:04.0855 0x0da4 TsUsbFlt - ok
20:17:04.0870 0x0da4 [ E0088068DCE2EE82897027DDB8E05254, FA9C201D3C885DAD2ABE6A23343EDCC83CFB342EFF9E3005FA50B1D88B21D203 ] TsUsbGD C:\WINDOWS\System32\drivers\TsUsbGD.sys
20:17:04.0870 0x0da4 TsUsbGD - ok
20:17:04.0886 0x0da4 [ C8E0E78B5D284C2FF59BDFFDAF997242, BA1576C491A1246EF9866762426D110F4570F9DB42A68C174943C7D5020FE3E2 ] tunnel C:\WINDOWS\system32\DRIVERS\tunnel.sys
20:17:04.0886 0x0da4 tunnel - ok
20:17:04.0902 0x0da4 [ F6EEAD052943B5A3104C1405BB856C54, FE422813E6C1012E9F392EFF2AE4C6D3A4DBD9CB2BD5E6A5CAB57D4E89A29468 ] uagp35 C:\WINDOWS\system32\drivers\uagp35.sys
20:17:04.0902 0x0da4 uagp35 - ok
20:17:04.0917 0x0da4 [ FE6067B1FD4E63650C667B33D080565B, 2C330ED00E49BA55E25564230E0DFB8A35F2B5320EB18D4AF7CAACFA9A449044 ] UASPStor C:\WINDOWS\System32\drivers\uaspstor.sys
20:17:04.0917 0x0da4 UASPStor - ok
20:17:04.0949 0x0da4 [ B034A41891A36457B994307DFA772293, CA5E6500764A9777AE0E15B2AFB6F05982C90F01374E3F6DDC6DF3852282C66B ] UCX01000 C:\WINDOWS\System32\drivers\ucx01000.sys
20:17:04.0949 0x0da4 UCX01000 - ok
20:17:04.0964 0x0da4 [ 1EC649F112896FAE33250F0B97AC5D0B, 0C0A1C2C7615DEB298AD3073340FD1BF91FEBE611F133E3B48D994A6EAA8369F ] udfs C:\WINDOWS\system32\DRIVERS\udfs.sys
20:17:04.0980 0x0da4 udfs - ok
20:17:04.0995 0x0da4 [ 9578691F297E1B1F519970FE6D47CB21, 080C352AAF22A16A4F3C4AB4DCEA5BFA656457C73F735CEBA30516FDACCF6301 ] UEFI C:\WINDOWS\System32\drivers\UEFI.sys
20:17:04.0995 0x0da4 UEFI - ok
20:17:05.0027 0x0da4 [ 320878AFECDBBD61BBE98624A6CAAC08, 15C090EA32A24D976B5FCB1373B1281DCC2295C075299C814345D694AEB47CB9 ] UI0Detect C:\WINDOWS\system32\UI0Detect.exe
20:17:05.0027 0x0da4 UI0Detect - ok
20:17:05.0042 0x0da4 [ 5EAB5117DDB24FC4D39E6FFFCF1837B9, 2BC709240867F161E94BE6625A04F478EAAA3EEE7BC7C37ED0DFA9EEA5928E98 ] uliagpkx C:\WINDOWS\system32\drivers\uliagpkx.sys
20:17:05.0058 0x0da4 uliagpkx - ok
20:17:05.0074 0x0da4 [ DA34C39A18E60E7C3FA0630566408034, 2F162504214053894C72760D9933D01DBF3578609FE5E2376C3272818599FE32 ] umbus C:\WINDOWS\System32\drivers\umbus.sys
20:17:05.0074 0x0da4 umbus - ok
20:17:05.0074 0x0da4 [ AE8294875E5446E359B1E8035D40C05E, AE0357BAB47C07C3576BC76951CD258C009BC5A1B93259D2122A841BD9CDA8FA ] UmPass C:\WINDOWS\System32\drivers\umpass.sys
20:17:05.0074 0x0da4 UmPass - ok
20:17:05.0120 0x0da4 [ E3DDF7D43E05784FAA5E042605EEE528, 8E20E880FAB09AF4FF5C438BF9EAE9970D46C05167870110869B744E498FD761 ] UmRdpService C:\WINDOWS\System32\umrdp.dll
20:17:05.0120 0x0da4 UmRdpService - ok
20:17:05.0152 0x0da4 [ 4A2FFDAC45F317E17DF642C7160EB633, F1AB762912FAA5F469F322407DA37C91556086C42D1643AD27516C12A84F74D0 ] upnphost C:\WINDOWS\System32\upnphost.dll
20:17:05.0167 0x0da4 upnphost - ok
20:17:05.0214 0x0da4 [ 433ECDE01A52691FA7ACA51C10C09B70, B896296A3F8EF2AF3AC5F0091B9848156608586F1E10A95D70700BAB51E8062A ] usbccgp C:\WINDOWS\System32\drivers\usbccgp.sys
20:17:05.0214 0x0da4 usbccgp - ok
20:17:05.0230 0x0da4 [ B3D6457D841A0CAEF4C52D88621715F2, CBDD76A8A28379B107B1FB530757B477B8AB74CD01F9F3CEDC7B1BA0C6E5A990 ] usbcir C:\WINDOWS\System32\drivers\usbcir.sys
20:17:05.0230 0x0da4 usbcir - ok
20:17:05.0245 0x0da4 [ 5477D6E27C7D266EF8C152B9A25ADE5E, FEE81677D284A78A0C0FB60F887A952CFC759AE78B01206D73F59FE33612C519 ] usbehci C:\WINDOWS\System32\drivers\usbehci.sys
20:17:05.0245 0x0da4 usbehci - ok
20:17:05.0277 0x0da4 [ DF56C2C04EFA328D7A66B69007130266, 719316EB25A8C7B82C7941D1C5B964CC4EDA4A997732F481526DE7356F6FC0D8 ] usbhub C:\WINDOWS\System32\drivers\usbhub.sys
20:17:05.0277 0x0da4 usbhub - ok
20:17:05.0324 0x0da4 [ CFC52C49BEFE4D70D87FFA900EAB9777, 09A2F5D8AB07C3AE3F2B092F4DD7AE5838736CDC263016F188B442B32EC928F8 ] USBHUB3 C:\WINDOWS\System32\drivers\UsbHub3.sys
20:17:05.0324 0x0da4 USBHUB3 - ok
20:17:05.0339 0x0da4 [ 3019097FB6C985EF24C058090FF3BDBD, 24AC518D34E338D94BF3D5B3F72E53F8A1369BAA7F32FEA3EDBCF928C4FF1D17 ] usbohci C:\WINDOWS\System32\drivers\usbohci.sys
20:17:05.0339 0x0da4 usbohci - ok
20:17:05.0355 0x0da4 [ 4D655E3B684BE9B0F7FFD8A2935C348C, 3A7FC1748C5AEA8CFE0E7C22ADC77E3DCA475455FC16D9C6A5C16EB5E949A516 ] usbprint C:\WINDOWS\System32\drivers\usbprint.sys
20:17:05.0355 0x0da4 usbprint - ok
20:17:05.0402 0x0da4 [ EA23453240137F6773174E0D93F61A69, 579AD09FB428C2BB8B4055128620A7AADD1B606C1EA44B87A01D69A84232A5D9 ] USBSTOR C:\WINDOWS\System32\drivers\USBSTOR.SYS
20:17:05.0402 0x0da4 USBSTOR - ok
20:17:05.0417 0x0da4 [ BA4FA655E0FC577DB7436FC963932CE4, 3336FDECD4AEC6B316D4C0803E22A12719EBEDD1A9427C0DF5D3B263BE600EE6 ] usbuhci C:\WINDOWS\System32\drivers\usbuhci.sys
20:17:05.0417 0x0da4 usbuhci - ok
20:17:05.0433 0x0da4 [ 18F744E8CCEB2670040EBAF7AD77B8C6, C5E2DF4EA0D946B4DA67DE29FA9D0F079DED35EC59B98E532C4C2D5F8E86DA0A ] usbvideo C:\WINDOWS\System32\Drivers\usbvideo.sys
20:17:05.0433 0x0da4 usbvideo - ok
20:17:05.0480 0x0da4 [ 48430B0313FC1CFE3D2400553F1A93CD, 92994DE6B131E904AFF2C9C4FBB4E6B0D58525A1539763327373DA18C9F08193 ] USBXHCI C:\WINDOWS\System32\drivers\USBXHCI.SYS
20:17:05.0480 0x0da4 USBXHCI - ok
20:17:05.0495 0x0da4 [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] VaultSvc C:\WINDOWS\system32\lsass.exe
20:17:05.0495 0x0da4 VaultSvc - ok
20:17:05.0527 0x0da4 [ 3C8E2C591345F38149C69FE8E5DF8C90, 9F4BB9BDA09CB2E99A6A888B288F322AE5C460B5D124CD714C6F00FF5029144B ] VClone C:\WINDOWS\System32\drivers\VClone.sys
20:17:05.0527 0x0da4 VClone - ok
20:17:05.0527 0x0da4 [ FEB26E3B8345A7E8D62F945C4AE86562, 3AAFE87C402FC8E92542DFE60EC9540559863065F88D429A16D7B1BF829223FF ] vdrvroot C:\WINDOWS\system32\drivers\vdrvroot.sys
20:17:05.0542 0x0da4 vdrvroot - ok
20:17:05.0605 0x0da4 [ E3EF58D4123B5AA29C8E19825AF84A5E, FB1046722BC643E955DBC3B1459DBF2A6D575EBA2BCF7B20A0FA51E3993835E2 ] vds C:\WINDOWS\System32\vds.exe
20:17:05.0620 0x0da4 vds - ok
20:17:05.0636 0x0da4 [ A026EDEAA5EECAE0B08E2748B616D4BD, 2525A54DC7F49DDFBB999C22BF3FAB6D9E9F70C0806E58D81E90AC59F9F46089 ] VerifierExt C:\WINDOWS\system32\drivers\VerifierExt.sys
20:17:05.0652 0x0da4 VerifierExt - ok
20:17:05.0699 0x0da4 [ 52E483A3701A5A61A75A06993720347D, 689E812755E485DF6960D1E049740FBAFB812467D23B673DCAA40C03FEBB544F ] vhdmp C:\WINDOWS\System32\drivers\vhdmp.sys
20:17:05.0699 0x0da4 vhdmp - ok
20:17:05.0777 0x0da4 [ E066AA9C9866C2001372486A6841108C, 648E39962EDB3D77FBB5E2D5B603E16240AADE181A20E8778EE3D8847E4C0984 ] VIAHdAudAddService C:\WINDOWS\system32\drivers\viahduaa.sys
20:17:05.0824 0x0da4 VIAHdAudAddService - ok
20:17:05.0839 0x0da4 [ 06D38968028E9AB19DE9B618C7B6D199, 62022297A47F440D1C82CA0B0E57C0C8E9D5033D83DD3B40492B218DF65EBF68 ] viaide C:\WINDOWS\system32\drivers\viaide.sys
20:17:05.0839 0x0da4 viaide - ok
20:17:05.0855 0x0da4 [ 1236737C7993FB462610E1A0AA92C40B, 85385740AE7F885ACD605860AB2642DAC7456BB26C6615DAA9EE02AF54FEF77C ] VIAKaraokeService C:\Windows\system32\viakaraokesrv.exe
20:17:05.0855 0x0da4 VIAKaraokeService - ok
20:17:05.0870 0x0da4 [ C6305BDFC4F7CE51F72BB072C03D4ACE, 73E62869CA3104F48CC3B0C45E69CE9BF4F8D7D06E29C2F049B9347ABB50554D ] vmbus C:\WINDOWS\system32\drivers\vmbus.sys
20:17:05.0870 0x0da4 vmbus - ok
20:17:05.0886 0x0da4 [ DA40BEA0A863CE768C940CA9723BF81F, 567C0C3F422325635808B0CF76E05D3B6187F96845C33F85F92F98C9FE53A5B8 ] VMBusHID C:\WINDOWS\System32\drivers\VMBusHID.sys
20:17:05.0886 0x0da4 VMBusHID - ok
20:17:05.0933 0x0da4 [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicguestinterface C:\WINDOWS\System32\ICSvc.dll
20:17:05.0949 0x0da4 vmicguestinterface - ok
20:17:05.0964 0x0da4 [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicheartbeat C:\WINDOWS\System32\ICSvc.dll
20:17:05.0964 0x0da4 vmicheartbeat - ok
20:17:05.0980 0x0da4 [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmickvpexchange C:\WINDOWS\System32\ICSvc.dll
20:17:05.0995 0x0da4 vmickvpexchange - ok
20:17:06.0011 0x0da4 [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicrdv C:\WINDOWS\System32\ICSvc.dll
20:17:06.0027 0x0da4 vmicrdv - ok
20:17:06.0042 0x0da4 [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicshutdown C:\WINDOWS\System32\ICSvc.dll
20:17:06.0042 0x0da4 vmicshutdown - ok
20:17:06.0058 0x0da4 [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmictimesync C:\WINDOWS\System32\ICSvc.dll
20:17:06.0074 0x0da4 vmictimesync - ok
20:17:06.0089 0x0da4 [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicvss C:\WINDOWS\System32\ICSvc.dll
20:17:06.0105 0x0da4 vmicvss - ok
20:17:06.0120 0x0da4 [ 55D7D963DE85162F1C49721E502F9744, 5AD34D6DB707EF3E5242BD8CA67B21D6258EE7E7FC477D5227BD15500AE7F45F ] volmgr C:\WINDOWS\system32\drivers\volmgr.sys
20:17:06.0120 0x0da4 volmgr - ok
20:17:06.0136 0x0da4 [ CCB9E901F7254BF96D28EB1B0E5329B7, F0E3CA4EFA544CDAEF4092284CF3EC7DF07F806A770285E281816457AD8813F5 ] volmgrx C:\WINDOWS\system32\drivers\volmgrx.sys
20:17:06.0136 0x0da4 volmgrx - ok
20:17:06.0183 0x0da4 [ 4BB9BC49DEE1A319EC58274A7BBED663, 624491089623A5B68C01A6A000E60D450E8E467619ACEBB90C6FDED0CF670F95 ] volsnap C:\WINDOWS\system32\drivers\volsnap.sys
20:17:06.0183 0x0da4 volsnap - ok
20:17:06.0199 0x0da4 [ 01355C98B5C3ED1EC446743CDA848FCE, B9FCF558C20E05DD0F53FFB70BBEF873EA57801E13A16701E636128D625C4B67 ] vpci C:\WINDOWS\System32\drivers\vpci.sys
20:17:06.0199 0x0da4 vpci - ok
20:17:06.0214 0x0da4 [ 4539F45F9F4C9757A86A56C949421E07, DEC362314B2C66414F39354AFE79C02B18BF4EEF90787FB58307F6EB62237E2C ] vsmraid C:\WINDOWS\system32\drivers\vsmraid.sys
20:17:06.0230 0x0da4 vsmraid - ok
20:17:06.0277 0x0da4 [ E369C59F2C0852DDD090C07E0DDE0051, 4FAC94458EAAEED4F84A86FBAB8FBB332D0AF85BD528E63C0C058A2DA8E3011D ] VSS C:\WINDOWS\system32\vssvc.exe
20:17:06.0308 0x0da4 VSS - ok
20:17:06.0339 0x0da4 [ 0849B7260F26FE05EA56DED0672E2F4B, 7EAC0E7988F45CB4133A15932955B7B03CE715C967A3BAC9999D81543EBCAEC5 ] VSTXRAID C:\WINDOWS\system32\drivers\vstxraid.sys
20:17:06.0339 0x0da4 VSTXRAID - ok
20:17:06.0355 0x0da4 [ BE970C369E43B509C1EDA2B8FA7CECB0, 18951F2AA842A0795AA79A4E164EE925A35E6270EBE4C4CDB19D0A891830E383 ] vwifibus C:\WINDOWS\System32\drivers\vwifibus.sys
20:17:06.0355 0x0da4 vwifibus - ok
20:17:06.0386 0x0da4 [ 7599E582CA3A6AAA95A18FFE1172D339, A0410778FBBC4302EA91CF24B944427410B4706535F1192504D4F34C3ED4503E ] W32Time C:\WINDOWS\system32\w32time.dll
20:17:06.0402 0x0da4 W32Time - ok
20:17:06.0417 0x0da4 [ 0910AB9ED404C1434E2D0376C2AD5D8B, 62585CA5F1375BDA440D28D5DF1ADDC9DE3DDFA196D49BBFF3456A5A09EE1C6B ] WacomPen C:\WINDOWS\System32\drivers\wacompen.sys
20:17:06.0417 0x0da4 WacomPen - ok
20:17:06.0480 0x0da4 [ 61692DB39AD3DF2F29392D68EAA7BB93, 854D4B9C7DD1676968598ED973500650ECEC02C420E44C0B3957C24F073AA5FB ] wbengine C:\WINDOWS\system32\wbengine.exe
20:17:06.0511 0x0da4 wbengine - ok
20:17:06.0558 0x0da4 [ 3BC1D1D56637A32CD91C8AE08E2484AA, 9EE1BD3FB0D289E25F3DDD0D8F67DC1C701A6B1D5418FADF348D0E642B1DEBEB ] WbioSrvc C:\WINDOWS\System32\wbiosrvc.dll
20:17:06.0574 0x0da4 WbioSrvc - ok
20:17:06.0620 0x0da4 [ A07CFC4B593D15B6BF06813C3B5B33BF, B57BD918E2AFF9943B51A24B95E0C4D3482B4DF73C0E2421E8CC67C2BC7A4C70 ] Wcmsvc C:\WINDOWS\System32\wcmsvc.dll
20:17:06.0636 0x0da4 Wcmsvc - ok
20:17:06.0699 0x0da4 [ D2726823DF7E19F213F4805A9D6D145F, A7F582C99918D204264D3B374F70D75984BDA5805203041E3DECB8153D16E102 ] wcncsvc C:\WINDOWS\System32\wcncsvc.dll
20:17:06.0730 0x0da4 wcncsvc - ok
20:17:06.0745 0x0da4 [ 846C02A8B48CBD921A3D6AB521AA0DC4, B07573A774A6C65D24E5718DC25DF378270EB5B40221CA5A53B21D47838381D3 ] WcsPlugInService C:\WINDOWS\System32\WcsPlugInService.dll
20:17:06.0745 0x0da4 WcsPlugInService - ok
20:17:06.0777 0x0da4 [ F5D4FA3E1F4879C361FFF3855259D2C2, 48C60FE4AAB011E2250157506FF0624031BFA346F8F2F8C6DFDF6F3CAA4F3F42 ] WdBoot C:\WINDOWS\system32\drivers\WdBoot.sys
20:17:06.0777 0x0da4 WdBoot - ok
20:17:06.0808 0x0da4 [ CB6C63FF8342B467E2EF76E98D5B934D, BE017CE91E3BAB293DE6ECF143797CCE3F33CC63024437472B4E38C6961AD884 ] Wdf01000 C:\WINDOWS\system32\drivers\Wdf01000.sys
20:17:06.0839 0x0da4 Wdf01000 - ok
20:17:06.0855 0x0da4 [ 019CC610AD95FF47EAD7C08B7A683B96, BB9D42F8ED90ECA2E7B8C906E06A1EA859FAD9BD1B3492BB1E28C0D00004812A ] WdFilter C:\WINDOWS\system32\drivers\WdFilter.sys
20:17:06.0855 0x0da4 WdFilter - ok
20:17:06.0870 0x0da4 [ 40C67D1A4891120874767F6E6604D6C5, 4D9DD658566DE711ADF4D6C33FCB31DA351EE050E3ED188664D04526CCAAEEF5 ] WdiServiceHost C:\WINDOWS\system32\wdi.dll
20:17:06.0870 0x0da4 WdiServiceHost - ok
20:17:06.0886 0x0da4 [ 40C67D1A4891120874767F6E6604D6C5, 4D9DD658566DE711ADF4D6C33FCB31DA351EE050E3ED188664D04526CCAAEEF5 ] WdiSystemHost C:\WINDOWS\system32\wdi.dll
20:17:06.0886 0x0da4 WdiSystemHost - ok
20:17:06.0902 0x0da4 [ 6CC1BB8F6851A262E2E824F0E92D5EEF, 45A88A984179BBA38C1F4434C4D6C2823C1FE6AFBE8CB0F656DAE0092D1D5611 ] WdNisDrv C:\WINDOWS\system32\Drivers\WdNisDrv.sys
20:17:06.0902 0x0da4 WdNisDrv - ok
20:17:06.0933 0x0da4 WdNisSvc - ok
20:17:06.0980 0x0da4 [ 6588A957873326361AB1CAC4E76F8394, BE17880CEDCAE5ED3B983443E3777842646A3E48B661422A717656E11F6DBA94 ] WebClient C:\WINDOWS\System32\webclnt.dll
20:17:07.0011 0x0da4 WebClient - ok
20:17:07.0027 0x0da4 [ 3274312F263882B51B964329FAF49734, 99A020377ACF0762BE5ECD2D68EB5E1497B9D59963247E725F7F96FB5DF41FAD ] Wecsvc C:\WINDOWS\system32\wecsvc.dll
20:17:07.0058 0x0da4 Wecsvc - ok
20:17:07.0074 0x0da4 [ 7CDD84E0023A0C5C230B06A7965EC65E, 6EC7DC18C76D66CF9A893C3DD20F9BE3ADD76546F9A9BA42CE4F24854709F9D9 ] WEPHOSTSVC C:\WINDOWS\system32\wephostsvc.dll
20:17:07.0089 0x0da4 WEPHOSTSVC - ok
20:17:07.0120 0x0da4 [ 959534ACF085C137D2D094384EF89C45, D029F440789FE170A1C46217C6DE6D78DC0188A5CF33FCCC17FA65D3BC80C2B7 ] wercplsupport C:\WINDOWS\System32\wercplsupport.dll
20:17:07.0136 0x0da4 wercplsupport - ok
20:17:07.0167 0x0da4 [ 82BCCF5FBE47AC9E8CBA2020994DFB3F, EA96C6BD98A701B465D0780EC10BDA92E45FE636D60C1385813AA3B456D8B931 ] WerSvc C:\WINDOWS\System32\WerSvc.dll
20:17:07.0167 0x0da4 WerSvc - ok
20:17:07.0199 0x0da4 [ BFBE1C5F57FE7A885673A1962D5532B7, F0BD05B257108699FE6AB32EF11F927C31932F27062A705B3FEFA4F5B4C0D8C3 ] WFPLWFS C:\WINDOWS\system32\DRIVERS\wfplwfs.sys
20:17:07.0199 0x0da4 WFPLWFS - ok
20:17:07.0214 0x0da4 [ E06AFE2F94BA7CFA2FE4FD2A449E60E2, 99A81E16366E9E77905D873B0246E4C11B383FE1E99E0E1D9A07FAD4E52EA9E4 ] WiaRpc C:\WINDOWS\System32\wiarpc.dll
20:17:07.0230 0x0da4 WiaRpc - ok
20:17:07.0245 0x0da4 [ 867BCC69ED9C31C501465EB0E8BA9DFA, 678B7FF4D4E8624514301956CDA7FB451159BBFC83FF2E4E5E7DADAE3C7AB2EC ] WIMMount C:\WINDOWS\system32\drivers\wimmount.sys
20:17:07.0245 0x0da4 WIMMount - ok
20:17:07.0245 0x0da4 WinDefend - ok
20:17:07.0277 0x0da4 [ DD079EC8F44DCA3A176B345C6ADEFB66, 6CD9371B83EA23D2181891FAE1DB285BC111A78C35F374E57666ED09860C91A9 ] WinHttpAutoProxySvc C:\WINDOWS\system32\winhttp.dll
20:17:07.0324 0x0da4 WinHttpAutoProxySvc - ok
20:17:07.0355 0x0da4 [ 9DB490F3E823C5C3C070644B96CB9D59, 81937D0B331E43C7C61514E60B3AD51370C5201F7B4D12F8534840D91EDC32DD ] Winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll
20:17:07.0370 0x0da4 Winmgmt - ok
20:17:07.0449 0x0da4 [ C8D6344BDE2691A196E61C0D3372EAB7, FF8EB79D8A7E298343C22B83276FF68293D08A9DA438BB22600BEFC4CA93A91D ] WinRM C:\WINDOWS\system32\WsmSvc.dll
20:17:07.0511 0x0da4 WinRM - ok
20:17:07.0574 0x0da4 [ EF252510DB6C3511E30418BD2AC95A2D, 75B496F5C611129D9D19B382503830FDB0E2E61D4880D2821AE381DF578C5E56 ] WlanSvc C:\WINDOWS\System32\wlansvc.dll
20:17:07.0620 0x0da4 WlanSvc - ok
20:17:07.0699 0x0da4 [ 5F56C0DE776C7AE43AF749845BFAA1EF, 837993C5853B7E682C7FB8401B7F5D951FFD15E5659EBB1B01DC3F5719ACEE19 ] wlidsvc C:\WINDOWS\system32\wlidsvc.dll
20:17:07.0730 0x0da4 wlidsvc - ok
20:17:07.0761 0x0da4 [ 2834D9D3B4F554A39C72F00EA3F0E128, D10124343C67FE9A0B711AD569BB8080495FCEA0ECEF9AC3F3FBD6865F436A44 ] WmiAcpi C:\WINDOWS\System32\drivers\wmiacpi.sys
20:17:07.0761 0x0da4 WmiAcpi - ok
20:17:07.0777 0x0da4 [ 7AFAC828F52D62F304A911EC32F42EEE, 4EDCF4149069413A166169F2E23F7505F47B39B7EC319E1EF6D2C46CD140AA24 ] wmiApSrv C:\WINDOWS\system32\wbem\WmiApSrv.exe
20:17:07.0777 0x0da4 wmiApSrv - ok
20:17:07.0792 0x0da4 WMPNetworkSvc - ok
20:17:07.0808 0x0da4 [ 7FC5667DF73D4B04AA457CC3A4180E09, CB7B014945DCA16B6D120DBE0E5876C4C867A4ACD3C3536AEADC14B908613D4E ] Wof C:\WINDOWS\system32\drivers\Wof.sys
20:17:07.0808 0x0da4 Wof - ok
20:17:07.0870 0x0da4 [ 5071E71CC05346D88C5A08EB8B5A05E3, EA2B14130EDD1846B2E25D310B0D49253CFB43C22D3DC7B3179DF7349CC4AEFB ] workfolderssvc C:\WINDOWS\system32\workfolderssvc.dll
20:17:07.0902 0x0da4 workfolderssvc - ok
20:17:07.0933 0x0da4 [ 182561A14F2E93E81E66FE3700D17A5A, FB9A06058A8BCCEDCDC5BF8899D9B2FBA5752C262C5FC6D2B8338884F3303D12 ] wpcfltr C:\WINDOWS\system32\DRIVERS\wpcfltr.sys
20:17:07.0933 0x0da4 wpcfltr - ok
20:17:07.0964 0x0da4 [ 4E6A0F60DA7EF050D3D26417CD4D24E9, E6B3BFB007B641D41F8532ED086F92CB3D86E210023DBFAA9AD8152A9FD33CCA ] WPCSvc C:\WINDOWS\System32\wpcsvc.dll
20:17:07.0980 0x0da4 WPCSvc - ok
20:17:07.0995 0x0da4 [ D27491CFCE452C154CECFA155AD0EBC8, 1F3F74C253E3B07DE7EFE27C34DD9AF08617C7B03BB44C2902F69BA9DA3F21F2 ] WPDBusEnum C:\WINDOWS\system32\wpdbusenum.dll
20:17:07.0995 0x0da4 WPDBusEnum - ok
20:17:08.0042 0x0da4 [ 9F2904B55F6CECCD1A8D986B5CE2609A, E19ED4DD3CEF3A22C058FC324824604FB3FC98A029C94E6C2A3389F938D680B6 ] WpdUpFltr C:\WINDOWS\system32\drivers\WpdUpFltr.sys
20:17:08.0042 0x0da4 WpdUpFltr - ok
20:17:08.0058 0x0da4 [ AE072B0339D0A18E455DC21666CAD572, AB1DAEA25E2C7AD610818D4B4783F6D4190D85EBB3963BBAD410E8CEA7899EDB ] ws2ifsl C:\WINDOWS\system32\drivers\ws2ifsl.sys
20:17:08.0058 0x0da4 ws2ifsl - ok
20:17:08.0074 0x0da4 [ 9654DE19551093CD73874281E1573C94, 5E3513EC0CB180D90904BE8970AB64A4434279E8C467AE2CF693254E47B1D11E ] wscsvc C:\WINDOWS\System32\wscsvc.dll
20:17:08.0089 0x0da4 wscsvc - ok
20:17:08.0089 0x0da4 WSearch - ok
20:17:08.0183 0x0da4 [ 95B6670E6933E1DEE19686C55BE709A0, 4B9EB8F1712B7959A71F6DA445D29BD09B25EEFC6B30D736EFE30163D79B233E ] WSService C:\WINDOWS\System32\WSService.dll
20:17:08.0308 0x0da4 WSService - ok
20:17:08.0449 0x0da4 [ E66AC3CA92FC471BFE69F61549193A64, E2DD7EA4ED164EE8FB07546896BE743734B04DE4C9480E84231901CB2C63F31C ] wuauserv C:\WINDOWS\system32\wuaueng.dll
20:17:08.0558 0x0da4 wuauserv - ok
20:17:08.0589 0x0da4 [ 2FEAE33E9B2B56104596E1BA444405A9, 0A142F50E06F6224B9CB36B3CE62BE0B36DE8B8DB9F9E05D287DFB884CC7826E ] WudfPf C:\WINDOWS\system32\drivers\WudfPf.sys
20:17:08.0589 0x0da4 WudfPf - ok
20:17:08.0605 0x0da4 [ 19240C13F526125554B5370566F21A0A, 1DD88B092451CEC309A390319342BB4D36CE938BBE6D09127BBAA53960DD8E94 ] WUDFRd C:\WINDOWS\System32\drivers\WUDFRd.sys
20:17:08.0605 0x0da4 WUDFRd - ok
20:17:08.0620 0x0da4 [ 19240C13F526125554B5370566F21A0A, 1DD88B092451CEC309A390319342BB4D36CE938BBE6D09127BBAA53960DD8E94 ] WUDFSensorLP C:\WINDOWS\System32\drivers\WUDFRd.sys
20:17:08.0620 0x0da4 WUDFSensorLP - ok
20:17:08.0636 0x0da4 [ BB73CBC65AABC4EA0A5C6A1474A0A743, D644B3C6A7202CADDADB3B68FE1B2A7C76B023FE58F667EED4D538C1F4A65D64 ] wudfsvc C:\WINDOWS\System32\WUDFSvc.dll
20:17:08.0636 0x0da4 wudfsvc - ok
20:17:08.0652 0x0da4 [ 19240C13F526125554B5370566F21A0A, 1DD88B092451CEC309A390319342BB4D36CE938BBE6D09127BBAA53960DD8E94 ] WUDFWpdFs C:\WINDOWS\system32\DRIVERS\WUDFRd.sys
20:17:08.0667 0x0da4 WUDFWpdFs - ok
20:17:08.0714 0x0da4 [ 2FA9794CA36147756F3FDFD6CA29B46F, 4B86DC38C2411C281686E9A4E64DA6FB2992E39391371F78E012D6D8BB85123F ] WwanSvc C:\WINDOWS\System32\wwansvc.dll
20:17:08.0730 0x0da4 WwanSvc - ok
20:17:08.0730 0x0da4 ================ Scan global ===============================
20:17:08.0777 0x0da4 [ C89780A6F58D113C28A96D85D1261DC5, 185114F33A60916C7904E4A0F278CA43258454343E614F01F0DAFA98BAC981B1 ] C:\WINDOWS\system32\basesrv.dll
20:17:08.0824 0x0da4 [ 00DD4D2ACC2E72155A8AAA82018BEC0D, 9D7CA68B4A81240477FCC85A3CC11EF986093F9D6228A6C5AC608EDAD664068C ] C:\WINDOWS\system32\winsrv.dll
20:17:08.0870 0x0da4 [ 9C1833ABD62876856836C5AE55C7CE86, 0A21E2C8B2FF3B0438C86DA7151A548F9C6F5C62CD402CBBEDB435994C8508F1 ] C:\WINDOWS\system32\sxssrv.dll
20:17:08.0902 0x0da4 [ 067CB90C277DB4A737D5DEABA3055972, C681BF013170F2D92A3FC4D783FC3F200CDC0C8173373B7ECC27FCF32A03CCBD ] C:\WINDOWS\system32\services.exe
20:17:08.0917 0x0da4 [ Global ] - ok
20:17:08.0917 0x0da4 ================ Scan MBR ==================================
20:17:08.0949 0x0da4 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
20:17:09.0120 0x0da4 \Device\Harddisk0\DR0 - ok
20:17:09.0120 0x0da4 ================ Scan VBR ==================================
20:17:09.0136 0x0da4 [ 0BCE8CA2DADD616FB7076B486B19933A ] \Device\Harddisk0\DR0\Partition1
20:17:09.0199 0x0da4 \Device\Harddisk0\DR0\Partition1 - ok
20:17:09.0199 0x0da4 [ B79AF30A5EDFFF543E2E467877E50115 ] \Device\Harddisk0\DR0\Partition2
20:17:09.0261 0x0da4 \Device\Harddisk0\DR0\Partition2 - ok
20:17:09.0261 0x0da4 ================ Scan generic autorun ======================
20:17:09.0714 0x0da4 [ 834A309C2FDF52FC09353F348CFE1235, FF8D5B0C4D8DEF3B313E11B01D6A2A29758E8721EF2EC0AAC2DB3C9AAF399276 ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
20:17:09.0933 0x0da4 RTHDVCPL - ok
20:17:09.0964 0x0da4 [ 6E0BDFBEEED65B017F2E4C2C910B0520, 54D798C2E2804DCDB84E9650EA4A032C669B10C586B396D5505F16235D83882C ] C:\WINDOWS\system32\rundll32.exe
20:17:09.0980 0x0da4 ShadowPlay - ok
20:17:10.0042 0x0da4 [ 5EA707336336DDFADE5FD3726CEA1523, 6136D88012140B3A43C7DC6CD0CBDB867BC6BA62D718269B73ED9F1B340F6768 ] C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
20:17:10.0074 0x0da4 NvBackend - ok
20:17:10.0245 0x0da4 [ 45435DC5102CC9F563F52FE7398E448D, A99CBB644FBC3B6EE9EBE86A6D31CC3B53CA846C61720F6836496B57669A6FBF ] C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe
20:17:10.0339 0x0da4 HDAudDeck - ok
20:17:10.0402 0x0da4 [ 3BD79A1F6D2EA0FDDEA3F8914B2A6A0C, 332E6806EFF846A2E6D0DC04A70D3503855DABFA83E6EC27F37E2D9103E80E51 ] C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
20:17:10.0402 0x0da4 VirtualCloneDrive - ok
20:17:10.0558 0x0da4 [ 26AFC1F16494FFE66F2197153B342A27, 817436E38F832500E120F196941F2F8392B192262E16D5E52CD5DFAC34749C15 ] C:\Program Files\AVAST Software\Avast\AvastUI.exe
20:17:10.0636 0x0da4 AvastUI.exe - ok
20:17:10.0683 0x0da4 [ 61E4289E91E88C90478D7F4BEB10DCF7, 1D0F4034E0111CF5758F470C15A22A0A28EB8269CB5BF07222C9C0FB07A15C55 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
20:17:10.0683 0x0da4 APSDaemon - ok
20:17:10.0777 0x0da4 [ 048EA4B978851788E9F5E8E4F081DF7A, EB62719AC0DCC18FF056F2CD84438BF14B61E38F0619617C81961C6257BDFCEC ] C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
20:17:10.0792 0x0da4 Adobe ARM - ok
20:17:10.0839 0x0da4 [ EDAD4A8A1D46AFCF9E76B996D55116EB, 937549E6FBF5D7282E56866C705539646F2CB6839FD74BF7AA8FB2BA5CCEE940 ] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
20:17:10.0839 0x0da4 SunJavaUpdateSched - ok
20:17:10.0839 0x0da4 Waiting for KSN requests completion. In queue: 50
20:17:11.0855 0x0da4 Waiting for KSN requests completion. In queue: 50
20:17:12.0870 0x0da4 Waiting for KSN requests completion. In queue: 50
20:17:13.0933 0x0da4 AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.5.218.0 ), 0x60100 ( disabled : updated )
20:17:13.0933 0x0da4 AV detected via SS2: avast! Antivirus, C:\Program Files\AVAST Software\Avast\VisthAux.exe ( 9.0.2021.515 ), 0x41000 ( enabled : updated )
20:17:13.0964 0x0da4 Win FW state via NFP2: enabled
20:17:16.0324 0x0da4 ============================================================
20:17:16.0324 0x0da4 Scan finished
20:17:16.0324 0x0da4 ============================================================
20:17:16.0339 0x09a8 Detected object count: 0
20:17:16.0339 0x09a8 Actual detected object count: 0
20:36:54.0538 0x0a70 Deinitialize success
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: prosím kontrolu logu
Prosím stáhni příslušnou verzi programu pro Tvůj systém 32-bit/64-bit FarbarRecovery Scan Tool (FrSt)
32bit.:
http://www.bleepingcomputer.com/downloa ... ool/dl/81/
64bit.:
http://www.bleepingcomputer.com/downloa ... ool/dl/82/
a ulož jej na plochu. ,pak spusť FrSt.
Potvrď způsob užití.
Neměň žádné z výchozích nastavení a klikni na položku „Scan“ („Skenovat“) .Když je skenování dokončeno, ukážou se dva logy = FRST.txt a Addition.txt a uloží se na ploše.Prosím zkopíruj sem celý jejich obsah.
32bit.:
http://www.bleepingcomputer.com/downloa ... ool/dl/81/
64bit.:
http://www.bleepingcomputer.com/downloa ... ool/dl/82/
a ulož jej na plochu. ,pak spusť FrSt.
Potvrď způsob užití.
Neměň žádné z výchozích nastavení a klikni na položku „Scan“ („Skenovat“) .Když je skenování dokončeno, ukážou se dva logy = FRST.txt a Addition.txt a uloží se na ploše.Prosím zkopíruj sem celý jejich obsah.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: prosím kontrolu logu
Hotovo.
Ale ukázal se jen jeden log:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-07-2014
Ran by Petr (administrator) on PETRMALENKA on 12-07-2014 13:10:02
Running from C:\Users\Petr\Desktop
Platform: Windows 8.1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(VIA Technologies, Inc.) C:\Windows\System32\ViakaraokeSrv.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12503184 2012-06-11] (Realtek Semiconductor)
HKLM\...\Run: [ShadowPlay] => C:\WINDOWS\system32\nvspcap64.dll [1225920 2014-04-30] (NVIDIA Corporation)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2199840 2014-04-30] (NVIDIA Corporation)
HKLM-x32\...\Run: [HDAudDeck] => C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [5123216 2012-06-08] (VIA)
HKLM-x32\...\Run: [VirtualCloneDrive] => C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [88984 2013-03-10] (Elaborate Bytes AG)
HKLM-x32\...\Run: [NWEReboot] => [X]
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4086432 2014-07-08] (AVAST Software)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKLM-x32\...\Run: [NPSStartup] => [X]
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-05-07] (Oracle Corporation)
Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-3832753693-3646972138-179110667-1004\...\MountPoints2: {45aa29d5-bf20-11e3-bfb6-902b34a84e89} - "H:\setup.exe"
ShellIconOverlayIdentifiers: SkyDrive1 -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File
ShellIconOverlayIdentifiers: SkyDrive2 -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File
ShellIconOverlayIdentifiers: SkyDrive3 -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File
ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
ShellIconOverlayIdentifiers: DropboxExt1 -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: DropboxExt2 -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: DropboxExt3 -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: DropboxExt4 -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: GDriveBlacklistedOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google)
ShellIconOverlayIdentifiers: GDriveSharedEditOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google)
ShellIconOverlayIdentifiers: GDriveSharedOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google)
ShellIconOverlayIdentifiers: GDriveSharedViewOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google)
ShellIconOverlayIdentifiers: GDriveSyncedOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google)
ShellIconOverlayIdentifiers: GDriveSyncingOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google)
ShellIconOverlayIdentifiers-x32: SkyDrive1 -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File
ShellIconOverlayIdentifiers-x32: SkyDrive2 -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File
ShellIconOverlayIdentifiers-x32: SkyDrive3 -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File
ShellIconOverlayIdentifiers-x32: DropboxExt1 -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers-x32: DropboxExt2 -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers-x32: DropboxExt3 -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers-x32: DropboxExt4 -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => No File
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ie
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
SearchScopes: HKLM - DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL =
SearchScopes: HKLM-x32 - DefaultScope value is missing.
BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Free Download Manager - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files (x86)\Free Download Manager\iefdm2.dll (FreeDownloadManager.ORG)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - No Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
Tcpip\Parameters: [DhcpNameServer] 83.240.0.136 192.168.0.1
FireFox:
========
FF ProfilePath: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\iq10j0za.default
FF SearchEngineOrder.1: Google
FF SelectedSearchEngine: Google
FF Homepage: http://www.google.com
FF Keyword.URL: https://www.google.com/search
FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF64_14_0_0_145.dll ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=10.60.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.60.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll No File
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll No File
FF Plugin-x32: @videolan.org/vlc,version=2.0.7 - C:\Program Files (x86)\Free Media Player\npvlc.dll (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 - C:\Program Files (x86)\Free Media Player\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: ubisoft.com/uplaypc - C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll ()
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\mapy-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-10-26]
FF Extension: Free Download Manager plugin - C:\ProgramData\Free Download Manager\Firefox\Extensions\1.6.0.7 [2014-05-17]
Chrome:
=======
CHR DefaultSearchKeyword: seznam.cz
CHR DefaultSearchProvider: Seznam
CHR DefaultSearchURL: http://search.seznam.cz/?q={searchTerms}
CHR DefaultNewTabURL:
CHR Extension: (Docs) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-07-11]
CHR Extension: (Disk Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-07-11]
CHR Extension: (YouTube) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-07-11]
CHR Extension: (Vyhledávání Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-07-11]
CHR Extension: (avast! Online Security) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-07-11]
CHR Extension: (Gmail) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-07-11]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-07-08]
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Services (Whitelisted) =================
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-07-08] (AVAST Software)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1618888 2014-04-30] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21009352 2014-04-30] (NVIDIA Corporation)
R2 VIAKaraokeService; C:\Windows\system32\viakaraokesrv.exe [27760 2012-05-04] (VIA Technologies, Inc.)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-03-24] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-03-24] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-07-08] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-07-08] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-07-08] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-07-08] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1041168 2014-07-08] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [427360 2014-07-08] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [92008 2014-07-08] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [224896 2014-07-08] ()
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19744 2014-04-30] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation)
S3 trufos; C:\Windows\System32\drivers\trufos.sys [350160 2014-07-10] (BitDefender S.R.L.)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123224 2014-03-24] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-07-12 13:10 - 2014-07-12 13:10 - 00013559 _____ () C:\Users\Petr\Desktop\FRST.txt
2014-07-12 13:09 - 2014-07-12 13:09 - 02084864 _____ (Farbar) C:\Users\Petr\Desktop\FRST64.exe
2014-07-12 08:37 - 2014-07-12 08:57 - 00029144 _____ () C:\WINDOWS\WindowsUpdate.log
2014-07-11 20:16 - 2014-07-11 20:16 - 04181856 _____ (Kaspersky Lab ZAO) C:\Users\Petr\Desktop\tdsskiller.exe
2014-07-11 19:59 - 2014-07-11 19:59 - 00030312 _____ () C:\WINDOWS\system32\Drivers\TrueSight.sys
2014-07-11 18:26 - 2014-07-11 18:26 - 00000000 ____D () C:\Users\Petr\AppData\Local\SkinSoft
2014-07-11 18:25 - 2014-07-11 18:25 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\freepicturesolutions
2014-07-11 18:06 - 2014-07-12 08:39 - 00005155 _____ () C:\WINDOWS\system32\lvcoinst.log
2014-07-11 18:06 - 2014-07-11 18:16 - 00000000 _____ () C:\WINDOWS\system32\Drivers\lvuvc.hs
2014-07-11 18:06 - 2014-07-11 18:06 - 00000000 ____D () C:\Program Files\Common Files\logishrd
2014-07-11 16:43 - 2014-07-11 16:43 - 109574432 _____ (Oracle Corporation) C:\Users\Petr\Downloads\VirtualBox-4.3.12-93733-Win.exe
2014-07-11 14:57 - 2014-07-11 14:58 - 340506613 _____ () C:\Users\Petr\Downloads\Krabathor - 20 Years Of Madness (Compilation) (2005).rar
2014-07-11 13:56 - 2014-07-11 13:56 - 00000000 ____D () C:\ProgramData\RogueKiller
2014-07-11 13:55 - 2014-07-11 13:55 - 05336664 _____ () C:\Users\Petr\Desktop\RogueKillerX64.exe
2014-07-11 13:47 - 2014-07-11 13:47 - 00001009 _____ () C:\Users\Petr\Desktop\JRT.txt
2014-07-11 13:38 - 2014-07-11 13:38 - 01016261 _____ (Thisisu) C:\Users\Petr\Desktop\JRT.exe
2014-07-10 19:49 - 2014-07-10 19:50 - 00122584 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2014-07-10 19:48 - 2014-07-10 19:48 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Petr\Downloads\mbam-setup-2.0.2.1012.exe
2014-07-10 19:48 - 2014-07-10 19:48 - 00001130 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-07-10 19:48 - 2014-07-10 19:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-07-10 19:48 - 2014-07-10 19:48 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-07-10 19:48 - 2014-05-12 07:26 - 00091352 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2014-07-10 19:48 - 2014-05-12 07:26 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2014-07-10 19:48 - 2014-05-12 07:25 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
2014-07-10 19:46 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\WINDOWS\SysWOW64\sqlite3.dll
2014-07-10 19:44 - 2014-07-10 19:44 - 01348263 _____ () C:\Users\Petr\Desktop\AdwCleaner.exe
2014-07-10 19:39 - 2014-07-11 21:09 - 00000000 ____D () C:\Users\Petr\AppData\Local\CrashDumps
2014-07-10 19:39 - 2014-07-10 19:39 - 00448512 _____ (OldTimer Tools) C:\Users\Petr\Downloads\TFC.exe
2014-07-10 18:30 - 2014-07-10 18:30 - 00006754 _____ () C:\Users\Petr\Desktop\hijackthis.log
2014-07-10 18:21 - 2014-07-10 18:21 - 00000029 _____ () C:\WINDOWS\Lic.xxx
2014-07-10 18:20 - 2014-07-10 18:20 - 00632064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr80.dll
2014-07-10 18:20 - 2014-07-10 18:20 - 00572928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp90.dll
2014-07-10 18:20 - 2014-07-10 18:20 - 00554240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp80.dll
2014-07-10 18:20 - 2014-07-10 18:20 - 00350160 _____ (BitDefender S.R.L.) C:\WINDOWS\system32\Drivers\trufos.sys
2014-07-10 18:20 - 2014-07-10 18:19 - 00655872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr90.dll
2014-07-10 18:19 - 2014-07-10 18:19 - 00152808 _____ (MicroWorld Technologies Inc.) C:\WINDOWS\SysWOW64\eEmpty.exe
2014-07-10 18:19 - 2014-07-10 18:19 - 00001046 _____ () C:\Users\Petr\Desktop\MWAVSCAN.lnk
2014-07-10 18:19 - 2014-07-10 18:19 - 00000000 ____D () C:\ProgramData\MicroWorld
2014-07-10 18:16 - 2014-07-10 18:17 - 216155864 _____ () C:\Users\Petr\Documents\mwav.exe
2014-07-10 18:16 - 2014-07-10 18:16 - 00000351 _____ () C:\Users\Petr\Documents\Resume download for mwav.exe.html
2014-07-10 18:16 - 2014-07-10 18:16 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Download Manager
2014-07-10 16:19 - 2014-07-10 16:19 - 00000000 ____N () C:\autoexec.bat
2014-07-10 16:19 - 2014-07-10 16:19 - 00000000 ____D () C:\Program Files\Enigma Software Group
2014-07-10 16:11 - 2014-06-26 22:55 - 00703968 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2014-07-10 16:11 - 2014-06-26 22:55 - 00105440 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2014-07-10 16:10 - 2014-04-14 05:29 - 01018880 _____ (Microsoft Corporation) C:\WINDOWS\system32\termsrv.dll
2014-07-10 16:09 - 2014-07-10 16:09 - 00000000 ___SD () C:\WINDOWS\system32\CompatTel
2014-07-09 18:33 - 2014-07-09 18:42 - 00000000 ____D () C:\Users\Petr\Desktop\Nová složka (2)
2014-07-09 13:19 - 2014-06-17 00:26 - 00779264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\osk.exe
2014-07-09 13:19 - 2014-06-17 00:24 - 00834048 _____ (Microsoft Corporation) C:\WINDOWS\system32\osk.exe
2014-07-09 13:19 - 2014-06-06 16:20 - 04190720 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2014-07-09 13:19 - 2014-05-30 05:03 - 00563200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2014-07-09 13:17 - 2014-05-29 14:02 - 00565576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2014-07-09 13:17 - 2014-05-29 09:55 - 00735232 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll
2014-07-09 13:17 - 2014-05-29 08:40 - 00735232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adtschema.dll
2014-07-09 13:17 - 2014-05-29 08:37 - 00436224 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll
2014-07-09 13:17 - 2014-05-29 07:34 - 00318976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll
2014-07-09 13:17 - 2014-05-29 07:27 - 01417216 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2014-07-09 13:15 - 2014-06-19 03:39 - 23464448 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2014-07-09 13:15 - 2014-06-19 02:48 - 02768384 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2014-07-09 13:15 - 2014-06-19 02:16 - 17276416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2014-07-09 13:15 - 2014-06-19 02:09 - 00452608 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll
2014-07-09 13:15 - 2014-06-19 01:51 - 05721088 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2014-07-09 13:15 - 2014-06-19 01:50 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2014-07-09 13:15 - 2014-06-19 01:48 - 00292864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2014-07-09 13:15 - 2014-06-19 01:46 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2014-07-09 13:15 - 2014-06-19 01:39 - 00608768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2014-07-09 13:15 - 2014-06-19 01:33 - 00631808 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2014-07-09 13:15 - 2014-06-19 01:32 - 02179072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2014-07-09 13:15 - 2014-06-19 01:27 - 02040832 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2014-07-09 13:15 - 2014-06-19 01:12 - 00367616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll
2014-07-09 13:15 - 2014-06-19 00:59 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2014-07-09 13:15 - 2014-06-19 00:58 - 02266112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2014-07-09 13:15 - 2014-06-19 00:58 - 00239616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2014-07-09 13:15 - 2014-06-19 00:57 - 00225280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2014-07-09 13:15 - 2014-06-19 00:52 - 04254720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2014-07-09 13:15 - 2014-06-19 00:51 - 13527040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2014-07-09 13:15 - 2014-06-19 00:49 - 00526336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2014-07-09 13:15 - 2014-06-19 00:45 - 01964544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2014-07-09 13:15 - 2014-06-19 00:35 - 11742208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2014-07-09 13:15 - 2014-06-19 00:34 - 01393664 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2014-07-09 13:15 - 2014-06-19 00:15 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2014-07-09 13:15 - 2014-06-19 00:13 - 01791488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2014-07-09 13:15 - 2014-06-19 00:09 - 01139200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2014-07-09 13:15 - 2014-06-19 00:07 - 00704512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2014-07-09 13:14 - 2014-07-01 00:45 - 00688128 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepdu.dll
2014-07-09 13:14 - 2014-06-28 09:48 - 00527360 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2014-07-09 13:14 - 2014-06-28 09:07 - 00385536 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2014-07-09 13:14 - 2014-06-06 15:04 - 00586240 _____ (Microsoft Corporation) C:\WINDOWS\system32\qedit.dll
2014-07-09 13:14 - 2014-06-06 14:18 - 00488960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qedit.dll
2014-07-09 13:13 - 2014-05-31 12:07 - 00054776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2014-07-09 13:13 - 2014-05-31 12:06 - 00555736 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2014-07-09 13:13 - 2014-05-31 05:40 - 13287936 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2014-07-09 13:13 - 2014-05-31 05:30 - 11792384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2014-07-09 13:13 - 2014-05-31 05:12 - 00249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-07-09 13:13 - 2014-05-31 05:06 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll
2014-07-09 13:13 - 2014-05-31 05:03 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2014-07-09 13:13 - 2014-05-31 05:01 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-07-09 13:13 - 2014-05-31 04:56 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll
2014-07-09 13:13 - 2014-05-31 04:54 - 00666624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2014-07-09 13:13 - 2014-05-31 04:48 - 03463680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2014-07-09 13:13 - 2014-05-31 04:37 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2014-07-09 13:13 - 2014-05-31 04:36 - 00923136 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2014-07-09 13:13 - 2014-05-31 04:35 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2014-07-09 13:13 - 2014-05-31 04:32 - 00756224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll
2014-07-09 13:08 - 2014-07-09 13:08 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe
2014-07-08 18:50 - 2014-07-08 18:50 - 00000270 __RSH () C:\ProgramData\ntuser.pol
2014-07-08 18:50 - 2014-07-08 18:50 - 00000000 ____D () C:\Users\HomeGroupUser$
2014-07-08 18:50 - 2014-07-08 18:50 - 00000000 ____D () C:\Users\Guest
2014-07-08 18:50 - 2014-07-08 18:50 - 00000000 ____D () C:\Users\Administrator
2014-07-08 18:50 - 2014-07-08 18:50 - 00000000 ____D () C:\ProgramData\4e0cb922ab0e9d81
2014-07-08 18:48 - 2014-07-08 18:48 - 00427360 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsp.sys
2014-07-08 18:48 - 2014-07-08 18:48 - 00043152 _____ (AVAST Software) C:\WINDOWS\avastSS.scr
2014-07-08 18:48 - 2014-07-08 18:48 - 00003924 _____ () C:\WINDOWS\System32\Tasks\avast! Emergency Update
2014-07-08 16:50 - 2014-07-08 16:59 - 115651372 _____ () C:\Users\Petr\Downloads\Souldrainer.14.A-dw.rar
2014-07-08 16:46 - 2014-07-08 16:47 - 132325165 _____ () C:\Users\Petr\Downloads\ND-Bled_White-2014-By Samaritianin.rar
2014-07-07 20:45 - 2014-07-07 20:56 - 101875738 _____ () C:\Users\Petr\Downloads\Morgoth - Feel Sorry For The Fanatic (1996).rar
2014-07-07 20:45 - 2014-07-07 20:55 - 101170775 _____ () C:\Users\Petr\Downloads\Morgoth - Odium (1993) by DanyBoggot.rar
2014-07-07 20:45 - 2014-07-07 20:54 - 88891361 _____ () C:\Users\Petr\Downloads\Morgoth - Cursed [1991].rar
2014-07-07 20:44 - 2014-07-07 20:50 - 54246872 _____ () C:\Users\Petr\Downloads\1989 - Ressurection Absurd (EP)_By_Maleficus.rar
2014-07-07 20:44 - 2014-07-07 20:46 - 42986356 _____ () C:\Users\Petr\Downloads\1990 - The Eternal Fall (EP).rar
2014-07-06 16:52 - 2014-07-06 16:51 - 00264616 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\javaws.exe
2014-07-06 16:51 - 2014-07-06 16:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-07-06 16:51 - 2014-07-06 16:51 - 00175528 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\javaw.exe
2014-07-06 16:51 - 2014-07-06 16:51 - 00175528 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\java.exe
2014-07-06 16:51 - 2014-07-06 16:51 - 00098216 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll
2014-07-06 16:51 - 2014-07-06 16:51 - 00000000 ____D () C:\Program Files (x86)\Java
2014-06-29 20:32 - 2014-06-29 20:32 - 00001016 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sniper Elite 3.lnk
2014-06-29 20:32 - 2014-06-29 20:32 - 00001004 _____ () C:\Users\Public\Desktop\Sniper Elite 3.lnk
2014-06-29 20:10 - 2014-06-29 20:33 - 00000000 ____D () C:\Program Files (x86)\Sniper Elite 3
2014-06-29 19:29 - 2014-06-29 20:08 - 00000000 ____D () C:\Users\Petr\AppData\Local\Sniper3
2014-06-29 19:02 - 2014-06-29 19:02 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\WinUpdate
2014-06-29 11:49 - 2014-06-29 11:49 - 00000917 _____ () C:\Users\Public\Desktop\AIMP3.lnk
2014-06-29 11:49 - 2014-06-29 11:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AIMP3
2014-06-29 11:46 - 2014-06-29 11:46 - 04812672 _____ (Piriform Ltd) C:\Users\Petr\Downloads\ccsetup415.exe
2014-06-29 08:58 - 2014-06-29 08:58 - 00000000 ____D () C:\Users\Petr\Documents\PETRMALENKA
2014-06-29 08:50 - 2014-06-29 08:50 - 00001221 _____ () C:\Users\Petr\Desktop\Enemy Front PROPER.lnk
2014-06-29 08:50 - 2014-06-29 08:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Enemy Front PROPER
2014-06-29 08:47 - 2014-06-29 08:47 - 00000000 ____D () C:\Program Files (x86)\Enemy Front PROPER
2014-06-29 08:24 - 2014-06-29 08:24 - 00001217 _____ () C:\Users\Petr\Desktop\Uplay.lnk
2014-06-28 21:29 - 2014-05-23 22:04 - 00000000 ____D () C:\Users\Petr\Desktop\Watch Dogs PC CZ + návod
2014-06-26 06:54 - 2014-07-06 13:31 - 00000000 ____D () C:\Users\Petr\Desktop\cimrman
2014-06-23 06:46 - 2014-06-23 06:46 - 01058200 _____ (Adobe) C:\Users\Petr\Downloads\install_flashplayer14x32au_chrd_dn_aaa_aih.exe
2014-06-21 17:41 - 2014-06-21 17:41 - 00001367 _____ () C:\Users\Public\Desktop\Loutkové divadlo - Ztracené město.lnk
2014-06-21 17:41 - 2014-06-21 17:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Loutkové divadlo - Ztracené město
2014-06-21 17:41 - 2014-06-21 17:41 - 00000000 ____D () C:\Program Files (x86)\Loutkove divadlo - Ztracene mesto
2014-06-18 19:56 - 2014-06-18 19:56 - 00000000 ____D () C:\Users\Petr\AppData\Local\WarThunder
2014-06-18 19:56 - 2014-06-18 19:56 - 00000000 ____D () C:\ProgramData\WarThunder
2014-06-18 19:55 - 2014-06-19 19:19 - 00000000 ____D () C:\Program Files (x86)\WarThunder
2014-06-18 19:54 - 2014-06-18 19:54 - 04411640 _____ (Gaijin Entertainment ) C:\Users\Petr\Downloads\wt_launcher_1.0.1.361.exe
2014-06-18 15:49 - 2014-06-18 15:49 - 00003834 _____ () C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1397060391
2014-06-14 22:47 - 2014-06-14 22:47 - 00000656 _____ () C:\Users\Petr\Desktop\Total Commander 64 bit.lnk
2014-06-14 22:47 - 2014-06-14 22:47 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Total Commander
2014-06-14 22:47 - 2014-06-14 22:47 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\GHISLER
2014-06-14 22:47 - 2014-06-14 22:47 - 00000000 ____D () C:\totalcmd
2014-06-14 22:46 - 2014-06-14 22:46 - 04626896 _____ (Ghisler Software GmbH) C:\Users\Petr\Downloads\tcm851ax64.exe
2014-06-14 19:11 - 2014-06-14 19:11 - 00000000 ____D () C:\ProgramData\Total Gameplay
2014-06-14 19:03 - 2014-06-14 19:03 - 00000000 ____D () C:\ProgramData\Funny Bear Studio
2014-06-14 19:00 - 2014-06-14 19:00 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Specialbit
2014-06-13 18:43 - 2014-06-13 18:43 - 00001285 _____ () C:\Users\Public\Desktop\Wolfenstein. The New Order.lnk
2014-06-13 18:43 - 2014-06-13 18:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wolfenstein. The New Order
2014-06-13 17:49 - 2014-06-13 18:43 - 00000000 ____D () C:\Program Files (x86)\Wolfenstein. The New Order
==================== One Month Modified Files and Folders =======
2014-07-12 13:10 - 2014-07-12 13:10 - 00013559 _____ () C:\Users\Petr\Desktop\FRST.txt
2014-07-12 13:10 - 2014-02-08 12:47 - 00000000 ____D () C:\FRST
2014-07-12 13:09 - 2014-07-12 13:09 - 02084864 _____ (Farbar) C:\Users\Petr\Desktop\FRST64.exe
2014-07-12 13:05 - 2013-10-25 10:49 - 00000000 __RDO () C:\Users\Petr\SkyDrive
2014-07-12 13:05 - 2013-05-28 13:10 - 00000968 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2014-07-12 09:22 - 2014-02-02 13:37 - 00000914 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2014-07-12 09:02 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\sru
2014-07-12 08:57 - 2014-07-12 08:37 - 00029144 _____ () C:\WINDOWS\WindowsUpdate.log
2014-07-12 08:55 - 2013-05-28 13:10 - 00000972 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2014-07-12 08:39 - 2014-07-11 18:06 - 00005155 _____ () C:\WINDOWS\system32\lvcoinst.log
2014-07-12 08:05 - 2013-11-09 01:00 - 00003978 _____ () C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{DD82B7AD-59C8-4333-BEDC-F1BACBC50966}
2014-07-11 22:25 - 2014-01-02 14:38 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\TS3Client
2014-07-11 21:09 - 2014-07-10 19:39 - 00000000 ____D () C:\Users\Petr\AppData\Local\CrashDumps
2014-07-11 21:09 - 2014-03-22 11:09 - 00000000 ____D () C:\WINDOWS\Minidump
2014-07-11 21:09 - 2013-09-08 09:53 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\AIMP3
2014-07-11 21:09 - 2013-05-28 16:12 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Free Download Manager
2014-07-11 20:37 - 2013-10-25 10:27 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-07-11 20:37 - 2013-08-22 16:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-07-11 20:16 - 2014-07-11 20:16 - 04181856 _____ (Kaspersky Lab ZAO) C:\Users\Petr\Desktop\tdsskiller.exe
2014-07-11 19:59 - 2014-07-11 19:59 - 00030312 _____ () C:\WINDOWS\system32\Drivers\TrueSight.sys
2014-07-11 19:48 - 2013-05-28 13:08 - 00003598 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3832753693-3646972138-179110667-1004
2014-07-11 18:26 - 2014-07-11 18:26 - 00000000 ____D () C:\Users\Petr\AppData\Local\SkinSoft
2014-07-11 18:25 - 2014-07-11 18:25 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\freepicturesolutions
2014-07-11 18:16 - 2014-07-11 18:06 - 00000000 _____ () C:\WINDOWS\system32\Drivers\lvuvc.hs
2014-07-11 18:06 - 2014-07-11 18:06 - 00000000 ____D () C:\Program Files\Common Files\logishrd
2014-07-11 18:06 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\AppReadiness
2014-07-11 18:04 - 2013-10-25 10:44 - 01771646 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2014-07-11 18:04 - 2013-09-30 05:56 - 00746994 _____ () C:\WINDOWS\system32\perfh005.dat
2014-07-11 18:04 - 2013-09-30 05:56 - 00155994 _____ () C:\WINDOWS\system32\perfc005.dat
2014-07-11 16:43 - 2014-07-11 16:43 - 109574432 _____ (Oracle Corporation) C:\Users\Petr\Downloads\VirtualBox-4.3.12-93733-Win.exe
2014-07-11 14:58 - 2014-07-11 14:57 - 340506613 _____ () C:\Users\Petr\Downloads\Krabathor - 20 Years Of Madness (Compilation) (2005).rar
2014-07-11 13:56 - 2014-07-11 13:56 - 00000000 ____D () C:\ProgramData\RogueKiller
2014-07-11 13:55 - 2014-07-11 13:55 - 05336664 _____ () C:\Users\Petr\Desktop\RogueKillerX64.exe
2014-07-11 13:47 - 2014-07-11 13:47 - 00001009 _____ () C:\Users\Petr\Desktop\JRT.txt
2014-07-11 13:38 - 2014-07-11 13:38 - 01016261 _____ (Thisisu) C:\Users\Petr\Desktop\JRT.exe
2014-07-11 13:32 - 2014-02-05 20:41 - 00000000 ____D () C:\AdwCleaner
2014-07-10 19:50 - 2014-07-10 19:49 - 00122584 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2014-07-10 19:48 - 2014-07-10 19:48 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Petr\Downloads\mbam-setup-2.0.2.1012.exe
2014-07-10 19:48 - 2014-07-10 19:48 - 00001130 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-07-10 19:48 - 2014-07-10 19:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-07-10 19:48 - 2014-07-10 19:48 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-07-10 19:48 - 2014-01-02 14:56 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-07-10 19:44 - 2014-07-10 19:44 - 01348263 _____ () C:\Users\Petr\Desktop\AdwCleaner.exe
2014-07-10 19:41 - 2013-10-25 10:32 - 00000000 ____D () C:\Users\Petr
2014-07-10 19:39 - 2014-07-10 19:39 - 00448512 _____ (OldTimer Tools) C:\Users\Petr\Downloads\TFC.exe
2014-07-10 19:39 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\rescache
2014-07-10 18:57 - 2013-08-22 16:44 - 00500968 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2014-07-10 18:56 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-07-10 18:56 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-07-10 18:54 - 2013-08-22 17:36 - 00000000 ___RD () C:\WINDOWS\ToastData
2014-07-10 18:54 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\WinStore
2014-07-10 18:35 - 2013-07-04 11:21 - 00618496 ___SH () C:\Users\Petr\Desktop\Thumbs.db
2014-07-10 18:30 - 2014-07-10 18:30 - 00006754 _____ () C:\Users\Petr\Desktop\hijackthis.log
2014-07-10 18:21 - 2014-07-10 18:21 - 00000029 _____ () C:\WINDOWS\Lic.xxx
2014-07-10 18:21 - 2014-02-05 19:26 - 00000000 ____D () C:\Users\Petr\Desktop\Castle of Illusion
2014-07-10 18:20 - 2014-07-10 18:20 - 00632064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr80.dll
2014-07-10 18:20 - 2014-07-10 18:20 - 00572928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp90.dll
2014-07-10 18:20 - 2014-07-10 18:20 - 00554240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp80.dll
2014-07-10 18:20 - 2014-07-10 18:20 - 00350160 _____ (BitDefender S.R.L.) C:\WINDOWS\system32\Drivers\trufos.sys
2014-07-10 18:19 - 2014-07-10 18:20 - 00655872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr90.dll
2014-07-10 18:19 - 2014-07-10 18:19 - 00152808 _____ (MicroWorld Technologies Inc.) C:\WINDOWS\SysWOW64\eEmpty.exe
2014-07-10 18:19 - 2014-07-10 18:19 - 00001046 _____ () C:\Users\Petr\Desktop\MWAVSCAN.lnk
2014-07-10 18:19 - 2014-07-10 18:19 - 00000000 ____D () C:\ProgramData\MicroWorld
2014-07-10 18:19 - 2013-08-22 15:25 - 00000114 _____ () C:\WINDOWS\win.ini
2014-07-10 18:17 - 2014-07-10 18:16 - 216155864 _____ () C:\Users\Petr\Documents\mwav.exe
2014-07-10 18:16 - 2014-07-10 18:16 - 00000351 _____ () C:\Users\Petr\Documents\Resume download for mwav.exe.html
2014-07-10 18:16 - 2014-07-10 18:16 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Download Manager
2014-07-10 18:06 - 2013-05-30 15:49 - 00000000 ____D () C:\Users\Petr\AppData\Local\Last.fm
2014-07-10 16:19 - 2014-07-10 16:19 - 00000000 ____N () C:\autoexec.bat
2014-07-10 16:19 - 2014-07-10 16:19 - 00000000 ____D () C:\Program Files\Enigma Software Group
2014-07-10 16:12 - 2012-07-26 09:59 - 00000000 ____D () C:\WINDOWS\CbsTemp
2014-07-10 16:11 - 2013-07-19 12:45 - 00000000 ____D () C:\WINDOWS\system32\MRT
2014-07-10 16:10 - 2013-08-22 15:25 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM
2014-07-10 16:10 - 2013-05-29 07:02 - 96441528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2014-07-10 16:09 - 2014-07-10 16:09 - 00000000 ___SD () C:\WINDOWS\system32\CompatTel
2014-07-10 16:09 - 2013-09-30 05:58 - 00000000 ____D () C:\Program Files\Windows Journal
2014-07-10 16:01 - 2014-04-29 14:20 - 00000000 ____D () C:\Users\Petr\Desktop\Nová složka
2014-07-09 18:42 - 2014-07-09 18:33 - 00000000 ____D () C:\Users\Petr\Desktop\Nová složka (2)
2014-07-09 13:08 - 2014-07-09 13:08 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe
2014-07-08 19:23 - 2013-08-31 08:58 - 00000000 ____D () C:\Program Files\Recuva
2014-07-08 19:22 - 2014-02-02 13:37 - 00003802 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2014-07-08 18:52 - 2013-08-22 15:25 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI
2014-07-08 18:50 - 2014-07-08 18:50 - 00000270 __RSH () C:\ProgramData\ntuser.pol
2014-07-08 18:50 - 2014-07-08 18:50 - 00000000 ____D () C:\Users\HomeGroupUser$
2014-07-08 18:50 - 2014-07-08 18:50 - 00000000 ____D () C:\Users\Guest
2014-07-08 18:50 - 2014-07-08 18:50 - 00000000 ____D () C:\Users\Administrator
2014-07-08 18:50 - 2014-07-08 18:50 - 00000000 ____D () C:\ProgramData\4e0cb922ab0e9d81
2014-07-08 18:50 - 2013-08-22 17:36 - 00000000 ___HD () C:\WINDOWS\system32\GroupPolicy
2014-07-08 18:50 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\GroupPolicy
2014-07-08 18:50 - 2013-05-28 13:10 - 00000000 ____D () C:\Program Files (x86)\Google
2014-07-08 18:48 - 2014-07-08 18:48 - 00427360 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsp.sys
2014-07-08 18:48 - 2014-07-08 18:48 - 00043152 _____ (AVAST Software) C:\WINDOWS\avastSS.scr
2014-07-08 18:48 - 2014-07-08 18:48 - 00003924 _____ () C:\WINDOWS\System32\Tasks\avast! Emergency Update
2014-07-08 18:48 - 2014-05-16 06:55 - 01041168 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsnx.sys
2014-07-08 18:48 - 2014-05-16 06:55 - 00092008 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswstm.sys
2014-07-08 18:48 - 2014-05-05 20:23 - 00029208 _____ () C:\WINDOWS\system32\Drivers\aswHwid.sys
2014-07-08 18:48 - 2013-10-26 14:21 - 00307344 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2014-07-08 18:48 - 2013-10-26 14:21 - 00224896 _____ () C:\WINDOWS\system32\Drivers\aswVmm.sys
2014-07-08 18:48 - 2013-10-26 14:21 - 00093568 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2014-07-08 18:48 - 2013-10-26 14:21 - 00079184 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2014-07-08 18:48 - 2013-10-26 14:21 - 00065776 _____ () C:\WINDOWS\system32\Drivers\aswRvrt.sys
2014-07-08 18:48 - 2013-10-26 14:21 - 00001988 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2014-07-08 16:59 - 2014-07-08 16:50 - 115651372 _____ () C:\Users\Petr\Downloads\Souldrainer.14.A-dw.rar
2014-07-08 16:47 - 2014-07-08 16:46 - 132325165 _____ () C:\Users\Petr\Downloads\ND-Bled_White-2014-By Samaritianin.rar
2014-07-08 15:55 - 2013-05-28 13:10 - 00002203 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-07-07 20:56 - 2014-07-07 20:45 - 101875738 _____ () C:\Users\Petr\Downloads\Morgoth - Feel Sorry For The Fanatic (1996).rar
2014-07-07 20:55 - 2014-07-07 20:45 - 101170775 _____ () C:\Users\Petr\Downloads\Morgoth - Odium (1993) by DanyBoggot.rar
2014-07-07 20:54 - 2014-07-07 20:45 - 88891361 _____ () C:\Users\Petr\Downloads\Morgoth - Cursed [1991].rar
2014-07-07 20:50 - 2014-07-07 20:44 - 54246872 _____ () C:\Users\Petr\Downloads\1989 - Ressurection Absurd (EP)_By_Maleficus.rar
2014-07-07 20:49 - 2013-11-24 09:55 - 00337408 ___SH () C:\Users\Petr\Downloads\Thumbs.db
2014-07-07 20:46 - 2014-07-07 20:44 - 42986356 _____ () C:\Users\Petr\Downloads\1990 - The Eternal Fall (EP).rar
2014-07-06 16:53 - 2014-05-11 14:15 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-07-06 16:52 - 2014-07-06 16:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-07-06 16:51 - 2014-07-06 16:52 - 00264616 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\javaws.exe
2014-07-06 16:51 - 2014-07-06 16:51 - 00175528 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\javaw.exe
2014-07-06 16:51 - 2014-07-06 16:51 - 00175528 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\java.exe
2014-07-06 16:51 - 2014-07-06 16:51 - 00098216 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll
2014-07-06 16:51 - 2014-07-06 16:51 - 00000000 ____D () C:\Program Files (x86)\Java
2014-07-06 13:31 - 2014-06-26 06:54 - 00000000 ____D () C:\Users\Petr\Desktop\cimrman
2014-07-01 00:45 - 2014-07-09 13:14 - 00688128 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepdu.dll
2014-06-29 20:33 - 2014-06-29 20:10 - 00000000 ____D () C:\Program Files (x86)\Sniper Elite 3
2014-06-29 20:32 - 2014-06-29 20:32 - 00001016 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sniper Elite 3.lnk
2014-06-29 20:32 - 2014-06-29 20:32 - 00001004 _____ () C:\Users\Public\Desktop\Sniper Elite 3.lnk
2014-06-29 20:08 - 2014-06-29 19:29 - 00000000 ____D () C:\Users\Petr\AppData\Local\Sniper3
2014-06-29 19:02 - 2014-06-29 19:02 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\WinUpdate
2014-06-29 11:49 - 2014-06-29 11:49 - 00000917 _____ () C:\Users\Public\Desktop\AIMP3.lnk
2014-06-29 11:49 - 2014-06-29 11:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AIMP3
2014-06-29 11:49 - 2013-09-08 09:53 - 00000000 ____D () C:\Program Files (x86)\AIMP3
2014-06-29 11:46 - 2014-06-29 11:46 - 04812672 _____ (Piriform Ltd) C:\Users\Petr\Downloads\ccsetup415.exe
2014-06-29 11:46 - 2013-05-28 15:11 - 00000834 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2014-06-29 11:46 - 2013-05-28 15:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-06-29 11:46 - 2013-05-28 15:11 - 00000000 ____D () C:\Program Files\CCleaner
2014-06-29 08:58 - 2014-06-29 08:58 - 00000000 ____D () C:\Users\Petr\Documents\PETRMALENKA
2014-06-29 08:50 - 2014-06-29 08:50 - 00001221 _____ () C:\Users\Petr\Desktop\Enemy Front PROPER.lnk
2014-06-29 08:50 - 2014-06-29 08:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Enemy Front PROPER
2014-06-29 08:47 - 2014-06-29 08:47 - 00000000 ____D () C:\Program Files (x86)\Enemy Front PROPER
2014-06-29 08:27 - 2013-06-14 12:17 - 00000000 ____D () C:\Users\Petr\Documents\My Games
2014-06-29 08:24 - 2014-06-29 08:24 - 00001217 _____ () C:\Users\Petr\Desktop\Uplay.lnk
2014-06-28 09:48 - 2014-07-09 13:14 - 00527360 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2014-06-28 09:07 - 2014-07-09 13:14 - 00385536 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2014-06-26 22:55 - 2014-07-10 16:11 - 00703968 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2014-06-26 22:55 - 2014-07-10 16:11 - 00105440 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2014-06-23 06:46 - 2014-06-23 06:46 - 01058200 _____ (Adobe) C:\Users\Petr\Downloads\install_flashplayer14x32au_chrd_dn_aaa_aih.exe
2014-06-21 17:41 - 2014-06-21 17:41 - 00001367 _____ () C:\Users\Public\Desktop\Loutkové divadlo - Ztracené město.lnk
2014-06-21 17:41 - 2014-06-21 17:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Loutkové divadlo - Ztracené město
2014-06-21 17:41 - 2014-06-21 17:41 - 00000000 ____D () C:\Program Files (x86)\Loutkove divadlo - Ztracene mesto
2014-06-20 18:24 - 2013-12-18 18:56 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Artogon
2014-06-20 18:22 - 2013-12-23 16:34 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\URSE Games
2014-06-19 19:19 - 2014-06-18 19:55 - 00000000 ____D () C:\Program Files (x86)\WarThunder
2014-06-19 06:55 - 2013-10-09 20:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2014-06-19 03:39 - 2014-07-09 13:15 - 23464448 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2014-06-19 02:48 - 2014-07-09 13:15 - 02768384 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2014-06-19 02:16 - 2014-07-09 13:15 - 17276416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2014-06-19 02:09 - 2014-07-09 13:15 - 00452608 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll
2014-06-19 01:51 - 2014-07-09 13:15 - 05721088 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2014-06-19 01:50 - 2014-07-09 13:15 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2014-06-19 01:48 - 2014-07-09 13:15 - 00292864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2014-06-19 01:46 - 2014-07-09 13:15 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2014-06-19 01:39 - 2014-07-09 13:15 - 00608768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2014-06-19 01:33 - 2014-07-09 13:15 - 00631808 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2014-06-19 01:32 - 2014-07-09 13:15 - 02179072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2014-06-19 01:27 - 2014-07-09 13:15 - 02040832 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2014-06-19 01:12 - 2014-07-09 13:15 - 00367616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll
2014-06-19 00:59 - 2014-07-09 13:15 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2014-06-19 00:58 - 2014-07-09 13:15 - 02266112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2014-06-19 00:58 - 2014-07-09 13:15 - 00239616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2014-06-19 00:57 - 2014-07-09 13:15 - 00225280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2014-06-19 00:52 - 2014-07-09 13:15 - 04254720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2014-06-19 00:51 - 2014-07-09 13:15 - 13527040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2014-06-19 00:49 - 2014-07-09 13:15 - 00526336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2014-06-19 00:45 - 2014-07-09 13:15 - 01964544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2014-06-19 00:35 - 2014-07-09 13:15 - 11742208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2014-06-19 00:34 - 2014-07-09 13:15 - 01393664 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2014-06-19 00:15 - 2014-07-09 13:15 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2014-06-19 00:13 - 2014-07-09 13:15 - 01791488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2014-06-19 00:09 - 2014-07-09 13:15 - 01139200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2014-06-19 00:07 - 2014-07-09 13:15 - 00704512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2014-06-18 20:22 - 2013-10-25 12:30 - 00000000 ____D () C:\WINDOWS\SysWOW64\directx
2014-06-18 19:56 - 2014-06-18 19:56 - 00000000 ____D () C:\Users\Petr\AppData\Local\WarThunder
2014-06-18 19:56 - 2014-06-18 19:56 - 00000000 ____D () C:\ProgramData\WarThunder
2014-06-18 19:54 - 2014-06-18 19:54 - 04411640 _____ (Gaijin Entertainment ) C:\Users\Petr\Downloads\wt_launcher_1.0.1.361.exe
2014-06-18 19:44 - 2013-09-28 09:34 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\vlc
2014-06-18 15:50 - 2013-05-28 13:10 - 00003944 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2014-06-18 15:50 - 2013-05-28 13:10 - 00003708 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2014-06-18 15:49 - 2014-06-18 15:49 - 00003834 _____ () C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1397060391
2014-06-18 15:49 - 2014-04-09 18:19 - 00000000 ____D () C:\Program Files (x86)\Opera
2014-06-17 00:26 - 2014-07-09 13:19 - 00779264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\osk.exe
2014-06-17 00:24 - 2014-07-09 13:19 - 00834048 _____ (Microsoft Corporation) C:\WINDOWS\system32\osk.exe
2014-06-14 22:47 - 2014-06-14 22:47 - 00000656 _____ () C:\Users\Petr\Desktop\Total Commander 64 bit.lnk
2014-06-14 22:47 - 2014-06-14 22:47 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Total Commander
2014-06-14 22:47 - 2014-06-14 22:47 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\GHISLER
2014-06-14 22:47 - 2014-06-14 22:47 - 00000000 ____D () C:\totalcmd
2014-06-14 22:46 - 2014-06-14 22:46 - 04626896 _____ (Ghisler Software GmbH) C:\Users\Petr\Downloads\tcm851ax64.exe
2014-06-14 19:11 - 2014-06-14 19:11 - 00000000 ____D () C:\ProgramData\Total Gameplay
2014-06-14 19:03 - 2014-06-14 19:03 - 00000000 ____D () C:\ProgramData\Funny Bear Studio
2014-06-14 19:00 - 2014-06-14 19:00 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Specialbit
2014-06-14 18:55 - 2013-12-01 19:42 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\ERS Game Studios
2014-06-13 18:49 - 2013-11-10 11:36 - 00000000 ____D () C:\ProgramData\Package Cache
2014-06-13 18:49 - 2013-10-18 22:53 - 00000000 ____D () C:\ProgramData\Steam
2014-06-13 18:43 - 2014-06-13 18:43 - 00001285 _____ () C:\Users\Public\Desktop\Wolfenstein. The New Order.lnk
2014-06-13 18:43 - 2014-06-13 18:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wolfenstein. The New Order
2014-06-13 18:43 - 2014-06-13 17:49 - 00000000 ____D () C:\Program Files (x86)\Wolfenstein. The New Order
Some content of TEMP:
====================
C:\Users\Petr\AppData\Local\Temp\Quarantine.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-07-11 20:48
==================== End Of Log ============================
Ale ukázal se jen jeden log:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-07-2014
Ran by Petr (administrator) on PETRMALENKA on 12-07-2014 13:10:02
Running from C:\Users\Petr\Desktop
Platform: Windows 8.1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(VIA Technologies, Inc.) C:\Windows\System32\ViakaraokeSrv.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12503184 2012-06-11] (Realtek Semiconductor)
HKLM\...\Run: [ShadowPlay] => C:\WINDOWS\system32\nvspcap64.dll [1225920 2014-04-30] (NVIDIA Corporation)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2199840 2014-04-30] (NVIDIA Corporation)
HKLM-x32\...\Run: [HDAudDeck] => C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [5123216 2012-06-08] (VIA)
HKLM-x32\...\Run: [VirtualCloneDrive] => C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [88984 2013-03-10] (Elaborate Bytes AG)
HKLM-x32\...\Run: [NWEReboot] => [X]
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4086432 2014-07-08] (AVAST Software)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKLM-x32\...\Run: [NPSStartup] => [X]
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-05-07] (Oracle Corporation)
Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-3832753693-3646972138-179110667-1004\...\MountPoints2: {45aa29d5-bf20-11e3-bfb6-902b34a84e89} - "H:\setup.exe"
ShellIconOverlayIdentifiers: SkyDrive1 -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File
ShellIconOverlayIdentifiers: SkyDrive2 -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File
ShellIconOverlayIdentifiers: SkyDrive3 -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File
ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
ShellIconOverlayIdentifiers: DropboxExt1 -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: DropboxExt2 -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: DropboxExt3 -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: DropboxExt4 -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: GDriveBlacklistedOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google)
ShellIconOverlayIdentifiers: GDriveSharedEditOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google)
ShellIconOverlayIdentifiers: GDriveSharedOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google)
ShellIconOverlayIdentifiers: GDriveSharedViewOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google)
ShellIconOverlayIdentifiers: GDriveSyncedOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google)
ShellIconOverlayIdentifiers: GDriveSyncingOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google)
ShellIconOverlayIdentifiers-x32: SkyDrive1 -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File
ShellIconOverlayIdentifiers-x32: SkyDrive2 -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File
ShellIconOverlayIdentifiers-x32: SkyDrive3 -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File
ShellIconOverlayIdentifiers-x32: DropboxExt1 -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers-x32: DropboxExt2 -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers-x32: DropboxExt3 -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers-x32: DropboxExt4 -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => No File
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ie
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
SearchScopes: HKLM - DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL =
SearchScopes: HKLM-x32 - DefaultScope value is missing.
BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Free Download Manager - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files (x86)\Free Download Manager\iefdm2.dll (FreeDownloadManager.ORG)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - No Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
Tcpip\Parameters: [DhcpNameServer] 83.240.0.136 192.168.0.1
FireFox:
========
FF ProfilePath: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\iq10j0za.default
FF SearchEngineOrder.1: Google
FF SelectedSearchEngine: Google
FF Homepage: http://www.google.com
FF Keyword.URL: https://www.google.com/search
FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF64_14_0_0_145.dll ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=10.60.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.60.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll No File
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll No File
FF Plugin-x32: @videolan.org/vlc,version=2.0.7 - C:\Program Files (x86)\Free Media Player\npvlc.dll (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 - C:\Program Files (x86)\Free Media Player\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: ubisoft.com/uplaypc - C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll ()
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\mapy-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-10-26]
FF Extension: Free Download Manager plugin - C:\ProgramData\Free Download Manager\Firefox\Extensions\1.6.0.7 [2014-05-17]
Chrome:
=======
CHR DefaultSearchKeyword: seznam.cz
CHR DefaultSearchProvider: Seznam
CHR DefaultSearchURL: http://search.seznam.cz/?q={searchTerms}
CHR DefaultNewTabURL:
CHR Extension: (Docs) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-07-11]
CHR Extension: (Disk Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-07-11]
CHR Extension: (YouTube) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-07-11]
CHR Extension: (Vyhledávání Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-07-11]
CHR Extension: (avast! Online Security) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-07-11]
CHR Extension: (Gmail) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-07-11]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-07-08]
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Services (Whitelisted) =================
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-07-08] (AVAST Software)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1618888 2014-04-30] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21009352 2014-04-30] (NVIDIA Corporation)
R2 VIAKaraokeService; C:\Windows\system32\viakaraokesrv.exe [27760 2012-05-04] (VIA Technologies, Inc.)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-03-24] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-03-24] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-07-08] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-07-08] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-07-08] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-07-08] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1041168 2014-07-08] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [427360 2014-07-08] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [92008 2014-07-08] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [224896 2014-07-08] ()
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19744 2014-04-30] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation)
S3 trufos; C:\Windows\System32\drivers\trufos.sys [350160 2014-07-10] (BitDefender S.R.L.)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123224 2014-03-24] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-07-12 13:10 - 2014-07-12 13:10 - 00013559 _____ () C:\Users\Petr\Desktop\FRST.txt
2014-07-12 13:09 - 2014-07-12 13:09 - 02084864 _____ (Farbar) C:\Users\Petr\Desktop\FRST64.exe
2014-07-12 08:37 - 2014-07-12 08:57 - 00029144 _____ () C:\WINDOWS\WindowsUpdate.log
2014-07-11 20:16 - 2014-07-11 20:16 - 04181856 _____ (Kaspersky Lab ZAO) C:\Users\Petr\Desktop\tdsskiller.exe
2014-07-11 19:59 - 2014-07-11 19:59 - 00030312 _____ () C:\WINDOWS\system32\Drivers\TrueSight.sys
2014-07-11 18:26 - 2014-07-11 18:26 - 00000000 ____D () C:\Users\Petr\AppData\Local\SkinSoft
2014-07-11 18:25 - 2014-07-11 18:25 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\freepicturesolutions
2014-07-11 18:06 - 2014-07-12 08:39 - 00005155 _____ () C:\WINDOWS\system32\lvcoinst.log
2014-07-11 18:06 - 2014-07-11 18:16 - 00000000 _____ () C:\WINDOWS\system32\Drivers\lvuvc.hs
2014-07-11 18:06 - 2014-07-11 18:06 - 00000000 ____D () C:\Program Files\Common Files\logishrd
2014-07-11 16:43 - 2014-07-11 16:43 - 109574432 _____ (Oracle Corporation) C:\Users\Petr\Downloads\VirtualBox-4.3.12-93733-Win.exe
2014-07-11 14:57 - 2014-07-11 14:58 - 340506613 _____ () C:\Users\Petr\Downloads\Krabathor - 20 Years Of Madness (Compilation) (2005).rar
2014-07-11 13:56 - 2014-07-11 13:56 - 00000000 ____D () C:\ProgramData\RogueKiller
2014-07-11 13:55 - 2014-07-11 13:55 - 05336664 _____ () C:\Users\Petr\Desktop\RogueKillerX64.exe
2014-07-11 13:47 - 2014-07-11 13:47 - 00001009 _____ () C:\Users\Petr\Desktop\JRT.txt
2014-07-11 13:38 - 2014-07-11 13:38 - 01016261 _____ (Thisisu) C:\Users\Petr\Desktop\JRT.exe
2014-07-10 19:49 - 2014-07-10 19:50 - 00122584 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2014-07-10 19:48 - 2014-07-10 19:48 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Petr\Downloads\mbam-setup-2.0.2.1012.exe
2014-07-10 19:48 - 2014-07-10 19:48 - 00001130 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-07-10 19:48 - 2014-07-10 19:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-07-10 19:48 - 2014-07-10 19:48 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-07-10 19:48 - 2014-05-12 07:26 - 00091352 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2014-07-10 19:48 - 2014-05-12 07:26 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2014-07-10 19:48 - 2014-05-12 07:25 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
2014-07-10 19:46 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\WINDOWS\SysWOW64\sqlite3.dll
2014-07-10 19:44 - 2014-07-10 19:44 - 01348263 _____ () C:\Users\Petr\Desktop\AdwCleaner.exe
2014-07-10 19:39 - 2014-07-11 21:09 - 00000000 ____D () C:\Users\Petr\AppData\Local\CrashDumps
2014-07-10 19:39 - 2014-07-10 19:39 - 00448512 _____ (OldTimer Tools) C:\Users\Petr\Downloads\TFC.exe
2014-07-10 18:30 - 2014-07-10 18:30 - 00006754 _____ () C:\Users\Petr\Desktop\hijackthis.log
2014-07-10 18:21 - 2014-07-10 18:21 - 00000029 _____ () C:\WINDOWS\Lic.xxx
2014-07-10 18:20 - 2014-07-10 18:20 - 00632064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr80.dll
2014-07-10 18:20 - 2014-07-10 18:20 - 00572928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp90.dll
2014-07-10 18:20 - 2014-07-10 18:20 - 00554240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp80.dll
2014-07-10 18:20 - 2014-07-10 18:20 - 00350160 _____ (BitDefender S.R.L.) C:\WINDOWS\system32\Drivers\trufos.sys
2014-07-10 18:20 - 2014-07-10 18:19 - 00655872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr90.dll
2014-07-10 18:19 - 2014-07-10 18:19 - 00152808 _____ (MicroWorld Technologies Inc.) C:\WINDOWS\SysWOW64\eEmpty.exe
2014-07-10 18:19 - 2014-07-10 18:19 - 00001046 _____ () C:\Users\Petr\Desktop\MWAVSCAN.lnk
2014-07-10 18:19 - 2014-07-10 18:19 - 00000000 ____D () C:\ProgramData\MicroWorld
2014-07-10 18:16 - 2014-07-10 18:17 - 216155864 _____ () C:\Users\Petr\Documents\mwav.exe
2014-07-10 18:16 - 2014-07-10 18:16 - 00000351 _____ () C:\Users\Petr\Documents\Resume download for mwav.exe.html
2014-07-10 18:16 - 2014-07-10 18:16 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Download Manager
2014-07-10 16:19 - 2014-07-10 16:19 - 00000000 ____N () C:\autoexec.bat
2014-07-10 16:19 - 2014-07-10 16:19 - 00000000 ____D () C:\Program Files\Enigma Software Group
2014-07-10 16:11 - 2014-06-26 22:55 - 00703968 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2014-07-10 16:11 - 2014-06-26 22:55 - 00105440 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2014-07-10 16:10 - 2014-04-14 05:29 - 01018880 _____ (Microsoft Corporation) C:\WINDOWS\system32\termsrv.dll
2014-07-10 16:09 - 2014-07-10 16:09 - 00000000 ___SD () C:\WINDOWS\system32\CompatTel
2014-07-09 18:33 - 2014-07-09 18:42 - 00000000 ____D () C:\Users\Petr\Desktop\Nová složka (2)
2014-07-09 13:19 - 2014-06-17 00:26 - 00779264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\osk.exe
2014-07-09 13:19 - 2014-06-17 00:24 - 00834048 _____ (Microsoft Corporation) C:\WINDOWS\system32\osk.exe
2014-07-09 13:19 - 2014-06-06 16:20 - 04190720 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2014-07-09 13:19 - 2014-05-30 05:03 - 00563200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2014-07-09 13:17 - 2014-05-29 14:02 - 00565576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2014-07-09 13:17 - 2014-05-29 09:55 - 00735232 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll
2014-07-09 13:17 - 2014-05-29 08:40 - 00735232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adtschema.dll
2014-07-09 13:17 - 2014-05-29 08:37 - 00436224 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll
2014-07-09 13:17 - 2014-05-29 07:34 - 00318976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll
2014-07-09 13:17 - 2014-05-29 07:27 - 01417216 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2014-07-09 13:15 - 2014-06-19 03:39 - 23464448 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2014-07-09 13:15 - 2014-06-19 02:48 - 02768384 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2014-07-09 13:15 - 2014-06-19 02:16 - 17276416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2014-07-09 13:15 - 2014-06-19 02:09 - 00452608 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll
2014-07-09 13:15 - 2014-06-19 01:51 - 05721088 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2014-07-09 13:15 - 2014-06-19 01:50 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2014-07-09 13:15 - 2014-06-19 01:48 - 00292864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2014-07-09 13:15 - 2014-06-19 01:46 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2014-07-09 13:15 - 2014-06-19 01:39 - 00608768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2014-07-09 13:15 - 2014-06-19 01:33 - 00631808 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2014-07-09 13:15 - 2014-06-19 01:32 - 02179072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2014-07-09 13:15 - 2014-06-19 01:27 - 02040832 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2014-07-09 13:15 - 2014-06-19 01:12 - 00367616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll
2014-07-09 13:15 - 2014-06-19 00:59 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2014-07-09 13:15 - 2014-06-19 00:58 - 02266112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2014-07-09 13:15 - 2014-06-19 00:58 - 00239616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2014-07-09 13:15 - 2014-06-19 00:57 - 00225280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2014-07-09 13:15 - 2014-06-19 00:52 - 04254720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2014-07-09 13:15 - 2014-06-19 00:51 - 13527040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2014-07-09 13:15 - 2014-06-19 00:49 - 00526336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2014-07-09 13:15 - 2014-06-19 00:45 - 01964544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2014-07-09 13:15 - 2014-06-19 00:35 - 11742208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2014-07-09 13:15 - 2014-06-19 00:34 - 01393664 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2014-07-09 13:15 - 2014-06-19 00:15 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2014-07-09 13:15 - 2014-06-19 00:13 - 01791488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2014-07-09 13:15 - 2014-06-19 00:09 - 01139200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2014-07-09 13:15 - 2014-06-19 00:07 - 00704512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2014-07-09 13:14 - 2014-07-01 00:45 - 00688128 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepdu.dll
2014-07-09 13:14 - 2014-06-28 09:48 - 00527360 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2014-07-09 13:14 - 2014-06-28 09:07 - 00385536 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2014-07-09 13:14 - 2014-06-06 15:04 - 00586240 _____ (Microsoft Corporation) C:\WINDOWS\system32\qedit.dll
2014-07-09 13:14 - 2014-06-06 14:18 - 00488960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qedit.dll
2014-07-09 13:13 - 2014-05-31 12:07 - 00054776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2014-07-09 13:13 - 2014-05-31 12:06 - 00555736 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2014-07-09 13:13 - 2014-05-31 05:40 - 13287936 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2014-07-09 13:13 - 2014-05-31 05:30 - 11792384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2014-07-09 13:13 - 2014-05-31 05:12 - 00249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-07-09 13:13 - 2014-05-31 05:06 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll
2014-07-09 13:13 - 2014-05-31 05:03 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2014-07-09 13:13 - 2014-05-31 05:01 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-07-09 13:13 - 2014-05-31 04:56 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll
2014-07-09 13:13 - 2014-05-31 04:54 - 00666624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2014-07-09 13:13 - 2014-05-31 04:48 - 03463680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2014-07-09 13:13 - 2014-05-31 04:37 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2014-07-09 13:13 - 2014-05-31 04:36 - 00923136 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2014-07-09 13:13 - 2014-05-31 04:35 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2014-07-09 13:13 - 2014-05-31 04:32 - 00756224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll
2014-07-09 13:08 - 2014-07-09 13:08 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe
2014-07-08 18:50 - 2014-07-08 18:50 - 00000270 __RSH () C:\ProgramData\ntuser.pol
2014-07-08 18:50 - 2014-07-08 18:50 - 00000000 ____D () C:\Users\HomeGroupUser$
2014-07-08 18:50 - 2014-07-08 18:50 - 00000000 ____D () C:\Users\Guest
2014-07-08 18:50 - 2014-07-08 18:50 - 00000000 ____D () C:\Users\Administrator
2014-07-08 18:50 - 2014-07-08 18:50 - 00000000 ____D () C:\ProgramData\4e0cb922ab0e9d81
2014-07-08 18:48 - 2014-07-08 18:48 - 00427360 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsp.sys
2014-07-08 18:48 - 2014-07-08 18:48 - 00043152 _____ (AVAST Software) C:\WINDOWS\avastSS.scr
2014-07-08 18:48 - 2014-07-08 18:48 - 00003924 _____ () C:\WINDOWS\System32\Tasks\avast! Emergency Update
2014-07-08 16:50 - 2014-07-08 16:59 - 115651372 _____ () C:\Users\Petr\Downloads\Souldrainer.14.A-dw.rar
2014-07-08 16:46 - 2014-07-08 16:47 - 132325165 _____ () C:\Users\Petr\Downloads\ND-Bled_White-2014-By Samaritianin.rar
2014-07-07 20:45 - 2014-07-07 20:56 - 101875738 _____ () C:\Users\Petr\Downloads\Morgoth - Feel Sorry For The Fanatic (1996).rar
2014-07-07 20:45 - 2014-07-07 20:55 - 101170775 _____ () C:\Users\Petr\Downloads\Morgoth - Odium (1993) by DanyBoggot.rar
2014-07-07 20:45 - 2014-07-07 20:54 - 88891361 _____ () C:\Users\Petr\Downloads\Morgoth - Cursed [1991].rar
2014-07-07 20:44 - 2014-07-07 20:50 - 54246872 _____ () C:\Users\Petr\Downloads\1989 - Ressurection Absurd (EP)_By_Maleficus.rar
2014-07-07 20:44 - 2014-07-07 20:46 - 42986356 _____ () C:\Users\Petr\Downloads\1990 - The Eternal Fall (EP).rar
2014-07-06 16:52 - 2014-07-06 16:51 - 00264616 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\javaws.exe
2014-07-06 16:51 - 2014-07-06 16:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-07-06 16:51 - 2014-07-06 16:51 - 00175528 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\javaw.exe
2014-07-06 16:51 - 2014-07-06 16:51 - 00175528 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\java.exe
2014-07-06 16:51 - 2014-07-06 16:51 - 00098216 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll
2014-07-06 16:51 - 2014-07-06 16:51 - 00000000 ____D () C:\Program Files (x86)\Java
2014-06-29 20:32 - 2014-06-29 20:32 - 00001016 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sniper Elite 3.lnk
2014-06-29 20:32 - 2014-06-29 20:32 - 00001004 _____ () C:\Users\Public\Desktop\Sniper Elite 3.lnk
2014-06-29 20:10 - 2014-06-29 20:33 - 00000000 ____D () C:\Program Files (x86)\Sniper Elite 3
2014-06-29 19:29 - 2014-06-29 20:08 - 00000000 ____D () C:\Users\Petr\AppData\Local\Sniper3
2014-06-29 19:02 - 2014-06-29 19:02 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\WinUpdate
2014-06-29 11:49 - 2014-06-29 11:49 - 00000917 _____ () C:\Users\Public\Desktop\AIMP3.lnk
2014-06-29 11:49 - 2014-06-29 11:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AIMP3
2014-06-29 11:46 - 2014-06-29 11:46 - 04812672 _____ (Piriform Ltd) C:\Users\Petr\Downloads\ccsetup415.exe
2014-06-29 08:58 - 2014-06-29 08:58 - 00000000 ____D () C:\Users\Petr\Documents\PETRMALENKA
2014-06-29 08:50 - 2014-06-29 08:50 - 00001221 _____ () C:\Users\Petr\Desktop\Enemy Front PROPER.lnk
2014-06-29 08:50 - 2014-06-29 08:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Enemy Front PROPER
2014-06-29 08:47 - 2014-06-29 08:47 - 00000000 ____D () C:\Program Files (x86)\Enemy Front PROPER
2014-06-29 08:24 - 2014-06-29 08:24 - 00001217 _____ () C:\Users\Petr\Desktop\Uplay.lnk
2014-06-28 21:29 - 2014-05-23 22:04 - 00000000 ____D () C:\Users\Petr\Desktop\Watch Dogs PC CZ + návod
2014-06-26 06:54 - 2014-07-06 13:31 - 00000000 ____D () C:\Users\Petr\Desktop\cimrman
2014-06-23 06:46 - 2014-06-23 06:46 - 01058200 _____ (Adobe) C:\Users\Petr\Downloads\install_flashplayer14x32au_chrd_dn_aaa_aih.exe
2014-06-21 17:41 - 2014-06-21 17:41 - 00001367 _____ () C:\Users\Public\Desktop\Loutkové divadlo - Ztracené město.lnk
2014-06-21 17:41 - 2014-06-21 17:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Loutkové divadlo - Ztracené město
2014-06-21 17:41 - 2014-06-21 17:41 - 00000000 ____D () C:\Program Files (x86)\Loutkove divadlo - Ztracene mesto
2014-06-18 19:56 - 2014-06-18 19:56 - 00000000 ____D () C:\Users\Petr\AppData\Local\WarThunder
2014-06-18 19:56 - 2014-06-18 19:56 - 00000000 ____D () C:\ProgramData\WarThunder
2014-06-18 19:55 - 2014-06-19 19:19 - 00000000 ____D () C:\Program Files (x86)\WarThunder
2014-06-18 19:54 - 2014-06-18 19:54 - 04411640 _____ (Gaijin Entertainment ) C:\Users\Petr\Downloads\wt_launcher_1.0.1.361.exe
2014-06-18 15:49 - 2014-06-18 15:49 - 00003834 _____ () C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1397060391
2014-06-14 22:47 - 2014-06-14 22:47 - 00000656 _____ () C:\Users\Petr\Desktop\Total Commander 64 bit.lnk
2014-06-14 22:47 - 2014-06-14 22:47 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Total Commander
2014-06-14 22:47 - 2014-06-14 22:47 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\GHISLER
2014-06-14 22:47 - 2014-06-14 22:47 - 00000000 ____D () C:\totalcmd
2014-06-14 22:46 - 2014-06-14 22:46 - 04626896 _____ (Ghisler Software GmbH) C:\Users\Petr\Downloads\tcm851ax64.exe
2014-06-14 19:11 - 2014-06-14 19:11 - 00000000 ____D () C:\ProgramData\Total Gameplay
2014-06-14 19:03 - 2014-06-14 19:03 - 00000000 ____D () C:\ProgramData\Funny Bear Studio
2014-06-14 19:00 - 2014-06-14 19:00 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Specialbit
2014-06-13 18:43 - 2014-06-13 18:43 - 00001285 _____ () C:\Users\Public\Desktop\Wolfenstein. The New Order.lnk
2014-06-13 18:43 - 2014-06-13 18:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wolfenstein. The New Order
2014-06-13 17:49 - 2014-06-13 18:43 - 00000000 ____D () C:\Program Files (x86)\Wolfenstein. The New Order
==================== One Month Modified Files and Folders =======
2014-07-12 13:10 - 2014-07-12 13:10 - 00013559 _____ () C:\Users\Petr\Desktop\FRST.txt
2014-07-12 13:10 - 2014-02-08 12:47 - 00000000 ____D () C:\FRST
2014-07-12 13:09 - 2014-07-12 13:09 - 02084864 _____ (Farbar) C:\Users\Petr\Desktop\FRST64.exe
2014-07-12 13:05 - 2013-10-25 10:49 - 00000000 __RDO () C:\Users\Petr\SkyDrive
2014-07-12 13:05 - 2013-05-28 13:10 - 00000968 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2014-07-12 09:22 - 2014-02-02 13:37 - 00000914 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2014-07-12 09:02 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\sru
2014-07-12 08:57 - 2014-07-12 08:37 - 00029144 _____ () C:\WINDOWS\WindowsUpdate.log
2014-07-12 08:55 - 2013-05-28 13:10 - 00000972 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2014-07-12 08:39 - 2014-07-11 18:06 - 00005155 _____ () C:\WINDOWS\system32\lvcoinst.log
2014-07-12 08:05 - 2013-11-09 01:00 - 00003978 _____ () C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{DD82B7AD-59C8-4333-BEDC-F1BACBC50966}
2014-07-11 22:25 - 2014-01-02 14:38 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\TS3Client
2014-07-11 21:09 - 2014-07-10 19:39 - 00000000 ____D () C:\Users\Petr\AppData\Local\CrashDumps
2014-07-11 21:09 - 2014-03-22 11:09 - 00000000 ____D () C:\WINDOWS\Minidump
2014-07-11 21:09 - 2013-09-08 09:53 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\AIMP3
2014-07-11 21:09 - 2013-05-28 16:12 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Free Download Manager
2014-07-11 20:37 - 2013-10-25 10:27 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-07-11 20:37 - 2013-08-22 16:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-07-11 20:16 - 2014-07-11 20:16 - 04181856 _____ (Kaspersky Lab ZAO) C:\Users\Petr\Desktop\tdsskiller.exe
2014-07-11 19:59 - 2014-07-11 19:59 - 00030312 _____ () C:\WINDOWS\system32\Drivers\TrueSight.sys
2014-07-11 19:48 - 2013-05-28 13:08 - 00003598 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3832753693-3646972138-179110667-1004
2014-07-11 18:26 - 2014-07-11 18:26 - 00000000 ____D () C:\Users\Petr\AppData\Local\SkinSoft
2014-07-11 18:25 - 2014-07-11 18:25 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\freepicturesolutions
2014-07-11 18:16 - 2014-07-11 18:06 - 00000000 _____ () C:\WINDOWS\system32\Drivers\lvuvc.hs
2014-07-11 18:06 - 2014-07-11 18:06 - 00000000 ____D () C:\Program Files\Common Files\logishrd
2014-07-11 18:06 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\AppReadiness
2014-07-11 18:04 - 2013-10-25 10:44 - 01771646 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2014-07-11 18:04 - 2013-09-30 05:56 - 00746994 _____ () C:\WINDOWS\system32\perfh005.dat
2014-07-11 18:04 - 2013-09-30 05:56 - 00155994 _____ () C:\WINDOWS\system32\perfc005.dat
2014-07-11 16:43 - 2014-07-11 16:43 - 109574432 _____ (Oracle Corporation) C:\Users\Petr\Downloads\VirtualBox-4.3.12-93733-Win.exe
2014-07-11 14:58 - 2014-07-11 14:57 - 340506613 _____ () C:\Users\Petr\Downloads\Krabathor - 20 Years Of Madness (Compilation) (2005).rar
2014-07-11 13:56 - 2014-07-11 13:56 - 00000000 ____D () C:\ProgramData\RogueKiller
2014-07-11 13:55 - 2014-07-11 13:55 - 05336664 _____ () C:\Users\Petr\Desktop\RogueKillerX64.exe
2014-07-11 13:47 - 2014-07-11 13:47 - 00001009 _____ () C:\Users\Petr\Desktop\JRT.txt
2014-07-11 13:38 - 2014-07-11 13:38 - 01016261 _____ (Thisisu) C:\Users\Petr\Desktop\JRT.exe
2014-07-11 13:32 - 2014-02-05 20:41 - 00000000 ____D () C:\AdwCleaner
2014-07-10 19:50 - 2014-07-10 19:49 - 00122584 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2014-07-10 19:48 - 2014-07-10 19:48 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Petr\Downloads\mbam-setup-2.0.2.1012.exe
2014-07-10 19:48 - 2014-07-10 19:48 - 00001130 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-07-10 19:48 - 2014-07-10 19:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-07-10 19:48 - 2014-07-10 19:48 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-07-10 19:48 - 2014-01-02 14:56 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-07-10 19:44 - 2014-07-10 19:44 - 01348263 _____ () C:\Users\Petr\Desktop\AdwCleaner.exe
2014-07-10 19:41 - 2013-10-25 10:32 - 00000000 ____D () C:\Users\Petr
2014-07-10 19:39 - 2014-07-10 19:39 - 00448512 _____ (OldTimer Tools) C:\Users\Petr\Downloads\TFC.exe
2014-07-10 19:39 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\rescache
2014-07-10 18:57 - 2013-08-22 16:44 - 00500968 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2014-07-10 18:56 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-07-10 18:56 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-07-10 18:54 - 2013-08-22 17:36 - 00000000 ___RD () C:\WINDOWS\ToastData
2014-07-10 18:54 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\WinStore
2014-07-10 18:35 - 2013-07-04 11:21 - 00618496 ___SH () C:\Users\Petr\Desktop\Thumbs.db
2014-07-10 18:30 - 2014-07-10 18:30 - 00006754 _____ () C:\Users\Petr\Desktop\hijackthis.log
2014-07-10 18:21 - 2014-07-10 18:21 - 00000029 _____ () C:\WINDOWS\Lic.xxx
2014-07-10 18:21 - 2014-02-05 19:26 - 00000000 ____D () C:\Users\Petr\Desktop\Castle of Illusion
2014-07-10 18:20 - 2014-07-10 18:20 - 00632064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr80.dll
2014-07-10 18:20 - 2014-07-10 18:20 - 00572928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp90.dll
2014-07-10 18:20 - 2014-07-10 18:20 - 00554240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp80.dll
2014-07-10 18:20 - 2014-07-10 18:20 - 00350160 _____ (BitDefender S.R.L.) C:\WINDOWS\system32\Drivers\trufos.sys
2014-07-10 18:19 - 2014-07-10 18:20 - 00655872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr90.dll
2014-07-10 18:19 - 2014-07-10 18:19 - 00152808 _____ (MicroWorld Technologies Inc.) C:\WINDOWS\SysWOW64\eEmpty.exe
2014-07-10 18:19 - 2014-07-10 18:19 - 00001046 _____ () C:\Users\Petr\Desktop\MWAVSCAN.lnk
2014-07-10 18:19 - 2014-07-10 18:19 - 00000000 ____D () C:\ProgramData\MicroWorld
2014-07-10 18:19 - 2013-08-22 15:25 - 00000114 _____ () C:\WINDOWS\win.ini
2014-07-10 18:17 - 2014-07-10 18:16 - 216155864 _____ () C:\Users\Petr\Documents\mwav.exe
2014-07-10 18:16 - 2014-07-10 18:16 - 00000351 _____ () C:\Users\Petr\Documents\Resume download for mwav.exe.html
2014-07-10 18:16 - 2014-07-10 18:16 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Download Manager
2014-07-10 18:06 - 2013-05-30 15:49 - 00000000 ____D () C:\Users\Petr\AppData\Local\Last.fm
2014-07-10 16:19 - 2014-07-10 16:19 - 00000000 ____N () C:\autoexec.bat
2014-07-10 16:19 - 2014-07-10 16:19 - 00000000 ____D () C:\Program Files\Enigma Software Group
2014-07-10 16:12 - 2012-07-26 09:59 - 00000000 ____D () C:\WINDOWS\CbsTemp
2014-07-10 16:11 - 2013-07-19 12:45 - 00000000 ____D () C:\WINDOWS\system32\MRT
2014-07-10 16:10 - 2013-08-22 15:25 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM
2014-07-10 16:10 - 2013-05-29 07:02 - 96441528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2014-07-10 16:09 - 2014-07-10 16:09 - 00000000 ___SD () C:\WINDOWS\system32\CompatTel
2014-07-10 16:09 - 2013-09-30 05:58 - 00000000 ____D () C:\Program Files\Windows Journal
2014-07-10 16:01 - 2014-04-29 14:20 - 00000000 ____D () C:\Users\Petr\Desktop\Nová složka
2014-07-09 18:42 - 2014-07-09 18:33 - 00000000 ____D () C:\Users\Petr\Desktop\Nová složka (2)
2014-07-09 13:08 - 2014-07-09 13:08 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe
2014-07-08 19:23 - 2013-08-31 08:58 - 00000000 ____D () C:\Program Files\Recuva
2014-07-08 19:22 - 2014-02-02 13:37 - 00003802 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2014-07-08 18:52 - 2013-08-22 15:25 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI
2014-07-08 18:50 - 2014-07-08 18:50 - 00000270 __RSH () C:\ProgramData\ntuser.pol
2014-07-08 18:50 - 2014-07-08 18:50 - 00000000 ____D () C:\Users\HomeGroupUser$
2014-07-08 18:50 - 2014-07-08 18:50 - 00000000 ____D () C:\Users\Guest
2014-07-08 18:50 - 2014-07-08 18:50 - 00000000 ____D () C:\Users\Administrator
2014-07-08 18:50 - 2014-07-08 18:50 - 00000000 ____D () C:\ProgramData\4e0cb922ab0e9d81
2014-07-08 18:50 - 2013-08-22 17:36 - 00000000 ___HD () C:\WINDOWS\system32\GroupPolicy
2014-07-08 18:50 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\GroupPolicy
2014-07-08 18:50 - 2013-05-28 13:10 - 00000000 ____D () C:\Program Files (x86)\Google
2014-07-08 18:48 - 2014-07-08 18:48 - 00427360 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsp.sys
2014-07-08 18:48 - 2014-07-08 18:48 - 00043152 _____ (AVAST Software) C:\WINDOWS\avastSS.scr
2014-07-08 18:48 - 2014-07-08 18:48 - 00003924 _____ () C:\WINDOWS\System32\Tasks\avast! Emergency Update
2014-07-08 18:48 - 2014-05-16 06:55 - 01041168 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsnx.sys
2014-07-08 18:48 - 2014-05-16 06:55 - 00092008 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswstm.sys
2014-07-08 18:48 - 2014-05-05 20:23 - 00029208 _____ () C:\WINDOWS\system32\Drivers\aswHwid.sys
2014-07-08 18:48 - 2013-10-26 14:21 - 00307344 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2014-07-08 18:48 - 2013-10-26 14:21 - 00224896 _____ () C:\WINDOWS\system32\Drivers\aswVmm.sys
2014-07-08 18:48 - 2013-10-26 14:21 - 00093568 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2014-07-08 18:48 - 2013-10-26 14:21 - 00079184 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2014-07-08 18:48 - 2013-10-26 14:21 - 00065776 _____ () C:\WINDOWS\system32\Drivers\aswRvrt.sys
2014-07-08 18:48 - 2013-10-26 14:21 - 00001988 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2014-07-08 16:59 - 2014-07-08 16:50 - 115651372 _____ () C:\Users\Petr\Downloads\Souldrainer.14.A-dw.rar
2014-07-08 16:47 - 2014-07-08 16:46 - 132325165 _____ () C:\Users\Petr\Downloads\ND-Bled_White-2014-By Samaritianin.rar
2014-07-08 15:55 - 2013-05-28 13:10 - 00002203 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-07-07 20:56 - 2014-07-07 20:45 - 101875738 _____ () C:\Users\Petr\Downloads\Morgoth - Feel Sorry For The Fanatic (1996).rar
2014-07-07 20:55 - 2014-07-07 20:45 - 101170775 _____ () C:\Users\Petr\Downloads\Morgoth - Odium (1993) by DanyBoggot.rar
2014-07-07 20:54 - 2014-07-07 20:45 - 88891361 _____ () C:\Users\Petr\Downloads\Morgoth - Cursed [1991].rar
2014-07-07 20:50 - 2014-07-07 20:44 - 54246872 _____ () C:\Users\Petr\Downloads\1989 - Ressurection Absurd (EP)_By_Maleficus.rar
2014-07-07 20:49 - 2013-11-24 09:55 - 00337408 ___SH () C:\Users\Petr\Downloads\Thumbs.db
2014-07-07 20:46 - 2014-07-07 20:44 - 42986356 _____ () C:\Users\Petr\Downloads\1990 - The Eternal Fall (EP).rar
2014-07-06 16:53 - 2014-05-11 14:15 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-07-06 16:52 - 2014-07-06 16:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-07-06 16:51 - 2014-07-06 16:52 - 00264616 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\javaws.exe
2014-07-06 16:51 - 2014-07-06 16:51 - 00175528 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\javaw.exe
2014-07-06 16:51 - 2014-07-06 16:51 - 00175528 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\java.exe
2014-07-06 16:51 - 2014-07-06 16:51 - 00098216 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll
2014-07-06 16:51 - 2014-07-06 16:51 - 00000000 ____D () C:\Program Files (x86)\Java
2014-07-06 13:31 - 2014-06-26 06:54 - 00000000 ____D () C:\Users\Petr\Desktop\cimrman
2014-07-01 00:45 - 2014-07-09 13:14 - 00688128 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepdu.dll
2014-06-29 20:33 - 2014-06-29 20:10 - 00000000 ____D () C:\Program Files (x86)\Sniper Elite 3
2014-06-29 20:32 - 2014-06-29 20:32 - 00001016 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sniper Elite 3.lnk
2014-06-29 20:32 - 2014-06-29 20:32 - 00001004 _____ () C:\Users\Public\Desktop\Sniper Elite 3.lnk
2014-06-29 20:08 - 2014-06-29 19:29 - 00000000 ____D () C:\Users\Petr\AppData\Local\Sniper3
2014-06-29 19:02 - 2014-06-29 19:02 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\WinUpdate
2014-06-29 11:49 - 2014-06-29 11:49 - 00000917 _____ () C:\Users\Public\Desktop\AIMP3.lnk
2014-06-29 11:49 - 2014-06-29 11:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AIMP3
2014-06-29 11:49 - 2013-09-08 09:53 - 00000000 ____D () C:\Program Files (x86)\AIMP3
2014-06-29 11:46 - 2014-06-29 11:46 - 04812672 _____ (Piriform Ltd) C:\Users\Petr\Downloads\ccsetup415.exe
2014-06-29 11:46 - 2013-05-28 15:11 - 00000834 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2014-06-29 11:46 - 2013-05-28 15:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-06-29 11:46 - 2013-05-28 15:11 - 00000000 ____D () C:\Program Files\CCleaner
2014-06-29 08:58 - 2014-06-29 08:58 - 00000000 ____D () C:\Users\Petr\Documents\PETRMALENKA
2014-06-29 08:50 - 2014-06-29 08:50 - 00001221 _____ () C:\Users\Petr\Desktop\Enemy Front PROPER.lnk
2014-06-29 08:50 - 2014-06-29 08:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Enemy Front PROPER
2014-06-29 08:47 - 2014-06-29 08:47 - 00000000 ____D () C:\Program Files (x86)\Enemy Front PROPER
2014-06-29 08:27 - 2013-06-14 12:17 - 00000000 ____D () C:\Users\Petr\Documents\My Games
2014-06-29 08:24 - 2014-06-29 08:24 - 00001217 _____ () C:\Users\Petr\Desktop\Uplay.lnk
2014-06-28 09:48 - 2014-07-09 13:14 - 00527360 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2014-06-28 09:07 - 2014-07-09 13:14 - 00385536 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2014-06-26 22:55 - 2014-07-10 16:11 - 00703968 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2014-06-26 22:55 - 2014-07-10 16:11 - 00105440 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2014-06-23 06:46 - 2014-06-23 06:46 - 01058200 _____ (Adobe) C:\Users\Petr\Downloads\install_flashplayer14x32au_chrd_dn_aaa_aih.exe
2014-06-21 17:41 - 2014-06-21 17:41 - 00001367 _____ () C:\Users\Public\Desktop\Loutkové divadlo - Ztracené město.lnk
2014-06-21 17:41 - 2014-06-21 17:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Loutkové divadlo - Ztracené město
2014-06-21 17:41 - 2014-06-21 17:41 - 00000000 ____D () C:\Program Files (x86)\Loutkove divadlo - Ztracene mesto
2014-06-20 18:24 - 2013-12-18 18:56 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Artogon
2014-06-20 18:22 - 2013-12-23 16:34 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\URSE Games
2014-06-19 19:19 - 2014-06-18 19:55 - 00000000 ____D () C:\Program Files (x86)\WarThunder
2014-06-19 06:55 - 2013-10-09 20:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2014-06-19 03:39 - 2014-07-09 13:15 - 23464448 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2014-06-19 02:48 - 2014-07-09 13:15 - 02768384 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2014-06-19 02:16 - 2014-07-09 13:15 - 17276416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2014-06-19 02:09 - 2014-07-09 13:15 - 00452608 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll
2014-06-19 01:51 - 2014-07-09 13:15 - 05721088 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2014-06-19 01:50 - 2014-07-09 13:15 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2014-06-19 01:48 - 2014-07-09 13:15 - 00292864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2014-06-19 01:46 - 2014-07-09 13:15 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2014-06-19 01:39 - 2014-07-09 13:15 - 00608768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2014-06-19 01:33 - 2014-07-09 13:15 - 00631808 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2014-06-19 01:32 - 2014-07-09 13:15 - 02179072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2014-06-19 01:27 - 2014-07-09 13:15 - 02040832 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2014-06-19 01:12 - 2014-07-09 13:15 - 00367616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll
2014-06-19 00:59 - 2014-07-09 13:15 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2014-06-19 00:58 - 2014-07-09 13:15 - 02266112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2014-06-19 00:58 - 2014-07-09 13:15 - 00239616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2014-06-19 00:57 - 2014-07-09 13:15 - 00225280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2014-06-19 00:52 - 2014-07-09 13:15 - 04254720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2014-06-19 00:51 - 2014-07-09 13:15 - 13527040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2014-06-19 00:49 - 2014-07-09 13:15 - 00526336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2014-06-19 00:45 - 2014-07-09 13:15 - 01964544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2014-06-19 00:35 - 2014-07-09 13:15 - 11742208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2014-06-19 00:34 - 2014-07-09 13:15 - 01393664 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2014-06-19 00:15 - 2014-07-09 13:15 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2014-06-19 00:13 - 2014-07-09 13:15 - 01791488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2014-06-19 00:09 - 2014-07-09 13:15 - 01139200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2014-06-19 00:07 - 2014-07-09 13:15 - 00704512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2014-06-18 20:22 - 2013-10-25 12:30 - 00000000 ____D () C:\WINDOWS\SysWOW64\directx
2014-06-18 19:56 - 2014-06-18 19:56 - 00000000 ____D () C:\Users\Petr\AppData\Local\WarThunder
2014-06-18 19:56 - 2014-06-18 19:56 - 00000000 ____D () C:\ProgramData\WarThunder
2014-06-18 19:54 - 2014-06-18 19:54 - 04411640 _____ (Gaijin Entertainment ) C:\Users\Petr\Downloads\wt_launcher_1.0.1.361.exe
2014-06-18 19:44 - 2013-09-28 09:34 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\vlc
2014-06-18 15:50 - 2013-05-28 13:10 - 00003944 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2014-06-18 15:50 - 2013-05-28 13:10 - 00003708 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2014-06-18 15:49 - 2014-06-18 15:49 - 00003834 _____ () C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1397060391
2014-06-18 15:49 - 2014-04-09 18:19 - 00000000 ____D () C:\Program Files (x86)\Opera
2014-06-17 00:26 - 2014-07-09 13:19 - 00779264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\osk.exe
2014-06-17 00:24 - 2014-07-09 13:19 - 00834048 _____ (Microsoft Corporation) C:\WINDOWS\system32\osk.exe
2014-06-14 22:47 - 2014-06-14 22:47 - 00000656 _____ () C:\Users\Petr\Desktop\Total Commander 64 bit.lnk
2014-06-14 22:47 - 2014-06-14 22:47 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Total Commander
2014-06-14 22:47 - 2014-06-14 22:47 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\GHISLER
2014-06-14 22:47 - 2014-06-14 22:47 - 00000000 ____D () C:\totalcmd
2014-06-14 22:46 - 2014-06-14 22:46 - 04626896 _____ (Ghisler Software GmbH) C:\Users\Petr\Downloads\tcm851ax64.exe
2014-06-14 19:11 - 2014-06-14 19:11 - 00000000 ____D () C:\ProgramData\Total Gameplay
2014-06-14 19:03 - 2014-06-14 19:03 - 00000000 ____D () C:\ProgramData\Funny Bear Studio
2014-06-14 19:00 - 2014-06-14 19:00 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Specialbit
2014-06-14 18:55 - 2013-12-01 19:42 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\ERS Game Studios
2014-06-13 18:49 - 2013-11-10 11:36 - 00000000 ____D () C:\ProgramData\Package Cache
2014-06-13 18:49 - 2013-10-18 22:53 - 00000000 ____D () C:\ProgramData\Steam
2014-06-13 18:43 - 2014-06-13 18:43 - 00001285 _____ () C:\Users\Public\Desktop\Wolfenstein. The New Order.lnk
2014-06-13 18:43 - 2014-06-13 18:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wolfenstein. The New Order
2014-06-13 18:43 - 2014-06-13 17:49 - 00000000 ____D () C:\Program Files (x86)\Wolfenstein. The New Order
Some content of TEMP:
====================
C:\Users\Petr\AppData\Local\Temp\Quarantine.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-07-11 20:48
==================== End Of Log ============================
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 86 hostů