Prosím o kontrolu logu. Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

junebag
Level 1.5
Level 1.5
Příspěvky: 115
Registrován: červenec 12
Pohlaví: Muž
Stav:
Offline

Prosím o kontrolu logu.

Příspěvekod junebag » 13 kvě 2013 10:05

PC absolutně nešlape.Co se týče práce ve win,nebo pří spuštění více věcí naráz.S hrama problém není žádný.

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:02:37, on 13.5.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16476)
Boot mode: Normal

Running processes:
C:\Program Files\Hide Folders 2012\hf.exe
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskhost.exe
C:\Windows\Explorer.EXE
C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_7_700_169.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_7_700_169.exe
C:\totalcmd\TOTALCMD.EXE
C:\Program Files\The KMPlayer\KMPlayer.exe
C:\Users\Tomáš\Desktop\hijackthis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.certified-toolbar.com?si= ... bs=true&q=
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.bing.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.certified-toolbar.com?si= ... bs=true&q=
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.certified-toolbar.com?si= ... bs=true&q=
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.certified-toolbar.com?si= ... bs=true&q=
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.certified-toolbar.com?si= ... e&tid=2958
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://search.certified-toolbar.com?si= ... bs=true&q=
R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://search.certified-toolbar.com?si= ... bs=true&q=
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {7473b6bd-4691-4744-a82b-7854eb3d70b6} - (no file)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: uTorrentControl_v2 - {7473b6bd-4691-4744-a82b-7854eb3d70b6} - (no file)
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: (no name) - {7473b6bd-4691-4744-a82b-7854eb3d70b6} - (no file)
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [VirtualCloneDrive] "C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s
O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [Sweetpacks Communicator] C:\Program Files\SweetIM\Communicator\SweetPacksUpdateManager.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [AMD AVT] Cmd.exe /c start "AMD Accelerated Video Transcoding device initialization" /min "C:\Program Files\AMD AVT\bin\kdbsync.exe" aml
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKCU\..\Run: [Messenger] "C:\Users\TomßÜ\AppData\Roaming\msnmsgr.exe"
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [SRS Audio Sandbox] "C:\Program Files\SRS Labs\Audio Sandbox\SRSSSC.exe" /hideme
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O4 - Global Startup: GamePark klient 2.lnk = C:\Program Files\GamePark2\gpcl.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Stáhnout s Mipony - file://C:\Program Files\MiPony\Browser\IEContext.htm
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: PokerStars.net - {FA9B9510-9FCB-4ca0-818C-5D0987B47C4D} - C:\Program Files\PokerStars.NET\PokerStarsUpdate.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: avast! Firewall - AVAST Software - C:\Program Files\AVAST Software\Avast\afwServ.exe
O23 - Service: ESET Service (ekrn) - Unknown owner - C:\Program Files\ESET\ESET Smart Security\ekrn.exe (file missing)
O23 - Service: FSPro Filter Service 2 (fsproflt2) - FSPro Labs - C:\Windows\system32\fsproflt2.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @C:\Program Files\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files\Nero\Update\NASvc.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe

--
End of file - 9107 bytes

Reklama
Uživatelský avatar
memphisto
Guru Level 13
Guru Level 13
Příspěvky: 21113
Registrován: září 06
Bydliště: Zlín - České Budějovice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu.

Příspěvekod memphisto » 13 kvě 2013 10:14

Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
- Pokud používáš Firefox, klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
- Pokud používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected.
- Pokud používáš Chrome, nic dalšího nevybírej a dej Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.

Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Update Malwarebytes' Anti-Malware (Aktualizace Malwarebytes' Anti-Malware) a Launch Malwarebytes' Anti-Malware (Spustit aplikaci Malwarebytes' Anti-Malware), pokud jo tak klikni na tlačítko Finish
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Perform Quick Scan (Provést rychlý sken) a klikni na tlačítko Scan (Skenovat)
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Show Results
- pak zvol možnost Save Logfile a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(ZATÍM SÁM NIC NEMAŽ!).
Vlož sem pak obsah toho logu.

Stáhni AdwCleaner

Ulož si ho na svojí plochu
Ukonči všechny programy, okna a prohlížeče
Spusť program poklepáním a klikni na „Search“
Po skenu se objeví log (jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji

junebag
Level 1.5
Level 1.5
Příspěvky: 115
Registrován: červenec 12
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu.

Příspěvekod junebag » 13 kvě 2013 10:50

ATF Cleaner - No files were removed. - Select all,odkliknul sem pouze hesla,sám si je ani všechny nepamatuju.

Malwarebytes Anti-Malware (Trial) 1.75.0.1300
www.malwarebytes.org

Database version: v2013.05.13.02

Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 9.0.8112.16421
Tomáš :: TOMÁŠ-PC [administrator]

Protection: Enabled

13.5.2013 10:28:44
MBAM-log-2013-05-13 (10-44-03).txt

Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 281545
Time elapsed: 15 minute(s), 1 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 7
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main|Default_Search_URL (Hijack.SearchPage) -> Bad: (http://search.certified-toolbar.com?si= ... bs=true&q=) Good: (http://www.google.com) -> No action taken.
HKCU\SOFTWARE\Microsoft\Internet Explorer\Search|Default_Search_URL (Hijack.SearchPage) -> Bad: (http://search.certified-toolbar.com?si= ... bs=true&q=) Good: (http://www.google.com/) -> No action taken.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main|Default_Search_URL (Hijack.SearchPage) -> Bad: (http://search.certified-toolbar.com?si= ... bs=true&q=) Good: (http://www.google.com) -> No action taken.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main|Start Page (Hijack.StartPage) -> Bad: (http://search.certified-toolbar.com?si= ... e&tid=2958) Good: (http://www.google.com) -> No action taken.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main|Search Page (Hijack.SearchPage) -> Bad: (http://search.certified-toolbar.com?si= ... bs=true&q=) Good: (http://www.google.com) -> No action taken.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main|Search Bar (Hijack.SearchPage) -> Bad: (http://search.certified-toolbar.com?si= ... bs=true&q=) Good: (http://www.google.com) -> No action taken.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Search|Default_Search_URL (Hijack.SearchPage) -> Bad: (http://search.certified-toolbar.com?si= ... bs=true&q=) Good: (http://www.google.com/) -> No action taken.

Folders Detected: 1
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Protected Search (PUP.ProtectedSearch) -> No action taken.

Files Detected: 3
C:\Users\Tomáš\AppData\Local\Temp\~nsu.tmp\Au_.exe (Trojan.Agent.CK) -> No action taken.
C:\Users\Tomáš\AppData\Local\Temp\is1052428094\FunmoodsSetup.exe (PUP.Funmoods) -> No action taken.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Protected Search\Protected Search Settings.lnk (PUP.ProtectedSearch) -> No action taken.

(end)

____________________________________________________________________________________________________________
____________________________________________________________________________________________________________

# AdwCleaner v2.300 - Log vytvooen 13/05/2013 v 10:45:53
# Aktualizováno 28/04/2013 Xplode
# Operaení systém : Windows 7 Ultimate Service Pack 1 (32 bits)
# Uživatel : Tomáš - TOMÁŠ-PC
# Spuštin systém : Normální
# Spuštino z : C:\Users\Tomáš\Desktop\adwcleaner.exe
# Volba [Prohledat]


***** [Služby] *****


***** [Soubory / Složky] *****

Složka Nalezeno : C:\Program Files\Conduit
Složka Nalezeno : C:\Program Files\Protected Search
Složka Nalezeno : C:\ProgramData\Ask
Složka Nalezeno : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Protected Search
Složka Nalezeno : C:\Users\Tomáš\AppData\Local\Conduit
Složka Nalezeno : C:\Users\Tomáš\AppData\Local\DownTango
Složka Nalezeno : C:\Users\Tomáš\AppData\LocalLow\Conduit
Složka Nalezeno : C:\Users\Tomáš\AppData\LocalLow\simplytech
Složka Nalezeno : C:\Users\Tomáš\AppData\LocalLow\uTorrentControl_v2
Složka Nalezeno : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\5hysn8ba.default\Smartbar
Soubor Nalezeno : C:\END
Soubor Nalezeno : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\5hysn8ba.default\searchplugins\icqplugin.xml
Soubor Nalezeno : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\5hysn8ba.default\searchplugins\SweetIm.xml
Soubor Nalezeno : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\5hysn8ba.default\searchplugins\Web Search.xml

***** [Registry] *****

Hodnota Nalezeno : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{7473B6BD-4691-4744-A82B-7854EB3D70B6}]
Hodnota Nalezeno : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{7473B6BD-4691-4744-A82B-7854EB3D70B6}]
Hodnota Nalezeno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{7473B6BD-4691-4744-A82B-7854EB3D70B6}]
Hodnota Nalezeno : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{7473B6BD-4691-4744-A82B-7854EB3D70B6}]
Hodnota Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [Sweetpacks Communicator]
Klíe Nalezeno : HKCU\Software\APN PIP
Klíe Nalezeno : HKCU\Software\AppDataLow\Software\Conduit
Klíe Nalezeno : HKCU\Software\AppDataLow\Software\ConduitSearchScopes
Klíe Nalezeno : HKCU\Software\AppDataLow\Software\SmartBar
Klíe Nalezeno : HKCU\Software\AppDataLow\Software\uTorrentControl_v2
Klíe Nalezeno : HKCU\Software\AppDataLow\Toolbar
Klíe Nalezeno : HKCU\Software\Conduit
Klíe Nalezeno : HKCU\Software\Default Tab
Klíe Nalezeno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6552C7DD-90A4-4387-B795-F8F96747DE19}
Klíe Nalezeno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Klíe Nalezeno : HKCU\Software\PIP
Klíe Nalezeno : HKCU\Software\ProtectedSearch
Klíe Nalezeno : HKCU\Software\Softonic
Klíe Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\Toolbar.CT3220468
Klíe Nalezeno : HKLM\Software\Conduit
Klíe Nalezeno : HKLM\Software\Default Tab
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{60299474-21E2-44C0-9D3A-4E6A999666EB}
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EF416992-9C62-4766-8F16-E5752C36E801}
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Tracing\BundleSweetIMSetup_RASAPI32
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Tracing\BundleSweetIMSetup_RASMANCS
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Tracing\SweetIM_RASAPI32
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Tracing\SweetIM_RASMANCS
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Tracing\SweetPacksUpdateManager_RASAPI32
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Tracing\SweetPacksUpdateManager_RASMANCS
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7473B6BD-4691-4744-A82B-7854EB3D70B6}
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{537F4F0B-3542-4C7D-A3E5-CF121482696C}
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Protected Search_is1
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\uTorrentControl_v2 Toolbar
Klíe Nalezeno : HKLM\Software\PIP
Klíe Nalezeno : HKLM\Software\uTorrentControl_v2
Klíe Nalezeno : HKU\S-1-5-21-2002973123-1767548463-3795549043-1001\Software\Microsoft\Internet Explorer\SearchScopes\{6552C7DD-90A4-4387-B795-F8F96747DE19}
Klíe Nalezeno : HKU\S-1-5-21-2002973123-1767548463-3795549043-1001\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}

***** [Internetové prohlížeee] *****

-\\ Internet Explorer v9.0.8112.16476

[HKCU\Software\Microsoft\Internet Explorer\Main - Start Default_Page_URL] = hxxp://search.certified-toolbar.com?si= ... e&tid=2958
[HKCU\Software\Microsoft\Internet Explorer\Main - Default_Search_URL] = hxxp://search.certified-toolbar.com?si= ... bs=true&q=
[HKCU\Software\Microsoft\Internet Explorer\Main - ICQ Search] = hxxp://search.icq.com/search/results.php?q={searchTerms}&ch_id=osd
[HKCU\Software\Microsoft\Internet Explorer\Search - Start Page] = hxxp://search.certified-toolbar.com?si= ... e&tid=2958
[HKCU\Software\Microsoft\Internet Explorer\Search - Start Default_Page_URL] = hxxp://search.certified-toolbar.com?si= ... e&tid=2958
[HKCU\Software\Microsoft\Internet Explorer\Search - Default_Search_URL] = hxxp://search.certified-toolbar.com?si= ... bs=true&q=
[HKCU\Software\Microsoft\Internet Explorer\Search - Search Bar] = hxxp://search.certified-toolbar.com?si= ... bs=true&q=
[HKCU\Software\Microsoft\Internet Explorer\Search - Search Page] = hxxp://search.certified-toolbar.com?si= ... bs=true&q=
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Search - Start Page] = hxxp://search.certified-toolbar.com?si= ... e&tid=2958
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Search - Start Default_Page_URL] = hxxp://search.certified-toolbar.com?si= ... e&tid=2958
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Search - Default_Search_URL] = hxxp://search.certified-toolbar.com?si= ... bs=true&q=
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Search - Search Bar] = hxxp://search.certified-toolbar.com?si= ... bs=true&q=
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Search - Search Page] = hxxp://search.certified-toolbar.com?si= ... bs=true&q=
[HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchUrl - (Default)] = hxxp://search.certified-toolbar.com?si= ... id=2958&q=%s
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main - Default_Search_URL] = hxxp://search.certified-toolbar.com?si= ... bs=true&q=
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main - Start Page] = hxxp://search.certified-toolbar.com?si= ... e&tid=2958
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main - Search Page] = hxxp://search.certified-toolbar.com?si= ... bs=true&q=
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main - Start Default_Page_URL] = hxxp://search.certified-toolbar.com?si= ... e&tid=2958
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main - Search Bar] = hxxp://search.certified-toolbar.com?si= ... bs=true&q=

-\\ Mozilla Firefox v20.0.1 (cs)

Soubor : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\5hysn8ba.default\prefs.js

Nalezeno : user_pref("CT3220468.129813684259252248.APP_WIN_FEATURES", "resizable=0,saveresizedsize=0,titlebar=0[...]
Nalezeno : user_pref("CT3220468.FirstTime", "true");
Nalezeno : user_pref("CT3220468.FirstTimeFF3", "true");
Nalezeno : user_pref("CT3220468.LoginRevertSettingsEnabled", true);
Nalezeno : user_pref("CT3220468.RevertSettingsEnabled", true);
Nalezeno : user_pref("CT3220468.UserID", "UN64255919739542886");
Nalezeno : user_pref("CT3220468.addressBarTakeOverEnabledInHidden", "true");
Nalezeno : user_pref("CT3220468.autoDisableScopes", -1);
Nalezeno : user_pref("CT3220468.cbcountry_001", "CZ");
Nalezeno : user_pref("CT3220468.cbfirsttime", "Mon Aug 20 2012 08:58:05 GMT+0200");
Nalezeno : user_pref("CT3220468.defaultSearch", "FALSE");
Nalezeno : user_pref("CT3220468.enableAlerts", "always");
Nalezeno : user_pref("CT3220468.enableFix404ByUser", "FALSE");
Nalezeno : user_pref("CT3220468.enableSearchFromAddressBar", "FALSE");
Nalezeno : user_pref("CT3220468.firstTimeDialogOpened", "true");
Nalezeno : user_pref("CT3220468.fixPageNotFoundError", "true");
Nalezeno : user_pref("CT3220468.fixPageNotFoundErrorByUser", "true");
Nalezeno : user_pref("CT3220468.fixPageNotFoundErrorInHidden", "true");
Nalezeno : user_pref("CT3220468.fixUrls", true);
Nalezeno : user_pref("CT3220468.homepageuserchanged", true);
Nalezeno : user_pref("CT3220468.installId", "fftECFE.tmp.exe");
Nalezeno : user_pref("CT3220468.installType", "XPE");
Nalezeno : user_pref("CT3220468.isCheckedStartAsHidden", true);
Nalezeno : user_pref("CT3220468.isFirstTimeToolbarLoading", "false");
Nalezeno : user_pref("CT3220468.isNewTabEnabled", true);
Nalezeno : user_pref("CT3220468.isPerformedSmartBarTransition", "true");
Nalezeno : user_pref("CT3220468.lastVersion", "10.15.0.562");
Nalezeno : user_pref("CT3220468.migrateAppsAndComponents", true);
Nalezeno : user_pref("CT3220468.openThankYouPage", "true");
Nalezeno : user_pref("CT3220468.openUninstallPage", "FALSE");
Nalezeno : user_pref("CT3220468.search.searchAppId", "129813684258939747");
Nalezeno : user_pref("CT3220468.search.searchCount", "1");
Nalezeno : user_pref("CT3220468.searchInNewTabEnabledByUser", "true");
Nalezeno : user_pref("CT3220468.searchInNewTabEnabledInHidden", "true");
Nalezeno : user_pref("CT3220468.serviceLayer_services_appTrackingFirstTime_lastUpdate", "1346378988351");
Nalezeno : user_pref("CT3220468.serviceLayer_services_appTracking_lastUpdate", "1345445884250");
Nalezeno : user_pref("CT3220468.serviceLayer_services_appsMetadata_lastUpdate", "1346465268078");
Nalezeno : user_pref("CT3220468.serviceLayer_services_gottenAppsContextMenu_lastUpdate", "1345445884099");
Nalezeno : user_pref("CT3220468.serviceLayer_services_location_lastUpdate", "1368345886137");
Nalezeno : user_pref("CT3220468.serviceLayer_services_login_10.10.20.14_lastUpdate", "1346172068724");
Nalezeno : user_pref("CT3220468.serviceLayer_services_login_10.10.27.6_lastUpdate", "1346465058516");
Nalezeno : user_pref("CT3220468.serviceLayer_services_login_10.13.40.15_lastUpdate", "1358889871347");
Nalezeno : user_pref("CT3220468.serviceLayer_services_login_10.14.370.524_lastUpdate", "1364320802881");
Nalezeno : user_pref("CT3220468.serviceLayer_services_login_10.14.40.128_lastUpdate", "1359655328293");
Nalezeno : user_pref("CT3220468.serviceLayer_services_login_10.14.42.7_lastUpdate", "1360949852339");
Nalezeno : user_pref("CT3220468.serviceLayer_services_login_10.14.65.43_lastUpdate", "1363196994666");
Nalezeno : user_pref("CT3220468.serviceLayer_services_login_10.15.0.562_lastUpdate", "1368411238473");
Nalezeno : user_pref("CT3220468.serviceLayer_services_otherAppsContextMenu_lastUpdate", "1345445883977");
Nalezeno : user_pref("CT3220468.serviceLayer_services_searchAPI_lastUpdate", "1346465269323");
Nalezeno : user_pref("CT3220468.serviceLayer_services_serviceMap_lastUpdate", "1368345885773");
Nalezeno : user_pref("CT3220468.serviceLayer_services_toolbarContextMenu_lastUpdate", "1345445884035");
Nalezeno : user_pref("CT3220468.serviceLayer_services_toolbarSettings_lastUpdate", "1368411235833");
Nalezeno : user_pref("CT3220468.serviceLayer_services_translation_lastUpdate", "1368345890299");
Nalezeno : user_pref("CT3220468.settingsINI", true);
Nalezeno : user_pref("CT3220468.shouldFirstTimeDialog", "false");
Nalezeno : user_pref("CT3220468.showToolbarPermission", "false");
Nalezeno : user_pref("CT3220468.smartbar.CTID", "CT3220468");
Nalezeno : user_pref("CT3220468.smartbar.Uninstall", "0");
Nalezeno : user_pref("CT3220468.smartbar.isHidden", true);
Nalezeno : user_pref("CT3220468.smartbar.toolbarName", "uTorrentControl_v2 ");
Nalezeno : user_pref("CT3220468.startPage", "userChanged");
Nalezeno : user_pref("CT3220468.toolbarBornServerTime", "20-8-2012");
Nalezeno : user_pref("CT3220468.toolbarCurrentServerTime", "13-5-2013");
Nalezeno : user_pref("CT3220468.toolbarLoginClientTime", "Thu Mar 14 2013 04:28:38 GMT+0100");
Nalezeno : user_pref("CT3220468.upgradeFromClearSBVersion", true);
Nalezeno : user_pref("CT3220468.url_history0001", "hxxp://tx3.travian.cz/hero_adventure.php:::clickhandler:::13[...]
Nalezeno : user_pref("smartbar.machineId", "D8NJOHTKEMP0BADP1E8LPDIHBMPKVLI07NVVDTMGRW6FECYT+3S/EHADFG2QWIGJFHC[...]

Soubor : C:\Users\Táta\AppData\Roaming\Mozilla\Firefox\Profiles\kx57ymsf.default\prefs.js

[OK] Soubor je eistý.

-\\ Opera v12.15.1748.0

Soubor : C:\Users\Tomáš\AppData\Roaming\Opera\Opera\operaprefs.ini

Nalezeno : HostName Web Lookup Address=hxxp://search.icq.com/search/afe_results.php?q=%s&ch_id=osd&icid=opera

*************************

AdwCleaner[R1].txt - [13045 octets] - [13/05/2013 10:45:53]

########## EOF - C:\AdwCleaner[R1].txt - [13106 octets] ##########

Uživatelský avatar
memphisto
Guru Level 13
Guru Level 13
Příspěvky: 21113
Registrován: září 06
Bydliště: Zlín - České Budějovice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu.

Příspěvekod memphisto » 13 kvě 2013 11:44

V Mbam i adw nech vše smazat a dodej logy po mazání

Stáhni si RogueKiller
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit

- Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji

junebag
Level 1.5
Level 1.5
Příspěvky: 115
Registrován: červenec 12
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu.

Příspěvekod junebag » 13 kvě 2013 12:54

Po smazání všeho v Mbam se zbláznil PC a nešel zapnout.Při přihlášení do systému vyskočila hláška ( screen bude dole ) a plocha bez ikon a absolutně nic nereagovalo.Start - Ctrl alt delete , nic .

Screen : http://postimg.org/image/n86s3gxoz/

V nouzovém režimu jsem odebral Mbam ,restart PC a niní jsem ready.Hláška vyskočila znova,po druhé NE. Po zadání hesla k přihlášení na účet načítání plochy trvá neobvykle dlouho.

Uživatelský avatar
memphisto
Guru Level 13
Guru Level 13
Příspěvky: 21113
Registrován: září 06
Bydliště: Zlín - České Budějovice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu.

Příspěvekod memphisto » 13 kvě 2013 14:03

Chybí část Mbam, což je podivné. takové ztrácení souborů by mohlo odpovídat poškozenému disku...

Dej sem log z programu CrystalDiskInfo
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji

junebag
Level 1.5
Level 1.5
Příspěvky: 115
Registrován: červenec 12
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu.

Příspěvekod junebag » 13 kvě 2013 14:14

Doufám,že to bude ono.Jinak disk je starý cca 8 měsíců a byl doporučen v Losanu jako jeden z lepších,takže snad poškozen nebude.

Jinak PC nestíhá už ani zvuk,vše se hrozně seká a nedá se na tom pracovat.Přitom 4jádro a výkoný herní PC.
A dotaz.. Nemůže to být kvůli RAM ? Mám neskutečně velké využití 90+ % . CPU jede za 55% .

----------------------------------------------------------------------------
CrystalDiskInfo 5.6.2 Shizuku Edition (C) 2008-2013 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------

OS : Windows 7 Ultimate SP1 [6.1 Build 7601] (x86)
Date : 2013/05/13 14:08:53

-- Controller Map ----------------------------------------------------------
+ ATA Channel 0 (0) [ATA]
- WDC WD5000AAKX-003CA0 ATA Device
+ ATA Channel 1 (1) [ATA]
- HL-DT-ST DVD-RAM GH22LS30 ATA Device
- ATA Channel 0 (0) [ATA]
- ATA Channel 1 (1) [ATA]
+ PCI Standardní dvoukanálový řadič IDE [ATA]
- ATA Channel 0 (0)
- ATA Channel 1 (1)
+ PCI Standardní dvoukanálový řadič IDE [ATA]
- ATA Channel 0 (0)
- ATA Channel 1 (1)
+ Virtual CloneDrive [SCSI]
- ELBY CLONEDRIVE SCSI CdRom Device

-- Disk List ---------------------------------------------------------------
(1) WDC WD5000AAKX-003CA0 : 500,1 GB [0/0/1, pd1] - wd

----------------------------------------------------------------------------
(1) WDC WD5000AAKX-003CA0
----------------------------------------------------------------------------
Model : WDC WD5000AAKX-003CA0
Firmware : 15.01H15
Serial Number : WD-WCAYUFD52478
Disk Size : 500,1 GB (8,4/137,4/500,1/500,1)
Buffer Size : 16384 KB
Queue Depth : 32
# of Sectors : 976771055
Rotation Rate : Neznámy údaj
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ----
Transfer Mode : SATA/600
Power On Hours : 6302 hod.
Power On Count : 812 krát
Temparature : 48 C (118 F)
Health Status : Dobrý
Features : S.M.A.R.T., 48bit LBA, NCQ
APM Level : ----
AAM Level : ----

-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 200 200 _51 000000000000 Počet chyb čtení
03 167 142 _21 000000000A38 Čas na roztočení ploten
04 100 100 __0 000000000339 Počet spuštění/zastavení
05 200 200 140 000000000000 Počet přemapovaných sektorů
07 200 200 __0 000000000000 Počet chybných hledání
09 _92 _92 __0 00000000189E Hodin v činnosti
0A 100 100 __0 000000000000 Počet opakovaných pokusů o roztočení ploten
0B 100 100 __0 000000000000 Počet pokusů o překalibrování
0C 100 100 __0 00000000032C Počet cyklů zapnutí zařízení
C0 200 200 __0 000000000021 Počet vypnutí disku
C1 200 200 __0 000000000317 Počet cyklů načítání/vymazání
C2 _95 _94 __0 000000000030 Teplota
C4 200 200 __0 000000000000 Počet udalostí s číslem realokování sektorů
C5 200 200 __0 000000000000 Počet podezřelých sektorů
C6 200 200 __0 000000000000 Počet neopravitelných sektorů
C7 200 199 __0 000000000232 Počet chyb v kontrolním součtu UltraDMA
C8 200 200 __0 000000000000 Počet chyb při zápisu sektorů

-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 427A 3FFF C837 0010 0000 0000 003F 0000 0000 0000
010: 2020 2020 2057 442D 5743 4159 5546 4435 3234 3738
020: 0000 8000 0032 3135 2E30 3148 3135 5744 4320 5744
030: 3530 3030 4141 4B58 2D30 3033 4341 3020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 0000 2F00
050: 4001 0000 0000 0007 3FFF 0010 003F FC10 00FB 0110
060: FFFF 0FFF 0000 0007 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 001F 170E 0004 0044 0040
080: 01FE 0000 746B 7D61 4123 7469 BC41 4123 407F 002C
090: 002C 0000 FFFE 0000 0000 0000 0000 0000 0000 0000
100: 57EF 3A38 0000 0000 0000 0000 0000 0000 5001 4EE1
110: AF2C 207C 0000 0000 0000 0000 0000 0000 0000 4018
120: 4018 0000 0000 0000 0000 0000 0000 0000 0029 0000
130: 0000 0000 0000 16FE 0125 0000 0000 0000 0000 0000
140: 0000 0000 0004 0000 0000 0000 0000 0000 0000 0000
150: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 0000 3037 0000 0000 0000
210: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
220: 0000 0000 103E 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0001 1000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 76A5

-- SMART_READ_DATA ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 2F 00 C8 C8 00 00 00 00 00 00 00 03 27
010: 00 A7 8E 38 0A 00 00 00 00 00 04 32 00 64 64 39
020: 03 00 00 00 00 00 05 33 00 C8 C8 00 00 00 00 00
030: 00 00 07 2E 00 C8 C8 00 00 00 00 00 00 00 09 32
040: 00 5C 5C 9E 18 00 00 00 00 00 0A 32 00 64 64 00
050: 00 00 00 00 00 00 0B 32 00 64 64 00 00 00 00 00
060: 00 00 0C 32 00 64 64 2C 03 00 00 00 00 00 C0 32
070: 00 C8 C8 21 00 00 00 00 00 00 C1 32 00 C8 C8 17
080: 03 00 00 00 00 00 C2 22 00 5F 5E 30 00 00 00 00
090: 00 00 C4 32 00 C8 C8 00 00 00 00 00 00 00 C5 32
0A0: 00 C8 C8 00 00 00 00 00 00 00 C6 30 00 C8 C8 00
0B0: 00 00 00 00 00 00 C7 32 00 C8 C7 32 02 00 00 00
0C0: 00 00 C8 08 00 C8 C8 00 00 00 00 00 00 00 00 00
0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 84 00 FC 21 01 7B
170: 03 00 01 00 02 58 05 00 00 00 00 00 00 00 00 00
180: 00 00 01 02 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 9E

-- SMART_READ_THRESHOLD ----------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 33 C8 C8 00 00 00 00 00 00 00 00 03 15
010: 00 00 00 00 00 00 00 00 00 00 04 00 00 00 00 00
020: 00 00 00 00 00 00 05 8C 00 00 00 00 00 00 00 00
030: 00 00 07 00 C8 C8 00 00 00 00 00 00 00 00 09 00
040: 00 00 00 00 00 00 00 00 00 00 0A 00 00 00 00 00
050: 00 00 00 00 00 00 0B 00 00 00 00 00 00 00 00 00
060: 00 00 0C 00 00 00 00 00 00 00 00 00 00 00 C0 00
070: 00 00 00 00 00 00 00 00 00 00 C1 00 00 00 00 00
080: 00 00 00 00 00 00 C2 00 00 00 00 00 00 00 00 00
090: 00 00 C4 00 00 00 00 00 00 00 00 00 00 00 C5 00
0A0: 00 00 00 00 00 00 00 00 00 00 C6 00 00 00 00 00
0B0: 00 00 00 00 00 00 C7 00 00 00 00 00 00 00 00 00
0C0: 00 00 C8 00 C8 C8 00 00 00 00 00 00 00 00 00 00
0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 0D

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu.

Příspěvekod jaro3 » 13 kvě 2013 19:48

Disk OK.

Stáhni si Memtest:

Do políčka vlož největší velikost Tvé jednotlivé paměti RAM (256,512 nebo 1024,2048) dej Start , nech nejméně 2h běžet , pokud bude po 2h stále 0 errors , jsou v pořádku.

MbAM , udělej znovu v nouz. režimu.

+
RogueKiller

+
Stáhni si TDSSKiller
Na svojí plochu.Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller. 2.8.16.0_(datum)_log.txt , vlož sem prosím celý obsah logu.

Jalé máš teploty CPU , GPU?
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

junebag
Level 1.5
Level 1.5
Příspěvky: 115
Registrován: červenec 12
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu.

Příspěvekod junebag » 13 kvě 2013 22:35

Memtest po 197% .. 1:45h nula chyb.

MbAM , udělej znovu v nouz. režimu. - Udělal sem pouze scan,bez FIX,mazání něčeho.PC sem opět nezapl.Prvně naběhla skoro plocha,start,tři ikony na liště,pak zásek.Další 2x restart pouze obrazovka "vítejte" nic víc. V nouzovém režimu jsem opět Mbam odinstaloval,vše ok.PC běží.Nevím,co s tím.

RogueKiller + TDSS nevím,zda mám dělat,když nejde ani Mbam.

Jako teplota ti bude snad stačit toto - http://postimg.org/image/ue1khdhx1/
Jen dodám,že PC šlape zrovna tak,jak by měl.Občas se tak stane,takže nejsem překvapen.Jen hodnoty jsou z "ideálního chodu PC"

junebag
Level 1.5
Level 1.5
Příspěvky: 115
Registrován: červenec 12
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu.

Příspěvekod junebag » 13 kvě 2013 23:06

Přídávám screen při zatížení a obvyklého sekání PC.

http://postimg.org/image/4lwtduc5z/

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu.

Příspěvekod jaro3 » 14 kvě 2013 00:53

RogueKiller + TDSS nevím,zda mám dělat,když nejde ani Mbam.
--jen to udělej..

screen--vysoké teploty GPU a HDD , víc chladit!!
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

junebag
Level 1.5
Level 1.5
Příspěvky: 115
Registrován: červenec 12
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu.

Příspěvekod junebag » 14 kvě 2013 06:22

RogueKiller V8.5.4 [Mar 18 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.geekstogo.com/forum/files/fi ... guekiller/
Webové stránky : http://tigzy.geekstogo.com/roguekiller.php
: http://tigzyrk.blogspot.com/

Operační systém : Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Spuštěno v : Normální režim
Uživatel : Tomáš [Práva správce]
Mód : Kontrola -- Datum : 05/14/2013 06:13:01
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 1 ¤¤¤
[DLL] explorer.exe -- C:\Windows\explorer.exe : C:\Users\Tomáš\AppData\Local\Pokki\ocdeskband_0.dll [x] -> ODEBRÁNO

¤¤¤ ¤¤¤ Záznamy Registrů: : 6 ¤¤¤
[RUN][SUSP PATH] HKCU\[...]\Run : Messenger ("C:\Users\TomßÜ\AppData\Roaming\msnmsgr.exe") [x] -> NALEZENO
[RUN][SUSP PATH] HKCU\[...]\Run : Pokki ("C:\Users\Tomáš\AppData\Local\Pokki\Engine\pokki.exe") [7] -> NALEZENO
[RUN][SUSP PATH] HKUS\S-1-5-21-2002973123-1767548463-3795549043-1001[...]\Run : Messenger ("C:\Users\TomßÜ\AppData\Roaming\msnmsgr.exe") [x] -> NALEZENO
[RUN][SUSP PATH] HKUS\S-1-5-21-2002973123-1767548463-3795549043-1001[...]\Run : Pokki ("C:\Users\Tomáš\AppData\Local\Pokki\Engine\pokki.exe") [7] -> NALEZENO
[HJ DESK] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> C:\Windows\system32\drivers\etc\hosts



¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: WDC WD5000AAKX-003CA0 ATA Device +++++
--- User ---
[MBR] 40908d00251a569177779326aa3dc61b
[BSP] 8b82ed7058835f47adbaedf1b37b27cc : Windows 7/8 MBR Code
Partition table:
0 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 200003 Mo
1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 409610240 | Size: 276932 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[1]_S_05142013_02d0613.txt >>
RKreport[1]_S_05142013_02d0613.txt


______________________________
______________________________
______________________________


06:15:58.0551 3396 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
06:15:58.0817 3396 ============================================================
06:15:58.0817 3396 Current date / time: 2013/05/14 06:15:58.0817
06:15:58.0817 3396 SystemInfo:
06:15:58.0817 3396
06:15:58.0817 3396 OS Version: 6.1.7601 ServicePack: 1.0
06:15:58.0817 3396 Product type: Workstation
06:15:58.0817 3396 ComputerName: TOMÁŠ-PC
06:15:58.0817 3396 UserName: Tomáš
06:15:58.0817 3396 Windows directory: C:\Windows
06:15:58.0817 3396 System windows directory: C:\Windows
06:15:58.0817 3396 Processor architecture: Intel x86
06:15:58.0817 3396 Number of processors: 4
06:15:58.0817 3396 Page size: 0x1000
06:15:58.0817 3396 Boot type: Normal boot
06:15:58.0817 3396 ============================================================
06:16:00.0096 3396 Drive \Device\Harddisk0\DR0 - Size: 0x7470AFDE00 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
06:16:00.0111 3396 ============================================================
06:16:00.0111 3396 \Device\Harddisk0\DR0:
06:16:00.0111 3396 MBR partitions:
06:16:00.0111 3396 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x186A1C59
06:16:00.0111 3396 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x186A2800, BlocksNum 0x21CE2000
06:16:00.0111 3396 ============================================================
06:16:00.0127 3396 C: <-> \Device\Harddisk0\DR0\Partition1
06:16:00.0158 3396 D: <-> \Device\Harddisk0\DR0\Partition2
06:16:00.0158 3396 ============================================================
06:16:00.0158 3396 Initialize success
06:16:00.0158 3396 ============================================================
06:16:02.0405 3764 ============================================================
06:16:02.0405 3764 Scan started
06:16:02.0405 3764 Mode: Manual;
06:16:02.0405 3764 ============================================================
06:16:03.0294 3764 ================ Scan system memory ========================
06:16:03.0294 3764 System memory - ok
06:16:03.0294 3764 ================ Scan services =============================
06:16:03.0450 3764 [ 1B133875B8AA8AC48969BD3458AFE9F5 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
06:16:03.0450 3764 1394ohci - ok
06:16:03.0481 3764 [ CEA80C80BED809AA0DA6FEBC04733349 ] ACPI C:\Windows\system32\drivers\ACPI.sys
06:16:03.0481 3764 ACPI - ok
06:16:03.0497 3764 [ 1EFBC664ABFF416D1D07DB115DCB264F ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
06:16:03.0497 3764 AcpiPmi - ok
06:16:03.0637 3764 [ 3927397AC60D943DAF8808AFFED582B7 ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
06:16:03.0637 3764 AdobeARMservice - ok
06:16:03.0684 3764 [ 479901C99FA62D1C3261B7ACB1228DAD ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
06:16:03.0684 3764 AdobeFlashPlayerUpdateSvc - ok
06:16:03.0731 3764 [ 21E785EBD7DC90A06391141AAC7892FB ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys
06:16:03.0746 3764 adp94xx - ok
06:16:03.0762 3764 [ 0C676BC278D5B59FF5ABD57BBE9123F2 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys
06:16:03.0762 3764 adpahci - ok
06:16:03.0793 3764 [ 7C7B5EE4B7B822EC85321FE23A27DB33 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys
06:16:03.0793 3764 adpu320 - ok
06:16:03.0840 3764 [ 8B5EEFEEC1E6D1A72A06C526628AD161 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
06:16:03.0840 3764 AeLookupSvc - ok
06:16:03.0902 3764 [ 9EBBBA55060F786F0FCAA3893BFA2806 ] AFD C:\Windows\system32\drivers\afd.sys
06:16:03.0902 3764 AFD - ok
06:16:03.0933 3764 [ 507812C3054C21CEF746B6EE3D04DD6E ] agp440 C:\Windows\system32\drivers\agp440.sys
06:16:03.0949 3764 agp440 - ok
06:16:03.0965 3764 [ 8B30250D573A8F6B4BD23195160D8707 ] aic78xx C:\Windows\system32\DRIVERS\djsvs.sys
06:16:03.0965 3764 aic78xx - ok
06:16:03.0996 3764 [ 18A54E132947CD98FEA9ACCC57F98F13 ] ALG C:\Windows\System32\alg.exe
06:16:03.0996 3764 ALG - ok
06:16:04.0011 3764 [ 0D40BCF52EA90FC7DF2AEAB6503DEA44 ] aliide C:\Windows\system32\drivers\aliide.sys
06:16:04.0011 3764 aliide - ok
06:16:04.0058 3764 [ C4232FADFA9691B85DDA0A7B636C5F6D ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe
06:16:04.0058 3764 AMD External Events Utility - ok
06:16:04.0105 3764 AMD FUEL Service - ok
06:16:04.0136 3764 [ 3C6600A0696E90A463771C7422E23AB5 ] amdagp C:\Windows\system32\drivers\amdagp.sys
06:16:04.0136 3764 amdagp - ok
06:16:04.0152 3764 [ CD5914170297126B6266860198D1D4F0 ] amdide C:\Windows\system32\drivers\amdide.sys
06:16:04.0152 3764 amdide - ok
06:16:04.0167 3764 [ FF258424F0B2EF25EB98F04EE386E6E3 ] amdiox86 C:\Windows\system32\DRIVERS\amdiox86.sys
06:16:04.0183 3764 amdiox86 - ok
06:16:04.0214 3764 [ 00DDA200D71BAC534BF56A9DB5DFD666 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
06:16:04.0214 3764 AmdK8 - ok
06:16:04.0511 3764 [ 10D681E635E81C253FC5DD1A5048B0E9 ] amdkmdag C:\Windows\system32\DRIVERS\atikmdag.sys
06:16:04.0604 3764 amdkmdag - ok
06:16:04.0651 3764 [ 112A7F24C6535DBD2E90AEF34ECB57A4 ] amdkmdap C:\Windows\system32\DRIVERS\atikmpag.sys
06:16:04.0651 3764 amdkmdap - ok
06:16:04.0698 3764 [ 3CBF30F5370FDA40DD3E87DF38EA53B6 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
06:16:04.0698 3764 AmdPPM - ok
06:16:04.0729 3764 [ D320BF87125326F996D4904FE24300FC ] amdsata C:\Windows\system32\drivers\amdsata.sys
06:16:04.0729 3764 amdsata - ok
06:16:04.0760 3764 [ EA43AF0C423FF267355F74E7A53BDABA ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys
06:16:04.0776 3764 amdsbs - ok
06:16:04.0791 3764 [ 46387FB17B086D16DEA267D5BE23A2F2 ] amdxata C:\Windows\system32\drivers\amdxata.sys
06:16:04.0791 3764 amdxata - ok
06:16:04.0823 3764 [ 40C15CE1B832B78CC2A2F61807058763 ] AODDriver4.1 C:\Program Files\ATI Technologies\ATI.ACE\Fuel\i386\AODDriver2.sys
06:16:04.0823 3764 AODDriver4.1 - ok
06:16:04.0869 3764 [ AEA177F783E20150ACE5383EE368DA19 ] AppID C:\Windows\system32\drivers\appid.sys
06:16:04.0869 3764 AppID - ok
06:16:04.0916 3764 [ 62A9C86CB6085E20DB4823E4E97826F5 ] AppIDSvc C:\Windows\System32\appidsvc.dll
06:16:04.0916 3764 AppIDSvc - ok
06:16:04.0947 3764 [ FB1959012294D6AD43E5304DF65E3C26 ] Appinfo C:\Windows\System32\appinfo.dll
06:16:04.0947 3764 Appinfo - ok
06:16:04.0963 3764 [ A45D184DF6A8803DA13A0B329517A64A ] AppMgmt C:\Windows\System32\appmgmts.dll
06:16:04.0979 3764 AppMgmt - ok
06:16:04.0994 3764 [ 2932004F49677BD84DBC72EDB754FFB3 ] arc C:\Windows\system32\DRIVERS\arc.sys
06:16:05.0010 3764 arc - ok
06:16:05.0010 3764 [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7 ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys
06:16:05.0025 3764 arcsas - ok
06:16:05.0057 3764 [ CCDA8D84FD02AEC52E62F296433AE9DC ] aswFsBlk C:\Windows\system32\drivers\aswFsBlk.sys
06:16:05.0057 3764 aswFsBlk - ok
06:16:05.0103 3764 [ A65FC444F7660F0CAC9A9E22203FD4BA ] aswFW C:\Windows\system32\drivers\aswFW.sys
06:16:05.0103 3764 aswFW - ok
06:16:05.0119 3764 [ 4691B3FE3717F9D9C64A5282C8543D4D ] aswKbd C:\Windows\system32\drivers\aswKbd.sys
06:16:05.0135 3764 aswKbd - ok
06:16:05.0166 3764 [ A6E20E62871A28A0F1C05B1681848FA7 ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
06:16:05.0181 3764 aswMonFlt - ok
06:16:05.0197 3764 [ 7B948E3657BEA62E437BC46CA6EF6012 ] aswNdis C:\Windows\system32\DRIVERS\aswNdis.sys
06:16:05.0197 3764 aswNdis - ok
06:16:05.0259 3764 [ 672A45E2AA1FA8178DB8CF1A39BEFC83 ] aswNdis2 C:\Windows\system32\drivers\aswNdis2.sys
06:16:05.0275 3764 aswNdis2 - ok
06:16:05.0306 3764 [ 6844738D52970A0F482768EEA941C78E ] aswRdr C:\Windows\System32\Drivers\aswrdr2.sys
06:16:05.0306 3764 aswRdr - ok
06:16:05.0353 3764 [ 657A61979F40D67CA29716149766FFA7 ] aswRvrt C:\Windows\system32\drivers\aswRvrt.sys
06:16:05.0353 3764 aswRvrt - ok
06:16:05.0384 3764 [ 0E604867FC28F00D91CB0B00D2EC830D ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
06:16:05.0400 3764 aswSnx - ok
06:16:05.0447 3764 [ 6FC4AA106AA505394C908D37CCCB9148 ] aswSP C:\Windows\system32\drivers\aswSP.sys
06:16:05.0447 3764 aswSP - ok
06:16:05.0462 3764 [ 33E21FFB063CA6C7E00D568467DC72E4 ] aswTdi C:\Windows\system32\drivers\aswTdi.sys
06:16:05.0478 3764 aswTdi - ok
06:16:05.0478 3764 [ EDB0C9BA44B748E420CCA989FD8B826E ] aswVmm C:\Windows\system32\drivers\aswVmm.sys
06:16:05.0493 3764 aswVmm - ok
06:16:05.0509 3764 [ ADD2ADE1C2B285AB8378D2DAAF991481 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
06:16:05.0509 3764 AsyncMac - ok
06:16:05.0540 3764 [ 338C86357871C167A96AB976519BF59E ] atapi C:\Windows\system32\drivers\atapi.sys
06:16:05.0540 3764 atapi - ok
06:16:05.0587 3764 [ 6ADC42CF4A6AB84975CA63DCCFAAF5D8 ] AtiHDAudioService C:\Windows\system32\drivers\AtihdW73.sys
06:16:05.0587 3764 AtiHDAudioService - ok
06:16:05.0852 3764 [ 10D681E635E81C253FC5DD1A5048B0E9 ] atikmdag C:\Windows\system32\DRIVERS\atikmdag.sys
06:16:05.0961 3764 atikmdag - ok
06:16:06.0008 3764 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
06:16:06.0024 3764 AudioEndpointBuilder - ok
06:16:06.0055 3764 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] Audiosrv C:\Windows\System32\Audiosrv.dll
06:16:06.0055 3764 Audiosrv - ok
06:16:06.0102 3764 [ 41735B82DB57E4EBE9504EC400FD120E ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
06:16:06.0117 3764 avast! Antivirus - ok
06:16:06.0164 3764 [ DA387EDDBA421A7A8132E256343C2799 ] avast! Firewall C:\Program Files\AVAST Software\Avast\afwServ.exe
06:16:06.0164 3764 avast! Firewall - ok
06:16:06.0195 3764 [ 6E30D02AAC9CAC84F421622E3A2F6178 ] AxInstSV C:\Windows\System32\AxInstSV.dll
06:16:06.0195 3764 AxInstSV - ok
06:16:06.0242 3764 [ 1A231ABEC60FD316EC54C66715543CEC ] b06bdrv C:\Windows\system32\DRIVERS\bxvbdx.sys
06:16:06.0242 3764 b06bdrv - ok
06:16:06.0258 3764 [ BD8869EB9CDE6BBE4508D869929869EE ] b57nd60x C:\Windows\system32\DRIVERS\b57nd60x.sys
06:16:06.0273 3764 b57nd60x - ok
06:16:06.0305 3764 [ EE1E9C3BB8228AE423DD38DB69128E71 ] BDESVC C:\Windows\System32\bdesvc.dll
06:16:06.0305 3764 BDESVC - ok
06:16:06.0320 3764 [ 505506526A9D467307B3C393DEDAF858 ] Beep C:\Windows\system32\drivers\Beep.sys
06:16:06.0336 3764 Beep - ok
06:16:06.0367 3764 [ 1E2BAC209D184BB851E1A187D8A29136 ] BFE C:\Windows\System32\bfe.dll
06:16:06.0383 3764 BFE - ok
06:16:06.0414 3764 [ E585445D5021971FAE10393F0F1C3961 ] BITS C:\Windows\System32\qmgr.dll
06:16:06.0461 3764 BITS - ok
06:16:06.0492 3764 [ 2287078ED48FCFC477B05B20CF38F36F ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
06:16:06.0507 3764 blbdrive - ok
06:16:06.0523 3764 [ 8F2DA3028D5FCBD1A060A3DE64CD6506 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
06:16:06.0523 3764 bowser - ok
06:16:06.0539 3764 [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys
06:16:06.0554 3764 BrFiltLo - ok
06:16:06.0554 3764 [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys
06:16:06.0554 3764 BrFiltUp - ok
06:16:06.0585 3764 [ 3DAA727B5B0A45039B0E1C9A211B8400 ] Browser C:\Windows\System32\browser.dll
06:16:06.0601 3764 Browser - ok
06:16:06.0632 3764 [ 845B8CE732E67F3B4133164868C666EA ] Brserid C:\Windows\System32\Drivers\Brserid.sys
06:16:06.0632 3764 Brserid - ok
06:16:06.0648 3764 [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
06:16:06.0663 3764 BrSerWdm - ok
06:16:06.0663 3764 [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
06:16:06.0663 3764 BrUsbMdm - ok
06:16:06.0679 3764 [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
06:16:06.0679 3764 BrUsbSer - ok
06:16:06.0695 3764 [ ED3DF7C56CE0084EB2034432FC56565A ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys
06:16:06.0710 3764 BTHMODEM - ok
06:16:06.0741 3764 [ 1DF19C96EEF6C29D1C3E1A8678E07190 ] bthserv C:\Windows\system32\bthserv.dll
06:16:06.0741 3764 bthserv - ok
06:16:06.0757 3764 [ 77EA11B065E0A8AB902D78145CA51E10 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
06:16:06.0773 3764 cdfs - ok
06:16:06.0804 3764 [ BE167ED0FDB9C1FA1133953C18D5A6C9 ] cdrom C:\Windows\system32\drivers\cdrom.sys
06:16:06.0804 3764 cdrom - ok
06:16:06.0851 3764 [ 319C6B309773D063541D01DF8AC6F55F ] CertPropSvc C:\Windows\System32\certprop.dll
06:16:06.0851 3764 CertPropSvc - ok
06:16:06.0866 3764 [ 3FE3FE94A34DF6FB06E6418D0F6A0060 ] circlass C:\Windows\system32\DRIVERS\circlass.sys
06:16:06.0866 3764 circlass - ok
06:16:06.0897 3764 [ 635181E0E9BBF16871BF5380D71DB02D ] CLFS C:\Windows\system32\CLFS.sys
06:16:06.0897 3764 CLFS - ok
06:16:06.0960 3764 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
06:16:06.0975 3764 clr_optimization_v2.0.50727_32 - ok
06:16:07.0038 3764 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
06:16:07.0053 3764 clr_optimization_v4.0.30319_32 - ok
06:16:07.0085 3764 [ DEA805815E587DAD1DD2C502220B5616 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
06:16:07.0085 3764 CmBatt - ok
06:16:07.0100 3764 [ C537B1DB64D495B9B4717B4D6D9EDBF2 ] cmdide C:\Windows\system32\drivers\cmdide.sys
06:16:07.0100 3764 cmdide - ok
06:16:07.0116 3764 [ 247B4CE2DAB1160CD422D532D5241E1F ] CNG C:\Windows\system32\Drivers\cng.sys
06:16:07.0131 3764 CNG - ok
06:16:07.0147 3764 [ A6023D3823C37043986713F118A89BEE ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
06:16:07.0147 3764 Compbatt - ok
06:16:07.0178 3764 [ CBE8C58A8579CFE5FCCF809E6F114E89 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys
06:16:07.0178 3764 CompositeBus - ok
06:16:07.0194 3764 COMSysApp - ok
06:16:07.0194 3764 [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys
06:16:07.0209 3764 crcdisk - ok
06:16:07.0241 3764 [ 96C0E38905CFD788313BE8E11DAE3F2F ] CryptSvc C:\Windows\system32\cryptsvc.dll
06:16:07.0241 3764 CryptSvc - ok
06:16:07.0272 3764 [ 3C2177A897B4CA2788C6FB0C3FD81D4B ] CSC C:\Windows\system32\drivers\csc.sys
06:16:07.0287 3764 CSC - ok
06:16:07.0319 3764 [ 15F93B37F6801943360D9EB42485D5D3 ] CscService C:\Windows\System32\cscsvc.dll
06:16:07.0334 3764 CscService - ok
06:16:07.0365 3764 [ 7660F01D3B38ACA1747E397D21D790AF ] DcomLaunch C:\Windows\system32\rpcss.dll
06:16:07.0397 3764 DcomLaunch - ok
06:16:07.0412 3764 [ 8D6E10A2D9A5EED59562D9B82CF804E1 ] defragsvc C:\Windows\System32\defragsvc.dll
06:16:07.0428 3764 defragsvc - ok
06:16:07.0475 3764 [ F024449C97EC1E464AAFFDA18593DB88 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
06:16:07.0475 3764 DfsC - ok
06:16:07.0521 3764 [ E9E01EB683C132F7FA27CD607B8A2B63 ] Dhcp C:\Windows\system32\dhcpcore.dll
06:16:07.0537 3764 Dhcp - ok
06:16:07.0553 3764 [ 1A050B0274BFB3890703D490F330C0DA ] discache C:\Windows\system32\drivers\discache.sys
06:16:07.0568 3764 discache - ok
06:16:07.0584 3764 [ 565003F326F99802E68CA78F2A68E9FF ] Disk C:\Windows\system32\DRIVERS\disk.sys
06:16:07.0584 3764 Disk - ok
06:16:07.0615 3764 [ 33EF4861F19A0736B11314AAD9AE28D0 ] Dnscache C:\Windows\System32\dnsrslvr.dll
06:16:07.0615 3764 Dnscache - ok
06:16:07.0646 3764 [ 366BA8FB4B7BB7435E3B9EACB3843F67 ] dot3svc C:\Windows\System32\dot3svc.dll
06:16:07.0646 3764 dot3svc - ok
06:16:07.0677 3764 [ 8EC04CA86F1D68DA9E11952EB85973D6 ] DPS C:\Windows\system32\dps.dll
06:16:07.0677 3764 DPS - ok
06:16:07.0724 3764 [ B918E7C5F9BF77202F89E1A9539F2EB4 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
06:16:07.0740 3764 drmkaud - ok
06:16:07.0802 3764 [ 23F5D28378A160352BA8F817BD8C71CB ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
06:16:07.0818 3764 DXGKrnl - ok
06:16:07.0865 3764 [ C73D90A437907C2398D32CCE618FE808 ] eamonm C:\Windows\system32\DRIVERS\eamonm.sys
06:16:07.0865 3764 eamonm - ok
06:16:07.0880 3764 [ 8600142FA91C1B96367D3300AD0F3F3A ] EapHost C:\Windows\System32\eapsvc.dll
06:16:07.0896 3764 EapHost - ok
06:16:08.0005 3764 [ 024E1B5CAC09731E4D868E64DBFB4AB0 ] ebdrv C:\Windows\system32\DRIVERS\evbdx.sys
06:16:08.0036 3764 ebdrv - ok
06:16:08.0067 3764 [ 81951F51E318AECC2D68559E47485CC4 ] EFS C:\Windows\System32\lsass.exe
06:16:08.0083 3764 EFS - ok
06:16:08.0130 3764 [ A8C362018EFC87BEB013EE28F29C0863 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
06:16:08.0145 3764 ehRecvr - ok
06:16:08.0161 3764 [ D389BFF34F80CAEDE417BF9D1507996A ] ehSched C:\Windows\ehome\ehsched.exe
06:16:08.0161 3764 ehSched - ok
06:16:08.0208 3764 ekrn - ok
06:16:08.0239 3764 [ D71233D7CCC2E64F8715A20428D5A33B ] ElbyCDIO C:\Windows\system32\Drivers\ElbyCDIO.sys
06:16:08.0239 3764 ElbyCDIO - ok
06:16:08.0286 3764 [ 0ED67910C8C326796FAA00B2BF6D9D3C ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys
06:16:08.0301 3764 elxstor - ok
06:16:08.0348 3764 [ 0C0C50813FC59C145B604B1DCCFFB377 ] epfw C:\Windows\system32\DRIVERS\epfw.sys
06:16:08.0364 3764 epfw - ok
06:16:08.0379 3764 [ A047420F4A55C1695A46468341558136 ] EpfwLWF C:\Windows\system32\DRIVERS\EpfwLWF.sys
06:16:08.0379 3764 EpfwLWF - ok
06:16:08.0395 3764 [ C6F90AF4258374B138EC891AD70C6A03 ] epfwwfp C:\Windows\system32\DRIVERS\epfwwfp.sys
06:16:08.0395 3764 epfwwfp - ok
06:16:08.0426 3764 [ 8FC3208352DD3912C94367A206AB3F11 ] ErrDev C:\Windows\system32\drivers\errdev.sys
06:16:08.0426 3764 ErrDev - ok
06:16:08.0473 3764 [ F6916EFC29D9953D5D0DF06882AE8E16 ] EventSystem C:\Windows\system32\es.dll
06:16:08.0473 3764 EventSystem - ok
06:16:08.0504 3764 [ 2DC9108D74081149CC8B651D3A26207F ] exfat C:\Windows\system32\drivers\exfat.sys
06:16:08.0504 3764 exfat - ok
06:16:08.0535 3764 [ 7E0AB74553476622FB6AE36F73D97D35 ] fastfat C:\Windows\system32\drivers\fastfat.sys
06:16:08.0535 3764 fastfat - ok
06:16:08.0582 3764 [ 967EA5B213E9984CBE270205DF37755B ] Fax C:\Windows\system32\fxssvc.exe
06:16:08.0598 3764 Fax - ok
06:16:08.0645 3764 [ E817A017F82DF2A1F8CFDBDA29388B29 ] fdc C:\Windows\system32\DRIVERS\fdc.sys
06:16:08.0645 3764 fdc - ok
06:16:08.0660 3764 [ F3222C893BD2F5821A0179E5C71E88FB ] fdPHost C:\Windows\system32\fdPHost.dll
06:16:08.0660 3764 fdPHost - ok
06:16:08.0676 3764 [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B ] FDResPub C:\Windows\system32\fdrespub.dll
06:16:08.0676 3764 FDResPub - ok
06:16:08.0691 3764 [ 6CF00369C97F3CF563BE99BE983D13D8 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
06:16:08.0691 3764 FileInfo - ok
06:16:08.0707 3764 [ 42C51DC94C91DA21CB9196EB64C45DB9 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
06:16:08.0707 3764 Filetrace - ok
06:16:08.0738 3764 [ 87907AA70CB3C56600F1C2FB8841579B ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
06:16:08.0738 3764 flpydisk - ok
06:16:08.0754 3764 [ 7520EC808E0C35E0EE6F841294316653 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
06:16:08.0754 3764 FltMgr - ok
06:16:08.0801 3764 [ B3A5EC6B6B6673DB7E87C2BCDBDDC074 ] FontCache C:\Windows\system32\FntCache.dll
06:16:08.0816 3764 FontCache - ok
06:16:08.0863 3764 [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
06:16:08.0879 3764 FontCache3.0.0.0 - ok
06:16:08.0894 3764 [ 1A16B57943853E598CFF37FE2B8CBF1D ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
06:16:08.0894 3764 FsDepends - ok
06:16:08.0957 3764 [ 213B080590BF65E2285C232D7937885C ] FSProFilter2 C:\Windows\system32\Drivers\FSPFltd2.sys
06:16:08.0957 3764 FSProFilter2 - ok
06:16:08.0988 3764 [ 8FB765FCD48C093F6276D43C05B9C5F1 ] fsproflt2 C:\Windows\system32\fsproflt2.exe
06:16:08.0988 3764 fsproflt2 - ok
06:16:09.0019 3764 [ 7DAE5EBCC80E45D3253F4923DC424D05 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
06:16:09.0019 3764 Fs_Rec - ok
06:16:09.0066 3764 [ E306A24D9694C724FA2491278BF50FDB ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
06:16:09.0066 3764 fvevol - ok
06:16:09.0113 3764 [ 65EE0C7A58B65E74AE05637418153938 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys
06:16:09.0113 3764 gagp30kx - ok
06:16:09.0159 3764 [ 77EBF3E9386DAA51551AF429052D88D0 ] giveio C:\Windows\system32\giveio.sys
06:16:09.0159 3764 giveio - ok
06:16:09.0206 3764 [ E897EAF5ED6BA41E081060C9B447A673 ] gpsvc C:\Windows\System32\gpsvc.dll
06:16:09.0237 3764 gpsvc - ok
06:16:09.0269 3764 [ 7929A161F9951D173CA9900FE7067391 ] hamachi C:\Windows\system32\DRIVERS\hamachi.sys
06:16:09.0269 3764 hamachi - ok
06:16:09.0284 3764 [ C44E3C2BAB6837DB337DDEE7544736DB ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
06:16:09.0284 3764 hcw85cir - ok
06:16:09.0331 3764 [ A5EF29D5315111C80A5C1ABAD14C8972 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
06:16:09.0331 3764 HdAudAddService - ok
06:16:09.0362 3764 [ 9036377B8A6C15DC2EEC53E489D159B5 ] HDAudBus C:\Windows\system32\drivers\HDAudBus.sys
06:16:09.0362 3764 HDAudBus - ok
06:16:09.0378 3764 [ 1D58A7F3E11A9731D0EAAAA8405ACC36 ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys
06:16:09.0393 3764 HidBatt - ok
06:16:09.0393 3764 [ 89448F40E6DF260C206A193A4683BA78 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys
06:16:09.0409 3764 HidBth - ok
06:16:09.0425 3764 [ CF50B4CF4A4F229B9F3C08351F99CA5E ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
06:16:09.0425 3764 HidIr - ok
06:16:09.0456 3764 [ 2BC6F6A1992B3A77F5F41432CA6B3B6B ] hidserv C:\Windows\system32\hidserv.dll
06:16:09.0471 3764 hidserv - ok
06:16:09.0487 3764 [ 10C19F8290891AF023EAEC0832E1EB4D ] HidUsb C:\Windows\system32\drivers\hidusb.sys
06:16:09.0487 3764 HidUsb - ok
06:16:09.0518 3764 [ 196B4E3F4CCCC24AF836CE58FACBB699 ] hkmsvc C:\Windows\system32\kmsvc.dll
06:16:09.0518 3764 hkmsvc - ok
06:16:09.0534 3764 [ 6658F4404DE03D75FE3BA09F7ABA6A30 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
06:16:09.0549 3764 HomeGroupListener - ok
06:16:09.0565 3764 [ DBC02D918FFF1CAD628ACBE0C0EAA8E8 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
06:16:09.0581 3764 HomeGroupProvider - ok
06:16:09.0596 3764 [ 295FDC419039090EB8B49FFDBB374549 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
06:16:09.0596 3764 HpSAMD - ok
06:16:09.0643 3764 [ 871917B07A141BFF43D76D8844D48106 ] HTTP C:\Windows\system32\drivers\HTTP.sys
06:16:09.0659 3764 HTTP - ok
06:16:09.0674 3764 [ 0C4E035C7F105F1299258C90886C64C5 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
06:16:09.0674 3764 hwpolicy - ok
06:16:09.0705 3764 [ F151F0BDC47F4A28B1B20A0818EA36D6 ] i8042prt C:\Windows\system32\drivers\i8042prt.sys
06:16:09.0705 3764 i8042prt - ok
06:16:09.0721 3764 [ 5CD5F9A5444E6CDCB0AC89BD62D8B76E ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
06:16:09.0721 3764 iaStorV - ok
06:16:09.0768 3764 [ C521D7EB6497BB1AF6AFA89E322FB43C ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
06:16:09.0783 3764 idsvc - ok
06:16:09.0799 3764 [ 4173FF5708F3236CF25195FECD742915 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys
06:16:09.0815 3764 iirsp - ok
06:16:09.0830 3764 [ F95622F161474511B8D80D6B093AA610 ] IKEEXT C:\Windows\System32\ikeext.dll
06:16:09.0861 3764 IKEEXT - ok
06:16:09.0939 3764 [ F2C17D2C3D70C389193D9954E375E5E3 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHDA.sys
06:16:09.0955 3764 IntcAzAudAddService - ok
06:16:09.0971 3764 [ A0F12F2C9BA6C72F3987CE780E77C130 ] intelide C:\Windows\system32\drivers\intelide.sys
06:16:09.0971 3764 intelide - ok
06:16:10.0002 3764 [ 3B514D27BFC4ACCB4037BC6685F766E0 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
06:16:10.0002 3764 intelppm - ok
06:16:10.0017 3764 [ ACB364B9075A45C0736E5C47BE5CAE19 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
06:16:10.0033 3764 IPBusEnum - ok
06:16:10.0049 3764 [ 709D1761D3B19A932FF0238EA6D50200 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
06:16:10.0049 3764 IpFilterDriver - ok
06:16:10.0080 3764 [ 58F67245D041FBE7AF88F4EAF79DF0FA ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
06:16:10.0095 3764 iphlpsvc - ok
06:16:10.0111 3764 [ 4BD7134618C1D2A27466A099062547BF ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
06:16:10.0127 3764 IPMIDRV - ok
06:16:10.0127 3764 [ A5FA468D67ABCDAA36264E463A7BB0CD ] IPNAT C:\Windows\system32\drivers\ipnat.sys
06:16:10.0127 3764 IPNAT - ok
06:16:10.0158 3764 [ 42996CFF20A3084A56017B7902307E9F ] IRENUM C:\Windows\system32\drivers\irenum.sys
06:16:10.0158 3764 IRENUM - ok
06:16:10.0173 3764 [ 1F32BB6B38F62F7DF1A7AB7292638A35 ] isapnp C:\Windows\system32\drivers\isapnp.sys
06:16:10.0173 3764 isapnp - ok
06:16:10.0189 3764 [ CB7A9ABB12B8415BCE5D74994C7BA3AE ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
06:16:10.0189 3764 iScsiPrt - ok
06:16:10.0205 3764 [ ADEF52CA1AEAE82B50DF86B56413107E ] kbdclass C:\Windows\system32\drivers\kbdclass.sys
06:16:10.0220 3764 kbdclass - ok
06:16:10.0236 3764 [ 9E3CED91863E6EE98C24794D05E27A71 ] kbdhid C:\Windows\system32\drivers\kbdhid.sys
06:16:10.0236 3764 kbdhid - ok
06:16:10.0251 3764 [ 81951F51E318AECC2D68559E47485CC4 ] KeyIso C:\Windows\system32\lsass.exe
06:16:10.0251 3764 KeyIso - ok
06:16:10.0283 3764 [ B7895B4182C0D16F6EFADEB8081E8D36 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
06:16:10.0283 3764 KSecDD - ok
06:16:10.0298 3764 [ D30159AC9237519FBC62C6EC247D2D46 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
06:16:10.0298 3764 KSecPkg - ok
06:16:10.0329 3764 [ 89A7B9CC98D0D80C6F31B91C0A310FCD ] KtmRm C:\Windows\system32\msdtckrm.dll
06:16:10.0345 3764 KtmRm - ok
06:16:10.0361 3764 [ D64AF876D53ECA3668BB97B51B4E70AB ] LanmanServer C:\Windows\system32\srvsvc.dll
06:16:10.0407 3764 LanmanServer - ok
06:16:10.0423 3764 [ 58405E4F68BA8E4057C6E914F326ABA2 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
06:16:10.0454 3764 LanmanWorkstation - ok
06:16:10.0641 3764 [ C34411A244029F1C08687F7C752C4563 ] LightScribeService C:\Program Files\Common Files\LightScribe\LSSrvc.exe
06:16:10.0641 3764 LightScribeService - ok
06:16:10.0673 3764 [ F7611EC07349979DA9B0AE1F18CCC7A6 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
06:16:10.0673 3764 lltdio - ok
06:16:10.0719 3764 [ 5700673E13A2117FA3B9020C852C01E2 ] lltdsvc C:\Windows\System32\lltdsvc.dll
06:16:10.0719 3764 lltdsvc - ok
06:16:10.0751 3764 [ 55CA01BA19D0006C8F2639B6C045E08B ] lmhosts C:\Windows\System32\lmhsvc.dll
06:16:10.0751 3764 lmhosts - ok
06:16:10.0782 3764 [ EB119A53CCF2ACC000AC71B065B78FEF ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys
06:16:10.0782 3764 LSI_FC - ok
06:16:10.0797 3764 [ 8ADE1C877256A22E49B75D1CC9161F9C ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys
06:16:10.0813 3764 LSI_SAS - ok
06:16:10.0829 3764 [ DC9DC3D3DAA0E276FD2EC262E38B11E9 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys
06:16:10.0829 3764 LSI_SAS2 - ok
06:16:10.0844 3764 [ 0A036C7D7CAB643A7F07135AC47E0524 ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys
06:16:10.0844 3764 LSI_SCSI - ok
06:16:10.0860 3764 [ 6703E366CC18D3B6E534F5CF7DF39CEE ] luafv C:\Windows\system32\drivers\luafv.sys
06:16:10.0860 3764 luafv - ok
06:16:10.0891 3764 [ BFB9EE8EE977EFE85D1A3105ABEF6DD1 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
06:16:10.0907 3764 Mcx2Svc - ok
06:16:10.0922 3764 [ 0FFF5B045293002AB38EB1FD1FC2FB74 ] megasas C:\Windows\system32\DRIVERS\megasas.sys
06:16:10.0922 3764 megasas - ok
06:16:10.0953 3764 [ DCBAB2920C75F390CAF1D29F675D03D6 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys
06:16:10.0953 3764 MegaSR - ok
06:16:11.0016 3764 [ 123271BD5237AB991DC5C21FDF8835EB ] Microsoft Office Groove Audit Service C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe
06:16:11.0016 3764 Microsoft Office Groove Audit Service - ok
06:16:11.0047 3764 [ 146B6F43A673379A3C670E86D89BE5EA ] MMCSS C:\Windows\system32\mmcss.dll
06:16:11.0047 3764 MMCSS - ok
06:16:11.0078 3764 [ F001861E5700EE84E2D4E52C712F4964 ] Modem C:\Windows\system32\drivers\modem.sys
06:16:11.0078 3764 Modem - ok
06:16:11.0094 3764 [ 79D10964DE86B292320E9DFE02282A23 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
06:16:11.0109 3764 monitor - ok
06:16:11.0125 3764 [ FB18CC1D4C2E716B6B903B0AC0CC0609 ] mouclass C:\Windows\system32\drivers\mouclass.sys
06:16:11.0125 3764 mouclass - ok
06:16:11.0156 3764 [ 2C388D2CD01C9042596CF3C8F3C7B24D ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
06:16:11.0156 3764 mouhid - ok
06:16:11.0172 3764 [ FC8771F45ECCCFD89684E38842539B9B ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
06:16:11.0187 3764 mountmgr - ok
06:16:11.0219 3764 [ 7EDBBB9351A38C6BB0FE98CFD44DB430 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
06:16:11.0219 3764 MozillaMaintenance - ok
06:16:11.0250 3764 [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0 ] mpio C:\Windows\system32\drivers\mpio.sys
06:16:11.0265 3764 mpio - ok
06:16:11.0281 3764 [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
06:16:11.0281 3764 mpsdrv - ok
06:16:11.0328 3764 [ 9835584E999D25004E1EE8E5F3E3B881 ] MpsSvc C:\Windows\system32\mpssvc.dll
06:16:11.0343 3764 MpsSvc - ok
06:16:11.0375 3764 [ CEB46AB7C01C9F825F8CC6BABC18166A ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
06:16:11.0375 3764 MRxDAV - ok
06:16:11.0406 3764 [ 5D16C921E3671636C0EBA3BBAAC5FD25 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
06:16:11.0406 3764 mrxsmb - ok
06:16:11.0421 3764 [ 6D17A4791ACA19328C685D256349FEFC ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
06:16:11.0421 3764 mrxsmb10 - ok
06:16:11.0437 3764 [ B81F204D146000BE76651A50670A5E9E ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
06:16:11.0437 3764 mrxsmb20 - ok
06:16:11.0468 3764 [ 012C5F4E9349E711E11E0F19A8589F0A ] msahci C:\Windows\system32\drivers\msahci.sys
06:16:11.0468 3764 msahci - ok
06:16:11.0484 3764 [ 55055F8AD8BE27A64C831322A780A228 ] msdsm C:\Windows\system32\drivers\msdsm.sys
06:16:11.0499 3764 msdsm - ok
06:16:11.0515 3764 [ E1BCE74A3BD9902B72599C0192A07E27 ] MSDTC C:\Windows\System32\msdtc.exe
06:16:11.0515 3764 MSDTC - ok
06:16:11.0562 3764 [ DAEFB28E3AF5A76ABCC2C3078C07327F ] Msfs C:\Windows\system32\drivers\Msfs.sys
06:16:11.0562 3764 Msfs - ok
06:16:11.0562 3764 [ 3E1E5767043C5AF9367F0056295E9F84 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
06:16:11.0577 3764 mshidkmdf - ok
06:16:11.0593 3764 [ 0A4E5757AE09FA9622E3158CC1AEF114 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
06:16:11.0593 3764 msisadrv - ok
06:16:11.0624 3764 [ 90F7D9E6B6F27E1A707D4A297F077828 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
06:16:11.0640 3764 MSiSCSI - ok
06:16:11.0640 3764 msiserver - ok
06:16:11.0671 3764 [ 8C0860D6366AAFFB6C5BB9DF9448E631 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
06:16:11.0687 3764 MSKSSRV - ok
06:16:11.0687 3764 [ 3EA8B949F963562CEDBB549EAC0C11CE ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
06:16:11.0702 3764 MSPCLOCK - ok
06:16:11.0702 3764 [ F456E973590D663B1073E9C463B40932 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
06:16:11.0702 3764 MSPQM - ok
06:16:11.0718 3764 [ 0E008FC4819D238C51D7C93E7B41E560 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
06:16:11.0718 3764 MsRPC - ok
06:16:11.0733 3764 [ FC6B9FF600CC585EA38B12589BD4E246 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys
06:16:11.0733 3764 mssmbios - ok
06:16:11.0749 3764 [ B42C6B921F61A6E55159B8BE6CD54A36 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
06:16:11.0749 3764 MSTEE - ok
06:16:11.0749 3764 [ 33599130F44E1F34631CEA241DE8AC84 ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys
06:16:11.0749 3764 MTConfig - ok
06:16:11.0765 3764 [ 159FAD02F64E6381758C990F753BCC80 ] Mup C:\Windows\system32\Drivers\mup.sys
06:16:11.0765 3764 Mup - ok
06:16:11.0796 3764 [ 61D57A5D7C6D9AFE10E77DAE6E1B445E ] napagent C:\Windows\system32\qagentRT.dll
06:16:11.0811 3764 napagent - ok
06:16:11.0843 3764 [ 26384429FCD85D83746F63E798AB1480 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
06:16:11.0843 3764 NativeWifiP - ok
06:16:11.0921 3764 [ E0E4A1F81A7D69C595A8A9DDAD084C19 ] NAUpdate C:\Program Files\Nero\Update\NASvc.exe
06:16:11.0936 3764 NAUpdate - ok
06:16:12.0014 3764 [ 89844C3D3A7AAE8999E229C88E452633 ] NBService C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
06:16:12.0030 3764 NBService - ok
06:16:12.0077 3764 [ 8C9C922D71F1CD4DEF73F186416B7896 ] NDIS C:\Windows\system32\drivers\ndis.sys
06:16:12.0092 3764 NDIS - ok
06:16:12.0123 3764 [ 0E1787AA6C9191D3D319E8BAFE86F80C ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
06:16:12.0123 3764 NdisCap - ok
06:16:12.0155 3764 [ E4A8AEC125A2E43A9E32AFEEA7C9C888 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
06:16:12.0155 3764 NdisTapi - ok
06:16:12.0186 3764 [ D8A65DAFB3EB41CBB622745676FCD072 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
06:16:12.0186 3764 Ndisuio - ok
06:16:12.0233 3764 [ 38FBE267E7E6983311179230FACB1017 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
06:16:12.0233 3764 NdisWan - ok
06:16:12.0248 3764 [ A4BDC541E69674FBFF1A8FF00BE913F2 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
06:16:12.0248 3764 NDProxy - ok
06:16:12.0264 3764 [ 80B275B1CE3B0E79909DB7B39AF74D51 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
06:16:12.0264 3764 NetBIOS - ok
06:16:12.0295 3764 [ 280122DDCF04B378EDD1AD54D71C1E54 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
06:16:12.0295 3764 NetBT - ok
06:16:12.0311 3764 [ 81951F51E318AECC2D68559E47485CC4 ] Netlogon C:\Windows\system32\lsass.exe
06:16:12.0311 3764 Netlogon - ok
06:16:12.0357 3764 [ 7CCCFCA7510684768DA22092D1FA4DB2 ] Netman C:\Windows\System32\netman.dll
06:16:12.0389 3764 Netman - ok
06:16:12.0404 3764 [ 8C338238C16777A802D6A9211EB2BA50 ] netprofm C:\Windows\System32\netprofm.dll
06:16:12.0420 3764 netprofm - ok
06:16:12.0482 3764 [ F476EC40033CDB91EFBE73EB99B8362D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
06:16:12.0482 3764 NetTcpPortSharing - ok
06:16:12.0513 3764 [ 1D85C4B390B0EE09C7A46B91EFB2C097 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys
06:16:12.0529 3764 nfrd960 - ok
06:16:12.0560 3764 [ 374071043F9E4231EE43BE2BB48DD36D ] NlaSvc C:\Windows\System32\nlasvc.dll
06:16:12.0576 3764 NlaSvc - ok
06:16:12.0638 3764 [ 433049770B810D7C83C5C94CDB3E09D2 ] NMIndexingService C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
06:16:12.0638 3764 NMIndexingService - ok
06:16:12.0654 3764 [ 1DB262A9F8C087E8153D89BEF3D2235F ] Npfs C:\Windows\system32\drivers\Npfs.sys
06:16:12.0654 3764 Npfs - ok
06:16:12.0685 3764 [ BA387E955E890C8A88306D9B8D06BF17 ] nsi C:\Windows\system32\nsisvc.dll
06:16:12.0685 3764 nsi - ok
06:16:12.0701 3764 [ E9A0A4D07E53D8FEA2BB8387A3293C58 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
06:16:12.0701 3764 nsiproxy - ok
06:16:12.0747 3764 [ 5E43D2B0EE64123D4880DFA6626DEFDE ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
06:16:12.0779 3764 Ntfs - ok
06:16:12.0779 3764 [ F9756A98D69098DCA8945D62858A812C ] Null C:\Windows\system32\drivers\Null.sys
06:16:12.0794 3764 Null - ok
06:16:12.0841 3764 [ B3E25EE28883877076E0E1FF877D02E0 ] nvraid C:\Windows\system32\drivers\nvraid.sys
06:16:12.0841 3764 nvraid - ok
06:16:12.0857 3764 [ 4380E59A170D88C4F1022EFF6719A8A4 ] nvstor C:\Windows\system32\drivers\nvstor.sys
06:16:12.0872 3764 nvstor - ok
06:16:12.0888 3764 [ 5A0983915F02BAE73267CC2A041F717D ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
06:16:12.0888 3764 nv_agp - ok
06:16:12.0950 3764 [ 785F487A64950F3CB8E9F16253BA3B7B ] odserv C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
06:16:12.0950 3764 odserv - ok
06:16:12.0997 3764 [ 08A70A1F2CDDE9BB49B885CB817A66EB ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
06:16:12.0997 3764 ohci1394 - ok
06:16:13.0044 3764 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
06:16:13.0044 3764 ose - ok
06:16:13.0091 3764 [ 82A8521DDC60710C3D3D3E7325209BEC ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
06:16:13.0106 3764 p2pimsvc - ok
06:16:13.0137 3764 [ 59C3DDD501E39E006DAC31BF55150D91 ] p2psvc C:\Windows\system32\p2psvc.dll
06:16:13.0153 3764 p2psvc - ok
06:16:13.0184 3764 [ 2EA877ED5DD9713C5AC74E8EA7348D14 ] Parport C:\Windows\system32\DRIVERS\parport.sys
06:16:13.0184 3764 Parport - ok
06:16:13.0215 3764 [ 3F34A1B4C5F6475F320C275E63AFCE9B ] partmgr C:\Windows\system32\drivers\partmgr.sys
06:16:13.0231 3764 partmgr - ok
06:16:13.0231 3764 [ EB0A59F29C19B86479D36B35983DAADC ] Parvdm C:\Windows\system32\DRIVERS\parvdm.sys
06:16:13.0247 3764 Parvdm - ok
06:16:13.0262 3764 [ 358AB7956D3160000726574083DFC8A6 ] PcaSvc C:\Windows\System32\pcasvc.dll
06:16:13.0278 3764 PcaSvc - ok
06:16:13.0309 3764 [ 673E55C3498EB970088E812EA820AA8F ] pci C:\Windows\system32\drivers\pci.sys
06:16:13.0309 3764 pci - ok
06:16:13.0325 3764 [ AFE86F419014DB4E5593F69FFE26CE0A ] pciide C:\Windows\system32\drivers\pciide.sys
06:16:13.0325 3764 pciide - ok
06:16:13.0356 3764 [ F396431B31693E71E8A80687EF523506 ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys
06:16:13.0356 3764 pcmcia - ok
06:16:13.0371 3764 [ 250F6B43D2B613172035C6747AEEB19F ] pcw C:\Windows\system32\drivers\pcw.sys
06:16:13.0371 3764 pcw - ok
06:16:13.0403 3764 [ 9E0104BA49F4E6973749A02BF41344ED ] PEAUTH C:\Windows\system32\drivers\peauth.sys
06:16:13.0418 3764 PEAUTH - ok
06:16:13.0465 3764 [ AF4D64D2A57B9772CF3801950B8058A6 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll
06:16:13.0512 3764 PeerDistSvc - ok
06:16:13.0590 3764 [ 414BBA67A3DED1D28437EB66AEB8A720 ] pla C:\Windows\system32\pla.dll
06:16:13.0637 3764 pla - ok
06:16:13.0668 3764 [ EC7BC28D207DA09E79B3E9FAF8B232CA ] PlugPlay C:\Windows\system32\umpnpmgr.dll
06:16:13.0683 3764 PlugPlay - ok
06:16:13.0730 3764 [ 205E1B699FD3F2F9B036EEA2EC30C620 ] PnkBstrA C:\Windows\system32\PnkBstrA.exe
06:16:13.0746 3764 PnkBstrA - ok
06:16:13.0761 3764 [ 63FF8572611249931EB16BB8EED6AFC8 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
06:16:13.0777 3764 PNRPAutoReg - ok
06:16:13.0793 3764 [ 82A8521DDC60710C3D3D3E7325209BEC ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
06:16:13.0808 3764 PNRPsvc - ok
06:16:13.0824 3764 [ 53946B69BA0836BD95B03759530C81EC ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
06:16:13.0839 3764 PolicyAgent - ok
06:16:13.0871 3764 [ F87D30E72E03D579A5199CCB3831D6EA ] Power C:\Windows\system32\umpo.dll
06:16:13.0886 3764 Power - ok
06:16:13.0917 3764 [ 631E3E205AD6D86F2AED6A4A8E69F2DB ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
06:16:13.0917 3764 PptpMiniport - ok
06:16:13.0933 3764 [ 85B1E3A0C7585BC4AAE6899EC6FCF011 ] Processor C:\Windows\system32\DRIVERS\processr.sys
06:16:13.0933 3764 Processor - ok
06:16:13.0980 3764 [ CADEFAC453040E370A1BDFF3973BE00D ] ProfSvc C:\Windows\system32\profsvc.dll
06:16:14.0011 3764 ProfSvc - ok
06:16:14.0011 3764 [ 81951F51E318AECC2D68559E47485CC4 ] ProtectedStorage C:\Windows\system32\lsass.exe
06:16:14.0027 3764 ProtectedStorage - ok
06:16:14.0042 3764 [ 6270CCAE2A86DE6D146529FE55B3246A ] Psched C:\Windows\system32\DRIVERS\pacer.sys
06:16:14.0042 3764 Psched - ok
06:16:14.0089 3764 [ AB95ECF1F6659A60DDC166D8315B0751 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys
06:16:14.0105 3764 ql2300 - ok
06:16:14.0120 3764 [ B4DD51DD25182244B86737DC51AF2270 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys
06:16:14.0120 3764 ql40xx - ok
06:16:14.0151 3764 [ 31AC809E7707EB580B2BDB760390765A ] QWAVE C:\Windows\system32\qwave.dll
06:16:14.0167 3764 QWAVE - ok
06:16:14.0183 3764 [ 584078CA1B95CA72DF2A27C336F9719D ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
06:16:14.0183 3764 QWAVEdrv - ok
06:16:14.0198 3764 [ 30A81B53C766D0133BB86D234E5556AB ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
06:16:14.0198 3764 RasAcd - ok
06:16:14.0229 3764 [ 57EC4AEF73660166074D8F7F31C0D4FD ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
06:16:14.0229 3764 RasAgileVpn - ok
06:16:14.0245 3764 [ A60F1839849C0C00739787FD5EC03F13 ] RasAuto C:\Windows\System32\rasauto.dll
06:16:14.0261 3764 RasAuto - ok
06:16:14.0276 3764 [ D9F91EAFEC2815365CBE6D167E4E332A ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
06:16:14.0276 3764 Rasl2tp - ok
06:16:14.0307 3764 [ CB9E04DC05EACF5B9A36CA276D475006 ] RasMan C:\Windows\System32\rasmans.dll
06:16:14.0339 3764 RasMan - ok
06:16:14.0354 3764 [ 0FE8B15916307A6AC12BFB6A63E45507 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
06:16:14.0354 3764 RasPppoe - ok
06:16:14.0401 3764 [ 44101F495A83EA6401D886E7FD70096B ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
06:16:14.0401 3764 RasSstp - ok
06:16:14.0432 3764 [ D528BC58A489409BA40334EBF96A311B ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
06:16:14.0432 3764 rdbss - ok
06:16:14.0463 3764 [ 0D8F05481CB76E70E1DA06EE9F0DA9DF ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
06:16:14.0463 3764 rdpbus - ok
06:16:14.0479 3764 [ 23DAE03F29D253AE74C44F99E515F9A1 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
06:16:14.0479 3764 RDPCDD - ok
06:16:14.0526 3764 [ B973FCFC50DC1434E1970A146F7E3885 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys
06:16:14.0526 3764 RDPDR - ok
06:16:14.0557 3764 [ 5A53CA1598DD4156D44196D200C94B8A ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
06:16:14.0557 3764 RDPENCDD - ok
06:16:14.0588 3764 [ 44B0A53CD4F27D50ED461DAE0C0B4E1F ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
06:16:14.0588 3764 RDPREFMP - ok
06:16:14.0651 3764 [ 68A0387F58E226DEEE23D9715955572A ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
06:16:14.0651 3764 RdpVideoMiniport - ok
06:16:14.0682 3764 [ F031683E6D1FEA157ABB2FF260B51E61 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
06:16:14.0682 3764 RDPWD - ok
06:16:14.0729 3764 [ 518395321DC96FE2C9F0E96AC743B656 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
06:16:14.0729 3764 rdyboost - ok
06:16:14.0744 3764 [ 7B5E1419717FAC363A31CC302895217A ] RemoteAccess C:\Windows\System32\mprdim.dll
06:16:14.0760 3764 RemoteAccess - ok
06:16:14.0807 3764 [ CB9A8683F4EF2BF99E123D79950D7935 ] RemoteRegistry C:\Windows\system32\regsvc.dll
06:16:14.0822 3764 RemoteRegistry - ok
06:16:14.0838 3764 [ 78D072F35BC45D9E4E1B61895C152234 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
06:16:14.0853 3764 RpcEptMapper - ok
06:16:14.0869 3764 [ 94D36C0E44677DD26981D2BFEEF2A29D ] RpcLocator C:\Windows\system32\locator.exe
06:16:14.0885 3764 RpcLocator - ok
06:16:14.0916 3764 [ 7660F01D3B38ACA1747E397D21D790AF ] RpcSs C:\Windows\system32\rpcss.dll
06:16:14.0931 3764 RpcSs - ok
06:16:14.0963 3764 [ 032B0D36AD92B582D869879F5AF5B928 ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
06:16:14.0963 3764 rspndr - ok
06:16:15.0025 3764 [ 3983CEA05BB855351D75F5482B6C42CE ] RTL8167 C:\Windows\system32\DRIVERS\Rt86win7.sys
06:16:15.0025 3764 RTL8167 - ok
06:16:15.0056 3764 [ 7FA7F2E249A5DCBB7970630E15E1F482 ] s3cap C:\Windows\system32\drivers\vms3cap.sys
06:16:15.0056 3764 s3cap - ok
06:16:15.0072 3764 [ 81951F51E318AECC2D68559E47485CC4 ] SamSs C:\Windows\system32\lsass.exe
06:16:15.0087 3764 SamSs - ok
06:16:15.0119 3764 [ 05D860DA1040F111503AC416CCEF2BCA ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
06:16:15.0119 3764 sbp2port - ok
06:16:15.0150 3764 [ 8FC518FFE9519C2631D37515A68009C4 ] SCardSvr C:\Windows\System32\SCardSvr.dll
06:16:15.0181 3764 SCardSvr - ok
06:16:15.0212 3764 [ 0693B5EC673E34DC147E195779A4DCF6 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
06:16:15.0212 3764 scfilter - ok
06:16:15.0259 3764 [ A04BB13F8A72F8B6E8B4071723E4E336 ] Schedule C:\Windows\system32\schedsvc.dll
06:16:15.0290 3764 Schedule - ok
06:16:15.0321 3764 [ 319C6B309773D063541D01DF8AC6F55F ] SCPolicySvc C:\Windows\System32\certprop.dll
06:16:15.0321 3764 SCPolicySvc - ok
06:16:15.0353 3764 [ 08236C4BCE5EDD0A0318A438AF28E0F7 ] SDRSVC C:\Windows\System32\SDRSVC.dll
06:16:15.0368 3764 SDRSVC - ok
06:16:15.0399 3764 [ 90A3935D05B494A5A39D37E71F09A677 ] secdrv C:\Windows\system32\drivers\secdrv.sys
06:16:15.0415 3764 secdrv - ok
06:16:15.0431 3764 [ A59B3A4442C52060CC7A85293AA3546F ] seclogon C:\Windows\system32\seclogon.dll
06:16:15.0446 3764 seclogon - ok
06:16:15.0462 3764 [ DCB7FCDCC97F87360F75D77425B81737 ] SENS C:\Windows\System32\sens.dll
06:16:15.0477 3764 SENS - ok
06:16:15.0493 3764 [ 50087FE1EE447009C9CC2997B90DE53F ] SensrSvc C:\Windows\system32\sensrsvc.dll
06:16:15.0509 3764 SensrSvc - ok
06:16:15.0524 3764 [ 9AD8B8B515E3DF6ACD4212EF465DE2D1 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
06:16:15.0524 3764 Serenum - ok
06:16:15.0540 3764 [ 5FB7FCEA0490D821F26F39CC5EA3D1E2 ] Serial C:\Windows\system32\DRIVERS\serial.sys
06:16:15.0540 3764 Serial - ok
06:16:15.0555 3764 [ 79BFFB520327FF916A582DFEA17AA813 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys
06:16:15.0555 3764 sermouse - ok
06:16:15.0602 3764 [ 4AE380F39A0032EAB7DD953030B26D28 ] SessionEnv C:\Windows\system32\sessenv.dll
06:16:15.0602 3764 SessionEnv - ok
06:16:15.0633 3764 [ 9F976E1EB233DF46FCE808D9DEA3EB9C ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
06:16:15.0633 3764 sffdisk - ok
06:16:15.0649 3764 [ 932A68EE27833CFD57C1639D375F2731 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
06:16:15.0649 3764 sffp_mmc - ok
06:16:15.0680 3764 [ 6D4CCAEDC018F1CF52866BBBAA235982 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
06:16:15.0680 3764 sffp_sd - ok
06:16:15.0711 3764 [ DB96666CC8312EBC45032F30B007A547 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys
06:16:15.0711 3764 sfloppy - ok
06:16:15.0789 3764 [ D1A079A0DE2EA524513B6930C24527A2 ] SharedAccess C:\Windows\System32\ipnathlp.dll
06:16:15.0805 3764 SharedAccess - ok
06:16:15.0821 3764 [ 414DA952A35BF5D50192E28263B40577 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
06:16:15.0836 3764 ShellHWDetection - ok
06:16:15.0852 3764 [ 2565CAC0DC9FE0371BDCE60832582B2E ] sisagp C:\Windows\system32\drivers\sisagp.sys
06:16:15.0867 3764 sisagp - ok
06:16:15.0899 3764 [ A9F0486851BECB6DDA1D89D381E71055 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys
06:16:15.0899 3764 SiSRaid2 - ok
06:16:15.0914 3764 [ 3727097B55738E2F554972C3BE5BC1AA ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys
06:16:15.0930 3764 SiSRaid4 - ok
06:16:15.0977 3764 [ 7C15061CD0372487903B07B9BB03AFAD ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe
06:16:15.0977 3764 SkypeUpdate - ok
06:16:16.0008 3764 [ 3E21C083B8A01CB70BA1F09303010FCE ] Smb C:\Windows\system32\DRIVERS\smb.sys
06:16:16.0008 3764 Smb - ok
06:16:16.0070 3764 [ 6A984831644ECA1A33FFEAE4126F4F37 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
06:16:16.0086 3764 SNMPTRAP - ok
06:16:16.0117 3764 [ DC8D2952FB6FFBAEC67BD1B93A34DF11 ] speedfan C:\Windows\system32\speedfan.sys
06:16:16.0133 3764 speedfan - ok
06:16:16.0164 3764 [ 95CF1AE7527FB70F7816563CBC09D942 ] spldr C:\Windows\system32\drivers\spldr.sys
06:16:16.0164 3764 spldr - ok
06:16:16.0195 3764 [ 9AEA093B8F9C37CF45538382CABA2475 ] Spooler C:\Windows\System32\spoolsv.exe
06:16:16.0242 3764 Spooler - ok
06:16:16.0351 3764 [ CF87A1DE791347E75B98885214CED2B8 ] sppsvc C:\Windows\system32\sppsvc.exe
06:16:16.0445 3764 sppsvc - ok
06:16:16.0476 3764 [ B0180B20B065D89232A78A40FE56EAA6 ] sppuinotify C:\Windows\system32\sppuinotify.dll
06:16:16.0491 3764 sppuinotify - ok
06:16:16.0538 3764 [ 25ECEA986742275ECB23A1CB6BC87A61 ] SRS_SSCFilter C:\Windows\system32\drivers\srs_sscfilter_i386.sys
06:16:16.0554 3764 SRS_SSCFilter - ok
06:16:16.0601 3764 [ E4C2764065D66EA1D2D3EBC28FE99C46 ] srv C:\Windows\system32\DRIVERS\srv.sys
06:16:16.0601 3764 srv - ok
06:16:16.0632 3764 [ 03F0545BD8D4C77FA0AE1CEEDFCC71AB ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
06:16:16.0632 3764 srv2 - ok
06:16:16.0663 3764 [ BE6BD660CAA6F291AE06A718A4FA8ABC ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
06:16:16.0679 3764 srvnet - ok
06:16:16.0694 3764 [ D887C9FD02AC9FA880F6E5027A43E118 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
06:16:16.0725 3764 SSDPSRV - ok
06:16:16.0741 3764 [ D318F23BE45D5E3A107469EB64815B50 ] SstpSvc C:\Windows\system32\sstpsvc.dll
06:16:16.0757 3764 SstpSvc - ok
06:16:16.0788 3764 [ DB32D325C192B801DF274BFD12A7E72B ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys
06:16:16.0788 3764 stexstor - ok
06:16:16.0819 3764 [ E1FB3706030FB4578A0D72C2FC3689E4 ] StiSvc C:\Windows\System32\wiaservc.dll
06:16:16.0850 3764 StiSvc - ok
06:16:16.0866 3764 [ 472AF0311073DCECEAA8FA18BA2BDF89 ] storflt C:\Windows\system32\drivers\vmstorfl.sys
06:16:16.0881 3764 storflt - ok
06:16:16.0897 3764 [ DCAFFD62259E0BDB433DD67B5BB37619 ] storvsc C:\Windows\system32\drivers\storvsc.sys
06:16:16.0913 3764 storvsc - ok
06:16:16.0928 3764 [ E58C78A848ADD9610A4DB6D214AF5224 ] swenum C:\Windows\system32\drivers\swenum.sys
06:16:16.0928 3764 swenum - ok
06:16:16.0959 3764 [ A28BD92DF340E57B024BA433165D34D7 ] swprv C:\Windows\System32\swprv.dll
06:16:16.0975 3764 swprv - ok
06:16:17.0006 3764 Synth3dVsc - ok
06:16:17.0053 3764 [ 36650D618CA34C9D357DFD3D89B2C56F ] SysMain C:\Windows\system32\sysmain.dll
06:16:17.0084 3764 SysMain - ok
06:16:17.0115 3764 [ 763FECDC3D30C815FE72DD57936C6CD1 ] TabletInputService C:\Windows\System32\TabSvc.dll
06:16:17.0131 3764 TabletInputService - ok
06:16:17.0162 3764 [ 613BF4820361543956909043A265C6AC ] TapiSrv C:\Windows\System32\tapisrv.dll
06:16:17.0193 3764 TapiSrv - ok
06:16:17.0209 3764 [ B799D9FDB26111737F58288D8DC172D9 ] TBS C:\Windows\System32\tbssvc.dll
06:16:17.0240 3764 TBS - ok
06:16:17.0287 3764 [ 7C0507D2391AF5933600CBCED799F277 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
06:16:17.0287 3764 Tcpip - ok
06:16:17.0334 3764 [ 7C0507D2391AF5933600CBCED799F277 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
06:16:17.0349 3764 TCPIP6 - ok
06:16:17.0381 3764 [ 3EEBD3BD93DA46A26E89893C7AB2FF3B ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
06:16:17.0381 3764 tcpipreg - ok
06:16:17.0412 3764 [ 1CB91B2BD8F6DD367DFC2EF26FD751B2 ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
06:16:17.0412 3764 TDPIPE - ok
06:16:17.0427 3764 [ 2C2C5AFE7EE4F620D69C23C0617651A8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
06:16:17.0427 3764 TDTCP - ok
06:16:17.0443 3764 [ B459575348C20E8121D6039DA063C704 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
06:16:17.0459 3764 tdx - ok
06:16:17.0459 3764 [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20 ] TermDD C:\Windows\system32\drivers\termdd.sys
06:16:17.0474 3764 TermDD - ok
06:16:17.0505 3764 [ 382C804C92811BE57829D8E550A900E2 ] TermService C:\Windows\System32\termsrv.dll
06:16:17.0537 3764 TermService - ok
06:16:17.0568 3764 [ 42FB6AFD6B79D9FE07381609172E7CA4 ] Themes C:\Windows\system32\themeservice.dll
06:16:17.0583 3764 Themes - ok
06:16:17.0599 3764 [ 146B6F43A673379A3C670E86D89BE5EA ] THREADORDER C:\Windows\system32\mmcss.dll
06:16:17.0615 3764 THREADORDER - ok
06:16:17.0646 3764 [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A ] TrkWks C:\Windows\System32\trkwks.dll
06:16:17.0661 3764 TrkWks - ok
06:16:17.0708 3764 [ 2C49B175AEE1D4364B91B531417FE583 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
06:16:17.0708 3764 TrustedInstaller - ok
06:16:17.0739 3764 [ 254BB140EEE3C59D6114C1A86B636877 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
06:16:17.0739 3764 tssecsrv - ok
06:16:17.0755 3764 [ FD1D6C73E6333BE727CBCC6054247654 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
06:16:17.0771 3764 TsUsbFlt - ok
06:16:17.0786 3764 tsusbhub - ok
06:16:17.0817 3764 [ B2FA25D9B17A68BB93D58B0556E8C90D ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
06:16:17.0817 3764 tunnel - ok
06:16:17.0849 3764 [ 750FBCB269F4D7DD2E420C56B795DB6D ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys
06:16:17.0849 3764 uagp35 - ok
06:16:17.0880 3764 [ EE43346C7E4B5E63E54F927BABBB32FF ] udfs C:\Windows\system32\DRIVERS\udfs.sys
06:16:17.0880 3764 udfs - ok
06:16:17.0911 3764 [ 8344FD4FCE927880AA1AA7681D4927E5 ] UI0Detect C:\Windows\system32\UI0Detect.exe
06:16:17.0927 3764 UI0Detect - ok
06:16:17.0942 3764 [ 44E8048ACE47BEFBFDC2E9BE4CBC8880 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
06:16:17.0942 3764 uliagpkx - ok
06:16:17.0973 3764 [ D295BED4B898F0FD999FCFA9B32B071B ] umbus C:\Windows\system32\drivers\umbus.sys
06:16:17.0973 3764 umbus - ok
06:16:18.0005 3764 [ 7550AD0C6998BA1CB4843E920EE0FEAC ] UmPass C:\Windows\system32\DRIVERS\umpass.sys
06:16:18.0005 3764 UmPass - ok
06:16:18.0036 3764 [ 409994A8EACEEE4E328749C0353527A0 ] UmRdpService C:\Windows\System32\umrdp.dll
06:16:18.0067 3764 UmRdpService - ok
06:16:18.0083 3764 [ 833FBB672460EFCE8011D262175FAD33 ] upnphost C:\Windows\System32\upnphost.dll
06:16:18.0098 3764 upnphost - ok
06:16:18.0129 3764 [ BD9C55D7023C5DE374507ACC7A14E2AC ] usbccgp C:\Windows\system32\drivers\usbccgp.sys
06:16:18.0129 3764 usbccgp - ok
06:16:18.0161 3764 [ 04EC7CEC62EC3B6D9354EEE93327FC82 ] usbcir C:\Windows\system32\drivers\usbcir.sys
06:16:18.0161 3764 usbcir - ok
06:16:18.0176 3764 [ F92DE757E4B7CE9C07C5E65423F3AE3B ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
06:16:18.0192 3764 usbehci - ok
06:16:18.0207 3764 [ 8DC94AEC6A7E644A06135AE7506DC2E9 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
06:16:18.0223 3764 usbhub - ok
06:16:18.0239 3764 [ E185D44FAC515A18D9DEDDC23C2CDF44 ] usbohci C:\Windows\system32\DRIVERS\usbohci.sys
06:16:18.0239 3764 usbohci - ok
06:16:18.0270 3764 [ 797D862FE0875E75C7CC4C1AD7B30252 ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
06:16:18.0270 3764 usbprint - ok
06:16:18.0285 3764 [ F991AB9CC6B908DB552166768176896A ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
06:16:18.0285 3764 USBSTOR - ok
06:16:18.0301 3764 [ 68DF884CF41CDADA664BEB01DAF67E3D ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
06:16:18.0301 3764 usbuhci - ok
06:16:18.0332 3764 [ 081E6E1C91AEC36758902A9F727CD23C ] UxSms C:\Windows\System32\uxsms.dll
06:16:18.0332 3764 UxSms - ok
06:16:18.0348 3764 [ 81951F51E318AECC2D68559E47485CC4 ] VaultSvc C:\Windows\system32\lsass.exe
06:16:18.0348 3764 VaultSvc - ok
06:16:18.0379 3764 [ FCE98C43B5C5DB8E0DA8EA0E2B45E044 ] VClone C:\Windows\system32\DRIVERS\VClone.sys
06:16:18.0395 3764 VClone - ok
06:16:18.0426 3764 [ A059C4C3EDB09E07D21A8E5C0AABD3CB ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
06:16:18.0441 3764 vdrvroot - ok
06:16:18.0473 3764 [ C3CD30495687C2A2F66A65CA6FD89BE9 ] vds C:\Windows\System32\vds.exe
06:16:18.0488 3764 vds - ok
06:16:18.0519 3764 [ 17C408214EA61696CEC9C66E388B14F3 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
06:16:18.0519 3764 vga - ok
06:16:18.0535 3764 [ 8E38096AD5C8570A6F1570A61E251561 ] VgaSave C:\Windows\System32\drivers\vga.sys
06:16:18.0535 3764 VgaSave - ok
06:16:18.0566 3764 VGPU - ok
06:16:18.0582 3764 [ 5461686CCA2FDA57B024547733AB42E3 ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
06:16:18.0597 3764 vhdmp - ok
06:16:18.0629 3764 [ C829317A37B4BEA8F39735D4B076E923 ] viaagp C:\Windows\system32\drivers\viaagp.sys


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 103 hostů