Dobrý den, potřeboval bych zkontrolovat log. Mám problémy s pc. Když jsem na internetu(mozila), tak se mi každou chvilkou jakoby zasekne prohlížeč na cca 10s . Také se stává že je písmo na stránce jakoby rozmazané. Děkuji za pomoc.
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:13:04, on 30.3.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16470)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskhost.exe
C:\Windows\Explorer.EXE
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\user\Desktop\HiJackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GR469A~1.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GRA32A~1.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
--
End of file - 3994 bytes
Prosím o kontrolu logu
- Žbeky
- Moderátor
-
Guru Level 13
- Příspěvky: 22288
- Registrován: květen 08
- Bydliště: Vsetín - Pardubice
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu
Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
- Pokud používáš Firefox, klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
- Pokud používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected.
- Pokud používáš Chrome, nic dalšího nevybírej a dej Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
Stáhni si TFC
Otevři soubor a zavři všechny ostatní okna, Klikni na Start k zahájení procesu. Program by neměl trvat dlouho.
Poté by se měl PC restartovat, pokud ne , proveď sám.
Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Update Malwarebytes' Anti-Malware (Aktualizace Malwarebytes' Anti-Malware) a Launch Malwarebytes' Anti-Malware (Spustit aplikaci Malwarebytes' Anti-Malware), pokud jo tak klikni na tlačítko Finish
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Perform Quick Scan (Provést rychlý sken) a klikni na tlačítko Scan (Skenovat)
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Show Results
- pak zvol možnost Save Logfile a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(ZATÍM SÁM NIC NEMAŽ!).
Vlož sem pak obsah toho logu.
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
- Pokud používáš Firefox, klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
- Pokud používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected.
- Pokud používáš Chrome, nic dalšího nevybírej a dej Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
Stáhni si TFC
Otevři soubor a zavři všechny ostatní okna, Klikni na Start k zahájení procesu. Program by neměl trvat dlouho.
Poté by se měl PC restartovat, pokud ne , proveď sám.
Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Update Malwarebytes' Anti-Malware (Aktualizace Malwarebytes' Anti-Malware) a Launch Malwarebytes' Anti-Malware (Spustit aplikaci Malwarebytes' Anti-Malware), pokud jo tak klikni na tlačítko Finish
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Perform Quick Scan (Provést rychlý sken) a klikni na tlačítko Scan (Skenovat)
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Show Results
- pak zvol možnost Save Logfile a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(ZATÍM SÁM NIC NEMAŽ!).
Vlož sem pak obsah toho logu.
V SZ řeším jen záležitosti týkající se fóra. Na prosby a žádosti o technickou podporu nereaguji. Díky za pochopení.
HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra
HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra
Re: Prosím o kontrolu logu
Děkuji za odpověď. Posílám log.
Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware.) 1.70.0.1100
www.malwarebytes.org
Verze: v2013.03.30.05
Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 9.0.8112.16421
user :: USER-PC [administrátor]
Ochrana: Povolena
30.3.2013 20:24:42
mbam-log-2013-03-30 (20-24-42).txt
Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 202207
Uplynulý čas: 3 minut, 27 sekund
Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené soubory: 0
(Žádné škodlivé položky nebyly zjištěny)
(konec)
Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware.) 1.70.0.1100
www.malwarebytes.org
Verze: v2013.03.30.05
Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 9.0.8112.16421
user :: USER-PC [administrátor]
Ochrana: Povolena
30.3.2013 20:24:42
mbam-log-2013-03-30 (20-24-42).txt
Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 202207
Uplynulý čas: 3 minut, 27 sekund
Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené soubory: 0
(Žádné škodlivé položky nebyly zjištěny)
(konec)
- Žbeky
- Moderátor
-
Guru Level 13
- Příspěvky: 22288
- Registrován: květen 08
- Bydliště: Vsetín - Pardubice
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu
Jak to vypadá teď?
V SZ řeším jen záležitosti týkající se fóra. Na prosby a žádosti o technickou podporu nereaguji. Díky za pochopení.
HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra
HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra
Re: Prosím o kontrolu logu
Řekl bych že se mozila trošku zrychlila, ale písmo je stále občas rozmazané. Jakmile ale najedu myší na text tak se to srovná.
- memphisto
- Guru Level 13
- Příspěvky: 21113
- Registrován: září 06
- Bydliště: Zlín - České Budějovice
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu
Co ovladače grafiky případně funkce ClearType ve Windows? Dělá to i jiný prohlížeč?
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji
Re: Prosím o kontrolu logu
Ovladače grafiky jsou aktuální, funkce ClearType jsem zkontroloval a myslím že je to nastavený dobře. Mozila už se nezasekává, ale s textem je to stejné.
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43294
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu
Stáhni si Slim Drivers
Pomůže ti najít a aktualizovat ovladače..
Stáhni AdwCleaner
Ulož si ho na svojí plochu
Ukonči všechny programy , okna a prohlížeče
Spusť program poklepáním a klikni na „Search“
Po skenu se objeví log ( jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.
Stáhni si RogueKiller
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit
-Potom klikni na „Prohledat“.
- Program skenuje PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
Pomůže ti najít a aktualizovat ovladače..
Stáhni AdwCleaner
Ulož si ho na svojí plochu
Ukonči všechny programy , okna a prohlížeče
Spusť program poklepáním a klikni na „Search“
Po skenu se objeví log ( jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.
Stáhni si RogueKiller
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit
-Potom klikni na „Prohledat“.
- Program skenuje PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Prosím o kontrolu logu
posílám logy
# AdwCleaner v2.115 - Log vytvooen 01/04/2013 v 15:09:33
# Aktualizováno 17/03/2013 Xplode
# Operaení systém : Windows 7 Home Premium Service Pack 1 (32 bits)
# Uživatel : user - USER-PC
# Spuštin systém : Normální
# Spuštino z : C:\Users\user\Desktop\adwcleaner.exe
# Volba [Prohledat]
***** [Služby] *****
***** [Soubory / Složky] *****
***** [Registry] *****
***** [Internetové prohlížeee] *****
-\\ Internet Explorer v9.0.8112.16470
[OK] Registry jsou eisté.
-\\ Mozilla Firefox v19.0.2 (cs)
*************************
AdwCleaner[R1].txt - [676 octets] - [17/02/2013 12:08:20]
AdwCleaner[R2].txt - [622 octets] - [01/04/2013 15:09:33]
########## EOF - C:\AdwCleaner[R2].txt - [681 octets] ##########
RogueKiller V8.5.4 [Mar 18 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.geekstogo.com/forum/files/fi ... guekiller/
Webové stránky : http://tigzy.geekstogo.com/roguekiller.php
: http://tigzyrk.blogspot.com/
Operační systém : Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Spuštěno v : Normální režim
Uživatel : user [Práva správce]
Mód : Kontrola -- Datum : 04/01/2013 17:21:55
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 1 ¤¤¤
[DLL] explorer.exe -- C:\Windows\explorer.exe : C:\Users\user\Desktop\Malwarebytes' Anti-Malware\mbamext.dll [x] -> ODEBRÁNO
¤¤¤ ¤¤¤ Záznamy Registrů: : 4 ¤¤¤
[HJPOL] HKCU\[...]\System : disableregistrytools (0) -> NALEZENO
[HJPOL] HKLM\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ DESK] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> C:\Windows\system32\drivers\etc\hosts
¤¤¤ Kontrola MBR: ¤¤¤
+++++ PhysicalDrive0: WDC WD10EADS-00L5B1 ATA Device +++++
--- User ---
[MBR] 7f33ed9d74f6111f9b26a83bf54dd01c
[BSP] 08cb55dbf2cf051af7d4bc11240e7996 : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 63 | Size: 1255 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 2570400 | Size: 252694 Mo
2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 520088310 | Size: 699917 Mo
User = LL1 ... OK!
User = LL2 ... OK!
Dokončeno : << RKreport[1]_S_04012013_02d1721.txt >>
RKreport[1]_S_04012013_02d1721.txt
# AdwCleaner v2.115 - Log vytvooen 01/04/2013 v 15:09:33
# Aktualizováno 17/03/2013 Xplode
# Operaení systém : Windows 7 Home Premium Service Pack 1 (32 bits)
# Uživatel : user - USER-PC
# Spuštin systém : Normální
# Spuštino z : C:\Users\user\Desktop\adwcleaner.exe
# Volba [Prohledat]
***** [Služby] *****
***** [Soubory / Složky] *****
***** [Registry] *****
***** [Internetové prohlížeee] *****
-\\ Internet Explorer v9.0.8112.16470
[OK] Registry jsou eisté.
-\\ Mozilla Firefox v19.0.2 (cs)
*************************
AdwCleaner[R1].txt - [676 octets] - [17/02/2013 12:08:20]
AdwCleaner[R2].txt - [622 octets] - [01/04/2013 15:09:33]
########## EOF - C:\AdwCleaner[R2].txt - [681 octets] ##########
RogueKiller V8.5.4 [Mar 18 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.geekstogo.com/forum/files/fi ... guekiller/
Webové stránky : http://tigzy.geekstogo.com/roguekiller.php
: http://tigzyrk.blogspot.com/
Operační systém : Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Spuštěno v : Normální režim
Uživatel : user [Práva správce]
Mód : Kontrola -- Datum : 04/01/2013 17:21:55
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 1 ¤¤¤
[DLL] explorer.exe -- C:\Windows\explorer.exe : C:\Users\user\Desktop\Malwarebytes' Anti-Malware\mbamext.dll [x] -> ODEBRÁNO
¤¤¤ ¤¤¤ Záznamy Registrů: : 4 ¤¤¤
[HJPOL] HKCU\[...]\System : disableregistrytools (0) -> NALEZENO
[HJPOL] HKLM\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ DESK] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> C:\Windows\system32\drivers\etc\hosts
¤¤¤ Kontrola MBR: ¤¤¤
+++++ PhysicalDrive0: WDC WD10EADS-00L5B1 ATA Device +++++
--- User ---
[MBR] 7f33ed9d74f6111f9b26a83bf54dd01c
[BSP] 08cb55dbf2cf051af7d4bc11240e7996 : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 63 | Size: 1255 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 2570400 | Size: 252694 Mo
2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 520088310 | Size: 699917 Mo
User = LL1 ... OK!
User = LL2 ... OK!
Dokončeno : << RKreport[1]_S_04012013_02d1721.txt >>
RKreport[1]_S_04012013_02d1721.txt
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43294
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu
Zavři všechny programy a prohlížeče.
Prosím, odpoj všechny USB nebo externí disky z počítače před spuštěním tohoto programu.
Spusť RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Počkej, dokud status okno zobrazuje "Scan "
- Klikni na "Delete"
- Počkej, dokud Status box zobrazuje "Smazání- Finished "
- Klikni na "Zprávy " a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [1]. txt na ploše.
- Zavři RogueKiller
Stáhni si GooredFix
a ulož si ho na plochu.Poklepej na něj .
Objeví se hláška ,dej YES
Otevře se log , zkopíruj sem celý jeho obsah ( jinak ho najdeš na své ploše pod názvem Goored.txt).
Stáhni si TDSSKiller
Na svojí plochu.Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller.2.2.7.1._(datum)_log.txt , vlož sem prosím celý obsah logu.
Prosím, odpoj všechny USB nebo externí disky z počítače před spuštěním tohoto programu.
Spusť RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Počkej, dokud status okno zobrazuje "Scan "
- Klikni na "Delete"
- Počkej, dokud Status box zobrazuje "Smazání- Finished "
- Klikni na "Zprávy " a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [1]. txt na ploše.
- Zavři RogueKiller
Stáhni si GooredFix
a ulož si ho na plochu.Poklepej na něj .
Objeví se hláška ,dej YES
Otevře se log , zkopíruj sem celý jeho obsah ( jinak ho najdeš na své ploše pod názvem Goored.txt).
Stáhni si TDSSKiller
Na svojí plochu.Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller.2.2.7.1._(datum)_log.txt , vlož sem prosím celý obsah logu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Prosím o kontrolu logu
Dávám logy
RogueKiller V8.5.4 [Mar 18 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.geekstogo.com/forum/files/fi ... guekiller/
Webové stránky : http://tigzy.geekstogo.com/roguekiller.php
: http://tigzyrk.blogspot.com/
Operační systém : Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Spuštěno v : Normální režim
Uživatel : user [Práva správce]
Mód : Kontrola -- Datum : 04/03/2013 17:33:12
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 1 ¤¤¤
[DLL] explorer.exe -- C:\Windows\explorer.exe : C:\Users\user\Desktop\Malwarebytes' Anti-Malware\mbamext.dll [x] -> ODEBRÁNO
¤¤¤ ¤¤¤ Záznamy Registrů: : 4 ¤¤¤
[HJPOL] HKCU\[...]\System : disableregistrytools (0) -> NALEZENO
[HJPOL] HKLM\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ DESK] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> C:\Windows\system32\drivers\etc\hosts
¤¤¤ Kontrola MBR: ¤¤¤
+++++ PhysicalDrive0: WDC WD10EADS-00L5B1 ATA Device +++++
--- User ---
[MBR] 7f33ed9d74f6111f9b26a83bf54dd01c
[BSP] 08cb55dbf2cf051af7d4bc11240e7996 : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 63 | Size: 1255 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 2570400 | Size: 252694 Mo
2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 520088310 | Size: 699917 Mo
User = LL1 ... OK!
User = LL2 ... OK!
Dokončeno : << RKreport[1]_S_04032013_02d1733.txt >>
RKreport[1]_S_04032013_02d1733.txt
RogueKiller V8.5.4 [Mar 18 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.geekstogo.com/forum/files/fi ... guekiller/
Webové stránky : http://tigzy.geekstogo.com/roguekiller.php
: http://tigzyrk.blogspot.com/
Operační systém : Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Spuštěno v : Normální režim
Uživatel : user [Práva správce]
Mód : Odebrat -- Datum : 04/03/2013 17:34:35
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 1 ¤¤¤
[DLL] explorer.exe -- C:\Windows\explorer.exe : C:\Users\user\Desktop\Malwarebytes' Anti-Malware\mbamext.dll [x] -> ODEBRÁNO
¤¤¤ ¤¤¤ Záznamy Registrů: : 4 ¤¤¤
[HJPOL] HKCU\[...]\System : disableregistrytools (0) -> VYMAZÁNO
[HJPOL] HKLM\[...]\System : DisableRegistryTools (0) -> VYMAZÁNO
[HJ DESK] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> C:\Windows\system32\drivers\etc\hosts
¤¤¤ Kontrola MBR: ¤¤¤
+++++ PhysicalDrive0: WDC WD10EADS-00L5B1 ATA Device +++++
--- User ---
[MBR] 7f33ed9d74f6111f9b26a83bf54dd01c
[BSP] 08cb55dbf2cf051af7d4bc11240e7996 : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 63 | Size: 1255 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 2570400 | Size: 252694 Mo
2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 520088310 | Size: 699917 Mo
User = LL1 ... OK!
User = LL2 ... OK!
Dokončeno : << RKreport[2]_D_04032013_02d1734.txt >>
RKreport[1]_S_04032013_02d1733.txt ; RKreport[2]_D_04032013_02d1734.txt
GooredFix by jpshortstuff (03.07.10.1)
Log created at 17:38 on 03/04/2013 (user)
Firefox version 19.0.2 (cs)
========== GooredScan ==========
========== GooredLog ==========
C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd} [13:57 08/03/2013]
[HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions]
(none)
-=E.O.F=-
RogueKiller V8.5.4 [Mar 18 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.geekstogo.com/forum/files/fi ... guekiller/
Webové stránky : http://tigzy.geekstogo.com/roguekiller.php
: http://tigzyrk.blogspot.com/
Operační systém : Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Spuštěno v : Normální režim
Uživatel : user [Práva správce]
Mód : Kontrola -- Datum : 04/03/2013 17:33:12
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 1 ¤¤¤
[DLL] explorer.exe -- C:\Windows\explorer.exe : C:\Users\user\Desktop\Malwarebytes' Anti-Malware\mbamext.dll [x] -> ODEBRÁNO
¤¤¤ ¤¤¤ Záznamy Registrů: : 4 ¤¤¤
[HJPOL] HKCU\[...]\System : disableregistrytools (0) -> NALEZENO
[HJPOL] HKLM\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ DESK] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> C:\Windows\system32\drivers\etc\hosts
¤¤¤ Kontrola MBR: ¤¤¤
+++++ PhysicalDrive0: WDC WD10EADS-00L5B1 ATA Device +++++
--- User ---
[MBR] 7f33ed9d74f6111f9b26a83bf54dd01c
[BSP] 08cb55dbf2cf051af7d4bc11240e7996 : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 63 | Size: 1255 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 2570400 | Size: 252694 Mo
2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 520088310 | Size: 699917 Mo
User = LL1 ... OK!
User = LL2 ... OK!
Dokončeno : << RKreport[1]_S_04032013_02d1733.txt >>
RKreport[1]_S_04032013_02d1733.txt
RogueKiller V8.5.4 [Mar 18 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.geekstogo.com/forum/files/fi ... guekiller/
Webové stránky : http://tigzy.geekstogo.com/roguekiller.php
: http://tigzyrk.blogspot.com/
Operační systém : Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Spuštěno v : Normální režim
Uživatel : user [Práva správce]
Mód : Odebrat -- Datum : 04/03/2013 17:34:35
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 1 ¤¤¤
[DLL] explorer.exe -- C:\Windows\explorer.exe : C:\Users\user\Desktop\Malwarebytes' Anti-Malware\mbamext.dll [x] -> ODEBRÁNO
¤¤¤ ¤¤¤ Záznamy Registrů: : 4 ¤¤¤
[HJPOL] HKCU\[...]\System : disableregistrytools (0) -> VYMAZÁNO
[HJPOL] HKLM\[...]\System : DisableRegistryTools (0) -> VYMAZÁNO
[HJ DESK] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> C:\Windows\system32\drivers\etc\hosts
¤¤¤ Kontrola MBR: ¤¤¤
+++++ PhysicalDrive0: WDC WD10EADS-00L5B1 ATA Device +++++
--- User ---
[MBR] 7f33ed9d74f6111f9b26a83bf54dd01c
[BSP] 08cb55dbf2cf051af7d4bc11240e7996 : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 63 | Size: 1255 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 2570400 | Size: 252694 Mo
2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 520088310 | Size: 699917 Mo
User = LL1 ... OK!
User = LL2 ... OK!
Dokončeno : << RKreport[2]_D_04032013_02d1734.txt >>
RKreport[1]_S_04032013_02d1733.txt ; RKreport[2]_D_04032013_02d1734.txt
GooredFix by jpshortstuff (03.07.10.1)
Log created at 17:38 on 03/04/2013 (user)
Firefox version 19.0.2 (cs)
========== GooredScan ==========
========== GooredLog ==========
C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd} [13:57 08/03/2013]
[HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions]
(none)
-=E.O.F=-
Re: Prosím o kontrolu logu
ten log s TDSSKiller musím rozdělit je moc velký
17:39:49.0617 4024 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
17:39:49.0757 4024 ============================================================
17:39:49.0757 4024 Current date / time: 2013/04/03 17:39:49.0757
17:39:49.0757 4024 SystemInfo:
17:39:49.0757 4024
17:39:49.0757 4024 OS Version: 6.1.7601 ServicePack: 1.0
17:39:49.0757 4024 Product type: Workstation
17:39:49.0757 4024 ComputerName: USER-PC
17:39:49.0757 4024 UserName: user
17:39:49.0757 4024 Windows directory: C:\Windows
17:39:49.0757 4024 System windows directory: C:\Windows
17:39:49.0757 4024 Processor architecture: Intel x86
17:39:49.0757 4024 Number of processors: 4
17:39:49.0757 4024 Page size: 0x1000
17:39:49.0757 4024 Boot type: Normal boot
17:39:49.0757 4024 ============================================================
17:39:50.0726 4024 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
17:39:50.0726 4024 ============================================================
17:39:50.0726 4024 \Device\Harddisk0\DR0:
17:39:50.0726 4024 MBR partitions:
17:39:50.0726 4024 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x273861
17:39:50.0726 4024 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x2738A0, BlocksNum 0x1ED8B256
17:39:50.0726 4024 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x1EFFEAF6, BlocksNum 0x55706ECB
17:39:50.0726 4024 ============================================================
17:39:50.0789 4024 C: <-> \Device\Harddisk0\DR0\Partition2
17:39:50.0820 4024 D: <-> \Device\Harddisk0\DR0\Partition3
17:39:50.0820 4024 ============================================================
17:39:50.0820 4024 Initialize success
17:39:50.0820 4024 ============================================================
17:39:55.0023 5996 ============================================================
17:39:55.0023 5996 Scan started
17:39:55.0023 5996 Mode: Manual;
17:39:55.0023 5996 ============================================================
17:39:56.0085 5996 ================ Scan system memory ========================
17:39:56.0085 5996 System memory - ok
17:39:56.0085 5996 ================ Scan services =============================
17:39:56.0257 5996 [ 1B133875B8AA8AC48969BD3458AFE9F5 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
17:39:56.0273 5996 1394ohci - ok
17:39:56.0304 5996 [ CEA80C80BED809AA0DA6FEBC04733349 ] ACPI C:\Windows\system32\drivers\ACPI.sys
17:39:56.0304 5996 ACPI - ok
17:39:56.0351 5996 [ 1EFBC664ABFF416D1D07DB115DCB264F ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
17:39:56.0367 5996 AcpiPmi - ok
17:39:56.0414 5996 [ 3927397AC60D943DAF8808AFFED582B7 ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
17:39:56.0414 5996 AdobeARMservice - ok
17:39:56.0476 5996 [ EA856F4A46320389D1899B2CAA7BF40F ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
17:39:56.0476 5996 AdobeFlashPlayerUpdateSvc - ok
17:39:56.0507 5996 [ 21E785EBD7DC90A06391141AAC7892FB ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys
17:39:56.0539 5996 adp94xx - ok
17:39:56.0554 5996 [ 0C676BC278D5B59FF5ABD57BBE9123F2 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys
17:39:56.0570 5996 adpahci - ok
17:39:56.0585 5996 [ 7C7B5EE4B7B822EC85321FE23A27DB33 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys
17:39:56.0585 5996 adpu320 - ok
17:39:56.0617 5996 [ 8B5EEFEEC1E6D1A72A06C526628AD161 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
17:39:56.0617 5996 AeLookupSvc - ok
17:39:56.0679 5996 [ 9EBBBA55060F786F0FCAA3893BFA2806 ] AFD C:\Windows\system32\drivers\afd.sys
17:39:56.0695 5996 AFD - ok
17:39:56.0710 5996 [ 507812C3054C21CEF746B6EE3D04DD6E ] agp440 C:\Windows\system32\drivers\agp440.sys
17:39:56.0726 5996 agp440 - ok
17:39:56.0742 5996 [ 8B30250D573A8F6B4BD23195160D8707 ] aic78xx C:\Windows\system32\DRIVERS\djsvs.sys
17:39:56.0757 5996 aic78xx - ok
17:39:56.0773 5996 [ 18A54E132947CD98FEA9ACCC57F98F13 ] ALG C:\Windows\System32\alg.exe
17:39:56.0773 5996 ALG - ok
17:39:56.0789 5996 [ 0D40BCF52EA90FC7DF2AEAB6503DEA44 ] aliide C:\Windows\system32\drivers\aliide.sys
17:39:56.0804 5996 aliide - ok
17:39:56.0851 5996 [ FF794EC143F166349B49CF13507311D2 ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe
17:39:56.0851 5996 AMD External Events Utility - ok
17:39:56.0867 5996 [ 3C6600A0696E90A463771C7422E23AB5 ] amdagp C:\Windows\system32\drivers\amdagp.sys
17:39:56.0882 5996 amdagp - ok
17:39:56.0898 5996 [ CD5914170297126B6266860198D1D4F0 ] amdide C:\Windows\system32\drivers\amdide.sys
17:39:56.0914 5996 amdide - ok
17:39:56.0929 5996 [ 00DDA200D71BAC534BF56A9DB5DFD666 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
17:39:56.0945 5996 AmdK8 - ok
17:39:57.0085 5996 [ 68D791D78454684340433E52059EB45E ] amdkmdag C:\Windows\system32\DRIVERS\atikmdag.sys
17:39:57.0148 5996 amdkmdag - ok
17:39:57.0164 5996 [ 96CD7053A516C30E61A05DF9757DA7DE ] amdkmdap C:\Windows\system32\DRIVERS\atikmpag.sys
17:39:57.0179 5996 amdkmdap - ok
17:39:57.0195 5996 [ 3CBF30F5370FDA40DD3E87DF38EA53B6 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
17:39:57.0210 5996 AmdPPM - ok
17:39:57.0242 5996 [ D320BF87125326F996D4904FE24300FC ] amdsata C:\Windows\system32\drivers\amdsata.sys
17:39:57.0257 5996 amdsata - ok
17:39:57.0289 5996 [ EA43AF0C423FF267355F74E7A53BDABA ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys
17:39:57.0304 5996 amdsbs - ok
17:39:57.0304 5996 [ 46387FB17B086D16DEA267D5BE23A2F2 ] amdxata C:\Windows\system32\drivers\amdxata.sys
17:39:57.0320 5996 amdxata - ok
17:39:57.0335 5996 [ AEA177F783E20150ACE5383EE368DA19 ] AppID C:\Windows\system32\drivers\appid.sys
17:39:57.0367 5996 AppID - ok
17:39:57.0382 5996 [ 62A9C86CB6085E20DB4823E4E97826F5 ] AppIDSvc C:\Windows\System32\appidsvc.dll
17:39:57.0382 5996 AppIDSvc - ok
17:39:57.0398 5996 [ FB1959012294D6AD43E5304DF65E3C26 ] Appinfo C:\Windows\System32\appinfo.dll
17:39:57.0398 5996 Appinfo - ok
17:39:57.0429 5996 [ 2932004F49677BD84DBC72EDB754FFB3 ] arc C:\Windows\system32\DRIVERS\arc.sys
17:39:57.0445 5996 arc - ok
17:39:57.0460 5996 [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7 ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys
17:39:57.0460 5996 arcsas - ok
17:39:57.0492 5996 [ ADD2ADE1C2B285AB8378D2DAAF991481 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
17:39:57.0507 5996 AsyncMac - ok
17:39:57.0539 5996 [ 338C86357871C167A96AB976519BF59E ] atapi C:\Windows\system32\drivers\atapi.sys
17:39:57.0539 5996 atapi - ok
17:39:57.0570 5996 [ 84FAF3D287D56D210F84DB7C1349D43B ] AtiHDAudioService C:\Windows\system32\drivers\AtihdW73.sys
17:39:57.0585 5996 AtiHDAudioService - ok
17:39:57.0710 5996 [ 68D791D78454684340433E52059EB45E ] atikmdag C:\Windows\system32\DRIVERS\atikmdag.sys
17:39:57.0757 5996 atikmdag - ok
17:39:57.0789 5996 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
17:39:57.0789 5996 AudioEndpointBuilder - ok
17:39:57.0789 5996 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] Audiosrv C:\Windows\System32\Audiosrv.dll
17:39:57.0804 5996 Audiosrv - ok
17:39:57.0820 5996 [ 6E30D02AAC9CAC84F421622E3A2F6178 ] AxInstSV C:\Windows\System32\AxInstSV.dll
17:39:57.0820 5996 AxInstSV - ok
17:39:57.0835 5996 [ 1A231ABEC60FD316EC54C66715543CEC ] b06bdrv C:\Windows\system32\DRIVERS\bxvbdx.sys
17:39:57.0851 5996 b06bdrv - ok
17:39:57.0867 5996 [ BD8869EB9CDE6BBE4508D869929869EE ] b57nd60x C:\Windows\system32\DRIVERS\b57nd60x.sys
17:39:57.0882 5996 b57nd60x - ok
17:39:57.0898 5996 [ EE1E9C3BB8228AE423DD38DB69128E71 ] BDESVC C:\Windows\System32\bdesvc.dll
17:39:57.0898 5996 BDESVC - ok
17:39:57.0914 5996 [ 505506526A9D467307B3C393DEDAF858 ] Beep C:\Windows\system32\drivers\Beep.sys
17:39:57.0929 5996 Beep - ok
17:39:57.0960 5996 [ 1E2BAC209D184BB851E1A187D8A29136 ] BFE C:\Windows\System32\bfe.dll
17:39:57.0976 5996 BFE - ok
17:39:58.0007 5996 [ E585445D5021971FAE10393F0F1C3961 ] BITS C:\Windows\System32\qmgr.dll
17:39:58.0007 5996 BITS - ok
17:39:58.0023 5996 [ 2287078ED48FCFC477B05B20CF38F36F ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
17:39:58.0039 5996 blbdrive - ok
17:39:58.0054 5996 [ 8F2DA3028D5FCBD1A060A3DE64CD6506 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
17:39:58.0070 5996 bowser - ok
17:39:58.0070 5996 [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys
17:39:58.0070 5996 BrFiltLo - ok
17:39:58.0085 5996 [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys
17:39:58.0085 5996 BrFiltUp - ok
17:39:58.0132 5996 [ 77361D72A04F18809D0EFB6CCEB74D4B ] BridgeMP C:\Windows\system32\DRIVERS\bridge.sys
17:39:58.0148 5996 BridgeMP - ok
17:39:58.0179 5996 [ 3DAA727B5B0A45039B0E1C9A211B8400 ] Browser C:\Windows\System32\browser.dll
17:39:58.0179 5996 Browser - ok
17:39:58.0195 5996 [ 845B8CE732E67F3B4133164868C666EA ] Brserid C:\Windows\System32\Drivers\Brserid.sys
17:39:58.0195 5996 Brserid - ok
17:39:58.0210 5996 [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
17:39:58.0210 5996 BrSerWdm - ok
17:39:58.0226 5996 [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
17:39:58.0226 5996 BrUsbMdm - ok
17:39:58.0226 5996 [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
17:39:58.0226 5996 BrUsbSer - ok
17:39:58.0242 5996 [ ED3DF7C56CE0084EB2034432FC56565A ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys
17:39:58.0257 5996 BTHMODEM - ok
17:39:58.0289 5996 [ 1DF19C96EEF6C29D1C3E1A8678E07190 ] bthserv C:\Windows\system32\bthserv.dll
17:39:58.0289 5996 bthserv - ok
17:39:58.0304 5996 [ 77EA11B065E0A8AB902D78145CA51E10 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
17:39:58.0304 5996 cdfs - ok
17:39:58.0351 5996 [ BE167ED0FDB9C1FA1133953C18D5A6C9 ] cdrom C:\Windows\system32\drivers\cdrom.sys
17:39:58.0367 5996 cdrom - ok
17:39:58.0382 5996 [ 319C6B309773D063541D01DF8AC6F55F ] CertPropSvc C:\Windows\System32\certprop.dll
17:39:58.0398 5996 CertPropSvc - ok
17:39:58.0414 5996 [ 3FE3FE94A34DF6FB06E6418D0F6A0060 ] circlass C:\Windows\system32\DRIVERS\circlass.sys
17:39:58.0414 5996 circlass - ok
17:39:58.0429 5996 [ 635181E0E9BBF16871BF5380D71DB02D ] CLFS C:\Windows\system32\CLFS.sys
17:39:58.0429 5996 CLFS - ok
17:39:58.0476 5996 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
17:39:58.0476 5996 clr_optimization_v2.0.50727_32 - ok
17:39:58.0523 5996 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
17:39:58.0523 5996 clr_optimization_v4.0.30319_32 - ok
17:39:58.0539 5996 [ DEA805815E587DAD1DD2C502220B5616 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
17:39:58.0554 5996 CmBatt - ok
17:39:58.0554 5996 [ C537B1DB64D495B9B4717B4D6D9EDBF2 ] cmdide C:\Windows\system32\drivers\cmdide.sys
17:39:58.0570 5996 cmdide - ok
17:39:58.0601 5996 [ 247B4CE2DAB1160CD422D532D5241E1F ] CNG C:\Windows\system32\Drivers\cng.sys
17:39:58.0601 5996 CNG - ok
17:39:58.0617 5996 [ A6023D3823C37043986713F118A89BEE ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
17:39:58.0632 5996 Compbatt - ok
17:39:58.0632 5996 [ CBE8C58A8579CFE5FCCF809E6F114E89 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys
17:39:58.0632 5996 CompositeBus - ok
17:39:58.0632 5996 COMSysApp - ok
17:39:58.0648 5996 [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys
17:39:58.0664 5996 crcdisk - ok
17:39:58.0679 5996 [ 96C0E38905CFD788313BE8E11DAE3F2F ] CryptSvc C:\Windows\system32\cryptsvc.dll
17:39:58.0679 5996 CryptSvc - ok
17:39:58.0710 5996 [ 7660F01D3B38ACA1747E397D21D790AF ] DcomLaunch C:\Windows\system32\rpcss.dll
17:39:58.0710 5996 DcomLaunch - ok
17:39:58.0726 5996 [ 8D6E10A2D9A5EED59562D9B82CF804E1 ] defragsvc C:\Windows\System32\defragsvc.dll
17:39:58.0742 5996 defragsvc - ok
17:39:58.0757 5996 [ F024449C97EC1E464AAFFDA18593DB88 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
17:39:58.0773 5996 DfsC - ok
17:39:58.0804 5996 [ E9E01EB683C132F7FA27CD607B8A2B63 ] Dhcp C:\Windows\system32\dhcpcore.dll
17:39:58.0804 5996 Dhcp - ok
17:39:58.0820 5996 [ 1A050B0274BFB3890703D490F330C0DA ] discache C:\Windows\system32\drivers\discache.sys
17:39:58.0835 5996 discache - ok
17:39:58.0851 5996 [ 565003F326F99802E68CA78F2A68E9FF ] Disk C:\Windows\system32\DRIVERS\disk.sys
17:39:58.0867 5996 Disk - ok
17:39:58.0898 5996 [ 33EF4861F19A0736B11314AAD9AE28D0 ] Dnscache C:\Windows\System32\dnsrslvr.dll
17:39:58.0898 5996 Dnscache - ok
17:39:58.0929 5996 [ 366BA8FB4B7BB7435E3B9EACB3843F67 ] dot3svc C:\Windows\System32\dot3svc.dll
17:39:58.0929 5996 dot3svc - ok
17:39:58.0960 5996 [ 8EC04CA86F1D68DA9E11952EB85973D6 ] DPS C:\Windows\system32\dps.dll
17:39:58.0960 5996 DPS - ok
17:39:58.0992 5996 [ B918E7C5F9BF77202F89E1A9539F2EB4 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
17:39:59.0007 5996 drmkaud - ok
17:39:59.0039 5996 [ 555E54AC2F601A8821CEF58961653991 ] dtsoftbus01 C:\Windows\system32\DRIVERS\dtsoftbus01.sys
17:39:59.0039 5996 dtsoftbus01 - ok
17:39:59.0070 5996 [ 23F5D28378A160352BA8F817BD8C71CB ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
17:39:59.0164 5996 DXGKrnl - ok
17:39:59.0195 5996 [ 73CE42907CF42BFB91BCD27FE7C7A7AF ] eamonm C:\Windows\system32\DRIVERS\eamonm.sys
17:39:59.0195 5996 eamonm - ok
17:39:59.0210 5996 [ 8600142FA91C1B96367D3300AD0F3F3A ] EapHost C:\Windows\System32\eapsvc.dll
17:39:59.0210 5996 EapHost - ok
17:39:59.0273 5996 [ 024E1B5CAC09731E4D868E64DBFB4AB0 ] ebdrv C:\Windows\system32\DRIVERS\evbdx.sys
17:39:59.0304 5996 ebdrv - ok
17:39:59.0320 5996 [ 81951F51E318AECC2D68559E47485CC4 ] EFS C:\Windows\System32\lsass.exe
17:39:59.0320 5996 EFS - ok
17:39:59.0351 5996 [ 7D300A43A7BD8769E0F901BF9E1AE367 ] ehdrv C:\Windows\system32\DRIVERS\ehdrv.sys
17:39:59.0367 5996 ehdrv - ok
17:39:59.0414 5996 [ A8C362018EFC87BEB013EE28F29C0863 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
17:39:59.0414 5996 ehRecvr - ok
17:39:59.0429 5996 [ D389BFF34F80CAEDE417BF9D1507996A ] ehSched C:\Windows\ehome\ehsched.exe
17:39:59.0429 5996 ehSched - ok
17:39:59.0492 5996 [ D83323D7CD5D1CC46B42DA9E59409890 ] EhttpSrv C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
17:39:59.0507 5996 EhttpSrv - ok
17:39:59.0539 5996 [ EFA198F8983D064A81052851F7BB80C2 ] ekrn C:\Program Files\ESET\ESET Smart Security\ekrn.exe
17:39:59.0539 5996 ekrn - ok
17:39:59.0570 5996 [ 0ED67910C8C326796FAA00B2BF6D9D3C ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys
17:39:59.0585 5996 elxstor - ok
17:39:59.0617 5996 [ 15BFE00F030EA20955117BB0677E9668 ] epfw C:\Windows\system32\DRIVERS\epfw.sys
17:39:59.0617 5996 epfw - ok
17:39:59.0632 5996 [ 52310E0E603D7DA79ECCA7D764937A91 ] Epfwndis C:\Windows\system32\DRIVERS\Epfwndis.sys
17:39:59.0648 5996 Epfwndis - ok
17:39:59.0679 5996 [ 235250A79CF1E16A5A42407CFE3F6A4C ] epfwwfp C:\Windows\system32\DRIVERS\epfwwfp.sys
17:39:59.0679 5996 epfwwfp - ok
17:39:59.0710 5996 [ 8FC3208352DD3912C94367A206AB3F11 ] ErrDev C:\Windows\system32\drivers\errdev.sys
17:39:59.0710 5996 ErrDev - ok
17:39:59.0742 5996 [ F6916EFC29D9953D5D0DF06882AE8E16 ] EventSystem C:\Windows\system32\es.dll
17:39:59.0742 5996 EventSystem - ok
17:39:59.0757 5996 [ 2DC9108D74081149CC8B651D3A26207F ] exfat C:\Windows\system32\drivers\exfat.sys
17:39:59.0773 5996 exfat - ok
17:39:59.0789 5996 [ 7E0AB74553476622FB6AE36F73D97D35 ] fastfat C:\Windows\system32\drivers\fastfat.sys
17:39:59.0804 5996 fastfat - ok
17:39:59.0851 5996 [ 967EA5B213E9984CBE270205DF37755B ] Fax C:\Windows\system32\fxssvc.exe
17:39:59.0867 5996 Fax - ok
17:39:59.0882 5996 [ E817A017F82DF2A1F8CFDBDA29388B29 ] fdc C:\Windows\system32\DRIVERS\fdc.sys
17:39:59.0898 5996 fdc - ok
17:39:59.0914 5996 [ F3222C893BD2F5821A0179E5C71E88FB ] fdPHost C:\Windows\system32\fdPHost.dll
17:39:59.0914 5996 fdPHost - ok
17:39:59.0929 5996 [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B ] FDResPub C:\Windows\system32\fdrespub.dll
17:39:59.0929 5996 FDResPub - ok
17:39:59.0929 5996 [ 6CF00369C97F3CF563BE99BE983D13D8 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
17:39:59.0945 5996 FileInfo - ok
17:39:59.0960 5996 [ 42C51DC94C91DA21CB9196EB64C45DB9 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
17:39:59.0976 5996 Filetrace - ok
17:39:59.0992 5996 [ 87907AA70CB3C56600F1C2FB8841579B ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
17:40:00.0007 5996 flpydisk - ok
17:40:00.0007 5996 [ 7520EC808E0C35E0EE6F841294316653 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
17:40:00.0023 5996 FltMgr - ok
17:40:00.0070 5996 [ E12C4928B32ACE04610259647F072635 ] FontCache C:\Windows\system32\FntCache.dll
17:40:00.0085 5996 FontCache - ok
17:40:00.0132 5996 [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
17:40:00.0132 5996 FontCache3.0.0.0 - ok
17:40:00.0148 5996 [ 1A16B57943853E598CFF37FE2B8CBF1D ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
17:40:00.0164 5996 FsDepends - ok
17:40:00.0179 5996 [ 7DAE5EBCC80E45D3253F4923DC424D05 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
17:40:00.0195 5996 Fs_Rec - ok
17:40:00.0210 5996 [ 8A73E79089B282100B9393B644CB853B ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
17:40:00.0242 5996 fvevol - ok
17:40:00.0257 5996 [ 65EE0C7A58B65E74AE05637418153938 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys
17:40:00.0273 5996 gagp30kx - ok
17:40:00.0304 5996 [ E897EAF5ED6BA41E081060C9B447A673 ] gpsvc C:\Windows\System32\gpsvc.dll
17:40:00.0320 5996 gpsvc - ok
17:40:00.0320 5996 [ C44E3C2BAB6837DB337DDEE7544736DB ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
17:40:00.0335 5996 hcw85cir - ok
17:40:00.0367 5996 [ A5EF29D5315111C80A5C1ABAD14C8972 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
17:40:00.0414 5996 HdAudAddService - ok
17:40:00.0429 5996 [ 9036377B8A6C15DC2EEC53E489D159B5 ] HDAudBus C:\Windows\system32\drivers\HDAudBus.sys
17:40:00.0429 5996 HDAudBus - ok
17:40:00.0445 5996 [ 1D58A7F3E11A9731D0EAAAA8405ACC36 ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys
17:40:00.0460 5996 HidBatt - ok
17:40:00.0460 5996 [ 89448F40E6DF260C206A193A4683BA78 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys
17:40:00.0476 5996 HidBth - ok
17:40:00.0507 5996 [ CF50B4CF4A4F229B9F3C08351F99CA5E ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
17:40:00.0507 5996 HidIr - ok
17:40:00.0523 5996 [ 2BC6F6A1992B3A77F5F41432CA6B3B6B ] hidserv C:\Windows\System32\hidserv.dll
17:40:00.0539 5996 hidserv - ok
17:40:00.0554 5996 [ 10C19F8290891AF023EAEC0832E1EB4D ] HidUsb C:\Windows\system32\drivers\hidusb.sys
17:40:00.0570 5996 HidUsb - ok
17:40:00.0585 5996 [ 196B4E3F4CCCC24AF836CE58FACBB699 ] hkmsvc C:\Windows\system32\kmsvc.dll
17:40:00.0585 5996 hkmsvc - ok
17:40:00.0601 5996 [ 6658F4404DE03D75FE3BA09F7ABA6A30 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
17:40:00.0601 5996 HomeGroupListener - ok
17:40:00.0632 5996 [ DBC02D918FFF1CAD628ACBE0C0EAA8E8 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
17:40:00.0632 5996 HomeGroupProvider - ok
17:40:00.0648 5996 [ 295FDC419039090EB8B49FFDBB374549 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
17:40:00.0679 5996 HpSAMD - ok
17:40:00.0726 5996 [ 871917B07A141BFF43D76D8844D48106 ] HTTP C:\Windows\system32\drivers\HTTP.sys
17:40:00.0742 5996 HTTP - ok
17:40:00.0757 5996 [ 0C4E035C7F105F1299258C90886C64C5 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
17:40:00.0773 5996 hwpolicy - ok
17:40:00.0789 5996 [ F151F0BDC47F4A28B1B20A0818EA36D6 ] i8042prt C:\Windows\system32\drivers\i8042prt.sys
17:40:00.0804 5996 i8042prt - ok
17:40:00.0820 5996 [ 5CD5F9A5444E6CDCB0AC89BD62D8B76E ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
17:40:00.0835 5996 iaStorV - ok
17:40:00.0882 5996 [ 1CF03C69B49ACB70C722DF92755C0C8C ] IDriverT C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
17:40:00.0898 5996 IDriverT - ok
17:40:00.0929 5996 [ C521D7EB6497BB1AF6AFA89E322FB43C ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
17:40:00.0929 5996 idsvc - ok
17:40:00.0960 5996 [ 4173FF5708F3236CF25195FECD742915 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys
17:40:00.0976 5996 iirsp - ok
17:40:01.0007 5996 [ F95622F161474511B8D80D6B093AA610 ] IKEEXT C:\Windows\System32\ikeext.dll
17:40:01.0007 5996 IKEEXT - ok
17:40:01.0117 5996 [ F2C17D2C3D70C389193D9954E375E5E3 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHDA.sys
17:40:01.0164 5996 IntcAzAudAddService - ok
17:40:01.0242 5996 [ A0F12F2C9BA6C72F3987CE780E77C130 ] intelide C:\Windows\system32\drivers\intelide.sys
17:40:01.0257 5996 intelide - ok
17:40:01.0273 5996 [ 3B514D27BFC4ACCB4037BC6685F766E0 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
17:40:01.0289 5996 intelppm - ok
17:40:01.0304 5996 [ ACB364B9075A45C0736E5C47BE5CAE19 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
17:40:01.0304 5996 IPBusEnum - ok
17:40:01.0320 5996 [ 709D1761D3B19A932FF0238EA6D50200 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
17:40:01.0335 5996 IpFilterDriver - ok
17:40:01.0367 5996 [ 58F67245D041FBE7AF88F4EAF79DF0FA ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
17:40:01.0367 5996 iphlpsvc - ok
17:40:01.0398 5996 [ 4BD7134618C1D2A27466A099062547BF ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
17:40:01.0398 5996 IPMIDRV - ok
17:40:01.0414 5996 [ A5FA468D67ABCDAA36264E463A7BB0CD ] IPNAT C:\Windows\system32\drivers\ipnat.sys
17:40:01.0445 5996 IPNAT - ok
17:40:01.0460 5996 [ 42996CFF20A3084A56017B7902307E9F ] IRENUM C:\Windows\system32\drivers\irenum.sys
17:40:01.0476 5996 IRENUM - ok
17:40:01.0492 5996 [ 1F32BB6B38F62F7DF1A7AB7292638A35 ] isapnp C:\Windows\system32\drivers\isapnp.sys
17:40:01.0507 5996 isapnp - ok
17:40:01.0539 5996 [ CB7A9ABB12B8415BCE5D74994C7BA3AE ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
17:40:01.0570 5996 iScsiPrt - ok
17:40:01.0585 5996 [ ADEF52CA1AEAE82B50DF86B56413107E ] kbdclass C:\Windows\system32\drivers\kbdclass.sys
17:40:01.0601 5996 kbdclass - ok
17:40:01.0632 5996 [ 9E3CED91863E6EE98C24794D05E27A71 ] kbdhid C:\Windows\system32\drivers\kbdhid.sys
17:40:01.0648 5996 kbdhid - ok
17:40:01.0648 5996 [ 81951F51E318AECC2D68559E47485CC4 ] KeyIso C:\Windows\system32\lsass.exe
17:40:01.0664 5996 KeyIso - ok
17:40:01.0679 5996 [ B7895B4182C0D16F6EFADEB8081E8D36 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
17:40:01.0679 5996 KSecDD - ok
17:40:01.0710 5996 [ D30159AC9237519FBC62C6EC247D2D46 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
17:40:01.0742 5996 KSecPkg - ok
17:40:01.0757 5996 [ 89A7B9CC98D0D80C6F31B91C0A310FCD ] KtmRm C:\Windows\system32\msdtckrm.dll
17:40:01.0757 5996 KtmRm - ok
17:40:01.0789 5996 [ D64AF876D53ECA3668BB97B51B4E70AB ] LanmanServer C:\Windows\System32\srvsvc.dll
17:40:01.0789 5996 LanmanServer - ok
17:40:01.0820 5996 [ 58405E4F68BA8E4057C6E914F326ABA2 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
17:40:01.0820 5996 LanmanWorkstation - ok
17:40:01.0835 5996 [ F7611EC07349979DA9B0AE1F18CCC7A6 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
17:40:01.0851 5996 lltdio - ok
17:40:01.0867 5996 [ 5700673E13A2117FA3B9020C852C01E2 ] lltdsvc C:\Windows\System32\lltdsvc.dll
17:40:01.0882 5996 lltdsvc - ok
17:40:01.0882 5996 [ 55CA01BA19D0006C8F2639B6C045E08B ] lmhosts C:\Windows\System32\lmhsvc.dll
17:40:01.0882 5996 lmhosts - ok
17:40:01.0914 5996 [ EB119A53CCF2ACC000AC71B065B78FEF ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys
17:40:01.0929 5996 LSI_FC - ok
17:40:01.0929 5996 [ 8ADE1C877256A22E49B75D1CC9161F9C ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys
17:40:01.0945 5996 LSI_SAS - ok
17:40:01.0960 5996 [ DC9DC3D3DAA0E276FD2EC262E38B11E9 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys
17:40:01.0976 5996 LSI_SAS2 - ok
17:40:01.0992 5996 [ 0A036C7D7CAB643A7F07135AC47E0524 ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys
17:40:02.0007 5996 LSI_SCSI - ok
17:40:02.0023 5996 [ 6703E366CC18D3B6E534F5CF7DF39CEE ] luafv C:\Windows\system32\drivers\luafv.sys
17:40:02.0039 5996 luafv - ok
17:40:02.0054 5996 [ 629CABB0421668C9D3D402A3C3D77E14 ] MBAMProtector C:\Windows\system32\drivers\mbam.sys
17:40:02.0054 5996 MBAMProtector - ok
17:40:02.0132 5996 [ 1ACAA67676E9E7BDA5E0C41B6E0DECAF ] MBAMScheduler C:\Users\user\Desktop\Malwarebytes' Anti-Malware\mbamscheduler.exe
17:40:02.0132 5996 MBAMScheduler - ok
17:40:02.0164 5996 [ 916B8954AC3E06DC9E898AFFB41F3FB6 ] MBAMService C:\Users\user\Desktop\Malwarebytes' Anti-Malware\mbamservice.exe
17:40:02.0179 5996 MBAMService - ok
17:40:02.0210 5996 [ BFB9EE8EE977EFE85D1A3105ABEF6DD1 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
17:40:02.0210 5996 Mcx2Svc - ok
17:40:02.0210 5996 [ 0FFF5B045293002AB38EB1FD1FC2FB74 ] megasas C:\Windows\system32\DRIVERS\megasas.sys
17:40:02.0242 5996 megasas - ok
17:40:02.0257 5996 [ DCBAB2920C75F390CAF1D29F675D03D6 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys
17:40:02.0273 5996 MegaSR - ok
17:40:02.0335 5996 [ FAFE367D032ED82E9332B4C741A20216 ] Microsoft Office Groove Audit Service C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe
17:40:02.0335 5996 Microsoft Office Groove Audit Service - ok
17:40:02.0351 5996 [ 146B6F43A673379A3C670E86D89BE5EA ] MMCSS C:\Windows\system32\mmcss.dll
17:40:02.0367 5996 MMCSS - ok
17:40:02.0367 5996 [ F001861E5700EE84E2D4E52C712F4964 ] Modem C:\Windows\system32\drivers\modem.sys
17:40:02.0398 5996 Modem - ok
17:40:02.0414 5996 [ 79D10964DE86B292320E9DFE02282A23 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
17:40:02.0429 5996 monitor - ok
17:40:02.0460 5996 [ FB18CC1D4C2E716B6B903B0AC0CC0609 ] mouclass C:\Windows\system32\drivers\mouclass.sys
17:40:02.0476 5996 mouclass - ok
17:40:02.0492 5996 [ 2C388D2CD01C9042596CF3C8F3C7B24D ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
17:40:02.0507 5996 mouhid - ok
17:40:02.0523 5996 [ FC8771F45ECCCFD89684E38842539B9B ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
17:40:02.0539 5996 mountmgr - ok
17:40:02.0601 5996 [ 8A7C8F4C713E70D73946833D76B77035 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
17:40:02.0601 5996 MozillaMaintenance - ok
17:40:02.0632 5996 [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0 ] mpio C:\Windows\system32\drivers\mpio.sys
17:40:02.0664 5996 mpio - ok
17:40:02.0664 5996 [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
17:40:02.0679 5996 mpsdrv - ok
17:40:02.0695 5996 [ 9835584E999D25004E1EE8E5F3E3B881 ] MpsSvc C:\Windows\system32\mpssvc.dll
17:40:02.0710 5996 MpsSvc - ok
17:40:02.0726 5996 [ CEB46AB7C01C9F825F8CC6BABC18166A ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
17:40:02.0726 5996 MRxDAV - ok
17:40:02.0757 5996 [ 5D16C921E3671636C0EBA3BBAAC5FD25 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
17:40:02.0773 5996 mrxsmb - ok
17:40:02.0773 5996 [ 6D17A4791ACA19328C685D256349FEFC ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
17:40:02.0789 5996 mrxsmb10 - ok
17:40:02.0804 5996 [ B81F204D146000BE76651A50670A5E9E ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
17:40:02.0820 5996 mrxsmb20 - ok
17:40:02.0820 5996 [ 012C5F4E9349E711E11E0F19A8589F0A ] msahci C:\Windows\system32\drivers\msahci.sys
17:40:02.0835 5996 msahci - ok
17:40:02.0835 5996 [ 55055F8AD8BE27A64C831322A780A228 ] msdsm C:\Windows\system32\drivers\msdsm.sys
17:40:02.0851 5996 msdsm - ok
17:40:02.0867 5996 [ E1BCE74A3BD9902B72599C0192A07E27 ] MSDTC C:\Windows\System32\msdtc.exe
17:40:02.0867 5996 MSDTC - ok
17:40:02.0898 5996 [ DAEFB28E3AF5A76ABCC2C3078C07327F ] Msfs C:\Windows\system32\drivers\Msfs.sys
17:40:02.0914 5996 Msfs - ok
17:40:02.0914 5996 [ 3E1E5767043C5AF9367F0056295E9F84 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
17:40:02.0929 5996 mshidkmdf - ok
17:40:02.0945 5996 [ 0A4E5757AE09FA9622E3158CC1AEF114 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
17:40:02.0960 5996 msisadrv - ok
17:40:02.0992 5996 [ 90F7D9E6B6F27E1A707D4A297F077828 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
17:40:02.0992 5996 MSiSCSI - ok
17:40:02.0992 5996 msiserver - ok
17:40:03.0023 5996 [ 8C0860D6366AAFFB6C5BB9DF9448E631 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
17:40:03.0023 5996 MSKSSRV - ok
17:40:03.0023 5996 [ 3EA8B949F963562CEDBB549EAC0C11CE ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
17:40:03.0039 5996 MSPCLOCK - ok
17:40:03.0039 5996 [ F456E973590D663B1073E9C463B40932 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
17:40:03.0039 5996 MSPQM - ok
17:40:03.0054 5996 [ 0E008FC4819D238C51D7C93E7B41E560 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
17:40:03.0054 5996 MsRPC - ok
17:40:03.0070 5996 [ FC6B9FF600CC585EA38B12589BD4E246 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys
17:40:03.0085 5996 mssmbios - ok
17:40:03.0085 5996 [ B42C6B921F61A6E55159B8BE6CD54A36 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
17:40:03.0101 5996 MSTEE - ok
17:40:03.0101 5996 [ 33599130F44E1F34631CEA241DE8AC84 ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys
17:40:03.0117 5996 MTConfig - ok
17:40:03.0117 5996 [ 159FAD02F64E6381758C990F753BCC80 ] Mup C:\Windows\system32\Drivers\mup.sys
17:40:03.0117 5996 Mup - ok
17:40:03.0148 5996 [ 61D57A5D7C6D9AFE10E77DAE6E1B445E ] napagent C:\Windows\system32\qagentRT.dll
17:40:03.0164 5996 napagent - ok
17:40:03.0179 5996 [ 26384429FCD85D83746F63E798AB1480 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
17:40:03.0195 5996 NativeWifiP - ok
17:40:03.0257 5996 [ 6D8FCDD5BB3B676EF58FA234073492C6 ] NBService C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
17:40:03.0273 5996 NBService - ok
17:40:03.0304 5996 [ 8C9C922D71F1CD4DEF73F186416B7896 ] NDIS C:\Windows\system32\drivers\ndis.sys
17:40:03.0335 5996 NDIS - ok
17:40:03.0351 5996 [ 0E1787AA6C9191D3D319E8BAFE86F80C ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
17:40:03.0367 5996 NdisCap - ok
17:40:03.0367 5996 [ E4A8AEC125A2E43A9E32AFEEA7C9C888 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
17:40:03.0367 5996 NdisTapi - ok
17:40:03.0398 5996 [ D8A65DAFB3EB41CBB622745676FCD072 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
17:40:03.0414 5996 Ndisuio - ok
17:40:03.0445 5996 [ 38FBE267E7E6983311179230FACB1017 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
17:40:03.0445 5996 NdisWan - ok
17:40:03.0460 5996 [ A4BDC541E69674FBFF1A8FF00BE913F2 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
17:40:03.0492 5996 NDProxy - ok
17:40:03.0492 5996 [ 80B275B1CE3B0E79909DB7B39AF74D51 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
17:40:03.0523 5996 NetBIOS - ok
17:40:03.0539 5996 [ 280122DDCF04B378EDD1AD54D71C1E54 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
17:40:03.0570 5996 NetBT - ok
17:40:03.0585 5996 [ 81951F51E318AECC2D68559E47485CC4 ] Netlogon C:\Windows\system32\lsass.exe
17:40:03.0585 5996 Netlogon - ok
17:40:03.0601 5996 [ 7CCCFCA7510684768DA22092D1FA4DB2 ] Netman C:\Windows\System32\netman.dll
17:40:03.0617 5996 Netman - ok
17:40:03.0632 5996 [ 8C338238C16777A802D6A9211EB2BA50 ] netprofm C:\Windows\System32\netprofm.dll
17:40:03.0632 5996 netprofm - ok
17:40:03.0648 5996 [ F476EC40033CDB91EFBE73EB99B8362D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
17:40:03.0664 5996 NetTcpPortSharing - ok
17:40:03.0664 5996 [ 1D85C4B390B0EE09C7A46B91EFB2C097 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys
17:40:03.0679 5996 nfrd960 - ok
17:40:03.0710 5996 [ 374071043F9E4231EE43BE2BB48DD36D ] NlaSvc C:\Windows\System32\nlasvc.dll
17:40:03.0710 5996 NlaSvc - ok
17:40:03.0773 5996 [ 060DAF68493AD7ADF104413E5A62AFA8 ] NMIndexingService C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
17:40:03.0773 5996 NMIndexingService - ok
17:40:03.0789 5996 [ 1DB262A9F8C087E8153D89BEF3D2235F ] Npfs C:\Windows\system32\drivers\Npfs.sys
17:40:03.0804 5996 Npfs - ok
17:40:03.0820 5996 [ BA387E955E890C8A88306D9B8D06BF17 ] nsi C:\Windows\system32\nsisvc.dll
17:40:03.0820 5996 nsi - ok
17:40:03.0835 5996 [ E9A0A4D07E53D8FEA2BB8387A3293C58 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
17:40:03.0835 5996 nsiproxy - ok
17:40:03.0882 5996 [ 0D87503986BB3DFED58E343FE39DDE13 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
17:40:03.0914 5996 Ntfs - ok
17:40:03.0929 5996 [ F9756A98D69098DCA8945D62858A812C ] Null C:\Windows\system32\drivers\Null.sys
17:40:03.0929 5996 Null - ok
17:40:03.0960 5996 [ B3E25EE28883877076E0E1FF877D02E0 ] nvraid C:\Windows\system32\drivers\nvraid.sys
17:40:03.0976 5996 nvraid - ok
17:40:03.0992 5996 [ 4380E59A170D88C4F1022EFF6719A8A4 ] nvstor C:\Windows\system32\drivers\nvstor.sys
17:40:04.0007 5996 nvstor - ok
17:40:04.0039 5996 [ 5A0983915F02BAE73267CC2A041F717D ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
17:40:04.0054 5996 nv_agp - ok
17:40:04.0117 5996 [ 84DE1DD996B48B05ACE31AD015FA108A ] odserv C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
17:40:04.0117 5996 odserv - ok
17:40:04.0148 5996 [ 08A70A1F2CDDE9BB49B885CB817A66EB ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
17:40:04.0148 5996 ohci1394 - ok
17:40:04.0164 5996 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
17:40:04.0164 5996 ose - ok
17:40:04.0210 5996 [ 82A8521DDC60710C3D3D3E7325209BEC ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
17:40:04.0210 5996 p2pimsvc - ok
17:40:04.0226 5996 [ 59C3DDD501E39E006DAC31BF55150D91 ] p2psvc C:\Windows\system32\p2psvc.dll
17:40:04.0226 5996 p2psvc - ok
17:40:04.0242 5996 [ 2EA877ED5DD9713C5AC74E8EA7348D14 ] Parport C:\Windows\system32\DRIVERS\parport.sys
17:40:04.0273 5996 Parport - ok
17:40:04.0289 5996 [ 3F34A1B4C5F6475F320C275E63AFCE9B ] partmgr C:\Windows\system32\drivers\partmgr.sys
17:40:04.0335 5996 partmgr - ok
17:40:04.0335 5996 [ EB0A59F29C19B86479D36B35983DAADC ] Parvdm C:\Windows\system32\DRIVERS\parvdm.sys
17:40:04.0351 5996 Parvdm - ok
17:40:04.0367 5996 [ 358AB7956D3160000726574083DFC8A6 ] PcaSvc C:\Windows\System32\pcasvc.dll
17:40:04.0367 5996 PcaSvc - ok
17:40:04.0398 5996 [ 673E55C3498EB970088E812EA820AA8F ] pci C:\Windows\system32\drivers\pci.sys
17:40:04.0414 5996 pci - ok
17:40:04.0429 5996 [ AFE86F419014DB4E5593F69FFE26CE0A ] pciide C:\Windows\system32\drivers\pciide.sys
17:40:04.0445 5996 pciide - ok
17:40:04.0445 5996 [ F396431B31693E71E8A80687EF523506 ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys
17:40:04.0460 5996 pcmcia - ok
17:40:04.0476 5996 [ 250F6B43D2B613172035C6747AEEB19F ] pcw C:\Windows\system32\drivers\pcw.sys
17:40:04.0492 5996 pcw - ok
17:40:04.0523 5996 [ 9E0104BA49F4E6973749A02BF41344ED ] PEAUTH C:\Windows\system32\drivers\peauth.sys
17:40:04.0523 5996 PEAUTH - ok
17:40:04.0570 5996 [ 414BBA67A3DED1D28437EB66AEB8A720 ] pla C:\Windows\system32\pla.dll
17:40:04.0601 5996 pla - ok
17:39:49.0617 4024 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
17:39:49.0757 4024 ============================================================
17:39:49.0757 4024 Current date / time: 2013/04/03 17:39:49.0757
17:39:49.0757 4024 SystemInfo:
17:39:49.0757 4024
17:39:49.0757 4024 OS Version: 6.1.7601 ServicePack: 1.0
17:39:49.0757 4024 Product type: Workstation
17:39:49.0757 4024 ComputerName: USER-PC
17:39:49.0757 4024 UserName: user
17:39:49.0757 4024 Windows directory: C:\Windows
17:39:49.0757 4024 System windows directory: C:\Windows
17:39:49.0757 4024 Processor architecture: Intel x86
17:39:49.0757 4024 Number of processors: 4
17:39:49.0757 4024 Page size: 0x1000
17:39:49.0757 4024 Boot type: Normal boot
17:39:49.0757 4024 ============================================================
17:39:50.0726 4024 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
17:39:50.0726 4024 ============================================================
17:39:50.0726 4024 \Device\Harddisk0\DR0:
17:39:50.0726 4024 MBR partitions:
17:39:50.0726 4024 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x273861
17:39:50.0726 4024 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x2738A0, BlocksNum 0x1ED8B256
17:39:50.0726 4024 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x1EFFEAF6, BlocksNum 0x55706ECB
17:39:50.0726 4024 ============================================================
17:39:50.0789 4024 C: <-> \Device\Harddisk0\DR0\Partition2
17:39:50.0820 4024 D: <-> \Device\Harddisk0\DR0\Partition3
17:39:50.0820 4024 ============================================================
17:39:50.0820 4024 Initialize success
17:39:50.0820 4024 ============================================================
17:39:55.0023 5996 ============================================================
17:39:55.0023 5996 Scan started
17:39:55.0023 5996 Mode: Manual;
17:39:55.0023 5996 ============================================================
17:39:56.0085 5996 ================ Scan system memory ========================
17:39:56.0085 5996 System memory - ok
17:39:56.0085 5996 ================ Scan services =============================
17:39:56.0257 5996 [ 1B133875B8AA8AC48969BD3458AFE9F5 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
17:39:56.0273 5996 1394ohci - ok
17:39:56.0304 5996 [ CEA80C80BED809AA0DA6FEBC04733349 ] ACPI C:\Windows\system32\drivers\ACPI.sys
17:39:56.0304 5996 ACPI - ok
17:39:56.0351 5996 [ 1EFBC664ABFF416D1D07DB115DCB264F ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
17:39:56.0367 5996 AcpiPmi - ok
17:39:56.0414 5996 [ 3927397AC60D943DAF8808AFFED582B7 ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
17:39:56.0414 5996 AdobeARMservice - ok
17:39:56.0476 5996 [ EA856F4A46320389D1899B2CAA7BF40F ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
17:39:56.0476 5996 AdobeFlashPlayerUpdateSvc - ok
17:39:56.0507 5996 [ 21E785EBD7DC90A06391141AAC7892FB ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys
17:39:56.0539 5996 adp94xx - ok
17:39:56.0554 5996 [ 0C676BC278D5B59FF5ABD57BBE9123F2 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys
17:39:56.0570 5996 adpahci - ok
17:39:56.0585 5996 [ 7C7B5EE4B7B822EC85321FE23A27DB33 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys
17:39:56.0585 5996 adpu320 - ok
17:39:56.0617 5996 [ 8B5EEFEEC1E6D1A72A06C526628AD161 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
17:39:56.0617 5996 AeLookupSvc - ok
17:39:56.0679 5996 [ 9EBBBA55060F786F0FCAA3893BFA2806 ] AFD C:\Windows\system32\drivers\afd.sys
17:39:56.0695 5996 AFD - ok
17:39:56.0710 5996 [ 507812C3054C21CEF746B6EE3D04DD6E ] agp440 C:\Windows\system32\drivers\agp440.sys
17:39:56.0726 5996 agp440 - ok
17:39:56.0742 5996 [ 8B30250D573A8F6B4BD23195160D8707 ] aic78xx C:\Windows\system32\DRIVERS\djsvs.sys
17:39:56.0757 5996 aic78xx - ok
17:39:56.0773 5996 [ 18A54E132947CD98FEA9ACCC57F98F13 ] ALG C:\Windows\System32\alg.exe
17:39:56.0773 5996 ALG - ok
17:39:56.0789 5996 [ 0D40BCF52EA90FC7DF2AEAB6503DEA44 ] aliide C:\Windows\system32\drivers\aliide.sys
17:39:56.0804 5996 aliide - ok
17:39:56.0851 5996 [ FF794EC143F166349B49CF13507311D2 ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe
17:39:56.0851 5996 AMD External Events Utility - ok
17:39:56.0867 5996 [ 3C6600A0696E90A463771C7422E23AB5 ] amdagp C:\Windows\system32\drivers\amdagp.sys
17:39:56.0882 5996 amdagp - ok
17:39:56.0898 5996 [ CD5914170297126B6266860198D1D4F0 ] amdide C:\Windows\system32\drivers\amdide.sys
17:39:56.0914 5996 amdide - ok
17:39:56.0929 5996 [ 00DDA200D71BAC534BF56A9DB5DFD666 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
17:39:56.0945 5996 AmdK8 - ok
17:39:57.0085 5996 [ 68D791D78454684340433E52059EB45E ] amdkmdag C:\Windows\system32\DRIVERS\atikmdag.sys
17:39:57.0148 5996 amdkmdag - ok
17:39:57.0164 5996 [ 96CD7053A516C30E61A05DF9757DA7DE ] amdkmdap C:\Windows\system32\DRIVERS\atikmpag.sys
17:39:57.0179 5996 amdkmdap - ok
17:39:57.0195 5996 [ 3CBF30F5370FDA40DD3E87DF38EA53B6 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
17:39:57.0210 5996 AmdPPM - ok
17:39:57.0242 5996 [ D320BF87125326F996D4904FE24300FC ] amdsata C:\Windows\system32\drivers\amdsata.sys
17:39:57.0257 5996 amdsata - ok
17:39:57.0289 5996 [ EA43AF0C423FF267355F74E7A53BDABA ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys
17:39:57.0304 5996 amdsbs - ok
17:39:57.0304 5996 [ 46387FB17B086D16DEA267D5BE23A2F2 ] amdxata C:\Windows\system32\drivers\amdxata.sys
17:39:57.0320 5996 amdxata - ok
17:39:57.0335 5996 [ AEA177F783E20150ACE5383EE368DA19 ] AppID C:\Windows\system32\drivers\appid.sys
17:39:57.0367 5996 AppID - ok
17:39:57.0382 5996 [ 62A9C86CB6085E20DB4823E4E97826F5 ] AppIDSvc C:\Windows\System32\appidsvc.dll
17:39:57.0382 5996 AppIDSvc - ok
17:39:57.0398 5996 [ FB1959012294D6AD43E5304DF65E3C26 ] Appinfo C:\Windows\System32\appinfo.dll
17:39:57.0398 5996 Appinfo - ok
17:39:57.0429 5996 [ 2932004F49677BD84DBC72EDB754FFB3 ] arc C:\Windows\system32\DRIVERS\arc.sys
17:39:57.0445 5996 arc - ok
17:39:57.0460 5996 [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7 ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys
17:39:57.0460 5996 arcsas - ok
17:39:57.0492 5996 [ ADD2ADE1C2B285AB8378D2DAAF991481 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
17:39:57.0507 5996 AsyncMac - ok
17:39:57.0539 5996 [ 338C86357871C167A96AB976519BF59E ] atapi C:\Windows\system32\drivers\atapi.sys
17:39:57.0539 5996 atapi - ok
17:39:57.0570 5996 [ 84FAF3D287D56D210F84DB7C1349D43B ] AtiHDAudioService C:\Windows\system32\drivers\AtihdW73.sys
17:39:57.0585 5996 AtiHDAudioService - ok
17:39:57.0710 5996 [ 68D791D78454684340433E52059EB45E ] atikmdag C:\Windows\system32\DRIVERS\atikmdag.sys
17:39:57.0757 5996 atikmdag - ok
17:39:57.0789 5996 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
17:39:57.0789 5996 AudioEndpointBuilder - ok
17:39:57.0789 5996 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] Audiosrv C:\Windows\System32\Audiosrv.dll
17:39:57.0804 5996 Audiosrv - ok
17:39:57.0820 5996 [ 6E30D02AAC9CAC84F421622E3A2F6178 ] AxInstSV C:\Windows\System32\AxInstSV.dll
17:39:57.0820 5996 AxInstSV - ok
17:39:57.0835 5996 [ 1A231ABEC60FD316EC54C66715543CEC ] b06bdrv C:\Windows\system32\DRIVERS\bxvbdx.sys
17:39:57.0851 5996 b06bdrv - ok
17:39:57.0867 5996 [ BD8869EB9CDE6BBE4508D869929869EE ] b57nd60x C:\Windows\system32\DRIVERS\b57nd60x.sys
17:39:57.0882 5996 b57nd60x - ok
17:39:57.0898 5996 [ EE1E9C3BB8228AE423DD38DB69128E71 ] BDESVC C:\Windows\System32\bdesvc.dll
17:39:57.0898 5996 BDESVC - ok
17:39:57.0914 5996 [ 505506526A9D467307B3C393DEDAF858 ] Beep C:\Windows\system32\drivers\Beep.sys
17:39:57.0929 5996 Beep - ok
17:39:57.0960 5996 [ 1E2BAC209D184BB851E1A187D8A29136 ] BFE C:\Windows\System32\bfe.dll
17:39:57.0976 5996 BFE - ok
17:39:58.0007 5996 [ E585445D5021971FAE10393F0F1C3961 ] BITS C:\Windows\System32\qmgr.dll
17:39:58.0007 5996 BITS - ok
17:39:58.0023 5996 [ 2287078ED48FCFC477B05B20CF38F36F ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
17:39:58.0039 5996 blbdrive - ok
17:39:58.0054 5996 [ 8F2DA3028D5FCBD1A060A3DE64CD6506 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
17:39:58.0070 5996 bowser - ok
17:39:58.0070 5996 [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys
17:39:58.0070 5996 BrFiltLo - ok
17:39:58.0085 5996 [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys
17:39:58.0085 5996 BrFiltUp - ok
17:39:58.0132 5996 [ 77361D72A04F18809D0EFB6CCEB74D4B ] BridgeMP C:\Windows\system32\DRIVERS\bridge.sys
17:39:58.0148 5996 BridgeMP - ok
17:39:58.0179 5996 [ 3DAA727B5B0A45039B0E1C9A211B8400 ] Browser C:\Windows\System32\browser.dll
17:39:58.0179 5996 Browser - ok
17:39:58.0195 5996 [ 845B8CE732E67F3B4133164868C666EA ] Brserid C:\Windows\System32\Drivers\Brserid.sys
17:39:58.0195 5996 Brserid - ok
17:39:58.0210 5996 [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
17:39:58.0210 5996 BrSerWdm - ok
17:39:58.0226 5996 [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
17:39:58.0226 5996 BrUsbMdm - ok
17:39:58.0226 5996 [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
17:39:58.0226 5996 BrUsbSer - ok
17:39:58.0242 5996 [ ED3DF7C56CE0084EB2034432FC56565A ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys
17:39:58.0257 5996 BTHMODEM - ok
17:39:58.0289 5996 [ 1DF19C96EEF6C29D1C3E1A8678E07190 ] bthserv C:\Windows\system32\bthserv.dll
17:39:58.0289 5996 bthserv - ok
17:39:58.0304 5996 [ 77EA11B065E0A8AB902D78145CA51E10 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
17:39:58.0304 5996 cdfs - ok
17:39:58.0351 5996 [ BE167ED0FDB9C1FA1133953C18D5A6C9 ] cdrom C:\Windows\system32\drivers\cdrom.sys
17:39:58.0367 5996 cdrom - ok
17:39:58.0382 5996 [ 319C6B309773D063541D01DF8AC6F55F ] CertPropSvc C:\Windows\System32\certprop.dll
17:39:58.0398 5996 CertPropSvc - ok
17:39:58.0414 5996 [ 3FE3FE94A34DF6FB06E6418D0F6A0060 ] circlass C:\Windows\system32\DRIVERS\circlass.sys
17:39:58.0414 5996 circlass - ok
17:39:58.0429 5996 [ 635181E0E9BBF16871BF5380D71DB02D ] CLFS C:\Windows\system32\CLFS.sys
17:39:58.0429 5996 CLFS - ok
17:39:58.0476 5996 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
17:39:58.0476 5996 clr_optimization_v2.0.50727_32 - ok
17:39:58.0523 5996 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
17:39:58.0523 5996 clr_optimization_v4.0.30319_32 - ok
17:39:58.0539 5996 [ DEA805815E587DAD1DD2C502220B5616 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
17:39:58.0554 5996 CmBatt - ok
17:39:58.0554 5996 [ C537B1DB64D495B9B4717B4D6D9EDBF2 ] cmdide C:\Windows\system32\drivers\cmdide.sys
17:39:58.0570 5996 cmdide - ok
17:39:58.0601 5996 [ 247B4CE2DAB1160CD422D532D5241E1F ] CNG C:\Windows\system32\Drivers\cng.sys
17:39:58.0601 5996 CNG - ok
17:39:58.0617 5996 [ A6023D3823C37043986713F118A89BEE ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
17:39:58.0632 5996 Compbatt - ok
17:39:58.0632 5996 [ CBE8C58A8579CFE5FCCF809E6F114E89 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys
17:39:58.0632 5996 CompositeBus - ok
17:39:58.0632 5996 COMSysApp - ok
17:39:58.0648 5996 [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys
17:39:58.0664 5996 crcdisk - ok
17:39:58.0679 5996 [ 96C0E38905CFD788313BE8E11DAE3F2F ] CryptSvc C:\Windows\system32\cryptsvc.dll
17:39:58.0679 5996 CryptSvc - ok
17:39:58.0710 5996 [ 7660F01D3B38ACA1747E397D21D790AF ] DcomLaunch C:\Windows\system32\rpcss.dll
17:39:58.0710 5996 DcomLaunch - ok
17:39:58.0726 5996 [ 8D6E10A2D9A5EED59562D9B82CF804E1 ] defragsvc C:\Windows\System32\defragsvc.dll
17:39:58.0742 5996 defragsvc - ok
17:39:58.0757 5996 [ F024449C97EC1E464AAFFDA18593DB88 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
17:39:58.0773 5996 DfsC - ok
17:39:58.0804 5996 [ E9E01EB683C132F7FA27CD607B8A2B63 ] Dhcp C:\Windows\system32\dhcpcore.dll
17:39:58.0804 5996 Dhcp - ok
17:39:58.0820 5996 [ 1A050B0274BFB3890703D490F330C0DA ] discache C:\Windows\system32\drivers\discache.sys
17:39:58.0835 5996 discache - ok
17:39:58.0851 5996 [ 565003F326F99802E68CA78F2A68E9FF ] Disk C:\Windows\system32\DRIVERS\disk.sys
17:39:58.0867 5996 Disk - ok
17:39:58.0898 5996 [ 33EF4861F19A0736B11314AAD9AE28D0 ] Dnscache C:\Windows\System32\dnsrslvr.dll
17:39:58.0898 5996 Dnscache - ok
17:39:58.0929 5996 [ 366BA8FB4B7BB7435E3B9EACB3843F67 ] dot3svc C:\Windows\System32\dot3svc.dll
17:39:58.0929 5996 dot3svc - ok
17:39:58.0960 5996 [ 8EC04CA86F1D68DA9E11952EB85973D6 ] DPS C:\Windows\system32\dps.dll
17:39:58.0960 5996 DPS - ok
17:39:58.0992 5996 [ B918E7C5F9BF77202F89E1A9539F2EB4 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
17:39:59.0007 5996 drmkaud - ok
17:39:59.0039 5996 [ 555E54AC2F601A8821CEF58961653991 ] dtsoftbus01 C:\Windows\system32\DRIVERS\dtsoftbus01.sys
17:39:59.0039 5996 dtsoftbus01 - ok
17:39:59.0070 5996 [ 23F5D28378A160352BA8F817BD8C71CB ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
17:39:59.0164 5996 DXGKrnl - ok
17:39:59.0195 5996 [ 73CE42907CF42BFB91BCD27FE7C7A7AF ] eamonm C:\Windows\system32\DRIVERS\eamonm.sys
17:39:59.0195 5996 eamonm - ok
17:39:59.0210 5996 [ 8600142FA91C1B96367D3300AD0F3F3A ] EapHost C:\Windows\System32\eapsvc.dll
17:39:59.0210 5996 EapHost - ok
17:39:59.0273 5996 [ 024E1B5CAC09731E4D868E64DBFB4AB0 ] ebdrv C:\Windows\system32\DRIVERS\evbdx.sys
17:39:59.0304 5996 ebdrv - ok
17:39:59.0320 5996 [ 81951F51E318AECC2D68559E47485CC4 ] EFS C:\Windows\System32\lsass.exe
17:39:59.0320 5996 EFS - ok
17:39:59.0351 5996 [ 7D300A43A7BD8769E0F901BF9E1AE367 ] ehdrv C:\Windows\system32\DRIVERS\ehdrv.sys
17:39:59.0367 5996 ehdrv - ok
17:39:59.0414 5996 [ A8C362018EFC87BEB013EE28F29C0863 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
17:39:59.0414 5996 ehRecvr - ok
17:39:59.0429 5996 [ D389BFF34F80CAEDE417BF9D1507996A ] ehSched C:\Windows\ehome\ehsched.exe
17:39:59.0429 5996 ehSched - ok
17:39:59.0492 5996 [ D83323D7CD5D1CC46B42DA9E59409890 ] EhttpSrv C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
17:39:59.0507 5996 EhttpSrv - ok
17:39:59.0539 5996 [ EFA198F8983D064A81052851F7BB80C2 ] ekrn C:\Program Files\ESET\ESET Smart Security\ekrn.exe
17:39:59.0539 5996 ekrn - ok
17:39:59.0570 5996 [ 0ED67910C8C326796FAA00B2BF6D9D3C ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys
17:39:59.0585 5996 elxstor - ok
17:39:59.0617 5996 [ 15BFE00F030EA20955117BB0677E9668 ] epfw C:\Windows\system32\DRIVERS\epfw.sys
17:39:59.0617 5996 epfw - ok
17:39:59.0632 5996 [ 52310E0E603D7DA79ECCA7D764937A91 ] Epfwndis C:\Windows\system32\DRIVERS\Epfwndis.sys
17:39:59.0648 5996 Epfwndis - ok
17:39:59.0679 5996 [ 235250A79CF1E16A5A42407CFE3F6A4C ] epfwwfp C:\Windows\system32\DRIVERS\epfwwfp.sys
17:39:59.0679 5996 epfwwfp - ok
17:39:59.0710 5996 [ 8FC3208352DD3912C94367A206AB3F11 ] ErrDev C:\Windows\system32\drivers\errdev.sys
17:39:59.0710 5996 ErrDev - ok
17:39:59.0742 5996 [ F6916EFC29D9953D5D0DF06882AE8E16 ] EventSystem C:\Windows\system32\es.dll
17:39:59.0742 5996 EventSystem - ok
17:39:59.0757 5996 [ 2DC9108D74081149CC8B651D3A26207F ] exfat C:\Windows\system32\drivers\exfat.sys
17:39:59.0773 5996 exfat - ok
17:39:59.0789 5996 [ 7E0AB74553476622FB6AE36F73D97D35 ] fastfat C:\Windows\system32\drivers\fastfat.sys
17:39:59.0804 5996 fastfat - ok
17:39:59.0851 5996 [ 967EA5B213E9984CBE270205DF37755B ] Fax C:\Windows\system32\fxssvc.exe
17:39:59.0867 5996 Fax - ok
17:39:59.0882 5996 [ E817A017F82DF2A1F8CFDBDA29388B29 ] fdc C:\Windows\system32\DRIVERS\fdc.sys
17:39:59.0898 5996 fdc - ok
17:39:59.0914 5996 [ F3222C893BD2F5821A0179E5C71E88FB ] fdPHost C:\Windows\system32\fdPHost.dll
17:39:59.0914 5996 fdPHost - ok
17:39:59.0929 5996 [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B ] FDResPub C:\Windows\system32\fdrespub.dll
17:39:59.0929 5996 FDResPub - ok
17:39:59.0929 5996 [ 6CF00369C97F3CF563BE99BE983D13D8 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
17:39:59.0945 5996 FileInfo - ok
17:39:59.0960 5996 [ 42C51DC94C91DA21CB9196EB64C45DB9 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
17:39:59.0976 5996 Filetrace - ok
17:39:59.0992 5996 [ 87907AA70CB3C56600F1C2FB8841579B ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
17:40:00.0007 5996 flpydisk - ok
17:40:00.0007 5996 [ 7520EC808E0C35E0EE6F841294316653 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
17:40:00.0023 5996 FltMgr - ok
17:40:00.0070 5996 [ E12C4928B32ACE04610259647F072635 ] FontCache C:\Windows\system32\FntCache.dll
17:40:00.0085 5996 FontCache - ok
17:40:00.0132 5996 [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
17:40:00.0132 5996 FontCache3.0.0.0 - ok
17:40:00.0148 5996 [ 1A16B57943853E598CFF37FE2B8CBF1D ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
17:40:00.0164 5996 FsDepends - ok
17:40:00.0179 5996 [ 7DAE5EBCC80E45D3253F4923DC424D05 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
17:40:00.0195 5996 Fs_Rec - ok
17:40:00.0210 5996 [ 8A73E79089B282100B9393B644CB853B ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
17:40:00.0242 5996 fvevol - ok
17:40:00.0257 5996 [ 65EE0C7A58B65E74AE05637418153938 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys
17:40:00.0273 5996 gagp30kx - ok
17:40:00.0304 5996 [ E897EAF5ED6BA41E081060C9B447A673 ] gpsvc C:\Windows\System32\gpsvc.dll
17:40:00.0320 5996 gpsvc - ok
17:40:00.0320 5996 [ C44E3C2BAB6837DB337DDEE7544736DB ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
17:40:00.0335 5996 hcw85cir - ok
17:40:00.0367 5996 [ A5EF29D5315111C80A5C1ABAD14C8972 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
17:40:00.0414 5996 HdAudAddService - ok
17:40:00.0429 5996 [ 9036377B8A6C15DC2EEC53E489D159B5 ] HDAudBus C:\Windows\system32\drivers\HDAudBus.sys
17:40:00.0429 5996 HDAudBus - ok
17:40:00.0445 5996 [ 1D58A7F3E11A9731D0EAAAA8405ACC36 ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys
17:40:00.0460 5996 HidBatt - ok
17:40:00.0460 5996 [ 89448F40E6DF260C206A193A4683BA78 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys
17:40:00.0476 5996 HidBth - ok
17:40:00.0507 5996 [ CF50B4CF4A4F229B9F3C08351F99CA5E ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
17:40:00.0507 5996 HidIr - ok
17:40:00.0523 5996 [ 2BC6F6A1992B3A77F5F41432CA6B3B6B ] hidserv C:\Windows\System32\hidserv.dll
17:40:00.0539 5996 hidserv - ok
17:40:00.0554 5996 [ 10C19F8290891AF023EAEC0832E1EB4D ] HidUsb C:\Windows\system32\drivers\hidusb.sys
17:40:00.0570 5996 HidUsb - ok
17:40:00.0585 5996 [ 196B4E3F4CCCC24AF836CE58FACBB699 ] hkmsvc C:\Windows\system32\kmsvc.dll
17:40:00.0585 5996 hkmsvc - ok
17:40:00.0601 5996 [ 6658F4404DE03D75FE3BA09F7ABA6A30 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
17:40:00.0601 5996 HomeGroupListener - ok
17:40:00.0632 5996 [ DBC02D918FFF1CAD628ACBE0C0EAA8E8 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
17:40:00.0632 5996 HomeGroupProvider - ok
17:40:00.0648 5996 [ 295FDC419039090EB8B49FFDBB374549 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
17:40:00.0679 5996 HpSAMD - ok
17:40:00.0726 5996 [ 871917B07A141BFF43D76D8844D48106 ] HTTP C:\Windows\system32\drivers\HTTP.sys
17:40:00.0742 5996 HTTP - ok
17:40:00.0757 5996 [ 0C4E035C7F105F1299258C90886C64C5 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
17:40:00.0773 5996 hwpolicy - ok
17:40:00.0789 5996 [ F151F0BDC47F4A28B1B20A0818EA36D6 ] i8042prt C:\Windows\system32\drivers\i8042prt.sys
17:40:00.0804 5996 i8042prt - ok
17:40:00.0820 5996 [ 5CD5F9A5444E6CDCB0AC89BD62D8B76E ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
17:40:00.0835 5996 iaStorV - ok
17:40:00.0882 5996 [ 1CF03C69B49ACB70C722DF92755C0C8C ] IDriverT C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
17:40:00.0898 5996 IDriverT - ok
17:40:00.0929 5996 [ C521D7EB6497BB1AF6AFA89E322FB43C ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
17:40:00.0929 5996 idsvc - ok
17:40:00.0960 5996 [ 4173FF5708F3236CF25195FECD742915 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys
17:40:00.0976 5996 iirsp - ok
17:40:01.0007 5996 [ F95622F161474511B8D80D6B093AA610 ] IKEEXT C:\Windows\System32\ikeext.dll
17:40:01.0007 5996 IKEEXT - ok
17:40:01.0117 5996 [ F2C17D2C3D70C389193D9954E375E5E3 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHDA.sys
17:40:01.0164 5996 IntcAzAudAddService - ok
17:40:01.0242 5996 [ A0F12F2C9BA6C72F3987CE780E77C130 ] intelide C:\Windows\system32\drivers\intelide.sys
17:40:01.0257 5996 intelide - ok
17:40:01.0273 5996 [ 3B514D27BFC4ACCB4037BC6685F766E0 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
17:40:01.0289 5996 intelppm - ok
17:40:01.0304 5996 [ ACB364B9075A45C0736E5C47BE5CAE19 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
17:40:01.0304 5996 IPBusEnum - ok
17:40:01.0320 5996 [ 709D1761D3B19A932FF0238EA6D50200 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
17:40:01.0335 5996 IpFilterDriver - ok
17:40:01.0367 5996 [ 58F67245D041FBE7AF88F4EAF79DF0FA ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
17:40:01.0367 5996 iphlpsvc - ok
17:40:01.0398 5996 [ 4BD7134618C1D2A27466A099062547BF ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
17:40:01.0398 5996 IPMIDRV - ok
17:40:01.0414 5996 [ A5FA468D67ABCDAA36264E463A7BB0CD ] IPNAT C:\Windows\system32\drivers\ipnat.sys
17:40:01.0445 5996 IPNAT - ok
17:40:01.0460 5996 [ 42996CFF20A3084A56017B7902307E9F ] IRENUM C:\Windows\system32\drivers\irenum.sys
17:40:01.0476 5996 IRENUM - ok
17:40:01.0492 5996 [ 1F32BB6B38F62F7DF1A7AB7292638A35 ] isapnp C:\Windows\system32\drivers\isapnp.sys
17:40:01.0507 5996 isapnp - ok
17:40:01.0539 5996 [ CB7A9ABB12B8415BCE5D74994C7BA3AE ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
17:40:01.0570 5996 iScsiPrt - ok
17:40:01.0585 5996 [ ADEF52CA1AEAE82B50DF86B56413107E ] kbdclass C:\Windows\system32\drivers\kbdclass.sys
17:40:01.0601 5996 kbdclass - ok
17:40:01.0632 5996 [ 9E3CED91863E6EE98C24794D05E27A71 ] kbdhid C:\Windows\system32\drivers\kbdhid.sys
17:40:01.0648 5996 kbdhid - ok
17:40:01.0648 5996 [ 81951F51E318AECC2D68559E47485CC4 ] KeyIso C:\Windows\system32\lsass.exe
17:40:01.0664 5996 KeyIso - ok
17:40:01.0679 5996 [ B7895B4182C0D16F6EFADEB8081E8D36 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
17:40:01.0679 5996 KSecDD - ok
17:40:01.0710 5996 [ D30159AC9237519FBC62C6EC247D2D46 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
17:40:01.0742 5996 KSecPkg - ok
17:40:01.0757 5996 [ 89A7B9CC98D0D80C6F31B91C0A310FCD ] KtmRm C:\Windows\system32\msdtckrm.dll
17:40:01.0757 5996 KtmRm - ok
17:40:01.0789 5996 [ D64AF876D53ECA3668BB97B51B4E70AB ] LanmanServer C:\Windows\System32\srvsvc.dll
17:40:01.0789 5996 LanmanServer - ok
17:40:01.0820 5996 [ 58405E4F68BA8E4057C6E914F326ABA2 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
17:40:01.0820 5996 LanmanWorkstation - ok
17:40:01.0835 5996 [ F7611EC07349979DA9B0AE1F18CCC7A6 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
17:40:01.0851 5996 lltdio - ok
17:40:01.0867 5996 [ 5700673E13A2117FA3B9020C852C01E2 ] lltdsvc C:\Windows\System32\lltdsvc.dll
17:40:01.0882 5996 lltdsvc - ok
17:40:01.0882 5996 [ 55CA01BA19D0006C8F2639B6C045E08B ] lmhosts C:\Windows\System32\lmhsvc.dll
17:40:01.0882 5996 lmhosts - ok
17:40:01.0914 5996 [ EB119A53CCF2ACC000AC71B065B78FEF ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys
17:40:01.0929 5996 LSI_FC - ok
17:40:01.0929 5996 [ 8ADE1C877256A22E49B75D1CC9161F9C ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys
17:40:01.0945 5996 LSI_SAS - ok
17:40:01.0960 5996 [ DC9DC3D3DAA0E276FD2EC262E38B11E9 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys
17:40:01.0976 5996 LSI_SAS2 - ok
17:40:01.0992 5996 [ 0A036C7D7CAB643A7F07135AC47E0524 ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys
17:40:02.0007 5996 LSI_SCSI - ok
17:40:02.0023 5996 [ 6703E366CC18D3B6E534F5CF7DF39CEE ] luafv C:\Windows\system32\drivers\luafv.sys
17:40:02.0039 5996 luafv - ok
17:40:02.0054 5996 [ 629CABB0421668C9D3D402A3C3D77E14 ] MBAMProtector C:\Windows\system32\drivers\mbam.sys
17:40:02.0054 5996 MBAMProtector - ok
17:40:02.0132 5996 [ 1ACAA67676E9E7BDA5E0C41B6E0DECAF ] MBAMScheduler C:\Users\user\Desktop\Malwarebytes' Anti-Malware\mbamscheduler.exe
17:40:02.0132 5996 MBAMScheduler - ok
17:40:02.0164 5996 [ 916B8954AC3E06DC9E898AFFB41F3FB6 ] MBAMService C:\Users\user\Desktop\Malwarebytes' Anti-Malware\mbamservice.exe
17:40:02.0179 5996 MBAMService - ok
17:40:02.0210 5996 [ BFB9EE8EE977EFE85D1A3105ABEF6DD1 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
17:40:02.0210 5996 Mcx2Svc - ok
17:40:02.0210 5996 [ 0FFF5B045293002AB38EB1FD1FC2FB74 ] megasas C:\Windows\system32\DRIVERS\megasas.sys
17:40:02.0242 5996 megasas - ok
17:40:02.0257 5996 [ DCBAB2920C75F390CAF1D29F675D03D6 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys
17:40:02.0273 5996 MegaSR - ok
17:40:02.0335 5996 [ FAFE367D032ED82E9332B4C741A20216 ] Microsoft Office Groove Audit Service C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe
17:40:02.0335 5996 Microsoft Office Groove Audit Service - ok
17:40:02.0351 5996 [ 146B6F43A673379A3C670E86D89BE5EA ] MMCSS C:\Windows\system32\mmcss.dll
17:40:02.0367 5996 MMCSS - ok
17:40:02.0367 5996 [ F001861E5700EE84E2D4E52C712F4964 ] Modem C:\Windows\system32\drivers\modem.sys
17:40:02.0398 5996 Modem - ok
17:40:02.0414 5996 [ 79D10964DE86B292320E9DFE02282A23 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
17:40:02.0429 5996 monitor - ok
17:40:02.0460 5996 [ FB18CC1D4C2E716B6B903B0AC0CC0609 ] mouclass C:\Windows\system32\drivers\mouclass.sys
17:40:02.0476 5996 mouclass - ok
17:40:02.0492 5996 [ 2C388D2CD01C9042596CF3C8F3C7B24D ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
17:40:02.0507 5996 mouhid - ok
17:40:02.0523 5996 [ FC8771F45ECCCFD89684E38842539B9B ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
17:40:02.0539 5996 mountmgr - ok
17:40:02.0601 5996 [ 8A7C8F4C713E70D73946833D76B77035 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
17:40:02.0601 5996 MozillaMaintenance - ok
17:40:02.0632 5996 [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0 ] mpio C:\Windows\system32\drivers\mpio.sys
17:40:02.0664 5996 mpio - ok
17:40:02.0664 5996 [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
17:40:02.0679 5996 mpsdrv - ok
17:40:02.0695 5996 [ 9835584E999D25004E1EE8E5F3E3B881 ] MpsSvc C:\Windows\system32\mpssvc.dll
17:40:02.0710 5996 MpsSvc - ok
17:40:02.0726 5996 [ CEB46AB7C01C9F825F8CC6BABC18166A ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
17:40:02.0726 5996 MRxDAV - ok
17:40:02.0757 5996 [ 5D16C921E3671636C0EBA3BBAAC5FD25 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
17:40:02.0773 5996 mrxsmb - ok
17:40:02.0773 5996 [ 6D17A4791ACA19328C685D256349FEFC ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
17:40:02.0789 5996 mrxsmb10 - ok
17:40:02.0804 5996 [ B81F204D146000BE76651A50670A5E9E ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
17:40:02.0820 5996 mrxsmb20 - ok
17:40:02.0820 5996 [ 012C5F4E9349E711E11E0F19A8589F0A ] msahci C:\Windows\system32\drivers\msahci.sys
17:40:02.0835 5996 msahci - ok
17:40:02.0835 5996 [ 55055F8AD8BE27A64C831322A780A228 ] msdsm C:\Windows\system32\drivers\msdsm.sys
17:40:02.0851 5996 msdsm - ok
17:40:02.0867 5996 [ E1BCE74A3BD9902B72599C0192A07E27 ] MSDTC C:\Windows\System32\msdtc.exe
17:40:02.0867 5996 MSDTC - ok
17:40:02.0898 5996 [ DAEFB28E3AF5A76ABCC2C3078C07327F ] Msfs C:\Windows\system32\drivers\Msfs.sys
17:40:02.0914 5996 Msfs - ok
17:40:02.0914 5996 [ 3E1E5767043C5AF9367F0056295E9F84 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
17:40:02.0929 5996 mshidkmdf - ok
17:40:02.0945 5996 [ 0A4E5757AE09FA9622E3158CC1AEF114 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
17:40:02.0960 5996 msisadrv - ok
17:40:02.0992 5996 [ 90F7D9E6B6F27E1A707D4A297F077828 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
17:40:02.0992 5996 MSiSCSI - ok
17:40:02.0992 5996 msiserver - ok
17:40:03.0023 5996 [ 8C0860D6366AAFFB6C5BB9DF9448E631 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
17:40:03.0023 5996 MSKSSRV - ok
17:40:03.0023 5996 [ 3EA8B949F963562CEDBB549EAC0C11CE ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
17:40:03.0039 5996 MSPCLOCK - ok
17:40:03.0039 5996 [ F456E973590D663B1073E9C463B40932 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
17:40:03.0039 5996 MSPQM - ok
17:40:03.0054 5996 [ 0E008FC4819D238C51D7C93E7B41E560 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
17:40:03.0054 5996 MsRPC - ok
17:40:03.0070 5996 [ FC6B9FF600CC585EA38B12589BD4E246 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys
17:40:03.0085 5996 mssmbios - ok
17:40:03.0085 5996 [ B42C6B921F61A6E55159B8BE6CD54A36 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
17:40:03.0101 5996 MSTEE - ok
17:40:03.0101 5996 [ 33599130F44E1F34631CEA241DE8AC84 ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys
17:40:03.0117 5996 MTConfig - ok
17:40:03.0117 5996 [ 159FAD02F64E6381758C990F753BCC80 ] Mup C:\Windows\system32\Drivers\mup.sys
17:40:03.0117 5996 Mup - ok
17:40:03.0148 5996 [ 61D57A5D7C6D9AFE10E77DAE6E1B445E ] napagent C:\Windows\system32\qagentRT.dll
17:40:03.0164 5996 napagent - ok
17:40:03.0179 5996 [ 26384429FCD85D83746F63E798AB1480 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
17:40:03.0195 5996 NativeWifiP - ok
17:40:03.0257 5996 [ 6D8FCDD5BB3B676EF58FA234073492C6 ] NBService C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
17:40:03.0273 5996 NBService - ok
17:40:03.0304 5996 [ 8C9C922D71F1CD4DEF73F186416B7896 ] NDIS C:\Windows\system32\drivers\ndis.sys
17:40:03.0335 5996 NDIS - ok
17:40:03.0351 5996 [ 0E1787AA6C9191D3D319E8BAFE86F80C ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
17:40:03.0367 5996 NdisCap - ok
17:40:03.0367 5996 [ E4A8AEC125A2E43A9E32AFEEA7C9C888 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
17:40:03.0367 5996 NdisTapi - ok
17:40:03.0398 5996 [ D8A65DAFB3EB41CBB622745676FCD072 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
17:40:03.0414 5996 Ndisuio - ok
17:40:03.0445 5996 [ 38FBE267E7E6983311179230FACB1017 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
17:40:03.0445 5996 NdisWan - ok
17:40:03.0460 5996 [ A4BDC541E69674FBFF1A8FF00BE913F2 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
17:40:03.0492 5996 NDProxy - ok
17:40:03.0492 5996 [ 80B275B1CE3B0E79909DB7B39AF74D51 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
17:40:03.0523 5996 NetBIOS - ok
17:40:03.0539 5996 [ 280122DDCF04B378EDD1AD54D71C1E54 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
17:40:03.0570 5996 NetBT - ok
17:40:03.0585 5996 [ 81951F51E318AECC2D68559E47485CC4 ] Netlogon C:\Windows\system32\lsass.exe
17:40:03.0585 5996 Netlogon - ok
17:40:03.0601 5996 [ 7CCCFCA7510684768DA22092D1FA4DB2 ] Netman C:\Windows\System32\netman.dll
17:40:03.0617 5996 Netman - ok
17:40:03.0632 5996 [ 8C338238C16777A802D6A9211EB2BA50 ] netprofm C:\Windows\System32\netprofm.dll
17:40:03.0632 5996 netprofm - ok
17:40:03.0648 5996 [ F476EC40033CDB91EFBE73EB99B8362D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
17:40:03.0664 5996 NetTcpPortSharing - ok
17:40:03.0664 5996 [ 1D85C4B390B0EE09C7A46B91EFB2C097 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys
17:40:03.0679 5996 nfrd960 - ok
17:40:03.0710 5996 [ 374071043F9E4231EE43BE2BB48DD36D ] NlaSvc C:\Windows\System32\nlasvc.dll
17:40:03.0710 5996 NlaSvc - ok
17:40:03.0773 5996 [ 060DAF68493AD7ADF104413E5A62AFA8 ] NMIndexingService C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
17:40:03.0773 5996 NMIndexingService - ok
17:40:03.0789 5996 [ 1DB262A9F8C087E8153D89BEF3D2235F ] Npfs C:\Windows\system32\drivers\Npfs.sys
17:40:03.0804 5996 Npfs - ok
17:40:03.0820 5996 [ BA387E955E890C8A88306D9B8D06BF17 ] nsi C:\Windows\system32\nsisvc.dll
17:40:03.0820 5996 nsi - ok
17:40:03.0835 5996 [ E9A0A4D07E53D8FEA2BB8387A3293C58 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
17:40:03.0835 5996 nsiproxy - ok
17:40:03.0882 5996 [ 0D87503986BB3DFED58E343FE39DDE13 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
17:40:03.0914 5996 Ntfs - ok
17:40:03.0929 5996 [ F9756A98D69098DCA8945D62858A812C ] Null C:\Windows\system32\drivers\Null.sys
17:40:03.0929 5996 Null - ok
17:40:03.0960 5996 [ B3E25EE28883877076E0E1FF877D02E0 ] nvraid C:\Windows\system32\drivers\nvraid.sys
17:40:03.0976 5996 nvraid - ok
17:40:03.0992 5996 [ 4380E59A170D88C4F1022EFF6719A8A4 ] nvstor C:\Windows\system32\drivers\nvstor.sys
17:40:04.0007 5996 nvstor - ok
17:40:04.0039 5996 [ 5A0983915F02BAE73267CC2A041F717D ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
17:40:04.0054 5996 nv_agp - ok
17:40:04.0117 5996 [ 84DE1DD996B48B05ACE31AD015FA108A ] odserv C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
17:40:04.0117 5996 odserv - ok
17:40:04.0148 5996 [ 08A70A1F2CDDE9BB49B885CB817A66EB ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
17:40:04.0148 5996 ohci1394 - ok
17:40:04.0164 5996 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
17:40:04.0164 5996 ose - ok
17:40:04.0210 5996 [ 82A8521DDC60710C3D3D3E7325209BEC ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
17:40:04.0210 5996 p2pimsvc - ok
17:40:04.0226 5996 [ 59C3DDD501E39E006DAC31BF55150D91 ] p2psvc C:\Windows\system32\p2psvc.dll
17:40:04.0226 5996 p2psvc - ok
17:40:04.0242 5996 [ 2EA877ED5DD9713C5AC74E8EA7348D14 ] Parport C:\Windows\system32\DRIVERS\parport.sys
17:40:04.0273 5996 Parport - ok
17:40:04.0289 5996 [ 3F34A1B4C5F6475F320C275E63AFCE9B ] partmgr C:\Windows\system32\drivers\partmgr.sys
17:40:04.0335 5996 partmgr - ok
17:40:04.0335 5996 [ EB0A59F29C19B86479D36B35983DAADC ] Parvdm C:\Windows\system32\DRIVERS\parvdm.sys
17:40:04.0351 5996 Parvdm - ok
17:40:04.0367 5996 [ 358AB7956D3160000726574083DFC8A6 ] PcaSvc C:\Windows\System32\pcasvc.dll
17:40:04.0367 5996 PcaSvc - ok
17:40:04.0398 5996 [ 673E55C3498EB970088E812EA820AA8F ] pci C:\Windows\system32\drivers\pci.sys
17:40:04.0414 5996 pci - ok
17:40:04.0429 5996 [ AFE86F419014DB4E5593F69FFE26CE0A ] pciide C:\Windows\system32\drivers\pciide.sys
17:40:04.0445 5996 pciide - ok
17:40:04.0445 5996 [ F396431B31693E71E8A80687EF523506 ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys
17:40:04.0460 5996 pcmcia - ok
17:40:04.0476 5996 [ 250F6B43D2B613172035C6747AEEB19F ] pcw C:\Windows\system32\drivers\pcw.sys
17:40:04.0492 5996 pcw - ok
17:40:04.0523 5996 [ 9E0104BA49F4E6973749A02BF41344ED ] PEAUTH C:\Windows\system32\drivers\peauth.sys
17:40:04.0523 5996 PEAUTH - ok
17:40:04.0570 5996 [ 414BBA67A3DED1D28437EB66AEB8A720 ] pla C:\Windows\system32\pla.dll
17:40:04.0601 5996 pla - ok
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 93 hostů