(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-06-02 04:48 . 2012-08-16 03:04 225280 ----a-w- c:\windows\system32\schannel.dll
2012-05-24 21:18 . 2012-05-24 21:18 4472832 ----a-w- c:\windows\system32\GPhotos.scr
2012-07-14 00:15 . 2012-08-15 20:24 136672 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2012-07-03 16:21 121528 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" [2012-04-11 3672384]
"LightShot"="c:\users\Syntasy\AppData\Local\Skillbrains\lightshot\LightShot.exe" [2012-02-02 195072]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2012-07-03 4273976]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2009-07-29 98304]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe" [2009-07-28 7625248]
"TPwrMain"="c:\program files\TOSHIBA\Power Saver\TPwrMain.EXE" [2009-03-06 468320]
"SmoothView"="c:\program files\Toshiba\SmoothView\SmoothView.exe" [2008-12-18 448376]
"00TCrdMain"="c:\program files\TOSHIBA\FlashCards\TCrdMain.exe" [2009-03-23 729088]
"Camera Assistant Software"="c:\program files\Camera Assistant Software for Toshiba\traybar.exe" [2008-09-26 417792]
"BCSSync"="c:\program files\Microsoft Office\Office14\BCSSync.exe" [2010-03-13 91520]
"LogMeIn Hamachi Ui"="c:\program files\LogMeIn Hamachi\hamachi-2-ui.exe" [2012-06-27 1996200]
.
c:\users\Syntasy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Adobe Gamma.lnk - c:\program files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe [2005-3-16 113664]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux1"=wdmaud.drv
.
R2 CNRM0330;CNRM0330; [x]
R2 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [x]
R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [x]
R3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service;c:\program files\Microsoft Office\Office14\GROOVE.EXE [x]
R3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files\Mozilla Maintenance Service\maintenanceservice.exe [x]
R3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series – ovladač adaptéru pro 32bitový systém Windows Vista;c:\windows\system32\DRIVERS\netw5v32.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [x]
S1 aswSnx;aswSnx; [x]
S1 aswSP;aswSP; [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [x]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x]
S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files\Common Files\Adobe\ARM\1.0\armsvc.exe [x]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [x]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [x]
S2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine;c:\program files\LogMeIn Hamachi\hamachi-2.exe [x]
S2 Skype C2C Service;Skype C2C Service;c:\programdata\Skype\Toolbars\Skype C2C Service\c2c_service.exe [x]
S3 FwLnk;FwLnk Driver;c:\windows\system32\DRIVERS\FwLnk.sys [x]
S3 NETw5s32;Ovladač adaptéru Intel(R) Wireless WiFi Link pro systém Windows 7 32 Bit;c:\windows\system32\DRIVERS\NETw5s32.sys [x]
S3 osppsvc;Office Software Protection Platform;c:\program files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt86win7.sys [x]
.
.
--- Ostatní služby/ovladače v paměti ---
.
*NewlyCreated* - WS2IFSL
.
Obsah adresáře 'Naplánované úlohy'
.
2012-08-21 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-08-15 13:21]
.
2012-08-21 c:\windows\Tasks\update-S-1-5-21-2935198736-4227321628-2989923049-1000.job
- c:\program files\Skillbrains\Updater\Updater.exe [2012-08-15 20:09]
.
2012-08-21 c:\windows\Tasks\update-sys.job
- c:\program files\Skillbrains\Updater\Updater.exe [2012-08-15 20:09]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://seznam.cz/
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office14\EXCEL.EXE/3000
IE: Od&eslat do aplikace OneNote - c:\progra~1\MICROS~2\Office14\ONBttnIE.dll/105
FF - ProfilePath - c:\users\Syntasy\AppData\Roaming\Mozilla\Firefox\Profiles\sslcfnzy.default\
FF - prefs.js: browser.startup.homepage - www.seznam.cz
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
WebBrowser-{7473B6BD-4691-4744-A82B-7854EB3D70B6} - (no file)
AddRemove-Cool's_Codec_pack_4.12 - c:\windows\iun6002.exe
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
"MSCurrentCountry"=dword:000000b5
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
c:\windows\system32\atieclxx.exe
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\windows\system32\conhost.exe
c:\windows\system32\taskhost.exe
c:\program files\TOSHIBA\Power Saver\TosCoSrv.exe
c:\program files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
c:\program files\Windows Media Player\wmpnetwk.exe
c:\users\Syntasy\AppData\Local\Skillbrains\lightshot\2.6.5.55\LightShot.exe
c:\program files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
c:\windows\system32\sppsvc.exe
c:\\?\c:\windows\system32\wbem\WMIADAP.EXE
.
**************************************************************************
.
Celkový čas: 2012-08-21 22:28:45 - počítač byl restartován
ComboFix-quarantined-files.txt 2012-08-21 20:28
.
Před spuštěním: Volných bajtů: 114 359 390 208
Po spuštění: Volných bajtů: 113 981 673 472
.
- - End Of File - - E502E2723E4B58CA8A1421AE7CE828E6
PowerReg Scheduler - kontrola logu Vyřešeno
-
- Level 4
- Příspěvky: 1434
- Registrován: září 07
- Bydliště: Ostrava-Hrabůvka
- Pohlaví:
- Stav:
Offline
Re: PowerReg Scheduler - kontrola logu
Chytří lidé používají Google a nevolí komunisty
*Čeština je krásný jazyk, takže se jej prosím naučte používat*
Member of the Spyke's Fun Club
*Čeština je krásný jazyk, takže se jej prosím naučte používat*
Member of the Spyke's Fun Club
-
- Level 4
- Příspěvky: 1434
- Registrován: září 07
- Bydliště: Ostrava-Hrabůvka
- Pohlaví:
- Stav:
Offline
Re: PowerReg Scheduler - kontrola logu
TDSSKiller
22:07:13.0616 1940 TDSS rootkit removing tool 2.8.7.0 Aug 20 2012 17:30:03
22:07:13.0725 1940 ============================================================
22:07:13.0725 1940 Current date / time: 2012/08/21 22:07:13.0725
22:07:13.0725 1940 SystemInfo:
22:07:13.0725 1940
22:07:13.0725 1940 OS Version: 6.1.7600 ServicePack: 0.0
22:07:13.0725 1940 Product type: Workstation
22:07:13.0725 1940 ComputerName: SYNTASYPC
22:07:13.0725 1940 UserName: Syntasy
22:07:13.0725 1940 Windows directory: C:\Windows
22:07:13.0725 1940 System windows directory: C:\Windows
22:07:13.0725 1940 Processor architecture: Intel x86
22:07:13.0725 1940 Number of processors: 2
22:07:13.0725 1940 Page size: 0x1000
22:07:13.0725 1940 Boot type: Normal boot
22:07:13.0725 1940 ============================================================
22:07:14.0895 1940 Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
22:07:14.0895 1940 ============================================================
22:07:14.0895 1940 \Device\Harddisk0\DR0:
22:07:14.0895 1940 MBR partitions:
22:07:14.0895 1940 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x2EE000
22:07:14.0895 1940 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x2EE800, BlocksNum 0x129C7800
22:07:14.0895 1940 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x12CB6000, BlocksNum 0x127782B0
22:07:14.0895 1940 ============================================================
22:07:14.0926 1940 C: <-> \Device\Harddisk0\DR0\Partition2
22:07:14.0958 1940 D: <-> \Device\Harddisk0\DR0\Partition1
22:07:15.0004 1940 E: <-> \Device\Harddisk0\DR0\Partition3
22:07:15.0036 1940 ============================================================
22:07:15.0036 1940 Initialize success
22:07:15.0036 1940 ============================================================
22:07:16.0408 4196 ============================================================
22:07:16.0408 4196 Scan started
22:07:16.0408 4196 Mode: Manual;
22:07:16.0408 4196 ============================================================
22:07:17.0407 4196 ================ Scan system memory ========================
22:07:17.0407 4196 System memory - ok
22:07:17.0407 4196 ================ Scan services =============================
22:07:17.0578 4196 [ 6D2ACA41739BFE8CB86EE8E85F29697D ] 1394ohci C:\Windows\system32\DRIVERS\1394ohci.sys
22:07:17.0578 4196 1394ohci - ok
22:07:17.0594 4196 [ F0E07D144C8685B8774BC32FC8DA4DF0 ] ACPI C:\Windows\system32\DRIVERS\ACPI.sys
22:07:17.0594 4196 ACPI - ok
22:07:17.0610 4196 [ 98D81CA942D19F7D9153B095162AC013 ] AcpiPmi C:\Windows\system32\DRIVERS\acpipmi.sys
22:07:17.0610 4196 AcpiPmi - ok
22:07:17.0719 4196 [ 8B46D5A1D3EF08232C04D0EAFB871FB2 ] Adobe LM Service C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
22:07:17.0719 4196 Adobe LM Service - ok
22:07:17.0766 4196 [ D19C4EE2AC7C47B8F5F84FFF1A789D8A ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
22:07:17.0766 4196 AdobeARMservice - ok
22:07:17.0812 4196 [ A9D3B95E8466BD58EEB8A1154654E162 ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
22:07:17.0812 4196 AdobeFlashPlayerUpdateSvc - ok
22:07:17.0859 4196 [ 21E785EBD7DC90A06391141AAC7892FB ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys
22:07:17.0859 4196 adp94xx - ok
22:07:17.0875 4196 [ 0C676BC278D5B59FF5ABD57BBE9123F2 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys
22:07:17.0875 4196 adpahci - ok
22:07:17.0890 4196 [ 7C7B5EE4B7B822EC85321FE23A27DB33 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys
22:07:17.0890 4196 adpu320 - ok
22:07:17.0922 4196 [ 8B5EEFEEC1E6D1A72A06C526628AD161 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
22:07:17.0922 4196 AeLookupSvc - ok
22:07:17.0953 4196 [ 0DB7A48388D54D154EBEC120461A0FCD ] AFD C:\Windows\system32\drivers\afd.sys
22:07:17.0968 4196 AFD - ok
22:07:18.0062 4196 [ 7E10E3BB9B258AD8A9300F91214D67B9 ] AgereSoftModem C:\Windows\system32\DRIVERS\AGRSM.sys
22:07:18.0062 4196 AgereSoftModem - ok
22:07:18.0093 4196 [ 507812C3054C21CEF746B6EE3D04DD6E ] agp440 C:\Windows\system32\DRIVERS\agp440.sys
22:07:18.0093 4196 agp440 - ok
22:07:18.0156 4196 [ 8B30250D573A8F6B4BD23195160D8707 ] aic78xx C:\Windows\system32\DRIVERS\djsvs.sys
22:07:18.0156 4196 aic78xx - ok
22:07:18.0187 4196 [ 18A54E132947CD98FEA9ACCC57F98F13 ] ALG C:\Windows\System32\alg.exe
22:07:18.0202 4196 ALG - ok
22:07:18.0218 4196 [ 0D40BCF52EA90FC7DF2AEAB6503DEA44 ] aliide C:\Windows\system32\DRIVERS\aliide.sys
22:07:18.0218 4196 aliide - ok
22:07:18.0265 4196 [ 0BC6704F6FB4C63CDCB85401E8263A1B ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe
22:07:18.0265 4196 AMD External Events Utility - ok
22:07:18.0280 4196 [ 3C6600A0696E90A463771C7422E23AB5 ] amdagp C:\Windows\system32\DRIVERS\amdagp.sys
22:07:18.0280 4196 amdagp - ok
22:07:18.0280 4196 [ CD5914170297126B6266860198D1D4F0 ] amdide C:\Windows\system32\DRIVERS\amdide.sys
22:07:18.0280 4196 amdide - ok
22:07:18.0296 4196 [ 00DDA200D71BAC534BF56A9DB5DFD666 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
22:07:18.0296 4196 AmdK8 - ok
22:07:18.0296 4196 [ 3CBF30F5370FDA40DD3E87DF38EA53B6 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
22:07:18.0296 4196 AmdPPM - ok
22:07:18.0343 4196 [ 19CE906B4CDC11FC4FEF5745F33A63B6 ] amdsata C:\Windows\system32\drivers\amdsata.sys
22:07:18.0343 4196 amdsata - ok
22:07:18.0358 4196 [ EA43AF0C423FF267355F74E7A53BDABA ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys
22:07:18.0358 4196 amdsbs - ok
22:07:18.0374 4196 [ 869E67D66BE326A5A9159FBA8746FA70 ] amdxata C:\Windows\system32\drivers\amdxata.sys
22:07:18.0374 4196 amdxata - ok
22:07:18.0390 4196 [ FEB834C02CE1E84B6A38F953CA067706 ] AppID C:\Windows\system32\drivers\appid.sys
22:07:18.0390 4196 AppID - ok
22:07:18.0421 4196 [ 62A9C86CB6085E20DB4823E4E97826F5 ] AppIDSvc C:\Windows\System32\appidsvc.dll
22:07:18.0421 4196 AppIDSvc - ok
22:07:18.0436 4196 [ 7DEAD9E3F65DCB2794F2711003BBF650 ] Appinfo C:\Windows\System32\appinfo.dll
22:07:18.0436 4196 Appinfo - ok
22:07:18.0468 4196 [ A45D184DF6A8803DA13A0B329517A64A ] AppMgmt C:\Windows\System32\appmgmts.dll
22:07:18.0468 4196 AppMgmt - ok
22:07:18.0483 4196 [ 2932004F49677BD84DBC72EDB754FFB3 ] arc C:\Windows\system32\DRIVERS\arc.sys
22:07:18.0483 4196 arc - ok
22:07:18.0499 4196 [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7 ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys
22:07:18.0499 4196 arcsas - ok
22:07:18.0546 4196 [ 1C1F3D6DDDC046C920C493A779649F66 ] aswFsBlk C:\Windows\system32\drivers\aswFsBlk.sys
22:07:18.0546 4196 aswFsBlk - ok
22:07:18.0561 4196 [ A48D8015AF2A0D8B4937613FFBFD28DE ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
22:07:18.0577 4196 aswMonFlt - ok
22:07:18.0577 4196 [ 4A951BEBA9E49410CDE478B6F6ABB252 ] aswRdr C:\Windows\System32\Drivers\aswrdr2.sys
22:07:18.0577 4196 aswRdr - ok
22:07:18.0608 4196 [ 73DBCF808E00580F2A47F93DD9B03876 ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
22:07:18.0608 4196 aswSnx - ok
22:07:18.0670 4196 [ 6CBD7D3A33F498D09C831CDD732DA2E0 ] aswSP C:\Windows\system32\drivers\aswSP.sys
22:07:18.0670 4196 aswSP - ok
22:07:18.0686 4196 [ 7109A9AA551F37CD168C02368465957E ] aswTdi C:\Windows\system32\drivers\aswTdi.sys
22:07:18.0686 4196 aswTdi - ok
22:07:18.0702 4196 [ ADD2ADE1C2B285AB8378D2DAAF991481 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
22:07:18.0702 4196 AsyncMac - ok
22:07:18.0733 4196 [ 338C86357871C167A96AB976519BF59E ] atapi C:\Windows\system32\DRIVERS\atapi.sys
22:07:18.0733 4196 atapi - ok
22:07:18.0904 4196 [ C97BE8350FBCB1960B22FAD2E6C2B514 ] atikmdag C:\Windows\system32\DRIVERS\atikmdag.sys
22:07:18.0936 4196 atikmdag - ok
22:07:18.0967 4196 [ 510C873BFA135AA829F4180352772734 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
22:07:18.0982 4196 AudioEndpointBuilder - ok
22:07:18.0998 4196 [ 510C873BFA135AA829F4180352772734 ] Audiosrv C:\Windows\System32\Audiosrv.dll
22:07:18.0998 4196 Audiosrv - ok
22:07:19.0060 4196 [ 2F7C0F3E39C45E0127FB78B2F18A41F3 ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
22:07:19.0060 4196 avast! Antivirus - ok
22:07:19.0092 4196 [ DD6A431B43E34B91A767D1CE33728175 ] AxInstSV C:\Windows\System32\AxInstSV.dll
22:07:19.0092 4196 AxInstSV - ok
22:07:19.0138 4196 [ 1A231ABEC60FD316EC54C66715543CEC ] b06bdrv C:\Windows\system32\DRIVERS\bxvbdx.sys
22:07:19.0138 4196 b06bdrv - ok
22:07:19.0170 4196 [ BD8869EB9CDE6BBE4508D869929869EE ] b57nd60x C:\Windows\system32\DRIVERS\b57nd60x.sys
22:07:19.0185 4196 b57nd60x - ok
22:07:19.0201 4196 [ EE1E9C3BB8228AE423DD38DB69128E71 ] BDESVC C:\Windows\System32\bdesvc.dll
22:07:19.0201 4196 BDESVC - ok
22:07:19.0232 4196 [ 505506526A9D467307B3C393DEDAF858 ] Beep C:\Windows\system32\drivers\Beep.sys
22:07:19.0232 4196 Beep - ok
22:07:19.0263 4196 [ 85AC71C045CEB054ED48A7841AAE0C11 ] BFE C:\Windows\System32\bfe.dll
22:07:19.0279 4196 BFE - ok
22:07:19.0341 4196 [ 53F476476F55A27F580661BDE09C4EC4 ] BITS C:\Windows\System32\qmgr.dll
22:07:19.0357 4196 BITS - ok
22:07:19.0404 4196 [ 2287078ED48FCFC477B05B20CF38F36F ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
22:07:19.0404 4196 blbdrive - ok
22:07:19.0435 4196 [ 9A5C671B7FBAE4865149BB11F59B91B2 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
22:07:19.0435 4196 bowser - ok
22:07:19.0450 4196 [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys
22:07:19.0450 4196 BrFiltLo - ok
22:07:19.0450 4196 [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys
22:07:19.0450 4196 BrFiltUp - ok
22:07:19.0482 4196 [ A0E691DC6589D4D2CBE373171D1A49E5 ] Browser C:\Windows\System32\browser.dll
22:07:19.0482 4196 Browser - ok
22:07:19.0497 4196 [ 845B8CE732E67F3B4133164868C666EA ] Brserid C:\Windows\System32\Drivers\Brserid.sys
22:07:19.0513 4196 Brserid - ok
22:07:19.0513 4196 [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
22:07:19.0513 4196 BrSerWdm - ok
22:07:19.0513 4196 [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
22:07:19.0513 4196 BrUsbMdm - ok
22:07:19.0528 4196 [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
22:07:19.0528 4196 BrUsbSer - ok
22:07:19.0528 4196 [ ED3DF7C56CE0084EB2034432FC56565A ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys
22:07:19.0528 4196 BTHMODEM - ok
22:07:19.0575 4196 [ 1DF19C96EEF6C29D1C3E1A8678E07190 ] bthserv C:\Windows\system32\bthserv.dll
22:07:19.0591 4196 bthserv - ok
22:07:19.0606 4196 [ 77EA11B065E0A8AB902D78145CA51E10 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
22:07:19.0606 4196 cdfs - ok
22:07:19.0653 4196 [ BA6E70AA0E6091BC39DE29477D866A77 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
22:07:19.0653 4196 cdrom - ok
22:07:19.0669 4196 [ 628A9E30EC5E18DD5DE6BE4DBDC12198 ] CertPropSvc C:\Windows\System32\certprop.dll
22:07:19.0669 4196 CertPropSvc - ok
22:07:19.0684 4196 [ 3FE3FE94A34DF6FB06E6418D0F6A0060 ] circlass C:\Windows\system32\DRIVERS\circlass.sys
22:07:19.0684 4196 circlass - ok
22:07:19.0716 4196 [ 635181E0E9BBF16871BF5380D71DB02D ] CLFS C:\Windows\system32\CLFS.sys
22:07:19.0716 4196 CLFS - ok
22:07:19.0778 4196 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
22:07:19.0778 4196 clr_optimization_v2.0.50727_32 - ok
22:07:19.0872 4196 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
22:07:19.0872 4196 clr_optimization_v4.0.30319_32 - ok
22:07:19.0903 4196 [ DEA805815E587DAD1DD2C502220B5616 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
22:07:19.0903 4196 CmBatt - ok
22:07:19.0903 4196 [ C537B1DB64D495B9B4717B4D6D9EDBF2 ] cmdide C:\Windows\system32\DRIVERS\cmdide.sys
22:07:19.0903 4196 cmdide - ok
22:07:19.0934 4196 [ DB5E008B3744DD60C8498CBBF2A1CFA6 ] CNG C:\Windows\system32\Drivers\cng.sys
22:07:19.0950 4196 CNG - ok
22:07:19.0965 4196 CNRM0330 - ok
22:07:19.0996 4196 [ A6023D3823C37043986713F118A89BEE ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
22:07:19.0996 4196 Compbatt - ok
22:07:20.0012 4196 [ F1724BA27E97D627F808FB0BA77A28A6 ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys
22:07:20.0012 4196 CompositeBus - ok
22:07:20.0012 4196 COMSysApp - ok
22:07:20.0028 4196 [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys
22:07:20.0028 4196 crcdisk - ok
22:07:20.0059 4196 [ 520A108A2657F4BCA7FCED9CA7D885DE ] CryptSvc C:\Windows\system32\cryptsvc.dll
22:07:20.0074 4196 CryptSvc - ok
22:07:20.0106 4196 [ 27C9490BDD0AE48911AB8CF1932591ED ] CSC C:\Windows\system32\drivers\csc.sys
22:07:20.0106 4196 CSC - ok
22:07:20.0121 4196 [ 56FB5F222EA30D3D3FC459879772CB73 ] CscService C:\Windows\System32\cscsvc.dll
22:07:20.0137 4196 CscService - ok
22:07:20.0184 4196 [ B82CD39E336973359D7C9BF911E8E84F ] DcomLaunch C:\Windows\system32\rpcss.dll
22:07:20.0199 4196 DcomLaunch - ok
22:07:20.0230 4196 [ 8D6E10A2D9A5EED59562D9B82CF804E1 ] defragsvc C:\Windows\System32\defragsvc.dll
22:07:20.0230 4196 defragsvc - ok
22:07:20.0277 4196 [ 83D1ECEA8FAAE75604C0FA49AC7AD996 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
22:07:20.0277 4196 DfsC - ok
22:07:20.0324 4196 [ C56495FBD770712367CAD35E5DE72DA6 ] Dhcp C:\Windows\system32\dhcpcore.dll
22:07:20.0324 4196 Dhcp - ok
22:07:20.0355 4196 [ 1A050B0274BFB3890703D490F330C0DA ] discache C:\Windows\system32\drivers\discache.sys
22:07:20.0355 4196 discache - ok
22:07:20.0355 4196 [ 565003F326F99802E68CA78F2A68E9FF ] Disk C:\Windows\system32\DRIVERS\disk.sys
22:07:20.0371 4196 Disk - ok
22:07:20.0402 4196 [ B15BE77A2BACF9C3177D27518AFE26A9 ] Dnscache C:\Windows\System32\dnsrslvr.dll
22:07:20.0402 4196 Dnscache - ok
22:07:20.0418 4196 [ 4408C85C21EEA48EB0CE486BAEEF0502 ] dot3svc C:\Windows\System32\dot3svc.dll
22:07:20.0433 4196 dot3svc - ok
22:07:20.0433 4196 [ 7FA81C6E11CAA594ADB52084DA73A1E5 ] DPS C:\Windows\system32\dps.dll
22:07:20.0449 4196 DPS - ok
22:07:20.0480 4196 [ B918E7C5F9BF77202F89E1A9539F2EB4 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
22:07:20.0480 4196 drmkaud - ok
22:07:20.0511 4196 [ 687AF6BB383885FF6A64071B189A7F3E ] dtsoftbus01 C:\Windows\system32\DRIVERS\dtsoftbus01.sys
22:07:20.0527 4196 dtsoftbus01 - ok
22:07:20.0574 4196 [ 1679A4669326CB1A67CC95658D273234 ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
22:07:20.0574 4196 DXGKrnl - ok
22:07:20.0589 4196 [ 8600142FA91C1B96367D3300AD0F3F3A ] EapHost C:\Windows\System32\eapsvc.dll
22:07:20.0605 4196 EapHost - ok
22:07:20.0698 4196 [ 024E1B5CAC09731E4D868E64DBFB4AB0 ] ebdrv C:\Windows\system32\DRIVERS\evbdx.sys
22:07:20.0714 4196 ebdrv - ok
22:07:20.0745 4196 [ C2243FF9E9AAD0C30E8B1A0914DA15B6 ] EFS C:\Windows\System32\lsass.exe
22:07:20.0745 4196 EFS - ok
22:07:20.0808 4196 [ 1697C39978CD69F6FBC15302EDCECE1F ] ehRecvr C:\Windows\ehome\ehRecvr.exe
22:07:20.0823 4196 ehRecvr - ok
22:07:20.0854 4196 [ D389BFF34F80CAEDE417BF9D1507996A ] ehSched C:\Windows\ehome\ehsched.exe
22:07:20.0854 4196 ehSched - ok
22:07:20.0886 4196 [ 0ED67910C8C326796FAA00B2BF6D9D3C ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys
22:07:20.0886 4196 elxstor - ok
22:07:20.0901 4196 [ 8FC3208352DD3912C94367A206AB3F11 ] ErrDev C:\Windows\system32\DRIVERS\errdev.sys
22:07:20.0901 4196 ErrDev - ok
22:07:20.0964 4196 [ F6916EFC29D9953D5D0DF06882AE8E16 ] EventSystem C:\Windows\system32\es.dll
22:07:20.0979 4196 EventSystem - ok
22:07:20.0979 4196 [ 2DC9108D74081149CC8B651D3A26207F ] exfat C:\Windows\system32\drivers\exfat.sys
22:07:20.0995 4196 exfat - ok
22:07:21.0010 4196 [ 7E0AB74553476622FB6AE36F73D97D35 ] fastfat C:\Windows\system32\drivers\fastfat.sys
22:07:21.0010 4196 fastfat - ok
22:07:21.0057 4196 [ F7EA23CC5E6BF2181F3F399D54F6EFC1 ] Fax C:\Windows\system32\fxssvc.exe
22:07:21.0073 4196 Fax - ok
22:07:21.0073 4196 [ E817A017F82DF2A1F8CFDBDA29388B29 ] fdc C:\Windows\system32\DRIVERS\fdc.sys
22:07:21.0073 4196 fdc - ok
22:07:21.0104 4196 [ F3222C893BD2F5821A0179E5C71E88FB ] fdPHost C:\Windows\system32\fdPHost.dll
22:07:21.0104 4196 fdPHost - ok
22:07:21.0120 4196 [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B ] FDResPub C:\Windows\system32\fdrespub.dll
22:07:21.0120 4196 FDResPub - ok
22:07:21.0120 4196 [ 6CF00369C97F3CF563BE99BE983D13D8 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
22:07:21.0120 4196 FileInfo - ok
22:07:21.0135 4196 [ 42C51DC94C91DA21CB9196EB64C45DB9 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
22:07:21.0135 4196 Filetrace - ok
22:07:21.0135 4196 [ 87907AA70CB3C56600F1C2FB8841579B ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
22:07:21.0135 4196 flpydisk - ok
22:07:21.0151 4196 [ 7520EC808E0C35E0EE6F841294316653 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
22:07:21.0151 4196 FltMgr - ok
22:07:21.0198 4196 [ 151258FC2EC8C48BDF8A53350AE0A676 ] FontCache C:\Windows\system32\FntCache.dll
22:07:21.0213 4196 FontCache - ok
22:07:21.0291 4196 [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
22:07:21.0291 4196 FontCache3.0.0.0 - ok
22:07:21.0291 4196 [ 1A16B57943853E598CFF37FE2B8CBF1D ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
22:07:21.0291 4196 FsDepends - ok
22:07:21.0322 4196 [ 500A9814FD9446A8126858A5A7F7D273 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
22:07:21.0322 4196 Fs_Rec - ok
22:07:21.0385 4196 [ DAFBD9FE39197495AED6D51F3B85B5D2 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
22:07:21.0385 4196 fvevol - ok
22:07:21.0447 4196 [ 0F76E205BDC60364F08A5949082771CA ] FwLnk C:\Windows\system32\DRIVERS\FwLnk.sys
22:07:21.0447 4196 FwLnk - ok
22:07:21.0478 4196 [ 65EE0C7A58B65E74AE05637418153938 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys
22:07:21.0478 4196 gagp30kx - ok
22:07:21.0525 4196 [ 8BA3C04702BF8F927AB36AE8313CA4EE ] gpsvc C:\Windows\System32\gpsvc.dll
22:07:21.0541 4196 gpsvc - ok
22:07:21.0588 4196 [ C1B577B2169900F4CF7190C39F085794 ] gusvc C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
22:07:21.0588 4196 gusvc - ok
22:07:21.0634 4196 [ 833051C6C6C42117191935F734CFBD97 ] hamachi C:\Windows\system32\DRIVERS\hamachi.sys
22:07:21.0634 4196 hamachi - ok
22:07:21.0759 4196 [ F31D7F8A7699575DBB3B3A3AB4AA6216 ] Hamachi2Svc C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
22:07:21.0806 4196 Hamachi2Svc - ok
22:07:21.0853 4196 [ C44E3C2BAB6837DB337DDEE7544736DB ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
22:07:21.0853 4196 hcw85cir - ok
22:07:21.0915 4196 [ 3530CAD25DEBA7DC7DE8BB51632CBC5F ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
22:07:21.0915 4196 HdAudAddService - ok
22:07:21.0931 4196 [ 717A2207FD6F13AD3E664C7D5A43C7BF ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
22:07:21.0931 4196 HDAudBus - ok
22:07:21.0978 4196 [ 1D58A7F3E11A9731D0EAAAA8405ACC36 ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys
22:07:21.0978 4196 HidBatt - ok
22:07:21.0978 4196 [ 89448F40E6DF260C206A193A4683BA78 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys
22:07:21.0978 4196 HidBth - ok
22:07:22.0024 4196 [ CF50B4CF4A4F229B9F3C08351F99CA5E ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
22:07:22.0024 4196 HidIr - ok
22:07:22.0040 4196 [ 2BC6F6A1992B3A77F5F41432CA6B3B6B ] hidserv C:\Windows\system32\hidserv.dll
22:07:22.0040 4196 hidserv - ok
22:07:22.0087 4196 [ 25072FB35AC90B25F9E4E3BACF774102 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
22:07:22.0087 4196 HidUsb - ok
22:07:22.0118 4196 [ 741C2A45CA8407E374AABA3E330B7872 ] hkmsvc C:\Windows\system32\kmsvc.dll
22:07:22.0118 4196 hkmsvc - ok
22:07:22.0134 4196 [ A768CA158BB06782A2835B907F4873C3 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
22:07:22.0149 4196 HomeGroupListener - ok
22:07:22.0180 4196 [ FB08DEC5EF43D0C66D83B8E9694E7549 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
22:07:22.0180 4196 HomeGroupProvider - ok
22:07:22.0196 4196 [ 295FDC419039090EB8B49FFDBB374549 ] HpSAMD C:\Windows\system32\DRIVERS\HpSAMD.sys
22:07:22.0196 4196 HpSAMD - ok
22:07:22.0227 4196 [ C531C7FD9E8B62021112787C4E2C5A5A ] HTTP C:\Windows\system32\drivers\HTTP.sys
22:07:22.0227 4196 HTTP - ok
22:07:22.0227 4196 [ 8305F33CDE89AD6C7A0763ED0B5A8D42 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
22:07:22.0227 4196 hwpolicy - ok
22:07:22.0243 4196 [ F151F0BDC47F4A28B1B20A0818EA36D6 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
22:07:22.0258 4196 i8042prt - ok
22:07:22.0290 4196 [ 71F1A494FEDF4B33C02C4A6A28D6D9E9 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
22:07:22.0290 4196 iaStorV - ok
22:07:22.0383 4196 [ 5AF815EB5BC9802E5A064E2BA62BFC0C ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
22:07:22.0414 4196 idsvc - ok
22:07:22.0430 4196 [ 4173FF5708F3236CF25195FECD742915 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys
22:07:22.0430 4196 iirsp - ok
22:07:22.0508 4196 [ FAC0EE6562B121B1399D6E855583F7A5 ] IKEEXT C:\Windows\System32\ikeext.dll
22:07:22.0524 4196 IKEEXT - ok
22:07:22.0633 4196 [ E4A2E810CB2607C9C159C0DFB0BD4C88 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHDA.sys
22:07:22.0648 4196 IntcAzAudAddService - ok
22:07:22.0695 4196 [ A0F12F2C9BA6C72F3987CE780E77C130 ] intelide C:\Windows\system32\DRIVERS\intelide.sys
22:07:22.0695 4196 intelide - ok
22:07:22.0711 4196 [ 3B514D27BFC4ACCB4037BC6685F766E0 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
22:07:22.0711 4196 intelppm - ok
22:07:22.0742 4196 [ ACB364B9075A45C0736E5C47BE5CAE19 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
22:07:22.0742 4196 IPBusEnum - ok
22:07:22.0758 4196 [ 709D1761D3B19A932FF0238EA6D50200 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
22:07:22.0773 4196 IpFilterDriver - ok
22:07:22.0804 4196 [ 477397B432A256A50EE7E4339EB9EA14 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
22:07:22.0836 4196 iphlpsvc - ok
22:07:22.0836 4196 [ E4454B6C37D7FFD5649611F6496308A7 ] IPMIDRV C:\Windows\system32\DRIVERS\IPMIDrv.sys
22:07:22.0836 4196 IPMIDRV - ok
22:07:22.0851 4196 [ A5FA468D67ABCDAA36264E463A7BB0CD ] IPNAT C:\Windows\system32\drivers\ipnat.sys
22:07:22.0851 4196 IPNAT - ok
22:07:22.0867 4196 [ 42996CFF20A3084A56017B7902307E9F ] IRENUM C:\Windows\system32\drivers\irenum.sys
22:07:22.0867 4196 IRENUM - ok
22:07:22.0867 4196 [ 1F32BB6B38F62F7DF1A7AB7292638A35 ] isapnp C:\Windows\system32\DRIVERS\isapnp.sys
22:07:22.0882 4196 isapnp - ok
22:07:22.0898 4196 [ ED46C223AE46C6866AB77CDC41C404B7 ] iScsiPrt C:\Windows\system32\DRIVERS\msiscsi.sys
22:07:22.0898 4196 iScsiPrt - ok
22:07:22.0914 4196 [ ADEF52CA1AEAE82B50DF86B56413107E ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
22:07:22.0914 4196 kbdclass - ok
22:07:22.0929 4196 [ 3D9F0EBF350EDCFD6498057301455964 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
22:07:22.0929 4196 kbdhid - ok
22:07:22.0945 4196 [ C2243FF9E9AAD0C30E8B1A0914DA15B6 ] KeyIso C:\Windows\system32\lsass.exe
22:07:22.0945 4196 KeyIso - ok
22:07:22.0992 4196 [ 52FC17C8589F11747D01D3CF592673D0 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
22:07:22.0992 4196 KSecDD - ok
22:07:23.0007 4196 [ 3E5474B03568CFAB834DA3C38E8C9EFA ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
22:07:23.0007 4196 KSecPkg - ok
22:07:23.0054 4196 [ 89A7B9CC98D0D80C6F31B91C0A310FCD ] KtmRm C:\Windows\system32\msdtckrm.dll
22:07:23.0054 4196 KtmRm - ok
22:07:23.0085 4196 [ 8F6BF790D3168224C16F2AF68A84438C ] LanmanServer C:\Windows\system32\srvsvc.dll
22:07:23.0101 4196 LanmanServer - ok
22:07:23.0116 4196 [ B9891F885DCF1F0513A51CB58493CB1F ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
22:07:23.0132 4196 LanmanWorkstation - ok
22:07:23.0272 4196 [ F7611EC07349979DA9B0AE1F18CCC7A6 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
22:07:23.0272 4196 lltdio - ok
22:07:23.0491 4196 [ 5700673E13A2117FA3B9020C852C01E2 ] lltdsvc C:\Windows\System32\lltdsvc.dll
22:07:23.0491 4196 lltdsvc - ok
22:07:23.0522 4196 [ 55CA01BA19D0006C8F2639B6C045E08B ] lmhosts C:\Windows\System32\lmhsvc.dll
22:07:23.0522 4196 lmhosts - ok
22:07:23.0538 4196 [ EB119A53CCF2ACC000AC71B065B78FEF ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys
22:07:23.0538 4196 LSI_FC - ok
22:07:23.0538 4196 [ 8ADE1C877256A22E49B75D1CC9161F9C ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys
22:07:23.0538 4196 LSI_SAS - ok
22:07:23.0553 4196 [ DC9DC3D3DAA0E276FD2EC262E38B11E9 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys
22:07:23.0553 4196 LSI_SAS2 - ok
22:07:23.0569 4196 [ 0A036C7D7CAB643A7F07135AC47E0524 ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys
22:07:23.0569 4196 LSI_SCSI - ok
22:07:23.0569 4196 [ 6703E366CC18D3B6E534F5CF7DF39CEE ] luafv C:\Windows\system32\drivers\luafv.sys
22:07:23.0569 4196 luafv - ok
22:07:23.0600 4196 [ E2B0887816ED336685954E3D8FDAA51D ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
22:07:23.0600 4196 Mcx2Svc - ok
22:07:23.0647 4196 [ 0FFF5B045293002AB38EB1FD1FC2FB74 ] megasas C:\Windows\system32\DRIVERS\megasas.sys
22:07:23.0647 4196 megasas - ok
22:07:23.0662 4196 [ DCBAB2920C75F390CAF1D29F675D03D6 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys
22:07:23.0662 4196 MegaSR - ok
22:07:23.0740 4196 Microsoft SharePoint Workspace Audit Service - ok
22:07:23.0787 4196 [ 146B6F43A673379A3C670E86D89BE5EA ] MMCSS C:\Windows\system32\mmcss.dll
22:07:23.0787 4196 MMCSS - ok
22:07:23.0803 4196 [ F001861E5700EE84E2D4E52C712F4964 ] Modem C:\Windows\system32\drivers\modem.sys
22:07:23.0803 4196 Modem - ok
22:07:23.0834 4196 [ 79D10964DE86B292320E9DFE02282A23 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
22:07:23.0834 4196 monitor - ok
22:07:23.0834 4196 [ FB18CC1D4C2E716B6B903B0AC0CC0609 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
22:07:23.0834 4196 mouclass - ok
22:07:23.0850 4196 [ 2C388D2CD01C9042596CF3C8F3C7B24D ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
22:07:23.0850 4196 mouhid - ok
22:07:23.0850 4196 [ 921C18727C5920D6C0300736646931C2 ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
22:07:23.0850 4196 mountmgr - ok
22:07:23.0928 4196 [ 46297FA8E30A6007F14118FC2B942FBC ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
22:07:23.0928 4196 MozillaMaintenance - ok
22:07:23.0943 4196 [ 2AF5997438C55FB79D33D015C30E1974 ] mpio C:\Windows\system32\DRIVERS\mpio.sys
22:07:23.0943 4196 mpio - ok
22:07:23.0943 4196 [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
22:07:23.0943 4196 mpsdrv - ok
22:07:23.0974 4196 [ 5CD996CECF45CBC3E8D109C86B82D69E ] MpsSvc C:\Windows\system32\mpssvc.dll
22:07:24.0006 4196 MpsSvc - ok
22:07:24.0037 4196 [ B1BE47008D20E43DA3ADC37C24CDB89D ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
22:07:24.0037 4196 MRxDAV - ok
22:07:24.0099 4196 [ CA7570E42522E24324A12161DB14EC02 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
22:07:13.0616 1940 TDSS rootkit removing tool 2.8.7.0 Aug 20 2012 17:30:03
22:07:13.0725 1940 ============================================================
22:07:13.0725 1940 Current date / time: 2012/08/21 22:07:13.0725
22:07:13.0725 1940 SystemInfo:
22:07:13.0725 1940
22:07:13.0725 1940 OS Version: 6.1.7600 ServicePack: 0.0
22:07:13.0725 1940 Product type: Workstation
22:07:13.0725 1940 ComputerName: SYNTASYPC
22:07:13.0725 1940 UserName: Syntasy
22:07:13.0725 1940 Windows directory: C:\Windows
22:07:13.0725 1940 System windows directory: C:\Windows
22:07:13.0725 1940 Processor architecture: Intel x86
22:07:13.0725 1940 Number of processors: 2
22:07:13.0725 1940 Page size: 0x1000
22:07:13.0725 1940 Boot type: Normal boot
22:07:13.0725 1940 ============================================================
22:07:14.0895 1940 Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
22:07:14.0895 1940 ============================================================
22:07:14.0895 1940 \Device\Harddisk0\DR0:
22:07:14.0895 1940 MBR partitions:
22:07:14.0895 1940 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x2EE000
22:07:14.0895 1940 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x2EE800, BlocksNum 0x129C7800
22:07:14.0895 1940 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x12CB6000, BlocksNum 0x127782B0
22:07:14.0895 1940 ============================================================
22:07:14.0926 1940 C: <-> \Device\Harddisk0\DR0\Partition2
22:07:14.0958 1940 D: <-> \Device\Harddisk0\DR0\Partition1
22:07:15.0004 1940 E: <-> \Device\Harddisk0\DR0\Partition3
22:07:15.0036 1940 ============================================================
22:07:15.0036 1940 Initialize success
22:07:15.0036 1940 ============================================================
22:07:16.0408 4196 ============================================================
22:07:16.0408 4196 Scan started
22:07:16.0408 4196 Mode: Manual;
22:07:16.0408 4196 ============================================================
22:07:17.0407 4196 ================ Scan system memory ========================
22:07:17.0407 4196 System memory - ok
22:07:17.0407 4196 ================ Scan services =============================
22:07:17.0578 4196 [ 6D2ACA41739BFE8CB86EE8E85F29697D ] 1394ohci C:\Windows\system32\DRIVERS\1394ohci.sys
22:07:17.0578 4196 1394ohci - ok
22:07:17.0594 4196 [ F0E07D144C8685B8774BC32FC8DA4DF0 ] ACPI C:\Windows\system32\DRIVERS\ACPI.sys
22:07:17.0594 4196 ACPI - ok
22:07:17.0610 4196 [ 98D81CA942D19F7D9153B095162AC013 ] AcpiPmi C:\Windows\system32\DRIVERS\acpipmi.sys
22:07:17.0610 4196 AcpiPmi - ok
22:07:17.0719 4196 [ 8B46D5A1D3EF08232C04D0EAFB871FB2 ] Adobe LM Service C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
22:07:17.0719 4196 Adobe LM Service - ok
22:07:17.0766 4196 [ D19C4EE2AC7C47B8F5F84FFF1A789D8A ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
22:07:17.0766 4196 AdobeARMservice - ok
22:07:17.0812 4196 [ A9D3B95E8466BD58EEB8A1154654E162 ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
22:07:17.0812 4196 AdobeFlashPlayerUpdateSvc - ok
22:07:17.0859 4196 [ 21E785EBD7DC90A06391141AAC7892FB ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys
22:07:17.0859 4196 adp94xx - ok
22:07:17.0875 4196 [ 0C676BC278D5B59FF5ABD57BBE9123F2 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys
22:07:17.0875 4196 adpahci - ok
22:07:17.0890 4196 [ 7C7B5EE4B7B822EC85321FE23A27DB33 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys
22:07:17.0890 4196 adpu320 - ok
22:07:17.0922 4196 [ 8B5EEFEEC1E6D1A72A06C526628AD161 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
22:07:17.0922 4196 AeLookupSvc - ok
22:07:17.0953 4196 [ 0DB7A48388D54D154EBEC120461A0FCD ] AFD C:\Windows\system32\drivers\afd.sys
22:07:17.0968 4196 AFD - ok
22:07:18.0062 4196 [ 7E10E3BB9B258AD8A9300F91214D67B9 ] AgereSoftModem C:\Windows\system32\DRIVERS\AGRSM.sys
22:07:18.0062 4196 AgereSoftModem - ok
22:07:18.0093 4196 [ 507812C3054C21CEF746B6EE3D04DD6E ] agp440 C:\Windows\system32\DRIVERS\agp440.sys
22:07:18.0093 4196 agp440 - ok
22:07:18.0156 4196 [ 8B30250D573A8F6B4BD23195160D8707 ] aic78xx C:\Windows\system32\DRIVERS\djsvs.sys
22:07:18.0156 4196 aic78xx - ok
22:07:18.0187 4196 [ 18A54E132947CD98FEA9ACCC57F98F13 ] ALG C:\Windows\System32\alg.exe
22:07:18.0202 4196 ALG - ok
22:07:18.0218 4196 [ 0D40BCF52EA90FC7DF2AEAB6503DEA44 ] aliide C:\Windows\system32\DRIVERS\aliide.sys
22:07:18.0218 4196 aliide - ok
22:07:18.0265 4196 [ 0BC6704F6FB4C63CDCB85401E8263A1B ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe
22:07:18.0265 4196 AMD External Events Utility - ok
22:07:18.0280 4196 [ 3C6600A0696E90A463771C7422E23AB5 ] amdagp C:\Windows\system32\DRIVERS\amdagp.sys
22:07:18.0280 4196 amdagp - ok
22:07:18.0280 4196 [ CD5914170297126B6266860198D1D4F0 ] amdide C:\Windows\system32\DRIVERS\amdide.sys
22:07:18.0280 4196 amdide - ok
22:07:18.0296 4196 [ 00DDA200D71BAC534BF56A9DB5DFD666 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
22:07:18.0296 4196 AmdK8 - ok
22:07:18.0296 4196 [ 3CBF30F5370FDA40DD3E87DF38EA53B6 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
22:07:18.0296 4196 AmdPPM - ok
22:07:18.0343 4196 [ 19CE906B4CDC11FC4FEF5745F33A63B6 ] amdsata C:\Windows\system32\drivers\amdsata.sys
22:07:18.0343 4196 amdsata - ok
22:07:18.0358 4196 [ EA43AF0C423FF267355F74E7A53BDABA ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys
22:07:18.0358 4196 amdsbs - ok
22:07:18.0374 4196 [ 869E67D66BE326A5A9159FBA8746FA70 ] amdxata C:\Windows\system32\drivers\amdxata.sys
22:07:18.0374 4196 amdxata - ok
22:07:18.0390 4196 [ FEB834C02CE1E84B6A38F953CA067706 ] AppID C:\Windows\system32\drivers\appid.sys
22:07:18.0390 4196 AppID - ok
22:07:18.0421 4196 [ 62A9C86CB6085E20DB4823E4E97826F5 ] AppIDSvc C:\Windows\System32\appidsvc.dll
22:07:18.0421 4196 AppIDSvc - ok
22:07:18.0436 4196 [ 7DEAD9E3F65DCB2794F2711003BBF650 ] Appinfo C:\Windows\System32\appinfo.dll
22:07:18.0436 4196 Appinfo - ok
22:07:18.0468 4196 [ A45D184DF6A8803DA13A0B329517A64A ] AppMgmt C:\Windows\System32\appmgmts.dll
22:07:18.0468 4196 AppMgmt - ok
22:07:18.0483 4196 [ 2932004F49677BD84DBC72EDB754FFB3 ] arc C:\Windows\system32\DRIVERS\arc.sys
22:07:18.0483 4196 arc - ok
22:07:18.0499 4196 [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7 ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys
22:07:18.0499 4196 arcsas - ok
22:07:18.0546 4196 [ 1C1F3D6DDDC046C920C493A779649F66 ] aswFsBlk C:\Windows\system32\drivers\aswFsBlk.sys
22:07:18.0546 4196 aswFsBlk - ok
22:07:18.0561 4196 [ A48D8015AF2A0D8B4937613FFBFD28DE ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
22:07:18.0577 4196 aswMonFlt - ok
22:07:18.0577 4196 [ 4A951BEBA9E49410CDE478B6F6ABB252 ] aswRdr C:\Windows\System32\Drivers\aswrdr2.sys
22:07:18.0577 4196 aswRdr - ok
22:07:18.0608 4196 [ 73DBCF808E00580F2A47F93DD9B03876 ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
22:07:18.0608 4196 aswSnx - ok
22:07:18.0670 4196 [ 6CBD7D3A33F498D09C831CDD732DA2E0 ] aswSP C:\Windows\system32\drivers\aswSP.sys
22:07:18.0670 4196 aswSP - ok
22:07:18.0686 4196 [ 7109A9AA551F37CD168C02368465957E ] aswTdi C:\Windows\system32\drivers\aswTdi.sys
22:07:18.0686 4196 aswTdi - ok
22:07:18.0702 4196 [ ADD2ADE1C2B285AB8378D2DAAF991481 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
22:07:18.0702 4196 AsyncMac - ok
22:07:18.0733 4196 [ 338C86357871C167A96AB976519BF59E ] atapi C:\Windows\system32\DRIVERS\atapi.sys
22:07:18.0733 4196 atapi - ok
22:07:18.0904 4196 [ C97BE8350FBCB1960B22FAD2E6C2B514 ] atikmdag C:\Windows\system32\DRIVERS\atikmdag.sys
22:07:18.0936 4196 atikmdag - ok
22:07:18.0967 4196 [ 510C873BFA135AA829F4180352772734 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
22:07:18.0982 4196 AudioEndpointBuilder - ok
22:07:18.0998 4196 [ 510C873BFA135AA829F4180352772734 ] Audiosrv C:\Windows\System32\Audiosrv.dll
22:07:18.0998 4196 Audiosrv - ok
22:07:19.0060 4196 [ 2F7C0F3E39C45E0127FB78B2F18A41F3 ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
22:07:19.0060 4196 avast! Antivirus - ok
22:07:19.0092 4196 [ DD6A431B43E34B91A767D1CE33728175 ] AxInstSV C:\Windows\System32\AxInstSV.dll
22:07:19.0092 4196 AxInstSV - ok
22:07:19.0138 4196 [ 1A231ABEC60FD316EC54C66715543CEC ] b06bdrv C:\Windows\system32\DRIVERS\bxvbdx.sys
22:07:19.0138 4196 b06bdrv - ok
22:07:19.0170 4196 [ BD8869EB9CDE6BBE4508D869929869EE ] b57nd60x C:\Windows\system32\DRIVERS\b57nd60x.sys
22:07:19.0185 4196 b57nd60x - ok
22:07:19.0201 4196 [ EE1E9C3BB8228AE423DD38DB69128E71 ] BDESVC C:\Windows\System32\bdesvc.dll
22:07:19.0201 4196 BDESVC - ok
22:07:19.0232 4196 [ 505506526A9D467307B3C393DEDAF858 ] Beep C:\Windows\system32\drivers\Beep.sys
22:07:19.0232 4196 Beep - ok
22:07:19.0263 4196 [ 85AC71C045CEB054ED48A7841AAE0C11 ] BFE C:\Windows\System32\bfe.dll
22:07:19.0279 4196 BFE - ok
22:07:19.0341 4196 [ 53F476476F55A27F580661BDE09C4EC4 ] BITS C:\Windows\System32\qmgr.dll
22:07:19.0357 4196 BITS - ok
22:07:19.0404 4196 [ 2287078ED48FCFC477B05B20CF38F36F ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
22:07:19.0404 4196 blbdrive - ok
22:07:19.0435 4196 [ 9A5C671B7FBAE4865149BB11F59B91B2 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
22:07:19.0435 4196 bowser - ok
22:07:19.0450 4196 [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys
22:07:19.0450 4196 BrFiltLo - ok
22:07:19.0450 4196 [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys
22:07:19.0450 4196 BrFiltUp - ok
22:07:19.0482 4196 [ A0E691DC6589D4D2CBE373171D1A49E5 ] Browser C:\Windows\System32\browser.dll
22:07:19.0482 4196 Browser - ok
22:07:19.0497 4196 [ 845B8CE732E67F3B4133164868C666EA ] Brserid C:\Windows\System32\Drivers\Brserid.sys
22:07:19.0513 4196 Brserid - ok
22:07:19.0513 4196 [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
22:07:19.0513 4196 BrSerWdm - ok
22:07:19.0513 4196 [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
22:07:19.0513 4196 BrUsbMdm - ok
22:07:19.0528 4196 [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
22:07:19.0528 4196 BrUsbSer - ok
22:07:19.0528 4196 [ ED3DF7C56CE0084EB2034432FC56565A ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys
22:07:19.0528 4196 BTHMODEM - ok
22:07:19.0575 4196 [ 1DF19C96EEF6C29D1C3E1A8678E07190 ] bthserv C:\Windows\system32\bthserv.dll
22:07:19.0591 4196 bthserv - ok
22:07:19.0606 4196 [ 77EA11B065E0A8AB902D78145CA51E10 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
22:07:19.0606 4196 cdfs - ok
22:07:19.0653 4196 [ BA6E70AA0E6091BC39DE29477D866A77 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
22:07:19.0653 4196 cdrom - ok
22:07:19.0669 4196 [ 628A9E30EC5E18DD5DE6BE4DBDC12198 ] CertPropSvc C:\Windows\System32\certprop.dll
22:07:19.0669 4196 CertPropSvc - ok
22:07:19.0684 4196 [ 3FE3FE94A34DF6FB06E6418D0F6A0060 ] circlass C:\Windows\system32\DRIVERS\circlass.sys
22:07:19.0684 4196 circlass - ok
22:07:19.0716 4196 [ 635181E0E9BBF16871BF5380D71DB02D ] CLFS C:\Windows\system32\CLFS.sys
22:07:19.0716 4196 CLFS - ok
22:07:19.0778 4196 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
22:07:19.0778 4196 clr_optimization_v2.0.50727_32 - ok
22:07:19.0872 4196 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
22:07:19.0872 4196 clr_optimization_v4.0.30319_32 - ok
22:07:19.0903 4196 [ DEA805815E587DAD1DD2C502220B5616 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
22:07:19.0903 4196 CmBatt - ok
22:07:19.0903 4196 [ C537B1DB64D495B9B4717B4D6D9EDBF2 ] cmdide C:\Windows\system32\DRIVERS\cmdide.sys
22:07:19.0903 4196 cmdide - ok
22:07:19.0934 4196 [ DB5E008B3744DD60C8498CBBF2A1CFA6 ] CNG C:\Windows\system32\Drivers\cng.sys
22:07:19.0950 4196 CNG - ok
22:07:19.0965 4196 CNRM0330 - ok
22:07:19.0996 4196 [ A6023D3823C37043986713F118A89BEE ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
22:07:19.0996 4196 Compbatt - ok
22:07:20.0012 4196 [ F1724BA27E97D627F808FB0BA77A28A6 ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys
22:07:20.0012 4196 CompositeBus - ok
22:07:20.0012 4196 COMSysApp - ok
22:07:20.0028 4196 [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys
22:07:20.0028 4196 crcdisk - ok
22:07:20.0059 4196 [ 520A108A2657F4BCA7FCED9CA7D885DE ] CryptSvc C:\Windows\system32\cryptsvc.dll
22:07:20.0074 4196 CryptSvc - ok
22:07:20.0106 4196 [ 27C9490BDD0AE48911AB8CF1932591ED ] CSC C:\Windows\system32\drivers\csc.sys
22:07:20.0106 4196 CSC - ok
22:07:20.0121 4196 [ 56FB5F222EA30D3D3FC459879772CB73 ] CscService C:\Windows\System32\cscsvc.dll
22:07:20.0137 4196 CscService - ok
22:07:20.0184 4196 [ B82CD39E336973359D7C9BF911E8E84F ] DcomLaunch C:\Windows\system32\rpcss.dll
22:07:20.0199 4196 DcomLaunch - ok
22:07:20.0230 4196 [ 8D6E10A2D9A5EED59562D9B82CF804E1 ] defragsvc C:\Windows\System32\defragsvc.dll
22:07:20.0230 4196 defragsvc - ok
22:07:20.0277 4196 [ 83D1ECEA8FAAE75604C0FA49AC7AD996 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
22:07:20.0277 4196 DfsC - ok
22:07:20.0324 4196 [ C56495FBD770712367CAD35E5DE72DA6 ] Dhcp C:\Windows\system32\dhcpcore.dll
22:07:20.0324 4196 Dhcp - ok
22:07:20.0355 4196 [ 1A050B0274BFB3890703D490F330C0DA ] discache C:\Windows\system32\drivers\discache.sys
22:07:20.0355 4196 discache - ok
22:07:20.0355 4196 [ 565003F326F99802E68CA78F2A68E9FF ] Disk C:\Windows\system32\DRIVERS\disk.sys
22:07:20.0371 4196 Disk - ok
22:07:20.0402 4196 [ B15BE77A2BACF9C3177D27518AFE26A9 ] Dnscache C:\Windows\System32\dnsrslvr.dll
22:07:20.0402 4196 Dnscache - ok
22:07:20.0418 4196 [ 4408C85C21EEA48EB0CE486BAEEF0502 ] dot3svc C:\Windows\System32\dot3svc.dll
22:07:20.0433 4196 dot3svc - ok
22:07:20.0433 4196 [ 7FA81C6E11CAA594ADB52084DA73A1E5 ] DPS C:\Windows\system32\dps.dll
22:07:20.0449 4196 DPS - ok
22:07:20.0480 4196 [ B918E7C5F9BF77202F89E1A9539F2EB4 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
22:07:20.0480 4196 drmkaud - ok
22:07:20.0511 4196 [ 687AF6BB383885FF6A64071B189A7F3E ] dtsoftbus01 C:\Windows\system32\DRIVERS\dtsoftbus01.sys
22:07:20.0527 4196 dtsoftbus01 - ok
22:07:20.0574 4196 [ 1679A4669326CB1A67CC95658D273234 ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
22:07:20.0574 4196 DXGKrnl - ok
22:07:20.0589 4196 [ 8600142FA91C1B96367D3300AD0F3F3A ] EapHost C:\Windows\System32\eapsvc.dll
22:07:20.0605 4196 EapHost - ok
22:07:20.0698 4196 [ 024E1B5CAC09731E4D868E64DBFB4AB0 ] ebdrv C:\Windows\system32\DRIVERS\evbdx.sys
22:07:20.0714 4196 ebdrv - ok
22:07:20.0745 4196 [ C2243FF9E9AAD0C30E8B1A0914DA15B6 ] EFS C:\Windows\System32\lsass.exe
22:07:20.0745 4196 EFS - ok
22:07:20.0808 4196 [ 1697C39978CD69F6FBC15302EDCECE1F ] ehRecvr C:\Windows\ehome\ehRecvr.exe
22:07:20.0823 4196 ehRecvr - ok
22:07:20.0854 4196 [ D389BFF34F80CAEDE417BF9D1507996A ] ehSched C:\Windows\ehome\ehsched.exe
22:07:20.0854 4196 ehSched - ok
22:07:20.0886 4196 [ 0ED67910C8C326796FAA00B2BF6D9D3C ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys
22:07:20.0886 4196 elxstor - ok
22:07:20.0901 4196 [ 8FC3208352DD3912C94367A206AB3F11 ] ErrDev C:\Windows\system32\DRIVERS\errdev.sys
22:07:20.0901 4196 ErrDev - ok
22:07:20.0964 4196 [ F6916EFC29D9953D5D0DF06882AE8E16 ] EventSystem C:\Windows\system32\es.dll
22:07:20.0979 4196 EventSystem - ok
22:07:20.0979 4196 [ 2DC9108D74081149CC8B651D3A26207F ] exfat C:\Windows\system32\drivers\exfat.sys
22:07:20.0995 4196 exfat - ok
22:07:21.0010 4196 [ 7E0AB74553476622FB6AE36F73D97D35 ] fastfat C:\Windows\system32\drivers\fastfat.sys
22:07:21.0010 4196 fastfat - ok
22:07:21.0057 4196 [ F7EA23CC5E6BF2181F3F399D54F6EFC1 ] Fax C:\Windows\system32\fxssvc.exe
22:07:21.0073 4196 Fax - ok
22:07:21.0073 4196 [ E817A017F82DF2A1F8CFDBDA29388B29 ] fdc C:\Windows\system32\DRIVERS\fdc.sys
22:07:21.0073 4196 fdc - ok
22:07:21.0104 4196 [ F3222C893BD2F5821A0179E5C71E88FB ] fdPHost C:\Windows\system32\fdPHost.dll
22:07:21.0104 4196 fdPHost - ok
22:07:21.0120 4196 [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B ] FDResPub C:\Windows\system32\fdrespub.dll
22:07:21.0120 4196 FDResPub - ok
22:07:21.0120 4196 [ 6CF00369C97F3CF563BE99BE983D13D8 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
22:07:21.0120 4196 FileInfo - ok
22:07:21.0135 4196 [ 42C51DC94C91DA21CB9196EB64C45DB9 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
22:07:21.0135 4196 Filetrace - ok
22:07:21.0135 4196 [ 87907AA70CB3C56600F1C2FB8841579B ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
22:07:21.0135 4196 flpydisk - ok
22:07:21.0151 4196 [ 7520EC808E0C35E0EE6F841294316653 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
22:07:21.0151 4196 FltMgr - ok
22:07:21.0198 4196 [ 151258FC2EC8C48BDF8A53350AE0A676 ] FontCache C:\Windows\system32\FntCache.dll
22:07:21.0213 4196 FontCache - ok
22:07:21.0291 4196 [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
22:07:21.0291 4196 FontCache3.0.0.0 - ok
22:07:21.0291 4196 [ 1A16B57943853E598CFF37FE2B8CBF1D ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
22:07:21.0291 4196 FsDepends - ok
22:07:21.0322 4196 [ 500A9814FD9446A8126858A5A7F7D273 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
22:07:21.0322 4196 Fs_Rec - ok
22:07:21.0385 4196 [ DAFBD9FE39197495AED6D51F3B85B5D2 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
22:07:21.0385 4196 fvevol - ok
22:07:21.0447 4196 [ 0F76E205BDC60364F08A5949082771CA ] FwLnk C:\Windows\system32\DRIVERS\FwLnk.sys
22:07:21.0447 4196 FwLnk - ok
22:07:21.0478 4196 [ 65EE0C7A58B65E74AE05637418153938 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys
22:07:21.0478 4196 gagp30kx - ok
22:07:21.0525 4196 [ 8BA3C04702BF8F927AB36AE8313CA4EE ] gpsvc C:\Windows\System32\gpsvc.dll
22:07:21.0541 4196 gpsvc - ok
22:07:21.0588 4196 [ C1B577B2169900F4CF7190C39F085794 ] gusvc C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
22:07:21.0588 4196 gusvc - ok
22:07:21.0634 4196 [ 833051C6C6C42117191935F734CFBD97 ] hamachi C:\Windows\system32\DRIVERS\hamachi.sys
22:07:21.0634 4196 hamachi - ok
22:07:21.0759 4196 [ F31D7F8A7699575DBB3B3A3AB4AA6216 ] Hamachi2Svc C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
22:07:21.0806 4196 Hamachi2Svc - ok
22:07:21.0853 4196 [ C44E3C2BAB6837DB337DDEE7544736DB ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
22:07:21.0853 4196 hcw85cir - ok
22:07:21.0915 4196 [ 3530CAD25DEBA7DC7DE8BB51632CBC5F ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
22:07:21.0915 4196 HdAudAddService - ok
22:07:21.0931 4196 [ 717A2207FD6F13AD3E664C7D5A43C7BF ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
22:07:21.0931 4196 HDAudBus - ok
22:07:21.0978 4196 [ 1D58A7F3E11A9731D0EAAAA8405ACC36 ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys
22:07:21.0978 4196 HidBatt - ok
22:07:21.0978 4196 [ 89448F40E6DF260C206A193A4683BA78 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys
22:07:21.0978 4196 HidBth - ok
22:07:22.0024 4196 [ CF50B4CF4A4F229B9F3C08351F99CA5E ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
22:07:22.0024 4196 HidIr - ok
22:07:22.0040 4196 [ 2BC6F6A1992B3A77F5F41432CA6B3B6B ] hidserv C:\Windows\system32\hidserv.dll
22:07:22.0040 4196 hidserv - ok
22:07:22.0087 4196 [ 25072FB35AC90B25F9E4E3BACF774102 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
22:07:22.0087 4196 HidUsb - ok
22:07:22.0118 4196 [ 741C2A45CA8407E374AABA3E330B7872 ] hkmsvc C:\Windows\system32\kmsvc.dll
22:07:22.0118 4196 hkmsvc - ok
22:07:22.0134 4196 [ A768CA158BB06782A2835B907F4873C3 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
22:07:22.0149 4196 HomeGroupListener - ok
22:07:22.0180 4196 [ FB08DEC5EF43D0C66D83B8E9694E7549 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
22:07:22.0180 4196 HomeGroupProvider - ok
22:07:22.0196 4196 [ 295FDC419039090EB8B49FFDBB374549 ] HpSAMD C:\Windows\system32\DRIVERS\HpSAMD.sys
22:07:22.0196 4196 HpSAMD - ok
22:07:22.0227 4196 [ C531C7FD9E8B62021112787C4E2C5A5A ] HTTP C:\Windows\system32\drivers\HTTP.sys
22:07:22.0227 4196 HTTP - ok
22:07:22.0227 4196 [ 8305F33CDE89AD6C7A0763ED0B5A8D42 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
22:07:22.0227 4196 hwpolicy - ok
22:07:22.0243 4196 [ F151F0BDC47F4A28B1B20A0818EA36D6 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
22:07:22.0258 4196 i8042prt - ok
22:07:22.0290 4196 [ 71F1A494FEDF4B33C02C4A6A28D6D9E9 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
22:07:22.0290 4196 iaStorV - ok
22:07:22.0383 4196 [ 5AF815EB5BC9802E5A064E2BA62BFC0C ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
22:07:22.0414 4196 idsvc - ok
22:07:22.0430 4196 [ 4173FF5708F3236CF25195FECD742915 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys
22:07:22.0430 4196 iirsp - ok
22:07:22.0508 4196 [ FAC0EE6562B121B1399D6E855583F7A5 ] IKEEXT C:\Windows\System32\ikeext.dll
22:07:22.0524 4196 IKEEXT - ok
22:07:22.0633 4196 [ E4A2E810CB2607C9C159C0DFB0BD4C88 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHDA.sys
22:07:22.0648 4196 IntcAzAudAddService - ok
22:07:22.0695 4196 [ A0F12F2C9BA6C72F3987CE780E77C130 ] intelide C:\Windows\system32\DRIVERS\intelide.sys
22:07:22.0695 4196 intelide - ok
22:07:22.0711 4196 [ 3B514D27BFC4ACCB4037BC6685F766E0 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
22:07:22.0711 4196 intelppm - ok
22:07:22.0742 4196 [ ACB364B9075A45C0736E5C47BE5CAE19 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
22:07:22.0742 4196 IPBusEnum - ok
22:07:22.0758 4196 [ 709D1761D3B19A932FF0238EA6D50200 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
22:07:22.0773 4196 IpFilterDriver - ok
22:07:22.0804 4196 [ 477397B432A256A50EE7E4339EB9EA14 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
22:07:22.0836 4196 iphlpsvc - ok
22:07:22.0836 4196 [ E4454B6C37D7FFD5649611F6496308A7 ] IPMIDRV C:\Windows\system32\DRIVERS\IPMIDrv.sys
22:07:22.0836 4196 IPMIDRV - ok
22:07:22.0851 4196 [ A5FA468D67ABCDAA36264E463A7BB0CD ] IPNAT C:\Windows\system32\drivers\ipnat.sys
22:07:22.0851 4196 IPNAT - ok
22:07:22.0867 4196 [ 42996CFF20A3084A56017B7902307E9F ] IRENUM C:\Windows\system32\drivers\irenum.sys
22:07:22.0867 4196 IRENUM - ok
22:07:22.0867 4196 [ 1F32BB6B38F62F7DF1A7AB7292638A35 ] isapnp C:\Windows\system32\DRIVERS\isapnp.sys
22:07:22.0882 4196 isapnp - ok
22:07:22.0898 4196 [ ED46C223AE46C6866AB77CDC41C404B7 ] iScsiPrt C:\Windows\system32\DRIVERS\msiscsi.sys
22:07:22.0898 4196 iScsiPrt - ok
22:07:22.0914 4196 [ ADEF52CA1AEAE82B50DF86B56413107E ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
22:07:22.0914 4196 kbdclass - ok
22:07:22.0929 4196 [ 3D9F0EBF350EDCFD6498057301455964 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
22:07:22.0929 4196 kbdhid - ok
22:07:22.0945 4196 [ C2243FF9E9AAD0C30E8B1A0914DA15B6 ] KeyIso C:\Windows\system32\lsass.exe
22:07:22.0945 4196 KeyIso - ok
22:07:22.0992 4196 [ 52FC17C8589F11747D01D3CF592673D0 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
22:07:22.0992 4196 KSecDD - ok
22:07:23.0007 4196 [ 3E5474B03568CFAB834DA3C38E8C9EFA ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
22:07:23.0007 4196 KSecPkg - ok
22:07:23.0054 4196 [ 89A7B9CC98D0D80C6F31B91C0A310FCD ] KtmRm C:\Windows\system32\msdtckrm.dll
22:07:23.0054 4196 KtmRm - ok
22:07:23.0085 4196 [ 8F6BF790D3168224C16F2AF68A84438C ] LanmanServer C:\Windows\system32\srvsvc.dll
22:07:23.0101 4196 LanmanServer - ok
22:07:23.0116 4196 [ B9891F885DCF1F0513A51CB58493CB1F ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
22:07:23.0132 4196 LanmanWorkstation - ok
22:07:23.0272 4196 [ F7611EC07349979DA9B0AE1F18CCC7A6 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
22:07:23.0272 4196 lltdio - ok
22:07:23.0491 4196 [ 5700673E13A2117FA3B9020C852C01E2 ] lltdsvc C:\Windows\System32\lltdsvc.dll
22:07:23.0491 4196 lltdsvc - ok
22:07:23.0522 4196 [ 55CA01BA19D0006C8F2639B6C045E08B ] lmhosts C:\Windows\System32\lmhsvc.dll
22:07:23.0522 4196 lmhosts - ok
22:07:23.0538 4196 [ EB119A53CCF2ACC000AC71B065B78FEF ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys
22:07:23.0538 4196 LSI_FC - ok
22:07:23.0538 4196 [ 8ADE1C877256A22E49B75D1CC9161F9C ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys
22:07:23.0538 4196 LSI_SAS - ok
22:07:23.0553 4196 [ DC9DC3D3DAA0E276FD2EC262E38B11E9 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys
22:07:23.0553 4196 LSI_SAS2 - ok
22:07:23.0569 4196 [ 0A036C7D7CAB643A7F07135AC47E0524 ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys
22:07:23.0569 4196 LSI_SCSI - ok
22:07:23.0569 4196 [ 6703E366CC18D3B6E534F5CF7DF39CEE ] luafv C:\Windows\system32\drivers\luafv.sys
22:07:23.0569 4196 luafv - ok
22:07:23.0600 4196 [ E2B0887816ED336685954E3D8FDAA51D ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
22:07:23.0600 4196 Mcx2Svc - ok
22:07:23.0647 4196 [ 0FFF5B045293002AB38EB1FD1FC2FB74 ] megasas C:\Windows\system32\DRIVERS\megasas.sys
22:07:23.0647 4196 megasas - ok
22:07:23.0662 4196 [ DCBAB2920C75F390CAF1D29F675D03D6 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys
22:07:23.0662 4196 MegaSR - ok
22:07:23.0740 4196 Microsoft SharePoint Workspace Audit Service - ok
22:07:23.0787 4196 [ 146B6F43A673379A3C670E86D89BE5EA ] MMCSS C:\Windows\system32\mmcss.dll
22:07:23.0787 4196 MMCSS - ok
22:07:23.0803 4196 [ F001861E5700EE84E2D4E52C712F4964 ] Modem C:\Windows\system32\drivers\modem.sys
22:07:23.0803 4196 Modem - ok
22:07:23.0834 4196 [ 79D10964DE86B292320E9DFE02282A23 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
22:07:23.0834 4196 monitor - ok
22:07:23.0834 4196 [ FB18CC1D4C2E716B6B903B0AC0CC0609 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
22:07:23.0834 4196 mouclass - ok
22:07:23.0850 4196 [ 2C388D2CD01C9042596CF3C8F3C7B24D ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
22:07:23.0850 4196 mouhid - ok
22:07:23.0850 4196 [ 921C18727C5920D6C0300736646931C2 ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
22:07:23.0850 4196 mountmgr - ok
22:07:23.0928 4196 [ 46297FA8E30A6007F14118FC2B942FBC ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
22:07:23.0928 4196 MozillaMaintenance - ok
22:07:23.0943 4196 [ 2AF5997438C55FB79D33D015C30E1974 ] mpio C:\Windows\system32\DRIVERS\mpio.sys
22:07:23.0943 4196 mpio - ok
22:07:23.0943 4196 [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
22:07:23.0943 4196 mpsdrv - ok
22:07:23.0974 4196 [ 5CD996CECF45CBC3E8D109C86B82D69E ] MpsSvc C:\Windows\system32\mpssvc.dll
22:07:24.0006 4196 MpsSvc - ok
22:07:24.0037 4196 [ B1BE47008D20E43DA3ADC37C24CDB89D ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
22:07:24.0037 4196 MRxDAV - ok
22:07:24.0099 4196 [ CA7570E42522E24324A12161DB14EC02 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
Chytří lidé používají Google a nevolí komunisty
*Čeština je krásný jazyk, takže se jej prosím naučte používat*
Member of the Spyke's Fun Club
*Čeština je krásný jazyk, takže se jej prosím naučte používat*
Member of the Spyke's Fun Club
-
- Level 4
- Příspěvky: 1434
- Registrován: září 07
- Bydliště: Ostrava-Hrabůvka
- Pohlaví:
- Stav:
Offline
Re: PowerReg Scheduler - kontrola logu
22:07:24.0099 4196 mrxsmb - ok
22:07:24.0115 4196 [ F965C3AB2B2AE5C378F4562486E35051 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
22:07:24.0115 4196 mrxsmb10 - ok
22:07:24.0240 4196 [ 25C38264A3C72594DD21D355D70D7A5D ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
22:07:24.0240 4196 mrxsmb20 - ok
22:07:24.0271 4196 [ 4326D168944123F38DD3B2D9C37A0B12 ] msahci C:\Windows\system32\DRIVERS\msahci.sys
22:07:24.0271 4196 msahci - ok
22:07:24.0271 4196 [ 455029C7174A2DBB03DBA8A0D8BDDD9A ] msdsm C:\Windows\system32\DRIVERS\msdsm.sys
22:07:24.0286 4196 msdsm - ok
22:07:24.0302 4196 [ E1BCE74A3BD9902B72599C0192A07E27 ] MSDTC C:\Windows\System32\msdtc.exe
22:07:24.0318 4196 MSDTC - ok
22:07:24.0333 4196 [ DAEFB28E3AF5A76ABCC2C3078C07327F ] Msfs C:\Windows\system32\drivers\Msfs.sys
22:07:24.0333 4196 Msfs - ok
22:07:24.0349 4196 [ 3E1E5767043C5AF9367F0056295E9F84 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
22:07:24.0349 4196 mshidkmdf - ok
22:07:24.0364 4196 [ 0A4E5757AE09FA9622E3158CC1AEF114 ] msisadrv C:\Windows\system32\DRIVERS\msisadrv.sys
22:07:24.0364 4196 msisadrv - ok
22:07:24.0396 4196 [ 90F7D9E6B6F27E1A707D4A297F077828 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
22:07:24.0396 4196 MSiSCSI - ok
22:07:24.0396 4196 msiserver - ok
22:07:24.0442 4196 [ 8C0860D6366AAFFB6C5BB9DF9448E631 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
22:07:24.0442 4196 MSKSSRV - ok
22:07:24.0458 4196 [ 3EA8B949F963562CEDBB549EAC0C11CE ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
22:07:24.0458 4196 MSPCLOCK - ok
22:07:24.0458 4196 [ F456E973590D663B1073E9C463B40932 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
22:07:24.0458 4196 MSPQM - ok
22:07:24.0474 4196 [ 0E008FC4819D238C51D7C93E7B41E560 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
22:07:24.0474 4196 MsRPC - ok
22:07:24.0489 4196 [ FC6B9FF600CC585EA38B12589BD4E246 ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
22:07:24.0489 4196 mssmbios - ok
22:07:24.0489 4196 [ B42C6B921F61A6E55159B8BE6CD54A36 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
22:07:24.0489 4196 MSTEE - ok
22:07:24.0505 4196 [ 33599130F44E1F34631CEA241DE8AC84 ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys
22:07:24.0505 4196 MTConfig - ok
22:07:24.0520 4196 [ 159FAD02F64E6381758C990F753BCC80 ] Mup C:\Windows\system32\Drivers\mup.sys
22:07:24.0520 4196 Mup - ok
22:07:24.0536 4196 [ 80284F1985C70C86F0B5F86DA2DFE1DF ] napagent C:\Windows\system32\qagentRT.dll
22:07:24.0567 4196 napagent - ok
22:07:24.0614 4196 [ 26384429FCD85D83746F63E798AB1480 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
22:07:24.0614 4196 NativeWifiP - ok
22:07:24.0630 4196 [ 23759D175A0A9BAAF04D05047BC135A8 ] NDIS C:\Windows\system32\drivers\ndis.sys
22:07:24.0645 4196 NDIS - ok
22:07:24.0661 4196 [ 0E1787AA6C9191D3D319E8BAFE86F80C ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
22:07:24.0661 4196 NdisCap - ok
22:07:24.0692 4196 [ E4A8AEC125A2E43A9E32AFEEA7C9C888 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
22:07:24.0692 4196 NdisTapi - ok
22:07:24.0692 4196 [ B30AE7F2B6D7E343B0DF32E6C08FCE75 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
22:07:24.0692 4196 Ndisuio - ok
22:07:24.0708 4196 [ 267C415EADCBE53C9CA873DEE39CF3A4 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
22:07:24.0708 4196 NdisWan - ok
22:07:24.0708 4196 [ AF7E7C63DCEF3F8772726F86039D6EB4 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
22:07:24.0708 4196 NDProxy - ok
22:07:24.0708 4196 [ 80B275B1CE3B0E79909DB7B39AF74D51 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
22:07:24.0723 4196 NetBIOS - ok
22:07:24.0723 4196 [ DD52A733BF4CA5AF84562A5E2F963B91 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
22:07:24.0723 4196 NetBT - ok
22:07:24.0739 4196 [ C2243FF9E9AAD0C30E8B1A0914DA15B6 ] Netlogon C:\Windows\system32\lsass.exe
22:07:24.0739 4196 Netlogon - ok
22:07:24.0786 4196 [ 7CCCFCA7510684768DA22092D1FA4DB2 ] Netman C:\Windows\System32\netman.dll
22:07:24.0786 4196 Netman - ok
22:07:24.0817 4196 [ 8C338238C16777A802D6A9211EB2BA50 ] netprofm C:\Windows\System32\netprofm.dll
22:07:24.0817 4196 netprofm - ok
22:07:24.0864 4196 [ FE2AA5A684B0DD9B1FAE57B7817C198B ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
22:07:24.0864 4196 NetTcpPortSharing - ok
22:07:25.0051 4196 [ 5B2DFA9C5C02DDF2A113CC0F551B59DF ] NETw5s32 C:\Windows\system32\DRIVERS\NETw5s32.sys
22:07:25.0098 4196 NETw5s32 - ok
22:07:25.0222 4196 [ 58218EC6B61B1169CF54AAB0D00F5FE2 ] netw5v32 C:\Windows\system32\DRIVERS\netw5v32.sys
22:07:25.0254 4196 netw5v32 - ok
22:07:25.0285 4196 [ 1D85C4B390B0EE09C7A46B91EFB2C097 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys
22:07:25.0285 4196 nfrd960 - ok
22:07:25.0316 4196 [ 2226496E34BD40734946A054B1CD657F ] NlaSvc C:\Windows\System32\nlasvc.dll
22:07:25.0316 4196 NlaSvc - ok
22:07:25.0332 4196 [ 1DB262A9F8C087E8153D89BEF3D2235F ] Npfs C:\Windows\system32\drivers\Npfs.sys
22:07:25.0332 4196 Npfs - ok
22:07:25.0363 4196 [ BA387E955E890C8A88306D9B8D06BF17 ] nsi C:\Windows\system32\nsisvc.dll
22:07:25.0363 4196 nsi - ok
22:07:25.0363 4196 [ E9A0A4D07E53D8FEA2BB8387A3293C58 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
22:07:25.0363 4196 nsiproxy - ok
22:07:25.0425 4196 [ 187002CE05693C306F43C873F821381F ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
22:07:25.0441 4196 Ntfs - ok
22:07:25.0472 4196 [ F9756A98D69098DCA8945D62858A812C ] Null C:\Windows\system32\drivers\Null.sys
22:07:25.0472 4196 Null - ok
22:07:25.0503 4196 [ F1B0BED906F97E16F6D0C3629D2F21C6 ] nvraid C:\Windows\system32\drivers\nvraid.sys
22:07:25.0503 4196 nvraid - ok
22:07:25.0550 4196 [ 4520B63899E867F354EE012D34E11536 ] nvstor C:\Windows\system32\drivers\nvstor.sys
22:07:25.0550 4196 nvstor - ok
22:07:25.0566 4196 [ 5A0983915F02BAE73267CC2A041F717D ] nv_agp C:\Windows\system32\DRIVERS\nv_agp.sys
22:07:25.0566 4196 nv_agp - ok
22:07:25.0566 4196 [ 08A70A1F2CDDE9BB49B885CB817A66EB ] ohci1394 C:\Windows\system32\DRIVERS\ohci1394.sys
22:07:25.0581 4196 ohci1394 - ok
22:07:25.0659 4196 [ 9D10F99A6712E28F8ACD5641E3A7EA6B ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
22:07:25.0659 4196 ose - ok
22:07:25.0815 4196 [ 358A9CCA612C68EB2F07DDAD4CE1D8D7 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
22:07:25.0940 4196 osppsvc - ok
22:07:25.0971 4196 [ 82A8521DDC60710C3D3D3E7325209BEC ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
22:07:25.0971 4196 p2pimsvc - ok
22:07:25.0987 4196 [ 59C3DDD501E39E006DAC31BF55150D91 ] p2psvc C:\Windows\system32\p2psvc.dll
22:07:26.0002 4196 p2psvc - ok
22:07:26.0018 4196 [ 2EA877ED5DD9713C5AC74E8EA7348D14 ] Parport C:\Windows\system32\DRIVERS\parport.sys
22:07:26.0018 4196 Parport - ok
22:07:26.0049 4196 [ 66D3415C159741ADE7038A277EFFF99F ] partmgr C:\Windows\system32\drivers\partmgr.sys
22:07:26.0049 4196 partmgr - ok
22:07:26.0065 4196 [ EB0A59F29C19B86479D36B35983DAADC ] Parvdm C:\Windows\system32\DRIVERS\parvdm.sys
22:07:26.0065 4196 Parvdm - ok
22:07:26.0080 4196 [ 358AB7956D3160000726574083DFC8A6 ] PcaSvc C:\Windows\System32\pcasvc.dll
22:07:26.0080 4196 PcaSvc - ok
22:07:26.0112 4196 [ C858CB77C577780ECC456A892E7E7D0F ] pci C:\Windows\system32\DRIVERS\pci.sys
22:07:26.0112 4196 pci - ok
22:07:26.0112 4196 [ AFE86F419014DB4E5593F69FFE26CE0A ] pciide C:\Windows\system32\DRIVERS\pciide.sys
22:07:26.0112 4196 pciide - ok
22:07:26.0143 4196 [ F396431B31693E71E8A80687EF523506 ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys
22:07:26.0143 4196 pcmcia - ok
22:07:26.0158 4196 [ 250F6B43D2B613172035C6747AEEB19F ] pcw C:\Windows\system32\drivers\pcw.sys
22:07:26.0158 4196 pcw - ok
22:07:26.0190 4196 [ 9E0104BA49F4E6973749A02BF41344ED ] PEAUTH C:\Windows\system32\drivers\peauth.sys
22:07:26.0190 4196 PEAUTH - ok
22:07:26.0252 4196 [ AF4D64D2A57B9772CF3801950B8058A6 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll
22:07:26.0283 4196 PeerDistSvc - ok
22:07:26.0361 4196 [ 9C1BFF7910C89A1D12E57343475840CB ] pla C:\Windows\system32\pla.dll
22:07:26.0408 4196 pla - ok
22:07:26.0439 4196 [ 71DEF5EC79774C798342D0EA16E41780 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
22:07:26.0455 4196 PlugPlay - ok
22:07:26.0455 4196 [ 63FF8572611249931EB16BB8EED6AFC8 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
22:07:26.0470 4196 PNRPAutoReg - ok
22:07:26.0486 4196 [ 82A8521DDC60710C3D3D3E7325209BEC ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
22:07:26.0486 4196 PNRPsvc - ok
22:07:26.0517 4196 [ 48E1B75C6DC0232FD92BAAE4BD344721 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
22:07:26.0533 4196 PolicyAgent - ok
22:07:26.0548 4196 [ DBFF83F709A91049621C1D35DD45C92C ] Power C:\Windows\system32\umpo.dll
22:07:26.0564 4196 Power - ok
22:07:26.0580 4196 [ 631E3E205AD6D86F2AED6A4A8E69F2DB ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
22:07:26.0595 4196 PptpMiniport - ok
22:07:26.0595 4196 [ 85B1E3A0C7585BC4AAE6899EC6FCF011 ] Processor C:\Windows\system32\DRIVERS\processr.sys
22:07:26.0595 4196 Processor - ok
22:07:26.0642 4196 [ AEA3BDBDBA667AA6F678CB38907E4F5E ] ProfSvc C:\Windows\system32\profsvc.dll
22:07:26.0642 4196 ProfSvc - ok
22:07:26.0658 4196 [ C2243FF9E9AAD0C30E8B1A0914DA15B6 ] ProtectedStorage C:\Windows\system32\lsass.exe
22:07:26.0673 4196 ProtectedStorage - ok
22:07:26.0689 4196 [ 6270CCAE2A86DE6D146529FE55B3246A ] Psched C:\Windows\system32\DRIVERS\pacer.sys
22:07:26.0689 4196 Psched - ok
22:07:26.0720 4196 [ AB95ECF1F6659A60DDC166D8315B0751 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys
22:07:26.0736 4196 ql2300 - ok
22:07:26.0767 4196 [ B4DD51DD25182244B86737DC51AF2270 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys
22:07:26.0767 4196 ql40xx - ok
22:07:26.0798 4196 [ 31AC809E7707EB580B2BDB760390765A ] QWAVE C:\Windows\system32\qwave.dll
22:07:26.0798 4196 QWAVE - ok
22:07:26.0814 4196 [ 584078CA1B95CA72DF2A27C336F9719D ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
22:07:26.0814 4196 QWAVEdrv - ok
22:07:26.0829 4196 [ 30A81B53C766D0133BB86D234E5556AB ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
22:07:26.0845 4196 RasAcd - ok
22:07:26.0860 4196 [ 57EC4AEF73660166074D8F7F31C0D4FD ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
22:07:26.0860 4196 RasAgileVpn - ok
22:07:26.0892 4196 [ A60F1839849C0C00739787FD5EC03F13 ] RasAuto C:\Windows\System32\rasauto.dll
22:07:26.0892 4196 RasAuto - ok
22:07:26.0907 4196 [ D9F91EAFEC2815365CBE6D167E4E332A ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
22:07:26.0907 4196 Rasl2tp - ok
22:07:26.0923 4196 [ 0CE66EC736B7FC526D78F7624C7D2A94 ] RasMan C:\Windows\System32\rasmans.dll
22:07:26.0923 4196 RasMan - ok
22:07:26.0938 4196 [ 0FE8B15916307A6AC12BFB6A63E45507 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
22:07:26.0938 4196 RasPppoe - ok
22:07:26.0954 4196 [ 44101F495A83EA6401D886E7FD70096B ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
22:07:26.0954 4196 RasSstp - ok
22:07:26.0970 4196 [ 835D7E81BF517A3B72384BDCC85E1CE6 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
22:07:26.0970 4196 rdbss - ok
22:07:26.0985 4196 [ 0D8F05481CB76E70E1DA06EE9F0DA9DF ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
22:07:26.0985 4196 rdpbus - ok
22:07:27.0001 4196 [ 1E016846895B15A99F9A176A05029075 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
22:07:27.0016 4196 RDPCDD - ok
22:07:27.0048 4196 [ C5FF95883FFEF704D50C40D21CFB3AB5 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys
22:07:27.0048 4196 RDPDR - ok
22:07:27.0063 4196 [ 5A53CA1598DD4156D44196D200C94B8A ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
22:07:27.0063 4196 RDPENCDD - ok
22:07:27.0079 4196 [ 44B0A53CD4F27D50ED461DAE0C0B4E1F ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
22:07:27.0079 4196 RDPREFMP - ok
22:07:27.0110 4196 [ C5B8D47A4688DE9D335204EA757C2240 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
22:07:27.0110 4196 RDPWD - ok
22:07:27.0126 4196 [ 4EA225BF1CF05E158853F30A99CA29A7 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
22:07:27.0126 4196 rdyboost - ok
22:07:27.0172 4196 [ 7B5E1419717FAC363A31CC302895217A ] RemoteAccess C:\Windows\System32\mprdim.dll
22:07:27.0172 4196 RemoteAccess - ok
22:07:27.0204 4196 [ CB9A8683F4EF2BF99E123D79950D7935 ] RemoteRegistry C:\Windows\system32\regsvc.dll
22:07:27.0204 4196 RemoteRegistry - ok
22:07:27.0235 4196 [ 78D072F35BC45D9E4E1B61895C152234 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
22:07:27.0250 4196 RpcEptMapper - ok
22:07:27.0282 4196 [ 94D36C0E44677DD26981D2BFEEF2A29D ] RpcLocator C:\Windows\system32\locator.exe
22:07:27.0282 4196 RpcLocator - ok
22:07:27.0297 4196 [ B82CD39E336973359D7C9BF911E8E84F ] RpcSs C:\Windows\system32\rpcss.dll
22:07:27.0297 4196 RpcSs - ok
22:07:27.0328 4196 [ 032B0D36AD92B582D869879F5AF5B928 ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
22:07:27.0328 4196 rspndr - ok
22:07:27.0375 4196 [ 87407B31EA6FF0DC4765258164B98BEA ] RTHDMIAzAudService C:\Windows\system32\drivers\RtHDMIV.sys
22:07:27.0375 4196 RTHDMIAzAudService - ok
22:07:27.0438 4196 [ 5283B9A27FF230F2FF70D92451FF409A ] RTL8167 C:\Windows\system32\DRIVERS\Rt86win7.sys
22:07:27.0438 4196 RTL8167 - ok
22:07:27.0453 4196 [ 5423D8437051E89DD34749F242C98648 ] s3cap C:\Windows\system32\DRIVERS\vms3cap.sys
22:07:27.0453 4196 s3cap - ok
22:07:27.0469 4196 [ C2243FF9E9AAD0C30E8B1A0914DA15B6 ] SamSs C:\Windows\system32\lsass.exe
22:07:27.0469 4196 SamSs - ok
22:07:27.0500 4196 [ 34EE0C44B724E3E4CE2EFF29126DE5B5 ] sbp2port C:\Windows\system32\DRIVERS\sbp2port.sys
22:07:27.0500 4196 sbp2port - ok
22:07:27.0516 4196 [ 8FC518FFE9519C2631D37515A68009C4 ] SCardSvr C:\Windows\System32\SCardSvr.dll
22:07:27.0531 4196 SCardSvr - ok
22:07:27.0531 4196 [ A95C54B2AC3CC9C73FCDF9E51A1D6B51 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
22:07:27.0531 4196 scfilter - ok
22:07:27.0578 4196 [ DF1E5C82E4D09CF8105CC644980C4803 ] Schedule C:\Windows\system32\schedsvc.dll
22:07:27.0609 4196 Schedule - ok
22:07:27.0640 4196 [ 628A9E30EC5E18DD5DE6BE4DBDC12198 ] SCPolicySvc C:\Windows\System32\certprop.dll
22:07:27.0640 4196 SCPolicySvc - ok
22:07:27.0687 4196 [ 7B48CFF3A475FE849DEA65EC4D35C425 ] sdbus C:\Windows\system32\DRIVERS\sdbus.sys
22:07:27.0687 4196 sdbus - ok
22:07:27.0703 4196 [ 5FD90ABDBFAEE85986802622CBB03446 ] SDRSVC C:\Windows\System32\SDRSVC.dll
22:07:27.0703 4196 SDRSVC - ok
22:07:27.0734 4196 [ 90A3935D05B494A5A39D37E71F09A677 ] secdrv C:\Windows\system32\drivers\secdrv.sys
22:07:27.0734 4196 secdrv - ok
22:07:27.0765 4196 [ A59B3A4442C52060CC7A85293AA3546F ] seclogon C:\Windows\system32\seclogon.dll
22:07:27.0781 4196 seclogon - ok
22:07:27.0796 4196 [ DCB7FCDCC97F87360F75D77425B81737 ] SENS C:\Windows\System32\sens.dll
22:07:27.0796 4196 SENS - ok
22:07:27.0812 4196 [ 50087FE1EE447009C9CC2997B90DE53F ] SensrSvc C:\Windows\system32\sensrsvc.dll
22:07:27.0812 4196 SensrSvc - ok
22:07:27.0859 4196 [ A2CC81C30BEF6AC9F27055490EEF6DE3 ] Sentinel C:\Windows\System32\Drivers\SENTINEL.SYS
22:07:27.0874 4196 Sentinel - ok
22:07:27.0890 4196 [ 9AD8B8B515E3DF6ACD4212EF465DE2D1 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
22:07:27.0890 4196 Serenum - ok
22:07:27.0890 4196 [ 5FB7FCEA0490D821F26F39CC5EA3D1E2 ] Serial C:\Windows\system32\DRIVERS\serial.sys
22:07:27.0890 4196 Serial - ok
22:07:27.0906 4196 [ 79BFFB520327FF916A582DFEA17AA813 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys
22:07:27.0906 4196 sermouse - ok
22:07:27.0921 4196 [ 8F55CE568C543D5ADF45C409D16718FC ] SessionEnv C:\Windows\system32\sessenv.dll
22:07:27.0921 4196 SessionEnv - ok
22:07:27.0921 4196 [ 9F976E1EB233DF46FCE808D9DEA3EB9C ] sffdisk C:\Windows\system32\DRIVERS\sffdisk.sys
22:07:27.0921 4196 sffdisk - ok
22:07:27.0937 4196 [ 932A68EE27833CFD57C1639D375F2731 ] sffp_mmc C:\Windows\system32\DRIVERS\sffp_mmc.sys
22:07:27.0937 4196 sffp_mmc - ok
22:07:27.0937 4196 [ 4F1E5B0FE7C8050668DBFADE8999AEFB ] sffp_sd C:\Windows\system32\DRIVERS\sffp_sd.sys
22:07:27.0937 4196 sffp_sd - ok
22:07:27.0952 4196 [ DB96666CC8312EBC45032F30B007A547 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys
22:07:27.0952 4196 sfloppy - ok
22:07:27.0968 4196 [ D1A079A0DE2EA524513B6930C24527A2 ] SharedAccess C:\Windows\System32\ipnathlp.dll
22:07:27.0984 4196 SharedAccess - ok
22:07:28.0030 4196 [ CD2E48FA5B29EE2B3B5858056D246EF2 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
22:07:28.0046 4196 ShellHWDetection - ok
22:07:28.0046 4196 [ 2565CAC0DC9FE0371BDCE60832582B2E ] sisagp C:\Windows\system32\DRIVERS\sisagp.sys
22:07:28.0046 4196 sisagp - ok
22:07:28.0062 4196 [ A9F0486851BECB6DDA1D89D381E71055 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys
22:07:28.0077 4196 SiSRaid2 - ok
22:07:28.0093 4196 [ 3727097B55738E2F554972C3BE5BC1AA ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys
22:07:28.0093 4196 SiSRaid4 - ok
22:07:28.0218 4196 [ 0F97E7A47A52F4A36969F0FC319654C2 ] Skype C2C Service C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
22:07:28.0327 4196 Skype C2C Service - ok
22:07:28.0358 4196 [ F07AF60B152221472FBDB2FECEC4896D ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe
22:07:28.0374 4196 SkypeUpdate - ok
22:07:28.0405 4196 [ 3E21C083B8A01CB70BA1F09303010FCE ] Smb C:\Windows\system32\DRIVERS\smb.sys
22:07:28.0405 4196 Smb - ok
22:07:28.0452 4196 [ 6A984831644ECA1A33FFEAE4126F4F37 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
22:07:28.0452 4196 SNMPTRAP - ok
22:07:28.0498 4196 [ 9DE6E60CE7FD82B4985DE5D9C22265AD ] SNTNLUSB C:\Windows\system32\DRIVERS\SNTNLUSB.SYS
22:07:28.0498 4196 SNTNLUSB - ok
22:07:28.0561 4196 [ 95CF1AE7527FB70F7816563CBC09D942 ] spldr C:\Windows\system32\drivers\spldr.sys
22:07:28.0561 4196 spldr - ok
22:07:28.0748 4196 [ E17323B0AA9FB3FF9945731D736EDA2F ] Spooler C:\Windows\System32\spoolsv.exe
22:07:28.0748 4196 Spooler - ok
22:07:28.0842 4196 [ 4C287F9069FEDBD791178876EE9DE536 ] sppsvc C:\Windows\system32\sppsvc.exe
22:07:28.0857 4196 sppsvc - ok
22:07:28.0873 4196 [ D8E3E19EEBDAB49DD4A8D3062EAD4EC7 ] sppuinotify C:\Windows\system32\sppuinotify.dll
22:07:28.0873 4196 sppuinotify - ok
22:07:28.0920 4196 [ C4A027B8C0BD3FC0699F41FA5E9E0C87 ] srv C:\Windows\system32\DRIVERS\srv.sys
22:07:28.0920 4196 srv - ok
22:07:28.0966 4196 [ 414BB592CAD8A79649D01F9D94318FB3 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
22:07:28.0966 4196 srv2 - ok
22:07:29.0013 4196 [ FF207D67700AA18242AAF985D3E7D8F4 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
22:07:29.0013 4196 srvnet - ok
22:07:29.0029 4196 [ D887C9FD02AC9FA880F6E5027A43E118 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
22:07:29.0044 4196 SSDPSRV - ok
22:07:29.0044 4196 [ D318F23BE45D5E3A107469EB64815B50 ] SstpSvc C:\Windows\system32\sstpsvc.dll
22:07:29.0060 4196 SstpSvc - ok
22:07:29.0091 4196 Steam Client Service - ok
22:07:29.0107 4196 [ DB32D325C192B801DF274BFD12A7E72B ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys
22:07:29.0122 4196 stexstor - ok
22:07:29.0169 4196 [ A22825E7BB7018E8AF3E229A5AF17221 ] StiSvc C:\Windows\System32\wiaservc.dll
22:07:29.0169 4196 StiSvc - ok
22:07:29.0200 4196 [ 957E346CA948668F2496A6CCF6FF82CC ] storflt C:\Windows\system32\DRIVERS\vmstorfl.sys
22:07:29.0200 4196 storflt - ok
22:07:29.0232 4196 [ D5751969DC3E4B88BF482AC8EC9FE019 ] storvsc C:\Windows\system32\DRIVERS\storvsc.sys
22:07:29.0232 4196 storvsc - ok
22:07:29.0278 4196 [ E58C78A848ADD9610A4DB6D214AF5224 ] swenum C:\Windows\system32\DRIVERS\swenum.sys
22:07:29.0278 4196 swenum - ok
22:07:29.0294 4196 [ A28BD92DF340E57B024BA433165D34D7 ] swprv C:\Windows\System32\swprv.dll
22:07:29.0294 4196 swprv - ok
22:07:29.0325 4196 [ 04105C8DA62353589C29BDAEB8D88BD8 ] SysMain C:\Windows\system32\sysmain.dll
22:07:29.0341 4196 SysMain - ok
22:07:29.0356 4196 [ FCFB6C552FBC0DA299799CBD50AD9FD4 ] TabletInputService C:\Windows\System32\TabSvc.dll
22:07:29.0356 4196 TabletInputService - ok
22:07:29.0372 4196 [ 2F46B0C70A4ADC8C90CF825DA3B4FEAF ] TapiSrv C:\Windows\System32\tapisrv.dll
22:07:29.0388 4196 TapiSrv - ok
22:07:29.0388 4196 [ B799D9FDB26111737F58288D8DC172D9 ] TBS C:\Windows\System32\tbssvc.dll
22:07:29.0388 4196 TBS - ok
22:07:29.0450 4196 [ 55E9965552741F3850CB22CBBA9671ED ] Tcpip C:\Windows\system32\drivers\tcpip.sys
22:07:29.0466 4196 Tcpip - ok
22:07:29.0512 4196 [ 55E9965552741F3850CB22CBBA9671ED ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
22:07:29.0528 4196 TCPIP6 - ok
22:07:29.0559 4196 [ E64444523ADD154F86567C469BC0B17F ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
22:07:29.0559 4196 tcpipreg - ok
22:07:29.0606 4196 [ 1875C1490D99E70E449E3AFAE9FCBADF ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
22:07:29.0606 4196 TDPIPE - ok
22:07:29.0700 4196 [ 7156308896D34EA75A582F9A09E50C17 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
22:07:29.0700 4196 TDTCP - ok
22:07:29.0700 4196 [ CB39E896A2A83702D1737BFD402B3542 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
22:07:29.0715 4196 tdx - ok
22:07:29.0715 4196 [ C36F41EE20E6999DBF4B0425963268A5 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
22:07:29.0715 4196 TermDD - ok
22:07:29.0746 4196 [ A01E50A04D7B1960B33E92B9080E6A94 ] TermService C:\Windows\System32\termsrv.dll
22:07:29.0762 4196 TermService - ok
22:07:29.0778 4196 [ 42FB6AFD6B79D9FE07381609172E7CA4 ] Themes C:\Windows\system32\themeservice.dll
22:07:29.0778 4196 Themes - ok
22:07:29.0856 4196 [ 146B6F43A673379A3C670E86D89BE5EA ] THREADORDER C:\Windows\system32\mmcss.dll
22:07:29.0871 4196 THREADORDER - ok
22:07:29.0949 4196 [ 5557E7F940CBCF09BE43379F551F6689 ] TosCoSrv C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
22:07:29.0949 4196 TosCoSrv - ok
22:07:30.0012 4196 [ 969377943FE7284609BABBAB4E06B93C ] tos_sps32 C:\Windows\system32\DRIVERS\tos_sps32.sys
22:07:30.0012 4196 tos_sps32 - ok
22:07:30.0043 4196 [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A ] TrkWks C:\Windows\System32\trkwks.dll
22:07:30.0058 4196 TrkWks - ok
22:07:30.0105 4196 [ 41A4C781D2286208D397D72099304133 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
22:07:30.0105 4196 TrustedInstaller - ok
22:07:30.0136 4196 [ 98AE6FA07D12CB4EC5CF4A9BFA5F4242 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
22:07:30.0136 4196 tssecsrv - ok
22:07:30.0168 4196 [ 3E461D890A97F9D4C168F5FDA36E1D00 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
22:07:30.0168 4196 tunnel - ok
22:07:30.0199 4196 [ 792A8B80F8188ABA4B2BE271583F3E46 ] TVALZ C:\Windows\system32\DRIVERS\TVALZ_O.SYS
22:07:30.0199 4196 TVALZ - ok
22:07:30.0199 4196 [ 750FBCB269F4D7DD2E420C56B795DB6D ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys
22:07:30.0199 4196 uagp35 - ok
22:07:30.0246 4196 [ 09CC3E16F8E5EE7168E01CF8FCBE061A ] udfs C:\Windows\system32\DRIVERS\udfs.sys
22:07:30.0246 4196 udfs - ok
22:07:30.0277 4196 [ 8344FD4FCE927880AA1AA7681D4927E5 ] UI0Detect C:\Windows\system32\UI0Detect.exe
22:07:30.0292 4196 UI0Detect - ok
22:07:30.0308 4196 [ 44E8048ACE47BEFBFDC2E9BE4CBC8880 ] uliagpkx C:\Windows\system32\DRIVERS\uliagpkx.sys
22:07:30.0308 4196 uliagpkx - ok
22:07:30.0355 4196 [ 049B3A50B3D646BAEEEE9EEC9B0668DC ] umbus C:\Windows\system32\DRIVERS\umbus.sys
22:07:30.0355 4196 umbus - ok
22:07:30.0370 4196 [ 7550AD0C6998BA1CB4843E920EE0FEAC ] UmPass C:\Windows\system32\DRIVERS\umpass.sys
22:07:30.0370 4196 UmPass - ok
22:07:30.0417 4196 [ 8ECACA5454844F66386F7BE4AE0D7CD1 ] UmRdpService C:\Windows\System32\umrdp.dll
22:07:30.0417 4196 UmRdpService - ok
22:07:30.0464 4196 [ 833FBB672460EFCE8011D262175FAD33 ] upnphost C:\Windows\System32\upnphost.dll
22:07:30.0464 4196 upnphost - ok
22:07:30.0542 4196 [ C31AE588E403042632DC796CF09E30B0 ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
22:07:30.0542 4196 usbccgp - ok
22:07:30.0558 4196 [ 04EC7CEC62EC3B6D9354EEE93327FC82 ] usbcir C:\Windows\system32\DRIVERS\usbcir.sys
22:07:30.0558 4196 usbcir - ok
22:07:30.0604 4196 [ E4C436D914768CE965D5E659BA7EEBD8 ] usbehci C:\Windows\system32\drivers\usbehci.sys
22:07:30.0604 4196 usbehci - ok
22:07:30.0620 4196 [ BDCD7156EC37448F08633FD899823620 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
22:07:30.0620 4196 usbhub - ok
22:07:30.0667 4196 [ EB2D819A639015253C871CDA09D91D58 ] usbohci C:\Windows\system32\drivers\usbohci.sys
22:07:30.0667 4196 usbohci - ok
22:07:30.0682 4196 [ 797D862FE0875E75C7CC4C1AD7B30252 ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
22:07:30.0682 4196 usbprint - ok
22:07:30.0698 4196 [ 1C4287739A93594E57E2A9E6A3ED7353 ] USBSTOR C:\Windows\system32\drivers\USBSTOR.SYS
22:07:30.0714 4196 USBSTOR - ok
22:07:30.0745 4196 [ 22480BF4E5A09192E5E30BA4DDE79FA4 ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
22:07:30.0745 4196 usbuhci - ok
22:07:30.0792 4196 [ B5F6A992D996282B7FAE7048E50AF83A ] usbvideo C:\Windows\System32\Drivers\usbvideo.sys
22:07:30.0792 4196 usbvideo - ok
22:07:30.0870 4196 [ 237C444FBD1C697A2E3FA60F02C61F22 ] UVCFTR C:\Windows\system32\Drivers\UVCFTR_S.SYS
22:07:30.0870 4196 UVCFTR - ok
22:07:30.0885 4196 [ 081E6E1C91AEC36758902A9F727CD23C ] UxSms C:\Windows\System32\uxsms.dll
22:07:30.0901 4196 UxSms - ok
22:07:30.0932 4196 [ C2243FF9E9AAD0C30E8B1A0914DA15B6 ] VaultSvc C:\Windows\system32\lsass.exe
22:07:30.0932 4196 VaultSvc - ok
22:07:30.0979 4196 [ A059C4C3EDB09E07D21A8E5C0AABD3CB ] vdrvroot C:\Windows\system32\DRIVERS\vdrvroot.sys
22:07:30.0979 4196 vdrvroot - ok
22:07:31.0010 4196 [ 8C4E7C49D3641BC9E299E466A7F8867D ] vds C:\Windows\System32\vds.exe
22:07:31.0010 4196 vds - ok
22:07:31.0041 4196 [ 17C408214EA61696CEC9C66E388B14F3 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
22:07:31.0041 4196 vga - ok
22:07:31.0057 4196 [ 8E38096AD5C8570A6F1570A61E251561 ] VgaSave C:\Windows\System32\drivers\vga.sys
22:07:31.0057 4196 VgaSave - ok
22:07:31.0057 4196 [ 3BE6E1F3A4F1AFEC8CEE0D7883F93583 ] vhdmp C:\Windows\system32\DRIVERS\vhdmp.sys
22:07:31.0057 4196 vhdmp - ok
22:07:31.0072 4196 [ C829317A37B4BEA8F39735D4B076E923 ] viaagp C:\Windows\system32\DRIVERS\viaagp.sys
22:07:31.0072 4196 viaagp - ok
22:07:31.0104 4196 [ E02F079A6AA107F06B16549C6E5C7B74 ] ViaC7 C:\Windows\system32\DRIVERS\viac7.sys
22:07:31.0104 4196 ViaC7 - ok
22:07:31.0104 4196 [ E43574F6A56A0EE11809B48C09E4FD3C ] viaide C:\Windows\system32\DRIVERS\viaide.sys
22:07:31.0104 4196 viaide - ok
22:07:31.0150 4196 [ 379B349F65F453D2A6E75EA6B7448E49 ] vmbus C:\Windows\system32\DRIVERS\vmbus.sys
22:07:31.0150 4196 vmbus - ok
22:07:31.0166 4196 [ EC2BBAB4B84D0738C6C83D2234DC36FE ] VMBusHID C:\Windows\system32\DRIVERS\VMBusHID.sys
22:07:31.0166 4196 VMBusHID - ok
22:07:31.0182 4196 [ 384E5A2AA49934295171E499F86BA6F3 ] volmgr C:\Windows\system32\DRIVERS\volmgr.sys
22:07:31.0182 4196 volmgr - ok
22:07:31.0213 4196 [ B5BB72067DDDDBBFB04B2F89FF8C3C87 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
22:07:31.0213 4196 volmgrx - ok
22:07:31.0213 4196 [ 58DF9D2481A56EDDE167E51B334D44FD ] volsnap C:\Windows\system32\DRIVERS\volsnap.sys
22:07:31.0228 4196 volsnap - ok
22:07:31.0244 4196 [ 9DFA0CC2F8855A04816729651175B631 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys
22:07:31.0244 4196 vsmraid - ok
22:07:31.0291 4196 [ 7EA2BCD94D9CFAF4C556F5CC94532A6C ] VSS C:\Windows\system32\vssvc.exe
22:07:31.0306 4196 VSS - ok
22:07:31.0322 4196 [ 90567B1E658001E79D7C8BBD3DDE5AA6 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys
22:07:31.0322 4196 vwifibus - ok
22:07:31.0353 4196 [ 7090D3436EEB4E7DA3373090A23448F7 ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys
22:07:31.0353 4196 vwififlt - ok
22:07:31.0369 4196 [ 55187FD710E27D5095D10A472C8BAF1C ] W32Time C:\Windows\system32\w32time.dll
22:07:31.0369 4196 W32Time - ok
22:07:31.0384 4196 [ DE3721E89C653AA281428C8A69745D90 ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys
22:07:31.0384 4196 WacomPen - ok
22:07:31.0416 4196 [ 692A712062146E96D28BA0B7D75DE31B ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
22:07:31.0416 4196 WANARP - ok
22:07:31.0416 4196 [ 692A712062146E96D28BA0B7D75DE31B ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
22:07:31.0416 4196 Wanarpv6 - ok
22:07:31.0494 4196 [ 353A04C273EC58475D8633E75CCD5604 ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
22:07:31.0540 4196 WatAdminSvc - ok
22:07:31.0572 4196 [ 7790B77FE1E5EE47DCC66247095BB4C9 ] wbengine C:\Windows\system32\wbengine.exe
22:07:31.0587 4196 wbengine - ok
22:07:31.0587 4196 [ 9614B5D29DC76AC3C29F6D2D3AA70E67 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
22:07:31.0603 4196 WbioSrvc - ok
22:07:31.0634 4196 [ 6D9B75275C3E3A5F51AEF81AFFADB2B6 ] wcncsvc C:\Windows\System32\wcncsvc.dll
22:07:31.0634 4196 wcncsvc - ok
22:07:31.0650 4196 [ 5D930B6357A6D2AF4D7653BDABBF352F ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
22:07:31.0650 4196 WcsPlugInService - ok
22:07:31.0665 4196 [ 1112A9BADACB47B7C0BB0392E3158DFF ] Wd C:\Windows\system32\DRIVERS\wd.sys
22:07:31.0665 4196 Wd - ok
22:07:31.0696 4196 [ 9950E3D0F08141C7E89E64456AE7DC73 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
22:07:31.0696 4196 Wdf01000 - ok
22:07:31.0712 4196 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiServiceHost C:\Windows\system32\wdi.dll
22:07:31.0728 4196 WdiServiceHost - ok
22:07:31.0728 4196 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiSystemHost C:\Windows\system32\wdi.dll
22:07:31.0728 4196 WdiSystemHost - ok
22:07:31.0759 4196 [ BB5EC38F8D4600119B4720BC5D4211F1 ] WebClient C:\Windows\System32\webclnt.dll
22:07:31.0774 4196 WebClient - ok
22:07:31.0790 4196 [ 760F0AFE937A77CFF27153206534F275 ] Wecsvc C:\Windows\system32\wecsvc.dll
22:07:31.0806 4196 Wecsvc - ok
22:07:31.0821 4196 [ AC804569BB2364FB6017370258A4091B ] wercplsupport C:\Windows\System32\wercplsupport.dll
22:07:31.0821 4196 wercplsupport - ok
22:07:31.0837 4196 [ 08E420D873E4FD85241EE2421B02C4A4 ] WerSvc C:\Windows\System32\WerSvc.dll
22:07:31.0837 4196 WerSvc - ok
22:07:31.0852 4196 [ 8B9A943F3B53861F2BFAF6C186168F79 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
22:07:31.0852 4196 WfpLwf - ok
22:07:31.0868 4196 [ 5CF95B35E59E2A38023836FFF31BE64C ] WIMMount C:\Windows\system32\drivers\wimmount.sys
22:07:31.0884 4196 WIMMount - ok
22:07:31.0946 4196 [ 3FAE8F94296001C32EAB62CD7D82E0FD ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll
22:07:31.0962 4196 WinDefend - ok
22:07:31.0962 4196 WinHttpAutoProxySvc - ok
22:07:32.0024 4196 [ F62E510B6AD4C21EB9FE8668ED251826 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
22:07:32.0024 4196 Winmgmt - ok
22:07:32.0086 4196 [ C4F5D3901D1B41D602DDC196E0B95B51 ] WinRM C:\Windows\system32\WsmSvc.dll
22:07:32.0086 4196 WinRM - ok
22:07:32.0133 4196 [ 16935C98FF639D185086A3529B1F2067 ] Wlansvc C:\Windows\System32\wlansvc.dll
22:07:32.0149 4196 Wlansvc - ok
22:07:32.0180 4196 [ 0217679B8FCA58714C3BF2726D2CA84E ] WmiAcpi C:\Windows\system32\DRIVERS\wmiacpi.sys
22:07:32.0180 4196 WmiAcpi - ok
22:07:32.0196 4196 [ 6EB6B66517B048D87DC1856DDF1F4C3F ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
22:07:32.0196 4196 wmiApSrv - ok
22:07:32.0274 4196 [ 77FBD400984CF72BA0FC4B3489D65F74 ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
22:07:32.0289 4196 WMPNetworkSvc - ok
22:07:32.0289 4196 [ A2F0EC770A92F2B3F9DE6D518E11409C ] WPCSvc C:\Windows\System32\wpcsvc.dll
22:07:32.0305 4196 WPCSvc - ok
22:07:32.0305 4196 [ B7F658A2EBC07129538AD9AB35212637 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
22:07:32.0320 4196 WPDBusEnum - ok
22:07:32.0336 4196 [ 6DB3276587B853BF886B69528FDB048C ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
22:07:32.0336 4196 ws2ifsl - ok
22:07:32.0367 4196 [ A661A76333057B383A06E65F0073222F ] wscsvc C:\Windows\System32\wscsvc.dll
22:07:32.0367 4196 wscsvc - ok
22:07:32.0367 4196 WSearch - ok
22:07:32.0445 4196 [ FC3EC24FCE372C89423E015A2AC1A31E ] wuauserv C:\Windows\system32\wuaueng.dll
22:07:32.0461 4196 wuauserv - ok
22:07:32.0476 4196 [ 6F9B6C0C93232CFF47D0F72D6DB1D21E ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
22:07:32.0476 4196 WudfPf - ok
22:07:32.0508 4196 [ F91FF1E51FCA30B3C3981DB7D5924252 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
22:07:32.0508 4196 WUDFRd - ok
22:07:32.0539 4196 [ DDEE3682FE97037C45F4D7AB467CB8B6 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
22:07:32.0539 4196 wudfsvc - ok
22:07:32.0554 4196 [ FF2D745B560F7C71B31F30F4D49F73D2 ] WwanSvc C:\Windows\System32\wwansvc.dll
22:07:32.0570 4196 WwanSvc - ok
22:07:32.0601 4196 ================ Scan global ===============================
22:07:32.0632 4196 [ 9A595DF601070DA78C40481120DD2C06 ] C:\Windows\system32\basesrv.dll
22:07:32.0664 4196 [ 008F51AE989C3DF1CBAF8B39DC423CCC ] C:\Windows\system32\winsrv.dll
22:07:32.0679 4196 [ 008F51AE989C3DF1CBAF8B39DC423CCC ] C:\Windows\system32\winsrv.dll
22:07:32.0710 4196 [ 364455805E64882844EE9ACB72522830 ] C:\Windows\system32\sxssrv.dll
22:07:32.0726 4196 [ 5F1B6A9C35D3D5CA72D6D6FDEF9747D6 ] C:\Windows\system32\services.exe
22:07:32.0742 4196 [Global] - ok
22:07:32.0742 4196 ================ Scan MBR ==================================
22:07:32.0742 4196 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
22:07:33.0163 4196 \Device\Harddisk0\DR0 - ok
22:07:33.0163 4196 ================ Scan VBR ==================================
22:07:33.0178 4196 [ 143A105C6D14EA9286CB12D163FFEDF8 ] \Device\Harddisk0\DR0\Partition1
22:07:33.0194 4196 \Device\Harddisk0\DR0\Partition1 - ok
22:07:33.0194 4196 [ BD9AD5CD39D3143F7EE34D5FBB4BE9EA ] \Device\Harddisk0\DR0\Partition2
22:07:33.0194 4196 \Device\Harddisk0\DR0\Partition2 - ok
22:07:33.0210 4196 [ 1E1D04FEFF15868FA5811E63FCC93682 ] \Device\Harddisk0\DR0\Partition3
22:07:33.0225 4196 \Device\Harddisk0\DR0\Partition3 - ok
22:07:33.0225 4196 ============================================================
22:07:33.0225 4196 Scan finished
22:07:33.0225 4196 ============================================================
22:07:33.0241 2592 Detected object count: 0
22:07:33.0241 2592 Actual detected object count: 0
22:07:40.0604 2088 Deinitialize success
22:07:24.0115 4196 [ F965C3AB2B2AE5C378F4562486E35051 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
22:07:24.0115 4196 mrxsmb10 - ok
22:07:24.0240 4196 [ 25C38264A3C72594DD21D355D70D7A5D ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
22:07:24.0240 4196 mrxsmb20 - ok
22:07:24.0271 4196 [ 4326D168944123F38DD3B2D9C37A0B12 ] msahci C:\Windows\system32\DRIVERS\msahci.sys
22:07:24.0271 4196 msahci - ok
22:07:24.0271 4196 [ 455029C7174A2DBB03DBA8A0D8BDDD9A ] msdsm C:\Windows\system32\DRIVERS\msdsm.sys
22:07:24.0286 4196 msdsm - ok
22:07:24.0302 4196 [ E1BCE74A3BD9902B72599C0192A07E27 ] MSDTC C:\Windows\System32\msdtc.exe
22:07:24.0318 4196 MSDTC - ok
22:07:24.0333 4196 [ DAEFB28E3AF5A76ABCC2C3078C07327F ] Msfs C:\Windows\system32\drivers\Msfs.sys
22:07:24.0333 4196 Msfs - ok
22:07:24.0349 4196 [ 3E1E5767043C5AF9367F0056295E9F84 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
22:07:24.0349 4196 mshidkmdf - ok
22:07:24.0364 4196 [ 0A4E5757AE09FA9622E3158CC1AEF114 ] msisadrv C:\Windows\system32\DRIVERS\msisadrv.sys
22:07:24.0364 4196 msisadrv - ok
22:07:24.0396 4196 [ 90F7D9E6B6F27E1A707D4A297F077828 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
22:07:24.0396 4196 MSiSCSI - ok
22:07:24.0396 4196 msiserver - ok
22:07:24.0442 4196 [ 8C0860D6366AAFFB6C5BB9DF9448E631 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
22:07:24.0442 4196 MSKSSRV - ok
22:07:24.0458 4196 [ 3EA8B949F963562CEDBB549EAC0C11CE ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
22:07:24.0458 4196 MSPCLOCK - ok
22:07:24.0458 4196 [ F456E973590D663B1073E9C463B40932 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
22:07:24.0458 4196 MSPQM - ok
22:07:24.0474 4196 [ 0E008FC4819D238C51D7C93E7B41E560 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
22:07:24.0474 4196 MsRPC - ok
22:07:24.0489 4196 [ FC6B9FF600CC585EA38B12589BD4E246 ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
22:07:24.0489 4196 mssmbios - ok
22:07:24.0489 4196 [ B42C6B921F61A6E55159B8BE6CD54A36 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
22:07:24.0489 4196 MSTEE - ok
22:07:24.0505 4196 [ 33599130F44E1F34631CEA241DE8AC84 ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys
22:07:24.0505 4196 MTConfig - ok
22:07:24.0520 4196 [ 159FAD02F64E6381758C990F753BCC80 ] Mup C:\Windows\system32\Drivers\mup.sys
22:07:24.0520 4196 Mup - ok
22:07:24.0536 4196 [ 80284F1985C70C86F0B5F86DA2DFE1DF ] napagent C:\Windows\system32\qagentRT.dll
22:07:24.0567 4196 napagent - ok
22:07:24.0614 4196 [ 26384429FCD85D83746F63E798AB1480 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
22:07:24.0614 4196 NativeWifiP - ok
22:07:24.0630 4196 [ 23759D175A0A9BAAF04D05047BC135A8 ] NDIS C:\Windows\system32\drivers\ndis.sys
22:07:24.0645 4196 NDIS - ok
22:07:24.0661 4196 [ 0E1787AA6C9191D3D319E8BAFE86F80C ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
22:07:24.0661 4196 NdisCap - ok
22:07:24.0692 4196 [ E4A8AEC125A2E43A9E32AFEEA7C9C888 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
22:07:24.0692 4196 NdisTapi - ok
22:07:24.0692 4196 [ B30AE7F2B6D7E343B0DF32E6C08FCE75 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
22:07:24.0692 4196 Ndisuio - ok
22:07:24.0708 4196 [ 267C415EADCBE53C9CA873DEE39CF3A4 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
22:07:24.0708 4196 NdisWan - ok
22:07:24.0708 4196 [ AF7E7C63DCEF3F8772726F86039D6EB4 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
22:07:24.0708 4196 NDProxy - ok
22:07:24.0708 4196 [ 80B275B1CE3B0E79909DB7B39AF74D51 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
22:07:24.0723 4196 NetBIOS - ok
22:07:24.0723 4196 [ DD52A733BF4CA5AF84562A5E2F963B91 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
22:07:24.0723 4196 NetBT - ok
22:07:24.0739 4196 [ C2243FF9E9AAD0C30E8B1A0914DA15B6 ] Netlogon C:\Windows\system32\lsass.exe
22:07:24.0739 4196 Netlogon - ok
22:07:24.0786 4196 [ 7CCCFCA7510684768DA22092D1FA4DB2 ] Netman C:\Windows\System32\netman.dll
22:07:24.0786 4196 Netman - ok
22:07:24.0817 4196 [ 8C338238C16777A802D6A9211EB2BA50 ] netprofm C:\Windows\System32\netprofm.dll
22:07:24.0817 4196 netprofm - ok
22:07:24.0864 4196 [ FE2AA5A684B0DD9B1FAE57B7817C198B ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
22:07:24.0864 4196 NetTcpPortSharing - ok
22:07:25.0051 4196 [ 5B2DFA9C5C02DDF2A113CC0F551B59DF ] NETw5s32 C:\Windows\system32\DRIVERS\NETw5s32.sys
22:07:25.0098 4196 NETw5s32 - ok
22:07:25.0222 4196 [ 58218EC6B61B1169CF54AAB0D00F5FE2 ] netw5v32 C:\Windows\system32\DRIVERS\netw5v32.sys
22:07:25.0254 4196 netw5v32 - ok
22:07:25.0285 4196 [ 1D85C4B390B0EE09C7A46B91EFB2C097 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys
22:07:25.0285 4196 nfrd960 - ok
22:07:25.0316 4196 [ 2226496E34BD40734946A054B1CD657F ] NlaSvc C:\Windows\System32\nlasvc.dll
22:07:25.0316 4196 NlaSvc - ok
22:07:25.0332 4196 [ 1DB262A9F8C087E8153D89BEF3D2235F ] Npfs C:\Windows\system32\drivers\Npfs.sys
22:07:25.0332 4196 Npfs - ok
22:07:25.0363 4196 [ BA387E955E890C8A88306D9B8D06BF17 ] nsi C:\Windows\system32\nsisvc.dll
22:07:25.0363 4196 nsi - ok
22:07:25.0363 4196 [ E9A0A4D07E53D8FEA2BB8387A3293C58 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
22:07:25.0363 4196 nsiproxy - ok
22:07:25.0425 4196 [ 187002CE05693C306F43C873F821381F ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
22:07:25.0441 4196 Ntfs - ok
22:07:25.0472 4196 [ F9756A98D69098DCA8945D62858A812C ] Null C:\Windows\system32\drivers\Null.sys
22:07:25.0472 4196 Null - ok
22:07:25.0503 4196 [ F1B0BED906F97E16F6D0C3629D2F21C6 ] nvraid C:\Windows\system32\drivers\nvraid.sys
22:07:25.0503 4196 nvraid - ok
22:07:25.0550 4196 [ 4520B63899E867F354EE012D34E11536 ] nvstor C:\Windows\system32\drivers\nvstor.sys
22:07:25.0550 4196 nvstor - ok
22:07:25.0566 4196 [ 5A0983915F02BAE73267CC2A041F717D ] nv_agp C:\Windows\system32\DRIVERS\nv_agp.sys
22:07:25.0566 4196 nv_agp - ok
22:07:25.0566 4196 [ 08A70A1F2CDDE9BB49B885CB817A66EB ] ohci1394 C:\Windows\system32\DRIVERS\ohci1394.sys
22:07:25.0581 4196 ohci1394 - ok
22:07:25.0659 4196 [ 9D10F99A6712E28F8ACD5641E3A7EA6B ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
22:07:25.0659 4196 ose - ok
22:07:25.0815 4196 [ 358A9CCA612C68EB2F07DDAD4CE1D8D7 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
22:07:25.0940 4196 osppsvc - ok
22:07:25.0971 4196 [ 82A8521DDC60710C3D3D3E7325209BEC ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
22:07:25.0971 4196 p2pimsvc - ok
22:07:25.0987 4196 [ 59C3DDD501E39E006DAC31BF55150D91 ] p2psvc C:\Windows\system32\p2psvc.dll
22:07:26.0002 4196 p2psvc - ok
22:07:26.0018 4196 [ 2EA877ED5DD9713C5AC74E8EA7348D14 ] Parport C:\Windows\system32\DRIVERS\parport.sys
22:07:26.0018 4196 Parport - ok
22:07:26.0049 4196 [ 66D3415C159741ADE7038A277EFFF99F ] partmgr C:\Windows\system32\drivers\partmgr.sys
22:07:26.0049 4196 partmgr - ok
22:07:26.0065 4196 [ EB0A59F29C19B86479D36B35983DAADC ] Parvdm C:\Windows\system32\DRIVERS\parvdm.sys
22:07:26.0065 4196 Parvdm - ok
22:07:26.0080 4196 [ 358AB7956D3160000726574083DFC8A6 ] PcaSvc C:\Windows\System32\pcasvc.dll
22:07:26.0080 4196 PcaSvc - ok
22:07:26.0112 4196 [ C858CB77C577780ECC456A892E7E7D0F ] pci C:\Windows\system32\DRIVERS\pci.sys
22:07:26.0112 4196 pci - ok
22:07:26.0112 4196 [ AFE86F419014DB4E5593F69FFE26CE0A ] pciide C:\Windows\system32\DRIVERS\pciide.sys
22:07:26.0112 4196 pciide - ok
22:07:26.0143 4196 [ F396431B31693E71E8A80687EF523506 ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys
22:07:26.0143 4196 pcmcia - ok
22:07:26.0158 4196 [ 250F6B43D2B613172035C6747AEEB19F ] pcw C:\Windows\system32\drivers\pcw.sys
22:07:26.0158 4196 pcw - ok
22:07:26.0190 4196 [ 9E0104BA49F4E6973749A02BF41344ED ] PEAUTH C:\Windows\system32\drivers\peauth.sys
22:07:26.0190 4196 PEAUTH - ok
22:07:26.0252 4196 [ AF4D64D2A57B9772CF3801950B8058A6 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll
22:07:26.0283 4196 PeerDistSvc - ok
22:07:26.0361 4196 [ 9C1BFF7910C89A1D12E57343475840CB ] pla C:\Windows\system32\pla.dll
22:07:26.0408 4196 pla - ok
22:07:26.0439 4196 [ 71DEF5EC79774C798342D0EA16E41780 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
22:07:26.0455 4196 PlugPlay - ok
22:07:26.0455 4196 [ 63FF8572611249931EB16BB8EED6AFC8 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
22:07:26.0470 4196 PNRPAutoReg - ok
22:07:26.0486 4196 [ 82A8521DDC60710C3D3D3E7325209BEC ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
22:07:26.0486 4196 PNRPsvc - ok
22:07:26.0517 4196 [ 48E1B75C6DC0232FD92BAAE4BD344721 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
22:07:26.0533 4196 PolicyAgent - ok
22:07:26.0548 4196 [ DBFF83F709A91049621C1D35DD45C92C ] Power C:\Windows\system32\umpo.dll
22:07:26.0564 4196 Power - ok
22:07:26.0580 4196 [ 631E3E205AD6D86F2AED6A4A8E69F2DB ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
22:07:26.0595 4196 PptpMiniport - ok
22:07:26.0595 4196 [ 85B1E3A0C7585BC4AAE6899EC6FCF011 ] Processor C:\Windows\system32\DRIVERS\processr.sys
22:07:26.0595 4196 Processor - ok
22:07:26.0642 4196 [ AEA3BDBDBA667AA6F678CB38907E4F5E ] ProfSvc C:\Windows\system32\profsvc.dll
22:07:26.0642 4196 ProfSvc - ok
22:07:26.0658 4196 [ C2243FF9E9AAD0C30E8B1A0914DA15B6 ] ProtectedStorage C:\Windows\system32\lsass.exe
22:07:26.0673 4196 ProtectedStorage - ok
22:07:26.0689 4196 [ 6270CCAE2A86DE6D146529FE55B3246A ] Psched C:\Windows\system32\DRIVERS\pacer.sys
22:07:26.0689 4196 Psched - ok
22:07:26.0720 4196 [ AB95ECF1F6659A60DDC166D8315B0751 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys
22:07:26.0736 4196 ql2300 - ok
22:07:26.0767 4196 [ B4DD51DD25182244B86737DC51AF2270 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys
22:07:26.0767 4196 ql40xx - ok
22:07:26.0798 4196 [ 31AC809E7707EB580B2BDB760390765A ] QWAVE C:\Windows\system32\qwave.dll
22:07:26.0798 4196 QWAVE - ok
22:07:26.0814 4196 [ 584078CA1B95CA72DF2A27C336F9719D ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
22:07:26.0814 4196 QWAVEdrv - ok
22:07:26.0829 4196 [ 30A81B53C766D0133BB86D234E5556AB ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
22:07:26.0845 4196 RasAcd - ok
22:07:26.0860 4196 [ 57EC4AEF73660166074D8F7F31C0D4FD ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
22:07:26.0860 4196 RasAgileVpn - ok
22:07:26.0892 4196 [ A60F1839849C0C00739787FD5EC03F13 ] RasAuto C:\Windows\System32\rasauto.dll
22:07:26.0892 4196 RasAuto - ok
22:07:26.0907 4196 [ D9F91EAFEC2815365CBE6D167E4E332A ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
22:07:26.0907 4196 Rasl2tp - ok
22:07:26.0923 4196 [ 0CE66EC736B7FC526D78F7624C7D2A94 ] RasMan C:\Windows\System32\rasmans.dll
22:07:26.0923 4196 RasMan - ok
22:07:26.0938 4196 [ 0FE8B15916307A6AC12BFB6A63E45507 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
22:07:26.0938 4196 RasPppoe - ok
22:07:26.0954 4196 [ 44101F495A83EA6401D886E7FD70096B ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
22:07:26.0954 4196 RasSstp - ok
22:07:26.0970 4196 [ 835D7E81BF517A3B72384BDCC85E1CE6 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
22:07:26.0970 4196 rdbss - ok
22:07:26.0985 4196 [ 0D8F05481CB76E70E1DA06EE9F0DA9DF ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
22:07:26.0985 4196 rdpbus - ok
22:07:27.0001 4196 [ 1E016846895B15A99F9A176A05029075 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
22:07:27.0016 4196 RDPCDD - ok
22:07:27.0048 4196 [ C5FF95883FFEF704D50C40D21CFB3AB5 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys
22:07:27.0048 4196 RDPDR - ok
22:07:27.0063 4196 [ 5A53CA1598DD4156D44196D200C94B8A ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
22:07:27.0063 4196 RDPENCDD - ok
22:07:27.0079 4196 [ 44B0A53CD4F27D50ED461DAE0C0B4E1F ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
22:07:27.0079 4196 RDPREFMP - ok
22:07:27.0110 4196 [ C5B8D47A4688DE9D335204EA757C2240 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
22:07:27.0110 4196 RDPWD - ok
22:07:27.0126 4196 [ 4EA225BF1CF05E158853F30A99CA29A7 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
22:07:27.0126 4196 rdyboost - ok
22:07:27.0172 4196 [ 7B5E1419717FAC363A31CC302895217A ] RemoteAccess C:\Windows\System32\mprdim.dll
22:07:27.0172 4196 RemoteAccess - ok
22:07:27.0204 4196 [ CB9A8683F4EF2BF99E123D79950D7935 ] RemoteRegistry C:\Windows\system32\regsvc.dll
22:07:27.0204 4196 RemoteRegistry - ok
22:07:27.0235 4196 [ 78D072F35BC45D9E4E1B61895C152234 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
22:07:27.0250 4196 RpcEptMapper - ok
22:07:27.0282 4196 [ 94D36C0E44677DD26981D2BFEEF2A29D ] RpcLocator C:\Windows\system32\locator.exe
22:07:27.0282 4196 RpcLocator - ok
22:07:27.0297 4196 [ B82CD39E336973359D7C9BF911E8E84F ] RpcSs C:\Windows\system32\rpcss.dll
22:07:27.0297 4196 RpcSs - ok
22:07:27.0328 4196 [ 032B0D36AD92B582D869879F5AF5B928 ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
22:07:27.0328 4196 rspndr - ok
22:07:27.0375 4196 [ 87407B31EA6FF0DC4765258164B98BEA ] RTHDMIAzAudService C:\Windows\system32\drivers\RtHDMIV.sys
22:07:27.0375 4196 RTHDMIAzAudService - ok
22:07:27.0438 4196 [ 5283B9A27FF230F2FF70D92451FF409A ] RTL8167 C:\Windows\system32\DRIVERS\Rt86win7.sys
22:07:27.0438 4196 RTL8167 - ok
22:07:27.0453 4196 [ 5423D8437051E89DD34749F242C98648 ] s3cap C:\Windows\system32\DRIVERS\vms3cap.sys
22:07:27.0453 4196 s3cap - ok
22:07:27.0469 4196 [ C2243FF9E9AAD0C30E8B1A0914DA15B6 ] SamSs C:\Windows\system32\lsass.exe
22:07:27.0469 4196 SamSs - ok
22:07:27.0500 4196 [ 34EE0C44B724E3E4CE2EFF29126DE5B5 ] sbp2port C:\Windows\system32\DRIVERS\sbp2port.sys
22:07:27.0500 4196 sbp2port - ok
22:07:27.0516 4196 [ 8FC518FFE9519C2631D37515A68009C4 ] SCardSvr C:\Windows\System32\SCardSvr.dll
22:07:27.0531 4196 SCardSvr - ok
22:07:27.0531 4196 [ A95C54B2AC3CC9C73FCDF9E51A1D6B51 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
22:07:27.0531 4196 scfilter - ok
22:07:27.0578 4196 [ DF1E5C82E4D09CF8105CC644980C4803 ] Schedule C:\Windows\system32\schedsvc.dll
22:07:27.0609 4196 Schedule - ok
22:07:27.0640 4196 [ 628A9E30EC5E18DD5DE6BE4DBDC12198 ] SCPolicySvc C:\Windows\System32\certprop.dll
22:07:27.0640 4196 SCPolicySvc - ok
22:07:27.0687 4196 [ 7B48CFF3A475FE849DEA65EC4D35C425 ] sdbus C:\Windows\system32\DRIVERS\sdbus.sys
22:07:27.0687 4196 sdbus - ok
22:07:27.0703 4196 [ 5FD90ABDBFAEE85986802622CBB03446 ] SDRSVC C:\Windows\System32\SDRSVC.dll
22:07:27.0703 4196 SDRSVC - ok
22:07:27.0734 4196 [ 90A3935D05B494A5A39D37E71F09A677 ] secdrv C:\Windows\system32\drivers\secdrv.sys
22:07:27.0734 4196 secdrv - ok
22:07:27.0765 4196 [ A59B3A4442C52060CC7A85293AA3546F ] seclogon C:\Windows\system32\seclogon.dll
22:07:27.0781 4196 seclogon - ok
22:07:27.0796 4196 [ DCB7FCDCC97F87360F75D77425B81737 ] SENS C:\Windows\System32\sens.dll
22:07:27.0796 4196 SENS - ok
22:07:27.0812 4196 [ 50087FE1EE447009C9CC2997B90DE53F ] SensrSvc C:\Windows\system32\sensrsvc.dll
22:07:27.0812 4196 SensrSvc - ok
22:07:27.0859 4196 [ A2CC81C30BEF6AC9F27055490EEF6DE3 ] Sentinel C:\Windows\System32\Drivers\SENTINEL.SYS
22:07:27.0874 4196 Sentinel - ok
22:07:27.0890 4196 [ 9AD8B8B515E3DF6ACD4212EF465DE2D1 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
22:07:27.0890 4196 Serenum - ok
22:07:27.0890 4196 [ 5FB7FCEA0490D821F26F39CC5EA3D1E2 ] Serial C:\Windows\system32\DRIVERS\serial.sys
22:07:27.0890 4196 Serial - ok
22:07:27.0906 4196 [ 79BFFB520327FF916A582DFEA17AA813 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys
22:07:27.0906 4196 sermouse - ok
22:07:27.0921 4196 [ 8F55CE568C543D5ADF45C409D16718FC ] SessionEnv C:\Windows\system32\sessenv.dll
22:07:27.0921 4196 SessionEnv - ok
22:07:27.0921 4196 [ 9F976E1EB233DF46FCE808D9DEA3EB9C ] sffdisk C:\Windows\system32\DRIVERS\sffdisk.sys
22:07:27.0921 4196 sffdisk - ok
22:07:27.0937 4196 [ 932A68EE27833CFD57C1639D375F2731 ] sffp_mmc C:\Windows\system32\DRIVERS\sffp_mmc.sys
22:07:27.0937 4196 sffp_mmc - ok
22:07:27.0937 4196 [ 4F1E5B0FE7C8050668DBFADE8999AEFB ] sffp_sd C:\Windows\system32\DRIVERS\sffp_sd.sys
22:07:27.0937 4196 sffp_sd - ok
22:07:27.0952 4196 [ DB96666CC8312EBC45032F30B007A547 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys
22:07:27.0952 4196 sfloppy - ok
22:07:27.0968 4196 [ D1A079A0DE2EA524513B6930C24527A2 ] SharedAccess C:\Windows\System32\ipnathlp.dll
22:07:27.0984 4196 SharedAccess - ok
22:07:28.0030 4196 [ CD2E48FA5B29EE2B3B5858056D246EF2 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
22:07:28.0046 4196 ShellHWDetection - ok
22:07:28.0046 4196 [ 2565CAC0DC9FE0371BDCE60832582B2E ] sisagp C:\Windows\system32\DRIVERS\sisagp.sys
22:07:28.0046 4196 sisagp - ok
22:07:28.0062 4196 [ A9F0486851BECB6DDA1D89D381E71055 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys
22:07:28.0077 4196 SiSRaid2 - ok
22:07:28.0093 4196 [ 3727097B55738E2F554972C3BE5BC1AA ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys
22:07:28.0093 4196 SiSRaid4 - ok
22:07:28.0218 4196 [ 0F97E7A47A52F4A36969F0FC319654C2 ] Skype C2C Service C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
22:07:28.0327 4196 Skype C2C Service - ok
22:07:28.0358 4196 [ F07AF60B152221472FBDB2FECEC4896D ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe
22:07:28.0374 4196 SkypeUpdate - ok
22:07:28.0405 4196 [ 3E21C083B8A01CB70BA1F09303010FCE ] Smb C:\Windows\system32\DRIVERS\smb.sys
22:07:28.0405 4196 Smb - ok
22:07:28.0452 4196 [ 6A984831644ECA1A33FFEAE4126F4F37 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
22:07:28.0452 4196 SNMPTRAP - ok
22:07:28.0498 4196 [ 9DE6E60CE7FD82B4985DE5D9C22265AD ] SNTNLUSB C:\Windows\system32\DRIVERS\SNTNLUSB.SYS
22:07:28.0498 4196 SNTNLUSB - ok
22:07:28.0561 4196 [ 95CF1AE7527FB70F7816563CBC09D942 ] spldr C:\Windows\system32\drivers\spldr.sys
22:07:28.0561 4196 spldr - ok
22:07:28.0748 4196 [ E17323B0AA9FB3FF9945731D736EDA2F ] Spooler C:\Windows\System32\spoolsv.exe
22:07:28.0748 4196 Spooler - ok
22:07:28.0842 4196 [ 4C287F9069FEDBD791178876EE9DE536 ] sppsvc C:\Windows\system32\sppsvc.exe
22:07:28.0857 4196 sppsvc - ok
22:07:28.0873 4196 [ D8E3E19EEBDAB49DD4A8D3062EAD4EC7 ] sppuinotify C:\Windows\system32\sppuinotify.dll
22:07:28.0873 4196 sppuinotify - ok
22:07:28.0920 4196 [ C4A027B8C0BD3FC0699F41FA5E9E0C87 ] srv C:\Windows\system32\DRIVERS\srv.sys
22:07:28.0920 4196 srv - ok
22:07:28.0966 4196 [ 414BB592CAD8A79649D01F9D94318FB3 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
22:07:28.0966 4196 srv2 - ok
22:07:29.0013 4196 [ FF207D67700AA18242AAF985D3E7D8F4 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
22:07:29.0013 4196 srvnet - ok
22:07:29.0029 4196 [ D887C9FD02AC9FA880F6E5027A43E118 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
22:07:29.0044 4196 SSDPSRV - ok
22:07:29.0044 4196 [ D318F23BE45D5E3A107469EB64815B50 ] SstpSvc C:\Windows\system32\sstpsvc.dll
22:07:29.0060 4196 SstpSvc - ok
22:07:29.0091 4196 Steam Client Service - ok
22:07:29.0107 4196 [ DB32D325C192B801DF274BFD12A7E72B ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys
22:07:29.0122 4196 stexstor - ok
22:07:29.0169 4196 [ A22825E7BB7018E8AF3E229A5AF17221 ] StiSvc C:\Windows\System32\wiaservc.dll
22:07:29.0169 4196 StiSvc - ok
22:07:29.0200 4196 [ 957E346CA948668F2496A6CCF6FF82CC ] storflt C:\Windows\system32\DRIVERS\vmstorfl.sys
22:07:29.0200 4196 storflt - ok
22:07:29.0232 4196 [ D5751969DC3E4B88BF482AC8EC9FE019 ] storvsc C:\Windows\system32\DRIVERS\storvsc.sys
22:07:29.0232 4196 storvsc - ok
22:07:29.0278 4196 [ E58C78A848ADD9610A4DB6D214AF5224 ] swenum C:\Windows\system32\DRIVERS\swenum.sys
22:07:29.0278 4196 swenum - ok
22:07:29.0294 4196 [ A28BD92DF340E57B024BA433165D34D7 ] swprv C:\Windows\System32\swprv.dll
22:07:29.0294 4196 swprv - ok
22:07:29.0325 4196 [ 04105C8DA62353589C29BDAEB8D88BD8 ] SysMain C:\Windows\system32\sysmain.dll
22:07:29.0341 4196 SysMain - ok
22:07:29.0356 4196 [ FCFB6C552FBC0DA299799CBD50AD9FD4 ] TabletInputService C:\Windows\System32\TabSvc.dll
22:07:29.0356 4196 TabletInputService - ok
22:07:29.0372 4196 [ 2F46B0C70A4ADC8C90CF825DA3B4FEAF ] TapiSrv C:\Windows\System32\tapisrv.dll
22:07:29.0388 4196 TapiSrv - ok
22:07:29.0388 4196 [ B799D9FDB26111737F58288D8DC172D9 ] TBS C:\Windows\System32\tbssvc.dll
22:07:29.0388 4196 TBS - ok
22:07:29.0450 4196 [ 55E9965552741F3850CB22CBBA9671ED ] Tcpip C:\Windows\system32\drivers\tcpip.sys
22:07:29.0466 4196 Tcpip - ok
22:07:29.0512 4196 [ 55E9965552741F3850CB22CBBA9671ED ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
22:07:29.0528 4196 TCPIP6 - ok
22:07:29.0559 4196 [ E64444523ADD154F86567C469BC0B17F ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
22:07:29.0559 4196 tcpipreg - ok
22:07:29.0606 4196 [ 1875C1490D99E70E449E3AFAE9FCBADF ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
22:07:29.0606 4196 TDPIPE - ok
22:07:29.0700 4196 [ 7156308896D34EA75A582F9A09E50C17 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
22:07:29.0700 4196 TDTCP - ok
22:07:29.0700 4196 [ CB39E896A2A83702D1737BFD402B3542 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
22:07:29.0715 4196 tdx - ok
22:07:29.0715 4196 [ C36F41EE20E6999DBF4B0425963268A5 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
22:07:29.0715 4196 TermDD - ok
22:07:29.0746 4196 [ A01E50A04D7B1960B33E92B9080E6A94 ] TermService C:\Windows\System32\termsrv.dll
22:07:29.0762 4196 TermService - ok
22:07:29.0778 4196 [ 42FB6AFD6B79D9FE07381609172E7CA4 ] Themes C:\Windows\system32\themeservice.dll
22:07:29.0778 4196 Themes - ok
22:07:29.0856 4196 [ 146B6F43A673379A3C670E86D89BE5EA ] THREADORDER C:\Windows\system32\mmcss.dll
22:07:29.0871 4196 THREADORDER - ok
22:07:29.0949 4196 [ 5557E7F940CBCF09BE43379F551F6689 ] TosCoSrv C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
22:07:29.0949 4196 TosCoSrv - ok
22:07:30.0012 4196 [ 969377943FE7284609BABBAB4E06B93C ] tos_sps32 C:\Windows\system32\DRIVERS\tos_sps32.sys
22:07:30.0012 4196 tos_sps32 - ok
22:07:30.0043 4196 [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A ] TrkWks C:\Windows\System32\trkwks.dll
22:07:30.0058 4196 TrkWks - ok
22:07:30.0105 4196 [ 41A4C781D2286208D397D72099304133 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
22:07:30.0105 4196 TrustedInstaller - ok
22:07:30.0136 4196 [ 98AE6FA07D12CB4EC5CF4A9BFA5F4242 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
22:07:30.0136 4196 tssecsrv - ok
22:07:30.0168 4196 [ 3E461D890A97F9D4C168F5FDA36E1D00 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
22:07:30.0168 4196 tunnel - ok
22:07:30.0199 4196 [ 792A8B80F8188ABA4B2BE271583F3E46 ] TVALZ C:\Windows\system32\DRIVERS\TVALZ_O.SYS
22:07:30.0199 4196 TVALZ - ok
22:07:30.0199 4196 [ 750FBCB269F4D7DD2E420C56B795DB6D ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys
22:07:30.0199 4196 uagp35 - ok
22:07:30.0246 4196 [ 09CC3E16F8E5EE7168E01CF8FCBE061A ] udfs C:\Windows\system32\DRIVERS\udfs.sys
22:07:30.0246 4196 udfs - ok
22:07:30.0277 4196 [ 8344FD4FCE927880AA1AA7681D4927E5 ] UI0Detect C:\Windows\system32\UI0Detect.exe
22:07:30.0292 4196 UI0Detect - ok
22:07:30.0308 4196 [ 44E8048ACE47BEFBFDC2E9BE4CBC8880 ] uliagpkx C:\Windows\system32\DRIVERS\uliagpkx.sys
22:07:30.0308 4196 uliagpkx - ok
22:07:30.0355 4196 [ 049B3A50B3D646BAEEEE9EEC9B0668DC ] umbus C:\Windows\system32\DRIVERS\umbus.sys
22:07:30.0355 4196 umbus - ok
22:07:30.0370 4196 [ 7550AD0C6998BA1CB4843E920EE0FEAC ] UmPass C:\Windows\system32\DRIVERS\umpass.sys
22:07:30.0370 4196 UmPass - ok
22:07:30.0417 4196 [ 8ECACA5454844F66386F7BE4AE0D7CD1 ] UmRdpService C:\Windows\System32\umrdp.dll
22:07:30.0417 4196 UmRdpService - ok
22:07:30.0464 4196 [ 833FBB672460EFCE8011D262175FAD33 ] upnphost C:\Windows\System32\upnphost.dll
22:07:30.0464 4196 upnphost - ok
22:07:30.0542 4196 [ C31AE588E403042632DC796CF09E30B0 ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
22:07:30.0542 4196 usbccgp - ok
22:07:30.0558 4196 [ 04EC7CEC62EC3B6D9354EEE93327FC82 ] usbcir C:\Windows\system32\DRIVERS\usbcir.sys
22:07:30.0558 4196 usbcir - ok
22:07:30.0604 4196 [ E4C436D914768CE965D5E659BA7EEBD8 ] usbehci C:\Windows\system32\drivers\usbehci.sys
22:07:30.0604 4196 usbehci - ok
22:07:30.0620 4196 [ BDCD7156EC37448F08633FD899823620 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
22:07:30.0620 4196 usbhub - ok
22:07:30.0667 4196 [ EB2D819A639015253C871CDA09D91D58 ] usbohci C:\Windows\system32\drivers\usbohci.sys
22:07:30.0667 4196 usbohci - ok
22:07:30.0682 4196 [ 797D862FE0875E75C7CC4C1AD7B30252 ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
22:07:30.0682 4196 usbprint - ok
22:07:30.0698 4196 [ 1C4287739A93594E57E2A9E6A3ED7353 ] USBSTOR C:\Windows\system32\drivers\USBSTOR.SYS
22:07:30.0714 4196 USBSTOR - ok
22:07:30.0745 4196 [ 22480BF4E5A09192E5E30BA4DDE79FA4 ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
22:07:30.0745 4196 usbuhci - ok
22:07:30.0792 4196 [ B5F6A992D996282B7FAE7048E50AF83A ] usbvideo C:\Windows\System32\Drivers\usbvideo.sys
22:07:30.0792 4196 usbvideo - ok
22:07:30.0870 4196 [ 237C444FBD1C697A2E3FA60F02C61F22 ] UVCFTR C:\Windows\system32\Drivers\UVCFTR_S.SYS
22:07:30.0870 4196 UVCFTR - ok
22:07:30.0885 4196 [ 081E6E1C91AEC36758902A9F727CD23C ] UxSms C:\Windows\System32\uxsms.dll
22:07:30.0901 4196 UxSms - ok
22:07:30.0932 4196 [ C2243FF9E9AAD0C30E8B1A0914DA15B6 ] VaultSvc C:\Windows\system32\lsass.exe
22:07:30.0932 4196 VaultSvc - ok
22:07:30.0979 4196 [ A059C4C3EDB09E07D21A8E5C0AABD3CB ] vdrvroot C:\Windows\system32\DRIVERS\vdrvroot.sys
22:07:30.0979 4196 vdrvroot - ok
22:07:31.0010 4196 [ 8C4E7C49D3641BC9E299E466A7F8867D ] vds C:\Windows\System32\vds.exe
22:07:31.0010 4196 vds - ok
22:07:31.0041 4196 [ 17C408214EA61696CEC9C66E388B14F3 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
22:07:31.0041 4196 vga - ok
22:07:31.0057 4196 [ 8E38096AD5C8570A6F1570A61E251561 ] VgaSave C:\Windows\System32\drivers\vga.sys
22:07:31.0057 4196 VgaSave - ok
22:07:31.0057 4196 [ 3BE6E1F3A4F1AFEC8CEE0D7883F93583 ] vhdmp C:\Windows\system32\DRIVERS\vhdmp.sys
22:07:31.0057 4196 vhdmp - ok
22:07:31.0072 4196 [ C829317A37B4BEA8F39735D4B076E923 ] viaagp C:\Windows\system32\DRIVERS\viaagp.sys
22:07:31.0072 4196 viaagp - ok
22:07:31.0104 4196 [ E02F079A6AA107F06B16549C6E5C7B74 ] ViaC7 C:\Windows\system32\DRIVERS\viac7.sys
22:07:31.0104 4196 ViaC7 - ok
22:07:31.0104 4196 [ E43574F6A56A0EE11809B48C09E4FD3C ] viaide C:\Windows\system32\DRIVERS\viaide.sys
22:07:31.0104 4196 viaide - ok
22:07:31.0150 4196 [ 379B349F65F453D2A6E75EA6B7448E49 ] vmbus C:\Windows\system32\DRIVERS\vmbus.sys
22:07:31.0150 4196 vmbus - ok
22:07:31.0166 4196 [ EC2BBAB4B84D0738C6C83D2234DC36FE ] VMBusHID C:\Windows\system32\DRIVERS\VMBusHID.sys
22:07:31.0166 4196 VMBusHID - ok
22:07:31.0182 4196 [ 384E5A2AA49934295171E499F86BA6F3 ] volmgr C:\Windows\system32\DRIVERS\volmgr.sys
22:07:31.0182 4196 volmgr - ok
22:07:31.0213 4196 [ B5BB72067DDDDBBFB04B2F89FF8C3C87 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
22:07:31.0213 4196 volmgrx - ok
22:07:31.0213 4196 [ 58DF9D2481A56EDDE167E51B334D44FD ] volsnap C:\Windows\system32\DRIVERS\volsnap.sys
22:07:31.0228 4196 volsnap - ok
22:07:31.0244 4196 [ 9DFA0CC2F8855A04816729651175B631 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys
22:07:31.0244 4196 vsmraid - ok
22:07:31.0291 4196 [ 7EA2BCD94D9CFAF4C556F5CC94532A6C ] VSS C:\Windows\system32\vssvc.exe
22:07:31.0306 4196 VSS - ok
22:07:31.0322 4196 [ 90567B1E658001E79D7C8BBD3DDE5AA6 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys
22:07:31.0322 4196 vwifibus - ok
22:07:31.0353 4196 [ 7090D3436EEB4E7DA3373090A23448F7 ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys
22:07:31.0353 4196 vwififlt - ok
22:07:31.0369 4196 [ 55187FD710E27D5095D10A472C8BAF1C ] W32Time C:\Windows\system32\w32time.dll
22:07:31.0369 4196 W32Time - ok
22:07:31.0384 4196 [ DE3721E89C653AA281428C8A69745D90 ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys
22:07:31.0384 4196 WacomPen - ok
22:07:31.0416 4196 [ 692A712062146E96D28BA0B7D75DE31B ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
22:07:31.0416 4196 WANARP - ok
22:07:31.0416 4196 [ 692A712062146E96D28BA0B7D75DE31B ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
22:07:31.0416 4196 Wanarpv6 - ok
22:07:31.0494 4196 [ 353A04C273EC58475D8633E75CCD5604 ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
22:07:31.0540 4196 WatAdminSvc - ok
22:07:31.0572 4196 [ 7790B77FE1E5EE47DCC66247095BB4C9 ] wbengine C:\Windows\system32\wbengine.exe
22:07:31.0587 4196 wbengine - ok
22:07:31.0587 4196 [ 9614B5D29DC76AC3C29F6D2D3AA70E67 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
22:07:31.0603 4196 WbioSrvc - ok
22:07:31.0634 4196 [ 6D9B75275C3E3A5F51AEF81AFFADB2B6 ] wcncsvc C:\Windows\System32\wcncsvc.dll
22:07:31.0634 4196 wcncsvc - ok
22:07:31.0650 4196 [ 5D930B6357A6D2AF4D7653BDABBF352F ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
22:07:31.0650 4196 WcsPlugInService - ok
22:07:31.0665 4196 [ 1112A9BADACB47B7C0BB0392E3158DFF ] Wd C:\Windows\system32\DRIVERS\wd.sys
22:07:31.0665 4196 Wd - ok
22:07:31.0696 4196 [ 9950E3D0F08141C7E89E64456AE7DC73 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
22:07:31.0696 4196 Wdf01000 - ok
22:07:31.0712 4196 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiServiceHost C:\Windows\system32\wdi.dll
22:07:31.0728 4196 WdiServiceHost - ok
22:07:31.0728 4196 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiSystemHost C:\Windows\system32\wdi.dll
22:07:31.0728 4196 WdiSystemHost - ok
22:07:31.0759 4196 [ BB5EC38F8D4600119B4720BC5D4211F1 ] WebClient C:\Windows\System32\webclnt.dll
22:07:31.0774 4196 WebClient - ok
22:07:31.0790 4196 [ 760F0AFE937A77CFF27153206534F275 ] Wecsvc C:\Windows\system32\wecsvc.dll
22:07:31.0806 4196 Wecsvc - ok
22:07:31.0821 4196 [ AC804569BB2364FB6017370258A4091B ] wercplsupport C:\Windows\System32\wercplsupport.dll
22:07:31.0821 4196 wercplsupport - ok
22:07:31.0837 4196 [ 08E420D873E4FD85241EE2421B02C4A4 ] WerSvc C:\Windows\System32\WerSvc.dll
22:07:31.0837 4196 WerSvc - ok
22:07:31.0852 4196 [ 8B9A943F3B53861F2BFAF6C186168F79 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
22:07:31.0852 4196 WfpLwf - ok
22:07:31.0868 4196 [ 5CF95B35E59E2A38023836FFF31BE64C ] WIMMount C:\Windows\system32\drivers\wimmount.sys
22:07:31.0884 4196 WIMMount - ok
22:07:31.0946 4196 [ 3FAE8F94296001C32EAB62CD7D82E0FD ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll
22:07:31.0962 4196 WinDefend - ok
22:07:31.0962 4196 WinHttpAutoProxySvc - ok
22:07:32.0024 4196 [ F62E510B6AD4C21EB9FE8668ED251826 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
22:07:32.0024 4196 Winmgmt - ok
22:07:32.0086 4196 [ C4F5D3901D1B41D602DDC196E0B95B51 ] WinRM C:\Windows\system32\WsmSvc.dll
22:07:32.0086 4196 WinRM - ok
22:07:32.0133 4196 [ 16935C98FF639D185086A3529B1F2067 ] Wlansvc C:\Windows\System32\wlansvc.dll
22:07:32.0149 4196 Wlansvc - ok
22:07:32.0180 4196 [ 0217679B8FCA58714C3BF2726D2CA84E ] WmiAcpi C:\Windows\system32\DRIVERS\wmiacpi.sys
22:07:32.0180 4196 WmiAcpi - ok
22:07:32.0196 4196 [ 6EB6B66517B048D87DC1856DDF1F4C3F ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
22:07:32.0196 4196 wmiApSrv - ok
22:07:32.0274 4196 [ 77FBD400984CF72BA0FC4B3489D65F74 ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
22:07:32.0289 4196 WMPNetworkSvc - ok
22:07:32.0289 4196 [ A2F0EC770A92F2B3F9DE6D518E11409C ] WPCSvc C:\Windows\System32\wpcsvc.dll
22:07:32.0305 4196 WPCSvc - ok
22:07:32.0305 4196 [ B7F658A2EBC07129538AD9AB35212637 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
22:07:32.0320 4196 WPDBusEnum - ok
22:07:32.0336 4196 [ 6DB3276587B853BF886B69528FDB048C ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
22:07:32.0336 4196 ws2ifsl - ok
22:07:32.0367 4196 [ A661A76333057B383A06E65F0073222F ] wscsvc C:\Windows\System32\wscsvc.dll
22:07:32.0367 4196 wscsvc - ok
22:07:32.0367 4196 WSearch - ok
22:07:32.0445 4196 [ FC3EC24FCE372C89423E015A2AC1A31E ] wuauserv C:\Windows\system32\wuaueng.dll
22:07:32.0461 4196 wuauserv - ok
22:07:32.0476 4196 [ 6F9B6C0C93232CFF47D0F72D6DB1D21E ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
22:07:32.0476 4196 WudfPf - ok
22:07:32.0508 4196 [ F91FF1E51FCA30B3C3981DB7D5924252 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
22:07:32.0508 4196 WUDFRd - ok
22:07:32.0539 4196 [ DDEE3682FE97037C45F4D7AB467CB8B6 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
22:07:32.0539 4196 wudfsvc - ok
22:07:32.0554 4196 [ FF2D745B560F7C71B31F30F4D49F73D2 ] WwanSvc C:\Windows\System32\wwansvc.dll
22:07:32.0570 4196 WwanSvc - ok
22:07:32.0601 4196 ================ Scan global ===============================
22:07:32.0632 4196 [ 9A595DF601070DA78C40481120DD2C06 ] C:\Windows\system32\basesrv.dll
22:07:32.0664 4196 [ 008F51AE989C3DF1CBAF8B39DC423CCC ] C:\Windows\system32\winsrv.dll
22:07:32.0679 4196 [ 008F51AE989C3DF1CBAF8B39DC423CCC ] C:\Windows\system32\winsrv.dll
22:07:32.0710 4196 [ 364455805E64882844EE9ACB72522830 ] C:\Windows\system32\sxssrv.dll
22:07:32.0726 4196 [ 5F1B6A9C35D3D5CA72D6D6FDEF9747D6 ] C:\Windows\system32\services.exe
22:07:32.0742 4196 [Global] - ok
22:07:32.0742 4196 ================ Scan MBR ==================================
22:07:32.0742 4196 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
22:07:33.0163 4196 \Device\Harddisk0\DR0 - ok
22:07:33.0163 4196 ================ Scan VBR ==================================
22:07:33.0178 4196 [ 143A105C6D14EA9286CB12D163FFEDF8 ] \Device\Harddisk0\DR0\Partition1
22:07:33.0194 4196 \Device\Harddisk0\DR0\Partition1 - ok
22:07:33.0194 4196 [ BD9AD5CD39D3143F7EE34D5FBB4BE9EA ] \Device\Harddisk0\DR0\Partition2
22:07:33.0194 4196 \Device\Harddisk0\DR0\Partition2 - ok
22:07:33.0210 4196 [ 1E1D04FEFF15868FA5811E63FCC93682 ] \Device\Harddisk0\DR0\Partition3
22:07:33.0225 4196 \Device\Harddisk0\DR0\Partition3 - ok
22:07:33.0225 4196 ============================================================
22:07:33.0225 4196 Scan finished
22:07:33.0225 4196 ============================================================
22:07:33.0241 2592 Detected object count: 0
22:07:33.0241 2592 Actual detected object count: 0
22:07:40.0604 2088 Deinitialize success
Chytří lidé používají Google a nevolí komunisty
*Čeština je krásný jazyk, takže se jej prosím naučte používat*
Member of the Spyke's Fun Club
*Čeština je krásný jazyk, takže se jej prosím naučte používat*
Member of the Spyke's Fun Club
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43294
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: PowerReg Scheduler - kontrola logu
Otevři si Poznámkový blok (Start -> Spustit... a napiš do okna Notepad a dej Ok.
Zkopíruj do něj následující celý text označený zeleně:
Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.
Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe a když se oba soubory překryjí, skript upusť.
- Automaticky se spustí ComboFix
- Vlož sem log, který vyběhne v závěru čistícího procesu + nový log z HJT
Upozornění : Může se stát, že po aplikaci Combofixu a restartu počítače, Windows nenaběhnou , nebo nenajede plocha , budou problémy s připojením, pak znovu restartuj počítač, pokud to nepomůže , po restartu mačkej klávesu F8 a pak zvol poslední známou funkční konfiguraci. , či použij bod obnovy.
Stáhni si aswMBR
na svojí plochu. Uzavři všechna okna , programy a prohlížeče. Poklepej na aswMBR.exe. Pokud se objeví hláška o možnosti stáhnutí databáze Avastu , klikni na NE. Poté klikni na „Scan“ . Po skenu klikni na „Save Log“ a ulož si log na plochu .Zkopíruj sem celý obsah toho logu. Pak klikni na „Exit“ k zavření programu.
Hlásí se ještě něco?
Zkopíruj do něj následující celý text označený zeleně:
Kód: Vybrat vše
ClearJavaCache::
KillAll::
File::
c:\program files\Skype\Updater\Updater.exe
Folder::
c:\program files\Conduit
c:\program files\Skype\Updater
Driver::
SkypeUpdate
RegNull::
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
RegLock::
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.
Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe a když se oba soubory překryjí, skript upusť.
- Automaticky se spustí ComboFix
- Vlož sem log, který vyběhne v závěru čistícího procesu + nový log z HJT
Upozornění : Může se stát, že po aplikaci Combofixu a restartu počítače, Windows nenaběhnou , nebo nenajede plocha , budou problémy s připojením, pak znovu restartuj počítač, pokud to nepomůže , po restartu mačkej klávesu F8 a pak zvol poslední známou funkční konfiguraci. , či použij bod obnovy.
Stáhni si aswMBR
na svojí plochu. Uzavři všechna okna , programy a prohlížeče. Poklepej na aswMBR.exe. Pokud se objeví hláška o možnosti stáhnutí databáze Avastu , klikni na NE. Poté klikni na „Scan“ . Po skenu klikni na „Save Log“ a ulož si log na plochu .Zkopíruj sem celý obsah toho logu. Pak klikni na „Exit“ k zavření programu.
Jaký to byl program?Zdravím, dneska když jsem zapnul noťas, vyskočil na mě windows, že našel nějaký program a že si myslí, že by to mohl být vir ... odstranit ale nejde,
Hlásí se ještě něco?
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
-
- Level 4
- Příspěvky: 1434
- Registrován: září 07
- Bydliště: Ostrava-Hrabůvka
- Pohlaví:
- Stav:
Offline
Re: PowerReg Scheduler - kontrola logu
ComboFix 12-08-21.02 - Syntasy 22.08.2012 22:28:35.2.2 - x86
Microsoft Windows 7 Ultimate 6.1.7600.0.1250.420.1029.18.3070.2059 [GMT 2:00]
Spuštěný z: c:\users\Syntasy\Desktop\ComboFix.exe
Použité ovládací přepínače :: c:\users\Syntasy\Desktop\CFScript.txt
AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Vytvořen nový Bod Obnovení
.
FILE ::
"c:\program files\Skype\Updater\Updater.exe"
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files\Conduit
c:\program files\Conduit\Community Alerts\Alert.dll
c:\program files\Skype\Updater
c:\program files\Skype\Updater\Updater.dll
c:\program files\Skype\Updater\Updater.exe
c:\users\Syntasy\AppData\Local\Skillbrains\lightshot\LightShot.exe Flags: uninsdeletevalue
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Service_SkypeUpdate
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-07-22 do 2012-08-22 )))))))))))))))))))))))))))))))
.
.
2012-08-22 20:39 . 2012-08-22 20:39 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-08-21 20:21 . 2012-08-21 20:32 56200 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{24E50BA9-D5AB-43FE-8284-A8274ACE22D1}\offreg.dll
2012-08-21 15:31 . 2009-03-18 15:35 26176 ---ha-w- c:\windows\system32\hamachi.sys
2012-08-21 15:31 . 2012-08-21 15:31 -------- d-----w- c:\program files\LogMeIn Hamachi
2012-08-21 15:13 . 2012-08-21 15:13 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2012-08-21 15:13 . 2012-08-21 15:13 -------- d-----w- c:\programdata\Malwarebytes
2012-08-21 15:13 . 2012-07-03 11:46 22344 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-08-21 13:27 . 2012-08-01 22:51 7023536 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{24E50BA9-D5AB-43FE-8284-A8274ACE22D1}\mpengine.dll
2012-08-18 09:35 . 2002-09-24 18:43 6213632 ----a-w- c:\program files\Microsoft Games\Zoo Tycoon\PatchWise.bak\lang200.dll
2012-08-18 09:35 . 2002-04-05 17:37 1732608 ----a-w- c:\program files\Microsoft Games\Zoo Tycoon\PatchWise.bak\lang100.dll
2012-08-18 09:35 . 2001-09-23 23:06 2015232 ----a-w- c:\program files\Microsoft Games\Zoo Tycoon\PatchWise.bak\lang0.dll
2012-08-18 06:50 . 1999-05-29 08:08 45568 ----a-w- c:\windows\UniFish3.exe
2012-08-18 06:50 . 2012-08-18 06:50 -------- d-----w- c:\program files\Hasbro Interactive
2012-08-18 01:41 . 2012-08-18 01:41 -------- d-----w- c:\windows\system32\Wat
2012-08-18 01:24 . 2009-09-10 05:52 257024 ----a-w- c:\windows\system32\msv1_0.dll
2012-08-18 01:19 . 2009-11-25 10:47 99176 ----a-w- c:\windows\system32\PresentationHostProxy.dll
2012-08-18 01:19 . 2009-11-25 10:47 49472 ----a-w- c:\windows\system32\netfxperf.dll
2012-08-18 01:19 . 2009-11-25 10:47 297808 ----a-w- c:\windows\system32\mscoree.dll
2012-08-18 01:19 . 2009-11-25 10:47 295264 ----a-w- c:\windows\system32\PresentationHost.exe
2012-08-18 01:19 . 2009-11-25 10:47 1130824 ----a-w- c:\windows\system32\dfshim.dll
2012-08-18 01:06 . 2012-03-01 05:53 19312 ----a-w- c:\windows\system32\drivers\fs_rec.sys
2012-08-18 01:06 . 2012-03-01 05:49 172544 ----a-w- c:\windows\system32\wintrust.dll
2012-08-18 01:06 . 2012-03-01 05:40 5120 ----a-w- c:\windows\system32\wmi.dll
2012-08-18 01:06 . 2012-03-01 05:45 158720 ----a-w- c:\windows\system32\imagehlp.dll
2012-08-18 01:05 . 2010-02-11 07:10 293376 ----a-w- c:\windows\system32\browserchoice.exe
2012-08-18 01:02 . 2010-03-04 04:04 146304 ----a-w- c:\windows\system32\drivers\usbvideo.sys
2012-08-18 01:02 . 2010-03-04 03:57 190976 ----a-w- c:\windows\system32\drivers\ks.sys
2012-08-18 01:00 . 2010-09-14 06:07 276992 ----a-w- c:\windows\system32\wcncsvc.dll
2012-08-16 17:41 . 2010-12-18 05:29 541184 ----a-w- c:\windows\system32\kerberos.dll
2012-08-16 17:40 . 2010-12-23 05:28 850432 ----a-w- c:\windows\system32\sbe.dll
2012-08-16 17:40 . 2010-12-23 05:28 642048 ----a-w- c:\windows\system32\CPFilters.dll
2012-08-16 17:40 . 2010-12-23 05:24 199680 ----a-w- c:\windows\system32\mpg2splt.ax
2012-08-16 17:40 . 2011-02-23 05:05 69632 ----a-w- c:\windows\system32\drivers\bowser.sys
2012-08-16 17:40 . 2012-02-15 05:44 826368 ----a-w- c:\windows\system32\rdpcore.dll
2012-08-16 17:40 . 2012-02-15 04:22 24064 ----a-w- c:\windows\system32\drivers\tdtcp.sys
2012-08-16 11:33 . 2012-08-16 11:33 -------- d-----w- c:\windows\Sun
2012-08-16 06:56 . 2012-08-16 06:56 -------- d-----w- c:\program files\Google
2012-08-16 06:51 . 2012-08-16 06:51 -------- d-----w- c:\program files\Common Files\SafeNet Sentinel
2012-08-16 06:50 . 2012-08-16 06:50 -------- d-----w- c:\windows\Downloaded Installations
2012-08-16 06:49 . 2012-08-16 06:58 -------- d-----w- c:\program files\EdiCAD
2012-08-16 06:47 . 2012-08-16 06:54 -------- d-----w- c:\windows\AutoKMS
2012-08-16 06:47 . 2012-08-16 06:47 -------- d-----w- c:\program files\Common Files\Java
2012-08-16 06:46 . 2012-08-16 06:46 687600 ----a-w- c:\windows\system32\deployJava1.dll
2012-08-16 06:46 . 2012-08-16 06:46 772592 ----a-w- c:\windows\system32\npDeployJava1.dll
2012-08-16 06:46 . 2012-08-16 06:46 -------- d-----w- c:\program files\Java
2012-08-16 06:40 . 2012-08-16 06:40 -------- d-----w- c:\program files\Microsoft Synchronization Services
2012-08-16 06:39 . 2012-08-19 06:38 -------- d-----w- c:\program files\Microsoft.NET
2012-08-16 06:39 . 2012-08-16 06:39 -------- d-----w- c:\windows\PCHEALTH
2012-08-16 06:39 . 2012-08-16 06:39 -------- d-----w- c:\program files\Microsoft Sync Framework
2012-08-16 06:39 . 2012-08-16 06:39 -------- d-----w- c:\program files\Microsoft SQL Server Compact Edition
2012-08-16 06:38 . 2012-08-16 06:38 -------- d-----w- c:\program files\Microsoft Visual Studio 8
2012-08-16 06:37 . 2012-08-16 06:37 -------- d-----w- c:\program files\Microsoft Analysis Services
2012-08-16 06:36 . 2012-08-16 06:44 -------- d-----w- c:\programdata\Microsoft Help
2012-08-16 06:36 . 2012-08-16 06:36 -------- d-----r- C:\MSOCache
2012-08-16 06:33 . 2012-08-16 06:33 -------- d-s---w- c:\program files\HLSW
2012-08-16 03:27 . 2009-09-26 05:58 194488 ----a-w- c:\windows\system32\drivers\fvevol.sys
2012-08-16 03:25 . 2012-06-27 06:03 759296 ----a-w- c:\program files\Common Files\Microsoft Shared\VGX\VGX.dll
2012-08-16 03:25 . 2012-06-27 06:01 44544 ----a-w- c:\windows\system32\licmgr10.dll
2012-08-16 03:25 . 2012-06-27 06:00 163328 ----a-w- c:\program files\Internet Explorer\ieproxy.dll
2012-08-16 03:25 . 2012-06-27 04:53 386048 ----a-w- c:\windows\system32\html.iec
2012-08-16 03:25 . 2012-06-27 04:19 1638912 ----a-w- c:\windows\system32\mshtml.tlb
2012-08-16 03:05 . 2011-10-01 04:43 708608 ----a-w- c:\program files\Common Files\System\wab32.dll
2012-08-16 03:05 . 2010-07-29 06:30 197632 ----a-w- c:\windows\system32\ir32_32.dll
2012-08-16 03:05 . 2010-07-29 06:30 82944 ----a-w- c:\windows\system32\iccvid.dll
2012-08-16 03:05 . 2010-10-12 04:25 516096 ----a-w- c:\program files\Windows Mail\wab.exe
2012-08-16 03:05 . 2010-08-04 06:17 417792 ----a-w- c:\windows\system32\msdri.dll
2012-08-16 03:05 . 2011-08-17 04:26 465408 ----a-w- c:\windows\system32\psisdecd.dll
2012-08-16 03:05 . 2011-08-17 04:22 75776 ----a-w- c:\windows\system32\psisrndr.ax
2012-08-16 03:05 . 2011-08-17 04:22 72704 ----a-w- c:\windows\system32\Mpeg2Data.ax
2012-08-16 03:05 . 2011-08-17 04:22 59904 ----a-w- c:\windows\system32\MSDvbNP.ax
2012-08-16 03:05 . 2011-08-17 04:22 204288 ----a-w- c:\windows\system32\MSNP.ax
2012-08-16 03:05 . 2012-01-03 05:44 478208 ----a-w- c:\windows\system32\timedate.cpl
2012-08-16 02:43 . 2011-02-18 05:36 428032 ----a-w- c:\windows\system32\vbscript.dll
2012-08-16 02:42 . 2010-08-26 04:39 109056 ----a-w- c:\windows\system32\t2embed.dll
2012-08-16 02:42 . 2009-10-28 06:17 285696 ----a-w- c:\windows\system32\winlogon.exe
2012-08-16 02:39 . 2011-10-15 05:48 534528 ----a-w- c:\windows\system32\EncDec.dll
2012-08-16 02:38 . 2012-01-04 09:03 442880 ----a-w- c:\windows\system32\ntshrui.dll
2012-08-16 02:12 . 2011-04-22 19:36 26496 ----a-w- c:\windows\system32\drivers\Diskdump.sys
2012-08-16 02:12 . 2011-03-11 05:40 1164288 ----a-w- c:\windows\system32\mfc42u.dll
2012-08-16 02:12 . 2011-03-11 05:40 1137664 ----a-w- c:\windows\system32\mfc42.dll
2012-08-16 02:11 . 2011-02-03 05:45 219008 ----a-w- c:\windows\system32\drivers\dxgmms1.sys
2012-08-16 02:11 . 2010-11-02 04:46 728448 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys
2012-08-16 02:11 . 2010-11-02 04:23 107520 ----a-w- c:\windows\system32\cdd.dll
2012-08-15 21:54 . 2012-08-16 08:19 -------- d-----w- C:\totalcmd
2012-08-15 21:54 . 2012-08-03 06:01 545 ----a-w- c:\windows\UC.PIF
2012-08-15 21:54 . 2012-08-03 06:01 545 ----a-w- c:\windows\RAR.PIF
2012-08-15 21:54 . 2012-08-03 06:01 545 ----a-w- c:\windows\LHA.PIF
2012-08-15 21:54 . 2012-08-03 06:01 545 ----a-w- c:\windows\ARJ.PIF
2012-08-15 21:34 . 2012-08-21 18:03 -------- d-----w- c:\program files\Common Files\Steam
2012-08-15 21:34 . 2012-08-22 18:12 -------- d-----w- c:\program files\Steam
2012-08-15 21:23 . 2012-08-15 21:23 -------- d-----w- c:\program files\Skillbrains
2012-08-15 21:21 . 2012-08-15 21:21 -------- d-----w- c:\programdata\Adobe Systems
2012-08-15 21:18 . 2012-08-15 21:18 -------- d-----w- c:\program files\Common Files\Adobe Systems Shared
2012-08-15 21:08 . 2008-07-15 17:59 17960 ----a-w- c:\windows\system32\drivers\UVCFTR_S.SYS
2012-08-15 21:08 . 2012-08-15 21:08 -------- d-----w- c:\program files\Camera Assistant Software for Toshiba
2012-08-15 20:51 . 2012-08-15 20:01 -------- d-----w- c:\windows\Panther
2012-08-15 20:51 . 2012-08-15 20:51 -------- d-----w- C:\Boot
2012-08-15 20:47 . 2012-08-22 20:36 -------- d-----r- c:\program files\Skype
2012-08-15 20:47 . 2012-08-15 20:47 -------- d-----w- c:\program files\Common Files\Skype
2012-08-15 20:47 . 2012-08-15 20:47 -------- d-----w- c:\programdata\Skype
2012-08-15 20:47 . 2012-08-15 20:47 -------- d-----w- c:\program files\CCleaner
2012-08-15 20:46 . 2012-08-15 20:46 242240 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys
2012-08-15 20:46 . 2012-08-15 20:46 -------- d-----w- c:\program files\DAEMON Tools Lite
2012-08-15 20:45 . 2012-08-17 21:47 -------- d-----w- c:\programdata\DAEMON Tools Lite
2012-08-15 20:45 . 2012-08-15 20:45 -------- d-----w- c:\program files\Codec Pack - All In 1
2012-08-15 20:44 . 2011-06-24 14:44 243200 ----a-w- c:\windows\system32\xvidvfw.dll
2012-08-15 20:44 . 2011-06-24 14:28 650752 ----a-w- c:\windows\system32\xvidcore.dll
2012-08-15 20:44 . 2011-12-21 17:14 151552 ----a-w- c:\windows\system32\ac3acm.acm
2012-08-15 20:44 . 2012-06-25 18:00 79872 ----a-w- c:\windows\system32\ff_vfw.dll
2012-08-15 20:43 . 2012-08-15 20:44 -------- d-----w- c:\program files\K-Lite Codec Pack
2012-08-15 20:42 . 2012-08-15 20:42 -------- d-----w- c:\program files\uTorrent
2012-08-15 20:41 . 2012-08-15 21:19 -------- d-----w- c:\program files\Common Files\Adobe
2012-08-15 20:40 . 2012-08-15 20:40 -------- d-----w- c:\windows\system32\Adobe
2012-08-15 20:39 . 2012-08-22 07:16 73416 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-08-15 20:39 . 2012-08-22 07:16 696520 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2012-08-15 20:39 . 2012-08-15 20:39 -------- d-----w- c:\windows\system32\Macromed
2012-08-15 20:39 . 2012-05-31 10:25 237072 ------w- c:\windows\system32\MpSigStub.exe
2012-08-15 20:38 . 2004-03-09 14:00 152848 ----a-w- c:\windows\system32\Comdlg32.ocx
2012-08-15 20:38 . 2012-08-15 21:00 -------- d-----w- c:\program files\TOSHIBA
2012-08-15 20:38 . 2006-03-23 11:44 9728 ----a-w- c:\windows\system32\TCMSVR.dll
2012-08-15 20:38 . 2009-07-07 06:53 7680 ----a-w- c:\windows\system32\drivers\FwLnk.sys
2012-08-15 20:37 . 2012-08-15 20:37 -------- d-----w- c:\program files\VideoLAN
2012-08-15 20:36 . 2012-08-15 20:36 -------- d-----w- c:\windows\system32\RTCOM
2012-08-15 20:32 . 2012-08-15 20:32 -------- d-----w- c:\programdata\ATI
2012-08-15 20:28 . 2012-08-15 20:31 -------- d-----w- c:\program files\ATI Technologies
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-06-02 04:48 . 2012-08-16 03:04 225280 ----a-w- c:\windows\system32\schannel.dll
2012-05-24 21:18 . 2012-05-24 21:18 4472832 ----a-w- c:\windows\system32\GPhotos.scr
2012-07-14 00:15 . 2012-08-15 20:24 136672 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2012-07-03 16:21 121528 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" [2012-04-11 3672384]
"LightShot"="c:\users\Syntasy\AppData\Local\Skillbrains\lightshot\LightShot.exe" [2012-02-02 195072]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2012-07-03 4273976]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2009-07-29 98304]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe" [2009-07-28 7625248]
"TPwrMain"="c:\program files\TOSHIBA\Power Saver\TPwrMain.EXE" [2009-03-06 468320]
"SmoothView"="c:\program files\Toshiba\SmoothView\SmoothView.exe" [2008-12-18 448376]
"00TCrdMain"="c:\program files\TOSHIBA\FlashCards\TCrdMain.exe" [2009-03-23 729088]
"Camera Assistant Software"="c:\program files\Camera Assistant Software for Toshiba\traybar.exe" [2008-09-26 417792]
"BCSSync"="c:\program files\Microsoft Office\Office14\BCSSync.exe" [2010-03-13 91520]
"LogMeIn Hamachi Ui"="c:\program files\LogMeIn Hamachi\hamachi-2-ui.exe" [2012-06-27 1996200]
.
c:\users\Syntasy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Adobe Gamma.lnk - c:\program files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe [2005-3-16 113664]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux1"=wdmaud.drv
.
R2 CNRM0330;CNRM0330; [x]
R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [x]
R3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service;c:\program files\Microsoft Office\Office14\GROOVE.EXE [x]
R3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files\Mozilla Maintenance Service\maintenanceservice.exe [x]
R3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series – ovladač adaptéru pro 32bitový systém Windows Vista;c:\windows\system32\DRIVERS\netw5v32.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [x]
S1 aswSnx;aswSnx; [x]
S1 aswSP;aswSP; [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [x]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x]
S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files\Common Files\Adobe\ARM\1.0\armsvc.exe [x]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [x]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [x]
S2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine;c:\program files\LogMeIn Hamachi\hamachi-2.exe [x]
S2 Skype C2C Service;Skype C2C Service;c:\programdata\Skype\Toolbars\Skype C2C Service\c2c_service.exe [x]
S3 FwLnk;FwLnk Driver;c:\windows\system32\DRIVERS\FwLnk.sys [x]
S3 NETw5s32;Ovladač adaptéru Intel(R) Wireless WiFi Link pro systém Windows 7 32 Bit;c:\windows\system32\DRIVERS\NETw5s32.sys [x]
S3 osppsvc;Office Software Protection Platform;c:\program files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt86win7.sys [x]
.
.
Obsah adresáře 'Naplánované úlohy'
.
2012-08-22 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-08-15 07:16]
.
2012-08-22 c:\windows\Tasks\update-S-1-5-21-2935198736-4227321628-2989923049-1000.job
- c:\program files\Skillbrains\Updater\Updater.exe [2012-08-15 20:09]
.
2012-08-22 c:\windows\Tasks\update-sys.job
- c:\program files\Skillbrains\Updater\Updater.exe [2012-08-15 20:09]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://seznam.cz/
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office14\EXCEL.EXE/3000
IE: Od&eslat do aplikace OneNote - c:\progra~1\MICROS~2\Office14\ONBttnIE.dll/105
FF - ProfilePath - c:\users\Syntasy\AppData\Roaming\Mozilla\Firefox\Profiles\sslcfnzy.default\
FF - prefs.js: browser.startup.homepage - www.seznam.cz
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil32_11_4_402_265_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil32_11_4_402_265_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
c:\windows\system32\atieclxx.exe
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\windows\system32\taskhost.exe
c:\windows\system32\conhost.exe
c:\program files\TOSHIBA\Power Saver\TosCoSrv.exe
c:\windows\system32\sppsvc.exe
c:\program files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
c:\users\Syntasy\AppData\Local\Skillbrains\lightshot\2.6.5.55\LightShot.exe
c:\program files\Windows Media Player\wmpnetwk.exe
c:\program files\Mozilla Firefox\firefox.exe
c:\program files\Mozilla Firefox\plugin-container.exe
c:\windows\system32\Macromed\Flash\FlashPlayerPlugin_11_3_300_271.exe
c:\windows\system32\Macromed\Flash\FlashPlayerPlugin_11_3_300_271.exe
.
**************************************************************************
.
Celkový čas: 2012-08-22 22:49:54 - počítač byl restartován
ComboFix-quarantined-files.txt 2012-08-22 20:49
ComboFix2.txt 2012-08-21 20:28
.
Před spuštěním: Volných bajtů: 124 269 498 368
Po spuštění: Volných bajtů: 124 194 729 984
.
- - End Of File - - 4FF17DD6AD11199E49E8C48B8F7A0638
Microsoft Windows 7 Ultimate 6.1.7600.0.1250.420.1029.18.3070.2059 [GMT 2:00]
Spuštěný z: c:\users\Syntasy\Desktop\ComboFix.exe
Použité ovládací přepínače :: c:\users\Syntasy\Desktop\CFScript.txt
AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Vytvořen nový Bod Obnovení
.
FILE ::
"c:\program files\Skype\Updater\Updater.exe"
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files\Conduit
c:\program files\Conduit\Community Alerts\Alert.dll
c:\program files\Skype\Updater
c:\program files\Skype\Updater\Updater.dll
c:\program files\Skype\Updater\Updater.exe
c:\users\Syntasy\AppData\Local\Skillbrains\lightshot\LightShot.exe Flags: uninsdeletevalue
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Service_SkypeUpdate
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-07-22 do 2012-08-22 )))))))))))))))))))))))))))))))
.
.
2012-08-22 20:39 . 2012-08-22 20:39 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-08-21 20:21 . 2012-08-21 20:32 56200 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{24E50BA9-D5AB-43FE-8284-A8274ACE22D1}\offreg.dll
2012-08-21 15:31 . 2009-03-18 15:35 26176 ---ha-w- c:\windows\system32\hamachi.sys
2012-08-21 15:31 . 2012-08-21 15:31 -------- d-----w- c:\program files\LogMeIn Hamachi
2012-08-21 15:13 . 2012-08-21 15:13 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2012-08-21 15:13 . 2012-08-21 15:13 -------- d-----w- c:\programdata\Malwarebytes
2012-08-21 15:13 . 2012-07-03 11:46 22344 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-08-21 13:27 . 2012-08-01 22:51 7023536 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{24E50BA9-D5AB-43FE-8284-A8274ACE22D1}\mpengine.dll
2012-08-18 09:35 . 2002-09-24 18:43 6213632 ----a-w- c:\program files\Microsoft Games\Zoo Tycoon\PatchWise.bak\lang200.dll
2012-08-18 09:35 . 2002-04-05 17:37 1732608 ----a-w- c:\program files\Microsoft Games\Zoo Tycoon\PatchWise.bak\lang100.dll
2012-08-18 09:35 . 2001-09-23 23:06 2015232 ----a-w- c:\program files\Microsoft Games\Zoo Tycoon\PatchWise.bak\lang0.dll
2012-08-18 06:50 . 1999-05-29 08:08 45568 ----a-w- c:\windows\UniFish3.exe
2012-08-18 06:50 . 2012-08-18 06:50 -------- d-----w- c:\program files\Hasbro Interactive
2012-08-18 01:41 . 2012-08-18 01:41 -------- d-----w- c:\windows\system32\Wat
2012-08-18 01:24 . 2009-09-10 05:52 257024 ----a-w- c:\windows\system32\msv1_0.dll
2012-08-18 01:19 . 2009-11-25 10:47 99176 ----a-w- c:\windows\system32\PresentationHostProxy.dll
2012-08-18 01:19 . 2009-11-25 10:47 49472 ----a-w- c:\windows\system32\netfxperf.dll
2012-08-18 01:19 . 2009-11-25 10:47 297808 ----a-w- c:\windows\system32\mscoree.dll
2012-08-18 01:19 . 2009-11-25 10:47 295264 ----a-w- c:\windows\system32\PresentationHost.exe
2012-08-18 01:19 . 2009-11-25 10:47 1130824 ----a-w- c:\windows\system32\dfshim.dll
2012-08-18 01:06 . 2012-03-01 05:53 19312 ----a-w- c:\windows\system32\drivers\fs_rec.sys
2012-08-18 01:06 . 2012-03-01 05:49 172544 ----a-w- c:\windows\system32\wintrust.dll
2012-08-18 01:06 . 2012-03-01 05:40 5120 ----a-w- c:\windows\system32\wmi.dll
2012-08-18 01:06 . 2012-03-01 05:45 158720 ----a-w- c:\windows\system32\imagehlp.dll
2012-08-18 01:05 . 2010-02-11 07:10 293376 ----a-w- c:\windows\system32\browserchoice.exe
2012-08-18 01:02 . 2010-03-04 04:04 146304 ----a-w- c:\windows\system32\drivers\usbvideo.sys
2012-08-18 01:02 . 2010-03-04 03:57 190976 ----a-w- c:\windows\system32\drivers\ks.sys
2012-08-18 01:00 . 2010-09-14 06:07 276992 ----a-w- c:\windows\system32\wcncsvc.dll
2012-08-16 17:41 . 2010-12-18 05:29 541184 ----a-w- c:\windows\system32\kerberos.dll
2012-08-16 17:40 . 2010-12-23 05:28 850432 ----a-w- c:\windows\system32\sbe.dll
2012-08-16 17:40 . 2010-12-23 05:28 642048 ----a-w- c:\windows\system32\CPFilters.dll
2012-08-16 17:40 . 2010-12-23 05:24 199680 ----a-w- c:\windows\system32\mpg2splt.ax
2012-08-16 17:40 . 2011-02-23 05:05 69632 ----a-w- c:\windows\system32\drivers\bowser.sys
2012-08-16 17:40 . 2012-02-15 05:44 826368 ----a-w- c:\windows\system32\rdpcore.dll
2012-08-16 17:40 . 2012-02-15 04:22 24064 ----a-w- c:\windows\system32\drivers\tdtcp.sys
2012-08-16 11:33 . 2012-08-16 11:33 -------- d-----w- c:\windows\Sun
2012-08-16 06:56 . 2012-08-16 06:56 -------- d-----w- c:\program files\Google
2012-08-16 06:51 . 2012-08-16 06:51 -------- d-----w- c:\program files\Common Files\SafeNet Sentinel
2012-08-16 06:50 . 2012-08-16 06:50 -------- d-----w- c:\windows\Downloaded Installations
2012-08-16 06:49 . 2012-08-16 06:58 -------- d-----w- c:\program files\EdiCAD
2012-08-16 06:47 . 2012-08-16 06:54 -------- d-----w- c:\windows\AutoKMS
2012-08-16 06:47 . 2012-08-16 06:47 -------- d-----w- c:\program files\Common Files\Java
2012-08-16 06:46 . 2012-08-16 06:46 687600 ----a-w- c:\windows\system32\deployJava1.dll
2012-08-16 06:46 . 2012-08-16 06:46 772592 ----a-w- c:\windows\system32\npDeployJava1.dll
2012-08-16 06:46 . 2012-08-16 06:46 -------- d-----w- c:\program files\Java
2012-08-16 06:40 . 2012-08-16 06:40 -------- d-----w- c:\program files\Microsoft Synchronization Services
2012-08-16 06:39 . 2012-08-19 06:38 -------- d-----w- c:\program files\Microsoft.NET
2012-08-16 06:39 . 2012-08-16 06:39 -------- d-----w- c:\windows\PCHEALTH
2012-08-16 06:39 . 2012-08-16 06:39 -------- d-----w- c:\program files\Microsoft Sync Framework
2012-08-16 06:39 . 2012-08-16 06:39 -------- d-----w- c:\program files\Microsoft SQL Server Compact Edition
2012-08-16 06:38 . 2012-08-16 06:38 -------- d-----w- c:\program files\Microsoft Visual Studio 8
2012-08-16 06:37 . 2012-08-16 06:37 -------- d-----w- c:\program files\Microsoft Analysis Services
2012-08-16 06:36 . 2012-08-16 06:44 -------- d-----w- c:\programdata\Microsoft Help
2012-08-16 06:36 . 2012-08-16 06:36 -------- d-----r- C:\MSOCache
2012-08-16 06:33 . 2012-08-16 06:33 -------- d-s---w- c:\program files\HLSW
2012-08-16 03:27 . 2009-09-26 05:58 194488 ----a-w- c:\windows\system32\drivers\fvevol.sys
2012-08-16 03:25 . 2012-06-27 06:03 759296 ----a-w- c:\program files\Common Files\Microsoft Shared\VGX\VGX.dll
2012-08-16 03:25 . 2012-06-27 06:01 44544 ----a-w- c:\windows\system32\licmgr10.dll
2012-08-16 03:25 . 2012-06-27 06:00 163328 ----a-w- c:\program files\Internet Explorer\ieproxy.dll
2012-08-16 03:25 . 2012-06-27 04:53 386048 ----a-w- c:\windows\system32\html.iec
2012-08-16 03:25 . 2012-06-27 04:19 1638912 ----a-w- c:\windows\system32\mshtml.tlb
2012-08-16 03:05 . 2011-10-01 04:43 708608 ----a-w- c:\program files\Common Files\System\wab32.dll
2012-08-16 03:05 . 2010-07-29 06:30 197632 ----a-w- c:\windows\system32\ir32_32.dll
2012-08-16 03:05 . 2010-07-29 06:30 82944 ----a-w- c:\windows\system32\iccvid.dll
2012-08-16 03:05 . 2010-10-12 04:25 516096 ----a-w- c:\program files\Windows Mail\wab.exe
2012-08-16 03:05 . 2010-08-04 06:17 417792 ----a-w- c:\windows\system32\msdri.dll
2012-08-16 03:05 . 2011-08-17 04:26 465408 ----a-w- c:\windows\system32\psisdecd.dll
2012-08-16 03:05 . 2011-08-17 04:22 75776 ----a-w- c:\windows\system32\psisrndr.ax
2012-08-16 03:05 . 2011-08-17 04:22 72704 ----a-w- c:\windows\system32\Mpeg2Data.ax
2012-08-16 03:05 . 2011-08-17 04:22 59904 ----a-w- c:\windows\system32\MSDvbNP.ax
2012-08-16 03:05 . 2011-08-17 04:22 204288 ----a-w- c:\windows\system32\MSNP.ax
2012-08-16 03:05 . 2012-01-03 05:44 478208 ----a-w- c:\windows\system32\timedate.cpl
2012-08-16 02:43 . 2011-02-18 05:36 428032 ----a-w- c:\windows\system32\vbscript.dll
2012-08-16 02:42 . 2010-08-26 04:39 109056 ----a-w- c:\windows\system32\t2embed.dll
2012-08-16 02:42 . 2009-10-28 06:17 285696 ----a-w- c:\windows\system32\winlogon.exe
2012-08-16 02:39 . 2011-10-15 05:48 534528 ----a-w- c:\windows\system32\EncDec.dll
2012-08-16 02:38 . 2012-01-04 09:03 442880 ----a-w- c:\windows\system32\ntshrui.dll
2012-08-16 02:12 . 2011-04-22 19:36 26496 ----a-w- c:\windows\system32\drivers\Diskdump.sys
2012-08-16 02:12 . 2011-03-11 05:40 1164288 ----a-w- c:\windows\system32\mfc42u.dll
2012-08-16 02:12 . 2011-03-11 05:40 1137664 ----a-w- c:\windows\system32\mfc42.dll
2012-08-16 02:11 . 2011-02-03 05:45 219008 ----a-w- c:\windows\system32\drivers\dxgmms1.sys
2012-08-16 02:11 . 2010-11-02 04:46 728448 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys
2012-08-16 02:11 . 2010-11-02 04:23 107520 ----a-w- c:\windows\system32\cdd.dll
2012-08-15 21:54 . 2012-08-16 08:19 -------- d-----w- C:\totalcmd
2012-08-15 21:54 . 2012-08-03 06:01 545 ----a-w- c:\windows\UC.PIF
2012-08-15 21:54 . 2012-08-03 06:01 545 ----a-w- c:\windows\RAR.PIF
2012-08-15 21:54 . 2012-08-03 06:01 545 ----a-w- c:\windows\LHA.PIF
2012-08-15 21:54 . 2012-08-03 06:01 545 ----a-w- c:\windows\ARJ.PIF
2012-08-15 21:34 . 2012-08-21 18:03 -------- d-----w- c:\program files\Common Files\Steam
2012-08-15 21:34 . 2012-08-22 18:12 -------- d-----w- c:\program files\Steam
2012-08-15 21:23 . 2012-08-15 21:23 -------- d-----w- c:\program files\Skillbrains
2012-08-15 21:21 . 2012-08-15 21:21 -------- d-----w- c:\programdata\Adobe Systems
2012-08-15 21:18 . 2012-08-15 21:18 -------- d-----w- c:\program files\Common Files\Adobe Systems Shared
2012-08-15 21:08 . 2008-07-15 17:59 17960 ----a-w- c:\windows\system32\drivers\UVCFTR_S.SYS
2012-08-15 21:08 . 2012-08-15 21:08 -------- d-----w- c:\program files\Camera Assistant Software for Toshiba
2012-08-15 20:51 . 2012-08-15 20:01 -------- d-----w- c:\windows\Panther
2012-08-15 20:51 . 2012-08-15 20:51 -------- d-----w- C:\Boot
2012-08-15 20:47 . 2012-08-22 20:36 -------- d-----r- c:\program files\Skype
2012-08-15 20:47 . 2012-08-15 20:47 -------- d-----w- c:\program files\Common Files\Skype
2012-08-15 20:47 . 2012-08-15 20:47 -------- d-----w- c:\programdata\Skype
2012-08-15 20:47 . 2012-08-15 20:47 -------- d-----w- c:\program files\CCleaner
2012-08-15 20:46 . 2012-08-15 20:46 242240 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys
2012-08-15 20:46 . 2012-08-15 20:46 -------- d-----w- c:\program files\DAEMON Tools Lite
2012-08-15 20:45 . 2012-08-17 21:47 -------- d-----w- c:\programdata\DAEMON Tools Lite
2012-08-15 20:45 . 2012-08-15 20:45 -------- d-----w- c:\program files\Codec Pack - All In 1
2012-08-15 20:44 . 2011-06-24 14:44 243200 ----a-w- c:\windows\system32\xvidvfw.dll
2012-08-15 20:44 . 2011-06-24 14:28 650752 ----a-w- c:\windows\system32\xvidcore.dll
2012-08-15 20:44 . 2011-12-21 17:14 151552 ----a-w- c:\windows\system32\ac3acm.acm
2012-08-15 20:44 . 2012-06-25 18:00 79872 ----a-w- c:\windows\system32\ff_vfw.dll
2012-08-15 20:43 . 2012-08-15 20:44 -------- d-----w- c:\program files\K-Lite Codec Pack
2012-08-15 20:42 . 2012-08-15 20:42 -------- d-----w- c:\program files\uTorrent
2012-08-15 20:41 . 2012-08-15 21:19 -------- d-----w- c:\program files\Common Files\Adobe
2012-08-15 20:40 . 2012-08-15 20:40 -------- d-----w- c:\windows\system32\Adobe
2012-08-15 20:39 . 2012-08-22 07:16 73416 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-08-15 20:39 . 2012-08-22 07:16 696520 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2012-08-15 20:39 . 2012-08-15 20:39 -------- d-----w- c:\windows\system32\Macromed
2012-08-15 20:39 . 2012-05-31 10:25 237072 ------w- c:\windows\system32\MpSigStub.exe
2012-08-15 20:38 . 2004-03-09 14:00 152848 ----a-w- c:\windows\system32\Comdlg32.ocx
2012-08-15 20:38 . 2012-08-15 21:00 -------- d-----w- c:\program files\TOSHIBA
2012-08-15 20:38 . 2006-03-23 11:44 9728 ----a-w- c:\windows\system32\TCMSVR.dll
2012-08-15 20:38 . 2009-07-07 06:53 7680 ----a-w- c:\windows\system32\drivers\FwLnk.sys
2012-08-15 20:37 . 2012-08-15 20:37 -------- d-----w- c:\program files\VideoLAN
2012-08-15 20:36 . 2012-08-15 20:36 -------- d-----w- c:\windows\system32\RTCOM
2012-08-15 20:32 . 2012-08-15 20:32 -------- d-----w- c:\programdata\ATI
2012-08-15 20:28 . 2012-08-15 20:31 -------- d-----w- c:\program files\ATI Technologies
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-06-02 04:48 . 2012-08-16 03:04 225280 ----a-w- c:\windows\system32\schannel.dll
2012-05-24 21:18 . 2012-05-24 21:18 4472832 ----a-w- c:\windows\system32\GPhotos.scr
2012-07-14 00:15 . 2012-08-15 20:24 136672 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2012-07-03 16:21 121528 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" [2012-04-11 3672384]
"LightShot"="c:\users\Syntasy\AppData\Local\Skillbrains\lightshot\LightShot.exe" [2012-02-02 195072]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2012-07-03 4273976]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2009-07-29 98304]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe" [2009-07-28 7625248]
"TPwrMain"="c:\program files\TOSHIBA\Power Saver\TPwrMain.EXE" [2009-03-06 468320]
"SmoothView"="c:\program files\Toshiba\SmoothView\SmoothView.exe" [2008-12-18 448376]
"00TCrdMain"="c:\program files\TOSHIBA\FlashCards\TCrdMain.exe" [2009-03-23 729088]
"Camera Assistant Software"="c:\program files\Camera Assistant Software for Toshiba\traybar.exe" [2008-09-26 417792]
"BCSSync"="c:\program files\Microsoft Office\Office14\BCSSync.exe" [2010-03-13 91520]
"LogMeIn Hamachi Ui"="c:\program files\LogMeIn Hamachi\hamachi-2-ui.exe" [2012-06-27 1996200]
.
c:\users\Syntasy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Adobe Gamma.lnk - c:\program files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe [2005-3-16 113664]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux1"=wdmaud.drv
.
R2 CNRM0330;CNRM0330; [x]
R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [x]
R3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service;c:\program files\Microsoft Office\Office14\GROOVE.EXE [x]
R3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files\Mozilla Maintenance Service\maintenanceservice.exe [x]
R3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series – ovladač adaptéru pro 32bitový systém Windows Vista;c:\windows\system32\DRIVERS\netw5v32.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [x]
S1 aswSnx;aswSnx; [x]
S1 aswSP;aswSP; [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [x]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x]
S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files\Common Files\Adobe\ARM\1.0\armsvc.exe [x]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [x]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [x]
S2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine;c:\program files\LogMeIn Hamachi\hamachi-2.exe [x]
S2 Skype C2C Service;Skype C2C Service;c:\programdata\Skype\Toolbars\Skype C2C Service\c2c_service.exe [x]
S3 FwLnk;FwLnk Driver;c:\windows\system32\DRIVERS\FwLnk.sys [x]
S3 NETw5s32;Ovladač adaptéru Intel(R) Wireless WiFi Link pro systém Windows 7 32 Bit;c:\windows\system32\DRIVERS\NETw5s32.sys [x]
S3 osppsvc;Office Software Protection Platform;c:\program files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt86win7.sys [x]
.
.
Obsah adresáře 'Naplánované úlohy'
.
2012-08-22 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-08-15 07:16]
.
2012-08-22 c:\windows\Tasks\update-S-1-5-21-2935198736-4227321628-2989923049-1000.job
- c:\program files\Skillbrains\Updater\Updater.exe [2012-08-15 20:09]
.
2012-08-22 c:\windows\Tasks\update-sys.job
- c:\program files\Skillbrains\Updater\Updater.exe [2012-08-15 20:09]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://seznam.cz/
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office14\EXCEL.EXE/3000
IE: Od&eslat do aplikace OneNote - c:\progra~1\MICROS~2\Office14\ONBttnIE.dll/105
FF - ProfilePath - c:\users\Syntasy\AppData\Roaming\Mozilla\Firefox\Profiles\sslcfnzy.default\
FF - prefs.js: browser.startup.homepage - www.seznam.cz
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil32_11_4_402_265_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil32_11_4_402_265_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
c:\windows\system32\atieclxx.exe
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\windows\system32\taskhost.exe
c:\windows\system32\conhost.exe
c:\program files\TOSHIBA\Power Saver\TosCoSrv.exe
c:\windows\system32\sppsvc.exe
c:\program files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
c:\users\Syntasy\AppData\Local\Skillbrains\lightshot\2.6.5.55\LightShot.exe
c:\program files\Windows Media Player\wmpnetwk.exe
c:\program files\Mozilla Firefox\firefox.exe
c:\program files\Mozilla Firefox\plugin-container.exe
c:\windows\system32\Macromed\Flash\FlashPlayerPlugin_11_3_300_271.exe
c:\windows\system32\Macromed\Flash\FlashPlayerPlugin_11_3_300_271.exe
.
**************************************************************************
.
Celkový čas: 2012-08-22 22:49:54 - počítač byl restartován
ComboFix-quarantined-files.txt 2012-08-22 20:49
ComboFix2.txt 2012-08-21 20:28
.
Před spuštěním: Volných bajtů: 124 269 498 368
Po spuštění: Volných bajtů: 124 194 729 984
.
- - End Of File - - 4FF17DD6AD11199E49E8C48B8F7A0638
Chytří lidé používají Google a nevolí komunisty
*Čeština je krásný jazyk, takže se jej prosím naučte používat*
Member of the Spyke's Fun Club
*Čeština je krásný jazyk, takže se jej prosím naučte používat*
Member of the Spyke's Fun Club
-
- Level 4
- Příspěvky: 1434
- Registrován: září 07
- Bydliště: Ostrava-Hrabůvka
- Pohlaví:
- Stav:
Offline
Re: PowerReg Scheduler - kontrola logu
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:51:48, on 22.8.2012
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.17051)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskhost.exe
C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\TOSHIBA\SmoothView\SmoothView.exe
C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe
C:\Users\Syntasy\AppData\Local\Skillbrains\lightshot\2.6.5.55\LightShot.exe
C:\Windows\system32\wuauclt.exe
C:\Windows\Explorer.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_3_300_271.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_3_300_271.exe
C:\Windows\system32\notepad.exe
E:\HiJackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
O4 - HKLM\..\Run: [TPwrMain] %ProgramFiles%\TOSHIBA\Power Saver\TPwrMain.EXE
O4 - HKLM\..\Run: [SmoothView] %ProgramFiles%\Toshiba\SmoothView\SmoothView.exe
O4 - HKLM\..\Run: [00TCrdMain] %ProgramFiles%\TOSHIBA\FlashCards\TCrdMain.exe
O4 - HKLM\..\Run: [Camera Assistant Software] "C:\Program Files\Camera Assistant Software for Toshiba\traybar.exe" /start
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [LightShot] C:\Users\Syntasy\AppData\Local\Skillbrains\lightshot\LightShot.exe Flags: uninsdeletevalue
O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: TOSHIBA Power Saver (TosCoSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
--
End of file - 6602 bytes
Scan saved at 22:51:48, on 22.8.2012
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.17051)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskhost.exe
C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\TOSHIBA\SmoothView\SmoothView.exe
C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe
C:\Users\Syntasy\AppData\Local\Skillbrains\lightshot\2.6.5.55\LightShot.exe
C:\Windows\system32\wuauclt.exe
C:\Windows\Explorer.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_3_300_271.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_3_300_271.exe
C:\Windows\system32\notepad.exe
E:\HiJackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
O4 - HKLM\..\Run: [TPwrMain] %ProgramFiles%\TOSHIBA\Power Saver\TPwrMain.EXE
O4 - HKLM\..\Run: [SmoothView] %ProgramFiles%\Toshiba\SmoothView\SmoothView.exe
O4 - HKLM\..\Run: [00TCrdMain] %ProgramFiles%\TOSHIBA\FlashCards\TCrdMain.exe
O4 - HKLM\..\Run: [Camera Assistant Software] "C:\Program Files\Camera Assistant Software for Toshiba\traybar.exe" /start
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [LightShot] C:\Users\Syntasy\AppData\Local\Skillbrains\lightshot\LightShot.exe Flags: uninsdeletevalue
O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: TOSHIBA Power Saver (TosCoSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
--
End of file - 6602 bytes
Chytří lidé používají Google a nevolí komunisty
*Čeština je krásný jazyk, takže se jej prosím naučte používat*
Member of the Spyke's Fun Club
*Čeština je krásný jazyk, takže se jej prosím naučte používat*
Member of the Spyke's Fun Club
-
- Level 4
- Příspěvky: 1434
- Registrován: září 07
- Bydliště: Ostrava-Hrabůvka
- Pohlaví:
- Stav:
Offline
Re: PowerReg Scheduler - kontrola logu
aswMBR version 0.9.9.1665 Copyright(c) 2011 AVAST Software
Run date: 2012-08-22 22:52:32
-----------------------------
22:52:32.256 OS Version: Windows 6.1.7600
22:52:32.256 Number of processors: 2 586 0x170A
22:52:32.256 ComputerName: SYNTASYPC UserName: Syntasy
22:52:36.624 Initialize success
22:52:36.702 AVAST engine defs: 12082201
22:52:40.041 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0
22:52:40.041 Disk 0 Vendor: WDC_WD3200BEVS-26VAT0 11.01A11 Size: 305245MB BusType: 11
22:52:40.087 Disk 0 MBR read successfully
22:52:40.103 Disk 0 MBR scan
22:52:40.103 Disk 0 Windows 7 default MBR code
22:52:40.119 Disk 0 Partition 1 00 07 HPFS/NTFS NTFS 1500 MB offset 2048
22:52:40.134 Disk 0 Partition 2 80 (A) 07 HPFS/NTFS NTFS 152463 MB offset 3074048
22:52:40.165 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 151280 MB offset 315318272
22:52:40.165 Disk 0 scanning sectors +625140400
22:52:40.243 Disk 0 scanning C:\Windows\system32\drivers
22:52:46.374 Service scanning
22:53:00.914 Modules scanning
22:53:10.554 Disk 0 trace - called modules:
22:53:11.116 ntkrnlpa.exe CLASSPNP.SYS disk.sys ACPI.sys halmacpi.dll ataport.SYS PCIIDEX.SYS msahci.sys
22:53:11.116 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x861bb2e8]
22:53:11.116 3 CLASSPNP.SYS[8b40459e] -> nt!IofCallDriver -> [0x860dcc10]
22:53:11.132 5 ACPI.sys[8b0c63b2] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-0[0x85cd5030]
22:53:12.083 AVAST engine scan C:\Windows
22:53:14.111 AVAST engine scan C:\Windows\system32
22:54:47.243 AVAST engine scan C:\Windows\system32\drivers
22:54:54.841 AVAST engine scan C:\Users\Syntasy
22:55:29.831 Disk 0 MBR has been saved successfully to "C:\Users\Syntasy\Desktop\MBR.dat"
22:55:29.847 The log file has been saved successfully to "C:\Users\Syntasy\Desktop\aswMBR.txt"
Byl to Windows Defender a jinak né, zatím se nic nehlásilo ...
Run date: 2012-08-22 22:52:32
-----------------------------
22:52:32.256 OS Version: Windows 6.1.7600
22:52:32.256 Number of processors: 2 586 0x170A
22:52:32.256 ComputerName: SYNTASYPC UserName: Syntasy
22:52:36.624 Initialize success
22:52:36.702 AVAST engine defs: 12082201
22:52:40.041 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0
22:52:40.041 Disk 0 Vendor: WDC_WD3200BEVS-26VAT0 11.01A11 Size: 305245MB BusType: 11
22:52:40.087 Disk 0 MBR read successfully
22:52:40.103 Disk 0 MBR scan
22:52:40.103 Disk 0 Windows 7 default MBR code
22:52:40.119 Disk 0 Partition 1 00 07 HPFS/NTFS NTFS 1500 MB offset 2048
22:52:40.134 Disk 0 Partition 2 80 (A) 07 HPFS/NTFS NTFS 152463 MB offset 3074048
22:52:40.165 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 151280 MB offset 315318272
22:52:40.165 Disk 0 scanning sectors +625140400
22:52:40.243 Disk 0 scanning C:\Windows\system32\drivers
22:52:46.374 Service scanning
22:53:00.914 Modules scanning
22:53:10.554 Disk 0 trace - called modules:
22:53:11.116 ntkrnlpa.exe CLASSPNP.SYS disk.sys ACPI.sys halmacpi.dll ataport.SYS PCIIDEX.SYS msahci.sys
22:53:11.116 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x861bb2e8]
22:53:11.116 3 CLASSPNP.SYS[8b40459e] -> nt!IofCallDriver -> [0x860dcc10]
22:53:11.132 5 ACPI.sys[8b0c63b2] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-0[0x85cd5030]
22:53:12.083 AVAST engine scan C:\Windows
22:53:14.111 AVAST engine scan C:\Windows\system32
22:54:47.243 AVAST engine scan C:\Windows\system32\drivers
22:54:54.841 AVAST engine scan C:\Users\Syntasy
22:55:29.831 Disk 0 MBR has been saved successfully to "C:\Users\Syntasy\Desktop\MBR.dat"
22:55:29.847 The log file has been saved successfully to "C:\Users\Syntasy\Desktop\aswMBR.txt"
Byl to Windows Defender a jinak né, zatím se nic nehlásilo ...
Chytří lidé používají Google a nevolí komunisty
*Čeština je krásný jazyk, takže se jej prosím naučte používat*
Member of the Spyke's Fun Club
*Čeština je krásný jazyk, takže se jej prosím naučte používat*
Member of the Spyke's Fun Club
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43294
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: PowerReg Scheduler - kontrola logu
Zavři ostatní aplikace a prohlížeče, odpoj se od netu a fixni v HJT:
Návod
ComboFix se odinstaluje takto:
Start-Spustit a zadej ComboFix /Uninstall
Stáhni si OTC
http://oldtimer.geekstogo.com/OTC.exe
na plochu. Poklepej na něj. Potom klikni na Clean up.
Restartuj PC , pokud Ti bude doporučeno.
Pokud nejsou problémy , je to vše a můžeš dát vyřešeno , zelenou fajfku.
Návod
Kód: Vybrat vše
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
ComboFix se odinstaluje takto:
Start-Spustit a zadej ComboFix /Uninstall
Stáhni si OTC
http://oldtimer.geekstogo.com/OTC.exe
na plochu. Poklepej na něj. Potom klikni na Clean up.
Restartuj PC , pokud Ti bude doporučeno.
Pokud nejsou problémy , je to vše a můžeš dát vyřešeno , zelenou fajfku.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
-
- Level 4
- Příspěvky: 1434
- Registrován: září 07
- Bydliště: Ostrava-Hrabůvka
- Pohlaví:
- Stav:
Offline
Re: PowerReg Scheduler - kontrola logu Vyřešeno
Všechno, Díky 

Chytří lidé používají Google a nevolí komunisty
*Čeština je krásný jazyk, takže se jej prosím naučte používat*
Member of the Spyke's Fun Club
*Čeština je krásný jazyk, takže se jej prosím naučte používat*
Member of the Spyke's Fun Club
Zpět na “Viry, antiviry, firewally…”
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 4 hosti