Dobrý den,
potřebovala bych poradit. Chtěla jsem stáhnout film přes torrent, ale bohužel to byl vir. Nainstaloval se mi nový antivirový program a nemůžu spustit jakýkoliv program. Nyní pracuji v nouzovém režimu. Přikládám výsledek z HijackThis.
Díky za pomoc.
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 14:20:15, on 29.6.2012
Platform: Unknown Windows (WinNT 6.01.3504)
MSIE: Internet Explorer v9.00 (9.00.8112.16446)
Boot mode: Safe mode with network support
Running processes:
C:\Windows\Explorer.EXE
C:\Windows\system32\ctfmon.exe
C:\Program Files\Opera\opera.exe
C:\Program Files\Opera\pluginwrapper\opera_plugin_wrapper.exe
C:\Program Files\Opera\pluginwrapper\opera_plugin_wrapper.exe
C:\PROGRA~1\Java\jre6\bin\jp2launcher.exe
C:\Program Files\Java\jre6\bin\java.exe
C:\Windows\system32\conhost.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com?SearchSource= ... =CT3072253
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\prxtbBS_0.dll
R3 - URLSearchHook: uTorrentControl2 Toolbar - {687578b9-7132-4a7a-80e4-30ee31099e03} - C:\Program Files\uTorrentControl2\prxtbuTor.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: uTorrentControl2 - {687578b9-7132-4a7a-80e4-30ee31099e03} - C:\Program Files\uTorrentControl2\prxtbuTor.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: BS Player - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\prxtbBS_0.dll
O3 - Toolbar: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\prxtbBS_0.dll
O3 - Toolbar: uTorrentControl2 Toolbar - {687578b9-7132-4a7a-80e4-30ee31099e03} - C:\Program Files\uTorrentControl2\prxtbuTor.dll
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe -r
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [MSIDLL] rundll32.exe msipyj32.dll,XOCdzvgITEd
O4 - HKCU\..\Run: [Google Update] "C:\Users\Tomáš\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\RunOnce: [F4D55F3E00019833000CD233A6014588] C:\ProgramData\F4D55F3E00019833000CD233A6014588\F4D55F3E00019833000CD233A6014588.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: OpenOffice.org 3.3.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O13 - Gopher Prefix:
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Realtime Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: TeamViewer 7 (TeamViewer7) - TeamViewer GmbH - C:\Program Files\TeamViewer\Version7\TeamViewer_Service.exe
--
End of file - 6132 bytes
Zavirovaný PC
- Žbeky
- Moderátor
-
Guru Level 13
- Příspěvky: 22288
- Registrován: květen 08
- Bydliště: Vsetín - Pardubice
- Pohlaví:
- Stav:
Offline
Re: Zavirovaný PC
Torrenty jsou svinstvo
Odinstaluj BS Player Toolbar a uTorrentControl2 Toolbar
Fixni:
Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
- Pokud používáš Firefox, klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
- Pokud používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected.
- Pokud používáš Chrome, nic dalšího nevybírej a dej Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.
Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Update Malwarebytes' Anti-Malware (Aktualizace Malwarebytes' Anti-Malware) a Launch Malwarebytes' Anti-Malware (Spustit aplikaci Malwarebytes' Anti-Malware), pokud jo tak klikni na tlačítko Finish
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Perform Quick Scan (Provést rychlý sken) a klikni na tlačítko Scan (Skenovat)
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Show Results
- pak zvol možnost Save Logfile a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(ZATÍM SÁM NIC NEMAŽ!).
Vlož sem pak obsah toho logu.
Odinstaluj BS Player Toolbar a uTorrentControl2 Toolbar
Fixni:
Kód: Vybrat vše
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com?SearchSource= ... =CT3072253
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\prxtbBS_0.dll
R3 - URLSearchHook: uTorrentControl2 Toolbar - {687578b9-7132-4a7a-80e4-30ee31099e03} - C:\Program Files\uTorrentControl2\prxtbuTor.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: uTorrentControl2 - {687578b9-7132-4a7a-80e4-30ee31099e03} - C:\Program Files\uTorrentControl2\prxtbuTor.dll
O2 - BHO: BS Player - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\prxtbBS_0.dll
O3 - Toolbar: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\prxtbBS_0.dll
O3 - Toolbar: uTorrentControl2 Toolbar - {687578b9-7132-4a7a-80e4-30ee31099e03} - C:\Program Files\uTorrentControl2\prxtbuTor.dll
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [MSIDLL] rundll32.exe msipyj32.dll,XOCdzvgITEd
O4 - HKCU\..\Run: [Google Update] "C:\Users\Tomáš\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\RunOnce: [F4D55F3E00019833000CD233A6014588] C:\ProgramData\F4D55F3E00019833000CD233A6014588\F4D55F3E00019833000CD233A6014588.exe
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: OpenOffice.org 3.3.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe
O13 - Gopher Prefix:
Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
- Pokud používáš Firefox, klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
- Pokud používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected.
- Pokud používáš Chrome, nic dalšího nevybírej a dej Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.
Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Update Malwarebytes' Anti-Malware (Aktualizace Malwarebytes' Anti-Malware) a Launch Malwarebytes' Anti-Malware (Spustit aplikaci Malwarebytes' Anti-Malware), pokud jo tak klikni na tlačítko Finish
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Perform Quick Scan (Provést rychlý sken) a klikni na tlačítko Scan (Skenovat)
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Show Results
- pak zvol možnost Save Logfile a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(ZATÍM SÁM NIC NEMAŽ!).
Vlož sem pak obsah toho logu.
V SZ řeším jen záležitosti týkající se fóra. Na prosby a žádosti o technickou podporu nereaguji. Díky za pochopení.
HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra
HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra
Re: Zavirovaný PC
dávám log:
Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware) 1.61.0.1400
www.malwarebytes.org
Verze databáze: v2012.06.29.11
Windows 7 x86 NTFS (Safe Mode s podporou sítě)
Internet Explorer 9.0.8112.16421
Tomáš :: TOMÁŠ-PC [administrátor]
Ochrana: Zakázána
30.6.2012 0:38:23
mbam-log-2012-06-30 (00-42-48).txt
Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 191762
Uplynulý čas: 3 minut, 33 sekund
Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené klíče v registru: 1
HKCU\SOFTWARE\CLASSES\CLSID\{42AEDC87-2188-41FD-B9A3-0C966FEABEC1}\INPROCSERVER32 (Trojan.Zaccess) -> Žádná instrukce nebyla provedena.
Nalezené hodnoty v registru: 1
HKCU\SOFTWARE\CLASSES\CLSID\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InprocServer32| (Trojan.Zaccess) -> Data: C:\Users\Tomáš\AppData\Local\{1e4a007e-9357-ab63-6b24-60533ee366ef}\n. -> Žádná instrukce nebyla provedena.
Nalezené datové položky v registru: 3
HKLM\SOFTWARE\Microsoft\Security Center|AntiVirusDisableNotify (PUM.Disabled.SecurityCenter) -> Špatný: (1) Dobrý: (0) -> Žádná instrukce nebyla provedena.
HKLM\SOFTWARE\Microsoft\Security Center|FirewallDisableNotify (PUM.Disabled.SecurityCenter) -> Špatný: (1) Dobrý: (0) -> Žádná instrukce nebyla provedena.
HKLM\SOFTWARE\Microsoft\Security Center|UpdatesDisableNotify (PUM.Disabled.SecurityCenter) -> Špatný: (1) Dobrý: (0) -> Žádná instrukce nebyla provedena.
Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené soubory: 5
C:\ProgramData\F4D55F3E00019833000CD233A6014588\F4D55F3E00019833000CD233A6014588.exe (Trojan.LameShield) -> Žádná instrukce nebyla provedena.
C:\Windows\Installer\{1e4a007e-9357-ab63-6b24-60533ee366ef}\n (Trojan.Dropper.PE4) -> Žádná instrukce nebyla provedena.
C:\Windows\Installer\{1e4a007e-9357-ab63-6b24-60533ee366ef}\U\00000001.@ (Trojan.Small) -> Žádná instrukce nebyla provedena.
C:\Windows\Installer\{1e4a007e-9357-ab63-6b24-60533ee366ef}\U\80000000.@ (Trojan.Sirefef) -> Žádná instrukce nebyla provedena.
C:\Windows\Installer\{1e4a007e-9357-ab63-6b24-60533ee366ef}\U\800000cb.@ (Rootkit.0Access) -> Žádná instrukce nebyla provedena.
(konec)
Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware) 1.61.0.1400
www.malwarebytes.org
Verze databáze: v2012.06.29.11
Windows 7 x86 NTFS (Safe Mode s podporou sítě)
Internet Explorer 9.0.8112.16421
Tomáš :: TOMÁŠ-PC [administrátor]
Ochrana: Zakázána
30.6.2012 0:38:23
mbam-log-2012-06-30 (00-42-48).txt
Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 191762
Uplynulý čas: 3 minut, 33 sekund
Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené klíče v registru: 1
HKCU\SOFTWARE\CLASSES\CLSID\{42AEDC87-2188-41FD-B9A3-0C966FEABEC1}\INPROCSERVER32 (Trojan.Zaccess) -> Žádná instrukce nebyla provedena.
Nalezené hodnoty v registru: 1
HKCU\SOFTWARE\CLASSES\CLSID\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InprocServer32| (Trojan.Zaccess) -> Data: C:\Users\Tomáš\AppData\Local\{1e4a007e-9357-ab63-6b24-60533ee366ef}\n. -> Žádná instrukce nebyla provedena.
Nalezené datové položky v registru: 3
HKLM\SOFTWARE\Microsoft\Security Center|AntiVirusDisableNotify (PUM.Disabled.SecurityCenter) -> Špatný: (1) Dobrý: (0) -> Žádná instrukce nebyla provedena.
HKLM\SOFTWARE\Microsoft\Security Center|FirewallDisableNotify (PUM.Disabled.SecurityCenter) -> Špatný: (1) Dobrý: (0) -> Žádná instrukce nebyla provedena.
HKLM\SOFTWARE\Microsoft\Security Center|UpdatesDisableNotify (PUM.Disabled.SecurityCenter) -> Špatný: (1) Dobrý: (0) -> Žádná instrukce nebyla provedena.
Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené soubory: 5
C:\ProgramData\F4D55F3E00019833000CD233A6014588\F4D55F3E00019833000CD233A6014588.exe (Trojan.LameShield) -> Žádná instrukce nebyla provedena.
C:\Windows\Installer\{1e4a007e-9357-ab63-6b24-60533ee366ef}\n (Trojan.Dropper.PE4) -> Žádná instrukce nebyla provedena.
C:\Windows\Installer\{1e4a007e-9357-ab63-6b24-60533ee366ef}\U\00000001.@ (Trojan.Small) -> Žádná instrukce nebyla provedena.
C:\Windows\Installer\{1e4a007e-9357-ab63-6b24-60533ee366ef}\U\80000000.@ (Trojan.Sirefef) -> Žádná instrukce nebyla provedena.
C:\Windows\Installer\{1e4a007e-9357-ab63-6b24-60533ee366ef}\U\800000cb.@ (Rootkit.0Access) -> Žádná instrukce nebyla provedena.
(konec)
- Žbeky
- Moderátor
-
Guru Level 13
- Příspěvky: 22288
- Registrován: květen 08
- Bydliště: Vsetín - Pardubice
- Pohlaví:
- Stav:
Offline
Re: Zavirovaný PC
Znovu spusť MbAM a dej Scan
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Show Results
- ujistit se že máš zatrhnuté všechny vypsané nálezy a klikni na tlačítko Remove Selected
- když skončí odstraňování tak se ti zobrazí log, tak ho sem dej.
- pak zvol v programu OK a pak program ukonči přes Exit
Stáhni si TDSSKiller
Na svojí plochu. Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller.2.2.7.1._(datum)_log.txt , vlož sem prosím celý obsah logu.
Vypni rezidentní štít antiviru a antispywaru
Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud bude po kontrole problém spustit aplikace nebo bude vyskakovat hláška o pokusu použít neplatnou operaci na klíč registru, který je označen pro odstranění, stačí restartovat počítač.
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Show Results
- ujistit se že máš zatrhnuté všechny vypsané nálezy a klikni na tlačítko Remove Selected
- když skončí odstraňování tak se ti zobrazí log, tak ho sem dej.
- pak zvol v programu OK a pak program ukonči přes Exit
Stáhni si TDSSKiller
Na svojí plochu. Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller.2.2.7.1._(datum)_log.txt , vlož sem prosím celý obsah logu.
Vypni rezidentní štít antiviru a antispywaru
Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud bude po kontrole problém spustit aplikace nebo bude vyskakovat hláška o pokusu použít neplatnou operaci na klíč registru, který je označen pro odstranění, stačí restartovat počítač.
V SZ řeším jen záležitosti týkající se fóra. Na prosby a žádosti o technickou podporu nereaguji. Díky za pochopení.
HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra
HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra
Re: Zavirovaný PC
tak dávám všechny logy:
1)log z MbAM
Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware) 1.61.0.1400
www.malwarebytes.org
Verze databáze: v2012.06.29.11
Windows 7 x86 NTFS (Safe Mode s podporou sítě)
Internet Explorer 9.0.8112.16421
Tomáš :: TOMÁŠ-PC [administrátor]
Ochrana: Zakázána
30.6.2012 13:14:30
mbam-log-2012-06-30 (13-14-30).txt
Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 192064
Uplynulý čas: 1 minut, 7 sekund
Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené klíče v registru: 1
HKCU\SOFTWARE\CLASSES\CLSID\{42AEDC87-2188-41FD-B9A3-0C966FEABEC1}\INPROCSERVER32 (Trojan.Zaccess) -> Umístnění do karantény a smazání se zdařilo.
Nalezené hodnoty v registru: 1
HKCU\SOFTWARE\CLASSES\CLSID\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InprocServer32| (Trojan.Zaccess) -> Data: C:\Users\Tomáš\AppData\Local\{1e4a007e-9357-ab63-6b24-60533ee366ef}\n. -> Umístnění do karantény a smazání se zdařilo.
Nalezené datové položky v registru: 3
HKLM\SOFTWARE\Microsoft\Security Center|AntiVirusDisableNotify (PUM.Disabled.SecurityCenter) -> Špatný: (1) Dobrý: (0) -> Umístnění do karantény a opravení se zdařilo.
HKLM\SOFTWARE\Microsoft\Security Center|FirewallDisableNotify (PUM.Disabled.SecurityCenter) -> Špatný: (1) Dobrý: (0) -> Umístnění do karantény a opravení se zdařilo.
HKLM\SOFTWARE\Microsoft\Security Center|UpdatesDisableNotify (PUM.Disabled.SecurityCenter) -> Špatný: (1) Dobrý: (0) -> Umístnění do karantény a opravení se zdařilo.
Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené soubory: 5
C:\ProgramData\F4D55F3E00019833000CD233A6014588\F4D55F3E00019833000CD233A6014588.exe (Trojan.LameShield) -> Umístnění do karantény a smazání se zdařilo.
C:\Windows\Installer\{1e4a007e-9357-ab63-6b24-60533ee366ef}\n (Trojan.Dropper.PE4) -> Umístnění do karantény a smazání se zdařilo.
C:\Windows\Installer\{1e4a007e-9357-ab63-6b24-60533ee366ef}\U\00000001.@ (Trojan.Small) -> Umístnění do karantény a smazání se zdařilo.
C:\Windows\Installer\{1e4a007e-9357-ab63-6b24-60533ee366ef}\U\80000000.@ (Trojan.Sirefef) -> Umístnění do karantény a smazání se zdařilo.
C:\Windows\Installer\{1e4a007e-9357-ab63-6b24-60533ee366ef}\U\800000cb.@ (Rootkit.0Access) -> Umístnění do karantény a smazání se zdařilo.
(konec)
1)log z MbAM
Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware) 1.61.0.1400
www.malwarebytes.org
Verze databáze: v2012.06.29.11
Windows 7 x86 NTFS (Safe Mode s podporou sítě)
Internet Explorer 9.0.8112.16421
Tomáš :: TOMÁŠ-PC [administrátor]
Ochrana: Zakázána
30.6.2012 13:14:30
mbam-log-2012-06-30 (13-14-30).txt
Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 192064
Uplynulý čas: 1 minut, 7 sekund
Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené klíče v registru: 1
HKCU\SOFTWARE\CLASSES\CLSID\{42AEDC87-2188-41FD-B9A3-0C966FEABEC1}\INPROCSERVER32 (Trojan.Zaccess) -> Umístnění do karantény a smazání se zdařilo.
Nalezené hodnoty v registru: 1
HKCU\SOFTWARE\CLASSES\CLSID\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InprocServer32| (Trojan.Zaccess) -> Data: C:\Users\Tomáš\AppData\Local\{1e4a007e-9357-ab63-6b24-60533ee366ef}\n. -> Umístnění do karantény a smazání se zdařilo.
Nalezené datové položky v registru: 3
HKLM\SOFTWARE\Microsoft\Security Center|AntiVirusDisableNotify (PUM.Disabled.SecurityCenter) -> Špatný: (1) Dobrý: (0) -> Umístnění do karantény a opravení se zdařilo.
HKLM\SOFTWARE\Microsoft\Security Center|FirewallDisableNotify (PUM.Disabled.SecurityCenter) -> Špatný: (1) Dobrý: (0) -> Umístnění do karantény a opravení se zdařilo.
HKLM\SOFTWARE\Microsoft\Security Center|UpdatesDisableNotify (PUM.Disabled.SecurityCenter) -> Špatný: (1) Dobrý: (0) -> Umístnění do karantény a opravení se zdařilo.
Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené soubory: 5
C:\ProgramData\F4D55F3E00019833000CD233A6014588\F4D55F3E00019833000CD233A6014588.exe (Trojan.LameShield) -> Umístnění do karantény a smazání se zdařilo.
C:\Windows\Installer\{1e4a007e-9357-ab63-6b24-60533ee366ef}\n (Trojan.Dropper.PE4) -> Umístnění do karantény a smazání se zdařilo.
C:\Windows\Installer\{1e4a007e-9357-ab63-6b24-60533ee366ef}\U\00000001.@ (Trojan.Small) -> Umístnění do karantény a smazání se zdařilo.
C:\Windows\Installer\{1e4a007e-9357-ab63-6b24-60533ee366ef}\U\80000000.@ (Trojan.Sirefef) -> Umístnění do karantény a smazání se zdařilo.
C:\Windows\Installer\{1e4a007e-9357-ab63-6b24-60533ee366ef}\U\800000cb.@ (Rootkit.0Access) -> Umístnění do karantény a smazání se zdařilo.
(konec)
Re: Zavirovaný PC
logy z TDSSKilleru a ComboFixu se sem nevejdou
http://www.sendspace.com/filegroup/rECW ... fu8%2BHyoQ
http://www.sendspace.com/filegroup/rECW ... fu8%2BHyoQ
- Žbeky
- Moderátor
-
Guru Level 13
- Příspěvky: 22288
- Registrován: květen 08
- Bydliště: Vsetín - Pardubice
- Pohlaví:
- Stav:
Offline
Re: Zavirovaný PC
Tak je rozděl do víc příspěvků
V SZ řeším jen záležitosti týkající se fóra. Na prosby a žádosti o technickou podporu nereaguji. Díky za pochopení.
HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra
HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra
Re: Zavirovaný PC
log z TDSSKilleru 1
13:30:54.0798 1224 TDSS rootkit removing tool 2.7.43.0 Jun 29 2012 17:54:22
13:30:56.0217 1224 ============================================================
13:30:56.0217 1224 Current date / time: 2012/06/30 13:30:56.0217
13:30:56.0217 1224 SystemInfo:
13:30:56.0217 1224
13:30:56.0217 1224 OS Version: 6.1.7600 ServicePack: 0.0
13:30:56.0217 1224 Product type: Workstation
13:30:56.0217 1224 ComputerName: TOMÁŠ-PC
13:30:56.0217 1224 UserName: Tomáš
13:30:56.0217 1224 Windows directory: C:\Windows
13:30:56.0217 1224 System windows directory: C:\Windows
13:30:56.0217 1224 Processor architecture: Intel x86
13:30:56.0217 1224 Number of processors: 2
13:30:56.0217 1224 Page size: 0x1000
13:30:56.0217 1224 Boot type: Safe boot with network
13:30:56.0217 1224 ============================================================
13:30:57.0231 1224 Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
13:30:57.0247 1224 ============================================================
13:30:57.0247 1224 \Device\Harddisk0\DR0:
13:30:57.0247 1224 MBR partitions:
13:30:57.0247 1224 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x7530462
13:30:57.0262 1224 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x75304E0, BlocksNum 0x7530462
13:30:57.0278 1224 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x1083109B, BlocksNum 0x14BF8765
13:30:57.0294 1224 ============================================================
13:30:57.0325 1224 C: <-> \Device\Harddisk0\DR0\Partition0
13:30:57.0356 1224 D: <-> \Device\Harddisk0\DR0\Partition1
13:30:57.0387 1224 E: <-> \Device\Harddisk0\DR0\Partition2
13:30:57.0387 1224 ============================================================
13:30:57.0387 1224 Initialize success
13:30:57.0387 1224 ============================================================
13:31:00.0382 1796 ============================================================
13:31:00.0382 1796 Scan started
13:31:00.0382 1796 Mode: Manual;
13:31:00.0382 1796 ============================================================
13:31:01.0365 1796 1394ohci (6d2aca41739bfe8cb86ee8e85f29697d) C:\Windows\system32\DRIVERS\1394ohci.sys
13:31:01.0365 1796 1394ohci - ok
13:31:01.0396 1796 ACPI (f0e07d144c8685b8774bc32fc8da4df0) C:\Windows\system32\DRIVERS\ACPI.sys
13:31:01.0412 1796 ACPI - ok
13:31:01.0428 1796 AcpiPmi (98d81ca942d19f7d9153b095162ac013) C:\Windows\system32\DRIVERS\acpipmi.sys
13:31:01.0428 1796 AcpiPmi - ok
13:31:01.0537 1796 AdobeARMservice (62b7936f9036dd6ed36e6a7efa805dc0) C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
13:31:01.0537 1796 AdobeARMservice - ok
13:31:01.0630 1796 AdobeFlashPlayerUpdateSvc (990dc6edc9f933194d7cd4e65146bc94) C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
13:31:01.0630 1796 AdobeFlashPlayerUpdateSvc - ok
13:31:01.0708 1796 adp94xx (21e785ebd7dc90a06391141aac7892fb) C:\Windows\system32\DRIVERS\adp94xx.sys
13:31:01.0708 1796 adp94xx - ok
13:31:01.0724 1796 adpahci (0c676bc278d5b59ff5abd57bbe9123f2) C:\Windows\system32\DRIVERS\adpahci.sys
13:31:01.0724 1796 adpahci - ok
13:31:01.0755 1796 adpu320 (7c7b5ee4b7b822ec85321fe23a27db33) C:\Windows\system32\DRIVERS\adpu320.sys
13:31:01.0755 1796 adpu320 - ok
13:31:01.0786 1796 AeLookupSvc (8b5eefeec1e6d1a72a06c526628ad161) C:\Windows\System32\aelupsvc.dll
13:31:01.0786 1796 AeLookupSvc - ok
13:31:01.0849 1796 AFD (0db7a48388d54d154ebec120461a0fcd) C:\Windows\system32\drivers\afd.sys
13:31:01.0849 1796 AFD - ok
13:31:01.0880 1796 agp440 (507812c3054c21cef746b6ee3d04dd6e) C:\Windows\system32\DRIVERS\agp440.sys
13:31:01.0880 1796 agp440 - ok
13:31:01.0927 1796 aic78xx (8b30250d573a8f6b4bd23195160d8707) C:\Windows\system32\DRIVERS\djsvs.sys
13:31:01.0927 1796 aic78xx - ok
13:31:01.0974 1796 ALG (18a54e132947cd98fea9accc57f98f13) C:\Windows\System32\alg.exe
13:31:01.0974 1796 ALG - ok
13:31:02.0005 1796 aliide (0d40bcf52ea90fc7df2aeab6503dea44) C:\Windows\system32\DRIVERS\aliide.sys
13:31:02.0005 1796 aliide - ok
13:31:02.0020 1796 amdagp (3c6600a0696e90a463771c7422e23ab5) C:\Windows\system32\DRIVERS\amdagp.sys
13:31:02.0020 1796 amdagp - ok
13:31:02.0036 1796 amdide (cd5914170297126b6266860198d1d4f0) C:\Windows\system32\DRIVERS\amdide.sys
13:31:02.0036 1796 amdide - ok
13:31:02.0067 1796 AmdK8 (00dda200d71bac534bf56a9db5dfd666) C:\Windows\system32\DRIVERS\amdk8.sys
13:31:02.0067 1796 AmdK8 - ok
13:31:02.0083 1796 AmdPPM (3cbf30f5370fda40dd3e87df38ea53b6) C:\Windows\system32\DRIVERS\amdppm.sys
13:31:02.0083 1796 AmdPPM - ok
13:31:02.0114 1796 amdsata (19ce906b4cdc11fc4fef5745f33a63b6) C:\Windows\system32\drivers\amdsata.sys
13:31:02.0114 1796 amdsata - ok
13:31:02.0130 1796 amdsbs (ea43af0c423ff267355f74e7a53bdaba) C:\Windows\system32\DRIVERS\amdsbs.sys
13:31:02.0130 1796 amdsbs - ok
13:31:02.0145 1796 amdxata (869e67d66be326a5a9159fba8746fa70) C:\Windows\system32\drivers\amdxata.sys
13:31:02.0145 1796 amdxata - ok
13:31:02.0239 1796 AntiVirSchedulerService (0a1cc583e8147004e4ad4625d7fbf88c) C:\Program Files\Avira\AntiVir Desktop\sched.exe
13:31:02.0239 1796 AntiVirSchedulerService - ok
13:31:02.0270 1796 AntiVirService (c9a36ef935aced86aedf93e97e606911) C:\Program Files\Avira\AntiVir Desktop\avguard.exe
13:31:02.0286 1796 AntiVirService - ok
13:31:02.0317 1796 AppID (feb834c02ce1e84b6a38f953ca067706) C:\Windows\system32\drivers\appid.sys
13:31:02.0317 1796 AppID - ok
13:31:02.0364 1796 AppIDSvc (62a9c86cb6085e20db4823e4e97826f5) C:\Windows\System32\appidsvc.dll
13:31:02.0364 1796 AppIDSvc - ok
13:31:02.0395 1796 Appinfo (7dead9e3f65dcb2794f2711003bbf650) C:\Windows\System32\appinfo.dll
13:31:02.0395 1796 Appinfo - ok
13:31:02.0442 1796 AppMgmt (a45d184df6a8803da13a0b329517a64a) C:\Windows\System32\appmgmts.dll
13:31:02.0442 1796 AppMgmt - ok
13:31:02.0473 1796 arc (2932004f49677bd84dbc72edb754ffb3) C:\Windows\system32\DRIVERS\arc.sys
13:31:02.0473 1796 arc - ok
13:31:02.0473 1796 arcsas (5d6f36c46fd283ae1b57bd2e9feb0bc7) C:\Windows\system32\DRIVERS\arcsas.sys
13:31:02.0473 1796 arcsas - ok
13:31:02.0613 1796 aspnet_state (776acefa0ca9df0faa51a5fb2f435705) C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
13:31:02.0613 1796 aspnet_state - ok
13:31:02.0660 1796 AsyncMac (add2ade1c2b285ab8378d2daaf991481) C:\Windows\system32\DRIVERS\asyncmac.sys
13:31:02.0660 1796 AsyncMac - ok
13:31:02.0676 1796 atapi (338c86357871c167a96ab976519bf59e) C:\Windows\system32\DRIVERS\atapi.sys
13:31:02.0676 1796 atapi - ok
13:31:02.0738 1796 athr (76bab0c824e2d05b940c4dd40a9b08bf) C:\Windows\system32\DRIVERS\athr.sys
13:31:02.0754 1796 athr - ok
13:31:02.0816 1796 AudioEndpointBuilder (510c873bfa135aa829f4180352772734) C:\Windows\System32\Audiosrv.dll
13:31:02.0816 1796 AudioEndpointBuilder - ok
13:31:02.0832 1796 Audiosrv (510c873bfa135aa829f4180352772734) C:\Windows\System32\Audiosrv.dll
13:31:02.0832 1796 Audiosrv - ok
13:31:02.0894 1796 avgntflt (d5541f0afb767e85fc412fc609d96a74) C:\Windows\system32\DRIVERS\avgntflt.sys
13:31:02.0894 1796 avgntflt - ok
13:31:02.0925 1796 avipbb (7d967a682d4694df7fa57d63a2db01fe) C:\Windows\system32\DRIVERS\avipbb.sys
13:31:02.0925 1796 avipbb - ok
13:31:02.0941 1796 avkmgr (271cfd1a989209b1964e24d969552bf7) C:\Windows\system32\DRIVERS\avkmgr.sys
13:31:02.0941 1796 avkmgr - ok
13:31:02.0972 1796 AxInstSV (dd6a431b43e34b91a767d1ce33728175) C:\Windows\System32\AxInstSV.dll
13:31:02.0972 1796 AxInstSV - ok
13:31:03.0050 1796 b06bdrv (1a231abec60fd316ec54c66715543cec) C:\Windows\system32\DRIVERS\bxvbdx.sys
13:31:03.0050 1796 b06bdrv - ok
13:31:03.0097 1796 b57nd60x (bd8869eb9cde6bbe4508d869929869ee) C:\Windows\system32\DRIVERS\b57nd60x.sys
13:31:03.0097 1796 b57nd60x - ok
13:31:03.0159 1796 BDESVC (ee1e9c3bb8228ae423dd38db69128e71) C:\Windows\System32\bdesvc.dll
13:31:03.0159 1796 BDESVC - ok
13:31:03.0175 1796 Beep (505506526a9d467307b3c393dedaf858) C:\Windows\system32\drivers\Beep.sys
13:31:03.0175 1796 Beep - ok
13:31:03.0237 1796 BITS (53f476476f55a27f580661bde09c4ec4) C:\Windows\System32\qmgr.dll
13:31:03.0253 1796 BITS - ok
13:31:03.0268 1796 blbdrive (2287078ed48fcfc477b05b20cf38f36f) C:\Windows\system32\DRIVERS\blbdrive.sys
13:31:03.0268 1796 blbdrive - ok
13:31:03.0315 1796 bowser (9a5c671b7fbae4865149bb11f59b91b2) C:\Windows\system32\DRIVERS\bowser.sys
13:31:03.0315 1796 bowser - ok
13:31:03.0331 1796 BrFiltLo (9f9acc7f7ccde8a15c282d3f88b43309) C:\Windows\system32\DRIVERS\BrFiltLo.sys
13:31:03.0331 1796 BrFiltLo - ok
13:31:03.0346 1796 BrFiltUp (56801ad62213a41f6497f96dee83755a) C:\Windows\system32\DRIVERS\BrFiltUp.sys
13:31:03.0346 1796 BrFiltUp - ok
13:31:03.0378 1796 Browser (598e1280e7ff3744f4b8329366cc5635) C:\Windows\System32\browser.dll
13:31:03.0378 1796 Browser - ok
13:31:03.0424 1796 Brserid (845b8ce732e67f3b4133164868c666ea) C:\Windows\System32\Drivers\Brserid.sys
13:31:03.0424 1796 Brserid - ok
13:31:03.0440 1796 BrSerWdm (203f0b1e73adadbbb7b7b1fabd901f6b) C:\Windows\System32\Drivers\BrSerWdm.sys
13:31:03.0440 1796 BrSerWdm - ok
13:31:03.0456 1796 BrUsbMdm (bd456606156ba17e60a04e18016ae54b) C:\Windows\System32\Drivers\BrUsbMdm.sys
13:31:03.0456 1796 BrUsbMdm - ok
13:31:03.0471 1796 BrUsbSer (af72ed54503f717a43268b3cc5faec2e) C:\Windows\System32\Drivers\BrUsbSer.sys
13:31:03.0471 1796 BrUsbSer - ok
13:31:03.0487 1796 BTHMODEM (ed3df7c56ce0084eb2034432fc56565a) C:\Windows\system32\DRIVERS\bthmodem.sys
13:31:03.0487 1796 BTHMODEM - ok
13:31:03.0534 1796 bthserv (1df19c96eef6c29d1c3e1a8678e07190) C:\Windows\system32\bthserv.dll
13:31:03.0534 1796 bthserv - ok
13:31:03.0565 1796 cdfs (77ea11b065e0a8ab902d78145ca51e10) C:\Windows\system32\DRIVERS\cdfs.sys
13:31:03.0565 1796 cdfs - ok
13:31:03.0612 1796 cdrom (ba6e70aa0e6091bc39de29477d866a77) C:\Windows\system32\DRIVERS\cdrom.sys
13:31:03.0612 1796 cdrom - ok
13:31:03.0643 1796 CertPropSvc (628a9e30ec5e18dd5de6be4dbdc12198) C:\Windows\System32\certprop.dll
13:31:03.0658 1796 CertPropSvc - ok
13:31:03.0705 1796 circlass (3fe3fe94a34df6fb06e6418d0f6a0060) C:\Windows\system32\DRIVERS\circlass.sys
13:31:03.0705 1796 circlass - ok
13:31:03.0721 1796 CLFS (635181e0e9bbf16871bf5380d71db02d) C:\Windows\system32\CLFS.sys
13:31:03.0736 1796 CLFS - ok
13:31:03.0814 1796 clr_optimization_v2.0.50727_32 (d88040f816fda31c3b466f0fa0918f29) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
13:31:03.0814 1796 clr_optimization_v2.0.50727_32 - ok
13:31:03.0892 1796 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
13:31:03.0892 1796 clr_optimization_v4.0.30319_32 - ok
13:31:03.0924 1796 CmBatt (dea805815e587dad1dd2c502220b5616) C:\Windows\system32\DRIVERS\CmBatt.sys
13:31:03.0924 1796 CmBatt - ok
13:31:03.0939 1796 cmdide (c537b1db64d495b9b4717b4d6d9edbf2) C:\Windows\system32\DRIVERS\cmdide.sys
13:31:03.0939 1796 cmdide - ok
13:31:03.0986 1796 CNG (36c252e474b2ffa0f0fbbff20d92a640) C:\Windows\system32\Drivers\cng.sys
13:31:03.0986 1796 CNG - ok
13:31:04.0017 1796 Compbatt (a6023d3823c37043986713f118a89bee) C:\Windows\system32\DRIVERS\compbatt.sys
13:31:04.0017 1796 Compbatt - ok
13:31:04.0048 1796 CompositeBus (f1724ba27e97d627f808fb0ba77a28a6) C:\Windows\system32\DRIVERS\CompositeBus.sys
13:31:04.0048 1796 CompositeBus - ok
13:31:04.0064 1796 COMSysApp - ok
13:31:04.0080 1796 crcdisk (2c4ebcfc84a9b44f209dff6c6e6c61d1) C:\Windows\system32\DRIVERS\crcdisk.sys
13:31:04.0080 1796 crcdisk - ok
13:31:04.0126 1796 CryptSvc (520a108a2657f4bca7fced9ca7d885de) C:\Windows\system32\cryptsvc.dll
13:31:04.0126 1796 CryptSvc - ok
13:31:04.0173 1796 CSC (27c9490bdd0ae48911ab8cf1932591ed) C:\Windows\system32\drivers\csc.sys
13:31:04.0173 1796 CSC - ok
13:31:04.0220 1796 CscService (56fb5f222ea30d3d3fc459879772cb73) C:\Windows\System32\cscsvc.dll
13:31:04.0236 1796 CscService - ok
13:31:04.0298 1796 DcomLaunch (b82cd39e336973359d7c9bf911e8e84f) C:\Windows\system32\rpcss.dll
13:31:04.0298 1796 DcomLaunch - ok
13:31:04.0345 1796 defragsvc (8d6e10a2d9a5eed59562d9b82cf804e1) C:\Windows\System32\defragsvc.dll
13:31:04.0345 1796 defragsvc - ok
13:31:04.0407 1796 DfsC (83d1ecea8faae75604c0fa49ac7ad996) C:\Windows\system32\Drivers\dfsc.sys
13:31:04.0407 1796 DfsC - ok
13:31:04.0454 1796 Dhcp (c56495fbd770712367cad35e5de72da6) C:\Windows\system32\dhcpcore.dll
13:31:04.0454 1796 Dhcp - ok
13:31:04.0501 1796 discache (1a050b0274bfb3890703d490f330c0da) C:\Windows\system32\drivers\discache.sys
13:31:04.0501 1796 discache - ok
13:31:04.0532 1796 Disk (565003f326f99802e68ca78f2a68e9ff) C:\Windows\system32\DRIVERS\disk.sys
13:31:04.0532 1796 Disk - ok
13:31:04.0579 1796 Dnscache (b15be77a2bacf9c3177d27518afe26a9) C:\Windows\System32\dnsrslvr.dll
13:31:04.0579 1796 Dnscache - ok
13:31:04.0610 1796 dot3svc (4408c85c21eea48eb0ce486baeef0502) C:\Windows\System32\dot3svc.dll
13:31:04.0610 1796 dot3svc - ok
13:31:04.0641 1796 DPS (7fa81c6e11caa594adb52084da73a1e5) C:\Windows\system32\dps.dll
13:31:04.0641 1796 DPS - ok
13:31:04.0688 1796 drmkaud (b918e7c5f9bf77202f89e1a9539f2eb4) C:\Windows\system32\drivers\drmkaud.sys
13:31:04.0688 1796 drmkaud - ok
13:31:04.0735 1796 dtsoftbus01 (687af6bb383885ff6a64071b189a7f3e) C:\Windows\system32\DRIVERS\dtsoftbus01.sys
13:31:04.0750 1796 dtsoftbus01 - ok
13:31:04.0813 1796 DXGKrnl (1679a4669326cb1a67cc95658d273234) C:\Windows\System32\drivers\dxgkrnl.sys
13:31:04.0813 1796 DXGKrnl - ok
13:31:04.0860 1796 EapHost (8600142fa91c1b96367d3300ad0f3f3a) C:\Windows\System32\eapsvc.dll
13:31:04.0860 1796 EapHost - ok
13:31:05.0031 1796 ebdrv (024e1b5cac09731e4d868e64dbfb4ab0) C:\Windows\system32\DRIVERS\evbdx.sys
13:31:05.0047 1796 ebdrv - ok
13:31:05.0172 1796 EFS (c2243ff9e9aad0c30e8b1a0914da15b6) C:\Windows\System32\lsass.exe
13:31:05.0172 1796 EFS - ok
13:31:05.0312 1796 ehRecvr (1697c39978cd69f6fbc15302edcece1f) C:\Windows\ehome\ehRecvr.exe
13:31:05.0312 1796 ehRecvr - ok
13:31:05.0359 1796 ehSched (d389bff34f80caede417bf9d1507996a) C:\Windows\ehome\ehsched.exe
13:31:05.0359 1796 ehSched - ok
13:31:05.0437 1796 elxstor (0ed67910c8c326796faa00b2bf6d9d3c) C:\Windows\system32\DRIVERS\elxstor.sys
13:31:05.0437 1796 elxstor - ok
13:31:05.0452 1796 ErrDev (8fc3208352dd3912c94367a206ab3f11) C:\Windows\system32\DRIVERS\errdev.sys
13:31:05.0452 1796 ErrDev - ok
13:31:05.0530 1796 EventSystem (f6916efc29d9953d5d0df06882ae8e16) C:\Windows\system32\es.dll
13:31:05.0546 1796 EventSystem - ok
13:31:05.0562 1796 exfat (2dc9108d74081149cc8b651d3a26207f) C:\Windows\system32\drivers\exfat.sys
13:31:05.0562 1796 exfat - ok
13:31:05.0577 1796 fastfat (7e0ab74553476622fb6ae36f73d97d35) C:\Windows\system32\drivers\fastfat.sys
13:31:05.0577 1796 fastfat - ok
13:31:05.0640 1796 Fax (f7ea23cc5e6bf2181f3f399d54f6efc1) C:\Windows\system32\fxssvc.exe
13:31:05.0640 1796 Fax - ok
13:31:05.0686 1796 fdc (e817a017f82df2a1f8cfdbda29388b29) C:\Windows\system32\DRIVERS\fdc.sys
13:31:05.0686 1796 fdc - ok
13:31:05.0702 1796 fdPHost (f3222c893bd2f5821a0179e5c71e88fb) C:\Windows\system32\fdPHost.dll
13:31:05.0702 1796 fdPHost - ok
13:31:05.0718 1796 FDResPub (7dbe8cbfe79efbdeb98c9fb08d3a9a5b) C:\Windows\system32\fdrespub.dll
13:31:05.0718 1796 FDResPub - ok
13:31:05.0733 1796 FileInfo (6cf00369c97f3cf563be99be983d13d8) C:\Windows\system32\drivers\fileinfo.sys
13:31:05.0733 1796 FileInfo - ok
13:31:05.0733 1796 Filetrace (42c51dc94c91da21cb9196eb64c45db9) C:\Windows\system32\drivers\filetrace.sys
13:31:05.0733 1796 Filetrace - ok
13:31:05.0764 1796 flpydisk (87907aa70cb3c56600f1c2fb8841579b) C:\Windows\system32\DRIVERS\flpydisk.sys
13:31:05.0764 1796 flpydisk - ok
13:31:05.0796 1796 FltMgr (7520ec808e0c35e0ee6f841294316653) C:\Windows\system32\drivers\fltmgr.sys
13:31:05.0796 1796 FltMgr - ok
13:31:05.0874 1796 FontCache (7fe4995528a7529a761875151ee3d512) C:\Windows\system32\FntCache.dll
13:31:05.0874 1796 FontCache - ok
13:31:05.0983 1796 FontCache3.0.0.0 (e56f39f6b7fda0ac77a79b0fd3de1a2f) C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
13:31:05.0983 1796 FontCache3.0.0.0 - ok
13:31:06.0014 1796 FsDepends (1a16b57943853e598cff37fe2b8cbf1d) C:\Windows\system32\drivers\FsDepends.sys
13:31:06.0014 1796 FsDepends - ok
13:31:06.0030 1796 Fs_Rec (500a9814fd9446a8126858a5a7f7d273) C:\Windows\system32\drivers\Fs_Rec.sys
13:31:06.0030 1796 Fs_Rec - ok
13:31:06.0076 1796 fvevol (dafbd9fe39197495aed6d51f3b85b5d2) C:\Windows\system32\DRIVERS\fvevol.sys
13:31:06.0076 1796 fvevol - ok
13:31:06.0108 1796 gagp30kx (65ee0c7a58b65e74ae05637418153938) C:\Windows\system32\DRIVERS\gagp30kx.sys
13:31:06.0108 1796 gagp30kx - ok
13:31:06.0170 1796 gpsvc (8ba3c04702bf8f927ab36ae8313ca4ee) C:\Windows\System32\gpsvc.dll
13:31:06.0170 1796 gpsvc - ok
13:31:06.0201 1796 hcw85cir (c44e3c2bab6837db337ddee7544736db) C:\Windows\system32\drivers\hcw85cir.sys
13:31:06.0201 1796 hcw85cir - ok
13:31:06.0248 1796 HdAudAddService (3530cad25deba7dc7de8bb51632cbc5f) C:\Windows\system32\drivers\HdAudio.sys
13:31:06.0264 1796 HdAudAddService - ok
13:31:06.0435 1796 HDAudBus (717a2207fd6f13ad3e664c7d5a43c7bf) C:\Windows\system32\DRIVERS\HDAudBus.sys
13:31:06.0435 1796 HDAudBus - ok
13:31:06.0466 1796 HidBatt (1d58a7f3e11a9731d0eaaaa8405acc36) C:\Windows\system32\DRIVERS\HidBatt.sys
13:31:06.0466 1796 HidBatt - ok
13:31:06.0482 1796 HidBth (89448f40e6df260c206a193a4683ba78) C:\Windows\system32\DRIVERS\hidbth.sys
13:31:06.0482 1796 HidBth - ok
13:31:06.0513 1796 HidIr (cf50b4cf4a4f229b9f3c08351f99ca5e) C:\Windows\system32\DRIVERS\hidir.sys
13:31:06.0513 1796 HidIr - ok
13:31:06.0560 1796 hidserv (2bc6f6a1992b3a77f5f41432ca6b3b6b) C:\Windows\system32\hidserv.dll
13:31:06.0560 1796 hidserv - ok
13:31:06.0591 1796 HidUsb (25072fb35ac90b25f9e4e3bacf774102) C:\Windows\system32\DRIVERS\hidusb.sys
13:31:06.0591 1796 HidUsb - ok
13:31:06.0622 1796 hkmsvc (741c2a45ca8407e374aaba3e330b7872) C:\Windows\system32\kmsvc.dll
13:31:06.0638 1796 hkmsvc - ok
13:31:06.0654 1796 HomeGroupListener (a768ca158bb06782a2835b907f4873c3) C:\Windows\system32\ListSvc.dll
13:31:06.0654 1796 HomeGroupListener - ok
13:31:06.0700 1796 HomeGroupProvider (fb08dec5ef43d0c66d83b8e9694e7549) C:\Windows\system32\provsvc.dll
13:31:06.0700 1796 HomeGroupProvider - ok
13:31:06.0747 1796 HpSAMD (295fdc419039090eb8b49ffdbb374549) C:\Windows\system32\DRIVERS\HpSAMD.sys
13:31:06.0747 1796 HpSAMD - ok
13:31:06.0794 1796 HTTP (c531c7fd9e8b62021112787c4e2c5a5a) C:\Windows\system32\drivers\HTTP.sys
13:31:06.0794 1796 HTTP - ok
13:31:06.0872 1796 hwpolicy (8305f33cde89ad6c7a0763ed0b5a8d42) C:\Windows\system32\drivers\hwpolicy.sys
13:31:06.0872 1796 hwpolicy - ok
13:31:06.0888 1796 i8042prt (f151f0bdc47f4a28b1b20a0818ea36d6) C:\Windows\system32\DRIVERS\i8042prt.sys
13:31:06.0888 1796 i8042prt - ok
13:31:06.0966 1796 iaStorV (71f1a494fedf4b33c02c4a6a28d6d9e9) C:\Windows\system32\drivers\iaStorV.sys
13:31:06.0966 1796 iaStorV - ok
13:31:07.0106 1796 idsvc (5af815eb5bc9802e5a064e2ba62bfc0c) C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
13:31:07.0122 1796 idsvc - ok
13:31:07.0590 1796 igfx (dce0b53570703cce580d066f89ef58cd) C:\Windows\system32\DRIVERS\igdkmd32.sys
13:31:07.0636 1796 igfx - ok
13:31:07.0746 1796 iirsp (4173ff5708f3236cf25195fecd742915) C:\Windows\system32\DRIVERS\iirsp.sys
13:31:07.0746 1796 iirsp - ok
13:31:07.0808 1796 IKEEXT (fac0ee6562b121b1399d6e855583f7a5) C:\Windows\System32\ikeext.dll
13:31:07.0824 1796 IKEEXT - ok
13:31:07.0839 1796 intelide (a0f12f2c9ba6c72f3987ce780e77c130) C:\Windows\system32\DRIVERS\intelide.sys
13:31:07.0839 1796 intelide - ok
13:31:07.0870 1796 intelppm (3b514d27bfc4accb4037bc6685f766e0) C:\Windows\system32\DRIVERS\intelppm.sys
13:31:07.0870 1796 intelppm - ok
13:31:07.0886 1796 IPBusEnum (acb364b9075a45c0736e5c47be5cae19) C:\Windows\system32\ipbusenum.dll
13:31:07.0886 1796 IPBusEnum - ok
13:31:07.0902 1796 IpFilterDriver (709d1761d3b19a932ff0238ea6d50200) C:\Windows\system32\DRIVERS\ipfltdrv.sys
13:31:07.0902 1796 IpFilterDriver - ok
13:31:07.0917 1796 IPMIDRV (e4454b6c37d7ffd5649611f6496308a7) C:\Windows\system32\DRIVERS\IPMIDrv.sys
13:31:07.0917 1796 IPMIDRV - ok
13:31:07.0948 1796 IPNAT (a5fa468d67abcdaa36264e463a7bb0cd) C:\Windows\system32\drivers\ipnat.sys
13:31:07.0948 1796 IPNAT - ok
13:31:07.0964 1796 IRENUM (42996cff20a3084a56017b7902307e9f) C:\Windows\system32\drivers\irenum.sys
13:31:07.0964 1796 IRENUM - ok
13:31:07.0995 1796 isapnp (1f32bb6b38f62f7df1a7ab7292638a35) C:\Windows\system32\DRIVERS\isapnp.sys
13:31:07.0995 1796 isapnp - ok
13:31:08.0011 1796 iScsiPrt (ed46c223ae46c6866ab77cdc41c404b7) C:\Windows\system32\DRIVERS\msiscsi.sys
13:31:08.0026 1796 iScsiPrt - ok
13:31:08.0042 1796 kbdclass (adef52ca1aeae82b50df86b56413107e) C:\Windows\system32\DRIVERS\kbdclass.sys
13:31:08.0042 1796 kbdclass - ok
13:31:08.0073 1796 kbdhid (3d9f0ebf350edcfd6498057301455964) C:\Windows\system32\DRIVERS\kbdhid.sys
13:31:08.0073 1796 kbdhid - ok
13:31:08.0104 1796 KeyIso (c2243ff9e9aad0c30e8b1a0914da15b6) C:\Windows\system32\lsass.exe
13:31:08.0104 1796 KeyIso - ok
13:31:08.0136 1796 KSecDD (0263364acb9c834ace52fb85c2c064ec) C:\Windows\system32\Drivers\ksecdd.sys
13:31:08.0136 1796 KSecDD - ok
13:30:54.0798 1224 TDSS rootkit removing tool 2.7.43.0 Jun 29 2012 17:54:22
13:30:56.0217 1224 ============================================================
13:30:56.0217 1224 Current date / time: 2012/06/30 13:30:56.0217
13:30:56.0217 1224 SystemInfo:
13:30:56.0217 1224
13:30:56.0217 1224 OS Version: 6.1.7600 ServicePack: 0.0
13:30:56.0217 1224 Product type: Workstation
13:30:56.0217 1224 ComputerName: TOMÁŠ-PC
13:30:56.0217 1224 UserName: Tomáš
13:30:56.0217 1224 Windows directory: C:\Windows
13:30:56.0217 1224 System windows directory: C:\Windows
13:30:56.0217 1224 Processor architecture: Intel x86
13:30:56.0217 1224 Number of processors: 2
13:30:56.0217 1224 Page size: 0x1000
13:30:56.0217 1224 Boot type: Safe boot with network
13:30:56.0217 1224 ============================================================
13:30:57.0231 1224 Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
13:30:57.0247 1224 ============================================================
13:30:57.0247 1224 \Device\Harddisk0\DR0:
13:30:57.0247 1224 MBR partitions:
13:30:57.0247 1224 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x7530462
13:30:57.0262 1224 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x75304E0, BlocksNum 0x7530462
13:30:57.0278 1224 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x1083109B, BlocksNum 0x14BF8765
13:30:57.0294 1224 ============================================================
13:30:57.0325 1224 C: <-> \Device\Harddisk0\DR0\Partition0
13:30:57.0356 1224 D: <-> \Device\Harddisk0\DR0\Partition1
13:30:57.0387 1224 E: <-> \Device\Harddisk0\DR0\Partition2
13:30:57.0387 1224 ============================================================
13:30:57.0387 1224 Initialize success
13:30:57.0387 1224 ============================================================
13:31:00.0382 1796 ============================================================
13:31:00.0382 1796 Scan started
13:31:00.0382 1796 Mode: Manual;
13:31:00.0382 1796 ============================================================
13:31:01.0365 1796 1394ohci (6d2aca41739bfe8cb86ee8e85f29697d) C:\Windows\system32\DRIVERS\1394ohci.sys
13:31:01.0365 1796 1394ohci - ok
13:31:01.0396 1796 ACPI (f0e07d144c8685b8774bc32fc8da4df0) C:\Windows\system32\DRIVERS\ACPI.sys
13:31:01.0412 1796 ACPI - ok
13:31:01.0428 1796 AcpiPmi (98d81ca942d19f7d9153b095162ac013) C:\Windows\system32\DRIVERS\acpipmi.sys
13:31:01.0428 1796 AcpiPmi - ok
13:31:01.0537 1796 AdobeARMservice (62b7936f9036dd6ed36e6a7efa805dc0) C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
13:31:01.0537 1796 AdobeARMservice - ok
13:31:01.0630 1796 AdobeFlashPlayerUpdateSvc (990dc6edc9f933194d7cd4e65146bc94) C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
13:31:01.0630 1796 AdobeFlashPlayerUpdateSvc - ok
13:31:01.0708 1796 adp94xx (21e785ebd7dc90a06391141aac7892fb) C:\Windows\system32\DRIVERS\adp94xx.sys
13:31:01.0708 1796 adp94xx - ok
13:31:01.0724 1796 adpahci (0c676bc278d5b59ff5abd57bbe9123f2) C:\Windows\system32\DRIVERS\adpahci.sys
13:31:01.0724 1796 adpahci - ok
13:31:01.0755 1796 adpu320 (7c7b5ee4b7b822ec85321fe23a27db33) C:\Windows\system32\DRIVERS\adpu320.sys
13:31:01.0755 1796 adpu320 - ok
13:31:01.0786 1796 AeLookupSvc (8b5eefeec1e6d1a72a06c526628ad161) C:\Windows\System32\aelupsvc.dll
13:31:01.0786 1796 AeLookupSvc - ok
13:31:01.0849 1796 AFD (0db7a48388d54d154ebec120461a0fcd) C:\Windows\system32\drivers\afd.sys
13:31:01.0849 1796 AFD - ok
13:31:01.0880 1796 agp440 (507812c3054c21cef746b6ee3d04dd6e) C:\Windows\system32\DRIVERS\agp440.sys
13:31:01.0880 1796 agp440 - ok
13:31:01.0927 1796 aic78xx (8b30250d573a8f6b4bd23195160d8707) C:\Windows\system32\DRIVERS\djsvs.sys
13:31:01.0927 1796 aic78xx - ok
13:31:01.0974 1796 ALG (18a54e132947cd98fea9accc57f98f13) C:\Windows\System32\alg.exe
13:31:01.0974 1796 ALG - ok
13:31:02.0005 1796 aliide (0d40bcf52ea90fc7df2aeab6503dea44) C:\Windows\system32\DRIVERS\aliide.sys
13:31:02.0005 1796 aliide - ok
13:31:02.0020 1796 amdagp (3c6600a0696e90a463771c7422e23ab5) C:\Windows\system32\DRIVERS\amdagp.sys
13:31:02.0020 1796 amdagp - ok
13:31:02.0036 1796 amdide (cd5914170297126b6266860198d1d4f0) C:\Windows\system32\DRIVERS\amdide.sys
13:31:02.0036 1796 amdide - ok
13:31:02.0067 1796 AmdK8 (00dda200d71bac534bf56a9db5dfd666) C:\Windows\system32\DRIVERS\amdk8.sys
13:31:02.0067 1796 AmdK8 - ok
13:31:02.0083 1796 AmdPPM (3cbf30f5370fda40dd3e87df38ea53b6) C:\Windows\system32\DRIVERS\amdppm.sys
13:31:02.0083 1796 AmdPPM - ok
13:31:02.0114 1796 amdsata (19ce906b4cdc11fc4fef5745f33a63b6) C:\Windows\system32\drivers\amdsata.sys
13:31:02.0114 1796 amdsata - ok
13:31:02.0130 1796 amdsbs (ea43af0c423ff267355f74e7a53bdaba) C:\Windows\system32\DRIVERS\amdsbs.sys
13:31:02.0130 1796 amdsbs - ok
13:31:02.0145 1796 amdxata (869e67d66be326a5a9159fba8746fa70) C:\Windows\system32\drivers\amdxata.sys
13:31:02.0145 1796 amdxata - ok
13:31:02.0239 1796 AntiVirSchedulerService (0a1cc583e8147004e4ad4625d7fbf88c) C:\Program Files\Avira\AntiVir Desktop\sched.exe
13:31:02.0239 1796 AntiVirSchedulerService - ok
13:31:02.0270 1796 AntiVirService (c9a36ef935aced86aedf93e97e606911) C:\Program Files\Avira\AntiVir Desktop\avguard.exe
13:31:02.0286 1796 AntiVirService - ok
13:31:02.0317 1796 AppID (feb834c02ce1e84b6a38f953ca067706) C:\Windows\system32\drivers\appid.sys
13:31:02.0317 1796 AppID - ok
13:31:02.0364 1796 AppIDSvc (62a9c86cb6085e20db4823e4e97826f5) C:\Windows\System32\appidsvc.dll
13:31:02.0364 1796 AppIDSvc - ok
13:31:02.0395 1796 Appinfo (7dead9e3f65dcb2794f2711003bbf650) C:\Windows\System32\appinfo.dll
13:31:02.0395 1796 Appinfo - ok
13:31:02.0442 1796 AppMgmt (a45d184df6a8803da13a0b329517a64a) C:\Windows\System32\appmgmts.dll
13:31:02.0442 1796 AppMgmt - ok
13:31:02.0473 1796 arc (2932004f49677bd84dbc72edb754ffb3) C:\Windows\system32\DRIVERS\arc.sys
13:31:02.0473 1796 arc - ok
13:31:02.0473 1796 arcsas (5d6f36c46fd283ae1b57bd2e9feb0bc7) C:\Windows\system32\DRIVERS\arcsas.sys
13:31:02.0473 1796 arcsas - ok
13:31:02.0613 1796 aspnet_state (776acefa0ca9df0faa51a5fb2f435705) C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
13:31:02.0613 1796 aspnet_state - ok
13:31:02.0660 1796 AsyncMac (add2ade1c2b285ab8378d2daaf991481) C:\Windows\system32\DRIVERS\asyncmac.sys
13:31:02.0660 1796 AsyncMac - ok
13:31:02.0676 1796 atapi (338c86357871c167a96ab976519bf59e) C:\Windows\system32\DRIVERS\atapi.sys
13:31:02.0676 1796 atapi - ok
13:31:02.0738 1796 athr (76bab0c824e2d05b940c4dd40a9b08bf) C:\Windows\system32\DRIVERS\athr.sys
13:31:02.0754 1796 athr - ok
13:31:02.0816 1796 AudioEndpointBuilder (510c873bfa135aa829f4180352772734) C:\Windows\System32\Audiosrv.dll
13:31:02.0816 1796 AudioEndpointBuilder - ok
13:31:02.0832 1796 Audiosrv (510c873bfa135aa829f4180352772734) C:\Windows\System32\Audiosrv.dll
13:31:02.0832 1796 Audiosrv - ok
13:31:02.0894 1796 avgntflt (d5541f0afb767e85fc412fc609d96a74) C:\Windows\system32\DRIVERS\avgntflt.sys
13:31:02.0894 1796 avgntflt - ok
13:31:02.0925 1796 avipbb (7d967a682d4694df7fa57d63a2db01fe) C:\Windows\system32\DRIVERS\avipbb.sys
13:31:02.0925 1796 avipbb - ok
13:31:02.0941 1796 avkmgr (271cfd1a989209b1964e24d969552bf7) C:\Windows\system32\DRIVERS\avkmgr.sys
13:31:02.0941 1796 avkmgr - ok
13:31:02.0972 1796 AxInstSV (dd6a431b43e34b91a767d1ce33728175) C:\Windows\System32\AxInstSV.dll
13:31:02.0972 1796 AxInstSV - ok
13:31:03.0050 1796 b06bdrv (1a231abec60fd316ec54c66715543cec) C:\Windows\system32\DRIVERS\bxvbdx.sys
13:31:03.0050 1796 b06bdrv - ok
13:31:03.0097 1796 b57nd60x (bd8869eb9cde6bbe4508d869929869ee) C:\Windows\system32\DRIVERS\b57nd60x.sys
13:31:03.0097 1796 b57nd60x - ok
13:31:03.0159 1796 BDESVC (ee1e9c3bb8228ae423dd38db69128e71) C:\Windows\System32\bdesvc.dll
13:31:03.0159 1796 BDESVC - ok
13:31:03.0175 1796 Beep (505506526a9d467307b3c393dedaf858) C:\Windows\system32\drivers\Beep.sys
13:31:03.0175 1796 Beep - ok
13:31:03.0237 1796 BITS (53f476476f55a27f580661bde09c4ec4) C:\Windows\System32\qmgr.dll
13:31:03.0253 1796 BITS - ok
13:31:03.0268 1796 blbdrive (2287078ed48fcfc477b05b20cf38f36f) C:\Windows\system32\DRIVERS\blbdrive.sys
13:31:03.0268 1796 blbdrive - ok
13:31:03.0315 1796 bowser (9a5c671b7fbae4865149bb11f59b91b2) C:\Windows\system32\DRIVERS\bowser.sys
13:31:03.0315 1796 bowser - ok
13:31:03.0331 1796 BrFiltLo (9f9acc7f7ccde8a15c282d3f88b43309) C:\Windows\system32\DRIVERS\BrFiltLo.sys
13:31:03.0331 1796 BrFiltLo - ok
13:31:03.0346 1796 BrFiltUp (56801ad62213a41f6497f96dee83755a) C:\Windows\system32\DRIVERS\BrFiltUp.sys
13:31:03.0346 1796 BrFiltUp - ok
13:31:03.0378 1796 Browser (598e1280e7ff3744f4b8329366cc5635) C:\Windows\System32\browser.dll
13:31:03.0378 1796 Browser - ok
13:31:03.0424 1796 Brserid (845b8ce732e67f3b4133164868c666ea) C:\Windows\System32\Drivers\Brserid.sys
13:31:03.0424 1796 Brserid - ok
13:31:03.0440 1796 BrSerWdm (203f0b1e73adadbbb7b7b1fabd901f6b) C:\Windows\System32\Drivers\BrSerWdm.sys
13:31:03.0440 1796 BrSerWdm - ok
13:31:03.0456 1796 BrUsbMdm (bd456606156ba17e60a04e18016ae54b) C:\Windows\System32\Drivers\BrUsbMdm.sys
13:31:03.0456 1796 BrUsbMdm - ok
13:31:03.0471 1796 BrUsbSer (af72ed54503f717a43268b3cc5faec2e) C:\Windows\System32\Drivers\BrUsbSer.sys
13:31:03.0471 1796 BrUsbSer - ok
13:31:03.0487 1796 BTHMODEM (ed3df7c56ce0084eb2034432fc56565a) C:\Windows\system32\DRIVERS\bthmodem.sys
13:31:03.0487 1796 BTHMODEM - ok
13:31:03.0534 1796 bthserv (1df19c96eef6c29d1c3e1a8678e07190) C:\Windows\system32\bthserv.dll
13:31:03.0534 1796 bthserv - ok
13:31:03.0565 1796 cdfs (77ea11b065e0a8ab902d78145ca51e10) C:\Windows\system32\DRIVERS\cdfs.sys
13:31:03.0565 1796 cdfs - ok
13:31:03.0612 1796 cdrom (ba6e70aa0e6091bc39de29477d866a77) C:\Windows\system32\DRIVERS\cdrom.sys
13:31:03.0612 1796 cdrom - ok
13:31:03.0643 1796 CertPropSvc (628a9e30ec5e18dd5de6be4dbdc12198) C:\Windows\System32\certprop.dll
13:31:03.0658 1796 CertPropSvc - ok
13:31:03.0705 1796 circlass (3fe3fe94a34df6fb06e6418d0f6a0060) C:\Windows\system32\DRIVERS\circlass.sys
13:31:03.0705 1796 circlass - ok
13:31:03.0721 1796 CLFS (635181e0e9bbf16871bf5380d71db02d) C:\Windows\system32\CLFS.sys
13:31:03.0736 1796 CLFS - ok
13:31:03.0814 1796 clr_optimization_v2.0.50727_32 (d88040f816fda31c3b466f0fa0918f29) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
13:31:03.0814 1796 clr_optimization_v2.0.50727_32 - ok
13:31:03.0892 1796 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
13:31:03.0892 1796 clr_optimization_v4.0.30319_32 - ok
13:31:03.0924 1796 CmBatt (dea805815e587dad1dd2c502220b5616) C:\Windows\system32\DRIVERS\CmBatt.sys
13:31:03.0924 1796 CmBatt - ok
13:31:03.0939 1796 cmdide (c537b1db64d495b9b4717b4d6d9edbf2) C:\Windows\system32\DRIVERS\cmdide.sys
13:31:03.0939 1796 cmdide - ok
13:31:03.0986 1796 CNG (36c252e474b2ffa0f0fbbff20d92a640) C:\Windows\system32\Drivers\cng.sys
13:31:03.0986 1796 CNG - ok
13:31:04.0017 1796 Compbatt (a6023d3823c37043986713f118a89bee) C:\Windows\system32\DRIVERS\compbatt.sys
13:31:04.0017 1796 Compbatt - ok
13:31:04.0048 1796 CompositeBus (f1724ba27e97d627f808fb0ba77a28a6) C:\Windows\system32\DRIVERS\CompositeBus.sys
13:31:04.0048 1796 CompositeBus - ok
13:31:04.0064 1796 COMSysApp - ok
13:31:04.0080 1796 crcdisk (2c4ebcfc84a9b44f209dff6c6e6c61d1) C:\Windows\system32\DRIVERS\crcdisk.sys
13:31:04.0080 1796 crcdisk - ok
13:31:04.0126 1796 CryptSvc (520a108a2657f4bca7fced9ca7d885de) C:\Windows\system32\cryptsvc.dll
13:31:04.0126 1796 CryptSvc - ok
13:31:04.0173 1796 CSC (27c9490bdd0ae48911ab8cf1932591ed) C:\Windows\system32\drivers\csc.sys
13:31:04.0173 1796 CSC - ok
13:31:04.0220 1796 CscService (56fb5f222ea30d3d3fc459879772cb73) C:\Windows\System32\cscsvc.dll
13:31:04.0236 1796 CscService - ok
13:31:04.0298 1796 DcomLaunch (b82cd39e336973359d7c9bf911e8e84f) C:\Windows\system32\rpcss.dll
13:31:04.0298 1796 DcomLaunch - ok
13:31:04.0345 1796 defragsvc (8d6e10a2d9a5eed59562d9b82cf804e1) C:\Windows\System32\defragsvc.dll
13:31:04.0345 1796 defragsvc - ok
13:31:04.0407 1796 DfsC (83d1ecea8faae75604c0fa49ac7ad996) C:\Windows\system32\Drivers\dfsc.sys
13:31:04.0407 1796 DfsC - ok
13:31:04.0454 1796 Dhcp (c56495fbd770712367cad35e5de72da6) C:\Windows\system32\dhcpcore.dll
13:31:04.0454 1796 Dhcp - ok
13:31:04.0501 1796 discache (1a050b0274bfb3890703d490f330c0da) C:\Windows\system32\drivers\discache.sys
13:31:04.0501 1796 discache - ok
13:31:04.0532 1796 Disk (565003f326f99802e68ca78f2a68e9ff) C:\Windows\system32\DRIVERS\disk.sys
13:31:04.0532 1796 Disk - ok
13:31:04.0579 1796 Dnscache (b15be77a2bacf9c3177d27518afe26a9) C:\Windows\System32\dnsrslvr.dll
13:31:04.0579 1796 Dnscache - ok
13:31:04.0610 1796 dot3svc (4408c85c21eea48eb0ce486baeef0502) C:\Windows\System32\dot3svc.dll
13:31:04.0610 1796 dot3svc - ok
13:31:04.0641 1796 DPS (7fa81c6e11caa594adb52084da73a1e5) C:\Windows\system32\dps.dll
13:31:04.0641 1796 DPS - ok
13:31:04.0688 1796 drmkaud (b918e7c5f9bf77202f89e1a9539f2eb4) C:\Windows\system32\drivers\drmkaud.sys
13:31:04.0688 1796 drmkaud - ok
13:31:04.0735 1796 dtsoftbus01 (687af6bb383885ff6a64071b189a7f3e) C:\Windows\system32\DRIVERS\dtsoftbus01.sys
13:31:04.0750 1796 dtsoftbus01 - ok
13:31:04.0813 1796 DXGKrnl (1679a4669326cb1a67cc95658d273234) C:\Windows\System32\drivers\dxgkrnl.sys
13:31:04.0813 1796 DXGKrnl - ok
13:31:04.0860 1796 EapHost (8600142fa91c1b96367d3300ad0f3f3a) C:\Windows\System32\eapsvc.dll
13:31:04.0860 1796 EapHost - ok
13:31:05.0031 1796 ebdrv (024e1b5cac09731e4d868e64dbfb4ab0) C:\Windows\system32\DRIVERS\evbdx.sys
13:31:05.0047 1796 ebdrv - ok
13:31:05.0172 1796 EFS (c2243ff9e9aad0c30e8b1a0914da15b6) C:\Windows\System32\lsass.exe
13:31:05.0172 1796 EFS - ok
13:31:05.0312 1796 ehRecvr (1697c39978cd69f6fbc15302edcece1f) C:\Windows\ehome\ehRecvr.exe
13:31:05.0312 1796 ehRecvr - ok
13:31:05.0359 1796 ehSched (d389bff34f80caede417bf9d1507996a) C:\Windows\ehome\ehsched.exe
13:31:05.0359 1796 ehSched - ok
13:31:05.0437 1796 elxstor (0ed67910c8c326796faa00b2bf6d9d3c) C:\Windows\system32\DRIVERS\elxstor.sys
13:31:05.0437 1796 elxstor - ok
13:31:05.0452 1796 ErrDev (8fc3208352dd3912c94367a206ab3f11) C:\Windows\system32\DRIVERS\errdev.sys
13:31:05.0452 1796 ErrDev - ok
13:31:05.0530 1796 EventSystem (f6916efc29d9953d5d0df06882ae8e16) C:\Windows\system32\es.dll
13:31:05.0546 1796 EventSystem - ok
13:31:05.0562 1796 exfat (2dc9108d74081149cc8b651d3a26207f) C:\Windows\system32\drivers\exfat.sys
13:31:05.0562 1796 exfat - ok
13:31:05.0577 1796 fastfat (7e0ab74553476622fb6ae36f73d97d35) C:\Windows\system32\drivers\fastfat.sys
13:31:05.0577 1796 fastfat - ok
13:31:05.0640 1796 Fax (f7ea23cc5e6bf2181f3f399d54f6efc1) C:\Windows\system32\fxssvc.exe
13:31:05.0640 1796 Fax - ok
13:31:05.0686 1796 fdc (e817a017f82df2a1f8cfdbda29388b29) C:\Windows\system32\DRIVERS\fdc.sys
13:31:05.0686 1796 fdc - ok
13:31:05.0702 1796 fdPHost (f3222c893bd2f5821a0179e5c71e88fb) C:\Windows\system32\fdPHost.dll
13:31:05.0702 1796 fdPHost - ok
13:31:05.0718 1796 FDResPub (7dbe8cbfe79efbdeb98c9fb08d3a9a5b) C:\Windows\system32\fdrespub.dll
13:31:05.0718 1796 FDResPub - ok
13:31:05.0733 1796 FileInfo (6cf00369c97f3cf563be99be983d13d8) C:\Windows\system32\drivers\fileinfo.sys
13:31:05.0733 1796 FileInfo - ok
13:31:05.0733 1796 Filetrace (42c51dc94c91da21cb9196eb64c45db9) C:\Windows\system32\drivers\filetrace.sys
13:31:05.0733 1796 Filetrace - ok
13:31:05.0764 1796 flpydisk (87907aa70cb3c56600f1c2fb8841579b) C:\Windows\system32\DRIVERS\flpydisk.sys
13:31:05.0764 1796 flpydisk - ok
13:31:05.0796 1796 FltMgr (7520ec808e0c35e0ee6f841294316653) C:\Windows\system32\drivers\fltmgr.sys
13:31:05.0796 1796 FltMgr - ok
13:31:05.0874 1796 FontCache (7fe4995528a7529a761875151ee3d512) C:\Windows\system32\FntCache.dll
13:31:05.0874 1796 FontCache - ok
13:31:05.0983 1796 FontCache3.0.0.0 (e56f39f6b7fda0ac77a79b0fd3de1a2f) C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
13:31:05.0983 1796 FontCache3.0.0.0 - ok
13:31:06.0014 1796 FsDepends (1a16b57943853e598cff37fe2b8cbf1d) C:\Windows\system32\drivers\FsDepends.sys
13:31:06.0014 1796 FsDepends - ok
13:31:06.0030 1796 Fs_Rec (500a9814fd9446a8126858a5a7f7d273) C:\Windows\system32\drivers\Fs_Rec.sys
13:31:06.0030 1796 Fs_Rec - ok
13:31:06.0076 1796 fvevol (dafbd9fe39197495aed6d51f3b85b5d2) C:\Windows\system32\DRIVERS\fvevol.sys
13:31:06.0076 1796 fvevol - ok
13:31:06.0108 1796 gagp30kx (65ee0c7a58b65e74ae05637418153938) C:\Windows\system32\DRIVERS\gagp30kx.sys
13:31:06.0108 1796 gagp30kx - ok
13:31:06.0170 1796 gpsvc (8ba3c04702bf8f927ab36ae8313ca4ee) C:\Windows\System32\gpsvc.dll
13:31:06.0170 1796 gpsvc - ok
13:31:06.0201 1796 hcw85cir (c44e3c2bab6837db337ddee7544736db) C:\Windows\system32\drivers\hcw85cir.sys
13:31:06.0201 1796 hcw85cir - ok
13:31:06.0248 1796 HdAudAddService (3530cad25deba7dc7de8bb51632cbc5f) C:\Windows\system32\drivers\HdAudio.sys
13:31:06.0264 1796 HdAudAddService - ok
13:31:06.0435 1796 HDAudBus (717a2207fd6f13ad3e664c7d5a43c7bf) C:\Windows\system32\DRIVERS\HDAudBus.sys
13:31:06.0435 1796 HDAudBus - ok
13:31:06.0466 1796 HidBatt (1d58a7f3e11a9731d0eaaaa8405acc36) C:\Windows\system32\DRIVERS\HidBatt.sys
13:31:06.0466 1796 HidBatt - ok
13:31:06.0482 1796 HidBth (89448f40e6df260c206a193a4683ba78) C:\Windows\system32\DRIVERS\hidbth.sys
13:31:06.0482 1796 HidBth - ok
13:31:06.0513 1796 HidIr (cf50b4cf4a4f229b9f3c08351f99ca5e) C:\Windows\system32\DRIVERS\hidir.sys
13:31:06.0513 1796 HidIr - ok
13:31:06.0560 1796 hidserv (2bc6f6a1992b3a77f5f41432ca6b3b6b) C:\Windows\system32\hidserv.dll
13:31:06.0560 1796 hidserv - ok
13:31:06.0591 1796 HidUsb (25072fb35ac90b25f9e4e3bacf774102) C:\Windows\system32\DRIVERS\hidusb.sys
13:31:06.0591 1796 HidUsb - ok
13:31:06.0622 1796 hkmsvc (741c2a45ca8407e374aaba3e330b7872) C:\Windows\system32\kmsvc.dll
13:31:06.0638 1796 hkmsvc - ok
13:31:06.0654 1796 HomeGroupListener (a768ca158bb06782a2835b907f4873c3) C:\Windows\system32\ListSvc.dll
13:31:06.0654 1796 HomeGroupListener - ok
13:31:06.0700 1796 HomeGroupProvider (fb08dec5ef43d0c66d83b8e9694e7549) C:\Windows\system32\provsvc.dll
13:31:06.0700 1796 HomeGroupProvider - ok
13:31:06.0747 1796 HpSAMD (295fdc419039090eb8b49ffdbb374549) C:\Windows\system32\DRIVERS\HpSAMD.sys
13:31:06.0747 1796 HpSAMD - ok
13:31:06.0794 1796 HTTP (c531c7fd9e8b62021112787c4e2c5a5a) C:\Windows\system32\drivers\HTTP.sys
13:31:06.0794 1796 HTTP - ok
13:31:06.0872 1796 hwpolicy (8305f33cde89ad6c7a0763ed0b5a8d42) C:\Windows\system32\drivers\hwpolicy.sys
13:31:06.0872 1796 hwpolicy - ok
13:31:06.0888 1796 i8042prt (f151f0bdc47f4a28b1b20a0818ea36d6) C:\Windows\system32\DRIVERS\i8042prt.sys
13:31:06.0888 1796 i8042prt - ok
13:31:06.0966 1796 iaStorV (71f1a494fedf4b33c02c4a6a28d6d9e9) C:\Windows\system32\drivers\iaStorV.sys
13:31:06.0966 1796 iaStorV - ok
13:31:07.0106 1796 idsvc (5af815eb5bc9802e5a064e2ba62bfc0c) C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
13:31:07.0122 1796 idsvc - ok
13:31:07.0590 1796 igfx (dce0b53570703cce580d066f89ef58cd) C:\Windows\system32\DRIVERS\igdkmd32.sys
13:31:07.0636 1796 igfx - ok
13:31:07.0746 1796 iirsp (4173ff5708f3236cf25195fecd742915) C:\Windows\system32\DRIVERS\iirsp.sys
13:31:07.0746 1796 iirsp - ok
13:31:07.0808 1796 IKEEXT (fac0ee6562b121b1399d6e855583f7a5) C:\Windows\System32\ikeext.dll
13:31:07.0824 1796 IKEEXT - ok
13:31:07.0839 1796 intelide (a0f12f2c9ba6c72f3987ce780e77c130) C:\Windows\system32\DRIVERS\intelide.sys
13:31:07.0839 1796 intelide - ok
13:31:07.0870 1796 intelppm (3b514d27bfc4accb4037bc6685f766e0) C:\Windows\system32\DRIVERS\intelppm.sys
13:31:07.0870 1796 intelppm - ok
13:31:07.0886 1796 IPBusEnum (acb364b9075a45c0736e5c47be5cae19) C:\Windows\system32\ipbusenum.dll
13:31:07.0886 1796 IPBusEnum - ok
13:31:07.0902 1796 IpFilterDriver (709d1761d3b19a932ff0238ea6d50200) C:\Windows\system32\DRIVERS\ipfltdrv.sys
13:31:07.0902 1796 IpFilterDriver - ok
13:31:07.0917 1796 IPMIDRV (e4454b6c37d7ffd5649611f6496308a7) C:\Windows\system32\DRIVERS\IPMIDrv.sys
13:31:07.0917 1796 IPMIDRV - ok
13:31:07.0948 1796 IPNAT (a5fa468d67abcdaa36264e463a7bb0cd) C:\Windows\system32\drivers\ipnat.sys
13:31:07.0948 1796 IPNAT - ok
13:31:07.0964 1796 IRENUM (42996cff20a3084a56017b7902307e9f) C:\Windows\system32\drivers\irenum.sys
13:31:07.0964 1796 IRENUM - ok
13:31:07.0995 1796 isapnp (1f32bb6b38f62f7df1a7ab7292638a35) C:\Windows\system32\DRIVERS\isapnp.sys
13:31:07.0995 1796 isapnp - ok
13:31:08.0011 1796 iScsiPrt (ed46c223ae46c6866ab77cdc41c404b7) C:\Windows\system32\DRIVERS\msiscsi.sys
13:31:08.0026 1796 iScsiPrt - ok
13:31:08.0042 1796 kbdclass (adef52ca1aeae82b50df86b56413107e) C:\Windows\system32\DRIVERS\kbdclass.sys
13:31:08.0042 1796 kbdclass - ok
13:31:08.0073 1796 kbdhid (3d9f0ebf350edcfd6498057301455964) C:\Windows\system32\DRIVERS\kbdhid.sys
13:31:08.0073 1796 kbdhid - ok
13:31:08.0104 1796 KeyIso (c2243ff9e9aad0c30e8b1a0914da15b6) C:\Windows\system32\lsass.exe
13:31:08.0104 1796 KeyIso - ok
13:31:08.0136 1796 KSecDD (0263364acb9c834ace52fb85c2c064ec) C:\Windows\system32\Drivers\ksecdd.sys
13:31:08.0136 1796 KSecDD - ok
Re: Zavirovaný PC
log z TDSSKilleru 2
13:31:08.0151 1796 KSecPkg (27391db553be2a4e2b0adeea2873b2af) C:\Windows\system32\Drivers\ksecpkg.sys
13:31:08.0151 1796 KSecPkg - ok
13:31:08.0198 1796 KtmRm (89a7b9cc98d0d80c6f31b91c0a310fcd) C:\Windows\system32\msdtckrm.dll
13:31:08.0198 1796 KtmRm - ok
13:31:08.0245 1796 L1E (8c804b1ffad1efa952b747e8285c3b76) C:\Windows\system32\DRIVERS\L1E62x86.sys
13:31:08.0245 1796 L1E - ok
13:31:08.0292 1796 LanmanServer (8f6bf790d3168224c16f2af68a84438c) C:\Windows\system32\srvsvc.dll
13:31:08.0292 1796 LanmanServer - ok
13:31:08.0338 1796 LanmanWorkstation (b9891f885dcf1f0513a51cb58493cb1f) C:\Windows\System32\wkssvc.dll
13:31:08.0338 1796 LanmanWorkstation - ok
13:31:08.0385 1796 lltdio (f7611ec07349979da9b0ae1f18ccc7a6) C:\Windows\system32\DRIVERS\lltdio.sys
13:31:08.0385 1796 lltdio - ok
13:31:08.0416 1796 lltdsvc (5700673e13a2117fa3b9020c852c01e2) C:\Windows\System32\lltdsvc.dll
13:31:08.0416 1796 lltdsvc - ok
13:31:08.0448 1796 lmhosts (55ca01ba19d0006c8f2639b6c045e08b) C:\Windows\System32\lmhsvc.dll
13:31:08.0448 1796 lmhosts - ok
13:31:08.0479 1796 LSI_FC (eb119a53ccf2acc000ac71b065b78fef) C:\Windows\system32\DRIVERS\lsi_fc.sys
13:31:08.0479 1796 LSI_FC - ok
13:31:08.0479 1796 LSI_SAS (8ade1c877256a22e49b75d1cc9161f9c) C:\Windows\system32\DRIVERS\lsi_sas.sys
13:31:08.0479 1796 LSI_SAS - ok
13:31:08.0510 1796 LSI_SAS2 (dc9dc3d3daa0e276fd2ec262e38b11e9) C:\Windows\system32\DRIVERS\lsi_sas2.sys
13:31:08.0510 1796 LSI_SAS2 - ok
13:31:08.0526 1796 LSI_SCSI (0a036c7d7cab643a7f07135ac47e0524) C:\Windows\system32\DRIVERS\lsi_scsi.sys
13:31:08.0526 1796 LSI_SCSI - ok
13:31:08.0541 1796 luafv (6703e366cc18d3b6e534f5cf7df39cee) C:\Windows\system32\drivers\luafv.sys
13:31:08.0541 1796 luafv - ok
13:31:08.0572 1796 MBAMProtector (fb097bbc1a18f044bd17bd2fccf97865) C:\Windows\system32\drivers\mbam.sys
13:31:08.0572 1796 MBAMProtector - ok
13:31:08.0650 1796 MBAMService (ba400ed640bca1eae5c727ae17c10207) C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
13:31:08.0666 1796 MBAMService - ok
13:31:08.0697 1796 Mcx2Svc (e2b0887816ed336685954e3d8fdaa51d) C:\Windows\system32\Mcx2Svc.dll
13:31:08.0697 1796 Mcx2Svc - ok
13:31:08.0728 1796 megasas (0fff5b045293002ab38eb1fd1fc2fb74) C:\Windows\system32\DRIVERS\megasas.sys
13:31:08.0728 1796 megasas - ok
13:31:08.0775 1796 MegaSR (dcbab2920c75f390caf1d29f675d03d6) C:\Windows\system32\DRIVERS\MegaSR.sys
13:31:08.0775 1796 MegaSR - ok
13:31:08.0869 1796 Microsoft Office Groove Audit Service (123271bd5237ab991dc5c21fdf8835eb) C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe
13:31:08.0869 1796 Microsoft Office Groove Audit Service - ok
13:31:08.0900 1796 MMCSS (146b6f43a673379a3c670e86d89be5ea) C:\Windows\system32\mmcss.dll
13:31:08.0900 1796 MMCSS - ok
13:31:08.0916 1796 Modem (f001861e5700ee84e2d4e52c712f4964) C:\Windows\system32\drivers\modem.sys
13:31:08.0916 1796 Modem - ok
13:31:08.0978 1796 monitor (79d10964de86b292320e9dfe02282a23) C:\Windows\system32\DRIVERS\monitor.sys
13:31:08.0978 1796 monitor - ok
13:31:09.0009 1796 mouclass (fb18cc1d4c2e716b6b903b0ac0cc0609) C:\Windows\system32\DRIVERS\mouclass.sys
13:31:09.0009 1796 mouclass - ok
13:31:09.0025 1796 mouhid (2c388d2cd01c9042596cf3c8f3c7b24d) C:\Windows\system32\DRIVERS\mouhid.sys
13:31:09.0025 1796 mouhid - ok
13:31:09.0056 1796 mountmgr (921c18727c5920d6c0300736646931c2) C:\Windows\system32\drivers\mountmgr.sys
13:31:09.0056 1796 mountmgr - ok
13:31:09.0072 1796 mpio (2af5997438c55fb79d33d015c30e1974) C:\Windows\system32\DRIVERS\mpio.sys
13:31:09.0072 1796 mpio - ok
13:31:09.0087 1796 mpsdrv (ad2723a7b53dd1aacae6ad8c0bfbf4d0) C:\Windows\system32\drivers\mpsdrv.sys
13:31:09.0087 1796 mpsdrv - ok
13:31:09.0118 1796 MRxDAV (b1be47008d20e43da3adc37c24cdb89d) C:\Windows\system32\drivers\mrxdav.sys
13:31:09.0118 1796 MRxDAV - ok
13:31:09.0165 1796 mrxsmb (ca7570e42522e24324a12161db14ec02) C:\Windows\system32\DRIVERS\mrxsmb.sys
13:31:09.0165 1796 mrxsmb - ok
13:31:09.0196 1796 mrxsmb10 (f965c3ab2b2ae5c378f4562486e35051) C:\Windows\system32\DRIVERS\mrxsmb10.sys
13:31:09.0196 1796 mrxsmb10 - ok
13:31:09.0228 1796 mrxsmb20 (25c38264a3c72594dd21d355d70d7a5d) C:\Windows\system32\DRIVERS\mrxsmb20.sys
13:31:09.0228 1796 mrxsmb20 - ok
13:31:09.0290 1796 msahci (4326d168944123f38dd3b2d9c37a0b12) C:\Windows\system32\DRIVERS\msahci.sys
13:31:09.0290 1796 msahci - ok
13:31:09.0306 1796 msdsm (455029c7174a2dbb03dba8a0d8bddd9a) C:\Windows\system32\DRIVERS\msdsm.sys
13:31:09.0306 1796 msdsm - ok
13:31:09.0337 1796 MSDTC (e1bce74a3bd9902b72599c0192a07e27) C:\Windows\System32\msdtc.exe
13:31:09.0352 1796 MSDTC - ok
13:31:09.0368 1796 Msfs (daefb28e3af5a76abcc2c3078c07327f) C:\Windows\system32\drivers\Msfs.sys
13:31:09.0368 1796 Msfs - ok
13:31:09.0384 1796 mshidkmdf (3e1e5767043c5af9367f0056295e9f84) C:\Windows\System32\drivers\mshidkmdf.sys
13:31:09.0384 1796 mshidkmdf - ok
13:31:09.0399 1796 msisadrv (0a4e5757ae09fa9622e3158cc1aef114) C:\Windows\system32\DRIVERS\msisadrv.sys
13:31:09.0399 1796 msisadrv - ok
13:31:09.0430 1796 MSiSCSI (90f7d9e6b6f27e1a707d4a297f077828) C:\Windows\system32\iscsiexe.dll
13:31:09.0430 1796 MSiSCSI - ok
13:31:09.0430 1796 msiserver - ok
13:31:09.0462 1796 MSKSSRV (8c0860d6366aaffb6c5bb9df9448e631) C:\Windows\system32\drivers\MSKSSRV.sys
13:31:09.0462 1796 MSKSSRV - ok
13:31:09.0462 1796 MSPCLOCK (3ea8b949f963562cedbb549eac0c11ce) C:\Windows\system32\drivers\MSPCLOCK.sys
13:31:09.0462 1796 MSPCLOCK - ok
13:31:09.0477 1796 MSPQM (f456e973590d663b1073e9c463b40932) C:\Windows\system32\drivers\MSPQM.sys
13:31:09.0477 1796 MSPQM - ok
13:31:09.0493 1796 MsRPC (0e008fc4819d238c51d7c93e7b41e560) C:\Windows\system32\drivers\MsRPC.sys
13:31:09.0493 1796 MsRPC - ok
13:31:09.0508 1796 mssmbios (fc6b9ff600cc585ea38b12589bd4e246) C:\Windows\system32\DRIVERS\mssmbios.sys
13:31:09.0508 1796 mssmbios - ok
13:31:09.0524 1796 MSTEE (b42c6b921f61a6e55159b8be6cd54a36) C:\Windows\system32\drivers\MSTEE.sys
13:31:09.0524 1796 MSTEE - ok
13:31:09.0540 1796 MTConfig (33599130f44e1f34631cea241de8ac84) C:\Windows\system32\DRIVERS\MTConfig.sys
13:31:09.0540 1796 MTConfig - ok
13:31:09.0586 1796 MTsensor (97affa9d95ffe20eee6229bc6be166cf) C:\Windows\system32\DRIVERS\ATKACPI.sys
13:31:09.0586 1796 MTsensor - ok
13:31:09.0602 1796 Mup (159fad02f64e6381758c990f753bcc80) C:\Windows\system32\Drivers\mup.sys
13:31:09.0602 1796 Mup - ok
13:31:09.0664 1796 napagent (80284f1985c70c86f0b5f86da2dfe1df) C:\Windows\system32\qagentRT.dll
13:31:09.0664 1796 napagent - ok
13:31:09.0727 1796 NativeWifiP (26384429fcd85d83746f63e798ab1480) C:\Windows\system32\DRIVERS\nwifi.sys
13:31:09.0727 1796 NativeWifiP - ok
13:31:09.0758 1796 nctptm (e6d35f3aa51a65eb35c1f2340154a25e) C:\Windows\system32\drivers\reurj.sys
13:31:09.0758 1796 nctptm - ok
13:31:09.0820 1796 NDIS (23759d175a0a9baaf04d05047bc135a8) C:\Windows\system32\drivers\ndis.sys
13:31:09.0820 1796 NDIS - ok
13:31:09.0867 1796 NdisCap (0e1787aa6c9191d3d319e8bafe86f80c) C:\Windows\system32\DRIVERS\ndiscap.sys
13:31:09.0867 1796 NdisCap - ok
13:31:09.0898 1796 NdisTapi (e4a8aec125a2e43a9e32afeea7c9c888) C:\Windows\system32\DRIVERS\ndistapi.sys
13:31:09.0898 1796 NdisTapi - ok
13:31:09.0914 1796 Ndisuio (b30ae7f2b6d7e343b0df32e6c08fce75) C:\Windows\system32\DRIVERS\ndisuio.sys
13:31:09.0914 1796 Ndisuio - ok
13:31:09.0945 1796 NdisWan (267c415eadcbe53c9ca873dee39cf3a4) C:\Windows\system32\DRIVERS\ndiswan.sys
13:31:09.0945 1796 NdisWan - ok
13:31:09.0961 1796 NDProxy (af7e7c63dcef3f8772726f86039d6eb4) C:\Windows\system32\drivers\NDProxy.sys
13:31:09.0961 1796 NDProxy - ok
13:31:09.0976 1796 NetBIOS (80b275b1ce3b0e79909db7b39af74d51) C:\Windows\system32\DRIVERS\netbios.sys
13:31:09.0976 1796 NetBIOS - ok
13:31:09.0992 1796 NetBT (dd52a733bf4ca5af84562a5e2f963b91) C:\Windows\system32\DRIVERS\netbt.sys
13:31:09.0992 1796 NetBT - ok
13:31:10.0023 1796 Netlogon (c2243ff9e9aad0c30e8b1a0914da15b6) C:\Windows\system32\lsass.exe
13:31:10.0023 1796 Netlogon - ok
13:31:10.0086 1796 Netman (7cccfca7510684768da22092d1fa4db2) C:\Windows\System32\netman.dll
13:31:10.0086 1796 Netman - ok
13:31:10.0195 1796 NetMsmqActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
13:31:10.0195 1796 NetMsmqActivator - ok
13:31:10.0210 1796 NetPipeActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
13:31:10.0210 1796 NetPipeActivator - ok
13:31:10.0257 1796 netprofm (8c338238c16777a802d6a9211eb2ba50) C:\Windows\System32\netprofm.dll
13:31:10.0257 1796 netprofm - ok
13:31:10.0273 1796 NetTcpActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
13:31:10.0273 1796 NetTcpActivator - ok
13:31:10.0273 1796 NetTcpPortSharing (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
13:31:10.0273 1796 NetTcpPortSharing - ok
13:31:10.0335 1796 nfrd960 (1d85c4b390b0ee09c7a46b91efb2c097) C:\Windows\system32\DRIVERS\nfrd960.sys
13:31:10.0335 1796 nfrd960 - ok
13:31:10.0351 1796 NlaSvc (2226496e34bd40734946a054b1cd657f) C:\Windows\System32\nlasvc.dll
13:31:10.0366 1796 NlaSvc - ok
13:31:10.0382 1796 Npfs (1db262a9f8c087e8153d89bef3d2235f) C:\Windows\system32\drivers\Npfs.sys
13:31:10.0382 1796 Npfs - ok
13:31:10.0398 1796 nsi (ba387e955e890c8a88306d9b8d06bf17) C:\Windows\system32\nsisvc.dll
13:31:10.0398 1796 nsi - ok
13:31:10.0444 1796 nsiproxy (e9a0a4d07e53d8fea2bb8387a3293c58) C:\Windows\system32\drivers\nsiproxy.sys
13:31:10.0460 1796 nsiproxy - ok
13:31:10.0538 1796 Ntfs (187002ce05693c306f43c873f821381f) C:\Windows\system32\drivers\Ntfs.sys
13:31:10.0538 1796 Ntfs - ok
13:31:10.0569 1796 Null (f9756a98d69098dca8945d62858a812c) C:\Windows\system32\drivers\Null.sys
13:31:10.0569 1796 Null - ok
13:31:10.0616 1796 nvraid (f1b0bed906f97e16f6d0c3629d2f21c6) C:\Windows\system32\drivers\nvraid.sys
13:31:10.0616 1796 nvraid - ok
13:31:10.0647 1796 nvstor (4520b63899e867f354ee012d34e11536) C:\Windows\system32\drivers\nvstor.sys
13:31:10.0647 1796 nvstor - ok
13:31:10.0663 1796 nv_agp (5a0983915f02bae73267cc2a041f717d) C:\Windows\system32\DRIVERS\nv_agp.sys
13:31:10.0663 1796 nv_agp - ok
13:31:10.0772 1796 odserv (785f487a64950f3cb8e9f16253ba3b7b) C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
13:31:10.0772 1796 odserv - ok
13:31:10.0819 1796 ohci1394 (08a70a1f2cdde9bb49b885cb817a66eb) C:\Windows\system32\DRIVERS\ohci1394.sys
13:31:10.0819 1796 ohci1394 - ok
13:31:10.0866 1796 ose (9d10f99a6712e28f8acd5641e3a7ea6b) C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
13:31:10.0866 1796 ose - ok
13:31:10.0912 1796 p2pimsvc (82a8521ddc60710c3d3d3e7325209bec) C:\Windows\system32\pnrpsvc.dll
13:31:10.0928 1796 p2pimsvc - ok
13:31:10.0959 1796 p2psvc (59c3ddd501e39e006dac31bf55150d91) C:\Windows\system32\p2psvc.dll
13:31:10.0959 1796 p2psvc - ok
13:31:11.0006 1796 Parport (2ea877ed5dd9713c5ac74e8ea7348d14) C:\Windows\system32\DRIVERS\parport.sys
13:31:11.0006 1796 Parport - ok
13:31:11.0022 1796 partmgr (66d3415c159741ade7038a277efff99f) C:\Windows\system32\drivers\partmgr.sys
13:31:11.0022 1796 partmgr - ok
13:31:11.0037 1796 Parvdm (eb0a59f29c19b86479d36b35983daadc) C:\Windows\system32\DRIVERS\parvdm.sys
13:31:11.0037 1796 Parvdm - ok
13:31:11.0084 1796 PcaSvc (358ab7956d3160000726574083dfc8a6) C:\Windows\System32\pcasvc.dll
13:31:11.0084 1796 PcaSvc - ok
13:31:11.0100 1796 pci (c858cb77c577780ecc456a892e7e7d0f) C:\Windows\system32\DRIVERS\pci.sys
13:31:11.0115 1796 pci - ok
13:31:11.0131 1796 pciide (afe86f419014db4e5593f69ffe26ce0a) C:\Windows\system32\DRIVERS\pciide.sys
13:31:11.0131 1796 pciide - ok
13:31:11.0146 1796 pcmcia (f396431b31693e71e8a80687ef523506) C:\Windows\system32\DRIVERS\pcmcia.sys
13:31:11.0146 1796 pcmcia - ok
13:31:11.0178 1796 pcw (250f6b43d2b613172035c6747aeeb19f) C:\Windows\system32\drivers\pcw.sys
13:31:11.0178 1796 pcw - ok
13:31:11.0224 1796 PEAUTH (9e0104ba49f4e6973749a02bf41344ed) C:\Windows\system32\drivers\peauth.sys
13:31:11.0240 1796 PEAUTH - ok
13:31:11.0302 1796 PeerDistSvc (af4d64d2a57b9772cf3801950b8058a6) C:\Windows\system32\peerdistsvc.dll
13:31:11.0318 1796 PeerDistSvc - ok
13:31:11.0412 1796 pla (9c1bff7910c89a1d12e57343475840cb) C:\Windows\system32\pla.dll
13:31:11.0427 1796 pla - ok
13:31:11.0568 1796 PlugPlay (71def5ec79774c798342d0ea16e41780) C:\Windows\system32\umpnpmgr.dll
13:31:11.0568 1796 PlugPlay - ok
13:31:11.0583 1796 PNRPAutoReg (63ff8572611249931eb16bb8eed6afc8) C:\Windows\system32\pnrpauto.dll
13:31:11.0583 1796 PNRPAutoReg - ok
13:31:11.0614 1796 PNRPsvc (82a8521ddc60710c3d3d3e7325209bec) C:\Windows\system32\pnrpsvc.dll
13:31:11.0614 1796 PNRPsvc - ok
13:31:11.0661 1796 PolicyAgent (48e1b75c6dc0232fd92baae4bd344721) C:\Windows\System32\ipsecsvc.dll
13:31:11.0661 1796 PolicyAgent - ok
13:31:11.0692 1796 Power (dbff83f709a91049621c1d35dd45c92c) C:\Windows\system32\umpo.dll
13:31:11.0708 1796 Power - ok
13:31:11.0755 1796 PptpMiniport (631e3e205ad6d86f2aed6a4a8e69f2db) C:\Windows\system32\DRIVERS\raspptp.sys
13:31:11.0755 1796 PptpMiniport - ok
13:31:11.0786 1796 Processor (85b1e3a0c7585bc4aae6899ec6fcf011) C:\Windows\system32\DRIVERS\processr.sys
13:31:11.0786 1796 Processor - ok
13:31:11.0848 1796 ProfSvc (aea3bdbdba667aa6f678cb38907e4f5e) C:\Windows\system32\profsvc.dll
13:31:11.0848 1796 ProfSvc - ok
13:31:11.0880 1796 ProtectedStorage (c2243ff9e9aad0c30e8b1a0914da15b6) C:\Windows\system32\lsass.exe
13:31:11.0880 1796 ProtectedStorage - ok
13:31:11.0942 1796 Psched (6270ccae2a86de6d146529fe55b3246a) C:\Windows\system32\DRIVERS\pacer.sys
13:31:11.0942 1796 Psched - ok
13:31:12.0020 1796 ql2300 (ab95ecf1f6659a60ddc166d8315b0751) C:\Windows\system32\DRIVERS\ql2300.sys
13:31:12.0020 1796 ql2300 - ok
13:31:12.0160 1796 ql40xx (b4dd51dd25182244b86737dc51af2270) C:\Windows\system32\DRIVERS\ql40xx.sys
13:31:12.0176 1796 ql40xx - ok
13:31:12.0207 1796 QWAVE (31ac809e7707eb580b2bdb760390765a) C:\Windows\system32\qwave.dll
13:31:12.0207 1796 QWAVE - ok
13:31:12.0223 1796 QWAVEdrv (584078ca1b95ca72df2a27c336f9719d) C:\Windows\system32\drivers\qwavedrv.sys
13:31:12.0223 1796 QWAVEdrv - ok
13:31:12.0254 1796 RasAcd (30a81b53c766d0133bb86d234e5556ab) C:\Windows\system32\DRIVERS\rasacd.sys
13:31:12.0254 1796 RasAcd - ok
13:31:12.0301 1796 RasAgileVpn (57ec4aef73660166074d8f7f31c0d4fd) C:\Windows\system32\DRIVERS\AgileVpn.sys
13:31:12.0301 1796 RasAgileVpn - ok
13:31:12.0316 1796 RasAuto (a60f1839849c0c00739787fd5ec03f13) C:\Windows\System32\rasauto.dll
13:31:12.0316 1796 RasAuto - ok
13:31:12.0348 1796 Rasl2tp (d9f91eafec2815365cbe6d167e4e332a) C:\Windows\system32\DRIVERS\rasl2tp.sys
13:31:12.0348 1796 Rasl2tp - ok
13:31:12.0379 1796 RasMan (0ce66ec736b7fc526d78f7624c7d2a94) C:\Windows\System32\rasmans.dll
13:31:12.0379 1796 RasMan - ok
13:31:12.0426 1796 RasPppoe (0fe8b15916307a6ac12bfb6a63e45507) C:\Windows\system32\DRIVERS\raspppoe.sys
13:31:12.0426 1796 RasPppoe - ok
13:31:12.0441 1796 RasSstp (44101f495a83ea6401d886e7fd70096b) C:\Windows\system32\DRIVERS\rassstp.sys
13:31:12.0441 1796 RasSstp - ok
13:31:12.0457 1796 rdbss (835d7e81bf517a3b72384bdcc85e1ce6) C:\Windows\system32\DRIVERS\rdbss.sys
13:31:12.0457 1796 rdbss - ok
13:31:12.0472 1796 rdpbus (0d8f05481cb76e70e1da06ee9f0da9df) C:\Windows\system32\DRIVERS\rdpbus.sys
13:31:12.0472 1796 rdpbus - ok
13:31:12.0488 1796 RDPCDD (1e016846895b15a99f9a176a05029075) C:\Windows\system32\DRIVERS\RDPCDD.sys
13:31:12.0488 1796 RDPCDD - ok
13:31:12.0535 1796 RDPDR (c5ff95883ffef704d50c40d21cfb3ab5) C:\Windows\system32\drivers\rdpdr.sys
13:31:12.0535 1796 RDPDR - ok
13:31:12.0550 1796 RDPENCDD (5a53ca1598dd4156d44196d200c94b8a) C:\Windows\system32\drivers\rdpencdd.sys
13:31:12.0550 1796 RDPENCDD - ok
13:31:12.0566 1796 RDPREFMP (44b0a53cd4f27d50ed461dae0c0b4e1f) C:\Windows\system32\drivers\rdprefmp.sys
13:31:12.0566 1796 RDPREFMP - ok
13:31:12.0597 1796 RDPWD (c5b8d47a4688de9d335204ea757c2240) C:\Windows\system32\drivers\RDPWD.sys
13:31:12.0613 1796 RDPWD - ok
13:31:12.0644 1796 rdyboost (4ea225bf1cf05e158853f30a99ca29a7) C:\Windows\system32\drivers\rdyboost.sys
13:31:12.0644 1796 rdyboost - ok
13:31:12.0691 1796 RemoteAccess (7b5e1419717fac363a31cc302895217a) C:\Windows\System32\mprdim.dll
13:31:12.0691 1796 RemoteAccess - ok
13:31:12.0738 1796 RemoteRegistry (cb9a8683f4ef2bf99e123d79950d7935) C:\Windows\system32\regsvc.dll
13:31:12.0738 1796 RemoteRegistry - ok
13:31:12.0753 1796 RpcEptMapper (78d072f35bc45d9e4e1b61895c152234) C:\Windows\System32\RpcEpMap.dll
13:31:12.0753 1796 RpcEptMapper - ok
13:31:12.0769 1796 RpcLocator (94d36c0e44677dd26981d2bfeef2a29d) C:\Windows\system32\locator.exe
13:31:12.0769 1796 RpcLocator - ok
13:31:12.0784 1796 RpcSs (b82cd39e336973359d7c9bf911e8e84f) C:\Windows\system32\rpcss.dll
13:31:12.0800 1796 RpcSs - ok
13:31:12.0847 1796 rspndr (032b0d36ad92b582d869879f5af5b928) C:\Windows\system32\DRIVERS\rspndr.sys
13:31:12.0847 1796 rspndr - ok
13:31:12.0894 1796 s3cap (5423d8437051e89dd34749f242c98648) C:\Windows\system32\DRIVERS\vms3cap.sys
13:31:12.0894 1796 s3cap - ok
13:31:12.0925 1796 SamSs (c2243ff9e9aad0c30e8b1a0914da15b6) C:\Windows\system32\lsass.exe
13:31:12.0925 1796 SamSs - ok
13:31:12.0956 1796 sbp2port (34ee0c44b724e3e4ce2eff29126de5b5) C:\Windows\system32\DRIVERS\sbp2port.sys
13:31:12.0956 1796 sbp2port - ok
13:31:12.0987 1796 SCardSvr (8fc518ffe9519c2631d37515a68009c4) C:\Windows\System32\SCardSvr.dll
13:31:12.0987 1796 SCardSvr - ok
13:31:13.0003 1796 scfilter (a95c54b2ac3cc9c73fcdf9e51a1d6b51) C:\Windows\system32\DRIVERS\scfilter.sys
13:31:13.0003 1796 scfilter - ok
13:31:13.0065 1796 Schedule (df1e5c82e4d09cf8105cc644980c4803) C:\Windows\system32\schedsvc.dll
13:31:13.0081 1796 Schedule - ok
13:31:13.0112 1796 SCPolicySvc (628a9e30ec5e18dd5de6be4dbdc12198) C:\Windows\System32\certprop.dll
13:31:13.0112 1796 SCPolicySvc - ok
13:31:13.0128 1796 SDRSVC (5fd90abdbfaee85986802622cbb03446) C:\Windows\System32\SDRSVC.dll
13:31:13.0128 1796 SDRSVC - ok
13:31:13.0159 1796 secdrv (90a3935d05b494a5a39d37e71f09a677) C:\Windows\system32\drivers\secdrv.sys
13:31:13.0159 1796 secdrv - ok
13:31:13.0174 1796 seclogon (a59b3a4442c52060cc7a85293aa3546f) C:\Windows\system32\seclogon.dll
13:31:13.0174 1796 seclogon - ok
13:31:13.0206 1796 SENS (dcb7fcdcc97f87360f75d77425b81737) C:\Windows\System32\sens.dll
13:31:13.0206 1796 SENS - ok
13:31:13.0252 1796 SensrSvc (50087fe1ee447009c9cc2997b90de53f) C:\Windows\system32\sensrsvc.dll
13:31:13.0252 1796 SensrSvc - ok
13:31:13.0268 1796 Serenum (9ad8b8b515e3df6acd4212ef465de2d1) C:\Windows\system32\DRIVERS\serenum.sys
13:31:13.0268 1796 Serenum - ok
13:31:13.0315 1796 Serial (5fb7fcea0490d821f26f39cc5ea3d1e2) C:\Windows\system32\DRIVERS\serial.sys
13:31:13.0315 1796 Serial - ok
13:31:13.0330 1796 sermouse (79bffb520327ff916a582dfea17aa813) C:\Windows\system32\DRIVERS\sermouse.sys
13:31:13.0330 1796 sermouse - ok
13:31:13.0377 1796 SessionEnv (8f55ce568c543d5adf45c409d16718fc) C:\Windows\system32\sessenv.dll
13:31:13.0377 1796 SessionEnv - ok
13:31:13.0408 1796 sffdisk (9f976e1eb233df46fce808d9dea3eb9c) C:\Windows\system32\DRIVERS\sffdisk.sys
13:31:13.0408 1796 sffdisk - ok
13:31:13.0424 1796 sffp_mmc (932a68ee27833cfd57c1639d375f2731) C:\Windows\system32\DRIVERS\sffp_mmc.sys
13:31:13.0424 1796 sffp_mmc - ok
13:31:13.0440 1796 sffp_sd (4f1e5b0fe7c8050668dbfade8999aefb) C:\Windows\system32\DRIVERS\sffp_sd.sys
13:31:13.0440 1796 sffp_sd - ok
13:31:13.0455 1796 sfloppy (db96666cc8312ebc45032f30b007a547) C:\Windows\system32\DRIVERS\sfloppy.sys
13:31:13.0455 1796 sfloppy - ok
13:31:13.0486 1796 ShellHWDetection (cd2e48fa5b29ee2b3b5858056d246ef2) C:\Windows\System32\shsvcs.dll
13:31:13.0486 1796 ShellHWDetection - ok
13:31:13.0518 1796 sisagp (2565cac0dc9fe0371bdce60832582b2e) C:\Windows\system32\DRIVERS\sisagp.sys
13:31:13.0518 1796 sisagp - ok
13:31:13.0533 1796 SiSRaid2 (a9f0486851becb6dda1d89d381e71055) C:\Windows\system32\DRIVERS\SiSRaid2.sys
13:31:13.0533 1796 SiSRaid2 - ok
13:31:13.0564 1796 SiSRaid4 (3727097b55738e2f554972c3be5bc1aa) C:\Windows\system32\DRIVERS\sisraid4.sys
13:31:13.0564 1796 SiSRaid4 - ok
13:31:13.0596 1796 Smb (3e21c083b8a01cb70ba1f09303010fce) C:\Windows\system32\DRIVERS\smb.sys
13:31:13.0596 1796 Smb - ok
13:31:13.0627 1796 SNMPTRAP (6a984831644eca1a33ffeae4126f4f37) C:\Windows\System32\snmptrap.exe
13:31:13.0627 1796 SNMPTRAP - ok
13:31:13.0642 1796 spldr (95cf1ae7527fb70f7816563cbc09d942) C:\Windows\system32\drivers\spldr.sys
13:31:13.0642 1796 spldr - ok
13:31:13.0689 1796 Spooler (d1bb750eb51694de183e08b9c33be5b2) C:\Windows\System32\spoolsv.exe
13:31:13.0689 1796 Spooler - ok
13:31:13.0830 1796 sppsvc (4c287f9069fedbd791178876ee9de536) C:\Windows\system32\sppsvc.exe
13:31:13.0861 1796 sppsvc - ok
13:31:13.0970 1796 sppuinotify (d8e3e19eebdab49dd4a8d3062ead4ec7) C:\Windows\system32\sppuinotify.dll
13:31:13.0986 1796 sppuinotify - ok
13:31:14.0095 1796 sptd (c37e56fe9d5c2cb4aa544fc7eaf05de1) C:\Windows\system32\Drivers\sptd.sys
13:31:14.0095 1796 sptd - ok
13:31:14.0157 1796 srv (c4a027b8c0bd3fc0699f41fa5e9e0c87) C:\Windows\system32\DRIVERS\srv.sys
13:31:14.0157 1796 srv - ok
13:31:14.0173 1796 srv2 (414bb592cad8a79649d01f9d94318fb3) C:\Windows\system32\DRIVERS\srv2.sys
13:31:14.0173 1796 srv2 - ok
13:31:14.0204 1796 srvnet (ff207d67700aa18242aaf985d3e7d8f4) C:\Windows\system32\DRIVERS\srvnet.sys
13:31:14.0204 1796 srvnet - ok
13:31:14.0235 1796 SSDPSRV (d887c9fd02ac9fa880f6e5027a43e118) C:\Windows\System32\ssdpsrv.dll
13:31:14.0251 1796 SSDPSRV - ok
13:31:14.0282 1796 ssmdrv (a36ee93698802cd899f98bfd553d8185) C:\Windows\system32\DRIVERS\ssmdrv.sys
13:31:14.0282 1796 ssmdrv - ok
13:31:14.0298 1796 SstpSvc (d318f23be45d5e3a107469eb64815b50) C:\Windows\system32\sstpsvc.dll
13:31:14.0298 1796 SstpSvc - ok
13:31:14.0344 1796 stexstor (db32d325c192b801df274bfd12a7e72b) C:\Windows\system32\DRIVERS\stexstor.sys
13:31:14.0344 1796 stexstor - ok
13:31:14.0391 1796 StiSvc (a22825e7bb7018e8af3e229a5af17221) C:\Windows\System32\wiaservc.dll
13:31:14.0407 1796 StiSvc - ok
13:31:14.0438 1796 storflt (957e346ca948668f2496a6ccf6ff82cc) C:\Windows\system32\DRIVERS\vmstorfl.sys
13:31:14.0438 1796 storflt - ok
13:31:14.0469 1796 StorSvc (0bf669f0a910beda4a32258d363af2a5) C:\Windows\system32\storsvc.dll
13:31:14.0469 1796 StorSvc - ok
13:31:14.0485 1796 storvsc (d5751969dc3e4b88bf482ac8ec9fe019) C:\Windows\system32\DRIVERS\storvsc.sys
13:31:14.0485 1796 storvsc - ok
13:31:14.0516 1796 swenum (e58c78a848add9610a4db6d214af5224) C:\Windows\system32\DRIVERS\swenum.sys
13:31:14.0516 1796 swenum - ok
13:31:14.0563 1796 swprv (a28bd92df340e57b024ba433165d34d7) C:\Windows\System32\swprv.dll
13:31:14.0563 1796 swprv - ok
13:31:14.0625 1796 SysMain (04105c8da62353589c29bdaeb8d88bd8) C:\Windows\system32\sysmain.dll
13:31:14.0625 1796 SysMain - ok
13:31:14.0656 1796 TabletInputService (fcfb6c552fbc0da299799cbd50ad9fd4) C:\Windows\System32\TabSvc.dll
13:31:14.0656 1796 TabletInputService - ok
13:31:14.0688 1796 TapiSrv (2f46b0c70a4adc8c90cf825da3b4feaf) C:\Windows\System32\tapisrv.dll
13:31:14.0688 1796 TapiSrv - ok
13:31:14.0703 1796 TBS (b799d9fdb26111737f58288d8dc172d9) C:\Windows\System32\tbssvc.dll
13:31:14.0703 1796 TBS - ok
13:31:14.0797 1796 Tcpip (55e9965552741f3850cb22cbba9671ed) C:\Windows\system32\drivers\tcpip.sys
13:31:14.0812 1796 Tcpip - ok
13:31:14.0953 1796 TCPIP6 (55e9965552741f3850cb22cbba9671ed) C:\Windows\system32\DRIVERS\tcpip.sys
13:31:14.0953 1796 TCPIP6 - ok
13:31:15.0062 1796 tcpipreg (e64444523add154f86567c469bc0b17f) C:\Windows\system32\drivers\tcpipreg.sys
13:31:15.0078 1796 tcpipreg - ok
13:31:15.0093 1796 TDPIPE (1875c1490d99e70e449e3afae9fcbadf) C:\Windows\system32\drivers\tdpipe.sys
13:31:15.0093 1796 TDPIPE - ok
13:31:15.0109 1796 TDTCP (7156308896d34ea75a582f9a09e50c17) C:\Windows\system32\drivers\tdtcp.sys
13:31:15.0109 1796 TDTCP - ok
13:31:15.0140 1796 tdx (cb39e896a2a83702d1737bfd402b3542) C:\Windows\system32\DRIVERS\tdx.sys
13:31:15.0140 1796 tdx - ok
13:31:15.0343 1796 TeamViewer7 (74fc70ae64a7b7dabec9697ce0a1f4fa) C:\Program Files\TeamViewer\Version7\TeamViewer_Service.exe
13:31:15.0358 1796 TeamViewer7 - ok
13:31:15.0499 1796 TermDD (c36f41ee20e6999dbf4b0425963268a5) C:\Windows\system32\DRIVERS\termdd.sys
13:31:15.0499 1796 TermDD - ok
13:31:15.0546 1796 TermService (a01e50a04d7b1960b33e92b9080e6a94) C:\Windows\System32\termsrv.dll
13:31:15.0561 1796 TermService - ok
13:31:15.0577 1796 Themes (42fb6afd6b79d9fe07381609172e7ca4) C:\Windows\system32\themeservice.dll
13:31:15.0577 1796 Themes - ok
13:31:15.0608 1796 THREADORDER (146b6f43a673379a3c670e86d89be5ea) C:\Windows\system32\mmcss.dll
13:31:15.0608 1796 THREADORDER - ok
13:31:15.0655 1796 TrkWks (4792c0378db99a9bc2ae2de6cfff0c3a) C:\Windows\System32\trkwks.dll
13:31:15.0655 1796 TrkWks - ok
13:31:15.0717 1796 TrustedInstaller (41a4c781d2286208d397d72099304133) C:\Windows\servicing\TrustedInstaller.exe
13:31:15.0717 1796 TrustedInstaller - ok
13:31:15.0733 1796 tssecsrv (98ae6fa07d12cb4ec5cf4a9bfa5f4242) C:\Windows\system32\DRIVERS\tssecsrv.sys
13:31:15.0733 1796 tssecsrv - ok
13:31:15.0764 1796 tunnel (3e461d890a97f9d4c168f5fda36e1d00) C:\Windows\system32\DRIVERS\tunnel.sys
13:31:15.0764 1796 tunnel - ok
13:31:15.0811 1796 uagp35 (750fbcb269f4d7dd2e420c56b795db6d) C:\Windows\system32\DRIVERS\uagp35.sys
13:31:15.0811 1796 uagp35 - ok
13:31:15.0842 1796 udfs (09cc3e16f8e5ee7168e01cf8fcbe061a) C:\Windows\system32\DRIVERS\udfs.sys
13:31:15.0842 1796 udfs - ok
13:31:15.0889 1796 UI0Detect (8344fd4fce927880aa1aa7681d4927e5) C:\Windows\system32\UI0Detect.exe
13:31:15.0889 1796 UI0Detect - ok
13:31:15.0904 1796 uliagpkx (44e8048ace47befbfdc2e9be4cbc8880) C:\Windows\system32\DRIVERS\uliagpkx.sys
13:31:15.0904 1796 uliagpkx - ok
13:31:15.0936 1796 umbus (049b3a50b3d646baeeee9eec9b0668dc) C:\Windows\system32\DRIVERS\umbus.sys
13:31:15.0936 1796 umbus - ok
13:31:15.0951 1796 UmPass (7550ad0c6998ba1cb4843e920ee0feac) C:\Windows\system32\DRIVERS\umpass.sys
13:31:15.0951 1796 UmPass - ok
13:31:15.0982 1796 UmRdpService (8ecaca5454844f66386f7be4ae0d7cd1) C:\Windows\System32\umrdp.dll
13:31:15.0998 1796 UmRdpService - ok
13:31:16.0029 1796 upnphost (833fbb672460efce8011d262175fad33) C:\Windows\System32\upnphost.dll
13:31:16.0029 1796 upnphost - ok
13:31:16.0076 1796 usbccgp (c31ae588e403042632dc796cf09e30b0) C:\Windows\system32\DRIVERS\usbccgp.sys
13:31:16.0076 1796 usbccgp - ok
13:31:16.0107 1796 usbcir (04ec7cec62ec3b6d9354eee93327fc82) C:\Windows\system32\DRIVERS\usbcir.sys
13:31:16.0107 1796 usbcir - ok
13:31:16.0138 1796 usbehci (e4c436d914768ce965d5e659ba7eebd8) C:\Windows\system32\DRIVERS\usbehci.sys
13:31:16.0138 1796 usbehci - ok
13:31:16.0154 1796 usbhub (bdcd7156ec37448f08633fd899823620) C:\Windows\system32\DRIVERS\usbhub.sys
13:31:16.0170 1796 usbhub - ok
13:31:16.0185 1796 usbohci (eb2d819a639015253c871cda09d91d58) C:\Windows\system32\drivers\usbohci.sys
13:31:16.0185 1796 usbohci - ok
13:31:16.0201 1796 usbprint (797d862fe0875e75c7cc4c1ad7b30252) C:\Windows\system32\DRIVERS\usbprint.sys
13:31:16.0201 1796 usbprint - ok
13:31:16.0216 1796 USBSTOR (1c4287739a93594e57e2a9e6a3ed7353) C:\Windows\system32\DRIVERS\USBSTOR.SYS
13:31:16.0216 1796 USBSTOR - ok
13:31:16.0232 1796 usbuhci (22480bf4e5a09192e5e30ba4dde79fa4) C:\Windows\system32\DRIVERS\usbuhci.sys
13:31:16.0232 1796 usbuhci - ok
13:31:16.0294 1796 usbvideo (b5f6a992d996282b7fae7048e50af83a) C:\Windows\System32\Drivers\usbvideo.sys
13:31:16.0294 1796 usbvideo - ok
13:31:16.0341 1796 UxSms (081e6e1c91aec36758902a9f727cd23c) C:\Windows\System32\uxsms.dll
13:31:16.0341 1796 UxSms - ok
13:31:16.0372 1796 VaultSvc (c2243ff9e9aad0c30e8b1a0914da15b6) C:\Windows\system32\lsass.exe
13:31:16.0372 1796 VaultSvc - ok
13:31:16.0419 1796 vdrvroot (a059c4c3edb09e07d21a8e5c0aabd3cb) C:\Windows\system32\DRIVERS\vdrvroot.sys
13:31:16.0419 1796 vdrvroot - ok
13:31:16.0450 1796 vds (8c4e7c49d3641bc9e299e466a7f8867d) C:\Windows\System32\vds.exe
13:31:16.0450 1796 vds - ok
13:31:16.0466 1796 vga (17c408214ea61696cec9c66e388b14f3) C:\Windows\system32\DRIVERS\vgapnp.sys
13:31:16.0466 1796 vga - ok
13:31:16.0497 1796 VgaSave (8e38096ad5c8570a6f1570a61e251561) C:\Windows\System32\drivers\vga.sys
13:31:16.0497 1796 VgaSave - ok
13:31:16.0528 1796 vhdmp (3be6e1f3a4f1afec8cee0d7883f93583) C:\Windows\system32\DRIVERS\vhdmp.sys
13:31:16.0528 1796 vhdmp - ok
13:31:16.0591 1796 viaagp (c829317a37b4bea8f39735d4b076e923) C:\Windows\system32\DRIVERS\viaagp.sys
13:31:16.0591 1796 viaagp - ok
13:31:16.0622 1796 ViaC7 (e02f079a6aa107f06b16549c6e5c7b74) C:\Windows\system32\DRIVERS\viac7.sys
13:31:16.0622 1796 ViaC7 - ok
13:31:16.0700 1796 VIAHdAudAddService (f6c19f00f10343af369f6251969e9047) C:\Windows\system32\drivers\viahduaa.sys
13:31:16.0716 1796 VIAHdAudAddService - ok
13:31:16.0747 1796 viaide (e43574f6a56a0ee11809b48c09e4fd3c) C:\Windows\system32\DRIVERS\viaide.sys
13:31:16.0747 1796 viaide - ok
13:31:16.0778 1796 vmbus (379b349f65f453d2a6e75ea6b7448e49) C:\Windows\system32\DRIVERS\vmbus.sys
13:31:16.0778 1796 vmbus - ok
13:31:16.0809 1796 VMBusHID (ec2bbab4b84d0738c6c83d2234dc36fe) C:\Windows\system32\DRIVERS\VMBusHID.sys
13:31:16.0809 1796 VMBusHID - ok
13:31:16.0825 1796 volmgr (384e5a2aa49934295171e499f86ba6f3) C:\Windows\system32\DRIVERS\volmgr.sys
13:31:16.0825 1796 volmgr - ok
13:31:16.0856 1796 volmgrx (b5bb72067ddddbbfb04b2f89ff8c3c87) C:\Windows\system32\drivers\volmgrx.sys
13:31:16.0872 1796 volmgrx - ok
13:31:16.0887 1796 volsnap (58df9d2481a56edde167e51b334d44fd) C:\Windows\system32\DRIVERS\volsnap.sys
13:31:16.0887 1796 volsnap - ok
13:31:16.0934 1796 vpcbus (33e74df34753fcaab06f6f2bdc8cabf5) C:\Windows\system32\DRIVERS\vpchbus.sys
13:31:16.0934 1796 vpcbus - ok
13:31:16.0981 1796 vpcnfltr (5f04362ceb5fb5901037e9d9eadd3760) C:\Windows\system32\DRIVERS\vpcnfltr.sys
13:31:16.0981 1796 vpcnfltr - ok
13:31:16.0996 1796 vpcusb (625088d6ee9ede977fd03cf18d1cd5c5) C:\Windows\system32\DRIVERS\vpcusb.sys
13:31:16.0996 1796 vpcusb - ok
13:31:17.0043 1796 vpcvmm (5ed378d91e32134f3c0b3810860ffd71) C:\Windows\system32\drivers\vpcvmm.sys
13:31:17.0043 1796 vpcvmm - ok
13:31:17.0090 1796 vsmraid (9dfa0cc2f8855a04816729651175b631) C:\Windows\system32\DRIVERS\vsmraid.sys
13:31:17.0090 1796 vsmraid - ok
13:31:17.0168 1796 VSS (7ea2bcd94d9cfaf4c556f5cc94532a6c) C:\Windows\system32\vssvc.exe
13:31:17.0168 1796 VSS - ok
13:31:17.0184 1796 vwifibus (90567b1e658001e79d7c8bbd3dde5aa6) C:\Windows\system32\DRIVERS\vwifibus.sys
13:31:17.0199 1796 vwifibus - ok
13:31:17.0230 1796 vwififlt (7090d3436eeb4e7da3373090a23448f7) C:\Windows\system32\DRIVERS\vwififlt.sys
13:31:17.0230 1796 vwififlt - ok
13:31:17.0262 1796 W32Time (55187fd710e27d5095d10a472c8baf1c) C:\Windows\system32\w32time.dll
13:31:17.0262 1796 W32Time - ok
13:31:17.0277 1796 WacomPen (de3721e89c653aa281428c8a69745d90) C:\Windows\system32\DRIVERS\wacompen.sys
13:31:17.0277 1796 WacomPen - ok
13:31:17.0293 1796 WANARP (692a712062146e96d28ba0b7d75de31b) C:\Windows\system32\DRIVERS\wanarp.sys
13:31:17.0293 1796 WANARP - ok
13:31:17.0293 1796 Wanarpv6 (692a712062146e96d28ba0b7d75de31b) C:\Windows\system32\DRIVERS\wanarp.sys
13:31:17.0308 1796 Wanarpv6 - ok
13:31:17.0418 1796 WatAdminSvc (353a04c273ec58475d8633e75ccd5604) C:\Windows\system32\Wat\WatAdminSvc.exe
13:31:17.0433 1796 WatAdminSvc - ok
13:31:17.0589 1796 wbengine (7790b77fe1e5ee47dcc66247095bb4c9) C:\Windows\system32\wbengine.exe
13:31:17.0589 1796 wbengine - ok
13:31:17.0620 1796 WbioSrvc (9614b5d29dc76ac3c29f6d2d3aa70e67) C:\Windows\System32\wbiosrvc.dll
13:31:17.0620 1796 WbioSrvc - ok
13:31:17.0667 1796 wcncsvc (6d9b75275c3e3a5f51aef81affadb2b6) C:\Windows\System32\wcncsvc.dll
13:31:17.0667 1796 wcncsvc - ok
13:31:17.0683 1796 WcsPlugInService (5d930b6357a6d2af4d7653bdabbf352f) C:\Windows\System32\WcsPlugInService.dll
13:31:17.0683 1796 WcsPlugInService - ok
13:31:17.0730 1796 Wd (1112a9badacb47b7c0bb0392e3158dff) C:\Windows\system32\DRIVERS\wd.sys
13:31:17.0730 1796 Wd - ok
13:31:17.0761 1796 Wdf01000 (9950e3d0f08141c7e89e64456ae7dc73) C:\Windows\system32\drivers\Wdf01000.sys
13:31:17.0761 1796 Wdf01000 - ok
13:31:17.0792 1796 WdiServiceHost (46ef9dc96265fd0b423db72e7c38c2a5) C:\Windows\system32\wdi.dll
13:31:17.0792 1796 WdiServiceHost - ok
13:31:17.0792 1796 WdiSystemHost (46ef9dc96265fd0b423db72e7c38c2a5) C:\Windows\system32\wdi.dll
13:31:17.0792 1796 WdiSystemHost - ok
13:31:17.0839 1796 WebClient (bb5ec38f8d4600119b4720bc5d4211f1) C:\Windows\System32\webclnt.dll
13:31:17.0839 1796 WebClient - ok
13:31:17.0854 1796 Wecsvc (760f0afe937a77cff27153206534f275) C:\Windows\system32\wecsvc.dll
13:31:17.0854 1796 Wecsvc - ok
13:31:17.0870 1796 wercplsupport (ac804569bb2364fb6017370258a4091b) C:\Windows\System32\wercplsupport.dll
13:31:17.0886 1796 wercplsupport - ok
13:31:17.0901 1796 WerSvc (08e420d873e4fd85241ee2421b02c4a4) C:\Windows\System32\WerSvc.dll
13:31:17.0901 1796 WerSvc - ok
13:31:17.0964 1796 WfpLwf (8b9a943f3b53861f2bfaf6c186168f79) C:\Windows\system32\DRIVERS\wfplwf.sys
13:31:17.0964 1796 WfpLwf - ok
13:31:17.0979 1796 WIMMount (5cf95b35e59e2a38023836fff31be64c) C:\Windows\system32\drivers\wimmount.sys
13:31:17.0979 1796 WIMMount - ok
13:31:17.0995 1796 WinHttpAutoProxySvc - ok
13:31:18.0073 1796 Winmgmt (f62e510b6ad4c21eb9fe8668ed251826) C:\Windows\system32\wbem\WMIsvc.dll
13:31:18.0073 1796 Winmgmt - ok
13:31:18.0151 1796 WinRM (c4f5d3901d1b41d602ddc196e0b95b51) C:\Windows\system32\WsmSvc.dll
13:31:18.0166 1796 WinRM - ok
13:31:18.0229 1796 Wlansvc (16935c98ff639d185086a3529b1f2067) C:\Windows\System32\wlansvc.dll
13:31:18.0244 1796 Wlansvc - ok
13:31:18.0291 1796 WmiAcpi (0217679b8fca58714c3bf2726d2ca84e) C:\Windows\system32\DRIVERS\wmiacpi.sys
13:31:18.0291 1796 WmiAcpi - ok
13:31:18.0354 1796 wmiApSrv (6eb6b66517b048d87dc1856ddf1f4c3f) C:\Windows\system32\wbem\WmiApSrv.exe
13:31:18.0354 1796 wmiApSrv - ok
13:31:18.0478 1796 WMPNetworkSvc (77fbd400984cf72ba0fc4b3489d65f74) C:\Program Files\Windows Media Player\wmpnetwk.exe
13:31:18.0478 1796 WMPNetworkSvc - ok
13:31:18.0634 1796 WPCSvc (a2f0ec770a92f2b3f9de6d518e11409c) C:\Windows\System32\wpcsvc.dll
13:31:18.0634 1796 WPCSvc - ok
13:31:18.0650 1796 WPDBusEnum (b7f658a2ebc07129538ad9ab35212637) C:\Windows\system32\wpdbusenum.dll
13:31:18.0650 1796 WPDBusEnum - ok
13:31:18.0697 1796 ws2ifsl (6db3276587b853bf886b69528fdb048c) C:\Windows\system32\drivers\ws2ifsl.sys
13:31:18.0697 1796 ws2ifsl - ok
13:31:18.0712 1796 WSearch - ok
13:31:18.0822 1796 wuauserv (fc3ec24fce372c89423e015a2ac1a31e) C:\Windows\system32\wuaueng.dll
13:31:18.0837 1796 wuauserv - ok
13:31:18.0978 1796 WudfPf (6f9b6c0c93232cff47d0f72d6db1d21e) C:\Windows\system32\drivers\WudfPf.sys
13:31:18.0978 1796 WudfPf - ok
13:31:18.0993 1796 WUDFRd (f91ff1e51fca30b3c3981db7d5924252) C:\Windows\system32\DRIVERS\WUDFRd.sys
13:31:18.0993 1796 WUDFRd - ok
13:31:19.0024 1796 wudfsvc (ddee3682fe97037c45f4d7ab467cb8b6) C:\Windows\System32\WUDFSvc.dll
13:31:19.0040 1796 wudfsvc - ok
13:31:19.0071 1796 WwanSvc (ff2d745b560f7c71b31f30f4d49f73d2) C:\Windows\System32\wwansvc.dll
13:31:19.0071 1796 WwanSvc - ok
13:31:19.0087 1796 MBR (0x1B8) (8e734bd7aa1d4f7e9af58df495f6cf9e) \Device\Harddisk0\DR0
13:31:19.0118 1796 \Device\Harddisk0\DR0 - ok
13:31:19.0118 1796 Boot (0x1200) (c9d3e61356c8003f8d0c2e010bc343a2) \Device\Harddisk0\DR0\Partition0
13:31:19.0134 1796 \Device\Harddisk0\DR0\Partition0 - ok
13:31:19.0165 1796 Boot (0x1200) (9938eafc910a5361aa4956fb42be02fa) \Device\Harddisk0\DR0\Partition1
13:31:19.0165 1796 \Device\Harddisk0\DR0\Partition1 - ok
13:31:19.0180 1796 Boot (0x1200) (cfd1b981377ed085b32c69fa75d0e9c3) \Device\Harddisk0\DR0\Partition2
13:31:19.0180 1796 \Device\Harddisk0\DR0\Partition2 - ok
13:31:19.0180 1796 ============================================================
13:31:19.0180 1796 Scan finished
13:31:19.0180 1796 ============================================================
13:31:19.0196 1648 Detected object count: 0
13:31:19.0196 1648 Actual detected object count: 0
13:31:42.0034 2044 Deinitialize success
13:31:08.0151 1796 KSecPkg (27391db553be2a4e2b0adeea2873b2af) C:\Windows\system32\Drivers\ksecpkg.sys
13:31:08.0151 1796 KSecPkg - ok
13:31:08.0198 1796 KtmRm (89a7b9cc98d0d80c6f31b91c0a310fcd) C:\Windows\system32\msdtckrm.dll
13:31:08.0198 1796 KtmRm - ok
13:31:08.0245 1796 L1E (8c804b1ffad1efa952b747e8285c3b76) C:\Windows\system32\DRIVERS\L1E62x86.sys
13:31:08.0245 1796 L1E - ok
13:31:08.0292 1796 LanmanServer (8f6bf790d3168224c16f2af68a84438c) C:\Windows\system32\srvsvc.dll
13:31:08.0292 1796 LanmanServer - ok
13:31:08.0338 1796 LanmanWorkstation (b9891f885dcf1f0513a51cb58493cb1f) C:\Windows\System32\wkssvc.dll
13:31:08.0338 1796 LanmanWorkstation - ok
13:31:08.0385 1796 lltdio (f7611ec07349979da9b0ae1f18ccc7a6) C:\Windows\system32\DRIVERS\lltdio.sys
13:31:08.0385 1796 lltdio - ok
13:31:08.0416 1796 lltdsvc (5700673e13a2117fa3b9020c852c01e2) C:\Windows\System32\lltdsvc.dll
13:31:08.0416 1796 lltdsvc - ok
13:31:08.0448 1796 lmhosts (55ca01ba19d0006c8f2639b6c045e08b) C:\Windows\System32\lmhsvc.dll
13:31:08.0448 1796 lmhosts - ok
13:31:08.0479 1796 LSI_FC (eb119a53ccf2acc000ac71b065b78fef) C:\Windows\system32\DRIVERS\lsi_fc.sys
13:31:08.0479 1796 LSI_FC - ok
13:31:08.0479 1796 LSI_SAS (8ade1c877256a22e49b75d1cc9161f9c) C:\Windows\system32\DRIVERS\lsi_sas.sys
13:31:08.0479 1796 LSI_SAS - ok
13:31:08.0510 1796 LSI_SAS2 (dc9dc3d3daa0e276fd2ec262e38b11e9) C:\Windows\system32\DRIVERS\lsi_sas2.sys
13:31:08.0510 1796 LSI_SAS2 - ok
13:31:08.0526 1796 LSI_SCSI (0a036c7d7cab643a7f07135ac47e0524) C:\Windows\system32\DRIVERS\lsi_scsi.sys
13:31:08.0526 1796 LSI_SCSI - ok
13:31:08.0541 1796 luafv (6703e366cc18d3b6e534f5cf7df39cee) C:\Windows\system32\drivers\luafv.sys
13:31:08.0541 1796 luafv - ok
13:31:08.0572 1796 MBAMProtector (fb097bbc1a18f044bd17bd2fccf97865) C:\Windows\system32\drivers\mbam.sys
13:31:08.0572 1796 MBAMProtector - ok
13:31:08.0650 1796 MBAMService (ba400ed640bca1eae5c727ae17c10207) C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
13:31:08.0666 1796 MBAMService - ok
13:31:08.0697 1796 Mcx2Svc (e2b0887816ed336685954e3d8fdaa51d) C:\Windows\system32\Mcx2Svc.dll
13:31:08.0697 1796 Mcx2Svc - ok
13:31:08.0728 1796 megasas (0fff5b045293002ab38eb1fd1fc2fb74) C:\Windows\system32\DRIVERS\megasas.sys
13:31:08.0728 1796 megasas - ok
13:31:08.0775 1796 MegaSR (dcbab2920c75f390caf1d29f675d03d6) C:\Windows\system32\DRIVERS\MegaSR.sys
13:31:08.0775 1796 MegaSR - ok
13:31:08.0869 1796 Microsoft Office Groove Audit Service (123271bd5237ab991dc5c21fdf8835eb) C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe
13:31:08.0869 1796 Microsoft Office Groove Audit Service - ok
13:31:08.0900 1796 MMCSS (146b6f43a673379a3c670e86d89be5ea) C:\Windows\system32\mmcss.dll
13:31:08.0900 1796 MMCSS - ok
13:31:08.0916 1796 Modem (f001861e5700ee84e2d4e52c712f4964) C:\Windows\system32\drivers\modem.sys
13:31:08.0916 1796 Modem - ok
13:31:08.0978 1796 monitor (79d10964de86b292320e9dfe02282a23) C:\Windows\system32\DRIVERS\monitor.sys
13:31:08.0978 1796 monitor - ok
13:31:09.0009 1796 mouclass (fb18cc1d4c2e716b6b903b0ac0cc0609) C:\Windows\system32\DRIVERS\mouclass.sys
13:31:09.0009 1796 mouclass - ok
13:31:09.0025 1796 mouhid (2c388d2cd01c9042596cf3c8f3c7b24d) C:\Windows\system32\DRIVERS\mouhid.sys
13:31:09.0025 1796 mouhid - ok
13:31:09.0056 1796 mountmgr (921c18727c5920d6c0300736646931c2) C:\Windows\system32\drivers\mountmgr.sys
13:31:09.0056 1796 mountmgr - ok
13:31:09.0072 1796 mpio (2af5997438c55fb79d33d015c30e1974) C:\Windows\system32\DRIVERS\mpio.sys
13:31:09.0072 1796 mpio - ok
13:31:09.0087 1796 mpsdrv (ad2723a7b53dd1aacae6ad8c0bfbf4d0) C:\Windows\system32\drivers\mpsdrv.sys
13:31:09.0087 1796 mpsdrv - ok
13:31:09.0118 1796 MRxDAV (b1be47008d20e43da3adc37c24cdb89d) C:\Windows\system32\drivers\mrxdav.sys
13:31:09.0118 1796 MRxDAV - ok
13:31:09.0165 1796 mrxsmb (ca7570e42522e24324a12161db14ec02) C:\Windows\system32\DRIVERS\mrxsmb.sys
13:31:09.0165 1796 mrxsmb - ok
13:31:09.0196 1796 mrxsmb10 (f965c3ab2b2ae5c378f4562486e35051) C:\Windows\system32\DRIVERS\mrxsmb10.sys
13:31:09.0196 1796 mrxsmb10 - ok
13:31:09.0228 1796 mrxsmb20 (25c38264a3c72594dd21d355d70d7a5d) C:\Windows\system32\DRIVERS\mrxsmb20.sys
13:31:09.0228 1796 mrxsmb20 - ok
13:31:09.0290 1796 msahci (4326d168944123f38dd3b2d9c37a0b12) C:\Windows\system32\DRIVERS\msahci.sys
13:31:09.0290 1796 msahci - ok
13:31:09.0306 1796 msdsm (455029c7174a2dbb03dba8a0d8bddd9a) C:\Windows\system32\DRIVERS\msdsm.sys
13:31:09.0306 1796 msdsm - ok
13:31:09.0337 1796 MSDTC (e1bce74a3bd9902b72599c0192a07e27) C:\Windows\System32\msdtc.exe
13:31:09.0352 1796 MSDTC - ok
13:31:09.0368 1796 Msfs (daefb28e3af5a76abcc2c3078c07327f) C:\Windows\system32\drivers\Msfs.sys
13:31:09.0368 1796 Msfs - ok
13:31:09.0384 1796 mshidkmdf (3e1e5767043c5af9367f0056295e9f84) C:\Windows\System32\drivers\mshidkmdf.sys
13:31:09.0384 1796 mshidkmdf - ok
13:31:09.0399 1796 msisadrv (0a4e5757ae09fa9622e3158cc1aef114) C:\Windows\system32\DRIVERS\msisadrv.sys
13:31:09.0399 1796 msisadrv - ok
13:31:09.0430 1796 MSiSCSI (90f7d9e6b6f27e1a707d4a297f077828) C:\Windows\system32\iscsiexe.dll
13:31:09.0430 1796 MSiSCSI - ok
13:31:09.0430 1796 msiserver - ok
13:31:09.0462 1796 MSKSSRV (8c0860d6366aaffb6c5bb9df9448e631) C:\Windows\system32\drivers\MSKSSRV.sys
13:31:09.0462 1796 MSKSSRV - ok
13:31:09.0462 1796 MSPCLOCK (3ea8b949f963562cedbb549eac0c11ce) C:\Windows\system32\drivers\MSPCLOCK.sys
13:31:09.0462 1796 MSPCLOCK - ok
13:31:09.0477 1796 MSPQM (f456e973590d663b1073e9c463b40932) C:\Windows\system32\drivers\MSPQM.sys
13:31:09.0477 1796 MSPQM - ok
13:31:09.0493 1796 MsRPC (0e008fc4819d238c51d7c93e7b41e560) C:\Windows\system32\drivers\MsRPC.sys
13:31:09.0493 1796 MsRPC - ok
13:31:09.0508 1796 mssmbios (fc6b9ff600cc585ea38b12589bd4e246) C:\Windows\system32\DRIVERS\mssmbios.sys
13:31:09.0508 1796 mssmbios - ok
13:31:09.0524 1796 MSTEE (b42c6b921f61a6e55159b8be6cd54a36) C:\Windows\system32\drivers\MSTEE.sys
13:31:09.0524 1796 MSTEE - ok
13:31:09.0540 1796 MTConfig (33599130f44e1f34631cea241de8ac84) C:\Windows\system32\DRIVERS\MTConfig.sys
13:31:09.0540 1796 MTConfig - ok
13:31:09.0586 1796 MTsensor (97affa9d95ffe20eee6229bc6be166cf) C:\Windows\system32\DRIVERS\ATKACPI.sys
13:31:09.0586 1796 MTsensor - ok
13:31:09.0602 1796 Mup (159fad02f64e6381758c990f753bcc80) C:\Windows\system32\Drivers\mup.sys
13:31:09.0602 1796 Mup - ok
13:31:09.0664 1796 napagent (80284f1985c70c86f0b5f86da2dfe1df) C:\Windows\system32\qagentRT.dll
13:31:09.0664 1796 napagent - ok
13:31:09.0727 1796 NativeWifiP (26384429fcd85d83746f63e798ab1480) C:\Windows\system32\DRIVERS\nwifi.sys
13:31:09.0727 1796 NativeWifiP - ok
13:31:09.0758 1796 nctptm (e6d35f3aa51a65eb35c1f2340154a25e) C:\Windows\system32\drivers\reurj.sys
13:31:09.0758 1796 nctptm - ok
13:31:09.0820 1796 NDIS (23759d175a0a9baaf04d05047bc135a8) C:\Windows\system32\drivers\ndis.sys
13:31:09.0820 1796 NDIS - ok
13:31:09.0867 1796 NdisCap (0e1787aa6c9191d3d319e8bafe86f80c) C:\Windows\system32\DRIVERS\ndiscap.sys
13:31:09.0867 1796 NdisCap - ok
13:31:09.0898 1796 NdisTapi (e4a8aec125a2e43a9e32afeea7c9c888) C:\Windows\system32\DRIVERS\ndistapi.sys
13:31:09.0898 1796 NdisTapi - ok
13:31:09.0914 1796 Ndisuio (b30ae7f2b6d7e343b0df32e6c08fce75) C:\Windows\system32\DRIVERS\ndisuio.sys
13:31:09.0914 1796 Ndisuio - ok
13:31:09.0945 1796 NdisWan (267c415eadcbe53c9ca873dee39cf3a4) C:\Windows\system32\DRIVERS\ndiswan.sys
13:31:09.0945 1796 NdisWan - ok
13:31:09.0961 1796 NDProxy (af7e7c63dcef3f8772726f86039d6eb4) C:\Windows\system32\drivers\NDProxy.sys
13:31:09.0961 1796 NDProxy - ok
13:31:09.0976 1796 NetBIOS (80b275b1ce3b0e79909db7b39af74d51) C:\Windows\system32\DRIVERS\netbios.sys
13:31:09.0976 1796 NetBIOS - ok
13:31:09.0992 1796 NetBT (dd52a733bf4ca5af84562a5e2f963b91) C:\Windows\system32\DRIVERS\netbt.sys
13:31:09.0992 1796 NetBT - ok
13:31:10.0023 1796 Netlogon (c2243ff9e9aad0c30e8b1a0914da15b6) C:\Windows\system32\lsass.exe
13:31:10.0023 1796 Netlogon - ok
13:31:10.0086 1796 Netman (7cccfca7510684768da22092d1fa4db2) C:\Windows\System32\netman.dll
13:31:10.0086 1796 Netman - ok
13:31:10.0195 1796 NetMsmqActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
13:31:10.0195 1796 NetMsmqActivator - ok
13:31:10.0210 1796 NetPipeActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
13:31:10.0210 1796 NetPipeActivator - ok
13:31:10.0257 1796 netprofm (8c338238c16777a802d6a9211eb2ba50) C:\Windows\System32\netprofm.dll
13:31:10.0257 1796 netprofm - ok
13:31:10.0273 1796 NetTcpActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
13:31:10.0273 1796 NetTcpActivator - ok
13:31:10.0273 1796 NetTcpPortSharing (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
13:31:10.0273 1796 NetTcpPortSharing - ok
13:31:10.0335 1796 nfrd960 (1d85c4b390b0ee09c7a46b91efb2c097) C:\Windows\system32\DRIVERS\nfrd960.sys
13:31:10.0335 1796 nfrd960 - ok
13:31:10.0351 1796 NlaSvc (2226496e34bd40734946a054b1cd657f) C:\Windows\System32\nlasvc.dll
13:31:10.0366 1796 NlaSvc - ok
13:31:10.0382 1796 Npfs (1db262a9f8c087e8153d89bef3d2235f) C:\Windows\system32\drivers\Npfs.sys
13:31:10.0382 1796 Npfs - ok
13:31:10.0398 1796 nsi (ba387e955e890c8a88306d9b8d06bf17) C:\Windows\system32\nsisvc.dll
13:31:10.0398 1796 nsi - ok
13:31:10.0444 1796 nsiproxy (e9a0a4d07e53d8fea2bb8387a3293c58) C:\Windows\system32\drivers\nsiproxy.sys
13:31:10.0460 1796 nsiproxy - ok
13:31:10.0538 1796 Ntfs (187002ce05693c306f43c873f821381f) C:\Windows\system32\drivers\Ntfs.sys
13:31:10.0538 1796 Ntfs - ok
13:31:10.0569 1796 Null (f9756a98d69098dca8945d62858a812c) C:\Windows\system32\drivers\Null.sys
13:31:10.0569 1796 Null - ok
13:31:10.0616 1796 nvraid (f1b0bed906f97e16f6d0c3629d2f21c6) C:\Windows\system32\drivers\nvraid.sys
13:31:10.0616 1796 nvraid - ok
13:31:10.0647 1796 nvstor (4520b63899e867f354ee012d34e11536) C:\Windows\system32\drivers\nvstor.sys
13:31:10.0647 1796 nvstor - ok
13:31:10.0663 1796 nv_agp (5a0983915f02bae73267cc2a041f717d) C:\Windows\system32\DRIVERS\nv_agp.sys
13:31:10.0663 1796 nv_agp - ok
13:31:10.0772 1796 odserv (785f487a64950f3cb8e9f16253ba3b7b) C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
13:31:10.0772 1796 odserv - ok
13:31:10.0819 1796 ohci1394 (08a70a1f2cdde9bb49b885cb817a66eb) C:\Windows\system32\DRIVERS\ohci1394.sys
13:31:10.0819 1796 ohci1394 - ok
13:31:10.0866 1796 ose (9d10f99a6712e28f8acd5641e3a7ea6b) C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
13:31:10.0866 1796 ose - ok
13:31:10.0912 1796 p2pimsvc (82a8521ddc60710c3d3d3e7325209bec) C:\Windows\system32\pnrpsvc.dll
13:31:10.0928 1796 p2pimsvc - ok
13:31:10.0959 1796 p2psvc (59c3ddd501e39e006dac31bf55150d91) C:\Windows\system32\p2psvc.dll
13:31:10.0959 1796 p2psvc - ok
13:31:11.0006 1796 Parport (2ea877ed5dd9713c5ac74e8ea7348d14) C:\Windows\system32\DRIVERS\parport.sys
13:31:11.0006 1796 Parport - ok
13:31:11.0022 1796 partmgr (66d3415c159741ade7038a277efff99f) C:\Windows\system32\drivers\partmgr.sys
13:31:11.0022 1796 partmgr - ok
13:31:11.0037 1796 Parvdm (eb0a59f29c19b86479d36b35983daadc) C:\Windows\system32\DRIVERS\parvdm.sys
13:31:11.0037 1796 Parvdm - ok
13:31:11.0084 1796 PcaSvc (358ab7956d3160000726574083dfc8a6) C:\Windows\System32\pcasvc.dll
13:31:11.0084 1796 PcaSvc - ok
13:31:11.0100 1796 pci (c858cb77c577780ecc456a892e7e7d0f) C:\Windows\system32\DRIVERS\pci.sys
13:31:11.0115 1796 pci - ok
13:31:11.0131 1796 pciide (afe86f419014db4e5593f69ffe26ce0a) C:\Windows\system32\DRIVERS\pciide.sys
13:31:11.0131 1796 pciide - ok
13:31:11.0146 1796 pcmcia (f396431b31693e71e8a80687ef523506) C:\Windows\system32\DRIVERS\pcmcia.sys
13:31:11.0146 1796 pcmcia - ok
13:31:11.0178 1796 pcw (250f6b43d2b613172035c6747aeeb19f) C:\Windows\system32\drivers\pcw.sys
13:31:11.0178 1796 pcw - ok
13:31:11.0224 1796 PEAUTH (9e0104ba49f4e6973749a02bf41344ed) C:\Windows\system32\drivers\peauth.sys
13:31:11.0240 1796 PEAUTH - ok
13:31:11.0302 1796 PeerDistSvc (af4d64d2a57b9772cf3801950b8058a6) C:\Windows\system32\peerdistsvc.dll
13:31:11.0318 1796 PeerDistSvc - ok
13:31:11.0412 1796 pla (9c1bff7910c89a1d12e57343475840cb) C:\Windows\system32\pla.dll
13:31:11.0427 1796 pla - ok
13:31:11.0568 1796 PlugPlay (71def5ec79774c798342d0ea16e41780) C:\Windows\system32\umpnpmgr.dll
13:31:11.0568 1796 PlugPlay - ok
13:31:11.0583 1796 PNRPAutoReg (63ff8572611249931eb16bb8eed6afc8) C:\Windows\system32\pnrpauto.dll
13:31:11.0583 1796 PNRPAutoReg - ok
13:31:11.0614 1796 PNRPsvc (82a8521ddc60710c3d3d3e7325209bec) C:\Windows\system32\pnrpsvc.dll
13:31:11.0614 1796 PNRPsvc - ok
13:31:11.0661 1796 PolicyAgent (48e1b75c6dc0232fd92baae4bd344721) C:\Windows\System32\ipsecsvc.dll
13:31:11.0661 1796 PolicyAgent - ok
13:31:11.0692 1796 Power (dbff83f709a91049621c1d35dd45c92c) C:\Windows\system32\umpo.dll
13:31:11.0708 1796 Power - ok
13:31:11.0755 1796 PptpMiniport (631e3e205ad6d86f2aed6a4a8e69f2db) C:\Windows\system32\DRIVERS\raspptp.sys
13:31:11.0755 1796 PptpMiniport - ok
13:31:11.0786 1796 Processor (85b1e3a0c7585bc4aae6899ec6fcf011) C:\Windows\system32\DRIVERS\processr.sys
13:31:11.0786 1796 Processor - ok
13:31:11.0848 1796 ProfSvc (aea3bdbdba667aa6f678cb38907e4f5e) C:\Windows\system32\profsvc.dll
13:31:11.0848 1796 ProfSvc - ok
13:31:11.0880 1796 ProtectedStorage (c2243ff9e9aad0c30e8b1a0914da15b6) C:\Windows\system32\lsass.exe
13:31:11.0880 1796 ProtectedStorage - ok
13:31:11.0942 1796 Psched (6270ccae2a86de6d146529fe55b3246a) C:\Windows\system32\DRIVERS\pacer.sys
13:31:11.0942 1796 Psched - ok
13:31:12.0020 1796 ql2300 (ab95ecf1f6659a60ddc166d8315b0751) C:\Windows\system32\DRIVERS\ql2300.sys
13:31:12.0020 1796 ql2300 - ok
13:31:12.0160 1796 ql40xx (b4dd51dd25182244b86737dc51af2270) C:\Windows\system32\DRIVERS\ql40xx.sys
13:31:12.0176 1796 ql40xx - ok
13:31:12.0207 1796 QWAVE (31ac809e7707eb580b2bdb760390765a) C:\Windows\system32\qwave.dll
13:31:12.0207 1796 QWAVE - ok
13:31:12.0223 1796 QWAVEdrv (584078ca1b95ca72df2a27c336f9719d) C:\Windows\system32\drivers\qwavedrv.sys
13:31:12.0223 1796 QWAVEdrv - ok
13:31:12.0254 1796 RasAcd (30a81b53c766d0133bb86d234e5556ab) C:\Windows\system32\DRIVERS\rasacd.sys
13:31:12.0254 1796 RasAcd - ok
13:31:12.0301 1796 RasAgileVpn (57ec4aef73660166074d8f7f31c0d4fd) C:\Windows\system32\DRIVERS\AgileVpn.sys
13:31:12.0301 1796 RasAgileVpn - ok
13:31:12.0316 1796 RasAuto (a60f1839849c0c00739787fd5ec03f13) C:\Windows\System32\rasauto.dll
13:31:12.0316 1796 RasAuto - ok
13:31:12.0348 1796 Rasl2tp (d9f91eafec2815365cbe6d167e4e332a) C:\Windows\system32\DRIVERS\rasl2tp.sys
13:31:12.0348 1796 Rasl2tp - ok
13:31:12.0379 1796 RasMan (0ce66ec736b7fc526d78f7624c7d2a94) C:\Windows\System32\rasmans.dll
13:31:12.0379 1796 RasMan - ok
13:31:12.0426 1796 RasPppoe (0fe8b15916307a6ac12bfb6a63e45507) C:\Windows\system32\DRIVERS\raspppoe.sys
13:31:12.0426 1796 RasPppoe - ok
13:31:12.0441 1796 RasSstp (44101f495a83ea6401d886e7fd70096b) C:\Windows\system32\DRIVERS\rassstp.sys
13:31:12.0441 1796 RasSstp - ok
13:31:12.0457 1796 rdbss (835d7e81bf517a3b72384bdcc85e1ce6) C:\Windows\system32\DRIVERS\rdbss.sys
13:31:12.0457 1796 rdbss - ok
13:31:12.0472 1796 rdpbus (0d8f05481cb76e70e1da06ee9f0da9df) C:\Windows\system32\DRIVERS\rdpbus.sys
13:31:12.0472 1796 rdpbus - ok
13:31:12.0488 1796 RDPCDD (1e016846895b15a99f9a176a05029075) C:\Windows\system32\DRIVERS\RDPCDD.sys
13:31:12.0488 1796 RDPCDD - ok
13:31:12.0535 1796 RDPDR (c5ff95883ffef704d50c40d21cfb3ab5) C:\Windows\system32\drivers\rdpdr.sys
13:31:12.0535 1796 RDPDR - ok
13:31:12.0550 1796 RDPENCDD (5a53ca1598dd4156d44196d200c94b8a) C:\Windows\system32\drivers\rdpencdd.sys
13:31:12.0550 1796 RDPENCDD - ok
13:31:12.0566 1796 RDPREFMP (44b0a53cd4f27d50ed461dae0c0b4e1f) C:\Windows\system32\drivers\rdprefmp.sys
13:31:12.0566 1796 RDPREFMP - ok
13:31:12.0597 1796 RDPWD (c5b8d47a4688de9d335204ea757c2240) C:\Windows\system32\drivers\RDPWD.sys
13:31:12.0613 1796 RDPWD - ok
13:31:12.0644 1796 rdyboost (4ea225bf1cf05e158853f30a99ca29a7) C:\Windows\system32\drivers\rdyboost.sys
13:31:12.0644 1796 rdyboost - ok
13:31:12.0691 1796 RemoteAccess (7b5e1419717fac363a31cc302895217a) C:\Windows\System32\mprdim.dll
13:31:12.0691 1796 RemoteAccess - ok
13:31:12.0738 1796 RemoteRegistry (cb9a8683f4ef2bf99e123d79950d7935) C:\Windows\system32\regsvc.dll
13:31:12.0738 1796 RemoteRegistry - ok
13:31:12.0753 1796 RpcEptMapper (78d072f35bc45d9e4e1b61895c152234) C:\Windows\System32\RpcEpMap.dll
13:31:12.0753 1796 RpcEptMapper - ok
13:31:12.0769 1796 RpcLocator (94d36c0e44677dd26981d2bfeef2a29d) C:\Windows\system32\locator.exe
13:31:12.0769 1796 RpcLocator - ok
13:31:12.0784 1796 RpcSs (b82cd39e336973359d7c9bf911e8e84f) C:\Windows\system32\rpcss.dll
13:31:12.0800 1796 RpcSs - ok
13:31:12.0847 1796 rspndr (032b0d36ad92b582d869879f5af5b928) C:\Windows\system32\DRIVERS\rspndr.sys
13:31:12.0847 1796 rspndr - ok
13:31:12.0894 1796 s3cap (5423d8437051e89dd34749f242c98648) C:\Windows\system32\DRIVERS\vms3cap.sys
13:31:12.0894 1796 s3cap - ok
13:31:12.0925 1796 SamSs (c2243ff9e9aad0c30e8b1a0914da15b6) C:\Windows\system32\lsass.exe
13:31:12.0925 1796 SamSs - ok
13:31:12.0956 1796 sbp2port (34ee0c44b724e3e4ce2eff29126de5b5) C:\Windows\system32\DRIVERS\sbp2port.sys
13:31:12.0956 1796 sbp2port - ok
13:31:12.0987 1796 SCardSvr (8fc518ffe9519c2631d37515a68009c4) C:\Windows\System32\SCardSvr.dll
13:31:12.0987 1796 SCardSvr - ok
13:31:13.0003 1796 scfilter (a95c54b2ac3cc9c73fcdf9e51a1d6b51) C:\Windows\system32\DRIVERS\scfilter.sys
13:31:13.0003 1796 scfilter - ok
13:31:13.0065 1796 Schedule (df1e5c82e4d09cf8105cc644980c4803) C:\Windows\system32\schedsvc.dll
13:31:13.0081 1796 Schedule - ok
13:31:13.0112 1796 SCPolicySvc (628a9e30ec5e18dd5de6be4dbdc12198) C:\Windows\System32\certprop.dll
13:31:13.0112 1796 SCPolicySvc - ok
13:31:13.0128 1796 SDRSVC (5fd90abdbfaee85986802622cbb03446) C:\Windows\System32\SDRSVC.dll
13:31:13.0128 1796 SDRSVC - ok
13:31:13.0159 1796 secdrv (90a3935d05b494a5a39d37e71f09a677) C:\Windows\system32\drivers\secdrv.sys
13:31:13.0159 1796 secdrv - ok
13:31:13.0174 1796 seclogon (a59b3a4442c52060cc7a85293aa3546f) C:\Windows\system32\seclogon.dll
13:31:13.0174 1796 seclogon - ok
13:31:13.0206 1796 SENS (dcb7fcdcc97f87360f75d77425b81737) C:\Windows\System32\sens.dll
13:31:13.0206 1796 SENS - ok
13:31:13.0252 1796 SensrSvc (50087fe1ee447009c9cc2997b90de53f) C:\Windows\system32\sensrsvc.dll
13:31:13.0252 1796 SensrSvc - ok
13:31:13.0268 1796 Serenum (9ad8b8b515e3df6acd4212ef465de2d1) C:\Windows\system32\DRIVERS\serenum.sys
13:31:13.0268 1796 Serenum - ok
13:31:13.0315 1796 Serial (5fb7fcea0490d821f26f39cc5ea3d1e2) C:\Windows\system32\DRIVERS\serial.sys
13:31:13.0315 1796 Serial - ok
13:31:13.0330 1796 sermouse (79bffb520327ff916a582dfea17aa813) C:\Windows\system32\DRIVERS\sermouse.sys
13:31:13.0330 1796 sermouse - ok
13:31:13.0377 1796 SessionEnv (8f55ce568c543d5adf45c409d16718fc) C:\Windows\system32\sessenv.dll
13:31:13.0377 1796 SessionEnv - ok
13:31:13.0408 1796 sffdisk (9f976e1eb233df46fce808d9dea3eb9c) C:\Windows\system32\DRIVERS\sffdisk.sys
13:31:13.0408 1796 sffdisk - ok
13:31:13.0424 1796 sffp_mmc (932a68ee27833cfd57c1639d375f2731) C:\Windows\system32\DRIVERS\sffp_mmc.sys
13:31:13.0424 1796 sffp_mmc - ok
13:31:13.0440 1796 sffp_sd (4f1e5b0fe7c8050668dbfade8999aefb) C:\Windows\system32\DRIVERS\sffp_sd.sys
13:31:13.0440 1796 sffp_sd - ok
13:31:13.0455 1796 sfloppy (db96666cc8312ebc45032f30b007a547) C:\Windows\system32\DRIVERS\sfloppy.sys
13:31:13.0455 1796 sfloppy - ok
13:31:13.0486 1796 ShellHWDetection (cd2e48fa5b29ee2b3b5858056d246ef2) C:\Windows\System32\shsvcs.dll
13:31:13.0486 1796 ShellHWDetection - ok
13:31:13.0518 1796 sisagp (2565cac0dc9fe0371bdce60832582b2e) C:\Windows\system32\DRIVERS\sisagp.sys
13:31:13.0518 1796 sisagp - ok
13:31:13.0533 1796 SiSRaid2 (a9f0486851becb6dda1d89d381e71055) C:\Windows\system32\DRIVERS\SiSRaid2.sys
13:31:13.0533 1796 SiSRaid2 - ok
13:31:13.0564 1796 SiSRaid4 (3727097b55738e2f554972c3be5bc1aa) C:\Windows\system32\DRIVERS\sisraid4.sys
13:31:13.0564 1796 SiSRaid4 - ok
13:31:13.0596 1796 Smb (3e21c083b8a01cb70ba1f09303010fce) C:\Windows\system32\DRIVERS\smb.sys
13:31:13.0596 1796 Smb - ok
13:31:13.0627 1796 SNMPTRAP (6a984831644eca1a33ffeae4126f4f37) C:\Windows\System32\snmptrap.exe
13:31:13.0627 1796 SNMPTRAP - ok
13:31:13.0642 1796 spldr (95cf1ae7527fb70f7816563cbc09d942) C:\Windows\system32\drivers\spldr.sys
13:31:13.0642 1796 spldr - ok
13:31:13.0689 1796 Spooler (d1bb750eb51694de183e08b9c33be5b2) C:\Windows\System32\spoolsv.exe
13:31:13.0689 1796 Spooler - ok
13:31:13.0830 1796 sppsvc (4c287f9069fedbd791178876ee9de536) C:\Windows\system32\sppsvc.exe
13:31:13.0861 1796 sppsvc - ok
13:31:13.0970 1796 sppuinotify (d8e3e19eebdab49dd4a8d3062ead4ec7) C:\Windows\system32\sppuinotify.dll
13:31:13.0986 1796 sppuinotify - ok
13:31:14.0095 1796 sptd (c37e56fe9d5c2cb4aa544fc7eaf05de1) C:\Windows\system32\Drivers\sptd.sys
13:31:14.0095 1796 sptd - ok
13:31:14.0157 1796 srv (c4a027b8c0bd3fc0699f41fa5e9e0c87) C:\Windows\system32\DRIVERS\srv.sys
13:31:14.0157 1796 srv - ok
13:31:14.0173 1796 srv2 (414bb592cad8a79649d01f9d94318fb3) C:\Windows\system32\DRIVERS\srv2.sys
13:31:14.0173 1796 srv2 - ok
13:31:14.0204 1796 srvnet (ff207d67700aa18242aaf985d3e7d8f4) C:\Windows\system32\DRIVERS\srvnet.sys
13:31:14.0204 1796 srvnet - ok
13:31:14.0235 1796 SSDPSRV (d887c9fd02ac9fa880f6e5027a43e118) C:\Windows\System32\ssdpsrv.dll
13:31:14.0251 1796 SSDPSRV - ok
13:31:14.0282 1796 ssmdrv (a36ee93698802cd899f98bfd553d8185) C:\Windows\system32\DRIVERS\ssmdrv.sys
13:31:14.0282 1796 ssmdrv - ok
13:31:14.0298 1796 SstpSvc (d318f23be45d5e3a107469eb64815b50) C:\Windows\system32\sstpsvc.dll
13:31:14.0298 1796 SstpSvc - ok
13:31:14.0344 1796 stexstor (db32d325c192b801df274bfd12a7e72b) C:\Windows\system32\DRIVERS\stexstor.sys
13:31:14.0344 1796 stexstor - ok
13:31:14.0391 1796 StiSvc (a22825e7bb7018e8af3e229a5af17221) C:\Windows\System32\wiaservc.dll
13:31:14.0407 1796 StiSvc - ok
13:31:14.0438 1796 storflt (957e346ca948668f2496a6ccf6ff82cc) C:\Windows\system32\DRIVERS\vmstorfl.sys
13:31:14.0438 1796 storflt - ok
13:31:14.0469 1796 StorSvc (0bf669f0a910beda4a32258d363af2a5) C:\Windows\system32\storsvc.dll
13:31:14.0469 1796 StorSvc - ok
13:31:14.0485 1796 storvsc (d5751969dc3e4b88bf482ac8ec9fe019) C:\Windows\system32\DRIVERS\storvsc.sys
13:31:14.0485 1796 storvsc - ok
13:31:14.0516 1796 swenum (e58c78a848add9610a4db6d214af5224) C:\Windows\system32\DRIVERS\swenum.sys
13:31:14.0516 1796 swenum - ok
13:31:14.0563 1796 swprv (a28bd92df340e57b024ba433165d34d7) C:\Windows\System32\swprv.dll
13:31:14.0563 1796 swprv - ok
13:31:14.0625 1796 SysMain (04105c8da62353589c29bdaeb8d88bd8) C:\Windows\system32\sysmain.dll
13:31:14.0625 1796 SysMain - ok
13:31:14.0656 1796 TabletInputService (fcfb6c552fbc0da299799cbd50ad9fd4) C:\Windows\System32\TabSvc.dll
13:31:14.0656 1796 TabletInputService - ok
13:31:14.0688 1796 TapiSrv (2f46b0c70a4adc8c90cf825da3b4feaf) C:\Windows\System32\tapisrv.dll
13:31:14.0688 1796 TapiSrv - ok
13:31:14.0703 1796 TBS (b799d9fdb26111737f58288d8dc172d9) C:\Windows\System32\tbssvc.dll
13:31:14.0703 1796 TBS - ok
13:31:14.0797 1796 Tcpip (55e9965552741f3850cb22cbba9671ed) C:\Windows\system32\drivers\tcpip.sys
13:31:14.0812 1796 Tcpip - ok
13:31:14.0953 1796 TCPIP6 (55e9965552741f3850cb22cbba9671ed) C:\Windows\system32\DRIVERS\tcpip.sys
13:31:14.0953 1796 TCPIP6 - ok
13:31:15.0062 1796 tcpipreg (e64444523add154f86567c469bc0b17f) C:\Windows\system32\drivers\tcpipreg.sys
13:31:15.0078 1796 tcpipreg - ok
13:31:15.0093 1796 TDPIPE (1875c1490d99e70e449e3afae9fcbadf) C:\Windows\system32\drivers\tdpipe.sys
13:31:15.0093 1796 TDPIPE - ok
13:31:15.0109 1796 TDTCP (7156308896d34ea75a582f9a09e50c17) C:\Windows\system32\drivers\tdtcp.sys
13:31:15.0109 1796 TDTCP - ok
13:31:15.0140 1796 tdx (cb39e896a2a83702d1737bfd402b3542) C:\Windows\system32\DRIVERS\tdx.sys
13:31:15.0140 1796 tdx - ok
13:31:15.0343 1796 TeamViewer7 (74fc70ae64a7b7dabec9697ce0a1f4fa) C:\Program Files\TeamViewer\Version7\TeamViewer_Service.exe
13:31:15.0358 1796 TeamViewer7 - ok
13:31:15.0499 1796 TermDD (c36f41ee20e6999dbf4b0425963268a5) C:\Windows\system32\DRIVERS\termdd.sys
13:31:15.0499 1796 TermDD - ok
13:31:15.0546 1796 TermService (a01e50a04d7b1960b33e92b9080e6a94) C:\Windows\System32\termsrv.dll
13:31:15.0561 1796 TermService - ok
13:31:15.0577 1796 Themes (42fb6afd6b79d9fe07381609172e7ca4) C:\Windows\system32\themeservice.dll
13:31:15.0577 1796 Themes - ok
13:31:15.0608 1796 THREADORDER (146b6f43a673379a3c670e86d89be5ea) C:\Windows\system32\mmcss.dll
13:31:15.0608 1796 THREADORDER - ok
13:31:15.0655 1796 TrkWks (4792c0378db99a9bc2ae2de6cfff0c3a) C:\Windows\System32\trkwks.dll
13:31:15.0655 1796 TrkWks - ok
13:31:15.0717 1796 TrustedInstaller (41a4c781d2286208d397d72099304133) C:\Windows\servicing\TrustedInstaller.exe
13:31:15.0717 1796 TrustedInstaller - ok
13:31:15.0733 1796 tssecsrv (98ae6fa07d12cb4ec5cf4a9bfa5f4242) C:\Windows\system32\DRIVERS\tssecsrv.sys
13:31:15.0733 1796 tssecsrv - ok
13:31:15.0764 1796 tunnel (3e461d890a97f9d4c168f5fda36e1d00) C:\Windows\system32\DRIVERS\tunnel.sys
13:31:15.0764 1796 tunnel - ok
13:31:15.0811 1796 uagp35 (750fbcb269f4d7dd2e420c56b795db6d) C:\Windows\system32\DRIVERS\uagp35.sys
13:31:15.0811 1796 uagp35 - ok
13:31:15.0842 1796 udfs (09cc3e16f8e5ee7168e01cf8fcbe061a) C:\Windows\system32\DRIVERS\udfs.sys
13:31:15.0842 1796 udfs - ok
13:31:15.0889 1796 UI0Detect (8344fd4fce927880aa1aa7681d4927e5) C:\Windows\system32\UI0Detect.exe
13:31:15.0889 1796 UI0Detect - ok
13:31:15.0904 1796 uliagpkx (44e8048ace47befbfdc2e9be4cbc8880) C:\Windows\system32\DRIVERS\uliagpkx.sys
13:31:15.0904 1796 uliagpkx - ok
13:31:15.0936 1796 umbus (049b3a50b3d646baeeee9eec9b0668dc) C:\Windows\system32\DRIVERS\umbus.sys
13:31:15.0936 1796 umbus - ok
13:31:15.0951 1796 UmPass (7550ad0c6998ba1cb4843e920ee0feac) C:\Windows\system32\DRIVERS\umpass.sys
13:31:15.0951 1796 UmPass - ok
13:31:15.0982 1796 UmRdpService (8ecaca5454844f66386f7be4ae0d7cd1) C:\Windows\System32\umrdp.dll
13:31:15.0998 1796 UmRdpService - ok
13:31:16.0029 1796 upnphost (833fbb672460efce8011d262175fad33) C:\Windows\System32\upnphost.dll
13:31:16.0029 1796 upnphost - ok
13:31:16.0076 1796 usbccgp (c31ae588e403042632dc796cf09e30b0) C:\Windows\system32\DRIVERS\usbccgp.sys
13:31:16.0076 1796 usbccgp - ok
13:31:16.0107 1796 usbcir (04ec7cec62ec3b6d9354eee93327fc82) C:\Windows\system32\DRIVERS\usbcir.sys
13:31:16.0107 1796 usbcir - ok
13:31:16.0138 1796 usbehci (e4c436d914768ce965d5e659ba7eebd8) C:\Windows\system32\DRIVERS\usbehci.sys
13:31:16.0138 1796 usbehci - ok
13:31:16.0154 1796 usbhub (bdcd7156ec37448f08633fd899823620) C:\Windows\system32\DRIVERS\usbhub.sys
13:31:16.0170 1796 usbhub - ok
13:31:16.0185 1796 usbohci (eb2d819a639015253c871cda09d91d58) C:\Windows\system32\drivers\usbohci.sys
13:31:16.0185 1796 usbohci - ok
13:31:16.0201 1796 usbprint (797d862fe0875e75c7cc4c1ad7b30252) C:\Windows\system32\DRIVERS\usbprint.sys
13:31:16.0201 1796 usbprint - ok
13:31:16.0216 1796 USBSTOR (1c4287739a93594e57e2a9e6a3ed7353) C:\Windows\system32\DRIVERS\USBSTOR.SYS
13:31:16.0216 1796 USBSTOR - ok
13:31:16.0232 1796 usbuhci (22480bf4e5a09192e5e30ba4dde79fa4) C:\Windows\system32\DRIVERS\usbuhci.sys
13:31:16.0232 1796 usbuhci - ok
13:31:16.0294 1796 usbvideo (b5f6a992d996282b7fae7048e50af83a) C:\Windows\System32\Drivers\usbvideo.sys
13:31:16.0294 1796 usbvideo - ok
13:31:16.0341 1796 UxSms (081e6e1c91aec36758902a9f727cd23c) C:\Windows\System32\uxsms.dll
13:31:16.0341 1796 UxSms - ok
13:31:16.0372 1796 VaultSvc (c2243ff9e9aad0c30e8b1a0914da15b6) C:\Windows\system32\lsass.exe
13:31:16.0372 1796 VaultSvc - ok
13:31:16.0419 1796 vdrvroot (a059c4c3edb09e07d21a8e5c0aabd3cb) C:\Windows\system32\DRIVERS\vdrvroot.sys
13:31:16.0419 1796 vdrvroot - ok
13:31:16.0450 1796 vds (8c4e7c49d3641bc9e299e466a7f8867d) C:\Windows\System32\vds.exe
13:31:16.0450 1796 vds - ok
13:31:16.0466 1796 vga (17c408214ea61696cec9c66e388b14f3) C:\Windows\system32\DRIVERS\vgapnp.sys
13:31:16.0466 1796 vga - ok
13:31:16.0497 1796 VgaSave (8e38096ad5c8570a6f1570a61e251561) C:\Windows\System32\drivers\vga.sys
13:31:16.0497 1796 VgaSave - ok
13:31:16.0528 1796 vhdmp (3be6e1f3a4f1afec8cee0d7883f93583) C:\Windows\system32\DRIVERS\vhdmp.sys
13:31:16.0528 1796 vhdmp - ok
13:31:16.0591 1796 viaagp (c829317a37b4bea8f39735d4b076e923) C:\Windows\system32\DRIVERS\viaagp.sys
13:31:16.0591 1796 viaagp - ok
13:31:16.0622 1796 ViaC7 (e02f079a6aa107f06b16549c6e5c7b74) C:\Windows\system32\DRIVERS\viac7.sys
13:31:16.0622 1796 ViaC7 - ok
13:31:16.0700 1796 VIAHdAudAddService (f6c19f00f10343af369f6251969e9047) C:\Windows\system32\drivers\viahduaa.sys
13:31:16.0716 1796 VIAHdAudAddService - ok
13:31:16.0747 1796 viaide (e43574f6a56a0ee11809b48c09e4fd3c) C:\Windows\system32\DRIVERS\viaide.sys
13:31:16.0747 1796 viaide - ok
13:31:16.0778 1796 vmbus (379b349f65f453d2a6e75ea6b7448e49) C:\Windows\system32\DRIVERS\vmbus.sys
13:31:16.0778 1796 vmbus - ok
13:31:16.0809 1796 VMBusHID (ec2bbab4b84d0738c6c83d2234dc36fe) C:\Windows\system32\DRIVERS\VMBusHID.sys
13:31:16.0809 1796 VMBusHID - ok
13:31:16.0825 1796 volmgr (384e5a2aa49934295171e499f86ba6f3) C:\Windows\system32\DRIVERS\volmgr.sys
13:31:16.0825 1796 volmgr - ok
13:31:16.0856 1796 volmgrx (b5bb72067ddddbbfb04b2f89ff8c3c87) C:\Windows\system32\drivers\volmgrx.sys
13:31:16.0872 1796 volmgrx - ok
13:31:16.0887 1796 volsnap (58df9d2481a56edde167e51b334d44fd) C:\Windows\system32\DRIVERS\volsnap.sys
13:31:16.0887 1796 volsnap - ok
13:31:16.0934 1796 vpcbus (33e74df34753fcaab06f6f2bdc8cabf5) C:\Windows\system32\DRIVERS\vpchbus.sys
13:31:16.0934 1796 vpcbus - ok
13:31:16.0981 1796 vpcnfltr (5f04362ceb5fb5901037e9d9eadd3760) C:\Windows\system32\DRIVERS\vpcnfltr.sys
13:31:16.0981 1796 vpcnfltr - ok
13:31:16.0996 1796 vpcusb (625088d6ee9ede977fd03cf18d1cd5c5) C:\Windows\system32\DRIVERS\vpcusb.sys
13:31:16.0996 1796 vpcusb - ok
13:31:17.0043 1796 vpcvmm (5ed378d91e32134f3c0b3810860ffd71) C:\Windows\system32\drivers\vpcvmm.sys
13:31:17.0043 1796 vpcvmm - ok
13:31:17.0090 1796 vsmraid (9dfa0cc2f8855a04816729651175b631) C:\Windows\system32\DRIVERS\vsmraid.sys
13:31:17.0090 1796 vsmraid - ok
13:31:17.0168 1796 VSS (7ea2bcd94d9cfaf4c556f5cc94532a6c) C:\Windows\system32\vssvc.exe
13:31:17.0168 1796 VSS - ok
13:31:17.0184 1796 vwifibus (90567b1e658001e79d7c8bbd3dde5aa6) C:\Windows\system32\DRIVERS\vwifibus.sys
13:31:17.0199 1796 vwifibus - ok
13:31:17.0230 1796 vwififlt (7090d3436eeb4e7da3373090a23448f7) C:\Windows\system32\DRIVERS\vwififlt.sys
13:31:17.0230 1796 vwififlt - ok
13:31:17.0262 1796 W32Time (55187fd710e27d5095d10a472c8baf1c) C:\Windows\system32\w32time.dll
13:31:17.0262 1796 W32Time - ok
13:31:17.0277 1796 WacomPen (de3721e89c653aa281428c8a69745d90) C:\Windows\system32\DRIVERS\wacompen.sys
13:31:17.0277 1796 WacomPen - ok
13:31:17.0293 1796 WANARP (692a712062146e96d28ba0b7d75de31b) C:\Windows\system32\DRIVERS\wanarp.sys
13:31:17.0293 1796 WANARP - ok
13:31:17.0293 1796 Wanarpv6 (692a712062146e96d28ba0b7d75de31b) C:\Windows\system32\DRIVERS\wanarp.sys
13:31:17.0308 1796 Wanarpv6 - ok
13:31:17.0418 1796 WatAdminSvc (353a04c273ec58475d8633e75ccd5604) C:\Windows\system32\Wat\WatAdminSvc.exe
13:31:17.0433 1796 WatAdminSvc - ok
13:31:17.0589 1796 wbengine (7790b77fe1e5ee47dcc66247095bb4c9) C:\Windows\system32\wbengine.exe
13:31:17.0589 1796 wbengine - ok
13:31:17.0620 1796 WbioSrvc (9614b5d29dc76ac3c29f6d2d3aa70e67) C:\Windows\System32\wbiosrvc.dll
13:31:17.0620 1796 WbioSrvc - ok
13:31:17.0667 1796 wcncsvc (6d9b75275c3e3a5f51aef81affadb2b6) C:\Windows\System32\wcncsvc.dll
13:31:17.0667 1796 wcncsvc - ok
13:31:17.0683 1796 WcsPlugInService (5d930b6357a6d2af4d7653bdabbf352f) C:\Windows\System32\WcsPlugInService.dll
13:31:17.0683 1796 WcsPlugInService - ok
13:31:17.0730 1796 Wd (1112a9badacb47b7c0bb0392e3158dff) C:\Windows\system32\DRIVERS\wd.sys
13:31:17.0730 1796 Wd - ok
13:31:17.0761 1796 Wdf01000 (9950e3d0f08141c7e89e64456ae7dc73) C:\Windows\system32\drivers\Wdf01000.sys
13:31:17.0761 1796 Wdf01000 - ok
13:31:17.0792 1796 WdiServiceHost (46ef9dc96265fd0b423db72e7c38c2a5) C:\Windows\system32\wdi.dll
13:31:17.0792 1796 WdiServiceHost - ok
13:31:17.0792 1796 WdiSystemHost (46ef9dc96265fd0b423db72e7c38c2a5) C:\Windows\system32\wdi.dll
13:31:17.0792 1796 WdiSystemHost - ok
13:31:17.0839 1796 WebClient (bb5ec38f8d4600119b4720bc5d4211f1) C:\Windows\System32\webclnt.dll
13:31:17.0839 1796 WebClient - ok
13:31:17.0854 1796 Wecsvc (760f0afe937a77cff27153206534f275) C:\Windows\system32\wecsvc.dll
13:31:17.0854 1796 Wecsvc - ok
13:31:17.0870 1796 wercplsupport (ac804569bb2364fb6017370258a4091b) C:\Windows\System32\wercplsupport.dll
13:31:17.0886 1796 wercplsupport - ok
13:31:17.0901 1796 WerSvc (08e420d873e4fd85241ee2421b02c4a4) C:\Windows\System32\WerSvc.dll
13:31:17.0901 1796 WerSvc - ok
13:31:17.0964 1796 WfpLwf (8b9a943f3b53861f2bfaf6c186168f79) C:\Windows\system32\DRIVERS\wfplwf.sys
13:31:17.0964 1796 WfpLwf - ok
13:31:17.0979 1796 WIMMount (5cf95b35e59e2a38023836fff31be64c) C:\Windows\system32\drivers\wimmount.sys
13:31:17.0979 1796 WIMMount - ok
13:31:17.0995 1796 WinHttpAutoProxySvc - ok
13:31:18.0073 1796 Winmgmt (f62e510b6ad4c21eb9fe8668ed251826) C:\Windows\system32\wbem\WMIsvc.dll
13:31:18.0073 1796 Winmgmt - ok
13:31:18.0151 1796 WinRM (c4f5d3901d1b41d602ddc196e0b95b51) C:\Windows\system32\WsmSvc.dll
13:31:18.0166 1796 WinRM - ok
13:31:18.0229 1796 Wlansvc (16935c98ff639d185086a3529b1f2067) C:\Windows\System32\wlansvc.dll
13:31:18.0244 1796 Wlansvc - ok
13:31:18.0291 1796 WmiAcpi (0217679b8fca58714c3bf2726d2ca84e) C:\Windows\system32\DRIVERS\wmiacpi.sys
13:31:18.0291 1796 WmiAcpi - ok
13:31:18.0354 1796 wmiApSrv (6eb6b66517b048d87dc1856ddf1f4c3f) C:\Windows\system32\wbem\WmiApSrv.exe
13:31:18.0354 1796 wmiApSrv - ok
13:31:18.0478 1796 WMPNetworkSvc (77fbd400984cf72ba0fc4b3489d65f74) C:\Program Files\Windows Media Player\wmpnetwk.exe
13:31:18.0478 1796 WMPNetworkSvc - ok
13:31:18.0634 1796 WPCSvc (a2f0ec770a92f2b3f9de6d518e11409c) C:\Windows\System32\wpcsvc.dll
13:31:18.0634 1796 WPCSvc - ok
13:31:18.0650 1796 WPDBusEnum (b7f658a2ebc07129538ad9ab35212637) C:\Windows\system32\wpdbusenum.dll
13:31:18.0650 1796 WPDBusEnum - ok
13:31:18.0697 1796 ws2ifsl (6db3276587b853bf886b69528fdb048c) C:\Windows\system32\drivers\ws2ifsl.sys
13:31:18.0697 1796 ws2ifsl - ok
13:31:18.0712 1796 WSearch - ok
13:31:18.0822 1796 wuauserv (fc3ec24fce372c89423e015a2ac1a31e) C:\Windows\system32\wuaueng.dll
13:31:18.0837 1796 wuauserv - ok
13:31:18.0978 1796 WudfPf (6f9b6c0c93232cff47d0f72d6db1d21e) C:\Windows\system32\drivers\WudfPf.sys
13:31:18.0978 1796 WudfPf - ok
13:31:18.0993 1796 WUDFRd (f91ff1e51fca30b3c3981db7d5924252) C:\Windows\system32\DRIVERS\WUDFRd.sys
13:31:18.0993 1796 WUDFRd - ok
13:31:19.0024 1796 wudfsvc (ddee3682fe97037c45f4d7ab467cb8b6) C:\Windows\System32\WUDFSvc.dll
13:31:19.0040 1796 wudfsvc - ok
13:31:19.0071 1796 WwanSvc (ff2d745b560f7c71b31f30f4d49f73d2) C:\Windows\System32\wwansvc.dll
13:31:19.0071 1796 WwanSvc - ok
13:31:19.0087 1796 MBR (0x1B8) (8e734bd7aa1d4f7e9af58df495f6cf9e) \Device\Harddisk0\DR0
13:31:19.0118 1796 \Device\Harddisk0\DR0 - ok
13:31:19.0118 1796 Boot (0x1200) (c9d3e61356c8003f8d0c2e010bc343a2) \Device\Harddisk0\DR0\Partition0
13:31:19.0134 1796 \Device\Harddisk0\DR0\Partition0 - ok
13:31:19.0165 1796 Boot (0x1200) (9938eafc910a5361aa4956fb42be02fa) \Device\Harddisk0\DR0\Partition1
13:31:19.0165 1796 \Device\Harddisk0\DR0\Partition1 - ok
13:31:19.0180 1796 Boot (0x1200) (cfd1b981377ed085b32c69fa75d0e9c3) \Device\Harddisk0\DR0\Partition2
13:31:19.0180 1796 \Device\Harddisk0\DR0\Partition2 - ok
13:31:19.0180 1796 ============================================================
13:31:19.0180 1796 Scan finished
13:31:19.0180 1796 ============================================================
13:31:19.0196 1648 Detected object count: 0
13:31:19.0196 1648 Actual detected object count: 0
13:31:42.0034 2044 Deinitialize success
Re: Zavirovaný PC
ten z combofixu mi sem nejde vložit, píše mi to že mám moc málo znaků, nebo pak že mám moc hodně.
nemohl by sis ho stáhnout z toho odkazu prosím?
nemohl by sis ho stáhnout z toho odkazu prosím?
- Žbeky
- Moderátor
-
Guru Level 13
- Příspěvky: 22288
- Registrován: květen 08
- Bydliště: Vsetín - Pardubice
- Pohlaví:
- Stav:
Offline
Re: Zavirovaný PC
Tam se to blbě kontroluje. Málo znaků je jeden, dva už to pustí. Pochybuju, že ta zpráva má jen jeden znak
V SZ řeším jen záležitosti týkající se fóra. Na prosby a žádosti o technickou podporu nereaguji. Díky za pochopení.
HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra
HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 120 hostů