Prosim o kontrolu logu, asi VIRUS Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

tomas_ch
Level 2.5
Level 2.5
Příspěvky: 353
Registrován: srpen 07
Pohlaví: Nespecifikováno
Stav:
Offline

Prosim o kontrolu logu, asi VIRUS

Příspěvekod tomas_ch » 22 črc 2014 13:29

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:25:27, on 22.7.2014
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v9.00 (9.00.8112.16520)
Boot mode: Safe mode with network support

Running processes:
C:\Windows\Explorer.EXE
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Users\pc\Desktop\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACA ... spire_8930
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACA ... spire_8930
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://homepage.acer.com/rdr.aspx?b=ACA ... spire_8930
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: ShowBarObj Class - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\ActiveToolBand.dll
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll
O3 - Toolbar: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [ePower_DMC] C:\Program Files\Acer\Empowering Technology\ePower\ePower_DMC.exe
O4 - HKLM\..\Run: [eDataSecurity Loader] C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe
O4 - HKLM\..\Run: [eAudio] "C:\Program Files\Acer\Empowering Technology\eAudio\eAudio.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [ZPdtWzdVitaKey MC3000] "C:\Program Files\Acer\Acer Bio Protection\PdtWzd.exe" show
O4 - HKLM\..\Run: [PlayMovie] "C:\Program Files\Acer Arcade Deluxe\PlayMovie\PMVService.exe"
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [EEventManager] "C:\Program Files\Epson Software\Event Manager\EEventManager.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKLM\..\Run: [Printsrv] c:\Windows\System32\Printing_Admin_Scripts\en-US\driverupd.vbs
O4 - HKLM\..\Run: [mnchxmwboSrv] C:\Windows\inf\mnchxmwbo.vbe
O4 - HKLM\..\Run: [mnccqxddSrv] C:\Windows\inf\mnccqxdd.vbe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [ProductReg] "C:\Program Files\Acer\WR_PopUp\ProductReg.exe"
O4 - HKCU\..\Run: [EADM] "C:\Program Files\Origin\Origin.exe" -AutoStart
O4 - HKCU\..\Run: [SoundUpdateHelper] C:\Users\pc\AppData\Roaming\update_tc\update.exe
O4 - HKCU\..\Run: [EPLTarget\P0000000000000000] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIHLE.EXE /EPT "EPLTarget\P0000000000000000" /M "Epson Stylus SX235"
O4 - HKCU\..\Run: [EPLTarget\P0000000000000001] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIHLE.EXE /EPT "EPLTarget\P0000000000000001" /M "Epson Stylus SX235" /EF "HKCU"
O4 - HKCU\..\Run: [EPLTarget\P0000000000000002] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIHLE.EXE /EPT "EPLTarget\P0000000000000002" /M "Epson Stylus SX235"
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Quick-Launching Area - {10954C80-4F0F-11d3-B17C-00C0DFE39736} - C:\Program Files\Acer\Acer Bio Protection\PwdBank.exe
O9 - Extra 'Tools' menuitem: Quick-Launching Area - {10954C80-4F0F-11d3-B17C-00C0DFE39736} - C:\Program Files\Acer\Acer Bio Protection\PwdBank.exe
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL
O20 - Winlogon Notify: AWinNotifyVitaKey MC3000 - C:\Program Files\Acer\Acer Bio Protection\WinNotify.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
O23 - Service: ABBYY FineReader 9.0 Sprint Licensing Service (ABBYY.Licensing.FineReader.Sprint.9.0) - ABBYY - C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C:\Windows\system32\agrsmsvc.exe
O23 - Service: NTI Backup Now 5 Agent Service (BUNAgentSvc) - NewTech Infosystems, Inc. - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe
O23 - Service: CLHNService - Unknown owner - C:\Program Files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe
O23 - Service: eDataSecurity Service - Egis Incorporated - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: Empowering Technology Service (ETService) - Unknown owner - C:\Program Files\Acer\Empowering Technology\Service\ETService.exe
O23 - Service: Intel® PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: Google Desktop Manager 5.9.1005.12335 (GoogleDesktopManager-051210-111108) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iGroupTec Service (IGBASVC) - Unknown owner - C:\Program Files\Acer\Acer Bio Protection\BASVC.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LMIGuardianSvc - LogMeIn, Inc. - C:\Program Files\LogMeIn Hamachi\LMIGuardianSvc.exe
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: MobilityService - Unknown owner - C:\Acer\Mobility Center\MobilityService.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: NTI Backup Now 5 Backup Service (NTIBackupSvc) - NewTech InfoSystems, Inc. - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe
O23 - Service: NTI Backup Now 5 Scheduler Service (NTISchedulerSvc) - Unknown owner - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\system32\IoctlSvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: Intel® PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\Cyberlink\Shared files\RichVideo.exe
O23 - Service: Raw Socket Service (RS_Service) - Acer Incorporated - C:\Program Files\Acer\Acer VCM\RS_Service.exe
O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: AVG PC TuneUp Service (TuneUp.UtilitiesSvc) - AVG - C:\Program Files\AVG PC TuneUp 2014\TuneUpUtilitiesService32.exe
O23 - Service: Validity Fingerprint Service (vfsFPService) - Validity Sensors, Inc. - C:\Windows\system32\vfsFPService.exe

--
End of file - 13564 bytes


Dekuji.... T.

Reklama
Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosim o kontrolu logu, asi VIRUS

Příspěvekod jaro3 » 22 črc 2014 18:42

Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected. Poté klikni na Main (hlavní stránku ) a klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.

- Pokud používáš jen Google Chrome , tak ATF nemusíš použít.


Stáhni si TFC
Otevři soubor a zavři všechny ostatní okna, Klikni na Start k zahájení procesu. Program by neměl trvat dlouho.
Poté by se měl PC restartovat, pokud ne , proveď sám.

Stáhni AdwCleaner (by Xplode)
http://www.bleepingcomputer.com/download/adwcleaner/

Ulož si ho na svojí plochu
Ukonči všechny programy , okna a prohlížeče
Spusť program poklepáním a klikni na „Prohledat-Scan“
Po skenu se objeví log ( jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.

Stáhni si Malwarebytes' Anti-Malware
- Při instalaci odeber zatržítko u „Povolit bezplatnou zkušební verzi Malwarebytes' Anti-Malware Premium“
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a klikni na Skenovat nyní a
- po proběhnutí programu se ti objeví hláška vpravo dole tak klikni na b] Kopírovat do schránky [/b]a a vlož sem celý log.

- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).

Pokud budou problémy , spusť v nouz. režimu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

tomas_ch
Level 2.5
Level 2.5
Příspěvky: 353
Registrován: srpen 07
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosim o kontrolu logu, asi VIRUS

Příspěvekod tomas_ch » 23 črc 2014 12:40

zdravim,
pouzil jsem ATF a TFC.
Je to tak zasekane, ze jsem malware pustil v nouzovem rezimu, ale naslo spoustu bordelu.
Vkladam log z Adw, malware log vlozim za chvili. Diky

# AdwCleaner v3.216 - Report created 22/07/2014 at 10:57:12
# Updated 17/07/2014 by Xplode
# Operating System : Windows Vista (TM) Home Premium Service Pack 2 (32 bits)
# Username : pc - PC-PC
# Running from : C:\Users\pc\Downloads\adwcleaner_3.216.exe
# Option : Scan

***** [ Services ] *****

Service Found : pcsuservice

***** [ Files / Folders ] *****

File Found : C:\END
File Found : C:\Windows\System32\Tasks\PC SpeedUp Service Deactivator
File Found : C:\Windows\System32\Tasks\Scheduled Update for Ask Toolbar
File Found : C:\Windows\Tasks\PC SpeedUp Service Deactivator.job
Folder Found : C:\Program Files\Ask.com
Folder Found : C:\Program Files\BS_Player_ControlBar
Folder Found : C:\Program Files\Conduit
Folder Found : C:\Program Files\Convesoft
Folder Found : C:\ProgramData\Ask
Folder Found : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Uniblue
Folder Found : C:\Users\pc\AppData\Local\BS_Player_ControlBar
Folder Found : C:\Users\pc\AppData\Local\Conduit
Folder Found : C:\Users\pc\AppData\LocalLow\AskToolbar
Folder Found : C:\Users\pc\AppData\LocalLow\BS_Player_ControlBar
Folder Found : C:\Users\pc\AppData\LocalLow\Conduit
Folder Found : C:\Users\pc\AppData\Roaming\OpenCandy
Folder Found : C:\Users\pc\Documents\PCSpeedUp
Folder Found : C:\Windows\installer\{86d4b82a-abed-442a-be86-96357b70f4fe}

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Found : HKCU\Software\APN
Key Found : HKCU\Software\AppDataLow\Software\AskToolbar
Key Found : HKCU\Software\AppDataLow\Software\BS_Player_ControlBar
Key Found : HKCU\Software\AppDataLow\Software\Conduit
Key Found : HKCU\Software\AppDataLow\Software\ConduitSearchScopes
Key Found : HKCU\Software\AppDataLow\Software\SmartBar
Key Found : HKCU\Software\AppDataLow\Toolbar
Key Found : HKCU\Software\Ask.com
Key Found : HKCU\Software\BS_Player_ControlBar
Key Found : HKCU\Software\Conduit
Key Found : HKCU\Software\Convesoft
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{70D46D94-BF1E-45ED-B567-48701376298E}
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{79A765E1-C399-405B-85AF-466F52E918B0}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\BS_Player_ControlBar Toolbar
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\conduitEngine
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\PCSU-SL_is1
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2318C2B1-4965-11D4-9B18-009027A5CD4F}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{055DD326-956C-4827-9467-A172509E81B3}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2318C2B1-4965-11D4-9B18-009027A5CD4F}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{79A765E1-C399-405B-85AF-466F52E918B0}
Key Found : HKLM\Software\APN
Key Found : HKLM\Software\AskToolbar
Key Found : HKLM\Software\BS_Player_ControlBar
Key Found : HKLM\SOFTWARE\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}
Key Found : HKLM\SOFTWARE\Classes\AppID\GenericAskToolbar.DLL
Key Found : HKLM\SOFTWARE\Classes\AppID\WLXQuickTimeShellExt.DLL
Key Found : HKLM\SOFTWARE\Classes\CLSID\{00000000-6E41-4FD3-8538-502F5495E5FC}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{055DD326-956C-4827-9467-A172509E81B3}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{B89F5C49-51DB-4974-AB5A-E25901AA339C}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{E9B5B0D2-D08A-49FC-8B5C-159B60BAA268}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}
Key Found : HKLM\SOFTWARE\Classes\Conduit.Engine
Key Found : HKLM\SOFTWARE\Classes\driverscanner
Key Found : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd
Key Found : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd.1
Key Found : HKLM\Software\Classes\Installer\Features\074A36B543391D44FA16C62EBD65A59E
Key Found : HKLM\Software\Classes\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF
Key Found : HKLM\Software\Classes\Installer\Products\074A36B543391D44FA16C62EBD65A59E
Key Found : HKLM\Software\Classes\Installer\Products\A28B4D68DEBAA244EB686953B7074FEF
Key Found : HKLM\SOFTWARE\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
Key Found : HKLM\SOFTWARE\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
Key Found : HKLM\SOFTWARE\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
Key Found : HKLM\SOFTWARE\Classes\protector_dll.protectorbho
Key Found : HKLM\SOFTWARE\Classes\protector_dll.protectorbho.1
Key Found : HKLM\SOFTWARE\Classes\speedupmypc
Key Found : HKLM\SOFTWARE\Classes\Toolbar.CT1750559
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}
Key Found : HKLM\Software\Conduit
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C2CD4EDC-38FA-43CA-9331-A9A45620F700}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EBF7440B-ACAA-4182-A14B-7B01F64D2310}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key Found : HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ApnUpdater
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B08EFF92-EDDE-42EC-A399-10F21464E978}
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{ED28578F-4408-4C80-84BB-239FF8E099C7}
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B08EFF92-EDDE-42EC-A399-10F21464E978}
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{ED28578F-4408-4C80-84BB-239FF8E099C7}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{055DD326-956C-4827-9467-A172509E81B3}
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F928123A039649549966D4C29D35B1C9
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08121C32A9C319F4CB0C11FF059552A4
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0CFE535C35F99574E8340BFA75BF92C2
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\261F213D1F55267499B1F87D0CC3BCF7
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\741B4ADF27276464790022C965AB6DA8
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DE196B10195F5647A2B21B761F3DE01
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D4F5849367142E4685ED8C25E44C5ED
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A5875B04372C19545BEB90D4D606C472
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A876D9E80B896EC44A8620248CC79296
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B66FFAB725B92594C986DE826A867888
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\074A36B543391D44FA16C62EBD65A59E
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\BS_Player_ControlBar Toolbar
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\PCSU-SL_is1
Key Found : HKLM\Software\Speedchecker Limited
Key Found : HKLM\Software\Uniblue
Key Found : HKLM\Software\Uniblue\DriverScanner
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{30F9B915-B755-4826-820B-08FBA6BD249D}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{2318C2B1-4965-11D4-9B18-009027A5CD4F}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]

***** [ Browsers ] *****

-\\ Internet Explorer v9.0.8112.16520


-\\ Google Chrome v35.0.1916.153

[ File : C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [11703 octets] - [22/07/2014 10:57:12]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [11764 octets] ##########
# AdwCleaner v3.216 - Report created 31/12/2000 at 22:44:08
# Updated 17/07/2014 by Xplode
# Operating System : Windows Vista (TM) Home Premium Service Pack 2 (32 bits)
# Username : pc - PC-PC
# Running from : C:\Users\pc\Downloads\adwcleaner_3.216.exe
# Option : Scan

***** [ Services ] *****

Service Found : pcsuservice

***** [ Files / Folders ] *****

File Found : C:\Windows\System32\Tasks\PC SpeedUp Service Deactivator
File Found : C:\Windows\System32\Tasks\Scheduled Update for Ask Toolbar
File Found : C:\Windows\Tasks\PC SpeedUp Service Deactivator.job
Folder Found : C:\Program Files\Ask.com
Folder Found : C:\Program Files\BS_Player_ControlBar
Folder Found : C:\Program Files\Conduit
Folder Found : C:\Program Files\Convesoft
Folder Found : C:\Users\pc\AppData\Local\BS_Player_ControlBar
Folder Found : C:\Users\pc\AppData\Local\Conduit
Folder Found : C:\Users\pc\AppData\LocalLow\AskToolbar
Folder Found : C:\Users\pc\AppData\LocalLow\BS_Player_ControlBar
Folder Found : C:\Users\pc\AppData\Roaming\OpenCandy
Folder Found : C:\Users\pc\Documents\PCSpeedUp
Folder Found : C:\Windows\installer\{86d4b82a-abed-442a-be86-96357b70f4fe}

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Found : HKCU\Software\APN
Key Found : HKCU\Software\AppDataLow\Software\AskToolbar
Key Found : HKCU\Software\AppDataLow\Software\BS_Player_ControlBar
Key Found : HKCU\Software\AppDataLow\Software\Conduit
Key Found : HKCU\Software\AppDataLow\Software\ConduitSearchScopes
Key Found : HKCU\Software\AppDataLow\Software\SmartBar
Key Found : HKCU\Software\AppDataLow\Toolbar
Key Found : HKCU\Software\Ask.com
Key Found : HKCU\Software\BS_Player_ControlBar
Key Found : HKCU\Software\Conduit
Key Found : HKCU\Software\Convesoft
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{70D46D94-BF1E-45ED-B567-48701376298E}
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{79A765E1-C399-405B-85AF-466F52E918B0}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\BS_Player_ControlBar Toolbar
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\conduitEngine
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\PCSU-SL_is1
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2318C2B1-4965-11D4-9B18-009027A5CD4F}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{055DD326-956C-4827-9467-A172509E81B3}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2318C2B1-4965-11D4-9B18-009027A5CD4F}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{79A765E1-C399-405B-85AF-466F52E918B0}
Key Found : HKLM\Software\APN
Key Found : HKLM\Software\AskToolbar
Key Found : HKLM\Software\BS_Player_ControlBar
Key Found : HKLM\SOFTWARE\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}
Key Found : HKLM\SOFTWARE\Classes\AppID\GenericAskToolbar.DLL
Key Found : HKLM\SOFTWARE\Classes\AppID\WLXQuickTimeShellExt.DLL
Key Found : HKLM\SOFTWARE\Classes\CLSID\{00000000-6E41-4FD3-8538-502F5495E5FC}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{055DD326-956C-4827-9467-A172509E81B3}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{B89F5C49-51DB-4974-AB5A-E25901AA339C}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{E9B5B0D2-D08A-49FC-8B5C-159B60BAA268}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}
Key Found : HKLM\SOFTWARE\Classes\Conduit.Engine
Key Found : HKLM\SOFTWARE\Classes\driverscanner
Key Found : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd
Key Found : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd.1
Key Found : HKLM\Software\Classes\Installer\Features\074A36B543391D44FA16C62EBD65A59E
Key Found : HKLM\Software\Classes\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF
Key Found : HKLM\Software\Classes\Installer\Products\074A36B543391D44FA16C62EBD65A59E
Key Found : HKLM\Software\Classes\Installer\Products\A28B4D68DEBAA244EB686953B7074FEF
Key Found : HKLM\SOFTWARE\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
Key Found : HKLM\SOFTWARE\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
Key Found : HKLM\SOFTWARE\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
Key Found : HKLM\SOFTWARE\Classes\protector_dll.protectorbho
Key Found : HKLM\SOFTWARE\Classes\protector_dll.protectorbho.1
Key Found : HKLM\SOFTWARE\Classes\speedupmypc
Key Found : HKLM\SOFTWARE\Classes\Toolbar.CT1750559
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}
Key Found : HKLM\Software\Conduit
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C2CD4EDC-38FA-43CA-9331-A9A45620F700}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EBF7440B-ACAA-4182-A14B-7B01F64D2310}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B08EFF92-EDDE-42EC-A399-10F21464E978}
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{ED28578F-4408-4C80-84BB-239FF8E099C7}
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B08EFF92-EDDE-42EC-A399-10F21464E978}
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{ED28578F-4408-4C80-84BB-239FF8E099C7}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{055DD326-956C-4827-9467-A172509E81B3}
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F928123A039649549966D4C29D35B1C9
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08121C32A9C319F4CB0C11FF059552A4
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0CFE535C35F99574E8340BFA75BF92C2
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\261F213D1F55267499B1F87D0CC3BCF7
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\741B4ADF27276464790022C965AB6DA8
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DE196B10195F5647A2B21B761F3DE01
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D4F5849367142E4685ED8C25E44C5ED
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A5875B04372C19545BEB90D4D606C472
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A876D9E80B896EC44A8620248CC79296
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B66FFAB725B92594C986DE826A867888
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\074A36B543391D44FA16C62EBD65A59E
Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\BS_Player_ControlBar Toolbar
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\PCSU-SL_is1
Key Found : HKLM\Software\Speedchecker Limited
Key Found : HKLM\Software\Uniblue
Key Found : HKLM\Software\Uniblue\DriverScanner
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{30F9B915-B755-4826-820B-08FBA6BD249D}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{2318C2B1-4965-11D4-9B18-009027A5CD4F}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
Value Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [ApnUpdater]

***** [ Browsers ] *****

-\\ Internet Explorer v9.0.8112.16520


-\\ Google Chrome v35.0.1916.153

[ File : C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [23360 octets] - [22/07/2014 09:57:12]
AdwCleaner[S0].txt - [11229 octets] - [22/07/2014 09:59:35]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [23482 octets] ##########

tomas_ch
Level 2.5
Level 2.5
Příspěvky: 353
Registrován: srpen 07
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosim o kontrolu logu, asi VIRUS

Příspěvekod tomas_ch » 23 črc 2014 13:20

u malware nfunguje export do logu ve formatu txt, kopiruji z xml

<?xml version="1.0" encoding="UTF-16" ?>
<mbam-log>
<header>
<date>2014/07/23 12:50:41 +0200</date>
<logfile>mbam-log-2014-07-23 (12-50-36).xml</logfile>
<isadmin>yes</isadmin>
</header>
<engine>
<version>2.00.2.1012</version>
<malware-database>v2014.07.23.03</malware-database>
<rootkit-database>v2014.07.17.01</rootkit-database>
<license>trial</license>
<file-protection>disabled</file-protection>
<web-protection>disabled</web-protection>
<self-protection>disabled</self-protection>
</engine>
<system>
<osversion>Windows Vista Service Pack 2</osversion>
<arch>x86</arch>
<username>pc</username>
<filesys>NTFS</filesys>
</system>
<summary>
<type>threat</type>
<result>completed</result>
<objects>266288</objects>
<time>524</time>
<processes>0</processes>
<modules>0</modules>
<keys>12</keys>
<values>8</values>
<datas>0</datas>
<folders>10</folders>
<files>40</files>
<sectors>0</sectors>
</summary>
<options>
<memory>enabled</memory>
<startup>enabled</startup>
<filesystem>enabled</filesystem>
<archives>enabled</archives>
<rootkits>disabled</rootkits>
<deeprootkit>disabled</deeprootkit>
<heuristics>enabled</heuristics>
<pup>enabled</pup>
<pum>enabled</pum>
</options>
<items>
<key><path>HKLM\SOFTWARE\CLASSES\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}</path><vendor>PUP.Optional.FrostwireTB.A</vendor><action></action><hash>02edf2b084f79b9ba392bfd70cf6fc04</hash></key>
<key><path>HKLM\SOFTWARE\CLASSES\CLSID\{00000000-6E41-4FD3-8538-502F5495E5FC}</path><vendor>PUP.Optional.FrostwireTB.A</vendor><action></action><hash>02edf2b084f79b9ba392bfd70cf6fc04</hash></key>
<key><path>HKLM\SOFTWARE\CLASSES\TYPELIB\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}</path><vendor>PUP.Optional.FrostwireTB.A</vendor><action></action><hash>02edf2b084f79b9ba392bfd70cf6fc04</hash></key>
<key><path>HKLM\SOFTWARE\CLASSES\INTERFACE\{6C434537-053E-486D-B62A-160059D9D456}</path><vendor>PUP.Optional.FrostwireTB.A</vendor><action></action><hash>02edf2b084f79b9ba392bfd70cf6fc04</hash></key>
<key><path>HKLM\SOFTWARE\CLASSES\INTERFACE\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}</path><vendor>PUP.Optional.FrostwireTB.A</vendor><action></action><hash>02edf2b084f79b9ba392bfd70cf6fc04</hash></key>
<key><path>HKLM\SOFTWARE\CLASSES\INTERFACE\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}</path><vendor>PUP.Optional.FrostwireTB.A</vendor><action></action><hash>02edf2b084f79b9ba392bfd70cf6fc04</hash></key>
<key><path>HKLM\SOFTWARE\CLASSES\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}\INPROCSERVER32</path><vendor>PUP.Optional.FrostwireTB.A</vendor><action></action><hash>02edf2b084f79b9ba392bfd70cf6fc04</hash></key>
<key><path>HKLM\SOFTWARE\CLASSES\GenericAskToolbar.ToolbarWnd.1</path><vendor>PUP.Optional.FrostwireTB.A</vendor><action></action><hash>02edf2b084f79b9ba392bfd70cf6fc04</hash></key>
<key><path>HKLM\SOFTWARE\CLASSES\GenericAskToolbar.ToolbarWnd</path><vendor>PUP.Optional.FrostwireTB.A</vendor><action></action><hash>02edf2b084f79b9ba392bfd70cf6fc04</hash></key>
<key><path>HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{D4027C7F-154A-4066-A1AD-4243D8127440}</path><vendor>PUP.Optional.FrostwireTB.A</vendor><action></action><hash>02edf2b084f79b9ba392bfd70cf6fc04</hash></key>
<key><path>HKU\S-1-5-21-3280974334-3652872388-2672934827-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{D4027C7F-154A-4066-A1AD-4243D8127440}</path><vendor>PUP.Optional.FrostwireTB.A</vendor><action></action><hash>02edf2b084f79b9ba392bfd70cf6fc04</hash></key>
<key><path>HKU\S-1-5-21-3280974334-3652872388-2672934827-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{D4027C7F-154A-4066-A1AD-4243D8127440}</path><vendor>PUP.Optional.FrostwireTB.A</vendor><action></action><hash>02edf2b084f79b9ba392bfd70cf6fc04</hash></key>
<value><path>HKU\S-1-5-21-3280974334-3652872388-2672934827-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\TOOLBAR\WEBBROWSER</path><valuename>{D4027C7F-154A-4066-A1AD-4243D8127440}</valuename><vendor>PUP.Optional.FrostwireTB.A</vendor><action></action><valuedata>|ÔJf@ˇ­BCŘt@</valuedata><hash>02edf2b084f79b9ba392bfd70cf6fc04</hash></value>
<value><path>HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\TOOLBAR</path><valuename>{D4027C7F-154A-4066-A1AD-4243D8127440}</valuename><vendor>PUP.Optional.FrostwireTB.A</vendor><action></action><valuedata></valuedata><hash>02edf2b084f79b9ba392bfd70cf6fc04</hash></value>
<value><path>HKU\S-1-5-21-3280974334-3652872388-2672934827-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\TOOLBAR\WEBBROWSER\{30F9B915-B755-4826-820B-08FBA6BD249D}</path><valuename></valuename><vendor>PUP.Optional.ConduitTB.A</vendor><action></action><valuedata></valuedata><hash>27c802a0a2d9f1450207e07c1de5d030</hash></value>
<value><path>HKU\S-1-5-21-3280974334-3652872388-2672934827-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\TOOLBAR\WEBBROWSER</path><valuename>{30F9B915-B755-4826-820B-08FBA6BD249D}</valuename><vendor>PUP.Optional.ConduitTB.A</vendor><action></action><valuedata>ąů0U·&amp;H‚ ű¦˝$ť</valuedata><hash>27c802a0a2d9f1450207e07c1de5d030</hash></value>
<value><path>HKU\S-1-5-21-3280974334-3652872388-2672934827-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\TOOLBAR\WEBBROWSER\{D4027C7F-154A-4066-A1AD-4243D8127440}</path><valuename></valuename><vendor>PUP.Optional.FrostwireTB.A</vendor><action></action><valuedata></valuedata><hash>37b8f0b2146746f00a2b1581ee14cf31</hash></value>
<value><path>HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\TOOLBAR\{D4027C7F-154A-4066-A1AD-4243D8127440}</path><valuename></valuename><vendor>PUP.Optional.FrostwireTB.A</vendor><action></action><valuedata></valuedata><hash>7a759d05ccaf43f364d19cfa35cdc937</hash></value>
<value><path>HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN</path><valuename>MSStp</valuename><vendor>Trojan.Agent.VBS</vendor><action></action><valuedata>C:\Windows\system32\msstp.vbe</valuedata><hash>41ae752d3348f93df15531b604fe738d</hash></value>
<value><path>HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN</path><valuename>NtVdmSrv</valuename><vendor>Malware.Trace</vendor><action></action><valuedata>C:\Windows\inf\ntvdm.vbe</valuedata><hash>ba35287a0279c86e151554b263a1e818</hash></value>
<folder><path>C:\Users\pc\AppData\Roaming\OpenCandy</path><vendor>PUP.Optional.OpenCandy</vendor><action></action><hash>f7f8e5bd5a21d6607298dfc7c33f21df</hash></folder>
<folder><path>C:\Users\pc\AppData\Roaming\OpenCandy\167B3B9000D54C268C800F97A1CAC6E6</path><vendor>PUP.Optional.OpenCandy</vendor><action></action><hash>f7f8e5bd5a21d6607298dfc7c33f21df</hash></folder>
<folder><path>C:\Users\pc\AppData\Roaming\OpenCandy\1A0B3D650A264D5688D721C8315543CC</path><vendor>PUP.Optional.OpenCandy</vendor><action></action><hash>f7f8e5bd5a21d6607298dfc7c33f21df</hash></folder>
<folder><path>C:\Users\pc\AppData\Roaming\OpenCandy\96BF7D7A5B1144BEBD0761BD93A8142A</path><vendor>PUP.Optional.OpenCandy</vendor><action></action><hash>f7f8e5bd5a21d6607298dfc7c33f21df</hash></folder>
<folder><path>C:\Users\pc\AppData\Roaming\OpenCandy\AB199B1507CE4C9C8AD7C17BF58D7C3E</path><vendor>PUP.Optional.OpenCandy</vendor><action></action><hash>f7f8e5bd5a21d6607298dfc7c33f21df</hash></folder>
<folder><path>C:\Users\pc\AppData\Roaming\OpenCandy\F1F092CF65EF46A2B031232C3E52C184</path><vendor>PUP.Optional.OpenCandy</vendor><action></action><hash>f7f8e5bd5a21d6607298dfc7c33f21df</hash></folder>
<folder><path>C:\Windows\inf\mnccqxdd</path><vendor>Trojan.Agent.BCM</vendor><action></action><hash>5b94228092e922140158b6f216ecdd23</hash></folder>
<folder><path>C:\Windows\inf\mnccqxdd\bitstreams</path><vendor>Trojan.Agent.BCM</vendor><action></action><hash>5b94228092e922140158b6f216ecdd23</hash></folder>
<folder><path>C:\Windows\inf\mnchxmwbo</path><vendor>Trojan.Agent.BCM</vendor><action></action><hash>e00f435f3c3f93a3abafa50362a02cd4</hash></folder>
<folder><path>C:\Windows\inf\mnchxmwbo\bitstreams</path><vendor>Trojan.Agent.BCM</vendor><action></action><hash>e00f435f3c3f93a3abafa50362a02cd4</hash></folder>
<file><path>C:\Program Files\Ask.com\GenericAskToolbar.dll</path><vendor>PUP.Optional.FrostwireTB.A</vendor><action></action><hash>02edf2b084f79b9ba392bfd70cf6fc04</hash></file>
<file><path>C:\Users\pc\AppData\Roaming\OpenCandy\96BF7D7A5B1144BEBD0761BD93A8142A\Ignite_DLMgr_241.exe</path><vendor>PUP.Optional.OpenCandy.A</vendor><action></action><hash>13dc89190e6d42f4fbd04ed9a9588779</hash></file>
<file><path>C:\Windows\System32\msstp.vbe</path><vendor>Trojan.Agent.VBS</vendor><action></action><hash>41ae752d3348f93df15531b604fe738d</hash></file>
<file><path>C:\Windows\expIorer.exe</path><vendor>Trojan.Rundis</vendor><action></action><hash>49a601a14338d95d563d153be22118e8</hash></file>
<file><path>C:\Windows\inf\ntvdm.vbe</path><vendor>Malware.Trace</vendor><action></action><hash>ba35287a0279c86e151554b263a1e818</hash></file>
<file><path>C:\Windows\inf\ntvdm.inf</path><vendor>Malware.Trace</vendor><action></action><hash>f7f89210b4c7092d63c8967064a0db25</hash></file>
<file><path>C:\Users\pc\AppData\Roaming\OpenCandy\167B3B9000D54C268C800F97A1CAC6E6\PCSU_SL_3.1.2.exe</path><vendor>PUP.Optional.OpenCandy</vendor><action></action><hash>f7f8e5bd5a21d6607298dfc7c33f21df</hash></file>
<file><path>C:\Users\pc\AppData\Roaming\OpenCandy\1A0B3D650A264D5688D721C8315543CC\driverscannerROW.exe</path><vendor>PUP.Optional.OpenCandy</vendor><action></action><hash>f7f8e5bd5a21d6607298dfc7c33f21df</hash></file>
<file><path>C:\Users\pc\AppData\Roaming\OpenCandy\96BF7D7A5B1144BEBD0761BD93A8142A\3204.ico</path><vendor>PUP.Optional.OpenCandy</vendor><action></action><hash>f7f8e5bd5a21d6607298dfc7c33f21df</hash></file>
<file><path>C:\Users\pc\AppData\Roaming\OpenCandy\96BF7D7A5B1144BEBD0761BD93A8142A\speedupmypcROW.exe</path><vendor>PUP.Optional.OpenCandy</vendor><action></action><hash>f7f8e5bd5a21d6607298dfc7c33f21df</hash></file>
<file><path>C:\Users\pc\AppData\Roaming\OpenCandy\AB199B1507CE4C9C8AD7C17BF58D7C3E\TuneUpUtilities2013_2200329_cs-CZ.exe</path><vendor>PUP.Optional.OpenCandy</vendor><action></action><hash>f7f8e5bd5a21d6607298dfc7c33f21df</hash></file>
<file><path>C:\Users\pc\AppData\Roaming\OpenCandy\F1F092CF65EF46A2B031232C3E52C184\avg_tuht_stf_cs_2014_206_CZ.exe</path><vendor>PUP.Optional.OpenCandy</vendor><action></action><hash>f7f8e5bd5a21d6607298dfc7c33f21df</hash></file>
<file><path>C:\Windows\inf\mnccqxdd\diablo130302.cl</path><vendor>Trojan.Agent.BCM</vendor><action></action><hash>5b94228092e922140158b6f216ecdd23</hash></file>
<file><path>C:\Windows\inf\mnccqxdd\diakgcn121016.cl</path><vendor>Trojan.Agent.BCM</vendor><action></action><hash>5b94228092e922140158b6f216ecdd23</hash></file>
<file><path>C:\Windows\inf\mnccqxdd\libcurl-4.dll</path><vendor>Trojan.Agent.BCM</vendor><action></action><hash>5b94228092e922140158b6f216ecdd23</hash></file>
<file><path>C:\Windows\inf\mnccqxdd\libeay32.dll</path><vendor>Trojan.Agent.BCM</vendor><action></action><hash>5b94228092e922140158b6f216ecdd23</hash></file>
<file><path>C:\Windows\inf\mnccqxdd\libidn-11.dll</path><vendor>Trojan.Agent.BCM</vendor><action></action><hash>5b94228092e922140158b6f216ecdd23</hash></file>
<file><path>C:\Windows\inf\mnccqxdd\librtmp.dll</path><vendor>Trojan.Agent.BCM</vendor><action></action><hash>5b94228092e922140158b6f216ecdd23</hash></file>
<file><path>C:\Windows\inf\mnccqxdd\libssh2.dll</path><vendor>Trojan.Agent.BCM</vendor><action></action><hash>5b94228092e922140158b6f216ecdd23</hash></file>
<file><path>C:\Windows\inf\mnccqxdd\mnccqxdd.exe</path><vendor>Trojan.Agent.BCM</vendor><action></action><hash>5b94228092e922140158b6f216ecdd23</hash></file>
<file><path>C:\Windows\inf\mnccqxdd\phatk121016.cl</path><vendor>Trojan.Agent.BCM</vendor><action></action><hash>5b94228092e922140158b6f216ecdd23</hash></file>
<file><path>C:\Windows\inf\mnccqxdd\poclbm130302.cl</path><vendor>Trojan.Agent.BCM</vendor><action></action><hash>5b94228092e922140158b6f216ecdd23</hash></file>
<file><path>C:\Windows\inf\mnccqxdd\scrypt130511.cl</path><vendor>Trojan.Agent.BCM</vendor><action></action><hash>5b94228092e922140158b6f216ecdd23</hash></file>
<file><path>C:\Windows\inf\mnccqxdd\ssleay32.dll</path><vendor>Trojan.Agent.BCM</vendor><action></action><hash>5b94228092e922140158b6f216ecdd23</hash></file>
<file><path>C:\Windows\inf\mnccqxdd\zlib1.dll</path><vendor>Trojan.Agent.BCM</vendor><action></action><hash>5b94228092e922140158b6f216ecdd23</hash></file>
<file><path>C:\Windows\inf\mnccqxdd\bitstreams\fpgaminer_top_fixed7_197MHz.ncd</path><vendor>Trojan.Agent.BCM</vendor><action></action><hash>5b94228092e922140158b6f216ecdd23</hash></file>
<file><path>C:\Windows\inf\mnchxmwbo\diablo130302.cl</path><vendor>Trojan.Agent.BCM</vendor><action></action><hash>e00f435f3c3f93a3abafa50362a02cd4</hash></file>
<file><path>C:\Windows\inf\mnchxmwbo\diakgcn121016.cl</path><vendor>Trojan.Agent.BCM</vendor><action></action><hash>e00f435f3c3f93a3abafa50362a02cd4</hash></file>
<file><path>C:\Windows\inf\mnchxmwbo\libcurl-4.dll</path><vendor>Trojan.Agent.BCM</vendor><action></action><hash>e00f435f3c3f93a3abafa50362a02cd4</hash></file>
<file><path>C:\Windows\inf\mnchxmwbo\libeay32.dll</path><vendor>Trojan.Agent.BCM</vendor><action></action><hash>e00f435f3c3f93a3abafa50362a02cd4</hash></file>
<file><path>C:\Windows\inf\mnchxmwbo\libidn-11.dll</path><vendor>Trojan.Agent.BCM</vendor><action></action><hash>e00f435f3c3f93a3abafa50362a02cd4</hash></file>
<file><path>C:\Windows\inf\mnchxmwbo\librtmp.dll</path><vendor>Trojan.Agent.BCM</vendor><action></action><hash>e00f435f3c3f93a3abafa50362a02cd4</hash></file>
<file><path>C:\Windows\inf\mnchxmwbo\libssh2.dll</path><vendor>Trojan.Agent.BCM</vendor><action></action><hash>e00f435f3c3f93a3abafa50362a02cd4</hash></file>
<file><path>C:\Windows\inf\mnchxmwbo\mnchxmwbo.exe</path><vendor>Trojan.Agent.BCM</vendor><action></action><hash>e00f435f3c3f93a3abafa50362a02cd4</hash></file>
<file><path>C:\Windows\inf\mnchxmwbo\phatk121016.cl</path><vendor>Trojan.Agent.BCM</vendor><action></action><hash>e00f435f3c3f93a3abafa50362a02cd4</hash></file>
<file><path>C:\Windows\inf\mnchxmwbo\poclbm130302.cl</path><vendor>Trojan.Agent.BCM</vendor><action></action><hash>e00f435f3c3f93a3abafa50362a02cd4</hash></file>
<file><path>C:\Windows\inf\mnchxmwbo\scrypt130511.cl</path><vendor>Trojan.Agent.BCM</vendor><action></action><hash>e00f435f3c3f93a3abafa50362a02cd4</hash></file>
<file><path>C:\Windows\inf\mnchxmwbo\ssleay32.dll</path><vendor>Trojan.Agent.BCM</vendor><action></action><hash>e00f435f3c3f93a3abafa50362a02cd4</hash></file>
<file><path>C:\Windows\inf\mnchxmwbo\zlib1.dll</path><vendor>Trojan.Agent.BCM</vendor><action></action><hash>e00f435f3c3f93a3abafa50362a02cd4</hash></file>
<file><path>C:\Windows\inf\mnchxmwbo\bitstreams\fpgaminer_top_fixed7_197MHz.ncd</path><vendor>Trojan.Agent.BCM</vendor><action></action><hash>e00f435f3c3f93a3abafa50362a02cd4</hash></file>
</items>
</mbam-log>

Uživatelský avatar
Orcus
člen Security týmu
Elite Level 10.5
Elite Level 10.5
Příspěvky: 10645
Registrován: duben 10
Bydliště: Okolo rostou 3 růže =o)
Pohlaví: Muž
Stav:
Offline

Re: Prosim o kontrolu logu, asi VIRUS

Příspěvekod Orcus » 23 črc 2014 16:19

- Znovu spusť MbAM a dej Skenovat nyní
- Po proběhnutí programu se ti objeví hláška, tak klikni na „Vše do karantény“ -> „Exportovat záznam“ a vyber „textový soubor“ , soubor nějak pojmenuj a ulož na Plochu.
- Zkopíruj sem celý obsah toho logu.

====================================================

Spusť znovu AdwCleaner (u Windows Vista či Windows7, klikni na AdwCleaner pravým a vyber „Spustit jako správce“
Klikni na „ Smazat“
Program provede opravu, po automatickém restartu neukáže log (C:\AdwCleaner [S?].txt) , jeho obsah sem celý vlož.

====================================================

Stáhni si Junkware Removal Tool

na svojí plochu.
Deaktivuj si svůj antivirový program.
Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.

====================================================

Stáhni si RogueKiller
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit

-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
Láska hřeje, ale uhlí je uhlí. :fire:



Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.

Pár rad k bezpečnosti PC.

Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix

Pokud budete spokojeni , můžete podpořit naše fórum.

tomas_ch
Level 2.5
Level 2.5
Příspěvky: 353
Registrován: srpen 07
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosim o kontrolu logu, asi VIRUS

Příspěvekod tomas_ch » 24 črc 2014 11:00

Malwarebytes Anti-Malware
www.malwarebytes.org

Scan Date: 24.7.2014
Scan Time: 10:40:41
Logfile: xxx.txt
Administrator: Yes

Version: 2.00.2.1012
Malware Database: v2014.07.24.01
Rootkit Database: v2014.07.17.01
License: Trial
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled

OS: Windows Vista Service Pack 2
CPU: x86
File System: NTFS
User: pc

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 266691
Time Elapsed: 8 min, 25 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled

Processes: 0
(No malicious items detected)

Modules: 0
(No malicious items detected)

Registry Keys: 0
(No malicious items detected)

Registry Values: 2
Trojan.Agent.VBS, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|MSStp, C:\Windows\system32\msstp.vbe, , [1041d0d3b0cbf442d5938860d42ed32d]
Malware.Trace, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|NtVdmSrv, C:\Windows\inf\ntvdm.vbe, , [f65b5d4647348ea8ee634abd26de42be]

Registry Data: 0
(No malicious items detected)

Folders: 4
Trojan.Agent.BCM, C:\Windows\inf\mnccqxdd, , [1b363271c2b948eeda0b5d4b8181e020],
Trojan.Agent.BCM, C:\Windows\inf\mnccqxdd\bitstreams, , [1b363271c2b948eeda0b5d4b8181e020],
Trojan.Agent.BCM, C:\Windows\inf\mnchxmwbo, , [b79a8023afcca096bb2b4e5afe040df3],
Trojan.Agent.BCM, C:\Windows\inf\mnchxmwbo\bitstreams, , [b79a8023afcca096bb2b4e5afe040df3],

Files: 32
Trojan.Agent.VBS, C:\Windows\System32\msstp.vbe, , [1041d0d3b0cbf442d5938860d42ed32d],
Trojan.Rundis, C:\Windows\expIorer.exe, , [fd5490136318d75fcfebf0610ff4a55b],
Malware.Trace, C:\Windows\inf\ntvdm.vbe, , [f65b5d4647348ea8ee634abd26de42be],
Malware.Trace, C:\Windows\inf\ntvdm.inf, , [460b6c37017a191dbc96fa0d10f4b14f],
Trojan.Agent.BCM, C:\Windows\inf\mnccqxdd\diablo130302.cl, , [1b363271c2b948eeda0b5d4b8181e020],
Trojan.Agent.BCM, C:\Windows\inf\mnccqxdd\diakgcn121016.cl, , [1b363271c2b948eeda0b5d4b8181e020],
Trojan.Agent.BCM, C:\Windows\inf\mnccqxdd\libcurl-4.dll, , [1b363271c2b948eeda0b5d4b8181e020],
Trojan.Agent.BCM, C:\Windows\inf\mnccqxdd\libeay32.dll, , [1b363271c2b948eeda0b5d4b8181e020],
Trojan.Agent.BCM, C:\Windows\inf\mnccqxdd\libidn-11.dll, , [1b363271c2b948eeda0b5d4b8181e020],
Trojan.Agent.BCM, C:\Windows\inf\mnccqxdd\librtmp.dll, , [1b363271c2b948eeda0b5d4b8181e020],
Trojan.Agent.BCM, C:\Windows\inf\mnccqxdd\libssh2.dll, , [1b363271c2b948eeda0b5d4b8181e020],
Trojan.Agent.BCM, C:\Windows\inf\mnccqxdd\mnccqxdd.exe, , [1b363271c2b948eeda0b5d4b8181e020],
Trojan.Agent.BCM, C:\Windows\inf\mnccqxdd\phatk121016.cl, , [1b363271c2b948eeda0b5d4b8181e020],
Trojan.Agent.BCM, C:\Windows\inf\mnccqxdd\poclbm130302.cl, , [1b363271c2b948eeda0b5d4b8181e020],
Trojan.Agent.BCM, C:\Windows\inf\mnccqxdd\scrypt130511.cl, , [1b363271c2b948eeda0b5d4b8181e020],
Trojan.Agent.BCM, C:\Windows\inf\mnccqxdd\ssleay32.dll, , [1b363271c2b948eeda0b5d4b8181e020],
Trojan.Agent.BCM, C:\Windows\inf\mnccqxdd\zlib1.dll, , [1b363271c2b948eeda0b5d4b8181e020],
Trojan.Agent.BCM, C:\Windows\inf\mnccqxdd\bitstreams\fpgaminer_top_fixed7_197MHz.ncd, , [1b363271c2b948eeda0b5d4b8181e020],
Trojan.Agent.BCM, C:\Windows\inf\mnchxmwbo\diablo130302.cl, , [b79a8023afcca096bb2b4e5afe040df3],
Trojan.Agent.BCM, C:\Windows\inf\mnchxmwbo\diakgcn121016.cl, , [b79a8023afcca096bb2b4e5afe040df3],
Trojan.Agent.BCM, C:\Windows\inf\mnchxmwbo\libcurl-4.dll, , [b79a8023afcca096bb2b4e5afe040df3],
Trojan.Agent.BCM, C:\Windows\inf\mnchxmwbo\libeay32.dll, , [b79a8023afcca096bb2b4e5afe040df3],
Trojan.Agent.BCM, C:\Windows\inf\mnchxmwbo\libidn-11.dll, , [b79a8023afcca096bb2b4e5afe040df3],
Trojan.Agent.BCM, C:\Windows\inf\mnchxmwbo\librtmp.dll, , [b79a8023afcca096bb2b4e5afe040df3],
Trojan.Agent.BCM, C:\Windows\inf\mnchxmwbo\libssh2.dll, , [b79a8023afcca096bb2b4e5afe040df3],
Trojan.Agent.BCM, C:\Windows\inf\mnchxmwbo\mnchxmwbo.exe, , [b79a8023afcca096bb2b4e5afe040df3],
Trojan.Agent.BCM, C:\Windows\inf\mnchxmwbo\phatk121016.cl, , [b79a8023afcca096bb2b4e5afe040df3],
Trojan.Agent.BCM, C:\Windows\inf\mnchxmwbo\poclbm130302.cl, , [b79a8023afcca096bb2b4e5afe040df3],
Trojan.Agent.BCM, C:\Windows\inf\mnchxmwbo\scrypt130511.cl, , [b79a8023afcca096bb2b4e5afe040df3],
Trojan.Agent.BCM, C:\Windows\inf\mnchxmwbo\ssleay32.dll, , [b79a8023afcca096bb2b4e5afe040df3],
Trojan.Agent.BCM, C:\Windows\inf\mnchxmwbo\zlib1.dll, , [b79a8023afcca096bb2b4e5afe040df3],
Trojan.Agent.BCM, C:\Windows\inf\mnchxmwbo\bitstreams\fpgaminer_top_fixed7_197MHz.ncd, , [b79a8023afcca096bb2b4e5afe040df3],

Physical Sectors: 0
(No malicious items detected)


(end)



# AdwCleaner v3.216 - Report created 22/07/2014 at 10:59:35
# Updated 17/07/2014 by Xplode
# Operating System : Windows Vista (TM) Home Premium Service Pack 2 (32 bits)
# Username : pc - PC-PC
# Running from : C:\Users\pc\Downloads\adwcleaner_3.216.exe
# Option : Clean

***** [ Services ] *****

Service Deleted : pcsuservice

***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\Ask
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Uniblue
Folder Deleted : C:\Program Files\Ask.com
Folder Deleted : C:\Program Files\Conduit
Folder Deleted : C:\Program Files\Convesoft
Folder Deleted : C:\Program Files\BS_Player_ControlBar
Folder Deleted : C:\Windows\installer\{86d4b82a-abed-442a-be86-96357b70f4fe}
Folder Deleted : C:\Users\pc\AppData\Local\Conduit
Folder Deleted : C:\Users\pc\AppData\Local\BS_Player_ControlBar
Folder Deleted : C:\Users\pc\AppData\LocalLow\AskToolbar
Folder Deleted : C:\Users\pc\AppData\LocalLow\Conduit
Folder Deleted : C:\Users\pc\AppData\LocalLow\BS_Player_ControlBar
Folder Deleted : C:\Users\pc\AppData\Roaming\OpenCandy
Folder Deleted : C:\Users\pc\Documents\PCSpeedUp
File Deleted : C:\END
File Deleted : C:\Windows\Tasks\PC SpeedUp Service Deactivator.job
File Deleted : C:\Windows\System32\Tasks\PC SpeedUp Service Deactivator
File Deleted : C:\Windows\System32\Tasks\Scheduled Update for Ask Toolbar

***** [ Shortcuts ] *****


***** [ Registry ] *****

[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{ED28578F-4408-4C80-84BB-239FF8E099C7}
[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{ED28578F-4408-4C80-84BB-239FF8E099C7}
[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B08EFF92-EDDE-42EC-A399-10F21464E978}
[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B08EFF92-EDDE-42EC-A399-10F21464E978}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\GenericAskToolbar.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\WLXQuickTimeShellExt.DLL
Key Deleted : HKLM\SOFTWARE\Classes\Conduit.Engine
Key Deleted : HKLM\SOFTWARE\Classes\driverscanner
Key Deleted : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd
Key Deleted : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd.1
Key Deleted : HKLM\SOFTWARE\Classes\protector_dll.protectorbho
Key Deleted : HKLM\SOFTWARE\Classes\protector_dll.protectorbho.1
Key Deleted : HKLM\SOFTWARE\Classes\speedupmypc
Key Deleted : HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ApnUpdater
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT1750559
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{00000000-6E41-4FD3-8538-502F5495E5FC}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{B89F5C49-51DB-4974-AB5A-E25901AA339C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E9B5B0D2-D08A-49FC-8B5C-159B60BAA268}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{055DD326-956C-4827-9467-A172509E81B3}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2318C2B1-4965-11D4-9B18-009027A5CD4F}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{055DD326-956C-4827-9467-A172509E81B3}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2318C2B1-4965-11D4-9B18-009027A5CD4F}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{055DD326-956C-4827-9467-A172509E81B3}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EBF7440B-ACAA-4182-A14B-7B01F64D2310}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C2CD4EDC-38FA-43CA-9331-A9A45620F700}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{70D46D94-BF1E-45ED-B567-48701376298E}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{2318C2B1-4965-11D4-9B18-009027A5CD4F}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{30F9B915-B755-4826-820B-08FBA6BD249D}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
Key Deleted : HKCU\Software\APN
Key Deleted : HKCU\Software\Ask.com
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\Convesoft
Key Deleted : HKCU\Software\BS_Player_ControlBar
Key Deleted : HKCU\Software\AppDataLow\Toolbar
Key Deleted : HKCU\Software\AppDataLow\Software\AskToolbar
Key Deleted : HKCU\Software\AppDataLow\Software\Conduit
Key Deleted : HKCU\Software\AppDataLow\Software\ConduitSearchScopes
Key Deleted : HKCU\Software\AppDataLow\Software\SmartBar
Key Deleted : HKCU\Software\AppDataLow\Software\BS_Player_ControlBar
Key Deleted : HKLM\Software\APN
Key Deleted : HKLM\Software\AskToolbar
Key Deleted : HKLM\Software\Conduit
Key Deleted : HKLM\Software\Speedchecker Limited
Key Deleted : HKLM\Software\Uniblue
Key Deleted : HKLM\Software\BS_Player_ControlBar
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{79A765E1-C399-405B-85AF-466F52E918B0}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\PCSU-SL_is1
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\BS_Player_ControlBar Toolbar
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{79A765E1-C399-405B-85AF-466F52E918B0}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\conduitEngine
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\PCSU-SL_is1
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\BS_Player_ControlBar Toolbar
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08121C32A9C319F4CB0C11FF059552A4
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0CFE535C35F99574E8340BFA75BF92C2
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\261F213D1F55267499B1F87D0CC3BCF7
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\741B4ADF27276464790022C965AB6DA8
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DE196B10195F5647A2B21B761F3DE01
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D4F5849367142E4685ED8C25E44C5ED
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A5875B04372C19545BEB90D4D606C472
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A876D9E80B896EC44A8620248CC79296
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B66FFAB725B92594C986DE826A867888
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\074A36B543391D44FA16C62EBD65A59E
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF
Key Deleted : HKLM\Software\Classes\Installer\Features\074A36B543391D44FA16C62EBD65A59E
Key Deleted : HKLM\Software\Classes\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF
Key Deleted : HKLM\Software\Classes\Installer\Products\074A36B543391D44FA16C62EBD65A59E
Key Deleted : HKLM\Software\Classes\Installer\Products\A28B4D68DEBAA244EB686953B7074FEF
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F928123A039649549966D4C29D35B1C9

***** [ Browsers ] *****

-\\ Internet Explorer v9.0.8112.16520


-\\ Google Chrome v35.0.1916.153

[ File : C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [11845 octets] - [22/07/2014 10:57:12]
AdwCleaner[S0].txt - [11087 octets] - [22/07/2014 10:59:35]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [11148 octets] ##########
# AdwCleaner v3.216 - Report created 31/12/2000 at 23:13:33
# Updated 17/07/2014 by Xplode
# Operating System : Windows Vista (TM) Home Premium Service Pack 2 (32 bits)
# Username : pc - PC-PC
# Running from : C:\Users\pc\Downloads\adwcleaner_3.216.exe
# Option : Clean

***** [ Services ] *****

[#] Service Deleted : pcsuservice

***** [ Files / Folders ] *****

Folder Deleted : C:\Program Files\Ask.com
Folder Deleted : C:\Program Files\Conduit
Folder Deleted : C:\Program Files\Convesoft
Folder Deleted : C:\Program Files\BS_Player_ControlBar
Folder Deleted : C:\Windows\installer\{86d4b82a-abed-442a-be86-96357b70f4fe}
Folder Deleted : C:\Users\pc\AppData\Local\Conduit
Folder Deleted : C:\Users\pc\AppData\Local\BS_Player_ControlBar
Folder Deleted : C:\Users\pc\AppData\LocalLow\AskToolbar
Folder Deleted : C:\Users\pc\AppData\LocalLow\BS_Player_ControlBar
Folder Deleted : C:\Users\pc\AppData\Roaming\OpenCandy
Folder Deleted : C:\Users\pc\Documents\PCSpeedUp
File Deleted : C:\Windows\Tasks\PC SpeedUp Service Deactivator.job
File Deleted : C:\Windows\System32\Tasks\PC SpeedUp Service Deactivator
File Deleted : C:\Windows\System32\Tasks\Scheduled Update for Ask Toolbar

***** [ Shortcuts ] *****


***** [ Registry ] *****

[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{ED28578F-4408-4C80-84BB-239FF8E099C7}
[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{ED28578F-4408-4C80-84BB-239FF8E099C7}
[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B08EFF92-EDDE-42EC-A399-10F21464E978}
[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B08EFF92-EDDE-42EC-A399-10F21464E978}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\GenericAskToolbar.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\WLXQuickTimeShellExt.DLL
Key Deleted : HKLM\SOFTWARE\Classes\Conduit.Engine
Key Deleted : HKLM\SOFTWARE\Classes\driverscanner
Key Deleted : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd
Key Deleted : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd.1
Key Deleted : HKLM\SOFTWARE\Classes\protector_dll.protectorbho
Key Deleted : HKLM\SOFTWARE\Classes\protector_dll.protectorbho.1
Key Deleted : HKLM\SOFTWARE\Classes\speedupmypc
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [ApnUpdater]
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT1750559
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{00000000-6E41-4FD3-8538-502F5495E5FC}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{B89F5C49-51DB-4974-AB5A-E25901AA339C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E9B5B0D2-D08A-49FC-8B5C-159B60BAA268}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{055DD326-956C-4827-9467-A172509E81B3}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2318C2B1-4965-11D4-9B18-009027A5CD4F}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{055DD326-956C-4827-9467-A172509E81B3}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2318C2B1-4965-11D4-9B18-009027A5CD4F}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{055DD326-956C-4827-9467-A172509E81B3}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EBF7440B-ACAA-4182-A14B-7B01F64D2310}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C2CD4EDC-38FA-43CA-9331-A9A45620F700}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{70D46D94-BF1E-45ED-B567-48701376298E}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{2318C2B1-4965-11D4-9B18-009027A5CD4F}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{30F9B915-B755-4826-820B-08FBA6BD249D}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
Key Deleted : HKCU\Software\APN
Key Deleted : HKCU\Software\Ask.com
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\Convesoft
Key Deleted : HKCU\Software\BS_Player_ControlBar
Key Deleted : HKCU\Software\AppDataLow\Toolbar
Key Deleted : HKCU\Software\AppDataLow\Software\AskToolbar
Key Deleted : HKCU\Software\AppDataLow\Software\Conduit
Key Deleted : HKCU\Software\AppDataLow\Software\ConduitSearchScopes
Key Deleted : HKCU\Software\AppDataLow\Software\SmartBar
Key Deleted : HKCU\Software\AppDataLow\Software\BS_Player_ControlBar
Key Deleted : HKLM\Software\APN
Key Deleted : HKLM\Software\AskToolbar
Key Deleted : HKLM\Software\Conduit
Key Deleted : HKLM\Software\Speedchecker Limited
Key Deleted : HKLM\Software\Uniblue
Key Deleted : HKLM\Software\BS_Player_ControlBar
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{79A765E1-C399-405B-85AF-466F52E918B0}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\PCSU-SL_is1
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\BS_Player_ControlBar Toolbar
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{79A765E1-C399-405B-85AF-466F52E918B0}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\conduitEngine
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\PCSU-SL_is1
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\BS_Player_ControlBar Toolbar
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08121C32A9C319F4CB0C11FF059552A4
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0CFE535C35F99574E8340BFA75BF92C2
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\261F213D1F55267499B1F87D0CC3BCF7
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\741B4ADF27276464790022C965AB6DA8
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DE196B10195F5647A2B21B761F3DE01
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D4F5849367142E4685ED8C25E44C5ED
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A5875B04372C19545BEB90D4D606C472
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A876D9E80B896EC44A8620248CC79296
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B66FFAB725B92594C986DE826A867888
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\074A36B543391D44FA16C62EBD65A59E
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF
Key Deleted : HKLM\Software\Classes\Installer\Features\074A36B543391D44FA16C62EBD65A59E
Key Deleted : HKLM\Software\Classes\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF
Key Deleted : HKLM\Software\Classes\Installer\Products\074A36B543391D44FA16C62EBD65A59E
Key Deleted : HKLM\Software\Classes\Installer\Products\A28B4D68DEBAA244EB686953B7074FEF
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F928123A039649549966D4C29D35B1C9

***** [ Browsers ] *****

-\\ Internet Explorer v9.0.8112.16520


-\\ Google Chrome v36.0.1985.125

[ File : C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [23563 octets] - [22/07/2014 09:57:12]
AdwCleaner[R1].txt - [11779 octets] - [31/12/2000 23:07:35]
AdwCleaner[S0].txt - [22185 octets] - [22/07/2014 09:59:35]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [22246 octets] ##########



RogueKiller V9.2.3.0 [Jul 11 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com

Operační systém : Windows Vista (6.0.6002 Service Pack 2) 32 bits version
Spuštěno v : Nouzový režim s prací v síti
Uživatel : pc [Práva správce]
Mód : Kontrola -- Datum : 12/31/2000 23:37:54

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 12 ¤¤¤
[Suspicious.Path] HKEY_USERS\S-1-5-21-3280974334-3652872388-2672934827-1000\Software\Microsoft\Windows\CurrentVersion\Run | cz.seznam.software.autoupdate : "C:\Users\pc\AppData\Roaming\Seznam.cz\szninstall.exe" -c -> NALEZENO
[Suspicious.Path] HKEY_USERS\S-1-5-21-3280974334-3652872388-2672934827-1000\Software\Microsoft\Windows\CurrentVersion\Run | cz.seznam.software.szndesktop : "C:\Users\pc\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q -> NALEZENO
[Suspicious.Path] HKEY_USERS\S-1-5-21-3280974334-3652872388-2672934827-1000\Software\Microsoft\Windows\CurrentVersion\Run | SideBar_Update : C:\Users\pc\AppData\Roaming\update_tc\update.exe -> NALEZENO
[Suspicious.Path] HKEY_USERS\S-1-5-21-3280974334-3652872388-2672934827-1000\Software\Microsoft\Windows\CurrentVersion\Run | SoundUpdateHelper : C:\Users\pc\AppData\Roaming\update_tc\update.exe -> NALEZENO
[Suspicious.Path] HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\asbp2poa -> NALEZENO
[Suspicious.Path] HKEY_LOCAL_MACHINE\System\ControlSet001\Services\asbp2poa -> NALEZENO
[Suspicious.Path] HKEY_LOCAL_MACHINE\System\ControlSet002\Services\asbp2poa -> NALEZENO
[PUM.Dns] HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{8D9E9286-918A-4D3B-99E1-5B2FB252F2D0} | DhcpNameServer : 10.0.20.53 10.0.20.10 -> NALEZENO
[PUM.Dns] HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters\Interfaces\{8D9E9286-918A-4D3B-99E1-5B2FB252F2D0} | DhcpNameServer : 10.0.20.53 10.0.20.10 -> NALEZENO
[PUM.Dns] HKEY_LOCAL_MACHINE\System\ControlSet002\Services\Tcpip\Parameters\Interfaces\{8D9E9286-918A-4D3B-99E1-5B2FB252F2D0} | DhcpNameServer : 10.0.20.53 10.0.20.10 -> NALEZENO
[PUM.DesktopIcons] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {20D04FE0-3AEA-1069-A2D8-08002B30309D} : 1 -> NALEZENO
[PUM.DesktopIcons] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {59031a47-3f72-44a7-89c5-5595fe6b30ee} : 1 -> NALEZENO

¤¤¤ naplánované úlohy : 0 ¤¤¤

¤¤¤ Soubory : 0 ¤¤¤

¤¤¤ Soubor HOSTS : 2 ¤¤¤
[C:\Windows\System32\drivers\etc\hosts] 127.0.0.1 localhost
[C:\Windows\System32\drivers\etc\hosts] ::1 localhost

¤¤¤ Antirootkit : 0 (Driver: NENAHRÁNO [0xc000035f]) ¤¤¤

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Kontrola MBR : ¤¤¤
+++++ PhysicalDrive0: FUJITSU MJA2320BH G2 +++++
--- User ---
[MBR] a546510a8ac508cd0f16d0116a85b7c8
[BSP] 00236dbc4b3a085c16fdc577ae13c298 : Acer MBR Code
Partition table:
0 - [XXXXXX] ACER (0x27) [VISIBLE] Offset (sectors): 2048 | Size: 13000 MB
1 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 26626048 | Size: 146119 MB
2 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 325877760 | Size: 141004 MB
3 - [XXXXXX] COMPAQ (0x12) [VISIBLE] Offset (sectors): 614653952 | Size: 5120 MB
User = LL1 ... OK
User = LL2 ... OK



Junk Removal se zatim nechce rozbehnout.... uvidime...

Uživatelský avatar
Orcus
člen Security týmu
Elite Level 10.5
Elite Level 10.5
Příspěvky: 10645
Registrován: duben 10
Bydliště: Okolo rostou 3 růže =o)
Pohlaví: Muž
Stav:
Offline

Re: Prosim o kontrolu logu, asi VIRUS

Příspěvekod Orcus » 24 črc 2014 13:27

Zavři všechny programy a prohlížeče. Deaktivuj antivir a firewall.
Prosím, odpoj všechny USB nebo externí disky z počítače před spuštěním tohoto programu.
Spusť RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Počkej, dokud status okno zobrazuje "Prohledat "
- V záložkách (Registry , Tasks , Web Browser apod.) vše zatrhni (dej zatržítka)
- Klikni na "Smazat"
- Počkej, dokud Status box zobrazuje " Mazání dokončeno "
- Klikni na "Zpráva" a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [číslo]. txt na ploše.
- Zavři RogueKiller

====================================================

Stáhni si TDSSKiller

Na svojí plochu. Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller.2.2.7.1._(datum)_log.txt , vlož sem prosím celý obsah logu.

Pokud se log nevejde do jedné zprávy, rozděl jej na více částí.
Láska hřeje, ale uhlí je uhlí. :fire:



Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.

Pár rad k bezpečnosti PC.

Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix

Pokud budete spokojeni , můžete podpořit naše fórum.

tomas_ch
Level 2.5
Level 2.5
Příspěvky: 353
Registrován: srpen 07
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosim o kontrolu logu, asi VIRUS

Příspěvekod tomas_ch » 24 črc 2014 13:37

RogueKiller V9.2.3.0 [Jul 11 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com

Operační systém : Windows Vista (6.0.6002 Service Pack 2) 32 bits version
Spuštěno v : Nouzový režim s prací v síti
Uživatel : pc [Práva správce]
Mód : Odebrat -- Datum : 07/24/2014 13:36:38

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 12 ¤¤¤
[Suspicious.Path] HKEY_USERS\S-1-5-21-3280974334-3652872388-2672934827-1000\Software\Microsoft\Windows\CurrentVersion\Run | cz.seznam.software.autoupdate : "C:\Users\pc\AppData\Roaming\Seznam.cz\szninstall.exe" -c [x] -> VYMAZÁNO
[Suspicious.Path] HKEY_USERS\S-1-5-21-3280974334-3652872388-2672934827-1000\Software\Microsoft\Windows\CurrentVersion\Run | cz.seznam.software.szndesktop : "C:\Users\pc\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q [x] -> VYMAZÁNO
[Suspicious.Path] HKEY_USERS\S-1-5-21-3280974334-3652872388-2672934827-1000\Software\Microsoft\Windows\CurrentVersion\Run | SideBar_Update : C:\Users\pc\AppData\Roaming\update_tc\update.exe [x] -> VYMAZÁNO
[Suspicious.Path] HKEY_USERS\S-1-5-21-3280974334-3652872388-2672934827-1000\Software\Microsoft\Windows\CurrentVersion\Run | SoundUpdateHelper : C:\Users\pc\AppData\Roaming\update_tc\update.exe [x] -> VYMAZÁNO
[Suspicious.Path] HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\asbp2poa -> VYMAZÁNO
[Suspicious.Path] HKEY_LOCAL_MACHINE\System\ControlSet001\Services\asbp2poa -> VYMAZÁNO
[Suspicious.Path] HKEY_LOCAL_MACHINE\System\ControlSet002\Services\asbp2poa -> VYMAZÁNO
[PUM.Dns] HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{8D9E9286-918A-4D3B-99E1-5B2FB252F2D0} | DhcpNameServer : 10.0.20.53 10.0.20.10 -> NAHRAZENO ()
[PUM.Dns] HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters\Interfaces\{8D9E9286-918A-4D3B-99E1-5B2FB252F2D0} | DhcpNameServer : 10.0.20.53 10.0.20.10 -> NAHRAZENO ()
[PUM.Dns] HKEY_LOCAL_MACHINE\System\ControlSet002\Services\Tcpip\Parameters\Interfaces\{8D9E9286-918A-4D3B-99E1-5B2FB252F2D0} | DhcpNameServer : 10.0.20.53 10.0.20.10 -> NAHRAZENO ()
[PUM.DesktopIcons] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {20D04FE0-3AEA-1069-A2D8-08002B30309D} : 1 -> NAHRAZENO (0)
[PUM.DesktopIcons] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {59031a47-3f72-44a7-89c5-5595fe6b30ee} : 1 -> NAHRAZENO (0)

¤¤¤ naplánované úlohy : 0 ¤¤¤

¤¤¤ Soubory : 0 ¤¤¤

¤¤¤ Soubor HOSTS : 2 ¤¤¤
[C:\Windows\System32\drivers\etc\hosts] 127.0.0.1 localhost -> VYMAZÁNO
[C:\Windows\System32\drivers\etc\hosts] ::1 localhost -> VYMAZÁNO

¤¤¤ Antirootkit : 0 (Driver: NENAHRÁNO [0xc000035f]) ¤¤¤

¤¤¤ Webové prohlížeče : 11 ¤¤¤
[IE:Addon] System : Acer eDataSecurity Management [{5CBE3B7C-1E47-477e-A7DD-396DB0476E29}] -> VYMAZÁNO
[IE:Addon] System : Easy Photo Print [{9421DD08-935F-4701-A9CA-22DF90AC4EA6}] -> VYMAZÁNO
[CHROME:Addon] Default : Google Drive [apdfllckaahabafndbhieahigkjlhalf] -> VYMAZÁNO
[CHROME:Addon] Default : Seznam Lištička - Email [bgjpfhpjcgdppjbgnpnjllokbmcdllig] -> ERROR [2]
[CHROME:Addon] Default : Seznam Lištička - Slovník [blmojkbhnkkphngknkmgccmlenfaelkd] -> ERROR [2]
[CHROME:Addon] Default : YouTube [blpcfgokakmgnkcojhhkbfbldkacnbeo] -> ERROR [2]
[CHROME:Addon] Default : Google Search [coobgpohoikkiipiblmjeljniedjpjpf] -> ERROR [2]
[CHROME:Addon] Default : Skype Click to Call [lifbcibllhkdhoafpjfnlhfpfgnpldfl] -> ERROR [2]
[CHROME:Addon] Default : Google Wallet [nmmhkkegccagdldgiimedpiccmgmieda] -> ERROR [2]
[CHROME:Addon] Default : Seznam Lištička - Rychlá volba [olfeabkoenfaoljndfecamgilllcpiak] -> ERROR [2]
[CHROME:Addon] Default : Gmail [pjkljhegncpnkpknbcohdijeoejaedia] -> ERROR [2]

¤¤¤ Kontrola MBR : ¤¤¤
+++++ PhysicalDrive0: FUJITSU MJA2320BH G2 +++++
--- User ---
[MBR] a546510a8ac508cd0f16d0116a85b7c8
[BSP] 00236dbc4b3a085c16fdc577ae13c298 : Acer MBR Code
Partition table:
0 - [XXXXXX] ACER (0x27) [VISIBLE] Offset (sectors): 2048 | Size: 13000 MB
1 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 26626048 | Size: 146119 MB
2 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 325877760 | Size: 141004 MB
3 - [XXXXXX] COMPAQ (0x12) [VISIBLE] Offset (sectors): 614653952 | Size: 5120 MB
User = LL1 ... OK
User = LL2 ... OK


============================================
RKreport_SCN_12312000_233754.log - RKreport_SCN_07242014_133421.log

tomas_ch
Level 2.5
Level 2.5
Příspěvky: 353
Registrován: srpen 07
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosim o kontrolu logu, asi VIRUS

Příspěvekod tomas_ch » 24 črc 2014 14:01

13:58:54.0262 0x0428 TDSS rootkit removing tool 3.0.0.40 Jul 10 2014 12:37:58
13:58:59.0816 0x0428 ============================================================
13:58:59.0816 0x0428 Current date / time: 2014/07/24 13:58:59.0816
13:58:59.0816 0x0428 SystemInfo:
13:58:59.0816 0x0428
13:58:59.0816 0x0428 OS Version: 6.0.6002 ServicePack: 2.0
13:58:59.0816 0x0428 Product type: Workstation
13:58:59.0816 0x0428 ComputerName: PC-PC
13:58:59.0816 0x0428 UserName: pc
13:58:59.0816 0x0428 Windows directory: C:\Windows
13:58:59.0816 0x0428 System windows directory: C:\Windows
13:58:59.0816 0x0428 Processor architecture: Intel x86
13:58:59.0816 0x0428 Number of processors: 2
13:58:59.0816 0x0428 Page size: 0x1000
13:58:59.0816 0x0428 Boot type: Safe boot with network
13:58:59.0816 0x0428 ============================================================
13:59:00.0596 0x0428 KLMD registered as C:\Windows\system32\drivers\32656599.sys
13:59:01.0236 0x0428 System UUID: {E6918EF5-C90F-7A94-519E-486283A7BD90}
13:59:01.0797 0x0428 Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 ( 298.09 Gb ), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
13:59:01.0797 0x0428 ============================================================
13:59:01.0797 0x0428 \Device\Harddisk0\DR0:
13:59:01.0797 0x0428 MBR partitions:
13:59:01.0797 0x0428 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x1964800, BlocksNum 0x11D63800
13:59:01.0797 0x0428 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x136C8000, BlocksNum 0x11366000
13:59:01.0797 0x0428 ============================================================
13:59:01.0828 0x0428 C: <-> \Device\Harddisk0\DR0\Partition1
13:59:01.0875 0x0428 D: <-> \Device\Harddisk0\DR0\Partition2
13:59:01.0875 0x0428 ============================================================
13:59:01.0875 0x0428 Initialize success
13:59:01.0875 0x0428 ============================================================
13:59:06.0150 0x0770 ============================================================
13:59:06.0150 0x0770 Scan started
13:59:06.0150 0x0770 Mode: Manual;
13:59:06.0150 0x0770 ============================================================
13:59:06.0150 0x0770 KSN ping started
13:59:21.0328 0x0770 KSN ping finished: true
13:59:21.0765 0x0770 ================ Scan system memory ========================
13:59:21.0765 0x0770 System memory - ok
13:59:21.0765 0x0770 ================ Scan services =============================
13:59:21.0890 0x0770 [ 51F207D5A9E7B2E76BEE59C05CCC23C4, BE78957DD197777D899FAFBBE71E2FDB5DB9AC6AC4F1595A562FD362429BED6B ] !SASCORE C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
13:59:21.0906 0x0770 !SASCORE - ok
13:59:22.0093 0x0770 [ B33CF4DE909A5B30F526D82053A63C8E, ABF5BB962C038E545C18B96E686E072D780C907096C7BB341297AF31D3703ABD ] ABBYY.Licensing.FineReader.Sprint.9.0 C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
13:59:22.0124 0x0770 ABBYY.Licensing.FineReader.Sprint.9.0 - ok
13:59:22.0311 0x0770 [ 82B296AE1892FE3DBEE00C9CF92F8AC7, 54B22BA63E1DA616B546992141B0C3117BA057283B8F60CB9BECE203661FEBF3 ] ACPI C:\Windows\system32\drivers\acpi.sys
13:59:22.0327 0x0770 ACPI - ok
13:59:22.0374 0x0770 [ 04F0FCAC69C7C71A3AC4EB97FAFC8303, FBBDD38574A1F66A5AA12B82E34FDE60B870180C4B7100C15757539DC869ED4B ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
13:59:22.0405 0x0770 adp94xx - ok
13:59:22.0452 0x0770 [ 60505E0041F7751BDBB80F88BF45C2CE, 1DE16042B8ABD7B643189E836DE273832EE743FD66AFBB641E8049C4E0CD04D8 ] adpahci C:\Windows\system32\drivers\adpahci.sys
13:59:22.0467 0x0770 adpahci - ok
13:59:22.0498 0x0770 [ 8A42779B02AEC986EAB64ECFC98F8BD7, B89938EFF4E81FA44197D2D839EBD3340DDE01FBC79605049C088621784C1B91 ] adpu160m C:\Windows\system32\drivers\adpu160m.sys
13:59:22.0498 0x0770 adpu160m - ok
13:59:22.0545 0x0770 [ 241C9E37F8CE45EF51C3DE27515CA4E5, 1A03E93DD8C1F3640C96124A14A3D0F4E349B06CCA2118CE40B8AE201A4030A7 ] adpu320 C:\Windows\system32\drivers\adpu320.sys
13:59:22.0545 0x0770 adpu320 - ok
13:59:22.0592 0x0770 [ 9D1FDA9E086BA64E3C93C9DE32461BCF, 200FD0BFC811EC8993AF9FC78F58823ECC717063F438B627FBCDD6BD7790CAA8 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
13:59:22.0592 0x0770 AeLookupSvc - ok
13:59:22.0654 0x0770 [ 3911B972B55FEA0478476B2E777B29FA, 62545B90C7DD3F73777E62CD8264E611A4D71B6956CABFD2D820D25F41F471FD ] AFD C:\Windows\system32\drivers\afd.sys
13:59:22.0670 0x0770 AFD - ok
13:59:22.0717 0x0770 [ 8ED60797908FD394EEE0D6949F493224, E07C471050F8D13F0BE52BC2CF88BA0EB8612B4957C43FF16B90197C57738C99 ] AgereModemAudio C:\Windows\system32\agrsmsvc.exe
13:59:22.0717 0x0770 AgereModemAudio - ok
13:59:22.0764 0x0770 [ 38325C6AA8EAE011897D61CE48EC6435, 6F96F992022692E354BB61610936F39EA89F31F58135D0F5339A3690402F74ED ] AgereSoftModem C:\Windows\system32\DRIVERS\AGRSM.sys
13:59:22.0810 0x0770 AgereSoftModem - ok
13:59:22.0857 0x0770 [ 13F9E33747E6B41A3FF305C37DB0D360, 066DD6060B1CF93F85BBAAA52848C801128CD294E8B7EACD912E0EF219DBFBC2 ] agp440 C:\Windows\system32\drivers\agp440.sys
13:59:22.0857 0x0770 agp440 - ok
13:59:22.0888 0x0770 [ AE1FDF7BF7BB6C6A70F67699D880592A, B831BF156FC49287A19FC149383D437B1034EA6F42CE9D761EB90ABD0F8D96B1 ] aic78xx C:\Windows\system32\drivers\djsvs.sys
13:59:22.0888 0x0770 aic78xx - ok
13:59:22.0935 0x0770 [ 8D59617A9C3DBF4650AA44F4E9215744, 66A8E75744D5610021C6265CE18EB2B2ED8B93420AF5F98437DEC2BF87AC2127 ] AlfaFF C:\Windows\system32\Drivers\AlfaFF.sys
13:59:22.0951 0x0770 AlfaFF - ok
13:59:22.0966 0x0770 [ A1545B731579895D8CC44FC0481C1192, 6B0EE833BA39C142D625A03586CCD8F6C9C3136C603CE5DF5BAC1AA3423E3E7F ] ALG C:\Windows\System32\alg.exe
13:59:22.0966 0x0770 ALG - ok
13:59:22.0998 0x0770 [ 9EAEF5FC9B8E351AFA7E78A6FAE91F91, 0EADB6AE21FEDAB55D41F41B638198B556CC2BE2EE57F6C8B40EB044A318319F ] aliide C:\Windows\system32\drivers\aliide.sys
13:59:22.0998 0x0770 aliide - ok
13:59:23.0029 0x0770 [ C47344BC706E5F0B9DCE369516661578, 689C9CDAF6F38227F1C34359CAEB3C7798F318EDFD4B7FE532FBE3C8E4EE3DC8 ] amdagp C:\Windows\system32\drivers\amdagp.sys
13:59:23.0029 0x0770 amdagp - ok
13:59:23.0060 0x0770 [ 9B78A39A4C173FDBC1321E0DD659B34C, 2CA66EB68AD7A317D91C13B8CFD4E8CA985926A610D19595B613F5553B145C7B ] amdide C:\Windows\system32\drivers\amdide.sys
13:59:23.0060 0x0770 amdide - ok
13:59:23.0091 0x0770 [ 18F29B49AD23ECEE3D2A826C725C8D48, 0FA08882301D218E367E63E1966B6406220EE94BAE7E7DAD6E55EB70BF6FED7F ] AmdK7 C:\Windows\system32\drivers\amdk7.sys
13:59:23.0091 0x0770 AmdK7 - ok
13:59:23.0122 0x0770 [ 93AE7F7DD54AB986A6F1A1B37BE7442D, ECE0ABA2DECEED94AC678240A4B604F04022F0740F2295CBD07D25F5917E878A ] AmdK8 C:\Windows\system32\drivers\amdk8.sys
13:59:23.0122 0x0770 AmdK8 - ok
13:59:23.0185 0x0770 [ C6D704C7F0434DC791AAC37CAC4B6E14, 35CF7D1895F97637E0C678A39F3049B871BCA9526D379C7793ED33B87D2EAC4C ] Appinfo C:\Windows\System32\appinfo.dll
13:59:23.0185 0x0770 Appinfo - ok
13:59:23.0216 0x0770 [ 5D2888182FB46632511ACEE92FDAD522, 2E53231ACAF9B2FB7993DBC1CD15C06D7B0CCE0D08DAFF7B0CC13A2040028A75 ] arc C:\Windows\system32\drivers\arc.sys
13:59:23.0216 0x0770 arc - ok
13:59:23.0278 0x0770 [ 5E2A321BD7C8B3624E41FDEC3E244945, 9D47FF6C823868F2267FEFAB5851D3CD2BC3F619A2D6EFF803EA22DB0509C450 ] arcsas C:\Windows\system32\drivers\arcsas.sys
13:59:23.0278 0x0770 arcsas - ok
13:59:23.0372 0x0770 [ 40C145F12FF461A0220303BDA134F598, 27623BE626417151F62200127B8C68F35FB78D21E4D14B69E2B20F81C5D84C61 ] aspnet_state C:\Windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
13:59:23.0372 0x0770 aspnet_state - ok
13:59:23.0403 0x0770 [ 53B202ABEE6455406254444303E87BE1, 4C91CA8DD345FEDD74A6AF2C07580717703F979B7DE2532B1D00B9F6896DDE70 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
13:59:23.0403 0x0770 AsyncMac - ok
13:59:23.0434 0x0770 [ 2D9C903DC76A66813D350A562DE40ED9, 82609F01A08C6842E4C17C077BB641C1429C0E6657964B7F2D114035E1BDCBF3 ] atapi C:\Windows\system32\drivers\atapi.sys
13:59:23.0434 0x0770 atapi - ok
13:59:23.0512 0x0770 [ 68E2A1A0407A66CF50DA0300852424AB, 5FFDAE4E477C90A855081B5120582810471F67D3E9C343779A7AFB8D684D16F8 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
13:59:23.0544 0x0770 AudioEndpointBuilder - ok
13:59:23.0559 0x0770 [ 68E2A1A0407A66CF50DA0300852424AB, 5FFDAE4E477C90A855081B5120582810471F67D3E9C343779A7AFB8D684D16F8 ] Audiosrv C:\Windows\System32\Audiosrv.dll
13:59:23.0575 0x0770 Audiosrv - ok
13:59:23.0637 0x0770 [ 67E506B75BD5326A3EC7B70BD014DFB6, 3B07243970CAB4E93A858BEA6E31F56AD0157C42D624F3FEB469E68EEEF65669 ] Beep C:\Windows\system32\drivers\Beep.sys
13:59:23.0637 0x0770 Beep - ok
13:59:23.0700 0x0770 [ C789AF0F724FDA5852FB9A7D3A432381, 4B0F7A3A8F2D45E49630D24F2630B8014BCDB793B9C6E83FD2B2863A54F62BF5 ] BFE C:\Windows\System32\bfe.dll
13:59:23.0731 0x0770 BFE - ok
13:59:23.0809 0x0770 [ 93952506C6D67330367F7E7934B6A02F, 1D9A6B10B9489C1A32F730E22CC399BFF0796E3FCB3BA52BE45ED487CAC59EBD ] BITS C:\Windows\System32\qmgr.dll
13:59:23.0980 0x0770 BITS - ok
13:59:24.0027 0x0770 [ D4DF28447741FD3D953526E33A617397, E7239BA432090F8AC7DF453DB876507CD4419ECA964D289408A1B2B353618693 ] blbdrive C:\Windows\system32\drivers\blbdrive.sys
13:59:24.0027 0x0770 blbdrive - ok
13:59:24.0058 0x0770 [ 35F376253F687BDE63976CCB3F2108CA, C5EF6301D7BC067050038DB75D961681D1CBE418285AD60167C1334B0B54DFE9 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
13:59:24.0058 0x0770 bowser - ok
13:59:24.0090 0x0770 [ 9F9ACC7F7CCDE8A15C282D3F88B43309, A9131334BD9CF8FD60BA9D54AA054E2DF2BE1219FB650DF1464F2787BDEAE98F ] BrFiltLo C:\Windows\system32\drivers\brfiltlo.sys
13:59:24.0090 0x0770 BrFiltLo - ok
13:59:24.0105 0x0770 [ 56801AD62213A41F6497F96DEE83755A, 0DEB8318FB47DF6473C171C795C735E26A73FA12232876C6856549EA16F33361 ] BrFiltUp C:\Windows\system32\drivers\brfiltup.sys
13:59:24.0105 0x0770 BrFiltUp - ok
13:59:24.0136 0x0770 [ A3629A0C4226F9E9C72FAAEEBC3AD33C, FB4D2738B64AADA52B95A6CF7ED4CDBFE4DD4BEBCAF1AE9CE64317F97DB38DDF ] Browser C:\Windows\System32\browser.dll
13:59:24.0136 0x0770 Browser - ok
13:59:24.0199 0x0770 [ B304E75CFF293029EDDF094246747113, CB6B219B186C3511A0DE3CDE7F7B8966A9E32D808A952CA8C5B42B3A3A17BFB0 ] Brserid C:\Windows\system32\drivers\brserid.sys
13:59:24.0199 0x0770 Brserid - ok
13:59:24.0214 0x0770 [ 203F0B1E73ADADBBB7B7B1FABD901F6B, 782FA7B26940FE479C49C9BAA2EB582CDAAAD607013E9BCFC85E6FBBB7D49A6D ] BrSerWdm C:\Windows\system32\drivers\brserwdm.sys
13:59:24.0230 0x0770 BrSerWdm - ok
13:59:24.0261 0x0770 [ BD456606156BA17E60A04E18016AE54B, DFBDC9DA6A3EA40BACFF204BC6C55C2C122B5885D2CBF6D45054DE43EE15EC4D ] BrUsbMdm C:\Windows\system32\drivers\brusbmdm.sys
13:59:24.0261 0x0770 BrUsbMdm - ok
13:59:24.0277 0x0770 [ AF72ED54503F717A43268B3CC5FAEC2E, 4A638669B0C30B1BDED242A8BF2015A37749570FF4D67D190BACC8D7E0C44468 ] BrUsbSer C:\Windows\system32\drivers\brusbser.sys
13:59:24.0277 0x0770 BrUsbSer - ok
13:59:24.0339 0x0770 [ 6D39C954799B63BA866910234CF7D726, 1D807C3410C01C76E5810D626F23C1CCED3C9C5A65F39267B770C494C8D64114 ] BthEnum C:\Windows\system32\DRIVERS\BthEnum.sys
13:59:24.0339 0x0770 BthEnum - ok
13:59:24.0417 0x0770 [ AD07C1EC6665B8B35741AB91200C6B68, DCE1305A30D6713222A01C1F1D03ED0ADABE23C742CE1E82BB142531B82A3FF7 ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
13:59:24.0417 0x0770 BTHMODEM - ok
13:59:24.0448 0x0770 [ 5904EFA25F829BF84EA6FB045134A1D8, 66E4160CC404744576BA6E9DD606B533F42B3D4A3E2FDD457DAA016CC72A81CC ] BthPan C:\Windows\system32\DRIVERS\bthpan.sys
13:59:24.0464 0x0770 BthPan - ok
13:59:24.0542 0x0770 [ 611FF3F2F095C8D4A6D4CFD9DCC09793, 2F27A1287ABCDB9C316EB720D1855100666240959CF969D5B2679C9ABCBD6050 ] BthPort C:\Windows\system32\Drivers\BTHport.sys
13:59:24.0573 0x0770 BthPort - ok
13:59:24.0636 0x0770 [ A4C8377FA4A994E07075107DBE2E3DCE, C3CDAA7B83D130100044341C23897CC6C257FA075A8D08B8551F4A28AE8CE6C4 ] BthServ C:\Windows\System32\bthserv.dll
13:59:24.0636 0x0770 BthServ - ok
13:59:24.0682 0x0770 [ D330803EAB2A15CAEC7F011F1D4CB30E, 240FFF317C90AD8966DA9666F2748F98CEC3CB99C486F399D1C68FE0E393EE68 ] BTHUSB C:\Windows\system32\Drivers\BTHUSB.sys
13:59:24.0682 0x0770 BTHUSB - ok
13:59:24.0714 0x0770 [ 636F45A8500C1438CFA7DEE15FC5C184, 5AC0FD976751615589AA052562C610F3ED2B84D9AF8D954E3FEC13EB156483D3 ] btwaudio C:\Windows\system32\drivers\btwaudio.sys
13:59:24.0714 0x0770 btwaudio - ok
13:59:24.0729 0x0770 [ BF9256FF01B093A5D90BB7A35EC90410, D334C1D46EEC1FBC7206D9AE561D046D73E9DA75DE4434D308605A155958B9D6 ] btwavdt C:\Windows\system32\drivers\btwavdt.sys
13:59:24.0729 0x0770 btwavdt - ok
13:59:24.0776 0x0770 [ 0AB8C1AC177AFB27309E1072FAF34A37, 54318740132895A3D9230D82CC7B0765ED2DEF4DA3F4B0D256FD3B44137A1E21 ] btwrchid C:\Windows\system32\DRIVERS\btwrchid.sys
13:59:24.0776 0x0770 btwrchid - ok
13:59:24.0823 0x0770 [ 09E6AFFAE6C0E9158BF05C7D08D0107A, 05524526EBD5F42F58404A698F397CD7CBC2CBB5F7211AB6B5C2691A87983A24 ] BUNAgentSvc C:\Program Files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe
13:59:24.0823 0x0770 BUNAgentSvc - ok
13:59:24.0870 0x0770 [ 7ADD03E75BEB9E6DD102C3081D29840A, 0CA14A77CE990B5AA32C0725C22CA190ECBC73B75064DD959CABAD79B8846F1D ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
13:59:24.0870 0x0770 cdfs - ok
13:59:24.0932 0x0770 [ 6B4BFFB9BECD728097024276430DB314, 4451EFEAD37B05C8A3CB610B6D72E73B55D3D1E1CC1B17405598C1EDAA93C2D5 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
13:59:24.0932 0x0770 cdrom - ok
13:59:24.0994 0x0770 [ 312EC3E37A0A1F2006534913E37B4423, 81B8F462336791D162DAFA8092C1F437638DA3022CA24A2458B9FE183FC18C5D ] CertPropSvc C:\Windows\System32\certprop.dll
13:59:24.0994 0x0770 CertPropSvc - ok
13:59:25.0010 0x0770 [ E5D4133F37219DBCFE102BC61072589D, 74C7F8C53D9C71CE3C8B33BC0331948571318402B0A8E1AC4552360504092A46 ] circlass C:\Windows\system32\DRIVERS\circlass.sys
13:59:25.0026 0x0770 circlass - ok
13:59:25.0057 0x0770 [ D7659D3B5B92C31E84E53C1431F35132, 6BFE644AD9890A8CEEDCC4B97ADD564AD57202FBC5D21599469E0C4B31BB27C6 ] CLFS C:\Windows\system32\CLFS.sys
13:59:25.0088 0x0770 CLFS - ok
13:59:25.0197 0x0770 [ 5CA9B1062C0C3E3AE19C23AD9D8A5048, D77BF4F907A41DB239DE2E046006F299963CF2DBEB42BACF16F505D259FF23FA ] CLHNService C:\Program Files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe
13:59:25.0213 0x0770 CLHNService - ok
13:59:25.0228 0x0770 [ 8EE772032E2FE80A924F3B8DD5082194, B743DF91563A22CC15D9B44105804B5866A29D3DFC156DBE88DFAFEF903B94C0 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
13:59:25.0244 0x0770 clr_optimization_v2.0.50727_32 - ok
13:59:25.0338 0x0770 [ C5A75EB48E2344ABDC162BDA79E16841, 6070A8AAFD38FBC6A68A2B10C20117612354DF21B4492D90CA522BFB6870D726 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
13:59:25.0369 0x0770 clr_optimization_v4.0.30319_32 - ok
13:59:25.0416 0x0770 [ 99AFC3795B58CC478FBBBCDC658FCB56, 0D1B27C42A058C5D56A0157B5ECA9A054254F6B9C8015D0321021A7EFCE10CE2 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
13:59:25.0416 0x0770 CmBatt - ok
13:59:25.0431 0x0770 [ 0CA25E686A4928484E9FDABD168AB629, C2CB2333CAB40CDF93219870E66700F957188C86A1B1A004BC4652953091E5C5 ] cmdide C:\Windows\system32\drivers\cmdide.sys
13:59:25.0431 0x0770 cmdide - ok
13:59:25.0447 0x0770 [ 6AFEF0B60FA25DE07C0968983EE4F60A, E4037EF9EDE57A1039AB814EBCE9A8B12C9A084E7FAC6296212ACF2394DD37B6 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
13:59:25.0462 0x0770 Compbatt - ok
13:59:25.0462 0x0770 COMSysApp - ok
13:59:25.0478 0x0770 [ 741E9DFF4F42D2D8477D0FC1DC0DF871, 06EA43D771E3455F943AB624CC00C2259FE5E561164908630755E933EF44A522 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
13:59:25.0478 0x0770 crcdisk - ok
13:59:25.0494 0x0770 [ 1F07BECDCA750766A96CDA811BA86410, F4E36F0003184BCB36D59B23AC903421AD8C0A1FD2D6315E06375235ABC9A0AD ] Crusoe C:\Windows\system32\drivers\crusoe.sys
13:59:25.0509 0x0770 Crusoe - ok
13:59:25.0556 0x0770 [ 684C130BBC6DB681BAD4920A4C944AA5, DDE434B206984808351C98500824A33E6740B4326C455066027F8D549D4C3B92 ] CryptSvc C:\Windows\system32\cryptsvc.dll
13:59:25.0572 0x0770 CryptSvc - ok
13:59:25.0634 0x0770 [ 3B5B4D53FEC14F7476CA29A20CC31AC9, EC02A412DA5FDE2C759A4A2C5904579E1CE7C4999CE87145812F354FC8F5E183 ] DcomLaunch C:\Windows\system32\rpcss.dll
13:59:25.0681 0x0770 DcomLaunch - ok
13:59:25.0712 0x0770 [ 622C41A07CA7E6DD91770F50D532CB6C, 2A9040949CB45F9970FDE930278F30D2F08E957290CB3D4DC4F2CA94F3D444D2 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
13:59:25.0728 0x0770 DfsC - ok
13:59:25.0837 0x0770 [ 2CC3DCFB533A1035B13DCAB6160AB38B, C88C91F662ADE248EEE3B568E70C2BC2D5075B7D9B7D3C63E83D011C5F7812B0 ] DFSR C:\Windows\system32\DFSR.exe
13:59:25.0915 0x0770 DFSR - ok
13:59:25.0977 0x0770 [ 9028559C132146FB75EB7ACF384B086A, 35159D86706441ED94895B4629411B4445FCB4526AFD1F7036EE647931B7A94D ] Dhcp C:\Windows\System32\dhcpcsvc.dll
13:59:25.0993 0x0770 Dhcp - ok
13:59:26.0040 0x0770 [ 5D4AEFC3386920236A548271F8F1AF6A, 11B74D6800EC6F7AAEFB0B6A9F2E8376C7C3B8DB677F03AC3743CB004CA96B08 ] disk C:\Windows\system32\drivers\disk.sys
13:59:26.0040 0x0770 disk - ok
13:59:26.0086 0x0770 [ 57D762F6F5974AF0DA2BE88A3349BAAA, D9E7DC8F9FB7837F88BBB95B52147AA80E688FB9762EEA99B8046D9C6AD48F3C ] Dnscache C:\Windows\System32\dnsrslvr.dll
13:59:26.0086 0x0770 Dnscache - ok
13:59:26.0149 0x0770 [ 324FD74686B1EF5E7C19A8AF49E748F6, DC6EB4304555B60DD17E04D20DFE4E279718E4041A9310DE29E678834BB22C5B ] dot3svc C:\Windows\System32\dot3svc.dll
13:59:26.0164 0x0770 dot3svc - ok
13:59:26.0180 0x0770 [ A622E888F8AA2F6B49E9BC466F0E5DEF, 3DED7F22A29AD2F8C927DFA0FD87FDE5ED0BDCAC7260BD9F71D8EA34328C772A ] DPS C:\Windows\system32\dps.dll
13:59:26.0196 0x0770 DPS - ok
13:59:26.0196 0x0770 DritekPortIO - ok
13:59:26.0227 0x0770 [ 97FEF831AB90BEE128C9AF390E243F80, A7F4118603E2D5DDDB117EF7C058684EA5B37690EFAB2BEBA570EEF9C36281BE ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
13:59:26.0227 0x0770 drmkaud - ok
13:59:26.0305 0x0770 [ 988670D8343EF9835FB3659DB71B2EFA, 5F5370FDD08C4BFF0828341952E98E95F722CB779EEC08C9DD6212C4DF3CD33B ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
13:59:26.0336 0x0770 DXGKrnl - ok
13:59:26.0398 0x0770 [ 5425F74AC0C1DBD96A1E04F17D63F94C, AD133CEDCDEA75420C75A91BB4CF7152475D46ED7B7703E3BAE5F9946D610292 ] E1G60 C:\Windows\system32\DRIVERS\E1G60I32.sys
13:59:26.0414 0x0770 E1G60 - ok
13:59:26.0476 0x0770 [ C73D90A437907C2398D32CCE618FE808, EFE2B6786467CE892ADBEA0DD99CFE078CA7AC42A2DDC05B8708C591311AA289 ] eamonm C:\Windows\system32\DRIVERS\eamonm.sys
13:59:26.0492 0x0770 eamonm - ok
13:59:26.0554 0x0770 [ C0B95E40D85CD807D614E264248A45B9, 30421DAF1722A225222268CB8BA4FE60CB76C6FD0C9157B0F53FC1368F806A4E ] EapHost C:\Windows\System32\eapsvc.dll
13:59:26.0554 0x0770 EapHost - ok
13:59:26.0601 0x0770 [ 7F64EA048DCFAC7ACF8B4D7B4E6FE371, F3E9CF5D8E9124CB06F08454C5F0E510DE19A92780151FB2F8A58A0905D59B8F ] Ecache C:\Windows\system32\drivers\ecache.sys
13:59:26.0601 0x0770 Ecache - ok
13:59:26.0695 0x0770 [ B1F2503E23425B386DF0F3413B2596F3, 02FB1FA57679DBFF2E13641AB7C24CC28D5A4CFB0C51B7A617D3A3A406B8DF0C ] eDataSecurity Service C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe
13:59:26.0726 0x0770 eDataSecurity Service - ok
13:59:26.0757 0x0770 [ 4F72DD48A2ED63A57C1210228A472020, 9EAD0EF969F2A97288DE619F236C8EC964CF917C9CD4E1DED5AF9FE70117FEE3 ] ehdrv C:\Windows\system32\DRIVERS\ehdrv.sys
13:59:26.0757 0x0770 ehdrv - ok
13:59:26.0804 0x0770 [ 9BE3744D295A7701EB425332014F0797, 1A139EE9232581E466591C5EBEF41E4BF1F82D99C1959F1C68C879B240E9F46D ] ehRecvr C:\Windows\ehome\ehRecvr.exe
13:59:26.0835 0x0770 ehRecvr - ok
13:59:26.0851 0x0770 [ AD1870C8E5D6DD340C829E6074BF3C3F, 064D07106A1BBE80294F1913354832F2B67D22274BB4D36C81D2D83C96FE0B88 ] ehSched C:\Windows\ehome\ehsched.exe
13:59:26.0851 0x0770 ehSched - ok
13:59:26.0866 0x0770 [ C27C4EE8926E74AA72EFCAB24C5242C3, F1EBF78CCE9BA76AFD0478BC66B67CA44DEAF3C380369BFCE91BD8F678C8608A ] ehstart C:\Windows\ehome\ehstart.dll
13:59:26.0866 0x0770 ehstart - ok
13:59:26.0944 0x0770 [ E95AB781773870BD68ABE1AE1B57A8AC, 709F3C770D7122200FD531820A514E7BA6EB11D79D7AD921D85F575C40B86DB3 ] ekrn C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
13:59:27.0007 0x0770 ekrn - ok
13:59:27.0069 0x0770 [ 23B62471681A124889978F6295B3F4C6, A90C521F06125B86A26EA625B0E7F811AF7D328E1313165E7AD4A83596A23819 ] elxstor C:\Windows\system32\drivers\elxstor.sys
13:59:27.0085 0x0770 elxstor - ok
13:59:27.0147 0x0770 [ 4E6B23DFC917EA39306B529B773950F4, C4BA77632B4BD46C4C1797F7F57399DB506D3EB6E5A0A36C269A793DAA3445C2 ] EMDMgmt C:\Windows\system32\emdmgmt.dll
13:59:27.0163 0x0770 EMDMgmt - ok
13:59:27.0210 0x0770 [ 67EAADC3BF508F7CC239800B5EB47DC3, B7B21FF23B446C8965154A76B850F3DA77D233FD28D4C026E1952F72079B9082 ] epfwwfpr C:\Windows\system32\DRIVERS\epfwwfpr.sys
13:59:27.0210 0x0770 epfwwfpr - ok
13:59:27.0288 0x0770 [ 3DB974F3935483555D7148663F726C61, C288CFC04213B0340ABEC752C0A7B308B29122B5F51E68387BA1D9E9D7166FDD ] ErrDev C:\Windows\system32\drivers\errdev.sys
13:59:27.0288 0x0770 ErrDev - ok
13:59:27.0334 0x0770 [ 27D2754314D12EB27D81D462FD0D86C0, 413D403CE09D9E1C9B67E4FF9E258558681119FE74DA1A92CC56B92FCAB842C5 ] ETService C:\Program Files\Acer\Empowering Technology\Service\ETService.exe
13:59:27.0350 0x0770 ETService - ok
13:59:27.0428 0x0770 [ 67058C46504BC12D821F38CF99B7B28F, E8D19F305F78BCA1DA8425315F2C77A377CD51E3CC54323DC2FF355120EA097D ] EventSystem C:\Windows\system32\es.dll
13:59:27.0428 0x0770 EventSystem - ok
13:59:27.0537 0x0770 [ 306AC856622864C761CBDB5E816BB9D8, 491221AD59143DC3FF96C71768E543043048CDFE0A7CC8EA306CFA4B1CC67502 ] EvtEng C:\Program Files\Intel\WiFi\bin\EvtEng.exe
13:59:27.0568 0x0770 EvtEng - ok
13:59:27.0631 0x0770 [ 22B408651F9123527BCEE54B4F6C5CAE, 31AF9649333A9496A9224001266D1B68CE2A31B9FB182A755D127FC5492AA6B2 ] exfat C:\Windows\system32\drivers\exfat.sys
13:59:27.0631 0x0770 exfat - ok
13:59:27.0678 0x0770 [ 1E9B9A70D332103C52995E957DC09EF8, 7E709D545D4025A2E9F3489CF2A231040904CB53E3E4EEAC15A22468FAB2A5B3 ] fastfat C:\Windows\system32\drivers\fastfat.sys
13:59:27.0678 0x0770 fastfat - ok
13:59:27.0709 0x0770 [ AFE1E8B9782A0DD7FB46BBD88E43F89A, B4CBE1DC3430F2F3485F49007C71293D5B86E9C405741EA00A67B00A38BE1F8D ] fdc C:\Windows\system32\DRIVERS\fdc.sys
13:59:27.0709 0x0770 fdc - ok
13:59:27.0740 0x0770 [ 6629B5F0E98151F4AFDD87567EA32BA3, 8CC02D5E0639CDF74B2F85DB56D6199E1858F1A58465ED1D8B25C968E986132C ] fdPHost C:\Windows\system32\fdPHost.dll
13:59:27.0756 0x0770 fdPHost - ok
13:59:27.0756 0x0770 [ 89ED56DCE8E47AF40892778A5BD31FD2, 924360875796C3DDDDA8097FDF53F6846B227F7413766F00AEDD981EFD691BF9 ] FDResPub C:\Windows\system32\fdrespub.dll
13:59:27.0771 0x0770 FDResPub - ok
13:59:27.0802 0x0770 [ A8C0139A884861E3AAE9CFE73B208A9F, 3B021D148A2989AAA46AE58E5FED8A2DCA25E9212C2FA7F922880EF5A077E49B ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
13:59:27.0802 0x0770 FileInfo - ok
13:59:27.0834 0x0770 [ 0AE429A696AECBC5970E3CF2C62635AE, 1ECC315C099D17835788B68F0DE00EC98DC5AEE8F329D739E0DB90A898F22244 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
13:59:27.0834 0x0770 Filetrace - ok
13:59:27.0865 0x0770 [ 85B7CF99D532820495D68D747FDA9EBD, 682D35D219D1AFBE51CF0AB03F2D3E15C940F5AF291C1A611A19F4D279143F3C ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
13:59:27.0865 0x0770 flpydisk - ok
13:59:27.0912 0x0770 [ 01334F9EA68E6877C4EF05D3EA8ABB05, 82F8AA6AD2B5077898773D4A5814819EAF0E872FFD95894E06FEDAB6EE92CF99 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
13:59:27.0927 0x0770 FltMgr - ok
13:59:28.0036 0x0770 [ 2AFA3A46986AE935DAECEBC7E66314CF, 747FAF9B7F8291B83EE44B91E5708395E749DC87BD42CC3BF2CD41209C298F4D ] FontCache C:\Windows\system32\FntCache.dll
13:59:28.0068 0x0770 FontCache - ok
13:59:28.0146 0x0770 [ C7FBDD1ED42F82BFA35167A5C9803EA3, 372FF71070D5ECE17342466A690737A0622E93C98DBED8172C49B0854F0012B7 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
13:59:28.0146 0x0770 FontCache3.0.0.0 - ok
13:59:28.0192 0x0770 [ B972A66758577E0BFD1DE0F91AAA27B5, E934034F3F740A83D4E7ABCD2C581845AC2945B0BCCAACF65CC3F99A1DBDE455 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
13:59:28.0192 0x0770 Fs_Rec - ok
13:59:28.0224 0x0770 [ 34582A6E6573D54A07ECE5FE24A126B5, 5F45DC38F8015AD90616EAD3B57820CCD284938A96B2C4E1FF5FC7BDEE8A848D ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
13:59:28.0224 0x0770 gagp30kx - ok
13:59:28.0302 0x0770 [ 9F5F2F0FB0A7F5AA9F16B9A7B6DAD89F, 6D2B301E77839FFF1C74425B37D02C3F3837CE50E856C21AE4CF7ABABB04ADDC ] GoogleDesktopManager-051210-111108 C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
13:59:28.0302 0x0770 GoogleDesktopManager-051210-111108 - ok
13:59:28.0364 0x0770 [ CD5D0AEEE35DFD4E986A5AA1500A6E66, DCED5126837292593F1C1B35DF18E3B631D6C0C6D0742B77C7B7742C55A7825F ] gpsvc C:\Windows\System32\gpsvc.dll
13:59:28.0395 0x0770 gpsvc - ok
13:59:28.0442 0x0770 [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
13:59:28.0442 0x0770 gupdate - ok
13:59:28.0458 0x0770 [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
13:59:28.0458 0x0770 gupdatem - ok
13:59:28.0551 0x0770 [ 5D4BC124FAAE6730AC002CDB67BF1A1C, 00294F4DC7D17F6DD2A22B9C3299BED40146BA45C972367154D20DB502472551 ] gusvc C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
13:59:28.0567 0x0770 gusvc - ok
13:59:28.0598 0x0770 [ 833051C6C6C42117191935F734CFBD97, 5EB5672ABC7994A4AFF855A572158B8BE4FC6E541CFD4B9BE4FF2739A9A6AFB8 ] hamachi C:\Windows\system32\DRIVERS\hamachi.sys
13:59:28.0598 0x0770 hamachi - ok
13:59:28.0754 0x0770 [ D0C526C8D8F165643B4A796FC4D870AE, 3BE2A175A302E6CD751A1A9A39DBECC5CE074E082A92D129DA56DAF77C0C6146 ] Hamachi2Svc C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
13:59:28.0816 0x0770 Hamachi2Svc - ok
13:59:28.0879 0x0770 [ 3F90E001369A07243763BD5A523D8722, 25907F85787D879E75C3FE74C93567382AFB2D528BEEC61D71E3A6BE2D71DFBE ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
13:59:28.0894 0x0770 HdAudAddService - ok
13:59:28.0957 0x0770 [ 062452B7FFD68C8C042A6261FE8DFF4A, DD9873502456D3C058C6177AC223B28C71370E624FA0814C17EA3D93201F2B56 ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
13:59:28.0972 0x0770 HDAudBus - ok
13:59:29.0004 0x0770 [ 1338520E78D90154ED6BE8F84DE5FCEB, 8531F1C5856983EBDA4C2B70162645ECE72FFFBA9FE7A28BCEDDF2169B7ECF9D ] HidBth C:\Windows\system32\drivers\hidbth.sys
13:59:29.0019 0x0770 HidBth - ok
13:59:29.0050 0x0770 [ D8DF3722D5E961BAA1292AA2F12827E2, 799E194B36BA08D59500A2C45ADD2FB69C7698F3F7F837CC7CFB266D57830BD6 ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
13:59:29.0050 0x0770 HidIr - ok
13:59:29.0097 0x0770 [ 84067081F3318162797385E11A8F0582, 11E32E3800CFCA37354388243F88D0239D622891BAC5483518A2BE5D1CA19015 ] hidserv C:\Windows\system32\hidserv.dll
13:59:29.0097 0x0770 hidserv - ok
13:59:29.0144 0x0770 [ CCA4B519B17E23A00B826C55716809CC, 91AD0758A6185B0FBBE383BDB1B457FFB850477AFF8DE040DE9527A97D28EF62 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
13:59:29.0144 0x0770 HidUsb - ok
13:59:29.0160 0x0770 [ D8AD255B37DA92434C26E4876DB7D418, C901EADDD93FC90C8F29F4B6DE808F8E4F486C877FC0AA27DA4ACDE17E28899D ] hkmsvc C:\Windows\system32\kmsvc.dll
13:59:29.0175 0x0770 hkmsvc - ok
13:59:29.0206 0x0770 [ 16EE7B23A009E00D835CDB79574A91A6, 964AFE7D2F7E48C7DE7FDAB48F57ADC4AD44A0B2A9A03071E0E8D334007E5572 ] HpCISSs C:\Windows\system32\drivers\hpcisss.sys
13:59:29.0206 0x0770 HpCISSs - ok
13:59:29.0253 0x0770 [ F870AA3E254628EBEAFE754108D664DE, B0444E7D246AA1982094030ACB991690F6A7DD3FB07B1BB6A1BC0F3AA9718A70 ] HTTP C:\Windows\system32\drivers\HTTP.sys
13:59:29.0284 0x0770 HTTP - ok
13:59:29.0300 0x0770 [ C6B032D69650985468160FC9937CF5B4, 4D5A944C70037F35A9DBA4F49F174455FA80ED7EAEDAA143F0A2C0E05AE585D8 ] i2omp C:\Windows\system32\drivers\i2omp.sys
13:59:29.0300 0x0770 i2omp - ok
13:59:29.0362 0x0770 [ 22D56C8184586B7A1F6FA60BE5F5A2BD, D96A2962848C1F59B143BFEC22EC48BD1C5A75D0EBCFD7FB965E66B85FF7D8CA ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
13:59:29.0362 0x0770 i8042prt - ok
13:59:29.0456 0x0770 [ 3E42C4691AAD4B1E8D0466F9CBF05CBE, 8F53A86B97A25CE92D6A3EB9720F86308252C5B7A4BC62218FF8788229B132B8 ] IAANTMON C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
13:59:29.0487 0x0770 IAANTMON - ok
13:59:29.0503 0x0770 [ 707C1692214B1C290271067197F075F6, 7D0DB754604AABC4AA09AB8BA94326B1A1C2A76F3C2C2C7D6FA14F964BE68A51 ] iaStor C:\Windows\system32\DRIVERS\iaStor.sys
13:59:29.0518 0x0770 iaStor - ok
13:59:29.0565 0x0770 [ 54155EA1B0DF185878E0FC9EC3AC3A14, 344A0793499261D2E4FF2FCCC70501329485F8E299EBC68953D07BA86F0D4729 ] iaStorV C:\Windows\system32\drivers\iastorv.sys
13:59:29.0565 0x0770 iaStorV - ok
13:59:29.0643 0x0770 [ 1CF03C69B49ACB70C722DF92755C0C8C, C227850C133F29BB9DED91A26A22AE077FD69629CEF35B67D305F016C4BDAA81 ] IDriverT C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
13:59:29.0674 0x0770 IDriverT - ok
13:59:29.0752 0x0770 [ 98477B08E61945F974ED9FDC4CB6BDAB, C7E8F661F6FBF6AB493E950D2E70363496E155B1838CE7B490B981BD840B04FC ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
13:59:29.0784 0x0770 idsvc - ok
13:59:29.0971 0x0770 [ 1CE364D0F063D580F91C74FB004B88EA, 8FB9B54DA1E210BE685F385D48D8CCE090187A0B44AB8D04D9F3484D00082046 ] IGBASVC C:\Program Files\Acer\Acer Bio Protection\BASVC.exe
13:59:30.0111 0x0770 IGBASVC - ok
13:59:30.0127 0x0770 [ 2D077BF86E843F901D8DB709C95B49A5, 78FF558A881F307858F5C7C74A748B8B2562AF3CAC7EA8639945609001D790CE ] iirsp C:\Windows\system32\drivers\iirsp.sys
13:59:30.0142 0x0770 iirsp - ok
13:59:30.0189 0x0770 [ 4687EE0C0DD2CE5F7AAA9C2E33C1DC78, FA8EBED2778D9F7560ADC1B563954EEF98AAE651C0553F2803372B37B122AEB3 ] IKEEXT C:\Windows\System32\ikeext.dll
13:59:30.0205 0x0770 IKEEXT - ok
13:59:30.0220 0x0770 [ 4D8D5B1C895EA0F2A721B98A7CE198F1, A7BB7060B9C5353A5EDD18EE5A0950EE94E44B1B686F110F0E5BFA432D743DD1 ] int15 C:\Windows\system32\drivers\int15.sys
13:59:30.0236 0x0770 int15 - ok
13:59:30.0267 0x0770 IntcAzAudAddService - ok
13:59:30.0298 0x0770 [ 83AA759F3189E6370C30DE5DC5590718, 7406FE41EA8FB80052517318CB72E2641E92E579FAFAF5E8DDDFF0BF8DAE773A ] intelide C:\Windows\system32\drivers\intelide.sys
13:59:30.0298 0x0770 intelide - ok
13:59:30.0345 0x0770 [ 224191001E78C89DFA78924C3EA595FF, E4EC9CAAEEEAEB30E13F4A8023AF687F29514667380DDFD638BBFFF1D5FC2563 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
13:59:30.0345 0x0770 intelppm - ok
13:59:30.0361 0x0770 [ 9AC218C6E6105477484C6FDBE7D409A4, FF30D09CD2A0F5BBEC309E953370F194B6F26BF4227E627B594AAA48B0F5D3C2 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
13:59:30.0376 0x0770 IPBusEnum - ok
13:59:30.0423 0x0770 [ 62C265C38769B864CB25B4BCF62DF6C3, CAF6BCE967104233E216464E4729B0275C3BD426D812F404AB0EE83A7F2063D8 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
13:59:30.0423 0x0770 IpFilterDriver - ok
13:59:30.0454 0x0770 [ 1998BD97F950680BB55F55A7244679C2, A4E8BB4C6B2AF4800BD5E0BA8725FD0927F8FB6751AEBF6DD16B59C414CCB9D8 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
13:59:30.0470 0x0770 iphlpsvc - ok
13:59:30.0470 0x0770 IpInIp - ok
13:59:30.0517 0x0770 [ B25AAF203552B7B3491139D582B39AD1, EA9C38F512F40FF12975A6719E6FE4D7EA93A4B2497103E0FDA5A4CD6033C0A6 ] IPMIDRV C:\Windows\system32\drivers\ipmidrv.sys
13:59:30.0517 0x0770 IPMIDRV - ok
13:59:30.0532 0x0770 [ 8793643A67B42CEC66490B2A0CF92D68, 8B1ED1314E4C6623824DD6B9C15A0F7F996F4D243BF0B305421251BE40850907 ] IPNAT C:\Windows\system32\DRIVERS\ipnat.sys
13:59:30.0548 0x0770 IPNAT - ok
13:59:30.0579 0x0770 [ 109C0DFB82C3632FBD11949B73AEEAC9, 73B01426100256B7110DF0B74483AF1B62FC209612EEC29A7BF6DC31A7FBEFB6 ] IRENUM C:\Windows\system32\drivers\irenum.sys
13:59:30.0579 0x0770 IRENUM - ok
13:59:30.0579 0x0770 [ 6C70698A3E5C4376C6AB5C7C17FB0614, 10FBCBA5A74AF5D136B152FD4D3DFA2A1F2CEBC3F979D5BA6DB98B3DCB2F7A07 ] isapnp C:\Windows\system32\drivers\isapnp.sys
13:59:30.0579 0x0770 isapnp - ok
13:59:30.0642 0x0770 [ 232FA340531D940AAC623B121A595034, 90C93F04D8A0094EEBD118F10223605B8169DA5F24C466F503CED5C014BD17B1 ] iScsiPrt C:\Windows\system32\DRIVERS\msiscsi.sys
13:59:30.0657 0x0770 iScsiPrt - ok
13:59:30.0673 0x0770 [ BCED60D16156E428F8DF8CF27B0DF150, 4934E9AB8A8A548548F0C63517F2BF4DE84B05E5C9C7C2AA6C1517B8F9C340D4 ] iteatapi C:\Windows\system32\drivers\iteatapi.sys
13:59:30.0673 0x0770 iteatapi - ok
13:59:30.0735 0x0770 [ 8BCD857C7932AD005D5F9C89329DA2E1, B2091CEA5D3D0D06E49D71E7D40E993D5653A0D8F5DC5CE5C9CEFB1242887E0D ] itecir C:\Windows\system32\DRIVERS\itecir.sys
13:59:30.0735 0x0770 itecir - ok
13:59:30.0751 0x0770 [ 06FA654504A498C30ADCA8BEC4E87E7E, 651BC35A0A3D504573BBAB40DE81929BB18C9FC0CD7944FEAE0E99CD7658EA88 ] iteraid C:\Windows\system32\drivers\iteraid.sys
13:59:30.0766 0x0770 iteraid - ok
13:59:30.0813 0x0770 [ 7E6A3E1CD74E8C97EED06670D2A691DA, 90A2BA24C4F4FEB162EFBBE391BF55C41539D401DA27F0DE8CE195759A959B1B ] JMCR C:\Windows\system32\DRIVERS\jmcr.sys
13:59:30.0813 0x0770 JMCR - ok
13:59:30.0844 0x0770 [ 37605E0A8CF00CBBA538E753E4344C6E, B9A9FFDCE45B0830E277CF322C28ACB49372C16144B0F676B283BE5DAE9A7F30 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
13:59:30.0844 0x0770 kbdclass - ok
13:59:30.0876 0x0770 [ EDE59EC70E25C24581ADD1FBEC7325F7, 41B37778E9A12675FC0DF74606AAF18C652EB88513B3C4889C5C512E14587CEE ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
13:59:30.0876 0x0770 kbdhid - ok
13:59:30.0922 0x0770 [ A3E186B4B935905B829219502557314E, 7F58EAC6C12208D792C77014AC9D37AD1A7B2E73863C914F5DA831A72E1D52BB ] KeyIso C:\Windows\system32\lsass.exe
13:59:30.0922 0x0770 KeyIso - ok
13:59:30.0954 0x0770 [ 4A1445EFA932A3BAF5BDB02D7131EE20, 9DD262ED72DF268FE024063788F54124E320D0775D8DC0C5CAD099CD5F655DA2 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
13:59:30.0985 0x0770 KSecDD - ok
13:59:31.0047 0x0770 [ 8078F8F8F7A79E2E6B494523A828C585, BB399993166853F0C01B7508649ECD7E7473238267BA8333D0441128FE656347 ] KtmRm C:\Windows\system32\msdtckrm.dll
13:59:31.0063 0x0770 KtmRm - ok
13:59:31.0125 0x0770 [ 86D7F66AC2C0123ED81B2F3E835845C2, 04C4F86EF1C20C8EBB562919B41A55442E65AAE0DC12E898D808F23E12EE7FFF ] L1E C:\Windows\system32\DRIVERS\L1E60x86.sys
13:59:31.0125 0x0770 L1E - ok
13:59:31.0156 0x0770 [ 1BF5EEBFD518DD7298434D8C862F825D, F41C79410345C40B346EB5EDEA397ECD29ECB9B921AC3E19F9453E52A7B9288A ] LanmanServer C:\Windows\system32\srvsvc.dll
13:59:31.0188 0x0770 LanmanServer - ok
13:59:31.0219 0x0770 [ 1DB69705B695B987082C8BAEC0C6B34F, D395B272F6B69D4A9FC3CDEFD812EF0DBFECF3C1B1C787C7CC1E1A1B091B8DB3 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
13:59:31.0234 0x0770 LanmanWorkstation - ok
13:59:31.0312 0x0770 [ 793FF718477345CD5D232C50BED1E452, 1D39CF9F10742C79FF99B9B4E0361EAEA63B4FC545C58B54B55537D18C802941 ] LightScribeService C:\Program Files\Common Files\LightScribe\LSSrvc.exe
13:59:31.0328 0x0770 LightScribeService - ok
13:59:31.0344 0x0770 [ D1C5883087A0C3F1344D9D55A44901F6, 608D67357AFDDD538D2C12C93EB0793ECA4EB3AF2BAB779E881C41F50E4AB911 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
13:59:31.0344 0x0770 lltdio - ok
13:59:31.0375 0x0770 [ 2D5A428872F1442631D0959A34ABFF63, E532C6ECFFB936EFF744CA57BDC6394C89E797B6B0822D04F1F3F35D9BDDD4F0 ] lltdsvc C:\Windows\System32\lltdsvc.dll
13:59:31.0390 0x0770 lltdsvc - ok
13:59:31.0422 0x0770 [ 35D40113E4A5B961B6CE5C5857702518, 453097AEF46ED48107395D9A1696AAC259FD6CEA8A655D38C5E246FDDAB81664 ] lmhosts C:\Windows\System32\lmhsvc.dll
13:59:31.0422 0x0770 lmhosts - ok
13:59:31.0468 0x0770 [ E7BF96BC4C766C2A30D0733CBFEEC438, D07569A6719E992DDB312F0FFD77A14CF52F61D97DC041278F8F2D7D55DE1B25 ] LMIGuardianSvc C:\Program Files\LogMeIn Hamachi\LMIGuardianSvc.exe
13:59:31.0500 0x0770 LMIGuardianSvc - ok
13:59:31.0531 0x0770 [ C7E15E82879BF3235B559563D4185365, 98C9268ADF6BAEB0522BB84BE6C98D0D6D5EB4BD27BB61412D208232164C8435 ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
13:59:31.0531 0x0770 LSI_FC - ok
13:59:31.0546 0x0770 [ EE01EBAE8C9BF0FA072E0FF68718920A, 655924440E611278998226299645BC72B3627A8A057286DC8D65A162CFBBE484 ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
13:59:31.0546 0x0770 LSI_SAS - ok
13:59:31.0593 0x0770 [ 912A04696E9CA30146A62AFA1463DD5C, 1D336D47B9D1C8449F29CDB776C092235E3D70CE53D9440970533E376EB004D3 ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
13:59:31.0609 0x0770 LSI_SCSI - ok
13:59:31.0640 0x0770 [ 8F5C7426567798E62A3B3614965D62CC, 659810257D942C5F4168E1247868CDA990F2324AC9ACAA9A6211F64B7AC9EC6E ] luafv C:\Windows\system32\drivers\luafv.sys
13:59:31.0640 0x0770 luafv - ok
13:59:31.0671 0x0770 [ 8683C1B450F4B3872839308D836E0F92, C6CEEEA780D2191AEAC2537FD96324FF5501D92CE46313FB95ABB51765D919ED ] MBAMProtector C:\Windows\system32\drivers\mbam.sys
13:59:31.0671 0x0770 MBAMProtector - ok
13:59:31.0812 0x0770 [ D84AEA3F3329D622DFC1297DDDF6163B, 316FE56CC30ED1473A917253F46B79EAA12F4ABD5B4B1ADB03929DFEE940F577 ] MBAMScheduler C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe
13:59:31.0874 0x0770 MBAMScheduler - ok
13:59:31.0921 0x0770 [ 4F45ED469906494F9BF754E476390DBD, D8FF6AFD73D8C191F5732DF9737E6F83B2B52B06A3A6CD4CC6EAC9464CBB2772 ] MBAMService C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe
13:59:31.0952 0x0770 MBAMService - ok
13:59:31.0999 0x0770 [ 799613BA73D25641402AA81B6403EFF8, 55FFF9248C0798346888071A60BF42C809C5D4C7BBA92C97B617F7B6681E00F3 ] MBAMWebAccessControl C:\Windows\system32\drivers\mwac.sys
13:59:31.0999 0x0770 MBAMWebAccessControl - ok
13:59:32.0030 0x0770 [ AEF9BABB8A506BC4CE0451A64AADED46, D5608A703EA7E97F11ED4D029B4B820440B0C9317DB7D7DC0152253CD723DC07 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
13:59:32.0046 0x0770 Mcx2Svc - ok
13:59:32.0139 0x0770 [ 11F714F85530A2BD134074DC30E99FCA, BDB5FD3B2DF4ADD19B31965B3E789768B59E872B3EA85912B1FFB32B2AF9D5D8 ] MDM C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
13:59:32.0155 0x0770 MDM - ok
13:59:32.0202 0x0770 [ 0001CE609D66632FA17B84705F658879, D5F9758BDC2B733307B565A74B33F5581FB425A5A9F32CCFA307DA1569EBD6CD ] megasas C:\Windows\system32\drivers\megasas.sys
13:59:32.0217 0x0770 megasas - ok
13:59:32.0264 0x0770 [ C252F32CD9A49DBFC25ECF26EBD51A99, 47EC8F475AB62A00FAF989CD2C3ABDF2922588F75CC15C83CD99A62EF6400FB0 ] MegaSR C:\Windows\system32\drivers\megasr.sys
13:59:32.0295 0x0770 MegaSR - ok
13:59:32.0326 0x0770 [ 1076FFCFFAAE8385FD62DFCB25AC4708, 8C5C106FCB018E019DEBA8E1A6AA170CD7A93293F27994F724EBC486238DA0AA ] MMCSS C:\Windows\system32\mmcss.dll
13:59:32.0326 0x0770 MMCSS - ok
13:59:32.0342 0x0770 MobilityService - ok
13:59:32.0389 0x0770 [ E13B5EA0F51BA5B1512EC671393D09BA, 5B380D1B435D809CA201FD5ED075D42F3C6BA1A4EEDBC4040F7E3329F05A334A ] Modem C:\Windows\system32\drivers\modem.sys
13:59:32.0389 0x0770 Modem - ok
13:59:32.0436 0x0770 [ 0A9BB33B56E294F686ABB7C1E4E2D8A8, 1E8031D51E074FDFB53E98E26DABF313B901C028D01196BFD402EED5D0A89595 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
13:59:32.0436 0x0770 monitor - ok
13:59:32.0451 0x0770 [ 5BF6A1326A335C5298477754A506D263, CC7F58E5955A448F6CE28D6D8EB98C7479E11F931B5C733CFE71A29B2E95923D ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
13:59:32.0451 0x0770 mouclass - ok
13:59:32.0467 0x0770 [ 93B8D4869E12CFBE663915502900876F, 7464DE60FAAD8793D855F1F86C3C865B3A3EE41C19A3E926D1BE4426E67F5EC2 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
13:59:32.0482 0x0770 mouhid - ok
13:59:32.0498 0x0770 [ BDAFC88AA6B92F7842416EA6A48E1600, 2CA8A7BB260016D6B7953980A94C45A3C5D41F7DC7E73EEFB1C18EA144749503 ] MountMgr C:\Windows\system32\drivers\mountmgr.sys
13:59:32.0498 0x0770 MountMgr - ok
13:59:32.0560 0x0770 [ 511D011289755DD9F9A7579FB0B064E6, 1FD0D0D5B6E08FE06F7A5D0821BCD859B0F98A6DEA58AAB7FB6C95B64212FFC8 ] mpio C:\Windows\system32\drivers\mpio.sys
13:59:32.0560 0x0770 mpio - ok
13:59:32.0592 0x0770 [ 22241FEBA9B2DEFA669C8CB0A8DD7D2E, 62055C0DCEB69873B8961AB17DBD002F44319A44CB05EC3A61421A0C6D4736CD ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
13:59:32.0592 0x0770 mpsdrv - ok
13:59:32.0638 0x0770 [ 5DE62C6E9108F14F6794060A9BDECAEC, 655E6645CC4A1EDBE5F51F5F80C7B504DD956851E788A6E4E4E08CDCDCE160D9 ] MpsSvc C:\Windows\system32\mpssvc.dll
13:59:32.0670 0x0770 MpsSvc - ok
13:59:32.0701 0x0770 [ 4FBBB70D30FD20EC51F80061703B001E, 72907A0CA5CFF82F40C02A65CD8EFD51D7CFC33BE67DE572D1ACF4FD3B248F0A ] Mraid35x C:\Windows\system32\drivers\mraid35x.sys
13:59:32.0701 0x0770 Mraid35x - ok
13:59:32.0763 0x0770 [ 82CEA0395524AACFEB58BA1448E8325C, 16E37990A291C848DE35F48EA7E09AE5B258AE589EB08A3FA2C60DC1278DE182 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
13:59:32.0763 0x0770 MRxDAV - ok
13:59:32.0794 0x0770 [ 1E94971C4B446AB2290DEB71D01CF0C2, 4701AA1B419AEF735CB2DA34532B0F1844433272C36D79F4EB55807E39B923D1 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
13:59:32.0794 0x0770 mrxsmb - ok
13:59:32.0826 0x0770 [ 4FCCB34D793B116423209C0F8B7A3B03, 7A483AEB691ADBE82779F12F0BB1CCCBFFD7E92902EC1ADC99AB7D129F887143 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
13:59:32.0841 0x0770 mrxsmb10 - ok
13:59:32.0857 0x0770 [ C3CB1B40AD4A0124D617A1199B0B9D7C, B975A39DE6D324C6274B6E3B883F36082A958F028335CEB3A37F44481EB284B3 ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
13:59:32.0872 0x0770 mrxsmb20 - ok
13:59:32.0888 0x0770 [ 28023E86F17001F7CD9B15A5BC9AE07D, FC7EAA592C5F796E3BCD7F7EF261709CD899B33FC8486E594A480F143D0D6320 ] msahci C:\Windows\system32\drivers\msahci.sys
13:59:32.0904 0x0770 msahci - ok
13:59:32.0919 0x0770 [ 4468B0F385A86ECDDAF8D3CA662EC0E7, EAEDC9CDD2EEC5000AF8190A4BE7729282576C3F88E64FDF57F455F5CECC81C9 ] msdsm C:\Windows\system32\drivers\msdsm.sys
13:59:32.0919 0x0770 msdsm - ok
13:59:32.0935 0x0770 [ FD7520CC3A80C5FC8C48852BB24C6DED, C3F3D7A07FAB9AF38A2A00BF0DF6EEE18CA8FE26277BEC9D8ADB793F2CD5EC1F ] MSDTC C:\Windows\System32\msdtc.exe
13:59:32.0950 0x0770 MSDTC - ok
13:59:32.0982 0x0770 [ A9927F4A46B816C92F461ACB90CF8515, 753284F726F9B4D3E7322C75532244CA43714F00717C2019391FB36DEE0738C0 ] Msfs C:\Windows\system32\drivers\Msfs.sys
13:59:32.0982 0x0770 Msfs - ok
13:59:33.0028 0x0770 [ 0F400E306F385C56317357D6DEA56F62, C48FA8193787359902D20D869F5F602CD66D3C5D061A58DDB72F51EED433C4BC ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
13:59:33.0028 0x0770 msisadrv - ok
13:59:33.0060 0x0770 [ 85466C0757A23D9A9AECDC0755203CB2, 79141B8DF9D7470466872AF03A85C3D3976512BFDBDB8B92A22225DC8EFD70A6 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
13:59:33.0060 0x0770 MSiSCSI - ok
13:59:33.0075 0x0770 msiserver - ok
13:59:33.0122 0x0770 [ D8C63D34D9C9E56C059E24EC7185CC07, D0CBFB8D57E6D908679DC0488ED659CA35B92626DEA890873E165F051A1AD2AE ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
13:59:33.0122 0x0770 MSKSSRV - ok
13:59:33.0138 0x0770 [ 1D373C90D62DDB641D50E55B9E78D65E, 1D4897A96EA54D6FAC7916D69B4E88CAE1397C38CC8FAE08554772808476357B ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
13:59:33.0138 0x0770 MSPCLOCK - ok
13:59:33.0169 0x0770 [ B572DA05BF4E098D4BBA3A4734FB505B, B7923F204CEADD0F62C2FE4B7CF8C56DAB70F88093B15C5692D0E61490CF4BAA ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
13:59:33.0169 0x0770 MSPQM - ok
13:59:33.0184 0x0770 [ B49456D70555DE905C311BCDA6EC6ADB, 8E40586B3A1FAE9996459E0261726C9DD6A8D5F575604868C45604613385C92F ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
13:59:33.0200 0x0770 MsRPC - ok
13:59:33.0216 0x0770 [ E384487CB84BE41D09711C30CA79646C, 520391DEE14D4D6C1EA99C7D31DD95D56B44D54CA3CD8E5C9855E9C0A04F026C ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
13:59:33.0216 0x0770 mssmbios - ok
13:59:33.0231 0x0770 [ 7199C1EEC1E4993CAF96B8C0A26BD58A, DD02DF8ED7AF5BB88BD2A91F38CE4C52432CB8044BDCBC41C320CD22B10B8A3B ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
13:59:33.0231 0x0770 MSTEE - ok
13:59:33.0278 0x0770 [ 6A57B5733D4CB702C8EA4542E836B96C, 080FB0B01E949D24CDD6876125B3A72DA9F88845D8B9A1A425BCA99E7ACF6821 ] Mup C:\Windows\system32\Drivers\mup.sys
13:59:33.0278 0x0770 Mup - ok
13:59:33.0340 0x0770 [ E4EAF0C5C1B41B5C83386CF212CA9584, 5946C3DCE65A0DB164169A1775DFCA544AF4E1895ADF6916BB1653F373F8D9AF ] napagent C:\Windows\system32\qagentRT.dll
13:59:33.0356 0x0770 napagent - ok
13:59:33.0403 0x0770 [ 85C44FDFF9CF7E72A40DCB7EC06A4416, DC37C99C458CA69B33BFD3894187089E947F4F9C01EC2ED024FA8614989E0956 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
13:59:33.0403 0x0770 NativeWifiP - ok
13:59:33.0481 0x0770 [ 1357274D1883F68300AEADD15D7BBB42, EE6352CBF0D9D633816F338159CDA27F1A805C3DDC3402D8605B50D8F3CD3300 ] NDIS C:\Windows\system32\drivers\ndis.sys
13:59:33.0496 0x0770 NDIS - ok
13:59:33.0512 0x0770 [ 0E186E90404980569FB449BA7519AE61, DE41791D9D3074007D6DD1D3933E7A2A13E3789D0AD4F029105B58279622FC1B ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
13:59:33.0512 0x0770 NdisTapi - ok
13:59:33.0528 0x0770 [ D6973AA34C4D5D76C0430B181C3CD389, 7C303F3D6BFF8B82E39998135B444837091AB1F9EB8F28D013E5EF45DB237EFC ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
13:59:33.0528 0x0770 Ndisuio - ok
13:59:33.0590 0x0770 [ 818F648618AE34F729FDB47EC68345C3, 5FC8F9237BD7FCE3C62D5BDDD49DC104BE2BECDC2FA8CDC1DB8F1891CBAA9140 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
13:59:33.0590 0x0770 NdisWan - ok
13:59:33.0590 0x0770 [ 71DAB552B41936358F3B541AE5997FB3, 30A8B3E33CBF04FC047254E404C0321F9028F2640036AA8AC1EA0A5E64551684 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
13:59:33.0606 0x0770 NDProxy - ok
13:59:33.0746 0x0770 [ 78073F606AE3B24F6C1F555759AA8511, 335ED089265B4672FC297F385CA970120B936C9C29A580E6C33EDA701EB9C695 ] Nero BackItUp Scheduler 3 C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
13:59:33.0793 0x0770 Nero BackItUp Scheduler 3 - ok
13:59:33.0808 0x0770 [ BCD093A5A6777CF626434568DC7DBA78, 2A283DD93230361204EA0897864EAF0224CB8C02E025AE2E4237B07A598B3EBD ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
13:59:33.0808 0x0770 NetBIOS - ok
13:59:33.0871 0x0770 [ ECD64230A59CBD93C85F1CD1CAB9F3F6, 83650D756C1F2768A2AAAFC7924F2A4316ABAEB1708F4B05803CDDD699B5AB6F ] netbt C:\Windows\system32\DRIVERS\netbt.sys
13:59:33.0871 0x0770 netbt - ok
13:59:33.0886 0x0770 [ A3E186B4B935905B829219502557314E, 7F58EAC6C12208D792C77014AC9D37AD1A7B2E73863C914F5DA831A72E1D52BB ] Netlogon C:\Windows\system32\lsass.exe
13:59:33.0886 0x0770 Netlogon - ok
13:59:33.0918 0x0770 [ C8052711DAECC48B982434C5116CA401, 417DEB86D157DD3F0B4678410FE27FDD3E8FA04AB03AF398F6C02BF207070B35 ] Netman C:\Windows\System32\netman.dll
13:59:33.0933 0x0770 Netman - ok
13:59:33.0949 0x0770 [ 2EF3BBE22E5A5ACD1428EE387A0D0172, 55DB91EDD0339D2434C06445F8A716A48EA90925B0FF7EBF45BB79D4B54B80BF ] netprofm C:\Windows\System32\netprofm.dll
13:59:33.0964 0x0770 netprofm - ok
13:59:34.0011 0x0770 [ D6C4E4A39A36029AC0813D476FBD0248, A0907D98580D1CD3007365CBBB53E84BEF39001E05912776F68EB0564B54B6EE ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
13:59:34.0011 0x0770 NetTcpPortSharing - ok
13:59:34.0183 0x0770 [ E559EA9138C77B5D1FDA8C558764A25F, F89DA7D8289B65DCD9ADCAC576C36AD62BE694F85E289A3CE59035688A3ECDF3 ] NETw5v32 C:\Windows\system32\DRIVERS\NETw5v32.sys
13:59:34.0308 0x0770 NETw5v32 - ok
13:59:34.0339 0x0770 [ 2E7FB731D4790A1BC6270ACCEFACB36E, EE9A00B694E8A3A5842CDC56C7BA1364317AC8134E046A0059661D057094B1A3 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
13:59:34.0339 0x0770 nfrd960 - ok
13:59:34.0370 0x0770 [ 2997B15415F9BBE05B5A4C1C85E0C6A2, 5455536515FE740E18E090329FDCC40288724372AD18ACDB2CB4BB9D85CF681E ] NlaSvc C:\Windows\System32\nlasvc.dll
13:59:34.0386 0x0770 NlaSvc - ok
13:59:34.0432 0x0770 [ 62F68443D244024845B875B44D76A92F, 60CB13374A8002AFF5AB6D54B0F03ED00A97C4E9D1E1A1BE017A364BA275E928 ] NMIndexingService C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
13:59:34.0464 0x0770 NMIndexingService - ok
13:59:34.0495 0x0770 [ D36F239D7CCE1931598E8FB90A0DBC26, DF9397411D0CE5A87E3346D4E6E25BEC537A21BCE196CC55FD999CD08FC4A637 ] Npfs C:\Windows\system32\drivers\Npfs.sys
13:59:34.0495 0x0770 Npfs - ok

tomas_ch
Level 2.5
Level 2.5
Příspěvky: 353
Registrován: srpen 07
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosim o kontrolu logu, asi VIRUS

Příspěvekod tomas_ch » 24 črc 2014 14:03

13:59:34.0526 0x0770 [ 8BB86F0C7EEA2BDED6FE095D0B4CA9BD, 15CA178518EB3D457AA4C109D97A8490821590842AE4E9841703B5A55870C8F6 ] nsi C:\Windows\system32\nsisvc.dll
13:59:34.0526 0x0770 nsi - ok
13:59:34.0542 0x0770 [ 609773E344A97410CE4EBF74A8914FCF, 90B9CBD2B62854DD503DE4A910CB987D402368EB99882FE20FFB6DEACD70F2BD ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
13:59:34.0542 0x0770 nsiproxy - ok
13:59:34.0635 0x0770 [ 2C1121F2B87E9A6B12485DF53CD848C7, E580428F3BA7B201C6C7CFADF1F44A6ECA4F589EDB034DA14260136236195936 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
13:59:34.0682 0x0770 Ntfs - ok
13:59:34.0713 0x0770 [ A2B6583A5652A385DFF5E4F49AD48761, 7214F722DE8EAEE9F33FF3AAE32AF14BEA8D1CE71680B813130D4AA41E8D32C8 ] NTIBackupSvc C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe
13:59:34.0713 0x0770 NTIBackupSvc - ok
13:59:34.0760 0x0770 [ 2757D2BA59AEE155209E24942AB127C9, 60C8571D548901A68591F1C7C548B40FA1086D21D23B8CB1083A8AE50760FE87 ] NTIDrvr C:\Windows\system32\DRIVERS\NTIDrvr.sys
13:59:34.0776 0x0770 NTIDrvr - ok
13:59:34.0869 0x0770 [ 547BFA3591C70674B0BFC99354AB78B3, B237BF92DF8AF8839EA77914BC8BAF103B6136E68E6705BA0BA283F8C7172BBE ] NTIPPKernel C:\Program Files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\NTIPPKernel.sys
13:59:34.0885 0x0770 NTIPPKernel - ok
13:59:34.0900 0x0770 [ 40B87FE8A1A9A5AC9E5A91D96F212BCD, 0C0BE4EF2999613B1559F9A709B31DB1E5EBB3336732A24D5C3E705461549E24 ] NTISchedulerSvc C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
13:59:34.0900 0x0770 NTISchedulerSvc - ok
13:59:34.0916 0x0770 [ E875C093AEC0C978A90F30C9E0DFBB72, D3A480CD7EF374EFBC1BB831B33B81534774DDDBB0FB338BEE1D444949FD8DE7 ] ntrigdigi C:\Windows\system32\drivers\ntrigdigi.sys
13:59:34.0916 0x0770 ntrigdigi - ok
13:59:34.0932 0x0770 [ C5DBBCDA07D780BDA9B685DF333BB41E, 3652893DFF05469A273C3073D8D0A9D6D6BBDEC7855FEA8EAB768F95BA674108 ] Null C:\Windows\system32\drivers\Null.sys
13:59:34.0932 0x0770 Null - ok
13:59:34.0994 0x0770 [ 723931A765E8CDDF7FFCB42F5A72CE79, 207A113E5240F71976BA314CF375E261E4345D4AAB24C39D2B5670FA9D318318 ] NVHDA C:\Windows\system32\drivers\nvhda32v.sys
13:59:34.0994 0x0770 NVHDA - ok
13:59:35.0275 0x0770 [ 8C5E88D74712DC6B6208E627F80BAD1B, 4ECE76E43E18836EE58FAC705C3BCFA433EF52686683F17F7412B39B2ADA92E5 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
13:59:35.0540 0x0770 nvlddmkm - ok
13:59:35.0602 0x0770 [ 2EDF9E7751554B42CBB60116DE727101, 37A0AA78E83DBB5A788F7F067EB71DDF6CCC72A66BB41B209E1A5E2F68F8AF9B ] nvraid C:\Windows\system32\drivers\nvraid.sys
13:59:35.0602 0x0770 nvraid - ok
13:59:35.0634 0x0770 [ ABED0C09758D1D97DB0042DBB2688177, 84B9BF886EF9181915E8AB6D971446BC681E6DE4485DBECD62838EAFA10E7F46 ] nvstor C:\Windows\system32\drivers\nvstor.sys
13:59:35.0634 0x0770 nvstor - ok
13:59:35.0665 0x0770 [ 14C90971188F0EDC9EA9DAAF715427DA, D323BF64E3A968256C3BCCD39D5A51FD2AF425B0CAF414810A0B685C5BBB1F9B ] nvsvc C:\Windows\system32\nvvsvc.exe
13:59:35.0680 0x0770 nvsvc - ok
13:59:35.0712 0x0770 [ 18BBDF913916B71BD54575BDB6EEAC0B, 5FBA165149AB09E869DCE35622E91CFC964BDD22B31A5E76CF12F1565402B207 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
13:59:35.0712 0x0770 nv_agp - ok
13:59:35.0712 0x0770 NwlnkFlt - ok
13:59:35.0727 0x0770 NwlnkFwd - ok
13:59:35.0774 0x0770 [ BE32DA025A0BE1878F0EE8D6D9386CD5, B9D6CB4626FC67D108D713467C9ED8D0E2A071D98621B5531AD9D0C172FE7B89 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
13:59:35.0774 0x0770 ohci1394 - ok
13:59:35.0836 0x0770 [ 9D10F99A6712E28F8ACD5641E3A7EA6B, 70964A0ED9011EA94044E15FA77EDD9CF535CC79ED8E03A3721FF007E69595CC ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
13:59:35.0836 0x0770 ose - ok
13:59:36.0086 0x0770 [ 358A9CCA612C68EB2F07DDAD4CE1D8D7, F342100E2E9001F11FDF93F856B50FA43F9B85D2C6B5706EC0433E77206498DA ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
13:59:36.0258 0x0770 osppsvc - ok
13:59:36.0320 0x0770 [ 0C8E8E61AD1EB0B250B846712C917506, 8F23657B90BFFCD7273B93EDA2D3768F35C1C5A313F22AE33452BE3B2A550649 ] p2pimsvc C:\Windows\system32\p2psvc.dll
13:59:36.0351 0x0770 p2pimsvc - ok
13:59:36.0382 0x0770 [ 0C8E8E61AD1EB0B250B846712C917506, 8F23657B90BFFCD7273B93EDA2D3768F35C1C5A313F22AE33452BE3B2A550649 ] p2psvc C:\Windows\system32\p2psvc.dll
13:59:36.0414 0x0770 p2psvc - ok
13:59:36.0445 0x0770 [ 0FA9B5055484649D63C303FE404E5F4D, ABF357001A5E7B21621560E74FA538E2D899C5111A6AAC784B5B12D9D819C6CD ] Parport C:\Windows\system32\drivers\parport.sys
13:59:36.0445 0x0770 Parport - ok
13:59:36.0492 0x0770 [ B9C2B89F08670E159F7181891E449CD9, BD48CE95CF4B75D1FD5FD379B2A8727BC000F2B6748B77636C6BDB0B37B0344A ] partmgr C:\Windows\system32\drivers\partmgr.sys
13:59:36.0492 0x0770 partmgr - ok
13:59:36.0523 0x0770 [ 4F9A6A8A31413180D0FCB279AD5D8112, DCE48BC6E3447403521BB9FBF727E629DEE45B69B8AE8CFEE1A67FECAE3CB9D3 ] Parvdm C:\Windows\system32\drivers\parvdm.sys
13:59:36.0523 0x0770 Parvdm - ok
13:59:36.0570 0x0770 [ C6276AD11F4BB49B58AA1ED88537F14A, 409E956AF994640DF8D062E5E41F87A6EE7EEE0335C191B582722A49322357CE ] PcaSvc C:\Windows\System32\pcasvc.dll
13:59:36.0570 0x0770 PcaSvc - ok
13:59:36.0616 0x0770 [ 941DC1D19E7E8620F40BBC206981EFDB, 156142A8B587131D2D47074CBFD0A31F69B3C27A8C74C8C4F29DFE7B53BBA802 ] pci C:\Windows\system32\drivers\pci.sys
13:59:36.0632 0x0770 pci - ok
13:59:36.0648 0x0770 [ FC175F5DDAB666D7F4D17449A547626F, 7D6108213D1AD3F97A3B83E491BCCC7D6F5BC72C32A182BDDE8736851A26C8D2 ] pciide C:\Windows\system32\drivers\pciide.sys
13:59:36.0648 0x0770 pciide - ok
13:59:36.0679 0x0770 [ E6F3FB1B86AA519E7698AD05E58B04E5, 2C4B45DDD3B980C9DAA6F039CAEFCD6E84A4D5BB43AFBA73C0C42B5556C1303C ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
13:59:36.0679 0x0770 pcmcia - ok
13:59:36.0741 0x0770 [ 6349F6ED9C623B44B52EA3C63C831A92, 9EAA3ABD396870123107D6E1B758F56FDA378BD28B28DB8415AA470D24294F92 ] PEAUTH C:\Windows\system32\drivers\peauth.sys
13:59:36.0772 0x0770 PEAUTH - ok
13:59:36.0866 0x0770 [ B1689DF169143F57053F795390C99DB3, 887B8C76B34CABC68067C0F27CC4EEF02457A53634C96FE5B0FE9B99453BDBEF ] pla C:\Windows\system32\pla.dll
13:59:36.0928 0x0770 pla - ok
13:59:36.0960 0x0770 [ 875E4E0661F3A5994DF9E5E3A0A4F96B, 7198C02935B3714C455EE94305D2A21D900D72AC67049C11A1E842572AD6C5E1 ] PLFlash DeviceIoControl Service C:\Windows\system32\IoctlSvc.exe
13:59:36.0960 0x0770 PLFlash DeviceIoControl Service - ok
13:59:37.0022 0x0770 [ C5E7F8A996EC0A82D508FD9064A5569E, 416A93816CDF12DD42DEA796D37E6E2000D3172AAAB20D3EAD3B715DACD4B61F ] PlugPlay C:\Windows\system32\umpnpmgr.dll
13:59:37.0053 0x0770 PlugPlay - ok
13:59:37.0100 0x0770 [ 831883B107684301F48ACE752C963984, EAF383C4ACC17DBB060BB8398225222175E028E1E332E2CE0548C97DAED3620E ] PnkBstrA C:\Windows\system32\PnkBstrA.exe
13:59:37.0100 0x0770 PnkBstrA - ok
13:59:37.0147 0x0770 [ 0C8E8E61AD1EB0B250B846712C917506, 8F23657B90BFFCD7273B93EDA2D3768F35C1C5A313F22AE33452BE3B2A550649 ] PNRPAutoReg C:\Windows\system32\p2psvc.dll
13:59:37.0162 0x0770 PNRPAutoReg - ok
13:59:37.0194 0x0770 [ 0C8E8E61AD1EB0B250B846712C917506, 8F23657B90BFFCD7273B93EDA2D3768F35C1C5A313F22AE33452BE3B2A550649 ] PNRPsvc C:\Windows\system32\p2psvc.dll
13:59:37.0225 0x0770 PNRPsvc - ok
13:59:37.0287 0x0770 [ D0494460421A03CD5225CCA0059AA146, FC30E90522C63F2A66D89381705712D2CDF07B2E029DF40C2DEBB2353E763E90 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
13:59:37.0303 0x0770 PolicyAgent - ok
13:59:37.0334 0x0770 [ ECFFFAEC0C1ECD8DBC77F39070EA1DB1, 6E4B188A4BFDBBCA51347BCCE2873F2D0F858398851B9B5129CB9F36A02E4354 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
13:59:37.0334 0x0770 PptpMiniport - ok
13:59:37.0365 0x0770 [ 2027293619DD0F047C584CF2E7DF4FFD, B7C172CCD08D8A30483D27536355ED1E5009B33629355B426470AFBA8542B394 ] Processor C:\Windows\system32\drivers\processr.sys
13:59:37.0365 0x0770 Processor - ok
13:59:37.0381 0x0770 [ 0508FAA222D28835310B7BFCA7A77346, 3AE2340C6E365F137CC00D9560069501DD2724756EA9EBF7A6CDFFC91B43709C ] ProfSvc C:\Windows\system32\profsvc.dll
13:59:37.0396 0x0770 ProfSvc - ok
13:59:37.0412 0x0770 [ A3E186B4B935905B829219502557314E, 7F58EAC6C12208D792C77014AC9D37AD1A7B2E73863C914F5DA831A72E1D52BB ] ProtectedStorage C:\Windows\system32\lsass.exe
13:59:37.0412 0x0770 ProtectedStorage - ok
13:59:37.0459 0x0770 [ 99514FAA8DF93D34B5589187DB3AA0BA, 4DDE5EC0C721B22E1D7D55ED3514B60EA07435C232A3A931BB49C7F486B52C18 ] PSched C:\Windows\system32\DRIVERS\pacer.sys
13:59:37.0459 0x0770 PSched - ok
13:59:37.0506 0x0770 [ 628321C8DD76AD369B362B202E655A68, 751756AB21D5C1885EF74C3878C5625860AF2934920DA015237D614399976C5A ] PSDFilter C:\Windows\system32\DRIVERS\psdfilter.sys
13:59:37.0506 0x0770 PSDFilter - ok
13:59:37.0521 0x0770 [ 79D7117E62709C7690CF3DD55ACEAD37, BB05CD9B7B966AD5B26DA8647CCB0FD0786CDD3C7BB22FCEE5005CD4A253FBD9 ] PSDNServ C:\Windows\system32\DRIVERS\PSDNServ.sys
13:59:37.0521 0x0770 PSDNServ - ok
13:59:37.0568 0x0770 [ CAE5E82827990CF4BD4A49576BDE3A43, 3A8B9CF9A8F50337F164F4996AB05602EEA403054577253FFFFEBB0B70F77208 ] psdvdisk C:\Windows\system32\DRIVERS\PSDVdisk.sys
13:59:37.0568 0x0770 psdvdisk - ok
13:59:37.0630 0x0770 [ 0A6DB55AFB7820C99AA1F3A1D270F4F6, 8B7D44A7698B95FE34CBBE4FAB2F01EC1F5BA86C2B19672F99767E650E99BF1C ] ql2300 C:\Windows\system32\drivers\ql2300.sys
13:59:37.0677 0x0770 ql2300 - ok
13:59:37.0724 0x0770 [ 81A7E5C076E59995D54BC1ED3A16E60B, A2988F065F93C41B3B389BFF3BB3FD69F768C2AF249C2356F315CC92E5C9E128 ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
13:59:37.0724 0x0770 ql40xx - ok
13:59:37.0771 0x0770 [ E9ECAE663F47E6CB43962D18AB18890F, F1A05320CAED9E745AA36A6DA9B64C48AAEDE888B42B249840CEB31448F7F432 ] QWAVE C:\Windows\system32\qwave.dll
13:59:37.0786 0x0770 QWAVE - ok
13:59:37.0818 0x0770 [ 9F5E0E1926014D17486901C88ECA2DB7, 67CDFB99AB546DCEEF20507EAC07DD52FFB51BFDFE9416ABEDDC1201B60D720E ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
13:59:37.0818 0x0770 QWAVEdrv - ok
13:59:37.0818 0x0770 [ 147D7F9C556D259924351FEB0DE606C3, E41EBA5F3098C6CF2BE4C0060A5F4BF161C3677D983B7A0D70ACC12FC3CFEFD7 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
13:59:37.0818 0x0770 RasAcd - ok
13:59:37.0849 0x0770 [ F6A452EB4CEADBB51C9E0EE6B3ECEF0F, 6A410ABCCD2211EFF511CDBF22E4152B57D2996336EBE711DFF71904AF232DB2 ] RasAuto C:\Windows\System32\rasauto.dll
13:59:37.0849 0x0770 RasAuto - ok
13:59:37.0864 0x0770 [ A214ADBAF4CB47DD2728859EF31F26B0, A24F37F55E2C018B1B4FA2C568A01AAAAEA1220833ED24A93378386174A70A32 ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
13:59:37.0864 0x0770 Rasl2tp - ok
13:59:37.0927 0x0770 [ 75D47445D70CA6F9F894B032FBC64FCF, 9112EA5D25F867136858524C7965ACCEDC02675D1E2985B950598D89CCF25E14 ] RasMan C:\Windows\System32\rasmans.dll
13:59:37.0942 0x0770 RasMan - ok
13:59:37.0989 0x0770 [ 509A98DD18AF4375E1FC40BC175F1DEF, CC7C278CA298CE102D871E34C176E73F903D6687D1E8B5AFAB8772C7DE1A60B1 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
13:59:37.0989 0x0770 RasPppoe - ok
13:59:38.0020 0x0770 [ 2005F4A1E05FA09389AC85840F0A9E4D, D8A664073FDE82F9AB324347024CDB7043635C84EB11C24C59AB384C52F0FD94 ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
13:59:38.0036 0x0770 RasSstp - ok
13:59:38.0083 0x0770 [ B14C9D5B9ADD2F84F70570BBBFAA7935, 3D533767A50554B86C769DF4D8841B3EA680B3807E85EA3533BDA9B649548269 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
13:59:38.0098 0x0770 rdbss - ok
13:59:38.0130 0x0770 [ 89E59BE9A564262A3FB6C4F4F1CD9899, 6F948FB0E73495CA60B7B19E758268495EC8A084C475EC59AD7940AA619570BB ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
13:59:38.0130 0x0770 RDPCDD - ok
13:59:38.0161 0x0770 [ FBC0BACD9C3D7F6956853F64A66E252D, 7672B10C7039295B152C02C96903E869FF2C0A88A2C3FA89BAE9F1D593B43569 ] rdpdr C:\Windows\system32\drivers\rdpdr.sys
13:59:38.0176 0x0770 rdpdr - ok
13:59:38.0192 0x0770 [ 9D91FE5286F748862ECFFA05F8A0710C, 33F37F1B207151A5564BF051BBF16F35D8C5A0F426CCA078A51F125BF09E487B ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
13:59:38.0192 0x0770 RDPENCDD - ok
13:59:38.0239 0x0770 [ C127EBD5AFAB31524662C48DFCEB773A, 40A6B88FEAFF02D1B5C0CA32F290CF3D9B48B85D248C7532F30CC5C09BAA4D89 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
13:59:38.0239 0x0770 RDPWD - ok
13:59:38.0317 0x0770 [ B33C88DF3588ACF250B87A004526C31A, 7D9FAE5C36CA9414F7E49C96C7799A3A1464D421AB2F023E7E9CF1371AD13E5B ] RegSrvc C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
13:59:38.0348 0x0770 RegSrvc - ok
13:59:38.0410 0x0770 [ BCDD6B4804D06B1F7EBF29E53A57ECE9, 8A961CCD0A0265E03D9952C733B593B02B5CF64E308D6B420276D2D6B20F86FC ] RemoteAccess C:\Windows\System32\mprdim.dll
13:59:38.0410 0x0770 RemoteAccess - ok
13:59:38.0457 0x0770 [ 9E6894EA18DAFF37B63E1005F83AE4AB, 5D6DF994D297C875D547C7B111A571AA90D582DAECADE18A53F65AD988819E67 ] RemoteRegistry C:\Windows\system32\regsvc.dll
13:59:38.0457 0x0770 RemoteRegistry - ok
13:59:38.0520 0x0770 [ 6482707F9F4DA0ECBAB43B2E0398A101, 7D57FC36577121D7E26A4F2D46DCA8725D55EC9F75B91DF994DB742BC4FB89C2 ] RFCOMM C:\Windows\system32\DRIVERS\rfcomm.sys
13:59:38.0535 0x0770 RFCOMM - ok
13:59:38.0582 0x0770 [ 17E0BEF5CA5C9CE52CC8082AC6EBC449, F05A32DA0A62144AAE78A3A9173F21F52FAED4E39F9250B3E1B11066760B2576 ] RichVideo C:\Program Files\Cyberlink\Shared files\RichVideo.exe
13:59:38.0613 0x0770 RichVideo - ok
13:59:38.0629 0x0770 [ 5123F83CBC4349D065534EEB6BBDC42B, 92A3F38EA924D83D601BB93E3750F9DBC2DD963FB7ACF2A0E776297E21815225 ] RpcLocator C:\Windows\system32\locator.exe
13:59:38.0629 0x0770 RpcLocator - ok
13:59:38.0691 0x0770 [ 3B5B4D53FEC14F7476CA29A20CC31AC9, EC02A412DA5FDE2C759A4A2C5904579E1CE7C4999CE87145812F354FC8F5E183 ] RpcSs C:\Windows\system32\rpcss.dll
13:59:38.0707 0x0770 RpcSs - ok
13:59:38.0722 0x0770 [ 9C508F4074A39E8B4B31D27198146FAD, 84913471E5A6C297B1EDABE45EF3FE7D2C4410EF04370F615109FD9E2690FFDB ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
13:59:38.0722 0x0770 rspndr - ok
13:59:38.0769 0x0770 [ 974AF42FC1CB6DC35DE34109BEF80054, 74BDC0BAD53434BA3FBB822BAB38C73F328764BD3DAD01AB64EE96F735FF1E5F ] RS_Service C:\Program Files\Acer\Acer VCM\RS_Service.exe
13:59:38.0785 0x0770 RS_Service - ok
13:59:38.0800 0x0770 [ A3E186B4B935905B829219502557314E, 7F58EAC6C12208D792C77014AC9D37AD1A7B2E73863C914F5DA831A72E1D52BB ] SamSs C:\Windows\system32\lsass.exe
13:59:38.0800 0x0770 SamSs - ok
13:59:38.0863 0x0770 [ 39763504067962108505BFF25F024345, 73C9710B61EDC7FBEDE1D7A767AA3D3A169E7AD012494D05CB5EE7E5C5752BB9 ] SASDIFSV C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS
13:59:38.0863 0x0770 SASDIFSV - ok
13:59:38.0878 0x0770 [ 77B9FC20084B48408AD3E87570EB4A85, B5BC5FEC1356DECB66A7A671DB67112BDAC8F942BF1C4B986B1805B41EF362B1 ] SASKUTIL C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS
13:59:38.0878 0x0770 SASKUTIL - ok
13:59:38.0910 0x0770 [ 3CE8F073A557E172B330109436984E30, CEC281C6076FAA1E34372CF419C6308E73811316606B8D0D9055B7D8952BDC88 ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
13:59:38.0925 0x0770 sbp2port - ok
13:59:38.0956 0x0770 [ 77B7A11A0C3D78D3386398FBBEA1B632, A3D290AB793BDC2F84C7B963300DFCE81CFE082A0FFF7489E8E5B14714892C00 ] SCardSvr C:\Windows\System32\SCardSvr.dll
13:59:38.0972 0x0770 SCardSvr - ok
13:59:39.0019 0x0770 [ 1A58069DB21D05EB2AB58EE5753EBE8D, EED8111EB613F4C93D1638C74FDB0A6DC6694E1B108DCD0D794B5B5F9B8C6EE4 ] Schedule C:\Windows\system32\schedsvc.dll
13:59:39.0050 0x0770 Schedule - ok
13:59:39.0066 0x0770 [ 312EC3E37A0A1F2006534913E37B4423, 81B8F462336791D162DAFA8092C1F437638DA3022CA24A2458B9FE183FC18C5D ] SCPolicySvc C:\Windows\System32\certprop.dll
13:59:39.0081 0x0770 SCPolicySvc - ok
13:59:39.0097 0x0770 [ 716313D9F6B0529D03F726D5AAF6F191, 44FE994A11631C1D99C73026340BACE39973C65A1281D87A61B481C9B5FAB251 ] SDRSVC C:\Windows\System32\SDRSVC.dll
13:59:39.0097 0x0770 SDRSVC - ok
13:59:39.0112 0x0770 [ 90A3935D05B494A5A39D37E71F09A677, F72733A69BC6E1A2BB91D7632FF3463C12563F60FDCC00A2CDD67FF20D479952 ] secdrv C:\Windows\system32\drivers\secdrv.sys
13:59:39.0112 0x0770 secdrv - ok
13:59:39.0128 0x0770 [ FD5199D4D8A521005E4B5EE7FE00FA9B, 0FB7A1D300C72B1ADC423CC57343C17853E5F8ACFE3EA2C42FAC2FF72E502FBE ] seclogon C:\Windows\system32\seclogon.dll
13:59:39.0128 0x0770 seclogon - ok
13:59:39.0144 0x0770 [ A9BBAB5759771E523F55563D6CBE140F, 415BF6F6A1E4C5F98DABF9C2EEAF8CA49730693046E5F94C7655683717EDAD75 ] SENS C:\Windows\System32\sens.dll
13:59:39.0144 0x0770 SENS - ok
13:59:39.0159 0x0770 [ 68E44E331D46F0FB38F0863A84CD1A31, 0778D85B6869CE2610820DC9724360538BFE832426E898AEBC34E53D2AB4322B ] Serenum C:\Windows\system32\drivers\serenum.sys
13:59:39.0159 0x0770 Serenum - ok
13:59:39.0206 0x0770 [ C70D69A918B178D3C3B06339B40C2E1B, 40BEEECA4C797A3355F4B01C57C2763C33028F27826315062320789A496D0810 ] Serial C:\Windows\system32\drivers\serial.sys
13:59:39.0206 0x0770 Serial - ok
13:59:39.0222 0x0770 [ 8AF3D28A879BF75DB53A0EE7A4289624, C870BEBB969DCD9170E64584D1CD329A193D9FC812A45EF3574891110CA68B45 ] sermouse C:\Windows\system32\drivers\sermouse.sys
13:59:39.0222 0x0770 sermouse - ok
13:59:39.0268 0x0770 [ D2193326F729B163125610DBF3E17D57, 82C894E24E2C139C884246A693AD37BBF0A4E9375B7F7A288EF1DB22F89434B9 ] SessionEnv C:\Windows\system32\sessenv.dll
13:59:39.0268 0x0770 SessionEnv - ok
13:59:39.0300 0x0770 [ 3EFA810BDCA87F6ECC24F9832243FE86, E50FEA94DB9851A46A8A71A8C061AC953A9D5B14585382B3F0FFC84931A0A68F ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
13:59:39.0300 0x0770 sffdisk - ok
13:59:39.0315 0x0770 [ E95D451F7EA3E583AEC75F3B3EE42DC5, B014BE4F9B0C79ECCE2537D1CF4AAD48ACB4C5AD3DACAC4444F0F465B9689921 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
13:59:39.0315 0x0770 sffp_mmc - ok
13:59:39.0346 0x0770 [ 3D0EA348784B7AC9EA9BD9F317980979, 2500CE188C9B71C50E966FA575303AEFE50934E376C530AECEC7C7533C15EF08 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
13:59:39.0346 0x0770 sffp_sd - ok
13:59:39.0362 0x0770 [ 46ED8E91793B2E6F848015445A0AC188, 34A97304F23EA153422848F6F1CAF8ADF0944EA781E12F027B6DEAF751A04B5D ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
13:59:39.0362 0x0770 sfloppy - ok
13:59:39.0393 0x0770 [ E1499BD0FF76B1B2FBBF1AF339D91165, 9A8F0403467E75880D3070C4D862489A75134383BAF8E7C45F8C5E7DFB0605A5 ] SharedAccess C:\Windows\System32\ipnathlp.dll
13:59:39.0424 0x0770 SharedAccess - ok
13:59:39.0456 0x0770 [ C7230FBEE14437716701C15BE02C27B8, 8221DE73D77CF71C2857D78829E807D015D9CB8BDEE4BAFD6950BF0C718CC774 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
13:59:39.0471 0x0770 ShellHWDetection - ok
13:59:39.0502 0x0770 [ 1D76624A09A054F682D746B924E2DBC3, DC903DD466AB8899883253F09477B02E4E93A31C8B279F9F02BD555F1AA083B7 ] sisagp C:\Windows\system32\drivers\sisagp.sys
13:59:39.0502 0x0770 sisagp - ok
13:59:39.0518 0x0770 [ 43CB7AA756C7DB280D01DA9B676CFDE2, 08484CAEA0518C0A4CCCD292D8C803B27FEC453537EE1E4CEE74A7208356A474 ] SiSRaid2 C:\Windows\system32\drivers\sisraid2.sys
13:59:39.0518 0x0770 SiSRaid2 - ok
13:59:39.0549 0x0770 [ A99C6C8B0BAA970D8AA59DDC50B57F94, 97AC9DD6DC4F58AC60E819B999BB157663EE7C1739521D16768AA9AC00DAD012 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
13:59:39.0565 0x0770 SiSRaid4 - ok
13:59:39.0799 0x0770 [ 9F712B26EE3B0242DE997A42FD302E2C, 12663EB108F158282A965EE70980627C2F2332BA7944D7DE03B78E18BEB87D26 ] Skype C2C Service C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
13:59:39.0939 0x0770 Skype C2C Service - ok
13:59:40.0033 0x0770 [ 3467821FD04A66C9786DF0C8C0219A73, 6CB08F4E6E2D993D736F25D997F567C8BDAD8DBBC08EF44DC586AAE69EDD21B8 ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe
13:59:40.0048 0x0770 SkypeUpdate - ok
13:59:40.0189 0x0770 [ 862BB4CBC05D80C5B45BE430E5EF872F, F4961B22C93E472C8C862421AA231CDDA9E40D3958741A1D666357F22CC3143D ] slsvc C:\Windows\system32\SLsvc.exe
13:59:40.0314 0x0770 slsvc - ok
13:59:40.0376 0x0770 [ 6EDC422215CD78AA8A9CDE6B30ABBD35, D8342BC3152859F4F7512E85ABEC61147DBCAB515458644728874E42F639D6CA ] SLUINotify C:\Windows\system32\SLUINotify.dll
13:59:40.0392 0x0770 SLUINotify - ok
13:59:40.0423 0x0770 [ 7B75299A4D201D6A6533603D6914AB04, 172BE3951F06B1991EF70B71EB91786D1EFC4E381C22BCA3A5F622CD59F3227E ] Smb C:\Windows\system32\DRIVERS\smb.sys
13:59:40.0438 0x0770 Smb - ok
13:59:40.0454 0x0770 [ 2A146A055B4401C16EE62D18B8E2A032, D0930FFA53951C92F56E1ECB41374F4C0AA01ECBF99F474513A21EAD579CFE47 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
13:59:40.0470 0x0770 SNMPTRAP - ok
13:59:40.0485 0x0770 [ 7AEBDEEF071FE28B0EEF2CDD69102BFF, E03BEE733F4C2A5F39946D4955679A290E22758DFCE4222EE69ABF64FC54EDF7 ] spldr C:\Windows\system32\drivers\spldr.sys
13:59:40.0485 0x0770 spldr - ok
13:59:40.0532 0x0770 [ 8554097E5136C3BF9F69FE578A1B35F4, 2578545CFD647FB18F217B33C8CB4F0184A35F548659494056E455020CC15FB0 ] Spooler C:\Windows\System32\spoolsv.exe
13:59:40.0532 0x0770 Spooler - ok
13:59:40.0579 0x0770 [ 41987F9FC0E61ADF54F581E15029AD91, A46E718648C2DD3B43FC3798932C966315893A59442A0686CE46C605B9E4641E ] srv C:\Windows\system32\DRIVERS\srv.sys
13:59:40.0610 0x0770 srv - ok
13:59:40.0641 0x0770 [ FF33AFF99564B1AA534F58868CBE41EF, EFBB005DA19E5B320009CBF93E686D8BFA6A50A23B5A5001C7C84C7D85EF7D49 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
13:59:40.0641 0x0770 srv2 - ok
13:59:40.0657 0x0770 [ 7605C0E1D01A08F3ECD743F38B834A44, 83A77E31004BCF83443F30EFC290E04BB1A2F332E8DFD614AB6E25B527C92299 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
13:59:40.0672 0x0770 srvnet - ok
13:59:40.0704 0x0770 [ 03D50B37234967433A5EA5BA72BC0B62, 7B61D6A4BF5D446A9473D058BC207FB6DA7C2FEFB8083F3B66CAC8907DBD8327 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
13:59:40.0719 0x0770 SSDPSRV - ok
13:59:40.0766 0x0770 [ 6F1A32E7B7B30F004D9A20AFADB14944, AA9D874A14CA4779E76701D2B02F4CCA92CD5917435FB4CACA149FCB2D1D4C4C ] SstpSvc C:\Windows\system32\sstpsvc.dll
13:59:40.0782 0x0770 SstpSvc - ok
13:59:40.0844 0x0770 [ 5DE7D67E49B88F5F07F3E53C4B92A352, 6930A598C35646646ED0E91633797EFE139AE6CDD0012335BD1340754A22F997 ] stisvc C:\Windows\System32\wiaservc.dll
13:59:40.0875 0x0770 stisvc - ok
13:59:40.0906 0x0770 [ 7BA58ECF0C0A9A69D44B3DCA62BECF56, 23CC47FA2D6E183D69DB0D3D3F3081A830D94A58FBC0A9A295B3A56C51E9486A ] swenum C:\Windows\system32\DRIVERS\swenum.sys
13:59:40.0906 0x0770 swenum - ok
13:59:40.0953 0x0770 [ F21FD248040681CCA1FB6C9A03AAA93D, 32FE765841A183A1F2C1ACACBBF8CDB11E7D4D4396F9C9F6CFF1B51C9B620ED3 ] swprv C:\Windows\System32\swprv.dll
13:59:40.0984 0x0770 swprv - ok
13:59:41.0000 0x0770 [ 192AA3AC01DF071B541094F251DEED10, 5C6EB56D1C39F3717EB754A1B37C8A618BA4F2107F64048E985D71FA04D1AD05 ] Symc8xx C:\Windows\system32\drivers\symc8xx.sys
13:59:41.0000 0x0770 Symc8xx - ok
13:59:41.0016 0x0770 [ 8C8EB8C76736EBAF3B13B633B2E64125, A6C4845DDED81CCF4947612A4D6E42035136025BCD80812D2FF396927CAADEC5 ] Sym_hi C:\Windows\system32\drivers\sym_hi.sys
13:59:41.0016 0x0770 Sym_hi - ok
13:59:41.0047 0x0770 [ 8072AF52B5FD103BBBA387A1E49F62CB, D336A7D008D145619E79043EBF5D0D455086BA1FEF89612BC2EA11CC363D82B0 ] Sym_u3 C:\Windows\system32\drivers\sym_u3.sys
13:59:41.0047 0x0770 Sym_u3 - ok
13:59:41.0078 0x0770 [ 93D33A3A0A4516584A1394C7821BAE2E, 5F9A37BB5873D960C9C41474F345C88BA35DAC49BA8FE102CB4EA1A724EEE05A ] SynTP C:\Windows\system32\DRIVERS\SynTP.sys
13:59:41.0094 0x0770 SynTP - ok
13:59:41.0156 0x0770 [ 9A51B04E9886AA4EE90093586B0BA88D, 1666C29FBFA34174B506678C920636519051D03456A6DDCCD6FF708CAE5D9962 ] SysMain C:\Windows\system32\sysmain.dll
13:59:41.0187 0x0770 SysMain - ok
13:59:41.0218 0x0770 [ 2DCA225EAE15F42C0933E998EE0231C3, 67C7913E41854DFA3043426B7D59AA1FBBB9DE01A6E6904E40A696A7C61A5F98 ] TabletInputService C:\Windows\System32\TabSvc.dll
13:59:41.0218 0x0770 TabletInputService - ok
13:59:41.0281 0x0770 [ D7673E4B38CE21EE54C59EEEB65E2483, 330D0AD13F5008D8569CE8E5EA0BBD69F54F59FEB54FD903FA18D2849CEC6AF0 ] TapiSrv C:\Windows\System32\tapisrv.dll
13:59:41.0296 0x0770 TapiSrv - ok
13:59:41.0328 0x0770 [ CB05822CD9CC6C688168E113C603DBE7, 9DB8945BDC702BB13E9DE477F2D3CCA4CE0E9E8CE9B54CE1A25375F2A2C93F0E ] TBS C:\Windows\System32\tbssvc.dll
13:59:41.0343 0x0770 TBS - ok
13:59:41.0390 0x0770 [ D18D53974FD715D50FC76F9FFE1C830D, 50424BD5950D8FC7724A6E48AE5A39D6E727FAF326C31657C69F1DE13C1450E3 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
13:59:41.0437 0x0770 Tcpip - ok
13:59:41.0468 0x0770 [ D18D53974FD715D50FC76F9FFE1C830D, 50424BD5950D8FC7724A6E48AE5A39D6E727FAF326C31657C69F1DE13C1450E3 ] Tcpip6 C:\Windows\system32\DRIVERS\tcpip.sys
13:59:41.0499 0x0770 Tcpip6 - ok
13:59:41.0515 0x0770 [ 608C345A255D82A6289C2D468EB41FD7, 74ECFDD45DC3EB3AFAEF9C42B546241AA1D6ACB2F6591A76DDB8BB1768545889 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
13:59:41.0515 0x0770 tcpipreg - ok
13:59:41.0530 0x0770 [ 5DCF5E267BE67A1AE926F2DF77FBCC56, E00C0A03AEE579B51B39930A72F39F4EFFE7CDA37187B0AE90F4E001AD15473B ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
13:59:41.0530 0x0770 TDPIPE - ok
13:59:41.0562 0x0770 [ 389C63E32B3CEFED425B61ED92D3F021, E4718E290678F00995E754AE66F1027D227BFAB9E1A1D2AC8E4EAD27DC50CB17 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
13:59:41.0562 0x0770 TDTCP - ok
13:59:41.0593 0x0770 [ 76B06EB8A01FC8624D699E7045303E54, EC30F244B48A35622ED3EE91792F6A1517C5A50770FAB3945E7A945EB7AF28A8 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
13:59:41.0608 0x0770 tdx - ok
13:59:41.0608 0x0770 [ 3CAD38910468EAB9A6479E2F01DB43C7, 9D18C71EDF39743A0A592BC0873909D2B75B5B177B2672A865D1EEC0BFD2F61C ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
13:59:41.0608 0x0770 TermDD - ok
13:59:41.0655 0x0770 [ BB95DA09BEF6E7A131BFF3BA5032090D, BAF6997F8D944F85F0553957677866C7F22E72AA434BA45FFFB6CC41041070DC ] TermService C:\Windows\System32\termsrv.dll
13:59:41.0686 0x0770 TermService - ok
13:59:41.0702 0x0770 [ C7230FBEE14437716701C15BE02C27B8, 8221DE73D77CF71C2857D78829E807D015D9CB8BDEE4BAFD6950BF0C718CC774 ] Themes C:\Windows\system32\shsvcs.dll
13:59:41.0702 0x0770 Themes - ok
13:59:41.0733 0x0770 [ 1076FFCFFAAE8385FD62DFCB25AC4708, 8C5C106FCB018E019DEBA8E1A6AA170CD7A93293F27994F724EBC486238DA0AA ] THREADORDER C:\Windows\system32\mmcss.dll
13:59:41.0733 0x0770 THREADORDER - ok
13:59:41.0764 0x0770 [ EC74E77D0EB004BD3A809B5F8FB8C2CE, 1E4BBC58D0E35D79C764CF1BA73602C5E29A5A2393D40332801D533E445C6667 ] TrkWks C:\Windows\System32\trkwks.dll
13:59:41.0764 0x0770 TrkWks - ok
13:59:41.0827 0x0770 [ BD45CEB3EBB6832AE7997FA29468ACE1, 0F9537DF7640016C9861C93AE389C1D85CC0F93463DB3803CF155CC37C4CED36 ] TrueSight C:\Windows\System32\drivers\TrueSight.sys
13:59:41.0827 0x0770 TrueSight - ok
13:59:41.0889 0x0770 [ 97D9D6A04E3AD9B6C626B9931DB78DBA, 8E42133ED5EE5EEC414A8B11C1035385C6141E445EA9677F947D20768F25A877 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
13:59:41.0889 0x0770 TrustedInstaller - ok
13:59:41.0936 0x0770 [ F4EAA7ECBCB25DE901C9B7F2CDCDA0B3, 1CBB5106A32362ABDEE73BF170E205FE64DDBF826C5F6DFFCCD229F220B9C85E ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
13:59:41.0952 0x0770 tssecsrv - ok
13:59:41.0983 0x0770 [ CAECC0120AC49E3D2F758B9169872D38, 80DB15ADF5F4FF78D0C7D5081B6C0E8F1E5125872B60D23C19DA8E62C9DAC9A8 ] tunmp C:\Windows\system32\DRIVERS\tunmp.sys
13:59:41.0998 0x0770 tunmp - ok
13:59:42.0014 0x0770 [ 300DB877AC094FEAB0BE7688C3454A9C, 3B36AA191FBE25B1A61150EAA2BDF8BA286DC4C052F6E98B0ED8202135553D8C ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
13:59:42.0014 0x0770 tunnel - ok
13:59:42.0030 0x0770 [ 7D33C4DB2CE363C8518D2DFCF533941F, C6A539AD31B0BD9F895E0A537783AA75D5760C8590D83BA832D59A9B090CA0E9 ] uagp35 C:\Windows\system32\drivers\uagp35.sys
13:59:42.0030 0x0770 uagp35 - ok
13:59:42.0045 0x0770 [ F763E070843EE2803DE1395002B42938, 0060F5D7AD091D7F0CC25C98AB9DD8258A9837958AFE845971CD04E29A6A8658 ] UBHelper C:\Windows\system32\drivers\UBHelper.sys
13:59:42.0061 0x0770 UBHelper - ok
13:59:42.0092 0x0770 [ D9728AF68C4C7693CB100B8441CBDEC6, A2CEE1EE4EF17106349F4E6967F504354801934179FBB3F10B9A4E3C30BC28CE ] udfs C:\Windows\system32\DRIVERS\udfs.sys
13:59:42.0108 0x0770 udfs - ok
13:59:42.0139 0x0770 [ ECEF404F62863755951E09C802C94AD5, 5D92062B3E371F196774EBFE840C78501E55A244DB2A49703C7AC0141C7DABF1 ] UI0Detect C:\Windows\system32\UI0Detect.exe
13:59:42.0139 0x0770 UI0Detect - ok
13:59:42.0154 0x0770 [ B0ACFDC9E4AF279E9116C03E014B2B27, 455D30859E381361FF6EE8B01EDC22A2E66CD5EC22CA9F314E88009DB77A8BAF ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
13:59:42.0170 0x0770 uliagpkx - ok
13:59:42.0201 0x0770 [ 9224BB254F591DE4CA8D572A5F0D635C, C5E7B24587AC5A28ECA63300307AD95B8A846833340126AE378840A40E53C056 ] uliahci C:\Windows\system32\drivers\uliahci.sys
13:59:42.0217 0x0770 uliahci - ok
13:59:42.0232 0x0770 [ 8514D0E5CD0534467C5FC61BE94A569F, A6EFB967044F88335469DB3351587E31CEC659BB6A7D8ED45C68329232C31BB9 ] UlSata C:\Windows\system32\drivers\ulsata.sys
13:59:42.0248 0x0770 UlSata - ok
13:59:42.0264 0x0770 [ 38C3C6E62B157A6BC46594FADA45C62B, 44F87DC955CB4E35E0EB4C8B4E931472B33D97FE000C22370A06AD5EDCEFD0BA ] ulsata2 C:\Windows\system32\drivers\ulsata2.sys
13:59:42.0279 0x0770 ulsata2 - ok
13:59:42.0310 0x0770 [ 32CFF9F809AE9AED85464492BF3E32D2, 91AAA47AEF17F373276B01AC8FA823592A0C854541A7A9A3B78F2350DB964EBC ] umbus C:\Windows\system32\DRIVERS\umbus.sys
13:59:42.0310 0x0770 umbus - ok
13:59:42.0342 0x0770 [ 68308183F4AE0BE7BF8ECD07CB297999, 4444233CA3C42BEE50ED47553D4AE5A7C12D8F288D2FA4B2DAE1D9B9FEC1A72D ] upnphost C:\Windows\System32\upnphost.dll
13:59:42.0357 0x0770 upnphost - ok
13:59:42.0404 0x0770 [ AAB0B5F72D2D726FBFDC895A2902DE1D, 7824AF6E2ADEA23F208526F3A62AD1BACDBBDB23E58EB5806890B0761529C50F ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
13:59:42.0404 0x0770 usbccgp - ok
13:59:42.0435 0x0770 [ E9476E6C486E76BC4898074768FB7131, D14B8F69A511DC1F990A9C123C18689AFE59659BA8130D248D8D03E9BD2143B6 ] usbcir C:\Windows\system32\drivers\usbcir.sys
13:59:42.0451 0x0770 usbcir - ok
13:59:42.0482 0x0770 [ 153E8515CB86F8BB5D1A8B478EBF4BB2, 0F1F79BA7C32ACAAE69184A56E67D6E18E2E2F07E0BE23F266401431169DAE14 ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
13:59:42.0482 0x0770 usbehci - ok
13:59:42.0513 0x0770 [ 2AE6BCEBD85D31317E433733DAF25888, 7B2C0E8703D0275A620160E479166EB7AA31B0F146507603535CEBF0BA4684A4 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
13:59:42.0529 0x0770 usbhub - ok
13:59:42.0544 0x0770 [ 38DBC7DD6CC5A72011F187425384388B, 456CFCD190035C3033709C8DC0F6DC4352BBF751D57C0C52DD04F8C301FEBACD ] usbohci C:\Windows\system32\drivers\usbohci.sys
13:59:42.0560 0x0770 usbohci - ok
13:59:42.0591 0x0770 [ E75C4B5269091D15A2E7DC0B6D35F2F5, B0A4141B69B66276890836DE98EB8BC790D35CE59FA503060593E8CC12AA106B ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
13:59:42.0591 0x0770 usbprint - ok
13:59:42.0638 0x0770 [ 1D714B8497CD68307806D5D3F60A5169, 1914D92ECE39995168E3C8F5A7694B7A94954DB299410A2781D1321C8E60C3D9 ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys
13:59:42.0638 0x0770 usbscan - ok
13:59:42.0700 0x0770 [ BE3DA31C191BC222D9AD503C5224F2AD, 201FB0FDBF423342202686DC0D8A3221B7798AE04C04A649D3441C257C733CE8 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
13:59:42.0716 0x0770 USBSTOR - ok
13:59:42.0763 0x0770 [ 44056325428A8E4C755830426E29878F, 95F182047746D352B7DC2B22298D5E58738E1B787C110D1DE841C026FB8A67EB ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys
13:59:42.0763 0x0770 usbuhci - ok
13:59:42.0825 0x0770 [ 73FF24E21B690625A58109637DDA0DF7, 62B1F9CD82678E2110D4BB5CC86EE8A7AB0757681443916620B6AAA1EF0DECEB ] usbvideo C:\Windows\system32\Drivers\usbvideo.sys
13:59:42.0825 0x0770 usbvideo - ok
13:59:42.0856 0x0770 [ 1509E705F3AC1D474C92454A5C2DD81F, 7F525921A3513224F8B093A16E19B4235B300349A14B0B86EE11B7473BA53337 ] UxSms C:\Windows\System32\uxsms.dll
13:59:42.0856 0x0770 UxSms - ok
13:59:42.0903 0x0770 [ CD88D1B7776DC17A119049742EC07EB4, 6B68B9EDB8C6BCB2644F1F004D5743E928509D12107D996F390A24A72E0AA528 ] vds C:\Windows\System32\vds.exe
13:59:42.0934 0x0770 vds - ok
13:59:42.0950 0x0770 [ 4D45A93A7DD638CA2DB0A86FBFBF42D1, F13AB033920AA55EA4AE4CACFCBF2D1356ED49BD650618DDBC0A3036AAE7C280 ] vfs101x C:\Windows\system32\drivers\vfs101x.sys
13:59:42.0966 0x0770 vfs101x - ok
13:59:42.0997 0x0770 [ D4584341007DF94E31943B19BB9C110E, A0FE9E2599F1A2DFF3572BD1E0DBA4AE946AEF0292F826C1D69475AC52C0CC35 ] vfsFPService C:\Windows\system32\vfsFPService.exe
13:59:43.0044 0x0770 vfsFPService - ok
13:59:43.0059 0x0770 [ 87B06E1F30B749A114F74622D013F8D4, 06C06EF87F7DC668D23B50AA5F419F62474ACF90E325E167491BF290286D6594 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
13:59:43.0059 0x0770 vga - ok
13:59:43.0075 0x0770 [ 2E93AC0A1D8C79D019DB6C51F036636C, 8B6F3B4EE90691A22788915AD0F99D8EE617750430A34E7CEB9AB4FB4E581755 ] VgaSave C:\Windows\System32\drivers\vga.sys
13:59:43.0075 0x0770 VgaSave - ok
13:59:43.0090 0x0770 [ 5D7159DEF58A800D5781BA3A879627BC, 499A8E51FDE61AE0D7C1812D1E5B331211A36BD095A4992C629B93DE6D80F4E6 ] viaagp C:\Windows\system32\drivers\viaagp.sys
13:59:43.0106 0x0770 viaagp - ok
13:59:43.0122 0x0770 [ C4F3A691B5BAD343E6249BD8C2D45DEE, 19DE07AD6CD51036FA8A6B8EE82F34D7F5264FF3A12CBE6E52BD036D0303E319 ] ViaC7 C:\Windows\system32\drivers\viac7.sys
13:59:43.0122 0x0770 ViaC7 - ok
13:59:43.0137 0x0770 [ AADF5587A4063F52C2C3FED7887426FC, 0A74791A236FDAFCD045CFB79A159245B94F7C2033E0CD830C1B76F0F994E06D ] viaide C:\Windows\system32\drivers\viaide.sys
13:59:43.0137 0x0770 viaide - ok
13:59:43.0153 0x0770 [ 69503668AC66C77C6CD7AF86FBDF8C43, 2CE407674A58313737073F02B9A617460BBA84B36C3A16D98AE5ED45279F5006 ] volmgr C:\Windows\system32\drivers\volmgr.sys
13:59:43.0153 0x0770 volmgr - ok
13:59:43.0215 0x0770 [ 23E41B834759917BFD6B9A0D625D0C28, 9F60992805262F936E8DA33610FDF60A191ECAFC08BBF657C8F9A21833C8EFC5 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
13:59:43.0231 0x0770 volmgrx - ok
13:59:43.0278 0x0770 [ 786DB5771F05EF300390399F626BF30A, 4A07BE5AEDBA4C15C2F9A91250F0488A0B0305C67BB7A037508D5CBF86D4E1B7 ] volsnap C:\Windows\system32\drivers\volsnap.sys
13:59:43.0293 0x0770 volsnap - ok
13:59:43.0356 0x0770 [ 587253E09325E6BF226B299774B728A9, C9F46197819C2A095456393C518A9B00B59ECDC54F464D038AA7F8DCCDB93CCF ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
13:59:43.0356 0x0770 vsmraid - ok
13:59:43.0402 0x0770 [ DB3D19F850C6EB32BDCB9BC0836ACDDB, D81FF1CDA87A2FE83EFD5B3FE01EFF940952F8BAEE70BEA3B2F6EF30E2121704 ] VSS C:\Windows\system32\vssvc.exe
13:59:43.0449 0x0770 VSS - ok
13:59:43.0480 0x0770 [ 96EA68B9EB310A69C25EBB0282B2B9DE, C76D3427F8A2953CB4D96BBA1523679CBE1BBF7FA821A35D2FBEB3E67AC6A10B ] W32Time C:\Windows\system32\w32time.dll
13:59:43.0496 0x0770 W32Time - ok
13:59:43.0527 0x0770 [ 48DFEE8F1AF7C8235D4E626F0C4FE031, A41D05BC0DA3C476C32E0A4DAF015DF7BADF28A03CE236D5596885FF1772F148 ] WacomPen C:\Windows\system32\drivers\wacompen.sys
13:59:43.0527 0x0770 WacomPen - ok
13:59:43.0558 0x0770 [ 55201897378CCA7AF8B5EFD874374A26, 350ADDCEFAA33E301027CFEA8DDE703F6FBD6E53624598CB2E7B671B9E48F7CC ] Wanarp C:\Windows\system32\DRIVERS\wanarp.sys
13:59:43.0558 0x0770 Wanarp - ok
13:59:43.0574 0x0770 [ 55201897378CCA7AF8B5EFD874374A26, 350ADDCEFAA33E301027CFEA8DDE703F6FBD6E53624598CB2E7B671B9E48F7CC ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
13:59:43.0574 0x0770 Wanarpv6 - ok
13:59:43.0636 0x0770 [ A3CD60FD826381B49F03832590E069AF, 213C5DB5E5D828264286FD7548527566D6160CCA780BC6853B7B28CECF329674 ] wcncsvc C:\Windows\System32\wcncsvc.dll
13:59:43.0652 0x0770 wcncsvc - ok
13:59:43.0683 0x0770 [ 11BCB7AFCDD7AADACB5746F544D3A9C7, 0370E20FD12ED713F94E5CD76F068F7A7A5E7F42416DD2A8A41249020DA7DA31 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
13:59:43.0683 0x0770 WcsPlugInService - ok
13:59:43.0714 0x0770 [ 78FE9542363F297B18C027B2D7E7C07F, 6BC3ED2A48EF41E1EE597FD58271DB12256EC013518663331CD0FBCB3FC415EE ] Wd C:\Windows\system32\drivers\wd.sys
13:59:43.0714 0x0770 Wd - ok
13:59:43.0777 0x0770 [ 25944D2CC49E0A6C581D02A74B7D6645, AF8FFAFEC07F1A6A3D4008E609E8E1D705A8DFCC7995C766E3946887203F7BEE ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
13:59:43.0792 0x0770 Wdf01000 - ok
13:59:43.0824 0x0770 [ ABFC76B48BB6C96E3338D8943C5D93B5, B5B22D445724D58641A53276063A4AA2A98F07B93865C86E94661EB31BD63511 ] WdiServiceHost C:\Windows\system32\wdi.dll
13:59:43.0824 0x0770 WdiServiceHost - ok
13:59:43.0839 0x0770 [ ABFC76B48BB6C96E3338D8943C5D93B5, B5B22D445724D58641A53276063A4AA2A98F07B93865C86E94661EB31BD63511 ] WdiSystemHost C:\Windows\system32\wdi.dll
13:59:43.0839 0x0770 WdiSystemHost - ok
13:59:43.0902 0x0770 [ 04C37D8107320312FBAE09926103D5E2, 1C6726A9871CBACB240AFA93E57781515F01758D43693DDA395EA683D97234F0 ] WebClient C:\Windows\System32\webclnt.dll
13:59:43.0917 0x0770 WebClient - ok
13:59:43.0964 0x0770 [ AE3736E7E8892241C23E4EBBB7453B60, 0F998116CC07CD719CB237EAE53BB16B2EDD6973828B9C1055EB981AEA0453D1 ] Wecsvc C:\Windows\system32\wecsvc.dll
13:59:43.0964 0x0770 Wecsvc - ok
13:59:43.0995 0x0770 [ 670FF720071ED741206D69BD995EA453, 4B96F5E3545F69AE9EBC75DC4AB27B87306D656EE526AE39E7EC7E2B6F83F7FD ] wercplsupport C:\Windows\System32\wercplsupport.dll
13:59:43.0995 0x0770 wercplsupport - ok
13:59:44.0026 0x0770 [ 32B88481D3B326DA6DEB07B1D03481E7, 821FBAF147E525ED15EB9391B16A96C6D5464841258B11F277EFB57A3BD50E37 ] WerSvc C:\Windows\System32\WerSvc.dll
13:59:44.0026 0x0770 WerSvc - ok
13:59:44.0073 0x0770 [ 4575AA12561C5648483403541D0D7F2B, 2DBB7904285F16E879E1662C4CC4DFAA420D5EB24DDFC4BAC0B7616F5F44649A ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll
13:59:44.0089 0x0770 WinDefend - ok
13:59:44.0104 0x0770 WinHttpAutoProxySvc - ok
13:59:44.0182 0x0770 [ 6B2A1D0E80110E3D04E6863C6E62FD8A, EE8BC7C378993EFE90273764C83119EBF331768CD7B24DE949233C74A51306C2 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
13:59:44.0182 0x0770 Winmgmt - ok
13:59:44.0260 0x0770 [ 7CFE68BDC065E55AA5E8421607037511, C2CE76D52AD4E31FC4216E94457DC16ABF65A5F3E883F0BD97AD387FB7574533 ] WinRM C:\Windows\system32\WsmSvc.dll
13:59:44.0323 0x0770 WinRM - ok
13:59:44.0385 0x0770 [ C008405E4FEEB069E30DA1D823910234, C392A7B5FEACB7D11A3A231C1AD65D533984E6E7429ECD3BFBF90A27E8DEB157 ] Wlansvc C:\Windows\System32\wlansvc.dll
13:59:44.0432 0x0770 Wlansvc - ok
13:59:44.0448 0x0770 [ 2E7255D172DF0B8283CDFB7B433B864E, 60C786CF0EA4A29B309B9457F0496D5A0AF1F093FC2C5D88078865814B7DBBA3 ] WmiAcpi C:\Windows\system32\DRIVERS\wmiacpi.sys
13:59:44.0448 0x0770 WmiAcpi - ok
13:59:44.0494 0x0770 [ 43BE3875207DCB62A85C8C49970B66CC, 27169F2E8A30807794407DA8F80611E4287F940AAE2A1F00F547901872FB9703 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
13:59:44.0510 0x0770 wmiApSrv - ok
13:59:44.0572 0x0770 [ 3978704576A121A9204F8CC49A301A9B, 936CC13B90A183613BDA4081556C96D48CA415B5F65D61E18CB5F2E51EEBE59F ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
13:59:44.0604 0x0770 WMPNetworkSvc - ok
13:59:44.0619 0x0770 [ CFC5A04558F5070CEE3E3A7809F3FF52, 45899E04000E21C4E009BE8B6149F199A5B2E0512C657A525770BF9DBFED7D2B ] WPCSvc C:\Windows\System32\wpcsvc.dll
13:59:44.0635 0x0770 WPCSvc - ok
13:59:44.0682 0x0770 [ 801FBDB89D472B3C467EB112A0FC9246, C24053FA12732089384D3AF06C676FF201D282FC5AD56A42B6EE8BAED4379CB2 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
13:59:44.0682 0x0770 WPDBusEnum - ok
13:59:44.0791 0x0770 [ 15673BD0B86150CB8E27766059C72A9B, 56C23289A8BFF4945EE532CF6D62D3EC81B827CA15A359F30A327789F9FE9CAF ] WPFFontCache_v0400 C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
13:59:44.0822 0x0770 WPFFontCache_v0400 - ok
13:59:44.0853 0x0770 [ E3A3CB253C0EC2494D4A61F5E43A389C, 10BA8B102E31B961819E524FCA5FA817B588EC77FB26B4E176D0A5CFF11EDF79 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
13:59:44.0869 0x0770 ws2ifsl - ok
13:59:44.0900 0x0770 [ 1CA6C40261DDC0425987980D0CD2AAAB, 727C1E3A170316641F832A8D197EDA6D6EE1206E4ED7B741E5A4017B7F2F7B88 ] wscsvc C:\Windows\System32\wscsvc.dll
13:59:44.0916 0x0770 wscsvc - ok
13:59:44.0916 0x0770 WSearch - ok
13:59:45.0025 0x0770 [ FC3EC24FCE372C89423E015A2AC1A31E, 8D028182CF83667D3E4D148979972D208FA6D9B8540EE47A0A7831B770ECD257 ] wuauserv C:\Windows\system32\wuaueng.dll
13:59:45.0103 0x0770 wuauserv - ok
13:59:45.0150 0x0770 [ 06E6F32C8D0A3F66D956F57B43A2E070, 9A6BD96A28294B0372F16E13D652FD603308F64B74A56E41E0C68C5E8011F943 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
13:59:45.0165 0x0770 WudfPf - ok
13:59:45.0181 0x0770 [ 867C301E8B790040AE9CF6486E8041DF, D867D6498C987944D99508B2FAD6D6B749FA1EDFE8124B0863D4A642352F0855 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
13:59:45.0196 0x0770 WUDFRd - ok
13:59:45.0196 0x0770 [ FE47B7BC8EA320C2D9B5E5BF6E303765, 34518DBD1E9EA6E5DA62273B18613761E1D9C6B4E074A93C6D639FBAF02222EA ] wudfsvc C:\Windows\System32\WUDFSvc.dll
13:59:45.0212 0x0770 wudfsvc - ok
13:59:45.0290 0x0770 [ 4D840C6AF3C020ED3A35EFBA9025CF4A, 2B90872AA16FBDF05103EEE4C57167C2B99E9A75FB48D100D7D81C199186C079 ] {49DE1C67-83F8-4102-99E0-C16DCC7EEC796} C:\Program Files\Acer Arcade Deluxe\PlayMovie\000.fcl
13:59:45.0290 0x0770 {49DE1C67-83F8-4102-99E0-C16DCC7EEC796} - ok
13:59:45.0321 0x0770 ================ Scan global ===============================
13:59:45.0352 0x0770 [ F31EEBC1A1C81FD04005489CC3DCDFE7, 098C35ACFCCE1686C5A6DB6057001CBF8B06A863A0802CB2E9D793F4795F8CEE ] C:\Windows\system32\basesrv.dll
13:59:45.0415 0x0770 [ A508314231C49AEE86987CEA3EAECAD1, D29BCFA967C23C7264592576D62D95FA8C687E8662D19DCCC73653A9EFB6340D ] C:\Windows\system32\winsrv.dll
13:59:45.0462 0x0770 [ A508314231C49AEE86987CEA3EAECAD1, D29BCFA967C23C7264592576D62D95FA8C687E8662D19DCCC73653A9EFB6340D ] C:\Windows\system32\winsrv.dll
13:59:45.0524 0x0770 [ D4E6D91C1349B7BFB3599A6ADA56851B, 8748091BF27F05D28D45688E04DD9229A4B2E159209A64F457703F66A8CECE4D ] C:\Windows\system32\services.exe
13:59:45.0555 0x0770 [ Global ] - ok
13:59:45.0555 0x0770 ================ Scan MBR ==================================
13:59:45.0571 0x0770 [ BB9D3A6A13C5010348DA7C900BB6AF50 ] \Device\Harddisk0\DR0
13:59:46.0257 0x0770 \Device\Harddisk0\DR0 - ok
13:59:46.0257 0x0770 ================ Scan VBR ==================================
13:59:46.0257 0x0770 [ 25F4B24D44AAF7C77085A68C65D4031F ] \Device\Harddisk0\DR0\Partition1
13:59:46.0320 0x0770 \Device\Harddisk0\DR0\Partition1 - ok
13:59:46.0320 0x0770 [ 8B746D0F69C3B07AF2A69DCC74062900 ] \Device\Harddisk0\DR0\Partition2
13:59:46.0351 0x0770 \Device\Harddisk0\DR0\Partition2 - ok
13:59:46.0351 0x0770 ================ Scan generic autorun ======================
13:59:46.0413 0x0770 [ 0D392EDE3B97E0B3131B2F63EF1DB94E, 3EDA280F91097293E00BF984D377E1111CFDE1FC81B30A3FDEB38F321EF82BB6 ] C:\Program Files\Windows Defender\MSASCui.exe
13:59:46.0460 0x0770 Windows Defender - ok
13:59:46.0522 0x0770 [ 1865429C6ED8D20F53C0214B0EF74C9D, ABF34226C951C3A97C506F6CEDACD42B5B66CBD496B5E425B1BAD8AEE77741F8 ] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
13:59:46.0569 0x0770 SynTPEnh - ok
13:59:46.0616 0x0770 [ 9F5F2F0FB0A7F5AA9F16B9A7B6DAD89F, 6D2B301E77839FFF1C74425B37D02C3F3837CE50E856C21AE4CF7ABABB04ADDC ] C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
13:59:46.0616 0x0770 Google Desktop Search - ok
13:59:46.0663 0x0770 [ 03726930815B2F8369C733315A298658, 2AFBDF44A89C971BEC581B6530599643CCB0228B6BACAB80F34EBAFB356CD2F5 ] C:\Program Files\Acer\Empowering Technology\ePower\ePower_DMC.exe
13:59:46.0678 0x0770 ePower_DMC - ok
13:59:46.0756 0x0770 [ 15A33EF5C43C5ADBABECA6B216D839B5, A8A796200BEA2048C738FAF311856634A75DA2EB994C59F2D805A8881FDD1B87 ] C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe
13:59:46.0803 0x0770 eDataSecurity Loader - ok
13:59:46.0834 0x0770 [ 5C1E89C623A710DDC6B7856CB98C82AE, 4704C799901C6502FC562387C96E52EBD35F14D09A8E39B7DDB5B4CA635D2BDE ] C:\Program Files\Acer\Empowering Technology\eAudio\eAudio.exe
13:59:46.0866 0x0770 eAudio - ok
13:59:46.0912 0x0770 [ 69B16C7B7746BA5C642FC05B3561FC73, 0DECEB6B1B7A2DD1F13133AC7328FF420DAD4610CEE1FA7466E8E0F6BAA39116 ] C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
13:59:46.0912 0x0770 Adobe Reader Speed Launcher - ok
13:59:46.0912 0x0770 NvCplDaemon - ok
13:59:46.0912 0x0770 NvMediaCenter - ok
13:59:47.0084 0x0770 [ B2AECF27EFC4770E1C5F67CB702C9066, 94D2E0A75B6435C8444A349095C22C1D62F88F29E5F4E9E15C9907ABB1EBDDCF ] C:\Program Files\Acer\Acer Bio Protection\PdtWzd.exe
13:59:47.0209 0x0770 ZPdtWzdVitaKey MC3000 - ok
13:59:47.0256 0x0770 [ 9A4C3587A330CEAF6CFCF47FAFAEAB1A, 23DDDC36C7E2245F29B37DE2DD25FFC9884E847119875EC0A9832639F71E0B0B ] C:\Program Files\Acer Arcade Deluxe\PlayMovie\PMVService.exe
13:59:47.0271 0x0770 PlayMovie - ok
13:59:47.0443 0x0770 [ 0B807BD923FEAF4503A60CA960BEEA90, F8F6284D563BF56A2F5E2FE340DA53B5A32A69D83F8AB006852C26ECCD0CE4C1 ] C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe
13:59:47.0521 0x0770 NBKeyScan - ok
13:59:47.0614 0x0770 [ 9E35FF7F943AE0FB89192BFE058B7FD4, 54712A4FA296AE28CF834F90B77B2EEB69020E3D5B5CF24674BD8DACA25195B9 ] C:\Program Files\Windows Sidebar\Sidebar.exe
13:59:47.0646 0x0770 Sidebar - ok
13:59:47.0661 0x0770 WindowsWelcomeCenter - ok
13:59:47.0708 0x0770 [ 9E35FF7F943AE0FB89192BFE058B7FD4, 54712A4FA296AE28CF834F90B77B2EEB69020E3D5B5CF24674BD8DACA25195B9 ] C:\Program Files\Windows Sidebar\Sidebar.exe
13:59:47.0739 0x0770 Sidebar - ok
13:59:47.0739 0x0770 WindowsWelcomeCenter - ok
13:59:47.0786 0x0770 [ 3EBFE205F79CA1C5DF01E85436427278, A03C4D858DC23A88DB6127A843FB0FEE2138FB74017973243A96F84F361FC230 ] C:\Program Files\Acer\WR_PopUp\ProductReg.exe
13:59:47.0786 0x0770 ProductReg - ok
13:59:47.0911 0x0770 [ EB2CC7A2441AA4477BCE761800168CCC, CF915812549A1185FF8EB12D07883CA53E47C044071E7EF20C54AF18FD8232A7 ] C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe
13:59:47.0973 0x0770 IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA} - ok
13:59:47.0989 0x0770 EADM - ok
13:59:48.0067 0x0770 [ 3F3A26E471CCCB3CFFCA68F0C052F35F, 7B58C5A6B400F9A31B3E7F5FF9D3E9516A7737A15B44EB8B0E2CC99C20A57E9C ] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIHLE.EXE
13:59:48.0082 0x0770 EPLTarget\P0000000000000000 - ok
13:59:48.0114 0x0770 [ 3F3A26E471CCCB3CFFCA68F0C052F35F, 7B58C5A6B400F9A31B3E7F5FF9D3E9516A7737A15B44EB8B0E2CC99C20A57E9C ] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIHLE.EXE
13:59:48.0114 0x0770 EPLTarget\P0000000000000001 - ok
13:59:48.0129 0x0770 [ 3F3A26E471CCCB3CFFCA68F0C052F35F, 7B58C5A6B400F9A31B3E7F5FF9D3E9516A7737A15B44EB8B0E2CC99C20A57E9C ] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIHLE.EXE
13:59:48.0129 0x0770 EPLTarget\P0000000000000002 - ok
13:59:48.0394 0x0770 [ 9DBF902054EC6A130B76A0BB51F68545, F162B1B856F4B220A776679698C57A11CFA0A1C76FA4429B095551C3C0BBDCDA ] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
13:59:48.0597 0x0770 SUPERAntiSpyware - ok
13:59:48.0613 0x0770 Waiting for KSN requests completion. In queue: 346
13:59:49.0627 0x0770 Waiting for KSN requests completion. In queue: 35
13:59:50.0641 0x0770 Waiting for KSN requests completion. In queue: 35
13:59:51.0670 0x0770 Win FW state via NFP2: enabled
13:59:54.0198 0x0770 ============================================================
13:59:54.0198 0x0770 Scan finished
13:59:54.0198 0x0770 ============================================================
13:59:54.0213 0x07f8 Detected object count: 0
13:59:54.0213 0x07f8 Actual detected object count: 0
14:00:15.0850 0x0570 Deinitialize success

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosim o kontrolu logu, asi VIRUS

Příspěvekod jaro3 » 24 črc 2014 18:53

Odinstaluj:
AVG PC TuneUp

. spusť znovu MbAM a dej Skenovat nyní
- po proběhnutí programu se ti objeví hláška tak klikni na „Vše do karantény(smazat vybrané)“ a na „Exportovat záznam“ a vyber „textový soubor“ , soubor nějak pojmenuj a někam ho ulož. Zkopíruj se celý obsah toho logu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

tomas_ch
Level 2.5
Level 2.5
Příspěvky: 353
Registrován: srpen 07
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosim o kontrolu logu, asi VIRUS

Příspěvekod tomas_ch » 25 črc 2014 13:02

Malwarebytes Anti-Malware
www.malwarebytes.org

Scan Date: 25.7.2014
Scan Time: 10:06:13
Logfile: mbam02.txt
Administrator: Yes

Version: 2.00.2.1012
Malware Database: v2014.07.24.02
Rootkit Database: v2014.07.17.01
License: Trial
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled

OS: Windows Vista Service Pack 2
CPU: x86
File System: NTFS
User: pc

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 266647
Time Elapsed: 9 min, 23 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled

Processes: 0
(No malicious items detected)

Modules: 0
(No malicious items detected)

Registry Keys: 0
(No malicious items detected)

Registry Values: 2
Trojan.Agent.VBS, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|MSStp, C:\Windows\system32\msstp.vbe, Quarantined, [b2a0c6dd05760333e9bb81671de5ac54]
Malware.Trace, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|NtVdmSrv, C:\Windows\inf\ntvdm.vbe, Quarantined, [430f247f67147fb75736e72013f1d12f]

Registry Data: 0
(No malicious items detected)

Folders: 4
Trojan.Agent.BCM, C:\Windows\inf\mnccqxdd, Quarantined, [b89acad9dc9f85b117ffa8019a688f71],
Trojan.Agent.BCM, C:\Windows\inf\mnccqxdd\bitstreams, Quarantined, [b89acad9dc9f85b117ffa8019a688f71],
Trojan.Agent.BCM, C:\Windows\inf\mnchxmwbo, Quarantined, [c092c0e324578da99582eebbcd351ee2],
Trojan.Agent.BCM, C:\Windows\inf\mnchxmwbo\bitstreams, Quarantined, [c092c0e324578da99582eebbcd351ee2],

Files: 32
Trojan.Agent.VBS, C:\Windows\System32\msstp.vbe, Quarantined, [b2a0c6dd05760333e9bb81671de5ac54],
Trojan.Rundis, C:\Windows\expIorer.exe, Quarantined, [5cf6eeb59dde6acc37bf3f1240c37f81],
Malware.Trace, C:\Windows\inf\ntvdm.vbe, Quarantined, [430f247f67147fb75736e72013f1d12f],
Malware.Trace, C:\Windows\inf\ntvdm.inf, Quarantined, [ff53168d91ea0e2896f860a723e17789],
Trojan.Agent.BCM, C:\Windows\inf\mnccqxdd\diablo130302.cl, Quarantined, [b89acad9dc9f85b117ffa8019a688f71],
Trojan.Agent.BCM, C:\Windows\inf\mnccqxdd\diakgcn121016.cl, Quarantined, [b89acad9dc9f85b117ffa8019a688f71],
Trojan.Agent.BCM, C:\Windows\inf\mnccqxdd\libcurl-4.dll, Quarantined, [b89acad9dc9f85b117ffa8019a688f71],
Trojan.Agent.BCM, C:\Windows\inf\mnccqxdd\libeay32.dll, Quarantined, [b89acad9dc9f85b117ffa8019a688f71],
Trojan.Agent.BCM, C:\Windows\inf\mnccqxdd\libidn-11.dll, Quarantined, [b89acad9dc9f85b117ffa8019a688f71],
Trojan.Agent.BCM, C:\Windows\inf\mnccqxdd\librtmp.dll, Quarantined, [b89acad9dc9f85b117ffa8019a688f71],
Trojan.Agent.BCM, C:\Windows\inf\mnccqxdd\libssh2.dll, Quarantined, [b89acad9dc9f85b117ffa8019a688f71],
Trojan.Agent.BCM, C:\Windows\inf\mnccqxdd\mnccqxdd.exe, Quarantined, [b89acad9dc9f85b117ffa8019a688f71],
Trojan.Agent.BCM, C:\Windows\inf\mnccqxdd\phatk121016.cl, Quarantined, [b89acad9dc9f85b117ffa8019a688f71],
Trojan.Agent.BCM, C:\Windows\inf\mnccqxdd\poclbm130302.cl, Quarantined, [b89acad9dc9f85b117ffa8019a688f71],
Trojan.Agent.BCM, C:\Windows\inf\mnccqxdd\scrypt130511.cl, Quarantined, [b89acad9dc9f85b117ffa8019a688f71],
Trojan.Agent.BCM, C:\Windows\inf\mnccqxdd\ssleay32.dll, Quarantined, [b89acad9dc9f85b117ffa8019a688f71],
Trojan.Agent.BCM, C:\Windows\inf\mnccqxdd\zlib1.dll, Quarantined, [b89acad9dc9f85b117ffa8019a688f71],
Trojan.Agent.BCM, C:\Windows\inf\mnccqxdd\bitstreams\fpgaminer_top_fixed7_197MHz.ncd, Quarantined, [b89acad9dc9f85b117ffa8019a688f71],
Trojan.Agent.BCM, C:\Windows\inf\mnchxmwbo\diablo130302.cl, Quarantined, [c092c0e324578da99582eebbcd351ee2],
Trojan.Agent.BCM, C:\Windows\inf\mnchxmwbo\diakgcn121016.cl, Quarantined, [c092c0e324578da99582eebbcd351ee2],
Trojan.Agent.BCM, C:\Windows\inf\mnchxmwbo\libcurl-4.dll, Quarantined, [c092c0e324578da99582eebbcd351ee2],
Trojan.Agent.BCM, C:\Windows\inf\mnchxmwbo\libeay32.dll, Quarantined, [c092c0e324578da99582eebbcd351ee2],
Trojan.Agent.BCM, C:\Windows\inf\mnchxmwbo\libidn-11.dll, Quarantined, [c092c0e324578da99582eebbcd351ee2],
Trojan.Agent.BCM, C:\Windows\inf\mnchxmwbo\librtmp.dll, Quarantined, [c092c0e324578da99582eebbcd351ee2],
Trojan.Agent.BCM, C:\Windows\inf\mnchxmwbo\libssh2.dll, Quarantined, [c092c0e324578da99582eebbcd351ee2],
Trojan.Agent.BCM, C:\Windows\inf\mnchxmwbo\mnchxmwbo.exe, Quarantined, [c092c0e324578da99582eebbcd351ee2],
Trojan.Agent.BCM, C:\Windows\inf\mnchxmwbo\phatk121016.cl, Quarantined, [c092c0e324578da99582eebbcd351ee2],
Trojan.Agent.BCM, C:\Windows\inf\mnchxmwbo\poclbm130302.cl, Quarantined, [c092c0e324578da99582eebbcd351ee2],
Trojan.Agent.BCM, C:\Windows\inf\mnchxmwbo\scrypt130511.cl, Quarantined, [c092c0e324578da99582eebbcd351ee2],
Trojan.Agent.BCM, C:\Windows\inf\mnchxmwbo\ssleay32.dll, Quarantined, [c092c0e324578da99582eebbcd351ee2],
Trojan.Agent.BCM, C:\Windows\inf\mnchxmwbo\zlib1.dll, Quarantined, [c092c0e324578da99582eebbcd351ee2],
Trojan.Agent.BCM, C:\Windows\inf\mnchxmwbo\bitstreams\fpgaminer_top_fixed7_197MHz.ncd, Quarantined, [c092c0e324578da99582eebbcd351ee2],

Physical Sectors: 0
(No malicious items detected)


(end)

---------------------------------------------------------------------------------------

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.3 (03.23.2014:1)
OS: Windows Vista (TM) Home Premium x86
Ran by pc on p  25.07.2014 at 11:14:00,80
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\installer\upgradecodes\f928123a039649549966d4c29d35b1c9
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{AFE76184-2C5D-49D4-9F96-2D747F808CD6}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{EEC009B9-A50D-4312-B62D-55E4925EC6E4}
Successfully deleted: [Registry Key] "hkey_current_user\software\microsoft\internet explorer\low rights\elevationpolicy\{a5aa24ea-11b8-4113-95ae-9ed71deaf12a}"



~~~ Files



~~~ Folders

Successfully deleted: [Folder] "C:\Windows\system32\ai_recyclebin"



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on p  25.07.2014 at 11:29:18,45
Computer was rebooted
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 76 hostů