Zdravím.
Prosím o kontrolu logu. NB je výrazne spomalený pri štarte a asi tam bude aj nejaká háveť.
Vopred vďaka za Váš čas.
Logfile of random's system information tool 1.09 (written by random/random)
Run by Spravca at 2012-10-06 18:39:02
Microsoft® Windows Vista™ Home Premium Service Pack 2
System drive C: has 52 GB (48%) free of 109 GB
Total RAM: 1021 MB (29% free)
HijackThis download failed
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\Wise Care 365.job
=========Mozilla firefox=========
ProfilePath - C:\Users\Spravca\AppData\Roaming\Mozilla\Firefox\Profiles\rccop2ac.default
prefs.js - "browser.startup.homepage" - "http://search.conduit.com/?ctid=CT2790392&SearchSource=13"
prefs.js - "extensions.enabledItems" - "{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}:6.0.13, {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}:6.0.17, {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21, {20a82645-c095-46ed-80e3-08825760534b}:1.1, {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}:6.0.26, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.18"
prefs.js - "keyword.URL" - "http://search.conduit.com/ResultsExt.aspx?ctid=CT2790392&q="
"{20a82645-c095-46ed-80e3-08825760534b}"=c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.4.402.278 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_11_4_402_278.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=]
"Description"=iTunes Detector Plug-in
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=1.0]
"Description"=
"Path"=C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
C:\Program Files\Mozilla Firefox\extensions\
{800b5000-a755-47e1-992b-48a1c1357f07}
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
{972ce4c6-7e08-4474-a285-3208198ce6fd}
C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
C:\Program Files\Mozilla Firefox\plugins\
install.js
np-mswmp.dll
npdeployJava1.dll
NPOFFICE.DLL
nppdf32.dll
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt
C:\Program Files\Mozilla Firefox\searchplugins\
atlas-sk.xml
azet-sk.xml
babylon.xml
dunaj-sk.xml
eBay.xml
fcmdSrch.xml
google.xml
slovnik-sk.xml
wikipedia-sk.xml
zoznam-sk.xml
C:\Users\Spravca\AppData\Roaming\Mozilla\Firefox\Profiles\rccop2ac.default\extensions\
{88c7f2aa-f93f-432c-8f0e-b7d85967a527}
C:\Users\Spravca\AppData\Roaming\Mozilla\Firefox\Profiles\rccop2ac.default\searchplugins\
conduit.xml
daemon-search.xml
icqplugin-1.xml
icqplugin-2.xml
icqplugin.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Adobe PDF Reader Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre6\bin\ssv.dll [2012-03-30 325408]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2012-01-17 3855520]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2012-03-30 42272]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}]
Yontoo Layers - C:\Program Files\Yontoo Layers Runtime\YontooIEClient.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll [2009-11-24 953800]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-19 1008184]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2008-03-28 1045800]
"HP Software Update"=C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [2005-02-17 49152]
"QPService"=C:\Program Files\HP\QuickPlay\QPService.exe [2007-01-15 172032]
"QlbCtrl"=C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [2006-11-06 159744]
"HP Health Check Scheduler"=C:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe [2006-12-04 46704]
"hpWirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [2007-01-10 472776]
"WAWifiMessage"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe [2007-01-10 317128]
"NeroFilterCheck"=C:\Windows\system32\NeroCheck.exe [2001-07-09 155648]
"AppleSyncNotifier"=C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe [2008-07-22 116040]
"iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2008-07-30 289064]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-10-15 39792]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2010-02-26 2140880]
"NvCplDaemon"=C:\Windows\system32\NvCpl.dll [2009-06-24 13601312]
"NvMediaCenter"=C:\Windows\system32\NvMcTray.dll [2009-06-24 92704]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-01-18 254696]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Launcher"=C:\Windows\SMINST\launcher.exe [2006-11-07 44128]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ehTray.exe"=C:\Windows\ehome\ehTray.exe [2008-01-19 125952]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\daemon.exe [2008-12-29 687560]
"Sidebar"=C:\Program Files\windows sidebar\sidebar.exe [2009-04-11 1233920]
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-19 202240]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2012-07-13 17418928]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Corel Graphics Suite 1117]
C:\Program Files\Corel\Corel Graphics 11\Register\registration.exe /title=Corel Graphics Suite 11 /date=110508 serial=DR11CRD-0012082-DGW []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ICQ]
C:\Program Files\ICQ6\ICQ.exe silent []
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
IO Control.lnk - C:\Windows\Installer\{6F059EF3-4B0C-4566-8061-2FB4FF079D77}\NewShortcut39_1D40F960EB3A46E085A5B4E3B23AE340.exe
McAfee Security Scan Plus.lnk - C:\Program Files\McAfee Security Scan\2.0.181\SSScheduler.exe
PDFCreator.lnk - C:\Program Files\PDFCreator\PDFCreator.exe
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=221
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"VIDC.DIVX"=DivX.dll
"VIDC.XVID"=xvidvfw.dll
"vidc.yv12"=yv12vfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.divxa32"=divxa32.acm
"VIDC.wmv3"=wmv9vcm.dll
"VIDC.FFDS"=ff_vfw.dll
"msacm.l3codecp"=
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit -
.js - open -
======List of files/folders created in the last 1 month======
2012-10-06 14:20:34 ----D---- C:\rsit
2012-10-06 14:20:34 ----D---- C:\Program Files\trend micro
2012-10-06 09:08:56 ----D---- C:\Users\Spravca\AppData\Roaming\Wise Care 365
2012-10-06 09:08:31 ----D---- C:\Program Files\Defraggler
2012-10-06 09:07:33 ----D---- C:\Program Files\Wise
2012-09-24 11:02:42 ----A---- C:\Windows\system32\vbscript.dll
2012-09-24 11:02:42 ----A---- C:\Windows\system32\mshtmled.dll
2012-09-24 11:02:41 ----A---- C:\Windows\system32\ieui.dll
2012-09-24 11:02:40 ----A---- C:\Windows\system32\jsproxy.dll
2012-09-24 11:02:40 ----A---- C:\Windows\system32\ieUnatt.exe
2012-09-24 11:02:39 ----A---- C:\Windows\system32\msfeeds.dll
2012-09-24 11:02:38 ----A---- C:\Windows\system32\wininet.dll
2012-09-24 11:02:38 ----A---- C:\Windows\system32\jscript.dll
2012-09-24 11:02:37 ----A---- C:\Windows\system32\url.dll
2012-09-24 11:02:37 ----A---- C:\Windows\system32\jscript9.dll
2012-09-24 11:02:35 ----A---- C:\Windows\system32\iertutil.dll
2012-09-24 11:02:33 ----A---- C:\Windows\system32\urlmon.dll
2012-09-24 11:02:10 ----A---- C:\Windows\system32\ieframe.dll
2012-09-24 11:02:09 ----A---- C:\Windows\system32\mshtml.dll
======List of files/folders modified in the last 1 month======
2012-10-06 18:38:57 ----D---- C:\Windows\Temp
2012-10-06 15:52:58 ----D---- C:\Users\Spravca\AppData\Roaming\Skype
2012-10-06 14:20:34 ----RD---- C:\Program Files
2012-10-06 09:46:20 ----D---- C:\Windows
2012-10-06 09:43:32 ----D---- C:\Windows\Debug
2012-10-06 09:32:37 ----D---- C:\Windows\system32\catroot2
2012-10-06 09:32:30 ----SHD---- C:\System Volume Information
2012-10-06 09:30:55 ----SD---- C:\Windows\Downloaded Program Files
2012-10-06 09:30:55 ----D---- C:\Windows\panther
2012-10-06 09:30:55 ----D---- C:\Windows\inf
2012-10-06 09:23:08 ----D---- C:\Windows\Prefetch
2012-10-06 09:09:33 ----D---- C:\Windows\system32\Tasks
2012-10-06 09:09:32 ----D---- C:\Windows\Tasks
2012-10-06 09:09:17 ----D---- C:\Windows\System32
2012-10-06 09:09:17 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-09-24 11:19:18 ----D---- C:\Windows\system32\migration
2012-09-24 11:19:13 ----D---- C:\Program Files\Internet Explorer
2012-09-24 11:04:35 ----D---- C:\Windows\winsxs
2012-09-24 11:04:10 ----D---- C:\Windows\system32\catroot
2012-09-21 11:47:28 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2012-09-18 07:08:09 ----D---- C:\Program Files\Mozilla Maintenance Service
2012-09-17 11:04:17 ----A---- C:\Windows\system32\mrt.exe
2012-09-17 08:42:20 ----D---- C:\Program Files\Mozilla Firefox
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2009-12-06 717296]
R1 eabfiltr;eabfiltr; C:\Windows\system32\DRIVERS\eabfiltr.sys [2006-06-28 8192]
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys [2007-04-10 389432]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2010-02-26 114984]
R2 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2010-02-26 133512]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2010-02-26 96896]
R2 mdmxsdk;mdmxsdk; C:\Windows\system32\DRIVERS\mdmxsdk.sys [2006-06-19 12672]
R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2006-11-16 32256]
R2 rimsptsk;rimsptsk; C:\Windows\system32\DRIVERS\rimsptsk.sys [2006-11-16 43520]
R2 rismxdp;Ricoh xD-Picture Card Driver; C:\Windows\system32\DRIVERS\rixdptsk.sys [2006-11-16 37376]
R2 XAudio;XAudio; C:\Windows\system32\DRIVERS\xaudio.sys [2007-07-10 8704]
R3 BCM43XX;Ovladač síťového adaptéru Broadcom 802.11; C:\Windows\system32\DRIVERS\bcmwl6.sys [2007-01-03 534016]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDRT32.sys [2008-03-03 182272]
R3 e1express;Intel(R) PRO/1000 PCI Express Network Connection Driver; C:\Windows\system32\DRIVERS\e1e6032.sys [2008-01-19 220672]
R3 GEARAspiWDM;GEARAspiWDM; C:\Windows\System32\Drivers\GEARAspiWDM.sys [2008-01-29 16168]
R3 HBtnKey;HBtnKey; C:\Windows\system32\DRIVERS\cpqbttn.sys [2006-06-28 9472]
R3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\HSX_DPV.sys [2007-06-20 984064]
R3 HSXHWAZL;HSXHWAZL; C:\Windows\system32\DRIVERS\HSXHWAZL.sys [2007-06-20 208896]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2009-06-24 7542208]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2009-04-11 89088]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2008-03-28 199472]
R3 usbvideo;Zobrazovací zařízení USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-19 134016]
R3 winachsf;winachsf; C:\Windows\system32\DRIVERS\HSX_CNXT.sys [2007-06-20 660480]
S3 ap1q4z1h;ap1q4z1h; C:\Windows\system32\drivers\ap1q4z1h.sys []
S3 BCM43XV;Broadcom Extensible 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl6.sys [2007-01-03 534016]
S3 drmkaud;Dekodér zvuků DRM jádra společnosti Microsoft; C:\Windows\system32\drivers\drmkaud.sys [2008-01-19 5632]
S3 E100B;Intel(R) PRO Adapter Driver; C:\Windows\system32\DRIVERS\e100b325.sys [2006-11-02 163328]
S3 HdAudAddService;Microsoft UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDART.sys [2006-12-12 148992]
S3 HSFHWAZL;HSFHWAZL; C:\Windows\system32\DRIVERS\VSTAZL3.SYS [2006-11-02 200704]
S3 ialm;ialm; C:\Windows\system32\DRIVERS\igdkmd32.sys [2006-10-19 1380864]
S3 libusb0;libusb-win32 - Kernel Driver 10/02/2010 1.2.2.0; C:\Windows\system32\DRIVERS\libusb0.sys [2011-03-07 35392]
S3 MSKSSRV;Server proxy služby datových proudů Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-19 8192]
S3 MSPCLOCK;Server proxy hodin datových proudů Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-19 5888]
S3 MSPQM;Server proxy správce kvality datových proudů Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-01-19 5504]
S3 MSTEE;Konvertor jímka-jímka typu T datových proudů Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-01-19 6016]
S3 NETw3v32;Ovladač adaptéru Intel(R) PRO/Wireless 3945ABG pro Windows Vista 32 Bit; C:\Windows\system32\DRIVERS\NETw3v32.sys [2006-11-09 1786880]
S3 NuidFltr;NUID filter driver; C:\Windows\system32\DRIVERS\NuidFltr.sys [2007-01-15 9728]
S3 SANDRA;SANDRA; \??\C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2011.SP4\WNt500x86\Sandra.sys []
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448]
S3 WSDPrintDevice;Podpora tisku WSD prostřednictvím funkce UMB; C:\Windows\system32\DRIVERS\WSDPrint.sys [2008-01-19 16896]
S3 WSDScan;Podpora skenování WSD přes UMB; C:\Windows\system32\DRIVERS\WSDScan.sys [2009-04-11 19968]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-19 83328]
S4 UIUSys;Conexant Setup API; C:\Windows\system32\DRIVERS\UIUSYS.SYS []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AgilentIOLibrariesService;Agilent IO Libraries Service; C:\Program Files\Agilent\IO Libraries Suite\AgilentIOLibrariesService.exe [2009-10-09 51712]
R2 AgtMdnsResponder;Agilent mDNS Responder Service; C:\Program Files\Agilent\IO Libraries Suite\LxiMdnsResponder.exe [2009-07-14 330240]
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2008-07-22 116040]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2007-07-24 229376]
R2 CLCapSvc;CyberLink Background Capture Service (CBCS); C:\Program Files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe [2007-01-15 270431]
R2 CLSched;CyberLink Task Scheduler (CTS); C:\Program Files\HP\QuickPlay\Kernel\TV\CLSched.exe [2007-01-15 118877]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2010-02-26 810120]
R2 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R2 HP Health Check Service;HP Health Check Service; C:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe [2006-12-04 58984]
R2 hpqwmiex;hpqwmiex; C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe [2006-05-02 135168]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2006-12-14 61440]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-19 322120]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2008-01-19 21504]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2009-06-24 203296]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2008-01-19 21504]
R2 XAudioService;XAudioService; C:\Windows\system32\DRIVERS\xaudio.exe [2007-07-10 386560]
R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2008-07-30 532264]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 CLTNetCnService;Symantec Lic NetConnect service; c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe /h ccCommon []
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2012-07-13 160944]
S2 WiseBootAssistant;Wise Boot Assistant; C:\Program Files\Wise\Wise Care 365\BootTime.exe [2012-07-17 580648]
S3 AddFiltr;AddFiltr; C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\AddFiltr.exe [2006-06-26 126976]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-09-21 250288]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe [2010-02-26 33560]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Roxio\Roxio MyDVD Basic v9\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 McComponentHostService;McAfee Security Scan Component Host Service; C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe [2010-01-15 227232]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2012-09-17 114144]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 stllssvr;stllssvr; C:\Program Files\Common Files\SureThing Shared\stllssvr.exe []
S3 WPFFontCache_v0400;@c:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100; C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
-----------------EOF-----------------
spomalený NB, prosím o pomoc Vyřešeno
- Žbeky
- Moderátor
-
Guru Level 13
- Příspěvky: 22288
- Registrován: květen 08
- Bydliště: Vsetín - Pardubice
- Pohlaví:
- Stav:
Offline
Re: spomalený NB, prosím o pomoc
Stáhni si normálně HJT, RSITu se to nepovedlo
V SZ řeším jen záležitosti týkající se fóra. Na prosby a žádosti o technickou podporu nereaguji. Díky za pochopení.
HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra
HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra
Re: spomalený NB, prosím o pomoc
pripájam log z HJT
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 9:28:12 AM, on 10/7/2012
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v9.00 (9.00.8112.16450)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\Wise\Wise Care 365\WiseTray.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Hp\HP Software Update\hpwuSchd2.exe
C:\Program Files\Hp\QuickPlay\QPService.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\DAEMON Tools Lite\daemon.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Agilent\IO Libraries Suite\bin\iprocsvr.exe
C:\Program Files\McAfee Security Scan\2.0.181\SSScheduler.exe
C:\Program Files\Agilent\IO Libraries Suite\bin\iproc8491.exe
C:\Program Files\PDFCreator\PDFCreator.exe
C:\PROGRA~1\HEWLET~1\Shared\HPQTOA~1.EXE
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\trend micro\HiJackThis\HiJackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.babylon.com/?AF=108921&ba ... 1a733de6e0
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://start.facemoods.com/?a=gppc&s={searchTerms}&f=4
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
R3 - URLSearchHook: (no name) - {88c7f2aa-f93f-432c-8f0e-b7d85967a527} - (no file)
O1 - Hosts: ::1 localhost
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Yontoo Layers - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - C:\Program Files\Yontoo Layers Runtime\YontooIEClient.dll (file missing)
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [QPService] "C:\Program Files\HP\QuickPlay\QPService.exe"
O4 - HKLM\..\Run: [QlbCtrl] %ProgramFiles%\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [HP Health Check Scheduler] C:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
O4 - HKLM\..\Run: [hpWirelessAssistant] %ProgramFiles%\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [WAWifiMessage] %ProgramFiles%\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Windows\system32\NeroCheck.exe
O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\RunOnce: [Launcher] %WINDIR%\SMINST\launcher.exe
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\windows sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Global Startup: IO Control.lnk = ?
O4 - Global Startup: McAfee Security Scan Plus.lnk = ?
O4 - Global Startup: PDFCreator.lnk = C:\Program Files\PDFCreator\PDFCreator.exe
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Zdroje informácií - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe (file missing)
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe (file missing)
O10 - Unknown file in Winsock LSP: c:\program files\agilent\io libraries suite\lximdnsnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CCS\Services\Tcpip\..\{41E35E7A-60E3-41F6-A396-3BA5B02BC1BF}: Domain = savzv.sk
O17 - HKLM\System\CCS\Services\Tcpip\..\{41E35E7A-60E3-41F6-A396-3BA5B02BC1BF}: NameServer = 147.213.240.2
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: AddFiltr - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\AddFiltr.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Agilent IO Libraries Service (AgilentIOLibrariesService) - Agilent - C:\Program Files\Agilent\IO Libraries Suite\AgilentIOLibrariesService.exe
O23 - Service: Agilent mDNS Responder Service (AgtMdnsResponder) - Agilent - C:\Program Files\Agilent\IO Libraries Suite\LxiMdnsResponder.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\CLSched.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - C:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Roxio\Roxio MyDVD Basic v9\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: stllssvr - Unknown owner - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe (file missing)
O23 - Service: Wise Boot Assistant (WiseBootAssistant) - WiseCleaner.com - C:\Program Files\Wise\Wise Care 365\BootTime.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
--
End of file - 10750 bytes
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 9:28:12 AM, on 10/7/2012
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v9.00 (9.00.8112.16450)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\Wise\Wise Care 365\WiseTray.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Hp\HP Software Update\hpwuSchd2.exe
C:\Program Files\Hp\QuickPlay\QPService.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\DAEMON Tools Lite\daemon.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Agilent\IO Libraries Suite\bin\iprocsvr.exe
C:\Program Files\McAfee Security Scan\2.0.181\SSScheduler.exe
C:\Program Files\Agilent\IO Libraries Suite\bin\iproc8491.exe
C:\Program Files\PDFCreator\PDFCreator.exe
C:\PROGRA~1\HEWLET~1\Shared\HPQTOA~1.EXE
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\trend micro\HiJackThis\HiJackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.babylon.com/?AF=108921&ba ... 1a733de6e0
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://start.facemoods.com/?a=gppc&s={searchTerms}&f=4
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
R3 - URLSearchHook: (no name) - {88c7f2aa-f93f-432c-8f0e-b7d85967a527} - (no file)
O1 - Hosts: ::1 localhost
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Yontoo Layers - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - C:\Program Files\Yontoo Layers Runtime\YontooIEClient.dll (file missing)
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [QPService] "C:\Program Files\HP\QuickPlay\QPService.exe"
O4 - HKLM\..\Run: [QlbCtrl] %ProgramFiles%\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [HP Health Check Scheduler] C:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
O4 - HKLM\..\Run: [hpWirelessAssistant] %ProgramFiles%\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [WAWifiMessage] %ProgramFiles%\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Windows\system32\NeroCheck.exe
O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\RunOnce: [Launcher] %WINDIR%\SMINST\launcher.exe
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\windows sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Global Startup: IO Control.lnk = ?
O4 - Global Startup: McAfee Security Scan Plus.lnk = ?
O4 - Global Startup: PDFCreator.lnk = C:\Program Files\PDFCreator\PDFCreator.exe
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Zdroje informácií - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe (file missing)
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe (file missing)
O10 - Unknown file in Winsock LSP: c:\program files\agilent\io libraries suite\lximdnsnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CCS\Services\Tcpip\..\{41E35E7A-60E3-41F6-A396-3BA5B02BC1BF}: Domain = savzv.sk
O17 - HKLM\System\CCS\Services\Tcpip\..\{41E35E7A-60E3-41F6-A396-3BA5B02BC1BF}: NameServer = 147.213.240.2
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: AddFiltr - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\AddFiltr.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Agilent IO Libraries Service (AgilentIOLibrariesService) - Agilent - C:\Program Files\Agilent\IO Libraries Suite\AgilentIOLibrariesService.exe
O23 - Service: Agilent mDNS Responder Service (AgtMdnsResponder) - Agilent - C:\Program Files\Agilent\IO Libraries Suite\LxiMdnsResponder.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\CLSched.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - C:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Roxio\Roxio MyDVD Basic v9\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: stllssvr - Unknown owner - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe (file missing)
O23 - Service: Wise Boot Assistant (WiseBootAssistant) - WiseCleaner.com - C:\Program Files\Wise\Wise Care 365\BootTime.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
--
End of file - 10750 bytes
- Orcus
- člen Security týmu
-
Elite Level 10.5
- Příspěvky: 10645
- Registrován: duben 10
- Bydliště: Okolo rostou 3 růže =o)
- Pohlaví:
- Stav:
Offline
Re: spomalený NB, prosím o pomoc
Odinstaluj:
DAEMON Tools Toolbar
Bittorent Toolbar
McAfee Security Scan Plus
Fixni:
Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected. Poté klikni na Main (hlavní stránku ) a klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.
===================================================
Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Provést rychlý sken a klikni na tlačítko Skenovat
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Zobrazit výsledky
- pak zvol možnost uložit log a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.
DAEMON Tools Toolbar
Bittorent Toolbar
McAfee Security Scan Plus
Fixni:
Kód: Vybrat vše
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.babylon.com/?AF=108921&ba ... 1a733de6e0
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://start.facemoods.com/?a=gppc&s={searchTerms}&f=4
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
R3 - URLSearchHook: (no name) - {88c7f2aa-f93f-432c-8f0e-b7d85967a527} - (no file)
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - Global Startup: McAfee Security Scan Plus.lnk = ?
Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected. Poté klikni na Main (hlavní stránku ) a klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.
===================================================
Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Provést rychlý sken a klikni na tlačítko Skenovat
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Zobrazit výsledky
- pak zvol možnost uložit log a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.
Láska hřeje, ale uhlí je uhlí.
Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.
Pár rad k bezpečnosti PC.
Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix
Pokud budete spokojeni , můžete podpořit naše fórum.

Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.
Pár rad k bezpečnosti PC.
Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix
Pokud budete spokojeni , můžete podpořit naše fórum.
Re: spomalený NB, prosím o pomoc
pripájam log z MAM
Malwarebytes Anti-Malware 1.65.0.1400
www.malwarebytes.org
Verze databáze: v2012.10.07.03
Windows Vista Service Pack 2 x86 NTFS
Internet Explorer 9.0.8112.16421
Spravca :: JANKUVOVA [administrátor]
10/7/2012 3:09:27 PM
mbam-log-2012-10-07 (15-19-11).txt
Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 195975
Uplynulý čas: 9 minut, 22 sekund
Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené soubory: 1
C:\Users\Spravca\AppData\Roaming\PowerHouse\Migo\LangRes_KOR.dll (Trojan.Dropper) -> Žádná instrukce nebyla provedena.
(konec)
Malwarebytes Anti-Malware 1.65.0.1400
www.malwarebytes.org
Verze databáze: v2012.10.07.03
Windows Vista Service Pack 2 x86 NTFS
Internet Explorer 9.0.8112.16421
Spravca :: JANKUVOVA [administrátor]
10/7/2012 3:09:27 PM
mbam-log-2012-10-07 (15-19-11).txt
Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 195975
Uplynulý čas: 9 minut, 22 sekund
Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené soubory: 1
C:\Users\Spravca\AppData\Roaming\PowerHouse\Migo\LangRes_KOR.dll (Trojan.Dropper) -> Žádná instrukce nebyla provedena.
(konec)
- memphisto
- Guru Level 13
- Příspěvky: 21113
- Registrován: září 06
- Bydliště: Zlín - České Budějovice
- Pohlaví:
- Stav:
Offline
Re: spomalený NB, prosím o pomoc
- Takže spus znovu MbAM a dej Scan
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Show Results
- ujistit se že máš zatrhnuté všechny vypsané nálezy a klikni na tlačítko Remove Selected
- když skončí odstraňování tak se ti zobrazí log, tak ho sem dej.
- pak zvol v programu OK a pak program ukonči přes Exit
Stáhni si TDSSKiller
Na svojí plochu. Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller.2.2.7.1._(datum)_log.txt , vlož sem prosím celý obsah logu.
Vypni rezidentní štít antiviru a antispywaru
Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud bude po kontrole problém spustit aplikace nebo bude vyskakovat hláška o pokusu použít neplatnou operaci na klíč registru, který je oznaèen pro odstranění, stačí restartovat počítač.
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Show Results
- ujistit se že máš zatrhnuté všechny vypsané nálezy a klikni na tlačítko Remove Selected
- když skončí odstraňování tak se ti zobrazí log, tak ho sem dej.
- pak zvol v programu OK a pak program ukonči přes Exit
Stáhni si TDSSKiller
Na svojí plochu. Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller.2.2.7.1._(datum)_log.txt , vlož sem prosím celý obsah logu.
Vypni rezidentní štít antiviru a antispywaru
Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud bude po kontrole problém spustit aplikace nebo bude vyskakovat hláška o pokusu použít neplatnou operaci na klíč registru, který je oznaèen pro odstranění, stačí restartovat počítač.
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji
Re: spomalený NB, prosím o pomoc
Malwarebytes Anti-Malware 1.65.0.1400
www.malwarebytes.org
Verze databáze: v2012.10.07.03
Windows Vista Service Pack 2 x86 NTFS
Internet Explorer 9.0.8112.16421
Spravca :: JANKUVOVA [administrátor]
10/7/2012 3:41:20 PM
mbam-log-2012-10-07 (15-41-20).txt
Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 196003
Uplynulý čas: 13 minut, 9 sekund
Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené soubory: 0
(Žádné škodlivé položky nebyly zjištěny)
(konec)
www.malwarebytes.org
Verze databáze: v2012.10.07.03
Windows Vista Service Pack 2 x86 NTFS
Internet Explorer 9.0.8112.16421
Spravca :: JANKUVOVA [administrátor]
10/7/2012 3:41:20 PM
mbam-log-2012-10-07 (15-41-20).txt
Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 196003
Uplynulý čas: 13 minut, 9 sekund
Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené soubory: 0
(Žádné škodlivé položky nebyly zjištěny)
(konec)
Re: spomalený NB, prosím o pomoc
15:55:25.0115 5952 TDSS rootkit removing tool 2.8.10.0 Sep 17 2012 19:23:24
15:55:25.0491 5952 ============================================================
15:55:25.0491 5952 Current date / time: 2012/10/07 15:55:25.0491
15:55:25.0491 5952 SystemInfo:
15:55:25.0491 5952
15:55:25.0491 5952 OS Version: 6.0.6002 ServicePack: 2.0
15:55:25.0491 5952 Product type: Workstation
15:55:25.0491 5952 ComputerName: JANKUVOVA
15:55:25.0492 5952 UserName: Spravca
15:55:25.0492 5952 Windows directory: C:\Windows
15:55:25.0492 5952 System windows directory: C:\Windows
15:55:25.0492 5952 Processor architecture: Intel x86
15:55:25.0492 5952 Number of processors: 2
15:55:25.0492 5952 Page size: 0x1000
15:55:25.0492 5952 Boot type: Normal boot
15:55:25.0492 5952 ============================================================
15:55:28.0048 5952 Drive \Device\Harddisk0\DR0 - Size: 0x1BF2976000 (111.79 Gb), SectorSize: 0x200, Cylinders: 0x3901, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
15:55:28.0060 5952 ============================================================
15:55:28.0060 5952 \Device\Harddisk0\DR0:
15:55:28.0061 5952 MBR partitions:
15:55:28.0061 5952 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0xD4B6AFD
15:55:28.0061 5952 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0xD4B6B3C, BlocksNum 0xADCC85
15:55:28.0061 5952 ============================================================
15:55:28.0080 5952 C: <-> \Device\Harddisk0\DR0\Partition1
15:55:28.0180 5952 D: <-> \Device\Harddisk0\DR0\Partition2
15:55:28.0226 5952 ============================================================
15:55:28.0227 5952 Initialize success
15:55:28.0227 5952 ============================================================
15:55:42.0483 2944 ============================================================
15:55:42.0483 2944 Scan started
15:55:42.0483 2944 Mode: Manual;
15:55:42.0483 2944 ============================================================
15:55:45.0779 2944 ================ Scan system memory ========================
15:55:45.0779 2944 System memory - ok
15:55:45.0780 2944 ================ Scan services =============================
15:55:46.0150 2944 [ 82B296AE1892FE3DBEE00C9CF92F8AC7 ] ACPI C:\Windows\system32\drivers\acpi.sys
15:55:46.0157 2944 ACPI - ok
15:55:46.0260 2944 [ E6D2486EC85A36B8336ED456D0317D96 ] AddFiltr C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\AddFiltr.exe
15:55:46.0264 2944 AddFiltr - ok
15:55:46.0322 2944 [ E12CFCF1DDBFC50948A75E6E38793225 ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
15:55:46.0329 2944 AdobeFlashPlayerUpdateSvc - ok
15:55:46.0410 2944 [ 2EDC5BBAC6C651ECE337BDE8ED97C9FB ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
15:55:46.0497 2944 adp94xx - ok
15:55:46.0621 2944 [ B84088CA3CDCA97DA44A984C6CE1CCAD ] adpahci C:\Windows\system32\drivers\adpahci.sys
15:55:46.0703 2944 adpahci - ok
15:55:46.0768 2944 [ 7880C67BCCC27C86FD05AA2AFB5EA469 ] adpu160m C:\Windows\system32\drivers\adpu160m.sys
15:55:46.0803 2944 adpu160m - ok
15:55:46.0836 2944 [ 9AE713F8E30EFC2ABCCD84904333DF4D ] adpu320 C:\Windows\system32\drivers\adpu320.sys
15:55:46.0902 2944 adpu320 - ok
15:55:46.0965 2944 [ 9D1FDA9E086BA64E3C93C9DE32461BCF ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
15:55:46.0967 2944 AeLookupSvc - ok
15:55:47.0017 2944 [ 3911B972B55FEA0478476B2E777B29FA ] AFD C:\Windows\system32\drivers\afd.sys
15:55:47.0038 2944 AFD - ok
15:55:47.0148 2944 [ 312BBB93249BC8F3EB7847072048715D ] AgilentIOLibrariesService C:\Program Files\Agilent\IO Libraries Suite\AgilentIOLibrariesService.exe
15:55:47.0155 2944 AgilentIOLibrariesService - ok
15:55:47.0220 2944 [ EF23439CDD587F64C2C1B8825CEAD7D8 ] agp440 C:\Windows\system32\drivers\agp440.sys
15:55:47.0223 2944 agp440 - ok
15:55:47.0277 2944 [ 6EAE35C9B695D8B5376F968438BA0D31 ] AgtMdnsResponder C:\Program Files\Agilent\IO Libraries Suite\LxiMdnsResponder.exe
15:55:47.0306 2944 AgtMdnsResponder - ok
15:55:47.0357 2944 [ AE1FDF7BF7BB6C6A70F67699D880592A ] aic78xx C:\Windows\system32\drivers\djsvs.sys
15:55:47.0385 2944 aic78xx - ok
15:55:47.0435 2944 [ A1545B731579895D8CC44FC0481C1192 ] ALG C:\Windows\System32\alg.exe
15:55:47.0455 2944 ALG - ok
15:55:47.0478 2944 [ 90395B64600EBB4552E26E178C94B2E4 ] aliide C:\Windows\system32\drivers\aliide.sys
15:55:47.0511 2944 aliide - ok
15:55:47.0550 2944 [ 2B13E304C9DFDFA5EB582F6A149FA2C7 ] amdagp C:\Windows\system32\drivers\amdagp.sys
15:55:47.0641 2944 amdagp - ok
15:55:47.0680 2944 [ 0577DF1D323FE75A739C787893D300EA ] amdide C:\Windows\system32\drivers\amdide.sys
15:55:47.0716 2944 amdide - ok
15:55:47.0749 2944 [ DC487885BCEF9F28EECE6FAC0E5DDFC5 ] AmdK7 C:\Windows\system32\drivers\amdk7.sys
15:55:47.0809 2944 AmdK7 - ok
15:55:47.0826 2944 [ 0CA0071DA4315B00FC1328CA86B425DA ] AmdK8 C:\Windows\system32\drivers\amdk8.sys
15:55:47.0829 2944 AmdK8 - ok
15:55:47.0888 2944 [ C6D704C7F0434DC791AAC37CAC4B6E14 ] Appinfo C:\Windows\System32\appinfo.dll
15:55:47.0890 2944 Appinfo - ok
15:55:48.0029 2944 [ 2BDA4A9480B550FCCA6D29C22CA54C0D ] Apple Mobile Device C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
15:55:48.0031 2944 Apple Mobile Device - ok
15:55:48.0082 2944 [ 5F673180268BB1FDB69C99B6619FE379 ] arc C:\Windows\system32\drivers\arc.sys
15:55:48.0143 2944 arc - ok
15:55:48.0205 2944 [ 957F7540B5E7F602E44648C7DE5A1C05 ] arcsas C:\Windows\system32\drivers\arcsas.sys
15:55:48.0267 2944 arcsas - ok
15:55:48.0332 2944 [ 53B202ABEE6455406254444303E87BE1 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
15:55:48.0365 2944 AsyncMac - ok
15:55:48.0402 2944 [ 1F05B78AB91C9075565A9D8A4B880BC4 ] atapi C:\Windows\system32\drivers\atapi.sys
15:55:48.0404 2944 atapi - ok
15:55:48.0505 2944 [ 68E2A1A0407A66CF50DA0300852424AB ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
15:55:48.0547 2944 AudioEndpointBuilder - ok
15:55:48.0567 2944 [ 68E2A1A0407A66CF50DA0300852424AB ] Audiosrv C:\Windows\System32\Audiosrv.dll
15:55:48.0571 2944 Audiosrv - ok
15:55:48.0691 2944 [ 746F59822A5187510471FC46889B8CC9 ] BCM43XV C:\Windows\system32\DRIVERS\bcmwl6.sys
15:55:48.0717 2944 BCM43XV - ok
15:55:48.0759 2944 [ 746F59822A5187510471FC46889B8CC9 ] BCM43XX C:\Windows\system32\DRIVERS\bcmwl6.sys
15:55:48.0764 2944 BCM43XX - ok
15:55:48.0803 2944 [ 67E506B75BD5326A3EC7B70BD014DFB6 ] Beep C:\Windows\system32\drivers\Beep.sys
15:55:48.0804 2944 Beep - ok
15:55:48.0937 2944 [ C789AF0F724FDA5852FB9A7D3A432381 ] BFE C:\Windows\System32\bfe.dll
15:55:48.0943 2944 BFE - ok
15:55:49.0096 2944 [ 93952506C6D67330367F7E7934B6A02F ] BITS C:\Windows\System32\qmgr.dll
15:55:49.0340 2944 BITS - ok
15:55:49.0350 2944 blbdrive - ok
15:55:49.0491 2944 [ CFD4C3352E29A8B729536648466E8DF5 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
15:55:49.0623 2944 Bonjour Service - ok
15:55:49.0672 2944 [ 35F376253F687BDE63976CCB3F2108CA ] bowser C:\Windows\system32\DRIVERS\bowser.sys
15:55:49.0687 2944 bowser - ok
15:55:49.0748 2944 [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo C:\Windows\system32\drivers\brfiltlo.sys
15:55:49.0773 2944 BrFiltLo - ok
15:55:49.0802 2944 [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp C:\Windows\system32\drivers\brfiltup.sys
15:55:49.0816 2944 BrFiltUp - ok
15:55:49.0874 2944 [ A3629A0C4226F9E9C72FAAEEBC3AD33C ] Browser C:\Windows\System32\browser.dll
15:55:49.0876 2944 Browser - ok
15:55:49.0950 2944 [ B304E75CFF293029EDDF094246747113 ] Brserid C:\Windows\system32\drivers\brserid.sys
15:55:49.0968 2944 Brserid - ok
15:55:49.0995 2944 [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm C:\Windows\system32\drivers\brserwdm.sys
15:55:49.0998 2944 BrSerWdm - ok
15:55:50.0038 2944 [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm C:\Windows\system32\drivers\brusbmdm.sys
15:55:50.0040 2944 BrUsbMdm - ok
15:55:50.0078 2944 [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer C:\Windows\system32\drivers\brusbser.sys
15:55:50.0095 2944 BrUsbSer - ok
15:55:50.0134 2944 [ AD07C1EC6665B8B35741AB91200C6B68 ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
15:55:50.0166 2944 BTHMODEM - ok
15:55:50.0230 2944 [ 7ADD03E75BEB9E6DD102C3081D29840A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
15:55:50.0268 2944 cdfs - ok
15:55:50.0312 2944 [ 6B4BFFB9BECD728097024276430DB314 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
15:55:50.0313 2944 cdrom - ok
15:55:50.0376 2944 [ 312EC3E37A0A1F2006534913E37B4423 ] CertPropSvc C:\Windows\System32\certprop.dll
15:55:50.0383 2944 CertPropSvc - ok
15:55:50.0426 2944 [ DA8E0AFC7BAA226C538EF53AC2F90897 ] circlass C:\Windows\system32\drivers\circlass.sys
15:55:50.0428 2944 circlass - ok
15:55:50.0601 2944 [ 16356E5A3D7BE77B2010BE72C36E944C ] CLCapSvc C:\Program Files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe
15:55:50.0609 2944 CLCapSvc - ok
15:55:50.0650 2944 [ D7659D3B5B92C31E84E53C1431F35132 ] CLFS C:\Windows\system32\CLFS.sys
15:55:50.0676 2944 CLFS - ok
15:55:50.0788 2944 [ 8EE772032E2FE80A924F3B8DD5082194 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
15:55:50.0806 2944 clr_optimization_v2.0.50727_32 - ok
15:55:50.0912 2944 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
15:55:50.0936 2944 clr_optimization_v4.0.30319_32 - ok
15:55:50.0984 2944 [ E97D797AF6C2E64BFC22EEB7FA58BB63 ] CLSched C:\Program Files\HP\QuickPlay\Kernel\TV\CLSched.exe
15:55:50.0997 2944 CLSched - ok
15:55:51.0057 2944 CLTNetCnService - ok
15:55:51.0125 2944 [ 99AFC3795B58CC478FBBBCDC658FCB56 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
15:55:51.0126 2944 CmBatt - ok
15:55:51.0163 2944 [ 45201046C776FFDAF3FC8A0029C581C8 ] cmdide C:\Windows\system32\drivers\cmdide.sys
15:55:51.0191 2944 cmdide - ok
15:55:51.0250 2944 [ A4D44AB8423791DB757B38150EC599A4 ] CnxtHdAudService C:\Windows\system32\drivers\CHDRT32.sys
15:55:51.0308 2944 CnxtHdAudService - ok
15:55:51.0343 2944 [ 6AFEF0B60FA25DE07C0968983EE4F60A ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
15:55:51.0345 2944 Compbatt - ok
15:55:51.0354 2944 COMSysApp - ok
15:55:51.0375 2944 [ 2A213AE086BBEC5E937553C7D9A2B22C ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
15:55:51.0377 2944 crcdisk - ok
15:55:51.0405 2944 [ 22A7F883508176489F559EE745B5BF5D ] Crusoe C:\Windows\system32\drivers\crusoe.sys
15:55:51.0407 2944 Crusoe - ok
15:55:51.0471 2944 [ 75C6A297E364014840B48ECCD7525E30 ] CryptSvc C:\Windows\system32\cryptsvc.dll
15:55:51.0474 2944 CryptSvc - ok
15:55:51.0577 2944 [ 3B5B4D53FEC14F7476CA29A20CC31AC9 ] DcomLaunch C:\Windows\system32\rpcss.dll
15:55:51.0593 2944 DcomLaunch - ok
15:55:51.0648 2944 [ 622C41A07CA7E6DD91770F50D532CB6C ] DfsC C:\Windows\system32\Drivers\dfsc.sys
15:55:51.0683 2944 DfsC - ok
15:55:51.0818 2944 [ 2CC3DCFB533A1035B13DCAB6160AB38B ] DFSR C:\Windows\system32\DFSR.exe
15:55:51.0942 2944 DFSR - ok
15:55:52.0011 2944 [ 9028559C132146FB75EB7ACF384B086A ] Dhcp C:\Windows\System32\dhcpcsvc.dll
15:55:52.0016 2944 Dhcp - ok
15:55:52.0092 2944 [ 5D4AEFC3386920236A548271F8F1AF6A ] disk C:\Windows\system32\drivers\disk.sys
15:55:52.0124 2944 disk - ok
15:55:52.0186 2944 [ 57D762F6F5974AF0DA2BE88A3349BAAA ] Dnscache C:\Windows\System32\dnsrslvr.dll
15:55:52.0189 2944 Dnscache - ok
15:55:52.0266 2944 [ 324FD74686B1EF5E7C19A8AF49E748F6 ] dot3svc C:\Windows\System32\dot3svc.dll
15:55:52.0274 2944 dot3svc - ok
15:55:52.0316 2944 [ A622E888F8AA2F6B49E9BC466F0E5DEF ] DPS C:\Windows\system32\dps.dll
15:55:52.0335 2944 DPS - ok
15:55:52.0367 2944 [ 97FEF831AB90BEE128C9AF390E243F80 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
15:55:52.0369 2944 drmkaud - ok
15:55:52.0423 2944 [ C68AC676B0EF30CFBB1080ADCE49EB1F ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
15:55:52.0429 2944 DXGKrnl - ok
15:55:52.0496 2944 [ C0B00E55CF82D122D25983C7A6A53DEA ] E100B C:\Windows\system32\DRIVERS\e100b325.sys
15:55:52.0531 2944 E100B - ok
15:55:52.0585 2944 [ 908ED85B7806E8AF3AF5E9B74F7809D4 ] e1express C:\Windows\system32\DRIVERS\e1e6032.sys
15:55:52.0590 2944 e1express - ok
15:55:52.0647 2944 [ F88FB26547FD2CE6D0A5AF2985892C48 ] E1G60 C:\Windows\system32\DRIVERS\E1G60I32.sys
15:55:52.0649 2944 E1G60 - ok
15:55:52.0717 2944 [ A6476585B4FEFEE46A9F42E4D2BFDFA4 ] eabfiltr C:\Windows\system32\DRIVERS\eabfiltr.sys
15:55:52.0739 2944 eabfiltr - ok
15:55:52.0815 2944 [ 151322B5257497299933E80D842F7F07 ] eamonm C:\Windows\system32\DRIVERS\eamonm.sys
15:55:52.0892 2944 eamonm - ok
15:55:52.0958 2944 [ C0B95E40D85CD807D614E264248A45B9 ] EapHost C:\Windows\System32\eapsvc.dll
15:55:52.0962 2944 EapHost - ok
15:55:53.0020 2944 [ 7F64EA048DCFAC7ACF8B4D7B4E6FE371 ] Ecache C:\Windows\system32\drivers\ecache.sys
15:55:53.0027 2944 Ecache - ok
15:55:53.0098 2944 [ 2D401F82D4E81AAF89DAAA45F04782A2 ] eeCtrl C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys
15:55:53.0176 2944 eeCtrl - ok
15:55:53.0228 2944 [ EDB6B7559BC82AC16DA577C0A2A1CAC1 ] ehdrv C:\Windows\system32\DRIVERS\ehdrv.sys
15:55:53.0233 2944 ehdrv - ok
15:55:53.0507 2944 [ 9BE3744D295A7701EB425332014F0797 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
15:55:53.0536 2944 ehRecvr - ok
15:55:53.0583 2944 [ AD1870C8E5D6DD340C829E6074BF3C3F ] ehSched C:\Windows\ehome\ehsched.exe
15:55:53.0585 2944 ehSched - ok
15:55:53.0608 2944 [ C27C4EE8926E74AA72EFCAB24C5242C3 ] ehstart C:\Windows\ehome\ehstart.dll
15:55:53.0632 2944 ehstart - ok
15:55:53.0727 2944 [ 0B5C209608A865BE39B7A2773C13ADEE ] EhttpSrv C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
15:55:53.0736 2944 EhttpSrv - ok
15:55:53.0837 2944 [ C38CF0EBFEF4F0A54F1823172C694386 ] ekrn C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
15:55:53.0926 2944 ekrn - ok
15:55:54.0005 2944 [ E8F3F21A71720C84BCF423B80028359F ] elxstor C:\Windows\system32\drivers\elxstor.sys
15:55:54.0016 2944 elxstor - ok
15:55:54.0075 2944 [ 4E6B23DFC917EA39306B529B773950F4 ] EMDMgmt C:\Windows\system32\emdmgmt.dll
15:55:54.0083 2944 EMDMgmt - ok
15:55:54.0123 2944 [ ACADA6E724ADC1C446580D333E4E65CF ] epfwwfpr C:\Windows\system32\DRIVERS\epfwwfpr.sys
15:55:54.0128 2944 epfwwfpr - ok
15:55:54.0190 2944 [ 67058C46504BC12D821F38CF99B7B28F ] EventSystem C:\Windows\system32\es.dll
15:55:54.0194 2944 EventSystem - ok
15:55:54.0257 2944 [ 22B408651F9123527BCEE54B4F6C5CAE ] exfat C:\Windows\system32\drivers\exfat.sys
15:55:54.0338 2944 exfat - ok
15:55:54.0374 2944 [ 1E9B9A70D332103C52995E957DC09EF8 ] fastfat C:\Windows\system32\drivers\fastfat.sys
15:55:54.0405 2944 fastfat - ok
15:55:54.0461 2944 [ 63BDADA84951B9C03E641800E176898A ] fdc C:\Windows\system32\DRIVERS\fdc.sys
15:55:54.0464 2944 fdc - ok
15:55:54.0503 2944 [ 6629B5F0E98151F4AFDD87567EA32BA3 ] fdPHost C:\Windows\system32\fdPHost.dll
15:55:54.0506 2944 fdPHost - ok
15:55:54.0559 2944 [ 89ED56DCE8E47AF40892778A5BD31FD2 ] FDResPub C:\Windows\system32\fdrespub.dll
15:55:54.0562 2944 FDResPub - ok
15:55:54.0608 2944 [ A8C0139A884861E3AAE9CFE73B208A9F ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
15:55:54.0685 2944 FileInfo - ok
15:55:54.0727 2944 [ 0AE429A696AECBC5970E3CF2C62635AE ] Filetrace C:\Windows\system32\drivers\filetrace.sys
15:55:54.0729 2944 Filetrace - ok
15:55:54.0766 2944 [ 6603957EFF5EC62D25075EA8AC27DE68 ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
15:55:54.0813 2944 flpydisk - ok
15:55:54.0857 2944 [ 01334F9EA68E6877C4EF05D3EA8ABB05 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
15:55:54.0873 2944 FltMgr - ok
15:55:54.0991 2944 [ 8CE364388C8ECA59B14B539179276D44 ] FontCache C:\Windows\system32\FntCache.dll
15:55:55.0001 2944 FontCache - ok
15:55:55.0134 2944 [ C7FBDD1ED42F82BFA35167A5C9803EA3 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
15:55:55.0139 2944 FontCache3.0.0.0 - ok
15:55:55.0199 2944 [ B972A66758577E0BFD1DE0F91AAA27B5 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
15:55:55.0201 2944 Fs_Rec - ok
15:55:55.0248 2944 [ 4E1CD0A45C50A8882616CAE5BF82F3C5 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
15:55:55.0269 2944 gagp30kx - ok
15:55:55.0311 2944 [ 5DC17164F66380CBFEFD895C18467773 ] GEARAspiWDM C:\Windows\system32\Drivers\GEARAspiWDM.sys
15:55:55.0324 2944 GEARAspiWDM - ok
15:55:55.0411 2944 [ CD5D0AEEE35DFD4E986A5AA1500A6E66 ] gpsvc C:\Windows\System32\gpsvc.dll
15:55:55.0441 2944 gpsvc - ok
15:55:55.0474 2944 [ DE15777902A5D9121857D155873A1D1B ] HBtnKey C:\Windows\system32\DRIVERS\cpqbttn.sys
15:55:55.0494 2944 HBtnKey - ok
15:55:55.0563 2944 [ 3AEEE05BB25B8CC72B6E9AEC0E6F394B ] HdAudAddService C:\Windows\system32\drivers\CHDART.sys
15:55:55.0577 2944 HdAudAddService - ok
15:55:55.0682 2944 [ 062452B7FFD68C8C042A6261FE8DFF4A ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
15:55:55.0786 2944 HDAudBus - ok
15:55:55.0823 2944 [ 1338520E78D90154ED6BE8F84DE5FCEB ] HidBth C:\Windows\system32\drivers\hidbth.sys
15:55:55.0870 2944 HidBth - ok
15:55:55.0896 2944 [ FF3160C3A2445128C5A6D9B076DA519E ] HidIr C:\Windows\system32\drivers\hidir.sys
15:55:55.0899 2944 HidIr - ok
15:55:55.0940 2944 [ 84067081F3318162797385E11A8F0582 ] hidserv C:\Windows\system32\hidserv.dll
15:55:55.0945 2944 hidserv - ok
15:55:55.0972 2944 [ CCA4B519B17E23A00B826C55716809CC ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
15:55:56.0001 2944 HidUsb - ok
15:55:56.0036 2944 [ D8AD255B37DA92434C26E4876DB7D418 ] hkmsvc C:\Windows\system32\kmsvc.dll
15:55:56.0039 2944 hkmsvc - ok
15:55:56.0121 2944 [ D6B25A2A39547DD835E730BEF97FC1E0 ] HP Health Check Service C:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
15:55:56.0141 2944 HP Health Check Service - ok
15:55:56.0176 2944 [ DF353B401001246853763C4B7AAA6F50 ] HpCISSs C:\Windows\system32\drivers\hpcisss.sys
15:55:56.0187 2944 HpCISSs - ok
15:55:56.0239 2944 [ 04C1DCBB226C6AE647B794833CE3CEB6 ] hpqwmiex C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
15:55:56.0246 2944 hpqwmiex - ok
15:55:56.0302 2944 [ 46D67209550973257601A533E2AC5785 ] HSFHWAZL C:\Windows\system32\DRIVERS\VSTAZL3.SYS
15:55:56.0310 2944 HSFHWAZL - ok
15:55:56.0442 2944 [ 1882827F41DEE51C70E24C567C35BFB5 ] HSF_DPV C:\Windows\system32\DRIVERS\HSX_DPV.sys
15:55:56.0500 2944 HSF_DPV - ok
15:55:56.0548 2944 [ A44DDF3BA83E4664BF4DE9220097578C ] HSXHWAZL C:\Windows\system32\DRIVERS\HSXHWAZL.sys
15:55:56.0602 2944 HSXHWAZL - ok
15:55:56.0691 2944 [ F870AA3E254628EBEAFE754108D664DE ] HTTP C:\Windows\system32\drivers\HTTP.sys
15:55:56.0776 2944 HTTP - ok
15:55:56.0826 2944 [ 324C2152FF2C61ABAE92D09F3CCA4D63 ] i2omp C:\Windows\system32\drivers\i2omp.sys
15:55:56.0858 2944 i2omp - ok
15:55:56.0934 2944 [ 22D56C8184586B7A1F6FA60BE5F5A2BD ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
15:55:56.0935 2944 i8042prt - ok
15:55:57.0060 2944 [ 496DB78E6A0C4C44023D9A92B4A7AC31 ] ialm C:\Windows\system32\DRIVERS\igdkmd32.sys
15:55:57.0076 2944 ialm - ok
15:55:57.0121 2944 [ C957BF4B5D80B46C5017BF0101E6C906 ] iaStorV C:\Windows\system32\drivers\iastorv.sys
15:55:57.0125 2944 iaStorV - ok
15:55:57.0195 2944 [ 6F95324909B502E2651442C1548AB12F ] IDriverT C:\Program Files\Roxio\Roxio MyDVD Basic v9\InstallShield\Driver\1050\Intel 32\IDriverT.exe
15:55:57.0199 2944 IDriverT - ok
15:55:57.0313 2944 [ 98477B08E61945F974ED9FDC4CB6BDAB ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
15:55:57.0474 2944 idsvc - ok
15:55:57.0502 2944 [ 2D077BF86E843F901D8DB709C95B49A5 ] iirsp C:\Windows\system32\drivers\iirsp.sys
15:55:57.0503 2944 iirsp - ok
15:55:57.0592 2944 [ 9908D8A397B76CD8D31D0D383C5773C9 ] IKEEXT C:\Windows\System32\ikeext.dll
15:55:57.0601 2944 IKEEXT - ok
15:55:57.0654 2944 [ 83AA759F3189E6370C30DE5DC5590718 ] intelide C:\Windows\system32\drivers\intelide.sys
15:55:57.0655 2944 intelide - ok
15:55:57.0690 2944 [ 224191001E78C89DFA78924C3EA595FF ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
15:55:57.0691 2944 intelppm - ok
15:55:57.0735 2944 [ 9AC218C6E6105477484C6FDBE7D409A4 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
15:55:57.0737 2944 IPBusEnum - ok
15:55:57.0761 2944 [ 62C265C38769B864CB25B4BCF62DF6C3 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
15:55:57.0763 2944 IpFilterDriver - ok
15:55:57.0822 2944 [ 1998BD97F950680BB55F55A7244679C2 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
15:55:57.0827 2944 iphlpsvc - ok
15:55:57.0842 2944 IpInIp - ok
15:55:57.0889 2944 [ 40F34F8ABA2A015D780E4B09138B6C17 ] IPMIDRV C:\Windows\system32\drivers\ipmidrv.sys
15:55:57.0891 2944 IPMIDRV - ok
15:55:57.0926 2944 [ 8793643A67B42CEC66490B2A0CF92D68 ] IPNAT C:\Windows\system32\DRIVERS\ipnat.sys
15:55:57.0974 2944 IPNAT - ok
15:55:58.0070 2944 [ D7ED7D86C9FDDC2EEE637B303B3D6A6B ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
15:55:58.0102 2944 iPod Service - ok
15:55:58.0137 2944 [ 109C0DFB82C3632FBD11949B73AEEAC9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
15:55:58.0163 2944 IRENUM - ok
15:55:58.0196 2944 [ 350FCA7E73CF65BCEF43FAE1E4E91293 ] isapnp C:\Windows\system32\drivers\isapnp.sys
15:55:58.0244 2944 isapnp - ok
15:55:58.0293 2944 [ 232FA340531D940AAC623B121A595034 ] iScsiPrt C:\Windows\system32\DRIVERS\msiscsi.sys
15:55:58.0322 2944 iScsiPrt - ok
15:55:58.0354 2944 [ BCED60D16156E428F8DF8CF27B0DF150 ] iteatapi C:\Windows\system32\drivers\iteatapi.sys
15:55:58.0355 2944 iteatapi - ok
15:55:58.0408 2944 [ 06FA654504A498C30ADCA8BEC4E87E7E ] iteraid C:\Windows\system32\drivers\iteraid.sys
15:55:58.0409 2944 iteraid - ok
15:55:58.0432 2944 [ 37605E0A8CF00CBBA538E753E4344C6E ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
15:55:58.0436 2944 kbdclass - ok
15:55:58.0469 2944 [ EDE59EC70E25C24581ADD1FBEC7325F7 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
15:55:58.0471 2944 kbdhid - ok
15:55:58.0512 2944 [ A3E186B4B935905B829219502557314E ] KeyIso C:\Windows\system32\lsass.exe
15:55:58.0516 2944 KeyIso - ok
15:55:58.0654 2944 [ 4A1445EFA932A3BAF5BDB02D7131EE20 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
15:55:58.0658 2944 KSecDD - ok
15:55:58.0715 2944 [ 8078F8F8F7A79E2E6B494523A828C585 ] KtmRm C:\Windows\system32\msdtckrm.dll
15:55:58.0720 2944 KtmRm - ok
15:55:58.0772 2944 [ 1BF5EEBFD518DD7298434D8C862F825D ] LanmanServer C:\Windows\system32\srvsvc.dll
15:55:58.0777 2944 LanmanServer - ok
15:55:58.0850 2944 [ 1DB69705B695B987082C8BAEC0C6B34F ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
15:55:58.0856 2944 LanmanWorkstation - ok
15:55:58.0909 2944 [ 05C10E70B437841F31E1BFA8812895BA ] libusb0 C:\Windows\system32\DRIVERS\libusb0.sys
15:55:58.0910 2944 libusb0 - ok
15:55:58.0958 2944 [ 559C9B7800FAC92FC515CD0003D7C631 ] LightScribeService C:\Program Files\Common Files\LightScribe\LSSrvc.exe
15:55:58.0962 2944 LightScribeService - ok
15:55:59.0002 2944 [ D1C5883087A0C3F1344D9D55A44901F6 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
15:55:59.0029 2944 lltdio - ok
15:55:59.0054 2944 [ 2D5A428872F1442631D0959A34ABFF63 ] lltdsvc C:\Windows\System32\lltdsvc.dll
15:55:59.0063 2944 lltdsvc - ok
15:55:59.0103 2944 [ 35D40113E4A5B961B6CE5C5857702518 ] lmhosts C:\Windows\System32\lmhsvc.dll
15:55:59.0107 2944 lmhosts - ok
15:55:59.0143 2944 [ A2262FB9F28935E862B4DB46438C80D2 ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
15:55:59.0177 2944 LSI_FC - ok
15:55:59.0261 2944 [ 30D73327D390F72A62F32C103DAF1D6D ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
15:55:59.0308 2944 LSI_SAS - ok
15:55:59.0336 2944 [ E1E36FEFD45849A95F1AB81DE0159FE3 ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
15:55:59.0364 2944 LSI_SCSI - ok
15:55:59.0418 2944 [ 8F5C7426567798E62A3B3614965D62CC ] luafv C:\Windows\system32\drivers\luafv.sys
15:55:59.0446 2944 luafv - ok
15:55:59.0474 2944 [ AEF9BABB8A506BC4CE0451A64AADED46 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
15:55:59.0493 2944 Mcx2Svc - ok
15:55:59.0604 2944 [ 11F714F85530A2BD134074DC30E99FCA ] MDM C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
15:55:59.0615 2944 MDM - ok
15:55:59.0661 2944 [ 0CEA2D0D3FA284B85ED5B68365114F76 ] mdmxsdk C:\Windows\system32\DRIVERS\mdmxsdk.sys
15:55:59.0664 2944 mdmxsdk - ok
15:55:59.0701 2944 [ D153B14FC6598EAE8422A2037553ADCE ] megasas C:\Windows\system32\drivers\megasas.sys
15:55:59.0729 2944 megasas - ok
15:55:59.0763 2944 [ 1076FFCFFAAE8385FD62DFCB25AC4708 ] MMCSS C:\Windows\system32\mmcss.dll
15:55:59.0768 2944 MMCSS - ok
15:55:59.0802 2944 [ E13B5EA0F51BA5B1512EC671393D09BA ] Modem C:\Windows\system32\drivers\modem.sys
15:55:59.0803 2944 Modem - ok
15:55:59.0861 2944 [ 0A9BB33B56E294F686ABB7C1E4E2D8A8 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
15:55:59.0863 2944 monitor - ok
15:55:59.0887 2944 [ 5BF6A1326A335C5298477754A506D263 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
15:55:59.0888 2944 mouclass - ok
15:55:59.0908 2944 [ 93B8D4869E12CFBE663915502900876F ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
15:55:59.0909 2944 mouhid - ok
15:55:59.0948 2944 [ BDAFC88AA6B92F7842416EA6A48E1600 ] MountMgr C:\Windows\system32\drivers\mountmgr.sys
15:55:59.0983 2944 MountMgr - ok
15:56:00.0090 2944 [ CB8AF049AC9BE419A77ADAE288673359 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
15:56:00.0104 2944 MozillaMaintenance - ok
15:56:00.0149 2944 [ 583A41F26278D9E0EA548163D6139397 ] mpio C:\Windows\system32\drivers\mpio.sys
15:56:00.0177 2944 mpio - ok
15:56:00.0215 2944 [ 22241FEBA9B2DEFA669C8CB0A8DD7D2E ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
15:56:00.0316 2944 mpsdrv - ok
15:56:00.0381 2944 [ 5DE62C6E9108F14F6794060A9BDECAEC ] MpsSvc C:\Windows\system32\mpssvc.dll
15:56:00.0387 2944 MpsSvc - ok
15:56:00.0444 2944 [ 4FBBB70D30FD20EC51F80061703B001E ] Mraid35x C:\Windows\system32\drivers\mraid35x.sys
15:56:00.0483 2944 Mraid35x - ok
15:56:00.0523 2944 [ 82CEA0395524AACFEB58BA1448E8325C ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
15:56:00.0556 2944 MRxDAV - ok
15:56:00.0596 2944 [ 1E94971C4B446AB2290DEB71D01CF0C2 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
15:56:00.0598 2944 mrxsmb - ok
15:56:00.0694 2944 [ 4FCCB34D793B116423209C0F8B7A3B03 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
15:56:00.0696 2944 mrxsmb10 - ok
15:56:00.0733 2944 [ C3CB1B40AD4A0124D617A1199B0B9D7C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
15:56:00.0735 2944 mrxsmb20 - ok
15:56:00.0776 2944 [ 5457DCFA7C0DA43522F4D9D4049C1472 ] msahci C:\Windows\system32\drivers\msahci.sys
15:56:00.0777 2944 msahci - ok
15:56:00.0828 2944 [ 3FC82A2AE4CC149165A94699183D3028 ] msdsm C:\Windows\system32\drivers\msdsm.sys
15:56:00.0882 2944 msdsm - ok
15:56:00.0914 2944 [ FD7520CC3A80C5FC8C48852BB24C6DED ] MSDTC C:\Windows\System32\msdtc.exe
15:56:00.0921 2944 MSDTC - ok
15:56:00.0959 2944 [ A9927F4A46B816C92F461ACB90CF8515 ] Msfs C:\Windows\system32\drivers\Msfs.sys
15:56:00.0961 2944 Msfs - ok
15:56:01.0003 2944 [ 0F400E306F385C56317357D6DEA56F62 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
15:56:01.0004 2944 msisadrv - ok
15:56:01.0038 2944 [ 85466C0757A23D9A9AECDC0755203CB2 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
15:56:01.0044 2944 MSiSCSI - ok
15:56:01.0051 2944 msiserver - ok
15:56:01.0082 2944 [ D8C63D34D9C9E56C059E24EC7185CC07 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
15:56:01.0083 2944 MSKSSRV - ok
15:56:01.0117 2944 [ 1D373C90D62DDB641D50E55B9E78D65E ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
15:56:01.0118 2944 MSPCLOCK - ok
15:56:01.0135 2944 [ B572DA05BF4E098D4BBA3A4734FB505B ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
15:56:01.0139 2944 MSPQM - ok
15:56:01.0180 2944 [ B49456D70555DE905C311BCDA6EC6ADB ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
15:56:01.0184 2944 MsRPC - ok
15:56:01.0299 2944 [ E384487CB84BE41D09711C30CA79646C ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
15:56:01.0300 2944 mssmbios - ok
15:56:01.0324 2944 [ 7199C1EEC1E4993CAF96B8C0A26BD58A ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
15:56:01.0357 2944 MSTEE - ok
15:56:01.0419 2944 [ 6A57B5733D4CB702C8EA4542E836B96C ] Mup C:\Windows\system32\Drivers\mup.sys
15:56:01.0462 2944 Mup - ok
15:56:01.0515 2944 [ E4EAF0C5C1B41B5C83386CF212CA9584 ] napagent C:\Windows\system32\qagentRT.dll
15:56:01.0523 2944 napagent - ok
15:56:01.0593 2944 [ 85C44FDFF9CF7E72A40DCB7EC06A4416 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
15:56:01.0638 2944 NativeWifiP - ok
15:56:01.0718 2944 [ 1357274D1883F68300AEADD15D7BBB42 ] NDIS C:\Windows\system32\drivers\ndis.sys
15:56:01.0724 2944 NDIS - ok
15:56:01.0790 2944 [ 0E186E90404980569FB449BA7519AE61 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
15:56:01.0793 2944 NdisTapi - ok
15:56:01.0821 2944 [ D6973AA34C4D5D76C0430B181C3CD389 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
15:56:01.0863 2944 Ndisuio - ok
15:56:01.0941 2944 [ 818F648618AE34F729FDB47EC68345C3 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
15:56:01.0985 2944 NdisWan - ok
15:56:02.0050 2944 [ 71DAB552B41936358F3B541AE5997FB3 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
15:56:02.0102 2944 NDProxy - ok
15:56:02.0165 2944 [ 51C6D8BFBD4EA5B62A1BA7F4469250D3 ] Net Driver HPZ12 C:\Windows\system32\HPZinw12.dll
15:56:02.0168 2944 Net Driver HPZ12 - ok
15:56:02.0205 2944 [ BCD093A5A6777CF626434568DC7DBA78 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
15:56:02.0231 2944 NetBIOS - ok
15:56:02.0290 2944 [ ECD64230A59CBD93C85F1CD1CAB9F3F6 ] netbt C:\Windows\system32\DRIVERS\netbt.sys
15:56:02.0294 2944 netbt - ok
15:56:02.0315 2944 [ A3E186B4B935905B829219502557314E ] Netlogon C:\Windows\system32\lsass.exe
15:56:02.0318 2944 Netlogon - ok
15:56:02.0360 2944 [ C8052711DAECC48B982434C5116CA401 ] Netman C:\Windows\System32\netman.dll
15:56:02.0375 2944 Netman - ok
15:56:02.0455 2944 [ 2EF3BBE22E5A5ACD1428EE387A0D0172 ] netprofm C:\Windows\System32\netprofm.dll
15:56:02.0459 2944 netprofm - ok
15:56:02.0493 2944 [ D6C4E4A39A36029AC0813D476FBD0248 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
15:56:02.0500 2944 NetTcpPortSharing - ok
15:56:02.0701 2944 [ ACC6170D80C69E50145B370023B64ED3 ] NETw3v32 C:\Windows\system32\DRIVERS\NETw3v32.sys
15:56:02.0779 2944 NETw3v32 - ok
15:56:02.0858 2944 [ 2E7FB731D4790A1BC6270ACCEFACB36E ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
15:56:02.0860 2944 nfrd960 - ok
15:56:02.0901 2944 [ 2997B15415F9BBE05B5A4C1C85E0C6A2 ] NlaSvc C:\Windows\System32\nlasvc.dll
15:56:02.0905 2944 NlaSvc - ok
15:56:02.0957 2944 [ D36F239D7CCE1931598E8FB90A0DBC26 ] Npfs C:\Windows\system32\drivers\Npfs.sys
15:56:02.0984 2944 Npfs - ok
15:56:03.0047 2944 [ 8BB86F0C7EEA2BDED6FE095D0B4CA9BD ] nsi C:\Windows\system32\nsisvc.dll
15:56:03.0054 2944 nsi - ok
15:56:03.0093 2944 [ 609773E344A97410CE4EBF74A8914FCF ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
15:56:03.0129 2944 nsiproxy - ok
15:56:03.0223 2944 [ 6A4A98CEE84CF9E99564510DDA4BAA47 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
15:56:03.0328 2944 Ntfs - ok
15:56:03.0369 2944 [ E875C093AEC0C978A90F30C9E0DFBB72 ] ntrigdigi C:\Windows\system32\drivers\ntrigdigi.sys
15:56:03.0406 2944 ntrigdigi - ok
15:56:03.0468 2944 [ 20623A75F3C6C1076EBBA64DD8C4BC02 ] NuidFltr C:\Windows\system32\DRIVERS\NuidFltr.sys
15:56:03.0469 2944 NuidFltr - ok
15:56:03.0504 2944 [ C5DBBCDA07D780BDA9B685DF333BB41E ] Null C:\Windows\system32\drivers\Null.sys
15:56:03.0506 2944 Null - ok
15:56:03.0929 2944 [ D65BC32C1795191B7F2B028351AB4FE2 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
15:56:04.0233 2944 nvlddmkm - ok
15:56:04.0286 2944 [ E69E946F80C1C31C53003BFBF50CBB7C ] nvraid C:\Windows\system32\drivers\nvraid.sys
15:56:04.0300 2944 nvraid - ok
15:56:04.0319 2944 [ 9E0BA19A28C498A6D323D065DB76DFFC ] nvstor C:\Windows\system32\drivers\nvstor.sys
15:56:04.0347 2944 nvstor - ok
15:56:04.0406 2944 [ A8C043670699C956D56B9F1F3DAEFC98 ] nvsvc C:\Windows\system32\nvvsvc.exe
15:56:04.0411 2944 nvsvc - ok
15:56:04.0436 2944 [ 07C186427EB8FCC3D8D7927187F260F7 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
15:56:04.0465 2944 nv_agp - ok
15:56:04.0472 2944 NwlnkFlt - ok
15:56:04.0484 2944 NwlnkFwd - ok
15:56:04.0538 2944 [ 6F310E890D46E246E0E261A63D9B36B4 ] ohci1394 C:\Windows\system32\DRIVERS\ohci1394.sys
15:56:04.0544 2944 ohci1394 - ok
15:56:04.0585 2944 [ 7A56CF3E3F12E8AF599963B16F50FB6A ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
15:56:04.0591 2944 ose - ok
15:56:04.0640 2944 [ 0C8E8E61AD1EB0B250B846712C917506 ] p2pimsvc C:\Windows\system32\p2psvc.dll
15:56:04.0659 2944 p2pimsvc - ok
15:55:25.0491 5952 ============================================================
15:55:25.0491 5952 Current date / time: 2012/10/07 15:55:25.0491
15:55:25.0491 5952 SystemInfo:
15:55:25.0491 5952
15:55:25.0491 5952 OS Version: 6.0.6002 ServicePack: 2.0
15:55:25.0491 5952 Product type: Workstation
15:55:25.0491 5952 ComputerName: JANKUVOVA
15:55:25.0492 5952 UserName: Spravca
15:55:25.0492 5952 Windows directory: C:\Windows
15:55:25.0492 5952 System windows directory: C:\Windows
15:55:25.0492 5952 Processor architecture: Intel x86
15:55:25.0492 5952 Number of processors: 2
15:55:25.0492 5952 Page size: 0x1000
15:55:25.0492 5952 Boot type: Normal boot
15:55:25.0492 5952 ============================================================
15:55:28.0048 5952 Drive \Device\Harddisk0\DR0 - Size: 0x1BF2976000 (111.79 Gb), SectorSize: 0x200, Cylinders: 0x3901, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
15:55:28.0060 5952 ============================================================
15:55:28.0060 5952 \Device\Harddisk0\DR0:
15:55:28.0061 5952 MBR partitions:
15:55:28.0061 5952 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0xD4B6AFD
15:55:28.0061 5952 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0xD4B6B3C, BlocksNum 0xADCC85
15:55:28.0061 5952 ============================================================
15:55:28.0080 5952 C: <-> \Device\Harddisk0\DR0\Partition1
15:55:28.0180 5952 D: <-> \Device\Harddisk0\DR0\Partition2
15:55:28.0226 5952 ============================================================
15:55:28.0227 5952 Initialize success
15:55:28.0227 5952 ============================================================
15:55:42.0483 2944 ============================================================
15:55:42.0483 2944 Scan started
15:55:42.0483 2944 Mode: Manual;
15:55:42.0483 2944 ============================================================
15:55:45.0779 2944 ================ Scan system memory ========================
15:55:45.0779 2944 System memory - ok
15:55:45.0780 2944 ================ Scan services =============================
15:55:46.0150 2944 [ 82B296AE1892FE3DBEE00C9CF92F8AC7 ] ACPI C:\Windows\system32\drivers\acpi.sys
15:55:46.0157 2944 ACPI - ok
15:55:46.0260 2944 [ E6D2486EC85A36B8336ED456D0317D96 ] AddFiltr C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\AddFiltr.exe
15:55:46.0264 2944 AddFiltr - ok
15:55:46.0322 2944 [ E12CFCF1DDBFC50948A75E6E38793225 ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
15:55:46.0329 2944 AdobeFlashPlayerUpdateSvc - ok
15:55:46.0410 2944 [ 2EDC5BBAC6C651ECE337BDE8ED97C9FB ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
15:55:46.0497 2944 adp94xx - ok
15:55:46.0621 2944 [ B84088CA3CDCA97DA44A984C6CE1CCAD ] adpahci C:\Windows\system32\drivers\adpahci.sys
15:55:46.0703 2944 adpahci - ok
15:55:46.0768 2944 [ 7880C67BCCC27C86FD05AA2AFB5EA469 ] adpu160m C:\Windows\system32\drivers\adpu160m.sys
15:55:46.0803 2944 adpu160m - ok
15:55:46.0836 2944 [ 9AE713F8E30EFC2ABCCD84904333DF4D ] adpu320 C:\Windows\system32\drivers\adpu320.sys
15:55:46.0902 2944 adpu320 - ok
15:55:46.0965 2944 [ 9D1FDA9E086BA64E3C93C9DE32461BCF ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
15:55:46.0967 2944 AeLookupSvc - ok
15:55:47.0017 2944 [ 3911B972B55FEA0478476B2E777B29FA ] AFD C:\Windows\system32\drivers\afd.sys
15:55:47.0038 2944 AFD - ok
15:55:47.0148 2944 [ 312BBB93249BC8F3EB7847072048715D ] AgilentIOLibrariesService C:\Program Files\Agilent\IO Libraries Suite\AgilentIOLibrariesService.exe
15:55:47.0155 2944 AgilentIOLibrariesService - ok
15:55:47.0220 2944 [ EF23439CDD587F64C2C1B8825CEAD7D8 ] agp440 C:\Windows\system32\drivers\agp440.sys
15:55:47.0223 2944 agp440 - ok
15:55:47.0277 2944 [ 6EAE35C9B695D8B5376F968438BA0D31 ] AgtMdnsResponder C:\Program Files\Agilent\IO Libraries Suite\LxiMdnsResponder.exe
15:55:47.0306 2944 AgtMdnsResponder - ok
15:55:47.0357 2944 [ AE1FDF7BF7BB6C6A70F67699D880592A ] aic78xx C:\Windows\system32\drivers\djsvs.sys
15:55:47.0385 2944 aic78xx - ok
15:55:47.0435 2944 [ A1545B731579895D8CC44FC0481C1192 ] ALG C:\Windows\System32\alg.exe
15:55:47.0455 2944 ALG - ok
15:55:47.0478 2944 [ 90395B64600EBB4552E26E178C94B2E4 ] aliide C:\Windows\system32\drivers\aliide.sys
15:55:47.0511 2944 aliide - ok
15:55:47.0550 2944 [ 2B13E304C9DFDFA5EB582F6A149FA2C7 ] amdagp C:\Windows\system32\drivers\amdagp.sys
15:55:47.0641 2944 amdagp - ok
15:55:47.0680 2944 [ 0577DF1D323FE75A739C787893D300EA ] amdide C:\Windows\system32\drivers\amdide.sys
15:55:47.0716 2944 amdide - ok
15:55:47.0749 2944 [ DC487885BCEF9F28EECE6FAC0E5DDFC5 ] AmdK7 C:\Windows\system32\drivers\amdk7.sys
15:55:47.0809 2944 AmdK7 - ok
15:55:47.0826 2944 [ 0CA0071DA4315B00FC1328CA86B425DA ] AmdK8 C:\Windows\system32\drivers\amdk8.sys
15:55:47.0829 2944 AmdK8 - ok
15:55:47.0888 2944 [ C6D704C7F0434DC791AAC37CAC4B6E14 ] Appinfo C:\Windows\System32\appinfo.dll
15:55:47.0890 2944 Appinfo - ok
15:55:48.0029 2944 [ 2BDA4A9480B550FCCA6D29C22CA54C0D ] Apple Mobile Device C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
15:55:48.0031 2944 Apple Mobile Device - ok
15:55:48.0082 2944 [ 5F673180268BB1FDB69C99B6619FE379 ] arc C:\Windows\system32\drivers\arc.sys
15:55:48.0143 2944 arc - ok
15:55:48.0205 2944 [ 957F7540B5E7F602E44648C7DE5A1C05 ] arcsas C:\Windows\system32\drivers\arcsas.sys
15:55:48.0267 2944 arcsas - ok
15:55:48.0332 2944 [ 53B202ABEE6455406254444303E87BE1 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
15:55:48.0365 2944 AsyncMac - ok
15:55:48.0402 2944 [ 1F05B78AB91C9075565A9D8A4B880BC4 ] atapi C:\Windows\system32\drivers\atapi.sys
15:55:48.0404 2944 atapi - ok
15:55:48.0505 2944 [ 68E2A1A0407A66CF50DA0300852424AB ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
15:55:48.0547 2944 AudioEndpointBuilder - ok
15:55:48.0567 2944 [ 68E2A1A0407A66CF50DA0300852424AB ] Audiosrv C:\Windows\System32\Audiosrv.dll
15:55:48.0571 2944 Audiosrv - ok
15:55:48.0691 2944 [ 746F59822A5187510471FC46889B8CC9 ] BCM43XV C:\Windows\system32\DRIVERS\bcmwl6.sys
15:55:48.0717 2944 BCM43XV - ok
15:55:48.0759 2944 [ 746F59822A5187510471FC46889B8CC9 ] BCM43XX C:\Windows\system32\DRIVERS\bcmwl6.sys
15:55:48.0764 2944 BCM43XX - ok
15:55:48.0803 2944 [ 67E506B75BD5326A3EC7B70BD014DFB6 ] Beep C:\Windows\system32\drivers\Beep.sys
15:55:48.0804 2944 Beep - ok
15:55:48.0937 2944 [ C789AF0F724FDA5852FB9A7D3A432381 ] BFE C:\Windows\System32\bfe.dll
15:55:48.0943 2944 BFE - ok
15:55:49.0096 2944 [ 93952506C6D67330367F7E7934B6A02F ] BITS C:\Windows\System32\qmgr.dll
15:55:49.0340 2944 BITS - ok
15:55:49.0350 2944 blbdrive - ok
15:55:49.0491 2944 [ CFD4C3352E29A8B729536648466E8DF5 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
15:55:49.0623 2944 Bonjour Service - ok
15:55:49.0672 2944 [ 35F376253F687BDE63976CCB3F2108CA ] bowser C:\Windows\system32\DRIVERS\bowser.sys
15:55:49.0687 2944 bowser - ok
15:55:49.0748 2944 [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo C:\Windows\system32\drivers\brfiltlo.sys
15:55:49.0773 2944 BrFiltLo - ok
15:55:49.0802 2944 [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp C:\Windows\system32\drivers\brfiltup.sys
15:55:49.0816 2944 BrFiltUp - ok
15:55:49.0874 2944 [ A3629A0C4226F9E9C72FAAEEBC3AD33C ] Browser C:\Windows\System32\browser.dll
15:55:49.0876 2944 Browser - ok
15:55:49.0950 2944 [ B304E75CFF293029EDDF094246747113 ] Brserid C:\Windows\system32\drivers\brserid.sys
15:55:49.0968 2944 Brserid - ok
15:55:49.0995 2944 [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm C:\Windows\system32\drivers\brserwdm.sys
15:55:49.0998 2944 BrSerWdm - ok
15:55:50.0038 2944 [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm C:\Windows\system32\drivers\brusbmdm.sys
15:55:50.0040 2944 BrUsbMdm - ok
15:55:50.0078 2944 [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer C:\Windows\system32\drivers\brusbser.sys
15:55:50.0095 2944 BrUsbSer - ok
15:55:50.0134 2944 [ AD07C1EC6665B8B35741AB91200C6B68 ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
15:55:50.0166 2944 BTHMODEM - ok
15:55:50.0230 2944 [ 7ADD03E75BEB9E6DD102C3081D29840A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
15:55:50.0268 2944 cdfs - ok
15:55:50.0312 2944 [ 6B4BFFB9BECD728097024276430DB314 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
15:55:50.0313 2944 cdrom - ok
15:55:50.0376 2944 [ 312EC3E37A0A1F2006534913E37B4423 ] CertPropSvc C:\Windows\System32\certprop.dll
15:55:50.0383 2944 CertPropSvc - ok
15:55:50.0426 2944 [ DA8E0AFC7BAA226C538EF53AC2F90897 ] circlass C:\Windows\system32\drivers\circlass.sys
15:55:50.0428 2944 circlass - ok
15:55:50.0601 2944 [ 16356E5A3D7BE77B2010BE72C36E944C ] CLCapSvc C:\Program Files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe
15:55:50.0609 2944 CLCapSvc - ok
15:55:50.0650 2944 [ D7659D3B5B92C31E84E53C1431F35132 ] CLFS C:\Windows\system32\CLFS.sys
15:55:50.0676 2944 CLFS - ok
15:55:50.0788 2944 [ 8EE772032E2FE80A924F3B8DD5082194 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
15:55:50.0806 2944 clr_optimization_v2.0.50727_32 - ok
15:55:50.0912 2944 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
15:55:50.0936 2944 clr_optimization_v4.0.30319_32 - ok
15:55:50.0984 2944 [ E97D797AF6C2E64BFC22EEB7FA58BB63 ] CLSched C:\Program Files\HP\QuickPlay\Kernel\TV\CLSched.exe
15:55:50.0997 2944 CLSched - ok
15:55:51.0057 2944 CLTNetCnService - ok
15:55:51.0125 2944 [ 99AFC3795B58CC478FBBBCDC658FCB56 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
15:55:51.0126 2944 CmBatt - ok
15:55:51.0163 2944 [ 45201046C776FFDAF3FC8A0029C581C8 ] cmdide C:\Windows\system32\drivers\cmdide.sys
15:55:51.0191 2944 cmdide - ok
15:55:51.0250 2944 [ A4D44AB8423791DB757B38150EC599A4 ] CnxtHdAudService C:\Windows\system32\drivers\CHDRT32.sys
15:55:51.0308 2944 CnxtHdAudService - ok
15:55:51.0343 2944 [ 6AFEF0B60FA25DE07C0968983EE4F60A ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
15:55:51.0345 2944 Compbatt - ok
15:55:51.0354 2944 COMSysApp - ok
15:55:51.0375 2944 [ 2A213AE086BBEC5E937553C7D9A2B22C ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
15:55:51.0377 2944 crcdisk - ok
15:55:51.0405 2944 [ 22A7F883508176489F559EE745B5BF5D ] Crusoe C:\Windows\system32\drivers\crusoe.sys
15:55:51.0407 2944 Crusoe - ok
15:55:51.0471 2944 [ 75C6A297E364014840B48ECCD7525E30 ] CryptSvc C:\Windows\system32\cryptsvc.dll
15:55:51.0474 2944 CryptSvc - ok
15:55:51.0577 2944 [ 3B5B4D53FEC14F7476CA29A20CC31AC9 ] DcomLaunch C:\Windows\system32\rpcss.dll
15:55:51.0593 2944 DcomLaunch - ok
15:55:51.0648 2944 [ 622C41A07CA7E6DD91770F50D532CB6C ] DfsC C:\Windows\system32\Drivers\dfsc.sys
15:55:51.0683 2944 DfsC - ok
15:55:51.0818 2944 [ 2CC3DCFB533A1035B13DCAB6160AB38B ] DFSR C:\Windows\system32\DFSR.exe
15:55:51.0942 2944 DFSR - ok
15:55:52.0011 2944 [ 9028559C132146FB75EB7ACF384B086A ] Dhcp C:\Windows\System32\dhcpcsvc.dll
15:55:52.0016 2944 Dhcp - ok
15:55:52.0092 2944 [ 5D4AEFC3386920236A548271F8F1AF6A ] disk C:\Windows\system32\drivers\disk.sys
15:55:52.0124 2944 disk - ok
15:55:52.0186 2944 [ 57D762F6F5974AF0DA2BE88A3349BAAA ] Dnscache C:\Windows\System32\dnsrslvr.dll
15:55:52.0189 2944 Dnscache - ok
15:55:52.0266 2944 [ 324FD74686B1EF5E7C19A8AF49E748F6 ] dot3svc C:\Windows\System32\dot3svc.dll
15:55:52.0274 2944 dot3svc - ok
15:55:52.0316 2944 [ A622E888F8AA2F6B49E9BC466F0E5DEF ] DPS C:\Windows\system32\dps.dll
15:55:52.0335 2944 DPS - ok
15:55:52.0367 2944 [ 97FEF831AB90BEE128C9AF390E243F80 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
15:55:52.0369 2944 drmkaud - ok
15:55:52.0423 2944 [ C68AC676B0EF30CFBB1080ADCE49EB1F ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
15:55:52.0429 2944 DXGKrnl - ok
15:55:52.0496 2944 [ C0B00E55CF82D122D25983C7A6A53DEA ] E100B C:\Windows\system32\DRIVERS\e100b325.sys
15:55:52.0531 2944 E100B - ok
15:55:52.0585 2944 [ 908ED85B7806E8AF3AF5E9B74F7809D4 ] e1express C:\Windows\system32\DRIVERS\e1e6032.sys
15:55:52.0590 2944 e1express - ok
15:55:52.0647 2944 [ F88FB26547FD2CE6D0A5AF2985892C48 ] E1G60 C:\Windows\system32\DRIVERS\E1G60I32.sys
15:55:52.0649 2944 E1G60 - ok
15:55:52.0717 2944 [ A6476585B4FEFEE46A9F42E4D2BFDFA4 ] eabfiltr C:\Windows\system32\DRIVERS\eabfiltr.sys
15:55:52.0739 2944 eabfiltr - ok
15:55:52.0815 2944 [ 151322B5257497299933E80D842F7F07 ] eamonm C:\Windows\system32\DRIVERS\eamonm.sys
15:55:52.0892 2944 eamonm - ok
15:55:52.0958 2944 [ C0B95E40D85CD807D614E264248A45B9 ] EapHost C:\Windows\System32\eapsvc.dll
15:55:52.0962 2944 EapHost - ok
15:55:53.0020 2944 [ 7F64EA048DCFAC7ACF8B4D7B4E6FE371 ] Ecache C:\Windows\system32\drivers\ecache.sys
15:55:53.0027 2944 Ecache - ok
15:55:53.0098 2944 [ 2D401F82D4E81AAF89DAAA45F04782A2 ] eeCtrl C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys
15:55:53.0176 2944 eeCtrl - ok
15:55:53.0228 2944 [ EDB6B7559BC82AC16DA577C0A2A1CAC1 ] ehdrv C:\Windows\system32\DRIVERS\ehdrv.sys
15:55:53.0233 2944 ehdrv - ok
15:55:53.0507 2944 [ 9BE3744D295A7701EB425332014F0797 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
15:55:53.0536 2944 ehRecvr - ok
15:55:53.0583 2944 [ AD1870C8E5D6DD340C829E6074BF3C3F ] ehSched C:\Windows\ehome\ehsched.exe
15:55:53.0585 2944 ehSched - ok
15:55:53.0608 2944 [ C27C4EE8926E74AA72EFCAB24C5242C3 ] ehstart C:\Windows\ehome\ehstart.dll
15:55:53.0632 2944 ehstart - ok
15:55:53.0727 2944 [ 0B5C209608A865BE39B7A2773C13ADEE ] EhttpSrv C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
15:55:53.0736 2944 EhttpSrv - ok
15:55:53.0837 2944 [ C38CF0EBFEF4F0A54F1823172C694386 ] ekrn C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
15:55:53.0926 2944 ekrn - ok
15:55:54.0005 2944 [ E8F3F21A71720C84BCF423B80028359F ] elxstor C:\Windows\system32\drivers\elxstor.sys
15:55:54.0016 2944 elxstor - ok
15:55:54.0075 2944 [ 4E6B23DFC917EA39306B529B773950F4 ] EMDMgmt C:\Windows\system32\emdmgmt.dll
15:55:54.0083 2944 EMDMgmt - ok
15:55:54.0123 2944 [ ACADA6E724ADC1C446580D333E4E65CF ] epfwwfpr C:\Windows\system32\DRIVERS\epfwwfpr.sys
15:55:54.0128 2944 epfwwfpr - ok
15:55:54.0190 2944 [ 67058C46504BC12D821F38CF99B7B28F ] EventSystem C:\Windows\system32\es.dll
15:55:54.0194 2944 EventSystem - ok
15:55:54.0257 2944 [ 22B408651F9123527BCEE54B4F6C5CAE ] exfat C:\Windows\system32\drivers\exfat.sys
15:55:54.0338 2944 exfat - ok
15:55:54.0374 2944 [ 1E9B9A70D332103C52995E957DC09EF8 ] fastfat C:\Windows\system32\drivers\fastfat.sys
15:55:54.0405 2944 fastfat - ok
15:55:54.0461 2944 [ 63BDADA84951B9C03E641800E176898A ] fdc C:\Windows\system32\DRIVERS\fdc.sys
15:55:54.0464 2944 fdc - ok
15:55:54.0503 2944 [ 6629B5F0E98151F4AFDD87567EA32BA3 ] fdPHost C:\Windows\system32\fdPHost.dll
15:55:54.0506 2944 fdPHost - ok
15:55:54.0559 2944 [ 89ED56DCE8E47AF40892778A5BD31FD2 ] FDResPub C:\Windows\system32\fdrespub.dll
15:55:54.0562 2944 FDResPub - ok
15:55:54.0608 2944 [ A8C0139A884861E3AAE9CFE73B208A9F ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
15:55:54.0685 2944 FileInfo - ok
15:55:54.0727 2944 [ 0AE429A696AECBC5970E3CF2C62635AE ] Filetrace C:\Windows\system32\drivers\filetrace.sys
15:55:54.0729 2944 Filetrace - ok
15:55:54.0766 2944 [ 6603957EFF5EC62D25075EA8AC27DE68 ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
15:55:54.0813 2944 flpydisk - ok
15:55:54.0857 2944 [ 01334F9EA68E6877C4EF05D3EA8ABB05 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
15:55:54.0873 2944 FltMgr - ok
15:55:54.0991 2944 [ 8CE364388C8ECA59B14B539179276D44 ] FontCache C:\Windows\system32\FntCache.dll
15:55:55.0001 2944 FontCache - ok
15:55:55.0134 2944 [ C7FBDD1ED42F82BFA35167A5C9803EA3 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
15:55:55.0139 2944 FontCache3.0.0.0 - ok
15:55:55.0199 2944 [ B972A66758577E0BFD1DE0F91AAA27B5 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
15:55:55.0201 2944 Fs_Rec - ok
15:55:55.0248 2944 [ 4E1CD0A45C50A8882616CAE5BF82F3C5 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
15:55:55.0269 2944 gagp30kx - ok
15:55:55.0311 2944 [ 5DC17164F66380CBFEFD895C18467773 ] GEARAspiWDM C:\Windows\system32\Drivers\GEARAspiWDM.sys
15:55:55.0324 2944 GEARAspiWDM - ok
15:55:55.0411 2944 [ CD5D0AEEE35DFD4E986A5AA1500A6E66 ] gpsvc C:\Windows\System32\gpsvc.dll
15:55:55.0441 2944 gpsvc - ok
15:55:55.0474 2944 [ DE15777902A5D9121857D155873A1D1B ] HBtnKey C:\Windows\system32\DRIVERS\cpqbttn.sys
15:55:55.0494 2944 HBtnKey - ok
15:55:55.0563 2944 [ 3AEEE05BB25B8CC72B6E9AEC0E6F394B ] HdAudAddService C:\Windows\system32\drivers\CHDART.sys
15:55:55.0577 2944 HdAudAddService - ok
15:55:55.0682 2944 [ 062452B7FFD68C8C042A6261FE8DFF4A ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
15:55:55.0786 2944 HDAudBus - ok
15:55:55.0823 2944 [ 1338520E78D90154ED6BE8F84DE5FCEB ] HidBth C:\Windows\system32\drivers\hidbth.sys
15:55:55.0870 2944 HidBth - ok
15:55:55.0896 2944 [ FF3160C3A2445128C5A6D9B076DA519E ] HidIr C:\Windows\system32\drivers\hidir.sys
15:55:55.0899 2944 HidIr - ok
15:55:55.0940 2944 [ 84067081F3318162797385E11A8F0582 ] hidserv C:\Windows\system32\hidserv.dll
15:55:55.0945 2944 hidserv - ok
15:55:55.0972 2944 [ CCA4B519B17E23A00B826C55716809CC ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
15:55:56.0001 2944 HidUsb - ok
15:55:56.0036 2944 [ D8AD255B37DA92434C26E4876DB7D418 ] hkmsvc C:\Windows\system32\kmsvc.dll
15:55:56.0039 2944 hkmsvc - ok
15:55:56.0121 2944 [ D6B25A2A39547DD835E730BEF97FC1E0 ] HP Health Check Service C:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
15:55:56.0141 2944 HP Health Check Service - ok
15:55:56.0176 2944 [ DF353B401001246853763C4B7AAA6F50 ] HpCISSs C:\Windows\system32\drivers\hpcisss.sys
15:55:56.0187 2944 HpCISSs - ok
15:55:56.0239 2944 [ 04C1DCBB226C6AE647B794833CE3CEB6 ] hpqwmiex C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
15:55:56.0246 2944 hpqwmiex - ok
15:55:56.0302 2944 [ 46D67209550973257601A533E2AC5785 ] HSFHWAZL C:\Windows\system32\DRIVERS\VSTAZL3.SYS
15:55:56.0310 2944 HSFHWAZL - ok
15:55:56.0442 2944 [ 1882827F41DEE51C70E24C567C35BFB5 ] HSF_DPV C:\Windows\system32\DRIVERS\HSX_DPV.sys
15:55:56.0500 2944 HSF_DPV - ok
15:55:56.0548 2944 [ A44DDF3BA83E4664BF4DE9220097578C ] HSXHWAZL C:\Windows\system32\DRIVERS\HSXHWAZL.sys
15:55:56.0602 2944 HSXHWAZL - ok
15:55:56.0691 2944 [ F870AA3E254628EBEAFE754108D664DE ] HTTP C:\Windows\system32\drivers\HTTP.sys
15:55:56.0776 2944 HTTP - ok
15:55:56.0826 2944 [ 324C2152FF2C61ABAE92D09F3CCA4D63 ] i2omp C:\Windows\system32\drivers\i2omp.sys
15:55:56.0858 2944 i2omp - ok
15:55:56.0934 2944 [ 22D56C8184586B7A1F6FA60BE5F5A2BD ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
15:55:56.0935 2944 i8042prt - ok
15:55:57.0060 2944 [ 496DB78E6A0C4C44023D9A92B4A7AC31 ] ialm C:\Windows\system32\DRIVERS\igdkmd32.sys
15:55:57.0076 2944 ialm - ok
15:55:57.0121 2944 [ C957BF4B5D80B46C5017BF0101E6C906 ] iaStorV C:\Windows\system32\drivers\iastorv.sys
15:55:57.0125 2944 iaStorV - ok
15:55:57.0195 2944 [ 6F95324909B502E2651442C1548AB12F ] IDriverT C:\Program Files\Roxio\Roxio MyDVD Basic v9\InstallShield\Driver\1050\Intel 32\IDriverT.exe
15:55:57.0199 2944 IDriverT - ok
15:55:57.0313 2944 [ 98477B08E61945F974ED9FDC4CB6BDAB ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
15:55:57.0474 2944 idsvc - ok
15:55:57.0502 2944 [ 2D077BF86E843F901D8DB709C95B49A5 ] iirsp C:\Windows\system32\drivers\iirsp.sys
15:55:57.0503 2944 iirsp - ok
15:55:57.0592 2944 [ 9908D8A397B76CD8D31D0D383C5773C9 ] IKEEXT C:\Windows\System32\ikeext.dll
15:55:57.0601 2944 IKEEXT - ok
15:55:57.0654 2944 [ 83AA759F3189E6370C30DE5DC5590718 ] intelide C:\Windows\system32\drivers\intelide.sys
15:55:57.0655 2944 intelide - ok
15:55:57.0690 2944 [ 224191001E78C89DFA78924C3EA595FF ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
15:55:57.0691 2944 intelppm - ok
15:55:57.0735 2944 [ 9AC218C6E6105477484C6FDBE7D409A4 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
15:55:57.0737 2944 IPBusEnum - ok
15:55:57.0761 2944 [ 62C265C38769B864CB25B4BCF62DF6C3 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
15:55:57.0763 2944 IpFilterDriver - ok
15:55:57.0822 2944 [ 1998BD97F950680BB55F55A7244679C2 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
15:55:57.0827 2944 iphlpsvc - ok
15:55:57.0842 2944 IpInIp - ok
15:55:57.0889 2944 [ 40F34F8ABA2A015D780E4B09138B6C17 ] IPMIDRV C:\Windows\system32\drivers\ipmidrv.sys
15:55:57.0891 2944 IPMIDRV - ok
15:55:57.0926 2944 [ 8793643A67B42CEC66490B2A0CF92D68 ] IPNAT C:\Windows\system32\DRIVERS\ipnat.sys
15:55:57.0974 2944 IPNAT - ok
15:55:58.0070 2944 [ D7ED7D86C9FDDC2EEE637B303B3D6A6B ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
15:55:58.0102 2944 iPod Service - ok
15:55:58.0137 2944 [ 109C0DFB82C3632FBD11949B73AEEAC9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
15:55:58.0163 2944 IRENUM - ok
15:55:58.0196 2944 [ 350FCA7E73CF65BCEF43FAE1E4E91293 ] isapnp C:\Windows\system32\drivers\isapnp.sys
15:55:58.0244 2944 isapnp - ok
15:55:58.0293 2944 [ 232FA340531D940AAC623B121A595034 ] iScsiPrt C:\Windows\system32\DRIVERS\msiscsi.sys
15:55:58.0322 2944 iScsiPrt - ok
15:55:58.0354 2944 [ BCED60D16156E428F8DF8CF27B0DF150 ] iteatapi C:\Windows\system32\drivers\iteatapi.sys
15:55:58.0355 2944 iteatapi - ok
15:55:58.0408 2944 [ 06FA654504A498C30ADCA8BEC4E87E7E ] iteraid C:\Windows\system32\drivers\iteraid.sys
15:55:58.0409 2944 iteraid - ok
15:55:58.0432 2944 [ 37605E0A8CF00CBBA538E753E4344C6E ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
15:55:58.0436 2944 kbdclass - ok
15:55:58.0469 2944 [ EDE59EC70E25C24581ADD1FBEC7325F7 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
15:55:58.0471 2944 kbdhid - ok
15:55:58.0512 2944 [ A3E186B4B935905B829219502557314E ] KeyIso C:\Windows\system32\lsass.exe
15:55:58.0516 2944 KeyIso - ok
15:55:58.0654 2944 [ 4A1445EFA932A3BAF5BDB02D7131EE20 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
15:55:58.0658 2944 KSecDD - ok
15:55:58.0715 2944 [ 8078F8F8F7A79E2E6B494523A828C585 ] KtmRm C:\Windows\system32\msdtckrm.dll
15:55:58.0720 2944 KtmRm - ok
15:55:58.0772 2944 [ 1BF5EEBFD518DD7298434D8C862F825D ] LanmanServer C:\Windows\system32\srvsvc.dll
15:55:58.0777 2944 LanmanServer - ok
15:55:58.0850 2944 [ 1DB69705B695B987082C8BAEC0C6B34F ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
15:55:58.0856 2944 LanmanWorkstation - ok
15:55:58.0909 2944 [ 05C10E70B437841F31E1BFA8812895BA ] libusb0 C:\Windows\system32\DRIVERS\libusb0.sys
15:55:58.0910 2944 libusb0 - ok
15:55:58.0958 2944 [ 559C9B7800FAC92FC515CD0003D7C631 ] LightScribeService C:\Program Files\Common Files\LightScribe\LSSrvc.exe
15:55:58.0962 2944 LightScribeService - ok
15:55:59.0002 2944 [ D1C5883087A0C3F1344D9D55A44901F6 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
15:55:59.0029 2944 lltdio - ok
15:55:59.0054 2944 [ 2D5A428872F1442631D0959A34ABFF63 ] lltdsvc C:\Windows\System32\lltdsvc.dll
15:55:59.0063 2944 lltdsvc - ok
15:55:59.0103 2944 [ 35D40113E4A5B961B6CE5C5857702518 ] lmhosts C:\Windows\System32\lmhsvc.dll
15:55:59.0107 2944 lmhosts - ok
15:55:59.0143 2944 [ A2262FB9F28935E862B4DB46438C80D2 ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
15:55:59.0177 2944 LSI_FC - ok
15:55:59.0261 2944 [ 30D73327D390F72A62F32C103DAF1D6D ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
15:55:59.0308 2944 LSI_SAS - ok
15:55:59.0336 2944 [ E1E36FEFD45849A95F1AB81DE0159FE3 ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
15:55:59.0364 2944 LSI_SCSI - ok
15:55:59.0418 2944 [ 8F5C7426567798E62A3B3614965D62CC ] luafv C:\Windows\system32\drivers\luafv.sys
15:55:59.0446 2944 luafv - ok
15:55:59.0474 2944 [ AEF9BABB8A506BC4CE0451A64AADED46 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
15:55:59.0493 2944 Mcx2Svc - ok
15:55:59.0604 2944 [ 11F714F85530A2BD134074DC30E99FCA ] MDM C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
15:55:59.0615 2944 MDM - ok
15:55:59.0661 2944 [ 0CEA2D0D3FA284B85ED5B68365114F76 ] mdmxsdk C:\Windows\system32\DRIVERS\mdmxsdk.sys
15:55:59.0664 2944 mdmxsdk - ok
15:55:59.0701 2944 [ D153B14FC6598EAE8422A2037553ADCE ] megasas C:\Windows\system32\drivers\megasas.sys
15:55:59.0729 2944 megasas - ok
15:55:59.0763 2944 [ 1076FFCFFAAE8385FD62DFCB25AC4708 ] MMCSS C:\Windows\system32\mmcss.dll
15:55:59.0768 2944 MMCSS - ok
15:55:59.0802 2944 [ E13B5EA0F51BA5B1512EC671393D09BA ] Modem C:\Windows\system32\drivers\modem.sys
15:55:59.0803 2944 Modem - ok
15:55:59.0861 2944 [ 0A9BB33B56E294F686ABB7C1E4E2D8A8 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
15:55:59.0863 2944 monitor - ok
15:55:59.0887 2944 [ 5BF6A1326A335C5298477754A506D263 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
15:55:59.0888 2944 mouclass - ok
15:55:59.0908 2944 [ 93B8D4869E12CFBE663915502900876F ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
15:55:59.0909 2944 mouhid - ok
15:55:59.0948 2944 [ BDAFC88AA6B92F7842416EA6A48E1600 ] MountMgr C:\Windows\system32\drivers\mountmgr.sys
15:55:59.0983 2944 MountMgr - ok
15:56:00.0090 2944 [ CB8AF049AC9BE419A77ADAE288673359 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
15:56:00.0104 2944 MozillaMaintenance - ok
15:56:00.0149 2944 [ 583A41F26278D9E0EA548163D6139397 ] mpio C:\Windows\system32\drivers\mpio.sys
15:56:00.0177 2944 mpio - ok
15:56:00.0215 2944 [ 22241FEBA9B2DEFA669C8CB0A8DD7D2E ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
15:56:00.0316 2944 mpsdrv - ok
15:56:00.0381 2944 [ 5DE62C6E9108F14F6794060A9BDECAEC ] MpsSvc C:\Windows\system32\mpssvc.dll
15:56:00.0387 2944 MpsSvc - ok
15:56:00.0444 2944 [ 4FBBB70D30FD20EC51F80061703B001E ] Mraid35x C:\Windows\system32\drivers\mraid35x.sys
15:56:00.0483 2944 Mraid35x - ok
15:56:00.0523 2944 [ 82CEA0395524AACFEB58BA1448E8325C ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
15:56:00.0556 2944 MRxDAV - ok
15:56:00.0596 2944 [ 1E94971C4B446AB2290DEB71D01CF0C2 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
15:56:00.0598 2944 mrxsmb - ok
15:56:00.0694 2944 [ 4FCCB34D793B116423209C0F8B7A3B03 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
15:56:00.0696 2944 mrxsmb10 - ok
15:56:00.0733 2944 [ C3CB1B40AD4A0124D617A1199B0B9D7C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
15:56:00.0735 2944 mrxsmb20 - ok
15:56:00.0776 2944 [ 5457DCFA7C0DA43522F4D9D4049C1472 ] msahci C:\Windows\system32\drivers\msahci.sys
15:56:00.0777 2944 msahci - ok
15:56:00.0828 2944 [ 3FC82A2AE4CC149165A94699183D3028 ] msdsm C:\Windows\system32\drivers\msdsm.sys
15:56:00.0882 2944 msdsm - ok
15:56:00.0914 2944 [ FD7520CC3A80C5FC8C48852BB24C6DED ] MSDTC C:\Windows\System32\msdtc.exe
15:56:00.0921 2944 MSDTC - ok
15:56:00.0959 2944 [ A9927F4A46B816C92F461ACB90CF8515 ] Msfs C:\Windows\system32\drivers\Msfs.sys
15:56:00.0961 2944 Msfs - ok
15:56:01.0003 2944 [ 0F400E306F385C56317357D6DEA56F62 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
15:56:01.0004 2944 msisadrv - ok
15:56:01.0038 2944 [ 85466C0757A23D9A9AECDC0755203CB2 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
15:56:01.0044 2944 MSiSCSI - ok
15:56:01.0051 2944 msiserver - ok
15:56:01.0082 2944 [ D8C63D34D9C9E56C059E24EC7185CC07 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
15:56:01.0083 2944 MSKSSRV - ok
15:56:01.0117 2944 [ 1D373C90D62DDB641D50E55B9E78D65E ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
15:56:01.0118 2944 MSPCLOCK - ok
15:56:01.0135 2944 [ B572DA05BF4E098D4BBA3A4734FB505B ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
15:56:01.0139 2944 MSPQM - ok
15:56:01.0180 2944 [ B49456D70555DE905C311BCDA6EC6ADB ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
15:56:01.0184 2944 MsRPC - ok
15:56:01.0299 2944 [ E384487CB84BE41D09711C30CA79646C ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
15:56:01.0300 2944 mssmbios - ok
15:56:01.0324 2944 [ 7199C1EEC1E4993CAF96B8C0A26BD58A ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
15:56:01.0357 2944 MSTEE - ok
15:56:01.0419 2944 [ 6A57B5733D4CB702C8EA4542E836B96C ] Mup C:\Windows\system32\Drivers\mup.sys
15:56:01.0462 2944 Mup - ok
15:56:01.0515 2944 [ E4EAF0C5C1B41B5C83386CF212CA9584 ] napagent C:\Windows\system32\qagentRT.dll
15:56:01.0523 2944 napagent - ok
15:56:01.0593 2944 [ 85C44FDFF9CF7E72A40DCB7EC06A4416 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
15:56:01.0638 2944 NativeWifiP - ok
15:56:01.0718 2944 [ 1357274D1883F68300AEADD15D7BBB42 ] NDIS C:\Windows\system32\drivers\ndis.sys
15:56:01.0724 2944 NDIS - ok
15:56:01.0790 2944 [ 0E186E90404980569FB449BA7519AE61 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
15:56:01.0793 2944 NdisTapi - ok
15:56:01.0821 2944 [ D6973AA34C4D5D76C0430B181C3CD389 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
15:56:01.0863 2944 Ndisuio - ok
15:56:01.0941 2944 [ 818F648618AE34F729FDB47EC68345C3 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
15:56:01.0985 2944 NdisWan - ok
15:56:02.0050 2944 [ 71DAB552B41936358F3B541AE5997FB3 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
15:56:02.0102 2944 NDProxy - ok
15:56:02.0165 2944 [ 51C6D8BFBD4EA5B62A1BA7F4469250D3 ] Net Driver HPZ12 C:\Windows\system32\HPZinw12.dll
15:56:02.0168 2944 Net Driver HPZ12 - ok
15:56:02.0205 2944 [ BCD093A5A6777CF626434568DC7DBA78 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
15:56:02.0231 2944 NetBIOS - ok
15:56:02.0290 2944 [ ECD64230A59CBD93C85F1CD1CAB9F3F6 ] netbt C:\Windows\system32\DRIVERS\netbt.sys
15:56:02.0294 2944 netbt - ok
15:56:02.0315 2944 [ A3E186B4B935905B829219502557314E ] Netlogon C:\Windows\system32\lsass.exe
15:56:02.0318 2944 Netlogon - ok
15:56:02.0360 2944 [ C8052711DAECC48B982434C5116CA401 ] Netman C:\Windows\System32\netman.dll
15:56:02.0375 2944 Netman - ok
15:56:02.0455 2944 [ 2EF3BBE22E5A5ACD1428EE387A0D0172 ] netprofm C:\Windows\System32\netprofm.dll
15:56:02.0459 2944 netprofm - ok
15:56:02.0493 2944 [ D6C4E4A39A36029AC0813D476FBD0248 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
15:56:02.0500 2944 NetTcpPortSharing - ok
15:56:02.0701 2944 [ ACC6170D80C69E50145B370023B64ED3 ] NETw3v32 C:\Windows\system32\DRIVERS\NETw3v32.sys
15:56:02.0779 2944 NETw3v32 - ok
15:56:02.0858 2944 [ 2E7FB731D4790A1BC6270ACCEFACB36E ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
15:56:02.0860 2944 nfrd960 - ok
15:56:02.0901 2944 [ 2997B15415F9BBE05B5A4C1C85E0C6A2 ] NlaSvc C:\Windows\System32\nlasvc.dll
15:56:02.0905 2944 NlaSvc - ok
15:56:02.0957 2944 [ D36F239D7CCE1931598E8FB90A0DBC26 ] Npfs C:\Windows\system32\drivers\Npfs.sys
15:56:02.0984 2944 Npfs - ok
15:56:03.0047 2944 [ 8BB86F0C7EEA2BDED6FE095D0B4CA9BD ] nsi C:\Windows\system32\nsisvc.dll
15:56:03.0054 2944 nsi - ok
15:56:03.0093 2944 [ 609773E344A97410CE4EBF74A8914FCF ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
15:56:03.0129 2944 nsiproxy - ok
15:56:03.0223 2944 [ 6A4A98CEE84CF9E99564510DDA4BAA47 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
15:56:03.0328 2944 Ntfs - ok
15:56:03.0369 2944 [ E875C093AEC0C978A90F30C9E0DFBB72 ] ntrigdigi C:\Windows\system32\drivers\ntrigdigi.sys
15:56:03.0406 2944 ntrigdigi - ok
15:56:03.0468 2944 [ 20623A75F3C6C1076EBBA64DD8C4BC02 ] NuidFltr C:\Windows\system32\DRIVERS\NuidFltr.sys
15:56:03.0469 2944 NuidFltr - ok
15:56:03.0504 2944 [ C5DBBCDA07D780BDA9B685DF333BB41E ] Null C:\Windows\system32\drivers\Null.sys
15:56:03.0506 2944 Null - ok
15:56:03.0929 2944 [ D65BC32C1795191B7F2B028351AB4FE2 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
15:56:04.0233 2944 nvlddmkm - ok
15:56:04.0286 2944 [ E69E946F80C1C31C53003BFBF50CBB7C ] nvraid C:\Windows\system32\drivers\nvraid.sys
15:56:04.0300 2944 nvraid - ok
15:56:04.0319 2944 [ 9E0BA19A28C498A6D323D065DB76DFFC ] nvstor C:\Windows\system32\drivers\nvstor.sys
15:56:04.0347 2944 nvstor - ok
15:56:04.0406 2944 [ A8C043670699C956D56B9F1F3DAEFC98 ] nvsvc C:\Windows\system32\nvvsvc.exe
15:56:04.0411 2944 nvsvc - ok
15:56:04.0436 2944 [ 07C186427EB8FCC3D8D7927187F260F7 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
15:56:04.0465 2944 nv_agp - ok
15:56:04.0472 2944 NwlnkFlt - ok
15:56:04.0484 2944 NwlnkFwd - ok
15:56:04.0538 2944 [ 6F310E890D46E246E0E261A63D9B36B4 ] ohci1394 C:\Windows\system32\DRIVERS\ohci1394.sys
15:56:04.0544 2944 ohci1394 - ok
15:56:04.0585 2944 [ 7A56CF3E3F12E8AF599963B16F50FB6A ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
15:56:04.0591 2944 ose - ok
15:56:04.0640 2944 [ 0C8E8E61AD1EB0B250B846712C917506 ] p2pimsvc C:\Windows\system32\p2psvc.dll
15:56:04.0659 2944 p2pimsvc - ok
Re: spomalený NB, prosím o pomoc
15:56:04.0679 2944 [ 0C8E8E61AD1EB0B250B846712C917506 ] p2psvc C:\Windows\system32\p2psvc.dll
15:56:04.0689 2944 p2psvc - ok
15:56:04.0737 2944 [ 0FA9B5055484649D63C303FE404E5F4D ] Parport C:\Windows\system32\drivers\parport.sys
15:56:04.0770 2944 Parport - ok
15:56:04.0806 2944 [ B9C2B89F08670E159F7181891E449CD9 ] partmgr C:\Windows\system32\drivers\partmgr.sys
15:56:04.0824 2944 partmgr - ok
15:56:04.0849 2944 [ 4F9A6A8A31413180D0FCB279AD5D8112 ] Parvdm C:\Windows\system32\drivers\parvdm.sys
15:56:04.0877 2944 Parvdm - ok
15:56:04.0935 2944 [ C6276AD11F4BB49B58AA1ED88537F14A ] PcaSvc C:\Windows\System32\pcasvc.dll
15:56:04.0938 2944 PcaSvc - ok
15:56:05.0020 2944 [ 941DC1D19E7E8620F40BBC206981EFDB ] pci C:\Windows\system32\drivers\pci.sys
15:56:05.0037 2944 pci - ok
15:56:05.0071 2944 [ 3B1901E401473E03EB8C874271E50C26 ] pciide C:\Windows\system32\drivers\pciide.sys
15:56:05.0073 2944 pciide - ok
15:56:05.0092 2944 [ E6F3FB1B86AA519E7698AD05E58B04E5 ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
15:56:05.0124 2944 pcmcia - ok
15:56:05.0188 2944 [ 6349F6ED9C623B44B52EA3C63C831A92 ] PEAUTH C:\Windows\system32\drivers\peauth.sys
15:56:05.0232 2944 PEAUTH - ok
15:56:05.0455 2944 [ B1689DF169143F57053F795390C99DB3 ] pla C:\Windows\system32\pla.dll
15:56:05.0558 2944 pla - ok
15:56:05.0655 2944 [ C5E7F8A996EC0A82D508FD9064A5569E ] PlugPlay C:\Windows\system32\umpnpmgr.dll
15:56:05.0662 2944 PlugPlay - ok
15:56:05.0701 2944 [ 79834AA2FBF9FE81EEBB229024F6F7FC ] Pml Driver HPZ12 C:\Windows\system32\HPZipm12.dll
15:56:05.0705 2944 Pml Driver HPZ12 - ok
15:56:05.0770 2944 [ 0C8E8E61AD1EB0B250B846712C917506 ] PNRPAutoReg C:\Windows\system32\p2psvc.dll
15:56:05.0779 2944 PNRPAutoReg - ok
15:56:05.0904 2944 [ 0C8E8E61AD1EB0B250B846712C917506 ] PNRPsvc C:\Windows\system32\p2psvc.dll
15:56:05.0911 2944 PNRPsvc - ok
15:56:05.0991 2944 [ D0494460421A03CD5225CCA0059AA146 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
15:56:05.0998 2944 PolicyAgent - ok
15:56:06.0032 2944 [ ECFFFAEC0C1ECD8DBC77F39070EA1DB1 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
15:56:06.0063 2944 PptpMiniport - ok
15:56:06.0119 2944 [ 0E3CEF5D28B40CF273281D620C50700A ] Processor C:\Windows\system32\drivers\processr.sys
15:56:06.0134 2944 Processor - ok
15:56:06.0156 2944 [ 0508FAA222D28835310B7BFCA7A77346 ] ProfSvc C:\Windows\system32\profsvc.dll
15:56:06.0163 2944 ProfSvc - ok
15:56:06.0196 2944 [ A3E186B4B935905B829219502557314E ] ProtectedStorage C:\Windows\system32\lsass.exe
15:56:06.0202 2944 ProtectedStorage - ok
15:56:06.0232 2944 [ 99514FAA8DF93D34B5589187DB3AA0BA ] PSched C:\Windows\system32\DRIVERS\pacer.sys
15:56:06.0233 2944 PSched - ok
15:56:06.0291 2944 [ CCDAC889326317792480C0A67156A1EC ] ql2300 C:\Windows\system32\drivers\ql2300.sys
15:56:06.0357 2944 ql2300 - ok
15:56:06.0384 2944 [ 81A7E5C076E59995D54BC1ED3A16E60B ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
15:56:06.0414 2944 ql40xx - ok
15:56:06.0448 2944 [ E9ECAE663F47E6CB43962D18AB18890F ] QWAVE C:\Windows\system32\qwave.dll
15:56:06.0463 2944 QWAVE - ok
15:56:06.0527 2944 [ 9F5E0E1926014D17486901C88ECA2DB7 ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
15:56:06.0554 2944 QWAVEdrv - ok
15:56:06.0592 2944 [ 147D7F9C556D259924351FEB0DE606C3 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
15:56:06.0594 2944 RasAcd - ok
15:56:06.0626 2944 [ F6A452EB4CEADBB51C9E0EE6B3ECEF0F ] RasAuto C:\Windows\System32\rasauto.dll
15:56:06.0634 2944 RasAuto - ok
15:56:06.0681 2944 [ A214ADBAF4CB47DD2728859EF31F26B0 ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
15:56:06.0683 2944 Rasl2tp - ok
15:56:06.0730 2944 [ 75D47445D70CA6F9F894B032FBC64FCF ] RasMan C:\Windows\System32\rasmans.dll
15:56:06.0737 2944 RasMan - ok
15:56:06.0773 2944 [ 509A98DD18AF4375E1FC40BC175F1DEF ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
15:56:06.0801 2944 RasPppoe - ok
15:56:06.0843 2944 [ 2005F4A1E05FA09389AC85840F0A9E4D ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
15:56:06.0846 2944 RasSstp - ok
15:56:06.0885 2944 [ B14C9D5B9ADD2F84F70570BBBFAA7935 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
15:56:06.0907 2944 rdbss - ok
15:56:06.0961 2944 [ 89E59BE9A564262A3FB6C4F4F1CD9899 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
15:56:06.0963 2944 RDPCDD - ok
15:56:07.0002 2944 [ E8BD98D46F2ED77132BA927FCCB47D8B ] rdpdr C:\Windows\system32\drivers\rdpdr.sys
15:56:07.0079 2944 rdpdr - ok
15:56:07.0129 2944 [ 9D91FE5286F748862ECFFA05F8A0710C ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
15:56:07.0158 2944 RDPENCDD - ok
15:56:07.0225 2944 [ C127EBD5AFAB31524662C48DFCEB773A ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
15:56:07.0258 2944 RDPWD - ok
15:56:07.0327 2944 [ BCDD6B4804D06B1F7EBF29E53A57ECE9 ] RemoteAccess C:\Windows\System32\mprdim.dll
15:56:07.0334 2944 RemoteAccess - ok
15:56:07.0394 2944 [ 9E6894EA18DAFF37B63E1005F83AE4AB ] RemoteRegistry C:\Windows\system32\regsvc.dll
15:56:07.0403 2944 RemoteRegistry - ok
15:56:07.0447 2944 [ D85E3FA9F5B1F29BB4ED185C450D1470 ] rimmptsk C:\Windows\system32\DRIVERS\rimmptsk.sys
15:56:07.0456 2944 rimmptsk - ok
15:56:07.0472 2944 [ DB8EB01C58C9FADA00C70B1775278AE0 ] rimsptsk C:\Windows\system32\DRIVERS\rimsptsk.sys
15:56:07.0500 2944 rimsptsk - ok
15:56:07.0535 2944 [ 6C1F93C0760C9F79A1869D07233DF39D ] rismxdp C:\Windows\system32\DRIVERS\rixdptsk.sys
15:56:07.0586 2944 rismxdp - ok
15:56:07.0625 2944 [ 5123F83CBC4349D065534EEB6BBDC42B ] RpcLocator C:\Windows\system32\locator.exe
15:56:07.0639 2944 RpcLocator - ok
15:56:07.0719 2944 [ 3B5B4D53FEC14F7476CA29A20CC31AC9 ] RpcSs C:\Windows\system32\rpcss.dll
15:56:07.0726 2944 RpcSs - ok
15:56:07.0757 2944 [ 9C508F4074A39E8B4B31D27198146FAD ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
15:56:07.0797 2944 rspndr - ok
15:56:07.0814 2944 [ A3E186B4B935905B829219502557314E ] SamSs C:\Windows\system32\lsass.exe
15:56:07.0817 2944 SamSs - ok
15:56:07.0840 2944 SANDRA - ok
15:56:07.0887 2944 [ 37CA203F8CCF732CD272A27E55B268C4 ] sbp2port C:\Windows\system32\DRIVERS\sbp2port.sys
15:56:07.0904 2944 sbp2port - ok
15:56:07.0964 2944 [ 77B7A11A0C3D78D3386398FBBEA1B632 ] SCardSvr C:\Windows\System32\SCardSvr.dll
15:56:07.0972 2944 SCardSvr - ok
15:56:08.0018 2944 [ 1A58069DB21D05EB2AB58EE5753EBE8D ] Schedule C:\Windows\system32\schedsvc.dll
15:56:08.0026 2944 Schedule - ok
15:56:08.0062 2944 [ 312EC3E37A0A1F2006534913E37B4423 ] SCPolicySvc C:\Windows\System32\certprop.dll
15:56:08.0063 2944 SCPolicySvc - ok
15:56:08.0098 2944 [ 8F36B54688C31EED4580129040C6A3D3 ] sdbus C:\Windows\system32\DRIVERS\sdbus.sys
15:56:08.0128 2944 sdbus - ok
15:56:08.0195 2944 [ 716313D9F6B0529D03F726D5AAF6F191 ] SDRSVC C:\Windows\System32\SDRSVC.dll
15:56:08.0204 2944 SDRSVC - ok
15:56:08.0282 2944 [ 90A3935D05B494A5A39D37E71F09A677 ] secdrv C:\Windows\system32\drivers\secdrv.sys
15:56:08.0297 2944 secdrv - ok
15:56:08.0330 2944 [ FD5199D4D8A521005E4B5EE7FE00FA9B ] seclogon C:\Windows\system32\seclogon.dll
15:56:08.0348 2944 seclogon - ok
15:56:08.0377 2944 [ A9BBAB5759771E523F55563D6CBE140F ] SENS C:\Windows\System32\sens.dll
15:56:08.0381 2944 SENS - ok
15:56:08.0404 2944 [ 68E44E331D46F0FB38F0863A84CD1A31 ] Serenum C:\Windows\system32\drivers\serenum.sys
15:56:08.0415 2944 Serenum - ok
15:56:08.0433 2944 [ C70D69A918B178D3C3B06339B40C2E1B ] Serial C:\Windows\system32\drivers\serial.sys
15:56:08.0436 2944 Serial - ok
15:56:08.0459 2944 [ 8AF3D28A879BF75DB53A0EE7A4289624 ] sermouse C:\Windows\system32\drivers\sermouse.sys
15:56:08.0460 2944 sermouse - ok
15:56:08.0537 2944 [ D2193326F729B163125610DBF3E17D57 ] SessionEnv C:\Windows\system32\sessenv.dll
15:56:08.0544 2944 SessionEnv - ok
15:56:08.0582 2944 [ 3EFA810BDCA87F6ECC24F9832243FE86 ] sffdisk C:\Windows\system32\DRIVERS\sffdisk.sys
15:56:08.0600 2944 sffdisk - ok
15:56:08.0621 2944 [ 8FD08A310645FE872EEEC6E08C6BF3EE ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
15:56:08.0623 2944 sffp_mmc - ok
15:56:08.0655 2944 [ 9F66A46C55D6F1CCABC79BB7AFCCC545 ] sffp_sd C:\Windows\system32\DRIVERS\sffp_sd.sys
15:56:08.0682 2944 sffp_sd - ok
15:56:08.0714 2944 [ 46ED8E91793B2E6F848015445A0AC188 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
15:56:08.0731 2944 sfloppy - ok
15:56:08.0755 2944 [ E1499BD0FF76B1B2FBBF1AF339D91165 ] SharedAccess C:\Windows\System32\ipnathlp.dll
15:56:08.0766 2944 SharedAccess - ok
15:56:08.0824 2944 [ C7230FBEE14437716701C15BE02C27B8 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
15:56:08.0834 2944 ShellHWDetection - ok
15:56:08.0894 2944 [ D2A595D6EEBEEAF4334F8E50EFBC9931 ] sisagp C:\Windows\system32\drivers\sisagp.sys
15:56:08.0897 2944 sisagp - ok
15:56:08.0920 2944 [ CEDD6F4E7D84E9F98B34B3FE988373AA ] SiSRaid2 C:\Windows\system32\drivers\sisraid2.sys
15:56:08.0922 2944 SiSRaid2 - ok
15:56:08.0941 2944 [ DF843C528C4F69D12CE41CE462E973A7 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
15:56:08.0944 2944 SiSRaid4 - ok
15:56:09.0010 2944 [ F07AF60B152221472FBDB2FECEC4896D ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe
15:56:09.0014 2944 SkypeUpdate - ok
15:56:09.0301 2944 [ 862BB4CBC05D80C5B45BE430E5EF872F ] slsvc C:\Windows\system32\SLsvc.exe
15:56:09.0434 2944 slsvc - ok
15:56:09.0479 2944 [ 6EDC422215CD78AA8A9CDE6B30ABBD35 ] SLUINotify C:\Windows\system32\SLUINotify.dll
15:56:09.0486 2944 SLUINotify - ok
15:56:09.0513 2944 [ 7B75299A4D201D6A6533603D6914AB04 ] Smb C:\Windows\system32\DRIVERS\smb.sys
15:56:09.0517 2944 Smb - ok
15:56:09.0572 2944 [ 2A146A055B4401C16EE62D18B8E2A032 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
15:56:09.0583 2944 SNMPTRAP - ok
15:56:09.0640 2944 [ 7AEBDEEF071FE28B0EEF2CDD69102BFF ] spldr C:\Windows\system32\drivers\spldr.sys
15:56:09.0642 2944 spldr - ok
15:56:09.0674 2944 [ 8554097E5136C3BF9F69FE578A1B35F4 ] Spooler C:\Windows\System32\spoolsv.exe
15:56:09.0679 2944 Spooler - ok
15:56:09.0758 2944 [ 71E276F6D189413266EA22171806597B ] sptd C:\Windows\system32\Drivers\sptd.sys
15:56:09.0758 2944 Suspicious file (NoAccess): C:\Windows\system32\Drivers\sptd.sys. md5: 71E276F6D189413266EA22171806597B
15:56:09.0761 2944 sptd ( LockedFile.Multi.Generic ) - warning
15:56:09.0762 2944 sptd - detected LockedFile.Multi.Generic (1)
15:56:09.0835 2944 [ 41987F9FC0E61ADF54F581E15029AD91 ] srv C:\Windows\system32\DRIVERS\srv.sys
15:56:09.0897 2944 srv - ok
15:56:09.0933 2944 [ FF33AFF99564B1AA534F58868CBE41EF ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
15:56:09.0964 2944 srv2 - ok
15:56:09.0983 2944 [ 7605C0E1D01A08F3ECD743F38B834A44 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
15:56:09.0986 2944 srvnet - ok
15:56:10.0024 2944 [ 03D50B37234967433A5EA5BA72BC0B62 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
15:56:10.0029 2944 SSDPSRV - ok
15:56:10.0106 2944 [ 6F1A32E7B7B30F004D9A20AFADB14944 ] SstpSvc C:\Windows\system32\sstpsvc.dll
15:56:10.0113 2944 SstpSvc - ok
15:56:10.0203 2944 [ 5DE7D67E49B88F5F07F3E53C4B92A352 ] stisvc C:\Windows\System32\wiaservc.dll
15:56:10.0212 2944 stisvc - ok
15:56:10.0217 2944 stllssvr - ok
15:56:10.0236 2944 [ 7BA58ECF0C0A9A69D44B3DCA62BECF56 ] swenum C:\Windows\system32\DRIVERS\swenum.sys
15:56:10.0251 2944 swenum - ok
15:56:10.0291 2944 [ F21FD248040681CCA1FB6C9A03AAA93D ] swprv C:\Windows\System32\swprv.dll
15:56:10.0297 2944 swprv - ok
15:56:10.0340 2944 [ 192AA3AC01DF071B541094F251DEED10 ] Symc8xx C:\Windows\system32\drivers\symc8xx.sys
15:56:10.0342 2944 Symc8xx - ok
15:56:10.0357 2944 [ 8C8EB8C76736EBAF3B13B633B2E64125 ] Sym_hi C:\Windows\system32\drivers\sym_hi.sys
15:56:10.0359 2944 Sym_hi - ok
15:56:10.0379 2944 [ 8072AF52B5FD103BBBA387A1E49F62CB ] Sym_u3 C:\Windows\system32\drivers\sym_u3.sys
15:56:10.0381 2944 Sym_u3 - ok
15:56:10.0420 2944 [ F5D926807BD9BC0AF68F9376144DE425 ] SynTP C:\Windows\system32\DRIVERS\SynTP.sys
15:56:10.0430 2944 SynTP - ok
15:56:10.0508 2944 [ 9A51B04E9886AA4EE90093586B0BA88D ] SysMain C:\Windows\system32\sysmain.dll
15:56:10.0517 2944 SysMain - ok
15:56:10.0559 2944 [ 2DCA225EAE15F42C0933E998EE0231C3 ] TabletInputService C:\Windows\System32\TabSvc.dll
15:56:10.0563 2944 TabletInputService - ok
15:56:10.0623 2944 [ D7673E4B38CE21EE54C59EEEB65E2483 ] TapiSrv C:\Windows\System32\tapisrv.dll
15:56:10.0629 2944 TapiSrv - ok
15:56:10.0659 2944 [ CB05822CD9CC6C688168E113C603DBE7 ] TBS C:\Windows\System32\tbssvc.dll
15:56:10.0664 2944 TBS - ok
15:56:10.0750 2944 [ 27D470DABC77BC60D0A3B0E4DEB6CB91 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
15:56:10.0783 2944 Tcpip - ok
15:56:10.0850 2944 [ 27D470DABC77BC60D0A3B0E4DEB6CB91 ] Tcpip6 C:\Windows\system32\DRIVERS\tcpip.sys
15:56:10.0858 2944 Tcpip6 - ok
15:56:10.0906 2944 [ 608C345A255D82A6289C2D468EB41FD7 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
15:56:10.0924 2944 tcpipreg - ok
15:56:10.0958 2944 [ 5DCF5E267BE67A1AE926F2DF77FBCC56 ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
15:56:10.0985 2944 TDPIPE - ok
15:56:11.0050 2944 [ 389C63E32B3CEFED425B61ED92D3F021 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
15:56:11.0114 2944 TDTCP - ok
15:56:11.0160 2944 [ 76B06EB8A01FC8624D699E7045303E54 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
15:56:11.0189 2944 tdx - ok
15:56:11.0234 2944 [ 3CAD38910468EAB9A6479E2F01DB43C7 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
15:56:11.0251 2944 TermDD - ok
15:56:11.0311 2944 [ BB95DA09BEF6E7A131BFF3BA5032090D ] TermService C:\Windows\System32\termsrv.dll
15:56:11.0318 2944 TermService - ok
15:56:11.0375 2944 [ C7230FBEE14437716701C15BE02C27B8 ] Themes C:\Windows\system32\shsvcs.dll
15:56:11.0384 2944 Themes - ok
15:56:11.0428 2944 [ 1076FFCFFAAE8385FD62DFCB25AC4708 ] THREADORDER C:\Windows\system32\mmcss.dll
15:56:11.0431 2944 THREADORDER - ok
15:56:11.0496 2944 [ EC74E77D0EB004BD3A809B5F8FB8C2CE ] TrkWks C:\Windows\System32\trkwks.dll
15:56:11.0500 2944 TrkWks - ok
15:56:11.0658 2944 [ 97D9D6A04E3AD9B6C626B9931DB78DBA ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
15:56:11.0663 2944 TrustedInstaller - ok
15:56:11.0709 2944 [ DCF0F056A2E4F52287264F5AB29CF206 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
15:56:11.0737 2944 tssecsrv - ok
15:56:11.0796 2944 [ CAECC0120AC49E3D2F758B9169872D38 ] tunmp C:\Windows\system32\DRIVERS\tunmp.sys
15:56:11.0824 2944 tunmp - ok
15:56:11.0875 2944 [ 300DB877AC094FEAB0BE7688C3454A9C ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
15:56:11.0898 2944 tunnel - ok
15:56:11.0944 2944 [ C3ADE15414120033A36C0F293D4A4121 ] uagp35 C:\Windows\system32\drivers\uagp35.sys
15:56:12.0009 2944 uagp35 - ok
15:56:12.0054 2944 [ D9728AF68C4C7693CB100B8441CBDEC6 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
15:56:12.0070 2944 udfs - ok
15:56:12.0115 2944 [ ECEF404F62863755951E09C802C94AD5 ] UI0Detect C:\Windows\system32\UI0Detect.exe
15:56:12.0136 2944 UI0Detect - ok
15:56:12.0161 2944 UIUSys - ok
15:56:12.0186 2944 [ 75E6890EBFCE0841D3291B02E7A8BDB0 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
15:56:12.0215 2944 uliagpkx - ok
15:56:12.0258 2944 [ 3CD4EA35A6221B85DCC25DAA46313F8D ] uliahci C:\Windows\system32\drivers\uliahci.sys
15:56:12.0291 2944 uliahci - ok
15:56:12.0305 2944 [ 8514D0E5CD0534467C5FC61BE94A569F ] UlSata C:\Windows\system32\drivers\ulsata.sys
15:56:12.0359 2944 UlSata - ok
15:56:12.0402 2944 [ 38C3C6E62B157A6BC46594FADA45C62B ] ulsata2 C:\Windows\system32\drivers\ulsata2.sys
15:56:12.0446 2944 ulsata2 - ok
15:56:12.0523 2944 [ 32CFF9F809AE9AED85464492BF3E32D2 ] umbus C:\Windows\system32\DRIVERS\umbus.sys
15:56:12.0526 2944 umbus - ok
15:56:12.0571 2944 [ 68308183F4AE0BE7BF8ECD07CB297999 ] upnphost C:\Windows\System32\upnphost.dll
15:56:12.0577 2944 upnphost - ok
15:56:12.0638 2944 [ CAF811AE4C147FFCD5B51750C7F09142 ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
15:56:12.0641 2944 usbccgp - ok
15:56:12.0665 2944 [ E9476E6C486E76BC4898074768FB7131 ] usbcir C:\Windows\system32\drivers\usbcir.sys
15:56:12.0693 2944 usbcir - ok
15:56:12.0742 2944 [ 79E96C23A97CE7B8F14D310DA2DB0C9B ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
15:56:12.0744 2944 usbehci - ok
15:56:12.0767 2944 [ 4673BBCB006AF60E7ABDDBE7A130BA42 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
15:56:12.0800 2944 usbhub - ok
15:56:12.0827 2944 [ 38DBC7DD6CC5A72011F187425384388B ] usbohci C:\Windows\system32\drivers\usbohci.sys
15:56:12.0854 2944 usbohci - ok
15:56:12.0878 2944 [ B51E52ACF758BE00EF3A58EA452FE360 ] usbprint C:\Windows\system32\drivers\usbprint.sys
15:56:12.0896 2944 usbprint - ok
15:56:12.0921 2944 [ BE3DA31C191BC222D9AD503C5224F2AD ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
15:56:12.0950 2944 USBSTOR - ok
15:56:12.0990 2944 [ 814D653EFC4D48BE3B04A307ECEFF56F ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys
15:56:12.0991 2944 usbuhci - ok
15:56:13.0030 2944 [ E67998E8F14CB0627A769F6530BCB352 ] usbvideo C:\Windows\system32\Drivers\usbvideo.sys
15:56:13.0044 2944 usbvideo - ok
15:56:13.0075 2944 [ 1509E705F3AC1D474C92454A5C2DD81F ] UxSms C:\Windows\System32\uxsms.dll
15:56:13.0082 2944 UxSms - ok
15:56:13.0161 2944 [ CD88D1B7776DC17A119049742EC07EB4 ] vds C:\Windows\System32\vds.exe
15:56:13.0189 2944 vds - ok
15:56:13.0234 2944 [ 7D92BE0028ECDEDEC74617009084B5EF ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
15:56:13.0252 2944 vga - ok
15:56:13.0294 2944 [ 2E93AC0A1D8C79D019DB6C51F036636C ] VgaSave C:\Windows\System32\drivers\vga.sys
15:56:13.0296 2944 VgaSave - ok
15:56:13.0320 2944 [ 045D9961E591CF0674A920B6BA3BA5CB ] viaagp C:\Windows\system32\drivers\viaagp.sys
15:56:13.0349 2944 viaagp - ok
15:56:13.0380 2944 [ 56A4DE5F02F2E88182B0981119B4DD98 ] ViaC7 C:\Windows\system32\drivers\viac7.sys
15:56:13.0405 2944 ViaC7 - ok
15:56:13.0429 2944 [ FD2E3175FCADA350C7AB4521DCA187EC ] viaide C:\Windows\system32\drivers\viaide.sys
15:56:13.0431 2944 viaide - ok
15:56:13.0447 2944 [ 69503668AC66C77C6CD7AF86FBDF8C43 ] volmgr C:\Windows\system32\drivers\volmgr.sys
15:56:13.0449 2944 volmgr - ok
15:56:13.0527 2944 [ 23E41B834759917BFD6B9A0D625D0C28 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
15:56:13.0547 2944 volmgrx - ok
15:56:13.0637 2944 [ 147281C01FCB1DF9252DE2A10D5E7093 ] volsnap C:\Windows\system32\drivers\volsnap.sys
15:56:13.0643 2944 volsnap - ok
15:56:13.0669 2944 [ D984439746D42B30FC65A4C3546C6829 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
15:56:13.0699 2944 vsmraid - ok
15:56:13.0798 2944 [ DB3D19F850C6EB32BDCB9BC0836ACDDB ] VSS C:\Windows\system32\vssvc.exe
15:56:13.0886 2944 VSS - ok
15:56:14.0026 2944 [ 96EA68B9EB310A69C25EBB0282B2B9DE ] W32Time C:\Windows\system32\w32time.dll
15:56:14.0033 2944 W32Time - ok
15:56:14.0091 2944 [ 48DFEE8F1AF7C8235D4E626F0C4FE031 ] WacomPen C:\Windows\system32\drivers\wacompen.sys
15:56:14.0126 2944 WacomPen - ok
15:56:14.0165 2944 [ 55201897378CCA7AF8B5EFD874374A26 ] Wanarp C:\Windows\system32\DRIVERS\wanarp.sys
15:56:14.0182 2944 Wanarp - ok
15:56:14.0188 2944 [ 55201897378CCA7AF8B5EFD874374A26 ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
15:56:14.0191 2944 Wanarpv6 - ok
15:56:14.0278 2944 [ A3CD60FD826381B49F03832590E069AF ] wcncsvc C:\Windows\System32\wcncsvc.dll
15:56:14.0286 2944 wcncsvc - ok
15:56:14.0341 2944 [ 11BCB7AFCDD7AADACB5746F544D3A9C7 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
15:56:14.0351 2944 WcsPlugInService - ok
15:56:14.0380 2944 [ AFC5AD65B991C1E205CF25CFDBF7A6F4 ] Wd C:\Windows\system32\drivers\wd.sys
15:56:14.0408 2944 Wd - ok
15:56:14.0540 2944 [ B6F0A7AD6D4BD325FBCD8BAC96CD8D96 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
15:56:14.0664 2944 Wdf01000 - ok
15:56:14.0717 2944 [ ABFC76B48BB6C96E3338D8943C5D93B5 ] WdiServiceHost C:\Windows\system32\wdi.dll
15:56:14.0724 2944 WdiServiceHost - ok
15:56:14.0730 2944 [ ABFC76B48BB6C96E3338D8943C5D93B5 ] WdiSystemHost C:\Windows\system32\wdi.dll
15:56:14.0735 2944 WdiSystemHost - ok
15:56:14.0776 2944 [ 04C37D8107320312FBAE09926103D5E2 ] WebClient C:\Windows\System32\webclnt.dll
15:56:14.0784 2944 WebClient - ok
15:56:14.0848 2944 [ AE3736E7E8892241C23E4EBBB7453B60 ] Wecsvc C:\Windows\system32\wecsvc.dll
15:56:14.0853 2944 Wecsvc - ok
15:56:14.0897 2944 [ 670FF720071ED741206D69BD995EA453 ] wercplsupport C:\Windows\System32\wercplsupport.dll
15:56:14.0913 2944 wercplsupport - ok
15:56:14.0963 2944 [ 32B88481D3B326DA6DEB07B1D03481E7 ] WerSvc C:\Windows\System32\WerSvc.dll
15:56:14.0970 2944 WerSvc - ok
15:56:15.0069 2944 [ E096FFB754F1E45AE1BDDAC1275AE2C5 ] winachsf C:\Windows\system32\DRIVERS\HSX_CNXT.sys
15:56:15.0143 2944 winachsf - ok
15:56:15.0204 2944 [ 4575AA12561C5648483403541D0D7F2B ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll
15:56:15.0214 2944 WinDefend - ok
15:56:15.0222 2944 WinHttpAutoProxySvc - ok
15:56:15.0314 2944 [ 6B2A1D0E80110E3D04E6863C6E62FD8A ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
15:56:15.0329 2944 Winmgmt - ok
15:56:15.0424 2944 [ 7CFE68BDC065E55AA5E8421607037511 ] WinRM C:\Windows\system32\WsmSvc.dll
15:56:15.0479 2944 WinRM - ok
15:56:15.0601 2944 [ F514C1C9D814F3DB46A17C59EA8214B2 ] WiseBootAssistant C:\Program Files\Wise\Wise Care 365\BootTime.exe
15:56:15.0657 2944 WiseBootAssistant - ok
15:56:15.0732 2944 [ C008405E4FEEB069E30DA1D823910234 ] Wlansvc C:\Windows\System32\wlansvc.dll
15:56:15.0741 2944 Wlansvc - ok
15:56:15.0767 2944 [ 2E7255D172DF0B8283CDFB7B433B864E ] WmiAcpi C:\Windows\system32\DRIVERS\wmiacpi.sys
15:56:15.0768 2944 WmiAcpi - ok
15:56:15.0829 2944 [ 43BE3875207DCB62A85C8C49970B66CC ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
15:56:15.0837 2944 wmiApSrv - ok
15:56:15.0940 2944 [ 3978704576A121A9204F8CC49A301A9B ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
15:56:15.0974 2944 WMPNetworkSvc - ok
15:56:16.0047 2944 [ CFC5A04558F5070CEE3E3A7809F3FF52 ] WPCSvc C:\Windows\System32\wpcsvc.dll
15:56:16.0055 2944 WPCSvc - ok
15:56:16.0091 2944 [ 801FBDB89D472B3C467EB112A0FC9246 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
15:56:16.0097 2944 WPDBusEnum - ok
15:56:16.0150 2944 [ DE9D36F91A4DF3D911626643DEBF11EA ] WpdUsb C:\Windows\system32\DRIVERS\wpdusb.sys
15:56:16.0178 2944 WpdUsb - ok
15:56:16.0533 2944 [ DCF3E3EDF5109EE8BC02FE6E1F045795 ] WPFFontCache_v0400 C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
15:56:16.0578 2944 WPFFontCache_v0400 - ok
15:56:16.0645 2944 [ E3A3CB253C0EC2494D4A61F5E43A389C ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
15:56:16.0647 2944 ws2ifsl - ok
15:56:16.0681 2944 [ 1CA6C40261DDC0425987980D0CD2AAAB ] wscsvc C:\Windows\System32\wscsvc.dll
15:56:16.0688 2944 wscsvc - ok
15:56:16.0733 2944 [ 4422AC5ED8D4C2F0DB63E71D4C069DD7 ] WSDPrintDevice C:\Windows\system32\DRIVERS\WSDPrint.sys
15:56:16.0735 2944 WSDPrintDevice - ok
15:56:16.0787 2944 [ 65D1FF8AAFF4A7D8F787A290E5087816 ] WSDScan C:\Windows\system32\DRIVERS\WSDScan.sys
15:56:16.0804 2944 WSDScan - ok
15:56:16.0812 2944 WSearch - ok
15:56:17.0054 2944 [ FC3EC24FCE372C89423E015A2AC1A31E ] wuauserv C:\Windows\system32\wuaueng.dll
15:56:17.0153 2944 wuauserv - ok
15:56:17.0193 2944 [ AC13CB789D93412106B0FB6C7EB2BCB6 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
15:56:17.0199 2944 WUDFRd - ok
15:56:17.0230 2944 [ 575A4190D989F64732119E4114045A4F ] wudfsvc C:\Windows\System32\WUDFSvc.dll
15:56:17.0235 2944 wudfsvc - ok
15:56:17.0266 2944 [ 19E7C173B6242AD7521E537AE54768BF ] XAudio C:\Windows\system32\DRIVERS\xaudio.sys
15:56:17.0268 2944 XAudio - ok
15:56:17.0305 2944 [ CDA0BC78672B50C43649FF34E1FD0FF8 ] XAudioService C:\Windows\system32\DRIVERS\xaudio.exe
15:56:17.0309 2944 XAudioService - ok
15:56:17.0349 2944 ================ Scan global ===============================
15:56:17.0389 2944 [ F31EEBC1A1C81FD04005489CC3DCDFE7 ] C:\Windows\system32\basesrv.dll
15:56:17.0479 2944 [ D2293B069E4B63DC17B2F08D45E71124 ] C:\Windows\system32\winsrv.dll
15:56:17.0546 2944 [ D2293B069E4B63DC17B2F08D45E71124 ] C:\Windows\system32\winsrv.dll
15:56:17.0657 2944 [ D4E6D91C1349B7BFB3599A6ADA56851B ] C:\Windows\system32\services.exe
15:56:17.0666 2944 [Global] - ok
15:56:17.0666 2944 ================ Scan MBR ==================================
15:56:17.0680 2944 [ 1A1A06F62E891045814007163C1C76C3 ] \Device\Harddisk0\DR0
15:56:18.0814 2944 \Device\Harddisk0\DR0 - ok
15:56:18.0815 2944 ================ Scan VBR ==================================
15:56:18.0845 2944 [ B9100678EAA0131454E0BFFC3F70FB12 ] \Device\Harddisk0\DR0\Partition1
15:56:18.0864 2944 \Device\Harddisk0\DR0\Partition1 - ok
15:56:18.0894 2944 [ E1FB8DF82562C34AABDE8ED0D94E0378 ] \Device\Harddisk0\DR0\Partition2
15:56:18.0900 2944 \Device\Harddisk0\DR0\Partition2 - ok
15:56:18.0900 2944 ============================================================
15:56:18.0900 2944 Scan finished
15:56:18.0900 2944 ============================================================
15:56:18.0928 4364 Detected object count: 1
15:56:18.0928 4364 Actual detected object count: 1
15:56:37.0396 4364 sptd ( LockedFile.Multi.Generic ) - skipped by user
15:56:37.0397 4364 sptd ( LockedFile.Multi.Generic ) - User select action: Skip
15:56:43.0469 1372 Deinitialize success
15:56:04.0689 2944 p2psvc - ok
15:56:04.0737 2944 [ 0FA9B5055484649D63C303FE404E5F4D ] Parport C:\Windows\system32\drivers\parport.sys
15:56:04.0770 2944 Parport - ok
15:56:04.0806 2944 [ B9C2B89F08670E159F7181891E449CD9 ] partmgr C:\Windows\system32\drivers\partmgr.sys
15:56:04.0824 2944 partmgr - ok
15:56:04.0849 2944 [ 4F9A6A8A31413180D0FCB279AD5D8112 ] Parvdm C:\Windows\system32\drivers\parvdm.sys
15:56:04.0877 2944 Parvdm - ok
15:56:04.0935 2944 [ C6276AD11F4BB49B58AA1ED88537F14A ] PcaSvc C:\Windows\System32\pcasvc.dll
15:56:04.0938 2944 PcaSvc - ok
15:56:05.0020 2944 [ 941DC1D19E7E8620F40BBC206981EFDB ] pci C:\Windows\system32\drivers\pci.sys
15:56:05.0037 2944 pci - ok
15:56:05.0071 2944 [ 3B1901E401473E03EB8C874271E50C26 ] pciide C:\Windows\system32\drivers\pciide.sys
15:56:05.0073 2944 pciide - ok
15:56:05.0092 2944 [ E6F3FB1B86AA519E7698AD05E58B04E5 ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
15:56:05.0124 2944 pcmcia - ok
15:56:05.0188 2944 [ 6349F6ED9C623B44B52EA3C63C831A92 ] PEAUTH C:\Windows\system32\drivers\peauth.sys
15:56:05.0232 2944 PEAUTH - ok
15:56:05.0455 2944 [ B1689DF169143F57053F795390C99DB3 ] pla C:\Windows\system32\pla.dll
15:56:05.0558 2944 pla - ok
15:56:05.0655 2944 [ C5E7F8A996EC0A82D508FD9064A5569E ] PlugPlay C:\Windows\system32\umpnpmgr.dll
15:56:05.0662 2944 PlugPlay - ok
15:56:05.0701 2944 [ 79834AA2FBF9FE81EEBB229024F6F7FC ] Pml Driver HPZ12 C:\Windows\system32\HPZipm12.dll
15:56:05.0705 2944 Pml Driver HPZ12 - ok
15:56:05.0770 2944 [ 0C8E8E61AD1EB0B250B846712C917506 ] PNRPAutoReg C:\Windows\system32\p2psvc.dll
15:56:05.0779 2944 PNRPAutoReg - ok
15:56:05.0904 2944 [ 0C8E8E61AD1EB0B250B846712C917506 ] PNRPsvc C:\Windows\system32\p2psvc.dll
15:56:05.0911 2944 PNRPsvc - ok
15:56:05.0991 2944 [ D0494460421A03CD5225CCA0059AA146 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
15:56:05.0998 2944 PolicyAgent - ok
15:56:06.0032 2944 [ ECFFFAEC0C1ECD8DBC77F39070EA1DB1 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
15:56:06.0063 2944 PptpMiniport - ok
15:56:06.0119 2944 [ 0E3CEF5D28B40CF273281D620C50700A ] Processor C:\Windows\system32\drivers\processr.sys
15:56:06.0134 2944 Processor - ok
15:56:06.0156 2944 [ 0508FAA222D28835310B7BFCA7A77346 ] ProfSvc C:\Windows\system32\profsvc.dll
15:56:06.0163 2944 ProfSvc - ok
15:56:06.0196 2944 [ A3E186B4B935905B829219502557314E ] ProtectedStorage C:\Windows\system32\lsass.exe
15:56:06.0202 2944 ProtectedStorage - ok
15:56:06.0232 2944 [ 99514FAA8DF93D34B5589187DB3AA0BA ] PSched C:\Windows\system32\DRIVERS\pacer.sys
15:56:06.0233 2944 PSched - ok
15:56:06.0291 2944 [ CCDAC889326317792480C0A67156A1EC ] ql2300 C:\Windows\system32\drivers\ql2300.sys
15:56:06.0357 2944 ql2300 - ok
15:56:06.0384 2944 [ 81A7E5C076E59995D54BC1ED3A16E60B ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
15:56:06.0414 2944 ql40xx - ok
15:56:06.0448 2944 [ E9ECAE663F47E6CB43962D18AB18890F ] QWAVE C:\Windows\system32\qwave.dll
15:56:06.0463 2944 QWAVE - ok
15:56:06.0527 2944 [ 9F5E0E1926014D17486901C88ECA2DB7 ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
15:56:06.0554 2944 QWAVEdrv - ok
15:56:06.0592 2944 [ 147D7F9C556D259924351FEB0DE606C3 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
15:56:06.0594 2944 RasAcd - ok
15:56:06.0626 2944 [ F6A452EB4CEADBB51C9E0EE6B3ECEF0F ] RasAuto C:\Windows\System32\rasauto.dll
15:56:06.0634 2944 RasAuto - ok
15:56:06.0681 2944 [ A214ADBAF4CB47DD2728859EF31F26B0 ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
15:56:06.0683 2944 Rasl2tp - ok
15:56:06.0730 2944 [ 75D47445D70CA6F9F894B032FBC64FCF ] RasMan C:\Windows\System32\rasmans.dll
15:56:06.0737 2944 RasMan - ok
15:56:06.0773 2944 [ 509A98DD18AF4375E1FC40BC175F1DEF ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
15:56:06.0801 2944 RasPppoe - ok
15:56:06.0843 2944 [ 2005F4A1E05FA09389AC85840F0A9E4D ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
15:56:06.0846 2944 RasSstp - ok
15:56:06.0885 2944 [ B14C9D5B9ADD2F84F70570BBBFAA7935 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
15:56:06.0907 2944 rdbss - ok
15:56:06.0961 2944 [ 89E59BE9A564262A3FB6C4F4F1CD9899 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
15:56:06.0963 2944 RDPCDD - ok
15:56:07.0002 2944 [ E8BD98D46F2ED77132BA927FCCB47D8B ] rdpdr C:\Windows\system32\drivers\rdpdr.sys
15:56:07.0079 2944 rdpdr - ok
15:56:07.0129 2944 [ 9D91FE5286F748862ECFFA05F8A0710C ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
15:56:07.0158 2944 RDPENCDD - ok
15:56:07.0225 2944 [ C127EBD5AFAB31524662C48DFCEB773A ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
15:56:07.0258 2944 RDPWD - ok
15:56:07.0327 2944 [ BCDD6B4804D06B1F7EBF29E53A57ECE9 ] RemoteAccess C:\Windows\System32\mprdim.dll
15:56:07.0334 2944 RemoteAccess - ok
15:56:07.0394 2944 [ 9E6894EA18DAFF37B63E1005F83AE4AB ] RemoteRegistry C:\Windows\system32\regsvc.dll
15:56:07.0403 2944 RemoteRegistry - ok
15:56:07.0447 2944 [ D85E3FA9F5B1F29BB4ED185C450D1470 ] rimmptsk C:\Windows\system32\DRIVERS\rimmptsk.sys
15:56:07.0456 2944 rimmptsk - ok
15:56:07.0472 2944 [ DB8EB01C58C9FADA00C70B1775278AE0 ] rimsptsk C:\Windows\system32\DRIVERS\rimsptsk.sys
15:56:07.0500 2944 rimsptsk - ok
15:56:07.0535 2944 [ 6C1F93C0760C9F79A1869D07233DF39D ] rismxdp C:\Windows\system32\DRIVERS\rixdptsk.sys
15:56:07.0586 2944 rismxdp - ok
15:56:07.0625 2944 [ 5123F83CBC4349D065534EEB6BBDC42B ] RpcLocator C:\Windows\system32\locator.exe
15:56:07.0639 2944 RpcLocator - ok
15:56:07.0719 2944 [ 3B5B4D53FEC14F7476CA29A20CC31AC9 ] RpcSs C:\Windows\system32\rpcss.dll
15:56:07.0726 2944 RpcSs - ok
15:56:07.0757 2944 [ 9C508F4074A39E8B4B31D27198146FAD ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
15:56:07.0797 2944 rspndr - ok
15:56:07.0814 2944 [ A3E186B4B935905B829219502557314E ] SamSs C:\Windows\system32\lsass.exe
15:56:07.0817 2944 SamSs - ok
15:56:07.0840 2944 SANDRA - ok
15:56:07.0887 2944 [ 37CA203F8CCF732CD272A27E55B268C4 ] sbp2port C:\Windows\system32\DRIVERS\sbp2port.sys
15:56:07.0904 2944 sbp2port - ok
15:56:07.0964 2944 [ 77B7A11A0C3D78D3386398FBBEA1B632 ] SCardSvr C:\Windows\System32\SCardSvr.dll
15:56:07.0972 2944 SCardSvr - ok
15:56:08.0018 2944 [ 1A58069DB21D05EB2AB58EE5753EBE8D ] Schedule C:\Windows\system32\schedsvc.dll
15:56:08.0026 2944 Schedule - ok
15:56:08.0062 2944 [ 312EC3E37A0A1F2006534913E37B4423 ] SCPolicySvc C:\Windows\System32\certprop.dll
15:56:08.0063 2944 SCPolicySvc - ok
15:56:08.0098 2944 [ 8F36B54688C31EED4580129040C6A3D3 ] sdbus C:\Windows\system32\DRIVERS\sdbus.sys
15:56:08.0128 2944 sdbus - ok
15:56:08.0195 2944 [ 716313D9F6B0529D03F726D5AAF6F191 ] SDRSVC C:\Windows\System32\SDRSVC.dll
15:56:08.0204 2944 SDRSVC - ok
15:56:08.0282 2944 [ 90A3935D05B494A5A39D37E71F09A677 ] secdrv C:\Windows\system32\drivers\secdrv.sys
15:56:08.0297 2944 secdrv - ok
15:56:08.0330 2944 [ FD5199D4D8A521005E4B5EE7FE00FA9B ] seclogon C:\Windows\system32\seclogon.dll
15:56:08.0348 2944 seclogon - ok
15:56:08.0377 2944 [ A9BBAB5759771E523F55563D6CBE140F ] SENS C:\Windows\System32\sens.dll
15:56:08.0381 2944 SENS - ok
15:56:08.0404 2944 [ 68E44E331D46F0FB38F0863A84CD1A31 ] Serenum C:\Windows\system32\drivers\serenum.sys
15:56:08.0415 2944 Serenum - ok
15:56:08.0433 2944 [ C70D69A918B178D3C3B06339B40C2E1B ] Serial C:\Windows\system32\drivers\serial.sys
15:56:08.0436 2944 Serial - ok
15:56:08.0459 2944 [ 8AF3D28A879BF75DB53A0EE7A4289624 ] sermouse C:\Windows\system32\drivers\sermouse.sys
15:56:08.0460 2944 sermouse - ok
15:56:08.0537 2944 [ D2193326F729B163125610DBF3E17D57 ] SessionEnv C:\Windows\system32\sessenv.dll
15:56:08.0544 2944 SessionEnv - ok
15:56:08.0582 2944 [ 3EFA810BDCA87F6ECC24F9832243FE86 ] sffdisk C:\Windows\system32\DRIVERS\sffdisk.sys
15:56:08.0600 2944 sffdisk - ok
15:56:08.0621 2944 [ 8FD08A310645FE872EEEC6E08C6BF3EE ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
15:56:08.0623 2944 sffp_mmc - ok
15:56:08.0655 2944 [ 9F66A46C55D6F1CCABC79BB7AFCCC545 ] sffp_sd C:\Windows\system32\DRIVERS\sffp_sd.sys
15:56:08.0682 2944 sffp_sd - ok
15:56:08.0714 2944 [ 46ED8E91793B2E6F848015445A0AC188 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
15:56:08.0731 2944 sfloppy - ok
15:56:08.0755 2944 [ E1499BD0FF76B1B2FBBF1AF339D91165 ] SharedAccess C:\Windows\System32\ipnathlp.dll
15:56:08.0766 2944 SharedAccess - ok
15:56:08.0824 2944 [ C7230FBEE14437716701C15BE02C27B8 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
15:56:08.0834 2944 ShellHWDetection - ok
15:56:08.0894 2944 [ D2A595D6EEBEEAF4334F8E50EFBC9931 ] sisagp C:\Windows\system32\drivers\sisagp.sys
15:56:08.0897 2944 sisagp - ok
15:56:08.0920 2944 [ CEDD6F4E7D84E9F98B34B3FE988373AA ] SiSRaid2 C:\Windows\system32\drivers\sisraid2.sys
15:56:08.0922 2944 SiSRaid2 - ok
15:56:08.0941 2944 [ DF843C528C4F69D12CE41CE462E973A7 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
15:56:08.0944 2944 SiSRaid4 - ok
15:56:09.0010 2944 [ F07AF60B152221472FBDB2FECEC4896D ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe
15:56:09.0014 2944 SkypeUpdate - ok
15:56:09.0301 2944 [ 862BB4CBC05D80C5B45BE430E5EF872F ] slsvc C:\Windows\system32\SLsvc.exe
15:56:09.0434 2944 slsvc - ok
15:56:09.0479 2944 [ 6EDC422215CD78AA8A9CDE6B30ABBD35 ] SLUINotify C:\Windows\system32\SLUINotify.dll
15:56:09.0486 2944 SLUINotify - ok
15:56:09.0513 2944 [ 7B75299A4D201D6A6533603D6914AB04 ] Smb C:\Windows\system32\DRIVERS\smb.sys
15:56:09.0517 2944 Smb - ok
15:56:09.0572 2944 [ 2A146A055B4401C16EE62D18B8E2A032 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
15:56:09.0583 2944 SNMPTRAP - ok
15:56:09.0640 2944 [ 7AEBDEEF071FE28B0EEF2CDD69102BFF ] spldr C:\Windows\system32\drivers\spldr.sys
15:56:09.0642 2944 spldr - ok
15:56:09.0674 2944 [ 8554097E5136C3BF9F69FE578A1B35F4 ] Spooler C:\Windows\System32\spoolsv.exe
15:56:09.0679 2944 Spooler - ok
15:56:09.0758 2944 [ 71E276F6D189413266EA22171806597B ] sptd C:\Windows\system32\Drivers\sptd.sys
15:56:09.0758 2944 Suspicious file (NoAccess): C:\Windows\system32\Drivers\sptd.sys. md5: 71E276F6D189413266EA22171806597B
15:56:09.0761 2944 sptd ( LockedFile.Multi.Generic ) - warning
15:56:09.0762 2944 sptd - detected LockedFile.Multi.Generic (1)
15:56:09.0835 2944 [ 41987F9FC0E61ADF54F581E15029AD91 ] srv C:\Windows\system32\DRIVERS\srv.sys
15:56:09.0897 2944 srv - ok
15:56:09.0933 2944 [ FF33AFF99564B1AA534F58868CBE41EF ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
15:56:09.0964 2944 srv2 - ok
15:56:09.0983 2944 [ 7605C0E1D01A08F3ECD743F38B834A44 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
15:56:09.0986 2944 srvnet - ok
15:56:10.0024 2944 [ 03D50B37234967433A5EA5BA72BC0B62 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
15:56:10.0029 2944 SSDPSRV - ok
15:56:10.0106 2944 [ 6F1A32E7B7B30F004D9A20AFADB14944 ] SstpSvc C:\Windows\system32\sstpsvc.dll
15:56:10.0113 2944 SstpSvc - ok
15:56:10.0203 2944 [ 5DE7D67E49B88F5F07F3E53C4B92A352 ] stisvc C:\Windows\System32\wiaservc.dll
15:56:10.0212 2944 stisvc - ok
15:56:10.0217 2944 stllssvr - ok
15:56:10.0236 2944 [ 7BA58ECF0C0A9A69D44B3DCA62BECF56 ] swenum C:\Windows\system32\DRIVERS\swenum.sys
15:56:10.0251 2944 swenum - ok
15:56:10.0291 2944 [ F21FD248040681CCA1FB6C9A03AAA93D ] swprv C:\Windows\System32\swprv.dll
15:56:10.0297 2944 swprv - ok
15:56:10.0340 2944 [ 192AA3AC01DF071B541094F251DEED10 ] Symc8xx C:\Windows\system32\drivers\symc8xx.sys
15:56:10.0342 2944 Symc8xx - ok
15:56:10.0357 2944 [ 8C8EB8C76736EBAF3B13B633B2E64125 ] Sym_hi C:\Windows\system32\drivers\sym_hi.sys
15:56:10.0359 2944 Sym_hi - ok
15:56:10.0379 2944 [ 8072AF52B5FD103BBBA387A1E49F62CB ] Sym_u3 C:\Windows\system32\drivers\sym_u3.sys
15:56:10.0381 2944 Sym_u3 - ok
15:56:10.0420 2944 [ F5D926807BD9BC0AF68F9376144DE425 ] SynTP C:\Windows\system32\DRIVERS\SynTP.sys
15:56:10.0430 2944 SynTP - ok
15:56:10.0508 2944 [ 9A51B04E9886AA4EE90093586B0BA88D ] SysMain C:\Windows\system32\sysmain.dll
15:56:10.0517 2944 SysMain - ok
15:56:10.0559 2944 [ 2DCA225EAE15F42C0933E998EE0231C3 ] TabletInputService C:\Windows\System32\TabSvc.dll
15:56:10.0563 2944 TabletInputService - ok
15:56:10.0623 2944 [ D7673E4B38CE21EE54C59EEEB65E2483 ] TapiSrv C:\Windows\System32\tapisrv.dll
15:56:10.0629 2944 TapiSrv - ok
15:56:10.0659 2944 [ CB05822CD9CC6C688168E113C603DBE7 ] TBS C:\Windows\System32\tbssvc.dll
15:56:10.0664 2944 TBS - ok
15:56:10.0750 2944 [ 27D470DABC77BC60D0A3B0E4DEB6CB91 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
15:56:10.0783 2944 Tcpip - ok
15:56:10.0850 2944 [ 27D470DABC77BC60D0A3B0E4DEB6CB91 ] Tcpip6 C:\Windows\system32\DRIVERS\tcpip.sys
15:56:10.0858 2944 Tcpip6 - ok
15:56:10.0906 2944 [ 608C345A255D82A6289C2D468EB41FD7 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
15:56:10.0924 2944 tcpipreg - ok
15:56:10.0958 2944 [ 5DCF5E267BE67A1AE926F2DF77FBCC56 ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
15:56:10.0985 2944 TDPIPE - ok
15:56:11.0050 2944 [ 389C63E32B3CEFED425B61ED92D3F021 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
15:56:11.0114 2944 TDTCP - ok
15:56:11.0160 2944 [ 76B06EB8A01FC8624D699E7045303E54 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
15:56:11.0189 2944 tdx - ok
15:56:11.0234 2944 [ 3CAD38910468EAB9A6479E2F01DB43C7 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
15:56:11.0251 2944 TermDD - ok
15:56:11.0311 2944 [ BB95DA09BEF6E7A131BFF3BA5032090D ] TermService C:\Windows\System32\termsrv.dll
15:56:11.0318 2944 TermService - ok
15:56:11.0375 2944 [ C7230FBEE14437716701C15BE02C27B8 ] Themes C:\Windows\system32\shsvcs.dll
15:56:11.0384 2944 Themes - ok
15:56:11.0428 2944 [ 1076FFCFFAAE8385FD62DFCB25AC4708 ] THREADORDER C:\Windows\system32\mmcss.dll
15:56:11.0431 2944 THREADORDER - ok
15:56:11.0496 2944 [ EC74E77D0EB004BD3A809B5F8FB8C2CE ] TrkWks C:\Windows\System32\trkwks.dll
15:56:11.0500 2944 TrkWks - ok
15:56:11.0658 2944 [ 97D9D6A04E3AD9B6C626B9931DB78DBA ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
15:56:11.0663 2944 TrustedInstaller - ok
15:56:11.0709 2944 [ DCF0F056A2E4F52287264F5AB29CF206 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
15:56:11.0737 2944 tssecsrv - ok
15:56:11.0796 2944 [ CAECC0120AC49E3D2F758B9169872D38 ] tunmp C:\Windows\system32\DRIVERS\tunmp.sys
15:56:11.0824 2944 tunmp - ok
15:56:11.0875 2944 [ 300DB877AC094FEAB0BE7688C3454A9C ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
15:56:11.0898 2944 tunnel - ok
15:56:11.0944 2944 [ C3ADE15414120033A36C0F293D4A4121 ] uagp35 C:\Windows\system32\drivers\uagp35.sys
15:56:12.0009 2944 uagp35 - ok
15:56:12.0054 2944 [ D9728AF68C4C7693CB100B8441CBDEC6 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
15:56:12.0070 2944 udfs - ok
15:56:12.0115 2944 [ ECEF404F62863755951E09C802C94AD5 ] UI0Detect C:\Windows\system32\UI0Detect.exe
15:56:12.0136 2944 UI0Detect - ok
15:56:12.0161 2944 UIUSys - ok
15:56:12.0186 2944 [ 75E6890EBFCE0841D3291B02E7A8BDB0 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
15:56:12.0215 2944 uliagpkx - ok
15:56:12.0258 2944 [ 3CD4EA35A6221B85DCC25DAA46313F8D ] uliahci C:\Windows\system32\drivers\uliahci.sys
15:56:12.0291 2944 uliahci - ok
15:56:12.0305 2944 [ 8514D0E5CD0534467C5FC61BE94A569F ] UlSata C:\Windows\system32\drivers\ulsata.sys
15:56:12.0359 2944 UlSata - ok
15:56:12.0402 2944 [ 38C3C6E62B157A6BC46594FADA45C62B ] ulsata2 C:\Windows\system32\drivers\ulsata2.sys
15:56:12.0446 2944 ulsata2 - ok
15:56:12.0523 2944 [ 32CFF9F809AE9AED85464492BF3E32D2 ] umbus C:\Windows\system32\DRIVERS\umbus.sys
15:56:12.0526 2944 umbus - ok
15:56:12.0571 2944 [ 68308183F4AE0BE7BF8ECD07CB297999 ] upnphost C:\Windows\System32\upnphost.dll
15:56:12.0577 2944 upnphost - ok
15:56:12.0638 2944 [ CAF811AE4C147FFCD5B51750C7F09142 ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
15:56:12.0641 2944 usbccgp - ok
15:56:12.0665 2944 [ E9476E6C486E76BC4898074768FB7131 ] usbcir C:\Windows\system32\drivers\usbcir.sys
15:56:12.0693 2944 usbcir - ok
15:56:12.0742 2944 [ 79E96C23A97CE7B8F14D310DA2DB0C9B ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
15:56:12.0744 2944 usbehci - ok
15:56:12.0767 2944 [ 4673BBCB006AF60E7ABDDBE7A130BA42 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
15:56:12.0800 2944 usbhub - ok
15:56:12.0827 2944 [ 38DBC7DD6CC5A72011F187425384388B ] usbohci C:\Windows\system32\drivers\usbohci.sys
15:56:12.0854 2944 usbohci - ok
15:56:12.0878 2944 [ B51E52ACF758BE00EF3A58EA452FE360 ] usbprint C:\Windows\system32\drivers\usbprint.sys
15:56:12.0896 2944 usbprint - ok
15:56:12.0921 2944 [ BE3DA31C191BC222D9AD503C5224F2AD ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
15:56:12.0950 2944 USBSTOR - ok
15:56:12.0990 2944 [ 814D653EFC4D48BE3B04A307ECEFF56F ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys
15:56:12.0991 2944 usbuhci - ok
15:56:13.0030 2944 [ E67998E8F14CB0627A769F6530BCB352 ] usbvideo C:\Windows\system32\Drivers\usbvideo.sys
15:56:13.0044 2944 usbvideo - ok
15:56:13.0075 2944 [ 1509E705F3AC1D474C92454A5C2DD81F ] UxSms C:\Windows\System32\uxsms.dll
15:56:13.0082 2944 UxSms - ok
15:56:13.0161 2944 [ CD88D1B7776DC17A119049742EC07EB4 ] vds C:\Windows\System32\vds.exe
15:56:13.0189 2944 vds - ok
15:56:13.0234 2944 [ 7D92BE0028ECDEDEC74617009084B5EF ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
15:56:13.0252 2944 vga - ok
15:56:13.0294 2944 [ 2E93AC0A1D8C79D019DB6C51F036636C ] VgaSave C:\Windows\System32\drivers\vga.sys
15:56:13.0296 2944 VgaSave - ok
15:56:13.0320 2944 [ 045D9961E591CF0674A920B6BA3BA5CB ] viaagp C:\Windows\system32\drivers\viaagp.sys
15:56:13.0349 2944 viaagp - ok
15:56:13.0380 2944 [ 56A4DE5F02F2E88182B0981119B4DD98 ] ViaC7 C:\Windows\system32\drivers\viac7.sys
15:56:13.0405 2944 ViaC7 - ok
15:56:13.0429 2944 [ FD2E3175FCADA350C7AB4521DCA187EC ] viaide C:\Windows\system32\drivers\viaide.sys
15:56:13.0431 2944 viaide - ok
15:56:13.0447 2944 [ 69503668AC66C77C6CD7AF86FBDF8C43 ] volmgr C:\Windows\system32\drivers\volmgr.sys
15:56:13.0449 2944 volmgr - ok
15:56:13.0527 2944 [ 23E41B834759917BFD6B9A0D625D0C28 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
15:56:13.0547 2944 volmgrx - ok
15:56:13.0637 2944 [ 147281C01FCB1DF9252DE2A10D5E7093 ] volsnap C:\Windows\system32\drivers\volsnap.sys
15:56:13.0643 2944 volsnap - ok
15:56:13.0669 2944 [ D984439746D42B30FC65A4C3546C6829 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
15:56:13.0699 2944 vsmraid - ok
15:56:13.0798 2944 [ DB3D19F850C6EB32BDCB9BC0836ACDDB ] VSS C:\Windows\system32\vssvc.exe
15:56:13.0886 2944 VSS - ok
15:56:14.0026 2944 [ 96EA68B9EB310A69C25EBB0282B2B9DE ] W32Time C:\Windows\system32\w32time.dll
15:56:14.0033 2944 W32Time - ok
15:56:14.0091 2944 [ 48DFEE8F1AF7C8235D4E626F0C4FE031 ] WacomPen C:\Windows\system32\drivers\wacompen.sys
15:56:14.0126 2944 WacomPen - ok
15:56:14.0165 2944 [ 55201897378CCA7AF8B5EFD874374A26 ] Wanarp C:\Windows\system32\DRIVERS\wanarp.sys
15:56:14.0182 2944 Wanarp - ok
15:56:14.0188 2944 [ 55201897378CCA7AF8B5EFD874374A26 ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
15:56:14.0191 2944 Wanarpv6 - ok
15:56:14.0278 2944 [ A3CD60FD826381B49F03832590E069AF ] wcncsvc C:\Windows\System32\wcncsvc.dll
15:56:14.0286 2944 wcncsvc - ok
15:56:14.0341 2944 [ 11BCB7AFCDD7AADACB5746F544D3A9C7 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
15:56:14.0351 2944 WcsPlugInService - ok
15:56:14.0380 2944 [ AFC5AD65B991C1E205CF25CFDBF7A6F4 ] Wd C:\Windows\system32\drivers\wd.sys
15:56:14.0408 2944 Wd - ok
15:56:14.0540 2944 [ B6F0A7AD6D4BD325FBCD8BAC96CD8D96 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
15:56:14.0664 2944 Wdf01000 - ok
15:56:14.0717 2944 [ ABFC76B48BB6C96E3338D8943C5D93B5 ] WdiServiceHost C:\Windows\system32\wdi.dll
15:56:14.0724 2944 WdiServiceHost - ok
15:56:14.0730 2944 [ ABFC76B48BB6C96E3338D8943C5D93B5 ] WdiSystemHost C:\Windows\system32\wdi.dll
15:56:14.0735 2944 WdiSystemHost - ok
15:56:14.0776 2944 [ 04C37D8107320312FBAE09926103D5E2 ] WebClient C:\Windows\System32\webclnt.dll
15:56:14.0784 2944 WebClient - ok
15:56:14.0848 2944 [ AE3736E7E8892241C23E4EBBB7453B60 ] Wecsvc C:\Windows\system32\wecsvc.dll
15:56:14.0853 2944 Wecsvc - ok
15:56:14.0897 2944 [ 670FF720071ED741206D69BD995EA453 ] wercplsupport C:\Windows\System32\wercplsupport.dll
15:56:14.0913 2944 wercplsupport - ok
15:56:14.0963 2944 [ 32B88481D3B326DA6DEB07B1D03481E7 ] WerSvc C:\Windows\System32\WerSvc.dll
15:56:14.0970 2944 WerSvc - ok
15:56:15.0069 2944 [ E096FFB754F1E45AE1BDDAC1275AE2C5 ] winachsf C:\Windows\system32\DRIVERS\HSX_CNXT.sys
15:56:15.0143 2944 winachsf - ok
15:56:15.0204 2944 [ 4575AA12561C5648483403541D0D7F2B ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll
15:56:15.0214 2944 WinDefend - ok
15:56:15.0222 2944 WinHttpAutoProxySvc - ok
15:56:15.0314 2944 [ 6B2A1D0E80110E3D04E6863C6E62FD8A ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
15:56:15.0329 2944 Winmgmt - ok
15:56:15.0424 2944 [ 7CFE68BDC065E55AA5E8421607037511 ] WinRM C:\Windows\system32\WsmSvc.dll
15:56:15.0479 2944 WinRM - ok
15:56:15.0601 2944 [ F514C1C9D814F3DB46A17C59EA8214B2 ] WiseBootAssistant C:\Program Files\Wise\Wise Care 365\BootTime.exe
15:56:15.0657 2944 WiseBootAssistant - ok
15:56:15.0732 2944 [ C008405E4FEEB069E30DA1D823910234 ] Wlansvc C:\Windows\System32\wlansvc.dll
15:56:15.0741 2944 Wlansvc - ok
15:56:15.0767 2944 [ 2E7255D172DF0B8283CDFB7B433B864E ] WmiAcpi C:\Windows\system32\DRIVERS\wmiacpi.sys
15:56:15.0768 2944 WmiAcpi - ok
15:56:15.0829 2944 [ 43BE3875207DCB62A85C8C49970B66CC ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
15:56:15.0837 2944 wmiApSrv - ok
15:56:15.0940 2944 [ 3978704576A121A9204F8CC49A301A9B ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
15:56:15.0974 2944 WMPNetworkSvc - ok
15:56:16.0047 2944 [ CFC5A04558F5070CEE3E3A7809F3FF52 ] WPCSvc C:\Windows\System32\wpcsvc.dll
15:56:16.0055 2944 WPCSvc - ok
15:56:16.0091 2944 [ 801FBDB89D472B3C467EB112A0FC9246 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
15:56:16.0097 2944 WPDBusEnum - ok
15:56:16.0150 2944 [ DE9D36F91A4DF3D911626643DEBF11EA ] WpdUsb C:\Windows\system32\DRIVERS\wpdusb.sys
15:56:16.0178 2944 WpdUsb - ok
15:56:16.0533 2944 [ DCF3E3EDF5109EE8BC02FE6E1F045795 ] WPFFontCache_v0400 C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
15:56:16.0578 2944 WPFFontCache_v0400 - ok
15:56:16.0645 2944 [ E3A3CB253C0EC2494D4A61F5E43A389C ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
15:56:16.0647 2944 ws2ifsl - ok
15:56:16.0681 2944 [ 1CA6C40261DDC0425987980D0CD2AAAB ] wscsvc C:\Windows\System32\wscsvc.dll
15:56:16.0688 2944 wscsvc - ok
15:56:16.0733 2944 [ 4422AC5ED8D4C2F0DB63E71D4C069DD7 ] WSDPrintDevice C:\Windows\system32\DRIVERS\WSDPrint.sys
15:56:16.0735 2944 WSDPrintDevice - ok
15:56:16.0787 2944 [ 65D1FF8AAFF4A7D8F787A290E5087816 ] WSDScan C:\Windows\system32\DRIVERS\WSDScan.sys
15:56:16.0804 2944 WSDScan - ok
15:56:16.0812 2944 WSearch - ok
15:56:17.0054 2944 [ FC3EC24FCE372C89423E015A2AC1A31E ] wuauserv C:\Windows\system32\wuaueng.dll
15:56:17.0153 2944 wuauserv - ok
15:56:17.0193 2944 [ AC13CB789D93412106B0FB6C7EB2BCB6 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
15:56:17.0199 2944 WUDFRd - ok
15:56:17.0230 2944 [ 575A4190D989F64732119E4114045A4F ] wudfsvc C:\Windows\System32\WUDFSvc.dll
15:56:17.0235 2944 wudfsvc - ok
15:56:17.0266 2944 [ 19E7C173B6242AD7521E537AE54768BF ] XAudio C:\Windows\system32\DRIVERS\xaudio.sys
15:56:17.0268 2944 XAudio - ok
15:56:17.0305 2944 [ CDA0BC78672B50C43649FF34E1FD0FF8 ] XAudioService C:\Windows\system32\DRIVERS\xaudio.exe
15:56:17.0309 2944 XAudioService - ok
15:56:17.0349 2944 ================ Scan global ===============================
15:56:17.0389 2944 [ F31EEBC1A1C81FD04005489CC3DCDFE7 ] C:\Windows\system32\basesrv.dll
15:56:17.0479 2944 [ D2293B069E4B63DC17B2F08D45E71124 ] C:\Windows\system32\winsrv.dll
15:56:17.0546 2944 [ D2293B069E4B63DC17B2F08D45E71124 ] C:\Windows\system32\winsrv.dll
15:56:17.0657 2944 [ D4E6D91C1349B7BFB3599A6ADA56851B ] C:\Windows\system32\services.exe
15:56:17.0666 2944 [Global] - ok
15:56:17.0666 2944 ================ Scan MBR ==================================
15:56:17.0680 2944 [ 1A1A06F62E891045814007163C1C76C3 ] \Device\Harddisk0\DR0
15:56:18.0814 2944 \Device\Harddisk0\DR0 - ok
15:56:18.0815 2944 ================ Scan VBR ==================================
15:56:18.0845 2944 [ B9100678EAA0131454E0BFFC3F70FB12 ] \Device\Harddisk0\DR0\Partition1
15:56:18.0864 2944 \Device\Harddisk0\DR0\Partition1 - ok
15:56:18.0894 2944 [ E1FB8DF82562C34AABDE8ED0D94E0378 ] \Device\Harddisk0\DR0\Partition2
15:56:18.0900 2944 \Device\Harddisk0\DR0\Partition2 - ok
15:56:18.0900 2944 ============================================================
15:56:18.0900 2944 Scan finished
15:56:18.0900 2944 ============================================================
15:56:18.0928 4364 Detected object count: 1
15:56:18.0928 4364 Actual detected object count: 1
15:56:37.0396 4364 sptd ( LockedFile.Multi.Generic ) - skipped by user
15:56:37.0397 4364 sptd ( LockedFile.Multi.Generic ) - User select action: Skip
15:56:43.0469 1372 Deinitialize success
Re: spomalený NB, prosím o pomoc
ComboFix 12-10-04.02 - Spravca 10/07/2012 16:09:08.1.2 - x86
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1250.421.1029.18.1021.283 [GMT 2:00]
Running from: c:\users\Spravca\Desktop\ComboFix.exe
AV: ESET NOD32 Antivirus 4.2 *Enabled/Updated* {CB0F8167-5331-BA19-698E-64816B6801A5}
SP: ESET NOD32 Antivirus 4.2 *Enabled/Updated* {706E6083-750B-B597-533E-5FF310EF4B18}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
C:\install.exe
c:\program files\DaemonTools_WhenUSave_Installer
c:\program files\DaemonTools_WhenUSave_Installer\vvsn.cfg
c:\programdata\F98D6569F5.sys
.
.
((((((((((((((((((((((((( Files Created from 2012-09-07 to 2012-10-07 )))))))))))))))))))))))))))))))
.
.
2012-10-07 14:20 . 2012-10-07 14:20 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-10-07 13:37 . 2012-10-07 13:37 -------- d-----w- c:\users\Spravca\AppData\Local\Apple Computer
2012-10-07 13:07 . 2012-10-07 13:07 -------- d-----w- c:\users\Spravca\AppData\Roaming\Malwarebytes
2012-10-07 13:07 . 2012-10-07 13:07 -------- d-----w- c:\programdata\Malwarebytes
2012-10-07 13:07 . 2012-09-07 15:04 22856 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-10-07 13:07 . 2012-10-07 13:07 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2012-10-07 13:01 . 2012-08-30 08:17 6980552 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{29367FEE-9183-49BE-9319-FCEC82C5FCF5}\mpengine.dll
2012-10-07 07:23 . 2012-10-07 07:23 388096 ----a-r- c:\users\Spravca\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2012-10-06 12:20 . 2012-10-07 07:23 -------- d-----w- c:\program files\trend micro
2012-10-06 12:20 . 2012-10-06 16:39 -------- d-----w- C:\rsit
2012-10-06 07:08 . 2012-10-07 14:00 -------- d-----w- c:\users\Spravca\AppData\Roaming\Wise Care 365
2012-10-06 07:08 . 2012-10-06 07:08 -------- d-----w- c:\program files\Defraggler
2012-10-06 07:07 . 2012-10-06 07:07 -------- d-----w- c:\program files\Wise
2012-09-17 06:42 . 2012-09-17 06:42 73696 ----a-w- c:\program files\Mozilla Firefox\breakpadinjector.dll
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-09-21 09:47 . 2012-06-19 11:06 696240 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2012-09-21 09:47 . 2012-02-04 16:39 73136 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-09-17 06:42 . 2012-01-15 11:40 266720 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-19 125952]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\daemon.exe" [2008-12-29 687560]
"Sidebar"="c:\program files\windows sidebar\sidebar.exe" [2009-04-11 1233920]
"WMPNSCFG"="c:\program files\Windows Media Player\WMPNSCFG.exe" [2008-01-19 202240]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2012-07-13 17418928]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2008-03-28 1045800]
"HP Software Update"="c:\program files\Hp\HP Software Update\HPWuSchd2.exe" [2005-02-16 49152]
"QPService"="c:\program files\HP\QuickPlay\QPService.exe" [2007-01-15 172032]
"QlbCtrl"="c:\program files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe" [2006-11-06 159744]
"HP Health Check Scheduler"="c:\program files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe" [2006-12-04 46704]
"hpWirelessAssistant"="c:\program files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe" [2007-01-10 472776]
"WAWifiMessage"="c:\program files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe" [2007-01-10 317128]
"NeroFilterCheck"="c:\windows\system32\NeroCheck.exe" [2001-07-09 155648]
"AppleSyncNotifier"="c:\program files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe" [2008-07-22 116040]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2008-07-30 289064]
"egui"="c:\program files\ESET\ESET NOD32 Antivirus\egui.exe" [2010-02-26 2140880]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2009-06-24 13601312]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2009-06-24 92704]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"Launcher"="c:\windows\SMINST\launcher.exe" [2006-11-07 44128]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
IO Control.lnk - c:\windows\Installer\{6F059EF3-4B0C-4566-8061-2FB4FF079D77}\NewShortcut39_1D40F960EB3A46E085A5B4E3B23AE340.exe [2011-11-8 155648]
PDFCreator.lnk - c:\program files\PDFCreator\PDFCreator.exe [2011-5-11 2641920]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc\S-1-5-21-2611934306-1023505321-2062823691-1000]
"EnableNotificationsRef"=dword:00000001
.
R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [x]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
.
Contents of the 'Scheduled Tasks' folder
.
2012-10-07 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-06-19 09:47]
.
2012-10-07 c:\windows\Tasks\Wise Care 365.job
- c:\program files\Wise\Wise Care 365\WiseTray.exe [2012-10-06 15:24]
.
.
------- Supplementary Scan -------
.
uSearchURL,(Default) = hxxp://www.google.com/keyword/%s
IE: E&xportovať do programu Microsoft Excel - c:\progra~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
TCP: DhcpNameServer = 192.168.11.1 192.168.0.1
TCP: Interfaces\{41E35E7A-60E3-41F6-A396-3BA5B02BC1BF}: NameServer = 147.213.240.2
FF - ProfilePath - c:\users\Spravca\AppData\Roaming\Mozilla\Firefox\Profiles\rccop2ac.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.as ... ource=3&q={searchTerms}
FF - prefs.js: browser.search.selectedEngine - Search the web (Babylon)
FF - prefs.js: browser.startup.homepage - hxxp://search.conduit.com/?ctid=CT27903 ... hSource=13
FF - prefs.js: keyword.URL - hxxp://search.conduit.com/ResultsExt.as ... 2790392&q=
.
- - - - ORPHANS REMOVED - - - -
.
WebBrowser-{88C7F2AA-F93F-432C-8F0E-B7D85967A527} - (no file)
MSConfigStartUp-Corel Graphics Suite 1117 - c:\program files\Corel\Corel Graphics 11\Register\registration.exe
MSConfigStartUp-ICQ - c:\program files\ICQ6\ICQ.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2012-10-07 16:20
Windows 6.0.6002 Service Pack 2 NTFS
.
scanning hidden processes ...
.
scanning hidden autostart entries ...
.
scanning hidden files ...
.
scan completed successfully
hidden files: 0
.
**************************************************************************
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
Completion time: 2012-10-07 16:24:05
ComboFix-quarantined-files.txt 2012-10-07 14:24
.
Pre-Run: Volných bajtů: 74,318,983,168
Post-Run: Volných bajtů: 74,254,565,376
.
- - End Of File - - 95F2DEDB3935EBB81EC0DEEDAABBAD7B
musel som to rozdeliť - nepratalo sa to do jedného postu
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1250.421.1029.18.1021.283 [GMT 2:00]
Running from: c:\users\Spravca\Desktop\ComboFix.exe
AV: ESET NOD32 Antivirus 4.2 *Enabled/Updated* {CB0F8167-5331-BA19-698E-64816B6801A5}
SP: ESET NOD32 Antivirus 4.2 *Enabled/Updated* {706E6083-750B-B597-533E-5FF310EF4B18}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
C:\install.exe
c:\program files\DaemonTools_WhenUSave_Installer
c:\program files\DaemonTools_WhenUSave_Installer\vvsn.cfg
c:\programdata\F98D6569F5.sys
.
.
((((((((((((((((((((((((( Files Created from 2012-09-07 to 2012-10-07 )))))))))))))))))))))))))))))))
.
.
2012-10-07 14:20 . 2012-10-07 14:20 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-10-07 13:37 . 2012-10-07 13:37 -------- d-----w- c:\users\Spravca\AppData\Local\Apple Computer
2012-10-07 13:07 . 2012-10-07 13:07 -------- d-----w- c:\users\Spravca\AppData\Roaming\Malwarebytes
2012-10-07 13:07 . 2012-10-07 13:07 -------- d-----w- c:\programdata\Malwarebytes
2012-10-07 13:07 . 2012-09-07 15:04 22856 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-10-07 13:07 . 2012-10-07 13:07 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2012-10-07 13:01 . 2012-08-30 08:17 6980552 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{29367FEE-9183-49BE-9319-FCEC82C5FCF5}\mpengine.dll
2012-10-07 07:23 . 2012-10-07 07:23 388096 ----a-r- c:\users\Spravca\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2012-10-06 12:20 . 2012-10-07 07:23 -------- d-----w- c:\program files\trend micro
2012-10-06 12:20 . 2012-10-06 16:39 -------- d-----w- C:\rsit
2012-10-06 07:08 . 2012-10-07 14:00 -------- d-----w- c:\users\Spravca\AppData\Roaming\Wise Care 365
2012-10-06 07:08 . 2012-10-06 07:08 -------- d-----w- c:\program files\Defraggler
2012-10-06 07:07 . 2012-10-06 07:07 -------- d-----w- c:\program files\Wise
2012-09-17 06:42 . 2012-09-17 06:42 73696 ----a-w- c:\program files\Mozilla Firefox\breakpadinjector.dll
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-09-21 09:47 . 2012-06-19 11:06 696240 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2012-09-21 09:47 . 2012-02-04 16:39 73136 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-09-17 06:42 . 2012-01-15 11:40 266720 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-19 125952]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\daemon.exe" [2008-12-29 687560]
"Sidebar"="c:\program files\windows sidebar\sidebar.exe" [2009-04-11 1233920]
"WMPNSCFG"="c:\program files\Windows Media Player\WMPNSCFG.exe" [2008-01-19 202240]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2012-07-13 17418928]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2008-03-28 1045800]
"HP Software Update"="c:\program files\Hp\HP Software Update\HPWuSchd2.exe" [2005-02-16 49152]
"QPService"="c:\program files\HP\QuickPlay\QPService.exe" [2007-01-15 172032]
"QlbCtrl"="c:\program files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe" [2006-11-06 159744]
"HP Health Check Scheduler"="c:\program files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe" [2006-12-04 46704]
"hpWirelessAssistant"="c:\program files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe" [2007-01-10 472776]
"WAWifiMessage"="c:\program files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe" [2007-01-10 317128]
"NeroFilterCheck"="c:\windows\system32\NeroCheck.exe" [2001-07-09 155648]
"AppleSyncNotifier"="c:\program files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe" [2008-07-22 116040]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2008-07-30 289064]
"egui"="c:\program files\ESET\ESET NOD32 Antivirus\egui.exe" [2010-02-26 2140880]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2009-06-24 13601312]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2009-06-24 92704]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"Launcher"="c:\windows\SMINST\launcher.exe" [2006-11-07 44128]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
IO Control.lnk - c:\windows\Installer\{6F059EF3-4B0C-4566-8061-2FB4FF079D77}\NewShortcut39_1D40F960EB3A46E085A5B4E3B23AE340.exe [2011-11-8 155648]
PDFCreator.lnk - c:\program files\PDFCreator\PDFCreator.exe [2011-5-11 2641920]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc\S-1-5-21-2611934306-1023505321-2062823691-1000]
"EnableNotificationsRef"=dword:00000001
.
R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [x]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
.
Contents of the 'Scheduled Tasks' folder
.
2012-10-07 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-06-19 09:47]
.
2012-10-07 c:\windows\Tasks\Wise Care 365.job
- c:\program files\Wise\Wise Care 365\WiseTray.exe [2012-10-06 15:24]
.
.
------- Supplementary Scan -------
.
uSearchURL,(Default) = hxxp://www.google.com/keyword/%s
IE: E&xportovať do programu Microsoft Excel - c:\progra~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
TCP: DhcpNameServer = 192.168.11.1 192.168.0.1
TCP: Interfaces\{41E35E7A-60E3-41F6-A396-3BA5B02BC1BF}: NameServer = 147.213.240.2
FF - ProfilePath - c:\users\Spravca\AppData\Roaming\Mozilla\Firefox\Profiles\rccop2ac.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.as ... ource=3&q={searchTerms}
FF - prefs.js: browser.search.selectedEngine - Search the web (Babylon)
FF - prefs.js: browser.startup.homepage - hxxp://search.conduit.com/?ctid=CT27903 ... hSource=13
FF - prefs.js: keyword.URL - hxxp://search.conduit.com/ResultsExt.as ... 2790392&q=
.
- - - - ORPHANS REMOVED - - - -
.
WebBrowser-{88C7F2AA-F93F-432C-8F0E-B7D85967A527} - (no file)
MSConfigStartUp-Corel Graphics Suite 1117 - c:\program files\Corel\Corel Graphics 11\Register\registration.exe
MSConfigStartUp-ICQ - c:\program files\ICQ6\ICQ.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2012-10-07 16:20
Windows 6.0.6002 Service Pack 2 NTFS
.
scanning hidden processes ...
.
scanning hidden autostart entries ...
.
scanning hidden files ...
.
scan completed successfully
hidden files: 0
.
**************************************************************************
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
Completion time: 2012-10-07 16:24:05
ComboFix-quarantined-files.txt 2012-10-07 14:24
.
Pre-Run: Volných bajtů: 74,318,983,168
Post-Run: Volných bajtů: 74,254,565,376
.
- - End Of File - - 95F2DEDB3935EBB81EC0DEEDAABBAD7B
musel som to rozdeliť - nepratalo sa to do jedného postu
- memphisto
- Guru Level 13
- Příspěvky: 21113
- Registrován: září 06
- Bydliště: Zlín - České Budějovice
- Pohlaví:
- Stav:
Offline
Re: spomalený NB, prosím o pomoc
Toto otestuj na Virustotal
c:\windows\Installer\{6F059EF3-4B0C-4566-8061-2FB4FF079D77}\NewShortcut39_1D40F960EB3A46E085A5B4E3B23AE340.exe
Klikni vpravo od okénka na Vybrat a v Exploreru najdi požadovaný soubor v Tvém PC. Označ ho myší a klikni na Otevřít , poté klikni na Send File. Pokud už byl soubor testován , objeví se okno ve kterém klikni na Reanalyze. Soubor se začne postupně testovat více antivirovými programy. Až skončí test posledního antiviru , objeví se nahoře result a červeně počet nákaz , např. 0/40 , nebo 1/40. Pak zkopíruj myší odkaz na tuto stránku a vlož ji do svého příspěvku.
Otevři si Poznámkový blok (Start -> Spustit... a napiš do okna Notepad a dej Ok.
Zkopíruj do něj následující celý text označený zeleně:
Poznámka: Nepoužij k označení skriptu funkci VYBRAT VŠE
Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.
Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe a když se oba soubory překryjí, skript upus.
- Automaticky se spustí ComboFix
- Vlož sem log, který vyběhne v závěru čistícího procesu
c:\windows\Installer\{6F059EF3-4B0C-4566-8061-2FB4FF079D77}\NewShortcut39_1D40F960EB3A46E085A5B4E3B23AE340.exe
Klikni vpravo od okénka na Vybrat a v Exploreru najdi požadovaný soubor v Tvém PC. Označ ho myší a klikni na Otevřít , poté klikni na Send File. Pokud už byl soubor testován , objeví se okno ve kterém klikni na Reanalyze. Soubor se začne postupně testovat více antivirovými programy. Až skončí test posledního antiviru , objeví se nahoře result a červeně počet nákaz , např. 0/40 , nebo 1/40. Pak zkopíruj myší odkaz na tuto stránku a vlož ji do svého příspěvku.
Otevři si Poznámkový blok (Start -> Spustit... a napiš do okna Notepad a dej Ok.
Zkopíruj do něj následující celý text označený zeleně:
Poznámka: Nepoužij k označení skriptu funkci VYBRAT VŠE
Kód: Vybrat vše
KillAll::
Registry::
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000000
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000000
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000000
Firefox::
FF - ProfilePath - c:\users\Spravca\AppData\Roaming\Mozilla\Firefox\Profiles\rccop2ac.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.as ... ource=3&q={searchTerms}
FF - prefs.js: browser.search.selectedEngine - Search the web (Babylon)
FF - prefs.js: browser.startup.homepage - hxxp://search.conduit.com/?ctid=CT27903 ... hSource=13
FF - prefs.js: keyword.URL - hxxp://search.conduit.com/ResultsExt.as ... 2790392&q=
RegLock::
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
RegNull::
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.
Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe a když se oba soubory překryjí, skript upus.
- Automaticky se spustí ComboFix
- Vlož sem log, který vyběhne v závěru čistícího procesu
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji
Re: spomalený NB, prosím o pomoc
ComboFix 12-10-04.02 - Spravca 10/07/2012 18:07:56.2.2 - x86
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1250.421.1029.18.1021.360 [GMT 2:00]
Running from: c:\users\Spravca\Desktop\ComboFix.exe
Command switches used :: c:\users\Spravca\Desktop\CFScript.txt
AV: ESET NOD32 Antivirus 4.2 *Enabled/Updated* {CB0F8167-5331-BA19-698E-64816B6801A5}
SP: ESET NOD32 Antivirus 4.2 *Enabled/Updated* {706E6083-750B-B597-533E-5FF310EF4B18}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((( Files Created from 2012-09-07 to 2012-10-07 )))))))))))))))))))))))))))))))
.
.
2012-10-07 16:17 . 2012-10-07 16:21 -------- d-----w- c:\users\Spravca\AppData\Local\temp
2012-10-07 13:37 . 2012-10-07 13:37 -------- d-----w- c:\users\Spravca\AppData\Local\Apple Computer
2012-10-07 13:07 . 2012-10-07 13:07 -------- d-----w- c:\users\Spravca\AppData\Roaming\Malwarebytes
2012-10-07 13:07 . 2012-10-07 13:07 -------- d-----w- c:\programdata\Malwarebytes
2012-10-07 13:07 . 2012-09-07 15:04 22856 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-10-07 13:07 . 2012-10-07 13:07 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2012-10-07 13:01 . 2012-08-30 08:17 6980552 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{29367FEE-9183-49BE-9319-FCEC82C5FCF5}\mpengine.dll
2012-10-07 07:23 . 2012-10-07 07:23 388096 ----a-r- c:\users\Spravca\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2012-10-06 12:20 . 2012-10-07 07:23 -------- d-----w- c:\program files\trend micro
2012-10-06 12:20 . 2012-10-06 16:39 -------- d-----w- C:\rsit
2012-10-06 07:08 . 2012-10-07 14:00 -------- d-----w- c:\users\Spravca\AppData\Roaming\Wise Care 365
2012-10-06 07:08 . 2012-10-06 07:08 -------- d-----w- c:\program files\Defraggler
2012-10-06 07:07 . 2012-10-06 07:07 -------- d-----w- c:\program files\Wise
2012-09-17 06:42 . 2012-09-17 06:42 73696 ----a-w- c:\program files\Mozilla Firefox\breakpadinjector.dll
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-09-21 09:47 . 2012-06-19 11:06 696240 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2012-09-21 09:47 . 2012-02-04 16:39 73136 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-09-17 06:42 . 2012-01-15 11:40 266720 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-19 125952]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\daemon.exe" [2008-12-29 687560]
"Sidebar"="c:\program files\windows sidebar\sidebar.exe" [2009-04-11 1233920]
"WMPNSCFG"="c:\program files\Windows Media Player\WMPNSCFG.exe" [2008-01-19 202240]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2012-07-13 17418928]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2008-03-28 1045800]
"HP Software Update"="c:\program files\Hp\HP Software Update\HPWuSchd2.exe" [2005-02-16 49152]
"QPService"="c:\program files\HP\QuickPlay\QPService.exe" [2007-01-15 172032]
"QlbCtrl"="c:\program files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe" [2006-11-06 159744]
"HP Health Check Scheduler"="c:\program files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe" [2006-12-04 46704]
"hpWirelessAssistant"="c:\program files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe" [2007-01-10 472776]
"WAWifiMessage"="c:\program files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe" [2007-01-10 317128]
"NeroFilterCheck"="c:\windows\system32\NeroCheck.exe" [2001-07-09 155648]
"AppleSyncNotifier"="c:\program files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe" [2008-07-22 116040]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2008-07-30 289064]
"egui"="c:\program files\ESET\ESET NOD32 Antivirus\egui.exe" [2010-02-26 2140880]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2009-06-24 13601312]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2009-06-24 92704]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"Launcher"="c:\windows\SMINST\launcher.exe" [2006-11-07 44128]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
IO Control.lnk - c:\windows\Installer\{6F059EF3-4B0C-4566-8061-2FB4FF079D77}\NewShortcut39_1D40F960EB3A46E085A5B4E3B23AE340.exe [2011-11-8 155648]
PDFCreator.lnk - c:\program files\PDFCreator\PDFCreator.exe [2011-5-11 2641920]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc\S-1-5-21-2611934306-1023505321-2062823691-1000]
"EnableNotificationsRef"=dword:00000001
.
R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [x]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
.
Contents of the 'Scheduled Tasks' folder
.
2012-10-07 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-06-19 09:47]
.
2012-10-07 c:\windows\Tasks\Wise Care 365.job
- c:\program files\Wise\Wise Care 365\WiseTray.exe [2012-10-06 15:24]
.
.
------- Supplementary Scan -------
.
uSearchURL,(Default) = hxxp://www.google.com/keyword/%s
IE: E&xportovať do programu Microsoft Excel - c:\progra~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
TCP: DhcpNameServer = 192.168.11.1 192.168.0.1
TCP: Interfaces\{41E35E7A-60E3-41F6-A396-3BA5B02BC1BF}: NameServer = 147.213.240.2
FF - ProfilePath - c:\users\Spravca\AppData\Roaming\Mozilla\Firefox\Profiles\rccop2ac.default\
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2012-10-07 18:20
Windows 6.0.6002 Service Pack 2 NTFS
.
scanning hidden processes ...
.
scanning hidden autostart entries ...
.
scanning hidden files ...
.
scan completed successfully
hidden files: 0
.
**************************************************************************
.
--------------------- DLLs Loaded Under Running Processes ---------------------
.
- - - - - - - > 'Explorer.exe'(4752)
c:\program files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
.
------------------------ Other Running Processes ------------------------
.
c:\windows\system32\nvvsvc.exe
c:\windows\system32\rundll32.exe
c:\program files\Agilent\IO Libraries Suite\AgilentIOLibrariesService.exe
c:\program files\Agilent\IO Libraries Suite\LxiMdnsResponder.exe
c:\program files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
c:\program files\Bonjour\mDNSResponder.exe
c:\program files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe
c:\program files\Agilent\IO Libraries Suite\AgilentNkoServer.exe
c:\program files\ESET\ESET NOD32 Antivirus\ekrn.exe
c:\program files\Common Files\LightScribe\LSSrvc.exe
c:\program files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
c:\program files\Agilent\IO Libraries Suite\bin\iproc488.exe
c:\program files\Agilent\IO Libraries Suite\bin\iproc82357.exe
c:\windows\system32\DRIVERS\xaudio.exe
c:\program files\HP\QuickPlay\Kernel\TV\CLSched.exe
c:\program files\Hewlett-Packard\Shared\hpqwmiex.exe
c:\windows\system32\conime.exe
c:\windows\System32\rundll32.exe
c:\windows\ehome\ehmsas.exe
c:\program files\Agilent\IO Libraries Suite\bin\iprocsvr.exe
c:\program files\Agilent\IO Libraries Suite\bin\iproc8491.exe
c:\program files\iPod\bin\iPodService.exe
c:\program files\Windows Media Player\wmpnetwk.exe
c:\progra~1\HEWLET~1\Shared\HPQTOA~1.EXE
c:\program files\Synaptics\SynTP\SynTPHelper.exe
c:\program files\Hewlett-Packard\HP Health Check\hphc_service.exe
c:\windows\servicing\TrustedInstaller.exe
c:\program files\Mozilla Firefox\firefox.exe
c:\windows\System32\wsqmcons.exe
.
**************************************************************************
.
Completion time: 2012-10-07 18:29:47 - machine was rebooted
ComboFix-quarantined-files.txt 2012-10-07 16:29
ComboFix2.txt 2012-10-07 14:24
.
Pre-Run: Volných bajtů: 74,283,388,928
Post-Run: Volných bajtů: 74,251,325,440
.
- - End Of File - - 201E30B0776F51F62B812F3CA3DD4A5F
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1250.421.1029.18.1021.360 [GMT 2:00]
Running from: c:\users\Spravca\Desktop\ComboFix.exe
Command switches used :: c:\users\Spravca\Desktop\CFScript.txt
AV: ESET NOD32 Antivirus 4.2 *Enabled/Updated* {CB0F8167-5331-BA19-698E-64816B6801A5}
SP: ESET NOD32 Antivirus 4.2 *Enabled/Updated* {706E6083-750B-B597-533E-5FF310EF4B18}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((( Files Created from 2012-09-07 to 2012-10-07 )))))))))))))))))))))))))))))))
.
.
2012-10-07 16:17 . 2012-10-07 16:21 -------- d-----w- c:\users\Spravca\AppData\Local\temp
2012-10-07 13:37 . 2012-10-07 13:37 -------- d-----w- c:\users\Spravca\AppData\Local\Apple Computer
2012-10-07 13:07 . 2012-10-07 13:07 -------- d-----w- c:\users\Spravca\AppData\Roaming\Malwarebytes
2012-10-07 13:07 . 2012-10-07 13:07 -------- d-----w- c:\programdata\Malwarebytes
2012-10-07 13:07 . 2012-09-07 15:04 22856 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-10-07 13:07 . 2012-10-07 13:07 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2012-10-07 13:01 . 2012-08-30 08:17 6980552 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{29367FEE-9183-49BE-9319-FCEC82C5FCF5}\mpengine.dll
2012-10-07 07:23 . 2012-10-07 07:23 388096 ----a-r- c:\users\Spravca\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2012-10-06 12:20 . 2012-10-07 07:23 -------- d-----w- c:\program files\trend micro
2012-10-06 12:20 . 2012-10-06 16:39 -------- d-----w- C:\rsit
2012-10-06 07:08 . 2012-10-07 14:00 -------- d-----w- c:\users\Spravca\AppData\Roaming\Wise Care 365
2012-10-06 07:08 . 2012-10-06 07:08 -------- d-----w- c:\program files\Defraggler
2012-10-06 07:07 . 2012-10-06 07:07 -------- d-----w- c:\program files\Wise
2012-09-17 06:42 . 2012-09-17 06:42 73696 ----a-w- c:\program files\Mozilla Firefox\breakpadinjector.dll
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-09-21 09:47 . 2012-06-19 11:06 696240 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2012-09-21 09:47 . 2012-02-04 16:39 73136 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-09-17 06:42 . 2012-01-15 11:40 266720 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-19 125952]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\daemon.exe" [2008-12-29 687560]
"Sidebar"="c:\program files\windows sidebar\sidebar.exe" [2009-04-11 1233920]
"WMPNSCFG"="c:\program files\Windows Media Player\WMPNSCFG.exe" [2008-01-19 202240]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2012-07-13 17418928]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2008-03-28 1045800]
"HP Software Update"="c:\program files\Hp\HP Software Update\HPWuSchd2.exe" [2005-02-16 49152]
"QPService"="c:\program files\HP\QuickPlay\QPService.exe" [2007-01-15 172032]
"QlbCtrl"="c:\program files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe" [2006-11-06 159744]
"HP Health Check Scheduler"="c:\program files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe" [2006-12-04 46704]
"hpWirelessAssistant"="c:\program files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe" [2007-01-10 472776]
"WAWifiMessage"="c:\program files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe" [2007-01-10 317128]
"NeroFilterCheck"="c:\windows\system32\NeroCheck.exe" [2001-07-09 155648]
"AppleSyncNotifier"="c:\program files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe" [2008-07-22 116040]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2008-07-30 289064]
"egui"="c:\program files\ESET\ESET NOD32 Antivirus\egui.exe" [2010-02-26 2140880]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2009-06-24 13601312]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2009-06-24 92704]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"Launcher"="c:\windows\SMINST\launcher.exe" [2006-11-07 44128]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
IO Control.lnk - c:\windows\Installer\{6F059EF3-4B0C-4566-8061-2FB4FF079D77}\NewShortcut39_1D40F960EB3A46E085A5B4E3B23AE340.exe [2011-11-8 155648]
PDFCreator.lnk - c:\program files\PDFCreator\PDFCreator.exe [2011-5-11 2641920]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc\S-1-5-21-2611934306-1023505321-2062823691-1000]
"EnableNotificationsRef"=dword:00000001
.
R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [x]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
.
Contents of the 'Scheduled Tasks' folder
.
2012-10-07 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-06-19 09:47]
.
2012-10-07 c:\windows\Tasks\Wise Care 365.job
- c:\program files\Wise\Wise Care 365\WiseTray.exe [2012-10-06 15:24]
.
.
------- Supplementary Scan -------
.
uSearchURL,(Default) = hxxp://www.google.com/keyword/%s
IE: E&xportovať do programu Microsoft Excel - c:\progra~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
TCP: DhcpNameServer = 192.168.11.1 192.168.0.1
TCP: Interfaces\{41E35E7A-60E3-41F6-A396-3BA5B02BC1BF}: NameServer = 147.213.240.2
FF - ProfilePath - c:\users\Spravca\AppData\Roaming\Mozilla\Firefox\Profiles\rccop2ac.default\
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2012-10-07 18:20
Windows 6.0.6002 Service Pack 2 NTFS
.
scanning hidden processes ...
.
scanning hidden autostart entries ...
.
scanning hidden files ...
.
scan completed successfully
hidden files: 0
.
**************************************************************************
.
--------------------- DLLs Loaded Under Running Processes ---------------------
.
- - - - - - - > 'Explorer.exe'(4752)
c:\program files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
.
------------------------ Other Running Processes ------------------------
.
c:\windows\system32\nvvsvc.exe
c:\windows\system32\rundll32.exe
c:\program files\Agilent\IO Libraries Suite\AgilentIOLibrariesService.exe
c:\program files\Agilent\IO Libraries Suite\LxiMdnsResponder.exe
c:\program files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
c:\program files\Bonjour\mDNSResponder.exe
c:\program files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe
c:\program files\Agilent\IO Libraries Suite\AgilentNkoServer.exe
c:\program files\ESET\ESET NOD32 Antivirus\ekrn.exe
c:\program files\Common Files\LightScribe\LSSrvc.exe
c:\program files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
c:\program files\Agilent\IO Libraries Suite\bin\iproc488.exe
c:\program files\Agilent\IO Libraries Suite\bin\iproc82357.exe
c:\windows\system32\DRIVERS\xaudio.exe
c:\program files\HP\QuickPlay\Kernel\TV\CLSched.exe
c:\program files\Hewlett-Packard\Shared\hpqwmiex.exe
c:\windows\system32\conime.exe
c:\windows\System32\rundll32.exe
c:\windows\ehome\ehmsas.exe
c:\program files\Agilent\IO Libraries Suite\bin\iprocsvr.exe
c:\program files\Agilent\IO Libraries Suite\bin\iproc8491.exe
c:\program files\iPod\bin\iPodService.exe
c:\program files\Windows Media Player\wmpnetwk.exe
c:\progra~1\HEWLET~1\Shared\HPQTOA~1.EXE
c:\program files\Synaptics\SynTP\SynTPHelper.exe
c:\program files\Hewlett-Packard\HP Health Check\hphc_service.exe
c:\windows\servicing\TrustedInstaller.exe
c:\program files\Mozilla Firefox\firefox.exe
c:\windows\System32\wsqmcons.exe
.
**************************************************************************
.
Completion time: 2012-10-07 18:29:47 - machine was rebooted
ComboFix-quarantined-files.txt 2012-10-07 16:29
ComboFix2.txt 2012-10-07 14:24
.
Pre-Run: Volných bajtů: 74,283,388,928
Post-Run: Volných bajtů: 74,251,325,440
.
- - End Of File - - 201E30B0776F51F62B812F3CA3DD4A5F
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 125 hostů