Zdravím , poprosím o kontrolu logu . Jen preventivně bych chtěl zjistit jestli se mi v PC nepromenáduje nějakej hnus . Děkuji
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:09:14, on 5.11.2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16450)
Boot mode: Normal
Running processes:
C:\Windows\Explorer.EXE
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Windows\system32\taskhost.exe
C:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe
C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe
C:\Program Files\ScanSoft\OmniPageSE2.0\opwareSE2.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesApp32.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Windows\system32\Dwm.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_4_402_287.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_4_402_287.exe
D:\utility\HiJackThis\HiJackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://eu.ask.com/web?l=dis&o=APN10147&gct=hp&apn_dtid=^YYYYYY^YY^CZ&apn_ptnrs=^A6E&apn_uid=3935072211564319&p2=^A6E^YYYYYY^YY^CZ
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
O1 - Hosts: ˙ţ
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~4\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~4\Office14\URLREDIR.DLL
O2 - BHO: aTube Toolbar - {bfc39e47-d643-4dc2-aa1d-61377501c844} - C:\Program Files\atube\atubeX.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: aTube Toolbar - {bfc39e47-d643-4dc2-aa1d-61377501c844} - C:\Program Files\atube\atubeX.dll
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe -r
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [P17RunE] RunDll32 P17RunE.dll,RunDLLEntry
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [PAC7302_Monitor] C:\Windows\PixArt\PAC7302\Monitor.exe
O4 - HKLM\..\Run: [CTSysVol] C:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe /r
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Add To Print List - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint High Speed Print - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Preview - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O8 - Extra context menu item: Easy-WebPrint Print - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~4\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: (no name) - Cmdmapping - (no file) (HKCU)
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvlsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvlsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvlsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvlsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvlsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvlsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvlsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvlsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: avast! Firewall - AVAST Software - C:\Program Files\AVAST Software\Avast\afwServ.exe
O23 - Service: Expresso Updater - Unknown owner - C:\Program Files\Expresso\ExtensionUpdaterService.exe
O23 - Service: ForceWare Intelligent Application Manager (IAM) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: ForceWare IP service (nSvcIp) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: TeamViewer 7 (TeamViewer7) - TeamViewer GmbH - C:\Program Files\TeamViewer\Version7\TeamViewer_Service.exe
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesService32.exe
O23 - Service: VIA Karaoke digital mixer Service (VIAKaraokeService) - VIA Technologies, Inc. - C:\Windows\system32\viakaraokesrv.exe
--
End of file - 9077 bytes
Prosím o kontrolu logu (generálka) Vyřešeno
-
- Level 3
- Příspěvky: 542
- Registrován: červenec 12
- Bydliště: Severní Morava
- Pohlaví:
- Stav:
Offline
Prosím o kontrolu logu (generálka)
OS Windows 11 Professional (x64) (24H2) / MB ASUS TUF GAMING B650M-PLUS / CPU AMD Ryzen 5 7600/ RAM G.SKILL 32GB KIT DDR5 6000MT/s CL36 AMD EXPO / GPU ASUS DUAL RTX 4060 GAMING OC /
SSD SSD WD Black SN770 NVMe 1TB / PSU Seasonic Core GX-650 ATX 3
SSD SSD WD Black SN770 NVMe 1TB / PSU Seasonic Core GX-650 ATX 3
- memphisto
- Guru Level 13
- Příspěvky: 21113
- Registrován: září 06
- Bydliště: Zlín - České Budějovice
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu (generálka)
odinstaluj aTube toolbar
v logu fixni:
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://eu.ask.com/web?l=dis&o=APN10147&gct=hp&apn_dtid=^YYYYYY^YY^CZ&apn_ptnrs=^A6E&apn_uid=3935072211564319&p2=^A6E^YYYYYY^YY^CZ
O1 - Hosts: ˙ţ
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: aTube Toolbar - {bfc39e47-d643-4dc2-aa1d-61377501c844} - C:\Program Files\atube\atubeX.dll
O3 - Toolbar: aTube Toolbar - {bfc39e47-d643-4dc2-aa1d-61377501c844} - C:\Program Files\atube\atubeX.dll
Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranìní historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit doèasné soubory Windows, vysypat koš atd.
Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Update Malwarebytes' Anti-Malware (Aktualizace Malwarebytes' Anti-Malware) a Launch Malwarebytes' Anti-Malware (Spustit aplikaci Malwarebytes' Anti-Malware), pokud jo tak klikni na tlačítko Finish
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Perform Quick Scan (Provést rychlý sken) a klikni na tlačítko Scan (Skenovat)
- po probìhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Show Results
- pak zvol možnost Save Logfile a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.
v logu fixni:
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://eu.ask.com/web?l=dis&o=APN10147&gct=hp&apn_dtid=^YYYYYY^YY^CZ&apn_ptnrs=^A6E&apn_uid=3935072211564319&p2=^A6E^YYYYYY^YY^CZ
O1 - Hosts: ˙ţ
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: aTube Toolbar - {bfc39e47-d643-4dc2-aa1d-61377501c844} - C:\Program Files\atube\atubeX.dll
O3 - Toolbar: aTube Toolbar - {bfc39e47-d643-4dc2-aa1d-61377501c844} - C:\Program Files\atube\atubeX.dll
Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranìní historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit doèasné soubory Windows, vysypat koš atd.
Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Update Malwarebytes' Anti-Malware (Aktualizace Malwarebytes' Anti-Malware) a Launch Malwarebytes' Anti-Malware (Spustit aplikaci Malwarebytes' Anti-Malware), pokud jo tak klikni na tlačítko Finish
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Perform Quick Scan (Provést rychlý sken) a klikni na tlačítko Scan (Skenovat)
- po probìhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Show Results
- pak zvol možnost Save Logfile a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji
-
- Level 3
- Příspěvky: 542
- Registrován: červenec 12
- Bydliště: Severní Morava
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu (generálka)
Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware) 1.65.1.1000
www.malwarebytes.org
Verze databáze: v2012.11.05.06
Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 9.0.8112.16421
Roman :: ROMAN-PC [administrátor]
Ochrana: Povolena
5.11.2012 20:49:51
mbam-log-2012-11-05 (20-56-36).txt
Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 215827
Uplynulý čas: 4 minut, 51 sekund
Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené klíče v registru: 1
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\firefox.exe (Security.Hijack) -> Žádná instrukce nebyla provedena.
Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené soubory: 1
C:\Users\Public\Desktop\MP3 Downloader.lnk (Rogue.Link) -> Žádná instrukce nebyla provedena.
(konec)
www.malwarebytes.org
Verze databáze: v2012.11.05.06
Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 9.0.8112.16421
Roman :: ROMAN-PC [administrátor]
Ochrana: Povolena
5.11.2012 20:49:51
mbam-log-2012-11-05 (20-56-36).txt
Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 215827
Uplynulý čas: 4 minut, 51 sekund
Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené klíče v registru: 1
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\firefox.exe (Security.Hijack) -> Žádná instrukce nebyla provedena.
Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené soubory: 1
C:\Users\Public\Desktop\MP3 Downloader.lnk (Rogue.Link) -> Žádná instrukce nebyla provedena.
(konec)
OS Windows 11 Professional (x64) (24H2) / MB ASUS TUF GAMING B650M-PLUS / CPU AMD Ryzen 5 7600/ RAM G.SKILL 32GB KIT DDR5 6000MT/s CL36 AMD EXPO / GPU ASUS DUAL RTX 4060 GAMING OC /
SSD SSD WD Black SN770 NVMe 1TB / PSU Seasonic Core GX-650 ATX 3
SSD SSD WD Black SN770 NVMe 1TB / PSU Seasonic Core GX-650 ATX 3
- memphisto
- Guru Level 13
- Příspěvky: 21113
- Registrován: září 06
- Bydliště: Zlín - České Budějovice
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu (generálka)
- Takže spus znovu MbAM a dej Scan
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Show Results
- ujistit se že máš zatrhnuté všechny vypsané nálezy a klikni na tlačítko Remove Selected
- když skončí odstraňování tak se ti zobrazí log, tak ho sem dej.
- pak zvol v programu OK a pak program ukonči přes Exit
Stáhni si TDSSKiller
Na svojí plochu. Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller.2.2.7.1._(datum)_log.txt , vlož sem prosím celý obsah logu.
Vypni rezidentní štít antiviru a antispywaru
Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud bude po kontrole problém spustit aplikace nebo bude vyskakovat hláška o pokusu použít neplatnou operaci na klíč registru, který je oznaèen pro odstranění, stačí restartovat počítač.
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Show Results
- ujistit se že máš zatrhnuté všechny vypsané nálezy a klikni na tlačítko Remove Selected
- když skončí odstraňování tak se ti zobrazí log, tak ho sem dej.
- pak zvol v programu OK a pak program ukonči přes Exit
Stáhni si TDSSKiller
Na svojí plochu. Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller.2.2.7.1._(datum)_log.txt , vlož sem prosím celý obsah logu.
Vypni rezidentní štít antiviru a antispywaru
Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud bude po kontrole problém spustit aplikace nebo bude vyskakovat hláška o pokusu použít neplatnou operaci na klíč registru, který je oznaèen pro odstranění, stačí restartovat počítač.
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji
-
- Level 3
- Příspěvky: 542
- Registrován: červenec 12
- Bydliště: Severní Morava
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu (generálka)
Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware) 1.65.1.1000
http://www.malwarebytes.org
Verze databáze: v2012.11.06.02
Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 9.0.8112.16421
Roman :: ROMAN-PC [administrátor]
Ochrana: Zakázána
6.11.2012 20:06:26
mbam-log-2012-11-06 (20-06-26).txt
Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 223667
Uplynulý čas: 5 minut, 46 sekund
Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené klíče v registru: 1
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\firefox.exe (Security.Hijack) -> Umístnění do karantény a smazání se zdařilo.
Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené soubory: 1
C:\Users\Public\Desktop\MP3 Downloader.lnk (Rogue.Link) -> Umístnění do karantény a smazání se zdařilo.
(konec)
za chvíli dodám zbytek
http://www.malwarebytes.org
Verze databáze: v2012.11.06.02
Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 9.0.8112.16421
Roman :: ROMAN-PC [administrátor]
Ochrana: Zakázána
6.11.2012 20:06:26
mbam-log-2012-11-06 (20-06-26).txt
Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 223667
Uplynulý čas: 5 minut, 46 sekund
Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené klíče v registru: 1
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\firefox.exe (Security.Hijack) -> Umístnění do karantény a smazání se zdařilo.
Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené soubory: 1
C:\Users\Public\Desktop\MP3 Downloader.lnk (Rogue.Link) -> Umístnění do karantény a smazání se zdařilo.
(konec)
za chvíli dodám zbytek
OS Windows 11 Professional (x64) (24H2) / MB ASUS TUF GAMING B650M-PLUS / CPU AMD Ryzen 5 7600/ RAM G.SKILL 32GB KIT DDR5 6000MT/s CL36 AMD EXPO / GPU ASUS DUAL RTX 4060 GAMING OC /
SSD SSD WD Black SN770 NVMe 1TB / PSU Seasonic Core GX-650 ATX 3
SSD SSD WD Black SN770 NVMe 1TB / PSU Seasonic Core GX-650 ATX 3
-
- Level 3
- Příspěvky: 542
- Registrován: červenec 12
- Bydliště: Severní Morava
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu (generálka)
20:23:58.0016 5152 TDSS rootkit removing tool 2.8.15.0 Oct 31 2012 21:47:35
20:24:00.0060 5152 ============================================================
20:24:00.0060 5152 Current date / time: 2012/11/06 20:24:00.0060
20:24:00.0060 5152 SystemInfo:
20:24:00.0060 5152
20:24:00.0060 5152 OS Version: 6.1.7601 ServicePack: 1.0
20:24:00.0060 5152 Product type: Workstation
20:24:00.0060 5152 ComputerName: ROMAN-PC
20:24:00.0060 5152 UserName: Roman
20:24:00.0060 5152 Windows directory: C:\Windows
20:24:00.0060 5152 System windows directory: C:\Windows
20:24:00.0060 5152 Processor architecture: Intel x86
20:24:00.0060 5152 Number of processors: 2
20:24:00.0060 5152 Page size: 0x1000
20:24:00.0060 5152 Boot type: Normal boot
20:24:00.0060 5152 ============================================================
20:24:01.0636 5152 Drive \Device\Harddisk0\DR0 - Size: 0x25433D6000 (149.05 Gb), SectorSize: 0x200, Cylinders: 0x4C01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
20:24:01.0854 5152 ============================================================
20:24:01.0854 5152 \Device\Harddisk0\DR0:
20:24:01.0916 5152 MBR partitions:
20:24:01.0916 5152 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x57E52EA
20:24:01.0932 5152 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x57E5368, BlocksNum 0xD233759
20:24:01.0932 5152 ============================================================
20:24:01.0979 5152 C: <-> \Device\Harddisk0\DR0\Partition1
20:24:02.0041 5152 D: <-> \Device\Harddisk0\DR0\Partition2
20:24:02.0041 5152 ============================================================
20:24:02.0041 5152 Initialize success
20:24:02.0041 5152 ============================================================
20:24:05.0286 5076 ============================================================
20:24:05.0286 5076 Scan started
20:24:05.0286 5076 Mode: Manual;
20:24:05.0286 5076 ============================================================
20:24:06.0690 5076 ================ Scan system memory ========================
20:24:06.0690 5076 System memory - ok
20:24:06.0690 5076 ================ Scan services =============================
20:24:07.0111 5076 [ 1B133875B8AA8AC48969BD3458AFE9F5 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
20:24:07.0111 5076 1394ohci - ok
20:24:07.0142 5076 [ CEA80C80BED809AA0DA6FEBC04733349 ] ACPI C:\Windows\system32\drivers\ACPI.sys
20:24:07.0158 5076 ACPI - ok
20:24:07.0174 5076 [ 1EFBC664ABFF416D1D07DB115DCB264F ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
20:24:07.0174 5076 AcpiPmi - ok
20:24:07.0298 5076 [ D19C4EE2AC7C47B8F5F84FFF1A789D8A ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
20:24:07.0298 5076 AdobeARMservice - ok
20:24:07.0361 5076 [ 44C00A385CA9DBC1D5CF3781F8C26AEA ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
20:24:07.0376 5076 AdobeFlashPlayerUpdateSvc - ok
20:24:07.0439 5076 [ 21E785EBD7DC90A06391141AAC7892FB ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
20:24:07.0454 5076 adp94xx - ok
20:24:07.0486 5076 [ 0C676BC278D5B59FF5ABD57BBE9123F2 ] adpahci C:\Windows\system32\drivers\adpahci.sys
20:24:07.0486 5076 adpahci - ok
20:24:07.0564 5076 [ 7C7B5EE4B7B822EC85321FE23A27DB33 ] adpu320 C:\Windows\system32\drivers\adpu320.sys
20:24:07.0579 5076 adpu320 - ok
20:24:07.0642 5076 [ 8B5EEFEEC1E6D1A72A06C526628AD161 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
20:24:07.0673 5076 AeLookupSvc - ok
20:24:07.0829 5076 [ 9EBBBA55060F786F0FCAA3893BFA2806 ] AFD C:\Windows\system32\drivers\afd.sys
20:24:07.0844 5076 AFD - ok
20:24:07.0891 5076 [ 507812C3054C21CEF746B6EE3D04DD6E ] agp440 C:\Windows\system32\drivers\agp440.sys
20:24:07.0907 5076 agp440 - ok
20:24:07.0938 5076 [ 8B30250D573A8F6B4BD23195160D8707 ] aic78xx C:\Windows\system32\drivers\djsvs.sys
20:24:07.0938 5076 aic78xx - ok
20:24:07.0969 5076 [ 18A54E132947CD98FEA9ACCC57F98F13 ] ALG C:\Windows\System32\alg.exe
20:24:07.0969 5076 ALG - ok
20:24:07.0969 5076 [ 0D40BCF52EA90FC7DF2AEAB6503DEA44 ] aliide C:\Windows\system32\drivers\aliide.sys
20:24:07.0969 5076 aliide - ok
20:24:07.0985 5076 [ 3C6600A0696E90A463771C7422E23AB5 ] amdagp C:\Windows\system32\drivers\amdagp.sys
20:24:07.0985 5076 amdagp - ok
20:24:08.0000 5076 [ CD5914170297126B6266860198D1D4F0 ] amdide C:\Windows\system32\drivers\amdide.sys
20:24:08.0016 5076 amdide - ok
20:24:08.0032 5076 [ 00DDA200D71BAC534BF56A9DB5DFD666 ] AmdK8 C:\Windows\system32\drivers\amdk8.sys
20:24:08.0032 5076 AmdK8 - ok
20:24:08.0047 5076 [ 3CBF30F5370FDA40DD3E87DF38EA53B6 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
20:24:08.0047 5076 AmdPPM - ok
20:24:08.0063 5076 [ D320BF87125326F996D4904FE24300FC ] amdsata C:\Windows\system32\drivers\amdsata.sys
20:24:08.0063 5076 amdsata - ok
20:24:08.0094 5076 [ EA43AF0C423FF267355F74E7A53BDABA ] amdsbs C:\Windows\system32\drivers\amdsbs.sys
20:24:08.0094 5076 amdsbs - ok
20:24:08.0110 5076 [ 46387FB17B086D16DEA267D5BE23A2F2 ] amdxata C:\Windows\system32\drivers\amdxata.sys
20:24:08.0110 5076 amdxata - ok
20:24:08.0125 5076 [ AEA177F783E20150ACE5383EE368DA19 ] AppID C:\Windows\system32\drivers\appid.sys
20:24:08.0125 5076 AppID - ok
20:24:08.0141 5076 [ 62A9C86CB6085E20DB4823E4E97826F5 ] AppIDSvc C:\Windows\System32\appidsvc.dll
20:24:08.0141 5076 AppIDSvc - ok
20:24:08.0141 5076 [ FB1959012294D6AD43E5304DF65E3C26 ] Appinfo C:\Windows\System32\appinfo.dll
20:24:08.0141 5076 Appinfo - ok
20:24:08.0156 5076 [ A45D184DF6A8803DA13A0B329517A64A ] AppMgmt C:\Windows\System32\appmgmts.dll
20:24:08.0172 5076 AppMgmt - ok
20:24:08.0188 5076 [ 2932004F49677BD84DBC72EDB754FFB3 ] arc C:\Windows\system32\drivers\arc.sys
20:24:08.0188 5076 arc - ok
20:24:08.0203 5076 [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7 ] arcsas C:\Windows\system32\drivers\arcsas.sys
20:24:08.0203 5076 arcsas - ok
20:24:08.0219 5076 [ 2B4E66FAC6503494A2C6F32BB6AB3826 ] AsIO C:\Windows\system32\drivers\AsIO.sys
20:24:08.0219 5076 AsIO - ok
20:24:08.0250 5076 [ 054DF24C92B55427E0757CFFF160E4F2 ] aswFsBlk C:\Windows\system32\drivers\aswFsBlk.sys
20:24:08.0250 5076 aswFsBlk - ok
20:24:08.0266 5076 [ 9B88D53227E0BC1CE62A981B2FCD67C8 ] aswFW C:\Windows\system32\drivers\aswFW.sys
20:24:08.0281 5076 aswFW - ok
20:24:08.0328 5076 [ 258143605E77E4008F1758481D6A977D ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
20:24:08.0328 5076 aswMonFlt - ok
20:24:08.0344 5076 [ 7B948E3657BEA62E437BC46CA6EF6012 ] aswNdis C:\Windows\system32\DRIVERS\aswNdis.sys
20:24:08.0344 5076 aswNdis - ok
20:24:08.0359 5076 [ 2D26AAEE48A48E64129B4AE1D0AB3A3B ] aswNdis2 C:\Windows\system32\drivers\aswNdis2.sys
20:24:08.0359 5076 aswNdis2 - ok
20:24:08.0375 5076 [ 352D5A48EBAB35A7693B048679304831 ] aswRdr C:\Windows\system32\drivers\aswRdr.sys
20:24:08.0375 5076 aswRdr - ok
20:24:08.0406 5076 [ 8D34D2B24297E27D93E847319ABFDEC4 ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
20:24:08.0406 5076 aswSnx - ok
20:24:08.0453 5076 [ 010012597333DA1F46C3243F33F8409E ] aswSP C:\Windows\system32\drivers\aswSP.sys
20:24:08.0453 5076 aswSP - ok
20:24:08.0484 5076 [ F9F84364416658E9786235904D448D37 ] aswTdi C:\Windows\system32\drivers\aswTdi.sys
20:24:08.0484 5076 aswTdi - ok
20:24:08.0500 5076 [ ADD2ADE1C2B285AB8378D2DAAF991481 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
20:24:08.0500 5076 AsyncMac - ok
20:24:08.0578 5076 [ 338C86357871C167A96AB976519BF59E ] atapi C:\Windows\system32\drivers\atapi.sys
20:24:08.0578 5076 atapi - ok
20:24:08.0593 5076 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
20:24:08.0609 5076 AudioEndpointBuilder - ok
20:24:08.0624 5076 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] Audiosrv C:\Windows\System32\Audiosrv.dll
20:24:08.0640 5076 Audiosrv - ok
20:24:08.0718 5076 [ 996E6D052438E8D8DFD501F31560B2E0 ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
20:24:08.0734 5076 avast! Antivirus - ok
20:24:08.0749 5076 [ 63D43BA2EA495A9F1C1740A513C7E00B ] avast! Firewall C:\Program Files\AVAST Software\Avast\afwServ.exe
20:24:08.0765 5076 avast! Firewall - ok
20:24:08.0780 5076 [ 6E30D02AAC9CAC84F421622E3A2F6178 ] AxInstSV C:\Windows\System32\AxInstSV.dll
20:24:08.0780 5076 AxInstSV - ok
20:24:08.0843 5076 [ 1A231ABEC60FD316EC54C66715543CEC ] b06bdrv C:\Windows\system32\drivers\bxvbdx.sys
20:24:08.0843 5076 b06bdrv - ok
20:24:08.0874 5076 [ BD8869EB9CDE6BBE4508D869929869EE ] b57nd60x C:\Windows\system32\DRIVERS\b57nd60x.sys
20:24:08.0874 5076 b57nd60x - ok
20:24:08.0890 5076 [ EE1E9C3BB8228AE423DD38DB69128E71 ] BDESVC C:\Windows\System32\bdesvc.dll
20:24:08.0890 5076 BDESVC - ok
20:24:08.0905 5076 [ 505506526A9D467307B3C393DEDAF858 ] Beep C:\Windows\system32\drivers\Beep.sys
20:24:08.0905 5076 Beep - ok
20:24:08.0921 5076 [ 1E2BAC209D184BB851E1A187D8A29136 ] BFE C:\Windows\System32\bfe.dll
20:24:08.0936 5076 BFE - ok
20:24:08.0983 5076 [ E585445D5021971FAE10393F0F1C3961 ] BITS C:\Windows\system32\qmgr.dll
20:24:09.0014 5076 BITS - ok
20:24:09.0014 5076 [ 2287078ED48FCFC477B05B20CF38F36F ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
20:24:09.0014 5076 blbdrive - ok
20:24:09.0046 5076 [ 8F2DA3028D5FCBD1A060A3DE64CD6506 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
20:24:09.0046 5076 bowser - ok
20:24:09.0046 5076 [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo C:\Windows\system32\drivers\BrFiltLo.sys
20:24:09.0061 5076 BrFiltLo - ok
20:24:09.0061 5076 [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp C:\Windows\system32\drivers\BrFiltUp.sys
20:24:09.0061 5076 BrFiltUp - ok
20:24:09.0077 5076 [ 77361D72A04F18809D0EFB6CCEB74D4B ] BridgeMP C:\Windows\system32\DRIVERS\bridge.sys
20:24:09.0077 5076 BridgeMP - ok
20:24:09.0108 5076 [ 3DAA727B5B0A45039B0E1C9A211B8400 ] Browser C:\Windows\System32\browser.dll
20:24:09.0124 5076 Browser - ok
20:24:09.0139 5076 [ 845B8CE732E67F3B4133164868C666EA ] Brserid C:\Windows\System32\Drivers\Brserid.sys
20:24:09.0139 5076 Brserid - ok
20:24:09.0155 5076 [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
20:24:09.0155 5076 BrSerWdm - ok
20:24:09.0170 5076 [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
20:24:09.0170 5076 BrUsbMdm - ok
20:24:09.0186 5076 [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
20:24:09.0186 5076 BrUsbSer - ok
20:24:09.0202 5076 [ ED3DF7C56CE0084EB2034432FC56565A ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
20:24:09.0202 5076 BTHMODEM - ok
20:24:09.0217 5076 [ 1DF19C96EEF6C29D1C3E1A8678E07190 ] bthserv C:\Windows\system32\bthserv.dll
20:24:09.0233 5076 bthserv - ok
20:24:09.0233 5076 [ 77EA11B065E0A8AB902D78145CA51E10 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
20:24:09.0248 5076 cdfs - ok
20:24:09.0248 5076 [ BE167ED0FDB9C1FA1133953C18D5A6C9 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
20:24:09.0248 5076 cdrom - ok
20:24:09.0264 5076 [ 319C6B309773D063541D01DF8AC6F55F ] CertPropSvc C:\Windows\System32\certprop.dll
20:24:09.0264 5076 CertPropSvc - ok
20:24:09.0280 5076 [ 3FE3FE94A34DF6FB06E6418D0F6A0060 ] circlass C:\Windows\system32\drivers\circlass.sys
20:24:09.0280 5076 circlass - ok
20:24:09.0295 5076 [ 635181E0E9BBF16871BF5380D71DB02D ] CLFS C:\Windows\system32\CLFS.sys
20:24:09.0295 5076 CLFS - ok
20:24:09.0373 5076 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
20:24:09.0373 5076 clr_optimization_v2.0.50727_32 - ok
20:24:09.0436 5076 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
20:24:09.0451 5076 clr_optimization_v4.0.30319_32 - ok
20:24:09.0467 5076 [ DEA805815E587DAD1DD2C502220B5616 ] CmBatt C:\Windows\system32\drivers\CmBatt.sys
20:24:09.0467 5076 CmBatt - ok
20:24:09.0482 5076 [ C537B1DB64D495B9B4717B4D6D9EDBF2 ] cmdide C:\Windows\system32\drivers\cmdide.sys
20:24:09.0482 5076 cmdide - ok
20:24:09.0498 5076 [ 247B4CE2DAB1160CD422D532D5241E1F ] CNG C:\Windows\system32\Drivers\cng.sys
20:24:09.0514 5076 CNG - ok
20:24:09.0529 5076 [ A6023D3823C37043986713F118A89BEE ] Compbatt C:\Windows\system32\drivers\compbatt.sys
20:24:09.0529 5076 Compbatt - ok
20:24:09.0545 5076 [ CBE8C58A8579CFE5FCCF809E6F114E89 ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys
20:24:09.0545 5076 CompositeBus - ok
20:24:09.0560 5076 COMSysApp - ok
20:24:09.0576 5076 [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
20:24:09.0576 5076 crcdisk - ok
20:24:09.0607 5076 [ 96C0E38905CFD788313BE8E11DAE3F2F ] CryptSvc C:\Windows\system32\cryptsvc.dll
20:24:09.0623 5076 CryptSvc - ok
20:24:09.0670 5076 [ 3C2177A897B4CA2788C6FB0C3FD81D4B ] CSC C:\Windows\system32\drivers\csc.sys
20:24:09.0685 5076 CSC - ok
20:24:09.0701 5076 [ 15F93B37F6801943360D9EB42485D5D3 ] CscService C:\Windows\System32\cscsvc.dll
20:24:09.0748 5076 CscService - ok
20:24:09.0779 5076 [ 8DB84DE3AAB34A8B4C2F644EFF41CD76 ] ctsfm2k C:\Windows\system32\DRIVERS\ctsfm2k.sys
20:24:09.0779 5076 ctsfm2k - ok
20:24:09.0872 5076 [ 7660F01D3B38ACA1747E397D21D790AF ] DcomLaunch C:\Windows\system32\rpcss.dll
20:24:09.0872 5076 DcomLaunch - ok
20:24:09.0950 5076 [ 8D6E10A2D9A5EED59562D9B82CF804E1 ] defragsvc C:\Windows\System32\defragsvc.dll
20:24:09.0966 5076 defragsvc - ok
20:24:09.0982 5076 [ F024449C97EC1E464AAFFDA18593DB88 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
20:24:09.0997 5076 DfsC - ok
20:24:10.0028 5076 [ E9E01EB683C132F7FA27CD607B8A2B63 ] Dhcp C:\Windows\system32\dhcpcore.dll
20:24:10.0028 5076 Dhcp - ok
20:24:10.0060 5076 [ 1A050B0274BFB3890703D490F330C0DA ] discache C:\Windows\system32\drivers\discache.sys
20:24:10.0060 5076 discache - ok
20:24:10.0091 5076 [ 565003F326F99802E68CA78F2A68E9FF ] Disk C:\Windows\system32\drivers\disk.sys
20:24:10.0091 5076 Disk - ok
20:24:10.0106 5076 [ 2A958EF85DB1B61FFCA65044FA4BCE9E ] dmvsc C:\Windows\system32\drivers\dmvsc.sys
20:24:10.0122 5076 dmvsc - ok
20:24:10.0138 5076 [ 33EF4861F19A0736B11314AAD9AE28D0 ] Dnscache C:\Windows\System32\dnsrslvr.dll
20:24:10.0138 5076 Dnscache - ok
20:24:10.0184 5076 [ 366BA8FB4B7BB7435E3B9EACB3843F67 ] dot3svc C:\Windows\System32\dot3svc.dll
20:24:10.0184 5076 dot3svc - ok
20:24:10.0200 5076 [ 8EC04CA86F1D68DA9E11952EB85973D6 ] DPS C:\Windows\system32\dps.dll
20:24:10.0200 5076 DPS - ok
20:24:10.0231 5076 [ B918E7C5F9BF77202F89E1A9539F2EB4 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
20:24:10.0247 5076 drmkaud - ok
20:24:10.0278 5076 [ 687AF6BB383885FF6A64071B189A7F3E ] dtsoftbus01 C:\Windows\system32\DRIVERS\dtsoftbus01.sys
20:24:10.0278 5076 dtsoftbus01 - ok
20:24:10.0309 5076 [ 23F5D28378A160352BA8F817BD8C71CB ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
20:24:10.0325 5076 DXGKrnl - ok
20:24:10.0387 5076 [ 8600142FA91C1B96367D3300AD0F3F3A ] EapHost C:\Windows\System32\eapsvc.dll
20:24:10.0403 5076 EapHost - ok
20:24:10.0528 5076 [ 024E1B5CAC09731E4D868E64DBFB4AB0 ] ebdrv C:\Windows\system32\drivers\evbdx.sys
20:24:10.0606 5076 ebdrv - ok
20:24:10.0621 5076 [ 81951F51E318AECC2D68559E47485CC4 ] EFS C:\Windows\System32\lsass.exe
20:24:10.0637 5076 EFS - ok
20:24:10.0730 5076 [ A8C362018EFC87BEB013EE28F29C0863 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
20:24:10.0746 5076 ehRecvr - ok
20:24:10.0746 5076 [ D389BFF34F80CAEDE417BF9D1507996A ] ehSched C:\Windows\ehome\ehsched.exe
20:24:10.0746 5076 ehSched - ok
20:24:10.0793 5076 [ 0ED67910C8C326796FAA00B2BF6D9D3C ] elxstor C:\Windows\system32\drivers\elxstor.sys
20:24:10.0808 5076 elxstor - ok
20:24:10.0824 5076 [ 8FC3208352DD3912C94367A206AB3F11 ] ErrDev C:\Windows\system32\drivers\errdev.sys
20:24:10.0824 5076 ErrDev - ok
20:24:10.0855 5076 [ F6916EFC29D9953D5D0DF06882AE8E16 ] EventSystem C:\Windows\system32\es.dll
20:24:10.0871 5076 EventSystem - ok
20:24:10.0886 5076 [ 2DC9108D74081149CC8B651D3A26207F ] exfat C:\Windows\system32\drivers\exfat.sys
20:24:10.0886 5076 exfat - ok
20:24:10.0933 5076 [ 59B20FE9C71C256F46AE9B5A51393EE3 ] Expresso Updater C:\Program Files\Expresso\ExtensionUpdaterService.exe
20:24:10.0933 5076 Expresso Updater - ok
20:24:10.0949 5076 [ 7E0AB74553476622FB6AE36F73D97D35 ] fastfat C:\Windows\system32\drivers\fastfat.sys
20:24:10.0949 5076 fastfat - ok
20:24:10.0980 5076 [ 967EA5B213E9984CBE270205DF37755B ] Fax C:\Windows\system32\fxssvc.exe
20:24:10.0996 5076 Fax - ok
20:24:11.0011 5076 [ E817A017F82DF2A1F8CFDBDA29388B29 ] fdc C:\Windows\system32\DRIVERS\fdc.sys
20:24:11.0011 5076 fdc - ok
20:24:11.0027 5076 [ F3222C893BD2F5821A0179E5C71E88FB ] fdPHost C:\Windows\system32\fdPHost.dll
20:24:11.0027 5076 fdPHost - ok
20:24:11.0042 5076 [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B ] FDResPub C:\Windows\system32\fdrespub.dll
20:24:11.0042 5076 FDResPub - ok
20:24:11.0058 5076 [ 6CF00369C97F3CF563BE99BE983D13D8 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
20:24:11.0058 5076 FileInfo - ok
20:24:11.0058 5076 [ 42C51DC94C91DA21CB9196EB64C45DB9 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
20:24:11.0058 5076 Filetrace - ok
20:24:11.0074 5076 [ 87907AA70CB3C56600F1C2FB8841579B ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
20:24:11.0074 5076 flpydisk - ok
20:24:11.0089 5076 [ 7520EC808E0C35E0EE6F841294316653 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
20:24:11.0089 5076 FltMgr - ok
20:24:11.0136 5076 [ B3A5EC6B6B6673DB7E87C2BCDBDDC074 ] FontCache C:\Windows\system32\FntCache.dll
20:24:11.0167 5076 FontCache - ok
20:24:11.0230 5076 [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
20:24:11.0230 5076 FontCache3.0.0.0 - ok
20:24:11.0323 5076 [ F33425DBD8CDF00C1F318BA0EDC8D048 ] ForceWare Intelligent Application Manager (IAM) C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
20:24:11.0339 5076 ForceWare Intelligent Application Manager (IAM) - ok
20:24:11.0339 5076 [ 1A16B57943853E598CFF37FE2B8CBF1D ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
20:24:11.0339 5076 FsDepends - ok
20:24:11.0370 5076 [ 7DAE5EBCC80E45D3253F4923DC424D05 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
20:24:11.0370 5076 Fs_Rec - ok
20:24:11.0386 5076 [ 8A73E79089B282100B9393B644CB853B ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
20:24:11.0386 5076 fvevol - ok
20:24:11.0401 5076 [ 65EE0C7A58B65E74AE05637418153938 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
20:24:11.0401 5076 gagp30kx - ok
20:24:11.0432 5076 [ E897EAF5ED6BA41E081060C9B447A673 ] gpsvc C:\Windows\System32\gpsvc.dll
20:24:11.0464 5076 gpsvc - ok
20:24:11.0573 5076 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
20:24:11.0573 5076 gupdate - ok
20:24:11.0588 5076 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
20:24:11.0588 5076 gupdatem - ok
20:24:11.0604 5076 [ C44E3C2BAB6837DB337DDEE7544736DB ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
20:24:11.0604 5076 hcw85cir - ok
20:24:11.0651 5076 [ A5EF29D5315111C80A5C1ABAD14C8972 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
20:24:11.0651 5076 HdAudAddService - ok
20:24:11.0666 5076 [ 9036377B8A6C15DC2EEC53E489D159B5 ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
20:24:11.0666 5076 HDAudBus - ok
20:24:11.0682 5076 [ 1D58A7F3E11A9731D0EAAAA8405ACC36 ] HidBatt C:\Windows\system32\drivers\HidBatt.sys
20:24:11.0682 5076 HidBatt - ok
20:24:11.0698 5076 [ 89448F40E6DF260C206A193A4683BA78 ] HidBth C:\Windows\system32\drivers\hidbth.sys
20:24:11.0698 5076 HidBth - ok
20:24:11.0729 5076 [ CF50B4CF4A4F229B9F3C08351F99CA5E ] HidIr C:\Windows\system32\drivers\hidir.sys
20:24:11.0729 5076 HidIr - ok
20:24:11.0760 5076 [ 2BC6F6A1992B3A77F5F41432CA6B3B6B ] hidserv C:\Windows\System32\hidserv.dll
20:24:11.0760 5076 hidserv - ok
20:24:11.0791 5076 [ 10C19F8290891AF023EAEC0832E1EB4D ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
20:24:11.0791 5076 HidUsb - ok
20:24:11.0822 5076 [ 196B4E3F4CCCC24AF836CE58FACBB699 ] hkmsvc C:\Windows\system32\kmsvc.dll
20:24:11.0838 5076 hkmsvc - ok
20:24:11.0854 5076 [ 6658F4404DE03D75FE3BA09F7ABA6A30 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
20:24:11.0854 5076 HomeGroupListener - ok
20:24:11.0900 5076 [ DBC02D918FFF1CAD628ACBE0C0EAA8E8 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
20:24:11.0900 5076 HomeGroupProvider - ok
20:24:11.0916 5076 [ 295FDC419039090EB8B49FFDBB374549 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
20:24:11.0916 5076 HpSAMD - ok
20:24:11.0947 5076 [ 871917B07A141BFF43D76D8844D48106 ] HTTP C:\Windows\system32\drivers\HTTP.sys
20:24:11.0963 5076 HTTP - ok
20:24:11.0978 5076 [ 0C4E035C7F105F1299258C90886C64C5 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
20:24:11.0978 5076 hwpolicy - ok
20:24:11.0994 5076 [ F151F0BDC47F4A28B1B20A0818EA36D6 ] i8042prt C:\Windows\system32\drivers\i8042prt.sys
20:24:11.0994 5076 i8042prt - ok
20:24:12.0010 5076 [ 5CD5F9A5444E6CDCB0AC89BD62D8B76E ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
20:24:12.0010 5076 iaStorV - ok
20:24:12.0072 5076 [ C521D7EB6497BB1AF6AFA89E322FB43C ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
20:24:12.0103 5076 idsvc - ok
20:24:12.0134 5076 [ 4173FF5708F3236CF25195FECD742915 ] iirsp C:\Windows\system32\drivers\iirsp.sys
20:24:12.0134 5076 iirsp - ok
20:24:12.0181 5076 [ F95622F161474511B8D80D6B093AA610 ] IKEEXT C:\Windows\System32\ikeext.dll
20:24:12.0212 5076 IKEEXT - ok
20:24:12.0228 5076 [ A0F12F2C9BA6C72F3987CE780E77C130 ] intelide C:\Windows\system32\drivers\intelide.sys
20:24:12.0228 5076 intelide - ok
20:24:12.0244 5076 [ 3B514D27BFC4ACCB4037BC6685F766E0 ] intelppm C:\Windows\system32\drivers\intelppm.sys
20:24:12.0244 5076 intelppm - ok
20:24:12.0259 5076 [ ACB364B9075A45C0736E5C47BE5CAE19 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
20:24:12.0259 5076 IPBusEnum - ok
20:24:12.0275 5076 [ 709D1761D3B19A932FF0238EA6D50200 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
20:24:12.0275 5076 IpFilterDriver - ok
20:24:12.0322 5076 [ 4D65A07B795D6674312F879D09AA7663 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
20:24:12.0337 5076 iphlpsvc - ok
20:24:12.0368 5076 [ 4BD7134618C1D2A27466A099062547BF ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
20:24:12.0368 5076 IPMIDRV - ok
20:24:12.0384 5076 [ A5FA468D67ABCDAA36264E463A7BB0CD ] IPNAT C:\Windows\system32\drivers\ipnat.sys
20:24:12.0384 5076 IPNAT - ok
20:24:12.0400 5076 [ 42996CFF20A3084A56017B7902307E9F ] IRENUM C:\Windows\system32\drivers\irenum.sys
20:24:12.0400 5076 IRENUM - ok
20:24:12.0415 5076 [ 1F32BB6B38F62F7DF1A7AB7292638A35 ] isapnp C:\Windows\system32\drivers\isapnp.sys
20:24:12.0415 5076 isapnp - ok
20:24:12.0431 5076 [ CB7A9ABB12B8415BCE5D74994C7BA3AE ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
20:24:12.0431 5076 iScsiPrt - ok
20:24:12.0462 5076 [ ADEF52CA1AEAE82B50DF86B56413107E ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
20:24:12.0462 5076 kbdclass - ok
20:24:12.0478 5076 [ 9E3CED91863E6EE98C24794D05E27A71 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
20:24:12.0478 5076 kbdhid - ok
20:24:12.0493 5076 [ 81951F51E318AECC2D68559E47485CC4 ] KeyIso C:\Windows\system32\lsass.exe
20:24:12.0493 5076 KeyIso - ok
20:24:12.0509 5076 [ B7895B4182C0D16F6EFADEB8081E8D36 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
20:24:12.0509 5076 KSecDD - ok
20:24:12.0524 5076 [ D30159AC9237519FBC62C6EC247D2D46 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
20:24:12.0524 5076 KSecPkg - ok
20:24:12.0602 5076 [ 89A7B9CC98D0D80C6F31B91C0A310FCD ] KtmRm C:\Windows\system32\msdtckrm.dll
20:24:12.0618 5076 KtmRm - ok
20:24:12.0649 5076 [ D64AF876D53ECA3668BB97B51B4E70AB ] LanmanServer C:\Windows\System32\srvsvc.dll
20:24:12.0665 5076 LanmanServer - ok
20:24:12.0680 5076 [ 58405E4F68BA8E4057C6E914F326ABA2 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
20:24:12.0680 5076 LanmanWorkstation - ok
20:24:12.0712 5076 [ F7611EC07349979DA9B0AE1F18CCC7A6 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
20:24:12.0712 5076 lltdio - ok
20:24:12.0743 5076 [ 5700673E13A2117FA3B9020C852C01E2 ] lltdsvc C:\Windows\System32\lltdsvc.dll
20:24:12.0758 5076 lltdsvc - ok
20:24:12.0774 5076 [ 55CA01BA19D0006C8F2639B6C045E08B ] lmhosts C:\Windows\System32\lmhsvc.dll
20:24:12.0774 5076 lmhosts - ok
20:24:12.0790 5076 [ EB119A53CCF2ACC000AC71B065B78FEF ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
20:24:12.0790 5076 LSI_FC - ok
20:24:12.0805 5076 [ 8ADE1C877256A22E49B75D1CC9161F9C ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
20:24:12.0805 5076 LSI_SAS - ok
20:24:12.0821 5076 [ DC9DC3D3DAA0E276FD2EC262E38B11E9 ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys
20:24:12.0821 5076 LSI_SAS2 - ok
20:24:12.0836 5076 [ 0A036C7D7CAB643A7F07135AC47E0524 ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
20:24:12.0836 5076 LSI_SCSI - ok
20:24:12.0852 5076 [ 6703E366CC18D3B6E534F5CF7DF39CEE ] luafv C:\Windows\system32\drivers\luafv.sys
20:24:12.0852 5076 luafv - ok
20:24:12.0899 5076 [ A3E700D78EEC390F1208098CDCA5C6B6 ] MarvinBus C:\Windows\system32\DRIVERS\MarvinBus.sys
20:24:12.0899 5076 MarvinBus - ok
20:24:12.0961 5076 [ 500D089CE760D83DA2B6CBA681AA9949 ] MBAMProtector C:\Windows\system32\drivers\mbam.sys
20:24:12.0961 5076 MBAMProtector - ok
20:24:13.0055 5076 [ 85B16A92B117A5A800032ECD904B86DB ] MBAMScheduler C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
20:24:13.0070 5076 MBAMScheduler - ok
20:24:13.0086 5076 [ 20E2469DB709FC675E655CEAA11BE312 ] MBAMService C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
20:24:13.0102 5076 MBAMService - ok
20:24:13.0117 5076 [ BFB9EE8EE977EFE85D1A3105ABEF6DD1 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
20:24:13.0117 5076 Mcx2Svc - ok
20:24:13.0133 5076 [ 0FFF5B045293002AB38EB1FD1FC2FB74 ] megasas C:\Windows\system32\drivers\megasas.sys
20:24:13.0133 5076 megasas - ok
20:24:13.0164 5076 [ DCBAB2920C75F390CAF1D29F675D03D6 ] MegaSR C:\Windows\system32\drivers\MegaSR.sys
20:24:13.0164 5076 MegaSR - ok
20:24:13.0211 5076 Microsoft SharePoint Workspace Audit Service - ok
20:24:13.0226 5076 [ 146B6F43A673379A3C670E86D89BE5EA ] MMCSS C:\Windows\system32\mmcss.dll
20:24:13.0226 5076 MMCSS - ok
20:24:13.0242 5076 [ F001861E5700EE84E2D4E52C712F4964 ] Modem C:\Windows\system32\drivers\modem.sys
20:24:13.0242 5076 Modem - ok
20:24:13.0258 5076 [ 79D10964DE86B292320E9DFE02282A23 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
20:24:13.0258 5076 monitor - ok
20:24:13.0273 5076 [ FB18CC1D4C2E716B6B903B0AC0CC0609 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
20:24:13.0273 5076 mouclass - ok
20:24:13.0289 5076 [ 2C388D2CD01C9042596CF3C8F3C7B24D ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
20:24:13.0289 5076 mouhid - ok
20:24:13.0304 5076 [ FC8771F45ECCCFD89684E38842539B9B ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
20:24:13.0304 5076 mountmgr - ok
20:24:13.0336 5076 [ 46297FA8E30A6007F14118FC2B942FBC ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
20:24:13.0351 5076 MozillaMaintenance - ok
20:24:13.0382 5076 [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0 ] mpio C:\Windows\system32\drivers\mpio.sys
20:24:13.0382 5076 mpio - ok
20:24:13.0398 5076 [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
20:24:13.0398 5076 mpsdrv - ok
20:24:13.0429 5076 [ 9835584E999D25004E1EE8E5F3E3B881 ] MpsSvc C:\Windows\system32\mpssvc.dll
20:24:13.0460 5076 MpsSvc - ok
20:24:13.0460 5076 [ CEB46AB7C01C9F825F8CC6BABC18166A ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
20:24:13.0460 5076 MRxDAV - ok
20:24:13.0492 5076 [ 5D16C921E3671636C0EBA3BBAAC5FD25 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
20:24:13.0492 5076 mrxsmb - ok
20:24:13.0507 5076 [ 6D17A4791ACA19328C685D256349FEFC ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
20:24:13.0507 5076 mrxsmb10 - ok
20:24:13.0507 5076 [ B81F204D146000BE76651A50670A5E9E ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
20:24:13.0523 5076 mrxsmb20 - ok
20:24:13.0538 5076 [ 012C5F4E9349E711E11E0F19A8589F0A ] msahci C:\Windows\system32\drivers\msahci.sys
20:24:13.0538 5076 msahci - ok
20:24:13.0554 5076 [ 55055F8AD8BE27A64C831322A780A228 ] msdsm C:\Windows\system32\drivers\msdsm.sys
20:24:13.0554 5076 msdsm - ok
20:24:13.0570 5076 [ E1BCE74A3BD9902B72599C0192A07E27 ] MSDTC C:\Windows\System32\msdtc.exe
20:24:13.0570 5076 MSDTC - ok
20:24:13.0585 5076 [ DAEFB28E3AF5A76ABCC2C3078C07327F ] Msfs C:\Windows\system32\drivers\Msfs.sys
20:24:13.0585 5076 Msfs - ok
20:24:13.0601 5076 [ 3E1E5767043C5AF9367F0056295E9F84 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
20:24:13.0601 5076 mshidkmdf - ok
20:24:13.0601 5076 [ 0A4E5757AE09FA9622E3158CC1AEF114 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
20:24:13.0601 5076 msisadrv - ok
20:24:13.0632 5076 [ 90F7D9E6B6F27E1A707D4A297F077828 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
20:24:13.0648 5076 MSiSCSI - ok
20:24:13.0648 5076 msiserver - ok
20:24:13.0663 5076 [ 8C0860D6366AAFFB6C5BB9DF9448E631 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
20:24:13.0663 5076 MSKSSRV - ok
20:24:13.0679 5076 [ 3EA8B949F963562CEDBB549EAC0C11CE ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
20:24:13.0679 5076 MSPCLOCK - ok
20:24:13.0710 5076 [ F456E973590D663B1073E9C463B40932 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
20:24:13.0726 5076 MSPQM - ok
20:24:13.0741 5076 [ 0E008FC4819D238C51D7C93E7B41E560 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
20:24:13.0741 5076 MsRPC - ok
20:24:13.0757 5076 [ FC6B9FF600CC585EA38B12589BD4E246 ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
20:24:13.0757 5076 mssmbios - ok
20:24:13.0772 5076 [ B42C6B921F61A6E55159B8BE6CD54A36 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
20:24:13.0772 5076 MSTEE - ok
20:24:13.0788 5076 [ 33599130F44E1F34631CEA241DE8AC84 ] MTConfig C:\Windows\system32\drivers\MTConfig.sys
20:24:13.0788 5076 MTConfig - ok
20:24:13.0819 5076 [ CBE71C122434805CB73FFB6619F60598 ] MTsensor C:\Windows\system32\DRIVERS\ASACPI.sys
20:24:13.0819 5076 MTsensor - ok
20:24:13.0835 5076 [ 159FAD02F64E6381758C990F753BCC80 ] Mup C:\Windows\system32\Drivers\mup.sys
20:24:13.0835 5076 Mup - ok
20:24:13.0866 5076 [ 61D57A5D7C6D9AFE10E77DAE6E1B445E ] napagent C:\Windows\system32\qagentRT.dll
20:24:13.0897 5076 napagent - ok
20:24:13.0928 5076 [ 26384429FCD85D83746F63E798AB1480 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
20:24:13.0928 5076 NativeWifiP - ok
20:24:00.0060 5152 ============================================================
20:24:00.0060 5152 Current date / time: 2012/11/06 20:24:00.0060
20:24:00.0060 5152 SystemInfo:
20:24:00.0060 5152
20:24:00.0060 5152 OS Version: 6.1.7601 ServicePack: 1.0
20:24:00.0060 5152 Product type: Workstation
20:24:00.0060 5152 ComputerName: ROMAN-PC
20:24:00.0060 5152 UserName: Roman
20:24:00.0060 5152 Windows directory: C:\Windows
20:24:00.0060 5152 System windows directory: C:\Windows
20:24:00.0060 5152 Processor architecture: Intel x86
20:24:00.0060 5152 Number of processors: 2
20:24:00.0060 5152 Page size: 0x1000
20:24:00.0060 5152 Boot type: Normal boot
20:24:00.0060 5152 ============================================================
20:24:01.0636 5152 Drive \Device\Harddisk0\DR0 - Size: 0x25433D6000 (149.05 Gb), SectorSize: 0x200, Cylinders: 0x4C01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
20:24:01.0854 5152 ============================================================
20:24:01.0854 5152 \Device\Harddisk0\DR0:
20:24:01.0916 5152 MBR partitions:
20:24:01.0916 5152 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x57E52EA
20:24:01.0932 5152 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x57E5368, BlocksNum 0xD233759
20:24:01.0932 5152 ============================================================
20:24:01.0979 5152 C: <-> \Device\Harddisk0\DR0\Partition1
20:24:02.0041 5152 D: <-> \Device\Harddisk0\DR0\Partition2
20:24:02.0041 5152 ============================================================
20:24:02.0041 5152 Initialize success
20:24:02.0041 5152 ============================================================
20:24:05.0286 5076 ============================================================
20:24:05.0286 5076 Scan started
20:24:05.0286 5076 Mode: Manual;
20:24:05.0286 5076 ============================================================
20:24:06.0690 5076 ================ Scan system memory ========================
20:24:06.0690 5076 System memory - ok
20:24:06.0690 5076 ================ Scan services =============================
20:24:07.0111 5076 [ 1B133875B8AA8AC48969BD3458AFE9F5 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
20:24:07.0111 5076 1394ohci - ok
20:24:07.0142 5076 [ CEA80C80BED809AA0DA6FEBC04733349 ] ACPI C:\Windows\system32\drivers\ACPI.sys
20:24:07.0158 5076 ACPI - ok
20:24:07.0174 5076 [ 1EFBC664ABFF416D1D07DB115DCB264F ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
20:24:07.0174 5076 AcpiPmi - ok
20:24:07.0298 5076 [ D19C4EE2AC7C47B8F5F84FFF1A789D8A ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
20:24:07.0298 5076 AdobeARMservice - ok
20:24:07.0361 5076 [ 44C00A385CA9DBC1D5CF3781F8C26AEA ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
20:24:07.0376 5076 AdobeFlashPlayerUpdateSvc - ok
20:24:07.0439 5076 [ 21E785EBD7DC90A06391141AAC7892FB ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
20:24:07.0454 5076 adp94xx - ok
20:24:07.0486 5076 [ 0C676BC278D5B59FF5ABD57BBE9123F2 ] adpahci C:\Windows\system32\drivers\adpahci.sys
20:24:07.0486 5076 adpahci - ok
20:24:07.0564 5076 [ 7C7B5EE4B7B822EC85321FE23A27DB33 ] adpu320 C:\Windows\system32\drivers\adpu320.sys
20:24:07.0579 5076 adpu320 - ok
20:24:07.0642 5076 [ 8B5EEFEEC1E6D1A72A06C526628AD161 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
20:24:07.0673 5076 AeLookupSvc - ok
20:24:07.0829 5076 [ 9EBBBA55060F786F0FCAA3893BFA2806 ] AFD C:\Windows\system32\drivers\afd.sys
20:24:07.0844 5076 AFD - ok
20:24:07.0891 5076 [ 507812C3054C21CEF746B6EE3D04DD6E ] agp440 C:\Windows\system32\drivers\agp440.sys
20:24:07.0907 5076 agp440 - ok
20:24:07.0938 5076 [ 8B30250D573A8F6B4BD23195160D8707 ] aic78xx C:\Windows\system32\drivers\djsvs.sys
20:24:07.0938 5076 aic78xx - ok
20:24:07.0969 5076 [ 18A54E132947CD98FEA9ACCC57F98F13 ] ALG C:\Windows\System32\alg.exe
20:24:07.0969 5076 ALG - ok
20:24:07.0969 5076 [ 0D40BCF52EA90FC7DF2AEAB6503DEA44 ] aliide C:\Windows\system32\drivers\aliide.sys
20:24:07.0969 5076 aliide - ok
20:24:07.0985 5076 [ 3C6600A0696E90A463771C7422E23AB5 ] amdagp C:\Windows\system32\drivers\amdagp.sys
20:24:07.0985 5076 amdagp - ok
20:24:08.0000 5076 [ CD5914170297126B6266860198D1D4F0 ] amdide C:\Windows\system32\drivers\amdide.sys
20:24:08.0016 5076 amdide - ok
20:24:08.0032 5076 [ 00DDA200D71BAC534BF56A9DB5DFD666 ] AmdK8 C:\Windows\system32\drivers\amdk8.sys
20:24:08.0032 5076 AmdK8 - ok
20:24:08.0047 5076 [ 3CBF30F5370FDA40DD3E87DF38EA53B6 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
20:24:08.0047 5076 AmdPPM - ok
20:24:08.0063 5076 [ D320BF87125326F996D4904FE24300FC ] amdsata C:\Windows\system32\drivers\amdsata.sys
20:24:08.0063 5076 amdsata - ok
20:24:08.0094 5076 [ EA43AF0C423FF267355F74E7A53BDABA ] amdsbs C:\Windows\system32\drivers\amdsbs.sys
20:24:08.0094 5076 amdsbs - ok
20:24:08.0110 5076 [ 46387FB17B086D16DEA267D5BE23A2F2 ] amdxata C:\Windows\system32\drivers\amdxata.sys
20:24:08.0110 5076 amdxata - ok
20:24:08.0125 5076 [ AEA177F783E20150ACE5383EE368DA19 ] AppID C:\Windows\system32\drivers\appid.sys
20:24:08.0125 5076 AppID - ok
20:24:08.0141 5076 [ 62A9C86CB6085E20DB4823E4E97826F5 ] AppIDSvc C:\Windows\System32\appidsvc.dll
20:24:08.0141 5076 AppIDSvc - ok
20:24:08.0141 5076 [ FB1959012294D6AD43E5304DF65E3C26 ] Appinfo C:\Windows\System32\appinfo.dll
20:24:08.0141 5076 Appinfo - ok
20:24:08.0156 5076 [ A45D184DF6A8803DA13A0B329517A64A ] AppMgmt C:\Windows\System32\appmgmts.dll
20:24:08.0172 5076 AppMgmt - ok
20:24:08.0188 5076 [ 2932004F49677BD84DBC72EDB754FFB3 ] arc C:\Windows\system32\drivers\arc.sys
20:24:08.0188 5076 arc - ok
20:24:08.0203 5076 [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7 ] arcsas C:\Windows\system32\drivers\arcsas.sys
20:24:08.0203 5076 arcsas - ok
20:24:08.0219 5076 [ 2B4E66FAC6503494A2C6F32BB6AB3826 ] AsIO C:\Windows\system32\drivers\AsIO.sys
20:24:08.0219 5076 AsIO - ok
20:24:08.0250 5076 [ 054DF24C92B55427E0757CFFF160E4F2 ] aswFsBlk C:\Windows\system32\drivers\aswFsBlk.sys
20:24:08.0250 5076 aswFsBlk - ok
20:24:08.0266 5076 [ 9B88D53227E0BC1CE62A981B2FCD67C8 ] aswFW C:\Windows\system32\drivers\aswFW.sys
20:24:08.0281 5076 aswFW - ok
20:24:08.0328 5076 [ 258143605E77E4008F1758481D6A977D ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
20:24:08.0328 5076 aswMonFlt - ok
20:24:08.0344 5076 [ 7B948E3657BEA62E437BC46CA6EF6012 ] aswNdis C:\Windows\system32\DRIVERS\aswNdis.sys
20:24:08.0344 5076 aswNdis - ok
20:24:08.0359 5076 [ 2D26AAEE48A48E64129B4AE1D0AB3A3B ] aswNdis2 C:\Windows\system32\drivers\aswNdis2.sys
20:24:08.0359 5076 aswNdis2 - ok
20:24:08.0375 5076 [ 352D5A48EBAB35A7693B048679304831 ] aswRdr C:\Windows\system32\drivers\aswRdr.sys
20:24:08.0375 5076 aswRdr - ok
20:24:08.0406 5076 [ 8D34D2B24297E27D93E847319ABFDEC4 ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
20:24:08.0406 5076 aswSnx - ok
20:24:08.0453 5076 [ 010012597333DA1F46C3243F33F8409E ] aswSP C:\Windows\system32\drivers\aswSP.sys
20:24:08.0453 5076 aswSP - ok
20:24:08.0484 5076 [ F9F84364416658E9786235904D448D37 ] aswTdi C:\Windows\system32\drivers\aswTdi.sys
20:24:08.0484 5076 aswTdi - ok
20:24:08.0500 5076 [ ADD2ADE1C2B285AB8378D2DAAF991481 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
20:24:08.0500 5076 AsyncMac - ok
20:24:08.0578 5076 [ 338C86357871C167A96AB976519BF59E ] atapi C:\Windows\system32\drivers\atapi.sys
20:24:08.0578 5076 atapi - ok
20:24:08.0593 5076 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
20:24:08.0609 5076 AudioEndpointBuilder - ok
20:24:08.0624 5076 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] Audiosrv C:\Windows\System32\Audiosrv.dll
20:24:08.0640 5076 Audiosrv - ok
20:24:08.0718 5076 [ 996E6D052438E8D8DFD501F31560B2E0 ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
20:24:08.0734 5076 avast! Antivirus - ok
20:24:08.0749 5076 [ 63D43BA2EA495A9F1C1740A513C7E00B ] avast! Firewall C:\Program Files\AVAST Software\Avast\afwServ.exe
20:24:08.0765 5076 avast! Firewall - ok
20:24:08.0780 5076 [ 6E30D02AAC9CAC84F421622E3A2F6178 ] AxInstSV C:\Windows\System32\AxInstSV.dll
20:24:08.0780 5076 AxInstSV - ok
20:24:08.0843 5076 [ 1A231ABEC60FD316EC54C66715543CEC ] b06bdrv C:\Windows\system32\drivers\bxvbdx.sys
20:24:08.0843 5076 b06bdrv - ok
20:24:08.0874 5076 [ BD8869EB9CDE6BBE4508D869929869EE ] b57nd60x C:\Windows\system32\DRIVERS\b57nd60x.sys
20:24:08.0874 5076 b57nd60x - ok
20:24:08.0890 5076 [ EE1E9C3BB8228AE423DD38DB69128E71 ] BDESVC C:\Windows\System32\bdesvc.dll
20:24:08.0890 5076 BDESVC - ok
20:24:08.0905 5076 [ 505506526A9D467307B3C393DEDAF858 ] Beep C:\Windows\system32\drivers\Beep.sys
20:24:08.0905 5076 Beep - ok
20:24:08.0921 5076 [ 1E2BAC209D184BB851E1A187D8A29136 ] BFE C:\Windows\System32\bfe.dll
20:24:08.0936 5076 BFE - ok
20:24:08.0983 5076 [ E585445D5021971FAE10393F0F1C3961 ] BITS C:\Windows\system32\qmgr.dll
20:24:09.0014 5076 BITS - ok
20:24:09.0014 5076 [ 2287078ED48FCFC477B05B20CF38F36F ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
20:24:09.0014 5076 blbdrive - ok
20:24:09.0046 5076 [ 8F2DA3028D5FCBD1A060A3DE64CD6506 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
20:24:09.0046 5076 bowser - ok
20:24:09.0046 5076 [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo C:\Windows\system32\drivers\BrFiltLo.sys
20:24:09.0061 5076 BrFiltLo - ok
20:24:09.0061 5076 [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp C:\Windows\system32\drivers\BrFiltUp.sys
20:24:09.0061 5076 BrFiltUp - ok
20:24:09.0077 5076 [ 77361D72A04F18809D0EFB6CCEB74D4B ] BridgeMP C:\Windows\system32\DRIVERS\bridge.sys
20:24:09.0077 5076 BridgeMP - ok
20:24:09.0108 5076 [ 3DAA727B5B0A45039B0E1C9A211B8400 ] Browser C:\Windows\System32\browser.dll
20:24:09.0124 5076 Browser - ok
20:24:09.0139 5076 [ 845B8CE732E67F3B4133164868C666EA ] Brserid C:\Windows\System32\Drivers\Brserid.sys
20:24:09.0139 5076 Brserid - ok
20:24:09.0155 5076 [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
20:24:09.0155 5076 BrSerWdm - ok
20:24:09.0170 5076 [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
20:24:09.0170 5076 BrUsbMdm - ok
20:24:09.0186 5076 [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
20:24:09.0186 5076 BrUsbSer - ok
20:24:09.0202 5076 [ ED3DF7C56CE0084EB2034432FC56565A ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
20:24:09.0202 5076 BTHMODEM - ok
20:24:09.0217 5076 [ 1DF19C96EEF6C29D1C3E1A8678E07190 ] bthserv C:\Windows\system32\bthserv.dll
20:24:09.0233 5076 bthserv - ok
20:24:09.0233 5076 [ 77EA11B065E0A8AB902D78145CA51E10 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
20:24:09.0248 5076 cdfs - ok
20:24:09.0248 5076 [ BE167ED0FDB9C1FA1133953C18D5A6C9 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
20:24:09.0248 5076 cdrom - ok
20:24:09.0264 5076 [ 319C6B309773D063541D01DF8AC6F55F ] CertPropSvc C:\Windows\System32\certprop.dll
20:24:09.0264 5076 CertPropSvc - ok
20:24:09.0280 5076 [ 3FE3FE94A34DF6FB06E6418D0F6A0060 ] circlass C:\Windows\system32\drivers\circlass.sys
20:24:09.0280 5076 circlass - ok
20:24:09.0295 5076 [ 635181E0E9BBF16871BF5380D71DB02D ] CLFS C:\Windows\system32\CLFS.sys
20:24:09.0295 5076 CLFS - ok
20:24:09.0373 5076 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
20:24:09.0373 5076 clr_optimization_v2.0.50727_32 - ok
20:24:09.0436 5076 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
20:24:09.0451 5076 clr_optimization_v4.0.30319_32 - ok
20:24:09.0467 5076 [ DEA805815E587DAD1DD2C502220B5616 ] CmBatt C:\Windows\system32\drivers\CmBatt.sys
20:24:09.0467 5076 CmBatt - ok
20:24:09.0482 5076 [ C537B1DB64D495B9B4717B4D6D9EDBF2 ] cmdide C:\Windows\system32\drivers\cmdide.sys
20:24:09.0482 5076 cmdide - ok
20:24:09.0498 5076 [ 247B4CE2DAB1160CD422D532D5241E1F ] CNG C:\Windows\system32\Drivers\cng.sys
20:24:09.0514 5076 CNG - ok
20:24:09.0529 5076 [ A6023D3823C37043986713F118A89BEE ] Compbatt C:\Windows\system32\drivers\compbatt.sys
20:24:09.0529 5076 Compbatt - ok
20:24:09.0545 5076 [ CBE8C58A8579CFE5FCCF809E6F114E89 ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys
20:24:09.0545 5076 CompositeBus - ok
20:24:09.0560 5076 COMSysApp - ok
20:24:09.0576 5076 [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
20:24:09.0576 5076 crcdisk - ok
20:24:09.0607 5076 [ 96C0E38905CFD788313BE8E11DAE3F2F ] CryptSvc C:\Windows\system32\cryptsvc.dll
20:24:09.0623 5076 CryptSvc - ok
20:24:09.0670 5076 [ 3C2177A897B4CA2788C6FB0C3FD81D4B ] CSC C:\Windows\system32\drivers\csc.sys
20:24:09.0685 5076 CSC - ok
20:24:09.0701 5076 [ 15F93B37F6801943360D9EB42485D5D3 ] CscService C:\Windows\System32\cscsvc.dll
20:24:09.0748 5076 CscService - ok
20:24:09.0779 5076 [ 8DB84DE3AAB34A8B4C2F644EFF41CD76 ] ctsfm2k C:\Windows\system32\DRIVERS\ctsfm2k.sys
20:24:09.0779 5076 ctsfm2k - ok
20:24:09.0872 5076 [ 7660F01D3B38ACA1747E397D21D790AF ] DcomLaunch C:\Windows\system32\rpcss.dll
20:24:09.0872 5076 DcomLaunch - ok
20:24:09.0950 5076 [ 8D6E10A2D9A5EED59562D9B82CF804E1 ] defragsvc C:\Windows\System32\defragsvc.dll
20:24:09.0966 5076 defragsvc - ok
20:24:09.0982 5076 [ F024449C97EC1E464AAFFDA18593DB88 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
20:24:09.0997 5076 DfsC - ok
20:24:10.0028 5076 [ E9E01EB683C132F7FA27CD607B8A2B63 ] Dhcp C:\Windows\system32\dhcpcore.dll
20:24:10.0028 5076 Dhcp - ok
20:24:10.0060 5076 [ 1A050B0274BFB3890703D490F330C0DA ] discache C:\Windows\system32\drivers\discache.sys
20:24:10.0060 5076 discache - ok
20:24:10.0091 5076 [ 565003F326F99802E68CA78F2A68E9FF ] Disk C:\Windows\system32\drivers\disk.sys
20:24:10.0091 5076 Disk - ok
20:24:10.0106 5076 [ 2A958EF85DB1B61FFCA65044FA4BCE9E ] dmvsc C:\Windows\system32\drivers\dmvsc.sys
20:24:10.0122 5076 dmvsc - ok
20:24:10.0138 5076 [ 33EF4861F19A0736B11314AAD9AE28D0 ] Dnscache C:\Windows\System32\dnsrslvr.dll
20:24:10.0138 5076 Dnscache - ok
20:24:10.0184 5076 [ 366BA8FB4B7BB7435E3B9EACB3843F67 ] dot3svc C:\Windows\System32\dot3svc.dll
20:24:10.0184 5076 dot3svc - ok
20:24:10.0200 5076 [ 8EC04CA86F1D68DA9E11952EB85973D6 ] DPS C:\Windows\system32\dps.dll
20:24:10.0200 5076 DPS - ok
20:24:10.0231 5076 [ B918E7C5F9BF77202F89E1A9539F2EB4 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
20:24:10.0247 5076 drmkaud - ok
20:24:10.0278 5076 [ 687AF6BB383885FF6A64071B189A7F3E ] dtsoftbus01 C:\Windows\system32\DRIVERS\dtsoftbus01.sys
20:24:10.0278 5076 dtsoftbus01 - ok
20:24:10.0309 5076 [ 23F5D28378A160352BA8F817BD8C71CB ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
20:24:10.0325 5076 DXGKrnl - ok
20:24:10.0387 5076 [ 8600142FA91C1B96367D3300AD0F3F3A ] EapHost C:\Windows\System32\eapsvc.dll
20:24:10.0403 5076 EapHost - ok
20:24:10.0528 5076 [ 024E1B5CAC09731E4D868E64DBFB4AB0 ] ebdrv C:\Windows\system32\drivers\evbdx.sys
20:24:10.0606 5076 ebdrv - ok
20:24:10.0621 5076 [ 81951F51E318AECC2D68559E47485CC4 ] EFS C:\Windows\System32\lsass.exe
20:24:10.0637 5076 EFS - ok
20:24:10.0730 5076 [ A8C362018EFC87BEB013EE28F29C0863 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
20:24:10.0746 5076 ehRecvr - ok
20:24:10.0746 5076 [ D389BFF34F80CAEDE417BF9D1507996A ] ehSched C:\Windows\ehome\ehsched.exe
20:24:10.0746 5076 ehSched - ok
20:24:10.0793 5076 [ 0ED67910C8C326796FAA00B2BF6D9D3C ] elxstor C:\Windows\system32\drivers\elxstor.sys
20:24:10.0808 5076 elxstor - ok
20:24:10.0824 5076 [ 8FC3208352DD3912C94367A206AB3F11 ] ErrDev C:\Windows\system32\drivers\errdev.sys
20:24:10.0824 5076 ErrDev - ok
20:24:10.0855 5076 [ F6916EFC29D9953D5D0DF06882AE8E16 ] EventSystem C:\Windows\system32\es.dll
20:24:10.0871 5076 EventSystem - ok
20:24:10.0886 5076 [ 2DC9108D74081149CC8B651D3A26207F ] exfat C:\Windows\system32\drivers\exfat.sys
20:24:10.0886 5076 exfat - ok
20:24:10.0933 5076 [ 59B20FE9C71C256F46AE9B5A51393EE3 ] Expresso Updater C:\Program Files\Expresso\ExtensionUpdaterService.exe
20:24:10.0933 5076 Expresso Updater - ok
20:24:10.0949 5076 [ 7E0AB74553476622FB6AE36F73D97D35 ] fastfat C:\Windows\system32\drivers\fastfat.sys
20:24:10.0949 5076 fastfat - ok
20:24:10.0980 5076 [ 967EA5B213E9984CBE270205DF37755B ] Fax C:\Windows\system32\fxssvc.exe
20:24:10.0996 5076 Fax - ok
20:24:11.0011 5076 [ E817A017F82DF2A1F8CFDBDA29388B29 ] fdc C:\Windows\system32\DRIVERS\fdc.sys
20:24:11.0011 5076 fdc - ok
20:24:11.0027 5076 [ F3222C893BD2F5821A0179E5C71E88FB ] fdPHost C:\Windows\system32\fdPHost.dll
20:24:11.0027 5076 fdPHost - ok
20:24:11.0042 5076 [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B ] FDResPub C:\Windows\system32\fdrespub.dll
20:24:11.0042 5076 FDResPub - ok
20:24:11.0058 5076 [ 6CF00369C97F3CF563BE99BE983D13D8 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
20:24:11.0058 5076 FileInfo - ok
20:24:11.0058 5076 [ 42C51DC94C91DA21CB9196EB64C45DB9 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
20:24:11.0058 5076 Filetrace - ok
20:24:11.0074 5076 [ 87907AA70CB3C56600F1C2FB8841579B ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
20:24:11.0074 5076 flpydisk - ok
20:24:11.0089 5076 [ 7520EC808E0C35E0EE6F841294316653 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
20:24:11.0089 5076 FltMgr - ok
20:24:11.0136 5076 [ B3A5EC6B6B6673DB7E87C2BCDBDDC074 ] FontCache C:\Windows\system32\FntCache.dll
20:24:11.0167 5076 FontCache - ok
20:24:11.0230 5076 [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
20:24:11.0230 5076 FontCache3.0.0.0 - ok
20:24:11.0323 5076 [ F33425DBD8CDF00C1F318BA0EDC8D048 ] ForceWare Intelligent Application Manager (IAM) C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
20:24:11.0339 5076 ForceWare Intelligent Application Manager (IAM) - ok
20:24:11.0339 5076 [ 1A16B57943853E598CFF37FE2B8CBF1D ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
20:24:11.0339 5076 FsDepends - ok
20:24:11.0370 5076 [ 7DAE5EBCC80E45D3253F4923DC424D05 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
20:24:11.0370 5076 Fs_Rec - ok
20:24:11.0386 5076 [ 8A73E79089B282100B9393B644CB853B ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
20:24:11.0386 5076 fvevol - ok
20:24:11.0401 5076 [ 65EE0C7A58B65E74AE05637418153938 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
20:24:11.0401 5076 gagp30kx - ok
20:24:11.0432 5076 [ E897EAF5ED6BA41E081060C9B447A673 ] gpsvc C:\Windows\System32\gpsvc.dll
20:24:11.0464 5076 gpsvc - ok
20:24:11.0573 5076 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
20:24:11.0573 5076 gupdate - ok
20:24:11.0588 5076 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
20:24:11.0588 5076 gupdatem - ok
20:24:11.0604 5076 [ C44E3C2BAB6837DB337DDEE7544736DB ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
20:24:11.0604 5076 hcw85cir - ok
20:24:11.0651 5076 [ A5EF29D5315111C80A5C1ABAD14C8972 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
20:24:11.0651 5076 HdAudAddService - ok
20:24:11.0666 5076 [ 9036377B8A6C15DC2EEC53E489D159B5 ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
20:24:11.0666 5076 HDAudBus - ok
20:24:11.0682 5076 [ 1D58A7F3E11A9731D0EAAAA8405ACC36 ] HidBatt C:\Windows\system32\drivers\HidBatt.sys
20:24:11.0682 5076 HidBatt - ok
20:24:11.0698 5076 [ 89448F40E6DF260C206A193A4683BA78 ] HidBth C:\Windows\system32\drivers\hidbth.sys
20:24:11.0698 5076 HidBth - ok
20:24:11.0729 5076 [ CF50B4CF4A4F229B9F3C08351F99CA5E ] HidIr C:\Windows\system32\drivers\hidir.sys
20:24:11.0729 5076 HidIr - ok
20:24:11.0760 5076 [ 2BC6F6A1992B3A77F5F41432CA6B3B6B ] hidserv C:\Windows\System32\hidserv.dll
20:24:11.0760 5076 hidserv - ok
20:24:11.0791 5076 [ 10C19F8290891AF023EAEC0832E1EB4D ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
20:24:11.0791 5076 HidUsb - ok
20:24:11.0822 5076 [ 196B4E3F4CCCC24AF836CE58FACBB699 ] hkmsvc C:\Windows\system32\kmsvc.dll
20:24:11.0838 5076 hkmsvc - ok
20:24:11.0854 5076 [ 6658F4404DE03D75FE3BA09F7ABA6A30 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
20:24:11.0854 5076 HomeGroupListener - ok
20:24:11.0900 5076 [ DBC02D918FFF1CAD628ACBE0C0EAA8E8 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
20:24:11.0900 5076 HomeGroupProvider - ok
20:24:11.0916 5076 [ 295FDC419039090EB8B49FFDBB374549 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
20:24:11.0916 5076 HpSAMD - ok
20:24:11.0947 5076 [ 871917B07A141BFF43D76D8844D48106 ] HTTP C:\Windows\system32\drivers\HTTP.sys
20:24:11.0963 5076 HTTP - ok
20:24:11.0978 5076 [ 0C4E035C7F105F1299258C90886C64C5 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
20:24:11.0978 5076 hwpolicy - ok
20:24:11.0994 5076 [ F151F0BDC47F4A28B1B20A0818EA36D6 ] i8042prt C:\Windows\system32\drivers\i8042prt.sys
20:24:11.0994 5076 i8042prt - ok
20:24:12.0010 5076 [ 5CD5F9A5444E6CDCB0AC89BD62D8B76E ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
20:24:12.0010 5076 iaStorV - ok
20:24:12.0072 5076 [ C521D7EB6497BB1AF6AFA89E322FB43C ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
20:24:12.0103 5076 idsvc - ok
20:24:12.0134 5076 [ 4173FF5708F3236CF25195FECD742915 ] iirsp C:\Windows\system32\drivers\iirsp.sys
20:24:12.0134 5076 iirsp - ok
20:24:12.0181 5076 [ F95622F161474511B8D80D6B093AA610 ] IKEEXT C:\Windows\System32\ikeext.dll
20:24:12.0212 5076 IKEEXT - ok
20:24:12.0228 5076 [ A0F12F2C9BA6C72F3987CE780E77C130 ] intelide C:\Windows\system32\drivers\intelide.sys
20:24:12.0228 5076 intelide - ok
20:24:12.0244 5076 [ 3B514D27BFC4ACCB4037BC6685F766E0 ] intelppm C:\Windows\system32\drivers\intelppm.sys
20:24:12.0244 5076 intelppm - ok
20:24:12.0259 5076 [ ACB364B9075A45C0736E5C47BE5CAE19 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
20:24:12.0259 5076 IPBusEnum - ok
20:24:12.0275 5076 [ 709D1761D3B19A932FF0238EA6D50200 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
20:24:12.0275 5076 IpFilterDriver - ok
20:24:12.0322 5076 [ 4D65A07B795D6674312F879D09AA7663 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
20:24:12.0337 5076 iphlpsvc - ok
20:24:12.0368 5076 [ 4BD7134618C1D2A27466A099062547BF ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
20:24:12.0368 5076 IPMIDRV - ok
20:24:12.0384 5076 [ A5FA468D67ABCDAA36264E463A7BB0CD ] IPNAT C:\Windows\system32\drivers\ipnat.sys
20:24:12.0384 5076 IPNAT - ok
20:24:12.0400 5076 [ 42996CFF20A3084A56017B7902307E9F ] IRENUM C:\Windows\system32\drivers\irenum.sys
20:24:12.0400 5076 IRENUM - ok
20:24:12.0415 5076 [ 1F32BB6B38F62F7DF1A7AB7292638A35 ] isapnp C:\Windows\system32\drivers\isapnp.sys
20:24:12.0415 5076 isapnp - ok
20:24:12.0431 5076 [ CB7A9ABB12B8415BCE5D74994C7BA3AE ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
20:24:12.0431 5076 iScsiPrt - ok
20:24:12.0462 5076 [ ADEF52CA1AEAE82B50DF86B56413107E ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
20:24:12.0462 5076 kbdclass - ok
20:24:12.0478 5076 [ 9E3CED91863E6EE98C24794D05E27A71 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
20:24:12.0478 5076 kbdhid - ok
20:24:12.0493 5076 [ 81951F51E318AECC2D68559E47485CC4 ] KeyIso C:\Windows\system32\lsass.exe
20:24:12.0493 5076 KeyIso - ok
20:24:12.0509 5076 [ B7895B4182C0D16F6EFADEB8081E8D36 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
20:24:12.0509 5076 KSecDD - ok
20:24:12.0524 5076 [ D30159AC9237519FBC62C6EC247D2D46 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
20:24:12.0524 5076 KSecPkg - ok
20:24:12.0602 5076 [ 89A7B9CC98D0D80C6F31B91C0A310FCD ] KtmRm C:\Windows\system32\msdtckrm.dll
20:24:12.0618 5076 KtmRm - ok
20:24:12.0649 5076 [ D64AF876D53ECA3668BB97B51B4E70AB ] LanmanServer C:\Windows\System32\srvsvc.dll
20:24:12.0665 5076 LanmanServer - ok
20:24:12.0680 5076 [ 58405E4F68BA8E4057C6E914F326ABA2 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
20:24:12.0680 5076 LanmanWorkstation - ok
20:24:12.0712 5076 [ F7611EC07349979DA9B0AE1F18CCC7A6 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
20:24:12.0712 5076 lltdio - ok
20:24:12.0743 5076 [ 5700673E13A2117FA3B9020C852C01E2 ] lltdsvc C:\Windows\System32\lltdsvc.dll
20:24:12.0758 5076 lltdsvc - ok
20:24:12.0774 5076 [ 55CA01BA19D0006C8F2639B6C045E08B ] lmhosts C:\Windows\System32\lmhsvc.dll
20:24:12.0774 5076 lmhosts - ok
20:24:12.0790 5076 [ EB119A53CCF2ACC000AC71B065B78FEF ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
20:24:12.0790 5076 LSI_FC - ok
20:24:12.0805 5076 [ 8ADE1C877256A22E49B75D1CC9161F9C ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
20:24:12.0805 5076 LSI_SAS - ok
20:24:12.0821 5076 [ DC9DC3D3DAA0E276FD2EC262E38B11E9 ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys
20:24:12.0821 5076 LSI_SAS2 - ok
20:24:12.0836 5076 [ 0A036C7D7CAB643A7F07135AC47E0524 ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
20:24:12.0836 5076 LSI_SCSI - ok
20:24:12.0852 5076 [ 6703E366CC18D3B6E534F5CF7DF39CEE ] luafv C:\Windows\system32\drivers\luafv.sys
20:24:12.0852 5076 luafv - ok
20:24:12.0899 5076 [ A3E700D78EEC390F1208098CDCA5C6B6 ] MarvinBus C:\Windows\system32\DRIVERS\MarvinBus.sys
20:24:12.0899 5076 MarvinBus - ok
20:24:12.0961 5076 [ 500D089CE760D83DA2B6CBA681AA9949 ] MBAMProtector C:\Windows\system32\drivers\mbam.sys
20:24:12.0961 5076 MBAMProtector - ok
20:24:13.0055 5076 [ 85B16A92B117A5A800032ECD904B86DB ] MBAMScheduler C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
20:24:13.0070 5076 MBAMScheduler - ok
20:24:13.0086 5076 [ 20E2469DB709FC675E655CEAA11BE312 ] MBAMService C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
20:24:13.0102 5076 MBAMService - ok
20:24:13.0117 5076 [ BFB9EE8EE977EFE85D1A3105ABEF6DD1 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
20:24:13.0117 5076 Mcx2Svc - ok
20:24:13.0133 5076 [ 0FFF5B045293002AB38EB1FD1FC2FB74 ] megasas C:\Windows\system32\drivers\megasas.sys
20:24:13.0133 5076 megasas - ok
20:24:13.0164 5076 [ DCBAB2920C75F390CAF1D29F675D03D6 ] MegaSR C:\Windows\system32\drivers\MegaSR.sys
20:24:13.0164 5076 MegaSR - ok
20:24:13.0211 5076 Microsoft SharePoint Workspace Audit Service - ok
20:24:13.0226 5076 [ 146B6F43A673379A3C670E86D89BE5EA ] MMCSS C:\Windows\system32\mmcss.dll
20:24:13.0226 5076 MMCSS - ok
20:24:13.0242 5076 [ F001861E5700EE84E2D4E52C712F4964 ] Modem C:\Windows\system32\drivers\modem.sys
20:24:13.0242 5076 Modem - ok
20:24:13.0258 5076 [ 79D10964DE86B292320E9DFE02282A23 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
20:24:13.0258 5076 monitor - ok
20:24:13.0273 5076 [ FB18CC1D4C2E716B6B903B0AC0CC0609 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
20:24:13.0273 5076 mouclass - ok
20:24:13.0289 5076 [ 2C388D2CD01C9042596CF3C8F3C7B24D ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
20:24:13.0289 5076 mouhid - ok
20:24:13.0304 5076 [ FC8771F45ECCCFD89684E38842539B9B ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
20:24:13.0304 5076 mountmgr - ok
20:24:13.0336 5076 [ 46297FA8E30A6007F14118FC2B942FBC ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
20:24:13.0351 5076 MozillaMaintenance - ok
20:24:13.0382 5076 [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0 ] mpio C:\Windows\system32\drivers\mpio.sys
20:24:13.0382 5076 mpio - ok
20:24:13.0398 5076 [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
20:24:13.0398 5076 mpsdrv - ok
20:24:13.0429 5076 [ 9835584E999D25004E1EE8E5F3E3B881 ] MpsSvc C:\Windows\system32\mpssvc.dll
20:24:13.0460 5076 MpsSvc - ok
20:24:13.0460 5076 [ CEB46AB7C01C9F825F8CC6BABC18166A ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
20:24:13.0460 5076 MRxDAV - ok
20:24:13.0492 5076 [ 5D16C921E3671636C0EBA3BBAAC5FD25 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
20:24:13.0492 5076 mrxsmb - ok
20:24:13.0507 5076 [ 6D17A4791ACA19328C685D256349FEFC ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
20:24:13.0507 5076 mrxsmb10 - ok
20:24:13.0507 5076 [ B81F204D146000BE76651A50670A5E9E ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
20:24:13.0523 5076 mrxsmb20 - ok
20:24:13.0538 5076 [ 012C5F4E9349E711E11E0F19A8589F0A ] msahci C:\Windows\system32\drivers\msahci.sys
20:24:13.0538 5076 msahci - ok
20:24:13.0554 5076 [ 55055F8AD8BE27A64C831322A780A228 ] msdsm C:\Windows\system32\drivers\msdsm.sys
20:24:13.0554 5076 msdsm - ok
20:24:13.0570 5076 [ E1BCE74A3BD9902B72599C0192A07E27 ] MSDTC C:\Windows\System32\msdtc.exe
20:24:13.0570 5076 MSDTC - ok
20:24:13.0585 5076 [ DAEFB28E3AF5A76ABCC2C3078C07327F ] Msfs C:\Windows\system32\drivers\Msfs.sys
20:24:13.0585 5076 Msfs - ok
20:24:13.0601 5076 [ 3E1E5767043C5AF9367F0056295E9F84 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
20:24:13.0601 5076 mshidkmdf - ok
20:24:13.0601 5076 [ 0A4E5757AE09FA9622E3158CC1AEF114 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
20:24:13.0601 5076 msisadrv - ok
20:24:13.0632 5076 [ 90F7D9E6B6F27E1A707D4A297F077828 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
20:24:13.0648 5076 MSiSCSI - ok
20:24:13.0648 5076 msiserver - ok
20:24:13.0663 5076 [ 8C0860D6366AAFFB6C5BB9DF9448E631 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
20:24:13.0663 5076 MSKSSRV - ok
20:24:13.0679 5076 [ 3EA8B949F963562CEDBB549EAC0C11CE ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
20:24:13.0679 5076 MSPCLOCK - ok
20:24:13.0710 5076 [ F456E973590D663B1073E9C463B40932 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
20:24:13.0726 5076 MSPQM - ok
20:24:13.0741 5076 [ 0E008FC4819D238C51D7C93E7B41E560 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
20:24:13.0741 5076 MsRPC - ok
20:24:13.0757 5076 [ FC6B9FF600CC585EA38B12589BD4E246 ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
20:24:13.0757 5076 mssmbios - ok
20:24:13.0772 5076 [ B42C6B921F61A6E55159B8BE6CD54A36 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
20:24:13.0772 5076 MSTEE - ok
20:24:13.0788 5076 [ 33599130F44E1F34631CEA241DE8AC84 ] MTConfig C:\Windows\system32\drivers\MTConfig.sys
20:24:13.0788 5076 MTConfig - ok
20:24:13.0819 5076 [ CBE71C122434805CB73FFB6619F60598 ] MTsensor C:\Windows\system32\DRIVERS\ASACPI.sys
20:24:13.0819 5076 MTsensor - ok
20:24:13.0835 5076 [ 159FAD02F64E6381758C990F753BCC80 ] Mup C:\Windows\system32\Drivers\mup.sys
20:24:13.0835 5076 Mup - ok
20:24:13.0866 5076 [ 61D57A5D7C6D9AFE10E77DAE6E1B445E ] napagent C:\Windows\system32\qagentRT.dll
20:24:13.0897 5076 napagent - ok
20:24:13.0928 5076 [ 26384429FCD85D83746F63E798AB1480 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
20:24:13.0928 5076 NativeWifiP - ok
OS Windows 11 Professional (x64) (24H2) / MB ASUS TUF GAMING B650M-PLUS / CPU AMD Ryzen 5 7600/ RAM G.SKILL 32GB KIT DDR5 6000MT/s CL36 AMD EXPO / GPU ASUS DUAL RTX 4060 GAMING OC /
SSD SSD WD Black SN770 NVMe 1TB / PSU Seasonic Core GX-650 ATX 3
SSD SSD WD Black SN770 NVMe 1TB / PSU Seasonic Core GX-650 ATX 3
-
- Level 3
- Příspěvky: 542
- Registrován: červenec 12
- Bydliště: Severní Morava
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu (generálka)
>>> POKRAČOVÁNÍ<<<
20:24:13.0991 5076 [ 8C9C922D71F1CD4DEF73F186416B7896 ] NDIS C:\Windows\system32\drivers\ndis.sys
20:24:13.0991 5076 NDIS - ok
20:24:14.0006 5076 [ 0E1787AA6C9191D3D319E8BAFE86F80C ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
20:24:14.0006 5076 NdisCap - ok
20:24:14.0022 5076 [ E4A8AEC125A2E43A9E32AFEEA7C9C888 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
20:24:14.0022 5076 NdisTapi - ok
20:24:14.0053 5076 [ D8A65DAFB3EB41CBB622745676FCD072 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
20:24:14.0053 5076 Ndisuio - ok
20:24:14.0069 5076 [ 38FBE267E7E6983311179230FACB1017 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
20:24:14.0084 5076 NdisWan - ok
20:24:14.0100 5076 [ A4BDC541E69674FBFF1A8FF00BE913F2 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
20:24:14.0100 5076 NDProxy - ok
20:24:14.0428 5076 [ C7F5C284B6F46FCAF6910EA4E644700B ] Nero BackItUp Scheduler 4.0 C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
20:24:14.0459 5076 Nero BackItUp Scheduler 4.0 - ok
20:24:14.0490 5076 [ 80B275B1CE3B0E79909DB7B39AF74D51 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
20:24:14.0490 5076 NetBIOS - ok
20:24:14.0521 5076 [ 280122DDCF04B378EDD1AD54D71C1E54 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
20:24:14.0537 5076 NetBT - ok
20:24:14.0537 5076 [ 81951F51E318AECC2D68559E47485CC4 ] Netlogon C:\Windows\system32\lsass.exe
20:24:14.0537 5076 Netlogon - ok
20:24:14.0615 5076 [ 7CCCFCA7510684768DA22092D1FA4DB2 ] Netman C:\Windows\System32\netman.dll
20:24:14.0630 5076 Netman - ok
20:24:14.0646 5076 [ 8C338238C16777A802D6A9211EB2BA50 ] netprofm C:\Windows\System32\netprofm.dll
20:24:14.0677 5076 netprofm - ok
20:24:14.0693 5076 [ F476EC40033CDB91EFBE73EB99B8362D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
20:24:14.0693 5076 NetTcpPortSharing - ok
20:24:14.0708 5076 [ 1D85C4B390B0EE09C7A46B91EFB2C097 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
20:24:14.0708 5076 nfrd960 - ok
20:24:14.0724 5076 [ 912084381D30D8B89EC4E293053F4710 ] NlaSvc C:\Windows\System32\nlasvc.dll
20:24:14.0740 5076 NlaSvc - ok
20:24:14.0755 5076 [ 1DB262A9F8C087E8153D89BEF3D2235F ] Npfs C:\Windows\system32\drivers\Npfs.sys
20:24:14.0755 5076 Npfs - ok
20:24:14.0786 5076 [ BA387E955E890C8A88306D9B8D06BF17 ] nsi C:\Windows\system32\nsisvc.dll
20:24:14.0786 5076 nsi - ok
20:24:14.0802 5076 [ E9A0A4D07E53D8FEA2BB8387A3293C58 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
20:24:14.0802 5076 nsiproxy - ok
20:24:14.0833 5076 [ 84A1A494791DA6AC7292D82F97E40BEC ] nSvcIp C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe
20:24:14.0833 5076 nSvcIp - ok
20:24:14.0896 5076 [ 0D87503986BB3DFED58E343FE39DDE13 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
20:24:14.0896 5076 Ntfs - ok
20:24:14.0911 5076 [ F9756A98D69098DCA8945D62858A812C ] Null C:\Windows\system32\drivers\Null.sys
20:24:14.0911 5076 Null - ok
20:24:14.0942 5076 [ B5E37E31C053BC9950455A257526514B ] NVENETFD C:\Windows\system32\DRIVERS\nvm62x32.sys
20:24:14.0942 5076 NVENETFD - ok
20:24:15.0192 5076 [ 0A1B502CBC8230DA74BEFBAADDB58916 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
20:24:15.0239 5076 nvlddmkm - ok
20:24:15.0270 5076 [ 1DE923088878B495CD4219E47BA34EB8 ] NVNET C:\Windows\system32\DRIVERS\nvmf6232.sys
20:24:15.0270 5076 NVNET - ok
20:24:15.0301 5076 [ B3E25EE28883877076E0E1FF877D02E0 ] nvraid C:\Windows\system32\drivers\nvraid.sys
20:24:15.0301 5076 nvraid - ok
20:24:15.0332 5076 [ BE9039422A5CE976C03C5E2CF20106BE ] nvsmu C:\Windows\system32\DRIVERS\nvsmu.sys
20:24:15.0332 5076 nvsmu - ok
20:24:15.0348 5076 [ 4380E59A170D88C4F1022EFF6719A8A4 ] nvstor C:\Windows\system32\drivers\nvstor.sys
20:24:15.0348 5076 nvstor - ok
20:24:15.0379 5076 [ EB5A13F9139F20AD71ADF4BF79C3AA29 ] nvsvc C:\Windows\system32\nvvsvc.exe
20:24:15.0410 5076 nvsvc - ok
20:24:15.0457 5076 [ 0629259E3AF6BB0534FCECA208973404 ] nvUpdatusService C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
20:24:15.0488 5076 nvUpdatusService - ok
20:24:15.0504 5076 [ 5A0983915F02BAE73267CC2A041F717D ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
20:24:15.0504 5076 nv_agp - ok
20:24:15.0520 5076 [ 08A70A1F2CDDE9BB49B885CB817A66EB ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
20:24:15.0520 5076 ohci1394 - ok
20:24:15.0582 5076 [ 9D10F99A6712E28F8ACD5641E3A7EA6B ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
20:24:15.0582 5076 ose - ok
20:24:15.0722 5076 [ 358A9CCA612C68EB2F07DDAD4CE1D8D7 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
20:24:15.0832 5076 osppsvc - ok
20:24:15.0847 5076 [ 103A9B117A7D9903111955CDAFE65AC6 ] ossrv C:\Windows\system32\DRIVERS\ctoss2k.sys
20:24:15.0847 5076 ossrv - ok
20:24:15.0910 5076 [ 2F09B7B4A9FB1F998BD9ECFC468A80A2 ] P17 C:\Windows\system32\drivers\P17.sys
20:24:15.0910 5076 P17 - ok
20:24:15.0941 5076 [ 82A8521DDC60710C3D3D3E7325209BEC ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
20:24:15.0956 5076 p2pimsvc - ok
20:24:15.0988 5076 [ 59C3DDD501E39E006DAC31BF55150D91 ] p2psvc C:\Windows\system32\p2psvc.dll
20:24:16.0003 5076 p2psvc - ok
20:24:16.0050 5076 [ AD66BC56DD6A030174C03395B3DC0720 ] PAC7302 C:\Windows\system32\DRIVERS\PAC7302.SYS
20:24:16.0050 5076 PAC7302 - ok
20:24:16.0050 5076 [ 2EA877ED5DD9713C5AC74E8EA7348D14 ] Parport C:\Windows\system32\drivers\parport.sys
20:24:16.0066 5076 Parport - ok
20:24:16.0097 5076 [ 3F34A1B4C5F6475F320C275E63AFCE9B ] partmgr C:\Windows\system32\drivers\partmgr.sys
20:24:16.0097 5076 partmgr - ok
20:24:16.0128 5076 [ EB0A59F29C19B86479D36B35983DAADC ] Parvdm C:\Windows\system32\drivers\parvdm.sys
20:24:16.0128 5076 Parvdm - ok
20:24:16.0159 5076 [ 358AB7956D3160000726574083DFC8A6 ] PcaSvc C:\Windows\System32\pcasvc.dll
20:24:16.0159 5076 PcaSvc - ok
20:24:16.0175 5076 [ 673E55C3498EB970088E812EA820AA8F ] pci C:\Windows\system32\drivers\pci.sys
20:24:16.0175 5076 pci - ok
20:24:16.0190 5076 [ AFE86F419014DB4E5593F69FFE26CE0A ] pciide C:\Windows\system32\drivers\pciide.sys
20:24:16.0190 5076 pciide - ok
20:24:16.0237 5076 [ F396431B31693E71E8A80687EF523506 ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
20:24:16.0237 5076 pcmcia - ok
20:24:16.0268 5076 [ 5B6C11DE7E839C05248CED8825470FEF ] pcouffin C:\Windows\system32\Drivers\pcouffin.sys
20:24:16.0268 5076 pcouffin - ok
20:24:16.0268 5076 [ 250F6B43D2B613172035C6747AEEB19F ] pcw C:\Windows\system32\drivers\pcw.sys
20:24:16.0268 5076 pcw - ok
20:24:16.0284 5076 [ 9E0104BA49F4E6973749A02BF41344ED ] PEAUTH C:\Windows\system32\drivers\peauth.sys
20:24:16.0300 5076 PEAUTH - ok
20:24:16.0331 5076 [ AF4D64D2A57B9772CF3801950B8058A6 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll
20:24:16.0362 5076 PeerDistSvc - ok
20:24:16.0409 5076 [ 414BBA67A3DED1D28437EB66AEB8A720 ] pla C:\Windows\system32\pla.dll
20:24:16.0440 5076 pla - ok
20:24:16.0471 5076 [ EC7BC28D207DA09E79B3E9FAF8B232CA ] PlugPlay C:\Windows\system32\umpnpmgr.dll
20:24:16.0487 5076 PlugPlay - ok
20:24:16.0518 5076 [ 205E1B699FD3F2F9B036EEA2EC30C620 ] PnkBstrA C:\Windows\system32\PnkBstrA.exe
20:24:16.0534 5076 PnkBstrA - ok
20:24:16.0549 5076 [ 63FF8572611249931EB16BB8EED6AFC8 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
20:24:16.0549 5076 PNRPAutoReg - ok
20:24:16.0565 5076 [ 82A8521DDC60710C3D3D3E7325209BEC ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
20:24:16.0565 5076 PNRPsvc - ok
20:24:16.0596 5076 [ 53946B69BA0836BD95B03759530C81EC ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
20:24:16.0612 5076 PolicyAgent - ok
20:24:16.0627 5076 [ F87D30E72E03D579A5199CCB3831D6EA ] Power C:\Windows\system32\umpo.dll
20:24:16.0643 5076 Power - ok
20:24:16.0658 5076 [ 631E3E205AD6D86F2AED6A4A8E69F2DB ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
20:24:16.0658 5076 PptpMiniport - ok
20:24:16.0674 5076 [ 85B1E3A0C7585BC4AAE6899EC6FCF011 ] Processor C:\Windows\system32\drivers\processr.sys
20:24:16.0674 5076 Processor - ok
20:24:16.0690 5076 [ CADEFAC453040E370A1BDFF3973BE00D ] ProfSvc C:\Windows\system32\profsvc.dll
20:24:16.0690 5076 ProfSvc - ok
20:24:16.0705 5076 [ 81951F51E318AECC2D68559E47485CC4 ] ProtectedStorage C:\Windows\system32\lsass.exe
20:24:16.0705 5076 ProtectedStorage - ok
20:24:16.0705 5076 [ 6270CCAE2A86DE6D146529FE55B3246A ] Psched C:\Windows\system32\DRIVERS\pacer.sys
20:24:16.0721 5076 Psched - ok
20:24:16.0752 5076 [ AB95ECF1F6659A60DDC166D8315B0751 ] ql2300 C:\Windows\system32\drivers\ql2300.sys
20:24:16.0768 5076 ql2300 - ok
20:24:16.0783 5076 [ B4DD51DD25182244B86737DC51AF2270 ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
20:24:16.0783 5076 ql40xx - ok
20:24:16.0799 5076 [ 31AC809E7707EB580B2BDB760390765A ] QWAVE C:\Windows\system32\qwave.dll
20:24:16.0814 5076 QWAVE - ok
20:24:16.0814 5076 [ 584078CA1B95CA72DF2A27C336F9719D ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
20:24:16.0814 5076 QWAVEdrv - ok
20:24:16.0830 5076 [ 30A81B53C766D0133BB86D234E5556AB ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
20:24:16.0830 5076 RasAcd - ok
20:24:16.0861 5076 [ 57EC4AEF73660166074D8F7F31C0D4FD ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
20:24:16.0861 5076 RasAgileVpn - ok
20:24:16.0877 5076 [ A60F1839849C0C00739787FD5EC03F13 ] RasAuto C:\Windows\System32\rasauto.dll
20:24:16.0877 5076 RasAuto - ok
20:24:16.0892 5076 [ D9F91EAFEC2815365CBE6D167E4E332A ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
20:24:16.0892 5076 Rasl2tp - ok
20:24:16.0908 5076 [ CB9E04DC05EACF5B9A36CA276D475006 ] RasMan C:\Windows\System32\rasmans.dll
20:24:16.0924 5076 RasMan - ok
20:24:16.0939 5076 [ 0FE8B15916307A6AC12BFB6A63E45507 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
20:24:16.0939 5076 RasPppoe - ok
20:24:16.0939 5076 [ 44101F495A83EA6401D886E7FD70096B ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
20:24:16.0939 5076 RasSstp - ok
20:24:16.0955 5076 [ D528BC58A489409BA40334EBF96A311B ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
20:24:16.0955 5076 rdbss - ok
20:24:16.0970 5076 [ 0D8F05481CB76E70E1DA06EE9F0DA9DF ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
20:24:16.0970 5076 rdpbus - ok
20:24:16.0986 5076 [ 23DAE03F29D253AE74C44F99E515F9A1 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
20:24:16.0986 5076 RDPCDD - ok
20:24:17.0002 5076 [ B973FCFC50DC1434E1970A146F7E3885 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys
20:24:17.0002 5076 RDPDR - ok
20:24:17.0017 5076 [ 5A53CA1598DD4156D44196D200C94B8A ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
20:24:17.0017 5076 RDPENCDD - ok
20:24:17.0017 5076 [ 44B0A53CD4F27D50ED461DAE0C0B4E1F ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
20:24:17.0033 5076 RDPREFMP - ok
20:24:17.0080 5076 [ 68A0387F58E226DEEE23D9715955572A ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
20:24:17.0080 5076 RdpVideoMiniport - ok
20:24:17.0095 5076 [ F031683E6D1FEA157ABB2FF260B51E61 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
20:24:17.0111 5076 RDPWD - ok
20:24:17.0126 5076 [ 518395321DC96FE2C9F0E96AC743B656 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
20:24:17.0142 5076 rdyboost - ok
20:24:17.0158 5076 [ 7B5E1419717FAC363A31CC302895217A ] RemoteAccess C:\Windows\System32\mprdim.dll
20:24:17.0173 5076 RemoteAccess - ok
20:24:17.0204 5076 [ CB9A8683F4EF2BF99E123D79950D7935 ] RemoteRegistry C:\Windows\system32\regsvc.dll
20:24:17.0220 5076 RemoteRegistry - ok
20:24:17.0220 5076 [ 78D072F35BC45D9E4E1B61895C152234 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
20:24:17.0236 5076 RpcEptMapper - ok
20:24:17.0267 5076 [ 94D36C0E44677DD26981D2BFEEF2A29D ] RpcLocator C:\Windows\system32\locator.exe
20:24:17.0267 5076 RpcLocator - ok
20:24:17.0282 5076 [ 7660F01D3B38ACA1747E397D21D790AF ] RpcSs C:\Windows\system32\rpcss.dll
20:24:17.0282 5076 RpcSs - ok
20:24:17.0298 5076 [ 032B0D36AD92B582D869879F5AF5B928 ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
20:24:17.0298 5076 rspndr - ok
20:24:17.0314 5076 [ 7FA7F2E249A5DCBB7970630E15E1F482 ] s3cap C:\Windows\system32\drivers\vms3cap.sys
20:24:17.0314 5076 s3cap - ok
20:24:17.0329 5076 [ 81951F51E318AECC2D68559E47485CC4 ] SamSs C:\Windows\system32\lsass.exe
20:24:17.0329 5076 SamSs - ok
20:24:17.0345 5076 [ 05D860DA1040F111503AC416CCEF2BCA ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
20:24:17.0345 5076 sbp2port - ok
20:24:17.0360 5076 [ 8FC518FFE9519C2631D37515A68009C4 ] SCardSvr C:\Windows\System32\SCardSvr.dll
20:24:17.0376 5076 SCardSvr - ok
20:24:17.0376 5076 [ 0693B5EC673E34DC147E195779A4DCF6 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
20:24:17.0376 5076 scfilter - ok
20:24:17.0407 5076 [ A04BB13F8A72F8B6E8B4071723E4E336 ] Schedule C:\Windows\system32\schedsvc.dll
20:24:17.0438 5076 Schedule - ok
20:24:17.0454 5076 [ 319C6B309773D063541D01DF8AC6F55F ] SCPolicySvc C:\Windows\System32\certprop.dll
20:24:17.0454 5076 SCPolicySvc - ok
20:24:17.0454 5076 [ 08236C4BCE5EDD0A0318A438AF28E0F7 ] SDRSVC C:\Windows\System32\SDRSVC.dll
20:24:17.0470 5076 SDRSVC - ok
20:24:17.0470 5076 [ 90A3935D05B494A5A39D37E71F09A677 ] secdrv C:\Windows\system32\drivers\secdrv.sys
20:24:17.0470 5076 secdrv - ok
20:24:17.0485 5076 [ A59B3A4442C52060CC7A85293AA3546F ] seclogon C:\Windows\system32\seclogon.dll
20:24:17.0485 5076 seclogon - ok
20:24:17.0501 5076 [ DCB7FCDCC97F87360F75D77425B81737 ] SENS C:\Windows\system32\sens.dll
20:24:17.0501 5076 SENS - ok
20:24:17.0516 5076 [ 50087FE1EE447009C9CC2997B90DE53F ] SensrSvc C:\Windows\system32\sensrsvc.dll
20:24:17.0532 5076 SensrSvc - ok
20:24:17.0548 5076 [ 9AD8B8B515E3DF6ACD4212EF465DE2D1 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
20:24:17.0548 5076 Serenum - ok
20:24:17.0563 5076 [ 5FB7FCEA0490D821F26F39CC5EA3D1E2 ] Serial C:\Windows\system32\DRIVERS\serial.sys
20:24:17.0563 5076 Serial - ok
20:24:17.0579 5076 [ 79BFFB520327FF916A582DFEA17AA813 ] sermouse C:\Windows\system32\drivers\sermouse.sys
20:24:17.0579 5076 sermouse - ok
20:24:17.0594 5076 [ 4AE380F39A0032EAB7DD953030B26D28 ] SessionEnv C:\Windows\system32\sessenv.dll
20:24:17.0610 5076 SessionEnv - ok
20:24:17.0626 5076 [ 9F976E1EB233DF46FCE808D9DEA3EB9C ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
20:24:17.0626 5076 sffdisk - ok
20:24:17.0641 5076 [ 932A68EE27833CFD57C1639D375F2731 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
20:24:17.0641 5076 sffp_mmc - ok
20:24:17.0657 5076 [ 6D4CCAEDC018F1CF52866BBBAA235982 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
20:24:17.0657 5076 sffp_sd - ok
20:24:17.0657 5076 [ DB96666CC8312EBC45032F30B007A547 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
20:24:17.0657 5076 sfloppy - ok
20:24:17.0688 5076 [ D1A079A0DE2EA524513B6930C24527A2 ] SharedAccess C:\Windows\System32\ipnathlp.dll
20:24:17.0704 5076 SharedAccess - ok
20:24:17.0750 5076 [ 414DA952A35BF5D50192E28263B40577 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
20:24:17.0766 5076 ShellHWDetection - ok
20:24:17.0782 5076 [ 2565CAC0DC9FE0371BDCE60832582B2E ] sisagp C:\Windows\system32\drivers\sisagp.sys
20:24:17.0782 5076 sisagp - ok
20:24:17.0782 5076 [ A9F0486851BECB6DDA1D89D381E71055 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys
20:24:17.0782 5076 SiSRaid2 - ok
20:24:17.0797 5076 [ 3727097B55738E2F554972C3BE5BC1AA ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
20:24:17.0797 5076 SiSRaid4 - ok
20:24:17.0844 5076 [ F07AF60B152221472FBDB2FECEC4896D ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe
20:24:17.0844 5076 SkypeUpdate - ok
20:24:17.0860 5076 [ 3E21C083B8A01CB70BA1F09303010FCE ] Smb C:\Windows\system32\DRIVERS\smb.sys
20:24:17.0860 5076 Smb - ok
20:24:17.0875 5076 [ 6A984831644ECA1A33FFEAE4126F4F37 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
20:24:17.0875 5076 SNMPTRAP - ok
20:24:17.0875 5076 [ 95CF1AE7527FB70F7816563CBC09D942 ] spldr C:\Windows\system32\drivers\spldr.sys
20:24:17.0891 5076 spldr - ok
20:24:17.0906 5076 [ 9AEA093B8F9C37CF45538382CABA2475 ] Spooler C:\Windows\System32\spoolsv.exe
20:24:17.0922 5076 Spooler - ok
20:24:18.0016 5076 [ CF87A1DE791347E75B98885214CED2B8 ] sppsvc C:\Windows\system32\sppsvc.exe
20:24:18.0094 5076 sppsvc - ok
20:24:18.0109 5076 [ B0180B20B065D89232A78A40FE56EAA6 ] sppuinotify C:\Windows\system32\sppuinotify.dll
20:24:18.0109 5076 sppuinotify - ok
20:24:18.0156 5076 [ AB5C8F6E63674DBAD9C1E449E8FD77CE ] sptd C:\Windows\System32\Drivers\sptd.sys
20:24:18.0156 5076 sptd - ok
20:24:18.0172 5076 [ E4C2764065D66EA1D2D3EBC28FE99C46 ] srv C:\Windows\system32\DRIVERS\srv.sys
20:24:18.0172 5076 srv - ok
20:24:18.0203 5076 [ 03F0545BD8D4C77FA0AE1CEEDFCC71AB ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
20:24:18.0203 5076 srv2 - ok
20:24:18.0218 5076 [ BE6BD660CAA6F291AE06A718A4FA8ABC ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
20:24:18.0218 5076 srvnet - ok
20:24:18.0250 5076 [ D887C9FD02AC9FA880F6E5027A43E118 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
20:24:18.0250 5076 SSDPSRV - ok
20:24:18.0265 5076 [ D318F23BE45D5E3A107469EB64815B50 ] SstpSvc C:\Windows\system32\sstpsvc.dll
20:24:18.0265 5076 SstpSvc - ok
20:24:18.0296 5076 Steam Client Service - ok
20:24:18.0359 5076 [ F0359F7CE712D69ACEF0886BDB4792ED ] Stereo Service C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
20:24:18.0374 5076 Stereo Service - ok
20:24:18.0390 5076 [ DB32D325C192B801DF274BFD12A7E72B ] stexstor C:\Windows\system32\drivers\stexstor.sys
20:24:18.0390 5076 stexstor - ok
20:24:18.0421 5076 [ E1FB3706030FB4578A0D72C2FC3689E4 ] StiSvc C:\Windows\System32\wiaservc.dll
20:24:18.0437 5076 StiSvc - ok
20:24:18.0468 5076 [ 472AF0311073DCECEAA8FA18BA2BDF89 ] storflt C:\Windows\system32\drivers\vmstorfl.sys
20:24:18.0468 5076 storflt - ok
20:24:18.0484 5076 [ DCAFFD62259E0BDB433DD67B5BB37619 ] storvsc C:\Windows\system32\drivers\storvsc.sys
20:24:18.0484 5076 storvsc - ok
20:24:18.0484 5076 [ E58C78A848ADD9610A4DB6D214AF5224 ] swenum C:\Windows\system32\DRIVERS\swenum.sys
20:24:18.0484 5076 swenum - ok
20:24:18.0562 5076 [ F577910A133A592234EBAAD3F3AFA258 ] SwitchBoard C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
20:24:18.0562 5076 SwitchBoard - ok
20:24:18.0593 5076 [ A28BD92DF340E57B024BA433165D34D7 ] swprv C:\Windows\System32\swprv.dll
20:24:18.0608 5076 swprv - ok
20:24:18.0624 5076 [ F2AD8960812FD111E20E84659EF19D43 ] Synth3dVsc C:\Windows\system32\drivers\synth3dvsc.sys
20:24:18.0624 5076 Synth3dVsc - ok
20:24:18.0686 5076 [ 36650D618CA34C9D357DFD3D89B2C56F ] SysMain C:\Windows\system32\sysmain.dll
20:24:18.0718 5076 SysMain - ok
20:24:18.0733 5076 [ 763FECDC3D30C815FE72DD57936C6CD1 ] TabletInputService C:\Windows\System32\TabSvc.dll
20:24:18.0733 5076 TabletInputService - ok
20:24:18.0749 5076 [ 613BF4820361543956909043A265C6AC ] TapiSrv C:\Windows\System32\tapisrv.dll
20:24:18.0780 5076 TapiSrv - ok
20:24:18.0796 5076 [ B799D9FDB26111737F58288D8DC172D9 ] TBS C:\Windows\System32\tbssvc.dll
20:24:18.0796 5076 TBS - ok
20:24:18.0842 5076 [ A5EBB8F648000E88B7D9390B514976BF ] Tcpip C:\Windows\system32\drivers\tcpip.sys
20:24:18.0842 5076 Tcpip - ok
20:24:18.0889 5076 [ A5EBB8F648000E88B7D9390B514976BF ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
20:24:18.0889 5076 TCPIP6 - ok
20:24:18.0905 5076 [ CCA24162E055C3714CE5A88B100C64ED ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
20:24:18.0905 5076 tcpipreg - ok
20:24:18.0920 5076 [ 1CB91B2BD8F6DD367DFC2EF26FD751B2 ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
20:24:18.0920 5076 TDPIPE - ok
20:24:18.0936 5076 [ 2C2C5AFE7EE4F620D69C23C0617651A8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
20:24:18.0952 5076 TDTCP - ok
20:24:18.0952 5076 [ B459575348C20E8121D6039DA063C704 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
20:24:18.0967 5076 tdx - ok
20:24:19.0061 5076 [ 74FC70AE64A7B7DABEC9697CE0A1F4FA ] TeamViewer7 C:\Program Files\TeamViewer\Version7\TeamViewer_Service.exe
20:24:19.0108 5076 TeamViewer7 - ok
20:24:19.0123 5076 [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
20:24:19.0123 5076 TermDD - ok
20:24:19.0123 5076 [ 052306FD76793D5D5AB5D9891FD1ADBB ] terminpt C:\Windows\system32\drivers\terminpt.sys
20:24:19.0123 5076 terminpt - ok
20:24:19.0170 5076 [ 382C804C92811BE57829D8E550A900E2 ] TermService C:\Windows\System32\termsrv.dll
20:24:19.0186 5076 TermService - ok
20:24:19.0201 5076 [ 42FB6AFD6B79D9FE07381609172E7CA4 ] Themes C:\Windows\system32\themeservice.dll
20:24:19.0201 5076 Themes - ok
20:24:19.0217 5076 [ 146B6F43A673379A3C670E86D89BE5EA ] THREADORDER C:\Windows\system32\mmcss.dll
20:24:19.0217 5076 THREADORDER - ok
20:24:19.0232 5076 [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A ] TrkWks C:\Windows\System32\trkwks.dll
20:24:19.0232 5076 TrkWks - ok
20:24:19.0279 5076 [ 2C49B175AEE1D4364B91B531417FE583 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
20:24:19.0295 5076 TrustedInstaller - ok
20:24:19.0295 5076 [ 254BB140EEE3C59D6114C1A86B636877 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
20:24:19.0295 5076 tssecsrv - ok
20:24:19.0310 5076 [ FD1D6C73E6333BE727CBCC6054247654 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
20:24:19.0310 5076 TsUsbFlt - ok
20:24:19.0326 5076 [ 01246F0BAAD7B68EC0F472AA41E33282 ] TsUsbGD C:\Windows\system32\drivers\TsUsbGD.sys
20:24:19.0326 5076 TsUsbGD - ok
20:24:19.0342 5076 [ 045ACB987C650D8186C6B4A692223860 ] tsusbhub C:\Windows\system32\drivers\tsusbhub.sys
20:24:19.0342 5076 tsusbhub - ok
20:24:19.0435 5076 [ A3F474966E0F4CD4B560186896966984 ] TuneUp.UtilitiesSvc C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesService32.exe
20:24:19.0451 5076 TuneUp.UtilitiesSvc - ok
20:24:19.0466 5076 [ F2107C9D85EC0DF116939CCCE06AE697 ] TuneUpUtilitiesDrv C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesDriver32.sys
20:24:19.0466 5076 TuneUpUtilitiesDrv - ok
20:24:19.0482 5076 [ B2FA25D9B17A68BB93D58B0556E8C90D ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
20:24:19.0482 5076 tunnel - ok
20:24:19.0498 5076 [ 750FBCB269F4D7DD2E420C56B795DB6D ] uagp35 C:\Windows\system32\drivers\uagp35.sys
20:24:19.0498 5076 uagp35 - ok
20:24:19.0513 5076 [ EE43346C7E4B5E63E54F927BABBB32FF ] udfs C:\Windows\system32\DRIVERS\udfs.sys
20:24:19.0513 5076 udfs - ok
20:24:19.0544 5076 [ 8344FD4FCE927880AA1AA7681D4927E5 ] UI0Detect C:\Windows\system32\UI0Detect.exe
20:24:19.0544 5076 UI0Detect - ok
20:24:19.0560 5076 [ 44E8048ACE47BEFBFDC2E9BE4CBC8880 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
20:24:19.0560 5076 uliagpkx - ok
20:24:19.0576 5076 [ D295BED4B898F0FD999FCFA9B32B071B ] umbus C:\Windows\system32\DRIVERS\umbus.sys
20:24:19.0576 5076 umbus - ok
20:24:19.0591 5076 [ 7550AD0C6998BA1CB4843E920EE0FEAC ] UmPass C:\Windows\system32\drivers\umpass.sys
20:24:19.0591 5076 UmPass - ok
20:24:19.0622 5076 [ 409994A8EACEEE4E328749C0353527A0 ] UmRdpService C:\Windows\System32\umrdp.dll
20:24:19.0622 5076 UmRdpService - ok
20:24:19.0654 5076 [ 833FBB672460EFCE8011D262175FAD33 ] upnphost C:\Windows\System32\upnphost.dll
20:24:19.0669 5076 upnphost - ok
20:24:19.0685 5076 [ 1D9F2BD026E8E2D45033A4DF3F16B78C ] usbaudio C:\Windows\system32\drivers\usbaudio.sys
20:24:19.0685 5076 usbaudio - ok
20:24:19.0716 5076 [ BD9C55D7023C5DE374507ACC7A14E2AC ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
20:24:19.0716 5076 usbccgp - ok
20:24:19.0732 5076 [ 04EC7CEC62EC3B6D9354EEE93327FC82 ] usbcir C:\Windows\system32\drivers\usbcir.sys
20:24:19.0732 5076 usbcir - ok
20:24:19.0763 5076 [ F92DE757E4B7CE9C07C5E65423F3AE3B ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
20:24:19.0763 5076 usbehci - ok
20:24:19.0778 5076 [ 8DC94AEC6A7E644A06135AE7506DC2E9 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
20:24:19.0778 5076 usbhub - ok
20:24:19.0794 5076 [ E185D44FAC515A18D9DEDDC23C2CDF44 ] usbohci C:\Windows\system32\DRIVERS\usbohci.sys
20:24:19.0794 5076 usbohci - ok
20:24:19.0810 5076 [ 797D862FE0875E75C7CC4C1AD7B30252 ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
20:24:19.0810 5076 usbprint - ok
20:24:19.0825 5076 [ 576096CCBC07E7C4EA4F5E6686D6888F ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys
20:24:19.0841 5076 usbscan - ok
20:24:19.0841 5076 [ F991AB9CC6B908DB552166768176896A ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
20:24:19.0841 5076 USBSTOR - ok
20:24:19.0856 5076 [ 68DF884CF41CDADA664BEB01DAF67E3D ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
20:24:19.0856 5076 usbuhci - ok
20:24:19.0888 5076 [ 081E6E1C91AEC36758902A9F727CD23C ] UxSms C:\Windows\System32\uxsms.dll
20:24:19.0888 5076 UxSms - ok
20:24:19.0888 5076 [ 81951F51E318AECC2D68559E47485CC4 ] VaultSvc C:\Windows\system32\lsass.exe
20:24:19.0888 5076 VaultSvc - ok
20:24:19.0903 5076 [ A059C4C3EDB09E07D21A8E5C0AABD3CB ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
20:24:19.0903 5076 vdrvroot - ok
20:24:19.0919 5076 [ C3CD30495687C2A2F66A65CA6FD89BE9 ] vds C:\Windows\System32\vds.exe
20:24:19.0934 5076 vds - ok
20:24:19.0950 5076 [ 17C408214EA61696CEC9C66E388B14F3 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
20:24:19.0966 5076 vga - ok
20:24:19.0981 5076 [ 8E38096AD5C8570A6F1570A61E251561 ] VgaSave C:\Windows\System32\drivers\vga.sys
20:24:19.0981 5076 VgaSave - ok
20:24:19.0997 5076 [ 5461686CCA2FDA57B024547733AB42E3 ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
20:24:19.0997 5076 vhdmp - ok
20:24:20.0012 5076 [ C829317A37B4BEA8F39735D4B076E923 ] viaagp C:\Windows\system32\drivers\viaagp.sys
20:24:20.0012 5076 viaagp - ok
20:24:20.0028 5076 [ E02F079A6AA107F06B16549C6E5C7B74 ] ViaC7 C:\Windows\system32\drivers\viac7.sys
20:24:20.0028 5076 ViaC7 - ok
20:24:20.0075 5076 [ C9EB429F3136D9B6FB186736612CC43C ] VIAHdAudAddService C:\Windows\system32\drivers\viahduaa.sys
20:24:20.0090 5076 VIAHdAudAddService - ok
20:24:20.0106 5076 [ E43574F6A56A0EE11809B48C09E4FD3C ] viaide C:\Windows\system32\drivers\viaide.sys
20:24:20.0106 5076 viaide - ok
20:24:20.0122 5076 [ B9FAFB1A036913B493F1E9D0C6324D2D ] VIAKaraokeService C:\Windows\system32\viakaraokesrv.exe
20:24:20.0137 5076 VIAKaraokeService - ok
20:24:20.0153 5076 [ C2F2911156FDC7817C52829C86DA494E ] vmbus C:\Windows\system32\drivers\vmbus.sys
20:24:20.0153 5076 vmbus - ok
20:24:20.0168 5076 [ D4D77455211E204F370D08F4963063CE ] VMBusHID C:\Windows\system32\drivers\VMBusHID.sys
20:24:20.0168 5076 VMBusHID - ok
20:24:20.0168 5076 [ 4C63E00F2F4B5F86AB48A58CD990F212 ] volmgr C:\Windows\system32\drivers\volmgr.sys
20:24:20.0168 5076 volmgr - ok
20:24:20.0184 5076 [ B5BB72067DDDDBBFB04B2F89FF8C3C87 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
20:24:20.0184 5076 volmgrx - ok
20:24:20.0200 5076 [ F497F67932C6FA693D7DE2780631CFE7 ] volsnap C:\Windows\system32\drivers\volsnap.sys
20:24:20.0200 5076 volsnap - ok
20:24:20.0215 5076 [ 9DFA0CC2F8855A04816729651175B631 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
20:24:20.0215 5076 vsmraid - ok
20:24:20.0278 5076 [ 209A3B1901B83AEB8527ED211CCE9E4C ] VSS C:\Windows\system32\vssvc.exe
20:24:20.0278 5076 VSS - ok
20:24:20.0293 5076 [ 90567B1E658001E79D7C8BBD3DDE5AA6 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys
20:24:20.0293 5076 vwifibus - ok
20:24:20.0309 5076 [ 55187FD710E27D5095D10A472C8BAF1C ] W32Time C:\Windows\system32\w32time.dll
20:24:20.0309 5076 W32Time - ok
20:24:20.0340 5076 [ DE3721E89C653AA281428C8A69745D90 ] WacomPen C:\Windows\system32\drivers\wacompen.sys
20:24:20.0340 5076 WacomPen - ok
20:24:20.0340 5076 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
20:24:20.0340 5076 WANARP - ok
20:24:20.0356 5076 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
20:24:20.0356 5076 Wanarpv6 - ok
20:24:20.0418 5076 [ 353A04C273EC58475D8633E75CCD5604 ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
20:24:20.0449 5076 WatAdminSvc - ok
20:24:20.0480 5076 [ 691E3285E53DCA558E1A84667F13E15A ] wbengine C:\Windows\system32\wbengine.exe
20:24:20.0527 5076 wbengine - ok
20:24:20.0543 5076 [ 9614B5D29DC76AC3C29F6D2D3AA70E67 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
20:24:20.0543 5076 WbioSrvc - ok
20:24:20.0558 5076 [ 34EEE0DFAADB4F691D6D5308A51315DC ] wcncsvc C:\Windows\System32\wcncsvc.dll
20:24:20.0558 5076 wcncsvc - ok
20:24:20.0574 5076 [ 5D930B6357A6D2AF4D7653BDABBF352F ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
20:24:20.0574 5076 WcsPlugInService - ok
20:24:20.0590 5076 [ 1112A9BADACB47B7C0BB0392E3158DFF ] Wd C:\Windows\system32\drivers\wd.sys
20:24:20.0590 5076 Wd - ok
20:24:20.0621 5076 [ 9950E3D0F08141C7E89E64456AE7DC73 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
20:24:20.0621 5076 Wdf01000 - ok
20:24:20.0636 5076 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiServiceHost C:\Windows\system32\wdi.dll
20:24:20.0636 5076 WdiServiceHost - ok
20:24:20.0652 5076 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiSystemHost C:\Windows\system32\wdi.dll
20:24:20.0652 5076 WdiSystemHost - ok
20:24:20.0652 5076 [ A9D880F97530D5B8FEE278923349929D ] WebClient C:\Windows\System32\webclnt.dll
20:24:20.0668 5076 WebClient - ok
20:24:20.0683 5076 [ 760F0AFE937A77CFF27153206534F275 ] Wecsvc C:\Windows\system32\wecsvc.dll
20:24:20.0699 5076 Wecsvc - ok
20:24:20.0699 5076 [ AC804569BB2364FB6017370258A4091B ] wercplsupport C:\Windows\System32\wercplsupport.dll
20:24:20.0714 5076 wercplsupport - ok
20:24:20.0730 5076 [ 08E420D873E4FD85241EE2421B02C4A4 ] WerSvc C:\Windows\System32\WerSvc.dll
20:24:20.0730 5076 WerSvc - ok
20:24:20.0730 5076 [ 8B9A943F3B53861F2BFAF6C186168F79 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
20:24:20.0730 5076 WfpLwf - ok
20:24:20.0746 5076 [ 5CF95B35E59E2A38023836FFF31BE64C ] WIMMount C:\Windows\system32\drivers\wimmount.sys
20:24:20.0746 5076 WIMMount - ok
20:24:20.0808 5076 [ 3FAE8F94296001C32EAB62CD7D82E0FD ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll
20:24:20.0839 5076 WinDefend - ok
20:24:20.0839 5076 WinHttpAutoProxySvc - ok
20:24:20.0886 5076 [ F62E510B6AD4C21EB9FE8668ED251826 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
20:24:20.0902 5076 Winmgmt - ok
20:24:20.0948 5076 [ 1B91CD34EA3A90AB6A4EF0550174F4CC ] WinRM C:\Windows\system32\WsmSvc.dll
20:24:20.0948 5076 WinRM - ok
20:24:21.0058 5076 [ A67E5F9A400F3BD1BE3D80613B45F708 ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
20:24:21.0058 5076 WinUsb - ok
20:24:21.0214 5076 [ 16935C98FF639D185086A3529B1F2067 ] Wlansvc C:\Windows\System32\wlansvc.dll
20:24:21.0229 5076 Wlansvc - ok
20:24:21.0323 5076 [ FB01D4AE207B9EFDBABFC55DC95C7E31 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
20:24:21.0385 5076 wlidsvc - ok
20:24:21.0401 5076 [ 0217679B8FCA58714C3BF2726D2CA84E ] WmiAcpi C:\Windows\system32\DRIVERS\wmiacpi.sys
20:24:21.0401 5076 WmiAcpi - ok
20:24:21.0416 5076 [ 6EB6B66517B048D87DC1856DDF1F4C3F ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
20:24:21.0416 5076 wmiApSrv - ok
20:24:21.0479 5076 [ 3B40D3A61AA8C21B88AE57C58AB3122E ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
20:24:21.0526 5076 WMPNetworkSvc - ok
20:24:21.0541 5076 [ A2F0EC770A92F2B3F9DE6D518E11409C ] WPCSvc C:\Windows\System32\wpcsvc.dll
20:24:21.0557 5076 WPCSvc - ok
20:24:21.0557 5076 [ AA53356D60AF47EACC85BC617A4F3F66 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
20:24:21.0572 5076 WPDBusEnum - ok
20:24:21.0588 5076 [ 6DB3276587B853BF886B69528FDB048C ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
20:24:21.0588 5076 ws2ifsl - ok
20:24:21.0604 5076 [ 6F5D49EFE0E7164E03AE773A3FE25340 ] wscsvc C:\Windows\system32\wscsvc.dll
20:24:21.0604 5076 wscsvc - ok
20:24:21.0604 5076 WSearch - ok
20:24:21.0682 5076 [ FC3EC24FCE372C89423E015A2AC1A31E ] wuauserv C:\Windows\system32\wuaueng.dll
20:24:21.0697 5076 wuauserv - ok
20:24:21.0713 5076 [ E714A1C0354636837E20CCBF00888EE7 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
20:24:21.0713 5076 WudfPf - ok
20:24:21.0728 5076 [ 1023EE888C9B47178C5293ED5336AB69 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
20:24:21.0728 5076 WUDFRd - ok
20:24:21.0744 5076 [ 8D1E1E529A2C9E9B6A85B55A345F7629 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
20:24:21.0744 5076 wudfsvc - ok
20:24:21.0760 5076 [ FF2D745B560F7C71B31F30F4D49F73D2 ] WwanSvc C:\Windows\System32\wwansvc.dll
20:24:21.0775 5076 WwanSvc - ok
20:24:21.0775 5076 ================ Scan global ===============================
20:24:21.0838 5076 [ DAB748AE0439955ED2FA22357533DDDB ] C:\Windows\system32\basesrv.dll
20:24:21.0884 5076 [ 48CB4FDBCAAEAC7BCE2F5941545FF071 ] C:\Windows\system32\winsrv.dll
20:24:21.0900 5076 [ 48CB4FDBCAAEAC7BCE2F5941545FF071 ] C:\Windows\system32\winsrv.dll
20:24:21.0916 5076 [ 364455805E64882844EE9ACB72522830 ] C:\Windows\system32\sxssrv.dll
20:24:21.0947 5076 [ 5F1B6A9C35D3D5CA72D6D6FDEF9747D6 ] C:\Windows\system32\services.exe
20:24:21.0962 5076 [Global] - ok
20:24:21.0962 5076 ================ Scan MBR ==================================
20:24:21.0978 5076 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
20:24:22.0430 5076 \Device\Harddisk0\DR0 - ok
20:24:22.0430 5076 ================ Scan VBR ==================================
20:24:22.0430 5076 [ F3E73F6ADBFBA521D2C4E94861EF24E0 ] \Device\Harddisk0\DR0\Partition1
20:24:22.0430 5076 \Device\Harddisk0\DR0\Partition1 - ok
20:24:22.0446 5076 [ CDD3471735BC81E7EA7DF801F1F0453E ] \Device\Harddisk0\DR0\Partition2
20:24:22.0446 5076 \Device\Harddisk0\DR0\Partition2 - ok
20:24:22.0446 5076 ============================================================
20:24:22.0446 5076 Scan finished
20:24:22.0446 5076 ============================================================
20:24:22.0446 4736 Detected object count: 0
20:24:22.0446 4736 Actual detected object count: 0
20:24:58.0532 5904 Deinitialize success
20:24:13.0991 5076 [ 8C9C922D71F1CD4DEF73F186416B7896 ] NDIS C:\Windows\system32\drivers\ndis.sys
20:24:13.0991 5076 NDIS - ok
20:24:14.0006 5076 [ 0E1787AA6C9191D3D319E8BAFE86F80C ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
20:24:14.0006 5076 NdisCap - ok
20:24:14.0022 5076 [ E4A8AEC125A2E43A9E32AFEEA7C9C888 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
20:24:14.0022 5076 NdisTapi - ok
20:24:14.0053 5076 [ D8A65DAFB3EB41CBB622745676FCD072 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
20:24:14.0053 5076 Ndisuio - ok
20:24:14.0069 5076 [ 38FBE267E7E6983311179230FACB1017 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
20:24:14.0084 5076 NdisWan - ok
20:24:14.0100 5076 [ A4BDC541E69674FBFF1A8FF00BE913F2 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
20:24:14.0100 5076 NDProxy - ok
20:24:14.0428 5076 [ C7F5C284B6F46FCAF6910EA4E644700B ] Nero BackItUp Scheduler 4.0 C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
20:24:14.0459 5076 Nero BackItUp Scheduler 4.0 - ok
20:24:14.0490 5076 [ 80B275B1CE3B0E79909DB7B39AF74D51 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
20:24:14.0490 5076 NetBIOS - ok
20:24:14.0521 5076 [ 280122DDCF04B378EDD1AD54D71C1E54 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
20:24:14.0537 5076 NetBT - ok
20:24:14.0537 5076 [ 81951F51E318AECC2D68559E47485CC4 ] Netlogon C:\Windows\system32\lsass.exe
20:24:14.0537 5076 Netlogon - ok
20:24:14.0615 5076 [ 7CCCFCA7510684768DA22092D1FA4DB2 ] Netman C:\Windows\System32\netman.dll
20:24:14.0630 5076 Netman - ok
20:24:14.0646 5076 [ 8C338238C16777A802D6A9211EB2BA50 ] netprofm C:\Windows\System32\netprofm.dll
20:24:14.0677 5076 netprofm - ok
20:24:14.0693 5076 [ F476EC40033CDB91EFBE73EB99B8362D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
20:24:14.0693 5076 NetTcpPortSharing - ok
20:24:14.0708 5076 [ 1D85C4B390B0EE09C7A46B91EFB2C097 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
20:24:14.0708 5076 nfrd960 - ok
20:24:14.0724 5076 [ 912084381D30D8B89EC4E293053F4710 ] NlaSvc C:\Windows\System32\nlasvc.dll
20:24:14.0740 5076 NlaSvc - ok
20:24:14.0755 5076 [ 1DB262A9F8C087E8153D89BEF3D2235F ] Npfs C:\Windows\system32\drivers\Npfs.sys
20:24:14.0755 5076 Npfs - ok
20:24:14.0786 5076 [ BA387E955E890C8A88306D9B8D06BF17 ] nsi C:\Windows\system32\nsisvc.dll
20:24:14.0786 5076 nsi - ok
20:24:14.0802 5076 [ E9A0A4D07E53D8FEA2BB8387A3293C58 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
20:24:14.0802 5076 nsiproxy - ok
20:24:14.0833 5076 [ 84A1A494791DA6AC7292D82F97E40BEC ] nSvcIp C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe
20:24:14.0833 5076 nSvcIp - ok
20:24:14.0896 5076 [ 0D87503986BB3DFED58E343FE39DDE13 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
20:24:14.0896 5076 Ntfs - ok
20:24:14.0911 5076 [ F9756A98D69098DCA8945D62858A812C ] Null C:\Windows\system32\drivers\Null.sys
20:24:14.0911 5076 Null - ok
20:24:14.0942 5076 [ B5E37E31C053BC9950455A257526514B ] NVENETFD C:\Windows\system32\DRIVERS\nvm62x32.sys
20:24:14.0942 5076 NVENETFD - ok
20:24:15.0192 5076 [ 0A1B502CBC8230DA74BEFBAADDB58916 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
20:24:15.0239 5076 nvlddmkm - ok
20:24:15.0270 5076 [ 1DE923088878B495CD4219E47BA34EB8 ] NVNET C:\Windows\system32\DRIVERS\nvmf6232.sys
20:24:15.0270 5076 NVNET - ok
20:24:15.0301 5076 [ B3E25EE28883877076E0E1FF877D02E0 ] nvraid C:\Windows\system32\drivers\nvraid.sys
20:24:15.0301 5076 nvraid - ok
20:24:15.0332 5076 [ BE9039422A5CE976C03C5E2CF20106BE ] nvsmu C:\Windows\system32\DRIVERS\nvsmu.sys
20:24:15.0332 5076 nvsmu - ok
20:24:15.0348 5076 [ 4380E59A170D88C4F1022EFF6719A8A4 ] nvstor C:\Windows\system32\drivers\nvstor.sys
20:24:15.0348 5076 nvstor - ok
20:24:15.0379 5076 [ EB5A13F9139F20AD71ADF4BF79C3AA29 ] nvsvc C:\Windows\system32\nvvsvc.exe
20:24:15.0410 5076 nvsvc - ok
20:24:15.0457 5076 [ 0629259E3AF6BB0534FCECA208973404 ] nvUpdatusService C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
20:24:15.0488 5076 nvUpdatusService - ok
20:24:15.0504 5076 [ 5A0983915F02BAE73267CC2A041F717D ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
20:24:15.0504 5076 nv_agp - ok
20:24:15.0520 5076 [ 08A70A1F2CDDE9BB49B885CB817A66EB ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
20:24:15.0520 5076 ohci1394 - ok
20:24:15.0582 5076 [ 9D10F99A6712E28F8ACD5641E3A7EA6B ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
20:24:15.0582 5076 ose - ok
20:24:15.0722 5076 [ 358A9CCA612C68EB2F07DDAD4CE1D8D7 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
20:24:15.0832 5076 osppsvc - ok
20:24:15.0847 5076 [ 103A9B117A7D9903111955CDAFE65AC6 ] ossrv C:\Windows\system32\DRIVERS\ctoss2k.sys
20:24:15.0847 5076 ossrv - ok
20:24:15.0910 5076 [ 2F09B7B4A9FB1F998BD9ECFC468A80A2 ] P17 C:\Windows\system32\drivers\P17.sys
20:24:15.0910 5076 P17 - ok
20:24:15.0941 5076 [ 82A8521DDC60710C3D3D3E7325209BEC ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
20:24:15.0956 5076 p2pimsvc - ok
20:24:15.0988 5076 [ 59C3DDD501E39E006DAC31BF55150D91 ] p2psvc C:\Windows\system32\p2psvc.dll
20:24:16.0003 5076 p2psvc - ok
20:24:16.0050 5076 [ AD66BC56DD6A030174C03395B3DC0720 ] PAC7302 C:\Windows\system32\DRIVERS\PAC7302.SYS
20:24:16.0050 5076 PAC7302 - ok
20:24:16.0050 5076 [ 2EA877ED5DD9713C5AC74E8EA7348D14 ] Parport C:\Windows\system32\drivers\parport.sys
20:24:16.0066 5076 Parport - ok
20:24:16.0097 5076 [ 3F34A1B4C5F6475F320C275E63AFCE9B ] partmgr C:\Windows\system32\drivers\partmgr.sys
20:24:16.0097 5076 partmgr - ok
20:24:16.0128 5076 [ EB0A59F29C19B86479D36B35983DAADC ] Parvdm C:\Windows\system32\drivers\parvdm.sys
20:24:16.0128 5076 Parvdm - ok
20:24:16.0159 5076 [ 358AB7956D3160000726574083DFC8A6 ] PcaSvc C:\Windows\System32\pcasvc.dll
20:24:16.0159 5076 PcaSvc - ok
20:24:16.0175 5076 [ 673E55C3498EB970088E812EA820AA8F ] pci C:\Windows\system32\drivers\pci.sys
20:24:16.0175 5076 pci - ok
20:24:16.0190 5076 [ AFE86F419014DB4E5593F69FFE26CE0A ] pciide C:\Windows\system32\drivers\pciide.sys
20:24:16.0190 5076 pciide - ok
20:24:16.0237 5076 [ F396431B31693E71E8A80687EF523506 ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
20:24:16.0237 5076 pcmcia - ok
20:24:16.0268 5076 [ 5B6C11DE7E839C05248CED8825470FEF ] pcouffin C:\Windows\system32\Drivers\pcouffin.sys
20:24:16.0268 5076 pcouffin - ok
20:24:16.0268 5076 [ 250F6B43D2B613172035C6747AEEB19F ] pcw C:\Windows\system32\drivers\pcw.sys
20:24:16.0268 5076 pcw - ok
20:24:16.0284 5076 [ 9E0104BA49F4E6973749A02BF41344ED ] PEAUTH C:\Windows\system32\drivers\peauth.sys
20:24:16.0300 5076 PEAUTH - ok
20:24:16.0331 5076 [ AF4D64D2A57B9772CF3801950B8058A6 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll
20:24:16.0362 5076 PeerDistSvc - ok
20:24:16.0409 5076 [ 414BBA67A3DED1D28437EB66AEB8A720 ] pla C:\Windows\system32\pla.dll
20:24:16.0440 5076 pla - ok
20:24:16.0471 5076 [ EC7BC28D207DA09E79B3E9FAF8B232CA ] PlugPlay C:\Windows\system32\umpnpmgr.dll
20:24:16.0487 5076 PlugPlay - ok
20:24:16.0518 5076 [ 205E1B699FD3F2F9B036EEA2EC30C620 ] PnkBstrA C:\Windows\system32\PnkBstrA.exe
20:24:16.0534 5076 PnkBstrA - ok
20:24:16.0549 5076 [ 63FF8572611249931EB16BB8EED6AFC8 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
20:24:16.0549 5076 PNRPAutoReg - ok
20:24:16.0565 5076 [ 82A8521DDC60710C3D3D3E7325209BEC ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
20:24:16.0565 5076 PNRPsvc - ok
20:24:16.0596 5076 [ 53946B69BA0836BD95B03759530C81EC ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
20:24:16.0612 5076 PolicyAgent - ok
20:24:16.0627 5076 [ F87D30E72E03D579A5199CCB3831D6EA ] Power C:\Windows\system32\umpo.dll
20:24:16.0643 5076 Power - ok
20:24:16.0658 5076 [ 631E3E205AD6D86F2AED6A4A8E69F2DB ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
20:24:16.0658 5076 PptpMiniport - ok
20:24:16.0674 5076 [ 85B1E3A0C7585BC4AAE6899EC6FCF011 ] Processor C:\Windows\system32\drivers\processr.sys
20:24:16.0674 5076 Processor - ok
20:24:16.0690 5076 [ CADEFAC453040E370A1BDFF3973BE00D ] ProfSvc C:\Windows\system32\profsvc.dll
20:24:16.0690 5076 ProfSvc - ok
20:24:16.0705 5076 [ 81951F51E318AECC2D68559E47485CC4 ] ProtectedStorage C:\Windows\system32\lsass.exe
20:24:16.0705 5076 ProtectedStorage - ok
20:24:16.0705 5076 [ 6270CCAE2A86DE6D146529FE55B3246A ] Psched C:\Windows\system32\DRIVERS\pacer.sys
20:24:16.0721 5076 Psched - ok
20:24:16.0752 5076 [ AB95ECF1F6659A60DDC166D8315B0751 ] ql2300 C:\Windows\system32\drivers\ql2300.sys
20:24:16.0768 5076 ql2300 - ok
20:24:16.0783 5076 [ B4DD51DD25182244B86737DC51AF2270 ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
20:24:16.0783 5076 ql40xx - ok
20:24:16.0799 5076 [ 31AC809E7707EB580B2BDB760390765A ] QWAVE C:\Windows\system32\qwave.dll
20:24:16.0814 5076 QWAVE - ok
20:24:16.0814 5076 [ 584078CA1B95CA72DF2A27C336F9719D ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
20:24:16.0814 5076 QWAVEdrv - ok
20:24:16.0830 5076 [ 30A81B53C766D0133BB86D234E5556AB ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
20:24:16.0830 5076 RasAcd - ok
20:24:16.0861 5076 [ 57EC4AEF73660166074D8F7F31C0D4FD ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
20:24:16.0861 5076 RasAgileVpn - ok
20:24:16.0877 5076 [ A60F1839849C0C00739787FD5EC03F13 ] RasAuto C:\Windows\System32\rasauto.dll
20:24:16.0877 5076 RasAuto - ok
20:24:16.0892 5076 [ D9F91EAFEC2815365CBE6D167E4E332A ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
20:24:16.0892 5076 Rasl2tp - ok
20:24:16.0908 5076 [ CB9E04DC05EACF5B9A36CA276D475006 ] RasMan C:\Windows\System32\rasmans.dll
20:24:16.0924 5076 RasMan - ok
20:24:16.0939 5076 [ 0FE8B15916307A6AC12BFB6A63E45507 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
20:24:16.0939 5076 RasPppoe - ok
20:24:16.0939 5076 [ 44101F495A83EA6401D886E7FD70096B ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
20:24:16.0939 5076 RasSstp - ok
20:24:16.0955 5076 [ D528BC58A489409BA40334EBF96A311B ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
20:24:16.0955 5076 rdbss - ok
20:24:16.0970 5076 [ 0D8F05481CB76E70E1DA06EE9F0DA9DF ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
20:24:16.0970 5076 rdpbus - ok
20:24:16.0986 5076 [ 23DAE03F29D253AE74C44F99E515F9A1 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
20:24:16.0986 5076 RDPCDD - ok
20:24:17.0002 5076 [ B973FCFC50DC1434E1970A146F7E3885 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys
20:24:17.0002 5076 RDPDR - ok
20:24:17.0017 5076 [ 5A53CA1598DD4156D44196D200C94B8A ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
20:24:17.0017 5076 RDPENCDD - ok
20:24:17.0017 5076 [ 44B0A53CD4F27D50ED461DAE0C0B4E1F ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
20:24:17.0033 5076 RDPREFMP - ok
20:24:17.0080 5076 [ 68A0387F58E226DEEE23D9715955572A ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
20:24:17.0080 5076 RdpVideoMiniport - ok
20:24:17.0095 5076 [ F031683E6D1FEA157ABB2FF260B51E61 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
20:24:17.0111 5076 RDPWD - ok
20:24:17.0126 5076 [ 518395321DC96FE2C9F0E96AC743B656 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
20:24:17.0142 5076 rdyboost - ok
20:24:17.0158 5076 [ 7B5E1419717FAC363A31CC302895217A ] RemoteAccess C:\Windows\System32\mprdim.dll
20:24:17.0173 5076 RemoteAccess - ok
20:24:17.0204 5076 [ CB9A8683F4EF2BF99E123D79950D7935 ] RemoteRegistry C:\Windows\system32\regsvc.dll
20:24:17.0220 5076 RemoteRegistry - ok
20:24:17.0220 5076 [ 78D072F35BC45D9E4E1B61895C152234 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
20:24:17.0236 5076 RpcEptMapper - ok
20:24:17.0267 5076 [ 94D36C0E44677DD26981D2BFEEF2A29D ] RpcLocator C:\Windows\system32\locator.exe
20:24:17.0267 5076 RpcLocator - ok
20:24:17.0282 5076 [ 7660F01D3B38ACA1747E397D21D790AF ] RpcSs C:\Windows\system32\rpcss.dll
20:24:17.0282 5076 RpcSs - ok
20:24:17.0298 5076 [ 032B0D36AD92B582D869879F5AF5B928 ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
20:24:17.0298 5076 rspndr - ok
20:24:17.0314 5076 [ 7FA7F2E249A5DCBB7970630E15E1F482 ] s3cap C:\Windows\system32\drivers\vms3cap.sys
20:24:17.0314 5076 s3cap - ok
20:24:17.0329 5076 [ 81951F51E318AECC2D68559E47485CC4 ] SamSs C:\Windows\system32\lsass.exe
20:24:17.0329 5076 SamSs - ok
20:24:17.0345 5076 [ 05D860DA1040F111503AC416CCEF2BCA ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
20:24:17.0345 5076 sbp2port - ok
20:24:17.0360 5076 [ 8FC518FFE9519C2631D37515A68009C4 ] SCardSvr C:\Windows\System32\SCardSvr.dll
20:24:17.0376 5076 SCardSvr - ok
20:24:17.0376 5076 [ 0693B5EC673E34DC147E195779A4DCF6 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
20:24:17.0376 5076 scfilter - ok
20:24:17.0407 5076 [ A04BB13F8A72F8B6E8B4071723E4E336 ] Schedule C:\Windows\system32\schedsvc.dll
20:24:17.0438 5076 Schedule - ok
20:24:17.0454 5076 [ 319C6B309773D063541D01DF8AC6F55F ] SCPolicySvc C:\Windows\System32\certprop.dll
20:24:17.0454 5076 SCPolicySvc - ok
20:24:17.0454 5076 [ 08236C4BCE5EDD0A0318A438AF28E0F7 ] SDRSVC C:\Windows\System32\SDRSVC.dll
20:24:17.0470 5076 SDRSVC - ok
20:24:17.0470 5076 [ 90A3935D05B494A5A39D37E71F09A677 ] secdrv C:\Windows\system32\drivers\secdrv.sys
20:24:17.0470 5076 secdrv - ok
20:24:17.0485 5076 [ A59B3A4442C52060CC7A85293AA3546F ] seclogon C:\Windows\system32\seclogon.dll
20:24:17.0485 5076 seclogon - ok
20:24:17.0501 5076 [ DCB7FCDCC97F87360F75D77425B81737 ] SENS C:\Windows\system32\sens.dll
20:24:17.0501 5076 SENS - ok
20:24:17.0516 5076 [ 50087FE1EE447009C9CC2997B90DE53F ] SensrSvc C:\Windows\system32\sensrsvc.dll
20:24:17.0532 5076 SensrSvc - ok
20:24:17.0548 5076 [ 9AD8B8B515E3DF6ACD4212EF465DE2D1 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
20:24:17.0548 5076 Serenum - ok
20:24:17.0563 5076 [ 5FB7FCEA0490D821F26F39CC5EA3D1E2 ] Serial C:\Windows\system32\DRIVERS\serial.sys
20:24:17.0563 5076 Serial - ok
20:24:17.0579 5076 [ 79BFFB520327FF916A582DFEA17AA813 ] sermouse C:\Windows\system32\drivers\sermouse.sys
20:24:17.0579 5076 sermouse - ok
20:24:17.0594 5076 [ 4AE380F39A0032EAB7DD953030B26D28 ] SessionEnv C:\Windows\system32\sessenv.dll
20:24:17.0610 5076 SessionEnv - ok
20:24:17.0626 5076 [ 9F976E1EB233DF46FCE808D9DEA3EB9C ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
20:24:17.0626 5076 sffdisk - ok
20:24:17.0641 5076 [ 932A68EE27833CFD57C1639D375F2731 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
20:24:17.0641 5076 sffp_mmc - ok
20:24:17.0657 5076 [ 6D4CCAEDC018F1CF52866BBBAA235982 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
20:24:17.0657 5076 sffp_sd - ok
20:24:17.0657 5076 [ DB96666CC8312EBC45032F30B007A547 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
20:24:17.0657 5076 sfloppy - ok
20:24:17.0688 5076 [ D1A079A0DE2EA524513B6930C24527A2 ] SharedAccess C:\Windows\System32\ipnathlp.dll
20:24:17.0704 5076 SharedAccess - ok
20:24:17.0750 5076 [ 414DA952A35BF5D50192E28263B40577 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
20:24:17.0766 5076 ShellHWDetection - ok
20:24:17.0782 5076 [ 2565CAC0DC9FE0371BDCE60832582B2E ] sisagp C:\Windows\system32\drivers\sisagp.sys
20:24:17.0782 5076 sisagp - ok
20:24:17.0782 5076 [ A9F0486851BECB6DDA1D89D381E71055 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys
20:24:17.0782 5076 SiSRaid2 - ok
20:24:17.0797 5076 [ 3727097B55738E2F554972C3BE5BC1AA ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
20:24:17.0797 5076 SiSRaid4 - ok
20:24:17.0844 5076 [ F07AF60B152221472FBDB2FECEC4896D ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe
20:24:17.0844 5076 SkypeUpdate - ok
20:24:17.0860 5076 [ 3E21C083B8A01CB70BA1F09303010FCE ] Smb C:\Windows\system32\DRIVERS\smb.sys
20:24:17.0860 5076 Smb - ok
20:24:17.0875 5076 [ 6A984831644ECA1A33FFEAE4126F4F37 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
20:24:17.0875 5076 SNMPTRAP - ok
20:24:17.0875 5076 [ 95CF1AE7527FB70F7816563CBC09D942 ] spldr C:\Windows\system32\drivers\spldr.sys
20:24:17.0891 5076 spldr - ok
20:24:17.0906 5076 [ 9AEA093B8F9C37CF45538382CABA2475 ] Spooler C:\Windows\System32\spoolsv.exe
20:24:17.0922 5076 Spooler - ok
20:24:18.0016 5076 [ CF87A1DE791347E75B98885214CED2B8 ] sppsvc C:\Windows\system32\sppsvc.exe
20:24:18.0094 5076 sppsvc - ok
20:24:18.0109 5076 [ B0180B20B065D89232A78A40FE56EAA6 ] sppuinotify C:\Windows\system32\sppuinotify.dll
20:24:18.0109 5076 sppuinotify - ok
20:24:18.0156 5076 [ AB5C8F6E63674DBAD9C1E449E8FD77CE ] sptd C:\Windows\System32\Drivers\sptd.sys
20:24:18.0156 5076 sptd - ok
20:24:18.0172 5076 [ E4C2764065D66EA1D2D3EBC28FE99C46 ] srv C:\Windows\system32\DRIVERS\srv.sys
20:24:18.0172 5076 srv - ok
20:24:18.0203 5076 [ 03F0545BD8D4C77FA0AE1CEEDFCC71AB ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
20:24:18.0203 5076 srv2 - ok
20:24:18.0218 5076 [ BE6BD660CAA6F291AE06A718A4FA8ABC ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
20:24:18.0218 5076 srvnet - ok
20:24:18.0250 5076 [ D887C9FD02AC9FA880F6E5027A43E118 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
20:24:18.0250 5076 SSDPSRV - ok
20:24:18.0265 5076 [ D318F23BE45D5E3A107469EB64815B50 ] SstpSvc C:\Windows\system32\sstpsvc.dll
20:24:18.0265 5076 SstpSvc - ok
20:24:18.0296 5076 Steam Client Service - ok
20:24:18.0359 5076 [ F0359F7CE712D69ACEF0886BDB4792ED ] Stereo Service C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
20:24:18.0374 5076 Stereo Service - ok
20:24:18.0390 5076 [ DB32D325C192B801DF274BFD12A7E72B ] stexstor C:\Windows\system32\drivers\stexstor.sys
20:24:18.0390 5076 stexstor - ok
20:24:18.0421 5076 [ E1FB3706030FB4578A0D72C2FC3689E4 ] StiSvc C:\Windows\System32\wiaservc.dll
20:24:18.0437 5076 StiSvc - ok
20:24:18.0468 5076 [ 472AF0311073DCECEAA8FA18BA2BDF89 ] storflt C:\Windows\system32\drivers\vmstorfl.sys
20:24:18.0468 5076 storflt - ok
20:24:18.0484 5076 [ DCAFFD62259E0BDB433DD67B5BB37619 ] storvsc C:\Windows\system32\drivers\storvsc.sys
20:24:18.0484 5076 storvsc - ok
20:24:18.0484 5076 [ E58C78A848ADD9610A4DB6D214AF5224 ] swenum C:\Windows\system32\DRIVERS\swenum.sys
20:24:18.0484 5076 swenum - ok
20:24:18.0562 5076 [ F577910A133A592234EBAAD3F3AFA258 ] SwitchBoard C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
20:24:18.0562 5076 SwitchBoard - ok
20:24:18.0593 5076 [ A28BD92DF340E57B024BA433165D34D7 ] swprv C:\Windows\System32\swprv.dll
20:24:18.0608 5076 swprv - ok
20:24:18.0624 5076 [ F2AD8960812FD111E20E84659EF19D43 ] Synth3dVsc C:\Windows\system32\drivers\synth3dvsc.sys
20:24:18.0624 5076 Synth3dVsc - ok
20:24:18.0686 5076 [ 36650D618CA34C9D357DFD3D89B2C56F ] SysMain C:\Windows\system32\sysmain.dll
20:24:18.0718 5076 SysMain - ok
20:24:18.0733 5076 [ 763FECDC3D30C815FE72DD57936C6CD1 ] TabletInputService C:\Windows\System32\TabSvc.dll
20:24:18.0733 5076 TabletInputService - ok
20:24:18.0749 5076 [ 613BF4820361543956909043A265C6AC ] TapiSrv C:\Windows\System32\tapisrv.dll
20:24:18.0780 5076 TapiSrv - ok
20:24:18.0796 5076 [ B799D9FDB26111737F58288D8DC172D9 ] TBS C:\Windows\System32\tbssvc.dll
20:24:18.0796 5076 TBS - ok
20:24:18.0842 5076 [ A5EBB8F648000E88B7D9390B514976BF ] Tcpip C:\Windows\system32\drivers\tcpip.sys
20:24:18.0842 5076 Tcpip - ok
20:24:18.0889 5076 [ A5EBB8F648000E88B7D9390B514976BF ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
20:24:18.0889 5076 TCPIP6 - ok
20:24:18.0905 5076 [ CCA24162E055C3714CE5A88B100C64ED ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
20:24:18.0905 5076 tcpipreg - ok
20:24:18.0920 5076 [ 1CB91B2BD8F6DD367DFC2EF26FD751B2 ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
20:24:18.0920 5076 TDPIPE - ok
20:24:18.0936 5076 [ 2C2C5AFE7EE4F620D69C23C0617651A8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
20:24:18.0952 5076 TDTCP - ok
20:24:18.0952 5076 [ B459575348C20E8121D6039DA063C704 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
20:24:18.0967 5076 tdx - ok
20:24:19.0061 5076 [ 74FC70AE64A7B7DABEC9697CE0A1F4FA ] TeamViewer7 C:\Program Files\TeamViewer\Version7\TeamViewer_Service.exe
20:24:19.0108 5076 TeamViewer7 - ok
20:24:19.0123 5076 [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
20:24:19.0123 5076 TermDD - ok
20:24:19.0123 5076 [ 052306FD76793D5D5AB5D9891FD1ADBB ] terminpt C:\Windows\system32\drivers\terminpt.sys
20:24:19.0123 5076 terminpt - ok
20:24:19.0170 5076 [ 382C804C92811BE57829D8E550A900E2 ] TermService C:\Windows\System32\termsrv.dll
20:24:19.0186 5076 TermService - ok
20:24:19.0201 5076 [ 42FB6AFD6B79D9FE07381609172E7CA4 ] Themes C:\Windows\system32\themeservice.dll
20:24:19.0201 5076 Themes - ok
20:24:19.0217 5076 [ 146B6F43A673379A3C670E86D89BE5EA ] THREADORDER C:\Windows\system32\mmcss.dll
20:24:19.0217 5076 THREADORDER - ok
20:24:19.0232 5076 [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A ] TrkWks C:\Windows\System32\trkwks.dll
20:24:19.0232 5076 TrkWks - ok
20:24:19.0279 5076 [ 2C49B175AEE1D4364B91B531417FE583 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
20:24:19.0295 5076 TrustedInstaller - ok
20:24:19.0295 5076 [ 254BB140EEE3C59D6114C1A86B636877 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
20:24:19.0295 5076 tssecsrv - ok
20:24:19.0310 5076 [ FD1D6C73E6333BE727CBCC6054247654 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
20:24:19.0310 5076 TsUsbFlt - ok
20:24:19.0326 5076 [ 01246F0BAAD7B68EC0F472AA41E33282 ] TsUsbGD C:\Windows\system32\drivers\TsUsbGD.sys
20:24:19.0326 5076 TsUsbGD - ok
20:24:19.0342 5076 [ 045ACB987C650D8186C6B4A692223860 ] tsusbhub C:\Windows\system32\drivers\tsusbhub.sys
20:24:19.0342 5076 tsusbhub - ok
20:24:19.0435 5076 [ A3F474966E0F4CD4B560186896966984 ] TuneUp.UtilitiesSvc C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesService32.exe
20:24:19.0451 5076 TuneUp.UtilitiesSvc - ok
20:24:19.0466 5076 [ F2107C9D85EC0DF116939CCCE06AE697 ] TuneUpUtilitiesDrv C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesDriver32.sys
20:24:19.0466 5076 TuneUpUtilitiesDrv - ok
20:24:19.0482 5076 [ B2FA25D9B17A68BB93D58B0556E8C90D ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
20:24:19.0482 5076 tunnel - ok
20:24:19.0498 5076 [ 750FBCB269F4D7DD2E420C56B795DB6D ] uagp35 C:\Windows\system32\drivers\uagp35.sys
20:24:19.0498 5076 uagp35 - ok
20:24:19.0513 5076 [ EE43346C7E4B5E63E54F927BABBB32FF ] udfs C:\Windows\system32\DRIVERS\udfs.sys
20:24:19.0513 5076 udfs - ok
20:24:19.0544 5076 [ 8344FD4FCE927880AA1AA7681D4927E5 ] UI0Detect C:\Windows\system32\UI0Detect.exe
20:24:19.0544 5076 UI0Detect - ok
20:24:19.0560 5076 [ 44E8048ACE47BEFBFDC2E9BE4CBC8880 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
20:24:19.0560 5076 uliagpkx - ok
20:24:19.0576 5076 [ D295BED4B898F0FD999FCFA9B32B071B ] umbus C:\Windows\system32\DRIVERS\umbus.sys
20:24:19.0576 5076 umbus - ok
20:24:19.0591 5076 [ 7550AD0C6998BA1CB4843E920EE0FEAC ] UmPass C:\Windows\system32\drivers\umpass.sys
20:24:19.0591 5076 UmPass - ok
20:24:19.0622 5076 [ 409994A8EACEEE4E328749C0353527A0 ] UmRdpService C:\Windows\System32\umrdp.dll
20:24:19.0622 5076 UmRdpService - ok
20:24:19.0654 5076 [ 833FBB672460EFCE8011D262175FAD33 ] upnphost C:\Windows\System32\upnphost.dll
20:24:19.0669 5076 upnphost - ok
20:24:19.0685 5076 [ 1D9F2BD026E8E2D45033A4DF3F16B78C ] usbaudio C:\Windows\system32\drivers\usbaudio.sys
20:24:19.0685 5076 usbaudio - ok
20:24:19.0716 5076 [ BD9C55D7023C5DE374507ACC7A14E2AC ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
20:24:19.0716 5076 usbccgp - ok
20:24:19.0732 5076 [ 04EC7CEC62EC3B6D9354EEE93327FC82 ] usbcir C:\Windows\system32\drivers\usbcir.sys
20:24:19.0732 5076 usbcir - ok
20:24:19.0763 5076 [ F92DE757E4B7CE9C07C5E65423F3AE3B ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
20:24:19.0763 5076 usbehci - ok
20:24:19.0778 5076 [ 8DC94AEC6A7E644A06135AE7506DC2E9 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
20:24:19.0778 5076 usbhub - ok
20:24:19.0794 5076 [ E185D44FAC515A18D9DEDDC23C2CDF44 ] usbohci C:\Windows\system32\DRIVERS\usbohci.sys
20:24:19.0794 5076 usbohci - ok
20:24:19.0810 5076 [ 797D862FE0875E75C7CC4C1AD7B30252 ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
20:24:19.0810 5076 usbprint - ok
20:24:19.0825 5076 [ 576096CCBC07E7C4EA4F5E6686D6888F ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys
20:24:19.0841 5076 usbscan - ok
20:24:19.0841 5076 [ F991AB9CC6B908DB552166768176896A ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
20:24:19.0841 5076 USBSTOR - ok
20:24:19.0856 5076 [ 68DF884CF41CDADA664BEB01DAF67E3D ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
20:24:19.0856 5076 usbuhci - ok
20:24:19.0888 5076 [ 081E6E1C91AEC36758902A9F727CD23C ] UxSms C:\Windows\System32\uxsms.dll
20:24:19.0888 5076 UxSms - ok
20:24:19.0888 5076 [ 81951F51E318AECC2D68559E47485CC4 ] VaultSvc C:\Windows\system32\lsass.exe
20:24:19.0888 5076 VaultSvc - ok
20:24:19.0903 5076 [ A059C4C3EDB09E07D21A8E5C0AABD3CB ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
20:24:19.0903 5076 vdrvroot - ok
20:24:19.0919 5076 [ C3CD30495687C2A2F66A65CA6FD89BE9 ] vds C:\Windows\System32\vds.exe
20:24:19.0934 5076 vds - ok
20:24:19.0950 5076 [ 17C408214EA61696CEC9C66E388B14F3 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
20:24:19.0966 5076 vga - ok
20:24:19.0981 5076 [ 8E38096AD5C8570A6F1570A61E251561 ] VgaSave C:\Windows\System32\drivers\vga.sys
20:24:19.0981 5076 VgaSave - ok
20:24:19.0997 5076 [ 5461686CCA2FDA57B024547733AB42E3 ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
20:24:19.0997 5076 vhdmp - ok
20:24:20.0012 5076 [ C829317A37B4BEA8F39735D4B076E923 ] viaagp C:\Windows\system32\drivers\viaagp.sys
20:24:20.0012 5076 viaagp - ok
20:24:20.0028 5076 [ E02F079A6AA107F06B16549C6E5C7B74 ] ViaC7 C:\Windows\system32\drivers\viac7.sys
20:24:20.0028 5076 ViaC7 - ok
20:24:20.0075 5076 [ C9EB429F3136D9B6FB186736612CC43C ] VIAHdAudAddService C:\Windows\system32\drivers\viahduaa.sys
20:24:20.0090 5076 VIAHdAudAddService - ok
20:24:20.0106 5076 [ E43574F6A56A0EE11809B48C09E4FD3C ] viaide C:\Windows\system32\drivers\viaide.sys
20:24:20.0106 5076 viaide - ok
20:24:20.0122 5076 [ B9FAFB1A036913B493F1E9D0C6324D2D ] VIAKaraokeService C:\Windows\system32\viakaraokesrv.exe
20:24:20.0137 5076 VIAKaraokeService - ok
20:24:20.0153 5076 [ C2F2911156FDC7817C52829C86DA494E ] vmbus C:\Windows\system32\drivers\vmbus.sys
20:24:20.0153 5076 vmbus - ok
20:24:20.0168 5076 [ D4D77455211E204F370D08F4963063CE ] VMBusHID C:\Windows\system32\drivers\VMBusHID.sys
20:24:20.0168 5076 VMBusHID - ok
20:24:20.0168 5076 [ 4C63E00F2F4B5F86AB48A58CD990F212 ] volmgr C:\Windows\system32\drivers\volmgr.sys
20:24:20.0168 5076 volmgr - ok
20:24:20.0184 5076 [ B5BB72067DDDDBBFB04B2F89FF8C3C87 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
20:24:20.0184 5076 volmgrx - ok
20:24:20.0200 5076 [ F497F67932C6FA693D7DE2780631CFE7 ] volsnap C:\Windows\system32\drivers\volsnap.sys
20:24:20.0200 5076 volsnap - ok
20:24:20.0215 5076 [ 9DFA0CC2F8855A04816729651175B631 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
20:24:20.0215 5076 vsmraid - ok
20:24:20.0278 5076 [ 209A3B1901B83AEB8527ED211CCE9E4C ] VSS C:\Windows\system32\vssvc.exe
20:24:20.0278 5076 VSS - ok
20:24:20.0293 5076 [ 90567B1E658001E79D7C8BBD3DDE5AA6 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys
20:24:20.0293 5076 vwifibus - ok
20:24:20.0309 5076 [ 55187FD710E27D5095D10A472C8BAF1C ] W32Time C:\Windows\system32\w32time.dll
20:24:20.0309 5076 W32Time - ok
20:24:20.0340 5076 [ DE3721E89C653AA281428C8A69745D90 ] WacomPen C:\Windows\system32\drivers\wacompen.sys
20:24:20.0340 5076 WacomPen - ok
20:24:20.0340 5076 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
20:24:20.0340 5076 WANARP - ok
20:24:20.0356 5076 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
20:24:20.0356 5076 Wanarpv6 - ok
20:24:20.0418 5076 [ 353A04C273EC58475D8633E75CCD5604 ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
20:24:20.0449 5076 WatAdminSvc - ok
20:24:20.0480 5076 [ 691E3285E53DCA558E1A84667F13E15A ] wbengine C:\Windows\system32\wbengine.exe
20:24:20.0527 5076 wbengine - ok
20:24:20.0543 5076 [ 9614B5D29DC76AC3C29F6D2D3AA70E67 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
20:24:20.0543 5076 WbioSrvc - ok
20:24:20.0558 5076 [ 34EEE0DFAADB4F691D6D5308A51315DC ] wcncsvc C:\Windows\System32\wcncsvc.dll
20:24:20.0558 5076 wcncsvc - ok
20:24:20.0574 5076 [ 5D930B6357A6D2AF4D7653BDABBF352F ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
20:24:20.0574 5076 WcsPlugInService - ok
20:24:20.0590 5076 [ 1112A9BADACB47B7C0BB0392E3158DFF ] Wd C:\Windows\system32\drivers\wd.sys
20:24:20.0590 5076 Wd - ok
20:24:20.0621 5076 [ 9950E3D0F08141C7E89E64456AE7DC73 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
20:24:20.0621 5076 Wdf01000 - ok
20:24:20.0636 5076 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiServiceHost C:\Windows\system32\wdi.dll
20:24:20.0636 5076 WdiServiceHost - ok
20:24:20.0652 5076 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiSystemHost C:\Windows\system32\wdi.dll
20:24:20.0652 5076 WdiSystemHost - ok
20:24:20.0652 5076 [ A9D880F97530D5B8FEE278923349929D ] WebClient C:\Windows\System32\webclnt.dll
20:24:20.0668 5076 WebClient - ok
20:24:20.0683 5076 [ 760F0AFE937A77CFF27153206534F275 ] Wecsvc C:\Windows\system32\wecsvc.dll
20:24:20.0699 5076 Wecsvc - ok
20:24:20.0699 5076 [ AC804569BB2364FB6017370258A4091B ] wercplsupport C:\Windows\System32\wercplsupport.dll
20:24:20.0714 5076 wercplsupport - ok
20:24:20.0730 5076 [ 08E420D873E4FD85241EE2421B02C4A4 ] WerSvc C:\Windows\System32\WerSvc.dll
20:24:20.0730 5076 WerSvc - ok
20:24:20.0730 5076 [ 8B9A943F3B53861F2BFAF6C186168F79 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
20:24:20.0730 5076 WfpLwf - ok
20:24:20.0746 5076 [ 5CF95B35E59E2A38023836FFF31BE64C ] WIMMount C:\Windows\system32\drivers\wimmount.sys
20:24:20.0746 5076 WIMMount - ok
20:24:20.0808 5076 [ 3FAE8F94296001C32EAB62CD7D82E0FD ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll
20:24:20.0839 5076 WinDefend - ok
20:24:20.0839 5076 WinHttpAutoProxySvc - ok
20:24:20.0886 5076 [ F62E510B6AD4C21EB9FE8668ED251826 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
20:24:20.0902 5076 Winmgmt - ok
20:24:20.0948 5076 [ 1B91CD34EA3A90AB6A4EF0550174F4CC ] WinRM C:\Windows\system32\WsmSvc.dll
20:24:20.0948 5076 WinRM - ok
20:24:21.0058 5076 [ A67E5F9A400F3BD1BE3D80613B45F708 ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
20:24:21.0058 5076 WinUsb - ok
20:24:21.0214 5076 [ 16935C98FF639D185086A3529B1F2067 ] Wlansvc C:\Windows\System32\wlansvc.dll
20:24:21.0229 5076 Wlansvc - ok
20:24:21.0323 5076 [ FB01D4AE207B9EFDBABFC55DC95C7E31 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
20:24:21.0385 5076 wlidsvc - ok
20:24:21.0401 5076 [ 0217679B8FCA58714C3BF2726D2CA84E ] WmiAcpi C:\Windows\system32\DRIVERS\wmiacpi.sys
20:24:21.0401 5076 WmiAcpi - ok
20:24:21.0416 5076 [ 6EB6B66517B048D87DC1856DDF1F4C3F ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
20:24:21.0416 5076 wmiApSrv - ok
20:24:21.0479 5076 [ 3B40D3A61AA8C21B88AE57C58AB3122E ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
20:24:21.0526 5076 WMPNetworkSvc - ok
20:24:21.0541 5076 [ A2F0EC770A92F2B3F9DE6D518E11409C ] WPCSvc C:\Windows\System32\wpcsvc.dll
20:24:21.0557 5076 WPCSvc - ok
20:24:21.0557 5076 [ AA53356D60AF47EACC85BC617A4F3F66 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
20:24:21.0572 5076 WPDBusEnum - ok
20:24:21.0588 5076 [ 6DB3276587B853BF886B69528FDB048C ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
20:24:21.0588 5076 ws2ifsl - ok
20:24:21.0604 5076 [ 6F5D49EFE0E7164E03AE773A3FE25340 ] wscsvc C:\Windows\system32\wscsvc.dll
20:24:21.0604 5076 wscsvc - ok
20:24:21.0604 5076 WSearch - ok
20:24:21.0682 5076 [ FC3EC24FCE372C89423E015A2AC1A31E ] wuauserv C:\Windows\system32\wuaueng.dll
20:24:21.0697 5076 wuauserv - ok
20:24:21.0713 5076 [ E714A1C0354636837E20CCBF00888EE7 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
20:24:21.0713 5076 WudfPf - ok
20:24:21.0728 5076 [ 1023EE888C9B47178C5293ED5336AB69 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
20:24:21.0728 5076 WUDFRd - ok
20:24:21.0744 5076 [ 8D1E1E529A2C9E9B6A85B55A345F7629 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
20:24:21.0744 5076 wudfsvc - ok
20:24:21.0760 5076 [ FF2D745B560F7C71B31F30F4D49F73D2 ] WwanSvc C:\Windows\System32\wwansvc.dll
20:24:21.0775 5076 WwanSvc - ok
20:24:21.0775 5076 ================ Scan global ===============================
20:24:21.0838 5076 [ DAB748AE0439955ED2FA22357533DDDB ] C:\Windows\system32\basesrv.dll
20:24:21.0884 5076 [ 48CB4FDBCAAEAC7BCE2F5941545FF071 ] C:\Windows\system32\winsrv.dll
20:24:21.0900 5076 [ 48CB4FDBCAAEAC7BCE2F5941545FF071 ] C:\Windows\system32\winsrv.dll
20:24:21.0916 5076 [ 364455805E64882844EE9ACB72522830 ] C:\Windows\system32\sxssrv.dll
20:24:21.0947 5076 [ 5F1B6A9C35D3D5CA72D6D6FDEF9747D6 ] C:\Windows\system32\services.exe
20:24:21.0962 5076 [Global] - ok
20:24:21.0962 5076 ================ Scan MBR ==================================
20:24:21.0978 5076 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
20:24:22.0430 5076 \Device\Harddisk0\DR0 - ok
20:24:22.0430 5076 ================ Scan VBR ==================================
20:24:22.0430 5076 [ F3E73F6ADBFBA521D2C4E94861EF24E0 ] \Device\Harddisk0\DR0\Partition1
20:24:22.0430 5076 \Device\Harddisk0\DR0\Partition1 - ok
20:24:22.0446 5076 [ CDD3471735BC81E7EA7DF801F1F0453E ] \Device\Harddisk0\DR0\Partition2
20:24:22.0446 5076 \Device\Harddisk0\DR0\Partition2 - ok
20:24:22.0446 5076 ============================================================
20:24:22.0446 5076 Scan finished
20:24:22.0446 5076 ============================================================
20:24:22.0446 4736 Detected object count: 0
20:24:22.0446 4736 Actual detected object count: 0
20:24:58.0532 5904 Deinitialize success
OS Windows 11 Professional (x64) (24H2) / MB ASUS TUF GAMING B650M-PLUS / CPU AMD Ryzen 5 7600/ RAM G.SKILL 32GB KIT DDR5 6000MT/s CL36 AMD EXPO / GPU ASUS DUAL RTX 4060 GAMING OC /
SSD SSD WD Black SN770 NVMe 1TB / PSU Seasonic Core GX-650 ATX 3
SSD SSD WD Black SN770 NVMe 1TB / PSU Seasonic Core GX-650 ATX 3
-
- Level 3
- Příspěvky: 542
- Registrován: červenec 12
- Bydliště: Severní Morava
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu (generálka)
ComboFix 12-11-06.03 - Roman 06.11.2012 20:35:27.5.2 - x86
Microsoft Windows 7 Ultimate 6.1.7601.1.1250.420.1029.18.3327.2262 [GMT 1:00]
Spuštěný z: c:\users\Roman\Desktop\ComboFix\ComboFix.exe
AV: avast! Internet Security *Disabled/Outdated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
FW: avast! Internet Security *Disabled* {131692B0-0864-D491-4E21-3A3A1D8BBB47}
SP: avast! Internet Security *Disabled/Outdated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\Roman\AppData\Roaming\inst.exe
c:\users\Roman\AppData\Roaming\Microsoft\Windows\Recent\SKIDROW.url
c:\users\Roman\AppData\Roaming\updates
c:\users\Roman\AppData\Roaming\updates\GoogleUpdate.exe
c:\users\Roman\AppData\Roaming\vso_ts_preview.xml
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-10-06 do 2012-11-06 )))))))))))))))))))))))))))))))
.
.
2012-11-06 19:40 . 2012-11-06 19:41 -------- d-----w- c:\users\Roman\AppData\Local\temp
2012-11-06 19:40 . 2012-11-06 19:40 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
2012-11-06 19:40 . 2012-11-06 19:40 -------- d-----w- c:\users\Public\AppData\Local\temp
2012-11-06 19:40 . 2012-11-06 19:40 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-11-05 19:43 . 2012-11-05 19:48 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2012-11-05 19:43 . 2012-09-29 18:54 22856 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-11-05 05:57 . 2012-04-05 12:08 31552 ----a-w- c:\windows\system32\TURegOpt.exe
2012-11-05 05:57 . 2012-04-05 12:08 21312 ----a-w- c:\windows\system32\authuitu.dll
2012-11-05 05:57 . 2012-11-05 05:57 -------- d-----w- c:\program files\TuneUp Utilities 2012
2012-11-05 05:56 . 2012-11-05 05:56 -------- d-sh--w- c:\programdata\{32364CEA-7855-4A3C-B674-53D8E9B97936}
2012-11-05 05:56 . 2012-11-05 05:56 -------- d--h--w- c:\programdata\Common Files
2012-11-03 04:17 . 2012-10-12 05:56 6918632 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{3F4B8960-2CD3-418F-82B4-2A03219DFB28}\mpengine.dll
2012-11-02 22:38 . 2012-11-02 22:38 -------- d-----w- c:\users\Roman\AppData\Local\Programs
2012-10-31 20:30 . 2012-10-31 20:31 -------- d-----w- c:\users\Roman\AppData\Local\Microsoft Games
2012-10-26 20:24 . 2012-10-02 22:20 888168 ----a-w- c:\windows\system32\nvdispgenco32.dll
2012-10-26 20:24 . 2012-10-02 22:20 7697768 ----a-w- c:\windows\system32\nvcuda.dll
2012-10-26 20:24 . 2012-10-02 22:20 2574696 ----a-w- c:\windows\system32\nvcuvid.dll
2012-10-26 20:24 . 2012-10-02 22:20 19906920 ----a-w- c:\windows\system32\nvoglv32.dll
2012-10-26 20:24 . 2012-10-02 22:20 1867112 ----a-w- c:\windows\system32\nvcuvenc.dll
2012-10-26 20:24 . 2012-10-02 22:20 10837352 ----a-w- c:\windows\system32\drivers\nvlddmkm.sys
2012-10-26 20:24 . 2012-10-02 22:20 6127464 ----a-w- c:\windows\system32\nvopencl.dll
2012-10-26 20:24 . 2012-10-02 22:20 17559912 ----a-w- c:\windows\system32\nvcompiler.dll
2012-10-26 20:19 . 2012-10-26 20:19 -------- d-----w- c:\program files\Common Files\Java
2012-10-26 20:18 . 2012-10-26 20:18 93672 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
2012-10-26 20:18 . 2012-10-26 20:18 -------- d-----w- c:\program files\Java
2012-10-26 17:08 . 2012-10-26 17:10 -------- d-----w- c:\users\Roman\AppData\Roaming\Origin
2012-10-26 17:08 . 2012-10-26 17:08 -------- d-----w- c:\program files\Origin Games
2012-10-26 17:08 . 2012-10-26 17:08 -------- d-----w- c:\users\Roman\AppData\Local\Origin
2012-10-26 17:07 . 2012-10-26 17:07 -------- d-----w- c:\programdata\Electronic Arts
2012-10-26 17:07 . 2012-10-27 10:34 -------- d-----w- c:\program files\Origin
2012-10-21 13:02 . 2012-10-21 13:02 -------- d-----w- c:\users\Default\AppData\Local\Microsoft Help
2012-10-21 12:28 . 2012-10-21 12:28 -------- d-----w- c:\program files\Microsoft Synchronization Services
2012-10-21 12:28 . 2012-10-21 12:28 -------- d-----w- c:\program files\Microsoft Sync Framework
2012-10-21 12:27 . 2012-10-21 12:27 -------- d-----w- c:\program files\Microsoft Visual Studio 8
2012-10-21 12:26 . 2012-10-21 12:26 -------- d-----w- c:\program files\Microsoft Analysis Services
2012-10-21 12:26 . 2012-10-21 12:50 -------- d-----w- c:\users\Roman\AppData\Local\Microsoft Help
2012-10-21 12:25 . 2012-10-22 17:30 -------- d-----w- c:\programdata\Microsoft Help
2012-10-21 12:25 . 2012-10-21 12:25 -------- d-----r- C:\MSOCache
2012-10-20 15:29 . 2012-10-26 17:10 -------- d-----w- c:\programdata\Origin
2012-10-19 18:16 . 2012-10-19 18:16 -------- d-----w- c:\users\Roman\AppData\Local\ElevatedDiagnostics
2012-10-17 09:22 . 2012-10-17 09:22 -------- d--h--r- c:\users\Roman\AppData\Roaming\SecuROM
2012-10-17 08:50 . 2012-10-20 18:51 -------- d-----w- c:\program files\AGEIA Technologies
2012-10-09 19:06 . 2012-10-09 19:06 -------- d-----w- c:\program files\DsNET Corp
2012-10-09 19:06 . 2012-10-09 19:06 -------- d-----w- c:\programdata\Ask
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-11-06 19:30 . 2012-07-24 03:47 5110 ----a-w- c:\windows\system32\PerfStringBackup.TMP
2012-10-29 14:00 . 2012-03-20 09:01 139128 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2012-10-29 14:00 . 2012-03-20 09:01 280600 ----a-w- c:\windows\system32\PnkBstrB.xtr
2012-10-29 14:00 . 2012-03-15 17:46 280600 ----a-w- c:\windows\system32\PnkBstrB.exe
2012-10-28 13:18 . 2012-03-15 17:46 280600 ----a-w- c:\windows\system32\PnkBstrB.ex0
2012-10-26 20:18 . 2012-03-16 17:09 746984 ----a-w- c:\windows\system32\deployJava1.dll
2012-10-24 18:32 . 2012-03-15 17:46 76888 ----a-w- c:\windows\system32\PnkBstrA.exe
2012-10-08 18:48 . 2012-03-29 12:50 696760 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2012-10-08 18:48 . 2012-03-14 21:23 73656 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-10-02 22:20 . 2012-03-17 12:42 1009512 ----a-w- c:\windows\system32\nvdispco32.dll
2012-10-02 22:20 . 2009-07-13 22:09 12501352 ----a-w- c:\windows\system32\nvwgf2um.dll
2012-10-02 22:20 . 2009-06-10 10:33 2428776 ----a-w- c:\windows\system32\nvapi.dll
2012-10-02 22:20 . 2009-06-10 10:33 15309160 ----a-w- c:\windows\system32\nvd3dum.dll
2012-10-02 19:29 . 2009-06-10 07:34 645992 ----a-w- c:\windows\system32\nvvsvc.exe
2012-10-02 19:29 . 2009-06-10 07:34 62312 ----a-w- c:\windows\system32\nvshext.dll
2012-10-02 19:29 . 2009-06-10 07:34 2557288 ----a-w- c:\windows\system32\nvsvcr.dll
2012-10-02 19:29 . 2009-06-10 07:34 108392 ----a-w- c:\windows\system32\nvmctray.dll
2012-10-02 19:29 . 2009-06-10 07:34 2853224 ----a-w- c:\windows\system32\nvsvc.dll
2012-10-02 19:28 . 2009-06-10 07:34 3965288 ----a-w- c:\windows\system32\nvcpl.dll
2012-10-02 11:15 . 2012-10-02 11:15 430952 ----a-w- c:\windows\system32\nvStreaming.exe
2012-08-24 06:59 . 2012-09-22 08:41 1800704 ----a-w- c:\windows\system32\jscript9.dll
2012-08-24 06:51 . 2012-09-22 08:41 1129472 ----a-w- c:\windows\system32\wininet.dll
2012-08-24 06:51 . 2012-09-22 08:41 1427968 ----a-w- c:\windows\system32\inetcpl.cpl
2012-08-24 06:47 . 2012-09-22 08:41 142848 ----a-w- c:\windows\system32\ieUnatt.exe
2012-08-24 06:47 . 2012-09-22 08:41 420864 ----a-w- c:\windows\system32\vbscript.dll
2012-08-24 06:43 . 2012-09-22 08:41 2382848 ----a-w- c:\windows\system32\mshtml.tlb
2012-08-22 17:16 . 2012-09-12 15:46 1292144 ----a-w- c:\windows\system32\drivers\tcpip.sys
2012-08-22 17:16 . 2012-09-12 15:46 712048 ----a-w- c:\windows\system32\drivers\ndis.sys
2012-08-22 17:16 . 2012-09-12 15:46 240496 ----a-w- c:\windows\system32\drivers\netio.sys
2012-08-22 17:16 . 2012-09-12 15:46 187760 ----a-w- c:\windows\system32\drivers\FWPKCLNT.SYS
2012-08-21 20:12 . 2012-09-26 04:03 245760 ----a-w- c:\windows\system32\OxpsConverter.exe
2012-08-11 08:16 . 2012-03-24 18:26 47360 ----a-w- c:\users\Roman\AppData\Roaming\pcouffin.sys
2012-07-14 00:15 . 2012-07-28 09:43 136672 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2011-11-28 18:01 122512 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2011-11-28 3744552]
"HDAudDeck"="c:\program files\VIA\VIAudioi\VDeck\VDeck.exe" [2012-05-11 3920496]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2012-10-02 3965288]
"P17RunE"="P17RunE.dll" [2008-03-28 14848]
"SwitchBoard"="c:\program files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe" [2010-02-19 517096]
"PAC7302_Monitor"="c:\windows\PixArt\PAC7302\Monitor.exe" [2007-12-10 323584]
"CTSysVol"="c:\program files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe" [2005-10-31 57344]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"mixer1"=wdmaud.drv
.
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
"CompuCare Check for updates"=c:\users\Roman\AppData\Roaming\SuperPump\updater.exe
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" -autorun
"Facebook Update"="c:\users\Roman\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
"Skype"="c:\program files\Skype\Phone\Skype.exe" /minimized /regrun
"Sidebar"=c:\program files\Windows Sidebar\sidebar.exe /autoRun
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"OPSE reminder"="c:\program files\ScanSoft\OmniPageSE2.0\EregEng\Ereg.exe" -r "c:\program files\ScanSoft\OmniPageSE2.0\EregEng\ereg.ini"
"AdobeCS5ServiceManager"="c:\program files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
"AdobeAAMUpdater-1.0"="c:\program files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe"
"BCSSync"="c:\program files\Microsoft Office\Office14\BCSSync.exe" /DelayServices
"OpwareSE2"="c:\program files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe"
.
R2 avast! Firewall;avast! Firewall;c:\program files\AVAST Software\Avast\afwServ.exe [x]
R2 Expresso Updater;Expresso Updater;c:\program files\Expresso\ExtensionUpdaterService.exe [x]
R2 MBAMService;MBAMService;c:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [x]
R2 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [x]
R3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [x]
R3 SwitchBoard;SwitchBoard;c:\program files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [x]
R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys [x]
R3 terminpt;Microsoft Remote Desktop Input Driver;c:\windows\system32\drivers\terminpt.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [x]
R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [x]
S0 aswNdis;avast! Firewall NDIS Filter Service;c:\windows\system32\DRIVERS\aswNdis.sys [x]
S0 aswNdis2;avast! Firewall Core Firewall Service; [x]
S0 sptd;sptd;c:\windows\\SystemRoot\System32\Drivers\sptd.sys [x]
S1 aswFW;avast! TDI Firewall driver; [x]
S1 aswSnx;aswSnx; [x]
S1 aswSP;aswSP; [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [x]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [x]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x]
S2 TeamViewer7;TeamViewer 7;c:\program files\TeamViewer\Version7\TeamViewer_Service.exe [x]
S2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files\TuneUp Utilities 2012\TuneUpUtilitiesService32.exe [x]
S2 VIAKaraokeService;VIA Karaoke digital mixer Service;c:\windows\system32\viakaraokesrv.exe [x]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [x]
S3 pcouffin;VSO Software pcouffin;c:\windows\system32\Drivers\pcouffin.sys [x]
S3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files\TuneUp Utilities 2012\TuneUpUtilitiesDriver32.sys [x]
S3 VIAHdAudAddService;VIA High Definition Audio Driver Service;c:\windows\system32\drivers\viahduaa.sys [x]
.
.
Obsah adresáře 'Naplánované úlohy'
.
2012-11-06 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-03-29 18:48]
.
2012-11-06 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2741153547-1710534885-1317902625-1000Core.job
- c:\users\Roman\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-08-06 12:19]
.
2012-11-06 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2741153547-1710534885-1317902625-1000UA.job
- c:\users\Roman\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-08-06 12:19]
.
2012-11-06 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2012-11-05 05:27]
.
2012-11-06 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2012-11-05 05:27]
.
.
------- Doplňkový sken -------
.
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~4\Office14\EXCEL.EXE/3000
IE: Easy-WebPrint Add To Print List - c:\program files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
IE: Easy-WebPrint High Speed Print - c:\program files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
IE: Easy-WebPrint Preview - c:\program files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
IE: Easy-WebPrint Print - c:\program files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
IE: Od&eslat do aplikace OneNote - c:\progra~1\MICROS~4\Office14\ONBttnIE.dll/105
LSP: %SYSTEMROOT%\system32\nvLsp.dll
Trusted Zone: mojebanka.cz\*
Trusted Zone: mojebanka.cz\*
TCP: DhcpNameServer = 10.0.0.138
FF - ProfilePath - c:\users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\i50uwx3c.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - www.seznam.cz
FF - ExtSQL: !HIDDEN! 2012-05-18 21:22; support@2yourface.com; c:\program files\2YourFace\ffextension
FF - user.js: network.http.max-persistent-connections-per-server - 4
FF - user.js: nglayout.initialpaint.delay - 600
FF - user.js: content.notify.interval - 600000
FF - user.js: content.max.tokenizing.time - 1800000
FF - user.js: content.switch.threshold - 600000
.
.
Celkový čas: 2012-11-06 20:42:27
ComboFix-quarantined-files.txt 2012-11-06 19:42
.
Před spuštěním: Volných bajtů: 11 569 434 624
Po spuštění: Volných bajtů: 11 699 699 712
.
- - End Of File - - 338DA0B82F6A080B749F9AF77875DCD8
Microsoft Windows 7 Ultimate 6.1.7601.1.1250.420.1029.18.3327.2262 [GMT 1:00]
Spuštěný z: c:\users\Roman\Desktop\ComboFix\ComboFix.exe
AV: avast! Internet Security *Disabled/Outdated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
FW: avast! Internet Security *Disabled* {131692B0-0864-D491-4E21-3A3A1D8BBB47}
SP: avast! Internet Security *Disabled/Outdated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\Roman\AppData\Roaming\inst.exe
c:\users\Roman\AppData\Roaming\Microsoft\Windows\Recent\SKIDROW.url
c:\users\Roman\AppData\Roaming\updates
c:\users\Roman\AppData\Roaming\updates\GoogleUpdate.exe
c:\users\Roman\AppData\Roaming\vso_ts_preview.xml
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-10-06 do 2012-11-06 )))))))))))))))))))))))))))))))
.
.
2012-11-06 19:40 . 2012-11-06 19:41 -------- d-----w- c:\users\Roman\AppData\Local\temp
2012-11-06 19:40 . 2012-11-06 19:40 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
2012-11-06 19:40 . 2012-11-06 19:40 -------- d-----w- c:\users\Public\AppData\Local\temp
2012-11-06 19:40 . 2012-11-06 19:40 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-11-05 19:43 . 2012-11-05 19:48 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2012-11-05 19:43 . 2012-09-29 18:54 22856 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-11-05 05:57 . 2012-04-05 12:08 31552 ----a-w- c:\windows\system32\TURegOpt.exe
2012-11-05 05:57 . 2012-04-05 12:08 21312 ----a-w- c:\windows\system32\authuitu.dll
2012-11-05 05:57 . 2012-11-05 05:57 -------- d-----w- c:\program files\TuneUp Utilities 2012
2012-11-05 05:56 . 2012-11-05 05:56 -------- d-sh--w- c:\programdata\{32364CEA-7855-4A3C-B674-53D8E9B97936}
2012-11-05 05:56 . 2012-11-05 05:56 -------- d--h--w- c:\programdata\Common Files
2012-11-03 04:17 . 2012-10-12 05:56 6918632 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{3F4B8960-2CD3-418F-82B4-2A03219DFB28}\mpengine.dll
2012-11-02 22:38 . 2012-11-02 22:38 -------- d-----w- c:\users\Roman\AppData\Local\Programs
2012-10-31 20:30 . 2012-10-31 20:31 -------- d-----w- c:\users\Roman\AppData\Local\Microsoft Games
2012-10-26 20:24 . 2012-10-02 22:20 888168 ----a-w- c:\windows\system32\nvdispgenco32.dll
2012-10-26 20:24 . 2012-10-02 22:20 7697768 ----a-w- c:\windows\system32\nvcuda.dll
2012-10-26 20:24 . 2012-10-02 22:20 2574696 ----a-w- c:\windows\system32\nvcuvid.dll
2012-10-26 20:24 . 2012-10-02 22:20 19906920 ----a-w- c:\windows\system32\nvoglv32.dll
2012-10-26 20:24 . 2012-10-02 22:20 1867112 ----a-w- c:\windows\system32\nvcuvenc.dll
2012-10-26 20:24 . 2012-10-02 22:20 10837352 ----a-w- c:\windows\system32\drivers\nvlddmkm.sys
2012-10-26 20:24 . 2012-10-02 22:20 6127464 ----a-w- c:\windows\system32\nvopencl.dll
2012-10-26 20:24 . 2012-10-02 22:20 17559912 ----a-w- c:\windows\system32\nvcompiler.dll
2012-10-26 20:19 . 2012-10-26 20:19 -------- d-----w- c:\program files\Common Files\Java
2012-10-26 20:18 . 2012-10-26 20:18 93672 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
2012-10-26 20:18 . 2012-10-26 20:18 -------- d-----w- c:\program files\Java
2012-10-26 17:08 . 2012-10-26 17:10 -------- d-----w- c:\users\Roman\AppData\Roaming\Origin
2012-10-26 17:08 . 2012-10-26 17:08 -------- d-----w- c:\program files\Origin Games
2012-10-26 17:08 . 2012-10-26 17:08 -------- d-----w- c:\users\Roman\AppData\Local\Origin
2012-10-26 17:07 . 2012-10-26 17:07 -------- d-----w- c:\programdata\Electronic Arts
2012-10-26 17:07 . 2012-10-27 10:34 -------- d-----w- c:\program files\Origin
2012-10-21 13:02 . 2012-10-21 13:02 -------- d-----w- c:\users\Default\AppData\Local\Microsoft Help
2012-10-21 12:28 . 2012-10-21 12:28 -------- d-----w- c:\program files\Microsoft Synchronization Services
2012-10-21 12:28 . 2012-10-21 12:28 -------- d-----w- c:\program files\Microsoft Sync Framework
2012-10-21 12:27 . 2012-10-21 12:27 -------- d-----w- c:\program files\Microsoft Visual Studio 8
2012-10-21 12:26 . 2012-10-21 12:26 -------- d-----w- c:\program files\Microsoft Analysis Services
2012-10-21 12:26 . 2012-10-21 12:50 -------- d-----w- c:\users\Roman\AppData\Local\Microsoft Help
2012-10-21 12:25 . 2012-10-22 17:30 -------- d-----w- c:\programdata\Microsoft Help
2012-10-21 12:25 . 2012-10-21 12:25 -------- d-----r- C:\MSOCache
2012-10-20 15:29 . 2012-10-26 17:10 -------- d-----w- c:\programdata\Origin
2012-10-19 18:16 . 2012-10-19 18:16 -------- d-----w- c:\users\Roman\AppData\Local\ElevatedDiagnostics
2012-10-17 09:22 . 2012-10-17 09:22 -------- d--h--r- c:\users\Roman\AppData\Roaming\SecuROM
2012-10-17 08:50 . 2012-10-20 18:51 -------- d-----w- c:\program files\AGEIA Technologies
2012-10-09 19:06 . 2012-10-09 19:06 -------- d-----w- c:\program files\DsNET Corp
2012-10-09 19:06 . 2012-10-09 19:06 -------- d-----w- c:\programdata\Ask
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-11-06 19:30 . 2012-07-24 03:47 5110 ----a-w- c:\windows\system32\PerfStringBackup.TMP
2012-10-29 14:00 . 2012-03-20 09:01 139128 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2012-10-29 14:00 . 2012-03-20 09:01 280600 ----a-w- c:\windows\system32\PnkBstrB.xtr
2012-10-29 14:00 . 2012-03-15 17:46 280600 ----a-w- c:\windows\system32\PnkBstrB.exe
2012-10-28 13:18 . 2012-03-15 17:46 280600 ----a-w- c:\windows\system32\PnkBstrB.ex0
2012-10-26 20:18 . 2012-03-16 17:09 746984 ----a-w- c:\windows\system32\deployJava1.dll
2012-10-24 18:32 . 2012-03-15 17:46 76888 ----a-w- c:\windows\system32\PnkBstrA.exe
2012-10-08 18:48 . 2012-03-29 12:50 696760 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2012-10-08 18:48 . 2012-03-14 21:23 73656 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-10-02 22:20 . 2012-03-17 12:42 1009512 ----a-w- c:\windows\system32\nvdispco32.dll
2012-10-02 22:20 . 2009-07-13 22:09 12501352 ----a-w- c:\windows\system32\nvwgf2um.dll
2012-10-02 22:20 . 2009-06-10 10:33 2428776 ----a-w- c:\windows\system32\nvapi.dll
2012-10-02 22:20 . 2009-06-10 10:33 15309160 ----a-w- c:\windows\system32\nvd3dum.dll
2012-10-02 19:29 . 2009-06-10 07:34 645992 ----a-w- c:\windows\system32\nvvsvc.exe
2012-10-02 19:29 . 2009-06-10 07:34 62312 ----a-w- c:\windows\system32\nvshext.dll
2012-10-02 19:29 . 2009-06-10 07:34 2557288 ----a-w- c:\windows\system32\nvsvcr.dll
2012-10-02 19:29 . 2009-06-10 07:34 108392 ----a-w- c:\windows\system32\nvmctray.dll
2012-10-02 19:29 . 2009-06-10 07:34 2853224 ----a-w- c:\windows\system32\nvsvc.dll
2012-10-02 19:28 . 2009-06-10 07:34 3965288 ----a-w- c:\windows\system32\nvcpl.dll
2012-10-02 11:15 . 2012-10-02 11:15 430952 ----a-w- c:\windows\system32\nvStreaming.exe
2012-08-24 06:59 . 2012-09-22 08:41 1800704 ----a-w- c:\windows\system32\jscript9.dll
2012-08-24 06:51 . 2012-09-22 08:41 1129472 ----a-w- c:\windows\system32\wininet.dll
2012-08-24 06:51 . 2012-09-22 08:41 1427968 ----a-w- c:\windows\system32\inetcpl.cpl
2012-08-24 06:47 . 2012-09-22 08:41 142848 ----a-w- c:\windows\system32\ieUnatt.exe
2012-08-24 06:47 . 2012-09-22 08:41 420864 ----a-w- c:\windows\system32\vbscript.dll
2012-08-24 06:43 . 2012-09-22 08:41 2382848 ----a-w- c:\windows\system32\mshtml.tlb
2012-08-22 17:16 . 2012-09-12 15:46 1292144 ----a-w- c:\windows\system32\drivers\tcpip.sys
2012-08-22 17:16 . 2012-09-12 15:46 712048 ----a-w- c:\windows\system32\drivers\ndis.sys
2012-08-22 17:16 . 2012-09-12 15:46 240496 ----a-w- c:\windows\system32\drivers\netio.sys
2012-08-22 17:16 . 2012-09-12 15:46 187760 ----a-w- c:\windows\system32\drivers\FWPKCLNT.SYS
2012-08-21 20:12 . 2012-09-26 04:03 245760 ----a-w- c:\windows\system32\OxpsConverter.exe
2012-08-11 08:16 . 2012-03-24 18:26 47360 ----a-w- c:\users\Roman\AppData\Roaming\pcouffin.sys
2012-07-14 00:15 . 2012-07-28 09:43 136672 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2011-11-28 18:01 122512 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2011-11-28 3744552]
"HDAudDeck"="c:\program files\VIA\VIAudioi\VDeck\VDeck.exe" [2012-05-11 3920496]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2012-10-02 3965288]
"P17RunE"="P17RunE.dll" [2008-03-28 14848]
"SwitchBoard"="c:\program files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe" [2010-02-19 517096]
"PAC7302_Monitor"="c:\windows\PixArt\PAC7302\Monitor.exe" [2007-12-10 323584]
"CTSysVol"="c:\program files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe" [2005-10-31 57344]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"mixer1"=wdmaud.drv
.
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
"CompuCare Check for updates"=c:\users\Roman\AppData\Roaming\SuperPump\updater.exe
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" -autorun
"Facebook Update"="c:\users\Roman\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
"Skype"="c:\program files\Skype\Phone\Skype.exe" /minimized /regrun
"Sidebar"=c:\program files\Windows Sidebar\sidebar.exe /autoRun
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"OPSE reminder"="c:\program files\ScanSoft\OmniPageSE2.0\EregEng\Ereg.exe" -r "c:\program files\ScanSoft\OmniPageSE2.0\EregEng\ereg.ini"
"AdobeCS5ServiceManager"="c:\program files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
"AdobeAAMUpdater-1.0"="c:\program files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe"
"BCSSync"="c:\program files\Microsoft Office\Office14\BCSSync.exe" /DelayServices
"OpwareSE2"="c:\program files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe"
.
R2 avast! Firewall;avast! Firewall;c:\program files\AVAST Software\Avast\afwServ.exe [x]
R2 Expresso Updater;Expresso Updater;c:\program files\Expresso\ExtensionUpdaterService.exe [x]
R2 MBAMService;MBAMService;c:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [x]
R2 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [x]
R3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [x]
R3 SwitchBoard;SwitchBoard;c:\program files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [x]
R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys [x]
R3 terminpt;Microsoft Remote Desktop Input Driver;c:\windows\system32\drivers\terminpt.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [x]
R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [x]
S0 aswNdis;avast! Firewall NDIS Filter Service;c:\windows\system32\DRIVERS\aswNdis.sys [x]
S0 aswNdis2;avast! Firewall Core Firewall Service; [x]
S0 sptd;sptd;c:\windows\\SystemRoot\System32\Drivers\sptd.sys [x]
S1 aswFW;avast! TDI Firewall driver; [x]
S1 aswSnx;aswSnx; [x]
S1 aswSP;aswSP; [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [x]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [x]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x]
S2 TeamViewer7;TeamViewer 7;c:\program files\TeamViewer\Version7\TeamViewer_Service.exe [x]
S2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files\TuneUp Utilities 2012\TuneUpUtilitiesService32.exe [x]
S2 VIAKaraokeService;VIA Karaoke digital mixer Service;c:\windows\system32\viakaraokesrv.exe [x]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [x]
S3 pcouffin;VSO Software pcouffin;c:\windows\system32\Drivers\pcouffin.sys [x]
S3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files\TuneUp Utilities 2012\TuneUpUtilitiesDriver32.sys [x]
S3 VIAHdAudAddService;VIA High Definition Audio Driver Service;c:\windows\system32\drivers\viahduaa.sys [x]
.
.
Obsah adresáře 'Naplánované úlohy'
.
2012-11-06 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-03-29 18:48]
.
2012-11-06 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2741153547-1710534885-1317902625-1000Core.job
- c:\users\Roman\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-08-06 12:19]
.
2012-11-06 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2741153547-1710534885-1317902625-1000UA.job
- c:\users\Roman\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-08-06 12:19]
.
2012-11-06 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2012-11-05 05:27]
.
2012-11-06 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2012-11-05 05:27]
.
.
------- Doplňkový sken -------
.
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~4\Office14\EXCEL.EXE/3000
IE: Easy-WebPrint Add To Print List - c:\program files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
IE: Easy-WebPrint High Speed Print - c:\program files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
IE: Easy-WebPrint Preview - c:\program files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
IE: Easy-WebPrint Print - c:\program files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
IE: Od&eslat do aplikace OneNote - c:\progra~1\MICROS~4\Office14\ONBttnIE.dll/105
LSP: %SYSTEMROOT%\system32\nvLsp.dll
Trusted Zone: mojebanka.cz\*
Trusted Zone: mojebanka.cz\*
TCP: DhcpNameServer = 10.0.0.138
FF - ProfilePath - c:\users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\i50uwx3c.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - www.seznam.cz
FF - ExtSQL: !HIDDEN! 2012-05-18 21:22; support@2yourface.com; c:\program files\2YourFace\ffextension
FF - user.js: network.http.max-persistent-connections-per-server - 4
FF - user.js: nglayout.initialpaint.delay - 600
FF - user.js: content.notify.interval - 600000
FF - user.js: content.max.tokenizing.time - 1800000
FF - user.js: content.switch.threshold - 600000
.
.
Celkový čas: 2012-11-06 20:42:27
ComboFix-quarantined-files.txt 2012-11-06 19:42
.
Před spuštěním: Volných bajtů: 11 569 434 624
Po spuštění: Volných bajtů: 11 699 699 712
.
- - End Of File - - 338DA0B82F6A080B749F9AF77875DCD8
OS Windows 11 Professional (x64) (24H2) / MB ASUS TUF GAMING B650M-PLUS / CPU AMD Ryzen 5 7600/ RAM G.SKILL 32GB KIT DDR5 6000MT/s CL36 AMD EXPO / GPU ASUS DUAL RTX 4060 GAMING OC /
SSD SSD WD Black SN770 NVMe 1TB / PSU Seasonic Core GX-650 ATX 3
SSD SSD WD Black SN770 NVMe 1TB / PSU Seasonic Core GX-650 ATX 3
- Žbeky
- Moderátor
-
Guru Level 13
- Příspěvky: 22288
- Registrován: květen 08
- Bydliště: Vsetín - Pardubice
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu (generálka)
Otevři si Poznámkový blok (Start -> Spustit... a napiš do okna Notepad a dej Ok.
Zkopíruj do něj následující celý text označený zeleně:
Poznámka: Nepoužij k označení skriptu funkci VYBRAT VŠE
Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.
Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe a když se oba soubory překryjí, skript upusť.
- Automaticky se spustí ComboFix
- Vlož sem log, který vyběhne v závěru čistícího procesu
Zkopíruj do něj následující celý text označený zeleně:
Poznámka: Nepoužij k označení skriptu funkci VYBRAT VŠE
Kód: Vybrat vše
KillAll::
DirLook::
c:\programdata\{32364CEA-7855-4A3C-B674-53D8E9B97936}
c:\users\Roman\AppData\Local\Programs
Folder::
c:\programdata\Ask
c:\program files\Skype\Updater
c:\program files\Google\Update
File::
c:\windows\system32\PerfStringBackup.TMP
c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2741153547-1710534885-1317902625-1000Core.job
c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2741153547-1710534885-1317902625-1000UA.job
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
Driver::
SkypeUpdate
Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.
Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe a když se oba soubory překryjí, skript upusť.
- Automaticky se spustí ComboFix
- Vlož sem log, který vyběhne v závěru čistícího procesu
V SZ řeším jen záležitosti týkající se fóra. Na prosby a žádosti o technickou podporu nereaguji. Díky za pochopení.
HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra
HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra
-
- Level 3
- Příspěvky: 542
- Registrován: červenec 12
- Bydliště: Severní Morava
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu (generálka)
ComboFix 12-11-06.03 - Roman 06.11.2012 22:39:12.6.2 - x86
Microsoft Windows 7 Ultimate 6.1.7601.1.1250.420.1029.18.3327.2330 [GMT 1:00]
Spuštěný z: c:\users\Roman\Desktop\ComboFix\ComboFix.exe
Použité ovládací přepínače :: c:\users\Roman\Desktop\CFScript.txt\CFScript.txt
AV: avast! Internet Security *Disabled/Outdated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
FW: avast! Internet Security *Disabled* {131692B0-0864-D491-4E21-3A3A1D8BBB47}
SP: avast! Internet Security *Disabled/Outdated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
FILE ::
"c:\windows\system32\PerfStringBackup.TMP"
"c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2741153547-1710534885-1317902625-1000Core.job"
"c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2741153547-1710534885-1317902625-1000UA.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineCore.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineUA.job"
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files\Google\Update
c:\program files\Google\Update\1.3.21.124\GoogleCrashHandler.exe
c:\program files\Google\Update\1.3.21.124\GoogleCrashHandler64.exe
c:\program files\Google\Update\1.3.21.124\GoogleUpdate.exe
c:\program files\Google\Update\1.3.21.124\GoogleUpdateBroker.exe
c:\program files\Google\Update\1.3.21.124\GoogleUpdateHelper.msi
c:\program files\Google\Update\1.3.21.124\GoogleUpdateOnDemand.exe
c:\program files\Google\Update\1.3.21.124\GoogleUpdateSetup.exe
c:\program files\Google\Update\1.3.21.124\goopdate.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_am.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_ar.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_bg.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_bn.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_ca.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_cs.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_da.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_de.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_el.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_en-GB.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_en.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_es-419.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_es.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_et.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_fa.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_fi.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_fil.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_fr.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_gu.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_hi.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_hr.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_hu.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_id.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_is.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_it.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_iw.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_ja.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_kn.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_ko.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_lt.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_lv.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_ml.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_mr.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_ms.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_nl.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_no.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_pl.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_pt-BR.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_pt-PT.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_ro.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_ru.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_sk.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_sl.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_sr.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_sv.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_sw.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_ta.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_te.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_th.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_tr.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_uk.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_ur.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_vi.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_zh-CN.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_zh-TW.dll
c:\program files\Google\Update\1.3.21.124\npGoogleUpdate3.dll
c:\program files\Google\Update\1.3.21.124\psmachine.dll
c:\program files\Google\Update\1.3.21.124\psuser.dll
c:\program files\Google\Update\Download\{2BF2CA35-CCAF-4E58-BAB7-4163BFA03B88}\0.0.0.0\GoogleEarth-Win-Plugin-7.0.1.8244.exe
c:\program files\Google\Update\Download\{61EB309F-9C2A-4AC1-A4AA-C2958EA8DFE4}\GoogleUpdateSetup.exe
c:\program files\Google\Update\GoogleUpdate.exe
c:\program files\Skype\Updater
c:\program files\Skype\Updater\Updater.dll
c:\program files\Skype\Updater\Updater.exe
c:\programdata\Ask
c:\programdata\Ask\APN-Stub\ATU2\APNIC.dll
c:\windows\system32\PerfStringBackup.TMP
c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2741153547-1710534885-1317902625-1000Core.job
c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2741153547-1710534885-1317902625-1000UA.job
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Service_SkypeUpdate
-------\Service_gupdate
-------\Service_gupdatem
-------\Service_gupdate
-------\Service_gupdatem
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-10-06 do 2012-11-06 )))))))))))))))))))))))))))))))
.
.
2012-11-06 21:43 . 2012-11-06 21:45 -------- d-----w- c:\users\Roman\AppData\Local\temp
2012-11-06 21:43 . 2012-11-06 21:43 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
2012-11-06 21:43 . 2012-11-06 21:43 -------- d-----w- c:\users\Public\AppData\Local\temp
2012-11-06 21:43 . 2012-11-06 21:43 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-11-06 19:57 . 2012-11-06 19:57 56200 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{3F4B8960-2CD3-418F-82B4-2A03219DFB28}\offreg.dll
2012-11-05 19:43 . 2012-11-05 19:48 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2012-11-05 19:43 . 2012-09-29 18:54 22856 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-11-05 05:57 . 2012-04-05 12:08 31552 ----a-w- c:\windows\system32\TURegOpt.exe
2012-11-05 05:57 . 2012-04-05 12:08 21312 ----a-w- c:\windows\system32\authuitu.dll
2012-11-05 05:57 . 2012-11-05 05:57 -------- d-----w- c:\program files\TuneUp Utilities 2012
2012-11-05 05:56 . 2012-11-05 05:56 -------- d-sh--w- c:\programdata\{32364CEA-7855-4A3C-B674-53D8E9B97936}
2012-11-05 05:56 . 2012-11-05 05:56 -------- d--h--w- c:\programdata\Common Files
2012-11-03 04:17 . 2012-10-12 05:56 6918632 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{3F4B8960-2CD3-418F-82B4-2A03219DFB28}\mpengine.dll
2012-11-02 22:38 . 2012-11-02 22:38 -------- d-----w- c:\users\Roman\AppData\Local\Programs
2012-10-31 20:30 . 2012-10-31 20:31 -------- d-----w- c:\users\Roman\AppData\Local\Microsoft Games
2012-10-26 20:24 . 2012-10-02 22:20 888168 ----a-w- c:\windows\system32\nvdispgenco32.dll
2012-10-26 20:24 . 2012-10-02 22:20 7697768 ----a-w- c:\windows\system32\nvcuda.dll
2012-10-26 20:24 . 2012-10-02 22:20 2574696 ----a-w- c:\windows\system32\nvcuvid.dll
2012-10-26 20:24 . 2012-10-02 22:20 19906920 ----a-w- c:\windows\system32\nvoglv32.dll
2012-10-26 20:24 . 2012-10-02 22:20 1867112 ----a-w- c:\windows\system32\nvcuvenc.dll
2012-10-26 20:24 . 2012-10-02 22:20 10837352 ----a-w- c:\windows\system32\drivers\nvlddmkm.sys
2012-10-26 20:24 . 2012-10-02 22:20 6127464 ----a-w- c:\windows\system32\nvopencl.dll
2012-10-26 20:24 . 2012-10-02 22:20 17559912 ----a-w- c:\windows\system32\nvcompiler.dll
2012-10-26 20:19 . 2012-10-26 20:19 -------- d-----w- c:\program files\Common Files\Java
2012-10-26 20:18 . 2012-10-26 20:18 93672 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
2012-10-26 20:18 . 2012-10-26 20:18 -------- d-----w- c:\program files\Java
2012-10-26 17:08 . 2012-10-26 17:10 -------- d-----w- c:\users\Roman\AppData\Roaming\Origin
2012-10-26 17:08 . 2012-10-26 17:08 -------- d-----w- c:\program files\Origin Games
2012-10-26 17:08 . 2012-10-26 17:08 -------- d-----w- c:\users\Roman\AppData\Local\Origin
2012-10-26 17:07 . 2012-10-26 17:07 -------- d-----w- c:\programdata\Electronic Arts
2012-10-26 17:07 . 2012-10-27 10:34 -------- d-----w- c:\program files\Origin
2012-10-21 13:02 . 2012-10-21 13:02 -------- d-----w- c:\users\Default\AppData\Local\Microsoft Help
2012-10-21 12:28 . 2012-10-21 12:28 -------- d-----w- c:\program files\Microsoft Synchronization Services
2012-10-21 12:28 . 2012-10-21 12:28 -------- d-----w- c:\program files\Microsoft Sync Framework
2012-10-21 12:27 . 2012-10-21 12:27 -------- d-----w- c:\program files\Microsoft Visual Studio 8
2012-10-21 12:26 . 2012-10-21 12:26 -------- d-----w- c:\program files\Microsoft Analysis Services
2012-10-21 12:26 . 2012-10-21 12:50 -------- d-----w- c:\users\Roman\AppData\Local\Microsoft Help
2012-10-21 12:25 . 2012-10-22 17:30 -------- d-----w- c:\programdata\Microsoft Help
2012-10-21 12:25 . 2012-10-21 12:25 -------- d-----r- C:\MSOCache
2012-10-20 15:29 . 2012-10-26 17:10 -------- d-----w- c:\programdata\Origin
2012-10-19 18:16 . 2012-10-19 18:16 -------- d-----w- c:\users\Roman\AppData\Local\ElevatedDiagnostics
2012-10-17 09:22 . 2012-10-17 09:22 -------- d--h--r- c:\users\Roman\AppData\Roaming\SecuROM
2012-10-17 08:50 . 2012-10-20 18:51 -------- d-----w- c:\program files\AGEIA Technologies
2012-10-09 19:06 . 2012-10-09 19:06 -------- d-----w- c:\program files\DsNET Corp
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-10-29 14:00 . 2012-03-20 09:01 139128 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2012-10-29 14:00 . 2012-03-20 09:01 280600 ----a-w- c:\windows\system32\PnkBstrB.xtr
2012-10-29 14:00 . 2012-03-15 17:46 280600 ----a-w- c:\windows\system32\PnkBstrB.exe
2012-10-28 13:18 . 2012-03-15 17:46 280600 ----a-w- c:\windows\system32\PnkBstrB.ex0
2012-10-26 20:18 . 2012-03-16 17:09 746984 ----a-w- c:\windows\system32\deployJava1.dll
2012-10-24 18:32 . 2012-03-15 17:46 76888 ----a-w- c:\windows\system32\PnkBstrA.exe
2012-10-08 18:48 . 2012-03-29 12:50 696760 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2012-10-08 18:48 . 2012-03-14 21:23 73656 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-10-02 22:20 . 2012-03-17 12:42 1009512 ----a-w- c:\windows\system32\nvdispco32.dll
2012-10-02 22:20 . 2009-07-13 22:09 12501352 ----a-w- c:\windows\system32\nvwgf2um.dll
2012-10-02 22:20 . 2009-06-10 10:33 2428776 ----a-w- c:\windows\system32\nvapi.dll
2012-10-02 22:20 . 2009-06-10 10:33 15309160 ----a-w- c:\windows\system32\nvd3dum.dll
2012-10-02 19:29 . 2009-06-10 07:34 645992 ----a-w- c:\windows\system32\nvvsvc.exe
2012-10-02 19:29 . 2009-06-10 07:34 62312 ----a-w- c:\windows\system32\nvshext.dll
2012-10-02 19:29 . 2009-06-10 07:34 2557288 ----a-w- c:\windows\system32\nvsvcr.dll
2012-10-02 19:29 . 2009-06-10 07:34 108392 ----a-w- c:\windows\system32\nvmctray.dll
2012-10-02 19:29 . 2009-06-10 07:34 2853224 ----a-w- c:\windows\system32\nvsvc.dll
2012-10-02 19:28 . 2009-06-10 07:34 3965288 ----a-w- c:\windows\system32\nvcpl.dll
2012-10-02 11:15 . 2012-10-02 11:15 430952 ----a-w- c:\windows\system32\nvStreaming.exe
2012-08-24 06:59 . 2012-09-22 08:41 1800704 ----a-w- c:\windows\system32\jscript9.dll
2012-08-24 06:51 . 2012-09-22 08:41 1129472 ----a-w- c:\windows\system32\wininet.dll
2012-08-24 06:51 . 2012-09-22 08:41 1427968 ----a-w- c:\windows\system32\inetcpl.cpl
2012-08-24 06:47 . 2012-09-22 08:41 142848 ----a-w- c:\windows\system32\ieUnatt.exe
2012-08-24 06:47 . 2012-09-22 08:41 420864 ----a-w- c:\windows\system32\vbscript.dll
2012-08-24 06:43 . 2012-09-22 08:41 2382848 ----a-w- c:\windows\system32\mshtml.tlb
2012-08-22 17:16 . 2012-09-12 15:46 1292144 ----a-w- c:\windows\system32\drivers\tcpip.sys
2012-08-22 17:16 . 2012-09-12 15:46 712048 ----a-w- c:\windows\system32\drivers\ndis.sys
2012-08-22 17:16 . 2012-09-12 15:46 240496 ----a-w- c:\windows\system32\drivers\netio.sys
2012-08-22 17:16 . 2012-09-12 15:46 187760 ----a-w- c:\windows\system32\drivers\FWPKCLNT.SYS
2012-08-21 20:12 . 2012-09-26 04:03 245760 ----a-w- c:\windows\system32\OxpsConverter.exe
2012-08-11 08:16 . 2012-03-24 18:26 47360 ----a-w- c:\users\Roman\AppData\Roaming\pcouffin.sys
2012-07-14 00:15 . 2012-07-28 09:43 136672 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
(((((((((((((((((((((((((((((((((((((((((((( Look )))))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
---- Directory of c:\programdata\{32364CEA-7855-4A3C-B674-53D8E9B97936} ----
.
2012-11-05 05:56 . 2012-11-05 05:56 24043520 ----a-w- c:\programdata\{32364CEA-7855-4A3C-B674-53D8E9B97936}\{D3742F82-1C1A-4DCC-ABBD-0E831C0185CC}.msi
.
---- Directory of c:\users\Roman\AppData\Local\Programs ----
.
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2011-11-28 18:01 122512 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2011-11-28 3744552]
"HDAudDeck"="c:\program files\VIA\VIAudioi\VDeck\VDeck.exe" [2012-05-11 3920496]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2012-10-02 3965288]
"P17RunE"="P17RunE.dll" [2008-03-28 14848]
"SwitchBoard"="c:\program files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe" [2010-02-19 517096]
"PAC7302_Monitor"="c:\windows\PixArt\PAC7302\Monitor.exe" [2007-12-10 323584]
"CTSysVol"="c:\program files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe" [2005-10-31 57344]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"mixer1"=wdmaud.drv
.
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
"CompuCare Check for updates"=c:\users\Roman\AppData\Roaming\SuperPump\updater.exe
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" -autorun
"Facebook Update"="c:\users\Roman\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
"Skype"="c:\program files\Skype\Phone\Skype.exe" /minimized /regrun
"Sidebar"=c:\program files\Windows Sidebar\sidebar.exe /autoRun
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"OPSE reminder"="c:\program files\ScanSoft\OmniPageSE2.0\EregEng\Ereg.exe" -r "c:\program files\ScanSoft\OmniPageSE2.0\EregEng\ereg.ini"
"AdobeCS5ServiceManager"="c:\program files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
"AdobeAAMUpdater-1.0"="c:\program files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe"
"BCSSync"="c:\program files\Microsoft Office\Office14\BCSSync.exe" /DelayServices
"OpwareSE2"="c:\program files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe"
.
R2 MBAMService;MBAMService;c:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [x]
R3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [x]
R3 SwitchBoard;SwitchBoard;c:\program files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [x]
R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys [x]
R3 terminpt;Microsoft Remote Desktop Input Driver;c:\windows\system32\drivers\terminpt.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [x]
R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [x]
S0 aswNdis;avast! Firewall NDIS Filter Service;c:\windows\system32\DRIVERS\aswNdis.sys [x]
S0 aswNdis2;avast! Firewall Core Firewall Service; [x]
S0 sptd;sptd;c:\windows\\SystemRoot\System32\Drivers\sptd.sys [x]
S1 aswFW;avast! TDI Firewall driver; [x]
S1 aswSnx;aswSnx; [x]
S1 aswSP;aswSP; [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [x]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [x]
S2 avast! Firewall;avast! Firewall;c:\program files\AVAST Software\Avast\afwServ.exe [x]
S2 Expresso Updater;Expresso Updater;c:\program files\Expresso\ExtensionUpdaterService.exe [x]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x]
S2 TeamViewer7;TeamViewer 7;c:\program files\TeamViewer\Version7\TeamViewer_Service.exe [x]
S2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files\TuneUp Utilities 2012\TuneUpUtilitiesService32.exe [x]
S2 VIAKaraokeService;VIA Karaoke digital mixer Service;c:\windows\system32\viakaraokesrv.exe [x]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [x]
S3 pcouffin;VSO Software pcouffin;c:\windows\system32\Drivers\pcouffin.sys [x]
S3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files\TuneUp Utilities 2012\TuneUpUtilitiesDriver32.sys [x]
S3 VIAHdAudAddService;VIA High Definition Audio Driver Service;c:\windows\system32\drivers\viahduaa.sys [x]
.
.
Obsah adresáře 'Naplánované úlohy'
.
2012-11-06 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-03-29 18:48]
.
.
------- Doplňkový sken -------
.
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~4\Office14\EXCEL.EXE/3000
IE: Easy-WebPrint Add To Print List - c:\program files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
IE: Easy-WebPrint High Speed Print - c:\program files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
IE: Easy-WebPrint Preview - c:\program files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
IE: Easy-WebPrint Print - c:\program files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
IE: Od&eslat do aplikace OneNote - c:\progra~1\MICROS~4\Office14\ONBttnIE.dll/105
LSP: %SYSTEMROOT%\system32\nvLsp.dll
Trusted Zone: mojebanka.cz\*
Trusted Zone: mojebanka.cz\*
TCP: DhcpNameServer = 10.0.0.138
FF - ProfilePath - c:\users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\i50uwx3c.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - www.seznam.cz
FF - ExtSQL: !HIDDEN! 2012-05-18 21:22; support@2yourface.com; c:\program files\2YourFace\ffextension
FF - user.js: network.http.max-persistent-connections-per-server - 4
FF - user.js: nglayout.initialpaint.delay - 600
FF - user.js: content.notify.interval - 600000
FF - user.js: content.max.tokenizing.time - 1800000
FF - user.js: content.switch.threshold - 600000
.
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\system32\nvvsvc.exe
c:\program files\NVIDIA Corporation\Display\nvxdsync.exe
c:\windows\system32\nvvsvc.exe
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\windows\system32\taskhost.exe
c:\program files\Common Files\Adobe\ARM\1.0\armsvc.exe
c:\program files\Malwarebytes' Anti-Malware\mbamscheduler.exe
c:\program files\Common Files\Nero\Nero BackItUp 4\NBService.exe
c:\windows\system32\PnkBstrA.exe
c:\program files\TuneUp Utilities 2012\TuneUpUtilitiesApp32.exe
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
c:\program files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
c:\program files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe
c:\windows\system32\conhost.exe
c:\windows\system32\WUDFHost.exe
c:\program files\NVIDIA Corporation\Display\nvtray.exe
c:\program files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
c:\windows\system32\sppsvc.exe
c:\program files\Windows Media Player\wmpnetwk.exe
c:\\?\c:\windows\system32\wbem\WMIADAP.EXE
.
**************************************************************************
.
Celkový čas: 2012-11-06 22:49:38 - počítač byl restartován
ComboFix-quarantined-files.txt 2012-11-06 21:49
ComboFix2.txt 2012-11-06 19:42
.
Před spuštěním: Volných bajtů: 11 690 106 880
Po spuštění: Volných bajtů: 11 546 157 056
.
- - End Of File - - F04417A899E39516A71655B075B7E3C7
Microsoft Windows 7 Ultimate 6.1.7601.1.1250.420.1029.18.3327.2330 [GMT 1:00]
Spuštěný z: c:\users\Roman\Desktop\ComboFix\ComboFix.exe
Použité ovládací přepínače :: c:\users\Roman\Desktop\CFScript.txt\CFScript.txt
AV: avast! Internet Security *Disabled/Outdated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
FW: avast! Internet Security *Disabled* {131692B0-0864-D491-4E21-3A3A1D8BBB47}
SP: avast! Internet Security *Disabled/Outdated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
FILE ::
"c:\windows\system32\PerfStringBackup.TMP"
"c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2741153547-1710534885-1317902625-1000Core.job"
"c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2741153547-1710534885-1317902625-1000UA.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineCore.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineUA.job"
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files\Google\Update
c:\program files\Google\Update\1.3.21.124\GoogleCrashHandler.exe
c:\program files\Google\Update\1.3.21.124\GoogleCrashHandler64.exe
c:\program files\Google\Update\1.3.21.124\GoogleUpdate.exe
c:\program files\Google\Update\1.3.21.124\GoogleUpdateBroker.exe
c:\program files\Google\Update\1.3.21.124\GoogleUpdateHelper.msi
c:\program files\Google\Update\1.3.21.124\GoogleUpdateOnDemand.exe
c:\program files\Google\Update\1.3.21.124\GoogleUpdateSetup.exe
c:\program files\Google\Update\1.3.21.124\goopdate.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_am.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_ar.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_bg.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_bn.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_ca.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_cs.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_da.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_de.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_el.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_en-GB.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_en.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_es-419.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_es.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_et.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_fa.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_fi.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_fil.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_fr.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_gu.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_hi.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_hr.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_hu.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_id.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_is.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_it.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_iw.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_ja.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_kn.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_ko.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_lt.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_lv.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_ml.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_mr.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_ms.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_nl.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_no.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_pl.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_pt-BR.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_pt-PT.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_ro.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_ru.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_sk.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_sl.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_sr.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_sv.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_sw.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_ta.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_te.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_th.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_tr.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_uk.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_ur.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_vi.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_zh-CN.dll
c:\program files\Google\Update\1.3.21.124\goopdateres_zh-TW.dll
c:\program files\Google\Update\1.3.21.124\npGoogleUpdate3.dll
c:\program files\Google\Update\1.3.21.124\psmachine.dll
c:\program files\Google\Update\1.3.21.124\psuser.dll
c:\program files\Google\Update\Download\{2BF2CA35-CCAF-4E58-BAB7-4163BFA03B88}\0.0.0.0\GoogleEarth-Win-Plugin-7.0.1.8244.exe
c:\program files\Google\Update\Download\{61EB309F-9C2A-4AC1-A4AA-C2958EA8DFE4}\GoogleUpdateSetup.exe
c:\program files\Google\Update\GoogleUpdate.exe
c:\program files\Skype\Updater
c:\program files\Skype\Updater\Updater.dll
c:\program files\Skype\Updater\Updater.exe
c:\programdata\Ask
c:\programdata\Ask\APN-Stub\ATU2\APNIC.dll
c:\windows\system32\PerfStringBackup.TMP
c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2741153547-1710534885-1317902625-1000Core.job
c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2741153547-1710534885-1317902625-1000UA.job
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Service_SkypeUpdate
-------\Service_gupdate
-------\Service_gupdatem
-------\Service_gupdate
-------\Service_gupdatem
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-10-06 do 2012-11-06 )))))))))))))))))))))))))))))))
.
.
2012-11-06 21:43 . 2012-11-06 21:45 -------- d-----w- c:\users\Roman\AppData\Local\temp
2012-11-06 21:43 . 2012-11-06 21:43 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
2012-11-06 21:43 . 2012-11-06 21:43 -------- d-----w- c:\users\Public\AppData\Local\temp
2012-11-06 21:43 . 2012-11-06 21:43 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-11-06 19:57 . 2012-11-06 19:57 56200 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{3F4B8960-2CD3-418F-82B4-2A03219DFB28}\offreg.dll
2012-11-05 19:43 . 2012-11-05 19:48 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2012-11-05 19:43 . 2012-09-29 18:54 22856 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-11-05 05:57 . 2012-04-05 12:08 31552 ----a-w- c:\windows\system32\TURegOpt.exe
2012-11-05 05:57 . 2012-04-05 12:08 21312 ----a-w- c:\windows\system32\authuitu.dll
2012-11-05 05:57 . 2012-11-05 05:57 -------- d-----w- c:\program files\TuneUp Utilities 2012
2012-11-05 05:56 . 2012-11-05 05:56 -------- d-sh--w- c:\programdata\{32364CEA-7855-4A3C-B674-53D8E9B97936}
2012-11-05 05:56 . 2012-11-05 05:56 -------- d--h--w- c:\programdata\Common Files
2012-11-03 04:17 . 2012-10-12 05:56 6918632 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{3F4B8960-2CD3-418F-82B4-2A03219DFB28}\mpengine.dll
2012-11-02 22:38 . 2012-11-02 22:38 -------- d-----w- c:\users\Roman\AppData\Local\Programs
2012-10-31 20:30 . 2012-10-31 20:31 -------- d-----w- c:\users\Roman\AppData\Local\Microsoft Games
2012-10-26 20:24 . 2012-10-02 22:20 888168 ----a-w- c:\windows\system32\nvdispgenco32.dll
2012-10-26 20:24 . 2012-10-02 22:20 7697768 ----a-w- c:\windows\system32\nvcuda.dll
2012-10-26 20:24 . 2012-10-02 22:20 2574696 ----a-w- c:\windows\system32\nvcuvid.dll
2012-10-26 20:24 . 2012-10-02 22:20 19906920 ----a-w- c:\windows\system32\nvoglv32.dll
2012-10-26 20:24 . 2012-10-02 22:20 1867112 ----a-w- c:\windows\system32\nvcuvenc.dll
2012-10-26 20:24 . 2012-10-02 22:20 10837352 ----a-w- c:\windows\system32\drivers\nvlddmkm.sys
2012-10-26 20:24 . 2012-10-02 22:20 6127464 ----a-w- c:\windows\system32\nvopencl.dll
2012-10-26 20:24 . 2012-10-02 22:20 17559912 ----a-w- c:\windows\system32\nvcompiler.dll
2012-10-26 20:19 . 2012-10-26 20:19 -------- d-----w- c:\program files\Common Files\Java
2012-10-26 20:18 . 2012-10-26 20:18 93672 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
2012-10-26 20:18 . 2012-10-26 20:18 -------- d-----w- c:\program files\Java
2012-10-26 17:08 . 2012-10-26 17:10 -------- d-----w- c:\users\Roman\AppData\Roaming\Origin
2012-10-26 17:08 . 2012-10-26 17:08 -------- d-----w- c:\program files\Origin Games
2012-10-26 17:08 . 2012-10-26 17:08 -------- d-----w- c:\users\Roman\AppData\Local\Origin
2012-10-26 17:07 . 2012-10-26 17:07 -------- d-----w- c:\programdata\Electronic Arts
2012-10-26 17:07 . 2012-10-27 10:34 -------- d-----w- c:\program files\Origin
2012-10-21 13:02 . 2012-10-21 13:02 -------- d-----w- c:\users\Default\AppData\Local\Microsoft Help
2012-10-21 12:28 . 2012-10-21 12:28 -------- d-----w- c:\program files\Microsoft Synchronization Services
2012-10-21 12:28 . 2012-10-21 12:28 -------- d-----w- c:\program files\Microsoft Sync Framework
2012-10-21 12:27 . 2012-10-21 12:27 -------- d-----w- c:\program files\Microsoft Visual Studio 8
2012-10-21 12:26 . 2012-10-21 12:26 -------- d-----w- c:\program files\Microsoft Analysis Services
2012-10-21 12:26 . 2012-10-21 12:50 -------- d-----w- c:\users\Roman\AppData\Local\Microsoft Help
2012-10-21 12:25 . 2012-10-22 17:30 -------- d-----w- c:\programdata\Microsoft Help
2012-10-21 12:25 . 2012-10-21 12:25 -------- d-----r- C:\MSOCache
2012-10-20 15:29 . 2012-10-26 17:10 -------- d-----w- c:\programdata\Origin
2012-10-19 18:16 . 2012-10-19 18:16 -------- d-----w- c:\users\Roman\AppData\Local\ElevatedDiagnostics
2012-10-17 09:22 . 2012-10-17 09:22 -------- d--h--r- c:\users\Roman\AppData\Roaming\SecuROM
2012-10-17 08:50 . 2012-10-20 18:51 -------- d-----w- c:\program files\AGEIA Technologies
2012-10-09 19:06 . 2012-10-09 19:06 -------- d-----w- c:\program files\DsNET Corp
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-10-29 14:00 . 2012-03-20 09:01 139128 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2012-10-29 14:00 . 2012-03-20 09:01 280600 ----a-w- c:\windows\system32\PnkBstrB.xtr
2012-10-29 14:00 . 2012-03-15 17:46 280600 ----a-w- c:\windows\system32\PnkBstrB.exe
2012-10-28 13:18 . 2012-03-15 17:46 280600 ----a-w- c:\windows\system32\PnkBstrB.ex0
2012-10-26 20:18 . 2012-03-16 17:09 746984 ----a-w- c:\windows\system32\deployJava1.dll
2012-10-24 18:32 . 2012-03-15 17:46 76888 ----a-w- c:\windows\system32\PnkBstrA.exe
2012-10-08 18:48 . 2012-03-29 12:50 696760 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2012-10-08 18:48 . 2012-03-14 21:23 73656 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-10-02 22:20 . 2012-03-17 12:42 1009512 ----a-w- c:\windows\system32\nvdispco32.dll
2012-10-02 22:20 . 2009-07-13 22:09 12501352 ----a-w- c:\windows\system32\nvwgf2um.dll
2012-10-02 22:20 . 2009-06-10 10:33 2428776 ----a-w- c:\windows\system32\nvapi.dll
2012-10-02 22:20 . 2009-06-10 10:33 15309160 ----a-w- c:\windows\system32\nvd3dum.dll
2012-10-02 19:29 . 2009-06-10 07:34 645992 ----a-w- c:\windows\system32\nvvsvc.exe
2012-10-02 19:29 . 2009-06-10 07:34 62312 ----a-w- c:\windows\system32\nvshext.dll
2012-10-02 19:29 . 2009-06-10 07:34 2557288 ----a-w- c:\windows\system32\nvsvcr.dll
2012-10-02 19:29 . 2009-06-10 07:34 108392 ----a-w- c:\windows\system32\nvmctray.dll
2012-10-02 19:29 . 2009-06-10 07:34 2853224 ----a-w- c:\windows\system32\nvsvc.dll
2012-10-02 19:28 . 2009-06-10 07:34 3965288 ----a-w- c:\windows\system32\nvcpl.dll
2012-10-02 11:15 . 2012-10-02 11:15 430952 ----a-w- c:\windows\system32\nvStreaming.exe
2012-08-24 06:59 . 2012-09-22 08:41 1800704 ----a-w- c:\windows\system32\jscript9.dll
2012-08-24 06:51 . 2012-09-22 08:41 1129472 ----a-w- c:\windows\system32\wininet.dll
2012-08-24 06:51 . 2012-09-22 08:41 1427968 ----a-w- c:\windows\system32\inetcpl.cpl
2012-08-24 06:47 . 2012-09-22 08:41 142848 ----a-w- c:\windows\system32\ieUnatt.exe
2012-08-24 06:47 . 2012-09-22 08:41 420864 ----a-w- c:\windows\system32\vbscript.dll
2012-08-24 06:43 . 2012-09-22 08:41 2382848 ----a-w- c:\windows\system32\mshtml.tlb
2012-08-22 17:16 . 2012-09-12 15:46 1292144 ----a-w- c:\windows\system32\drivers\tcpip.sys
2012-08-22 17:16 . 2012-09-12 15:46 712048 ----a-w- c:\windows\system32\drivers\ndis.sys
2012-08-22 17:16 . 2012-09-12 15:46 240496 ----a-w- c:\windows\system32\drivers\netio.sys
2012-08-22 17:16 . 2012-09-12 15:46 187760 ----a-w- c:\windows\system32\drivers\FWPKCLNT.SYS
2012-08-21 20:12 . 2012-09-26 04:03 245760 ----a-w- c:\windows\system32\OxpsConverter.exe
2012-08-11 08:16 . 2012-03-24 18:26 47360 ----a-w- c:\users\Roman\AppData\Roaming\pcouffin.sys
2012-07-14 00:15 . 2012-07-28 09:43 136672 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
(((((((((((((((((((((((((((((((((((((((((((( Look )))))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
---- Directory of c:\programdata\{32364CEA-7855-4A3C-B674-53D8E9B97936} ----
.
2012-11-05 05:56 . 2012-11-05 05:56 24043520 ----a-w- c:\programdata\{32364CEA-7855-4A3C-B674-53D8E9B97936}\{D3742F82-1C1A-4DCC-ABBD-0E831C0185CC}.msi
.
---- Directory of c:\users\Roman\AppData\Local\Programs ----
.
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2011-11-28 18:01 122512 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2011-11-28 3744552]
"HDAudDeck"="c:\program files\VIA\VIAudioi\VDeck\VDeck.exe" [2012-05-11 3920496]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2012-10-02 3965288]
"P17RunE"="P17RunE.dll" [2008-03-28 14848]
"SwitchBoard"="c:\program files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe" [2010-02-19 517096]
"PAC7302_Monitor"="c:\windows\PixArt\PAC7302\Monitor.exe" [2007-12-10 323584]
"CTSysVol"="c:\program files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe" [2005-10-31 57344]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"mixer1"=wdmaud.drv
.
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
"CompuCare Check for updates"=c:\users\Roman\AppData\Roaming\SuperPump\updater.exe
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" -autorun
"Facebook Update"="c:\users\Roman\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
"Skype"="c:\program files\Skype\Phone\Skype.exe" /minimized /regrun
"Sidebar"=c:\program files\Windows Sidebar\sidebar.exe /autoRun
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"OPSE reminder"="c:\program files\ScanSoft\OmniPageSE2.0\EregEng\Ereg.exe" -r "c:\program files\ScanSoft\OmniPageSE2.0\EregEng\ereg.ini"
"AdobeCS5ServiceManager"="c:\program files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
"AdobeAAMUpdater-1.0"="c:\program files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe"
"BCSSync"="c:\program files\Microsoft Office\Office14\BCSSync.exe" /DelayServices
"OpwareSE2"="c:\program files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe"
.
R2 MBAMService;MBAMService;c:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [x]
R3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [x]
R3 SwitchBoard;SwitchBoard;c:\program files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [x]
R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys [x]
R3 terminpt;Microsoft Remote Desktop Input Driver;c:\windows\system32\drivers\terminpt.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [x]
R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [x]
S0 aswNdis;avast! Firewall NDIS Filter Service;c:\windows\system32\DRIVERS\aswNdis.sys [x]
S0 aswNdis2;avast! Firewall Core Firewall Service; [x]
S0 sptd;sptd;c:\windows\\SystemRoot\System32\Drivers\sptd.sys [x]
S1 aswFW;avast! TDI Firewall driver; [x]
S1 aswSnx;aswSnx; [x]
S1 aswSP;aswSP; [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [x]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [x]
S2 avast! Firewall;avast! Firewall;c:\program files\AVAST Software\Avast\afwServ.exe [x]
S2 Expresso Updater;Expresso Updater;c:\program files\Expresso\ExtensionUpdaterService.exe [x]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x]
S2 TeamViewer7;TeamViewer 7;c:\program files\TeamViewer\Version7\TeamViewer_Service.exe [x]
S2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files\TuneUp Utilities 2012\TuneUpUtilitiesService32.exe [x]
S2 VIAKaraokeService;VIA Karaoke digital mixer Service;c:\windows\system32\viakaraokesrv.exe [x]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [x]
S3 pcouffin;VSO Software pcouffin;c:\windows\system32\Drivers\pcouffin.sys [x]
S3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files\TuneUp Utilities 2012\TuneUpUtilitiesDriver32.sys [x]
S3 VIAHdAudAddService;VIA High Definition Audio Driver Service;c:\windows\system32\drivers\viahduaa.sys [x]
.
.
Obsah adresáře 'Naplánované úlohy'
.
2012-11-06 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-03-29 18:48]
.
.
------- Doplňkový sken -------
.
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~4\Office14\EXCEL.EXE/3000
IE: Easy-WebPrint Add To Print List - c:\program files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
IE: Easy-WebPrint High Speed Print - c:\program files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
IE: Easy-WebPrint Preview - c:\program files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
IE: Easy-WebPrint Print - c:\program files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
IE: Od&eslat do aplikace OneNote - c:\progra~1\MICROS~4\Office14\ONBttnIE.dll/105
LSP: %SYSTEMROOT%\system32\nvLsp.dll
Trusted Zone: mojebanka.cz\*
Trusted Zone: mojebanka.cz\*
TCP: DhcpNameServer = 10.0.0.138
FF - ProfilePath - c:\users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\i50uwx3c.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - www.seznam.cz
FF - ExtSQL: !HIDDEN! 2012-05-18 21:22; support@2yourface.com; c:\program files\2YourFace\ffextension
FF - user.js: network.http.max-persistent-connections-per-server - 4
FF - user.js: nglayout.initialpaint.delay - 600
FF - user.js: content.notify.interval - 600000
FF - user.js: content.max.tokenizing.time - 1800000
FF - user.js: content.switch.threshold - 600000
.
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\system32\nvvsvc.exe
c:\program files\NVIDIA Corporation\Display\nvxdsync.exe
c:\windows\system32\nvvsvc.exe
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\windows\system32\taskhost.exe
c:\program files\Common Files\Adobe\ARM\1.0\armsvc.exe
c:\program files\Malwarebytes' Anti-Malware\mbamscheduler.exe
c:\program files\Common Files\Nero\Nero BackItUp 4\NBService.exe
c:\windows\system32\PnkBstrA.exe
c:\program files\TuneUp Utilities 2012\TuneUpUtilitiesApp32.exe
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
c:\program files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
c:\program files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe
c:\windows\system32\conhost.exe
c:\windows\system32\WUDFHost.exe
c:\program files\NVIDIA Corporation\Display\nvtray.exe
c:\program files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
c:\windows\system32\sppsvc.exe
c:\program files\Windows Media Player\wmpnetwk.exe
c:\\?\c:\windows\system32\wbem\WMIADAP.EXE
.
**************************************************************************
.
Celkový čas: 2012-11-06 22:49:38 - počítač byl restartován
ComboFix-quarantined-files.txt 2012-11-06 21:49
ComboFix2.txt 2012-11-06 19:42
.
Před spuštěním: Volných bajtů: 11 690 106 880
Po spuštění: Volných bajtů: 11 546 157 056
.
- - End Of File - - F04417A899E39516A71655B075B7E3C7
OS Windows 11 Professional (x64) (24H2) / MB ASUS TUF GAMING B650M-PLUS / CPU AMD Ryzen 5 7600/ RAM G.SKILL 32GB KIT DDR5 6000MT/s CL36 AMD EXPO / GPU ASUS DUAL RTX 4060 GAMING OC /
SSD SSD WD Black SN770 NVMe 1TB / PSU Seasonic Core GX-650 ATX 3
SSD SSD WD Black SN770 NVMe 1TB / PSU Seasonic Core GX-650 ATX 3
- Žbeky
- Moderátor
-
Guru Level 13
- Příspěvky: 22288
- Registrován: květen 08
- Bydliště: Vsetín - Pardubice
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu (generálka)
Smaž složku c:\users\Roman\AppData\Local\Programs
ComboFix se odinstaluje takto:
Start-Spustit a zadej ComboFix /Uninstall
vyčisti systém CCleanerem
a použij i T-Cleaner
smaže vše po Combu,MWAVu atd.-stáhneš>spustíš
pozn. před stažením T-Cleaneru a po dobu čištění deaktivuj AVG , Avast,Avira či Microsoft Security Essentials následně T-Cleaner smaž a zapni si AVG , Avast, Avira či Microsoft Security Essentials
+ Nový log z HJT
Jak se chová PC?
ComboFix se odinstaluje takto:
Start-Spustit a zadej ComboFix /Uninstall
vyčisti systém CCleanerem
a použij i T-Cleaner
smaže vše po Combu,MWAVu atd.-stáhneš>spustíš
pozn. před stažením T-Cleaneru a po dobu čištění deaktivuj AVG , Avast,Avira či Microsoft Security Essentials následně T-Cleaner smaž a zapni si AVG , Avast, Avira či Microsoft Security Essentials
+ Nový log z HJT
Jak se chová PC?
V SZ řeším jen záležitosti týkající se fóra. Na prosby a žádosti o technickou podporu nereaguji. Díky za pochopení.
HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra
HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra
-
- Level 3
- Příspěvky: 542
- Registrován: červenec 12
- Bydliště: Severní Morava
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu (generálka)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:18:19, on 7.11.2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16450)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskhost.exe
C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesApp32.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe
C:\Windows\System32\rundll32.exe
C:\Windows\PixArt\PAC7302\Monitor.exe
C:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
D:\utility\HiJackThis\HiJackThis.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~4\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~4\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe -r
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [P17RunE] RunDll32 P17RunE.dll,RunDLLEntry
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [PAC7302_Monitor] C:\Windows\PixArt\PAC7302\Monitor.exe
O4 - HKLM\..\Run: [CTSysVol] C:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe /r
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Add To Print List - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint High Speed Print - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Preview - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O8 - Extra context menu item: Easy-WebPrint Print - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~4\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: (no name) - Cmdmapping - (no file) (HKCU)
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvlsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvlsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvlsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvlsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvlsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvlsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvlsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvlsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: avast! Firewall - AVAST Software - C:\Program Files\AVAST Software\Avast\afwServ.exe
O23 - Service: Expresso Updater - Unknown owner - C:\Program Files\Expresso\ExtensionUpdaterService.exe
O23 - Service: ForceWare Intelligent Application Manager (IAM) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: ForceWare IP service (nSvcIp) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: TeamViewer 7 (TeamViewer7) - TeamViewer GmbH - C:\Program Files\TeamViewer\Version7\TeamViewer_Service.exe
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesService32.exe
O23 - Service: VIA Karaoke digital mixer Service (VIAKaraokeService) - VIA Technologies, Inc. - C:\Windows\system32\viakaraokesrv.exe
--
End of file - 8052 bytes
Scan saved at 17:18:19, on 7.11.2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16450)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskhost.exe
C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesApp32.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe
C:\Windows\System32\rundll32.exe
C:\Windows\PixArt\PAC7302\Monitor.exe
C:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
D:\utility\HiJackThis\HiJackThis.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~4\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~4\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe -r
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [P17RunE] RunDll32 P17RunE.dll,RunDLLEntry
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [PAC7302_Monitor] C:\Windows\PixArt\PAC7302\Monitor.exe
O4 - HKLM\..\Run: [CTSysVol] C:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe /r
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Add To Print List - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint High Speed Print - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Preview - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O8 - Extra context menu item: Easy-WebPrint Print - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~4\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: (no name) - Cmdmapping - (no file) (HKCU)
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvlsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvlsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvlsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvlsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvlsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvlsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvlsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvlsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: avast! Firewall - AVAST Software - C:\Program Files\AVAST Software\Avast\afwServ.exe
O23 - Service: Expresso Updater - Unknown owner - C:\Program Files\Expresso\ExtensionUpdaterService.exe
O23 - Service: ForceWare Intelligent Application Manager (IAM) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: ForceWare IP service (nSvcIp) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: TeamViewer 7 (TeamViewer7) - TeamViewer GmbH - C:\Program Files\TeamViewer\Version7\TeamViewer_Service.exe
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesService32.exe
O23 - Service: VIA Karaoke digital mixer Service (VIAKaraokeService) - VIA Technologies, Inc. - C:\Windows\system32\viakaraokesrv.exe
--
End of file - 8052 bytes
OS Windows 11 Professional (x64) (24H2) / MB ASUS TUF GAMING B650M-PLUS / CPU AMD Ryzen 5 7600/ RAM G.SKILL 32GB KIT DDR5 6000MT/s CL36 AMD EXPO / GPU ASUS DUAL RTX 4060 GAMING OC /
SSD SSD WD Black SN770 NVMe 1TB / PSU Seasonic Core GX-650 ATX 3
SSD SSD WD Black SN770 NVMe 1TB / PSU Seasonic Core GX-650 ATX 3
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 117 hostů