Klikl jsem na závadný odkaz, hrozí mi něco? Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
Žbeky
Moderátor
Guru Level 13
Guru Level 13
Příspěvky: 22288
Registrován: květen 08
Bydliště: Vsetín - Pardubice
Pohlaví: Muž
Stav:
Offline

Re: Klikl jsem na závadný odkaz, hrozí mi něco?

Příspěvekod Žbeky » 01 lis 2012 18:57

Otevři si Poznámkový blok (Start -> Spustit... a napiš do okna Notepad a dej Ok.
Zkopíruj do něj následující celý text označený zeleně:
Poznámka: Nepoužij k označení skriptu funkci VYBRAT VŠE

Kód: Vybrat vše

KillAll::

Folder::
c:\program files\Google\Update

File::
c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2566762723-2239351334-1036541059-1000Core.job
c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2566762723-2239351334-1036541059-1000UA.job
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
c:\users\PETR\AppData\Local\Temp\e118be9b-7497-40ff-bd0d-e0556fa0730b

Registry::
[-HKEY_LOCAL_MACHINE\system\ControlSet001\Services\speccy]

DDS::
mStart Page = hxxp://home.sweetim.com/?crg=4.0002002

Firefox::
FF - ProfilePath - c:\users\PETR\AppData\Roaming\Mozilla\Firefox\Profiles\q4q7mgby.default\
FF - prefs.js: browser.search.selectedEngine - AVG Secure Search

RegLock::
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0009\AllUserSettings]
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0010\AllUserSettings]
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0011\AllUserSettings]

RegNull::
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0009\AllUserSettings]
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0010\AllUserSettings]
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0011\AllUserSettings]

Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.

Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe a když se oba soubory překryjí, skript upusť.
- Automaticky se spustí ComboFix
- Vlož sem log, který vyběhne v závěru čistícího procesu
V SZ řeším jen záležitosti týkající se fóra. Na prosby a žádosti o technickou podporu nereaguji. Díky za pochopení.

HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra

Reklama
Uživatelský avatar
Peťa
Level 5
Level 5
Příspěvky: 2123
Registrován: duben 10
Pohlaví: Muž
Stav:
Offline

Re: Klikl jsem na závadný odkaz, hrozí mi něco?

Příspěvekod Peťa » 01 lis 2012 19:24

Nový log z Combofixu

ComboFix 12-10-31.03 - PETR 01.11.2012 19:06:25.5.2 - x86
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1250.420.1029.18.3069.1894 [GMT 1:00]
Spuštěný z: c:\users\PETR\Desktop\ComboFix.exe
Použité ovládací přepínače :: c:\users\PETR\Desktop\CFScript.txt
AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
FILE ::
"c:\users\PETR\AppData\Local\Temp\e118be9b-7497-40ff-bd0d-e0556fa0730b"
"c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2566762723-2239351334-1036541059-1000Core.job"
"c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2566762723-2239351334-1036541059-1000UA.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineCore.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineUA.job"
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files\Google\Update
c:\program files\Google\Update\1.3.21.123\GoogleCrashHandler.exe
c:\program files\Google\Update\1.3.21.123\GoogleCrashHandler64.exe
c:\program files\Google\Update\1.3.21.123\GoogleUpdate.exe
c:\program files\Google\Update\1.3.21.123\GoogleUpdateBroker.exe
c:\program files\Google\Update\1.3.21.123\GoogleUpdateHelper.msi
c:\program files\Google\Update\1.3.21.123\GoogleUpdateOnDemand.exe
c:\program files\Google\Update\1.3.21.123\GoogleUpdateSetup.exe
c:\program files\Google\Update\1.3.21.123\goopdate.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_am.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_ar.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_bg.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_bn.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_ca.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_cs.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_da.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_de.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_el.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_en-GB.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_en.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_es-419.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_es.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_et.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_fa.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_fi.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_fil.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_fr.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_gu.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_hi.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_hr.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_hu.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_id.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_is.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_it.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_iw.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_ja.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_kn.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_ko.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_lt.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_lv.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_ml.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_mr.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_ms.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_nl.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_no.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_pl.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_pt-BR.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_pt-PT.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_ro.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_ru.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_sk.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_sl.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_sr.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_sv.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_sw.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_ta.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_te.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_th.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_tr.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_uk.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_ur.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_vi.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_zh-CN.dll
c:\program files\Google\Update\1.3.21.123\goopdateres_zh-TW.dll
c:\program files\Google\Update\1.3.21.123\npGoogleUpdate3.dll
c:\program files\Google\Update\1.3.21.123\psmachine.dll
c:\program files\Google\Update\1.3.21.123\psuser.dll
c:\program files\Google\Update\Download\{430FD4D0-B729-4F61-AA34-91526481799D}\1.3.21.123\GoogleUpdateSetup.exe
c:\program files\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\22.0.1229.94\22.0.1229.94_chrome_installer.exe
c:\program files\Google\Update\Download\{8A69D345-D564-463C-AFF1-A69D9E530F96}\22.0.1229.94\22.0.1229.94_chrome_installer.exe
c:\program files\Google\Update\Download\{F3D8953F-6502-493D-8591-F1D0DF780024}\GoogleUpdateSetup.exe
c:\program files\Google\Update\GoogleUpdate.exe
c:\windows\system32\DEBUG.log
c:\windows\system32\drivers\etc\hosts.ics
c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2566762723-2239351334-1036541059-1000Core.job
c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2566762723-2239351334-1036541059-1000UA.job
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
.
Nakažená kopie c:\windows\system32\Services.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\windows\ERDNT\cache\services.exe
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Service_gupdate
-------\Service_gupdatem
-------\Service_gupdate
-------\Service_gupdatem
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-10-01 do 2012-11-01 )))))))))))))))))))))))))))))))
.
.
2012-11-01 18:15 . 2012-11-01 18:19 -------- d-----w- c:\users\PETR\AppData\Local\temp
2012-11-01 18:15 . 2012-11-01 18:15 -------- d-----w- c:\users\Public\AppData\Local\temp
2012-11-01 18:15 . 2012-11-01 18:15 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-11-01 16:14 . 2012-11-01 16:14 -------- d-----w- c:\users\PETR\AppData\Local\Adobe
2012-11-01 16:11 . 2012-11-01 16:11 -------- d-----w- c:\program files\EAGLE-6.2.0
2012-11-01 16:11 . 2012-11-01 16:11 -------- d-----w- c:\users\PETR\AppData\Roaming\CadSoft
2012-10-31 15:07 . 2012-10-31 15:07 -------- d-----w- c:\users\PETR\AppData\Local\ATI
2012-10-30 14:31 . 2012-10-17 00:32 6918632 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{F80D65DE-AB6B-473B-BE66-124605504928}\mpengine.dll
2012-10-26 17:50 . 2008-09-08 12:31 1885488 ----a-w- c:\windows\system32\BttnCmns.dll
2012-10-26 17:50 . 2008-09-08 12:31 1885488 ----a-r- c:\windows\system32\BttnCmn.dll
2012-10-21 18:22 . 2012-10-21 18:22 -------- d-----w- c:\users\PETR\AppData\Roaming\GTek
2012-10-21 08:14 . 2012-06-02 00:02 985088 ----a-w- c:\windows\system32\crypt32.dll
2012-10-21 08:14 . 2012-06-02 00:02 98304 ----a-w- c:\windows\system32\cryptnet.dll
2012-10-21 08:14 . 2012-06-02 00:02 133120 ----a-w- c:\windows\system32\cryptsvc.dll
2012-10-21 08:14 . 2012-08-24 15:53 172544 ----a-w- c:\windows\system32\wintrust.dll
2012-10-21 08:13 . 2012-09-13 13:28 2048 ----a-w- c:\windows\system32\tzres.dll
2012-10-21 08:13 . 2012-07-04 14:02 2047488 ----a-w- c:\windows\system32\win32k.sys
2012-10-21 08:13 . 2012-08-29 11:27 3602816 ----a-w- c:\windows\system32\ntkrnlpa.exe
2012-10-21 08:13 . 2012-08-29 11:27 3550080 ----a-w- c:\windows\system32\ntoskrnl.exe
2012-10-21 07:52 . 2012-08-24 06:52 387584 ----a-w- c:\program files\Internet Explorer\jsdbgui.dll
2012-10-21 07:52 . 2012-08-24 06:53 678912 ----a-w- c:\program files\Internet Explorer\iedvtool.dll
2012-10-21 07:52 . 2012-08-24 06:51 1427968 ----a-w- c:\windows\system32\inetcpl.cpl
2012-10-20 15:02 . 2012-05-11 15:57 623616 ----a-w- c:\windows\system32\localspl.dll
2012-10-09 15:18 . 2012-10-26 17:19 -------- d-----w- c:\users\PETR\AppData\Roaming\hpqLog
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-10-20 16:00 . 2012-04-22 13:09 696760 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2012-10-20 16:00 . 2011-07-05 22:20 73656 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-09-29 18:54 . 2011-10-29 17:53 22856 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-08-21 09:13 . 2012-05-01 16:01 355632 ----a-w- c:\windows\system32\drivers\aswSP.sys
2012-08-21 09:13 . 2012-05-01 16:01 729752 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2012-08-21 09:13 . 2012-05-01 16:01 54232 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2012-08-21 09:13 . 2012-05-01 16:01 35928 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2012-08-21 09:13 . 2012-05-01 16:01 58680 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2012-08-21 09:13 . 2012-05-01 16:01 21256 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2012-08-21 09:12 . 2012-05-01 16:00 41224 ----a-w- c:\windows\avastSS.scr
2012-08-21 09:12 . 2012-05-01 16:00 227648 ----a-w- c:\windows\system32\aswBoot.exe
2011-06-03 14:25 . 2011-07-25 20:17 625984 ----a-w- c:\program files\Common Files\ZugoInstaller.exe
2012-03-13 04:38 . 2012-04-01 14:28 97208 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2012-08-21 09:12 121528 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-21 125952]
"Facebook Update"="c:\users\PETR\AppData\Local\Facebook\Update\FacebookUpdate.exe" [2012-07-12 138096]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2008-01-21 61440]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2010-05-27 1721640]
"DpAgent"="c:\program files\DigitalPersona\Bin\dpagent.exe" [2008-03-12 699456]
"QPService"="c:\program files\HP\QuickPlay\QPService.exe" [2008-05-14 468264]
"hpWirelessAssistant"="c:\program files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe" [2007-11-20 488752]
"SysTrayApp"="c:\program files\IDT\WDM\sttray.exe" [2008-06-27 442467]
"UCam_Menu"="c:\program files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe" [2008-06-13 210216]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2012-08-21 4282728]
"QlbCtrl.exe"="c:\program files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe" [2009-07-27 321080]
"OnScreenDisplay"="c:\program files\Hewlett-Packard\HP QuickTouch\HPKBDAPP.exe" [2007-11-01 554288]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Bluetooth.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [2008-1-16 727592]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"mixer"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Malwarebytes' Anti-Malware]
2012-09-29 18:54 766536 ----a-w- c:\program files\Malwarebytes' Anti-Malware\mbamgui.exe
.
R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [x]
S2 AESTFilters;Andrea ST Filters Service;c:\windows\System32\DriverStore\FileRepository\stwrt.inf_f691e717\aestsrv.exe [x]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
bthsvcs REG_MULTI_SZ BthServ
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
2008-02-26 12:06 451872 ----a-w- c:\program files\Common Files\LightScribe\LSRunOnce.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2012-11-01 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-22 16:00]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.google.cz/
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000
IE: Send image to &Bluetooth Device... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
IE: Send page to &Bluetooth Device... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
IE: {{781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - c:\program files\ICQ7M\ICQ.exe
TCP: DhcpNameServer = 192.168.0.250
TCP: Interfaces\{4AB29756-B6E5-46BF-BC56-F3E930C6C40B}: NameServer = 8.8.8.8,8.8.4.4
FF - ProfilePath - c:\users\PETR\AppData\Roaming\Mozilla\Firefox\Profiles\q4q7mgby.default\
FF - prefs.js: browser.startup.homepage - www.google.cz
FF - ExtSQL: 2012-09-02 10:25; {9c51bd27-6ed8-4000-a2bf-36cb95c0c947}; c:\users\PETR\AppData\Roaming\Mozilla\Firefox\Profiles\q4q7mgby.default\extensions\{9c51bd27-6ed8-4000-a2bf-36cb95c0c947}.xpi
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
SafeBoot-Wdf01000.sys
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2012-11-01 19:18
Windows 6.0.6002 Service Pack 2 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'Explorer.exe'(1496)
c:\program files\DigitalPersona\Bin\DpoFeedb.dll
c:\windows\system32\btmmhook.dll
c:\windows\system32\btncopy.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\system32\Ati2evxx.exe
c:\windows\System32\DriverStore\FileRepository\stwrt.inf_a7e996cd\STacSV.exe
c:\windows\system32\Hpservice.exe
c:\windows\system32\vfsFPService.exe
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\windows\system32\Ati2evxx.exe
c:\windows\system32\WLANExt.exe
c:\program files\DigitalPersona\Bin\DpHostW.exe
c:\program files\Common Files\LightScribe\LSSrvc.exe
c:\windows\system32\PnkBstrA.exe
c:\program files\HP\QuickPlay\Kernel\TV\QPCapSvc.exe
c:\program files\HP\QuickPlay\Kernel\TV\QPSched.exe
c:\windows\SMINST\BLService.exe
c:\program files\CyberLink\Shared Files\RichVideo.exe
c:\windows\servicing\TrustedInstaller.exe
c:\windows\system32\conime.exe
c:\program files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
c:\program files\Hewlett-Packard\Shared\hpqwmiex.exe
c:\windows\ehome\ehmsas.exe
c:\program files\Hewlett-Packard\HP wireless Assistant\WiFiMsg.EXE
c:\program files\WIDCOMM\Bluetooth Software\BtStackServer.exe
c:\program files\Hewlett-Packard\Shared\hpqToaster.exe
c:\program files\Hewlett-Packard\HP Health Check\hphc_service.exe
c:\program files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
c:\program files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
c:\program files\Synaptics\SynTP\SynTPHelper.exe
c:\\?\c:\windows\system32\wbem\WMIADAP.EXE
.
**************************************************************************
.
Celkový čas: 2012-11-01 19:23:31 - počítač byl restartován
ComboFix-quarantined-files.txt 2012-11-01 18:23
ComboFix2.txt 2012-10-31 18:14
ComboFix3.txt 2012-03-02 22:01
.
Před spuštěním: Volných bajtů: 164 209 045 504
Po spuštění: Volných bajtů: 163 814 486 016
.
- - End Of File - - 4FA245DDFC769B0AB4B45914CD7649BA

Uživatelský avatar
memphisto
Guru Level 13
Guru Level 13
Příspěvky: 21113
Registrován: září 06
Bydliště: Zlín - České Budějovice
Pohlaví: Muž
Stav:
Offline

Re: Klikl jsem na závadný odkaz, hrozí mi něco?

Příspěvekod memphisto » 02 lis 2012 10:23

ComboFix se odinstaluje takto:
Start-Spustit a zadej ComboFix /Uninstall

Vyčisti systém CCleanerem
a použij i T-Cleaner
smaže vše po Combu,MWAVu atd.-stáhneš>spustíš

pozn. před stažením T-Cleaneru a po dobu čištění deaktivuj antivir a antispyware ,následně T-Cleaner smaž a zapni si znovu antivir a antispyware.


+ HJT

Jak se chová PC?
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji

Uživatelský avatar
Peťa
Level 5
Level 5
Příspěvky: 2123
Registrován: duben 10
Pohlaví: Muž
Stav:
Offline

Re: Klikl jsem na závadný odkaz, hrozí mi něco?

Příspěvekod Peťa » 02 lis 2012 15:56

PC se chová bezproblémově.
Ještě tu mám log z toho TDSSKilleru. Část první:

18:51:09.0980 4384 TDSS rootkit removing tool 2.8.13.0 Oct 12 2012 17:26:47
18:51:10.0157 4384 ============================================================
18:51:10.0157 4384 Current date / time: 2012/10/31 18:51:10.0156
18:51:10.0157 4384 SystemInfo:
18:51:10.0157 4384
18:51:10.0157 4384 OS Version: 6.0.6002 ServicePack: 2.0
18:51:10.0157 4384 Product type: Workstation
18:51:10.0157 4384 ComputerName: PETR-PC
18:51:10.0157 4384 UserName: PETR
18:51:10.0157 4384 Windows directory: C:\Windows
18:51:10.0157 4384 System windows directory: C:\Windows
18:51:10.0157 4384 Processor architecture: Intel x86
18:51:10.0157 4384 Number of processors: 2
18:51:10.0157 4384 Page size: 0x1000
18:51:10.0157 4384 Boot type: Normal boot
18:51:10.0157 4384 ============================================================
18:51:11.0193 4384 Drive \Device\Harddisk0\DR0 - Size: 0x3A38B2E000 (232.89 Gb), SectorSize: 0x200, Cylinders: 0x76C1, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
18:51:11.0197 4384 ============================================================
18:51:11.0197 4384 \Device\Harddisk0\DR0:
18:51:11.0197 4384 MBR partitions:
18:51:11.0197 4384 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x1C24710F
18:51:11.0197 4384 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x1C249000, BlocksNum 0xF7B000
18:51:11.0197 4384 ============================================================
18:51:11.0218 4384 C: <-> \Device\Harddisk0\DR0\Partition1
18:51:11.0288 4384 D: <-> \Device\Harddisk0\DR0\Partition2
18:51:11.0288 4384 ============================================================
18:51:11.0288 4384 Initialize success
18:51:11.0288 4384 ============================================================
18:51:19.0509 5080 ============================================================
18:51:19.0509 5080 Scan started
18:51:19.0509 5080 Mode: Manual;
18:51:19.0509 5080 ============================================================
18:51:20.0030 5080 ================ Scan system memory ========================
18:51:20.0030 5080 System memory - ok
18:51:20.0031 5080 ================ Scan services =============================
18:51:20.0215 5080 [ 3B10711AD8656C097E0D16A41B29C54C ] Accelerometer C:\Windows\system32\DRIVERS\Accelerometer.sys
18:51:20.0217 5080 Accelerometer - ok
18:51:20.0268 5080 [ 82B296AE1892FE3DBEE00C9CF92F8AC7 ] ACPI C:\Windows\system32\drivers\acpi.sys
18:51:20.0271 5080 ACPI - ok
18:51:20.0350 5080 [ 44C00A385CA9DBC1D5CF3781F8C26AEA ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
18:51:20.0355 5080 AdobeFlashPlayerUpdateSvc - ok
18:51:20.0405 5080 [ 04F0FCAC69C7C71A3AC4EB97FAFC8303 ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
18:51:20.0411 5080 adp94xx - ok
18:51:20.0430 5080 [ 60505E0041F7751BDBB80F88BF45C2CE ] adpahci C:\Windows\system32\drivers\adpahci.sys
18:51:20.0435 5080 adpahci - ok
18:51:20.0456 5080 [ 8A42779B02AEC986EAB64ECFC98F8BD7 ] adpu160m C:\Windows\system32\drivers\adpu160m.sys
18:51:20.0459 5080 adpu160m - ok
18:51:20.0473 5080 [ 241C9E37F8CE45EF51C3DE27515CA4E5 ] adpu320 C:\Windows\system32\drivers\adpu320.sys
18:51:20.0475 5080 adpu320 - ok
18:51:20.0527 5080 [ 9D1FDA9E086BA64E3C93C9DE32461BCF ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
18:51:20.0528 5080 AeLookupSvc - ok
18:51:20.0619 5080 [ EF1142512BEC12F1C2C87735DA1755BE ] AESTFilters C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_f691e717\aestsrv.exe
18:51:20.0621 5080 AESTFilters - ok
18:51:20.0673 5080 [ 3911B972B55FEA0478476B2E777B29FA ] AFD C:\Windows\system32\drivers\afd.sys
18:51:20.0678 5080 AFD - ok
18:51:20.0717 5080 [ 13F9E33747E6B41A3FF305C37DB0D360 ] agp440 C:\Windows\system32\drivers\agp440.sys
18:51:20.0719 5080 agp440 - ok
18:51:20.0754 5080 [ E331924FDF522CD7CEA1B647503784E8 ] ahcix86s C:\Windows\system32\DRIVERS\ahcix86s.sys
18:51:20.0756 5080 ahcix86s - ok
18:51:20.0772 5080 [ AE1FDF7BF7BB6C6A70F67699D880592A ] aic78xx C:\Windows\system32\drivers\djsvs.sys
18:51:20.0773 5080 aic78xx - ok
18:51:20.0785 5080 [ A1545B731579895D8CC44FC0481C1192 ] ALG C:\Windows\System32\alg.exe
18:51:20.0787 5080 ALG - ok
18:51:20.0800 5080 [ 9EAEF5FC9B8E351AFA7E78A6FAE91F91 ] aliide C:\Windows\system32\drivers\aliide.sys
18:51:20.0801 5080 aliide - ok
18:51:20.0819 5080 [ C47344BC706E5F0B9DCE369516661578 ] amdagp C:\Windows\system32\drivers\amdagp.sys
18:51:20.0821 5080 amdagp - ok
18:51:20.0878 5080 [ BAFEC23FC76AB781DFE9169F9B8DBEBB ] Amddfltr C:\Windows\system32\DRIVERS\Amddfltr.sys
18:51:20.0879 5080 Amddfltr - ok
18:51:20.0889 5080 [ 9B78A39A4C173FDBC1321E0DD659B34C ] amdide C:\Windows\system32\drivers\amdide.sys
18:51:20.0890 5080 amdide - ok
18:51:20.0913 5080 [ 18F29B49AD23ECEE3D2A826C725C8D48 ] AmdK7 C:\Windows\system32\drivers\amdk7.sys
18:51:20.0914 5080 AmdK7 - ok
18:51:20.0921 5080 [ 93AE7F7DD54AB986A6F1A1B37BE7442D ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
18:51:20.0922 5080 AmdK8 - ok
18:51:20.0967 5080 [ C6D704C7F0434DC791AAC37CAC4B6E14 ] Appinfo C:\Windows\System32\appinfo.dll
18:51:20.0968 5080 Appinfo - ok
18:51:21.0015 5080 [ 5D2888182FB46632511ACEE92FDAD522 ] arc C:\Windows\system32\drivers\arc.sys
18:51:21.0016 5080 arc - ok
18:51:21.0030 5080 [ 5E2A321BD7C8B3624E41FDEC3E244945 ] arcsas C:\Windows\system32\drivers\arcsas.sys
18:51:21.0032 5080 arcsas - ok
18:51:21.0081 5080 [ F5DC168BF77572D51BE28BA261B30CB4 ] aswFsBlk C:\Windows\system32\drivers\aswFsBlk.sys
18:51:21.0083 5080 aswFsBlk - ok
18:51:21.0109 5080 [ F76E51561562AC4105DBBE53FC99BC10 ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
18:51:21.0111 5080 aswMonFlt - ok
18:51:21.0130 5080 [ B7D5E4486BA658ED08624D8084ABB830 ] AswRdr C:\Windows\system32\drivers\AswRdr.sys
18:51:21.0132 5080 AswRdr - ok
18:51:21.0184 5080 [ 30E45AF8B4D83176CA850FC9699E860B ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
18:51:21.0214 5080 aswSnx - ok
18:51:21.0237 5080 [ F04BDBCB965C05C51F4A7DE7B62063D6 ] aswSP C:\Windows\system32\drivers\aswSP.sys
18:51:21.0243 5080 aswSP - ok
18:51:21.0268 5080 [ DFE9152ABFA89BB8CFDC057409B2D4DA ] aswTdi C:\Windows\system32\drivers\aswTdi.sys
18:51:21.0269 5080 aswTdi - ok
18:51:21.0297 5080 [ 53B202ABEE6455406254444303E87BE1 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
18:51:21.0298 5080 AsyncMac - ok
18:51:21.0327 5080 [ 1F05B78AB91C9075565A9D8A4B880BC4 ] atapi C:\Windows\system32\drivers\atapi.sys
18:51:21.0328 5080 atapi - ok
18:51:21.0387 5080 [ 2846F5EE802889D500FCF5CC48B28381 ] athr C:\Windows\system32\DRIVERS\athr.sys
18:51:21.0418 5080 athr - ok
18:51:21.0492 5080 [ 443CA4F36D0E2576AC0BD7A73A45F32B ] athur C:\Windows\system32\DRIVERS\athur.sys
18:51:21.0535 5080 athur - ok
18:51:21.0590 5080 [ A8F308D79950DE33B478A3E5E026ADD9 ] Ati External Event Utility C:\Windows\system32\Ati2evxx.exe
18:51:21.0613 5080 Ati External Event Utility - ok
18:51:21.0719 5080 [ 5000E60040E45B3E72791B19E1CED1E9 ] atikmdag C:\Windows\system32\DRIVERS\atikmdag.sys
18:51:21.0806 5080 atikmdag - ok
18:51:21.0845 5080 [ 4AA1EB65481C392955939E735D27118B ] AtiPcie C:\Windows\system32\DRIVERS\AtiPcie.sys
18:51:21.0846 5080 AtiPcie - ok
18:51:21.0900 5080 [ 68E2A1A0407A66CF50DA0300852424AB ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
18:51:21.0906 5080 AudioEndpointBuilder - ok
18:51:21.0914 5080 [ 68E2A1A0407A66CF50DA0300852424AB ] Audiosrv C:\Windows\System32\Audiosrv.dll
18:51:21.0917 5080 Audiosrv - ok
18:51:22.0027 5080 [ 04AC21E821F259845BD7367CEE057290 ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
18:51:22.0029 5080 avast! Antivirus - ok
18:51:22.0080 5080 [ 69A7CE53FFA89E0116FAF5369384BBE5 ] AVerAF15 C:\Windows\system32\Drivers\AVerAF15.sys
18:51:22.0084 5080 AVerAF15 - ok
18:51:22.0134 5080 [ CF6A67C90951E3E763D2135DEDE44B85 ] BCM43XV C:\Windows\system32\DRIVERS\bcmwl6.sys
18:51:22.0156 5080 BCM43XV - ok
18:51:22.0181 5080 [ 67E506B75BD5326A3EC7B70BD014DFB6 ] Beep C:\Windows\system32\drivers\Beep.sys
18:51:22.0182 5080 Beep - ok
18:51:22.0233 5080 [ C789AF0F724FDA5852FB9A7D3A432381 ] BFE C:\Windows\System32\bfe.dll
18:51:22.0239 5080 BFE - ok
18:51:22.0300 5080 [ 93952506C6D67330367F7E7934B6A02F ] BITS C:\Windows\system32\qmgr.dll
18:51:22.0333 5080 BITS - ok
18:51:22.0341 5080 [ D4DF28447741FD3D953526E33A617397 ] blbdrive C:\Windows\system32\drivers\blbdrive.sys
18:51:22.0342 5080 blbdrive - ok
18:51:22.0376 5080 [ 35F376253F687BDE63976CCB3F2108CA ] bowser C:\Windows\system32\DRIVERS\bowser.sys
18:51:22.0377 5080 bowser - ok
18:51:22.0400 5080 [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo C:\Windows\system32\drivers\brfiltlo.sys
18:51:22.0401 5080 BrFiltLo - ok
18:51:22.0409 5080 [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp C:\Windows\system32\drivers\brfiltup.sys
18:51:22.0410 5080 BrFiltUp - ok
18:51:22.0439 5080 [ A3629A0C4226F9E9C72FAAEEBC3AD33C ] Browser C:\Windows\System32\browser.dll
18:51:22.0441 5080 Browser - ok
18:51:22.0475 5080 [ B304E75CFF293029EDDF094246747113 ] Brserid C:\Windows\system32\drivers\brserid.sys
18:51:22.0476 5080 Brserid - ok
18:51:22.0483 5080 [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm C:\Windows\system32\drivers\brserwdm.sys
18:51:22.0484 5080 BrSerWdm - ok
18:51:22.0492 5080 [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm C:\Windows\system32\drivers\brusbmdm.sys
18:51:22.0493 5080 BrUsbMdm - ok
18:51:22.0499 5080 [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer C:\Windows\system32\drivers\brusbser.sys
18:51:22.0500 5080 BrUsbSer - ok
18:51:22.0550 5080 [ 6D39C954799B63BA866910234CF7D726 ] BthEnum C:\Windows\system32\DRIVERS\BthEnum.sys
18:51:22.0551 5080 BthEnum - ok
18:51:22.0587 5080 [ 9A966A8E86D1771911AE34A20D11BFF3 ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys
18:51:22.0588 5080 BTHMODEM - ok
18:51:22.0619 5080 [ 5904EFA25F829BF84EA6FB045134A1D8 ] BthPan C:\Windows\system32\DRIVERS\bthpan.sys
18:51:22.0620 5080 BthPan - ok
18:51:22.0685 5080 [ 611FF3F2F095C8D4A6D4CFD9DCC09793 ] BTHPORT C:\Windows\system32\Drivers\BTHport.sys
18:51:22.0707 5080 BTHPORT - ok
18:51:22.0745 5080 [ A4C8377FA4A994E07075107DBE2E3DCE ] BthServ C:\Windows\System32\bthserv.dll
18:51:22.0747 5080 BthServ - ok
18:51:22.0762 5080 [ D330803EAB2A15CAEC7F011F1D4CB30E ] BTHUSB C:\Windows\system32\Drivers\BTHUSB.sys
18:51:22.0763 5080 BTHUSB - ok
18:51:22.0809 5080 [ 99AEEA7CEFDFC6E4151A8F620D682088 ] btwaudio C:\Windows\system32\drivers\btwaudio.sys
18:51:22.0810 5080 btwaudio - ok
18:51:22.0845 5080 [ 195872E48A7FB01F8BC9B800F70F4054 ] btwavdt C:\Windows\system32\drivers\btwavdt.sys
18:51:22.0846 5080 btwavdt - ok
18:51:22.0873 5080 [ 0724E7D6C9B6A289EDDDA33FA8176E80 ] btwrchid C:\Windows\system32\DRIVERS\btwrchid.sys
18:51:22.0875 5080 btwrchid - ok
18:51:22.0895 5080 catchme - ok
18:51:22.0929 5080 [ 7ADD03E75BEB9E6DD102C3081D29840A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
18:51:22.0931 5080 cdfs - ok
18:51:22.0969 5080 [ 6B4BFFB9BECD728097024276430DB314 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
18:51:22.0970 5080 cdrom - ok
18:51:23.0019 5080 [ 312EC3E37A0A1F2006534913E37B4423 ] CertPropSvc C:\Windows\System32\certprop.dll
18:51:23.0021 5080 CertPropSvc - ok
18:51:23.0038 5080 [ E5D4133F37219DBCFE102BC61072589D ] circlass C:\Windows\system32\DRIVERS\circlass.sys
18:51:23.0040 5080 circlass - ok
18:51:23.0062 5080 [ D7659D3B5B92C31E84E53C1431F35132 ] CLFS C:\Windows\system32\CLFS.sys
18:51:23.0067 5080 CLFS - ok
18:51:23.0116 5080 [ 8EE772032E2FE80A924F3B8DD5082194 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
18:51:23.0119 5080 clr_optimization_v2.0.50727_32 - ok
18:51:23.0182 5080 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
18:51:23.0185 5080 clr_optimization_v4.0.30319_32 - ok
18:51:23.0226 5080 [ 99AFC3795B58CC478FBBBCDC658FCB56 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
18:51:23.0227 5080 CmBatt - ok
18:51:23.0250 5080 [ 0CA25E686A4928484E9FDABD168AB629 ] cmdide C:\Windows\system32\drivers\cmdide.sys
18:51:23.0251 5080 cmdide - ok
18:51:23.0267 5080 cnnctfy2MP - ok
18:51:23.0376 5080 [ F9A79C5B27037821112C50A9C8FB367A ] Com4QLBEx C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
18:51:23.0381 5080 Com4QLBEx - ok
18:51:23.0401 5080 [ 6AFEF0B60FA25DE07C0968983EE4F60A ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
18:51:23.0402 5080 Compbatt - ok
18:51:23.0409 5080 COMSysApp - ok
18:51:23.0460 5080 [ C2EB4539A4F6AB6EDD01BDC191619975 ] cpuz135 C:\Windows\system32\drivers\cpuz135_x32.sys
18:51:23.0461 5080 cpuz135 - ok
18:51:23.0500 5080 [ 741E9DFF4F42D2D8477D0FC1DC0DF871 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
18:51:23.0501 5080 crcdisk - ok
18:51:23.0516 5080 [ 1F07BECDCA750766A96CDA811BA86410 ] Crusoe C:\Windows\system32\drivers\crusoe.sys
18:51:23.0518 5080 Crusoe - ok
18:51:23.0560 5080 [ F1E8C34892336D33EDDCDFE44E474F64 ] CryptSvc C:\Windows\system32\cryptsvc.dll
18:51:23.0564 5080 CryptSvc - ok
18:51:23.0624 5080 [ 3B5B4D53FEC14F7476CA29A20CC31AC9 ] DcomLaunch C:\Windows\system32\rpcss.dll
18:51:23.0646 5080 DcomLaunch - ok
18:51:23.0680 5080 [ 622C41A07CA7E6DD91770F50D532CB6C ] DfsC C:\Windows\system32\Drivers\dfsc.sys
18:51:23.0681 5080 DfsC - ok
18:51:23.0766 5080 [ 2CC3DCFB533A1035B13DCAB6160AB38B ] DFSR C:\Windows\system32\DFSR.exe
18:51:23.0820 5080 DFSR - ok
18:51:23.0868 5080 [ 9028559C132146FB75EB7ACF384B086A ] Dhcp C:\Windows\System32\dhcpcsvc.dll
18:51:23.0871 5080 Dhcp - ok
18:51:23.0902 5080 [ 5D4AEFC3386920236A548271F8F1AF6A ] disk C:\Windows\system32\drivers\disk.sys
18:51:23.0903 5080 disk - ok
18:51:23.0946 5080 [ 57D762F6F5974AF0DA2BE88A3349BAAA ] Dnscache C:\Windows\System32\dnsrslvr.dll
18:51:23.0950 5080 Dnscache - ok
18:51:23.0971 5080 [ 324FD74686B1EF5E7C19A8AF49E748F6 ] dot3svc C:\Windows\System32\dot3svc.dll
18:51:23.0976 5080 dot3svc - ok
18:51:24.0040 5080 [ DB162274197796AC5B3D54DA7ECA1909 ] DpHost C:\Program Files\DigitalPersona\Bin\DpHostW.exe
18:51:24.0045 5080 DpHost - ok
18:51:24.0093 5080 [ A622E888F8AA2F6B49E9BC466F0E5DEF ] DPS C:\Windows\system32\dps.dll
18:51:24.0098 5080 DPS - ok
18:51:24.0131 5080 [ 97FEF831AB90BEE128C9AF390E243F80 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
18:51:24.0132 5080 drmkaud - ok
18:51:24.0188 5080 [ C68AC676B0EF30CFBB1080ADCE49EB1F ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
18:51:24.0195 5080 DXGKrnl - ok
18:51:24.0228 5080 [ 5425F74AC0C1DBD96A1E04F17D63F94C ] E1G60 C:\Windows\system32\DRIVERS\E1G60I32.sys
18:51:24.0230 5080 E1G60 - ok
18:51:24.0251 5080 [ C0B95E40D85CD807D614E264248A45B9 ] EapHost C:\Windows\System32\eapsvc.dll
18:51:24.0255 5080 EapHost - ok
18:51:24.0315 5080 [ 7F64EA048DCFAC7ACF8B4D7B4E6FE371 ] Ecache C:\Windows\system32\drivers\ecache.sys
18:51:24.0317 5080 Ecache - ok
18:51:24.0398 5080 [ 9BE3744D295A7701EB425332014F0797 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
18:51:24.0404 5080 ehRecvr - ok
18:51:24.0426 5080 [ AD1870C8E5D6DD340C829E6074BF3C3F ] ehSched C:\Windows\ehome\ehsched.exe
18:51:24.0429 5080 ehSched - ok
18:51:24.0444 5080 [ C27C4EE8926E74AA72EFCAB24C5242C3 ] ehstart C:\Windows\ehome\ehstart.dll
18:51:24.0445 5080 ehstart - ok
18:51:24.0488 5080 [ 23B62471681A124889978F6295B3F4C6 ] elxstor C:\Windows\system32\drivers\elxstor.sys
18:51:24.0493 5080 elxstor - ok
18:51:24.0523 5080 [ 4E6B23DFC917EA39306B529B773950F4 ] EMDMgmt C:\Windows\system32\emdmgmt.dll
18:51:24.0544 5080 EMDMgmt - ok
18:51:24.0573 5080 [ 4CD6B056C5FD9E97C06FE74C81479517 ] enecir C:\Windows\system32\DRIVERS\enecir.sys
18:51:24.0574 5080 enecir - ok
18:51:24.0608 5080 [ 3DB974F3935483555D7148663F726C61 ] ErrDev C:\Windows\system32\drivers\errdev.sys
18:51:24.0609 5080 ErrDev - ok
18:51:24.0664 5080 [ 67058C46504BC12D821F38CF99B7B28F ] EventSystem C:\Windows\system32\es.dll
18:51:24.0668 5080 EventSystem - ok
18:51:24.0706 5080 [ 22B408651F9123527BCEE54B4F6C5CAE ] exfat C:\Windows\system32\drivers\exfat.sys
18:51:24.0709 5080 exfat - ok
18:51:24.0750 5080 [ 1E9B9A70D332103C52995E957DC09EF8 ] fastfat C:\Windows\system32\drivers\fastfat.sys
18:51:24.0754 5080 fastfat - ok
18:51:24.0771 5080 [ AFE1E8B9782A0DD7FB46BBD88E43F89A ] fdc C:\Windows\system32\DRIVERS\fdc.sys
18:51:24.0772 5080 fdc - ok
18:51:24.0813 5080 [ 6629B5F0E98151F4AFDD87567EA32BA3 ] fdPHost C:\Windows\system32\fdPHost.dll
18:51:24.0816 5080 fdPHost - ok
18:51:24.0841 5080 [ 89ED56DCE8E47AF40892778A5BD31FD2 ] FDResPub C:\Windows\system32\fdrespub.dll
18:51:24.0844 5080 FDResPub - ok
18:51:24.0882 5080 [ A8C0139A884861E3AAE9CFE73B208A9F ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
18:51:24.0884 5080 FileInfo - ok
18:51:24.0890 5080 [ 0AE429A696AECBC5970E3CF2C62635AE ] Filetrace C:\Windows\system32\drivers\filetrace.sys
18:51:24.0892 5080 Filetrace - ok
18:51:24.0899 5080 [ 85B7CF99D532820495D68D747FDA9EBD ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
18:51:24.0900 5080 flpydisk - ok
18:51:24.0923 5080 [ 01334F9EA68E6877C4EF05D3EA8ABB05 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
18:51:24.0926 5080 FltMgr - ok
18:51:24.0987 5080 [ 8CE364388C8ECA59B14B539179276D44 ] FontCache C:\Windows\system32\FntCache.dll
18:51:25.0009 5080 FontCache - ok
18:51:25.0079 5080 [ C7FBDD1ED42F82BFA35167A5C9803EA3 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
18:51:25.0081 5080 FontCache3.0.0.0 - ok
18:51:25.0121 5080 [ B972A66758577E0BFD1DE0F91AAA27B5 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
18:51:25.0122 5080 Fs_Rec - ok
18:51:25.0158 5080 [ 34582A6E6573D54A07ECE5FE24A126B5 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
18:51:25.0160 5080 gagp30kx - ok
18:51:25.0195 5080 [ 007AEA2E06E7CEF7372E40C277163959 ] ggflt C:\Windows\system32\DRIVERS\ggflt.sys
18:51:25.0196 5080 ggflt - ok
18:51:25.0215 5080 [ C73DE35960CA75C5AB4AE636B127C64E ] ggsemc C:\Windows\system32\DRIVERS\ggsemc.sys
18:51:25.0217 5080 ggsemc - ok
18:51:25.0245 5080 [ 77EBF3E9386DAA51551AF429052D88D0 ] giveio C:\Windows\system32\giveio.sys
18:51:25.0248 5080 giveio - ok
18:51:25.0297 5080 [ CD5D0AEEE35DFD4E986A5AA1500A6E66 ] gpsvc C:\Windows\System32\gpsvc.dll
18:51:25.0319 5080 gpsvc - ok
18:51:25.0369 5080 [ F02A533F517EB38333CB12A9E8963773 ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
18:51:25.0372 5080 gupdate - ok
18:51:25.0390 5080 [ F02A533F517EB38333CB12A9E8963773 ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
18:51:25.0392 5080 gupdatem - ok
18:51:25.0422 5080 [ 3F90E001369A07243763BD5A523D8722 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
18:51:25.0426 5080 HdAudAddService - ok
18:51:25.0477 5080 [ 062452B7FFD68C8C042A6261FE8DFF4A ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
18:51:25.0481 5080 HDAudBus - ok
18:51:25.0516 5080 [ FCB3F4BE408F72C1BD81BCABA87FC22F ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys
18:51:25.0517 5080 HidBth - ok
18:51:25.0549 5080 [ D8DF3722D5E961BAA1292AA2F12827E2 ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
18:51:25.0550 5080 HidIr - ok
18:51:25.0566 5080 [ 84067081F3318162797385E11A8F0582 ] hidserv C:\Windows\System32\hidserv.dll
18:51:25.0571 5080 hidserv - ok
18:51:25.0601 5080 [ CCA4B519B17E23A00B826C55716809CC ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
18:51:25.0602 5080 HidUsb - ok
18:51:25.0630 5080 [ D8AD255B37DA92434C26E4876DB7D418 ] hkmsvc C:\Windows\system32\kmsvc.dll
18:51:25.0635 5080 hkmsvc - ok
18:51:25.0700 5080 [ D13E6BFD7E9189D26A42E94CB2447044 ] HP Health Check Service c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
18:51:25.0702 5080 HP Health Check Service - ok
18:51:25.0731 5080 [ 16EE7B23A009E00D835CDB79574A91A6 ] HpCISSs C:\Windows\system32\drivers\hpcisss.sys
18:51:25.0733 5080 HpCISSs - ok
18:51:25.0774 5080 [ 24F3F496C18EFC234777723A67A85F81 ] hpdskflt C:\Windows\system32\DRIVERS\hpdskflt.sys
18:51:25.0929 5080 hpdskflt - ok
18:51:25.0991 5080 [ 1210960FF8928950D2A786895B0C424A ] HpqKbFiltr C:\Windows\system32\DRIVERS\HpqKbFiltr.sys
18:51:26.0103 5080 HpqKbFiltr - ok
18:51:26.0130 5080 [ 115C0933B3ED51DFBEC4449348C8065B ] HpqRemHid C:\Windows\system32\DRIVERS\HpqRemHid.sys
18:51:26.0131 5080 HpqRemHid - ok
18:51:26.0199 5080 [ FDF273A845F1FFCCEADF363AAF47582F ] hpqwmiex C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
18:51:26.0204 5080 hpqwmiex - ok
18:51:26.0226 5080 [ 6D0AC28C5BD8D8495F83F5929A45E559 ] hpsrv C:\Windows\system32\Hpservice.exe
18:51:26.0229 5080 hpsrv - ok
18:51:26.0275 5080 [ 46D67209550973257601A533E2AC5785 ] HSFHWAZL C:\Windows\system32\DRIVERS\VSTAZL3.SYS
18:51:26.0279 5080 HSFHWAZL - ok
18:51:26.0323 5080 [ EC36F1D542ED4252390D446BF6D4DFD0 ] HSF_DPV C:\Windows\system32\DRIVERS\VSTDPV3.SYS
18:51:26.0356 5080 HSF_DPV - ok
18:51:26.0404 5080 [ F870AA3E254628EBEAFE754108D664DE ] HTTP C:\Windows\system32\drivers\HTTP.sys
18:51:26.0415 5080 HTTP - ok
18:51:26.0440 5080 [ C6B032D69650985468160FC9937CF5B4 ] i2omp C:\Windows\system32\drivers\i2omp.sys
18:51:26.0442 5080 i2omp - ok
18:51:26.0481 5080 [ 22D56C8184586B7A1F6FA60BE5F5A2BD ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
18:51:26.0483 5080 i8042prt - ok
18:51:26.0510 5080 [ 54155EA1B0DF185878E0FC9EC3AC3A14 ] iaStorV C:\Windows\system32\drivers\iastorv.sys
18:51:26.0513 5080 iaStorV - ok
18:51:26.0566 5080 [ 6F95324909B502E2651442C1548AB12F ] IDriverT C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
18:51:26.0569 5080 IDriverT - ok
18:51:26.0633 5080 [ 98477B08E61945F974ED9FDC4CB6BDAB ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
18:51:26.0666 5080 idsvc - ok
18:51:26.0686 5080 [ 2D077BF86E843F901D8DB709C95B49A5 ] iirsp C:\Windows\system32\drivers\iirsp.sys
18:51:26.0687 5080 iirsp - ok
18:51:26.0731 5080 [ 9908D8A397B76CD8D31D0D383C5773C9 ] IKEEXT C:\Windows\System32\ikeext.dll
18:51:26.0754 5080 IKEEXT - ok
18:51:26.0771 5080 [ 83AA759F3189E6370C30DE5DC5590718 ] intelide C:\Windows\system32\drivers\intelide.sys
18:51:26.0772 5080 intelide - ok
18:51:26.0813 5080 [ 224191001E78C89DFA78924C3EA595FF ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
18:51:26.0815 5080 intelppm - ok
18:51:26.0856 5080 [ 9AC218C6E6105477484C6FDBE7D409A4 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
18:51:26.0861 5080 IPBusEnum - ok
18:51:26.0867 5080 [ 62C265C38769B864CB25B4BCF62DF6C3 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
18:51:26.0870 5080 IpFilterDriver - ok
18:51:26.0910 5080 [ 1998BD97F950680BB55F55A7244679C2 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
18:51:26.0916 5080 iphlpsvc - ok
18:51:26.0923 5080 IpInIp - ok
18:51:26.0932 5080 [ B25AAF203552B7B3491139D582B39AD1 ] IPMIDRV C:\Windows\system32\drivers\ipmidrv.sys
18:51:26.0934 5080 IPMIDRV - ok
18:51:26.0953 5080 [ 8793643A67B42CEC66490B2A0CF92D68 ] IPNAT C:\Windows\system32\DRIVERS\ipnat.sys
18:51:26.0956 5080 IPNAT - ok
18:51:26.0962 5080 [ 109C0DFB82C3632FBD11949B73AEEAC9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
18:51:26.0963 5080 IRENUM - ok
18:51:26.0989 5080 [ 6C70698A3E5C4376C6AB5C7C17FB0614 ] isapnp C:\Windows\system32\drivers\isapnp.sys
18:51:26.0991 5080 isapnp - ok
18:51:27.0043 5080 [ 232FA340531D940AAC623B121A595034 ] iScsiPrt C:\Windows\system32\DRIVERS\msiscsi.sys
18:51:27.0046 5080 iScsiPrt - ok
18:51:27.0060 5080 [ BCED60D16156E428F8DF8CF27B0DF150 ] iteatapi C:\Windows\system32\drivers\iteatapi.sys
18:51:27.0061 5080 iteatapi - ok
18:51:27.0080 5080 [ 06FA654504A498C30ADCA8BEC4E87E7E ] iteraid C:\Windows\system32\drivers\iteraid.sys
18:51:27.0081 5080 iteraid - ok
18:51:27.0119 5080 [ 858C550EBBD243826A2193262C1B54A3 ] JMCR C:\Windows\system32\DRIVERS\jmcr.sys
18:51:27.0121 5080 JMCR - ok
18:51:27.0148 5080 [ 37605E0A8CF00CBBA538E753E4344C6E ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
18:51:27.0150 5080 kbdclass - ok
18:51:27.0170 5080 [ EDE59EC70E25C24581ADD1FBEC7325F7 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
18:51:27.0171 5080 kbdhid - ok
18:51:27.0201 5080 [ A3E186B4B935905B829219502557314E ] KeyIso C:\Windows\system32\lsass.exe
18:51:27.0205 5080 KeyIso - ok
18:51:27.0242 5080 [ 4A1445EFA932A3BAF5BDB02D7131EE20 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
18:51:27.0246 5080 KSecDD - ok
18:51:27.0288 5080 [ 8078F8F8F7A79E2E6B494523A828C585 ] KtmRm C:\Windows\system32\msdtckrm.dll
18:51:27.0310 5080 KtmRm - ok
18:51:27.0349 5080 [ 1BF5EEBFD518DD7298434D8C862F825D ] LanmanServer C:\Windows\System32\srvsvc.dll
18:51:27.0359 5080 LanmanServer - ok
18:51:27.0412 5080 [ 1DB69705B695B987082C8BAEC0C6B34F ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
18:51:27.0420 5080 LanmanWorkstation - ok
18:51:27.0498 5080 [ 984ECB68ED2A2B2E6A544E87E24FBA2D ] LightScribeService C:\Program Files\Common Files\LightScribe\LSSrvc.exe
18:51:27.0696 5080 LightScribeService - ok
18:51:27.0730 5080 [ D1C5883087A0C3F1344D9D55A44901F6 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
18:51:27.0847 5080 lltdio - ok
18:51:27.0911 5080 [ 2D5A428872F1442631D0959A34ABFF63 ] lltdsvc C:\Windows\System32\lltdsvc.dll
18:51:28.0062 5080 lltdsvc - ok
18:51:28.0121 5080 [ 35D40113E4A5B961B6CE5C5857702518 ] lmhosts C:\Windows\System32\lmhsvc.dll
18:51:28.0144 5080 lmhosts - ok
18:51:28.0177 5080 [ C7E15E82879BF3235B559563D4185365 ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
18:51:28.0179 5080 LSI_FC - ok
18:51:28.0200 5080 [ EE01EBAE8C9BF0FA072E0FF68718920A ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
18:51:28.0203 5080 LSI_SAS - ok
18:51:28.0244 5080 [ 912A04696E9CA30146A62AFA1463DD5C ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
18:51:28.0245 5080 LSI_SCSI - ok
18:51:28.0266 5080 [ 8F5C7426567798E62A3B3614965D62CC ] luafv C:\Windows\system32\drivers\luafv.sys
18:51:28.0411 5080 luafv - ok
18:51:28.0468 5080 [ AEF9BABB8A506BC4CE0451A64AADED46 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
18:51:28.0473 5080 Mcx2Svc - ok
18:51:28.0514 5080 [ 0001CE609D66632FA17B84705F658879 ] megasas C:\Windows\system32\drivers\megasas.sys
18:51:28.0516 5080 megasas - ok
18:51:28.0560 5080 [ C252F32CD9A49DBFC25ECF26EBD51A99 ] MegaSR C:\Windows\system32\drivers\megasr.sys
18:51:28.0566 5080 MegaSR - ok
18:51:28.0598 5080 [ 1076FFCFFAAE8385FD62DFCB25AC4708 ] MMCSS C:\Windows\system32\mmcss.dll
18:51:28.0603 5080 MMCSS - ok
18:51:28.0618 5080 [ E13B5EA0F51BA5B1512EC671393D09BA ] Modem C:\Windows\system32\drivers\modem.sys
18:51:28.0620 5080 Modem - ok
18:51:28.0641 5080 [ 0A9BB33B56E294F686ABB7C1E4E2D8A8 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
18:51:28.0642 5080 monitor - ok
18:51:28.0665 5080 [ 5BF6A1326A335C5298477754A506D263 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
18:51:28.0667 5080 mouclass - ok
18:51:28.0684 5080 [ 93B8D4869E12CFBE663915502900876F ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
18:51:28.0685 5080 mouhid - ok
18:51:28.0705 5080 [ BDAFC88AA6B92F7842416EA6A48E1600 ] MountMgr C:\Windows\system32\drivers\mountmgr.sys
18:51:28.0707 5080 MountMgr - ok
18:51:28.0747 5080 [ 511D011289755DD9F9A7579FB0B064E6 ] mpio C:\Windows\system32\drivers\mpio.sys
18:51:28.0749 5080 mpio - ok
18:51:28.0764 5080 [ 22241FEBA9B2DEFA669C8CB0A8DD7D2E ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
18:51:28.0766 5080 mpsdrv - ok
18:51:28.0817 5080 [ 5DE62C6E9108F14F6794060A9BDECAEC ] MpsSvc C:\Windows\system32\mpssvc.dll
18:51:28.0839 5080 MpsSvc - ok
18:51:28.0881 5080 [ 4FBBB70D30FD20EC51F80061703B001E ] Mraid35x C:\Windows\system32\drivers\mraid35x.sys
18:51:28.0882 5080 Mraid35x - ok
18:51:28.0900 5080 [ 82CEA0395524AACFEB58BA1448E8325C ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
18:51:28.0902 5080 MRxDAV - ok
18:51:28.0947 5080 [ 1E94971C4B446AB2290DEB71D01CF0C2 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
18:51:28.0949 5080 mrxsmb - ok
18:51:28.0972 5080 [ 4FCCB34D793B116423209C0F8B7A3B03 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
18:51:28.0975 5080 mrxsmb10 - ok
18:51:28.0992 5080 [ C3CB1B40AD4A0124D617A1199B0B9D7C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
18:51:28.0994 5080 mrxsmb20 - ok
18:51:29.0040 5080 [ 28023E86F17001F7CD9B15A5BC9AE07D ] msahci C:\Windows\system32\drivers\msahci.sys
18:51:29.0042 5080 msahci - ok
18:51:29.0055 5080 [ 4468B0F385A86ECDDAF8D3CA662EC0E7 ] msdsm C:\Windows\system32\drivers\msdsm.sys
18:51:29.0057 5080 msdsm - ok
18:51:29.0092 5080 [ FD7520CC3A80C5FC8C48852BB24C6DED ] MSDTC C:\Windows\System32\msdtc.exe
18:51:29.0097 5080 MSDTC - ok
18:51:29.0117 5080 [ A9927F4A46B816C92F461ACB90CF8515 ] Msfs C:\Windows\system32\drivers\Msfs.sys
18:51:29.0120 5080 Msfs - ok
18:51:29.0133 5080 [ 0F400E306F385C56317357D6DEA56F62 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
18:51:29.0136 5080 msisadrv - ok
18:51:29.0180 5080 [ 85466C0757A23D9A9AECDC0755203CB2 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
18:51:29.0185 5080 MSiSCSI - ok
18:51:29.0199 5080 msiserver - ok
18:51:29.0237 5080 [ D8C63D34D9C9E56C059E24EC7185CC07 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
18:51:29.0239 5080 MSKSSRV - ok
18:51:29.0245 5080 [ 1D373C90D62DDB641D50E55B9E78D65E ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
18:51:29.0246 5080 MSPCLOCK - ok
18:51:29.0263 5080 [ B572DA05BF4E098D4BBA3A4734FB505B ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
18:51:29.0264 5080 MSPQM - ok
18:51:29.0312 5080 [ B49456D70555DE905C311BCDA6EC6ADB ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
18:51:29.0316 5080 MsRPC - ok
18:51:29.0334 5080 [ E384487CB84BE41D09711C30CA79646C ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
18:51:29.0335 5080 mssmbios - ok
18:51:29.0342 5080 [ 7199C1EEC1E4993CAF96B8C0A26BD58A ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
18:51:29.0343 5080 MSTEE - ok
18:51:29.0363 5080 [ 6A57B5733D4CB702C8EA4542E836B96C ] Mup C:\Windows\system32\Drivers\mup.sys
18:51:29.0364 5080 Mup - ok
18:51:29.0404 5080 [ E4EAF0C5C1B41B5C83386CF212CA9584 ] napagent C:\Windows\system32\qagentRT.dll
18:51:29.0427 5080 napagent - ok
18:51:29.0479 5080 [ 85C44FDFF9CF7E72A40DCB7EC06A4416 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
18:51:29.0481 5080 NativeWifiP - ok
18:51:29.0532 5080 [ 1357274D1883F68300AEADD15D7BBB42 ] NDIS C:\Windows\system32\drivers\ndis.sys
18:51:29.0539 5080 NDIS - ok
18:51:29.0583 5080 [ 0E186E90404980569FB449BA7519AE61 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
18:51:29.0584 5080 NdisTapi - ok
18:51:29.0600 5080 [ D6973AA34C4D5D76C0430B181C3CD389 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
18:51:29.0602 5080 Ndisuio - ok
18:51:29.0640 5080 [ 818F648618AE34F729FDB47EC68345C3 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
18:51:29.0642 5080 NdisWan - ok
18:51:29.0660 5080 [ 71DAB552B41936358F3B541AE5997FB3 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
18:51:29.0662 5080 NDProxy - ok
18:51:29.0692 5080 Nero BackItUp Scheduler 4.0 - ok
18:51:29.0714 5080 [ BCD093A5A6777CF626434568DC7DBA78 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
18:51:29.0716 5080 NetBIOS - ok
18:51:29.0734 5080 [ ECD64230A59CBD93C85F1CD1CAB9F3F6 ] netbt C:\Windows\system32\DRIVERS\netbt.sys
18:51:29.0737 5080 netbt - ok
18:51:29.0757 5080 [ A3E186B4B935905B829219502557314E ] Netlogon C:\Windows\system32\lsass.exe
18:51:29.0760 5080 Netlogon - ok
18:51:29.0793 5080 [ C8052711DAECC48B982434C5116CA401 ] Netman C:\Windows\System32\netman.dll
18:51:29.0816 5080 Netman - ok
18:51:29.0844 5080 [ 2EF3BBE22E5A5ACD1428EE387A0D0172 ] netprofm C:\Windows\System32\netprofm.dll
18:51:29.0852 5080 netprofm - ok
18:51:29.0892 5080 [ D6C4E4A39A36029AC0813D476FBD0248 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
18:51:29.0895 5080 NetTcpPortSharing - ok
18:51:29.0936 5080 [ 2E7FB731D4790A1BC6270ACCEFACB36E ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
18:51:29.0938 5080 nfrd960 - ok
18:51:29.0952 5080 [ 2997B15415F9BBE05B5A4C1C85E0C6A2 ] NlaSvc C:\Windows\System32\nlasvc.dll
18:51:29.0959 5080 NlaSvc - ok
18:51:29.0992 5080 [ D36F239D7CCE1931598E8FB90A0DBC26 ] Npfs C:\Windows\system32\drivers\Npfs.sys
18:51:29.0994 5080 Npfs - ok
18:51:30.0012 5080 [ 8BB86F0C7EEA2BDED6FE095D0B4CA9BD ] nsi C:\Windows\system32\nsisvc.dll
18:51:30.0017 5080 nsi - ok
18:51:30.0029 5080 [ 609773E344A97410CE4EBF74A8914FCF ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
18:51:30.0030 5080 nsiproxy - ok
18:51:30.0078 5080 [ 6A4A98CEE84CF9E99564510DDA4BAA47 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
18:51:30.0112 5080 Ntfs - ok
18:51:30.0140 5080 [ E875C093AEC0C978A90F30C9E0DFBB72 ] ntrigdigi C:\Windows\system32\drivers\ntrigdigi.sys
18:51:30.0141 5080 ntrigdigi - ok
18:51:30.0163 5080 [ C5DBBCDA07D780BDA9B685DF333BB41E ] Null C:\Windows\system32\drivers\Null.sys
18:51:30.0164 5080 Null - ok
18:51:30.0212 5080 [ 1657F3FBD9061526C14FF37E79306F98 ] NVENETFD C:\Windows\system32\DRIVERS\nvm60x32.sys
18:51:30.0234 5080 NVENETFD - ok
18:51:30.0252 5080 [ 2EDF9E7751554B42CBB60116DE727101 ] nvraid C:\Windows\system32\drivers\nvraid.sys
18:51:30.0255 5080 nvraid - ok
18:51:30.0295 5080 [ ABED0C09758D1D97DB0042DBB2688177 ] nvstor C:\Windows\system32\drivers\nvstor.sys
18:51:30.0297 5080 nvstor - ok
18:51:30.0321 5080 [ 18BBDF913916B71BD54575BDB6EEAC0B ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
18:51:30.0323 5080 nv_agp - ok
18:51:30.0329 5080 NwlnkFlt - ok
18:51:30.0337 5080 NwlnkFwd - ok
18:51:30.0378 5080 [ 6F310E890D46E246E0E261A63D9B36B4 ] ohci1394 C:\Windows\system32\DRIVERS\ohci1394.sys
18:51:30.0380 5080 ohci1394 - ok
18:51:30.0438 5080 [ 0C8E8E61AD1EB0B250B846712C917506 ] p2pimsvc C:\Windows\system32\p2psvc.dll
18:51:30.0460 5080 p2pimsvc - ok
18:51:30.0482 5080 [ 0C8E8E61AD1EB0B250B846712C917506 ] p2psvc C:\Windows\system32\p2psvc.dll
18:51:30.0491 5080 p2psvc - ok
18:51:30.0512 5080 [ 0FA9B5055484649D63C303FE404E5F4D ] Parport C:\Windows\system32\drivers\parport.sys
18:51:30.0514 5080 Parport - ok
18:51:30.0543 5080 [ B9C2B89F08670E159F7181891E449CD9 ] partmgr C:\Windows\system32\drivers\partmgr.sys
18:51:30.0545 5080 partmgr - ok
18:51:30.0562 5080 [ 4F9A6A8A31413180D0FCB279AD5D8112 ] Parvdm C:\Windows\system32\drivers\parvdm.sys
18:51:30.0563 5080 Parvdm - ok
18:51:30.0600 5080 [ C6276AD11F4BB49B58AA1ED88537F14A ] PcaSvc C:\Windows\System32\pcasvc.dll
18:51:30.0606 5080 PcaSvc - ok
18:51:30.0643 5080 [ 941DC1D19E7E8620F40BBC206981EFDB ] pci C:\Windows\system32\drivers\pci.sys
18:51:30.0645 5080 pci - ok
18:51:30.0685 5080 [ 1636D43F10416AEB483BC6001097B26C ] pciide C:\Windows\system32\drivers\pciide.sys
18:51:30.0687 5080 pciide - ok
18:51:30.0732 5080 [ E6F3FB1B86AA519E7698AD05E58B04E5 ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
18:51:30.0736 5080 pcmcia - ok
18:51:30.0780 5080 [ 6349F6ED9C623B44B52EA3C63C831A92 ] PEAUTH C:\Windows\system32\drivers\peauth.sys
18:51:30.0802 5080 PEAUTH - ok
18:51:30.0873 5080 [ B1689DF169143F57053F795390C99DB3 ] pla C:\Windows\system32\pla.dll
18:51:30.0917 5080 pla - ok
18:51:30.0947 5080 [ C5E7F8A996EC0A82D508FD9064A5569E ] PlugPlay C:\Windows\system32\umpnpmgr.dll
18:51:30.0957 5080 PlugPlay - ok
18:51:31.0008 5080 [ 713E294439D982BB161317DE0136FAA0 ] pneteth C:\Windows\system32\DRIVERS\pneteth.sys
18:51:31.0010 5080 pneteth - ok
18:51:31.0059 5080 [ 3A2BDD76E7D2A5F40A7174793D1BA794 ] PnkBstrA C:\Windows\system32\PnkBstrA.exe
18:51:31.0065 5080 PnkBstrA - ok
18:51:31.0093 5080 [ 0C8E8E61AD1EB0B250B846712C917506 ] PNRPAutoReg C:\Windows\system32\p2psvc.dll
18:51:31.0102 5080 PNRPAutoReg - ok
18:51:31.0127 5080 [ 0C8E8E61AD1EB0B250B846712C917506 ] PNRPsvc C:\Windows\system32\p2psvc.dll
18:51:31.0136 5080 PNRPsvc - ok
18:51:31.0181 5080 [ D0494460421A03CD5225CCA0059AA146 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
18:51:31.0190 5080 PolicyAgent - ok
18:51:31.0236 5080 [ ECFFFAEC0C1ECD8DBC77F39070EA1DB1 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
18:51:31.0238 5080 PptpMiniport - ok
18:51:31.0289 5080 [ 4228630829C0E521C43D882A00533374 ] PQNTDrv C:\Windows\system32\drivers\PQNTDrv.sys
18:51:31.0291 5080 PQNTDrv - ok
18:51:31.0317 5080 [ 2027293619DD0F047C584CF2E7DF4FFD ] Processor C:\Windows\system32\DRIVERS\processr.sys
18:51:31.0319 5080 Processor - ok
18:51:31.0354 5080 [ 0508FAA222D28835310B7BFCA7A77346 ] ProfSvc C:\Windows\system32\profsvc.dll
18:51:31.0361 5080 ProfSvc - ok
18:51:31.0379 5080 [ A3E186B4B935905B829219502557314E ] ProtectedStorage C:\Windows\system32\lsass.exe
18:51:31.0383 5080 ProtectedStorage - ok
18:51:31.0404 5080 [ 99514FAA8DF93D34B5589187DB3AA0BA ] PSched C:\Windows\system32\DRIVERS\pacer.sys
18:51:31.0407 5080 PSched - ok
18:51:31.0464 5080 [ 0A6DB55AFB7820C99AA1F3A1D270F4F6 ] ql2300 C:\Windows\system32\drivers\ql2300.sys
18:51:31.0496 5080 ql2300 - ok
18:51:31.0504 5080 [ 81A7E5C076E59995D54BC1ED3A16E60B ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
18:51:31.0506 5080 ql40xx - ok
18:51:31.0584 5080 [ 026D1FA4033B82F18B99E44351D7E82E ] QPCapSvc C:\Program Files\HP\QuickPlay\Kernel\TV\QPCapSvc.exe
18:51:31.0589 5080 QPCapSvc - ok
18:51:31.0610 5080 [ 7697BCA450EAE30A6CDB98898239E8B7 ] QPSched C:\Program Files\HP\QuickPlay\Kernel\TV\QPSched.exe
18:51:31.0613 5080 QPSched - ok
18:51:31.0655 5080 [ E9ECAE663F47E6CB43962D18AB18890F ] QWAVE C:\Windows\system32\qwave.dll
18:51:31.0664 5080 QWAVE - ok
18:51:31.0681 5080 [ 9F5E0E1926014D17486901C88ECA2DB7 ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
18:51:31.0683 5080 QWAVEdrv - ok
18:51:31.0708 5080 [ 147D7F9C556D259924351FEB0DE606C3 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
18:51:31.0709 5080 RasAcd - ok
18:51:31.0733 5080 [ F6A452EB4CEADBB51C9E0EE6B3ECEF0F ] RasAuto C:\Windows\System32\rasauto.dll
18:51:31.0740 5080 RasAuto - ok
18:51:31.0757 5080 [ A214ADBAF4CB47DD2728859EF31F26B0 ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
18:51:31.0759 5080 Rasl2tp - ok
18:51:31.0797 5080 [ 75D47445D70CA6F9F894B032FBC64FCF ] RasMan C:\Windows\System32\rasmans.dll
18:51:31.0807 5080 RasMan - ok
18:51:31.0827 5080 [ 509A98DD18AF4375E1FC40BC175F1DEF ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
18:51:31.0829 5080 RasPppoe - ok
18:51:31.0850 5080 [ 2005F4A1E05FA09389AC85840F0A9E4D ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
18:51:31.0852 5080 RasSstp - ok
18:51:31.0901 5080 [ B14C9D5B9ADD2F84F70570BBBFAA7935 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
18:51:31.0905 5080 rdbss - ok
18:51:31.0925 5080 [ 89E59BE9A564262A3FB6C4F4F1CD9899 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
18:51:31.0926 5080 RDPCDD - ok
18:51:31.0957 5080 [ FBC0BACD9C3D7F6956853F64A66E252D ] rdpdr C:\Windows\system32\drivers\rdpdr.sys
18:51:31.0961 5080 rdpdr - ok
18:51:31.0976 5080 [ 9D91FE5286F748862ECFFA05F8A0710C ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
18:51:31.0977 5080 RDPENCDD - ok
18:51:32.0015 5080 [ C127EBD5AFAB31524662C48DFCEB773A ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
18:51:32.0020 5080 RDPWD - ok
18:51:32.0088 5080 [ B9570481A1BABCC4A9E941C553596077 ] Recovery Service for Windows C:\Windows\SMINST\BLService.exe
18:51:32.0094 5080 Recovery Service for Windows - ok
18:51:32.0140 5080 [ BCDD6B4804D06B1F7EBF29E53A57ECE9 ] RemoteAccess C:\Windows\System32\mprdim.dll
18:51:32.0145 5080 RemoteAccess - ok
18:51:32.0163 5080 [ 9E6894EA18DAFF37B63E1005F83AE4AB ] RemoteRegistry C:\Windows\system32\regsvc.dll
18:51:32.0170 5080 RemoteRegistry - ok
18:51:32.0214 5080 [ 6482707F9F4DA0ECBAB43B2E0398A101 ] RFCOMM C:\Windows\system32\DRIVERS\rfcomm.sys
18:51:32.0217 5080 RFCOMM - ok
18:51:32.0301 5080 [ 17E0BEF5CA5C9CE52CC8082AC6EBC449 ] RichVideo C:\Program Files\CyberLink\Shared Files\RichVideo.exe
18:51:32.0307 5080 RichVideo - ok
18:51:32.0349 5080 [ 5123F83CBC4349D065534EEB6BBDC42B ] RpcLocator C:\Windows\system32\locator.exe
18:51:32.0352 5080 RpcLocator - ok
18:51:32.0380 5080 [ 3B5B4D53FEC14F7476CA29A20CC31AC9 ] RpcSs C:\Windows\system32\rpcss.dll
18:51:32.0388 5080 RpcSs - ok
18:51:32.0430 5080 [ 9C508F4074A39E8B4B31D27198146FAD ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
18:51:32.0432 5080 rspndr - ok
18:51:32.0489 5080 [ 7157E70A90CCE49DEB8885D23A073A39 ] RTL8169 C:\Windows\system32\DRIVERS\Rtlh86.sys
18:51:32.0491 5080 RTL8169 - ok
18:51:32.0537 5080 [ 59509AD6CBC28F2C73056268985B3E48 ] s0016bus C:\Windows\system32\DRIVERS\s0016bus.sys
18:51:32.0539 5080 s0016bus - ok
18:51:32.0581 5080 [ B98C3A6F91F4FBA285AF9606A240C6B4 ] s0016mdfl C:\Windows\system32\DRIVERS\s0016mdfl.sys
18:51:32.0582 5080 s0016mdfl - ok
18:51:32.0599 5080 [ 8A83426F4FB7B5212825D9DE76368B1A ] s0016mdm C:\Windows\system32\DRIVERS\s0016mdm.sys
18:51:32.0601 5080 s0016mdm - ok
18:51:32.0629 5080 [ 7A78BBA97FEB5E6D24C49E93A3BF7287 ] s0016mgmt C:\Windows\system32\DRIVERS\s0016mgmt.sys
18:51:32.0632 5080 s0016mgmt - ok
18:51:32.0673 5080 [ 34EF7B5F611957B73E7219DD5A222AD1 ] s0016nd5 C:\Windows\system32\DRIVERS\s0016nd5.sys
18:51:32.0675 5080 s0016nd5 - ok
18:51:32.0697 5080 [ 36792935847143E4A3CDA0DC87248487 ] s0016obex C:\Windows\system32\DRIVERS\s0016obex.sys
18:51:32.0701 5080 s0016obex - ok
18:51:32.0715 5080 [ 927208754FB27FC3E7A659E77500C5D1 ] s0016unic C:\Windows\system32\DRIVERS\s0016unic.sys
18:51:32.0718 5080 s0016unic - ok
18:51:32.0766 5080 [ 594FF5620661D1386475406E78CB6F2F ] s0017bus C:\Windows\system32\DRIVERS\s0017bus.sys
18:51:32.0768 5080 s0017bus - ok
18:51:32.0800 5080 [ 7258F550419D543BC5C8E80C578A5D54 ] s0017mdfl C:\Windows\system32\DRIVERS\s0017mdfl.sys
18:51:32.0802 5080 s0017mdfl - ok
18:51:32.0845 5080 [ 1DE4F6607FEB17A15DBD4F1B139E6D2F ] s0017mdm C:\Windows\system32\DRIVERS\s0017mdm.sys
18:51:32.0846 5080 s0017mdm - ok
18:51:32.0866 5080 [ 9814E6BACC06D2526CD52981C7EEEDF0 ] s0017mgmt C:\Windows\system32\DRIVERS\s0017mgmt.sys
18:51:32.0868 5080 s0017mgmt - ok
18:51:32.0900 5080 [ 2C62CD58225973F26682CD4F783DDEDE ] s0017nd5 C:\Windows\system32\DRIVERS\s0017nd5.sys
18:51:32.0901 5080 s0017nd5 - ok
18:51:32.0947 5080 [ F87C3422E84B2FB1B43E0A26247AD5A5 ] s0017obex C:\Windows\system32\DRIVERS\s0017obex.sys
18:51:32.0949 5080 s0017obex - ok
18:51:32.0969 5080 [ DF5E7360A0AFA5956BF75DA683D0679F ] s0017unic C:\Windows\system32\DRIVERS\s0017unic.sys
18:51:32.0971 5080 s0017unic - ok
18:51:33.0015 5080 [ 815445F4676CC96BC9AEEC303C727E19 ] s116bus C:\Windows\system32\DRIVERS\s116bus.sys
18:51:33.0017 5080 s116bus - ok
18:51:33.0052 5080 [ 333D1E0743E6DE1779C3C418AC601C3A ] s116mdfl C:\Windows\system32\DRIVERS\s116mdfl.sys
18:51:33.0053 5080 s116mdfl - ok
18:51:33.0063 5080 [ 50D6E5B021E9EC7553AB8A3553CC1B6B ] s116mdm C:\Windows\system32\DRIVERS\s116mdm.sys
18:51:33.0065 5080 s116mdm - ok
18:51:33.0086 5080 [ 1589AA53E43F8D193A7D4D580D3FFA95 ] s116mgmt C:\Windows\system32\DRIVERS\s116mgmt.sys
18:51:33.0088 5080 s116mgmt - ok
18:51:33.0128 5080 [ 306F85733671FE507470F0273025E768 ] s116nd5 C:\Windows\system32\DRIVERS\s116nd5.sys
18:51:33.0130 5080 s116nd5 - ok

Uživatelský avatar
Peťa
Level 5
Level 5
Příspěvky: 2123
Registrován: duben 10
Pohlaví: Muž
Stav:
Offline

Re: Klikl jsem na závadný odkaz, hrozí mi něco?

Příspěvekod Peťa » 02 lis 2012 15:57

Pokračování:

18:51:33.0151 5080 [ EC32601F04A5A5DE89315D0F55E73D66 ] s116obex C:\Windows\system32\DRIVERS\s116obex.sys
18:51:33.0153 5080 s116obex - ok
18:51:33.0195 5080 [ 32E3ECB4B2B5887426EAF241A8149CDE ] s116unic C:\Windows\system32\DRIVERS\s116unic.sys
18:51:33.0198 5080 s116unic - ok
18:51:33.0245 5080 [ AA786AD3A2684D39630744787B00E6F4 ] s3017bus C:\Windows\system32\DRIVERS\s3017bus.sys
18:51:33.0247 5080 s3017bus - ok
18:51:33.0253 5080 [ CBA4CA5BCE44084E98CE420FD6692D3A ] s3017mdfl C:\Windows\system32\DRIVERS\s3017mdfl.sys
18:51:33.0254 5080 s3017mdfl - ok
18:51:33.0266 5080 [ 68036EFF647970D6C0399789C8707CAD ] s3017mdm C:\Windows\system32\DRIVERS\s3017mdm.sys
18:51:33.0268 5080 s3017mdm - ok
18:51:33.0308 5080 [ 3672E7F9349BD98FD3F5AC33E7B2B1A6 ] s3017mgmt C:\Windows\system32\DRIVERS\s3017mgmt.sys
18:51:33.0311 5080 s3017mgmt - ok
18:51:33.0349 5080 [ B1133B37EB184AEF81D56B4302DBAE9C ] s3017nd5 C:\Windows\system32\DRIVERS\s3017nd5.sys
18:51:33.0351 5080 s3017nd5 - ok
18:51:33.0368 5080 [ D81B1D504AA1426622E7EC09F25130A9 ] s3017obex C:\Windows\system32\DRIVERS\s3017obex.sys
18:51:33.0370 5080 s3017obex - ok
18:51:33.0396 5080 [ 7B95C53EA8BB585013767EEF2875C0A0 ] s3017unic C:\Windows\system32\DRIVERS\s3017unic.sys
18:51:33.0398 5080 s3017unic - ok
18:51:33.0412 5080 [ A3E186B4B935905B829219502557314E ] SamSs C:\Windows\system32\lsass.exe
18:51:33.0416 5080 SamSs - ok
18:51:33.0444 5080 [ 3CE8F073A557E172B330109436984E30 ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
18:51:33.0446 5080 sbp2port - ok
18:51:33.0499 5080 [ 77B7A11A0C3D78D3386398FBBEA1B632 ] SCardSvr C:\Windows\System32\SCardSvr.dll
18:51:33.0505 5080 SCardSvr - ok
18:51:33.0546 5080 [ 1A58069DB21D05EB2AB58EE5753EBE8D ] Schedule C:\Windows\system32\schedsvc.dll
18:51:33.0568 5080 Schedule - ok
18:51:33.0587 5080 [ 312EC3E37A0A1F2006534913E37B4423 ] SCPolicySvc C:\Windows\System32\certprop.dll
18:51:33.0588 5080 SCPolicySvc - ok
18:51:33.0604 5080 [ 126EA89BCC413EE45E3004FB0764888F ] sdbus C:\Windows\system32\DRIVERS\sdbus.sys
18:51:33.0606 5080 sdbus - ok
18:51:33.0639 5080 [ 716313D9F6B0529D03F726D5AAF6F191 ] SDRSVC C:\Windows\System32\SDRSVC.dll
18:51:33.0646 5080 SDRSVC - ok
18:51:33.0680 5080 [ 90A3935D05B494A5A39D37E71F09A677 ] secdrv C:\Windows\system32\drivers\secdrv.sys
18:51:33.0682 5080 secdrv - ok
18:51:33.0698 5080 [ FD5199D4D8A521005E4B5EE7FE00FA9B ] seclogon C:\Windows\system32\seclogon.dll
18:51:33.0704 5080 seclogon - ok
18:51:33.0758 5080 [ E5B56569A9F79B70314FEDE6C953641E ] seehcri C:\Windows\system32\DRIVERS\seehcri.sys
18:51:33.0760 5080 seehcri - ok
18:51:33.0781 5080 [ A9BBAB5759771E523F55563D6CBE140F ] SENS C:\Windows\system32\sens.dll
18:51:33.0787 5080 SENS - ok
18:51:33.0801 5080 [ 68E44E331D46F0FB38F0863A84CD1A31 ] Serenum C:\Windows\system32\drivers\serenum.sys
18:51:33.0803 5080 Serenum - ok
18:51:33.0810 5080 [ C70D69A918B178D3C3B06339B40C2E1B ] Serial C:\Windows\system32\drivers\serial.sys
18:51:33.0812 5080 Serial - ok
18:51:33.0819 5080 [ 8AF3D28A879BF75DB53A0EE7A4289624 ] sermouse C:\Windows\system32\drivers\sermouse.sys
18:51:33.0820 5080 sermouse - ok
18:51:33.0848 5080 [ D2193326F729B163125610DBF3E17D57 ] SessionEnv C:\Windows\system32\sessenv.dll
18:51:33.0856 5080 SessionEnv - ok
18:51:33.0862 5080 [ 3EFA810BDCA87F6ECC24F9832243FE86 ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
18:51:33.0863 5080 sffdisk - ok
18:51:33.0870 5080 [ E95D451F7EA3E583AEC75F3B3EE42DC5 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
18:51:33.0871 5080 sffp_mmc - ok
18:51:33.0878 5080 [ 3D0EA348784B7AC9EA9BD9F317980979 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
18:51:33.0879 5080 sffp_sd - ok
18:51:33.0886 5080 [ 46ED8E91793B2E6F848015445A0AC188 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
18:51:33.0887 5080 sfloppy - ok
18:51:33.0923 5080 [ E1499BD0FF76B1B2FBBF1AF339D91165 ] SharedAccess C:\Windows\System32\ipnathlp.dll
18:51:33.0935 5080 SharedAccess - ok
18:51:33.0964 5080 [ C7230FBEE14437716701C15BE02C27B8 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
18:51:33.0974 5080 ShellHWDetection - ok
18:51:33.0990 5080 [ 1D76624A09A054F682D746B924E2DBC3 ] sisagp C:\Windows\system32\drivers\sisagp.sys
18:51:33.0992 5080 sisagp - ok
18:51:34.0011 5080 [ 43CB7AA756C7DB280D01DA9B676CFDE2 ] SiSRaid2 C:\Windows\system32\drivers\sisraid2.sys
18:51:34.0013 5080 SiSRaid2 - ok
18:51:34.0035 5080 [ A99C6C8B0BAA970D8AA59DDC50B57F94 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
18:51:34.0037 5080 SiSRaid4 - ok
18:51:34.0096 5080 [ F07AF60B152221472FBDB2FECEC4896D ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe
18:51:34.0099 5080 SkypeUpdate - ok
18:51:34.0215 5080 [ 862BB4CBC05D80C5B45BE430E5EF872F ] slsvc C:\Windows\system32\SLsvc.exe
18:51:34.0302 5080 slsvc - ok
18:51:34.0341 5080 [ 6EDC422215CD78AA8A9CDE6B30ABBD35 ] SLUINotify C:\Windows\system32\SLUINotify.dll
18:51:34.0347 5080 SLUINotify - ok
18:51:34.0366 5080 [ 7B75299A4D201D6A6533603D6914AB04 ] Smb C:\Windows\system32\DRIVERS\smb.sys
18:51:34.0368 5080 Smb - ok
18:51:34.0411 5080 [ 2A146A055B4401C16EE62D18B8E2A032 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
18:51:34.0417 5080 SNMPTRAP - ok
18:51:34.0539 5080 [ 5177D14A78E60FD61DCFC6B388E7E971 ] Sony PC Companion C:\Program Files\Sony\Sony PC Companion\PCCService.exe
18:51:34.0543 5080 Sony PC Companion - ok
18:51:34.0605 5080 speccy - ok
18:51:34.0652 5080 [ 9F70CD5EDCC4EFC48AE21E04FB03BE9D ] speedfan C:\Windows\system32\speedfan.sys
18:51:34.0658 5080 speedfan - ok
18:51:34.0678 5080 [ 7AEBDEEF071FE28B0EEF2CDD69102BFF ] spldr C:\Windows\system32\drivers\spldr.sys
18:51:34.0681 5080 spldr - ok
18:51:34.0720 5080 [ 8554097E5136C3BF9F69FE578A1B35F4 ] Spooler C:\Windows\System32\spoolsv.exe
18:51:34.0727 5080 Spooler - ok
18:51:34.0765 5080 [ 41987F9FC0E61ADF54F581E15029AD91 ] srv C:\Windows\system32\DRIVERS\srv.sys
18:51:34.0770 5080 srv - ok
18:51:34.0812 5080 [ FF33AFF99564B1AA534F58868CBE41EF ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
18:51:34.0815 5080 srv2 - ok
18:51:34.0834 5080 [ 7605C0E1D01A08F3ECD743F38B834A44 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
18:51:34.0836 5080 srvnet - ok
18:51:34.0878 5080 [ 03D50B37234967433A5EA5BA72BC0B62 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
18:51:34.0887 5080 SSDPSRV - ok
18:51:34.0938 5080 [ 6F1A32E7B7B30F004D9A20AFADB14944 ] SstpSvc C:\Windows\system32\sstpsvc.dll
18:51:34.0945 5080 SstpSvc - ok
18:51:35.0054 5080 [ EC9C5F6C0F58446545D839BC11A3692B ] STacSV C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_a7e996cd\STacSV.exe
18:51:35.0059 5080 STacSV - ok
18:51:35.0112 5080 [ 21CC262AB5F42F7A6B91DC7304C2F267 ] STHDA C:\Windows\system32\DRIVERS\stwrt.sys
18:51:35.0135 5080 STHDA - ok
18:51:35.0175 5080 [ 5DE7D67E49B88F5F07F3E53C4B92A352 ] stisvc C:\Windows\System32\wiaservc.dll
18:51:35.0198 5080 stisvc - ok
18:51:35.0233 5080 [ 7BA58ECF0C0A9A69D44B3DCA62BECF56 ] swenum C:\Windows\system32\DRIVERS\swenum.sys
18:51:35.0234 5080 swenum - ok
18:51:35.0283 5080 [ F21FD248040681CCA1FB6C9A03AAA93D ] swprv C:\Windows\System32\swprv.dll
18:51:35.0306 5080 swprv - ok
18:51:35.0324 5080 [ 192AA3AC01DF071B541094F251DEED10 ] Symc8xx C:\Windows\system32\drivers\symc8xx.sys
18:51:35.0326 5080 Symc8xx - ok
18:51:35.0345 5080 [ 8C8EB8C76736EBAF3B13B633B2E64125 ] Sym_hi C:\Windows\system32\drivers\sym_hi.sys
18:51:35.0347 5080 Sym_hi - ok
18:51:35.0362 5080 [ 8072AF52B5FD103BBBA387A1E49F62CB ] Sym_u3 C:\Windows\system32\drivers\sym_u3.sys
18:51:35.0364 5080 Sym_u3 - ok
18:51:35.0403 5080 [ 067CB9D745407A8C1B26E89A6A2CE152 ] SynTP C:\Windows\system32\DRIVERS\SynTP.sys
18:51:35.0407 5080 SynTP - ok
18:51:35.0435 5080 [ 9A51B04E9886AA4EE90093586B0BA88D ] SysMain C:\Windows\system32\sysmain.dll
18:51:35.0458 5080 SysMain - ok
18:51:35.0499 5080 [ 2DCA225EAE15F42C0933E998EE0231C3 ] TabletInputService C:\Windows\System32\TabSvc.dll
18:51:35.0506 5080 TabletInputService - ok
18:51:35.0546 5080 [ D7673E4B38CE21EE54C59EEEB65E2483 ] TapiSrv C:\Windows\System32\tapisrv.dll
18:51:35.0556 5080 TapiSrv - ok
18:51:35.0574 5080 [ CB05822CD9CC6C688168E113C603DBE7 ] TBS C:\Windows\System32\tbssvc.dll
18:51:35.0581 5080 TBS - ok
18:51:35.0631 5080 [ 27D470DABC77BC60D0A3B0E4DEB6CB91 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
18:51:35.0664 5080 Tcpip - ok
18:51:35.0698 5080 [ 27D470DABC77BC60D0A3B0E4DEB6CB91 ] Tcpip6 C:\Windows\system32\DRIVERS\tcpip.sys
18:51:35.0705 5080 Tcpip6 - ok
18:51:35.0746 5080 [ 608C345A255D82A6289C2D468EB41FD7 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
18:51:35.0748 5080 tcpipreg - ok
18:51:35.0784 5080 [ 5DCF5E267BE67A1AE926F2DF77FBCC56 ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
18:51:35.0785 5080 TDPIPE - ok
18:51:35.0791 5080 [ 389C63E32B3CEFED425B61ED92D3F021 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
18:51:35.0794 5080 TDTCP - ok
18:51:35.0815 5080 [ 76B06EB8A01FC8624D699E7045303E54 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
18:51:35.0818 5080 tdx - ok
18:51:35.0856 5080 [ 3CAD38910468EAB9A6479E2F01DB43C7 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
18:51:35.0858 5080 TermDD - ok
18:51:35.0886 5080 [ BB95DA09BEF6E7A131BFF3BA5032090D ] TermService C:\Windows\System32\termsrv.dll
18:51:35.0909 5080 TermService - ok
18:51:35.0931 5080 [ C7230FBEE14437716701C15BE02C27B8 ] Themes C:\Windows\system32\shsvcs.dll
18:51:35.0938 5080 Themes - ok
18:51:35.0965 5080 [ 1076FFCFFAAE8385FD62DFCB25AC4708 ] THREADORDER C:\Windows\system32\mmcss.dll
18:51:35.0970 5080 THREADORDER - ok
18:51:36.0016 5080 [ EC74E77D0EB004BD3A809B5F8FB8C2CE ] TrkWks C:\Windows\System32\trkwks.dll
18:51:36.0023 5080 TrkWks - ok
18:51:36.0076 5080 [ 97D9D6A04E3AD9B6C626B9931DB78DBA ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
18:51:36.0078 5080 TrustedInstaller - ok
18:51:36.0088 5080 [ DCF0F056A2E4F52287264F5AB29CF206 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
18:51:36.0090 5080 tssecsrv - ok
18:51:36.0108 5080 [ CAECC0120AC49E3D2F758B9169872D38 ] tunmp C:\Windows\system32\DRIVERS\tunmp.sys
18:51:36.0110 5080 tunmp - ok
18:51:36.0137 5080 [ 300DB877AC094FEAB0BE7688C3454A9C ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
18:51:36.0139 5080 tunnel - ok
18:51:36.0168 5080 [ 7D33C4DB2CE363C8518D2DFCF533941F ] uagp35 C:\Windows\system32\drivers\uagp35.sys
18:51:36.0171 5080 uagp35 - ok
18:51:36.0206 5080 [ D9728AF68C4C7693CB100B8441CBDEC6 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
18:51:36.0210 5080 udfs - ok
18:51:36.0233 5080 [ ECEF404F62863755951E09C802C94AD5 ] UI0Detect C:\Windows\system32\UI0Detect.exe
18:51:36.0240 5080 UI0Detect - ok
18:51:36.0253 5080 [ B0ACFDC9E4AF279E9116C03E014B2B27 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
18:51:36.0256 5080 uliagpkx - ok
18:51:36.0281 5080 [ 9224BB254F591DE4CA8D572A5F0D635C ] uliahci C:\Windows\system32\drivers\uliahci.sys
18:51:36.0285 5080 uliahci - ok
18:51:36.0300 5080 [ 8514D0E5CD0534467C5FC61BE94A569F ] UlSata C:\Windows\system32\drivers\ulsata.sys
18:51:36.0302 5080 UlSata - ok
18:51:36.0314 5080 [ 38C3C6E62B157A6BC46594FADA45C62B ] ulsata2 C:\Windows\system32\drivers\ulsata2.sys
18:51:36.0317 5080 ulsata2 - ok
18:51:36.0332 5080 [ 32CFF9F809AE9AED85464492BF3E32D2 ] umbus C:\Windows\system32\DRIVERS\umbus.sys
18:51:36.0334 5080 umbus - ok
18:51:36.0384 5080 [ 68308183F4AE0BE7BF8ECD07CB297999 ] upnphost C:\Windows\System32\upnphost.dll
18:51:36.0393 5080 upnphost - ok
18:51:36.0420 5080 [ CAF811AE4C147FFCD5B51750C7F09142 ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
18:51:36.0421 5080 usbccgp - ok
18:51:36.0444 5080 [ E9476E6C486E76BC4898074768FB7131 ] usbcir C:\Windows\system32\drivers\usbcir.sys
18:51:36.0446 5080 usbcir - ok
18:51:36.0500 5080 [ 79E96C23A97CE7B8F14D310DA2DB0C9B ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
18:51:36.0502 5080 usbehci - ok
18:51:36.0527 5080 [ 4673BBCB006AF60E7ABDDBE7A130BA42 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
18:51:36.0530 5080 usbhub - ok
18:51:36.0554 5080 [ CE697FEE0D479290D89BEC80DFE793B7 ] usbohci C:\Windows\system32\DRIVERS\usbohci.sys
18:51:36.0556 5080 usbohci - ok
18:51:36.0591 5080 [ B51E52ACF758BE00EF3A58EA452FE360 ] usbprint C:\Windows\system32\drivers\usbprint.sys
18:51:36.0593 5080 usbprint - ok
18:51:36.0629 5080 [ BE3DA31C191BC222D9AD503C5224F2AD ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
18:51:36.0631 5080 USBSTOR - ok
18:51:36.0637 5080 [ 814D653EFC4D48BE3B04A307ECEFF56F ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys
18:51:36.0639 5080 usbuhci - ok
18:51:36.0678 5080 [ E67998E8F14CB0627A769F6530BCB352 ] usbvideo C:\Windows\system32\Drivers\usbvideo.sys
18:51:36.0680 5080 usbvideo - ok
18:51:36.0735 5080 [ 35C9095FA7076466AFBFC5B9EC4B779E ] usb_rndisx C:\Windows\system32\DRIVERS\usb8023x.sys
18:51:36.0736 5080 usb_rndisx - ok
18:51:36.0774 5080 [ 1509E705F3AC1D474C92454A5C2DD81F ] UxSms C:\Windows\System32\uxsms.dll
18:51:36.0781 5080 UxSms - ok
18:51:36.0814 5080 [ CD88D1B7776DC17A119049742EC07EB4 ] vds C:\Windows\System32\vds.exe
18:51:36.0836 5080 vds - ok
18:51:36.0876 5080 [ 4D45A93A7DD638CA2DB0A86FBFBF42D1 ] vfs101x C:\Windows\system32\drivers\vfs101x.sys
18:51:36.0878 5080 vfs101x - ok
18:51:36.0930 5080 [ 7ED51043FED8FFD9577B4B74779D9AF0 ] vfsFPService C:\Windows\system32\vfsFPService.exe
18:51:36.0953 5080 vfsFPService - ok
18:51:36.0989 5080 [ 87B06E1F30B749A114F74622D013F8D4 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
18:51:36.0991 5080 vga - ok
18:51:37.0010 5080 [ 2E93AC0A1D8C79D019DB6C51F036636C ] VgaSave C:\Windows\System32\drivers\vga.sys
18:51:37.0012 5080 VgaSave - ok
18:51:37.0019 5080 [ 5D7159DEF58A800D5781BA3A879627BC ] viaagp C:\Windows\system32\drivers\viaagp.sys
18:51:37.0021 5080 viaagp - ok
18:51:37.0040 5080 [ C4F3A691B5BAD343E6249BD8C2D45DEE ] ViaC7 C:\Windows\system32\drivers\viac7.sys
18:51:37.0042 5080 ViaC7 - ok
18:51:37.0056 5080 [ AADF5587A4063F52C2C3FED7887426FC ] viaide C:\Windows\system32\drivers\viaide.sys
18:51:37.0057 5080 viaide - ok
18:51:37.0079 5080 [ 69503668AC66C77C6CD7AF86FBDF8C43 ] volmgr C:\Windows\system32\drivers\volmgr.sys
18:51:37.0081 5080 volmgr - ok
18:51:37.0118 5080 [ 23E41B834759917BFD6B9A0D625D0C28 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
18:51:37.0121 5080 volmgrx - ok
18:51:37.0149 5080 [ 147281C01FCB1DF9252DE2A10D5E7093 ] volsnap C:\Windows\system32\drivers\volsnap.sys
18:51:37.0152 5080 volsnap - ok
18:51:37.0185 5080 [ 587253E09325E6BF226B299774B728A9 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
18:51:37.0187 5080 vsmraid - ok
18:51:37.0232 5080 [ DB3D19F850C6EB32BDCB9BC0836ACDDB ] VSS C:\Windows\system32\vssvc.exe
18:51:37.0266 5080 VSS - ok
18:51:37.0290 5080 [ 96EA68B9EB310A69C25EBB0282B2B9DE ] W32Time C:\Windows\system32\w32time.dll
18:51:37.0313 5080 W32Time - ok
18:51:37.0355 5080 [ 48DFEE8F1AF7C8235D4E626F0C4FE031 ] WacomPen C:\Windows\system32\drivers\wacompen.sys
18:51:37.0357 5080 WacomPen - ok
18:51:37.0378 5080 [ 55201897378CCA7AF8B5EFD874374A26 ] Wanarp C:\Windows\system32\DRIVERS\wanarp.sys
18:51:37.0381 5080 Wanarp - ok
18:51:37.0387 5080 [ 55201897378CCA7AF8B5EFD874374A26 ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
18:51:37.0389 5080 Wanarpv6 - ok
18:51:37.0417 5080 [ A3CD60FD826381B49F03832590E069AF ] wcncsvc C:\Windows\System32\wcncsvc.dll
18:51:37.0440 5080 wcncsvc - ok
18:51:37.0482 5080 [ 11BCB7AFCDD7AADACB5746F544D3A9C7 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
18:51:37.0489 5080 WcsPlugInService - ok
18:51:37.0509 5080 [ 78FE9542363F297B18C027B2D7E7C07F ] Wd C:\Windows\system32\drivers\wd.sys
18:51:37.0511 5080 Wd - ok
18:51:37.0558 5080 [ 9950E3D0F08141C7E89E64456AE7DC73 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
18:51:37.0580 5080 Wdf01000 - ok
18:51:37.0599 5080 [ ABFC76B48BB6C96E3338D8943C5D93B5 ] WdiServiceHost C:\Windows\system32\wdi.dll
18:51:37.0607 5080 WdiServiceHost - ok
18:51:37.0613 5080 [ ABFC76B48BB6C96E3338D8943C5D93B5 ] WdiSystemHost C:\Windows\system32\wdi.dll
18:51:37.0619 5080 WdiSystemHost - ok
18:51:37.0654 5080 [ 04C37D8107320312FBAE09926103D5E2 ] WebClient C:\Windows\System32\webclnt.dll
18:51:37.0663 5080 WebClient - ok
18:51:37.0699 5080 [ AE3736E7E8892241C23E4EBBB7453B60 ] Wecsvc C:\Windows\system32\wecsvc.dll
18:51:37.0707 5080 Wecsvc - ok
18:51:37.0726 5080 [ 670FF720071ED741206D69BD995EA453 ] wercplsupport C:\Windows\System32\wercplsupport.dll
18:51:37.0733 5080 wercplsupport - ok
18:51:37.0776 5080 [ 32B88481D3B326DA6DEB07B1D03481E7 ] WerSvc C:\Windows\System32\WerSvc.dll
18:51:37.0784 5080 WerSvc - ok
18:51:37.0833 5080 [ 5C7BDCF5864DB00323FE2D90FA26A8A2 ] winachsf C:\Windows\system32\DRIVERS\VSTCNXT3.SYS
18:51:37.0855 5080 winachsf - ok
18:51:37.0907 5080 [ 4575AA12561C5648483403541D0D7F2B ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll
18:51:37.0912 5080 WinDefend - ok
18:51:37.0920 5080 WinHttpAutoProxySvc - ok
18:51:37.0982 5080 [ 6B2A1D0E80110E3D04E6863C6E62FD8A ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
18:51:37.0985 5080 Winmgmt - ok
18:51:38.0041 5080 [ 7CFE68BDC065E55AA5E8421607037511 ] WinRM C:\Windows\system32\WsmSvc.dll
18:51:38.0085 5080 WinRM - ok
18:51:38.0136 5080 [ 676F4B665BDD8053EAA53AC1695B8074 ] WinUSB C:\Windows\system32\DRIVERS\WinUSB.sys
18:51:38.0138 5080 WinUSB - ok
18:51:38.0189 5080 [ C008405E4FEEB069E30DA1D823910234 ] Wlansvc C:\Windows\System32\wlansvc.dll
18:51:38.0212 5080 Wlansvc - ok
18:51:38.0249 5080 [ 2E7255D172DF0B8283CDFB7B433B864E ] WmiAcpi C:\Windows\system32\DRIVERS\wmiacpi.sys
18:51:38.0250 5080 WmiAcpi - ok
18:51:38.0296 5080 [ 43BE3875207DCB62A85C8C49970B66CC ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
18:51:38.0299 5080 wmiApSrv - ok
18:51:38.0379 5080 [ 3978704576A121A9204F8CC49A301A9B ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
18:51:38.0401 5080 WMPNetworkSvc - ok
18:51:38.0426 5080 [ CFC5A04558F5070CEE3E3A7809F3FF52 ] WPCSvc C:\Windows\System32\wpcsvc.dll
18:51:38.0435 5080 WPCSvc - ok
18:51:38.0472 5080 [ 801FBDB89D472B3C467EB112A0FC9246 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
18:51:38.0480 5080 WPDBusEnum - ok
18:51:38.0519 5080 [ DE9D36F91A4DF3D911626643DEBF11EA ] WpdUsb C:\Windows\system32\DRIVERS\wpdusb.sys
18:51:38.0521 5080 WpdUsb - ok
18:51:38.0596 5080 [ DCF3E3EDF5109EE8BC02FE6E1F045795 ] WPFFontCache_v0400 C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
18:51:38.0619 5080 WPFFontCache_v0400 - ok
18:51:38.0654 5080 [ E3A3CB253C0EC2494D4A61F5E43A389C ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
18:51:38.0656 5080 ws2ifsl - ok
18:51:38.0687 5080 [ 1CA6C40261DDC0425987980D0CD2AAAB ] wscsvc C:\Windows\system32\wscsvc.dll
18:51:38.0695 5080 wscsvc - ok
18:51:38.0700 5080 WSearch - ok
18:51:38.0788 5080 [ FC3EC24FCE372C89423E015A2AC1A31E ] wuauserv C:\Windows\system32\wuaueng.dll
18:51:38.0844 5080 wuauserv - ok
18:51:38.0880 5080 [ AC13CB789D93412106B0FB6C7EB2BCB6 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
18:51:38.0883 5080 WUDFRd - ok
18:51:38.0913 5080 [ 575A4190D989F64732119E4114045A4F ] wudfsvc C:\Windows\System32\WUDFSvc.dll
18:51:38.0920 5080 wudfsvc - ok
18:51:38.0996 5080 ================ Scan global ===============================
18:51:39.0030 5080 [ F31EEBC1A1C81FD04005489CC3DCDFE7 ] C:\Windows\system32\basesrv.dll
18:51:39.0067 5080 [ D2293B069E4B63DC17B2F08D45E71124 ] C:\Windows\system32\winsrv.dll
18:51:39.0089 5080 [ D2293B069E4B63DC17B2F08D45E71124 ] C:\Windows\system32\winsrv.dll
18:51:39.0132 5080 [ D4E6D91C1349B7BFB3599A6ADA56851B ] C:\Windows\system32\services.exe
18:51:39.0139 5080 [Global] - ok
18:51:39.0140 5080 ================ Scan MBR ==================================
18:51:39.0162 5080 [ 85D751F0E41B8E520AEE8C07A8DA777B ] \Device\Harddisk0\DR0
18:51:39.0602 5080 \Device\Harddisk0\DR0 - ok
18:51:39.0603 5080 ================ Scan VBR ==================================
18:51:39.0607 5080 [ 4C65617297EB0C21F86D5FC05DA85142 ] \Device\Harddisk0\DR0\Partition1
18:51:39.0609 5080 \Device\Harddisk0\DR0\Partition1 - ok
18:51:39.0615 5080 [ 4EFAD696D195E778E8AC35D0620B16DD ] \Device\Harddisk0\DR0\Partition2
18:51:39.0616 5080 \Device\Harddisk0\DR0\Partition2 - ok
18:51:39.0619 5080 ============================================================
18:51:39.0619 5080 Scan finished
18:51:39.0619 5080 ============================================================
18:51:39.0634 5820 Detected object count: 0
18:51:39.0634 5820 Actual detected object count: 0
18:51:51.0920 5704 Deinitialize success

Uživatelský avatar
Peťa
Level 5
Level 5
Příspěvky: 2123
Registrován: duben 10
Pohlaví: Muž
Stav:
Offline

Re: Klikl jsem na závadný odkaz, hrozí mi něco?

Příspěvekod Peťa » 02 lis 2012 15:59

HJT zde:

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:58:19, on 9.7.2011
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal

Running processes:
C:\Program Files\DigitalPersona\Bin\DpAgent.exe
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Windows\Explorer.EXE
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\HP\QuickPlay\QPService.exe
C:\Windows\System32\mobsync.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
C:\Program Files\Hewlett-Packard\HP QuickTouch\HPKBDAPP.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\IDT\WDM\sttray.exe
C:\Program Files\HP\HP Software Update\hpwuschd2.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\WINDOWS\ehome\ehtray.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe
C:\Program Files\Hewlett-Packard\HP wireless Assistant\WiFiMsg.EXE
C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\system32\Macromed\Flash\FlashUtil10t_ActiveX.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\system32\conime.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\PETR\Downloads\RSIT.exe
C:\Program Files\trend micro\PETR.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE= ... on&pf=cnnb
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
O2 - BHO: Podpora odkazu pro Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: QuickStores-Toolbar - {10EDB994-47F8-43F7-AE96-F2EA63E9F90F} - mscoree.dll (file missing)
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: QIPBHO - {95289393-33EA-4F8D-B952-483415B9C955} - (no file)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: QuickStores-Toolbar - {10EDB994-47F8-43F7-AE96-F2EA63E9F90F} - mscoree.dll (file missing)
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe"
O4 - HKLM\..\Run: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [UCam_Menu] "C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\YouCam" update "Software\CyberLink\YouCam\2.0"
O4 - HKLM\..\Run: [DpAgent] C:\Program Files\DigitalPersona\Bin\dpagent.exe
O4 - HKLM\..\Run: [QPService] "C:\Program Files\HP\QuickPlay\QPService.exe"
O4 - HKLM\..\Run: [QlbCtrl.exe] C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [OnScreenDisplay] C:\Program Files\Hewlett-Packard\HP QuickTouch\HPKBDAPP.exe
O4 - HKLM\..\Run: [HP Health Check Scheduler] c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
O4 - HKLM\..\Run: [hpWirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [SysTrayApp] %ProgramFiles%\IDT\WDM\sttray.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [BatteryCare] C:\Program Files\BatteryCare\BatteryCare.exe
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Program Files\ICQ7.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Program Files\ICQ7.5\ICQ.exe
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{4AB29756-B6E5-46BF-BC56-F3E930C6C40B}: NameServer = 8.8.8.8,8.8.4.4
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_f691e717\aestsrv.exe
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Com4QLBEx - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
O23 - Service: Biometric Authentication Service (DpHost) - DigitalPersona, Inc. - C:\Program Files\DigitalPersona\Bin\DpHostW.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: HP Service (hpsrv) - Hewlett-Packard Corporation - C:\Windows\system32\Hpservice.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Unknown owner - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe (file missing)
O23 - Service: QuickPlay Background Capture Service (QBCS) (QPCapSvc) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\QPCapSvc.exe
O23 - Service: QuickPlay Task Scheduler (QTS) (QPSched) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\QPSched.exe
O23 - Service: Recovery Service for Windows - Unknown owner - C:\Windows\SMINST\BLService.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: Sony Ericsson PCCompanion - Avanquest Software - C:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe
O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_a7e996cd\STacSV.exe
O23 - Service: Validity Fingerprint Service (vfsFPService) - Validity Sensors, Inc. - C:\Windows\system32\vfsFPService.exe

--
End of file - 8793 bytes

Uživatelský avatar
Orcus
člen Security týmu
Elite Level 10.5
Elite Level 10.5
Příspěvky: 10645
Registrován: duben 10
Bydliště: Okolo rostou 3 růže =o)
Pohlaví: Muž
Stav:
Offline

Re: Klikl jsem na závadný odkaz, hrozí mi něco?

Příspěvekod Orcus » 02 lis 2012 21:56

V HJT fixni:

Kód: Vybrat vše

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE= ... on&pf=cnnb
O2 - BHO: QuickStores-Toolbar - {10EDB994-47F8-43F7-AE96-F2EA63E9F90F} - mscoree.dll (file missing)
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: QIPBHO - {95289393-33EA-4F8D-B952-483415B9C955} - (no file)


A bude to všechno.
Láska hřeje, ale uhlí je uhlí. :fire:



Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.

Pár rad k bezpečnosti PC.

Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix

Pokud budete spokojeni , můžete podpořit naše fórum.

Uživatelský avatar
Peťa
Level 5
Level 5
Příspěvky: 2123
Registrován: duben 10
Pohlaví: Muž
Stav:
Offline

Re: Klikl jsem na závadný odkaz, hrozí mi něco?

Příspěvekod Peťa » 02 lis 2012 22:05

OK, díky za pomoc. Jen jsem se chtěl ještě zeptat, jestli tam byla nějaká havěť v souvislosti s tím odkazem ze skype?

Uživatelský avatar
Žbeky
Moderátor
Guru Level 13
Guru Level 13
Příspěvky: 22288
Registrován: květen 08
Bydliště: Vsetín - Pardubice
Pohlaví: Muž
Stav:
Offline

Re: Klikl jsem na závadný odkaz, hrozí mi něco?  Vyřešeno

Příspěvekod Žbeky » 03 lis 2012 08:16

Nebyla, spíš to bylo čištění od zbytečností.

Můžeš dát vyřešeno
V SZ řeším jen záležitosti týkající se fóra. Na prosby a žádosti o technickou podporu nereaguji. Díky za pochopení.

HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 72 hostů