Zdravím můžu poprosit o kontrolu logu? mam podezření že jsem něco chytl na jedné stránce kterou když jsem otevřel tak mi zamrzlo tak na 30sec PC.
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Users\CALLER\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Users\CALLER\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\CALLER\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\CALLER\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\CALLER\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\CALLER\Downloads\HiJackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Pomocná služba pro přihlášení ke službě Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BingExt.dll
O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BingExt.dll" (file missing)
O4 - HKLM\..\Run: [AMD AVT] Cmd.exe /c start "AMD Accelerated Video Transcoding device initialization" /min "C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe" aml
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Google Update] "C:\Users\CALLER\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Futuremark SystemInfo Service - Futuremark Corporation - C:\Program Files (x86)\Futuremark\Futuremark SystemInfo\FMSISvc.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: RadeonPro Support Service - Mr. John aka japamd - C:\Program Files (x86)\RadeonPro\RadeonProSupport.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 7992 bytes
Prosím o kontrolu Logu - Zamrznutí PC Vyřešeno
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43287
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu Logu - Zamrznutí PC
Zavři ostatní aplikace a prohlížeče, odpoj se od netu a fixni v HJT:
Návod
Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected. Poté klikni na Main (hlavní stránku ) a klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.
Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Provést rychlý sken a klikni na tlačítko Skenovat
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Zobrazit výsledky
- pak zvol možnost uložit log a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.
Pokud budou problémy , spusť v nouz. režimu.
Stáhni si CrystalDiskInfo
Spusť program a klikni na Úpravy-Kopírovat. Poté sem vlož pomocí Ctrl+V obsah logu.
Návod
Kód: Vybrat vše
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BingExt.dll" (file missing)
O4 - HKCU\..\Run: [Google Update] "C:\Users\CALLER\AppData\Local\Google\Update\GoogleUpdate.exe" /c
Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected. Poté klikni na Main (hlavní stránku ) a klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.
Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Provést rychlý sken a klikni na tlačítko Skenovat
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Zobrazit výsledky
- pak zvol možnost uložit log a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.
Pokud budou problémy , spusť v nouz. režimu.
Stáhni si CrystalDiskInfo
Spusť program a klikni na Úpravy-Kopírovat. Poté sem vlož pomocí Ctrl+V obsah logu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Prosím o kontrolu Logu - Zamrznutí PC
Takže v HiJackThis sem to fixnul.
Zde je log z toho Malwarebytes:
Malwarebytes Anti-Malware 1.61.0.1400
www.malwarebytes.org
Verze databáze: v2012.05.27.03
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 9.0.8112.16421
CALLER :: CALLER-PC [administrátor]
27.5.2012 20:18:09
mbam-log-2012-05-27 (20-18-09).txt
Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 198011
Uplynulý čas: 2 minut, 3 sekund
Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené soubory: 0
(Žádné škodlivé položky nebyly zjištěny)
(konec)
a zde je log z Crystaldiskinfo:
----------------------------------------------------------------------------
CrystalDiskInfo 4.6.2 (C) 2008-2012 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------
OS : Windows 7 Ultimate Edition SP1 [6.1 Build 7601] (x64)
Date : 2012/05/27 20:21:50
-- Controller Map ----------------------------------------------------------
+ Intel(R) ICH9 Family 2 port Serial ATA Storage Controller 1 - 2921 [ATA]
- ATA Channel 0 (0)
- ATA Channel 1 (1)
+ Intel(R) ICH9 Family 2 port Serial ATA Storage Controller 2 - 2926 [ATA]
+ ATA Channel 0 (0)
- TSSTcorp CDDVDW SH-S202H ATA Device
- SAMSUNG HD321KJ ATA Device
- ATA Channel 1 (1)
+ PCI Standardní dvoukanálový řadič IDE [ATA]
- ATA Channel 0 (0)
- ATA Channel 1 (1)
-- Disk List ---------------------------------------------------------------
(1) SAMSUNG HD321KJ : 320.0 GB [0/2/0, pd1]
(2) TOSHIBA MK5059GSXP : 500.1 GB [5/X/X, sp1] (V=3538, P=0902)
----------------------------------------------------------------------------
(1) SAMSUNG HD321KJ
----------------------------------------------------------------------------
Model : SAMSUNG HD321KJ
Firmware : CP100-11
Serial Number : S0MQJDQPA00273
Disk Size : 320.0 GB (8.4/137.4/320.0)
Buffer Size : 16384 KB
Queue Depth : 32
# of Sectors : 625140335
Rotation Rate : Neznámy údaj
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ATA8-ACS version 3b
Transfer Mode : SATA/300
Power On Hours : 7199 hod.
Power On Count : 2408 krát
Temparature : 37 C (98 F)
Health Status : Dobrý
Features : S.M.A.R.T., AAM, 48bit LBA, NCQ
APM Level : ----
AAM Level : FE00h [OFF]
-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 100 100 _51 000000000000 Počet chyb čtení
03 100 100 _15 000000001500 Čas na roztočení ploten
04 _96 _96 __0 0000000011A3 Počet spuštění/zastavení
05 253 253 _10 000000000000 Počet přemapovaných sektorů
07 253 253 _51 000000000000 Počet chybných hledání
08 253 253 _15 000000000000 Čas potřebný na vyhledání
09 100 100 __0 000000001C1F Hodin v činnosti
0A 253 253 _51 000000000000 Počet opakovaných pokusů o roztočení ploten
0B 253 253 __0 000000000000 Počet pokusů o překalibrování
0C _98 _98 __0 000000000968 Počet cyklů zapnutí zařízení
0D 100 100 __0 000000B8E8BA Počet pokusů o softvérové opravení chyb při čtení programů z disku
BB 253 253 __0 000000000000 Ohlášeno neopravitelných chyb
BC 100 100 __0 000000000010 Časový limit příkazu
BE _63 _56 __0 000000000025 Teplota toku vzduchu
C2 127 106 __0 000000000025 Teplota
C3 100 100 __0 000000B8E8BA Počet oprav chybného čtení
C4 253 253 __0 000000000000 Počet udalostí s číslem realokování sektorů
C5 253 253 __0 000000000000 Počet podezřelých sektorů
C6 253 253 __0 000000000000 Počet neopravitelných sektorů
C7 200 200 __0 000000000000 Počet chyb v kontrolním součtu UltraDMA
C8 100 100 __0 000000000000 Počet chyb při zápisu sektorů
C9 100 100 __0 000000000000 Počet chyb při čtení programů z disku
CA 253 253 __0 000000000000 Počet chyb při směrování údajů
-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 0040 3FFF C837 0010 8856 003F 003F 0000 0000 0000
010: 5330 4D51 4A44 5150 4130 3733 3733 2020 2020 2020
020: 0003 8000 0004 4350 3130 3131 3131 5341 4D53 554E
030: 4720 4844 3332 314B 4A20 2020 2020 2020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 0000 2F00
050: 4000 0200 0200 0007 3FFF 003F 003F FC10 00FB 0110
060: FFFF 0FFF 0000 0007 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 0706 0706 0000 004C 0040
080: 01F8 0052 746B 7F01 4123 BC01 BC01 4123 20FF 0038
090: 0038 0000 FFFE 0000 FE00 0000 0000 0000 0000 0000
100: E26F 2542 0000 0000 0000 0000 0000 0000 5000 0F00
110: DBA0 0273 0000 0000 0000 0000 0000 0000 0000 4014
120: 4014 0000 0000 0000 0000 0000 0000 0000 0029 0000
130: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
140: FFFF 0400 0E00 0003 0000 0300 0300 2400 6A20 3431
150: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 003F 003F 0000 0000 0000
210: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
220: 0000 0000 100F 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0001 0000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 F8A5
----------------------------------------------------------------------------
(2) TOSHIBA MK5059GSXP
----------------------------------------------------------------------------
Enclosure : H550 USB 2.0 Drive USB Device (V=3538, P=0902, sp1)
Model : TOSHIBA MK5059GSXP
Firmware : GN001U
Serial Number : 71D8S0ZYS
Disk Size : 500.1 GB (8.4/137.4/500.1)
Buffer Size : 8192 KB
Queue Depth : 32
# of Sectors : 976773168
Rotation Rate : 5400 RPM
Interface : USB (Serial ATA)
Major Version : ATA8-ACS
Minor Version : ----
Transfer Mode : SATA/300
Power On Hours : 61 hod.
Power On Count : 36 krát
Temparature : 31 C (87 F)
Health Status : Dobrý
Features : S.M.A.R.T., APM, 48bit LBA, NCQ
APM Level : 0080h [ON]
AAM Level : ----
-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 100 100 _50 000000000000 Počet chyb čtení
02 100 100 _50 000000000000 Průchodnost disku
03 100 100 __1 000000000CD4 Čas na roztočení ploten
04 100 100 __0 00000000013C Počet spuštění/zastavení
05 100 100 _50 000000000000 Počet přemapovaných sektorů
07 100 100 _50 000000000000 Počet chybných hledání
08 100 100 _50 000000000000 Čas potřebný na vyhledání
09 100 100 __0 00000000003D Hodin v činnosti
0A 106 100 _30 000000000000 Počet opakovaných pokusů o roztočení ploten
0C 100 100 __0 000000000024 Počet cyklů zapnutí zařízení
BF 100 100 __0 000000000000 Počet udalostí zaznamenaných otřesovým senzorem
C0 100 100 __0 000000000008 Počet vypnutí disku
C1 100 100 __0 000000000365 Počet cyklů načítání/vymazání
C2 100 100 __0 00260012001F Teplota
C4 100 100 __0 000000000000 Počet udalostí s číslem realokování sektorů
C5 100 100 __0 000000000000 Počet podezřelých sektorů
C6 100 100 __0 000000000000 Počet neopravitelných sektorů
C7 200 200 __0 000000000000 Počet chyb v kontrolním součtu UltraDMA
DC 100 100 __0 00000000006C Posunutí disku vůči ose
DE 100 100 __0 000000000008 Počet hodin zalažení budoucího mechanismu magnetických hlav
DF 100 100 __0 000000000000 Zatížení budiče magnetických hlav způsobené opakovanými úkony
E0 100 100 __0 000000000000 Zatížení budiče magnetických hlav způsobené napětím mechanických částí
E2 100 100 __0 000000000147 Celkový čas zatížení budiče magnetických hlav
F0 100 100 __1 000000000000 Čas nastavování hlaviček - v hodinách
-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 0040 3FFF C837 0010 0000 003F 003F 0000 0000 0000
010: 2020 2020 2020 2020 2020 3144 3144 3853 305A 5953
020: 0000 4000 0000 474E 3030 2020 2020 544F 5348 4942
030: 4120 4D4B 3530 3539 4753 2020 2020 2020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 0000 2F00
050: 4000 0200 0000 0007 3FFF 003F 003F FC10 00FB 0110
060: FFFF 0FFF 0007 0007 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 0F06 0F06 0002 004C 0040
080: 01F8 0000 746B 7D09 6163 BC09 BC09 6163 203F 004E
090: 004E 0080 FFFE 0000 0000 0000 0000 0000 0000 0000
100: 6030 3A38 0000 0000 0000 6003 6003 0000 5000 0393
110: 6598 0775 0000 0000 0000 0000 0000 0000 0000 4018
120: 4018 0000 0000 0000 0000 0000 0000 0000 0021 0000
130: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
140: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
150: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0003 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 003D 003D 0000 0000 0000
210: 0000 0000 0000 0000 0000 0000 0000 1518 0000 0000
220: 0000 0000 101F 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0001 0000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 12A5
Zde je log z toho Malwarebytes:
Malwarebytes Anti-Malware 1.61.0.1400
www.malwarebytes.org
Verze databáze: v2012.05.27.03
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 9.0.8112.16421
CALLER :: CALLER-PC [administrátor]
27.5.2012 20:18:09
mbam-log-2012-05-27 (20-18-09).txt
Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 198011
Uplynulý čas: 2 minut, 3 sekund
Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené soubory: 0
(Žádné škodlivé položky nebyly zjištěny)
(konec)
a zde je log z Crystaldiskinfo:
----------------------------------------------------------------------------
CrystalDiskInfo 4.6.2 (C) 2008-2012 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------
OS : Windows 7 Ultimate Edition SP1 [6.1 Build 7601] (x64)
Date : 2012/05/27 20:21:50
-- Controller Map ----------------------------------------------------------
+ Intel(R) ICH9 Family 2 port Serial ATA Storage Controller 1 - 2921 [ATA]
- ATA Channel 0 (0)
- ATA Channel 1 (1)
+ Intel(R) ICH9 Family 2 port Serial ATA Storage Controller 2 - 2926 [ATA]
+ ATA Channel 0 (0)
- TSSTcorp CDDVDW SH-S202H ATA Device
- SAMSUNG HD321KJ ATA Device
- ATA Channel 1 (1)
+ PCI Standardní dvoukanálový řadič IDE [ATA]
- ATA Channel 0 (0)
- ATA Channel 1 (1)
-- Disk List ---------------------------------------------------------------
(1) SAMSUNG HD321KJ : 320.0 GB [0/2/0, pd1]
(2) TOSHIBA MK5059GSXP : 500.1 GB [5/X/X, sp1] (V=3538, P=0902)
----------------------------------------------------------------------------
(1) SAMSUNG HD321KJ
----------------------------------------------------------------------------
Model : SAMSUNG HD321KJ
Firmware : CP100-11
Serial Number : S0MQJDQPA00273
Disk Size : 320.0 GB (8.4/137.4/320.0)
Buffer Size : 16384 KB
Queue Depth : 32
# of Sectors : 625140335
Rotation Rate : Neznámy údaj
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ATA8-ACS version 3b
Transfer Mode : SATA/300
Power On Hours : 7199 hod.
Power On Count : 2408 krát
Temparature : 37 C (98 F)
Health Status : Dobrý
Features : S.M.A.R.T., AAM, 48bit LBA, NCQ
APM Level : ----
AAM Level : FE00h [OFF]
-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 100 100 _51 000000000000 Počet chyb čtení
03 100 100 _15 000000001500 Čas na roztočení ploten
04 _96 _96 __0 0000000011A3 Počet spuštění/zastavení
05 253 253 _10 000000000000 Počet přemapovaných sektorů
07 253 253 _51 000000000000 Počet chybných hledání
08 253 253 _15 000000000000 Čas potřebný na vyhledání
09 100 100 __0 000000001C1F Hodin v činnosti
0A 253 253 _51 000000000000 Počet opakovaných pokusů o roztočení ploten
0B 253 253 __0 000000000000 Počet pokusů o překalibrování
0C _98 _98 __0 000000000968 Počet cyklů zapnutí zařízení
0D 100 100 __0 000000B8E8BA Počet pokusů o softvérové opravení chyb při čtení programů z disku
BB 253 253 __0 000000000000 Ohlášeno neopravitelných chyb
BC 100 100 __0 000000000010 Časový limit příkazu
BE _63 _56 __0 000000000025 Teplota toku vzduchu
C2 127 106 __0 000000000025 Teplota
C3 100 100 __0 000000B8E8BA Počet oprav chybného čtení
C4 253 253 __0 000000000000 Počet udalostí s číslem realokování sektorů
C5 253 253 __0 000000000000 Počet podezřelých sektorů
C6 253 253 __0 000000000000 Počet neopravitelných sektorů
C7 200 200 __0 000000000000 Počet chyb v kontrolním součtu UltraDMA
C8 100 100 __0 000000000000 Počet chyb při zápisu sektorů
C9 100 100 __0 000000000000 Počet chyb při čtení programů z disku
CA 253 253 __0 000000000000 Počet chyb při směrování údajů
-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 0040 3FFF C837 0010 8856 003F 003F 0000 0000 0000
010: 5330 4D51 4A44 5150 4130 3733 3733 2020 2020 2020
020: 0003 8000 0004 4350 3130 3131 3131 5341 4D53 554E
030: 4720 4844 3332 314B 4A20 2020 2020 2020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 0000 2F00
050: 4000 0200 0200 0007 3FFF 003F 003F FC10 00FB 0110
060: FFFF 0FFF 0000 0007 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 0706 0706 0000 004C 0040
080: 01F8 0052 746B 7F01 4123 BC01 BC01 4123 20FF 0038
090: 0038 0000 FFFE 0000 FE00 0000 0000 0000 0000 0000
100: E26F 2542 0000 0000 0000 0000 0000 0000 5000 0F00
110: DBA0 0273 0000 0000 0000 0000 0000 0000 0000 4014
120: 4014 0000 0000 0000 0000 0000 0000 0000 0029 0000
130: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
140: FFFF 0400 0E00 0003 0000 0300 0300 2400 6A20 3431
150: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 003F 003F 0000 0000 0000
210: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
220: 0000 0000 100F 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0001 0000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 F8A5
----------------------------------------------------------------------------
(2) TOSHIBA MK5059GSXP
----------------------------------------------------------------------------
Enclosure : H550 USB 2.0 Drive USB Device (V=3538, P=0902, sp1)
Model : TOSHIBA MK5059GSXP
Firmware : GN001U
Serial Number : 71D8S0ZYS
Disk Size : 500.1 GB (8.4/137.4/500.1)
Buffer Size : 8192 KB
Queue Depth : 32
# of Sectors : 976773168
Rotation Rate : 5400 RPM
Interface : USB (Serial ATA)
Major Version : ATA8-ACS
Minor Version : ----
Transfer Mode : SATA/300
Power On Hours : 61 hod.
Power On Count : 36 krát
Temparature : 31 C (87 F)
Health Status : Dobrý
Features : S.M.A.R.T., APM, 48bit LBA, NCQ
APM Level : 0080h [ON]
AAM Level : ----
-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 100 100 _50 000000000000 Počet chyb čtení
02 100 100 _50 000000000000 Průchodnost disku
03 100 100 __1 000000000CD4 Čas na roztočení ploten
04 100 100 __0 00000000013C Počet spuštění/zastavení
05 100 100 _50 000000000000 Počet přemapovaných sektorů
07 100 100 _50 000000000000 Počet chybných hledání
08 100 100 _50 000000000000 Čas potřebný na vyhledání
09 100 100 __0 00000000003D Hodin v činnosti
0A 106 100 _30 000000000000 Počet opakovaných pokusů o roztočení ploten
0C 100 100 __0 000000000024 Počet cyklů zapnutí zařízení
BF 100 100 __0 000000000000 Počet udalostí zaznamenaných otřesovým senzorem
C0 100 100 __0 000000000008 Počet vypnutí disku
C1 100 100 __0 000000000365 Počet cyklů načítání/vymazání
C2 100 100 __0 00260012001F Teplota
C4 100 100 __0 000000000000 Počet udalostí s číslem realokování sektorů
C5 100 100 __0 000000000000 Počet podezřelých sektorů
C6 100 100 __0 000000000000 Počet neopravitelných sektorů
C7 200 200 __0 000000000000 Počet chyb v kontrolním součtu UltraDMA
DC 100 100 __0 00000000006C Posunutí disku vůči ose
DE 100 100 __0 000000000008 Počet hodin zalažení budoucího mechanismu magnetických hlav
DF 100 100 __0 000000000000 Zatížení budiče magnetických hlav způsobené opakovanými úkony
E0 100 100 __0 000000000000 Zatížení budiče magnetických hlav způsobené napětím mechanických částí
E2 100 100 __0 000000000147 Celkový čas zatížení budiče magnetických hlav
F0 100 100 __1 000000000000 Čas nastavování hlaviček - v hodinách
-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 0040 3FFF C837 0010 0000 003F 003F 0000 0000 0000
010: 2020 2020 2020 2020 2020 3144 3144 3853 305A 5953
020: 0000 4000 0000 474E 3030 2020 2020 544F 5348 4942
030: 4120 4D4B 3530 3539 4753 2020 2020 2020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 0000 2F00
050: 4000 0200 0000 0007 3FFF 003F 003F FC10 00FB 0110
060: FFFF 0FFF 0007 0007 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 0F06 0F06 0002 004C 0040
080: 01F8 0000 746B 7D09 6163 BC09 BC09 6163 203F 004E
090: 004E 0080 FFFE 0000 0000 0000 0000 0000 0000 0000
100: 6030 3A38 0000 0000 0000 6003 6003 0000 5000 0393
110: 6598 0775 0000 0000 0000 0000 0000 0000 0000 4018
120: 4018 0000 0000 0000 0000 0000 0000 0000 0021 0000
130: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
140: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
150: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0003 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 003D 003D 0000 0000 0000
210: 0000 0000 0000 0000 0000 0000 0000 1518 0000 0000
220: 0000 0000 101F 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0001 0000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 12A5
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43287
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu Logu - Zamrznutí PC
0D 100 100 __0 000000B8E8BA Počet pokusů o softvérové opravení chyb při čtení programů z disku , hm tohle je zajímavý...
ten 1. disk
Kontaktuj MiliNesse , zda by se Ti na to kouknul...
Stáhni si TDSSKiller
Na svojí plochu.Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller.2.2.7.1._(datum)_log.txt , vlož sem prosím celý obsah logu.
Vypni rez. ochranu u antiviru a antispywaru,příp. firewall..
Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud budou problémy , spusť ho v nouz. režimu.
Upozornění : Může se stát, že po aplikaci Combofixu a restartu počítače, Windows nenaběhnou , nebo nenajede plocha , budou problémy s připojením, pak znovu restartuj počítač, pokud to nepomůže , po restartu mačkej klávesu F8 a pak zvol poslední známou funkční konfiguraci. , či použij bod obnovy.
ten 1. disk
Kontaktuj MiliNesse , zda by se Ti na to kouknul...
Stáhni si TDSSKiller
Na svojí plochu.Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller.2.2.7.1._(datum)_log.txt , vlož sem prosím celý obsah logu.
Vypni rez. ochranu u antiviru a antispywaru,příp. firewall..
Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud budou problémy , spusť ho v nouz. režimu.
Upozornění : Může se stát, že po aplikaci Combofixu a restartu počítače, Windows nenaběhnou , nebo nenajede plocha , budou problémy s připojením, pak znovu restartuj počítač, pokud to nepomůže , po restartu mačkej klávesu F8 a pak zvol poslední známou funkční konfiguraci. , či použij bod obnovy.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Prosím o kontrolu Logu - Zamrznutí PC
log z TDSS KILLER :
22:38:01.0984 2124 TDSS rootkit removing tool 2.7.37.0 May 23 2012 08:15:30
22:38:02.0081 2124 ============================================================
22:38:02.0081 2124 Current date / time: 2012/05/27 22:38:02.0081
22:38:02.0081 2124 SystemInfo:
22:38:02.0081 2124
22:38:02.0081 2124 OS Version: 6.1.7601 ServicePack: 1.0
22:38:02.0081 2124 Product type: Workstation
22:38:02.0081 2124 ComputerName: CALLER-PC
22:38:02.0081 2124 UserName: CALLER
22:38:02.0081 2124 Windows directory: C:\Windows
22:38:02.0081 2124 System windows directory: C:\Windows
22:38:02.0081 2124 Running under WOW64
22:38:02.0081 2124 Processor architecture: Intel x64
22:38:02.0081 2124 Number of processors: 4
22:38:02.0081 2124 Page size: 0x1000
22:38:02.0081 2124 Boot type: Normal boot
22:38:02.0081 2124 ============================================================
22:38:03.0114 2124 Drive \Device\Harddisk0\DR0 - Size: 0x4A85C4DE00 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
22:38:06.0835 2124 Drive \Device\Harddisk5\DR5 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
22:38:06.0837 2124 ============================================================
22:38:06.0837 2124 \Device\Harddisk0\DR0:
22:38:06.0854 2124 MBR partitions:
22:38:06.0854 2124 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x4FF5864
22:38:06.0872 2124 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x4FF58E2, BlocksNum 0x20437DDF
22:38:06.0872 2124 \Device\Harddisk5\DR5:
22:38:06.0878 2124 MBR partitions:
22:38:06.0878 2124 \Device\Harddisk5\DR5\Partition0: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x3A384C02
22:38:06.0879 2124 ============================================================
22:38:06.0914 2124 C: <-> \Device\Harddisk0\DR0\Partition0
22:38:06.0933 2124 D: <-> \Device\Harddisk0\DR0\Partition1
22:38:06.0953 2124 J: <-> \Device\Harddisk5\DR5\Partition0
22:38:06.0953 2124 ============================================================
22:38:06.0954 2124 Initialize success
22:38:06.0954 2124 ============================================================
22:38:45.0498 2732 ============================================================
22:38:45.0498 2732 Scan started
22:38:45.0498 2732 Mode: Manual;
22:38:45.0498 2732 ============================================================
22:38:46.0558 2732 1394ohci (a87d604aea360176311474c87a63bb88) C:\Windows\system32\drivers\1394ohci.sys
22:38:46.0558 2732 1394ohci - ok
22:38:46.0590 2732 ACPI (d81d9e70b8a6dd14d42d7b4efa65d5f2) C:\Windows\system32\drivers\ACPI.sys
22:38:46.0590 2732 ACPI - ok
22:38:46.0621 2732 AcpiPmi (99f8e788246d495ce3794d7e7821d2ca) C:\Windows\system32\drivers\acpipmi.sys
22:38:46.0621 2732 AcpiPmi - ok
22:38:46.0777 2732 AdobeFlashPlayerUpdateSvc (76d5a3d2a50402a0b9b6ed13c4371e79) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
22:38:46.0777 2732 AdobeFlashPlayerUpdateSvc - ok
22:38:46.0824 2732 adp94xx (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\DRIVERS\adp94xx.sys
22:38:46.0839 2732 adp94xx - ok
22:38:46.0855 2732 adpahci (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\DRIVERS\adpahci.sys
22:38:46.0855 2732 adpahci - ok
22:38:46.0870 2732 adpu320 (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\DRIVERS\adpu320.sys
22:38:46.0870 2732 adpu320 - ok
22:38:46.0917 2732 AeLookupSvc (4b78b431f225fd8624c5655cb1de7b61) C:\Windows\System32\aelupsvc.dll
22:38:46.0917 2732 AeLookupSvc - ok
22:38:46.0980 2732 AFD (1c7857b62de5994a75b054a9fd4c3825) C:\Windows\system32\drivers\afd.sys
22:38:46.0980 2732 AFD - ok
22:38:47.0011 2732 agp440 (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\drivers\agp440.sys
22:38:47.0011 2732 agp440 - ok
22:38:47.0026 2732 ALG (3290d6946b5e30e70414990574883ddb) C:\Windows\System32\alg.exe
22:38:47.0026 2732 ALG - ok
22:38:47.0058 2732 aliide (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\drivers\aliide.sys
22:38:47.0058 2732 aliide - ok
22:38:47.0104 2732 AMD External Events Utility (20c8a3e435a47f0408a1ea674afa6194) C:\Windows\system32\atiesrxx.exe
22:38:47.0104 2732 AMD External Events Utility - ok
22:38:47.0120 2732 amdide (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\drivers\amdide.sys
22:38:47.0120 2732 amdide - ok
22:38:47.0136 2732 AmdK8 (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\DRIVERS\amdk8.sys
22:38:47.0136 2732 AmdK8 - ok
22:38:47.0572 2732 amdkmdag (0b45c18b0f3ee996d25baa4e74884b83) C:\Windows\system32\DRIVERS\atikmdag.sys
22:38:47.0666 2732 amdkmdag - ok
22:38:48.0040 2732 amdkmdap (0e57258e5cc4cc7a9a9a877afdf0cec6) C:\Windows\system32\DRIVERS\atikmpag.sys
22:38:48.0040 2732 amdkmdap - ok
22:38:48.0087 2732 AmdPPM (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\DRIVERS\amdppm.sys
22:38:48.0087 2732 AmdPPM - ok
22:38:48.0150 2732 amdsata (d4121ae6d0c0e7e13aa221aa57ef2d49) C:\Windows\system32\drivers\amdsata.sys
22:38:48.0150 2732 amdsata - ok
22:38:48.0165 2732 amdsbs (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\DRIVERS\amdsbs.sys
22:38:48.0181 2732 amdsbs - ok
22:38:48.0181 2732 amdxata (540daf1cea6094886d72126fd7c33048) C:\Windows\system32\drivers\amdxata.sys
22:38:48.0181 2732 amdxata - ok
22:38:48.0243 2732 AppID (89a69c3f2f319b43379399547526d952) C:\Windows\system32\drivers\appid.sys
22:38:48.0243 2732 AppID - ok
22:38:48.0259 2732 AppIDSvc (0bc381a15355a3982216f7172f545de1) C:\Windows\System32\appidsvc.dll
22:38:48.0259 2732 AppIDSvc - ok
22:38:48.0274 2732 Appinfo (3977d4a871ca0d4f2ed1e7db46829731) C:\Windows\System32\appinfo.dll
22:38:48.0274 2732 Appinfo - ok
22:38:48.0306 2732 AppMgmt (4aba3e75a76195a3e38ed2766c962899) C:\Windows\System32\appmgmts.dll
22:38:48.0306 2732 AppMgmt - ok
22:38:48.0321 2732 arc (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\DRIVERS\arc.sys
22:38:48.0321 2732 arc - ok
22:38:48.0337 2732 arcsas (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\DRIVERS\arcsas.sys
22:38:48.0337 2732 arcsas - ok
22:38:48.0337 2732 AsyncMac (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys
22:38:48.0337 2732 AsyncMac - ok
22:38:48.0368 2732 atapi (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\drivers\atapi.sys
22:38:48.0368 2732 atapi - ok
22:38:48.0430 2732 AtiHDAudioService (24464b908e143d2561e9e452fee97309) C:\Windows\system32\drivers\AtihdW76.sys
22:38:48.0446 2732 AtiHDAudioService - ok
22:38:48.0508 2732 AudioEndpointBuilder (f23fef6d569fce88671949894a8becf1) C:\Windows\System32\Audiosrv.dll
22:38:48.0508 2732 AudioEndpointBuilder - ok
22:38:48.0508 2732 AudioSrv (f23fef6d569fce88671949894a8becf1) C:\Windows\System32\Audiosrv.dll
22:38:48.0508 2732 AudioSrv - ok
22:38:48.0571 2732 AxInstSV (a6bf31a71b409dfa8cac83159e1e2aff) C:\Windows\System32\AxInstSV.dll
22:38:48.0571 2732 AxInstSV - ok
22:38:48.0602 2732 b06bdrv (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\DRIVERS\bxvbda.sys
22:38:48.0618 2732 b06bdrv - ok
22:38:48.0633 2732 b57nd60a (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys
22:38:48.0649 2732 b57nd60a - ok
22:38:48.0727 2732 BBSvc (47480f4260dae9aa589bcaf924b3767a) C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BBSvc.exe
22:38:48.0727 2732 BBSvc - ok
22:38:48.0758 2732 BBUpdate (6bf743cbf3bcd09dab79245e60e1ae62) C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\SeaPort.exe
22:38:48.0758 2732 BBUpdate - ok
22:38:48.0789 2732 BDESVC (fde360167101b4e45a96f939f388aeb0) C:\Windows\System32\bdesvc.dll
22:38:48.0789 2732 BDESVC - ok
22:38:48.0805 2732 Beep (16a47ce2decc9b099349a5f840654746) C:\Windows\system32\drivers\Beep.sys
22:38:48.0805 2732 Beep - ok
22:38:48.0867 2732 BFE (82974d6a2fd19445cc5171fc378668a4) C:\Windows\System32\bfe.dll
22:38:48.0867 2732 BFE - ok
22:38:48.0930 2732 BITS (1ea7969e3271cbc59e1730697dc74682) C:\Windows\System32\qmgr.dll
22:38:48.0945 2732 BITS - ok
22:38:49.0054 2732 blbdrive (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\DRIVERS\blbdrive.sys
22:38:49.0054 2732 blbdrive - ok
22:38:49.0101 2732 bowser (6c02a83164f5cc0a262f4199f0871cf5) C:\Windows\system32\DRIVERS\bowser.sys
22:38:49.0101 2732 bowser - ok
22:38:49.0101 2732 BrFiltLo (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\DRIVERS\BrFiltLo.sys
22:38:49.0101 2732 BrFiltLo - ok
22:38:49.0101 2732 BrFiltUp (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\DRIVERS\BrFiltUp.sys
22:38:49.0101 2732 BrFiltUp - ok
22:38:49.0148 2732 Browser (8ef0d5c41ec907751b8429162b1239ed) C:\Windows\System32\browser.dll
22:38:49.0148 2732 Browser - ok
22:38:49.0164 2732 Brserid (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys
22:38:49.0164 2732 Brserid - ok
22:38:49.0179 2732 BrSerWdm (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys
22:38:49.0179 2732 BrSerWdm - ok
22:38:49.0179 2732 BrUsbMdm (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys
22:38:49.0179 2732 BrUsbMdm - ok
22:38:49.0179 2732 BrUsbSer (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys
22:38:49.0179 2732 BrUsbSer - ok
22:38:49.0179 2732 BTHMODEM (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\DRIVERS\bthmodem.sys
22:38:49.0195 2732 BTHMODEM - ok
22:38:49.0210 2732 bthserv (95f9c2976059462cbbf227f7aab10de9) C:\Windows\system32\bthserv.dll
22:38:49.0210 2732 bthserv - ok
22:38:49.0226 2732 cdfs (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys
22:38:49.0226 2732 cdfs - ok
22:38:49.0273 2732 cdrom (f036ce71586e93d94dab220d7bdf4416) C:\Windows\system32\drivers\cdrom.sys
22:38:49.0273 2732 cdrom - ok
22:38:49.0320 2732 CertPropSvc (f17d1d393bbc69c5322fbfafaca28c7f) C:\Windows\System32\certprop.dll
22:38:49.0320 2732 CertPropSvc - ok
22:38:49.0335 2732 circlass (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\DRIVERS\circlass.sys
22:38:49.0335 2732 circlass - ok
22:38:49.0366 2732 CLFS (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys
22:38:49.0366 2732 CLFS - ok
22:38:49.0491 2732 clr_optimization_v2.0.50727_32 (d88040f816fda31c3b466f0fa0918f29) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
22:38:49.0491 2732 clr_optimization_v2.0.50727_32 - ok
22:38:49.0600 2732 clr_optimization_v2.0.50727_64 (d1ceea2b47cb998321c579651ce3e4f8) C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
22:38:49.0600 2732 clr_optimization_v2.0.50727_64 - ok
22:38:49.0756 2732 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
22:38:49.0756 2732 clr_optimization_v4.0.30319_32 - ok
22:38:49.0834 2732 clr_optimization_v4.0.30319_64 (c6f9af94dcd58122a4d7e89db6bed29d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
22:38:49.0834 2732 clr_optimization_v4.0.30319_64 - ok
22:38:49.0881 2732 CmBatt (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\DRIVERS\CmBatt.sys
22:38:49.0881 2732 CmBatt - ok
22:38:49.0897 2732 cmdide (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\drivers\cmdide.sys
22:38:49.0897 2732 cmdide - ok
22:38:49.0944 2732 CNG (c4943b6c962e4b82197542447ad599f4) C:\Windows\system32\Drivers\cng.sys
22:38:49.0944 2732 CNG - ok
22:38:49.0959 2732 Compbatt (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\DRIVERS\compbatt.sys
22:38:49.0959 2732 Compbatt - ok
22:38:50.0006 2732 CompositeBus (03edb043586cceba243d689bdda370a8) C:\Windows\system32\drivers\CompositeBus.sys
22:38:50.0006 2732 CompositeBus - ok
22:38:50.0022 2732 COMSysApp - ok
22:38:50.0037 2732 cpuz135 (c08063f052308b6f5882482615387f30) C:\Windows\system32\drivers\cpuz135_x64.sys
22:38:50.0037 2732 cpuz135 - ok
22:38:50.0053 2732 crcdisk (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\DRIVERS\crcdisk.sys
22:38:50.0053 2732 crcdisk - ok
22:38:50.0240 2732 CryptSvc (15597883fbe9b056f276ada3ad87d9af) C:\Windows\system32\cryptsvc.dll
22:38:50.0240 2732 CryptSvc - ok
22:38:50.0302 2732 CSC (54da3dfd29ed9f1619b6f53f3ce55e49) C:\Windows\system32\drivers\csc.sys
22:38:50.0302 2732 CSC - ok
22:38:50.0349 2732 CscService (3ab183ab4d2c79dcf459cd2c1266b043) C:\Windows\System32\cscsvc.dll
22:38:50.0349 2732 CscService - ok
22:38:50.0396 2732 DcomLaunch (5c627d1b1138676c0a7ab2c2c190d123) C:\Windows\system32\rpcss.dll
22:38:50.0412 2732 DcomLaunch - ok
22:38:50.0427 2732 defragsvc (3cec7631a84943677aa8fa8ee5b6b43d) C:\Windows\System32\defragsvc.dll
22:38:50.0443 2732 defragsvc - ok
22:38:50.0568 2732 DfsC (9bb2ef44eaa163b29c4a4587887a0fe4) C:\Windows\system32\Drivers\dfsc.sys
22:38:50.0568 2732 DfsC - ok
22:38:50.0599 2732 Dhcp (43d808f5d9e1a18e5eeb5ebc83969e4e) C:\Windows\system32\dhcpcore.dll
22:38:50.0614 2732 Dhcp - ok
22:38:50.0630 2732 discache (13096b05847ec78f0977f2c0f79e9ab3) C:\Windows\system32\drivers\discache.sys
22:38:50.0630 2732 discache - ok
22:38:50.0646 2732 Disk (9819eee8b5ea3784ec4af3b137a5244c) C:\Windows\system32\DRIVERS\disk.sys
22:38:50.0646 2732 Disk - ok
22:38:50.0677 2732 Dnscache (16835866aaa693c7d7fceba8fff706e4) C:\Windows\System32\dnsrslvr.dll
22:38:50.0677 2732 Dnscache - ok
22:38:50.0708 2732 dot3svc (b1fb3ddca0fdf408750d5843591afbc6) C:\Windows\System32\dot3svc.dll
22:38:50.0708 2732 dot3svc - ok
22:38:50.0739 2732 DPS (b26f4f737e8f9df4f31af6cf31d05820) C:\Windows\system32\dps.dll
22:38:50.0739 2732 DPS - ok
22:38:50.0786 2732 drmkaud (9b19f34400d24df84c858a421c205754) C:\Windows\system32\drivers\drmkaud.sys
22:38:50.0786 2732 drmkaud - ok
22:38:50.0848 2732 DXGKrnl (f5bee30450e18e6b83a5012c100616fd) C:\Windows\System32\drivers\dxgkrnl.sys
22:38:50.0848 2732 DXGKrnl - ok
22:38:50.0880 2732 EapHost (e2dda8726da9cb5b2c4000c9018a9633) C:\Windows\System32\eapsvc.dll
22:38:50.0880 2732 EapHost - ok
22:38:51.0004 2732 ebdrv (dc5d737f51be844d8c82c695eb17372f) C:\Windows\system32\DRIVERS\evbda.sys
22:38:51.0036 2732 ebdrv - ok
22:38:51.0285 2732 EFS (c118a82cd78818c29ab228366ebf81c3) C:\Windows\System32\lsass.exe
22:38:51.0285 2732 EFS - ok
22:38:51.0394 2732 ehRecvr (c4002b6b41975f057d98c439030cea07) C:\Windows\ehome\ehRecvr.exe
22:38:51.0394 2732 ehRecvr - ok
22:38:51.0426 2732 ehSched (4705e8ef9934482c5bb488ce28afc681) C:\Windows\ehome\ehsched.exe
22:38:51.0426 2732 ehSched - ok
22:38:51.0550 2732 elxstor (0e5da5369a0fcaea12456dd852545184) C:\Windows\system32\DRIVERS\elxstor.sys
22:38:51.0550 2732 elxstor - ok
22:38:51.0566 2732 ErrDev (34a3c54752046e79a126e15c51db409b) C:\Windows\system32\drivers\errdev.sys
22:38:51.0566 2732 ErrDev - ok
22:38:51.0613 2732 EventSystem (4166f82be4d24938977dd1746be9b8a0) C:\Windows\system32\es.dll
22:38:51.0613 2732 EventSystem - ok
22:38:51.0644 2732 exfat (a510c654ec00c1e9bdd91eeb3a59823b) C:\Windows\system32\drivers\exfat.sys
22:38:51.0644 2732 exfat - ok
22:38:51.0644 2732 fastfat (0adc83218b66a6db380c330836f3e36d) C:\Windows\system32\drivers\fastfat.sys
22:38:51.0660 2732 fastfat - ok
22:38:51.0706 2732 Fax (dbefd454f8318a0ef691fdd2eaab44eb) C:\Windows\system32\fxssvc.exe
22:38:51.0722 2732 Fax - ok
22:38:51.0722 2732 fdc (d765d19cd8ef61f650c384f62fac00ab) C:\Windows\system32\DRIVERS\fdc.sys
22:38:51.0722 2732 fdc - ok
22:38:51.0738 2732 fdPHost (0438cab2e03f4fb61455a7956026fe86) C:\Windows\system32\fdPHost.dll
22:38:51.0738 2732 fdPHost - ok
22:38:51.0738 2732 FDResPub (802496cb59a30349f9a6dd22d6947644) C:\Windows\system32\fdrespub.dll
22:38:51.0753 2732 FDResPub - ok
22:38:51.0753 2732 FileInfo (655661be46b5f5f3fd454e2c3095b930) C:\Windows\system32\drivers\fileinfo.sys
22:38:51.0753 2732 FileInfo - ok
22:38:51.0753 2732 Filetrace (5f671ab5bc87eea04ec38a6cd5962a47) C:\Windows\system32\drivers\filetrace.sys
22:38:51.0753 2732 Filetrace - ok
22:38:51.0753 2732 flpydisk (c172a0f53008eaeb8ea33fe10e177af5) C:\Windows\system32\DRIVERS\flpydisk.sys
22:38:51.0753 2732 flpydisk - ok
22:38:51.0784 2732 FltMgr (da6b67270fd9db3697b20fce94950741) C:\Windows\system32\drivers\fltmgr.sys
22:38:51.0784 2732 FltMgr - ok
22:38:51.0862 2732 FontCache (5c4cb4086fb83115b153e47add961a0c) C:\Windows\system32\FntCache.dll
22:38:51.0862 2732 FontCache - ok
22:38:51.0956 2732 FontCache3.0.0.0 (a8b7f3818ab65695e3a0bb3279f6dce6) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
22:38:51.0956 2732 FontCache3.0.0.0 - ok
22:38:52.0050 2732 FsDepends (d43703496149971890703b4b1b723eac) C:\Windows\system32\drivers\FsDepends.sys
22:38:52.0050 2732 FsDepends - ok
22:38:52.0096 2732 fssfltr (07da62c960ddccc2d35836aeab4fc578) C:\Windows\system32\DRIVERS\fssfltr.sys
22:38:52.0096 2732 fssfltr - ok
22:38:52.0237 2732 fsssvc (28ddeeec44e988657b732cf404d504cb) C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe
22:38:52.0237 2732 fsssvc - ok
22:38:52.0549 2732 Fs_Rec (6bd9295cc032dd3077c671fccf579a7b) C:\Windows\system32\drivers\Fs_Rec.sys
22:38:52.0549 2732 Fs_Rec - ok
22:38:52.0658 2732 Futuremark SystemInfo Service (ae6f0a6562d3eccd613de1fd8612ac4e) C:\Program Files (x86)\Futuremark\Futuremark SystemInfo\FMSISvc.exe
22:38:52.0658 2732 Futuremark SystemInfo Service - ok
22:38:52.0705 2732 fvevol (1f7b25b858fa27015169fe95e54108ed) C:\Windows\system32\DRIVERS\fvevol.sys
22:38:52.0705 2732 fvevol - ok
22:38:52.0736 2732 gagp30kx (8c778d335c9d272cfd3298ab02abe3b6) C:\Windows\system32\DRIVERS\gagp30kx.sys
22:38:52.0736 2732 gagp30kx - ok
22:38:52.0783 2732 gpsvc (277bbc7e1aa1ee957f573a10eca7ef3a) C:\Windows\System32\gpsvc.dll
22:38:52.0798 2732 gpsvc - ok
22:38:52.0798 2732 hcw85cir (f2523ef6460fc42405b12248338ab2f0) C:\Windows\system32\drivers\hcw85cir.sys
22:38:52.0798 2732 hcw85cir - ok
22:38:52.0861 2732 HdAudAddService (975761c778e33cd22498059b91e7373a) C:\Windows\system32\drivers\HdAudio.sys
22:38:52.0861 2732 HdAudAddService - ok
22:38:52.0876 2732 HDAudBus (97bfed39b6b79eb12cddbfeed51f56bb) C:\Windows\system32\drivers\HDAudBus.sys
22:38:52.0876 2732 HDAudBus - ok
22:38:52.0892 2732 HidBatt (78e86380454a7b10a5eb255dc44a355f) C:\Windows\system32\DRIVERS\HidBatt.sys
22:38:52.0892 2732 HidBatt - ok
22:38:52.0892 2732 HidBth (7fd2a313f7afe5c4dab14798c48dd104) C:\Windows\system32\DRIVERS\hidbth.sys
22:38:52.0892 2732 HidBth - ok
22:38:52.0908 2732 HidIr (0a77d29f311b88cfae3b13f9c1a73825) C:\Windows\system32\DRIVERS\hidir.sys
22:38:52.0908 2732 HidIr - ok
22:38:52.0939 2732 hidserv (bd9eb3958f213f96b97b1d897dee006d) C:\Windows\system32\hidserv.dll
22:38:52.0939 2732 hidserv - ok
22:38:52.0970 2732 HidUsb (9592090a7e2b61cd582b612b6df70536) C:\Windows\system32\drivers\hidusb.sys
22:38:52.0970 2732 HidUsb - ok
22:38:53.0001 2732 hkmsvc (387e72e739e15e3d37907a86d9ff98e2) C:\Windows\system32\kmsvc.dll
22:38:53.0001 2732 hkmsvc - ok
22:38:53.0017 2732 HomeGroupListener (efdfb3dd38a4376f93e7985173813abd) C:\Windows\system32\ListSvc.dll
22:38:53.0017 2732 HomeGroupListener - ok
22:38:53.0048 2732 HomeGroupProvider (908acb1f594274965a53926b10c81e89) C:\Windows\system32\provsvc.dll
22:38:53.0064 2732 HomeGroupProvider - ok
22:38:53.0079 2732 HpSAMD (39d2abcd392f3d8a6dce7b60ae7b8efc) C:\Windows\system32\drivers\HpSAMD.sys
22:38:53.0079 2732 HpSAMD - ok
22:38:53.0157 2732 HTTP (0ea7de1acb728dd5a369fd742d6eee28) C:\Windows\system32\drivers\HTTP.sys
22:38:53.0157 2732 HTTP - ok
22:38:53.0173 2732 hwpolicy (a5462bd6884960c9dc85ed49d34ff392) C:\Windows\system32\drivers\hwpolicy.sys
22:38:53.0173 2732 hwpolicy - ok
22:38:53.0188 2732 i8042prt (fa55c73d4affa7ee23ac4be53b4592d3) C:\Windows\system32\drivers\i8042prt.sys
22:38:53.0188 2732 i8042prt - ok
22:38:53.0235 2732 iaStorV (aaaf44db3bd0b9d1fb6969b23ecc8366) C:\Windows\system32\drivers\iaStorV.sys
22:38:53.0235 2732 iaStorV - ok
22:38:53.0360 2732 idsvc (5988fc40f8db5b0739cd1e3a5d0d78bd) C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
22:38:53.0360 2732 idsvc - ok
22:38:53.0376 2732 iirsp (5c18831c61933628f5bb0ea2675b9d21) C:\Windows\system32\DRIVERS\iirsp.sys
22:38:53.0376 2732 iirsp - ok
22:38:53.0438 2732 IKEEXT (fcd84c381e0140af901e58d48882d26b) C:\Windows\System32\ikeext.dll
22:38:53.0438 2732 IKEEXT - ok
22:38:53.0594 2732 IntcAzAudAddService (dab7318ccfa8081200d5b7b486793f74) C:\Windows\system32\drivers\RTKVHD64.sys
22:38:53.0594 2732 IntcAzAudAddService - ok
22:38:53.0890 2732 intelide (f00f20e70c6ec3aa366910083a0518aa) C:\Windows\system32\drivers\intelide.sys
22:38:53.0890 2732 intelide - ok
22:38:53.0922 2732 intelppm (ada036632c664caa754079041cf1f8c1) C:\Windows\system32\DRIVERS\intelppm.sys
22:38:53.0922 2732 intelppm - ok
22:38:53.0953 2732 IPBusEnum (098a91c54546a3b878dad6a7e90a455b) C:\Windows\system32\ipbusenum.dll
22:38:53.0953 2732 IPBusEnum - ok
22:38:53.0984 2732 IpFilterDriver (c9f0e1bd74365a8771590e9008d22ab6) C:\Windows\system32\DRIVERS\ipfltdrv.sys
22:38:53.0984 2732 IpFilterDriver - ok
22:38:54.0031 2732 iphlpsvc (a34a587fffd45fa649fba6d03784d257) C:\Windows\System32\iphlpsvc.dll
22:38:54.0031 2732 iphlpsvc - ok
22:38:54.0062 2732 IPMIDRV (0fc1aea580957aa8817b8f305d18ca3a) C:\Windows\system32\drivers\IPMIDrv.sys
22:38:54.0062 2732 IPMIDRV - ok
22:38:54.0078 2732 IPNAT (af9b39a7e7b6caa203b3862582e9f2d0) C:\Windows\system32\drivers\ipnat.sys
22:38:54.0078 2732 IPNAT - ok
22:38:54.0093 2732 IRENUM (3abf5e7213eb28966d55d58b515d5ce9) C:\Windows\system32\drivers\irenum.sys
22:38:54.0093 2732 IRENUM - ok
22:38:54.0109 2732 isapnp (2f7b28dc3e1183e5eb418df55c204f38) C:\Windows\system32\drivers\isapnp.sys
22:38:54.0109 2732 isapnp - ok
22:38:54.0140 2732 iScsiPrt (d931d7309deb2317035b07c9f9e6b0bd) C:\Windows\system32\drivers\msiscsi.sys
22:38:54.0140 2732 iScsiPrt - ok
22:38:54.0171 2732 kbdclass (bc02336f1cba7dcc7d1213bb588a68a5) C:\Windows\system32\drivers\kbdclass.sys
22:38:54.0171 2732 kbdclass - ok
22:38:54.0187 2732 kbdhid (0705eff5b42a9db58548eec3b26bb484) C:\Windows\system32\drivers\kbdhid.sys
22:38:54.0187 2732 kbdhid - ok
22:38:54.0218 2732 KeyIso (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
22:38:54.0218 2732 KeyIso - ok
22:38:54.0265 2732 KMWDFILTER (07071c1e3cd8f0f9114aac8b072ca1e5) C:\Windows\system32\DRIVERS\KMWDFILTER.sys
22:38:54.0265 2732 KMWDFILTER - ok
22:38:54.0280 2732 KSecDD (da1e991a61cfdd755a589e206b97644b) C:\Windows\system32\Drivers\ksecdd.sys
22:38:54.0280 2732 KSecDD - ok
22:38:54.0296 2732 KSecPkg (7e33198d956943a4f11a5474c1e9106f) C:\Windows\system32\Drivers\ksecpkg.sys
22:38:54.0296 2732 KSecPkg - ok
22:38:54.0312 2732 ksthunk (6869281e78cb31a43e969f06b57347c4) C:\Windows\system32\drivers\ksthunk.sys
22:38:54.0312 2732 ksthunk - ok
22:38:54.0343 2732 KtmRm (6ab66e16aa859232f64deb66887a8c9c) C:\Windows\system32\msdtckrm.dll
22:38:54.0358 2732 KtmRm - ok
22:38:54.0390 2732 LanmanServer (d9f42719019740baa6d1c6d536cbdaa6) C:\Windows\system32\srvsvc.dll
22:38:54.0390 2732 LanmanServer - ok
22:38:54.0436 2732 LanmanWorkstation (851a1382eed3e3a7476db004f4ee3e1a) C:\Windows\System32\wkssvc.dll
22:38:54.0436 2732 LanmanWorkstation - ok
22:38:54.0468 2732 lltdio (1538831cf8ad2979a04c423779465827) C:\Windows\system32\DRIVERS\lltdio.sys
22:38:54.0468 2732 lltdio - ok
22:38:54.0483 2732 lltdsvc (c1185803384ab3feed115f79f109427f) C:\Windows\System32\lltdsvc.dll
22:38:54.0499 2732 lltdsvc - ok
22:38:54.0499 2732 lmhosts (f993a32249b66c9d622ea5592a8b76b8) C:\Windows\System32\lmhsvc.dll
22:38:54.0499 2732 lmhosts - ok
22:38:54.0514 2732 LSI_FC (1a93e54eb0ece102495a51266dcdb6a6) C:\Windows\system32\DRIVERS\lsi_fc.sys
22:38:54.0514 2732 LSI_FC - ok
22:38:54.0530 2732 LSI_SAS (1047184a9fdc8bdbff857175875ee810) C:\Windows\system32\DRIVERS\lsi_sas.sys
22:38:54.0530 2732 LSI_SAS - ok
22:38:54.0530 2732 LSI_SAS2 (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\Windows\system32\DRIVERS\lsi_sas2.sys
22:38:54.0530 2732 LSI_SAS2 - ok
22:38:54.0546 2732 LSI_SCSI (0504eacaff0d3c8aed161c4b0d369d4a) C:\Windows\system32\DRIVERS\lsi_scsi.sys
22:38:54.0546 2732 LSI_SCSI - ok
22:38:54.0561 2732 luafv (43d0f98e1d56ccddb0d5254cff7b356e) C:\Windows\system32\drivers\luafv.sys
22:38:54.0561 2732 luafv - ok
22:38:54.0592 2732 Mcx2Svc (0be09cd858abf9df6ed259d57a1a1663) C:\Windows\system32\Mcx2Svc.dll
22:38:54.0592 2732 Mcx2Svc - ok
22:38:54.0592 2732 megasas (a55805f747c6edb6a9080d7c633bd0f4) C:\Windows\system32\DRIVERS\megasas.sys
22:38:54.0592 2732 megasas - ok
22:38:54.0624 2732 MegaSR (baf74ce0072480c3b6b7c13b2a94d6b3) C:\Windows\system32\DRIVERS\MegaSR.sys
22:38:54.0624 2732 MegaSR - ok
22:38:54.0639 2732 MMCSS (e40e80d0304a73e8d269f7141d77250b) C:\Windows\system32\mmcss.dll
22:38:54.0639 2732 MMCSS - ok
22:38:54.0639 2732 Modem (800ba92f7010378b09f9ed9270f07137) C:\Windows\system32\drivers\modem.sys
22:38:54.0639 2732 Modem - ok
22:38:54.0655 2732 monitor (b03d591dc7da45ece20b3b467e6aadaa) C:\Windows\system32\DRIVERS\monitor.sys
22:38:54.0655 2732 monitor - ok
22:38:54.0670 2732 mouclass (7d27ea49f3c1f687d357e77a470aea99) C:\Windows\system32\drivers\mouclass.sys
22:38:54.0670 2732 mouclass - ok
22:38:54.0686 2732 mouhid (d3bf052c40b0c4166d9fd86a4288c1e6) C:\Windows\system32\DRIVERS\mouhid.sys
22:38:54.0686 2732 mouhid - ok
22:38:54.0702 2732 mountmgr (32e7a3d591d671a6df2db515a5cbe0fa) C:\Windows\system32\drivers\mountmgr.sys
22:38:54.0702 2732 mountmgr - ok
22:38:54.0748 2732 MpFilter (94c66ededcdb6a126880472f9a704d8e) C:\Windows\system32\DRIVERS\MpFilter.sys
22:38:54.0748 2732 MpFilter - ok
22:38:54.0780 2732 mpio (a44b420d30bd56e145d6a2bc8768ec58) C:\Windows\system32\drivers\mpio.sys
22:38:54.0780 2732 mpio - ok
22:38:54.0795 2732 mpsdrv (6c38c9e45ae0ea2fa5e551f2ed5e978f) C:\Windows\system32\drivers\mpsdrv.sys
22:38:54.0795 2732 mpsdrv - ok
22:38:54.0842 2732 MpsSvc (54ffc9c8898113ace189d4aa7199d2c1) C:\Windows\system32\mpssvc.dll
22:38:54.0858 2732 MpsSvc - ok
22:38:54.0889 2732 MRxDAV (dc722758b8261e1abafd31a3c0a66380) C:\Windows\system32\drivers\mrxdav.sys
22:38:54.0889 2732 MRxDAV - ok
22:38:54.0920 2732 mrxsmb (a5d9106a73dc88564c825d317cac68ac) C:\Windows\system32\DRIVERS\mrxsmb.sys
22:38:54.0920 2732 mrxsmb - ok
22:38:54.0951 2732 mrxsmb10 (d711b3c1d5f42c0c2415687be09fc163) C:\Windows\system32\DRIVERS\mrxsmb10.sys
22:38:54.0951 2732 mrxsmb10 - ok
22:38:54.0967 2732 mrxsmb20 (9423e9d355c8d303e76b8cfbd8a5c30c) C:\Windows\system32\DRIVERS\mrxsmb20.sys
22:38:54.0982 2732 mrxsmb20 - ok
22:38:54.0998 2732 msahci (c25f0bafa182cbca2dd3c851c2e75796) C:\Windows\system32\drivers\msahci.sys
22:38:54.0998 2732 msahci - ok
22:38:55.0029 2732 msdsm (db801a638d011b9633829eb6f663c900) C:\Windows\system32\drivers\msdsm.sys
22:38:55.0029 2732 msdsm - ok
22:38:55.0045 2732 MSDTC (de0ece52236cfa3ed2dbfc03f28253a8) C:\Windows\System32\msdtc.exe
22:38:55.0060 2732 MSDTC - ok
22:38:55.0092 2732 Msfs (aa3fb40e17ce1388fa1bedab50ea8f96) C:\Windows\system32\drivers\Msfs.sys
22:38:55.0092 2732 Msfs - ok
22:38:55.0092 2732 mshidkmdf (f9d215a46a8b9753f61767fa72a20326) C:\Windows\System32\drivers\mshidkmdf.sys
22:38:55.0092 2732 mshidkmdf - ok
22:38:55.0092 2732 MSICDSetup - ok
22:38:55.0107 2732 msisadrv (d916874bbd4f8b07bfb7fa9b3ccae29d) C:\Windows\system32\drivers\msisadrv.sys
22:38:55.0107 2732 msisadrv - ok
22:38:55.0138 2732 MSiSCSI (808e98ff49b155c522e6400953177b08) C:\Windows\system32\iscsiexe.dll
22:38:55.0138 2732 MSiSCSI - ok
22:38:55.0138 2732 msiserver - ok
22:38:55.0154 2732 MSKSSRV (49ccf2c4fea34ffad8b1b59d49439366) C:\Windows\system32\drivers\MSKSSRV.sys
22:38:55.0154 2732 MSKSSRV - ok
22:38:55.0263 2732 MsMpSvc (59faaf2c83c8169ea20f9e335e418907) C:\Program Files\Microsoft Security Client\MsMpEng.exe
22:38:55.0263 2732 MsMpSvc - ok
22:38:55.0279 2732 MSPCLOCK (bdd71ace35a232104ddd349ee70e1ab3) C:\Windows\system32\drivers\MSPCLOCK.sys
22:38:55.0279 2732 MSPCLOCK - ok
22:38:55.0279 2732 MSPQM (4ed981241db27c3383d72092b618a1d0) C:\Windows\system32\drivers\MSPQM.sys
22:38:55.0279 2732 MSPQM - ok
22:38:55.0326 2732 MsRPC (759a9eeb0fa9ed79da1fb7d4ef78866d) C:\Windows\system32\drivers\MsRPC.sys
22:38:55.0326 2732 MsRPC - ok
22:38:55.0341 2732 mssmbios (0eed230e37515a0eaee3c2e1bc97b288) C:\Windows\system32\drivers\mssmbios.sys
22:38:55.0341 2732 mssmbios - ok
22:38:55.0357 2732 MSTEE (2e66f9ecb30b4221a318c92ac2250779) C:\Windows\system32\drivers\MSTEE.sys
22:38:55.0357 2732 MSTEE - ok
22:38:55.0357 2732 MTConfig (7ea404308934e675bffde8edf0757bcd) C:\Windows\system32\DRIVERS\MTConfig.sys
22:38:55.0357 2732 MTConfig - ok
22:38:55.0372 2732 Mup (f9a18612fd3526fe473c1bda678d61c8) C:\Windows\system32\Drivers\mup.sys
22:38:55.0372 2732 Mup - ok
22:38:55.0404 2732 napagent (582ac6d9873e31dfa28a4547270862dd) C:\Windows\system32\qagentRT.dll
22:38:55.0404 2732 napagent - ok
22:38:55.0450 2732 NativeWifiP (1ea3749c4114db3e3161156ffffa6b33) C:\Windows\system32\DRIVERS\nwifi.sys
22:38:55.0450 2732 NativeWifiP - ok
22:38:55.0497 2732 NDIS (79b47fd40d9a817e932f9d26fac0a81c) C:\Windows\system32\drivers\ndis.sys
22:38:55.0513 2732 NDIS - ok
22:38:55.0513 2732 NdisCap (9f9a1f53aad7da4d6fef5bb73ab811ac) C:\Windows\system32\DRIVERS\ndiscap.sys
22:38:55.0513 2732 NdisCap - ok
22:38:55.0528 2732 NdisTapi (30639c932d9fef22b31268fe25a1b6e5) C:\Windows\system32\DRIVERS\ndistapi.sys
22:38:55.0528 2732 NdisTapi - ok
22:38:55.0560 2732 Ndisuio (136185f9fb2cc61e573e676aa5402356) C:\Windows\system32\DRIVERS\ndisuio.sys
22:38:55.0560 2732 Ndisuio - ok
22:38:55.0591 2732 NdisWan (53f7305169863f0a2bddc49e116c2e11) C:\Windows\system32\DRIVERS\ndiswan.sys
22:38:55.0591 2732 NdisWan - ok
22:38:55.0606 2732 NDProxy (015c0d8e0e0421b4cfd48cffe2825879) C:\Windows\system32\drivers\NDProxy.sys
22:38:55.0606 2732 NDProxy - ok
22:38:55.0638 2732 NetBIOS (86743d9f5d2b1048062b14b1d84501c4) C:\Windows\system32\DRIVERS\netbios.sys
22:38:55.0638 2732 NetBIOS - ok
22:38:55.0669 2732 NetBT (09594d1089c523423b32a4229263f068) C:\Windows\system32\DRIVERS\netbt.sys
22:38:55.0669 2732 NetBT - ok
22:38:55.0700 2732 Netlogon (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
22:38:55.0700 2732 Netlogon - ok
22:38:55.0747 2732 Netman (847d3ae376c0817161a14a82c8922a9e) C:\Windows\System32\netman.dll
22:38:55.0747 2732 Netman - ok
22:38:55.0778 2732 netprofm (5f28111c648f1e24f7dbc87cdeb091b8) C:\Windows\System32\netprofm.dll
22:38:55.0778 2732 netprofm - ok
22:38:55.0872 2732 NetTcpPortSharing (3e5a36127e201ddf663176b66828fafe) C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
22:38:55.0872 2732 NetTcpPortSharing - ok
22:38:55.0887 2732 nfrd960 (77889813be4d166cdab78ddba990da92) C:\Windows\system32\DRIVERS\nfrd960.sys
22:38:55.0903 2732 nfrd960 - ok
22:38:55.0934 2732 NisDrv (91b4e0273d2f6c24ef845f2b41311289) C:\Windows\system32\DRIVERS\NisDrvWFP.sys
22:38:55.0934 2732 NisDrv - ok
22:38:56.0043 2732 NisSrv (10a43829a9e606af3eef25a1c1665923) C:\Program Files\Microsoft Security Client\NisSrv.exe
22:38:56.0043 2732 NisSrv - ok
22:38:56.0090 2732 NlaSvc (1ee99a89cc788ada662441d1e9830529) C:\Windows\System32\nlasvc.dll
22:38:56.0090 2732 NlaSvc - ok
22:38:56.0106 2732 Npfs (1e4c4ab5c9b8dd13179bbdc75a2a01f7) C:\Windows\system32\drivers\Npfs.sys
22:38:56.0106 2732 Npfs - ok
22:38:56.0121 2732 nsi (d54bfdf3e0c953f823b3d0bfe4732528) C:\Windows\system32\nsisvc.dll
22:38:56.0121 2732 nsi - ok
22:38:56.0121 2732 nsiproxy (e7f5ae18af4168178a642a9247c63001) C:\Windows\system32\drivers\nsiproxy.sys
22:38:56.0121 2732 nsiproxy - ok
22:38:56.0215 2732 Ntfs (a2f74975097f52a00745f9637451fdd8) C:\Windows\system32\drivers\Ntfs.sys
22:38:56.0230 2732 Ntfs - ok
22:38:56.0542 2732 Null (9899284589f75fa8724ff3d16aed75c1) C:\Windows\system32\drivers\Null.sys
22:38:56.0542 2732 Null - ok
22:38:56.0589 2732 nvraid (0a92cb65770442ed0dc44834632f66ad) C:\Windows\system32\drivers\nvraid.sys
22:38:56.0589 2732 nvraid - ok
22:38:56.0605 2732 nvstor (dab0e87525c10052bf65f06152f37e4a) C:\Windows\system32\drivers\nvstor.sys
22:38:56.0605 2732 nvstor - ok
22:38:56.0605 2732 nv_agp (270d7cd42d6e3979f6dd0146650f0e05) C:\Windows\system32\drivers\nv_agp.sys
22:38:56.0605 2732 nv_agp - ok
22:38:56.0636 2732 ohci1394 (3589478e4b22ce21b41fa1bfc0b8b8a0) C:\Windows\system32\drivers\ohci1394.sys
22:38:56.0636 2732 ohci1394 - ok
22:38:56.0667 2732 p2pimsvc (3eac4455472cc2c97107b5291e0dcafe) C:\Windows\system32\pnrpsvc.dll
22:38:56.0667 2732 p2pimsvc - ok
22:38:56.0714 2732 p2psvc (927463ecb02179f88e4b9a17568c63c3) C:\Windows\system32\p2psvc.dll
22:38:56.0714 2732 p2psvc - ok
22:38:56.0761 2732 Parport (0086431c29c35be1dbc43f52cc273887) C:\Windows\system32\DRIVERS\parport.sys
22:38:56.0761 2732 Parport - ok
22:38:56.0792 2732 partmgr (e9766131eeade40a27dc27d2d68fba9c) C:\Windows\system32\drivers\partmgr.sys
22:38:56.0792 2732 partmgr - ok
22:38:56.0808 2732 PcaSvc (3aeaa8b561e63452c655dc0584922257) C:\Windows\System32\pcasvc.dll
22:38:56.0808 2732 PcaSvc - ok
22:38:56.0823 2732 pci (94575c0571d1462a0f70bde6bd6ee6b3) C:\Windows\system32\drivers\pci.sys
22:38:56.0823 2732 pci - ok
22:38:56.0839 2732 pciide (b5b8b5ef2e5cb34df8dcf8831e3534fa) C:\Windows\system32\drivers\pciide.sys
22:38:56.0839 2732 pciide - ok
22:38:56.0870 2732 pcmcia (b2e81d4e87ce48589f98cb8c05b01f2f) C:\Windows\system32\DRIVERS\pcmcia.sys
22:38:56.0870 2732 pcmcia - ok
22:38:56.0886 2732 pcw (d6b9c2e1a11a3a4b26a182ffef18f603) C:\Windows\system32\drivers\pcw.sys
22:38:56.0886 2732 pcw - ok
22:38:56.0917 2732 PEAUTH (68769c3356b3be5d1c732c97b9a80d6e) C:\Windows\system32\drivers\peauth.sys
22:38:56.0917 2732 PEAUTH - ok
22:38:56.0979 2732 PeerDistSvc (b9b0a4299dd2d76a4243f75fd54dc680) C:\Windows\system32\peerdistsvc.dll
22:38:56.0995 2732 PeerDistSvc - ok
22:38:57.0151 2732 PerfHost (e495e408c93141e8fc72dc0c6046ddfa) C:\Windows\SysWow64\perfhost.exe
22:38:57.0151 2732 PerfHost - ok
22:38:57.0385 2732 pla (c7cf6a6e137463219e1259e3f0f0dd6c) C:\Windows\system32\pla.dll
22:38:57.0385 2732 pla - ok
22:38:57.0432 2732 PlugPlay (25fbdef06c4d92815b353f6e792c8129) C:\Windows\system32\umpnpmgr.dll
22:38:57.0447 2732 PlugPlay - ok
22:38:57.0478 2732 PNRPAutoReg (7195581cec9bb7d12abe54036acc2e38) C:\Windows\system32\pnrpauto.dll
22:38:57.0478 2732 PNRPAutoReg - ok
22:38:57.0494 2732 PNRPsvc (3eac4455472cc2c97107b5291e0dcafe) C:\Windows\system32\pnrpsvc.dll
22:38:57.0494 2732 PNRPsvc - ok
22:38:57.0541 2732 PolicyAgent (4f15d75adf6156bf56eced6d4a55c389) C:\Windows\System32\ipsecsvc.dll
22:38:57.0541 2732 PolicyAgent - ok
22:38:57.0572 2732 Power (6ba9d927dded70bd1a9caded45f8b184) C:\Windows\system32\umpo.dll
22:38:57.0572 2732 Power - ok
22:38:57.0681 2732 PptpMiniport (f92a2c41117a11a00be01ca01a7fcde9) C:\Windows\system32\DRIVERS\raspptp.sys
22:38:57.0681 2732 PptpMiniport - ok
22:38:57.0697 2732 Processor (0d922e23c041efb1c3fac2a6f943c9bf) C:\Windows\system32\DRIVERS\processr.sys
22:38:57.0697 2732 Processor - ok
22:38:57.0728 2732 ProfSvc (5c78838b4d166d1a27db3a8a820c799a) C:\Windows\system32\profsvc.dll
22:38:57.0744 2732 ProfSvc - ok
22:38:57.0759 2732 ProtectedStorage (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
22:38:57.0759 2732 ProtectedStorage - ok
22:38:57.0806 2732 Psched (0557cf5a2556bd58e26384169d72438d) C:\Windows\system32\DRIVERS\pacer.sys
22:38:57.0806 2732 Psched - ok
22:38:57.0884 2732 ql2300 (a53a15a11ebfd21077463ee2c7afeef0) C:\Windows\system32\DRIVERS\ql2300.sys
22:38:57.0900 2732 ql2300 - ok
22:38:58.0227 2732 ql40xx (4f6d12b51de1aaeff7dc58c4d75423c8) C:\Windows\system32\DRIVERS\ql40xx.sys
22:38:58.0227 2732 ql40xx - ok
22:38:58.0258 2732 QWAVE (906191634e99aea92c4816150bda3732) C:\Windows\system32\qwave.dll
22:38:58.0274 2732 QWAVE - ok
22:38:58.0274 2732 QWAVEdrv (76707bb36430888d9ce9d705398adb6c) C:\Windows\system32\drivers\qwavedrv.sys
22:38:58.0274 2732 QWAVEdrv - ok
22:38:58.0368 2732 RadeonPro Support Service (6c8f17953c07f88364307fc7811c5184) C:\Program Files (x86)\RadeonPro\RadeonProSupport.exe
22:38:58.0368 2732 RadeonPro Support Service - ok
22:38:58.0368 2732 RasAcd (5a0da8ad5762fa2d91678a8a01311704) C:\Windows\system32\DRIVERS\rasacd.sys
22:38:58.0368 2732 RasAcd - ok
22:38:58.0399 2732 RasAgileVpn (7ecff9b22276b73f43a99a15a6094e90) C:\Windows\system32\DRIVERS\AgileVpn.sys
22:38:58.0399 2732 RasAgileVpn - ok
22:38:58.0430 2732 RasAuto (8f26510c5383b8dbe976de1cd00fc8c7) C:\Windows\System32\rasauto.dll
22:38:58.0430 2732 RasAuto - ok
22:38:58.0461 2732 Rasl2tp (471815800ae33e6f1c32fb1b97c490ca) C:\Windows\system32\DRIVERS\rasl2tp.sys
22:38:58.0461 2732 Rasl2tp - ok
22:38:58.0492 2732 RasMan (ee867a0870fc9e4972ba9eaad35651e2) C:\Windows\System32\rasmans.dll
22:38:58.0508 2732 RasMan - ok
22:38:58.0508 2732 RasPppoe (855c9b1cd4756c5e9a2aa58a15f58c25) C:\Windows\system32\DRIVERS\raspppoe.sys
22:38:58.0508 2732 RasPppoe - ok
22:38:58.0524 2732 RasSstp (e8b1e447b008d07ff47d016c2b0eeecb) C:\Windows\system32\DRIVERS\rassstp.sys
22:38:58.0524 2732 RasSstp - ok
22:38:58.0570 2732 rdbss (77f665941019a1594d887a74f301fa2f) C:\Windows\system32\DRIVERS\rdbss.sys
22:38:58.0570 2732 rdbss - ok
22:38:58.0586 2732 rdpbus (302da2a0539f2cf54d7c6cc30c1f2d8d) C:\Windows\system32\DRIVERS\rdpbus.sys
22:38:58.0586 2732 rdpbus - ok
22:38:58.0586 2732 RDPCDD (cea6cc257fc9b7715f1c2b4849286d24) C:\Windows\system32\DRIVERS\RDPCDD.sys
22:38:58.0586 2732 RDPCDD - ok
22:38:58.0617 2732 RDPDR (1b6163c503398b23ff8b939c67747683) C:\Windows\system32\drivers\rdpdr.sys
22:38:58.0617 2732 RDPDR - ok
22:38:58.0617 2732 RDPENCDD (bb5971a4f00659529a5c44831af22365) C:\Windows\system32\drivers\rdpencdd.sys
22:38:58.0617 2732 RDPENCDD - ok
22:38:58.0633 2732 RDPREFMP (216f3fa57533d98e1f74ded70113177a) C:\Windows\system32\drivers\rdprefmp.sys
22:38:58.0633 2732 RDPREFMP - ok
22:38:58.0664 2732 RdpVideoMiniport (70cba1a0c98600a2aa1863479b35cb90) C:\Windows\system32\drivers\rdpvideominiport.sys
22:38:58.0664 2732 RdpVideoMiniport - ok
22:38:58.0680 2732 RDPWD (6d76e6433574b058adcb0c50df834492) C:\Windows\system32\drivers\RDPWD.sys
22:38:58.0680 2732 RDPWD - ok
22:38:58.0742 2732 rdyboost (34ed295fa0121c241bfef24764fc4520) C:\Windows\system32\drivers\rdyboost.sys
22:38:58.0742 2732 rdyboost - ok
22:38:58.0758 2732 RemoteAccess (254fb7a22d74e5511c73a3f6d802f192) C:\Windows\System32\mprdim.dll
22:38:58.0773 2732 RemoteAccess - ok
22:38:58.0804 2732 RemoteRegistry (e4d94f24081440b5fc5aa556c7c62702) C:\Windows\system32\regsvc.dll
22:38:58.0804 2732 RemoteRegistry - ok
22:38:58.0820 2732 RpcEptMapper (e4dc58cf7b3ea515ae917ff0d402a7bb) C:\Windows\System32\RpcEpMap.dll
22:38:58.0820 2732 RpcEptMapper - ok
22:38:58.0820 2732 RpcLocator (d5ba242d4cf8e384db90e6a8ed850b8c) C:\Windows\system32\locator.exe
22:38:58.0820 2732 RpcLocator - ok
22:38:58.0867 2732 RpcSs (5c627d1b1138676c0a7ab2c2c190d123) C:\Windows\system32\rpcss.dll
22:38:58.0867 2732 RpcSs - ok
22:38:58.0898 2732 rspndr (ddc86e4f8e7456261e637e3552e804ff) C:\Windows\system32\DRIVERS\rspndr.sys
22:38:58.0914 2732 rspndr - ok
22:38:58.0914 2732 RTHDMIAzAudService - ok
22:38:58.0960 2732 RTL8167 (ee082e06a82ff630351d1e0ebbd3d8d0) C:\Windows\system32\DRIVERS\Rt64win7.sys
22:38:58.0976 2732 RTL8167 - ok
22:38:59.0007 2732 RtNdPt60 (2b38c905492f36fe42b59da52d6b4eb7) C:\Windows\system32\DRIVERS\RtNdPt60.sys
22:38:59.0007 2732 RtNdPt60 - ok
22:38:59.0038 2732 RTTEAMPT (3183388da27655085960a22b4b29caa9) C:\Windows\system32\DRIVERS\RtTeam60.sys
22:38:59.0038 2732 RTTEAMPT - ok
22:38:59.0054 2732 RTVLANPT (8b6b42d782202363a562f82b0e13b1c0) C:\Windows\system32\DRIVERS\RtVlan60.sys
22:38:59.0054 2732 RTVLANPT - ok
22:38:59.0070 2732 s3cap (e60c0a09f997826c7627b244195ab581) C:\Windows\system32\drivers\vms3cap.sys
22:38:59.0070 2732 s3cap - ok
22:38:59.0101 2732 SamSs (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
22:38:59.0101 2732 SamSs - ok
22:38:59.0132 2732 sbp2port (ac03af3329579fffb455aa2daabbe22b) C:\Windows\system32\drivers\sbp2port.sys
22:38:59.0132 2732 sbp2port - ok
22:38:59.0179 2732 SCardSvr (9b7395789e3791a3b6d000fe6f8b131e) C:\Windows\System32\SCardSvr.dll
22:38:59.0179 2732 SCardSvr - ok
22:38:59.0194 2732 scfilter (253f38d0d7074c02ff8deb9836c97d2b) C:\Windows\system32\DRIVERS\scfilter.sys
22:38:59.0194 2732 scfilter - ok
22:38:59.0257 2732 Schedule (262f6592c3299c005fd6bec90fc4463a) C:\Windows\system32\schedsvc.dll
22:38:59.0272 2732 Schedule - ok
22:38:59.0288 2732 SCPolicySvc (f17d1d393bbc69c5322fbfafaca28c7f) C:\Windows\System32\certprop.dll
22:38:59.0288 2732 SCPolicySvc - ok
22:38:59.0319 2732 SDRSVC (6ea4234dc55346e0709560fe7c2c1972) C:\Windows\System32\SDRSVC.dll
22:38:59.0319 2732 SDRSVC - ok
22:38:59.0428 2732 secdrv (3ea8a16169c26afbeb544e0e48421186) C:\Windows\system32\drivers\secdrv.sys
22:38:59.0428 2732 secdrv - ok
22:38:59.0460 2732 seclogon (bc617a4e1b4fa8df523a061739a0bd87) C:\Windows\system32\seclogon.dll
22:38:59.0460 2732 seclogon - ok
22:38:59.0475 2732 SENS (c32ab8fa018ef34c0f113bd501436d21) C:\Windows\System32\sens.dll
22:38:59.0475 2732 SENS - ok
22:38:59.0491 2732 SensrSvc (0336cffafaab87a11541f1cf1594b2b2) C:\Windows\system32\sensrsvc.dll
22:38:59.0491 2732 SensrSvc - ok
22:38:59.0506 2732 Serenum (cb624c0035412af0debec78c41f5ca1b) C:\Windows\system32\DRIVERS\serenum.sys
22:38:59.0506 2732 Serenum - ok
22:38:59.0522 2732 Serial (c1d8e28b2c2adfaec4ba89e9fda69bd6) C:\Windows\system32\DRIVERS\serial.sys
22:38:59.0522 2732 Serial - ok
22:38:59.0538 2732 sermouse (1c545a7d0691cc4a027396535691c3e3) C:\Windows\system32\DRIVERS\sermouse.sys
22:38:59.0538 2732 sermouse - ok
22:38:59.0584 2732 SessionEnv (0b6231bf38174a1628c4ac812cc75804) C:\Windows\system32\sessenv.dll
22:38:59.0584 2732 SessionEnv - ok
22:38:59.0600 2732 sffdisk (a554811bcd09279536440c964ae35bbf) C:\Windows\system32\drivers\sffdisk.sys
22:38:59.0600 2732 sffdisk - ok
22:38:59.0600 2732 sffp_mmc (ff414f0baefeba59bc6c04b3db0b87bf) C:\Windows\system32\drivers\sffp_mmc.sys
22:38:59.0600 2732 sffp_mmc - ok
22:38:59.0600 2732 sffp_sd (dd85b78243a19b59f0637dcf284da63c) C:\Windows\system32\drivers\sffp_sd.sys
22:38:59.0600 2732 sffp_sd - ok
22:38:59.0616 2732 sfloppy (a9d601643a1647211a1ee2ec4e433ff4) C:\Windows\system32\DRIVERS\sfloppy.sys
22:38:59.0616 2732 sfloppy - ok
22:38:59.0662 2732 SharedAccess (b95f6501a2f8b2e78c697fec401970ce) C:\Windows\System32\ipnathlp.dll
22:38:59.0662 2732 SharedAccess - ok
22:38:59.0694 2732 ShellHWDetection (aaf932b4011d14052955d4b212a4da8d) C:\Windows\System32\shsvcs.dll
22:38:59.0694 2732 ShellHWDetection - ok
22:38:59.0709 2732 SiSRaid2 (843caf1e5fde1ffd5ff768f23a51e2e1) C:\Windows\system32\DRIVERS\SiSRaid2.sys
22:38:59.0709 2732 SiSRaid2 - ok
22:38:59.0725 2732 SiSRaid4 (6a6c106d42e9ffff8b9fcb4f754f6da4) C:\Windows\system32\DRIVERS\sisraid4.sys
22:38:59.0725 2732 SiSRaid4 - ok
22:38:59.0912 2732 Skype C2C Service (192d93ee7ae6a3c599c96cd8d736e914) C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
22:38:59.0928 2732 Skype C2C Service - ok
22:38:59.0990 2732 SkypeUpdate (579ba0a911ff5ea70cb604cd3b744b0a) C:\Program Files (x86)\Skype\Updater\Updater.exe
22:39:00.0006 2732 SkypeUpdate - ok
22:39:00.0286 2732 Smb (548260a7b8654e024dc30bf8a7c5baa4) C:\Windows\system32\DRIVERS\smb.sys
22:39:00.0302 2732 Smb - ok
22:39:00.0333 2732 SNMPTRAP (6313f223e817cc09aa41811daa7f541d) C:\Windows\System32\snmptrap.exe
22:39:00.0333 2732 SNMPTRAP - ok
22:39:00.0505 2732 speedfan (12583af6cbe0050651eaf2723b3ad7b3) C:\Windows\syswow64\speedfan.sys
22:39:00.0505 2732 speedfan - ok
22:39:00.0520 2732 spldr (b9e31e5cacdfe584f34f730a677803f9) C:\Windows\system32\drivers\spldr.sys
22:39:00.0520 2732 spldr - ok
22:39:00.0552 2732 Spooler (b96c17b5dc1424d56eea3a99e97428cd) C:\Windows\System32\spoolsv.exe
22:39:00.0552 2732 Spooler - ok
22:39:00.0708 2732 sppsvc (e17e0188bb90fae42d83e98707efa59c) C:\Windows\system32\sppsvc.exe
22:39:00.0739 2732 sppsvc - ok
22:39:00.0973 2732 sppuinotify (93d7d61317f3d4bc4f4e9f8a96a7de45) C:\Windows\system32\sppuinotify.dll
22:39:00.0973 2732 sppuinotify - ok
22:39:01.0082 2732 srv (441fba48bff01fdb9d5969ebc1838f0b) C:\Windows\system32\DRIVERS\srv.sys
22:39:01.0082 2732 srv - ok
22:39:01.0113 2732 srv2 (b4adebbf5e3677cce9651e0f01f7cc28) C:\Windows\system32\DRIVERS\srv2.sys
22:39:01.0113 2732 srv2 - ok
22:39:01.0129 2732 srvnet (27e461f0be5bff5fc737328f749538c3) C:\Windows\system32\DRIVERS\srvnet.sys
22:39:01.0129 2732 srvnet - ok
22:39:01.0176 2732 SSDPSRV (51b52fbd583cde8aa9ba62b8b4298f33) C:\Windows\System32\ssdpsrv.dll
22:39:01.0176 2732 SSDPSRV - ok
22:39:01.0176 2732 SstpSvc (ab7aebf58dad8daab7a6c45e6a8885cb) C:\Windows\system32\sstpsvc.dll
22:39:01.0176 2732 SstpSvc - ok
22:39:01.0191 2732 stexstor (f3817967ed533d08327dc73bc4d5542a) C:\Windows\system32\DRIVERS\stexstor.sys
22:39:01.0191 2732 stexstor - ok
22:39:01.0238 2732 stisvc (8dd52e8e6128f4b2da92ce27402871c1) C:\Windows\System32\wiaservc.dll
22:39:01.0254 2732 stisvc - ok
22:39:01.0285 2732 storflt (7785dc213270d2fc066538daf94087e7) C:\Windows\system32\drivers\vmstorfl.sys
22:39:01.0285 2732 storflt - ok
22:39:01.0285 2732 storvsc (d34e4943d5ac096c8edeebfd80d76e23) C:\Windows\system32\drivers\storvsc.sys
22:39:01.0300 2732 storvsc - ok
22:39:01.0300 2732 swenum (d01ec09b6711a5f8e7e6564a4d0fbc90) C:\Windows\system32\drivers\swenum.sys
22:39:01.0316 2732 swenum - ok
22:39:01.0347 2732 swprv (e08e46fdd841b7184194011ca1955a0b) C:\Windows\System32\swprv.dll
22:39:01.0347 2732 swprv - ok
22:39:01.0363 2732 Synth3dVsc - ok
22:39:01.0456 2732 SysMain (bf9ccc0bf39b418c8d0ae8b05cf95b7d) C:\Windows\system32\sysmain.dll
22:39:01.0472 2732 SysMain - ok
22:39:01.0706 2732 TabletInputService (e3c61fd7b7c2557e1f1b0b4cec713585) C:\Windows\System32\TabSvc.dll
22:39:01.0706 2732 TabletInputService - ok
22:39:01.0737 2732 TapiSrv (40f0849f65d13ee87b9a9ae3c1dd6823) C:\Windows\System32\tapisrv.dll
22:39:01.0737 2732 TapiSrv - ok
22:39:01.0768 2732 TBS (1be03ac720f4d302ea01d40f588162f6) C:\Windows\System32\tbssvc.dll
22:39:01.0768 2732 TBS - ok
22:39:01.0940 2732 Tcpip (acb82bda8f46c84f465c1afa517dc4b9) C:\Windows\system32\drivers\tcpip.sys
22:39:01.0971 2732 Tcpip - ok
22:39:02.0361 2732 TCPIP6 (acb82bda8f46c84f465c1afa517dc4b9) C:\Windows\system32\DRIVERS\tcpip.sys
22:39:02.0377 2732 TCPIP6 - ok
22:39:02.0704 2732 tcpipreg (df687e3d8836bfb04fcc0615bf15a519) C:\Windows\system32\drivers\tcpipreg.sys
22:39:02.0704 2732 tcpipreg - ok
22:39:02.0736 2732 TDPIPE (3371d21011695b16333a3934340c4e7c) C:\Windows\system32\drivers\tdpipe.sys
22:39:02.0736 2732 TDPIPE - ok
22:39:02.0751 2732 TDTCP (51c5eceb1cdee2468a1748be550cfbc8) C:\Windows\system32\drivers\tdtcp.sys
22:39:02.0751 2732 TDTCP - ok
22:39:02.0782 2732 tdx (ddad5a7ab24d8b65f8d724f5c20fd806) C:\Windows\system32\DRIVERS\tdx.sys
22:39:02.0782 2732 tdx - ok
22:39:02.0814 2732 TEAM (3183388da27655085960a22b4b29caa9) C:\Windows\system32\DRIVERS\RtTeam60.sys
22:39:02.0814 2732 TEAM - ok
22:39:02.0829 2732 TermDD (561e7e1f06895d78de991e01dd0fb6e5) C:\Windows\system32\drivers\termdd.sys
22:39:02.0845 2732 TermDD - ok
22:39:02.0892 2732 TermService (2e648163254233755035b46dd7b89123) C:\Windows\System32\termsrv.dll
22:39:02.0892 2732 TermService - ok
22:39:02.0923 2732 Themes (f0344071948d1a1fa732231785a0664c) C:\Windows\system32\themeservice.dll
22:39:02.0923 2732 Themes - ok
22:39:02.0938 2732 THREADORDER (e40e80d0304a73e8d269f7141d77250b) C:\Windows\system32\mmcss.dll
22:39:02.0938 2732 THREADORDER - ok
22:39:02.0954 2732 TrkWks (7e7afd841694f6ac397e99d75cead49d) C:\Windows\System32\trkwks.dll
22:39:02.0970 2732 TrkWks - ok
22:39:03.0001 2732 TrustedInstaller (773212b2aaa24c1e31f10246b15b276c) C:\Windows\servicing\TrustedInstaller.exe
22:39:03.0001 2732 TrustedInstaller - ok
22:39:03.0032 2732 tssecsrv (ce18b2cdfc837c99e5fae9ca6cba5d30) C:\Windows\system32\DRIVERS\tssecsrv.sys
22:39:03.0032 2732 tssecsrv - ok
22:39:03.0048 2732 TsUsbFlt (d11c783e3ef9a3c52c0ebe83cc5000e9) C:\Windows\system32\drivers\tsusbflt.sys
22:39:03.0048 2732 TsUsbFlt - ok
22:39:03.0079 2732 tsusbhub - ok
22:39:03.0126 2732 tunnel (3566a8daafa27af944f5d705eaa64894) C:\Windows\system32\DRIVERS\tunnel.sys
22:39:03.0126 2732 tunnel - ok
22:39:03.0157 2732 uagp35 (b4dd609bd7e282bfc683cec7eaaaad67) C:\Windows\system32\DRIVERS\uagp35.sys
22:39:03.0157 2732 uagp35 - ok
22:39:03.0188 2732 udfs (ff4232a1a64012baa1fd97c7b67df593) C:\Windows\system32\DRIVERS\udfs.sys
22:39:03.0188 2732 udfs - ok
22:39:03.0219 2732 UI0Detect (3cbdec8d06b9968aba702eba076364a1) C:\Windows\system32\UI0Detect.exe
22:39:03.0219 2732 UI0Detect - ok
22:39:03.0250 2732 uliagpkx (4bfe1bc28391222894cbf1e7d0e42320) C:\Windows\system32\drivers\uliagpkx.sys
22:39:03.0250 2732 uliagpkx - ok
22:39:03.0282 2732 umbus (dc54a574663a895c8763af0fa1ff7561) C:\Windows\system32\drivers\umbus.sys
22:39:03.0282 2732 umbus - ok
22:39:03.0297 2732 UmPass (b2e8e8cb557b156da5493bbddcc1474d) C:\Windows\system32\DRIVERS\umpass.sys
22:39:03.0297 2732 UmPass - ok
22:39:03.0313 2732 UmRdpService (a293dcd756d04d8492a750d03b9a297c) C:\Windows\System32\umrdp.dll
22:39:03.0328 2732 UmRdpService - ok
22:39:03.0360 2732 upnphost (d47ec6a8e81633dd18d2436b19baf6de) C:\Windows\System32\upnphost.dll
22:39:03.0360 2732 upnphost - ok
22:39:03.0375 2732 usbccgp (6f1a3157a1c89435352ceb543cdb359c) C:\Windows\system32\DRIVERS\usbccgp.sys
22:39:03.0375 2732 usbccgp - ok
22:39:03.0406 2732 usbcir (af0892a803fdda7492f595368e3b68e7) C:\Windows\system32\drivers\usbcir.sys
22:39:03.0406 2732 usbcir - ok
22:39:03.0406 2732 usbehci (c025055fe7b87701eb042095df1a2d7b) C:\Windows\system32\DRIVERS\usbehci.sys
22:39:03.0422 2732 usbehci - ok
22:39:03.0438 2732 usbhub (287c6c9410b111b68b52ca298f7b8c24) C:\Windows\system32\DRIVERS\usbhub.sys
22:39:03.0453 2732 usbhub - ok
22:39:03.0453 2732 usbohci (9840fc418b4cbd632d3d0a667a725c31) C:\Windows\system32\drivers\usbohci.sys
22:39:03.0453 2732 usbohci - ok
22:39:03.0469 2732 usbprint (73188f58fb384e75c4063d29413cee3d) C:\Windows\system32\DRIVERS\usbprint.sys
22:39:03.0469 2732 usbprint - ok
22:39:03.0469 2732 USBSTOR (fed648b01349a3c8395a5169db5fb7d6) C:\Windows\system32\DRIVERS\USBSTOR.SYS
22:39:03.0469 2732 USBSTOR - ok
22:39:03.0484 2732 usbuhci (62069a34518bcf9c1fd9e74b3f6db7cd) C:\Windows\system32\DRIVERS\usbuhci.sys
22:39:03.0484 2732 usbuhci - ok
22:39:03.0516 2732 UxSms (edbb23cbcf2cdf727d64ff9b51a6070e) C:\Windows\System32\uxsms.dll
22:39:03.0516 2732 UxSms - ok
22:39:03.0531 2732 VaultSvc (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
22:39:03.0531 2732 VaultSvc - ok
22:39:03.0562 2732 vdrvroot (c5c876ccfc083ff3b128f933823e87bd) C:\Windows\system32\drivers\vdrvroot.sys
22:39:03.0562 2732 vdrvroot - ok
22:39:03.0609 2732 vds (8d6b481601d01a456e75c3210f1830be) C:\Windows\System32\vds.exe
22:39:03.0609 2732 vds - ok
22:39:03.0609 2732 vga (da4da3f5e02943c2dc8c6ed875de68dd) C:\Windows\system32\DRIVERS\vgapnp.sys
22:39:03.0609 2732 vga - ok
22:39:03.0625 2732 VgaSave (53e92a310193cb3c03bea963de7d9cfc) C:\Windows\System32\drivers\vga.sys
22:38:01.0984 2124 TDSS rootkit removing tool 2.7.37.0 May 23 2012 08:15:30
22:38:02.0081 2124 ============================================================
22:38:02.0081 2124 Current date / time: 2012/05/27 22:38:02.0081
22:38:02.0081 2124 SystemInfo:
22:38:02.0081 2124
22:38:02.0081 2124 OS Version: 6.1.7601 ServicePack: 1.0
22:38:02.0081 2124 Product type: Workstation
22:38:02.0081 2124 ComputerName: CALLER-PC
22:38:02.0081 2124 UserName: CALLER
22:38:02.0081 2124 Windows directory: C:\Windows
22:38:02.0081 2124 System windows directory: C:\Windows
22:38:02.0081 2124 Running under WOW64
22:38:02.0081 2124 Processor architecture: Intel x64
22:38:02.0081 2124 Number of processors: 4
22:38:02.0081 2124 Page size: 0x1000
22:38:02.0081 2124 Boot type: Normal boot
22:38:02.0081 2124 ============================================================
22:38:03.0114 2124 Drive \Device\Harddisk0\DR0 - Size: 0x4A85C4DE00 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
22:38:06.0835 2124 Drive \Device\Harddisk5\DR5 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
22:38:06.0837 2124 ============================================================
22:38:06.0837 2124 \Device\Harddisk0\DR0:
22:38:06.0854 2124 MBR partitions:
22:38:06.0854 2124 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x4FF5864
22:38:06.0872 2124 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x4FF58E2, BlocksNum 0x20437DDF
22:38:06.0872 2124 \Device\Harddisk5\DR5:
22:38:06.0878 2124 MBR partitions:
22:38:06.0878 2124 \Device\Harddisk5\DR5\Partition0: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x3A384C02
22:38:06.0879 2124 ============================================================
22:38:06.0914 2124 C: <-> \Device\Harddisk0\DR0\Partition0
22:38:06.0933 2124 D: <-> \Device\Harddisk0\DR0\Partition1
22:38:06.0953 2124 J: <-> \Device\Harddisk5\DR5\Partition0
22:38:06.0953 2124 ============================================================
22:38:06.0954 2124 Initialize success
22:38:06.0954 2124 ============================================================
22:38:45.0498 2732 ============================================================
22:38:45.0498 2732 Scan started
22:38:45.0498 2732 Mode: Manual;
22:38:45.0498 2732 ============================================================
22:38:46.0558 2732 1394ohci (a87d604aea360176311474c87a63bb88) C:\Windows\system32\drivers\1394ohci.sys
22:38:46.0558 2732 1394ohci - ok
22:38:46.0590 2732 ACPI (d81d9e70b8a6dd14d42d7b4efa65d5f2) C:\Windows\system32\drivers\ACPI.sys
22:38:46.0590 2732 ACPI - ok
22:38:46.0621 2732 AcpiPmi (99f8e788246d495ce3794d7e7821d2ca) C:\Windows\system32\drivers\acpipmi.sys
22:38:46.0621 2732 AcpiPmi - ok
22:38:46.0777 2732 AdobeFlashPlayerUpdateSvc (76d5a3d2a50402a0b9b6ed13c4371e79) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
22:38:46.0777 2732 AdobeFlashPlayerUpdateSvc - ok
22:38:46.0824 2732 adp94xx (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\DRIVERS\adp94xx.sys
22:38:46.0839 2732 adp94xx - ok
22:38:46.0855 2732 adpahci (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\DRIVERS\adpahci.sys
22:38:46.0855 2732 adpahci - ok
22:38:46.0870 2732 adpu320 (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\DRIVERS\adpu320.sys
22:38:46.0870 2732 adpu320 - ok
22:38:46.0917 2732 AeLookupSvc (4b78b431f225fd8624c5655cb1de7b61) C:\Windows\System32\aelupsvc.dll
22:38:46.0917 2732 AeLookupSvc - ok
22:38:46.0980 2732 AFD (1c7857b62de5994a75b054a9fd4c3825) C:\Windows\system32\drivers\afd.sys
22:38:46.0980 2732 AFD - ok
22:38:47.0011 2732 agp440 (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\drivers\agp440.sys
22:38:47.0011 2732 agp440 - ok
22:38:47.0026 2732 ALG (3290d6946b5e30e70414990574883ddb) C:\Windows\System32\alg.exe
22:38:47.0026 2732 ALG - ok
22:38:47.0058 2732 aliide (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\drivers\aliide.sys
22:38:47.0058 2732 aliide - ok
22:38:47.0104 2732 AMD External Events Utility (20c8a3e435a47f0408a1ea674afa6194) C:\Windows\system32\atiesrxx.exe
22:38:47.0104 2732 AMD External Events Utility - ok
22:38:47.0120 2732 amdide (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\drivers\amdide.sys
22:38:47.0120 2732 amdide - ok
22:38:47.0136 2732 AmdK8 (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\DRIVERS\amdk8.sys
22:38:47.0136 2732 AmdK8 - ok
22:38:47.0572 2732 amdkmdag (0b45c18b0f3ee996d25baa4e74884b83) C:\Windows\system32\DRIVERS\atikmdag.sys
22:38:47.0666 2732 amdkmdag - ok
22:38:48.0040 2732 amdkmdap (0e57258e5cc4cc7a9a9a877afdf0cec6) C:\Windows\system32\DRIVERS\atikmpag.sys
22:38:48.0040 2732 amdkmdap - ok
22:38:48.0087 2732 AmdPPM (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\DRIVERS\amdppm.sys
22:38:48.0087 2732 AmdPPM - ok
22:38:48.0150 2732 amdsata (d4121ae6d0c0e7e13aa221aa57ef2d49) C:\Windows\system32\drivers\amdsata.sys
22:38:48.0150 2732 amdsata - ok
22:38:48.0165 2732 amdsbs (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\DRIVERS\amdsbs.sys
22:38:48.0181 2732 amdsbs - ok
22:38:48.0181 2732 amdxata (540daf1cea6094886d72126fd7c33048) C:\Windows\system32\drivers\amdxata.sys
22:38:48.0181 2732 amdxata - ok
22:38:48.0243 2732 AppID (89a69c3f2f319b43379399547526d952) C:\Windows\system32\drivers\appid.sys
22:38:48.0243 2732 AppID - ok
22:38:48.0259 2732 AppIDSvc (0bc381a15355a3982216f7172f545de1) C:\Windows\System32\appidsvc.dll
22:38:48.0259 2732 AppIDSvc - ok
22:38:48.0274 2732 Appinfo (3977d4a871ca0d4f2ed1e7db46829731) C:\Windows\System32\appinfo.dll
22:38:48.0274 2732 Appinfo - ok
22:38:48.0306 2732 AppMgmt (4aba3e75a76195a3e38ed2766c962899) C:\Windows\System32\appmgmts.dll
22:38:48.0306 2732 AppMgmt - ok
22:38:48.0321 2732 arc (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\DRIVERS\arc.sys
22:38:48.0321 2732 arc - ok
22:38:48.0337 2732 arcsas (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\DRIVERS\arcsas.sys
22:38:48.0337 2732 arcsas - ok
22:38:48.0337 2732 AsyncMac (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys
22:38:48.0337 2732 AsyncMac - ok
22:38:48.0368 2732 atapi (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\drivers\atapi.sys
22:38:48.0368 2732 atapi - ok
22:38:48.0430 2732 AtiHDAudioService (24464b908e143d2561e9e452fee97309) C:\Windows\system32\drivers\AtihdW76.sys
22:38:48.0446 2732 AtiHDAudioService - ok
22:38:48.0508 2732 AudioEndpointBuilder (f23fef6d569fce88671949894a8becf1) C:\Windows\System32\Audiosrv.dll
22:38:48.0508 2732 AudioEndpointBuilder - ok
22:38:48.0508 2732 AudioSrv (f23fef6d569fce88671949894a8becf1) C:\Windows\System32\Audiosrv.dll
22:38:48.0508 2732 AudioSrv - ok
22:38:48.0571 2732 AxInstSV (a6bf31a71b409dfa8cac83159e1e2aff) C:\Windows\System32\AxInstSV.dll
22:38:48.0571 2732 AxInstSV - ok
22:38:48.0602 2732 b06bdrv (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\DRIVERS\bxvbda.sys
22:38:48.0618 2732 b06bdrv - ok
22:38:48.0633 2732 b57nd60a (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys
22:38:48.0649 2732 b57nd60a - ok
22:38:48.0727 2732 BBSvc (47480f4260dae9aa589bcaf924b3767a) C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BBSvc.exe
22:38:48.0727 2732 BBSvc - ok
22:38:48.0758 2732 BBUpdate (6bf743cbf3bcd09dab79245e60e1ae62) C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\SeaPort.exe
22:38:48.0758 2732 BBUpdate - ok
22:38:48.0789 2732 BDESVC (fde360167101b4e45a96f939f388aeb0) C:\Windows\System32\bdesvc.dll
22:38:48.0789 2732 BDESVC - ok
22:38:48.0805 2732 Beep (16a47ce2decc9b099349a5f840654746) C:\Windows\system32\drivers\Beep.sys
22:38:48.0805 2732 Beep - ok
22:38:48.0867 2732 BFE (82974d6a2fd19445cc5171fc378668a4) C:\Windows\System32\bfe.dll
22:38:48.0867 2732 BFE - ok
22:38:48.0930 2732 BITS (1ea7969e3271cbc59e1730697dc74682) C:\Windows\System32\qmgr.dll
22:38:48.0945 2732 BITS - ok
22:38:49.0054 2732 blbdrive (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\DRIVERS\blbdrive.sys
22:38:49.0054 2732 blbdrive - ok
22:38:49.0101 2732 bowser (6c02a83164f5cc0a262f4199f0871cf5) C:\Windows\system32\DRIVERS\bowser.sys
22:38:49.0101 2732 bowser - ok
22:38:49.0101 2732 BrFiltLo (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\DRIVERS\BrFiltLo.sys
22:38:49.0101 2732 BrFiltLo - ok
22:38:49.0101 2732 BrFiltUp (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\DRIVERS\BrFiltUp.sys
22:38:49.0101 2732 BrFiltUp - ok
22:38:49.0148 2732 Browser (8ef0d5c41ec907751b8429162b1239ed) C:\Windows\System32\browser.dll
22:38:49.0148 2732 Browser - ok
22:38:49.0164 2732 Brserid (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys
22:38:49.0164 2732 Brserid - ok
22:38:49.0179 2732 BrSerWdm (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys
22:38:49.0179 2732 BrSerWdm - ok
22:38:49.0179 2732 BrUsbMdm (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys
22:38:49.0179 2732 BrUsbMdm - ok
22:38:49.0179 2732 BrUsbSer (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys
22:38:49.0179 2732 BrUsbSer - ok
22:38:49.0179 2732 BTHMODEM (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\DRIVERS\bthmodem.sys
22:38:49.0195 2732 BTHMODEM - ok
22:38:49.0210 2732 bthserv (95f9c2976059462cbbf227f7aab10de9) C:\Windows\system32\bthserv.dll
22:38:49.0210 2732 bthserv - ok
22:38:49.0226 2732 cdfs (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys
22:38:49.0226 2732 cdfs - ok
22:38:49.0273 2732 cdrom (f036ce71586e93d94dab220d7bdf4416) C:\Windows\system32\drivers\cdrom.sys
22:38:49.0273 2732 cdrom - ok
22:38:49.0320 2732 CertPropSvc (f17d1d393bbc69c5322fbfafaca28c7f) C:\Windows\System32\certprop.dll
22:38:49.0320 2732 CertPropSvc - ok
22:38:49.0335 2732 circlass (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\DRIVERS\circlass.sys
22:38:49.0335 2732 circlass - ok
22:38:49.0366 2732 CLFS (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys
22:38:49.0366 2732 CLFS - ok
22:38:49.0491 2732 clr_optimization_v2.0.50727_32 (d88040f816fda31c3b466f0fa0918f29) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
22:38:49.0491 2732 clr_optimization_v2.0.50727_32 - ok
22:38:49.0600 2732 clr_optimization_v2.0.50727_64 (d1ceea2b47cb998321c579651ce3e4f8) C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
22:38:49.0600 2732 clr_optimization_v2.0.50727_64 - ok
22:38:49.0756 2732 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
22:38:49.0756 2732 clr_optimization_v4.0.30319_32 - ok
22:38:49.0834 2732 clr_optimization_v4.0.30319_64 (c6f9af94dcd58122a4d7e89db6bed29d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
22:38:49.0834 2732 clr_optimization_v4.0.30319_64 - ok
22:38:49.0881 2732 CmBatt (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\DRIVERS\CmBatt.sys
22:38:49.0881 2732 CmBatt - ok
22:38:49.0897 2732 cmdide (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\drivers\cmdide.sys
22:38:49.0897 2732 cmdide - ok
22:38:49.0944 2732 CNG (c4943b6c962e4b82197542447ad599f4) C:\Windows\system32\Drivers\cng.sys
22:38:49.0944 2732 CNG - ok
22:38:49.0959 2732 Compbatt (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\DRIVERS\compbatt.sys
22:38:49.0959 2732 Compbatt - ok
22:38:50.0006 2732 CompositeBus (03edb043586cceba243d689bdda370a8) C:\Windows\system32\drivers\CompositeBus.sys
22:38:50.0006 2732 CompositeBus - ok
22:38:50.0022 2732 COMSysApp - ok
22:38:50.0037 2732 cpuz135 (c08063f052308b6f5882482615387f30) C:\Windows\system32\drivers\cpuz135_x64.sys
22:38:50.0037 2732 cpuz135 - ok
22:38:50.0053 2732 crcdisk (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\DRIVERS\crcdisk.sys
22:38:50.0053 2732 crcdisk - ok
22:38:50.0240 2732 CryptSvc (15597883fbe9b056f276ada3ad87d9af) C:\Windows\system32\cryptsvc.dll
22:38:50.0240 2732 CryptSvc - ok
22:38:50.0302 2732 CSC (54da3dfd29ed9f1619b6f53f3ce55e49) C:\Windows\system32\drivers\csc.sys
22:38:50.0302 2732 CSC - ok
22:38:50.0349 2732 CscService (3ab183ab4d2c79dcf459cd2c1266b043) C:\Windows\System32\cscsvc.dll
22:38:50.0349 2732 CscService - ok
22:38:50.0396 2732 DcomLaunch (5c627d1b1138676c0a7ab2c2c190d123) C:\Windows\system32\rpcss.dll
22:38:50.0412 2732 DcomLaunch - ok
22:38:50.0427 2732 defragsvc (3cec7631a84943677aa8fa8ee5b6b43d) C:\Windows\System32\defragsvc.dll
22:38:50.0443 2732 defragsvc - ok
22:38:50.0568 2732 DfsC (9bb2ef44eaa163b29c4a4587887a0fe4) C:\Windows\system32\Drivers\dfsc.sys
22:38:50.0568 2732 DfsC - ok
22:38:50.0599 2732 Dhcp (43d808f5d9e1a18e5eeb5ebc83969e4e) C:\Windows\system32\dhcpcore.dll
22:38:50.0614 2732 Dhcp - ok
22:38:50.0630 2732 discache (13096b05847ec78f0977f2c0f79e9ab3) C:\Windows\system32\drivers\discache.sys
22:38:50.0630 2732 discache - ok
22:38:50.0646 2732 Disk (9819eee8b5ea3784ec4af3b137a5244c) C:\Windows\system32\DRIVERS\disk.sys
22:38:50.0646 2732 Disk - ok
22:38:50.0677 2732 Dnscache (16835866aaa693c7d7fceba8fff706e4) C:\Windows\System32\dnsrslvr.dll
22:38:50.0677 2732 Dnscache - ok
22:38:50.0708 2732 dot3svc (b1fb3ddca0fdf408750d5843591afbc6) C:\Windows\System32\dot3svc.dll
22:38:50.0708 2732 dot3svc - ok
22:38:50.0739 2732 DPS (b26f4f737e8f9df4f31af6cf31d05820) C:\Windows\system32\dps.dll
22:38:50.0739 2732 DPS - ok
22:38:50.0786 2732 drmkaud (9b19f34400d24df84c858a421c205754) C:\Windows\system32\drivers\drmkaud.sys
22:38:50.0786 2732 drmkaud - ok
22:38:50.0848 2732 DXGKrnl (f5bee30450e18e6b83a5012c100616fd) C:\Windows\System32\drivers\dxgkrnl.sys
22:38:50.0848 2732 DXGKrnl - ok
22:38:50.0880 2732 EapHost (e2dda8726da9cb5b2c4000c9018a9633) C:\Windows\System32\eapsvc.dll
22:38:50.0880 2732 EapHost - ok
22:38:51.0004 2732 ebdrv (dc5d737f51be844d8c82c695eb17372f) C:\Windows\system32\DRIVERS\evbda.sys
22:38:51.0036 2732 ebdrv - ok
22:38:51.0285 2732 EFS (c118a82cd78818c29ab228366ebf81c3) C:\Windows\System32\lsass.exe
22:38:51.0285 2732 EFS - ok
22:38:51.0394 2732 ehRecvr (c4002b6b41975f057d98c439030cea07) C:\Windows\ehome\ehRecvr.exe
22:38:51.0394 2732 ehRecvr - ok
22:38:51.0426 2732 ehSched (4705e8ef9934482c5bb488ce28afc681) C:\Windows\ehome\ehsched.exe
22:38:51.0426 2732 ehSched - ok
22:38:51.0550 2732 elxstor (0e5da5369a0fcaea12456dd852545184) C:\Windows\system32\DRIVERS\elxstor.sys
22:38:51.0550 2732 elxstor - ok
22:38:51.0566 2732 ErrDev (34a3c54752046e79a126e15c51db409b) C:\Windows\system32\drivers\errdev.sys
22:38:51.0566 2732 ErrDev - ok
22:38:51.0613 2732 EventSystem (4166f82be4d24938977dd1746be9b8a0) C:\Windows\system32\es.dll
22:38:51.0613 2732 EventSystem - ok
22:38:51.0644 2732 exfat (a510c654ec00c1e9bdd91eeb3a59823b) C:\Windows\system32\drivers\exfat.sys
22:38:51.0644 2732 exfat - ok
22:38:51.0644 2732 fastfat (0adc83218b66a6db380c330836f3e36d) C:\Windows\system32\drivers\fastfat.sys
22:38:51.0660 2732 fastfat - ok
22:38:51.0706 2732 Fax (dbefd454f8318a0ef691fdd2eaab44eb) C:\Windows\system32\fxssvc.exe
22:38:51.0722 2732 Fax - ok
22:38:51.0722 2732 fdc (d765d19cd8ef61f650c384f62fac00ab) C:\Windows\system32\DRIVERS\fdc.sys
22:38:51.0722 2732 fdc - ok
22:38:51.0738 2732 fdPHost (0438cab2e03f4fb61455a7956026fe86) C:\Windows\system32\fdPHost.dll
22:38:51.0738 2732 fdPHost - ok
22:38:51.0738 2732 FDResPub (802496cb59a30349f9a6dd22d6947644) C:\Windows\system32\fdrespub.dll
22:38:51.0753 2732 FDResPub - ok
22:38:51.0753 2732 FileInfo (655661be46b5f5f3fd454e2c3095b930) C:\Windows\system32\drivers\fileinfo.sys
22:38:51.0753 2732 FileInfo - ok
22:38:51.0753 2732 Filetrace (5f671ab5bc87eea04ec38a6cd5962a47) C:\Windows\system32\drivers\filetrace.sys
22:38:51.0753 2732 Filetrace - ok
22:38:51.0753 2732 flpydisk (c172a0f53008eaeb8ea33fe10e177af5) C:\Windows\system32\DRIVERS\flpydisk.sys
22:38:51.0753 2732 flpydisk - ok
22:38:51.0784 2732 FltMgr (da6b67270fd9db3697b20fce94950741) C:\Windows\system32\drivers\fltmgr.sys
22:38:51.0784 2732 FltMgr - ok
22:38:51.0862 2732 FontCache (5c4cb4086fb83115b153e47add961a0c) C:\Windows\system32\FntCache.dll
22:38:51.0862 2732 FontCache - ok
22:38:51.0956 2732 FontCache3.0.0.0 (a8b7f3818ab65695e3a0bb3279f6dce6) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
22:38:51.0956 2732 FontCache3.0.0.0 - ok
22:38:52.0050 2732 FsDepends (d43703496149971890703b4b1b723eac) C:\Windows\system32\drivers\FsDepends.sys
22:38:52.0050 2732 FsDepends - ok
22:38:52.0096 2732 fssfltr (07da62c960ddccc2d35836aeab4fc578) C:\Windows\system32\DRIVERS\fssfltr.sys
22:38:52.0096 2732 fssfltr - ok
22:38:52.0237 2732 fsssvc (28ddeeec44e988657b732cf404d504cb) C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe
22:38:52.0237 2732 fsssvc - ok
22:38:52.0549 2732 Fs_Rec (6bd9295cc032dd3077c671fccf579a7b) C:\Windows\system32\drivers\Fs_Rec.sys
22:38:52.0549 2732 Fs_Rec - ok
22:38:52.0658 2732 Futuremark SystemInfo Service (ae6f0a6562d3eccd613de1fd8612ac4e) C:\Program Files (x86)\Futuremark\Futuremark SystemInfo\FMSISvc.exe
22:38:52.0658 2732 Futuremark SystemInfo Service - ok
22:38:52.0705 2732 fvevol (1f7b25b858fa27015169fe95e54108ed) C:\Windows\system32\DRIVERS\fvevol.sys
22:38:52.0705 2732 fvevol - ok
22:38:52.0736 2732 gagp30kx (8c778d335c9d272cfd3298ab02abe3b6) C:\Windows\system32\DRIVERS\gagp30kx.sys
22:38:52.0736 2732 gagp30kx - ok
22:38:52.0783 2732 gpsvc (277bbc7e1aa1ee957f573a10eca7ef3a) C:\Windows\System32\gpsvc.dll
22:38:52.0798 2732 gpsvc - ok
22:38:52.0798 2732 hcw85cir (f2523ef6460fc42405b12248338ab2f0) C:\Windows\system32\drivers\hcw85cir.sys
22:38:52.0798 2732 hcw85cir - ok
22:38:52.0861 2732 HdAudAddService (975761c778e33cd22498059b91e7373a) C:\Windows\system32\drivers\HdAudio.sys
22:38:52.0861 2732 HdAudAddService - ok
22:38:52.0876 2732 HDAudBus (97bfed39b6b79eb12cddbfeed51f56bb) C:\Windows\system32\drivers\HDAudBus.sys
22:38:52.0876 2732 HDAudBus - ok
22:38:52.0892 2732 HidBatt (78e86380454a7b10a5eb255dc44a355f) C:\Windows\system32\DRIVERS\HidBatt.sys
22:38:52.0892 2732 HidBatt - ok
22:38:52.0892 2732 HidBth (7fd2a313f7afe5c4dab14798c48dd104) C:\Windows\system32\DRIVERS\hidbth.sys
22:38:52.0892 2732 HidBth - ok
22:38:52.0908 2732 HidIr (0a77d29f311b88cfae3b13f9c1a73825) C:\Windows\system32\DRIVERS\hidir.sys
22:38:52.0908 2732 HidIr - ok
22:38:52.0939 2732 hidserv (bd9eb3958f213f96b97b1d897dee006d) C:\Windows\system32\hidserv.dll
22:38:52.0939 2732 hidserv - ok
22:38:52.0970 2732 HidUsb (9592090a7e2b61cd582b612b6df70536) C:\Windows\system32\drivers\hidusb.sys
22:38:52.0970 2732 HidUsb - ok
22:38:53.0001 2732 hkmsvc (387e72e739e15e3d37907a86d9ff98e2) C:\Windows\system32\kmsvc.dll
22:38:53.0001 2732 hkmsvc - ok
22:38:53.0017 2732 HomeGroupListener (efdfb3dd38a4376f93e7985173813abd) C:\Windows\system32\ListSvc.dll
22:38:53.0017 2732 HomeGroupListener - ok
22:38:53.0048 2732 HomeGroupProvider (908acb1f594274965a53926b10c81e89) C:\Windows\system32\provsvc.dll
22:38:53.0064 2732 HomeGroupProvider - ok
22:38:53.0079 2732 HpSAMD (39d2abcd392f3d8a6dce7b60ae7b8efc) C:\Windows\system32\drivers\HpSAMD.sys
22:38:53.0079 2732 HpSAMD - ok
22:38:53.0157 2732 HTTP (0ea7de1acb728dd5a369fd742d6eee28) C:\Windows\system32\drivers\HTTP.sys
22:38:53.0157 2732 HTTP - ok
22:38:53.0173 2732 hwpolicy (a5462bd6884960c9dc85ed49d34ff392) C:\Windows\system32\drivers\hwpolicy.sys
22:38:53.0173 2732 hwpolicy - ok
22:38:53.0188 2732 i8042prt (fa55c73d4affa7ee23ac4be53b4592d3) C:\Windows\system32\drivers\i8042prt.sys
22:38:53.0188 2732 i8042prt - ok
22:38:53.0235 2732 iaStorV (aaaf44db3bd0b9d1fb6969b23ecc8366) C:\Windows\system32\drivers\iaStorV.sys
22:38:53.0235 2732 iaStorV - ok
22:38:53.0360 2732 idsvc (5988fc40f8db5b0739cd1e3a5d0d78bd) C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
22:38:53.0360 2732 idsvc - ok
22:38:53.0376 2732 iirsp (5c18831c61933628f5bb0ea2675b9d21) C:\Windows\system32\DRIVERS\iirsp.sys
22:38:53.0376 2732 iirsp - ok
22:38:53.0438 2732 IKEEXT (fcd84c381e0140af901e58d48882d26b) C:\Windows\System32\ikeext.dll
22:38:53.0438 2732 IKEEXT - ok
22:38:53.0594 2732 IntcAzAudAddService (dab7318ccfa8081200d5b7b486793f74) C:\Windows\system32\drivers\RTKVHD64.sys
22:38:53.0594 2732 IntcAzAudAddService - ok
22:38:53.0890 2732 intelide (f00f20e70c6ec3aa366910083a0518aa) C:\Windows\system32\drivers\intelide.sys
22:38:53.0890 2732 intelide - ok
22:38:53.0922 2732 intelppm (ada036632c664caa754079041cf1f8c1) C:\Windows\system32\DRIVERS\intelppm.sys
22:38:53.0922 2732 intelppm - ok
22:38:53.0953 2732 IPBusEnum (098a91c54546a3b878dad6a7e90a455b) C:\Windows\system32\ipbusenum.dll
22:38:53.0953 2732 IPBusEnum - ok
22:38:53.0984 2732 IpFilterDriver (c9f0e1bd74365a8771590e9008d22ab6) C:\Windows\system32\DRIVERS\ipfltdrv.sys
22:38:53.0984 2732 IpFilterDriver - ok
22:38:54.0031 2732 iphlpsvc (a34a587fffd45fa649fba6d03784d257) C:\Windows\System32\iphlpsvc.dll
22:38:54.0031 2732 iphlpsvc - ok
22:38:54.0062 2732 IPMIDRV (0fc1aea580957aa8817b8f305d18ca3a) C:\Windows\system32\drivers\IPMIDrv.sys
22:38:54.0062 2732 IPMIDRV - ok
22:38:54.0078 2732 IPNAT (af9b39a7e7b6caa203b3862582e9f2d0) C:\Windows\system32\drivers\ipnat.sys
22:38:54.0078 2732 IPNAT - ok
22:38:54.0093 2732 IRENUM (3abf5e7213eb28966d55d58b515d5ce9) C:\Windows\system32\drivers\irenum.sys
22:38:54.0093 2732 IRENUM - ok
22:38:54.0109 2732 isapnp (2f7b28dc3e1183e5eb418df55c204f38) C:\Windows\system32\drivers\isapnp.sys
22:38:54.0109 2732 isapnp - ok
22:38:54.0140 2732 iScsiPrt (d931d7309deb2317035b07c9f9e6b0bd) C:\Windows\system32\drivers\msiscsi.sys
22:38:54.0140 2732 iScsiPrt - ok
22:38:54.0171 2732 kbdclass (bc02336f1cba7dcc7d1213bb588a68a5) C:\Windows\system32\drivers\kbdclass.sys
22:38:54.0171 2732 kbdclass - ok
22:38:54.0187 2732 kbdhid (0705eff5b42a9db58548eec3b26bb484) C:\Windows\system32\drivers\kbdhid.sys
22:38:54.0187 2732 kbdhid - ok
22:38:54.0218 2732 KeyIso (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
22:38:54.0218 2732 KeyIso - ok
22:38:54.0265 2732 KMWDFILTER (07071c1e3cd8f0f9114aac8b072ca1e5) C:\Windows\system32\DRIVERS\KMWDFILTER.sys
22:38:54.0265 2732 KMWDFILTER - ok
22:38:54.0280 2732 KSecDD (da1e991a61cfdd755a589e206b97644b) C:\Windows\system32\Drivers\ksecdd.sys
22:38:54.0280 2732 KSecDD - ok
22:38:54.0296 2732 KSecPkg (7e33198d956943a4f11a5474c1e9106f) C:\Windows\system32\Drivers\ksecpkg.sys
22:38:54.0296 2732 KSecPkg - ok
22:38:54.0312 2732 ksthunk (6869281e78cb31a43e969f06b57347c4) C:\Windows\system32\drivers\ksthunk.sys
22:38:54.0312 2732 ksthunk - ok
22:38:54.0343 2732 KtmRm (6ab66e16aa859232f64deb66887a8c9c) C:\Windows\system32\msdtckrm.dll
22:38:54.0358 2732 KtmRm - ok
22:38:54.0390 2732 LanmanServer (d9f42719019740baa6d1c6d536cbdaa6) C:\Windows\system32\srvsvc.dll
22:38:54.0390 2732 LanmanServer - ok
22:38:54.0436 2732 LanmanWorkstation (851a1382eed3e3a7476db004f4ee3e1a) C:\Windows\System32\wkssvc.dll
22:38:54.0436 2732 LanmanWorkstation - ok
22:38:54.0468 2732 lltdio (1538831cf8ad2979a04c423779465827) C:\Windows\system32\DRIVERS\lltdio.sys
22:38:54.0468 2732 lltdio - ok
22:38:54.0483 2732 lltdsvc (c1185803384ab3feed115f79f109427f) C:\Windows\System32\lltdsvc.dll
22:38:54.0499 2732 lltdsvc - ok
22:38:54.0499 2732 lmhosts (f993a32249b66c9d622ea5592a8b76b8) C:\Windows\System32\lmhsvc.dll
22:38:54.0499 2732 lmhosts - ok
22:38:54.0514 2732 LSI_FC (1a93e54eb0ece102495a51266dcdb6a6) C:\Windows\system32\DRIVERS\lsi_fc.sys
22:38:54.0514 2732 LSI_FC - ok
22:38:54.0530 2732 LSI_SAS (1047184a9fdc8bdbff857175875ee810) C:\Windows\system32\DRIVERS\lsi_sas.sys
22:38:54.0530 2732 LSI_SAS - ok
22:38:54.0530 2732 LSI_SAS2 (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\Windows\system32\DRIVERS\lsi_sas2.sys
22:38:54.0530 2732 LSI_SAS2 - ok
22:38:54.0546 2732 LSI_SCSI (0504eacaff0d3c8aed161c4b0d369d4a) C:\Windows\system32\DRIVERS\lsi_scsi.sys
22:38:54.0546 2732 LSI_SCSI - ok
22:38:54.0561 2732 luafv (43d0f98e1d56ccddb0d5254cff7b356e) C:\Windows\system32\drivers\luafv.sys
22:38:54.0561 2732 luafv - ok
22:38:54.0592 2732 Mcx2Svc (0be09cd858abf9df6ed259d57a1a1663) C:\Windows\system32\Mcx2Svc.dll
22:38:54.0592 2732 Mcx2Svc - ok
22:38:54.0592 2732 megasas (a55805f747c6edb6a9080d7c633bd0f4) C:\Windows\system32\DRIVERS\megasas.sys
22:38:54.0592 2732 megasas - ok
22:38:54.0624 2732 MegaSR (baf74ce0072480c3b6b7c13b2a94d6b3) C:\Windows\system32\DRIVERS\MegaSR.sys
22:38:54.0624 2732 MegaSR - ok
22:38:54.0639 2732 MMCSS (e40e80d0304a73e8d269f7141d77250b) C:\Windows\system32\mmcss.dll
22:38:54.0639 2732 MMCSS - ok
22:38:54.0639 2732 Modem (800ba92f7010378b09f9ed9270f07137) C:\Windows\system32\drivers\modem.sys
22:38:54.0639 2732 Modem - ok
22:38:54.0655 2732 monitor (b03d591dc7da45ece20b3b467e6aadaa) C:\Windows\system32\DRIVERS\monitor.sys
22:38:54.0655 2732 monitor - ok
22:38:54.0670 2732 mouclass (7d27ea49f3c1f687d357e77a470aea99) C:\Windows\system32\drivers\mouclass.sys
22:38:54.0670 2732 mouclass - ok
22:38:54.0686 2732 mouhid (d3bf052c40b0c4166d9fd86a4288c1e6) C:\Windows\system32\DRIVERS\mouhid.sys
22:38:54.0686 2732 mouhid - ok
22:38:54.0702 2732 mountmgr (32e7a3d591d671a6df2db515a5cbe0fa) C:\Windows\system32\drivers\mountmgr.sys
22:38:54.0702 2732 mountmgr - ok
22:38:54.0748 2732 MpFilter (94c66ededcdb6a126880472f9a704d8e) C:\Windows\system32\DRIVERS\MpFilter.sys
22:38:54.0748 2732 MpFilter - ok
22:38:54.0780 2732 mpio (a44b420d30bd56e145d6a2bc8768ec58) C:\Windows\system32\drivers\mpio.sys
22:38:54.0780 2732 mpio - ok
22:38:54.0795 2732 mpsdrv (6c38c9e45ae0ea2fa5e551f2ed5e978f) C:\Windows\system32\drivers\mpsdrv.sys
22:38:54.0795 2732 mpsdrv - ok
22:38:54.0842 2732 MpsSvc (54ffc9c8898113ace189d4aa7199d2c1) C:\Windows\system32\mpssvc.dll
22:38:54.0858 2732 MpsSvc - ok
22:38:54.0889 2732 MRxDAV (dc722758b8261e1abafd31a3c0a66380) C:\Windows\system32\drivers\mrxdav.sys
22:38:54.0889 2732 MRxDAV - ok
22:38:54.0920 2732 mrxsmb (a5d9106a73dc88564c825d317cac68ac) C:\Windows\system32\DRIVERS\mrxsmb.sys
22:38:54.0920 2732 mrxsmb - ok
22:38:54.0951 2732 mrxsmb10 (d711b3c1d5f42c0c2415687be09fc163) C:\Windows\system32\DRIVERS\mrxsmb10.sys
22:38:54.0951 2732 mrxsmb10 - ok
22:38:54.0967 2732 mrxsmb20 (9423e9d355c8d303e76b8cfbd8a5c30c) C:\Windows\system32\DRIVERS\mrxsmb20.sys
22:38:54.0982 2732 mrxsmb20 - ok
22:38:54.0998 2732 msahci (c25f0bafa182cbca2dd3c851c2e75796) C:\Windows\system32\drivers\msahci.sys
22:38:54.0998 2732 msahci - ok
22:38:55.0029 2732 msdsm (db801a638d011b9633829eb6f663c900) C:\Windows\system32\drivers\msdsm.sys
22:38:55.0029 2732 msdsm - ok
22:38:55.0045 2732 MSDTC (de0ece52236cfa3ed2dbfc03f28253a8) C:\Windows\System32\msdtc.exe
22:38:55.0060 2732 MSDTC - ok
22:38:55.0092 2732 Msfs (aa3fb40e17ce1388fa1bedab50ea8f96) C:\Windows\system32\drivers\Msfs.sys
22:38:55.0092 2732 Msfs - ok
22:38:55.0092 2732 mshidkmdf (f9d215a46a8b9753f61767fa72a20326) C:\Windows\System32\drivers\mshidkmdf.sys
22:38:55.0092 2732 mshidkmdf - ok
22:38:55.0092 2732 MSICDSetup - ok
22:38:55.0107 2732 msisadrv (d916874bbd4f8b07bfb7fa9b3ccae29d) C:\Windows\system32\drivers\msisadrv.sys
22:38:55.0107 2732 msisadrv - ok
22:38:55.0138 2732 MSiSCSI (808e98ff49b155c522e6400953177b08) C:\Windows\system32\iscsiexe.dll
22:38:55.0138 2732 MSiSCSI - ok
22:38:55.0138 2732 msiserver - ok
22:38:55.0154 2732 MSKSSRV (49ccf2c4fea34ffad8b1b59d49439366) C:\Windows\system32\drivers\MSKSSRV.sys
22:38:55.0154 2732 MSKSSRV - ok
22:38:55.0263 2732 MsMpSvc (59faaf2c83c8169ea20f9e335e418907) C:\Program Files\Microsoft Security Client\MsMpEng.exe
22:38:55.0263 2732 MsMpSvc - ok
22:38:55.0279 2732 MSPCLOCK (bdd71ace35a232104ddd349ee70e1ab3) C:\Windows\system32\drivers\MSPCLOCK.sys
22:38:55.0279 2732 MSPCLOCK - ok
22:38:55.0279 2732 MSPQM (4ed981241db27c3383d72092b618a1d0) C:\Windows\system32\drivers\MSPQM.sys
22:38:55.0279 2732 MSPQM - ok
22:38:55.0326 2732 MsRPC (759a9eeb0fa9ed79da1fb7d4ef78866d) C:\Windows\system32\drivers\MsRPC.sys
22:38:55.0326 2732 MsRPC - ok
22:38:55.0341 2732 mssmbios (0eed230e37515a0eaee3c2e1bc97b288) C:\Windows\system32\drivers\mssmbios.sys
22:38:55.0341 2732 mssmbios - ok
22:38:55.0357 2732 MSTEE (2e66f9ecb30b4221a318c92ac2250779) C:\Windows\system32\drivers\MSTEE.sys
22:38:55.0357 2732 MSTEE - ok
22:38:55.0357 2732 MTConfig (7ea404308934e675bffde8edf0757bcd) C:\Windows\system32\DRIVERS\MTConfig.sys
22:38:55.0357 2732 MTConfig - ok
22:38:55.0372 2732 Mup (f9a18612fd3526fe473c1bda678d61c8) C:\Windows\system32\Drivers\mup.sys
22:38:55.0372 2732 Mup - ok
22:38:55.0404 2732 napagent (582ac6d9873e31dfa28a4547270862dd) C:\Windows\system32\qagentRT.dll
22:38:55.0404 2732 napagent - ok
22:38:55.0450 2732 NativeWifiP (1ea3749c4114db3e3161156ffffa6b33) C:\Windows\system32\DRIVERS\nwifi.sys
22:38:55.0450 2732 NativeWifiP - ok
22:38:55.0497 2732 NDIS (79b47fd40d9a817e932f9d26fac0a81c) C:\Windows\system32\drivers\ndis.sys
22:38:55.0513 2732 NDIS - ok
22:38:55.0513 2732 NdisCap (9f9a1f53aad7da4d6fef5bb73ab811ac) C:\Windows\system32\DRIVERS\ndiscap.sys
22:38:55.0513 2732 NdisCap - ok
22:38:55.0528 2732 NdisTapi (30639c932d9fef22b31268fe25a1b6e5) C:\Windows\system32\DRIVERS\ndistapi.sys
22:38:55.0528 2732 NdisTapi - ok
22:38:55.0560 2732 Ndisuio (136185f9fb2cc61e573e676aa5402356) C:\Windows\system32\DRIVERS\ndisuio.sys
22:38:55.0560 2732 Ndisuio - ok
22:38:55.0591 2732 NdisWan (53f7305169863f0a2bddc49e116c2e11) C:\Windows\system32\DRIVERS\ndiswan.sys
22:38:55.0591 2732 NdisWan - ok
22:38:55.0606 2732 NDProxy (015c0d8e0e0421b4cfd48cffe2825879) C:\Windows\system32\drivers\NDProxy.sys
22:38:55.0606 2732 NDProxy - ok
22:38:55.0638 2732 NetBIOS (86743d9f5d2b1048062b14b1d84501c4) C:\Windows\system32\DRIVERS\netbios.sys
22:38:55.0638 2732 NetBIOS - ok
22:38:55.0669 2732 NetBT (09594d1089c523423b32a4229263f068) C:\Windows\system32\DRIVERS\netbt.sys
22:38:55.0669 2732 NetBT - ok
22:38:55.0700 2732 Netlogon (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
22:38:55.0700 2732 Netlogon - ok
22:38:55.0747 2732 Netman (847d3ae376c0817161a14a82c8922a9e) C:\Windows\System32\netman.dll
22:38:55.0747 2732 Netman - ok
22:38:55.0778 2732 netprofm (5f28111c648f1e24f7dbc87cdeb091b8) C:\Windows\System32\netprofm.dll
22:38:55.0778 2732 netprofm - ok
22:38:55.0872 2732 NetTcpPortSharing (3e5a36127e201ddf663176b66828fafe) C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
22:38:55.0872 2732 NetTcpPortSharing - ok
22:38:55.0887 2732 nfrd960 (77889813be4d166cdab78ddba990da92) C:\Windows\system32\DRIVERS\nfrd960.sys
22:38:55.0903 2732 nfrd960 - ok
22:38:55.0934 2732 NisDrv (91b4e0273d2f6c24ef845f2b41311289) C:\Windows\system32\DRIVERS\NisDrvWFP.sys
22:38:55.0934 2732 NisDrv - ok
22:38:56.0043 2732 NisSrv (10a43829a9e606af3eef25a1c1665923) C:\Program Files\Microsoft Security Client\NisSrv.exe
22:38:56.0043 2732 NisSrv - ok
22:38:56.0090 2732 NlaSvc (1ee99a89cc788ada662441d1e9830529) C:\Windows\System32\nlasvc.dll
22:38:56.0090 2732 NlaSvc - ok
22:38:56.0106 2732 Npfs (1e4c4ab5c9b8dd13179bbdc75a2a01f7) C:\Windows\system32\drivers\Npfs.sys
22:38:56.0106 2732 Npfs - ok
22:38:56.0121 2732 nsi (d54bfdf3e0c953f823b3d0bfe4732528) C:\Windows\system32\nsisvc.dll
22:38:56.0121 2732 nsi - ok
22:38:56.0121 2732 nsiproxy (e7f5ae18af4168178a642a9247c63001) C:\Windows\system32\drivers\nsiproxy.sys
22:38:56.0121 2732 nsiproxy - ok
22:38:56.0215 2732 Ntfs (a2f74975097f52a00745f9637451fdd8) C:\Windows\system32\drivers\Ntfs.sys
22:38:56.0230 2732 Ntfs - ok
22:38:56.0542 2732 Null (9899284589f75fa8724ff3d16aed75c1) C:\Windows\system32\drivers\Null.sys
22:38:56.0542 2732 Null - ok
22:38:56.0589 2732 nvraid (0a92cb65770442ed0dc44834632f66ad) C:\Windows\system32\drivers\nvraid.sys
22:38:56.0589 2732 nvraid - ok
22:38:56.0605 2732 nvstor (dab0e87525c10052bf65f06152f37e4a) C:\Windows\system32\drivers\nvstor.sys
22:38:56.0605 2732 nvstor - ok
22:38:56.0605 2732 nv_agp (270d7cd42d6e3979f6dd0146650f0e05) C:\Windows\system32\drivers\nv_agp.sys
22:38:56.0605 2732 nv_agp - ok
22:38:56.0636 2732 ohci1394 (3589478e4b22ce21b41fa1bfc0b8b8a0) C:\Windows\system32\drivers\ohci1394.sys
22:38:56.0636 2732 ohci1394 - ok
22:38:56.0667 2732 p2pimsvc (3eac4455472cc2c97107b5291e0dcafe) C:\Windows\system32\pnrpsvc.dll
22:38:56.0667 2732 p2pimsvc - ok
22:38:56.0714 2732 p2psvc (927463ecb02179f88e4b9a17568c63c3) C:\Windows\system32\p2psvc.dll
22:38:56.0714 2732 p2psvc - ok
22:38:56.0761 2732 Parport (0086431c29c35be1dbc43f52cc273887) C:\Windows\system32\DRIVERS\parport.sys
22:38:56.0761 2732 Parport - ok
22:38:56.0792 2732 partmgr (e9766131eeade40a27dc27d2d68fba9c) C:\Windows\system32\drivers\partmgr.sys
22:38:56.0792 2732 partmgr - ok
22:38:56.0808 2732 PcaSvc (3aeaa8b561e63452c655dc0584922257) C:\Windows\System32\pcasvc.dll
22:38:56.0808 2732 PcaSvc - ok
22:38:56.0823 2732 pci (94575c0571d1462a0f70bde6bd6ee6b3) C:\Windows\system32\drivers\pci.sys
22:38:56.0823 2732 pci - ok
22:38:56.0839 2732 pciide (b5b8b5ef2e5cb34df8dcf8831e3534fa) C:\Windows\system32\drivers\pciide.sys
22:38:56.0839 2732 pciide - ok
22:38:56.0870 2732 pcmcia (b2e81d4e87ce48589f98cb8c05b01f2f) C:\Windows\system32\DRIVERS\pcmcia.sys
22:38:56.0870 2732 pcmcia - ok
22:38:56.0886 2732 pcw (d6b9c2e1a11a3a4b26a182ffef18f603) C:\Windows\system32\drivers\pcw.sys
22:38:56.0886 2732 pcw - ok
22:38:56.0917 2732 PEAUTH (68769c3356b3be5d1c732c97b9a80d6e) C:\Windows\system32\drivers\peauth.sys
22:38:56.0917 2732 PEAUTH - ok
22:38:56.0979 2732 PeerDistSvc (b9b0a4299dd2d76a4243f75fd54dc680) C:\Windows\system32\peerdistsvc.dll
22:38:56.0995 2732 PeerDistSvc - ok
22:38:57.0151 2732 PerfHost (e495e408c93141e8fc72dc0c6046ddfa) C:\Windows\SysWow64\perfhost.exe
22:38:57.0151 2732 PerfHost - ok
22:38:57.0385 2732 pla (c7cf6a6e137463219e1259e3f0f0dd6c) C:\Windows\system32\pla.dll
22:38:57.0385 2732 pla - ok
22:38:57.0432 2732 PlugPlay (25fbdef06c4d92815b353f6e792c8129) C:\Windows\system32\umpnpmgr.dll
22:38:57.0447 2732 PlugPlay - ok
22:38:57.0478 2732 PNRPAutoReg (7195581cec9bb7d12abe54036acc2e38) C:\Windows\system32\pnrpauto.dll
22:38:57.0478 2732 PNRPAutoReg - ok
22:38:57.0494 2732 PNRPsvc (3eac4455472cc2c97107b5291e0dcafe) C:\Windows\system32\pnrpsvc.dll
22:38:57.0494 2732 PNRPsvc - ok
22:38:57.0541 2732 PolicyAgent (4f15d75adf6156bf56eced6d4a55c389) C:\Windows\System32\ipsecsvc.dll
22:38:57.0541 2732 PolicyAgent - ok
22:38:57.0572 2732 Power (6ba9d927dded70bd1a9caded45f8b184) C:\Windows\system32\umpo.dll
22:38:57.0572 2732 Power - ok
22:38:57.0681 2732 PptpMiniport (f92a2c41117a11a00be01ca01a7fcde9) C:\Windows\system32\DRIVERS\raspptp.sys
22:38:57.0681 2732 PptpMiniport - ok
22:38:57.0697 2732 Processor (0d922e23c041efb1c3fac2a6f943c9bf) C:\Windows\system32\DRIVERS\processr.sys
22:38:57.0697 2732 Processor - ok
22:38:57.0728 2732 ProfSvc (5c78838b4d166d1a27db3a8a820c799a) C:\Windows\system32\profsvc.dll
22:38:57.0744 2732 ProfSvc - ok
22:38:57.0759 2732 ProtectedStorage (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
22:38:57.0759 2732 ProtectedStorage - ok
22:38:57.0806 2732 Psched (0557cf5a2556bd58e26384169d72438d) C:\Windows\system32\DRIVERS\pacer.sys
22:38:57.0806 2732 Psched - ok
22:38:57.0884 2732 ql2300 (a53a15a11ebfd21077463ee2c7afeef0) C:\Windows\system32\DRIVERS\ql2300.sys
22:38:57.0900 2732 ql2300 - ok
22:38:58.0227 2732 ql40xx (4f6d12b51de1aaeff7dc58c4d75423c8) C:\Windows\system32\DRIVERS\ql40xx.sys
22:38:58.0227 2732 ql40xx - ok
22:38:58.0258 2732 QWAVE (906191634e99aea92c4816150bda3732) C:\Windows\system32\qwave.dll
22:38:58.0274 2732 QWAVE - ok
22:38:58.0274 2732 QWAVEdrv (76707bb36430888d9ce9d705398adb6c) C:\Windows\system32\drivers\qwavedrv.sys
22:38:58.0274 2732 QWAVEdrv - ok
22:38:58.0368 2732 RadeonPro Support Service (6c8f17953c07f88364307fc7811c5184) C:\Program Files (x86)\RadeonPro\RadeonProSupport.exe
22:38:58.0368 2732 RadeonPro Support Service - ok
22:38:58.0368 2732 RasAcd (5a0da8ad5762fa2d91678a8a01311704) C:\Windows\system32\DRIVERS\rasacd.sys
22:38:58.0368 2732 RasAcd - ok
22:38:58.0399 2732 RasAgileVpn (7ecff9b22276b73f43a99a15a6094e90) C:\Windows\system32\DRIVERS\AgileVpn.sys
22:38:58.0399 2732 RasAgileVpn - ok
22:38:58.0430 2732 RasAuto (8f26510c5383b8dbe976de1cd00fc8c7) C:\Windows\System32\rasauto.dll
22:38:58.0430 2732 RasAuto - ok
22:38:58.0461 2732 Rasl2tp (471815800ae33e6f1c32fb1b97c490ca) C:\Windows\system32\DRIVERS\rasl2tp.sys
22:38:58.0461 2732 Rasl2tp - ok
22:38:58.0492 2732 RasMan (ee867a0870fc9e4972ba9eaad35651e2) C:\Windows\System32\rasmans.dll
22:38:58.0508 2732 RasMan - ok
22:38:58.0508 2732 RasPppoe (855c9b1cd4756c5e9a2aa58a15f58c25) C:\Windows\system32\DRIVERS\raspppoe.sys
22:38:58.0508 2732 RasPppoe - ok
22:38:58.0524 2732 RasSstp (e8b1e447b008d07ff47d016c2b0eeecb) C:\Windows\system32\DRIVERS\rassstp.sys
22:38:58.0524 2732 RasSstp - ok
22:38:58.0570 2732 rdbss (77f665941019a1594d887a74f301fa2f) C:\Windows\system32\DRIVERS\rdbss.sys
22:38:58.0570 2732 rdbss - ok
22:38:58.0586 2732 rdpbus (302da2a0539f2cf54d7c6cc30c1f2d8d) C:\Windows\system32\DRIVERS\rdpbus.sys
22:38:58.0586 2732 rdpbus - ok
22:38:58.0586 2732 RDPCDD (cea6cc257fc9b7715f1c2b4849286d24) C:\Windows\system32\DRIVERS\RDPCDD.sys
22:38:58.0586 2732 RDPCDD - ok
22:38:58.0617 2732 RDPDR (1b6163c503398b23ff8b939c67747683) C:\Windows\system32\drivers\rdpdr.sys
22:38:58.0617 2732 RDPDR - ok
22:38:58.0617 2732 RDPENCDD (bb5971a4f00659529a5c44831af22365) C:\Windows\system32\drivers\rdpencdd.sys
22:38:58.0617 2732 RDPENCDD - ok
22:38:58.0633 2732 RDPREFMP (216f3fa57533d98e1f74ded70113177a) C:\Windows\system32\drivers\rdprefmp.sys
22:38:58.0633 2732 RDPREFMP - ok
22:38:58.0664 2732 RdpVideoMiniport (70cba1a0c98600a2aa1863479b35cb90) C:\Windows\system32\drivers\rdpvideominiport.sys
22:38:58.0664 2732 RdpVideoMiniport - ok
22:38:58.0680 2732 RDPWD (6d76e6433574b058adcb0c50df834492) C:\Windows\system32\drivers\RDPWD.sys
22:38:58.0680 2732 RDPWD - ok
22:38:58.0742 2732 rdyboost (34ed295fa0121c241bfef24764fc4520) C:\Windows\system32\drivers\rdyboost.sys
22:38:58.0742 2732 rdyboost - ok
22:38:58.0758 2732 RemoteAccess (254fb7a22d74e5511c73a3f6d802f192) C:\Windows\System32\mprdim.dll
22:38:58.0773 2732 RemoteAccess - ok
22:38:58.0804 2732 RemoteRegistry (e4d94f24081440b5fc5aa556c7c62702) C:\Windows\system32\regsvc.dll
22:38:58.0804 2732 RemoteRegistry - ok
22:38:58.0820 2732 RpcEptMapper (e4dc58cf7b3ea515ae917ff0d402a7bb) C:\Windows\System32\RpcEpMap.dll
22:38:58.0820 2732 RpcEptMapper - ok
22:38:58.0820 2732 RpcLocator (d5ba242d4cf8e384db90e6a8ed850b8c) C:\Windows\system32\locator.exe
22:38:58.0820 2732 RpcLocator - ok
22:38:58.0867 2732 RpcSs (5c627d1b1138676c0a7ab2c2c190d123) C:\Windows\system32\rpcss.dll
22:38:58.0867 2732 RpcSs - ok
22:38:58.0898 2732 rspndr (ddc86e4f8e7456261e637e3552e804ff) C:\Windows\system32\DRIVERS\rspndr.sys
22:38:58.0914 2732 rspndr - ok
22:38:58.0914 2732 RTHDMIAzAudService - ok
22:38:58.0960 2732 RTL8167 (ee082e06a82ff630351d1e0ebbd3d8d0) C:\Windows\system32\DRIVERS\Rt64win7.sys
22:38:58.0976 2732 RTL8167 - ok
22:38:59.0007 2732 RtNdPt60 (2b38c905492f36fe42b59da52d6b4eb7) C:\Windows\system32\DRIVERS\RtNdPt60.sys
22:38:59.0007 2732 RtNdPt60 - ok
22:38:59.0038 2732 RTTEAMPT (3183388da27655085960a22b4b29caa9) C:\Windows\system32\DRIVERS\RtTeam60.sys
22:38:59.0038 2732 RTTEAMPT - ok
22:38:59.0054 2732 RTVLANPT (8b6b42d782202363a562f82b0e13b1c0) C:\Windows\system32\DRIVERS\RtVlan60.sys
22:38:59.0054 2732 RTVLANPT - ok
22:38:59.0070 2732 s3cap (e60c0a09f997826c7627b244195ab581) C:\Windows\system32\drivers\vms3cap.sys
22:38:59.0070 2732 s3cap - ok
22:38:59.0101 2732 SamSs (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
22:38:59.0101 2732 SamSs - ok
22:38:59.0132 2732 sbp2port (ac03af3329579fffb455aa2daabbe22b) C:\Windows\system32\drivers\sbp2port.sys
22:38:59.0132 2732 sbp2port - ok
22:38:59.0179 2732 SCardSvr (9b7395789e3791a3b6d000fe6f8b131e) C:\Windows\System32\SCardSvr.dll
22:38:59.0179 2732 SCardSvr - ok
22:38:59.0194 2732 scfilter (253f38d0d7074c02ff8deb9836c97d2b) C:\Windows\system32\DRIVERS\scfilter.sys
22:38:59.0194 2732 scfilter - ok
22:38:59.0257 2732 Schedule (262f6592c3299c005fd6bec90fc4463a) C:\Windows\system32\schedsvc.dll
22:38:59.0272 2732 Schedule - ok
22:38:59.0288 2732 SCPolicySvc (f17d1d393bbc69c5322fbfafaca28c7f) C:\Windows\System32\certprop.dll
22:38:59.0288 2732 SCPolicySvc - ok
22:38:59.0319 2732 SDRSVC (6ea4234dc55346e0709560fe7c2c1972) C:\Windows\System32\SDRSVC.dll
22:38:59.0319 2732 SDRSVC - ok
22:38:59.0428 2732 secdrv (3ea8a16169c26afbeb544e0e48421186) C:\Windows\system32\drivers\secdrv.sys
22:38:59.0428 2732 secdrv - ok
22:38:59.0460 2732 seclogon (bc617a4e1b4fa8df523a061739a0bd87) C:\Windows\system32\seclogon.dll
22:38:59.0460 2732 seclogon - ok
22:38:59.0475 2732 SENS (c32ab8fa018ef34c0f113bd501436d21) C:\Windows\System32\sens.dll
22:38:59.0475 2732 SENS - ok
22:38:59.0491 2732 SensrSvc (0336cffafaab87a11541f1cf1594b2b2) C:\Windows\system32\sensrsvc.dll
22:38:59.0491 2732 SensrSvc - ok
22:38:59.0506 2732 Serenum (cb624c0035412af0debec78c41f5ca1b) C:\Windows\system32\DRIVERS\serenum.sys
22:38:59.0506 2732 Serenum - ok
22:38:59.0522 2732 Serial (c1d8e28b2c2adfaec4ba89e9fda69bd6) C:\Windows\system32\DRIVERS\serial.sys
22:38:59.0522 2732 Serial - ok
22:38:59.0538 2732 sermouse (1c545a7d0691cc4a027396535691c3e3) C:\Windows\system32\DRIVERS\sermouse.sys
22:38:59.0538 2732 sermouse - ok
22:38:59.0584 2732 SessionEnv (0b6231bf38174a1628c4ac812cc75804) C:\Windows\system32\sessenv.dll
22:38:59.0584 2732 SessionEnv - ok
22:38:59.0600 2732 sffdisk (a554811bcd09279536440c964ae35bbf) C:\Windows\system32\drivers\sffdisk.sys
22:38:59.0600 2732 sffdisk - ok
22:38:59.0600 2732 sffp_mmc (ff414f0baefeba59bc6c04b3db0b87bf) C:\Windows\system32\drivers\sffp_mmc.sys
22:38:59.0600 2732 sffp_mmc - ok
22:38:59.0600 2732 sffp_sd (dd85b78243a19b59f0637dcf284da63c) C:\Windows\system32\drivers\sffp_sd.sys
22:38:59.0600 2732 sffp_sd - ok
22:38:59.0616 2732 sfloppy (a9d601643a1647211a1ee2ec4e433ff4) C:\Windows\system32\DRIVERS\sfloppy.sys
22:38:59.0616 2732 sfloppy - ok
22:38:59.0662 2732 SharedAccess (b95f6501a2f8b2e78c697fec401970ce) C:\Windows\System32\ipnathlp.dll
22:38:59.0662 2732 SharedAccess - ok
22:38:59.0694 2732 ShellHWDetection (aaf932b4011d14052955d4b212a4da8d) C:\Windows\System32\shsvcs.dll
22:38:59.0694 2732 ShellHWDetection - ok
22:38:59.0709 2732 SiSRaid2 (843caf1e5fde1ffd5ff768f23a51e2e1) C:\Windows\system32\DRIVERS\SiSRaid2.sys
22:38:59.0709 2732 SiSRaid2 - ok
22:38:59.0725 2732 SiSRaid4 (6a6c106d42e9ffff8b9fcb4f754f6da4) C:\Windows\system32\DRIVERS\sisraid4.sys
22:38:59.0725 2732 SiSRaid4 - ok
22:38:59.0912 2732 Skype C2C Service (192d93ee7ae6a3c599c96cd8d736e914) C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
22:38:59.0928 2732 Skype C2C Service - ok
22:38:59.0990 2732 SkypeUpdate (579ba0a911ff5ea70cb604cd3b744b0a) C:\Program Files (x86)\Skype\Updater\Updater.exe
22:39:00.0006 2732 SkypeUpdate - ok
22:39:00.0286 2732 Smb (548260a7b8654e024dc30bf8a7c5baa4) C:\Windows\system32\DRIVERS\smb.sys
22:39:00.0302 2732 Smb - ok
22:39:00.0333 2732 SNMPTRAP (6313f223e817cc09aa41811daa7f541d) C:\Windows\System32\snmptrap.exe
22:39:00.0333 2732 SNMPTRAP - ok
22:39:00.0505 2732 speedfan (12583af6cbe0050651eaf2723b3ad7b3) C:\Windows\syswow64\speedfan.sys
22:39:00.0505 2732 speedfan - ok
22:39:00.0520 2732 spldr (b9e31e5cacdfe584f34f730a677803f9) C:\Windows\system32\drivers\spldr.sys
22:39:00.0520 2732 spldr - ok
22:39:00.0552 2732 Spooler (b96c17b5dc1424d56eea3a99e97428cd) C:\Windows\System32\spoolsv.exe
22:39:00.0552 2732 Spooler - ok
22:39:00.0708 2732 sppsvc (e17e0188bb90fae42d83e98707efa59c) C:\Windows\system32\sppsvc.exe
22:39:00.0739 2732 sppsvc - ok
22:39:00.0973 2732 sppuinotify (93d7d61317f3d4bc4f4e9f8a96a7de45) C:\Windows\system32\sppuinotify.dll
22:39:00.0973 2732 sppuinotify - ok
22:39:01.0082 2732 srv (441fba48bff01fdb9d5969ebc1838f0b) C:\Windows\system32\DRIVERS\srv.sys
22:39:01.0082 2732 srv - ok
22:39:01.0113 2732 srv2 (b4adebbf5e3677cce9651e0f01f7cc28) C:\Windows\system32\DRIVERS\srv2.sys
22:39:01.0113 2732 srv2 - ok
22:39:01.0129 2732 srvnet (27e461f0be5bff5fc737328f749538c3) C:\Windows\system32\DRIVERS\srvnet.sys
22:39:01.0129 2732 srvnet - ok
22:39:01.0176 2732 SSDPSRV (51b52fbd583cde8aa9ba62b8b4298f33) C:\Windows\System32\ssdpsrv.dll
22:39:01.0176 2732 SSDPSRV - ok
22:39:01.0176 2732 SstpSvc (ab7aebf58dad8daab7a6c45e6a8885cb) C:\Windows\system32\sstpsvc.dll
22:39:01.0176 2732 SstpSvc - ok
22:39:01.0191 2732 stexstor (f3817967ed533d08327dc73bc4d5542a) C:\Windows\system32\DRIVERS\stexstor.sys
22:39:01.0191 2732 stexstor - ok
22:39:01.0238 2732 stisvc (8dd52e8e6128f4b2da92ce27402871c1) C:\Windows\System32\wiaservc.dll
22:39:01.0254 2732 stisvc - ok
22:39:01.0285 2732 storflt (7785dc213270d2fc066538daf94087e7) C:\Windows\system32\drivers\vmstorfl.sys
22:39:01.0285 2732 storflt - ok
22:39:01.0285 2732 storvsc (d34e4943d5ac096c8edeebfd80d76e23) C:\Windows\system32\drivers\storvsc.sys
22:39:01.0300 2732 storvsc - ok
22:39:01.0300 2732 swenum (d01ec09b6711a5f8e7e6564a4d0fbc90) C:\Windows\system32\drivers\swenum.sys
22:39:01.0316 2732 swenum - ok
22:39:01.0347 2732 swprv (e08e46fdd841b7184194011ca1955a0b) C:\Windows\System32\swprv.dll
22:39:01.0347 2732 swprv - ok
22:39:01.0363 2732 Synth3dVsc - ok
22:39:01.0456 2732 SysMain (bf9ccc0bf39b418c8d0ae8b05cf95b7d) C:\Windows\system32\sysmain.dll
22:39:01.0472 2732 SysMain - ok
22:39:01.0706 2732 TabletInputService (e3c61fd7b7c2557e1f1b0b4cec713585) C:\Windows\System32\TabSvc.dll
22:39:01.0706 2732 TabletInputService - ok
22:39:01.0737 2732 TapiSrv (40f0849f65d13ee87b9a9ae3c1dd6823) C:\Windows\System32\tapisrv.dll
22:39:01.0737 2732 TapiSrv - ok
22:39:01.0768 2732 TBS (1be03ac720f4d302ea01d40f588162f6) C:\Windows\System32\tbssvc.dll
22:39:01.0768 2732 TBS - ok
22:39:01.0940 2732 Tcpip (acb82bda8f46c84f465c1afa517dc4b9) C:\Windows\system32\drivers\tcpip.sys
22:39:01.0971 2732 Tcpip - ok
22:39:02.0361 2732 TCPIP6 (acb82bda8f46c84f465c1afa517dc4b9) C:\Windows\system32\DRIVERS\tcpip.sys
22:39:02.0377 2732 TCPIP6 - ok
22:39:02.0704 2732 tcpipreg (df687e3d8836bfb04fcc0615bf15a519) C:\Windows\system32\drivers\tcpipreg.sys
22:39:02.0704 2732 tcpipreg - ok
22:39:02.0736 2732 TDPIPE (3371d21011695b16333a3934340c4e7c) C:\Windows\system32\drivers\tdpipe.sys
22:39:02.0736 2732 TDPIPE - ok
22:39:02.0751 2732 TDTCP (51c5eceb1cdee2468a1748be550cfbc8) C:\Windows\system32\drivers\tdtcp.sys
22:39:02.0751 2732 TDTCP - ok
22:39:02.0782 2732 tdx (ddad5a7ab24d8b65f8d724f5c20fd806) C:\Windows\system32\DRIVERS\tdx.sys
22:39:02.0782 2732 tdx - ok
22:39:02.0814 2732 TEAM (3183388da27655085960a22b4b29caa9) C:\Windows\system32\DRIVERS\RtTeam60.sys
22:39:02.0814 2732 TEAM - ok
22:39:02.0829 2732 TermDD (561e7e1f06895d78de991e01dd0fb6e5) C:\Windows\system32\drivers\termdd.sys
22:39:02.0845 2732 TermDD - ok
22:39:02.0892 2732 TermService (2e648163254233755035b46dd7b89123) C:\Windows\System32\termsrv.dll
22:39:02.0892 2732 TermService - ok
22:39:02.0923 2732 Themes (f0344071948d1a1fa732231785a0664c) C:\Windows\system32\themeservice.dll
22:39:02.0923 2732 Themes - ok
22:39:02.0938 2732 THREADORDER (e40e80d0304a73e8d269f7141d77250b) C:\Windows\system32\mmcss.dll
22:39:02.0938 2732 THREADORDER - ok
22:39:02.0954 2732 TrkWks (7e7afd841694f6ac397e99d75cead49d) C:\Windows\System32\trkwks.dll
22:39:02.0970 2732 TrkWks - ok
22:39:03.0001 2732 TrustedInstaller (773212b2aaa24c1e31f10246b15b276c) C:\Windows\servicing\TrustedInstaller.exe
22:39:03.0001 2732 TrustedInstaller - ok
22:39:03.0032 2732 tssecsrv (ce18b2cdfc837c99e5fae9ca6cba5d30) C:\Windows\system32\DRIVERS\tssecsrv.sys
22:39:03.0032 2732 tssecsrv - ok
22:39:03.0048 2732 TsUsbFlt (d11c783e3ef9a3c52c0ebe83cc5000e9) C:\Windows\system32\drivers\tsusbflt.sys
22:39:03.0048 2732 TsUsbFlt - ok
22:39:03.0079 2732 tsusbhub - ok
22:39:03.0126 2732 tunnel (3566a8daafa27af944f5d705eaa64894) C:\Windows\system32\DRIVERS\tunnel.sys
22:39:03.0126 2732 tunnel - ok
22:39:03.0157 2732 uagp35 (b4dd609bd7e282bfc683cec7eaaaad67) C:\Windows\system32\DRIVERS\uagp35.sys
22:39:03.0157 2732 uagp35 - ok
22:39:03.0188 2732 udfs (ff4232a1a64012baa1fd97c7b67df593) C:\Windows\system32\DRIVERS\udfs.sys
22:39:03.0188 2732 udfs - ok
22:39:03.0219 2732 UI0Detect (3cbdec8d06b9968aba702eba076364a1) C:\Windows\system32\UI0Detect.exe
22:39:03.0219 2732 UI0Detect - ok
22:39:03.0250 2732 uliagpkx (4bfe1bc28391222894cbf1e7d0e42320) C:\Windows\system32\drivers\uliagpkx.sys
22:39:03.0250 2732 uliagpkx - ok
22:39:03.0282 2732 umbus (dc54a574663a895c8763af0fa1ff7561) C:\Windows\system32\drivers\umbus.sys
22:39:03.0282 2732 umbus - ok
22:39:03.0297 2732 UmPass (b2e8e8cb557b156da5493bbddcc1474d) C:\Windows\system32\DRIVERS\umpass.sys
22:39:03.0297 2732 UmPass - ok
22:39:03.0313 2732 UmRdpService (a293dcd756d04d8492a750d03b9a297c) C:\Windows\System32\umrdp.dll
22:39:03.0328 2732 UmRdpService - ok
22:39:03.0360 2732 upnphost (d47ec6a8e81633dd18d2436b19baf6de) C:\Windows\System32\upnphost.dll
22:39:03.0360 2732 upnphost - ok
22:39:03.0375 2732 usbccgp (6f1a3157a1c89435352ceb543cdb359c) C:\Windows\system32\DRIVERS\usbccgp.sys
22:39:03.0375 2732 usbccgp - ok
22:39:03.0406 2732 usbcir (af0892a803fdda7492f595368e3b68e7) C:\Windows\system32\drivers\usbcir.sys
22:39:03.0406 2732 usbcir - ok
22:39:03.0406 2732 usbehci (c025055fe7b87701eb042095df1a2d7b) C:\Windows\system32\DRIVERS\usbehci.sys
22:39:03.0422 2732 usbehci - ok
22:39:03.0438 2732 usbhub (287c6c9410b111b68b52ca298f7b8c24) C:\Windows\system32\DRIVERS\usbhub.sys
22:39:03.0453 2732 usbhub - ok
22:39:03.0453 2732 usbohci (9840fc418b4cbd632d3d0a667a725c31) C:\Windows\system32\drivers\usbohci.sys
22:39:03.0453 2732 usbohci - ok
22:39:03.0469 2732 usbprint (73188f58fb384e75c4063d29413cee3d) C:\Windows\system32\DRIVERS\usbprint.sys
22:39:03.0469 2732 usbprint - ok
22:39:03.0469 2732 USBSTOR (fed648b01349a3c8395a5169db5fb7d6) C:\Windows\system32\DRIVERS\USBSTOR.SYS
22:39:03.0469 2732 USBSTOR - ok
22:39:03.0484 2732 usbuhci (62069a34518bcf9c1fd9e74b3f6db7cd) C:\Windows\system32\DRIVERS\usbuhci.sys
22:39:03.0484 2732 usbuhci - ok
22:39:03.0516 2732 UxSms (edbb23cbcf2cdf727d64ff9b51a6070e) C:\Windows\System32\uxsms.dll
22:39:03.0516 2732 UxSms - ok
22:39:03.0531 2732 VaultSvc (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
22:39:03.0531 2732 VaultSvc - ok
22:39:03.0562 2732 vdrvroot (c5c876ccfc083ff3b128f933823e87bd) C:\Windows\system32\drivers\vdrvroot.sys
22:39:03.0562 2732 vdrvroot - ok
22:39:03.0609 2732 vds (8d6b481601d01a456e75c3210f1830be) C:\Windows\System32\vds.exe
22:39:03.0609 2732 vds - ok
22:39:03.0609 2732 vga (da4da3f5e02943c2dc8c6ed875de68dd) C:\Windows\system32\DRIVERS\vgapnp.sys
22:39:03.0609 2732 vga - ok
22:39:03.0625 2732 VgaSave (53e92a310193cb3c03bea963de7d9cfc) C:\Windows\System32\drivers\vga.sys
Re: Prosím o kontrolu Logu - Zamrznutí PC
22:39:03.0625 2732 VgaSave - ok
22:39:03.0656 2732 VGPU - ok
22:39:03.0687 2732 vhdmp (2ce2df28c83aeaf30084e1b1eb253cbb) C:\Windows\system32\drivers\vhdmp.sys
22:39:03.0687 2732 vhdmp - ok
22:39:03.0703 2732 viaide (e5689d93ffe4e5d66c0178761240dd54) C:\Windows\system32\drivers\viaide.sys
22:39:03.0703 2732 viaide - ok
22:39:03.0734 2732 VLAN (8b6b42d782202363a562f82b0e13b1c0) C:\Windows\system32\DRIVERS\RtVLAN60.sys
22:39:03.0734 2732 VLAN - ok
22:39:03.0750 2732 vmbus (86ea3e79ae350fea5331a1303054005f) C:\Windows\system32\drivers\vmbus.sys
22:39:03.0750 2732 vmbus - ok
22:39:03.0765 2732 VMBusHID (7de90b48f210d29649380545db45a187) C:\Windows\system32\drivers\VMBusHID.sys
22:39:03.0765 2732 VMBusHID - ok
22:39:03.0765 2732 volmgr (d2aafd421940f640b407aefaaebd91b0) C:\Windows\system32\drivers\volmgr.sys
22:39:03.0765 2732 volmgr - ok
22:39:03.0812 2732 volmgrx (a255814907c89be58b79ef2f189b843b) C:\Windows\system32\drivers\volmgrx.sys
22:39:03.0828 2732 volmgrx - ok
22:39:03.0859 2732 volsnap (0d08d2f3b3ff84e433346669b5e0f639) C:\Windows\system32\drivers\volsnap.sys
22:39:03.0859 2732 volsnap - ok
22:39:03.0890 2732 vsmraid (5e2016ea6ebaca03c04feac5f330d997) C:\Windows\system32\DRIVERS\vsmraid.sys
22:39:03.0890 2732 vsmraid - ok
22:39:03.0968 2732 VSS (b60ba0bc31b0cb414593e169f6f21cc2) C:\Windows\system32\vssvc.exe
22:39:03.0984 2732 VSS - ok
22:39:04.0296 2732 vwifibus (36d4720b72b5c5d9cb2b9c29e9df67a1) C:\Windows\System32\drivers\vwifibus.sys
22:39:04.0296 2732 vwifibus - ok
22:39:04.0327 2732 W32Time (1c9d80cc3849b3788048078c26486e1a) C:\Windows\system32\w32time.dll
22:39:04.0342 2732 W32Time - ok
22:39:04.0342 2732 WacomPen (4e9440f4f152a7b944cb1663d3935a3e) C:\Windows\system32\DRIVERS\wacompen.sys
22:39:04.0342 2732 WacomPen - ok
22:39:04.0405 2732 WANARP (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
22:39:04.0405 2732 WANARP - ok
22:39:04.0405 2732 Wanarpv6 (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
22:39:04.0405 2732 Wanarpv6 - ok
22:39:04.0483 2732 wbengine (78f4e7f5c56cb9716238eb57da4b6a75) C:\Windows\system32\wbengine.exe
22:39:04.0498 2732 wbengine - ok
22:39:04.0717 2732 WbioSrvc (3aa101e8edab2db4131333f4325c76a3) C:\Windows\System32\wbiosrvc.dll
22:39:04.0732 2732 WbioSrvc - ok
22:39:04.0764 2732 wcncsvc (7368a2afd46e5a4481d1de9d14848edd) C:\Windows\System32\wcncsvc.dll
22:39:04.0764 2732 wcncsvc - ok
22:39:04.0779 2732 WcsPlugInService (20f7441334b18cee52027661df4a6129) C:\Windows\System32\WcsPlugInService.dll
22:39:04.0779 2732 WcsPlugInService - ok
22:39:04.0888 2732 Wd (72889e16ff12ba0f235467d6091b17dc) C:\Windows\system32\DRIVERS\wd.sys
22:39:04.0888 2732 Wd - ok
22:39:04.0920 2732 Wdf01000 (441bd2d7b4f98134c3a4f9fa570fd250) C:\Windows\system32\drivers\Wdf01000.sys
22:39:04.0920 2732 Wdf01000 - ok
22:39:04.0935 2732 WdiServiceHost (bf1fc3f79b863c914687a737c2f3d681) C:\Windows\system32\wdi.dll
22:39:04.0935 2732 WdiServiceHost - ok
22:39:04.0935 2732 WdiSystemHost (bf1fc3f79b863c914687a737c2f3d681) C:\Windows\system32\wdi.dll
22:39:04.0935 2732 WdiSystemHost - ok
22:39:04.0982 2732 WebClient (3db6d04e1c64272f8b14eb8bc4616280) C:\Windows\System32\webclnt.dll
22:39:04.0982 2732 WebClient - ok
22:39:05.0013 2732 Wecsvc (c749025a679c5103e575e3b48e092c43) C:\Windows\system32\wecsvc.dll
22:39:05.0013 2732 Wecsvc - ok
22:39:05.0044 2732 wercplsupport (7e591867422dc788b9e5bd337a669a08) C:\Windows\System32\wercplsupport.dll
22:39:05.0044 2732 wercplsupport - ok
22:39:05.0060 2732 WerSvc (6d137963730144698cbd10f202e9f251) C:\Windows\System32\WerSvc.dll
22:39:05.0060 2732 WerSvc - ok
22:39:05.0154 2732 WfpLwf (611b23304bf067451a9fdee01fbdd725) C:\Windows\system32\DRIVERS\wfplwf.sys
22:39:05.0154 2732 WfpLwf - ok
22:39:05.0154 2732 WIMMount (05ecaec3e4529a7153b3136ceb49f0ec) C:\Windows\system32\drivers\wimmount.sys
22:39:05.0154 2732 WIMMount - ok
22:39:05.0200 2732 WinDefend - ok
22:39:05.0216 2732 WinHttpAutoProxySvc - ok
22:39:05.0310 2732 Winmgmt (19b07e7e8915d701225da41cb3877306) C:\Windows\system32\wbem\WMIsvc.dll
22:39:05.0310 2732 Winmgmt - ok
22:39:05.0403 2732 WinRM (bcb1310604aa415c4508708975b3931e) C:\Windows\system32\WsmSvc.dll
22:39:05.0434 2732 WinRM - ok
22:39:05.0668 2732 Wlansvc (4fada86e62f18a1b2f42ba18ae24e6aa) C:\Windows\System32\wlansvc.dll
22:39:05.0684 2732 Wlansvc - ok
22:39:05.0793 2732 wlcrasvc (06c8fa1cf39de6a735b54d906ba791c6) C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
22:39:05.0793 2732 wlcrasvc - ok
22:39:05.0902 2732 wlidsvc (2bacd71123f42cea603f4e205e1ae337) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
22:39:05.0902 2732 wlidsvc - ok
22:39:06.0214 2732 WmiAcpi (f6ff8944478594d0e414d3f048f0d778) C:\Windows\system32\drivers\wmiacpi.sys
22:39:06.0214 2732 WmiAcpi - ok
22:39:06.0292 2732 wmiApSrv (38b84c94c5a8af291adfea478ae54f93) C:\Windows\system32\wbem\WmiApSrv.exe
22:39:06.0308 2732 wmiApSrv - ok
22:39:06.0355 2732 WMPNetworkSvc - ok
22:39:06.0386 2732 WPCSvc (96c6e7100d724c69fcf9e7bf590d1dca) C:\Windows\System32\wpcsvc.dll
22:39:06.0386 2732 WPCSvc - ok
22:39:06.0417 2732 WPDBusEnum (93221146d4ebbf314c29b23cd6cc391d) C:\Windows\system32\wpdbusenum.dll
22:39:06.0417 2732 WPDBusEnum - ok
22:39:06.0433 2732 ws2ifsl (6bcc1d7d2fd2453957c5479a32364e52) C:\Windows\system32\drivers\ws2ifsl.sys
22:39:06.0448 2732 ws2ifsl - ok
22:39:06.0464 2732 wscsvc (e8b1fe6669397d1772d8196df0e57a9e) C:\Windows\System32\wscsvc.dll
22:39:06.0464 2732 wscsvc - ok
22:39:06.0464 2732 WSearch - ok
22:39:06.0573 2732 wuauserv (9df12edbc698b0bc353b3ef84861e430) C:\Windows\system32\wuaueng.dll
22:39:06.0589 2732 wuauserv - ok
22:39:06.0916 2732 WudfPf (d3381dc54c34d79b22cee0d65ba91b7c) C:\Windows\system32\drivers\WudfPf.sys
22:39:06.0916 2732 WudfPf - ok
22:39:06.0932 2732 WUDFRd (cf8d590be3373029d57af80914190682) C:\Windows\system32\DRIVERS\WUDFRd.sys
22:39:06.0932 2732 WUDFRd - ok
22:39:06.0963 2732 wudfsvc (7a95c95b6c4cf292d689106bcae49543) C:\Windows\System32\WUDFSvc.dll
22:39:06.0963 2732 wudfsvc - ok
22:39:06.0994 2732 WwanSvc (9a3452b3c2a46c073166c5cf49fad1ae) C:\Windows\System32\wwansvc.dll
22:39:06.0994 2732 WwanSvc - ok
22:39:07.0026 2732 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk0\DR0
22:39:07.0166 2732 \Device\Harddisk0\DR0 - ok
22:39:07.0166 2732 MBR (0x1B8) (064277d9f7ebd43a4c5ace87cff367bc) \Device\Harddisk5\DR5
22:39:07.0182 2732 \Device\Harddisk5\DR5 - ok
22:39:07.0182 2732 Boot (0x1200) (1e911110003f3c066b79a4e3a3c1fa9e) \Device\Harddisk0\DR0\Partition0
22:39:07.0182 2732 \Device\Harddisk0\DR0\Partition0 - ok
22:39:07.0197 2732 Boot (0x1200) (2870ba27fd76cfde8780dac12fb8f52a) \Device\Harddisk0\DR0\Partition1
22:39:07.0197 2732 \Device\Harddisk0\DR0\Partition1 - ok
22:39:07.0197 2732 Boot (0x1200) (9fcc9848fe36adef6cd50f00a1e0794f) \Device\Harddisk5\DR5\Partition0
22:39:07.0197 2732 \Device\Harddisk5\DR5\Partition0 - ok
22:39:07.0197 2732 ============================================================
22:39:07.0197 2732 Scan finished
22:39:07.0197 2732 ============================================================
22:39:07.0197 2240 Detected object count: 0
22:39:07.0197 2240 Actual detected object count: 0
22:39:10.0348 3176 Deinitialize success
22:39:03.0656 2732 VGPU - ok
22:39:03.0687 2732 vhdmp (2ce2df28c83aeaf30084e1b1eb253cbb) C:\Windows\system32\drivers\vhdmp.sys
22:39:03.0687 2732 vhdmp - ok
22:39:03.0703 2732 viaide (e5689d93ffe4e5d66c0178761240dd54) C:\Windows\system32\drivers\viaide.sys
22:39:03.0703 2732 viaide - ok
22:39:03.0734 2732 VLAN (8b6b42d782202363a562f82b0e13b1c0) C:\Windows\system32\DRIVERS\RtVLAN60.sys
22:39:03.0734 2732 VLAN - ok
22:39:03.0750 2732 vmbus (86ea3e79ae350fea5331a1303054005f) C:\Windows\system32\drivers\vmbus.sys
22:39:03.0750 2732 vmbus - ok
22:39:03.0765 2732 VMBusHID (7de90b48f210d29649380545db45a187) C:\Windows\system32\drivers\VMBusHID.sys
22:39:03.0765 2732 VMBusHID - ok
22:39:03.0765 2732 volmgr (d2aafd421940f640b407aefaaebd91b0) C:\Windows\system32\drivers\volmgr.sys
22:39:03.0765 2732 volmgr - ok
22:39:03.0812 2732 volmgrx (a255814907c89be58b79ef2f189b843b) C:\Windows\system32\drivers\volmgrx.sys
22:39:03.0828 2732 volmgrx - ok
22:39:03.0859 2732 volsnap (0d08d2f3b3ff84e433346669b5e0f639) C:\Windows\system32\drivers\volsnap.sys
22:39:03.0859 2732 volsnap - ok
22:39:03.0890 2732 vsmraid (5e2016ea6ebaca03c04feac5f330d997) C:\Windows\system32\DRIVERS\vsmraid.sys
22:39:03.0890 2732 vsmraid - ok
22:39:03.0968 2732 VSS (b60ba0bc31b0cb414593e169f6f21cc2) C:\Windows\system32\vssvc.exe
22:39:03.0984 2732 VSS - ok
22:39:04.0296 2732 vwifibus (36d4720b72b5c5d9cb2b9c29e9df67a1) C:\Windows\System32\drivers\vwifibus.sys
22:39:04.0296 2732 vwifibus - ok
22:39:04.0327 2732 W32Time (1c9d80cc3849b3788048078c26486e1a) C:\Windows\system32\w32time.dll
22:39:04.0342 2732 W32Time - ok
22:39:04.0342 2732 WacomPen (4e9440f4f152a7b944cb1663d3935a3e) C:\Windows\system32\DRIVERS\wacompen.sys
22:39:04.0342 2732 WacomPen - ok
22:39:04.0405 2732 WANARP (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
22:39:04.0405 2732 WANARP - ok
22:39:04.0405 2732 Wanarpv6 (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
22:39:04.0405 2732 Wanarpv6 - ok
22:39:04.0483 2732 wbengine (78f4e7f5c56cb9716238eb57da4b6a75) C:\Windows\system32\wbengine.exe
22:39:04.0498 2732 wbengine - ok
22:39:04.0717 2732 WbioSrvc (3aa101e8edab2db4131333f4325c76a3) C:\Windows\System32\wbiosrvc.dll
22:39:04.0732 2732 WbioSrvc - ok
22:39:04.0764 2732 wcncsvc (7368a2afd46e5a4481d1de9d14848edd) C:\Windows\System32\wcncsvc.dll
22:39:04.0764 2732 wcncsvc - ok
22:39:04.0779 2732 WcsPlugInService (20f7441334b18cee52027661df4a6129) C:\Windows\System32\WcsPlugInService.dll
22:39:04.0779 2732 WcsPlugInService - ok
22:39:04.0888 2732 Wd (72889e16ff12ba0f235467d6091b17dc) C:\Windows\system32\DRIVERS\wd.sys
22:39:04.0888 2732 Wd - ok
22:39:04.0920 2732 Wdf01000 (441bd2d7b4f98134c3a4f9fa570fd250) C:\Windows\system32\drivers\Wdf01000.sys
22:39:04.0920 2732 Wdf01000 - ok
22:39:04.0935 2732 WdiServiceHost (bf1fc3f79b863c914687a737c2f3d681) C:\Windows\system32\wdi.dll
22:39:04.0935 2732 WdiServiceHost - ok
22:39:04.0935 2732 WdiSystemHost (bf1fc3f79b863c914687a737c2f3d681) C:\Windows\system32\wdi.dll
22:39:04.0935 2732 WdiSystemHost - ok
22:39:04.0982 2732 WebClient (3db6d04e1c64272f8b14eb8bc4616280) C:\Windows\System32\webclnt.dll
22:39:04.0982 2732 WebClient - ok
22:39:05.0013 2732 Wecsvc (c749025a679c5103e575e3b48e092c43) C:\Windows\system32\wecsvc.dll
22:39:05.0013 2732 Wecsvc - ok
22:39:05.0044 2732 wercplsupport (7e591867422dc788b9e5bd337a669a08) C:\Windows\System32\wercplsupport.dll
22:39:05.0044 2732 wercplsupport - ok
22:39:05.0060 2732 WerSvc (6d137963730144698cbd10f202e9f251) C:\Windows\System32\WerSvc.dll
22:39:05.0060 2732 WerSvc - ok
22:39:05.0154 2732 WfpLwf (611b23304bf067451a9fdee01fbdd725) C:\Windows\system32\DRIVERS\wfplwf.sys
22:39:05.0154 2732 WfpLwf - ok
22:39:05.0154 2732 WIMMount (05ecaec3e4529a7153b3136ceb49f0ec) C:\Windows\system32\drivers\wimmount.sys
22:39:05.0154 2732 WIMMount - ok
22:39:05.0200 2732 WinDefend - ok
22:39:05.0216 2732 WinHttpAutoProxySvc - ok
22:39:05.0310 2732 Winmgmt (19b07e7e8915d701225da41cb3877306) C:\Windows\system32\wbem\WMIsvc.dll
22:39:05.0310 2732 Winmgmt - ok
22:39:05.0403 2732 WinRM (bcb1310604aa415c4508708975b3931e) C:\Windows\system32\WsmSvc.dll
22:39:05.0434 2732 WinRM - ok
22:39:05.0668 2732 Wlansvc (4fada86e62f18a1b2f42ba18ae24e6aa) C:\Windows\System32\wlansvc.dll
22:39:05.0684 2732 Wlansvc - ok
22:39:05.0793 2732 wlcrasvc (06c8fa1cf39de6a735b54d906ba791c6) C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
22:39:05.0793 2732 wlcrasvc - ok
22:39:05.0902 2732 wlidsvc (2bacd71123f42cea603f4e205e1ae337) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
22:39:05.0902 2732 wlidsvc - ok
22:39:06.0214 2732 WmiAcpi (f6ff8944478594d0e414d3f048f0d778) C:\Windows\system32\drivers\wmiacpi.sys
22:39:06.0214 2732 WmiAcpi - ok
22:39:06.0292 2732 wmiApSrv (38b84c94c5a8af291adfea478ae54f93) C:\Windows\system32\wbem\WmiApSrv.exe
22:39:06.0308 2732 wmiApSrv - ok
22:39:06.0355 2732 WMPNetworkSvc - ok
22:39:06.0386 2732 WPCSvc (96c6e7100d724c69fcf9e7bf590d1dca) C:\Windows\System32\wpcsvc.dll
22:39:06.0386 2732 WPCSvc - ok
22:39:06.0417 2732 WPDBusEnum (93221146d4ebbf314c29b23cd6cc391d) C:\Windows\system32\wpdbusenum.dll
22:39:06.0417 2732 WPDBusEnum - ok
22:39:06.0433 2732 ws2ifsl (6bcc1d7d2fd2453957c5479a32364e52) C:\Windows\system32\drivers\ws2ifsl.sys
22:39:06.0448 2732 ws2ifsl - ok
22:39:06.0464 2732 wscsvc (e8b1fe6669397d1772d8196df0e57a9e) C:\Windows\System32\wscsvc.dll
22:39:06.0464 2732 wscsvc - ok
22:39:06.0464 2732 WSearch - ok
22:39:06.0573 2732 wuauserv (9df12edbc698b0bc353b3ef84861e430) C:\Windows\system32\wuaueng.dll
22:39:06.0589 2732 wuauserv - ok
22:39:06.0916 2732 WudfPf (d3381dc54c34d79b22cee0d65ba91b7c) C:\Windows\system32\drivers\WudfPf.sys
22:39:06.0916 2732 WudfPf - ok
22:39:06.0932 2732 WUDFRd (cf8d590be3373029d57af80914190682) C:\Windows\system32\DRIVERS\WUDFRd.sys
22:39:06.0932 2732 WUDFRd - ok
22:39:06.0963 2732 wudfsvc (7a95c95b6c4cf292d689106bcae49543) C:\Windows\System32\WUDFSvc.dll
22:39:06.0963 2732 wudfsvc - ok
22:39:06.0994 2732 WwanSvc (9a3452b3c2a46c073166c5cf49fad1ae) C:\Windows\System32\wwansvc.dll
22:39:06.0994 2732 WwanSvc - ok
22:39:07.0026 2732 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk0\DR0
22:39:07.0166 2732 \Device\Harddisk0\DR0 - ok
22:39:07.0166 2732 MBR (0x1B8) (064277d9f7ebd43a4c5ace87cff367bc) \Device\Harddisk5\DR5
22:39:07.0182 2732 \Device\Harddisk5\DR5 - ok
22:39:07.0182 2732 Boot (0x1200) (1e911110003f3c066b79a4e3a3c1fa9e) \Device\Harddisk0\DR0\Partition0
22:39:07.0182 2732 \Device\Harddisk0\DR0\Partition0 - ok
22:39:07.0197 2732 Boot (0x1200) (2870ba27fd76cfde8780dac12fb8f52a) \Device\Harddisk0\DR0\Partition1
22:39:07.0197 2732 \Device\Harddisk0\DR0\Partition1 - ok
22:39:07.0197 2732 Boot (0x1200) (9fcc9848fe36adef6cd50f00a1e0794f) \Device\Harddisk5\DR5\Partition0
22:39:07.0197 2732 \Device\Harddisk5\DR5\Partition0 - ok
22:39:07.0197 2732 ============================================================
22:39:07.0197 2732 Scan finished
22:39:07.0197 2732 ============================================================
22:39:07.0197 2240 Detected object count: 0
22:39:07.0197 2240 Actual detected object count: 0
22:39:10.0348 3176 Deinitialize success
Re: Prosím o kontrolu Logu - Zamrznutí PC
a tu je log z COMBOFIXU :
ComboFix 12-05-27.02 - CALLER 27.05.2012 22:45:18.1.4 - x64
Microsoft Windows 7 Ultimate 6.1.7601.1.1250.420.1029.18.6142.4828 [GMT 2:00]
Spuštěný z: c:\users\CALLER\Downloads\ComboFix.exe
AV: Microsoft Security Essentials *Disabled/Updated* {9765EA51-0D3C-7DFB-6091-10E4E1F341F6}
SP: Microsoft Security Essentials *Disabled/Updated* {2C040BB5-2B06-7275-5A21-2B969A740B4B}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Vytvořen nový Bod Obnovení
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\CALLER\amd_catalyst_12.4_cap1.exe
J:\Autorun.inf
J:\setup.exe
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-04-27 do 2012-05-27 )))))))))))))))))))))))))))))))
.
.
2012-05-27 18:19 . 2012-05-27 18:19 -------- d-----w- c:\program files (x86)\CrystalDiskInfo
2012-05-27 18:17 . 2012-05-27 18:17 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware
2012-05-27 18:17 . 2012-04-04 13:56 24904 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-05-27 16:37 . 2012-05-14 23:41 8955792 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{73038321-C361-42B6-B619-8EFC81AD5209}\mpengine.dll
2012-05-24 21:17 . 2012-05-14 23:41 8955792 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2012-05-24 21:11 . 2012-02-09 11:17 927800 ------w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E8F4896B-8F79-43E4-9246-780E7CC802C2}\gapaengine.dll
2012-05-24 21:06 . 2012-05-24 21:17 -------- d-----w- c:\program files (x86)\Microsoft Security Client
2012-05-24 21:06 . 2012-05-24 21:17 -------- d-----w- c:\program files\Microsoft Security Client
2012-05-24 20:58 . 2012-05-24 20:58 -------- d-----w- c:\windows\en
2012-05-24 20:54 . 2012-05-24 20:54 -------- d-----w- c:\windows\cs
2012-05-24 20:52 . 2012-05-24 20:52 -------- d-----w- c:\program files (x86)\Microsoft SQL Server Compact Edition
2012-05-24 20:46 . 2012-05-24 20:56 -------- d-----w- c:\program files (x86)\Windows Live
2012-05-24 20:46 . 2012-05-24 20:46 -------- dc----w- c:\windows\system32\DRVSTORE
2012-05-24 20:46 . 2012-03-08 16:40 48488 ----a-w- c:\windows\system32\drivers\fssfltr.sys
2012-05-24 20:45 . 2012-05-24 20:45 -------- d-----w- c:\windows\PCHEALTH
2012-05-24 20:45 . 2012-05-24 20:46 -------- d-----w- c:\program files\Windows Live
2012-05-24 20:44 . 2012-05-24 21:22 -------- d-----w- c:\program files (x86)\Microsoft Silverlight
2012-05-24 20:42 . 2012-05-24 20:42 -------- d-----w- c:\program files (x86)\Common Files\Windows Live
2012-05-24 20:22 . 2012-05-24 20:22 51496 ----a-w- c:\windows\system32\drivers\stflt.sys
2012-05-24 19:54 . 2012-05-24 19:54 -------- d-----w- c:\program files (x86)\Lavalys
2012-05-23 19:53 . 2012-05-23 19:53 -------- d-----w- c:\program files (x86)\RadeonPro
2012-05-23 16:02 . 2012-05-23 16:02 -------- d-----w- c:\program files (x86)\uTorrent
2012-05-23 13:20 . 2012-05-23 13:20 -------- d-----w- c:\programdata\Malwarebytes
2012-05-22 17:20 . 2012-05-22 17:20 -------- d-----w- c:\program files\Unigine
2012-05-22 16:56 . 2012-05-22 16:56 -------- d-----w- c:\program files (x86)\GPU-Z
2012-05-22 16:08 . 2012-05-14 23:41 8955792 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{F0AF7B7E-30D4-4498-90DC-C2AA2DA3F04B}\mpengine.dll
2012-05-21 22:44 . 2012-05-21 12:58 -------- d-----w- c:\windows\Panther
2012-05-21 22:44 . 2012-05-21 16:36 -------- d-----w- C:\Boot
2012-05-21 22:44 . 2012-05-21 22:44 -------- d-----w- c:\windows\system32\OEM
2012-05-21 20:04 . 2008-10-15 04:22 519000 ----a-w- c:\windows\system32\d3dx10_40.dll
2012-05-21 20:04 . 2008-10-15 04:22 452440 ----a-w- c:\windows\SysWow64\d3dx10_40.dll
2012-05-21 20:04 . 2008-10-15 04:22 2605920 ----a-w- c:\windows\system32\D3DCompiler_40.dll
2012-05-21 20:04 . 2008-10-15 04:22 2036576 ----a-w- c:\windows\SysWow64\D3DCompiler_40.dll
2012-05-21 20:04 . 2008-10-15 04:22 5631312 ----a-w- c:\windows\system32\D3DX9_40.dll
2012-05-21 20:04 . 2008-10-15 04:22 4379984 ----a-w- c:\windows\SysWow64\D3DX9_40.dll
2012-05-21 19:31 . 2012-05-21 19:31 -------- d-----w- c:\program files\CPUID
2012-05-21 19:31 . 2011-09-21 08:25 21992 ----a-w- c:\windows\system32\drivers\cpuz135_x64.sys
2012-05-21 19:19 . 2012-05-21 19:19 -------- d-----w- c:\programdata\Futuremark
2012-05-21 19:05 . 2012-05-21 19:05 -------- d-----w- c:\program files (x86)\NVIDIA Corporation
2012-05-21 19:05 . 2012-05-21 19:05 -------- d-----w- c:\program files (x86)\Common Files\Wise Installation Wizard
2012-05-21 18:48 . 2012-05-21 19:05 -------- d-----w- c:\program files (x86)\Futuremark
2012-05-21 18:47 . 2012-05-21 18:47 -------- d-----w- c:\program files\Futuremark
2012-05-21 18:02 . 2012-05-21 18:02 -------- d-----w- c:\programdata\ATI
2012-05-21 18:00 . 2012-05-21 18:02 -------- d-----w- c:\program files\ATI Technologies
2012-05-21 17:41 . 2012-05-21 17:41 86016 ----a-w- c:\windows\SysWow64\OpenAL32.dll
2012-05-21 17:41 . 2012-05-21 17:41 262144 ----a-w- c:\windows\SysWow64\wrap_oal.dll
2012-05-21 17:41 . 2012-05-21 17:41 -------- d-----w- c:\windows\SysWow64\Futuremark
2012-05-21 17:41 . 2004-10-25 18:02 21664 ----a-w- c:\windows\SysWow64\drivers\Entech.sys
2012-05-21 17:41 . 2004-06-22 13:44 5632 ----a-w- c:\windows\SysWow64\drivers\Entech64.sys
2012-05-21 17:41 . 2001-11-19 17:05 3972 ----a-w- c:\windows\SysWow64\drivers\PciBus.sys
2012-05-21 17:41 . 2012-05-21 17:41 -------- d-----w- c:\program files (x86)\Geeks3D
2012-05-21 16:43 . 2012-01-25 06:38 77312 ----a-w- c:\windows\system32\rdpwsx.dll
2012-05-21 16:43 . 2012-01-25 06:38 149504 ----a-w- c:\windows\system32\rdpcorekmts.dll
2012-05-21 16:11 . 2012-05-21 16:11 -------- d-----w- c:\windows\system32\SPReview
2012-05-21 16:11 . 2012-05-21 16:11 -------- d-----w- c:\windows\system32\EventProviders
2012-05-21 16:09 . 2010-11-20 13:34 363392 ----a-w- c:\windows\system32\drivers\volmgrx.sys
2012-05-21 16:08 . 2010-11-20 13:27 529408 ----a-w- c:\windows\system32\wbemcomn.dll
2012-05-21 16:08 . 2010-11-20 13:27 244736 ----a-w- c:\program files\Windows Portable Devices\sqmapi.dll
2012-05-21 16:08 . 2010-11-20 13:27 244736 ----a-w- c:\windows\system32\sqmapi.dll
2012-05-21 15:05 . 2010-02-23 08:16 294912 ----a-w- c:\windows\system32\browserchoice.exe
2012-05-21 14:54 . 2012-03-01 06:46 23408 ----a-w- c:\windows\system32\drivers\fs_rec.sys
2012-05-21 14:54 . 2012-03-01 06:38 220672 ----a-w- c:\windows\system32\wintrust.dll
2012-05-21 14:54 . 2012-03-01 06:33 81408 ----a-w- c:\windows\system32\imagehlp.dll
2012-05-21 14:54 . 2012-03-01 06:28 5120 ----a-w- c:\windows\system32\wmi.dll
2012-05-21 14:54 . 2012-03-01 05:37 172544 ----a-w- c:\windows\SysWow64\wintrust.dll
2012-05-21 14:54 . 2012-03-01 05:33 159232 ----a-w- c:\windows\SysWow64\imagehlp.dll
2012-05-21 14:54 . 2012-03-01 05:29 5120 ----a-w- c:\windows\SysWow64\wmi.dll
2012-05-21 14:50 . 2010-12-23 10:42 1118720 ----a-w- c:\windows\system32\sbe.dll
2012-05-21 14:49 . 2012-03-30 11:35 1918320 ----a-w- c:\windows\system32\drivers\tcpip.sys
2012-05-21 14:43 . 2012-05-22 16:04 -------- d-----w- c:\programdata\boost_interprocess
2012-05-21 14:42 . 2012-05-21 14:43 -------- d-----r- c:\program files (x86)\Skype
2012-05-21 14:42 . 2012-05-21 14:42 -------- d-----w- c:\program files (x86)\Common Files\Skype
2012-05-21 14:42 . 2012-05-21 14:43 -------- d-----w- c:\programdata\Skype
2012-05-21 14:41 . 2011-11-19 14:58 77312 ----a-w- c:\windows\system32\packager.dll
2012-05-21 14:41 . 2011-11-19 14:01 67072 ----a-w- c:\windows\SysWow64\packager.dll
2012-05-21 14:33 . 2012-05-27 17:02 -------- d-----w- c:\program files (x86)\SpeedFan
2012-05-21 14:15 . 2012-05-21 14:15 -------- d-----w- c:\programdata\AMD
2012-05-21 14:15 . 2012-05-21 14:15 -------- d-----w- c:\program files (x86)\AMD AVT
2012-05-21 14:15 . 2012-05-21 14:15 -------- d-----w- c:\program files (x86)\AMD APP
2012-05-21 14:03 . 2012-05-21 14:12 -------- d-----w- C:\AMD
2012-05-21 13:57 . 2012-04-06 02:20 1067520 ----a-w- c:\windows\system32\aticfx64.dll
2012-05-21 13:57 . 2012-04-06 02:16 442368 ----a-w- c:\windows\system32\ATIDEMGX.dll
2012-05-21 13:57 . 2012-04-06 01:34 4731904 ----a-w- c:\windows\system32\atiumd6a.dll
2012-05-21 13:57 . 2012-04-06 01:23 7431680 ----a-w- c:\windows\system32\atiumd64.dll
2012-05-21 13:57 . 2012-04-06 01:11 514560 ----a-w- c:\windows\system32\atiadlxx.dll
2012-05-21 13:57 . 2012-04-06 01:09 44544 ----a-w- c:\windows\system32\atiu9p64.dll
2012-05-21 13:57 . 2011-11-10 09:09 423424 ----a-w- c:\windows\system32\atipdl64.dll
2012-05-21 13:57 . 2011-11-10 09:09 360448 ----a-w- c:\windows\SysWow64\atipdlxx.dll
2012-05-21 13:57 . 2011-11-10 09:09 278528 ----a-w- c:\windows\SysWow64\Oemdspif.dll
2012-05-21 13:41 . 2010-10-27 01:43 110592 ----a-w- c:\windows\system32\rtvcvfw32.dll
2012-05-21 13:40 . 2012-05-24 16:18 -------- d-----w- c:\program files (x86)\MSI Afterburner
2012-05-21 13:40 . 2012-05-21 13:40 0 ----a-w- c:\windows\ativpsrm.bin
2012-05-21 13:37 . 2012-05-21 13:37 -------- d-----w- c:\program files (x86)\Common Files\ATI Technologies
2012-05-21 13:37 . 2012-05-21 13:37 -------- d-----w- c:\program files\Common Files\ATI Technologies
2012-05-21 13:36 . 2012-04-06 02:00 64000 ----a-w- c:\windows\system32\coinst.dll
2012-05-21 13:36 . 2012-05-21 18:01 -------- d-----w- c:\program files (x86)\ATI Technologies
2012-05-21 13:36 . 2012-05-21 13:36 -------- d-----w- c:\program files\ATI
2012-05-21 13:34 . 2012-05-24 21:17 -------- d-sh--w- c:\windows\Installer
2012-05-21 13:34 . 2012-05-21 13:34 -------- d-----w- c:\program files (x86)\Microsoft
2012-05-21 13:32 . 2012-01-31 12:44 279656 ------w- c:\windows\system32\MpSigStub.exe
2012-05-21 13:20 . 2012-05-21 13:22 -------- d-----w- c:\programdata\DriverGenius
2012-05-21 13:19 . 2012-05-21 13:19 -------- d-----w- c:\program files (x86)\Driver-Soft
2012-05-21 13:18 . 2012-05-21 13:18 70304 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2012-05-21 13:18 . 2012-05-21 13:18 419488 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2012-05-21 13:18 . 2012-05-21 13:18 -------- d-----w- c:\windows\SysWow64\Macromed
2012-05-21 13:18 . 2012-05-21 13:18 -------- d-----w- c:\windows\system32\Macromed
2012-05-21 13:11 . 2011-06-10 04:34 107552 ----a-w- c:\windows\system32\RTNUninst64.dll
2012-05-21 13:11 . 2012-05-21 19:05 -------- d--h--w- c:\program files (x86)\InstallShield Installation Information
2012-05-21 13:11 . 2012-05-21 13:12 -------- d-----w- c:\program files (x86)\Realtek
2012-05-21 13:11 . 2009-12-21 15:39 51712 ----a-w- c:\windows\system32\drivers\RtTeam60.sys
2012-05-21 13:11 . 2009-07-20 02:27 27136 ----a-w- c:\windows\system32\drivers\RtNdPt60.sys
2012-05-21 13:11 . 2007-12-03 02:20 24064 ----a-w- c:\windows\system32\drivers\RtVlan60.sys
2012-05-21 13:10 . 2012-05-21 13:10 -------- d-----w- c:\program files (x86)\Intel
2012-05-21 13:10 . 2012-01-16 09:06 53248 ----a-w- c:\windows\SysWow64\CSVer.dll
2012-05-21 13:09 . 2012-05-21 13:09 -------- d-----w- C:\Intel
2012-05-21 13:05 . 2012-05-27 20:48 -------- d-----w- c:\users\CALLER
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-05-24 20:45 . 2011-03-28 16:36 19736 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
2012-05-21 16:28 . 2009-07-14 02:36 152576 ----a-w- c:\windows\SysWow64\msclmd.dll
2012-05-21 16:28 . 2009-07-14 02:36 175616 ----a-w- c:\windows\system32\msclmd.dll
2012-05-21 15:02 . 2012-05-21 15:02 249344 ----a-w- c:\windows\system32\webcheck.dll
2012-05-21 15:02 . 2012-05-21 15:02 203776 ----a-w- c:\windows\SysWow64\webcheck.dll
2012-04-06 05:22 . 2012-04-06 05:22 11174400 ----a-w- c:\windows\system32\drivers\atikmdag.sys
2012-04-06 02:22 . 2012-04-06 02:22 159744 ----a-w- c:\windows\system32\atiapfxx.exe
2012-04-06 02:21 . 2012-04-06 02:21 909312 ----a-w- c:\windows\SysWow64\aticfx32.dll
2012-04-06 02:16 . 2012-04-06 02:16 503808 ----a-w- c:\windows\system32\atieclxx.exe
2012-04-06 02:16 . 2012-04-06 02:16 236544 ----a-w- c:\windows\system32\atiesrxx.exe
2012-04-06 02:14 . 2012-04-06 02:14 120320 ----a-w- c:\windows\system32\atitmm64.dll
2012-04-06 02:14 . 2012-04-06 02:14 21504 ----a-w- c:\windows\system32\atimuixx.dll
2012-04-06 02:14 . 2012-04-06 02:14 59392 ----a-w- c:\windows\system32\atiedu64.dll
2012-04-06 02:14 . 2012-04-06 02:14 43520 ----a-w- c:\windows\SysWow64\ati2edxx.dll
2012-04-06 02:13 . 2012-04-06 02:13 6800896 ----a-w- c:\windows\SysWow64\atidxx32.dll
2012-04-06 02:10 . 2012-04-06 02:10 26181632 ----a-w- c:\windows\system32\atio6axx.dll
2012-04-06 01:54 . 2012-04-06 01:54 7479296 ----a-w- c:\windows\system32\atidxx64.dll
2012-04-06 01:50 . 2012-04-06 01:50 19753984 ----a-w- c:\windows\SysWow64\atioglxx.dll
2012-04-06 01:35 . 2012-04-06 01:35 1120768 ----a-w- c:\windows\system32\atiumd6v.dll
2012-04-06 01:34 . 2012-04-06 01:34 1831424 ----a-w- c:\windows\SysWow64\atiumdmv.dll
2012-04-06 01:34 . 2012-04-06 01:34 6203392 ----a-w- c:\windows\SysWow64\atiumdag.dll
2012-04-06 01:30 . 2012-04-06 01:30 51200 ----a-w- c:\windows\system32\aticalrt64.dll
2012-04-06 01:30 . 2012-04-06 01:30 46080 ----a-w- c:\windows\SysWow64\aticalrt.dll
2012-04-06 01:30 . 2012-04-06 01:30 44544 ----a-w- c:\windows\system32\aticalcl64.dll
2012-04-06 01:30 . 2012-04-06 01:30 44032 ----a-w- c:\windows\SysWow64\aticalcl.dll
2012-04-06 01:29 . 2012-04-06 01:29 16090624 ----a-w- c:\windows\system32\aticaldd64.dll
2012-04-06 01:25 . 2012-04-06 01:25 13764096 ----a-w- c:\windows\SysWow64\aticaldd.dll
2012-04-06 01:22 . 2012-04-06 01:22 4795904 ----a-w- c:\windows\SysWow64\atiumdva.dll
2012-04-06 01:11 . 2012-04-06 01:11 360448 ----a-w- c:\windows\SysWow64\atiadlxy.dll
2012-04-06 01:11 . 2012-04-06 01:11 17408 ----a-w- c:\windows\system32\atig6pxx.dll
2012-04-06 01:11 . 2012-04-06 01:11 14848 ----a-w- c:\windows\SysWow64\atiglpxx.dll
2012-04-06 01:11 . 2012-04-06 01:11 14848 ----a-w- c:\windows\system32\atiglpxx.dll
2012-04-06 01:11 . 2012-04-06 01:11 41984 ----a-w- c:\windows\system32\atig6txx.dll
2012-04-06 01:10 . 2012-04-06 01:10 33280 ----a-w- c:\windows\SysWow64\atigktxx.dll
2012-04-06 01:10 . 2012-04-06 01:10 343040 ----a-w- c:\windows\system32\drivers\atikmpag.sys
2012-04-06 01:09 . 2012-04-06 01:09 54784 ----a-w- c:\windows\system32\atiuxp64.dll
2012-04-06 01:09 . 2012-04-06 01:09 41984 ----a-w- c:\windows\SysWow64\atiuxpag.dll
2012-04-06 01:09 . 2012-04-06 01:09 32256 ----a-w- c:\windows\SysWow64\atiu9pag.dll
2012-04-06 01:09 . 2012-04-06 01:09 53248 ----a-w- c:\windows\system32\drivers\ati2erec.dll
2012-04-06 01:06 . 2012-04-06 01:06 54784 ----a-w- c:\windows\system32\atimpc64.dll
2012-04-06 01:06 . 2012-04-06 01:06 54784 ----a-w- c:\windows\system32\amdpcom64.dll
2012-04-06 01:06 . 2012-04-06 01:06 53760 ----a-w- c:\windows\SysWow64\atimpc32.dll
2012-04-06 01:06 . 2012-04-06 01:06 53760 ----a-w- c:\windows\SysWow64\amdpcom32.dll
2012-04-05 20:34 . 2012-04-05 20:34 187392 ----a-w- c:\windows\system32\clinfo.exe
2012-04-05 20:34 . 2012-04-05 20:34 74752 ----a-w- c:\windows\system32\OpenVideo64.dll
2012-04-05 20:34 . 2012-04-05 20:34 64512 ----a-w- c:\windows\SysWow64\OpenVideo.dll
2012-04-05 20:33 . 2012-04-05 20:33 63488 ----a-w- c:\windows\system32\OVDecode64.dll
2012-04-05 20:33 . 2012-04-05 20:33 56320 ----a-w- c:\windows\SysWow64\OVDecode.dll
2012-04-05 20:33 . 2012-04-05 20:33 16457216 ----a-w- c:\windows\system32\amdocl64.dll
2012-04-05 20:32 . 2012-04-05 20:32 13007872 ----a-w- c:\windows\SysWow64\amdocl.dll
2012-04-05 20:32 . 2012-04-05 20:32 54784 ----a-w- c:\windows\system32\OpenCL.dll
2012-04-05 20:32 . 2012-04-05 20:32 50176 ----a-w- c:\windows\SysWow64\OpenCL.dll
2012-03-20 18:44 . 2011-04-27 13:25 98688 ----a-w- c:\windows\system32\drivers\NisDrvWFP.sys
2012-03-20 18:44 . 2011-04-18 11:18 203888 ----a-w- c:\windows\system32\drivers\MpFilter.sys
2012-03-09 12:07 . 2012-03-09 12:07 29184 ----a-w- c:\windows\system32\kdbsdk64.dll
2012-03-09 12:06 . 2012-03-09 12:06 24576 ----a-w- c:\windows\SysWow64\kdbsdk32.dll
2012-03-08 16:50 . 2012-03-08 16:50 49016 ----a-w- c:\windows\SysWow64\sirenacm.dll
2012-03-08 16:37 . 2012-03-08 16:37 302448 ----a-w- c:\windows\WLXPGSS.SCR
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2012-05-03 17355912]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1475584]
"HydraVisionDesktopManager"="c:\program files (x86)\ATI Technologies\HydraVision\HydraDM.exe" [2011-11-09 393216]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"AMD AVT"="start AMD Accelerated Video Transcoding device initialization" [X]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2012-04-05 641664]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"
.
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe [2012-05-03 158856]
R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-05-21 257696]
R3 BBUpdate;BBUpdate;c:\program files (x86)\Microsoft\BingBar\7.1.362.0\SeaPort.exe [2012-02-13 240408]
R3 Futuremark SystemInfo Service;Futuremark SystemInfo Service;c:\program files (x86)\Futuremark\Futuremark SystemInfo\FMSISvc.exe [2012-04-26 135584]
R3 MSICDSetup;MSICDSetup;E:\CDriver64.sys [x]
R3 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys [x]
R3 NisSrv;Kontrola sítě Microsoft;c:\program files\Microsoft Security Client\NisSrv.exe [2012-03-26 291696]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [x]
R3 RTTEAMPT;Realtek Teaming Protocol Driver (NDIS 6.0);c:\windows\system32\DRIVERS\RtTeam60.sys [x]
R3 RTVLANPT;Realtek Vlan Protocol Driver (NDIS 6.2);c:\windows\system32\DRIVERS\RtVlan60.sys [x]
R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys [x]
R3 TEAM;Realtek Virtual Miniport Driver for Teaming (NDIS 6.0);c:\windows\system32\DRIVERS\RtTeam60.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys [x]
R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys [x]
R3 VLAN;Realtek Virtual Miniport Driver for VLAN (NDIS 6.2);c:\windows\system32\DRIVERS\RtVLAN60.sys [x]
R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [x]
S2 BBSvc;BingBar Service;c:\program files (x86)\Microsoft\BingBar\7.1.362.0\BBSvc.exe [2012-02-13 193816]
S2 cpuz135;cpuz135;c:\windows\system32\drivers\cpuz135_x64.sys [x]
S2 RadeonPro Support Service;RadeonPro Support Service;c:\program files (x86)\RadeonPro\RadeonProSupport.exe [2011-02-09 12800]
S2 RtNdPt60;Realtek NDIS Protocol Driver;c:\windows\system32\DRIVERS\RtNdPt60.sys [x]
S2 Skype C2C Service;Skype C2C Service;c:\programdata\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2012-04-09 3063968]
S3 amdkmdag;amdkmdag;c:\windows\system32\DRIVERS\atikmdag.sys [x]
S3 amdkmdap;amdkmdap;c:\windows\system32\DRIVERS\atikmpag.sys [x]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW76.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [x]
.
.
--- Ostatní služby/ovladače v paměti ---
.
*NewlyCreated* - WS2IFSL
.
Obsah adresáře 'Naplánované úlohy'
.
2012-05-27 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-05-21 13:18]
.
2012-05-24 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1676154842-4194198124-3986527764-1001Core.job
- c:\users\CALLER\AppData\Local\Google\Update\GoogleUpdate.exe [2012-05-21 15:49]
.
2012-05-27 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1676154842-4194198124-3986527764-1001UA.job
- c:\users\CALLER\AppData\Local\Google\Update\GoogleUpdate.exe [2012-05-21 15:49]
.
.
--------- x86-64 -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2010-11-02 11545192]
"MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2012-03-26 1271168]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"LoadAppInit_DLLs"=0x0
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SysWOW64\blank.htm
TCP: DhcpNameServer = 192.168.1.254 10.0.0.1
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Wow6432Node-HKLM-Run-Driver Genius - (no file)
HKLM-Run-SpywareTerminatorShield - c:\program files (x86)\Spyware Terminator\SpywareTerminatorShield.exe
HKLM-Run-SpywareTerminatorUpdater - c:\program files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\S-1-5-21-1676154842-4194198124-3986527764-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.eml\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="WindowsLiveMail.Email.1"
.
[HKEY_USERS\S-1-5-21-1676154842-4194198124-3986527764-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.vcf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="WindowsLiveMail.VCard.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_2_202_235_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_2_202_235_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_2_202_235.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.11"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_2_202_235.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_2_202_235.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_2_202_235.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2012-05-27 22:56:35 - počítač byl restartován
ComboFix-quarantined-files.txt 2012-05-27 20:56
.
Před spuštěním: 8 490 287 104
Po spuštění: 8 521 674 752
.
- - End Of File - - DD85A0DA242CF06E23F94F720B426C57
ComboFix 12-05-27.02 - CALLER 27.05.2012 22:45:18.1.4 - x64
Microsoft Windows 7 Ultimate 6.1.7601.1.1250.420.1029.18.6142.4828 [GMT 2:00]
Spuštěný z: c:\users\CALLER\Downloads\ComboFix.exe
AV: Microsoft Security Essentials *Disabled/Updated* {9765EA51-0D3C-7DFB-6091-10E4E1F341F6}
SP: Microsoft Security Essentials *Disabled/Updated* {2C040BB5-2B06-7275-5A21-2B969A740B4B}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Vytvořen nový Bod Obnovení
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\CALLER\amd_catalyst_12.4_cap1.exe
J:\Autorun.inf
J:\setup.exe
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-04-27 do 2012-05-27 )))))))))))))))))))))))))))))))
.
.
2012-05-27 18:19 . 2012-05-27 18:19 -------- d-----w- c:\program files (x86)\CrystalDiskInfo
2012-05-27 18:17 . 2012-05-27 18:17 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware
2012-05-27 18:17 . 2012-04-04 13:56 24904 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-05-27 16:37 . 2012-05-14 23:41 8955792 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{73038321-C361-42B6-B619-8EFC81AD5209}\mpengine.dll
2012-05-24 21:17 . 2012-05-14 23:41 8955792 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2012-05-24 21:11 . 2012-02-09 11:17 927800 ------w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E8F4896B-8F79-43E4-9246-780E7CC802C2}\gapaengine.dll
2012-05-24 21:06 . 2012-05-24 21:17 -------- d-----w- c:\program files (x86)\Microsoft Security Client
2012-05-24 21:06 . 2012-05-24 21:17 -------- d-----w- c:\program files\Microsoft Security Client
2012-05-24 20:58 . 2012-05-24 20:58 -------- d-----w- c:\windows\en
2012-05-24 20:54 . 2012-05-24 20:54 -------- d-----w- c:\windows\cs
2012-05-24 20:52 . 2012-05-24 20:52 -------- d-----w- c:\program files (x86)\Microsoft SQL Server Compact Edition
2012-05-24 20:46 . 2012-05-24 20:56 -------- d-----w- c:\program files (x86)\Windows Live
2012-05-24 20:46 . 2012-05-24 20:46 -------- dc----w- c:\windows\system32\DRVSTORE
2012-05-24 20:46 . 2012-03-08 16:40 48488 ----a-w- c:\windows\system32\drivers\fssfltr.sys
2012-05-24 20:45 . 2012-05-24 20:45 -------- d-----w- c:\windows\PCHEALTH
2012-05-24 20:45 . 2012-05-24 20:46 -------- d-----w- c:\program files\Windows Live
2012-05-24 20:44 . 2012-05-24 21:22 -------- d-----w- c:\program files (x86)\Microsoft Silverlight
2012-05-24 20:42 . 2012-05-24 20:42 -------- d-----w- c:\program files (x86)\Common Files\Windows Live
2012-05-24 20:22 . 2012-05-24 20:22 51496 ----a-w- c:\windows\system32\drivers\stflt.sys
2012-05-24 19:54 . 2012-05-24 19:54 -------- d-----w- c:\program files (x86)\Lavalys
2012-05-23 19:53 . 2012-05-23 19:53 -------- d-----w- c:\program files (x86)\RadeonPro
2012-05-23 16:02 . 2012-05-23 16:02 -------- d-----w- c:\program files (x86)\uTorrent
2012-05-23 13:20 . 2012-05-23 13:20 -------- d-----w- c:\programdata\Malwarebytes
2012-05-22 17:20 . 2012-05-22 17:20 -------- d-----w- c:\program files\Unigine
2012-05-22 16:56 . 2012-05-22 16:56 -------- d-----w- c:\program files (x86)\GPU-Z
2012-05-22 16:08 . 2012-05-14 23:41 8955792 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{F0AF7B7E-30D4-4498-90DC-C2AA2DA3F04B}\mpengine.dll
2012-05-21 22:44 . 2012-05-21 12:58 -------- d-----w- c:\windows\Panther
2012-05-21 22:44 . 2012-05-21 16:36 -------- d-----w- C:\Boot
2012-05-21 22:44 . 2012-05-21 22:44 -------- d-----w- c:\windows\system32\OEM
2012-05-21 20:04 . 2008-10-15 04:22 519000 ----a-w- c:\windows\system32\d3dx10_40.dll
2012-05-21 20:04 . 2008-10-15 04:22 452440 ----a-w- c:\windows\SysWow64\d3dx10_40.dll
2012-05-21 20:04 . 2008-10-15 04:22 2605920 ----a-w- c:\windows\system32\D3DCompiler_40.dll
2012-05-21 20:04 . 2008-10-15 04:22 2036576 ----a-w- c:\windows\SysWow64\D3DCompiler_40.dll
2012-05-21 20:04 . 2008-10-15 04:22 5631312 ----a-w- c:\windows\system32\D3DX9_40.dll
2012-05-21 20:04 . 2008-10-15 04:22 4379984 ----a-w- c:\windows\SysWow64\D3DX9_40.dll
2012-05-21 19:31 . 2012-05-21 19:31 -------- d-----w- c:\program files\CPUID
2012-05-21 19:31 . 2011-09-21 08:25 21992 ----a-w- c:\windows\system32\drivers\cpuz135_x64.sys
2012-05-21 19:19 . 2012-05-21 19:19 -------- d-----w- c:\programdata\Futuremark
2012-05-21 19:05 . 2012-05-21 19:05 -------- d-----w- c:\program files (x86)\NVIDIA Corporation
2012-05-21 19:05 . 2012-05-21 19:05 -------- d-----w- c:\program files (x86)\Common Files\Wise Installation Wizard
2012-05-21 18:48 . 2012-05-21 19:05 -------- d-----w- c:\program files (x86)\Futuremark
2012-05-21 18:47 . 2012-05-21 18:47 -------- d-----w- c:\program files\Futuremark
2012-05-21 18:02 . 2012-05-21 18:02 -------- d-----w- c:\programdata\ATI
2012-05-21 18:00 . 2012-05-21 18:02 -------- d-----w- c:\program files\ATI Technologies
2012-05-21 17:41 . 2012-05-21 17:41 86016 ----a-w- c:\windows\SysWow64\OpenAL32.dll
2012-05-21 17:41 . 2012-05-21 17:41 262144 ----a-w- c:\windows\SysWow64\wrap_oal.dll
2012-05-21 17:41 . 2012-05-21 17:41 -------- d-----w- c:\windows\SysWow64\Futuremark
2012-05-21 17:41 . 2004-10-25 18:02 21664 ----a-w- c:\windows\SysWow64\drivers\Entech.sys
2012-05-21 17:41 . 2004-06-22 13:44 5632 ----a-w- c:\windows\SysWow64\drivers\Entech64.sys
2012-05-21 17:41 . 2001-11-19 17:05 3972 ----a-w- c:\windows\SysWow64\drivers\PciBus.sys
2012-05-21 17:41 . 2012-05-21 17:41 -------- d-----w- c:\program files (x86)\Geeks3D
2012-05-21 16:43 . 2012-01-25 06:38 77312 ----a-w- c:\windows\system32\rdpwsx.dll
2012-05-21 16:43 . 2012-01-25 06:38 149504 ----a-w- c:\windows\system32\rdpcorekmts.dll
2012-05-21 16:11 . 2012-05-21 16:11 -------- d-----w- c:\windows\system32\SPReview
2012-05-21 16:11 . 2012-05-21 16:11 -------- d-----w- c:\windows\system32\EventProviders
2012-05-21 16:09 . 2010-11-20 13:34 363392 ----a-w- c:\windows\system32\drivers\volmgrx.sys
2012-05-21 16:08 . 2010-11-20 13:27 529408 ----a-w- c:\windows\system32\wbemcomn.dll
2012-05-21 16:08 . 2010-11-20 13:27 244736 ----a-w- c:\program files\Windows Portable Devices\sqmapi.dll
2012-05-21 16:08 . 2010-11-20 13:27 244736 ----a-w- c:\windows\system32\sqmapi.dll
2012-05-21 15:05 . 2010-02-23 08:16 294912 ----a-w- c:\windows\system32\browserchoice.exe
2012-05-21 14:54 . 2012-03-01 06:46 23408 ----a-w- c:\windows\system32\drivers\fs_rec.sys
2012-05-21 14:54 . 2012-03-01 06:38 220672 ----a-w- c:\windows\system32\wintrust.dll
2012-05-21 14:54 . 2012-03-01 06:33 81408 ----a-w- c:\windows\system32\imagehlp.dll
2012-05-21 14:54 . 2012-03-01 06:28 5120 ----a-w- c:\windows\system32\wmi.dll
2012-05-21 14:54 . 2012-03-01 05:37 172544 ----a-w- c:\windows\SysWow64\wintrust.dll
2012-05-21 14:54 . 2012-03-01 05:33 159232 ----a-w- c:\windows\SysWow64\imagehlp.dll
2012-05-21 14:54 . 2012-03-01 05:29 5120 ----a-w- c:\windows\SysWow64\wmi.dll
2012-05-21 14:50 . 2010-12-23 10:42 1118720 ----a-w- c:\windows\system32\sbe.dll
2012-05-21 14:49 . 2012-03-30 11:35 1918320 ----a-w- c:\windows\system32\drivers\tcpip.sys
2012-05-21 14:43 . 2012-05-22 16:04 -------- d-----w- c:\programdata\boost_interprocess
2012-05-21 14:42 . 2012-05-21 14:43 -------- d-----r- c:\program files (x86)\Skype
2012-05-21 14:42 . 2012-05-21 14:42 -------- d-----w- c:\program files (x86)\Common Files\Skype
2012-05-21 14:42 . 2012-05-21 14:43 -------- d-----w- c:\programdata\Skype
2012-05-21 14:41 . 2011-11-19 14:58 77312 ----a-w- c:\windows\system32\packager.dll
2012-05-21 14:41 . 2011-11-19 14:01 67072 ----a-w- c:\windows\SysWow64\packager.dll
2012-05-21 14:33 . 2012-05-27 17:02 -------- d-----w- c:\program files (x86)\SpeedFan
2012-05-21 14:15 . 2012-05-21 14:15 -------- d-----w- c:\programdata\AMD
2012-05-21 14:15 . 2012-05-21 14:15 -------- d-----w- c:\program files (x86)\AMD AVT
2012-05-21 14:15 . 2012-05-21 14:15 -------- d-----w- c:\program files (x86)\AMD APP
2012-05-21 14:03 . 2012-05-21 14:12 -------- d-----w- C:\AMD
2012-05-21 13:57 . 2012-04-06 02:20 1067520 ----a-w- c:\windows\system32\aticfx64.dll
2012-05-21 13:57 . 2012-04-06 02:16 442368 ----a-w- c:\windows\system32\ATIDEMGX.dll
2012-05-21 13:57 . 2012-04-06 01:34 4731904 ----a-w- c:\windows\system32\atiumd6a.dll
2012-05-21 13:57 . 2012-04-06 01:23 7431680 ----a-w- c:\windows\system32\atiumd64.dll
2012-05-21 13:57 . 2012-04-06 01:11 514560 ----a-w- c:\windows\system32\atiadlxx.dll
2012-05-21 13:57 . 2012-04-06 01:09 44544 ----a-w- c:\windows\system32\atiu9p64.dll
2012-05-21 13:57 . 2011-11-10 09:09 423424 ----a-w- c:\windows\system32\atipdl64.dll
2012-05-21 13:57 . 2011-11-10 09:09 360448 ----a-w- c:\windows\SysWow64\atipdlxx.dll
2012-05-21 13:57 . 2011-11-10 09:09 278528 ----a-w- c:\windows\SysWow64\Oemdspif.dll
2012-05-21 13:41 . 2010-10-27 01:43 110592 ----a-w- c:\windows\system32\rtvcvfw32.dll
2012-05-21 13:40 . 2012-05-24 16:18 -------- d-----w- c:\program files (x86)\MSI Afterburner
2012-05-21 13:40 . 2012-05-21 13:40 0 ----a-w- c:\windows\ativpsrm.bin
2012-05-21 13:37 . 2012-05-21 13:37 -------- d-----w- c:\program files (x86)\Common Files\ATI Technologies
2012-05-21 13:37 . 2012-05-21 13:37 -------- d-----w- c:\program files\Common Files\ATI Technologies
2012-05-21 13:36 . 2012-04-06 02:00 64000 ----a-w- c:\windows\system32\coinst.dll
2012-05-21 13:36 . 2012-05-21 18:01 -------- d-----w- c:\program files (x86)\ATI Technologies
2012-05-21 13:36 . 2012-05-21 13:36 -------- d-----w- c:\program files\ATI
2012-05-21 13:34 . 2012-05-24 21:17 -------- d-sh--w- c:\windows\Installer
2012-05-21 13:34 . 2012-05-21 13:34 -------- d-----w- c:\program files (x86)\Microsoft
2012-05-21 13:32 . 2012-01-31 12:44 279656 ------w- c:\windows\system32\MpSigStub.exe
2012-05-21 13:20 . 2012-05-21 13:22 -------- d-----w- c:\programdata\DriverGenius
2012-05-21 13:19 . 2012-05-21 13:19 -------- d-----w- c:\program files (x86)\Driver-Soft
2012-05-21 13:18 . 2012-05-21 13:18 70304 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2012-05-21 13:18 . 2012-05-21 13:18 419488 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2012-05-21 13:18 . 2012-05-21 13:18 -------- d-----w- c:\windows\SysWow64\Macromed
2012-05-21 13:18 . 2012-05-21 13:18 -------- d-----w- c:\windows\system32\Macromed
2012-05-21 13:11 . 2011-06-10 04:34 107552 ----a-w- c:\windows\system32\RTNUninst64.dll
2012-05-21 13:11 . 2012-05-21 19:05 -------- d--h--w- c:\program files (x86)\InstallShield Installation Information
2012-05-21 13:11 . 2012-05-21 13:12 -------- d-----w- c:\program files (x86)\Realtek
2012-05-21 13:11 . 2009-12-21 15:39 51712 ----a-w- c:\windows\system32\drivers\RtTeam60.sys
2012-05-21 13:11 . 2009-07-20 02:27 27136 ----a-w- c:\windows\system32\drivers\RtNdPt60.sys
2012-05-21 13:11 . 2007-12-03 02:20 24064 ----a-w- c:\windows\system32\drivers\RtVlan60.sys
2012-05-21 13:10 . 2012-05-21 13:10 -------- d-----w- c:\program files (x86)\Intel
2012-05-21 13:10 . 2012-01-16 09:06 53248 ----a-w- c:\windows\SysWow64\CSVer.dll
2012-05-21 13:09 . 2012-05-21 13:09 -------- d-----w- C:\Intel
2012-05-21 13:05 . 2012-05-27 20:48 -------- d-----w- c:\users\CALLER
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-05-24 20:45 . 2011-03-28 16:36 19736 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
2012-05-21 16:28 . 2009-07-14 02:36 152576 ----a-w- c:\windows\SysWow64\msclmd.dll
2012-05-21 16:28 . 2009-07-14 02:36 175616 ----a-w- c:\windows\system32\msclmd.dll
2012-05-21 15:02 . 2012-05-21 15:02 249344 ----a-w- c:\windows\system32\webcheck.dll
2012-05-21 15:02 . 2012-05-21 15:02 203776 ----a-w- c:\windows\SysWow64\webcheck.dll
2012-04-06 05:22 . 2012-04-06 05:22 11174400 ----a-w- c:\windows\system32\drivers\atikmdag.sys
2012-04-06 02:22 . 2012-04-06 02:22 159744 ----a-w- c:\windows\system32\atiapfxx.exe
2012-04-06 02:21 . 2012-04-06 02:21 909312 ----a-w- c:\windows\SysWow64\aticfx32.dll
2012-04-06 02:16 . 2012-04-06 02:16 503808 ----a-w- c:\windows\system32\atieclxx.exe
2012-04-06 02:16 . 2012-04-06 02:16 236544 ----a-w- c:\windows\system32\atiesrxx.exe
2012-04-06 02:14 . 2012-04-06 02:14 120320 ----a-w- c:\windows\system32\atitmm64.dll
2012-04-06 02:14 . 2012-04-06 02:14 21504 ----a-w- c:\windows\system32\atimuixx.dll
2012-04-06 02:14 . 2012-04-06 02:14 59392 ----a-w- c:\windows\system32\atiedu64.dll
2012-04-06 02:14 . 2012-04-06 02:14 43520 ----a-w- c:\windows\SysWow64\ati2edxx.dll
2012-04-06 02:13 . 2012-04-06 02:13 6800896 ----a-w- c:\windows\SysWow64\atidxx32.dll
2012-04-06 02:10 . 2012-04-06 02:10 26181632 ----a-w- c:\windows\system32\atio6axx.dll
2012-04-06 01:54 . 2012-04-06 01:54 7479296 ----a-w- c:\windows\system32\atidxx64.dll
2012-04-06 01:50 . 2012-04-06 01:50 19753984 ----a-w- c:\windows\SysWow64\atioglxx.dll
2012-04-06 01:35 . 2012-04-06 01:35 1120768 ----a-w- c:\windows\system32\atiumd6v.dll
2012-04-06 01:34 . 2012-04-06 01:34 1831424 ----a-w- c:\windows\SysWow64\atiumdmv.dll
2012-04-06 01:34 . 2012-04-06 01:34 6203392 ----a-w- c:\windows\SysWow64\atiumdag.dll
2012-04-06 01:30 . 2012-04-06 01:30 51200 ----a-w- c:\windows\system32\aticalrt64.dll
2012-04-06 01:30 . 2012-04-06 01:30 46080 ----a-w- c:\windows\SysWow64\aticalrt.dll
2012-04-06 01:30 . 2012-04-06 01:30 44544 ----a-w- c:\windows\system32\aticalcl64.dll
2012-04-06 01:30 . 2012-04-06 01:30 44032 ----a-w- c:\windows\SysWow64\aticalcl.dll
2012-04-06 01:29 . 2012-04-06 01:29 16090624 ----a-w- c:\windows\system32\aticaldd64.dll
2012-04-06 01:25 . 2012-04-06 01:25 13764096 ----a-w- c:\windows\SysWow64\aticaldd.dll
2012-04-06 01:22 . 2012-04-06 01:22 4795904 ----a-w- c:\windows\SysWow64\atiumdva.dll
2012-04-06 01:11 . 2012-04-06 01:11 360448 ----a-w- c:\windows\SysWow64\atiadlxy.dll
2012-04-06 01:11 . 2012-04-06 01:11 17408 ----a-w- c:\windows\system32\atig6pxx.dll
2012-04-06 01:11 . 2012-04-06 01:11 14848 ----a-w- c:\windows\SysWow64\atiglpxx.dll
2012-04-06 01:11 . 2012-04-06 01:11 14848 ----a-w- c:\windows\system32\atiglpxx.dll
2012-04-06 01:11 . 2012-04-06 01:11 41984 ----a-w- c:\windows\system32\atig6txx.dll
2012-04-06 01:10 . 2012-04-06 01:10 33280 ----a-w- c:\windows\SysWow64\atigktxx.dll
2012-04-06 01:10 . 2012-04-06 01:10 343040 ----a-w- c:\windows\system32\drivers\atikmpag.sys
2012-04-06 01:09 . 2012-04-06 01:09 54784 ----a-w- c:\windows\system32\atiuxp64.dll
2012-04-06 01:09 . 2012-04-06 01:09 41984 ----a-w- c:\windows\SysWow64\atiuxpag.dll
2012-04-06 01:09 . 2012-04-06 01:09 32256 ----a-w- c:\windows\SysWow64\atiu9pag.dll
2012-04-06 01:09 . 2012-04-06 01:09 53248 ----a-w- c:\windows\system32\drivers\ati2erec.dll
2012-04-06 01:06 . 2012-04-06 01:06 54784 ----a-w- c:\windows\system32\atimpc64.dll
2012-04-06 01:06 . 2012-04-06 01:06 54784 ----a-w- c:\windows\system32\amdpcom64.dll
2012-04-06 01:06 . 2012-04-06 01:06 53760 ----a-w- c:\windows\SysWow64\atimpc32.dll
2012-04-06 01:06 . 2012-04-06 01:06 53760 ----a-w- c:\windows\SysWow64\amdpcom32.dll
2012-04-05 20:34 . 2012-04-05 20:34 187392 ----a-w- c:\windows\system32\clinfo.exe
2012-04-05 20:34 . 2012-04-05 20:34 74752 ----a-w- c:\windows\system32\OpenVideo64.dll
2012-04-05 20:34 . 2012-04-05 20:34 64512 ----a-w- c:\windows\SysWow64\OpenVideo.dll
2012-04-05 20:33 . 2012-04-05 20:33 63488 ----a-w- c:\windows\system32\OVDecode64.dll
2012-04-05 20:33 . 2012-04-05 20:33 56320 ----a-w- c:\windows\SysWow64\OVDecode.dll
2012-04-05 20:33 . 2012-04-05 20:33 16457216 ----a-w- c:\windows\system32\amdocl64.dll
2012-04-05 20:32 . 2012-04-05 20:32 13007872 ----a-w- c:\windows\SysWow64\amdocl.dll
2012-04-05 20:32 . 2012-04-05 20:32 54784 ----a-w- c:\windows\system32\OpenCL.dll
2012-04-05 20:32 . 2012-04-05 20:32 50176 ----a-w- c:\windows\SysWow64\OpenCL.dll
2012-03-20 18:44 . 2011-04-27 13:25 98688 ----a-w- c:\windows\system32\drivers\NisDrvWFP.sys
2012-03-20 18:44 . 2011-04-18 11:18 203888 ----a-w- c:\windows\system32\drivers\MpFilter.sys
2012-03-09 12:07 . 2012-03-09 12:07 29184 ----a-w- c:\windows\system32\kdbsdk64.dll
2012-03-09 12:06 . 2012-03-09 12:06 24576 ----a-w- c:\windows\SysWow64\kdbsdk32.dll
2012-03-08 16:50 . 2012-03-08 16:50 49016 ----a-w- c:\windows\SysWow64\sirenacm.dll
2012-03-08 16:37 . 2012-03-08 16:37 302448 ----a-w- c:\windows\WLXPGSS.SCR
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2012-05-03 17355912]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1475584]
"HydraVisionDesktopManager"="c:\program files (x86)\ATI Technologies\HydraVision\HydraDM.exe" [2011-11-09 393216]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"AMD AVT"="start AMD Accelerated Video Transcoding device initialization" [X]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2012-04-05 641664]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"
.
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe [2012-05-03 158856]
R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-05-21 257696]
R3 BBUpdate;BBUpdate;c:\program files (x86)\Microsoft\BingBar\7.1.362.0\SeaPort.exe [2012-02-13 240408]
R3 Futuremark SystemInfo Service;Futuremark SystemInfo Service;c:\program files (x86)\Futuremark\Futuremark SystemInfo\FMSISvc.exe [2012-04-26 135584]
R3 MSICDSetup;MSICDSetup;E:\CDriver64.sys [x]
R3 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys [x]
R3 NisSrv;Kontrola sítě Microsoft;c:\program files\Microsoft Security Client\NisSrv.exe [2012-03-26 291696]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [x]
R3 RTTEAMPT;Realtek Teaming Protocol Driver (NDIS 6.0);c:\windows\system32\DRIVERS\RtTeam60.sys [x]
R3 RTVLANPT;Realtek Vlan Protocol Driver (NDIS 6.2);c:\windows\system32\DRIVERS\RtVlan60.sys [x]
R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys [x]
R3 TEAM;Realtek Virtual Miniport Driver for Teaming (NDIS 6.0);c:\windows\system32\DRIVERS\RtTeam60.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys [x]
R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys [x]
R3 VLAN;Realtek Virtual Miniport Driver for VLAN (NDIS 6.2);c:\windows\system32\DRIVERS\RtVLAN60.sys [x]
R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [x]
S2 BBSvc;BingBar Service;c:\program files (x86)\Microsoft\BingBar\7.1.362.0\BBSvc.exe [2012-02-13 193816]
S2 cpuz135;cpuz135;c:\windows\system32\drivers\cpuz135_x64.sys [x]
S2 RadeonPro Support Service;RadeonPro Support Service;c:\program files (x86)\RadeonPro\RadeonProSupport.exe [2011-02-09 12800]
S2 RtNdPt60;Realtek NDIS Protocol Driver;c:\windows\system32\DRIVERS\RtNdPt60.sys [x]
S2 Skype C2C Service;Skype C2C Service;c:\programdata\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2012-04-09 3063968]
S3 amdkmdag;amdkmdag;c:\windows\system32\DRIVERS\atikmdag.sys [x]
S3 amdkmdap;amdkmdap;c:\windows\system32\DRIVERS\atikmpag.sys [x]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW76.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [x]
.
.
--- Ostatní služby/ovladače v paměti ---
.
*NewlyCreated* - WS2IFSL
.
Obsah adresáře 'Naplánované úlohy'
.
2012-05-27 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-05-21 13:18]
.
2012-05-24 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1676154842-4194198124-3986527764-1001Core.job
- c:\users\CALLER\AppData\Local\Google\Update\GoogleUpdate.exe [2012-05-21 15:49]
.
2012-05-27 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1676154842-4194198124-3986527764-1001UA.job
- c:\users\CALLER\AppData\Local\Google\Update\GoogleUpdate.exe [2012-05-21 15:49]
.
.
--------- x86-64 -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2010-11-02 11545192]
"MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2012-03-26 1271168]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"LoadAppInit_DLLs"=0x0
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SysWOW64\blank.htm
TCP: DhcpNameServer = 192.168.1.254 10.0.0.1
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Wow6432Node-HKLM-Run-Driver Genius - (no file)
HKLM-Run-SpywareTerminatorShield - c:\program files (x86)\Spyware Terminator\SpywareTerminatorShield.exe
HKLM-Run-SpywareTerminatorUpdater - c:\program files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\S-1-5-21-1676154842-4194198124-3986527764-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.eml\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="WindowsLiveMail.Email.1"
.
[HKEY_USERS\S-1-5-21-1676154842-4194198124-3986527764-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.vcf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="WindowsLiveMail.VCard.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_2_202_235_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_2_202_235_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_2_202_235.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.11"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_2_202_235.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_2_202_235.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_2_202_235.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2012-05-27 22:56:35 - počítač byl restartován
ComboFix-quarantined-files.txt 2012-05-27 20:56
.
Před spuštěním: 8 490 287 104
Po spuštění: 8 521 674 752
.
- - End Of File - - DD85A0DA242CF06E23F94F720B426C57
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43287
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu Logu - Zamrznutí PC
Otevři si Poznámkový blok (Start -> Spustit... a napiš do okna Notepad a dej Ok.
Zkopíruj do něj následující celý text označený zeleně:
Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.
Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe a když se oba soubory překryjí, skript upusť.
- Automaticky se spustí ComboFix
- Vlož sem log, který vyběhne v závěru čistícího procesu + nový log z HJT
Upozornění : Může se stát, že po aplikaci Combofixu a restartu počítače, Windows nenaběhnou , nebo nenajede plocha , budou problémy s připojením, pak znovu restartuj počítač, pokud to nepomůže , po restartu mačkej klávesu F8 a pak zvol poslední známou funkční konfiguraci. , či použij bod obnovy.
Stáhni si aswMBR
na svojí plochu. Uzavři všechna okna , programy a prohlížeče. Poklepej na aswMBR.exe. Pokud se objeví hláška o možnosti stáhnutí databáze Avastu , klikni na NE. Poté klikni na „Scan“ . Po skenu klikni na „Save Log“ a ulož si log na plochu .Zkopíruj sem celý obsah toho logu. Pak klikni na „Exit“ k zavření programu.
Nemáš málo místa na disku?
Zkopíruj do něj následující celý text označený zeleně:
Kód: Vybrat vše
KillAll::
File::
c:\windows\ativpsrm.bin
c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1676154842-4194198124-3986527764-1001Core.job
c:\users\CALLER\AppData\Local\Google\Update\GoogleUpdate.exe
c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1676154842-4194198124-3986527764-1001UA.job
RegLock::
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.
Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe a když se oba soubory překryjí, skript upusť.
- Automaticky se spustí ComboFix
- Vlož sem log, který vyběhne v závěru čistícího procesu + nový log z HJT
Upozornění : Může se stát, že po aplikaci Combofixu a restartu počítače, Windows nenaběhnou , nebo nenajede plocha , budou problémy s připojením, pak znovu restartuj počítač, pokud to nepomůže , po restartu mačkej klávesu F8 a pak zvol poslední známou funkční konfiguraci. , či použij bod obnovy.
Stáhni si aswMBR
na svojí plochu. Uzavři všechna okna , programy a prohlížeče. Poklepej na aswMBR.exe. Pokud se objeví hláška o možnosti stáhnutí databáze Avastu , klikni na NE. Poté klikni na „Scan“ . Po skenu klikni na „Save Log“ a ulož si log na plochu .Zkopíruj sem celý obsah toho logu. Pak klikni na „Exit“ k zavření programu.
Nemáš málo místa na disku?
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Prosím o kontrolu Logu - Zamrznutí PC
No málo místa na disku mám ale jen na oddilu s OS tam mám jen 8gb z 40gb jinak na druhém oddílu mam kolem 220 GB.Ale pokud je něco špatně s místem nemůže to být tím že všechny ty aplikace jsou uložené na tom oddilu s 8GB? na ten druhý instaluju jen hry a stahuju vetsi soubory
Re: Prosím o kontrolu Logu - Zamrznutí PC
COMBO FIX:
ComboFix 12-05-28.01 - CALLER 28.05.2012 14:34:03.2.4 - x64
Microsoft Windows 7 Ultimate 6.1.7601.1.1250.420.1029.18.6142.4724 [GMT 2:00]
Spuštěný z: c:\users\CALLER\Desktop\ComboFix.exe
Použité ovládací přepínače :: c:\users\CALLER\Desktop\CFScript.txt
AV: Microsoft Security Essentials *Disabled/Updated* {9765EA51-0D3C-7DFB-6091-10E4E1F341F6}
SP: Microsoft Security Essentials *Disabled/Updated* {2C040BB5-2B06-7275-5A21-2B969A740B4B}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Vytvořen nový Bod Obnovení
.
FILE ::
"c:\users\CALLER\AppData\Local\Google\Update\GoogleUpdate.exe"
"c:\windows\ativpsrm.bin"
"c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1676154842-4194198124-3986527764-1001Core.job"
"c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1676154842-4194198124-3986527764-1001UA.job"
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\CALLER\AppData\Local\Google\Update\GoogleUpdate.exe
c:\windows\ativpsrm.bin
c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1676154842-4194198124-3986527764-1001Core.job
c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1676154842-4194198124-3986527764-1001UA.job
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-04-28 do 2012-05-28 )))))))))))))))))))))))))))))))
.
.
2012-05-28 12:37 . 2012-05-28 12:37 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-05-27 18:19 . 2012-05-27 18:19 -------- d-----w- c:\program files (x86)\CrystalDiskInfo
2012-05-27 18:17 . 2012-05-27 18:17 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware
2012-05-27 18:17 . 2012-04-04 13:56 24904 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-05-24 21:17 . 2012-05-14 23:41 8955792 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2012-05-24 21:11 . 2012-02-09 11:17 927800 ------w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E8F4896B-8F79-43E4-9246-780E7CC802C2}\gapaengine.dll
2012-05-24 21:06 . 2012-05-24 21:17 -------- d-----w- c:\program files (x86)\Microsoft Security Client
2012-05-24 21:06 . 2012-05-24 21:17 -------- d-----w- c:\program files\Microsoft Security Client
2012-05-24 20:58 . 2012-05-24 20:58 -------- d-----w- c:\windows\en
2012-05-24 20:54 . 2012-05-24 20:54 -------- d-----w- c:\windows\cs
2012-05-24 20:52 . 2012-05-24 20:52 -------- d-----w- c:\program files (x86)\Microsoft SQL Server Compact Edition
2012-05-24 20:46 . 2012-05-24 20:56 -------- d-----w- c:\program files (x86)\Windows Live
2012-05-24 20:46 . 2012-05-24 20:46 -------- dc----w- c:\windows\system32\DRVSTORE
2012-05-24 20:46 . 2012-03-08 16:40 48488 ----a-w- c:\windows\system32\drivers\fssfltr.sys
2012-05-24 20:45 . 2012-05-24 20:45 -------- d-----w- c:\windows\PCHEALTH
2012-05-24 20:45 . 2012-05-24 20:46 -------- d-----w- c:\program files\Windows Live
2012-05-24 20:44 . 2012-05-24 21:22 -------- d-----w- c:\program files (x86)\Microsoft Silverlight
2012-05-24 20:42 . 2012-05-24 20:42 -------- d-----w- c:\program files (x86)\Common Files\Windows Live
2012-05-24 20:22 . 2012-05-24 20:22 51496 ----a-w- c:\windows\system32\drivers\stflt.sys
2012-05-24 19:54 . 2012-05-24 19:54 -------- d-----w- c:\program files (x86)\Lavalys
2012-05-23 19:53 . 2012-05-23 19:53 -------- d-----w- c:\program files (x86)\RadeonPro
2012-05-23 16:02 . 2012-05-23 16:02 -------- d-----w- c:\program files (x86)\uTorrent
2012-05-23 13:20 . 2012-05-23 13:20 -------- d-----w- c:\programdata\Malwarebytes
2012-05-22 17:20 . 2012-05-22 17:20 -------- d-----w- c:\program files\Unigine
2012-05-22 16:56 . 2012-05-22 16:56 -------- d-----w- c:\program files (x86)\GPU-Z
2012-05-22 16:08 . 2012-05-14 23:41 8955792 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{F0AF7B7E-30D4-4498-90DC-C2AA2DA3F04B}\mpengine.dll
2012-05-21 22:44 . 2012-05-21 12:58 -------- d-----w- c:\windows\Panther
2012-05-21 22:44 . 2012-05-21 16:36 -------- d-----w- C:\Boot
2012-05-21 22:44 . 2012-05-21 22:44 -------- d-----w- c:\windows\system32\OEM
2012-05-21 20:04 . 2008-10-15 04:22 519000 ----a-w- c:\windows\system32\d3dx10_40.dll
2012-05-21 20:04 . 2008-10-15 04:22 452440 ----a-w- c:\windows\SysWow64\d3dx10_40.dll
2012-05-21 20:04 . 2008-10-15 04:22 2605920 ----a-w- c:\windows\system32\D3DCompiler_40.dll
2012-05-21 20:04 . 2008-10-15 04:22 2036576 ----a-w- c:\windows\SysWow64\D3DCompiler_40.dll
2012-05-21 20:04 . 2008-10-15 04:22 5631312 ----a-w- c:\windows\system32\D3DX9_40.dll
2012-05-21 20:04 . 2008-10-15 04:22 4379984 ----a-w- c:\windows\SysWow64\D3DX9_40.dll
2012-05-21 19:31 . 2012-05-21 19:31 -------- d-----w- c:\program files\CPUID
2012-05-21 19:31 . 2011-09-21 08:25 21992 ----a-w- c:\windows\system32\drivers\cpuz135_x64.sys
2012-05-21 19:19 . 2012-05-21 19:19 -------- d-----w- c:\programdata\Futuremark
2012-05-21 19:05 . 2012-05-21 19:05 -------- d-----w- c:\program files (x86)\NVIDIA Corporation
2012-05-21 19:05 . 2012-05-21 19:05 -------- d-----w- c:\program files (x86)\Common Files\Wise Installation Wizard
2012-05-21 18:48 . 2012-05-21 19:05 -------- d-----w- c:\program files (x86)\Futuremark
2012-05-21 18:47 . 2012-05-21 18:47 -------- d-----w- c:\program files\Futuremark
2012-05-21 18:02 . 2012-05-21 18:02 -------- d-----w- c:\programdata\ATI
2012-05-21 18:00 . 2012-05-21 18:02 -------- d-----w- c:\program files\ATI Technologies
2012-05-21 17:41 . 2012-05-21 17:41 86016 ----a-w- c:\windows\SysWow64\OpenAL32.dll
2012-05-21 17:41 . 2012-05-21 17:41 262144 ----a-w- c:\windows\SysWow64\wrap_oal.dll
2012-05-21 17:41 . 2012-05-21 17:41 -------- d-----w- c:\windows\SysWow64\Futuremark
2012-05-21 17:41 . 2004-10-25 18:02 21664 ----a-w- c:\windows\SysWow64\drivers\Entech.sys
2012-05-21 17:41 . 2004-06-22 13:44 5632 ----a-w- c:\windows\SysWow64\drivers\Entech64.sys
2012-05-21 17:41 . 2001-11-19 17:05 3972 ----a-w- c:\windows\SysWow64\drivers\PciBus.sys
2012-05-21 17:41 . 2012-05-21 17:41 -------- d-----w- c:\program files (x86)\Geeks3D
2012-05-21 16:43 . 2012-01-25 06:38 77312 ----a-w- c:\windows\system32\rdpwsx.dll
2012-05-21 16:43 . 2012-01-25 06:38 149504 ----a-w- c:\windows\system32\rdpcorekmts.dll
2012-05-21 16:11 . 2012-05-21 16:11 -------- d-----w- c:\windows\system32\SPReview
2012-05-21 16:11 . 2012-05-21 16:11 -------- d-----w- c:\windows\system32\EventProviders
2012-05-21 16:09 . 2010-11-20 13:34 363392 ----a-w- c:\windows\system32\drivers\volmgrx.sys
2012-05-21 16:08 . 2010-11-20 13:27 529408 ----a-w- c:\windows\system32\wbemcomn.dll
2012-05-21 16:08 . 2010-11-20 13:27 244736 ----a-w- c:\program files\Windows Portable Devices\sqmapi.dll
2012-05-21 16:08 . 2010-11-20 13:27 244736 ----a-w- c:\windows\system32\sqmapi.dll
2012-05-21 15:05 . 2010-02-23 08:16 294912 ----a-w- c:\windows\system32\browserchoice.exe
2012-05-21 14:54 . 2012-03-01 06:46 23408 ----a-w- c:\windows\system32\drivers\fs_rec.sys
2012-05-21 14:54 . 2012-03-01 06:38 220672 ----a-w- c:\windows\system32\wintrust.dll
2012-05-21 14:54 . 2012-03-01 06:33 81408 ----a-w- c:\windows\system32\imagehlp.dll
2012-05-21 14:54 . 2012-03-01 06:28 5120 ----a-w- c:\windows\system32\wmi.dll
2012-05-21 14:54 . 2012-03-01 05:37 172544 ----a-w- c:\windows\SysWow64\wintrust.dll
2012-05-21 14:54 . 2012-03-01 05:33 159232 ----a-w- c:\windows\SysWow64\imagehlp.dll
2012-05-21 14:54 . 2012-03-01 05:29 5120 ----a-w- c:\windows\SysWow64\wmi.dll
2012-05-21 14:50 . 2010-12-23 10:42 1118720 ----a-w- c:\windows\system32\sbe.dll
2012-05-21 14:49 . 2012-03-30 11:35 1918320 ----a-w- c:\windows\system32\drivers\tcpip.sys
2012-05-21 14:43 . 2012-05-22 16:04 -------- d-----w- c:\programdata\boost_interprocess
2012-05-21 14:42 . 2012-05-21 14:43 -------- d-----r- c:\program files (x86)\Skype
2012-05-21 14:42 . 2012-05-21 14:42 -------- d-----w- c:\program files (x86)\Common Files\Skype
2012-05-21 14:42 . 2012-05-21 14:43 -------- d-----w- c:\programdata\Skype
2012-05-21 14:41 . 2011-11-19 14:58 77312 ----a-w- c:\windows\system32\packager.dll
2012-05-21 14:41 . 2011-11-19 14:01 67072 ----a-w- c:\windows\SysWow64\packager.dll
2012-05-21 14:33 . 2012-05-27 17:02 -------- d-----w- c:\program files (x86)\SpeedFan
2012-05-21 14:15 . 2012-05-21 14:15 -------- d-----w- c:\programdata\AMD
2012-05-21 14:15 . 2012-05-21 14:15 -------- d-----w- c:\program files (x86)\AMD AVT
2012-05-21 14:15 . 2012-05-21 14:15 -------- d-----w- c:\program files (x86)\AMD APP
2012-05-21 14:03 . 2012-05-21 14:12 -------- d-----w- C:\AMD
2012-05-21 13:57 . 2012-04-06 02:20 1067520 ----a-w- c:\windows\system32\aticfx64.dll
2012-05-21 13:57 . 2012-04-06 02:16 442368 ----a-w- c:\windows\system32\ATIDEMGX.dll
2012-05-21 13:57 . 2012-04-06 01:34 4731904 ----a-w- c:\windows\system32\atiumd6a.dll
2012-05-21 13:57 . 2012-04-06 01:23 7431680 ----a-w- c:\windows\system32\atiumd64.dll
2012-05-21 13:57 . 2012-04-06 01:11 514560 ----a-w- c:\windows\system32\atiadlxx.dll
2012-05-21 13:57 . 2012-04-06 01:09 44544 ----a-w- c:\windows\system32\atiu9p64.dll
2012-05-21 13:57 . 2011-11-10 09:09 423424 ----a-w- c:\windows\system32\atipdl64.dll
2012-05-21 13:57 . 2011-11-10 09:09 360448 ----a-w- c:\windows\SysWow64\atipdlxx.dll
2012-05-21 13:57 . 2011-11-10 09:09 278528 ----a-w- c:\windows\SysWow64\Oemdspif.dll
2012-05-21 13:41 . 2010-10-27 01:43 110592 ----a-w- c:\windows\system32\rtvcvfw32.dll
2012-05-21 13:40 . 2012-05-24 16:18 -------- d-----w- c:\program files (x86)\MSI Afterburner
2012-05-21 13:37 . 2012-05-21 13:37 -------- d-----w- c:\program files (x86)\Common Files\ATI Technologies
2012-05-21 13:37 . 2012-05-21 13:37 -------- d-----w- c:\program files\Common Files\ATI Technologies
2012-05-21 13:36 . 2012-04-06 02:00 64000 ----a-w- c:\windows\system32\coinst.dll
2012-05-21 13:36 . 2012-05-21 18:01 -------- d-----w- c:\program files (x86)\ATI Technologies
2012-05-21 13:36 . 2012-05-21 13:36 -------- d-----w- c:\program files\ATI
2012-05-21 13:34 . 2012-05-24 21:17 -------- d-sh--w- c:\windows\Installer
2012-05-21 13:34 . 2012-05-21 13:34 -------- d-----w- c:\program files (x86)\Microsoft
2012-05-21 13:32 . 2012-01-31 12:44 279656 ------w- c:\windows\system32\MpSigStub.exe
2012-05-21 13:20 . 2012-05-21 13:22 -------- d-----w- c:\programdata\DriverGenius
2012-05-21 13:19 . 2012-05-21 13:19 -------- d-----w- c:\program files (x86)\Driver-Soft
2012-05-21 13:18 . 2012-05-21 13:18 70304 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2012-05-21 13:18 . 2012-05-21 13:18 419488 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2012-05-21 13:18 . 2012-05-21 13:18 -------- d-----w- c:\windows\SysWow64\Macromed
2012-05-21 13:18 . 2012-05-21 13:18 -------- d-----w- c:\windows\system32\Macromed
2012-05-21 13:11 . 2011-06-10 04:34 107552 ----a-w- c:\windows\system32\RTNUninst64.dll
2012-05-21 13:11 . 2012-05-21 19:05 -------- d--h--w- c:\program files (x86)\InstallShield Installation Information
2012-05-21 13:11 . 2012-05-21 13:12 -------- d-----w- c:\program files (x86)\Realtek
2012-05-21 13:11 . 2009-12-21 15:39 51712 ----a-w- c:\windows\system32\drivers\RtTeam60.sys
2012-05-21 13:11 . 2009-07-20 02:27 27136 ----a-w- c:\windows\system32\drivers\RtNdPt60.sys
2012-05-21 13:11 . 2007-12-03 02:20 24064 ----a-w- c:\windows\system32\drivers\RtVlan60.sys
2012-05-21 13:10 . 2012-05-21 13:10 -------- d-----w- c:\program files (x86)\Intel
2012-05-21 13:10 . 2012-01-16 09:06 53248 ----a-w- c:\windows\SysWow64\CSVer.dll
2012-05-21 13:09 . 2012-05-21 13:09 -------- d-----w- C:\Intel
2012-05-21 13:05 . 2012-05-27 20:48 -------- d-----w- c:\users\CALLER
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-05-24 20:45 . 2011-03-28 16:36 19736 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
2012-05-21 16:28 . 2009-07-14 02:36 152576 ----a-w- c:\windows\SysWow64\msclmd.dll
2012-05-21 16:28 . 2009-07-14 02:36 175616 ----a-w- c:\windows\system32\msclmd.dll
2012-05-21 15:02 . 2012-05-21 15:02 249344 ----a-w- c:\windows\system32\webcheck.dll
2012-05-21 15:02 . 2012-05-21 15:02 203776 ----a-w- c:\windows\SysWow64\webcheck.dll
2012-04-06 05:22 . 2012-04-06 05:22 11174400 ----a-w- c:\windows\system32\drivers\atikmdag.sys
2012-04-06 02:22 . 2012-04-06 02:22 159744 ----a-w- c:\windows\system32\atiapfxx.exe
2012-04-06 02:21 . 2012-04-06 02:21 909312 ----a-w- c:\windows\SysWow64\aticfx32.dll
2012-04-06 02:16 . 2012-04-06 02:16 503808 ----a-w- c:\windows\system32\atieclxx.exe
2012-04-06 02:16 . 2012-04-06 02:16 236544 ----a-w- c:\windows\system32\atiesrxx.exe
2012-04-06 02:14 . 2012-04-06 02:14 120320 ----a-w- c:\windows\system32\atitmm64.dll
2012-04-06 02:14 . 2012-04-06 02:14 21504 ----a-w- c:\windows\system32\atimuixx.dll
2012-04-06 02:14 . 2012-04-06 02:14 59392 ----a-w- c:\windows\system32\atiedu64.dll
2012-04-06 02:14 . 2012-04-06 02:14 43520 ----a-w- c:\windows\SysWow64\ati2edxx.dll
2012-04-06 02:13 . 2012-04-06 02:13 6800896 ----a-w- c:\windows\SysWow64\atidxx32.dll
2012-04-06 02:10 . 2012-04-06 02:10 26181632 ----a-w- c:\windows\system32\atio6axx.dll
2012-04-06 01:54 . 2012-04-06 01:54 7479296 ----a-w- c:\windows\system32\atidxx64.dll
2012-04-06 01:50 . 2012-04-06 01:50 19753984 ----a-w- c:\windows\SysWow64\atioglxx.dll
2012-04-06 01:35 . 2012-04-06 01:35 1120768 ----a-w- c:\windows\system32\atiumd6v.dll
2012-04-06 01:34 . 2012-04-06 01:34 1831424 ----a-w- c:\windows\SysWow64\atiumdmv.dll
2012-04-06 01:34 . 2012-04-06 01:34 6203392 ----a-w- c:\windows\SysWow64\atiumdag.dll
2012-04-06 01:30 . 2012-04-06 01:30 51200 ----a-w- c:\windows\system32\aticalrt64.dll
2012-04-06 01:30 . 2012-04-06 01:30 46080 ----a-w- c:\windows\SysWow64\aticalrt.dll
2012-04-06 01:30 . 2012-04-06 01:30 44544 ----a-w- c:\windows\system32\aticalcl64.dll
2012-04-06 01:30 . 2012-04-06 01:30 44032 ----a-w- c:\windows\SysWow64\aticalcl.dll
2012-04-06 01:29 . 2012-04-06 01:29 16090624 ----a-w- c:\windows\system32\aticaldd64.dll
2012-04-06 01:25 . 2012-04-06 01:25 13764096 ----a-w- c:\windows\SysWow64\aticaldd.dll
2012-04-06 01:22 . 2012-04-06 01:22 4795904 ----a-w- c:\windows\SysWow64\atiumdva.dll
2012-04-06 01:11 . 2012-04-06 01:11 360448 ----a-w- c:\windows\SysWow64\atiadlxy.dll
2012-04-06 01:11 . 2012-04-06 01:11 17408 ----a-w- c:\windows\system32\atig6pxx.dll
2012-04-06 01:11 . 2012-04-06 01:11 14848 ----a-w- c:\windows\SysWow64\atiglpxx.dll
2012-04-06 01:11 . 2012-04-06 01:11 14848 ----a-w- c:\windows\system32\atiglpxx.dll
2012-04-06 01:11 . 2012-04-06 01:11 41984 ----a-w- c:\windows\system32\atig6txx.dll
2012-04-06 01:10 . 2012-04-06 01:10 33280 ----a-w- c:\windows\SysWow64\atigktxx.dll
2012-04-06 01:10 . 2012-04-06 01:10 343040 ----a-w- c:\windows\system32\drivers\atikmpag.sys
2012-04-06 01:09 . 2012-04-06 01:09 54784 ----a-w- c:\windows\system32\atiuxp64.dll
2012-04-06 01:09 . 2012-04-06 01:09 41984 ----a-w- c:\windows\SysWow64\atiuxpag.dll
2012-04-06 01:09 . 2012-04-06 01:09 32256 ----a-w- c:\windows\SysWow64\atiu9pag.dll
2012-04-06 01:09 . 2012-04-06 01:09 53248 ----a-w- c:\windows\system32\drivers\ati2erec.dll
2012-04-06 01:06 . 2012-04-06 01:06 54784 ----a-w- c:\windows\system32\atimpc64.dll
2012-04-06 01:06 . 2012-04-06 01:06 54784 ----a-w- c:\windows\system32\amdpcom64.dll
2012-04-06 01:06 . 2012-04-06 01:06 53760 ----a-w- c:\windows\SysWow64\atimpc32.dll
2012-04-06 01:06 . 2012-04-06 01:06 53760 ----a-w- c:\windows\SysWow64\amdpcom32.dll
2012-04-05 20:34 . 2012-04-05 20:34 187392 ----a-w- c:\windows\system32\clinfo.exe
2012-04-05 20:34 . 2012-04-05 20:34 74752 ----a-w- c:\windows\system32\OpenVideo64.dll
2012-04-05 20:34 . 2012-04-05 20:34 64512 ----a-w- c:\windows\SysWow64\OpenVideo.dll
2012-04-05 20:33 . 2012-04-05 20:33 63488 ----a-w- c:\windows\system32\OVDecode64.dll
2012-04-05 20:33 . 2012-04-05 20:33 56320 ----a-w- c:\windows\SysWow64\OVDecode.dll
2012-04-05 20:33 . 2012-04-05 20:33 16457216 ----a-w- c:\windows\system32\amdocl64.dll
2012-04-05 20:32 . 2012-04-05 20:32 13007872 ----a-w- c:\windows\SysWow64\amdocl.dll
2012-04-05 20:32 . 2012-04-05 20:32 54784 ----a-w- c:\windows\system32\OpenCL.dll
2012-04-05 20:32 . 2012-04-05 20:32 50176 ----a-w- c:\windows\SysWow64\OpenCL.dll
2012-03-20 18:44 . 2011-04-27 13:25 98688 ----a-w- c:\windows\system32\drivers\NisDrvWFP.sys
2012-03-20 18:44 . 2011-04-18 11:18 203888 ----a-w- c:\windows\system32\drivers\MpFilter.sys
2012-03-09 12:07 . 2012-03-09 12:07 29184 ----a-w- c:\windows\system32\kdbsdk64.dll
2012-03-09 12:06 . 2012-03-09 12:06 24576 ----a-w- c:\windows\SysWow64\kdbsdk32.dll
2012-03-08 16:50 . 2012-03-08 16:50 49016 ----a-w- c:\windows\SysWow64\sirenacm.dll
2012-03-08 16:37 . 2012-03-08 16:37 302448 ----a-w- c:\windows\WLXPGSS.SCR
.
.
((((((((((((((((((((((((((((( SnapShot@2012-05-27_20.52.37 )))))))))))))))))))))))))))))))))))))))))
.
+ 2009-07-14 04:54 . 2012-05-28 12:12 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2009-07-14 04:54 . 2012-05-27 18:10 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2009-07-14 04:54 . 2012-05-27 18:10 49152 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-07-14 04:54 . 2012-05-28 12:12 49152 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2009-07-14 04:54 . 2012-05-27 18:10 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2009-07-14 04:54 . 2012-05-28 12:12 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2012-05-21 13:07 . 2012-05-28 12:41 25322 c:\windows\system32\wdi\ShutdownPerformanceDiagnostics_SystemData.bin
+ 2009-07-14 05:10 . 2012-05-28 12:41 23930 c:\windows\system32\wdi\BootPerformanceDiagnostics_SystemData.bin
+ 2012-05-21 13:07 . 2012-05-28 12:41 6426 c:\windows\system32\wdi\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-1676154842-4194198124-3986527764-1001_UserData.bin
- 2012-05-27 20:49 . 2012-05-27 20:49 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
+ 2012-05-28 12:38 . 2012-05-28 12:38 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
- 2012-05-27 20:49 . 2012-05-27 20:49 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
+ 2012-05-28 12:38 . 2012-05-28 12:38 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
+ 2009-07-14 02:36 . 2012-05-28 12:21 617910 c:\windows\system32\perfh009.dat
- 2009-07-14 02:36 . 2012-05-27 18:14 617910 c:\windows\system32\perfh009.dat
+ 2009-07-26 18:41 . 2012-05-28 12:21 633154 c:\windows\system32\perfh005.dat
- 2009-07-26 18:41 . 2012-05-27 18:14 633154 c:\windows\system32\perfh005.dat
+ 2009-07-14 02:36 . 2012-05-28 12:21 107190 c:\windows\system32\perfc009.dat
- 2009-07-14 02:36 . 2012-05-27 18:14 107190 c:\windows\system32\perfc009.dat
+ 2009-07-26 18:41 . 2012-05-28 12:21 122708 c:\windows\system32\perfc005.dat
- 2009-07-26 18:41 . 2012-05-27 18:14 122708 c:\windows\system32\perfc005.dat
+ 2012-05-21 14:16 . 2012-05-28 12:37 846856 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache3.0.0.0.dat
- 2012-05-21 14:16 . 2012-05-27 20:48 846856 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache3.0.0.0.dat
- 2009-07-14 05:01 . 2012-05-27 20:48 228720 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat
+ 2009-07-14 05:01 . 2012-05-28 12:37 228720 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat
+ 2012-05-21 16:19 . 2012-05-28 12:37 4042264 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-1676154842-4194198124-3986527764-1001-8192.dat
- 2012-05-21 16:19 . 2012-05-27 20:48 4042264 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-1676154842-4194198124-3986527764-1001-8192.dat
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2012-05-03 17355912]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1475584]
"HydraVisionDesktopManager"="c:\program files (x86)\ATI Technologies\HydraVision\HydraDM.exe" [2011-11-09 393216]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"AMD AVT"="start AMD Accelerated Video Transcoding device initialization" [X]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2012-04-05 641664]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"
.
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe [2012-05-03 158856]
R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-05-21 257696]
R3 BBUpdate;BBUpdate;c:\program files (x86)\Microsoft\BingBar\7.1.362.0\SeaPort.exe [2012-02-13 240408]
R3 Futuremark SystemInfo Service;Futuremark SystemInfo Service;c:\program files (x86)\Futuremark\Futuremark SystemInfo\FMSISvc.exe [2012-04-26 135584]
R3 MSICDSetup;MSICDSetup;E:\CDriver64.sys [x]
R3 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys [x]
R3 NisSrv;Kontrola sítě Microsoft;c:\program files\Microsoft Security Client\NisSrv.exe [2012-03-26 291696]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [x]
R3 RTTEAMPT;Realtek Teaming Protocol Driver (NDIS 6.0);c:\windows\system32\DRIVERS\RtTeam60.sys [x]
R3 RTVLANPT;Realtek Vlan Protocol Driver (NDIS 6.2);c:\windows\system32\DRIVERS\RtVlan60.sys [x]
R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys [x]
R3 TEAM;Realtek Virtual Miniport Driver for Teaming (NDIS 6.0);c:\windows\system32\DRIVERS\RtTeam60.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys [x]
R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys [x]
R3 VLAN;Realtek Virtual Miniport Driver for VLAN (NDIS 6.2);c:\windows\system32\DRIVERS\RtVLAN60.sys [x]
R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [x]
S2 BBSvc;BingBar Service;c:\program files (x86)\Microsoft\BingBar\7.1.362.0\BBSvc.exe [2012-02-13 193816]
S2 cpuz135;cpuz135;c:\windows\system32\drivers\cpuz135_x64.sys [x]
S2 RadeonPro Support Service;RadeonPro Support Service;c:\program files (x86)\RadeonPro\RadeonProSupport.exe [2011-02-09 12800]
S2 RtNdPt60;Realtek NDIS Protocol Driver;c:\windows\system32\DRIVERS\RtNdPt60.sys [x]
S2 Skype C2C Service;Skype C2C Service;c:\programdata\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2012-04-09 3063968]
S3 amdkmdag;amdkmdag;c:\windows\system32\DRIVERS\atikmdag.sys [x]
S3 amdkmdap;amdkmdap;c:\windows\system32\DRIVERS\atikmpag.sys [x]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW76.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [x]
.
.
Obsah adresáře 'Naplánované úlohy'
.
2012-05-27 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-05-21 13:18]
.
.
--------- x86-64 -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2010-11-02 11545192]
"SpywareTerminatorShield"="c:\program files (x86)\Spyware Terminator\SpywareTerminatorShield.exe" [BU]
"SpywareTerminatorUpdater"="c:\program files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe" [BU]
"MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2012-03-26 1271168]
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SysWOW64\blank.htm
TCP: DhcpNameServer = 192.168.1.254 10.0.0.1
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\S-1-5-21-1676154842-4194198124-3986527764-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.eml\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="WindowsLiveMail.Email.1"
.
[HKEY_USERS\S-1-5-21-1676154842-4194198124-3986527764-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.vcf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="WindowsLiveMail.VCard.1"
.
Celkový čas: 2012-05-28 14:43:42 - počítač byl restartován
ComboFix-quarantined-files.txt 2012-05-28 12:43
ComboFix2.txt 2012-05-27 20:56
.
Před spuštěním: 8 566 120 448
Po spuštění: 8 496 480 256
.
- - End Of File - - DCD0B4CBC0EF50F3BEDE773A229AE325
ComboFix 12-05-28.01 - CALLER 28.05.2012 14:34:03.2.4 - x64
Microsoft Windows 7 Ultimate 6.1.7601.1.1250.420.1029.18.6142.4724 [GMT 2:00]
Spuštěný z: c:\users\CALLER\Desktop\ComboFix.exe
Použité ovládací přepínače :: c:\users\CALLER\Desktop\CFScript.txt
AV: Microsoft Security Essentials *Disabled/Updated* {9765EA51-0D3C-7DFB-6091-10E4E1F341F6}
SP: Microsoft Security Essentials *Disabled/Updated* {2C040BB5-2B06-7275-5A21-2B969A740B4B}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Vytvořen nový Bod Obnovení
.
FILE ::
"c:\users\CALLER\AppData\Local\Google\Update\GoogleUpdate.exe"
"c:\windows\ativpsrm.bin"
"c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1676154842-4194198124-3986527764-1001Core.job"
"c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1676154842-4194198124-3986527764-1001UA.job"
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\CALLER\AppData\Local\Google\Update\GoogleUpdate.exe
c:\windows\ativpsrm.bin
c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1676154842-4194198124-3986527764-1001Core.job
c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1676154842-4194198124-3986527764-1001UA.job
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-04-28 do 2012-05-28 )))))))))))))))))))))))))))))))
.
.
2012-05-28 12:37 . 2012-05-28 12:37 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-05-27 18:19 . 2012-05-27 18:19 -------- d-----w- c:\program files (x86)\CrystalDiskInfo
2012-05-27 18:17 . 2012-05-27 18:17 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware
2012-05-27 18:17 . 2012-04-04 13:56 24904 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-05-24 21:17 . 2012-05-14 23:41 8955792 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2012-05-24 21:11 . 2012-02-09 11:17 927800 ------w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E8F4896B-8F79-43E4-9246-780E7CC802C2}\gapaengine.dll
2012-05-24 21:06 . 2012-05-24 21:17 -------- d-----w- c:\program files (x86)\Microsoft Security Client
2012-05-24 21:06 . 2012-05-24 21:17 -------- d-----w- c:\program files\Microsoft Security Client
2012-05-24 20:58 . 2012-05-24 20:58 -------- d-----w- c:\windows\en
2012-05-24 20:54 . 2012-05-24 20:54 -------- d-----w- c:\windows\cs
2012-05-24 20:52 . 2012-05-24 20:52 -------- d-----w- c:\program files (x86)\Microsoft SQL Server Compact Edition
2012-05-24 20:46 . 2012-05-24 20:56 -------- d-----w- c:\program files (x86)\Windows Live
2012-05-24 20:46 . 2012-05-24 20:46 -------- dc----w- c:\windows\system32\DRVSTORE
2012-05-24 20:46 . 2012-03-08 16:40 48488 ----a-w- c:\windows\system32\drivers\fssfltr.sys
2012-05-24 20:45 . 2012-05-24 20:45 -------- d-----w- c:\windows\PCHEALTH
2012-05-24 20:45 . 2012-05-24 20:46 -------- d-----w- c:\program files\Windows Live
2012-05-24 20:44 . 2012-05-24 21:22 -------- d-----w- c:\program files (x86)\Microsoft Silverlight
2012-05-24 20:42 . 2012-05-24 20:42 -------- d-----w- c:\program files (x86)\Common Files\Windows Live
2012-05-24 20:22 . 2012-05-24 20:22 51496 ----a-w- c:\windows\system32\drivers\stflt.sys
2012-05-24 19:54 . 2012-05-24 19:54 -------- d-----w- c:\program files (x86)\Lavalys
2012-05-23 19:53 . 2012-05-23 19:53 -------- d-----w- c:\program files (x86)\RadeonPro
2012-05-23 16:02 . 2012-05-23 16:02 -------- d-----w- c:\program files (x86)\uTorrent
2012-05-23 13:20 . 2012-05-23 13:20 -------- d-----w- c:\programdata\Malwarebytes
2012-05-22 17:20 . 2012-05-22 17:20 -------- d-----w- c:\program files\Unigine
2012-05-22 16:56 . 2012-05-22 16:56 -------- d-----w- c:\program files (x86)\GPU-Z
2012-05-22 16:08 . 2012-05-14 23:41 8955792 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{F0AF7B7E-30D4-4498-90DC-C2AA2DA3F04B}\mpengine.dll
2012-05-21 22:44 . 2012-05-21 12:58 -------- d-----w- c:\windows\Panther
2012-05-21 22:44 . 2012-05-21 16:36 -------- d-----w- C:\Boot
2012-05-21 22:44 . 2012-05-21 22:44 -------- d-----w- c:\windows\system32\OEM
2012-05-21 20:04 . 2008-10-15 04:22 519000 ----a-w- c:\windows\system32\d3dx10_40.dll
2012-05-21 20:04 . 2008-10-15 04:22 452440 ----a-w- c:\windows\SysWow64\d3dx10_40.dll
2012-05-21 20:04 . 2008-10-15 04:22 2605920 ----a-w- c:\windows\system32\D3DCompiler_40.dll
2012-05-21 20:04 . 2008-10-15 04:22 2036576 ----a-w- c:\windows\SysWow64\D3DCompiler_40.dll
2012-05-21 20:04 . 2008-10-15 04:22 5631312 ----a-w- c:\windows\system32\D3DX9_40.dll
2012-05-21 20:04 . 2008-10-15 04:22 4379984 ----a-w- c:\windows\SysWow64\D3DX9_40.dll
2012-05-21 19:31 . 2012-05-21 19:31 -------- d-----w- c:\program files\CPUID
2012-05-21 19:31 . 2011-09-21 08:25 21992 ----a-w- c:\windows\system32\drivers\cpuz135_x64.sys
2012-05-21 19:19 . 2012-05-21 19:19 -------- d-----w- c:\programdata\Futuremark
2012-05-21 19:05 . 2012-05-21 19:05 -------- d-----w- c:\program files (x86)\NVIDIA Corporation
2012-05-21 19:05 . 2012-05-21 19:05 -------- d-----w- c:\program files (x86)\Common Files\Wise Installation Wizard
2012-05-21 18:48 . 2012-05-21 19:05 -------- d-----w- c:\program files (x86)\Futuremark
2012-05-21 18:47 . 2012-05-21 18:47 -------- d-----w- c:\program files\Futuremark
2012-05-21 18:02 . 2012-05-21 18:02 -------- d-----w- c:\programdata\ATI
2012-05-21 18:00 . 2012-05-21 18:02 -------- d-----w- c:\program files\ATI Technologies
2012-05-21 17:41 . 2012-05-21 17:41 86016 ----a-w- c:\windows\SysWow64\OpenAL32.dll
2012-05-21 17:41 . 2012-05-21 17:41 262144 ----a-w- c:\windows\SysWow64\wrap_oal.dll
2012-05-21 17:41 . 2012-05-21 17:41 -------- d-----w- c:\windows\SysWow64\Futuremark
2012-05-21 17:41 . 2004-10-25 18:02 21664 ----a-w- c:\windows\SysWow64\drivers\Entech.sys
2012-05-21 17:41 . 2004-06-22 13:44 5632 ----a-w- c:\windows\SysWow64\drivers\Entech64.sys
2012-05-21 17:41 . 2001-11-19 17:05 3972 ----a-w- c:\windows\SysWow64\drivers\PciBus.sys
2012-05-21 17:41 . 2012-05-21 17:41 -------- d-----w- c:\program files (x86)\Geeks3D
2012-05-21 16:43 . 2012-01-25 06:38 77312 ----a-w- c:\windows\system32\rdpwsx.dll
2012-05-21 16:43 . 2012-01-25 06:38 149504 ----a-w- c:\windows\system32\rdpcorekmts.dll
2012-05-21 16:11 . 2012-05-21 16:11 -------- d-----w- c:\windows\system32\SPReview
2012-05-21 16:11 . 2012-05-21 16:11 -------- d-----w- c:\windows\system32\EventProviders
2012-05-21 16:09 . 2010-11-20 13:34 363392 ----a-w- c:\windows\system32\drivers\volmgrx.sys
2012-05-21 16:08 . 2010-11-20 13:27 529408 ----a-w- c:\windows\system32\wbemcomn.dll
2012-05-21 16:08 . 2010-11-20 13:27 244736 ----a-w- c:\program files\Windows Portable Devices\sqmapi.dll
2012-05-21 16:08 . 2010-11-20 13:27 244736 ----a-w- c:\windows\system32\sqmapi.dll
2012-05-21 15:05 . 2010-02-23 08:16 294912 ----a-w- c:\windows\system32\browserchoice.exe
2012-05-21 14:54 . 2012-03-01 06:46 23408 ----a-w- c:\windows\system32\drivers\fs_rec.sys
2012-05-21 14:54 . 2012-03-01 06:38 220672 ----a-w- c:\windows\system32\wintrust.dll
2012-05-21 14:54 . 2012-03-01 06:33 81408 ----a-w- c:\windows\system32\imagehlp.dll
2012-05-21 14:54 . 2012-03-01 06:28 5120 ----a-w- c:\windows\system32\wmi.dll
2012-05-21 14:54 . 2012-03-01 05:37 172544 ----a-w- c:\windows\SysWow64\wintrust.dll
2012-05-21 14:54 . 2012-03-01 05:33 159232 ----a-w- c:\windows\SysWow64\imagehlp.dll
2012-05-21 14:54 . 2012-03-01 05:29 5120 ----a-w- c:\windows\SysWow64\wmi.dll
2012-05-21 14:50 . 2010-12-23 10:42 1118720 ----a-w- c:\windows\system32\sbe.dll
2012-05-21 14:49 . 2012-03-30 11:35 1918320 ----a-w- c:\windows\system32\drivers\tcpip.sys
2012-05-21 14:43 . 2012-05-22 16:04 -------- d-----w- c:\programdata\boost_interprocess
2012-05-21 14:42 . 2012-05-21 14:43 -------- d-----r- c:\program files (x86)\Skype
2012-05-21 14:42 . 2012-05-21 14:42 -------- d-----w- c:\program files (x86)\Common Files\Skype
2012-05-21 14:42 . 2012-05-21 14:43 -------- d-----w- c:\programdata\Skype
2012-05-21 14:41 . 2011-11-19 14:58 77312 ----a-w- c:\windows\system32\packager.dll
2012-05-21 14:41 . 2011-11-19 14:01 67072 ----a-w- c:\windows\SysWow64\packager.dll
2012-05-21 14:33 . 2012-05-27 17:02 -------- d-----w- c:\program files (x86)\SpeedFan
2012-05-21 14:15 . 2012-05-21 14:15 -------- d-----w- c:\programdata\AMD
2012-05-21 14:15 . 2012-05-21 14:15 -------- d-----w- c:\program files (x86)\AMD AVT
2012-05-21 14:15 . 2012-05-21 14:15 -------- d-----w- c:\program files (x86)\AMD APP
2012-05-21 14:03 . 2012-05-21 14:12 -------- d-----w- C:\AMD
2012-05-21 13:57 . 2012-04-06 02:20 1067520 ----a-w- c:\windows\system32\aticfx64.dll
2012-05-21 13:57 . 2012-04-06 02:16 442368 ----a-w- c:\windows\system32\ATIDEMGX.dll
2012-05-21 13:57 . 2012-04-06 01:34 4731904 ----a-w- c:\windows\system32\atiumd6a.dll
2012-05-21 13:57 . 2012-04-06 01:23 7431680 ----a-w- c:\windows\system32\atiumd64.dll
2012-05-21 13:57 . 2012-04-06 01:11 514560 ----a-w- c:\windows\system32\atiadlxx.dll
2012-05-21 13:57 . 2012-04-06 01:09 44544 ----a-w- c:\windows\system32\atiu9p64.dll
2012-05-21 13:57 . 2011-11-10 09:09 423424 ----a-w- c:\windows\system32\atipdl64.dll
2012-05-21 13:57 . 2011-11-10 09:09 360448 ----a-w- c:\windows\SysWow64\atipdlxx.dll
2012-05-21 13:57 . 2011-11-10 09:09 278528 ----a-w- c:\windows\SysWow64\Oemdspif.dll
2012-05-21 13:41 . 2010-10-27 01:43 110592 ----a-w- c:\windows\system32\rtvcvfw32.dll
2012-05-21 13:40 . 2012-05-24 16:18 -------- d-----w- c:\program files (x86)\MSI Afterburner
2012-05-21 13:37 . 2012-05-21 13:37 -------- d-----w- c:\program files (x86)\Common Files\ATI Technologies
2012-05-21 13:37 . 2012-05-21 13:37 -------- d-----w- c:\program files\Common Files\ATI Technologies
2012-05-21 13:36 . 2012-04-06 02:00 64000 ----a-w- c:\windows\system32\coinst.dll
2012-05-21 13:36 . 2012-05-21 18:01 -------- d-----w- c:\program files (x86)\ATI Technologies
2012-05-21 13:36 . 2012-05-21 13:36 -------- d-----w- c:\program files\ATI
2012-05-21 13:34 . 2012-05-24 21:17 -------- d-sh--w- c:\windows\Installer
2012-05-21 13:34 . 2012-05-21 13:34 -------- d-----w- c:\program files (x86)\Microsoft
2012-05-21 13:32 . 2012-01-31 12:44 279656 ------w- c:\windows\system32\MpSigStub.exe
2012-05-21 13:20 . 2012-05-21 13:22 -------- d-----w- c:\programdata\DriverGenius
2012-05-21 13:19 . 2012-05-21 13:19 -------- d-----w- c:\program files (x86)\Driver-Soft
2012-05-21 13:18 . 2012-05-21 13:18 70304 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2012-05-21 13:18 . 2012-05-21 13:18 419488 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2012-05-21 13:18 . 2012-05-21 13:18 -------- d-----w- c:\windows\SysWow64\Macromed
2012-05-21 13:18 . 2012-05-21 13:18 -------- d-----w- c:\windows\system32\Macromed
2012-05-21 13:11 . 2011-06-10 04:34 107552 ----a-w- c:\windows\system32\RTNUninst64.dll
2012-05-21 13:11 . 2012-05-21 19:05 -------- d--h--w- c:\program files (x86)\InstallShield Installation Information
2012-05-21 13:11 . 2012-05-21 13:12 -------- d-----w- c:\program files (x86)\Realtek
2012-05-21 13:11 . 2009-12-21 15:39 51712 ----a-w- c:\windows\system32\drivers\RtTeam60.sys
2012-05-21 13:11 . 2009-07-20 02:27 27136 ----a-w- c:\windows\system32\drivers\RtNdPt60.sys
2012-05-21 13:11 . 2007-12-03 02:20 24064 ----a-w- c:\windows\system32\drivers\RtVlan60.sys
2012-05-21 13:10 . 2012-05-21 13:10 -------- d-----w- c:\program files (x86)\Intel
2012-05-21 13:10 . 2012-01-16 09:06 53248 ----a-w- c:\windows\SysWow64\CSVer.dll
2012-05-21 13:09 . 2012-05-21 13:09 -------- d-----w- C:\Intel
2012-05-21 13:05 . 2012-05-27 20:48 -------- d-----w- c:\users\CALLER
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-05-24 20:45 . 2011-03-28 16:36 19736 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
2012-05-21 16:28 . 2009-07-14 02:36 152576 ----a-w- c:\windows\SysWow64\msclmd.dll
2012-05-21 16:28 . 2009-07-14 02:36 175616 ----a-w- c:\windows\system32\msclmd.dll
2012-05-21 15:02 . 2012-05-21 15:02 249344 ----a-w- c:\windows\system32\webcheck.dll
2012-05-21 15:02 . 2012-05-21 15:02 203776 ----a-w- c:\windows\SysWow64\webcheck.dll
2012-04-06 05:22 . 2012-04-06 05:22 11174400 ----a-w- c:\windows\system32\drivers\atikmdag.sys
2012-04-06 02:22 . 2012-04-06 02:22 159744 ----a-w- c:\windows\system32\atiapfxx.exe
2012-04-06 02:21 . 2012-04-06 02:21 909312 ----a-w- c:\windows\SysWow64\aticfx32.dll
2012-04-06 02:16 . 2012-04-06 02:16 503808 ----a-w- c:\windows\system32\atieclxx.exe
2012-04-06 02:16 . 2012-04-06 02:16 236544 ----a-w- c:\windows\system32\atiesrxx.exe
2012-04-06 02:14 . 2012-04-06 02:14 120320 ----a-w- c:\windows\system32\atitmm64.dll
2012-04-06 02:14 . 2012-04-06 02:14 21504 ----a-w- c:\windows\system32\atimuixx.dll
2012-04-06 02:14 . 2012-04-06 02:14 59392 ----a-w- c:\windows\system32\atiedu64.dll
2012-04-06 02:14 . 2012-04-06 02:14 43520 ----a-w- c:\windows\SysWow64\ati2edxx.dll
2012-04-06 02:13 . 2012-04-06 02:13 6800896 ----a-w- c:\windows\SysWow64\atidxx32.dll
2012-04-06 02:10 . 2012-04-06 02:10 26181632 ----a-w- c:\windows\system32\atio6axx.dll
2012-04-06 01:54 . 2012-04-06 01:54 7479296 ----a-w- c:\windows\system32\atidxx64.dll
2012-04-06 01:50 . 2012-04-06 01:50 19753984 ----a-w- c:\windows\SysWow64\atioglxx.dll
2012-04-06 01:35 . 2012-04-06 01:35 1120768 ----a-w- c:\windows\system32\atiumd6v.dll
2012-04-06 01:34 . 2012-04-06 01:34 1831424 ----a-w- c:\windows\SysWow64\atiumdmv.dll
2012-04-06 01:34 . 2012-04-06 01:34 6203392 ----a-w- c:\windows\SysWow64\atiumdag.dll
2012-04-06 01:30 . 2012-04-06 01:30 51200 ----a-w- c:\windows\system32\aticalrt64.dll
2012-04-06 01:30 . 2012-04-06 01:30 46080 ----a-w- c:\windows\SysWow64\aticalrt.dll
2012-04-06 01:30 . 2012-04-06 01:30 44544 ----a-w- c:\windows\system32\aticalcl64.dll
2012-04-06 01:30 . 2012-04-06 01:30 44032 ----a-w- c:\windows\SysWow64\aticalcl.dll
2012-04-06 01:29 . 2012-04-06 01:29 16090624 ----a-w- c:\windows\system32\aticaldd64.dll
2012-04-06 01:25 . 2012-04-06 01:25 13764096 ----a-w- c:\windows\SysWow64\aticaldd.dll
2012-04-06 01:22 . 2012-04-06 01:22 4795904 ----a-w- c:\windows\SysWow64\atiumdva.dll
2012-04-06 01:11 . 2012-04-06 01:11 360448 ----a-w- c:\windows\SysWow64\atiadlxy.dll
2012-04-06 01:11 . 2012-04-06 01:11 17408 ----a-w- c:\windows\system32\atig6pxx.dll
2012-04-06 01:11 . 2012-04-06 01:11 14848 ----a-w- c:\windows\SysWow64\atiglpxx.dll
2012-04-06 01:11 . 2012-04-06 01:11 14848 ----a-w- c:\windows\system32\atiglpxx.dll
2012-04-06 01:11 . 2012-04-06 01:11 41984 ----a-w- c:\windows\system32\atig6txx.dll
2012-04-06 01:10 . 2012-04-06 01:10 33280 ----a-w- c:\windows\SysWow64\atigktxx.dll
2012-04-06 01:10 . 2012-04-06 01:10 343040 ----a-w- c:\windows\system32\drivers\atikmpag.sys
2012-04-06 01:09 . 2012-04-06 01:09 54784 ----a-w- c:\windows\system32\atiuxp64.dll
2012-04-06 01:09 . 2012-04-06 01:09 41984 ----a-w- c:\windows\SysWow64\atiuxpag.dll
2012-04-06 01:09 . 2012-04-06 01:09 32256 ----a-w- c:\windows\SysWow64\atiu9pag.dll
2012-04-06 01:09 . 2012-04-06 01:09 53248 ----a-w- c:\windows\system32\drivers\ati2erec.dll
2012-04-06 01:06 . 2012-04-06 01:06 54784 ----a-w- c:\windows\system32\atimpc64.dll
2012-04-06 01:06 . 2012-04-06 01:06 54784 ----a-w- c:\windows\system32\amdpcom64.dll
2012-04-06 01:06 . 2012-04-06 01:06 53760 ----a-w- c:\windows\SysWow64\atimpc32.dll
2012-04-06 01:06 . 2012-04-06 01:06 53760 ----a-w- c:\windows\SysWow64\amdpcom32.dll
2012-04-05 20:34 . 2012-04-05 20:34 187392 ----a-w- c:\windows\system32\clinfo.exe
2012-04-05 20:34 . 2012-04-05 20:34 74752 ----a-w- c:\windows\system32\OpenVideo64.dll
2012-04-05 20:34 . 2012-04-05 20:34 64512 ----a-w- c:\windows\SysWow64\OpenVideo.dll
2012-04-05 20:33 . 2012-04-05 20:33 63488 ----a-w- c:\windows\system32\OVDecode64.dll
2012-04-05 20:33 . 2012-04-05 20:33 56320 ----a-w- c:\windows\SysWow64\OVDecode.dll
2012-04-05 20:33 . 2012-04-05 20:33 16457216 ----a-w- c:\windows\system32\amdocl64.dll
2012-04-05 20:32 . 2012-04-05 20:32 13007872 ----a-w- c:\windows\SysWow64\amdocl.dll
2012-04-05 20:32 . 2012-04-05 20:32 54784 ----a-w- c:\windows\system32\OpenCL.dll
2012-04-05 20:32 . 2012-04-05 20:32 50176 ----a-w- c:\windows\SysWow64\OpenCL.dll
2012-03-20 18:44 . 2011-04-27 13:25 98688 ----a-w- c:\windows\system32\drivers\NisDrvWFP.sys
2012-03-20 18:44 . 2011-04-18 11:18 203888 ----a-w- c:\windows\system32\drivers\MpFilter.sys
2012-03-09 12:07 . 2012-03-09 12:07 29184 ----a-w- c:\windows\system32\kdbsdk64.dll
2012-03-09 12:06 . 2012-03-09 12:06 24576 ----a-w- c:\windows\SysWow64\kdbsdk32.dll
2012-03-08 16:50 . 2012-03-08 16:50 49016 ----a-w- c:\windows\SysWow64\sirenacm.dll
2012-03-08 16:37 . 2012-03-08 16:37 302448 ----a-w- c:\windows\WLXPGSS.SCR
.
.
((((((((((((((((((((((((((((( SnapShot@2012-05-27_20.52.37 )))))))))))))))))))))))))))))))))))))))))
.
+ 2009-07-14 04:54 . 2012-05-28 12:12 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2009-07-14 04:54 . 2012-05-27 18:10 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2009-07-14 04:54 . 2012-05-27 18:10 49152 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-07-14 04:54 . 2012-05-28 12:12 49152 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2009-07-14 04:54 . 2012-05-27 18:10 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2009-07-14 04:54 . 2012-05-28 12:12 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2012-05-21 13:07 . 2012-05-28 12:41 25322 c:\windows\system32\wdi\ShutdownPerformanceDiagnostics_SystemData.bin
+ 2009-07-14 05:10 . 2012-05-28 12:41 23930 c:\windows\system32\wdi\BootPerformanceDiagnostics_SystemData.bin
+ 2012-05-21 13:07 . 2012-05-28 12:41 6426 c:\windows\system32\wdi\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-1676154842-4194198124-3986527764-1001_UserData.bin
- 2012-05-27 20:49 . 2012-05-27 20:49 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
+ 2012-05-28 12:38 . 2012-05-28 12:38 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
- 2012-05-27 20:49 . 2012-05-27 20:49 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
+ 2012-05-28 12:38 . 2012-05-28 12:38 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
+ 2009-07-14 02:36 . 2012-05-28 12:21 617910 c:\windows\system32\perfh009.dat
- 2009-07-14 02:36 . 2012-05-27 18:14 617910 c:\windows\system32\perfh009.dat
+ 2009-07-26 18:41 . 2012-05-28 12:21 633154 c:\windows\system32\perfh005.dat
- 2009-07-26 18:41 . 2012-05-27 18:14 633154 c:\windows\system32\perfh005.dat
+ 2009-07-14 02:36 . 2012-05-28 12:21 107190 c:\windows\system32\perfc009.dat
- 2009-07-14 02:36 . 2012-05-27 18:14 107190 c:\windows\system32\perfc009.dat
+ 2009-07-26 18:41 . 2012-05-28 12:21 122708 c:\windows\system32\perfc005.dat
- 2009-07-26 18:41 . 2012-05-27 18:14 122708 c:\windows\system32\perfc005.dat
+ 2012-05-21 14:16 . 2012-05-28 12:37 846856 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache3.0.0.0.dat
- 2012-05-21 14:16 . 2012-05-27 20:48 846856 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache3.0.0.0.dat
- 2009-07-14 05:01 . 2012-05-27 20:48 228720 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat
+ 2009-07-14 05:01 . 2012-05-28 12:37 228720 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat
+ 2012-05-21 16:19 . 2012-05-28 12:37 4042264 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-1676154842-4194198124-3986527764-1001-8192.dat
- 2012-05-21 16:19 . 2012-05-27 20:48 4042264 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-1676154842-4194198124-3986527764-1001-8192.dat
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2012-05-03 17355912]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1475584]
"HydraVisionDesktopManager"="c:\program files (x86)\ATI Technologies\HydraVision\HydraDM.exe" [2011-11-09 393216]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"AMD AVT"="start AMD Accelerated Video Transcoding device initialization" [X]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2012-04-05 641664]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"
.
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe [2012-05-03 158856]
R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-05-21 257696]
R3 BBUpdate;BBUpdate;c:\program files (x86)\Microsoft\BingBar\7.1.362.0\SeaPort.exe [2012-02-13 240408]
R3 Futuremark SystemInfo Service;Futuremark SystemInfo Service;c:\program files (x86)\Futuremark\Futuremark SystemInfo\FMSISvc.exe [2012-04-26 135584]
R3 MSICDSetup;MSICDSetup;E:\CDriver64.sys [x]
R3 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys [x]
R3 NisSrv;Kontrola sítě Microsoft;c:\program files\Microsoft Security Client\NisSrv.exe [2012-03-26 291696]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [x]
R3 RTTEAMPT;Realtek Teaming Protocol Driver (NDIS 6.0);c:\windows\system32\DRIVERS\RtTeam60.sys [x]
R3 RTVLANPT;Realtek Vlan Protocol Driver (NDIS 6.2);c:\windows\system32\DRIVERS\RtVlan60.sys [x]
R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys [x]
R3 TEAM;Realtek Virtual Miniport Driver for Teaming (NDIS 6.0);c:\windows\system32\DRIVERS\RtTeam60.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys [x]
R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys [x]
R3 VLAN;Realtek Virtual Miniport Driver for VLAN (NDIS 6.2);c:\windows\system32\DRIVERS\RtVLAN60.sys [x]
R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [x]
S2 BBSvc;BingBar Service;c:\program files (x86)\Microsoft\BingBar\7.1.362.0\BBSvc.exe [2012-02-13 193816]
S2 cpuz135;cpuz135;c:\windows\system32\drivers\cpuz135_x64.sys [x]
S2 RadeonPro Support Service;RadeonPro Support Service;c:\program files (x86)\RadeonPro\RadeonProSupport.exe [2011-02-09 12800]
S2 RtNdPt60;Realtek NDIS Protocol Driver;c:\windows\system32\DRIVERS\RtNdPt60.sys [x]
S2 Skype C2C Service;Skype C2C Service;c:\programdata\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2012-04-09 3063968]
S3 amdkmdag;amdkmdag;c:\windows\system32\DRIVERS\atikmdag.sys [x]
S3 amdkmdap;amdkmdap;c:\windows\system32\DRIVERS\atikmpag.sys [x]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW76.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [x]
.
.
Obsah adresáře 'Naplánované úlohy'
.
2012-05-27 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-05-21 13:18]
.
.
--------- x86-64 -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2010-11-02 11545192]
"SpywareTerminatorShield"="c:\program files (x86)\Spyware Terminator\SpywareTerminatorShield.exe" [BU]
"SpywareTerminatorUpdater"="c:\program files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe" [BU]
"MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2012-03-26 1271168]
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SysWOW64\blank.htm
TCP: DhcpNameServer = 192.168.1.254 10.0.0.1
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\S-1-5-21-1676154842-4194198124-3986527764-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.eml\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="WindowsLiveMail.Email.1"
.
[HKEY_USERS\S-1-5-21-1676154842-4194198124-3986527764-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.vcf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="WindowsLiveMail.VCard.1"
.
Celkový čas: 2012-05-28 14:43:42 - počítač byl restartován
ComboFix-quarantined-files.txt 2012-05-28 12:43
ComboFix2.txt 2012-05-27 20:56
.
Před spuštěním: 8 566 120 448
Po spuštění: 8 496 480 256
.
- - End Of File - - DCD0B4CBC0EF50F3BEDE773A229AE325
Re: Prosím o kontrolu Logu - Zamrznutí PC
novej HiJackThis log:
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:48:56, on 28.5.2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Users\CALLER\Downloads\HiJackThis.exe
C:\Windows\SysWOW64\DllHost.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
O2 - BHO: Pomocná služba pro přihlášení ke službě Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BingExt.dll
O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BingExt.dll" (file missing)
O4 - HKLM\..\Run: [AMD AVT] Cmd.exe /c start "AMD Accelerated Video Transcoding device initialization" /min "C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe" aml
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Futuremark SystemInfo Service - Futuremark Corporation - C:\Program Files (x86)\Futuremark\Futuremark SystemInfo\FMSISvc.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: RadeonPro Support Service - Mr. John aka japamd - C:\Program Files (x86)\RadeonPro\RadeonProSupport.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 7075 bytes
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:48:56, on 28.5.2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Users\CALLER\Downloads\HiJackThis.exe
C:\Windows\SysWOW64\DllHost.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
O2 - BHO: Pomocná služba pro přihlášení ke službě Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BingExt.dll
O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BingExt.dll" (file missing)
O4 - HKLM\..\Run: [AMD AVT] Cmd.exe /c start "AMD Accelerated Video Transcoding device initialization" /min "C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe" aml
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Futuremark SystemInfo Service - Futuremark Corporation - C:\Program Files (x86)\Futuremark\Futuremark SystemInfo\FMSISvc.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: RadeonPro Support Service - Mr. John aka japamd - C:\Program Files (x86)\RadeonPro\RadeonProSupport.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 7075 bytes
Re: Prosím o kontrolu Logu - Zamrznutí PC
aswMBR log:
aswMBR version 0.9.9.1665 Copyright(c) 2011 AVAST Software
Run date: 2012-05-28 14:51:04
-----------------------------
14:51:04.230 OS Version: Windows x64 6.1.7601 Service Pack 1
14:51:04.230 Number of processors: 4 586 0xF0B
14:51:04.230 ComputerName: CALLER-PC UserName: CALLER
14:51:04.917 Initialize success
14:51:12.162 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP2T0L0-3
14:51:12.162 Disk 0 Vendor: SAMSUNG_HD321KJ CP100-11 Size: 305244MB BusType: 3
14:51:12.209 Disk 0 MBR read successfully
14:51:12.209 Disk 0 MBR scan
14:51:12.209 Disk 0 Windows 7 default MBR code
14:51:12.225 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 40939 MB offset 63
14:51:12.225 Disk 0 Partition - 00 0F Extended LBA 264303 MB offset 83843235
14:51:12.240 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 264303 MB offset 83843298
14:51:12.272 Disk 0 scanning C:\Windows\system32\drivers
14:51:18.558 Service scanning
14:51:39.057 Service MSICDSetup E:\CDriver64.sys **LOCKED** 21
14:51:45.188 Modules scanning
14:51:45.188 Disk 0 trace - called modules:
14:51:45.188 ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys ataport.SYS pciide.sys
14:51:45.203 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa8005f9f060]
14:51:45.203 3 CLASSPNP.SYS[fffff8800161743f] -> nt!IofCallDriver -> [0xfffffa8005d19520]
14:51:45.203 5 ACPI.sys[fffff88000f1a7a1] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP2T0L0-3[0xfffffa8005d1b060]
14:51:45.203 Scan finished successfully
14:51:54.111 Disk 0 MBR has been saved successfully to "C:\Users\CALLER\Desktop\MBR.dat"
14:51:54.126 The log file has been saved successfully to "C:\Users\CALLER\Desktop\aswMBR.txt"
aswMBR version 0.9.9.1665 Copyright(c) 2011 AVAST Software
Run date: 2012-05-28 14:51:04
-----------------------------
14:51:04.230 OS Version: Windows x64 6.1.7601 Service Pack 1
14:51:04.230 Number of processors: 4 586 0xF0B
14:51:04.230 ComputerName: CALLER-PC UserName: CALLER
14:51:04.917 Initialize success
14:51:12.162 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP2T0L0-3
14:51:12.162 Disk 0 Vendor: SAMSUNG_HD321KJ CP100-11 Size: 305244MB BusType: 3
14:51:12.209 Disk 0 MBR read successfully
14:51:12.209 Disk 0 MBR scan
14:51:12.209 Disk 0 Windows 7 default MBR code
14:51:12.225 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 40939 MB offset 63
14:51:12.225 Disk 0 Partition - 00 0F Extended LBA 264303 MB offset 83843235
14:51:12.240 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 264303 MB offset 83843298
14:51:12.272 Disk 0 scanning C:\Windows\system32\drivers
14:51:18.558 Service scanning
14:51:39.057 Service MSICDSetup E:\CDriver64.sys **LOCKED** 21
14:51:45.188 Modules scanning
14:51:45.188 Disk 0 trace - called modules:
14:51:45.188 ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys ataport.SYS pciide.sys
14:51:45.203 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa8005f9f060]
14:51:45.203 3 CLASSPNP.SYS[fffff8800161743f] -> nt!IofCallDriver -> [0xfffffa8005d19520]
14:51:45.203 5 ACPI.sys[fffff88000f1a7a1] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP2T0L0-3[0xfffffa8005d1b060]
14:51:45.203 Scan finished successfully
14:51:54.111 Disk 0 MBR has been saved successfully to "C:\Users\CALLER\Desktop\MBR.dat"
14:51:54.126 The log file has been saved successfully to "C:\Users\CALLER\Desktop\aswMBR.txt"
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 27 hostů