Moc prosím o kontrolu Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

zdenka.zv
nováček
Příspěvky: 38
Registrován: září 12
Pohlaví: Žena
Stav:
Offline

Moc prosím o kontrolu  Vyřešeno

Příspěvekod zdenka.zv » 24 zář 2012 13:27

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:21:33, on 24.9.2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16450)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\SYSTEM32\WISPTIS.EXE
C:\Program Files\Common Files\microsoft shared\ink\TabTip.exe
C:\Program Files\Hewlett-Packard\IAM\bin\AsGHost.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\ActivIdentity\ActivClient\acevents.exe
C:\Program Files\Hewlett-Packard\HP Connection Manager\hpConnectionManager.exe
C:\Program Files\ActivIdentity\ActivClient\accrdsub.exe
C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\pthosttr.exe
C:\Program Files\Hewlett-Packard\File Sanitizer\CoreShredder.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\F-Secure\common\FSM32.EXE
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\VolCtrl.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\SMART Technologies\Education Software\SMARTBoardService.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files\SMART Technologies\Education Software\SMARTBoardTools.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\SMART Technologies\Education Software\Aware.exe
C:\Users\Admin\AppData\Local\Mail.Ru\MailRuUpdater.exe
C:\Program Files\T-Mobile\Web'n'walk Manager\Manager.exe
C:\Program Files\SMART Technologies\Education Software\Marker.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe
C:\Program Files\Hewlett-Packard\Embedded Security Software\PSDrt.exe
C:\Program Files\Hewlett-Packard\Shared\hpqToaster.exe
C:\Program Files\Hewlett-Packard\Shared\hpCaslNotification.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\DisplayLink Core Software\DisplayLinkUI.exe
C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe
C:\Users\Admin\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Admin\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Admin\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Admin\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Admin\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\mmc.exe
C:\Windows\System32\msdt.exe
C:\Windows\System32\sdiagnhost.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: BHO_Startup - {3134413B-49B4-425C-98A5-893C1F195601} - C:\Program Files\Hewlett-Packard\File Sanitizer\IEBHO.dll
O2 - BHO: SMART Notebook Download Utility - {67BCF957-85FC-4036-8DC4-D4D80E00A77B} - C:\Program Files\SMART Technologies\Education Software\Win32\NotebookPlugin.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: LitmusBHO - {C6867EB7-8350-4856-877F-93CF8AE3DC9C} - C:\Program Files\F-Secure\NRS\iescript\baselitmus.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O2 - BHO: Credential Manager for HP ProtectTools - {DF21F1DB-80C6-11D3-9483-B03D0EC10000} - C:\Program Files\Hewlett-Packard\IAM\Bin\ItIEAddIn.dll
O3 - Toolbar: (no name) - {0BF43445-2F28-4351-9252-17FE6E806AA0} - (no file)
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4FE6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O3 - Toolbar: Browsing Protection Toolbar - {265EEE8E-3228-44D3-AEA5-F7FDF5860049} - C:\Program Files\F-Secure\NRS\iescript\baselitmus.dll
O4 - HKLM\..\Run: [QlbCtrl.exe] C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [HPConnectionManager] C:\Program Files\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe
O4 - HKLM\..\Run: [WirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [acevents] "C:\Program Files\ActivIdentity\ActivClient\acevents.exe"
O4 - HKLM\..\Run: [accrdsub] "C:\Program Files\ActivIdentity\ActivClient\accrdsub.exe"
O4 - HKLM\..\Run: [PTHOSTTR] C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTHOSTTR.EXE /Start
O4 - HKLM\..\Run: [CognizanceTS] rundll32.exe C:\PROGRA~1\HEWLET~1\IAM\Bin\ASTSVCC.dll,RegisterModule
O4 - HKLM\..\Run: [IFXSPMGT] "C:\Program Files\Hewlett-Packard\Embedded Security Software\ifxspmgt.exe" /NotifyLogon
O4 - HKLM\..\Run: [File Sanitizer] C:\Program Files\Hewlett-Packard\File Sanitizer\CoreShredder.exe
O4 - HKLM\..\Run: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [IntelWireless] "C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" /tf Intel Wireless Tray
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [SoundMAX] C:\Program Files\Analog Devices\SoundMAX\soundmax.exe /tray
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\F-Secure\Common\FSM32.EXE" /splash
O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\F-Secure\FSGUI\TNBUtil.exe" /CHECKALL /WAITFORSW
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD\Language\Language.exe"
O4 - HKLM\..\Run: [SMART Board Service] "C:\Program Files\SMART Technologies\Education Software\SMARTBoardService.exe"
O4 - HKLM\..\Run: [SMART Board Tools] "C:\Program Files\SMART Technologies\Education Software\SMARTBoardTools.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKCU\..\Run: [Google Update] "C:\Users\Admin\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [MailRuUpdater] C:\Users\Admin\AppData\Local\Mail.Ru\MailRuUpdater.exe
O4 - HKCU\..\Run: [ICQ] "C:\Program Files\ICQ7M\ICQ.exe" silent loginmode=4
O4 - HKCU\..\Run: [T-Mobile Communication Centre] "C:\Program Files\T-Mobile\Web'n'walk Manager\Manager.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - C:\Program Files\ICQ7M\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - C:\Program Files\ICQ7M\ICQ.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://*.mcafee.com (HKLM)
O15 - Trusted Zone: http://betavscan.mcafeeasap.com (HKLM)
O15 - Trusted Zone: http://vs.mcafeeasap.com (HKLM)
O15 - Trusted Zone: http://www.mcafeeasap.com (HKLM)
O15 - ESC Trusted Zone: http://*.mcafee.com (HKLM)
O15 - ESC Trusted Zone: http://betavscan.mcafeeasap.com (HKLM)
O15 - ESC Trusted Zone: http://vs.mcafeeasap.com (HKLM)
O15 - ESC Trusted Zone: http://www.mcafeeasap.com (HKLM)
O20 - AppInit_DLLs: C:\PROGRA~1\HEWLET~1\IAM\bin\APSHook.dll
O20 - Winlogon Notify: DeviceNP - DeviceNP.dll
O23 - Service: ActivIdentity Shared Store Service (ac.sharedstore) - ActivIdentity - C:\Program Files\Common Files\ActivIdentity\ac.sharedstore.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea ADI Filters Service (AEADIFilters) - Andrea Electronics Corporation - C:\Windows\system32\AEADISRV.EXE
O23 - Service: Web'n'walk Manager mobile equipment installation service (ameisvc) - Gemfor s.r.o. - C:\Program Files\T-Mobile\Web'n'walk Manager\ameisvc.exe
O23 - Service: AuthenTec Fingerprint Service (ATService) - AuthenTec, Inc. - C:\Program Files\Fingerprint Sensor\AtService.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: Com4QLBEx - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
O23 - Service: DisplayLinkManager (DisplayLinkService) - DisplayLink Corp. - C:\Program Files\DisplayLink Core Software\DisplayLinkManager.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: FSGKHS (F-Secure Gatekeeper Handler Starter) - Unknown owner - C:\Program Files\F-Secure\Anti-Virus\fsgk32st.exe
O23 - Service: F-Secure Network Request Broker - F-Secure Corporation - C:\Program Files\F-Secure\Common\FNRB32.EXE
O23 - Service: Auditování/zamknutí zařízení nástroje HP ProtectTools (FLCDLOCK) - Hewlett-Packard Ltd - C:\Windows\system32\flcdlock.exe
O23 - Service: F-Secure Device Control Daemon (fsdevcon) - F-Secure Corporation - C:\Program Files\F-Secure\Device Control\\fsdevcon32.exe
O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\F-Secure\FWES\Program\fsdfwd.exe
O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\F-Secure\Common\FSMA32.EXE
O23 - Service: F-Secure ORSP Client (FSORSPClient) - F-Secure Corporation - C:\Program Files\F-Secure\ORSP Client\fsorsp.exe
O23 - Service: HP ProtectTools Service - Hewlett-Packard Development Company, L.P - C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTChangeFilterService.exe
O23 - Service: HP Connection Manager 4 Service (hpCMSrv) - Hewlett-Packard Development Company L.P. - C:\Program Files\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe
O23 - Service: HP Quick Synchronization Service (HPDrvMntSvc.exe) - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\Shared\HPDrvMntSvc.exe
O23 - Service: Drive Encryption Service (HpFkCryptService) - McAfee, Inc. - C:\Program Files\Hewlett-Packard\Drive Encryption\HpFkCrypt.exe
O23 - Service: File Sanitizer for HP ProtectTools (HPFSService) - Hewlett-Packard - C:\Program Files\Hewlett-Packard\File Sanitizer\HPFSService.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: HP Service (hpsrv) - Hewlett-Packard Company - C:\Windows\system32\Hpservice.exe
O23 - Service: Security Platform Management Service (IFXSpMgtSrv) - Infineon Technologies AG - C:\Program Files\Hewlett-Packard\Embedded Security Software\ifxspmgt.exe
O23 - Service: Trusted Platform Core Service (IFXTCS) - Infineon Technologies AG - C:\Program Files\Hewlett-Packard\Embedded Security Software\ifxtcs.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: Personal Secure Drive Service (PersonalSecureDriveService) - Infineon Technologies AG - C:\Program Files\Hewlett-Packard\Embedded Security Software\IfxPsdSv.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: xxxuhyrpibgczj - msm - c:\windows\system32\JOCEUJ~1.EXE

--
End of file - 15103 bytes

Reklama
zdenka.zv
nováček
Příspěvky: 38
Registrován: září 12
Pohlaví: Žena
Stav:
Offline

Re: Moc prosím o kontrolu

Příspěvekod zdenka.zv » 24 zář 2012 14:02

Dobrý den, nevím, jestli nejsem paranoidní, ale mám důvodné podezření, že mi někdo kontroluje PC na dálku.
Ještě jednou moc děkuji Zdenka
Naposledy upravil(a) zdenka.zv dne 24 zář 2012 23:42, celkem upraveno 1 x.

supermanx
nováček
Příspěvky: 2
Registrován: září 12
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Moc prosím o kontrolu

Příspěvekod supermanx » 24 zář 2012 16:43

Ovládání Pc na dálku není potřeba instalovat do počítače, protože se jedná o vnější útok, mělo by postačit nastavit v zabezpečení zapnutá brána Windows Firewall a zakázat vzdálenou správu počítače.

Uživatelský avatar
memphisto
Guru Level 13
Guru Level 13
Příspěvky: 21113
Registrován: září 06
Bydliště: Zlín - České Budějovice
Pohlaví: Muž
Stav:
Offline

Re: Moc prosím o kontrolu

Příspěvekod memphisto » 24 zář 2012 17:30

Odinstaluj:
ICQ Toolbar

v logu fixni:
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O3 - Toolbar: (no name) - {0BF43445-2F28-4351-9252-17FE6E806AA0} - (no file)
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4FE6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKCU\..\Run: [Google Update] "C:\Users\Admin\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [MailRuUpdater] C:\Users\Admin\AppData\Local\Mail.Ru\MailRuUpdater.exe
O15 - Trusted Zone: http://*.mcafee.com (HKLM)
O15 - Trusted Zone: http://betavscan.mcafeeasap.com (HKLM)
O15 - Trusted Zone: http://vs.mcafeeasap.com (HKLM)
O15 - Trusted Zone: http://www.mcafeeasap.com (HKLM)
O15 - ESC Trusted Zone: http://*.mcafee.com (HKLM)
O15 - ESC Trusted Zone: http://betavscan.mcafeeasap.com (HKLM)
O15 - ESC Trusted Zone: http://vs.mcafeeasap.com (HKLM)
O15 - ESC Trusted Zone: http://www.mcafeeasap.com (HKLM)

Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranìní historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit doèasné soubory Windows, vysypat koš atd.

Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Update Malwarebytes' Anti-Malware (Aktualizace Malwarebytes' Anti-Malware) a Launch Malwarebytes' Anti-Malware (Spustit aplikaci Malwarebytes' Anti-Malware), pokud jo tak klikni na tlačítko Finish
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Perform Quick Scan (Provést rychlý sken) a klikni na tlačítko Scan (Skenovat)
- po probìhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Show Results
- pak zvol možnost Save Logfile a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji

zdenka.zv
nováček
Příspěvky: 38
Registrován: září 12
Pohlaví: Žena
Stav:
Offline

Re: Moc prosím o kontrolu

Příspěvekod zdenka.zv » 24 zář 2012 19:02

Dobrý den, udělala jsem vše, co jste mi poradil, tady je zkopírovaný ten výsledek kontroly. Pouze prohlížeč jsem nečistila, protože používám google chrom. Měla jsem mozzilu, ale dělala neplechu. Je lepší ten google chrom odinstalovat a dát si tam třeba operu?

Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware) 1.65.0.1400
www.malwarebytes.org

Verze databáze: v2012.09.24.08

Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 9.0.8112.16421
Admin :: ADMIN-NTB [administrátor]

Ochrana: Povolena

24.9.2012 18:47:29
mbam-log-2012-09-24 (18-47-29).txt

Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 201277
Uplynulý čas: 9 minut, 41 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 0
(Žádné škodlivé položky nebyly zjištěny)

(konec)

zdenka.zv
nováček
Příspěvky: 38
Registrován: září 12
Pohlaví: Žena
Stav:
Offline

Re: Moc prosím o kontrolu

Příspěvekod zdenka.zv » 24 zář 2012 19:27

Dívala jsem se teď ještě na bránu Firefox a zjistila jsem, že je znovu vypnutá. Přitom jsem ji dneska zapínala. Jak je možné, že se mi sama vypíná? A je toto správné nastavení?
Domácí síť: příchozí připojení - blokovat všechna připojení k programům, které nejsou v seznamu povolených programů
Veřejné sítě: příchozí připojení - blokovat všechna připojení k programům, které nejsou v seznamu povolených programů
- příchozí spojení, které neodpovídají pravidlu, jsou blokována
- odchozí spojení, které neodpovídají pravidlu, jsou povolena
Naposledy upravil(a) zdenka.zv dne 24 zář 2012 20:48, celkem upraveno 1 x.

Uživatelský avatar
memphisto
Guru Level 13
Guru Level 13
Příspěvky: 21113
Registrován: září 06
Bydliště: Zlín - České Budějovice
Pohlaví: Muž
Stav:
Offline

Re: Moc prosím o kontrolu

Příspěvekod memphisto » 24 zář 2012 19:58

Pokud vyhovuje Chrome, tak jej není třeba měnit. Nemyslíš náhodou firewall a ne firefox? Vyplá pravděpodobně bude, protože máš balík ochrany od F-Secure, ne? Ten už má antivir i firewall. Nastavení taky záleží na tobě. Špatně to nastaveno není.

Toto otestuj na Virustotal
c:\windows\system32\JOCEUJ~1.EXE

Klikni vpravo od okénka na Vybrat a v Exploreru najdi požadovaný soubor v Tvém PC. Označ ho myší a klikni na Otevřít , poté klikni na Send File. Pokud už byl soubor testován , objeví se okno ve kterém klikni na Reanalyze. Soubor se začne postupně testovat více antivirovými programy. Až skončí test posledního antiviru , objeví se nahoře result a červeně počet nákaz , např. 0/40 , nebo 1/40. Pak zkopíruj myší odkaz na tuto stránku a vlož ji do svého příspěvku.
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji

zdenka.zv
nováček
Příspěvky: 38
Registrován: září 12
Pohlaví: Žena
Stav:
Offline

Re: Moc prosím o kontrolu

Příspěvekod zdenka.zv » 24 zář 2012 20:17

Posílám v příloze. Doufám, že jste myslel tento soubor - joceujaih.exe
Přílohy
Antivirus scan for f57caa1163c3c0e3da1a33929968da1d at UTC - VirusTotal.pdf
(97.14 KiB) Staženo 16 x

Uživatelský avatar
memphisto
Guru Level 13
Guru Level 13
Příspěvky: 21113
Registrován: září 06
Bydliště: Zlín - České Budějovice
Pohlaví: Muž
Stav:
Offline

Re: Moc prosím o kontrolu

Příspěvekod memphisto » 24 zář 2012 20:21

Stáhni si TDSSKiller
Na svojí plochu. Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller.2.2.7.1._(datum)_log.txt , vlož sem prosím celý obsah logu.

Vypni rezidentní štít antiviru a antispywaru
Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud bude po kontrole problém spustit aplikace nebo bude vyskakovat hláška o pokusu použít neplatnou operaci na klíč registru, který je oznaèen pro odstranění, stačí restartovat počítač.
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji

zdenka.zv
nováček
Příspěvky: 38
Registrován: září 12
Pohlaví: Žena
Stav:
Offline

Re: Moc prosím o kontrolu

Příspěvekod zdenka.zv » 24 zář 2012 20:45

U toho Kasperkyho mi to napsalo toto:
Locked file
Service: Safeboot
Suspicious object, medium risk
nabízí mi to nabídku Skip - mám dat continue

zpráva:
20:32:54.0930 1504 TDSS rootkit removing tool 2.8.10.0 Sep 17 2012 19:23:24
20:32:55.0414 1504 ============================================================
20:32:55.0414 1504 Current date / time: 2012/09/24 20:32:55.0414
20:32:55.0414 1504 SystemInfo:
20:32:55.0414 1504
20:32:55.0414 1504 OS Version: 6.1.7601 ServicePack: 1.0
20:32:55.0414 1504 Product type: Workstation
20:32:55.0414 1504 ComputerName: ADMIN-NTB
20:32:55.0414 1504 UserName: Admin
20:32:55.0414 1504 Windows directory: C:\Windows
20:32:55.0414 1504 System windows directory: C:\Windows
20:32:55.0414 1504 Processor architecture: Intel x86
20:32:55.0414 1504 Number of processors: 2
20:32:55.0414 1504 Page size: 0x1000
20:32:55.0414 1504 Boot type: Normal boot
20:32:55.0414 1504 ============================================================
20:32:57.0489 1504 Drive \Device\Harddisk0\DR0 - Size: 0x25433D6000 (149.05 Gb), SectorSize: 0x200, Cylinders: 0x4C01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
20:32:57.0551 1504 ============================================================
20:32:57.0551 1504 \Device\Harddisk0\DR0:
20:32:57.0551 1504 MBR partitions:
20:32:57.0551 1504 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
20:32:57.0551 1504 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x125E2800
20:32:57.0551 1504 \Device\Harddisk0\DR0\Partition3: MBR, Type 0xC, StartLBA 0x12615000, BlocksNum 0x400000
20:32:57.0551 1504 ============================================================
20:32:57.0567 1504 C: <-> \Device\Harddisk0\DR0\Partition2
20:32:57.0614 1504 E: <-> \Device\Harddisk0\DR0\Partition3
20:32:57.0676 1504 ============================================================
20:32:57.0676 1504 Initialize success
20:32:57.0676 1504 ============================================================
20:33:08.0284 8036 ============================================================
20:33:08.0284 8036 Scan started
20:33:08.0284 8036 Mode: Manual;
20:33:08.0284 8036 ============================================================
20:33:10.0858 8036 ================ Scan system memory ========================
20:33:10.0858 8036 System memory - ok
20:33:10.0858 8036 ================ Scan services =============================
20:33:11.0170 8036 [ 1B133875B8AA8AC48969BD3458AFE9F5 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
20:33:11.0186 8036 1394ohci - ok
20:33:11.0248 8036 [ 00659E56339389469473AEC41587E706 ] ac.sharedstore C:\Program Files\Common Files\ActivIdentity\ac.sharedstore.exe
20:33:11.0264 8036 ac.sharedstore - ok
20:33:11.0295 8036 [ CC1F1D3D70DC13C2C281488D347D4415 ] Accelerometer C:\Windows\system32\DRIVERS\Accelerometer.sys
20:33:11.0295 8036 Accelerometer - ok
20:33:11.0310 8036 [ CEA80C80BED809AA0DA6FEBC04733349 ] ACPI C:\Windows\system32\drivers\ACPI.sys
20:33:11.0342 8036 ACPI - ok
20:33:11.0373 8036 [ 1EFBC664ABFF416D1D07DB115DCB264F ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
20:33:11.0373 8036 AcpiPmi - ok
20:33:11.0404 8036 adfs - ok
20:33:11.0466 8036 [ 6C61BCEB60C2C187E6F96001FD69493E ] ADIHdAudAddService C:\Windows\system32\drivers\ADIHdAud.sys
20:33:11.0482 8036 ADIHdAudAddService - ok
20:33:11.0544 8036 [ D19C4EE2AC7C47B8F5F84FFF1A789D8A ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
20:33:11.0560 8036 AdobeARMservice - ok
20:33:11.0576 8036 [ E12CFCF1DDBFC50948A75E6E38793225 ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
20:33:11.0591 8036 AdobeFlashPlayerUpdateSvc - ok
20:33:11.0638 8036 [ 21E785EBD7DC90A06391141AAC7892FB ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys
20:33:11.0654 8036 adp94xx - ok
20:33:11.0685 8036 [ 0C676BC278D5B59FF5ABD57BBE9123F2 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys
20:33:11.0700 8036 adpahci - ok
20:33:11.0732 8036 [ 7C7B5EE4B7B822EC85321FE23A27DB33 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys
20:33:11.0732 8036 adpu320 - ok
20:33:11.0778 8036 [ 4DC6B0772D1698F04FC79053A21C8260 ] AEADIFilters C:\Windows\system32\AEADISRV.EXE
20:33:11.0778 8036 AEADIFilters - ok
20:33:11.0810 8036 [ 8B5EEFEEC1E6D1A72A06C526628AD161 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
20:33:11.0825 8036 AeLookupSvc - ok
20:33:11.0856 8036 [ 9EBBBA55060F786F0FCAA3893BFA2806 ] AFD C:\Windows\system32\drivers\afd.sys
20:33:11.0872 8036 AFD - ok
20:33:11.0934 8036 [ 7E10E3BB9B258AD8A9300F91214D67B9 ] AgereSoftModem C:\Windows\system32\DRIVERS\AGRSM.sys
20:33:11.0966 8036 AgereSoftModem - ok
20:33:11.0997 8036 [ 507812C3054C21CEF746B6EE3D04DD6E ] agp440 C:\Windows\system32\drivers\agp440.sys
20:33:11.0997 8036 agp440 - ok
20:33:12.0028 8036 [ 8B30250D573A8F6B4BD23195160D8707 ] aic78xx C:\Windows\system32\DRIVERS\djsvs.sys
20:33:12.0044 8036 aic78xx - ok
20:33:12.0075 8036 [ 18A54E132947CD98FEA9ACCC57F98F13 ] ALG C:\Windows\System32\alg.exe
20:33:12.0075 8036 ALG - ok
20:33:12.0106 8036 [ 0D40BCF52EA90FC7DF2AEAB6503DEA44 ] aliide C:\Windows\system32\drivers\aliide.sys
20:33:12.0106 8036 aliide - ok
20:33:12.0137 8036 [ 3C6600A0696E90A463771C7422E23AB5 ] amdagp C:\Windows\system32\drivers\amdagp.sys
20:33:12.0153 8036 amdagp - ok
20:33:12.0168 8036 [ CD5914170297126B6266860198D1D4F0 ] amdide C:\Windows\system32\drivers\amdide.sys
20:33:12.0184 8036 amdide - ok
20:33:12.0200 8036 [ 00DDA200D71BAC534BF56A9DB5DFD666 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
20:33:12.0200 8036 AmdK8 - ok
20:33:12.0215 8036 [ 3CBF30F5370FDA40DD3E87DF38EA53B6 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
20:33:12.0231 8036 AmdPPM - ok
20:33:12.0246 8036 [ D320BF87125326F996D4904FE24300FC ] amdsata C:\Windows\system32\drivers\amdsata.sys
20:33:12.0262 8036 amdsata - ok
20:33:12.0293 8036 [ EA43AF0C423FF267355F74E7A53BDABA ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys
20:33:12.0293 8036 amdsbs - ok
20:33:12.0324 8036 [ 46387FB17B086D16DEA267D5BE23A2F2 ] amdxata C:\Windows\system32\drivers\amdxata.sys
20:33:12.0324 8036 amdxata - ok
20:33:12.0371 8036 [ 2247FD1EA9D565AD20B9E71C637BAA93 ] ameisvc C:\Program Files\T-Mobile\Web'n'walk Manager\ameisvc.exe
20:33:12.0371 8036 ameisvc - ok
20:33:12.0418 8036 [ AEA177F783E20150ACE5383EE368DA19 ] AppID C:\Windows\system32\drivers\appid.sys
20:33:12.0418 8036 AppID - ok
20:33:12.0465 8036 [ 62A9C86CB6085E20DB4823E4E97826F5 ] AppIDSvc C:\Windows\System32\appidsvc.dll
20:33:12.0465 8036 AppIDSvc - ok
20:33:12.0512 8036 [ FB1959012294D6AD43E5304DF65E3C26 ] Appinfo C:\Windows\System32\appinfo.dll
20:33:12.0512 8036 Appinfo - ok
20:33:12.0558 8036 [ A45D184DF6A8803DA13A0B329517A64A ] AppMgmt C:\Windows\System32\appmgmts.dll
20:33:12.0558 8036 AppMgmt - ok
20:33:12.0590 8036 [ 2932004F49677BD84DBC72EDB754FFB3 ] arc C:\Windows\system32\DRIVERS\arc.sys
20:33:12.0590 8036 arc - ok
20:33:12.0683 8036 [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7 ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys
20:33:12.0683 8036 arcsas - ok
20:33:12.0761 8036 [ ACC23F541E1CC51E4FE9F947AC0F74EC ] ASBroker C:\Program Files\Hewlett-Packard\IAM\Bin\ASWLNPkg.dll
20:33:12.0761 8036 ASBroker - ok
20:33:12.0792 8036 [ A33370AC33281AC2310E1364E20D4887 ] ASChannel C:\Program Files\Hewlett-Packard\IAM\bin\AsChnl.dll
20:33:12.0792 8036 ASChannel - ok
20:33:12.0824 8036 [ ADD2ADE1C2B285AB8378D2DAAF991481 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
20:33:12.0824 8036 AsyncMac - ok
20:33:12.0855 8036 [ 338C86357871C167A96AB976519BF59E ] atapi C:\Windows\system32\drivers\atapi.sys
20:33:12.0855 8036 atapi - ok
20:33:12.0917 8036 [ B09D413EB812F65651162C516C75CC5F ] ATService C:\Program Files\Fingerprint Sensor\AtService.exe
20:33:12.0948 8036 ATService - ok
20:33:12.0995 8036 [ 1EC637725AEBE586508626BA50AF3324 ] ATSwpWDF C:\Windows\system32\Drivers\ATSwpWDF.sys
20:33:13.0011 8036 ATSwpWDF - ok
20:33:13.0058 8036 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
20:33:13.0073 8036 AudioEndpointBuilder - ok
20:33:13.0104 8036 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] Audiosrv C:\Windows\System32\Audiosrv.dll
20:33:13.0104 8036 Audiosrv - ok
20:33:13.0136 8036 [ 6E30D02AAC9CAC84F421622E3A2F6178 ] AxInstSV C:\Windows\System32\AxInstSV.dll
20:33:13.0136 8036 AxInstSV - ok
20:33:13.0198 8036 [ 1A231ABEC60FD316EC54C66715543CEC ] b06bdrv C:\Windows\system32\DRIVERS\bxvbdx.sys
20:33:13.0214 8036 b06bdrv - ok
20:33:13.0245 8036 [ BD8869EB9CDE6BBE4508D869929869EE ] b57nd60x C:\Windows\system32\DRIVERS\b57nd60x.sys
20:33:13.0260 8036 b57nd60x - ok
20:33:13.0292 8036 [ EE1E9C3BB8228AE423DD38DB69128E71 ] BDESVC C:\Windows\System32\bdesvc.dll
20:33:13.0307 8036 BDESVC - ok
20:33:13.0338 8036 [ 505506526A9D467307B3C393DEDAF858 ] Beep C:\Windows\system32\drivers\Beep.sys
20:33:13.0338 8036 Beep - ok
20:33:13.0385 8036 [ 1E2BAC209D184BB851E1A187D8A29136 ] BFE C:\Windows\System32\bfe.dll
20:33:13.0401 8036 BFE - ok
20:33:13.0432 8036 [ E585445D5021971FAE10393F0F1C3961 ] BITS C:\Windows\System32\qmgr.dll
20:33:13.0432 8036 BITS - ok
20:33:13.0448 8036 [ 2287078ED48FCFC477B05B20CF38F36F ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
20:33:13.0448 8036 blbdrive - ok
20:33:13.0479 8036 [ 8F2DA3028D5FCBD1A060A3DE64CD6506 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
20:33:13.0479 8036 bowser - ok
20:33:13.0494 8036 [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys
20:33:13.0494 8036 BrFiltLo - ok
20:33:13.0510 8036 [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys
20:33:13.0510 8036 BrFiltUp - ok
20:33:13.0541 8036 [ 3DAA727B5B0A45039B0E1C9A211B8400 ] Browser C:\Windows\System32\browser.dll
20:33:13.0541 8036 Browser - ok
20:33:13.0572 8036 [ 845B8CE732E67F3B4133164868C666EA ] Brserid C:\Windows\System32\Drivers\Brserid.sys
20:33:13.0572 8036 Brserid - ok
20:33:13.0588 8036 [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
20:33:13.0588 8036 BrSerWdm - ok
20:33:13.0604 8036 [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
20:33:13.0619 8036 BrUsbMdm - ok
20:33:13.0619 8036 [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
20:33:13.0635 8036 BrUsbSer - ok
20:33:13.0666 8036 [ 2865A5C8E98C70C605F417908CEBB3A4 ] BthEnum C:\Windows\system32\drivers\BthEnum.sys
20:33:13.0682 8036 BthEnum - ok
20:33:13.0697 8036 [ ED3DF7C56CE0084EB2034432FC56565A ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys
20:33:13.0697 8036 BTHMODEM - ok
20:33:13.0728 8036 [ AD1872E5829E8A2C3B5B4B641C3EAB0E ] BthPan C:\Windows\system32\DRIVERS\bthpan.sys
20:33:13.0728 8036 BthPan - ok
20:33:13.0775 8036 [ 1153DE2E4F5941E10C399CB5592F78A1 ] BTHPORT C:\Windows\System32\Drivers\BTHport.sys
20:33:13.0791 8036 BTHPORT - ok
20:33:13.0838 8036 [ 1DF19C96EEF6C29D1C3E1A8678E07190 ] bthserv C:\Windows\system32\bthserv.dll
20:33:13.0838 8036 bthserv - ok
20:33:13.0853 8036 [ C81E9413A25A439F436B1D4B6A0CF9E9 ] BTHUSB C:\Windows\System32\Drivers\BTHUSB.sys
20:33:13.0869 8036 BTHUSB - ok
20:33:13.0900 8036 [ D57D29132EFE13A83133D9BD449E0CF1 ] btwaudio C:\Windows\system32\drivers\btwaudio.sys
20:33:13.0900 8036 btwaudio - ok
20:33:13.0931 8036 [ D282C14A69357D0E1BAFAECC2CA98C3A ] btwavdt C:\Windows\system32\drivers\btwavdt.sys
20:33:13.0931 8036 btwavdt - ok
20:33:13.0978 8036 [ 7D2DD14E60CE4FF3308D66FDA7990546 ] btwdins C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
20:33:13.0994 8036 btwdins - ok
20:33:14.0025 8036 [ AAFD7CB76BA61FBB08E302DA208C974A ] btwl2cap C:\Windows\system32\DRIVERS\btwl2cap.sys
20:33:14.0025 8036 btwl2cap - ok
20:33:14.0040 8036 [ 02EB4D2B05967DF2D32F29C84AB1FB17 ] btwrchid C:\Windows\system32\DRIVERS\btwrchid.sys
20:33:14.0040 8036 btwrchid - ok
20:33:14.0072 8036 [ 77EA11B065E0A8AB902D78145CA51E10 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
20:33:14.0087 8036 cdfs - ok
20:33:14.0134 8036 [ BE167ED0FDB9C1FA1133953C18D5A6C9 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
20:33:14.0134 8036 cdrom - ok
20:33:14.0181 8036 [ 319C6B309773D063541D01DF8AC6F55F ] CertPropSvc C:\Windows\System32\certprop.dll
20:33:14.0181 8036 CertPropSvc - ok
20:33:14.0212 8036 [ 3FE3FE94A34DF6FB06E6418D0F6A0060 ] circlass C:\Windows\system32\DRIVERS\circlass.sys
20:33:14.0228 8036 circlass - ok
20:33:14.0259 8036 [ 635181E0E9BBF16871BF5380D71DB02D ] CLFS C:\Windows\system32\CLFS.sys
20:33:14.0274 8036 CLFS - ok
20:33:14.0337 8036 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
20:33:14.0337 8036 clr_optimization_v2.0.50727_32 - ok
20:33:14.0415 8036 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
20:33:14.0430 8036 clr_optimization_v4.0.30319_32 - ok
20:33:14.0477 8036 [ DEA805815E587DAD1DD2C502220B5616 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
20:33:14.0477 8036 CmBatt - ok
20:33:14.0508 8036 [ C537B1DB64D495B9B4717B4D6D9EDBF2 ] cmdide C:\Windows\system32\drivers\cmdide.sys
20:33:14.0508 8036 cmdide - ok
20:33:14.0555 8036 [ 247B4CE2DAB1160CD422D532D5241E1F ] CNG C:\Windows\system32\Drivers\cng.sys
20:33:14.0571 8036 CNG - ok
20:33:14.0633 8036 [ C7A0E61D5714AC20DE52D4F66EC773B8 ] Com4QLBEx C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
20:33:14.0649 8036 Com4QLBEx - ok
20:33:14.0664 8036 [ A6023D3823C37043986713F118A89BEE ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
20:33:14.0664 8036 Compbatt - ok
20:33:14.0696 8036 [ CBE8C58A8579CFE5FCCF809E6F114E89 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys
20:33:14.0696 8036 CompositeBus - ok
20:33:14.0711 8036 COMSysApp - ok
20:33:14.0742 8036 [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys
20:33:14.0742 8036 crcdisk - ok
20:33:14.0805 8036 [ 06E771AA596B8761107AB57E99F128D7 ] CryptSvc C:\Windows\system32\cryptsvc.dll
20:33:14.0805 8036 CryptSvc - ok
20:33:14.0852 8036 [ 3C2177A897B4CA2788C6FB0C3FD81D4B ] CSC C:\Windows\system32\drivers\csc.sys
20:33:14.0867 8036 CSC - ok
20:33:14.0898 8036 [ 15F93B37F6801943360D9EB42485D5D3 ] CscService C:\Windows\System32\cscsvc.dll
20:33:14.0914 8036 CscService - ok
20:33:14.0961 8036 [ A05433F6218DCB8F0DEC232DE65F8B26 ] DAMDrv C:\Windows\system32\DRIVERS\DAMDrv.sys
20:33:14.0961 8036 DAMDrv - ok
20:33:14.0992 8036 [ 7660F01D3B38ACA1747E397D21D790AF ] DcomLaunch C:\Windows\system32\rpcss.dll
20:33:15.0023 8036 DcomLaunch - ok
20:33:15.0054 8036 [ 8D6E10A2D9A5EED59562D9B82CF804E1 ] defragsvc C:\Windows\System32\defragsvc.dll
20:33:15.0070 8036 defragsvc - ok
20:33:15.0101 8036 [ F024449C97EC1E464AAFFDA18593DB88 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
20:33:15.0101 8036 DfsC - ok
20:33:15.0132 8036 [ E9E01EB683C132F7FA27CD607B8A2B63 ] Dhcp C:\Windows\system32\dhcpcore.dll
20:33:15.0148 8036 Dhcp - ok
20:33:15.0164 8036 [ 1A050B0274BFB3890703D490F330C0DA ] discache C:\Windows\system32\drivers\discache.sys
20:33:15.0164 8036 discache - ok
20:33:15.0210 8036 [ 565003F326F99802E68CA78F2A68E9FF ] Disk C:\Windows\system32\DRIVERS\disk.sys
20:33:15.0226 8036 Disk - ok
20:33:15.0366 8036 [ FC41DE978D894F4DD2DA7A9E644D9B5E ] DisplayLinkService C:\Program Files\DisplayLink Core Software\DisplayLinkManager.exe
20:33:15.0491 8036 DisplayLinkService - ok
20:33:15.0522 8036 [ 4BC8BC999D3399DDD48DC613AF4836BA ] dlkmd C:\Windows\system32\drivers\dlkmd.sys
20:33:15.0522 8036 dlkmd - ok
20:33:15.0538 8036 [ B0A027364265D1FCA68C27C9596DDA0F ] dlkmdldr C:\Windows\system32\drivers\dlkmdldr.sys
20:33:15.0538 8036 dlkmdldr - ok
20:33:15.0569 8036 [ 33EF4861F19A0736B11314AAD9AE28D0 ] Dnscache C:\Windows\System32\dnsrslvr.dll
20:33:15.0585 8036 Dnscache - ok
20:33:15.0600 8036 [ 366BA8FB4B7BB7435E3B9EACB3843F67 ] dot3svc C:\Windows\System32\dot3svc.dll
20:33:15.0616 8036 dot3svc - ok
20:33:15.0632 8036 [ 8EC04CA86F1D68DA9E11952EB85973D6 ] DPS C:\Windows\system32\dps.dll
20:33:15.0647 8036 DPS - ok
20:33:15.0663 8036 [ B918E7C5F9BF77202F89E1A9539F2EB4 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
20:33:15.0663 8036 drmkaud - ok
20:33:15.0710 8036 [ 23F5D28378A160352BA8F817BD8C71CB ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
20:33:15.0741 8036 DXGKrnl - ok
20:33:15.0788 8036 [ 8600142FA91C1B96367D3300AD0F3F3A ] EapHost C:\Windows\System32\eapsvc.dll
20:33:15.0788 8036 EapHost - ok
20:33:15.0912 8036 [ 024E1B5CAC09731E4D868E64DBFB4AB0 ] ebdrv C:\Windows\system32\DRIVERS\evbdx.sys
20:33:16.0006 8036 ebdrv - ok
20:33:16.0037 8036 [ 81951F51E318AECC2D68559E47485CC4 ] EFS C:\Windows\System32\lsass.exe
20:33:16.0037 8036 EFS - ok
20:33:16.0162 8036 [ A8C362018EFC87BEB013EE28F29C0863 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
20:33:16.0256 8036 ehRecvr - ok
20:33:16.0318 8036 [ D389BFF34F80CAEDE417BF9D1507996A ] ehSched C:\Windows\ehome\ehsched.exe
20:33:16.0396 8036 ehSched - ok
20:33:16.0458 8036 [ 0ED67910C8C326796FAA00B2BF6D9D3C ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys
20:33:16.0474 8036 elxstor - ok
20:33:16.0521 8036 [ 8FC3208352DD3912C94367A206AB3F11 ] ErrDev C:\Windows\system32\drivers\errdev.sys
20:33:16.0521 8036 ErrDev - ok
20:33:16.0583 8036 [ F6916EFC29D9953D5D0DF06882AE8E16 ] EventSystem C:\Windows\system32\es.dll
20:33:16.0599 8036 EventSystem - ok
20:33:16.0661 8036 [ 8597822F0E0EAA61A9FFD18778828792 ] EvtEng C:\Program Files\Intel\WiFi\bin\EvtEng.exe
20:33:16.0677 8036 EvtEng - ok
20:33:16.0708 8036 [ 2DC9108D74081149CC8B651D3A26207F ] exfat C:\Windows\system32\drivers\exfat.sys
20:33:16.0724 8036 exfat - ok
20:33:16.0786 8036 [ 3FC443C445DE8C0CFFF2E9192EC09DF0 ] F-Secure Filter C:\Program Files\F-Secure\Anti-Virus\Win2K\FSfilter.sys
20:33:16.0802 8036 F-Secure Filter - ok
20:33:16.0817 8036 [ 66422DC3FAA1DE433371816056D28270 ] F-Secure Gatekeeper C:\Program Files\F-Secure\Anti-Virus\minifilter\fsgk.sys
20:33:16.0833 8036 F-Secure Gatekeeper - ok
20:33:16.0864 8036 [ 669007B2302B71AC6CAEB677DB37BF10 ] F-Secure Gatekeeper Handler Starter C:\Program Files\F-Secure\Anti-Virus\fsgk32st.exe
20:33:16.0864 8036 F-Secure Gatekeeper Handler Starter - ok
20:33:16.0911 8036 [ A7E594F11260F6F13E4C1CC7FC13337B ] F-Secure HIPS C:\Program Files\F-Secure\HIPS\drivers\fshs.sys
20:33:16.0911 8036 F-Secure HIPS - ok
20:33:16.0942 8036 [ 0AF5B0D5F5B131B37808936F0C7C2ADF ] F-Secure Network Request Broker C:\Program Files\F-Secure\Common\FNRB32.EXE
20:33:16.0942 8036 F-Secure Network Request Broker - ok
20:33:16.0958 8036 [ ECA4B23DB44D966E8BEB032A0FC48412 ] F-Secure Recognizer C:\Program Files\F-Secure\Anti-Virus\Win2K\FSrec.sys
20:33:16.0973 8036 F-Secure Recognizer - ok
20:33:16.0989 8036 [ 7E0AB74553476622FB6AE36F73D97D35 ] fastfat C:\Windows\system32\drivers\fastfat.sys
20:33:17.0004 8036 fastfat - ok
20:33:17.0051 8036 [ 967EA5B213E9984CBE270205DF37755B ] Fax C:\Windows\system32\fxssvc.exe
20:33:17.0067 8036 Fax - ok
20:33:17.0098 8036 [ E817A017F82DF2A1F8CFDBDA29388B29 ] fdc C:\Windows\system32\DRIVERS\fdc.sys
20:33:17.0098 8036 fdc - ok
20:33:17.0129 8036 [ F3222C893BD2F5821A0179E5C71E88FB ] fdPHost C:\Windows\system32\fdPHost.dll
20:33:17.0129 8036 fdPHost - ok
20:33:17.0145 8036 [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B ] FDResPub C:\Windows\system32\fdrespub.dll
20:33:17.0160 8036 FDResPub - ok
20:33:17.0160 8036 [ 6CF00369C97F3CF563BE99BE983D13D8 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
20:33:17.0176 8036 FileInfo - ok
20:33:17.0192 8036 [ 42C51DC94C91DA21CB9196EB64C45DB9 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
20:33:17.0192 8036 Filetrace - ok
20:33:17.0238 8036 [ C2F62839BB7ADBEC31F19776504867C4 ] FLCDLOCK C:\Windows\system32\flcdlock.exe
20:33:17.0270 8036 FLCDLOCK - ok
20:33:17.0285 8036 [ 87907AA70CB3C56600F1C2FB8841579B ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
20:33:17.0285 8036 flpydisk - ok
20:33:17.0316 8036 [ 7520EC808E0C35E0EE6F841294316653 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
20:33:17.0332 8036 FltMgr - ok
20:33:17.0379 8036 [ B3A5EC6B6B6673DB7E87C2BCDBDDC074 ] FontCache C:\Windows\system32\FntCache.dll
20:33:17.0394 8036 FontCache - ok
20:33:17.0457 8036 [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
20:33:17.0472 8036 FontCache3.0.0.0 - ok
20:33:17.0504 8036 [ 18DA737DD5122A475DA4948ED4643675 ] fsbts C:\Windows\system32\Drivers\fsbts.sys
20:33:17.0504 8036 fsbts - ok
20:33:17.0535 8036 [ 1A16B57943853E598CFF37FE2B8CBF1D ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
20:33:17.0535 8036 FsDepends - ok
20:33:17.0582 8036 [ E6D55B459D7CC719372D5D5AC56DEBD3 ] fsdevcon C:\Program Files\F-Secure\Device Control\\fsdevcon32.exe
20:33:17.0613 8036 fsdevcon - ok
20:33:17.0675 8036 [ 05B49783581C82185A9C287337E99F11 ] FSDFWD C:\Program Files\F-Secure\FWES\Program\fsdfwd.exe
20:33:17.0706 8036 FSDFWD - ok
20:33:17.0722 8036 [ FB09B075C422ADF0678EA78430C8FA19 ] FSES C:\Windows\system32\drivers\fses.sys
20:33:17.0722 8036 FSES - ok
20:33:17.0738 8036 [ FB7D68AD9DDDB454D52FCC8E0BE4CDBC ] FSFW C:\Windows\system32\drivers\fsdfw.sys
20:33:17.0738 8036 FSFW - ok
20:33:17.0784 8036 [ FACB354E5AA384950BB98B255DF1FE8A ] FSMA C:\Program Files\F-Secure\Common\FSMA32.EXE
20:33:17.0784 8036 FSMA - ok
20:33:17.0800 8036 [ F6DEE433C057DDCDFA6B1AF83DB2CBD1 ] FSORSPClient C:\Program Files\F-Secure\ORSP Client\fsorsp.exe
20:33:17.0816 8036 FSORSPClient - ok
20:33:17.0831 8036 [ B68EE2C06DAB679CAD5AE4F264160990 ] fsvista C:\Program Files\F-Secure\Anti-Virus\minifilter\fsvista.sys
20:33:17.0831 8036 fsvista - ok
20:33:17.0862 8036 [ 7DAE5EBCC80E45D3253F4923DC424D05 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
20:33:17.0878 8036 Fs_Rec - ok
20:33:17.0909 8036 [ 8A73E79089B282100B9393B644CB853B ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
20:33:17.0925 8036 fvevol - ok
20:33:17.0956 8036 [ 65EE0C7A58B65E74AE05637418153938 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys
20:33:17.0972 8036 gagp30kx - ok
20:33:18.0003 8036 [ E897EAF5ED6BA41E081060C9B447A673 ] gpsvc C:\Windows\System32\gpsvc.dll
20:33:18.0034 8036 gpsvc - ok
20:33:18.0065 8036 [ C172F0D0329E46513B09E1FC60A27B9D ] HBtnKey C:\Windows\system32\DRIVERS\cpqbttn.sys
20:33:18.0065 8036 HBtnKey - ok
20:33:18.0096 8036 [ C44E3C2BAB6837DB337DDEE7544736DB ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
20:33:18.0096 8036 hcw85cir - ok
20:33:18.0143 8036 [ A5EF29D5315111C80A5C1ABAD14C8972 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
20:33:18.0159 8036 HdAudAddService - ok
20:33:18.0190 8036 [ 9036377B8A6C15DC2EEC53E489D159B5 ] HDAudBus C:\Windows\system32\drivers\HDAudBus.sys
20:33:18.0190 8036 HDAudBus - ok
20:33:18.0221 8036 [ 1D58A7F3E11A9731D0EAAAA8405ACC36 ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys
20:33:18.0221 8036 HidBatt - ok
20:33:18.0252 8036 [ 89448F40E6DF260C206A193A4683BA78 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys
20:33:18.0252 8036 HidBth - ok
20:33:18.0284 8036 [ CF50B4CF4A4F229B9F3C08351F99CA5E ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
20:33:18.0284 8036 HidIr - ok
20:33:18.0315 8036 [ 2BC6F6A1992B3A77F5F41432CA6B3B6B ] hidserv C:\Windows\system32\hidserv.dll
20:33:18.0315 8036 hidserv - ok
20:33:18.0346 8036 [ 10C19F8290891AF023EAEC0832E1EB4D ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
20:33:18.0346 8036 HidUsb - ok
20:33:18.0393 8036 [ 196B4E3F4CCCC24AF836CE58FACBB699 ] hkmsvc C:\Windows\system32\kmsvc.dll
20:33:18.0393 8036 hkmsvc - ok
20:33:18.0424 8036 [ 6658F4404DE03D75FE3BA09F7ABA6A30 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
20:33:18.0440 8036 HomeGroupListener - ok
20:33:18.0471 8036 [ DBC02D918FFF1CAD628ACBE0C0EAA8E8 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
20:33:18.0502 8036 HomeGroupProvider - ok
20:33:18.0533 8036 [ 38024D5D5D9CF7C12B74AECDA968C970 ] HP ProtectTools Service C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTChangeFilterService.exe
20:33:18.0549 8036 HP ProtectTools Service - ok
20:33:18.0627 8036 [ C5D2F308E1C12A5C328EF549696DBC05 ] hpCMSrv C:\Program Files\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe
20:33:18.0658 8036 hpCMSrv - ok
20:33:18.0736 8036 [ 85ED336AB69149A91D2D6617FC5CA1B3 ] HPDrvMntSvc.exe C:\Program Files\Hewlett-Packard\Shared\HPDrvMntSvc.exe
20:33:18.0736 8036 HPDrvMntSvc.exe - ok
20:33:18.0752 8036 [ 4EF10B866C62ABBEAF7511CDD05A19BE ] hpdskflt C:\Windows\system32\DRIVERS\hpdskflt.sys
20:33:18.0767 8036 hpdskflt - ok
20:33:18.0814 8036 [ 81C5E6C3AE27DCF17BE506046F00015F ] HpFkCryptService C:\Program Files\Hewlett-Packard\Drive Encryption\HpFkCrypt.exe
20:33:18.0830 8036 HpFkCryptService - ok
20:33:18.0923 8036 [ 3918E9D008F200B67C81A450668DADF2 ] HPFSService C:\Program Files\Hewlett-Packard\File Sanitizer\HPFSService.exe
20:33:18.0939 8036 HPFSService - ok
20:33:18.0954 8036 [ 1210960FF8928950D2A786895B0C424A ] HpqKbFiltr C:\Windows\system32\DRIVERS\HpqKbFiltr.sys
20:33:18.0954 8036 HpqKbFiltr - ok
20:33:19.0001 8036 [ 41830DB0E11FCC3A38689F7E680BD0ED ] hpqwmiex C:\Program Files\Hewlett-Packard\Shared\hpqWmiEx.exe
20:33:19.0032 8036 hpqwmiex - ok
20:33:19.0064 8036 [ 295FDC419039090EB8B49FFDBB374549 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
20:33:19.0064 8036 HpSAMD - ok
20:33:19.0095 8036 [ C0BEB56ED79B59B7B33D0AA6C38A0BA6 ] hpsrv C:\Windows\system32\Hpservice.exe
20:33:19.0110 8036 hpsrv - ok
20:33:19.0142 8036 [ 871917B07A141BFF43D76D8844D48106 ] HTTP C:\Windows\system32\drivers\HTTP.sys
20:33:19.0157 8036 HTTP - ok
20:33:19.0188 8036 [ 0C4E035C7F105F1299258C90886C64C5 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
20:33:19.0188 8036 hwpolicy - ok
20:33:19.0220 8036 [ F151F0BDC47F4A28B1B20A0818EA36D6 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
20:33:19.0220 8036 i8042prt - ok
20:33:19.0266 8036 [ 5CD5F9A5444E6CDCB0AC89BD62D8B76E ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
20:33:19.0266 8036 iaStorV - ok
20:33:19.0344 8036 [ C521D7EB6497BB1AF6AFA89E322FB43C ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
20:33:19.0391 8036 idsvc - ok
20:33:19.0469 8036 [ 5BB5332B7A08A7493680B477212753AB ] IFXSpMgtSrv C:\Program Files\Hewlett-Packard\Embedded Security Software\ifxspmgt.exe
20:33:19.0532 8036 IFXSpMgtSrv - ok
20:33:19.0563 8036 [ DD2CA93025BB1174C870F0B0A7B445DE ] IFXTCS C:\Program Files\Hewlett-Packard\Embedded Security Software\ifxtcs.exe
20:33:19.0610 8036 IFXTCS - ok
20:33:19.0766 8036 [ A70C995199A47F326EEF4F9F5E6267A1 ] igfx C:\Windows\system32\DRIVERS\igdkmd32.sys
20:33:19.0937 8036 igfx - ok
20:33:19.0968 8036 [ 4173FF5708F3236CF25195FECD742915 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys
20:33:19.0968 8036 iirsp - ok
20:33:20.0015 8036 [ F95622F161474511B8D80D6B093AA610 ] IKEEXT C:\Windows\System32\ikeext.dll
20:33:20.0046 8036 IKEEXT - ok
20:33:20.0078 8036 [ A0F12F2C9BA6C72F3987CE780E77C130 ] intelide C:\Windows\system32\drivers\intelide.sys
20:33:20.0078 8036 intelide - ok
20:33:20.0109 8036 [ 3B514D27BFC4ACCB4037BC6685F766E0 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
20:33:20.0109 8036 intelppm - ok
20:33:20.0140 8036 [ ACB364B9075A45C0736E5C47BE5CAE19 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
20:33:20.0140 8036 IPBusEnum - ok
20:33:20.0156 8036 [ 709D1761D3B19A932FF0238EA6D50200 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
20:33:20.0171 8036 IpFilterDriver - ok
20:33:20.0202 8036 [ 4D65A07B795D6674312F879D09AA7663 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
20:33:20.0218 8036 iphlpsvc - ok
20:33:20.0249 8036 [ 4BD7134618C1D2A27466A099062547BF ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
20:33:20.0249 8036 IPMIDRV - ok
20:33:20.0296 8036 [ A5FA468D67ABCDAA36264E463A7BB0CD ] IPNAT C:\Windows\system32\drivers\ipnat.sys
20:33:20.0296 8036 IPNAT - ok
20:33:20.0327 8036 [ 42996CFF20A3084A56017B7902307E9F ] IRENUM C:\Windows\system32\drivers\irenum.sys
20:33:20.0327 8036 IRENUM - ok
20:33:20.0343 8036 [ 1F32BB6B38F62F7DF1A7AB7292638A35 ] isapnp C:\Windows\system32\drivers\isapnp.sys
20:33:20.0343 8036 isapnp - ok
20:33:20.0374 8036 [ CB7A9ABB12B8415BCE5D74994C7BA3AE ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
20:33:20.0390 8036 iScsiPrt - ok
20:33:20.0421 8036 [ ADEF52CA1AEAE82B50DF86B56413107E ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
20:33:20.0421 8036 kbdclass - ok
20:33:20.0452 8036 [ 9E3CED91863E6EE98C24794D05E27A71 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
20:33:20.0452 8036 kbdhid - ok
20:33:20.0468 8036 [ 81951F51E318AECC2D68559E47485CC4 ] KeyIso C:\Windows\system32\lsass.exe
20:33:20.0468 8036 KeyIso - ok
20:33:20.0499 8036 [ B7895B4182C0D16F6EFADEB8081E8D36 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
20:33:20.0514 8036 KSecDD - ok
20:33:20.0546 8036 [ D30159AC9237519FBC62C6EC247D2D46 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
20:33:20.0546 8036 KSecPkg - ok
20:33:20.0592 8036 [ 89A7B9CC98D0D80C6F31B91C0A310FCD ] KtmRm C:\Windows\system32\msdtckrm.dll
20:33:20.0608 8036 KtmRm - ok
20:33:20.0639 8036 [ D64AF876D53ECA3668BB97B51B4E70AB ] LanmanServer C:\Windows\system32\srvsvc.dll
20:33:20.0655 8036 LanmanServer - ok
20:33:20.0702 8036 [ 58405E4F68BA8E4057C6E914F326ABA2 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
20:33:20.0717 8036 LanmanWorkstation - ok
20:33:20.0764 8036 [ 83D8BE94E1CBCBE2EA8372DB1A95A159 ] LightScribeService C:\Program Files\Common Files\LightScribe\LSSrvc.exe
20:33:20.0780 8036 LightScribeService - ok
20:33:20.0811 8036 [ F7611EC07349979DA9B0AE1F18CCC7A6 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
20:33:20.0811 8036 lltdio - ok
20:33:20.0858 8036 [ 5700673E13A2117FA3B9020C852C01E2 ] lltdsvc C:\Windows\System32\lltdsvc.dll
20:33:20.0873 8036 lltdsvc - ok
20:33:20.0889 8036 [ 55CA01BA19D0006C8F2639B6C045E08B ] lmhosts C:\Windows\System32\lmhsvc.dll
20:33:20.0889 8036 lmhosts - ok
20:33:20.0936 8036 [ EB119A53CCF2ACC000AC71B065B78FEF ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys
20:33:20.0936 8036 LSI_FC - ok
20:33:20.0951 8036 [ 8ADE1C877256A22E49B75D1CC9161F9C ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys
20:33:20.0967 8036 LSI_SAS - ok
20:33:20.0982 8036 [ DC9DC3D3DAA0E276FD2EC262E38B11E9 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys
20:33:20.0982 8036 LSI_SAS2 - ok
20:33:21.0014 8036 [ 0A036C7D7CAB643A7F07135AC47E0524 ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys
20:33:21.0014 8036 LSI_SCSI - ok
20:33:21.0045 8036 [ 6703E366CC18D3B6E534F5CF7DF39CEE ] luafv C:\Windows\system32\drivers\luafv.sys
20:33:21.0045 8036 luafv - ok
20:33:21.0092 8036 [ 0B058116D3D4ECCA7DED38F16E0581B2 ] massfilter C:\Windows\system32\drivers\massfilter.sys
20:33:21.0107 8036 massfilter - ok
20:33:21.0123 8036 [ 65E794E86468B61F2BC79ABC48BC4433 ] MBAMProtector C:\Windows\system32\drivers\mbam.sys
20:33:21.0123 8036 MBAMProtector - ok
20:33:21.0185 8036 [ 0DCF16B1449811EFA47AB52CAC84093C ] MBAMScheduler C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
20:33:21.0201 8036 MBAMScheduler - ok
20:33:21.0248 8036 [ 9EAABA4D601004BEA4DAA6E146E19A96 ] MBAMService C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
20:33:21.0263 8036 MBAMService - ok
20:33:21.0310 8036 [ BFB9EE8EE977EFE85D1A3105ABEF6DD1 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
20:33:21.0326 8036 Mcx2Svc - ok
20:33:21.0357 8036 [ 0FFF5B045293002AB38EB1FD1FC2FB74 ] megasas C:\Windows\system32\DRIVERS\megasas.sys
20:33:21.0357 8036 megasas - ok
20:33:21.0388 8036 [ DCBAB2920C75F390CAF1D29F675D03D6 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys
20:33:21.0404 8036 MegaSR - ok
20:33:21.0497 8036 [ 64B96DE8C492BD435372D9130A535F1D ] MfeAVFK C:\Windows\system32\drivers\MfeAVFK.sys
20:33:21.0513 8036 MfeAVFK - ok
20:33:21.0528 8036 [ 078E87A89D36CC3516F19D5FB518BDDC ] MfeBOPK C:\Windows\system32\drivers\MfeBOPK.sys
20:33:21.0528 8036 MfeBOPK - ok
20:33:21.0575 8036 [ 168C565101FD5B9DB694EFDEC91FAFA9 ] mfehidk C:\Windows\system32\drivers\mfehidk.sys
20:33:21.0591 8036 mfehidk - ok
20:33:21.0606 8036 [ E0842F67DC9BC4D21D1E319610EBE9E5 ] MfeRKDK C:\Windows\system32\drivers\MfeRKDK.sys
20:33:21.0622 8036 MfeRKDK - ok
20:33:21.0653 8036 [ 43A7ACBBD70ECD62F0B63486C72089A3 ] mfetdik C:\Windows\system32\drivers\mfetdik.sys
20:33:21.0653 8036 mfetdik - ok
20:33:21.0684 8036 [ 146B6F43A673379A3C670E86D89BE5EA ] MMCSS C:\Windows\system32\mmcss.dll
20:33:21.0684 8036 MMCSS - ok
20:33:21.0716 8036 [ F001861E5700EE84E2D4E52C712F4964 ] Modem C:\Windows\system32\drivers\modem.sys
20:33:21.0716 8036 Modem - ok
20:33:21.0731 8036 [ 79D10964DE86B292320E9DFE02282A23 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
20:33:21.0731 8036 monitor - ok
20:33:21.0762 8036 [ FB18CC1D4C2E716B6B903B0AC0CC0609 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
20:33:21.0762 8036 mouclass - ok
20:33:21.0794 8036 [ 2C388D2CD01C9042596CF3C8F3C7B24D ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
20:33:21.0794 8036 mouhid - ok
20:33:21.0825 8036 [ FC8771F45ECCCFD89684E38842539B9B ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
20:33:21.0840 8036 mountmgr - ok
20:33:21.0872 8036 [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0 ] mpio C:\Windows\system32\drivers\mpio.sys
20:33:21.0872 8036 mpio - ok
20:33:21.0903 8036 [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
20:33:21.0903 8036 mpsdrv - ok
20:33:21.0950 8036 [ 9835584E999D25004E1EE8E5F3E3B881 ] MpsSvc C:\Windows\system32\mpssvc.dll
20:33:21.0965 8036 MpsSvc - ok
20:33:21.0996 8036 [ CEB46AB7C01C9F825F8CC6BABC18166A ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
20:33:22.0012 8036 MRxDAV - ok
20:33:22.0043 8036 [ 5D16C921E3671636C0EBA3BBAAC5FD25 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
20:33:22.0043 8036 mrxsmb - ok
20:33:22.0074 8036 [ 6D17A4791ACA19328C685D256349FEFC ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
20:33:22.0090 8036 mrxsmb10 - ok
20:33:22.0106 8036 [ B81F204D146000BE76651A50670A5E9E ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
20:33:22.0106 8036 mrxsmb20 - ok
20:33:22.0121 8036 [ 012C5F4E9349E711E11E0F19A8589F0A ] msahci C:\Windows\system32\drivers\msahci.sys
20:33:22.0137 8036 msahci - ok
20:33:22.0152 8036 [ 55055F8AD8BE27A64C831322A780A228 ] msdsm C:\Windows\system32\drivers\msdsm.sys
20:33:22.0152 8036 msdsm - ok
20:33:22.0199 8036 [ E1BCE74A3BD9902B72599C0192A07E27 ] MSDTC C:\Windows\System32\msdtc.exe
20:33:22.0215 8036 MSDTC - ok
20:33:22.0262 8036 [ DAEFB28E3AF5A76ABCC2C3078C07327F ] Msfs C:\Windows\system32\drivers\Msfs.sys
20:33:22.0262 8036 Msfs - ok
20:33:22.0277 8036 [ 3E1E5767043C5AF9367F0056295E9F84 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
20:33:22.0277 8036 mshidkmdf - ok
20:33:22.0308 8036 [ 0A4E5757AE09FA9622E3158CC1AEF114 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
20:33:22.0308 8036 msisadrv - ok
20:33:22.0355 8036 [ 90F7D9E6B6F27E1A707D4A297F077828 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
20:33:22.0355 8036 MSiSCSI - ok
20:33:22.0371 8036 msiserver - ok
20:33:22.0402 8036 [ 8C0860D6366AAFFB6C5BB9DF9448E631 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
20:33:22.0402 8036 MSKSSRV - ok
20:33:22.0433 8036 [ 3EA8B949F963562CEDBB549EAC0C11CE ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
20:33:22.0433 8036 MSPCLOCK - ok
20:33:22.0449 8036 [ F456E973590D663B1073E9C463B40932 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
20:33:22.0449 8036 MSPQM - ok
20:33:22.0480 8036 [ 0E008FC4819D238C51D7C93E7B41E560 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
20:33:22.0480 8036 MsRPC - ok
20:33:22.0511 8036 [ FC6B9FF600CC585EA38B12589BD4E246 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys
20:33:22.0511 8036 mssmbios - ok
20:33:22.0542 8036 [ B42C6B921F61A6E55159B8BE6CD54A36 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
20:33:22.0542 8036 MSTEE - ok
20:33:22.0574 8036 [ 33599130F44E1F34631CEA241DE8AC84 ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys
20:33:22.0589 8036 MTConfig - ok
20:33:22.0605 8036 [ 159FAD02F64E6381758C990F753BCC80 ] Mup C:\Windows\system32\Drivers\mup.sys
20:33:22.0605 8036 Mup - ok
20:33:22.0714 8036 [ B9F4CCBEAA103167400474E9514F124F ] MyWiFiDHCPDNS C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
20:33:22.0730 8036 MyWiFiDHCPDNS - ok
20:33:22.0761 8036 [ 61D57A5D7C6D9AFE10E77DAE6E1B445E ] napagent C:\Windows\system32\qagentRT.dll
20:33:22.0792 8036 napagent - ok
20:33:22.0823 8036 [ 26384429FCD85D83746F63E798AB1480 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
20:33:22.0839 8036 NativeWifiP - ok
20:33:22.0917 8036 [ 5836B9E91863A00EC1B8E785EFD86ECB ] NBService C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
20:33:22.0948 8036 NBService - ok
20:33:22.0995 8036 [ 8C9C922D71F1CD4DEF73F186416B7896 ] NDIS C:\Windows\system32\drivers\ndis.sys
20:33:23.0026 8036 NDIS - ok
20:33:23.0057 8036 [ 0E1787AA6C9191D3D319E8BAFE86F80C ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
20:33:23.0057 8036 NdisCap - ok
20:33:23.0088 8036 [ E4A8AEC125A2E43A9E32AFEEA7C9C888 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
20:33:23.0104 8036 NdisTapi - ok
20:33:23.0135 8036 [ D8A65DAFB3EB41CBB622745676FCD072 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
20:33:23.0135 8036 Ndisuio - ok
20:33:23.0182 8036 [ 38FBE267E7E6983311179230FACB1017 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
20:33:23.0182 8036 NdisWan - ok
20:33:23.0213 8036 [ A4BDC541E69674FBFF1A8FF00BE913F2 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
20:33:23.0229 8036 NDProxy - ok
20:33:23.0244 8036 [ 80B275B1CE3B0E79909DB7B39AF74D51 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
20:33:23.0260 8036 NetBIOS - ok
20:33:23.0291 8036 [ 280122DDCF04B378EDD1AD54D71C1E54 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
20:33:23.0307 8036 NetBT - ok
20:33:23.0322 8036 [ 81951F51E318AECC2D68559E47485CC4 ] Netlogon C:\Windows\system32\lsass.exe
20:33:23.0322 8036 Netlogon - ok
20:33:23.0385 8036 [ 7CCCFCA7510684768DA22092D1FA4DB2 ] Netman C:\Windows\System32\netman.dll
20:33:23.0400 8036 Netman - ok
20:33:23.0416 8036 [ 8C338238C16777A802D6A9211EB2BA50 ] netprofm C:\Windows\System32\netprofm.dll
20:33:23.0447 8036 netprofm - ok
20:33:23.0463 8036 [ F476EC40033CDB91EFBE73EB99B8362D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
20:33:23.0478 8036 NetTcpPortSharing - ok
20:33:23.0697 8036 [ 3577B851E59DA59E6D65419A057C9914 ] NETw5s32 C:\Windows\system32\DRIVERS\NETw5s32.sys
20:33:23.0900 8036 NETw5s32 - ok
20:33:24.0009 8036 [ 58218EC6B61B1169CF54AAB0D00F5FE2 ] netw5v32 C:\Windows\system32\DRIVERS\netw5v32.sys
20:33:24.0102 8036 netw5v32 - ok
20:33:24.0149 8036 [ 1D85C4B390B0EE09C7A46B91EFB2C097 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys
20:33:24.0149 8036 nfrd960 - ok
20:33:24.0180 8036 [ 912084381D30D8B89EC4E293053F4710 ] NlaSvc C:\Windows\System32\nlasvc.dll
20:33:24.0196 8036 NlaSvc - ok
20:33:24.0243 8036 [ A328A46D87BB92CE4D8A4528E9D84787 ] NMIndexingService C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
20:33:24.0274 8036 NMIndexingService - ok
20:33:24.0290 8036 [ 1DB262A9F8C087E8153D89BEF3D2235F ] Npfs C:\Windows\system32\drivers\Npfs.sys
20:33:24.0305 8036 Npfs - ok
20:33:24.0321 8036 [ BA387E955E890C8A88306D9B8D06BF17 ] nsi C:\Windows\system32\nsisvc.dll
20:33:24.0336 8036 nsi - ok
20:33:24.0352 8036 [ E9A0A4D07E53D8FEA2BB8387A3293C58 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
20:33:24.0352 8036 nsiproxy - ok
20:33:24.0414 8036 [ 81189C3D7763838E55C397759D49007A ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
20:33:24.0508 8036 Ntfs - ok
20:33:24.0524 8036 [ F9756A98D69098DCA8945D62858A812C ] Null C:\Windows\system32\drivers\Null.sys
20:33:24.0524 8036 Null - ok
20:33:24.0555 8036 [ B3E25EE28883877076E0E1FF877D02E0 ] nvraid C:\Windows\system32\drivers\nvraid.sys
20:33:24.0570 8036 nvraid - ok
20:33:24.0602 8036 [ 4380E59A170D88C4F1022EFF6719A8A4 ] nvstor C:\Windows\system32\drivers\nvstor.sys
20:33:24.0602 8036 nvstor - ok
20:33:24.0617 8036 [ 5A0983915F02BAE73267CC2A041F717D ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
20:33:24.0633 8036 nv_agp - ok

zdenka.zv
nováček
Příspěvky: 38
Registrován: září 12
Pohlaví: Žena
Stav:
Offline

Re: Moc prosím o kontrolu

Příspěvekod zdenka.zv » 24 zář 2012 20:46

..
Naposledy upravil(a) zdenka.zv dne 24 zář 2012 23:50, celkem upraveno 1 x.

zdenka.zv
nováček
Příspěvky: 38
Registrován: září 12
Pohlaví: Žena
Stav:
Offline

Re: Moc prosím o kontrolu

Příspěvekod zdenka.zv » 24 zář 2012 20:46

..
Naposledy upravil(a) zdenka.zv dne 24 zář 2012 23:50, celkem upraveno 2 x.


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 32 hostů