Prosím o kontrolu-PC hlásí opakovaně málo místa na disku II Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu-PC hlásí opakovaně málo místa na disku

Příspěvekod jaro3 » 28 úno 2015 10:06

A zoek?
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Reklama
martinb01
Level 2
Level 2
Příspěvky: 167
Registrován: únor 11
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu-PC hlásí opakovaně málo místa na disku

Příspěvekod martinb01 » 28 úno 2015 10:34

Zoek.exe v5.0.0.0 Updated 26-February-2015
Tool run by Martin on so 28.02.2015 at 9:49:37,73.
Microsoft® Windows Vista™ Home Premium 6.0.6002 Service Pack 2 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Martin\Desktop\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

28.2.2015 9:51:29 Zoek.exe System Restore Point Created Succesfully.

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

127.0.0.1 localhost
::1 localhost

==== Empty Folders Check ======================

C:\Users\Martin\AppData\Roaming\Media Player Classic deleted successfully
C:\Users\Martin\AppData\Roaming\WinRAR deleted successfully

==== Deleting CLSID Registry Keys ======================


==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================


==== FireFox Fix ======================

Deleted from C:\Users\Martin\AppData\Roaming\Mozilla\Firefox\Profiles\77cajyaj.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

Added to C:\Users\Martin\AppData\Roaming\Mozilla\Firefox\Profiles\77cajyaj.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

==== Deleting Files \ Folders ======================

C:\Program Files\GUT6EB2.tmp deleted
C:\Program Files\GUM6E82.tmp deleted

==== Firefox Start and Search pages ======================

ProfilePath: C:\Users\Martin\AppData\Roaming\Mozilla\Firefox\Profiles\77cajyaj.default
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions]
"wrc@avast.com"="C:\Program Files\AVAST Software\Avast\WebRep\FF" [12.02.2015 18:22]

==== Firefox Extensions ======================

ProfilePath: C:\Users\Martin\AppData\Roaming\Mozilla\Firefox\Profiles\77cajyaj.default
- Microsoft .NET Framework Assistant - %ProfilePath%\extensions\{20a82645-c095-46ed-80e3-08825760534b}
- Zynga Toolbar - %ProfilePath%\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}

==== Firefox Plugins ======================

Profilepath: C:\Users\Martin\AppData\Roaming\Mozilla\Firefox\Profiles\77cajyaj.default
04AF8BC83A89D9B71F7E0BCAF9FDD768 - C:\Program Files\Adobe\Reader 8.0\Reader\browser\nppdf32.dll - Adobe Acrobat
1040BD9BF3DDAB7CDA2346F8375480A2 - C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll - Java(TM) Platform SE 6 U26
30257426F6DA31808C6698EC01DE2D97 - C:\Program Files\VistaCodecPack\rm\browser\plugins\nprpjplug.dll - RealPlayer Version Plugin
0147B833997332D546A149E2F3C59B9B - C:\Program Files\VistaCodecPack\rm\browser\plugins\nppl3260.dll - RealPlayer(tm) G2 LiveConnect-Enabled Plug-In (32-bit)
AB87EEFFD18F2BAAFC274E7075EA6C67 - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll - Windows Presentation Foundation / Windows Presentation Foundation
D9A87688C9B2311998CB8589287DF5B7 - C:\Windows\system32\Adobe\Director\np32dsw.dll - Shockwave for Director / Shockwave for Director
F8EFDCFC440A420D6C1ECD245AB20207 - C:\Windows\system32\Macromed\Flash\NPSWF32.dll - Shockwave Flash


==== Chromium Look ======================

Google Chrome Version: 40.0.2214.115 (Up to date, latest Stable version: 40.0.2214.115)

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[21.12.2014 08:35]

Avast Online Security - Martin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="https://www.google.com/?trackid=sp-006"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="res://ieframe.dll/tabswelcome.htm"

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="https://www.google.com/?trackid=sp-006"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="about:newtab"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"
{240d8642-7541-42fc-917f-8c03089ad835} Mapy.cz Url="http://www.mapy.cz/?query={searchTerms}&sourceid=IEListicka_1"
{2bcf99c6-1871-4547-81f5-f6a4cf746060} Firmy.cz Url="http://www.firmy.cz/phr/{searchTerms}?sourceid=IEListicka_1"
{E9410C70-B6AE-41FF-AB71-32F4B279EA5F} Google Url="https://www.google.com/search?trackid=sp-006&q={searchTerms}"
{ff0bcd32-ef27-41c5-a5a2-3acfd6885277} Zbo§ˇ.cz Url="http://www.zbozi.cz/?q={searchTerms}&r=campmoz&sourceid=IEListicka_1"

==== Reset Google Chrome ======================

C:\Users\Martin\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\Martin\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully

==== Empty IE Cache ======================

C:\Users\Martin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Martin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot

==== Empty FireFox Cache ======================

No FireFox Cache found

==== Empty Chrome Cache ======================

C:\Users\Martin\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Windows\system32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== C:\zoek_backup content ======================

C:\zoek_backup (files=71 folders=1 12828594 bytes)

==== Empty Temp Folders ======================

C:\Users\Default\AppData\Local\temp emptied successfully
C:\Users\Default User\AppData\Local\temp emptied successfully
C:\Users\Martin\AppData\Local\temp will be emptied at reboot
C:\Users\Public\AppData\Local\temp emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied
C:\Users\Martin\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== Deleting Files / Folders ======================

"C:\Users\Martin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not deleted

==== EOF on so 28.02.2015 at 10:30:24,05 ======================

Uživatelský avatar
Orcus
člen Security týmu
Elite Level 10.5
Elite Level 10.5
Příspěvky: 10645
Registrován: duben 10
Bydliště: Okolo rostou 3 růže =o)
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu-PC hlásí opakovaně málo místa na disku

Příspěvekod Orcus » 28 úno 2015 12:32

Co problémy? + nový log z HJT
Láska hřeje, ale uhlí je uhlí. :fire:



Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.

Pár rad k bezpečnosti PC.

Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix

Pokud budete spokojeni , můžete podpořit naše fórum.

martinb01
Level 2
Level 2
Příspěvky: 167
Registrován: únor 11
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu-PC hlásí opakovaně málo místa na disku

Příspěvekod martinb01 » 28 úno 2015 18:42

Zase to pár Gb sebralo...

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:42:28, on 28.2.2015
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v9.00 (9.00.8112.16609)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\Malwarebytes Anti-Malware\mbam.exe
C:\Windows\system32\conime.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\FSC\LASER MOUSE\1.0\GTGMouse.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\CCleaner\CCleaner.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Common Files\Java\Java Update\jucheck.exe
C:\Users\Martin\Desktop\hijackthis (1).exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?trackid=sp-006
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
O1 - Hosts: ::1 localhost
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.8.0_25\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre1.8.0_25\bin\jp2ssv.dll
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [GTGMOUSE] "C:\Program Files\FSC\LASER MOUSE\1.0\GTGMouse.exe"
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner.exe" /MONITOR
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exe
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://www.mojebanka.cz
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Fujitsu Siemens Computers Diagnostic Testhandler (TestHandler) - Fujitsu Siemens Computers - C:\firststeps\OnlineDiagnostic\TestManager\TestHandler.exe
O23 - Service: @%SystemRoot%\System32\TuneUpDefragService.exe,-1 (TuneUp.Defrag) - TuneUp Software GmbH - C:\Windows\System32\TuneUpDefragService.exe

--
End of file - 5250 bytes

Uživatelský avatar
Orcus
člen Security týmu
Elite Level 10.5
Elite Level 10.5
Příspěvky: 10645
Registrován: duben 10
Bydliště: Okolo rostou 3 růže =o)
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu-PC hlásí opakovaně málo místa na disku

Příspěvekod Orcus » 28 úno 2015 20:00

Stáhni si TDSSKiller

Na svojí plochu. Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller.2.2.7.1._(datum)_log.txt , vlož sem prosím celý obsah logu.

Pokud se log nevejde do jedné zprávy, rozděl jej na více částí.

====================================================

Vypni rezidentní štít antiviru a antispywaru
Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud bude po kontrole problém spustit aplikace nebo bude vyskakovat hláška o pokusu použít neplatnou operaci na klíč registru, který je označen pro odstranění, stačí restartovat počítač.

Pokud budou problémy , spusť v nouz. režimu.
Láska hřeje, ale uhlí je uhlí. :fire:



Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.

Pár rad k bezpečnosti PC.

Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix

Pokud budete spokojeni , můžete podpořit naše fórum.

martinb01
Level 2
Level 2
Příspěvky: 167
Registrován: únor 11
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu-PC hlásí opakovaně málo místa na disku

Příspěvekod martinb01 » 02 bře 2015 15:32

15:19:41.0467 0x13f0 TDSS rootkit removing tool 3.0.0.44 Jan 22 2015 08:27:04
15:19:47.0498 0x13f0 ============================================================
15:19:47.0498 0x13f0 Current date / time: 2015/03/02 15:19:47.0498
15:19:47.0498 0x13f0 SystemInfo:
15:19:47.0498 0x13f0
15:19:47.0498 0x13f0 OS Version: 6.0.6002 ServicePack: 2.0
15:19:47.0498 0x13f0 Product type: Workstation
15:19:47.0498 0x13f0 ComputerName: HOME
15:19:47.0498 0x13f0 UserName: Martin
15:19:47.0498 0x13f0 Windows directory: C:\Windows
15:19:47.0498 0x13f0 System windows directory: C:\Windows
15:19:47.0498 0x13f0 Processor architecture: Intel x86
15:19:47.0498 0x13f0 Number of processors: 4
15:19:47.0498 0x13f0 Page size: 0x1000
15:19:47.0498 0x13f0 Boot type: Normal boot
15:19:47.0498 0x13f0 ============================================================
15:19:56.0467 0x13f0 KLMD registered as C:\Windows\system32\drivers\36571443.sys
15:19:58.0186 0x13f0 System UUID: {FFFBAE7E-F421-F2E1-CFB5-3628BE6A0676}
15:19:59.0936 0x13f0 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 ( 465.76 Gb ), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
15:19:59.0998 0x13f0 ============================================================
15:19:59.0998 0x13f0 \Device\Harddisk0\DR0:
15:20:00.0030 0x13f0 MBR partitions:
15:20:00.0030 0x13f0 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x1770800, BlocksNum 0x25EB1800
15:20:00.0030 0x13f0 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x27622000, BlocksNum 0x12D63800
15:20:00.0030 0x13f0 ============================================================
15:20:00.0530 0x13f0 C: <-> \Device\Harddisk0\DR0\Partition1
15:20:00.0764 0x13f0 D: <-> \Device\Harddisk0\DR0\Partition2
15:20:00.0952 0x13f0 ============================================================
15:20:00.0952 0x13f0 Initialize success
15:20:00.0952 0x13f0 ============================================================
15:20:18.0842 0x1028 ============================================================
15:20:18.0842 0x1028 Scan started
15:20:18.0842 0x1028 Mode: Manual;
15:20:18.0842 0x1028 ============================================================
15:20:18.0842 0x1028 KSN ping started
15:20:21.0592 0x1028 KSN ping finished: true
15:20:23.0858 0x1028 ================ Scan system memory ========================
15:20:23.0858 0x1028 System memory - ok
15:20:23.0858 0x1028 ================ Scan services =============================
15:20:25.0686 0x1028 [ 82B296AE1892FE3DBEE00C9CF92F8AC7, 54B22BA63E1DA616B546992141B0C3117BA057283B8F60CB9BECE203661FEBF3 ] ACPI C:\Windows\system32\drivers\acpi.sys
15:20:25.0717 0x1028 ACPI - ok
15:20:25.0936 0x1028 [ 5DDC0A8D2CD60BDA593DDAF45821CE08, 5A1599702C132C71F043576F50A4115647754FA5F7A01D17B72E147958A06383 ] Adobe LM Service C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
15:20:25.0952 0x1028 Adobe LM Service - ok
15:20:26.0186 0x1028 [ 080255CDCB878813B481B8C348D47D8E, 75808821FBC732D0504795B8F85852E4C01D3B412989A1E597E1295CFF7B7A45 ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
15:20:26.0186 0x1028 AdobeFlashPlayerUpdateSvc - ok
15:20:26.0327 0x1028 [ 2EDC5BBAC6C651ECE337BDE8ED97C9FB, 0342700760874683A6DF4F149DACACEF0569D40C45FC5958C67100B3C5D9BBBC ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
15:20:26.0373 0x1028 adp94xx - ok
15:20:26.0420 0x1028 [ B84088CA3CDCA97DA44A984C6CE1CCAD, 87009809FB101BF51483FA32318CBCD209386582880C82417BE4FFAD1B04C8C1 ] adpahci C:\Windows\system32\drivers\adpahci.sys
15:20:26.0452 0x1028 adpahci - ok
15:20:26.0514 0x1028 [ 7880C67BCCC27C86FD05AA2AFB5EA469, C8B06E203EEA6EAD19651F212432005ABADFF21E2AA5699E34040527394F2677 ] adpu160m C:\Windows\system32\drivers\adpu160m.sys
15:20:26.0545 0x1028 adpu160m - ok
15:20:26.0592 0x1028 [ 9AE713F8E30EFC2ABCCD84904333DF4D, B0C7801AC6E0811C38F0474703F34283914C8873D851F59EE232834F7C0D8087 ] adpu320 C:\Windows\system32\drivers\adpu320.sys
15:20:26.0608 0x1028 adpu320 - ok
15:20:26.0655 0x1028 [ 9D1FDA9E086BA64E3C93C9DE32461BCF, 200FD0BFC811EC8993AF9FC78F58823ECC717063F438B627FBCDD6BD7790CAA8 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
15:20:26.0670 0x1028 AeLookupSvc - ok
15:20:26.0827 0x1028 [ F5272A105F59A7B3B345D9D6D87DA7AD, 9E84776994D04240BF2537330DBB555EDE16DFCFC59DEDCBA05A44ED7F70BEFA ] AFD C:\Windows\system32\drivers\afd.sys
15:20:26.0858 0x1028 AFD - ok
15:20:26.0873 0x1028 [ EF23439CDD587F64C2C1B8825CEAD7D8, 762665CFC202B3E16CA2338887896FDF996331A363DC709F1EC088BF927133A3 ] agp440 C:\Windows\system32\drivers\agp440.sys
15:20:26.0889 0x1028 agp440 - ok
15:20:26.0952 0x1028 [ AE1FDF7BF7BB6C6A70F67699D880592A, B831BF156FC49287A19FC149383D437B1034EA6F42CE9D761EB90ABD0F8D96B1 ] aic78xx C:\Windows\system32\drivers\djsvs.sys
15:20:26.0967 0x1028 aic78xx - ok
15:20:27.0030 0x1028 [ A1545B731579895D8CC44FC0481C1192, 6B0EE833BA39C142D625A03586CCD8F6C9C3136C603CE5DF5BAC1AA3423E3E7F ] ALG C:\Windows\System32\alg.exe
15:20:27.0045 0x1028 ALG - ok
15:20:27.0061 0x1028 [ 90395B64600EBB4552E26E178C94B2E4, 73095893964DC7915983B58A567184FC51949C99341E7E0D04D70CC4C4F95E37 ] aliide C:\Windows\system32\drivers\aliide.sys
15:20:27.0077 0x1028 aliide - ok
15:20:27.0108 0x1028 [ 2B13E304C9DFDFA5EB582F6A149FA2C7, 196CCE13E0376526B79D9C43D4071990576C4DD210A48E9E922B438AA11C95E7 ] amdagp C:\Windows\system32\drivers\amdagp.sys
15:20:27.0123 0x1028 amdagp - ok
15:20:27.0155 0x1028 [ 0577DF1D323FE75A739C787893D300EA, 079EF3CA18FB847DB7E62929071BFF007FAF390E1DBF4C59F28DAAC6B9C2DE51 ] amdide C:\Windows\system32\drivers\amdide.sys
15:20:27.0155 0x1028 amdide - ok
15:20:27.0202 0x1028 [ DC487885BCEF9F28EECE6FAC0E5DDFC5, 24A62F6E628AD46273BC226F7BC3453A9C7B76F81ABB9FB801EBEFADB2AB7C9B ] AmdK7 C:\Windows\system32\drivers\amdk7.sys
15:20:27.0217 0x1028 AmdK7 - ok
15:20:27.0248 0x1028 [ 0CA0071DA4315B00FC1328CA86B425DA, 4F816FA2197166A83A266084F9D5ED68876D0521D378F90F1314DD53C6FB8814 ] AmdK8 C:\Windows\system32\drivers\amdk8.sys
15:20:27.0264 0x1028 AmdK8 - ok
15:20:27.0311 0x1028 [ 8F7D200717A58E9800D391F4C2101577, F07CF0F5636F46D8F3D5133284943E991E8739E5A644BCA5F18BB896B374620D ] Appinfo C:\Windows\System32\appinfo.dll
15:20:27.0327 0x1028 Appinfo - ok
15:20:27.0405 0x1028 [ 5F673180268BB1FDB69C99B6619FE379, C4307A861163F96648109046A6C7D53AB1C9B10D0B841DD1A7D147D22F462649 ] arc C:\Windows\system32\drivers\arc.sys
15:20:27.0436 0x1028 arc - ok
15:20:27.0452 0x1028 [ 957F7540B5E7F602E44648C7DE5A1C05, F03C7708A6C9D2579ECE5A7413AFA068E1067D7191EC653A78BA4FEDE76CFBD8 ] arcsas C:\Windows\system32\drivers\arcsas.sys
15:20:27.0467 0x1028 arcsas - ok
15:20:27.0858 0x1028 [ 9D768C43FEF254DD50B1DBF8AD5C4C0B, A50854EA5C08605133B8BB4DFDC6090357C5665314AA72E0BFA1E07D4E451F09 ] aspnet_state C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
15:20:27.0873 0x1028 aspnet_state - ok
15:20:28.0061 0x1028 [ 9D23DE88C3B18BA87CD4587177CA6CEA, 46DBB867FC73E30320852F744F38B66906DD5B96C4EBB03F504CF33E867A8470 ] aswHwid C:\Windows\system32\drivers\aswHwid.sys
15:20:28.0077 0x1028 aswHwid - ok
15:20:28.0139 0x1028 [ 73A9014A9C4B19AA093DA05ED4246E27, F03C8433EB00229490BCD293CC97EF72452E156212D56C24BBA95C8E1B207D1A ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
15:20:28.0155 0x1028 aswMonFlt - ok
15:20:28.0217 0x1028 [ 0926775B8C3B32EE99921CCB0F85378E, 21A46B124B3E9F2569030E2DF591858B85AA640DDBB5C994B5C00A1E78C9EF67 ] aswRdr C:\Windows\system32\drivers\aswRdr.sys
15:20:28.0233 0x1028 aswRdr - ok
15:20:28.0264 0x1028 [ 6544697080421E62E97AAFBD0A8AA391, BB3F492BF828A147B82FDD1FC9EB9867D96DE0481554A59745D41C6BAB551700 ] aswRvrt C:\Windows\system32\drivers\aswRvrt.sys
15:20:28.0280 0x1028 aswRvrt - ok
15:20:28.0530 0x1028 [ E73CBE3420ECFA8FF7D0467E170E335D, B994342C92AE9167908B8CA3D03DC278E919C7073512461AFFD4C25E8D2D8D66 ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
15:20:28.0561 0x1028 aswSnx - ok
15:20:28.0733 0x1028 [ 1624D5AD126B8AFE2B2E85E5B8364EB6, AB97A74C1CA9921F7753D98516D7E11750D5D3ACD143C83273B0B295625440A0 ] aswSP C:\Windows\system32\drivers\aswSP.sys
15:20:28.0764 0x1028 aswSP - ok
15:20:28.0827 0x1028 [ 4C0ECF1AFA6992904814C74B99DD36F9, AA0D9BA7FE829888C636EC9D72E8E2D987A1C3FF092F95A38EC607CEE25A91F8 ] aswTdi C:\Windows\system32\drivers\aswTdi.sys
15:20:28.0842 0x1028 aswTdi - ok
15:20:28.0983 0x1028 [ 0EFBC2962B156E8AC267F96D4D93EF06, 8A69672CE8B68A0A683D583287473BFAB7CF8B9771C22E398607CF2A151C7124 ] aswVmm C:\Windows\system32\drivers\aswVmm.sys
15:20:28.0983 0x1028 aswVmm - ok
15:20:29.0030 0x1028 [ 53B202ABEE6455406254444303E87BE1, 4C91CA8DD345FEDD74A6AF2C07580717703F979B7DE2532B1D00B9F6896DDE70 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
15:20:29.0045 0x1028 AsyncMac - ok
15:20:29.0123 0x1028 [ 1F05B78AB91C9075565A9D8A4B880BC4, 737BE9F9376DAB0CCDFED93EA6D67F0C432367EA63CD772A453485BE769AF3BD ] atapi C:\Windows\system32\drivers\atapi.sys
15:20:29.0123 0x1028 atapi - ok
15:20:29.0264 0x1028 [ 8E98A99187FF17FC1D48E6FAFFD870BE, 7C935191A0A2BA95CA9A9E450F7C8802E6184F73BC297E91908B59F34C22AB06 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
15:20:29.0311 0x1028 AudioEndpointBuilder - ok
15:20:29.0342 0x1028 [ 8E98A99187FF17FC1D48E6FAFFD870BE, 7C935191A0A2BA95CA9A9E450F7C8802E6184F73BC297E91908B59F34C22AB06 ] Audiosrv C:\Windows\System32\Audiosrv.dll
15:20:29.0342 0x1028 Audiosrv - ok
15:20:29.0545 0x1028 [ E3F7EC811923F3F1A77B185F22638E5E, 324041256314C1471B5F123FA8DECC8F374A6B497A6419D4CAF61E68E1733265 ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
15:20:29.0561 0x1028 avast! Antivirus - ok
15:20:30.0748 0x1028 [ 496208E0276BFAA171696D7EB38CCC01, B1E0914A2421DA91F9E6442B8BCDD6650D45801A091BC17531312E88E6A46369 ] AvastVBoxSvc C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
15:20:30.0811 0x1028 AvastVBoxSvc - ok
15:20:30.0873 0x1028 [ E8054A423E5D2BDAE6062BAB6DA159C4, C42D5333B7DEC3DA6CC634D85678A9A19C5945179C0F0F4B5D84718E9EE313C0 ] AVG Anti-Rootkit C:\Windows\system32\DRIVERS\avgarkt.sys
15:20:30.0905 0x1028 AVG Anti-Rootkit - ok
15:20:30.0998 0x1028 [ EC08D1625F5C6CF2A57B79EB35186F8C, 9FE41621118E2B32B437223E9FC5F4612468614D32EF441FAB0B1ADCE9ABB591 ] AvgArCln C:\Windows\system32\DRIVERS\AvgArCln.sys
15:20:31.0014 0x1028 AvgArCln - ok
15:20:31.0061 0x1028 [ 67E506B75BD5326A3EC7B70BD014DFB6, 3B07243970CAB4E93A858BEA6E31F56AD0157C42D624F3FEB469E68EEEF65669 ] Beep C:\Windows\system32\drivers\Beep.sys
15:20:31.0061 0x1028 Beep - ok
15:20:31.0217 0x1028 [ C789AF0F724FDA5852FB9A7D3A432381, 4B0F7A3A8F2D45E49630D24F2630B8014BCDB793B9C6E83FD2B2863A54F62BF5 ] BFE C:\Windows\System32\bfe.dll
15:20:31.0264 0x1028 BFE - ok
15:20:31.0530 0x1028 [ 93952506C6D67330367F7E7934B6A02F, 1D9A6B10B9489C1A32F730E22CC399BFF0796E3FCB3BA52BE45ED487CAC59EBD ] BITS C:\Windows\System32\qmgr.dll
15:20:31.0670 0x1028 BITS - ok
15:20:31.0686 0x1028 blbdrive - ok
15:20:31.0764 0x1028 [ 35F376253F687BDE63976CCB3F2108CA, C5EF6301D7BC067050038DB75D961681D1CBE418285AD60167C1334B0B54DFE9 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
15:20:31.0780 0x1028 bowser - ok
15:20:31.0827 0x1028 [ 9F9ACC7F7CCDE8A15C282D3F88B43309, A9131334BD9CF8FD60BA9D54AA054E2DF2BE1219FB650DF1464F2787BDEAE98F ] BrFiltLo C:\Windows\system32\drivers\brfiltlo.sys
15:20:31.0858 0x1028 BrFiltLo - ok
15:20:31.0873 0x1028 [ 56801AD62213A41F6497F96DEE83755A, 0DEB8318FB47DF6473C171C795C735E26A73FA12232876C6856549EA16F33361 ] BrFiltUp C:\Windows\system32\drivers\brfiltup.sys
15:20:31.0889 0x1028 BrFiltUp - ok
15:20:31.0952 0x1028 [ A3629A0C4226F9E9C72FAAEEBC3AD33C, FB4D2738B64AADA52B95A6CF7ED4CDBFE4DD4BEBCAF1AE9CE64317F97DB38DDF ] Browser C:\Windows\System32\browser.dll
15:20:31.0983 0x1028 Browser - ok
15:20:31.0998 0x1028 [ B304E75CFF293029EDDF094246747113, CB6B219B186C3511A0DE3CDE7F7B8966A9E32D808A952CA8C5B42B3A3A17BFB0 ] Brserid C:\Windows\system32\drivers\brserid.sys
15:20:32.0030 0x1028 Brserid - ok
15:20:32.0045 0x1028 [ 203F0B1E73ADADBBB7B7B1FABD901F6B, 782FA7B26940FE479C49C9BAA2EB582CDAAAD607013E9BCFC85E6FBBB7D49A6D ] BrSerWdm C:\Windows\system32\drivers\brserwdm.sys
15:20:32.0061 0x1028 BrSerWdm - ok
15:20:32.0077 0x1028 [ BD456606156BA17E60A04E18016AE54B, DFBDC9DA6A3EA40BACFF204BC6C55C2C122B5885D2CBF6D45054DE43EE15EC4D ] BrUsbMdm C:\Windows\system32\drivers\brusbmdm.sys
15:20:32.0092 0x1028 BrUsbMdm - ok
15:20:32.0123 0x1028 [ AF72ED54503F717A43268B3CC5FAEC2E, 4A638669B0C30B1BDED242A8BF2015A37749570FF4D67D190BACC8D7E0C44468 ] BrUsbSer C:\Windows\system32\drivers\brusbser.sys
15:20:32.0139 0x1028 BrUsbSer - ok
15:20:32.0155 0x1028 [ AD07C1EC6665B8B35741AB91200C6B68, DCE1305A30D6713222A01C1F1D03ED0ADABE23C742CE1E82BB142531B82A3FF7 ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
15:20:32.0170 0x1028 BTHMODEM - ok
15:20:32.0373 0x1028 [ 7ADD03E75BEB9E6DD102C3081D29840A, 0CA14A77CE990B5AA32C0725C22CA190ECBC73B75064DD959CABAD79B8846F1D ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
15:20:32.0405 0x1028 cdfs - ok
15:20:32.0452 0x1028 [ 6B4BFFB9BECD728097024276430DB314, 4451EFEAD37B05C8A3CB610B6D72E73B55D3D1E1CC1B17405598C1EDAA93C2D5 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
15:20:32.0483 0x1028 cdrom - ok
15:20:32.0545 0x1028 [ 312EC3E37A0A1F2006534913E37B4423, 81B8F462336791D162DAFA8092C1F437638DA3022CA24A2458B9FE183FC18C5D ] CertPropSvc C:\Windows\System32\certprop.dll
15:20:32.0561 0x1028 CertPropSvc - ok
15:20:32.0592 0x1028 [ DA8E0AFC7BAA226C538EF53AC2F90897, 2BBB9966671A3B8325D215DBC29FBD7D912C13ADC562A0D4521D1FF9A6F445C0 ] circlass C:\Windows\system32\drivers\circlass.sys
15:20:32.0608 0x1028 circlass - ok
15:20:32.0717 0x1028 [ D7659D3B5B92C31E84E53C1431F35132, 6BFE644AD9890A8CEEDCC4B97ADD564AD57202FBC5D21599469E0C4B31BB27C6 ] CLFS C:\Windows\system32\CLFS.sys
15:20:32.0748 0x1028 CLFS - ok
15:20:32.0967 0x1028 [ 6B6943A0CA56B47D6FB2EE476890854F, 6DA779879487F4A187DF54B0362642643D7871AA8F7E30992D781F558C50F052 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
15:20:32.0998 0x1028 clr_optimization_v2.0.50727_32 - ok
15:20:33.0123 0x1028 [ E87213F37A13E2B54391E40934F071D0, 7EB221127EFB5BF158FB03D18EFDA2C55FB6CE3D1A1FE69C01D70DBED02C87E5 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
15:20:33.0139 0x1028 clr_optimization_v4.0.30319_32 - ok
15:20:33.0155 0x1028 [ 45201046C776FFDAF3FC8A0029C581C8, 68A68CF2B76598BC8610EB5B2D3FD5BDC9D51CFC6F51FB7A0B0C92A2BE910FC6 ] cmdide C:\Windows\system32\drivers\cmdide.sys
15:20:33.0170 0x1028 cmdide - ok
15:20:33.0202 0x1028 [ 82B8C91D327CFECF76CB58716F7D4997, 6F06A4BC44B170BB28BF464E9BB5216D39D11CB8D442570B575A741B032EAEE6 ] Compbatt C:\Windows\system32\drivers\compbatt.sys
15:20:33.0217 0x1028 Compbatt - ok
15:20:33.0217 0x1028 COMSysApp - ok
15:20:33.0280 0x1028 [ 2A213AE086BBEC5E937553C7D9A2B22C, 1F91ACC0426E0ED1717555B282F65629EF15021375B24A63C29C89ADE916EE2A ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
15:20:33.0295 0x1028 crcdisk - ok
15:20:33.0311 0x1028 [ 22A7F883508176489F559EE745B5BF5D, D6341E3FBC8A46D2D1F0477FA60EC4828B585D35B14609CD02868FD04ECD14DB ] Crusoe C:\Windows\system32\drivers\crusoe.sys
15:20:33.0327 0x1028 Crusoe - ok
15:20:33.0405 0x1028 [ 684C130BBC6DB681BAD4920A4C944AA5, DDE434B206984808351C98500824A33E6740B4326C455066027F8D549D4C3B92 ] CryptSvc C:\Windows\system32\cryptsvc.dll
15:20:33.0436 0x1028 CryptSvc - ok
15:20:33.0655 0x1028 [ 3B5B4D53FEC14F7476CA29A20CC31AC9, EC02A412DA5FDE2C759A4A2C5904579E1CE7C4999CE87145812F354FC8F5E183 ] DcomLaunch C:\Windows\system32\rpcss.dll
15:20:33.0702 0x1028 DcomLaunch - ok
15:20:33.0764 0x1028 [ 622C41A07CA7E6DD91770F50D532CB6C, 2A9040949CB45F9970FDE930278F30D2F08E957290CB3D4DC4F2CA94F3D444D2 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
15:20:33.0780 0x1028 DfsC - ok
15:20:33.0873 0x1028 [ 9028559C132146FB75EB7ACF384B086A, 35159D86706441ED94895B4629411B4445FCB4526AFD1F7036EE647931B7A94D ] Dhcp C:\Windows\System32\dhcpcsvc.dll
15:20:33.0905 0x1028 Dhcp - ok
15:20:33.0967 0x1028 [ 5D4AEFC3386920236A548271F8F1AF6A, 11B74D6800EC6F7AAEFB0B6A9F2E8376C7C3B8DB677F03AC3743CB004CA96B08 ] disk C:\Windows\system32\drivers\disk.sys
15:20:33.0983 0x1028 disk - ok
15:20:34.0139 0x1028 [ 57D762F6F5974AF0DA2BE88A3349BAAA, D9E7DC8F9FB7837F88BBB95B52147AA80E688FB9762EEA99B8046D9C6AD48F3C ] Dnscache C:\Windows\System32\dnsrslvr.dll
15:20:34.0170 0x1028 Dnscache - ok
15:20:34.0264 0x1028 [ 324FD74686B1EF5E7C19A8AF49E748F6, DC6EB4304555B60DD17E04D20DFE4E279718E4041A9310DE29E678834BB22C5B ] dot3svc C:\Windows\System32\dot3svc.dll
15:20:34.0295 0x1028 dot3svc - ok
15:20:34.0389 0x1028 [ A622E888F8AA2F6B49E9BC466F0E5DEF, 3DED7F22A29AD2F8C927DFA0FD87FDE5ED0BDCAC7260BD9F71D8EA34328C772A ] DPS C:\Windows\system32\dps.dll
15:20:34.0405 0x1028 DPS - ok
15:20:34.0467 0x1028 [ 97FEF831AB90BEE128C9AF390E243F80, A7F4118603E2D5DDDB117EF7C058684EA5B37690EFAB2BEBA570EEF9C36281BE ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
15:20:34.0483 0x1028 drmkaud - ok
15:20:34.0764 0x1028 [ 5C2C209CDEFBC51D83D66E8A53B2BE89, 7AE68672A6BEEF601017BE28AA0BF3673318EFE97AA08E70F58A9391C54DF71F ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
15:20:34.0842 0x1028 DXGKrnl - ok
15:20:34.0905 0x1028 [ F88FB26547FD2CE6D0A5AF2985892C48, F02E06E16830F5D3FAF61991F5A91E54BB3461F58AFE3BFB7A9066CD302B879F ] E1G60 C:\Windows\system32\DRIVERS\E1G60I32.sys
15:20:34.0920 0x1028 E1G60 - ok
15:20:34.0998 0x1028 [ C0B95E40D85CD807D614E264248A45B9, 30421DAF1722A225222268CB8BA4FE60CB76C6FD0C9157B0F53FC1368F806A4E ] EapHost C:\Windows\System32\eapsvc.dll
15:20:35.0014 0x1028 EapHost - ok
15:20:35.0092 0x1028 [ 7F64EA048DCFAC7ACF8B4D7B4E6FE371, F3E9CF5D8E9124CB06F08454C5F0E510DE19A92780151FB2F8A58A0905D59B8F ] Ecache C:\Windows\system32\drivers\ecache.sys
15:20:35.0123 0x1028 Ecache - ok
15:20:35.0358 0x1028 [ 9BE3744D295A7701EB425332014F0797, 1A139EE9232581E466591C5EBEF41E4BF1F82D99C1959F1C68C879B240E9F46D ] ehRecvr C:\Windows\ehome\ehRecvr.exe
15:20:35.0389 0x1028 ehRecvr - ok
15:20:35.0452 0x1028 [ AD1870C8E5D6DD340C829E6074BF3C3F, 064D07106A1BBE80294F1913354832F2B67D22274BB4D36C81D2D83C96FE0B88 ] ehSched C:\Windows\ehome\ehsched.exe
15:20:35.0498 0x1028 ehSched - ok
15:20:35.0545 0x1028 [ C27C4EE8926E74AA72EFCAB24C5242C3, F1EBF78CCE9BA76AFD0478BC66B67CA44DEAF3C380369BFCE91BD8F678C8608A ] ehstart C:\Windows\ehome\ehstart.dll
15:20:35.0577 0x1028 ehstart - ok
15:20:35.0655 0x1028 [ E8F3F21A71720C84BCF423B80028359F, 63114E6120F634224A0E83A5047B37C7D6F26CF99FE3C01CFC0AB8B1763BB084 ] elxstor C:\Windows\system32\drivers\elxstor.sys
15:20:35.0686 0x1028 elxstor - ok
15:20:35.0889 0x1028 [ 4E6B23DFC917EA39306B529B773950F4, C4BA77632B4BD46C4C1797F7F57399DB506D3EB6E5A0A36C269A793DAA3445C2 ] EMDMgmt C:\Windows\system32\emdmgmt.dll
15:20:36.0014 0x1028 EMDMgmt - ok
15:20:36.0155 0x1028 [ 67058C46504BC12D821F38CF99B7B28F, E8D19F305F78BCA1DA8425315F2C77A377CD51E3CC54323DC2FF355120EA097D ] EventSystem C:\Windows\system32\es.dll
15:20:36.0170 0x1028 EventSystem - ok
15:20:36.0327 0x1028 [ 22B408651F9123527BCEE54B4F6C5CAE, 31AF9649333A9496A9224001266D1B68CE2A31B9FB182A755D127FC5492AA6B2 ] exfat C:\Windows\system32\drivers\exfat.sys
15:20:36.0342 0x1028 exfat - ok
15:20:36.0420 0x1028 [ 4E404505B3F62ECFBDBCBBCF0A72DBC5, 9F446ED06A31BFE52C4F1E8ACC400B8E3F47A3CC02FFC950DB861B2B3BA4C5B9 ] fastfat C:\Windows\system32\drivers\fastfat.sys
15:20:36.0436 0x1028 fastfat - ok
15:20:36.0452 0x1028 [ 63BDADA84951B9C03E641800E176898A, AD3EA20CAD0E0C438422D5D39AEA9E0AAD9E1DC866A696AE503C76F5FAC4BE6E ] fdc C:\Windows\system32\DRIVERS\fdc.sys
15:20:36.0467 0x1028 fdc - ok
15:20:36.0530 0x1028 [ 6629B5F0E98151F4AFDD87567EA32BA3, 8CC02D5E0639CDF74B2F85DB56D6199E1858F1A58465ED1D8B25C968E986132C ] fdPHost C:\Windows\system32\fdPHost.dll
15:20:36.0545 0x1028 fdPHost - ok
15:20:36.0623 0x1028 [ 89ED56DCE8E47AF40892778A5BD31FD2, 924360875796C3DDDDA8097FDF53F6846B227F7413766F00AEDD981EFD691BF9 ] FDResPub C:\Windows\system32\fdrespub.dll
15:20:36.0639 0x1028 FDResPub - ok
15:20:36.0670 0x1028 [ A8C0139A884861E3AAE9CFE73B208A9F, 3B021D148A2989AAA46AE58E5FED8A2DCA25E9212C2FA7F922880EF5A077E49B ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
15:20:36.0686 0x1028 FileInfo - ok
15:20:36.0702 0x1028 [ 0AE429A696AECBC5970E3CF2C62635AE, 1ECC315C099D17835788B68F0DE00EC98DC5AEE8F329D739E0DB90A898F22244 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
15:20:36.0717 0x1028 Filetrace - ok
15:20:36.0733 0x1028 [ 6603957EFF5EC62D25075EA8AC27DE68, B52D112301A6BFBD60959D7D2502AB2E1EB6BB7F5DCED46899F1F006C7F1E887 ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
15:20:36.0748 0x1028 flpydisk - ok
15:20:36.0842 0x1028 [ 01334F9EA68E6877C4EF05D3EA8ABB05, 82F8AA6AD2B5077898773D4A5814819EAF0E872FFD95894E06FEDAB6EE92CF99 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
15:20:36.0873 0x1028 FltMgr - ok
15:20:37.0139 0x1028 [ 2AFA3A46986AE935DAECEBC7E66314CF, 747FAF9B7F8291B83EE44B91E5708395E749DC87BD42CC3BF2CD41209C298F4D ] FontCache C:\Windows\system32\FntCache.dll
15:20:37.0342 0x1028 FontCache - ok
15:20:37.0436 0x1028 [ C7FBDD1ED42F82BFA35167A5C9803EA3, 372FF71070D5ECE17342466A690737A0622E93C98DBED8172C49B0854F0012B7 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
15:20:37.0452 0x1028 FontCache3.0.0.0 - ok
15:20:37.0483 0x1028 [ B972A66758577E0BFD1DE0F91AAA27B5, E934034F3F740A83D4E7ABCD2C581845AC2945B0BCCAACF65CC3F99A1DBDE455 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
15:20:37.0483 0x1028 Fs_Rec - ok
15:20:37.0514 0x1028 [ 4E1CD0A45C50A8882616CAE5BF82F3C5, 1B909AF150F7119A5685999451A85012F4A92F15F38390A281EA507E2D247BAE ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
15:20:37.0530 0x1028 gagp30kx - ok
15:20:37.0639 0x1028 [ CD5D0AEEE35DFD4E986A5AA1500A6E66, DCED5126837292593F1C1B35DF18E3B631D6C0C6D0742B77C7B7742C55A7825F ] gpsvc C:\Windows\System32\gpsvc.dll
15:20:37.0717 0x1028 gpsvc - ok
15:20:38.0077 0x1028 [ 51508F0C2476177E50C31B0BBFBF1BDB, 3F62A05181D54711180C8727AC66D624AFA7FC816A4ACC4DC0CFCF2D2DBE7F87 ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
15:20:38.0108 0x1028 gupdate - ok
15:20:38.0155 0x1028 [ 51508F0C2476177E50C31B0BBFBF1BDB, 3F62A05181D54711180C8727AC66D624AFA7FC816A4ACC4DC0CFCF2D2DBE7F87 ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
15:20:38.0155 0x1028 gupdatem - ok
15:20:38.0233 0x1028 [ CB04C744BE0A61B1D648FAED182C3B59, 61DC0FF94325DAFCCB7B3980A48727EFBF1283FCF753EC16EF04C730525994C0 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
15:20:38.0264 0x1028 HdAudAddService - ok
15:20:38.0514 0x1028 [ 062452B7FFD68C8C042A6261FE8DFF4A, DD9873502456D3C058C6177AC223B28C71370E624FA0814C17EA3D93201F2B56 ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
15:20:38.0639 0x1028 HDAudBus - ok
15:20:38.0655 0x1028 [ 1338520E78D90154ED6BE8F84DE5FCEB, 8531F1C5856983EBDA4C2B70162645ECE72FFFBA9FE7A28BCEDDF2169B7ECF9D ] HidBth C:\Windows\system32\drivers\hidbth.sys
15:20:38.0670 0x1028 HidBth - ok
15:20:38.0702 0x1028 [ FF3160C3A2445128C5A6D9B076DA519E, DC1A70C80CD55F33B3AD5A21E86AF7C3086D8CC2DC6148C058E74A871E0BAD4A ] HidIr C:\Windows\system32\drivers\hidir.sys
15:20:38.0717 0x1028 HidIr - ok
15:20:38.0827 0x1028 [ 84067081F3318162797385E11A8F0582, 11E32E3800CFCA37354388243F88D0239D622891BAC5483518A2BE5D1CA19015 ] hidserv C:\Windows\System32\hidserv.dll
15:20:38.0842 0x1028 hidserv - ok
15:20:38.0920 0x1028 [ CCA4B519B17E23A00B826C55716809CC, 91AD0758A6185B0FBBE383BDB1B457FFB850477AFF8DE040DE9527A97D28EF62 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
15:20:38.0936 0x1028 HidUsb - ok
15:20:38.0998 0x1028 [ D8AD255B37DA92434C26E4876DB7D418, C901EADDD93FC90C8F29F4B6DE808F8E4F486C877FC0AA27DA4ACDE17E28899D ] hkmsvc C:\Windows\system32\kmsvc.dll
15:20:39.0030 0x1028 hkmsvc - ok
15:20:39.0077 0x1028 [ DF353B401001246853763C4B7AAA6F50, 05C043493BDD99DEFBB0F5C3D8C475B06C2BF5629565ACF6F3B754002519B836 ] HpCISSs C:\Windows\system32\drivers\hpcisss.sys
15:20:39.0092 0x1028 HpCISSs - ok
15:20:39.0295 0x1028 [ F870AA3E254628EBEAFE754108D664DE, B0444E7D246AA1982094030ACB991690F6A7DD3FB07B1BB6A1BC0F3AA9718A70 ] HTTP C:\Windows\system32\drivers\HTTP.sys
15:20:39.0358 0x1028 HTTP - ok
15:20:39.0483 0x1028 [ 4745A8B2BE115B054F31A86B0E64BB01, 58A44A1F10FB40BC578BCA2A1C9186B9AA0F22667A2C027619EE678BB90054AA ] HWiNFO32 C:\Windows\system32\drivers\HWiNFO32.SYS
15:20:39.0498 0x1028 HWiNFO32 - ok
15:20:39.0514 0x1028 [ 324C2152FF2C61ABAE92D09F3CCA4D63, 2D09964C8003277F7DB1FFAA0DAEF15B205F3C4100FF601950BC9E544DC0B91F ] i2omp C:\Windows\system32\drivers\i2omp.sys
15:20:39.0530 0x1028 i2omp - ok
15:20:39.0592 0x1028 [ 22D56C8184586B7A1F6FA60BE5F5A2BD, D96A2962848C1F59B143BFEC22EC48BD1C5A75D0EBCFD7FB965E66B85FF7D8CA ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
15:20:39.0608 0x1028 i8042prt - ok
15:20:39.0764 0x1028 [ 2358C53F30CB9DCD1D3843C4E2F299B2, C3E5F2D60133B10DEA52AF11E192DFDC4160611F5F0A86ED66138DB91532CA4A ] iaStor C:\Windows\system32\drivers\iastor.sys
15:20:39.0827 0x1028 iaStor - ok
15:20:39.0920 0x1028 [ C957BF4B5D80B46C5017BF0101E6C906, 6B9186335E50E7E0DBAF574A224E524EC526B57AA02F509E4A8D0F905C9CE880 ] iaStorV C:\Windows\system32\drivers\iastorv.sys
15:20:39.0936 0x1028 iaStorV - ok
15:20:40.0280 0x1028 [ DD386C45D2B5863740166783448A2E7A, 10B912BA70306644BE73A53AF4DCDFF63880C4C5860FF6DBA92B0914EB566718 ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
15:20:40.0311 0x1028 idsvc - ok
15:20:41.0608 0x1028 [ A9221D13D8F1F772010EE293BA9BAEB7, 9CA897E102D66D0E7F57F2F91B5365064A184870463B8702AE18F663A8EC30A8 ] igfx C:\Windows\system32\DRIVERS\igdkmd32.sys
15:20:41.0733 0x1028 igfx - ok
15:20:41.0748 0x1028 [ 2D077BF86E843F901D8DB709C95B49A5, 78FF558A881F307858F5C7C74A748B8B2562AF3CAC7EA8639945609001D790CE ] iirsp C:\Windows\system32\drivers\iirsp.sys
15:20:41.0764 0x1028 iirsp - ok
15:20:41.0967 0x1028 [ 4687EE0C0DD2CE5F7AAA9C2E33C1DC78, FA8EBED2778D9F7560ADC1B563954EEF98AAE651C0553F2803372B37B122AEB3 ] IKEEXT C:\Windows\System32\ikeext.dll
15:20:42.0030 0x1028 IKEEXT - ok
15:20:42.0248 0x1028 [ 34B8B4A442046E3D5FDD0B17926CF3F1, 28FCE9A09D8016D56EBC04192FD01FD9CD212E5AB7D91BB74823C5B777325578 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHDA.sys
15:20:42.0327 0x1028 IntcAzAudAddService - ok
15:20:42.0389 0x1028 [ 83AA759F3189E6370C30DE5DC5590718, 7406FE41EA8FB80052517318CB72E2641E92E579FAFAF5E8DDDFF0BF8DAE773A ] intelide C:\Windows\system32\drivers\intelide.sys
15:20:42.0420 0x1028 intelide - ok
15:20:42.0452 0x1028 [ 224191001E78C89DFA78924C3EA595FF, E4EC9CAAEEEAEB30E13F4A8023AF687F29514667380DDFD638BBFFF1D5FC2563 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
15:20:42.0452 0x1028 intelppm - ok
15:20:42.0483 0x1028 [ 9AC218C6E6105477484C6FDBE7D409A4, FF30D09CD2A0F5BBEC309E953370F194B6F26BF4227E627B594AAA48B0F5D3C2 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
15:20:42.0483 0x1028 IPBusEnum - ok
15:20:42.0514 0x1028 [ 62C265C38769B864CB25B4BCF62DF6C3, CAF6BCE967104233E216464E4729B0275C3BD426D812F404AB0EE83A7F2063D8 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
15:20:42.0514 0x1028 IpFilterDriver - ok
15:20:42.0670 0x1028 [ 1998BD97F950680BB55F55A7244679C2, A4E8BB4C6B2AF4800BD5E0BA8725FD0927F8FB6751AEBF6DD16B59C414CCB9D8 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
15:20:42.0670 0x1028 iphlpsvc - ok
15:20:42.0686 0x1028 IpInIp - ok
15:20:42.0733 0x1028 [ 40F34F8ABA2A015D780E4B09138B6C17, 22F86888C6B4F76836E863A90730D8F0DBD518305D87A399A159387E79E9D2F7 ] IPMIDRV C:\Windows\system32\drivers\ipmidrv.sys
15:20:42.0748 0x1028 IPMIDRV - ok
15:20:42.0764 0x1028 [ 8793643A67B42CEC66490B2A0CF92D68, 8B1ED1314E4C6623824DD6B9C15A0F7F996F4D243BF0B305421251BE40850907 ] IPNAT C:\Windows\system32\DRIVERS\ipnat.sys
15:20:42.0764 0x1028 IPNAT - ok
15:20:42.0795 0x1028 [ 109C0DFB82C3632FBD11949B73AEEAC9, 73B01426100256B7110DF0B74483AF1B62FC209612EEC29A7BF6DC31A7FBEFB6 ] IRENUM C:\Windows\system32\drivers\irenum.sys
15:20:42.0811 0x1028 IRENUM - ok
15:20:42.0827 0x1028 [ 350FCA7E73CF65BCEF43FAE1E4E91293, 68403FE3F4DC40919CD26A2CC42BE4386AE6874F47DD382348FFD79080721A13 ] isapnp C:\Windows\system32\drivers\isapnp.sys
15:20:42.0827 0x1028 isapnp - ok
15:20:42.0858 0x1028 [ 232FA340531D940AAC623B121A595034, 90C93F04D8A0094EEBD118F10223605B8169DA5F24C466F503CED5C014BD17B1 ] iScsiPrt C:\Windows\system32\DRIVERS\msiscsi.sys
15:20:42.0873 0x1028 iScsiPrt - ok
15:20:42.0905 0x1028 [ BCED60D16156E428F8DF8CF27B0DF150, 4934E9AB8A8A548548F0C63517F2BF4DE84B05E5C9C7C2AA6C1517B8F9C340D4 ] iteatapi C:\Windows\system32\drivers\iteatapi.sys
15:20:42.0920 0x1028 iteatapi - ok
15:20:42.0936 0x1028 [ 06FA654504A498C30ADCA8BEC4E87E7E, 651BC35A0A3D504573BBAB40DE81929BB18C9FC0CD7944FEAE0E99CD7658EA88 ] iteraid C:\Windows\system32\drivers\iteraid.sys
15:20:42.0936 0x1028 iteraid - ok
15:20:42.0983 0x1028 [ C1632FE31D1824A43DEA29725312E3FA, 434477DE1416D940B60F31D6FEEA511C0EF0DA4B4A1F8F9673A07C312D1360F6 ] JRAID C:\Windows\system32\drivers\jraid.sys
15:20:42.0983 0x1028 JRAID - ok
15:20:42.0998 0x1028 [ 37605E0A8CF00CBBA538E753E4344C6E, B9A9FFDCE45B0830E277CF322C28ACB49372C16144B0F676B283BE5DAE9A7F30 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
15:20:43.0014 0x1028 kbdclass - ok
15:20:43.0030 0x1028 [ EDE59EC70E25C24581ADD1FBEC7325F7, 41B37778E9A12675FC0DF74606AAF18C652EB88513B3C4889C5C512E14587CEE ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
15:20:43.0030 0x1028 kbdhid - ok
15:20:43.0061 0x1028 [ A3E186B4B935905B829219502557314E, 7F58EAC6C12208D792C77014AC9D37AD1A7B2E73863C914F5DA831A72E1D52BB ] KeyIso C:\Windows\system32\lsass.exe
15:20:43.0061 0x1028 KeyIso - ok
15:20:43.0092 0x1028 [ 5035EDF1F2E72F78BB1EC5BD9B97463F, 8AFAD580A96F002FFB22761B65D4B414917895C45B11B53089BB3E0331995EF7 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
15:20:43.0139 0x1028 KSecDD - ok
15:20:43.0202 0x1028 [ 8078F8F8F7A79E2E6B494523A828C585, BB399993166853F0C01B7508649ECD7E7473238267BA8333D0441128FE656347 ] KtmRm C:\Windows\system32\msdtckrm.dll
15:20:43.0217 0x1028 KtmRm - ok
15:20:43.0280 0x1028 [ 1BF5EEBFD518DD7298434D8C862F825D, F41C79410345C40B346EB5EDEA397ECD29ECB9B921AC3E19F9453E52A7B9288A ] LanmanServer C:\Windows\System32\srvsvc.dll
15:20:43.0295 0x1028 LanmanServer - ok
15:20:43.0358 0x1028 [ 1DB69705B695B987082C8BAEC0C6B34F, D395B272F6B69D4A9FC3CDEFD812EF0DBFECF3C1B1C787C7CC1E1A1B091B8DB3 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
15:20:43.0373 0x1028 LanmanWorkstation - ok
15:20:43.0420 0x1028 [ D1C5883087A0C3F1344D9D55A44901F6, 608D67357AFDDD538D2C12C93EB0793ECA4EB3AF2BAB779E881C41F50E4AB911 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
15:20:43.0420 0x1028 lltdio - ok
15:20:43.0483 0x1028 [ 2D5A428872F1442631D0959A34ABFF63, E532C6ECFFB936EFF744CA57BDC6394C89E797B6B0822D04F1F3F35D9BDDD4F0 ] lltdsvc C:\Windows\System32\lltdsvc.dll
15:20:43.0498 0x1028 lltdsvc - ok
15:20:43.0545 0x1028 [ 35D40113E4A5B961B6CE5C5857702518, 453097AEF46ED48107395D9A1696AAC259FD6CEA8A655D38C5E246FDDAB81664 ] lmhosts C:\Windows\System32\lmhsvc.dll
15:20:43.0561 0x1028 lmhosts - ok
15:20:43.0577 0x1028 [ A2262FB9F28935E862B4DB46438C80D2, 792684A68726BC007ACABB584682FDF4F059AE60888FB5B47ED68A97EA0BB5E6 ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
15:20:43.0592 0x1028 LSI_FC - ok
15:20:43.0623 0x1028 [ 30D73327D390F72A62F32C103DAF1D6D, 7BB5BFB0DCF33AF9907539B52DF7BA1943C1E75A17715B58DBC702ACA6D406EA ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
15:20:43.0639 0x1028 LSI_SAS - ok
15:20:43.0639 0x1028 [ E1E36FEFD45849A95F1AB81DE0159FE3, DA02B23A881D156A02D3874B41E6D042F84AD558B434280A6A6AC6B619668647 ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
15:20:43.0655 0x1028 LSI_SCSI - ok
15:20:43.0686 0x1028 [ 8F5C7426567798E62A3B3614965D62CC, 659810257D942C5F4168E1247868CDA990F2324AC9ACAA9A6211F64B7AC9EC6E ] luafv C:\Windows\system32\drivers\luafv.sys
15:20:43.0686 0x1028 luafv - ok
15:20:43.0748 0x1028 [ A3F4391DFDF2F9E9FE4EAD193265A5AD, A60A1A345622F4758181FB0B6EE784B0B718105FEE7B0F6FEDE5AD59FE448EE1 ] MBAMProtector C:\Windows\system32\drivers\mbam.sys
15:20:43.0748 0x1028 MBAMProtector - ok
15:20:44.0170 0x1028 [ 0BB29DE40C9D9529793DCDB59A43CF5B, 251001A407D32EF22F64915EEFFAAEC229073C4549BF7D9D1D4209B7D15B4681 ] MBAMScheduler C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe
15:20:44.0217 0x1028 MBAMScheduler - ok
15:20:44.0327 0x1028 [ 5F82D8188B370B0CF185D4AE2B9B4A0E, 549B53DD989A069E1C38347C4CEF5283DF9B428CE102799B06A20D3D8F23825F ] MBAMService C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe
15:20:44.0373 0x1028 MBAMService - ok
15:20:44.0467 0x1028 [ 8E2E9CCD873ABF180F48BCAEEEBE347D, 35DBBB8E63B480151EA5701D9DB7C90642FA2391D044DB400D3644F3E21BB0C1 ] MBAMSwissArmy C:\Windows\system32\drivers\MBAMSwissArmy.sys
15:20:44.0498 0x1028 MBAMSwissArmy - ok
15:20:44.0498 0x1028 [ 6D2DB74A8CF2DDFE372FFF9C73E8F0EF, D18E800D46932795FD0169B5F9A2AAED5684977D0D78B2D1178C9906491CEC7A ] MBAMWebAccessControl C:\Windows\system32\drivers\mwac.sys
15:20:44.0498 0x1028 MBAMWebAccessControl - ok
15:20:44.0545 0x1028 [ AEF9BABB8A506BC4CE0451A64AADED46, D5608A703EA7E97F11ED4D029B4B820440B0C9317DB7D7DC0152253CD723DC07 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
15:20:44.0561 0x1028 Mcx2Svc - ok
15:20:44.0592 0x1028 [ D153B14FC6598EAE8422A2037553ADCE, D5408B07B6EBA0146A605F11106497DC3DF8EC72E0DCC44BE1366A2A58ABE478 ] megasas C:\Windows\system32\drivers\megasas.sys
15:20:44.0592 0x1028 megasas - ok
15:20:44.0623 0x1028 [ 1076FFCFFAAE8385FD62DFCB25AC4708, 8C5C106FCB018E019DEBA8E1A6AA170CD7A93293F27994F724EBC486238DA0AA ] MMCSS C:\Windows\system32\mmcss.dll
15:20:44.0639 0x1028 MMCSS - ok
15:20:44.0686 0x1028 [ E13B5EA0F51BA5B1512EC671393D09BA, 5B380D1B435D809CA201FD5ED075D42F3C6BA1A4EEDBC4040F7E3329F05A334A ] Modem C:\Windows\system32\drivers\modem.sys
15:20:44.0686 0x1028 Modem - ok
15:20:44.0733 0x1028 [ 0A9BB33B56E294F686ABB7C1E4E2D8A8, 1E8031D51E074FDFB53E98E26DABF313B901C028D01196BFD402EED5D0A89595 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
15:20:44.0733 0x1028 monitor - ok
15:20:44.0764 0x1028 [ 5BF6A1326A335C5298477754A506D263, CC7F58E5955A448F6CE28D6D8EB98C7479E11F931B5C733CFE71A29B2E95923D ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
15:20:44.0764 0x1028 mouclass - ok
15:20:44.0780 0x1028 [ 93B8D4869E12CFBE663915502900876F, 7464DE60FAAD8793D855F1F86C3C865B3A3EE41C19A3E926D1BE4426E67F5EC2 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
15:20:44.0780 0x1028 mouhid - ok
15:20:44.0811 0x1028 [ BDAFC88AA6B92F7842416EA6A48E1600, 2CA8A7BB260016D6B7953980A94C45A3C5D41F7DC7E73EEFB1C18EA144749503 ] MountMgr C:\Windows\system32\drivers\mountmgr.sys
15:20:44.0811 0x1028 MountMgr - ok
15:20:44.0827 0x1028 [ 583A41F26278D9E0EA548163D6139397, 1F09D2FEEE1A8D4F1D9E53596158154099FD436A408F7E72E40F50778A3838A1 ] mpio C:\Windows\system32\drivers\mpio.sys
15:20:44.0827 0x1028 mpio - ok
15:20:44.0842 0x1028 [ 22241FEBA9B2DEFA669C8CB0A8DD7D2E, 62055C0DCEB69873B8961AB17DBD002F44319A44CB05EC3A61421A0C6D4736CD ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
15:20:44.0842 0x1028 mpsdrv - ok
15:20:44.0920 0x1028 [ 5DE62C6E9108F14F6794060A9BDECAEC, 655E6645CC4A1EDBE5F51F5F80C7B504DD956851E788A6E4E4E08CDCDCE160D9 ] MpsSvc C:\Windows\system32\mpssvc.dll
15:20:44.0952 0x1028 MpsSvc - ok
15:20:44.0998 0x1028 [ 4FBBB70D30FD20EC51F80061703B001E, 72907A0CA5CFF82F40C02A65CD8EFD51D7CFC33BE67DE572D1ACF4FD3B248F0A ] Mraid35x C:\Windows\system32\drivers\mraid35x.sys
15:20:45.0014 0x1028 Mraid35x - ok
15:20:45.0077 0x1028 [ B0584CA7DEF55929FDB5169BD28B2484, AF6A7E404FEB29F7F3428D0AF6682195E5E8ED106996A04E6947DBD575696546 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
15:20:45.0077 0x1028 MRxDAV - ok
15:20:45.0123 0x1028 [ 1E94971C4B446AB2290DEB71D01CF0C2, 4701AA1B419AEF735CB2DA34532B0F1844433272C36D79F4EB55807E39B923D1 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
15:20:45.0139 0x1028 mrxsmb - ok
15:20:45.0170 0x1028 [ 4FCCB34D793B116423209C0F8B7A3B03, 7A483AEB691ADBE82779F12F0BB1CCCBFFD7E92902EC1ADC99AB7D129F887143 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
15:20:45.0186 0x1028 mrxsmb10 - ok
15:20:45.0233 0x1028 [ C3CB1B40AD4A0124D617A1199B0B9D7C, B975A39DE6D324C6274B6E3B883F36082A958F028335CEB3A37F44481EB284B3 ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
15:20:45.0233 0x1028 mrxsmb20 - ok
15:20:45.0264 0x1028 [ 742AED7939E734C36B7E8D6228CE26B7, 6F727144BBD42C9C5555087CA51DE8D501B5CBEFB9967866CC578733E3C5E681 ] msahci C:\Windows\system32\drivers\msahci.sys
15:20:45.0264 0x1028 msahci - ok
15:20:45.0295 0x1028 [ 3FC82A2AE4CC149165A94699183D3028, 8575BE62A209672A5D8C68D75BBBB4FF06220CA73A939B0793442DAD2272598C ] msdsm C:\Windows\system32\drivers\msdsm.sys
15:20:45.0295 0x1028 msdsm - ok
15:20:45.0327 0x1028 [ FD7520CC3A80C5FC8C48852BB24C6DED, C3F3D7A07FAB9AF38A2A00BF0DF6EEE18CA8FE26277BEC9D8ADB793F2CD5EC1F ] MSDTC C:\Windows\System32\msdtc.exe
15:20:45.0342 0x1028 MSDTC - ok
15:20:45.0373 0x1028 [ A9927F4A46B816C92F461ACB90CF8515, 753284F726F9B4D3E7322C75532244CA43714F00717C2019391FB36DEE0738C0 ] Msfs C:\Windows\system32\drivers\Msfs.sys
15:20:45.0373 0x1028 Msfs - ok
15:20:45.0405 0x1028 [ 0F400E306F385C56317357D6DEA56F62, C48FA8193787359902D20D869F5F602CD66D3C5D061A58DDB72F51EED433C4BC ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
15:20:45.0405 0x1028 msisadrv - ok
15:20:45.0452 0x1028 [ 85466C0757A23D9A9AECDC0755203CB2, 79141B8DF9D7470466872AF03A85C3D3976512BFDBDB8B92A22225DC8EFD70A6 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
15:20:45.0452 0x1028 MSiSCSI - ok
15:20:45.0452 0x1028 msiserver - ok
15:20:45.0483 0x1028 [ D8C63D34D9C9E56C059E24EC7185CC07, D0CBFB8D57E6D908679DC0488ED659CA35B92626DEA890873E165F051A1AD2AE ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
15:20:45.0498 0x1028 MSKSSRV - ok
15:20:45.0514 0x1028 [ 1D373C90D62DDB641D50E55B9E78D65E, 1D4897A96EA54D6FAC7916D69B4E88CAE1397C38CC8FAE08554772808476357B ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
15:20:45.0514 0x1028 MSPCLOCK - ok
15:20:45.0530 0x1028 [ B572DA05BF4E098D4BBA3A4734FB505B, B7923F204CEADD0F62C2FE4B7CF8C56DAB70F88093B15C5692D0E61490CF4BAA ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
15:20:45.0530 0x1028 MSPQM - ok
15:20:45.0561 0x1028 [ B49456D70555DE905C311BCDA6EC6ADB, 8E40586B3A1FAE9996459E0261726C9DD6A8D5F575604868C45604613385C92F ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
15:20:45.0577 0x1028 MsRPC - ok
15:20:45.0592 0x1028 [ E384487CB84BE41D09711C30CA79646C, 520391DEE14D4D6C1EA99C7D31DD95D56B44D54CA3CD8E5C9855E9C0A04F026C ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
15:20:45.0608 0x1028 mssmbios - ok
15:20:45.0623 0x1028 [ 7199C1EEC1E4993CAF96B8C0A26BD58A, DD02DF8ED7AF5BB88BD2A91F38CE4C52432CB8044BDCBC41C320CD22B10B8A3B ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
15:20:45.0623 0x1028 MSTEE - ok
15:20:45.0639 0x1028 [ 6A57B5733D4CB702C8EA4542E836B96C, 080FB0B01E949D24CDD6876125B3A72DA9F88845D8B9A1A425BCA99E7ACF6821 ] Mup C:\Windows\system32\Drivers\mup.sys
15:20:45.0639 0x1028 Mup - ok
15:20:45.0733 0x1028 [ E4EAF0C5C1B41B5C83386CF212CA9584, 5946C3DCE65A0DB164169A1775DFCA544AF4E1895ADF6916BB1653F373F8D9AF ] napagent C:\Windows\system32\qagentRT.dll
15:20:45.0748 0x1028 napagent - ok
15:20:45.0780 0x1028 [ 85C44FDFF9CF7E72A40DCB7EC06A4416, DC37C99C458CA69B33BFD3894187089E947F4F9C01EC2ED024FA8614989E0956 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
15:20:45.0780 0x1028 NativeWifiP - ok
15:20:45.0905 0x1028 [ 1357274D1883F68300AEADD15D7BBB42, EE6352CBF0D9D633816F338159CDA27F1A805C3DDC3402D8605B50D8F3CD3300 ] NDIS C:\Windows\system32\drivers\ndis.sys
15:20:45.0936 0x1028 NDIS - ok
15:20:45.0967 0x1028 [ 0E186E90404980569FB449BA7519AE61, DE41791D9D3074007D6DD1D3933E7A2A13E3789D0AD4F029105B58279622FC1B ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
15:20:45.0967 0x1028 NdisTapi - ok
15:20:45.0983 0x1028 [ D6973AA34C4D5D76C0430B181C3CD389, 7C303F3D6BFF8B82E39998135B444837091AB1F9EB8F28D013E5EF45DB237EFC ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
15:20:45.0983 0x1028 Ndisuio - ok
15:20:46.0014 0x1028 [ 818F648618AE34F729FDB47EC68345C3, 5FC8F9237BD7FCE3C62D5BDDD49DC104BE2BECDC2FA8CDC1DB8F1891CBAA9140 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
15:20:46.0014 0x1028 NdisWan - ok
15:20:46.0030 0x1028 [ 71DAB552B41936358F3B541AE5997FB3, 30A8B3E33CBF04FC047254E404C0321F9028F2640036AA8AC1EA0A5E64551684 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
15:20:46.0030 0x1028 NDProxy - ok
15:20:46.0061 0x1028 [ BCD093A5A6777CF626434568DC7DBA78, 2A283DD93230361204EA0897864EAF0224CB8C02E025AE2E4237B07A598B3EBD ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
15:20:46.0061 0x1028 NetBIOS - ok
15:20:46.0108 0x1028 [ ECD64230A59CBD93C85F1CD1CAB9F3F6, 83650D756C1F2768A2AAAFC7924F2A4316ABAEB1708F4B05803CDDD699B5AB6F ] netbt C:\Windows\system32\DRIVERS\netbt.sys
15:20:46.0123 0x1028 netbt - ok
15:20:46.0139 0x1028 [ A3E186B4B935905B829219502557314E, 7F58EAC6C12208D792C77014AC9D37AD1A7B2E73863C914F5DA831A72E1D52BB ] Netlogon C:\Windows\system32\lsass.exe
15:20:46.0155 0x1028 Netlogon - ok
15:20:46.0217 0x1028 [ C8052711DAECC48B982434C5116CA401, 417DEB86D157DD3F0B4678410FE27FDD3E8FA04AB03AF398F6C02BF207070B35 ] Netman C:\Windows\System32\netman.dll
15:20:46.0233 0x1028 Netman - ok
15:20:46.0264 0x1028 [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
15:20:46.0264 0x1028 NetMsmqActivator - ok
15:20:46.0280 0x1028 [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetPipeActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
15:20:46.0280 0x1028 NetPipeActivator - ok
15:20:46.0311 0x1028 [ 2EF3BBE22E5A5ACD1428EE387A0D0172, 55DB91EDD0339D2434C06445F8A716A48EA90925B0FF7EBF45BB79D4B54B80BF ] netprofm C:\Windows\System32\netprofm.dll
15:20:46.0342 0x1028 netprofm - ok
15:20:46.0342 0x1028 [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetTcpActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
15:20:46.0358 0x1028 NetTcpActivator - ok
15:20:46.0358 0x1028 [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
15:20:46.0358 0x1028 NetTcpPortSharing - ok
15:20:46.0389 0x1028 [ 2E7FB731D4790A1BC6270ACCEFACB36E, EE9A00B694E8A3A5842CDC56C7BA1364317AC8134E046A0059661D057094B1A3 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
15:20:46.0405 0x1028 nfrd960 - ok
15:20:46.0436 0x1028 [ C96411DD46AABC0D6F3CF06D0E0E7E14, 0D36F322AF1B923D96735BFFCAC3FDB0B282E59220BADAB8B49AC178A6765380 ] NlaSvc C:\Windows\System32\nlasvc.dll
15:20:46.0467 0x1028 NlaSvc - ok
15:20:46.0592 0x1028 [ 7B273501C59D52978B761F82BEBADB06, 696BFE74E63BB0F97C6884EADABC67B5A2FAA9D9057BED8B7E1E336064B0F6E7 ] NMIndexingService C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
15:20:46.0608 0x1028 NMIndexingService - ok
15:20:46.0655 0x1028 [ D36F239D7CCE1931598E8FB90A0DBC26, DF9397411D0CE5A87E3346D4E6E25BEC537A21BCE196CC55FD999CD08FC4A637 ] Npfs C:\Windows\system32\drivers\Npfs.sys
15:20:46.0655 0x1028 Npfs - ok
15:20:46.0702 0x1028 [ 8BB86F0C7EEA2BDED6FE095D0B4CA9BD, 15CA178518EB3D457AA4C109D97A8490821590842AE4E9841703B5A55870C8F6 ] nsi C:\Windows\system32\nsisvc.dll
15:20:46.0717 0x1028 nsi - ok
15:20:46.0717 0x1028 [ 609773E344A97410CE4EBF74A8914FCF, 90B9CBD2B62854DD503DE4A910CB987D402368EB99882FE20FFB6DEACD70F2BD ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
15:20:46.0733 0x1028 nsiproxy - ok
15:20:46.0795 0x1028 [ 2C1121F2B87E9A6B12485DF53CD848C7, E580428F3BA7B201C6C7CFADF1F44A6ECA4F589EDB034DA14260136236195936 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
15:20:46.0827 0x1028 Ntfs - ok
15:20:46.0858 0x1028 [ E875C093AEC0C978A90F30C9E0DFBB72, D3A480CD7EF374EFBC1BB831B33B81534774DDDBB0FB338BEE1D444949FD8DE7 ] ntrigdigi C:\Windows\system32\drivers\ntrigdigi.sys
15:20:46.0873 0x1028 ntrigdigi - ok
15:20:46.0889 0x1028 [ C5DBBCDA07D780BDA9B685DF333BB41E, 3652893DFF05469A273C3073D8D0A9D6D6BBDEC7855FEA8EAB768F95BA674108 ] Null C:\Windows\system32\drivers\Null.sys
15:20:46.0889 0x1028 Null - ok
15:20:47.0436 0x1028 [ 68BA207655B6CD6BBDCB8917C8F241F5, 5C5E9B624E4D91D5B56306B8C8A0A0663FF50CB811A77D4F5DA6E031AF3F9565 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
15:20:47.0717 0x1028 nvlddmkm - ok
15:20:47.0764 0x1028 [ E69E946F80C1C31C53003BFBF50CBB7C, A0A4BC57822B2CBC75602A969E28DCEDE04B41CC084E1EF1532B1BCDAEAA43BB ] nvraid C:\Windows\system32\drivers\nvraid.sys
15:20:47.0764 0x1028 nvraid - ok
15:20:47.0827 0x1028 [ ED399014A8029DE02BA5AE01DA8CC9EE, 82E5BE51B066FD727D58644A010BF472B8ABA83B37784CDCD6A87EE82780C7A3 ] nvrd32 C:\Windows\system32\drivers\nvrd32.sys
15:20:47.0827 0x1028 nvrd32 - ok
15:20:47.0858 0x1028 [ 9E0BA19A28C498A6D323D065DB76DFFC, EA9E33ED2820ED39932FAE114A9CF1D87780ED6605D0260A6F22F920B48F34E9 ] nvstor C:\Windows\system32\drivers\nvstor.sys
15:20:47.0858 0x1028 nvstor - ok
15:20:47.0873 0x1028 [ 703E3A7093B0FAC0EEBADBB8E931ECAF, 7F4C0B39CF2987736A1A172C79CB2A5A94E910E4594A740C8887BF6DA261B622 ] nvstor32 C:\Windows\system32\drivers\nvstor32.sys
15:20:47.0889 0x1028 nvstor32 - ok
15:20:47.0905 0x1028 [ 07C186427EB8FCC3D8D7927187F260F7, 9AFDE1CB7B7232BD019804BFC691580B9CC2E51A5BC0E5584B23907D532600D8 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
15:20:47.0920 0x1028 nv_agp - ok
15:20:47.0920 0x1028 NwlnkFlt - ok
15:20:47.0920 0x1028 NwlnkFwd - ok
15:20:47.0952 0x1028 [ 6F310E890D46E246E0E261A63D9B36B4, 7050B0C43CC0DF2DDAD3EB8D2FF9EEE425A627C68654CBB154D55A4B1A47AA08 ] ohci1394 C:\Windows\system32\DRIVERS\ohci1394.sys
15:20:47.0952 0x1028 ohci1394 - ok
15:20:47.0983 0x1028 [ 7A56CF3E3F12E8AF599963B16F50FB6A, 882C82BAE96D263138D4C0D6C425458B770B7B9C8E9C1D28AC918BF6BE94A5C2 ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
15:20:47.0983 0x1028 ose - ok
15:20:48.0077 0x1028 [ 0C8E8E61AD1EB0B250B846712C917506, 8F23657B90BFFCD7273B93EDA2D3768F35C1C5A313F22AE33452BE3B2A550649 ] p2pimsvc C:\Windows\system32\p2psvc.dll
15:20:48.0108 0x1028 p2pimsvc - ok
15:20:48.0155 0x1028 [ 0C8E8E61AD1EB0B250B846712C917506, 8F23657B90BFFCD7273B93EDA2D3768F35C1C5A313F22AE33452BE3B2A550649 ] p2psvc C:\Windows\system32\p2psvc.dll
15:20:48.0170 0x1028 p2psvc - ok
15:20:48.0233 0x1028 [ 8A79FDF04A73428597E2CAF9D0D67850, DB438FDE5510AB2F350ED1AC4CF0E99D3CC665FE46533A438A8FDA4DAF950F93 ] Parport C:\Windows\system32\DRIVERS\parport.sys
15:20:48.0233 0x1028 Parport - ok
15:20:48.0264 0x1028 [ B9C2B89F08670E159F7181891E449CD9, BD48CE95CF4B75D1FD5FD379B2A8727BC000F2B6748B77636C6BDB0B37B0344A ] partmgr C:\Windows\system32\drivers\partmgr.sys
15:20:48.0264 0x1028 partmgr - ok
15:20:48.0280 0x1028 [ 6C580025C81CAF3AE9E3617C22CAD00E, 64F9061196462085E5DCD3ACB97A0D8FC67CA9A96DDD6E2103AFFF1593AE236A ] Parvdm C:\Windows\system32\DRIVERS\parvdm.sys
15:20:48.0280 0x1028 Parvdm - ok
15:20:48.0295 0x1028 [ C6276AD11F4BB49B58AA1ED88537F14A, 409E956AF994640DF8D062E5E41F87A6EE7EEE0335C191B582722A49322357CE ] PcaSvc C:\Windows\System32\pcasvc.dll
15:20:48.0311 0x1028 PcaSvc - ok
15:20:48.0342 0x1028 [ FD2041E9BA03DB7764B2248F02475079, DECEED110524BF83B4097188BF24BF0DDE1CE838DF7748B0DC807ABE351EB20A ] pccsmcfd C:\Windows\system32\DRIVERS\pccsmcfd.sys
15:20:48.0342 0x1028 pccsmcfd - ok
15:20:48.0373 0x1028 [ 941DC1D19E7E8620F40BBC206981EFDB, 156142A8B587131D2D47074CBFD0A31F69B3C27A8C74C8C4F29DFE7B53BBA802 ] pci C:\Windows\system32\drivers\pci.sys
15:20:48.0373 0x1028 pci - ok
15:20:48.0405 0x1028 [ 3B1901E401473E03EB8C874271E50C26, 3C7931F419E29FDD0155D8D05D97289430A2852FCB3DBAD1B338FE2241458E72 ] pciide C:\Windows\system32\drivers\pciide.sys
15:20:48.0405 0x1028 pciide - ok
15:20:48.0420 0x1028 [ E6F3FB1B86AA519E7698AD05E58B04E5, 2C4B45DDD3B980C9DAA6F039CAEFCD6E84A4D5BB43AFBA73C0C42B5556C1303C ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
15:20:48.0436 0x1028 pcmcia - ok
15:20:48.0452 0x1028 [ 5B6C11DE7E839C05248CED8825470FEF, DB57DFD02C18461B1B383DF759730FFEE9C7FA8577E1679FD4740A590303EE79 ] pcouffin C:\Windows\system32\Drivers\pcouffin.sys
15:20:48.0467 0x1028 pcouffin - ok
15:20:48.0498 0x1028 [ 6349F6ED9C623B44B52EA3C63C831A92, 9EAA3ABD396870123107D6E1B758F56FDA378BD28B28DB8415AA470D24294F92 ] PEAUTH C:\Windows\system32\drivers\peauth.sys
15:20:48.0530 0x1028 PEAUTH - ok
15:20:48.0608 0x1028 [ B1689DF169143F57053F795390C99DB3, 887B8C76B34CABC68067C0F27CC4EEF02457A53634C96FE5B0FE9B99453BDBEF ] pla C:\Windows\system32\pla.dll
15:20:48.0670 0x1028 pla - ok
15:20:48.0702 0x1028 [ C5E7F8A996EC0A82D508FD9064A5569E, 416A93816CDF12DD42DEA796D37E6E2000D3172AAAB20D3EAD3B715DACD4B61F ] PlugPlay C:\Windows\system32\umpnpmgr.dll
15:20:48.0717 0x1028 PlugPlay - ok
15:20:48.0748 0x1028 [ 0C8E8E61AD1EB0B250B846712C917506, 8F23657B90BFFCD7273B93EDA2D3768F35C1C5A313F22AE33452BE3B2A550649 ] PNRPAutoReg C:\Windows\system32\p2psvc.dll
15:20:48.0764 0x1028 PNRPAutoReg - ok
15:20:48.0811 0x1028 [ 0C8E8E61AD1EB0B250B846712C917506, 8F23657B90BFFCD7273B93EDA2D3768F35C1C5A313F22AE33452BE3B2A550649 ] PNRPsvc C:\Windows\system32\p2psvc.dll
15:20:48.0827 0x1028 PNRPsvc - ok
15:20:48.0905 0x1028 [ D0494460421A03CD5225CCA0059AA146, FC30E90522C63F2A66D89381705712D2CDF07B2E029DF40C2DEBB2353E763E90 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
15:20:48.0920 0x1028 PolicyAgent - ok
15:20:48.0952 0x1028 [ ECFFFAEC0C1ECD8DBC77F39070EA1DB1, 6E4B188A4BFDBBCA51347BCCE2873F2D0F858398851B9B5129CB9F36A02E4354 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
15:20:48.0952 0x1028 PptpMiniport - ok
15:20:48.0983 0x1028 [ 0E3CEF5D28B40CF273281D620C50700A, 8ADA99B4563AE2129B95136295EE92A94102B035EBBC83D4C8587ECE8B0DEE60 ] Processor C:\Windows\system32\drivers\processr.sys
15:20:48.0983 0x1028 Processor - ok
15:20:49.0045 0x1028 [ 0D5DAD610D7EA1627581ED06FB2BAA9A, 6E27CF3A1624AE10EECB8B5F38E03D76A6AABE4E75DD66DEDD67E0773935A396 ] ProfSvc C:\Windows\system32\profsvc.dll
15:20:49.0061 0x1028 ProfSvc - ok
15:20:49.0077 0x1028 [ A3E186B4B935905B829219502557314E, 7F58EAC6C12208D792C77014AC9D37AD1A7B2E73863C914F5DA831A72E1D52BB ] ProtectedStorage C:\Windows\system32\lsass.exe
15:20:49.0077 0x1028 ProtectedStorage - ok
15:20:49.0108 0x1028 [ 99514FAA8DF93D34B5589187DB3AA0BA, 4DDE5EC0C721B22E1D7D55ED3514B60EA07435C232A3A931BB49C7F486B52C18 ] PSched C:\Windows\system32\DRIVERS\pacer.sys
15:20:49.0108 0x1028 PSched - ok
15:20:49.0202 0x1028 [ CCDAC889326317792480C0A67156A1EC, 3D3B561B6D4E12DE442C98993C929765F002AF5CFB5A00EFACE6ABE957F7E8AF ] ql2300 C:\Windows\system32\drivers\ql2300.sys
15:20:49.0233 0x1028 ql2300 - ok
15:20:49.0264 0x1028 [ 81A7E5C076E59995D54BC1ED3A16E60B, A2988F065F93C41B3B389BFF3BB3FD69F768C2AF249C2356F315CC92E5C9E128 ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
15:20:49.0264 0x1028 ql40xx - ok
15:20:49.0311 0x1028 [ E9ECAE663F47E6CB43962D18AB18890F, F1A05320CAED9E745AA36A6DA9B64C48AAEDE888B42B249840CEB31448F7F432 ] QWAVE C:\Windows\system32\qwave.dll
15:20:49.0327 0x1028 QWAVE - ok
15:20:49.0342 0x1028 [ 9F5E0E1926014D17486901C88ECA2DB7, 67CDFB99AB546DCEEF20507EAC07DD52FFB51BFDFE9416ABEDDC1201B60D720E ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
15:20:49.0342 0x1028 QWAVEdrv - ok
15:20:49.0389 0x1028 [ 147D7F9C556D259924351FEB0DE606C3, E41EBA5F3098C6CF2BE4C0060A5F4BF161C3677D983B7A0D70ACC12FC3CFEFD7 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
15:20:49.0389 0x1028 RasAcd - ok
15:20:49.0405 0x1028 [ F6A452EB4CEADBB51C9E0EE6B3ECEF0F, 6A410ABCCD2211EFF511CDBF22E4152B57D2996336EBE711DFF71904AF232DB2 ] RasAuto C:\Windows\System32\rasauto.dll
15:20:49.0405 0x1028 RasAuto - ok
15:20:49.0420 0x1028 [ A214ADBAF4CB47DD2728859EF31F26B0, A24F37F55E2C018B1B4FA2C568A01AAAAEA1220833ED24A93378386174A70A32 ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
15:20:49.0436 0x1028 Rasl2tp - ok
15:20:49.0452 0x1028 [ 75D47445D70CA6F9F894B032FBC64FCF, 9112EA5D25F867136858524C7965ACCEDC02675D1E2985B950598D89CCF25E14 ] RasMan C:\Windows\System32\rasmans.dll
15:20:49.0467 0x1028 RasMan - ok
15:20:49.0514 0x1028 [ 509A98DD18AF4375E1FC40BC175F1DEF, CC7C278CA298CE102D871E34C176E73F903D6687D1E8B5AFAB8772C7DE1A60B1 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
15:20:49.0514 0x1028 RasPppoe - ok
15:20:49.0577 0x1028 [ 2005F4A1E05FA09389AC85840F0A9E4D, D8A664073FDE82F9AB324347024CDB7043635C84EB11C24C59AB384C52F0FD94 ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
15:20:49.0577 0x1028 RasSstp - ok
15:20:49.0592 0x1028 [ B14C9D5B9ADD2F84F70570BBBFAA7935, 3D533767A50554B86C769DF4D8841B3EA680B3807E85EA3533BDA9B649548269 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
15:20:49.0592 0x1028 rdbss - ok
15:20:49.0655 0x1028 [ 89E59BE9A564262A3FB6C4F4F1CD9899, 6F948FB0E73495CA60B7B19E758268495EC8A084C475EC59AD7940AA619570BB ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
15:20:49.0655 0x1028 RDPCDD - ok
15:20:49.0686 0x1028 [ E8BD98D46F2ED77132BA927FCCB47D8B, 5187CF8F00AD67EDDF27DF675F3210C0D72E552578A89C58DF6953B1D5BEBCB8 ] rdpdr C:\Windows\system32\drivers\rdpdr.sys
15:20:49.0702 0x1028 rdpdr - ok
15:20:49.0733 0x1028 [ 9D91FE5286F748862ECFFA05F8A0710C, 33F37F1B207151A5564BF051BBF16F35D8C5A0F426CCA078A51F125BF09E487B ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
15:20:49.0733 0x1028 RDPENCDD - ok
15:20:49.0811 0x1028 [ C127EBD5AFAB31524662C48DFCEB773A, 40A6B88FEAFF02D1B5C0CA32F290CF3D9B48B85D248C7532F30CC5C09BAA4D89 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
15:20:49.0811 0x1028 RDPWD - ok
15:20:49.0873 0x1028 [ BCDD6B4804D06B1F7EBF29E53A57ECE9, 8A961CCD0A0265E03D9952C733B593B02B5CF64E308D6B420276D2D6B20F86FC ] RemoteAccess C:\Windows\System32\mprdim.dll
15:20:49.0873 0x1028 RemoteAccess - ok
15:20:49.0920 0x1028 [ 9E6894EA18DAFF37B63E1005F83AE4AB, 5D6DF994D297C875D547C7B111A571AA90D582DAECADE18A53F65AD988819E67 ] RemoteRegistry C:\Windows\system32\regsvc.dll
15:20:49.0920 0x1028 RemoteRegistry - ok
15:20:49.0967 0x1028 [ 5123F83CBC4349D065534EEB6BBDC42B, 92A3F38EA924D83D601BB93E3750F9DBC2DD963FB7ACF2A0E776297E21815225 ] RpcLocator C:\Windows\system32\locator.exe
15:20:49.0967 0x1028 RpcLocator - ok

martinb01
Level 2
Level 2
Příspěvky: 167
Registrován: únor 11
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu-PC hlásí opakovaně málo místa na disku

Příspěvekod martinb01 » 02 bře 2015 15:34

15:20:50.0045 0x1028 [ 3B5B4D53FEC14F7476CA29A20CC31AC9, EC02A412DA5FDE2C759A4A2C5904579E1CE7C4999CE87145812F354FC8F5E183 ] RpcSs C:\Windows\system32\rpcss.dll
15:20:50.0061 0x1028 RpcSs - ok
15:20:50.0092 0x1028 [ 9C508F4074A39E8B4B31D27198146FAD, 84913471E5A6C297B1EDABE45EF3FE7D2C4410EF04370F615109FD9E2690FFDB ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
15:20:50.0108 0x1028 rspndr - ok
15:20:50.0139 0x1028 [ 2D19A7469EA19993D0C12E627F4530BC, B59F0D4ACAA60ED95093FA561D4C5D87F26C9F6C646858772743038D97B2D6AB ] RTL8169 C:\Windows\system32\DRIVERS\Rtlh86.sys
15:20:50.0155 0x1028 RTL8169 - ok
15:20:50.0202 0x1028 [ A3E186B4B935905B829219502557314E, 7F58EAC6C12208D792C77014AC9D37AD1A7B2E73863C914F5DA831A72E1D52BB ] SamSs C:\Windows\system32\lsass.exe
15:20:50.0202 0x1028 SamSs - ok
15:20:50.0233 0x1028 [ 3CE8F073A557E172B330109436984E30, CEC281C6076FAA1E34372CF419C6308E73811316606B8D0D9055B7D8952BDC88 ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
15:20:50.0233 0x1028 sbp2port - ok
15:20:50.0280 0x1028 [ 77B7A11A0C3D78D3386398FBBEA1B632, A3D290AB793BDC2F84C7B963300DFCE81CFE082A0FFF7489E8E5B14714892C00 ] SCardSvr C:\Windows\System32\SCardSvr.dll
15:20:50.0295 0x1028 SCardSvr - ok
15:20:50.0342 0x1028 [ 1A58069DB21D05EB2AB58EE5753EBE8D, EED8111EB613F4C93D1638C74FDB0A6DC6694E1B108DCD0D794B5B5F9B8C6EE4 ] Schedule C:\Windows\system32\schedsvc.dll
15:20:50.0358 0x1028 Schedule - ok
15:20:50.0405 0x1028 [ 312EC3E37A0A1F2006534913E37B4423, 81B8F462336791D162DAFA8092C1F437638DA3022CA24A2458B9FE183FC18C5D ] SCPolicySvc C:\Windows\System32\certprop.dll
15:20:50.0405 0x1028 SCPolicySvc - ok
15:20:50.0452 0x1028 [ 716313D9F6B0529D03F726D5AAF6F191, 44FE994A11631C1D99C73026340BACE39973C65A1281D87A61B481C9B5FAB251 ] SDRSVC C:\Windows\System32\SDRSVC.dll
15:20:50.0452 0x1028 SDRSVC - ok
15:20:50.0514 0x1028 [ 90A3935D05B494A5A39D37E71F09A677, F72733A69BC6E1A2BB91D7632FF3463C12563F60FDCC00A2CDD67FF20D479952 ] secdrv C:\Windows\system32\drivers\secdrv.sys
15:20:50.0514 0x1028 secdrv - ok
15:20:50.0530 0x1028 [ FD5199D4D8A521005E4B5EE7FE00FA9B, 0FB7A1D300C72B1ADC423CC57343C17853E5F8ACFE3EA2C42FAC2FF72E502FBE ] seclogon C:\Windows\system32\seclogon.dll
15:20:50.0530 0x1028 seclogon - ok
15:20:50.0545 0x1028 [ A9BBAB5759771E523F55563D6CBE140F, 415BF6F6A1E4C5F98DABF9C2EEAF8CA49730693046E5F94C7655683717EDAD75 ] SENS C:\Windows\system32\sens.dll
15:20:50.0545 0x1028 SENS - ok
15:20:50.0608 0x1028 [ CE9EC966638EF0B10B864DDEDF62A099, 2DEC5A8C947D87C12B342F15B8A552A0D49B979A2AC32D2C97FC7A3A76C34524 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
15:20:50.0608 0x1028 Serenum - ok
15:20:50.0639 0x1028 [ 6D663022DB3E7058907784AE14B69898, 54263888C64A7F010D3B5E399369B0F3FF3AF0A0DE8ADB502B98277533E4D45F ] Serial C:\Windows\system32\DRIVERS\serial.sys
15:20:50.0639 0x1028 Serial - ok
15:20:50.0670 0x1028 [ 8AF3D28A879BF75DB53A0EE7A4289624, C870BEBB969DCD9170E64584D1CD329A193D9FC812A45EF3574891110CA68B45 ] sermouse C:\Windows\system32\drivers\sermouse.sys
15:20:50.0686 0x1028 sermouse - ok
15:20:50.0780 0x1028 [ E802089FEC30A95FDFD218995308F9B3, A340D22E7E1D8EC7AE324C05D995AD34797B2D899DFD902A822B38109FAC6437 ] ServiceLayer C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
15:20:50.0858 0x1028 ServiceLayer - ok
15:20:50.0936 0x1028 [ D2193326F729B163125610DBF3E17D57, 82C894E24E2C139C884246A693AD37BBF0A4E9375B7F7A288EF1DB22F89434B9 ] SessionEnv C:\Windows\system32\sessenv.dll
15:20:50.0952 0x1028 SessionEnv - ok
15:20:50.0998 0x1028 [ 103B79418DA647736EE95645F305F68A, E4D356FD8C62B616D3584FE84905995A1CEE452288E3A456CC358FF41FEAB1B7 ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
15:20:50.0998 0x1028 sffdisk - ok
15:20:51.0014 0x1028 [ 8FD08A310645FE872EEEC6E08C6BF3EE, 702A148C9DE172E7B5E331F057487255E0729FD42F949BB0FF2D5A01775933CF ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
15:20:51.0014 0x1028 sffp_mmc - ok
15:20:51.0030 0x1028 [ 9CFA05FCFCB7124E69CFC812B72F9614, E9CFCE695E4D1AF146781CFAA295878536E573F06AEA65438878DE29EC9959AD ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
15:20:51.0030 0x1028 sffp_sd - ok
15:20:51.0045 0x1028 [ 46ED8E91793B2E6F848015445A0AC188, 34A97304F23EA153422848F6F1CAF8ADF0944EA781E12F027B6DEAF751A04B5D ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
15:20:51.0045 0x1028 sfloppy - ok
15:20:51.0077 0x1028 [ E1499BD0FF76B1B2FBBF1AF339D91165, 9A8F0403467E75880D3070C4D862489A75134383BAF8E7C45F8C5E7DFB0605A5 ] SharedAccess C:\Windows\System32\ipnathlp.dll
15:20:51.0092 0x1028 SharedAccess - ok
15:20:51.0186 0x1028 [ C7230FBEE14437716701C15BE02C27B8, 8221DE73D77CF71C2857D78829E807D015D9CB8BDEE4BAFD6950BF0C718CC774 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
15:20:51.0202 0x1028 ShellHWDetection - ok
15:20:51.0217 0x1028 [ D2A595D6EEBEEAF4334F8E50EFBC9931, 851B8205C657BF806C4D815DC75356E99B4246016B6E1C1F51BAF8AD1E6D5299 ] sisagp C:\Windows\system32\drivers\sisagp.sys
15:20:51.0217 0x1028 sisagp - ok
15:20:51.0248 0x1028 [ CEDD6F4E7D84E9F98B34B3FE988373AA, E102977E6FAC30B5ABEEC0B412A9F2A10C5C42F4D9C3AD69296BF9E1E88B6141 ] SiSRaid2 C:\Windows\system32\drivers\sisraid2.sys
15:20:51.0248 0x1028 SiSRaid2 - ok
15:20:51.0264 0x1028 [ DF843C528C4F69D12CE41CE462E973A7, A2BEC74FCB8D8B6B9D8DD4746C013DFDF1DD662AEFE9B88CA495E5B83B4A76F9 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
15:20:51.0280 0x1028 SiSRaid4 - ok
15:20:51.0483 0x1028 [ 862BB4CBC05D80C5B45BE430E5EF872F, F4961B22C93E472C8C862421AA231CDDA9E40D3958741A1D666357F22CC3143D ] slsvc C:\Windows\system32\SLsvc.exe
15:20:51.0577 0x1028 slsvc - ok
15:20:51.0608 0x1028 [ 6EDC422215CD78AA8A9CDE6B30ABBD35, D8342BC3152859F4F7512E85ABEC61147DBCAB515458644728874E42F639D6CA ] SLUINotify C:\Windows\system32\SLUINotify.dll
15:20:51.0623 0x1028 SLUINotify - ok
15:20:51.0655 0x1028 [ 7B75299A4D201D6A6533603D6914AB04, 172BE3951F06B1991EF70B71EB91786D1EFC4E381C22BCA3A5F622CD59F3227E ] Smb C:\Windows\system32\DRIVERS\smb.sys
15:20:51.0655 0x1028 Smb - ok
15:20:51.0686 0x1028 [ 2A146A055B4401C16EE62D18B8E2A032, D0930FFA53951C92F56E1ECB41374F4C0AA01ECBF99F474513A21EAD579CFE47 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
15:20:51.0686 0x1028 SNMPTRAP - ok
15:20:51.0748 0x1028 [ 7AEBDEEF071FE28B0EEF2CDD69102BFF, E03BEE733F4C2A5F39946D4955679A290E22758DFCE4222EE69ABF64FC54EDF7 ] spldr C:\Windows\system32\drivers\spldr.sys
15:20:51.0748 0x1028 spldr - ok
15:20:51.0780 0x1028 [ 8554097E5136C3BF9F69FE578A1B35F4, 2578545CFD647FB18F217B33C8CB4F0184A35F548659494056E455020CC15FB0 ] Spooler C:\Windows\System32\spoolsv.exe
15:20:51.0780 0x1028 Spooler - ok
15:20:51.0842 0x1028 [ 8EA0FD60A5B047E0C734D51AACE531C9, 5C3925A810AC113EE519E5014DCEE68D30E7515858D28E6B9CACCCCCA1B28E18 ] sptd C:\Windows\System32\Drivers\sptd.sys
15:20:51.0842 0x1028 Suspicious file ( NoAccess ): C:\Windows\System32\Drivers\sptd.sys. md5: 8EA0FD60A5B047E0C734D51AACE531C9, sha256: 5C3925A810AC113EE519E5014DCEE68D30E7515858D28E6B9CACCCCCA1B28E18
15:20:51.0842 0x1028 sptd - detected LockedFile.Multi.Generic ( 1 )
15:20:54.0264 0x1028 Detect skipped due to KSN trusted
15:20:54.0264 0x1028 sptd - ok
15:20:54.0311 0x1028 [ CCD6E6C387E3EFA3BA5FE0E7883821C1, E1361CBBB2FC75C2698C695CF80DDD09C24F336C202718BC64987722F491EEA2 ] sp_rsdrv2 C:\Windows\system32\drivers\sp_rsdrv2.sys
15:20:54.0327 0x1028 sp_rsdrv2 - ok
15:20:54.0373 0x1028 [ 41987F9FC0E61ADF54F581E15029AD91, A46E718648C2DD3B43FC3798932C966315893A59442A0686CE46C605B9E4641E ] srv C:\Windows\system32\DRIVERS\srv.sys
15:20:54.0389 0x1028 srv - ok
15:20:54.0420 0x1028 [ FF33AFF99564B1AA534F58868CBE41EF, EFBB005DA19E5B320009CBF93E686D8BFA6A50A23B5A5001C7C84C7D85EF7D49 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
15:20:54.0420 0x1028 srv2 - ok
15:20:54.0483 0x1028 [ 7605C0E1D01A08F3ECD743F38B834A44, 83A77E31004BCF83443F30EFC290E04BB1A2F332E8DFD614AB6E25B527C92299 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
15:20:54.0483 0x1028 srvnet - ok
15:20:54.0561 0x1028 [ 03D50B37234967433A5EA5BA72BC0B62, 7B61D6A4BF5D446A9473D058BC207FB6DA7C2FEFB8083F3B66CAC8907DBD8327 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
15:20:54.0561 0x1028 SSDPSRV - ok
15:20:54.0577 0x1028 [ 6F1A32E7B7B30F004D9A20AFADB14944, AA9D874A14CA4779E76701D2B02F4CCA92CD5917435FB4CACA149FCB2D1D4C4C ] SstpSvc C:\Windows\system32\sstpsvc.dll
15:20:54.0577 0x1028 SstpSvc - ok
15:20:54.0623 0x1028 [ 5DE7D67E49B88F5F07F3E53C4B92A352, 6930A598C35646646ED0E91633797EFE139AE6CDD0012335BD1340754A22F997 ] stisvc C:\Windows\System32\wiaservc.dll
15:20:54.0655 0x1028 stisvc - ok
15:20:54.0702 0x1028 [ 7BA58ECF0C0A9A69D44B3DCA62BECF56, 23CC47FA2D6E183D69DB0D3D3F3081A830D94A58FBC0A9A295B3A56C51E9486A ] swenum C:\Windows\system32\DRIVERS\swenum.sys
15:20:54.0702 0x1028 swenum - ok
15:20:54.0764 0x1028 [ F21FD248040681CCA1FB6C9A03AAA93D, 32FE765841A183A1F2C1ACACBBF8CDB11E7D4D4396F9C9F6CFF1B51C9B620ED3 ] swprv C:\Windows\System32\swprv.dll
15:20:54.0780 0x1028 swprv - ok
15:20:54.0827 0x1028 [ 192AA3AC01DF071B541094F251DEED10, 5C6EB56D1C39F3717EB754A1B37C8A618BA4F2107F64048E985D71FA04D1AD05 ] Symc8xx C:\Windows\system32\drivers\symc8xx.sys
15:20:54.0827 0x1028 Symc8xx - ok
15:20:54.0858 0x1028 [ 8C8EB8C76736EBAF3B13B633B2E64125, A6C4845DDED81CCF4947612A4D6E42035136025BCD80812D2FF396927CAADEC5 ] Sym_hi C:\Windows\system32\drivers\sym_hi.sys
15:20:54.0858 0x1028 Sym_hi - ok
15:20:54.0858 0x1028 [ 8072AF52B5FD103BBBA387A1E49F62CB, D336A7D008D145619E79043EBF5D0D455086BA1FEF89612BC2EA11CC363D82B0 ] Sym_u3 C:\Windows\system32\drivers\sym_u3.sys
15:20:54.0873 0x1028 Sym_u3 - ok
15:20:54.0936 0x1028 [ 9A51B04E9886AA4EE90093586B0BA88D, 1666C29FBFA34174B506678C920636519051D03456A6DDCCD6FF708CAE5D9962 ] SysMain C:\Windows\system32\sysmain.dll
15:20:54.0983 0x1028 SysMain - ok
15:20:55.0014 0x1028 [ 2DCA225EAE15F42C0933E998EE0231C3, 67C7913E41854DFA3043426B7D59AA1FBBB9DE01A6E6904E40A696A7C61A5F98 ] TabletInputService C:\Windows\System32\TabSvc.dll
15:20:55.0014 0x1028 TabletInputService - ok
15:20:55.0061 0x1028 [ D7673E4B38CE21EE54C59EEEB65E2483, 330D0AD13F5008D8569CE8E5EA0BBD69F54F59FEB54FD903FA18D2849CEC6AF0 ] TapiSrv C:\Windows\System32\tapisrv.dll
15:20:55.0061 0x1028 TapiSrv - ok
15:20:55.0092 0x1028 [ CB05822CD9CC6C688168E113C603DBE7, 9DB8945BDC702BB13E9DE477F2D3CCA4CE0E9E8CE9B54CE1A25375F2A2C93F0E ] TBS C:\Windows\System32\tbssvc.dll
15:20:55.0092 0x1028 TBS - ok
15:20:55.0186 0x1028 [ C7B0746FCD576D7EEBA6A2530B0B2966, F8ADAED40AA12BF8427482A00CCF8374458FEA95C3C381AEF59EC057A2791550 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
15:20:55.0233 0x1028 Tcpip - ok
15:20:55.0264 0x1028 [ C7B0746FCD576D7EEBA6A2530B0B2966, F8ADAED40AA12BF8427482A00CCF8374458FEA95C3C381AEF59EC057A2791550 ] Tcpip6 C:\Windows\system32\DRIVERS\tcpip.sys
15:20:55.0280 0x1028 Tcpip6 - ok
15:20:55.0327 0x1028 [ 608C345A255D82A6289C2D468EB41FD7, 74ECFDD45DC3EB3AFAEF9C42B546241AA1D6ACB2F6591A76DDB8BB1768545889 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
15:20:55.0327 0x1028 tcpipreg - ok
15:20:55.0342 0x1028 [ 5DCF5E267BE67A1AE926F2DF77FBCC56, E00C0A03AEE579B51B39930A72F39F4EFFE7CDA37187B0AE90F4E001AD15473B ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
15:20:55.0342 0x1028 TDPIPE - ok
15:20:55.0389 0x1028 [ 389C63E32B3CEFED425B61ED92D3F021, E4718E290678F00995E754AE66F1027D227BFAB9E1A1D2AC8E4EAD27DC50CB17 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
15:20:55.0389 0x1028 TDTCP - ok
15:20:55.0436 0x1028 [ 76B06EB8A01FC8624D699E7045303E54, EC30F244B48A35622ED3EE91792F6A1517C5A50770FAB3945E7A945EB7AF28A8 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
15:20:55.0436 0x1028 tdx - ok
15:20:55.0452 0x1028 [ 3CAD38910468EAB9A6479E2F01DB43C7, 9D18C71EDF39743A0A592BC0873909D2B75B5B177B2672A865D1EEC0BFD2F61C ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
15:20:55.0467 0x1028 TermDD - ok
15:20:55.0530 0x1028 [ DBD84E59D631569EC3E756EF144E8431, 9E58629EC762584A2D294A619593620626F7CBE467045AD0F920B6CF1D4B4724 ] TermService C:\Windows\System32\termsrv.dll
15:20:55.0561 0x1028 TermService - ok
15:20:55.0639 0x1028 [ 8C80A73A5D77B2208CA91E4FA269981D, 41F9A0B8C262D5AF4F5F4BFCF387AA859E2FEF77C3D429FFF8763B0C2A314952 ] TestHandler C:\firststeps\OnlineDiagnostic\TestManager\TestHandler.exe
15:20:55.0639 0x1028 TestHandler - ok
15:20:55.0702 0x1028 [ C7230FBEE14437716701C15BE02C27B8, 8221DE73D77CF71C2857D78829E807D015D9CB8BDEE4BAFD6950BF0C718CC774 ] Themes C:\Windows\system32\shsvcs.dll
15:20:55.0717 0x1028 Themes - ok
15:20:55.0717 0x1028 [ 1076FFCFFAAE8385FD62DFCB25AC4708, 8C5C106FCB018E019DEBA8E1A6AA170CD7A93293F27994F724EBC486238DA0AA ] THREADORDER C:\Windows\system32\mmcss.dll
15:20:55.0733 0x1028 THREADORDER - ok
15:20:55.0748 0x1028 [ EC74E77D0EB004BD3A809B5F8FB8C2CE, 1E4BBC58D0E35D79C764CF1BA73602C5E29A5A2393D40332801D533E445C6667 ] TrkWks C:\Windows\System32\trkwks.dll
15:20:55.0764 0x1028 TrkWks - ok
15:20:55.0811 0x1028 [ 97D9D6A04E3AD9B6C626B9931DB78DBA, 8E42133ED5EE5EEC414A8B11C1035385C6141E445EA9677F947D20768F25A877 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
15:20:55.0827 0x1028 TrustedInstaller - ok
15:20:55.0889 0x1028 [ F4EAA7ECBCB25DE901C9B7F2CDCDA0B3, 1CBB5106A32362ABDEE73BF170E205FE64DDBF826C5F6DFFCCD229F220B9C85E ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
15:20:55.0889 0x1028 tssecsrv - ok
15:20:55.0936 0x1028 [ 233FCD3443CFBBAA27E7E463DCCBC528, 2B7F650EDD4CF21A9B871995D906A1620BDEF1E00CD20A6F1105610D06CCE77C ] TuneUp.Defrag C:\Windows\System32\TuneUpDefragService.exe
15:20:55.0952 0x1028 TuneUp.Defrag - ok
15:20:55.0967 0x1028 [ CAECC0120AC49E3D2F758B9169872D38, 80DB15ADF5F4FF78D0C7D5081B6C0E8F1E5125872B60D23C19DA8E62C9DAC9A8 ] tunmp C:\Windows\system32\DRIVERS\tunmp.sys
15:20:55.0967 0x1028 tunmp - ok
15:20:55.0983 0x1028 [ 300DB877AC094FEAB0BE7688C3454A9C, 3B36AA191FBE25B1A61150EAA2BDF8BA286DC4C052F6E98B0ED8202135553D8C ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
15:20:55.0983 0x1028 tunnel - ok
15:20:55.0998 0x1028 [ C3ADE15414120033A36C0F293D4A4121, 74A002C4B5EBD94E33EDEACB6639AF44ED72A8DDE3083C6DE71C1EE937EF1A9C ] uagp35 C:\Windows\system32\drivers\uagp35.sys
15:20:56.0014 0x1028 uagp35 - ok
15:20:56.0045 0x1028 [ D9728AF68C4C7693CB100B8441CBDEC6, A2CEE1EE4EF17106349F4E6967F504354801934179FBB3F10B9A4E3C30BC28CE ] udfs C:\Windows\system32\DRIVERS\udfs.sys
15:20:56.0061 0x1028 udfs - ok
15:20:56.0123 0x1028 [ ECEF404F62863755951E09C802C94AD5, 5D92062B3E371F196774EBFE840C78501E55A244DB2A49703C7AC0141C7DABF1 ] UI0Detect C:\Windows\system32\UI0Detect.exe
15:20:56.0123 0x1028 UI0Detect - ok
15:20:56.0155 0x1028 [ 75E6890EBFCE0841D3291B02E7A8BDB0, FDF9CDCCCCC0AA2A52623C5A67AC5F5224557EE4C8F6487CB13CAEB012575E2A ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
15:20:56.0155 0x1028 uliagpkx - ok
15:20:56.0186 0x1028 [ 3CD4EA35A6221B85DCC25DAA46313F8D, 100A7E12B8EA395F70A00874328E87B930CE88FF442F3576FE88B105A22E04C5 ] uliahci C:\Windows\system32\drivers\uliahci.sys
15:20:56.0186 0x1028 uliahci - ok
15:20:56.0233 0x1028 [ 8514D0E5CD0534467C5FC61BE94A569F, A6EFB967044F88335469DB3351587E31CEC659BB6A7D8ED45C68329232C31BB9 ] UlSata C:\Windows\system32\drivers\ulsata.sys
15:20:56.0233 0x1028 UlSata - ok
15:20:56.0264 0x1028 [ 38C3C6E62B157A6BC46594FADA45C62B, 44F87DC955CB4E35E0EB4C8B4E931472B33D97FE000C22370A06AD5EDCEFD0BA ] ulsata2 C:\Windows\system32\drivers\ulsata2.sys
15:20:56.0264 0x1028 ulsata2 - ok
15:20:56.0295 0x1028 [ 32CFF9F809AE9AED85464492BF3E32D2, 91AAA47AEF17F373276B01AC8FA823592A0C854541A7A9A3B78F2350DB964EBC ] umbus C:\Windows\system32\DRIVERS\umbus.sys
15:20:56.0295 0x1028 umbus - ok
15:20:56.0327 0x1028 [ 68308183F4AE0BE7BF8ECD07CB297999, 4444233CA3C42BEE50ED47553D4AE5A7C12D8F288D2FA4B2DAE1D9B9FEC1A72D ] upnphost C:\Windows\System32\upnphost.dll
15:20:56.0342 0x1028 upnphost - ok
15:20:56.0452 0x1028 [ 1114579556DB85E9FAF9590DBC64CD62, 10479A3C12BBBB9B5759082358FE11AC20BAEFA6B4977C8AE6E60AA17BE6C7FA ] usbaudio C:\Windows\system32\drivers\usbaudio.sys
15:20:56.0452 0x1028 usbaudio - ok
15:20:56.0483 0x1028 [ AAB0B5F72D2D726FBFDC895A2902DE1D, 7824AF6E2ADEA23F208526F3A62AD1BACDBBDB23E58EB5806890B0761529C50F ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
15:20:56.0483 0x1028 usbccgp - ok
15:20:56.0514 0x1028 [ E9476E6C486E76BC4898074768FB7131, D14B8F69A511DC1F990A9C123C18689AFE59659BA8130D248D8D03E9BD2143B6 ] usbcir C:\Windows\system32\drivers\usbcir.sys
15:20:56.0514 0x1028 usbcir - ok
15:20:56.0514 0x1028 [ 153E8515CB86F8BB5D1A8B478EBF4BB2, 0F1F79BA7C32ACAAE69184A56E67D6E18E2E2F07E0BE23F266401431169DAE14 ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
15:20:56.0514 0x1028 usbehci - ok
15:20:56.0545 0x1028 [ 2AE6BCEBD85D31317E433733DAF25888, 7B2C0E8703D0275A620160E479166EB7AA31B0F146507603535CEBF0BA4684A4 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
15:20:56.0561 0x1028 usbhub - ok
15:20:56.0608 0x1028 [ 38DBC7DD6CC5A72011F187425384388B, 456CFCD190035C3033709C8DC0F6DC4352BBF751D57C0C52DD04F8C301FEBACD ] usbohci C:\Windows\system32\drivers\usbohci.sys
15:20:56.0608 0x1028 usbohci - ok
15:20:56.0623 0x1028 [ B51E52ACF758BE00EF3A58EA452FE360, 79E629EC5DE8AB7F31B0EE9AE94C71E8F703FED5C09A816228726974F7790C85 ] usbprint C:\Windows\system32\drivers\usbprint.sys
15:20:56.0623 0x1028 usbprint - ok
15:20:56.0655 0x1028 [ BE3DA31C191BC222D9AD503C5224F2AD, 201FB0FDBF423342202686DC0D8A3221B7798AE04C04A649D3441C257C733CE8 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
15:20:56.0655 0x1028 USBSTOR - ok
15:20:56.0670 0x1028 [ 44056325428A8E4C755830426E29878F, 95F182047746D352B7DC2B22298D5E58738E1B787C110D1DE841C026FB8A67EB ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys
15:20:56.0670 0x1028 usbuhci - ok
15:20:56.0748 0x1028 [ 73FF24E21B690625A58109637DDA0DF7, 62B1F9CD82678E2110D4BB5CC86EE8A7AB0757681443916620B6AAA1EF0DECEB ] usbvideo C:\Windows\system32\Drivers\usbvideo.sys
15:20:56.0748 0x1028 usbvideo - ok
15:20:56.0780 0x1028 [ 1509E705F3AC1D474C92454A5C2DD81F, 7F525921A3513224F8B093A16E19B4235B300349A14B0B86EE11B7473BA53337 ] UxSms C:\Windows\System32\uxsms.dll
15:20:56.0780 0x1028 UxSms - ok
15:20:57.0202 0x1028 [ 534C6B89EAC808A6C0B98591D37CDF67, 5458E8B3CA2BED60CFD2AD2F2640A6C94C6D1D9B3D9B1A8CA9BE9F1B861B1AB1 ] VBoxAswDrv C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys
15:20:57.0248 0x1028 VBoxAswDrv - ok
15:20:57.0295 0x1028 [ CD88D1B7776DC17A119049742EC07EB4, 6B68B9EDB8C6BCB2644F1F004D5743E928509D12107D996F390A24A72E0AA528 ] vds C:\Windows\System32\vds.exe
15:20:57.0327 0x1028 vds - ok
15:20:57.0405 0x1028 [ 87B06E1F30B749A114F74622D013F8D4, 06C06EF87F7DC668D23B50AA5F419F62474ACF90E325E167491BF290286D6594 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
15:20:57.0405 0x1028 vga - ok
15:20:57.0436 0x1028 [ 2E93AC0A1D8C79D019DB6C51F036636C, 8B6F3B4EE90691A22788915AD0F99D8EE617750430A34E7CEB9AB4FB4E581755 ] VgaSave C:\Windows\System32\drivers\vga.sys
15:20:57.0436 0x1028 VgaSave - ok
15:20:57.0467 0x1028 [ 045D9961E591CF0674A920B6BA3BA5CB, EBF498A0424CEA0F7ECBAAE144A8669CE6B5DD67115DE22CEC5A46AED26CD90B ] viaagp C:\Windows\system32\drivers\viaagp.sys
15:20:57.0467 0x1028 viaagp - ok
15:20:57.0498 0x1028 [ 56A4DE5F02F2E88182B0981119B4DD98, 36FC94BCFD41907838DBCB02E6EA24065FDED4224239CD19E90D14433BE9108B ] ViaC7 C:\Windows\system32\drivers\viac7.sys
15:20:57.0498 0x1028 ViaC7 - ok
15:20:57.0514 0x1028 [ FD2E3175FCADA350C7AB4521DCA187EC, 1C914B184478611A27E0141F90EBC34FC63DFB2A83441DD36DFA43D945FB1C52 ] viaide C:\Windows\system32\drivers\viaide.sys
15:20:57.0514 0x1028 viaide - ok
15:20:57.0561 0x1028 [ 7DC3E1DC6E4F8BE381C31BFEA578412A, F03ED5EC3C602D2BE8C1B4410002422415A047C4D2722BE2D4248892373D80E3 ] viamraid C:\Windows\system32\drivers\viamraid.sys
15:20:57.0561 0x1028 viamraid - ok
15:20:57.0608 0x1028 [ 69503668AC66C77C6CD7AF86FBDF8C43, 2CE407674A58313737073F02B9A617460BBA84B36C3A16D98AE5ED45279F5006 ] volmgr C:\Windows\system32\drivers\volmgr.sys
15:20:57.0608 0x1028 volmgr - ok
15:20:57.0655 0x1028 [ 23E41B834759917BFD6B9A0D625D0C28, 9F60992805262F936E8DA33610FDF60A191ECAFC08BBF657C8F9A21833C8EFC5 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
15:20:57.0670 0x1028 volmgrx - ok
15:20:57.0764 0x1028 [ 786DB5771F05EF300390399F626BF30A, 4A07BE5AEDBA4C15C2F9A91250F0488A0B0305C67BB7A037508D5CBF86D4E1B7 ] volsnap C:\Windows\system32\drivers\volsnap.sys
15:20:57.0795 0x1028 volsnap - ok
15:20:57.0827 0x1028 [ D984439746D42B30FC65A4C3546C6829, B134A9890638C2B4964A9C30812A2828A3E0CC641690CBF22D9FCE65EE3C2385 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
15:20:57.0827 0x1028 vsmraid - ok
15:20:57.0889 0x1028 [ DB3D19F850C6EB32BDCB9BC0836ACDDB, D81FF1CDA87A2FE83EFD5B3FE01EFF940952F8BAEE70BEA3B2F6EF30E2121704 ] VSS C:\Windows\system32\vssvc.exe
15:20:57.0967 0x1028 VSS - ok
15:20:58.0061 0x1028 [ 96EA68B9EB310A69C25EBB0282B2B9DE, C76D3427F8A2953CB4D96BBA1523679CBE1BBF7FA821A35D2FBEB3E67AC6A10B ] W32Time C:\Windows\system32\w32time.dll
15:20:58.0092 0x1028 W32Time - ok
15:20:58.0123 0x1028 [ 48DFEE8F1AF7C8235D4E626F0C4FE031, A41D05BC0DA3C476C32E0A4DAF015DF7BADF28A03CE236D5596885FF1772F148 ] WacomPen C:\Windows\system32\drivers\wacompen.sys
15:20:58.0139 0x1028 WacomPen - ok
15:20:58.0186 0x1028 [ 55201897378CCA7AF8B5EFD874374A26, 350ADDCEFAA33E301027CFEA8DDE703F6FBD6E53624598CB2E7B671B9E48F7CC ] Wanarp C:\Windows\system32\DRIVERS\wanarp.sys
15:20:58.0202 0x1028 Wanarp - ok
15:20:58.0217 0x1028 [ 55201897378CCA7AF8B5EFD874374A26, 350ADDCEFAA33E301027CFEA8DDE703F6FBD6E53624598CB2E7B671B9E48F7CC ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
15:20:58.0217 0x1028 Wanarpv6 - ok
15:20:58.0342 0x1028 [ A3CD60FD826381B49F03832590E069AF, 213C5DB5E5D828264286FD7548527566D6160CCA780BC6853B7B28CECF329674 ] wcncsvc C:\Windows\System32\wcncsvc.dll
15:20:58.0358 0x1028 wcncsvc - ok
15:20:58.0389 0x1028 [ 11BCB7AFCDD7AADACB5746F544D3A9C7, 0370E20FD12ED713F94E5CD76F068F7A7A5E7F42416DD2A8A41249020DA7DA31 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
15:20:58.0389 0x1028 WcsPlugInService - ok
15:20:58.0420 0x1028 [ AFC5AD65B991C1E205CF25CFDBF7A6F4, 544173AE85A11B99B9221DB30B6803DAEB3EB7FCA57FE62F0D13EF70B9C69A89 ] Wd C:\Windows\system32\drivers\wd.sys
15:20:58.0420 0x1028 Wd - ok
15:20:58.0483 0x1028 [ 25944D2CC49E0A6C581D02A74B7D6645, AF8FFAFEC07F1A6A3D4008E609E8E1D705A8DFCC7995C766E3946887203F7BEE ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
15:20:58.0514 0x1028 Wdf01000 - ok
15:20:58.0561 0x1028 [ ABFC76B48BB6C96E3338D8943C5D93B5, B5B22D445724D58641A53276063A4AA2A98F07B93865C86E94661EB31BD63511 ] WdiServiceHost C:\Windows\system32\wdi.dll
15:20:58.0577 0x1028 WdiServiceHost - ok
15:20:58.0608 0x1028 [ ABFC76B48BB6C96E3338D8943C5D93B5, B5B22D445724D58641A53276063A4AA2A98F07B93865C86E94661EB31BD63511 ] WdiSystemHost C:\Windows\system32\wdi.dll
15:20:58.0608 0x1028 WdiSystemHost - ok
15:20:58.0670 0x1028 [ 04C37D8107320312FBAE09926103D5E2, 1C6726A9871CBACB240AFA93E57781515F01758D43693DDA395EA683D97234F0 ] WebClient C:\Windows\System32\webclnt.dll
15:20:58.0702 0x1028 WebClient - ok
15:20:58.0764 0x1028 [ AE3736E7E8892241C23E4EBBB7453B60, 0F998116CC07CD719CB237EAE53BB16B2EDD6973828B9C1055EB981AEA0453D1 ] Wecsvc C:\Windows\system32\wecsvc.dll
15:20:58.0827 0x1028 Wecsvc - ok
15:20:58.0873 0x1028 [ 670FF720071ED741206D69BD995EA453, 4B96F5E3545F69AE9EBC75DC4AB27B87306D656EE526AE39E7EC7E2B6F83F7FD ] wercplsupport C:\Windows\System32\wercplsupport.dll
15:20:58.0889 0x1028 wercplsupport - ok
15:20:58.0936 0x1028 [ 32B88481D3B326DA6DEB07B1D03481E7, 821FBAF147E525ED15EB9391B16A96C6D5464841258B11F277EFB57A3BD50E37 ] WerSvc C:\Windows\System32\WerSvc.dll
15:20:58.0936 0x1028 WerSvc - ok
15:20:58.0998 0x1028 [ 4575AA12561C5648483403541D0D7F2B, 2DBB7904285F16E879E1662C4CC4DFAA420D5EB24DDFC4BAC0B7616F5F44649A ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll
15:20:59.0030 0x1028 WinDefend - ok
15:20:59.0030 0x1028 WinHttpAutoProxySvc - ok
15:20:59.0155 0x1028 [ 6B2A1D0E80110E3D04E6863C6E62FD8A, EE8BC7C378993EFE90273764C83119EBF331768CD7B24DE949233C74A51306C2 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
15:20:59.0186 0x1028 Winmgmt - ok
15:20:59.0248 0x1028 [ 7CFE68BDC065E55AA5E8421607037511, C2CE76D52AD4E31FC4216E94457DC16ABF65A5F3E883F0BD97AD387FB7574533 ] WinRM C:\Windows\system32\WsmSvc.dll
15:20:59.0327 0x1028 WinRM - ok
15:20:59.0498 0x1028 [ C008405E4FEEB069E30DA1D823910234, C392A7B5FEACB7D11A3A231C1AD65D533984E6E7429ECD3BFBF90A27E8DEB157 ] Wlansvc C:\Windows\System32\wlansvc.dll
15:20:59.0530 0x1028 Wlansvc - ok
15:20:59.0608 0x1028 [ 701A9F884A294327E9141D73746EE279, C8A46B8C32F9EAC7848D385473F6B5C4B6DA719A941A75AD5F081757FC07A09D ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
15:20:59.0608 0x1028 WmiAcpi - ok
15:20:59.0639 0x1028 [ 43BE3875207DCB62A85C8C49970B66CC, 27169F2E8A30807794407DA8F80611E4287F940AAE2A1F00F547901872FB9703 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
15:20:59.0639 0x1028 wmiApSrv - ok
15:20:59.0733 0x1028 [ 3978704576A121A9204F8CC49A301A9B, 936CC13B90A183613BDA4081556C96D48CA415B5F65D61E18CB5F2E51EEBE59F ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
15:20:59.0764 0x1028 WMPNetworkSvc - ok
15:20:59.0811 0x1028 [ CFC5A04558F5070CEE3E3A7809F3FF52, 45899E04000E21C4E009BE8B6149F199A5B2E0512C657A525770BF9DBFED7D2B ] WPCSvc C:\Windows\System32\wpcsvc.dll
15:20:59.0827 0x1028 WPCSvc - ok
15:20:59.0842 0x1028 [ 801FBDB89D472B3C467EB112A0FC9246, C24053FA12732089384D3AF06C676FF201D282FC5AD56A42B6EE8BAED4379CB2 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
15:20:59.0858 0x1028 WPDBusEnum - ok
15:20:59.0873 0x1028 [ DE9D36F91A4DF3D911626643DEBF11EA, 8029ECE76E29276BFB6ED3387AC560A9A779AAF683A4416E96334FAF7BDBADA0 ] WpdUsb C:\Windows\system32\DRIVERS\wpdusb.sys
15:20:59.0889 0x1028 WpdUsb - ok
15:20:59.0952 0x1028 [ F8D3544ACBCE9110362119F7C10D848E, 31C49201A931751A36286874AC0B929D886F490D7CE48CCC9283850A56AD9FD9 ] WPFFontCache_v0400 C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
15:21:00.0045 0x1028 WPFFontCache_v0400 - ok
15:21:00.0077 0x1028 [ E3A3CB253C0EC2494D4A61F5E43A389C, 10BA8B102E31B961819E524FCA5FA817B588EC77FB26B4E176D0A5CFF11EDF79 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
15:21:00.0092 0x1028 ws2ifsl - ok
15:21:00.0108 0x1028 [ 1CA6C40261DDC0425987980D0CD2AAAB, 727C1E3A170316641F832A8D197EDA6D6EE1206E4ED7B741E5A4017B7F2F7B88 ] wscsvc C:\Windows\system32\wscsvc.dll
15:21:00.0108 0x1028 wscsvc - ok
15:21:00.0108 0x1028 WSearch - ok
15:21:00.0202 0x1028 [ FC3EC24FCE372C89423E015A2AC1A31E, 8D028182CF83667D3E4D148979972D208FA6D9B8540EE47A0A7831B770ECD257 ] wuauserv C:\Windows\system32\wuaueng.dll
15:21:00.0248 0x1028 wuauserv - ok
15:21:00.0311 0x1028 [ 06E6F32C8D0A3F66D956F57B43A2E070, 9A6BD96A28294B0372F16E13D652FD603308F64B74A56E41E0C68C5E8011F943 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
15:21:00.0311 0x1028 WudfPf - ok
15:21:00.0405 0x1028 [ 867C301E8B790040AE9CF6486E8041DF, D867D6498C987944D99508B2FAD6D6B749FA1EDFE8124B0863D4A642352F0855 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
15:21:00.0420 0x1028 WUDFRd - ok
15:21:00.0436 0x1028 [ FE47B7BC8EA320C2D9B5E5BF6E303765, 34518DBD1E9EA6E5DA62273B18613761E1D9C6B4E074A93C6D639FBAF02222EA ] wudfsvc C:\Windows\System32\WUDFSvc.dll
15:21:00.0452 0x1028 wudfsvc - ok
15:21:00.0452 0x1028 ================ Scan global ===============================
15:21:00.0483 0x1028 [ F31EEBC1A1C81FD04005489CC3DCDFE7, 098C35ACFCCE1686C5A6DB6057001CBF8B06A863A0802CB2E9D793F4795F8CEE ] C:\Windows\system32\basesrv.dll
15:21:00.0530 0x1028 [ A508314231C49AEE86987CEA3EAECAD1, D29BCFA967C23C7264592576D62D95FA8C687E8662D19DCCC73653A9EFB6340D ] C:\Windows\system32\winsrv.dll
15:21:00.0561 0x1028 [ A508314231C49AEE86987CEA3EAECAD1, D29BCFA967C23C7264592576D62D95FA8C687E8662D19DCCC73653A9EFB6340D ] C:\Windows\system32\winsrv.dll
15:21:00.0608 0x1028 [ D4E6D91C1349B7BFB3599A6ADA56851B, 8748091BF27F05D28D45688E04DD9229A4B2E159209A64F457703F66A8CECE4D ] C:\Windows\system32\services.exe
15:21:00.0623 0x1028 [ Global ] - ok
15:21:00.0623 0x1028 ================ Scan MBR ==================================
15:21:00.0670 0x1028 [ 5C616939100B85E558DA92B899A0FC36 ] \Device\Harddisk0\DR0
15:21:01.0608 0x1028 \Device\Harddisk0\DR0 - ok
15:21:01.0608 0x1028 ================ Scan VBR ==================================
15:21:01.0639 0x1028 [ 7E338193775F4FB90ED91619A9074C8F ] \Device\Harddisk0\DR0\Partition1
15:21:01.0670 0x1028 \Device\Harddisk0\DR0\Partition1 - ok
15:21:01.0702 0x1028 [ 74EBF742E0C73A5BB97896B030E8B6A5 ] \Device\Harddisk0\DR0\Partition2
15:21:01.0733 0x1028 \Device\Harddisk0\DR0\Partition2 - ok
15:21:01.0733 0x1028 ================ Scan generic autorun ======================
15:21:01.0905 0x1028 [ A360F8AA95A086CB7F9D361B5485858F, 8340AD4042F1E5780C304A0DF12F22EB56BACC687D48387B9A1B05E4324D2A28 ] C:\Windows\RtHDVCpl.exe
15:21:02.0061 0x1028 RtHDVCpl - ok
15:21:02.0108 0x1028 [ 30A1155E347D44BE2ECC3265D5E45591, C71B59BD9B43C699FF136BA1854C307A719B8F10383158F9741C5051B02945AD ] C:\Program Files\FSC\LASER MOUSE\1.0\GTGMouse.exe
15:21:02.0139 0x1028 GTGMOUSE - ok
15:21:02.0139 0x1028 NvSvc - ok
15:21:02.0139 0x1028 NvCplDaemon - ok
15:21:02.0139 0x1028 NvMediaCenter - ok
15:21:02.0155 0x1028 [ 48A9D4961DD0C0E4DECD99DA597AE7B7, 2E451AF1E6601A475A1EE137C452DCBCF0CCDB2C6B42C5B91E72B7CEDCD5FB44 ] C:\Windows\system32\igfxtray.exe
15:21:02.0170 0x1028 IgfxTray - ok
15:21:02.0186 0x1028 [ 63FFA18E782DEBBE8CC62195AD3783CA, 11012E63516CEF79519DA83123D2200AD1EAD7F2D80D6EC17EB0A63F638F96AA ] C:\Windows\system32\hkcmd.exe
15:21:02.0186 0x1028 HotKeysCmds - ok
15:21:02.0217 0x1028 [ BBF84F08A343374BED5687AA6C5797B8, 73BD74F1D3397913F299797F5C69F1503901E4D046643990E753E0C238B665A6 ] C:\Windows\system32\igfxpers.exe
15:21:02.0217 0x1028 Persistence - ok
15:21:02.0545 0x1028 [ 44ADDA5FB88EE14F57A246285775AC2F, 2776225BA9F22C553453541DA0285E093B4F2019DB6FE640D033BA45045299C8 ] C:\Program Files\AVAST Software\Avast\AvastUI.exe
15:21:02.0795 0x1028 AvastUI.exe - ok
15:21:02.0858 0x1028 [ 887CAA31048EB8ED09A0CBD0E6F46F09, BBCED0BD4EB00C3FECFC9448223D4C441A868787877291F5489B07B43FAB65A4 ] C:\Program Files\Common Files\Java\Java Update\jusched.exe
15:21:02.0873 0x1028 SunJavaUpdateSched - ok
15:21:02.0952 0x1028 [ 9E35FF7F943AE0FB89192BFE058B7FD4, 54712A4FA296AE28CF834F90B77B2EEB69020E3D5B5CF24674BD8DACA25195B9 ] C:\Program Files\Windows Sidebar\sidebar.exe
15:21:02.0983 0x1028 Sidebar - ok
15:21:03.0202 0x1028 [ F308D7378BF60B91DA495FCAA1C216E7, 7D67B6D1CE11685F87B3CF9689AF0B089D3340A72C7A0B9633C826AEE49B405E ] C:\Program Files\CCleaner\CCleaner.exe
15:21:03.0295 0x1028 CCleaner Monitoring - ok
15:21:03.0311 0x1028 Waiting for KSN requests completion. In queue: 104
15:21:04.0311 0x1028 Waiting for KSN requests completion. In queue: 104
15:21:05.0311 0x1028 Waiting for KSN requests completion. In queue: 104
15:21:06.0373 0x1028 AV detected via SS2: avast! Antivirus, C:\Program Files\AVAST Software\Avast\VisthAux.exe ( 10.0.2208.712 ), 0x41000 ( enabled : updated )
15:21:06.0639 0x1028 Win FW state via NFP2: enabled
15:21:08.0998 0x1028 ============================================================
15:21:08.0998 0x1028 Scan finished
15:21:08.0998 0x1028 ============================================================
15:21:09.0014 0x1380 Detected object count: 0
15:21:09.0014 0x1380 Actual detected object count: 0
15:23:44.0327 0x1504 Deinitialize success

martinb01
Level 2
Level 2
Příspěvky: 167
Registrován: únor 11
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu-PC hlásí opakovaně málo místa na disku

Příspěvekod martinb01 » 02 bře 2015 15:58

ComboFix 15-03-01.01 - Martin 02.03.2015 15:41:08.5.4 - x86
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1250.420.1029.18.2038.997 [GMT 1:00]
Spuštěný z: c:\users\Martin\Desktop\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B}
SP: avast! Antivirus *Disabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2015-02-02 do 2015-03-02 )))))))))))))))))))))))))))))))
.
.
2015-03-02 14:53 . 2015-03-02 14:54 -------- d-----w- c:\users\Martin\AppData\Local\temp
2015-03-02 14:53 . 2015-03-02 14:53 -------- d-----w- c:\users\Public\AppData\Local\temp
2015-02-28 08:49 . 2015-02-28 09:16 -------- d-----w- C:\zoek_backup
2015-02-27 06:46 . 2015-01-29 09:49 9041640 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{63858B25-D768-499C-8A24-D8769A1DE7A5}\mpengine.dll
2015-02-27 06:30 . 2015-03-02 14:27 114904 ----a-w- c:\windows\system32\drivers\MBAMSwissArmy.sys
2015-02-27 06:29 . 2014-11-21 05:14 51928 ----a-w- c:\windows\system32\drivers\mwac.sys
2015-02-27 06:29 . 2014-11-21 05:14 75480 ----a-w- c:\windows\system32\drivers\mbamchameleon.sys
2015-02-27 06:29 . 2015-02-27 06:29 -------- d-----w- c:\program files\Malwarebytes Anti-Malware
2015-02-27 06:29 . 2014-11-21 05:14 23256 ----a-w- c:\windows\system32\drivers\mbam.sys
2015-02-12 19:03 . 2014-11-26 02:05 564224 ----a-w- c:\windows\system32\oleaut32.dll
2015-02-12 19:03 . 2015-01-09 00:20 2063360 ----a-w- c:\windows\system32\win32k.sys
2015-02-12 19:03 . 2015-01-13 01:39 974848 ----a-w- c:\windows\system32\WindowsCodecs.dll
2015-02-12 19:02 . 2015-01-15 04:13 440760 ----a-w- c:\windows\system32\drivers\ksecdd.sys
2015-02-12 19:01 . 2014-12-08 01:59 306176 ----a-w- c:\windows\system32\scesrv.dll
2015-02-12 16:53 . 2014-12-21 07:39 291352 ----a-w- c:\windows\system32\aswBoot.exe
2015-02-12 07:29 . 2015-01-23 03:00 1810944 ----a-w- c:\windows\system32\jscript9.dll
2015-02-11 11:59 . 2015-02-25 13:24 -------- d-----w- c:\users\Martin\AppData\Roaming\vlc
2015-02-11 11:58 . 2015-02-11 11:58 -------- d-----w- c:\program files\VideoLAN
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2015-02-28 08:23 . 2015-01-27 20:44 35064 ----a-w- c:\windows\system32\drivers\TrueSight.sys
2015-02-05 18:34 . 2012-05-24 21:20 701616 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2015-02-05 18:34 . 2011-06-20 09:18 71344 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2014-12-30 23:26 . 2014-12-30 23:26 96680 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
2014-12-22 23:50 . 2009-10-07 12:39 249488 ------w- c:\windows\system32\MpSigStub.exe
2014-12-21 07:44 . 2014-04-14 22:37 787800 ----a-w- c:\windows\system32\drivers\aswsnx.sys
2014-12-21 07:43 . 2014-04-14 22:37 423784 ----a-w- c:\windows\system32\drivers\aswsp.sys
2014-12-21 07:39 . 2014-04-14 22:37 57928 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2014-12-21 07:39 . 2014-04-14 22:37 206248 ----a-w- c:\windows\system32\drivers\aswVmm.sys
2014-12-21 07:39 . 2014-04-30 16:05 24184 ----a-w- c:\windows\system32\drivers\aswHwid.sys
2014-12-21 07:39 . 2014-04-14 22:37 49944 ----a-w- c:\windows\system32\drivers\aswRvrt.sys
2014-12-21 07:39 . 2014-04-14 22:37 70384 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2014-12-21 07:39 . 2014-04-14 22:37 55240 ----a-w- c:\windows\system32\drivers\aswrdr.sys
2014-12-21 07:39 . 2014-12-21 07:39 43152 ----a-w- c:\windows\avastSS.scr
2014-12-19 00:25 . 2015-01-14 19:11 115200 ----a-w- c:\windows\system32\drivers\mrxdav.sys
2014-12-06 03:14 . 2015-01-14 19:01 153600 ----a-w- c:\windows\system32\profsvc.dll
2014-12-06 03:14 . 2015-01-14 19:02 48640 ----a-w- c:\windows\system32\nlaapi.dll
2014-12-06 03:14 . 2015-01-14 19:02 174080 ----a-w- c:\windows\system32\nlasvc.dll
2014-12-06 03:14 . 2015-01-14 19:02 93184 ----a-w- c:\windows\system32\ncsi.dll
2014-12-03 02:06 . 2014-12-10 19:00 278528 ----a-w- c:\windows\system32\schannel.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2014-12-21 07:37 723976 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-04-10 1233920]
"CCleaner Monitoring"="c:\program files\CCleaner\CCleaner.exe" [2014-09-26 4811032]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"="RtHDVCpl.exe" [2007-10-01 4702208]
"GTGMOUSE"="c:\program files\FSC\LASER MOUSE\1.0\GTGMouse.exe" [2007-01-22 483328]
"NvSvc"="c:\windows\system32\nvsvc.dll" [2007-11-06 86016]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2007-11-06 8530464]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2007-11-06 81920]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2009-02-26 141848]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2009-02-26 173592]
"Persistence"="c:\windows\system32\igfxpers.exe" [2009-02-26 150552]
"AvastUI.exe"="c:\program files\AVAST Software\Avast\AvastUI.exe" [2015-01-27 5227112]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2014-10-07 507776]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
"SoftwareSASGeneration"= 1 (0x1)
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
@="Service"
.
--- Ostatní služby/ovladače v paměti ---
.
*NewlyCreated* - MBAMSWISSARMY
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2015-02-20 08:12 1084744 ----a-w- c:\program files\Google\Chrome\Application\40.0.2214.115\Installer\chrmstp.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2015-03-02 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-05-24 18:34]
.
2015-03-02 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-04-17 19:27]
.
2015-03-02 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-04-17 19:27]
.
.
------- Doplňkový sken -------
.
uStart Page = https://www.google.com/?trackid=sp-006
IE: E&xportovat do aplikace Microsoft Office Excel - c:\progra~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
Trusted Zone: mojebanka.cz\www
TCP: DhcpNameServer = 213.46.172.36 213.46.172.37
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
SafeBoot-WudfPf
SafeBoot-WudfRd
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2015-03-02 15:54
Windows 6.0.6002 Service Pack 2 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
Celkový čas: 2015-03-02 15:56:26
ComboFix-quarantined-files.txt 2015-03-02 14:56
.
Před spuštěním: 2 917 265 408
Po spuštění: 2 860 650 496
.
- - End Of File - - 11DB1729C886F0BAC96AC5D9E9645D6C
5C616939100B85E558DA92B899A0FC36

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu-PC hlásí opakovaně málo místa na disku

Příspěvekod jaro3 » 02 bře 2015 18:44

Vypni rez. ochranu u antiviru a antispywaru,příp. firewall..

Otevři si Poznámkový blok (Start -> Spustit... a napiš do okna Notepad a dej Ok.
Zkopíruj do něj následující celý text označený zeleně:

Kód: Vybrat vše

ClearJavaCache::
KillAll::
File::
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job

Folder::
c:\program files\Google\Update



Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.

Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe a když se oba soubory překryjí, skript upusť.
- Automaticky se spustí ComboFix
- Vlož sem log, který vyběhne v závěru čistícího procesu + nový log z HJT

Upozornění : Může se stát, že po aplikaci Combofixu a restartu počítače, Windows nenaběhnou , nebo nenajede plocha , budou problémy s připojením, pak znovu restartuj počítač, pokud to nepomůže , po restartu mačkej klávesu F8 a pak zvol poslední známou funkční konfiguraci. , či použij bod obnovy.

Stáhni si aswMBR
na svojí plochu. Uzavři všechna okna , programy a prohlížeče. Poklepej na aswMBR.exe. Pokud se objeví hláška o možnosti stáhnutí databáze Avastu , klikni na NE. Poté klikni na „Scan“ . Po skenu klikni na „Save Log“ a ulož si log na plochu .Zkopíruj sem celý obsah toho logu. Pak klikni na „Exit“ k zavření programu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

martinb01
Level 2
Level 2
Příspěvky: 167
Registrován: únor 11
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu-PC hlásí opakovaně málo místa na disku

Příspěvekod martinb01 » 03 bře 2015 11:42

ComboFix 15-03-01.01 - Martin 03.03.2015 11:22:02.6.4 - x86
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1250.420.1029.18.2038.961 [GMT 1:00]
Spuštěný z: c:\users\Martin\Desktop\ComboFix.exe
Použité ovládací přepínače :: c:\users\Martin\Desktop\CFScript.txt
AV: avast! Antivirus *Disabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B}
SP: avast! Antivirus *Disabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
FILE ::
"c:\windows\Tasks\GoogleUpdateTaskMachineCore.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineUA.job"
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Service_gupdate
-------\Service_gupdatem
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2015-02-03 do 2015-03-03 )))))))))))))))))))))))))))))))
.
.
2015-03-03 10:32 . 2015-03-03 10:34 -------- d-----w- c:\users\Martin\AppData\Local\temp
2015-03-03 10:32 . 2015-03-03 10:32 -------- d-----w- c:\users\Public\AppData\Local\temp
2015-03-03 10:32 . 2015-03-03 10:32 -------- d-----w- c:\users\Default\AppData\Local\temp
2015-02-28 09:19 . 2015-02-28 08:49 24064 ----a-w- c:\windows\zoek-delete.exe
2015-02-28 08:49 . 2015-02-28 09:16 -------- d-----w- C:\zoek_backup
2015-02-27 06:46 . 2015-01-29 09:49 9041640 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{63858B25-D768-499C-8A24-D8769A1DE7A5}\mpengine.dll
2015-02-27 06:30 . 2015-03-03 09:49 114904 ----a-w- c:\windows\system32\drivers\MBAMSwissArmy.sys
2015-02-27 06:29 . 2014-11-21 05:14 51928 ----a-w- c:\windows\system32\drivers\mwac.sys
2015-02-27 06:29 . 2014-11-21 05:14 75480 ----a-w- c:\windows\system32\drivers\mbamchameleon.sys
2015-02-27 06:29 . 2015-02-27 06:29 -------- d-----w- c:\program files\Malwarebytes Anti-Malware
2015-02-27 06:29 . 2014-11-21 05:14 23256 ----a-w- c:\windows\system32\drivers\mbam.sys
2015-02-12 19:03 . 2014-11-26 02:05 564224 ----a-w- c:\windows\system32\oleaut32.dll
2015-02-12 19:03 . 2015-01-09 00:20 2063360 ----a-w- c:\windows\system32\win32k.sys
2015-02-12 19:03 . 2015-01-13 01:39 974848 ----a-w- c:\windows\system32\WindowsCodecs.dll
2015-02-12 19:02 . 2015-01-15 04:13 440760 ----a-w- c:\windows\system32\drivers\ksecdd.sys
2015-02-12 19:01 . 2014-12-08 01:59 306176 ----a-w- c:\windows\system32\scesrv.dll
2015-02-12 16:53 . 2014-12-21 07:39 291352 ----a-w- c:\windows\system32\aswBoot.exe
2015-02-12 07:29 . 2015-01-23 03:00 1810944 ----a-w- c:\windows\system32\jscript9.dll
2015-02-11 11:59 . 2015-02-25 13:24 -------- d-----w- c:\users\Martin\AppData\Roaming\vlc
2015-02-11 11:58 . 2015-02-11 11:58 -------- d-----w- c:\program files\VideoLAN
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2015-02-28 08:23 . 2015-01-27 20:44 35064 ----a-w- c:\windows\system32\drivers\TrueSight.sys
2015-02-05 18:34 . 2012-05-24 21:20 701616 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2015-02-05 18:34 . 2011-06-20 09:18 71344 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2014-12-30 23:26 . 2014-12-30 23:26 96680 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
2014-12-22 23:50 . 2009-10-07 12:39 249488 ------w- c:\windows\system32\MpSigStub.exe
2014-12-21 07:44 . 2014-04-14 22:37 787800 ----a-w- c:\windows\system32\drivers\aswsnx.sys
2014-12-21 07:43 . 2014-04-14 22:37 423784 ----a-w- c:\windows\system32\drivers\aswsp.sys
2014-12-21 07:39 . 2014-04-14 22:37 57928 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2014-12-21 07:39 . 2014-04-14 22:37 206248 ----a-w- c:\windows\system32\drivers\aswVmm.sys
2014-12-21 07:39 . 2014-04-30 16:05 24184 ----a-w- c:\windows\system32\drivers\aswHwid.sys
2014-12-21 07:39 . 2014-04-14 22:37 49944 ----a-w- c:\windows\system32\drivers\aswRvrt.sys
2014-12-21 07:39 . 2014-04-14 22:37 70384 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2014-12-21 07:39 . 2014-04-14 22:37 55240 ----a-w- c:\windows\system32\drivers\aswrdr.sys
2014-12-21 07:39 . 2014-12-21 07:39 43152 ----a-w- c:\windows\avastSS.scr
2014-12-19 00:25 . 2015-01-14 19:11 115200 ----a-w- c:\windows\system32\drivers\mrxdav.sys
2014-12-06 03:14 . 2015-01-14 19:01 153600 ----a-w- c:\windows\system32\profsvc.dll
2014-12-06 03:14 . 2015-01-14 19:02 48640 ----a-w- c:\windows\system32\nlaapi.dll
2014-12-06 03:14 . 2015-01-14 19:02 174080 ----a-w- c:\windows\system32\nlasvc.dll
2014-12-06 03:14 . 2015-01-14 19:02 93184 ----a-w- c:\windows\system32\ncsi.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2014-12-21 07:37 723976 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-04-10 1233920]
"CCleaner Monitoring"="c:\program files\CCleaner\CCleaner.exe" [2014-09-26 4811032]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"="RtHDVCpl.exe" [2007-10-01 4702208]
"GTGMOUSE"="c:\program files\FSC\LASER MOUSE\1.0\GTGMouse.exe" [2007-01-22 483328]
"NvSvc"="c:\windows\system32\nvsvc.dll" [2007-11-06 86016]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2007-11-06 8530464]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2007-11-06 81920]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2009-02-26 141848]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2009-02-26 173592]
"Persistence"="c:\windows\system32\igfxpers.exe" [2009-02-26 150552]
"AvastUI.exe"="c:\program files\AVAST Software\Avast\AvastUI.exe" [2015-01-27 5227112]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2014-10-07 507776]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
"SoftwareSASGeneration"= 1 (0x1)
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
@="Service"
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2015-02-20 08:12 1084744 ----a-w- c:\program files\Google\Chrome\Application\40.0.2214.115\Installer\chrmstp.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2015-03-03 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-05-24 18:34]
.
.
------- Doplňkový sken -------
.
uStart Page = https://www.google.com/?trackid=sp-006
IE: E&xportovat do aplikace Microsoft Office Excel - c:\progra~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
Trusted Zone: mojebanka.cz\www
TCP: DhcpNameServer = 213.46.172.36 213.46.172.37
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2015-03-03 11:34
Windows 6.0.6002 Service Pack 2 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\program files\Google\Update\GoogleUpdate.exe
c:\firststeps\OnlineDiagnostic\TestManager\TestHandler.exe
c:\windows\System32\WUDFHost.exe
c:\windows\system32\conime.exe
c:\windows\RtHDVCpl.exe
c:\windows\system32\igfxsrvc.exe
c:\windows\system32\wbem\unsecapp.exe
c:\windows\system32\wbem\unsecapp.exe
.
**************************************************************************
.
Celkový čas: 2015-03-03 11:39:29 - počítač byl restartován
ComboFix-quarantined-files.txt 2015-03-03 10:39
ComboFix2.txt 2015-03-02 14:56
.
Před spuštěním: 2 541 195 264
Po spuštění: 2 106 470 400
.
- - End Of File - - 7745BCD42B56751AF77903747C186E89
5C616939100B85E558DA92B899A0FC36

martinb01
Level 2
Level 2
Příspěvky: 167
Registrován: únor 11
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu-PC hlásí opakovaně málo místa na disku

Příspěvekod martinb01 » 03 bře 2015 11:50

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:49:43, on 3.3.2015
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v9.00 (9.00.8112.16609)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\conime.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\FSC\LASER MOUSE\1.0\GTGMouse.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\CCleaner\CCleaner.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\System32\mobsync.exe
C:\Windows\system32\notepad.exe
C:\Windows\Explorer.exe
C:\Users\Martin\Desktop\hijackthis (1).exe
C:\Windows\system32\DllHost.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?trackid=sp-006
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.8.0_25\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre1.8.0_25\bin\jp2ssv.dll
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [GTGMOUSE] "C:\Program Files\FSC\LASER MOUSE\1.0\GTGMouse.exe"
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner.exe" /MONITOR
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exe
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://www.mojebanka.cz
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Fujitsu Siemens Computers Diagnostic Testhandler (TestHandler) - Fujitsu Siemens Computers - C:\firststeps\OnlineDiagnostic\TestManager\TestHandler.exe
O23 - Service: @%SystemRoot%\System32\TuneUpDefragService.exe,-1 (TuneUp.Defrag) - TuneUp Software GmbH - C:\Windows\System32\TuneUpDefragService.exe

--
End of file - 4844 bytes

martinb01
Level 2
Level 2
Příspěvky: 167
Registrován: únor 11
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu-PC hlásí opakovaně málo místa na disku

Příspěvekod martinb01 » 03 bře 2015 12:29

aswMBR version 1.0.1.2290 Copyright(c) 2014 AVAST Software
Run date: 2015-03-03 11:53:36
-----------------------------
11:53:36.280 OS Version: Windows 6.0.6002 Service Pack 2
11:53:36.280 Number of processors: 4 586 0xF0B
11:53:36.280 ComputerName: HOME UserName:
11:53:47.593 Initialize success
11:53:47.624 VM: initialized successfully
11:53:47.624 VM: Intel CPU supported
11:53:55.294 VM: disk I/O atapi.sys
11:54:38.419 AVAST engine defs: 15030300
11:54:47.294 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP2T0L0-2
11:54:47.309 Disk 0 Vendor: WDC_WD5000AAKS-07YGA0 12.01C02 Size: 476940MB BusType: 3
11:54:47.372 Disk 0 MBR read successfully
11:54:47.372 Disk 0 MBR scan
11:54:47.434 Disk 0 Windows VISTA default MBR code
11:54:47.466 Disk 0 Partition 1 00 27 Hidden NTFS WinRE NTFS 12000 MB offset 2048
11:54:47.638 Disk 0 Partition 2 80 (A) 07 HPFS/NTFS NTFS 310627 MB offset 24578048
11:54:47.684 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 154311 MB offset 660742144
11:54:47.763 Disk 0 scanning sectors +976771072
11:54:48.028 Disk 0 scanning C:\Windows\system32\drivers
11:55:51.278 Service scanning
11:56:08.794 Service sptd C:\Windows\System32\Drivers\sptd.sys **LOCKED** 32
11:56:13.669 Modules scanning
11:56:13.669 Disk 0 trace - called modules:
11:56:13.700 ntoskrnl.exe CLASSPNP.SYS disk.sys acpi.sys hal.dll >>UNKNOWN [0x854591e8]<<
11:56:13.700 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x861b6ac8]
11:56:13.700 3 CLASSPNP.SYS[88c9e8b3] -> nt!IofCallDriver -> [0x85ecac10]
11:56:13.716 5 acpi.sys[83b6c6bc] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP2T0L0-2[0x85eca030]
11:56:13.716 \Driver\atapi[0x85ea9bf0] -> IRP_MJ_CREATE -> 0x854591e8
11:56:14.731 AVAST engine scan C:\Windows
11:56:30.559 AVAST engine scan C:\Windows\system32
11:59:45.575 AVAST engine scan C:\Windows\system32\drivers
12:00:07.919 AVAST engine scan C:\Users\Martin
12:06:44.841 AVAST engine scan C:\ProgramData
12:18:43.231 Disk 0 statistics 3005826/0/0 @ 1,21 MB/s
12:18:43.247 Scan finished successfully
12:28:15.537 Disk 0 MBR has been saved successfully to "C:\Users\Martin\Desktop\MBR.dat"
12:28:15.537 The log file has been saved successfully to "C:\Users\Martin\Desktop\aswMBR.txt"


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 2 hosti